Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu - občasné přetěžování CPU

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Small_John
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 29 zář 2008 22:51

Prosím o kontrolu - občasné přetěžování CPU

#1 Příspěvek od Small_John »

Zdravím, prosím o kontrolu logu, čas od času se CPU vytíží na 100% a pc je na několik minut zasekané. Díky za pomoc.

Logfile of random's system information tool 1.09 (written by random/random)
Run by ROMAN at 2012-06-25 17:35:42
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 362 GB (51%) free of 707 GB
Total RAM: 3070 MB (54% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:36:04, on 25.6.2012
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16446)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\ASUS\GamerOSD\GamerOSD.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\DivX\DivX Plus Web Player\DDMService.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\DivX\DivX Update\DivXUpdate.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Users\ROMAN\AppData\Local\Seznam.cz\bin\postak.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Kalendar\kalendar.exe
C:\ProgramData\GameXN\GameXNGO.exe
C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Common Files\Apple\Internet Services\ubd.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files\Common Files\Apple\Apple Application Support\distnoted.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqbam08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe
C:\Windows\system32\conime.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
c:\PROGRA~1\mcafee\SITEAD~1\saui.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\explorer.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\ROMAN\Downloads\RSIT.exe
C:\Program Files\trend micro\ROMAN.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll
R3 - URLSearchHook: Winamp Search Class - {57BCA5FA-5DBB-45a2-B558-1755C3F6253B} - C:\Program Files\Winamp Toolbar\winamptb.dll
R3 - URLSearchHook: DeviceVM Url Search Hook - {0063BF63-BFFF-4B8F-9D26-4267DF7F17DD} - C:\Windows\System32\dvmurl.dll
R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O1 - Hosts: ::1 localhost
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Winamp Toolbar Loader - {25CEE8EC-5730-41bc-8B58-22DDC8AB8C20} - C:\Program Files\Winamp Toolbar\winamptb.dll
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
O2 - BHO: Use the DivX Plus Web Player to watch web videos with less interruptions and smoother playback on supported sites - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: Toolbar - Big Fish Games - {C7C9FC25-88B0-4682-9C9F-2608E9117647} - C:\Program Files\bfgbartb\BfgBarDx.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: AllMyWeb Toolbar - {E841418A-B263-40AB-9F16-7F603AA7B6A1} - C:\Program Files\allmywebtb\AllMyWebDx.dll
O2 - BHO: Norton Safe Web Lite BHO - {F0DA78E9-6B60-42fb-BC26-EF2CFB8C8FF3} - C:\Program Files\Norton Safe Web Lite\Engine\1.2.0.7\coIEPlg.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: AllMyWeb Toolbar - {E841418A-B263-40AB-9F16-7F603AA7B6A1} - C:\Program Files\allmywebtb\AllMyWebDx.dll
O3 - Toolbar: Toolbar - Big Fish Games - {C7C9FC25-88B0-4682-9C9F-2608E9117647} - C:\Program Files\bfgbartb\BfgBarDx.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: Winamp Toolbar - {EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - C:\Program Files\Winamp Toolbar\winamptb.dll
O3 - Toolbar: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: Norton Safe Web Lite - {30CEEEA2-3742-40e4-85DD-812BF1CBB83D} - C:\Program Files\Norton Safe Web Lite\Engine\1.2.0.7\coIEPlg.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [Skytel] Skytel.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [KiesTrayAgent] C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Seznam Postak] "C:\Users\ROMAN\AppData\Local\Seznam.cz\bin\postak.exe" -s
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [Kalendar] C:\Program Files\Kalendar\kalendar.exe
O4 - HKCU\..\Run: [KiesHelper] C:\Program Files\Samsung\Kies\KiesHelper.exe /s
O4 - HKCU\..\Run: [KiesPDLR] C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\Windows\system32\Macromed\Flash\FlashUtil11f_Plugin.exe -update plugin
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [Exetender_298] "C:\Program Files\Frag Games\GPlayer.exe" /runonstartup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [Exetender_298] "C:\Program Files\Frag Games\GPlayer.exe" /runonstartup (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Exetender_298] "C:\Program Files\Frag Games\GPlayer.exe" /runonstartup (User 'Default user')
O8 - Extra context menu item: &Winamp Search - C:\ProgramData\Winamp Toolbar\ieToolbar\resources\en-US\local\search.html
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MI1933~1\Office12\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~4\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~4\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\Office12\REFIEBAR.DLL
O9 - Extra button: Zobrazit nebo skrýt HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O9 - Extra button: Nastavení Lištičky ... - {0E46D7B6-887D-4F81-B4CA-FCC92AF73610} - C:\Users\ROMAN\AppData\Local\Seznam.cz\listicka.dll (HKCU)
O9 - Extra 'Tools' menuitem: Nastavení Lištičky ... - {0E46D7B6-887D-4F81-B4CA-FCC92AF73610} - C:\Users\ROMAN\AppData\Local\Seznam.cz\listicka.dll (HKCU)
O9 - Extra button: Zvýrazňovač slov Lištičky - {4E6D6F90-31CA-4878-A7A3-1CD50F115A69} - C:\Users\ROMAN\AppData\Local\Seznam.cz\listicka.dll (HKCU)
O9 - Extra 'Tools' menuitem: Zvýrazňovač slov Lištičky - {4E6D6F90-31CA-4878-A7A3-1CD50F115A69} - C:\Users\ROMAN\AppData\Local\Seznam.cz\listicka.dll (HKCU)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {149E45D8-163E-4189-86FC-45022AB2B6C9} (SpinTop DRM Control) - file:///C:/Program%20Files/Bejeweled%203/Images/stg_drm.ocx
O16 - DPF: {CC450D71-CC90-424C-8638-1F2DBAC87A54} (ArmHelper Control) - file:///C:/Program%20Files/Bejeweled%203/Images/armhelper.ocx
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: ASDR - Unknown owner - C:\Windows\System32\ASDR.exe
O23 - Service: ATK Fast User Switch Service (ATKFUSService) - ASUSTeK COMPUTER INC. - C:\Windows\system32\ATKFUSService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Common Files\BOONTY Shared\Service\Boonty.exe
O23 - Service: ES lite Service for program management. (ES lite Service) - Unknown owner - C:\Program Files\Gigabyte\EasySaver\ESSVR.EXE
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - c:\PROGRA~1\mcafee\SITEAD~1\mcsacore.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe
O23 - Service: @C:\Program Files\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files\Nero\Update\NASvc.exe
O23 - Service: Norton Safe Web Lite (NSL) - Symantec Corporation - C:\Program Files\Norton Safe Web Lite\Engine\1.2.0.7\ccSvcHst.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe

--
End of file - 16208 bytes

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\Norton Security Scan for ROMAN.job

=========Mozilla firefox=========

ProfilePath - C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/?clid=3"
prefs.js - "extensions.enabledItems" - "{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23, DTToolbar@toolbarnet.com:1.1.6.0143, {20a82645-c095-46ed-80e3-08825760534b}:1.2.1, {6847DFAE-037A-400c-A524-27F0A281B692}:2.1, {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}:3.3.3.2, {23fcfd51-4958-4f00-80a3-ae97e717ed8b}:2.1.0.900, {6904342A-8307-11DF-A508-4AE2DFD72085}:2.1.0.900, {B7082FAA-CB62-4872-9106-E42DD88EDE45}:3.3.1, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, engine@conduit.com:3.3.3.2, {203FB6B2-2E1E-4474-863B-4C483ECCE78E}:1.2.0, {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}:6.0.26, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.18"
prefs.js - "keyword.URL" - "http://search.conduit.com/ResultsExt.as ... 1750559&q="

"smartwebprinting@hp.com"=C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
"{20a82645-c095-46ed-80e3-08825760534b}"=c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"{23fcfd51-4958-4f00-80a3-ae97e717ed8b}"=C:\Program Files\DivX\DivX Plus Web Player\firefox\html5video
"{6904342A-8307-11DF-A508-4AE2DFD72085}"=C:\Program Files\DivX\DivX Plus Web Player\firefox\wpa
"{203FB6B2-2E1E-4474-863B-4C483ECCE78E}"=C:\ProgramData\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_1.2.0.7\coFFNST\
"{4ED1F68A-5463-4931-9384-8FFF5ED91D92}"=C:\Program Files\McAfee\SiteAdvisor
"{ea614400-e918-4741-9a97-7a972ff7c30b}"=C:\Users\ROMAN\AppData\Local\Seznam.cz\firefox
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\system32\Adobe\Director\np32dsw.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=]
"Description"=iTunes Detector Plug-in
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=1.0]
"Description"=
"Path"=C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0]
"Description"=DivX Plus Web Player
"Path"=C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]
"Description"=DivX VOD Helper Plug-in
"Path"=C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@mcafee.com/SAFFPlugin]
"Description"=
"Path"=C:\Program Files\McAfee\SiteAdvisor\npmcffplg32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
nsIQTScriptablePlugin.xpt

C:\Program Files\Mozilla Firefox\plugins\
npdeployJava1.dll
NPOFF12.DLL
nppdf32.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
npwachk.dll
QuickTimePlugin.class

C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
McSiteAdvisor.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
yahoo.xml

C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\extensions\
cs@dictionaries.addons.mozilla.org
DTToolbar@toolbarnet.com
{20a82645-c095-46ed-80e3-08825760534b}
{6847DFAE-037A-400c-A524-27F0A281B692}
{ea614400-e918-4741-9a97-7a972ff7c30b}
{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}

C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\searchplugins\
absearch-search.xml
conduit.xml
daemon-search.xml
winamp-search.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-10-22 328248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-04-04 63912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{25CEE8EC-5730-41bc-8B58-22DDC8AB8C20}]
Winamp Toolbar Loader - C:\Program Files\Winamp Toolbar\winamptb.dll [2010-07-28 1267024]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}]
DivX Plus Web Player HTML5 <video> - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll [2010-12-08 3123072]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{593DDEC6-7468-4cdd-90E1-42DADAA222E9}]
DivX HiQ - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll [2010-12-08 3123072]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-03-07 1003704]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files\Windows Live\Companion\companioncore.dll [2010-11-10 393600]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2012-03-15 192112]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2012-01-17 3855520]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll [2012-02-17 281600]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C7C9FC25-88B0-4682-9C9F-2608E9117647}]
Toolbar - Big Fish Games - C:\Program Files\bfgbartb\BfgBarDx.dll [2010-09-13 86696]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-09-28 1400712]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-06-14 42272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E841418A-B263-40AB-9F16-7F603AA7B6A1}]
AllMyWeb Toolbar - C:\Program Files\allmywebtb\AllMyWebDx.dll [2010-08-12 86696]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F0DA78E9-6B60-42fb-BC26-EF2CFB8C8FF3}]
Norton Safe Web Lite BHO - C:\Program Files\Norton Safe Web Lite\Engine\1.2.0.7\coIEPlg.dll [2010-12-17 433592]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-10-22 517688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{E841418A-B263-40AB-9F16-7F603AA7B6A1} - AllMyWeb Toolbar - C:\Program Files\allmywebtb\AllMyWebDx.dll [2010-08-12 86696]
{C7C9FC25-88B0-4682-9C9F-2608E9117647} - Toolbar - Big Fish Games - C:\Program Files\bfgbartb\BfgBarDx.dll [2010-09-13 86696]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll [2011-01-05 988480]
{EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - Winamp Toolbar - C:\Program Files\Winamp Toolbar\winamptb.dll [2010-07-28 1267024]
{D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-09-28 1400712]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll [2012-02-17 281600]
{30CEEEA2-3742-40e4-85DD-812BF1CBB83D} - Norton Safe Web Lite - C:\Program Files\Norton Safe Web Lite\Engine\1.2.0.7\coIEPlg.dll [2010-12-17 433592]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-03-07 1003704]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2012-03-15 192112]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2008-02-13 4915200]
"Skytel"=C:\Windows\Skytel.exe [2007-11-20 1826816]
"hpqSRMon"= []
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-09-30 98304]
"ATICustomerCare"=C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe [2010-05-04 311296]
"WinampAgent"=C:\Program Files\Winamp\winampa.exe [2010-11-30 74752]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-04-08 254696]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-03 843712]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2012-03-07 4241512]
"KiesTrayAgent"=C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [2011-12-27 3508624]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-11 1233920]
"Seznam Postak"=C:\Users\ROMAN\AppData\Local\Seznam.cz\bin\postak.exe [2012-01-10 491040]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2010-04-01 357696]
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-21 125952]
"Kalendar"=C:\Program Files\Kalendar\kalendar.exe [2005-11-09 580608]
"KiesHelper"=C:\Program Files\Samsung\Kies\KiesHelper.exe [2011-12-27 937360]
"KiesPDLR"=C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [2011-12-27 21392]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2012-02-29 17148552]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"FlashPlayerUpdate"=C:\Windows\system32\Macromed\Flash\FlashUtil11f_Plugin.exe [2012-02-29 250016]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AppleSyncNotifier]
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe [2011-11-02 59240]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon]
C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [2012-02-20 59240]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSGamerOSD]
C:\Program Files\ASUS\GamerOSD\GamerOSD.exe [2008-09-08 380928]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivX Download Manager]
C:\Program Files\DivX\DivX Plus Web Player\DDmService.exe [2010-12-08 63360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate]
C:\Program Files\DivX\DivX Update\DivXUpdate.exe [2011-03-21 1230704]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Exetender_298]
C:\Program Files\Frag Games\GPlayer.exe [2010-10-27 4889600]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GameXN]
C:\ProgramData\GameXN\GameXNGO.exe [2012-01-01 347008]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GameXN (news)]
C:\ProgramData\GameXN\GameXNGO.exe [2012-01-01 347008]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GameXN (update)]
C:\ProgramData\GameXN\GameXNGO.exe [2012-01-01 347008]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
C:\Program Files\iTunes\iTunesHelper.exe [2012-03-06 421736]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LifeCam]
C:\Program Files\Microsoft LifeCam\LifeExp.exe [2009-03-17 157552]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MobileDocuments]
C:\Program Files\Common Files\Apple\Internet Services\ubd.exe [2012-02-23 59240]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSC]
c:\Program Files\Microsoft Security Client\msseces.exe [2012-03-26 931200]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\QTTask.exe [2011-10-24 421888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2010-12-14 39408]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
C:\PROGRA~1\HP\DIGITA~1\bin\hpqtra08.exe [2008-03-25 214360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk]
C:\PROGRA~1\MCAFEE~1\20DEB9~1.181\SSSCHE~1.EXE [2010-01-15 255536]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^ROMAN^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk]
C:\PROGRA~1\MICROS~4\Office12\ONENOTEM.EXE [2009-02-26 97680]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"vidc.asv2"=asusasv2.dll
"vidc.XVID"=xvidvfw.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"msacm.siren"=sirenacm.dll
"VIDC.FMVC"=fmcodec.dll
"vidc.DIVX"=DivX.dll
"vidc.yv12"=DivX.dll
"wave4"=wdmaud.drv
"mixer4"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2012-06-25 17:35:43 ----D---- C:\Program Files\trend micro
2012-06-25 17:35:42 ----D---- C:\rsit
2012-06-25 17:27:16 ----D---- C:\Windows\pss
2012-06-21 20:31:07 ----A---- C:\Windows\system32\wups2.dll
2012-06-21 20:31:07 ----A---- C:\Windows\system32\wucltux.dll
2012-06-21 20:31:07 ----A---- C:\Windows\system32\wuaueng.dll
2012-06-21 20:31:07 ----A---- C:\Windows\system32\wuauclt.exe
2012-06-21 20:30:37 ----A---- C:\Windows\system32\wuwebv.dll
2012-06-21 20:30:37 ----A---- C:\Windows\system32\wuapp.exe
2012-06-14 03:02:39 ----A---- C:\Windows\system32\mshtmled.dll
2012-06-14 03:02:39 ----A---- C:\Windows\system32\iertutil.dll
2012-06-14 03:02:38 ----A---- C:\Windows\system32\ieUnatt.exe
2012-06-14 03:02:38 ----A---- C:\Windows\system32\ieui.dll
2012-06-14 03:02:37 ----A---- C:\Windows\system32\wininet.dll
2012-06-14 03:02:37 ----A---- C:\Windows\system32\url.dll
2012-06-14 03:02:36 ----A---- C:\Windows\system32\jsproxy.dll
2012-06-14 03:02:36 ----A---- C:\Windows\system32\jscript9.dll
2012-06-14 03:02:36 ----A---- C:\Windows\system32\jscript.dll
2012-06-14 03:02:34 ----A---- C:\Windows\system32\urlmon.dll
2012-06-14 03:02:33 ----A---- C:\Windows\system32\mshtml.dll
2012-06-14 03:02:31 ----A---- C:\Windows\system32\ieframe.dll
2012-06-13 19:19:06 ----A---- C:\Windows\system32\cryptsvc.dll
2012-06-13 19:19:06 ----A---- C:\Windows\system32\cryptnet.dll
2012-06-13 19:19:06 ----A---- C:\Windows\system32\crypt32.dll
2012-06-13 19:18:45 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2012-06-13 19:18:44 ----A---- C:\Windows\system32\win32k.sys

======List of files/folders modified in the last 1 month======

2012-06-25 17:35:59 ----D---- C:\Windows\Prefetch
2012-06-25 17:35:45 ----D---- C:\Windows\Temp
2012-06-25 17:35:43 ----RD---- C:\Program Files
2012-06-25 17:27:16 ----D---- C:\Windows
2012-06-25 17:26:13 ----D---- C:\ProgramData\GameXN
2012-06-25 17:09:53 ----D---- C:\Windows\system32\catroot2
2012-06-25 17:09:49 ----SHD---- C:\System Volume Information
2012-06-25 16:56:26 ----D---- C:\Users\ROMAN\AppData\Roaming\Skype
2012-06-25 16:56:26 ----D---- C:\Users\ROMAN\AppData\Roaming\go
2012-06-21 20:51:43 ----D---- C:\Windows\rescache
2012-06-21 20:32:00 ----D---- C:\Windows\System32
2012-06-21 20:31:55 ----D---- C:\Windows\winsxs
2012-06-21 20:31:47 ----D---- C:\Windows\system32\cs-CZ
2012-06-21 20:31:24 ----D---- C:\Windows\system32\catroot
2012-06-20 18:13:05 ----D---- C:\Program Files\Common Files\Symantec Shared
2012-06-14 03:47:10 ----D---- C:\Windows\Microsoft.NET
2012-06-14 03:46:43 ----RSD---- C:\Windows\assembly
2012-06-14 03:36:19 ----D---- C:\Windows\system32\migration
2012-06-14 03:36:19 ----D---- C:\Windows\system32\drivers
2012-06-14 03:36:19 ----D---- C:\Program Files\Internet Explorer
2012-06-14 03:14:52 ----SHD---- C:\Windows\Installer
2012-06-14 03:14:50 ----HD---- C:\Config.Msi
2012-06-14 03:14:50 ----D---- C:\ProgramData\Microsoft Help
2012-06-14 03:12:38 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-06-14 03:12:37 ----D---- C:\Windows\inf
2012-06-14 03:07:37 ----A---- C:\Windows\system32\mrt.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2012-03-20 171064]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-12-21 691696]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2012-03-07 35672]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2012-03-07 612184]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2012-03-07 337880]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2012-03-07 53848]
R1 EIO;EIO Driver; C:\Windows\system32\DRIVERS\EIO.sys [2010-12-14 12800]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2012-03-07 20696]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2012-03-07 57688]
R2 X6XSEx_Pr298;X6XSEx_Pr298; \??\C:\Program Files\Frag Games\X6XSEx.Sys [2010-11-22 46184]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-09-29 6472192]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-09-29 228352]
R3 asusgsb;ASUS Virtual Video Capture Device Driver; C:\Windows\system32\drivers\asusgsb.sys [2008-09-08 15232]
R3 ASUSVRC;ASUSTeK Virtual Capture Device; C:\Windows\system32\DRIVERS\AsusVRC.sys [2007-01-29 18432]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdLH3.sys [2010-08-16 100368]
R3 atkdisplf;ASUS Kernel Mode Enhanced Driver; C:\Windows\system32\drivers\ATKDispLowFilter.sys [2008-09-08 30976]
R3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2012-06-21 16608]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2009-05-18 26600]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2008-02-14 2061528]
R3 MSHUSBVideo;NX6000/NX3000/VX5000/VX5500/VX2000/VX7000 Filter Driver; C:\Windows\System32\Drivers\nx6000.sys [2009-03-17 30560]
R3 RTL8023xp;Realtek 10/100 NIC Family NDIS x86 Driver; C:\Windows\system32\DRIVERS\Rtnicxp.sys [2006-11-25 50688]
R3 RTL8169;Realtek 8169 NT Driver; C:\Windows\system32\DRIVERS\Rtlh86.sys [2008-01-25 106496]
R3 usbaudio;Ovladač zvuků USB (WDM); C:\Windows\system32\drivers\usbaudio.sys [2009-04-11 73216]
R3 usbvideo;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
S1 iyepyzfx;iyepyzfx; \??\C:\Windows\system32\drivers\iyepyzfx.sys []
S3 ajbuqcma;ajbuqcma; C:\Windows\system32\drivers\ajbuqcma.sys []
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver; C:\Windows\System32\Drivers\ssadadb.sys [2011-10-27 30312]
S3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-09-29 6472192]
S3 Dot4;Ovladač MS IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4.sys [2008-01-21 131584]
S3 Dot4Print;Ovladač třídy tiskárny standardu IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2008-01-21 16384]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2008-01-21 36864]
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-09-23 39272]
S3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 Netaapl;Apple Mobile Device Ethernet Service; C:\Windows\system32\DRIVERS\netaapl.sys [2011-08-02 18432]
S3 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2012-03-20 74112]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\ssadbus.sys [2011-10-27 121064]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter); C:\Windows\system32\DRIVERS\ssadmdfl.sys [2011-10-27 12776]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers; C:\Windows\system32\DRIVERS\ssadmdm.sys [2011-10-27 136808]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM); C:\Windows\system32\DRIVERS\ssadserd.sys [2011-10-27 114280]
S3 sscdbus;SAMSUNG USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\sscdbus.sys [2011-10-27 104648]
S3 sscdmdfl;SAMSUNG Mobile Modem Filter; C:\Windows\system32\DRIVERS\sscdmdfl.sys [2011-10-27 14920]
S3 sscdmdm;SAMSUNG Mobile Modem Drivers; C:\Windows\system32\DRIVERS\sscdmdm.sys [2011-10-27 132424]
S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys [2012-02-15 43520]
S3 usbbus;LGE Mobile Composite USB Device; C:\Windows\system32\DRIVERS\lgusbbus.sys [2010-01-21 13056]
S3 UsbDiag;LGE Mobile USB Serial Port; C:\Windows\system32\DRIVERS\lgusbdiag.sys [2010-01-21 20864]
S3 USBModem;LGE Mobile USB Modem; C:\Windows\system32\DRIVERS\lgusbmodem.sys [2010-01-21 24960]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-21 35328]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-01-03 63928]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-09-29 176128]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2012-02-27 55144]
R2 ASDR;ASDR; C:\Windows\System32\ASDR.exe [2007-03-20 61440]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2012-03-07 44768]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 390504]
R2 ES lite Service;ES lite Service for program management.; C:\Program Files\Gigabyte\EasySaver\ESSVR.EXE [2008-07-17 80392]
R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service; c:\PROGRA~1\mcafee\SITEAD~1\mcsacore.exe [2012-01-13 95200]
R2 MSCamSvc;MSCamSvc; C:\Program Files\Microsoft LifeCam\MSCamS32.exe [2009-03-17 161632]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2012-03-26 11552]
R2 NAUpdate;@C:\Program Files\Nero\Update\NASvc.exe,-200; C:\Program Files\Nero\Update\NASvc.exe [2010-05-04 503080]
R2 NSL;Norton Safe Web Lite; C:\Program Files\Norton Safe Web Lite\Engine\1.2.0.7\ccSvcHst.exe [2010-11-24 130000]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2011-04-15 75136]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 1710464]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2012-03-06 821608]
R3 WPFFontCache_v0400;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S2 ATKFUSService;ATK Fast User Switch Service; C:\Windows\system32\ATKFUSService.exe [2008-09-08 67072]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-12-14 136176]
S2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-21 21504]
S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-21 21504]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-02-29 158856]
S3 Boonty Games;Boonty Games; C:\Program Files\Common Files\BOONTY Shared\Service\Boonty.exe [2011-11-23 69120]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2010-09-23 1493352]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-12-14 136176]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-12-14 182768]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 McComponentHostService;McAfee Security Scan Component Host Service; C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe [2010-01-15 227232]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2012-03-26 214952]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 51040]

-----------------EOF-----------------

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu - občasné přetěžování CPU

#2 Příspěvek od vyosek »

Zdravim a pekny vecer preji :)

:arrow: Doporucuji odinstalovat (pokud nepouzivate) toolbary (listy prohlizecu) v Přidat nebo odebrat programy. Mate tam opravdu solidni sbirecku a to jsou strasne brzdy systemu
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{E841418A-B263-40AB-9F16-7F603AA7B6A1} - AllMyWeb Toolbar - C:\Program Files\allmywebtb\AllMyWebDx.dll [2010-08-12 86696]
{C7C9FC25-88B0-4682-9C9F-2608E9117647} - Toolbar - Big Fish Games - C:\Program Files\bfgbartb\BfgBarDx.dll [2010-09-13 86696]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll [2011-01-05 988480]
{EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - Winamp Toolbar - C:\Program Files\Winamp Toolbar\winamptb.dll [2010-07-28 1267024]
{D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-09-28 1400712]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll [2012-02-17 281600]
{30CEEEA2-3742-40e4-85DD-812BF1CBB83D} - Norton Safe Web Lite - C:\Program Files\Norton Safe Web Lite\Engine\1.2.0.7\coIEPlg.dll [2010-12-17 433592]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-03-07 1003704]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2012-03-15 192112]
:arrow: Stahnete OTL http://oldtimer.geekstogo.com/OTL.exe a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na OTL pravym a dejte Run As Administrator ci Spustit jako spravce
  • Pokud pouzivate 64bitovy OS, zkontrolujte, zda-li je zaskrtnuty ctverecek u Pro 64 bitové OS, pokud ne, zaskrtnete jej
  • Zaskrtnete okenko Pro vsechny uzivatele
  • Zaskrtnete okenko Kontrola na havet "LOP"
  • Zaskrtnete okenko Kontrola na havet "Purity"
  • Stari souboru zmente z 30 dnu na 7 dnu
  • Do spodniho okenka Vlastni skenovani/opravy vlozte skript nize
  • Kód: Vybrat vše

    CREATERESTOREPOINT
    
    netsvcs
    drivers32
    savembr:0
    
    /md5start
    atapi.sys
    autochk.exe
    cdrom.sys
    explorer.exe
    hal.dll
    scecli.dll
    svchost.exe
    tcpip.sys
    userinit.exe
    winlogon.exe
    /md5stop
    
    %systemroot%*.* /U /s
    %SYSTEMDRIVE%\*.exe
    %ALLUSERSPROFILE%\Application Data\*.
    %ALLUSERSPROFILE%\Application Data\*.exe /s
    %APPDATA%\*.
    %APPDATA%\*.exe /s
    %systemroot%\*. /mp /s
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\Tasks\*.job
    %systemroot%\system32\drivers\*.sys /lockedfiles
    %systemroot%\System32\config\*.sav
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\system32\drivers\*.sys /3
    %systemroot%\system32\*.* /3
    %SYSTEMDRIVE%\*.exe
    
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
    
    %PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5
    %PROGRAMFILES%\Internet Explorer\iexplore.exe /md5
    %PROGRAMFILES%\Opera\opera.exe /md5
    %PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5
    
    %SystemDrive%\PhysicalMBR.bin /md5 
    
    *crack* /s
    *keygen* /s
    *loader* /s
  • Kliknete na tlacitko Prohledat
  • Po dokonceni skenu (cca 10 az 15 min) se objevi logy OTL.txt a Extras.txt, oba sem vlozte
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Small_John
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 29 zář 2008 22:51

Re: Prosím o kontrolu - občasné přetěžování CPU

#3 Příspěvek od Small_John »

Zdravím, děkuji, že jste se mě ujal :)
PC patří známému, který při instalacích nevěnuje příliš pozornosti podstrkávaným toolbarům a dalšímu obtížnému hmyzu. Při vhodné příležitosti se jej pokusím instruovat :). Scan trval poměrně dlouho (téměř hodinu), zde jsou logy, bohužel mi je dotyčný zasílal mailem přímo jako text, nikoli jako přílohu, proto nevím, který z nich je který. Doufám, že to nezpůsobí komplikace.

Log 1
Log 2

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu - občasné přetěžování CPU

#4 Příspěvek od vyosek »

Logy sem davejte primo, lepe se lusti...Ja si sem OTL.txt vlozim

TL logfile created on: 28.6.2012 18:16:28 - Run 1
OTL by OldTimer - Version 3.2.53.0 Folder = C:\Users\ROMAN\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

3,00 Gb Total Physical Memory | 1,38 Gb Available Physical Memory | 46,09% Memory free
6,21 Gb Paging File | 3,65 Gb Available in Paging File | 58,72% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 690,82 Gb Total Space | 353,47 Gb Free Space | 51,17% Space Free | Partition Type: NTFS
Drive L: | 14,63 Gb Total Space | 3,25 Gb Free Space | 22,19% Space Free | Partition Type: FAT32

Computer Name: ROMAN-PC | User Name: ROMAN | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days

========== Processes (SafeList) ==========

PRC - [2012.06.28 18:11:19 | 000,596,992 | ---- | M] (OldTimer Tools) -- C:\Users\ROMAN\Desktop\OTL.exe
PRC - [2012.03.26 17:08:12 | 000,931,200 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Client\msseces.exe
PRC - [2012.03.26 17:03:40 | 000,011,552 | ---- | M] (Microsoft Corporation) -- c:\Program Files\Microsoft Security Client\MsMpEng.exe
PRC - [2012.03.07 01:15:17 | 004,241,512 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2012.03.07 01:15:14 | 000,044,768 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2012.02.23 13:30:40 | 000,059,240 | ---- | M] (Apple Inc.) -- C:\Program Files\Common Files\Apple\Internet Services\ubd.exe
PRC - [2012.01.10 16:16:10 | 000,491,040 | ---- | M] () -- C:\Users\ROMAN\AppData\Local\Seznam.cz\bin\postak.exe
PRC - [2012.01.03 15:10:42 | 000,063,928 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2012.01.01 14:35:16 | 000,347,008 | ---- | M] (EasyBits Software AS) -- C:\ProgramData\GameXN\GameXNGO.exe
PRC - [2011.12.27 16:21:18 | 000,021,392 | ---- | M] () -- C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
PRC - [2011.12.27 16:21:08 | 003,508,624 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
PRC - [2011.12.21 15:21:40 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2011.03.21 23:10:00 | 001,230,704 | ---- | M] () -- C:\Program Files\DivX\DivX Update\DivXUpdate.exe
PRC - [2010.12.08 23:15:44 | 000,063,360 | ---- | M] (DivX, LLC) -- C:\Program Files\DivX\DivX Plus Web Player\DDMService.exe
PRC - [2010.11.30 15:19:40 | 000,074,752 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files\Winamp\winampa.exe
PRC - [2010.09.29 03:51:26 | 000,380,928 | ---- | M] (AMD) -- C:\Windows\System32\atieclxx.exe
PRC - [2010.09.29 03:50:58 | 000,176,128 | ---- | M] (AMD) -- C:\Windows\System32\atiesrxx.exe
PRC - [2010.05.04 13:07:22 | 000,503,080 | ---- | M] (Nero AG) -- C:\Program Files\Nero\Update\NASvc.exe
PRC - [2010.04.01 11:16:20 | 000,357,696 | ---- | M] (DT Soft Ltd) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe
PRC - [2010.01.15 14:49:20 | 000,255,536 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe
PRC - [2009.04.11 08:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2009.04.11 08:27:28 | 000,069,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\conime.exe
PRC - [2009.03.17 15:24:06 | 000,161,632 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft LifeCam\MSCamS32.exe
PRC - [2008.09.08 18:08:48 | 000,380,928 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files\ASUS\GamerOSD\GamerOSD.exe
PRC - [2008.07.17 14:21:34 | 000,080,392 | ---- | M] () -- C:\Program Files\Gigabyte\EasySaver\essvr.exe
PRC - [2008.02.13 07:52:10 | 004,915,200 | ---- | M] (Realtek Semiconductor) -- C:\Windows\RtHDVCpl.exe
PRC - [2007.03.20 18:16:12 | 000,061,440 | ---- | M] () -- C:\Windows\System32\ASDR.exe
PRC - [2005.11.09 22:12:44 | 000,580,608 | ---- | M] () -- C:\Program Files\Kalendar\kalendar.exe


========== Modules (No Company Name) ==========

MOD - [2012.06.14 03:45:09 | 011,820,032 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\508b444db523c5cf20ff12c7f440837b\System.Web.ni.dll
MOD - [2012.06.14 03:43:16 | 012,433,920 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\f2691cfa7671cdc58179e56ba9227591\System.Windows.Forms.ni.dll
MOD - [2012.06.14 03:43:09 | 001,592,320 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\18f9789aa214c657113e676b3a9015aa\System.Drawing.ni.dll
MOD - [2012.06.14 03:13:50 | 013,198,336 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\00a4922fbf869a79c043b665035516b6\System.Windows.Forms.ni.dll
MOD - [2012.06.14 03:07:21 | 018,019,840 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\d239f585ee55f833dbe21e897e1265ac\PresentationFramework.ni.dll
MOD - [2012.06.14 03:07:08 | 011,522,048 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationCore\b7de318e9fd1ef519ca6c1f3b5dba8e0\PresentationCore.ni.dll
MOD - [2012.06.14 03:06:59 | 001,666,048 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\4230ed1c7990e4ee8352baf67a2a85fa\System.Drawing.ni.dll
MOD - [2012.06.14 03:06:58 | 003,881,984 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\WindowsBase\a6e37a05b8d0cedbc5c3ea266ae3fc31\WindowsBase.ni.dll
MOD - [2012.05.13 13:10:41 | 000,771,584 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\846b9cf2756fdd15f704c9bab9c70b6f\System.Runtime.Remoting.ni.dll
MOD - [2012.05.13 13:10:12 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\bd76aaaa03ddc15d1840207b5a480644\System.Configuration.ni.dll
MOD - [2012.05.13 13:08:42 | 005,450,752 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\d2630342a066a7cb9056d9eb6157687a\System.Xml.ni.dll
MOD - [2012.05.13 13:07:39 | 007,953,408 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\28d633338fc8d29f8af31935ef7d001b\System.ni.dll
MOD - [2012.05.13 13:07:33 | 011,492,352 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\af9c9e9d7e0523cd444f8b551baa9cbf\mscorlib.ni.dll
MOD - [2012.05.11 08:14:41 | 001,218,560 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Management\d0e1cdaff8f9055187f8e7b52c060dff\System.Management.ni.dll
MOD - [2012.05.11 08:11:11 | 000,595,968 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\608d29d7cc89f3a9a195c91354561915\PresentationFramework.Aero.ni.dll
MOD - [2012.05.11 08:08:50 | 000,762,880 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Remo#\31fab24c51c0cfe8b8115f24545f169f\System.Runtime.Remoting.ni.dll
MOD - [2012.05.11 08:08:41 | 001,782,272 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xaml\b68bee05c7e518172982cc92059c3315\System.Xaml.ni.dll
MOD - [2012.05.11 08:05:34 | 007,069,184 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\09bd2126bba2ab4f29ed52afde1470d7\System.Core.ni.dll
MOD - [2012.05.11 08:05:32 | 005,617,664 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml\9abe44a0f82070ead5f1256683a4d25a\System.Xml.ni.dll
MOD - [2012.05.11 08:05:26 | 009,092,096 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System\a6be120e49f895ef6b00e9918402395b\System.ni.dll
MOD - [2012.05.11 08:05:21 | 014,414,336 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\c1af4ec9a36f671617a8ecaec00373f4\mscorlib.ni.dll
MOD - [2012.01.10 16:16:10 | 000,491,040 | ---- | M] () -- C:\Users\ROMAN\AppData\Local\Seznam.cz\bin\postak.exe
MOD - [2012.01.10 14:51:40 | 000,822,816 | ---- | M] () -- C:\Users\ROMAN\AppData\Local\Seznam.cz\bin\email.4.dll
MOD - [2012.01.10 14:51:14 | 001,151,520 | ---- | M] () -- C:\Users\ROMAN\AppData\Local\Seznam.cz\bin\core.4.dll
MOD - [2012.01.01 14:27:48 | 000,115,137 | ---- | M] () -- C:\Users\ROMAN\AppData\Local\Temp\bad4021e-8b96-4726-a482-7caebf5bc001\CliSecureRT.dll
MOD - [2011.12.27 16:21:18 | 000,021,392 | ---- | M] () -- C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
MOD - [2011.12.21 15:21:39 | 001,989,592 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll
MOD - [2011.09.27 08:23:00 | 000,087,912 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2011.09.27 08:22:40 | 001,242,472 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
MOD - [2011.03.21 23:10:36 | 000,096,112 | ---- | M] () -- C:\Program Files\DivX\DivX Update\DivXUpdateCheck.dll
MOD - [2011.03.21 23:10:00 | 001,230,704 | ---- | M] () -- C:\Program Files\DivX\DivX Update\DivXUpdate.exe
MOD - [2010.09.30 23:36:20 | 000,270,336 | ---- | M] () -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
MOD - [2010.09.29 03:13:06 | 000,023,040 | ---- | M] () -- C:\Windows\System32\atitmpxx.dll
MOD - [2010.08.04 16:58:06 | 000,016,384 | R--- | M] () -- C:\Program Files\ATI Technologies\ATI.ACE\Branding\Branding.dll
MOD - [2010.03.15 12:28:24 | 000,141,824 | ---- | M] () -- C:\Program Files\WinRAR\RarExt.dll
MOD - [2009.03.31 20:04:50 | 000,303,104 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_cs_b77a5c561934e089\mscorlib.resources.dll
MOD - [2008.09.08 18:08:50 | 001,073,152 | ---- | M] () -- C:\Program Files\ASUS\GamerOSD\ImageTransform.dll
MOD - [2008.09.08 18:08:48 | 000,184,320 | ---- | M] () -- C:\Program Files\ASUS\GamerOSD\AudioOnVistaDLL.dll
MOD - [2005.11.09 22:12:44 | 000,580,608 | ---- | M] () -- C:\Program Files\Kalendar\kalendar.exe


========== Win32 Services (SafeList) ==========

SRV - [2012.03.26 17:03:40 | 000,214,952 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- c:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV - [2012.03.26 17:03:40 | 000,011,552 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV - [2012.03.07 01:15:14 | 000,044,768 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV - [2012.02.29 08:50:48 | 000,158,856 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2012.01.27 01:00:34 | 000,827,456 | ---- | M] (McAfee, Inc.) [Auto | Stopped] -- C:\Users\ROMAN\AppData\Local\Temp\0266541340899778mcinst.exe -- (0266541340899778mcinstcleanup) McAfee Application Installer Cleanup (0266541340899778)
SRV - [2012.01.03 15:10:42 | 000,063,928 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2011.11.23 22:44:04 | 000,069,120 | ---- | M] (BOONTY) [On_Demand | Stopped] -- C:\Program Files\Common Files\BOONTY Shared\Service\Boonty.exe -- (Boonty Games)
SRV - [2010.09.29 03:50:58 | 000,176,128 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\System32\atiesrxx.exe -- (AMD External Events Utility)
SRV - [2010.05.04 13:07:22 | 000,503,080 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files\Nero\Update\NASvc.exe -- (NAUpdate)
SRV - [2010.01.15 14:49:20 | 000,227,232 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe -- (McComponentHostService)
SRV - [2009.03.17 15:24:06 | 000,161,632 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft LifeCam\MSCamS32.exe -- (MSCamSvc)
SRV - [2008.09.08 18:08:52 | 000,067,072 | ---- | M] (ASUSTeK COMPUTER INC.) [Auto | Stopped] -- C:\Windows\System32\ATKFUSService.exe -- (ATKFUSService)
SRV - [2008.07.17 14:21:34 | 000,080,392 | ---- | M] () [Auto | Running] -- C:\Program Files\Gigabyte\EasySaver\essvr.exe -- (ES lite Service)
SRV - [2008.01.21 04:23:32 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2007.03.20 18:16:12 | 000,061,440 | ---- | M] () [Auto | Running] -- C:\Windows\System32\ASDR.exe -- (ASDR)


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\nwlnkfwd.sys -- (NwlnkFwd)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\nwlnkflt.sys -- (NwlnkFlt)
DRV - File not found [Kernel | System | Stopped] -- C:\Windows\system32\drivers\iyepyzfx.sys -- (iyepyzfx)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ipinip.sys -- (IpInIp)
DRV - File not found [Kernel | On_Demand | Unknown] -- -- (ajbuqcma)
DRV - [2012.06.21 20:25:26 | 000,016,608 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Running] -- C:\Windows\gdrv.sys -- (gdrv)
DRV - [2012.03.20 20:44:12 | 000,074,112 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\NisDrvWFP.sys -- (NisDrv)
DRV - [2012.03.07 01:03:51 | 000,612,184 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\System32\drivers\aswSnx.sys -- (aswSnx)
DRV - [2012.03.07 01:03:38 | 000,337,880 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswSP.sys -- (aswSP)
DRV - [2012.03.07 01:02:00 | 000,035,672 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswRdr.sys -- (aswRdr)
DRV - [2012.03.07 01:01:53 | 000,053,848 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2012.03.07 01:01:48 | 000,057,688 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\System32\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV - [2012.03.07 01:01:30 | 000,020,696 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2011.10.27 03:25:52 | 000,132,424 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\sscdmdm.sys -- (sscdmdm)
DRV - [2011.10.27 03:25:52 | 000,104,648 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\sscdbus.sys -- (sscdbus) SAMSUNG USB Composite Device driver (WDM)
DRV - [2011.10.27 03:25:52 | 000,014,920 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\sscdmdfl.sys -- (sscdmdfl)
DRV - [2011.10.27 03:25:40 | 000,136,808 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadmdm.sys -- (ssadmdm)
DRV - [2011.10.27 03:25:40 | 000,121,064 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadbus.sys -- (ssadbus) SAMSUNG Android USB Composite Device driver (WDM)
DRV - [2011.10.27 03:25:40 | 000,114,280 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadserd.sys -- (ssadserd) SAMSUNG Android USB Diagnostic Serial Port (WDM)
DRV - [2011.10.27 03:25:40 | 000,030,312 | ---- | M] (Google Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadadb.sys -- (androidusb)
DRV - [2011.10.27 03:25:40 | 000,012,776 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadmdfl.sys -- (ssadmdfl) SAMSUNG Android USB Modem (Filter)
DRV - [2011.08.02 18:38:44 | 000,018,432 | ---- | M] (Apple Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\netaapl.sys -- (Netaapl)
DRV - [2010.12.21 21:40:14 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\drivers\sptd.sys -- (sptd)
DRV - [2010.12.14 19:10:53 | 000,012,800 | ---- | M] (ASUSTeK Computer Inc.) [Kernel | System | Running] -- C:\Windows\System32\drivers\EIO.sys -- (EIO)
DRV - [2010.11.22 11:25:22 | 000,046,184 | ---- | M] (Exent Technologies Ltd.) [Kernel | Auto | Running] -- C:\Program Files\Frag Games\X6XSEx.sys -- (X6XSEx_Pr298)
DRV - [2010.09.29 04:25:14 | 006,472,192 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\atikmdag.sys -- (atikmdag)
DRV - [2010.09.29 04:25:14 | 006,472,192 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\atikmdag.sys -- (amdkmdag)
DRV - [2010.09.29 03:14:30 | 000,228,352 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\atikmpag.sys -- (amdkmdap)
DRV - [2010.08.16 12:41:42 | 000,100,368 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AtihdLH3.sys -- (AtiHDAudioService)
DRV - [2010.01.21 02:59:58 | 000,020,864 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\lgusbdiag.sys -- (UsbDiag)
DRV - [2010.01.21 02:59:56 | 000,024,960 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\lgusbmodem.sys -- (USBModem)
DRV - [2010.01.21 02:59:56 | 000,013,056 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\lgusbbus.sys -- (usbbus)
DRV - [2009.03.17 15:24:06 | 000,030,560 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nx6000.sys -- (MSHUSBVideo)
DRV - [2008.09.08 18:08:54 | 000,030,976 | ---- | M] (ASUSTeK Computer Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ATKDispLowFilter.sys -- (atkdisplf)
DRV - [2008.09.08 18:08:54 | 000,015,232 | ---- | M] (ASUSTeK Computer Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\asusgsb.sys -- (asusgsb)
DRV - [2008.01.25 10:46:40 | 000,106,496 | ---- | M] (Realtek Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Rtlh86.sys -- (RTL8169)
DRV - [2007.01.29 18:12:52 | 000,018,432 | ---- | M] (ASUSTeK COMPUTER INC.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AsusVRC.sys -- (ASUSVRC)
DRV - [2006.11.25 02:40:50 | 000,050,688 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Rtnicxp.sys -- (RTL8023xp)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchT ... urceid=ie7
IE - HKLM\..\SearchScopes\{EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C}: "URL" = http://slirsredirect.search.aol.com/sli ... 0winampie7


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\URLSearchHook: {0063BF63-BFFF-4B8F-9D26-4267DF7F17DD} - C:\Windows\System32\dvmurl.dll (DeviceVM Inc.)
IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTer ... ORM=IE8SRC
IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}: "URL" = http://websearch.ask.com/redirect?clien ... 9C44C7FA60
IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\SearchScopes\{39260754-d9da-4eb8-bd84-a5c70728f243}: "URL" = http://www.mapy.cz/?query={searchTerms} ... Listicka_2
IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}: "URL" = http://search.yahoo.com/search?fr=chr-b ... }&ei=UTF-8
IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\SearchScopes\{5F970FDE-702B-4ef9-920C-5F2848A5AF26}: "URL" = http://www.astroburn-search.com/search/ ... earchTerms}
IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\SearchScopes\{63db6949-b46e-49b6-9fa7-94fb508d474f}: "URL" = http://www.zbozi.cz/?q={searchTerms}&r= ... Listicka_2
IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchT ... FA_csCZ410
IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\SearchScopes\{8AC6A820-04D7-4340-9896-55A5186FAE29}: "URL" = http://search.yahoo.com/search?fr=mcafee&p={SearchTerms}
IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\SearchScopes\{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8}: "URL" = http://www.daemon-search.com/search/web?q={searchTerms}
IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\SearchScopes\{ea22e708-e0a3-4de6-a2b1-19c728a38339}: "URL" = http://www.firmy.cz/phr/{searchTerms}?s ... Listicka_2
IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\SearchScopes\{EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C}: "URL" = http://slirsredirect.search.aol.com/sli ... 0winampie7
IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\SearchScopes\{f0132828-70cb-42ae-b4dd-c57a91b55cf9}: "URL" = http://search.seznam.cz/?q={searchTerms ... Listicka_2
IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\SearchScopes\{FD63BF63-BFFF-4B8F-9D26-4267DF7F17DD}: "URL" = http://www.google.com/custom?q={searchT ... BFORID%3A1
IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

========== FireFox ==========

FF - prefs.js..browser.search.defaultenginename: "Bezpečné vyhledávání"
FF - prefs.js..browser.search.defaultthis.engineName: "BS Player Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.as ... earchTerms}"
FF - prefs.js..browser.search.selectedEngine: ""
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.seznam.cz/?clid=3"
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: DTToolbar@toolbarnet.com:1.1.6.0143
FF - prefs.js..extensions.enabledItems: {6847DFAE-037A-400c-A524-27F0A281B692}:2.1
FF - prefs.js..extensions.enabledItems: {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}:3.3.3.2
FF - prefs.js..extensions.enabledItems: {23fcfd51-4958-4f00-80a3-ae97e717ed8b}:2.1.0.900
FF - prefs.js..extensions.enabledItems: {6904342A-8307-11DF-A508-4AE2DFD72085}:2.1.0.900
FF - prefs.js..extensions.enabledItems: {B7082FAA-CB62-4872-9106-E42DD88EDE45}:3.3.1
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems: engine@conduit.com:3.3.3.2
FF - prefs.js..extensions.enabledItems: {203FB6B2-2E1E-4474-863B-4C483ECCE78E}:1.2.0
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}:6.0.26
FF - prefs.js..keyword.URL: "http://search.conduit.com/ResultsExt.as ... 1750559&q="
FF - prefs.js..network.proxy.type: 0
FF - user.js - File not found

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010.12.14 21:27:29 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files\DivX\DivX Plus Web Player\firefox\html5video [2011.01.09 13:40:44 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{6904342A-8307-11DF-A508-4AE2DFD72085}: C:\Program Files\DivX\DivX Plus Web Player\firefox\wpa [2011.01.09 13:40:44 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{ea614400-e918-4741-9a97-7a972ff7c30b}: C:\Users\ROMAN\AppData\Local\Seznam.cz\firefox [2011.10.09 11:02:58 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011.12.21 15:21:41 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012.04.13 19:12:04 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010.12.14 21:27:29 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{ea614400-e918-4741-9a97-7a972ff7c30b}: C:\Users\ROMAN\AppData\Local\Seznam.cz\firefox [2011.10.09 11:02:58 | 000,000,000 | ---D | M]

[2010.12.14 21:45:29 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ROMAN\AppData\Roaming\Mozilla\Extensions
[2012.06.28 18:07:49 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\extensions
[2011.01.26 20:53:01 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2012.01.25 20:11:06 | 000,000,000 | ---D | M] (Seznam lištička) -- C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
[2012.05.31 11:57:14 | 000,000,000 | ---D | M] (BS Player Community Toolbar) -- C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}
[2012.04.23 07:54:23 | 000,000,000 | ---D | M] (České slovníky pro kontrolu pravopisu) -- C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\extensions\cs@dictionaries.addons.mozilla.org
[2010.12.23 11:39:16 | 000,002,071 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\searchplugins\absearch-search.xml
[2010.11.23 13:02:32 | 000,000,921 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\searchplugins\conduit.xml
[2010.12.21 21:41:00 | 000,002,059 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\searchplugins\daemon-search.xml
[2011.01.10 20:15:16 | 000,001,196 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\searchplugins\winamp-search.xml
[2012.01.01 14:40:45 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2012.05.07 11:34:53 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2011.08.03 18:28:31 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\distribution\extensions
[2011.08.03 18:28:31 | 000,000,000 | ---D | M] (Seznam lištička) -- C:\Program Files\Mozilla Firefox\distribution\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
[2012.05.02 20:19:27 | 000,000,000 | ---D | M] (avast! WebRep) -- C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\WEBREP\FF
[2011.12.21 15:21:41 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2011.05.04 04:52:23 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
[2010.11.30 15:20:46 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files\mozilla firefox\plugins\npwachk.dll
[2011.12.21 15:21:38 | 000,002,208 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\heureka-cz.xml
[2011.12.21 15:21:38 | 000,000,638 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\jyxo-cz.xml
[2011.09.27 22:02:57 | 000,002,036 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\McSiteAdvisor.xml
[2011.12.21 15:21:38 | 000,001,367 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\seznam-cz.xml
[2011.12.21 15:21:38 | 000,000,654 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\slunecnice-cz.xml
[2011.12.21 15:21:38 | 000,001,179 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-cz.xml

========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files\Google\Chrome\Application\19.0.1084.52\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\system32\Macromed\Flash\NPSWF32.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll
CHR - plugin: Java Deployment Toolkit 6.0.260.3 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java(TM) Platform SE 6 U26 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\Windows\system32\Adobe\Director\np32dsw.dll
CHR - plugin: DivX Web Player (Enabled) = C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
CHR - plugin: 2007 Microsoft Office system (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPOFF12.DLL
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files\Google\Chrome\Application\19.0.1084.52\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files\Google\Chrome\Application\19.0.1084.52\pdf.dll
CHR - plugin: McAfee SiteAdvisor (Enabled) = C:\Users\ROMAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.40.135.1_0\McChPlg.dll
CHR - plugin: McAfee SiteAdvisor (Enabled) = C:\Program Files\McAfee\SiteAdvisor\npmcffplg32.dll
CHR - plugin: Winamp Application Detector (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npwachk.dll
CHR - plugin: DivX VOD Helper Plug-in (Enabled) = C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll
CHR - plugin: Google Earth Plugin (Enabled) = C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files\Google\Update\1.3.21.69\npGoogleUpdate3.dll
CHR - plugin: Windows Live\u0099 Photo Gallery (Enabled) = C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: Windows Presentation Foundation (Enabled) = c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: YouTube = C:\Users\ROMAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Vyhled\u00E1v\u00E1n\u00ED Google = C:\Users\ROMAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: SiteAdvisor = C:\Users\ROMAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.41.123.2_0\
CHR - Extension: DivX HiQ = C:\Users\ROMAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\fnjbmmemklcjgepojigaapkoodmkgbae\2.1.0.900_0\
CHR - Extension: avast! WebRep = C:\Users\ROMAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\7.0.1426_0\
CHR - Extension: Skype Click to Call = C:\Users\ROMAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.9.0.9216_0\
CHR - Extension: DivX Plus Web Player HTML5 \u003Cvideo\u003E = C:\Users\ROMAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.0.900_0\
CHR - Extension: Gmail = C:\Users\ROMAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

O1 HOSTS File: ([2006.09.18 23:41:30 | 000,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
O2 - BHO: (DivX HiQ) - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O3 - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3 - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\Toolbar\WebBrowser: (no name) - {30CEEEA2-3742-40E4-85DD-812BF1CBB83D} - No CLSID value found.
O3 - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\Toolbar\WebBrowser: (no name) - {32099AAC-C132-4136-9E9A-4E364A424E17} - No CLSID value found.
O3 - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
O4 - HKLM..\Run: [ATICustomerCare] C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [hpqSRMon] File not found
O4 - HKLM..\Run: [KiesTrayAgent] C:\Program Files\Samsung\Kies\KiesTrayAgent.exe (Samsung Electronics Co., Ltd.)
O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe (Nullsoft, Inc.)
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKU\.DEFAULT..\Run: [Exetender_298] C:\Program Files\Frag Games\GPlayer.exe (Exent Technologies Ltd.)
O4 - HKU\S-1-5-18..\Run: [Exetender_298] C:\Program Files\Frag Games\GPlayer.exe (Exent Technologies Ltd.)
O4 - HKU\S-1-5-19..\Run: [Exetender_298] C:\Program Files\Frag Games\GPlayer.exe (Exent Technologies Ltd.)
O4 - HKU\S-1-5-19..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Exetender_298] C:\Program Files\Frag Games\GPlayer.exe (Exent Technologies Ltd.)
O4 - HKU\S-1-5-20..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
O4 - HKU\S-1-5-21-199209832-2736622147-2862102349-1000..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKU\S-1-5-21-199209832-2736622147-2862102349-1000..\Run: [Kalendar] C:\Program Files\Kalendar\kalendar.exe ()
O4 - HKU\S-1-5-21-199209832-2736622147-2862102349-1000..\Run: [KiesHelper] C:\Program Files\Samsung\Kies\KiesHelper.exe (Samsung)
O4 - HKU\S-1-5-21-199209832-2736622147-2862102349-1000..\Run: [KiesPDLR] C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe ()
O4 - HKU\S-1-5-21-199209832-2736622147-2862102349-1000..\Run: [Seznam Postak] C:\Users\ROMAN\AppData\Local\Seznam.cz\bin\postak.exe ()
O4 - HKU\S-1-5-21-199209832-2736622147-2862102349-1000..\RunOnce: [FlashPlayerUpdate] C:\Windows\System32\Macromed\Flash\FlashUtil11f_Plugin.exe (Adobe Systems, Inc.)
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MI1933~1\Office12\EXCEL.EXE/3000 File not found
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O16 - DPF: {149E45D8-163E-4189-86FC-45022AB2B6C9} file:///C:/Program%20Files/Bejeweled%203/Images/stg_drm.ocx (SpinTop DRM Control)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shoc ... tor/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CC450D71-CC90-424C-8638-1F2DBAC87A54} file:///C:/Program%20Files/Bejeweled%203/Images/armhelper.ocx (ArmHelper Control)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{8E219ABB-EDB2-44E4-A167-3D8D1845D862}: DhcpNameServer = 93.153.117.33 93.153.117.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{926D16F1-F3E9-4F3E-8BC4-AB8F3240A2A7}: DhcpNameServer = 192.168.1.1
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Users\ROMAN\AppData\Roaming\Microsoft\Windows Photo Gallery\Tapeta galerie Windows Fotogalerie.jpg
O24 - Desktop BackupWallPaper: C:\Users\ROMAN\AppData\Roaming\Microsoft\Windows Photo Gallery\Tapeta galerie Windows Fotogalerie.jpg
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006.09.18 23:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\{5f83509e-525d-11e0-8cb4-0050fcfab085}\Shell - "" = AutoRun
O33 - MountPoints2\{5f83509e-525d-11e0-8cb4-0050fcfab085}\Shell\AutoRun\command - "" = K:\LGAutoRun.exe
O33 - MountPoints2\{666dd1b0-0d3a-11e0-b288-0050fcfab085}\Shell - "" = AutoRun
O33 - MountPoints2\{666dd1b0-0d3a-11e0-b288-0050fcfab085}\Shell\AutoRun\command - "" = I:\SETUP.EXE
O33 - MountPoints2\{666dd1b0-0d3a-11e0-b288-0050fcfab085}\Shell\configure\command - "" = I:\SETUP.EXE
O33 - MountPoints2\{666dd1b0-0d3a-11e0-b288-0050fcfab085}\Shell\install\command - "" = I:\SETUP.EXE
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - C:\Windows\System32\ias.dll (Microsoft Corporation)
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: SRService - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found

Drivers32: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: MSVideo8 - C:\Windows\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.asv2 - C:\Windows\System32\ASUSASV2.DLL ()
Drivers32: vidc.cvid - C:\Windows\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.DIVX - C:\Windows\System32\DivX.dll (DivX, Inc.)
Drivers32: VIDC.FMVC - C:\Windows\System32\fmcodec.DLL (Fox Magic Software)
Drivers32: vidc.XVID - C:\Windows\System32\xvidvfw.dll ()
Drivers32: vidc.yv12 - C:\Windows\System32\DivX.dll (DivX, Inc.)
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin

========== Files/Folders - Created Within 7 Days ==========

[2012.06.28 18:11:08 | 000,596,992 | ---- | C] (OldTimer Tools) -- C:\Users\ROMAN\Desktop\OTL.exe
[2012.06.25 17:35:43 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2012.06.25 17:35:42 | 000,000,000 | ---D | C] -- C:\rsit
[2012.06.25 17:27:16 | 000,000,000 | ---D | C] -- C:\Windows\pss
[2012.06.21 20:31:07 | 002,422,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wucltux.dll
[2012.06.21 20:31:07 | 000,045,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wups2.dll
[2012.06.21 20:30:37 | 000,171,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuwebv.dll
[2012.06.21 20:30:37 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuapp.exe
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files - Modified Within 7 Days ==========

[2012.06.28 18:20:58 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2012.06.28 18:11:19 | 000,596,992 | ---- | M] (OldTimer Tools) -- C:\Users\ROMAN\Desktop\OTL.exe
[2012.06.28 18:09:32 | 000,000,000 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\$McRebootA5E6DEAA56$.lnk
[2012.06.28 18:02:10 | 000,000,934 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2012.06.28 18:02:08 | 000,000,938 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012.06.28 18:02:07 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012.06.28 08:03:31 | 000,002,675 | ---- | M] () -- C:\Users\ROMAN\Desktop\Microsoft Office Word 2007.lnk
[2012.06.28 08:03:29 | 000,003,840 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2012.06.28 08:03:28 | 000,003,840 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2012.06.27 21:37:25 | 000,000,406 | -H-- | M] () -- C:\Windows\tasks\Norton Security Scan for ROMAN.job
[2012.06.21 20:25:26 | 000,016,608 | ---- | M] (Windows (R) 2000 DDK provider) -- C:\Windows\gdrv.sys
[2012.06.21 20:24:57 | 3219,644,416 | -HS- | M] () -- C:\hiberfil.sys
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files Created - No Company Name ==========

[2012.06.28 18:20:58 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2012.06.28 18:09:32 | 000,000,000 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\$McRebootA5E6DEAA56$.lnk
[2012.05.20 15:19:02 | 000,032,768 | ---- | C] () -- C:\Windows\System32\drivers\sp_rsdrv2.sys
[2012.02.28 20:57:37 | 000,000,064 | ---- | C] () -- C:\Windows\GPlrLanc.dat
[2011.11.29 17:38:18 | 000,030,568 | ---- | C] () -- C:\Windows\MusiccityDownload.exe
[2011.11.29 17:38:12 | 000,974,848 | ---- | C] () -- C:\Windows\System32\cis-2.4.dll
[2011.11.29 17:38:12 | 000,081,920 | ---- | C] () -- C:\Windows\System32\issacapi_bs-2.3.dll
[2011.11.29 17:38:12 | 000,065,536 | ---- | C] () -- C:\Windows\System32\issacapi_pe-2.3.dll
[2011.11.29 17:38:12 | 000,057,344 | ---- | C] () -- C:\Windows\System32\issacapi_se-2.3.dll
[2011.09.19 20:30:50 | 000,000,239 | ---- | C] () -- C:\Users\ROMAN\AppData\Roaming\prefsdb.dat
[2011.04.15 12:11:12 | 000,189,248 | ---- | C] () -- C:\Windows\System32\PnkBstrB.exe
[2011.04.15 12:11:10 | 000,075,136 | ---- | C] () -- C:\Windows\System32\PnkBstrA.exe
[2011.03.26 12:43:11 | 000,302,592 | ---- | C] () -- C:\Windows\mauninst.exe
[2010.12.28 14:10:15 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2010.12.21 21:23:09 | 000,078,207 | ---- | C] () -- C:\Windows\hpqins05.dat
[2010.12.20 18:01:43 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2010.12.20 18:01:43 | 000,107,612 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2010.12.18 12:28:13 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2010.12.17 20:08:53 | 000,000,059 | ---- | C] () -- C:\ProgramData\user.ini
[2010.12.14 21:28:03 | 000,023,735 | ---- | C] () -- C:\Windows\hpqins15.dat.temp
[2010.12.14 21:27:09 | 000,023,353 | ---- | C] () -- C:\Windows\hpqins15.dat
[2010.12.14 20:41:13 | 000,186,153 | ---- | C] () -- C:\Windows\hpoins29.dat
[2010.12.14 19:21:55 | 000,000,010 | ---- | C] () -- C:\Windows\GSetup.ini
[2010.12.14 19:09:38 | 000,761,856 | ---- | C] () -- C:\Windows\System32\xvidcore.dll
[2010.12.14 19:09:38 | 000,180,224 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll
[2010.12.14 18:11:32 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2010.12.14 18:05:01 | 003,107,788 | ---- | C] () -- C:\Windows\System32\atiumdva.dat
[2010.12.14 17:40:16 | 000,001,100 | ---- | C] () -- C:\Users\ROMAN\AppData\Local\d3d8caps.dat
[2010.12.14 08:22:49 | 000,201,728 | ---- | C] () -- C:\Users\ROMAN\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.12.13 19:13:45 | 000,007,728 | ---- | C] () -- C:\Users\ROMAN\AppData\Local\d3d9caps.dat
[2010.09.29 03:13:06 | 000,023,040 | ---- | C] () -- C:\Windows\System32\atitmpxx.dll
[2010.08.11 15:24:20 | 000,224,342 | ---- | C] () -- C:\Windows\System32\atiicdxx.dat

========== LOP Check ==========

[2011.02.05 19:27:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Alawar
[2012.02.17 20:51:34 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Alawar Entertainment
[2011.09.01 20:17:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Alawar Stargaze
[2011.08.22 21:38:47 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Anarchy
[2012.02.23 20:50:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Artifex Mundi
[2011.08.08 21:37:21 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Artogon
[2010.12.23 11:38:51 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Astroburn Lite
[2011.01.19 15:58:43 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Aveyond 3
[2011.09.19 21:57:03 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Awem
[2011.07.24 20:12:16 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Az-Art
[2012.05.20 21:07:10 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Big Fish Games
[2012.01.23 21:09:35 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Blue Tea Games
[2011.09.14 20:34:47 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Boolat Games
[2012.02.05 22:18:28 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Boomzap
[2011.11.05 21:55:28 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Braintonik
[2011.01.23 09:43:41 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\BSplayer
[2010.12.28 15:01:46 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\BSplayer Pro
[2011.08.01 21:17:17 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Camel101
[2011.09.29 21:38:29 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Casual Arts
[2011.08.29 22:02:55 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Casual Box
[2011.11.19 00:20:35 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\casualArts
[2011.09.08 21:33:49 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\CattaleGames
[2012.02.05 22:49:13 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\cerasus.media
[2011.11.14 22:33:50 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Colibri Games
[2011.09.25 21:22:48 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Crown
[2011.03.14 22:24:01 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\CursedOnboard
[2010.12.22 19:51:14 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\DAEMON Tools Lite
[2011.08.21 20:37:46 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\DailyMagic
[2012.04.05 22:05:19 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Digital Quarter
[2011.01.31 18:55:16 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\DivoGames
[2011.09.07 21:16:13 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\DragonsEye Studios
[2011.03.01 16:10:47 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Dying for Daylight
[2011.03.01 16:13:19 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Dying for Daylight Shared
[2012.05.13 22:41:51 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\EleFun Games
[2012.05.20 21:48:41 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Elephant Games
[2011.08.19 22:02:51 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Enki Games
[2012.05.08 21:04:42 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\ERS Game Studios
[2011.12.07 21:13:09 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Fanda Games
[2012.03.25 21:13:06 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Fenomen Games
[2011.10.17 21:49:19 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Floodlight Games
[2011.10.02 22:34:33 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\FlyWheelGames
[2010.12.14 08:18:22 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Free PDF Tablet
[2011.09.11 00:06:48 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Freeze Tag
[2012.05.08 19:38:11 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Friday's games
[2010.12.15 20:39:23 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Frogwares
[2011.10.22 20:43:11 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Fugazo
[2010.12.20 08:24:52 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\funkitron
[2011.08.09 20:53:04 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Funswitch
[2011.03.01 16:38:52 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Fuzzy Bug Interactive
[2011.08.26 23:21:38 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\GameInvest
[2011.09.23 23:10:45 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\GameMill Entertainment
[2011.03.06 14:19:25 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\GAMGO
[2011.08.01 21:17:10 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\GarageGames
[2012.06.28 18:01:56 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\go
[2012.03.06 21:50:59 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Gogii
[2011.07.24 21:21:50 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Happy Muffin Top
[2011.10.09 21:47:32 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\HdO Adventure
[2011.04.13 13:52:41 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\HitPoint Studios
[2011.10.10 20:53:53 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\In search of the Lost Temple
[2011.10.22 20:15:36 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\IronCode
[2011.08.16 21:48:33 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Islands
[2011.09.07 22:42:27 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Jetdogs Studios
[2011.03.13 11:05:14 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Jewel Match 3
[2011.10.31 20:37:02 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\KranX Productions
[2011.08.03 21:46:03 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Lazy Turtle Games
[2011.09.05 21:35:04 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\LestaStudio
[2011.01.25 22:36:04 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\LittleGamesCompany
[2011.01.09 13:40:46 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Local
[2010.12.17 18:29:50 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Lunascape
[2011.04.10 11:25:46 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\MagicIndie
[2011.03.06 13:30:49 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\margrave3_full
[2011.08.01 22:50:03 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\margrave3_se
[2012.02.19 21:35:20 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Mariaglorum
[2010.12.22 23:00:43 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Maxthon2
[2011.07.26 21:53:56 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\md studio
[2011.12.28 20:52:28 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\MediaArt
[2011.11.13 21:20:34 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Meridian93
[2012.05.23 23:59:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Millennium_Saves
[2011.09.25 21:38:35 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\MoMB_Full_Eng
[2011.08.21 21:38:50 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Monkey Barrel Games
[2011.08.29 22:30:57 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\MumboJumbo
[2011.08.05 22:35:32 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\My Games
[2010.12.18 22:04:06 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Mystery of Mortlake Mansion
[2011.01.27 21:24:10 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Namco
[2010.12.17 18:05:06 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Opera
[2012.02.19 22:36:48 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Orneon
[2011.09.19 20:31:33 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\perfect future studio
[2011.01.12 22:52:58 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Phantasmat_bf_ce1
[2011.02.08 20:29:39 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Phantasmat_bf_se1
[2012.01.30 20:26:00 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\PlayFavoriteGames
[2011.10.09 21:50:52 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\PlayFirst
[2011.12.04 20:36:30 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\PlayPond
[2011.11.05 22:54:06 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Playrix Entertainment
[2011.04.15 12:11:06 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\PunkBuster
[2012.02.01 21:51:28 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Rainbow
[2011.07.17 20:50:50 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Rovio
[2012.01.01 14:21:37 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Samsung
[2010.12.27 23:16:50 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Shape games
[2012.05.24 00:04:14 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Silverback Productions
[2011.09.18 21:40:00 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Skunk Studios
[2011.12.21 15:22:35 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\SlimBrowser
[2012.01.12 22:00:27 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Spark Plug Games
[2011.08.30 19:00:46 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Specialbit
[2011.11.23 22:00:21 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\SpinTop
[2011.09.25 21:47:50 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\SpinTop Games
[2011.12.12 23:38:18 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\SulusGames
[2012.01.01 14:31:16 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Temp
[2011.09.27 22:03:38 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Ten Heavens
[2011.01.15 23:14:02 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\TFS2
[2011.01.27 20:15:20 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\TikisLab
[2011.04.10 10:20:49 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\TOMI3
[2012.02.21 20:41:30 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Top Evidence
[2011.10.09 20:54:59 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Total Eclipse
[2011.09.23 20:16:22 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\TrickySoftware
[2011.11.13 22:25:33 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Twilight Games
[2011.02.06 13:11:22 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Ubisoft
[2011.12.28 21:30:39 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\UpdateTemp330246672
[2011.09.01 22:00:23 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Vast Studios
[2011.08.30 21:14:48 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\VendelGAMES
[2011.02.03 18:30:16 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Virtual Prophecy
[2011.12.26 23:44:35 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Vogat Interactive
[2011.08.14 21:00:43 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\WendigoStudios
[2011.02.09 18:50:27 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\WhiteBirdsProductions
[2011.03.21 10:40:59 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Windows Live Writer
[2012.04.06 20:16:30 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\YoudaGames
[2012.06.20 22:30:05 | 000,032,512 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

========== Purity Check ==========
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu - občasné přetěžování CPU

#5 Příspěvek od vyosek »

========== Custom Scans ==========

< >

< >

< MD5 for: ATAPI.SYS >
[2009.04.11 08:32:26 | 000,019,944 | ---- | M] (Microsoft Corporation) MD5=1F05B78AB91C9075565A9D8A4B880BC4 -- C:\Windows\System32\drivers\atapi.sys
[2009.04.11 08:32:26 | 000,019,944 | ---- | M] (Microsoft Corporation) MD5=1F05B78AB91C9075565A9D8A4B880BC4 -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_b12d8e84\atapi.sys
[2009.04.11 08:32:26 | 000,019,944 | ---- | M] (Microsoft Corporation) MD5=1F05B78AB91C9075565A9D8A4B880BC4 -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6002.18005_none_df23a1261eab99e8\atapi.sys
[2008.01.21 04:23:00 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 -- C:\Windows.old.000\Windows\System32\drivers\atapi.sys
[2008.01.21 04:23:00 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 -- C:\Windows.old.000\Windows\System32\DriverStore\FileRepository\mshdc.inf_cc18792d\atapi.sys
[2008.01.21 04:23:00 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 -- C:\Windows.old.000\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6001.18000_none_dd38281a2189ce9c\atapi.sys
[2008.01.21 04:23:00 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 -- C:\Windows.old\Windows\System32\drivers\atapi.sys
[2008.01.21 04:23:00 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 -- C:\Windows.old\Windows\System32\DriverStore\FileRepository\mshdc.inf_cc18792d\atapi.sys
[2008.01.21 04:23:00 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 -- C:\Windows.old\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6001.18000_none_dd38281a2189ce9c\atapi.sys
[2008.01.21 04:23:00 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_cc18792d\atapi.sys
[2008.01.21 04:23:00 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6001.18000_none_dd38281a2189ce9c\atapi.sys
[2006.11.02 11:49:36 | 000,019,048 | ---- | M] (Microsoft Corporation) MD5=4F4FCB8B6EA06784FB6D475B7EC7300F -- C:\Windows.old.000\Windows\System32\DriverStore\FileRepository\mshdc.inf_c6c2e699\atapi.sys
[2006.11.02 11:49:36 | 000,019,048 | ---- | M] (Microsoft Corporation) MD5=4F4FCB8B6EA06784FB6D475B7EC7300F -- C:\Windows.old\Windows\System32\DriverStore\FileRepository\mshdc.inf_c6c2e699\atapi.sys
[2006.11.02 11:49:36 | 000,019,048 | ---- | M] (Microsoft Corporation) MD5=4F4FCB8B6EA06784FB6D475B7EC7300F -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_c6c2e699\atapi.sys

< MD5 for: AUTOCHK.EXE >
[2009.04.11 08:27:20 | 000,643,072 | ---- | M] (Microsoft Corporation) MD5=10761177A6EBE45843F443E99509F5E7 -- C:\Windows\System32\autochk.exe
[2009.04.11 08:27:20 | 000,643,072 | ---- | M] (Microsoft Corporation) MD5=10761177A6EBE45843F443E99509F5E7 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.0.6002.18005_none_e3df6655bee2ee3b\autochk.exe
[2008.01.21 04:24:45 | 000,642,560 | ---- | M] (Microsoft Corporation) MD5=2FC5BE79B51714B479809358E4908FC3 -- C:\Windows.old.000\Windows\System32\autochk.exe
[2008.01.21 04:24:45 | 000,642,560 | ---- | M] (Microsoft Corporation) MD5=2FC5BE79B51714B479809358E4908FC3 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.0.6001.18000_none_e1f3ed49c1c122ef\autochk.exe
[2008.01.21 04:24:45 | 000,642,560 | ---- | M] (Microsoft Corporation) MD5=2FC5BE79B51714B479809358E4908FC3 -- C:\Windows.old\Windows\System32\autochk.exe
[2008.01.21 04:24:45 | 000,642,560 | ---- | M] (Microsoft Corporation) MD5=2FC5BE79B51714B479809358E4908FC3 -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.0.6001.18000_none_e1f3ed49c1c122ef\autochk.exe
[2008.01.21 04:24:45 | 000,642,560 | ---- | M] (Microsoft Corporation) MD5=2FC5BE79B51714B479809358E4908FC3 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.0.6001.18000_none_e1f3ed49c1c122ef\autochk.exe

< MD5 for: CDROM.SYS >
[2008.01.21 04:23:02 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=1EC25CEA0DE6AC4718BF89F9E1778B57 -- C:\Windows.old.000\Windows\System32\drivers\cdrom.sys
[2008.01.21 04:23:02 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=1EC25CEA0DE6AC4718BF89F9E1778B57 -- C:\Windows.old.000\Windows\System32\DriverStore\FileRepository\cdrom.inf_a29e71c6\cdrom.sys
[2008.01.21 04:23:02 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=1EC25CEA0DE6AC4718BF89F9E1778B57 -- C:\Windows.old.000\Windows\winsxs\x86_cdrom.inf_31bf3856ad364e35_6.0.6001.18000_none_5fa95be2a3c76a4a\cdrom.sys
[2008.01.21 04:23:02 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=1EC25CEA0DE6AC4718BF89F9E1778B57 -- C:\Windows.old\Windows\System32\drivers\cdrom.sys
[2008.01.21 04:23:02 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=1EC25CEA0DE6AC4718BF89F9E1778B57 -- C:\Windows.old\Windows\System32\DriverStore\FileRepository\cdrom.inf_a29e71c6\cdrom.sys
[2008.01.21 04:23:02 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=1EC25CEA0DE6AC4718BF89F9E1778B57 -- C:\Windows.old\Windows\winsxs\x86_cdrom.inf_31bf3856ad364e35_6.0.6001.18000_none_5fa95be2a3c76a4a\cdrom.sys
[2008.01.21 04:23:02 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=1EC25CEA0DE6AC4718BF89F9E1778B57 -- C:\Windows\System32\DriverStore\FileRepository\cdrom.inf_a29e71c6\cdrom.sys
[2008.01.21 04:23:02 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=1EC25CEA0DE6AC4718BF89F9E1778B57 -- C:\Windows\winsxs\x86_cdrom.inf_31bf3856ad364e35_6.0.6001.18000_none_5fa95be2a3c76a4a\cdrom.sys
[2009.04.11 06:39:17 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=6B4BFFB9BECD728097024276430DB314 -- C:\Windows\System32\drivers\cdrom.sys
[2009.04.11 06:39:17 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=6B4BFFB9BECD728097024276430DB314 -- C:\Windows\System32\DriverStore\FileRepository\cdrom.inf_c949a5b6\cdrom.sys
[2009.04.11 06:39:17 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=6B4BFFB9BECD728097024276430DB314 -- C:\Windows\winsxs\x86_cdrom.inf_31bf3856ad364e35_6.0.6002.18005_none_6194d4eea0e93596\cdrom.sys
[2006.11.02 10:51:44 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=8D1866E61AF096AE8B582454F5E4D303 -- C:\Windows.old.000\Windows\System32\DriverStore\FileRepository\cdrom.inf_e487f727\cdrom.sys
[2006.11.02 10:51:44 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=8D1866E61AF096AE8B582454F5E4D303 -- C:\Windows.old\Windows\System32\DriverStore\FileRepository\cdrom.inf_e487f727\cdrom.sys
[2006.11.02 10:51:44 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=8D1866E61AF096AE8B582454F5E4D303 -- C:\Windows\System32\DriverStore\FileRepository\cdrom.inf_e487f727\cdrom.sys

< MD5 for: EXPLORER.EXE >
[2008.10.29 08:20:29 | 002,923,520 | ---- | M] (Microsoft Corporation) MD5=37440D09DEAE0B672A04DCCF7ABF06BE -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6000.16771_none_4f83bb287ccdb7e3\explorer.exe
[2008.10.29 08:20:29 | 002,923,520 | ---- | M] (Microsoft Corporation) MD5=37440D09DEAE0B672A04DCCF7ABF06BE -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6000.16771_none_4f83bb287ccdb7e3\explorer.exe
[2008.10.29 08:20:29 | 002,923,520 | ---- | M] (Microsoft Corporation) MD5=37440D09DEAE0B672A04DCCF7ABF06BE -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6000.16771_none_4f83bb287ccdb7e3\explorer.exe
[2008.10.29 08:29:41 | 002,927,104 | ---- | M] (Microsoft Corporation) MD5=4F554999D7D5F05DAAEBBA7B5BA1089D -- C:\Windows.old.000\Windows\explorer.exe
[2008.10.29 08:29:41 | 002,927,104 | ---- | M] (Microsoft Corporation) MD5=4F554999D7D5F05DAAEBBA7B5BA1089D -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6001.18164_none_5177ca9879e978e8\explorer.exe
[2008.10.29 08:29:41 | 002,927,104 | ---- | M] (Microsoft Corporation) MD5=4F554999D7D5F05DAAEBBA7B5BA1089D -- C:\Windows.old\Windows\explorer.exe
[2008.10.29 08:29:41 | 002,927,104 | ---- | M] (Microsoft Corporation) MD5=4F554999D7D5F05DAAEBBA7B5BA1089D -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6001.18164_none_5177ca9879e978e8\explorer.exe
[2008.10.29 08:29:41 | 002,927,104 | ---- | M] (Microsoft Corporation) MD5=4F554999D7D5F05DAAEBBA7B5BA1089D -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6001.18164_none_5177ca9879e978e8\explorer.exe
[2008.10.30 05:59:17 | 002,927,616 | ---- | M] (Microsoft Corporation) MD5=50BA5850147410CDE89C523AD3BC606E -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6001.22298_none_51e4f8c7931bd1e1\explorer.exe
[2008.10.30 05:59:17 | 002,927,616 | ---- | M] (Microsoft Corporation) MD5=50BA5850147410CDE89C523AD3BC606E -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6001.22298_none_51e4f8c7931bd1e1\explorer.exe
[2008.10.30 05:59:17 | 002,927,616 | ---- | M] (Microsoft Corporation) MD5=50BA5850147410CDE89C523AD3BC606E -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6001.22298_none_51e4f8c7931bd1e1\explorer.exe
[2009.04.11 08:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) MD5=D07D4C3038F3578FFCE1C0237F2A1253 -- C:\Windows\explorer.exe
[2009.04.11 08:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) MD5=D07D4C3038F3578FFCE1C0237F2A1253 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6002.18005_none_53a0201e76de3a0b\explorer.exe
[2008.10.28 04:15:02 | 002,923,520 | ---- | M] (Microsoft Corporation) MD5=E7156B0B74762D9DE0E66BDCDE06E5FB -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6000.20947_none_5033cb5995cd990b\explorer.exe
[2008.10.28 04:15:02 | 002,923,520 | ---- | M] (Microsoft Corporation) MD5=E7156B0B74762D9DE0E66BDCDE06E5FB -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6000.20947_none_5033cb5995cd990b\explorer.exe
[2008.10.28 04:15:02 | 002,923,520 | ---- | M] (Microsoft Corporation) MD5=E7156B0B74762D9DE0E66BDCDE06E5FB -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6000.20947_none_5033cb5995cd990b\explorer.exe
[2008.01.21 04:24:24 | 002,927,104 | ---- | M] (Microsoft Corporation) MD5=FFA764631CB70A30065C12EF8E174F9F -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6001.18000_none_51b4a71279bc6ebf\explorer.exe
[2008.01.21 04:24:24 | 002,927,104 | ---- | M] (Microsoft Corporation) MD5=FFA764631CB70A30065C12EF8E174F9F -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6001.18000_none_51b4a71279bc6ebf\explorer.exe
[2008.01.21 04:24:24 | 002,927,104 | ---- | M] (Microsoft Corporation) MD5=FFA764631CB70A30065C12EF8E174F9F -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6001.18000_none_51b4a71279bc6ebf\explorer.exe

< MD5 for: HAL.DLL >
[2008.01.21 04:23:01 | 000,177,208 | ---- | M] (Microsoft Corporation) MD5=A00B0EDD048786E30EBB2DA65D9A8F74 -- C:\Windows.old.000\Windows\System32\hal.dll
[2008.01.21 04:23:01 | 000,177,208 | ---- | M] (Microsoft Corporation) MD5=A00B0EDD048786E30EBB2DA65D9A8F74 -- C:\Windows.old\Windows\System32\hal.dll
[2009.04.11 08:32:46 | 000,177,128 | ---- | M] (Microsoft Corporation) MD5=B8D52005181A15D7D1470CBF2AF214DD -- C:\Windows\System32\hal.dll

< MD5 for: SCECLI.DLL >
[2008.01.21 04:24:50 | 000,177,152 | ---- | M] (Microsoft Corporation) MD5=28B84EB538F7E8A0FE8B9299D591E0B9 -- C:\Windows.old.000\Windows\System32\scecli.dll
[2008.01.21 04:24:50 | 000,177,152 | ---- | M] (Microsoft Corporation) MD5=28B84EB538F7E8A0FE8B9299D591E0B9 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.0.6001.18000_none_380de25bd91b6f12\scecli.dll
[2008.01.21 04:24:50 | 000,177,152 | ---- | M] (Microsoft Corporation) MD5=28B84EB538F7E8A0FE8B9299D591E0B9 -- C:\Windows.old\Windows\System32\scecli.dll
[2008.01.21 04:24:50 | 000,177,152 | ---- | M] (Microsoft Corporation) MD5=28B84EB538F7E8A0FE8B9299D591E0B9 -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.0.6001.18000_none_380de25bd91b6f12\scecli.dll
[2008.01.21 04:24:50 | 000,177,152 | ---- | M] (Microsoft Corporation) MD5=28B84EB538F7E8A0FE8B9299D591E0B9 -- C:\Windows\winsxs\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.0.6001.18000_none_380de25bd91b6f12\scecli.dll
[2009.04.11 08:28:24 | 000,177,152 | ---- | M] (Microsoft Corporation) MD5=8FC182167381E9915651267044105EE1 -- C:\Windows\System32\scecli.dll
[2009.04.11 08:28:24 | 000,177,152 | ---- | M] (Microsoft Corporation) MD5=8FC182167381E9915651267044105EE1 -- C:\Windows\winsxs\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.0.6002.18005_none_39f95b67d63d3a5e\scecli.dll

< MD5 for: SVCHOST.EXE >
[2008.01.21 04:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation) MD5=3794B461C45882E06856F282EEF025AF -- C:\Windows.old.000\Windows\System32\svchost.exe
[2008.01.21 04:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation) MD5=3794B461C45882E06856F282EEF025AF -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.0.6001.18000_none_b5bb59a1054dbde5\svchost.exe
[2008.01.21 04:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation) MD5=3794B461C45882E06856F282EEF025AF -- C:\Windows.old\Windows\System32\svchost.exe
[2008.01.21 04:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation) MD5=3794B461C45882E06856F282EEF025AF -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.0.6001.18000_none_b5bb59a1054dbde5\svchost.exe
[2008.01.21 04:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation) MD5=3794B461C45882E06856F282EEF025AF -- C:\Windows\System32\svchost.exe
[2008.01.21 04:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation) MD5=3794B461C45882E06856F282EEF025AF -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.0.6001.18000_none_b5bb59a1054dbde5\svchost.exe

< MD5 for: TCPIP.SYS >
[2008.04.26 10:08:16 | 000,891,448 | ---- | M] (Microsoft Corporation) MD5=01EC1E92595F839BEE70D439C46796E3 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22167_none_b36dd19b7fae39c7\tcpip.sys
[2008.04.26 10:08:16 | 000,891,448 | ---- | M] (Microsoft Corporation) MD5=01EC1E92595F839BEE70D439C46796E3 -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22167_none_b36dd19b7fae39c7\tcpip.sys
[2008.04.26 10:08:16 | 000,891,448 | ---- | M] (Microsoft Corporation) MD5=01EC1E92595F839BEE70D439C46796E3 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22167_none_b36dd19b7fae39c7\tcpip.sys
[2009.04.11 08:33:02 | 000,897,000 | ---- | M] (Microsoft Corporation) MD5=0E6B0885C3D5E4643ED2D043DE3433D8 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.18005_none_b5098b5e63880c42\tcpip.sys
[2011.09.20 23:02:55 | 000,913,280 | ---- | M] (Microsoft Corporation) MD5=16731B631F28F63CD9F4CB60940E7DDD -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.22719_none_b58c64c97caa1c43\tcpip.sys
[2009.12.08 22:52:30 | 000,897,624 | ---- | M] (Microsoft Corporation) MD5=1ACBB7A47E78F4CC82D2EFFB72901528 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.18377_none_b2d96a966698ad63\tcpip.sys
[2009.08.15 23:30:53 | 000,816,640 | ---- | M] (Microsoft Corporation) MD5=2512B4D1353370D6688B1AF1F5AFA1CF -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-tcpip_31bf3856ad364e35_6.0.6000.21108_none_6030d425ab49af00\tcpip.sys
[2009.08.15 23:30:53 | 000,816,640 | ---- | M] (Microsoft Corporation) MD5=2512B4D1353370D6688B1AF1F5AFA1CF -- C:\Windows\winsxs\x86_microsoft-windows-tcpip_31bf3856ad364e35_6.0.6000.21108_none_6030d425ab49af00\tcpip.sys
[2009.08.14 19:01:55 | 000,900,168 | ---- | M] (Microsoft Corporation) MD5=2608E71AAD54564647D4BB984E1925AA -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22497_none_b34d67897fc6850f\tcpip.sys
[2009.08.14 19:01:55 | 000,900,168 | ---- | M] (Microsoft Corporation) MD5=2608E71AAD54564647D4BB984E1925AA -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22497_none_b34d67897fc6850f\tcpip.sys
[2011.06.17 22:13:55 | 000,905,104 | ---- | M] (Microsoft Corporation) MD5=2756186E287139310997090797E0182B -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.18484_none_b4b2134c63c9c70f\tcpip.sys
[2012.03.30 14:39:11 | 000,905,600 | ---- | M] (Microsoft Corporation) MD5=27D470DABC77BC60D0A3B0E4DEB6CB91 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.18604_none_b50896786388e1d5\tcpip.sys
[2010.02.18 13:51:51 | 000,818,688 | ---- | M] (Microsoft Corporation) MD5=2C1F7005AA3B62721BFDB307BD5F5010 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-tcpip_31bf3856ad364e35_6.0.6000.21226_none_6019359fab5bb15b\tcpip.sys
[2010.02.18 13:51:51 | 000,818,688 | ---- | M] (Microsoft Corporation) MD5=2C1F7005AA3B62721BFDB307BD5F5010 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip_31bf3856ad364e35_6.0.6000.21226_none_6019359fab5bb15b\tcpip.sys
[2010.02.18 16:49:38 | 000,898,952 | ---- | M] (Microsoft Corporation) MD5=2EAE4500984C2F8DACFB977060300A15 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.18427_none_b30f7c1866701ed5\tcpip.sys
[2010.02.18 16:49:38 | 000,898,952 | ---- | M] (Microsoft Corporation) MD5=2EAE4500984C2F8DACFB977060300A15 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.18427_none_b30f7c1866701ed5\tcpip.sys
[2009.08.14 16:24:47 | 000,813,568 | ---- | M] (Microsoft Corporation) MD5=300208927321066EA53761FDC98747C6 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-tcpip_31bf3856ad364e35_6.0.6000.16908_none_5fa75f38922bdbf4\tcpip.sys
[2009.08.14 16:24:47 | 000,813,568 | ---- | M] (Microsoft Corporation) MD5=300208927321066EA53761FDC98747C6 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip_31bf3856ad364e35_6.0.6000.16908_none_5fa75f38922bdbf4\tcpip.sys
[2009.12.08 22:15:00 | 000,907,832 | ---- | M] (Microsoft Corporation) MD5=46E6685F3E92AEC743773ADD4CD54F57 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.22283_none_b53aaa1b7ce8560d\tcpip.sys
[2010.02.18 16:07:16 | 000,904,576 | ---- | M] (Microsoft Corporation) MD5=48CBE6D53632D0067C2D6B20F90D84CA -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.18209_none_b50d905263846bec\tcpip.sys
[2010.02.18 16:07:16 | 000,904,576 | ---- | M] (Microsoft Corporation) MD5=48CBE6D53632D0067C2D6B20F90D84CA -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.18209_none_b50d905263846bec\tcpip.sys
[2010.02.18 14:05:37 | 000,815,104 | ---- | M] (Microsoft Corporation) MD5=4A82FA8F0DF67AA354580C3FAAF8BDE3 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-tcpip_31bf3856ad364e35_6.0.6000.17021_none_5f8a957c924295b7\tcpip.sys
[2010.02.18 14:05:37 | 000,815,104 | ---- | M] (Microsoft Corporation) MD5=4A82FA8F0DF67AA354580C3FAAF8BDE3 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip_31bf3856ad364e35_6.0.6000.17021_none_5f8a957c924295b7\tcpip.sys
[2009.12.08 22:37:09 | 000,900,696 | ---- | M] (Microsoft Corporation) MD5=5653230D480A9C54D169E1B080B72CF5 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22577_none_b36309477fb64a54\tcpip.sys
[2010.06.16 17:55:58 | 000,902,032 | ---- | M] (Microsoft Corporation) MD5=6216A954ED7045B62880A92D6C9B9FC7 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22713_none_b39feb737f8937a0\tcpip.sys
[2010.06.16 17:55:58 | 000,902,032 | ---- | M] (Microsoft Corporation) MD5=6216A954ED7045B62880A92D6C9B9FC7 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22713_none_b39feb737f8937a0\tcpip.sys
[2009.08.14 18:27:34 | 000,904,776 | ---- | M] (Microsoft Corporation) MD5=65877AA1B6A7CB797488E831698973E9 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.18091_none_b4a43aea63d4a25f\tcpip.sys
[2009.08.14 18:27:34 | 000,904,776 | ---- | M] (Microsoft Corporation) MD5=65877AA1B6A7CB797488E831698973E9 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.18091_none_b4a43aea63d4a25f\tcpip.sys
[2011.06.17 22:13:55 | 000,913,296 | ---- | M] (Microsoft Corporation) MD5=6647FCE6FC4970DAAFE5C64C794513D3 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.22662_none_b54f51417cd8f970\tcpip.sys
[2010.06.16 18:39:32 | 000,912,776 | ---- | M] (Microsoft Corporation) MD5=6A10AFCE0B38371064BE41C1FBFD3C6B -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.22425_none_b57d8e037cb5db63\tcpip.sys
[2010.06.16 18:39:32 | 000,912,776 | ---- | M] (Microsoft Corporation) MD5=6A10AFCE0B38371064BE41C1FBFD3C6B -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.22425_none_b57d8e037cb5db63\tcpip.sys
[2010.06.16 17:59:54 | 000,898,952 | ---- | M] (Microsoft Corporation) MD5=782568AB6A43160A159B6215B70BCCE9 -- C:\Windows.old.000\Windows\System32\drivers\tcpip.sys
[2010.06.16 17:59:54 | 000,898,952 | ---- | M] (Microsoft Corporation) MD5=782568AB6A43160A159B6215B70BCCE9 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.18493_none_b2bfcb7c66ac7d10\tcpip.sys
[2010.06.16 17:59:54 | 000,898,952 | ---- | M] (Microsoft Corporation) MD5=782568AB6A43160A159B6215B70BCCE9 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.18493_none_b2bfcb7c66ac7d10\tcpip.sys
[2011.09.20 23:02:55 | 000,905,088 | ---- | M] (Microsoft Corporation) MD5=814A1C66FBD4E1B310A517221F1456BF -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.18519_none_b502c618638c7f52\tcpip.sys
[2008.04.26 10:26:49 | 000,891,448 | ---- | M] (Microsoft Corporation) MD5=82E266BEE5F0167E41C6ECFDD2A79C02 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.18063_none_b2e033a8669434a1\tcpip.sys
[2008.04.26 10:26:49 | 000,891,448 | ---- | M] (Microsoft Corporation) MD5=82E266BEE5F0167E41C6ECFDD2A79C02 -- C:\Windows.old\Windows\System32\drivers\tcpip.sys
[2008.04.26 10:26:49 | 000,891,448 | ---- | M] (Microsoft Corporation) MD5=82E266BEE5F0167E41C6ECFDD2A79C02 -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.18063_none_b2e033a8669434a1\tcpip.sys
[2008.04.26 10:26:49 | 000,891,448 | ---- | M] (Microsoft Corporation) MD5=82E266BEE5F0167E41C6ECFDD2A79C02 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.18063_none_b2e033a8669434a1\tcpip.sys
[2009.12.08 19:58:13 | 000,813,568 | ---- | M] (Microsoft Corporation) MD5=8734BD051FFDCBF8425CF222141C3741 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-tcpip_31bf3856ad364e35_6.0.6000.16973_none_5f56ae52926920d8\tcpip.sys
[2009.08.14 19:07:56 | 000,897,608 | ---- | M] (Microsoft Corporation) MD5=8A7AD2A214233F684242F289ED83EBC3 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.18311_none_b3144862666d6db3\tcpip.sys
[2009.08.14 19:07:56 | 000,897,608 | ---- | M] (Microsoft Corporation) MD5=8A7AD2A214233F684242F289ED83EBC3 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.18311_none_b3144862666d6db3\tcpip.sys
[2010.02.18 19:36:50 | 000,902,024 | ---- | M] (Microsoft Corporation) MD5=93A5655CD9CD2F080EF1CB71A3666215 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22636_none_b38d4a937f96be60\tcpip.sys
[2010.02.18 19:36:50 | 000,902,024 | ---- | M] (Microsoft Corporation) MD5=93A5655CD9CD2F080EF1CB71A3666215 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22636_none_b38d4a937f96be60\tcpip.sys
[2010.06.16 18:04:57 | 000,905,088 | ---- | M] (Microsoft Corporation) MD5=A474879AFA4A596B3A531F3E69730DBF -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.18272_none_b4baded863c37e22\tcpip.sys
[2010.06.16 18:04:57 | 000,905,088 | ---- | M] (Microsoft Corporation) MD5=A474879AFA4A596B3A531F3E69730DBF -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.18272_none_b4baded863c37e22\tcpip.sys
[2010.04.05 19:03:01 | 000,902,024 | ---- | M] (Microsoft Corporation) MD5=A6A02EF5B5E40FBD31A1ADC577DA54BB -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22665_none_b36bda857faff8dc\tcpip.sys
[2009.12.08 19:45:32 | 000,816,640 | ---- | M] (Microsoft Corporation) MD5=CA3A5756672013A66BB9D547A5A62DCA -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-tcpip_31bf3856ad364e35_6.0.6000.21175_none_5fe223d3ab852692\tcpip.sys
[2010.04.05 22:00:48 | 000,910,208 | ---- | M] (Microsoft Corporation) MD5=CC9993701AC57F995554C696DDA49C12 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.22377_none_b5497d157cdc9c9f\tcpip.sys
[2010.02.18 16:22:11 | 000,910,216 | ---- | M] (Microsoft Corporation) MD5=D9F5DD5BBC8348E8F8220CCBF14C022E -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.22341_none_b563eb1d7cc9b0c2\tcpip.sys
[2010.02.18 16:22:11 | 000,910,216 | ---- | M] (Microsoft Corporation) MD5=D9F5DD5BBC8348E8F8220CCBF14C022E -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.22341_none_b563eb1d7cc9b0c2\tcpip.sys
[2009.12.08 22:01:08 | 000,904,776 | ---- | M] (Microsoft Corporation) MD5=DA467E7619AE5F4588E6262C13C8940A -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.18160_none_b4c3ac4a63bd325c\tcpip.sys
[2012.03.30 14:39:11 | 000,914,304 | ---- | M] (Microsoft Corporation) MD5=EE7E10BED85C312C1D5D30C435BDDA9F -- C:\Windows\System32\drivers\tcpip.sys
[2012.03.30 14:39:11 | 000,914,304 | ---- | M] (Microsoft Corporation) MD5=EE7E10BED85C312C1D5D30C435BDDA9F -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.22828_none_b58096797cb31c04\tcpip.sys
[2008.01.21 04:25:03 | 000,891,448 | ---- | M] (Microsoft Corporation) MD5=FC6E2835D667774D409C7C7021EAF9C4 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.18000_none_b31e1252666640f6\tcpip.sys
[2008.01.21 04:25:03 | 000,891,448 | ---- | M] (Microsoft Corporation) MD5=FC6E2835D667774D409C7C7021EAF9C4 -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.18000_none_b31e1252666640f6\tcpip.sys
[2008.01.21 04:25:03 | 000,891,448 | ---- | M] (Microsoft Corporation) MD5=FC6E2835D667774D409C7C7021EAF9C4 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.18000_none_b31e1252666640f6\tcpip.sys
[2009.08.14 18:33:50 | 000,905,784 | ---- | M] (Microsoft Corporation) MD5=FF71856BD4CD6D4367F9FD84BE79A874 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.22200_none_b58e289d7caa2a80\tcpip.sys
[2009.08.14 18:33:50 | 000,905,784 | ---- | M] (Microsoft Corporation) MD5=FF71856BD4CD6D4367F9FD84BE79A874 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.22200_none_b58e289d7caa2a80\tcpip.sys

< MD5 for: USERINIT.EXE >
[2008.01.21 04:24:49 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=0E135526E9785D085BCD9AEDE6FBCBF9 -- C:\Windows.old.000\Windows\System32\userinit.exe
[2008.01.21 04:24:49 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=0E135526E9785D085BCD9AEDE6FBCBF9 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.0.6001.18000_none_dc28ba15d1aff80b\userinit.exe
[2008.01.21 04:24:49 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=0E135526E9785D085BCD9AEDE6FBCBF9 -- C:\Windows.old\Windows\System32\userinit.exe
[2008.01.21 04:24:49 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=0E135526E9785D085BCD9AEDE6FBCBF9 -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.0.6001.18000_none_dc28ba15d1aff80b\userinit.exe
[2008.01.21 04:24:49 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=0E135526E9785D085BCD9AEDE6FBCBF9 -- C:\Windows\System32\userinit.exe
[2008.01.21 04:24:49 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=0E135526E9785D085BCD9AEDE6FBCBF9 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.0.6001.18000_none_dc28ba15d1aff80b\userinit.exe

< MD5 for: WINLOGON.EXE >
[2009.04.11 08:28:13 | 000,314,368 | ---- | M] (Microsoft Corporation) MD5=898E7C06A350D4A1A64A9EA264D55452 -- C:\Windows\System32\winlogon.exe
[2009.04.11 08:28:13 | 000,314,368 | ---- | M] (Microsoft Corporation) MD5=898E7C06A350D4A1A64A9EA264D55452 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6002.18005_none_71ae7a22d2134741\winlogon.exe
[2008.01.21 04:24:49 | 000,314,880 | ---- | M] (Microsoft Corporation) MD5=C2610B6BDBEFC053BBDAB4F1B965CB24 -- C:\Windows.old.000\Windows\System32\winlogon.exe
[2008.01.21 04:24:49 | 000,314,880 | ---- | M] (Microsoft Corporation) MD5=C2610B6BDBEFC053BBDAB4F1B965CB24 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6001.18000_none_6fc30116d4f17bf5\winlogon.exe
[2008.01.21 04:24:49 | 000,314,880 | ---- | M] (Microsoft Corporation) MD5=C2610B6BDBEFC053BBDAB4F1B965CB24 -- C:\Windows.old\Windows\System32\winlogon.exe
[2008.01.21 04:24:49 | 000,314,880 | ---- | M] (Microsoft Corporation) MD5=C2610B6BDBEFC053BBDAB4F1B965CB24 -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6001.18000_none_6fc30116d4f17bf5\winlogon.exe
[2008.01.21 04:24:49 | 000,314,880 | ---- | M] (Microsoft Corporation) MD5=C2610B6BDBEFC053BBDAB4F1B965CB24 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6001.18000_none_6fc30116d4f17bf5\winlogon.exe

< >

< %systemroot%*.* /U /s >
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[9 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\a2e926930752ca7fa33e6e8fb13fc78e\*.tmp files -> C:\Windows\SoftwareDistribution\Download\a2e926930752ca7fa33e6e8fb13fc78e\*.tmp -> ]
[8 C:\Windows\Temp\*.tmp files -> C:\Windows\Temp\*.tmp -> ]
[5 C:\Windows\Temp\_avast_\*.tmp files -> C:\Windows\Temp\_avast_\*.tmp -> ]
[1 C:\Windows\twain_32\*.tmp files -> C:\Windows\twain_32\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >

< %ALLUSERSPROFILE%\Application Data\*.exe /s >

< %APPDATA%\*. >
[2011.04.04 06:40:55 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Adobe
[2011.02.05 19:27:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Alawar
[2012.02.17 20:51:34 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Alawar Entertainment
[2011.09.01 20:17:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Alawar Stargaze
[2011.08.22 21:38:47 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Anarchy
[2012.03.09 20:30:10 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Apple Computer
[2012.02.23 20:50:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Artifex Mundi
[2011.08.08 21:37:21 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Artogon
[2010.12.23 11:38:51 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Astroburn Lite
[2010.12.14 18:12:20 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\ATI
[2011.01.19 15:58:43 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Aveyond 3
[2011.09.19 21:57:03 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Awem
[2011.07.24 20:12:16 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Az-Art
[2012.05.20 21:07:10 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Big Fish Games
[2012.01.23 21:09:35 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Blue Tea Games
[2011.09.14 20:34:47 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Boolat Games
[2012.02.05 22:18:28 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Boomzap
[2011.11.05 21:55:28 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Braintonik
[2011.01.23 09:43:41 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\BSplayer
[2010.12.28 15:01:46 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\BSplayer Pro
[2011.08.01 21:17:17 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Camel101
[2011.09.29 21:38:29 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Casual Arts
[2011.08.29 22:02:55 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Casual Box
[2011.11.19 00:20:35 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\casualArts
[2011.09.08 21:33:49 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\CattaleGames
[2012.02.05 22:49:13 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\cerasus.media
[2011.11.14 22:33:50 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Colibri Games
[2011.09.25 21:22:48 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Crown
[2011.03.14 22:24:01 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\CursedOnboard
[2010.12.22 19:51:14 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\DAEMON Tools Lite
[2011.08.21 20:37:46 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\DailyMagic
[2012.04.05 22:05:19 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Digital Quarter
[2011.01.31 18:55:16 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\DivoGames
[2011.01.10 17:46:01 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\DivX
[2011.09.07 21:16:13 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\DragonsEye Studios
[2011.03.01 16:10:47 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Dying for Daylight
[2011.03.01 16:13:19 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Dying for Daylight Shared
[2012.05.13 22:41:51 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\EleFun Games
[2012.05.20 21:48:41 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Elephant Games
[2011.08.19 22:02:51 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Enki Games
[2012.05.08 21:04:42 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\ERS Game Studios
[2011.12.07 21:13:09 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Fanda Games
[2012.03.25 21:13:06 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Fenomen Games
[2011.10.17 21:49:19 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Floodlight Games
[2011.10.02 22:34:33 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\FlyWheelGames
[2010.12.14 08:18:22 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Free PDF Tablet
[2011.09.11 00:06:48 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Freeze Tag
[2012.05.08 19:38:11 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Friday's games
[2010.12.15 20:39:23 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Frogwares
[2011.10.22 20:43:11 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Fugazo
[2010.12.20 08:24:52 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\funkitron
[2011.08.09 20:53:04 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Funswitch
[2011.03.01 16:38:52 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Fuzzy Bug Interactive
[2011.08.26 23:21:38 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\GameInvest
[2011.09.23 23:10:45 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\GameMill Entertainment
[2011.03.06 14:19:25 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\GAMGO
[2011.08.01 21:17:10 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\GarageGames
[2012.06.28 18:01:56 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\go
[2012.03.06 21:50:59 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Gogii
[2010.12.14 18:40:52 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Google
[2011.07.24 21:21:50 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Happy Muffin Top
[2011.10.09 21:47:32 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\HdO Adventure
[2011.04.13 13:52:41 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\HitPoint Studios
[2012.02.27 16:30:44 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\HP
[2011.03.24 21:01:30 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\HpUpdate
[2010.12.13 19:13:58 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Identities
[2011.10.10 20:53:53 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\In search of the Lost Temple
[2010.12.14 19:36:08 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\InstallShield
[2011.10.22 20:15:36 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\IronCode
[2011.08.16 21:48:33 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Islands
[2011.09.07 22:42:27 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Jetdogs Studios
[2011.03.13 11:05:14 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Jewel Match 3
[2011.10.31 20:37:02 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\KranX Productions
[2011.08.03 21:46:03 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Lazy Turtle Games
[2011.09.05 21:35:04 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\LestaStudio
[2011.01.25 22:36:04 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\LittleGamesCompany
[2011.01.09 13:40:46 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Local
[2010.12.17 18:29:50 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Lunascape
[2010.12.14 09:08:29 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Macromedia
[2011.04.10 11:25:46 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\MagicIndie
[2011.03.06 13:30:49 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\margrave3_full
[2011.08.01 22:50:03 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\margrave3_se
[2012.02.19 21:35:20 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Mariaglorum
[2010.12.22 23:00:43 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Maxthon2
[2011.07.26 21:53:56 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\md studio
[2006.11.02 14:37:34 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Media Center Programs
[2011.12.28 20:52:28 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\MediaArt
[2011.11.13 21:20:34 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Meridian93
[2011.04.04 06:40:55 | 000,000,000 | --SD | M] -- C:\Users\ROMAN\AppData\Roaming\Microsoft
[2012.05.23 23:59:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Millennium_Saves
[2011.09.25 21:38:35 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\MoMB_Full_Eng
[2011.08.21 21:38:50 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Monkey Barrel Games
[2010.12.14 21:45:29 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Mozilla
[2011.08.29 22:30:57 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\MumboJumbo
[2011.08.05 22:35:32 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\My Games
[2010.12.18 22:04:06 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Mystery of Mortlake Mansion
[2011.01.27 21:24:10 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Namco
[2010.12.14 17:56:59 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Nero
[2010.12.17 18:05:06 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Opera
[2012.02.19 22:36:48 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Orneon
[2011.09.19 20:31:33 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\perfect future studio
[2011.01.12 22:52:58 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Phantasmat_bf_ce1
[2011.02.08 20:29:39 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Phantasmat_bf_se1
[2012.01.30 20:26:00 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\PlayFavoriteGames
[2011.10.09 21:50:52 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\PlayFirst
[2011.12.04 20:36:30 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\PlayPond
[2011.11.05 22:54:06 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Playrix Entertainment
[2011.04.15 12:11:06 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\PunkBuster
[2012.02.01 21:51:28 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Rainbow
[2010.12.27 21:52:47 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Realore_Whiterra Roads Of Rome 2
[2011.07.17 20:50:50 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Rovio
[2012.01.01 14:21:37 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Samsung
[2010.12.27 23:16:50 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Shape games
[2012.05.24 00:04:14 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Silverback Productions
[2011.09.18 21:40:00 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Skunk Studios
[2012.06.28 18:02:07 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Skype
[2012.01.01 14:35:20 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\skypePM
[2011.12.21 15:22:35 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\SlimBrowser
[2012.01.12 22:00:27 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Spark Plug Games
[2011.08.30 19:00:46 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Specialbit
[2011.11.23 22:00:21 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\SpinTop
[2011.09.25 21:47:50 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\SpinTop Games
[2011.12.12 23:38:18 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\SulusGames
[2012.01.01 14:31:16 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Temp
[2011.09.27 22:03:38 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Ten Heavens
[2011.01.15 23:14:02 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\TFS2
[2011.01.27 20:15:20 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\TikisLab
[2011.04.10 10:20:49 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\TOMI3
[2012.02.21 20:41:30 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Top Evidence
[2011.10.09 20:54:59 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Total Eclipse
[2011.09.23 20:16:22 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\TrickySoftware
[2011.11.13 22:25:33 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Twilight Games
[2011.02.06 13:11:22 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Ubisoft
[2011.12.28 21:30:39 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\UpdateTemp330246672
[2011.09.01 22:00:23 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Vast Studios
[2011.08.30 21:14:48 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\VendelGAMES
[2011.02.03 18:30:16 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Virtual Prophecy
[2011.12.26 23:44:35 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Vogat Interactive
[2011.08.14 21:00:43 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\WendigoStudios
[2011.02.09 18:50:27 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\WhiteBirdsProductions
[2011.03.12 14:55:50 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Winamp
[2011.03.21 10:40:59 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\Windows Live Writer
[2011.01.27 16:02:20 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\WinRAR
[2012.04.06 20:16:30 | 000,000,000 | ---D | M] -- C:\Users\ROMAN\AppData\Roaming\YoudaGames

< %APPDATA%\*.exe /s >
[2009.08.11 22:21:26 | 000,087,552 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\BSplayer\AC3 Filter\ac3config.exe
[2009.08.11 22:21:30 | 000,090,112 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\BSplayer\AC3 Filter\spdif_test.exe
[2010.03.22 15:52:04 | 000,697,690 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\BSplayer\AC3 Filter\unins000.exe
[2010.02.23 18:01:52 | 001,185,871 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\BSplayer\FFDShow\unins000.exe
[2010.08.14 11:42:54 | 000,113,152 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\BSplayer\Haali media splitter\dsmux.exe
[2010.08.14 11:45:10 | 000,358,400 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\BSplayer\Haali media splitter\gdsmux.exe
[2010.08.14 11:42:06 | 000,137,728 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\BSplayer\Haali media splitter\mkv2vfr.exe
[2010.09.30 16:30:22 | 000,042,305 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\BSplayer\Haali media splitter\uninstall.exe
[2012.02.11 13:48:00 | 000,221,675 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Lunascape\Lunascape6\ApplicationData\Temp\patch.exe
[2010.12.22 19:38:51 | 000,053,632 | ---- | M] (Adobe Systems Inc.) -- C:\Users\ROMAN\AppData\Roaming\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe
[2010.08.12 10:37:08 | 003,765,648 | ---- | M] (Maxthon International ltd.) -- C:\Users\ROMAN\AppData\Roaming\Maxthon2\Maxthon.exe
[2010.08.18 11:50:44 | 000,341,424 | ---- | M] (Maxthon International ltd.) -- C:\Users\ROMAN\AppData\Roaming\Maxthon2\Mx2UnInstall.exe
[2010.07.20 12:07:36 | 000,169,368 | ---- | M] (Maxthon International ltd.) -- C:\Users\ROMAN\AppData\Roaming\Maxthon2\MxCrashReport.exe
[2010.05.19 13:59:04 | 000,673,024 | ---- | M] (Maxthon International ltd.) -- C:\Users\ROMAN\AppData\Roaming\Maxthon2\Modules\MxDownloader\MxDownloadServer.exe
[2010.05.19 13:59:04 | 000,181,656 | ---- | M] (Maxthon International ltd.) -- C:\Users\ROMAN\AppData\Roaming\Maxthon2\Modules\MxUpdate\MxUp.exe
[2011.02.09 20:14:45 | 000,010,134 | R--- | M] () -- C:\Users\ROMAN\AppData\Roaming\Microsoft\Installer\{846B5DED-DC8C-4E1A-B5B4-9F5B39A0CACE}\ARPPRODUCTICON.exe
[2010.12.14 18:05:12 | 000,009,158 | R--- | M] () -- C:\Users\ROMAN\AppData\Roaming\Microsoft\Installer\{89DE67AD-08B8-4699-A55D-CA5C0AF82BF3}\ARPPRODUCTICON.exe
[2011.02.17 23:46:25 | 000,835,440 | R--- | M] () -- C:\Users\ROMAN\AppData\Roaming\PunkBuster\pbsetup\pbsvc.exe
[2012.01.01 14:22:29 | 003,154,792 | ---- | M] (Microsoft Corporation) -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\NDP40-KB2461678-x86.exe
[2011.11.29 21:58:44 | 000,935,312 | ---- | M] (Samsung) -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\Kies.exe
[2011.11.29 21:58:48 | 000,278,928 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\KiesDriverInstaller.exe
[2011.11.29 17:44:38 | 000,292,864 | ---- | M] (Samsung) -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\KiesLogger.exe
[2011.11.29 21:58:46 | 003,508,624 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\KiesTrayAgent.exe
[2011.11.29 17:40:26 | 000,140,800 | ---- | M] (Mobileleader Co., Ltd.) -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\External\DeviceModules\ConnectionManager.exe
[2011.11.29 17:40:26 | 000,284,672 | ---- | M] (Mobileleader Co., Ltd.) -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\External\DeviceModules\DeviceDataService.exe
[2011.11.29 17:40:28 | 000,691,200 | ---- | M] (Mobileleader Co., Ltd.) -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\External\DeviceModules\DeviceManager.exe
[2011.11.29 17:40:26 | 000,110,080 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\External\DeviceModules\ErrorReport.exe
[2011.11.29 21:58:52 | 000,067,472 | ---- | M] (Samsung) -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\External\DeviceModules\Kies_Tutorial.exe
[2011.11.29 17:39:44 | 000,106,408 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\External\FirmwareUpdate\AgentInstaller.exe
[2011.11.29 17:39:44 | 000,101,288 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\External\FirmwareUpdate\AgentUpdate.exe
[2011.11.29 21:58:56 | 000,131,984 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\External\FirmwareUpdate\BinaryLoaderMgr.exe
[2011.11.29 21:58:56 | 000,021,392 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\External\FirmwareUpdate\KiesPDLR.exe
[2011.11.29 21:58:58 | 003,569,984 | ---- | M] (Freeware) -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\External\MediaModules\MyFreeCodecPack.exe
[2011.11.29 17:37:46 | 024,114,392 | ---- | M] (SAMSUNG Electronics Co., Ltd.) -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\USB Driver\SAMSUNG_USB_Driver_for_Mobile_Phones.exe
[2011.11.29 21:59:00 | 000,392,080 | ---- | M] (ml) -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\Temp\Kies.Update.exe
[2011.12.27 16:21:22 | 000,371,088 | ---- | M] (ml) -- C:\Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\Updater\Kies.Update.exe

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\Tasks\*.job >
[2012.06.28 18:02:10 | 000,000,934 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2012.06.28 18:57:17 | 000,000,938 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
[2012.06.27 21:37:25 | 000,000,406 | -H-- | M] () -- C:\Windows\Tasks\Norton Security Scan for ROMAN.job

< %systemroot%\system32\drivers\*.sys /lockedfiles >
[2010.12.21 21:40:14 | 000,691,696 | ---- | M] () Unable to obtain MD5 -- C:\Windows\system32\drivers\sptd.sys

< %systemroot%\System32\config\*.sav >
[2008.01.21 05:14:18 | 016,846,848 | ---- | M] () -- C:\Windows\System32\config\COMPONENTS.SAV
[2008.01.21 05:14:08 | 000,106,496 | ---- | M] () -- C:\Windows\System32\config\DEFAULT.SAV
[2008.01.21 05:14:18 | 000,020,480 | ---- | M] () -- C:\Windows\System32\config\SECURITY.SAV
[2006.11.02 12:34:08 | 010,133,504 | ---- | M] () -- C:\Windows\System32\config\SOFTWARE.SAV
[2006.11.02 12:34:08 | 001,826,816 | ---- | M] () -- C:\Windows\System32\config\SYSTEM.SAV

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\system32\drivers\*.sys /3 >

< %systemroot%\system32\*.* /3 >
[2012.06.28 08:03:28 | 000,003,840 | -H-- | M] () -- C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2012.06.28 08:03:29 | 000,003,840 | -H-- | M] () -- C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0

< %SYSTEMDRIVE%\*.exe >

< >

< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"Sidebar" = C:\Program Files\Windows Sidebar\sidebar.exe /autoRun -- [2009.04.11 08:28:03 | 001,233,920 | ---- | M] (Microsoft Corporation)
"Seznam Postak" = "C:\Users\ROMAN\AppData\Local\Seznam.cz\bin\postak.exe" -s -- [2012.01.10 16:16:10 | 000,491,040 | ---- | M] ()
"DAEMON Tools Lite" = "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun -- [2010.04.01 11:16:20 | 000,357,696 | ---- | M] (DT Soft Ltd)
"ehTray.exe" = C:\Windows\ehome\ehTray.exe -- [2008.01.21 04:25:11 | 000,125,952 | ---- | M] (Microsoft Corporation)
"Kalendar" = C:\Program Files\Kalendar\kalendar.exe -- [2005.11.09 22:12:44 | 000,580,608 | ---- | M] ()
"KiesHelper" = C:\Program Files\Samsung\Kies\KiesHelper.exe /s -- [2011.12.27 16:21:06 | 000,937,360 | ---- | M] (Samsung)
"KiesPDLR" = C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe -- [2011.12.27 16:21:18 | 000,021,392 | ---- | M] ()
"Skype" = "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun -- [2012.02.29 08:55:08 | 017,148,552 | R--- | M] (Skype Technologies S.A.)

< >

< %PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5 >
[2011.12.21 15:21:40 | 000,924,632 | ---- | M] (Mozilla Corporation) MD5=25532414A7A088553527A75B31DF0592 -- C:\Program Files\Mozilla Firefox\firefox.exe

< %PROGRAMFILES%\Internet Explorer\iexplore.exe /md5 >
[2012.05.18 01:21:54 | 000,748,664 | ---- | M] (Microsoft Corporation) MD5=0129BB16161C2FD9A6B19111AB047198 -- C:\Program Files\Internet Explorer\iexplore.exe

< %PROGRAMFILES%\Opera\opera.exe /md5 >
[2010.12.17 18:05:04 | 000,944,496 | ---- | M] (Opera Software) MD5=DE9F921C91E59EB1ED4028D340F0DD4C -- C:\Program Files\Opera\opera.exe

< %PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5 >
[2012.06.07 10:14:45 | 001,239,576 | ---- | M] (Google Inc.) MD5=F11DD7FFCEA61106480F26B99336AD5B -- C:\Program Files\Google\Chrome\Application\chrome.exe

< >

< %SystemDrive%\PhysicalMBR.bin /md5 >
[2012.06.28 18:20:58 | 000,000,512 | ---- | M] () MD5=551AEA644A15E1AFC1CDCD88B42510DD -- C:\PhysicalMBR.bin
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu - občasné přetěžování CPU

#6 Příspěvek od vyosek »

< *crack* /s >
[2008.11.04 22:58:26 | 000,120,058 | ---- | M] () -- \Program Files\Luxor Quest for the Afterlife\data\sound\fx\torch_crackling.ogg
[2010.08.03 18:36:44 | 000,009,207 | ---- | M] () -- \Program Files\Secrets of the Dragon Wheel\game\data\audio\sfx\firecracker1.ogg
[2010.08.03 18:36:44 | 000,013,999 | ---- | M] () -- \Program Files\Secrets of the Dragon Wheel\game\data\audio\sfx\firecracker2.ogg
[2010.08.03 18:36:44 | 000,007,903 | ---- | M] () -- \Program Files\Secrets of the Dragon Wheel\game\data\audio\sfx\firecracker3.ogg
[2010.08.03 18:36:44 | 000,084,508 | ---- | M] () -- \Program Files\Secrets of the Dragon Wheel\game\data\audio\sfx\firecrackers.ogg
[2010.08.03 18:37:02 | 000,040,560 | ---- | M] () -- \Program Files\Secrets of the Dragon Wheel\game\data\audio\voice\station_vendfirecrackers.ogg
[2010.08.03 18:37:02 | 000,060,974 | ---- | M] () -- \Program Files\Secrets of the Dragon Wheel\game\data\audio\voice\station_vendfirecrackers_hint.ogg
[2010.08.03 18:37:02 | 000,027,009 | ---- | M] () -- \Program Files\Secrets of the Dragon Wheel\game\data\audio\voice\station_vend_firecracker.ogg
[2010.08.03 18:37:02 | 000,055,361 | ---- | M] () -- \Program Files\Secrets of the Dragon Wheel\game\data\audio\voice\station_vend_getfirecrackers.ogg
[2010.08.03 18:37:02 | 000,034,504 | ---- | M] () -- \Program Files\Secrets of the Dragon Wheel\game\data\audio\voice\station_vend_gotfirecrackers.ogg
[2010.08.03 18:37:02 | 000,026,789 | ---- | M] () -- \Program Files\Secrets of the Dragon Wheel\game\data\audio\voice\station_vend_need_firecrackers.ogg
[2010.08.03 18:38:00 | 000,011,352 | ---- | M] () -- \Program Files\Secrets of the Dragon Wheel\game\data\images\inventoryItems\firecrackers.png
[2010.08.03 18:38:00 | 000,010,712 | ---- | M] () -- \Program Files\Secrets of the Dragon Wheel\game\data\images\inventoryItems\firecrackersActive.png
[2010.08.03 18:38:08 | 000,007,020 | ---- | M] () -- \Program Files\Secrets of the Dragon Wheel\game\data\images\localizable\station_vendfirecrackers_resetlabel.png
[2010.08.03 18:38:26 | 000,030,372 | ---- | M] () -- \Program Files\Secrets of the Dragon Wheel\game\data\images\station\platform\station_platform_firecrackers.jpg
[2010.08.03 18:38:28 | 000,010,665 | ---- | M] () -- \Program Files\Secrets of the Dragon Wheel\game\data\images\station\vend\station_vend_firecrackers.png
[2010.08.03 18:38:28 | 000,131,784 | ---- | M] () -- \Program Files\Secrets of the Dragon Wheel\game\data\images\station\vendfireworks\station_vendfirecrackers_bg.jpg
[2010.08.03 18:38:28 | 000,047,353 | ---- | M] () -- \Program Files\Secrets of the Dragon Wheel\game\data\images\station\vendfireworks\station_vendfirecrackers_fake.jpg
[2010.08.03 18:38:28 | 000,013,289 | ---- | M] () -- \Program Files\Secrets of the Dragon Wheel\game\data\images\station\vendfireworks\station_vendfirecrackers_fuse.png
[2010.08.03 18:38:28 | 000,014,965 | ---- | M] () -- \Program Files\Secrets of the Dragon Wheel\game\data\images\station\vendfireworks\station_vendfirecrackers_glow.jpg
[2010.08.03 18:38:28 | 000,008,661 | ---- | M] () -- \Program Files\Secrets of the Dragon Wheel\game\data\images\station\vendfireworks\station_vendfirecrackers_switchdown.png
[2010.08.03 18:38:28 | 000,008,269 | ---- | M] () -- \Program Files\Secrets of the Dragon Wheel\game\data\images\station\vendfireworks\station_vendfirecrackers_switchup.png
[2010.08.03 18:38:38 | 000,003,113 | ---- | M] () -- \Program Files\Secrets of the Dragon Wheel\game\data\levels\station_vendfirecrackers.t2d.dso
[2010.08.03 18:38:54 | 000,000,949 | ---- | M] () -- \Program Files\Secrets of the Dragon Wheel\game\gameScripts\NodeScripts\station_vendfirecrackers.cs.dso
[2011.03.28 20:19:22 | 000,028,690 | ---- | M] () -- \Program Files\Victorian Mysteries - Woman in White\resources\levels\act1\05-art_studio\art_desk\Cracked Egg 1.png
[2011.03.28 20:19:22 | 000,028,768 | ---- | M] () -- \Program Files\Victorian Mysteries - Woman in White\resources\levels\act1\05-art_studio\art_desk\Cracked Egg 2.png
[2011.03.28 20:19:22 | 000,031,519 | ---- | M] () -- \Program Files\Victorian Mysteries - Woman in White\resources\levels\act1\05-art_studio\art_desk\Cracked Egg 3.png
[2011.03.28 20:19:22 | 000,037,280 | ---- | M] () -- \Program Files\Victorian Mysteries - Woman in White\resources\levels\act1\05-art_studio\art_desk\Cracked Egg 4.png
[2011.03.28 20:19:22 | 000,041,818 | ---- | M] () -- \Program Files\Victorian Mysteries - Woman in White\resources\levels\act1\05-art_studio\art_desk\Cracked Egg 5.png
[2011.03.28 20:19:23 | 000,071,353 | ---- | M] () -- \Program Files\Victorian Mysteries - Woman in White\resources\levels\act1\05-art_studio\art_desk\Cracked Egg On Bowl.png
[2011.03.28 20:19:03 | 000,021,248 | ---- | M] () -- \Program Files\Victorian Mysteries - Woman in White\resources\sound\eggcrack.ogg
[2012.02.17 19:29:27 | 000,148,268 | ---- | M] () -- \ProgramData\Fugazo\Committed\cached\sounds\logo_crack.wav
[2012.02.17 19:38:17 | 000,227,364 | ---- | M] () -- \ProgramData\Fugazo\Committed\cached\sounds\scenes\mg_fireextinguisher_glasscrack_1.wav
[2012.02.17 19:38:17 | 000,238,064 | ---- | M] () -- \ProgramData\Fugazo\Committed\cached\sounds\scenes\mg_fireextinguisher_glasscrack_2.wav
[2012.02.28 21:02:30 | 000,165,981 | ---- | M] () -- \ProgramData\Indiagames\Bejeweled2\cached\sounds\firecrackle.wav
[2012.02.17 19:29:27 | 000,148,268 | ---- | M] () -- \Users\All Users\Fugazo\Committed\cached\sounds\logo_crack.wav
[2012.02.17 19:38:17 | 000,227,364 | ---- | M] () -- \Users\All Users\Fugazo\Committed\cached\sounds\scenes\mg_fireextinguisher_glasscrack_1.wav
[2012.02.17 19:38:17 | 000,238,064 | ---- | M] () -- \Users\All Users\Fugazo\Committed\cached\sounds\scenes\mg_fireextinguisher_glasscrack_2.wav
[2012.02.28 21:02:30 | 000,165,981 | ---- | M] () -- \Users\All Users\Indiagames\Bejeweled2\cached\sounds\firecrackle.wav
[2011.11.23 22:44:31 | 000,243,279 | ---- | M] () -- \Users\ROMAN\AppData\Local\Boonty\Bejeweled3\cached\sounds\diamond_mine_bigstone_cracked.wav
[2011.11.23 22:44:31 | 000,122,219 | ---- | M] () -- \Users\ROMAN\AppData\Local\Boonty\Bejeweled3\cached\sounds\diamond_mine_dirt_cracked.wav
[2011.11.23 22:44:31 | 000,247,212 | ---- | M] () -- \Users\ROMAN\AppData\Local\Boonty\Bejeweled3\cached\sounds\diamond_mine_stone_cracked.wav
[2011.11.23 22:44:32 | 000,357,986 | ---- | M] () -- \Users\ROMAN\AppData\Local\Boonty\Bejeweled3\cached\sounds\firework_crackle.wav
[2012.02.28 21:35:57 | 000,357,986 | ---- | M] () -- \Users\ROMAN\AppData\Local\Exent\Bejeweled3\cached\sounds\firework_crackle.wav
[2011.11.23 22:01:15 | 000,243,279 | ---- | M] () -- \Users\ROMAN\AppData\Local\SpinTop Games\Bejeweled3\cached\sounds\diamond_mine_bigstone_cracked.wav
[2011.11.23 22:01:15 | 000,122,219 | ---- | M] () -- \Users\ROMAN\AppData\Local\SpinTop Games\Bejeweled3\cached\sounds\diamond_mine_dirt_cracked.wav
[2011.11.23 22:01:15 | 000,247,212 | ---- | M] () -- \Users\ROMAN\AppData\Local\SpinTop Games\Bejeweled3\cached\sounds\diamond_mine_stone_cracked.wav
[2011.11.23 22:01:16 | 000,357,986 | ---- | M] () -- \Users\ROMAN\AppData\Local\SpinTop Games\Bejeweled3\cached\sounds\firework_crackle.wav
[2012.02.29 22:51:19 | 000,006,261 | ---- | M] () -- \Users\ROMAN\AppData\Roaming\EleFun Games\Fear For Sale Sunnyvale Story\default\profiles\m_28338592330805\se\mill_sub_cracked_shaft.scf
[2011.09.05 21:58:43 | 000,008,027 | ---- | M] () -- \Users\ROMAN\AppData\Roaming\LestaStudio\Nightmare Realm\profile0\hub_draughtroom_crack
[2011.09.05 21:58:43 | 000,040,351 | ---- | M] () -- \Users\ROMAN\AppData\Roaming\LestaStudio\Nightmare Realm\profile0\hub_draughtroom_crack_self
[2011.01.30 18:47:06 | 000,165,972 | ---- | M] () -- \Users\ROMAN\Desktop\Bejeweled\sounds\cached_firecrackle.wav
[2004.11.05 02:53:58 | 000,016,978 | ---- | M] () -- \Users\ROMAN\Desktop\Bejeweled\sounds\firecrackle.ogg
[2011.03.19 00:26:39 | 542,027,744 | ---- | M] () -- \Users\ROMAN\Downloads\Zuma.Rev.v1.0.Cracked-F4CG.rar
[2012.02.17 19:29:27 | 000,148,268 | ---- | M] () -- \Windows.old.000\Documents and Settings\All Users\Fugazo\Committed\cached\sounds\logo_crack.wav
[2012.02.17 19:38:17 | 000,227,364 | ---- | M] () -- \Windows.old.000\Documents and Settings\All Users\Fugazo\Committed\cached\sounds\scenes\mg_fireextinguisher_glasscrack_1.wav
[2012.02.17 19:38:17 | 000,238,064 | ---- | M] () -- \Windows.old.000\Documents and Settings\All Users\Fugazo\Committed\cached\sounds\scenes\mg_fireextinguisher_glasscrack_2.wav
[2012.02.28 21:02:30 | 000,165,981 | ---- | M] () -- \Windows.old.000\Documents and Settings\All Users\Indiagames\Bejeweled2\cached\sounds\firecrackle.wav
[2011.11.23 22:44:31 | 000,243,279 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Local\Boonty\Bejeweled3\cached\sounds\diamond_mine_bigstone_cracked.wav
[2011.11.23 22:44:31 | 000,122,219 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Local\Boonty\Bejeweled3\cached\sounds\diamond_mine_dirt_cracked.wav
[2011.11.23 22:44:31 | 000,247,212 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Local\Boonty\Bejeweled3\cached\sounds\diamond_mine_stone_cracked.wav
[2011.11.23 22:44:32 | 000,357,986 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Local\Boonty\Bejeweled3\cached\sounds\firework_crackle.wav
[2012.02.28 21:35:57 | 000,357,986 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Local\Exent\Bejeweled3\cached\sounds\firework_crackle.wav
[2011.11.23 22:01:15 | 000,243,279 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Local\SpinTop Games\Bejeweled3\cached\sounds\diamond_mine_bigstone_cracked.wav
[2011.11.23 22:01:15 | 000,122,219 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Local\SpinTop Games\Bejeweled3\cached\sounds\diamond_mine_dirt_cracked.wav
[2011.11.23 22:01:15 | 000,247,212 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Local\SpinTop Games\Bejeweled3\cached\sounds\diamond_mine_stone_cracked.wav
[2011.11.23 22:01:16 | 000,357,986 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Local\SpinTop Games\Bejeweled3\cached\sounds\firework_crackle.wav
[2012.02.29 22:51:19 | 000,006,261 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Roaming\EleFun Games\Fear For Sale Sunnyvale Story\default\profiles\m_28338592330805\se\mill_sub_cracked_shaft.scf
[2011.09.05 21:58:43 | 000,008,027 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Roaming\LestaStudio\Nightmare Realm\profile0\hub_draughtroom_crack
[2011.09.05 21:58:43 | 000,040,351 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Roaming\LestaStudio\Nightmare Realm\profile0\hub_draughtroom_crack_self
[2011.01.30 18:47:06 | 000,165,972 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\Desktop\Bejeweled\sounds\cached_firecrackle.wav
[2004.11.05 02:53:58 | 000,016,978 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\Desktop\Bejeweled\sounds\firecrackle.ogg
[2011.03.19 00:26:39 | 542,027,744 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\Downloads\Zuma.Rev.v1.0.Cracked-F4CG.rar
[2010.12.05 23:36:46 | 000,066,832 | ---- | M] () -- \Windows.old.000\Program Files\Lost Chronicles - Salem\data\swf\windows\21_MINI_Wallcrack.swf
[2012.02.17 19:29:27 | 000,148,268 | ---- | M] () -- \Windows.old.000\ProgramData\Application Data\Fugazo\Committed\cached\sounds\logo_crack.wav
[2012.02.17 19:38:17 | 000,227,364 | ---- | M] () -- \Windows.old.000\ProgramData\Application Data\Fugazo\Committed\cached\sounds\scenes\mg_fireextinguisher_glasscrack_1.wav
[2012.02.17 19:38:17 | 000,238,064 | ---- | M] () -- \Windows.old.000\ProgramData\Application Data\Fugazo\Committed\cached\sounds\scenes\mg_fireextinguisher_glasscrack_2.wav
[2012.02.28 21:02:30 | 000,165,981 | ---- | M] () -- \Windows.old.000\ProgramData\Application Data\Indiagames\Bejeweled2\cached\sounds\firecrackle.wav
[2012.02.17 19:29:27 | 000,148,268 | ---- | M] () -- \Windows.old.000\ProgramData\Data aplikací\Fugazo\Committed\cached\sounds\logo_crack.wav
[2012.02.17 19:38:17 | 000,227,364 | ---- | M] () -- \Windows.old.000\ProgramData\Data aplikací\Fugazo\Committed\cached\sounds\scenes\mg_fireextinguisher_glasscrack_1.wav
[2012.02.17 19:38:17 | 000,238,064 | ---- | M] () -- \Windows.old.000\ProgramData\Data aplikací\Fugazo\Committed\cached\sounds\scenes\mg_fireextinguisher_glasscrack_2.wav
[2012.02.28 21:02:30 | 000,165,981 | ---- | M] () -- \Windows.old.000\ProgramData\Data aplikací\Indiagames\Bejeweled2\cached\sounds\firecrackle.wav
[2010.05.13 22:07:51 | 000,000,891 | ---- | M] () -- \Windows.old.000\ProgramData\Microsoft\Windows\Start Menu\Programs\RAR Password Cracker\RAR Password Cracker Registration.lnk
[2010.05.13 22:07:51 | 000,000,881 | ---- | M] () -- \Windows.old.000\ProgramData\Microsoft\Windows\Start Menu\Programs\RAR Password Cracker\RAR Password Cracker Wizard.lnk
[2010.05.13 22:07:51 | 000,000,887 | ---- | M] () -- \Windows.old.000\ProgramData\Microsoft\Windows\Start Menu\Programs\RAR Password Cracker\RAR Password Cracker.lnk
[2012.02.17 19:29:27 | 000,148,268 | ---- | M] () -- \Windows.old.000\Users\All Users\Fugazo\Committed\cached\sounds\logo_crack.wav
[2012.02.17 19:38:17 | 000,227,364 | ---- | M] () -- \Windows.old.000\Users\All Users\Fugazo\Committed\cached\sounds\scenes\mg_fireextinguisher_glasscrack_1.wav
[2012.02.17 19:38:17 | 000,238,064 | ---- | M] () -- \Windows.old.000\Users\All Users\Fugazo\Committed\cached\sounds\scenes\mg_fireextinguisher_glasscrack_2.wav
[2012.02.28 21:02:30 | 000,165,981 | ---- | M] () -- \Windows.old.000\Users\All Users\Indiagames\Bejeweled2\cached\sounds\firecrackle.wav
[2011.11.23 22:44:31 | 000,243,279 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Data aplikací\Boonty\Bejeweled3\cached\sounds\diamond_mine_bigstone_cracked.wav
[2011.11.23 22:44:31 | 000,122,219 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Data aplikací\Boonty\Bejeweled3\cached\sounds\diamond_mine_dirt_cracked.wav
[2011.11.23 22:44:31 | 000,247,212 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Data aplikací\Boonty\Bejeweled3\cached\sounds\diamond_mine_stone_cracked.wav
[2011.11.23 22:44:32 | 000,357,986 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Data aplikací\Boonty\Bejeweled3\cached\sounds\firework_crackle.wav
[2012.02.28 21:35:57 | 000,357,986 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Data aplikací\Exent\Bejeweled3\cached\sounds\firework_crackle.wav
[2011.11.23 22:01:15 | 000,243,279 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Data aplikací\SpinTop Games\Bejeweled3\cached\sounds\diamond_mine_bigstone_cracked.wav
[2011.11.23 22:01:15 | 000,122,219 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Data aplikací\SpinTop Games\Bejeweled3\cached\sounds\diamond_mine_dirt_cracked.wav
[2011.11.23 22:01:15 | 000,247,212 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Data aplikací\SpinTop Games\Bejeweled3\cached\sounds\diamond_mine_stone_cracked.wav
[2011.11.23 22:01:16 | 000,357,986 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Data aplikací\SpinTop Games\Bejeweled3\cached\sounds\firework_crackle.wav
[2009.11.05 00:25:21 | 001,028,223 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Roaming\Dekovir\Hidden Magic\_temp\cached\sounds\Spells\cold_end_Foley Ice Crackles In Freezer.wav
[2010.06.18 20:13:52 | 000,062,124 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Roaming\Fugazo\World Mosaics 3\cached\sounds\jarcrack.wav
[2010.06.18 20:13:54 | 000,344,364 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Roaming\Fugazo\World Mosaics 3\cached\sounds\Tilecrack.wav
[2012.02.29 22:51:19 | 000,006,261 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Data aplikací\EleFun Games\Fear For Sale Sunnyvale Story\default\profiles\m_28338592330805\se\mill_sub_cracked_shaft.scf
[2011.09.05 21:58:43 | 000,008,027 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Data aplikací\LestaStudio\Nightmare Realm\profile0\hub_draughtroom_crack
[2011.09.05 21:58:43 | 000,040,351 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Data aplikací\LestaStudio\Nightmare Realm\profile0\hub_draughtroom_crack_self
[2011.11.23 22:44:31 | 000,243,279 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Local Settings\Boonty\Bejeweled3\cached\sounds\diamond_mine_bigstone_cracked.wav
[2011.11.23 22:44:31 | 000,122,219 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Local Settings\Boonty\Bejeweled3\cached\sounds\diamond_mine_dirt_cracked.wav
[2011.11.23 22:44:31 | 000,247,212 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Local Settings\Boonty\Bejeweled3\cached\sounds\diamond_mine_stone_cracked.wav
[2011.11.23 22:44:32 | 000,357,986 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Local Settings\Boonty\Bejeweled3\cached\sounds\firework_crackle.wav
[2012.02.28 21:35:57 | 000,357,986 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Local Settings\Exent\Bejeweled3\cached\sounds\firework_crackle.wav
[2011.11.23 22:01:15 | 000,243,279 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Local Settings\SpinTop Games\Bejeweled3\cached\sounds\diamond_mine_bigstone_cracked.wav
[2011.11.23 22:01:15 | 000,122,219 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Local Settings\SpinTop Games\Bejeweled3\cached\sounds\diamond_mine_dirt_cracked.wav
[2011.11.23 22:01:15 | 000,247,212 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Local Settings\SpinTop Games\Bejeweled3\cached\sounds\diamond_mine_stone_cracked.wav
[2011.11.23 22:01:16 | 000,357,986 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Local Settings\SpinTop Games\Bejeweled3\cached\sounds\firework_crackle.wav
[2012.02.17 19:29:27 | 000,148,268 | ---- | M] () -- \Windows.old\Documents and Settings\All Users\Fugazo\Committed\cached\sounds\logo_crack.wav
[2012.02.17 19:38:17 | 000,227,364 | ---- | M] () -- \Windows.old\Documents and Settings\All Users\Fugazo\Committed\cached\sounds\scenes\mg_fireextinguisher_glasscrack_1.wav
[2012.02.17 19:38:17 | 000,238,064 | ---- | M] () -- \Windows.old\Documents and Settings\All Users\Fugazo\Committed\cached\sounds\scenes\mg_fireextinguisher_glasscrack_2.wav
[2012.02.28 21:02:30 | 000,165,981 | ---- | M] () -- \Windows.old\Documents and Settings\All Users\Indiagames\Bejeweled2\cached\sounds\firecrackle.wav
[2011.11.23 22:44:31 | 000,243,279 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Local\Boonty\Bejeweled3\cached\sounds\diamond_mine_bigstone_cracked.wav
[2011.11.23 22:44:31 | 000,122,219 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Local\Boonty\Bejeweled3\cached\sounds\diamond_mine_dirt_cracked.wav
[2011.11.23 22:44:31 | 000,247,212 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Local\Boonty\Bejeweled3\cached\sounds\diamond_mine_stone_cracked.wav
[2011.11.23 22:44:32 | 000,357,986 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Local\Boonty\Bejeweled3\cached\sounds\firework_crackle.wav
[2012.02.28 21:35:57 | 000,357,986 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Local\Exent\Bejeweled3\cached\sounds\firework_crackle.wav
[2011.11.23 22:01:15 | 000,243,279 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Local\SpinTop Games\Bejeweled3\cached\sounds\diamond_mine_bigstone_cracked.wav
[2011.11.23 22:01:15 | 000,122,219 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Local\SpinTop Games\Bejeweled3\cached\sounds\diamond_mine_dirt_cracked.wav
[2011.11.23 22:01:15 | 000,247,212 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Local\SpinTop Games\Bejeweled3\cached\sounds\diamond_mine_stone_cracked.wav
[2011.11.23 22:01:16 | 000,357,986 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Local\SpinTop Games\Bejeweled3\cached\sounds\firework_crackle.wav
[2012.02.29 22:51:19 | 000,006,261 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Roaming\EleFun Games\Fear For Sale Sunnyvale Story\default\profiles\m_28338592330805\se\mill_sub_cracked_shaft.scf
[2011.09.05 21:58:43 | 000,008,027 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Roaming\LestaStudio\Nightmare Realm\profile0\hub_draughtroom_crack
[2011.09.05 21:58:43 | 000,040,351 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Roaming\LestaStudio\Nightmare Realm\profile0\hub_draughtroom_crack_self
[2011.01.30 18:47:06 | 000,165,972 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\Desktop\Bejeweled\sounds\cached_firecrackle.wav
[2004.11.05 02:53:58 | 000,016,978 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\Desktop\Bejeweled\sounds\firecrackle.ogg
[2011.03.19 00:26:39 | 542,027,744 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\Downloads\Zuma.Rev.v1.0.Cracked-F4CG.rar
[2012.02.17 19:29:27 | 000,148,268 | ---- | M] () -- \Windows.old\ProgramData\Application Data\Fugazo\Committed\cached\sounds\logo_crack.wav
[2012.02.17 19:38:17 | 000,227,364 | ---- | M] () -- \Windows.old\ProgramData\Application Data\Fugazo\Committed\cached\sounds\scenes\mg_fireextinguisher_glasscrack_1.wav
[2012.02.17 19:38:17 | 000,238,064 | ---- | M] () -- \Windows.old\ProgramData\Application Data\Fugazo\Committed\cached\sounds\scenes\mg_fireextinguisher_glasscrack_2.wav
[2012.02.28 21:02:30 | 000,165,981 | ---- | M] () -- \Windows.old\ProgramData\Application Data\Indiagames\Bejeweled2\cached\sounds\firecrackle.wav
[2012.02.17 19:29:27 | 000,148,268 | ---- | M] () -- \Windows.old\ProgramData\Data aplikací\Fugazo\Committed\cached\sounds\logo_crack.wav
[2012.02.17 19:38:17 | 000,227,364 | ---- | M] () -- \Windows.old\ProgramData\Data aplikací\Fugazo\Committed\cached\sounds\scenes\mg_fireextinguisher_glasscrack_1.wav
[2012.02.17 19:38:17 | 000,238,064 | ---- | M] () -- \Windows.old\ProgramData\Data aplikací\Fugazo\Committed\cached\sounds\scenes\mg_fireextinguisher_glasscrack_2.wav
[2012.02.28 21:02:30 | 000,165,981 | ---- | M] () -- \Windows.old\ProgramData\Data aplikací\Indiagames\Bejeweled2\cached\sounds\firecrackle.wav
[2012.02.17 19:29:27 | 000,148,268 | ---- | M] () -- \Windows.old\Users\All Users\Fugazo\Committed\cached\sounds\logo_crack.wav
[2012.02.17 19:38:17 | 000,227,364 | ---- | M] () -- \Windows.old\Users\All Users\Fugazo\Committed\cached\sounds\scenes\mg_fireextinguisher_glasscrack_1.wav
[2012.02.17 19:38:17 | 000,238,064 | ---- | M] () -- \Windows.old\Users\All Users\Fugazo\Committed\cached\sounds\scenes\mg_fireextinguisher_glasscrack_2.wav
[2012.02.28 21:02:30 | 000,165,981 | ---- | M] () -- \Windows.old\Users\All Users\Indiagames\Bejeweled2\cached\sounds\firecrackle.wav
[2011.11.23 22:44:31 | 000,243,279 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Data aplikací\Boonty\Bejeweled3\cached\sounds\diamond_mine_bigstone_cracked.wav
[2011.11.23 22:44:31 | 000,122,219 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Data aplikací\Boonty\Bejeweled3\cached\sounds\diamond_mine_dirt_cracked.wav
[2011.11.23 22:44:31 | 000,247,212 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Data aplikací\Boonty\Bejeweled3\cached\sounds\diamond_mine_stone_cracked.wav
[2011.11.23 22:44:32 | 000,357,986 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Data aplikací\Boonty\Bejeweled3\cached\sounds\firework_crackle.wav
[2012.02.28 21:35:57 | 000,357,986 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Data aplikací\Exent\Bejeweled3\cached\sounds\firework_crackle.wav
[2011.11.23 22:01:15 | 000,243,279 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Data aplikací\SpinTop Games\Bejeweled3\cached\sounds\diamond_mine_bigstone_cracked.wav
[2011.11.23 22:01:15 | 000,122,219 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Data aplikací\SpinTop Games\Bejeweled3\cached\sounds\diamond_mine_dirt_cracked.wav
[2011.11.23 22:01:15 | 000,247,212 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Data aplikací\SpinTop Games\Bejeweled3\cached\sounds\diamond_mine_stone_cracked.wav
[2011.11.23 22:01:16 | 000,357,986 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Data aplikací\SpinTop Games\Bejeweled3\cached\sounds\firework_crackle.wav
[2012.02.29 22:51:19 | 000,006,261 | ---- | M] () -- \Windows.old\Users\ROMAN\Data aplikací\EleFun Games\Fear For Sale Sunnyvale Story\default\profiles\m_28338592330805\se\mill_sub_cracked_shaft.scf
[2011.09.05 21:58:43 | 000,008,027 | ---- | M] () -- \Windows.old\Users\ROMAN\Data aplikací\LestaStudio\Nightmare Realm\profile0\hub_draughtroom_crack
[2011.09.05 21:58:43 | 000,040,351 | ---- | M] () -- \Windows.old\Users\ROMAN\Data aplikací\LestaStudio\Nightmare Realm\profile0\hub_draughtroom_crack_self
[2011.11.23 22:44:31 | 000,243,279 | ---- | M] () -- \Windows.old\Users\ROMAN\Local Settings\Boonty\Bejeweled3\cached\sounds\diamond_mine_bigstone_cracked.wav
[2011.11.23 22:44:31 | 000,122,219 | ---- | M] () -- \Windows.old\Users\ROMAN\Local Settings\Boonty\Bejeweled3\cached\sounds\diamond_mine_dirt_cracked.wav
[2011.11.23 22:44:31 | 000,247,212 | ---- | M] () -- \Windows.old\Users\ROMAN\Local Settings\Boonty\Bejeweled3\cached\sounds\diamond_mine_stone_cracked.wav
[2011.11.23 22:44:32 | 000,357,986 | ---- | M] () -- \Windows.old\Users\ROMAN\Local Settings\Boonty\Bejeweled3\cached\sounds\firework_crackle.wav
[2012.02.28 21:35:57 | 000,357,986 | ---- | M] () -- \Windows.old\Users\ROMAN\Local Settings\Exent\Bejeweled3\cached\sounds\firework_crackle.wav
[2011.11.23 22:01:15 | 000,243,279 | ---- | M] () -- \Windows.old\Users\ROMAN\Local Settings\SpinTop Games\Bejeweled3\cached\sounds\diamond_mine_bigstone_cracked.wav
[2011.11.23 22:01:15 | 000,122,219 | ---- | M] () -- \Windows.old\Users\ROMAN\Local Settings\SpinTop Games\Bejeweled3\cached\sounds\diamond_mine_dirt_cracked.wav
[2011.11.23 22:01:15 | 000,247,212 | ---- | M] () -- \Windows.old\Users\ROMAN\Local Settings\SpinTop Games\Bejeweled3\cached\sounds\diamond_mine_stone_cracked.wav
[2011.11.23 22:01:16 | 000,357,986 | ---- | M] () -- \Windows.old\Users\ROMAN\Local Settings\SpinTop Games\Bejeweled3\cached\sounds\firework_crackle.wav

< *keygen* /s >
[2007.03.28 14:59:27 | 000,237,056 | ---- | M] () -- \Users\ROMAN\Downloads\Microsoft Office 2007 CZ\Keygen.exe
[2007.01.09 14:00:04 | 000,237,056 | ---- | M] () -- \Users\ROMAN\Downloads\off07entcz\Licenční klíč\keygen.exe
[2007.03.28 14:59:27 | 000,237,056 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\Downloads\Microsoft Office 2007 CZ\Keygen.exe
[2007.01.09 14:00:04 | 000,237,056 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\Downloads\off07entcz\Licenční klíč\keygen.exe
[2007.03.28 14:59:27 | 000,237,056 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\Downloads\Microsoft Office 2007 CZ\Keygen.exe
[2007.01.09 14:00:04 | 000,237,056 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\Downloads\off07entcz\Licenční klíč\keygen.exe
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu - občasné přetěžování CPU

#7 Příspěvek od vyosek »

< *loader* /s >
[2011.08.19 06:15:24 | 000,000,289 | ---- | M] () -- \Program Files\bfgclient\resources\default\images\static_loader.gif
[2012.02.24 04:29:58 | 000,059,240 | ---- | M] () -- \Program Files\Common Files\Apple\Internet Services\ApplePhotoStreamsDownloader.exe
[2012.02.24 04:29:58 | 000,735,080 | ---- | M] () -- \Program Files\Common Files\Apple\Internet Services\ApplePhotoStreamsDownloader_main.dll
[2006.10.26 14:40:34 | 000,057,344 | ---- | M] () -- \Program Files\Common Files\microsoft shared\VS7DEBUG\coloader.dll
[2006.10.26 14:40:34 | 000,005,120 | ---- | M] () -- \Program Files\Common Files\microsoft shared\VS7DEBUG\coloader.tlb
[2011.01.12 18:38:22 | 000,640,512 | ---- | M] () -- \Program Files\Frag Games\AppLoader2KEx.dll
[2009.05.21 21:21:18 | 000,007,507 | ---- | M] () -- \Program Files\HP\Digital Imaging\HelpViewer\Resources\Loader.swf
[2009.10.22 06:29:58 | 000,030,776 | ---- | M] () -- \Program Files\HP\Digital Imaging\Smart Web Printing\RsrcLoaderLib.dll
[2009.10.22 06:29:58 | 000,002,713 | ---- | M] () -- \Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\xre\components\uriloader.xpt
[2010.10.29 04:59:18 | 000,002,713 | ---- | M] () -- \Program Files\Lunascape\Lunascape6\plugins\{9BDD5314-20A6-4d98-AB30-8325A95771EE}\components\uriloader.xpt
[2011.12.23 18:17:42 | 000,069,120 | ---- | M] () -- \Program Files\Samsung\Kies\Common\Kies.Common.DeviceServiceLib.FirmwareUpdate.Downloader.dll
[2011.12.27 16:21:16 | 000,131,984 | ---- | M] () -- \Program Files\Samsung\Kies\External\FirmwareUpdate\BinaryLoaderMgr.exe
[2012.01.01 14:44:44 | 000,153,512 | ---- | M] () -- \Program Files\Samsung\Kies\External\FirmwareUpdate\GT-S5570\BinaryLoaderMgr.exe
[2012.01.01 14:44:44 | 000,270,248 | ---- | M] () -- \Program Files\Samsung\Kies\External\FirmwareUpdate\GT-S5570\FirmwareUpdate.Downloader.dll
[2008.02.25 08:05:22 | 000,856,064 | ---- | M] () -- \Program Files\The KMPlayer\ImLoader.dll
[2011.02.17 16:50:18 | 000,234,104 | ---- | M] () -- \Program Files\Ubisoft\Assassin's Creed Brotherhood\ubiorbitapi_r2_loader.dll
[2010.03.15 12:28:24 | 000,045,056 | ---- | M] () -- \Program Files\WinRAR\RarExtLoader.exe
[2011.08.19 06:15:24 | 000,000,289 | ---- | M] () -- \ProgramData\Big Fish Games\Game Manager\resources\default\images\static_loader.gif
[2012.02.29 08:49:32 | 000,072,638 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\loader.gif
[2012.02.29 08:49:32 | 000,003,032 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\loader.png
[2011.11.29 18:44:07 | 000,009,828 | ---- | M] () -- \ProgramData\Skype\Plugins\Plugins\F57B48ADF2224F088EDD1A2B9BAD84E8\Games\8009C35017684284B0BE39D6E4E53955\Loader_50.gif
[2011.08.19 06:15:24 | 000,000,289 | ---- | M] () -- \Users\All Users\Big Fish Games\Game Manager\resources\default\images\static_loader.gif
[2012.02.29 08:49:32 | 000,072,638 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\loader.gif
[2012.02.29 08:49:32 | 000,003,032 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\loader.png
[2011.11.29 18:44:07 | 000,009,828 | ---- | M] () -- \Users\All Users\Skype\Plugins\Plugins\F57B48ADF2224F088EDD1A2B9BAD84E8\Games\8009C35017684284B0BE39D6E4E53955\Loader_50.gif
[2010.12.21 21:40:35 | 000,057,728 | ---- | M] () -- \Users\ROMAN\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\img\dt_dadget_loader.png
[2010.12.21 21:40:36 | 000,057,728 | ---- | M] () -- \Users\ROMAN\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin1\dt_dadget_loader.png
[2010.12.21 21:40:37 | 000,057,728 | ---- | M] () -- \Users\ROMAN\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin2\dt_dadget_loader.png
[2012.03.28 13:59:22 | 000,010,364 | ---- | M] () -- \Users\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IQ0L3PF8\AdLoader-31f86c1d55aec17be3f2a203a8e4fb19.min[1].js
[2012.03.28 13:59:21 | 000,000,652 | ---- | M] () -- \Users\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IQ0L3PF8\AdLoader[1].htm
[2012.06.28 18:12:53 | 000,000,905 | ---- | M] () -- \Users\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\S5VPXS4T\TooltipLoader[1].css
[2012.06.28 18:12:53 | 000,014,290 | ---- | M] () -- \Users\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\S5VPXS4T\TooltipLoader[1].js
[2011.07.03 12:40:19 | 000,002,596 | ---- | M] () -- \Users\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\0SCHRWO3\jquery.prettyloader-1.0.1[1].js
[2011.07.03 12:40:12 | 000,000,266 | ---- | M] () -- \Users\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\3Q1YDF1N\global-prettyloader[1].css
[2011.07.02 14:32:21 | 000,007,600 | ---- | M] () -- \Users\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\3Q1YDF1N\war_uploader[1].gif
[2011.09.19 18:20:05 | 000,000,673 | ---- | M] () -- \Users\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\D0S4SLMT\loader.white[1].gif
[2011.09.19 18:25:05 | 000,000,673 | ---- | M] () -- \Users\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\D0S4SLMT\loader.white[2].gif
[2011.09.19 18:27:54 | 000,000,673 | ---- | M] () -- \Users\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\D0S4SLMT\loader.white[3].gif
[2011.07.03 12:30:36 | 000,000,542 | ---- | M] () -- \Users\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\HZJJSHD3\downloader[1].js
[2011.06.10 17:15:18 | 000,001,277 | ---- | M] () -- \Users\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\OF9EOQ8W\LinePreloader[2].swf
[2011.09.19 19:14:12 | 000,028,814 | ---- | M] () -- \Users\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YVM19W4F\menuG5LoaderX[1].js
[2012.05.30 08:41:10 | 000,010,145 | ---- | M] () -- \Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}\modules\ExternalLibraryLoader.jsm
[2011.11.29 19:24:24 | 000,069,120 | ---- | M] () -- \Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\Common\Kies.Common.DeviceServiceLib.FirmwareUpdate.Downloader.dll
[2011.11.29 21:58:56 | 000,131,984 | ---- | M] () -- \Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\External\FirmwareUpdate\BinaryLoaderMgr.exe
[2012.01.01 14:23:49 | 000,028,624 | ---- | M] () -- \Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\CabFile\Common\Kies.Common.DeviceServiceLib.FirmwareUpdate.Downloader.dll.cab
[2012.01.01 14:23:39 | 000,058,838 | ---- | M] () -- \Users\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\CabFile\External\FirmwareUpdate\BinaryLoaderMgr.exe.cab
[2004.11.05 02:53:58 | 000,002,116 | ---- | M] () -- \Users\ROMAN\Desktop\Bejeweled\images\blue-loader.jpg
[2004.11.05 02:53:58 | 000,007,604 | ---- | M] () -- \Users\ROMAN\Desktop\Bejeweled\images\flash-loader.jpg
[2004.11.05 02:53:58 | 000,007,963 | ---- | M] () -- \Users\ROMAN\Desktop\Bejeweled\images\flash-loader_.jpg
[2004.11.05 02:53:58 | 000,006,428 | ---- | M] () -- \Users\ROMAN\Desktop\Bejeweled\images\loader.jpg
[2004.11.05 02:53:58 | 000,028,201 | ---- | M] () -- \Users\ROMAN\Desktop\Bejeweled\images\loaderbar.png
[2004.11.05 02:53:58 | 000,002,693 | ---- | M] () -- \Users\ROMAN\Desktop\Bejeweled\images\loader_.jpg
[2004.11.05 02:53:58 | 000,110,633 | ---- | M] () -- \Users\ROMAN\Desktop\Bejeweled\images\nr_reloader.gif
[2004.11.05 02:53:58 | 000,011,370 | ---- | M] () -- \Users\ROMAN\Desktop\Bejeweled\images\nr_reloader_overlay.jpg
[2004.11.05 02:53:58 | 000,003,973 | ---- | M] () -- \Users\ROMAN\Desktop\Bejeweled\images\nr_reloader_overlaylit.jpg
[2004.11.05 02:53:56 | 000,001,932 | ---- | M] () -- \Users\ROMAN\Desktop\Bejeweled\images\nr_reloader_overlaylit_.gif
[2004.11.05 02:53:56 | 000,003,829 | ---- | M] () -- \Users\ROMAN\Desktop\Bejeweled\images\nr_reloader_overlay_.gif
[2004.11.05 02:53:58 | 000,006,343 | ---- | M] () -- \Users\ROMAN\Desktop\Bejeweled\images\purple-loader.jpg
[2004.11.05 02:53:58 | 000,006,979 | ---- | M] () -- \Users\ROMAN\Desktop\Bejeweled\images\title_loaderbar.jpg
[2004.11.05 02:53:58 | 000,004,691 | ---- | M] () -- \Users\ROMAN\Desktop\Bejeweled\images\title_loaderbarlit.jpg
[2004.11.05 02:53:56 | 000,002,208 | ---- | M] () -- \Users\ROMAN\Desktop\Bejeweled\images\title_loaderbarlit_.gif
[2004.11.05 02:53:56 | 000,003,075 | ---- | M] () -- \Users\ROMAN\Desktop\Bejeweled\images\title_loaderbar_.gif
[2004.11.05 02:53:58 | 000,008,190 | ---- | M] () -- \Users\ROMAN\Desktop\Bejeweled\images\title_loaderbar_clickhere.jpg
[2004.11.05 02:53:58 | 000,008,725 | ---- | M] () -- \Users\ROMAN\Desktop\Bejeweled\images\title_loaderbar_clickhere_over.jpg
[2010.05.20 19:16:18 | 000,013,218 | ---- | M] () -- \Users\ROMAN\Desktop\Bejeweled\sm_images\blue-Loader.tga
[2010.05.20 19:16:18 | 000,263,570 | ---- | M] () -- \Users\ROMAN\Desktop\Bejeweled\sm_images\flash-Loader.tga
[2010.05.20 19:16:18 | 000,073,938 | ---- | M] () -- \Users\ROMAN\Desktop\Bejeweled\sm_images\Loader.tga
[2010.05.20 19:16:18 | 000,060,562 | ---- | M] () -- \Users\ROMAN\Desktop\Bejeweled\sm_images\purple-Loader.tga
[2011.08.19 06:15:24 | 000,000,289 | ---- | M] () -- \Windows.old.000\Documents and Settings\All Users\Big Fish Games\Game Manager\resources\default\images\static_loader.gif
[2012.02.29 08:49:32 | 000,072,638 | ---- | M] () -- \Windows.old.000\Documents and Settings\All Users\Skype\Apps\login\images\loader.gif
[2012.02.29 08:49:32 | 000,003,032 | ---- | M] () -- \Windows.old.000\Documents and Settings\All Users\Skype\Apps\login\images\loader.png
[2011.11.29 18:44:07 | 000,009,828 | ---- | M] () -- \Windows.old.000\Documents and Settings\All Users\Skype\Plugins\Plugins\F57B48ADF2224F088EDD1A2B9BAD84E8\Games\8009C35017684284B0BE39D6E4E53955\Loader_50.gif
[2010.12.21 21:40:35 | 000,057,728 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\img\dt_dadget_loader.png
[2010.12.21 21:40:36 | 000,057,728 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin1\dt_dadget_loader.png
[2010.12.21 21:40:37 | 000,057,728 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin2\dt_dadget_loader.png
[2012.03.28 13:59:22 | 000,010,364 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IQ0L3PF8\AdLoader-31f86c1d55aec17be3f2a203a8e4fb19.min[1].js
[2012.03.28 13:59:21 | 000,000,652 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IQ0L3PF8\AdLoader[1].htm
[2012.06.28 18:12:53 | 000,000,905 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\S5VPXS4T\TooltipLoader[1].css
[2012.06.28 18:12:53 | 000,014,290 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\S5VPXS4T\TooltipLoader[1].js
[2011.07.03 12:40:19 | 000,002,596 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\0SCHRWO3\jquery.prettyloader-1.0.1[1].js
[2011.07.03 12:40:12 | 000,000,266 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\3Q1YDF1N\global-prettyloader[1].css
[2011.07.02 14:32:21 | 000,007,600 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\3Q1YDF1N\war_uploader[1].gif
[2011.09.19 18:20:05 | 000,000,673 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\D0S4SLMT\loader.white[1].gif
[2011.09.19 18:25:05 | 000,000,673 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\D0S4SLMT\loader.white[2].gif
[2011.09.19 18:27:54 | 000,000,673 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\D0S4SLMT\loader.white[3].gif
[2011.07.03 12:30:36 | 000,000,542 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\HZJJSHD3\downloader[1].js
[2011.06.10 17:15:18 | 000,001,277 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\OF9EOQ8W\LinePreloader[2].swf
[2011.09.19 19:14:12 | 000,028,814 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YVM19W4F\menuG5LoaderX[1].js
[2012.05.30 08:41:10 | 000,010,145 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}\modules\ExternalLibraryLoader.jsm
[2011.11.29 19:24:24 | 000,069,120 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\Common\Kies.Common.DeviceServiceLib.FirmwareUpdate.Downloader.dll
[2011.11.29 21:58:56 | 000,131,984 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\External\FirmwareUpdate\BinaryLoaderMgr.exe
[2012.01.01 14:23:49 | 000,028,624 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\CabFile\Common\Kies.Common.DeviceServiceLib.FirmwareUpdate.Downloader.dll.cab
[2012.01.01 14:23:39 | 000,058,838 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\CabFile\External\FirmwareUpdate\BinaryLoaderMgr.exe.cab
[2004.11.05 02:53:58 | 000,002,116 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\Desktop\Bejeweled\images\blue-loader.jpg
[2004.11.05 02:53:58 | 000,007,604 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\Desktop\Bejeweled\images\flash-loader.jpg
[2004.11.05 02:53:58 | 000,007,963 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\Desktop\Bejeweled\images\flash-loader_.jpg
[2004.11.05 02:53:58 | 000,006,428 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\Desktop\Bejeweled\images\loader.jpg
[2004.11.05 02:53:58 | 000,028,201 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\Desktop\Bejeweled\images\loaderbar.png
[2004.11.05 02:53:58 | 000,002,693 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\Desktop\Bejeweled\images\loader_.jpg
[2004.11.05 02:53:58 | 000,110,633 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\Desktop\Bejeweled\images\nr_reloader.gif
[2004.11.05 02:53:58 | 000,011,370 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\Desktop\Bejeweled\images\nr_reloader_overlay.jpg
[2004.11.05 02:53:58 | 000,003,973 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\Desktop\Bejeweled\images\nr_reloader_overlaylit.jpg
[2004.11.05 02:53:56 | 000,001,932 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\Desktop\Bejeweled\images\nr_reloader_overlaylit_.gif
[2004.11.05 02:53:56 | 000,003,829 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\Desktop\Bejeweled\images\nr_reloader_overlay_.gif
[2004.11.05 02:53:58 | 000,006,343 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\Desktop\Bejeweled\images\purple-loader.jpg
[2004.11.05 02:53:58 | 000,006,979 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\Desktop\Bejeweled\images\title_loaderbar.jpg
[2004.11.05 02:53:58 | 000,004,691 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\Desktop\Bejeweled\images\title_loaderbarlit.jpg
[2004.11.05 02:53:56 | 000,002,208 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\Desktop\Bejeweled\images\title_loaderbarlit_.gif
[2004.11.05 02:53:56 | 000,003,075 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\Desktop\Bejeweled\images\title_loaderbar_.gif
[2004.11.05 02:53:58 | 000,008,190 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\Desktop\Bejeweled\images\title_loaderbar_clickhere.jpg
[2004.11.05 02:53:58 | 000,008,725 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\Desktop\Bejeweled\images\title_loaderbar_clickhere_over.jpg
[2010.05.20 19:16:18 | 000,013,218 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\Desktop\Bejeweled\sm_images\blue-Loader.tga
[2010.05.20 19:16:18 | 000,263,570 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\Desktop\Bejeweled\sm_images\flash-Loader.tga
[2010.05.20 19:16:18 | 000,073,938 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\Desktop\Bejeweled\sm_images\Loader.tga
[2010.05.20 19:16:18 | 000,060,562 | ---- | M] () -- \Windows.old.000\Documents and Settings\ROMAN\Desktop\Bejeweled\sm_images\purple-Loader.tga
[2010.03.26 07:33:30 | 000,003,754 | ---- | M] () -- \Windows.old.000\Program Files\CentrumczToolbar\Firefox\Cetrumcz@igeared\chrome\content\libs\loader.js
[2008.10.13 00:00:00 | 000,009,216 | ---- | M] () -- \Windows.old.000\Program Files\Everlight - Moc a kouzla Víl\xulrunner\components\pyloader.dll
[2008.10.13 00:00:00 | 000,002,996 | ---- | M] () -- \Windows.old.000\Program Files\Everlight - Moc a kouzla Víl\xulrunner\components\uriloader.xpt
[2008.10.13 00:00:00 | 000,004,927 | ---- | M] () -- \Windows.old.000\Program Files\Everlight - Moc a kouzla Víl\xulrunner\python\xpcom\server\loader.py
[2009.11.28 10:25:33 | 000,005,795 | ---- | M] () -- \Windows.old.000\Program Files\ICQ6.5\Packages\atlas\Skins\AtlasSkin\images\XtraPreloader\loader.jpg
[2009.11.28 10:25:33 | 000,004,089 | ---- | M] () -- \Windows.old.000\Program Files\ICQ6.5\Packages\atlas\Skins\AtlasSkin\images\XtraPreloader\loader.swf
[2009.03.01 12:31:26 | 000,005,795 | ---- | M] () -- \Windows.old.000\Program Files\ICQ6.5\services\icqApp\ver1\theme\IMAGES\XtraPreloader\loader.jpg
[2009.03.01 12:31:26 | 000,004,089 | ---- | M] () -- \Windows.old.000\Program Files\ICQ6.5\services\icqApp\ver1\theme\IMAGES\XtraPreloader\loader.swf
[2009.08.31 07:06:40 | 000,003,479 | ---- | M] () -- \Windows.old.000\Program Files\ICQ6.5\services\icqXtraz\ver1\content\contact_list\preloader04.swf
[2009.08.31 07:08:27 | 000,003,479 | ---- | M] () -- \Windows.old.000\Program Files\ICQ6.5\services\icqXtraz\ver1\content\coreg\preloader04.swf
[2009.08.31 07:06:20 | 000,552,798 | ---- | M] () -- \Windows.old.000\Program Files\ICQ6.5\services\icqXtraz\ver1\theme\game_center\loaderBkg.png
[2009.05.18 09:51:58 | 000,006,308 | ---- | M] () -- \Windows.old.000\Program Files\OpenOffice.org 3\Basis\program\pythonloader.py
[2009.05.15 00:28:34 | 000,022,528 | ---- | M] () -- \Windows.old.000\Program Files\OpenOffice.org 3\Basis\program\pythonloader.uno.dll
[2009.05.18 10:50:42 | 000,000,171 | ---- | M] () -- \Windows.old.000\Program Files\OpenOffice.org 3\Basis\program\pythonloader.uno.ini
[2009.05.15 00:28:28 | 000,029,696 | ---- | M] () -- \Windows.old.000\Program Files\OpenOffice.org 3\URE\bin\javaloader.uno.dll
[2009.05.18 09:18:34 | 000,003,872 | ---- | M] () -- \Windows.old.000\Program Files\OpenOffice.org 3\URE\java\unoloader.jar
[2009.12.26 21:02:26 | 000,054,688 | ---- | M] () -- \Windows.old.000\Program Files\Panasonic\VideoCam Suite 3.0\YouTubeUploaderMain.exe
[2009.12.26 20:58:00 | 003,361,792 | ---- | M] () -- \Windows.old.000\Program Files\Panasonic\VideoCam Suite 3.0\YTUploader.dll
[2009.11.26 10:56:24 | 000,000,112 | ---- | M] () -- \Windows.old.000\Program Files\Panasonic\VideoCam Suite 3.0\YTUploader.ini
[2009.12.26 20:45:24 | 000,150,016 | ---- | M] () -- \Windows.old.000\Program Files\Panasonic\VideoCam Suite 3.0\Core\Spec\AVCHD\BDCore\MediaLoader.dll
[2003.09.26 08:15:26 | 000,169,384 | ---- | M] () -- \Windows.old.000\Program Files\Valve\cstrike\models\qloader.mdl
[2003.09.26 14:19:52 | 000,352,548 | ---- | M] () -- \Windows.old.000\Program Files\Valve\valve\models\loader.mdl
[2003.09.26 14:24:16 | 000,012,764 | ---- | M] () -- \Windows.old.000\Program Files\Valve\valve\sound\ambience\loader_hydra1.wav
[2003.09.26 14:24:16 | 000,012,164 | ---- | M] () -- \Windows.old.000\Program Files\Valve\valve\sound\ambience\loader_step1.wav
[2007.08.25 22:35:18 | 000,001,640 | ---- | M] () -- \Windows.old.000\Program Files\Zaklínač\System\Scripts\CSkinLoader.luc
[2011.08.19 06:15:24 | 000,000,289 | ---- | M] () -- \Windows.old.000\ProgramData\Application Data\Big Fish Games\Game Manager\resources\default\images\static_loader.gif
[2012.02.29 08:49:32 | 000,072,638 | ---- | M] () -- \Windows.old.000\ProgramData\Application Data\Skype\Apps\login\images\loader.gif
[2012.02.29 08:49:32 | 000,003,032 | ---- | M] () -- \Windows.old.000\ProgramData\Application Data\Skype\Apps\login\images\loader.png
[2011.11.29 18:44:07 | 000,009,828 | ---- | M] () -- \Windows.old.000\ProgramData\Application Data\Skype\Plugins\Plugins\F57B48ADF2224F088EDD1A2B9BAD84E8\Games\8009C35017684284B0BE39D6E4E53955\Loader_50.gif
[2011.08.19 06:15:24 | 000,000,289 | ---- | M] () -- \Windows.old.000\ProgramData\Data aplikací\Big Fish Games\Game Manager\resources\default\images\static_loader.gif
[2012.02.29 08:49:32 | 000,072,638 | ---- | M] () -- \Windows.old.000\ProgramData\Data aplikací\Skype\Apps\login\images\loader.gif
[2012.02.29 08:49:32 | 000,003,032 | ---- | M] () -- \Windows.old.000\ProgramData\Data aplikací\Skype\Apps\login\images\loader.png
[2011.11.29 18:44:07 | 000,009,828 | ---- | M] () -- \Windows.old.000\ProgramData\Data aplikací\Skype\Plugins\Plugins\F57B48ADF2224F088EDD1A2B9BAD84E8\Games\8009C35017684284B0BE39D6E4E53955\Loader_50.gif
[2009.07.20 12:52:26 | 000,000,232 | ---- | M] () -- \Windows.old.000\ProgramData\Nero\OnlineServices\NOSWebConfig\MySpace\uploadError.xml
[2011.08.19 06:15:24 | 000,000,289 | ---- | M] () -- \Windows.old.000\Users\All Users\Big Fish Games\Game Manager\resources\default\images\static_loader.gif
[2012.02.29 08:49:32 | 000,072,638 | ---- | M] () -- \Windows.old.000\Users\All Users\Skype\Apps\login\images\loader.gif
[2012.02.29 08:49:32 | 000,003,032 | ---- | M] () -- \Windows.old.000\Users\All Users\Skype\Apps\login\images\loader.png
[2011.11.29 18:44:07 | 000,009,828 | ---- | M] () -- \Windows.old.000\Users\All Users\Skype\Plugins\Plugins\F57B48ADF2224F088EDD1A2B9BAD84E8\Games\8009C35017684284B0BE39D6E4E53955\Loader_50.gif
[2010.12.21 21:40:35 | 000,057,728 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows Sidebar\Gadgets\DT.gadget\img\dt_dadget_loader.png
[2010.12.21 21:40:36 | 000,057,728 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin1\dt_dadget_loader.png
[2010.12.21 21:40:37 | 000,057,728 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin2\dt_dadget_loader.png
[2012.03.28 13:59:22 | 000,010,364 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows\Temporary Internet Files\Content.IE5\IQ0L3PF8\AdLoader-31f86c1d55aec17be3f2a203a8e4fb19.min[1].js
[2012.03.28 13:59:21 | 000,000,652 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows\Temporary Internet Files\Content.IE5\IQ0L3PF8\AdLoader[1].htm
[2012.06.28 18:12:53 | 000,000,905 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows\Temporary Internet Files\Content.IE5\S5VPXS4T\TooltipLoader[1].css
[2012.06.28 18:12:53 | 000,014,290 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows\Temporary Internet Files\Content.IE5\S5VPXS4T\TooltipLoader[1].js
[2011.07.03 12:40:19 | 000,002,596 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\0SCHRWO3\jquery.prettyloader-1.0.1[1].js
[2011.07.03 12:40:12 | 000,000,266 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\3Q1YDF1N\global-prettyloader[1].css
[2011.07.02 14:32:21 | 000,007,600 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\3Q1YDF1N\war_uploader[1].gif
[2011.09.19 18:20:05 | 000,000,673 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\D0S4SLMT\loader.white[1].gif
[2011.09.19 18:25:05 | 000,000,673 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\D0S4SLMT\loader.white[2].gif
[2011.09.19 18:27:54 | 000,000,673 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\D0S4SLMT\loader.white[3].gif
[2011.07.03 12:30:36 | 000,000,542 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\HZJJSHD3\downloader[1].js
[2011.06.10 17:15:18 | 000,001,277 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\OF9EOQ8W\LinePreloader[2].swf
[2011.09.19 19:14:12 | 000,028,814 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YVM19W4F\menuG5LoaderX[1].js
[2010.12.11 17:44:01 | 000,000,336 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\ZN1IU59Y\8475-1-loader[1].js
[2012.03.28 13:59:22 | 000,010,364 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Temporary Internet Files\Content.IE5\IQ0L3PF8\AdLoader-31f86c1d55aec17be3f2a203a8e4fb19.min[1].js
[2012.03.28 13:59:21 | 000,000,652 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Temporary Internet Files\Content.IE5\IQ0L3PF8\AdLoader[1].htm
[2012.06.28 18:12:53 | 000,000,905 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Temporary Internet Files\Content.IE5\S5VPXS4T\TooltipLoader[1].css
[2012.06.28 18:12:53 | 000,014,290 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Temporary Internet Files\Content.IE5\S5VPXS4T\TooltipLoader[1].js
[2011.07.03 12:40:19 | 000,002,596 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Temporary Internet Files\Low\Content.IE5\0SCHRWO3\jquery.prettyloader-1.0.1[1].js
[2011.07.03 12:40:12 | 000,000,266 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Temporary Internet Files\Low\Content.IE5\3Q1YDF1N\global-prettyloader[1].css
[2011.07.02 14:32:21 | 000,007,600 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Temporary Internet Files\Low\Content.IE5\3Q1YDF1N\war_uploader[1].gif
[2011.09.19 18:20:05 | 000,000,673 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Temporary Internet Files\Low\Content.IE5\D0S4SLMT\loader.white[1].gif
[2011.09.19 18:25:05 | 000,000,673 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Temporary Internet Files\Low\Content.IE5\D0S4SLMT\loader.white[2].gif
[2011.09.19 18:27:54 | 000,000,673 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Temporary Internet Files\Low\Content.IE5\D0S4SLMT\loader.white[3].gif
[2011.07.03 12:30:36 | 000,000,542 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Temporary Internet Files\Low\Content.IE5\HZJJSHD3\downloader[1].js
[2011.06.10 17:15:18 | 000,001,277 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Temporary Internet Files\Low\Content.IE5\OF9EOQ8W\LinePreloader[2].swf
[2011.09.19 19:14:12 | 000,028,814 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\Temporary Internet Files\Low\Content.IE5\YVM19W4F\menuG5LoaderX[1].js
[2009.06.13 14:25:03 | 000,003,364 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Local\VirtualStore\Program Files\Everlight - Moc a kouzla Víl\xulrunner\python\xpcom\server\loader.pyc
[2010.12.09 15:07:22 | 000,000,767 | ---- | M] () -- \Windows.old.000\Users\ROMAN\AppData\Roaming\Microsoft\Windows\Recent\cesta-do-pekel-by-mirec-of-poweruploaders.lnk
[2012.05.30 08:41:10 | 000,010,145 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Data aplikací\Mozilla\Firefox\Profiles\acnm8th9.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}\modules\ExternalLibraryLoader.jsm
[2011.11.29 19:24:24 | 000,069,120 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Data aplikací\Samsung\Kies\UpdateTemp\backup\Common\Kies.Common.DeviceServiceLib.FirmwareUpdate.Downloader.dll
[2011.11.29 21:58:56 | 000,131,984 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Data aplikací\Samsung\Kies\UpdateTemp\backup\External\FirmwareUpdate\BinaryLoaderMgr.exe
[2012.01.01 14:23:49 | 000,028,624 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Data aplikací\Samsung\Kies\UpdateTemp\Sub\CabFile\Common\Kies.Common.DeviceServiceLib.FirmwareUpdate.Downloader.dll.cab
[2012.01.01 14:23:39 | 000,058,838 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Data aplikací\Samsung\Kies\UpdateTemp\Sub\CabFile\External\FirmwareUpdate\BinaryLoaderMgr.exe.cab
[2010.12.21 21:40:35 | 000,057,728 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Local Settings\Microsoft\Windows Sidebar\Gadgets\DT.gadget\img\dt_dadget_loader.png
[2010.12.21 21:40:36 | 000,057,728 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Local Settings\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin1\dt_dadget_loader.png
[2010.12.21 21:40:37 | 000,057,728 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Local Settings\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin2\dt_dadget_loader.png
[2012.03.28 13:59:22 | 000,010,364 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Local Settings\Microsoft\Windows\Temporary Internet Files\Content.IE5\IQ0L3PF8\AdLoader-31f86c1d55aec17be3f2a203a8e4fb19.min[1].js
[2012.03.28 13:59:21 | 000,000,652 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Local Settings\Microsoft\Windows\Temporary Internet Files\Content.IE5\IQ0L3PF8\AdLoader[1].htm
[2012.06.28 18:12:53 | 000,000,905 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Local Settings\Microsoft\Windows\Temporary Internet Files\Content.IE5\S5VPXS4T\TooltipLoader[1].css
[2012.06.28 18:12:53 | 000,014,290 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Local Settings\Microsoft\Windows\Temporary Internet Files\Content.IE5\S5VPXS4T\TooltipLoader[1].js
[2011.07.03 12:40:19 | 000,002,596 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Local Settings\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\0SCHRWO3\jquery.prettyloader-1.0.1[1].js
[2011.07.03 12:40:12 | 000,000,266 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Local Settings\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\3Q1YDF1N\global-prettyloader[1].css
[2011.07.02 14:32:21 | 000,007,600 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Local Settings\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\3Q1YDF1N\war_uploader[1].gif
[2011.09.19 18:20:05 | 000,000,673 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Local Settings\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\D0S4SLMT\loader.white[1].gif
[2011.09.19 18:25:05 | 000,000,673 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Local Settings\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\D0S4SLMT\loader.white[2].gif
[2011.09.19 18:27:54 | 000,000,673 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Local Settings\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\D0S4SLMT\loader.white[3].gif
[2011.07.03 12:30:36 | 000,000,542 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Local Settings\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\HZJJSHD3\downloader[1].js
[2011.06.10 17:15:18 | 000,001,277 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Local Settings\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\OF9EOQ8W\LinePreloader[2].swf
[2011.09.19 19:14:12 | 000,028,814 | ---- | M] () -- \Windows.old.000\Users\ROMAN\Local Settings\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YVM19W4F\menuG5LoaderX[1].js
[2010.09.19 09:46:35 | 000,149,504 | ---- | M] () -- \Windows.old.000\Windows\assembly\NativeImages_v2.0.50727_32\YouTubeUploaderMain\22ec649db42e7f70f2ed8a0e0e6198a1\YouTubeUploaderMain.ni.exe
[2010.09.19 09:46:36 | 003,770,368 | ---- | M] () -- \Windows.old.000\Windows\assembly\NativeImages_v2.0.50727_32\YTUploader\4de19cb5502ea9388eeae17049f1f910\YTUploader.ni.dll
[2008.01.21 04:23:37 | 000,038,400 | ---- | M] () -- \Windows.old.000\Windows\System32\dmloader.dll
[2009.07.21 08:52:36 | 000,009,622 | ---- | M] () -- \Windows.old.000\Windows\System32\Adobe\Shockwave 11\shockwave_Projector_Loader.dcr
[2009.03.23 12:30:28 | 000,009,622 | ---- | M] () -- \Windows.old.000\Windows\System32\Macromed\Shockwave 10\shockwave_Projector_Loader.dcr
[2008.05.02 21:03:33 | 000,003,402 | ---- | M] () -- \Windows.old.000\Windows\winsxs\Backup\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6001.18000_cs-cz_33426ea9fd097a15.manifest
[2008.05.02 21:03:33 | 000,027,648 | ---- | M] () -- \Windows.old.000\Windows\winsxs\Backup\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6001.18000_cs-cz_33426ea9fd097a15_winload.exe.mui_3bc5b827
[2008.05.02 21:03:33 | 000,019,968 | ---- | M] () -- \Windows.old.000\Windows\winsxs\Backup\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6001.18000_cs-cz_33426ea9fd097a15_winresume.exe.mui_ff8b5358
[2009.06.08 06:50:55 | 000,004,864 | ---- | M] () -- \Windows.old.000\Windows\winsxs\Backup\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6001.18027_none_5b181c606cb0c98b.manifest
[2009.06.08 06:50:55 | 000,988,216 | ---- | M] () -- \Windows.old.000\Windows\winsxs\Backup\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6001.18027_none_5b181c606cb0c98b_winload.exe_75835076
[2009.06.08 06:50:55 | 000,927,288 | ---- | M] () -- \Windows.old.000\Windows\winsxs\Backup\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6001.18027_none_5b181c606cb0c98b_winresume.exe_85cd1215
[2008.01.21 04:26:48 | 000,003,885 | ---- | M] () -- \Windows.old.000\Windows\winsxs\Backup\x86_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.0.6001.18000_none_6b332839511be4b2.manifest
[2008.01.21 04:26:48 | 000,021,048 | ---- | M] () -- \Windows.old.000\Windows\winsxs\Backup\x86_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.0.6001.18000_none_6b332839511be4b2_spldr.sys_98bd87a0
[2008.02.29 09:26:23 | 000,003,414 | ---- | M] () -- \Windows.old.000\Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.16646_de-de_cb9c6772f81a418b.manifest
[2008.02.29 09:19:08 | 000,003,414 | ---- | M] () -- \Windows.old.000\Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.16646_en-us_748d3d6be6f84d50.manifest
[2008.02.29 12:05:29 | 000,003,414 | ---- | M] () -- \Windows.old.000\Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.16646_es-es_74589a4fe71f3ef5.manifest
[2008.02.29 12:07:01 | 000,003,414 | ---- | M] () -- \Windows.old.000\Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.16646_fr-fr_1710104ed9f15557.manifest
[2008.02.29 12:05:17 | 000,003,414 | ---- | M] () -- \Windows.old.000\Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.16646_it-it_01380695b1233ad5.manifest
[2008.02.29 10:14:00 | 000,003,414 | ---- | M] () -- \Windows.old.000\Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.16646_ja-jp_a35d85a2a43e4cb0.manifest
[2008.02.29 12:02:51 | 000,003,414 | ---- | M] () -- \Windows.old.000\Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.16646_nl-nl_2d992eca70004957.manifest
[2008.02.29 09:19:24 | 000,003,414 | ---- | M] () -- \Windows.old.000\Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.20782_de-de_cbf6c366115bebbd.manifest
[2008.02.29 09:21:05 | 000,003,414 | ---- | M] () -- \Windows.old.000\Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.20782_en-us_74e7995f0039f782.manifest
[2008.02.29 11:56:53 | 000,003,414 | ---- | M] () -- \Windows.old.000\Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.20782_es-es_74b2f6430060e927.manifest
[2008.02.29 12:12:24 | 000,003,414 | ---- | M] () -- \Windows.old.000\Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.20782_fr-fr_176a6c41f332ff89.manifest
[2008.02.29 12:01:15 | 000,003,414 | ---- | M] () -- \Windows.old.000\Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.20782_it-it_01926288ca64e507.manifest
[2008.02.29 09:46:06 | 000,003,414 | ---- | M] () -- \Windows.old.000\Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.20782_ja-jp_a3b7e195bd7ff6e2.manifest
[2008.02.29 11:17:45 | 000,003,414 | ---- | M] () -- \Windows.old.000\Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.20782_nl-nl_2df38abd8941f389.manifest
[2008.05.02 20:51:22 | 000,003,402 | ---- | M] () -- \Windows.old.000\Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6001.18000_cs-cz_33426ea9fd097a15.manifest
[2008.02.29 09:17:27 | 000,004,858 | ---- | M] () -- \Windows.old.000\Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6000.16646_none_591b3d986f9b5725.manifest
[2008.02.29 09:13:09 | 000,004,858 | ---- | M] () -- \Windows.old.000\Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6000.20782_none_5975998b88dd0157.manifest
[2008.01.21 04:20:53 | 000,004,864 | ---- | M] () -- \Windows.old.000\Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6001.18000_none_5b26ba326ca6e048.manifest
[2008.02.29 10:08:07 | 000,004,864 | ---- | M] () -- \Windows.old.000\Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6001.18027_none_5b181c606cb0c98b.manifest
[2008.02.29 09:37:27 | 000,004,864 | ---- | M] () -- \Windows.old.000\Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6001.22125_none_5b9fb89785d036a7.manifest
[2006.11.02 12:13:06 | 000,003,970 | ---- | M] () -- \Windows.old.000\Windows\winsxs\Manifests\x86_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.0.6000.16386_none_68fc663d5430d3de.manifest
[2008.01.21 04:19:11 | 000,003,885 | ---- | M] () -- \Windows.old.000\Windows\winsxs\Manifests\x86_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.0.6001.18000_none_6b332839511be4b2.manifest
[2008.01.21 04:23:37 | 000,038,400 | ---- | M] () -- \Windows.old.000\Windows\winsxs\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.0.6001.18000_none_45f41bf18fa2cf5a\dmloader.dll
[2011.08.19 06:15:24 | 000,000,289 | ---- | M] () -- \Windows.old\Documents and Settings\All Users\Big Fish Games\Game Manager\resources\default\images\static_loader.gif
[2012.02.29 08:49:32 | 000,072,638 | ---- | M] () -- \Windows.old\Documents and Settings\All Users\Skype\Apps\login\images\loader.gif
[2012.02.29 08:49:32 | 000,003,032 | ---- | M] () -- \Windows.old\Documents and Settings\All Users\Skype\Apps\login\images\loader.png
[2011.11.29 18:44:07 | 000,009,828 | ---- | M] () -- \Windows.old\Documents and Settings\All Users\Skype\Plugins\Plugins\F57B48ADF2224F088EDD1A2B9BAD84E8\Games\8009C35017684284B0BE39D6E4E53955\Loader_50.gif
[2010.12.21 21:40:35 | 000,057,728 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\img\dt_dadget_loader.png
[2010.12.21 21:40:36 | 000,057,728 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin1\dt_dadget_loader.png
[2010.12.21 21:40:37 | 000,057,728 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin2\dt_dadget_loader.png
[2012.03.28 13:59:22 | 000,010,364 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IQ0L3PF8\AdLoader-31f86c1d55aec17be3f2a203a8e4fb19.min[1].js
[2012.03.28 13:59:21 | 000,000,652 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IQ0L3PF8\AdLoader[1].htm
[2012.06.28 18:12:53 | 000,000,905 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\S5VPXS4T\TooltipLoader[1].css
[2012.06.28 18:12:53 | 000,014,290 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\S5VPXS4T\TooltipLoader[1].js
[2011.07.03 12:40:19 | 000,002,596 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\0SCHRWO3\jquery.prettyloader-1.0.1[1].js
[2011.07.03 12:40:12 | 000,000,266 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\3Q1YDF1N\global-prettyloader[1].css
[2011.07.02 14:32:21 | 000,007,600 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\3Q1YDF1N\war_uploader[1].gif
[2011.09.19 18:20:05 | 000,000,673 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\D0S4SLMT\loader.white[1].gif
[2011.09.19 18:25:05 | 000,000,673 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\D0S4SLMT\loader.white[2].gif
[2011.09.19 18:27:54 | 000,000,673 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\D0S4SLMT\loader.white[3].gif
[2011.07.03 12:30:36 | 000,000,542 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\HZJJSHD3\downloader[1].js
[2011.06.10 17:15:18 | 000,001,277 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\OF9EOQ8W\LinePreloader[2].swf
[2011.09.19 19:14:12 | 000,028,814 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YVM19W4F\menuG5LoaderX[1].js
[2012.05.30 08:41:10 | 000,010,145 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}\modules\ExternalLibraryLoader.jsm
[2011.11.29 19:24:24 | 000,069,120 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\Common\Kies.Common.DeviceServiceLib.FirmwareUpdate.Downloader.dll
[2011.11.29 21:58:56 | 000,131,984 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\backup\External\FirmwareUpdate\BinaryLoaderMgr.exe
[2012.01.01 14:23:49 | 000,028,624 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\CabFile\Common\Kies.Common.DeviceServiceLib.FirmwareUpdate.Downloader.dll.cab
[2012.01.01 14:23:39 | 000,058,838 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\CabFile\External\FirmwareUpdate\BinaryLoaderMgr.exe.cab
[2004.11.05 02:53:58 | 000,002,116 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\Desktop\Bejeweled\images\blue-loader.jpg
[2004.11.05 02:53:58 | 000,007,604 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\Desktop\Bejeweled\images\flash-loader.jpg
[2004.11.05 02:53:58 | 000,007,963 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\Desktop\Bejeweled\images\flash-loader_.jpg
[2004.11.05 02:53:58 | 000,006,428 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\Desktop\Bejeweled\images\loader.jpg
[2004.11.05 02:53:58 | 000,028,201 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\Desktop\Bejeweled\images\loaderbar.png
[2004.11.05 02:53:58 | 000,002,693 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\Desktop\Bejeweled\images\loader_.jpg
[2004.11.05 02:53:58 | 000,110,633 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\Desktop\Bejeweled\images\nr_reloader.gif
[2004.11.05 02:53:58 | 000,011,370 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\Desktop\Bejeweled\images\nr_reloader_overlay.jpg
[2004.11.05 02:53:58 | 000,003,973 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\Desktop\Bejeweled\images\nr_reloader_overlaylit.jpg
[2004.11.05 02:53:56 | 000,001,932 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\Desktop\Bejeweled\images\nr_reloader_overlaylit_.gif
[2004.11.05 02:53:56 | 000,003,829 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\Desktop\Bejeweled\images\nr_reloader_overlay_.gif
[2004.11.05 02:53:58 | 000,006,343 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\Desktop\Bejeweled\images\purple-loader.jpg
[2004.11.05 02:53:58 | 000,006,979 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\Desktop\Bejeweled\images\title_loaderbar.jpg
[2004.11.05 02:53:58 | 000,004,691 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\Desktop\Bejeweled\images\title_loaderbarlit.jpg
[2004.11.05 02:53:56 | 000,002,208 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\Desktop\Bejeweled\images\title_loaderbarlit_.gif
[2004.11.05 02:53:56 | 000,003,075 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\Desktop\Bejeweled\images\title_loaderbar_.gif
[2004.11.05 02:53:58 | 000,008,190 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\Desktop\Bejeweled\images\title_loaderbar_clickhere.jpg
[2004.11.05 02:53:58 | 000,008,725 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\Desktop\Bejeweled\images\title_loaderbar_clickhere_over.jpg
[2010.05.20 19:16:18 | 000,013,218 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\Desktop\Bejeweled\sm_images\blue-Loader.tga
[2010.05.20 19:16:18 | 000,263,570 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\Desktop\Bejeweled\sm_images\flash-Loader.tga
[2010.05.20 19:16:18 | 000,073,938 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\Desktop\Bejeweled\sm_images\Loader.tga
[2010.05.20 19:16:18 | 000,060,562 | ---- | M] () -- \Windows.old\Documents and Settings\ROMAN\Desktop\Bejeweled\sm_images\purple-Loader.tga
[2006.10.26 14:40:34 | 000,057,344 | ---- | M] () -- \Windows.old\Program Files\Common Files\microsoft shared\VS7DEBUG\coloader.dll
[2006.10.26 14:40:34 | 000,005,120 | ---- | M] () -- \Windows.old\Program Files\Common Files\microsoft shared\VS7DEBUG\coloader.tlb
[2008.03.27 23:51:18 | 000,042,304 | ---- | M] () -- \Windows.old\Program Files\HP\Digital Imaging\Smart Web Printing\RsrcLoaderLib.dll
[2007.08.25 22:35:18 | 000,001,640 | ---- | M] () -- \Windows.old\Program Files\Zaklínač\System\Scripts\CSkinLoader.luc
[2011.08.19 06:15:24 | 000,000,289 | ---- | M] () -- \Windows.old\ProgramData\Application Data\Big Fish Games\Game Manager\resources\default\images\static_loader.gif
[2012.02.29 08:49:32 | 000,072,638 | ---- | M] () -- \Windows.old\ProgramData\Application Data\Skype\Apps\login\images\loader.gif
[2012.02.29 08:49:32 | 000,003,032 | ---- | M] () -- \Windows.old\ProgramData\Application Data\Skype\Apps\login\images\loader.png
[2011.11.29 18:44:07 | 000,009,828 | ---- | M] () -- \Windows.old\ProgramData\Application Data\Skype\Plugins\Plugins\F57B48ADF2224F088EDD1A2B9BAD84E8\Games\8009C35017684284B0BE39D6E4E53955\Loader_50.gif
[2011.08.19 06:15:24 | 000,000,289 | ---- | M] () -- \Windows.old\ProgramData\Data aplikací\Big Fish Games\Game Manager\resources\default\images\static_loader.gif
[2012.02.29 08:49:32 | 000,072,638 | ---- | M] () -- \Windows.old\ProgramData\Data aplikací\Skype\Apps\login\images\loader.gif
[2012.02.29 08:49:32 | 000,003,032 | ---- | M] () -- \Windows.old\ProgramData\Data aplikací\Skype\Apps\login\images\loader.png
[2011.11.29 18:44:07 | 000,009,828 | ---- | M] () -- \Windows.old\ProgramData\Data aplikací\Skype\Plugins\Plugins\F57B48ADF2224F088EDD1A2B9BAD84E8\Games\8009C35017684284B0BE39D6E4E53955\Loader_50.gif
[2011.08.19 06:15:24 | 000,000,289 | ---- | M] () -- \Windows.old\Users\All Users\Big Fish Games\Game Manager\resources\default\images\static_loader.gif
[2012.02.29 08:49:32 | 000,072,638 | ---- | M] () -- \Windows.old\Users\All Users\Skype\Apps\login\images\loader.gif
[2012.02.29 08:49:32 | 000,003,032 | ---- | M] () -- \Windows.old\Users\All Users\Skype\Apps\login\images\loader.png
[2011.11.29 18:44:07 | 000,009,828 | ---- | M] () -- \Windows.old\Users\All Users\Skype\Plugins\Plugins\F57B48ADF2224F088EDD1A2B9BAD84E8\Games\8009C35017684284B0BE39D6E4E53955\Loader_50.gif
[2010.12.21 21:40:35 | 000,057,728 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows Sidebar\Gadgets\DT.gadget\img\dt_dadget_loader.png
[2010.12.21 21:40:36 | 000,057,728 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin1\dt_dadget_loader.png
[2010.12.21 21:40:37 | 000,057,728 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin2\dt_dadget_loader.png
[2012.03.28 13:59:22 | 000,010,364 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows\Temporary Internet Files\Content.IE5\IQ0L3PF8\AdLoader-31f86c1d55aec17be3f2a203a8e4fb19.min[1].js
[2012.03.28 13:59:21 | 000,000,652 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows\Temporary Internet Files\Content.IE5\IQ0L3PF8\AdLoader[1].htm
[2012.06.28 18:12:53 | 000,000,905 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows\Temporary Internet Files\Content.IE5\S5VPXS4T\TooltipLoader[1].css
[2012.06.28 18:12:53 | 000,014,290 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows\Temporary Internet Files\Content.IE5\S5VPXS4T\TooltipLoader[1].js
[2011.07.03 12:40:19 | 000,002,596 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\0SCHRWO3\jquery.prettyloader-1.0.1[1].js
[2011.07.03 12:40:12 | 000,000,266 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\3Q1YDF1N\global-prettyloader[1].css
[2011.07.02 14:32:21 | 000,007,600 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\3Q1YDF1N\war_uploader[1].gif
[2011.09.19 18:20:05 | 000,000,673 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\D0S4SLMT\loader.white[1].gif
[2011.09.19 18:25:05 | 000,000,673 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\D0S4SLMT\loader.white[2].gif
[2011.09.19 18:27:54 | 000,000,673 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\D0S4SLMT\loader.white[3].gif
[2011.07.03 12:30:36 | 000,000,542 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\HZJJSHD3\downloader[1].js
[2011.06.10 17:15:18 | 000,001,277 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\OF9EOQ8W\LinePreloader[2].swf
[2011.09.19 19:14:12 | 000,028,814 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Data aplikací\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YVM19W4F\menuG5LoaderX[1].js
[2009.03.19 00:38:55 | 000,001,849 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\HQXL5LLZ\ajax_loader_2[1].gif
[2012.03.28 13:59:22 | 000,010,364 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Temporary Internet Files\Content.IE5\IQ0L3PF8\AdLoader-31f86c1d55aec17be3f2a203a8e4fb19.min[1].js
[2012.03.28 13:59:21 | 000,000,652 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Temporary Internet Files\Content.IE5\IQ0L3PF8\AdLoader[1].htm
[2012.06.28 18:12:53 | 000,000,905 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Temporary Internet Files\Content.IE5\S5VPXS4T\TooltipLoader[1].css
[2012.06.28 18:12:53 | 000,014,290 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Temporary Internet Files\Content.IE5\S5VPXS4T\TooltipLoader[1].js
[2011.07.03 12:40:19 | 000,002,596 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Temporary Internet Files\Low\Content.IE5\0SCHRWO3\jquery.prettyloader-1.0.1[1].js
[2011.07.03 12:40:12 | 000,000,266 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Temporary Internet Files\Low\Content.IE5\3Q1YDF1N\global-prettyloader[1].css
[2011.07.02 14:32:21 | 000,007,600 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Temporary Internet Files\Low\Content.IE5\3Q1YDF1N\war_uploader[1].gif
[2011.09.19 18:20:05 | 000,000,673 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Temporary Internet Files\Low\Content.IE5\D0S4SLMT\loader.white[1].gif
[2011.09.19 18:25:05 | 000,000,673 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Temporary Internet Files\Low\Content.IE5\D0S4SLMT\loader.white[2].gif
[2011.09.19 18:27:54 | 000,000,673 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Temporary Internet Files\Low\Content.IE5\D0S4SLMT\loader.white[3].gif
[2011.07.03 12:30:36 | 000,000,542 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Temporary Internet Files\Low\Content.IE5\HZJJSHD3\downloader[1].js
[2011.06.10 17:15:18 | 000,001,277 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Temporary Internet Files\Low\Content.IE5\OF9EOQ8W\LinePreloader[2].swf
[2011.09.19 19:14:12 | 000,028,814 | ---- | M] () -- \Windows.old\Users\ROMAN\AppData\Local\Temporary Internet Files\Low\Content.IE5\YVM19W4F\menuG5LoaderX[1].js
[2012.05.30 08:41:10 | 000,010,145 | ---- | M] () -- \Windows.old\Users\ROMAN\Data aplikací\Mozilla\Firefox\Profiles\acnm8th9.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}\modules\ExternalLibraryLoader.jsm
[2011.11.29 19:24:24 | 000,069,120 | ---- | M] () -- \Windows.old\Users\ROMAN\Data aplikací\Samsung\Kies\UpdateTemp\backup\Common\Kies.Common.DeviceServiceLib.FirmwareUpdate.Downloader.dll
[2011.11.29 21:58:56 | 000,131,984 | ---- | M] () -- \Windows.old\Users\ROMAN\Data aplikací\Samsung\Kies\UpdateTemp\backup\External\FirmwareUpdate\BinaryLoaderMgr.exe
[2012.01.01 14:23:49 | 000,028,624 | ---- | M] () -- \Windows.old\Users\ROMAN\Data aplikací\Samsung\Kies\UpdateTemp\Sub\CabFile\Common\Kies.Common.DeviceServiceLib.FirmwareUpdate.Downloader.dll.cab
[2012.01.01 14:23:39 | 000,058,838 | ---- | M] () -- \Windows.old\Users\ROMAN\Data aplikací\Samsung\Kies\UpdateTemp\Sub\CabFile\External\FirmwareUpdate\BinaryLoaderMgr.exe.cab
[2010.12.21 21:40:35 | 000,057,728 | ---- | M] () -- \Windows.old\Users\ROMAN\Local Settings\Microsoft\Windows Sidebar\Gadgets\DT.gadget\img\dt_dadget_loader.png
[2010.12.21 21:40:36 | 000,057,728 | ---- | M] () -- \Windows.old\Users\ROMAN\Local Settings\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin1\dt_dadget_loader.png
[2010.12.21 21:40:37 | 000,057,728 | ---- | M] () -- \Windows.old\Users\ROMAN\Local Settings\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin2\dt_dadget_loader.png
[2012.03.28 13:59:22 | 000,010,364 | ---- | M] () -- \Windows.old\Users\ROMAN\Local Settings\Microsoft\Windows\Temporary Internet Files\Content.IE5\IQ0L3PF8\AdLoader-31f86c1d55aec17be3f2a203a8e4fb19.min[1].js
[2012.03.28 13:59:21 | 000,000,652 | ---- | M] () -- \Windows.old\Users\ROMAN\Local Settings\Microsoft\Windows\Temporary Internet Files\Content.IE5\IQ0L3PF8\AdLoader[1].htm
[2012.06.28 18:12:53 | 000,000,905 | ---- | M] () -- \Windows.old\Users\ROMAN\Local Settings\Microsoft\Windows\Temporary Internet Files\Content.IE5\S5VPXS4T\TooltipLoader[1].css
[2012.06.28 18:12:53 | 000,014,290 | ---- | M] () -- \Windows.old\Users\ROMAN\Local Settings\Microsoft\Windows\Temporary Internet Files\Content.IE5\S5VPXS4T\TooltipLoader[1].js
[2011.07.03 12:40:19 | 000,002,596 | ---- | M] () -- \Windows.old\Users\ROMAN\Local Settings\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\0SCHRWO3\jquery.prettyloader-1.0.1[1].js
[2011.07.03 12:40:12 | 000,000,266 | ---- | M] () -- \Windows.old\Users\ROMAN\Local Settings\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\3Q1YDF1N\global-prettyloader[1].css
[2011.07.02 14:32:21 | 000,007,600 | ---- | M] () -- \Windows.old\Users\ROMAN\Local Settings\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\3Q1YDF1N\war_uploader[1].gif
[2011.09.19 18:20:05 | 000,000,673 | ---- | M] () -- \Windows.old\Users\ROMAN\Local Settings\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\D0S4SLMT\loader.white[1].gif
[2011.09.19 18:25:05 | 000,000,673 | ---- | M] () -- \Windows.old\Users\ROMAN\Local Settings\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\D0S4SLMT\loader.white[2].gif
[2011.09.19 18:27:54 | 000,000,673 | ---- | M] () -- \Windows.old\Users\ROMAN\Local Settings\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\D0S4SLMT\loader.white[3].gif
[2011.07.03 12:30:36 | 000,000,542 | ---- | M] () -- \Windows.old\Users\ROMAN\Local Settings\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\HZJJSHD3\downloader[1].js
[2011.06.10 17:15:18 | 000,001,277 | ---- | M] () -- \Windows.old\Users\ROMAN\Local Settings\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\OF9EOQ8W\LinePreloader[2].swf
[2011.09.19 19:14:12 | 000,028,814 | ---- | M] () -- \Windows.old\Users\ROMAN\Local Settings\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YVM19W4F\menuG5LoaderX[1].js
[2008.01.21 04:23:37 | 000,038,400 | ---- | M] () -- \Windows.old\Windows\System32\dmloader.dll
[2008.05.02 21:03:33 | 000,003,402 | ---- | M] () -- \Windows.old\Windows\winsxs\Backup\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6001.18000_cs-cz_33426ea9fd097a15.manifest
[2008.05.02 21:03:33 | 000,027,648 | ---- | M] () -- \Windows.old\Windows\winsxs\Backup\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6001.18000_cs-cz_33426ea9fd097a15_winload.exe.mui_3bc5b827
[2008.05.02 21:03:33 | 000,019,968 | ---- | M] () -- \Windows.old\Windows\winsxs\Backup\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6001.18000_cs-cz_33426ea9fd097a15_winresume.exe.mui_ff8b5358
[2009.03.17 23:35:03 | 000,004,864 | ---- | M] () -- \Windows.old\Windows\winsxs\Backup\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6001.18027_none_5b181c606cb0c98b.manifest
[2009.03.17 23:35:03 | 000,988,216 | ---- | M] () -- \Windows.old\Windows\winsxs\Backup\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6001.18027_none_5b181c606cb0c98b_winload.exe_75835076
[2009.03.17 23:35:03 | 000,927,288 | ---- | M] () -- \Windows.old\Windows\winsxs\Backup\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6001.18027_none_5b181c606cb0c98b_winresume.exe_85cd1215
[2008.01.21 04:26:48 | 000,003,885 | ---- | M] () -- \Windows.old\Windows\winsxs\Backup\x86_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.0.6001.18000_none_6b332839511be4b2.manifest
[2008.01.21 04:26:48 | 000,021,048 | ---- | M] () -- \Windows.old\Windows\winsxs\Backup\x86_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.0.6001.18000_none_6b332839511be4b2_spldr.sys_98bd87a0
[2008.02.29 09:26:23 | 000,003,414 | ---- | M] () -- \Windows.old\Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.16646_de-de_cb9c6772f81a418b.manifest
[2008.02.29 09:19:08 | 000,003,414 | ---- | M] () -- \Windows.old\Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.16646_en-us_748d3d6be6f84d50.manifest
[2008.02.29 12:05:29 | 000,003,414 | ---- | M] () -- \Windows.old\Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.16646_es-es_74589a4fe71f3ef5.manifest
[2008.02.29 12:07:01 | 000,003,414 | ---- | M] () -- \Windows.old\Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.16646_fr-fr_1710104ed9f15557.manifest
[2008.02.29 12:05:17 | 000,003,414 | ---- | M] () -- \Windows.old\Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.16646_it-it_01380695b1233ad5.manifest
[2008.02.29 10:14:00 | 000,003,414 | ---- | M] () -- \Windows.old\Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.16646_ja-jp_a35d85a2a43e4cb0.manifest
[2008.02.29 12:02:51 | 000,003,414 | ---- | M] () -- \Windows.old\Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.16646_nl-nl_2d992eca70004957.manifest
[2008.02.29 09:19:24 | 000,003,414 | ---- | M] () -- \Windows.old\Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.20782_de-de_cbf6c366115bebbd.manifest
[2008.02.29 09:21:05 | 000,003,414 | ---- | M] () -- \Windows.old\Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.20782_en-us_74e7995f0039f782.manifest
[2008.02.29 11:56:53 | 000,003,414 | ---- | M] () -- \Windows.old\Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.20782_es-es_74b2f6430060e927.manifest
[2008.02.29 12:12:24 | 000,003,414 | ---- | M] () -- \Windows.old\Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.20782_fr-fr_176a6c41f332ff89.manifest
[2008.02.29 12:01:15 | 000,003,414 | ---- | M] () -- \Windows.old\Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.20782_it-it_01926288ca64e507.manifest
[2008.02.29 09:46:06 | 000,003,414 | ---- | M] () -- \Windows.old\Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.20782_ja-jp_a3b7e195bd7ff6e2.manifest
[2008.02.29 11:17:45 | 000,003,414 | ---- | M] () -- \Windows.old\Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.20782_nl-nl_2df38abd8941f389.manifest
[2008.05.02 20:51:22 | 000,003,402 | ---- | M] () -- \Windows.old\Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6001.18000_cs-cz_33426ea9fd097a15.manifest
[2008.02.29 09:17:27 | 000,004,858 | ---- | M] () -- \Windows.old\Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6000.16646_none_591b3d986f9b5725.manifest
[2008.02.29 09:13:09 | 000,004,858 | ---- | M] () -- \Windows.old\Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6000.20782_none_5975998b88dd0157.manifest
[2008.01.21 04:20:53 | 000,004,864 | ---- | M] () -- \Windows.old\Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6001.18000_none_5b26ba326ca6e048.manifest
[2008.02.29 10:08:07 | 000,004,864 | ---- | M] () -- \Windows.old\Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6001.18027_none_5b181c606cb0c98b.manifest
[2008.02.29 09:37:27 | 000,004,864 | ---- | M] () -- \Windows.old\Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6001.22125_none_5b9fb89785d036a7.manifest
[2006.11.02 12:13:06 | 000,003,970 | ---- | M] () -- \Windows.old\Windows\winsxs\Manifests\x86_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.0.6000.16386_none_68fc663d5430d3de.manifest
[2008.01.21 04:19:11 | 000,003,885 | ---- | M] () -- \Windows.old\Windows\winsxs\Manifests\x86_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.0.6001.18000_none_6b332839511be4b2.manifest
[2008.01.21 04:23:37 | 000,038,400 | ---- | M] () -- \Windows.old\Windows\winsxs\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.0.6001.18000_none_45f41bf18fa2cf5a\dmloader.dll
[2011.01.27 16:51:16 | 000,082,784 | ---- | M] () -- \Windows\assembly\GAC\IALoader\1.7.6223.0__31bf3856ad364e35\IALoader.dll
[2008.01.21 04:23:37 | 000,038,400 | ---- | M] () -- \Windows\System32\dmloader.dll
[2010.10.22 13:43:22 | 000,012,532 | ---- | M] () -- \Windows\System32\Adobe\Shockwave 11\shockwave_Projector_Loader.dcr
[2008.05.02 21:03:33 | 000,003,402 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6001.18000_cs-cz_33426ea9fd097a15.manifest
[2008.05.02 21:03:33 | 000,027,648 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6001.18000_cs-cz_33426ea9fd097a15_winload.exe.mui_3bc5b827
[2008.05.02 21:03:33 | 000,019,968 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6001.18000_cs-cz_33426ea9fd097a15_winresume.exe.mui_ff8b5358
[2010.12.24 20:37:15 | 000,004,864 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6002.18005_none_5d12333e69c8ab94.manifest
[2010.12.24 20:37:15 | 000,986,600 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6002.18005_none_5d12333e69c8ab94_winload.exe_75835076
[2010.12.24 20:37:15 | 000,926,184 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6002.18005_none_5d12333e69c8ab94_winresume.exe_85cd1215
[2008.01.21 04:26:48 | 000,003,885 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.0.6001.18000_none_6b332839511be4b2.manifest
[2008.01.21 04:26:48 | 000,021,048 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.0.6001.18000_none_6b332839511be4b2_spldr.sys_98bd87a0
[2008.02.29 09:26:23 | 000,003,414 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.16646_de-de_cb9c6772f81a418b.manifest
[2008.02.29 09:19:08 | 000,003,414 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.16646_en-us_748d3d6be6f84d50.manifest
[2008.02.29 12:05:29 | 000,003,414 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.16646_es-es_74589a4fe71f3ef5.manifest
[2008.02.29 12:07:01 | 000,003,414 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.16646_fr-fr_1710104ed9f15557.manifest
[2008.02.29 12:05:17 | 000,003,414 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.16646_it-it_01380695b1233ad5.manifest
[2008.02.29 10:14:00 | 000,003,414 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.16646_ja-jp_a35d85a2a43e4cb0.manifest
[2008.02.29 12:02:51 | 000,003,414 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.16646_nl-nl_2d992eca70004957.manifest
[2008.02.29 09:19:24 | 000,003,414 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.20782_de-de_cbf6c366115bebbd.manifest
[2008.02.29 09:21:05 | 000,003,414 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.20782_en-us_74e7995f0039f782.manifest
[2008.02.29 11:56:53 | 000,003,414 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.20782_es-es_74b2f6430060e927.manifest
[2008.02.29 12:12:24 | 000,003,414 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.20782_fr-fr_176a6c41f332ff89.manifest
[2008.02.29 12:01:15 | 000,003,414 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.20782_it-it_01926288ca64e507.manifest
[2008.02.29 09:46:06 | 000,003,414 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.20782_ja-jp_a3b7e195bd7ff6e2.manifest
[2008.02.29 11:17:45 | 000,003,414 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.20782_nl-nl_2df38abd8941f389.manifest
[2008.05.02 20:51:22 | 000,003,402 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6001.18000_cs-cz_33426ea9fd097a15.manifest
[2008.02.29 09:17:27 | 000,004,858 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6000.16646_none_591b3d986f9b5725.manifest
[2008.02.29 09:13:09 | 000,004,858 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6000.20782_none_5975998b88dd0157.manifest
[2008.01.21 04:20:53 | 000,004,864 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6001.18000_none_5b26ba326ca6e048.manifest
[2008.02.29 10:08:07 | 000,004,864 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6001.18027_none_5b181c606cb0c98b.manifest
[2008.02.29 09:37:27 | 000,004,864 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6001.22125_none_5b9fb89785d036a7.manifest
[2009.04.11 01:12:44 | 000,004,864 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6002.18005_none_5d12333e69c8ab94.manifest
[2006.11.02 12:13:06 | 000,003,970 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.0.6000.16386_none_68fc663d5430d3de.manifest
[2008.01.21 04:19:11 | 000,003,885 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.0.6001.18000_none_6b332839511be4b2.manifest
[2008.01.21 04:23:37 | 000,038,400 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.0.6001.18000_none_45f41bf18fa2cf5a\dmloader.dll
[2008.01.21 04:23:37 | 000,038,400 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.0.6002.18005_none_47df94fd8cc49aa6\dmloader.dll
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu - občasné přetěžování CPU

#8 Příspěvek od vyosek »

========== Alternate Data Streams ==========

@Alternate Data Stream - 97 bytes -> C:\ProgramData\TEMP:E690114B
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:6ED8B881
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:9BB8C675
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:3B75B877
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:E8B61305
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:E40AB54F
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:9C3AAD57
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:6E2D80C8
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:4C35C064
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:4F7FE589
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:2CC32B31
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:E8C44CB4
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:AD020DC3
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:6EE8565A
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:3969ACF7
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:363E775E
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:0E22C5DB
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:0BACBDD9
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:F142DBA9
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:8E5EA40F
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:18B5F839
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:F89F2593
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:B6D84F71
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:B190BE3A
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:9338F136
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:7BE5BAAB
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:65B8AF94
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:3EC5BC08
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:0785072C
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:FD11E093
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:F1F936DF
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:99B20AD0
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:9720EBEF
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:2AF322BF
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:19474103
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:C37283B5
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:54380FEC
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:29F0CA7D
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:16F4BC64
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:13019F4B
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:E894A3ED
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:B1786630
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:A76A1B1B
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:77B64C59
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:4E79C4F8
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:2CB9631F
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:2775F9E2
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:10B970A9
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:012BC84F
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:EFF3C3C8
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:CBAF0C30
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:C2F24DB5
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:8075370B
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:4A906D4A
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:160ADF0B
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:149327FE
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:EBCF5924
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:E5B07840
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:AE8FDB48
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:A8DFD30C
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:A4E7D25F
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:A42FABF7
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:9F3CEEE6
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:4C3D5A8B
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:2E3F04BC
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:17EB5BAE
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:041ED421
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:D01ACC06
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:553056F1
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:4A01545C
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:3E200C29
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:164561C8
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:12383CAE
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:1234ADAE
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:0BBF232A
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:E87AB4E3
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:DE875C30
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:A4AF8D0D
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:87A3A233
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:75798D9A
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:5E73E1C2
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:53B8C5D2
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:4149A170
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:35629AE6
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:0FE0A03C
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:E40D7F76
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:C0BCE04B
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:BEACE4C8
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:8AE92FD3
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:88E8CC2E
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:2AE74FF9
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:2AD33723
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:18DEBC51
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:18A25CF1
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:D999FFD5
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:905BCB57
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:697DDE2B
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:436BE28C
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:2211E7A0
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:207C4C79
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:1416AAA6
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:D9656460
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:BD34FFC5
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:A0921B2C
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:852F2262
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:55422315
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:2F4A0A6B
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:E6708F08
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:E3615992
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:C946EBB2
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:A9056F42
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:961B84C5
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:689AB7E9
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:014BC3B4
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:D5BF78B4
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:BEE39E9B
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:BE6B5FC3
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:AAA06E15
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:A5241382
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:51E66512
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:3B454A5C
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:23834E1E
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:CB16385F
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:C9B27A06
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:A9223B61
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:44E16D4A
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:2A874675
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:F5E8CAE0
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:B3196E8D
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:96AFAB10
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:762408BA
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:4D551822
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:0A74923C
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:AA0017FD
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:5E8C18F1
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:59465B40
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:2C86E2AD
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:16A4620C
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:B38BEEEE
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:A9562832
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:927EC486
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:834DD57E
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:7C8AA9A6
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:BBC9C1EB
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:AE9351E0
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:9603033A
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:7ADB695A
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:65137F0D
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:63210866
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:55BB2521
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:B0456F0C
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:9BAC4211
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:7BB20DE8
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:0988A428
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:C370B84F
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:A6D6E537
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:52C24010
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:4EE95FE7
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:3CAE2A70
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:27974442
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:B139DDF3
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:A3251D01
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:65AB2A58
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:3D922890
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:1B389835
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:0ACF1AF5
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:A5629501
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:803039D6
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:3C9B05C4
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:14A1BBE3
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:0E8117B1
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:F5B51004
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:B6E6C4EA
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:2D2461E7
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:2CE15176
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:E2CFA9CD
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:CA23BCFD
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:378824DE
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:1604D047
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:FB08C210
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:ECF3C50F
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:D6D084A5
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:CB299F13
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:BEF18713
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:95079543
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:8855A119
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:72A1B66A
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:512E1728
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:4EFA2FC7
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:48862C37
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:14362DF8
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:058A7351
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:F6A0889A
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:EE69D7DF
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:E5496666
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:DB2748F7
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:AE75CCC8
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:A4241298
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:902C848D
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:8DD20B4A
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:8AED9359
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:84BD8B63
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:2F1D743F
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:26499772
@Alternate Data Stream - 117 bytes -> C:\ProgramData\TEMP:8DF68137
@Alternate Data Stream - 117 bytes -> C:\ProgramData\TEMP:29C0641D
@Alternate Data Stream - 116 bytes -> C:\ProgramData\TEMP:45F3AD49
@Alternate Data Stream - 116 bytes -> C:\ProgramData\TEMP:2B9555D8
@Alternate Data Stream - 115 bytes -> C:\ProgramData\TEMP:CA0CE093
@Alternate Data Stream - 114 bytes -> C:\ProgramData\TEMP:59846E5E
@Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:E0888117
@Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:DD6F157A
@Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:A6D89509
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:CAC06C34
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:8BE7A048
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:3539CD43
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:224B562C
@Alternate Data Stream - 108 bytes -> C:\ProgramData\TEMP:E9B2C525
@Alternate Data Stream - 106 bytes -> C:\ProgramData\TEMP:3DB6F365
@Alternate Data Stream - 106 bytes -> C:\ProgramData\TEMP:0C988F7D

< End of report >
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu - občasné přetěžování CPU

#9 Příspěvek od vyosek »

:arrow: Odinstalujte nelegalni SW (office) nase forum to tu netoleruje :twisted:

:arrow: Mate tam nekolik bezp. SW (Avast, MSE, McAfee) - musi tam byt jen jeden, jinak bude dochazet ke kolizi...Nechte jen Avast, MSE a McAfee odinstalujte

:arrow: Spustte znovu OTL
  • Pokud pouzivate Win Vista ci W7, kliknete na OTL pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do spodniho okenka Vlastni skenovani/opravy vlozte skript nize
  • Kód: Vybrat vše

    :otl
    DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\nwlnkfwd.sys -- (NwlnkFwd)
    DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\nwlnkflt.sys -- (NwlnkFlt)
    DRV - File not found [Kernel | System | Stopped] -- C:\Windows\system32\drivers\iyepyzfx.sys -- (iyepyzfx)
    DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ipinip.sys -- (IpInIp)
    DRV - File not found [Kernel | On_Demand | Unknown] -- -- (ajbuqcma)
    IE - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
    IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
    IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
    IE - HKLM\..\SearchScopes\{EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C}: "URL" = http://slirsredirect.search.aol.com/sli ... 685&query={searchTerms}&invocationType=tb50winampie7
    IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
    IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\URLSearchHook: {0063BF63-BFFF-4B8F-9D26-4267DF7F17DD} - C:\Windows\System32\dvmurl.dll (DeviceVM Inc.)
    IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
    IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
    IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}: "URL" = http://websearch.ask.com/redirect?clien ... src=crm&q={searchTerms}&locale=en_EU&apn_ptnrs=4M&apn_dtid=YYYYYYYYCZ&apn_uid=6E2C241C-C28F-4D3A-BC8D-624294FB549C&apn_sauid=624760A6-6C42-43CF-8D07-019C44C7FA60
    IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\SearchScopes\{39260754-d9da-4eb8-bd84-a5c70728f243}: "URL" = http://www.mapy.cz/?query={searchTerms}&sourceid=IEListicka_2
    IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}: "URL" = http://search.yahoo.com/search?fr=chr-bfg&q={searchTerms}&ei=UTF-8
    IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\SearchScopes\{5F970FDE-702B-4ef9-920C-5F2848A5AF26}: "URL" = http://www.astroburn-search.com/search/web?q={searchTerms}
    IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\SearchScopes\{63db6949-b46e-49b6-9fa7-94fb508d474f}: "URL" = http://www.zbozi.cz/?q={searchTerms}&r=campmoz&sourceid=IEListicka_2
    IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7ADFA_csCZ410
    IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\SearchScopes\{8AC6A820-04D7-4340-9896-55A5186FAE29}: "URL" = http://search.yahoo.com/search?fr=mcafee&p={SearchTerms}
    IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\SearchScopes\{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8}: "URL" = http://www.daemon-search.com/search/web?q={searchTerms}
    IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\SearchScopes\{ea22e708-e0a3-4de6-a2b1-19c728a38339}: "URL" = http://www.firmy.cz/phr/{searchTerms}?sourceid=IEListicka_2
    IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\SearchScopes\{EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C}: "URL" = http://slirsredirect.search.aol.com/sli ... 685&query={searchTerms}&invocationType=tb50winampie7
    IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\SearchScopes\{f0132828-70cb-42ae-b4dd-c57a91b55cf9}: "URL" = http://search.seznam.cz/?q={searchTerms}&sourceid=IEListicka_2
    IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\SearchScopes\{FD63BF63-BFFF-4B8F-9D26-4267DF7F17DD}: "URL" = http://www.google.com/custom?q={searchTerms}&sa.x=0&sa.y=0&safe=active&client=pub-3794288947762788&forid=1&channel=1975384696&ie=UTF-8&oe=UTF-8&hl=en&cof=GALT%3A%23008000%3BGL%3A1%3BDIV%3A%23336699%3BVLC%3A663399%3BAH%3Acenter%3BBGC%3AFFFFFF%3BLBGC%3A336699%3BALC%3A0000FF%3BLC%3A0000FF%3BT%3A000000%3BGFNT%3A0000FF%3BGIMP%3A0000FF%3BFORID%3A1
    IE - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
    FF - prefs.js..browser.search.defaultenginename: "Bezpečné vyhledávání"
    FF - prefs.js..browser.search.defaultthis.engineName: "BS Player Customized Web Search"
    FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT1750559&SearchSource=3&q={searchTerms}"
    FF - prefs.js..browser.startup.homepage: "http://www.seznam.cz/?clid=3"
    FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
    FF - prefs.js..extensions.enabledItems: DTToolbar@toolbarnet.com:1.1.6.0143
    FF - prefs.js..extensions.enabledItems: {6847DFAE-037A-400c-A524-27F0A281B692}:2.1
    FF - prefs.js..extensions.enabledItems: {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}:3.3.3.2
    FF - prefs.js..extensions.enabledItems: {23fcfd51-4958-4f00-80a3-ae97e717ed8b}:2.1.0.900
    FF - prefs.js..extensions.enabledItems: {6904342A-8307-11DF-A508-4AE2DFD72085}:2.1.0.900
    FF - prefs.js..extensions.enabledItems: {B7082FAA-CB62-4872-9106-E42DD88EDE45}:3.3.1
    FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
    FF - prefs.js..extensions.enabledItems: engine@conduit.com:3.3.3.2
    FF - prefs.js..extensions.enabledItems: {203FB6B2-2E1E-4474-863B-4C483ECCE78E}:1.2.0
    FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}:6.0.26
    FF - prefs.js..keyword.URL: "http://search.conduit.com/ResultsExt.aspx?ctid=CT1750559&q
    [2012.05.31 11:57:14 | 000,000,000 | ---D | M] (BS Player Community Toolbar) -- C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}
    [2010.12.23 11:39:16 | 000,002,071 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\searchplugins\absearch-search.xml
    [2010.11.23 13:02:32 | 000,000,921 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\searchplugins\conduit.xml
    [2010.12.21 21:41:00 | 000,002,059 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\searchplugins\daemon-search.xml
    [2011.01.10 20:15:16 | 000,001,196 | ---- | M] () -- C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\searchplugins\winamp-search.xml
    O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
    O2 - BHO: (DivX HiQ) - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
    O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
    O3 - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
    O3 - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\Toolbar\WebBrowser: (no name) - {30CEEEA2-3742-40E4-85DD-812BF1CBB83D} - No CLSID value found.
    O3 - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\Toolbar\WebBrowser: (no name) - {32099AAC-C132-4136-9E9A-4E364A424E17} - No CLSID value found.
    O3 - HKU\S-1-5-21-199209832-2736622147-2862102349-1000\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
    O13 - gopher Prefix: missing
    O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
    O33 - MountPoints2\{5f83509e-525d-11e0-8cb4-0050fcfab085}\Shell - "" = AutoRun
    O33 - MountPoints2\{666dd1b0-0d3a-11e0-b288-0050fcfab085}\Shell - "" = AutoRun
    [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
    [9 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
    [1 C:\Windows\SoftwareDistribution\Download\a2e926930752ca7fa33e6e8fb13fc78e\*.tmp files -> C:\Windows\SoftwareDistribution\Download\a2e926930752ca7fa33e6e8fb13fc78e\*.tmp -> ]
    [8 C:\Windows\Temp\*.tmp files -> C:\Windows\Temp\*.tmp -> ]
    [5 C:\Windows\Temp\_avast_\*.tmp files -> C:\Windows\Temp\_avast_\*.tmp -> ]
    [1 C:\Windows\twain_32\*.tmp files -> C:\Windows\twain_32\*.tmp -> ]
    [2012.06.28 18:02:10 | 000,000,934 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
    [2012.06.28 18:57:17 | 000,000,938 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
    [2012.06.27 21:37:25 | 000,000,406 | -H-- | M] () -- C:\Windows\Tasks\Norton Security Scan for ROMAN.job
    @Alternate Data Stream - 97 bytes -> C:\ProgramData\TEMP:E690114B
    @Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:6ED8B881
    @Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:9BB8C675
    @Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:3B75B877
    @Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:E8B61305
    @Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:E40AB54F
    @Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:9C3AAD57
    @Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:6E2D80C8
    @Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:4C35C064
    @Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:4F7FE589
    @Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:2CC32B31
    @Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:E8C44CB4
    @Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:AD020DC3
    @Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:6EE8565A
    @Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:3969ACF7
    @Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:363E775E
    @Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:0E22C5DB
    @Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:0BACBDD9
    @Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:F142DBA9
    @Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:8E5EA40F
    @Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:18B5F839
    @Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:F89F2593
    @Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:B6D84F71
    @Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:B190BE3A
    @Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:9338F136
    @Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:7BE5BAAB
    @Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:65B8AF94
    @Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:3EC5BC08
    @Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:0785072C
    @Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:FD11E093
    @Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:F1F936DF
    @Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:99B20AD0
    @Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:9720EBEF
    @Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:2AF322BF
    @Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:19474103
    @Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:C37283B5
    @Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:54380FEC
    @Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:29F0CA7D
    @Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:16F4BC64
    @Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:13019F4B
    @Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:E894A3ED
    @Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:B1786630
    @Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:A76A1B1B
    @Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:77B64C59
    @Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:4E79C4F8
    @Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:2CB9631F
    @Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:2775F9E2
    @Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:10B970A9
    @Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:012BC84F
    @Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:EFF3C3C8
    @Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:CBAF0C30
    @Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:C2F24DB5
    @Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:8075370B
    @Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:4A906D4A
    @Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:160ADF0B
    @Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:149327FE
    @Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:EBCF5924
    @Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:E5B07840
    @Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:AE8FDB48
    @Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:A8DFD30C
    @Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:A4E7D25F
    @Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:A42FABF7
    @Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:9F3CEEE6
    @Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:4C3D5A8B
    @Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:2E3F04BC
    @Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:17EB5BAE
    @Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:041ED421
    @Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:D01ACC06
    @Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:553056F1
    @Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:4A01545C
    @Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:3E200C29
    @Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:164561C8
    @Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:12383CAE
    @Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:1234ADAE
    @Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:0BBF232A
    @Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:E87AB4E3
    @Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:DE875C30
    @Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:A4AF8D0D
    @Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:87A3A233
    @Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:75798D9A
    @Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:5E73E1C2
    @Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:53B8C5D2
    @Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:4149A170
    @Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:35629AE6
    @Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:0FE0A03C
    @Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:E40D7F76
    @Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:C0BCE04B
    @Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:BEACE4C8
    @Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:8AE92FD3
    @Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:88E8CC2E
    @Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:2AE74FF9
    @Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:2AD33723
    @Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:18DEBC51
    @Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:18A25CF1
    @Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:D999FFD5
    @Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:905BCB57
    @Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:697DDE2B
    @Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:436BE28C
    @Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:2211E7A0
    @Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:207C4C79
    @Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:1416AAA6
    @Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:D9656460
    @Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:BD34FFC5
    @Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:A0921B2C
    @Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:852F2262
    @Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:55422315
    @Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:2F4A0A6B
    @Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:E6708F08
    @Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:E3615992
    @Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:C946EBB2
    @Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:A9056F42
    @Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:961B84C5
    @Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:689AB7E9
    @Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:014BC3B4
    @Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:D5BF78B4
    @Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:BEE39E9B
    @Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:BE6B5FC3
    @Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:AAA06E15
    @Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:A5241382
    @Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:51E66512
    @Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:3B454A5C
    @Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:23834E1E
    @Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:CB16385F
    @Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:C9B27A06
    @Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:A9223B61
    @Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:44E16D4A
    @Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:2A874675
    @Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:F5E8CAE0
    @Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:B3196E8D
    @Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:96AFAB10
    @Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:762408BA
    @Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:4D551822
    @Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:0A74923C
    @Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:AA0017FD
    @Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:5E8C18F1
    @Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:59465B40
    @Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:2C86E2AD
    @Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:16A4620C
    @Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:B38BEEEE
    @Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:A9562832
    @Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:927EC486
    @Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:834DD57E
    @Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:7C8AA9A6
    @Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:BBC9C1EB
    @Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:AE9351E0
    @Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:9603033A
    @Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:7ADB695A
    @Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:65137F0D
    @Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:63210866
    @Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:55BB2521
    @Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:B0456F0C
    @Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:9BAC4211
    @Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:7BB20DE8
    @Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:0988A428
    @Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:C370B84F
    @Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:A6D6E537
    @Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:52C24010
    @Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:4EE95FE7
    @Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:3CAE2A70
    @Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:27974442
    @Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:B139DDF3
    @Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:A3251D01
    @Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:65AB2A58
    @Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:3D922890
    @Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:1B389835
    @Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:0ACF1AF5
    @Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:A5629501
    @Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:803039D6
    @Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:3C9B05C4
    @Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:14A1BBE3
    @Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:0E8117B1
    @Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:F5B51004
    @Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:B6E6C4EA
    @Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:2D2461E7
    @Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:2CE15176
    @Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:E2CFA9CD
    @Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:CA23BCFD
    @Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:378824DE
    @Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:1604D047
    @Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:FB08C210
    @Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:ECF3C50F
    @Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:D6D084A5
    @Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:CB299F13
    @Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:BEF18713
    @Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:95079543
    @Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:8855A119
    @Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:72A1B66A
    @Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:512E1728
    @Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:4EFA2FC7
    @Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:48862C37
    @Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:14362DF8
    @Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:058A7351
    @Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:F6A0889A
    @Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:EE69D7DF
    @Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:E5496666
    @Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:DB2748F7
    @Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:AE75CCC8
    @Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:A4241298
    @Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:902C848D
    @Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:8DD20B4A
    @Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:8AED9359
    @Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:84BD8B63
    @Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:2F1D743F
    @Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:26499772
    @Alternate Data Stream - 117 bytes -> C:\ProgramData\TEMP:8DF68137
    @Alternate Data Stream - 117 bytes -> C:\ProgramData\TEMP:29C0641D
    @Alternate Data Stream - 116 bytes -> C:\ProgramData\TEMP:45F3AD49
    @Alternate Data Stream - 116 bytes -> C:\ProgramData\TEMP:2B9555D8
    @Alternate Data Stream - 115 bytes -> C:\ProgramData\TEMP:CA0CE093
    @Alternate Data Stream - 114 bytes -> C:\ProgramData\TEMP:59846E5E
    @Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:E0888117
    @Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:DD6F157A
    @Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:A6D89509
    @Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:CAC06C34
    @Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:8BE7A048
    @Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:3539CD43
    @Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:224B562C
    @Alternate Data Stream - 108 bytes -> C:\ProgramData\TEMP:E9B2C525
    @Alternate Data Stream - 106 bytes -> C:\ProgramData\TEMP:3DB6F365
    @Alternate Data Stream - 106 bytes -> C:\ProgramData\TEMP:0C988F7D
    
    :reg
    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    "WinampAgent"=-
    "SunJavaUpdateSched"=-
    "Adobe ARM"=-
    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    "Seznam Postak"=-
    "DAEMON Tools Lite"=-
    "Skype"=-
    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
    "FlashPlayerUpdate"=-
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivX Download Manager]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Exetender_298]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GameXN]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GameXN (news)]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GameXN (update)]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
    
    :files
    c:\Users\ROMAN\Downloads\Microsoft Office 2007 CZ\Keygen.exe
    c:\Users\ROMAN\Downloads\off07entcz\Licenční klíč\keygen.exe
    c:\Windows.old.000\Documents and Settings\ROMAN\Downloads\Microsoft Office 2007 CZ\Keygen.exe
    c:\Windows.old.000\Documents and Settings\ROMAN\Downloads\off07entcz\Licenční klíč\keygen.exe
    c:\Windows.old\Documents and Settings\ROMAN\Downloads\Microsoft Office 2007 CZ\Keygen.exe
    c:\Windows.old\Documents and Settings\ROMAN\Downloads\off07entcz\Licenční klíč\keygen.exe
    
    
    %windir%\system32\*.tmp.dll /s
    %windir%\system32\SET*.tmp /s
    %windir%\*.tmp
    
    :commands
    [RESETHOSTS]
    [EMPTYTEMP]
    [EMPTYFLASH]
  • Nasledne kliknete na Opravit
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Small_John
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 29 zář 2008 22:51

Re: Prosím o kontrolu - občasné přetěžování CPU

#10 Příspěvek od Small_John »

All processes killed
========== OTL ==========
Service NwlnkFwd stopped successfully!
Service NwlnkFwd deleted successfully!
File system32\DRIVERS\nwlnkfwd.sys not found.
Service NwlnkFlt stopped successfully!
Service NwlnkFlt deleted successfully!
File system32\DRIVERS\nwlnkflt.sys not found.
Service iyepyzfx stopped successfully!
Service iyepyzfx deleted successfully!
File C:\Windows\system32\drivers\iyepyzfx.sys not found.
Service IpInIp stopped successfully!
Service IpInIp deleted successfully!
File system32\DRIVERS\ipinip.sys not found.
Error: No service named ajbuqcma was found to stop!
Service\Driver key ajbuqcma not found.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C}\ not found.
HKU\S-1-5-21-199209832-2736622147-2862102349-1000\SOFTWARE\Microsoft\Internet Explorer\Main\\StartPageCache| /E : value set successfully!
Registry value HKEY_USERS\S-1-5-21-199209832-2736622147-2862102349-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\\{0063BF63-BFFF-4B8F-9D26-4267DF7F17DD} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0063BF63-BFFF-4B8F-9D26-4267DF7F17DD}\ deleted successfully.
C:\Windows\System32\dvmurl.dll moved successfully.
HKEY_USERS\S-1-5-21-199209832-2736622147-2862102349-1000\Software\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_USERS\S-1-5-21-199209832-2736622147-2862102349-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_USERS\S-1-5-21-199209832-2736622147-2862102349-1000\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}\ not found.
Registry key HKEY_USERS\S-1-5-21-199209832-2736622147-2862102349-1000\Software\Microsoft\Internet Explorer\SearchScopes\{39260754-d9da-4eb8-bd84-a5c70728f243}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{39260754-d9da-4eb8-bd84-a5c70728f243}\ not found.
Registry key HKEY_USERS\S-1-5-21-199209832-2736622147-2862102349-1000\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}\ not found.
Registry key HKEY_USERS\S-1-5-21-199209832-2736622147-2862102349-1000\Software\Microsoft\Internet Explorer\SearchScopes\{5F970FDE-702B-4ef9-920C-5F2848A5AF26}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5F970FDE-702B-4ef9-920C-5F2848A5AF26}\ not found.
Registry key HKEY_USERS\S-1-5-21-199209832-2736622147-2862102349-1000\Software\Microsoft\Internet Explorer\SearchScopes\{63db6949-b46e-49b6-9fa7-94fb508d474f}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{63db6949-b46e-49b6-9fa7-94fb508d474f}\ not found.
Registry key HKEY_USERS\S-1-5-21-199209832-2736622147-2862102349-1000\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ not found.
Registry key HKEY_USERS\S-1-5-21-199209832-2736622147-2862102349-1000\Software\Microsoft\Internet Explorer\SearchScopes\{8AC6A820-04D7-4340-9896-55A5186FAE29}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AC6A820-04D7-4340-9896-55A5186FAE29}\ not found.
Registry key HKEY_USERS\S-1-5-21-199209832-2736622147-2862102349-1000\Software\Microsoft\Internet Explorer\SearchScopes\{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8}\ not found.
Registry key HKEY_USERS\S-1-5-21-199209832-2736622147-2862102349-1000\Software\Microsoft\Internet Explorer\SearchScopes\{ea22e708-e0a3-4de6-a2b1-19c728a38339}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ea22e708-e0a3-4de6-a2b1-19c728a38339}\ not found.
Registry key HKEY_USERS\S-1-5-21-199209832-2736622147-2862102349-1000\Software\Microsoft\Internet Explorer\SearchScopes\{EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C}\ not found.
Registry key HKEY_USERS\S-1-5-21-199209832-2736622147-2862102349-1000\Software\Microsoft\Internet Explorer\SearchScopes\{f0132828-70cb-42ae-b4dd-c57a91b55cf9}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f0132828-70cb-42ae-b4dd-c57a91b55cf9}\ not found.
Registry key HKEY_USERS\S-1-5-21-199209832-2736622147-2862102349-1000\Software\Microsoft\Internet Explorer\SearchScopes\{FD63BF63-BFFF-4B8F-9D26-4267DF7F17DD}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD63BF63-BFFF-4B8F-9D26-4267DF7F17DD}\ not found.
HKU\S-1-5-21-199209832-2736622147-2862102349-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable|dword:0 /E : value set successfully!
Prefs.js: "Bezpečné vyhledávání" removed from browser.search.defaultenginename
Prefs.js: "BS Player Customized Web Search" removed from browser.search.defaultthis.engineName
Prefs.js: "http://search.conduit.com/ResultsExt.as ... earchTerms}" removed from browser.search.defaulturl
Prefs.js: "http://www.seznam.cz/?clid=3" removed from browser.startup.homepage
Prefs.js: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23 removed from extensions.enabledItems
Prefs.js: DTToolbar@toolbarnet.com:1.1.6.0143 removed from extensions.enabledItems
Prefs.js: {6847DFAE-037A-400c-A524-27F0A281B692}:2.1 removed from extensions.enabledItems
Prefs.js: {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}:3.3.3.2 removed from extensions.enabledItems
Prefs.js: {23fcfd51-4958-4f00-80a3-ae97e717ed8b}:2.1.0.900 removed from extensions.enabledItems
Prefs.js: {6904342A-8307-11DF-A508-4AE2DFD72085}:2.1.0.900 removed from extensions.enabledItems
Prefs.js: {B7082FAA-CB62-4872-9106-E42DD88EDE45}:3.3.1 removed from extensions.enabledItems
Prefs.js: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24 removed from extensions.enabledItems
Prefs.js: engine@conduit.com:3.3.3.2 removed from extensions.enabledItems
Prefs.js: {203FB6B2-2E1E-4474-863B-4C483ECCE78E}:1.2.0 removed from extensions.enabledItems
Prefs.js: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}:6.0.26 removed from extensions.enabledItems
Prefs.js: "http://search.conduit.com/ResultsExt.as ... T1750559&q removed from keyword.URL
C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}\searchplugin folder moved successfully.
C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}\Plugins folder moved successfully.
C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}\modules folder moved successfully.
C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}\META-INF folder moved successfully.
C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}\defaults folder moved successfully.
C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}\components folder moved successfully.
C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}\chrome folder moved successfully.
C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} folder moved successfully.
C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\searchplugins\absearch-search.xml moved successfully.
C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\searchplugins\conduit.xml moved successfully.
C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\searchplugins\daemon-search.xml moved successfully.
C:\Users\ROMAN\AppData\Roaming\Mozilla\Firefox\Profiles\acnm8th9.default\searchplugins\winamp-search.xml moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{326E768D-4182-46FD-9C16-1449A49795F4}\ deleted successfully.
C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{593DDEC6-7468-4cdd-90E1-42DADAA222E9}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{593DDEC6-7468-4cdd-90E1-42DADAA222E9}\ deleted successfully.
File C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}\ deleted successfully.
C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll moved successfully.
Registry value HKEY_USERS\S-1-5-21-199209832-2736622147-2862102349-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}\ not found.
Registry value HKEY_USERS\S-1-5-21-199209832-2736622147-2862102349-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{30CEEEA2-3742-40E4-85DD-812BF1CBB83D} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{30CEEEA2-3742-40E4-85DD-812BF1CBB83D}\ not found.
Registry value HKEY_USERS\S-1-5-21-199209832-2736622147-2862102349-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{32099AAC-C132-4136-9E9A-4E364A424E17} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ not found.
Registry value HKEY_USERS\S-1-5-21-199209832-2736622147-2862102349-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ not found.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\Prefixes\\gopher|:gopher:// /E : value set successfully!
Starting removal of ActiveX control {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
C:\Windows\Downloaded Program Files\gp.inf not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{5f83509e-525d-11e0-8cb4-0050fcfab085}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5f83509e-525d-11e0-8cb4-0050fcfab085}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{666dd1b0-0d3a-11e0-b288-0050fcfab085}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{666dd1b0-0d3a-11e0-b288-0050fcfab085}\ not found.
C:\Windows\msdownld.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP2DF2.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP3504.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP364B.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP5C42.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP6D3.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP7F73.tmp\stdole.dll deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP7F73.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP81A.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAPE752.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAPEEF0.tmp folder deleted successfully.
C:\Windows\SoftwareDistribution\Download\a2e926930752ca7fa33e6e8fb13fc78e\BIT69E2.tmp deleted successfully.
C:\Windows\Temp\CR_B8A92.tmp\SETUP_PATCH.PACKED.7Z deleted successfully.
C:\Windows\Temp\CR_B8A92.tmp folder deleted successfully.
C:\Windows\Temp\_avast_\unp194175274.tmp deleted successfully.
C:\Windows\Temp\_avast_\unp21036488.tmp deleted successfully.
C:\Windows\Temp\_avast_\unp37538128.tmp deleted successfully.
C:\Windows\twain_32\hpqgnds2.tmp deleted successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job moved successfully.
File C:\Windows\Tasks\Norton Security Scan for ROMAN.job not found.
ADS C:\ProgramData\TEMP:E690114B deleted successfully.
ADS C:\ProgramData\TEMP:6ED8B881 deleted successfully.
ADS C:\ProgramData\TEMP:9BB8C675 deleted successfully.
ADS C:\ProgramData\TEMP:3B75B877 deleted successfully.
ADS C:\ProgramData\TEMP:E8B61305 deleted successfully.
ADS C:\ProgramData\TEMP:E40AB54F deleted successfully.
ADS C:\ProgramData\TEMP:9C3AAD57 deleted successfully.
ADS C:\ProgramData\TEMP:6E2D80C8 deleted successfully.
ADS C:\ProgramData\TEMP:4C35C064 deleted successfully.
ADS C:\ProgramData\TEMP:4F7FE589 deleted successfully.
ADS C:\ProgramData\TEMP:2CC32B31 deleted successfully.
ADS C:\ProgramData\TEMP:E8C44CB4 deleted successfully.
ADS C:\ProgramData\TEMP:AD020DC3 deleted successfully.
ADS C:\ProgramData\TEMP:6EE8565A deleted successfully.
ADS C:\ProgramData\TEMP:3969ACF7 deleted successfully.
ADS C:\ProgramData\TEMP:363E775E deleted successfully.
ADS C:\ProgramData\TEMP:0E22C5DB deleted successfully.
ADS C:\ProgramData\TEMP:0BACBDD9 deleted successfully.
ADS C:\ProgramData\TEMP:F142DBA9 deleted successfully.
ADS C:\ProgramData\TEMP:8E5EA40F deleted successfully.
ADS C:\ProgramData\TEMP:18B5F839 deleted successfully.
ADS C:\ProgramData\TEMP:F89F2593 deleted successfully.
ADS C:\ProgramData\TEMP:B6D84F71 deleted successfully.
ADS C:\ProgramData\TEMP:B190BE3A deleted successfully.
ADS C:\ProgramData\TEMP:9338F136 deleted successfully.
ADS C:\ProgramData\TEMP:7BE5BAAB deleted successfully.
ADS C:\ProgramData\TEMP:65B8AF94 deleted successfully.
ADS C:\ProgramData\TEMP:3EC5BC08 deleted successfully.
ADS C:\ProgramData\TEMP:0785072C deleted successfully.
ADS C:\ProgramData\TEMP:FD11E093 deleted successfully.
ADS C:\ProgramData\TEMP:F1F936DF deleted successfully.
ADS C:\ProgramData\TEMP:99B20AD0 deleted successfully.
ADS C:\ProgramData\TEMP:9720EBEF deleted successfully.
ADS C:\ProgramData\TEMP:2AF322BF deleted successfully.
ADS C:\ProgramData\TEMP:19474103 deleted successfully.
ADS C:\ProgramData\TEMP:C37283B5 deleted successfully.
ADS C:\ProgramData\TEMP:54380FEC deleted successfully.
ADS C:\ProgramData\TEMP:29F0CA7D deleted successfully.
ADS C:\ProgramData\TEMP:16F4BC64 deleted successfully.
ADS C:\ProgramData\TEMP:13019F4B deleted successfully.
ADS C:\ProgramData\TEMP:E894A3ED deleted successfully.
ADS C:\ProgramData\TEMP:B1786630 deleted successfully.
ADS C:\ProgramData\TEMP:A76A1B1B deleted successfully.
ADS C:\ProgramData\TEMP:77B64C59 deleted successfully.
ADS C:\ProgramData\TEMP:4E79C4F8 deleted successfully.
ADS C:\ProgramData\TEMP:2CB9631F deleted successfully.
ADS C:\ProgramData\TEMP:2775F9E2 deleted successfully.
ADS C:\ProgramData\TEMP:10B970A9 deleted successfully.
ADS C:\ProgramData\TEMP:012BC84F deleted successfully.
ADS C:\ProgramData\TEMP:EFF3C3C8 deleted successfully.
ADS C:\ProgramData\TEMP:CBAF0C30 deleted successfully.
ADS C:\ProgramData\TEMP:C2F24DB5 deleted successfully.
ADS C:\ProgramData\TEMP:8075370B deleted successfully.
ADS C:\ProgramData\TEMP:4A906D4A deleted successfully.
ADS C:\ProgramData\TEMP:160ADF0B deleted successfully.
ADS C:\ProgramData\TEMP:149327FE deleted successfully.
ADS C:\ProgramData\TEMP:EBCF5924 deleted successfully.
ADS C:\ProgramData\TEMP:E5B07840 deleted successfully.
ADS C:\ProgramData\TEMP:AE8FDB48 deleted successfully.
ADS C:\ProgramData\TEMP:A8DFD30C deleted successfully.
ADS C:\ProgramData\TEMP:A4E7D25F deleted successfully.
ADS C:\ProgramData\TEMP:A42FABF7 deleted successfully.
ADS C:\ProgramData\TEMP:9F3CEEE6 deleted successfully.
ADS C:\ProgramData\TEMP:4C3D5A8B deleted successfully.
ADS C:\ProgramData\TEMP:2E3F04BC deleted successfully.
ADS C:\ProgramData\TEMP:17EB5BAE deleted successfully.
ADS C:\ProgramData\TEMP:041ED421 deleted successfully.
ADS C:\ProgramData\TEMP:D01ACC06 deleted successfully.
ADS C:\ProgramData\TEMP:553056F1 deleted successfully.
ADS C:\ProgramData\TEMP:4A01545C deleted successfully.
ADS C:\ProgramData\TEMP:3E200C29 deleted successfully.
ADS C:\ProgramData\TEMP:164561C8 deleted successfully.
ADS C:\ProgramData\TEMP:12383CAE deleted successfully.
ADS C:\ProgramData\TEMP:1234ADAE deleted successfully.
ADS C:\ProgramData\TEMP:0BBF232A deleted successfully.
ADS C:\ProgramData\TEMP:E87AB4E3 deleted successfully.
ADS C:\ProgramData\TEMP:DE875C30 deleted successfully.
ADS C:\ProgramData\TEMP:A4AF8D0D deleted successfully.
ADS C:\ProgramData\TEMP:87A3A233 deleted successfully.
ADS C:\ProgramData\TEMP:75798D9A deleted successfully.
ADS C:\ProgramData\TEMP:5E73E1C2 deleted successfully.
ADS C:\ProgramData\TEMP:53B8C5D2 deleted successfully.
ADS C:\ProgramData\TEMP:4149A170 deleted successfully.
ADS C:\ProgramData\TEMP:35629AE6 deleted successfully.
ADS C:\ProgramData\TEMP:0FE0A03C deleted successfully.
ADS C:\ProgramData\TEMP:E40D7F76 deleted successfully.
ADS C:\ProgramData\TEMP:C0BCE04B deleted successfully.
ADS C:\ProgramData\TEMP:BEACE4C8 deleted successfully.
ADS C:\ProgramData\TEMP:8AE92FD3 deleted successfully.
ADS C:\ProgramData\TEMP:88E8CC2E deleted successfully.
ADS C:\ProgramData\TEMP:2AE74FF9 deleted successfully.
ADS C:\ProgramData\TEMP:2AD33723 deleted successfully.
ADS C:\ProgramData\TEMP:18DEBC51 deleted successfully.
ADS C:\ProgramData\TEMP:18A25CF1 deleted successfully.
ADS C:\ProgramData\TEMP:D999FFD5 deleted successfully.
ADS C:\ProgramData\TEMP:905BCB57 deleted successfully.
ADS C:\ProgramData\TEMP:697DDE2B deleted successfully.
ADS C:\ProgramData\TEMP:436BE28C deleted successfully.
ADS C:\ProgramData\TEMP:2211E7A0 deleted successfully.
ADS C:\ProgramData\TEMP:207C4C79 deleted successfully.
ADS C:\ProgramData\TEMP:1416AAA6 deleted successfully.
ADS C:\ProgramData\TEMP:D9656460 deleted successfully.
ADS C:\ProgramData\TEMP:BD34FFC5 deleted successfully.
ADS C:\ProgramData\TEMP:A0921B2C deleted successfully.
ADS C:\ProgramData\TEMP:852F2262 deleted successfully.
ADS C:\ProgramData\TEMP:55422315 deleted successfully.
ADS C:\ProgramData\TEMP:2F4A0A6B deleted successfully.
ADS C:\ProgramData\TEMP:E6708F08 deleted successfully.
ADS C:\ProgramData\TEMP:E3615992 deleted successfully.
ADS C:\ProgramData\TEMP:C946EBB2 deleted successfully.
ADS C:\ProgramData\TEMP:A9056F42 deleted successfully.
ADS C:\ProgramData\TEMP:961B84C5 deleted successfully.
ADS C:\ProgramData\TEMP:689AB7E9 deleted successfully.
ADS C:\ProgramData\TEMP:014BC3B4 deleted successfully.
ADS C:\ProgramData\TEMP:D5BF78B4 deleted successfully.
ADS C:\ProgramData\TEMP:BEE39E9B deleted successfully.
ADS C:\ProgramData\TEMP:BE6B5FC3 deleted successfully.
ADS C:\ProgramData\TEMP:AAA06E15 deleted successfully.
ADS C:\ProgramData\TEMP:A5241382 deleted successfully.
ADS C:\ProgramData\TEMP:51E66512 deleted successfully.
ADS C:\ProgramData\TEMP:3B454A5C deleted successfully.
ADS C:\ProgramData\TEMP:23834E1E deleted successfully.
ADS C:\ProgramData\TEMP:CB16385F deleted successfully.
ADS C:\ProgramData\TEMP:C9B27A06 deleted successfully.
ADS C:\ProgramData\TEMP:A9223B61 deleted successfully.
ADS C:\ProgramData\TEMP:44E16D4A deleted successfully.
ADS C:\ProgramData\TEMP:2A874675 deleted successfully.
ADS C:\ProgramData\TEMP:F5E8CAE0 deleted successfully.
ADS C:\ProgramData\TEMP:B3196E8D deleted successfully.
ADS C:\ProgramData\TEMP:96AFAB10 deleted successfully.
ADS C:\ProgramData\TEMP:762408BA deleted successfully.
ADS C:\ProgramData\TEMP:4D551822 deleted successfully.
ADS C:\ProgramData\TEMP:0A74923C deleted successfully.
ADS C:\ProgramData\TEMP:AA0017FD deleted successfully.
ADS C:\ProgramData\TEMP:5E8C18F1 deleted successfully.
ADS C:\ProgramData\TEMP:59465B40 deleted successfully.
ADS C:\ProgramData\TEMP:2C86E2AD deleted successfully.
ADS C:\ProgramData\TEMP:16A4620C deleted successfully.
ADS C:\ProgramData\TEMP:B38BEEEE deleted successfully.
ADS C:\ProgramData\TEMP:A9562832 deleted successfully.
ADS C:\ProgramData\TEMP:927EC486 deleted successfully.
ADS C:\ProgramData\TEMP:834DD57E deleted successfully.
ADS C:\ProgramData\TEMP:7C8AA9A6 deleted successfully.
ADS C:\ProgramData\TEMP:BBC9C1EB deleted successfully.
ADS C:\ProgramData\TEMP:AE9351E0 deleted successfully.
ADS C:\ProgramData\TEMP:9603033A deleted successfully.
ADS C:\ProgramData\TEMP:7ADB695A deleted successfully.
ADS C:\ProgramData\TEMP:65137F0D deleted successfully.
ADS C:\ProgramData\TEMP:63210866 deleted successfully.
ADS C:\ProgramData\TEMP:55BB2521 deleted successfully.
ADS C:\ProgramData\TEMP:B0456F0C deleted successfully.
ADS C:\ProgramData\TEMP:9BAC4211 deleted successfully.
ADS C:\ProgramData\TEMP:7BB20DE8 deleted successfully.
ADS C:\ProgramData\TEMP:0988A428 deleted successfully.
ADS C:\ProgramData\TEMP:C370B84F deleted successfully.
ADS C:\ProgramData\TEMP:A6D6E537 deleted successfully.
ADS C:\ProgramData\TEMP:52C24010 deleted successfully.
ADS C:\ProgramData\TEMP:4EE95FE7 deleted successfully.
ADS C:\ProgramData\TEMP:3CAE2A70 deleted successfully.
ADS C:\ProgramData\TEMP:27974442 deleted successfully.
ADS C:\ProgramData\TEMP:B139DDF3 deleted successfully.
ADS C:\ProgramData\TEMP:A3251D01 deleted successfully.
ADS C:\ProgramData\TEMP:65AB2A58 deleted successfully.
ADS C:\ProgramData\TEMP:3D922890 deleted successfully.
ADS C:\ProgramData\TEMP:1B389835 deleted successfully.
ADS C:\ProgramData\TEMP:0ACF1AF5 deleted successfully.
ADS C:\ProgramData\TEMP:A5629501 deleted successfully.
ADS C:\ProgramData\TEMP:803039D6 deleted successfully.
ADS C:\ProgramData\TEMP:3C9B05C4 deleted successfully.
ADS C:\ProgramData\TEMP:14A1BBE3 deleted successfully.
ADS C:\ProgramData\TEMP:0E8117B1 deleted successfully.
ADS C:\ProgramData\TEMP:F5B51004 deleted successfully.
ADS C:\ProgramData\TEMP:B6E6C4EA deleted successfully.
ADS C:\ProgramData\TEMP:2D2461E7 deleted successfully.
ADS C:\ProgramData\TEMP:2CE15176 deleted successfully.
ADS C:\ProgramData\TEMP:E2CFA9CD deleted successfully.
ADS C:\ProgramData\TEMP:CA23BCFD deleted successfully.
ADS C:\ProgramData\TEMP:378824DE deleted successfully.
ADS C:\ProgramData\TEMP:1604D047 deleted successfully.
ADS C:\ProgramData\TEMP:FB08C210 deleted successfully.
ADS C:\ProgramData\TEMP:ECF3C50F deleted successfully.
ADS C:\ProgramData\TEMP:D6D084A5 deleted successfully.
ADS C:\ProgramData\TEMP:CB299F13 deleted successfully.
ADS C:\ProgramData\TEMP:BEF18713 deleted successfully.
ADS C:\ProgramData\TEMP:95079543 deleted successfully.
ADS C:\ProgramData\TEMP:8855A119 deleted successfully.
ADS C:\ProgramData\TEMP:72A1B66A deleted successfully.
ADS C:\ProgramData\TEMP:512E1728 deleted successfully.
ADS C:\ProgramData\TEMP:4EFA2FC7 deleted successfully.
ADS C:\ProgramData\TEMP:48862C37 deleted successfully.
ADS C:\ProgramData\TEMP:14362DF8 deleted successfully.
ADS C:\ProgramData\TEMP:058A7351 deleted successfully.
ADS C:\ProgramData\TEMP:F6A0889A deleted successfully.
ADS C:\ProgramData\TEMP:EE69D7DF deleted successfully.
ADS C:\ProgramData\TEMP:E5496666 deleted successfully.
ADS C:\ProgramData\TEMP:DB2748F7 deleted successfully.
ADS C:\ProgramData\TEMP:AE75CCC8 deleted successfully.
ADS C:\ProgramData\TEMP:A4241298 deleted successfully.
ADS C:\ProgramData\TEMP:902C848D deleted successfully.
ADS C:\ProgramData\TEMP:8DD20B4A deleted successfully.
ADS C:\ProgramData\TEMP:8AED9359 deleted successfully.
ADS C:\ProgramData\TEMP:84BD8B63 deleted successfully.
ADS C:\ProgramData\TEMP:2F1D743F deleted successfully.
ADS C:\ProgramData\TEMP:26499772 deleted successfully.
ADS C:\ProgramData\TEMP:8DF68137 deleted successfully.
ADS C:\ProgramData\TEMP:29C0641D deleted successfully.
ADS C:\ProgramData\TEMP:45F3AD49 deleted successfully.
ADS C:\ProgramData\TEMP:2B9555D8 deleted successfully.
ADS C:\ProgramData\TEMP:CA0CE093 deleted successfully.
ADS C:\ProgramData\TEMP:59846E5E deleted successfully.
ADS C:\ProgramData\TEMP:E0888117 deleted successfully.
ADS C:\ProgramData\TEMP:DD6F157A deleted successfully.
ADS C:\ProgramData\TEMP:A6D89509 deleted successfully.
ADS C:\ProgramData\TEMP:CAC06C34 deleted successfully.
ADS C:\ProgramData\TEMP:8BE7A048 deleted successfully.
ADS C:\ProgramData\TEMP:3539CD43 deleted successfully.
ADS C:\ProgramData\TEMP:224B562C deleted successfully.
ADS C:\ProgramData\TEMP:E9B2C525 deleted successfully.
ADS C:\ProgramData\TEMP:3DB6F365 deleted successfully.
ADS C:\ProgramData\TEMP:0C988F7D deleted successfully.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\WinampAgent deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Seznam Postak deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Skype deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce\\FlashPlayerUpdate not found.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivX Download Manager\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Exetender_298\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GameXN\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GameXN (news)\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GameXN (update)\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg\ deleted successfully.
========== FILES ==========
c:\Users\ROMAN\Downloads\Microsoft Office 2007 CZ\Keygen.exe moved successfully.
c:\Users\ROMAN\Downloads\off07entcz\Licenční klíč\keygen.exe moved successfully.
File\Folder c:\Windows.old.000\Documents and Settings\ROMAN\Downloads\Microsoft Office 2007 CZ\Keygen.exe not found.
File\Folder c:\Windows.old.000\Documents and Settings\ROMAN\Downloads\off07entcz\Licenční klíč\keygen.exe not found.
File\Folder c:\Windows.old\Documents and Settings\ROMAN\Downloads\Microsoft Office 2007 CZ\Keygen.exe not found.
File\Folder c:\Windows.old\Documents and Settings\ROMAN\Downloads\off07entcz\Licenční klíč\keygen.exe not found.
File/Folder C:\Windows\system32\*.tmp.dll not found.
File/Folder C:\Windows\system32\SET*.tmp not found.
File/Folder C:\Windows\*.tmp not found.
========== COMMANDS ==========
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 56502 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Public

User: ROMAN
->Temp folder emptied: 14128932 bytes
->Temporary Internet Files folder emptied: 8344679 bytes
->Java cache emptied: 571480 bytes
->FireFox cache emptied: 69356968 bytes
->Google Chrome cache emptied: 9326444 bytes
->Apple Safari cache emptied: 0 bytes
->Opera cache emptied: 0 bytes
->Flash cache emptied: 61500 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 1246500 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 98,00 mb


[EMPTYFLASH]

User: All Users

User: Default
->Flash cache emptied: 0 bytes

User: Default User
->Flash cache emptied: 0 bytes

User: Public

User: ROMAN
->Flash cache emptied: 0 bytes

Total Flash Files Cleaned = 0,00 mb


OTL by OldTimer - Version 3.2.53.0 log created on 07062012_200248

Files\Folders moved on Reboot...
File move failed. C:\Windows\temp\_avast_\Webshlock.txt scheduled to be moved on reboot.

PendingFileRenameOperations files...
[2012.07.06 20:15:14 | 000,000,000 | ---- | M] () C:\Windows\temp\_avast_\Webshlock.txt : Unable to obtain MD5

Registry entries deleted on Reboot...

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu - občasné přetěžování CPU

#11 Příspěvek od vyosek »

Nastala nejaka zmena :???:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Small_John
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 29 zář 2008 22:51

Re: Prosím o kontrolu - občasné přetěžování CPU

#12 Příspěvek od Small_John »

Po několika hodinovém brouzdání po internetu a hraní her se problém neobjevil. Vypadá to tedy dobře. Prozatím děkuji za pomoc, snad bude vše v pořádku.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu - občasné přetěžování CPU

#13 Příspěvek od vyosek »

:arrow: T-Cleaner http://vyosek.ic.cz/pro_usery/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stahnete a spustte
  • Kliknete na CleanUp a potvrdte YES
  • Program uklidi a restartuje PC

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

A pokud nejsou problemy ci dotazy, je to z me strany vse :|
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Odpovědět