Stránka 1 z 3

Prosba o kontrolu a radu jak se zbavit Claro Search

Napsal: 17 úno 2013 18:35
od Doktorcz
Prosím o preventivku a radu jak se zbavit Claro search.S něčím se mi to nainstalovalo a za boha ne se toho zbavit.Toolbar jako takový jsem odstranil v ,,odebrat program,,ale stále se mi nedaří ho odebrat z prohlížeče.Nějaké návody tady na fóru jsem našel,ale vše pro jiná konkrétní PC. Předem moc děkuju.

Logfile of random's system information tool 1.09 (written by random/random)
Run by TomSatr at 2013-02-17 18:22:38
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 19 GB (8%) free of 238 GB
Total RAM: 2047 MB (8% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:23:31, on 17.2.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16457)
Boot mode: Normal

Running processes:
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Logitech\Video\LogiTray.exe
C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\wpctrl.exe
C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\floater.exe
C:\Program Files (x86)\Logitech\Video\FxSvr2.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
C:\Program Files (x86)\uTorrent\uTorrent.exe
C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE
C:\Users\TomSatr\AppData\Local\iLivid\iLivid.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_5_502_149.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_5_502_149.exe
C:\Program Files\trend micro\TomSatr.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.claro-search.com/?affID=1201 ... a3a83a929/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://websearch.good-results.info/?pid ... g=EN&cc=LT
R3 - URLSearchHook: (no name) - {FE69C007-C452-4d3e-86D2-1730DF8BC871} - (no file)
R3 - URLSearchHook: {1A03F196-9617-4CA0-842B-A83CEECB022B} - - (no file)
O1 - Hosts: ˙ţ1
O2 - BHO: Complitly - {0FB6A909-6086-458F-BD92-1F8EE10042A0} - C:\Users\TomSatr\AppData\Roaming\Complitly\Complitly.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WebTransBHO Class - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\ProgramData\LangSoft\WebIE.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll
O2 - BHO: IEExtension.VDownloaderBHO - {7b523e7c-f096-4e36-a0cb-7efeb5c675c1} - mscoree.dll (file missing)
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll
O2 - BHO: GomPicker - {F0181C6E-9218-4792-9F3C-E8DF52B2F1AC} - C:\Program Files (x86)\GRETECH\GomPicker\GomPickerBHO.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files (x86)\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files (x86)\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [PivotSoftware] "C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\Pivot_startup.exe" -delay=10
O4 - HKLM\..\Run: [DT PLP] C:\Program Files (x86)\Common Files\Portrait Displays\Shared\DT_startup.exe -PLP
O4 - HKCU\..\Run: [7F172F519EF36A003432FE3964427657773D38CE._service_run] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=service
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files (x86)\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_5_502_149_Plugin.exe -update plugin
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\ProgramData\LangSoft\WebIE.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} - http://utilities.pcpitstop.com/Nirvana/ ... cmatic.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: c:\progra~3\browse~2\261095~1.52\{c16c1~1\browse~1.dll
O23 - Service: 602Updater (602XML Updater) - Software602 a.s. - C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe
O23 - Service: Acronis OS Selector Reinstall Service (AcronisOSSReinstallSvc) - Unknown owner - C:\Program Files (x86)\Common Files\Acronis\Acronis Disk Director\oss_reinstall_svc.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Portrait Displays Display Tune Service (DTSRVC) - Unknown owner - C:\Program Files (x86)\Common Files\Portrait Displays\Shared\dtsrvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: Portrait Displays SDK Service (PdiService) - Portrait Displays, Inc. - C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - C:\Program Files (x86)\WinPcap\rpcapd.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ScsiAccess - Unknown owner - C:\Program Files (x86)\Photodex\ProShowProducer\ScsiAccess.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: StarWind AE Service (StarWindServiceAE) - StarWind Software - C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13570 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"taskhost.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Common Files\Portrait Displays\Shared\dtsrvc.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe"
"C:\Program Files (x86)\Photodex\ProShowProducer\ScsiAccess.exe"
"C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe"
"C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-fab50c78-0cc9-40e8-87d6-144294ce9102 -SystemEventPortName:HostProcess-6bd231df-e4ea-4a45-82c5-b35d1cfe40f2 -IoCancelEventPortName:HostProcess-a9f88415-d88d-4ad4-ae9e-065c292ec880 -NonStateChangingEventPortName:HostProcess-cce6bd1b-2823-466c-a3ef-ec9e6fb83351 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:7db09bff-714e-4bdf-bb0c-f3c05fe17ada -DeviceGroupId:WpdFsGroup
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\Google\Update\1.3.21.135\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.21.135\GoogleCrashHandler64.exe"
"C:\Windows\WindowsMobile\wmdcBase.exe"
C:\Windows\system32\svchost.exe -k WindowsMobile
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\Logitech\Video\LogiTray.exe"
"C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\wpctrl.exe"
"C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\floater.exe"
"C:\Program Files (x86)\Logitech\Video\FxSvr2.exe" -Embedding
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Windows\system32\wuauclt.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe" -auto -critical
C:\Windows\splwow64.exe 12288
"C:\Program Files (x86)\uTorrent\uTorrent.exe"
"taskhost.exe"
"C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE" /n /dde
"C:\Users\TomSatr\AppData\Local\iLivid\iLivid.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=service --lang=cs
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=37756.c557100.63459763 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_149.dll" E7CF176E110C211B -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" 37756 "\\.\pipe\gecko-crash-server-pipe.37756" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_5_502_149.exe" --proxy-stub-channel=Flash58700.551EFFD0.41 --host-broker-channel=Flash58700.551EFFD0.18467 --host-pid=58700 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_149.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_5_502_149.exe" --channel=58740.0016F71C.1925135850 --proxy-stub-channel=Flash58700.551EFFD0.41 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_149.dll" --host-npapi-version=27 --type=renderer
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe595_ Global\UsGthrCtrlFltPipeMssGthrPipe595 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 520 524 532 65536 528
C:\Windows\System32\svchost.exe -k WerSvcGroup
"C:\Users\TomSatr\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\Epson Printer Software Downloader.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\schedule!3036567561.job

=========Mozilla firefox=========

ProfilePath - C:\Users\TomSatr\AppData\Roaming\Mozilla\Firefox\Profiles\p9edemwl.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.centrum.cz/"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.5.502.149 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_149.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\SysWOW64\Adobe\Director\np32dsw_1166636.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@garmin.com/GpsControl]
"Description"=Garmin GPS Control for Firefox
"Path"=C:\Program Files (x86)\Garmin GPS Plugin\npGarmin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.5.1]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=C:\Windows\system32\Wat\npWatWeb.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@photodex.com/PhotodexPresenter]
"Description"=Photodex Presenter Plugin
"Path"=C:\Program Files (x86)\Photodex Presenter\npPxPlay.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@software602.cz/602XML Filler]
"Description"=602XML Filler Plugin
"Path"=C:\Program Files (x86)\Software602\602XML\Filler\npfiller.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.5.502.149 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_5_502_149.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.7.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.7.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=C:\Windows\system32\Wat\npWatWeb.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll

C:\Program Files (x86)\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
nsILegitCheckPlugin.xpt

C:\Program Files (x86)\Mozilla Firefox\plugins\
npLegitCheckPlugin.dll
NPOFF12.DLL
nppdf32.dll

C:\Program Files (x86)\Mozilla Firefox\searchplugins\
babylon.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
Search_Results.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
yahoo.xml

C:\Users\TomSatr\AppData\Roaming\Mozilla\Firefox\Profiles\p9edemwl.default\extensions\
centrumpomocnik@centrum.cz
{33e0daa6-3af3-d8b5-6752-10e949c61516}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0FB6A909-6086-458F-BD92-1F8EE10042A0}]
Complitly - C:\Users\TomSatr\AppData\Roaming\Complitly\64\Complitly64.dll [2012-11-30 169688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2012-10-30 1502288]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2012-09-09 537576]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2013-01-31 6304888]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2012-09-09 193512]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0FB6A909-6086-458F-BD92-1F8EE10042A0}]
Complitly - C:\Users\TomSatr\AppData\Roaming\Complitly\Complitly.dll [2012-11-30 142040]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23 60568]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\ProgramData\LangSoft\WebIE.dll [2011-12-02 798771]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll [2012-07-05 453544]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7b523e7c-f096-4e36-a0cb-7efeb5c675c1}]
IEExtension.VDownloaderBHO - C:\Windows\system32\mscoree.dll [2010-11-05 444752]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-10-30 1227736]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll [2010-11-10 393600]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-01-31 4528760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll [2012-07-05 157616]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F0181C6E-9218-4792-9F3C-E8DF52B2F1AC}]
GretechBHO Class - C:\Program Files (x86)\GRETECH\GomPicker\GomPickerBHO.dll [2012-10-09 2531488]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2012-10-30 1502288]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-10-30 1227736]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"PAC207_Monitor"=C:\Windows\PixArt\PAC207\Monitor.exe [2006-11-03 319488]
"Windows Mobile-based device management"=C:\Windows\WindowsMobile\wmdcBase.exe [2007-05-31 660360]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"7F172F519EF36A003432FE3964427657773D38CE._service_run"=C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2013-01-26 1248208]
"LogitechSoftwareUpdate"=C:\Program Files (x86)\Logitech\Video\ManifestEngine.exe [2005-01-18 196608]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"FlashPlayerUpdate"=C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_5_502_149_Plugin.exe [2013-02-09 699248]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\7F172F519EF36A003432FE3964427657773D38CE._service_run]
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2013-01-26 1248208]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-12-03 946352]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS5.5ServiceManager]
C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe [2011-01-12 1523360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS5ServiceManager]
C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount]
C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2009-11-15 33120]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DT PLP]
C:\Program Files (x86)\Common Files\Portrait Displays\Shared\DT_startup.exe [2010-05-17 121456]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EEventManager]
C:\PROGRA~2\EPSONS~1\EVENTM~1\EEventManager.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesAirMessage]
C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe [2012-11-01 577536]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesPreload]
C:\Program Files (x86)\Samsung\Kies\Kies.exe [2012-12-03 967608]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent]
C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [2012-12-03 309688]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechVideoRepair]
C:\Program Files (x86)\Logitech\Video\ISStart.exe [2005-01-18 458752]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechVideoTray]
C:\Program Files (x86)\Logitech\Video\LogiTray.exe [2005-01-18 217088]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PivotSoftware]
C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\Pivot_startup.exe [2010-05-13 110192]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TomTomHOME.exe]
C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Logitech Desktop Messenger.lnk]
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^STK03N PNP Monitor.lnk]
C:\Windows\STK03N\STK03NM.exe [2009-12-18 163840]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2012-10-30 4297136]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
"LogitechVideoRepair"=C:\Program Files (x86)\Logitech\Video\ISStart.exe [2005-01-18 458752]
"LogitechVideoTray"=C:\Program Files (x86)\Logitech\Video\LogiTray.exe [2005-01-18 217088]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-12-03 946352]
"PivotSoftware"=C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\Pivot_startup.exe [2010-05-13 110192]
"DT PLP"=C:\Program Files (x86)\Common Files\Portrait Displays\Shared\DT_startup.exe [2010-05-17 121456]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2011-05-19 249344]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux4"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux5"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"aux6"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.cpl - cplopen - %SystemRoot%\SysWow64\control.exe "%1",%*

======List of files/folders created in the last 1 month======

2013-02-17 18:22:38 ----D---- C:\rsit
2013-02-17 10:59:03 ----A---- C:\autoexec.bat
2013-02-17 10:58:27 ----D---- C:\Program Files\Enigma Software Group
2013-02-17 10:56:36 ----D---- C:\Windows\22B3AE667A374118BADB3680C15CA366.TMP
2013-02-14 14:09:09 ----D---- C:\Users\TomSatr\AppData\Roaming\inkscape
2013-02-14 14:03:04 ----D---- C:\Program Files (x86)\Inkscape
2013-02-14 13:51:47 ----D---- C:\Users\TomSatr\AppData\Roaming\Complitly
2013-02-14 13:51:46 ----D---- C:\Program Files (x86)\Complitly
2013-02-14 12:50:38 ----D---- C:\Program Files (x86)\GSpot
2013-02-13 13:00:26 ----A---- C:\Windows\SYSWOW64\devil.dll
2013-02-13 13:00:26 ----A---- C:\Windows\SYSWOW64\avisynth.dll
2013-02-13 13:00:25 ----A---- C:\Windows\SYSWOW64\gdiplus.dll
2013-02-13 13:00:23 ----D---- C:\Program Files (x86)\OJOsoft
2013-02-13 12:58:53 ----D---- C:\Users\TomSatr\AppData\Roaming\NVIDIA
2013-02-09 17:05:01 ----D---- C:\Users\TomSatr\AppData\Roaming\NCdownloader
2013-02-09 16:13:31 ----D---- C:\Program Files (x86)\WebSearch
2013-02-09 16:13:22 ----D---- C:\ProgramData\BetterSoft
2013-02-09 16:12:51 ----D---- C:\Program Files (x86)\Optimizer Pro
2013-02-09 16:12:28 ----D---- C:\Program Files (x86)\BrowseToSave
2013-02-09 16:12:21 ----D---- C:\ProgramData\Browse2save
2013-02-09 16:01:55 ----D---- C:\ProgramData\RightClick
2013-02-07 13:03:38 ----D---- C:\Program Files (x86)\LAN Consult
2013-02-07 08:34:14 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-01-29 09:40:15 ----D---- C:\Program Files\Microsoft Silverlight
2013-01-29 09:40:15 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2013-01-28 07:18:23 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2013-01-28 07:18:23 ----A---- C:\Windows\system32\ncrypt.dll
2013-01-28 07:18:03 ----A---- C:\Windows\system32\Wpc.dll
2013-01-28 07:18:02 ----A---- C:\Windows\SYSWOW64\gameux.dll
2013-01-28 07:18:02 ----A---- C:\Windows\system32\gameux.dll
2013-01-28 07:18:01 ----A---- C:\Windows\SYSWOW64\Wpc.dll
2013-01-28 07:17:19 ----A---- C:\Windows\system32\win32spl.dll
2013-01-28 07:17:18 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2013-01-28 07:16:48 ----A---- C:\Windows\system32\msxml6.dll
2013-01-28 07:16:47 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2013-01-28 07:16:47 ----A---- C:\Windows\system32\msxml3.dll
2013-01-28 07:16:46 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2013-01-28 07:16:44 ----A---- C:\Windows\system32\usp10.dll
2013-01-28 07:16:43 ----A---- C:\Windows\SYSWOW64\usp10.dll
2013-01-28 07:16:40 ----A---- C:\Windows\system32\taskhost.exe
2013-01-28 07:15:45 ----A---- C:\Windows\system32\KernelBase.dll
2013-01-28 07:15:43 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2013-01-28 07:15:43 ----A---- C:\Windows\system32\kernel32.dll
2013-01-28 07:15:41 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2013-01-28 07:15:41 ----A---- C:\Windows\system32\wow64win.dll
2013-01-28 07:15:41 ----A---- C:\Windows\system32\winsrv.dll
2013-01-28 07:15:41 ----A---- C:\Windows\system32\conhost.exe
2013-01-28 07:15:40 ----A---- C:\Windows\SYSWOW64\wow32.dll
2013-01-28 07:15:40 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2013-01-28 07:15:40 ----A---- C:\Windows\system32\wow64cpu.dll
2013-01-28 07:15:40 ----A---- C:\Windows\system32\wow64.dll
2013-01-28 07:15:40 ----A---- C:\Windows\system32\ntvdm64.dll
2013-01-28 07:15:38 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-01-28 07:15:35 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2013-01-28 07:15:35 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-01-28 07:15:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2013-01-28 07:15:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2013-01-28 07:15:33 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-01-28 07:15:32 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-01-28 07:15:32 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-01-28 07:15:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2013-01-28 07:15:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2013-01-28 07:15:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2013-01-28 07:15:31 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-01-28 07:15:31 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-01-28 07:15:31 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-01-28 07:15:31 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-01-28 07:15:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2013-01-28 07:15:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2013-01-28 07:15:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2013-01-28 07:15:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2013-01-28 07:15:30 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-01-28 07:15:30 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-01-28 07:15:30 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-01-28 07:15:30 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-01-28 07:15:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2013-01-28 07:15:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2013-01-28 07:15:29 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-01-28 07:15:29 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-01-28 07:15:28 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2013-01-28 07:15:28 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-01-28 07:15:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2013-01-28 07:15:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2013-01-28 07:15:27 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-01-28 07:15:27 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-01-28 07:15:27 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-01-28 07:15:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2013-01-28 07:15:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2013-01-28 07:15:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2013-01-28 07:15:26 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-01-28 07:15:26 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-01-28 07:15:26 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-01-28 07:15:25 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2013-01-28 07:15:25 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-01-28 07:15:25 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-01-28 07:15:25 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-01-28 07:15:24 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2013-01-28 07:15:24 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2013-01-28 07:15:24 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2013-01-28 07:15:24 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-01-28 07:15:23 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2013-01-28 07:15:23 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2013-01-28 07:15:22 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2013-01-28 07:15:22 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-01-28 07:15:22 ----A---- C:\Windows\SYSWOW64\setup16.exe
2013-01-28 07:15:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2013-01-28 07:15:20 ----A---- C:\Windows\SYSWOW64\instnm.exe
2013-01-28 07:15:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2013-01-28 07:15:19 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-01-28 07:15:19 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-01-28 07:15:17 ----A---- C:\Windows\SYSWOW64\user.exe
2013-01-28 07:13:30 ----A---- C:\Windows\system32\win32k.sys
2013-01-28 07:08:00 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2013-01-28 07:08:00 ----A---- C:\Windows\SYSWOW64\javaw.exe
2013-01-28 07:08:00 ----A---- C:\Windows\SYSWOW64\java.exe
2013-01-28 07:05:20 ----A---- C:\Windows\SYSWOW64\javaws.exe

======List of files/folders modified in the last 1 month======

2013-02-17 18:23:31 ----D---- C:\Windows\Prefetch
2013-02-17 18:23:27 ----D---- C:\Program Files\trend micro
2013-02-17 18:21:56 ----D---- C:\Users\TomSatr\AppData\Roaming\uTorrent
2013-02-17 16:48:16 ----D---- C:\Windows\temp
2013-02-17 11:27:23 ----SHD---- C:\Windows\Installer
2013-02-17 11:27:17 ----SHD---- C:\Config.Msi
2013-02-17 11:26:54 ----D---- C:\Windows\system32\drivers
2013-02-17 11:26:36 ----SHD---- C:\System Volume Information
2013-02-17 11:06:51 ----D---- C:\Windows\system32\Tasks
2013-02-17 10:58:27 ----RD---- C:\Program Files
2013-02-17 10:56:36 ----D---- C:\Windows
2013-02-17 08:23:25 ----D---- C:\Windows\system32\config
2013-02-17 01:00:04 ----D---- C:\Windows\inf
2013-02-15 18:45:16 ----D---- C:\Users\TomSatr\AppData\Roaming\vlc
2013-02-14 15:57:48 ----D---- C:\Program Files (x86)\rajce
2013-02-14 15:25:07 ----D---- C:\Windows\system32\FxsTmp
2013-02-14 14:03:04 ----RD---- C:\Program Files (x86)
2013-02-13 14:11:58 ----D---- C:\Windows\System32
2013-02-13 14:11:58 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-02-13 13:00:26 ----D---- C:\Windows\SysWOW64
2013-02-13 13:00:26 ----D---- C:\Program Files (x86)\Common Files
2013-02-13 12:47:40 ----D---- C:\Users\TomSatr\AppData\Roaming\GRETECH
2013-02-13 08:22:57 ----D---- C:\ProgramData\NVIDIA
2013-02-13 08:22:38 ----D---- C:\ProgramData
2013-02-12 09:56:44 ----DC---- C:\Windows\system32\DRVSTORE
2013-02-12 09:50:00 ----D---- C:\Windows\Tasks
2013-02-09 17:57:35 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-02-09 17:30:21 ----D---- C:\Windows\debug
2013-02-09 17:01:44 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-02-09 16:13:22 ----D---- C:\ProgramData\InstallMate
2013-02-08 19:21:47 ----D---- C:\ProgramData\Skype
2013-01-28 16:37:38 ----D---- C:\Windows\rescache
2013-01-28 15:24:51 ----D---- C:\Windows\system32\catroot2
2013-01-28 11:15:12 ----RSD---- C:\Windows\assembly
2013-01-28 11:15:12 ----D---- C:\Windows\Microsoft.NET
2013-01-28 10:47:01 ----D---- C:\Windows\winsxs
2013-01-28 08:48:02 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-01-28 08:48:02 ----D---- C:\Windows\system32\cs-CZ
2013-01-28 08:47:59 ----D---- C:\Windows\AppPatch
2013-01-28 07:44:33 ----D---- C:\ProgramData\Microsoft Help
2013-01-28 07:43:28 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2013-01-28 07:32:35 ----A---- C:\Windows\system32\MRT.exe
2013-01-28 07:20:28 ----D---- C:\Program Files (x86)\MSXML 4.0
2013-01-28 07:16:03 ----D---- C:\Windows\system32\catroot
2013-01-28 07:07:55 ----D---- C:\Program Files (x86)\Java
2013-01-23 11:00:11 ----D---- C:\STAHOVÁN
2013-01-18 10:35:56 ----D---- C:\ProgramData\Adobe
2013-01-18 10:35:51 ----D---- C:\Program Files (x86)\Adobe
2013-01-18 07:26:13 ----D---- C:\Program Files (x86)\Yakumo TV Viewer

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 hotcore3;hotcore3; C:\Windows\SysWOW64\drivers\hotcore3.sys [2007-11-06 35096]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 PxHlpa64;PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [2009-07-09 55280]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 snapman;Acronis Snapshots Manager; C:\Windows\system32\DRIVERS\snapman.sys [2013-01-14 198944]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2012-10-05 564824]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2012-10-30 21136]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2012-10-15 54072]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2012-10-30 984144]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2012-10-30 370288]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2012-10-30 59728]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2011-04-18 189440]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2012-10-30 25232]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2012-10-30 71600]
R3 GEARAspiWDM;GEARAspiWDM; C:\Windows\System32\Drivers\GEARAspiWDM.sys [2006-09-19 18224]
R3 MarvinBus;Pinnacle Marvin Bus 64; C:\Windows\system32\DRIVERS\MarvinBus64.sys [2005-09-23 261120]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2005-03-29 8192]
R3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2011-12-11 82816]
R3 PdiPorts;Portrait Displays low level device driver; C:\Windows\system32\DRIVERS\PdiPorts.sys [2010-04-16 20592]
R3 RTL8023x64;Realtek 10/100 NIC Family NDIS x64 Driver; C:\Windows\system32\DRIVERS\Rtnic64.sys [2009-06-10 51712]
S2 DLPortIO;DriverLINX Port I/O Driver; C:\Windows\system32\drivers\DLPortIO.sys []
S3 AF15BDA;AF9015 BDA Device; C:\Windows\system32\DRIVERS\AF15BDA.sys [2009-06-03 507392]
S3 AtcL001;NDIS Miniport Driver for Atheros L1 Gigabit Ethernet Controller; C:\Windows\system32\DRIVERS\l160x64.sys [2009-10-13 61440]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BthAvrcp;Bluetooth AVRCP Profile; C:\Windows\system32\DRIVERS\BthAvrcp.sys [2009-08-13 29184]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 DCamUSBSTK03N;Standard_Camera; C:\Windows\system32\DRIVERS\STK03NW2.sys [2009-12-18 113288]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2012-09-20 102368]
S3 dgderdrv;dgderdrv; C:\Windows\System32\drivers\dgderdrv.sys []
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-09-23 48488]
S3 MpNWMon;Microsoft Malware Protection Network Driver; C:\Windows\system32\DRIVERS\MpNWMon.sys [2011-04-18 40832]
S3 netr7364;RT73 USB Extensible Wireless LAN Card Driver; C:\Windows\system32\DRIVERS\netr7364.sys [2011-10-05 729152]
S3 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2011-04-27 84864]
S3 NPF;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2011-01-04 40464]
S3 PAC207;Eye 110; C:\Windows\system32\DRIVERS\PFC027.SYS [2007-10-25 684544]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 Revoflt;Revoflt; C:\Windows\system32\DRIVERS\revoflt.sys [2009-12-30 31800]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RimUsb;zařízení BlackBerry Smartphone; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [2007-05-14 27520]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2012-09-20 203104]
S3 ssudobex;SAMSUNG Mobile USB OBEX Serial Port(DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudobex.sys [2012-09-20 203104]
S3 StarOpen;StarOpen; C:\Windows\system32\drivers\StarOpen.sys []
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\drivers\usb8023x.sys [2009-07-14 19968]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2010-11-20 32768]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 WinUsb;SAMSUNG Android USB Driver; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 602XML Updater;602Updater; C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe [2011-10-10 85344]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-12-18 65192]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2012-10-30 44808]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 DTSRVC;Portrait Displays Display Tune Service; C:\Program Files (x86)\Common Files\Portrait Displays\Shared\dtsrvc.exe [2010-05-17 121456]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2012-10-02 891240]
R2 PdiService;Portrait Displays SDK Service; C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe [2010-04-16 109168]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 ScsiAccess;ScsiAccess; C:\Program Files (x86)\Photodex\ProShowProducer\ScsiAccess.exe [2011-11-30 186760]
R2 Skype C2C Service;Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-01-31 3289208]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-10-02 382824]
R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S2 AcronisOSSReinstallSvc;Acronis OS Selector Reinstall Service; C:\Program Files (x86)\Common Files\Acronis\Acronis Disk Director\oss_reinstall_svc.exe [2007-03-15 2233400]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-02-06 136176]
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-10-10 1258856]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-07-13 160944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-02-09 251248]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2010-09-23 1493352]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-02-06 136176]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-02-07 115608]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files\WinPcap\rpcapd.exe [2010-01-27 117264]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2012-06-11 724376]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-11-03 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 PCPitstop Scheduling;PCPitstop Scheduling; C:\Program Files (x86)\PCPitstop\PCPitstopScheduleService.exe [2010-01-04 90352]

-----------------EOF-----------------

Re: Prosba o kontrolu a radu jak se zbavit Claro Search

Napsal: 17 úno 2013 18:48
od vyosek
Zdravim :)

:arrow: Stahnete Shortcut Cleaner http://www.bleepingcomputer.com/downloa ... t-cleaner/
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Spustte tradicne dvouklikem
  • Probehne skenovani a pak se objevi log, pripadne bude ulozen v miste spusteni jako sc-cleaner.txt, ten sem vlozte
:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Kliknete na Search
  • Probehne skenovani a pak se objevi log, pripadne bude ulozen na systemovem disku jako AdwCleaner[R?].txt, ten sem vlozte

Re: Prosba o kontrolu a radu jak se zbavit Claro Search

Napsal: 17 úno 2013 19:02
od Doktorcz
Shortcut Cleaner 1.2.1 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2013 BleepingComputer.com
More Information about Shortcut Cleaner can be found at this link:
http://www.bleepingcomputer.com/downloa ... t-cleaner/

Program started at: 02/17/2013 06:59:15 PM.

Searching C:\Users\TomSatr\AppData\Roaming\Microsoft\Windows\Start Menu\

Searching C:\ProgramData\Microsoft\Windows\Start Menu\

Searching C:\Users\TomSatr\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\

Searching C:\Users\Public\Desktop\

Searching C:\Users\TomSatr\Desktop\


0 bad shortcuts found.

Program finished at: 02/17/2013 06:59:26 PM
Execution time: 0 hours(s), 0 minute(s), and 10 seconds(s)








# AdwCleaner v2.112 - Logfile created 02/17/2013 at 19:00:12
# Updated 10/02/2013 by Xplode
# Operating system : Windows 7 Professional Service Pack 1 (64 bits)
# User : TomSatr - TOMSATR-PC
# Boot Mode : Normal
# Running from : C:\Users\TomSatr\Desktop\adwcleaner0.exe
# Option [Search]


***** [Services] *****


***** [Files / Folders] *****

File Found : C:\Program Files (x86)\Mozilla Firefox\searchplugins\babylon.xml
File Found : C:\Program Files (x86)\Mozilla FireFox\searchplugins\Search_Results.xml
File Found : C:\Users\Public\Desktop\Get The Best Facebook Chat Messenger.lnk
File Found : C:\Users\TomSatr\AppData\Roaming\Microsoft\Windows\Start Menu\eBay.lnk
File Found : C:\Users\TomSatr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\iLivid.lnk
File Found : C:\Users\TomSatr\Desktop\iLivid.lnk
Folder Found : C:\Program Files (x86)\Complitly
Folder Found : C:\Program Files (x86)\Optimizer Pro
Folder Found : C:\Program Files (x86)\uTorrentBar
Folder Found : C:\ProgramData\Babylon
Folder Found : C:\ProgramData\BetterSoft
Folder Found : C:\ProgramData\boost_interprocess
Folder Found : C:\ProgramData\Browse2save
Folder Found : C:\ProgramData\ICQ\ICQToolbar
Folder Found : C:\ProgramData\InstallMate
Folder Found : C:\ProgramData\Premium
Folder Found : C:\ProgramData\RightClick
Folder Found : C:\Users\TomSatr\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda
Folder Found : C:\Users\TomSatr\AppData\Local\Ilivid
Folder Found : C:\Users\TomSatr\AppData\Local\OpenCandy
Folder Found : C:\Users\TomSatr\AppData\LocalLow\Conduit
Folder Found : C:\Users\TomSatr\AppData\LocalLow\Toolbar4
Folder Found : C:\Users\TomSatr\AppData\LocalLow\uTorrentBar
Folder Found : C:\Users\TomSatr\AppData\Roaming\Babylon
Folder Found : C:\Users\TomSatr\AppData\Roaming\Complitly
Folder Found : C:\Users\TomSatr\AppData\Roaming\Mozilla\Firefox\Profiles\p9edemwl.default\Conduit
Folder Found : C:\Users\TomSatr\AppData\Roaming\Mozilla\Firefox\Profiles\p9edemwl.default\extensions\{33E0DAA6-3AF3-D8B5-6752-10E949C61516}
Folder Found : C:\Users\TomSatr\AppData\Roaming\OpenCandy

***** [Registry] *****

Data Found : HKLM\..\Windows [AppInit_DLLs] = c:\progra~3\browse~2\261095~1.52\{c16c1~1\browse~1.dll
Key Found : HKCU\Software\APN PIP
Key Found : HKCU\Software\AppDataLow\AskBarDis
Key Found : HKCU\Software\AppDataLow\Software\uTorrentBar
Key Found : HKCU\Software\AppDataLow\SProtector
Key Found : HKCU\Software\Complitly
Key Found : HKCU\Software\Conduit
Key Found : HKCU\Software\DataMngr
Key Found : HKCU\Software\DataMngr_Toolbar
Key Found : HKCU\Software\ilivid
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{98889811-442D-49DD-99D7-DC866BE87DBC}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000000-6E41-4FD3-8538-502F5495E5FC}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8736C681-37A0-40C6-A0F0-4C083409151C}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}
Key Found : HKCU\Software\PIP
Key Found : HKCU\Software\Softonic
Key Found : HKCU\Software\5c08ddeb23cec48
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40B7-AC73-056A5EBA4A7E}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{96BD48DD-741B-41AE-AC4A-AFF96BA00F7E}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Key Found : HKLM\Software\Babylon
Key Found : HKLM\SOFTWARE\Classes\AppID\{442F13BC-2031-42D5-9520-437F65271153}
Key Found : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Key Found : HKLM\SOFTWARE\Classes\AppID\{C3110516-8EFC-49D6-8B72-69354F332062}
Key Found : HKLM\SOFTWARE\Classes\AppID\Complitly.DLL
Key Found : HKLM\SOFTWARE\Classes\Applications\ilividsetup.exe
Key Found : HKLM\SOFTWARE\Classes\Prod.cap
Key Found : HKLM\SOFTWARE\Classes\SuggestMeYes.SuggestMeYesBHO
Key Found : HKLM\SOFTWARE\Classes\SuggestMeYes.SuggestMeYesBHO.1
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{01BCB858-2F62-4F06-A8F4-48F927C15333}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{CCA8F2AB-BE4E-41F0-A289-4D960CEA58EA}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Key Found : HKLM\Software\Conduit
Key Found : HKLM\Software\DataMngr
Key Found : HKLM\Software\iLividSRTB
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{FE69C007-C452-4D3E-86D2-1730DF8BC871}
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\CToolbar_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\CToolbar_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\iLivid_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\iLivid_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\iLividMediaBar_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\iLividMediaBar_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetup_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetup_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\SweetIM_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\SweetIM_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\SweetPacksUpdateManager_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\SweetPacksUpdateManager_RASMANCS
Key Found : HKLM\Software\PIP
Key Found : HKLM\Software\SimilarSites
Key Found : HKLM\Software\SimplyGen
Key Found : HKLM\Software\SProtector
Key Found : HKLM\Software\uTorrentBar
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A36BCB13-778D-4A40-99C1-D686086D268F}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C9AE652B-8C99-4AC2-B556-8B501182874E}
Key Found : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\dlfienamagdnkekbbbocojppncdambda
Key Found : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\hidjnkeodmholilgafgdlgmgggbhnigl
Key Found : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn
Key Found : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7F1E4A45-3062-40F8-BD9E-9FB28CB7D0D0}
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F34C9277-6577-4DFF-B2D7-7D58092F272F}
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{4FFBB818-B13C-11E0-931D-B2664824019B}_is1
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ilivid
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Search Results Toolbar
Key Found : HKLM\SOFTWARE\Classes\CLSID\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
Key Found : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Found : HKLM\SOFTWARE\Classes\Interface\{A36BCB13-778D-4A40-99C1-D686086D268F}
Key Found : HKLM\SOFTWARE\Classes\Interface\{C9AE652B-8C99-4AC2-B556-8B501182874E}
Key Found : HKLM\SOFTWARE\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
Key Found : HKLM\SOFTWARE\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}
Key Found : HKLM\SOFTWARE\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
Key Found : HKLM\SOFTWARE\DataMngr
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
Key Found : HKLM\SOFTWARE\Software
Key Found : HKU\S-1-5-21-2860777064-1590632525-2448073043-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Found : HKU\S-1-5-21-2860777064-1590632525-2448073043-1000\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40B7-AC73-056A5EBA4A7E}
Key Found : HKU\S-1-5-21-2860777064-1590632525-2448073043-1000\Software\Microsoft\Internet Explorer\SearchScopes\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Key Found : HKU\S-1-5-21-2860777064-1590632525-2448073043-1000\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}
Key Found : HKU\S-1-5-21-2860777064-1590632525-2448073043-1000\Software\Microsoft\Internet Explorer\SearchScopes\{96BD48DD-741B-41AE-AC4A-AFF96BA00F7E}
Key Found : HKU\S-1-5-21-2860777064-1590632525-2448073043-1000\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Found : HKU\S-1-5-21-2860777064-1590632525-2448073043-1000\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Found : HKU\S-1-5-21-2860777064-1590632525-2448073043-1000\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{30F9B915-B755-4826-820B-08FBA6BD249D}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{4B3803EA-5230-4DC3-A7FC-33638F3D3542}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{FE69C007-C452-4D3E-86D2-1730DF8BC871}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{855F3B16-6D32-4FE6-8A56-BBB695989046}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{FE69C007-C452-4D3E-86D2-1730DF8BC871}]
Value Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [10]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [10]

***** [Internet Browsers] *****

-\\ Internet Explorer v9.0.8112.16457

[HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://www.claro-search.com/?affID=120129&tt=0 ... a3a83a929/
[HKCU\Software\Microsoft\Internet Explorer\Main - ICQ Search] = hxxp://search.icq.com/search/results.php?q={searchTerms}&ch_id=osd
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Start Page] = hxxp://websearch.good-results.info/?pid=682&r=2013/02/09&hid=3479224340&lg=EN&cc=LT

-\\ Mozilla Firefox v18.0.2 (cs)

File : C:\Users\TomSatr\AppData\Roaming\Mozilla\Firefox\Profiles\p9edemwl.default\prefs.js

Found : user_pref("CommunityToolbar.ConduitSearchList", " ");
Found : user_pref("CommunityToolbar.EngineOwner", "");
Found : user_pref("CommunityToolbar.EngineOwnerGuid", "");
Found : user_pref("CommunityToolbar.EngineOwnerToolbarId", "");
Found : user_pref("CommunityToolbar.alert.alertInfoInterval", 60);
Found : user_pref("CommunityToolbar.alert.alertInfoLastCheckTime", "Thu Mar 10 2011 13:51:10 GMT+0100");
Found : user_pref("CommunityToolbar.alert.clientsServerUrl", "hxxp://alert.client.conduit.com");
Found : user_pref("CommunityToolbar.alert.locale", "en");
Found : user_pref("CommunityToolbar.alert.loginIntervalMin", 1440);
Found : user_pref("CommunityToolbar.alert.loginLastCheckTime", "Thu Mar 10 2011 13:48:33 GMT+0100");
Found : user_pref("CommunityToolbar.alert.loginLastUpdateTime", "1291052234");
Found : user_pref("CommunityToolbar.alert.messageShowTimeSec", 20);
Found : user_pref("CommunityToolbar.alert.servicesServerUrl", "hxxp://alert.services.conduit.com");
Found : user_pref("CommunityToolbar.alert.showTrayIcon", false);
Found : user_pref("CommunityToolbar.alert.userCloseIntervalMin", 300);
Found : user_pref("CommunityToolbar.alert.userId", "{02a4fb86-1f9c-43c8-8a68-29e4bec3c770}");
Found : user_pref("aol_toolbar.default.homepage.check", false);
Found : user_pref("aol_toolbar.default.search.check", false);
Found : user_pref("avg.install.userHPSettings", "hxxp://www.claro-search.com/?affID=120129&tt=0213_4&babsrc=[...]
Found : user_pref("avg.install.userSPSettings", "Claro Search");
Found : user_pref("browser.newtab.url", "hxxp://www.claro-search.com/?affID=120129&tt=0 ... c=NT_ss&mn[...]
Found : user_pref("browser.search.defaultengine", "Ask.com");
Found : user_pref("browser.search.defaultenginename", "WebSearch");
Found : user_pref("browser.search.defaultenginename,S", "WebSearch");
Found : user_pref("browser.search.defaulturl", "hxxp://websearch.good-results.info/?pid=682&r=2013/02/09&hid[...]
Found : user_pref("browser.search.order.1", "WebSearch");
Found : user_pref("browser.search.order.1,S", "WebSearch");
Found : user_pref("browser.search.selectedEngine", "Claro Search");
Found : user_pref("browser.search.selectedEngine,S", "WebSearch");
Found : user_pref("extensions.BabylonToolbar.prtkDS", 0);
Found : user_pref("extensions.BabylonToolbar.prtkHmpg", 0);
Found : user_pref("sweetim.toolbar.previous.browser.search.defaultenginename", "");
Found : user_pref("sweetim.toolbar.previous.browser.search.selectedEngine", "");
Found : user_pref("sweetim.toolbar.previous.browser.startup.homepage", "");
Found : user_pref("sweetim.toolbar.previous.keyword.URL", "");
Found : user_pref("sweetim.toolbar.scripts.1.domain-blacklist", "");
Found : user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_DS", "");
Found : user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_HP", "");
Found : user_pref("sweetim.toolbar.searchguard.enable", "");

-\\ Google Chrome v24.0.1312.57

File : C:\Users\TomSatr\AppData\Local\Google\Chrome\User Data\Default\Preferences

[OK] File is clean.

-\\ Opera v12.12.1707.0

File : C:\Users\TomSatr\AppData\Roaming\Opera\Opera\operaprefs.ini

Found : HostName Web Lookup Address=hxxp://search.icq.com/search/afe_results.php?q=%s&ch_id=osd&icid=opera

*************************

AdwCleaner[R1].txt - [16072 octets] - [17/02/2013 19:00:12]

########## EOF - C:\AdwCleaner[R1].txt - [16133 octets] ##########

Re: Prosba o kontrolu a radu jak se zbavit Claro Search

Napsal: 17 úno 2013 21:03
od vyosek
:arrow: Spustte znovu AdwCleaner
  • Pokud pouzivate Win Vista ci W7, kliknete na AdwCleaner pravym a dejte Run As Administrator ci Spustit jako spravce
  • Kliknete na Delete
  • PC provede opravu, restartuje se a da Vam log (C:\AdwCleaner [S1].txt) , jeho obsah vlozte sem

Re: Prosba o kontrolu a radu jak se zbavit Claro Search

Napsal: 18 úno 2013 19:08
od Doktorcz
Ještě bych potřeboval vědět jak na tuto hlášku z CCleaneru.Už půl roku se toho nemůžu zbavit

Problém ActiveX/COM InProcServer32\C:\Windows\SysWOW64\wpcmig.dll HKCR\CLSID\{343D770D-7788-47c2-B62A-B7C4CED925CB}
Problém ActiveX/COM InProcServer32\C:\Windows\SysWOW64\wpcumi.dll HKCR\CLSID\{DFA14C43-F385-4170-99CC-1B7765FA0E4A}

Re: Prosba o kontrolu a radu jak se zbavit Claro Search

Napsal: 18 úno 2013 19:18
od Doktorcz
# AdwCleaner v2.112 - Logfile created 02/18/2013 at 19:10:38
# Updated 10/02/2013 by Xplode
# Operating system : Windows 7 Professional Service Pack 1 (64 bits)
# User : TomSatr - TOMSATR-PC
# Boot Mode : Normal
# Running from : C:\Users\TomSatr\Desktop\adwcleaner0.exe
# Option [Delete]


***** [Services] *****


***** [Files / Folders] *****

Deleted on reboot : C:\ProgramData\BetterSoft
File Deleted : C:\Program Files (x86)\Mozilla Firefox\searchplugins\babylon.xml
File Deleted : C:\Program Files (x86)\Mozilla FireFox\searchplugins\Search_Results.xml
File Deleted : C:\Users\Public\Desktop\Get The Best Facebook Chat Messenger.lnk
File Deleted : C:\Users\TomSatr\AppData\Roaming\Microsoft\Windows\Start Menu\eBay.lnk
File Deleted : C:\Users\TomSatr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\iLivid.lnk
File Deleted : C:\Users\TomSatr\Desktop\iLivid.lnk
Folder Deleted : C:\Program Files (x86)\Complitly
Folder Deleted : C:\Program Files (x86)\Optimizer Pro
Folder Deleted : C:\Program Files (x86)\uTorrentBar
Folder Deleted : C:\ProgramData\Babylon
Folder Deleted : C:\ProgramData\boost_interprocess
Folder Deleted : C:\ProgramData\Browse2save
Folder Deleted : C:\ProgramData\ICQ\ICQToolbar
Folder Deleted : C:\ProgramData\InstallMate
Folder Deleted : C:\ProgramData\Premium
Folder Deleted : C:\ProgramData\RightClick
Folder Deleted : C:\Users\TomSatr\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda
Folder Deleted : C:\Users\TomSatr\AppData\Local\Ilivid
Folder Deleted : C:\Users\TomSatr\AppData\Local\OpenCandy
Folder Deleted : C:\Users\TomSatr\AppData\LocalLow\Conduit
Folder Deleted : C:\Users\TomSatr\AppData\LocalLow\Toolbar4
Folder Deleted : C:\Users\TomSatr\AppData\LocalLow\uTorrentBar
Folder Deleted : C:\Users\TomSatr\AppData\Roaming\Babylon
Folder Deleted : C:\Users\TomSatr\AppData\Roaming\Complitly
Folder Deleted : C:\Users\TomSatr\AppData\Roaming\Mozilla\Firefox\Profiles\p9edemwl.default\Conduit
Folder Deleted : C:\Users\TomSatr\AppData\Roaming\Mozilla\Firefox\Profiles\p9edemwl.default\extensions\{33E0DAA6-3AF3-D8B5-6752-10E949C61516}
Folder Deleted : C:\Users\TomSatr\AppData\Roaming\OpenCandy

***** [Registry] *****

Data Deleted : HKLM\..\Windows [AppInit_DLLs] = c:\progra~3\browse~2\261095~1.52\{c16c1~1\browse~1.dll
Key Deleted : HKCU\Software\APN PIP
Key Deleted : HKCU\Software\AppDataLow\AskBarDis
Key Deleted : HKCU\Software\AppDataLow\Software\uTorrentBar
Key Deleted : HKCU\Software\AppDataLow\SProtector
Key Deleted : HKCU\Software\Complitly
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\DataMngr
Key Deleted : HKCU\Software\DataMngr_Toolbar
Key Deleted : HKCU\Software\ilivid
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{98889811-442D-49DD-99D7-DC866BE87DBC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000000-6E41-4FD3-8538-502F5495E5FC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8736C681-37A0-40C6-A0F0-4C083409151C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}
Key Deleted : HKCU\Software\PIP
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\5c08ddeb23cec48
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40B7-AC73-056A5EBA4A7E}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{96BD48DD-741B-41AE-AC4A-AFF96BA00F7E}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Key Deleted : HKLM\Software\Babylon
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{442F13BC-2031-42D5-9520-437F65271153}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C3110516-8EFC-49D6-8B72-69354F332062}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\Complitly.DLL
Key Deleted : HKLM\SOFTWARE\Classes\Applications\ilividsetup.exe
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SOFTWARE\Classes\SuggestMeYes.SuggestMeYesBHO
Key Deleted : HKLM\SOFTWARE\Classes\SuggestMeYes.SuggestMeYesBHO.1
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{01BCB858-2F62-4F06-A8F4-48F927C15333}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{CCA8F2AB-BE4E-41F0-A289-4D960CEA58EA}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\DataMngr
Key Deleted : HKLM\Software\iLividSRTB
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{FE69C007-C452-4D3E-86D2-1730DF8BC871}
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\CToolbar_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLivid_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLivid_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividMediaBar_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividMediaBar_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetup_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetup_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SweetIM_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SweetIM_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SweetPacksUpdateManager_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SweetPacksUpdateManager_RASMANCS
Key Deleted : HKLM\Software\PIP
Key Deleted : HKLM\Software\SimilarSites
Key Deleted : HKLM\Software\SimplyGen
Key Deleted : HKLM\Software\SProtector
Key Deleted : HKLM\Software\uTorrentBar
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A36BCB13-778D-4A40-99C1-D686086D268F}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C9AE652B-8C99-4AC2-B556-8B501182874E}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\dlfienamagdnkekbbbocojppncdambda
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\hidjnkeodmholilgafgdlgmgggbhnigl
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7F1E4A45-3062-40F8-BD9E-9FB28CB7D0D0}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F34C9277-6577-4DFF-B2D7-7D58092F272F}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{4FFBB818-B13C-11E0-931D-B2664824019B}_is1
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ilivid
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Search Results Toolbar
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A36BCB13-778D-4A40-99C1-D686086D268F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C9AE652B-8C99-4AC2-B556-8B501182874E}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\DataMngr
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
Key Deleted : HKLM\SOFTWARE\Software
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{30F9B915-B755-4826-820B-08FBA6BD249D}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{4B3803EA-5230-4DC3-A7FC-33638F3D3542}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{FE69C007-C452-4D3E-86D2-1730DF8BC871}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{855F3B16-6D32-4FE6-8A56-BBB695989046}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{FE69C007-C452-4D3E-86D2-1730DF8BC871}]
Value Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [10]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [10]

***** [Internet Browsers] *****

-\\ Internet Explorer v9.0.8112.16457

Replaced : [HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://www.claro-search.com/?affID=120129&tt=0 ... a3a83a929/ --> hxxp://www.google.com
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Main - ICQ Search] = hxxp://search.icq.com/search/results.php?q={searchTerms}&ch_id=osd --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Start Page] = hxxp://websearch.good-results.info/?pid=682&r=2013/02/09&hid=3479224340&lg=EN&cc=LT --> hxxp://www.google.com

-\\ Mozilla Firefox v18.0.2 (cs)

File : C:\Users\TomSatr\AppData\Roaming\Mozilla\Firefox\Profiles\p9edemwl.default\prefs.js

C:\Users\TomSatr\AppData\Roaming\Mozilla\Firefox\Profiles\p9edemwl.default\user.js ... Deleted !

Deleted : user_pref("CommunityToolbar.ConduitSearchList", " ");
Deleted : user_pref("CommunityToolbar.EngineOwner", "");
Deleted : user_pref("CommunityToolbar.EngineOwnerGuid", "");
Deleted : user_pref("CommunityToolbar.EngineOwnerToolbarId", "");
Deleted : user_pref("CommunityToolbar.alert.alertInfoInterval", 60);
Deleted : user_pref("CommunityToolbar.alert.alertInfoLastCheckTime", "Thu Mar 10 2011 13:51:10 GMT+0100");
Deleted : user_pref("CommunityToolbar.alert.clientsServerUrl", "hxxp://alert.client.conduit.com");
Deleted : user_pref("CommunityToolbar.alert.locale", "en");
Deleted : user_pref("CommunityToolbar.alert.loginIntervalMin", 1440);
Deleted : user_pref("CommunityToolbar.alert.loginLastCheckTime", "Thu Mar 10 2011 13:48:33 GMT+0100");
Deleted : user_pref("CommunityToolbar.alert.loginLastUpdateTime", "1291052234");
Deleted : user_pref("CommunityToolbar.alert.messageShowTimeSec", 20);
Deleted : user_pref("CommunityToolbar.alert.servicesServerUrl", "hxxp://alert.services.conduit.com");
Deleted : user_pref("CommunityToolbar.alert.showTrayIcon", false);
Deleted : user_pref("CommunityToolbar.alert.userCloseIntervalMin", 300);
Deleted : user_pref("CommunityToolbar.alert.userId", "{02a4fb86-1f9c-43c8-8a68-29e4bec3c770}");
Deleted : user_pref("aol_toolbar.default.homepage.check", false);
Deleted : user_pref("aol_toolbar.default.search.check", false);
Deleted : user_pref("avg.install.userHPSettings", "hxxp://www.claro-search.com/?affID=120129&tt=0213_4&babsrc=[...]
Deleted : user_pref("avg.install.userSPSettings", "Claro Search");
Deleted : user_pref("browser.newtab.url", "hxxp://www.claro-search.com/?affID=120129&tt=0 ... c=NT_ss&mn[...]
Deleted : user_pref("browser.search.defaultengine", "Ask.com");
Deleted : user_pref("browser.search.defaultenginename", "WebSearch");
Deleted : user_pref("browser.search.defaultenginename,S", "WebSearch");
Deleted : user_pref("browser.search.defaulturl", "hxxp://websearch.good-results.info/?pid=682&r=2013/02/09&hid[...]
Deleted : user_pref("browser.search.order.1", "WebSearch");
Deleted : user_pref("browser.search.order.1,S", "WebSearch");
Deleted : user_pref("browser.search.selectedEngine", "Claro Search");
Deleted : user_pref("browser.search.selectedEngine,S", "WebSearch");
Deleted : user_pref("extensions.BabylonToolbar.prtkDS", 0);
Deleted : user_pref("extensions.BabylonToolbar.prtkHmpg", 0);
Deleted : user_pref("sweetim.toolbar.previous.browser.search.defaultenginename", "");
Deleted : user_pref("sweetim.toolbar.previous.browser.search.selectedEngine", "");
Deleted : user_pref("sweetim.toolbar.previous.browser.startup.homepage", "");
Deleted : user_pref("sweetim.toolbar.previous.keyword.URL", "");
Deleted : user_pref("sweetim.toolbar.scripts.1.domain-blacklist", "");
Deleted : user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_DS", "");
Deleted : user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_HP", "");
Deleted : user_pref("sweetim.toolbar.searchguard.enable", "");

-\\ Google Chrome v24.0.1312.57

File : C:\Users\TomSatr\AppData\Local\Google\Chrome\User Data\Default\Preferences

[OK] File is clean.

-\\ Opera v12.12.1707.0

File : C:\Users\TomSatr\AppData\Roaming\Opera\Opera\operaprefs.ini

Deleted : HostName Web Lookup Address=hxxp://search.icq.com/search/afe_results.php?q=%s&ch_id=osd&icid=opera

*************************

AdwCleaner[R1].txt - [16161 octets] - [17/02/2013 19:00:12]
AdwCleaner[S1].txt - [15404 octets] - [18/02/2013 19:10:38]

########## EOF - C:\AdwCleaner[S1].txt - [15465 octets] ##########

Re: Prosba o kontrolu a radu jak se zbavit Claro Search

Napsal: 18 úno 2013 21:45
od vyosek
:arrow: Stahnete OTL http://oldtimer.geekstogo.com/OTL.exe a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na OTL pravym a dejte Run As Administrator ci Spustit jako spravce
  • Pokud pouzivate 64bitovy OS, zkontrolujte, zda-li je zaskrtnuty ctverecek u Pro 64 bitové OS, pokud ne, zaskrtnete jej
  • Zaskrtnete okenko Pro vsechny uzivatele
  • Zaskrtnete okenko Kontrola na havet "LOP"
  • Zaskrtnete okenko Kontrola na havet "Purity"
  • Stari souboru zmente z 30 dnu na 7 dnu
  • Do spodniho okenka Vlastni skenovani/opravy vlozte skript nize
  • Kód: Vybrat vše

    CREATERESTOREPOINT
    
    netsvcs
    drivers32
    savembr:0
    
    /md5start
    atapi.sys
    autochk.exe
    cdrom.sys
    explorer.exe
    hal.dll
    scecli.dll
    services.exe
    svchost.exe
    tcpip.sys
    userinit.exe
    winlogon.exe
    /md5stop
    
    %systemroot%*.* /U /s
    %SYSTEMDRIVE%\*.exe
    %ALLUSERSPROFILE%\Application Data\*.
    %ALLUSERSPROFILE%\Application Data\*.exe /s
    %APPDATA%\*.
    %APPDATA%\*.exe /s
    %systemroot%\*. /mp /s
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\Tasks\*.job
    %systemroot%\system32\drivers\*.sys /lockedfiles
    %systemroot%\System32\config\*.sav
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\system32\drivers\*.sys /3
    %systemroot%\system32\*.* /3
    %SYSTEMDRIVE%\*.exe
    
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
    
    %PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5
    %PROGRAMFILES%\Internet Explorer\iexplore.exe /md5
    %PROGRAMFILES%\Opera\opera.exe /md5
    %PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5
    
    %SystemDrive%\PhysicalMBR.bin /md5 
    
    *crack* /s
    *keygen* /s
    *loader* /s
  • Kliknete na tlacitko Prohledat
  • Po dokonceni skenu (cca 10 az 15 min) se objevi logy OTL.txt a Extras.txt, oba sem vlozte
  • Pokud budou logy dlouhe (forum bude kricet o prekroceni maximalniho poctu znaku), tak je rozdelte do vice prispevku

Re: Prosba o kontrolu a radu jak se zbavit Claro Search

Napsal: 19 úno 2013 20:19
od Doktorcz
OTL logfile created on: 19.2.2013 19:36:47 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\TomSatr\Desktop
64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

2.00 Gb Total Physical Memory | 0.71 Gb Available Physical Memory | 35.53% Memory free
4.00 Gb Paging File | 2.65 Gb Available in Paging File | 66.21% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 232.79 Gb Total Space | 16.33 Gb Free Space | 7.01% Space Free | Partition Type: NTFS
Drive D: | 576.64 Gb Total Space | 109.02 Gb Free Space | 18.91% Space Free | Partition Type: NTFS
Drive J: | 149.05 Gb Total Space | 19.82 Gb Free Space | 13.30% Space Free | Partition Type: NTFS
Drive N: | 149.05 Gb Total Space | 148.77 Gb Free Space | 99.81% Space Free | Partition Type: NTFS

Computer Name: TOMSATR-PC | User Name: TomSatr | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days

========== Processes (SafeList) ==========

PRC - [2013.02.19 19:35:25 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\TomSatr\Desktop\OTL.exe
PRC - [2013.02.07 08:34:36 | 000,917,400 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2013.02.07 03:58:22 | 000,213,384 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Update\1.3.21.135\GoogleCrashHandler.exe
PRC - [2013.01.31 10:38:54 | 003,289,208 | ---- | M] (Skype Technologies S.A.) -- C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
PRC - [2013.01.26 03:35:08 | 001,248,208 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
PRC - [2013.01.23 20:58:25 | 000,348,160 | ---- | M] () -- C:\ProgramData\BetterSoft\OptimizerPro\OptimizerPro.exe
PRC - [2013.01.09 11:44:29 | 000,389,168 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe
PRC - [2012.12.18 20:08:28 | 000,065,192 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2012.12.10 09:25:40 | 000,969,104 | ---- | M] (BitTorrent, Inc.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe
PRC - [2012.10.30 23:50:59 | 004,297,136 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2012.10.30 23:50:59 | 000,044,808 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2012.10.02 13:15:38 | 000,382,824 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
PRC - [2012.07.03 08:04:58 | 000,507,312 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
PRC - [2011.11.30 13:57:43 | 000,186,760 | ---- | M] () -- C:\Program Files (x86)\Photodex\ProShowProducer\scsiaccess.exe
PRC - [2011.10.10 12:55:04 | 000,085,344 | ---- | M] (Software602 a.s.) -- C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe
PRC - [2010.05.17 12:03:02 | 000,121,456 | ---- | M] () -- C:\Program Files (x86)\Common Files\Portrait Displays\Shared\DTSRVC.exe
PRC - [2010.05.13 16:34:48 | 000,711,792 | ---- | M] () -- C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\Floater.exe
PRC - [2010.05.13 16:34:42 | 000,674,928 | ---- | M] () -- C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\wpCtrl.exe
PRC - [2010.04.16 15:34:34 | 000,109,168 | ---- | M] (Portrait Displays, Inc.) -- C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
PRC - [2009.12.23 22:34:20 | 000,370,688 | ---- | M] (StarWind Software) -- C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
PRC - [2005.01.18 17:37:30 | 000,217,088 | ---- | M] (Logitech Inc.) -- C:\Program Files (x86)\Logitech\Video\LogiTray.exe
PRC - [2005.01.18 17:08:36 | 000,192,512 | ---- | M] (Logitech Inc.) -- C:\Program Files (x86)\Logitech\Video\FxSvr2.exe


========== Modules (No Company Name) ==========

MOD - [2013.02.07 08:34:35 | 003,023,256 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2013.01.09 11:44:30 | 002,242,096 | ---- | M] () -- C:\Program Files (x86)\Mozilla Thunderbird\mozjs.dll
MOD - [2013.01.09 11:44:30 | 000,158,256 | ---- | M] () -- C:\Program Files (x86)\Mozilla Thunderbird\nsldap32v60.dll
MOD - [2013.01.09 11:44:30 | 000,022,576 | ---- | M] () -- C:\Program Files (x86)\Mozilla Thunderbird\nsldappr32v60.dll
MOD - [2010.05.13 16:34:48 | 000,711,792 | ---- | M] () -- C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\Floater.exe
MOD - [2010.05.13 16:34:42 | 000,674,928 | ---- | M] () -- C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\wpCtrl.exe


========== Services (SafeList) ==========

SRV:64bit: - [2012.10.30 23:50:59 | 000,044,808 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV:64bit: - [2010.01.27 03:09:02 | 000,117,264 | ---- | M] (CACE Technologies, Inc.) [On_Demand | Stopped] -- C:\Program Files\WinPcap\rpcapd.exe -- (rpcapd)
SRV:64bit: - [2009.07.14 02:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2013.02.09 17:57:36 | 000,251,248 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013.02.07 08:34:36 | 000,115,608 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013.01.31 10:38:54 | 003,289,208 | ---- | M] (Skype Technologies S.A.) [Auto | Running] -- C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe -- (Skype C2C Service)
SRV - [2012.12.18 20:08:28 | 000,065,192 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2012.10.10 21:23:42 | 001,258,856 | ---- | M] (NVIDIA Corporation) [Auto | Stopped] -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
SRV - [2012.10.02 13:15:38 | 000,382,824 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2012.07.13 12:28:36 | 000,160,944 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2012.06.11 11:33:26 | 000,724,376 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2011.11.30 13:57:43 | 000,186,760 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Photodex\ProShowProducer\scsiaccess.exe -- (ScsiAccess)
SRV - [2011.10.10 12:55:04 | 000,085,344 | ---- | M] (Software602 a.s.) [Auto | Running] -- C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe -- (602XML Updater)
SRV - [2010.05.17 12:03:02 | 000,121,456 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Common Files\Portrait Displays\Shared\DTSRVC.exe -- (DTSRVC)
SRV - [2010.04.16 15:34:34 | 000,109,168 | ---- | M] (Portrait Displays, Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe -- (PdiService)
SRV - [2010.03.18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010.01.04 14:08:46 | 000,090,352 | ---- | M] (PC Pitstop LLC) [Disabled | Stopped] -- C:\Program Files (x86)\PCPitstop\PCPitstopScheduleService.exe -- (PCPitstop Scheduling)
SRV - [2009.12.23 22:34:20 | 000,370,688 | ---- | M] (StarWind Software) [Auto | Running] -- C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe -- (StarWindServiceAE)
SRV - [2009.06.10 22:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2007.05.31 17:11:54 | 000,443,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\wcescomm.dll -- (WcesComm)
SRV - [2007.05.31 17:11:46 | 000,225,672 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\rapimgr.dll -- (RapiMgr)
SRV - [2007.03.15 10:06:12 | 002,233,400 | ---- | M] () [Auto | Stopped] -- C:\Program Files (x86)\Common Files\Acronis\Acronis Disk Director\oss_reinstall_svc.exe -- (AcronisOSSReinstallSvc)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2013.01.14 20:20:24 | 000,198,944 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\snapman.sys -- (snapman)
DRV:64bit: - [2012.10.30 23:51:56 | 000,059,728 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswTdi.sys -- (aswTdi)
DRV:64bit: - [2012.10.30 23:51:55 | 000,984,144 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswSnx.sys -- (aswSnx)
DRV:64bit: - [2012.10.30 23:51:55 | 000,370,288 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswSP.sys -- (aswSP)
DRV:64bit: - [2012.10.30 23:51:55 | 000,071,600 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:64bit: - [2012.10.30 23:51:55 | 000,021,136 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswKbd.sys -- (aswKbd)
DRV:64bit: - [2012.10.30 23:51:53 | 000,025,232 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV:64bit: - [2012.10.15 17:59:28 | 000,054,072 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswRdr2.sys -- (aswRdr)
DRV:64bit: - [2012.10.05 08:11:39 | 000,564,824 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\sptd.sys -- (sptd)
DRV:64bit: - [2012.09.20 05:35:36 | 000,203,104 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudobex.sys -- (ssudobex)
DRV:64bit: - [2012.09.20 05:35:36 | 000,203,104 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudmdm.sys -- (ssudmdm)
DRV:64bit: - [2012.09.20 05:35:36 | 000,102,368 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudbus.sys -- (dg_ssudbus)
DRV:64bit: - [2012.03.01 07:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2011.12.11 17:49:16 | 000,082,816 | ---- | M] (VSO Software) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\pcouffin.sys -- (pcouffin)
DRV:64bit: - [2011.10.05 09:55:02 | 000,729,152 | ---- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netr7364.sys -- (netr7364)
DRV:64bit: - [2011.04.27 14:25:24 | 000,084,864 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NisDrvWFP.sys -- (NisDrv)
DRV:64bit: - [2011.03.11 07:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011.03.11 07:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011.01.04 17:35:06 | 000,040,464 | ---- | M] (CACE Technologies) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\npf.sys -- (NPF)
DRV:64bit: - [2010.11.20 14:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010.11.20 12:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010.11.20 11:43:57 | 000,032,768 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser.sys -- (usbser)
DRV:64bit: - [2010.09.23 00:36:48 | 000,048,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)
DRV:64bit: - [2010.04.16 15:34:06 | 000,020,592 | ---- | M] (Portrait Displays, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\PdiPorts.sys -- (PdiPorts)
DRV:64bit: - [2009.12.30 09:21:26 | 000,031,800 | ---- | M] (VS Revo Group) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\revoflt.sys -- (Revoflt)
DRV:64bit: - [2009.12.18 10:51:32 | 000,113,288 | ---- | M] (Syntek Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\STK03NW2.sys -- (DCamUSBSTK03N)
DRV:64bit: - [2009.10.13 02:15:52 | 000,061,440 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\l160x64.sys -- (AtcL001)
DRV:64bit: - [2009.08.13 07:38:24 | 000,029,184 | ---- | M] (CSR, plc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BthAvrcp.sys -- (BthAvrcp)
DRV:64bit: - [2009.07.14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.07.14 01:09:50 | 000,019,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usb8023x.sys -- (usb_rndisx)
DRV:64bit: - [2009.07.09 03:00:00 | 000,055,280 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:64bit: - [2009.06.10 21:35:53 | 000,051,712 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rtnic64.sys -- (RTL8023x64)
DRV:64bit: - [2009.06.10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009.06.03 00:58:24 | 000,507,392 | ---- | M] (ITETech ) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AF15BDA.sys -- (AF15BDA)
DRV:64bit: - [2007.10.25 18:30:52 | 000,684,544 | ---- | M] (PixArt Imaging Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\PFC027.SYS -- (PAC207)
DRV:64bit: - [2007.05.14 15:06:18 | 000,027,520 | ---- | M] (Research In Motion Limited) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RimUsb_AMD64.sys -- (RimUsb)
DRV:64bit: - [2006.09.19 14:43:54 | 000,018,224 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2005.09.23 22:18:34 | 000,261,120 | ---- | M] (Pinnacle Systems GmbH) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\MarvinBus64.sys -- (MarvinBus)
DRV:64bit: - [2005.03.29 01:30:38 | 000,008,192 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ASACPI.sys -- (MTsensor)
DRV - [2011.01.04 17:35:06 | 000,034,064 | ---- | M] (CACE Technologies) [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\npf.sys -- (NPF)
DRV - [2009.12.18 10:51:36 | 000,108,544 | ---- | M] (Syntek Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\STK03NW2.sys -- (DCamUSBSTK03N)
DRV - [2009.07.14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [1999.01.10 14:00:00 | 000,003,584 | ---- | M] () [Kernel | Auto | Stopped] -- C:\Windows\SysWow64\drivers\dlportio.sys -- (DLPortIO)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE:64bit: - HKLM\..\SearchScopes,DefaultScope =
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKLM\..\URLSearchHook: - No CLSID value found
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-21-2860777064-1590632525-2448073043-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKU\S-1-5-21-2860777064-1590632525-2448073043-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKU\S-1-5-21-2860777064-1590632525-2448073043-1000\..\URLSearchHook: - No CLSID value found
IE - HKU\S-1-5-21-2860777064-1590632525-2448073043-1000\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-2860777064-1590632525-2448073043-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?FORM=WLETDF& ... -SearchBox
IE - HKU\S-1-5-21-2860777064-1590632525-2448073043-1000\..\SearchScopes\{B914523F-77C2-46D3-9D12-E4A06474E8B1}: "URL" = http://search.yahoo.com/search?fr=chr-g ... earchTerms}
IE - HKU\S-1-5-21-2860777064-1590632525-2448073043-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.defaultthis.engineName: " "
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&ilc=12&type=937811"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.centrum.cz/"
FF - prefs.js..extensions.enabledAddons: centrumpomocnik%40centrum.cz:1.1
FF - prefs.js..extensions.enabledAddons: lockerzfirefox%40lockerz.com:1.1.1
FF - prefs.js..extensions.enabledAddons: qlwatch%40hawwwran:1.0
FF - prefs.js..extensions.enabledAddons: wrc%40avast.com:7.0.1474
FF - prefs.js..extensions.enabledAddons: SQLiteManager%40mrinalkant.blogspot.com:0.7.7
FF - prefs.js..extensions.enabledAddons: %7Be4a8a97b-f2ed-450b-b12d-ee082ba24781%7D:1.7.1
FF - prefs.js..extensions.enabledAddons: %7Be411bb40-b04c-11d8-92e7-00d09e0179f2%7D:4.0.8
FF - prefs.js..extensions.enabledAddons: %7BA5C87640-F7CF-11DA-974D-0800200C9A66%7D:0.3.1
FF - prefs.js..extensions.enabledAddons: %7B82AF8DCA-6DE9-405D-BD5E-43525BDAD38A%7D:6.5.0.11422
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:18.0.2
FF - user.js - File not found

FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_6_602_168.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.7.2: C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.7.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_168.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw_1166636.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@garmin.com/GpsControl: C:\Program Files (x86)\Garmin GPS Plugin\npGarmin.dll (GARMIN Corp.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.5.1: C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@photodex.com/PhotodexPresenter: C:\Program Files (x86)\Photodex Presenter\npPxPlay.dll ( )
FF - HKLM\Software\MozillaPlugins\@software602.cz/602XML Filler: C:\Program Files (x86)\Software602\602XML\Filler\npfiller.dll (Software602 a.s.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.5: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\vitzo.com/VDownloader: C:\Program Files\VDownloader\Addons\npVDownloader.dll File not found

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2012.11.01 15:16:16 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\support@vdownloader.com: C:\Program Files\VDownloader\Addons\FireFox
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 18.0.2\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013.02.07 08:34:37 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 18.0.2\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013.02.07 08:34:24 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 17.0.2\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2013.01.09 11:44:24 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 17.0.2\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins [2013.01.23 13:23:36 | 000,000,000 | ---D | M]

[2013.02.12 09:19:12 | 000,000,000 | ---D | M] (No name found) -- C:\Users\TomSatr\AppData\Roaming\Mozilla\Extensions
[2011.05.22 18:43:49 | 000,000,000 | ---D | M] (No name found) -- C:\Users\TomSatr\AppData\Roaming\Mozilla\Extensions\home2@tomtom.com
[2013.02.18 19:11:03 | 000,000,000 | ---D | M] (No name found) -- C:\Users\TomSatr\AppData\Roaming\Mozilla\Firefox\Profiles\p9edemwl.default\extensions
[2012.01.02 08:16:09 | 000,000,000 | ---D | M] (Centrum doménový pomocník) -- C:\Users\TomSatr\AppData\Roaming\Mozilla\Firefox\Profiles\p9edemwl.default\extensions\centrumpomocnik@centrum.cz
[2012.03.02 16:25:20 | 000,018,078 | ---- | M] () (No name found) -- C:\Users\TomSatr\AppData\Roaming\Mozilla\Firefox\Profiles\p9edemwl.default\extensions\lockerzfirefox@lockerz.com.xpi
[2012.08.14 09:31:15 | 000,038,374 | ---- | M] () (No name found) -- C:\Users\TomSatr\AppData\Roaming\Mozilla\Firefox\Profiles\p9edemwl.default\extensions\qlwatch@hawwwran.xpi
[2012.12.14 19:30:57 | 000,255,318 | ---- | M] () (No name found) -- C:\Users\TomSatr\AppData\Roaming\Mozilla\Firefox\Profiles\p9edemwl.default\extensions\SQLiteManager@mrinalkant.blogspot.com.xpi
[2013.02.13 14:50:36 | 000,021,215 | ---- | M] () (No name found) -- C:\Users\TomSatr\AppData\Roaming\Mozilla\Firefox\Profiles\p9edemwl.default\extensions\{A5C87640-F7CF-11DA-974D-0800200C9A66}.xpi
[2013.01.26 16:14:06 | 000,168,615 | ---- | M] () (No name found) -- C:\Users\TomSatr\AppData\Roaming\Mozilla\Firefox\Profiles\p9edemwl.default\extensions\{e411bb40-b04c-11d8-92e7-00d09e0179f2}.xpi
[2013.01.26 16:14:06 | 000,242,136 | ---- | M] () (No name found) -- C:\Users\TomSatr\AppData\Roaming\Mozilla\Firefox\Profiles\p9edemwl.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi
[2013.02.12 09:19:12 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2013.02.07 08:34:19 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2012.11.01 15:16:16 | 000,000,000 | ---D | M] (avast! WebRep) -- C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\WEBREP\FF
[2013.02.07 08:34:37 | 000,262,552 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2012.06.01 19:01:06 | 000,002,208 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\heureka-cz.xml
[2012.06.01 19:01:06 | 000,000,638 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\jyxo-cz.xml
[2012.06.01 19:01:06 | 000,001,367 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\seznam-cz.xml
[2012.06.01 19:01:06 | 000,000,654 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\slunecnice-cz.xml
[2012.06.01 19:01:06 | 000,001,179 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-cz.xml

========== Chrome ==========

CHR - homepage:
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms}&sugkey={google:suggestAPIKeyParameter},
CHR - homepage:
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\24.0.1312.57\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\24.0.1312.57\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\24.0.1312.57\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\TomSatr\AppData\Local\Google\Chrome\User Data\PepperFlash\11.2.31.144\pepflashplayer.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_262.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: Java Deployment Toolkit 6.0.290.11 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java(TM) Platform SE 6 U29 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\np32dsw.dll
CHR - plugin: Windows Genuine Advantage (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npLegitCheckPlugin.dll
CHR - plugin: 2007 Microsoft Office system (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\NPOFF12.DLL
CHR - plugin: Garmin Communicator Plug-In (Enabled) = C:\Program Files (x86)\Garmin GPS Plugin\npGarmin.dll
CHR - plugin: Google Earth Plugin (Enabled) = C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll
CHR - plugin: Silverlight Plug-In (Enabled) = C:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll
CHR - plugin: Photodex Presenter Plugin (Enabled) = C:\Program Files (x86)\Photodex Presenter\npPxPlay.dll
CHR - plugin: VLC Multimedia Plug-in (Enabled) = C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
CHR - plugin: Windows Live\u0099 Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: Windows Activation Technologies (Enabled) = C:\Windows\system32\Wat\npWatWeb.dll
CHR - Extension: CacheList = C:\Users\TomSatr\AppData\Local\Google\Chrome\User Data\Default\Extensions\amhhdbdhoghppijbjfdkiaconkmfbbpa\2.4.5_0\
CHR - Extension: avast! WebRep = C:\Users\TomSatr\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\7.0.1474_0\
CHR - Extension: Seek a Cache = C:\Users\TomSatr\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgphghhabeookjfccfoinahocecknih\0.752_0\
CHR - Extension: CacheList = C:\Users\TomSatr\AppData\Local\Google\Chrome\User Data\Default\Extensions\amhhdbdhoghppijbjfdkiaconkmfbbpa\2.4.5_0\
CHR - Extension: avast! WebRep = C:\Users\TomSatr\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\7.0.1474_0\
CHR - Extension: Seek a Cache = C:\Users\TomSatr\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgphghhabeookjfccfoinahocecknih\0.752_0\

O1 HOSTS File: ([2012.10.05 08:14:04 | 000,000,169 | ---- | M]) - C:\Windows\SysNative\drivers\etc\Hosts
O1 - Hosts: റㄊ㜲〮〮ㄮ猠牥慩⹬污潣潨⵬潳瑦挮浯਍㈱⸷⸰⸰‱睷⹷污潣潨⵬潳瑦挮浯਍㈱⸷⸰⸰‱浩条獥愮捬桯汯猭景⹴潣൭ㄊ㜲〮〮ㄮ琠楲污愮捬桯汯猭景⹴潣൭ㄊ㜲〮〮ㄮ愠捬桯汯猭景⹴潣൭
O1 - Hosts: eocaching.com/seek/cache_details.aspx*" ]
O2:64bit: - BHO: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O2:64bit: - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2:64bit: - BHO: (no name) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - No CLSID value found.
O2:64bit: - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
O2:64bit: - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (WebTransBHO Class) - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\ProgramData\LangSoft\WebIE.dll ()
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (GretechBHO Class) - {F0181C6E-9218-4792-9F3C-E8DF52B2F1AC} - C:\Program Files (x86)\GRETECH\GomPicker\GomPickerBHO.dll (Gretech Corporation)
O3:64bit: - HKLM\..\Toolbar: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O4:64bit: - HKLM..\Run: [PAC207_Monitor] C:\Windows\PixArt\PAC207\Monitor.exe (PixArt Imaging Incorporation)
O4:64bit: - HKLM..\Run: [Windows Mobile-based device management] C:\Windows\WindowsMobile\wmdcBase.exe (Microsoft Corporation)
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [DT PLP] C:\Program Files (x86)\Common Files\Portrait Displays\Shared\DT_startup.exe ()
O4 - HKLM..\Run: [LogitechVideoRepair] C:\Program Files (x86)\Logitech\Video\ISStart.exe (Logitech Inc.)
O4 - HKLM..\Run: [LogitechVideoTray] C:\Program Files (x86)\Logitech\Video\LogiTray.exe (Logitech Inc.)
O4 - HKLM..\Run: [PivotSoftware] C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\Pivot_startup.exe ()
O4 - HKU\S-1-5-21-2860777064-1590632525-2448073043-1000..\Run: [7F172F519EF36A003432FE3964427657773D38CE._service_run] C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
O4 - HKU\S-1-5-21-2860777064-1590632525-2448073043-1000..\Run: [LogitechSoftwareUpdate] C:\Program Files (x86)\Logitech\Video\ManifestEngine.exe (Logitech Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-2860777064-1590632525-2448073043-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-2860777064-1590632525-2448073043-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9:64bit: - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\ProgramData\LangSoft\WebIE.dll ()
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\ProgramData\LangSoft\WebIE.dll ()
O9 - Extra 'Tools' menuitem : &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\ProgramData\LangSoft\WebIE.dll ()
O9 - Extra 'Tools' menuitem : Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\ProgramData\LangSoft\WebIE.dll ()
O9 - Extra 'Tools' menuitem : Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\ProgramData\LangSoft\WebIE.dll ()
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000005 [] - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL File not found
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000006 [] - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL File not found
O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} http://utilities.pcpitstop.com/Nirvana/ ... cmatic.cab (Reg Error: Key error.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 10.5.1)
O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 10.5.1)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.0.0.138
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{0C2D01F2-6E09-471B-A6B0-3E7BBA28AEC2}: DhcpNameServer = 10.0.0.138
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{54B3437E-FEA9-44C7-B177-A181B669379A}: DhcpNameServer = 10.0.0.138
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{B016D112-80C4-4F74-A61C-FF7E389584A0}: DhcpNameServer = 10.0.0.138
O18:64bit: - Protocol\Handler\grooveLocalGWS - No CLSID value found
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2013.02.17 10:59:03 | 000,000,000 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

NetSvcs:64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)

Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.ac3acm - C:\Windows\SysWow64\ac3acm.acm (fccHandler)
Drivers32: msacm.divxa32 - C:\Windows\SysWow64\msaud32_divx.acm (Microsoft Corporation)
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.lameacm - C:\Windows\SysWow64\lameACM.acm (http://www.mp3dev.org/)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
Drivers32: VIDC.DIVX - C:\Windows\SysWow64\divx.dll (DivX, Inc.)
Drivers32: VIDC.FFDS - C:\Windows\SysWow64\ff_vfw.dll ()
Drivers32: vidc.iv31 - C:\Windows\SysWow64\ir32_32.dll (Intel(R) Corporation)
Drivers32: vidc.iv32 - C:\Windows\SysWow64\ir32_32.dll (Intel(R) Corporation)
Drivers32: vidc.iv41 - C:\Windows\SysWow64\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\Windows\SysWow64\ir50_32.dll (Intel Corporation)
Drivers32: vidc.mjpg - pvmjpg30.dll File not found
Drivers32: VIDC.XVID - C:\Windows\SysWow64\xvidvfw.dll ()
Drivers32: VIDC.YV12 - C:\Windows\SysWow64\yv12vfw.dll (www.helixcommunity.org)
Drivers32: vidc.yvu9 - C:\Windows\SysWow64\Iyvu9_32.dll ()
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin

========== Files/Folders - Created Within 7 Days ==========

[2013.02.19 19:35:23 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\TomSatr\Desktop\OTL.exe
[2013.02.17 18:57:25 | 000,385,440 | ---- | C] (Bleeping Computer, LLC) -- C:\Users\TomSatr\Desktop\sc-cleaner.exe
[2013.02.17 18:22:38 | 000,000,000 | ---D | C] -- C:\rsit
[2013.02.17 10:58:27 | 000,000,000 | ---D | C] -- C:\Program Files\Enigma Software Group
[2013.02.14 14:09:09 | 000,000,000 | ---D | C] -- C:\Users\TomSatr\AppData\Roaming\inkscape
[2013.02.14 14:03:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Inkscape
[2013.02.14 12:50:38 | 000,000,000 | ---D | C] -- C:\Users\TomSatr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GSpot
[2013.02.14 12:50:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GSpot
[2013.02.14 12:50:38 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\GSpot
[2013.02.13 13:01:19 | 000,000,000 | ---D | C] -- C:\Users\TomSatr\Documents\OJOsoft Corporation
[2013.02.13 13:00:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OJOsoft
[2013.02.13 13:00:26 | 000,719,872 | ---- | C] (Abysmal Software) -- C:\Windows\SysWow64\devil.dll
[2013.02.13 13:00:26 | 000,351,744 | ---- | C] (The Public) -- C:\Windows\SysWow64\avisynth.dll
[2013.02.13 13:00:26 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Common Share
[2013.02.13 13:00:25 | 001,700,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\gdiplus.dll
[2013.02.13 13:00:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\OJOsoft
[2013.02.13 12:58:53 | 000,000,000 | ---D | C] -- C:\Users\TomSatr\AppData\Roaming\NVIDIA
[2013.02.12 20:56:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth
[2012.06.25 09:58:26 | 002,174,976 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Program Files (x86)\Common Files\atimpenc.dll
[2011.12.11 17:49:16 | 000,082,816 | ---- | C] (VSO Software) -- C:\Users\TomSatr\AppData\Roaming\pcouffin.sys
[7 C:\*.tmp files -> C:\*.tmp -> ]
[1 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files - Modified Within 7 Days ==========

[2013.02.19 19:39:12 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2013.02.19 19:35:25 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\TomSatr\Desktop\OTL.exe
[2013.02.19 19:04:03 | 000,000,952 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2013.02.19 18:57:01 | 000,000,914 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2013.02.19 18:55:50 | 000,014,256 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013.02.19 18:55:50 | 000,014,256 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013.02.19 18:46:24 | 000,000,948 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2013.02.19 18:46:16 | 000,000,420 | -H-- | M] () -- C:\Windows\tasks\schedule!3036567561.job
[2013.02.19 18:45:48 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013.02.19 18:45:42 | 1609,916,416 | -HS- | M] () -- C:\hiberfil.sys
[2013.02.19 04:16:24 | 000,001,408 | ---- | M] () -- C:\Users\TomSatr\AppData\Local\SRDownloader(2).nast
[2013.02.19 04:16:13 | 001,196,023 | ---- | M] () -- C:\Users\TomSatr\AppData\Local\SRDownloader(2).err
[2013.02.18 18:57:14 | 000,691,568 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2013.02.18 18:57:13 | 000,071,024 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2013.02.17 18:57:26 | 000,385,440 | ---- | M] (Bleeping Computer, LLC) -- C:\Users\TomSatr\Desktop\sc-cleaner.exe
[2013.02.17 18:51:48 | 000,587,671 | ---- | M] () -- C:\Users\TomSatr\Desktop\adwcleaner0.exe
[2013.02.17 12:18:02 | 000,000,256 | ---- | M] () -- C:\Windows\tasks\Epson Printer Software Downloader.job
[2013.02.17 10:59:03 | 000,000,000 | ---- | M] () -- C:\autoexec.bat
[2013.02.14 15:57:45 | 000,000,975 | ---- | M] () -- C:\Users\Public\Desktop\rajče průvodce.lnk
[2013.02.14 14:45:10 | 000,000,730 | ---- | M] () -- C:\Users\TomSatr\AppData\Local\recently-used.xbel
[2013.02.14 14:07:30 | 000,001,019 | ---- | M] () -- C:\Users\Public\Desktop\Inkscape.lnk
[2013.02.13 14:11:58 | 001,584,074 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2013.02.13 14:11:58 | 000,668,522 | ---- | M] () -- C:\Windows\SysNative\perfh005.dat
[2013.02.13 14:11:58 | 000,654,266 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2013.02.13 14:11:58 | 000,141,118 | ---- | M] () -- C:\Windows\SysNative\perfc005.dat
[2013.02.13 14:11:58 | 000,122,098 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2013.02.13 13:00:36 | 000,001,221 | ---- | M] () -- C:\Users\TomSatr\Desktop\OJOsoft Total Video Converter.lnk
[2013.02.12 20:56:03 | 000,002,220 | ---- | M] () -- C:\Users\Public\Desktop\Google Earth.lnk
[7 C:\*.tmp files -> C:\*.tmp -> ]
[1 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files Created - No Company Name ==========

[2013.02.19 19:39:12 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2013.02.17 18:51:45 | 000,587,671 | ---- | C] () -- C:\Users\TomSatr\Desktop\adwcleaner0.exe
[2013.02.17 10:59:03 | 000,000,000 | ---- | C] () -- C:\autoexec.bat
[2013.02.14 14:45:10 | 000,000,730 | ---- | C] () -- C:\Users\TomSatr\AppData\Local\recently-used.xbel
[2013.02.14 14:07:49 | 000,001,063 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Inkscape.lnk
[2013.02.14 14:07:30 | 000,001,019 | ---- | C] () -- C:\Users\Public\Desktop\Inkscape.lnk
[2013.02.13 13:00:36 | 000,001,221 | ---- | C] () -- C:\Users\TomSatr\Desktop\OJOsoft Total Video Converter.lnk
[2013.01.17 13:57:31 | 000,000,276 | ---- | C] () -- C:\Windows\_delis32.ini
[2013.01.09 11:30:41 | 000,000,019 | ---- | C] () -- C:\Users\TomSatr\AppData\Local\llftool.license
[2013.01.09 11:19:38 | 000,000,001 | ---- | C] () -- C:\Users\TomSatr\AppData\Local\llftool.4.05.agreement
[2013.01.05 11:08:49 | 000,007,432 | ---- | C] () -- C:\Windows\SysWow64\Machnm32.sys
[2012.12.26 08:25:34 | 000,001,041 | ---- | C] () -- C:\Users\TomSatr\AppData\Roaming\vso_ts_preview.xml
[2012.11.08 19:28:16 | 001,196,023 | ---- | C] () -- C:\Users\TomSatr\AppData\Local\SRDownloader(2).err
[2012.10.29 12:09:28 | 000,974,848 | ---- | C] () -- C:\Windows\SysWow64\cis-2.4.dll
[2012.10.29 12:09:28 | 000,081,920 | ---- | C] () -- C:\Windows\SysWow64\issacapi_bs-2.3.dll
[2012.10.29 12:09:28 | 000,065,536 | ---- | C] () -- C:\Windows\SysWow64\issacapi_pe-2.3.dll
[2012.10.29 12:09:28 | 000,057,344 | ---- | C] () -- C:\Windows\SysWow64\issacapi_se-2.3.dll
[2012.10.29 12:09:28 | 000,030,568 | ---- | C] () -- C:\Windows\MusiccityDownload.exe
[2012.07.25 12:00:18 | 001,129,312 | ---- | C] () -- C:\Windows\SysWow64\602convert.dll
[2012.07.04 16:36:50 | 000,078,336 | ---- | C] () -- C:\Windows\gmt.exe
[2012.07.02 12:09:07 | 000,000,810 | ---- | C] () -- C:\Users\TomSatr\pretec2010prstd.lic
[2012.04.04 16:42:27 | 000,000,017 | ---- | C] () -- C:\Users\TomSatr\AppData\Local\resmon.resmoncfg
[2012.04.02 09:45:54 | 000,000,080 | ---- | C] () -- C:\Users\TomSatr\AppData\Local\CrystalDiskMark30.ini
[2012.03.30 10:17:45 | 000,201,216 | ---- | C] () -- C:\Windows\SysWow64\mediarcpt.dll
[2012.03.13 19:01:23 | 000,340,480 | ---- | C] () -- C:\Windows\SysWow64\K8062e.exe
[2012.03.13 19:01:23 | 000,322,048 | ---- | C] () -- C:\Windows\SysWow64\Easylase.dll
[2012.03.13 19:01:23 | 000,301,056 | ---- | C] () -- C:\Windows\SysWow64\usbdmxfs.dll
[2012.03.13 19:01:23 | 000,084,992 | ---- | C] () -- C:\Windows\SysWow64\DMX510Vb.dll
[2012.03.13 19:01:23 | 000,049,152 | ---- | C] () -- C:\Windows\SysWow64\EspionDll.dll
[2012.03.13 19:01:23 | 000,042,496 | ---- | C] () -- C:\Windows\SysWow64\K8062D.dll
[2012.03.13 19:01:23 | 000,032,768 | ---- | C] () -- C:\Windows\SysWow64\MPUSBAPI.DLL
[2012.03.13 19:01:23 | 000,017,920 | ---- | C] () -- C:\Windows\SysWow64\usbdmxsi.dll
[2012.03.13 19:01:23 | 000,016,384 | ---- | C] () -- C:\Windows\SysWow64\FASTTime32.dll
[2012.03.13 19:01:22 | 000,110,592 | ---- | C] () -- C:\Windows\SysWow64\usb_dll.dll
[2012.03.13 19:01:22 | 000,077,824 | ---- | C] () -- C:\Windows\SysWow64\dashardvb.dll
[2012.03.13 19:01:22 | 000,044,544 | ---- | C] () -- C:\Windows\SysWow64\dmx60.dll
[2012.03.13 19:01:22 | 000,044,544 | ---- | C] () -- C:\Windows\SysWow64\dmx120.dll
[2012.03.13 19:01:22 | 000,037,888 | ---- | C] () -- C:\Windows\SysWow64\LPT_dmx.dll
[2012.03.13 19:01:22 | 000,003,584 | ---- | C] () -- C:\Windows\SysWow64\drivers\dlportio.sys
[2012.03.13 19:01:21 | 000,032,768 | ---- | C] () -- C:\Windows\SysWow64\inpout32.dll
[2012.02.22 13:53:02 | 000,000,038 | ---- | C] () -- C:\Windows\avisplitter.INI
[2012.02.03 08:27:08 | 000,247,560 | ---- | C] () -- C:\Windows\SysWow64\prgiso.dll
[2012.02.03 08:27:06 | 004,244,744 | ---- | C] () -- C:\Windows\SysWow64\qtp-mt334.dll
[2012.02.03 08:27:06 | 000,013,576 | ---- | C] () -- C:\Windows\SysWow64\wnaspi32.dll
[2012.01.18 13:03:02 | 000,000,021 | ---- | C] () -- C:\Windows\SurCode.INI
[2012.01.03 14:55:53 | 000,002,198 | ---- | C] () -- C:\Windows\cyklopruvodce.INI
[2012.01.03 11:28:00 | 000,561,664 | ---- | C] () -- C:\Windows\SysWow64\plplacesystemdll.dll
[2011.12.14 17:38:17 | 000,001,958 | ---- | C] () -- C:\Windows\SysWow64\SpoonUninstall-dMC Fun Bar.dat
[2011.12.14 17:35:27 | 000,008,463 | ---- | C] () -- C:\Windows\SysWow64\SpoonUninstall-dBpoweramp DSP Effects.dat
[2011.12.11 17:49:16 | 000,007,859 | ---- | C] () -- C:\Users\TomSatr\AppData\Roaming\pcouffin.cat
[2011.12.11 17:49:16 | 000,001,167 | ---- | C] () -- C:\Users\TomSatr\AppData\Roaming\pcouffin.inf
[2011.12.09 17:08:29 | 000,009,616 | ---- | C] () -- C:\Windows\SysWow64\SpoonUninstall-dMC Power Pack.dat
[2011.12.02 13:47:05 | 000,000,034 | ---- | C] () -- C:\Windows\WTRDCTM.INI
[2011.11.30 12:06:06 | 000,000,248 | ---- | C] () -- C:\Users\TomSatr\AppData\Roaming\burnaware.ini
[2011.11.25 12:44:22 | 000,000,034 | ---- | C] () -- C:\Windows\cdplayer.ini
[2011.11.24 16:00:41 | 000,002,472 | ---- | C] () -- C:\Windows\SysWow64\SpoonUninstall-dMC mp3PRO (CLI) Encoder.dat
[2011.11.24 16:00:22 | 000,002,156 | ---- | C] () -- C:\Windows\SysWow64\SpoonUninstall-dBpowerAMP WMA V9 Codec.dat
[2011.11.24 15:59:52 | 000,002,093 | ---- | C] () -- C:\Windows\SysWow64\SpoonUninstall-dBpowerAMP Ogg Vorbis Codec.dat
[2011.11.24 15:59:30 | 000,001,332 | ---- | C] () -- C:\Windows\SysWow64\SpoonUninstall-dBpowerAMP Winamp Codec.dat
[2011.11.24 15:58:38 | 000,002,079 | ---- | C] () -- C:\Windows\SysWow64\SpoonUninstall-dBpowerAMP mp3PRO Input Codec.dat
[2011.11.24 15:57:29 | 000,167,424 | ---- | C] () -- C:\Windows\SysWow64\SpoonUninstall.exe
[2011.11.24 15:57:29 | 000,036,110 | ---- | C] () -- C:\Windows\SysWow64\SpoonUninstall-dBpowerAMP Music Converter.dat
[2011.11.24 07:01:05 | 000,293,535 | ---- | C] () -- C:\Users\TomSatr\AppData\Local\SRDownloader(1).err
[2011.11.24 06:58:52 | 000,001,536 | ---- | C] () -- C:\Users\TomSatr\AppData\Local\SRDownloader(1).nast
[2011.11.23 09:15:05 | 000,164,352 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2011.11.23 09:14:50 | 003,596,288 | ---- | C] () -- C:\Windows\SysWow64\qt-dx331.dll
[2011.11.23 09:14:50 | 000,755,027 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2011.11.23 09:14:50 | 000,159,839 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2011.11.23 09:14:43 | 000,007,680 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll
[2011.11.22 16:25:54 | 000,001,408 | ---- | C] () -- C:\Users\TomSatr\AppData\Local\SRDownloader(2).nast
[2011.11.22 15:48:26 | 000,000,000 | ---- | C] () -- C:\Windows\EEventManager.INI
[2011.11.22 14:49:38 | 000,111,932 | ---- | C] () -- C:\Windows\SysWow64\EPPICPrinterDB.dat
[2011.11.22 14:49:38 | 000,031,053 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern131.dat
[2011.11.22 14:49:38 | 000,027,417 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern121.dat
[2011.11.22 14:49:38 | 000,026,154 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern1.dat
[2011.11.22 14:49:38 | 000,024,903 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern3.dat
[2011.11.22 14:49:38 | 000,021,390 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern5.dat
[2011.11.22 14:49:38 | 000,020,148 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern2.dat
[2011.11.22 14:49:38 | 000,011,811 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern4.dat
[2011.11.22 14:49:38 | 000,004,943 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern6.dat
[2011.11.22 14:49:38 | 000,001,146 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_DU.dat
[2011.11.22 14:49:38 | 000,001,139 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_PT.dat
[2011.11.22 14:49:38 | 000,001,139 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_BP.dat
[2011.11.22 14:49:38 | 000,001,136 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_ES.dat
[2011.11.22 14:49:38 | 000,001,129 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_FR.dat
[2011.11.22 14:49:38 | 000,001,129 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_CF.dat
[2011.11.22 14:49:38 | 000,001,120 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_IT.dat
[2011.11.22 14:49:38 | 000,001,107 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_GE.dat
[2011.11.22 14:49:38 | 000,001,104 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_EN.dat
[2011.11.22 14:49:38 | 000,000,097 | ---- | C] () -- C:\Windows\SysWow64\PICSDK.ini
[2011.11.22 14:22:34 | 000,081,920 | R--- | C] () -- C:\Windows\bwUnin-6.1.4.68-8876480L.exe
[2011.11.11 14:11:45 | 000,017,408 | ---- | C] () -- C:\Users\TomSatr\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.06.21 10:16:51 | 000,017,408 | ---- | C] () -- C:\Windows\SysWow64\perfts.dll
[2011.03.03 23:45:07 | 000,001,048 | ---- | C] () -- C:\Users\TomSatr\AppData\Local\SRDownloader.nast
[2010.11.16 19:29:35 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat

========== ZeroAccess Check ==========

[2009.07.14 05:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2012.06.09 06:43:10 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2012.06.09 05:41:00 | 012,873,728 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 02:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.20 13:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 02:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== LOP Check ==========

[2013.01.14 10:52:11 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\602Installer
[2013.01.14 10:52:52 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\602XML
[2010.11.28 19:57:33 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\abgx360
[2013.01.17 12:59:18 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\AIMP3
[2012.07.04 17:31:49 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\anpo.republika.pl
[2012.05.02 07:04:42 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\avidemux
[2012.02.04 17:08:31 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\BitSpirit
[2011.11.22 15:20:07 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Byngo
[2010.11.17 23:35:03 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Canneverbe Limited
[2011.11.22 15:20:07 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\CCPublisher
[2013.01.05 11:12:40 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\DisplayTune
[2013.01.10 07:42:16 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Epson
[2012.08.10 11:01:55 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\EurekaLog
[2013.01.07 07:58:18 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\FitLinie
[2012.07.04 16:41:56 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\fltk.org
[2011.11.22 14:23:24 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\FotoWire
[2012.07.02 13:12:53 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\GARMIN
[2012.12.26 17:02:13 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\GeoGet
[2012.05.28 14:46:25 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\GetRightToGo
[2011.12.14 17:49:15 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\GHISLER
[2012.09.14 16:26:11 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\gsak
[2012.03.27 13:41:42 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\HDRsoft
[2013.02.18 18:56:32 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\inkscape
[2011.12.02 13:45:52 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\LangSoft
[2011.12.02 13:59:07 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Manager for Skype
[2012.01.17 00:09:02 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\MediaMonkey
[2012.08.10 07:26:03 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Mobile Atlas Creator
[2013.02.09 17:05:01 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\NCdownloader
[2011.11.24 15:47:42 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\NCH Swift Sound
[2011.11.30 13:57:50 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Netscape
[2012.11.23 09:00:46 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Nokia
[2012.02.15 14:44:51 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Opera
[2012.01.18 13:03:02 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\PACE Anti-Piracy
[2012.11.23 08:59:20 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\PC Suite
[2011.11.30 13:51:45 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Photodex
[2012.08.24 08:59:16 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\POI-Spoiler
[2012.01.18 12:43:00 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Publish Providers
[2012.09.09 18:02:25 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Registry Mechanic
[2012.12.16 13:07:26 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Samsung
[2012.01.18 12:42:53 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Sony
[2012.01.18 13:04:09 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2012.03.12 18:26:05 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Stereoscopic Player
[2013.01.10 19:33:36 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\systweak
[2011.11.22 16:39:00 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Thunderbird
[2011.05.22 18:43:48 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\TomTom
[2012.03.13 18:49:02 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Trace Lighting
[2013.02.19 19:44:25 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\uTorrent
[2011.11.29 19:50:05 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\VitySoft
[2013.01.07 12:26:35 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Vso
[2010.11.16 22:57:25 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Windows Live Writer
[2012.08.24 11:27:42 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Winwaed Software Technology LLC
[2012.06.28 18:06:36 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Xilisoft
[2011.12.02 13:28:19 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Zoner

========== Purity Check ==========



========== Custom Scans ==========

< >
[2009.07.14 06:08:49 | 000,000,006 | -H-- | C] () -- C:\Windows\Tasks\SA.DAT
[2009.07.14 06:08:49 | 000,032,558 | ---- | C] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2012.07.11 09:40:45 | 000,000,948 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2012.07.11 09:40:47 | 000,000,952 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
[2012.08.23 09:57:02 | 000,000,914 | ---- | C] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job
[2012.12.19 12:18:42 | 000,000,256 | ---- | C] () -- C:\Windows\Tasks\Epson Printer Software Downloader.job
[2013.02.09 16:13:23 | 000,000,420 | -H-- | C] () -- C:\Windows\Tasks\schedule!3036567561.job

< >

< MD5 for: ATAPI.SYS >
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\drivers\atapi.sys
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_aad30bdeec04ea5e\atapi.sys
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys

< MD5 for: AUTOCHK.EXE >
[2010.11.20 14:24:26 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\SysNative\autochk.exe
[2010.11.20 14:24:26 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_4019f2b8d860ad30\autochk.exe
[2009.07.14 02:14:12 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=41E4C8EBA464E7D6A5BA5E8827732AEB -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_e1ca436d2314b860\autochk.exe
[2009.07.14 02:38:56 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=8B7F8E882A649D81CEA1EDE9BBB68FFF -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_3de8def0db722996\autochk.exe
[2010.11.20 13:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\SysWOW64\autochk.exe
[2010.11.20 13:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_e3fb573520033bfa\autochk.exe

< MD5 for: CDROM.SYS >
[2009.07.14 00:19:54 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=83D2D75E1EFB81B3450C18131443F7DB -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7600.16385_none_bb9e4d89bd7870f1\cdrom.sys
[2010.11.20 10:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\drivers\cdrom.sys
[2010.11.20 10:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_neutral_0b3d0d1942ab684b\cdrom.sys
[2010.11.20 10:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_bdcf6151ba66f48b\cdrom.sys

Re: Prosba o kontrolu a radu jak se zbavit Claro Search

Napsal: 19 úno 2013 20:26
od Doktorcz
< MD5 for: EXPLORER.EXE >
[2011.02.26 07:23:14 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=0862495E0C825893DB75EF44FAEA8E93 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_adc24107935a7e25\explorer.exe
[2011.02.26 06:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_ba87e574ddfe652d\explorer.exe
[2009.07.14 02:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_b7fe430bc7ce3761\explorer.exe
[2011.02.26 06:51:13 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=255CF508D7CFB10E0794D6AC93280BD8 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_b8ce9756e0b786a4\explorer.exe
[2009.10.31 06:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_b819b343c7ba6202\explorer.exe
[2011.02.26 06:33:07 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=2AF58D15EDC06EC6FDACCE1F19482BBF -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_b816eb59c7bb4020\explorer.exe
[2011.02.25 07:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\explorer.exe
[2011.02.25 07:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_afa79dc39081d0ba\explorer.exe
[2011.02.26 07:14:34 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=3B69712041F3D63605529BD66DC00C48 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_b0333b22a99da332\explorer.exe
[2010.11.20 13:17:09 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe
[2009.08.03 07:19:07 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=700073016DAC1C3D2E7E2CE4223334B6 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_ae84b558ac4eb41c\explorer.exe
[2011.02.25 06:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\SysWOW64\explorer.exe
[2011.02.25 06:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_b9fc4815c4e292b5\explorer.exe
[2009.10.31 07:34:59 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=9AAAEC8DAC27AA17B053E6352AD233AE -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_adc508f19359a007\explorer.exe
[2009.08.03 06:49:47 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=9FF6C4C91A3711C0A3B18F87B08B518D -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_b8d95faae0af7617\explorer.exe
[2010.11.20 14:24:45 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe
[2009.10.31 07:38:38 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=B8EC4BD49CE8F6FC457721BFC210B67F -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_ae46d6aeac7ca7c7\explorer.exe
[2009.08.03 06:35:50 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=B95EEB0F4E5EFBF1038A35B3351CF047 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_b853c407c78e3ba9\explorer.exe
[2009.07.14 02:39:10 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=C235A51CB740E45FFA0EBFB9BAFCDA64 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_ada998b9936d7566\explorer.exe
[2009.10.31 07:00:51 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=C76153C7ECA00FA852BB0C193378F917 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_b89b8100e0dd69c2\explorer.exe
[2011.02.26 07:26:45 | 002,870,784 | ---- | M] (Microsoft Corporation) MD5=E38899074D4951D31B4040E994DD7C8D -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_ae79ed04ac56c4a9\explorer.exe
[2009.08.03 07:17:37 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=F170B4A061C9E026437B193B4D571799 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_adff19b5932d79ae\explorer.exe

< MD5 for: HAL.DLL >
[2009.07.14 02:47:48 | 000,263,232 | ---- | M] (Microsoft Corporation) MD5=C0A6F6E05E14FBCAEDE7796C8590B7AC -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7600.16385_none_071de44b735b3dfc\hal.dll
[2010.11.20 14:33:34 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\SysNative\hal.dll
[2010.11.20 14:33:34 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7601.17514_none_094ef8137049c196\hal.dll

< MD5 for: SCECLI.DLL >
[2009.07.14 02:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9e577e55272d37b4\scecli.dll
[2009.07.14 02:41:53 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=398712DDDAEFB85EDF61DF6A07B65C79 -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9402d402f2cc75b9\scecli.dll
[2010.11.20 13:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\SysWOW64\scecli.dll
[2010.11.20 13:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_a088921d241bbb4e\scecli.dll
[2010.11.20 14:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\SysNative\scecli.dll
[2010.11.20 14:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_9633e7caefbaf953\scecli.dll

< MD5 for: SERVICES.EXE >
[2009.07.14 02:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\SysNative\services.exe
[2009.07.14 02:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.exe

< MD5 for: SVCHOST.EXE >
[2009.07.14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\SysWOW64\svchost.exe
[2009.07.14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2009.07.14 02:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\SysNative\svchost.exe
[2009.07.14 02:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48c\svchost.exe

< MD5 for: TCPIP.SYS >
[2011.04.25 06:28:24 | 001,893,248 | ---- | M] (Microsoft Corporation) MD5=1F748D5439B65E0BEBD92F65048F030D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20951_none_0fb918de99201ffb\tcpip.sys
[2012.10.03 18:56:54 | 001,914,248 | ---- | M] (Microsoft Corporation) MD5=37608401DFDB388CAF66917F6B2D6FB0 -- C:\Windows\SysNative\drivers\tcpip.sys
[2012.10.03 18:56:54 | 001,914,248 | ---- | M] (Microsoft Corporation) MD5=37608401DFDB388CAF66917F6B2D6FB0 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17964_none_110e0fbd7d2e4b88\tcpip.sys
[2011.09.29 18:41:37 | 001,912,176 | ---- | M] (Microsoft Corporation) MD5=3810F06A4D74A7D62641EE73D6B3C660 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21828_none_11c6e9949627e69c\tcpip.sys
[2010.11.20 14:33:57 | 001,924,480 | ---- | M] (Microsoft Corporation) MD5=509383E505C973ED7534A06B3D19688D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17514_none_114417c17d05cb37\tcpip.sys
[2011.06.21 07:16:55 | 001,888,128 | ---- | M] (Microsoft Corporation) MD5=5279D4DD69C7C71524B8E7A5746D15CC -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20992_none_0f8ed978993fa916\tcpip.sys
[2010.06.14 07:39:16 | 001,889,152 | ---- | M] (Microsoft Corporation) MD5=542C6767C68C9D6AAACA59436B0D15C2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20733_none_0fd0b57e990e2079\tcpip.sys
[2012.03.30 11:19:17 | 001,877,872 | ---- | M] (Microsoft Corporation) MD5=5EFD096DEF47F8B88EF591DA92143440 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.21178_none_0faa5514992a39a7\tcpip.sys
[2011.04.25 06:32:22 | 001,896,832 | ---- | M] (Microsoft Corporation) MD5=61DC720BB065D607D5823F13D2A64321 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16802_none_0f668bf97fd90dd3\tcpip.sys
[2012.03.30 12:09:53 | 001,895,280 | ---- | M] (Microsoft Corporation) MD5=624C5B3AA4C99B3184BB922D9ECE3FF0 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16986_none_0f140fa780164fde\tcpip.sys
[2012.08.22 19:06:13 | 001,901,936 | ---- | M] (Microsoft Corporation) MD5=7880A26B7D3B96FDA8EFD9F985036B1D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22097_none_117a13de9661c145\tcpip.sys
[2010.04.09 12:06:28 | 001,898,376 | ---- | M] (Microsoft Corporation) MD5=7FC877A25796D8ADF539E64703FCA7E1 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16569_none_0f2ca8c580036f65\tcpip.sys
[2012.03.30 11:26:36 | 001,901,424 | ---- | M] (Microsoft Corporation) MD5=885B202006EE17AE99B9FBCEC9AF88C9 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21954_none_11a27a8e9643d23a\tcpip.sys
[2010.06.14 07:37:36 | 001,896,832 | ---- | M] (Microsoft Corporation) MD5=90A2D722CF64D911879D6C4A4F802A4D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16610_none_0f59b7ad7fe2fcc8\tcpip.sys
[2009.07.14 02:45:55 | 001,898,576 | ---- | M] (Microsoft Corporation) MD5=912107716BAB424C7870E8E6AF5E07E1 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16385_none_0f1303f98017479d\tcpip.sys
[2011.04.25 06:33:51 | 001,923,968 | ---- | M] (Microsoft Corporation) MD5=92CE29D95AC9DD2D0EE9061D551BA250 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17603_none_114de9497cfe9316\tcpip.sys
[2011.06.21 07:20:30 | 001,914,752 | ---- | M] (Microsoft Corporation) MD5=A0EB71E0DC047C7CC95CD6AB4036296E -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21754_none_11a276c29643d7ec\tcpip.sys
[2010.04.09 08:56:29 | 001,892,232 | ---- | M] (Microsoft Corporation) MD5=A9C0F786AC1F736891D05CE0A1D29DEB -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20687_none_0f9ea52499331463\tcpip.sys
[2011.09.29 17:17:51 | 001,886,064 | ---- | M] (Microsoft Corporation) MD5=AC3E29880DB5659532A1AA3439304A43 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.21060_none_0fad20ca992955d7\tcpip.sys
[2012.03.30 12:35:47 | 001,918,320 | ---- | M] (Microsoft Corporation) MD5=ACB82BDA8F46C84F465C1AFA517DC4B9 -- C:\System Volume Information\SystemRestore\FRStaging\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17802_none_114ceccb7cff740d\tcpip.sys
[2012.03.30 12:35:47 | 001,918,320 | ---- | M] (Microsoft Corporation) MD5=ACB82BDA8F46C84F465C1AFA517DC4B9 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17802_none_114ceccb7cff740d\tcpip.sys
[2011.04.25 07:16:34 | 001,927,552 | ---- | M] (Microsoft Corporation) MD5=B77977AEB2FF159D01DB08A309989C5F -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21712_none_11cbb5de9625357a\tcpip.sys
[2011.06.21 07:27:14 | 001,896,832 | ---- | M] (Microsoft Corporation) MD5=B9D87C7707F058AC652A398CD28DE14B -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16839_none_0f4d1e3b7feb1307\tcpip.sys
[2012.10.03 18:44:29 | 001,902,472 | ---- | M] (Microsoft Corporation) MD5=D5707FC2300AA5B04B7BFE86D40C0133 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22124_none_11c2c45a962baed0\tcpip.sys
[2011.06.21 07:34:00 | 001,923,968 | ---- | M] (Microsoft Corporation) MD5=F0E98C00A09FDF791525829A1D14240F -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17638_none_11327af77d12659c\tcpip.sys
[2011.09.29 17:24:44 | 001,897,328 | ---- | M] (Microsoft Corporation) MD5=F18F56EFC0BFB9C87BA01C37B27F4DA5 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16889_none_0f170e9f80139ebc\tcpip.sys
[2012.08.22 19:12:50 | 001,913,200 | ---- | M] (Microsoft Corporation) MD5=F782CAD3CEDBB3F9FFE3BF2775D92DDC -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17939_none_113380f37d117668\tcpip.sys
[2011.09.29 17:29:28 | 001,923,952 | ---- | M] (Microsoft Corporation) MD5=FC62769E7BFF2896035AEED399108162 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17697_none_10f09b257d43f3eb\tcpip.sys

< MD5 for: USERINIT.EXE >
[2010.11.20 13:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\SysWOW64\userinit.exe
[2010.11.20 13:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2009.07.14 02:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe
[2009.07.14 02:39:48 | 000,030,208 | ---- | M] (Microsoft Corporation) MD5=6F8F1376A13114CC10C0E69274F5A4DE -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_381dabbceb60feb2\userinit.exe
[2010.11.20 14:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\SysNative\userinit.exe
[2010.11.20 14:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe

< MD5 for: WINLOGON.EXE >
[2010.11.20 14:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\SysNative\winlogon.exe
[2010.11.20 14:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
[2009.07.14 02:39:52 | 000,389,120 | ---- | M] (Microsoft Corporation) MD5=132328DF455B0028F13BF0ABEE51A63A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe
[2009.10.28 08:01:57 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=A93D41A4D4B0D91C072D11DD8AF266DE -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_cc522fd507b468f8\winlogon.exe
[2009.10.28 07:24:40 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_cbe534e7ee8042ad\winlogon.exe

< >

< %systemroot%*.* /U /s >
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[2 C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]
[1 C:\Windows\Installer\*.tmp files -> C:\Windows\Installer\*.tmp -> ]
[1 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ]
[1 C:\Windows\SysWOW64\*.tmp files -> C:\Windows\SysWOW64\*.tmp -> ]
[1 C:\Windows\temp\_avast_\*.tmp files -> C:\Windows\temp\_avast_\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >
[2012.11.29 13:18:07 | 027,437,289 | ---- | M] (Vyrobil Jan Trojak ) -- C:\xdaupdate.exe
[7 C:\*.tmp files -> C:\*.tmp -> ]

< %ALLUSERSPROFILE%\Application Data\*. >

< %ALLUSERSPROFILE%\Application Data\*.exe /s >

< %APPDATA%\*. >
[2013.01.14 10:52:11 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\602Installer
[2013.01.14 10:52:52 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\602XML
[2010.11.28 19:57:33 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\abgx360
[2011.12.16 21:59:11 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\AccurateRip
[2012.09.10 08:26:24 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Adobe
[2011.12.30 11:01:25 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Ahead
[2013.01.17 12:59:18 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\AIMP3
[2012.07.04 17:31:49 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\anpo.republika.pl
[2012.05.02 07:04:42 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\avidemux
[2012.02.04 17:08:31 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\BitSpirit
[2011.11.22 15:20:07 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Byngo
[2010.11.17 23:35:03 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Canneverbe Limited
[2011.11.22 15:20:07 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\CCPublisher
[2013.01.05 11:12:40 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\DisplayTune
[2012.01.17 14:51:46 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\DivX
[2012.01.05 19:02:44 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\DVD Flick
[2011.12.28 11:06:45 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\dvdcss
[2013.01.10 07:42:16 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Epson
[2012.08.10 11:01:55 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\EurekaLog
[2013.01.07 07:58:18 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\FitLinie
[2012.07.04 16:41:56 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\fltk.org
[2011.11.22 14:23:24 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\FotoWire
[2012.07.02 13:12:53 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\GARMIN
[2012.12.26 17:02:13 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\GeoGet
[2012.05.28 14:46:25 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\GetRightToGo
[2011.12.14 17:49:15 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\GHISLER
[2013.02.13 12:47:40 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\GRETECH
[2012.09.14 16:26:11 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\gsak
[2012.03.27 13:41:42 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\HDRsoft
[2011.11.23 10:17:16 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Identities
[2013.02.18 18:56:32 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\inkscape
[2011.11.22 14:49:37 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\InstallShield
[2012.06.29 02:54:01 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Intelli-studio
[2011.12.02 13:45:52 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\LangSoft
[2010.11.03 02:14:42 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Macromedia
[2011.12.02 13:59:07 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Manager for Skype
[2009.07.14 16:36:58 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Media Center Programs
[2012.12.13 15:09:01 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Media Player Classic
[2012.01.17 00:09:02 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\MediaMonkey
[2012.11.30 16:01:20 | 000,000,000 | --SD | M] -- C:\Users\TomSatr\AppData\Roaming\Microsoft
[2011.12.09 18:01:43 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\MixMeister Technology
[2012.08.10 07:26:03 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Mobile Atlas Creator
[2011.11.30 13:57:50 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Mozilla
[2013.02.09 17:05:01 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\NCdownloader
[2012.09.25 15:37:59 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\NCH Software
[2011.11.24 15:47:42 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\NCH Swift Sound
[2010.11.24 23:13:35 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Nero
[2011.11.30 13:57:50 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Netscape
[2012.11.23 09:00:46 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Nokia
[2013.02.13 12:58:53 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\NVIDIA
[2012.02.15 14:44:51 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Opera
[2012.01.18 13:03:02 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\PACE Anti-Piracy
[2012.11.23 08:59:20 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\PC Suite
[2011.11.30 13:51:45 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Photodex
[2012.08.24 08:59:16 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\POI-Spoiler
[2012.01.18 12:43:00 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Publish Providers
[2012.09.09 18:02:25 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Registry Mechanic
[2012.12.16 13:07:26 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Samsung
[2012.08.16 18:46:43 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Skype
[2011.08.17 22:07:26 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\skypePM
[2012.01.18 12:42:53 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Sony
[2012.01.18 13:04:09 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2012.03.12 18:26:05 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Stereoscopic Player
[2013.01.10 19:33:36 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\systweak
[2011.11.22 16:39:00 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Thunderbird
[2011.05.22 18:43:48 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\TomTom
[2012.03.13 18:49:02 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Trace Lighting
[2013.02.19 20:00:31 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\uTorrent
[2011.11.29 19:50:05 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\VitySoft
[2013.02.18 20:05:35 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\vlc
[2013.01.07 12:26:35 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Vso
[2010.11.16 22:57:25 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Windows Live Writer
[2010.11.06 23:06:29 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\WinRAR
[2012.08.24 11:27:42 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Winwaed Software Technology LLC
[2012.06.28 18:06:36 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Xilisoft
[2011.12.02 13:28:19 | 000,000,000 | ---D | M] -- C:\Users\TomSatr\AppData\Roaming\Zoner

< %APPDATA%\*.exe /s >
[2012.12.31 14:32:32 | 007,629,568 | ---- | M] (AIMP DevTeam) -- C:\Users\TomSatr\AppData\Roaming\AIMP3\UpdateInstaller.exe
[2012.12.09 16:57:02 | 006,770,500 | ---- | M] ( ) -- C:\Users\TomSatr\AppData\Roaming\GeoGet\ggupdate\geogetsetup-2.7.3.699.exe
[2013.01.15 08:45:37 | 000,044,040 | ---- | M] (NTWind Software) -- C:\Users\TomSatr\AppData\Roaming\GeoGet\script\aDrakeSync\hstart.exe
[2010.11.30 18:50:22 | 000,061,712 | ---- | M] (PortableApps.com) -- C:\Users\TomSatr\AppData\Roaming\GeoGet\script\aDrakeSync\Toucan\Toucan.exe
[2010.10.24 17:50:36 | 000,243,712 | ---- | M] (Igor Pavlov) -- C:\Users\TomSatr\AppData\Roaming\GeoGet\script\aDrakeSync\Toucan\App\Toucan\7za.exe
[2010.10.24 17:52:08 | 000,023,040 | ---- | M] () -- C:\Users\TomSatr\AppData\Roaming\GeoGet\script\aDrakeSync\Toucan\App\Toucan\ccrypt.exe
[2010.11.29 21:50:40 | 001,084,928 | ---- | M] () -- C:\Users\TomSatr\AppData\Roaming\GeoGet\script\aDrakeSync\Toucan\App\Toucan\toucan.exe
[2012.09.12 21:51:40 | 000,724,480 | ---- | M] () -- C:\Users\TomSatr\AppData\Roaming\GeoGet\script\geojarry\geojarryw.exe
[2012.01.29 19:10:38 | 008,059,771 | ---- | M] () -- C:\Users\TomSatr\AppData\Roaming\GeoGet\script\GgStat\GgStat.exe
[2007.03.22 11:46:42 | 000,126,976 | ---- | M] () -- C:\Users\TomSatr\AppData\Roaming\GRETECH\GomPlayer\GrLauncher.exe
[2012.10.09 07:53:36 | 000,135,856 | ---- | M] () -- C:\Users\TomSatr\AppData\Roaming\GRETECH\GOMVideoConverter\GrLauncher.exe
[2012.06.28 17:39:25 | 017,821,400 | ---- | M] () -- C:\Users\TomSatr\AppData\Roaming\Intelli-studio\iUpdate.exe
[2012.01.18 11:27:47 | 000,010,134 | R--- | M] () -- C:\Users\TomSatr\AppData\Roaming\Microsoft\Installer\{024521CF-C07E-4F8E-8481-0D75695E03AF}\ARPPRODUCTICON.exe
[2012.08.24 11:27:44 | 000,010,134 | R--- | M] () -- C:\Users\TomSatr\AppData\Roaming\Microsoft\Installer\{1D5C3A37-CA90-480A-9327-7BB22097A77B}\_67122496B1CA6F1D88415A.exe
[2012.08.24 11:27:44 | 000,010,134 | R--- | M] () -- C:\Users\TomSatr\AppData\Roaming\Microsoft\Installer\{1D5C3A37-CA90-480A-9327-7BB22097A77B}\_E3E08F7AEFF01AB8667A31.exe
[2012.08.24 11:27:43 | 000,010,134 | R--- | M] () -- C:\Users\TomSatr\AppData\Roaming\Microsoft\Installer\{1D5C3A37-CA90-480A-9327-7BB22097A77B}\_EF773C8291989D9AD51FAD.exe
[2011.12.09 16:27:08 | 000,000,766 | R--- | M] () -- C:\Users\TomSatr\AppData\Roaming\Microsoft\Installer\{50CBBEC7-1010-41C5-8718-A1A6FEDD9C3A}\ARPPRODUCTICON.exe
[2012.01.17 14:14:37 | 000,029,926 | R--- | M] () -- C:\Users\TomSatr\AppData\Roaming\Microsoft\Installer\{6DE721A5-5E89-4D74-994C-652BB3C0672E}\ARPPRODUCTICON.exe
[2012.11.12 11:45:14 | 000,968,120 | ---- | M] (Samsung) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\Kies.exe
[2012.11.12 11:45:16 | 000,298,424 | ---- | M] () -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\KiesAgent.exe
[2012.11.12 11:45:20 | 000,277,432 | ---- | M] () -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\KiesDriverInstaller.exe
[2012.11.12 11:45:18 | 000,309,688 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\KiesTrayAgent.exe
[2012.11.12 11:35:48 | 000,171,008 | ---- | M] (Mobileleader Co., Ltd.) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\External\DeviceModules\ConnectionManager.exe
[2012.11.12 11:38:30 | 000,332,800 | ---- | M] (Mobileleader Co., Ltd.) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\External\DeviceModules\DeviceDataService.exe
[2012.11.12 11:36:34 | 000,686,592 | ---- | M] (Mobileleader Co., Ltd.) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\External\DeviceModules\DeviceManager.exe
[2012.11.12 11:45:20 | 000,067,512 | ---- | M] (Samsung) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\External\DeviceModules\Kies_Tutorial.exe
[2012.11.12 11:45:26 | 000,063,416 | ---- | M] () -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\External\DeviceModules\RegisterCOM.exe
[2012.11.09 21:12:50 | 000,077,272 | ---- | M] (Samsung) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\External\FirmwareUpdate\AdminDelegator.exe
[2012.11.09 21:12:50 | 000,088,024 | ---- | M] (Samsung) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\External\FirmwareUpdate\AgentInstaller.exe
[2012.11.09 21:12:50 | 000,077,264 | ---- | M] (Samsung) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\External\FirmwareUpdate\AgentUpdate.exe
[2012.11.12 11:45:22 | 001,104,824 | ---- | M] (Samsung) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\External\FirmwareUpdate\KiesPDLR.exe
[2012.11.12 11:45:24 | 003,767,464 | ---- | M] (Freeware) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\External\MediaModules\MyFreeCodecPack.exe
[2012.11.12 11:45:26 | 000,601,528 | ---- | M] (ml) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\Updater\Kies.Update.exe
[2012.12.03 15:35:10 | 000,967,608 | ---- | M] (Samsung) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\Kies.exe
[2012.12.03 15:35:10 | 000,298,424 | ---- | M] () -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\KiesAgent.exe
[2012.12.03 15:35:14 | 000,277,432 | ---- | M] () -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\KiesDriverInstaller.exe
[2012.12.03 15:35:12 | 000,309,688 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\KiesTrayAgent.exe
[2012.12.03 15:24:52 | 000,171,008 | ---- | M] (Mobileleader Co., Ltd.) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\External\DeviceModules\ConnectionManager.exe
[2012.12.03 15:27:54 | 000,332,800 | ---- | M] (Mobileleader Co., Ltd.) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\External\DeviceModules\DeviceDataService.exe
[2012.12.03 15:25:48 | 000,689,152 | ---- | M] (Mobileleader Co., Ltd.) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\External\DeviceModules\DeviceManager.exe
[2012.12.03 15:35:14 | 000,067,512 | ---- | M] (Samsung) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\External\DeviceModules\Kies_Tutorial.exe
[2012.12.03 15:35:22 | 000,063,416 | ---- | M] () -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\External\DeviceModules\RegisterCOM.exe
[2012.11.28 10:46:40 | 000,060,888 | ---- | M] (Samsung) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\External\FirmwareUpdate\AdminDelegator.exe
[2012.11.28 10:46:40 | 000,088,024 | ---- | M] (Samsung) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\External\FirmwareUpdate\AgentInstaller.exe
[2012.11.28 10:46:40 | 000,077,264 | ---- | M] (Samsung) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\External\FirmwareUpdate\AgentUpdate.exe
[2012.12.03 15:35:18 | 000,843,704 | ---- | M] (Samsung) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\External\FirmwareUpdate\KiesPDLR.exe
[2012.12.03 15:35:20 | 003,767,464 | ---- | M] (Freeware) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\External\MediaModules\MyFreeCodecPack.exe
[2012.11.28 06:17:24 | 000,061,440 | ---- | M] ((주)마크애니) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\Program Files\MarkAny\ContentSafer\MaAgent.exe
[2012.11.28 06:17:24 | 000,032,768 | ---- | M] (MarkAny Co, Ltd) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\Program Files\MarkAny\ContentSafer\MaCSMgr.exe
[2012.11.28 06:17:24 | 000,065,536 | ---- | M] () -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\Program Files\MarkAny\ContentSafer\MAWebControl.exe
[2012.11.28 06:17:24 | 000,401,056 | ---- | M] (Marktek Inc.) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\Program Files\MarkAny\ContentSafer\MPXBox.exe
[2012.11.28 06:17:20 | 000,020,480 | ---- | M] ( ) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\Program Files\MarkAny\ContentSafer\UpdateClient\MAUpdate.exe
[2012.11.28 06:17:20 | 000,057,344 | ---- | M] ((주)마크애니) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\Program Files\MarkAny\ContentSafer\UpdateClient\MAUpdateBoot.exe
[2012.11.28 06:17:20 | 000,126,976 | ---- | M] ((주)마크애니) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\Program Files\MarkAny\ContentSafer\UpdateClient\MaUpdateClient.exe
[2012.12.03 15:35:20 | 000,601,528 | ---- | M] (ml) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\Updater\Kies.Update.exe
[2012.11.12 11:45:26 | 000,601,528 | ---- | M] (ml) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Temp\Kies.Update.exe
[2012.12.03 15:35:20 | 000,601,528 | ---- | M] (ml) -- C:\Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Updater\Kies.Update.exe
[2012.07.31 09:05:14 | 000,132,928 | ---- | M] (Add-in Express Ltd.) -- C:\Users\TomSatr\AppData\Roaming\Winwaed Software Technology LLC\MPMileCharter\adxregistrator.exe

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >
[1 C:\Windows\system32\*.tmp files -> C:\Windows\system32\*.tmp -> ]

< %systemroot%\Tasks\*.job >
[2013.02.19 19:58:13 | 000,000,914 | ---- | M] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job
[2013.02.17 12:18:02 | 000,000,256 | ---- | M] () -- C:\Windows\Tasks\Epson Printer Software Downloader.job
[2013.02.19 18:46:24 | 000,000,948 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2013.02.19 20:04:02 | 000,000,952 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
[2013.02.19 18:46:16 | 000,000,420 | -H-- | M] () -- C:\Windows\Tasks\schedule!3036567561.job

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >

< %systemroot%\system32\*.dll /lockedfiles >
[1 C:\Windows\system32\*.tmp files -> C:\Windows\system32\*.tmp -> ]

< %systemroot%\system32\drivers\*.sys /3 >

< %systemroot%\system32\*.* /3 >
[2013.02.18 18:57:14 | 000,691,568 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\system32\FlashPlayerApp.exe
[2013.02.18 18:57:13 | 000,071,024 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\system32\FlashPlayerCPLApp.cpl
[1 C:\Windows\system32\*.tmp files -> C:\Windows\system32\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >
[2012.11.29 13:18:07 | 027,437,289 | ---- | M] (Vyrobil Jan Trojak ) -- C:\xdaupdate.exe
[7 C:\*.tmp files -> C:\*.tmp -> ]

< >

< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"7F172F519EF36A003432FE3964427657773D38CE._service_run" = "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=service -- [2013.01.26 03:35:08 | 001,248,208 | ---- | M] (Google Inc.)
"LogitechSoftwareUpdate" = "C:\Program Files (x86)\Logitech\Video\ManifestEngine.exe" boot -- [2005.01.18 17:07:54 | 000,196,608 | ---- | M] (Logitech Inc.)

< >

< %PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5 >
[2013.02.07 08:34:36 | 000,917,400 | ---- | M] (Mozilla Corporation) MD5=58ED0528F2B1BFB3301BC10E0E707C35 -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
[89 C:\Program Files (x86)\Mozilla Firefox\*.tmp files -> C:\Program Files (x86)\Mozilla Firefox\*.tmp -> ]

< %PROGRAMFILES%\Internet Explorer\iexplore.exe /md5 >
[2012.11.14 03:56:04 | 000,757,296 | ---- | M] (Microsoft Corporation) MD5=0D286C0FE561D1A7EB30E83A0FF305B2 -- C:\Program Files (x86)\Internet Explorer\iexplore.exe

< %PROGRAMFILES%\Opera\opera.exe /md5 >
[2012.12.24 16:40:25 | 000,879,080 | ---- | M] (Opera Software) MD5=3A783497492D685E5F8D61FE06F4FE5A -- C:\Program Files (x86)\Opera\opera.exe

< %PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5 >
[2013.01.26 03:35:08 | 001,248,208 | ---- | M] (Google Inc.) MD5=0654E4C1F597FC07D6FC7443D4F94840 -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

< >

< %SystemDrive%\PhysicalMBR.bin /md5 >
[2013.02.19 19:39:12 | 000,000,512 | ---- | M] () MD5=533F88DC6A7355CB44F06817EADA1AC4 -- C:\PhysicalMBR.bin
[7 C:\*.tmp files -> C:\*.tmp -> ]

< >

< *crack* /s >
[2012.02.13 15:41:47 | 000,001,572 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Photoshop CS5\Presets\Actions\cracked tile.atn
[2012.02.13 09:14:47 | 000,010,603 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Photoshop CS5\Presets\Actions\Cracked_Text.atn
[2012.02.13 17:53:00 | 000,004,413 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Photoshop CS5\Presets\Actions\Crackle_bevel_2.ATN
[2012.02.13 11:25:25 | 000,100,405 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Photoshop CS5\Presets\Brushes\crack3.ABR
[2012.02.13 19:00:55 | 004,873,298 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Photoshop CS5\Presets\Brushes\cracksandwalls.abr
[2012.02.13 16:45:05 | 001,122,302 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Photoshop CS5\Presets\Brushes\Fractal_Brushes_Set1_IceCrack.abr
[2012.02.13 11:49:23 | 000,971,086 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Photoshop CS5\Presets\Brushes\H_Textrued_Cracks.abr
[2012.02.13 19:01:57 | 031,236,060 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Photoshop CS5\Presets\Brushes\rons__cracks II.abr
[2011.11.17 20:19:48 | 000,052,736 | ---- | M] () -- \Program Files (x86)\BurnAware Professional\admincrack.dll
[2010.02.21 01:22:00 | 000,000,386 | ---- | M] () -- \Program Files (x86)\GeoGet\distdata\offline\sysimg\WM\Cracker_Barrel_Restaurants.gif
[2012.06.17 12:12:04 | 000,010,240 | ---- | M] () -- \Program Files (x86)\Illustrate\dBpowerAMP\Crack.exe
[2010.05.29 21:41:56 | 000,114,899 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\numpy\f2py\crackfortran.py
[2011.03.23 19:03:20 | 000,823,680 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CS5.5\Plug-ins\en_US\VSTPlugins\DeCrackler1.dll
[2011.03.23 19:03:22 | 000,823,680 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CS5.5\Plug-ins\en_US\VSTPlugins\DeCrackler2.dll
[2011.03.23 19:03:26 | 000,823,680 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CS5.5\Plug-ins\en_US\VSTPlugins\DeCrackler6.dll
[2012.05.05 14:38:42 | 000,062,238 | ---- | M] () -- \Program Files\GIMP 2\share\gimp\2.0\patterns\cracked.pat
[2012.01.18 10:15:37 | 000,001,100 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\RAR Password Cracker\RAR Password Cracker Registration.lnk
[2012.01.18 10:15:37 | 000,001,090 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\RAR Password Cracker\RAR Password Cracker Wizard.lnk
[2012.01.18 10:15:37 | 000,001,096 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\RAR Password Cracker\RAR Password Cracker.lnk
[2013.01.09 11:26:10 | 000,001,398 | ---- | M] () -- \STAHOVÁN\HDD Low Level Format Tool 4.25 Pro Premier Crack+Instructions.1.torrent
[2013.01.08 15:56:33 | 1534,256,278 | ---- | M] () -- \STAHOVÁN\Modern Combat 4 Zero Hour (v1.0.0)-CrackLords-Black_Hawk-2.ipa
[2013.01.08 15:27:39 | 000,029,738 | ---- | M] () -- \STAHOVÁN\Modern Combat 4 Zero Hour (v1.0.0)-CrackLords-Black_Hawk-2.ipa.1.torrent
[2012.11.20 21:19:50 | 017,681,321 | ---- | M] () -- \STAHOVÁN\ANDROID\Aplikace android\NAVIGON Europe v4.5.0 Full Cracked Final By bobiras2009.apk
[2012.11.20 21:21:10 | 005,739,480 | ---- | M] () -- \STAHOVÁN\ANDROID\Aplikace android\Titanium Backup Pro 5.5.2.1 Final Crack Full By bobiras209.apk
[2013.01.07 16:15:07 | 003,587,005 | ---- | M] () -- \STAHOVÁN\Modern Combat 1+2 all versions - Android\Modern Combat 2 Black Pegasus HD\Modern Combat 2 Black Pegasus HD v1.0.0\Modern_Combat_2_Black_Pegasus_HD_Sony_Ericsson_Xperia_Play_R800x_android_v1.0.0_Cracked_Twingo.apk
[2013.01.07 16:14:50 | 003,893,470 | ---- | M] () -- \STAHOVÁN\Modern Combat 1+2 all versions - Android\Modern Combat 2 Black Pegasus HD\Modern Combat 2 Black Pegasus HD v1.0.1\Modern_Combat_2_Black_Pegasus_HD_Samsung_GTi9103_1.0.1_Cracked_tag3r.apk
[2013.01.07 16:14:57 | 005,498,047 | ---- | M] () -- \STAHOVÁN\Modern Combat 1+2 all versions - Android\Modern Combat 2 Black Pegasus HD\Modern Combat 2 Black Pegasus HD v1.0.2\ModernCombat2BlackPegasusTnB_v1.0.2_Cracked_Twingo.apk
[2013.01.07 16:15:02 | 005,844,696 | ---- | M] () -- \STAHOVÁN\Modern Combat 1+2 all versions - Android\Modern Combat 2 Black Pegasus HD\Modern Combat 2 Black Pegasus HD v1.0.2\Modern_Combat_2_Black_Pegasus_HD_Samsung_Galaxy_S_GT-i9000_(Samsung_Appstore_14_July_2011)_v1.0.2_Cracked_Twingo.apk
[2013.01.07 16:15:15 | 005,528,513 | ---- | M] () -- \STAHOVÁN\Modern Combat 1+2 all versions - Android\Modern Combat 2 Black Pegasus HD\Modern Combat 2 Black Pegasus HD v1.0.2\Modern_Combat_2_Black_Pegasus_HD_TnB_Samsung_GTi9101_Galaxy_S_II_android_v1.0.2_Cracked_Twingo.apk
[2013.01.07 16:15:03 | 005,778,187 | ---- | M] () -- \STAHOVÁN\Modern Combat 1+2 all versions - Android\Modern Combat 2 Black Pegasus HD\Modern Combat 2 Black Pegasus HD v1.0.3\Modern_Combat_2_Black_Pegasus_HD_Samsung_Galaxy_S_GT-i9000_(Samsung_Appstore_18_August_2011)_v1.0.3_Cracked_Twingo.apk
[2013.01.07 16:14:54 | 005,770,468 | ---- | M] () -- \STAHOVÁN\Modern Combat 1+2 all versions - Android\Modern Combat 2 Black Pegasus HD\Modern Combat 2 Black Pegasus HD v1.0.4\Modern_Combat_2_Black_Pegasus_HD_TnB_Samsung_GTi9103_android_v1.0.4_Cracked_Twingo.apk
[2013.01.07 16:15:09 | 007,021,706 | ---- | M] () -- \STAHOVÁN\Modern Combat 1+2 all versions - Android\Modern Combat 2 Black Pegasus HD\Modern Combat 2 Black Pegasus HD v1.0.5\Modern_Combat_2_Black_Pegasus_HD_Samsung_Galaxy_Tab_1.0.5_Cracked_tag3r.apk
[2013.01.07 16:14:55 | 003,933,438 | ---- | M] () -- \STAHOVÁN\Modern Combat 1+2 all versions - Android\Modern Combat 2 Black Pegasus HD\Modern Combat 2 Black Pegasus HD v3.0.4\Modern_Combat_2_Black_Pegasus_HD_LG_P990_Optimus_2x_Star_Dop_android_v3.0.4_Cracked_Twingo.apk
[2013.01.07 16:15:02 | 004,069,455 | ---- | M] () -- \STAHOVÁN\Modern Combat 1+2 all versions - Android\Modern Combat 2 Black Pegasus HD\Modern Combat 2 Black Pegasus HD v3.0.4\Modern_Combat_2_Black_Pegasus_HD_Motorola_MB860_Atrix_4G_android_Cracked_Twingo.apk
[2013.01.07 16:15:01 | 003,912,508 | ---- | M] () -- \STAHOVÁN\Modern Combat 1+2 all versions - Android\Modern Combat 2 Black Pegasus HD\Modern Combat 2 Black Pegasus HD v3.1.4\Modern_Combat_2_Black_Pegasus_HD_Kyocera_M9330_Echo_Cracked_tag3r.apk
[2013.01.07 16:15:15 | 004,092,060 | ---- | M] () -- \STAHOVÁN\Modern Combat 1+2 all versions - Android\Modern Combat 2 Black Pegasus HD\Modern Combat 2 Black Pegasus HD v3.3.0\Modern_Combat_2_Black_Pegasus_HD_Samsung_GTi9000_Galaxy_S_android_Cracked_Twingo.apk
[2013.01.07 16:14:52 | 004,126,012 | ---- | M] () -- \STAHOVÁN\Modern Combat 1+2 all versions - Android\Modern Combat 2 Black Pegasus HD\Modern Combat 2 Black Pegasus HD v3.3.2\Modern_Combat_2_Black_Pegasus_HD_HTC_Desire_HD_android_Cracked_Twingo.apk
[2013.01.07 16:15:01 | 004,157,454 | ---- | M] () -- \STAHOVÁN\Modern Combat 1+2 all versions - Android\Modern Combat 2 Black Pegasus HD\Modern Combat 2 Black Pegasus HD v3.3.2\Modern_Combat_2_Black_Pegasus_HD_Motorola_A955_Droid_2_android_Cracked_Twingo.apk
[2013.01.07 16:14:56 | 004,137,148 | ---- | M] () -- \STAHOVÁN\Modern Combat 1+2 all versions - Android\Modern Combat 2 Black Pegasus HD\Modern Combat 2 Black Pegasus HD v3.3.7\Modern_Combat_2_Black_Pegasus_HD_HTC_Desire_HD_Android_v3.3.7_Cracked_Twingo.apk
[2013.01.07 16:14:53 | 004,137,507 | ---- | M] () -- \STAHOVÁN\Modern Combat 1+2 all versions - Android\Modern Combat 2 Black Pegasus HD\Modern Combat 2 Black Pegasus HD v3.3.8\Modern_Combat_2_Black_Pegasus_HD_HTC_Desire_HD_android_v3.3.8_Cracked_Twingo.apk
[2013.01.07 16:14:21 | 003,746,700 | ---- | M] () -- \STAHOVÁN\Modern Combat 1+2 all versions - Android\Modern Combat 2 Black Pegasus HD\Modern Combat 2 Black Pegasus HD v3.3.9\Modern_Combat_2_Black_Pegasus_HD_Sony_Ericsson_Xperia_Play_android_v3.3.9_Cracked_Twingo.apk
[2013.01.07 16:15:02 | 003,684,326 | ---- | M] () -- \STAHOVÁN\Modern Combat 1+2 all versions - Android\Modern Combat Sandstorm HD\Modern Combat Sandstorm HD v3.0.6\Modern_Combat_Sandstorm_HD_Samsung_SGHi897_Captivate_android_v3.0.6_Cracked_Twingo.apk
[2013.01.07 16:15:04 | 003,696,004 | ---- | M] () -- \STAHOVÁN\Modern Combat 1+2 all versions - Android\Modern Combat Sandstorm HD\Modern Combat Sandstorm HD v3.0.8\Modern_Combat_Sandstorm_HD_LG_P990_Optimus_2x_Star_Dop_android_v3.0.8_Cracked_Twingo.apk
[2013.01.07 16:15:16 | 005,523,721 | ---- | M] () -- \STAHOVÁN\Modern Combat 1+2 all versions - Android\Modern Combat Sandstorm HD\Modern Combat Sandstorm HD v3.1.0\Modern_Combat_Sandstorm_HD_Samsung_SGHi987_android_v3.1.0_Cracked_Twingo.apk
[2013.01.07 16:15:00 | 004,020,543 | ---- | M] () -- \STAHOVÁN\Modern Combat 1+2 all versions - Android\Modern Combat Sandstorm HD\Modern Combat Sandstorm HD v3.4.2\Modern_Combat_Sandstorm_HD_Samsung_GTi9000_Galaxy_S_android_Cracked_Twingo.apk
[2012.01.18 10:15:37 | 000,001,100 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\RAR Password Cracker\RAR Password Cracker Registration.lnk
[2012.01.18 10:15:37 | 000,001,090 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\RAR Password Cracker\RAR Password Cracker Wizard.lnk
[2012.01.18 10:15:37 | 000,001,096 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\RAR Password Cracker\RAR Password Cracker.lnk
[2010.02.21 01:22:00 | 000,000,386 | ---- | M] () -- \Users\TomSatr\AppData\Roaming\GeoGet\offline\sysimg\WM\Cracker_Barrel_Restaurants.gif
[2013.02.09 16:09:29 | 000,000,704 | ---- | M] () -- \Users\TomSatr\AppData\Roaming\Microsoft\Windows\Recent\FaceNiff-1.9.2-cracked.apk.lnk
[2013.02.12 08:55:45 | 000,000,724 | ---- | M] () -- \Users\TomSatr\AppData\Roaming\Microsoft\Windows\Recent\Google Earth Pro 6.0.0.1735 (GPS + 3D Support) Cracked Ultimate.lnk
[2013.02.12 09:08:37 | 000,000,736 | ---- | M] () -- \Users\TomSatr\AppData\Roaming\Microsoft\Windows\Recent\Google Earth Pro 6.0.0.1735 (GPS + 3D Support) Cracked version 2k12.lnk
[2012.01.18 10:23:03 | 000,001,118 | ---- | M] () -- \Users\TomSatr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RAR Password Cracker\RAR Password Cracker Registration.lnk
[2012.01.18 10:23:03 | 000,001,108 | ---- | M] () -- \Users\TomSatr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RAR Password Cracker\RAR Password Cracker Wizard.lnk
[2012.01.18 10:23:03 | 000,001,114 | ---- | M] () -- \Users\TomSatr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RAR Password Cracker\RAR Password Cracker.lnk
[2013.02.09 16:09:29 | 000,967,098 | ---- | M] () -- \Users\TomSatr\Downloads\FaceNiff-1.9.2-cracked.apk
[2013.02.09 15:57:20 | 000,312,448 | ---- | M] () -- \Users\TomSatr\Downloads\faceniff-apk-24-cracked-passwords-un.exe
[2013.02.12 08:54:59 | 000,005,695 | ---- | M] () -- \Users\TomSatr\Downloads\[isoHunt] Google Earth Pro 6.0.0.1735 (GPS 3D Support) Cracked Ultimate.torrent
[2013.02.12 09:04:49 | 000,005,772 | ---- | M] () -- \Users\TomSatr\Downloads\[isoHunt] Google Earth Pro 6.0.0.1735 (GPS 3D Support) Cracked version 2k12.torrent

< *keygen* /s >
[2007.03.21 12:41:41 | 000,126,820 | ---- | M] () -- \STAHOVÁN\Nero 7 Premium 7.8.5.0 CZ\Keygen Nero 7.x.x.x\Nero.7.x.x.x.KeyGen.Only.rar
[2013.01.16 10:05:46 | 000,362,027 | ---- | M] () -- \STAHOVÁN\SiSoftware Sandra 2012 Pro Business v.2012.01.18.10 [h33t.com] Full\Keygen-CORE\SiSoftware.Sandra.2012.Keygen-CORE.rar

< *loader* /s >
[2011.03.02 21:35:42 | 005,299,048 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\Photodownloader.exe
[2011.03.02 18:57:10 | 000,011,161 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\bitmaps\main_window\C_LoadError.png
[2011.03.02 18:57:10 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\locales\da_dk\Photodownloader.ini
[2011.03.02 18:57:10 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\locales\de_de\Photodownloader.ini
[2011.03.02 18:57:10 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\locales\en_us\Photodownloader.ini
[2011.03.02 18:57:10 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\locales\es_es\Photodownloader.ini
[2011.03.02 18:57:10 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\locales\fi_fi\Photodownloader.ini
[2011.03.02 18:57:12 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\locales\fr_fr\Photodownloader.ini
[2011.03.02 18:57:12 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\locales\it_it\Photodownloader.ini
[2011.03.02 18:57:12 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\locales\ja_jp\Photodownloader.ini
[2011.03.02 18:57:12 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\locales\ko_kr\Photodownloader.ini
[2011.03.02 18:57:12 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\locales\nl_nl\Photodownloader.ini
[2011.03.02 18:57:12 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\locales\no_no\Photodownloader.ini
[2011.03.02 18:57:12 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\locales\pt_br\Photodownloader.ini
[2011.03.02 18:57:12 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\locales\sv_se\Photodownloader.ini
[2011.03.02 18:57:14 | 000,000,308 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\locales\zh_cn\Photodownloader.ini
[2011.03.02 18:57:14 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5.1\apd\shared_assets\locales\zh_tw\Photodownloader.ini
[2010.03.09 04:28:40 | 005,297,608 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\Photodownloader.exe
[2010.03.09 01:38:58 | 000,011,161 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\bitmaps\main_window\C_LoadError.png
[2010.03.09 01:38:58 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\da_dk\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\de_de\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\en_us\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\es_es\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\fi_fi\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\fr_fr\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\it_it\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\ja_jp\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\ko_kr\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\nl_nl\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\no_no\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\pt_br\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\sv_se\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,308 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\zh_cn\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\zh_tw\Photodownloader.ini
[2011.03.18 18:08:46 | 000,082,592 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Encore CS5.1\MXF_SDK_MetaMetadata_BinaryLoader_4.3.4.dll
[2011.03.18 18:08:48 | 000,148,640 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Encore CS5.1\MXF_SDK_MetaMetadata_XSDLoader2_4.3.4.dll
[2011.03.18 18:08:48 | 000,115,360 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Encore CS5.1\MXF_SDK_MetaMetadata_XSDLoader_4.3.4.dll
[2011.03.18 06:06:00 | 000,301,976 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe OnLocation CS5.1\MXF_SDK_MetaMetadata_BinaryLoader_r.4.2.2.319.dll
[2007.03.12 13:48:46 | 000,177,712 | ---- | M] () -- \Program Files (x86)\Common Files\Ahead\Lib\NeGuideStoreLoader.dll
[2006.10.26 13:40:34 | 000,057,344 | ---- | M] () -- \Program Files (x86)\Common Files\microsoft shared\VS7DEBUG\coloader.dll
[2006.10.26 13:40:34 | 000,005,120 | ---- | M] () -- \Program Files (x86)\Common Files\microsoft shared\VS7DEBUG\coloader.tlb
[2007.10.23 17:52:22 | 000,114,688 | ---- | M] () -- \Program Files (x86)\Epson Software\Easy Photo Print\APFLoaderV13.dll
[2007.10.23 17:52:22 | 000,069,632 | ---- | M] () -- \Program Files (x86)\Epson Software\Easy Photo Print\EpAPFLoader.dll
[2007.10.23 17:52:22 | 000,102,400 | ---- | M] () -- \Program Files (x86)\Epson Software\Easy Photo Print\EpAPFLoader2006.dll
[2012.01.23 12:40:08 | 011,631,976 | ---- | M] () -- \Program Files (x86)\Garmin\POI Loader\POI Loader.exe
[2012.01.23 12:40:16 | 000,092,008 | ---- | M] () -- \Program Files (x86)\Garmin\POI Loader\POI LoaderCHS.dll
[2012.01.23 12:40:20 | 000,093,032 | ---- | M] () -- \Program Files (x86)\Garmin\POI Loader\POI LoaderCHT.dll
[2012.01.23 12:40:24 | 000,170,856 | ---- | M] () -- \Program Files (x86)\Garmin\POI Loader\POI LoaderCSY.dll
[2012.01.23 12:40:26 | 000,165,736 | ---- | M] () -- \Program Files (x86)\Garmin\POI Loader\POI LoaderDAN.dll
[2012.01.23 12:40:28 | 000,187,240 | ---- | M] () -- \Program Files (x86)\Garmin\POI Loader\POI LoaderDEU.dll
[2012.01.23 12:40:30 | 000,189,288 | ---- | M] () -- \Program Files (x86)\Garmin\POI Loader\POI LoaderELL.dll
[2012.01.23 12:40:32 | 000,180,584 | ---- | M] () -- \Program Files (x86)\Garmin\POI Loader\POI LoaderESP.dll
[2012.01.23 12:40:34 | 000,166,760 | ---- | M] () -- \Program Files (x86)\Garmin\POI Loader\POI LoaderFIN.dll
[2012.01.23 12:40:38 | 000,184,168 | ---- | M] () -- \Program Files (x86)\Garmin\POI Loader\POI LoaderFRA.dll
[2012.01.23 12:40:40 | 000,173,928 | ---- | M] () -- \Program Files (x86)\Garmin\POI Loader\POI LoaderHRV.dll
[2012.01.23 12:40:42 | 000,175,464 | ---- | M] () -- \Program Files (x86)\Garmin\POI Loader\POI LoaderHUN.dll
[2012.01.23 12:40:44 | 000,183,656 | ---- | M] () -- \Program Files (x86)\Garmin\POI Loader\POI LoaderITA.dll
[2012.01.23 12:40:44 | 000,109,928 | ---- | M] () -- \Program Files (x86)\Garmin\POI Loader\POI LoaderJPN.dll
[2012.01.23 12:40:48 | 000,108,392 | ---- | M] () -- \Program Files (x86)\Garmin\POI Loader\POI LoaderKOR.dll
[2012.01.23 12:40:48 | 000,173,928 | ---- | M] () -- \Program Files (x86)\Garmin\POI Loader\POI LoaderNLD.dll
[2012.01.23 12:40:50 | 000,164,200 | ---- | M] () -- \Program Files (x86)\Garmin\POI Loader\POI LoaderNOR.dll
[2012.01.23 12:40:52 | 000,175,976 | ---- | M] () -- \Program Files (x86)\Garmin\POI Loader\POI LoaderPLK.dll
[2012.01.23 12:40:54 | 000,173,928 | ---- | M] () -- \Program Files (x86)\Garmin\POI Loader\POI LoaderPTB.dll
[2012.01.23 12:40:54 | 000,179,560 | ---- | M] () -- \Program Files (x86)\Garmin\POI Loader\POI LoaderPTG.dll
[2012.01.23 12:40:56 | 000,176,488 | ---- | M] () -- \Program Files (x86)\Garmin\POI Loader\POI LoaderRUS.dll
[2012.01.23 12:40:58 | 000,173,928 | ---- | M] () -- \Program Files (x86)\Garmin\POI Loader\POI LoaderSKY.dll
[2012.01.23 12:41:00 | 000,169,832 | ---- | M] () -- \Program Files (x86)\Garmin\POI Loader\POI LoaderSLV.dll
[2012.01.23 12:41:02 | 000,162,664 | ---- | M] () -- \Program Files (x86)\Garmin\POI Loader\POI LoaderSVE.dll
[2012.01.23 12:41:04 | 000,162,664 | ---- | M] () -- \Program Files (x86)\Garmin\POI Loader\POI LoaderTRK.dll
[2007.03.23 14:36:56 | 000,066,694 | ---- | M] () -- \Program Files (x86)\Garmin\POI Loader\POILoader.chm
[2010.03.06 09:24:56 | 000,003,614 | ---- | M] () -- \Program Files (x86)\Inkscape\etc\gtk-2.0\gdk-pixbuf.loaders
[2010.03.06 09:24:56 | 000,030,804 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ani.dll
[2010.03.06 09:24:56 | 000,027,898 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-bmp.dll
[2010.03.06 09:24:56 | 000,042,058 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-gif.dll
[2010.03.06 09:24:56 | 000,023,145 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-icns.dll
[2010.03.06 09:24:56 | 000,028,692 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ico.dll
[2010.03.06 09:24:56 | 000,034,496 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-jpeg.dll
[2010.03.06 09:24:56 | 000,022,435 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-pcx.dll
[2010.03.06 09:24:56 | 000,036,528 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-png.dll
[2010.03.06 09:24:56 | 000,026,252 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-pnm.dll
[2010.03.06 09:24:56 | 000,020,063 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ras.dll
[2010.03.06 09:24:56 | 000,024,412 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-tga.dll
[2010.03.06 09:24:56 | 000,029,401 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-tiff.dll
[2010.03.06 09:24:56 | 000,019,399 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-wbmp.dll
[2010.03.06 09:24:56 | 000,025,270 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-xbm.dll
[2010.03.06 09:24:56 | 000,042,114 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-xpm.dll
[2010.03.06 09:24:56 | 000,018,909 | ---- | M] () -- \Program Files (x86)\Inkscape\lib\gtk-2.0\2.10.0\loaders\svg_loader.dll
[2010.08.16 10:41:40 | 000,032,958 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\ailoader.py
[2010.08.16 10:41:40 | 000,001,847 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\bziploader.py
[2010.08.16 10:41:40 | 000,057,685 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\ccxloader.py
[2010.08.16 10:41:40 | 000,029,336 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\cdrloader.py
[2013.02.14 14:43:46 | 000,030,071 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\cdrloader.pyc
[2010.08.16 10:41:40 | 000,001,341 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\cdrziploader.py
[2010.08.16 10:41:40 | 000,028,643 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\cgmloader.py
[2010.08.16 10:41:40 | 000,055,918 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\cmxloader.py
[2010.08.16 10:41:40 | 000,038,308 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\dxfloader.py
[2010.08.16 10:41:40 | 000,001,949 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\gziploader.py
[2010.08.16 10:41:40 | 000,007,779 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\pltloader.py
[2010.08.16 10:41:40 | 000,017,301 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\sk1loader.py
[2010.08.16 10:41:40 | 000,015,416 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\skloader.py
[2010.08.16 10:41:40 | 000,015,832 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\stitchloader.py
[2010.08.16 10:41:40 | 000,038,937 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\svgloader.py
[2010.08.16 10:41:40 | 000,014,300 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\wmfloader.py
[2010.08.16 10:41:40 | 000,017,550 | ---- | M] () -- \Program Files (x86)\Inkscape\python\Lib\site-packages\sk1libs\filters\import\xfigloader.py
[2008.01.16 19:35:50 | 000,004,608 | ---- | M] () -- \Program Files (x86)\Mio Technology\MioMore Desktop\AxInterop.POILOADER_OCXLib.dll
[2008.01.16 19:35:52 | 000,024,576 | ---- | M] () -- \Program Files (x86)\Mio Technology\MioMore Desktop\back_POILoader.dll
[2008.01.16 19:35:50 | 000,005,632 | ---- | M] () -- \Program Files (x86)\Mio Technology\MioMore Desktop\Interop.POILOADER_OCXLib.dll
[2008.03.13 19:55:42 | 000,000,458 | ---- | M] () -- \Program Files (x86)\Mio Technology\MioMore Desktop\Loader.ini
[2008.02.20 14:01:32 | 000,000,435 | ---- | M] () -- \Program Files (x86)\Mio Technology\MioMore Desktop\Loader.ini.bak
[2008.03.07 18:51:36 | 000,024,576 | ---- | M] () -- \Program Files (x86)\Mio Technology\MioMore Desktop\POILoader.dll
[2008.03.17 14:14:02 | 000,094,208 | ---- | M] () -- \Program Files (x86)\Mio Technology\MioMore Desktop\POILoaderDataOper.dll
[2008.03.19 17:37:46 | 000,049,152 | ---- | M] () -- \Program Files (x86)\Mio Technology\MioMore Desktop\POILoaderPanel.dll
[2008.03.14 16:30:22 | 000,000,448 | ---- | M] () -- \Program Files (x86)\Mio Technology\MioMore Desktop\POILoader_Cfg.xml
[2008.02.19 15:32:26 | 000,909,312 | ---- | M] () -- \Program Files (x86)\Mio Technology\MioMore Desktop\POILoader_OCX.ocx
[2007.12.27 08:42:46 | 000,001,936 | ---- | M] () -- \Program Files (x86)\Mio Technology\MioMore Desktop\POILoader_OCX.tlb
[2 \Program Files (x86)\Mio Technology\MioMore Desktop\*.tmp files -> \Program Files (x86)\Mio Technology\MioMore Desktop\*.tmp -> ]
[2008.03.04 18:41:40 | 000,032,768 | ---- | M] () -- \Program Files (x86)\Mio Technology\MioMore Desktop\Language\POILoader.exe.0405.MUI
[2008.03.04 18:41:40 | 000,032,768 | ---- | M] () -- \Program Files (x86)\Mio Technology\MioMore Desktop\Language\POILoader.exe.040E.MUI
[2008.03.04 18:41:40 | 000,032,768 | ---- | M] () -- \Program Files (x86)\Mio Technology\MioMore Desktop\Language\POILoader.exe.0415.MUI
[2008.03.04 18:41:40 | 000,032,768 | ---- | M] () -- \Program Files (x86)\Mio Technology\MioMore Desktop\Language\POILoader.exe.0418.MUI
[2008.03.04 18:41:40 | 000,032,768 | ---- | M] () -- \Program Files (x86)\Mio Technology\MioMore Desktop\Language\POILoader.exe.0419.MUI
[2008.03.04 18:41:40 | 000,032,768 | ---- | M] () -- \Program Files (x86)\Mio Technology\MioMore Desktop\Language\POILoader.exe.041B.MUI
[2008.03.04 18:41:40 | 000,032,768 | ---- | M] () -- \Program Files (x86)\Mio Technology\MioMore Desktop\Language\POILoader.exe.041F.MUI
[2008.03.04 18:41:40 | 000,032,768 | ---- | M] () -- \Program Files (x86)\Mio Technology\MioMore Desktop\Language\POILoader.exe.0809.MUI
[2012.11.28 10:54:58 | 000,069,120 | ---- | M] () -- \Program Files (x86)\Samsung\Kies\Common\Kies.Common.DeviceServiceLib.FirmwareUpdate.Downloader.dll
[2011.10.20 07:59:58 | 000,127,640 | ---- | M] () -- \Program Files (x86)\Seagate\SeaTools for Windows\LoaderATA.xss
[2011.10.20 07:22:14 | 000,111,264 | ---- | M] () -- \Program Files (x86)\Seagate\SeaTools for Windows\LoaderSCSI.xss
[2011.10.20 08:00:02 | 000,046,944 | ---- | M] () -- \Program Files (x86)\Seagate\SeaTools for Windows\LoaderUSB.xss
[2008.02.25 07:05:22 | 000,856,064 | ---- | M] () -- \Program Files (x86)\The KMPlayer\ImLoader.dll
[2008.06.20 19:13:32 | 000,044,032 | ---- | M] () -- \Program Files (x86)\WinRAR\RarExtLoader.exe
[2012.06.25 10:01:22 | 000,193,536 | ---- | M] () -- \Program Files (x86)\Xilisoft\Video Converter Ultimate\medialoader0.dll
[2012.06.25 10:00:48 | 001,498,112 | ---- | M] () -- \Program Files (x86)\Xilisoft\Video Converter Ultimate\vcloader.exe
[2012.06.25 10:01:22 | 000,000,665 | ---- | M] () -- \Program Files (x86)\Xilisoft\Video Converter Ultimate\language\medialoader_br.qm
[2012.06.25 10:01:22 | 000,000,629 | ---- | M] () -- \Program Files (x86)\Xilisoft\Video Converter Ultimate\language\medialoader_de.qm
[2012.06.25 10:01:22 | 000,000,023 | ---- | M] () -- \Program Files (x86)\Xilisoft\Video Converter Ultimate\language\medialoader_en_US.qm
[2012.06.25 10:01:22 | 000,000,627 | ---- | M] () -- \Program Files (x86)\Xilisoft\Video Converter Ultimate\language\medialoader_es.qm
[2012.06.25 10:01:22 | 000,000,669 | ---- | M] () -- \Program Files (x86)\Xilisoft\Video Converter Ultimate\language\medialoader_fr.qm
[2012.06.25 10:01:22 | 000,000,629 | ---- | M] () -- \Program Files (x86)\Xilisoft\Video Converter Ultimate\language\medialoader_it.qm
[2012.06.25 10:01:22 | 000,000,535 | ---- | M] () -- \Program Files (x86)\Xilisoft\Video Converter Ultimate\language\medialoader_ja.qm
[2012.06.25 10:01:22 | 000,000,483 | ---- | M] () -- \Program Files (x86)\Xilisoft\Video Converter Ultimate\language\medialoader_zh_CN.qm
[2012.06.25 10:01:22 | 000,000,489 | ---- | M] () -- \Program Files (x86)\Xilisoft\Video Converter Ultimate\language\medialoader_zh_TW.qm
[2012.06.25 10:02:42 | 000,005,932 | ---- | M] () -- \Program Files (x86)\Xilisoft\Video Converter Ultimate\plugins\loader.avsi
[2011.03.15 11:23:50 | 000,105,984 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CS5.5\MXF_SDK_MetaMetadata_BinaryLoader_4.3.4.dll
[2011.03.15 11:23:50 | 000,196,608 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CS5.5\MXF_SDK_MetaMetadata_XSDLoader2_4.3.4.dll
[2011.03.15 11:23:50 | 000,144,896 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CS5.5\MXF_SDK_MetaMetadata_XSDLoader_4.3.4.dll
[2011.03.23 14:50:20 | 000,105,984 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CS5.5\MXF_SDK_MetaMetadata_BinaryLoader_4.3.4.dll
[2011.03.23 14:50:20 | 000,196,608 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CS5.5\MXF_SDK_MetaMetadata_XSDLoader2_4.3.4.dll
[2011.03.23 14:50:20 | 000,144,896 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CS5.5\MXF_SDK_MetaMetadata_XSDLoader_4.3.4.dll
[2011.03.08 08:43:28 | 000,013,734 | ---- | M] () -- \Program Files\GIMP 2\Python\Lib\unittest\loader.py
[2013.01.07 13:54:41 | 003,128,320 | ---- | M] () -- \Program Files\Wondershare\YouTube Downloader\YouTubeDownloader.exe
[2013.01.07 13:54:45 | 000,000,080 | ---- | M] () -- \Program Files\Wondershare\YouTube Downloader\YouTubeDownloader.url
[2013.01.07 13:54:45 | 000,000,093 | ---- | M] () -- \Program Files\Wondershare\YouTube Downloader\YouTubeDownloaderOrder.url
[2012.07.13 10:09:18 | 000,001,164 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin\POI Loader.lnk
[2013.01.07 13:54:17 | 000,001,036 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare\YouTube Downloader\How to Use Wondershare YouTube Downloader.lnk
[2013.01.07 13:54:17 | 000,000,901 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare\YouTube Downloader\Order Wondershare YouTube Downloader On the Web.lnk
[2013.01.07 13:54:17 | 000,001,026 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare\YouTube Downloader\Uninstall Wondershare YouTube Downloader.lnk
[2013.01.07 13:54:17 | 000,000,875 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare\YouTube Downloader\Wondershare YouTube Downloader on the Web.lnk
[2013.01.07 13:54:17 | 000,001,071 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare\YouTube Downloader\Wondershare YouTube Downloader.lnk
[2012.02.15 13:28:30 | 000,072,638 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\loader.gif
[2012.02.15 13:28:30 | 000,003,032 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\loader.png
[2013.01.07 13:52:30 | 000,003,038 | ---- | M] () -- \STAHOVÁN\Wondershare YouTube Downloader.1.torrent
[2013.01.07 13:53:10 | 008,119,087 | ---- | M] () -- \STAHOVÁN\Wondershare YouTube Downloader\youtube-downloader_full235.exe
[2012.07.13 10:09:18 | 000,001,164 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\Garmin\POI Loader.lnk
[2013.01.07 13:54:17 | 000,001,036 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\Wondershare\YouTube Downloader\How to Use Wondershare YouTube Downloader.lnk
[2013.01.07 13:54:17 | 000,000,901 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\Wondershare\YouTube Downloader\Order Wondershare YouTube Downloader On the Web.lnk
[2013.01.07 13:54:17 | 000,001,026 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\Wondershare\YouTube Downloader\Uninstall Wondershare YouTube Downloader.lnk
[2013.01.07 13:54:17 | 000,000,875 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\Wondershare\YouTube Downloader\Wondershare YouTube Downloader on the Web.lnk

Re: Prosba o kontrolu a radu jak se zbavit Claro Search

Napsal: 19 úno 2013 20:30
od Doktorcz
[2013.01.07 13:54:17 | 000,001,071 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\Wondershare\YouTube Downloader\Wondershare YouTube Downloader.lnk
[2012.02.15 13:28:30 | 000,072,638 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\loader.gif
[2012.02.15 13:28:30 | 000,003,032 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\loader.png
[2012.10.14 15:02:55 | 000,293,535 | ---- | M] () -- \Users\TomSatr\AppData\Local\SRDownloader(1).err
[2012.11.21 16:06:42 | 000,001,536 | ---- | M] () -- \Users\TomSatr\AppData\Local\SRDownloader(1).nast
[2013.02.19 04:16:13 | 001,196,023 | ---- | M] () -- \Users\TomSatr\AppData\Local\SRDownloader(2).err
[2013.02.19 04:16:24 | 000,001,408 | ---- | M] () -- \Users\TomSatr\AppData\Local\SRDownloader(2).nast
[2012.11.08 18:53:07 | 000,001,048 | ---- | M] () -- \Users\TomSatr\AppData\Local\SRDownloader.nast
[2012.11.15 09:09:09 | 000,003,784 | ---- | M] () -- \Users\TomSatr\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\08LPW6FD\bundleloader[1].js
[2012.10.16 11:14:11 | 004,405,248 | ---- | M] () -- \Users\TomSatr\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\08LPW6FD\youtubedownloaderToolbar[1].msi
[2012.11.29 13:21:04 | 000,000,673 | ---- | M] () -- \Users\TomSatr\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2HKMIC3E\loader[1].gif
[2013.02.09 16:11:11 | 001,740,699 | ---- | M] () -- \Users\TomSatr\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2HKMIC3E\ncdownloader[1].exe
[2013.01.15 10:45:46 | 000,190,863 | ---- | M] () -- \Users\TomSatr\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54CQJ5TI\11934-1-prototype.js,scriptaculous.js,builder.js,effects.js,controls.js,loader.js,basic.js,functions.js,dotaznik[1].js
[2013.01.15 10:44:43 | 000,141,127 | ---- | M] () -- \Users\TomSatr\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54CQJ5TI\11934-1-prototype.js,scriptaculous.js,effect.js,loader.js,basic.js,dotaznik.js,functions[1].js
[2013.01.09 18:25:22 | 000,007,879 | ---- | M] () -- \Users\TomSatr\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54CQJ5TI\bundleloader[1].js
[2013.01.09 11:28:06 | 000,000,463 | ---- | M] () -- \Users\TomSatr\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54CQJ5TI\downloader[1].htm
[2013.02.18 18:55:58 | 000,003,784 | ---- | M] () -- \Users\TomSatr\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ALMF3PUK\bundleloader[1].js
[2013.02.18 18:56:05 | 000,000,723 | ---- | M] () -- \Users\TomSatr\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ALMF3PUK\downloaderror[1].js
[2013.01.09 11:28:12 | 000,000,542 | ---- | M] () -- \Users\TomSatr\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ALMF3PUK\downloader[1].htm
[2013.02.18 18:56:05 | 000,001,174 | ---- | M] () -- \Users\TomSatr\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ALMF3PUK\downloader[1].js
[2013.02.12 09:29:01 | 000,000,437 | ---- | M] () -- \Users\TomSatr\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D2JBX0ZL\downloader[1].htm
[2013.02.12 09:29:10 | 000,002,138 | ---- | M] () -- \Users\TomSatr\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D2JBX0ZL\downloader[2].htm
[2013.01.17 13:46:46 | 000,000,789 | ---- | M] () -- \Users\TomSatr\AppData\Roaming\Microsoft\Windows\Recent\BDA_Loader_220.lnk
[2012.11.09 21:24:44 | 000,069,120 | ---- | M] () -- \Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Backup\Common\Kies.Common.DeviceServiceLib.FirmwareUpdate.Downloader.dll
[2012.11.28 10:54:58 | 000,069,120 | ---- | M] () -- \Users\TomSatr\AppData\Roaming\Samsung\Kies\UpdateTemp\Sub\Common\Kies.Common.DeviceServiceLib.FirmwareUpdate.Downloader.dll
[2012.07.31 09:05:14 | 000,466,944 | ---- | M] () -- \Users\TomSatr\AppData\Roaming\Winwaed Software Technology LLC\MPMileCharter\adxloader.dll
[2012.07.31 09:05:14 | 000,000,270 | ---- | M] () -- \Users\TomSatr\AppData\Roaming\Winwaed Software Technology LLC\MPMileCharter\adxloader.dll.manifest
[2013.01.07 11:15:33 | 000,905,728 | ---- | M] () -- \Users\TomSatr\Desktop\SRDownloader(2).exe
[2013.01.07 13:54:17 | 000,001,109 | ---- | M] () -- \Users\TomSatr\Desktop\Wondershare YouTube Downloader.lnk
[2013.02.14 13:48:11 | 000,675,432 | ---- | M] () -- \Users\TomSatr\Downloads\Chip_Downloader_Inkscape_0.48.exe
[2012.08.22 06:35:06 | 008,678,944 | ---- | M] () -- \Users\TomSatr\Downloads\POILoaderforWindows_271(1).exe
[2012.07.13 10:08:27 | 008,678,944 | ---- | M] () -- \Users\TomSatr\Downloads\POILoaderforWindows_271.exe
[2012.10.14 14:58:20 | 000,905,216 | ---- | M] () -- \Users\TomSatr\Downloads\SRDownloader(1).exe
[2012.11.08 18:51:02 | 000,905,216 | ---- | M] () -- \Users\TomSatr\Downloads\SRDownloader.exe
[2012.10.28 13:17:39 | 001,279,454 | ---- | M] () -- \Users\TomSatr\Downloads\Uloz.to_Uploader-setup.exe
[2011.12.02 13:00:41 | 000,082,784 | ---- | M] () -- \Windows\assembly\GAC\IALoader\1.7.6223.0__31bf3856ad364e35\IALoader.dll
[2013.02.19 19:35:30 | 000,036,222 | ---- | M] () -- \Windows\Prefetch\RAREXTLOADER.EXE-F523F60B.pf
[2013.02.18 19:26:18 | 000,037,470 | ---- | M] () -- \Windows\Prefetch\SRDOWNLOADER(2).EXE-BB70CC36.pf
[2013.02.18 18:43:37 | 000,123,674 | ---- | M] () -- \Windows\Prefetch\VCLOADER.EXE-15BD1AE5.pf
[2009.07.14 13:25:34 | 002,202,645 | R--- | M] () -- \Windows\Setup\SCRIPTS\Windows7Loader.exe
[2011.02.05 14:09:31 | 000,005,745 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d639f7376b627c8f37f9acbbf7c6234a\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16757_none_b73e23c9863dba66.manifest
[2011.02.05 14:04:44 | 000,005,745 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d639f7376b627c8f37f9acbbf7c6234a\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.20897_none_b79c80e49f7bc9f4.manifest
[2011.02.05 18:34:23 | 000,005,745 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d639f7376b627c8f37f9acbbf7c6234a\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2011.02.05 14:09:57 | 000,005,745 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d639f7376b627c8f37f9acbbf7c6234a\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.21655_none_b9ac1d069c83936e.manifest
[2011.02.05 14:09:50 | 000,005,799 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d639f7376b627c8f37f9acbbf7c6234a\amd64_microsoft-windows-e..vironment-os-loader_31bf3856ad364e35_6.1.7600.16757_none_9c05f879842e1792.manifest
[2011.02.05 14:05:03 | 000,005,799 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d639f7376b627c8f37f9acbbf7c6234a\amd64_microsoft-windows-e..vironment-os-loader_31bf3856ad364e35_6.1.7600.20897_none_9c6455949d6c2720.manifest
[2011.02.05 18:34:40 | 000,005,799 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d639f7376b627c8f37f9acbbf7c6234a\amd64_microsoft-windows-e..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_9deb553581556a27.manifest
[2011.02.05 14:10:12 | 000,005,799 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d639f7376b627c8f37f9acbbf7c6234a\amd64_microsoft-windows-e..vironment-os-loader_31bf3856ad364e35_6.1.7601.21655_none_9e73f1b69a73f09a.manifest
[2012.11.30 05:45:15 | 000,003,584 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 02:15:12 | 000,038,400 | ---- | M] () -- \Windows\System32\dmloader.dll
[1 \Windows\System32\*.tmp files -> \Windows\System32\*.tmp -> ]
[2012.08.08 16:32:40 | 000,012,532 | ---- | M] () -- \Windows\System32\Adobe\Shockwave 11\shockwave_Projector_Loader.dcr
[2008.01.03 17:43:12 | 000,009,622 | ---- | M] () -- \Windows\System32\Macromed\Shockwave 10\shockwave_Projector_Loader.dcr
[2012.11.30 05:45:15 | 000,003,584 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 02:15:12 | 000,038,400 | ---- | M] () -- \Windows\SysWOW64\dmloader.dll
[1 \Windows\SysWOW64\*.tmp files -> \Windows\SysWOW64\*.tmp -> ]
[2012.08.08 16:32:40 | 000,012,532 | ---- | M] () -- \Windows\SysWOW64\Adobe\Shockwave 11\shockwave_Projector_Loader.dcr
[2008.01.03 17:43:12 | 000,009,622 | ---- | M] () -- \Windows\SysWOW64\Macromed\Shockwave 10\shockwave_Projector_Loader.dcr
[2013.02.17 12:18:02 | 000,000,256 | ---- | M] () -- \Windows\Tasks\Epson Printer Software Downloader.job
[2009.07.14 02:40:31 | 000,047,616 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_a1e90d98a953d601\dmloader.dll
[2009.07.14 02:24:53 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.05.14 08:18:33 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16816_none_66f39ad995474166\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.02 07:23:09 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16823_none_66e5ca0f95521152\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:04:54 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16850_none_66c2596d956d1920\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.18 16:22:27 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17107_none_66ff46fd953e6c5c\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:28:57 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17135_none_66dcd6a595588d81\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:41:11 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17179_none_66b5981d957562a1\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.03 07:39:29 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.20978_none_673e58b0ae93bb84\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:06:43 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21010_none_67770e0aae6a7c68\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 19:46:36 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21306_none_6787e564ae5ceff6\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:26:17 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21335_none_67667556ae762a72\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:36:06 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21386_none_67316604ae9dcf7e\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.05.14 08:04:21 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17617_none_68daf829926cc6a9\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.03 07:44:53 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17625_none_68ce27a99276afec\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:21:03 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17651_none_68a9b6bd92929e63\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 19:38:32 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17932_none_68c05c919281774d\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:38:48 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17965_none_68a2edab92971725\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:38:44 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18015_none_68d8d569926ebeb2\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.05.14 08:00:38 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21728_none_695ac552ab919bbb\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.03 07:40:10 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21738_none_694ff566ab99b7ac\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:12:44 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21772_none_691eb3faabbf8f66\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 19:09:47 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22091_none_6907efc6abd0db81\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:35:00 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22125_none_6957a248ab947a6d\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:39:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22177_none_69239340abbb38d0\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 16:17:49 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2009.07.14 16:17:49 | 000,033,360 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.efi.mui_35ee487d
[2009.07.14 16:17:49 | 000,034,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.exe.mui_3bc5b827
[2009.07.14 16:17:49 | 000,029,776 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.efi.mui_f412814e
[2009.07.14 16:17:49 | 000,030,288 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.exe.mui_ff8b5358
[2011.06.21 22:45:17 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2011.06.21 22:45:18 | 000,642,944 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winload.efi_75834aa0
[2011.06.21 22:45:18 | 000,605,552 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winload.exe_75835076
[2011.06.21 22:45:19 | 000,566,208 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winresume.efi_85cd069f
[2011.06.21 22:45:19 | 000,518,672 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winresume.exe_85cd1215
[2009.07.14 03:57:50 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009.07.14 03:57:50 | 000,019,008 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59_spldr.sys_98bd87a0
[2009.07.14 16:15:51 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2009.07.14 03:13:42 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16385_none_b71babd98657e6ef.manifest
[2011.02.05 14:09:31 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16757_none_b73e23c9863dba66.manifest
[2011.02.05 14:04:44 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.20897_none_b79c80e49f7bc9f4.manifest
[2010.11.20 05:12:44 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_b94cbfa183466a89.manifest
[2011.02.05 18:34:23 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2011.02.05 14:09:57 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.21655_none_b9ac1d069c83936e.manifest
[2009.07.14 03:18:27 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009.07.14 02:15:12 | 000,038,400 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_45ca7214f0f664cb\dmloader.dll
[2009.07.14 02:03:49 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.05.14 07:22:35 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16816_none_0ad4ff55dce9d030\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.02 06:45:50 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16823_none_0ac72e8bdcf4a01c\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 05:19:58 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16850_none_0aa3bde9dd0fa7ea\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.18 12:09:17 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17107_none_0ae0ab79dce0fb26\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 17:45:38 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17135_none_0abe3b21dcfb1c4b\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 05:56:23 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17179_none_0a96fc99dd17f16b\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.03 06:50:16 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.20978_none_0b1fbd2cf6364a4e\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 05:12:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21010_none_0b587286f60d0b32\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 18:42:56 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21306_none_0b6949e0f5ff7ec0\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 17:48:05 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21335_none_0b47d9d2f618b93c\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 05:44:10 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21386_none_0b12ca80f6405e48\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.05.14 07:13:36 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17617_none_0cbc5ca5da0f5573\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.03 06:47:28 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17625_none_0caf8c25da193eb6\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 05:15:45 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17651_none_0c8b1b39da352d2d\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 18:32:13 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17932_none_0ca1c10dda240617\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 17:40:37 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17965_none_0c845227da39a5ef\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 05:45:15 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18015_none_0cba39e5da114d7c\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.05.14 08:15:40 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21728_none_0d3c29cef3342a85\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.06.03 07:56:06 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21738_none_0d3159e2f33c4676\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 05:36:48 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21772_none_0d001876f3621e30\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 18:23:16 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22091_none_0ce95442f3736a4b\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 17:29:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22125_none_0d3906c4f3370937\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 05:46:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22177_none_0d04f7bcf35dc79a\api-ms-win-core-libraryloader-l1-1-0.dll

========== Alternate Data Streams ==========

@Alternate Data Stream - 6144 bytes -> C:\Windows\Cursors\arrow_n.cur:NEDTA.DAT
@Alternate Data Stream - 1369 bytes -> C:\ProgramData\Microsoft:beH8hlj41Fueksse4gt6Prr0
@Alternate Data Stream - 1357 bytes -> C:\ProgramData\Microsoft:3dgjQeQwZISTPGhn84N8YZ
@Alternate Data Stream - 1349 bytes -> C:\Program Files\Common Files\System:e1FlRXjmi4lKiIFlT9BsHg8up7
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:D1B5B4F1

< End of report >

Re: Prosba o kontrolu a radu jak se zbavit Claro Search

Napsal: 19 úno 2013 20:31
od Doktorcz
OTL Extras logfile created on: 19.2.2013 19:36:47 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\TomSatr\Desktop
64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

2.00 Gb Total Physical Memory | 0.71 Gb Available Physical Memory | 35.53% Memory free
4.00 Gb Paging File | 2.65 Gb Available in Paging File | 66.21% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 232.79 Gb Total Space | 16.33 Gb Free Space | 7.01% Space Free | Partition Type: NTFS
Drive D: | 576.64 Gb Total Space | 109.02 Gb Free Space | 18.91% Space Free | Partition Type: NTFS
Drive J: | 149.05 Gb Total Space | 19.82 Gb Free Space | 13.30% Space Free | Partition Type: NTFS
Drive N: | 149.05 Gb Total Space | 148.77 Gb Free Space | 99.81% Space Free | Partition Type: NTFS

Computer Name: TOMSATR-PC | User Name: TomSatr | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl[@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html[@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software)

[HKEY_USERS\S-1-5-21-2860777064-1590632525-2448073043-1000\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\SysWow64\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htafile [open] -- "%1" %*
htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software)
inffile [install] -- %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [Bridge] -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\SysWow64\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htafile [open] -- "%1" %*
https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [Bridge] -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

========== Firewall Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{00E36A0C-B658-433E-91FB-D6D545D1A5BB}" = lport=990 | protocol=6 | dir=in | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{08671F8F-C69E-4C74-A2D6-C259FFE8D5E9}" = lport=137 | protocol=17 | dir=in | app=system |
"{18683EF2-850D-4ED1-B1AE-B56ABB15CC4C}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{19809C85-5AA4-463D-B021-F7D4E67E853D}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{280BCC8E-0E42-4089-A175-58B3D19A6964}" = lport=5721 | protocol=6 | dir=in | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{40137D68-9923-4ED2-B75D-196E1CDB252F}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{52DDF997-E765-4B74-8CF2-7F2915F018C1}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{5EF941D6-C90B-44CA-A610-BD1D8DD5A05C}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{64AD97DB-E581-4F01-935D-E5A8D3057CBD}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{70B47309-EAE9-4EA3-87AA-DDEFDF547338}" = lport=445 | protocol=6 | dir=in | app=system |
"{70C8460A-4501-4025-A787-708231C0236A}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{79F3C413-0547-414A-8138-5360D395EC72}" = lport=10243 | protocol=6 | dir=in | app=system |
"{7BE21CF5-5935-4869-A9CE-6F0FEF4E9844}" = rport=10243 | protocol=6 | dir=out | app=system |
"{897A756F-08E6-4322-AC75-5E518EFE23D3}" = rport=138 | protocol=17 | dir=out | app=system |
"{90B78F50-07CF-4F65-896B-638A1C7811C0}" = lport=26675 | protocol=6 | dir=in | name=@%systemroot%\windowsmobile\wmdcbase.exe,-4006 |
"{A6C0DBC4-D54C-4500-93A0-0E0CA89A5D9B}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{A6CCA841-AFCC-403D-A203-5E4A2767AA56}" = lport=139 | protocol=6 | dir=in | app=system |
"{AA2F0C28-9448-4CC6-A141-9F555685DC73}" = rport=137 | protocol=17 | dir=out | app=system |
"{ADFF4A98-E6AA-49AB-85AD-77D2349669B7}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{B2C87CDB-23BF-44E2-9C4F-0980E468E2F1}" = rport=139 | protocol=6 | dir=out | app=system |
"{B4F41986-A925-488F-836B-EBD0FE3BB904}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{B71133EF-CAEA-4525-8A81-DF3B01E0AB83}" = lport=138 | protocol=17 | dir=in | app=system |
"{C6CEA397-A016-4812-AF29-31E69D3ADDF6}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{DEDCA2DB-3E7E-476E-A4D3-2DF19B4BA78D}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{E85A6CAD-692B-4F37-9FBC-DC6F61FF21CF}" = rport=445 | protocol=6 | dir=out | app=system |
"{EC3A4850-41AE-4C7A-BA8E-A20511D9D659}" = rport=5679 | protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{F509AAFD-E87E-48C7-B255-8A3C83A5D60F}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe |
"{FC8F2739-9A77-42B4-B591-E5552E2BD0D1}" = lport=2869 | protocol=6 | dir=in | app=system |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0269D220-D769-4BEB-B332-AF1DF1B5B5A2}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{036BE0BB-DE6C-431B-BEC2-06BA76073D78}" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"{0D5FD100-14B0-4D78-86BA-2E1C4A89AD71}" = protocol=17 | dir=in | app=c:\windows\syswow64\msiexec.exe |
"{104BC1DA-91E2-4E0C-A1FD-1CF3AA5B0EA9}" = protocol=17 | dir=in | app=c:\program files (x86)\pinnacle\studio 15\programs\umi.exe |
"{1A6E3A53-9D7E-484C-897A-39278DE05C78}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{231B7488-E185-4295-9700-D7F5C7C48E6A}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{2D139B2E-2B07-4D7E-9982-85AF89C54C55}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{305DBDFC-81DE-426E-9A16-A4C21597BA88}" = protocol=6 | dir=in | app=c:\program files (x86)\pinnacle\studio 15\programs\umi.exe |
"{309EF972-561B-4F89-88D9-7AF361805960}" = protocol=6 | dir=in | app=c:\program files (x86)\common files\soft602\langserv.exe |
"{30D5B3F7-2C06-4763-984E-DFECFE8E89CF}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
"{34027268-08C5-43E8-95F9-85EDD6403BD6}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
"{36A671F3-F9FE-4BA1-B3BB-451F9E026657}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{420C41F1-3D24-4902-A372-A6BD66C36D70}" = protocol=6 | dir=in | app=c:\program files (x86)\pinnacle\studio 15\programs\rm.exe |
"{457C51B1-EB18-4448-9E99-64D7A42BF6EC}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{5E2E8AF1-9D9F-412C-9652-D7994C6A56AB}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{5F3B339B-E68D-43C2-B55B-CD80166D2F80}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe |
"{60445AE8-0E3D-4176-BD11-C56A372C313C}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{68D15EB8-3F10-4840-8275-D2B840DEEFA5}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{78DBEA64-DF2D-4DC9-868B-8CF2DF107F72}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{7F011739-3410-4605-9FEE-7A82C46FF1EC}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{802201CE-7B0D-4A52-B460-603B5D8EC35E}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{8058765C-CC3B-46B2-8D0C-147797EEB71F}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{81D49B45-D2A3-4F8C-BE74-9138BC778B7D}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{8E900C32-B604-407A-BFC0-1FB1B3ED0C32}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{A1DA0CC3-F83D-458A-AFA3-4AC86269006F}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{A604DB14-4BA8-4EC8-8C4B-8B0CDF915B62}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe |
"{BAC25C18-FAB4-43BD-BBC1-FC81970D40D0}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
"{C49DC7C1-A45E-4E1A-807C-1CBF3E0FCCA8}" = protocol=17 | dir=in | app=c:\program files (x86)\pinnacle\studio 15\programs\rm.exe |
"{CFEF77D2-7121-4C7C-85E3-C2380A6103AD}" = protocol=6 | dir=out | app=system |
"{D3348CF8-73A8-4B6F-A4D7-A3710C7E718D}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{D383FEF6-D836-4F3F-B8D3-D6E8727F46B4}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{E03DD661-F6FB-4856-92AE-F75E594E50B5}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
"{E139DEE5-371E-47F7-985C-330E5760AB00}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{E994E369-E5AC-406D-9BDA-A5355FE8E84B}" = protocol=17 | dir=in | app=c:\program files (x86)\common files\soft602\langserv.exe |
"{EAC96B98-24F0-40AF-AB8B-296DE449CB2A}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{EAD52107-D49D-4318-B9F1-A0E7D3379CE6}" = protocol=17 | dir=in | app=c:\program files (x86)\pinnacle\studio 15\programs\studio.exe |
"{ECD266DF-6610-4F6C-B543-9F3E9861C8E9}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{EFB479DA-961A-4DF6-A32B-A19251EE5D44}" = protocol=6 | dir=in | app=c:\windows\syswow64\msiexec.exe |
"{F1C8ABF2-4EED-4F85-ABC1-0B00CC35B9BC}" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"{F5390456-B676-4089-B4B7-3D01459062A2}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{F733A15B-0B8C-45B7-BB61-E3AFA44B2F9A}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
"{F8E40D4B-EB00-4C49-87F0-5913A408F5DD}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
"{F995001D-3A1E-4CAC-B25C-B02DDB401E1E}" = dir=in | app=c:\program files (x86)\windows live\mesh\moe.exe |
"{FA018D32-0531-4664-8875-73309561105F}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
"{FABD6A12-6312-4D64-BADF-477B33CCDCF4}" = protocol=6 | dir=in | app=c:\program files (x86)\pinnacle\studio 15\programs\studio.exe |
"{FFF878CD-ED31-4778-AF4D-2D0F5E23C1F9}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"TCP Query User{856C1E90-7661-4366-B4A3-4B274EB038FE}C:\program files (x86)\samsung\intelli-studio\istudio.exe" = protocol=6 | dir=in | app=c:\program files (x86)\samsung\intelli-studio\istudio.exe |
"TCP Query User{977595D9-D526-46CD-8EB9-4C2D52475874}C:\program files (x86)\java\jre6\launch4j-tmp\frd.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\launch4j-tmp\frd.exe |
"TCP Query User{B8BA1BA3-870A-4EB2-8E72-63BCF3FBB6C8}C:\program files (x86)\activision\call of duty 2\cod2mp_s.exe" = protocol=6 | dir=in | app=c:\program files (x86)\activision\call of duty 2\cod2mp_s.exe |
"UDP Query User{25E49487-28F4-4B48-BBCF-F11E9EC54B3D}C:\program files (x86)\java\jre6\launch4j-tmp\frd.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\launch4j-tmp\frd.exe |
"UDP Query User{E3CE8470-1EC7-4119-BE5D-D7A8D7B55034}C:\program files (x86)\samsung\intelli-studio\istudio.exe" = protocol=17 | dir=in | app=c:\program files (x86)\samsung\intelli-studio\istudio.exe |
"UDP Query User{FC151411-D9C0-42E9-8BDF-4CB12D62AC26}C:\program files (x86)\activision\call of duty 2\cod2mp_s.exe" = protocol=17 | dir=in | app=c:\program files (x86)\activision\call of duty 2\cod2mp_s.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{05BFB060-4F22-4710-B0A2-2801A1B606C5}" = Microsoft Antimalware
"{17CA32D1-73BD-4990-B8F6-369D8D34B05D}" = Microsoft Antimalware Service CS-CZ Language Pack
"{1B8ABA62-74F0-47ED-B18C-A43128E591B8}" = Windows Live ID Sign-in Assistant
"{1E9FC118-651D-4934-97BE-E53CAE5C7D45}" = Microsoft_VC80_MFCLOC_x86_x64
"{23170F69-40C1-2702-0920-000001000000}" = 7-Zip 9.20 (x64 edition)
"{26A24AE4-039D-4CA4-87B4-2F86417007FF}" = Java 7 Update 7 (64-bit)
"{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1" = MPC-HC 1.6.3.5373 (64-bit)
"{34384A2A-2CA2-4446-AB0E-1F360BA2AAC5}" = Windows Live Remote Service Resources
"{3921492E-82D2-4180-8124-E347AD2F2DB4}" = Windows Live Remote Client Resources
"{3D3E663D-4E7E-4577-A560-7ECDDD45548A}" = PVSonyDll
"{42738DB0-FC3E-4672-A99B-9372F5696E30}" = Microsoft Security Client
"{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}" = Microsoft_VC80_CRT_x86_x64
"{46A5FBE9-ADB3-4493-A1CC-B4CFFD24D26A}" = Windows Live Family Safety
"{50CBBEC7-1010-41C5-8718-A1A6FEDD9C3A}" = GEAR driver installer for AMD64 and Intel EM64T
"{550331CC-C34B-494F-BCDA-37CE4EF6E924}" = Garmin Communicator Plugin x64
"{5EB6F3CB-46F4-451F-A028-7F6D8D35D7D0}" = Windows Live Language Selector
"{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1" = Revo Uninstaller Pro 2.5.7
"{6DE721A5-5E89-4D74-994C-652BB3C0672E}" = Ovladače videa společnosti Pinnacle
"{701D8EE6-6A5A-4509-9740-35F551193CE0}" = Windows Live Family Safety
"{790E02A1-145A-3843-8C13-A4F41C9B48B7}" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"{8557397C-A42D-486F-97B3-A2CBC2372593}" = Microsoft_VC90_ATL_x86_x64
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended
"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
"{90120000-002A-0405-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Czech) 2007
"{925D058B-564A-443A-B4B2-7E90C6432E55}" = Microsoft_VC80_ATL_x86_x64
"{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}" = Microsoft_VC90_CRT_x86_x64
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}" = Microsoft_VC90_MFC_x86_x64
"{AB071C8B-873C-459F-ACA9-9EBE03C3E89B}" = MSVC90_x64
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Ovladač 3D Vision 306.97
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Ovládací panel NVIDIA 306.97
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Ovladače grafiky 306.97
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizace NVIDIA 1.10.8
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components
"{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}" = Microsoft_VC80_MFC_x86_x64
"{C9608300-11F5-11E0-A64B-0013D3D69929}" = MSVCRT Redists
"{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}" = SAMSUNG USB Driver for Mobile Phones
"{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter
"{DC911ADF-7B60-40F2-A112-FB1EB6402D07}" = Microsoft Security Client CS-CZ Language Pack
"{DF6D988A-EEA0-4277-AAB8-158E086E439B}" = Windows Live Remote Client
"{E02A6548-6FDE-40E2-8ED9-119D7D7E641F}" = Windows Live Remote Service
"{EB418DDD-5365-4381-87F6-D8BBB21CC1CA}" = Garmin Communicator Plugin x64
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"3CAABDB4D5E19760A561BDB6506A3E8432AE8457" = Balíček ovladače systému Windows - Das USB (09/20/2010 1.6.0)
"45A7283175C62FAC673F913C1F532C5361F97841" = Windows Driver Package - Garmin (grmnusb) GARMIN Devices (03/08/2007 2.2.1.0)
"883C6F371CE9B23C1CF864201BD5C4BBCA440808" = Balíček ovladače systému Windows - Das (WinUSB) USB (12/14/2011 1.4)
"CCleaner" = CCleaner
"EPSON SX110 Series" = Odinstalace tiskárny EPSON SX110 Series
"GIMP-2_is1" = GIMP 2.8.0
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile CSY Language Pack" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"OptimizerPro" = OptimizerPro
"PhotomatixPro41x64_is1" = Photomatix Pro version 4.1.4
"Totalcmd64" = Total Commander 64-bit (Remove or Repair)
"Wondershare YouTube Downloader_is1" = Wondershare YouTube Downloader(Build 1.3.11.4)

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"%Product_Name% 4.8F " = Fakturky 4.8F
"{0217E1D1-BCEF-4A61-AF6D-F7740F65A066}" = Pivot Pro Plugin
"{024521CF-C07E-4F8E-8481-0D75695E03AF}" = PxMergeModule
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{0497EAED-70DA-4BBE-BEB3-AF77FD8788EA}" = Adobe Premiere Pro CS5.5
"{07A8ED9E-B98E-437F-B750-241B412BE924}" = Garmin USB Drivers
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0DEA342C-15CB-4F52-97B6-06A9C4B9C06F}" = SDK
"{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
"{1111706F-666A-4037-7777-211328764D10}" = JavaFX 2.1.1
"{13605214-8CA9-4B59-90A0-DEBB9A9F68E5}" = WebMate
"{1362E602-9625-42D3-B57F-CDA9D26F9DA8}" = Pinnacle Studio 15
"{15EB20D6-5F13-41D0-BEF9-C9C44D6AC620}" = SDFormatter
"{15FEDA5F-141C-4127-8D7E-B962D1742728}" = Adobe Photoshop CS5
"{17079027-EB8A-42C6-9BF8-825B78889F6A}" = Garmin Communicator Plugin
"{1873789F-59D5-4002-8A2F-60A827B78F98}_is1" = GmapTool 0.7.158
"{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319
"{19E3AF7F-D6A6-49D0-821F-07A001B5E712}" = TOPO Czech 2012
"{1D5C3A37-CA90-480A-9327-7BB22097A77B}" = MPMileCharter
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{22613FA5-4D3B-4EE5-8E4A-39EBE649324E}" = Garmin BaseCamp
"{2300EE96-0A41-4FAB-BD03-989EC44577A0}" = Acronis Disk Director Suite
"{2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1" = Media Player Classic - Home Cinema v1.5.2.3456
"{26A24AE4-039D-4CA4-87B4-2F83216029FF}" = Java(TM) 6 Update 29
"{26A24AE4-039D-4CA4-87B4-2F83217007FF}" = Java 7 Update 11
"{2F34E931-7BEA-4BC6-8286-4197EC77EF34}" = Garmin TOPO Deutschland 2012 Pro
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{3521BDBD-D453-5D9F-AA55-44B75D214629}" = Adobe Community Help
"{3862105D-1AD3-470D-9CE5-94A2DB91D6CC}" = Slovakia_Topo_v3_Beta2
"{3921A67A-5AB1-4E48-9444-C71814CF3027}" = VCRedistSetup
"{3E5C5F80-14E4-4BA1-8699-7C7533562C24}" = TopoGuide Hungary V2.1G

Re: Prosba o kontrolu a radu jak se zbavit Claro Search

Napsal: 19 úno 2013 20:32
od Doktorcz
"{4264C020-850B-4F08-ACBE-98205D9C336C}" = Windows Live Writer
"{463F67F4-58D0-4C0D-BBC9-D0CC4E56D1B8}" = Windows Live UX Platform Language Pack
"{46C045BF-2B3F-4BC4-8E4C-00E0CF8BD9DB}" = Adobe AIR
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4CBABDFD-49F8-47FD-BE7D-ECDE7270525A}" = Windows Live PIMT Platform
"{4F2CE68F-EDBB-4592-BF07-5AC930A51029}" = Nero 7 Premium
"{4FF53219-2418-41FC-98CE-72EF9C4B6F70}" = Slovakia TOPO 3 CYKLO
"{50300123-F8FC-4B50-B449-E847D04F1BA2}" = Windows Live Messenger
"{50E51FC4-22C6-4F03-A363-327E351C9BC2}" = ATLAS Czech 2012 NT
"{510D2239-6C2E-457B-9590-485EC552D94D}" = Garmin USB Drivers
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{644F4910-E812-49AD-93EC-86828CB81A0D}" = PC Connectivity Solution
"{64B2D6B3-71AC-45A7-A6A1-2E07ABF58341}" = Windows Live Movie Maker
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{6D592E30-11EC-11E0-859C-0013D3D69929}" = Vegas Pro 10.0
"{6F545E5E-4595-11E2-93B6-B8AC6F97B88E}" = Google Earth
"{7032B400-11EC-11E0-A9BF-0013D3D69929}" = MSVCRT Redists
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{72882900-0AB6-458C-8C36-6AB6FA5CB978}" = Software602 Form Filler
"{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{78906B56-0E81-42A7-AC25-F54C946E1538}" = Windows Live Photo Common
"{78A96B4C-A643-4D0F-98C2-A8E16A6669F9}" = Windows Live Messenger Companion Core
"{7A11431C-3B45-4932-9D83-2F4A609C18F3}" = Adresy CR v2
"{7AA38575-25A1-4C2F-B40B-2188EB73FF0E}" = Garmin TOPO Österreich v2
"{7C6999B2-1A35-4F2C-8DB7-3CB46B640CC9}" = ConsumerUpdate
"{80E8C65A-8F70-4585-88A2-ABC54BABD576}" = Windows Live Mesh
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
"{87C2248A-C7DD-49ED-9BCD-B312A9D0819E}" = Epson Easy Photo Print 2
"{8A158B7D-A6E3-49B6-8702-A6A10CCC6323}" = Garmin POI Loader
"{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{900B1197-53F5-4F46-A882-2CFFFE2EEDCB}" = Logitech Desktop Messenger
"{90120000-0015-0405-0000-0000000FF1CE}" = Microsoft Office Access MUI (Czech) 2007
"{90120000-0015-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0016-0405-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Czech) 2007
"{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Czech) 2007
"{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0019-0405-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Czech) 2007
"{90120000-0019-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001A-0405-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Czech) 2007
"{90120000-001A-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0405-0000-0000000FF1CE}" = Microsoft Office Word MUI (Czech) 2007
"{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0405-0000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2007
"{90120000-001F-0405-0000-0000000FF1CE}_ENTERPRISE_{0B7A4B67-2A38-42B1-9857-662FAB361E08}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-041B-0000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2007
"{90120000-001F-041B-0000-0000000FF1CE}_ENTERPRISE_{FDF9A959-241A-4662-A8DE-7DED9C22D160}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002A-0405-1000-0000000FF1CE}_ENTERPRISE_{A0AAD4D5-9F9C-49BB-AB64-0FD4695424E8}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002C-0405-0000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0044-0405-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Czech) 2007
"{90120000-0044-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-006E-0405-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2007
"{90120000-006E-0405-0000-0000000FF1CE}_ENTERPRISE_{A0AAD4D5-9F9C-49BB-AB64-0FD4695424E8}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00A1-0405-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Czech) 2007
"{90120000-00A1-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00BA-0405-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Czech) 2007
"{90120000-00BA-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{98613C99-1399-416C-A07C-1EE1C585D872}" = SeaTools for Windows
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AB78C965-5C67-409B-8433-D7B5BDB12073}" = Windows Live Writer Resources
"{AC76BA86-7AD7-1029-7B44-AB0000000001}" = Adobe Reader XI (11.0.01) - Czech
"{AC76BA86-7AD7-5760-0000-900000000003}" = Japanese Fonts Support For Adobe Reader 9
"{ACF60000-22B9-4CE9-98D6-2CCF359BAC07}" = ABBYY FineReader 6.0 Sprint
"{AF111648-99A1-453E-81DD-80DBBF6DAD0D}" = MSVC90_x86
"{AFBAB9A0-DDE8-49AE-8C17-A01B61BEE64B}" = Garmin MapSource
"{B2C2BA34-6E3A-4DB4-831A-8E7D5E0E716B}" = CYKLO Czech 2012 NT
"{B44F3823-52DD-45CA-A916-8B320778715D}" = Messenger Companion
"{B6190387-0036-4BEB-8D74-A0AFC5F14706}" = Ovládací prvek ActiveX platformy Windows Live Mesh pro vzdálená připojení
"{B6A98E5F-D6A7-46FB-9E9D-1F7BF4434001}" = Epson Printer Software Downloader
"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call
"{B6D38690-755E-4F40-A35A-23F8BC2B86AC}" = Microsoft_VC90_MFCLOC_x86
"{C0500FA6-BF29-45E2-A3C7-24BDCAF6AA39}_is1" = PHOTORECOVERY 2010
"{C28DD992-5B7B-D195-6841-4EC57DF512BD}" = Adobe Story
"{C43048A9-742C-4DAD-90D2-E3B53C9DB825}" = Logitech QuickCam Software
"{C454280F-3C3E-4929-B60E-9E6CED5717E7}" = Windows Live Mail
"{C887C75D-2636-41F6-BB7B-FD4B0314C1E1}" = Paragon Partition Manager 9.0 Professional
"{CD6A498E-0FF5-49CE-A70C-2D342E68E709}" = MioMore Desktop
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{D155D300-C235-44FC-981C-F7B34683439C}" = Paragon Drive Backup 8.51 Professional Trial
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D642E38E-0D24-486C-9A2D-E316DD696F4B}" = Microsoft XML Parser
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{DB6AB705-C9BD-40E3-8929-2EA57F36A4FF}_is1" = ConvertXtoDVD 4.0.9.322
"{DE3A9DC5-9A5D-6485-9662-347162C7E4CA}" = Adobe Media Player
"{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E83CD823-C522-4B71-B10A-E1088B3BD261}" = STK03N
"{EB4DF488-AAEF-406F-A341-CB2AAA315B90}" = Windows Live Messenger
"{EC28FA6E-E38D-4F72-80EF-1FBE66B05668}" = Garmin City Navigator Europe NT 2013.10 Update
"{ED45BEA5-3E7F-423F-80AE-9D9E5809959A}" = TOPO Czech PRO 2012
"{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.10
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F4EF231A-7218-41B1-AB84-F5B48B74C50A}" = SmartControl
"{FB79FDB7-4DE1-453D-99FE-9A880F57380E}" = Windows Live Fotogalerie
"{FE62C88B-425B-4BDE-8B70-CD5AE3B83176}" = Windows Live Essentials
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"7-Zip" = 7-Zip 9.20
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.6
"AIMP3" = AIMP3
"Aneesoft DVD Show_is1" = Aneesoft DVD Show
"avast" = avast! Free Antivirus
"AVIConverter" = AVIConverter 3.0
"BurnAware Professional_is1" = BurnAware Professional 4.2
"CDex" = CDex - Open Source Digital Audio CD Extractor
"CoD 2 čeština_is1" = CoD 2 čeština
"com.adobe.AdobeStory.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Story
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"CoreAAC" = CoreAAC
"Cyklotrasy 2.28" = Cyklotrasy 2.28
"dBpoweramp DSP Effects" = dBpoweramp DSP Effects
"dBpowerAMP mp3PRO Input Codec" = dBpowerAMP mp3PRO Input Codec
"dBpowerAMP Music Converter" = dBpowerAMP Music Converter
"dBpowerAMP Ogg Vorbis Codec" = dBpowerAMP Ogg Vorbis Codec
"dBpowerAMP Winamp Codec" = dBpowerAMP Winamp Codec
"dBpowerAMP WMA V9 Codec" = dBpowerAMP WMA V9 Codec
"dMC Fun Bar" = dMC Fun Bar
"dMC mp3PRO (CLI) Encoder" = dMC mp3PRO (CLI) Encoder
"dMC Power Pack" = dMC Power Pack
"DVD Flick_is1" = DVD Flick 1.3.0.7
"ENTERPRISE" = Microsoft Office Enterprise 2007
"Epson Printer Software Downloader" = Epson Printer Software Downloader
"EPSON Scanner" = EPSON Scan
"Epson Stylus SX110_TX110 Uživatelská příručka" = Epson Stylus SX110_TX110 Manuál
"ExpressRip" = Express Rip
"FitLinie_is1" = FitLinie FULL
"FormatFactory" = FormatFactory 1.90
"GeoGet_is1" = GeoGet 2.7.3.699
"GOM Picker" = GOM PICKER
"GOM Player" = GOM Player
"GOM Video Converter" = GOM Video Converter
"Google Chrome" = Google Chrome
"Great Photo" = Great Photo Windows Version v1.0.0
"GSpot" = GSpot Codec Information Appliance
"Hard Disk Low Level Format Tool_is1" = Hard Disk Low Level Format Tool 4.05
"HDD Low Level Format Tool 4" = HDD Low Level Format Tool
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
"Inkscape" = Inkscape 0.48.4
"InstallShield_{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies
"Intelli-studio" = SAMSUNG Intelli-studio
"IsoBuster_is1" = IsoBuster 2.7
"Karen's Directory Printer" = Karen's Directory Printer
"KLiteCodecPack_is1" = K-Lite Codec Pack 4.0.0 (Full)
"Logitech Print Service" = Logitech Print Service
"Manager for Skype" = Manager for Skype
"MixMeister Studio 7.2.2_is1" = MixMeister Studio 7.2.2
"MozBackup" = MozBackup 1.5.1
"Mozilla Firefox 18.0.2 (x86 cs)" = Mozilla Firefox 18.0.2 (x86 cs)
"Mozilla Thunderbird 17.0.2 (x86 cs)" = Mozilla Thunderbird 17.0.2 (x86 cs)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"OJOsoft Total Video Converter_is1" = OJOsoft Total Video Converter
"Opera 12.12.1707" = Opera 12.12
"Photodex Presenter" = Photodex Presenter
"PhotoFiltre" = PhotoFiltre
"ProShow Producer" = ProShow Producer
"rajče.net_is1" = rajče průvodce verze 1.59.45.260
"RAR Password Cracker" = RAR Password Cracker
"Recepty doma_is1" = Recepty doma
"SmartMaps Router - Cyklomapa ČR_is1" = SmartMaps Router - Cyklomapa ČR 1.6.4.7
"Subscribe Emails_is1" = Subscribe Emails
"Switch" = Switch Sound File Converter
"The KMPlayer" = The KMPlayer (remove only)
"Turistické trasy 2.14" = Turistické trasy 2.14
"uTorrent" = µTorrent
"VLC media player" = VLC media player 2.0.5
"WavePad" = WavePad Sound Editor
"Wedding Album Maker Gold" = Wedding Album Maker Gold 3.07
"WinLiveSuite" = Windows Live Essentials
"WinPcapInst" = WinPcap 4.1.1
"WinRAR archiver" = WinRAR
"WM Converter 2.0" = WM Converter 2.0
"Xilisoft Video Converter Ultimate" = Xilisoft Video Converter Ultimate
"ZonerPhotoStudio12_CZ_is1" = Zoner Photo Studio 12

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-2860777064-1590632525-2448073043-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"MyFreeCodec" = MyFreeCodec

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 15.2.2013 7:05:10 | Computer Name = TomSatr-PC | Source = OptimizerProUpdater | ID = 0
Description =

Error - 15.2.2013 12:48:06 | Computer Name = TomSatr-PC | Source = OptimizerProUpdater | ID = 0
Description =

Error - 15.2.2013 12:48:33 | Computer Name = TomSatr-PC | Source = OptimizerProUpdater | ID = 0
Description =

Error - 15.2.2013 17:51:39 | Computer Name = TomSatr-PC | Source = OptimizerProUpdater | ID = 0
Description =

Error - 15.2.2013 17:52:36 | Computer Name = TomSatr-PC | Source = OptimizerProUpdater | ID = 0
Description =

Error - 15.2.2013 23:38:05 | Computer Name = TomSatr-PC | Source = OptimizerProUpdater | ID = 0
Description =

Error - 15.2.2013 23:38:46 | Computer Name = TomSatr-PC | Source = OptimizerProUpdater | ID = 0
Description =

Error - 17.2.2013 6:27:36 | Computer Name = TomSatr-PC | Source = SignInAssistant | ID = 0
Description =

Error - 17.2.2013 19:30:06 | Computer Name = TomSatr-PC | Source = SideBySide | ID = 16842761
Description = Generování kontextu aktivace pro C:\Users\TomSatr\AppData\Roaming\Winwaed
Software Technology LLC\MPMileCharter\adxloader.dll.Manifest se nezdařilo. Chyba
v souboru manifestu nebo zásady C:\Users\TomSatr\AppData\Roaming\Winwaed Software
Technology LLC\MPMileCharter\adxloader.dll.Manifest na řádku 2. Kořenový prvek souboru
manifestu musí být symbolická adresa.

Error - 19.2.2013 14:21:16 | Computer Name = TomSatr-PC | Source = SideBySide | ID = 16842761
Description = Generování kontextu aktivace pro C:\Users\TomSatr\AppData\Roaming\Winwaed
Software Technology LLC\MPMileCharter\adxloader.dll.Manifest se nezdařilo. Chyba
v souboru manifestu nebo zásady C:\Users\TomSatr\AppData\Roaming\Winwaed Software
Technology LLC\MPMileCharter\adxloader.dll.Manifest na řádku 2. Kořenový prvek souboru
manifestu musí být symbolická adresa.

[ System Events ]
Error - 18.2.2013 14:16:46 | Computer Name = TomSatr-PC | Source = Service Control Manager | ID = 7038
Description = Služba nvUpdatusService se nemohla přihlásit jako .\UpdatusUser s
aktuálně konfigurovaným heslem z důvodu následující chyby: %%1330 Chcete-li zajistit
správnou konfiguraci služby, použijte modul snap-in Služby konzoly Microsoft Management
Console (MMC).

Error - 18.2.2013 14:16:46 | Computer Name = TomSatr-PC | Source = Service Control Manager | ID = 7000
Description = Služba NVIDIA Update Service Daemon neuspěla při spuštění v důsledku
následující chyby: %%1069

Error - 19.2.2013 13:45:46 | Computer Name = TomSatr-PC | Source = Application Popup | ID = 262200
Description = Ovladač USB vrátil neplatné číslo ID pro podřízené zařízení (D).

Error - 19.2.2013 13:45:46 | Computer Name = TomSatr-PC | Source = Application Popup | ID = 262200
Description = Ovladač USBSTOR vrátil neplatné číslo ID pro podřízené zařízení (D&0).

Error - 19.2.2013 13:46:10 | Computer Name = TomSatr-PC | Source = Application Popup | ID = 1060
Description = Načtení \SystemRoot\SysWow64\Drivers\DLPortIO.SYS bylo zablokováno
kvůli nekompatibilitě s tímto systémem. Požádejte dodavatele softwaru o kompatibilní
verzi ovladače.

Error - 19.2.2013 13:46:10 | Computer Name = TomSatr-PC | Source = Service Control Manager | ID = 7000
Description = Služba DriverLINX Port I/O Driver neuspěla při spuštění v důsledku
následující chyby: %%1275

Error - 19.2.2013 13:46:25 | Computer Name = TomSatr-PC | Source = Service Control Manager | ID = 7023
Description = Služba Windows Defender byla ukončena s následující chybou: %%126

Error - 19.2.2013 13:48:30 | Computer Name = TomSatr-PC | Source = Service Control Manager | ID = 7038
Description = Služba nvUpdatusService se nemohla přihlásit jako .\UpdatusUser s
aktuálně konfigurovaným heslem z důvodu následující chyby: %%1330 Chcete-li zajistit
správnou konfiguraci služby, použijte modul snap-in Služby konzoly Microsoft Management
Console (MMC).

Error - 19.2.2013 13:48:30 | Computer Name = TomSatr-PC | Source = Service Control Manager | ID = 7000
Description = Služba NVIDIA Update Service Daemon neuspěla při spuštění v důsledku
následující chyby: %%1069

Error - 19.2.2013 13:50:07 | Computer Name = TomSatr-PC | Source = Service Control Manager | ID = 7011
Description = Při čekání na odezvu transakce služby eventlog bylo dosaženo časového
limitu (30000 ms).


< End of report >

Re: Prosba o kontrolu a radu jak se zbavit Claro Search

Napsal: 19 úno 2013 23:44
od vyosek
Jen se zeptam, pouzivate legalni operacni system?

Re: Prosba o kontrolu a radu jak se zbavit Claro Search

Napsal: 20 úno 2013 08:26
od Doktorcz
Snad ano.Byl kupovaný s PC - resp.nainstalován už při koupi.Nezaznamenal jsem nikdy nic co by naznačovalo opak . Je tam ale určitě pár prográmků ,které si tam dával syn nebo dcera a tam to nezaručim.

Re: Prosba o kontrolu a radu jak se zbavit Claro Search

Napsal: 20 úno 2013 22:53
od vyosek
:arrow: Stahnete Malwarebytes' Anti-Malware (zkracene MBAM) http://forum.viry.cz/viewtopic.php?f=29&t=115222
  • Provedte aktualizaci
  • Provedte uplny sken - nic nemazte :!:
  • MBAM miva obcas falesne detekce, proto vlozte log do prispevku a pockejte na posouzeni