Stránka 1 z 1

Veľmi vysoké využitie RAM

Napsal: 31 bře 2013 15:55
od LemmY
Zdravím,
Môj prbolém začal keď som si preinštaloval WIN.(Ultimate 64bit.). Zpozoroval som veľmi vysoké zvýšenie využitia RAM .... keď zapnem PC je to ešte v pohodičke ale časom sa to zvýši až na 80% v kľude a stúpa mám 8GB RAM.
PC šiel v pohode 2 roky zpozoroval som to až teraz po preinštalácií win.(už mi to ide hore krkom :()
Moja Zostava PC:
CPU: AMD X6
Gpu:AMD 6950 1GB
RAM: 8GB
ZDROJ: Seasonic 620W
Logfile of random's system information tool 1.08 (written by random/random)
Run by Tomas at 2013-03-31 18:33:06
Microsoft Windows 7 Ultimate
System drive C: has 183 GB (60%) free of 305 GB
Total RAM: 8190 MB (52% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:33:39, on 31. 3. 2013
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal

Running processes:
C:\Users\Tomas\AppData\Roaming\uTorrent\uTorrent.exe
C:\Program Files (x86)\RocketDock\RocketDock.exe
C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\VideoLAN\VLC\vlc.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Tomas.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\updrgui.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKCU\..\Run: [uTorrent] "C:\Users\Tomas\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [RocketDock] "C:\Program Files (x86)\RocketDock\RocketDock.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [EADM] "C:\Program Files (x86)\Origin\Origin.exe" -AutoStart
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Odmenovac.appref-ms
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Avira FireWall (AntiVirFirewallService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avfwsvc.exe
O23 - Service: Avira Mail Protection (AntiVirMailService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Avira Web Protection (AntiVirWebService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: NBService - Nero AG - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10491 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
atieclxx
C:\Windows\System32\spoolsv.exe
"C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files (x86)\Avira\AntiVir Desktop\avfwsvc.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\SysWOW64\PnkBstrA.exe
"C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
WLIDSvcM.exe 1220
"C:\Users\Tomas\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
"C:\Program Files (x86)\RocketDock\RocketDock.exe"
"C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe" avshadowcontrol0_00000700
"C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE"
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
"C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe" -Embedding
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4456.0.1599419693\1446205096" --supports-dual-gpus=false --gpu-vendor-id=0x1002 --gpu-device-id=0x6719 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=9.12.0.0 --ignored=" --type=renderer " /prefetch:12
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=BookmarkPrompt/Control/CacheSensitivityAnalysis/No/ForceCompositingMode/thread/InfiniteCache/No/NewTabButton/default/OmniboxHQPReplaceHUPRearrangeNumComponents/Standard/OmniboxSearchSuggestTrialStarted2013Q1/16/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_65/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/default/ --extension-process --renderer-print-preview --enable-threaded-compositing --channel="4456.2.1146720273\1085460805" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=BookmarkPrompt/Control/CacheSensitivityAnalysis/No/ForceCompositingMode/thread/InfiniteCache/No/NewTabButton/default/OmniboxHQPReplaceHUPRearrangeNumComponents/Standard/OmniboxSearchSuggestTrialStarted2013Q1/16/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/SpdyCwnd/cwnd16/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_65/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --enable-threaded-compositing --channel="4456.3.733285636\1687596589" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="4456.11.2019750414\1169587024" --lang=cs --ignored=" --type=renderer " /prefetch:13
"C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file "D:\Sťahovanie\Seriály\Priatelia\S04\S04E22 - O najhorsom svedkovi.avi"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=BookmarkPrompt/Control/CacheSensitivityAnalysis/No/ForceCompositingMode/thread/InfiniteCache/No/NewTabButton/default/OmniboxHQPNewScoringMax1400/Standard/OmniboxHQPOnlyCountMatchesAtWordBoundaries/Standard/OmniboxHQPReplaceHUPRearrangeNumComponents/Standard/OmniboxSearchSuggestTrialStarted2013Q1/16/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/SpdyCwnd/cwnd16/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_65/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --enable-threaded-compositing --channel="4456.116.2026004605\1365938375" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=BookmarkPrompt/Control/CacheSensitivityAnalysis/No/ForceCompositingMode/thread/InfiniteCache/No/NewTabButton/default/OmniboxHQPNewScoringMax1400/Standard/OmniboxHQPOnlyCountMatchesAtWordBoundaries/Standard/OmniboxHQPReplaceHUPRearrangeNumComponents/Standard/OmniboxSearchSuggestTrialStarted2013Q1/16/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/SpdyCwnd/cwnd16/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_65/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --enable-threaded-compositing --channel="4456.117.1293221562\127051679" /prefetch:3
"C:\Users\Tomas\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Avira\AntiVir Desktop\update.exe" /DM="1" "/NOMESSAGEBOX"
"C:\Program Files (x86)\Avira\AntiVir Desktop\updrgui.exe"

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\AutoKMS.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2011-02-12 6718864]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2013-01-31 6304888]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-12-21 689040]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23 60568]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2011-02-12 4220304]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-01-31 4528760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-12-21 561552]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"=C:\Users\Tomas\AppData\Roaming\uTorrent\uTorrent.exe [2013-03-09 1051984]
"RocketDock"=C:\Program Files (x86)\RocketDock\RocketDock.exe [2007-09-02 495616]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-01-08 3674320]
"EADM"=C:\Program Files (x86)\Origin\Origin.exe [2013-03-26 3497552]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe [2007-03-12 153136]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2012-12-19 642808]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-12-03 946352]
"avgnt"=C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2013-03-29 345312]

C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Odmenovac.appref-ms

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2011-02-12 6718864]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2011-02-12 4220304]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2013-03-31 18:33:08 ----D---- C:\Program Files\trend micro
2013-03-31 18:33:06 ----D---- C:\rsit
2013-03-29 21:14:31 ----A---- C:\Windows\SYSWOW64\OpenAL32.dll
2013-03-29 21:14:31 ----A---- C:\Windows\SYSWOW64\mkl_blueripple.dll
2013-03-29 21:14:30 ----D---- C:\Program Files (x86)\BRS
2013-03-29 21:14:30 ----A---- C:\Windows\SYSWOW64\rapture3d_oal.dll
2013-03-29 20:49:01 ----D---- C:\Program Files (x86)\Codemasters
2013-03-29 11:39:17 ----D---- C:\Users\Tomas\AppData\Roaming\Avira
2013-03-29 11:38:41 ----A---- C:\Windows\system32\drivers\avkmgr.sys
2013-03-29 11:38:41 ----A---- C:\Windows\system32\drivers\avipbb.sys
2013-03-29 11:38:41 ----A---- C:\Windows\system32\drivers\avgntflt.sys
2013-03-29 11:38:41 ----A---- C:\Windows\system32\drivers\avfwot.sys
2013-03-29 11:38:41 ----A---- C:\Windows\system32\drivers\avfwim.sys
2013-03-29 11:38:40 ----D---- C:\ProgramData\Avira
2013-03-29 11:38:40 ----D---- C:\Program Files (x86)\Avira
2013-03-29 09:29:13 ----SD---- C:\Windows\SYSWOW64\Microsoft
2013-03-28 12:41:10 ----D---- C:\Windows\SYSWOW64\AGEIA
2013-03-28 12:41:09 ----D---- C:\Program Files (x86)\AGEIA Technologies
2013-03-28 12:25:34 ----D---- C:\Program Files (x86)\Mass Effect 2
2013-03-28 11:18:02 ----D---- C:\Program Files (x86)\PoselSmrti
2013-03-28 08:35:46 ----D---- C:\ProgramData\Codemasters
2013-03-28 08:31:28 ----D---- C:\Program Files (x86)\OpenAL
2013-03-28 08:31:28 ----A---- C:\Windows\system32\wrap_oal.dll
2013-03-28 08:31:28 ----A---- C:\Windows\system32\OpenAL32.dll
2013-03-28 08:31:27 ----RA---- C:\Windows\SYSWOW64\tmpFB40.tmp
2013-03-28 08:31:27 ----A---- C:\Windows\SYSWOW64\wrap_oal.dll
2013-03-28 08:30:16 ----D---- C:\Windows\SYSWOW64\xlive
2013-03-28 08:30:16 ----D---- C:\Program Files (x86)\Microsoft Games for Windows - LIVE
2013-03-25 08:37:59 ----D---- C:\ProgramData\Tages
2013-03-24 19:13:30 ----D---- C:\Users\Tomas\AppData\Roaming\Atari
2013-03-24 19:00:45 ----D---- C:\Games
2013-03-24 10:44:24 ----D---- C:\Users\Tomas\AppData\Roaming\Ahead
2013-03-24 10:42:44 ----D---- C:\Program Files (x86)\Nero
2013-03-22 12:30:30 ----RHD---- C:\Users\Tomas\AppData\Roaming\SecuROM
2013-03-22 12:16:17 ----D---- C:\ProgramData\Media Center Programs
2013-03-22 12:11:29 ----A---- C:\Windows\SYSWOW64\CmdLineExt_x64.dll
2013-03-22 12:05:03 ----D---- C:\Program Files (x86)\2K Games
2013-03-16 20:01:21 ----D---- C:\Users\Tomas\AppData\Roaming\Opera
2013-03-16 20:00:54 ----D---- C:\Program Files (x86)\Opera
2013-03-16 10:34:36 ----D---- C:\Hry
2013-03-16 10:27:59 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2013-03-16 10:14:18 ----D---- C:\Program Files (x86)\dumps
2013-03-16 10:07:57 ----D---- C:\Program Files (x86)\Photoshop
2013-03-16 08:39:59 ----D---- C:\ProgramData\EA Core
2013-03-16 08:39:50 ----D---- C:\ProgramData\EA Logs
2013-03-15 10:44:32 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2013-03-15 10:44:32 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2013-03-15 10:44:32 ----A---- C:\Windows\system32\d3dx10_40.dll
2013-03-15 10:44:32 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2013-03-15 10:44:29 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2013-03-15 10:44:29 ----A---- C:\Windows\system32\D3DX9_40.dll
2013-03-15 10:20:40 ----D---- C:\Users\Tomas\AppData\Roaming\Origin
2013-03-15 10:20:16 ----D---- C:\ProgramData\Origin
2013-03-15 10:20:16 ----D---- C:\ProgramData\Electronic Arts
2013-03-15 10:20:16 ----D---- C:\Program Files (x86)\Origin Games
2013-03-15 10:20:00 ----D---- C:\Program Files (x86)\Origin
2013-03-13 20:54:47 ----D---- C:\Program Files (x86)\Adobe
2013-03-13 20:50:09 ----D---- C:\ProgramData\Adobe
2013-03-13 12:05:10 ----D---- C:\Users\Tomas\AppData\Roaming\Nero
2013-03-13 12:04:31 ----D---- C:\Users\Tomas\AppData\Roaming\Macromedia
2013-03-13 11:53:24 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-03-13 11:53:21 ----D---- C:\Windows\system32\Macromed
2013-03-13 11:50:00 ----D---- C:\ProgramData\LightScribe
2013-03-13 11:49:29 ----D---- C:\ProgramData\Nero
2013-03-13 11:42:22 ----D---- C:\Users\Tomas\AppData\Roaming\Adobe
2013-03-13 10:06:25 ----D---- C:\Windows\SYSWOW64\Macromed
2013-03-10 08:52:18 ----D---- C:\Windows\AutoKMS
2013-03-10 08:45:34 ----D---- C:\Program Files (x86)\Microsoft Synchronization Services
2013-03-10 08:45:16 ----D---- C:\Windows\PCHEALTH
2013-03-10 08:45:16 ----D---- C:\Program Files (x86)\Microsoft Sync Framework
2013-03-10 08:45:16 ----D---- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2013-03-10 08:43:44 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2013-03-10 08:43:19 ----D---- C:\Program Files\Microsoft Office
2013-03-10 08:42:58 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2013-03-10 08:42:27 ----D---- C:\ProgramData\Microsoft Help
2013-03-10 08:42:27 ----D---- C:\Program Files (x86)\Microsoft Office
2013-03-10 08:42:15 ----RHD---- C:\MSOCache
2013-03-09 23:19:32 ----D---- C:\Users\Tomas\AppData\Roaming\DVDVideoSoft
2013-03-09 23:19:32 ----D---- C:\Program Files (x86)\DVDVideoSoft
2013-03-09 21:52:47 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2013-03-09 21:52:17 ----A---- C:\Windows\SYSWOW64\PnkBstrA.exe
2013-03-09 19:17:51 ----D---- C:\Program Files (x86)\Battlelog Web Plugins
2013-03-09 17:10:16 ----D---- C:\ProgramData\Steam
2013-03-09 17:07:41 ----D---- C:\ProgramData\Orbit
2013-03-09 16:58:25 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2013-03-09 16:58:25 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2013-03-09 16:58:25 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2013-03-09 16:58:25 ----A---- C:\Windows\system32\XAudio2_7.dll
2013-03-09 16:58:25 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2013-03-09 16:58:25 ----A---- C:\Windows\system32\xactengine3_7.dll
2013-03-09 16:58:24 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2013-03-09 16:58:24 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2013-03-09 16:58:23 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2013-03-09 16:58:23 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2013-03-09 16:58:23 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2013-03-09 16:58:23 ----A---- C:\Windows\system32\d3dx11_43.dll
2013-03-09 16:58:23 ----A---- C:\Windows\system32\d3dx10_43.dll
2013-03-09 16:58:23 ----A---- C:\Windows\system32\d3dcsx_43.dll
2013-03-09 16:58:22 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2013-03-09 16:58:22 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2013-03-09 16:58:22 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2013-03-09 16:58:22 ----A---- C:\Windows\system32\XAudio2_6.dll
2013-03-09 16:58:22 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2013-03-09 16:58:22 ----A---- C:\Windows\system32\D3DX9_43.dll
2013-03-09 16:58:21 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2013-03-09 16:58:21 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2013-03-09 16:58:21 ----A---- C:\Windows\system32\xactengine3_6.dll
2013-03-09 16:58:21 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2013-03-09 16:58:20 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2013-03-09 16:58:20 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2013-03-09 16:58:20 ----A---- C:\Windows\system32\XAudio2_5.dll
2013-03-09 16:58:20 ----A---- C:\Windows\system32\xactengine3_5.dll
2013-03-09 16:58:19 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2013-03-09 16:58:19 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2013-03-09 16:58:18 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2013-03-09 16:58:18 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2013-03-09 16:58:18 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2013-03-09 16:58:18 ----A---- C:\Windows\system32\d3dx11_42.dll
2013-03-09 16:58:18 ----A---- C:\Windows\system32\d3dx10_42.dll
2013-03-09 16:58:18 ----A---- C:\Windows\system32\d3dcsx_42.dll
2013-03-09 16:58:17 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2013-03-09 16:58:17 ----A---- C:\Windows\system32\D3DX9_42.dll
2013-03-09 16:58:15 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2013-03-09 16:58:15 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2013-03-09 16:58:15 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2013-03-09 16:58:15 ----A---- C:\Windows\system32\D3DX9_41.dll
2013-03-09 16:58:15 ----A---- C:\Windows\system32\d3dx10_41.dll
2013-03-09 16:58:15 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2013-03-09 16:58:14 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2013-03-09 16:58:14 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2013-03-09 16:58:14 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2013-03-09 16:58:14 ----A---- C:\Windows\system32\XAudio2_4.dll
2013-03-09 16:58:14 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2013-03-09 16:58:14 ----A---- C:\Windows\system32\xactengine3_4.dll
2013-03-09 16:58:13 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2013-03-09 16:58:13 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2013-03-09 16:58:11 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2013-03-09 16:58:11 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2013-03-09 16:58:11 ----A---- C:\Windows\system32\XAudio2_3.dll
2013-03-09 16:58:11 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2013-03-09 16:58:09 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2013-03-09 16:58:09 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2013-03-09 16:58:09 ----A---- C:\Windows\system32\xactengine3_3.dll
2013-03-09 16:58:09 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2013-03-09 16:58:08 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2013-03-09 16:58:08 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2013-03-09 16:58:08 ----A---- C:\Windows\system32\XAudio2_2.dll
2013-03-09 16:58:08 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2013-03-09 16:58:07 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2013-03-09 16:58:07 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2013-03-09 16:58:07 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2013-03-09 16:58:07 ----A---- C:\Windows\system32\xactengine3_2.dll
2013-03-09 16:58:07 ----A---- C:\Windows\system32\d3dx10_39.dll
2013-03-09 16:58:07 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2013-03-09 16:58:06 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2013-03-09 16:58:06 ----A---- C:\Windows\system32\D3DX9_39.dll
2013-03-09 16:58:05 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2013-03-09 16:58:05 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2013-03-09 16:58:05 ----A---- C:\Windows\system32\XAudio2_1.dll
2013-03-09 16:58:05 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2013-03-09 16:58:04 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2013-03-09 16:58:04 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2013-03-09 16:58:04 ----A---- C:\Windows\system32\xactengine3_1.dll
2013-03-09 16:58:04 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2013-03-09 16:58:03 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2013-03-09 16:58:03 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2013-03-09 16:58:03 ----A---- C:\Windows\system32\d3dx10_38.dll
2013-03-09 16:58:03 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2013-03-09 16:58:02 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2013-03-09 16:58:02 ----A---- C:\Windows\system32\D3DX9_38.dll
2013-03-09 16:58:00 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2013-03-09 16:58:00 ----A---- C:\Windows\system32\XAudio2_0.dll
2013-03-09 16:57:57 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2013-03-09 16:57:57 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2013-03-09 16:57:57 ----A---- C:\Windows\system32\xactengine3_0.dll
2013-03-09 16:57:57 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2013-03-09 16:57:55 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2013-03-09 16:57:55 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2013-03-09 16:57:55 ----A---- C:\Windows\system32\d3dx10_37.dll
2013-03-09 16:57:55 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2013-03-09 16:57:54 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2013-03-09 16:57:54 ----A---- C:\Windows\system32\D3DX9_37.dll
2013-03-09 16:57:53 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2013-03-09 16:57:53 ----A---- C:\Windows\system32\xactengine2_10.dll
2013-03-09 16:57:52 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2013-03-09 16:57:52 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2013-03-09 16:57:52 ----A---- C:\Windows\system32\d3dx10_36.dll
2013-03-09 16:57:52 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2013-03-09 16:57:50 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2013-03-09 16:57:50 ----A---- C:\Windows\system32\d3dx9_36.dll
2013-03-09 16:57:48 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2013-03-09 16:57:48 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2013-03-09 16:57:48 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2013-03-09 16:57:48 ----A---- C:\Windows\system32\xactengine2_9.dll
2013-03-09 16:57:48 ----A---- C:\Windows\system32\d3dx10_35.dll
2013-03-09 16:57:48 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2013-03-09 16:57:47 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2013-03-09 16:57:47 ----A---- C:\Windows\system32\d3dx9_35.dll
2013-03-09 16:57:46 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2013-03-09 16:57:46 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2013-03-09 16:57:46 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2013-03-09 16:57:46 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2013-03-09 16:57:46 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2013-03-09 16:57:46 ----A---- C:\Windows\system32\xactengine2_8.dll
2013-03-09 16:57:46 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2013-03-09 16:57:46 ----A---- C:\Windows\system32\d3dx9_34.dll
2013-03-09 16:57:46 ----A---- C:\Windows\system32\d3dx10_34.dll
2013-03-09 16:57:46 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2013-03-09 16:57:45 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2013-03-09 16:57:45 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2013-03-09 16:57:45 ----A---- C:\Windows\system32\xinput1_3.dll
2013-03-09 16:57:45 ----A---- C:\Windows\system32\xactengine2_7.dll
2013-03-09 16:57:43 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2013-03-09 16:57:43 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2013-03-09 16:57:43 ----A---- C:\Windows\system32\d3dx10_33.dll
2013-03-09 16:57:43 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2013-03-09 16:57:42 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2013-03-09 16:57:42 ----A---- C:\Windows\system32\d3dx9_33.dll
2013-03-09 16:57:41 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2013-03-09 16:57:41 ----A---- C:\Windows\system32\xactengine2_6.dll
2013-03-09 16:57:39 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2013-03-09 16:57:39 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2013-03-09 16:57:39 ----A---- C:\Windows\system32\xactengine2_5.dll
2013-03-09 16:57:39 ----A---- C:\Windows\system32\d3dx10.dll
2013-03-09 16:57:38 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2013-03-09 16:57:38 ----A---- C:\Windows\system32\d3dx9_32.dll
2013-03-09 16:57:37 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2013-03-09 16:57:37 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2013-03-09 16:57:37 ----A---- C:\Windows\system32\xactengine2_4.dll
2013-03-09 16:57:37 ----A---- C:\Windows\system32\x3daudio1_1.dll
2013-03-09 16:57:36 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2013-03-09 16:57:36 ----A---- C:\Windows\system32\d3dx9_31.dll
2013-03-09 16:57:34 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2013-03-09 16:57:34 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2013-03-09 16:57:34 ----A---- C:\Windows\system32\xinput1_2.dll
2013-03-09 16:57:34 ----A---- C:\Windows\system32\xactengine2_3.dll
2013-03-09 16:57:31 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2013-03-09 16:57:31 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2013-03-09 16:57:31 ----A---- C:\Windows\system32\xinput1_1.dll
2013-03-09 16:57:31 ----A---- C:\Windows\system32\xactengine2_2.dll
2013-03-09 16:57:28 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2013-03-09 16:57:28 ----A---- C:\Windows\system32\xactengine2_1.dll
2013-03-09 16:57:26 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2013-03-09 16:57:26 ----A---- C:\Windows\system32\d3dx9_30.dll
2013-03-09 16:57:24 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2013-03-09 16:57:24 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2013-03-09 16:57:24 ----A---- C:\Windows\system32\xactengine2_0.dll
2013-03-09 16:57:24 ----A---- C:\Windows\system32\x3daudio1_0.dll
2013-03-09 16:57:23 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2013-03-09 16:57:23 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2013-03-09 16:57:23 ----A---- C:\Windows\system32\d3dx9_29.dll
2013-03-09 16:57:23 ----A---- C:\Windows\system32\d3dx9_28.dll
2013-03-09 16:57:22 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2013-03-09 16:57:22 ----A---- C:\Windows\system32\d3dx9_27.dll
2013-03-09 16:57:20 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2013-03-09 16:57:20 ----A---- C:\Windows\system32\d3dx9_26.dll
2013-03-09 16:57:14 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2013-03-09 16:57:14 ----A---- C:\Windows\system32\d3dx9_25.dll
2013-03-09 16:57:13 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2013-03-09 16:57:13 ----A---- C:\Windows\system32\d3dx9_24.dll
2013-03-09 16:46:24 ----D---- C:\Windows\SYSWOW64\directx
2013-03-09 16:22:57 ----D---- C:\ProgramData\Ubisoft
2013-03-09 13:55:57 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-03-09 13:05:39 ----D---- C:\Program Files\WinPcap
2013-03-09 13:03:34 ----D---- C:\Users\Tomas\AppData\Roaming\ATI
2013-03-09 13:03:34 ----D---- C:\ProgramData\ATI
2013-03-09 12:58:27 ----D---- C:\Program Files (x86)\Microsoft.NET
2013-03-09 12:57:53 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2013-03-09 12:57:53 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2013-03-09 12:57:53 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2013-03-09 12:57:53 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2013-03-09 12:57:53 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2013-03-09 12:57:53 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2013-03-09 12:57:53 ----A---- C:\Windows\system32\netfxperf.dll
2013-03-09 12:57:53 ----A---- C:\Windows\system32\dfshim.dll
2013-03-09 12:57:52 ----A---- C:\Windows\system32\PresentationHost.exe
2013-03-09 12:57:52 ----A---- C:\Windows\system32\mscoree.dll
2013-03-09 12:52:42 ----D---- C:\Users\Tomas\AppData\Roaming\vlc
2013-03-09 12:52:13 ----D---- C:\Program Files (x86)\VideoLAN
2013-03-09 12:50:45 ----D---- C:\Users\Tomas\AppData\Roaming\WinRAR
2013-03-09 12:50:43 ----D---- C:\Program Files\WinRAR
2013-03-09 12:44:32 ----D---- C:\Users\Tomas\AppData\Roaming\Skype
2013-03-09 12:44:28 ----RD---- C:\Program Files (x86)\Skype
2013-03-09 12:44:23 ----D---- C:\ProgramData\Skype
2013-03-09 12:39:08 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2013-03-09 12:39:06 ----D---- C:\Users\Tomas\AppData\Roaming\DAEMON Tools Lite
2013-03-09 12:39:04 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2013-03-09 12:38:04 ----D---- C:\ProgramData\DAEMON Tools Lite
2013-03-09 12:30:41 ----D---- C:\Program Files\CCleaner
2013-03-09 12:26:27 ----D---- C:\Program Files (x86)\RocketDock
2013-03-09 12:25:00 ----D---- C:\Users\Tomas\AppData\Roaming\uTorrent
2013-03-09 12:17:09 ----N---- C:\Windows\system32\MpSigStub.exe
2013-03-09 11:53:24 ----D---- C:\Program Files (x86)\AMD AVT
2013-03-09 11:53:22 ----D---- C:\Program Files (x86)\AMD APP
2013-03-09 11:53:17 ----D---- C:\Program Files\Common Files\ATI Technologies
2013-03-09 11:52:41 ----D---- C:\ProgramData\AMD
2013-03-09 11:52:13 ----D---- C:\Program Files (x86)\ATI Technologies
2013-03-09 11:51:55 ----D---- C:\Program Files\ATI Technologies
2013-03-09 11:51:54 ----D---- C:\Program Files\ATI
2013-03-09 11:51:33 ----A---- C:\Windows\system32\drivers\aswKbd.sys
2013-03-09 11:50:42 ----D---- C:\AMD
2013-03-09 11:48:37 ----D---- C:\Program Files (x86)\Google
2013-03-09 11:48:30 ----A---- C:\Windows\system32\aswBoot.exe
2013-03-09 11:48:08 ----SHD---- C:\Windows\Installer
2013-03-09 11:46:59 ----D---- C:\ProgramData\AVAST Software
2013-03-09 11:45:36 ----D---- C:\Windows\SoftwareDistribution
2013-03-09 11:43:42 ----D---- C:\Users\Tomas\AppData\Roaming\Identities
2013-03-09 11:43:29 ----SD---- C:\Users\Tomas\AppData\Roaming\Microsoft
2013-03-09 11:43:29 ----D---- C:\Users\Tomas\AppData\Roaming\Media Center Programs
2013-03-09 11:41:19 ----SHD---- C:\Recovery
2013-03-09 11:41:19 ----SHD---- C:\ProgramData\Šablony
2013-03-09 11:41:19 ----SHD---- C:\ProgramData\Plocha
2013-03-09 11:41:19 ----SHD---- C:\ProgramData\Oblíbené položky
2013-03-09 11:41:19 ----SHD---- C:\ProgramData\Nabídka Start
2013-03-09 11:41:19 ----SHD---- C:\ProgramData\Dokumenty
2013-03-09 11:41:19 ----SHD---- C:\ProgramData\Data aplikací
2013-03-09 11:32:27 ----D---- C:\Windows\Prefetch
2013-03-09 11:32:04 ----ASH---- C:\pagefile.sys
2013-03-09 11:32:04 ----ASH---- C:\hiberfil.sys
2013-03-09 11:32:03 ----SHD---- C:\System Volume Information
2013-03-09 11:24:44 ----D---- C:\Windows\Panther
2013-03-09 11:24:31 ----RASH---- C:\BOOTSECT.BAK
2013-03-09 11:24:29 ----SHD---- C:\Boot

======List of files/folders modified in the last 1 months======

2013-03-31 18:33:16 ----D---- C:\Windows\Temp
2013-03-31 18:33:08 ----RD---- C:\Program Files
2013-03-31 08:32:46 ----D---- C:\Windows\System32
2013-03-31 08:32:46 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-03-31 08:32:45 ----D---- C:\Windows\inf
2013-03-29 21:14:31 ----D---- C:\Windows\SysWOW64
2013-03-29 21:14:30 ----RD---- C:\Program Files (x86)
2013-03-29 21:10:10 ----RSD---- C:\Windows\assembly
2013-03-29 20:54:22 ----D---- C:\Windows\Logs
2013-03-29 17:19:07 ----SD---- C:\ProgramData\Microsoft
2013-03-29 11:39:10 ----D---- C:\Windows\system32\drivers
2013-03-29 11:39:09 ----D---- C:\Windows\system32\catroot
2013-03-29 11:39:01 ----D---- C:\Windows\system32\DriverStore
2013-03-29 11:38:40 ----HD---- C:\ProgramData
2013-03-29 09:35:20 ----D---- C:\Windows\system32\catroot2
2013-03-29 09:29:18 ----D---- C:\Windows
2013-03-29 09:29:16 ----D---- C:\Windows\system32\Tasks
2013-03-29 08:55:05 ----D---- C:\Windows\Tasks
2013-03-28 12:40:57 ----D---- C:\Program Files (x86)\Common Files
2013-03-28 08:39:33 ----D---- C:\Windows\system32\config
2013-03-28 08:31:11 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-03-28 08:29:20 ----D---- C:\Windows\winsxs
2013-03-24 10:44:01 ----D---- C:\Windows\ehome
2013-03-16 12:37:57 ----D---- C:\Program Files\Common Files
2013-03-16 10:17:03 ----RSD---- C:\Windows\Fonts
2013-03-13 11:55:41 ----D---- C:\Windows\Cursors
2013-03-11 23:08:58 ----D---- C:\Windows\Microsoft.NET
2013-03-10 09:47:09 ----D---- C:\Windows\system32\LogFiles
2013-03-10 08:50:21 ----A---- C:\Windows\win.ini
2013-03-10 08:46:02 ----D---- C:\Windows\ShellNew
2013-03-10 08:45:53 ----D---- C:\Program Files (x86)\MSBuild
2013-03-10 00:00:38 ----D---- C:\Windows\system32\wdi
2013-03-09 13:30:54 ----D---- C:\Windows\system32\drivers\UMDF
2013-03-09 12:58:28 ----D---- C:\Windows\SYSWOW64\en-US
2013-03-09 12:58:28 ----D---- C:\Windows\system32\en-US
2013-03-09 11:53:14 ----D---- C:\Windows\system32\CodeIntegrity
2013-03-09 11:47:36 ----D---- C:\Windows\system32\restore
2013-03-09 11:43:40 ----SHD---- C:\$Recycle.Bin
2013-03-09 11:43:28 ----RD---- C:\Users
2013-03-09 11:41:19 ----D---- C:\Program Files\Windows NT
2013-03-09 11:39:45 ----D---- C:\Windows\rescache
2013-03-09 11:39:13 ----D---- C:\Windows\debug
2013-03-09 11:35:19 ----D---- C:\Windows\system32\sysprep
2013-03-09 11:32:40 ----D---- C:\Windows\CSC
2013-03-09 11:24:15 ----D---- C:\Windows\Setup

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 214096]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2013-03-07 22600]
R1 avfwot;avfwot; C:\Windows\system32\DRIVERS\avfwot.sys [2013-03-29 141376]
R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2013-03-29 130016]
R1 avkmgr;avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [2013-03-29 28600]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 514048]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-03-09 283200]
R2 AODDriver4.2;AODDriver4.2; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2012-04-09 57472]
R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [2013-03-29 100712]
R2 npf;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2011-02-11 35344]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2012-12-19 11278336]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2012-12-19 552960]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2012-11-06 96256]
R3 avfwim;AvFw Packet Filter Miniport; C:\Windows\system32\DRIVERS\avfwim.sys [2013-03-29 114608]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x64.sys [2009-06-10 408960]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2009-07-14 165376]
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 6656]
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 34896]
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 200272]
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 21760]
S3 xnacc;Služba ovladače pro řadič XBOX 360 pro systém Windows; C:\Windows\system32\DRIVERS\xnacc.sys [2009-07-14 679936]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-12-18 65192]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2012-12-19 240640]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2012-12-19 361984]
R2 AntiVirFirewallService;Avira FireWall; C:\Program Files (x86)\Avira\AntiVir Desktop\avfwsvc.exe [2013-03-29 657120]
R2 AntiVirMailService;Avira Mail Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc.exe [2013-03-29 374496]
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2013-03-29 110816]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2013-03-29 86752]
R2 AntiVirWebService;Avira Web Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [2013-03-29 565472]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2013-03-16 76888]
R2 Skype C2C Service;Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-01-31 3289208]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 2291568]
R3 NMIndexingService;NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [2007-03-12 271920]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-03-09 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-02-07 161384]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-03-13 253656]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-03-09 116648]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2010-12-28 31124344]
S3 NBService;NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-01-15 774144]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]

-----------------EOF-----------------

Re: Veľmi vysoké využitie RAM

Napsal: 31 bře 2013 17:25
od Rudy
Také zdravím!
Toto ale není hw problém. RAM vám zatěžuje nějaký soft, který neustále pracuje. Dejte log RSIT: http://www.viry.cz/forum/viewtopic.php?f=13&t=105895 . Vlákno přesouvám do správné sekce.

Re: Veľmi vysoké využitie RAM

Napsal: 01 dub 2013 08:43
od Márty84
Zdravim :)

Omlouvam se Rudy za vstup :oops:


LemmY
Jelikoz jste editoval svuj prispevek, Rudy se neozval. Neukaze se nam to totiz jako novy prispevek, cili neni duvod tema rozkliknout. Ted uz to uvidi, kdyz jsem napsal ja :D

A nez se dostane k pc, udelejte krok s OTL

:arrow: Stahnete OTL http://oldtimer.geekstogo.com/OTL.exe a ulozte na plochu.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce
Oznacte polozky (dejte tam zatrzitka) Pro všechny uživatele, Kontrola na havěť "LOP" a Kontrola na havěť "Purity"
Do spodniho okna vlozte nasledujici text

Kód: Vybrat vše

CREATERESTOREPOINT

netsvcs
drivers32
savembr:0

/md5start
adp3132.sys
AGP440.sys
ahcix86.sys
ahcix86s.sys
atapi.sys
autochk.exe
cdrom.sys
cngaudit.dll
cryptsvc.dll
eNetHook.dll
eventlog.dll
explorer.exe
hal.dll
Changer.sys
iaStor.sys
iastorv.sys
IdeChnDr.sys
isapnp.sys
JakNDis.sys
KR10N.sys
logevent.dll
lsass.exe
mv61xx.sys
ndis.sys
netlogon.dll
ntelogon.dll
nvata.sys
nvatabus.sys
nvgts.sys
nvraid.sys
nvrd32.sys
nvstor.sys
nvstor32.sys
scecli.dll
sceclt.dll
smss.exe
svchost.exe
symmpi.sys
tcpip.sys
userinit.exe
vaxscsi.sys
viamraid.sys
viasraid.sys
ViPrt.sys
winlogon.exe
ws2_32.dll
/md5stop

%systemroot%*.* /U /s
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
%SYSTEMDRIVE%\*.exe

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c

type c:\boot.ini >> test.txt /c
%SystemDrive%\PhysicalMBR.bin /md5

*crack* /s
*keygen* /s
*loader* /s
*minodlogin* /s
*tnod* /s
*AutoKMS* /s
*activator* /s
*serial* /s
*w7lxe* /s
Kliknete na Prohledat
Po skenu se vytvori dva logy (OTL.Txt a Extras.txt), oba sem vlozte (kdyz budou dlouhe, rozdelte je do vice prispevku).

Re: Veľmi vysoké využitie RAM

Napsal: 01 dub 2013 10:48
od LemmY
OTL logfile created on: 1. 4. 2013 11:22:47 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Tomas\Desktop
64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 0000041b | Country: Slovenská republika | Language: SKY | Date Format: d. M. yyyy

8,00 Gb Total Physical Memory | 4,25 Gb Available Physical Memory | 53,08% Memory free
16,00 Gb Paging File | 13,63 Gb Available in Paging File | 85,19% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 298,09 Gb Total Space | 181,01 Gb Free Space | 60,72% Space Free | Partition Type: NTFS
Drive D: | 1863,01 Gb Total Space | 1480,98 Gb Free Space | 79,49% Space Free | Partition Type: NTFS
Drive E: | 4,21 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF

Computer Name: TOMAS-PC | User Name: Tomas | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2013/04/01 11:16:00 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Tomas\Desktop\OTL.exe
PRC - [2013/03/29 11:35:39 | 000,086,752 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
PRC - [2013/03/29 11:35:17 | 000,565,472 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avwebgrd.exe
PRC - [2013/03/29 11:35:15 | 000,374,496 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc.exe
PRC - [2013/03/29 11:35:13 | 000,345,312 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
PRC - [2013/03/29 11:35:13 | 000,110,816 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
PRC - [2013/03/29 11:35:12 | 000,657,120 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avfwsvc.exe
PRC - [2013/03/16 08:44:55 | 000,076,888 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrA.exe
PRC - [2013/03/11 02:22:07 | 001,274,320 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
PRC - [2013/03/09 12:25:42 | 001,051,984 | ---- | M] (BitTorrent Inc.) -- C:\Users\Tomas\AppData\Roaming\uTorrent\uTorrent.exe
PRC - [2013/01/31 11:38:54 | 003,289,208 | ---- | M] (Skype Technologies S.A.) -- C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
PRC - [2012/12/18 21:08:28 | 000,065,192 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2012/12/13 02:12:58 | 000,108,544 | ---- | M] (VideoLAN) -- C:\Program Files (x86)\VideoLAN\VLC\vlc.exe
PRC - [2007/09/02 14:58:52 | 000,495,616 | ---- | M] () -- C:\Program Files (x86)\RocketDock\RocketDock.exe
PRC - [2007/03/12 14:49:46 | 001,209,904 | ---- | M] (Nero AG) -- C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
PRC - [2007/03/12 14:49:26 | 000,153,136 | ---- | M] (Nero AG) -- C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe


========== Modules (No Company Name) ==========

MOD - [2013/03/11 02:22:06 | 000,459,728 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\25.0.1364.172\ppgooglenaclpluginchrome.dll
MOD - [2013/03/11 02:22:05 | 012,662,224 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\25.0.1364.172\PepperFlash\pepflashplayer.dll
MOD - [2013/03/11 02:22:04 | 004,050,896 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\25.0.1364.172\pdf.dll
MOD - [2013/03/11 02:21:18 | 000,596,944 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\25.0.1364.172\libglesv2.dll
MOD - [2013/03/11 02:21:18 | 000,124,368 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\25.0.1364.172\libegl.dll
MOD - [2013/03/11 02:21:16 | 001,552,848 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\25.0.1364.172\ffmpegsumo.dll
MOD - [2012/12/13 02:13:36 | 011,998,720 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\gui\libqt4_plugin.dll
MOD - [2012/12/13 02:13:36 | 002,286,592 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\libvlccore.dll
MOD - [2012/12/13 02:13:36 | 000,087,040 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\packetizer\libpacketizer_h264_plugin.dll
MOD - [2012/12/13 02:13:36 | 000,057,344 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\packetizer\libpacketizer_mpeg4audio_plugin.dll
MOD - [2012/12/13 02:13:36 | 000,051,712 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\packetizer\libpacketizer_dirac_plugin.dll
MOD - [2012/12/13 02:13:36 | 000,046,592 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\packetizer\libpacketizer_vc1_plugin.dll
MOD - [2012/12/13 02:13:36 | 000,045,568 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\packetizer\libpacketizer_mpegvideo_plugin.dll
MOD - [2012/12/13 02:13:36 | 000,044,032 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\packetizer\libpacketizer_flac_plugin.dll
MOD - [2012/12/13 02:13:36 | 000,043,008 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\packetizer\libpacketizer_mpeg4video_plugin.dll
MOD - [2012/12/13 02:13:36 | 000,042,496 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\packetizer\libpacketizer_mlp_plugin.dll
MOD - [2012/12/13 02:13:32 | 000,386,560 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libtheora_plugin.dll
MOD - [2012/12/13 02:13:32 | 000,185,856 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libpng_plugin.dll
MOD - [2012/12/13 02:13:32 | 000,051,200 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_output\libwaveout_plugin.dll
MOD - [2012/12/13 02:13:32 | 000,049,664 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_output\libaout_directx_plugin.dll
MOD - [2012/12/13 02:13:32 | 000,043,008 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libdts_plugin.dll
MOD - [2012/12/13 02:13:32 | 000,038,400 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libcdg_plugin.dll
MOD - [2012/12/13 02:13:30 | 001,888,256 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\liblibass_plugin.dll
MOD - [2012/12/13 02:13:30 | 001,719,296 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libvorbis_plugin.dll
MOD - [2012/12/13 02:13:30 | 001,318,912 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libschroedinger_plugin.dll
MOD - [2012/12/13 02:13:30 | 000,310,784 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libopus_plugin.dll
MOD - [2012/12/13 02:13:30 | 000,043,008 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\liblpcm_plugin.dll
MOD - [2012/12/13 02:13:30 | 000,042,496 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libspudec_plugin.dll
MOD - [2012/12/13 02:13:30 | 000,041,472 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libmpeg_audio_plugin.dll
MOD - [2012/12/13 02:13:30 | 000,040,960 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libcvdsub_plugin.dll
MOD - [2012/12/13 02:13:30 | 000,040,448 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\liba52_plugin.dll
MOD - [2012/12/13 02:13:30 | 000,037,376 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libaes3_plugin.dll
MOD - [2012/12/13 02:13:28 | 009,263,616 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libavcodec_plugin.dll
MOD - [2012/12/13 02:13:28 | 000,372,224 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libfaad_plugin.dll
MOD - [2012/12/13 02:13:28 | 000,265,216 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libflac_plugin.dll
MOD - [2012/12/13 02:13:28 | 000,038,912 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libsvcdsub_plugin.dll
MOD - [2012/12/13 02:13:24 | 000,379,392 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libswscale_plugin.dll
MOD - [2012/12/13 02:13:24 | 000,263,168 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libfluidsynth_plugin.dll
MOD - [2012/12/13 02:13:24 | 000,154,624 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libspeex_plugin.dll
MOD - [2012/12/13 02:13:24 | 000,051,200 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\control\libhotkeys_plugin.dll
MOD - [2012/12/13 02:13:24 | 000,051,200 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libaraw_plugin.dll
MOD - [2012/12/13 02:13:24 | 000,037,888 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\control\libglobalhotkeys_plugin.dll
MOD - [2012/12/13 02:13:24 | 000,037,376 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\librawvideo_plugin.dll
MOD - [2012/12/13 02:13:24 | 000,034,816 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libyuvp_plugin.dll
MOD - [2012/12/13 02:13:24 | 000,033,792 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_mixer\libfloat32_mixer_plugin.dll
MOD - [2012/12/13 02:13:20 | 000,310,784 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\lua\liblua_plugin.dll
MOD - [2012/12/13 02:13:20 | 000,182,272 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libdtstofloat32_plugin.dll
MOD - [2012/12/13 02:13:20 | 000,068,608 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\liba52tofloat32_plugin.dll
MOD - [2012/12/13 02:13:20 | 000,045,568 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libaudio_format_plugin.dll
MOD - [2012/12/13 02:13:20 | 000,036,864 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libdtstospdif_plugin.dll
MOD - [2012/12/13 02:13:20 | 000,036,864 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libconverter_fixed_plugin.dll
MOD - [2012/12/13 02:13:20 | 000,035,840 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libscale_plugin.dll
MOD - [2012/12/13 02:13:18 | 001,544,192 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\meta_engine\libtaglib_plugin.dll
MOD - [2012/12/13 02:13:18 | 001,518,080 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libsamplerate_plugin.dll
MOD - [2012/12/13 02:13:18 | 000,135,168 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libmpgatofixed32_plugin.dll
MOD - [2012/12/13 02:13:18 | 000,040,960 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libscaletempo_plugin.dll
MOD - [2012/12/13 02:13:18 | 000,038,400 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libsimple_channel_mixer_plugin.dll
MOD - [2012/12/13 02:13:18 | 000,036,352 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libdolby_surround_decoder_plugin.dll
MOD - [2012/12/13 02:13:18 | 000,035,328 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libugly_resampler_plugin.dll
MOD - [2012/12/13 02:13:18 | 000,034,816 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\liba52tospdif_plugin.dll
MOD - [2012/12/13 02:13:14 | 001,238,016 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\misc\libxml_plugin.dll
MOD - [2012/12/13 02:13:14 | 000,037,376 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\mmxext\libmemcpymmxext_plugin.dll
MOD - [2012/12/13 02:13:12 | 000,703,488 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\text_renderer\libfreetype_plugin.dll
MOD - [2012/12/13 02:13:12 | 000,077,824 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\mmx\libi420_rgb_mmx_plugin.dll
MOD - [2012/12/13 02:13:12 | 000,056,320 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libi420_rgb_plugin.dll
MOD - [2012/12/13 02:13:12 | 000,044,032 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\mmx\libi420_yuy2_mmx_plugin.dll
MOD - [2012/12/13 02:13:12 | 000,042,496 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libi420_yuy2_plugin.dll
MOD - [2012/12/13 02:13:12 | 000,041,984 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\mmx\libi422_yuy2_mmx_plugin.dll
MOD - [2012/12/13 02:13:12 | 000,040,960 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libyuy2_i422_plugin.dll
MOD - [2012/12/13 02:13:12 | 000,036,864 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libi422_i420_plugin.dll
MOD - [2012/12/13 02:13:10 | 000,139,264 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\sse2\libi420_rgb_sse2_plugin.dll
MOD - [2012/12/13 02:13:10 | 000,070,656 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\video_output\libdirect3d_plugin.dll
MOD - [2012/12/13 02:13:10 | 000,070,144 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\video_output\libdirectx_plugin.dll
MOD - [2012/12/13 02:13:10 | 000,052,224 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\sse2\libi420_yuy2_sse2_plugin.dll
MOD - [2012/12/13 02:13:10 | 000,050,688 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\sse2\libi422_yuy2_sse2_plugin.dll
MOD - [2012/12/13 02:13:10 | 000,044,544 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libyuy2_i420_plugin.dll
MOD - [2012/12/13 02:13:10 | 000,040,960 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libi422_yuy2_plugin.dll
MOD - [2012/12/13 02:13:10 | 000,036,352 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libgrey_yuv_plugin.dll
MOD - [2012/12/13 02:13:06 | 000,258,560 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libdvdnav_plugin.dll
MOD - [2012/12/13 02:13:06 | 000,219,648 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libdshow_plugin.dll
MOD - [2012/12/13 02:13:06 | 000,157,696 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\access\liblibbluray_plugin.dll
MOD - [2012/12/13 02:13:06 | 000,083,968 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libzip_plugin.dll
MOD - [2012/12/13 02:13:06 | 000,047,616 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libaccess_vdr_plugin.dll
MOD - [2012/12/13 02:13:06 | 000,043,520 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libfilesystem_plugin.dll
MOD - [2012/12/13 02:13:04 | 000,093,696 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libaccess_bd_plugin.dll
MOD - [2012/12/13 02:13:04 | 000,045,568 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libflacsys_plugin.dll
MOD - [2012/12/13 02:13:04 | 000,038,912 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libstream_filter_rar_plugin.dll
MOD - [2012/12/13 02:13:02 | 000,106,496 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libplaylist_plugin.dll
MOD - [2012/12/13 02:13:02 | 000,092,160 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libavi_plugin.dll
MOD - [2012/12/13 02:13:02 | 000,044,544 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libes_plugin.dll
MOD - [2012/12/13 02:13:00 | 000,198,656 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libmp4_plugin.dll
MOD - [2012/12/13 02:13:00 | 000,073,728 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libasf_plugin.dll
MOD - [2012/12/13 02:12:58 | 000,724,992 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_filter\libstream_filter_dash_plugin.dll
MOD - [2012/12/13 02:12:58 | 000,440,320 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_filter\libstream_filter_httplive_plugin.dll
MOD - [2012/12/13 02:12:58 | 000,111,104 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\libvlc.dll
MOD - [2012/12/13 02:12:58 | 000,035,840 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_filter\libstream_filter_record_plugin.dll
MOD - [2011/03/17 01:11:16 | 004,297,568 | ---- | M] () -- C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
MOD - [2007/09/02 14:58:52 | 000,495,616 | ---- | M] () -- C:\Program Files (x86)\RocketDock\RocketDock.exe
MOD - [2007/09/02 14:57:36 | 000,069,632 | ---- | M] () -- C:\Program Files (x86)\RocketDock\RocketDock.dll


========== Services (SafeList) ==========

SRV:64bit: - [2012/12/19 21:56:00 | 000,240,640 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2012/12/19 16:32:12 | 000,361,984 | ---- | M] (Advanced Micro Devices, Inc.) [Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe -- (AMD FUEL Service)
SRV:64bit: - [2009/07/14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009/07/14 03:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2013/03/29 11:35:39 | 000,086,752 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2013/03/29 11:35:17 | 000,565,472 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files (x86)\Avira\AntiVir Desktop\avwebgrd.exe -- (AntiVirWebService)
SRV - [2013/03/29 11:35:15 | 000,374,496 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc.exe -- (AntiVirMailService)
SRV - [2013/03/29 11:35:13 | 000,110,816 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2013/03/29 11:35:12 | 000,657,120 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files (x86)\Avira\AntiVir Desktop\avfwsvc.exe -- (AntiVirFirewallService)
SRV - [2013/03/16 08:44:55 | 000,076,888 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2013/03/13 11:53:25 | 000,253,656 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013/02/07 14:10:08 | 000,161,384 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2013/01/31 11:38:54 | 003,289,208 | ---- | M] (Skype Technologies S.A.) [Auto | Running] -- C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe -- (Skype C2C Service)
SRV - [2012/12/18 21:08:28 | 000,065,192 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2010/03/18 14:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/06/10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2013/03/29 11:35:50 | 000,141,376 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avfwot.sys -- (avfwot)
DRV:64bit: - [2013/03/29 11:35:50 | 000,130,016 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avipbb.sys -- (avipbb)
DRV:64bit: - [2013/03/29 11:35:50 | 000,114,608 | ---- | M] (Avira GmbH) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\avfwim.sys -- (avfwim)
DRV:64bit: - [2013/03/29 11:35:50 | 000,100,712 | ---- | M] (Avira Operations GmbH & Co. KG) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\avgntflt.sys -- (avgntflt)
DRV:64bit: - [2013/03/29 11:35:50 | 000,028,600 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avkmgr.sys -- (avkmgr)
DRV:64bit: - [2013/03/09 12:39:08 | 000,283,200 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV:64bit: - [2013/03/07 01:33:20 | 000,022,600 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswKbd.sys -- (aswKbd)
DRV:64bit: - [2012/12/19 22:48:48 | 011,278,336 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2012/12/19 21:32:54 | 000,552,960 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2012/11/06 13:11:52 | 000,096,256 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
DRV:64bit: - [2012/04/09 10:13:58 | 000,057,472 | ---- | M] (Advanced Micro Devices) [Kernel | Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys -- (AODDriver4.2)
DRV:64bit: - [2011/02/11 23:23:34 | 000,035,344 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\npf.sys -- (npf)
DRV:64bit: - [2009/07/14 03:52:21 | 000,106,576 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2009/07/14 03:52:21 | 000,028,752 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2009/07/14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/14 03:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2009/07/14 03:47:48 | 000,023,104 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2009/07/14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/07/14 02:01:09 | 000,679,936 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\xnacc.sys -- (xnacc)
DRV:64bit: - [2009/06/10 22:35:35 | 000,408,960 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvm62x64.sys -- (NVENETFD)
DRV:64bit: - [2009/06/10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV - [2009/07/14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = E0 B6 07 B6 AA 1C CE 01 [binary data]
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTer ... ORM=IE8SRC
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


========== FireFox ==========

FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@esn.me/esnsonar,version=0.70.4: C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB)
FF - HKLM\Software\MozillaPlugins\@esn/esnlaunch,version=2.1.3: C:\Program Files (x86)\Battlelog Web Plugins\2.1.3\npesnlaunch.dll (ESN Social Software AB)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.5: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)



========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms},
CHR - homepage: http://www.google.com/
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\25.0.1364.172\PepperFlash\pepflashplayer.dll
CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\25.0.1364.172\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\25.0.1364.172\pdf.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll
CHR - Extension: http://www.sector.sk/ = C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\abefblogoddecahnjcecdnkhnlmjcnmm\2013.3.9.27631_0\
CHR - Extension: http://www.vyskumy.sk/ = C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\afacfmljnhapiblihmnfcmneefihklpb\2013.3.9.27674_0\
CHR - Extension: http://www.tatracker.net/ = C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\aojbdiahdcfpcomajfceohbifojjhnnm\2013.3.9.27686_0\
CHR - Extension: http://tracker.cztorrent.net/torrents = C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkilokopdaabjjhlchhaeeifghfmmgli\2013.3.9.27629_0\
CHR - Extension: http://www.sledujuserialy.cz/ = C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccojcjbenfcgecopgbiklhefamjiibpo\2013.3.10.26203_0\
CHR - Extension: http://www.ulozto.cz/ = C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cinomecidhhaggnlkhgdhoepcjlnclhb\2013.3.9.27636_0\
CHR - Extension: http://www.google.sk/ = C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjnlnlndefpecmkfjmgfchgemdhccfgo\2013.3.9.27632_0\
CHR - Extension: Vyhled\u00E1v\u00E1n\u00ED Google = C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: http://shopakva.sk/ = C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddcfamjplgjfgaagegagcphdkkdojign\2013.3.16.50258_0\
CHR - Extension: http://battlelog.battlefield.com/bf3/cz/ = C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\dklkpobhoafjnfahdghomphoodoldmho\2013.3.9.27645_0\
CHR - Extension: http://www.gamescenter.sk/ = C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\dknfcpdenkaegijbgllofaddmclmgbgg\2013.3.14.38813_0\
CHR - Extension: V\u00EDtejte na Facebooku \u2013 zaregistrujte se, p\u0159ihlaste se a zjist\u011Bte v\u00EDce = C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\dnknkgccldocdogpnhbaddbdhhjiindo\2013.3.9.27603_0\
CHR - Extension: AdBlock = C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.5.61_0\
CHR - Extension: http://pokec.azet.sk/ = C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\iacicfndbpdmdmnllphpmcckjbgfjjpj\2013.3.9.27657_0\
CHR - Extension: http://kat.ph/search/.hp/ = C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\inljgngnmgjfekjandaakhdbindgcofc\2013.4.1.20169_0\
CHR - Extension: SmallringFX DarkBlue Theme = C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbfijmgohofmpjlcgmjplbpmkpchdhpk\1.7_0\
CHR - Extension: http://www.protein.sk/ = C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\minkceakcbpigkfgpemigjkcakgcdeho\2013.3.16.50280_0\
CHR - Extension: http://www.gamesite.sk/ = C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohbcmogpncfdkenfokjfjelbgoaafkgb\2013.3.9.27642_0\
CHR - Extension: http://gym.sk/ = C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdgddjdkellahlhppldhdhjbnpanlcoo\2013.3.9.27671_0\
CHR - Extension: Gmail = C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

O1 HOSTS File: ([2009/06/10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O4:64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKCU..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe (Nero AG)
O4 - HKCU..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKCU..\Run: [EADM] C:\Program Files (x86)\Origin\Origin.exe (Electronic Arts)
O4 - HKCU..\Run: [RocketDock] C:\Program Files (x86)\RocketDock\RocketDock.exe ()
O4 - HKCU..\Run: [uTorrent] C:\Users\Tomas\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.)
O4 - Startup: C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Odmenovac.appref-ms ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O9:64bit: - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000004 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000005 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000006 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000007 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000008 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000019 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000019 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 188.120.1.2 87.244.220.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{5672B816-28BD-4AC0-8A99-2BD09CC17050}: DhcpNameServer = 188.120.1.2 87.244.220.1
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/10/26 18:45:39 | 000,779,496 | R--- | M] (BioWare) - E:\autorun.exe -- [ UDF ]
O32 - AutoRun File - [2009/10/26 23:21:41 | 000,000,054 | R--- | M] () - E:\autorun.inf -- [ UDF ]
O33 - MountPoints2\{30522e08-889c-11e2-b296-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{30522e08-889c-11e2-b296-806e6f6e6963}\Shell\AutoRun\command - "" = E:\autorun.exe -- [2009/10/26 18:45:39 | 000,779,496 | R--- | M] (BioWare)
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

NetSvcs:64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)

Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin

========== Files/Folders - Created Within 30 Days ==========

[2013/04/01 11:15:59 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Tomas\Desktop\OTL.exe
[2013/03/31 18:33:08 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2013/03/31 18:33:06 | 000,000,000 | ---D | C] -- C:\rsit
[2013/03/29 21:14:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blue Ripple Sound
[2013/03/29 21:14:31 | 017,686,528 | ---- | C] (Intel Corporation / Blue Ripple Sound Limited) -- C:\Windows\SysWow64\mkl_blueripple.dll
[2013/03/29 21:14:31 | 000,109,080 | ---- | C] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysWow64\OpenAL32.dll
[2013/03/29 21:14:30 | 001,380,352 | ---- | C] (Blue Ripple Sound Limited) -- C:\Windows\SysWow64\rapture3d_oal.dll
[2013/03/29 21:14:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\BRS
[2013/03/29 20:49:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Codemasters
[2013/03/29 11:39:17 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Roaming\Avira
[2013/03/29 11:39:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
[2013/03/29 11:38:41 | 000,141,376 | ---- | C] (Avira GmbH) -- C:\Windows\SysNative\drivers\avfwot.sys
[2013/03/29 11:38:41 | 000,130,016 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avipbb.sys
[2013/03/29 11:38:41 | 000,114,608 | ---- | C] (Avira GmbH) -- C:\Windows\SysNative\drivers\avfwim.sys
[2013/03/29 11:38:41 | 000,100,712 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avgntflt.sys
[2013/03/29 11:38:41 | 000,028,600 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avkmgr.sys
[2013/03/29 11:38:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Avira
[2013/03/29 11:38:40 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Avira
[2013/03/29 09:29:13 | 000,000,000 | --SD | C] -- C:\Windows\SysWow64\Microsoft
[2013/03/28 12:41:43 | 000,000,000 | ---D | C] -- C:\Users\Tomas\Documents\BioWare
[2013/03/28 12:41:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
[2013/03/28 12:41:10 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\AGEIA
[2013/03/28 12:41:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AGEIA Technologies
[2013/03/28 12:40:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Wise Installation Wizard
[2013/03/28 12:25:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mass Effect 2
[2013/03/28 12:25:33 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\BioWare
[2013/03/28 11:20:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Posel smrti
[2013/03/28 11:18:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PoselSmrti
[2013/03/28 08:35:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Codemasters
[2013/03/28 08:31:28 | 000,466,520 | ---- | C] (Creative Labs) -- C:\Windows\SysNative\wrap_oal.dll
[2013/03/28 08:31:28 | 000,122,968 | ---- | C] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysNative\OpenAL32.dll
[2013/03/28 08:31:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\OpenAL
[2013/03/28 08:31:27 | 000,445,016 | ---- | C] (Creative Labs) -- C:\Windows\SysWow64\wrap_oal.dll
[2013/03/28 08:30:16 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\xlive
[2013/03/28 08:30:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Games for Windows - LIVE
[2013/03/25 08:37:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Tages
[2013/03/25 08:37:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Chronicles of Riddick
[2013/03/24 19:13:30 | 000,000,000 | ---D | C] -- C:\Users\Tomas\Documents\Atari
[2013/03/24 19:13:30 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Roaming\Atari
[2013/03/24 19:13:30 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Local\Atari
[2013/03/24 19:00:45 | 000,000,000 | ---D | C] -- C:\Games
[2013/03/24 10:45:03 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Local\Ahead
[2013/03/24 10:44:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero 7 Ultra Edition
[2013/03/24 10:44:24 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Roaming\Ahead
[2013/03/24 10:42:44 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Nero
[2013/03/24 10:42:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Ahead
[2013/03/22 12:30:30 | 000,000,000 | RH-D | C] -- C:\Users\Tomas\AppData\Roaming\SecuROM
[2013/03/22 12:16:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Media Center Programs
[2013/03/22 12:11:29 | 000,178,800 | ---- | C] (Sony DADC Austria AG.) -- C:\Windows\SysWow64\CmdLineExt_x64.dll
[2013/03/22 12:05:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\2K Games
[2013/03/16 20:01:22 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Local\Opera
[2013/03/16 20:01:21 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Roaming\Opera
[2013/03/16 20:00:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Opera
[2013/03/16 10:34:36 | 000,000,000 | ---D | C] -- C:\Hry
[2013/03/16 10:27:59 | 000,000,000 | ---D | C] -- C:\ProgramData\regid.1986-12.com.adobe
[2013/03/16 10:14:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\dumps
[2013/03/16 10:12:56 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Steam
[2013/03/16 10:11:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe AIR
[2013/03/16 10:07:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Photoshop
[2013/03/16 08:39:59 | 000,000,000 | ---D | C] -- C:\ProgramData\EA Core
[2013/03/16 08:39:57 | 000,000,000 | ---D | C] -- C:\Users\Tomas\Documents\Battlefield 3
[2013/03/16 08:39:50 | 000,000,000 | ---D | C] -- C:\ProgramData\EA Logs
[2013/03/15 10:46:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 3
[2013/03/15 10:46:12 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\Common Files\EAInstaller
[2013/03/15 10:44:32 | 002,605,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_40.dll
[2013/03/15 10:44:32 | 002,036,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_40.dll
[2013/03/15 10:44:32 | 000,519,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_40.dll
[2013/03/15 10:44:32 | 000,452,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_40.dll
[2013/03/15 10:44:29 | 005,631,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_40.dll
[2013/03/15 10:44:29 | 004,379,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_40.dll
[2013/03/15 10:20:40 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Roaming\Origin
[2013/03/15 10:20:38 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Local\Origin
[2013/03/15 10:20:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
[2013/03/15 10:20:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Origin Games
[2013/03/15 10:20:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Origin
[2013/03/15 10:20:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Electronic Arts
[2013/03/15 10:20:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Origin
[2013/03/14 14:48:40 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Local\Microsoft Games
[2013/03/13 21:01:00 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Local\Adobe
[2013/03/13 20:54:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe
[2013/03/13 20:54:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Adobe
[2013/03/13 20:50:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe
[2013/03/13 12:37:30 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Local\Skyrim
[2013/03/13 12:05:10 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Roaming\Nero
[2013/03/13 12:04:31 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Roaming\Macromedia
[2013/03/13 11:53:24 | 000,693,976 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2013/03/13 11:53:21 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\Macromed
[2013/03/13 11:50:00 | 000,000,000 | ---D | C] -- C:\ProgramData\LightScribe
[2013/03/13 11:49:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Nero
[2013/03/13 11:42:22 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Roaming\Adobe
[2013/03/13 10:06:26 | 000,073,432 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2013/03/13 10:06:25 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Macromed
[2013/03/13 10:05:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\LightScribe
[2013/03/12 15:27:17 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Local\SKIDROW
[2013/03/10 08:52:18 | 000,000,000 | ---D | C] -- C:\Windows\AutoKMS
[2013/03/10 08:46:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
[2013/03/10 08:46:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
[2013/03/10 08:45:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Synchronization Services
[2013/03/10 08:45:33 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\DESIGNER
[2013/03/10 08:45:16 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH
[2013/03/10 08:45:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Sync Framework
[2013/03/10 08:45:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
[2013/03/10 08:43:44 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Visual Studio 8
[2013/03/10 08:43:19 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office
[2013/03/10 08:42:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Analysis Services
[2013/03/10 08:42:42 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Local\Microsoft Help
[2013/03/10 08:42:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Office
[2013/03/10 08:42:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft Help
[2013/03/10 08:42:15 | 000,000,000 | RH-D | C] -- C:\MSOCache
[2013/03/09 23:19:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
[2013/03/09 23:19:32 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Roaming\DVDVideoSoft
[2013/03/09 23:19:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DVDVideoSoft
[2013/03/09 23:19:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\DVDVideoSoft
[2013/03/09 21:47:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hry
[2013/03/09 19:17:53 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Local\ESN
[2013/03/09 19:17:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Battlelog Web Plugins
[2013/03/09 17:10:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Steam
[2013/03/09 17:08:09 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Local\PunkBuster
[2013/03/09 17:07:42 | 000,000,000 | ---D | C] -- C:\Users\Tomas\Documents\My Games
[2013/03/09 17:07:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Orbit
[2013/03/09 16:58:25 | 000,527,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_7.dll
[2013/03/09 16:58:25 | 000,518,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_7.dll
[2013/03/09 16:58:25 | 000,239,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_7.dll
[2013/03/09 16:58:25 | 000,176,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_7.dll
[2013/03/09 16:58:25 | 000,077,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_5.dll
[2013/03/09 16:58:25 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_5.dll
[2013/03/09 16:58:24 | 002,526,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_43.dll
[2013/03/09 16:58:24 | 002,106,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_43.dll
[2013/03/09 16:58:23 | 001,907,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dcsx_43.dll
[2013/03/09 16:58:23 | 001,868,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dcsx_43.dll
[2013/03/09 16:58:23 | 000,511,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_43.dll
[2013/03/09 16:58:23 | 000,470,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_43.dll
[2013/03/09 16:58:23 | 000,276,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx11_43.dll
[2013/03/09 16:58:23 | 000,248,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx11_43.dll
[2013/03/09 16:58:22 | 002,401,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_43.dll
[2013/03/09 16:58:22 | 001,998,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_43.dll
[2013/03/09 16:58:22 | 000,530,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_6.dll
[2013/03/09 16:58:22 | 000,528,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_6.dll
[2013/03/09 16:58:22 | 000,078,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_4.dll
[2013/03/09 16:58:22 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_4.dll
[2013/03/09 16:58:21 | 000,238,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_6.dll
[2013/03/09 16:58:21 | 000,176,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_6.dll
[2013/03/09 16:58:21 | 000,024,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_7.dll
[2013/03/09 16:58:21 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_7.dll
[2013/03/09 16:58:20 | 000,517,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_5.dll
[2013/03/09 16:58:20 | 000,515,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_5.dll
[2013/03/09 16:58:20 | 000,238,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_5.dll
[2013/03/09 16:58:20 | 000,176,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_5.dll
[2013/03/09 16:58:19 | 002,582,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_42.dll
[2013/03/09 16:58:19 | 001,974,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_42.dll
[2013/03/09 16:58:18 | 005,554,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dcsx_42.dll
[2013/03/09 16:58:18 | 005,501,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dcsx_42.dll
[2013/03/09 16:58:18 | 000,523,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_42.dll
[2013/03/09 16:58:18 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_42.dll
[2013/03/09 16:58:18 | 000,285,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx11_42.dll
[2013/03/09 16:58:18 | 000,235,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx11_42.dll
[2013/03/09 16:58:17 | 002,475,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_42.dll
[2013/03/09 16:58:17 | 001,892,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_42.dll
[2013/03/09 16:58:15 | 005,425,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_41.dll
[2013/03/09 16:58:15 | 004,178,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_41.dll
[2013/03/09 16:58:15 | 002,430,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_41.dll
[2013/03/09 16:58:15 | 001,846,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_41.dll
[2013/03/09 16:58:15 | 000,520,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_41.dll
[2013/03/09 16:58:15 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_41.dll
[2013/03/09 16:58:14 | 000,521,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_4.dll
[2013/03/09 16:58:14 | 000,517,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_4.dll
[2013/03/09 16:58:14 | 000,235,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_4.dll
[2013/03/09 16:58:14 | 000,174,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_4.dll
[2013/03/09 16:58:14 | 000,073,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_3.dll
[2013/03/09 16:58:14 | 000,069,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_3.dll
[2013/03/09 16:58:13 | 000,024,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_6.dll
[2013/03/09 16:58:13 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_6.dll
[2013/03/09 16:58:11 | 000,518,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_3.dll
[2013/03/09 16:58:11 | 000,514,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_3.dll
[2013/03/09 16:58:11 | 000,074,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_2.dll
[2013/03/09 16:58:11 | 000,070,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_2.dll
[2013/03/09 16:58:09 | 000,235,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_3.dll
[2013/03/09 16:58:09 | 000,175,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_3.dll
[2013/03/09 16:58:09 | 000,025,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_5.dll
[2013/03/09 16:58:09 | 000,023,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_5.dll
[2013/03/09 16:58:08 | 000,513,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_2.dll
[2013/03/09 16:58:08 | 000,509,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_2.dll
[2013/03/09 16:58:08 | 000,072,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_1.dll
[2013/03/09 16:58:08 | 000,068,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_1.dll
[2013/03/09 16:58:07 | 001,942,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_39.dll
[2013/03/09 16:58:07 | 001,493,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_39.dll
[2013/03/09 16:58:07 | 000,540,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_39.dll
[2013/03/09 16:58:07 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_39.dll
[2013/03/09 16:58:07 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_2.dll
[2013/03/09 16:58:07 | 000,177,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_2.dll
[2013/03/09 16:58:06 | 004,992,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_39.dll
[2013/03/09 16:58:06 | 003,851,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_39.dll
[2013/03/09 16:58:05 | 000,511,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_1.dll
[2013/03/09 16:58:05 | 000,507,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_1.dll
[2013/03/09 16:58:05 | 000,068,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_0.dll
[2013/03/09 16:58:05 | 000,065,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_0.dll
[2013/03/09 16:58:04 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_1.dll
[2013/03/09 16:58:04 | 000,177,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_1.dll
[2013/03/09 16:58:04 | 000,028,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_4.dll
[2013/03/09 16:58:04 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_4.dll
[2013/03/09 16:58:03 | 001,941,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_38.dll
[2013/03/09 16:58:03 | 001,491,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_38.dll
[2013/03/09 16:58:03 | 000,540,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_38.dll
[2013/03/09 16:58:03 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_38.dll
[2013/03/09 16:58:02 | 004,991,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_38.dll
[2013/03/09 16:58:02 | 003,850,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_38.dll
[2013/03/09 16:58:00 | 000,489,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_0.dll
[2013/03/09 16:58:00 | 000,479,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_0.dll
[2013/03/09 16:57:57 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_0.dll
[2013/03/09 16:57:57 | 000,177,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_0.dll
[2013/03/09 16:57:57 | 000,028,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_3.dll
[2013/03/09 16:57:57 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_3.dll
[2013/03/09 16:57:55 | 001,860,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_37.dll
[2013/03/09 16:57:55 | 001,420,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_37.dll
[2013/03/09 16:57:55 | 000,529,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_37.dll
[2013/03/09 16:57:55 | 000,462,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_37.dll
[2013/03/09 16:57:54 | 004,910,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_37.dll
[2013/03/09 16:57:54 | 003,786,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_37.dll
[2013/03/09 16:57:53 | 000,411,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_10.dll
[2013/03/09 16:57:53 | 000,267,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_10.dll
[2013/03/09 16:57:52 | 002,006,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_36.dll
[2013/03/09 16:57:52 | 001,374,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_36.dll
[2013/03/09 16:57:52 | 000,508,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_36.dll
[2013/03/09 16:57:52 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_36.dll
[2013/03/09 16:57:50 | 005,081,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_36.dll
[2013/03/09 16:57:50 | 003,734,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_36.dll
[2013/03/09 16:57:48 | 001,985,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_35.dll
[2013/03/09 16:57:48 | 001,358,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_35.dll
[2013/03/09 16:57:48 | 000,508,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_35.dll
[2013/03/09 16:57:48 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_35.dll
[2013/03/09 16:57:48 | 000,411,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_9.dll
[2013/03/09 16:57:48 | 000,267,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_9.dll
[2013/03/09 16:57:47 | 005,073,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_35.dll
[2013/03/09 16:57:47 | 003,727,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_35.dll
[2013/03/09 16:57:46 | 004,496,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_34.dll
[2013/03/09 16:57:46 | 003,497,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_34.dll
[2013/03/09 16:57:46 | 001,401,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_34.dll
[2013/03/09 16:57:46 | 001,124,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_34.dll
[2013/03/09 16:57:46 | 000,506,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_34.dll
[2013/03/09 16:57:46 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_34.dll
[2013/03/09 16:57:46 | 000,409,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_8.dll
[2013/03/09 16:57:46 | 000,266,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_8.dll
[2013/03/09 16:57:46 | 000,021,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_2.dll
[2013/03/09 16:57:46 | 000,017,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_2.dll
[2013/03/09 16:57:45 | 000,403,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_7.dll
[2013/03/09 16:57:45 | 000,261,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_7.dll
[2013/03/09 16:57:45 | 000,107,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xinput1_3.dll
[2013/03/09 16:57:45 | 000,081,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xinput1_3.dll
[2013/03/09 16:57:43 | 001,400,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_33.dll
[2013/03/09 16:57:43 | 001,123,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_33.dll
[2013/03/09 16:57:43 | 000,506,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_33.dll
[2013/03/09 16:57:43 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_33.dll
[2013/03/09 16:57:42 | 004,494,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_33.dll
[2013/03/09 16:57:42 | 003,495,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_33.dll
[2013/03/09 16:57:41 | 000,393,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_6.dll
[2013/03/09 16:57:41 | 000,255,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_6.dll
[2013/03/09 16:57:39 | 000,469,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10.dll
[2013/03/09 16:57:39 | 000,440,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10.dll
[2013/03/09 16:57:39 | 000,390,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_5.dll
[2013/03/09 16:57:39 | 000,251,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_5.dll
[2013/03/09 16:57:38 | 004,398,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_32.dll
[2013/03/09 16:57:38 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_32.dll
[2013/03/09 16:57:37 | 000,364,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_4.dll
[2013/03/09 16:57:37 | 000,237,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_4.dll
[2013/03/09 16:57:37 | 000,017,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\x3daudio1_1.dll
[2013/03/09 16:57:37 | 000,015,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\x3daudio1_1.dll
[2013/03/09 16:57:36 | 003,977,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_31.dll
[2013/03/09 16:57:36 | 002,414,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_31.dll
[2013/03/09 16:57:34 | 000,363,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_3.dll
[2013/03/09 16:57:34 | 000,236,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_3.dll
[2013/03/09 16:57:34 | 000,083,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xinput1_2.dll
[2013/03/09 16:57:34 | 000,062,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xinput1_2.dll
[2013/03/09 16:57:31 | 000,354,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_2.dll
[2013/03/09 16:57:31 | 000,230,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_2.dll
[2013/03/09 16:57:31 | 000,083,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xinput1_1.dll
[2013/03/09 16:57:31 | 000,062,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xinput1_1.dll
[2013/03/09 16:57:28 | 000,352,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_1.dll
[2013/03/09 16:57:28 | 000,229,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_1.dll
[2013/03/09 16:57:26 | 003,927,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_30.dll
[2013/03/09 16:57:26 | 002,388,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_30.dll
[2013/03/09 16:57:24 | 000,355,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_0.dll
[2013/03/09 16:57:24 | 000,230,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_0.dll
[2013/03/09 16:57:24 | 000,016,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\x3daudio1_0.dll
[2013/03/09 16:57:24 | 000,014,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\x3daudio1_0.dll
[2013/03/09 16:57:23 | 003,830,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_29.dll
[2013/03/09 16:57:23 | 003,815,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_28.dll
[2013/03/09 16:57:23 | 002,332,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_29.dll
[2013/03/09 16:57:23 | 002,323,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_28.dll
[2013/03/09 16:57:22 | 003,807,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_27.dll
[2013/03/09 16:57:22 | 002,319,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_27.dll
[2013/03/09 16:57:20 | 003,767,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_26.dll
[2013/03/09 16:57:20 | 002,297,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_26.dll
[2013/03/09 16:57:14 | 003,823,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_25.dll
[2013/03/09 16:57:14 | 002,337,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_25.dll
[2013/03/09 16:57:13 | 003,544,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_24.dll
[2013/03/09 16:57:13 | 002,222,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_24.dll
[2013/03/09 16:46:24 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\directx
[2013/03/09 16:28:19 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Local\Programs
[2013/03/09 16:22:57 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Local\Ubisoft
[2013/03/09 16:22:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Ubisoft
[2013/03/09 13:55:57 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\InstallShield Installation Information
[2013/03/09 13:05:39 | 000,000,000 | ---D | C] -- C:\Program Files\WinPcap
[2013/03/09 13:05:34 | 000,000,000 | ---D | C] -- C:\Users\Tomas\Documents\TNS
[2013/03/09 13:05:31 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TNS
[2013/03/09 13:05:19 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Local\Deployment
[2013/03/09 13:05:19 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Local\Apps
[2013/03/09 13:03:48 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Local\AMD
[2013/03/09 13:03:34 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Roaming\ATI
[2013/03/09 13:03:34 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Local\ATI
[2013/03/09 13:03:34 | 000,000,000 | ---D | C] -- C:\ProgramData\ATI
[2013/03/09 12:58:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft.NET
[2013/03/09 12:57:53 | 001,942,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dfshim.dll
[2013/03/09 12:57:53 | 001,130,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dfshim.dll
[2013/03/09 12:57:53 | 000,295,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationHost.exe
[2013/03/09 12:57:53 | 000,109,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PresentationHostProxy.dll
[2013/03/09 12:57:53 | 000,099,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationHostProxy.dll
[2013/03/09 12:57:53 | 000,049,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netfxperf.dll
[2013/03/09 12:57:53 | 000,048,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netfxperf.dll
[2013/03/09 12:57:52 | 000,320,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PresentationHost.exe
[2013/03/09 12:52:42 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Roaming\vlc
[2013/03/09 12:52:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
[2013/03/09 12:52:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VideoLAN
[2013/03/09 12:50:45 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Roaming\WinRAR
[2013/03/09 12:50:45 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
[2013/03/09 12:50:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
[2013/03/09 12:50:43 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2013/03/09 12:44:32 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Roaming\Skype
[2013/03/09 12:44:28 | 000,000,000 | R--D | C] -- C:\Program Files (x86)\Skype
[2013/03/09 12:44:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
[2013/03/09 12:44:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype
[2013/03/09 12:44:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Skype
[2013/03/09 12:39:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
[2013/03/09 12:39:08 | 000,283,200 | ---- | C] (DT Soft Ltd) -- C:\Windows\SysNative\drivers\dtsoftbus01.sys
[2013/03/09 12:39:06 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Roaming\DAEMON Tools Lite
[2013/03/09 12:39:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DAEMON Tools Lite
[2013/03/09 12:38:04 | 000,000,000 | ---D | C] -- C:\ProgramData\DAEMON Tools Lite
[2013/03/09 12:30:41 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2013/03/09 12:26:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RocketDock
[2013/03/09 12:26:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\RocketDock
[2013/03/09 12:25:00 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Roaming\uTorrent
[2013/03/09 11:53:24 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AMD AVT
[2013/03/09 11:53:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AMD APP
[2013/03/09 11:53:17 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ATI Technologies
[2013/03/09 11:53:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\ATI Technologies
[2013/03/09 11:53:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD VISION Engine Control Center
[2013/03/09 11:52:41 | 000,000,000 | ---D | C] -- C:\ProgramData\AMD
[2013/03/09 11:52:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ATI Technologies
[2013/03/09 11:51:55 | 000,000,000 | ---D | C] -- C:\Program Files\ATI Technologies
[2013/03/09 11:51:54 | 000,000,000 | ---D | C] -- C:\Program Files\ATI
[2013/03/09 11:51:33 | 000,022,600 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswKbd.sys
[2013/03/09 11:50:42 | 000,000,000 | ---D | C] -- C:\AMD
[2013/03/09 11:49:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
[2013/03/09 11:48:37 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Local\Google
[2013/03/09 11:48:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Google
[2013/03/09 11:48:30 | 000,287,840 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2013/03/09 11:48:08 | 000,000,000 | -HSD | C] -- C:\Windows\Installer
[2013/03/09 11:46:59 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software
[2013/03/09 11:45:36 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2013/03/09 11:43:51 | 000,000,000 | R--D | C] -- C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup

Re: Veľmi vysoké využitie RAM

Napsal: 01 dub 2013 10:49
od LemmY
[2013/03/09 11:43:51 | 000,000,000 | R--D | C] -- C:\Users\Tomas\Searches
[2013/03/09 11:43:51 | 000,000,000 | R--D | C] -- C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
[2013/03/09 11:43:42 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Roaming\Identities
[2013/03/09 11:43:40 | 000,000,000 | R--D | C] -- C:\Users\Tomas\Contacts
[2013/03/09 11:43:38 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Local\VirtualStore
[2013/03/09 11:43:29 | 000,000,000 | --SD | C] -- C:\Users\Tomas\AppData\Roaming\Microsoft
[2013/03/09 11:43:29 | 000,000,000 | R--D | C] -- C:\Users\Tomas\Videos
[2013/03/09 11:43:29 | 000,000,000 | R--D | C] -- C:\Users\Tomas\Saved Games
[2013/03/09 11:43:29 | 000,000,000 | R--D | C] -- C:\Users\Tomas\Pictures
[2013/03/09 11:43:29 | 000,000,000 | R--D | C] -- C:\Users\Tomas\Music
[2013/03/09 11:43:29 | 000,000,000 | R--D | C] -- C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
[2013/03/09 11:43:29 | 000,000,000 | R--D | C] -- C:\Users\Tomas\Links
[2013/03/09 11:43:29 | 000,000,000 | R--D | C] -- C:\Users\Tomas\Favorites
[2013/03/09 11:43:29 | 000,000,000 | R--D | C] -- C:\Users\Tomas\Downloads
[2013/03/09 11:43:29 | 000,000,000 | R--D | C] -- C:\Users\Tomas\Documents
[2013/03/09 11:43:29 | 000,000,000 | R--D | C] -- C:\Users\Tomas\Desktop
[2013/03/09 11:43:29 | 000,000,000 | R--D | C] -- C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
[2013/03/09 11:43:29 | 000,000,000 | -HSD | C] -- C:\Users\Tomas\AppData\Local\Temporary Internet Files
[2013/03/09 11:43:29 | 000,000,000 | -HSD | C] -- C:\Users\Tomas\Šablony
[2013/03/09 11:43:29 | 000,000,000 | -HSD | C] -- C:\Users\Tomas\Soubory cookie
[2013/03/09 11:43:29 | 000,000,000 | -HSD | C] -- C:\Users\Tomas\SendTo
[2013/03/09 11:43:29 | 000,000,000 | -HSD | C] -- C:\Users\Tomas\Poslední
[2013/03/09 11:43:29 | 000,000,000 | -HSD | C] -- C:\Users\Tomas\Okolní tiskárny
[2013/03/09 11:43:29 | 000,000,000 | -HSD | C] -- C:\Users\Tomas\Okolní síť
[2013/03/09 11:43:29 | 000,000,000 | -HSD | C] -- C:\Users\Tomas\Documents\Obrázky
[2013/03/09 11:43:29 | 000,000,000 | -HSD | C] -- C:\Users\Tomas\Nabídka Start
[2013/03/09 11:43:29 | 000,000,000 | -HSD | C] -- C:\Users\Tomas\Local Settings
[2013/03/09 11:43:29 | 000,000,000 | -HSD | C] -- C:\Users\Tomas\Documents\Hudba
[2013/03/09 11:43:29 | 000,000,000 | -HSD | C] -- C:\Users\Tomas\AppData\Local\History
[2013/03/09 11:43:29 | 000,000,000 | -HSD | C] -- C:\Users\Tomas\Documents\Filmy
[2013/03/09 11:43:29 | 000,000,000 | -HSD | C] -- C:\Users\Tomas\Dokumenty
[2013/03/09 11:43:29 | 000,000,000 | -HSD | C] -- C:\Users\Tomas\Data aplikací
[2013/03/09 11:43:29 | 000,000,000 | -HSD | C] -- C:\Users\Tomas\AppData\Local\Data aplikací
[2013/03/09 11:43:29 | 000,000,000 | -H-D | C] -- C:\Users\Tomas\AppData
[2013/03/09 11:43:29 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Local\Temp
[2013/03/09 11:43:29 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Local\Microsoft
[2013/03/09 11:43:29 | 000,000,000 | ---D | C] -- C:\Users\Tomas\AppData\Roaming\Media Center Programs
[2013/03/09 11:41:19 | 000,000,000 | -HSD | C] -- C:\ProgramData\Šablony
[2013/03/09 11:41:19 | 000,000,000 | -HSD | C] -- C:\Recovery
[2013/03/09 11:41:19 | 000,000,000 | -HSD | C] -- C:\ProgramData\Plocha
[2013/03/09 11:41:19 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Obrázky
[2013/03/09 11:41:19 | 000,000,000 | -HSD | C] -- C:\ProgramData\Oblíbené položky
[2013/03/09 11:41:19 | 000,000,000 | -HSD | C] -- C:\ProgramData\Nabídka Start
[2013/03/09 11:41:19 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Hudba
[2013/03/09 11:41:19 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Filmy
[2013/03/09 11:41:19 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumenty
[2013/03/09 11:41:19 | 000,000,000 | -HSD | C] -- C:\ProgramData\Data aplikací
[2013/03/09 11:32:27 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch
[2013/03/09 11:32:03 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[2013/03/09 11:24:44 | 000,000,000 | ---D | C] -- C:\Windows\Panther
[2013/03/09 11:24:29 | 000,000,000 | -HSD | C] -- C:\Boot
[2 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2013/04/01 11:24:38 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2013/04/01 11:16:00 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Tomas\Desktop\OTL.exe
[2013/04/01 10:58:01 | 000,000,930 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2013/04/01 10:58:00 | 000,000,934 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2013/04/01 10:55:00 | 000,000,914 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2013/04/01 09:03:54 | 000,016,944 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013/04/01 09:03:54 | 000,016,944 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013/04/01 09:02:29 | 001,470,062 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2013/04/01 09:02:29 | 000,622,946 | ---- | M] () -- C:\Windows\SysNative\perfh005.dat
[2013/04/01 09:02:29 | 000,615,810 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2013/04/01 09:02:29 | 000,121,590 | ---- | M] () -- C:\Windows\SysNative\perfc005.dat
[2013/04/01 09:02:29 | 000,106,190 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2013/04/01 08:56:15 | 000,000,266 | ---- | M] () -- C:\Windows\tasks\AutoKMS.job
[2013/04/01 08:56:10 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013/04/01 08:56:06 | 2146,295,807 | -HS- | M] () -- C:\hiberfil.sys
[2013/03/31 17:31:42 | 000,007,598 | ---- | M] () -- C:\Users\Tomas\AppData\Local\Resmon.ResmonCfg
[2013/03/31 17:19:33 | 000,004,794 | ---- | M] () -- C:\Users\Tomas\Documents\604pxMotorhead_motorhead-100x100.jpg
[2013/03/29 11:35:50 | 000,141,376 | ---- | M] (Avira GmbH) -- C:\Windows\SysNative\drivers\avfwot.sys
[2013/03/29 11:35:50 | 000,130,016 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avipbb.sys
[2013/03/29 11:35:50 | 000,114,608 | ---- | M] (Avira GmbH) -- C:\Windows\SysNative\drivers\avfwim.sys
[2013/03/29 11:35:50 | 000,100,712 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avgntflt.sys
[2013/03/29 11:35:50 | 000,028,600 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avkmgr.sys
[2013/03/28 08:31:28 | 000,466,520 | ---- | M] (Creative Labs) -- C:\Windows\SysNative\wrap_oal.dll
[2013/03/28 08:31:28 | 000,122,968 | ---- | M] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysNative\OpenAL32.dll
[2013/03/28 08:31:27 | 000,445,016 | ---- | M] (Creative Labs) -- C:\Windows\SysWow64\wrap_oal.dll
[2013/03/26 18:51:55 | 000,291,088 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.xtr
[2013/03/26 18:51:55 | 000,291,088 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2013/03/26 18:51:33 | 000,280,904 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.ex0
[2013/03/22 12:11:29 | 000,178,800 | ---- | M] (Sony DADC Austria AG.) -- C:\Windows\SysWow64\CmdLineExt_x64.dll
[2013/03/16 11:40:55 | 004,969,512 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2013/03/16 08:44:55 | 000,076,888 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2013/03/13 11:53:24 | 000,693,976 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2013/03/13 11:53:24 | 000,073,432 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2013/03/09 13:30:56 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2013/03/09 13:05:31 | 000,000,282 | ---- | M] () -- C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Odmenovac.appref-ms
[2013/03/09 12:39:08 | 000,283,200 | ---- | M] (DT Soft Ltd) -- C:\Windows\SysNative\drivers\dtsoftbus01.sys
[2013/03/09 12:12:33 | 000,000,000 | ---- | M] () -- C:\Windows\SysWow64\config.nt
[2013/03/09 11:59:05 | 000,000,000 | ---- | M] () -- C:\Windows\ativpsrm.bin
[2013/03/09 11:41:22 | 000,000,012 | RHS- | M] () -- C:\win7.ld
[2013/03/09 11:41:21 | 000,203,464 | RHS- | M] () -- C:\grldr
[2013/03/09 11:36:08 | 000,061,655 | ---- | M] () -- C:\Windows\SysWow64\license.rtf
[2013/03/09 11:36:08 | 000,061,655 | ---- | M] () -- C:\Windows\SysNative\license.rtf
[2013/03/09 11:24:31 | 000,008,192 | RHS- | M] () -- C:\BOOTSECT.BAK
[2013/03/07 01:33:20 | 000,022,600 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswKbd.sys
[2013/03/07 01:32:22 | 000,287,840 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]

========== Files Created - No Company Name ==========

[2013/04/01 11:24:38 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2013/03/31 17:19:31 | 000,004,794 | ---- | C] () -- C:\Users\Tomas\Documents\604pxMotorhead_motorhead-100x100.jpg
[2013/03/28 08:31:14 | 000,001,338 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live ID.lnk
[2013/03/16 11:51:43 | 000,007,598 | ---- | C] () -- C:\Users\Tomas\AppData\Local\Resmon.ResmonCfg
[2013/03/13 20:55:02 | 000,002,441 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
[2013/03/13 11:53:28 | 000,000,914 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2013/03/10 08:52:18 | 000,000,266 | ---- | C] () -- C:\Windows\tasks\AutoKMS.job
[2013/03/09 21:52:47 | 000,291,088 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2013/03/09 21:52:47 | 000,280,904 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.ex0
[2013/03/09 21:52:31 | 000,291,088 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.xtr
[2013/03/09 21:52:17 | 000,076,888 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2013/03/09 13:30:56 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2013/03/09 13:05:40 | 000,000,282 | ---- | C] () -- C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Odmenovac.appref-ms
[2013/03/09 11:59:05 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2013/03/09 11:48:40 | 000,000,934 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2013/03/09 11:48:39 | 000,000,930 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2013/03/09 11:48:30 | 000,000,000 | ---- | C] () -- C:\Windows\SysWow64\config.nt
[2013/03/09 11:43:57 | 000,001,413 | ---- | C] () -- C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
[2013/03/09 11:43:52 | 000,001,447 | ---- | C] () -- C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[2013/03/09 11:41:22 | 000,000,012 | RHS- | C] () -- C:\win7.ld
[2013/03/09 11:41:21 | 000,203,464 | RHS- | C] () -- C:\grldr
[2013/03/09 11:35:41 | 000,001,345 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
[2013/03/09 11:35:36 | 000,001,326 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
[2013/03/09 11:32:04 | 2146,295,807 | -HS- | C] () -- C:\hiberfil.sys
[2013/03/09 11:24:31 | 000,008,192 | RHS- | C] () -- C:\BOOTSECT.BAK
[2013/03/09 11:24:30 | 000,383,562 | RHS- | C] () -- C:\bootmgr
[2012/12/19 21:52:22 | 000,204,952 | ---- | C] () -- C:\Windows\SysWow64\ativvsvl.dat
[2012/12/19 21:52:22 | 000,157,144 | ---- | C] () -- C:\Windows\SysWow64\ativvsva.dat
[2012/05/02 14:58:10 | 000,029,184 | ---- | C] () -- C:\Windows\SysWow64\kdbsdk32.dll
[2011/09/13 00:06:16 | 000,003,917 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2011/04/09 19:55:28 | 000,179,261 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat

========== ZeroAccess Check ==========

[2009/07/14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2009/07/14 03:41:54 | 014,161,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2009/07/14 03:16:14 | 012,866,560 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2009/07/14 03:15:20 | 000,605,696 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== LOP Check ==========

[2013/03/24 19:13:30 | 000,000,000 | ---D | M] -- C:\Users\Tomas\AppData\Roaming\Atari
[2013/03/09 16:27:03 | 000,000,000 | ---D | M] -- C:\Users\Tomas\AppData\Roaming\DAEMON Tools Lite
[2013/03/09 23:19:55 | 000,000,000 | ---D | M] -- C:\Users\Tomas\AppData\Roaming\DVDVideoSoft
[2013/03/16 20:02:43 | 000,000,000 | ---D | M] -- C:\Users\Tomas\AppData\Roaming\Opera
[2013/03/15 10:22:45 | 000,000,000 | ---D | M] -- C:\Users\Tomas\AppData\Roaming\Origin
[2013/04/01 11:28:57 | 000,000,000 | ---D | M] -- C:\Users\Tomas\AppData\Roaming\uTorrent

========== Purity Check ==========



========== Custom Scans ==========

< >
[2009/07/14 07:08:49 | 000,000,006 | -H-- | C] () -- C:\Windows\Tasks\SA.DAT
[2009/07/14 07:08:49 | 000,008,984 | ---- | C] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2013/03/09 11:48:39 | 000,000,930 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2013/03/09 11:48:40 | 000,000,934 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
[2013/03/10 08:52:18 | 000,000,266 | ---- | C] () -- C:\Windows\Tasks\AutoKMS.job
[2013/03/13 11:53:28 | 000,000,914 | ---- | C] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job

< >

< MD5 for: AGP440.SYS >
[2009/07/14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\drivers\AGP440.sys
[2009/07/14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\DriverStore\FileRepository\machine.inf_amd64_neutral_9e6bb86c3b39a3e9\AGP440.sys
[2009/07/14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7600.16385_none_1607dee2d861e021\AGP440.sys

< MD5 for: ATAPI.SYS >
[2009/07/14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\drivers\atapi.sys
[2009/07/14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_a69a58a4286f0b22\atapi.sys
[2009/07/14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys

< MD5 for: AUTOCHK.EXE >
[2009/07/14 03:14:12 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=41E4C8EBA464E7D6A5BA5E8827732AEB -- C:\Windows\SysWOW64\autochk.exe
[2009/07/14 03:14:12 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=41E4C8EBA464E7D6A5BA5E8827732AEB -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_e1ca436d2314b860\autochk.exe
[2009/07/14 03:38:56 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=8B7F8E882A649D81CEA1EDE9BBB68FFF -- C:\Windows\SysNative\autochk.exe
[2009/07/14 03:38:56 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=8B7F8E882A649D81CEA1EDE9BBB68FFF -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_3de8def0db722996\autochk.exe

< MD5 for: CDROM.SYS >
[2009/07/14 01:19:54 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=83D2D75E1EFB81B3450C18131443F7DB -- C:\Windows\SysNative\drivers\cdrom.sys
[2009/07/14 01:19:54 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=83D2D75E1EFB81B3450C18131443F7DB -- C:\Windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_neutral_8363d00ecae4322d\cdrom.sys
[2009/07/14 01:19:54 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=83D2D75E1EFB81B3450C18131443F7DB -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7600.16385_none_bb9e4d89bd7870f1\cdrom.sys

< MD5 for: CNGAUDIT.DLL >
[2009/07/14 03:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\SysWOW64\cngaudit.dll
[2009/07/14 03:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_e83a414890e8132b\cngaudit.dll
[2009/07/14 03:40:20 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 -- C:\Windows\SysNative\cngaudit.dll
[2009/07/14 03:40:20 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 -- C:\Windows\winsxs\amd64_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_4458dccc49458461\cngaudit.dll

< MD5 for: CRYPTSVC.DLL >
[2009/07/14 03:40:24 | 000,175,104 | ---- | M] (Microsoft Corporation) MD5=8C57411B66282C01533CB776F98AD384 -- C:\Windows\SysNative\cryptsvc.dll
[2009/07/14 03:40:24 | 000,175,104 | ---- | M] (Microsoft Corporation) MD5=8C57411B66282C01533CB776F98AD384 -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7600.16385_none_d1f48b0bb4805490\cryptsvc.dll
[2009/07/14 03:15:07 | 000,135,680 | ---- | M] (Microsoft Corporation) MD5=9C231178CE4FB385F4B54B0A9080B8A4 -- C:\Windows\SysWOW64\cryptsvc.dll
[2009/07/14 03:15:07 | 000,135,680 | ---- | M] (Microsoft Corporation) MD5=9C231178CE4FB385F4B54B0A9080B8A4 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7600.16385_none_75d5ef87fc22e35a\cryptsvc.dll

< MD5 for: EXPLORER.EXE >
[2009/07/14 03:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows\SysWOW64\explorer.exe
[2009/07/14 03:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_b7fe430bc7ce3761\explorer.exe
[2009/07/14 03:39:10 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=C235A51CB740E45FFA0EBFB9BAFCDA64 -- C:\Windows\explorer.exe
[2009/07/14 03:39:10 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=C235A51CB740E45FFA0EBFB9BAFCDA64 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_ada998b9936d7566\explorer.exe

< MD5 for: HAL.DLL >
[2009/07/14 03:47:48 | 000,263,232 | ---- | M] (Microsoft Corporation) MD5=C0A6F6E05E14FBCAEDE7796C8590B7AC -- C:\Windows\SysNative\hal.dll
[2009/07/14 03:47:48 | 000,263,232 | ---- | M] (Microsoft Corporation) MD5=C0A6F6E05E14FBCAEDE7796C8590B7AC -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7600.16385_none_071de44b735b3dfc\hal.dll

< MD5 for: IASTORV.SYS >
[2009/07/14 03:48:04 | 000,410,688 | ---- | M] (Intel Corporation) MD5=D83EFB6FD45DF9D55E9A1AFC63640D50 -- C:\Windows\SysNative\drivers\iaStorV.sys
[2009/07/14 03:48:04 | 000,410,688 | ---- | M] (Intel Corporation) MD5=D83EFB6FD45DF9D55E9A1AFC63640D50 -- C:\Windows\SysNative\DriverStore\FileRepository\iastorv.inf_amd64_neutral_18cccb83b34e1453\iaStorV.sys
[2009/07/14 03:48:04 | 000,410,688 | ---- | M] (Intel Corporation) MD5=D83EFB6FD45DF9D55E9A1AFC63640D50 -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7600.16385_none_0b06441fa1790136\iaStorV.sys

< MD5 for: ISAPNP.SYS >
[2009/07/14 03:48:04 | 000,020,544 | ---- | M] (Microsoft Corporation) MD5=2F7B28DC3E1183E5EB418DF55C204F38 -- C:\Windows\SysNative\drivers\isapnp.sys
[2009/07/14 03:48:04 | 000,020,544 | ---- | M] (Microsoft Corporation) MD5=2F7B28DC3E1183E5EB418DF55C204F38 -- C:\Windows\SysNative\DriverStore\FileRepository\machine.inf_amd64_neutral_9e6bb86c3b39a3e9\isapnp.sys
[2009/07/14 03:48:04 | 000,020,544 | ---- | M] (Microsoft Corporation) MD5=2F7B28DC3E1183E5EB418DF55C204F38 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7600.16385_none_1607dee2d861e021\isapnp.sys

< MD5 for: LSASS.EXE >
[2009/07/14 03:39:16 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=0793F40B9B8A1BDD266296409DBD91EA -- C:\Windows\SysNative\lsass.exe
[2009/07/14 03:39:16 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=0793F40B9B8A1BDD266296409DBD91EA -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7600.16385_none_023f7c69767c3edd\lsass.exe

< MD5 for: NDIS.SYS >
[2009/07/14 03:48:27 | 000,947,776 | ---- | M] (Microsoft Corporation) MD5=CAD515DBD07D082BB317D9928CE8962C -- C:\Windows\SysNative\drivers\ndis.sys
[2009/07/14 03:48:27 | 000,947,776 | ---- | M] (Microsoft Corporation) MD5=CAD515DBD07D082BB317D9928CE8962C -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7600.16385_none_03bc1d6e35c013bf\ndis.sys

< MD5 for: NETLOGON.DLL >
[2009/07/14 03:41:52 | 000,692,736 | ---- | M] (Microsoft Corporation) MD5=956D030D375F207B22FB111E06EF9C35 -- C:\Windows\SysNative\netlogon.dll
[2009/07/14 03:41:52 | 000,692,736 | ---- | M] (Microsoft Corporation) MD5=956D030D375F207B22FB111E06EF9C35 -- C:\Windows\winsxs\amd64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7600.16385_none_59aca8ea51aaeefe\netlogon.dll
[2009/07/14 03:16:02 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=EAA75D9000B71F10EEC04D2AE6C60E81 -- C:\Windows\SysWOW64\netlogon.dll
[2009/07/14 03:16:02 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=EAA75D9000B71F10EEC04D2AE6C60E81 -- C:\Windows\winsxs\wow64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7600.16385_none_6401533c860bb0f9\netlogon.dll

< MD5 for: NVRAID.SYS >
[2009/07/14 03:48:27 | 000,149,056 | ---- | M] (NVIDIA Corporation) MD5=3E38712941E9BB4DDBEE00AFFE3FED3D -- C:\Windows\SysNative\drivers\nvraid.sys
[2009/07/14 03:48:27 | 000,149,056 | ---- | M] (NVIDIA Corporation) MD5=3E38712941E9BB4DDBEE00AFFE3FED3D -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_5bde3fe2945bce9e\nvraid.sys
[2009/07/14 03:48:27 | 000,149,056 | ---- | M] (NVIDIA Corporation) MD5=3E38712941E9BB4DDBEE00AFFE3FED3D -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7600.16385_none_95cfb4ced8afab0e\nvraid.sys

< MD5 for: NVSTOR.SYS >
[2009/07/14 03:45:45 | 000,167,488 | ---- | M] (NVIDIA Corporation) MD5=477DC4D6DEB99BE37084C9AC6D013DA1 -- C:\Windows\SysNative\drivers\nvstor.sys
[2009/07/14 03:45:45 | 000,167,488 | ---- | M] (NVIDIA Corporation) MD5=477DC4D6DEB99BE37084C9AC6D013DA1 -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_5bde3fe2945bce9e\nvstor.sys
[2009/07/14 03:45:45 | 000,167,488 | ---- | M] (NVIDIA Corporation) MD5=477DC4D6DEB99BE37084C9AC6D013DA1 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7600.16385_none_95cfb4ced8afab0e\nvstor.sys

< MD5 for: SCECLI.DLL >
[2009/07/14 03:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\SysWOW64\scecli.dll
[2009/07/14 03:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9e577e55272d37b4\scecli.dll
[2009/07/14 03:41:53 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=398712DDDAEFB85EDF61DF6A07B65C79 -- C:\Windows\SysNative\scecli.dll
[2009/07/14 03:41:53 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=398712DDDAEFB85EDF61DF6A07B65C79 -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9402d402f2cc75b9\scecli.dll

< MD5 for: SMSS.EXE >
[2009/07/14 03:39:41 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=1911A3356FA3F77CCC825CCBAC038C2A -- C:\Windows\SysNative\smss.exe
[2009/07/14 03:39:41 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=1911A3356FA3F77CCC825CCBAC038C2A -- C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7600.16385_none_082f99a432e2a661\smss.exe

< MD5 for: SVCHOST.EXE >
[2009/07/14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\SysWOW64\svchost.exe
[2009/07/14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2009/07/14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\SysNative\svchost.exe
[2009/07/14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48c\svchost.exe

< MD5 for: TCPIP.SYS >
[2009/07/14 03:45:55 | 001,898,576 | ---- | M] (Microsoft Corporation) MD5=912107716BAB424C7870E8E6AF5E07E1 -- C:\Windows\SysNative\drivers\tcpip.sys
[2009/07/14 03:45:55 | 001,898,576 | ---- | M] (Microsoft Corporation) MD5=912107716BAB424C7870E8E6AF5E07E1 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16385_none_0f1303f98017479d\tcpip.sys

< MD5 for: USERINIT.EXE >
[2009/07/14 03:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\SysWOW64\userinit.exe
[2009/07/14 03:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe
[2009/07/14 03:39:48 | 000,030,208 | ---- | M] (Microsoft Corporation) MD5=6F8F1376A13114CC10C0E69274F5A4DE -- C:\Windows\SysNative\userinit.exe
[2009/07/14 03:39:48 | 000,030,208 | ---- | M] (Microsoft Corporation) MD5=6F8F1376A13114CC10C0E69274F5A4DE -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_381dabbceb60feb2\userinit.exe

< MD5 for: WINLOGON.EXE >
[2009/07/14 03:39:52 | 000,389,120 | ---- | M] (Microsoft Corporation) MD5=132328DF455B0028F13BF0ABEE51A63A -- C:\Windows\SysNative\winlogon.exe
[2009/07/14 03:39:52 | 000,389,120 | ---- | M] (Microsoft Corporation) MD5=132328DF455B0028F13BF0ABEE51A63A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe

< MD5 for: WS2_32.DLL >
[2009/07/14 03:41:58 | 000,296,448 | ---- | M] (Microsoft Corporation) MD5=7083F463788CB34FCC42F565D56F89E8 -- C:\Windows\SysNative\ws2_32.dll
[2009/07/14 03:41:58 | 000,296,448 | ---- | M] (Microsoft Corporation) MD5=7083F463788CB34FCC42F565D56F89E8 -- C:\Windows\winsxs\amd64_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.1.7600.16385_none_4eaca269e8070c6b\ws2_32.dll
[2009/07/14 03:16:20 | 000,206,336 | ---- | M] (Microsoft Corporation) MD5=DAAE8A9B8C0ACC7F858454132553C30D -- C:\Windows\SysWOW64\ws2_32.dll
[2009/07/14 03:16:20 | 000,206,336 | ---- | M] (Microsoft Corporation) MD5=DAAE8A9B8C0ACC7F858454132553C30D -- C:\Windows\winsxs\x86_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.1.7600.16385_none_f28e06e62fa99b35\ws2_32.dll

< >

< %systemroot%*.* /U /s >
[1 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[2 C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]
[2 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ]
[2 C:\Windows\SysWOW64\*.tmp files -> C:\Windows\SysWOW64\*.tmp -> ]
[10 C:\Windows\Temp\*.tmp files -> C:\Windows\Temp\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >

< %ALLUSERSPROFILE%\Application Data\*.exe /s >

< %APPDATA%\*. >
[2013/03/16 12:39:48 | 000,000,000 | ---D | M] -- C:\Users\Tomas\AppData\Roaming\Adobe
[2013/03/24 21:12:43 | 000,000,000 | ---D | M] -- C:\Users\Tomas\AppData\Roaming\Ahead
[2013/03/24 19:13:30 | 000,000,000 | ---D | M] -- C:\Users\Tomas\AppData\Roaming\Atari
[2013/03/09 13:03:34 | 000,000,000 | ---D | M] -- C:\Users\Tomas\AppData\Roaming\ATI
[2013/03/29 11:39:17 | 000,000,000 | ---D | M] -- C:\Users\Tomas\AppData\Roaming\Avira
[2013/03/09 16:27:03 | 000,000,000 | ---D | M] -- C:\Users\Tomas\AppData\Roaming\DAEMON Tools Lite
[2013/03/09 23:19:55 | 000,000,000 | ---D | M] -- C:\Users\Tomas\AppData\Roaming\DVDVideoSoft
[2013/03/09 11:43:42 | 000,000,000 | ---D | M] -- C:\Users\Tomas\AppData\Roaming\Identities
[2013/03/13 12:04:31 | 000,000,000 | ---D | M] -- C:\Users\Tomas\AppData\Roaming\Macromedia
[2009/07/14 17:36:38 | 000,000,000 | ---D | M] -- C:\Users\Tomas\AppData\Roaming\Media Center Programs
[2013/03/18 17:43:57 | 000,000,000 | --SD | M] -- C:\Users\Tomas\AppData\Roaming\Microsoft
[2013/03/13 12:05:11 | 000,000,000 | ---D | M] -- C:\Users\Tomas\AppData\Roaming\Nero
[2013/03/16 20:02:43 | 000,000,000 | ---D | M] -- C:\Users\Tomas\AppData\Roaming\Opera
[2013/03/15 10:22:45 | 000,000,000 | ---D | M] -- C:\Users\Tomas\AppData\Roaming\Origin
[2013/03/22 12:30:30 | 000,000,000 | RH-D | M] -- C:\Users\Tomas\AppData\Roaming\SecuROM
[2013/03/30 19:36:54 | 000,000,000 | ---D | M] -- C:\Users\Tomas\AppData\Roaming\Skype
[2013/04/01 11:36:57 | 000,000,000 | ---D | M] -- C:\Users\Tomas\AppData\Roaming\uTorrent
[2013/03/31 22:48:53 | 000,000,000 | ---D | M] -- C:\Users\Tomas\AppData\Roaming\vlc
[2013/03/09 12:50:54 | 000,000,000 | ---D | M] -- C:\Users\Tomas\AppData\Roaming\WinRAR

< %APPDATA%\*.exe /s >
[2013/03/16 15:48:39 | 000,054,776 | ---- | M] (Adobe Systems Inc.) -- C:\Users\Tomas\AppData\Roaming\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe
[2013/03/09 12:25:42 | 001,051,984 | ---- | M] (BitTorrent Inc.) -- C:\Users\Tomas\AppData\Roaming\uTorrent\uTorrent.exe

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >
[2 C:\Windows\system32\*.tmp files -> C:\Windows\system32\*.tmp -> ]

< %systemroot%\Tasks\*.job /lockedfiles >

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >

< %systemroot%\system32\*.dll /lockedfiles >
[2 C:\Windows\system32\*.tmp files -> C:\Windows\system32\*.tmp -> ]

< %systemroot%\system32\drivers\*.sys /3 >

< %systemroot%\system32\*.* /3 >
[2 C:\Windows\system32\*.tmp files -> C:\Windows\system32\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< >

< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"uTorrent" = "C:\Users\Tomas\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED -- [2013/03/09 12:25:42 | 001,051,984 | ---- | M] (BitTorrent Inc.)
"RocketDock" = "C:\Program Files (x86)\RocketDock\RocketDock.exe" -- [2007/09/02 14:58:52 | 000,495,616 | ---- | M] ()
"DAEMON Tools Lite" = "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun -- [2013/01/08 10:41:08 | 003,674,320 | ---- | M] (DT Soft Ltd)
"EADM" = "C:\Program Files (x86)\Origin\Origin.exe" -AutoStart -- [2013/03/26 06:32:23 | 003,497,552 | ---- | M] (Electronic Arts)
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}" = "C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe" -- [2007/03/12 14:49:26 | 000,153,136 | ---- | M] (Nero AG)

< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c >
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WUAUSERV
IMAGEPATH REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k netsvcs

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c >
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\BITS
IMAGEPATH REG_EXPAND_SZ %SystemRoot%\System32\svchost.exe -k netsvcs

< >

< type c:\boot.ini >> test.txt /c >

< %SystemDrive%\PhysicalMBR.bin /md5 >
[2013/04/01 11:24:38 | 000,000,512 | ---- | M] () MD5=6691D19514AA68BF72102E4813A30734 -- C:\PhysicalMBR.bin

< >

< *crack* /s >

< *keygen* /s >
[2013/03/24 10:40:52 | 000,000,790 | ---- | M] () -- \Users\Tomas\AppData\Roaming\Microsoft\Windows\Recent\Keygen Nero 7.x.x.x.lnk
[2013/03/24 10:31:54 | 000,015,146 | ---- | M] () -- \Users\Tomas\AppData\Roaming\uTorrent\Nero 7 Premium 7.8.5.0 CZ + keygen.rar.torrent

< *loader* /s >
[2009/02/16 16:31:12 | 000,674,165 | ---- | M] () -- \Games\Chronicles of Riddick\Content\Models\Misc\Loader.xmd
[2009/02/16 16:31:12 | 013,985,904 | ---- | M] () -- \Games\Chronicles of Riddick\Content\Models\Misc\Loader.xtc
[2010/08/18 16:42:30 | 000,000,115 | ---- | M] () -- \Program Files (x86)\Codemasters\F1 2010\audio\audio_loader.xml
[2010/08/18 16:48:52 | 000,000,342 | ---- | M] () -- \Program Files (x86)\Codemasters\F1 2010\scenes\garage_loader.xml
[2010/08/18 16:48:52 | 000,001,042 | ---- | M] () -- \Program Files (x86)\Codemasters\F1 2010\scenes\paddock_gameloader.xml
[2010/08/18 16:48:52 | 000,000,645 | ---- | M] () -- \Program Files (x86)\Codemasters\F1 2010\scenes\paddock_loader.xml
[2010/08/18 16:48:52 | 000,000,532 | ---- | M] () -- \Program Files (x86)\Codemasters\F1 2010\scenes\paddock_unloader.xml
[2010/08/18 16:48:54 | 000,000,478 | ---- | M] () -- \Program Files (x86)\Codemasters\F1 2010\scenes\pitstop_loader.xml
[2010/08/18 16:48:54 | 000,000,514 | ---- | M] () -- \Program Files (x86)\Codemasters\F1 2010\scenes\pitstop_unloader.xml
[2010/08/18 16:48:56 | 000,001,341 | ---- | M] () -- \Program Files (x86)\Codemasters\F1 2010\scenes\trackside_garage_loader.xml
[2010/08/18 16:48:56 | 000,000,854 | ---- | M] () -- \Program Files (x86)\Codemasters\F1 2010\scenes\trackside_garage_reloader.xml
[2007/03/12 14:48:46 | 000,177,712 | ---- | M] () -- \Program Files (x86)\Common Files\Ahead\Lib\NeGuideStoreLoader.dll
[2010/10/07 05:36:40 | 000,265,552 | ---- | M] () -- \Program Files (x86)\Common Files\microsoft shared\VSTO\10.0\VSTOLoader.dll
[2010/10/07 05:36:40 | 000,018,264 | ---- | M] () -- \Program Files (x86)\Common Files\microsoft shared\VSTO\10.0\1033\VSTOLoaderUI.dll
[2010/10/07 05:36:40 | 000,387,408 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VSTO\10.0\VSTOLoader.dll
[2010/10/07 05:36:40 | 000,018,264 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VSTO\10.0\1033\VSTOLoaderUI.dll
[2012/06/09 20:19:38 | 000,055,296 | ---- | M] () -- \Program Files\WinRAR\Formats\ace32loader.exe
[2013/01/23 11:31:10 | 000,072,638 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\loader.gif
[2013/01/23 11:31:10 | 000,003,032 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\loader.png
[2013/01/23 11:31:10 | 000,009,772 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\retina\loader@2x.png
[2013/01/23 11:31:10 | 000,072,638 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\loader.gif
[2013/01/23 11:31:10 | 000,003,032 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\loader.png
[2013/01/23 11:31:10 | 000,009,772 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\retina\loader@2x.png
[2013/03/13 20:50:13 | 000,001,174 | ---- | M] () -- \Users\Tomas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PNZ4K0MN\downloader[1].js
[2013/03/13 20:50:13 | 000,000,723 | ---- | M] () -- \Users\Tomas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SCKQMXT3\downloaderror[1].js
[2013/03/13 20:50:11 | 000,003,784 | ---- | M] () -- \Users\Tomas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\UMBECQKU\bundleloader[1].js
[2013/03/09 11:46:40 | 000,015,089 | ---- | M] () -- \Users\Tomas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\S7WYWI2E\loader[1].js
[2013/03/09 11:44:45 | 000,003,705 | ---- | M] () -- \Users\Tomas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\X87AMURI\lang_loader[1].gif
[2013/03/29 11:39:19 | 000,126,200 | ---- | M] () -- \Users\Tomas\AppData\Local\Temp\avnwldrtemp\networkloader.log
[2012/11/13 17:37:47 | 000,052,512 | ---- | M] () -- \Users\Tomas\AppData\Local\Temp\RarSFX0\avwebloader.dll
[2012/11/13 17:37:52 | 000,232,224 | ---- | M] () -- \Users\Tomas\AppData\Local\Temp\RarSFX0\avwebloader.exe
[2012/11/13 17:37:56 | 001,713,952 | ---- | M] () -- \Users\Tomas\AppData\Local\Temp\RarSFX0\avwebloadergui.dll
[2012/10/30 16:14:00 | 000,046,440 | ---- | M] () -- \Users\Tomas\AppData\Local\Temp\RarSFX1\avwebloader.dll
[2012/10/30 16:14:02 | 000,232,224 | ---- | M] () -- \Users\Tomas\AppData\Local\Temp\RarSFX1\avwebloader.exe
[2012/10/30 16:14:02 | 001,707,880 | ---- | M] () -- \Users\Tomas\AppData\Local\Temp\RarSFX1\avwebloadergui.dll
[2012/10/30 16:13:42 | 000,007,302 | ---- | M] () -- \Users\Tomas\AppData\Local\Temp\RarSFX1\loadercontrol.xml
[2010/03/24 21:12:34 | 000,018,264 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\00004109110000000000000000F01FEC\14.0.4763\FL_VSTOLoaderUI_dll_x86_ln.3643236F_FC70_11D3_A536_0090278A1BB8.923C1899_09AE_418B_B39D_A7A9EB6A7951
[2010/03/24 21:12:34 | 000,249,680 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\00004109110000000000000000F01FEC\14.0.4763\VSTOLoader_dll_x86.3643236F_FC70_11D3_A536_0090278A1BB8.923C1899_09AE_418B_B39D_A7A9EB6A7951
[2010/03/24 21:35:48 | 000,018,264 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\00004109A20000000100000000F01FEC\14.0.4763\FL_VSTOLoaderUI_dll_amd64_ln.3643236F_FC70_11D3_A536_0090278A1BB8.41B86362_9D8B_4D9B_B426_8A6D1F809A25
[2010/03/24 21:12:34 | 000,018,264 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\00004109A20000000100000000F01FEC\14.0.4763\FL_VSTOLoaderUI_dll_x86_ln.3643236F_FC70_11D3_A536_0090278A1BB8.41B86362_9D8B_4D9B_B426_8A6D1F809A25
[2010/03/24 21:35:48 | 000,370,512 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\00004109A20000000100000000F01FEC\14.0.4763\VSTOLoader_dll_amd64.3643236F_FC70_11D3_A536_0090278A1BB8.41B86362_9D8B_4D9B_B426_8A6D1F809A25
[2010/03/24 21:12:34 | 000,249,680 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\00004109A20000000100000000F01FEC\14.0.4763\VSTOLoader_dll_x86.3643236F_FC70_11D3_A536_0090278A1BB8.41B86362_9D8B_4D9B_B426_8A6D1F809A25
[2013/03/09 11:41:30 | 000,038,402 | ---- | M] () -- \Windows\Prefetch\WINDOWS7LOADER.EXE-0B42C00F.pf
[2009/07/14 14:25:34 | 002,202,645 | R--- | M] () -- \Windows\Setup\SCRIPTS\Windows7Loader.exe
[2009/07/14 03:03:49 | 000,003,584 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2009/07/14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\System32\dmloader.dll
[2009/08/14 14:36:18 | 000,070,936 | ---- | M] () -- \Windows\System32\PhysXLoader.dll
[2 \Windows\System32\*.tmp files -> \Windows\System32\*.tmp -> ]
[2009/07/14 03:03:49 | 000,003,584 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
[2009/07/14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\SysWOW64\dmloader.dll
[2009/08/14 14:36:18 | 000,070,936 | ---- | M] () -- \Windows\SysWOW64\PhysXLoader.dll
[2 \Windows\SysWOW64\*.tmp files -> \Windows\SysWOW64\*.tmp -> ]
[2009/07/14 03:40:31 | 000,047,616 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_a1e90d98a953d601\dmloader.dll
[2009/07/14 03:24:53 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-libraryloader-l1-1-0.dll
[2009/07/14 17:17:49 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2009/07/14 17:17:49 | 000,033,360 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.efi.mui_35ee487d
[2009/07/14 17:17:49 | 000,034,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.exe.mui_3bc5b827
[2009/07/14 17:17:49 | 000,029,776 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.efi.mui_f412814e
[2009/07/14 17:17:49 | 000,030,288 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.exe.mui_ff8b5358
[2009/07/14 04:58:45 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16385_none_b71babd98657e6ef.manifest
[2009/07/14 04:58:45 | 000,641,088 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16385_none_b71babd98657e6ef_winload.efi_75834aa0
[2009/07/14 04:58:45 | 000,604,192 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16385_none_b71babd98657e6ef_winload.exe_75835076
[2009/07/14 04:58:45 | 000,557,136 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16385_none_b71babd98657e6ef_winresume.efi_85cd069f
[2009/07/14 04:58:45 | 000,518,352 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16385_none_b71babd98657e6ef_winresume.exe_85cd1215
[2009/07/14 04:57:50 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009/07/14 04:57:50 | 000,019,008 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59_spldr.sys_98bd87a0
[2009/07/14 17:15:51 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2009/07/14 04:13:42 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16385_none_b71babd98657e6ef.manifest
[2009/07/14 04:18:27 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009/07/14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_45ca7214f0f664cb\dmloader.dll
[2009/07/14 03:03:49 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-libraryloader-l1-1-0.dll

< *minodlogin* /s >

< *tnod* /s >

< *AutoKMS* /s >
[2013/03/10 08:52:18 | 000,000,715 | ---- | M] () -- \Windows\AutoKMS\AutoKMS.ini
[2013/03/29 08:55:03 | 000,009,352 | ---- | M] () -- \Windows\AutoKMS\AutoKMS.log
[2013/04/01 08:56:15 | 000,000,266 | ---- | M] () -- \Windows\Tasks\AutoKMS.job

< *activator* /s >

< *serial* /s >
[2009/06/10 23:13:54 | 000,970,752 | ---- | M] () -- \Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2009/07/14 17:17:32 | 000,090,112 | ---- | M] () -- \Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\cs\System.RunTime.Serialization.Resources.dll
[2009/06/10 22:30:43 | 000,847,872 | ---- | M] () -- \Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2009/07/14 17:17:32 | 000,090,112 | ---- | M] () -- \Program Files\Reference Assemblies\Microsoft\Framework\v3.0\cs\System.RunTime.Serialization.Resources.dll
[2012/06/13 10:47:38 | 000,000,029 | ---- | M] () -- \ProgramData\Tages\100663362\Serial.txt
[2012/06/13 10:47:38 | 000,000,029 | ---- | M] () -- \Users\All Users\Tages\100663362\Serial.txt
[2013/03/14 16:06:33 | 002,604,032 | ---- | M] () -- \Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.sledujuserialy.cz_0.localstorage
[2013/03/14 16:06:33 | 000,016,384 | ---- | M] () -- \Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.sledujuserialy.cz_0.localstorage-journal
[2009/07/14 17:17:20 | 000,011,776 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap.resources\2.0.0.0_cs_b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2009/06/10 23:23:19 | 000,131,072 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2009/07/14 17:17:32 | 000,090,112 | ---- | M] () -- \Windows\assembly\GAC_MSIL\system.runtime.serialization.resources\3.0.0.0_cs_b77a5c561934e089\System.RunTime.Serialization.Resources.dll
[2009/06/10 23:13:54 | 000,970,752 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2009/07/14 06:56:20 | 002,347,008 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\39e53f507d9cbc5c10a2f47c4b0d09dd\System.Runtime.Serialization.ni.dll
[2009/07/14 06:55:32 | 000,310,784 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\d57d865568209a71d63739fa448ed6df\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2009/07/14 06:59:40 | 003,073,536 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\12aaff696a0c54773664b4c5407deaa2\System.Runtime.Serialization.ni.dll
[2009/07/14 06:57:59 | 000,396,288 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\d0c6d3aadce1e38bbcb06905e132a503\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2013/03/09 18:18:09 | 002,625,024 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\30ed505f7ea7d6139128d4a6d9981dc0\System.Runtime.Serialization.ni.dll
[2013/03/09 18:18:13 | 000,310,272 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\894d864ff8eeb97fad09797d33a06d83\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2013/03/11 23:06:02 | 003,375,616 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Seri#\08fba6b56d838ad48b4451c82e5728d4\System.Runtime.Serialization.ni.dll
[2013/03/11 23:06:10 | 000,374,272 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Seri#\b468f9d8655e91b7a6aa11473eca4a97\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2013/03/09 12:58:58 | 000,122,264 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2013/03/09 12:58:57 | 001,026,936 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2009/06/10 23:23:19 | 000,131,072 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2009/07/14 17:17:21 | 000,011,776 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v2.0.50727\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2009/06/10 23:14:06 | 000,970,752 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2010/03/18 14:16:28 | 001,026,936 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.dll
[2010/03/18 14:16:28 | 000,122,264 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Formatters.Soap.dll
[2009/06/10 22:40:06 | 000,131,072 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2009/07/14 17:17:19 | 000,011,776 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v2.0.50727\cs\System.Runtime.Serialization.Formatters.Soap.Resources.dll
[2009/06/10 22:30:46 | 000,847,872 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2010/03/18 14:16:28 | 001,026,936 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.dll
[2010/03/18 14:16:28 | 000,122,264 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.Formatters.Soap.dll
[2009/07/14 03:16:13 | 000,015,360 | ---- | M] () -- \Windows\System32\serialui.dll
[2 \Windows\System32\*.tmp files -> \Windows\System32\*.tmp -> ]
[2009/07/14 17:17:13 | 000,005,120 | ---- | M] () -- \Windows\System32\cs-CZ\serialui.dll.mui
[2009/07/14 02:00:40 | 000,094,208 | ---- | M] () -- \Windows\System32\DriverStore\FileRepository\msports.inf_amd64_neutral_fdcfb86ce78678d1\serial.sys
[2009/06/10 22:37:50 | 000,038,400 | ---- | M] () -- \Windows\System32\DriverStore\FileRepository\smartcrd.inf_amd64_neutral_6fb75ea318f84fe5\grserial.sys
[2009/07/14 03:16:13 | 000,015,360 | ---- | M] () -- \Windows\SysWOW64\serialui.dll
[2 \Windows\SysWOW64\*.tmp files -> \Windows\SysWOW64\*.tmp -> ]
[2009/07/14 17:17:13 | 000,005,120 | ---- | M] () -- \Windows\SysWOW64\cs-CZ\serialui.dll.mui
[2009/07/14 17:17:19 | 000,011,776 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_1c215c9ac50719c5\System.Runtime.Serialization.Formatters.Soap.Resources.dll
[2009/07/14 17:17:22 | 000,005,120 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_aa5fd338fd5bcb23\serialui.dll.mui
[2009/07/14 03:41:54 | 000,017,920 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_50f69335385bc360\serialui.dll
[2009/07/14 17:17:32 | 000,090,112 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_b96904386c2fe002\System.RunTime.Serialization.Resources.dll
[2009/07/14 17:17:25 | 000,009,728 | ---- | M] () -- \Windows\winsxs\amd64_msports.inf.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_20ab142d65ed6acc\serial.sys.mui
[2009/07/14 02:00:40 | 000,094,208 | ---- | M] () -- \Windows\winsxs\amd64_msports.inf_31bf3856ad364e35_6.1.7600.16385_none_548ca258d20f4ada\serial.sys
[2009/06/10 22:40:06 | 000,131,072 | ---- | M] () -- \Windows\winsxs\amd64_netfx-system.runtim..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7600.16385_none_a9d1bee515273f56\System.Runtime.Serialization.Formatters.Soap.dll
[2009/06/10 22:37:50 | 000,038,400 | ---- | M] () -- \Windows\winsxs\amd64_smartcrd.inf_31bf3856ad364e35_6.1.7600.16385_none_ce9ed3064deed3aa\grserial.sys
[2009/06/10 22:30:46 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7600.16385_none_5943b25a748cb06c\System.Runtime.Serialization.dll
[2009/06/10 22:30:43 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.16385_none_941abf24c884ab05\System.Runtime.Serialization.dll
[2009/07/14 04:57:21 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7600.16385_none_6daa7ec5c65bf5bc.manifest
[2009/07/14 04:57:21 | 000,017,984 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7600.16385_none_6daa7ec5c65bf5bc_kdcom.dll_db5e7744
[2009/07/14 17:17:49 | 000,005,120 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_aa5fd338fd5bcb23_serialui.dll.mui_7d29d2a3
[2009/07/14 04:57:29 | 000,017,920 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_50f69335385bc360_serialui.dll_bea29328
[2009/07/14 17:17:47 | 000,005,120 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_4e4137b544fe59ed_serialui.dll.mui_7d29d2a3
[2009/07/14 04:58:37 | 000,015,360 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_f4d7f7b17ffe522a_serialui.dll_bea29328
[2009/07/14 04:15:17 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7600.16385_none_6daa7ec5c65bf5bc.manifest
[2009/07/14 04:11:30 | 000,000,868 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft.windows.h..tserial-driverclass_31bf3856ad364e35_6.1.7600.16385_none_88b1c48f2026fe3f.manifest
[2009/07/14 04:26:23 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7600.16385_none_5943b25a748cb06c.manifest
[2009/07/14 04:27:09 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.16385_none_941abf24c884ab05.manifest
[2009/07/14 03:52:33 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7600.16385_none_a6aa149474833896.manifest
[2009/07/14 17:16:38 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.16385_cs-cz_34555b4d83cf58b0.manifest
[2009/07/14 03:51:52 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7600.16385_none_d6ed4a2e9c2a39c9.manifest
[2009/07/14 03:57:53 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.16385_none_dbc7f5fbdd00d40b.manifest
[2009/06/10 23:23:19 | 000,131,072 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.seri..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7600.16385_none_1c9a3ec1e01c684b\System.Runtime.Serialization.Formatters.Soap.dll
[2009/07/14 17:17:20 | 000,011,776 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.seri..ters.soap.resources_b03f5f7f11d50a3a_6.1.7600.16385_cs-cz_d5c3552dd9b47144\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2009/06/10 23:14:06 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7600.16385_none_a6aa149474833896\System.Runtime.Serialization.dll
[2009/07/14 17:17:32 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.16385_cs-cz_34555b4d83cf58b0\System.RunTime.Serialization.Resources.dll
[2009/06/10 23:13:54 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7600.16385_none_d6ed4a2e9c2a39c9\System.Runtime.Serialization.dll
[2009/07/14 17:17:21 | 000,011,776 | ---- | M] () -- \Windows\winsxs\wow64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_267606ecf967dbc0\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2009/07/14 17:17:13 | 000,005,120 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_4e4137b544fe59ed\serialui.dll.mui
[2009/07/14 03:16:13 | 000,015,360 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_f4d7f7b17ffe522a\serialui.dll
[2009/07/14 17:17:32 | 000,090,112 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_5d4a68b4b3d26ecc\System.RunTime.Serialization.Resources.dll
[2009/06/10 23:13:54 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.16385_none_dbc7f5fbdd00d40b\System.Runtime.Serialization.dll

< *w7lxe* /s >

========== Alternate Data Streams ==========

@Alternate Data Stream - 6144 bytes -> C:\Windows\Cursors\arrow_n.cur:NEDTA.DAT

< End of report >

Re: Veľmi vysoké využitie RAM

Napsal: 01 dub 2013 10:50
od LemmY
EXTRAS


OTL Extras logfile created on: 1. 4. 2013 11:22:47 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Tomas\Desktop
64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 0000041b | Country: Slovenská republika | Language: SKY | Date Format: d. M. yyyy

8,00 Gb Total Physical Memory | 4,25 Gb Available Physical Memory | 53,08% Memory free
16,00 Gb Paging File | 13,63 Gb Available in Paging File | 85,19% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 298,09 Gb Total Space | 181,01 Gb Free Space | 60,72% Space Free | Partition Type: NTFS
Drive D: | 1863,01 Gb Total Space | 1480,98 Gb Free Space | 79,49% Space Free | Partition Type: NTFS
Drive E: | 4,21 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF

Computer Name: TOMAS-PC | User Name: Tomas | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- "C:\Windows\system32\rundll32.exe" "C:\Windows\system32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{585E202D-9829-45A4-9344-7A105299FF7E}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\outlook.exe |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{131865B8-D9E3-4613-B837-8DFD9260BF97}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe |
"{150E34A7-14F7-46E4-923A-6FFB9DA0EB32}" = protocol=6 | dir=in | app=c:\program files (x86)\mass effect 2\binaries\masseffect2.exe |
"{1DCB3251-8D36-4AB3-BBCA-DCDD995514A0}" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"{2176E8C9-0F7F-477C-A125-4986B680A12D}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe |
"{3342BA6C-B43A-4A3E-8FF4-E8B02D54D1EA}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{34073111-B268-4ACA-A865-694009FD4488}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\battlefield 3\bf3.exe |
"{35290536-890F-4523-91FD-4DEA69C056AC}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{4840F48F-8622-47D1-A488-8C80560A0190}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{54693381-53C2-493B-A7DE-6A03F11BC392}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\battlefield 3\bf3.exe |
"{6F8027BD-8551-4AC9-B11A-3ECC41BD6E62}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe |
"{726FB6D8-9D2F-46B1-9C56-CEEF62C06CC2}" = protocol=6 | dir=in | app=c:\users\tomas\appdata\roaming\utorrent\utorrent.exe |
"{75E7F499-3020-461C-A72C-E10FEF0B2F06}" = protocol=17 | dir=in | app=c:\program files (x86)\avira\antivir desktop\avcenter.exe |
"{76A2BE99-2864-4257-8697-27EF4DA078E5}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{8A9CCB4E-D480-4B4F-851D-D665D27EABFD}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-503 |
"{8BB44E8E-2177-447B-93D5-92322A4DC4C2}" = protocol=6 | dir=in | app=c:\program files (x86)\mass effect 2\masseffect2launcher.exe |
"{A131ABA8-379E-4D5C-8074-A2AD8C2B481F}" = protocol=17 | dir=in | app=c:\program files (x86)\mass effect 2\masseffect2launcher.exe |
"{A5DCAA22-E92D-4057-A12C-8CB133951127}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe |
"{A731F4E9-E852-4D71-8425-5800A02F46B2}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{A823CED2-82B1-4BB7-BC66-42A2BCF1EABE}" = protocol=17 | dir=in | app=c:\users\tomas\appdata\roaming\utorrent\utorrent.exe |
"{AEC2506B-8868-4D30-B579-AE22541CA7F1}" = protocol=17 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe |
"{B0E8D56C-08D5-41A4-B8F7-5EE0F64B88A8}" = protocol=6 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe |
"{B901F97B-16E9-40D5-9EBA-7FFCD15784B6}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{C19B67EB-D132-4498-AFFC-D6CCD84FEFF5}" = protocol=17 | dir=in | app=c:\program files (x86)\mass effect 2\binaries\masseffect2.exe |
"{C36A70AD-8046-4ED2-87E4-0222C3B10736}" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"{CDD99ECB-34D3-45F2-9923-C3AFFE83E535}" = protocol=58 | dir=in | app=system |
"{F1A5975C-825D-4A9C-A4AF-05E991E66EB3}" = protocol=6 | dir=in | app=c:\program files (x86)\avira\antivir desktop\avcenter.exe |
"{FC086841-A76D-4117-87F8-05858B5978EA}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"TCP Query User{200B09B4-DEA8-4272-8217-65D530BBFB4E}C:\program files (x86)\far cry 3\bin\farcry3_d3d11.exe" = protocol=6 | dir=in | app=c:\program files (x86)\far cry 3\bin\farcry3_d3d11.exe |
"TCP Query User{280E4A43-286C-48ED-9C71-26BA06C30E70}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe" = protocol=6 | dir=in | app=c:\windows\microsoft.net\framework\v2.0.50727\vbc.exe |
"TCP Query User{4032174D-0135-462C-B7BC-EEC73BB82636}C:\program files (x86)\thq\saints row the third\saintsrowthethird_dx11.exe" = protocol=6 | dir=in | app=c:\program files (x86)\thq\saints row the third\saintsrowthethird_dx11.exe |
"TCP Query User{B0CDC634-F2CA-44BA-8F9F-21DEC8C7F6A1}C:\program files (x86)\r.g. catalyst\f1 2011\f1_2011.exe" = protocol=6 | dir=in | app=c:\program files (x86)\r.g. catalyst\f1 2011\f1_2011.exe |
"TCP Query User{D711F5E9-97EF-4753-B43A-F7FED2114FD8}C:\program files (x86)\codemasters\f1 2010\f1_2010_game.exe" = protocol=6 | dir=in | app=c:\program files (x86)\codemasters\f1 2010\f1_2010_game.exe |
"TCP Query User{E42AB35A-B688-43ED-8B8D-9667674E8EEE}C:\hry\far cry 3\bin\farcry3_d3d11.exe" = protocol=6 | dir=in | app=c:\hry\far cry 3\bin\farcry3_d3d11.exe |
"TCP Query User{FD8D26F0-958D-4243-8474-E35C3DDA23BE}C:\hry\sniper ghost warrior 2\bin32\sniperghostwarrior2.exe" = protocol=6 | dir=in | app=c:\hry\sniper ghost warrior 2\bin32\sniperghostwarrior2.exe |
"UDP Query User{190CD4B0-1A6C-4235-8F62-2C0C3AB6108E}C:\program files (x86)\thq\saints row the third\saintsrowthethird_dx11.exe" = protocol=17 | dir=in | app=c:\program files (x86)\thq\saints row the third\saintsrowthethird_dx11.exe |
"UDP Query User{3BD42DFE-DA0C-4D09-9E48-C56CA7C49E8D}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe" = protocol=17 | dir=in | app=c:\windows\microsoft.net\framework\v2.0.50727\vbc.exe |
"UDP Query User{86413F18-8370-4728-97B6-E1917098C202}C:\program files (x86)\r.g. catalyst\f1 2011\f1_2011.exe" = protocol=17 | dir=in | app=c:\program files (x86)\r.g. catalyst\f1 2011\f1_2011.exe |
"UDP Query User{866BC562-219E-4413-8B58-D33AF7D62036}C:\hry\sniper ghost warrior 2\bin32\sniperghostwarrior2.exe" = protocol=17 | dir=in | app=c:\hry\sniper ghost warrior 2\bin32\sniperghostwarrior2.exe |
"UDP Query User{9E17C5D1-F372-4B32-8ED9-390392AF1D8D}C:\program files (x86)\codemasters\f1 2010\f1_2010_game.exe" = protocol=17 | dir=in | app=c:\program files (x86)\codemasters\f1 2010\f1_2010_game.exe |
"UDP Query User{CEB4D7BB-78B6-492A-BEFF-8FC3236CC767}C:\hry\far cry 3\bin\farcry3_d3d11.exe" = protocol=17 | dir=in | app=c:\hry\far cry 3\bin\farcry3_d3d11.exe |
"UDP Query User{E404C770-925C-44F7-B772-AC754FF7185C}C:\program files (x86)\far cry 3\bin\farcry3_d3d11.exe" = protocol=17 | dir=in | app=c:\program files (x86)\far cry 3\bin\farcry3_d3d11.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{1E9FC118-651D-4934-97BE-E53CAE5C7D45}" = Microsoft_VC80_MFCLOC_x86_x64
"{3145731D-C578-70ED-899F-7A670D2A6662}" = AMD Fuel
"{44610EE0-C908-D8F1-425D-914A5B745DEA}" = AMD Drag and Drop Transcoding
"{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}" = Microsoft_VC80_CRT_x86_x64
"{4975DE61-6BF6-B9BC-1FDE-C04C5EC78E4C}" = AMD Media Foundation Decoders
"{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime
"{5E03A267-415E-5383-FA8F-3CE4145663B9}" = AMD Catalyst Install Manager
"{8557397C-A42D-486F-97B3-A2CBC2372593}" = Microsoft_VC90_ATL_x86_x64
"{89EE4A30-080F-2C95-6F78-C98D18FBD74D}" = AMD Accelerated Video Transcoding
"{90140000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2010
"{90140000-002A-0405-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Czech) 2010
"{925D058B-564A-443A-B4B2-7E90C6432E55}" = Microsoft_VC80_ATL_x86_x64
"{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}" = Microsoft_VC90_CRT_x86_x64
"{9B48B0AC-C813-4174-9042-476A887592C7}" = Windows Live ID Sign-in Assistant
"{9CF11D16-ECEB-90A5-A028-CA9E068D848B}" = ccc-utility64
"{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}" = Microsoft_VC90_MFC_x86_x64
"{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}" = Microsoft_VC80_MFC_x86_x64
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"CCleaner" = CCleaner
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"WinRAR archiver" = WinRAR 4.20 (64-bit)

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{017F8447-2A1D-0DDB-B5D7-CA2BFACE2886}" = CCC Help French
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{054E9A1C-3EA2-C657-E787-FD8DCF5C3D3B}" = CCC Help Czech
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{1DE2BD51-0300-772D-5E18-F337D95D5687}" = CCC Help German
"{224E8FEB-5C1F-077F-6FC5-602AC1AE644D}" = CCC Help Danish
"{275E9C49-C72F-D754-DEB7-77F10A9C00D8}" = CCC Help Japanese
"{30049739-BE95-6591-B504-E6D7057D49CC}" = CCC Help Spanish
"{3F1EB155-F96E-EB7B-2EF2-7375490E0FA9}" = CCC Help English
"{4B023D7B-9E67-795D-FB31-B5E1F6DCA451}" = CCC Help Italian
"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.2
"{4F2CE68F-EDBB-4592-BF07-5AC930A51051}" = Nero 7 Ultra Edition
"{55F6C486-8C75-2A72-DAFE-CE78A624C9F7}" = CCC Help Russian
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{5AF23993-7152-1620-E43F-1B4542FB4F84}" = CCC Help Thai
"{5AF4B3C4-C393-48D7-AC7E-8E7615579548}" = Adobe AIR
"{63326924-3CAF-C858-3A8F-8598C87019D7}" = AMD VISION Engine Control Center
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{63822E89-11AA-F8EC-D433-F72A85799EC0}" = CCC Help Greek
"{66361420-4905-AEB8-17AE-172FDD164A7E}" = CCC Help Polish
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{75D84EF7-0D8C-4e70-B3FA-7B42A5D4E0EB}" = Mass Effect 2
"{76285C16-411A-488A-BCE3-C83CB933D8CF}" = Battlefield 3™
"{769F2A4B-84A3-9486-ADD2-9E5AB4B4E1E3}" = Catalyst Control Center InstallProxy
"{8773DD1C-5FB2-95B5-5A93-0EFEAC900A4D}" = CCC Help Norwegian
"{8CCBB0BF-9CC1-1A65-BB93-56012A460EE6}" = CCC Help Portuguese
"{90140000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2010
"{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{047B0968-E622-4FAA-9B4B-121FA109EDDE}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0015-0405-0000-0000000FF1CE}" = Microsoft Office Access MUI (Czech) 2010
"{90140000-0015-0405-0000-0000000FF1CE}_Office14.PROPLUS_{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0016-0405-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Czech) 2010
"{90140000-0016-0405-0000-0000000FF1CE}_Office14.PROPLUS_{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0018-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Czech) 2010
"{90140000-0018-0405-0000-0000000FF1CE}_Office14.PROPLUS_{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0019-0405-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Czech) 2010
"{90140000-0019-0405-0000-0000000FF1CE}_Office14.PROPLUS_{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001A-0405-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Czech) 2010
"{90140000-001A-0405-0000-0000000FF1CE}_Office14.PROPLUS_{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001B-0405-0000-0000000FF1CE}" = Microsoft Office Word MUI (Czech) 2010
"{90140000-001B-0405-0000-0000000FF1CE}_Office14.PROPLUS_{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0405-0000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2010
"{90140000-001F-0405-0000-0000000FF1CE}_Office14.PROPLUS_{2304F942-79D2-46F7-A512-269A7F5B7EFC}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2010
"{90140000-001F-0407-0000-0000000FF1CE}_Office14.PROPLUS_{65A2328E-FDFB-4CA3-8582-357EA6825FEA}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010
"{90140000-001F-0409-0000-0000000FF1CE}_Office14.PROPLUS_{99ACCA38-6DD3-48A8-96AE-A283C9759279}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-041B-0000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2010
"{90140000-001F-041B-0000-0000000FF1CE}_Office14.PROPLUS_{A162C5E6-7778-4D5B-9F0A-38F0122DD859}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUS_{967EF02C-5C7E-4718-8FCB-BDC050190CCF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-002A-0405-1000-0000000FF1CE}_Office14.PROPLUS_{AB90513B-B892-41B5-8F8B-1D356A449652}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-002C-0405-0000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2010
"{90140000-002C-0405-0000-0000000FF1CE}_Office14.PROPLUS_{8148DB19-71B1-4415-8B26-DF5B9E873FC3}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0044-0405-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Czech) 2010
"{90140000-0044-0405-0000-0000000FF1CE}_Office14.PROPLUS_{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-006E-0405-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2010
"{90140000-006E-0405-0000-0000000FF1CE}_Office14.PROPLUS_{EEF3E2C0-135B-44DC-BEDD-7F01CFBEFF46}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-00A1-0405-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Czech) 2010
"{90140000-00A1-0405-0000-0000000FF1CE}_Office14.PROPLUS_{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-00BA-0405-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Czech) 2010
"{90140000-00BA-0405-0000-0000000FF1CE}_Office14.PROPLUS_{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A0A3CE05-96CB-52E9-434E-074F3BB7807E}" = CCC Help Turkish
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9C64319-932F-D02B-B14C-FFFC3EC49E77}" = CCC Help Chinese Standard
"{AC76BA86-7AD7-1029-7B44-AB0000000001}" = Adobe Reader XI (11.0.02) - Czech
"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call
"{C09DB932-7619-7B56-30E3-C0454811D6D7}" = CCC Help Korean
"{C22A4697-BD77-ACB1-744F-1FD0A0BFF798}" = CCC Help Swedish
"{C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B}" = NVIDIA PhysX
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1" = Rapture3D 2.4.4 Game
"{D4B457B2-260F-C561-CA87-703BD3B724CA}" = Catalyst Control Center Graphics Previews Common
"{D6CDB506-297D-AE70-0EF6-DE5185F961BE}" = CCC Help Chinese Traditional
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{E2F0AF23-FE2F-4222-9A43-55E63CC41EF1}" = Catalyst Control Center - Branding
"{ECFD508E-68A2-91B2-46DD-1D03D783D94B}" = Catalyst Control Center Localization All
"{EDE361D5-35A5-DA7D-3462-C3DABD24029B}" = CCC Help Hungarian
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F1E7DD6A-AE2D-D706-BEB3-937F76CA6AE9}" = CCC Help Finnish
"{F2508213-9989-4E85-A078-72BE483917EF}" = Microsoft Games for Windows - LIVE Redistributable
"{F56F54DD-BCB2-1221-2CB7-E983A5CF9D15}" = CCC Help Dutch
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Avira AntiVir Desktop" = Avira Internet Security
"Battlelog Web Plugins" = Battlelog Web Plugins
"DAEMON Tools Lite" = DAEMON Tools Lite
"ESN Sonar-0.70.4" = ESN Sonar
"Free 3GP Video Converter_is1" = Free 3GP Video Converter version 5.0.22.128
"Google Chrome" = Google Chrome
"Chronicles of Riddick_is1" = Chronicles of Riddick
"Office14.PROPLUS" = Microsoft Office Professional Plus 2010
"OpenAL" = OpenAL
"Origin" = Origin
"Posel smrti_is1" = Posel smrti 1.2
"PunkBusterSvc" = PunkBuster Services
"RocketDock_is1" = RocketDock 1.3.5
"uTorrent" = µTorrent
"VLC media player" = VLC media player 2.0.5
"WinPcapInst" = WinPcap 4.1.2

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"deb9dbcc2d58799e" = Odmenovac

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 15. 3. 2013 2:04:46 | Computer Name = Tomas-PC | Source = SideBySide | ID = 16842787
Description = Generování kontextu aktivace pro C:\Program Files (x86)\Nero\Nero
12\Nero Burning ROM\NeroCmd.exe.Manifest se nezdařilo. Chyba v souboru manifestu
nebo zásady C:\Program Files (x86)\Nero\Nero 12\Nero Burning ROM\SMC\SMC.MANIFEST
na řádku 3. Identita komponenty nalezená v manifestu nesouhlasí s identitou požadované
komponenty. Odkaz je SMC,processorArchitecture="x86",type="win32",version="8.2.0.0".
Definice
je SMC,processorArchitecture="x86",type="win32",version="12.0.0.0". Podrobnější
diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 15. 3. 2013 4:20:04 | Computer Name = Tomas-PC | Source = Windows Installer 3.1 | ID = 921877
Description =

Error - 16. 3. 2013 5:34:17 | Computer Name = Tomas-PC | Source = Application Error | ID = 1000
Description = Název chybující aplikace: vlc.exe, verze: 2.0.5.0, časové razítko:
0x50c91d8b Název chybujícího modulu: vlc.exe, verze: 2.0.5.0, časové razítko: 0x50c91d8b
Kód
výjimky: 0xc0000005 Posun chyby: 0x00001665 ID chybujícího procesu: 0x1644 Čas spuštění
chybující aplikace: 0x01ce2220f4b8c250 Cesta k chybující aplikaci: C:\Program Files
(x86)\VideoLAN\VLC\vlc.exe Cesta k chybujícímu modulu: C:\Program Files (x86)\VideoLAN\VLC\vlc.exe
ID
zprávy: ab6ca9f0-8e1c-11e2-a48e-1c6f65b1051c

Error - 16. 3. 2013 5:34:48 | Computer Name = Tomas-PC | Source = Application Error | ID = 1000
Description = Název chybující aplikace: SniperGhostWarrior2.exe, verze: 3.4.1.4621,
časové razítko: 0x5142c884 Název chybujícího modulu: CryRenderD3D9.DLL, verze: 3.4.1.4621,
časové razítko: 0x5142c6a4 Kód výjimky: 0xc0000005 Posun chyby: 0x00135974 ID chybujícího
procesu: 0xf08 Čas spuštění chybující aplikace: 0x01ce2223df8e2e80 Cesta k chybující
aplikaci: C:\Hry\Sniper Ghost Warrior 2\Bin32\SniperGhostWarrior2.exe Cesta k chybujícímu
modulu: C:\Hry\Sniper Ghost Warrior 2\Bin32\CryRenderD3D9.DLL ID zprávy: bde11710-8e1c-11e2-a48e-1c6f65b1051c

Error - 26. 3. 2013 0:50:42 | Computer Name = Tomas-PC | Source = Application Hang | ID = 1002
Description = Program Bioshock.exe verze 1.0.0.0 přestal spolupracovat se systémem
Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto
problému, vyhledejte historii problému v ovládacím panelu Centrum akcí. ID procesu:
6c8 Čas spuštění: 01ce29dd5983eb60 Čas ukončení: 2 Cesta k aplikaci: C:\Program Files
(x86)\2K Games\BioShock\Builds\Release\Bioshock.exe ID hlášení: b4c85bf1-95d0-11e2-b5d6-1c6f65b1051c


Error - 28. 3. 2013 5:12:41 | Computer Name = Tomas-PC | Source = Application Error | ID = 1000
Description = Název chybující aplikace: F1_2011.exe, verze: 1.0.0.0, časové razítko:
0x4e5821b5 Název chybujícího modulu: F1_2011.exe, verze: 1.0.0.0, časové razítko:
0x4e5821b5 Kód výjimky: 0xc0000005 Posun chyby: 0x00b8104a ID chybujícího procesu:
0x808 Čas spuštění chybující aplikace: 0x01ce2b907c0ec1f0 Cesta k chybující aplikaci:
C:\Program Files (x86)\R.G. Catalyst\F1 2011\F1_2011.exe Cesta k chybujícímu modulu:
C:\Program Files (x86)\R.G. Catalyst\F1 2011\F1_2011.exe ID zprávy: a45c2ea0-9787-11e2-91c1-1c6f65b1051c

Error - 29. 3. 2013 3:46:33 | Computer Name = Tomas-PC | Source = .NET Runtime | ID = 1026
Description =

Error - 29. 3. 2013 3:46:44 | Computer Name = Tomas-PC | Source = Application Error | ID = 1000
Description = Název chybující aplikace: AutoKMS.exe, verze: 0.0.0.0, časové razítko:
0x4e32f719 Název chybujícího modulu: KERNELBASE.dll, verze: 6.1.7600.16385, časové
razítko: 0x4a5bdbdf Kód výjimky: 0xe0434352 Posun chyby: 0x0000b727 ID chybujícího
procesu: 0x5bc Čas spuštění chybující aplikace: 0x01ce2c516fff3360 Cesta k chybující
aplikaci: C:\Windows\AutoKMS\AutoKMS.exe Cesta k chybujícímu modulu: C:\Windows\syswow64\KERNELBASE.dll
ID
zprávy: cce13ec0-9844-11e2-b333-1c6f65b1051c

Error - 29. 3. 2013 15:15:27 | Computer Name = Tomas-PC | Source = Application Error | ID = 1000
Description = Název chybující aplikace: vlc.exe, verze: 2.0.5.0, časové razítko:
0x50c91d8b Název chybujícího modulu: vlc.exe, verze: 2.0.5.0, časové razítko: 0x50c91d8b
Kód
výjimky: 0xc0000005 Posun chyby: 0x00001665 ID chybujícího procesu: 0x154c Čas spuštění
chybující aplikace: 0x01ce2ca1abccaf30 Cesta k chybující aplikaci: C:\Program Files
(x86)\VideoLAN\VLC\vlc.exe Cesta k chybujícímu modulu: C:\Program Files (x86)\VideoLAN\VLC\vlc.exe
ID
zprávy: 03712260-98a5-11e2-b052-1c6f65b1051c

Error - 31. 3. 2013 11:38:25 | Computer Name = Tomas-PC | Source = Application Error | ID = 1000
Description = Název chybující aplikace: vlc.exe, verze: 2.0.5.0, časové razítko:
0x50c91d8b Název chybujícího modulu: vlc.exe, verze: 2.0.5.0, časové razítko: 0x50c91d8b
Kód
výjimky: 0xc0000005 Posun chyby: 0x00001665 ID chybujícího procesu: 0x11ec Čas spuštění
chybující aplikace: 0x01ce2e1ceafef718 Cesta k chybující aplikaci: C:\Program Files
(x86)\VideoLAN\VLC\vlc.exe Cesta k chybujícímu modulu: C:\Program Files (x86)\VideoLAN\VLC\vlc.exe
ID
zprávy: 062dc920-9a19-11e2-8329-1c6f65b1051c

[ System Events ]
Error - 27. 3. 2013 7:39:59 | Computer Name = Tomas-PC | Source = Microsoft-Windows-HAL | ID = 12
Description = Firmware platformy při předchozím přechodu systémového napájení poškodil
paměť. Zkontrolujte dostupnost aktualizovaného firmwaru pro váš systém.

Error - 28. 3. 2013 3:19:02 | Computer Name = Tomas-PC | Source = Microsoft-Windows-HAL | ID = 12
Description = Firmware platformy při předchozím přechodu systémového napájení poškodil
paměť. Zkontrolujte dostupnost aktualizovaného firmwaru pro váš systém.

Error - 28. 3. 2013 13:39:08 | Computer Name = Tomas-PC | Source = Service Control Manager | ID = 7011
Description = Při čekání na odezvu transakce služby eventlog bylo dosaženo časového
limitu (30000 ms).

Error - 29. 3. 2013 3:28:42 | Computer Name = Tomas-PC | Source = Service Control Manager | ID = 7011
Description = Při čekání na odezvu transakce služby avast! Antivirus bylo dosaženo
časového limitu (30000 ms).

Error - 29. 3. 2013 12:37:06 | Computer Name = Tomas-PC | Source = Microsoft-Windows-HAL | ID = 12
Description = Firmware platformy při předchozím přechodu systémového napájení poškodil
paměť. Zkontrolujte dostupnost aktualizovaného firmwaru pro váš systém.

Error - 29. 3. 2013 12:44:56 | Computer Name = Tomas-PC | Source = DCOM | ID = 10010
Description =

Error - 29. 3. 2013 12:44:56 | Computer Name = Tomas-PC | Source = Service Control Manager | ID = 7011
Description = Při čekání na odezvu transakce služby AntiVirSchedulerService bylo
dosaženo časového limitu (30000 ms).

Error - 30. 3. 2013 8:19:15 | Computer Name = Tomas-PC | Source = Microsoft-Windows-HAL | ID = 12
Description = Firmware platformy při předchozím přechodu systémového napájení poškodil
paměť. Zkontrolujte dostupnost aktualizovaného firmwaru pro váš systém.

Error - 31. 3. 2013 11:33:38 | Computer Name = Tomas-PC | Source = Microsoft-Windows-HAL | ID = 12
Description = Firmware platformy při předchozím přechodu systémového napájení poškodil
paměť. Zkontrolujte dostupnost aktualizovaného firmwaru pro váš systém.

Error - 31. 3. 2013 11:35:14 | Computer Name = Tomas-PC | Source = Service Control Manager | ID = 7011
Description = Při čekání na odezvu transakce služby Netman bylo dosaženo časového
limitu (30000 ms).


< End of report >

Re: Veľmi vysoké využitie RAM

Napsal: 01 dub 2013 12:03
od Márty84
Jen takova mala technicka...

:???: Jak je to s legalitou systemu? Ultimate neni zrovna bezna domaci verze :?: A co office?

Re: Veľmi vysoké využitie RAM

Napsal: 01 dub 2013 12:34
od LemmY
xxx

Re: Veľmi vysoké využitie RAM

Napsal: 01 dub 2013 12:40
od Márty84
Oboji je cracknute.

A pravidla fora hovori jasne http://forum.viry.cz/viewtopic.php?f=12&t=115512
Pomáhat NELZE:
2) Pokud stroj uživatele prokazatelně obsahuje nelegální hostitelský čí ochranný software
(operační systém, antivir, firewall, atd.), je nutné navést uživatele k nápravě, např. skrze neplacený software,
a začít řešit, až v době kdy je PC "v pořádku". V případě že uživatel nechce na pravidla přistoupit,
je nutné jej vyzvat ať fórum opustí, a vrátí se až je splní.
:42:
LemmY píše:PS: Takto som to robil stále a nebol nikdy problém.
Tim bych se moc nechlubil :arcisit:

Re: Veľmi vysoké využitie RAM

Napsal: 01 dub 2013 12:43
od LemmY
omg :shock:
Tak to mi potom asi nepomôžete

Re: Veľmi vysoké využitie RAM

Napsal: 01 dub 2013 12:46
od Márty84
Ne asi, ale urcite. Pravidla plati pro vsechny a i ja se jimi musim ridit :)

Re: Veľmi vysoké využitie RAM

Napsal: 01 dub 2013 12:48
od LemmY
Tak díky :thumbsup: :D

Re: Veľmi vysoké využitie RAM

Napsal: 01 dub 2013 12:50
od Márty84
No neni zac :D

:closed: