Stránka 1 z 2

Kontrola logu

Napsal: 03 črc 2013 01:10
od zdenek124
Prosim o kontrolui Logu. Dekuji

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 8:04:02 PM, on 7/2/2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16464)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe
C:\ProgramData\Search Protection\SearchProtection.exe
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
C:\PROGRA~2\AD-AWA~1\AdAware.exe
C:\Program Files\NETGATE\Spy Emergency\SpyEmergencyWow64.exe
C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Users\Zdenek\Desktop\hijackthis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://feed.snap.do/?publisher=VertiTec ... nstallDate}
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://feed.snap.do/?publisher=VertiTec ... nstallDate}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://securedsearch2.lavasoft.com/inde ... 51B256963D
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.funmoods.com/?f=1&a=nv1&ch ... =632047212
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://feed.snap.do/?publisher=VertiTec ... nstallDate}
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://feed.snap.do/?publisher=VertiTec ... nstallDate}
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: Vafmusic2 Toolbar - {7f3f960e-a836-45ca-8911-0accb522246e} - C:\Program Files (x86)\Vafmusic2\prxtbVafm.dll
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll
O2 - BHO: LessTabs - {3178A392-8963-471E-B7A2-969CB58D6496} - C:\Program Files (x86)\LessTabs\IE32\LessTabsClientIE.dll
O2 - BHO: Delta SmartbarEngine - {31ad400d-1b06-4e33-a59a-90c2c140cba0} - mscoree.dll (file missing)
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
O2 - BHO: Sing Along - {6492E171-2427-4932-B414-33574A089F5E} - C:\Program Files (x86)\SingAlong\singalng.dll
O2 - BHO: Ad-Aware Security Add-on - {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program Files (x86)\adawaretb\adawareDx.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Vafmusic2 - {7f3f960e-a836-45ca-8911-0accb522246e} - C:\Program Files (x86)\Vafmusic2\prxtbVafm.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: (no name) - !{0E1230F8-EA50-42A9-983C-D22ABC2EED3B} - (no file)
O3 - Toolbar: Delta Smartbar - {ae07101b-46d4-4a98-af68-0333ea26e113} - mscoree.dll (file missing)
O3 - Toolbar: Vafmusic2 Toolbar - {7f3f960e-a836-45ca-8911-0accb522246e} - C:\Program Files (x86)\Vafmusic2\prxtbVafm.dll
O3 - Toolbar: Ad-Aware Security Add-on - {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program Files (x86)\adawaretb\adawareDx.dll
O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe" -osboot
O4 - HKLM\..\Run: [Ad-Aware Browsing Protection] "C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe"
O4 - HKLM\..\Run: [Search Protection] C:\ProgramData\Search Protection\SearchProtection.exe
O4 - HKLM\..\Run: [Ad-Aware Antivirus] "C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareLauncher" --windows-run
O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKCU\..\Run: [SpyEmergency] C:\Program Files\NETGATE\Spy Emergency\SpyEmergency.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: c:\progra~3\browse~1\261339~1.144\{c16c1~1\browse~1.dll
O23 - Service: Ad-Aware Service - Lavasoft Limited - C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareService.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: FastFreeConverterUpdt - Unknown owner - C:\Program Files (x86)\Fast Free Converter\FastFreeConverterUpdt.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: RealNetworks Downloader Resolver Service - Unknown owner - C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Ad-Aware (SBAMSvc) - GFI Software - C:\Program Files (x86)\Ad-Aware Antivirus\SBAMSvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Spy Emergency Engine Service (SpyEmrgSrv) - NETGATE Technologies s.r.o. - C:\Program Files\NETGATE\Spy Emergency\SpyEmergencySrv.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10825 bytes

Re: Kontrola logu

Napsal: 03 črc 2013 06:18
od vyosek
Zdravim :)

Dejte log z RSIT http://forum.viry.cz/viewtopic.php?f=24&t=130784 je podrobnejsi nez HJT

Re: Kontrola logu

Napsal: 03 črc 2013 15:46
od zdenek124
Logfile of random's system information tool 1.09 (written by random/random)
Run by Zdenek at 2013-07-03 10:44:19
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 522 GB (73%) free of 715 GB
Total RAM: 8190 MB (79% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:44:21 AM, on 7/3/2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16464)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe
C:\ProgramData\Search Protection\SearchProtection.exe
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
C:\PROGRA~2\AD-AWA~1\AdAware.exe
C:\Program Files\NETGATE\Spy Emergency\SpyEmergencyWow64.exe
C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe
C:\Program Files\trend micro\Zdenek.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://feed.snap.do/?publisher=VertiTec ... nstallDate}
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://feed.snap.do/?publisher=VertiTec ... nstallDate}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://securedsearch2.lavasoft.com/inde ... 51B256963D
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.funmoods.com/?f=1&a=nv1&ch ... =632047212
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://feed.snap.do/?publisher=VertiTec ... nstallDate}
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://feed.snap.do/?publisher=VertiTec ... nstallDate}
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll
O2 - BHO: LessTabs - {3178A392-8963-471E-B7A2-969CB58D6496} - C:\Program Files (x86)\LessTabs\IE32\LessTabsClientIE.dll
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
O2 - BHO: Sing Along - {6492E171-2427-4932-B414-33574A089F5E} - C:\Program Files (x86)\SingAlong\singalng.dll
O2 - BHO: Ad-Aware Security Add-on - {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program Files (x86)\adawaretb\adawareDx.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: (no name) - !{0E1230F8-EA50-42A9-983C-D22ABC2EED3B} - (no file)
O3 - Toolbar: Ad-Aware Security Add-on - {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program Files (x86)\adawaretb\adawareDx.dll
O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe" -osboot
O4 - HKLM\..\Run: [Ad-Aware Browsing Protection] "C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe"
O4 - HKLM\..\Run: [Search Protection] C:\ProgramData\Search Protection\SearchProtection.exe
O4 - HKLM\..\Run: [Ad-Aware Antivirus] "C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareLauncher" --windows-run
O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKCU\..\Run: [SpyEmergency] C:\Program Files\NETGATE\Spy Emergency\SpyEmergency.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: c:\progra~3\browse~1\261339~1.144\{c16c1~1\browse~1.dll
O23 - Service: Ad-Aware Service - Lavasoft Limited - C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareService.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: FastFreeConverterUpdt - Unknown owner - C:\Program Files (x86)\Fast Free Converter\FastFreeConverterUpdt.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: RealNetworks Downloader Resolver Service - Unknown owner - C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Ad-Aware (SBAMSvc) - GFI Software - C:\Program Files (x86)\Ad-Aware Antivirus\SBAMSvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Spy Emergency Engine Service (SpyEmrgSrv) - NETGATE Technologies s.r.o. - C:\Program Files\NETGATE\Spy Emergency\SpyEmergencySrv.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10465 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
atieclxx
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
taskeng.exe {6B584EDA-B8EE-48D1-AFA0-99164D8822CC}
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareService.exe"
"C:\Program Files (x86)\Fast Free Converter\FastFreeConverterUpdt.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe"
"C:\Program Files\NETGATE\Spy Emergency\SpyEmergencySrv.exe"
"C:\Program Files\SmartTechnology\Software\ProfilerU.exe"
"C:\Program Files\SmartTechnology\Software\SaiMfd.exe"
"C:\Program Files\NETGATE\Spy Emergency\SpyEmergency.exe"
"C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe"
"C:\ProgramData\Search Protection\SearchProtection.exe"
"C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
C:\PROGRA~2\AD-AWA~1\AdAware.exe --run-from-service --silent
"C:\Program Files\NETGATE\Spy Emergency\SpyEmergencyWow64.exe"
"C:\Program Files (x86)\Ad-Aware Antivirus\SBAMSvc.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe" -restart
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=1392.13b58200.1553492991 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" E7CF176E110C211B 1392 "\\.\pipe\gecko-crash-server-pipe.1392" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe" --proxy-stub-channel=Flash9864.6A42BDE0.21394 --host-broker-channel=Flash9864.6A42BDE0.31552 --host-pid=9864 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe" --channel=9580.003DF32C.1402627673 --proxy-stub-channel=Flash9864.6A42BDE0.21394 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll" --host-npapi-version=27 --type=renderer
C:\Windows\system32\AUDIODG.EXE 0x99c
"C:\Users\Zdenek\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\AmiUpdXp.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\Sing Along Update.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Zdenek\AppData\Roaming\Mozilla\Firefox\Profiles\8shrwgz1.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://securedsearch2.lavasoft.com/inde ... 51B256963D"
prefs.js - "keyword.URL" - "http://securedsearch2.lavasoft.com/resu ... &ent=bs&q="

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.7.700.224 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\SysWOW64\Adobe\Director\np32dsw_1202122.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@divx.com/DivX Plus Web Player Plug-In,version=1.0.0]
"Description"=DivX Plus Web Player
"Path"=C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]
"Description"=DivX VOD Helper Plug-in
"Path"=C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.25.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\SysWOW64\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.25.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nexon.net/NxGame]
"Description"=Nexon Game Controller
"Path"=C:\ProgramData\NexonUS\NGM\npNxGameUS.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@ngm.nexoneu.com/NxGame]
"Description"=Nexon Game Controller
"Path"=C:\ProgramData\NexonEU\NGM\npNxGameeu.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nppl3260;version=16.0.1.18]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nprndlchromebrowserrecordext;version=1.3.1]
"Description"=RealNetworks(tm) RealDownloader Chrome Background Extension Plug-In
"Path"=C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nprndlhtml5videoshim;version=1.3.1]
"Description"=RealNetworks(tm) RealDownloader HTML5VideoShim Plug-In
"Path"=C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nprndlpepperflashvideoshim;version=1.3.1]
"Description"=RealNetworks(tm) RealDownloader Peppe rFlash Video Shim Plug-In
"Path"=C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nprpplugin;version=16.0.1.18]
"Description"=RealPlayer Download Plugin
"Path"=c:\program files (x86)\real\realplayer\Netscape6\nprpplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@realnetworks.com/npdlplugin;version=1]
"Description"=RealDownloader Plugin
"Path"=C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.149\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.149\npGoogleUpdate3.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.7.700.224 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_224.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]
"Description"=DivX VOD Helper Plug-in
"Path"=C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.21.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.21.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

C:\Program Files (x86)\Mozilla Firefox\extensions\
lesstabs@lesstabs.com
{650EED71-89E2-453B-8DCF-2AA1B4AE6EF3}

C:\Program Files (x86)\Mozilla Firefox\components\
nsIQTScriptablePlugin.xpt

C:\Program Files (x86)\Mozilla Firefox\plugins\
nppl3260.dll
nppl3260.xpt
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
nprpplugin.dll
QuickTimePlugin.class

C:\Program Files (x86)\Mozilla Firefox\searchplugins\
adawaretb.xml

C:\Users\Zdenek\AppData\Roaming\Mozilla\Firefox\Profiles\8shrwgz1.default\searchplugins\
babylon.xml
BrowserProtect.xml
conduit.xml
delta.xml
Web Search.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-05-03 211360]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealNetworks Download and Record Plugin for Internet Explorer - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll [2013-03-06 540328]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3178A392-8963-471E-B7A2-969CB58D6496}]
LessTabs - C:\Program Files (x86)\LessTabs\IE32\LessTabsClientIE.dll [2013-04-30 143896]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}]
DivX Plus Web Player HTML5 <video> - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll [2013-05-06 194912]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6492E171-2427-4932-B414-33574A089F5E}]
Sing Along - C:\Program Files (x86)\SingAlong\singalng.dll [2013-05-10 127488]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6c97a91e-4524-4019-86af-2aa2d567bf5c}]
Ad-Aware Security Add-on - C:\Program Files (x86)\adawaretb\adawareDx.dll [2013-05-16 87464]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-06-12 463272]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-06-12 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
!{0E1230F8-EA50-42A9-983C-D22ABC2EED3B}

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
!{0E1230F8-EA50-42A9-983C-D22ABC2EED3B}
{6c97a91e-4524-4019-86af-2aa2d567bf5c} - Ad-Aware Security Add-on - C:\Program Files (x86)\adawaretb\adawareDx.dll [2013-05-16 87464]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ProfilerU"=C:\Program Files\SmartTechnology\Software\ProfilerU.exe [2012-10-15 454144]
"SaiMfd"=C:\Program Files\SmartTechnology\Software\SaiMfd.exe [2012-10-15 158208]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"SpyEmergency"=C:\Program Files\NETGATE\Spy Emergency\SpyEmergency.exe [2012-01-18 3465560]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"VirtualCloneDrive"=C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [2011-03-07 89456]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2013-02-02 642656]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-03-12 253816]
"TkBellExe"=C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe [2013-05-04 295512]
"Ad-Aware Browsing Protection"=C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe [2013-05-15 554408]
"Search Protection"=C:\ProgramData\Search Protection\SearchProtection.exe [2013-05-16 942504]
"Ad-Aware Antivirus"=C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareLauncher --windows-run []
"DivXMediaServer"=C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [2013-05-19 450560]
"DivXUpdate"=C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [2013-02-12 1263952]
"APSDaemon"=C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2013-04-21 59720]
"QuickTime Task"=C:\Program Files (x86)\QuickTime\QTTask.exe [2013-05-01 421888]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ad-Aware Service]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MSIServer]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SBAMSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ad-Aware Service]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MSIServer]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SBAMSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"vidc.mjpg"=bdmjpeg64.dll
"vidc.mpeg"=bdmpegv64.dll
"msacm.bdmpeg"=bdmpega64.acm
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2013-07-02 19:59:54 ----D---- C:\rsit
2013-07-02 19:59:54 ----D---- C:\Program Files\trend micro
2013-06-19 20:20:59 ----A---- C:\Windows\SYSWOW64\javaws.exe
2013-06-19 20:20:56 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2013-06-19 20:20:56 ----A---- C:\Windows\SYSWOW64\javaw.exe
2013-06-19 20:20:56 ----A---- C:\Windows\SYSWOW64\java.exe
2013-06-15 14:20:55 ----D---- C:\Users\Zdenek\AppData\Roaming\Apple Computer
2013-06-14 09:25:57 ----D---- C:\ProgramData\Apple Computer
2013-06-14 09:25:57 ----D---- C:\Program Files (x86)\QuickTime
2013-06-14 09:24:58 ----D---- C:\ProgramData\Apple
2013-06-14 09:24:58 ----D---- C:\Program Files (x86)\Apple Software Update
2013-06-08 02:31:50 ----A---- C:\Windows\system32\drivers\gfiark.sys
2013-06-07 18:00:38 ----D---- C:\Users\Zdenek\AppData\Roaming\LavasoftStatistics
2013-06-07 18:00:38 ----D---- C:\ProgramData\Ad-Aware Antivirus
2013-06-07 17:54:31 ----D---- C:\ProgramData\Lavasoft
2013-06-07 17:54:30 ----D---- C:\Program Files (x86)\Ad-Aware Antivirus
2013-06-07 17:54:22 ----D---- C:\ProgramData\Search Protection
2013-06-07 17:54:22 ----D---- C:\ProgramData\Downloaded Installations
2013-06-07 17:54:20 ----D---- C:\ProgramData\blekko toolbars
2013-06-07 17:54:20 ----D---- C:\ProgramData\adawaretb
2013-06-07 17:54:20 ----D---- C:\ProgramData\Ad-Aware Browsing Protection
2013-06-07 17:54:16 ----D---- C:\Program Files (x86)\Toolbar Cleaner
2013-06-07 17:54:10 ----D---- C:\Program Files (x86)\adawaretb
2013-06-07 17:52:34 ----A---- C:\Windows\system32\sbbd.exe
2013-06-07 17:52:34 ----A---- C:\Windows\system32\drivers\gfibto.sys
2013-06-07 17:52:33 ----D---- C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus

======List of files/folders modified in the last 1 month======

2013-07-03 10:44:21 ----D---- C:\Windows\Prefetch
2013-07-03 10:27:58 ----D---- C:\Windows\Temp
2013-07-03 10:26:45 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-07-03 10:16:01 ----SHD---- C:\Windows\Installer
2013-07-03 10:11:17 ----D---- C:\Program Files (x86)
2013-07-03 00:31:19 ----D---- C:\Windows\System32
2013-07-03 00:31:19 ----D---- C:\Program Files (x86)\SingAlong
2013-07-03 00:11:17 ----D---- C:\Windows\system32\config
2013-07-03 00:00:12 ----SHD---- C:\System Volume Information
2013-07-02 20:32:44 ----D---- C:\Program Files (x86)\Vafmusic2
2013-07-02 19:59:54 ----RD---- C:\Program Files
2013-07-02 06:27:11 ----D---- C:\Windows\inf
2013-07-02 06:27:10 ----D---- C:\Windows
2013-06-30 20:59:54 ----D---- C:\Windows\system32\drivers
2013-06-30 15:58:38 ----D---- C:\Windows\system32\Tasks
2013-06-19 20:20:59 ----D---- C:\Windows\SysWOW64
2013-06-19 20:20:56 ----D---- C:\Program Files (x86)\Java
2013-06-14 09:26:21 ----D---- C:\Program Files (x86)\Internet Explorer
2013-06-14 09:25:57 ----HD---- C:\ProgramData
2013-06-14 09:25:06 ----D---- C:\Program Files (x86)\Common Files
2013-06-14 09:22:59 ----D---- C:\ProgramData\DivX
2013-06-14 09:22:59 ----D---- C:\Program Files (x86)\DivX
2013-06-14 09:22:58 ----RSD---- C:\Windows\Fonts
2013-06-14 09:22:31 ----D---- C:\Program Files\DivX
2013-06-12 21:48:23 ----A---- C:\Windows\SYSWOW64\npDeployJava1.dll
2013-06-12 21:48:17 ----A---- C:\Windows\SYSWOW64\deployJava1.dll
2013-06-11 15:14:06 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-06-08 01:22:34 ----D---- C:\ProgramData\BrowserProtect
2013-06-08 01:22:34 ----D---- C:\Program Files (x86)\DnsBasic
2013-06-08 01:21:33 ----D---- C:\ProgramData\MFAData
2013-06-08 01:17:59 ----D---- C:\Program Files (x86)\Yontoo
2013-06-07 18:17:31 ----D---- C:\Windows\system32\catroot2
2013-06-07 18:17:20 ----D---- C:\ProgramData\AVG2013

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 gfibto;gfibto; C:\Windows\system32\drivers\gfibto.sys [2013-06-07 14456]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-13 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 ElbyCDIO;ElbyCDIO Driver; C:\Windows\System32\Drivers\ElbyCDIO.sys [2010-12-16 40816]
R1 SpyEmrg;Spy Emergency Driver; C:\Windows\System32\Drivers\spyemrg.sys [2011-04-21 17240]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-13 59904]
R2 sbapifs;sbapifs; C:\Windows\system32\DRIVERS\sbapifs.sys [2012-09-12 82872]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2013-02-02 11612672]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2013-02-02 576000]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2013-01-15 96768]
R3 EagleX64;EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys []
R3 gfiark;gfiark; C:\Windows\system32\drivers\gfiark.sys [2013-04-11 39504]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-03-02 187392]
R3 SaiK1709;SaiK1709; C:\Windows\system32\DRIVERS\SaiK1709.sys [2012-09-20 180544]
R3 SaiMini;SaiMini; C:\Windows\system32\DRIVERS\SaiMini.sys [2012-10-15 24680]
R3 SaiNtBus;SaiNtBus; C:\Windows\system32\drivers\SaiBus.sys [2012-10-15 52200]
R3 SaiU1709;SaiU1709; C:\Windows\system32\DRIVERS\SaiU1709.sys [2012-09-20 47168]
R3 SpyEmrgGuard;Spy Emergency Real-Time Shield Driver; C:\Windows\System32\Drivers\spyemrg_guard.sys [2011-04-21 18776]
R3 VClone;VClone; C:\Windows\system32\DRIVERS\VClone.sys [2011-01-15 36352]
S3 ewusbnet;HUAWEI USB-NDIS miniport; C:\Windows\system32\DRIVERS\ewusbnet.sys []
S3 huawei_enumerator;huawei_enumerator; C:\Windows\system32\DRIVERS\ew_jubusenum.sys []
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\Windows\system32\DRIVERS\ewusbmdm.sys []
S3 netr28ux;RT2870 USB Extensible Wireless LAN Card Driver; C:\Windows\system32\DRIVERS\netr28ux.sys [2009-08-05 987648]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 20992]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 SpyEmrgAccess;Spy Emergency OnAccess Driver; C:\Windows\System32\Drivers\spyemrg_access.sys [2011-04-21 24408]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Ad-Aware Service;Ad-Aware Service; C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareService.exe [2013-03-18 1236336]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2013-02-02 240640]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-13 27136]
R2 FastFreeConverterUpdt;FastFreeConverterUpdt; C:\Program Files (x86)\Fast Free Converter\FastFreeConverterUpdt.exe [2012-11-26 687104]
R2 RealNetworks Downloader Resolver Service;RealNetworks Downloader Resolver Service; C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe [2013-03-06 39056]
R2 SBAMSvc;Ad-Aware; C:\Program Files (x86)\Ad-Aware Antivirus\SBAMSvc.exe [2012-09-20 3677000]
R2 SpyEmrgSrv;Spy Emergency Engine Service; C:\Program Files\NETGATE\Spy Emergency\SpyEmergencySrv.exe [2011-09-12 3447328]
R3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-13 27136]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-08-22 135664]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-01-08 161536]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-06-11 256904]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 gupdatem;Google Update Service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-08-22 135664]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-05-11 117144]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-13 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-13 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-07-01 1255736]
S4 NetMsmqActivator;@c:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@c:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@c:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

Re: Kontrola logu

Napsal: 03 črc 2013 19:52
od vyosek
:arrow: Jen se zeptam pouzivate legalni operacni system, nejvyssi licence Ultimate zrovna neni bezna.

:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Kliknete na Prohledat
  • Probehne skenovani a pak se objevi log, pripadne bude ulozen na systemovem disku jako AdwCleaner[R?].txt, ten sem vlozte

Re: Kontrola logu

Napsal: 03 črc 2013 20:16
od zdenek124
Dobry den.Ja mam za to ze jsou Legalni.Compa sestavil muj Kamarad.


# AdwCleaner v2.304 - Logfile created 07/03/2013 at 15:07:19
# Updated 03/07/2013 by Xplode
# Operating system : Windows 7 Ultimate Service Pack 1 (64 bits)
# User : Zdenek - ZDENEK-PC
# Boot Mode : Normal
# Running from : C:\Users\Zdenek\Desktop\adwcleaner.exe
# Option [Delete]


***** [Services] *****


***** [Files / Folders] *****

File Deleted : C:\END
File Deleted : C:\Program Files (x86)\Mozilla Firefox\searchplugins\adawaretb.xml
File Deleted : C:\Users\Zdenek\AppData\Local\funmoods-speeddial.crx
File Deleted : C:\Users\Zdenek\AppData\Roaming\Mozilla\Firefox\Profiles\8shrwgz1.default\bprotector_extensions.sqlite
File Deleted : C:\Users\Zdenek\AppData\Roaming\Mozilla\Firefox\Profiles\8shrwgz1.default\bprotector_prefs.js
File Deleted : C:\Users\Zdenek\AppData\Roaming\Mozilla\Firefox\Profiles\8shrwgz1.default\searchplugins\Babylon.xml
File Deleted : C:\Users\Zdenek\AppData\Roaming\Mozilla\Firefox\Profiles\8shrwgz1.default\searchplugins\BrowserProtect.xml
File Deleted : C:\Users\Zdenek\AppData\Roaming\Mozilla\Firefox\Profiles\8shrwgz1.default\searchplugins\Conduit.xml
File Deleted : C:\Users\Zdenek\AppData\Roaming\Mozilla\Firefox\Profiles\8shrwgz1.default\searchplugins\delta.xml
File Deleted : C:\Users\Zdenek\AppData\Roaming\Mozilla\Firefox\Profiles\8shrwgz1.default\searchplugins\Web Search.xml
File Deleted : C:\Windows\Tasks\AmiUpdXp.job
Folder Deleted : C:\Program Files (x86)\adawaretb
Folder Deleted : C:\Program Files (x86)\DnsBasic
Folder Deleted : C:\Program Files (x86)\Free Offers from Freeze.com
Folder Deleted : C:\Program Files (x86)\SingAlong
Folder Deleted : C:\Program Files (x86)\Smartdl
Folder Deleted : C:\Program Files (x86)\Yontoo
Folder Deleted : C:\Program Files\DomaIQ Uninstaller
Folder Deleted : C:\ProgramData\adawaretb
Folder Deleted : C:\ProgramData\Babylon
Folder Deleted : C:\ProgramData\blekko toolbars
Folder Deleted : C:\ProgramData\boost_interprocess
Folder Deleted : C:\ProgramData\BrowserProtect
Folder Deleted : C:\ProgramData\DnsBasic
Folder Deleted : C:\ProgramData\search protection
Folder Deleted : C:\ProgramData\Tarma Installer
Folder Deleted : C:\ProgramData\WeCareReminder
Folder Deleted : C:\Users\Zdenek\AppData\Local\Conduit
Folder Deleted : C:\Users\Zdenek\AppData\Local\Ilivid Player
Folder Deleted : C:\Users\Zdenek\AppData\Local\Smartbar
Folder Deleted : C:\Users\Zdenek\AppData\Local\SwvUpdater
Folder Deleted : C:\Users\Zdenek\AppData\LocalLow\adawaretb
Folder Deleted : C:\Users\Zdenek\AppData\LocalLow\Conduit
Folder Deleted : C:\Users\Zdenek\AppData\LocalLow\Delta
Folder Deleted : C:\Users\Zdenek\AppData\LocalLow\PriceGong
Folder Deleted : C:\Users\Zdenek\AppData\LocalLow\searchquband
Folder Deleted : C:\Users\Zdenek\AppData\Roaming\BabSolution
Folder Deleted : C:\Users\Zdenek\AppData\Roaming\Babylon
Folder Deleted : C:\Users\Zdenek\AppData\Roaming\DriverCure
Folder Deleted : C:\Users\Zdenek\AppData\Roaming\Mozilla\Firefox\Profiles\8shrwgz1.default\FCTB
Folder Deleted : C:\Users\Zdenek\AppData\Roaming\Mozilla\Firefox\Profiles\8shrwgz1.default\Smartbar
Folder Deleted : C:\Users\Zdenek\Documents\ShopToWin
Folder Deleted : C:\Windows\Installer\{EBE677C0-CBCB-4EBF-8098-E27E1B5271CF}

***** [Registry] *****

Data Deleted : HKLM\..\Windows [AppInit_DLLs] = c:\progra~3\browse~1\261339~1.144\{c16c1~1\browse~1.dll
Key Deleted : HKCU\Software\1ClickDownload
Key Deleted : HKCU\Software\AppDataLow\Software\adawaretb
Key Deleted : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
Key Deleted : HKCU\Software\AppDataLow\Software\PriceGong
Key Deleted : HKCU\Software\AppDataLow\Software\searchqutoolbar
Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar
Key Deleted : HKCU\Software\BabSolution
Key Deleted : HKCU\Software\BabylonToolbar
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\DataMngr
Key Deleted : HKCU\Software\delta LTD
Key Deleted : HKCU\Software\Google\Chrome\Extensions\fdloijijlkoblmigdofommgnheckmaki
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{6492E171-2427-4932-B414-33574A089F5E}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{6C97A91E-4524-4019-86AF-2AA2D567BF5C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6492E171-2427-4932-B414-33574A089F5E}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6C97A91E-4524-4019-86AF-2AA2D567BF5C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Key Deleted : HKCU\Software\SmartBar
Key Deleted : HKCU\Software\SmartbarBackup
Key Deleted : HKCU\Software\SmartbarLog
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\wecarereminder
Key Deleted : HKCU\Software\Zugo
Key Deleted : HKCU\Software\580db8fb23ee848
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}
Key Deleted : HKLM\Software\adawaretb
Key Deleted : HKLM\Software\Babylon
Key Deleted : HKLM\Software\BabylonToolbar
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{5B1881D1-D9C7-46DF-B041-1E593282C7D0}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}
Key Deleted : HKLM\SOFTWARE\Classes\Applications\ilividsetupv1.exe
Key Deleted : HKLM\SOFTWARE\Classes\IESmartBar.BandObjectAttribute
Key Deleted : HKLM\SOFTWARE\Classes\IESmartBar.BHO
Key Deleted : HKLM\SOFTWARE\Classes\IESmartBar.DockingPanel
Key Deleted : HKLM\SOFTWARE\Classes\IESmartBar.IESmartBar
Key Deleted : HKLM\SOFTWARE\Classes\IESmartBar.IESmartBarBandObject
Key Deleted : HKLM\SOFTWARE\Classes\IESmartBar.SmartbarDisplayState
Key Deleted : HKLM\SOFTWARE\Classes\IESmartBar.SmartbarMenuForm
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT3198785
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT3287819
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT3289847
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT3294791
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967}
Key Deleted : HKLM\SOFTWARE\Classes\Updater.AmiUpd
Key Deleted : HKLM\SOFTWARE\Classes\Updater.AmiUpd.1
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\DataMngr
Key Deleted : HKLM\Software\Freeze.com
Key Deleted : HKLM\Software\Iminent
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\datamngrUI_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\datamngrUI_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\I Want This_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\I Want This_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetupV1_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetupV1_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SearchquMediaBar_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SearchquMediaBar_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SnapDo_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SnapDo_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\580db8fb23ee848
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{6492E171-2427-4932-B414-33574A089F5E}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{67BD9EEB-AA06-4329-A940-D250019300C9}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{6C97A91E-4524-4019-86AF-2AA2D567BF5C}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{7E84186E-B5DE-4226-8A66-6E49C6B511B4}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{99066096-8989-4612-841F-621A01D54AD7}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{D824F0DE-3D60-4F57-9EB1-66033ECD8ABB}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{FE9271F2-6EFD-44B0-A826-84C829536E93}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eooncjejnppfjjklapaamhcdmjbilmde
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\niapdbllcanepiiimjjndipklodoedlc
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\pmlghpafmmnmmkjdhacccolfgnkiboco
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6492E171-2427-4932-B414-33574A089F5E}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6C97A91E-4524-4019-86AF-2AA2D567BF5C}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{15D2D75C-9CB2-4EFD-BAD7-B9B4CB4BC693}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{EBE677C0-CBCB-4EBF-8098-E27E1B5271CF}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\adawaretb
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\DomaIQ Uninstaller
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1231839B-064E-4788-B865-465A1B5266FD}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37}
Key Deleted : HKLM\SOFTWARE\DataMngr
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\cjpglkicenollcignonpgiafdgfeehoj
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\fdloijijlkoblmigdofommgnheckmaki
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}
Key Deleted : HKLM\SOFTWARE\Tarma Installer
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [bprotector start page]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [bProtectorDefaultScope]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Deleted : HKCU\Software\Mozilla\Firefox\Extensions [singalong@xenophesoft.com]
Value Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{6C97A91E-4524-4019-86AF-2AA2D567BF5C}]
Value Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [10]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [10]

***** [Internet Browsers] *****

-\\ Internet Explorer v9.0.8112.16464

Replaced : [HKCU\Software\Microsoft\Internet Explorer\Main - Search Page] = hxxp://feed.snap.do/?publisher=VertiTechnology&dpid=VertiTechnology&co=US&userid=ad361443-9367-4699-ad47-2d2d99adc2d6&searchtype=ds&q={searchTerms}&installDate={installDate} --> hxxp://www.google.com
Deleted : [HKCU\Software\Microsoft\Internet Explorer\Main - Backup.Old.Start Page]
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Main - Start Page Restore] = hxxp://start.funmoods.com/?f=1&a=nv1&chnl=nv1&cd=2XzutAtN2Y1L1QzutDtDtC0F0DtD0DyEyCzztCtAyCtByEzytN0D0TzutBtDtCtBtDyBtDtC&cr=632047212 --> hxxp://www.google.com
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Main - Search Bar] = hxxp://feed.snap.do/?publisher=VertiTechnology&dpid=VertiTechnology&co=US&userid=ad361443-9367-4699-ad47-2d2d99adc2d6&searchtype=ds&q={searchTerms}&installDate={installDate} --> hxxp://www.google.com
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Search - Default_Search_URL] = hxxp://feed.snap.do/?publisher=VertiTechnology&dpid=VertiTechnology&co=US&userid=ad361443-9367-4699-ad47-2d2d99adc2d6&searchtype=ds&q={searchTerms}&installDate={installDate} --> hxxp://www.google.com
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Search - SearchAssistant] = hxxp://feed.snap.do/?publisher=VertiTechnology&dpid=VertiTechnology&co=US&userid=ad361443-9367-4699-ad47-2d2d99adc2d6&searchtype=ds&q={searchTerms}&installDate={installDate} --> hxxp://www.google.com
Replaced : [HKCU\Software\Microsoft\Internet Explorer\SearchUrl - Default] = hxxp://feed.snap.do/?publisher=VertiTechnology&dpid=VertiTechnology&co=US&userid=ad361443-9367-4699-ad47-2d2d99adc2d6&searchtype=ds&q={searchTerms}&installDate={installDate} --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl - Default] = hxxp://feed.snap.do/?publisher=VertiTechnology&dpid=VertiTechnology&co=US&userid=ad361443-9367-4699-ad47-2d2d99adc2d6&searchtype=ds&q={searchTerms}&installDate={installDate} --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main - Start Page] = hxxp://start.funmoods.com/?f=1&a=nv1&chnl=nv1&cd=2XzutAtN2Y1L1QzutDtDtC0F0DtD0DyEyCzztCtAyCtByEzytN0D0TzutBtDtCtBtDyBtDtC&cr=632047212 --> hxxp://www.google.com
Replaced : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Start Page] = hxxp://start.funmoods.com/?f=1&a=nv1&chnl=nv1&cd=2XzutAtN2Y1L1QzutDtDtC0F0DtD0DyEyCzztCtAyCtByEzytN0D0TzutBtDtCtBtDyBtDtC&cr=632047212 --> hxxp://www.google.com

-\\ Mozilla Firefox v21.0 (cs)

File : C:\Users\Zdenek\AppData\Roaming\Mozilla\Firefox\Profiles\8shrwgz1.default\prefs.js

C:\Users\Zdenek\AppData\Roaming\Mozilla\Firefox\Profiles\8shrwgz1.default\user.js ... Deleted !

Deleted : user_pref("CT3198785.1000082.isPlayDisplay", "true");
Deleted : user_pref("CT3198785.1000082.state", "{\"state\":\"stopped\",\"text\":\"Californi...\",\"description[...]
Deleted : user_pref("CT3198785.129761883816955218.pid2", "3ee66a82e7ac164f");
Deleted : user_pref("CT3198785.ENABALE_HISTORY", "{\"dataType\":\"string\",\"data\":\"true\"}");
Deleted : user_pref("CT3198785.ENABLE_RETURN_WEB_SEARCH_ON_THE_PAGE", "{\"dataType\":\"string\",\"data\":\"tru[...]
Deleted : user_pref("CT3198785.FirstTime", "true");
Deleted : user_pref("CT3198785.FirstTimeFF3", "true");
Deleted : user_pref("CT3198785.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT319[...]
Deleted : user_pref("CT3198785.UserID", "UN45445771932733237");
Deleted : user_pref("CT3198785.addressBarTakeOverEnabledInHidden", "true");
Deleted : user_pref("CT3198785.autoDisableScopes", -1);
Deleted : user_pref("CT3198785.browser.search.defaultthis.engineName", true);
Deleted : user_pref("CT3198785.cbcountry_001", "US");
Deleted : user_pref("CT3198785.cbfirsttime", "Sun Jul 01 2012 15:13:00 GMT-0700");
Deleted : user_pref("CT3198785.defaultSearch", "true");
Deleted : user_pref("CT3198785.embeddedsData", "[{\"appId\":\"129761883813986480\",\"apiPermissions\":{\"cross[...]
Deleted : user_pref("CT3198785.enableAlerts", "always");
Deleted : user_pref("CT3198785.enableSearchFromAddressBar", "true");
Deleted : user_pref("CT3198785.firstTimeDialogOpened", "true");
Deleted : user_pref("CT3198785.fixPageNotFoundError", "true");
Deleted : user_pref("CT3198785.fixPageNotFoundErrorInHidden", "true");
Deleted : user_pref("CT3198785.fixUrls", true);
Deleted : user_pref("CT3198785.installId", "ConduitNSISIntegration");
Deleted : user_pref("CT3198785.installType", "ConduitNSISIntegration");
Deleted : user_pref("CT3198785.isEnableAllDialogs", "{\"dataType\":\"string\",\"data\":\"true\"}");
Deleted : user_pref("CT3198785.isNewTabEnabled", true);
Deleted : user_pref("CT3198785.isPerformedSmartBarTransition", "true");
Deleted : user_pref("CT3198785.isToolbarShrinked", "{\"dataType\":\"string\",\"data\":\"false\"}");
Deleted : user_pref("CT3198785.keyword", true);
Deleted : user_pref("CT3198785.openThankYouPage", "false");
Deleted : user_pref("CT3198785.openUninstallPage", "true");
Deleted : user_pref("CT3198785.search.searchAppId", "129761883813986480");
Deleted : user_pref("CT3198785.search.searchCount", "0");
Deleted : user_pref("CT3198785.searchInNewTabEnabledInHidden", "true");
Deleted : user_pref("CT3198785.selectToSearchBoxEnabled", "{\"dataType\":\"string\",\"data\":\"true\"}");
Deleted : user_pref("CT3198785.serviceLayer_service_login_isFirstLoginInvoked", "{\"dataType\":\"boolean\",\"d[...]
Deleted : user_pref("CT3198785.serviceLayer_service_login_loginCount", "{\"dataType\":\"number\",\"data\":\"3\[...]
Deleted : user_pref("CT3198785.serviceLayer_service_toolbarGrouping_activeCTID", "{\"dataType\":\"string\",\"d[...]
Deleted : user_pref("CT3198785.serviceLayer_service_toolbarGrouping_activeDownloadUrl", "{\"dataType\":\"strin[...]
Deleted : user_pref("CT3198785.serviceLayer_service_toolbarGrouping_activeToolbarName", "{\"dataType\":\"strin[...]
Deleted : user_pref("CT3198785.serviceLayer_service_toolbarGrouping_invoked", "{\"dataType\":\"string\",\"data[...]
Deleted : user_pref("CT3198785.serviceLayer_services_appTrackingFirstTime_lastUpdate", "1341180776918");
Deleted : user_pref("CT3198785.serviceLayer_services_appTracking_lastUpdate", "1341180779074");
Deleted : user_pref("CT3198785.serviceLayer_services_appsMetadata_lastUpdate", "1341180776914");
Deleted : user_pref("CT3198785.serviceLayer_services_gottenAppsContextMenu_lastUpdate", "1341180777999");
Deleted : user_pref("CT3198785.serviceLayer_services_login_10.10.12.5_lastUpdate", "1341180778114");
Deleted : user_pref("CT3198785.serviceLayer_services_optimizer_lastUpdate", "1341180777951");
Deleted : user_pref("CT3198785.serviceLayer_services_otherAppsContextMenu_lastUpdate", "1341180778157");
Deleted : user_pref("CT3198785.serviceLayer_services_searchAPI_lastUpdate", "1341180778106");
Deleted : user_pref("CT3198785.serviceLayer_services_serviceMap_lastUpdate", "1341180776263");
Deleted : user_pref("CT3198785.serviceLayer_services_toolbarContextMenu_lastUpdate", "1341180777981");
Deleted : user_pref("CT3198785.serviceLayer_services_toolbarSettings_lastUpdate", "1341180776482");
Deleted : user_pref("CT3198785.serviceLayer_services_translation_lastUpdate", "1341180776908");
Deleted : user_pref("CT3198785.settingsINI", true);
Deleted : user_pref("CT3198785.shouldFirstTimeDialog", "false");
Deleted : user_pref("CT3198785.smartbar.CTID", "CT3198785");
Deleted : user_pref("CT3198785.smartbar.Uninstall", "0");
Deleted : user_pref("CT3198785.smartbar.homepage", true);
Deleted : user_pref("CT3198785.smartbar.toolbarName", "WhiteSmoke US ");
Deleted : user_pref("CT3198785.toolbarBornServerTime", "2-7-2012");
Deleted : user_pref("CT3198785.toolbarCurrentServerTime", "2-7-2012");
Deleted : user_pref("CT3287819_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\"[...]
Deleted : user_pref("CT3289847.1000082.isPlayDisplay", "true");
Deleted : user_pref("CT3289847.1000082.state", "{\"state\":\"stopped\",\"text\":\"1.FM (Cou...\",\"description[...]
Deleted : user_pref("CT3289847.ENABALE_HISTORY", "{\"dataType\":\"string\",\"data\":\"true\"}");
Deleted : user_pref("CT3289847.ENABLE_RETURN_WEB_SEARCH_ON_THE_PAGE", "{\"dataType\":\"string\",\"data\":\"tru[...]
Deleted : user_pref("CT3289847.FF19Solved", "true");
Deleted : user_pref("CT3289847.FirstTime", "true");
Deleted : user_pref("CT3289847.FirstTimeFF3", "true");
Deleted : user_pref("CT3289847.PG_ENABLE", "dHJ1ZQ==");
Deleted : user_pref("CT3289847.SF_JUST_INSTALLED.enc", "RkFMU0U=");
Deleted : user_pref("CT3289847.SF_STATUS.enc", "RU5BQkxFRA==");
Deleted : user_pref("CT3289847.SF_USER_ID.enc", "Y2lkXzE1MjAxMzEyMzI5MzgwNzM3Nw==");
Deleted : user_pref("CT3289847.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT328[...]
Deleted : user_pref("CT3289847.UserID", "UN33780845581528617");
Deleted : user_pref("CT3289847.addressBarTakeOverEnabledInHidden", "true");
Deleted : user_pref("CT3289847.browser.search.defaultthis.engineName", "true");
Deleted : user_pref("CT3289847.defaultSearch", "true");
Deleted : user_pref("CT3289847.embeddedsData", "[{\"appId\":\"130068661007799818\",\"apiPermissions\":{\"cross[...]
Deleted : user_pref("CT3289847.enableAlerts", "true");
Deleted : user_pref("CT3289847.enableFix404ByUser", "TRUE");
Deleted : user_pref("CT3289847.enableSearchFromAddressBar", "true");
Deleted : user_pref("CT3289847.firstTimeDialogOpened", "true");
Deleted : user_pref("CT3289847.fixPageNotFoundError", "true");
Deleted : user_pref("CT3289847.fixPageNotFoundErrorByUser", "true");
Deleted : user_pref("CT3289847.fixPageNotFoundErrorInHidden", "true");
Deleted : user_pref("CT3289847.fixUrls", true);
Deleted : user_pref("CT3289847.hxxp___api28_starwebnet_com.pid2.enc", "YjM0OTJjODctYjExYi1iMzFlLTg5ZjUtMGM3YjU[...]
Deleted : user_pref("CT3289847.hxxp___toolbar_jollywallet_com_tlb_2.Affiliate_defaultGui.enc", "eyJndWkiOltdLC[...]
Deleted : user_pref("CT3289847.hxxp___toolbar_jollywallet_com_tlb_2.Affiliate_settings.enc", "eyJpbml0VXJsIjoi[...]
Deleted : user_pref("CT3289847.hxxp___toolbar_jollywallet_com_tlb_2.jw_token.enc", "M2NiNDQ4ZTEtYWNjYy1jMDE4LT[...]
Deleted : user_pref("CT3289847.hxxp___toolbar_jollywallet_com_tlb_2.key_list_id.enc", "MjAxMjA4MDItMDAw");
Deleted : user_pref("CT3289847.installDate", "1/5/2013 12:02:28");
Deleted : user_pref("CT3289847.installId", "9818");
Deleted : user_pref("CT3289847.installSessionId", "-1");
Deleted : user_pref("CT3289847.installSp", "TRUE");
Deleted : user_pref("CT3289847.installType", "conduitnsisintegration");
Deleted : user_pref("CT3289847.installerVersion", "1.4.1.3");
Deleted : user_pref("CT3289847.isCheckedStartAsHidden", true);
Deleted : user_pref("CT3289847.isEnableAllDialogs", "{\"dataType\":\"string\",\"data\":\"true\"}");
Deleted : user_pref("CT3289847.isFirstTimeToolbarLoading", "false");
Deleted : user_pref("CT3289847.isToolbarShrinked", "{\"dataType\":\"string\",\"data\":\"false\"}");
Deleted : user_pref("CT3289847.keyword", "true");
Deleted : user_pref("CT3289847.lastNewTabSettings", "{\"isEnabled\":true,\"newTabUrl\":\"hxxp://search.conduit[...]
Deleted : user_pref("CT3289847.lastVersion", "10.14.380.14");
Deleted : user_pref("CT3289847.mam_gk_appStateReportTime.enc", "MTM2NzQyNDE5NDIyMQ==");
Deleted : user_pref("CT3289847.mam_gk_appState_CouponBuddy.enc", "b24=");
Deleted : user_pref("CT3289847.mam_gk_appState_Easytobook.enc", "b24=");
Deleted : user_pref("CT3289847.mam_gk_appState_Easytobook_targeted.enc", "b24=");
Deleted : user_pref("CT3289847.mam_gk_appState_PriceGong.enc", "b24=");
Deleted : user_pref("CT3289847.mam_gk_appState_WindowShopper.enc", "b24=");
Deleted : user_pref("CT3289847.mam_gk_appsData.enc", "eyJhcHBzIjpbeyJpZCI6IlByaWNlR29uZyIsInVybCI6Imh0dHA6Ly9w[...]
Deleted : user_pref("CT3289847.mam_gk_appsDefaultEnabled.enc", "dHJ1ZQ==");
Deleted : user_pref("CT3289847.mam_gk_configuration.enc", "eyJjb25maWd1cmF0aW9uIjpbeyJpZCI6IlByaWNlR29uZyIsImN[...]
Deleted : user_pref("CT3289847.mam_gk_currentVersion.enc", "MS40LjQuNg==");
Deleted : user_pref("CT3289847.mam_gk_eventsCache.enc", "eyI3NjBlYWE5OS02MWY2LTQ4NjgtYjQ1My00MWRjNDc3YzNhOWIiO[...]
Deleted : user_pref("CT3289847.mam_gk_first_time.enc", "MQ==");
Deleted : user_pref("CT3289847.mam_gk_gadgetOpen.enc", "MA==");
Deleted : user_pref("CT3289847.mam_gk_installer_preapproved.enc", "ZmFsc2U=");
Deleted : user_pref("CT3289847.mam_gk_lastLoginTime.enc", "MTM2NzQyNDE5MDQ4NQ==");
Deleted : user_pref("CT3289847.mam_gk_localization.enc", "eyJnYWRnZXRDb250ZW50UG9saWN5Ijp7IlRleHQiOiJDb250ZW50[...]
Deleted : user_pref("CT3289847.mam_gk_pgUnloadedOnce.enc", "dHJ1ZQ==");
Deleted : user_pref("CT3289847.mam_gk_settings1.4.4.6.enc", "eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImludGVyd[...]
Deleted : user_pref("CT3289847.mam_gk_showCloseButton.enc", "dHJ1ZQ==");
Deleted : user_pref("CT3289847.mam_gk_showWelcomeGadget.enc", "dHJ1ZQ==");
Deleted : user_pref("CT3289847.mam_gk_userId.enc", "NjhmNGFmMDAtNGRlNC00OGViLWIwNmEtM2VkYmU0MzMxZTU5");
Deleted : user_pref("CT3289847.migrateAppsAndComponents", true);
Deleted : user_pref("CT3289847.navigationAliasesJson", "{\"EB_SEARCH_TERM\":\"\",\"EB_MAIN_FRAME_URL\":\"about[...]
Deleted : user_pref("CT3289847.openThankYouPage", "false");
Deleted : user_pref("CT3289847.openUninstallPage", "true");
Deleted : user_pref("CT3289847.price-gong.isManagedApp", "true");
Deleted : user_pref("CT3289847.revertSettingsEnabled", "true");
Deleted : user_pref("CT3289847.search.searchAppId", "130068661007799818");
Deleted : user_pref("CT3289847.search.searchCount", "0");
Deleted : user_pref("CT3289847.searchFromAddressBarEnabledByUser", "true");
Deleted : user_pref("CT3289847.searchInNewTabEnabledByUser", "true");
Deleted : user_pref("CT3289847.searchInNewTabEnabledInHidden", "true");
Deleted : user_pref("CT3289847.searchRevert", "true");
Deleted : user_pref("CT3289847.searchUserMode", "2");
Deleted : user_pref("CT3289847.selectToSearchBoxEnabled", "{\"dataType\":\"string\",\"data\":\"true\"}");
Deleted : user_pref("CT3289847.serviceLayer_service_login_isFirstLoginInvoked", "{\"dataType\":\"boolean\",\"d[...]
Deleted : user_pref("CT3289847.serviceLayer_service_login_loginCount", "{\"dataType\":\"number\",\"data\":\"2\[...]
Deleted : user_pref("CT3289847.serviceLayer_service_toolbarGrouping_activeCTID", "{\"dataType\":\"string\",\"d[...]
Deleted : user_pref("CT3289847.serviceLayer_service_toolbarGrouping_activeDownloadUrl", "{\"dataType\":\"strin[...]
Deleted : user_pref("CT3289847.serviceLayer_service_toolbarGrouping_activeToolbarName", "{\"dataType\":\"strin[...]
Deleted : user_pref("CT3289847.serviceLayer_service_toolbarGrouping_invoked", "{\"dataType\":\"string\",\"data[...]
Deleted : user_pref("CT3289847.serviceLayer_services_appTrackingFirstTime_lastUpdate", "1367424186955");
Deleted : user_pref("CT3289847.serviceLayer_services_appsMetadata_lastUpdate", "1367424186914");
Deleted : user_pref("CT3289847.serviceLayer_services_gottenAppsContextMenu_lastUpdate", "1367424186826");
Deleted : user_pref("CT3289847.serviceLayer_services_location_lastUpdate", "1367424184901");
Deleted : user_pref("CT3289847.serviceLayer_services_login_10.14.380.14_lastUpdate", "1367424187102");
Deleted : user_pref("CT3289847.serviceLayer_services_otherAppsContextMenu_lastUpdate", "1367424186862");
Deleted : user_pref("CT3289847.serviceLayer_services_searchAPI_lastUpdate", "1367424184975");
Deleted : user_pref("CT3289847.serviceLayer_services_serviceMap_lastUpdate", "1367424184504");
Deleted : user_pref("CT3289847.serviceLayer_services_setupAPI_lastUpdate", "1367424187035");
Deleted : user_pref("CT3289847.serviceLayer_services_toolbarContextMenu_lastUpdate", "1367424186769");
Deleted : user_pref("CT3289847.serviceLayer_services_toolbarSettings_lastUpdate", "1367424184712");
Deleted : user_pref("CT3289847.serviceLayer_services_translation_lastUpdate", "1367424186926");
Deleted : user_pref("CT3289847.settingsINI", true);
Deleted : user_pref("CT3289847.shouldFirstTimeDialog", "false");
Deleted : user_pref("CT3289847.smartbar.CTID", "CT3289847");
Deleted : user_pref("CT3289847.smartbar.Uninstall", "0");
Deleted : user_pref("CT3289847.smartbar.homepage", "true");
Deleted : user_pref("CT3289847.smartbar.toolbarName", "WhiteSmoke New ");
Deleted : user_pref("CT3289847.startPage", "true");
Deleted : user_pref("CT3289847.toolbarBornServerTime", "1-5-2013");
Deleted : user_pref("CT3289847.toolbarCurrentServerTime", "1-5-2013");
Deleted : user_pref("CT3289847.versionFromInstaller", "10.14.380.14");
Deleted : user_pref("CT3289847_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\"[...]
Deleted : user_pref("CT3294791_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\"[...]
Deleted : user_pref("Smartbar.ConduitHomepagesList", "hxxp://search.conduit.com/?ctid=CT3294791&octid=CT329479[...]
Deleted : user_pref("Smartbar.ConduitSearchEngineList", "");
Deleted : user_pref("Smartbar.ConduitSearchUrlList", "");
Deleted : user_pref("Smartbar.SearchFromAddressBarSavedUrl", "hxxp://www.dnsbasic.com/?prt=dnsbsc50r1&sp=ask.c[...]
Deleted : user_pref("Smartbar.keywordURLSelectedCTID", "CT3294791");
Deleted : user_pref("avg.install.userHPSettings", "hxxp://www.delta-search.com/?affID=120519&babsrc=HP_ss&mntr[...]
Deleted : user_pref("avg.install.userSPSettings", "Delta Search");
Deleted : user_pref("backup.old.browser.search.selectedEngine", "WhiteSmoke US Customized Web Search");
Deleted : user_pref("backup.old.browser.startup.homepage", "hxxp://search.conduit.com/?ctid=CT3198785&SearchSo[...]
Deleted : user_pref("browser.newtab.url", "hxxp://www.delta-search.com/?affID=120519&tt=g ... kry&babsrc[...]
Deleted : user_pref("browser.search.defaultengine", "Ask.com");
Deleted : user_pref("browser.search.defaultthis.engineName", "Vafmusic2 Customized Web Search");
Deleted : user_pref("browser.search.defaulturl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3294791&CUI[...]
Deleted : user_pref("extensions.BabylonToolbar.admin", false);
Deleted : user_pref("extensions.BabylonToolbar.aflt", "babsst");
Deleted : user_pref("extensions.BabylonToolbar.appId", "{BDB69379-802F-4eaf-B541-F8DE92DD98DB}");
Deleted : user_pref("extensions.BabylonToolbar.bbDpng", "12");
Deleted : user_pref("extensions.BabylonToolbar.cntry", "US");
Deleted : user_pref("extensions.BabylonToolbar.dfltLng", "en");
Deleted : user_pref("extensions.BabylonToolbar.dpkLst", "1169821598,3855095921,302281469,2400444324,3654782829[...]
Deleted : user_pref("extensions.BabylonToolbar.envrmnt", "production");
Deleted : user_pref("extensions.BabylonToolbar.excTlbr", false);
Deleted : user_pref("extensions.BabylonToolbar.hdrMd5", "96B3DE8F3603383B98593FBC0C91781F");
Deleted : user_pref("extensions.BabylonToolbar.hmpg", false);
Deleted : user_pref("extensions.BabylonToolbar.id", "365f6249000000000000001fd0d46813");
Deleted : user_pref("extensions.BabylonToolbar.instlDay", "15656");
Deleted : user_pref("extensions.BabylonToolbar.instlRef", "sst");
Deleted : user_pref("extensions.BabylonToolbar.lastVrsnTs", "1.8.3.81:35:58");
Deleted : user_pref("extensions.BabylonToolbar.mntrvrsn", "1.3.1");
Deleted : user_pref("extensions.BabylonToolbar.newTab", "true");
Deleted : user_pref("extensions.BabylonToolbar.pnu_base", "{\"newVrsn\":\"48\",\"lastVrsn\":\"48\",\"vrsnLoad\[...]
Deleted : user_pref("extensions.BabylonToolbar.prdct", "BabylonToolbar");
Deleted : user_pref("extensions.BabylonToolbar.prtnrId", "babylon");
Deleted : user_pref("extensions.BabylonToolbar.sg", "azb");
Deleted : user_pref("extensions.BabylonToolbar.smplGrp", "azb");
Deleted : user_pref("extensions.BabylonToolbar.tlbrId", "base");
Deleted : user_pref("extensions.BabylonToolbar.tlbrSrchUrl", "hxxp://search.babylon.com/?babsrc=TB_def&mntrId=[...]
Deleted : user_pref("extensions.BabylonToolbar.vrsn", "1.8.3.8");
Deleted : user_pref("extensions.BabylonToolbar.vrsnTs", "1.8.3.81:35:58");
Deleted : user_pref("extensions.BabylonToolbar.vrsni", "1.8.3.8");
Deleted : user_pref("extensions.BabylonToolbar_i.newTab", "true");
Deleted : user_pref("extensions.BabylonToolbar_i.newTabUrl", "hxxp://search.babylon.com/?affID=117220&tt=4612_[...]
Deleted : user_pref("extensions.BabylonToolbar_i.smplGrp", "none");
Deleted : user_pref("extensions.BabylonToolbar_i.vrsnTs", "1.8.3.81:35:58");
Deleted : user_pref("extensions.delta.admin", false);
Deleted : user_pref("extensions.delta.aflt", "babsst");
Deleted : user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}");
Deleted : user_pref("extensions.delta.autoRvrt", "false");
Deleted : user_pref("extensions.delta.dfltLng", "en");
Deleted : user_pref("extensions.delta.excTlbr", false);
Deleted : user_pref("extensions.delta.id", "365f6249000000000000001fd0d46813");
Deleted : user_pref("extensions.delta.instlDay", "15798");
Deleted : user_pref("extensions.delta.instlRef", "sst");
Deleted : user_pref("extensions.delta.newTab", false);
Deleted : user_pref("extensions.delta.prdct", "delta");
Deleted : user_pref("extensions.delta.prtnrId", "delta");
Deleted : user_pref("extensions.delta.rvrt", "false");
Deleted : user_pref("extensions.delta.smplGrp", "none");
Deleted : user_pref("extensions.delta.tlbrId", "base");
Deleted : user_pref("extensions.delta.tlbrSrchUrl", "");
Deleted : user_pref("extensions.delta.vrsn", "1.8.10.0");
Deleted : user_pref("extensions.delta.vrsnTs", "1.8.10.04:59:57");
Deleted : user_pref("extensions.delta.vrsni", "1.8.10.0");
Deleted : user_pref("extensions.ffxtlbr@babylon.com.install-event-fired", true);
Deleted : user_pref("extensions.ffxtlbr@delta.com.install-event-fired", true);
Deleted : user_pref("extensions.ffxtlbr@funmoods.com.install-event-fired", true);
Deleted : user_pref("extensions.funmoods.aflt", "nv1");
Deleted : user_pref("extensions.funmoods.autoRvrt", false);
Deleted : user_pref("extensions.funmoods.brwsrsrc", "ietlbr");
Deleted : user_pref("extensions.funmoods.cntry", "US");
Deleted : user_pref("extensions.funmoods.dfltlng", "en");
Deleted : user_pref("extensions.funmoods.dfltsrch", true);
Deleted : user_pref("extensions.funmoods.dnsErr", true);
Deleted : user_pref("extensions.funmoods.envrmnt", "production");
Deleted : user_pref("extensions.funmoods.excTlbr", false);
Deleted : user_pref("extensions.funmoods.hdrMd5", "9B89F993A8998F88565FDC7DF4759206");
Deleted : user_pref("extensions.funmoods.hmpg", true);
Deleted : user_pref("extensions.funmoods.hmpgUrl", "hxxp://start.funmoods.com/?f=1&a=nv1&chnl=nv1&cd=2XzutAtN2[...]
Deleted : user_pref("extensions.funmoods.hrdid", "365f6249000000000000001fd0d46813");
Deleted : user_pref("extensions.funmoods.id", "365f6249000000000000001fd0d46813");
Deleted : user_pref("extensions.funmoods.instlday", "15522");
Deleted : user_pref("extensions.funmoods.instlref", "nv1");
Deleted : user_pref("extensions.funmoods.isdcmntcmplt", true);
Deleted : user_pref("extensions.funmoods.keywordurl", "");
Deleted : user_pref("extensions.funmoods.lastVrsnTs", "1.5.23.2215:15:56");
Deleted : user_pref("extensions.funmoods.logicsmngrdailyreporttime", "01-07-2012");
Deleted : user_pref("extensions.funmoods.mntrvrsn", "1.3.0");
Deleted : user_pref("extensions.funmoods.newtab", true);
Deleted : user_pref("extensions.funmoods.newtaburl", "hxxp://start.funmoods.com/?f=2&a=nv1&chnl=nv1&cd=2XzutAt[...]
Deleted : user_pref("extensions.funmoods.prdct", "funmoods");
Deleted : user_pref("extensions.funmoods.prtnrid", "funmoods");
Deleted : user_pref("extensions.funmoods.savedVrsnTs", "1");
Deleted : user_pref("extensions.funmoods.sg", "none");
Deleted : user_pref("extensions.funmoods.smplgrp", "none");
Deleted : user_pref("extensions.funmoods.srch", "");
Deleted : user_pref("extensions.funmoods.srchprvdr", "Search");
Deleted : user_pref("extensions.funmoods.tlbrid", "base");
Deleted : user_pref("extensions.funmoods.tlbrsrchurl", "");
Deleted : user_pref("extensions.funmoods.vrsn", "1.5.23.22");
Deleted : user_pref("extensions.funmoods.vrsni", "1.5.23.22");
Deleted : user_pref("extensions.funmoods.vrsnts", "1.5.23.2215:15:56");
Deleted : user_pref("extensions.funmoods_i.newTab", true);
Deleted : user_pref("extensions.funmoods_i.smplGrp", "none");
Deleted : user_pref("extensions.funmoods_i.vrsnTs", "1.5.23.2215:15:56");
Deleted : user_pref("extensions.mywebsearch.prevDefaultEngine", "Google");
Deleted : user_pref("extensions.mywebsearch.prevKwdEnabled", true);
Deleted : user_pref("extensions.mywebsearch.prevKwdURL", "hxxp://search.mywebsearch.com/mywebsearch/GGmain.jht[...]
Deleted : user_pref("extensions.mywebsearch.prevSelectedEngine", "Search the web (Babylon)");
Deleted : user_pref("extensions.toolbar.mindspark._gcMembers_.homepage", "hxxp://home.mywebsearch.com/index.jh[...]
Deleted : user_pref("extensions.toolbar@ask.com.install-event-fired", true);
Deleted : user_pref("extentions.y2layers.defaultEnableAppsList", "twittube,ezLooker,pagerage,buzzdock,toprelat[...]
Deleted : user_pref("extentions.y2layers.installId", "a876337a-726e-4712-98f6-b50ec5433f9d");
Deleted : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.AutoSearchEventData", "auto%20search");
Deleted : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.ClearCacheDate", 16);
Deleted : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.DisplayEULA", false);
Deleted : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.DnsCatchEventData", "dns%20catch");
Deleted : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.FirstLaunchShown", true);
Deleted : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.LoadLayoutDate.62781", 16);
Deleted : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.NewTabSearchEventData", "tab%20search");
Deleted : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.ShowRecommendedOptions", true);
Deleted : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.StateReportDate", "1368649216991");
Deleted : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.TopRightSearchEventData", "top%20right%20search[...]
Deleted : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.beforeInstallSaved", true);
Deleted : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.beforeinstall.homepage", "chrome%3A//branding/l[...]
Deleted : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.beforeinstall.search", "Google");
Deleted : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.customNewTab", true);
Deleted : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.helpUsImprove", true);
Deleted : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.hideOthers", false);
Deleted : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.processAddrBar", true);
Deleted : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.restoreSearch", false);
Deleted : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.searchHistory", true);
Deleted : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.session", "FF7416E9BA9E734A54966978C64DF846BFFD[...]
Deleted : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.showFirstLaunchOptions", false);
Deleted : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.tb_lang", "en");
Deleted : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.tool_id", "62781");
Deleted : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.user_id", "79255389");
Deleted : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.user_key", "31ea28ae5662cf789b73a9eb4db04efa859[...]
Deleted : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.user_layouts", "62781");
Deleted : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.user_lnames", "Gamers%20Unite%21%20Snag%20Bar")[...]
Deleted : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.xml_service_url", "64e3a27980eeceb34248bc3e680b[...]
Deleted : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.yahooSearch", true);
Deleted : user_pref("smartbar.machineId", "Y2TCJAALTO+A6OILNNQLQP0VFC/KGTAHBQOHA0ZQ5HRWEKV817VAHYW0X/NZJCJGRCY[...]

-\\ Google Chrome v27.0.1453.116

File : C:\Users\Zdenek\AppData\Local\Google\Chrome\User Data\Default\Preferences

Deleted [l.352] : urls_to_restore_on_startup = ["hxxp://securedsearch2.lavasoft.com/index.php?pr=vmn&id=adawaretb&v[...]

*************************

AdwCleaner[R1].txt - [43067 octets] - [03/07/2013 15:04:50]
AdwCleaner[R2].txt - [43128 octets] - [03/07/2013 15:06:14]
AdwCleaner[S1].txt - [43745 octets] - [03/07/2013 15:07:19]

########## EOF - C:\AdwCleaner[S1].txt - [43806 octets] ##########

Re: Kontrola logu

Napsal: 03 črc 2013 20:19
od vyosek
:arrow: Tak bud Vam dal k PC instalacni DVD se seriovym cislem, nebo musel vylepit COA stitek na PC

:arrow: Stahnete OTL http://oldtimer.geekstogo.com/OTL.exe a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na OTL pravym a dejte Run As Administrator ci Spustit jako spravce
  • Pokud pouzivate 64bitovy OS, zkontrolujte, zda-li je zaskrtnuty ctverecek u Pro 64 bitové OS, pokud ne, zaskrtnete jej
  • Zaskrtnete okenko Pro vsechny uzivatele
  • Zaskrtnete okenko Kontrola na havet "LOP"
  • Zaskrtnete okenko Kontrola na havet "Purity"
  • Stari souboru zmente z 30 dnu na 7 dnu
  • Do spodniho okenka Vlastni skenovani/opravy vlozte skript nize
  • Kód: Vybrat vše

    CREATERESTOREPOINT
    
    netsvcs
    drivers32
    savembr:0
    
    /md5start
    atapi.sys
    autochk.exe
    cdrom.sys
    explorer.exe
    hal.dll
    scecli.dll
    services.exe
    svchost.exe
    tcpip.sys
    userinit.exe
    winlogon.exe
    /md5stop
    
    %systemroot%*.* /U /s
    %SYSTEMDRIVE%\*.exe
    %ALLUSERSPROFILE%\Application Data\*.
    %ALLUSERSPROFILE%\Application Data\*.exe /s
    %APPDATA%\*.
    %APPDATA%\*.exe /s
    %systemroot%\*. /mp /s
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\Tasks\*.job
    %systemroot%\system32\drivers\*.sys /lockedfiles
    %systemroot%\System32\config\*.sav
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\system32\drivers\*.sys /3
    %systemroot%\system32\*.* /3
    %SYSTEMDRIVE%\*.exe
    
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
    
    %PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5
    %PROGRAMFILES%\Internet Explorer\iexplore.exe /md5
    %PROGRAMFILES%\Opera\opera.exe /md5
    %PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5
    
    %SystemDrive%\PhysicalMBR.bin /md5 
    
    *crack* /s
    *keygen* /s
    *loader* /s
  • Kliknete na tlacitko Prohledat
  • Po dokonceni skenu (cca 10 az 15 min) se objevi logy OTL.txt a Extras.txt, oba sem vlozte
  • Pokud budou logy dlouhe (forum bude kricet o prekroceni maximalniho poctu znaku), tak je rozdelte do vice prispevku

Re: Kontrola logu

Napsal: 03 črc 2013 21:48
od zdenek124
Zdravim.Cd me zadne nedal tak myslim ze to bude duch.



1cast.1dil

OTL logfile created on: 7/3/2013 4:09:23 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Zdenek\Desktop
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

8.00 Gb Total Physical Memory | 6.16 Gb Available Physical Memory | 77.03% Memory free
15.99 Gb Paging File | 14.10 Gb Available in Paging File | 88.14% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 698.54 Gb Total Space | 509.30 Gb Free Space | 72.91% Space Free | Partition Type: NTFS
Drive D: | 7.42 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free | Partition Type: UDF

Computer Name: ZDENEK-PC | User Name: Zdenek | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days

========== Processes (SafeList) ==========

PRC - [2013/07/03 15:21:09 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Zdenek\Desktop\OTL.exe
PRC - [2013/05/15 11:17:34 | 000,554,408 | ---- | M] (Lavasoft) -- C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe
PRC - [2013/05/04 07:33:29 | 000,295,512 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe
PRC - [2013/03/18 03:25:46 | 001,236,336 | ---- | M] (Lavasoft Limited) -- C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareService.exe
PRC - [2013/03/18 03:25:44 | 018,828,128 | ---- | M] (Lavasoft Limited) -- C:\Program Files (x86)\Ad-Aware Antivirus\AdAware.exe
PRC - [2013/03/06 02:21:52 | 000,039,056 | ---- | M] () -- C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe
PRC - [2013/02/12 22:37:16 | 001,263,952 | ---- | M] () -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
PRC - [2012/11/26 09:30:00 | 000,687,104 | ---- | M] () -- C:\Program Files (x86)\Fast Free Converter\FastFreeConverterUpdt.exe
PRC - [2012/09/20 05:39:12 | 003,677,000 | ---- | M] (GFI Software) -- C:\Program Files (x86)\Ad-Aware Antivirus\SBAMSvc.exe
PRC - [2011/06/27 11:00:12 | 000,213,848 | ---- | M] (NETGATE Technologies s.r.o.) -- C:\Program Files\NETGATE\Spy Emergency\SpyEmergencyWow64.exe


========== Modules (No Company Name) ==========

MOD - [2013/02/12 22:38:06 | 000,100,688 | ---- | M] () -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdateCheck.dll
MOD - [2013/02/12 22:37:16 | 001,263,952 | ---- | M] () -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe


========== Services (SafeList) ==========

SRV:64bit: - [2013/02/02 16:09:08 | 000,240,640 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2011/09/12 15:41:22 | 003,447,328 | ---- | M] (NETGATE Technologies s.r.o.) [Auto | Running] -- C:\Program Files\NETGATE\Spy Emergency\SpyEmergencySrv.exe -- (SpyEmrgSrv)
SRV:64bit: - [2009/07/13 21:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009/07/13 21:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2013/07/03 11:05:55 | 000,117,144 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013/06/11 15:14:07 | 000,256,904 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013/03/18 03:25:46 | 001,236,336 | ---- | M] (Lavasoft Limited) [Auto | Running] -- C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareService.exe -- (Ad-Aware Service)
SRV - [2013/03/06 02:21:52 | 000,039,056 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe -- (RealNetworks Downloader Resolver Service)
SRV - [2013/01/08 13:55:20 | 000,161,536 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2012/11/26 09:30:00 | 000,687,104 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Fast Free Converter\FastFreeConverterUpdt.exe -- (FastFreeConverterUpdt)
SRV - [2012/09/20 05:39:12 | 003,677,000 | ---- | M] (GFI Software) [Auto | Running] -- C:\Program Files (x86)\Ad-Aware Antivirus\SBAMSvc.exe -- (SBAMSvc)
SRV - [2010/03/18 16:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/06/10 17:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2013/06/07 17:52:34 | 000,014,456 | ---- | M] (GFI Software) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\gfibto.sys -- (gfibto)
DRV:64bit: - [2013/04/11 11:06:54 | 000,039,504 | ---- | M] (ThreatTrack Security) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\gfiark.sys -- (gfiark)
DRV:64bit: - [2013/02/02 16:58:20 | 011,612,672 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2013/02/02 15:40:10 | 000,576,000 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2013/01/15 06:11:26 | 000,096,768 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
DRV:64bit: - [2012/10/15 15:31:32 | 000,052,200 | ---- | M] (Saitek) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SaiBus.sys -- (SaiNtBus)
DRV:64bit: - [2012/10/15 15:31:32 | 000,024,680 | ---- | M] (Saitek) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SaiMini.sys -- (SaiMini)
DRV:64bit: - [2012/09/20 15:54:22 | 000,180,544 | ---- | M] (Saitek) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SaiK1709.sys -- (SaiK1709)
DRV:64bit: - [2012/09/20 15:54:22 | 000,047,168 | ---- | M] (Saitek) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SaiU1709.sys -- (SaiU1709)
DRV:64bit: - [2012/09/12 20:19:38 | 000,082,872 | ---- | M] (GFI Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\sbapifs.sys -- (sbapifs)
DRV:64bit: - [2012/03/01 02:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2011/04/21 10:31:46 | 000,024,408 | ---- | M] (NETGATE Technologies s.r.o.) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\spyemrg_access.sys -- (SpyEmrgAccess)
DRV:64bit: - [2011/04/21 10:31:40 | 000,018,776 | ---- | M] (NETGATE Technologies s.r.o.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\spyemrg_guard.sys -- (SpyEmrgGuard)
DRV:64bit: - [2011/04/21 10:31:32 | 000,017,240 | ---- | M] (NETGATE Technologies s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\spyemrg.sys -- (SpyEmrg)
DRV:64bit: - [2011/03/11 02:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/11 02:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011/01/15 12:21:04 | 000,036,352 | ---- | M] (Elaborate Bytes AG) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VClone.sys -- (VClone)
DRV:64bit: - [2010/12/16 18:58:14 | 000,040,816 | ---- | M] (Elaborate Bytes AG) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\ElbyCDIO.sys -- (ElbyCDIO)
DRV:64bit: - [2010/11/20 09:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/11/20 07:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010/11/20 07:03:42 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2009/08/05 09:59:48 | 000,987,648 | ---- | M] (Ralink Technology Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netr28ux.sys -- (netr28ux)
DRV:64bit: - [2009/07/13 21:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/13 21:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/13 21:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/06/10 16:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 16:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 16:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 16:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/03/02 02:05:32 | 000,187,392 | ---- | M] (Realtek Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV - [2009/07/13 21:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE:64bit: - HKLM\..\SearchScopes,DefaultScope =
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://start.funmoods.com/results.php?f ... =632047212
IE:64bit: - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2453}: "URL" = http://search.fantastigames.com/web?src ... earchTerms}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKLM\..\SearchScopes,Backup.Old.DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://start.funmoods.com/results.php?f ... =632047212


IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\..\SearchScopes\{4C4C7AAB-5854-4241-A414-E2F1EF119C4A}: "URL" = http://www.dnsbasic.com/?prt=DNSBASIC11 ... earchTerms}
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\..\SearchScopes\{4C4C7AAB-5854-4241-A414-E2F1EF119C4A}: "URL" = http://www.dnsbasic.com/?prt=DNSBASIC11 ... earchTerms}
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-21-1555861937-1502566375-777649677-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com
IE - HKU\S-1-5-21-1555861937-1502566375-777649677-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKU\S-1-5-21-1555861937-1502566375-777649677-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://securedsearch2.lavasoft.com/inde ... 51B256963D
IE - HKU\S-1-5-21-1555861937-1502566375-777649677-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
IE - HKU\S-1-5-21-1555861937-1502566375-777649677-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
IE - HKU\S-1-5-21-1555861937-1502566375-777649677-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = ED 13 50 81 BD 57 CD 01 [binary data]
IE - HKU\S-1-5-21-1555861937-1502566375-777649677-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore = http://www.google.com
IE - HKU\S-1-5-21-1555861937-1502566375-777649677-1000\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com
IE - HKU\S-1-5-21-1555861937-1502566375-777649677-1000\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com
IE - HKU\S-1-5-21-1555861937-1502566375-777649677-1000\..\SearchScopes,Backup.Old.DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-1555861937-1502566375-777649677-1000\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-1555861937-1502566375-777649677-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://start.funmoods.com/results.php?f ... =632047212
IE - HKU\S-1-5-21-1555861937-1502566375-777649677-1000\..\SearchScopes\{16AE843F-AD20-4653-AF2D-B1C985CAA172}: "URL" = http://search.conduit.com/ResultsExt.as ... 06475&UM=2
IE - HKU\S-1-5-21-1555861937-1502566375-777649677-1000\..\SearchScopes\{4C4C7AAB-5854-4241-A414-E2F1EF119C4A}: "URL" = http://www.dnsbasic.com/?prt=dnsbsc50r1 ... earchTerms}
IE - HKU\S-1-5-21-1555861937-1502566375-777649677-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://securedsearch2.lavasoft.com/inde ... 51B256963D"
FF - prefs.js..extensions.enabledAddons: %7B23fcfd51-4958-4f00-80a3-ae97e717ed8b%7D:2.1.2.172
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:22.0
FF - prefs.js..keyword.URL: "http://securedsearch2.lavasoft.com/resu ... &ent=bs&q="
FF - user.js - File not found

FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_224.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.21.2: C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.21.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw_1202122.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Plus Web Player Plug-In,version=1.0.0: C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.25.2: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.25.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@nexon.net/NxGame: C:\ProgramData\NexonUS\NGM\npNxGameUS.dll (Nexon)
FF - HKLM\Software\MozillaPlugins\@ngm.nexoneu.com/NxGame: C:\ProgramData\NexonEU\NGM\npNxGameeu.dll File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=16.0.1.18: c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprndlchromebrowserrecordext;version=1.3.1: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprndlhtml5videoshim;version=1.3.1: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprndlpepperflashvideoshim;version=1.3.1: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpplugin;version=16.0.1.18: c:\program files (x86)\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer)
FF - HKLM\Software\MozillaPlugins\@realnetworks.com/npdlplugin;version=1: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.149\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.149\npGoogleUpdate3.dll (Google Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2013/05/04 07:33:58 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\lesstabs@lesstabs.com: C:\Program Files (x86)\Mozilla Firefox\extensions\lesstabs@lesstabs.com [2013/07/03 11:05:52 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{DAC3F861-B30D-40dd-9166-F4E75327FAC7}: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ [2013/05/04 07:33:58 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\extension@FastFreeConverter.com: C:\Program Files (x86)\Fast Free Converter\FastFreeConverter\extension@FastFreeConverter.com [2013/05/13 14:23:10 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2013/06/14 09:22:59 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 22.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013/07/03 11:05:52 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 22.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013/07/03 11:05:52 | 000,000,000 | ---D | M]

[2012/08/25 15:48:32 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Zdenek\AppData\Roaming\Mozilla\Extensions
[2013/07/02 20:38:14 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Zdenek\AppData\Roaming\Mozilla\Firefox\Profiles\8shrwgz1.default\extensions
[2012/09/13 09:37:41 | 000,621,521 | ---- | M] () (No name found) -- C:\Users\Zdenek\AppData\Roaming\Mozilla\Firefox\Profiles\8shrwgz1.default\extensions\testpilot@labs.mozilla.com.xpi
[2013/07/03 11:05:52 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2013/07/03 11:05:52 | 000,000,000 | ---D | M] (DnsBasic) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{650EED71-89E2-453B-8DCF-2AA1B4AE6EF3}
[2013/07/03 11:05:52 | 000,000,000 | ---D | M] () -- C:\Program Files (x86)\Mozilla Firefox\extensions\lesstabs@lesstabs.com
[2013/07/03 11:05:52 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2013/07/03 11:05:55 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2013/06/14 09:22:59 | 000,000,000 | ---D | M] (No name found) -- C:\PROGRAM FILES (X86)\DIVX\DIVX PLUS WEB PLAYER\FIREFOX\DIVXHTML5
[2013/05/04 07:33:32 | 000,124,504 | ---- | M] (RealPlayer) -- C:\Program Files (x86)\mozilla firefox\plugins\nprpplugin.dll
[2013/05/13 08:12:06 | 000,000,644 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\adawaretb.xml

========== Chrome ==========

CHR - homepage: http://securedsearch2.lavasoft.com/inde ... 51B256963D
CHR - homepage: http://securedsearch2.lavasoft.com/inde ... 51B256963D
CHR - Extension: LessTabs = C:\Users\Zdenek\AppData\Local\Google\Chrome\User Data\Default\Extensions\cekmkdkefndbeciggfanobcemjnppbbb\1.7.1.0_0\
CHR - Extension: RealDownloader = C:\Users\Zdenek\AppData\Local\Google\Chrome\User Data\Default\Extensions\idhngdhcfkoamngbedgpaokgjbnpdiji\1.3.0_0\
CHR - Extension: No name found = C:\Users\Zdenek\AppData\Local\Google\Chrome\User Data\Default\Extensions\phegaokedjdajgnfphbnpkcfdgjbidko\1.0.0.6\

O1 HOSTS File: ([2013/05/17 12:39:05 | 000,000,845 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (RealNetworks Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader)
O2 - BHO: (LessTabs) - {3178A392-8963-471E-B7A2-969CB58D6496} - C:\Program Files (x86)\LessTabs\IE32\LessTabsClientIE.dll (LessTabs)
O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3:64bit: - HKLM\..\Toolbar: (no name) - !{0E1230F8-EA50-42A9-983C-D22ABC2EED3B} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - !{0E1230F8-EA50-42A9-983C-D22ABC2EED3B} - No CLSID value found.
O3 - HKU\S-1-5-21-1555861937-1502566375-777649677-1000\..\Toolbar\WebBrowser: (no name) - {CCE665DD-F6DD-4808-968E-EAEC971F70EF} - No CLSID value found.
O4:64bit: - HKLM..\Run: [ProfilerU] C:\Program Files\SmartTechnology\Software\ProfilerU.exe (Saitek)
O4:64bit: - HKLM..\Run: [SaiMfd] C:\Program Files\SmartTechnology\Software\SaiMfd.exe (Saitek)
O4 - HKLM..\Run: [Ad-Aware Antivirus] C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareLauncher.exe (Lavasoft Limited)
O4 - HKLM..\Run: [Ad-Aware Browsing Protection] C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe (Lavasoft)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe (DivX, LLC)
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [Search Protection] C:\ProgramData\Search Protection\SearchProtection.exe File not found
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [TkBellExe] C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe (RealNetworks, Inc.)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-1555861937-1502566375-777649677-1000..\Run: [SpyEmergency] C:\Program Files\NETGATE\Spy Emergency\SpyEmergency.exe (NETGATE Technologies s.r.o.)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Activities present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKU\S-1-5-21-1555861937-1502566375-777649677-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{07D42F06-121A-4A89-9BC7-4D31FF7FA7E7}: DhcpNameServer = 10.59.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{9503AD45-8539-4CFC-9AEA-92529A9FF9A8}: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{B2D9C57A-B345-428E-9DAF-004958A5DE5E}: DhcpNameServer = 192.168.0.1
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2011/11/25 14:56:43 | 008,094,560 | R--- | M] (Electronic Arts, Inc.) - D:\AutoRun.exe -- [ UDF ]
O32 - AutoRun File - [2012/01/10 10:42:25 | 000,000,000 | R--D | M] - D:\Autorun -- [ UDF ]
O32 - AutoRun File - [2011/10/12 23:29:52 | 000,022,486 | R--- | M] () - D:\Autorun.ico -- [ UDF ]
O32 - AutoRun File - [2011/12/13 14:35:49 | 000,000,136 | R--- | M] () - D:\autorun.inf -- [ UDF ]
O33 - MountPoints2\{14905745-1781-11e2-af0e-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{14905745-1781-11e2-af0e-806e6f6e6963}\Shell\AutoRun\command - "" = E:\AutoRun.exe
O33 - MountPoints2\{3b54f1ba-0048-11e2-b71c-001fd0811b5b}\Shell - "" = AutoRun
O33 - MountPoints2\{3b54f1ba-0048-11e2-b71c-001fd0811b5b}\Shell\AutoRun\command - "" = "G:\WD SmartWare.exe" autoplay=true
O33 - MountPoints2\{4f5b9f58-05c6-11e2-a1af-001fd0811b5b}\Shell - "" = AutoRun
O33 - MountPoints2\{4f5b9f58-05c6-11e2-a1af-001fd0811b5b}\Shell\AutoRun\command - "" = G:\autorun.exe
O33 - MountPoints2\{5b7728ba-1781-11e2-8f6f-001fd0811b5b}\Shell - "" = AutoRun
O33 - MountPoints2\{5b7728ba-1781-11e2-8f6f-001fd0811b5b}\Shell\AutoRun\command - "" = E:\AutoRun.exe
O33 - MountPoints2\{5e888a45-2dc2-11e2-8472-001fd0811b5b}\Shell - "" = AutoRun
O33 - MountPoints2\{5e888a45-2dc2-11e2-8472-001fd0811b5b}\Shell\AutoRun\command - "" = E:\LaunchU3.exe -a
O33 - MountPoints2\{ea69fae1-c3bb-11e1-9805-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{ea69fae1-c3bb-11e1-9805-806e6f6e6963}\Shell\AutoRun\command - "" = D:\AutoRun.exe -- [2011/11/25 14:56:43 | 008,094,560 | R--- | M] (Electronic Arts, Inc.)
O33 - MountPoints2\E\Shell - "" = AutoRun
O33 - MountPoints2\E\Shell\AutoRun\command - "" = E:\AutoRun.exe
O33 - MountPoints2\F\Shell - "" = AutoRun
O33 - MountPoints2\F\Shell\AutoRun\command - "" = F:\AutoRunCD.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

NetSvcs:64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)

Drivers32:64bit: msacm.bdmpeg - bdmpega64.acm ()
Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32:64bit: vidc.mjpg - bdmjpeg64.dll ()
Drivers32:64bit: vidc.mpeg - bdmpegv64.dll ()
Drivers32: msacm.bdmpeg - C:\Windows\SysWow64\bdmpega.acm ()
Drivers32: msacm.l3acm - C:\Windows\SysWow64\l3codecp.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
Drivers32: vidc.DIVX - C:\Windows\SysWow64\DivX.dll (DivX, Inc.)
Drivers32: vidc.mjpg - C:\Windows\SysWow64\bdmjpeg.dll ()
Drivers32: vidc.mpeg - C:\Windows\SysWow64\bdmpegv.dll ()
Drivers32: vidc.yv12 - C:\Windows\SysWow64\DivX.dll (DivX, Inc.)
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin

========== Files/Folders - Created Within 7 Days ==========

[2013/07/03 15:21:09 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Zdenek\Desktop\OTL.exe
[2013/07/03 11:05:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2013/07/02 20:03:20 | 000,388,608 | ---- | C] (Trend Micro Inc.) -- C:\Users\Zdenek\Desktop\hijackthis.exe
[2013/07/02 19:59:54 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2013/07/02 19:59:54 | 000,000,000 | ---D | C] -- C:\rsit
[2012/08/22 16:05:10 | 000,457,789 | ---- | C] (Freedom Download Manager ) -- C:\Users\Zdenek\AppData\Roaming\fdm-setup.exe
[2012/08/22 16:05:09 | 000,419,554 | ---- | C] (SearchAmong ) -- C:\Users\Zdenek\AppData\Roaming\satoolbar.exe

========== Files - Modified Within 7 Days ==========

[2013/07/03 16:10:53 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2013/07/03 15:21:09 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Zdenek\Desktop\OTL.exe
[2013/07/03 15:16:00 | 000,000,898 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2013/07/03 15:14:00 | 000,000,914 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2013/07/03 15:10:10 | 000,001,828 | ---- | M] () -- C:\Users\Public\Desktop\Ad-Aware Antivirus.lnk
[2013/07/03 15:09:22 | 000,000,894 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2013/07/03 15:09:21 | 000,000,394 | ---- | M] () -- C:\Windows\tasks\Sing Along Update.job
[2013/07/03 15:09:14 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013/07/03 15:09:11 | 2146,148,351 | -HS- | M] () -- C:\hiberfil.sys
[2013/07/03 15:02:51 | 000,650,027 | ---- | M] () -- C:\Users\Zdenek\Desktop\adwcleaner.exe
[2013/07/02 20:03:23 | 000,388,608 | ---- | M] (Trend Micro Inc.) -- C:\Users\Zdenek\Desktop\hijackthis.exe
[2013/07/02 19:56:00 | 000,935,175 | ---- | M] () -- C:\Users\Zdenek\Desktop\RSITx64.exe

========== Files Created - No Company Name ==========

[2013/07/03 15:32:10 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2013/07/03 15:02:49 | 000,650,027 | ---- | C] () -- C:\Users\Zdenek\Desktop\adwcleaner.exe
[2013/07/02 19:55:58 | 000,935,175 | ---- | C] () -- C:\Users\Zdenek\Desktop\RSITx64.exe
[2013/05/01 12:17:44 | 000,000,000 | ---- | C] () -- C:\ProgramData\322d363a2a3954382a_c
[2012/12/29 00:44:26 | 001,563,302 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2012/11/27 01:18:46 | 000,038,912 | ---- | C] () -- C:\Windows\SysWow64\kdbsdk32.dll
[2012/08/22 13:13:10 | 000,178,688 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2012/07/01 14:32:23 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2012/06/11 12:50:16 | 000,204,952 | ---- | C] () -- C:\Windows\SysWow64\ativvsvl.dat
[2012/06/11 12:50:16 | 000,157,144 | ---- | C] () -- C:\Windows\SysWow64\ativvsva.dat
[2011/09/12 18:06:16 | 000,003,917 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat

========== ZeroAccess Check ==========

[2009/07/14 00:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2012/06/09 01:43:10 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2012/06/09 00:41:00 | 012,873,728 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/13 21:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 08:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/13 21:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== LOP Check ==========

[2013/06/08 01:21:34 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus
[2013/05/14 14:34:00 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\AVG
[2013/05/04 07:42:21 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\AVG2013
[2012/09/27 19:53:42 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\Command & Conquer 3 Tiberium Wars
[2012/09/23 16:50:52 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\DAEMON Tools Pro
[2012/11/12 02:36:35 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\Go PDF Reader
[2013/05/29 10:15:23 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\Origin
[2013/02/16 09:16:45 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\PC Utility Kit
[2013/04/03 05:00:07 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\player
[2012/10/16 07:08:19 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\Program Files (x86)
[2013/05/27 13:02:11 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\Spy Emergency
[2013/05/01 12:16:20 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\Strongvault
[2013/05/14 15:02:30 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\TuneUp Software

========== Purity Check ==========



========== Custom Scans ==========

< >
[2009/07/14 01:08:49 | 000,000,006 | -H-- | C] () -- C:\Windows\Tasks\SA.DAT
[2009/07/14 01:08:49 | 000,027,376 | ---- | C] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2012/07/01 15:25:33 | 000,000,914 | ---- | C] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job
[2012/08/22 13:22:42 | 000,000,894 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2012/08/22 13:22:43 | 000,000,898 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
[2013/05/16 13:22:54 | 000,000,394 | ---- | C] () -- C:\Windows\Tasks\Sing Along Update.job

< >

< MD5 for: ATAPI.SYS >
[2009/07/13 21:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\drivers\atapi.sys
[2009/07/13 21:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_aad30bdeec04ea5e\atapi.sys
[2009/07/13 21:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys
[2009/07/13 21:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys

< MD5 for: AUTOCHK.EXE >
[2010/11/20 09:24:26 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\SysNative\autochk.exe
[2010/11/20 09:24:26 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_4019f2b8d860ad30\autochk.exe
[2009/07/13 21:14:12 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=41E4C8EBA464E7D6A5BA5E8827732AEB -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_e1ca436d2314b860\autochk.exe
[2009/07/13 21:38:56 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=8B7F8E882A649D81CEA1EDE9BBB68FFF -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_3de8def0db722996\autochk.exe
[2010/11/20 08:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\SysWOW64\autochk.exe
[2010/11/20 08:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_e3fb573520033bfa\autochk.exe

< MD5 for: CDROM.SYS >
[2009/07/13 19:19:54 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=83D2D75E1EFB81B3450C18131443F7DB -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7600.16385_none_bb9e4d89bd7870f1\cdrom.sys
[2010/11/20 05:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\drivers\cdrom.sys
[2010/11/20 05:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_neutral_0b3d0d1942ab684b\cdrom.sys
[2010/11/20 05:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_bdcf6151ba66f48b\cdrom.sys

< MD5 for: EXPLORER.EXE >
[2011/02/26 02:23:14 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=0862495E0C825893DB75EF44FAEA8E93 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_adc24107935a7e25\explorer.exe
[2011/02/26 01:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_ba87e574ddfe652d\explorer.exe
[2009/07/13 21:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_b7fe430bc7ce3761\explorer.exe
[2011/02/26 01:51:13 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=255CF508D7CFB10E0794D6AC93280BD8 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_b8ce9756e0b786a4\explorer.exe
[2009/10/31 01:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_b819b343c7ba6202\explorer.exe
[2011/02/26 01:33:07 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=2AF58D15EDC06EC6FDACCE1F19482BBF -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_b816eb59c7bb4020\explorer.exe
[2011/02/25 02:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\explorer.exe
[2011/02/25 02:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_afa79dc39081d0ba\explorer.exe
[2011/02/26 02:14:34 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=3B69712041F3D63605529BD66DC00C48 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_b0333b22a99da332\explorer.exe
[2010/11/20 08:17:09 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe
[2009/08/03 02:19:07 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=700073016DAC1C3D2E7E2CE4223334B6 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_ae84b558ac4eb41c\explorer.exe
[2011/02/25 01:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\SysWOW64\explorer.exe
[2011/02/25 01:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_b9fc4815c4e292b5\explorer.exe
[2009/10/31 02:34:59 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=9AAAEC8DAC27AA17B053E6352AD233AE -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_adc508f19359a007\explorer.exe
[2009/08/03 01:49:47 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=9FF6C4C91A3711C0A3B18F87B08B518D -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_b8d95faae0af7617\explorer.exe
[2010/11/20 09:24:45 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe
[2009/10/31 02:38:38 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=B8EC4BD49CE8F6FC457721BFC210B67F -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_ae46d6aeac7ca7c7\explorer.exe
[2009/08/03 01:35:50 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=B95EEB0F4E5EFBF1038A35B3351CF047 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_b853c407c78e3ba9\explorer.exe
[2009/07/13 21:39:10 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=C235A51CB740E45FFA0EBFB9BAFCDA64 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_ada998b9936d7566\explorer.exe
[2009/10/31 02:00:51 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=C76153C7ECA00FA852BB0C193378F917 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_b89b8100e0dd69c2\explorer.exe
[2011/02/26 02:26:45 | 002,870,784 | ---- | M] (Microsoft Corporation) MD5=E38899074D4951D31B4040E994DD7C8D -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_ae79ed04ac56c4a9\explorer.exe
[2009/08/03 02:17:37 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=F170B4A061C9E026437B193B4D571799 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_adff19b5932d79ae\explorer.exe

Re: Kontrola logu

Napsal: 03 črc 2013 22:09
od zdenek124
1cast.2dil

[2010/11/20 09:33:34 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\SysNative\hal.dll
[2010/11/20 09:33:34 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7601.17514_none_094ef8137049c196\hal.dll

< MD5 for: SCECLI.DLL >
[2009/07/13 21:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9e577e55272d37b4\scecli.dll
[2009/07/13 21:41:53 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=398712DDDAEFB85EDF61DF6A07B65C79 -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9402d402f2cc75b9\scecli.dll
[2010/11/20 08:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\SysWOW64\scecli.dll
[2010/11/20 08:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_a088921d241bbb4e\scecli.dll
[2010/11/20 09:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\SysNative\scecli.dll
[2010/11/20 09:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_9633e7caefbaf953\scecli.dll

< MD5 for: SERVICES.EXE >
[2009/07/13 21:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\SysNative\services.exe
[2009/07/13 21:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.exe

< MD5 for: SVCHOST.EXE >
[2009/07/13 21:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\SysWOW64\svchost.exe
[2009/07/13 21:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2009/07/13 21:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\SysNative\svchost.exe
[2009/07/13 21:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48c\svchost.exe

< MD5 for: TCPIP.SYS >
[2010/11/20 09:33:57 | 001,924,480 | ---- | M] (Microsoft Corporation) MD5=509383E505C973ED7534A06B3D19688D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17514_none_114417c17d05cb37\tcpip.sys
[2013/01/04 01:41:01 | 001,893,224 | ---- | M] (Microsoft Corporation) MD5=5CFB7AB8F9524D1A1E14369DE63B83CC -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.17206_none_0f6a6af57fd59de6\tcpip.sys
[2012/03/30 06:19:17 | 001,877,872 | ---- | M] (Microsoft Corporation) MD5=5EFD096DEF47F8B88EF591DA92143440 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.21178_none_0faa5514992a39a7\tcpip.sys
[2012/03/30 07:09:53 | 001,895,280 | ---- | M] (Microsoft Corporation) MD5=624C5B3AA4C99B3184BB922D9ECE3FF0 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16986_none_0f140fa780164fde\tcpip.sys
[2013/01/03 01:57:12 | 001,876,824 | ---- | M] (Microsoft Corporation) MD5=692969AB90BDA19F56E27BF89A9260E2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.21415_none_0fe8397098fc3d71\tcpip.sys
[2012/03/30 06:26:36 | 001,901,424 | ---- | M] (Microsoft Corporation) MD5=885B202006EE17AE99B9FBCEC9AF88C9 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21954_none_11a27a8e9643d23a\tcpip.sys
[2009/07/13 21:45:55 | 001,898,576 | ---- | M] (Microsoft Corporation) MD5=912107716BAB424C7870E8E6AF5E07E1 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16385_none_0f1303f98017479d\tcpip.sys
[2012/03/30 07:35:47 | 001,918,320 | ---- | M] (Microsoft Corporation) MD5=ACB82BDA8F46C84F465C1AFA517DC4B9 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17802_none_114ceccb7cff740d\tcpip.sys
[2013/01/03 02:00:54 | 001,913,192 | ---- | M] (Microsoft Corporation) MD5=B62A953F2BF3922C8764A29C34A22899 -- C:\Windows\SysNative\drivers\tcpip.sys
[2013/01/03 02:00:54 | 001,913,192 | ---- | M] (Microsoft Corporation) MD5=B62A953F2BF3922C8764A29C34A22899 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18042_none_112187237d20143a\tcpip.sys
[2013/01/04 01:47:43 | 001,901,416 | ---- | M] (Microsoft Corporation) MD5=B8C1AAC0523E1C33AEB0EF7572144BA2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22209_none_11dd678a9616f2c8\tcpip.sys

< MD5 for: USERINIT.EXE >
[2010/11/20 08:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\SysWOW64\userinit.exe
[2010/11/20 08:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2009/07/13 21:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe
[2009/07/13 21:39:48 | 000,030,208 | ---- | M] (Microsoft Corporation) MD5=6F8F1376A13114CC10C0E69274F5A4DE -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_381dabbceb60feb2\userinit.exe
[2010/11/20 09:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\SysNative\userinit.exe
[2010/11/20 09:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe

< MD5 for: WINLOGON.EXE >
[2010/11/20 09:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\SysNative\winlogon.exe
[2010/11/20 09:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
[2009/07/13 21:39:52 | 000,389,120 | ---- | M] (Microsoft Corporation) MD5=132328DF455B0028F13BF0ABEE51A63A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe
[2009/10/28 03:01:57 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=A93D41A4D4B0D91C072D11DD8AF266DE -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_cc522fd507b468f8\winlogon.exe
[2009/10/28 02:24:40 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_cbe534e7ee8042ad\winlogon.exe

< >

< %systemroot%*.* /U /s >
[2 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[5 C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]
[67 C:\Windows\Installer\*.tmp files -> C:\Windows\Installer\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >
[2013/06/07 18:00:38 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\Ad-Aware Antivirus
[2013/06/07 17:54:20 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\Ad-Aware Browsing Protection
[2013/05/16 14:02:10 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\Adobe
[2013/02/16 10:25:01 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\AMD
[2013/06/14 09:24:58 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\Apple
[2013/06/14 09:25:57 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\Apple Computer
[2009/07/14 01:08:56 | 000,000,000 | -HSD | M] -- C:\ProgramData\Application Data\Application Data
[2013/02/16 10:25:02 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\ATI
[2013/05/14 14:34:16 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\AVG
[2013/06/07 18:17:20 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\AVG2013
[2013/05/04 07:38:57 | 000,000,000 | -H-D | M] -- C:\ProgramData\Application Data\Common Files
[2012/10/16 07:09:07 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\Cricket Broadband EC1705
[2012/09/23 16:55:45 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\DAEMON Tools Pro
[2012/11/13 14:51:44 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\DatacardService
[2009/07/14 01:08:56 | 000,000,000 | -HSD | M] -- C:\ProgramData\Application Data\Desktop
[2013/06/14 09:22:59 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\DivX
[2009/07/14 01:08:56 | 000,000,000 | -HSD | M] -- C:\ProgramData\Application Data\Documents
[2013/06/07 17:54:22 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\Downloaded Installations
[2012/09/30 02:04:00 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\EA Core
[2012/09/30 13:33:07 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\EA Logs
[2012/09/30 02:04:02 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\Electronic Arts
[2009/07/14 01:08:56 | 000,000,000 | -HSD | M] -- C:\ProgramData\Application Data\Favorites
[2013/06/07 17:54:31 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\Lavasoft
[2013/02/16 09:21:58 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\Malwarebytes
[2012/11/13 14:48:44 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\McAfee
[2013/06/08 01:21:33 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\MFAData
[2013/05/16 14:32:06 | 000,000,000 | --SD | M] -- C:\ProgramData\Application Data\Microsoft
[2012/07/01 15:20:15 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\Mozilla
[2013/05/16 14:32:03 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\NETGATE
[2012/07/01 18:30:21 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\Nexon
[2012/09/03 11:58:07 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\NexonEU
[2013/03/20 21:31:25 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\NexonUS
[2013/05/29 10:15:22 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\Origin
[2013/02/16 09:20:30 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\PC Utility Kit
[2013/05/04 07:34:54 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\Real
[2013/05/04 07:33:58 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\RealNetworks
[2013/01/11 14:45:36 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\Skype
[2013/02/16 10:46:20 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\SmartTechnology
[2009/07/14 01:08:56 | 000,000,000 | -HSD | M] -- C:\ProgramData\Application Data\Start Menu
[2013/05/16 12:45:37 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\Sun
[2013/03/20 11:36:33 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\TEMP
[2009/07/14 01:08:56 | 000,000,000 | -HSD | M] -- C:\ProgramData\Application Data\Templates
[2013/05/14 14:32:52 | 000,000,000 | -HSD | M] -- C:\ProgramData\Application Data\{D1D4879F-2279-49C9-AEBF-3B95C84EAA8F}

< %ALLUSERSPROFILE%\Application Data\*.exe /s >
[2013/05/15 11:17:34 | 000,554,408 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Ad-Aware Browsing Protection\adawarebp.exe
[2013/05/15 11:17:42 | 000,460,200 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Ad-Aware Browsing Protection\uninstall.exe
[2013/05/15 11:17:34 | 000,554,408 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe
[2013/05/15 11:17:42 | 000,460,200 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe
[2013/05/15 11:17:34 | 000,554,408 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe
[2013/05/15 11:17:42 | 000,460,200 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe
[2013/05/15 11:17:34 | 000,554,408 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe
[2013/05/15 11:17:42 | 000,460,200 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe
[2013/05/15 11:17:34 | 000,554,408 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe
[2013/05/15 11:17:42 | 000,460,200 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe
[2013/05/15 11:17:34 | 000,554,408 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe
[2013/05/15 11:17:42 | 000,460,200 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe
[2013/05/15 11:17:34 | 000,554,408 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe
[2013/05/15 11:17:42 | 000,460,200 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe
[2013/05/15 11:17:34 | 000,554,408 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe
[2013/05/15 11:17:42 | 000,460,200 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe
[2013/05/15 11:17:34 | 000,554,408 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe
[2013/05/15 11:17:42 | 000,460,200 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe
[2013/05/15 11:17:34 | 000,554,408 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe
[2013/05/15 11:17:42 | 000,460,200 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe
[2013/05/15 11:17:34 | 000,554,408 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe
[2013/05/15 11:17:42 | 000,460,200 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe
File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe
File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe
File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\ASPEncoder\Uninstaller.exe
File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\ControlPanel\Uninstaller.exe
File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Converter\Uninstaller.exe
File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DFXPlugin\Uninstaller.exe
File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSAACDecoder\Uninstaller.exe
File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSASPDecoder\Uninstaller.exe
File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSAVCDecoder\Uninstaller.exe
File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\MFComponents\Uninstaller.exe
File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\MPEG2Plugin\Uninstaller.exe
File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\OVSHelper\Uninstaller.exe
File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Player\Uninstaller.exe
File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Qt4.8\Uninstaller.exe
File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Setup\DivXSetup.exe
File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Update\Uninstaller.exe
File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\WebPlayer\Uninstaller.exe
File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgmfapx.exe
File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgntdumpx.exe
File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrdtestx.exe
File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrunasx.exe
File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avguirux.exe
[2013/05/16 16:32:29 | 000,172,032 | ---- | M] (Nexon) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\NexonUS\NGM\NGM.exe
File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Cricket Broadband EC1705\userdata\LiveUpd.exe
File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Cricket Broadband EC1705\userdata\ouc.exe
[2013/06/14 09:22:22 | 000,056,969 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\ASPEncoder\Uninstaller.exe
[2013/06/14 09:22:25 | 000,065,783 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\ControlPanel\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,834 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Converter\Uninstaller.exe
[2013/06/14 09:22:30 | 000,063,144 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DesktopService\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,854 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DFXPlugin\Uninstaller.exe
[2013/06/14 09:22:28 | 000,056,458 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXDecoderShortcut\Uninstaller.exe
[2013/06/14 09:22:31 | 000,064,587 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXMediaServer\Uninstaller.exe
[2013/06/14 09:22:59 | 000,064,957 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXPlusShortcuts\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,879 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSAACDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,057,275 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSASPDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,054,166 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSAVCDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,065,229 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSDesktopComponents\Uninstaller.exe
[2013/06/14 09:22:32 | 000,065,801 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\MFComponents\Uninstaller.exe
[2013/06/14 09:22:25 | 000,054,101 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\MPEG2Plugin\Uninstaller.exe
[2013/06/14 09:22:21 | 000,061,667 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\MSVC80CRTRedist\Uninstaller.exe
[2013/06/14 09:22:22 | 000,063,228 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\OVSHelper\Uninstaller.exe
[2013/06/14 09:22:42 | 000,066,088 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Player\Uninstaller.exe
[2013/06/14 09:22:24 | 000,062,264 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Qt4.8\Uninstaller.exe
[2013/06/14 09:20:19 | 000,957,248 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Setup\DivXSetup.exe
[2013/06/14 09:22:27 | 000,062,887 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\TranscodeEngine\Uninstaller.exe
[2013/06/14 09:22:34 | 000,065,056 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\TransferWizard\Uninstaller.exe
[2013/06/14 09:22:42 | 000,061,792 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Update\Uninstaller.exe
[2013/06/14 09:22:59 | 000,065,856 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\WebPlayer\Uninstaller.exe
[2013/05/04 07:39:10 | 007,330,384 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgmfapx.exe
[2013/05/04 07:39:09 | 000,621,176 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgntdumpx.exe
[2013/05/04 07:39:10 | 000,015,480 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrdtestx.exe
[2013/05/04 07:39:09 | 000,270,968 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrunasx.exe
[2013/05/04 07:39:10 | 000,042,104 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avguirux.exe
[2013/05/16 16:32:29 | 000,172,032 | ---- | M] (Nexon) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\NexonUS\NGM\NGM.exe
[2012/10/16 07:08:17 | 001,475,072 | ---- | M] () -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Cricket Broadband EC1705\userdata\LiveUpd.exe
[2012/10/16 07:08:17 | 000,196,608 | ---- | M] () -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Cricket Broadband EC1705\userdata\ouc.exe
[2013/06/14 09:22:22 | 000,056,969 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\ASPEncoder\Uninstaller.exe
[2013/06/14 09:22:25 | 000,065,783 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\ControlPanel\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,834 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Converter\Uninstaller.exe
[2013/06/14 09:22:30 | 000,063,144 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DesktopService\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,854 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DFXPlugin\Uninstaller.exe
[2013/06/14 09:22:28 | 000,056,458 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXDecoderShortcut\Uninstaller.exe
[2013/06/14 09:22:31 | 000,064,587 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXMediaServer\Uninstaller.exe
[2013/06/14 09:22:59 | 000,064,957 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXPlusShortcuts\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,879 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSAACDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,057,275 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSASPDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,054,166 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSAVCDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,065,229 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSDesktopComponents\Uninstaller.exe
[2013/06/14 09:22:32 | 000,065,801 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\MFComponents\Uninstaller.exe
[2013/06/14 09:22:25 | 000,054,101 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\MPEG2Plugin\Uninstaller.exe
[2013/06/14 09:22:21 | 000,061,667 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\MSVC80CRTRedist\Uninstaller.exe
[2013/06/14 09:22:22 | 000,063,228 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\OVSHelper\Uninstaller.exe
[2013/06/14 09:22:42 | 000,066,088 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Player\Uninstaller.exe
[2013/06/14 09:22:24 | 000,062,264 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Qt4.8\Uninstaller.exe
[2013/06/14 09:20:19 | 000,957,248 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Setup\DivXSetup.exe
[2013/06/14 09:22:27 | 000,062,887 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\TranscodeEngine\Uninstaller.exe
[2013/06/14 09:22:34 | 000,065,056 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\TransferWizard\Uninstaller.exe
[2013/06/14 09:22:42 | 000,061,792 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Update\Uninstaller.exe
[2013/06/14 09:22:59 | 000,065,856 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\WebPlayer\Uninstaller.exe
[2013/05/04 07:39:10 | 007,330,384 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgmfapx.exe
[2013/05/04 07:39:09 | 000,621,176 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgntdumpx.exe
[2013/05/04 07:39:10 | 000,015,480 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrdtestx.exe
[2013/05/04 07:39:09 | 000,270,968 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrunasx.exe
[2013/05/04 07:39:10 | 000,042,104 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avguirux.exe
[2013/05/16 16:32:29 | 000,172,032 | ---- | M] (Nexon) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\NexonUS\NGM\NGM.exe
File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Origin\DownloadCache\{ CP_Guest_3584(1)_ver3 }\OriginThinSetup.exe
[2012/10/16 07:08:17 | 001,475,072 | ---- | M] () -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Cricket Broadband EC1705\userdata\LiveUpd.exe
[2012/10/16 07:08:17 | 000,196,608 | ---- | M] () -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Cricket Broadband EC1705\userdata\ouc.exe
[2013/06/14 09:22:22 | 000,056,969 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\ASPEncoder\Uninstaller.exe
[2013/06/14 09:22:25 | 000,065,783 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\ControlPanel\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,834 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Converter\Uninstaller.exe
[2013/06/14 09:22:30 | 000,063,144 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DesktopService\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,854 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DFXPlugin\Uninstaller.exe
[2013/06/14 09:22:28 | 000,056,458 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXDecoderShortcut\Uninstaller.exe
[2013/06/14 09:22:31 | 000,064,587 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXMediaServer\Uninstaller.exe
[2013/06/14 09:22:59 | 000,064,957 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXPlusShortcuts\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,879 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSAACDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,057,275 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSASPDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,054,166 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSAVCDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,065,229 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSDesktopComponents\Uninstaller.exe
[2013/06/14 09:22:32 | 000,065,801 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\MFComponents\Uninstaller.exe
[2013/06/14 09:22:25 | 000,054,101 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\MPEG2Plugin\Uninstaller.exe
[2013/06/14 09:22:21 | 000,061,667 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\MSVC80CRTRedist\Uninstaller.exe
[2013/06/14 09:22:22 | 000,063,228 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\OVSHelper\Uninstaller.exe
[2013/06/14 09:22:42 | 000,066,088 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Player\Uninstaller.exe
[2013/06/14 09:22:24 | 000,062,264 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Qt4.8\Uninstaller.exe
[2013/06/14 09:20:19 | 000,957,248 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Setup\DivXSetup.exe
[2013/06/14 09:22:27 | 000,062,887 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\TranscodeEngine\Uninstaller.exe
[2013/06/14 09:22:34 | 000,065,056 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\TransferWizard\Uninstaller.exe
[2013/06/14 09:22:42 | 000,061,792 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Update\Uninstaller.exe
[2013/06/14 09:22:59 | 000,065,856 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\WebPlayer\Uninstaller.exe
[2013/05/04 07:39:10 | 007,330,384 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgmfapx.exe
[2013/05/04 07:39:09 | 000,621,176 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgntdumpx.exe
[2013/05/04 07:39:10 | 000,015,480 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrdtestx.exe
[2013/05/04 07:39:09 | 000,270,968 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrunasx.exe
[2013/05/04 07:39:10 | 000,042,104 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avguirux.exe
[2013/05/16 16:32:29 | 000,172,032 | ---- | M] (Nexon) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\NexonUS\NGM\NGM.exe
[2012/09/30 12:26:14 | 016,910,176 | ---- | M] (Electronic Arts, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Origin\DownloadCache\{ CP_Guest_3584(1)_ver3 }\OriginThinSetup.exe
[2012/10/16 07:08:17 | 001,475,072 | ---- | M] () -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Cricket Broadband EC1705\userdata\LiveUpd.exe
[2012/10/16 07:08:17 | 000,196,608 | ---- | M] () -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Cricket Broadband EC1705\userdata\ouc.exe
[2013/06/14 09:22:22 | 000,056,969 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\ASPEncoder\Uninstaller.exe
[2013/06/14 09:22:25 | 000,065,783 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\ControlPanel\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,834 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Converter\Uninstaller.exe
[2013/06/14 09:22:30 | 000,063,144 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DesktopService\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,854 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DFXPlugin\Uninstaller.exe
[2013/06/14 09:22:28 | 000,056,458 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXDecoderShortcut\Uninstaller.exe
[2013/06/14 09:22:31 | 000,064,587 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXMediaServer\Uninstaller.exe
[2013/06/14 09:22:59 | 000,064,957 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXPlusShortcuts\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,879 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSAACDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,057,275 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSASPDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,054,166 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSAVCDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,065,229 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSDesktopComponents\Uninstaller.exe
[2013/06/14 09:22:32 | 000,065,801 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\MFComponents\Uninstaller.exe
[2013/06/14 09:22:25 | 000,054,101 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\MPEG2Plugin\Uninstaller.exe
[2013/06/14 09:22:21 | 000,061,667 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\MSVC80CRTRedist\Uninstaller.exe
[2013/06/14 09:22:22 | 000,063,228 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\OVSHelper\Uninstaller.exe
[2013/06/14 09:22:42 | 000,066,088 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Player\Uninstaller.exe
[2013/06/14 09:22:24 | 000,062,264 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Qt4.8\Uninstaller.exe
[2013/06/14 09:20:19 | 000,957,248 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Setup\DivXSetup.exe
[2013/06/14 09:22:27 | 000,062,887 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\TranscodeEngine\Uninstaller.exe
[2013/06/14 09:22:34 | 000,065,056 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\TransferWizard\Uninstaller.exe
[2013/06/14 09:22:42 | 000,061,792 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Update\Uninstaller.exe
[2013/06/14 09:22:59 | 000,065,856 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\WebPlayer\Uninstaller.exe
[2013/05/04 07:39:10 | 007,330,384 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgmfapx.exe
[2013/05/04 07:39:09 | 000,621,176 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgntdumpx.exe
[2013/05/04 07:39:10 | 000,015,480 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrdtestx.exe
[2013/05/04 07:39:09 | 000,270,968 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrunasx.exe
[2013/05/04 07:39:10 | 000,042,104 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avguirux.exe
[2013/05/16 16:32:29 | 000,172,032 | ---- | M] (Nexon) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\NexonUS\NGM\NGM.exe
[2012/09/30 12:26:14 | 016,910,176 | ---- | M] (Electronic Arts, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Origin\DownloadCache\{ CP_Guest_3584(1)_ver3 }\OriginThinSetup.exe
[2012/10/16 07:08:17 | 001,475,072 | ---- | M] () -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Cricket Broadband EC1705\userdata\LiveUpd.exe
[2012/10/16 07:08:17 | 000,196,608 | ---- | M] () -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Cricket Broadband EC1705\userdata\ouc.exe
[2013/06/14 09:22:22 | 000,056,969 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\ASPEncoder\Uninstaller.exe
[2013/06/14 09:22:25 | 000,065,783 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\ControlPanel\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,834 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Converter\Uninstaller.exe
[2013/06/14 09:22:30 | 000,063,144 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DesktopService\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,854 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DFXPlugin\Uninstaller.exe
[2013/06/14 09:22:28 | 000,056,458 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXDecoderShortcut\Uninstaller.exe
[2013/06/14 09:22:31 | 000,064,587 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXMediaServer\Uninstaller.exe
[2013/06/14 09:22:59 | 000,064,957 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXPlusShortcuts\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,879 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSAACDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,057,275 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSASPDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,054,166 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSAVCDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,065,229 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSDesktopComponents\Uninstaller.exe
[2013/06/14 09:22:32 | 000,065,801 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\MFComponents\Uninstaller.exe
[2013/06/14 09:22:25 | 000,054,101 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\MPEG2Plugin\Uninstaller.exe
[2013/06/14 09:22:21 | 000,061,667 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\MSVC80CRTRedist\Uninstaller.exe
[2013/06/14 09:22:22 | 000,063,228 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\OVSHelper\Uninstaller.exe
[2013/06/14 09:22:42 | 000,066,088 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Player\Uninstaller.exe
[2013/06/14 09:22:24 | 000,062,264 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Qt4.8\Uninstaller.exe
[2013/06/14 09:20:19 | 000,957,248 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Setup\DivXSetup.exe
[2013/06/14 09:22:27 | 000,062,887 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\TranscodeEngine\Uninstaller.exe
[2013/06/14 09:22:34 | 000,065,056 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\TransferWizard\Uninstaller.exe
[2013/06/14 09:22:42 | 000,061,792 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Update\Uninstaller.exe
[2013/06/14 09:22:59 | 000,065,856 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\WebPlayer\Uninstaller.exe
[2013/05/04 07:39:10 | 007,330,384 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgmfapx.exe
[2013/05/04 07:39:09 | 000,621,176 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgntdumpx.exe
[2013/05/04 07:39:10 | 000,015,480 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrdtestx.exe
[2013/05/04 07:39:09 | 000,270,968 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrunasx.exe
[2013/05/04 07:39:10 | 000,042,104 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avguirux.exe
[2013/05/16 16:32:29 | 000,172,032 | ---- | M] (Nexon) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\NexonUS\NGM\NGM.exe
[2012/09/30 12:26:14 | 016,910,176 | ---- | M] (Electronic Arts, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Origin\DownloadCache\{ CP_Guest_3584(1)_ver3 }\OriginThinSetup.exe
[2012/10/16 07:08:17 | 001,475,072 | ---- | M] () -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Cricket Broadband EC1705\userdata\LiveUpd.exe
[2012/10/16 07:08:17 | 000,196,608 | ---- | M] () -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Cricket Broadband EC1705\userdata\ouc.exe
[2013/06/14 09:22:22 | 000,056,969 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\ASPEncoder\Uninstaller.exe
[2013/06/14 09:22:25 | 000,065,783 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\ControlPanel\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,834 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Converter\Uninstaller.exe
[2013/06/14 09:22:30 | 000,063,144 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DesktopService\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,854 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DFXPlugin\Uninstaller.exe
[2013/06/14 09:22:28 | 000,056,458 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXDecoderShortcut\Uninstaller.exe
[2013/06/14 09:22:31 | 000,064,587 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXMediaServer\Uninstaller.exe
[2013/06/14 09:22:59 | 000,064,957 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXPlusShortcuts\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,879 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSAACDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,057,275 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSASPDecoder\Uninstaller.exe

Re: Kontrola logu

Napsal: 03 črc 2013 22:11
od zdenek124
1cast.3dil.


[2013/06/14 09:22:29 | 000,054,166 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSAVCDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,065,229 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSDesktopComponents\Uninstaller.exe
[2013/06/14 09:22:32 | 000,065,801 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\MFComponents\Uninstaller.exe
[2013/06/14 09:22:25 | 000,054,101 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\MPEG2Plugin\Uninstaller.exe
[2013/06/14 09:22:21 | 000,061,667 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\MSVC80CRTRedist\Uninstaller.exe
[2013/06/14 09:22:22 | 000,063,228 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\OVSHelper\Uninstaller.exe
[2013/06/14 09:22:42 | 000,066,088 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Player\Uninstaller.exe
[2013/06/14 09:22:24 | 000,062,264 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Qt4.8\Uninstaller.exe
[2013/06/14 09:20:19 | 000,957,248 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Setup\DivXSetup.exe
[2013/06/14 09:22:27 | 000,062,887 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\TranscodeEngine\Uninstaller.exe
[2013/06/14 09:22:34 | 000,065,056 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\TransferWizard\Uninstaller.exe
[2013/06/14 09:22:42 | 000,061,792 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Update\Uninstaller.exe
[2013/06/14 09:22:59 | 000,065,856 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\WebPlayer\Uninstaller.exe
[2013/05/04 07:39:10 | 007,330,384 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgmfapx.exe
[2013/05/04 07:39:09 | 000,621,176 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgntdumpx.exe
[2013/05/04 07:39:10 | 000,015,480 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrdtestx.exe
[2013/05/04 07:39:09 | 000,270,968 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrunasx.exe
[2013/05/04 07:39:10 | 000,042,104 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avguirux.exe
[2013/05/16 16:32:29 | 000,172,032 | ---- | M] (Nexon) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\NexonUS\NGM\NGM.exe
[2012/09/30 12:26:14 | 016,910,176 | ---- | M] (Electronic Arts, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Origin\DownloadCache\{ CP_Guest_3584(1)_ver3 }\OriginThinSetup.exe
[2012/10/16 07:08:17 | 001,475,072 | ---- | M] () -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Cricket Broadband EC1705\userdata\LiveUpd.exe
[2012/10/16 07:08:17 | 000,196,608 | ---- | M] () -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Cricket Broadband EC1705\userdata\ouc.exe
[2013/06/14 09:22:22 | 000,056,969 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\ASPEncoder\Uninstaller.exe
[2013/06/14 09:22:25 | 000,065,783 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\ControlPanel\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,834 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Converter\Uninstaller.exe
[2013/06/14 09:22:30 | 000,063,144 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DesktopService\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,854 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DFXPlugin\Uninstaller.exe
[2013/06/14 09:22:28 | 000,056,458 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXDecoderShortcut\Uninstaller.exe
[2013/06/14 09:22:31 | 000,064,587 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXMediaServer\Uninstaller.exe
[2013/06/14 09:22:59 | 000,064,957 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXPlusShortcuts\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,879 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSAACDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,057,275 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSASPDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,054,166 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSAVCDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,065,229 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSDesktopComponents\Uninstaller.exe
[2013/06/14 09:22:32 | 000,065,801 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\MFComponents\Uninstaller.exe
[2013/06/14 09:22:25 | 000,054,101 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\MPEG2Plugin\Uninstaller.exe
[2013/06/14 09:22:21 | 000,061,667 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\MSVC80CRTRedist\Uninstaller.exe
[2013/06/14 09:22:22 | 000,063,228 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\OVSHelper\Uninstaller.exe
[2013/06/14 09:22:42 | 000,066,088 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Player\Uninstaller.exe
[2013/06/14 09:22:24 | 000,062,264 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Qt4.8\Uninstaller.exe
[2013/06/14 09:20:19 | 000,957,248 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Setup\DivXSetup.exe
[2013/06/14 09:22:27 | 000,062,887 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\TranscodeEngine\Uninstaller.exe
[2013/06/14 09:22:34 | 000,065,056 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\TransferWizard\Uninstaller.exe
[2013/06/14 09:22:42 | 000,061,792 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Update\Uninstaller.exe
[2013/06/14 09:22:59 | 000,065,856 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\WebPlayer\Uninstaller.exe
[2013/05/04 07:39:10 | 007,330,384 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgmfapx.exe
[2013/05/04 07:39:09 | 000,621,176 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgntdumpx.exe
[2013/05/04 07:39:10 | 000,015,480 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrdtestx.exe
[2013/05/04 07:39:09 | 000,270,968 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrunasx.exe
[2013/05/04 07:39:10 | 000,042,104 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avguirux.exe
[2013/05/16 16:32:29 | 000,172,032 | ---- | M] (Nexon) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\NexonUS\NGM\NGM.exe
[2012/09/30 12:26:14 | 016,910,176 | ---- | M] (Electronic Arts, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Origin\DownloadCache\{ CP_Guest_3584(1)_ver3 }\OriginThinSetup.exe
[2012/10/16 07:08:17 | 001,475,072 | ---- | M] () -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Cricket Broadband EC1705\userdata\LiveUpd.exe
[2012/10/16 07:08:17 | 000,196,608 | ---- | M] () -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Cricket Broadband EC1705\userdata\ouc.exe
[2013/06/14 09:22:22 | 000,056,969 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\ASPEncoder\Uninstaller.exe
[2013/06/14 09:22:25 | 000,065,783 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\ControlPanel\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,834 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Converter\Uninstaller.exe
[2013/06/14 09:22:30 | 000,063,144 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DesktopService\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,854 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DFXPlugin\Uninstaller.exe
[2013/06/14 09:22:28 | 000,056,458 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXDecoderShortcut\Uninstaller.exe
[2013/06/14 09:22:31 | 000,064,587 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXMediaServer\Uninstaller.exe
[2013/06/14 09:22:59 | 000,064,957 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DivXPlusShortcuts\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,879 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSAACDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,057,275 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSASPDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,054,166 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSAVCDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,065,229 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSDesktopComponents\Uninstaller.exe
[2013/06/14 09:22:32 | 000,065,801 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\MFComponents\Uninstaller.exe
[2013/06/14 09:22:25 | 000,054,101 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\MPEG2Plugin\Uninstaller.exe
[2013/06/14 09:22:21 | 000,061,667 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\MSVC80CRTRedist\Uninstaller.exe
[2013/06/14 09:22:22 | 000,063,228 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\OVSHelper\Uninstaller.exe
[2013/06/14 09:22:42 | 000,066,088 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Player\Uninstaller.exe
[2013/06/14 09:22:24 | 000,062,264 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Qt4.8\Uninstaller.exe
[2013/06/14 09:20:19 | 000,957,248 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Setup\DivXSetup.exe
[2013/06/14 09:22:27 | 000,062,887 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\TranscodeEngine\Uninstaller.exe
[2013/06/14 09:22:34 | 000,065,056 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\TransferWizard\Uninstaller.exe
[2013/06/14 09:22:42 | 000,061,792 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Update\Uninstaller.exe
[2013/06/14 09:22:59 | 000,065,856 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\WebPlayer\Uninstaller.exe
[2013/05/04 07:39:10 | 007,330,384 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgmfapx.exe
[2013/05/04 07:39:09 | 000,621,176 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgntdumpx.exe
[2013/05/04 07:39:10 | 000,015,480 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrdtestx.exe
[2013/05/04 07:39:09 | 000,270,968 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrunasx.exe
[2013/05/04 07:39:10 | 000,042,104 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avguirux.exe
[2013/05/16 16:32:29 | 000,172,032 | ---- | M] (Nexon) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\NexonUS\NGM\NGM.exe
[2012/09/30 12:26:14 | 016,910,176 | ---- | M] (Electronic Arts, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Origin\DownloadCache\{ CP_Guest_3584(1)_ver3 }\OriginThinSetup.exe
[2012/10/16 07:08:17 | 001,475,072 | ---- | M] () -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Cricket Broadband EC1705\userdata\LiveUpd.exe
[2012/10/16 07:08:17 | 000,196,608 | ---- | M] () -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Cricket Broadband EC1705\userdata\ouc.exe
[2013/06/14 09:22:22 | 000,056,969 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\DivX\ASPEncoder\Uninstaller.exe
[2013/06/14 09:22:25 | 000,065,783 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\DivX\ControlPanel\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,834 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\DivX\Converter\Uninstaller.exe
[2013/06/14 09:22:30 | 000,063,144 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\DivX\DesktopService\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,854 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\DivX\DFXPlugin\Uninstaller.exe
[2013/06/14 09:22:28 | 000,056,458 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\DivX\DivXDecoderShortcut\Uninstaller.exe
[2013/06/14 09:22:31 | 000,064,587 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\DivX\DivXMediaServer\Uninstaller.exe
[2013/06/14 09:22:59 | 000,064,957 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\DivX\DivXPlusShortcuts\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,879 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\DivX\DSAACDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,057,275 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\DivX\DSASPDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,054,166 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\DivX\DSAVCDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,065,229 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\DivX\DSDesktopComponents\Uninstaller.exe
[2013/06/14 09:22:32 | 000,065,801 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\DivX\MFComponents\Uninstaller.exe
[2013/06/14 09:22:25 | 000,054,101 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\DivX\MPEG2Plugin\Uninstaller.exe
[2013/06/14 09:22:21 | 000,061,667 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\DivX\MSVC80CRTRedist\Uninstaller.exe
[2013/06/14 09:22:22 | 000,063,228 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\DivX\OVSHelper\Uninstaller.exe
[2013/06/14 09:22:42 | 000,066,088 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\DivX\Player\Uninstaller.exe
[2013/06/14 09:22:24 | 000,062,264 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\DivX\Qt4.8\Uninstaller.exe
[2013/06/14 09:20:19 | 000,957,248 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\DivX\Setup\DivXSetup.exe
[2013/06/14 09:22:27 | 000,062,887 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\DivX\TranscodeEngine\Uninstaller.exe
[2013/06/14 09:22:34 | 000,065,056 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\DivX\TransferWizard\Uninstaller.exe
[2013/06/14 09:22:42 | 000,061,792 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\DivX\Update\Uninstaller.exe
[2013/06/14 09:22:59 | 000,065,856 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\DivX\WebPlayer\Uninstaller.exe
[2013/05/04 07:39:10 | 007,330,384 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgmfapx.exe
[2013/05/04 07:39:09 | 000,621,176 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgntdumpx.exe
[2013/05/04 07:39:10 | 000,015,480 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrdtestx.exe
[2013/05/04 07:39:09 | 000,270,968 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrunasx.exe
[2013/05/04 07:39:10 | 000,042,104 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avguirux.exe
[2013/05/16 16:32:29 | 000,172,032 | ---- | M] (Nexon) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\NexonUS\NGM\NGM.exe
[2012/09/30 12:26:14 | 016,910,176 | ---- | M] (Electronic Arts, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Origin\DownloadCache\{ CP_Guest_3584(1)_ver3 }\OriginThinSetup.exe
[2012/10/16 07:08:17 | 001,475,072 | ---- | M] () -- C:\ProgramData\Application Data\Application Data\Application Data\Cricket Broadband EC1705\userdata\LiveUpd.exe
[2012/10/16 07:08:17 | 000,196,608 | ---- | M] () -- C:\ProgramData\Application Data\Application Data\Application Data\Cricket Broadband EC1705\userdata\ouc.exe
[2013/06/14 09:22:22 | 000,056,969 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\DivX\ASPEncoder\Uninstaller.exe
[2013/06/14 09:22:25 | 000,065,783 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\DivX\ControlPanel\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,834 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\DivX\Converter\Uninstaller.exe
[2013/06/14 09:22:30 | 000,063,144 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\DivX\DesktopService\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,854 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\DivX\DFXPlugin\Uninstaller.exe
[2013/06/14 09:22:28 | 000,056,458 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\DivX\DivXDecoderShortcut\Uninstaller.exe
[2013/06/14 09:22:31 | 000,064,587 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\DivX\DivXMediaServer\Uninstaller.exe
[2013/06/14 09:22:59 | 000,064,957 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\DivX\DivXPlusShortcuts\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,879 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\DivX\DSAACDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,057,275 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\DivX\DSASPDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,054,166 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\DivX\DSAVCDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,065,229 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\DivX\DSDesktopComponents\Uninstaller.exe
[2013/06/14 09:22:32 | 000,065,801 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\DivX\MFComponents\Uninstaller.exe
[2013/06/14 09:22:25 | 000,054,101 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\DivX\MPEG2Plugin\Uninstaller.exe
[2013/06/14 09:22:21 | 000,061,667 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\DivX\MSVC80CRTRedist\Uninstaller.exe
[2013/06/14 09:22:22 | 000,063,228 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\DivX\OVSHelper\Uninstaller.exe
[2013/06/14 09:22:42 | 000,066,088 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\DivX\Player\Uninstaller.exe
[2013/06/14 09:22:24 | 000,062,264 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\DivX\Qt4.8\Uninstaller.exe
[2013/06/14 09:20:19 | 000,957,248 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\DivX\Setup\DivXSetup.exe
[2013/06/14 09:22:27 | 000,062,887 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\DivX\TranscodeEngine\Uninstaller.exe
[2013/06/14 09:22:34 | 000,065,056 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\DivX\TransferWizard\Uninstaller.exe
[2013/06/14 09:22:42 | 000,061,792 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\DivX\Update\Uninstaller.exe
[2013/06/14 09:22:59 | 000,065,856 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\Application Data\DivX\WebPlayer\Uninstaller.exe
[2013/05/04 07:39:10 | 007,330,384 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgmfapx.exe
[2013/05/04 07:39:09 | 000,621,176 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgntdumpx.exe
[2013/05/04 07:39:10 | 000,015,480 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrdtestx.exe
[2013/05/04 07:39:09 | 000,270,968 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrunasx.exe
[2013/05/04 07:39:10 | 000,042,104 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\MFAData\SelfUpd\avguirux.exe
[2013/05/16 16:32:29 | 000,172,032 | ---- | M] (Nexon) -- C:\ProgramData\Application Data\Application Data\Application Data\NexonUS\NGM\NGM.exe
[2012/09/30 12:26:14 | 016,910,176 | ---- | M] (Electronic Arts, Inc.) -- C:\ProgramData\Application Data\Application Data\Application Data\Origin\DownloadCache\{ CP_Guest_3584(1)_ver3 }\OriginThinSetup.exe
[2012/10/16 07:08:17 | 001,475,072 | ---- | M] () -- C:\ProgramData\Application Data\Application Data\Cricket Broadband EC1705\userdata\LiveUpd.exe
[2012/10/16 07:08:17 | 000,196,608 | ---- | M] () -- C:\ProgramData\Application Data\Application Data\Cricket Broadband EC1705\userdata\ouc.exe
[2013/06/14 09:22:22 | 000,056,969 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\DivX\ASPEncoder\Uninstaller.exe
[2013/06/14 09:22:25 | 000,065,783 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\DivX\ControlPanel\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,834 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\DivX\Converter\Uninstaller.exe
[2013/06/14 09:22:30 | 000,063,144 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\DivX\DesktopService\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,854 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\DivX\DFXPlugin\Uninstaller.exe
[2013/06/14 09:22:28 | 000,056,458 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\DivX\DivXDecoderShortcut\Uninstaller.exe
[2013/06/14 09:22:31 | 000,064,587 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\DivX\DivXMediaServer\Uninstaller.exe
[2013/06/14 09:22:59 | 000,064,957 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\DivX\DivXPlusShortcuts\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,879 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\DivX\DSAACDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,057,275 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\DivX\DSASPDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,054,166 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\DivX\DSAVCDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,065,229 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\DivX\DSDesktopComponents\Uninstaller.exe
[2013/06/14 09:22:32 | 000,065,801 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\DivX\MFComponents\Uninstaller.exe
[2013/06/14 09:22:25 | 000,054,101 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\DivX\MPEG2Plugin\Uninstaller.exe
[2013/06/14 09:22:21 | 000,061,667 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\DivX\MSVC80CRTRedist\Uninstaller.exe
[2013/06/14 09:22:22 | 000,063,228 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\Application Data\DivX\OVSHelper\Uninstaller.exe
[2013/06/14 09:22:42 | 000,066,088 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\DivX\Player\Uninstaller.exe
[2013/06/14 09:22:24 | 000,062,264 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\DivX\Qt4.8\Uninstaller.exe
[2013/06/14 09:20:19 | 000,957,248 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\DivX\Setup\DivXSetup.exe
[2013/06/14 09:22:27 | 000,062,887 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\DivX\TranscodeEngine\Uninstaller.exe
[2013/06/14 09:22:34 | 000,065,056 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\DivX\TransferWizard\Uninstaller.exe
[2013/06/14 09:22:42 | 000,061,792 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\DivX\Update\Uninstaller.exe
[2013/06/14 09:22:59 | 000,065,856 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\Application Data\DivX\WebPlayer\Uninstaller.exe
[2013/05/04 07:39:10 | 007,330,384 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\MFAData\SelfUpd\avgmfapx.exe
[2013/05/04 07:39:09 | 000,621,176 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\MFAData\SelfUpd\avgntdumpx.exe
[2013/05/04 07:39:10 | 000,015,480 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\MFAData\SelfUpd\avgrdtestx.exe
[2013/05/04 07:39:09 | 000,270,968 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\MFAData\SelfUpd\avgrunasx.exe
[2013/05/04 07:39:10 | 000,042,104 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\MFAData\SelfUpd\avguirux.exe
[2013/05/16 16:32:29 | 000,172,032 | ---- | M] (Nexon) -- C:\ProgramData\Application Data\Application Data\NexonUS\NGM\NGM.exe
[2012/09/30 12:26:14 | 016,910,176 | ---- | M] (Electronic Arts, Inc.) -- C:\ProgramData\Application Data\Application Data\Origin\DownloadCache\{ CP_Guest_3584(1)_ver3 }\OriginThinSetup.exe
[2012/10/16 07:08:17 | 001,475,072 | ---- | M] () -- C:\ProgramData\Application Data\Cricket Broadband EC1705\userdata\LiveUpd.exe
[2012/10/16 07:08:17 | 000,196,608 | ---- | M] () -- C:\ProgramData\Application Data\Cricket Broadband EC1705\userdata\ouc.exe
[2013/06/14 09:22:22 | 000,056,969 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\DivX\ASPEncoder\Uninstaller.exe
[2013/06/14 09:22:25 | 000,065,783 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\DivX\ControlPanel\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,834 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\DivX\Converter\Uninstaller.exe
[2013/06/14 09:22:30 | 000,063,144 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\DivX\DesktopService\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,854 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\DivX\DFXPlugin\Uninstaller.exe
[2013/06/14 09:22:28 | 000,056,458 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\DivX\DivXDecoderShortcut\Uninstaller.exe
[2013/06/14 09:22:31 | 000,064,587 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\DivX\DivXMediaServer\Uninstaller.exe
[2013/06/14 09:22:59 | 000,064,957 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\DivX\DivXPlusShortcuts\Uninstaller.exe
[2013/06/14 09:22:28 | 000,062,879 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\DivX\DSAACDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,057,275 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\DivX\DSASPDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,054,166 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\DivX\DSAVCDecoder\Uninstaller.exe
[2013/06/14 09:22:29 | 000,065,229 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\DivX\DSDesktopComponents\Uninstaller.exe
[2013/06/14 09:22:32 | 000,065,801 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\DivX\MFComponents\Uninstaller.exe
[2013/06/14 09:22:25 | 000,054,101 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\DivX\MPEG2Plugin\Uninstaller.exe
[2013/06/14 09:22:21 | 000,061,667 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\DivX\MSVC80CRTRedist\Uninstaller.exe
[2013/06/14 09:22:22 | 000,063,228 | ---- | M] (DivX, Inc.) -- C:\ProgramData\Application Data\DivX\OVSHelper\Uninstaller.exe
[2013/06/14 09:22:42 | 000,066,088 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\DivX\Player\Uninstaller.exe
[2013/06/14 09:22:24 | 000,062,264 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\DivX\Qt4.8\Uninstaller.exe
[2013/06/14 09:20:19 | 000,957,248 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\DivX\Setup\DivXSetup.exe
[2013/06/14 09:22:27 | 000,062,887 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\DivX\TranscodeEngine\Uninstaller.exe
[2013/06/14 09:22:34 | 000,065,056 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\DivX\TransferWizard\Uninstaller.exe
[2013/06/14 09:22:42 | 000,061,792 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\DivX\Update\Uninstaller.exe
[2013/06/14 09:22:59 | 000,065,856 | ---- | M] (DivX, LLC) -- C:\ProgramData\Application Data\DivX\WebPlayer\Uninstaller.exe
[2013/05/04 07:39:10 | 007,330,384 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\MFAData\SelfUpd\avgmfapx.exe
[2013/05/04 07:39:09 | 000,621,176 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\MFAData\SelfUpd\avgntdumpx.exe
[2013/05/04 07:39:10 | 000,015,480 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\MFAData\SelfUpd\avgrdtestx.exe
[2013/05/04 07:39:09 | 000,270,968 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\MFAData\SelfUpd\avgrunasx.exe
[2013/05/04 07:39:10 | 000,042,104 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\MFAData\SelfUpd\avguirux.exe
[2013/05/16 16:32:29 | 000,172,032 | ---- | M] (Nexon) -- C:\ProgramData\Application Data\NexonUS\NGM\NGM.exe
[2012/09/30 12:26:14 | 016,910,176 | ---- | M] (Electronic Arts, Inc.) -- C:\ProgramData\Application Data\Origin\DownloadCache\{ CP_Guest_3584(1)_ver3 }\OriginThinSetup.exe

< %APPDATA%\*. >
[2013/06/08 01:21:34 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus
[2012/07/01 15:25:42 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\Adobe
[2013/06/15 14:20:55 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\Apple Computer
[2012/07/10 15:21:20 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\ATI
[2013/05/14 14:34:00 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\AVG
[2013/05/04 07:42:21 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\AVG2013
[2012/09/27 19:53:42 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\Command & Conquer 3 Tiberium Wars
[2012/09/23 16:50:52 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\DAEMON Tools Pro
[2012/09/03 12:08:30 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\DivX
[2012/11/12 02:36:35 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\Go PDF Reader
[2012/07/01 16:39:42 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\Identities
[2013/06/07 18:00:38 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\LavasoftStatistics
[2012/07/01 15:25:42 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\Macromedia
[2013/02/16 09:22:11 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\Malwarebytes
[2009/07/14 03:45:14 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\Media Center Programs
[2013/04/25 17:37:41 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\Media Player Classic
[2013/05/16 14:46:36 | 000,000,000 | --SD | M] -- C:\Users\Zdenek\AppData\Roaming\Microsoft
[2012/07/01 15:20:30 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\Mozilla
[2013/05/29 10:15:23 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\Origin
[2013/02/16 09:16:45 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\PC Utility Kit
[2013/04/03 05:00:07 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\player
[2012/10/16 07:08:19 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\Program Files (x86)
[2013/03/22 22:47:43 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\Real
[2013/05/04 07:34:32 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\RealNetworks
[2013/04/26 18:58:32 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\Skype
[2013/05/27 13:02:11 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\Spy Emergency
[2013/05/01 12:16:20 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\Strongvault
[2013/05/14 15:02:30 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\TuneUp Software
[2012/08/22 16:41:40 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\vlc
[2012/07/01 18:16:08 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\WinRAR

< %APPDATA%\*.exe /s >
[2012/08/24 09:13:39 | 000,457,789 | ---- | M] (Freedom Download Manager ) -- C:\Users\Zdenek\AppData\Roaming\fdm-setup.exe
[2012/08/24 09:13:38 | 000,419,554 | ---- | M] (SearchAmong ) -- C:\Users\Zdenek\AppData\Roaming\satoolbar.exe
[2012/12/06 13:55:33 | 000,088,102 | R--- | M] () -- C:\Users\Zdenek\AppData\Roaming\Microsoft\Installer\{A231A6F2-2C80-6203-ED35-2CFB96B25A38}\ARPPRODUCTICON.exe
[2013/03/22 22:47:46 | 000,448,592 | ---- | M] (RealNetworks, Inc.) -- C:\Users\Zdenek\AppData\Roaming\Real\Update\temp\~Upg0\rnupgagent.exe
[2013/03/31 22:47:46 | 000,448,592 | ---- | M] (RealNetworks, Inc.) -- C:\Users\Zdenek\AppData\Roaming\Real\Update\temp\~Upg1\rnupgagent.exe
[2013/04/22 22:48:01 | 000,448,592 | ---- | M] (RealNetworks, Inc.) -- C:\Users\Zdenek\AppData\Roaming\Real\Update\temp\~Upg3\rnupgagent.exe
[2013/04/30 22:47:59 | 000,448,592 | ---- | M] (RealNetworks, Inc.) -- C:\Users\Zdenek\AppData\Roaming\Real\Update\temp\~Upg4\rnupgagent.exe
[2013/06/16 10:00:30 | 000,468,560 | ---- | M] (RealNetworks, Inc.) -- C:\Users\Zdenek\AppData\Roaming\Real\Update\temp\~Upg5\rnupgagent.exe
[2013/03/22 22:47:46 | 000,448,592 | ---- | M] (RealNetworks, Inc.) -- C:\Users\Zdenek\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\10.40\agent\rnupgagent.exe
[2013/03/23 01:48:17 | 038,477,728 | ---- | M] (RealNetworks, Inc.) -- C:\Users\Zdenek\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\10.40\agent\stub_data\RealPlayer.exe
[2013/03/23 01:48:03 | 000,766,128 | ---- | M] (RealNetworks, Inc.) -- C:\Users\Zdenek\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\10.40\agent\stub_exe\RealPlayer.exe
[2013/06/16 10:00:30 | 000,468,560 | ---- | M] (RealNetworks, Inc.) -- C:\Users\Zdenek\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\10.50\agent\rnupgagent.exe

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\Tasks\*.job >
[2013/07/03 16:14:00 | 000,000,914 | ---- | M] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job
[2013/07/03 15:09:22 | 000,000,894 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2013/07/03 16:16:00 | 000,000,898 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
[2013/07/03 15:09:21 | 000,000,394 | ---- | M] () -- C:\Windows\Tasks\Sing Along Update.job

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\system32\drivers\*.sys /3 >

< %systemroot%\system32\*.* /3 >

< %SYSTEMDRIVE%\*.exe >

< >

< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"SpyEmergency" = C:\Program Files\NETGATE\Spy Emergency\SpyEmergency.exe -- [2012/01/18 17:35:34 | 003,465,560 | ---- | M] (NETGATE Technologies s.r.o.)

< >

< %PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5 >
[2013/07/03 11:05:55 | 000,920,472 | ---- | M] (Mozilla Corporation) MD5=C8D28F8B498CADBB9445AC4545BD41B7 -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe

< %PROGRAMFILES%\Internet Explorer\iexplore.exe /md5 >
[2013/01/08 18:42:06 | 000,757,280 | ---- | M] (Microsoft Corporation) MD5=698EB1E5F8C66344D97C00B5699E871D -- C:\Program Files (x86)\Internet Explorer\iexplore.exe

< %PROGRAMFILES%\Opera\opera.exe /md5 >

< %PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5 >
[2013/06/14 21:28:44 | 000,825,808 | ---- | M] (Google Inc.) MD5=5521928AA79079565B7CB8FCE6806131 -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

< >

< %SystemDrive%\PhysicalMBR.bin /md5 >
[2013/07/03 16:10:53 | 000,000,512 | ---- | M] () MD5=6C495CC312306AEC62176231A0874551 -- C:\PhysicalMBR.bin

< >

< *crack* /s >
[2005/12/06 02:25:30 | 000,820,377 | ---- | M] () -- \Users\Zdenek\Desktop\meedio\Meedio Essentials\meedio[1].1.15.22.cracked-tsrh.zip

< *keygen* /s >

< *loader* /s >
[2013/04/21 21:44:16 | 000,008,827 | ---- | M] () -- \Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit.resources\inspector\HeapSnapshotLoader.js
[2013/03/06 02:23:46 | 000,251,793 | ---- | M] () -- \Program Files (x86)\RealNetworks\RealDownloader\downloader.vs
[2009/06/02 04:16:57 | 000,114,688 | ---- | M] () -- \Program Files (x86)\WinRAR\RarExtLoader.exe
[2012/12/04 18:00:50 | 000,072,638 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.gif
[2012/12/04 18:00:50 | 000,003,032 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.png

Re: Kontrola logu

Napsal: 03 črc 2013 22:13
od zdenek124
1cast.4dil.


File not found -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\retina\loader@2x.png
[2012/12/04 18:00:50 | 000,072,638 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.gif
[2012/12/04 18:00:50 | 000,003,032 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.png
[2012/12/04 18:00:50 | 000,009,772 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\retina\loader@2x.png
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/03/06 02:26:24 | 000,002,584 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx
[2012/12/04 18:00:50 | 000,072,638 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.gif
[2012/12/04 18:00:50 | 000,003,032 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.png
[2012/12/04 18:00:50 | 000,009,772 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\retina\loader@2x.png
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/03/06 02:26:24 | 000,002,584 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx
File not found -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.js
File not found -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.xul
[2012/12/04 18:00:50 | 000,072,638 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.gif
[2012/12/04 18:00:50 | 000,003,032 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.png
[2012/12/04 18:00:50 | 000,009,772 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\retina\loader@2x.png
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/03/06 02:26:24 | 000,002,584 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx
[2013/03/06 02:21:46 | 000,013,246 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.js
[2013/03/06 01:41:12 | 000,000,319 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.xul
[2012/12/04 18:00:50 | 000,072,638 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.gif
[2012/12/04 18:00:50 | 000,003,032 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.png
[2012/12/04 18:00:50 | 000,009,772 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\retina\loader@2x.png
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/03/06 02:26:24 | 000,002,584 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx
[2013/03/06 02:21:46 | 000,013,246 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.js
[2013/03/06 01:41:12 | 000,000,319 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.xul
[2012/12/04 18:00:50 | 000,072,638 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.gif
[2012/12/04 18:00:50 | 000,003,032 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.png
[2012/12/04 18:00:50 | 000,009,772 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\retina\loader@2x.png
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/03/06 02:26:24 | 000,002,584 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx
[2013/03/06 02:21:46 | 000,013,246 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.js
[2013/03/06 01:41:12 | 000,000,319 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.xul
[2012/12/04 18:00:50 | 000,072,638 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.gif
[2012/12/04 18:00:50 | 000,003,032 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.png
[2012/12/04 18:00:50 | 000,009,772 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\retina\loader@2x.png
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/03/06 02:26:24 | 000,002,584 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx
[2013/03/06 02:21:46 | 000,013,246 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.js
[2013/03/06 01:41:12 | 000,000,319 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.xul
[2012/12/04 18:00:50 | 000,072,638 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.gif
[2012/12/04 18:00:50 | 000,003,032 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.png
[2012/12/04 18:00:50 | 000,009,772 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\retina\loader@2x.png
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/03/06 02:26:24 | 000,002,584 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx
[2013/03/06 02:21:46 | 000,013,246 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.js
[2013/03/06 01:41:12 | 000,000,319 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.xul
[2012/12/04 18:00:50 | 000,072,638 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.gif
[2012/12/04 18:00:50 | 000,003,032 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.png
[2012/12/04 18:00:50 | 000,009,772 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\retina\loader@2x.png
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/03/06 02:26:24 | 000,002,584 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx
[2013/03/06 02:21:46 | 000,013,246 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.js
[2013/03/06 01:41:12 | 000,000,319 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.xul
[2012/12/04 18:00:50 | 000,072,638 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.gif
[2012/12/04 18:00:50 | 000,003,032 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.png
[2012/12/04 18:00:50 | 000,009,772 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Skype\Apps\login\images\retina\loader@2x.png
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \ProgramData\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/03/06 02:26:24 | 000,002,584 | ---- | M] () -- \ProgramData\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx
[2013/03/06 02:21:46 | 000,013,246 | ---- | M] () -- \ProgramData\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.js
[2013/03/06 01:41:12 | 000,000,319 | ---- | M] () -- \ProgramData\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.xul
[2012/12/04 18:00:50 | 000,072,638 | ---- | M] () -- \ProgramData\Application Data\Application Data\Skype\Apps\login\images\loader.gif
[2012/12/04 18:00:50 | 000,003,032 | ---- | M] () -- \ProgramData\Application Data\Application Data\Skype\Apps\login\images\loader.png
[2012/12/04 18:00:50 | 000,009,772 | ---- | M] () -- \ProgramData\Application Data\Application Data\Skype\Apps\login\images\retina\loader@2x.png
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \ProgramData\Application Data\Application Data\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \ProgramData\Application Data\Microsoft\Windows\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/03/06 02:26:24 | 000,002,584 | ---- | M] () -- \ProgramData\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx
[2013/03/06 02:21:46 | 000,013,246 | ---- | M] () -- \ProgramData\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.js
[2013/03/06 01:41:12 | 000,000,319 | ---- | M] () -- \ProgramData\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.xul
[2012/12/04 18:00:50 | 000,072,638 | ---- | M] () -- \ProgramData\Application Data\Skype\Apps\login\images\loader.gif
[2012/12/04 18:00:50 | 000,003,032 | ---- | M] () -- \ProgramData\Application Data\Skype\Apps\login\images\loader.png
[2012/12/04 18:00:50 | 000,009,772 | ---- | M] () -- \ProgramData\Application Data\Skype\Apps\login\images\retina\loader@2x.png
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \ProgramData\Application Data\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/03/06 02:26:24 | 000,002,584 | ---- | M] () -- \ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx
[2013/03/06 02:21:46 | 000,013,246 | ---- | M] () -- \ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.js
[2013/03/06 01:41:12 | 000,000,319 | ---- | M] () -- \ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.xul
[2012/12/04 18:00:50 | 000,072,638 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\loader.gif
[2012/12/04 18:00:50 | 000,003,032 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\loader.png
[2012/12/04 18:00:50 | 000,009,772 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\retina\loader@2x.png
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \ProgramData\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2012/12/04 18:00:50 | 000,072,638 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.gif
[2012/12/04 18:00:50 | 000,003,032 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.png
[2012/12/04 18:00:50 | 000,072,638 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.gif
[2012/12/04 18:00:50 | 000,003,032 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.png
[2012/12/04 18:00:50 | 000,009,772 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\retina\loader@2x.png
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\RealNetworks\RealDownloader.lnk
File not found -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx
[2012/12/04 18:00:50 | 000,072,638 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.gif
[2012/12/04 18:00:50 | 000,003,032 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.png
[2012/12/04 18:00:50 | 000,009,772 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\retina\loader@2x.png
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/03/06 02:26:24 | 000,002,584 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx
File not found -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.js
File not found -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.xul
[2012/12/04 18:00:50 | 000,072,638 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.gif
[2012/12/04 18:00:50 | 000,003,032 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.png
[2012/12/04 18:00:50 | 000,009,772 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\retina\loader@2x.png
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/03/06 02:26:24 | 000,002,584 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx
[2013/03/06 02:21:46 | 000,013,246 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.js
[2013/03/06 01:41:12 | 000,000,319 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.xul
[2012/12/04 18:00:50 | 000,072,638 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.gif
[2012/12/04 18:00:50 | 000,003,032 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.png
[2012/12/04 18:00:50 | 000,009,772 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\retina\loader@2x.png
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/03/06 02:26:24 | 000,002,584 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx
[2013/03/06 02:21:46 | 000,013,246 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.js
[2013/03/06 01:41:12 | 000,000,319 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.xul
[2012/12/04 18:00:50 | 000,072,638 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.gif
[2012/12/04 18:00:50 | 000,003,032 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.png
[2012/12/04 18:00:50 | 000,009,772 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\retina\loader@2x.png
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/03/06 02:26:24 | 000,002,584 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx
[2013/03/06 02:21:46 | 000,013,246 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.js
[2013/03/06 01:41:12 | 000,000,319 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.xul
[2012/12/04 18:00:50 | 000,072,638 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.gif
[2012/12/04 18:00:50 | 000,003,032 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.png
[2012/12/04 18:00:50 | 000,009,772 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\retina\loader@2x.png
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/03/06 02:26:24 | 000,002,584 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx
[2013/03/06 02:21:46 | 000,013,246 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.js
[2013/03/06 01:41:12 | 000,000,319 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.xul
[2012/12/04 18:00:50 | 000,072,638 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.gif
[2012/12/04 18:00:50 | 000,003,032 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.png
[2012/12/04 18:00:50 | 000,009,772 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\retina\loader@2x.png
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/03/06 02:26:24 | 000,002,584 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx
[2013/03/06 02:21:46 | 000,013,246 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.js
[2013/03/06 01:41:12 | 000,000,319 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.xul
[2012/12/04 18:00:50 | 000,072,638 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.gif
[2012/12/04 18:00:50 | 000,003,032 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.png
[2012/12/04 18:00:50 | 000,009,772 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Skype\Apps\login\images\retina\loader@2x.png
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/03/06 02:26:24 | 000,002,584 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx
[2013/03/06 02:21:46 | 000,013,246 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.js
[2013/03/06 01:41:12 | 000,000,319 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.xul
[2012/12/04 18:00:50 | 000,072,638 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.gif
[2012/12/04 18:00:50 | 000,003,032 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Skype\Apps\login\images\loader.png
[2012/12/04 18:00:50 | 000,009,772 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Skype\Apps\login\images\retina\loader@2x.png
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/03/06 02:26:24 | 000,002,584 | ---- | M] () -- \Users\All Users\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx
[2013/03/06 02:21:46 | 000,013,246 | ---- | M] () -- \Users\All Users\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.js
[2013/03/06 01:41:12 | 000,000,319 | ---- | M] () -- \Users\All Users\Application Data\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.xul
[2012/12/04 18:00:50 | 000,072,638 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Skype\Apps\login\images\loader.gif
[2012/12/04 18:00:50 | 000,003,032 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Skype\Apps\login\images\loader.png
[2012/12/04 18:00:50 | 000,009,772 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Skype\Apps\login\images\retina\loader@2x.png
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \Users\All Users\Application Data\Microsoft\Windows\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/03/06 02:26:24 | 000,002,584 | ---- | M] () -- \Users\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx
[2013/03/06 02:21:46 | 000,013,246 | ---- | M] () -- \Users\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.js
[2013/03/06 01:41:12 | 000,000,319 | ---- | M] () -- \Users\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.xul
[2012/12/04 18:00:50 | 000,072,638 | ---- | M] () -- \Users\All Users\Application Data\Skype\Apps\login\images\loader.gif
[2012/12/04 18:00:50 | 000,003,032 | ---- | M] () -- \Users\All Users\Application Data\Skype\Apps\login\images\loader.png
[2012/12/04 18:00:50 | 000,009,772 | ---- | M] () -- \Users\All Users\Application Data\Skype\Apps\login\images\retina\loader@2x.png
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \Users\All Users\Application Data\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2013/03/06 02:26:24 | 000,002,584 | ---- | M] () -- \Users\All Users\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx
[2013/03/06 02:21:46 | 000,013,246 | ---- | M] () -- \Users\All Users\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.js
[2013/03/06 01:41:12 | 000,000,319 | ---- | M] () -- \Users\All Users\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\Chrome\Content\browserrecordloader.xul
[2012/12/04 18:00:50 | 000,072,638 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\loader.gif
[2012/12/04 18:00:50 | 000,003,032 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\loader.png
[2012/12/04 18:00:50 | 000,009,772 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\retina\loader@2x.png
[2013/05/04 07:33:58 | 000,002,563 | ---- | M] () -- \Users\All Users\Start Menu\Programs\RealNetworks\RealDownloader.lnk
[2012/11/26 15:42:28 | 1044,398,080 | ---- | M] () -- \Users\Zdenek\Downloads\Draci-Valky-2007-DVDRip.CZ.by.Salud.of.PowerUploaders.avi
[2012/08/12 03:34:37 | 000,446,464 | ---- | M] () -- \Windows\NEXON_EU_DownloaderUpdater.exe
[2013/07/03 16:07:07 | 000,027,852 | ---- | M] () -- \Windows\Prefetch\RAREXTLOADER.EXE-8405D981.pf
[2012/10/04 12:40:37 | 000,003,584 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2009/07/13 21:15:12 | 000,038,400 | ---- | M] () -- \Windows\System32\dmloader.dll
[2013/04/03 09:13:18 | 000,012,532 | ---- | M] () -- \Windows\System32\Adobe\Shockwave 12\shockwave_Projector_Loader.dcr
[2012/10/04 12:40:37 | 000,003,584 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
[2009/07/13 21:15:12 | 000,038,400 | ---- | M] () -- \Windows\SysWOW64\dmloader.dll
[2013/04/03 09:13:18 | 000,012,532 | ---- | M] () -- \Windows\SysWOW64\Adobe\Shockwave 12\shockwave_Projector_Loader.dcr
[2009/07/13 21:40:31 | 000,047,616 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_a1e90d98a953d601\dmloader.dll
[2009/07/13 21:24:53 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-libraryloader-l1-1-0.dll
[2011/07/16 01:04:54 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16850_none_66c2596d956d1920\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/10/04 13:28:57 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17135_none_66dcd6a595588d81\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/01/04 01:26:58 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17206_none_66fe4899953f502c\api-ms-win-core-libraryloader-l1-1-0.dll
[2011/07/16 01:06:43 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21010_none_67770e0aae6a7c68\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/10/04 13:26:17 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21335_none_67667556ae762a72\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/01/04 10:12:39 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21416_none_677d175eae65090e\api-ms-win-core-libraryloader-l1-1-0.dll
[2011/07/16 01:21:03 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17651_none_68a9b6bd92929e63\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/10/04 13:38:48 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17965_none_68a2edab92971725\api-ms-win-core-libraryloader-l1-1-0.dll
[2011/07/16 01:12:44 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21772_none_691eb3faabbf8f66\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/10/04 13:35:00 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22125_none_6957a248ab947a6d\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/01/04 01:32:07 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22209_none_6971452eab80a50e\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/07/01 14:13:18 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2012/07/01 14:13:18 | 000,033,360 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.efi.mui_35ee487d
[2012/07/01 14:13:18 | 000,034,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.exe.mui_3bc5b827
[2012/07/01 14:13:18 | 000,029,776 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.efi.mui_f412814e
[2012/07/01 14:13:18 | 000,030,288 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.exe.mui_ff8b5358
[2009/07/14 01:37:37 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a.manifest
[2009/07/14 01:37:37 | 000,033,360 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a_winload.efi.mui_35ee487d
[2009/07/14 01:37:37 | 000,033,344 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a_winload.exe.mui_3bc5b827
[2009/07/14 01:37:37 | 000,029,776 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a_winresume.efi.mui_f412814e
[2009/07/14 01:37:37 | 000,029,760 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a_winresume.exe.mui_ff8b5358
[2012/07/01 15:45:51 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2012/07/01 15:45:51 | 000,642,944 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winload.efi_75834aa0
[2012/07/01 15:45:51 | 000,605,552 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winload.exe_75835076
[2012/07/01 15:45:51 | 000,566,208 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winresume.efi_85cd069f
[2012/07/01 15:45:51 | 000,518,672 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winresume.exe_85cd1215
[2009/07/13 22:57:50 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009/07/13 22:57:50 | 000,019,008 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59_spldr.sys_98bd87a0
[2009/07/13 22:18:36 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2009/07/13 22:44:20 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a.manifest
[2009/07/13 22:13:42 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16385_none_b71babd98657e6ef.manifest
[2011/02/05 09:09:31 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16757_none_b73e23c9863dba66.manifest
[2011/02/05 09:04:44 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.20897_none_b79c80e49f7bc9f4.manifest
[2010/11/20 09:12:44 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_b94cbfa183466a89.manifest
[2011/02/05 13:34:23 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2011/02/05 09:09:57 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.21655_none_b9ac1d069c83936e.manifest
[2009/07/13 22:18:27 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009/07/13 21:15:12 | 000,038,400 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_45ca7214f0f664cb\dmloader.dll
[2009/07/13 21:03:49 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-libraryloader-l1-1-0.dll
[2011/07/16 00:19:58 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16850_none_0aa3bde9dd0fa7ea\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/10/04 12:45:38 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17135_none_0abe3b21dcfb1c4b\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/01/04 00:43:53 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17206_none_0adfad15dce1def6\api-ms-win-core-libraryloader-l1-1-0.dll
[2011/07/16 00:12:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21010_none_0b587286f60d0b32\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/10/04 12:48:05 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21335_none_0b47d9d2f618b93c\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/01/04 00:39:49 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21416_none_0b5e7bdaf60797d8\api-ms-win-core-libraryloader-l1-1-0.dll
[2011/07/16 00:15:45 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17651_none_0c8b1b39da352d2d\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/10/04 12:40:37 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17965_none_0c845227da39a5ef\api-ms-win-core-libraryloader-l1-1-0.dll
[2011/07/16 00:36:48 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21772_none_0d001876f3621e30\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/10/04 12:29:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22125_none_0d3906c4f3370937\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/01/04 00:43:16 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22209_none_0d52a9aaf32333d8\api-ms-win-core-libraryloader-l1-1-0.dll

< End of report >

Re: Kontrola logu

Napsal: 03 črc 2013 22:16
od zdenek124
2cast.1dil rovnou konecny.


OTL Extras logfile created on: 7/3/2013 4:09:23 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Zdenek\Desktop
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

8.00 Gb Total Physical Memory | 6.16 Gb Available Physical Memory | 77.03% Memory free
15.99 Gb Paging File | 14.10 Gb Available in Paging File | 88.14% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 698.54 Gb Total Space | 509.30 Gb Free Space | 72.91% Space Free | Partition Type: NTFS
Drive D: | 7.42 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free | Partition Type: UDF

Computer Name: ZDENEK-PC | User Name: Zdenek | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.chm[@ = CHM] -- C:\Program Files (x86)\Go PDF Reader\GoPDFReader.exe (Download Manager Ltd.)
.html[@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.chm [@ = CHM] -- C:\Program Files (x86)\Go PDF Reader\GoPDFReader.exe (Download Manager Ltd.)
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)

[HKEY_USERS\S-1-5-21-1555861937-1502566375-777649677-1000\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- C:\Program Files (x86)\File Type Helper\FileTypeHelper.exe "%1" (Microsoft)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- C:\Program Files (x86)\File Type Helper\FileTypeHelper.exe "%1" (Microsoft)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{15492255-ED58-4ABF-99E9-3DADA83412B8}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{1F72942E-3BA8-47AF-BCA9-CEBB276898DD}" = lport=443 | protocol=6 | dir=in | app=system |
"{27CDC67D-3A58-4389-AAE8-BC97ECACA1A5}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{299C6CBF-C0F4-4FA1-BD0C-2A9709D2B34B}" = lport=137 | protocol=17 | dir=in | app=system |
"{2D92B182-D870-4CD3-8103-0FAABE13E578}" = lport=10243 | protocol=6 | dir=in | app=system |
"{42F15567-13A8-4C84-A79E-0465F010683A}" = rport=10243 | protocol=6 | dir=out | app=system |
"{4D3E462E-B666-4189-88EF-42D6F0585D2E}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{500A566A-2579-4CBE-B0AA-BD6C03E767ED}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{525545C7-B9C7-4303-8BEA-33AE9067D4B4}" = lport=3702 | protocol=17 | dir=in | app=%systemroot%\system32\netproj.exe |
"{5A5B2D29-B6C0-4BA5-8CA4-F3E3B20FECEC}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{5D3792C9-9782-4189-A382-15524325FCF4}" = rport=3702 | protocol=17 | dir=out | svc=peerdistsvc | app=%systemroot%\system32\svchost.exe |
"{693DAF66-7E79-4076-8ADC-EAE3F2944607}" = lport=3702 | protocol=17 | dir=in | svc=peerdistsvc | app=%systemroot%\system32\svchost.exe |
"{76B76326-DE34-40E1-992B-32ED7E643B02}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{77376502-00E0-4998-91F3-9E5F9F7FF351}" = rport=5358 | protocol=6 | dir=out | app=system |
"{783D77B6-4C29-4CA4-82D6-8B48D18CF3BA}" = lport=5357 | protocol=6 | dir=in | app=system |
"{787D07A5-6DE8-4C41-A041-46DFA211D255}" = lport=443 | protocol=6 | dir=out | app=system |
"{7AF7D74B-3F86-44E8-8986-C371BEE2B340}" = lport=5358 | protocol=6 | dir=in | app=system |
"{81F19D7D-3473-4F67-9382-03FF170302AD}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{8A3E6E0B-3968-437A-827A-31DE75B3E26A}" = rport=443 | protocol=6 | dir=out | app=system |
"{8ADE9F76-1ECA-40DC-86CF-1AE28DA4AF5C}" = rport=139 | protocol=6 | dir=out | app=system |
"{9E2D166C-1F88-4863-8461-5DFB28AC9D42}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{A1C74920-FD5E-4ADE-B020-62BA0D97F39E}" = lport=2869 | protocol=6 | dir=in | app=system |
"{AC473924-9532-4AA6-BB43-57A5E7430CC0}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{B9CECE9A-D7AE-4FA2-BC98-1AC126D9ACEC}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{BA182DA4-EFF7-4FAC-BF36-56733CFDA094}" = lport=138 | protocol=17 | dir=in | app=system |
"{BCE42971-2775-4D8C-8CC2-2719437A6235}" = lport=445 | protocol=6 | dir=in | app=system |
"{C0690034-41C3-4F87-89D0-55525F1733B4}" = rport=445 | protocol=6 | dir=out | app=system |
"{C745C49A-B1C2-4881-8486-5665186A7CEF}" = rport=138 | protocol=17 | dir=out | app=system |
"{D1BFCEE5-8940-4628-917B-9D4567CA7BC0}" = rport=137 | protocol=17 | dir=out | app=system |
"{D6248052-8F4E-40F8-86BF-4C62A8D99BA4}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{D71E0862-E12B-49DB-8DB8-D9B57147DCFE}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{DD3BC5E3-22B5-426A-A897-A778CC2E2865}" = lport=80 | protocol=6 | dir=in | app=system |
"{DF4FF7ED-AB18-4191-BE8D-697BF166D774}" = lport=443 | protocol=6 | dir=in | app=system |
"{EA7AB195-4AA5-40C1-A99D-DB92D8F8AED8}" = lport=139 | protocol=6 | dir=in | app=system |
"{ECD7EE5C-092B-4C3D-B79E-317BCB29B14D}" = lport=2869 | protocol=6 | dir=in | app=system |
"{EDD2A166-19A6-457C-AD06-B7B6FB924BDE}" = rport=80 | protocol=6 | dir=out | app=system |
"{F84C20D9-4AEC-46FA-8909-50F2E3A5EC4F}" = rport=3702 | protocol=17 | dir=out | app=%systemroot%\system32\netproj.exe |
"{FFE16412-357F-4B25-B745-B978D2EF74E5}" = rport=5357 | protocol=6 | dir=out | app=system |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{02E4A71C-2C44-4427-8B8C-6A2B70AABDC4}" = protocol=6 | dir=in | app=c:\nexon\vindictus\en-us\nmservice.exe |
"{07497BD0-4EE2-417B-91D7-19A0FE85FB34}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe |
"{086E85BB-3E9D-401B-BFDD-C8B1DC99B5BD}" = protocol=6 | dir=in | app=c:\program files (x86)\adawaretb\dtuser.exe |
"{16A8AAA6-2FED-4542-833D-C82E555CFEF5}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{23E18390-E5F4-48FE-9A6B-D6D90CAB4EAD}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{2C72E16B-B51B-4CE3-BF57-9F27B0D94D83}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{31BAED29-B225-4E23-AAA7-99074604C4FF}" = protocol=6 | dir=out | app=system |
"{31C394AE-D590-473F-8AA1-4C66FC44E182}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{3CB356B4-16D1-42AE-A8C6-C5E88FE035AF}" = protocol=6 | dir=out | app=%systemroot%\system32\netproj.exe |
"{4321A649-F26F-4FD5-BD3A-DF11CC3575BC}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{4A2F533F-7F77-4F51-9C74-E92C812C90D8}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{4B0675DB-A6E1-4ABD-86AC-536B1F4D06F7}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{4FEBBE40-FCC8-4C71-902B-D87C2FE770F8}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{5D3FAC4B-F354-4C08-ADF0-1F9F4BC14E91}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{660A6785-7511-40FF-BA99-1135BAF53CAF}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{721B2A90-D99B-4BC7-BD38-294D28D7BA53}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\kingdoms of amalur reckoning\reckoning.exe |
"{7FAF55C1-BB94-4F32-ABC8-31054A3646C7}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{83102495-DC8D-41F3-80C0-04833B487689}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{88A45077-F9E4-4F9F-8074-A109D63A3FD3}" = protocol=6 | dir=in | app=%systemroot%\system32\netproj.exe |
"{88FC22D5-9C61-454E-A1C0-249DB8010170}" = protocol=6 | dir=in | app=c:\programdata\nexonus\ngm\ngm.exe |
"{8BE86321-C0FC-4179-8643-60691E51A1EC}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{8FC1EFFB-AF3C-48E1-B265-797CB7D62782}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{912D07CF-6491-4901-8235-F447BA8241C4}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{9713038D-8CCA-4C04-8D6E-E2DECD0563B0}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{A37E02DE-9B4B-4F71-8435-0765997F64E3}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{A666341F-0DFC-473F-AC6B-AFFA8DADA429}" = protocol=6 | dir=out | app=%systemroot%\system32\wudfhost.exe |
"{AB115CC3-4AFD-43CB-B0D7-4F8AA95B529B}" = protocol=17 | dir=in | app=c:\programdata\nexonus\ngm\ngm.exe |
"{B25DD2F0-D862-4CE1-B647-523212E0424D}" = protocol=17 | dir=in | app=c:\nexon\vindictus\en-us\nmservice.exe |
"{C0A2F3A3-CDC8-422D-B5A3-C587AADA6C3D}" = protocol=17 | dir=in | app=c:\program files (x86)\adawaretb\dtuser.exe |
"{C8E0B249-773F-4E23-83D1-AA2FCA2CBD0C}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{D0994492-9B86-45E3-AA39-2B2218D0E78B}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{E6C06BB1-64EB-4772-8325-B6F2902ACD18}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{EA0D371B-46DE-468F-BD1B-6AAAF9A069DF}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\kingdoms of amalur reckoning\reckoning.exe |
"{EDC07516-059A-4609-B8FC-16446EA672E5}" = protocol=6 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"TCP Query User{BC849628-80BF-4DB2-AA09-4CB5B879C479}C:\nexon\vindictus\en-us\vindictus.exe" = protocol=6 | dir=in | app=c:\nexon\vindictus\en-us\vindictus.exe |
"UDP Query User{6E504704-646F-41CD-9C8E-49CAD8EF58EC}C:\nexon\vindictus\en-us\vindictus.exe" = protocol=17 | dir=in | app=c:\nexon\vindictus\en-us\vindictus.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{0B53FD1A-B889-077A-557D-B46A6407848F}" = AMD Accelerated Video Transcoding
"{12D93D02-3C15-DF08-581F-52E4A1EB0A3D}" = AMD Drag and Drop Transcoding
"{2107BB9D-8CD6-D2BB-9D67-210C4E2D25B2}" = AMD Catalyst Install Manager
"{21B133D6-5979-47F0-BE1C-F6A6B304693F}" = Visual Studio 2010 x64 Redistributables
"{26A24AE4-039D-4CA4-87B4-2F86417013F0}" = Java 7 Update 13 (64-bit)
"{26A24AE4-039D-4CA4-87B4-2F86417021FF}" = Java 7 Update 21 (64-bit)
"{2A9D89B8-D07E-48F5-9A4C-0972D6FA5475}" = Smart Technology Programming Software 7.0.23.0
"{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime
"{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended
"{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319
"{F0AED62E-4EF5-77FF-B71E-B0DC8A84B6F4}" = AMD Media Foundation Decoders
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"{F8D5F812-E409-FC4C-1B36-9798A1B11DF3}" = ccc-utility64
"CCleaner" = CCleaner
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Spy Emergency_is1" = Spy Emergency

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0D98782F-688B-27DF-C6CD-14F8652C5C34}" = CCC Help French
"{14CA022F-2ABC-631D-50E8-C29101AE28B6}" = CCC Help Dutch
"{248A63FA-ED94-9307-748A-043D0A022ABC}" = CCC Help Spanish
"{26A24AE4-039D-4CA4-87B4-2F83217021FF}" = Java 7 Update 25
"{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}" = RealUpgrade 1.1
"{3945FFEB-D925-ED6B-10C9-055EC5EE7678}" = CCC Help Chinese Traditional
"{3C0080E5-5589-9418-DFCB-91431C3285A3}" = Catalyst Control Center InstallProxy
"{3E3A587D-6A02-1C51-6CEB-CD51F2465A3E}" = CCC Help Italian
"{3F135F02-F035-43E3-B3A0-24992DBD3132}" = Delta
"{483E51C1-A662-B131-B2E9-85574A3701F8}" = CCC Help Danish
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.1
"{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}" = Apple Application Support
"{5D539182-7718-FBAE-861C-1857B4FD9EE2}" = Catalyst Control Center Localization All
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{6A9D1594-7791-48f5-9CAA-DE9BCB968320}" = Kingdoms of Amalur: Reckoning
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}" = RealNetworks - Microsoft Visual C++ 2008 Runtime
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{7AE55B2E-4670-A80E-6C3E-B3AADC4219E6}" = CCC Help Korean
"{933B4015-4618-4716-A828-5289FC03165F}" = VC80CRTRedist - 8.0.50727.6195
"{99C12B68-DD0B-7EE4-E43E-225A6CAEC38A}" = CCC Help Japanese
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9CAFF2B3-0520-A561-37CF-A5C98811DD31}" = CCC Help Thai
"{A231A6F2-2C80-6203-ED35-2CFB96B25A38}" = Application Profiles
"{A35F06F9-E6AD-E67C-0EB6-A87E395E4874}" = CCC Help Polish
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AAECF7BA-E83B-4A10-87EA-DE0B333F8734}" = RealNetworks - Microsoft Visual C++ 2010 Runtime
"{B0C30E93-D3D9-4F04-A2AC-54749B573275}" = Command & Conquer 3
"{B15AF795-9AC1-CE16-6D29-00EDFE336C70}" = CCC Help Finnish
"{B67BAFBA-4C9F-48FA-9496-933E3B255044}" = QuickTime
"{B7E9B691-0AF3-2DB6-4E79-4F78452C7240}" = CCC Help Chinese Standard
"{BF5CF5D4-7332-5FDA-1AC3-A90F08B7E31A}" = CCC Help Portuguese
"{C3D97A21-F62C-4018-D4D8-B8220BE3E1D3}" = Catalyst Control Center
"{CCE9D209-A1B8-A210-EDB9-54E3F1B8C3C4}" = CCC Help Czech
"{D40491E3-35AB-4757-B1F0-94C9100C2F4E}" = Line Speed Meter
"{D7CA6216-35E9-98CC-B4DB-D4380CC452F0}" = CCC Help Russian
"{DD7F7F31-F255-E13A-8FEE-B22F8214D613}" = Catalyst Control Center Graphics Previews Common
"{DE22DB68-AC03-22D0-F8C0-8BAFE4B27207}" = CCC Help German
"{DFC32343-6BEC-81A2-AE9A-313040F6E5D3}" = CCC Help Swedish
"{E2F0AF23-FE2F-4222-9A43-55E63CC41EF1}" = Catalyst Control Center - Branding
"{EA1FAE0F-2354-4E32-B423-ABAE8E358F91}" = RealDownloader
"{EA2DB6E0-72C5-4ef9-A3A0-E6705F4A6A9E}" = Nexon Game Manager
"{EE6E05FC-FD77-0BF5-10EE-9164BFCE7785}" = CCC Help Hungarian
"{F075020E-43B2-4F2C-9723-C81CE162E7B6}" = Ad-Aware Antivirus
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F33FD44B-2099-75CB-B977-E23AAB32F930}" = CCC Help English
"{F67BE3FE-B321-C0B0-E658-69202DA3AD08}" = CCC Help Turkish
"{F8D01C92-8EBC-F872-AF74-C8B1DBE979EE}" = CCC Help Greek
"{FB03A941-815E-42F2-B604-FCE5636DB90B}" = AVG PC TuneUp Language Pack (en-US)
"{FB2CBAAE-4442-DC4C-D48F-5173D451250A}" = CCC Help Norwegian
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 12.0
"BandiMPEG1" = Bandisoft MPEG-1 Decoder
"DivX Setup" = DivX Setup
"DnsBasic" = DnsBasic 1.0 build 111
"Fast Free Converter" = Fast Free Converter
"Google Chrome" = Google Chrome
"GoPDFReader" = Go PDF Reader
"KLiteCodecPack_is1" = K-Lite Codec Pack 9.2.0 (Full)
"LessTabs" = LessTabs
"Mozilla Firefox 22.0 (x86 cs)" = Mozilla Firefox 22.0 (x86 cs)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Origin" = Origin
"RealPlayer 16.0" = RealPlayer
"singalong@xenophesoft.com" = Sing Along
"Vindictus" = Vindictus
"VirtualCloneDrive" = VirtualCloneDrive
"WinRAR archiver" = WinRAR archiver

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-1555861937-1502566375-777649677-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 6/30/2013 3:58:29 PM | Computer Name = Zdenek-PC | Source = Windows Search Service | ID = 9002
Description =

Error - 6/30/2013 3:58:29 PM | Computer Name = Zdenek-PC | Source = Windows Search Service | ID = 3029
Description =

Error - 6/30/2013 3:58:29 PM | Computer Name = Zdenek-PC | Source = Windows Search Service | ID = 3029
Description =

Error - 6/30/2013 3:58:29 PM | Computer Name = Zdenek-PC | Source = Windows Search Service | ID = 3028
Description =

Error - 6/30/2013 3:58:29 PM | Computer Name = Zdenek-PC | Source = Windows Search Service | ID = 3058
Description =

Error - 6/30/2013 3:58:29 PM | Computer Name = Zdenek-PC | Source = Windows Search Service | ID = 7010
Description =

Error - 7/2/2013 8:02:46 PM | Computer Name = Zdenek-PC | Source = Application Hang | ID = 1002
Description = Program RSITx64.exe verze 3.3.6.1 prestal spolupracovat se systémem
Windows a byl ukoncen. Chcete-li zjistit, zda je k dispozici více informací o tomto
problému, vyhledejte historii problému v ovládacím panelu Centrum akcí. ID procesu:
1ed4 Cas spuštení: 01ce778037caa7e5 Cas ukoncení: 1 Cesta k aplikaci: C:\Users\Zdenek\Desktop\RSITx64.exe

ID
hlášení:

Error - 7/3/2013 12:32:00 AM | Computer Name = Zdenek-PC | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro C:\Windows\Installer\{EA1FAE0F-2354-4E32-B423-ABAE8E358F91}\recordingmanager.exe
se nezdarilo. Závislé sestavení rpshellextension.1.0,language="&#x2a;",type="win32",version="1.0.0.0"
nelze najít. Podrobnejší diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 7/3/2013 3:09:20 PM | Computer Name = Zdenek-PC | Source = Winlogon | ID = 4103
Description = Aktivace licence systému Windows se nezdarila. Chyba 0x80070005.

Error - 7/3/2013 4:06:53 PM | Computer Name = Zdenek-PC | Source = Application Hang | ID = 1002
Description = Program OTL.exe verze 3.2.69.0 prestal spolupracovat se systémem Windows
a byl ukoncen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému,
vyhledejte historii problému v ovládacím panelu Centrum akcí. ID procesu: f14 Cas
spuštení: 01ce78234df0d858 Cas ukoncení: 2 Cesta k aplikaci: C:\Users\Zdenek\Desktop\OTL.exe

ID
hlášení:

[ System Events ]
Error - 5/24/2013 9:48:12 PM | Computer Name = Zdenek-PC | Source = Service Control Manager | ID = 7006
Description = Volání ScRegSetValueExW skoncilo neúspešné pro FailureActions s touto
chybou: %%5

Error - 5/24/2013 9:49:27 PM | Computer Name = Zdenek-PC | Source = Service Control Manager | ID = 7006
Description = Volání ScRegSetValueExW skoncilo neúspešné pro FailureActions s touto
chybou: %%5

Error - 5/24/2013 9:49:41 PM | Computer Name = Zdenek-PC | Source = Service Control Manager | ID = 7006
Description = Volání ScRegSetValueExW skoncilo neúspešné pro FailureActions s touto
chybou: %%5

Error - 5/24/2013 9:49:57 PM | Computer Name = Zdenek-PC | Source = Service Control Manager | ID = 7024
Description = Služba Windows Search ukoncena s chybou %%-1073473535, specifickou
pro službu.

Error - 5/24/2013 9:49:57 PM | Computer Name = Zdenek-PC | Source = Service Control Manager | ID = 7031
Description = Služba Windows Search byla necekane ukoncena. Stalo se to 1 krát.
Následující opravná akce bude spuštena za 30000 milisekund: Restart the service.

Error - 5/24/2013 9:50:27 PM | Computer Name = Zdenek-PC | Source = Service Control Manager | ID = 7032
Description = Správce služeb se pokusil o opravnou akci (Restart the service) po
necekaném ukoncení služby Windows Search, ale tato akce selhala kvuli následující
chybe: %%1056

Error - 6/2/2013 4:02:06 PM | Computer Name = Zdenek-PC | Source = Service Control Manager | ID = 7006
Description = Volání ScRegSetValueExW skoncilo neúspešné pro FailureActions s touto
chybou: %%5

Error - 6/2/2013 4:02:35 PM | Computer Name = Zdenek-PC | Source = Service Control Manager | ID = 7011
Description = Pri cekání na odezvu transakce služby avgwd bylo dosaženo casového
limitu (30000 ms).

Error - 6/2/2013 6:53:38 PM | Computer Name = Zdenek-PC | Source = Service Control Manager | ID = 7006
Description = Volání ScRegSetValueExW skoncilo neúspešné pro FailureActions s touto
chybou: %%5

Error - 6/2/2013 6:53:40 PM | Computer Name = Zdenek-PC | Source = Service Control Manager | ID = 7006
Description = Volání ScRegSetValueExW skoncilo neúspešné pro FailureActions s touto
chybou: %%5


< End of report >

Re: Kontrola logu

Napsal: 04 črc 2013 12:43
od vyosek
:arrow: Stahnete Malwarebytes' Anti-Malware (zkracene MBAM) http://forum.viry.cz/viewtopic.php?f=29&t=115222
  • Provedte aktualizaci
  • Provedte uplny sken - nic nemazte :!:
  • MBAM miva obcas falesne detekce, proto vlozte log do prispevku a pockejte na posouzeni

Re: Kontrola logu

Napsal: 04 črc 2013 22:15
od zdenek124
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Verze: v2013.07.04.08

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
Zdenek :: ZDENEK-PC [administrátor]

7/4/2013 4:03:35 PM
mbam-log-2013-07-04 (16-03-35).txt

Typ: Kompletní kontrola (C:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 343309
Uplynulý čas: 33 minut, 46 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)

(konec)

Re: Kontrola logu

Napsal: 05 črc 2013 20:15
od vyosek
:arrow: Odinstalujte Ad-Aware Browsing Protection a Ad-Aware Antivirus - maji uz davno nejlepsi za sebou

:arrow: Tez odinstalujte Spy Emergency - zcely zbytecny kram

:arrow: Nainstalujte Avast Free http://www.avast.com/get/gWR5mo92

:arrow: Spustte znovu OTL
  • Pokud pouzivate Win Vista ci W7, kliknete na OTL pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do spodniho okenka Vlastni skenovani/opravy vlozte skript nize
  • Kód: Vybrat vše

    :otl
    IE:64bit: - HKLM\..\SearchScopes,DefaultScope =
    IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://start.funmoods.com/results.php?f=4&q={searchTerms}&a=nv1&chnl=nv1&cd=2XzutAtN2Y1L1QzutDtDtC0F0DtD0DyEyCzztCtAyCtByEzytN0D0TzutBtDtCtBtDyBtDtC&cr=632047212
    IE:64bit: - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2453}: "URL" = http://search.fantastigames.com/web?src ... 53&sr=0&q={searchTerms}
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
    IE - HKLM\..\SearchScopes,Backup.Old.DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
    IE - HKLM\..\SearchScopes,DefaultScope =
    IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://start.funmoods.com/results.php?f=4&q={searchTerms}&a=nv1&chnl=nv1&cd=2XzutAtN2Y1L1QzutDtDtC0F0DtD0DyEyCzztCtAyCtByEzytN0D0TzutBtDtCtBtDyBtDtC&cr=632047212
    IE - HKU\.DEFAULT\..\SearchScopes\{4C4C7AAB-5854-4241-A414-E2F1EF119C4A}: "URL" = http://www.dnsbasic.com/?prt=DNSBASIC111&sp=&keywords={searchTerms}
    IE - HKU\S-1-5-18\..\SearchScopes\{4C4C7AAB-5854-4241-A414-E2F1EF119C4A}: "URL" = http://www.dnsbasic.com/?prt=DNSBASIC111&sp=&keywords={searchTerms}
    IE - HKU\S-1-5-21-1555861937-1502566375-777649677-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://securedsearch2.lavasoft.com/inde ... 51B256963D
    IE - HKU\S-1-5-21-1555861937-1502566375-777649677-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
    IE - HKU\S-1-5-21-1555861937-1502566375-777649677-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
    IE - HKU\S-1-5-21-1555861937-1502566375-777649677-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = ED 13 50 81 BD 57 CD 01 [binary data]
    IE - HKU\S-1-5-21-1555861937-1502566375-777649677-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore = http://www.google.com
    IE - HKU\S-1-5-21-1555861937-1502566375-777649677-1000\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com
    IE - HKU\S-1-5-21-1555861937-1502566375-777649677-1000\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com
    IE - HKU\S-1-5-21-1555861937-1502566375-777649677-1000\..\SearchScopes,Backup.Old.DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
    IE - HKU\S-1-5-21-1555861937-1502566375-777649677-1000\..\SearchScopes,DefaultScope =
    IE - HKU\S-1-5-21-1555861937-1502566375-777649677-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://start.funmoods.com/results.php?f=4&q={searchTerms}&a=nv1&chnl=nv1&cd=2XzutAtN2Y1L1QzutDtDtC0F0DtD0DyEyCzztCtAyCtByEzytN0D0TzutBtDtCtBtDyBtDtC&cr=632047212
    IE - HKU\S-1-5-21-1555861937-1502566375-777649677-1000\..\SearchScopes\{16AE843F-AD20-4653-AF2D-B1C985CAA172}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3294791&CUI=UN66306910655406475&UM=2
    IE - HKU\S-1-5-21-1555861937-1502566375-777649677-1000\..\SearchScopes\{4C4C7AAB-5854-4241-A414-E2F1EF119C4A}: "URL" = http://www.dnsbasic.com/?prt=dnsbsc50r1&sp=&keywords={searchTerms}
    FF - prefs.js..browser.startup.homepage: "http://securedsearch2.lavasoft.com/index.php?pr=vmn&id=adawaretb&v=3_0&ent=hp&u=A4DF887306C0DC1793122551B256963D"
    FF - prefs.js..extensions.enabledAddons: %7B23fcfd51-4958-4f00-80a3-ae97e717ed8b%7D:2.1.2.172
    FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:22.0
    FF - prefs.js..keyword.URL: "http://securedsearch2.lavasoft.com/results.php?pr=vmn&id=adawaretb&v=3_0&hsimp=yhs-lavasoft&ent=bs&q="
    CHR - homepage: http://securedsearch2.lavasoft.com/inde ... 51B256963D
    CHR - homepage: http://securedsearch2.lavasoft.com/inde ... 51B256963D
    CHR - Extension: LessTabs = C:\Users\Zdenek\AppData\Local\Google\Chrome\User Data\Default\Extensions\cekmkdkefndbeciggfanobcemjnppbbb\1.7.1.0_0\
    O2 - BHO: (LessTabs) - {3178A392-8963-471E-B7A2-969CB58D6496} - C:\Program Files (x86)\LessTabs\IE32\LessTabsClientIE.dll (LessTabs)
    O3:64bit: - HKLM\..\Toolbar: (no name) - !{0E1230F8-EA50-42A9-983C-D22ABC2EED3B} - No CLSID value found.
    O3 - HKLM\..\Toolbar: (no name) - !{0E1230F8-EA50-42A9-983C-D22ABC2EED3B} - No CLSID value found.
    O3 - HKU\S-1-5-21-1555861937-1502566375-777649677-1000\..\Toolbar\WebBrowser: (no name) - {CCE665DD-F6DD-4808-968E-EAEC971F70EF} - No CLSID value found.
    O4 - HKU\S-1-5-21-1555861937-1502566375-777649677-1000..\Run: [SpyEmergency] C:\Program Files\NETGATE\Spy Emergency\SpyEmergency.exe (NETGATE Technologies s.r.o.)
    O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
    O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
    O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Activities present
    O1364bit: - gopher Prefix: missing
    O13 - gopher Prefix: missing
    O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
    O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
    O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
    [2012/08/22 16:05:09 | 000,419,554 | ---- | C] (SearchAmong ) -- C:\Users\Zdenek\AppData\Roaming\satoolbar.exe
    [2013/06/08 01:21:34 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus
    [2013/05/14 14:34:00 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\AVG
    [2013/05/04 07:42:21 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\AVG2013
    [2013/05/27 13:02:11 | 000,000,000 | ---D | M] -- C:\Users\Zdenek\AppData\Roaming\Spy Emergency
    [2 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
    [5 C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]
    [2013/05/15 11:17:34 | 000,554,408 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Ad-Aware Browsing Protection\adawarebp.exe
    [2013/05/15 11:17:42 | 000,460,200 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Ad-Aware Browsing Protection\uninstall.exe
    [2013/05/15 11:17:34 | 000,554,408 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe
    [2013/05/15 11:17:42 | 000,460,200 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe
    [2013/05/15 11:17:34 | 000,554,408 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe
    [2013/05/15 11:17:42 | 000,460,200 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe
    [2013/05/15 11:17:34 | 000,554,408 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe
    [2013/05/15 11:17:42 | 000,460,200 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe
    [2013/05/15 11:17:34 | 000,554,408 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe
    [2013/05/15 11:17:42 | 000,460,200 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe
    [2013/05/15 11:17:34 | 000,554,408 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe
    [2013/05/15 11:17:42 | 000,460,200 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe
    [2013/05/15 11:17:34 | 000,554,408 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe
    [2013/05/15 11:17:42 | 000,460,200 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe
    [2013/05/15 11:17:34 | 000,554,408 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe
    [2013/05/15 11:17:42 | 000,460,200 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe
    [2013/05/15 11:17:34 | 000,554,408 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe
    [2013/05/15 11:17:42 | 000,460,200 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe
    [2013/05/15 11:17:34 | 000,554,408 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe
    [2013/05/15 11:17:42 | 000,460,200 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe
    [2013/05/15 11:17:34 | 000,554,408 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe
    [2013/05/15 11:17:42 | 000,460,200 | ---- | M] (Lavasoft) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe
    File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe
    File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe
    File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\ASPEncoder\Uninstaller.exe
    File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\ControlPanel\Uninstaller.exe
    File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Converter\Uninstaller.exe
    File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DFXPlugin\Uninstaller.exe
    File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSAACDecoder\Uninstaller.exe
    File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSASPDecoder\Uninstaller.exe
    File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\DSAVCDecoder\Uninstaller.exe
    File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\MFComponents\Uninstaller.exe
    File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\MPEG2Plugin\Uninstaller.exe
    File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\OVSHelper\Uninstaller.exe
    File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Player\Uninstaller.exe
    File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Qt4.8\Uninstaller.exe
    File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Setup\DivXSetup.exe
    File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\Update\Uninstaller.exe
    File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\DivX\WebPlayer\Uninstaller.exe
    File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgmfapx.exe
    File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgntdumpx.exe
    File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrdtestx.exe
    File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrunasx.exe
    File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avguirux.exe
    [2013/05/16 16:32:29 | 000,172,032 | ---- | M] (Nexon) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\NexonUS\NGM\NGM.exe
    File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Cricket Broadband EC1705\userdata\LiveUpd.exe
    File not found -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Cricket Broadband EC1705\userdata\ouc.exe
    [2013/05/04 07:39:10 | 007,330,384 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgmfapx.exe
    [2013/05/04 07:39:09 | 000,621,176 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgntdumpx.exe
    [2013/05/04 07:39:10 | 000,015,480 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrdtestx.exe
    [2013/05/04 07:39:09 | 000,270,968 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrunasx.exe
    [2013/05/04 07:39:10 | 000,042,104 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avguirux.exe
    [2013/05/04 07:39:10 | 007,330,384 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgmfapx.exe
    [2013/05/04 07:39:09 | 000,621,176 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgntdumpx.exe
    [2013/05/04 07:39:10 | 000,015,480 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrdtestx.exe
    [2013/05/04 07:39:09 | 000,270,968 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrunasx.exe
    [2013/05/04 07:39:10 | 000,042,104 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avguirux.exe
    [2013/05/04 07:39:10 | 007,330,384 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgmfapx.exe
    [2013/05/04 07:39:09 | 000,621,176 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgntdumpx.exe
    [2013/05/04 07:39:10 | 000,015,480 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrdtestx.exe
    [2013/05/04 07:39:09 | 000,270,968 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrunasx.exe
    [2013/05/04 07:39:10 | 000,042,104 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avguirux.exe
    [2013/07/03 16:14:00 | 000,000,914 | ---- | M] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job
    [2013/07/03 15:09:22 | 000,000,894 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
    [2013/07/03 16:16:00 | 000,000,898 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
    [2013/07/03 15:09:21 | 000,000,394 | ---- | M] () -- C:\Windows\Tasks\Sing Along Update.job
    
    :reg
    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    "SpyEmergency"=-
    [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
    "VirtualCloneDrive"=-
    "SunJavaUpdateSched"=-
    "TkBellExe"=-
    "Ad-Aware Browsing Protection"=-
    "Search Protection"=-
    "Ad-Aware Antivirus"=-
    "DivXMediaServer"=-
    "DivXUpdate"=-
    "QuickTime Task"=-
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
    "AppInit_DLLs"=""
    
    :files
    C:\ProgramData\Search Protection
    %windir%\system32\*.tmp.dll /s
    %windir%\system32\SET*.tmp /s
    %windir%\*.tmp
    
    :commands
    [RESETHOSTS]
    [EMPTYTEMP]
    [EMPTYFLASH]
    [EMPTYJAVA]
  • Nasledne kliknete na Opravit
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem

Re: Kontrola logu

Napsal: 05 črc 2013 23:18
od zdenek124
All processes killed
========== OTL ==========
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2453}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2453}\ not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Local Page| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes\{4C4C7AAB-5854-4241-A414-E2F1EF119C4A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4C4C7AAB-5854-4241-A414-E2F1EF119C4A}\ not found.
Registry key HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes\{4C4C7AAB-5854-4241-A414-E2F1EF119C4A}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4C4C7AAB-5854-4241-A414-E2F1EF119C4A}\ not found.
HKU\S-1-5-21-1555861937-1502566375-777649677-1000\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
HKU\S-1-5-21-1555861937-1502566375-777649677-1000\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page Redirect Cache| /E : value set successfully!
HKU\S-1-5-21-1555861937-1502566375-777649677-1000\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page Redirect Cache AcceptLangs| /E : value set successfully!
HKU\S-1-5-21-1555861937-1502566375-777649677-1000\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page Redirect Cache_TIMESTAMP| /E : value set successfully!
HKU\S-1-5-21-1555861937-1502566375-777649677-1000\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page Restore| /E : value set successfully!
HKU\S-1-5-21-1555861937-1502566375-777649677-1000\SOFTWARE\Microsoft\Internet Explorer\Search\\Default_Search_URL| /E : value set successfully!
HKU\S-1-5-21-1555861937-1502566375-777649677-1000\SOFTWARE\Microsoft\Internet Explorer\Search\\SearchAssistant| /E : value set successfully!
HKEY_USERS\S-1-5-21-1555861937-1502566375-777649677-1000\Software\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
HKEY_USERS\S-1-5-21-1555861937-1502566375-777649677-1000\Software\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_USERS\S-1-5-21-1555861937-1502566375-777649677-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_USERS\S-1-5-21-1555861937-1502566375-777649677-1000\Software\Microsoft\Internet Explorer\SearchScopes\{16AE843F-AD20-4653-AF2D-B1C985CAA172}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{16AE843F-AD20-4653-AF2D-B1C985CAA172}\ not found.
Registry key HKEY_USERS\S-1-5-21-1555861937-1502566375-777649677-1000\Software\Microsoft\Internet Explorer\SearchScopes\{4C4C7AAB-5854-4241-A414-E2F1EF119C4A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4C4C7AAB-5854-4241-A414-E2F1EF119C4A}\ not found.
Prefs.js: "http://securedsearch2.lavasoft.com/inde ... 51B256963D" removed from browser.startup.homepage
Prefs.js: %7B23fcfd51-4958-4f00-80a3-ae97e717ed8b%7D:2.1.2.172 removed from extensions.enabledAddons
Prefs.js: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:22.0 removed from extensions.enabledAddons
Prefs.js: "http://securedsearch2.lavasoft.com/resu ... &ent=bs&q=" removed from keyword.URL
Use Chrome's Settings page to change the HomePage.
Use Chrome's Settings page to change the HomePage.
C:\Users\Zdenek\AppData\Local\Google\Chrome\User Data\Default\Extensions\cekmkdkefndbeciggfanobcemjnppbbb\1.7.1.0_0 folder moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3178A392-8963-471E-B7A2-969CB58D6496}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3178A392-8963-471E-B7A2-969CB58D6496}\ deleted successfully.
C:\Program Files (x86)\LessTabs\IE32\LessTabsClientIE.dll moved successfully.
64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\!{0E1230F8-EA50-42A9-983C-D22ABC2EED3B} deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\!{0E1230F8-EA50-42A9-983C-D22ABC2EED3B} deleted successfully.
Registry value HKEY_USERS\S-1-5-21-1555861937-1502566375-777649677-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{CCE665DD-F6DD-4808-968E-EAEC971F70EF} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CCE665DD-F6DD-4808-968E-EAEC971F70EF}\ not found.
Registry value HKEY_USERS\S-1-5-21-1555861937-1502566375-777649677-1000\Software\Microsoft\Windows\CurrentVersion\Run\\SpyEmergency deleted successfully.
File C:\Program Files\NETGATE\Spy Emergency\SpyEmergency.exe not found.
Registry value HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce\\mctadmin deleted successfully.
Registry value HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce\\mctadmin deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Activities\ deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\Prefixes\\gopher|:gopher:// /E : value set successfully!
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\skype4com\ deleted successfully.
File Protocol\Handler\skype4com - No CLSID value found not found.
64bit-Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
C:\Users\Zdenek\AppData\Roaming\satoolbar.exe moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs\20130705T213243.477269PID9088 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs\20130704T213553.396196PID3040 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs\20130704T213553.286996PID4100 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs\20130703T191010.547319PID1052 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs\20130703T191010.360119PID2020 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs\20130630T195824.006439PID1508 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs\20130630T195823.416439PID2940 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs\20130630T160000.130690PID2268 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs\20130624T090820.693644PID3076 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs\20130624T090818.386840PID2164 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs\20130623T160000.188785PID7268 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs\20130620T001231.543252PID3184 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs\20130620T001229.218848PID2344 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs\20130616T204536.812841PID1776 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs\20130616T204535.872840PID1996 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs\20130616T160000.005748PID3708 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs\20130615T182051.756483PID2624 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs\20130615T182051.166482PID2572 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs\20130609T160000.135610PID7656 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs\20130609T100354.036539PID6764 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs\20130608T053103.881674PID2528 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs\20130608T053100.468868PID2332 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs\20130608T052919.383596PID3364 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs\20130608T052737.310758PID4752 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs\20130608T052712.477337PID1044 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs\20130608T052304.258072PID2824 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs\20130608T052302.334068PID2612 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs\20130607T220038.431292PID4464 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs\20130607T220037.987491PID7172 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs\20130607T215233.537064PID3320 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus\Logs folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\Ad-Aware Antivirus folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\AVG\AWL2012\TuningIndex folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\AVG\AWL2012\StartUp Manager folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\AVG\AWL2012\Speed Optimizer folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\AVG\AWL2012\Dashboard folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\AVG\AWL2012\Backups folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\AVG\AWL2012 folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\AVG folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\AVG2013\cfgall folder moved successfully.
C:\Users\Zdenek\AppData\Roaming\AVG2013 folder moved successfully.
Folder C:\Users\Zdenek\AppData\Roaming\Spy Emergency\ not found.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP10F1.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP9E41.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP7AAB.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP82E5.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP9443.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE291.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE56E.tmp folder deleted successfully.
C:\ProgramData\Application Data\Ad-Aware Browsing Protection\adawarebp.exe moved successfully.
C:\ProgramData\Application Data\Ad-Aware Browsing Protection\uninstall.exe moved successfully.
File C:\ProgramData\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe not found.
File C:\ProgramData\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\adawarebp.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Ad-Aware Browsing Protection\uninstall.exe not found.
File move failed. C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\NexonUS\NGM\NGM.exe scheduled to be moved on reboot.
C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgmfapx.exe moved successfully.
C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgntdumpx.exe moved successfully.
C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrdtestx.exe moved successfully.
C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrunasx.exe moved successfully.
C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avguirux.exe moved successfully.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgmfapx.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgntdumpx.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrdtestx.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrunasx.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avguirux.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgmfapx.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgntdumpx.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrdtestx.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avgrunasx.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\MFAData\SelfUpd\avguirux.exe not found.
C:\Windows\Tasks\Adobe Flash Player Updater.job moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job moved successfully.
C:\Windows\Tasks\Sing Along Update.job moved successfully.
========== REGISTRY ==========
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\SpyEmergency not found.
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\VirtualCloneDrive deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\TkBellExe deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\Ad-Aware Browsing Protection deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\Search Protection deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\Ad-Aware Antivirus not found.
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\DivXMediaServer deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\DivXUpdate deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\QuickTime Task deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\\"AppInit_DLLs"|"" /E : value set successfully!
========== FILES ==========
File\Folder C:\ProgramData\Search Protection not found.
File/Folder C:\Windows\system32\*.tmp.dll not found.
File/Folder C:\Windows\system32\SET*.tmp not found.
File/Folder C:\Windows\*.tmp not found.
========== COMMANDS ==========
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Public

User: Zdenek
->Temp folder emptied: 1340881 bytes
->Temporary Internet Files folder emptied: 753798 bytes
->Java cache emptied: 45946 bytes
->FireFox cache emptied: 92542654 bytes
->Google Chrome cache emptied: 6765030 bytes
->Flash cache emptied: 3407 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 0 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 50333 bytes
RecycleBin emptied: 486044 bytes

Total Files Cleaned = 97.00 mb


[EMPTYFLASH]

User: All Users

User: Default

User: Default User

User: Public

User: Zdenek
->Flash cache emptied: 0 bytes

Total Flash Files Cleaned = 0.00 mb


[EMPTYJAVA]

User: All Users

User: Default

User: Default User

User: Public

User: Zdenek
->Java cache emptied: 0 bytes

Total Java Files Cleaned = 0.00 mb


OTL by OldTimer - Version 3.2.69.0 log created on 07052013_181207

Files\Folders moved on Reboot...
File move failed. C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\NexonUS\NGM\NGM.exe scheduled to be moved on reboot.
C:\Users\Zdenek\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
File move failed. C:\Windows\temp\_avast_\Webshlock.txt scheduled to be moved on reboot.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...