Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Kontrola PC

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
cedla
Návštěvník
Návštěvník
Příspěvky: 37
Registrován: 18 lis 2010 11:28

Kontrola PC

#1 Příspěvek od cedla »

Prosím o kontrolu logu. Děkuji. Mám ještě dotaz. Mám vysokou odezvu dá se nějak snížit?

Logfile of random's system information tool 1.09 (written by random/random)
Run by dunaj at 2014-07-04 11:55:06
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 14 GB (9%) free of 153 GB
Total RAM: 1023 MB (48% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:55:22, on 4.7.2014
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\alg.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\wbem\unsecapp.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\internet explorer\iexplore.exe
C:\Program Files\internet explorer\iexplore.exe
C:\Program Files\internet explorer\iexplore.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\různé nesahat\programy pro počítač\RSIT.exe
C:\Program Files\trend micro\dunaj.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: (no name) - {438FAE3E-BDEF-44D3-AB8B-0C7C8350DF59} - (no file)
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\Alwil Software\Avast5\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windows ... 8841950640
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microso ... 8837926843
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

--
End of file - 3232 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\avast! Emergency Update.job
C:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job
C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-06-19 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll [2014-04-21 436600]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-06-19 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{438FAE3E-BDEF-44D3-AB8B-0C7C8350DF59}

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\Alwil Software\Avast5\AvastUI.exe [2014-06-06 3890208]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2009-01-30 133632]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2008-04-14 239616]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"= []
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"= []

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"DisableCAD"=

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoBandCustomize"=0
"NoMovingBands"=0
"NoCloseDragDropBands"=0
"NoDriveAutoRun"=67108863
"EditLevel"=0
"NoCommonGroups"=0
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoResolveSearch"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\WINDOWS\system32\sessmgr.exe"="C:\WINDOWS\system32\sessmgr.exe:*:Disabled:@xpsp2res.dll,-22019"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe:*:Enabled:hpqtra08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe:*:Enabled:hpqste08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hposid01.exe"="C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:*:Enabled:hposid01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe"="C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe:*:Enabled:hpfccopy.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe:*:Enabled:hpoews01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe:*:Enabled:hpiscnapp.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe:*:Enabled:hpqgplgtupl.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe:*:Enabled:hpqgpc01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe:*:Enabled:hpqusgm.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe:*:Enabled:hpqusgh.exe"
"C:\Program Files\HP\Digital Imaging\smart web printing\SmartWebPrintExe.exe"="C:\Program Files\HP\Digital Imaging\smart web printing\SmartWebPrintExe.exe:*:Enabled:smartwebprintexe.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=IR41_32.AX
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=l3codeca.acm
"vidc.asv2"=asusasv2.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.LAGS"=lagarith.dll
"VIDC.X264"=x264vfw.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.FFDS"=ff_vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.l3codecp"=l3codecp.acm

======List of files/folders created in the last 1 month======

2014-07-04 11:55:06 ----D---- C:\rsit
2014-07-01 14:15:55 ----SHD---- C:\Config.Msi
2014-06-30 08:30:33 ----A---- C:\WINDOWS\system32\drivers\mbamchameleon.sys
2014-06-19 17:39:06 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2014-06-19 17:39:05 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2014-06-19 17:11:16 ----D---- C:\AdwCleaner
2014-06-19 16:58:27 ----D---- C:\43cb85c52f546ee77c171ee9
2014-06-19 16:41:52 ----D---- C:\Program Files\Mozilla Firefox
2014-06-19 16:34:24 ----D---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\CheckPoint
2014-06-19 16:07:17 ----D---- C:\Program Files\Common Files\Java
2014-06-19 16:07:05 ----A---- C:\WINDOWS\system32\javaws.exe
2014-06-19 16:06:46 ----A---- C:\WINDOWS\system32\WindowsAccessBridge.dll
2014-06-19 16:06:46 ----A---- C:\WINDOWS\system32\javaw.exe
2014-06-19 16:06:46 ----A---- C:\WINDOWS\system32\java.exe
2014-06-19 16:06:01 ----D---- C:\Program Files\Java
2014-06-19 13:20:57 ----D---- C:\Documents
2014-06-18 21:33:29 ----D---- C:\WINDOWS\Sun
2014-06-13 16:35:39 ----A---- C:\WINDOWS\system32\drivers\TrueSight.sys
2014-06-13 16:35:25 ----D---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\RogueKiller
2014-06-12 16:45:31 ----D---- C:\Documents and Settings\dunaj\Data aplikací\Playboom Entertainment

======List of files/folders modified in the last 1 month======

2014-07-04 11:55:12 ----D---- C:\WINDOWS\Prefetch
2014-07-04 11:55:10 ----D---- C:\Program Files\Trend Micro
2014-07-04 11:18:53 ----AD---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\TEMP
2014-07-04 08:17:23 ----D---- C:\WINDOWS\system32\CatRoot2
2014-07-04 08:04:18 ----D---- C:\WINDOWS\temp
2014-07-03 17:09:27 ----D---- C:\Program Files\filmy
2014-07-02 10:35:15 ----D---- C:\WINDOWS
2014-07-01 17:57:07 ----D---- C:\Program Files\CCleaner
2014-07-01 17:56:40 ----D---- C:\Program Files\stahování
2014-07-01 17:56:28 ----D---- C:\WINDOWS\system32\drivers
2014-07-01 16:52:00 ----RD---- C:\Program Files
2014-07-01 14:16:13 ----SHD---- C:\WINDOWS\Installer
2014-07-01 14:15:44 ----D---- C:\WINDOWS\system32
2014-06-23 17:36:27 ----D---- C:\Program Files\hry
2014-06-23 17:31:13 ----D---- C:\Documents and Settings\dunaj\Data aplikací\LeeGT-Games
2014-06-19 19:00:26 ----D---- C:\WINDOWS\system32\LogFiles
2014-06-19 18:09:42 ----D---- C:\WINDOWS\Microsoft.NET
2014-06-19 17:06:33 ----D---- C:\WINDOWS\system32\CatRoot
2014-06-19 17:04:55 ----HD---- C:\WINDOWS\inf
2014-06-19 17:03:55 ----RSD---- C:\WINDOWS\assembly
2014-06-19 17:00:01 ----D---- C:\WINDOWS\system32\XPSViewer
2014-06-19 16:59:59 ----RSD---- C:\WINDOWS\Fonts
2014-06-19 16:59:13 ----RSHDC---- C:\WINDOWS\system32\dllcache
2014-06-19 16:57:09 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-06-19 16:56:30 ----D---- C:\WINDOWS\WinSxS
2014-06-19 16:07:17 ----D---- C:\Program Files\Common Files
2014-06-19 14:25:35 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2014-06-18 23:18:34 ----D---- C:\Documents and Settings
2014-06-17 22:41:33 ----D---- C:\WINDOWS\Minidump
2014-06-17 18:33:17 ----D---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Malwarebytes' Anti-Malware (portable)
2014-06-08 18:40:28 ----D---- C:\Documents and Settings\dunaj\Data aplikací\HipSoft

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2014-04-21 49944]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2014-04-21 180632]
R0 prohlp02;StarForce Protection Helper Driver v2; C:\WINDOWS\System32\drivers\prohlp02.sys [2004-09-03 115680]
R0 prosync1;StarForce Protection Synchronization Driver v1; C:\WINDOWS\System32\drivers\prosync1.sys [2004-07-19 7040]
R0 sfdrv01;StarForce Protection Environment Driver (version 1.x); C:\WINDOWS\System32\drivers\sfdrv01.sys [2005-03-03 48640]
R0 sfhlp01;StarForce Protection Helper Driver; C:\WINDOWS\System32\drivers\sfhlp01.sys [2003-12-01 4832]
R0 sfhlp02;StarForce Protection Helper Driver (version 2.x); C:\WINDOWS\System32\drivers\sfhlp02.sys [2005-02-23 6656]
R0 sfsync02;StarForce Protection Synchronization Driver (version 2.x); C:\WINDOWS\System32\drivers\sfsync02.sys [2004-12-03 20544]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2011-06-26 436792]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2014-05-15 54832]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2014-05-15 777488]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2014-05-15 411680]
R1 aswTdi;aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [2014-04-21 57672]
R1 HWiNFO32;HWiNFO32 Kernel Driver; \??\C:\Program Files\HWiNFO32\HWiNFO32.SYS []
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 prodrv06;StarForce Protection Environment Driver v6; C:\WINDOWS\System32\drivers\prodrv06.sys [2004-09-03 54368]
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2004-08-18 12032]
R2 ACEDRV07;ACEDRV07; \??\C:\WINDOWS\system32\drivers\ACEDRV07.sys []
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2014-04-21 24184]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2014-04-21 67824]
R2 atksgt;atksgt; C:\WINDOWS\system32\DRIVERS\atksgt.sys [2011-10-13 281760]
R2 EIO;EIO; \??\C:\WINDOWS\system32\drivers\EIO.sys []
R2 lirsgt;lirsgt; C:\WINDOWS\system32\DRIVERS\lirsgt.sys [2010-03-13 25888]
R2 TBPanel;TBPanel; C:\WINDOWS\system32\drivers\TBPanel.sys [2007-03-16 12256]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-09-05 4611072]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2013-03-23 12653120]
R3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-03 20992]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 WmBEnum;Logitech Virtual Bus Enumerator Driver; C:\WINDOWS\system32\drivers\WmBEnum.sys [2004-05-14 10144]
R3 WmXlCore;Logitech WingMan Translation Layer Driver; C:\WINDOWS\system32\drivers\WmXlCore.sys [2004-05-14 44384]
S1 asusgsb;ASUS Virtual Video Capture Device Driver; C:\WINDOWS\system32\drivers\asusgsb32.sys []
S3 AtcL002;NDIS Miniport Driver for Atheros L2 Fast Ethernet Controller; C:\WINDOWS\system32\DRIVERS\l251x86.sys [2007-08-17 30208]
S3 atidgllk;atidgllk; \??\C:\Program Files\ASUS\SmartDoctor\atidgllk.sys []
S3 azzfifeg;azzfifeg; C:\WINDOWS\system32\drivers\azzfifeg.sys []
S3 Cardex;Cardex; \??\C:\WINDOWS\system32\drivers\TBPANEL.SYS []
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 EagleNT;EagleNT; \??\C:\WINDOWS\system32\drivers\EagleNT.sys []
S3 EagleXNt;EagleXNt; \??\C:\WINDOWS\system32\drivers\EagleXNt.sys []
S3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2009-08-05 49920]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2009-08-05 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2009-08-05 21568]
S3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2004-08-18 12160]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 nm;Ovladač programu Sledování sítě; C:\WINDOWS\system32\DRIVERS\NMnt.sys [2008-04-13 40320]
S3 pcouffin;VSO Software pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [2009-08-31 47360]
S3 rt2870;Linksys 802.11n USB Wireless LAN Card Driver; C:\WINDOWS\system32\DRIVERS\rt2870.sys [2009-08-02 724736]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 SNPSTD3;USB PC Camera (SNPSTD3); C:\WINDOWS\system32\DRIVERS\snpstd3.sys []
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 TrueSight;TrueSight; \??\C:\WINDOWS\system32\drivers\TrueSight.sys []
S3 tunmp;Microsoft Tun Miniport Adapter Driver; C:\WINDOWS\system32\DRIVERS\tunmp.sys [2008-04-13 12288]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 Video3D;ASUS Video3D Service; C:\WINDOWS\System32\Drivers\Video3D32.sys []
S3 WmFilter;Logitech WingMan HID Filter Driver; C:\WINDOWS\system32\drivers\WmFilter.sys [2004-05-14 21440]
S3 WmHidLo;Logitech WingMan USB Filter Driver; C:\WINDOWS\system32\drivers\WmHidLo.sys [2004-05-14 14720]
S3 WmVirHid;Logitech Virtual Hid Device Driver; C:\WINDOWS\system32\drivers\WmVirHid.sys [2004-05-14 5600]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2009-01-30 38528]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2014-04-21 50344]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2008-01-08 155716]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WSearch;Windows Search; C:\WINDOWS\system32\SearchIndexer.exe [2008-05-26 439808]
S4 hpqcxs08;hpqcxs08; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S4 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2014-06-19 182696]
S4 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2007-08-08 836904]
S4 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S4 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2007-08-21 382248]
S4 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S4 WinRM;Windows Remote Management (WS-Management); C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2009-02-04 913920]
S4 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-07-20 754856]
S4 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]

-----------------EOF-----------------

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Kontrola PC

#2 Příspěvek od Márty84 »

Zdravim :)

:???: Vidim tam MBAM, nasel neco pri kompletni kontrole?

:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner a ulozte ho na plochu.
Ukoncete vsechny programy, jinak to AdwCleaner udela za vas.
Spustte ho.
Kliknete na Scan a pockejte, az kontrola dobehne.
Pak kliknete na Clean
Program zacne pracovat (muze dojit k restartu pc) a vyplivne log (pripadne bude zde C:\AdwCleaner\AdwCleaner [S?].txt ). Ten mi sem zkopirujte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

cedla
Návštěvník
Návštěvník
Příspěvky: 37
Registrován: 18 lis 2010 11:28

Re: Kontrola PC

#3 Příspěvek od cedla »

MBAM nic nenašel (u úplné kontroly)

Running from : C:\Documents and Settings\dunaj\Plocha\AdwCleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Browsers ] *****

-\\ Internet Explorer v8.0.6001.18702


*************************

AdwCleaner[R100].txt - [773 octets] - [19/06/2014 17:26:36]
AdwCleaner[R101].txt - [834 octets] - [19/06/2014 17:36:57]
AdwCleaner[R102].txt - [895 octets] - [20/06/2014 07:52:18]
AdwCleaner[R103].txt - [956 octets] - [20/06/2014 10:17:06]
AdwCleaner[R104].txt - [1017 octets] - [23/06/2014 17:14:11]
AdwCleaner[R105].txt - [1079 octets] - [24/06/2014 09:35:20]
AdwCleaner[R106].txt - [1142 octets] - [24/06/2014 23:18:14]
AdwCleaner[R107].txt - [1204 octets] - [26/06/2014 23:23:05]
AdwCleaner[R108].txt - [1267 octets] - [29/06/2014 04:55:35]
AdwCleaner[R109].txt - [1329 octets] - [30/06/2014 08:14:11]
AdwCleaner[R110].txt - [1391 octets] - [01/07/2014 14:49:39]
AdwCleaner[R111].txt - [1187 octets] - [04/07/2014 12:38:50]
AdwCleaner[R99].txt - [2358 octets] - [19/06/2014 17:11:19]
AdwCleaner[S15].txt - [2466 octets] - [19/06/2014 17:19:41]

########## EOF - C:\AdwCleaner\AdwCleaner[R111].txt - [1371 octets] ##########

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Kontrola PC

#4 Příspěvek od Márty84 »

:???: Je s pc nejaky konkretni problem, nebo jde ciste jen o prevenci?


:!: Jestli bude Avast rvat, ze to chce otevrit v sandboxu, nedovolte to! Vyberte moznost Otevrit normalne
:arrow: Stahnete OTL http://oldtimer.geekstogo.com/OTL.exe , ulozte na plochu spustte.
Oznacte polozky (dejte tam zatrzitka) Pro všechny uživatele, Kontrola na havěť "LOP" a Kontrola na havěť "Purity"
Do spodniho okna vlozte nasledujici text

Kód: Vybrat vše

CREATERESTOREPOINT

netsvcs
drivers32
savembr:0

/md5start
adp3132.sys
AGP440.sys
ahcix86.sys
ahcix86s.sys
atapi.sys
autochk.exe
cdrom.sys
cngaudit.dll
cryptsvc.dll
eNetHook.dll
eventlog.dll
explorer.exe
hal.dll
Changer.sys
iaStor.sys
iastorv.sys
IdeChnDr.sys
isapnp.sys
JakNDis.sys
KR10N.sys
logevent.dll
lsass.exe
mv61xx.sys
ndis.sys
netlogon.dll
ntelogon.dll
nvata.sys
nvatabus.sys
nvgts.sys
nvraid.sys
nvrd32.sys
nvstor.sys
nvstor32.sys
scecli.dll
sceclt.dll
smss.exe
svchost.exe
symmpi.sys
tcpip.sys
userinit.exe
vaxscsi.sys
viamraid.sys
viasraid.sys
ViPrt.sys
winlogon.exe
ws2_32.dll
/md5stop

%systemroot%*.* /U /s
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
%SYSTEMDRIVE%\*.exe

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c

type c:\boot.ini >> test.txt /c
%SystemDrive%\PhysicalMBR.bin /md5

*crack* /s
*keygen* /s
*AntiWPA* /s
*loader* /s
*minodlogin* /s
*tnod* /s
*AutoKMS* /s
*activator* /s
*serial* /s
*w7lxe* /s
Kliknete na Prohledat
Po skenu se vytvori dva logy (OTL.Txt a Extras.txt), oba sem vlozte (kdyz budou dlouhe, rozdelte je do vice prispevku).
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

cedla
Návštěvník
Návštěvník
Příspěvky: 37
Registrován: 18 lis 2010 11:28

Re: Kontrola PC

#5 Příspěvek od cedla »

omlouvám se, ale musím odejít od PC a nevím na jak dlouho. Tak jak to dodělám, napíšu.

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Kontrola PC

#6 Příspěvek od Márty84 »

OK, v pohode, ja byl stejne v praci az do ted, takze bych stejne neodepsal :-)
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

cedla
Návštěvník
Návštěvník
Příspěvky: 37
Registrován: 18 lis 2010 11:28

Re: Kontrola PC

#7 Příspěvek od cedla »

Počítač se celkově zpomalil. A najíždění internetových stránek je hrozně pomalé a hodně využívají procesor i paměť. A ještě mám hrozně vysoké odezvy průměrně kolem 500 ms.

cedla
Návštěvník
Návštěvník
Příspěvky: 37
Registrován: 18 lis 2010 11:28

Re: Kontrola PC

#8 Příspěvek od cedla »

OTL logfile created on: 4.7.2014 19:07:31 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\dunaj\Plocha
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

1023,17 Mb Total Physical Memory | 496,02 Mb Available Physical Memory | 48,48% Memory free
2,40 Gb Paging File | 1,92 Gb Available in Paging File | 80,05% Paging File free
Paging file location(s): c:\pagefile.sys 1536 3072 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 149,04 Gb Total Space | 12,04 Gb Free Space | 8,08% Space Free | Partition Type: NTFS

Computer Name: KUCHYŇ | User Name: dunaj | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2014.07.04 18:30:08 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\dunaj\Plocha\OTL.exe
PRC - [2014.06.06 13:34:51 | 003,890,208 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\avastui.exe
PRC - [2014.04.21 16:39:58 | 000,050,344 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
PRC - [2008.04.14 05:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe


========== Modules (No Company Name) ==========

MOD - [2014.07.04 14:53:32 | 002,789,888 | ---- | M] () -- C:\Program Files\Alwil Software\Avast5\defs\14070400\algo.dll
MOD - [2013.11.21 14:12:05 | 019,336,120 | ---- | M] () -- C:\Program Files\Alwil Software\Avast5\libcef.dll
MOD - [2007.10.02 15:41:38 | 000,319,488 | ---- | M] () -- C:\Program Files\WinRAR\rarlng.dll
MOD - [2007.09.20 18:34:58 | 000,129,024 | ---- | M] () -- C:\Program Files\WinRAR\RarExt.dll
MOD - [2004.10.11 11:19:00 | 000,092,672 | ---- | M] () -- C:\WINDOWS\system32\ASUSASV2.DLL


========== Services (SafeList) ==========

SRV - File not found [Disabled | Stopped] -- C:\WINDOWS\system32\HPZipm12.dll -- (Pml Driver HPZ12)
SRV - File not found [Disabled | Stopped] -- C:\WINDOWS\system32\HPZinw12.dll -- (Net Driver HPZ12)
SRV - File not found [Disabled | Stopped] -- C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll -- (hpqcxs08)
SRV - File not found [On_Demand | Stopped] -- %SystemRoot%\System32\appmgmts.dll -- (AppMgmt)
SRV - [2014.06.19 16:06:18 | 000,182,696 | ---- | M] (Oracle Corporation) [Disabled | Stopped] -- C:\Program Files\Java\jre7\bin\jqs.exe -- (JavaQuickStarterService)
SRV - [2014.04.21 16:39:58 | 000,050,344 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus)


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- System32\Drivers\Video3D32.sys -- (Video3D)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\snpstd3.sys -- (SNPSTD3)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\EagleXNt.sys -- (EagleXNt)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\EagleNT.sys -- (EagleNT)
DRV - File not found [Kernel | System | Stopped] -- system32\drivers\asusgsb32.sys -- (asusgsb)
DRV - File not found [Kernel | On_Demand | Unknown] -- -- (ahx8l0ce)
DRV - [2014.07.01 15:09:48 | 000,026,624 | ---- | M] () [Kernel | On_Demand | Unknown] -- C:\WINDOWS\system32\drivers\TrueSight.sys -- (TrueSight)
DRV - [2014.05.15 13:40:26 | 000,777,488 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\aswsnx.sys -- (aswSnx)
DRV - [2014.05.15 13:40:26 | 000,411,680 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\aswsp.sys -- (aswSP)
DRV - [2014.05.15 13:40:26 | 000,054,832 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\aswrdr.sys -- (aswRdr)
DRV - [2014.04.21 16:40:03 | 000,180,632 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\aswVmm.sys -- (aswVmm)
DRV - [2014.04.21 16:40:03 | 000,057,672 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2014.04.21 16:40:02 | 000,067,824 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\aswmonflt.sys -- (aswMonFlt)
DRV - [2014.04.21 16:40:02 | 000,049,944 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\aswRvrt.sys -- (aswRvrt)
DRV - [2014.04.21 16:40:02 | 000,024,184 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\aswHwid.sys -- (aswHwid)
DRV - [2011.10.13 09:21:04 | 000,281,760 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\atksgt.sys -- (atksgt)
DRV - [2011.06.26 20:13:05 | 000,436,792 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sptd.sys -- (sptd)
DRV - [2011.05.25 18:08:34 | 000,016,608 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\gdrv.sys -- (gdrv)
DRV - [2011.05.22 22:51:26 | 000,020,216 | ---- | M] (REALiX(tm)) [Kernel | System | Running] -- C:\Program Files\HWiNFO32\HWiNFO32.SYS -- (HWiNFO32)
DRV - [2010.03.13 14:00:26 | 000,025,888 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\lirsgt.sys -- (lirsgt)
DRV - [2009.08.02 13:57:38 | 000,724,736 | R--- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\rt2870.sys -- (rt2870)
DRV - [2008.12.25 15:35:57 | 000,101,376 | ---- | M] (Protect Software GmbH) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\ACEDRV07.sys -- (ACEDRV07)
DRV - [2008.04.13 20:53:09 | 000,040,320 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmnt.sys -- (nm)
DRV - [2007.09.05 18:31:30 | 004,611,072 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService)
DRV - [2007.08.17 15:01:42 | 000,030,208 | R--- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\l251x86.sys -- (AtcL002)
DRV - [2007.03.16 10:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\TBPanel.sys -- (TBPanel)
DRV - [2007.03.16 10:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\TBPanel.sys -- (Cardex)
DRV - [2006.06.14 14:44:30 | 000,012,288 | R--- | M] (ASUSTeK Computer Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\EIO.sys -- (EIO)
DRV - [2005.10.20 11:29:02 | 000,005,376 | ---- | M] (Overclocking Tool) [Kernel | On_Demand | Stopped] -- C:\Program Files\ASUS\SmartDoctor\atidgllk.sys -- (atidgllk)
DRV - [2005.03.03 19:53:57 | 000,048,640 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sfdrv01.sys -- (sfdrv01)
DRV - [2005.02.23 17:59:54 | 000,006,656 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sfhlp02.sys -- (sfhlp02)
DRV - [2004.12.03 12:20:41 | 000,020,544 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sfsync02.sys -- (sfsync02)
DRV - [2004.09.03 19:23:10 | 000,115,680 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\prohlp02.sys -- (prohlp02)
DRV - [2004.09.03 19:19:07 | 000,054,368 | ---- | M] (Protection Technology) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\prodrv06.sys -- (prodrv06)
DRV - [2004.08.03 22:31:34 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RTL8139.sys -- (rtl8139)
DRV - [2004.07.19 16:49:54 | 000,007,040 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\prosync1.sys -- (prosync1)
DRV - [2004.05.14 00:54:34 | 000,014,720 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\WmHidLo.sys -- (WmHidLo)
DRV - [2004.05.14 00:54:32 | 000,021,440 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\WmFilter.sys -- (WmFilter)
DRV - [2004.05.14 00:54:28 | 000,010,144 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\WmBEnum.sys -- (WmBEnum)
DRV - [2004.05.14 00:54:26 | 000,005,600 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\WmVirHid.sys -- (WmVirHid)
DRV - [2004.05.14 00:54:24 | 000,044,384 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\WmXlCore.sys -- (WmXlCore)
DRV - [2003.12.01 17:20:52 | 000,004,832 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sfhlp01.sys -- (sfhlp01)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-21-839522115-220523388-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
IE - HKU\S-1-5-21-839522115-220523388-725345543-1004\..\SearchScopes,DefaultScope = {F4E803DF-8797-470E-AF63-9361618B8416}
IE - HKU\S-1-5-21-839522115-220523388-725345543-1004\..\SearchScopes\{F4E803DF-8797-470E-AF63-9361618B8416}: "URL" = http://www.google.com/search?q={searchT ... utEncoding?}
IE - HKU\S-1-5-21-839522115-220523388-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


========== FireFox ==========

FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.60.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.60.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)


[2014.06.19 16:41:52 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions

Hosts file not found
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3 - HKLM\..\Toolbar: (no name) - {438FAE3E-BDEF-44D3-AB8B-0C7C8350DF59} - No CLSID value found.
O4 - HKLM..\Run: [AvastUI.exe] C:\Program Files\Alwil Software\Avast5\AvastUI.exe (AVAST Software)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableCAD = Reg Error: Value error. File not found
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-839522115-220523388-725345543-1004\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-839522115-220523388-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-839522115-220523388-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0
O7 - HKU\S-1-5-21-839522115-220523388-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoBandCustomize = 0
O7 - HKU\S-1-5-21-839522115-220523388-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoMovingBands = 0
O7 - HKU\S-1-5-21-839522115-220523388-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCloseDragDropBands = 0
O7 - HKU\S-1-5-21-839522115-220523388-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoToolbarsOnTaskbar = 0
O7 - HKU\S-1-5-21-839522115-220523388-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-839522115-220523388-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: EditLevel = 0
O7 - HKU\S-1-5-21-839522115-220523388-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFileMenu = 0
O7 - HKU\S-1-5-21-839522115-220523388-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCommonGroups = 0
O7 - HKU\S-1-5-21-839522115-220523388-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\WINDOWS\system32\nwprovau.dll (Microsoft Corporation)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://download.microsoft.com/download/ ... ontrol.cab (Windows Genuine Advantage Validation Tool)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://www.update.microsoft.com/windows ... 8841950640 (WUWebControl Class)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://www.update.microsoft.com/microso ... 8837926843 (MUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab (Java Plug-in 10.60.2)
O16 - DPF: Microsoft XML Parser for Java file://C:\WINDOWS\Java\classes\xmldso.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 213.46.172.37 213.46.172.36
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{147BAEDF-932E-41F0-90EA-A07DD9205821}: DhcpNameServer = 213.46.172.37 213.46.172.36
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Aktuální domovská stránka) - About:Home
O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Nebe.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Nebe.bmp
O28 - HKLM ShellExecuteHooks: {56F9679E-7826-4C84-81F3-532071A8BCC5} - No CLSID value found.
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

NetSvcs: 6to4 - File not found
NetSvcs: AppMgmt - %SystemRoot%\System32\appmgmts.dll File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: LanmanServer - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found

Drivers32: msacm.ac3acm - C:\WINDOWS\System32\ac3acm.acm (fccHandler)
Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3codecp - C:\WINDOWS\System32\l3codecp.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: MSVideo8 - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.asv2 - C:\WINDOWS\System32\ASUSASV2.DLL ()
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: VIDC.FFDS - C:\WINDOWS\System32\ff_vfw.dll ()
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
Drivers32: VIDC.LAGS - C:\WINDOWS\System32\lagarith.dll ( )
Drivers32: VIDC.X264 - C:\WINDOWS\System32\x264vfw.dll (x264vfw project)
Drivers32: VIDC.XVID - C:\WINDOWS\System32\xvidvfw.dll ()
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin

========== Files/Folders - Created Within 30 Days ==========

[2014.07.04 18:30:06 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\dunaj\Plocha\OTL.exe
[2014.07.04 11:55:06 | 000,000,000 | ---D | C] -- C:\rsit
[2014.07.01 18:26:37 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\dunaj\Recent
[2014.07.01 14:15:55 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2014.06.30 08:30:33 | 000,051,416 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys
[2014.06.23 17:24:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Nabídka Start\Programy\Fairy Maids
[2014.06.19 22:15:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\dunaj\Local Settings\Data aplikací\Adobe
[2014.06.19 17:39:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Nabídka Start\Programy\Malwarebytes' Anti-Malware
[2014.06.19 17:39:06 | 000,022,856 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2014.06.19 17:39:05 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2014.06.19 17:11:16 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2014.06.19 17:02:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\dunaj\Local Settings\Data aplikací\DoNotTrackPlus
[2014.06.19 16:58:30 | 000,597,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\printfilterpipelinesvc.exe
[2014.06.19 16:58:30 | 000,089,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\filterpipelineprintproc.dll
[2014.06.19 16:58:29 | 000,575,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\xpsshhdr.dll
[2014.06.19 16:58:28 | 001,676,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\xpssvcs.dll
[2014.06.19 16:58:27 | 000,000,000 | ---D | C] -- C:\43cb85c52f546ee77c171ee9
[2014.06.19 16:41:52 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2014.06.19 16:34:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\CheckPoint
[2014.06.19 16:07:17 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[2014.06.19 16:07:05 | 000,264,616 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\javaws.exe
[2014.06.19 16:07:05 | 000,145,408 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\javacpl.cpl
[2014.06.19 16:06:46 | 000,175,528 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\javaw.exe
[2014.06.19 16:06:46 | 000,175,528 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\java.exe
[2014.06.19 16:06:46 | 000,096,680 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\WindowsAccessBridge.dll
[2014.06.19 16:06:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Nabídka Start\Programy\Java
[2014.06.19 16:06:01 | 000,000,000 | ---D | C] -- C:\Program Files\Java
[2014.06.19 13:20:57 | 000,000,000 | ---D | C] -- C:\Documents
[2014.06.18 21:33:29 | 000,000,000 | ---D | C] -- C:\WINDOWS\Sun
[2014.06.13 16:35:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\RogueKiller
[2014.06.12 16:45:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\dunaj\Data aplikací\Playboom Entertainment
[2014.06.12 16:41:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\dunaj\Nabídka Start\Programy\Battle Ranch
[2012.06.23 06:17:02 | 000,434,252 | ---- | C] (Microsoft Corporation) -- C:\Documents and Settings\dunaj\MSVCRTD.DLL
[2009.08.31 13:45:09 | 000,047,360 | ---- | C] (VSO Software) -- C:\Documents and Settings\dunaj\Data aplikací\pcouffin.sys

========== Files - Modified Within 30 Days ==========

[2014.07.04 19:09:52 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2014.07.04 18:30:08 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\dunaj\Plocha\OTL.exe
[2014.07.04 16:40:06 | 000,000,366 | -H-- | M] () -- C:\WINDOWS\tasks\avast! Emergency Update.job
[2014.07.04 13:51:18 | 000,000,222 | ---- | M] () -- C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job
[2014.07.04 13:51:04 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2014.07.04 12:31:25 | 001,346,519 | ---- | M] () -- C:\Documents and Settings\dunaj\Plocha\AdwCleaner.exe
[2014.07.01 17:57:18 | 000,000,682 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Plocha\CCleaner.lnk
[2014.07.01 15:09:48 | 000,026,624 | ---- | M] () -- C:\WINDOWS\System32\drivers\TrueSight.sys
[2014.06.30 08:30:33 | 000,051,416 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys
[2014.06.27 09:01:09 | 000,002,422 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2014.06.19 17:39:15 | 000,000,784 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Plocha\Malwarebytes Anti-Malware.lnk
[2014.06.19 17:21:39 | 000,309,992 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2014.06.19 16:57:09 | 002,305,168 | ---- | M] () -- C:\WINDOWS\System32\perfh005.dat
[2014.06.19 16:57:09 | 000,806,602 | ---- | M] () -- C:\WINDOWS\System32\perfc005.dat
[2014.06.19 16:57:09 | 000,478,566 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2014.06.19 16:57:09 | 000,079,920 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2014.06.19 16:06:23 | 000,096,680 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\WindowsAccessBridge.dll
[2014.06.19 16:06:13 | 000,264,616 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javaws.exe
[2014.06.19 16:06:13 | 000,175,528 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javaw.exe
[2014.06.19 16:06:13 | 000,145,408 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javacpl.cpl
[2014.06.19 16:06:12 | 000,175,528 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\java.exe
[2014.06.19 14:25:35 | 000,699,056 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe
[2014.06.19 14:25:34 | 000,071,344 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2014.06.18 12:12:55 | 004,707,328 | ---- | M] () -- C:\Documents and Settings\dunaj\Plocha\RogueKiller.exe
[2014.06.08 15:00:01 | 000,000,216 | ---- | M] () -- C:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job

========== Files Created - No Company Name ==========

[2014.07.04 19:09:52 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2014.07.04 12:31:19 | 001,346,519 | ---- | C] () -- C:\Documents and Settings\dunaj\Plocha\AdwCleaner.exe
[2014.06.19 17:39:15 | 000,000,784 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Plocha\Malwarebytes Anti-Malware.lnk
[2014.06.18 12:12:55 | 004,707,328 | ---- | C] () -- C:\Documents and Settings\dunaj\Plocha\RogueKiller.exe
[2014.06.13 16:35:39 | 000,026,624 | ---- | C] () -- C:\WINDOWS\System32\drivers\TrueSight.sys
[2014.04.21 16:40:07 | 000,024,184 | ---- | C] () -- C:\WINDOWS\System32\drivers\aswHwid.sys
[2014.04.07 08:53:48 | 000,256,000 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2014.04.07 08:53:48 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2014.04.07 08:53:48 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2014.04.07 08:53:48 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2014.04.07 08:53:48 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2014.03.06 08:56:08 | 000,228,783 | ---- | C] () -- C:\WINDOWS\hpoins49.dat
[2014.03.06 08:56:08 | 000,001,241 | ---- | C] () -- C:\WINDOWS\hpomdl49.dat
[2014.02.13 11:27:00 | 008,892,928 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\atscie.msi
[2014.02.13 11:15:41 | 000,013,931 | R--- | C] () -- C:\WINDOWS\System32\RaCoInst.dat
[2013.08.20 09:48:39 | 000,650,752 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2013.08.20 09:48:39 | 000,243,200 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2013.08.20 09:48:39 | 000,216,064 | ---- | C] ( ) -- C:\WINDOWS\System32\lagarith.dll
[2013.08.20 09:48:30 | 000,112,640 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2013.03.23 10:58:34 | 000,180,632 | ---- | C] () -- C:\WINDOWS\System32\drivers\aswVmm.sys
[2013.03.23 10:58:32 | 000,049,944 | ---- | C] () -- C:\WINDOWS\System32\drivers\aswRvrt.sys
[2013.02.22 19:16:28 | 001,519,567 | ---- | C] () -- C:\WINDOWS\Sprouts Adventure Uninstaller.exe
[2012.08.08 13:23:39 | 000,000,125 | ---- | C] () -- C:\Documents and Settings\dunaj\Local Settings\Data aplikací\fusioncache.dat
[2012.07.03 18:43:45 | 000,149,504 | ---- | C] () -- C:\Documents and Settings\dunaj\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012.06.23 06:17:04 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\dunaj\artpclnt.dll
[2009.08.31 13:45:32 | 000,000,671 | ---- | C] () -- C:\Documents and Settings\dunaj\Data aplikací\vso_ts_preview.xml
[2009.08.31 13:45:09 | 000,087,608 | ---- | C] () -- C:\Documents and Settings\dunaj\Data aplikací\inst.exe
[2009.08.31 13:45:09 | 000,007,887 | ---- | C] () -- C:\Documents and Settings\dunaj\Data aplikací\pcouffin.cat
[2009.08.31 13:45:09 | 000,001,144 | ---- | C] () -- C:\Documents and Settings\dunaj\Data aplikací\pcouffin.inf
[2009.03.20 17:04:34 | 000,022,328 | ---- | C] () -- C:\Documents and Settings\dunaj\Data aplikací\PnkBstrK.sys

========== ZeroAccess Check ==========

[2008.09.30 12:13:37 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shdocvw.dll -- [2008.04.14 05:21:55 | 001,499,648 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2009.02.09 12:56:05 | 000,473,600 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2008.04.14 05:22:05 | 000,273,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

========== LOP Check ==========

[2013.09.10 14:23:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\aliasworlds
[2010.10.08 10:26:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Alwil Software
[2013.11.02 13:55:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Artist Colony
[2014.06.02 08:46:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Astar Games
[2013.11.21 14:08:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\AVAST Software
[2014.04.20 14:55:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\blg
[2014.07.01 16:52:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\CheckPoint
[2012.11.24 16:59:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\CrioGames
[2012.11.20 12:22:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\CropBusters
[2011.02.03 14:10:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Electronic Arts
[2013.02.13 13:29:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\EscapeFromParadise2
[2014.02.15 23:55:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Farm Fishes
[2014.03.29 00:13:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Farm Frenzy
[2014.03.24 22:20:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\FarmFrenzy2
[2014.03.14 13:15:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\FarmFrenzy3
[2014.03.10 14:40:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\FarmFrenzy3_America
[2014.03.02 20:52:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\FarmFrenzy3_Arctica
[2014.02.12 11:01:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\FarmFrenzy3_Madagascar
[2014.02.24 14:40:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\FarmFrenzy3_Russia
[2014.01.23 13:56:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\FarmFrenzy_Rome
[2014.01.14 18:29:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\FarmFrenzy_Vikings
[2013.12.14 19:33:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\fillup2-daxygames-eng
[2014.06.03 15:53:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Fugazo
[2012.11.28 20:55:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Go Go Gourmet
[2013.02.15 14:15:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Gogii
[2014.05.03 10:43:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Green Clover Games
[2013.07.03 09:29:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\HipSoft
[2010.11.15 16:25:59 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\ISKIOWOVS
[2012.11.26 17:21:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Kristanix Games
[2013.08.06 09:40:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\MythPeople
[2012.11.20 13:51:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\OrganicCoffee
[2014.03.23 02:17:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\PlayFirst
[2013.09.07 10:58:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Playrix Entertainment
[2013.12.30 10:02:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\rionix
[2014.06.13 16:35:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\RogueKiller
[2014.03.23 02:17:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Sandlot Games
[2013.08.30 09:22:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Sprouts Adventure
[2014.01.23 11:06:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Steam
[2013.05.18 15:36:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\SugarGames
[2014.07.04 19:00:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\TEMP
[2013.02.22 17:14:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\TreeCardGames
[2014.04.10 16:40:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\ValuSoft
[2014.05.17 09:27:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\.minecraft
[2013.09.21 19:23:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\.technic
[2013.03.07 16:29:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\1morebee
[2014.03.14 09:41:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\8Floor
[2013.05.16 17:38:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\A2 Entertainment
[2014.03.15 09:54:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Alawar
[2014.03.15 09:28:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\AlawarEntertainment
[2013.09.11 12:03:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\aliasworlds
[2012.09.11 11:38:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Anino Games
[2013.08.03 23:27:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Anuman
[2013.07.04 15:03:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Audacity
[2013.11.21 14:30:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\AVAST Software
[2013.10.04 13:24:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\BC Soft Games
[2013.01.22 16:46:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\BeachPartyCraze
[2013.02.13 14:31:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Big Fish Games
[2013.07.11 22:32:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\BlamGames
[2014.01.03 09:47:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\blg
[2013.12.03 17:56:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\BlooBuzz
[2013.09.12 14:29:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Boolat Games
[2013.07.05 23:27:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Boomzap
[2014.03.05 17:27:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\C.C.C.P
[2013.11.04 12:15:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\com.yeticgi.rf
[2013.01.23 11:44:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Dawn's Light 3
[2013.05.22 16:49:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\dekovir
[2013.02.02 15:32:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Dereza
[2013.03.01 14:48:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\DivoGames
[2014.05.03 15:31:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\EleFun Games
[2014.02.05 18:01:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Enchanted Katya
[2013.11.28 10:13:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Epic Quest Saves
[2013.02.27 13:33:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\ERS G-Studio
[2013.02.07 14:14:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\ERS Game Studios
[2013.10.02 08:29:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Farm 2
[2013.01.20 14:56:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\FarmFables
[2014.06.03 19:28:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\FarmFablesEnhanced
[2013.10.06 11:15:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\FarmUp_realore_en
[2013.06.10 10:46:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Fever Frenzy
[2013.11.08 19:01:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\FirstColony
[2014.02.06 13:37:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Forever Entertainment
[2014.04.15 11:14:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Fugazo
[2013.07.09 17:24:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\GameInvest
[2013.02.13 17:02:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Gamers Digital
[2013.03.11 16:25:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\GFI
[2013.09.17 08:41:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\GlarySoft
[2014.05.03 10:43:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Green Clover Games
[2013.02.10 18:16:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Happy Chef
[2014.06.08 18:40:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\HipSoft
[2013.08.25 10:48:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Home Sweet Home
[2013.08.13 16:49:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Home Sweet Home Christmas
[2013.01.22 18:49:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Hot Farm Africa
[2014.03.14 12:03:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\HuntersGrimm
[2014.04.10 16:43:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\IBAGroup
[2014.01.29 12:17:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\InImages
[2013.12.17 18:48:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Islands5
[2012.11.25 10:54:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\island_tribe_4_realore_en
[2014.03.15 09:48:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Jane s Hotel
[2013.02.17 13:36:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Jumb-O-Fun Games
[2012.12.22 10:32:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\LaRoXion
[2014.06.23 17:31:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\LeeGT-Games
[2013.01.28 16:40:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Lonely Troops
[2013.09.12 16:22:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Ludia
[2014.03.15 12:25:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Maximize Games
[2013.06.10 11:30:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Mean Hamster
[2013.02.08 13:15:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Melesta
[2014.05.28 16:10:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Meridian93
[2013.02.22 18:23:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\NatGeoGames
[2013.06.12 08:00:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\NevoSoft Games
[2013.12.12 12:49:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Nitreal Games
[2013.09.12 16:33:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Nordcurrent
[2014.04.13 15:32:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\northerntale3_realore_en
[2014.04.06 12:27:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\northern_tale_2
[2013.02.22 17:26:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Oberon Games
[2013.12.01 19:41:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Palaplay
[2014.02.12 13:14:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\PeaceCraft4
[2014.03.02 00:29:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\PetStorePanic
[2014.06.12 16:45:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Playboom Entertainment
[2014.03.15 11:05:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\PlayFirst
[2014.01.24 14:29:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Rainbow
[2014.05.02 15:54:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\ReactorGames
[2013.11.16 15:33:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\RenPy
[2013.02.13 15:54:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\rokapublish
[2013.09.07 09:01:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Royal Settlement 1450
[2014.02.05 17:43:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Sierra
[2013.08.04 16:54:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\SolSuite
[2013.09.07 10:20:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\SulusGames
[2013.10.14 15:02:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\tabagames
[2013.07.11 23:02:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\V5 Play
[2013.12.03 18:01:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\ValuSoft
[2013.10.31 13:35:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\VC 2 Paradise Resort
[2014.05.09 17:29:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\vikingsaga2_realore_en
[2013.09.13 10:40:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\viking_saga_en
[2013.02.28 13:27:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\ViquaSoft
[2014.01.24 14:52:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\VisualShape
[2011.03.04 09:14:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\VSRevoGroup
[2012.08.10 18:47:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\WeatherLord
[2011.06.16 16:17:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Windows Desktop Search
[2011.06.16 16:32:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Windows Search
[2013.11.30 11:36:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\World-Loom
[2014.06.04 11:30:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\YoudaGames
[2013.11.16 16:15:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\ZOG

========== Purity Check ==========

cedla
Návštěvník
Návštěvník
Příspěvky: 37
Registrován: 18 lis 2010 11:28

Re: Kontrola PC

#9 Příspěvek od cedla »

========== Custom Scans ==========

< >
[2008.09.18 22:47:41 | 000,000,065 | RH-- | C] () -- C:\WINDOWS\Tasks\desktop.ini
[2008.09.18 22:53:09 | 000,000,006 | -H-- | C] () -- C:\WINDOWS\Tasks\SA.DAT
[2012.07.18 08:59:45 | 000,000,366 | -H-- | C] () -- C:\WINDOWS\Tasks\avast! Emergency Update.job
[2013.07.25 13:30:55 | 000,032,394 | ---- | C] () -- C:\WINDOWS\Tasks\SCHEDLGU.TXT
[2014.03.10 08:11:01 | 000,000,216 | ---- | C] () -- C:\WINDOWS\Tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job
[2014.03.10 08:11:02 | 000,000,222 | ---- | C] () -- C:\WINDOWS\Tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job

< >

< MD5 for: AGP440.SYS >
[2004.08.18 14:00:00 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:AGP440.sys
[2013.05.07 11:10:25 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys
[2013.05.07 11:10:25 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:AGP440.sys
[2008.04.13 20:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\erdnt\cache\agp440.sys
[2008.04.13 20:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008.04.13 20:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys
[2004.08.18 14:00:00 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=2C428FA0C3E3A01ED93C9B2A27D8D4BB -- C:\WINDOWS\$NtServicePackUninstall$\agp440.sys

< MD5 for: ATAPI.SYS >
[2004.08.18 14:00:00 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2013.05.07 11:10:25 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2013.05.07 11:10:25 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008.04.13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\erdnt\cache\atapi.sys
[2008.04.13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008.04.13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2004.08.18 14:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys

< MD5 for: AUTOCHK.EXE >
[2008.04.14 05:22:10 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\ServicePackFiles\i386\autochk.exe
[2008.04.14 05:22:10 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\system32\autochk.exe
[2004.08.18 14:00:00 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=CEA8636EC12F062C1ED8A7CB4E75324F -- C:\cmdcons\autochk.exe
[2004.08.18 14:00:00 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=CEA8636EC12F062C1ED8A7CB4E75324F -- C:\WINDOWS\$NtServicePackUninstall$\autochk.exe

< MD5 for: CDROM.SYS >
[2004.08.18 14:00:00 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys
[2013.05.07 11:10:25 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2013.05.07 11:10:25 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys
[2008.04.13 20:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys
[2008.04.13 20:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys
[2004.08.18 14:00:00 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys

< MD5 for: CRYPTSVC.DLL >
[2004.08.18 14:00:00 | 000,060,416 | ---- | M] (Microsoft Corporation) MD5=70D2A1756F4B2067658A186C963FCABD -- C:\WINDOWS\$NtServicePackUninstall$\cryptsvc.dll
[2008.04.14 05:21:38 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=F3AB0933CBD166D271992F411C27CCAF -- C:\WINDOWS\erdnt\cache\cryptsvc.dll
[2008.04.14 05:21:38 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=F3AB0933CBD166D271992F411C27CCAF -- C:\WINDOWS\ServicePackFiles\i386\cryptsvc.dll
[2008.04.14 05:21:38 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=F3AB0933CBD166D271992F411C27CCAF -- C:\WINDOWS\system32\cryptsvc.dll

< MD5 for: EVENTLOG.DLL >
[2008.04.14 05:21:41 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\erdnt\cache\eventlog.dll
[2008.04.14 05:21:41 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008.04.14 05:21:41 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\system32\eventlog.dll
[2004.08.18 14:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=6EB66066D5C0175320CFEA0A4C74C88F -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll

< MD5 for: EXPLORER.EXE >
[2008.04.14 05:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\erdnt\cache\explorer.exe
[2008.04.14 05:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\explorer.exe
[2008.04.14 05:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\ServicePackFiles\i386\explorer.exe
[2004.08.18 14:00:00 | 001,032,704 | ---- | M] (Microsoft Corporation) MD5=53114D57AB73A406AC7F602227781A99 -- C:\WINDOWS\$NtUninstallKB938828$\explorer.exe
[2007.06.13 15:11:59 | 001,033,728 | ---- | M] (Microsoft Corporation) MD5=9B32416BD5988C97B6397CE0B02CAF97 -- C:\WINDOWS\$hf_mig$\KB938828\SP2QFE\explorer.exe
[2007.06.13 15:23:39 | 001,033,728 | ---- | M] (Microsoft Corporation) MD5=ED7B460B142A32097B8A8F6ECC941815 -- C:\WINDOWS\$NtServicePackUninstall$\explorer.exe

< MD5 for: HAL.DLL >
[2004.08.18 14:00:00 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:hal.dll
[2013.05.07 11:10:25 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:hal.dll
[2013.05.07 11:10:25 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:hal.dll
[2008.04.13 20:31:28 | 000,134,400 | ---- | M] (Microsoft Corporation) MD5=4329EE7D502C9113EBA0F9570392F5EE -- C:\WINDOWS\system32\HAL.DLL
[2008.04.13 20:31:32 | 000,105,344 | ---- | M] (Microsoft Corporation) MD5=6DB1E72AD3B372DFC451B7F54BA08AA7 -- C:\WINDOWS\ServicePackFiles\i386\hal.dll
[2004.08.18 14:00:00 | 000,134,400 | ---- | M] (Microsoft Corporation) MD5=DFCE51FD96909D1B97D4A1A72D060D77 -- C:\WINDOWS\$NtServicePackUninstall$\hal.dll

< MD5 for: CHANGER.SYS >
[2004.08.18 14:00:00 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:Changer.sys
[2013.05.07 11:10:25 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:Changer.sys
[2013.05.07 11:10:25 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:Changer.sys
[2008.04.13 20:40:58 | 000,008,192 | ---- | M] (Microsoft Corporation) MD5=2A5815CA6FFF24B688C01F828B96819C -- C:\WINDOWS\ServicePackFiles\i386\changer.sys
[2004.08.03 23:00:14 | 000,008,192 | ---- | M] (Microsoft Corporation) MD5=DAF1A8193B6CAF0FB858CADCC5C4AF4A -- C:\WINDOWS\$NtServicePackUninstall$\changer.sys

< MD5 for: ISAPNP.SYS >
[2013.05.07 11:10:25 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:isapnp.sys
[2013.05.07 11:10:25 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:isapnp.sys
[2004.08.18 14:00:00 | 000,035,840 | ---- | M] (Microsoft Corporation) MD5=1091528512E4DD7ED5FDDCC4DF1C53D7 -- C:\WINDOWS\$NtServicePackUninstall$\isapnp.sys
[2008.04.14 04:27:53 | 000,037,248 | ---- | M] (Microsoft Corporation) MD5=CC9F8A2D60AED1A51A3AC34C59B987AE -- C:\WINDOWS\ServicePackFiles\i386\isapnp.sys
[2008.04.14 04:27:53 | 000,037,248 | ---- | M] (Microsoft Corporation) MD5=CC9F8A2D60AED1A51A3AC34C59B987AE -- C:\WINDOWS\system32\drivers\isapnp.sys

< MD5 for: LSASS.EXE >
[2004.08.18 14:00:00 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=82A362FE1D4980B71B588D9C10748511 -- C:\WINDOWS\$NtServicePackUninstall$\lsass.exe
[2008.04.14 05:22:29 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=ED0A176354487CEED65B80A7148AB739 -- C:\WINDOWS\erdnt\cache\lsass.exe
[2008.04.14 05:22:29 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=ED0A176354487CEED65B80A7148AB739 -- C:\WINDOWS\ServicePackFiles\i386\lsass.exe
[2008.04.14 05:22:29 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=ED0A176354487CEED65B80A7148AB739 -- C:\WINDOWS\system32\lsass.exe

< MD5 for: NDIS.SYS >
[2008.04.13 21:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\erdnt\cache\ndis.sys
[2008.04.13 21:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ServicePackFiles\i386\ndis.sys
[2008.04.13 21:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys
[2004.08.18 14:00:00 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- C:\WINDOWS\$NtServicePackUninstall$\ndis.sys

< MD5 for: NETLOGON.DLL >
[2009.02.06 20:47:20 | 000,408,064 | ---- | M] (Microsoft Corporation) MD5=1F43B8C0F4C767FBED89711C30E704D9 -- C:\WINDOWS\$hf_mig$\KB968389\SP2QFE\netlogon.dll
[2009.02.06 20:47:20 | 000,408,064 | ---- | M] (Microsoft Corporation) MD5=1F43B8C0F4C767FBED89711C30E704D9 -- C:\WINDOWS\$hf_mig$\KB975467\SP2QFE\netlogon.dll
[2004.08.18 14:00:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=2591CADAEF7D2242039255028E577688 -- C:\WINDOWS\$NtServicePackUninstall$\netlogon.dll
[2008.04.14 05:21:50 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\erdnt\cache\netlogon.dll
[2008.04.14 05:21:50 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\ServicePackFiles\i386\netlogon.dll
[2008.04.14 05:21:50 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\system32\netlogon.dll

< MD5 for: SCECLI.DLL >
[2004.08.18 14:00:00 | 000,184,832 | ---- | M] (Microsoft Corporation) MD5=07119058D451CB7EA4317BCFDA8599A6 -- C:\WINDOWS\$NtServicePackUninstall$\scecli.dll
[2008.04.14 05:21:54 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\erdnt\cache\scecli.dll
[2008.04.14 05:21:54 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\ServicePackFiles\i386\scecli.dll
[2008.04.14 05:21:54 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\system32\scecli.dll

< MD5 for: SMSS.EXE >
[2004.08.18 14:00:00 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=04B69D49D7FC3358A372E97DB6D39447 -- C:\WINDOWS\$NtServicePackUninstall$\smss.exe
[2004.08.17 16:49:28 | 000,164,864 | ---- | M] (Microsoft Corporation) MD5=3C100B7FDB179B63829103DF6541337F -- C:\cmdcons\SYSTEM32\SMSS.EXE
[2008.04.14 05:22:47 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=9B08A8C6331C2DA9C30377BCB4262721 -- C:\WINDOWS\ServicePackFiles\i386\smss.exe
[2008.04.14 05:22:47 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=9B08A8C6331C2DA9C30377BCB4262721 -- C:\WINDOWS\system32\smss.exe

< MD5 for: SVCHOST.EXE >
[2013.04.04 14:50:32 | 000,218,184 | ---- | M] () MD5=B4C6E3889BB310CA7E974A04EC6E46AC -- C:\Program Files\Malwarebytes' Anti-Malware\Chameleon\svchost.exe
[2008.04.14 05:22:48 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\erdnt\cache\svchost.exe
[2008.04.14 05:22:48 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\ServicePackFiles\i386\svchost.exe
[2008.04.14 05:22:48 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\system32\svchost.exe
[2004.08.18 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=DFBA2915B0BF58ABB288CD4C9318CB3F -- C:\WINDOWS\$NtServicePackUninstall$\svchost.exe

< MD5 for: TCPIP.SYS >
[2008.06.20 12:45:13 | 000,360,320 | ---- | M] (Microsoft Corporation) MD5=2A5554FC5B1E04E131230E3CE035C3F9 -- C:\WINDOWS\$NtServicePackUninstall$\tcpip.sys
[2008.06.20 12:44:42 | 000,360,960 | ---- | M] (Microsoft Corporation) MD5=744E57C99232201AE98C49168B918F48 -- C:\WINDOWS\$hf_mig$\KB951748\SP2QFE\tcpip.sys
[2008.04.13 21:20:16 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS\$NtUninstallKB2509553$\tcpip.sys
[2008.04.13 21:20:16 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS\ServicePackFiles\i386\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\$hf_mig$\KB951748\SP3GDR\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\erdnt\cache\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\dllcache\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\drivers\tcpip.sys
[2004.08.18 14:00:00 | 000,359,040 | ---- | M] (Microsoft Corporation) MD5=9F4B36614A0FC234525BA224957DE55C -- C:\WINDOWS\$NtUninstallKB951748$\tcpip.sys
[2008.06.20 13:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\tcpip.sys
[2008.06.20 13:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\tcpip.sys

< MD5 for: USERINIT.EXE >
[2008.04.14 05:22:50 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\erdnt\cache\userinit.exe
[2008.04.14 05:22:50 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\ServicePackFiles\i386\userinit.exe
[2008.04.14 05:22:50 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\system32\userinit.exe
[2004.08.18 14:00:00 | 000,024,576 | ---- | M] (Microsoft Corporation) MD5=836F7960362FF95C5D49E40B891F2CFC -- C:\WINDOWS\$NtServicePackUninstall$\userinit.exe

< MD5 for: WINLOGON.EXE >
[2004.08.18 14:00:00 | 000,502,272 | ---- | M] (Microsoft Corporation) MD5=221C29AE1B4CC61D11D8B27DE78B2307 -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
[2013.04.04 14:50:32 | 000,218,184 | ---- | M] () MD5=B4C6E3889BB310CA7E974A04EC6E46AC -- C:\Program Files\Malwarebytes' Anti-Malware\Chameleon\winlogon.exe
[2008.04.14 05:22:53 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\erdnt\cache\winlogon.exe
[2008.04.14 05:22:53 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008.04.14 05:22:53 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\system32\winlogon.exe

< MD5 for: WS2_32.DLL >
[2004.08.18 14:00:00 | 000,082,944 | ---- | M] (Microsoft Corporation) MD5=382E9B87F1282E697C67AF84E34E35E2 -- C:\WINDOWS\$NtServicePackUninstall$\ws2_32.dll
[2008.04.14 05:22:06 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=951D473917C51F21496D914CF6E5DDD1 -- C:\WINDOWS\erdnt\cache\ws2_32.dll
[2008.04.14 05:22:06 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=951D473917C51F21496D914CF6E5DDD1 -- C:\WINDOWS\ServicePackFiles\i386\ws2_32.dll
[2008.04.14 05:22:06 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=951D473917C51F21496D914CF6E5DDD1 -- C:\WINDOWS\system32\ws2_32.dll

< >

< %systemroot%*.* /U /s >
[24 C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[8 C:\WINDOWS\Installer\*.tmp files -> C:\WINDOWS\Installer\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >

< %ALLUSERSPROFILE%\Application Data\*.exe /s >

< %APPDATA%\*. >
[2014.05.17 09:27:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\.minecraft
[2013.09.21 19:23:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\.technic
[2013.03.07 16:29:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\1morebee
[2014.03.14 09:41:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\8Floor
[2013.05.16 17:38:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\A2 Entertainment
[2013.01.06 01:42:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Adobe
[2014.03.15 09:54:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Alawar
[2014.03.15 09:28:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\AlawarEntertainment
[2013.09.11 12:03:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\aliasworlds
[2012.09.11 11:38:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Anino Games
[2013.08.03 23:27:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Anuman
[2013.07.04 15:03:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Audacity
[2013.11.21 14:30:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\AVAST Software
[2013.10.04 13:24:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\BC Soft Games
[2013.01.22 16:46:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\BeachPartyCraze
[2013.02.13 14:31:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Big Fish Games
[2013.07.11 22:32:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\BlamGames
[2014.01.03 09:47:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\blg
[2013.12.03 17:56:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\BlooBuzz
[2013.09.12 14:29:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Boolat Games
[2013.07.05 23:27:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Boomzap
[2014.03.05 17:27:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\C.C.C.P
[2013.11.04 12:15:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\com.yeticgi.rf
[2013.01.23 11:44:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Dawn's Light 3
[2013.05.22 16:49:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\dekovir
[2013.02.02 15:32:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Dereza
[2013.03.01 14:48:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\DivoGames
[2014.05.03 15:31:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\EleFun Games
[2014.02.05 18:01:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Enchanted Katya
[2013.11.28 10:13:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Epic Quest Saves
[2013.02.27 13:33:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\ERS G-Studio
[2013.02.07 14:14:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\ERS Game Studios
[2013.10.02 08:29:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Farm 2
[2013.01.20 14:56:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\FarmFables
[2014.06.03 19:28:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\FarmFablesEnhanced
[2013.10.06 11:15:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\FarmUp_realore_en
[2013.06.10 10:46:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Fever Frenzy
[2013.11.08 19:01:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\FirstColony
[2014.02.06 13:37:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Forever Entertainment
[2014.04.15 11:14:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Fugazo
[2013.07.09 17:24:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\GameInvest
[2013.02.13 17:02:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Gamers Digital
[2013.03.11 16:25:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\GFI
[2013.09.17 08:41:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\GlarySoft
[2014.05.03 10:43:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Green Clover Games
[2013.02.10 18:16:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Happy Chef
[2014.06.08 18:40:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\HipSoft
[2013.08.25 10:48:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Home Sweet Home
[2013.08.13 16:49:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Home Sweet Home Christmas
[2013.01.22 18:49:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Hot Farm Africa
[2014.03.06 09:10:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\HP
[2014.03.06 09:05:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\HpUpdate
[2014.03.14 12:03:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\HuntersGrimm
[2014.04.10 16:43:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\IBAGroup
[2014.01.29 12:17:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\InImages
[2013.12.17 18:48:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Islands5
[2012.11.25 10:54:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\island_tribe_4_realore_en
[2014.03.15 09:48:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Jane s Hotel
[2013.02.17 13:36:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Jumb-O-Fun Games
[2012.12.22 10:32:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\LaRoXion
[2014.06.23 17:31:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\LeeGT-Games
[2013.01.28 16:40:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Lonely Troops
[2013.09.12 16:22:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Ludia
[2014.03.23 02:11:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Macromedia
[2012.11.23 08:58:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Malwarebytes
[2014.03.15 12:25:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Maximize Games
[2013.06.10 11:30:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Mean Hamster
[2012.04.12 16:54:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Media Player Classic
[2013.02.08 13:15:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Melesta
[2014.05.28 16:10:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Meridian93
[2013.01.28 16:56:45 | 000,000,000 | --SD | M] -- C:\Documents and Settings\dunaj\Data aplikací\Microsoft
[2013.04.17 08:35:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Microsoft Games
[2013.02.22 18:23:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\NatGeoGames
[2008.09.21 12:02:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Nero
[2013.06.12 08:00:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\NevoSoft Games
[2013.12.12 12:49:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Nitreal Games
[2013.09.12 16:33:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Nordcurrent
[2014.04.13 15:32:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\northerntale3_realore_en
[2014.04.06 12:27:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\northern_tale_2
[2014.03.31 16:05:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\NVIDIA
[2013.02.22 17:26:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Oberon Games
[2013.12.01 19:41:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Palaplay
[2014.02.12 13:14:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\PeaceCraft4
[2014.03.02 00:29:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\PetStorePanic
[2014.06.12 16:45:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Playboom Entertainment
[2014.03.15 11:05:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\PlayFirst
[2014.01.24 14:29:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Rainbow
[2014.05.02 15:54:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\ReactorGames
[2014.05.05 19:08:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Realore
[2012.11.28 20:30:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Realore_DressUpRush
[2014.04.23 12:57:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Realore_Whiterra Adelantado2
[2012.11.29 20:34:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\realore_whiterra_adelantado
[2014.05.01 12:50:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Realore_Whiterra_Gamehouse_en Adelantado3
[2013.11.16 15:33:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\RenPy
[2013.02.13 15:54:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\rokapublish
[2013.09.07 09:01:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Royal Settlement 1450
[2008.11.24 16:34:56 | 000,000,000 | R--D | M] -- C:\Documents and Settings\dunaj\Data aplikací\SecuROM
[2014.02.05 17:43:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Sierra
[2013.12.19 15:03:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Skype
[2013.08.04 16:54:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\SolSuite
[2013.09.07 10:20:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\SulusGames
[2012.05.26 07:49:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Sun
[2013.10.14 15:02:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\tabagames
[2013.07.11 23:02:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\V5 Play
[2013.12.03 18:01:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\ValuSoft
[2013.10.31 13:35:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\VC 2 Paradise Resort
[2014.05.09 17:29:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\vikingsaga2_realore_en
[2013.09.13 10:40:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\viking_saga_en
[2013.02.28 13:27:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\ViquaSoft
[2014.01.24 14:52:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\VisualShape
[2011.03.04 09:14:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\VSRevoGroup
[2012.08.10 18:47:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\WeatherLord
[2011.06.16 16:17:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Windows Desktop Search
[2011.06.16 16:32:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\Windows Search
[2008.09.20 14:06:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\WinRAR
[2013.11.30 11:36:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\World-Loom
[2014.06.04 11:30:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\YoudaGames
[2013.11.16 16:15:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dunaj\Data aplikací\ZOG

< %APPDATA%\*.exe /s >
[2011.06.15 20:18:01 | 000,087,608 | ---- | M] () -- C:\Documents and Settings\dunaj\Data aplikací\inst.exe
[2011.01.24 17:49:22 | 000,010,134 | R--- | M] () -- C:\Documents and Settings\dunaj\Data aplikací\Microsoft\Installer\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}\ARPPRODUCTICON.exe
[2012.03.10 14:50:59 | 000,909,088 | ---- | M] (Sun Microsystems, Inc.) -- C:\Documents and Settings\dunaj\Data aplikací\Sun\Java\JRERunOnce.exe
[2014.06.19 15:55:29 | 000,145,408 | ---- | M] () -- C:\Documents and Settings\dunaj\Data aplikací\Sun\Java\jre1.7.0_60\lzma.exe

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\Tasks\*.job /lockedfiles >

< %systemroot%\system32\drivers\*.sys /lockedfiles >
[2011.06.26 20:13:05 | 000,436,792 | ---- | M] () Unable to obtain MD5 -- C:\WINDOWS\system32\drivers\sptd.sys

< %systemroot%\System32\config\*.sav >
[2011.06.04 19:17:42 | 000,524,288 | ---- | M] () -- C:\WINDOWS\System32\config\default.sav
[2011.05.25 18:09:49 | 000,053,248 | ---- | M] () -- C:\WINDOWS\System32\config\security.sav
[2011.06.04 19:17:42 | 036,962,304 | ---- | M] () -- C:\WINDOWS\System32\config\software.sav
[2011.06.04 19:17:42 | 012,058,624 | ---- | M] () -- C:\WINDOWS\System32\config\system.sav

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\system32\drivers\*.sys /3 >

< %systemroot%\system32\*.* /3 >

< %SYSTEMDRIVE%\*.exe >

< >

< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"ctfmon.exe" = C:\WINDOWS\system32\ctfmon.exe -- [2008.04.14 05:22:17 | 000,015,360 | ---- | M] (Microsoft Corporation)

< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WUAUSERV
IMAGEPATH REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k netsvcs

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\BITS
IMAGEPATH REG_EXPAND_SZ %SystemRoot%\system32\svchost.exe -k netsvcs

< >

< type c:\boot.ini >> test.txt /c >
[boot loader]
timeout=30
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Home Edition" /fastdetect /noexecute=optin
C:\CMDCONS\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons

< %SystemDrive%\PhysicalMBR.bin /md5 >
[2014.07.04 19:09:52 | 000,000,512 | ---- | M] () MD5=6D2312DEDF0137612BA3FA08D5A572E7 -- C:\PhysicalMBR.bin

< >

< *crack* /s >
[2014.05.28 16:02:33 | 000,049,436 | ---- | M] () -- \Documents and Settings\All Users.WINDOWS\Data aplikací\Fugazo\Cooking Academy 3\cached\sounds\eggcrack.wav
[2013.04.05 13:27:34 | 000,051,238 | ---- | M] () -- \Program Files\filmy\anglické seriály moc nekoukáme\cracked stahnuto\Cracked S01E10.srt
[2013.08.08 10:15:28 | 307,147,898 | ---- | M] () -- \Program Files\filmy\anglické seriály moc nekoukáme\cracked stahnuto\cracked.s01e04.hdtv.x264-2hd.mp4
[2013.04.05 13:27:34 | 000,039,881 | ---- | M] () -- \Program Files\filmy\anglické seriály moc nekoukáme\cracked stahnuto\Cracked.S01E04.HDTV.x264-2HD.srt
[2013.04.05 13:27:34 | 000,044,740 | ---- | M] () -- \Program Files\filmy\anglické seriály moc nekoukáme\cracked stahnuto\Cracked.S01E05.HDTV.x264-2HD.srt
[2013.04.05 13:27:34 | 000,038,587 | ---- | M] () -- \Program Files\filmy\anglické seriály moc nekoukáme\cracked stahnuto\Cracked.S01E06.HDTV.x264-2HD.srt
[2013.04.05 13:27:34 | 000,052,660 | ---- | M] () -- \Program Files\filmy\anglické seriály moc nekoukáme\cracked stahnuto\Cracked.S01E07.HDTV.x264-BAJSKORV.srt
[2013.04.05 13:27:34 | 000,049,663 | ---- | M] () -- \Program Files\filmy\anglické seriály moc nekoukáme\cracked stahnuto\Cracked.S01E08.HDTV.XviD-AFG.srt
[2013.04.05 13:27:34 | 000,042,749 | ---- | M] () -- \Program Files\filmy\anglické seriály moc nekoukáme\cracked stahnuto\Cracked.S01E09.HDTV.x264-2HD.srt
[2014.04.05 22:39:00 | 000,133,649 | ---- | M] () -- \Program Files\hry\a\Cooking_Academy_Restaurant_Royale_final_money_unlocked\images\dynamic\food\egg\crack_egg@mid.png
[2014.04.05 22:39:01 | 000,022,591 | ---- | M] () -- \Program Files\hry\a\Cooking_Academy_Restaurant_Royale_final_money_unlocked\images\dynamic\minigames\crack_egg\bowl_eggcrack@mid.png
[2014.04.05 22:39:03 | 000,026,022 | ---- | M] () -- \Program Files\hry\a\Cooking_Academy_Restaurant_Royale_final_money_unlocked\sounds\dynamic\eggcrack.wav
[2010.11.16 14:38:32 | 000,010,099 | ---- | M] () -- \Program Files\hry\Delicious_10_In_1_Bundle_Final\Delicious 6-Emily's Childhood Memories Premium Edition\sound\fireworks\small_crack.ogg
[2014.01.20 10:47:26 | 000,039,249 | ---- | M] () -- \Program Files\hry\Demigods FINAL\content\sound\colossusCrack.ogg
[2014.01.20 10:47:34 | 000,006,384 | ---- | M] () -- \Program Files\hry\Demigods FINAL\content\webp\animations\blockages\custom\dragonStepsCrack.webp
[2014.01.20 10:47:34 | 000,004,448 | ---- | M] () -- \Program Files\hry\Demigods FINAL\content\webp\animations\blockages\custom\greekWallCrack1.webp
[2014.01.20 10:47:34 | 000,004,838 | ---- | M] () -- \Program Files\hry\Demigods FINAL\content\webp\animations\blockages\custom\greekWallCrack2.webp
[2014.01.20 10:47:34 | 000,004,388 | ---- | M] () -- \Program Files\hry\Demigods FINAL\content\webp\animations\blockages\custom\greekWallCrack3.webp
[2014.01.20 10:47:34 | 000,003,702 | ---- | M] () -- \Program Files\hry\Demigods FINAL\content\webp\animations\blockages\custom\hadesCrack1.webp
[2014.01.20 10:47:34 | 000,003,710 | ---- | M] () -- \Program Files\hry\Demigods FINAL\content\webp\animations\blockages\custom\hadesCrack2.webp
[2014.01.20 10:47:34 | 000,003,570 | ---- | M] () -- \Program Files\hry\Demigods FINAL\content\webp\animations\blockages\custom\hadesCrack3.webp
[2014.01.20 10:47:34 | 000,003,304 | ---- | M] () -- \Program Files\hry\Demigods FINAL\content\webp\animations\blockages\custom\hadesCrack4.webp
[2014.01.20 10:47:34 | 000,003,894 | ---- | M] () -- \Program Files\hry\Demigods FINAL\content\webp\animations\blockages\custom\hadesCrack5.webp
[2014.01.20 10:47:34 | 000,009,816 | ---- | M] () -- \Program Files\hry\Demigods FINAL\content\webp\animations\blockages\custom\hyperPathCrack.webp
[2014.01.20 10:47:34 | 000,006,338 | ---- | M] () -- \Program Files\hry\Demigods FINAL\content\webp\animations\blockages\custom\persianWallCrack1.webp
[2014.01.20 10:47:34 | 000,005,524 | ---- | M] () -- \Program Files\hry\Demigods FINAL\content\webp\animations\blockages\custom\persianWallCrack2.webp
[2014.01.20 10:47:34 | 000,004,384 | ---- | M] () -- \Program Files\hry\Demigods FINAL\content\webp\animations\blockages\custom\persianWallCrack3.webp
[2014.01.20 10:47:38 | 000,001,926 | ---- | M] () -- \Program Files\hry\Demigods FINAL\content\webp\animations\custom\colossus\crackLeft.json
[2014.01.20 10:47:38 | 000,034,178 | ---- | M] () -- \Program Files\hry\Demigods FINAL\content\webp\animations\custom\colossus\crackLeft.webp
[2014.01.20 10:47:38 | 000,002,132 | ---- | M] () -- \Program Files\hry\Demigods FINAL\content\webp\animations\custom\colossus\crackRight.json
[2014.01.20 10:47:38 | 000,031,322 | ---- | M] () -- \Program Files\hry\Demigods FINAL\content\webp\animations\custom\colossus\crackRight.webp
[2013.11.19 10:07:02 | 002,035,476 | ---- | M] () -- \Program Files\hry\Island Tribe 5\data\maps\tiles\Island_4\Sphinx_Nose_crack.png
[2013.08.22 11:28:46 | 000,003,885 | -H-- | M] () -- \Program Files\hry\Jo's Dream - Organic Coffee 2\Data\Music_Dan_is STILL A_FFFing_Moron_CRACK YOUR OWN GAMES.nfo
[2013.09.20 16:02:39 | 002,400,045 | ---- | M] () -- \Program Files\hry\Minecraft_1.2.3\Technic-Launcher-cracked-by-matoram.jar
[2014.01.30 17:48:12 | 000,000,162 | ---- | M] () -- \Program Files\hry\The Flying Farm Platinum Edition\Data\Levels\Volcano\Common\PL\Cracks\Cracks1BigLeft.ahsgameresource
[2014.01.30 17:48:12 | 000,000,300 | ---- | M] () -- \Program Files\hry\The Flying Farm Platinum Edition\Data\Levels\Volcano\Common\PL\Cracks\Cracks1BigLeft.ahsvfx
[2014.01.30 17:48:12 | 000,000,161 | ---- | M] () -- \Program Files\hry\The Flying Farm Platinum Edition\Data\Levels\Volcano\Common\PL\Cracks\Cracks1BigRight.ahsgameresource
[2014.01.30 17:48:12 | 000,000,298 | ---- | M] () -- \Program Files\hry\The Flying Farm Platinum Edition\Data\Levels\Volcano\Common\PL\Cracks\Cracks1BigRight.ahsvfx
[2014.01.30 17:48:12 | 000,000,162 | ---- | M] () -- \Program Files\hry\The Flying Farm Platinum Edition\Data\Levels\Volcano\Common\PL\Cracks\Cracks1SmallLeft.ahsgameresource
[2014.01.30 17:48:12 | 000,000,301 | ---- | M] () -- \Program Files\hry\The Flying Farm Platinum Edition\Data\Levels\Volcano\Common\PL\Cracks\Cracks1SmallLeft.ahsvfx
[2014.01.30 17:48:12 | 000,000,164 | ---- | M] () -- \Program Files\hry\The Flying Farm Platinum Edition\Data\Levels\Volcano\Common\PL\Cracks\Cracks1SmallRight.ahsgameresource
[2014.01.30 17:48:12 | 000,000,302 | ---- | M] () -- \Program Files\hry\The Flying Farm Platinum Edition\Data\Levels\Volcano\Common\PL\Cracks\Cracks1SmallRight.ahsvfx
[2014.01.30 17:48:12 | 000,000,161 | ---- | M] () -- \Program Files\hry\The Flying Farm Platinum Edition\Data\Levels\Volcano\Common\PL\Cracks\Cracks2BigLeft.ahsgameresource
[2014.01.30 17:48:12 | 000,000,300 | ---- | M] () -- \Program Files\hry\The Flying Farm Platinum Edition\Data\Levels\Volcano\Common\PL\Cracks\Cracks2BigLeft.ahsvfx
[2014.01.30 17:48:12 | 000,000,161 | ---- | M] () -- \Program Files\hry\The Flying Farm Platinum Edition\Data\Levels\Volcano\Common\PL\Cracks\Cracks2BigRight.ahsgameresource
[2014.01.30 17:48:12 | 000,000,299 | ---- | M] () -- \Program Files\hry\The Flying Farm Platinum Edition\Data\Levels\Volcano\Common\PL\Cracks\Cracks2BigRight.ahsvfx
[2014.01.30 17:48:12 | 000,000,162 | ---- | M] () -- \Program Files\hry\The Flying Farm Platinum Edition\Data\Levels\Volcano\Common\PL\Cracks\Cracks2SmallLeft.ahsgameresource
[2014.01.30 17:48:12 | 000,000,301 | ---- | M] () -- \Program Files\hry\The Flying Farm Platinum Edition\Data\Levels\Volcano\Common\PL\Cracks\Cracks2SmallLeft.ahsvfx
[2014.01.30 17:48:12 | 000,000,164 | ---- | M] () -- \Program Files\hry\The Flying Farm Platinum Edition\Data\Levels\Volcano\Common\PL\Cracks\Cracks2SmallRight.ahsgameresource
[2014.01.30 17:48:12 | 000,000,302 | ---- | M] () -- \Program Files\hry\The Flying Farm Platinum Edition\Data\Levels\Volcano\Common\PL\Cracks\Cracks2SmallRight.ahsvfx
[2014.01.30 17:48:12 | 000,006,439 | ---- | M] () -- \Program Files\hry\The Flying Farm Platinum Edition\Data\Levels\Volcano\Common\PL\Cracks\Anim\A_Cracks1BigLeft.ahsanimation
[2014.01.30 17:48:12 | 000,006,441 | ---- | M] () -- \Program Files\hry\The Flying Farm Platinum Edition\Data\Levels\Volcano\Common\PL\Cracks\Anim\A_Cracks1BigRight.ahsanimation
[2014.01.30 17:48:12 | 000,006,460 | ---- | M] () -- \Program Files\hry\The Flying Farm Platinum Edition\Data\Levels\Volcano\Common\PL\Cracks\Anim\A_Cracks1SmallLeft.ahsanimation
[2014.01.30 17:48:12 | 000,006,461 | ---- | M] () -- \Program Files\hry\The Flying Farm Platinum Edition\Data\Levels\Volcano\Common\PL\Cracks\Anim\A_Cracks1SmallRight.ahsanimation
[2014.01.30 17:48:12 | 000,011,977 | ---- | M] () -- \Program Files\hry\The Flying Farm Platinum Edition\Data\Levels\Volcano\Common\PL\Cracks\Anim\A_Cracks2BigLeft.ahsanimation
[2014.01.30 17:48:12 | 000,011,979 | ---- | M] () -- \Program Files\hry\The Flying Farm Platinum Edition\Data\Levels\Volcano\Common\PL\Cracks\Anim\A_Cracks2BigRight.ahsanimation
[2014.01.30 17:48:12 | 000,011,998 | ---- | M] () -- \Program Files\hry\The Flying Farm Platinum Edition\Data\Levels\Volcano\Common\PL\Cracks\Anim\A_Cracks2SmallLeft.ahsanimation
[2014.01.30 17:48:12 | 000,011,997 | ---- | M] () -- \Program Files\hry\The Flying Farm Platinum Edition\Data\Levels\Volcano\Common\PL\Cracks\Anim\A_Cracks2SmallRight.ahsanimation
[2014.01.30 17:48:12 | 000,000,148 | ---- | M] () -- \Program Files\hry\The Flying Farm Platinum Edition\Data\Levels\Volcano\Common\PL\Cracks\S_Cracks\S_Cracks.ahsmaterial
[2014.01.30 17:48:12 | 000,002,181 | ---- | M] () -- \Program Files\hry\The Flying Farm Platinum Edition\Data\Levels\Volcano\Common\PL\Cracks\S_Cracks\S_Cracks.ahsskin
[2014.01.30 17:48:12 | 000,019,961 | ---- | M] () -- \Program Files\hry\The Flying Farm Platinum Edition\Data\Levels\Volcano\Common\PL\Cracks\S_Cracks\S_Cracks.png
[2011.02.04 16:09:32 | 000,010,099 | ---- | M] () -- \Program Files\LeeGT-Games\Delicious Emily X 7 Pack\Delicious - Emily's Childhood Memories Premium Edition\sound\fireworks\small_crack.ogg

< *keygen* /s >

< *AntiWPA* /s >

< *loader* /s >
[2007.08.20 14:43:56 | 000,000,232 | ---- | M] () -- \Documents and Settings\All Users.WINDOWS\Data aplikací\Nero\Nero8\OnlineServices\NOSWebConfig\MySpace\uploadError.xml
[2012.05.26 10:48:32 | 000,001,275 | ---- | M] () -- \Documents and Settings\dunaj\Data aplikací\.minecraft\ModLoader.txt
[2012.05.26 09:26:07 | 000,000,122 | ---- | M] () -- \Documents and Settings\dunaj\Data aplikací\.minecraft\config\ModLoader.cfg
[2013.09.22 17:31:18 | 000,062,009 | ---- | M] () -- \Documents and Settings\dunaj\Data aplikací\.technic\tekkit\ForgeModLoader-0.log
[2013.09.22 17:20:34 | 000,063,009 | ---- | M] () -- \Documents and Settings\dunaj\Data aplikací\.technic\tekkit\ForgeModLoader-1.log
[2013.09.22 17:01:11 | 000,063,286 | ---- | M] () -- \Documents and Settings\dunaj\Data aplikací\.technic\tekkit\ForgeModLoader-2.log
[2012.04.23 20:31:42 | 000,001,980 | ---- | M] () -- \Documents and Settings\dunaj\Data aplikací\.technic\tekkit\mods\ComputerCraft\org\luaj\vm2\luajc\JavaLoader.class
[2014.07.04 19:27:32 | 000,009,427 | ---- | M] () -- \Documents and Settings\dunaj\Local Settings\Temporary Internet Files\Content.IE5\0M8YSP4X\ajax-loader[1].gif
[2014.07.04 19:30:56 | 000,009,427 | ---- | M] () -- \Documents and Settings\dunaj\Local Settings\Temporary Internet Files\Content.IE5\LDH4LL7D\ajax-loader[1].gif
[2014.04.21 16:39:57 | 000,072,480 | ---- | M] () -- \Program Files\Alwil Software\Avast5\aswWrcIELoader32.exe
[2006.11.09 23:31:32 | 000,163,840 | ---- | M] () -- \Program Files\Common Files\Ahead\Lib\NeGuideStoreLoader.dll
[2006.10.26 13:40:34 | 000,057,344 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VS7DEBUG\coloader.dll
[2006.10.26 13:40:34 | 000,005,120 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VS7DEBUG\coloader.tlb
[2007.08.03 12:48:16 | 000,271,656 | ---- | M] () -- \Program Files\Common Files\Nero\Shared\NSCLoader.dll
[2003.01.14 17:47:04 | 000,002,261 | ---- | M] () -- \Program Files\hry\Age of Mythology\ai\aomMKloader.xs
[2003.07.03 22:37:58 | 000,006,995 | ---- | M] () -- \Program Files\hry\Age of Mythology\ai2\aomxailoader.xs
[2003.07.03 22:37:35 | 000,002,522 | ---- | M] () -- \Program Files\hry\Age of Mythology\ai2\aomxailoaderaggboom.xs
[2003.07.03 22:37:27 | 000,002,734 | ---- | M] () -- \Program Files\hry\Age of Mythology\ai2\aomxailoaderbalanced.xs
[2003.07.03 22:37:17 | 000,002,486 | ---- | M] () -- \Program Files\hry\Age of Mythology\ai2\aomxailoaderboom.xs
[2003.07.03 22:37:07 | 000,002,522 | ---- | M] () -- \Program Files\hry\Age of Mythology\ai2\aomxailoaderdefboom.xs
[2003.07.03 22:37:02 | 000,002,491 | ---- | M] () -- \Program Files\hry\Age of Mythology\ai2\aomxailoaderdefrush.xs
[2003.07.03 22:36:55 | 000,002,494 | ---- | M] () -- \Program Files\hry\Age of Mythology\ai2\aomxailoaderecorush.xs
[2003.07.03 22:36:48 | 000,002,488 | ---- | M] () -- \Program Files\hry\Age of Mythology\ai2\aomxailoaderrush.xs
[2008.09.19 00:16:34 | 000,001,912 | ---- | M] () -- \Program Files\hry\Carrie the Caregiver\loader.dcr
[2007.09.11 18:12:56 | 000,000,482 | ---- | M] () -- \Program Files\hry\Turbo Subs\Data\Config\Menu\loader.ini
[2007.09.18 15:00:20 | 000,000,832 | ---- | M] () -- \Program Files\hry\Turbo Subs\Data\Config\Menu\loader_start.ini
[2006.12.23 17:37:56 | 000,044,032 | ---- | M] () -- \Program Files\WinRAR\RarExtLoader.exe
[2004.08.18 14:00:00 | 000,035,840 | ---- | M] () -- \WINDOWS\$NtServicePackUninstall$\dmloader.dll
[2010.10.02 16:31:22 | 000,082,784 | ---- | M] () -- \WINDOWS\assembly\GAC\IALoader\1.7.6223.0__31bf3856ad364e35\IALoader.dll
[2008.04.14 05:21:39 | 000,035,840 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\dmloader.dll
[2008.04.13 20:31:47 | 000,230,912 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\osloader.exe
[2008.04.13 20:31:48 | 000,278,528 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\osloader.ntd
[2008.04.14 05:21:39 | 000,035,840 | ---- | M] () -- \WINDOWS\system32\dmloader.dll
[2009.04.03 13:39:20 | 000,070,936 | ---- | M] () -- \WINDOWS\system32\PhysXLoader.dll

< *minodlogin* /s >

< *tnod* /s >

< *AutoKMS* /s >

< *activator* /s >

< *serial* /s >
[2004.08.17 16:44:16 | 000,030,301 | ---- | M] () -- \cmdcons\SERIAL.SY_
[2014.07.04 19:30:01 | 000,000,701 | ---- | M] () -- \Documents and Settings\dunaj\Local Settings\Data aplikací\Microsoft\Internet Explorer\DOMStore\R0059HTZ\www.serialzone[1].xml
[2014.07.04 19:28:59 | 000,004,427 | ---- | M] () -- \Documents and Settings\dunaj\Local Settings\Temporary Internet Files\Content.IE5\0M8YSP4X\serialzone20-logo[1].png
[2014.07.04 19:29:39 | 000,007,641 | ---- | M] () -- \Documents and Settings\dunaj\Local Settings\Temporary Internet Files\Content.IE5\BI6AX4TT\serial-info-bg[1].png
[2014.07.04 19:28:56 | 000,063,838 | ---- | M] () -- \Documents and Settings\dunaj\Local Settings\Temporary Internet Files\Content.IE5\LDH4LL7D\sz-serials[1].css
[2013.07.26 11:32:08 | 000,002,457 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\k filmum, filmy\Kmen Andromeda SerialZone.cz.url
[2013.08.20 09:53:07 | 000,003,591 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\k filmum, filmy\Mrtvá zóna - seznam epizod SerialZone.cz.url
[2013.07.26 11:32:08 | 000,000,162 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\k filmum, filmy\serials4you.cz - Seriály online ke shlednutí 100% FUNKČNÍ - Simpsonovi online, Futurama, ....url
[2014.05.12 13:53:58 | 000,003,476 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\k filmum, filmy\Spooksville SerialZone.cz.url
[2013.09.16 12:52:26 | 000,003,296 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\k filmum, filmy\The 100 - seznam epizod SerialZone.cz.url
[2013.07.26 11:32:08 | 000,002,464 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\k filmum, filmy\The Following SerialZone.cz.url
[2013.07.26 11:32:08 | 000,002,236 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\k filmum, filmy\Threshold SerialZone.cz.url
[2013.07.26 11:32:08 | 000,002,510 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\k filmum, filmy\Záhada Anubisova domu SerialZone.cz.url
[2014.07.04 19:29:02 | 000,000,220 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Links\SerialZone.url
[2013.12.08 16:56:21 | 000,003,556 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Simca 2\The Strain SerialZone.cz.url
[2014.03.21 21:16:08 | 000,003,625 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Simona\Baby Daddy SerialZone.cz.url
[2014.06.16 15:51:28 | 000,003,557 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Simona\Bag of Bones SerialZone.cz.url
[2013.07.26 11:32:08 | 000,002,391 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Simona\Bates Motel SerialZone.cz.url
[2014.04.05 15:44:42 | 000,006,971 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Simona\Eleventh Hour SerialZone.cz.url
[2013.07.26 11:32:08 | 000,002,129 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Simona\Homeland SerialZone.cz.url
[2014.03.21 17:55:23 | 000,003,771 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Simona\I Didn't Do It SerialZone.cz.url
[2014.06.14 12:18:59 | 000,007,115 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Simona\Jane by Design SerialZone.cz.url
[2013.07.26 11:32:08 | 000,002,379 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Simona\Mayday SerialZone.cz.url
[2013.07.26 11:32:08 | 000,000,344 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Simona\New Amsterdam SerialZone.cz.url
[2013.07.26 11:32:08 | 000,002,408 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Simona\Orphan Black SerialZone.cz.url
[2014.04.05 15:43:47 | 000,007,013 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Simona\Presidio Med SerialZone.cz.url
[2013.07.26 11:32:08 | 000,002,317 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Simona\Rebound SerialZone.cz.url
[2014.06.16 15:52:19 | 000,003,852 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Simona\The White Queen SerialZone.cz.url
[2014.04.12 11:52:40 | 000,006,460 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Simona\Transplantační jednotka SerialZone.cz.url
[2014.04.05 15:44:03 | 000,007,014 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Simona\uc Undercover SerialZone.cz.url
[2014.06.23 14:26:48 | 000,004,122 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\stáhni\Revoluce - seznam epizod SerialZone.cz.url
[2013.12.25 01:42:19 | 000,003,717 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Titulky\Agents of S.H.I.E.L.D. - titulky (1. řada) SerialZone.cz.url
[2013.11.14 12:58:28 | 000,003,501 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Titulky\Arrow - titulky (2. řada) SerialZone.cz.url
[2014.04.05 21:50:05 | 000,003,279 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Titulky\Atlantis - titulky (1. řada) SerialZone.cz.url
[2014.04.02 12:37:44 | 000,003,269 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Titulky\Believe - titulky (1. řada) SerialZone.cz.url
[2014.06.14 23:35:05 | 000,003,492 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Titulky\Chasing Life - titulky (1. řada) SerialZone.cz.url
[2014.04.02 13:12:39 | 000,004,446 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Titulky\Continuum - titulky (2. řada) SerialZone.cz.url
[2014.04.29 10:36:44 | 000,003,425 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Titulky\Doktorka z Dixie - titulky (3. řada) SerialZone.cz.url
[2014.06.14 23:34:02 | 000,003,873 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Titulky\Dominion - titulky (. řada) SerialZone.cz.url
[2014.04.02 13:12:51 | 000,003,267 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Titulky\Every Witch Way - titulky (. řada) SerialZone.cz.url
[2014.03.24 11:16:18 | 000,000,292 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Titulky\Mako Mermaids - titulky (1. řada) SerialZone.cz.url
[2014.06.14 23:36:45 | 000,003,604 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Titulky\Murder in the First - titulky (1. řada) SerialZone.cz.url
[2013.12.25 02:17:26 | 000,003,695 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Titulky\Once Upon a Time - titulky (3. řada) SerialZone.cz.url
[2013.10.18 15:52:58 | 000,003,802 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Titulky\Once Upon a Time in Wonderland - titulky (1. řada) SerialZone.cz.url
[2014.06.14 23:39:23 | 000,003,392 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Titulky\Outlander - titulky (. řada) SerialZone.cz.url
[2014.07.02 10:35:11 | 000,003,762 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Titulky\Policejní bažanti - titulky (5. řada) SerialZone.cz.url
[2014.06.14 23:30:40 | 000,003,489 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Titulky\Pozůstalí - titulky (. řada) SerialZone.cz.url
[2014.07.02 18:33:04 | 000,003,774 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Titulky\Prolhané krásky - titulky (4. řada) SerialZone.cz.url
[2014.06.19 16:46:03 | 000,002,194 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Titulky\Prolhané krásky - titulky (5. řada) SerialZone.cz.url
[2014.04.08 08:41:08 | 000,003,420 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Titulky\Resurrection - titulky (1. řada) SerialZone.cz.url
[2014.06.14 23:37:31 | 000,003,831 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Titulky\Seed - titulky (. řada) SerialZone.cz.url
[2013.12.25 02:22:58 | 000,003,532 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Titulky\Sleepy Hollow - titulky (1. řada) SerialZone.cz.url
[2014.04.02 13:16:19 | 000,003,333 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Titulky\Star-Crossed - titulky (1. řada) SerialZone.cz.url
[2014.03.27 19:57:32 | 000,003,507 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Titulky\The Blacklist - titulky (1. řada) SerialZone.cz.url
[2014.03.27 15:15:55 | 000,000,282 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Titulky\The Night Shift - titulky (. řada) SerialZone.cz.url
[2013.10.17 12:03:44 | 000,002,369 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Titulky\The Originals - titulky (1. řada) SerialZone.cz.url
[2014.06.14 23:38:22 | 000,001,862 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Titulky\The Strain - titulky (. řada) SerialZone.cz.url
[2013.12.25 02:25:45 | 000,003,693 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Titulky\The Tomorrow People - titulky (1. řada) SerialZone.cz.url
[2013.10.17 12:20:36 | 000,003,655 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Titulky\Trophy Wife - titulky (1. řada) SerialZone.cz.url
[2014.06.14 23:33:10 | 000,004,105 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Titulky\Tyrant - titulky (. řada) SerialZone.cz.url
[2014.04.27 13:58:43 | 000,003,770 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\Titulky\Upíří deníky - titulky (5. řada) SerialZone.cz.url
[2014.02.01 09:57:32 | 000,003,649 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\zofa 2\Eleventh Hour SerialZone.cz.url
[2014.06.23 14:19:42 | 000,005,093 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\zofa 2\Exkluzivně Revolution na FANDOVI! SerialZone.cz.url
[2014.02.05 21:33:20 | 000,003,713 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\zofa 2\I Didn't Do It SerialZone.cz.url
[2013.12.29 19:18:03 | 000,003,567 | ---- | M] () -- \Documents and Settings\dunaj\Oblíbené položky\zofa 2\Rake SerialZone.cz.url
[2014.02.13 23:57:42 | 000,434,368 | ---- | M] () -- \Program Files\Microsoft Silverlight\5.1.30214.0\System.Runtime.Serialization.dll
[2014.03.13 15:05:35 | 001,164,288 | ---- | M] () -- \Program Files\Microsoft Silverlight\5.1.30214.0\System.Runtime.Serialization.ni.dll
[2012.09.27 00:12:26 | 000,970,752 | ---- | M] () -- \Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2004.08.17 15:43:56 | 000,028,416 | ---- | M] () -- \WINDOWS\$NtServicePackUninstall$\grserial.sys
[2004.08.18 14:00:00 | 000,064,640 | ---- | M] () -- \WINDOWS\$NtServicePackUninstall$\serial.sys
[2011.06.16 16:03:02 | 000,011,776 | ---- | M] () -- \WINDOWS\assembly\GAC\System.Runtime.Serialization.Formatters.Soap.resources\1.0.5000.0_cs_b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2011.06.16 22:02:35 | 000,131,072 | ---- | M] () -- \WINDOWS\assembly\GAC\System.Runtime.Serialization.Formatters.Soap\1.0.5000.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2014.06.19 17:03:46 | 000,011,776 | ---- | M] () -- \WINDOWS\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap.resources\2.0.0.0_cs_b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2014.06.19 16:56:31 | 000,131,072 | ---- | M] () -- \WINDOWS\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2011.06.16 15:49:05 | 000,090,112 | ---- | M] () -- \WINDOWS\assembly\GAC_MSIL\system.runtime.serialization.resources\3.0.0.0_cs_b77a5c561934e089\System.RunTime.Serialization.Resources.dll
[2013.05.07 16:04:30 | 000,970,752 | ---- | M] () -- \WINDOWS\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2014.02.14 14:22:53 | 000,311,296 | ---- | M] () -- \WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\6c29ee2bedfe88dcd66993f1af135ad8\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2014.02.14 09:47:22 | 002,345,472 | ---- | M] () -- \WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\9860da66bf0219612908e7412b0a6e2e\System.Runtime.Serialization.ni.dll
[2014.02.13 13:08:04 | 000,311,296 | ---- | M] () -- \WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\046c2851963b30d0e14194051c03de33\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2014.02.13 13:58:05 | 002,659,328 | ---- | M] () -- \WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\be0a1bb51a0d8fb41140c8111ed56d19\System.Runtime.Serialization.ni.dll
[2014.02.13 15:49:58 | 000,009,216 | ---- | M] () -- \WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Xml.Serializ#\bc1a3b2de28e513e09fe7322c122144f\System.Xml.Serialization.ni.dll
[2010.03.18 13:16:28 | 001,026,936 | R--- | M] () -- \WINDOWS\Installer\$PatchCache$\Managed\5C1093C35543A0E32A41B090A305076A\4.0.30319\System.Runtime.Serialization.dll.x86
[2012.07.06 20:13:09 | 000,017,840 | ---- | M] () -- \WINDOWS\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap.resources\v4.0_4.0.0.0_cs_b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2014.02.13 12:52:19 | 000,122,264 | ---- | M] () -- \WINDOWS\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2012.07.06 20:13:08 | 000,099,208 | ---- | M] () -- \WINDOWS\Microsoft.NET\assembly\GAC_MSIL\System.RunTime.Serialization.resources\v4.0_4.0.0.0_cs_b77a5c561934e089\System.RunTime.Serialization.resources.dll
[2014.02.13 12:51:42 | 001,039,040 | ---- | M] () -- \WINDOWS\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2014.02.13 12:53:53 | 000,011,120 | ---- | M] () -- \WINDOWS\Microsoft.NET\assembly\GAC_MSIL\System.Xml.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.Serialization.dll
[2004.07.15 14:31:54 | 000,131,072 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Serialization.Formatters.Soap.dll
[2003.04.07 19:24:52 | 000,011,776 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v1.1.4322\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2008.07.25 11:17:00 | 000,131,072 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2008.09.10 17:46:28 | 000,011,776 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v2.0.50727\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2012.09.27 00:12:26 | 000,970,752 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2013.09.11 06:06:54 | 001,039,040 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.dll
[2010.03.18 13:16:28 | 000,122,264 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Formatters.Soap.dll
[2011.04.06 16:48:20 | 000,011,120 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v4.0.30319\System.Xml.Serialization.dll
[2010.06.15 02:33:16 | 000,017,840 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v4.0.30319\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2010.06.15 02:33:16 | 000,099,208 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v4.0.30319\cs\System.RunTime.Serialization.resources.dll
[2008.04.14 04:17:25 | 000,028,416 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\grserial.sys
[2008.04.14 04:21:08 | 000,064,256 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\serial.sys
[2004.08.18 14:00:00 | 000,053,520 | ---- | M] () -- \WINDOWS\system32\dpserial.dll
[2004.08.18 14:00:00 | 000,014,336 | ---- | M] () -- \WINDOWS\system32\serialui.dll
[2004.08.18 14:00:00 | 000,053,520 | ---- | M] () -- \WINDOWS\system32\dllcache\dpserial.dll
[2004.08.18 14:00:00 | 000,014,336 | ---- | M] () -- \WINDOWS\system32\dllcache\serialui.dll
[2008.04.14 04:21:08 | 000,064,256 | ---- | M] () -- \WINDOWS\system32\drivers\serial.sys

< *w7lxe* /s >

< >

< >

========== Alternate Data Streams ==========

@Alternate Data Stream - 136 bytes -> C:\Documents and Settings\All Users.WINDOWS\Data aplikací\TEMP:5ED747B8
@Alternate Data Stream - 134 bytes -> C:\Documents and Settings\All Users.WINDOWS\Data aplikací\TEMP:10D45FC3
@Alternate Data Stream - 133 bytes -> C:\Documents and Settings\All Users.WINDOWS\Data aplikací\TEMP:23F65965
@Alternate Data Stream - 117 bytes -> C:\Documents and Settings\All Users.WINDOWS\Data aplikací\TEMP:67BA17B9
@Alternate Data Stream - 109 bytes -> C:\Documents and Settings\All Users.WINDOWS\Data aplikací\TEMP:7CEDF9F3
@Alternate Data Stream - 108 bytes -> C:\Documents and Settings\All Users.WINDOWS\Data aplikací\TEMP:A0C7D68A
@Alternate Data Stream - 103 bytes -> C:\Documents and Settings\All Users.WINDOWS\Data aplikací\TEMP:9857FAE3

< End of report >

cedla
Návštěvník
Návštěvník
Příspěvky: 37
Registrován: 18 lis 2010 11:28

Re: Kontrola PC

#10 Příspěvek od cedla »

OTL Extras logfile created on: 4.7.2014 19:07:31 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\dunaj\Plocha
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

1023,17 Mb Total Physical Memory | 496,02 Mb Available Physical Memory | 48,48% Memory free
2,40 Gb Paging File | 1,92 Gb Available in Paging File | 80,05% Paging File free
Paging file location(s): c:\pagefile.sys 1536 3072 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 149,04 Gb Total Space | 12,04 Gb Free Space | 8,08% Space Free | Partition Type: NTFS

Computer Name: KUCHYŇ | User Name: dunaj | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*

[HKEY_USERS\S-1-5-21-839522115-220523388-725345543-1004\SOFTWARE\Classes\<extension>]
.html [@ = htmlfile] -- Reg Error: Key error. File not found

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
https [open] -- Reg Error: Key error.
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22002
"1900:UDP" = 1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
"C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe:*:Enabled:hpqtra08.exe
"C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe:*:Enabled:hpqste08.exe
"C:\Program Files\HP\Digital Imaging\bin\hposid01.exe" = C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:*:Enabled:hposid01.exe
"C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe
"C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe" = C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe:*:Enabled:hpfccopy.exe
"C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe" = C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe:*:Enabled:hpoews01.exe
"C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe" = C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe:*:Enabled:hpiscnapp.exe
"C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe:*:Enabled:hpqgplgtupl.exe
"C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe:*:Enabled:hpqgpc01.exe
"C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe:*:Enabled:hpqusgm.exe
"C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe:*:Enabled:hpqusgh.exe
"C:\Program Files\HP\Digital Imaging\smart web printing\SmartWebPrintExe.exe" = C:\Program Files\HP\Digital Imaging\smart web printing\SmartWebPrintExe.exe:*:Enabled:smartwebprintexe.exe

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\WINDOWS\system32\sessmgr.exe" = C:\WINDOWS\system32\sessmgr.exe:*:Disabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{01501EBA-EC35-4F9F-8889-3BE346E5DA13}" = MSXML4 Parser
"{02DEA9D0-2009-4460-B2C0-4C8A60083BF9}" = Fairy Maids
"{0360D8F0-626A-4E87-8A16-938BD0BEBCC5}" = 32 Bit HP CIO Components Installer
"{04DA7A6F-DFCF-46EB-ACEE-9D22D591BC8F}" = Janes Hotel Trilogy
"{0A0CADCF-78DA-33C4-A350-CD51849B9702}" = Microsoft .NET Framework 4 Extended
"{0A755762-EED8-47AB-A446-505766F93D43}" = Atheros Communications Inc.(R) L2 Fast Ethernet Driver
"{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319
"{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}" = Microsoft XNA Framework Redistributable 3.1
"{1C4551A6-4743-4093-91E4-1477CD655043}" = NVIDIA PhysX
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{26A24AE4-039D-4CA4-87B4-2F03217060FF}" = Java 7 Update 60
"{29C22873-B939-4EF9-B6E3-1EFE7FA391D1}" = ASUS nVidia Driver
"{2B8F4D70-F9CA-4E94-B2A5-49AAD4CE1029}" = Nero 8
"{350C9405-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{418D9D0B-96BF-451A-B951-41B6CFA25E06}" = Fiona Finch
"{43C67D92-F56E-4729-8673-9A2D5A6036F8}" = ASUS Utilities
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4A555E8F-20FC-4237-9A7B-744B665B9D70}" = Turbo Subs
"{546C143E-68DC-314D-97BC-1E454E3BA429}" = Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - CSY
"{565E7B0E-B76B-4EAD-9753-F1E72A5CF12E}" = HPAppStudio
"{582BA1F1-FAB4-41AD-A5E3-4A9535343461}" = PS_AIO_07_C310_SW_Min
"{5E65E94D-69F2-4850-9E93-6459C53A0F50}" = Microsoft .NET Framework 1.1 Czech Language Pack
"{7036A6F4-5DAD-3908-956D-1752CD7F7E5A}" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{7A529246-912F-4C40-A82A-E608DB702FD7}" = ASUS VideoSecurity Online
"{7E9B4FB5-E2F4-488D-93AC-66393B00CC68}" = SSU
"{86E59B4C-E24C-4D2F-AD4E-DA3880919ADC}" = Carrie the Caregiver
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8D2DF375-5696-4591-B344-1788A74A83F5}" = Jennys Fish Shop
"{90120000-0010-0405-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (Czech) 12
"{90120000-0015-0405-0000-0000000FF1CE}" = Microsoft Office Access MUI (Czech) 2007
"{90120000-0015-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0016-0405-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Czech) 2007
"{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Czech) 2007
"{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0019-0405-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Czech) 2007
"{90120000-0019-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001A-0405-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Czech) 2007
"{90120000-001A-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0405-0000-0000000FF1CE}" = Microsoft Office Word MUI (Czech) 2007
"{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0405-0000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2007
"{90120000-001F-0405-0000-0000000FF1CE}_ENTERPRISE_{0B7A4B67-2A38-42B1-9857-662FAB361E08}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-041B-0000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2007
"{90120000-001F-041B-0000-0000000FF1CE}_ENTERPRISE_{FDF9A959-241A-4662-A8DE-7DED9C22D160}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-002C-0405-0000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0044-0405-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Czech) 2007
"{90120000-0044-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-006E-0405-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2007
"{90120000-006E-0405-0000-0000000FF1CE}_ENTERPRISE_{A0AAD4D5-9F9C-49BB-AB64-0FD4695424E8}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00A1-0405-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Czech) 2007
"{90120000-00A1-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00BA-0405-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Czech) 2007
"{90120000-00BA-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{98DF9F27-A3AB-4998-B7F0-BFE628CCE78E}" = Smart Switch Configuration 3.6
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9E718FB8-D411-48D6-8ACE-379BCAB899E6}" = Carrie the Caregiver 2 - Preschool
"{A2C9CD1B-2551-3AED-B244-6698FB929FA6}" = Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - CSY
"{A2DE62D8-EF1B-36CB-B461-B1E221ED8608}" = Microsoft .NET Framework 4 Extended CSY Language Pack
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{AC76BA86-7AD7-1029-7B44-AB0000000001}" = Adobe Reader XI (11.0.07) - Czech
"{B023185F-F1EF-4F97-B0BD-AE6D802226D1}" = NVIDIA WDM Drivers
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D0A05794-48C2-4424-A15A-9F20FCFDD374}" = Call of Duty(R) 2
"{D5D1ACFC-1011-4AB1-97B3-1A87296B0316}" = Delicious Emily X 7 Pack
"{DD73CA82-EA82-38AA-863D-9A24A018DC96}" = Microsoft .NET Framework 3.5 Language Pack SP1 - csy
"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{FA317782-D9ED-4E04-A2C0-F76828929015}" = Meridian - Age of Invention
"Adobe Flash Player ActiveX" = Adobe Flash Player 14 ActiveX
"AOE Trial" = Microsoft Age of Empires Trial
"avast" = avast! Free Antivirus
"Battle Ranch" = Battle Ranch
"CCleaner" = CCleaner
"ENTERPRISE" = Microsoft Office Enterprise 2007
"Farmscapes Collector's Edition Just For Fun Games" = Farmscapes Collector's Edition Just For Fun Games
"Glary Utilities_is1" = Glary Utilities 2.56.0.1822
"HD Tune_is1" = HD Tune 2.55
"HijackThis" = HijackThis 2.0.2
"HWiNFO32_is1" = HWiNFO32 Version 3.80
"ie8" = Windows Internet Explorer 8
"InstallShield_{43C67D92-F56E-4729-8673-9A2D5A6036F8}" = ASUS Utilities
"InstallShield_{7A529246-912F-4C40-A82A-E608DB702FD7}" = ASUS VideoSecurity Online
"InstallShield_{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
"InstallShield_{D0A05794-48C2-4424-A15A-9F20FCFDD374}" = Call of Duty(R) 2
"KLiteCodecPack_is1" = K-Lite Mega Codec Pack 10.0.0
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware verze 1.75.0.1300
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.5 Language Pack SP1 - csy" = Microsoft .NET Framework 3.5 SP1 – jazyková sada – CSY
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile CSY Language Pack" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Microsoft .NET Framework 4 Extended CSY Language Pack" = Microsoft .NET Framework 4 Extended CSY Language Pack
"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
"NVIDIA Drivers" = NVIDIA Drivers
"NVIDIA nView Desktop Manager" = NVIDIA nView Desktop Manager
"Psaní všemi deseti_is1" = Psaní všemi deseti 1.5
"Revo Uninstaller" = Revo Uninstaller 1.95
"Shockwave" = Shockwave
"Sprouts Adventure" = Sprouts Adventure
"The Tiny Tale 2" = The Tiny Tale 2
"Vtune_is1" = Vtune 6.1
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"Windows XP Service Pack" = Windows XP Service Pack 3
"WMFDist11" = Windows Media Format 11 runtime
"wmp11" = Windows Media Player 11
"XPSEPSCLP" = XML Paper Specification Shared Components Language Pack 1.0

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-839522115-220523388-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"The Flower Shop" = The Flower Shop

========== Last 20 Event Log Errors ==========

[ Antivirus Events ]
Error - 22.9.2009 5:25:10 | Computer Name = DUNAJ-9C2A83CE7 | Source = avast! | ID = 33554522
Description =

Error - 23.9.2009 6:48:31 | Computer Name = DUNAJ-9C2A83CE7 | Source = avast! | ID = 33554522
Description =

Error - 24.9.2009 7:35:12 | Computer Name = DUNAJ-9C2A83CE7 | Source = avast! | ID = 33554522
Description =

Error - 29.10.2009 16:09:15 | Computer Name = DUNAJ-9C2A83CE7 | Source = avast! | ID = 33554522
Description =

Error - 4.5.2010 7:08:01 | Computer Name = DUNAJ-9C2A83CE7 | Source = avast! | ID = 33554522
Description =

Error - 18.5.2010 11:33:08 | Computer Name = DUNAJ-9C2A83CE7 | Source = avast! | ID = 33554522
Description =

Error - 4.6.2010 23:40:46 | Computer Name = DUNAJ-9C2A83CE7 | Source = avast! | ID = 33554522
Description =

Error - 5.6.2010 4:18:20 | Computer Name = DUNAJ-9C2A83CE7 | Source = avast! | ID = 33554522
Description =

Error - 21.7.2010 9:10:18 | Computer Name = DUNAJ-9C2A83CE7 | Source = avast! | ID = 33554522
Description =

Error - 3.10.2010 6:37:40 | Computer Name = DUNAJ-9C2A83CE7 | Source = avast! | ID = 33554522
Description =

[ Application Events ]
Error - 19.6.2014 11:23:41 | Computer Name = KUCHYŇ | Source = WmiAdapter | ID = 4099
Description = Otevření služby se nezdařil

Error - 19.6.2014 11:23:50 | Computer Name = KUCHYŇ | Source = WmiAdapter | ID = 4099
Description = Otevření služby se nezdařil

Error - 19.6.2014 11:23:53 | Computer Name = KUCHYŇ | Source = WmiAdapter | ID = 4099
Description = Otevření služby se nezdařil

Error - 19.6.2014 11:23:57 | Computer Name = KUCHYŇ | Source = WmiAdapter | ID = 4099
Description = Otevření služby se nezdařil

Error - 19.6.2014 11:24:00 | Computer Name = KUCHYŇ | Source = WmiAdapter | ID = 4099
Description = Otevření služby se nezdařil

Error - 19.6.2014 11:24:04 | Computer Name = KUCHYŇ | Source = WmiAdapter | ID = 4099
Description = Otevření služby se nezdařil

Error - 19.6.2014 11:24:17 | Computer Name = KUCHYŇ | Source = WmiAdapter | ID = 4099
Description = Otevření služby se nezdařil

Error - 19.6.2014 11:24:26 | Computer Name = KUCHYŇ | Source = .NET Runtime Optimization Service | ID = 1103
Description = .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32)
- Tried to start a service that wasn't the latest version of CLR Optimization service.
Will shutdown

Error - 19.6.2014 11:24:29 | Computer Name = KUCHYŇ | Source = WmiAdapter | ID = 4099
Description = Otevření služby se nezdařil

Error - 19.6.2014 11:24:34 | Computer Name = KUCHYŇ | Source = WmiAdapter | ID = 4099
Description = Otevření služby se nezdařil

[ System Events ]
Error - 4.7.2014 8:59:57 | Computer Name = KUCHYŇ | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1058 při pokusu o spuštění služby BITS
s argumenty za účelem spuštění serveru: {4991D34B-80A1-4291-83B6-3328366B9097}

Error - 4.7.2014 8:59:57 | Computer Name = KUCHYŇ | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1058 při pokusu o spuštění služby BITS
s argumenty za účelem spuštění serveru: {4991D34B-80A1-4291-83B6-3328366B9097}

Error - 4.7.2014 8:59:57 | Computer Name = KUCHYŇ | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1058 při pokusu o spuštění služby BITS
s argumenty za účelem spuštění serveru: {4991D34B-80A1-4291-83B6-3328366B9097}

Error - 4.7.2014 8:59:57 | Computer Name = KUCHYŇ | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1058 při pokusu o spuštění služby BITS
s argumenty za účelem spuštění serveru: {4991D34B-80A1-4291-83B6-3328366B9097}

Error - 4.7.2014 8:59:57 | Computer Name = KUCHYŇ | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1058 při pokusu o spuštění služby BITS
s argumenty za účelem spuštění serveru: {4991D34B-80A1-4291-83B6-3328366B9097}

Error - 4.7.2014 8:59:57 | Computer Name = KUCHYŇ | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1058 při pokusu o spuštění služby BITS
s argumenty za účelem spuštění serveru: {4991D34B-80A1-4291-83B6-3328366B9097}

Error - 4.7.2014 8:59:57 | Computer Name = KUCHYŇ | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1058 při pokusu o spuštění služby BITS
s argumenty za účelem spuštění serveru: {4991D34B-80A1-4291-83B6-3328366B9097}

Error - 4.7.2014 13:56:02 | Computer Name = KUCHYŇ | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1058 při pokusu o spuštění služby upnphost
s argumenty za účelem spuštění serveru: {204810B9-73B2-11D4-BF42-00B0D0118B56}

Error - 4.7.2014 14:37:59 | Computer Name = KUCHYŇ | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1058 při pokusu o spuštění služby upnphost
s argumenty za účelem spuštění serveru: {204810B9-73B2-11D4-BF42-00B0D0118B56}

Error - 4.7.2014 15:21:51 | Computer Name = KUCHYŇ | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1058 při pokusu o spuštění služby upnphost
s argumenty za účelem spuštění serveru: {204810B9-73B2-11D4-BF42-00B0D0118B56}


< End of report >

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Kontrola PC

#11 Příspěvek od Márty84 »

:arrow: Napiste mi velikost adresare plochy (C:\Documents and Settings\dunaj\Plocha)



:!: Jestli bude Avast rvat, ze to chce otevrit v sandboxu, nedovolte to! Vyberte moznost Otevrit normalne
:arrow: Znovu spustte OTL
Do spodniho okna vlozte nasledujici text (vcetne te dvojtecky pred slovem commands)

Kód: Vybrat vše

:commands
[EMPTYTEMP]
[EMPTYFLASH]
[Purity]
[CreateRestorePoint]

:services
Nero BackItUp Scheduler 3
NMIndexingService

:files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp
C:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job
C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job

:otl
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
O3 - HKLM\..\Toolbar: (no name) - {438FAE3E-BDEF-44D3-AB8B-0C7C8350DF59} - No CLSID value found.
O16 - DPF: Microsoft XML Parser for Java file://C:\WINDOWS\Java\classes\xmldso.cab (Reg Error: Key error.)
[24 C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[8 C:\WINDOWS\Installer\*.tmp files -> C:\WINDOWS\Installer\*.tmp -> ]
@Alternate Data Stream - 136 bytes -> C:\Documents and Settings\All Users.WINDOWS\Data aplikací\TEMP:5ED747B8
@Alternate Data Stream - 134 bytes -> C:\Documents and Settings\All Users.WINDOWS\Data aplikací\TEMP:10D45FC3
@Alternate Data Stream - 133 bytes -> C:\Documents and Settings\All Users.WINDOWS\Data aplikací\TEMP:23F65965
@Alternate Data Stream - 117 bytes -> C:\Documents and Settings\All Users.WINDOWS\Data aplikací\TEMP:67BA17B9
@Alternate Data Stream - 109 bytes -> C:\Documents and Settings\All Users.WINDOWS\Data aplikací\TEMP:7CEDF9F3
@Alternate Data Stream - 108 bytes -> C:\Documents and Settings\All Users.WINDOWS\Data aplikací\TEMP:A0C7D68A
@Alternate Data Stream - 103 bytes -> C:\Documents and Settings\All Users.WINDOWS\Data aplikací\TEMP:9857FAE3

:reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{438FAE3E-BDEF-44D3-AB8B-0C7C8350DF59}"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=-
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"=-
Kliknete na Opravit a nechte program pracovat. Pri otazce na restart souhlaste.
Po restartu se objevi novy log, ten sem dejte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

cedla
Návštěvník
Návštěvník
Příspěvky: 37
Registrován: 18 lis 2010 11:28

Re: Kontrola PC

#12 Příspěvek od cedla »

Ta velikost je 7,19 MB velikost na disku a velikost je 6,9 MB.
OTL dávám teď dělat.

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Kontrola PC

#13 Příspěvek od Márty84 »

OK, velikost je v pohode. Tak pockam na log a uvidime, co dal :)
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

cedla
Návštěvník
Návštěvník
Příspěvky: 37
Registrován: 18 lis 2010 11:28

Re: Kontrola PC

#14 Příspěvek od cedla »

Tak jsem OTL udělala dvakrát a ani jednou se neobjevil log

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Kontrola PC

#15 Příspěvek od Márty84 »

Kouknete, jestli neni ve slozce C:\_OTL\MovedFiles\xxxxxxxx_xxxxxx (misto tech x budou cisla, predstavujici datum a cas spusteni)
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Zamčeno