tak jsem to nakonec nasla. vypis RSIT je tadyy. prosim o kontrolu
Logfile of random's system information tool 1.06 (written by random/random)
Run by Uzivatel at 2009-12-05 19:28:30
Microsoft Windows 7 Home Premium
System drive C: has 100 GB (84%) free of 120 GB
Total RAM: 3002 MB (62% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:28:34, on 5.12.2009
Platform: Unknown Windows (WinNT 6.01.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Windows\PLFSetI.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Launch Manager\LManager.exe
C:\Program Files\Acer\Optical Drive Power Management\ODDPWR.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Acer\Acer PowerSmart Manager\ePowerTray.exe
C:\Windows\system32\igfxext.exe
C:\Windows\system32\taskhost.exe
C:\Users\Uzivatel\Desktop\RSIT.exe
C:\Program Files\trend micro\Uzivatel.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://homepage.acer.com/rdr.aspx?b=ACA ... pire_4810t
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://homepage.acer.com/rdr.aspx?b=ACA ... pire_4810t
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://homepage.acer.com/rdr.aspx?b=ACA ... pire_4810t
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://homepage.acer.com/rdr.aspx?b=ACA ... pire_4810t
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~3\Office12\GR469A~1.DLL
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
O4 - HKLM\..\Run: [Skytel] C:\Program Files\Realtek\Audio\HDA\Skytel.exe
O4 - HKLM\..\Run: [Acer ePower Management] C:\Program Files\Acer\Acer PowerSmart Manager\ePowerTrayLauncher.exe
O4 - HKLM\..\Run: [BackupManagerTray] "C:\Program Files\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe" -k
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [PLFSetI] C:\Windows\PLFSetI.exe
O4 - HKLM\..\Run: [LManager] C:\Program Files\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [ODDPwr] "C:\Program Files\Acer\Optical Drive Power Management\ODDPwr.exe"
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Programy\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [ICQ] "C:\Programy\ICQ6.5\ICQ.exe" silent
O4 - HKCU\..\Run: [Skype] "C:\Programy\Skype\\Phone\Skype.exe" /nosplash /minimized
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Programy\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Programy\ICQ6.5\ICQ.exe
O13 - Gopher Prefix:
O17 - HKLM\System\CCS\Services\Tcpip\..\{38A06E2B-CE4D-4A39-9A0D-2AB4375A285E}: NameServer = 10.0.0.1,10.0.0.10
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~3\Office12\GRA32A~1.DLL
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files\Launch Manager\dsiwmis.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer PowerSmart Manager\ePowerSvc.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: NTI IScheduleSvc - NewTech Infosystems, Inc. - C:\Program Files\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) - NewTech InfoSystems, Inc. - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) - NewTech Infosystems, Inc. - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O23 - Service: Acer ODD Power Service (ODDPwrSvc) - Acer Incorporated - C:\Program Files\Acer\Optical Drive Power Management\ODDPWRSvc.exe
--
End of file - 8149 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~3\Office12\GR469A~1.DLL [2006-10-26 2210608]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2008-11-18 408952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-10-11 41760]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-02-06 1430824]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2009-04-10 7399968]
"Skytel"=C:\Program Files\Realtek\Audio\HDA\Skytel.exe [2009-04-10 1833504]
"Acer ePower Management"=C:\Program Files\Acer\Acer PowerSmart Manager\ePowerTrayLauncher.exe [2009-08-19 487424]
"BackupManagerTray"=C:\Program Files\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe [2009-04-01 249600]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-26 31016]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [2009-02-12 186904]
"PLFSetI"=C:\Windows\PLFSetI.exe [2008-07-29 200704]
"LManager"=C:\Program Files\Launch Manager\LManager.exe [2009-08-27 1194504]
"ODDPwr"=C:\Program Files\Acer\Optical Drive Power Management\ODDPwr.exe [2009-09-04 186912]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2009-02-06 2021400]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2009-08-13 135168]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2009-08-13 167424]
"Persistence"=C:\Windows\system32\igfxpers.exe [2009-08-13 144384]
"Adobe Reader Speed Launcher"=C:\Programy\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-09-04 935288]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-10-11 149280]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2009-07-14 144384]
"ICQ"=C:\Programy\ICQ6.5\ICQ.exe [2009-03-01 172792]
"Skype"=C:\Programy\Skype\\Phone\Skype.exe [2009-10-09 25623336]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Users\Uzivatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2009-08-13 217088]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~3\Office12\GR469A~1.DLL [2006-10-26 2210608]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Base]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot file system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CryptSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DcomLaunch]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EventLog]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\File system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HelpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Netlogon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PCI Configuration]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PlugPlay]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PNP Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Primary disk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcSs]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SCSI Class]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sermouse.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\System Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vga.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vgasave.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{36FC9E60-C465-11CF-8056-444553540000}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E965-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E967-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E969-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E977-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E980-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Base]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BFE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot file system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\bowser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Browser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CryptSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DcomLaunch]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dfsc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dhcp]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DnsCache]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dot3Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Eaphost]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EventLog]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\File system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HelpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\IKEEXT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ipnat.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanServer]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanWorkstation]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LmHosts]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Messenger]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSDrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb10]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb20]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NativeWifiP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS Wrapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ndiscap]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ndisuio]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOSGroup]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetDDEGroup]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Netlogon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetMan]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\netprofm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Network]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetworkProvider]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NlaSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nsiproxy.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PCI Configuration]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PlugPlay]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP_TDI]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PolicyAgent]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Primary disk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdbss]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdpencdd.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdsessmgr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcSs]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCardSvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCSI Class]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sermouse.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SharedAccess]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Streams Drivers]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\System Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Tcpip]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TDI]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VaultSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vga.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vgasave.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wlansvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{36FC9E60-C465-11CF-8056-444553540000}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E965-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E967-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E969-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E972-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E973-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E974-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E975-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E977-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E980-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"legalnoticetext"=
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2009-12-05 15:23:40 ----AD---- C:\Windows\VDLL.DLL
2009-12-05 15:23:40 ----AD---- C:\Windows\system32\runouce.exe
2009-12-05 15:23:40 ----AD---- C:\Windows\rundll16.exe
2009-12-05 15:23:40 ----AD---- C:\Windows\RUNDL132.EXE
2009-12-05 15:23:40 ----AD---- C:\Windows\logo1_.exe
2009-12-05 15:23:40 ----AD---- C:\Windows\logo_1.exe
2009-12-05 15:20:57 ----A---- C:\Windows\system32\msvcr80.dll
2009-12-05 15:20:56 ----A---- C:\Windows\system32\msvcp80.dll
2009-12-05 15:20:55 ----A---- C:\Windows\system32\eEmpty.exe
2009-12-05 15:20:47 ----D---- C:\Program Files\Common Files\MicroWorld
2009-12-05 15:20:42 ----D---- C:\ProgramData\MicroWorld
2009-12-05 14:37:31 ----D---- C:\Program Files\CCleaner
2009-12-04 15:16:40 ----D---- C:\rsit
2009-12-04 15:16:40 ----D---- C:\Program Files\trend micro
2009-12-04 15:00:10 ----D---- C:\Users\Uzivatel\AppData\Roaming\Malwarebytes
2009-12-04 15:00:02 ----D---- C:\ProgramData\Malwarebytes
2009-12-03 13:47:24 ----A---- C:\Windows\system32\javaws.exe
2009-12-03 13:47:24 ----A---- C:\Windows\system32\javaw.exe
2009-12-03 13:47:24 ----A---- C:\Windows\system32\java.exe
2009-11-29 11:32:02 ----A---- C:\Windows\system32\deploytk.dll
2009-11-28 13:35:35 ----DC---- C:\Windows\system32\DRVSTORE
2009-11-28 12:09:19 ----D---- C:\Program Files\Java
2009-11-25 19:00:40 ----A---- C:\Windows\system32\tzres.dll
2009-11-21 12:30:25 ----D---- C:\Program Files\Common Files\Adobe
2009-11-17 21:49:35 ----D---- C:\Windows\system32\x64
2009-11-17 21:32:28 ----A---- C:\Windows\system32\msv1_0.dll
2009-11-17 21:31:35 ----A---- C:\Windows\system32\msfeedsbs.dll
2009-11-17 21:31:31 ----A---- C:\Windows\system32\mshtml.dll
2009-11-17 21:31:08 ----A---- C:\Windows\system32\wmp.dll
2009-11-17 21:31:05 ----A---- C:\Windows\system32\CertEnroll.dll
2009-11-17 21:31:04 ----A---- C:\Windows\explorer.exe
2009-11-17 21:31:03 ----A---- C:\Windows\system32\winresume.exe
2009-11-17 21:31:03 ----A---- C:\Windows\system32\winload.exe
2009-11-17 21:31:03 ----A---- C:\Windows\system32\t2embed.dll
2009-11-17 21:31:03 ----A---- C:\Windows\system32\fontsub.dll
2009-11-17 21:31:02 ----A---- C:\Windows\system32\atmfd.dll
2009-11-17 21:30:59 ----A---- C:\Windows\system32\wmploc.DLL
2009-11-17 21:30:57 ----A---- C:\Windows\system32\msasn1.dll
2009-11-17 21:26:57 ----D---- C:\ProgramData\ESET
2009-11-17 21:26:57 ----D---- C:\Program Files\ESET
2009-11-17 18:31:52 ----D---- C:\ProgramData\OEM
2009-11-17 18:29:45 ----A---- C:\Windows\system32\HdmiCoin.dll
2009-11-17 18:28:56 ----A---- C:\Windows\system32\igfxsrvc.dll
2009-11-17 18:28:56 ----A---- C:\Windows\system32\igfxress.dll
2009-11-17 18:28:56 ----A---- C:\Windows\system32\igfxexps.dll
2009-11-17 18:28:56 ----A---- C:\Windows\system32\igdumdx32.dll
2009-11-17 18:28:56 ----A---- C:\Windows\system32\hccutils.dll
2009-11-17 18:28:55 ----A---- C:\Windows\system32\igfxdev.dll
2009-11-17 18:28:55 ----A---- C:\Windows\system32\igfxCoIn_v1808.dll
2009-11-17 18:28:54 ----A---- C:\Windows\system32\igdumd32.dll
2009-11-17 18:28:54 ----A---- C:\Windows\system32\d3dx10_40.dll
2009-11-17 18:26:16 ----A---- C:\Windows\Setup.INI
2009-11-17 18:25:50 ----D---- C:\Program Files\Launch Manager
2009-11-17 18:22:42 ----D---- C:\Windows\Minidump
2009-11-17 18:05:31 ----SHD---- C:\Recovery
2009-11-17 18:05:31 ----SHD---- C:\ProgramData\Šablony
2009-11-17 18:05:31 ----SHD---- C:\ProgramData\Plocha
2009-11-17 18:05:31 ----SHD---- C:\ProgramData\Oblíbené položky
2009-11-17 18:05:31 ----SHD---- C:\ProgramData\Nabídka Start
2009-11-17 18:05:31 ----SHD---- C:\ProgramData\Dokumenty
2009-11-17 18:05:31 ----SHD---- C:\ProgramData\Data aplikací
2009-11-17 18:03:43 ----A---- C:\Windows\system32\PerfStringBackup.INI
2009-11-17 17:27:49 ----SD---- C:\Users\Uzivatel\AppData\Roaming\Microsoft
2009-11-17 17:27:49 ----D---- C:\Users\Uzivatel\AppData\Roaming\Media Center Programs
2009-11-17 17:26:10 ----D---- C:\Windows\system32\RTCOM
2009-11-17 17:26:10 ----D---- C:\Program Files\Realtek
2009-11-17 17:26:05 ----D---- C:\Program Files\Synaptics
2009-11-17 17:23:58 ----D---- C:\Windows\Prefetch
2009-11-17 17:23:15 ----D---- C:\Windows\Panther
2009-11-17 17:12:35 ----HD---- C:\$WINDOWS.~Q
2009-11-17 17:09:52 ----HD---- C:\$INPLACE.~TR
2009-11-17 16:22:48 ----D---- C:\Windows\acerTemp
2009-11-17 16:20:34 ----D---- C:\ProgramData\InstallShield
2009-11-17 16:19:51 ----D---- C:\OEM
======List of files/folders modified in the last 1 months======
2009-12-05 19:28:33 ----D---- C:\Windows\Temp
2009-12-05 15:56:18 ----D---- C:\Windows\system32\config
2009-12-05 15:23:40 ----D---- C:\Windows\System32
2009-12-05 15:23:40 ----D---- C:\Windows
2009-12-05 15:20:47 ----D---- C:\Program Files\Common Files
2009-12-05 15:20:42 ----HD---- C:\ProgramData
2009-12-05 14:37:31 ----RD---- C:\Program Files
2009-12-05 14:25:55 ----SHD---- C:\System Volume Information
2009-12-05 01:42:18 ----D---- C:\Users\Uzivatel\AppData\Roaming\ICQ
2009-12-04 23:04:01 ----D---- C:\Users\Uzivatel\AppData\Roaming\Skype
2009-12-04 15:00:05 ----D---- C:\Windows\system32\drivers
2009-12-04 15:00:01 ----D---- C:\Programy
2009-12-03 13:47:28 ----SHD---- C:\Windows\Installer
2009-11-28 14:00:17 ----D---- C:\Windows\Tasks
2009-11-28 14:00:17 ----D---- C:\Windows\system32\wfp
2009-11-28 14:00:17 ----D---- C:\Windows\system32\DriverStore
2009-11-28 14:00:17 ----D---- C:\Windows\system32\catroot2
2009-11-28 14:00:16 ----D---- C:\Windows\inf
2009-11-28 14:00:10 ----D---- C:\Windows\system32\wbem
2009-11-28 14:00:10 ----D---- C:\Windows\registration
2009-11-28 14:00:09 ----D---- C:\Windows\system32\Tasks
2009-11-28 14:00:07 ----D---- C:\Windows\system32\catroot
2009-11-28 13:57:11 ----D---- C:\Windows\system32\LogFiles
2009-11-28 13:35:47 ----HD---- C:\Program Files\Temp
2009-11-26 00:13:37 ----D---- C:\Windows\system32\FxsTmp
2009-11-25 19:25:12 ----D---- C:\Windows\rescache
2009-11-25 19:00:51 ----D---- C:\Windows\winsxs
2009-11-25 19:00:49 ----D---- C:\Windows\system32\cs-CZ
2009-11-22 20:45:23 ----D---- C:\Windows\system32\wdi
2009-11-22 20:34:46 ----D---- C:\PerfLogs
2009-11-21 12:36:06 ----D---- C:\ProgramData\Adobe
2009-11-17 22:13:01 ----D---- C:\Windows\Microsoft.NET
2009-11-17 22:12:08 ----RSD---- C:\Windows\assembly
2009-11-17 21:46:43 ----SD---- C:\ProgramData\Microsoft
2009-11-17 21:33:14 ----D---- C:\Windows\AppPatch
2009-11-17 21:33:14 ----D---- C:\Program Files\Internet Explorer
2009-11-17 21:33:13 ----D---- C:\Windows\ehome
2009-11-17 21:33:13 ----D---- C:\Program Files\Windows Media Player
2009-11-17 21:33:12 ----D---- C:\Windows\system32\Boot
2009-11-17 18:30:14 ----D---- C:\Windows\system32\restore
2009-11-17 18:26:57 ----D---- C:\Windows\system32\zh-TW
2009-11-17 18:26:57 ----D---- C:\Windows\system32\zh-CN
2009-11-17 18:26:57 ----D---- C:\Windows\system32\sv-SE
2009-11-17 18:26:57 ----D---- C:\Windows\system32\ru-RU
2009-11-17 18:26:57 ----D---- C:\Windows\system32\pt-BR
2009-11-17 18:26:56 ----D---- C:\Windows\system32\pl-PL
2009-11-17 18:26:56 ----D---- C:\Windows\system32\nl-NL
2009-11-17 18:26:56 ----D---- C:\Windows\system32\nb-NO
2009-11-17 18:26:56 ----D---- C:\Windows\system32\ko-KR
2009-11-17 18:26:56 ----D---- C:\Windows\system32\ja-JP
2009-11-17 18:26:56 ----D---- C:\Windows\system32\it-IT
2009-11-17 18:26:56 ----D---- C:\Windows\system32\fr-FR
2009-11-17 18:26:56 ----D---- C:\Windows\system32\fi-FI
2009-11-17 18:26:56 ----D---- C:\Windows\system32\es-ES
2009-11-17 18:26:56 ----D---- C:\Windows\system32\en-US
2009-11-17 18:26:56 ----D---- C:\Windows\system32\de-DE
2009-11-17 18:26:56 ----D---- C:\Windows\system32\da-DK
2009-11-17 18:05:31 ----D---- C:\Windows\system32\Recovery
2009-11-17 18:05:31 ----D---- C:\Program Files\Windows NT
2009-11-17 17:59:45 ----D---- C:\Windows\SoftwareDistribution
2009-11-17 17:46:07 ----RSD---- C:\Windows\Media
2009-11-17 17:43:03 ----RD---- C:\Users
2009-11-17 17:42:05 ----D---- C:\Users\Uzivatel\AppData\Roaming\W Photo Studio Viewer
2009-11-17 17:42:01 ----D---- C:\Users\Uzivatel\AppData\Roaming\Nero
2009-11-17 17:42:00 ----D---- C:\Users\Uzivatel\AppData\Roaming\Mozilla
2009-11-17 17:41:51 ----D---- C:\Users\Uzivatel\AppData\Roaming\Macromedia
2009-11-17 17:41:51 ----D---- C:\Users\Uzivatel\AppData\Roaming\InstallShield
2009-11-17 17:41:51 ----D---- C:\Users\Uzivatel\AppData\Roaming\Identities
2009-11-17 17:41:49 ----D---- C:\Users\Uzivatel\AppData\Roaming\GHISLER
2009-11-17 17:41:49 ----D---- C:\Users\Uzivatel\AppData\Roaming\eSobi
2009-11-17 17:41:49 ----D---- C:\Users\Uzivatel\AppData\Roaming\ESET
2009-11-17 17:41:49 ----D---- C:\Users\Uzivatel\AppData\Roaming\CyberLink
2009-11-17 17:41:49 ----D---- C:\Users\Uzivatel\AppData\Roaming\Corel
2009-11-17 17:41:48 ----D---- C:\Users\Uzivatel\AppData\Roaming\AIMP
2009-11-17 17:41:48 ----D---- C:\Users\Uzivatel\AppData\Roaming\Adobe
2009-11-17 17:41:48 ----D---- C:\Users\Uzivatel\AppData\Roaming\Acer GameZone Console
2009-11-17 17:41:48 ----D---- C:\Users\Uzivatel\AppData\Roaming\Acer
2009-11-17 17:33:46 ----D---- C:\Windows\system32\CodeIntegrity
2009-11-17 17:33:24 ----D---- C:\Windows\WindowsMobile
2009-11-17 17:33:24 ----D---- C:\Windows\system32\XPSViewer
2009-11-17 17:33:24 ----D---- C:\Windows\system32\sysprep
2009-11-17 17:33:16 ----D---- C:\Windows\system32\RemInst
2009-11-17 17:33:15 ----D---- C:\Windows\system32\oobe
2009-11-17 17:33:15 ----D---- C:\Windows\system32\OEM
2009-11-17 17:33:07 ----D---- C:\Windows\system32\NDF
2009-11-17 17:33:07 ----D---- C:\Windows\system32\Macromed
2009-11-17 17:33:07 ----D---- C:\Windows\system32\Lang
2009-11-17 17:33:07 ----D---- C:\Windows\system32\EventProviders
2009-11-17 17:33:05 ----D---- C:\Windows\system32\Branding
2009-11-17 17:33:05 ----D---- C:\Windows\system32\Atheros_L1e
2009-11-17 17:33:02 ----D---- C:\Windows\system
2009-11-17 17:33:02 ----D---- C:\Windows\ShellNew
2009-11-17 17:33:01 ----D---- C:\Windows\Screensavers
2009-11-17 17:33:01 ----D---- C:\Windows\nap
2009-11-17 17:32:56 ----D---- C:\Windows\Logs
2009-11-17 17:32:56 ----D---- C:\Windows\Lan
2009-11-17 17:32:53 ----D---- C:\Windows\Help
2009-11-17 17:32:51 ----RSD---- C:\Windows\Fonts
2009-11-17 17:32:42 ----D---- C:\Windows\Downloaded Program Files
2009-11-17 17:32:42 ----D---- C:\Windows\DigitalLocker
2009-11-17 17:32:42 ----D---- C:\Windows\Corel
2009-11-17 17:32:41 ----D---- C:\Windows\Boot
2009-11-17 17:32:39 ----D---- C:\ProgramData\Skype
2009-11-17 17:32:38 ----D---- C:\ProgramData\SiteAdvisor
2009-11-17 17:32:38 ----D---- C:\ProgramData\Nero
2009-11-17 17:32:35 ----D---- C:\ProgramData\Microsoft Help
2009-11-17 17:32:25 ----D---- C:\ProgramData\McAfee
2009-11-17 17:32:25 ----D---- C:\ProgramData\Google
2009-11-17 17:32:25 ----D---- C:\ProgramData\eSobi
2009-11-17 17:32:24 ----D---- C:\ProgramData\EgisTec
2009-11-17 17:32:13 ----D---- C:\Program Files\Windows Photo Gallery
2009-11-17 17:32:13 ----D---- C:\Program Files\Windows Live SkyDrive
2009-11-17 17:32:13 ----D---- C:\Program Files\Windows Live
2009-11-17 17:32:11 ----D---- C:\Program Files\Windows Collaboration
2009-11-17 17:32:11 ----D---- C:\Program Files\Windows Calendar
2009-11-17 17:32:10 ----D---- C:\Program Files\WIDCOMM
2009-11-17 17:32:07 ----D---- C:\Program Files\QS
2009-11-17 17:32:06 ----D---- C:\Program Files\NewTech Infosystems
2009-11-17 17:32:05 ----D---- C:\Program Files\Nero
2009-11-17 17:31:22 ----D---- C:\Program Files\MSECache
2009-11-17 17:31:22 ----D---- C:\Program Files\MSBuild
2009-11-17 17:31:22 ----D---- C:\Program Files\Microsoft.NET
2009-11-17 17:31:22 ----D---- C:\Program Files\Microsoft Works
2009-11-17 17:31:12 ----D---- C:\Program Files\Microsoft Visual Studio 8
2009-11-17 17:31:06 ----D---- C:\Program Files\Microsoft Visual Studio
2009-11-17 17:31:06 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2009-11-17 17:31:05 ----D---- C:\Program Files\Microsoft Office Suite Activation Assistant
2009-11-17 17:30:58 ----D---- C:\Program Files\Microsoft Office
2009-11-17 17:30:16 ----D---- C:\Program Files\Microsoft Games
2009-11-17 17:30:15 ----D---- C:\Program Files\Microsoft
2009-11-17 17:30:14 ----D---- C:\Program Files\Intel
2009-11-17 17:30:12 ----HD---- C:\Program Files\InstallShield Installation Information
2009-11-17 17:30:09 ----D---- C:\Program Files\Convesoft
2009-11-17 17:30:08 ----D---- C:\Program Files\Common Files\Windows Live
2009-11-17 17:30:08 ----D---- C:\Program Files\Common Files\Oberon Media
2009-11-17 17:30:07 ----D---- C:\Program Files\Common Files\Nero
2009-11-17 17:30:03 ----D---- C:\Program Files\Common Files\microsoft shared
2009-11-17 17:29:52 ----D---- C:\Program Files\Common Files\InstallShield
2009-11-17 17:29:51 ----D---- C:\Program Files\Common Files\DESIGNER
2009-11-17 17:29:51 ----D---- C:\Program Files\Codec Pack - All In 1
2009-11-17 17:29:50 ----D---- C:\Program Files\ASUS
2009-11-17 17:29:46 ----D---- C:\Program Files\Acer Inc
2009-11-17 17:29:46 ----D---- C:\Program Files\Acer
2009-11-17 17:26:39 ----D---- C:\Windows\debug
2009-11-17 17:23:02 ----RASH---- C:\BOOTSECT.BAK
2009-11-17 17:23:01 ----SHD---- C:\Boot
2009-11-17 17:20:41 ----SD---- C:\Windows\system32\Microsoft