Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Relativně pomalé PC + jakýsi malware

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
Uživatelský avatar
Randaal
Návštěvník
Návštěvník
Příspěvky: 58
Registrován: 20 říj 2008 22:57
Bydliště: Praha

Relativně pomalé PC + jakýsi malware

#1 Příspěvek od Randaal »

Už delší dobu mě trápí práce s počítačem, trvá strašně dlouho, než naběhne, než vůbec spustí program atd. K nějaké akci mě konečně dokopal jakýsi Delta Search, který se mi objevil v prohlížeči. Přestože se mi běžně daří odklikávat doplňkové instalace k různým programům, tenhle mi nějak proklouzl mezi prsty a co jsem se dočetl, chtělo by to odstranit. Postup uvedený na netu mi ale nepomohl to odstranit řádně, takže bych to raději nechal na někom, kdo se vyzná a zároveň poradí, co ještě je potřeba změnit.

Za rady předem děkuji!


Logfile of random's system information tool 1.09 (written by random/random)
Run by Randaal at 2013-03-19 09:50:58
Microsoft Windows 7 Ultimate
System drive C: has 56 GB (37%) free of 153 GB
Total RAM: 4086 MB (27% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:51:33, on 19.3.2013
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v9.00 (9.00.8112.16470)
Boot mode: Normal

Running processes:
C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe
C:\Program Files (x86)\aWARemote Pro Server\aWARemote Pro Server.exe
C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe
C:\Program Files (x86)\Google\Google Calendar Sync\GoogleCalendarSync.exe
C:\Program Files (x86)\Winamp\winampa.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Users\Randaal\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
C:\Program Files (x86)\Winamp\winamp.exe
C:\Users\Randaal\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe
C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXE
C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Common Files\Adobe\dynamiclink\CS5\dynamiclinkmanager.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files\trend micro\Randaal.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: ContributeBHO Class - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Pomocná služba pro přihlášení k účtu Microsoft - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files (x86)\Winamp\winampa.exe"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [AdobeBridge] "C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe" -stealth
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Randaal\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
O4 - HKCU\..\Run: [Google Update] "C:\Users\Randaal\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-964138951-4102265170-513961189-1006\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-964138951-4102265170-513961189-1006\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - Startup: Dropbox.lnk = Randaal\AppData\Roaming\Dropbox\bin\Dropbox.exe
O4 - Startup: Facebook Messenger.lnk = Randaal\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe
O4 - Global Startup: aWARemote Pro Server.lnk = C:\Program Files (x86)\aWARemote Pro Server\aWARemote Pro Server.exe
O4 - Global Startup: Google Calendar Sync.lnk = C:\Program Files (x86)\Google\Google Calendar Sync\GoogleCalendarSync.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: c:\progra~3\browse~1\261095~1.52\{c16c1~1\browse~1.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BrowserProtect - Unknown owner - C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 12957 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\System32\spoolsv.exe
taskeng.exe {CE81DE5A-2AE9-40CF-AC7F-F995B4C8610F}
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe" /PROTECT
"C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe"
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
C:\Windows\system32\igfxsrvc.exe -Embedding
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-100dbfdb-e21e-4464-a8a5-9a5e259f99aa -SystemEventPortName:HostProcess-46ebe575-4a7e-46c0-88d1-2cee23cd7d67 -IoCancelEventPortName:HostProcess-2fe4630d-ed5b-4a50-b478-6fbcc31875cf -NonStateChangingEventPortName:HostProcess-728343ff-2307-4448-8c7d-be3b0dfbfcff -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:fcf863be-7d7c-4d69-a5f2-4d79f7cc47e9 -DeviceGroupId:WpdFsGroup
"C:\Program Files\Logitech\SetPointP\SetPoint.exe" /launchGaming
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\System32\StikyNot.exe"
KHALMNPR.EXE /API
"C:\Program Files (x86)\aWARemote Pro Server\aWARemote Pro Server.exe"
"C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe"
"C:\Program Files (x86)\Google\Google Calendar Sync\GoogleCalendarSync.exe"
"C:\Program Files (x86)\Winamp\winampa.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Users\Randaal\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
"C:\Program Files (x86)\TeamViewer\Version8\tv_w32.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\Version8\TeamViewer8_Logfile.log
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\TeamViewer\Version8\tv_x64.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\Version8\TeamViewer8_Logfile.log
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe" -auto -scheduled
"taskhost.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 2312
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\Winamp\winamp.exe"
"C:\Users\Randaal\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe"
"C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXE"
C:\Windows\explorer.exe /factory,{75dff2b7-6936-4c06-a8bb-676a7b00b24b} -Embedding
"C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe" "C:\Users\Randaal\Dropbox\Temp Markéta\DSC_0275.JPG"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -osint -url "file:///C:/users/randaal/appdata/local/temp/dbxl0wzxem.html#5ed5756c657ce0b0f81c39c35684ebc1272a2fb87aaebb4cf309fe15159ff549560e8a2823d1e7376cac7c"
"C:\Program Files\Adobe\Adobe After Effects CS5\Support Files\AfterFX.exe" "C:\Users\Randaal\Dropbox\Temp Markéta\Videa\After Effects Template\03\Dinare 02.aep"
"C:\Program Files (x86)\Common Files\Adobe\dynamiclink\CS5\dynamiclinkmanager.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=7364.14f56400.1114638311 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_180.dll" E7CF176E110C211B -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" 7364 "\\.\pipe\gecko-crash-server-pipe.7364" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe" --proxy-stub-channel=Flash18372.63F263D8.16182 --host-broker-channel=Flash18372.63F263D8.27160 --host-pid=18372 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_180.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe" --channel=20252.0043F924.1333680960 --proxy-stub-channel=Flash18372.63F263D8.16182 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_180.dll" --host-npapi-version=27 --type=renderer
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=7364.1a70b400.400515035 "C:\Users\Randaal\AppData\Local\Facebook\Messenger\2.1.4814.0\npFbDesktopPlugin.dll" E7CF176E110C211B -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" 7364 "\\.\pipe\gecko-crash-server-pipe.7364" plugin
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe433_ Global\UsGthrCtrlFltPipeMssGthrPipe433 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
C:\Windows\System32\svchost.exe -k WerSvcGroup
"C:\Users\Randaal\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\AutoKMS.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-964138951-4102265170-513961189-1001Core.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-964138951-4102265170-513961189-1001UA.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-964138951-4102265170-513961189-1001Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-964138951-4102265170-513961189-1001UA.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Randaal\AppData\Roaming\Mozilla\Firefox\Profiles\9diardfk.default

prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "extensions.enabledItems" - "{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23, {20a82645-c095-46ed-80e3-08825760534b}:1.2.1, jqs@sun.com:1.0, {D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}:0.9.8, {1de0de3c-0b5c-4f67-90c6-689623894991}:0.3, tabprogressbar@studio17.wordpress.com:0.6, {4BBDD651-70CF-4821-84F8-2B918CF89CA3}:6.3.3.2, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.16, redshift_V2@shift-themes.com:3.6"
prefs.js - "keyword.URL" - "http://search.yahoo.com/search?fr=green ... =937811&p="

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.6.602.180 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_180.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.15.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\SysWOW64\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.15.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3505.0912]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.6.602.180 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_6_602_180.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL

C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll

C:\Program Files (x86)\Mozilla Firefox\plugins\
np-mswmp.dll
nppdf32.dll
npwachk.dll
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

C:\Program Files (x86)\Mozilla Firefox\searchplugins\
babylon.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Users\Randaal\AppData\Roaming\Mozilla\Firefox\Profiles\9diardfk.default\extensions\
DeviceDetection@logitech.com
info@djzig.com
redshift_V2@shift-themes.com
tabprogressbar@studio17.wordpress.com
{1de0de3c-0b5c-4f67-90c6-689623894991}

C:\Users\Randaal\AppData\Roaming\Mozilla\Firefox\Profiles\9diardfk.default\searchplugins\
askcom.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-03-07 1497560]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2011-06-12 6721936]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 529664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-02-28 688528]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{074C1DC5-9320-4A9A-947D-C042949C6216}]
ContributeBHO Class - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll [2010-03-27 164312]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23 60568]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2011-06-12 4221328]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-03-03 461216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-03-07 1224568]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení k účtu Microsoft - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}]
Logitech SetPoint - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2012-11-04 366904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-03-03 170912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-03-07 1497560]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-03-07 1224568]
{517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - Contribute Toolbar - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll [2010-03-27 164312]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2009-09-23 165912]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2009-09-23 385560]
"Persistence"=C:\Windows\system32\igfxpers.exe [2009-09-23 363544]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
"EvtMgr6"=C:\Program Files\Logitech\SetPointP\SetPoint.exe [2012-11-04 2419512]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2012-09-20 1832760]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"AdobeBridge"=C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe [2010-03-09 11989960]
"Facebook Update"=C:\Users\Randaal\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-10-28 138096]
"RESTART_STICKY_NOTES"=C:\Windows\System32\StikyNot.exe [2009-07-14 427520]
"Google Update"=C:\Users\Randaal\AppData\Local\Google\Update\GoogleUpdate.exe [2012-11-19 116648]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-03-14 3672640]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
"WinampAgent"=C:\Program Files (x86)\Winamp\winampa.exe [2012-06-28 74752]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2013-03-07 4767304]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-12-03 946352]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
aWARemote Pro Server.lnk - C:\Program Files (x86)\aWARemote Pro Server\aWARemote Pro Server.exe
Google Calendar Sync.lnk - C:\Program Files (x86)\Google\Google Calendar Sync\GoogleCalendarSync.exe

C:\Users\Randaal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Randaal\AppData\Roaming\Dropbox\bin\Dropbox.exe
Facebook Messenger.lnk - C:\Users\Randaal\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2009-09-23 261120]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2012-10-01 68408]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2011-06-12 6721936]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2011-06-12 4221328]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2013-03-19 09:51:02 ----D---- C:\Program Files\trend micro
2013-03-19 09:50:58 ----D---- C:\rsit
2013-03-18 14:00:20 ----D---- C:\ProgramData\TurboFLOORPLAN Dum & Interiér & Zahrada PRO 15
2013-03-18 13:55:02 ----D---- C:\ProgramData\IMSIDesign
2013-03-18 13:51:19 ----D---- C:\Program Files (x86)\IMSIDesign
2013-03-17 21:00:32 ----D---- C:\Windows\cs
2013-03-17 20:57:46 ----D---- C:\Program Files (x86)\Windows Live
2013-03-17 20:55:05 ----N---- C:\Windows\SYSWOW64\XAudio2_7.dll
2013-03-17 20:55:05 ----N---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2013-03-17 20:55:05 ----A---- C:\Windows\system32\XAudio2_7.dll
2013-03-17 20:55:05 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2013-03-17 20:54:29 ----N---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2013-03-17 20:54:29 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2013-03-17 20:54:27 ----N---- C:\Windows\SYSWOW64\d3dx11_43.dll
2013-03-17 20:54:27 ----A---- C:\Windows\system32\d3dx11_43.dll
2013-03-17 20:50:25 ----A---- C:\Windows\SYSWOW64\UIRibbonRes.dll
2013-03-17 20:50:24 ----A---- C:\Windows\system32\UIRibbonRes.dll
2013-03-17 20:50:23 ----A---- C:\Windows\SYSWOW64\UIRibbon.dll
2013-03-17 20:50:23 ----A---- C:\Windows\system32\UIRibbon.dll
2013-03-17 11:12:17 ----D---- C:\Users\Randaal\AppData\Roaming\PACE Anti-Piracy
2013-03-17 11:12:17 ----D---- C:\ProgramData\PACE Anti-Piracy
2013-03-16 20:11:40 ----D---- C:\Windows\SYSWOW64\searchplugins
2013-03-16 20:11:40 ----D---- C:\Windows\SYSWOW64\Extensions
2013-03-15 13:28:49 ----D---- C:\ProgramData\BrowserProtect
2013-03-15 13:28:13 ----D---- C:\Users\Randaal\AppData\Roaming\Babylon
2013-03-15 13:28:13 ----D---- C:\ProgramData\Babylon
2013-03-15 13:26:24 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2013-03-15 13:26:17 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2013-03-15 11:07:50 ----A---- C:\Windows\system32\drivers\aswVmm.sys
2013-03-15 11:07:48 ----A---- C:\Windows\system32\drivers\aswRvrt.sys
2013-03-15 03:18:45 ----N---- C:\Windows\KMSEmulator.exe
2013-03-14 11:44:39 ----A---- C:\Windows\system32\drivers\usb8023.sys
2013-03-14 03:01:44 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-03-14 03:01:44 ----A---- C:\Windows\system32\mshtmled.dll
2013-03-14 03:01:43 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-03-14 03:01:41 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-03-14 03:01:39 ----A---- C:\Windows\SYSWOW64\url.dll
2013-03-14 03:01:39 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-03-14 03:01:39 ----A---- C:\Windows\system32\ieUnatt.exe
2013-03-14 03:01:39 ----A---- C:\Windows\system32\ieui.dll
2013-03-14 03:01:38 ----A---- C:\Windows\system32\url.dll
2013-03-14 03:01:37 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-03-14 03:01:37 ----A---- C:\Windows\system32\urlmon.dll
2013-03-14 03:01:36 ----A---- C:\Windows\system32\jscript9.dll
2013-03-14 03:01:35 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-03-14 03:01:35 ----A---- C:\Windows\system32\msfeeds.dll
2013-03-14 03:01:34 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-03-14 03:01:33 ----A---- C:\Windows\system32\wininet.dll
2013-03-14 03:01:32 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-03-14 03:01:32 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-03-14 03:01:32 ----A---- C:\Windows\system32\vbscript.dll
2013-03-14 03:01:32 ----A---- C:\Windows\system32\jsproxy.dll
2013-03-14 03:01:31 ----A---- C:\Windows\system32\jscript.dll
2013-03-14 03:01:30 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-03-14 03:01:30 ----A---- C:\Windows\system32\iertutil.dll
2013-03-14 03:01:28 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-03-14 03:01:22 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-03-14 03:01:17 ----A---- C:\Windows\system32\mshtml.dll
2013-03-14 03:01:14 ----A---- C:\Windows\system32\ieframe.dll
2013-03-14 03:01:13 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-03-13 18:50:24 ----D---- C:\Users\Randaal\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
2013-03-08 07:26:47 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-03-03 20:28:59 ----D---- C:\ProgramData\ALM
2013-03-03 19:46:52 ----N---- C:\Windows\system32\drivers\PxHlpa64.sys
2013-03-03 19:46:52 ----N---- C:\Windows\system32\drivers\cdralw2k.sys
2013-03-03 19:46:52 ----N---- C:\Windows\system32\drivers\cdr4_xp.sys
2013-03-03 19:46:50 ----D---- C:\Program Files (x86)\My Company Name
2013-03-03 15:59:25 ----N---- C:\Windows\SYSWOW64\javaws.exe
2013-03-03 15:59:12 ----N---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2013-03-03 15:59:11 ----N---- C:\Windows\SYSWOW64\javaw.exe
2013-03-03 15:59:11 ----N---- C:\Windows\SYSWOW64\java.exe
2013-03-03 15:58:57 ----D---- C:\Program Files (x86)\Java
2013-02-27 13:08:16 ----D---- C:\ProgramData\FLEXnet

======List of files/folders modified in the last 1 month======

2013-03-19 09:51:34 ----D---- C:\Windows\Prefetch
2013-03-19 09:51:29 ----D---- C:\Windows\Temp
2013-03-19 09:51:02 ----RD---- C:\Program Files
2013-03-19 09:31:49 ----D---- C:\Windows\system32\config
2013-03-19 07:18:09 ----D---- C:\Users\Randaal\AppData\Roaming\Dropbox
2013-03-18 14:00:20 ----HD---- C:\ProgramData
2013-03-18 14:00:05 ----SHD---- C:\Windows\Installer
2013-03-18 14:00:05 ----D---- C:\Program Files (x86)\InstallShield Installation Information
2013-03-18 13:56:41 ----D---- C:\Windows\SysWOW64
2013-03-18 13:51:19 ----RD---- C:\Program Files (x86)
2013-03-18 13:37:48 ----D---- C:\Users\Randaal\AppData\Roaming\Mozilla
2013-03-18 13:35:02 ----SHD---- C:\System Volume Information
2013-03-17 23:50:52 ----D---- C:\Windows\winsxs
2013-03-17 23:40:19 ----D---- C:\Program Files (x86)\Common Files
2013-03-17 21:00:46 ----RSD---- C:\Windows\assembly
2013-03-17 21:00:32 ----D---- C:\Windows
2013-03-17 20:59:42 ----D---- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2013-03-17 20:58:39 ----SD---- C:\ProgramData\Microsoft
2013-03-17 20:58:27 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-03-17 20:57:04 ----D---- C:\Windows\System32
2013-03-17 20:51:26 ----D---- C:\Windows\Logs
2013-03-17 20:50:51 ----D---- C:\Windows\system32\catroot
2013-03-17 20:46:20 ----D---- C:\Windows\system32\catroot2
2013-03-17 20:44:26 ----D---- C:\Windows\SoftwareDistribution
2013-03-17 10:56:57 ----D---- C:\Users\Randaal\AppData\Roaming\Adobe
2013-03-17 08:12:38 ----D---- C:\Windows\system32\Tasks
2013-03-17 08:12:08 ----D---- C:\ProgramData\NVIDIA
2013-03-16 13:41:19 ----D---- C:\Program Files (x86)\Adobe
2013-03-16 13:34:19 ----D---- C:\Windows\inf
2013-03-16 13:34:19 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-03-16 11:56:42 ----D---- C:\Users\Randaal\AppData\Roaming\BSplayer
2013-03-15 13:26:58 ----D---- C:\Windows\system32\drivers
2013-03-15 13:26:53 ----D---- C:\Windows\system32\DriverStore
2013-03-14 03:24:41 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-03-14 03:23:09 ----D---- C:\Windows\SYSWOW64\migration
2013-03-14 03:23:09 ----D---- C:\Windows\system32\migration
2013-03-14 03:23:09 ----D---- C:\Program Files\Internet Explorer
2013-03-14 03:23:09 ----D---- C:\Program Files (x86)\Internet Explorer
2013-03-14 03:05:06 ----D---- C:\Windows\debug
2013-03-14 03:04:49 ----A---- C:\Windows\system32\MRT.exe
2013-03-14 03:04:07 ----D---- C:\ProgramData\Microsoft Help
2013-03-13 17:32:07 ----N---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-03-12 23:52:20 ----D---- C:\Users\Randaal\AppData\Roaming\Winamp
2013-03-09 16:23:04 ----D---- C:\Users\Randaal\AppData\Roaming\FileZilla
2013-03-08 07:09:22 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2013-03-07 07:45:00 ----RSD---- C:\Windows\Fonts
2013-03-07 00:32:22 ----A---- C:\Windows\system32\aswBoot.exe
2013-03-06 17:19:42 ----D---- C:\ProgramData\CyberLink
2013-03-05 11:11:52 ----D---- C:\Users\Randaal\AppData\Roaming\Skype
2013-03-03 20:41:10 ----D---- C:\ProgramData\Adobe
2013-03-03 20:37:43 ----D---- C:\Program Files\Common Files\Adobe
2013-03-03 20:35:22 ----D---- C:\Program Files\Adobe
2013-03-03 15:59:00 ----N---- C:\Windows\SYSWOW64\npDeployJava1.dll
2013-03-03 15:59:00 ----N---- C:\Windows\SYSWOW64\deployJava1.dll
2013-03-03 09:55:03 ----D---- C:\Users\Randaal\AppData\Roaming\DAEMON Tools Lite
2013-02-25 08:31:42 ----D---- C:\ProgramData\Skype
2013-02-25 08:31:33 ----RD---- C:\Program Files (x86)\Skype

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2013-03-07 65336]
R0 PxHlpa64;PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [2009-07-09 55280]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 214096]
R0 SI3114r;SiI-3114 SATARaid Controller; C:\Windows\system32\DRIVERS\SI3114R.sys [2007-10-04 133672]
R0 SiFilter;SATALink driver accelerator; C:\Windows\system32\DRIVERS\SiWinAcc.sys [2007-10-04 22056]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2013-03-07 70992]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2013-03-07 1025808]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2013-03-07 377920]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2013-03-07 68920]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 514048]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-03-15 283200]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2013-03-07 33400]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2013-03-07 80816]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2009-09-23 6180832]
R3 LEqdUsb;Logitech SetPoint Unifying KMDF USB Filter; C:\Windows\system32\DRIVERS\LEqdUsb.Sys [2012-09-18 78648]
R3 LHidEqd;Logitech SetPoint Unifying KMDF HID Filter; C:\Windows\system32\DRIVERS\LHidEqd.Sys [2012-09-18 15160]
R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LHidFilt.Sys [2012-09-18 75064]
R3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouFilt.Sys [2012-09-18 61240]
R3 MarvinBus;Pinnacle Marvin Bus 64; C:\Windows\system32\DRIVERS\MarvinBus64.sys [2005-09-23 261120]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2005-03-29 8192]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-06-10 539240]
S3 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2013-03-07 178624]
S3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2009-11-12 84584]
S3 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2009-07-14 165376]
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 6656]
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 34896]
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 200272]
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 21760]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-12-18 65192]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-03-07 45248]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184]
R2 BrowserProtect;BrowserProtect; C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe [2013-02-21 2561488]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2012-10-02 891240]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-10-10 1258856]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-10-02 382824]
R2 TeamViewer8;TeamViewer 8; C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [2013-03-06 3560288]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 2292480]
R3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-11-19 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-01-08 161536]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-03-13 253656]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-11-19 116648]
S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe [2012-10-01 359224]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2011-06-12 31125880]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-03-08 115608]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-10-27 1255736]

-----------------EOF-----------------

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Relativně pomalé PC + jakýsi malware

#2 Příspěvek od Márty84 »

Zdravim :)

:!: Jestli bude Avast rvat, ze to chce otevrit v sandboxu, nedovolte to! Vyberte moznost Otevrit normalne
:arrow: Stahnete OTL http://oldtimer.geekstogo.com/OTL.exe a ulozte na plochu.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce
Oznacte polozky (dejte tam zatrzitka) Pro všechny uživatele, Kontrola na havěť "LOP" a Kontrola na havěť "Purity"
Do spodniho okna vlozte nasledujici text

Kód: Vybrat vše

CREATERESTOREPOINT

netsvcs
drivers32
savembr:0

/md5start
adp3132.sys
AGP440.sys
ahcix86.sys
ahcix86s.sys
atapi.sys
autochk.exe
cdrom.sys
cngaudit.dll
cryptsvc.dll
eNetHook.dll
eventlog.dll
explorer.exe
hal.dll
Changer.sys
iaStor.sys
iastorv.sys
IdeChnDr.sys
isapnp.sys
JakNDis.sys
KR10N.sys
logevent.dll
lsass.exe
mv61xx.sys
ndis.sys
netlogon.dll
ntelogon.dll
nvata.sys
nvatabus.sys
nvgts.sys
nvraid.sys
nvrd32.sys
nvstor.sys
nvstor32.sys
scecli.dll
sceclt.dll
smss.exe
svchost.exe
symmpi.sys
tcpip.sys
userinit.exe
vaxscsi.sys
viamraid.sys
viasraid.sys
ViPrt.sys
winlogon.exe
ws2_32.dll
/md5stop

%systemroot%*.* /U /s
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
%SYSTEMDRIVE%\*.exe

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c

type c:\boot.ini >> test.txt /c
%SystemDrive%\PhysicalMBR.bin /md5

*crack* /s
*keygen* /s
*loader* /s
*minodlogin* /s
*tnod* /s
*AutoKMS* /s
*activator* /s
*serial* /s
*w7lxe* /s
Kliknete na Prohledat
Po skenu se vytvori dva logy (OTL.Txt a Extras.txt), oba sem vlozte (kdyz budou dlouhe, rozdelte je do vice prispevku).
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Uživatelský avatar
Randaal
Návštěvník
Návštěvník
Příspěvky: 58
Registrován: 20 říj 2008 22:57
Bydliště: Praha

Re: Relativně pomalé PC + jakýsi malware

#3 Příspěvek od Randaal »

OTL logfile created on: 19.3.2013 13:03:12 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Randaal\Desktop
64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

3,99 Gb Total Physical Memory | 0,88 Gb Available Physical Memory | 22,03% Memory free
7,98 Gb Paging File | 3,74 Gb Available in Paging File | 46,89% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 148,95 Gb Total Space | 54,69 Gb Free Space | 36,72% Space Free | Partition Type: NTFS
Drive D: | 2328,64 Gb Total Space | 402,11 Gb Free Space | 17,27% Space Free | Partition Type: NTFS
Drive E: | 230,72 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS

Computer Name: RANDAAL-PC | User Name: Randaal | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2013.03.19 13:01:28 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Randaal\Desktop\OTL.exe
PRC - [2013.03.13 17:32:06 | 001,822,424 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe
PRC - [2013.03.08 07:27:24 | 000,917,400 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2013.03.07 21:32:38 | 000,248,240 | ---- | M] (Facebook) -- C:\Users\Randaal\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe
PRC - [2013.03.07 00:32:44 | 004,767,304 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2013.03.07 00:32:44 | 000,045,248 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2013.03.06 16:30:43 | 010,220,896 | ---- | M] (TeamViewer GmbH) -- C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe
PRC - [2013.03.06 16:30:43 | 003,560,288 | ---- | M] (TeamViewer GmbH) -- C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
PRC - [2013.03.06 16:22:26 | 000,185,696 | ---- | M] (TeamViewer GmbH) -- C:\Program Files (x86)\TeamViewer\Version8\tv_w32.exe
PRC - [2013.02.21 10:30:09 | 002,561,488 | ---- | M] () -- C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe
PRC - [2013.01.20 20:29:18 | 028,539,272 | ---- | M] (Dropbox, Inc.) -- C:\Users\Randaal\AppData\Roaming\Dropbox\bin\Dropbox.exe
PRC - [2012.12.18 20:08:28 | 000,065,192 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2012.10.10 21:23:42 | 001,258,856 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
PRC - [2012.10.02 13:15:38 | 000,382,824 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
PRC - [2012.07.03 09:04:58 | 000,507,312 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
PRC - [2012.06.28 16:41:58 | 002,206,888 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files (x86)\Winamp\winamp.exe
PRC - [2012.06.28 16:40:52 | 000,074,752 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files (x86)\Winamp\winampa.exe
PRC - [2012.06.15 18:54:38 | 003,905,024 | ---- | M] () -- C:\Program Files (x86)\aWARemote Pro Server\aWARemote Pro Server.exe
PRC - [2011.04.08 13:50:02 | 000,542,264 | ---- | M] (Google) -- C:\Program Files (x86)\Google\Google Calendar Sync\GoogleCalendarSync.exe
PRC - [2010.04.07 04:01:40 | 035,444,688 | ---- | M] (Adobe Systems, Incorporated) -- C:\Program Files (x86)\Adobe\Adobe Photoshop CS5\Photoshop.exe
PRC - [2010.03.09 04:28:26 | 011,989,960 | ---- | M] (Adobe Systems, Inc.) -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe
PRC - [2010.03.06 04:04:24 | 000,310,224 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
PRC - [2010.03.04 14:33:42 | 000,709,896 | ---- | M] (Adobe Systems Incorporated ) -- C:\Program Files (x86)\Common Files\Adobe\dynamiclink\CS5\dynamiclinkmanager.exe
PRC - [2010.02.22 04:57:06 | 000,406,992 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe


========== Modules (No Company Name) ==========

MOD - [2013.03.13 17:32:05 | 014,717,144 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_180.dll
MOD - [2013.03.08 07:27:22 | 003,069,848 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2013.03.07 21:32:40 | 021,014,960 | ---- | M] () -- C:\Users\Randaal\AppData\Local\Facebook\Messenger\2.1.4814.0\libcef.dll
MOD - [2013.03.07 21:32:38 | 000,292,272 | ---- | M] () -- C:\Users\Randaal\AppData\Local\Facebook\Messenger\2.1.4814.0\CefSharp.dll
MOD - [2013.03.07 21:32:38 | 000,179,632 | ---- | M] () -- C:\Users\Randaal\AppData\Local\Facebook\Messenger\2.1.4814.0\CefSharp.WinForms.dll
MOD - [2013.02.21 10:30:09 | 002,561,488 | ---- | M] () -- C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe
MOD - [2013.02.21 10:28:52 | 002,231,248 | ---- | M] () -- C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.dll
MOD - [2013.02.14 00:25:36 | 012,433,920 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\05682429807d34d6ff05a77ea153935f\System.Windows.Forms.ni.dll
MOD - [2013.02.13 23:57:40 | 013,199,360 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\39f4c7717661667c68f9af8c4f6402b9\System.Windows.Forms.ni.dll
MOD - [2013.01.10 03:44:25 | 006,618,624 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data\a3c4361b466461768f768f7671c4b6b6\System.Data.ni.dll
MOD - [2013.01.10 03:43:51 | 001,592,832 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\e2ee5d77ebe0bd025e7a7a317a43d677\System.Drawing.ni.dll
MOD - [2013.01.10 03:43:16 | 005,453,312 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\10aba2c167cc1119b80159fd9ac71ca8\System.Xml.ni.dll
MOD - [2013.01.10 03:43:09 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\96a3b737db1e72adaf32d2b350e50c23\System.Configuration.ni.dll
MOD - [2013.01.10 03:43:07 | 007,974,400 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\c54750e64ba10d0fb7b6a636fb3695ca\System.ni.dll
MOD - [2013.01.10 03:42:54 | 011,490,816 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\b0b8554c05f194f546a8ed531320760b\mscorlib.ni.dll
MOD - [2013.01.10 03:25:55 | 000,194,048 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\CustomMarshalers\14850aef08b8af036fd6f1e5b38a3719\CustomMarshalers.ni.dll
MOD - [2013.01.10 03:14:08 | 001,667,584 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\b573c6a62bb88df0ee2af59b6a8ca910\System.Drawing.ni.dll
MOD - [2013.01.10 03:14:04 | 007,069,696 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\27dcf04ed7a3506045597c02a5a1fc31\System.Core.ni.dll
MOD - [2013.01.10 03:13:57 | 009,094,656 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System\15872842e3e63ddf0f720f406706198e\System.ni.dll
MOD - [2013.01.10 03:13:50 | 014,412,800 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\3f95a6d480ed1ebe45cf27b770ba94ed\mscorlib.ni.dll
MOD - [2012.10.26 23:13:47 | 000,091,136 | ---- | M] () -- C:\Program Files (x86)\Winamp\System\xml.w5s
MOD - [2012.10.26 23:13:47 | 000,083,968 | ---- | M] () -- C:\Program Files (x86)\Winamp\tataki.dll
MOD - [2012.10.26 23:13:47 | 000,064,512 | ---- | M] () -- C:\Program Files (x86)\Winamp\zlib.dll
MOD - [2012.10.26 23:13:46 | 000,087,552 | ---- | M] () -- C:\Program Files (x86)\Winamp\System\png.w5s
MOD - [2012.10.26 23:13:46 | 000,084,480 | ---- | M] () -- C:\Program Files (x86)\Winamp\System\playlist.w5s
MOD - [2012.10.26 23:13:46 | 000,035,328 | ---- | M] () -- C:\Program Files (x86)\Winamp\System\timer.w5s
MOD - [2012.10.26 23:13:46 | 000,021,504 | ---- | M] () -- C:\Program Files (x86)\Winamp\System\tagz.w5s
MOD - [2012.10.26 23:13:46 | 000,013,824 | ---- | M] () -- C:\Program Files (x86)\Winamp\System\primo.w5s
MOD - [2012.10.26 23:13:44 | 000,623,616 | ---- | M] () -- C:\Program Files (x86)\Winamp\System\jnetlib.w5s
MOD - [2012.10.26 23:13:44 | 000,154,624 | ---- | M] () -- C:\Program Files (x86)\Winamp\System\jpeg.w5s
MOD - [2012.10.26 23:13:43 | 000,019,456 | ---- | M] () -- C:\Program Files (x86)\Winamp\System\gif.w5s
MOD - [2012.10.26 23:13:43 | 000,016,384 | ---- | M] () -- C:\Program Files (x86)\Winamp\System\gracenote.w5s
MOD - [2012.10.26 23:13:42 | 000,174,080 | ---- | M] () -- C:\Program Files (x86)\Winamp\System\auth.w5s
MOD - [2012.10.26 23:13:42 | 000,044,544 | ---- | M] () -- C:\Program Files (x86)\Winamp\System\devices.w5s
MOD - [2012.10.26 23:13:42 | 000,023,552 | ---- | M] () -- C:\Program Files (x86)\Winamp\System\albumart.w5s
MOD - [2012.10.26 23:13:42 | 000,019,456 | ---- | M] () -- C:\Program Files (x86)\Winamp\System\bmp.w5s
MOD - [2012.10.26 23:13:42 | 000,016,896 | ---- | M] () -- C:\Program Files (x86)\Winamp\System\dlmgr.w5s
MOD - [2012.10.26 23:13:42 | 000,014,336 | ---- | M] () -- C:\Program Files (x86)\Winamp\System\filereader.w5s
MOD - [2012.10.26 23:13:40 | 000,113,664 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\pmp_wifi.dll
MOD - [2012.10.26 23:13:40 | 000,053,760 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\pmp_usb.dll
MOD - [2012.10.26 23:13:39 | 000,170,496 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\pmp_ipod.dll
MOD - [2012.10.26 23:13:39 | 000,118,272 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\pmp_p4s.dll
MOD - [2012.10.26 23:13:39 | 000,060,928 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\pmp_android.dll
MOD - [2012.10.26 23:13:39 | 000,020,480 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\pmp_njb.dll
MOD - [2012.10.26 23:13:39 | 000,018,432 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\out_wave.dll
MOD - [2012.10.26 23:13:38 | 000,052,224 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\out_ds.dll
MOD - [2012.10.26 23:13:38 | 000,033,792 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\ml_rg.dll
MOD - [2012.10.26 23:13:38 | 000,032,256 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\ml_transcode.dll
MOD - [2012.10.26 23:13:38 | 000,022,528 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\out_disk.dll
MOD - [2012.10.26 23:13:37 | 000,240,640 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\ml_pmp.dll
MOD - [2012.10.26 23:13:37 | 000,124,928 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\ml_online.dll
MOD - [2012.10.26 23:13:37 | 000,084,480 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\ml_playlists.dll
MOD - [2012.10.26 23:13:37 | 000,083,456 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\ml_plg.dll
MOD - [2012.10.26 23:13:36 | 000,294,912 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\ml_local.dll
MOD - [2012.10.26 23:13:36 | 000,057,344 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\ml_impex.dll
MOD - [2012.10.26 23:13:35 | 000,201,728 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\ml_disc.dll
MOD - [2012.10.26 23:13:35 | 000,052,224 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\ml_history.dll
MOD - [2012.10.26 23:13:34 | 000,249,856 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\ml_devices.dll
MOD - [2012.10.26 23:13:34 | 000,028,672 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\ml_bookmarks.dll
MOD - [2012.10.26 23:13:34 | 000,028,672 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\ml_autotag.dll
MOD - [2012.10.26 23:13:33 | 000,511,488 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\lame_enc.dll
MOD - [2012.10.26 23:13:33 | 000,313,344 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\in_wm.dll
MOD - [2012.10.26 23:13:33 | 000,253,440 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\in_vorbis.dll
MOD - [2012.10.26 23:13:33 | 000,016,896 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\in_wave.dll
MOD - [2012.10.26 23:13:32 | 000,290,816 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\in_mp3.dll
MOD - [2012.10.26 23:13:32 | 000,075,264 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\in_nsv.dll
MOD - [2012.10.26 23:13:32 | 000,052,736 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\in_mp4.dll
MOD - [2012.10.26 23:13:32 | 000,023,552 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\in_swf.dll
MOD - [2012.10.26 23:13:31 | 000,164,864 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\in_mod.dll
MOD - [2012.10.26 23:13:31 | 000,109,568 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\in_midi.dll
MOD - [2012.10.26 23:13:31 | 000,049,152 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\in_mkv.dll
MOD - [2012.10.26 23:13:30 | 000,102,400 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\in_cdda.dll
MOD - [2012.10.26 23:13:30 | 000,072,192 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\in_dshow.dll
MOD - [2012.10.26 23:13:30 | 000,068,608 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\in_avi.dll
MOD - [2012.10.26 23:13:30 | 000,061,440 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\in_flac.dll
MOD - [2012.10.26 23:13:30 | 000,043,008 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\in_flv.dll
MOD - [2012.10.26 23:13:30 | 000,007,168 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\in_linein.dll
MOD - [2012.10.26 23:13:29 | 000,318,976 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\gen_ml.dll
MOD - [2012.10.26 23:13:29 | 000,057,344 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\gen_orgler.dll
MOD - [2012.10.26 23:13:29 | 000,025,600 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\gen_tray.dll
MOD - [2012.10.26 23:13:28 | 000,185,344 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\gen_jumpex.dll
MOD - [2012.10.26 23:13:27 | 000,028,160 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\gen_hotkeys.dll
MOD - [2012.10.26 23:13:26 | 001,737,728 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\gen_ff.dll
MOD - [2012.10.26 23:13:26 | 000,340,992 | ---- | M] () -- C:\Program Files (x86)\Winamp\Plugins\freeform\wacs\freetype\freetype.wac
MOD - [2012.10.26 23:13:21 | 000,417,280 | ---- | M] () -- C:\Program Files (x86)\Winamp\nsutil.dll
MOD - [2012.10.26 23:13:20 | 000,253,440 | ---- | M] () -- C:\Program Files (x86)\Winamp\libsndfile.dll
MOD - [2012.10.26 23:13:20 | 000,078,848 | ---- | M] () -- C:\Program Files (x86)\Winamp\nde.dll
MOD - [2012.10.26 23:13:17 | 000,136,192 | ---- | M] () -- C:\Program Files (x86)\Winamp\libFLAC.dll
MOD - [2012.06.15 18:54:38 | 003,905,024 | ---- | M] () -- C:\Program Files (x86)\aWARemote Pro Server\aWARemote Pro Server.exe
MOD - [2011.03.15 06:13:46 | 004,254,560 | ---- | M] () -- C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
MOD - [2010.04.07 02:34:46 | 000,033,280 | ---- | M] () -- C:\Program Files (x86)\Adobe\Adobe Photoshop CS5\QuickTimeGlue.dll
MOD - [2010.03.09 04:28:12 | 000,073,728 | ---- | M] () -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Symlib.dll
MOD - [2010.03.09 04:28:10 | 002,748,416 | ---- | M] () -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5\libmysqld.dll
MOD - [2010.02.28 02:55:42 | 001,040,736 | ---- | M] () -- C:\Program Files (x86)\Microsoft Office\Office14\ADDINS\UmOutlookAddin.dll
MOD - [2010.02.22 04:50:20 | 000,060,416 | ---- | M] () -- C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\zlib1.dll
MOD - [2009.07.14 16:17:14 | 000,200,704 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.resources\2.0.0.0_cs_b77a5c561934e089\System.resources.dll
MOD - [2009.07.14 16:17:12 | 000,303,104 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_cs_b77a5c561934e089\mscorlib.resources.dll
MOD - [2009.06.10 22:23:17 | 002,933,248 | ---- | M] () -- C:\Windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll


========== Services (SafeList) ==========

SRV:64bit: - [2013.03.07 00:32:44 | 000,045,248 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV:64bit: - [2012.10.01 08:22:52 | 000,359,224 | ---- | M] (Logitech, Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\LogiShrd\Bluetooth\LBTServ.exe -- (LBTServ)
SRV:64bit: - [2009.07.14 02:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009.07.14 02:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2013.03.13 17:32:10 | 000,253,656 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013.03.08 07:27:22 | 000,115,608 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013.03.06 16:30:43 | 003,560,288 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe -- (TeamViewer8)
SRV - [2013.02.21 10:30:09 | 002,561,488 | ---- | M] () [Auto | Running] -- C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe -- (BrowserProtect)
SRV - [2013.01.08 15:19:46 | 000,161,536 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2012.12.18 20:08:28 | 000,065,192 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2012.10.10 21:23:42 | 001,258,856 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
SRV - [2012.10.02 13:15:38 | 000,382,824 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2010.03.18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010.02.19 13:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
SRV - [2009.06.10 22:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2013.03.15 13:26:24 | 000,283,200 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV:64bit: - [2013.03.07 00:33:21 | 001,025,808 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswSnx.sys -- (aswSnx)
DRV:64bit: - [2013.03.07 00:33:21 | 000,377,920 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswSP.sys -- (aswSP)
DRV:64bit: - [2013.03.07 00:33:21 | 000,178,624 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\aswVmm.sys -- (aswVmm)
DRV:64bit: - [2013.03.07 00:33:21 | 000,070,992 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswRdr2.sys -- (aswRdr)
DRV:64bit: - [2013.03.07 00:33:21 | 000,068,920 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswTdi.sys -- (aswTdi)
DRV:64bit: - [2013.03.07 00:33:21 | 000,065,336 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswRvrt.sys -- (aswRvrt)
DRV:64bit: - [2013.03.07 00:33:20 | 000,080,816 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:64bit: - [2013.03.07 00:33:20 | 000,033,400 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV:64bit: - [2012.09.18 10:32:32 | 000,078,648 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LEqdUsb.sys -- (LEqdUsb)
DRV:64bit: - [2012.09.18 10:32:32 | 000,075,064 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LHidFilt.Sys -- (LHidFilt)
DRV:64bit: - [2012.09.18 10:32:32 | 000,061,240 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LMouFilt.Sys -- (LMouFilt)
DRV:64bit: - [2012.09.18 10:32:32 | 000,015,160 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LHidEqd.sys -- (LHidEqd)
DRV:64bit: - [2012.03.01 07:54:38 | 000,022,896 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2011.06.10 06:34:52 | 000,539,240 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2011.03.11 07:22:41 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011.03.11 07:22:40 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2009.11.12 05:14:28 | 000,084,584 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nvhda64v.sys -- (NVHDA)
DRV:64bit: - [2009.09.23 18:23:02 | 006,180,832 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2009.07.14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 02:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2009.07.14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.07.09 03:00:00 | 000,055,280 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:64bit: - [2009.06.10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2007.10.04 20:47:50 | 000,133,672 | ---- | M] (Silicon Image, Inc) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\SI3114r.sys -- (SI3114r)
DRV:64bit: - [2007.10.04 20:47:50 | 000,022,056 | ---- | M] (Silicon Image, Inc) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\SiWinAcc.sys -- (SiFilter)
DRV:64bit: - [2005.09.23 22:18:34 | 000,261,120 | ---- | M] (Pinnacle Systems GmbH) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\MarvinBus64.sys -- (MarvinBus)
DRV:64bit: - [2005.03.29 00:30:38 | 000,008,192 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ASACPI.sys -- (MTsensor)
DRV - [2009.07.14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local



IE - HKU\S-1-5-21-964138951-4102265170-513961189-1001\SOFTWARE\Microsoft\Internet Explorer\Main,bProtector Start Page = http://www.delta-search.com/?affID=1198 ... CB4EE5A8C6
IE - HKU\S-1-5-21-964138951-4102265170-513961189-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
IE - HKU\S-1-5-21-964138951-4102265170-513961189-1001\..\SearchScopes,bProtectorDefaultScope = {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
IE - HKU\S-1-5-21-964138951-4102265170-513961189-1001\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-964138951-4102265170-513961189-1001\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTer ... ORM=IE8SRC
IE - HKU\S-1-5-21-964138951-4102265170-513961189-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-964138951-4102265170-513961189-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local


========== FireFox ==========

FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: "Ask.com"
FF - prefs.js..browser.search.order.1: "Delta Search"
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&ilc=12&type=937811"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.startup.homepage: "http://www.seznam.cz/"
FF - prefs.js..extensions.enabledAddons: DeviceDetection%40logitech.com:1.23.0.5
FF - prefs.js..extensions.enabledAddons: tabprogressbar%40piro.sakura.ne.jp:1.0
FF - prefs.js..extensions.enabledAddons: %7B1de0de3c-0b5c-4f67-90c6-689623894991%7D:0.3
FF - prefs.js..extensions.enabledAddons: %7BD4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389%7D:0.9.10
FF - prefs.js..extensions.enabledAddons: %7BF003DA68-8256-4b37-A6C4-350FA04494DF%7D:6.5
FF - prefs.js..extensions.enabledAddons: %7B01A8CA0A-4C96-465b-A49B-65C46FAD54F9%7D:6.0
FF - prefs.js..extensions.enabledAddons: wrc%40avast.com:8.0.1483
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:19.0.2
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: {D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}:0.9.8
FF - prefs.js..extensions.enabledItems: {1de0de3c-0b5c-4f67-90c6-689623894991}:0.3
FF - prefs.js..extensions.enabledItems: tabprogressbar@studio17.wordpress.com:0.6
FF - prefs.js..extensions.enabledItems: {4BBDD651-70CF-4821-84F8-2B918CF89CA3}:6.3.3.2
FF - prefs.js..extensions.enabledItems: redshift_V2@shift-themes.com:3.6
FF - prefs.js..keyword.URL: "http://search.yahoo.com/search?fr=green ... =937811&p="
FF - user.js - File not found

FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_6_602_180.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_180.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.15.2: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.15.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3505.0912: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/GoogleTalkPlugin: C:\Users\Randaal\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/O1DPlugin: C:\Users\Randaal\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/O3DPlugin: C:\Users\Randaal\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll ()
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Randaal\AppData\Local\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Randaal\AppData\Local\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\facebook.com/fbDesktopPlugin: C:\Users\Randaal\AppData\Local\Facebook\Messenger\2.1.4814.0\npFbDesktopPlugin.dll (Facebook, Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2013.03.15 11:07:46 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{F003DA68-8256-4b37-A6C4-350FA04494DF}: C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2012.12.08 14:45:43 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{01A8CA0A-4C96-465b-A49B-65C46FAD54F9}: C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\FirefoxPlugin\{01A8CA0A-4C96-465b-A49B-65C46FAD54F9} [2013.03.03 20:01:21 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 19.0.2\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013.03.08 07:27:25 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 19.0.2\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013.03.08 07:26:58 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{0F827075-B026-42F3-885D-98981EE7B1AE}: C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\FirefoxExtension [2013.03.15 13:28:52 | 000,000,000 | ---D | M]

[2012.10.26 23:04:09 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Randaal\AppData\Roaming\Mozilla\Extensions
[2013.03.17 09:47:27 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Randaal\AppData\Roaming\Mozilla\Firefox\Profiles\9diardfk.default\extensions
[2012.10.26 23:06:51 | 000,000,000 | ---D | M] ("Tab Preview") -- C:\Users\Randaal\AppData\Roaming\Mozilla\Firefox\Profiles\9diardfk.default\extensions\{1de0de3c-0b5c-4f67-90c6-689623894991}
[2012.10.26 23:06:46 | 000,000,000 | ---D | M] (Разпознаване на устройство Logitech) -- C:\Users\Randaal\AppData\Roaming\Mozilla\Firefox\Profiles\9diardfk.default\extensions\DeviceDetection@logitech.com
[2013.02.05 10:22:20 | 000,000,000 | ---D | M] (LavaFox V2) -- C:\Users\Randaal\AppData\Roaming\Mozilla\Firefox\Profiles\9diardfk.default\extensions\info@djzig.com
[2012.10.26 23:06:51 | 000,000,000 | ---D | M] (RedShift V3.6) -- C:\Users\Randaal\AppData\Roaming\Mozilla\Firefox\Profiles\9diardfk.default\extensions\redshift_V2@shift-themes.com
[2012.10.26 23:06:51 | 000,000,000 | ---D | M] ("Tab Progress Bar") -- C:\Users\Randaal\AppData\Roaming\Mozilla\Firefox\Profiles\9diardfk.default\extensions\tabprogressbar@studio17.wordpress.com
[2012.04.06 18:47:49 | 000,033,157 | ---- | M] () (No name found) -- C:\Users\Randaal\AppData\Roaming\Mozilla\Firefox\Profiles\9diardfk.default\extensions\tabprogressbar@piro.sakura.ne.jp.xpi
[2013.02.14 14:30:30 | 000,817,280 | ---- | M] () (No name found) -- C:\Users\Randaal\AppData\Roaming\Mozilla\Firefox\Profiles\9diardfk.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2011.11.07 11:23:14 | 000,434,392 | ---- | M] () (No name found) -- C:\Users\Randaal\AppData\Roaming\Mozilla\Firefox\Profiles\9diardfk.default\extensions\{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}.xpi
[2012.08.09 13:13:12 | 000,002,299 | ---- | M] () -- C:\Users\Randaal\AppData\Roaming\Mozilla\Firefox\Profiles\9diardfk.default\searchplugins\askcom.xml
[2013.03.08 07:26:50 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2013.03.03 20:01:21 | 000,000,000 | ---D | M] (Adobe Contribute Toolbar) -- C:\PROGRAM FILES (X86)\ADOBE\ADOBE CONTRIBUTE CS5\PLUGINS\FIREFOXPLUGIN\{01A8CA0A-4C96-465B-A49B-65C46FAD54F9}
[2013.03.15 11:07:46 | 000,000,000 | ---D | M] (avast! WebRep) -- C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\WEBREP\FF
[2012.12.08 14:45:43 | 000,000,000 | ---D | M] (Logitech SetPoint) -- C:\PROGRAM FILES\LOGITECH\SETPOINTP\LOGISMOOTHFIREFOXEXT
[2013.03.08 07:27:24 | 000,263,064 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2012.06.28 16:42:00 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npwachk.dll
[2013.03.15 13:28:27 | 000,006,507 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\babylon.xml
[2013.02.27 09:14:13 | 000,002,421 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\heureka-cz.xml
[2013.02.27 09:14:13 | 000,000,851 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\jyxo-cz.xml
[2013.02.27 09:14:13 | 000,001,580 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\seznam-cz.xml
[2013.02.27 09:14:13 | 000,000,867 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\slunecnice-cz.xml
[2013.02.27 09:14:13 | 000,001,392 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-cz.xml

O1 HOSTS File: ([2013.03.17 08:20:48 | 000,001,853 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 activate.adobe.com
O1 - Hosts: 127.0.0.1 practivate.adobe.com
O1 - Hosts: 127.0.0.1 ereg.adobe.com
O1 - Hosts: 127.0.0.1 activate.wip3.adobe.com
O1 - Hosts: 127.0.0.1 wip3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-3.adobe.com
O1 - Hosts: 127.0.0.1 ereg.wip3.adobe.com
O1 - Hosts: 127.0.0.1 activate-sea.adobe.com
O1 - Hosts: 127.0.0.1 wwis-dubc1-vip60.adobe.com
O1 - Hosts: 127.0.0.1 activate-sjc0.adobe.com
O1 - Hosts: 127.0.0.1 adobe.activate.com
O1 - Hosts: 127.0.0.1 adobeereg.com
O1 - Hosts: 127.0.0.1 www.adobeereg.com
O1 - Hosts: 127.0.0.1 wwis-dubc1-vip60.adobe.com
O1 - Hosts: 127.0.0.1 125.252.224.90
O1 - Hosts: 127.0.0.1 125.252.224.91
O1 - Hosts: 127.0.0.1 hl2rcv.adobe.com
O2:64bit: - BHO: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O2 - BHO: (ContributeBHO Class) - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll (Adobe Systems, Inc.)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Logitech SetPoint) - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll (Logitech, Inc.)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3:64bit: - HKLM\..\Toolbar: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (Contribute Toolbar) - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll (Adobe Systems, Inc.)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O4:64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.)
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [Logitech Download Assistant] C:\Windows\SysNative\LogiLDA.dll (Logitech, Inc.)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4 - HKLM..\Run: [AdobeCS5ServiceManager] C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [WinampAgent] C:\Program Files (x86)\Winamp\winampa.exe (Nullsoft, Inc.)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-964138951-4102265170-513961189-1001..\Run: [AdobeBridge] C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe (Adobe Systems, Inc.)
O4 - HKU\S-1-5-21-964138951-4102265170-513961189-1001..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (Disc Soft Ltd)
O4 - HKU\S-1-5-21-964138951-4102265170-513961189-1001..\Run: [Facebook Update] C:\Users\Randaal\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.)
O4 - HKU\S-1-5-21-964138951-4102265170-513961189-1001..\Run: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe File not found
O4 - HKU\S-1-5-21-964138951-4102265170-513961189-1006..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-21-964138951-4102265170-513961189-1006..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - Startup: C:\Users\Randaal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\Randaal\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
O4 - Startup: C:\Users\Randaal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Messenger.lnk = C:\Users\Randaal\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe (Facebook)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{452BF2D2-CD36-485F-B224-3FFA057440D2}: DhcpNameServer = 192.168.2.1
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - AppInit_DLLs: (c:\progra~3\browse~1\261095~1.52\{c16c1~1\browse~1.dll) - c:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.dll ()
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O20:64bit: - Winlogon\Notify\LBTWlgn: DllName - (c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll) - c:\Program Files\Common Files\LogiShrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [1997.09.17 05:18:00 | 000,000,488 | R--- | M] () - E:\AUTORUN.INF -- [ CDFS ]
O33 - MountPoints2\{ee3926ff-8ed1-11e2-96ce-e0cb4ee5a8c6}\Shell - "" = AutoRun
O33 - MountPoints2\{ee3926ff-8ed1-11e2-96ce-e0cb4ee5a8c6}\Shell\AutoRun\command - "" = E:\AOESETUP.EXE -- [1997.09.17 05:18:00 | 000,271,360 | R--- | M] (Microsoft Corporation)
O33 - MountPoints2\{ee3926ff-8ed1-11e2-96ce-e0cb4ee5a8c6}\Shell\dxsetup\command - "" = E:\DIRECTX\DXSETUP.EXE -- [1997.07.14 17:00:00 | 000,088,576 | R--- | M] (Microsoft Corporation)
O33 - MountPoints2\{ee3926ff-8ed1-11e2-96ce-e0cb4ee5a8c6}\Shell\ie30\command - "" = E:\GOODIES\IE30295.EXE -- [1997.08.15 12:24:14 | 011,101,184 | R--- | M] (Microsoft Corporation)
O33 - MountPoints2\{ee3926ff-8ed1-11e2-96ce-e0cb4ee5a8c6}\Shell\ie30nt\command - "" = E:\GOODIES\IE302NT.EXE -- [1997.08.15 12:27:00 | 009,089,024 | R--- | M] (Microsoft Corporation)
O33 - MountPoints2\{ee3926ff-8ed1-11e2-96ce-e0cb4ee5a8c6}\Shell\msinfo\command - "" = E:\GOODIES\MSINFO\MSINFO32.EXE -- [1996.08.08 10:40:06 | 000,452,096 | R--- | M] (Microsoft Corporation)
O33 - MountPoints2\{ee3926ff-8ed1-11e2-96ce-e0cb4ee5a8c6}\Shell\setup\command - "" = E:\AOESETUP.EXE -- [1997.09.17 05:18:00 | 000,271,360 | R--- | M] (Microsoft Corporation)
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

NetSvcs:64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)

Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3codecp - C:\Windows\SysWow64\l3codecp.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.vorbis - C:\Windows\SysWow64\vorbis.acm (HMS http://hp.vector.co.jp/authors/VA012897/)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin

========== Files/Folders - Created Within 30 Days ==========

[2013.03.19 13:01:09 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Randaal\Desktop\OTL.exe
[2013.03.19 09:51:02 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2013.03.19 09:50:58 | 000,000,000 | ---D | C] -- C:\rsit
[2013.03.18 14:00:20 | 000,000,000 | ---D | C] -- C:\Users\Randaal\Documents\TurboFLOORPLAN Dum & Interiér & Zahrada PRO 15
[2013.03.18 14:00:20 | 000,000,000 | ---D | C] -- C:\ProgramData\TurboFLOORPLAN Dum & Interiér & Zahrada PRO 15
[2013.03.18 13:59:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IMSIDesign
[2013.03.18 13:55:02 | 000,000,000 | ---D | C] -- C:\ProgramData\IMSIDesign
[2013.03.18 13:51:19 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\IMSIDesign
[2013.03.17 21:00:32 | 000,000,000 | ---D | C] -- C:\Windows\cs
[2013.03.17 20:57:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Windows Live
[2013.03.17 20:55:05 | 000,527,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_7.dll
[2013.03.17 20:55:05 | 000,518,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_7.dll
[2013.03.17 20:55:05 | 000,077,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_5.dll
[2013.03.17 20:55:05 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_5.dll
[2013.03.17 20:54:29 | 002,526,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_43.dll
[2013.03.17 20:54:29 | 002,106,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_43.dll
[2013.03.17 20:54:27 | 000,276,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx11_43.dll
[2013.03.17 20:54:27 | 000,248,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx11_43.dll
[2013.03.17 20:50:25 | 001,164,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UIRibbonRes.dll
[2013.03.17 20:50:24 | 001,164,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UIRibbonRes.dll
[2013.03.17 20:50:23 | 003,860,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UIRibbon.dll
[2013.03.17 20:50:23 | 002,983,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UIRibbon.dll
[2013.03.17 20:42:42 | 000,000,000 | ---D | C] -- C:\Users\Randaal\AppData\Local\Windows Live
[2013.03.17 20:42:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Windows Live
[2013.03.17 20:41:23 | 001,243,136 | ---- | C] (společnost Microsoft Corporation) -- C:\Users\Randaal\Desktop\wlsetup-web.exe
[2013.03.17 11:24:13 | 000,000,000 | ---D | C] -- C:\Users\Randaal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
[2013.03.17 11:12:17 | 000,000,000 | ---D | C] -- C:\Users\Randaal\AppData\Roaming\PACE Anti-Piracy
[2013.03.17 11:12:17 | 000,000,000 | ---D | C] -- C:\Users\Randaal\AppData\Local\PACE Anti-Piracy
[2013.03.17 11:12:17 | 000,000,000 | ---D | C] -- C:\ProgramData\PACE Anti-Piracy
[2013.03.16 20:11:40 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\searchplugins
[2013.03.16 20:11:40 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Extensions
[2013.03.16 13:17:44 | 000,000,000 | ---D | C] -- C:\Users\Randaal\Desktop\8GB
[2013.03.15 13:28:57 | 000,000,000 | ---D | C] -- C:\Users\Randaal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BrowserProtect
[2013.03.15 13:28:49 | 000,000,000 | ---D | C] -- C:\ProgramData\BrowserProtect
[2013.03.15 13:28:13 | 000,000,000 | ---D | C] -- C:\Users\Randaal\AppData\Roaming\Babylon
[2013.03.15 13:28:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Babylon
[2013.03.15 13:27:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
[2013.03.15 13:26:24 | 000,283,200 | ---- | C] (DT Soft Ltd) -- C:\Windows\SysNative\drivers\dtsoftbus01.sys
[2013.03.15 13:26:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DAEMON Tools Lite
[2013.03.14 11:44:39 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usb8023.sys
[2013.03.14 03:01:44 | 000,096,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2013.03.14 03:01:44 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2013.03.14 03:01:41 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2013.03.14 03:01:39 | 000,248,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2013.03.14 03:01:39 | 000,231,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
[2013.03.14 03:01:39 | 000,173,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2013.03.14 03:01:39 | 000,142,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2013.03.14 03:01:38 | 000,237,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
[2013.03.14 03:01:36 | 002,312,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2013.03.14 03:01:36 | 001,494,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2013.03.14 03:01:36 | 001,427,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2013.03.14 03:01:35 | 000,729,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2013.03.14 03:01:32 | 000,717,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2013.03.14 03:01:32 | 000,599,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2013.03.14 03:01:31 | 000,816,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2013.03.13 18:50:24 | 000,000,000 | ---D | C] -- C:\Users\Randaal\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2013.03.10 19:19:48 | 000,000,000 | ---D | C] -- C:\Users\Randaal\Desktop\Maturitní ples
[2013.03.09 13:09:28 | 000,000,000 | ---D | C] -- C:\Users\Randaal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Facebook
[2013.03.08 07:26:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2013.03.03 20:28:59 | 000,000,000 | ---D | C] -- C:\ProgramData\ALM
[2013.03.03 20:09:01 | 000,000,000 | ---D | C] -- C:\Users\Randaal\Adobe Flash Builder 4
[2013.03.03 20:04:05 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Adobe
[2013.03.03 19:46:52 | 000,055,280 | ---- | C] (Sonic Solutions) -- C:\Windows\SysNative\drivers\PxHlpa64.sys
[2013.03.03 19:46:52 | 000,010,224 | ---- | C] (Sonic Solutions) -- C:\Windows\SysNative\drivers\cdralw2k.sys
[2013.03.03 19:46:52 | 000,010,224 | ---- | C] (Sonic Solutions) -- C:\Windows\SysNative\drivers\cdr4_xp.sys
[2013.03.03 19:46:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Sonic Shared
[2013.03.03 19:46:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\My Company Name
[2013.03.03 19:39:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Master Collection CS5
[2013.03.03 15:59:25 | 000,262,560 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\javaws.exe
[2013.03.03 15:59:12 | 000,095,648 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
[2013.03.03 15:59:11 | 000,174,496 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\javaw.exe
[2013.03.03 15:59:11 | 000,174,496 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\java.exe
[2013.03.03 15:58:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Java
[2013.03.03 09:31:48 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\DAEMON Tools Images
[2013.02.27 13:08:16 | 000,000,000 | ---D | C] -- C:\ProgramData\FLEXnet
[2013.02.25 08:31:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
[2013.02.25 08:31:33 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype
[1 C:\Users\Randaal\Desktop\*.tmp files -> C:\Users\Randaal\Desktop\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2013.03.19 13:08:33 | 000,000,954 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2013.03.19 13:07:57 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2013.03.19 13:07:05 | 000,000,936 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-964138951-4102265170-513961189-1001UA.job
[2013.03.19 13:07:03 | 000,000,914 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-964138951-4102265170-513961189-1001Core.job
[2013.03.19 13:01:28 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Randaal\Desktop\OTL.exe
[2013.03.19 12:37:08 | 000,000,970 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-964138951-4102265170-513961189-1001UA.job
[2013.03.19 12:29:11 | 000,000,914 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2013.03.19 10:33:59 | 002,806,443 | ---- | M] () -- C:\Users\Randaal\Desktop\Hypoteční banka.jpg
[2013.03.19 10:08:01 | 000,000,950 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2013.03.19 09:50:04 | 000,935,175 | ---- | M] () -- C:\Users\Randaal\Desktop\RSITx64.exe
[2013.03.19 08:37:02 | 000,000,918 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-964138951-4102265170-513961189-1001Core.job
[2013.03.18 18:01:59 | 000,003,992 | ---- | M] () -- C:\Users\Randaal\AppData\Local\SRDownloader.nast
[2013.03.18 15:10:29 | 000,093,560 | ---- | M] () -- C:\Users\Randaal\AppData\Local\SRDownloader.err
[2013.03.18 13:59:38 | 000,002,274 | ---- | M] () -- C:\Users\Public\Desktop\TurboFLOORPLAN Dum & Interiér & Zahrada PRO 15.lnk
[2013.03.18 13:25:43 | 633,357,479 | ---- | M] () -- C:\Users\Randaal\Desktop\TF.exe
[2013.03.17 20:59:44 | 000,000,020 | ---- | M] () -- C:\Windows\¸ř1
[2013.03.17 20:41:35 | 001,243,136 | ---- | M] (společnost Microsoft Corporation) -- C:\Users\Randaal\Desktop\wlsetup-web.exe
[2013.03.17 20:33:00 | 000,002,123 | ---- | M] () -- C:\Users\Randaal\Desktop\skladba.wlmp
[2013.03.17 10:33:35 | 000,074,616 | ---- | M] () -- C:\Users\Randaal\Desktop\untitled.flp
[2013.03.17 08:24:03 | 000,014,016 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013.03.17 08:24:03 | 000,014,016 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013.03.17 08:20:48 | 000,001,853 | ---- | M] () -- C:\Users\Randaal\Desktop\hosts
[2013.03.17 08:13:49 | 000,000,204 | ---- | M] () -- C:\Windows\tasks\AutoKMS.job
[2013.03.17 08:13:21 | 000,077,824 | ---- | M] () -- C:\Windows\KMSEmulator.exe
[2013.03.17 08:12:02 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013.03.17 08:11:55 | 3213,500,416 | -HS- | M] () -- C:\hiberfil.sys
[2013.03.16 13:34:19 | 001,478,586 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2013.03.16 13:34:19 | 000,634,308 | ---- | M] () -- C:\Windows\SysNative\perfh005.dat
[2013.03.16 13:34:19 | 000,618,714 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2013.03.16 13:34:19 | 000,122,898 | ---- | M] () -- C:\Windows\SysNative\perfc005.dat
[2013.03.16 13:34:19 | 000,107,034 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2013.03.15 13:26:24 | 000,283,200 | ---- | M] (DT Soft Ltd) -- C:\Windows\SysNative\drivers\dtsoftbus01.sys
[2013.03.15 11:29:12 | 000,366,867 | ---- | M] () -- C:\Users\Randaal\Desktop\537639_3985749620573_804444219_n.jpg
[2013.03.15 11:07:48 | 000,000,000 | ---- | M] () -- C:\Windows\SysWow64\config.nt
[2013.03.13 17:32:07 | 000,693,976 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2013.03.13 17:32:07 | 000,073,432 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2013.03.13 00:08:58 | 000,250,262 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_7007 – kopie.jpg
[2013.03.13 00:07:23 | 000,116,636 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_7007-–-kopie.jpg
[2013.03.13 00:07:23 | 000,001,480 | ---- | M] () -- C:\Users\Randaal\AppData\Local\Adobe Uložit pro web 12.0 Prefs
[2013.03.12 12:49:13 | 001,314,148 | ---- | M] () -- C:\Users\Randaal\Desktop\Strom.jpg
[2013.03.12 12:23:30 | 000,398,733 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_7007.jpg
[2013.03.11 15:50:07 | 001,165,440 | ---- | M] () -- C:\Users\Randaal\Desktop\130311_005.mp3
[2013.03.09 22:34:25 | 001,259,445 | ---- | M] () -- C:\Users\Randaal\Desktop\Vážka 2.jpg
[2013.03.09 22:32:24 | 002,095,041 | ---- | M] () -- C:\Users\Randaal\Desktop\Vážka.jpg
[2013.03.09 16:54:38 | 000,007,774 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6751.xmp
[2013.03.09 13:09:43 | 000,001,320 | ---- | M] () -- C:\Users\Randaal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Messenger.lnk
[2013.03.08 20:12:58 | 010,272,137 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6856.NEF
[2013.03.08 20:12:52 | 010,353,388 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6855.NEF
[2013.03.08 20:12:04 | 010,556,091 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6854.NEF
[2013.03.08 20:11:58 | 010,427,965 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6853.NEF
[2013.03.08 20:11:54 | 010,267,527 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6852.NEF
[2013.03.08 20:11:50 | 010,421,727 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6851.NEF
[2013.03.08 20:11:46 | 010,257,234 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6850.NEF
[2013.03.08 20:11:44 | 010,303,325 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6849.NEF
[2013.03.08 20:11:38 | 010,479,350 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6848.NEF
[2013.03.08 20:11:32 | 010,814,112 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6847.NEF
[2013.03.08 12:42:04 | 011,320,439 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6832.NEF
[2013.03.08 12:41:48 | 011,086,750 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6831.NEF
[2013.03.08 12:41:42 | 011,397,312 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6830.NEF
[2013.03.08 12:41:24 | 011,260,896 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6829.NEF
[2013.03.08 12:41:12 | 011,181,365 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6828.NEF
[2013.03.08 12:41:02 | 012,509,715 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6827.NEF
[2013.03.08 12:38:26 | 010,601,173 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6821.NEF
[2013.03.08 12:38:20 | 010,508,933 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6820.NEF
[2013.03.08 12:38:12 | 010,536,176 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6819.NEF
[2013.03.08 07:19:23 | 000,000,132 | ---- | M] () -- C:\Users\Randaal\AppData\Roaming\Adobe Formát PNG CS5 – předvolby
[2013.03.07 07:45:32 | 005,049,224 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2013.03.07 00:33:21 | 001,025,808 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSnx.sys
[2013.03.07 00:33:21 | 000,377,920 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSP.sys
[2013.03.07 00:33:21 | 000,178,624 | ---- | M] () -- C:\Windows\SysNative\drivers\aswVmm.sys
[2013.03.07 00:33:21 | 000,070,992 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr2.sys
[2013.03.07 00:33:21 | 000,068,920 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswTdi.sys
[2013.03.07 00:33:21 | 000,065,336 | ---- | M] () -- C:\Windows\SysNative\drivers\aswRvrt.sys
[2013.03.07 00:33:20 | 000,080,816 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
[2013.03.07 00:33:20 | 000,033,400 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswFsBlk.sys
[2013.03.07 00:32:51 | 000,041,664 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr
[2013.03.07 00:32:22 | 000,287,840 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2013.03.06 22:08:28 | 012,414,776 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6670.NEF
[2013.03.06 22:08:00 | 011,767,311 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6669.NEF
[2013.03.06 19:35:30 | 011,025,074 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6644.NEF
[2013.03.06 19:35:26 | 010,153,366 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6643.NEF
[2013.03.06 19:34:26 | 009,980,287 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6636.NEF
[2013.03.06 19:33:26 | 010,899,215 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6633.NEF
[2013.03.06 19:32:32 | 011,315,067 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6632.NEF
[2013.03.06 19:31:22 | 010,302,401 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6629.NEF
[2013.03.05 21:39:18 | 011,491,924 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6491.NEF
[2013.03.05 21:39:08 | 011,068,137 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6490.NEF
[2013.03.05 21:39:02 | 011,008,554 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6489.NEF
[2013.03.05 21:38:58 | 011,127,471 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6488.NEF
[2013.03.05 21:38:52 | 011,880,208 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6487.NEF
[2013.03.05 21:38:42 | 011,490,213 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6486.NEF
[2013.03.05 21:38:30 | 010,872,500 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6485.NEF
[2013.03.05 21:38:26 | 011,670,527 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6484.NEF
[2013.03.05 21:38:20 | 011,374,035 | ---- | M] () -- C:\Users\Randaal\Desktop\DSC_6483.NEF
[2013.03.05 11:14:31 | 000,114,282 | ---- | M] () -- C:\Users\Randaal\Desktop\123169801_0_1691-PŘ-2013-000007_.pdf
[2013.03.03 15:59:06 | 000,095,648 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
[2013.03.03 15:59:03 | 000,262,560 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\javaws.exe
[2013.03.03 15:59:03 | 000,174,496 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\javaw.exe
[2013.03.03 15:59:02 | 000,174,496 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\java.exe
[2013.03.03 15:59:00 | 000,861,088 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\npDeployJava1.dll
[2013.03.03 15:59:00 | 000,782,240 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\deployJava1.dll
[2013.03.03 11:56:45 | 001,441,792 | ---- | M] () -- C:\Users\Randaal\Documents\Database1.accdb
[1 C:\Users\Randaal\Desktop\*.tmp files -> C:\Users\Randaal\Desktop\*.tmp -> ]

========== Files Created - No Company Name ==========

[2013.03.19 13:07:57 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2013.03.19 10:33:55 | 002,806,443 | ---- | C] () -- C:\Users\Randaal\Desktop\Hypoteční banka.jpg
[2013.03.19 09:49:48 | 000,935,175 | ---- | C] () -- C:\Users\Randaal\Desktop\RSITx64.exe
[2013.03.18 18:01:35 | 000,001,261 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mocha for After Effects CS5.lnk
[2013.03.18 13:59:38 | 000,002,274 | ---- | C] () -- C:\Users\Public\Desktop\TurboFLOORPLAN Dum & Interiér & Zahrada PRO 15.lnk
[2013.03.18 13:06:41 | 633,357,479 | ---- | C] () -- C:\Users\Randaal\Desktop\TF.exe
[2013.03.17 21:00:12 | 000,001,305 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk
[2013.03.17 20:59:57 | 000,001,374 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk
[2013.03.17 20:59:42 | 000,000,020 | ---- | C] () -- C:\Windows\¸ř1
[2013.03.17 20:33:00 | 000,002,123 | ---- | C] () -- C:\Users\Randaal\Desktop\skladba.wlmp
[2013.03.17 10:33:34 | 000,074,616 | ---- | C] () -- C:\Users\Randaal\Desktop\untitled.flp
[2013.03.17 08:19:28 | 000,001,853 | ---- | C] () -- C:\Users\Randaal\Desktop\hosts
[2013.03.15 11:20:43 | 000,366,867 | ---- | C] () -- C:\Users\Randaal\Desktop\537639_3985749620573_804444219_n.jpg
[2013.03.15 11:07:50 | 000,178,624 | ---- | C] () -- C:\Windows\SysNative\drivers\aswVmm.sys
[2013.03.15 11:07:48 | 000,065,336 | ---- | C] () -- C:\Windows\SysNative\drivers\aswRvrt.sys
[2013.03.15 03:18:45 | 000,077,824 | ---- | C] () -- C:\Windows\KMSEmulator.exe
[2013.03.13 00:07:12 | 000,116,636 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_7007-–-kopie.jpg
[2013.03.13 00:04:33 | 000,250,262 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_7007 – kopie.jpg
[2013.03.12 12:49:13 | 001,314,148 | ---- | C] () -- C:\Users\Randaal\Desktop\Strom.jpg
[2013.03.12 12:23:27 | 000,398,733 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_7007.jpg
[2013.03.11 15:50:00 | 001,165,440 | ---- | C] () -- C:\Users\Randaal\Desktop\130311_005.mp3
[2013.03.09 22:34:22 | 001,259,445 | ---- | C] () -- C:\Users\Randaal\Desktop\Vážka 2.jpg
[2013.03.09 22:32:20 | 002,095,041 | ---- | C] () -- C:\Users\Randaal\Desktop\Vážka.jpg
[2013.03.09 16:54:37 | 000,007,774 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6751.xmp
[2013.03.08 20:12:58 | 010,272,137 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6856.NEF
[2013.03.08 20:12:52 | 010,353,388 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6855.NEF
[2013.03.08 20:12:04 | 010,556,091 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6854.NEF
[2013.03.08 20:11:58 | 010,427,965 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6853.NEF
[2013.03.08 20:11:54 | 010,267,527 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6852.NEF
[2013.03.08 20:11:50 | 010,421,727 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6851.NEF
[2013.03.08 20:11:46 | 010,257,234 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6850.NEF
[2013.03.08 20:11:44 | 010,303,325 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6849.NEF
[2013.03.08 20:11:38 | 010,479,350 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6848.NEF
[2013.03.08 20:11:32 | 010,814,112 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6847.NEF
[2013.03.08 12:42:04 | 011,320,439 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6832.NEF
[2013.03.08 12:41:48 | 011,086,750 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6831.NEF
[2013.03.08 12:41:42 | 011,397,312 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6830.NEF
[2013.03.08 12:41:24 | 011,260,896 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6829.NEF
[2013.03.08 12:41:12 | 011,181,365 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6828.NEF
[2013.03.08 12:41:02 | 012,509,715 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6827.NEF
[2013.03.08 12:38:26 | 010,601,173 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6821.NEF
[2013.03.08 12:38:20 | 010,508,933 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6820.NEF
[2013.03.08 12:38:12 | 010,536,176 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6819.NEF
[2013.03.06 22:08:28 | 012,414,776 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6670.NEF
[2013.03.06 22:08:00 | 011,767,311 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6669.NEF
[2013.03.06 19:35:30 | 011,025,074 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6644.NEF
[2013.03.06 19:35:26 | 010,153,366 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6643.NEF
[2013.03.06 19:34:26 | 009,980,287 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6636.NEF
[2013.03.06 19:33:26 | 010,899,215 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6633.NEF
[2013.03.06 19:32:32 | 011,315,067 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6632.NEF
[2013.03.06 19:31:22 | 010,302,401 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6629.NEF
[2013.03.06 10:10:33 | 000,001,320 | ---- | C] () -- C:\Users\Randaal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Messenger.lnk
[2013.03.05 21:39:18 | 011,491,924 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6491.NEF
[2013.03.05 21:39:08 | 011,068,137 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6490.NEF
[2013.03.05 21:39:02 | 011,008,554 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6489.NEF
[2013.03.05 21:38:58 | 011,127,471 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6488.NEF
[2013.03.05 21:38:52 | 011,880,208 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6487.NEF
[2013.03.05 21:38:42 | 011,490,213 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6486.NEF
[2013.03.05 21:38:30 | 010,872,500 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6485.NEF
[2013.03.05 21:38:26 | 011,670,527 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6484.NEF
[2013.03.05 21:38:20 | 011,374,035 | ---- | C] () -- C:\Users\Randaal\Desktop\DSC_6483.NEF
[2013.03.05 11:14:31 | 000,114,282 | ---- | C] () -- C:\Users\Randaal\Desktop\123169801_0_1691-PŘ-2013-000007_.pdf
[2012.12.29 14:27:23 | 001,495,094 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2012.12.26 09:52:40 | 000,001,480 | ---- | C] () -- C:\Users\Randaal\AppData\Local\Adobe Uložit pro web 12.0 Prefs
[2012.12.01 12:03:29 | 000,008,192 | ---- | C] () -- C:\Users\Randaal\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012.11.03 11:57:52 | 000,000,132 | ---- | C] () -- C:\Users\Randaal\AppData\Roaming\Adobe Formát GIF CS5 – předvolby
[2012.10.31 00:26:08 | 000,000,132 | ---- | C] () -- C:\Users\Randaal\AppData\Roaming\Adobe Formát PNG CS5 – předvolby
[2012.10.30 10:24:55 | 000,093,560 | ---- | C] () -- C:\Users\Randaal\AppData\Local\SRDownloader.err
[2012.10.30 09:51:15 | 000,003,992 | ---- | C] () -- C:\Users\Randaal\AppData\Local\SRDownloader.nast
[2012.10.27 01:42:00 | 000,818,169 | ---- | C] ( ) -- C:\Windows\SysWow64\msvfd32.exe
[2012.10.26 22:59:06 | 000,614,400 | ---- | C] () -- C:\Windows\AutoKMS.exe
[2012.10.26 22:59:06 | 000,000,135 | ---- | C] () -- C:\Windows\AutoKMS.ini

========== ZeroAccess Check ==========

[2009.07.14 05:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2012.06.09 06:30:56 | 014,165,504 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2012.06.09 05:46:56 | 012,868,608 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 02:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2009.07.14 02:15:20 | 000,605,696 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 02:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== LOP Check ==========

[2012.11.03 21:15:16 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\aWARemote
[2013.03.15 13:28:13 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\Babylon
[2013.03.16 11:56:42 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\BSplayer
[2012.10.26 23:19:10 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\BSplayer Pro
[2013.03.13 18:50:24 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2013.03.03 09:55:03 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\DAEMON Tools Lite
[2013.03.19 10:29:50 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\Dropbox
[2013.03.09 16:23:04 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\FileZilla
[2012.10.27 00:57:51 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\Leadertech
[2013.03.17 11:12:18 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\PACE Anti-Piracy
[2012.10.27 02:09:24 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\Scooter Software
[2012.10.27 01:41:10 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2013.01.06 17:45:52 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\TeamViewer

========== Purity Check ==========



========== Custom Scans ==========

< >
[2009.07.14 06:08:49 | 000,000,006 | -H-- | C] () -- C:\Windows\Tasks\SA.DAT
[2009.07.14 06:08:49 | 000,014,642 | ---- | C] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2012.10.26 22:59:07 | 000,000,204 | ---- | C] () -- C:\Windows\Tasks\AutoKMS.job
[2012.10.27 01:04:26 | 000,000,914 | ---- | C] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job
[2012.10.28 13:02:12 | 000,000,914 | ---- | C] () -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-964138951-4102265170-513961189-1001Core.job
[2012.10.28 13:02:13 | 000,000,936 | ---- | C] () -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-964138951-4102265170-513961189-1001UA.job
[2012.11.19 11:58:03 | 000,000,950 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2012.11.19 11:58:04 | 000,000,954 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
[2013.01.21 23:27:21 | 000,000,918 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-964138951-4102265170-513961189-1001Core.job
[2013.01.21 23:27:22 | 000,000,970 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-964138951-4102265170-513961189-1001UA.job

Uživatelský avatar
Randaal
Návštěvník
Návštěvník
Příspěvky: 58
Registrován: 20 říj 2008 22:57
Bydliště: Praha

Re: Relativně pomalé PC + jakýsi malware

#4 Příspěvek od Randaal »

< >

< MD5 for: AGP440.SYS >
[2009.07.14 02:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\drivers\AGP440.sys
[2009.07.14 02:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\DriverStore\FileRepository\machine.inf_amd64_neutral_9e6bb86c3b39a3e9\AGP440.sys
[2009.07.14 02:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7600.16385_none_1607dee2d861e021\AGP440.sys
[2009.07.14 02:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7601.17514_none_1838f2aad55063bb\AGP440.sys

< MD5 for: ATAPI.SYS >
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\drivers\atapi.sys
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_a69a58a4286f0b22\atapi.sys
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys

< MD5 for: AUTOCHK.EXE >
[2010.11.20 14:24:26 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_4019f2b8d860ad30\autochk.exe
[2009.07.14 02:14:12 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=41E4C8EBA464E7D6A5BA5E8827732AEB -- C:\Windows\SysWOW64\autochk.exe
[2009.07.14 02:14:12 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=41E4C8EBA464E7D6A5BA5E8827732AEB -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_e1ca436d2314b860\autochk.exe
[2009.07.14 02:38:56 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=8B7F8E882A649D81CEA1EDE9BBB68FFF -- C:\Windows\SysNative\autochk.exe
[2009.07.14 02:38:56 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=8B7F8E882A649D81CEA1EDE9BBB68FFF -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_3de8def0db722996\autochk.exe
[2010.11.20 13:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_e3fb573520033bfa\autochk.exe

< MD5 for: CDROM.SYS >
[2009.07.14 00:19:54 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=83D2D75E1EFB81B3450C18131443F7DB -- C:\Windows\SysNative\drivers\cdrom.sys
[2009.07.14 00:19:54 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=83D2D75E1EFB81B3450C18131443F7DB -- C:\Windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_neutral_8363d00ecae4322d\cdrom.sys
[2009.07.14 00:19:54 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=83D2D75E1EFB81B3450C18131443F7DB -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7600.16385_none_bb9e4d89bd7870f1\cdrom.sys
[2010.11.20 10:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\amd64_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_bdcf6151ba66f48b\cdrom.sys

< MD5 for: CNGAUDIT.DLL >
[2009.07.14 02:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\SysWOW64\cngaudit.dll
[2009.07.14 02:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_e83a414890e8132b\cngaudit.dll
[2009.07.14 02:40:20 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 -- C:\Windows\SysNative\cngaudit.dll
[2009.07.14 02:40:20 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 -- C:\Windows\winsxs\amd64_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_4458dccc49458461\cngaudit.dll

< MD5 for: CRYPTSVC.DLL >
[2012.06.02 05:52:32 | 000,142,336 | ---- | M] (Microsoft Corporation) MD5=063DD65889D21035311463337BD268E7 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22010_none_788c7cc71232cc19\cryptsvc.dll
[2010.11.20 14:25:59 | 000,177,152 | ---- | M] (Microsoft Corporation) MD5=15597883FBE9B056F276ADA3AD87D9AF -- C:\Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.17514_none_d4259ed3b16ed82a\cryptsvc.dll
[2012.06.02 06:32:25 | 000,183,808 | ---- | M] (Microsoft Corporation) MD5=456107D69D4EE850A559434F19EFEE65 -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7600.21225_none_d2beeccacd6d6c07\cryptsvc.dll
[2012.06.04 08:52:35 | 000,186,880 | ---- | M] (Microsoft Corporation) MD5=7E7D2DACF65D750D466F36BD3D09AE20 -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22010_none_d4ab184aca903d4f\cryptsvc.dll
[2009.07.14 02:40:24 | 000,175,104 | ---- | M] (Microsoft Corporation) MD5=8C57411B66282C01533CB776F98AD384 -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7600.16385_none_d1f48b0bb4805490\cryptsvc.dll
[2012.06.02 05:36:29 | 000,140,288 | ---- | M] (Microsoft Corporation) MD5=96C0E38905CFD788313BE8E11DAE3F2F -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.17856_none_77ddc9e5f93000db\cryptsvc.dll
[2012.06.02 06:41:28 | 000,184,320 | ---- | M] (Microsoft Corporation) MD5=9C01375BE382E834CC26D1B7EAF2C4FE -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.17856_none_d3fc6569b18d7211\cryptsvc.dll
[2009.07.14 02:15:07 | 000,135,680 | ---- | M] (Microsoft Corporation) MD5=9C231178CE4FB385F4B54B0A9080B8A4 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7600.16385_none_75d5ef87fc22e35a\cryptsvc.dll
[2010.11.20 13:18:24 | 000,136,192 | ---- | M] (Microsoft Corporation) MD5=A585BEBF7D054BD9618EDA0922D5484A -- C:\Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.17514_none_7807034ff91166f4\cryptsvc.dll
[2012.06.02 06:25:12 | 000,182,272 | ---- | M] (Microsoft Corporation) MD5=BAF19B633933A9FB4883D27D66C39E9A -- C:\Windows\SysNative\cryptsvc.dll
[2012.06.02 06:25:12 | 000,182,272 | ---- | M] (Microsoft Corporation) MD5=BAF19B633933A9FB4883D27D66C39E9A -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7600.17035_none_d22a7e2db457eb07\cryptsvc.dll
[2012.06.02 05:41:59 | 000,141,312 | ---- | M] (Microsoft Corporation) MD5=EA8C26ECF1656D9647EF044F115EC6DA -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7600.21225_none_76a05147150ffad1\cryptsvc.dll
[2012.06.02 05:45:21 | 000,139,264 | ---- | M] (Microsoft Corporation) MD5=F2FDE6C8DBAAD44CC58D1E07E4AF4EED -- C:\Windows\SysWOW64\cryptsvc.dll
[2012.06.02 05:45:21 | 000,139,264 | ---- | M] (Microsoft Corporation) MD5=F2FDE6C8DBAAD44CC58D1E07E4AF4EED -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7600.17035_none_760be2a9fbfa79d1\cryptsvc.dll

< MD5 for: EXPLORER.EXE >
[2011.02.26 07:23:14 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=0862495E0C825893DB75EF44FAEA8E93 -- C:\Windows\explorer.exe
[2011.02.26 07:23:14 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=0862495E0C825893DB75EF44FAEA8E93 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_adc24107935a7e25\explorer.exe
[2011.02.26 06:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_ba87e574ddfe652d\explorer.exe
[2009.07.14 02:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_b7fe430bc7ce3761\explorer.exe
[2011.02.26 06:51:13 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=255CF508D7CFB10E0794D6AC93280BD8 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_b8ce9756e0b786a4\explorer.exe
[2009.10.31 06:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_b819b343c7ba6202\explorer.exe
[2011.02.26 06:33:07 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=2AF58D15EDC06EC6FDACCE1F19482BBF -- C:\Windows\SysWOW64\explorer.exe
[2011.02.26 06:33:07 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=2AF58D15EDC06EC6FDACCE1F19482BBF -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_b816eb59c7bb4020\explorer.exe
[2011.02.25 07:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_afa79dc39081d0ba\explorer.exe
[2011.02.26 07:14:34 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=3B69712041F3D63605529BD66DC00C48 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_b0333b22a99da332\explorer.exe
[2010.11.20 13:17:09 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe
[2009.08.03 07:19:07 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=700073016DAC1C3D2E7E2CE4223334B6 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_ae84b558ac4eb41c\explorer.exe
[2011.02.25 06:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_b9fc4815c4e292b5\explorer.exe
[2009.10.31 07:34:59 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=9AAAEC8DAC27AA17B053E6352AD233AE -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_adc508f19359a007\explorer.exe
[2009.08.03 06:49:47 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=9FF6C4C91A3711C0A3B18F87B08B518D -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_b8d95faae0af7617\explorer.exe
[2010.11.20 14:24:45 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe
[2009.10.31 07:38:38 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=B8EC4BD49CE8F6FC457721BFC210B67F -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_ae46d6aeac7ca7c7\explorer.exe
[2009.08.03 06:35:50 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=B95EEB0F4E5EFBF1038A35B3351CF047 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_b853c407c78e3ba9\explorer.exe
[2009.07.14 02:39:10 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=C235A51CB740E45FFA0EBFB9BAFCDA64 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_ada998b9936d7566\explorer.exe
[2009.10.31 07:00:51 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=C76153C7ECA00FA852BB0C193378F917 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_b89b8100e0dd69c2\explorer.exe
[2011.02.26 07:26:45 | 002,870,784 | ---- | M] (Microsoft Corporation) MD5=E38899074D4951D31B4040E994DD7C8D -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_ae79ed04ac56c4a9\explorer.exe
[2009.08.03 07:17:37 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=F170B4A061C9E026437B193B4D571799 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_adff19b5932d79ae\explorer.exe

< MD5 for: HAL.DLL >
[2009.07.14 02:47:48 | 000,263,232 | ---- | M] (Microsoft Corporation) MD5=C0A6F6E05E14FBCAEDE7796C8590B7AC -- C:\Windows\SysNative\hal.dll
[2009.07.14 02:47:48 | 000,263,232 | ---- | M] (Microsoft Corporation) MD5=C0A6F6E05E14FBCAEDE7796C8590B7AC -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7600.16385_none_071de44b735b3dfc\hal.dll
[2010.11.20 14:33:34 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7601.17514_none_094ef8137049c196\hal.dll

< MD5 for: IASTORV.SYS >
[2010.11.20 14:33:38 | 000,410,496 | ---- | M] (Intel Corporation) MD5=3DF4395A7CF8B7A72A5F4606366B8C2D -- C:\Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\amd64_iastorv.inf_31bf3856ad364e35_6.1.7601.17514_none_0d3757e79e6784d0\iaStorV.sys
[2011.03.11 07:19:16 | 000,410,496 | ---- | M] (Intel Corporation) MD5=5B3DE7208E5000D5B451B9D290D2579C -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7601.21680_none_0d714416b7c182d5\iaStorV.sys
[2011.03.11 07:41:26 | 000,410,496 | ---- | M] (Intel Corporation) MD5=AAAF44DB3BD0B9D1FB6969B23ECC8366 -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7601.17577_none_0cf9793d9e95787b\iaStorV.sys
[2011.03.11 07:23:00 | 000,410,496 | ---- | M] (Intel Corporation) MD5=B75E45C564E944A2657167D197AB29DA -- C:\Windows\SysNative\drivers\iaStorV.sys
[2011.03.11 07:23:00 | 000,410,496 | ---- | M] (Intel Corporation) MD5=B75E45C564E944A2657167D197AB29DA -- C:\Windows\SysNative\DriverStore\FileRepository\iastorv.inf_amd64_neutral_0033117673c16921\iaStorV.sys
[2011.03.11 07:23:00 | 000,410,496 | ---- | M] (Intel Corporation) MD5=B75E45C564E944A2657167D197AB29DA -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7600.16778_none_0b141c81a16e25e6\iaStorV.sys
[2011.03.11 07:25:49 | 000,410,496 | ---- | M] (Intel Corporation) MD5=BFDC9D75698800CFE4D1698BF2750EA2 -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7600.20921_none_0bccc8c8ba6985c1\iaStorV.sys
[2009.07.14 02:48:04 | 000,410,688 | ---- | M] (Intel Corporation) MD5=D83EFB6FD45DF9D55E9A1AFC63640D50 -- C:\Windows\SysNative\DriverStore\FileRepository\iastorv.inf_amd64_neutral_18cccb83b34e1453\iaStorV.sys
[2009.07.14 02:48:04 | 000,410,688 | ---- | M] (Intel Corporation) MD5=D83EFB6FD45DF9D55E9A1AFC63640D50 -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7600.16385_none_0b06441fa1790136\iaStorV.sys

< MD5 for: ISAPNP.SYS >
[2009.07.14 02:48:04 | 000,020,544 | ---- | M] (Microsoft Corporation) MD5=2F7B28DC3E1183E5EB418DF55C204F38 -- C:\Windows\SysNative\drivers\isapnp.sys
[2009.07.14 02:48:04 | 000,020,544 | ---- | M] (Microsoft Corporation) MD5=2F7B28DC3E1183E5EB418DF55C204F38 -- C:\Windows\SysNative\DriverStore\FileRepository\machine.inf_amd64_neutral_9e6bb86c3b39a3e9\isapnp.sys
[2009.07.14 02:48:04 | 000,020,544 | ---- | M] (Microsoft Corporation) MD5=2F7B28DC3E1183E5EB418DF55C204F38 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7600.16385_none_1607dee2d861e021\isapnp.sys
[2009.07.14 02:48:04 | 000,020,544 | ---- | M] (Microsoft Corporation) MD5=2F7B28DC3E1183E5EB418DF55C204F38 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7601.17514_none_1838f2aad55063bb\isapnp.sys

< MD5 for: LSASS.EXE >
[2009.07.14 02:39:16 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=0793F40B9B8A1BDD266296409DBD91EA -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7600.16385_none_023f7c69767c3edd\lsass.exe
[2009.07.14 02:39:16 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=0793F40B9B8A1BDD266296409DBD91EA -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7600.16484_none_023e7e05767d22ad\lsass.exe
[2009.07.14 02:39:16 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=0793F40B9B8A1BDD266296409DBD91EA -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7600.20594_none_02bd4ae48fa2de68\lsass.exe
[2009.07.14 02:39:16 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=0793F40B9B8A1BDD266296409DBD91EA -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.17514_none_04709031736ac277\lsass.exe
[2011.11.17 07:20:34 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=0A10B74FBB437FF9A23F1D5DE4446A83 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.21861_none_04c1204e8cb39c3f\lsass.exe
[2011.11.17 08:05:16 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=156F6159457D0AA7E59B62681B56EB90 -- C:\Windows\SysNative\lsass.exe
[2011.11.17 08:05:16 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=156F6159457D0AA7E59B62681B56EB90 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7600.16915_none_028b374176436a30\lsass.exe
[2011.11.17 08:05:16 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=156F6159457D0AA7E59B62681B56EB90 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7600.17035_none_02756f8b7653d554\lsass.exe
[2012.06.04 08:51:10 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=79C908CAA6F43021EB05F4C733A927D1 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.22010_none_04f609a88c8c279c\lsass.exe
[2012.06.02 06:30:31 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=BF63CE11A25F3509129888710D5111FC -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7600.21225_none_0309de288f695654\lsass.exe
[2011.11.17 07:33:55 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=C118A82CD78818C29AB228366EBF81C3 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.17725_none_0466c45b7371f20d\lsass.exe
[2011.11.17 07:33:55 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=C118A82CD78818C29AB228366EBF81C3 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.17856_none_044756c773895c5e\lsass.exe
[2011.11.17 07:42:52 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=D21BD47E528CD62E79311FB5DF0150E6 -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7600.21092_none_02bb2a0a8fa4d398\lsass.exe

< MD5 for: NDIS.SYS >
[2010.11.20 14:33:45 | 000,951,680 | ---- | M] (Microsoft Corporation) MD5=79B47FD40D9A817E932F9D26FAC0A81C -- C:\Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7601.17514_none_05ed313632ae9759\ndis.sys
[2009.07.14 02:48:27 | 000,947,776 | ---- | M] (Microsoft Corporation) MD5=CAD515DBD07D082BB317D9928CE8962C -- C:\Windows\SysNative\drivers\ndis.sys
[2009.07.14 02:48:27 | 000,947,776 | ---- | M] (Microsoft Corporation) MD5=CAD515DBD07D082BB317D9928CE8962C -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7600.16385_none_03bc1d6e35c013bf\ndis.sys

< MD5 for: NETLOGON.DLL >
[2009.07.14 02:41:52 | 000,692,736 | ---- | M] (Microsoft Corporation) MD5=956D030D375F207B22FB111E06EF9C35 -- C:\Windows\SysNative\netlogon.dll
[2009.07.14 02:41:52 | 000,692,736 | ---- | M] (Microsoft Corporation) MD5=956D030D375F207B22FB111E06EF9C35 -- C:\Windows\winsxs\amd64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7600.16385_none_59aca8ea51aaeefe\netlogon.dll
[2010.11.20 14:27:22 | 000,695,808 | ---- | M] (Microsoft Corporation) MD5=AA339DD8BB128EF66660DFBBB59043D3 -- C:\Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\amd64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7601.17514_none_5bddbcb24e997298\netlogon.dll
[2010.11.20 13:20:28 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=C1809B9907ADEDAF16F50C894100883B -- C:\Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\wow64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7601.17514_none_6632670482fa3493\netlogon.dll
[2009.07.14 02:16:02 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=EAA75D9000B71F10EEC04D2AE6C60E81 -- C:\Windows\SysWOW64\netlogon.dll
[2009.07.14 02:16:02 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=EAA75D9000B71F10EEC04D2AE6C60E81 -- C:\Windows\winsxs\wow64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7600.16385_none_6401533c860bb0f9\netlogon.dll

< MD5 for: NVRAID.SYS >
[2011.03.11 07:41:34 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=0A92CB65770442ED0DC44834632F66AD -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.17577_none_97c2e9ecd5cc2253\nvraid.sys
[2009.07.14 02:48:27 | 000,149,056 | ---- | M] (NVIDIA Corporation) MD5=3E38712941E9BB4DDBEE00AFFE3FED3D -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_5bde3fe2945bce9e\nvraid.sys
[2009.07.14 02:48:27 | 000,149,056 | ---- | M] (NVIDIA Corporation) MD5=3E38712941E9BB4DDBEE00AFFE3FED3D -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7600.16385_none_95cfb4ced8afab0e\nvraid.sys
[2010.11.20 14:33:48 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=5D9FD91F3D38DC9DA01E3CB5FA89CD48 -- C:\Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.17514_none_9800c896d59e2ea8\nvraid.sys
[2011.03.11 07:19:21 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=666CA16F17914C1CD3616CF16DE0A6EA -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.21680_none_983ab4c5eef82cad\nvraid.sys
[2011.03.11 07:23:06 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=A4D9C9A608A97F59307C2F2600EDC6A4 -- C:\Windows\SysNative\drivers\nvraid.sys
[2011.03.11 07:23:06 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=A4D9C9A608A97F59307C2F2600EDC6A4 -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_38e464dbe521cc7f\nvraid.sys
[2011.03.11 07:23:06 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=A4D9C9A608A97F59307C2F2600EDC6A4 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7600.16778_none_95dd8d30d8a4cfbe\nvraid.sys
[2011.03.11 07:25:53 | 000,148,352 | ---- | M] (NVIDIA Corporation) MD5=A5C82EB2F72AA004887F90B84A771F73 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7600.20921_none_96963977f1a02f99\nvraid.sys

< MD5 for: NVSTOR.SYS >
[2009.07.14 02:45:45 | 000,167,488 | ---- | M] (NVIDIA Corporation) MD5=477DC4D6DEB99BE37084C9AC6D013DA1 -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_5bde3fe2945bce9e\nvstor.sys
[2009.07.14 02:45:45 | 000,167,488 | ---- | M] (NVIDIA Corporation) MD5=477DC4D6DEB99BE37084C9AC6D013DA1 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7600.16385_none_95cfb4ced8afab0e\nvstor.sys
[2011.03.11 07:23:06 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=6C1D5F70E7A6A3FD1C90D840EDC048B9 -- C:\Windows\SysNative\drivers\nvstor.sys
[2011.03.11 07:23:06 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=6C1D5F70E7A6A3FD1C90D840EDC048B9 -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_38e464dbe521cc7f\nvstor.sys
[2011.03.11 07:23:06 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=6C1D5F70E7A6A3FD1C90D840EDC048B9 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7600.16778_none_95dd8d30d8a4cfbe\nvstor.sys
[2011.03.11 07:25:53 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=AE274836BA56518E279087363A781214 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7600.20921_none_96963977f1a02f99\nvstor.sys
[2011.03.11 07:19:21 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=D23C7E8566DA2B8A7C0DBBB761D54888 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.21680_none_983ab4c5eef82cad\nvstor.sys
[2011.03.11 07:41:34 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=DAB0E87525C10052BF65F06152F37E4A -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.17577_none_97c2e9ecd5cc2253\nvstor.sys
[2010.11.20 14:33:48 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=F7CD50FE7139F07E77DA8AC8033D1832 -- C:\Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.17514_none_9800c896d59e2ea8\nvstor.sys

< MD5 for: SCECLI.DLL >
[2009.07.14 02:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\SysWOW64\scecli.dll
[2009.07.14 02:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9e577e55272d37b4\scecli.dll
[2009.07.14 02:41:53 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=398712DDDAEFB85EDF61DF6A07B65C79 -- C:\Windows\SysNative\scecli.dll
[2009.07.14 02:41:53 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=398712DDDAEFB85EDF61DF6A07B65C79 -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9402d402f2cc75b9\scecli.dll
[2010.11.20 13:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_a088921d241bbb4e\scecli.dll
[2010.11.20 14:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_9633e7caefbaf953\scecli.dll

< MD5 for: SMSS.EXE >
[2009.07.14 02:39:41 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=1911A3356FA3F77CCC825CCBAC038C2A -- C:\Windows\SysNative\smss.exe
[2009.07.14 02:39:41 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=1911A3356FA3F77CCC825CCBAC038C2A -- C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7600.16385_none_082f99a432e2a661\smss.exe

< MD5 for: SVCHOST.EXE >
[2009.07.14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\SysWOW64\svchost.exe
[2009.07.14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2009.07.14 02:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\SysNative\svchost.exe
[2009.07.14 02:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48c\svchost.exe

< MD5 for: TCPIP.SYS >
[2010.11.20 14:33:57 | 001,924,480 | ---- | M] (Microsoft Corporation) MD5=509383E505C973ED7534A06B3D19688D -- C:\Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17514_none_114417c17d05cb37\tcpip.sys
[2013.01.04 06:41:01 | 001,893,224 | ---- | M] (Microsoft Corporation) MD5=5CFB7AB8F9524D1A1E14369DE63B83CC -- C:\Windows\SysNative\drivers\tcpip.sys
[2013.01.04 06:41:01 | 001,893,224 | ---- | M] (Microsoft Corporation) MD5=5CFB7AB8F9524D1A1E14369DE63B83CC -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.17206_none_0f6a6af57fd59de6\tcpip.sys
[2012.03.30 11:19:17 | 001,877,872 | ---- | M] (Microsoft Corporation) MD5=5EFD096DEF47F8B88EF591DA92143440 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.21178_none_0faa5514992a39a7\tcpip.sys
[2012.03.30 12:09:53 | 001,895,280 | ---- | M] (Microsoft Corporation) MD5=624C5B3AA4C99B3184BB922D9ECE3FF0 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16986_none_0f140fa780164fde\tcpip.sys
[2013.01.03 06:57:12 | 001,876,824 | ---- | M] (Microsoft Corporation) MD5=692969AB90BDA19F56E27BF89A9260E2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.21415_none_0fe8397098fc3d71\tcpip.sys
[2012.03.30 11:26:36 | 001,901,424 | ---- | M] (Microsoft Corporation) MD5=885B202006EE17AE99B9FBCEC9AF88C9 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21954_none_11a27a8e9643d23a\tcpip.sys
[2009.07.14 02:45:55 | 001,898,576 | ---- | M] (Microsoft Corporation) MD5=912107716BAB424C7870E8E6AF5E07E1 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16385_none_0f1303f98017479d\tcpip.sys
[2012.03.30 12:35:47 | 001,918,320 | ---- | M] (Microsoft Corporation) MD5=ACB82BDA8F46C84F465C1AFA517DC4B9 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17802_none_114ceccb7cff740d\tcpip.sys
[2013.01.03 07:00:54 | 001,913,192 | ---- | M] (Microsoft Corporation) MD5=B62A953F2BF3922C8764A29C34A22899 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18042_none_112187237d20143a\tcpip.sys
[2013.01.04 06:47:43 | 001,901,416 | ---- | M] (Microsoft Corporation) MD5=B8C1AAC0523E1C33AEB0EF7572144BA2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22209_none_11dd678a9616f2c8\tcpip.sys

< MD5 for: USERINIT.EXE >
[2010.11.20 13:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2009.07.14 02:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\SysWOW64\userinit.exe
[2009.07.14 02:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe
[2009.07.14 02:39:48 | 000,030,208 | ---- | M] (Microsoft Corporation) MD5=6F8F1376A13114CC10C0E69274F5A4DE -- C:\Windows\SysNative\userinit.exe
[2009.07.14 02:39:48 | 000,030,208 | ---- | M] (Microsoft Corporation) MD5=6F8F1376A13114CC10C0E69274F5A4DE -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_381dabbceb60feb2\userinit.exe
[2010.11.20 14:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe

< MD5 for: WINLOGON.EXE >
[2010.11.20 14:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
[2009.07.14 02:39:52 | 000,389,120 | ---- | M] (Microsoft Corporation) MD5=132328DF455B0028F13BF0ABEE51A63A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe
[2009.10.28 08:01:57 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=A93D41A4D4B0D91C072D11DD8AF266DE -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_cc522fd507b468f8\winlogon.exe
[2009.10.28 07:24:40 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\SysNative\winlogon.exe
[2009.10.28 07:24:40 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_cbe534e7ee8042ad\winlogon.exe

< MD5 for: WS2_32.DLL >
[2010.11.20 14:27:29 | 000,297,984 | ---- | M] (Microsoft Corporation) MD5=4BBFA57F594F7E8A8EDC8F377184C3F0 -- C:\Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\amd64_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.1.7601.17514_none_50ddb631e4f59005\ws2_32.dll
[2009.07.14 02:41:58 | 000,296,448 | ---- | M] (Microsoft Corporation) MD5=7083F463788CB34FCC42F565D56F89E8 -- C:\Windows\SysNative\ws2_32.dll
[2009.07.14 02:41:58 | 000,296,448 | ---- | M] (Microsoft Corporation) MD5=7083F463788CB34FCC42F565D56F89E8 -- C:\Windows\winsxs\amd64_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.1.7600.16385_none_4eaca269e8070c6b\ws2_32.dll
[2010.11.20 13:21:38 | 000,206,848 | ---- | M] (Microsoft Corporation) MD5=7FF15A4F092CD4A96055BA69F903E3E9 -- C:\Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\x86_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.1.7601.17514_none_f4bf1aae2c981ecf\ws2_32.dll
[2009.07.14 02:16:20 | 000,206,336 | ---- | M] (Microsoft Corporation) MD5=DAAE8A9B8C0ACC7F858454132553C30D -- C:\Windows\SysWOW64\ws2_32.dll
[2009.07.14 02:16:20 | 000,206,336 | ---- | M] (Microsoft Corporation) MD5=DAAE8A9B8C0ACC7F858454132553C30D -- C:\Windows\winsxs\x86_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.1.7600.16385_none_f28e06e62fa99b35\ws2_32.dll

< >

< %systemroot%*.* /U /s >
[3 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[4 C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >

< %ALLUSERSPROFILE%\Application Data\*.exe /s >

< %APPDATA%\*. >
[2013.03.17 10:56:57 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\Adobe
[2012.10.27 01:41:11 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\Adobe Mini Bridge CS5
[2012.11.03 21:15:16 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\aWARemote
[2013.03.15 13:28:13 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\Babylon
[2013.03.16 11:56:42 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\BSplayer
[2012.10.26 23:19:10 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\BSplayer Pro
[2013.03.13 18:50:24 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2013.02.11 23:56:01 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\CyberLink
[2013.03.03 09:55:03 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\DAEMON Tools Lite
[2013.03.19 10:29:50 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\Dropbox
[2013.03.09 16:23:04 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\FileZilla
[2012.01.10 23:42:32 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\Identities
[2012.10.27 00:57:51 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\Leadertech
[2012.10.27 00:55:10 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\Logishrd
[2012.10.27 00:58:13 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\Logitech
[2012.10.27 01:04:50 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\Macromedia
[2009.07.14 16:36:38 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\Media Center Programs
[2013.01.22 15:22:47 | 000,000,000 | --SD | M] -- C:\Users\Randaal\AppData\Roaming\Microsoft
[2013.03.18 13:37:48 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\Mozilla
[2013.03.17 11:12:18 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\PACE Anti-Piracy
[2012.10.27 02:09:24 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\Scooter Software
[2013.03.05 11:11:52 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\Skype
[2012.10.27 01:41:10 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2013.01.06 17:45:52 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\TeamViewer
[2013.03.12 23:52:20 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\Winamp
[2012.11.01 10:31:41 | 000,000,000 | ---D | M] -- C:\Users\Randaal\AppData\Roaming\WinRAR

< %APPDATA%\*.exe /s >
[2009.08.11 20:21:26 | 000,087,552 | ---- | M] () -- C:\Users\Randaal\AppData\Roaming\BSplayer\AC3 Filter\ac3config.exe
[2009.08.11 20:21:30 | 000,090,112 | ---- | M] () -- C:\Users\Randaal\AppData\Roaming\BSplayer\AC3 Filter\spdif_test.exe
[2010.03.22 13:52:04 | 000,697,690 | ---- | M] () -- C:\Users\Randaal\AppData\Roaming\BSplayer\AC3 Filter\unins000.exe
[2012.10.11 08:01:20 | 001,175,371 | ---- | M] () -- C:\Users\Randaal\AppData\Roaming\BSplayer\FFDShow\unins000.exe
[2010.08.14 10:42:54 | 000,113,152 | ---- | M] () -- C:\Users\Randaal\AppData\Roaming\BSplayer\Haali media splitter\dsmux.exe
[2010.08.14 10:45:10 | 000,358,400 | ---- | M] () -- C:\Users\Randaal\AppData\Roaming\BSplayer\Haali media splitter\gdsmux.exe
[2010.08.14 10:42:06 | 000,137,728 | ---- | M] () -- C:\Users\Randaal\AppData\Roaming\BSplayer\Haali media splitter\mkv2vfr.exe
[2010.09.30 15:30:22 | 000,042,305 | ---- | M] () -- C:\Users\Randaal\AppData\Roaming\BSplayer\Haali media splitter\uninstall.exe
[2013.01.20 20:29:18 | 028,539,272 | ---- | M] (Dropbox, Inc.) -- C:\Users\Randaal\AppData\Roaming\Dropbox\bin\Dropbox.exe
[2013.01.20 20:29:54 | 000,203,264 | ---- | M] (Dropbox, Inc.) -- C:\Users\Randaal\AppData\Roaming\Dropbox\bin\DropboxUninstaller.exe
[2012.10.18 23:33:52 | 000,874,424 | ---- | M] (Dropbox, Inc.) -- C:\Users\Randaal\AppData\Roaming\Dropbox\bin\DropboxUpdateHelper.exe
[2013.03.16 13:40:49 | 000,054,776 | ---- | M] (Adobe Systems Inc.) -- C:\Users\Randaal\AppData\Roaming\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe
[2013.03.03 19:46:59 | 000,010,134 | R--- | M] () -- C:\Users\Randaal\AppData\Roaming\Microsoft\Installer\{024521CF-C07E-4F8E-8481-0D75695E03AF}\ARPPRODUCTICON.exe
[2012.12.08 14:46:10 | 000,053,248 | R--- | M] (Acresso Software Inc.) -- C:\Users\Randaal\AppData\Roaming\Microsoft\Installer\{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}\ARPPRODUCTICON.exe
[2013.01.22 15:48:30 | 000,029,926 | R--- | M] () -- C:\Users\Randaal\AppData\Roaming\Microsoft\Installer\{6DE721A5-5E89-4D74-994C-652BB3C0672E}\ARPPRODUCTICON.exe

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\Tasks\*.job /lockedfiles >

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\system32\drivers\*.sys /3 >

< %systemroot%\system32\*.* /3 >

< %SYSTEMDRIVE%\*.exe >

< >

< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"AdobeBridge" = "C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe" -stealth -- [2010.03.09 04:28:26 | 011,989,960 | ---- | M] (Adobe Systems, Inc.)
"Facebook Update" = "C:\Users\Randaal\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver -- [2012.10.28 13:01:54 | 000,138,096 | ---- | M] (Facebook Inc.)
"RESTART_STICKY_NOTES" = C:\Windows\System32\StikyNot.exe
"Google Update" = "C:\Users\Randaal\AppData\Local\Google\Update\GoogleUpdate.exe" /c -- [2012.11.19 11:57:58 | 000,116,648 | ---- | M] (Google Inc.)
"DAEMON Tools Lite" = "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun -- [2013.03.14 09:23:30 | 003,672,640 | ---- | M] (Disc Soft Ltd)

< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c >
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WUAUSERV
IMAGEPATH REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k netsvcs

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c >
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\BITS
IMAGEPATH REG_EXPAND_SZ %SystemRoot%\System32\svchost.exe -k netsvcs

< >

< type c:\boot.ini >> test.txt /c >

< %SystemDrive%\PhysicalMBR.bin /md5 >
[2013.03.19 13:07:57 | 000,000,512 | ---- | M] () MD5=6573602CDBD95D3A57EEA2E856536B46 -- C:\PhysicalMBR.bin

< >

< *crack* /s >
[2010.04.01 21:41:16 | 000,003,556 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Dreamweaver CS5\configuration\Content\Reference\PHP\CrackF.html
[2010.03.19 10:29:50 | 000,005,932 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\plugins\com.adobe.thermo.core_1.0.0.273393\com\adobe\thermo\undo\ThermoUndoSystem$UndoableDocumentChangeCracker.class
[2012.08.05 18:43:43 | 000,001,181 | ---- | M] () -- \Program Files (x86)\Image-Line\FL Studio 10\Data\Patches\Packs\Library\Presets\Audio Effects\Vinyl Distortion\Crack.adv
[2012.08.05 18:01:10 | 000,006,762 | ---- | M] () -- \Program Files (x86)\Image-Line\FL Studio 10\Data\Patches\Packs\Library\Presets\Instruments\Instrument Rack\Guitars and Plucked\Synthetic\Lead-Cracker.adg
[2008.09.08 21:55:14 | 000,000,204 | ---- | M] () -- \Program Files (x86)\Image-Line\FL Studio 10\Plugins\Fruity\Effects\Hardcore\Presets\I cracked my Tube!.hdprg
[2010.01.15 21:56:40 | 000,000,272 | ---- | M] () -- \Program Files (x86)\Image-Line\FL Studio 10\Plugins\Fruity\Generators\Drumaxx\Drum Patches\Sound FX\Crack.dmpatch
[2010.01.15 21:56:40 | 000,000,272 | ---- | M] () -- \Program Files (x86)\Image-Line\FL Studio 10\Plugins\Fruity\Generators\DrumPad\Drum Patches\Sound FX\Crack.dmpatch
[2010.03.18 21:15:38 | 001,159,409 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CS5\Support Files\Presets\Image - Special Effects\Cracked Tiles.ffx
[2010.04.01 20:58:54 | 000,820,976 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CS5\Plug-ins\en_US\VSTPlugins\DeCrackler1.dll
[2010.04.01 20:58:56 | 000,820,976 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CS5\Plug-ins\en_US\VSTPlugins\DeCrackler2.dll
[2010.04.01 20:58:58 | 000,820,976 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CS5\Plug-ins\en_US\VSTPlugins\DeCrackler6.dll
[2009.02.27 15:39:24 | 000,002,394 | ---- | M] () -- \ProgramData\IMSIDesign\TurboFLOORPLAN Dum & Interiér & Zahrada PRO 15\Textury\Natures Gallery Greige Crackle.jpg
[2009.02.27 15:39:24 | 000,002,394 | ---- | M] () -- \Users\All Users\IMSIDesign\TurboFLOORPLAN Dum & Interiér & Zahrada PRO 15\Textury\Natures Gallery Greige Crackle.jpg

< *keygen* /s >
[2010.04.01 21:41:02 | 000,013,367 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Dreamweaver CS5\configuration\Content\Reference\HTML\KEYGEN.html
[2010.03.27 14:32:28 | 000,003,248 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\idl\nsIKeygenThread.idl
[2010.03.27 14:32:56 | 000,004,618 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\include\nsIKeygenThread.h
[2010.05.02 23:46:22 | 000,074,240 | ---- | M] () -- \Users\Randaal\Dropbox\Temp Domča\keygen.exe

< *loader* /s >
[2012.12.10 14:13:26 | 001,729,168 | ---- | M] () -- \Casino\Europa Casino\data\loader.dll
[2012.12.10 14:13:22 | 000,007,370 | ---- | M] () -- \Casino\Europa Casino\data\loader.gam
[2012.12.10 14:22:53 | 000,001,593 | ---- | M] () -- \Casino\Europa Casino\data\mgames\data\elements\iframebgloader.swf
[2012.12.10 14:26:03 | 000,024,200 | ---- | M] () -- \Casino\Europa Casino\data\mgames\data\modules\bj\bj_mh5_loader.swf
[2012.12.10 14:22:20 | 000,049,835 | ---- | M] () -- \Casino\Europa Casino\data\mgames\data\modules\ro_g\rop_g_loader.swf
[2012.12.10 14:13:24 | 000,000,200 | ---- | M] () -- \Casino\Europa Casino\data\shared\interface\dialog3\loader.png
[2012.12.10 14:13:24 | 000,000,926 | ---- | M] () -- \Casino\Europa Casino\data\shared\interface\dialog3\loader_anim.png
[2010.03.09 04:28:40 | 005,297,608 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\Photodownloader.exe
[2010.03.09 01:38:58 | 000,011,161 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\bitmaps\main_window\C_LoadError.png
[2010.03.09 01:38:58 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\da_dk\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\de_de\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\en_us\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\es_es\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\fi_fi\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\fr_fr\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\it_it\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\ja_jp\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\ko_kr\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\nl_nl\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\no_no\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\pt_br\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\sv_se\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,308 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\zh_cn\Photodownloader.ini
[2010.03.09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\zh_tw\Photodownloader.ini
[2010.03.27 14:36:54 | 000,004,426 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Contribute CS5\App\Configuration\Content\CCWelcome\Assets\dynswfloader.swf
[2010.03.27 14:34:14 | 000,037,112 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Contribute CS5\App\Configuration\Shared\MM\Media\FLVLoader.swf
[2010.04.01 21:42:36 | 000,037,112 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Dreamweaver CS5\configuration\Shared\MM\Media\FLVLoader.swf
[2010.03.18 18:31:50 | 000,299,240 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Encore CS5\MXF_SDK_MetaMetadata_BinaryLoader_r.4.2.2.319.dll
[2010.03.29 14:35:30 | 000,061,190 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Fireworks CS5\Configuration\Common Library\Animations\Loader01.animation.png
[2010.03.29 14:35:30 | 000,312,906 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Fireworks CS5\Configuration\Common Library\Animations\Loader02.animation.png
[2010.03.29 14:35:30 | 000,119,812 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Fireworks CS5\Configuration\Common Library\Animations\Loader03.animation.png
[2010.03.29 14:35:30 | 000,237,114 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Fireworks CS5\Configuration\Common Library\Animations\Loader04.animation.png
[2010.03.04 19:18:18 | 000,000,706 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flash.codemodel.osgi_4.0.0.272416\classes\javax\xml\stream\FactoryFinder$ClassLoaderFinder.class
[2010.03.04 19:19:04 | 000,000,791 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flash.codemodel.osgi_4.0.0.272416\classes\javax\xml\stream\FactoryFinder$ClassLoaderFinderConcrete.class
[2010.03.04 19:19:18 | 000,002,229 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexbuilder.services.WEBService.derived_4.0.0.272416\org\eclipse\wst\wsdl\validation\internal\ClassloaderWSDLValidatorDelegate.class
[2010.03.04 19:19:10 | 000,002,205 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexbuilder.services.WEBService.derived_4.0.0.272416\org\eclipse\wst\wsdl\validation\internal\wsdl11\ClassloaderWSDL11ValidatorDelegate.class
[2010.03.04 19:18:46 | 000,002,822 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexide.designitems_4.0.0.272416\com\adobe\flexide\designitems\loaders\FxgSWFLoader$FxgSWFLoaderCallbacks.class
[2010.03.04 19:19:12 | 000,002,931 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexide.designitems_4.0.0.272416\com\adobe\flexide\designitems\loaders\FxgSWFLoader.class
[2010.03.04 19:18:46 | 000,000,341 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexide.designitems_4.0.0.272416\com\adobe\flexide\designitems\loaders\ILoaderListener.class
[2010.03.04 19:18:52 | 000,000,209 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexide.designitems_4.0.0.272416\com\adobe\flexide\designitems\loaders\ISWFLoader.class
[2010.03.04 19:18:40 | 000,003,331 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexide.designitems_4.0.0.272416\com\adobe\flexide\designitems\loaders\LibrarySWCLoader$SwcLoaderCallbacks.class
[2010.03.04 19:18:48 | 000,004,540 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexide.designitems_4.0.0.272416\com\adobe\flexide\designitems\loaders\LibrarySWCLoader.class
[2010.03.04 19:18:34 | 000,005,056 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexide.externaleditors_4.0.0.272416\com\adobe\flexide\externaleditors\actions\SWFLoaderEditInFlashAction.class
[2010.03.04 19:19:54 | 000,001,704 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\3.5.0\frameworks\projects\air\ApplicationUpdater\src\ApplicationUpdater\air\update\events\DownloadErrorEvent.as
[2010.03.04 19:19:56 | 000,006,156 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\3.5.0\frameworks\projects\air\ApplicationUpdater\src\ApplicationUpdater\air\update\net\FileDownloader.as
[2010.03.04 19:19:46 | 000,008,119 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\3.5.0\frameworks\projects\air\ApplicationUpdater\src\ApplicationUpdater\air\update\ui\EmbeddedUILoader.as
[2010.03.04 19:19:52 | 000,007,624 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\3.5.0\frameworks\projects\airframework\src\mx\core\FlexHTMLLoader.as
[2010.03.04 19:19:56 | 000,008,733 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\3.5.0\frameworks\projects\automation\src\mx\automation\delegates\controls\SWFLoaderAutomationImpl.as
[2010.03.04 19:19:54 | 000,080,067 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\3.5.0\frameworks\projects\framework\src\mx\controls\SWFLoader.as
[2010.03.04 19:19:54 | 000,000,766 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\3.5.0\frameworks\projects\framework\src\mx\controls\SWFLoader.png
[2010.03.04 19:19:44 | 000,003,386 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\3.5.0\frameworks\projects\framework\src\mx\core\FlexLoader.as
[2010.03.04 19:19:46 | 000,002,692 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\3.5.0\frameworks\projects\framework\src\mx\core\ISWFLoader.as
[2010.03.04 19:20:00 | 000,005,806 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\3.5.0\frameworks\projects\framework\src\mx\core\MovieClipLoaderAsset.as
[2010.03.04 19:19:56 | 000,007,217 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\3.5.0\frameworks\projects\framework\src\mx\core\RSLListLoader.as
[2010.03.04 19:19:50 | 000,002,725 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\3.5.0\frameworks\projects\framework\src\mx\messaging\config\LoaderConfig.as
[2010.03.04 19:19:56 | 000,011,430 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\3.5.0\frameworks\projects\framework\src\mx\modules\ModuleLoader.as
[2010.03.04 19:19:48 | 000,003,674 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\3.5.0\frameworks\projects\framework\src\mx\preloaders\IPreloaderDisplay.as
[2010.03.04 19:19:56 | 000,013,317 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\3.5.0\frameworks\projects\framework\src\mx\preloaders\Preloader.as
[2010.03.04 19:19:58 | 000,007,325 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\3.5.0\frameworks\projects\framework\src\mx\utils\LoaderUtil.as
[2010.03.04 19:19:48 | 000,009,607 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\3.5.0\frameworks\projects\rpc\src\mx\rpc\wsdl\WSDLLoader.as
[2010.03.04 19:19:46 | 000,008,581 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\3.5.0\frameworks\projects\rpc\src\mx\rpc\xml\SchemaLoader.as
[2010.03.04 19:19:58 | 000,003,611 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\3.5.0\frameworks\projects\rpc\src\mx\rpc\xml\XMLLoader.as
[2010.03.04 19:20:04 | 000,001,704 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\air\ApplicationUpdater\src\ApplicationUpdater\air\update\events\DownloadErrorEvent.as
[2010.03.04 19:20:14 | 000,006,155 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\air\ApplicationUpdater\src\ApplicationUpdater\air\update\net\FileDownloader.as
[2010.03.04 19:20:50 | 000,007,957 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\air\ApplicationUpdater\src\ApplicationUpdater\air\update\ui\EmbeddedUILoader.as
[2010.03.04 19:20:16 | 000,012,740 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\airframework\src\mx\core\FlexHTMLLoader.as
[2010.03.04 19:20:36 | 000,009,256 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\automation\src\mx\automation\delegates\controls\SWFLoaderAutomationImpl.as
[2010.03.04 19:20:10 | 000,091,119 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\framework\src\mx\controls\SWFLoader.as
[2010.03.04 19:20:46 | 000,000,766 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\framework\src\mx\controls\SWFLoader.png
[2010.03.04 19:20:06 | 000,003,762 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\framework\src\mx\core\FlexLoader.as
[2010.03.04 19:20:38 | 000,003,068 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\framework\src\mx\core\ISWFLoader.as
[2010.03.04 19:20:28 | 000,006,534 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\framework\src\mx\core\MovieClipLoaderAsset.as
[2010.03.04 19:20:52 | 000,008,136 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\framework\src\mx\core\RSLListLoader.as
[2010.03.04 19:20:52 | 000,003,886 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\framework\src\mx\messaging\config\LoaderConfig.as
[2010.03.04 19:20:02 | 000,015,300 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\framework\src\mx\modules\ModuleLoader.as
[2010.03.04 19:20:28 | 000,001,308 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\framework\src\mx\modules\ModuleLoader.png
[2010.03.04 19:20:12 | 000,004,842 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\framework\src\mx\preloaders\IPreloaderDisplay.as
[2010.03.04 19:20:34 | 000,016,390 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\framework\src\mx\preloaders\Preloader.as
[2010.03.04 19:20:38 | 000,008,221 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\framework\src\mx\utils\LoaderUtil.as
[2010.03.04 19:20:56 | 000,007,388 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\audio\SoundLoader.as
[2010.03.04 19:20:06 | 000,004,221 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\composition\TraitLoader.as
[2010.03.04 19:20:30 | 000,002,329 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\composition\TraitLoaderEvent.as
[2010.03.04 19:20:44 | 000,007,919 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\content\ContentLoader.as
[2010.03.04 19:20:34 | 000,003,733 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\events\LoaderEvent.as
[2010.03.04 19:20:38 | 000,003,133 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\image\ImageLoader.as
[2010.03.04 19:20:06 | 000,014,114 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\net\NetLoader.as
[2010.03.04 19:20:12 | 000,006,120 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\net\dynamicstreaming\DynamicStreamingNetLoader.as
[2010.03.04 19:20:08 | 000,005,994 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\plugin\DynamicPluginLoader.as
[2010.03.04 19:20:14 | 000,004,563 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\plugin\PluginLoader.as
[2010.03.04 19:20:16 | 000,002,787 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\plugin\StaticPluginLoader.as
[2010.03.04 19:20:14 | 000,003,724 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\swf\SWFLoader.as
[2010.03.04 19:20:54 | 000,003,979 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\traits\ILoader.as
[2010.03.04 19:20:12 | 000,005,209 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\traits\LoaderBase.as
[2010.03.04 19:20:26 | 000,006,171 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\utils\HTTPLoader.as
[2010.03.04 19:20:10 | 000,010,135 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\rpc\src\mx\rpc\wsdl\WSDLLoader.as
[2010.03.04 19:20:44 | 000,008,713 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\rpc\src\mx\rpc\xml\SchemaLoader.as
[2010.03.04 19:20:04 | 000,004,007 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\rpc\src\mx\rpc\xml\XMLLoader.as
[2010.03.04 19:20:16 | 000,001,841 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\samples\themes\cobalt\src\assets\SWFLoader_brokenImageSkin.png
[2010.03.19 10:29:48 | 000,000,706 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\plugins\com.adobe.flash.codemodel.osgi_1.0.0.273393\classes\javax\xml\stream\FactoryFinder$ClassLoaderFinder.class
[2010.03.19 10:29:48 | 000,000,791 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\plugins\com.adobe.flash.codemodel.osgi_1.0.0.273393\classes\javax\xml\stream\FactoryFinder$ClassLoaderFinderConcrete.class
[2010.03.19 10:29:44 | 000,002,822 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\plugins\com.adobe.flexide.designitems_1.0.0.273393\com\adobe\flexide\designitems\loaders\FxgSWFLoader$FxgSWFLoaderCallbacks.class
[2010.03.19 10:29:44 | 000,002,931 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\plugins\com.adobe.flexide.designitems_1.0.0.273393\com\adobe\flexide\designitems\loaders\FxgSWFLoader.class
[2010.03.19 10:29:44 | 000,000,341 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\plugins\com.adobe.flexide.designitems_1.0.0.273393\com\adobe\flexide\designitems\loaders\ILoaderListener.class
[2010.03.19 10:29:44 | 000,000,209 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\plugins\com.adobe.flexide.designitems_1.0.0.273393\com\adobe\flexide\designitems\loaders\ISWFLoader.class
[2010.03.19 10:29:44 | 000,003,331 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\plugins\com.adobe.flexide.designitems_1.0.0.273393\com\adobe\flexide\designitems\loaders\LibrarySWCLoader$SwcLoaderCallbacks.class
[2010.03.19 10:29:44 | 000,004,540 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\plugins\com.adobe.flexide.designitems_1.0.0.273393\com\adobe\flexide\designitems\loaders\LibrarySWCLoader.class
[2010.03.19 10:29:46 | 000,005,056 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\plugins\com.adobe.flexide.externaleditors_1.0.0.273393\com\adobe\flexide\externaleditors\actions\SWFLoaderEditInFlashAction.class
[2010.03.19 10:29:46 | 000,252,328 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\plugins\com.adobe.flexide.nativelibs_1.0.0.273393\libs\MFILoaderLibrary_v3.dll
[2010.03.19 10:29:50 | 000,001,256 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\plugins\com.adobe.thermo.artboard_1.0.0.273393\com\adobe\thermo\artboard\ArtBoardPart$LoaderListener.class
[2010.03.19 10:40:40 | 000,001,704 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\air\ApplicationUpdater\src\ApplicationUpdater\air\update\events\DownloadErrorEvent.as
[2010.03.19 10:40:46 | 000,006,155 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\air\ApplicationUpdater\src\ApplicationUpdater\air\update\net\FileDownloader.as
[2010.03.19 10:40:26 | 000,007,957 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\air\ApplicationUpdater\src\ApplicationUpdater\air\update\ui\EmbeddedUILoader.as
[2010.03.19 10:40:30 | 000,012,740 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\airframework\src\mx\core\FlexHTMLLoader.as
[2010.03.19 10:40:28 | 000,009,256 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\automation\src\mx\automation\delegates\controls\SWFLoaderAutomationImpl.as
[2010.03.19 10:41:00 | 000,091,119 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\framework\src\mx\controls\SWFLoader.as
[2010.03.19 10:40:36 | 000,000,766 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\framework\src\mx\controls\SWFLoader.png
[2010.03.19 10:40:40 | 000,003,762 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\framework\src\mx\core\FlexLoader.as
[2010.03.19 10:40:26 | 000,003,068 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\framework\src\mx\core\ISWFLoader.as
[2010.03.19 10:40:34 | 000,006,534 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\framework\src\mx\core\MovieClipLoaderAsset.as
[2010.03.19 10:40:58 | 000,008,136 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\framework\src\mx\core\RSLListLoader.as
[2010.03.19 10:40:58 | 000,003,886 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\framework\src\mx\messaging\config\LoaderConfig.as
[2010.03.19 10:40:48 | 000,015,300 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\framework\src\mx\modules\ModuleLoader.as
[2010.03.19 10:40:32 | 000,001,308 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\framework\src\mx\modules\ModuleLoader.png
[2010.03.19 10:40:38 | 000,004,842 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\framework\src\mx\preloaders\IPreloaderDisplay.as
[2010.03.19 10:40:32 | 000,016,390 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\framework\src\mx\preloaders\Preloader.as
[2010.03.19 10:40:46 | 000,008,221 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\framework\src\mx\utils\LoaderUtil.as
[2010.03.19 10:40:50 | 000,007,388 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\audio\SoundLoader.as
[2010.03.19 10:40:30 | 000,004,221 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\composition\TraitLoader.as
[2010.03.19 10:40:42 | 000,002,329 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\composition\TraitLoaderEvent.as
[2010.03.19 10:40:48 | 000,007,919 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\content\ContentLoader.as
[2010.03.19 10:40:30 | 000,003,733 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\events\LoaderEvent.as
[2010.03.19 10:40:48 | 000,003,133 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\image\ImageLoader.as
[2010.03.19 10:40:40 | 000,014,114 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\net\NetLoader.as
[2010.03.19 10:40:44 | 000,006,120 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\net\dynamicstreaming\DynamicStreamingNetLoader.as
[2010.03.19 10:40:36 | 000,005,994 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\plugin\DynamicPluginLoader.as
[2010.03.19 10:41:00 | 000,004,563 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\plugin\PluginLoader.as
[2010.03.19 10:40:46 | 000,002,787 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\plugin\StaticPluginLoader.as
[2010.03.19 10:40:46 | 000,003,724 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\swf\SWFLoader.as
[2010.03.19 10:40:34 | 000,003,979 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\traits\ILoader.as
[2010.03.19 10:41:00 | 000,005,209 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\traits\LoaderBase.as
[2010.03.19 10:40:30 | 000,006,171 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\utils\HTTPLoader.as
[2010.03.19 10:40:56 | 000,010,135 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\rpc\src\mx\rpc\wsdl\WSDLLoader.as
[2010.03.19 10:40:30 | 000,008,713 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\rpc\src\mx\rpc\xml\SchemaLoader.as
[2010.03.19 10:40:44 | 000,004,007 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\rpc\src\mx\rpc\xml\XMLLoader.as
[2010.03.19 10:41:00 | 000,001,841 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\samples\themes\cobalt\src\assets\SWFLoader_brokenImageSkin.png
[2010.03.27 05:03:20 | 000,001,702 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5\AIK2.0\frameworks\projects\air\ApplicationUpdater\src\ApplicationUpdater\air\update\events\DownloadErrorEvent.as
[2010.03.27 05:03:20 | 000,006,153 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5\AIK2.0\frameworks\projects\air\ApplicationUpdater\src\ApplicationUpdater\air\update\net\FileDownloader.as
[2010.03.27 05:03:20 | 000,007,955 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5\AIK2.0\frameworks\projects\air\ApplicationUpdater\src\ApplicationUpdater\air\update\ui\EmbeddedUILoader.as
[2010.03.27 04:58:40 | 000,015,989 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5\Common\Configuration\ActionScript 3.0\projects\Flash\src\fl\rsl\RSLPreloader.as
[2010.03.27 05:01:58 | 000,010,604 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5\Common\Configuration\ActionScript 3.0\rsls\loader_animation.fla
[2010.03.27 05:01:58 | 000,001,253 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5\Common\Configuration\ActionScript 3.0\rsls\loader_animation.swf
[2010.03.27 04:58:40 | 000,027,153 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5\Common\Configuration\Component Source\ActionScript 3.0\User Interface\fl\containers\UILoader.as
[2010.03.27 04:58:40 | 000,044,966 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5\Common\Configuration\Components\User Interface\Loader.swc
[2010.03.27 04:58:46 | 000,000,544 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5\Common\First Run\Classes\FP7\MovieClipLoader.as
[2010.03.27 04:58:46 | 000,000,544 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5\Common\First Run\Classes\FP8\MovieClipLoader.as
[2010.03.27 04:58:46 | 000,000,576 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5\Common\First Run\Classes\FP9\MovieClipLoader.as
[2010.03.27 04:58:46 | 000,010,454 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5\Common\First Run\Classes\mx\controls\Loader.as
[2010.03.27 06:51:34 | 000,032,436 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5\cs_CZ\Configuration\Templates\Sample Files\Preloader for External File.fla
[2010.03.27 06:51:34 | 000,036,436 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5\cs_CZ\Configuration\Templates\Sample Files\Preloader for SWF.fla
[2010.03.26 20:15:56 | 000,003,755 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe InDesign CS5\Scripts\converturltohyperlink\startup scripts\ConvertURLToHyperlinkMenuItemLoader.jsx
[2010.03.26 20:15:56 | 000,003,501 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe InDesign CS5\Scripts\Export As XHTML\startup scripts\XHTMLExportMenuItemLoader.jsx
[2010.03.26 20:15:56 | 000,003,328 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe InDesign CS5\Scripts\XHTML For Digital Editions\startup scripts\OEBExportMenuItemLoader.jsx
[2010.03.18 20:57:26 | 000,299,248 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe OnLocation CS5\MXF_SDK_MetaMetadata_BinaryLoader_r.4.2.2.319.dll
[2010.03.27 14:32:10 | 000,009,728 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\bin\TestStreamLoader.exe
[2010.03.27 14:32:12 | 000,002,713 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\bin\components\uriloader.xpt
[2010.03.27 14:32:10 | 000,026,243 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\bin\chrome\pageloader.jar
[2010.03.27 14:32:10 | 000,000,049 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\bin\chrome\pageloader.manifest
[2010.03.27 14:32:18 | 000,005,128 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\idl\imgILoader.idl
[2010.03.27 14:32:18 | 000,002,605 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\idl\mozIJSSubScriptLoader.idl
[2010.03.27 14:32:18 | 000,003,317 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\idl\nsCURILoader.idl
[2010.03.27 14:32:26 | 000,002,858 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\idl\nsIDocumentLoader.idl
[2010.03.27 14:32:26 | 000,003,462 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\idl\nsIDocumentLoaderFactory.idl
[2010.03.27 14:32:26 | 000,003,603 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\idl\nsIDownloader.idl
[2010.03.27 14:32:28 | 000,003,715 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\idl\nsIFrameLoader.idl
[2010.03.27 14:32:30 | 000,002,777 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\idl\nsIModuleLoader.idl
[2010.03.27 14:32:32 | 000,003,452 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\idl\nsIScriptLoaderObserver.idl
[2010.03.27 14:32:32 | 000,004,284 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\idl\nsIStreamLoader.idl
[2010.03.27 14:32:34 | 000,005,092 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\idl\nsIUnicharStreamLoader.idl
[2010.03.27 14:32:34 | 000,007,667 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\idl\nsIURILoader.idl
[2010.03.27 14:32:36 | 000,003,926 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\idl\nsIXPTLoader.idl
[2010.03.27 14:32:36 | 000,004,183 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\idl\xpcIJSModuleLoader.idl
[2010.03.27 14:32:38 | 000,009,035 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\include\imgILoader.h
[2010.03.27 14:32:40 | 000,003,070 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\include\mozIJSSubScriptLoader.h
[2010.03.27 14:32:42 | 000,001,749 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\include\nsCURILoader.h
[2010.03.27 14:32:42 | 000,010,911 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\include\nsDocLoader.h
[2010.03.27 14:32:46 | 000,013,419 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\include\nsICSSLoader.h
[2010.03.27 14:32:46 | 000,003,426 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\include\nsICSSLoaderObserver.h
[2010.03.27 14:32:54 | 000,004,904 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\include\nsIDocumentLoader.h
[2010.03.27 14:32:54 | 000,007,766 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\include\nsIDocumentLoaderFactory.h

Uživatelský avatar
Randaal
Návštěvník
Návštěvník
Příspěvky: 58
Registrován: 20 říj 2008 22:57
Bydliště: Praha

Re: Relativně pomalé PC + jakýsi malware

#5 Příspěvek od Randaal »

[2010.03.27 14:32:54 | 000,006,884 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\include\nsIDownloader.h
[2010.03.27 14:32:56 | 000,008,783 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\include\nsIFrameLoader.h
[2010.03.27 14:32:58 | 000,003,586 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\include\nsIModuleLoader.h
[2010.03.27 14:33:02 | 000,005,474 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\include\nsIScriptLoaderObserver.h
[2010.03.27 14:33:02 | 000,008,712 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\include\nsIStreamLoader.h
[2010.03.27 14:33:04 | 000,011,248 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\include\nsIUnicharStreamLoader.h
[2010.03.27 14:33:04 | 000,011,837 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\include\nsIURILoader.h
[2010.03.27 14:33:06 | 000,007,515 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\include\nsIXPTLoader.h
[2010.03.27 14:33:08 | 000,011,156 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\include\nsScriptLoader.h
[2010.03.27 14:33:08 | 000,004,155 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\include\nsURILoader.h
[2010.03.27 14:33:12 | 000,005,504 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\include\xpcIJSModuleLoader.h
[2010.03.24 20:12:34 | 000,249,680 | ---- | M] () -- \Program Files (x86)\Common Files\microsoft shared\VSTO\10.0\VSTOLoader.dll
[2010.03.24 20:12:34 | 000,018,264 | ---- | M] () -- \Program Files (x86)\Common Files\microsoft shared\VSTO\10.0\1033\VSTOLoaderUI.dll
[2013.03.17 10:34:43 | 000,000,882 | ---- | M] () -- \Program Files (x86)\Image-Line\Downloader\fldownloader.log
[2009.11.12 13:50:16 | 000,071,008 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXLoader.dll
[2009.11.12 14:10:52 | 000,073,568 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXLoader64.dll
[2010.03.31 05:00:06 | 000,738,032 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CS5\Support Files\MXF_SDK_MetaMetadata_BinaryLoader_d.4.2.2.319.dll
[2010.03.31 05:00:12 | 000,488,176 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CS5\Support Files\MXF_SDK_MetaMetadata_BinaryLoader_r.4.2.2.319.dll
[2010.03.31 05:00:16 | 000,738,544 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CS5\Support Files\MXF_SDK_MetaMetadata_BinaryLoader_wd.4.2.2.319.dll
[2010.03.31 05:00:22 | 000,487,664 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CS5\Support Files\MXF_SDK_MetaMetadata_BinaryLoader_wr.4.2.2.319.dll
[2010.03.31 05:00:28 | 001,115,376 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CS5\Support Files\MXF_SDK_MetaMetadata_XSDLoader2_d.4.2.2.319.dll
[2010.03.31 05:00:32 | 000,900,336 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CS5\Support Files\MXF_SDK_MetaMetadata_XSDLoader2_r.4.2.2.319.dll
[2010.03.31 05:00:38 | 001,116,912 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CS5\Support Files\MXF_SDK_MetaMetadata_XSDLoader2_wd.4.2.2.319.dll
[2010.03.31 05:00:44 | 000,901,872 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CS5\Support Files\MXF_SDK_MetaMetadata_XSDLoader2_wr.4.2.2.319.dll
[2010.03.31 05:00:48 | 001,038,064 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CS5\Support Files\MXF_SDK_MetaMetadata_XSDLoader_d.4.2.2.319.dll
[2010.03.31 05:00:54 | 000,789,232 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CS5\Support Files\MXF_SDK_MetaMetadata_XSDLoader_r.4.2.2.319.dll
[2010.03.31 05:01:00 | 001,038,064 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CS5\Support Files\MXF_SDK_MetaMetadata_XSDLoader_wd.4.2.2.319.dll
[2010.03.31 05:01:04 | 000,789,232 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CS5\Support Files\MXF_SDK_MetaMetadata_XSDLoader_wr.4.2.2.319.dll
[2010.03.05 05:55:00 | 000,488,144 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CS5\MXF_SDK_MetaMetadata_BinaryLoader_r.4.2.2.319.dll
[2010.03.05 05:55:04 | 000,900,304 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CS5\MXF_SDK_MetaMetadata_XSDLoader2_r.4.2.2.319.dll
[2010.03.05 05:55:08 | 000,789,200 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CS5\MXF_SDK_MetaMetadata_XSDLoader_r.4.2.2.319.dll
[2012.02.22 23:58:36 | 000,078,336 | ---- | M] () -- \Program Files\Adobe\Adobe Photoshop Lightroom 4\Support\DynamicLinkMediaServer\dynamiclinkmediaserver\1.0\MXF_SDK_MetaMetadata_BinaryLoader_4.4.3.dll
[2012.02.22 23:58:36 | 000,155,136 | ---- | M] () -- \Program Files\Adobe\Adobe Photoshop Lightroom 4\Support\DynamicLinkMediaServer\dynamiclinkmediaserver\1.0\MXF_SDK_MetaMetadata_XSDLoader2_4.4.3.dll
[2012.02.22 23:58:36 | 000,117,248 | ---- | M] () -- \Program Files\Adobe\Adobe Photoshop Lightroom 4\Support\DynamicLinkMediaServer\dynamiclinkmediaserver\1.0\MXF_SDK_MetaMetadata_XSDLoader_4.4.3.dll
[2010.04.01 21:12:48 | 000,738,032 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CS5\MXF_SDK_MetaMetadata_BinaryLoader_d.4.2.2.319.dll
[2010.04.01 21:12:50 | 000,488,176 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CS5\MXF_SDK_MetaMetadata_BinaryLoader_r.4.2.2.319.dll
[2010.04.01 21:12:50 | 000,738,544 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CS5\MXF_SDK_MetaMetadata_BinaryLoader_wd.4.2.2.319.dll
[2010.04.01 21:12:52 | 000,487,664 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CS5\MXF_SDK_MetaMetadata_BinaryLoader_wr.4.2.2.319.dll
[2010.04.01 21:12:54 | 001,115,376 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CS5\MXF_SDK_MetaMetadata_XSDLoader2_d.4.2.2.319.dll
[2010.04.01 21:12:56 | 000,900,336 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CS5\MXF_SDK_MetaMetadata_XSDLoader2_r.4.2.2.319.dll
[2010.04.01 21:12:58 | 001,116,912 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CS5\MXF_SDK_MetaMetadata_XSDLoader2_wd.4.2.2.319.dll
[2010.04.01 21:12:58 | 000,901,872 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CS5\MXF_SDK_MetaMetadata_XSDLoader2_wr.4.2.2.319.dll
[2010.04.01 21:13:00 | 001,038,064 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CS5\MXF_SDK_MetaMetadata_XSDLoader_d.4.2.2.319.dll
[2010.04.01 21:13:02 | 000,789,232 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CS5\MXF_SDK_MetaMetadata_XSDLoader_r.4.2.2.319.dll
[2010.04.01 21:13:04 | 001,038,064 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CS5\MXF_SDK_MetaMetadata_XSDLoader_wd.4.2.2.319.dll
[2010.04.01 21:13:06 | 000,789,232 | ---- | M] () -- \Program Files\Adobe\Adobe Premiere Pro CS5\MXF_SDK_MetaMetadata_XSDLoader_wr.4.2.2.319.dll
[2010.03.24 20:35:48 | 000,370,512 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VSTO\10.0\VSTOLoader.dll
[2010.03.24 20:35:48 | 000,018,264 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VSTO\10.0\1033\VSTOLoaderUI.dll
[2012.06.09 19:19:38 | 000,055,296 | ---- | M] () -- \Program Files\WinRAR\Formats\ace32loader.exe
[2012.12.04 17:00:50 | 000,072,638 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\loader.gif
[2012.12.04 17:00:50 | 000,003,032 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\loader.png
[2012.12.04 17:00:50 | 000,009,772 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\retina\loader@2x.png
[2012.12.04 17:00:50 | 000,072,638 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\loader.gif
[2012.12.04 17:00:50 | 000,003,032 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\loader.png
[2012.12.04 17:00:50 | 000,009,772 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\retina\loader@2x.png
[2013.03.19 13:59:53 | 000,094,105 | ---- | M] () -- \Users\Randaal\AppData\Local\SRDownloader.err
[2013.03.18 18:01:59 | 000,003,992 | ---- | M] () -- \Users\Randaal\AppData\Local\SRDownloader.nast
[2013.03.15 13:27:36 | 000,057,728 | ---- | M] () -- \Users\Randaal\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\img\dt_dadget_loader.png
[2013.03.15 13:27:37 | 000,057,728 | ---- | M] () -- \Users\Randaal\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin1\dt_dadget_loader.png
[2013.03.15 13:27:38 | 000,057,728 | ---- | M] () -- \Users\Randaal\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin2\dt_dadget_loader.png
[2013.03.15 13:27:38 | 000,057,728 | ---- | M] () -- \Users\Randaal\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin3\dt_dadget_loader.png
[2013.03.15 13:27:39 | 000,057,728 | ---- | M] () -- \Users\Randaal\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin4\dt_dadget_loader.png
[2013.03.15 13:27:41 | 000,061,770 | ---- | M] () -- \Users\Randaal\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin5\dt_dadget_loader.png
[2013.03.15 13:27:42 | 000,061,770 | ---- | M] () -- \Users\Randaal\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin6\dt_dadget_loader.png
[2013.03.15 13:28:25 | 000,002,137 | ---- | M] () -- \Users\Randaal\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VUHL8GQ5\downloader[1].htm
[2013.03.15 13:24:18 | 000,141,216 | ---- | M] () -- \Users\Randaal\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XGJR36KG\bi_downloader[1].exe
[2013.03.15 13:28:16 | 000,002,212 | ---- | M] () -- \Users\Randaal\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XXKUI1R5\downloader[1].htm
[2012.11.03 17:27:39 | 000,000,548 | ---- | M] () -- \Users\Randaal\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\SRDownloader.lnk
[2013.03.19 13:08:46 | 000,000,471 | ---- | M] () -- \Users\Randaal\AppData\Roaming\Microsoft\Windows\Recent\SR Downloader.lnk
[2012.12.31 15:19:14 | 000,011,314 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Eshop\Prestashop Install\prestashop\admin\themes\default\img\ajax-loader.gif
[2012.12.31 15:19:14 | 000,000,109 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Eshop\Prestashop Install\prestashop\admin\themes\default\img\bg_loaderSpace.png
[2012.12.31 15:19:16 | 000,008,344 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Eshop\Prestashop Install\prestashop\classes\FileUploader.php
[2012.12.31 15:19:16 | 000,000,109 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Eshop\Prestashop Install\prestashop\img\bg_loader.png
[2012.12.31 15:19:16 | 000,003,719 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Eshop\Prestashop Install\prestashop\img\loader.gif
[2012.12.31 15:19:16 | 000,011,314 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Eshop\Prestashop Install\prestashop\img\admin\ajax-loader-big.gif
[2012.12.31 15:19:16 | 000,009,427 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Eshop\Prestashop Install\prestashop\img\admin\ajax-loader-yellow.gif
[2012.12.31 15:19:16 | 000,000,673 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Eshop\Prestashop Install\prestashop\img\admin\ajax-loader.gif
[2012.12.31 15:19:16 | 000,000,723 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Eshop\Prestashop Install\prestashop\img\admin\field-loader.gif
[2012.12.31 15:19:16 | 000,002,822 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Eshop\Prestashop Install\prestashop\install\classes\sqlLoader.php
[2012.12.31 15:19:16 | 000,036,942 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Eshop\Prestashop Install\prestashop\install\classes\xmlLoader.php
[2012.12.31 15:19:16 | 000,009,427 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Eshop\Prestashop Install\prestashop\install\theme\img\ajax-loader-small.gif
[2012.12.31 15:19:16 | 000,011,314 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Eshop\Prestashop Install\prestashop\install\theme\img\ajax-loader.gif
[2012.12.31 15:19:16 | 000,000,109 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Eshop\Prestashop Install\prestashop\install\theme\img\bg_loaderSpace.png
[2012.12.31 15:19:16 | 000,035,777 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Eshop\Prestashop Install\prestashop\js\fileuploader.js
[2012.12.31 15:19:16 | 000,001,720 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Eshop\Prestashop Install\prestashop\js\cropper\loader.js
[2012.12.31 15:19:16 | 000,000,847 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Eshop\Prestashop Install\prestashop\js\jquery\plugins\treeview-categories\images\ajax-loader.gif
[2012.12.31 15:19:16 | 000,003,719 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Eshop\Prestashop Install\prestashop\modules\carriercompare\loader.gif
[2012.12.31 15:19:16 | 000,001,849 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Eshop\Prestashop Install\prestashop\modules\shopimporter\img\ajax-loader.gif
[2012.12.31 15:19:16 | 000,000,057 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Eshop\Prestashop Install\prestashop\override\classes\FileUploader.php
[2012.12.31 15:19:16 | 000,003,208 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Eshop\Prestashop Install\prestashop\themes\default\img\ajax-loader.gif
[2012.12.31 15:19:16 | 000,007,825 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Eshop\Prestashop Install\prestashop\themes\default\mobile\img\ajax-loader.gif
[2012.12.31 15:19:16 | 000,000,340 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Eshop\Prestashop Install\prestashop\themes\default\mobile\img\ajax-loader.png
[2012.12.31 15:19:18 | 000,000,910 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Eshop\Prestashop Install\prestashop\tools\swift\Swift\ClassLoader.php
[2013.01.23 21:04:46 | 000,041,330 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Podklady společnosti\Marketing\- Web (Mojža)\Instalace Wordpress\wordpress\wp-includes\script-loader.php
[2012.10.31 23:01:14 | 000,002,060 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Podklady společnosti\Marketing\- Web (Mojža)\Instalace Wordpress\wordpress\wp-includes\template-loader.php
[2012.11.30 02:18:08 | 000,003,915 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Podklady společnosti\Marketing\- Web (Mojža)\Instalace Wordpress\wordpress\wp-includes\images\uploader-icons-2x.png
[2012.11.30 02:18:08 | 000,001,593 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Podklady společnosti\Marketing\- Web (Mojža)\Instalace Wordpress\wordpress\wp-includes\images\uploader-icons.png
[2012.11.21 22:31:56 | 000,004,244 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Podklady společnosti\Marketing\- Web (Mojža)\Instalace Wordpress\wordpress\wp-includes\js\customize-loader.js
[2012.11.21 22:31:56 | 000,002,642 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Podklady společnosti\Marketing\- Web (Mojža)\Instalace Wordpress\wordpress\wp-includes\js\customize-loader.min.js
[2013.03.19 13:59:55 | 000,151,006 | ---- | M] () -- \Windows\Prefetch\SRDOWNLOADER.EXE-D6F6E416.pf
[2009.07.14 13:25:34 | 002,202,645 | R--- | M] () -- \Windows\Setup\SCRIPTS\Windows7Loader.exe
[2010.11.20 12:09:38 | 000,004,290 | ---- | M] () -- \Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.17514_fi-fi_73a52105efe44483.manifest
[2010.11.20 14:33:18 | 000,004,338 | ---- | M] () -- \Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.17514_zh-cn_344529e2e1c53ac6.manifest
[2013.01.04 05:43:53 | 000,003,584 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 02:15:12 | 000,038,400 | ---- | M] () -- \Windows\System32\dmloader.dll
[2013.01.04 05:43:53 | 000,003,584 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 02:15:12 | 000,038,400 | ---- | M] () -- \Windows\SysWOW64\dmloader.dll
[2009.07.14 02:40:31 | 000,047,616 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_a1e90d98a953d601\dmloader.dll
[2009.07.14 02:24:53 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:04:54 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16850_none_66c2596d956d1920\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.18 16:22:27 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17107_none_66ff46fd953e6c5c\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:28:57 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17135_none_66dcd6a595588d81\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:41:11 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17179_none_66b5981d957562a1\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 06:26:58 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17206_none_66fe4899953f502c\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:06:43 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21010_none_67770e0aae6a7c68\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 19:46:36 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21306_none_6787e564ae5ceff6\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:26:17 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21335_none_67667556ae762a72\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:36:06 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21386_none_67316604ae9dcf7e\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 15:12:39 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21416_none_677d175eae65090e\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:21:03 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17651_none_68a9b6bd92929e63\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 19:38:32 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17932_none_68c05c919281774d\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:38:48 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17965_none_68a2edab92971725\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:38:44 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18015_none_68d8d569926ebeb2\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:12:44 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21772_none_691eb3faabbf8f66\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 19:09:47 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22091_none_6907efc6abd0db81\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:35:00 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22125_none_6957a248ab947a6d\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:39:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22177_none_69239340abbb38d0\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 06:32:07 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22209_none_6971452eab80a50e\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 16:17:49 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2009.07.14 16:17:49 | 000,033,360 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.efi.mui_35ee487d
[2009.07.14 16:17:49 | 000,034,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.exe.mui_3bc5b827
[2009.07.14 16:17:49 | 000,029,776 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.efi.mui_f412814e
[2009.07.14 16:17:49 | 000,030,288 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.exe.mui_ff8b5358
[2012.10.27 00:14:21 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16757_none_b73e23c9863dba66.manifest
[2012.10.27 00:14:21 | 000,640,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16757_none_b73e23c9863dba66_winload.efi_75834aa0
[2012.10.27 00:14:21 | 000,603,976 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16757_none_b73e23c9863dba66_winload.exe_75835076
[2012.10.27 00:14:21 | 000,556,928 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16757_none_b73e23c9863dba66_winresume.efi_85cd069f
[2012.10.27 00:14:21 | 000,518,160 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16757_none_b73e23c9863dba66_winresume.exe_85cd1215
[2009.07.14 03:57:50 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009.07.14 03:57:50 | 000,019,008 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59_spldr.sys_98bd87a0
[2009.07.14 16:15:51 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2009.07.14 03:13:42 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16385_none_b71babd98657e6ef.manifest
[2011.02.05 14:09:31 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16757_none_b73e23c9863dba66.manifest
[2011.02.05 14:04:44 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.20897_none_b79c80e49f7bc9f4.manifest
[2010.11.20 06:12:44 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_b94cbfa183466a89.manifest
[2011.02.05 18:34:23 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2011.02.05 14:09:57 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.21655_none_b9ac1d069c83936e.manifest
[2009.07.14 03:18:27 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009.07.14 02:15:12 | 000,038,400 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_45ca7214f0f664cb\dmloader.dll
[2009.07.14 02:03:49 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 05:19:58 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16850_none_0aa3bde9dd0fa7ea\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.18 12:09:17 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17107_none_0ae0ab79dce0fb26\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 17:45:38 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17135_none_0abe3b21dcfb1c4b\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 05:56:23 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17179_none_0a96fc99dd17f16b\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 05:43:53 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17206_none_0adfad15dce1def6\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 05:12:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21010_none_0b587286f60d0b32\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 18:42:56 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21306_none_0b6949e0f5ff7ec0\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 17:48:05 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21335_none_0b47d9d2f618b93c\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 05:44:10 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21386_none_0b12ca80f6405e48\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 05:39:49 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21416_none_0b5e7bdaf60797d8\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 05:15:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17651_none_0c8b1b39da352d2d\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 18:32:13 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17932_none_0ca1c10dda240617\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 17:40:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17965_none_0c845227da39a5ef\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 05:45:15 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18015_none_0cba39e5da114d7c\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 05:36:48 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21772_none_0d001876f3621e30\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 18:23:16 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22091_none_0ce95442f3736a4b\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 17:29:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22125_none_0d3906c4f3370937\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 05:46:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22177_none_0d04f7bcf35dc79a\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 05:43:16 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22209_none_0d52a9aaf32333d8\api-ms-win-core-libraryloader-l1-1-0.dll

< *minodlogin* /s >

< *tnod* /s >
[2010.03.27 14:34:12 | 000,000,679 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Contribute CS5\App\Configuration\Shared\Google\FreeSearch\Help\skin_textnode.swf
[2010.04.01 21:41:12 | 000,000,631 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Dreamweaver CS5\configuration\Content\Reference\JavaScript\TextNode.html
[2010.03.04 19:19:34 | 000,005,486 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexbuilder.ajaxbridge_4.0.0.272416\com\adobe\flexbuilder\ajaxbridge\nodes\SAbstractNode.class

< *AutoKMS* /s >
[2012.10.26 22:59:06 | 000,614,400 | ---- | M] () -- \Windows\AutoKMS.exe
[2012.10.26 22:59:06 | 000,000,135 | ---- | M] () -- \Windows\AutoKMS.ini
[2013.03.17 08:13:49 | 000,002,501 | ---- | M] () -- \Windows\AutoKMS.log
[2013.03.17 08:13:49 | 000,000,204 | ---- | M] () -- \Windows\Tasks\AutoKMS.job

< *activator* /s >
[2010.03.04 19:19:28 | 000,002,513 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flash.codemodel.osgi_4.0.0.272416\classes\com\ctc\wstx\osgi\WstxBundleActivator.class
[2010.03.04 19:19:12 | 000,001,215 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexbuilder.ajaxbridge_4.0.0.272416\com\adobe\flexbuilder\ajaxbridge\Activator.class
[2010.03.04 19:19:02 | 000,001,718 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexbuilder.axis2_4.0.0.272416\com\adobe\flexbuilder\axis2\Axis2Activator.class
[2010.03.04 19:18:58 | 000,000,946 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexbuilder.dcrad.derived_4.0.0.272416\com\adobe\flexbuilder\dcrad\derived\Activator.class
[2010.03.04 19:18:30 | 000,000,958 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexbuilder.flexunit.derived_4.0.0.272416\com\adobe\flexbuilder\flexunit\derived\Activator.class
[2010.03.04 19:18:48 | 000,000,309 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexbuilder.monitors.network_4.0.0.272416\com\adobe\flexbuilder\monitors\network\store\persist\IActivatorPassivator.class
[2010.03.04 19:19:30 | 000,000,919 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexbuilder.multisdk_4.0.0.272416\com\adobe\flexbuilder\multisdk\Activator.class
[2010.03.04 19:18:14 | 000,005,283 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexide.amt_4.0.0.272416\com\adobe\flexide\amt\Activator.class
[2010.03.04 19:18:16 | 000,001,324 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexide.designitems_4.0.0.272416\com\adobe\flexide\designitems\Activator.class
[2010.03.04 19:18:36 | 000,001,574 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexide.embeddedplayer_4.0.0.272416\com\adobe\flexide\embeddedplayer\Activator.class
[2010.03.04 19:18:48 | 000,000,926 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexide.exportimport_4.0.0.272416\com\adobe\flexide\exportimport\Activator.class
[2010.03.04 19:19:18 | 000,001,220 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexide.playerview_4.0.0.272416\com\adobe\flexide\playerview\Activator.class
[2010.03.04 19:19:16 | 000,001,640 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexide.refactoring.core_4.0.0.272416\com\adobe\flexide\refactoring\core\Activator.class
[2010.03.04 19:19:52 | 000,007,913 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\3.5.0\frameworks\projects\framework\src\mx\skins\halo\ActivatorSkin.as
[2010.03.04 19:20:00 | 000,005,426 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\3.5.0\frameworks\projects\haloclassic\src\haloclassic\ActivatorSkin.as
[2010.03.04 19:20:54 | 000,008,253 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\framework\src\mx\skins\halo\ActivatorSkin.as
[2010.03.19 10:29:48 | 000,002,513 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\plugins\com.adobe.flash.codemodel.osgi_1.0.0.273393\classes\com\ctc\wstx\osgi\WstxBundleActivator.class
[2010.03.19 10:29:44 | 000,000,919 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\plugins\com.adobe.flexbuilder.multisdk_1.0.0.273393\com\adobe\flexbuilder\multisdk\Activator.class
[2010.03.19 10:29:46 | 000,005,283 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\plugins\com.adobe.flexide.amt_1.0.0.273393\com\adobe\flexide\amt\Activator.class
[2010.03.19 10:29:44 | 000,001,324 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\plugins\com.adobe.flexide.designitems_1.0.0.273393\com\adobe\flexide\designitems\Activator.class
[2010.03.19 10:29:44 | 000,001,574 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\plugins\com.adobe.flexide.embeddedplayer_1.0.0.273393\com\adobe\flexide\embeddedplayer\Activator.class
[2010.03.19 10:29:48 | 000,000,926 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\plugins\com.adobe.flexide.exportimport_1.0.0.273393\com\adobe\flexide\exportimport\Activator.class
[2010.03.19 10:29:44 | 000,001,220 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\plugins\com.adobe.flexide.playerview_1.0.0.273393\com\adobe\flexide\playerview\Activator.class
[2010.03.19 10:29:46 | 000,001,640 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\plugins\com.adobe.flexide.refactoring.core_1.0.0.273393\com\adobe\flexide\refactoring\core\Activator.class
[2010.03.19 10:29:50 | 000,002,090 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\plugins\com.adobe.thermo.artboard_1.0.0.273393\com\adobe\thermo\artboard\Activator.class
[2010.03.19 10:29:52 | 000,000,903 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\plugins\com.adobe.thermo.fxpupdate_1.0.0.273393\com\adobe\thermo\fxpupdate\Activator.class
[2010.03.19 10:29:52 | 000,002,860 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\plugins\com.adobe.thermo.launching.ui_1.0.0.273393\com\adobe\thermo\launching\ui\Activator.class
[2010.03.19 10:29:50 | 000,017,035 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\plugins\com.adobe.thermo_1.0.0.273393\com\adobe\thermo\Activator.class
[2010.03.19 10:40:28 | 000,008,253 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\framework\src\mx\skins\halo\ActivatorSkin.as
[2010.03.27 04:58:48 | 000,002,319 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5\Common\First Run\Classes\mx\skins\halo\ActivatorSkin.as
[2010.03.27 04:58:48 | 000,001,806 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash CS5\Common\First Run\Classes\mx\skins\sample\ActivatorSkin.as

< *serial* /s >
[2010.03.18 11:30:20 | 000,001,673 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Encore CS5\LMResources\BadSerialNumberAlert.exv
[2010.03.18 11:30:20 | 000,001,561 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Encore CS5\LMResources\CantChangeSerialNumberAlert.exv
[2010.03.18 11:30:20 | 000,001,639 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Encore CS5\LMResources\InValidUpGradeSerialNumberAlert.exv
[2010.03.18 11:30:20 | 000,000,849 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Encore CS5\LMResources\ReserializeAlert.exv
[2010.03.18 11:30:20 | 000,027,443 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Encore CS5\LMResources\SerializationWF.exv
[2010.03.18 13:46:20 | 000,089,600 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Encore CS5\Plug-ins\Common\DeviceControlSerial.prm
[2010.03.04 19:19:28 | 000,001,975 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexbuilder.dcrad.nl1_4.0.0.272416\nl\de_DE\dcradSwcs\4.0\locale\serializers_rb.swc
[2010.03.04 19:19:26 | 000,000,170 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexbuilder.dcrad.nl1_4.0.0.272416\nl\de_DE\serializers\bundles\src\serializer.properties
[2010.03.04 19:18:14 | 000,001,997 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexbuilder.dcrad.nl1_4.0.0.272416\nl\fr_FR\dcradSwcs\4.0\locale\serializers_rb.swc
[2010.03.04 19:18:42 | 000,000,231 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexbuilder.dcrad.nl1_4.0.0.272416\nl\fr_FR\serializers\bundles\src\serializer.properties
[2010.03.04 19:18:14 | 000,001,995 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexbuilder.dcrad.nl1_4.0.0.272416\nl\ja_JP\dcradSwcs\3.5\locale\serializers_rb.swc
[2010.03.04 19:18:52 | 000,002,023 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexbuilder.dcrad.nl1_4.0.0.272416\nl\ja_JP\dcradSwcs\4.0\locale\serializers_rb.swc
[2010.03.04 19:19:10 | 000,000,344 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexbuilder.dcrad.nl1_4.0.0.272416\nl\ja_JP\serializers\bundles\src\serializer.properties
[2010.03.04 19:18:46 | 000,002,044 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexbuilder.dcrad.nl1_4.0.0.272416\nl\ru_RU\dcradSwcs\4.0\locale\serializers_rb.swc
[2010.03.04 19:19:04 | 000,000,609 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexbuilder.dcrad.nl1_4.0.0.272416\nl\ru_RU\serializers\bundles\src\serializer.properties
[2010.03.04 19:18:28 | 000,001,997 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexbuilder.dcrad.nl1_4.0.0.272416\nl\zh_CN\dcradSwcs\4.0\locale\serializers_rb.swc
[2010.03.04 19:18:30 | 000,000,242 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexbuilder.dcrad.nl1_4.0.0.272416\nl\zh_CN\serializers\bundles\src\serializer.properties
[2010.03.04 19:18:28 | 000,015,963 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexbuilder.dcrad_4.0.0.272416\dcradSwcs\3.5\libs\serializers.swc
[2010.03.04 19:18:26 | 000,001,918 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexbuilder.dcrad_4.0.0.272416\dcradSwcs\3.5\locale\serializers_rb.swc
[2010.03.04 19:18:44 | 000,016,583 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexbuilder.dcrad_4.0.0.272416\dcradSwcs\4.0\libs\serializers.swc
[2010.03.04 19:19:04 | 000,001,967 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexbuilder.dcrad_4.0.0.272416\dcradSwcs\4.0\locale\serializers_rb.swc
[2010.03.04 19:18:32 | 000,000,413 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexbuilder.services.CFService_4.0.0.272416\com\adobe\flexbuilder\dcrad\introspection\internal\coldfusion\DeserializationContext.class
[2010.03.04 19:19:04 | 000,000,946 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexbuilder.services.CFService_4.0.0.272416\com\adobe\flexbuilder\dcrad\introspection\internal\coldfusion\DeserializerWorker$InvalidWddxPacketException.class
[2010.03.04 19:19:34 | 000,001,155 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexbuilder.services.CFService_4.0.0.272416\com\adobe\flexbuilder\dcrad\introspection\internal\coldfusion\DeserializerWorker$WddxElementAccessException.class
[2010.03.04 19:18:40 | 000,007,429 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexbuilder.services.CFService_4.0.0.272416\com\adobe\flexbuilder\dcrad\introspection\internal\coldfusion\DeserializerWorker.class
[2010.03.04 19:19:10 | 000,001,091 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexbuilder.services.CFService_4.0.0.272416\com\adobe\flexbuilder\dcrad\introspection\internal\coldfusion\WddxDeserializationException.class
[2010.03.04 19:19:24 | 000,001,480 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexbuilder.services.CFService_4.0.0.272416\com\adobe\flexbuilder\dcrad\introspection\internal\coldfusion\WddxDeserializer.class
[2010.03.04 19:18:28 | 000,000,291 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\plugins\com.adobe.flexide.designitems_4.0.0.272416\com\adobe\flexide\data\DummyDataProvider$IASSerializable.class
[2010.03.04 19:19:52 | 000,001,768 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\3.5.0\frameworks\projects\rpc\src\mx\messaging\errors\MessageSerializationError.as
[2010.03.04 19:19:50 | 000,009,065 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\3.5.0\frameworks\projects\rpc\src\mx\rpc\http\SerializationFilter.as
[2010.03.04 19:20:56 | 000,009,189 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\composition\SerialElement.as
[2010.03.04 19:20:06 | 000,001,897 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\composition\SerialElementSegment.as
[2010.03.04 19:20:04 | 000,005,541 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\composition\SerialElementTransitionManager.as
[2010.03.04 19:20:34 | 000,013,348 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\composition\SerialSeekableTrait.as
[2010.03.04 19:20:14 | 000,002,059 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\composition\SerialSeekOperationInfo.as
[2010.03.04 19:20:44 | 000,004,192 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\composition\SerialSpatialTrait.as
[2010.03.04 19:20:44 | 000,006,955 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\composition\SerialSwitchableTrait.as
[2010.03.04 19:20:50 | 000,004,590 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\composition\SerialViewableTrait.as
[2010.03.04 19:20:36 | 000,002,248 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\rpc\src\mx\messaging\errors\MessageSerializationError.as
[2010.03.04 19:20:50 | 000,009,969 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Builder 4\sdks\4.0.0\frameworks\projects\rpc\src\mx\rpc\http\SerializationFilter.as
[2010.03.19 10:29:44 | 000,000,291 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\plugins\com.adobe.flexide.designitems_1.0.0.273393\com\adobe\flexide\data\DummyDataProvider$IASSerializable.class
[2010.03.19 10:40:36 | 000,009,189 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\composition\SerialElement.as
[2010.03.19 10:40:42 | 000,001,897 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\composition\SerialElementSegment.as
[2010.03.19 10:40:42 | 000,005,541 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\composition\SerialElementTransitionManager.as
[2010.03.19 10:40:36 | 000,013,348 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\composition\SerialSeekableTrait.as
[2010.03.19 10:40:48 | 000,002,059 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\composition\SerialSeekOperationInfo.as
[2010.03.19 10:40:28 | 000,004,192 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\composition\SerialSpatialTrait.as
[2010.03.19 10:41:04 | 000,006,955 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\composition\SerialSwitchableTrait.as
[2010.03.19 10:40:48 | 000,004,590 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\osmf\src\org\osmf\composition\SerialViewableTrait.as
[2010.03.19 10:40:28 | 000,002,248 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\rpc\src\mx\messaging\errors\MessageSerializationError.as
[2010.03.19 10:40:44 | 000,009,969 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Flash Catalyst CS5\sdks\4.0.0\frameworks\projects\rpc\src\mx\rpc\http\SerializationFilter.as
[2010.03.27 05:01:10 | 000,577,984 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Illustrator CS5\Support Files\Contents\Windows\boost_serialization.dll
[2010.03.27 14:32:10 | 000,009,728 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\bin\TestPlainTextSerializer.exe
[2010.03.27 14:32:24 | 000,002,845 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\idl\nsIDOMLSSerializer.idl
[2010.03.27 14:32:24 | 000,002,093 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\idl\nsIDOMLSSerializerFilter.idl
[2010.03.27 14:32:26 | 000,003,607 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\idl\nsIDOMSerializer.idl
[2010.03.27 14:32:30 | 000,002,512 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\idl\nsIRDFXMLSerializer.idl
[2010.03.27 14:32:32 | 000,002,951 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\idl\nsISerializable.idl
[2010.03.27 14:32:36 | 000,002,506 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\idl\rdfISerializer.idl
[2010.03.27 14:32:40 | 000,006,263 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\include\mozISanitizingSerializer.h
[2010.03.27 14:32:46 | 000,004,518 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\include\nsIContentSerializer.h
[2010.03.27 14:32:48 | 000,007,959 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\include\nsIDOMLSSerializer.h
[2010.03.27 14:32:48 | 000,002,831 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\include\nsIDOMLSSerializerFilter.h
[2010.03.27 14:32:52 | 000,005,289 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\include\nsIDOMSerializer.h
[2010.03.27 14:33:00 | 000,003,854 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\include\nsIRDFXMLSerializer.h
[2010.03.27 14:33:02 | 000,004,091 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\include\nsISerializable.h
[2010.03.27 14:33:12 | 000,003,192 | ---- | M] () -- \Program Files (x86)\Common Files\Adobe\Adobe Contribute CS5\App\Configuration\Browsers\Mozilla Run Time Libraries\dist\include\rdfISerializer.h
[2003.10.09 06:11:48 | 000,000,216 | ---- | M] () -- \Program Files (x86)\Image-Line\FL Studio 10\Plugins\Fruity\Generators\Sytrus\Artwork\DelSerialCache.bmp
[2012.10.06 11:54:25 | 000,970,752 | ---- | M] () -- \Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2009.07.14 16:17:32 | 000,090,112 | ---- | M] () -- \Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\cs\System.RunTime.Serialization.Resources.dll
[2004.01.06 18:21:12 | 000,007,684 | ---- | M] () -- \Program Files (x86)\VstPlugins\Rob Papen\Albino3Banks\Super Pads\Serial CreamPad.FXP
[2012.10.06 11:53:00 | 000,847,872 | ---- | M] () -- \Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2009.07.14 16:17:32 | 000,090,112 | ---- | M] () -- \Program Files\Reference Assemblies\Microsoft\Framework\v3.0\cs\System.RunTime.Serialization.Resources.dll
[2012.12.31 15:19:16 | 000,002,013 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Eshop\Prestashop Install\prestashop\js\jquery\plugins\jquery.serialScroll.js
[2012.12.31 15:19:16 | 000,000,544 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Eshop\Prestashop Install\prestashop\themes\default\img\icon\serial_scroll_left.gif
[2012.12.31 15:19:16 | 000,000,508 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Eshop\Prestashop Install\prestashop\themes\default\img\icon\serial_scroll_right.gif
[2011.01.20 23:09:38 | 000,000,783 | ---- | M] () -- \Users\Randaal\Dropbox\Práce\Dinare.cz\Podklady společnosti\Marketing\- Web (Mojža)\Instalace Wordpress\wordpress\wp-includes\js\jquery\jquery.serialize-object.js
[2009.07.14 16:17:20 | 000,011,776 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap.resources\2.0.0.0_cs_b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2009.06.10 22:23:19 | 000,131,072 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2009.07.14 16:17:32 | 000,090,112 | ---- | M] () -- \Windows\assembly\GAC_MSIL\system.runtime.serialization.resources\3.0.0.0_cs_b77a5c561934e089\System.RunTime.Serialization.Resources.dll
[2012.10.06 11:54:25 | 000,970,752 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2013.01.10 03:50:01 | 002,347,008 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\428143857fa1c250d50ec55132dd8a2f\System.Runtime.Serialization.ni.dll
[2013.01.10 03:43:58 | 000,310,784 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\eb60d17f642ddd80e019687c1e02ba17\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2013.01.10 03:47:01 | 000,396,288 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\b61f892f0a2316a04d2355110baa18d7\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2013.01.10 03:49:10 | 003,073,536 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\cb489f4e0c2d28c567473c2cf7625e99\System.Runtime.Serialization.ni.dll
[2013.01.10 03:26:20 | 000,311,296 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\77abf1693d291d374b58ffbbfe36d4dd\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2013.01.10 03:26:14 | 002,647,040 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\910fe53ec2122cf3a2ad11c2b2f5cbfd\System.Runtime.Serialization.ni.dll
[2013.01.10 03:28:20 | 000,009,216 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Xml.Serializ#\058c3947c450591cb81643529cfd5ca7\System.Xml.Serialization.ni.dll
[2013.01.10 03:20:48 | 003,412,992 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Seri#\a3a3ccd41789ba4eb01f51db6c508222\System.Runtime.Serialization.ni.dll
[2013.01.10 03:20:58 | 000,376,832 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Seri#\c79d7323e38d906c09917fe1d40b2ad7\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2013.01.10 03:24:20 | 000,010,240 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Xml.Serializ#\7711bba76f0bf9a22deaa8bb2e09bb16\System.Xml.Serialization.ni.dll
[2012.10.29 07:41:25 | 000,017,840 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap.resources\v4.0_4.0.0.0_cs_b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2013.02.13 23:56:43 | 000,122,264 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2012.10.29 07:41:25 | 000,099,208 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.RunTime.Serialization.resources\v4.0_4.0.0.0_cs_b77a5c561934e089\System.RunTime.Serialization.resources.dll
[2013.02.13 23:56:40 | 001,026,936 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2013.02.13 23:56:52 | 000,011,120 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.Serialization.dll
[2009.06.10 22:23:19 | 000,131,072 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2009.07.14 16:17:21 | 000,011,776 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v2.0.50727\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2012.10.06 11:54:26 | 000,970,752 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2010.03.18 13:16:28 | 001,026,936 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.dll
[2010.03.18 13:16:28 | 000,122,264 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Formatters.Soap.dll
[2011.04.06 16:48:20 | 000,011,120 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Xml.Serialization.dll
[2010.06.15 02:33:16 | 000,017,840 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2010.06.15 02:33:16 | 000,099,208 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\cs\System.RunTime.Serialization.resources.dll
[2009.06.10 21:40:06 | 000,131,072 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2009.07.14 16:17:19 | 000,011,776 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v2.0.50727\cs\System.Runtime.Serialization.Formatters.Soap.Resources.dll
[2012.10.06 11:53:01 | 000,847,872 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2010.03.18 13:16:28 | 001,026,936 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.dll
[2010.03.18 13:16:28 | 000,122,264 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.Formatters.Soap.dll
[2011.04.06 16:48:20 | 000,011,120 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Xml.Serialization.dll
[2010.06.15 02:48:20 | 000,017,840 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2010.06.15 02:48:20 | 000,099,208 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\cs\System.RunTime.Serialization.resources.dll
[2010.11.20 05:55:00 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17514_hu-hu_1778ab4419ab99ad.manifest
[2010.11.20 05:50:38 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17514_nl-nl_28520112cd09eae9.manifest
[2010.11.20 05:54:56 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17514_sv-se_0bbde5ad62777806.manifest
[2010.11.20 06:45:14 | 000,001,638 | ---- | M] () -- \Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17514_zh-cn_493a46a2345c6076.manifest
[2010.11.20 06:43:54 | 000,001,638 | ---- | M] () -- \Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17514_zh-tw_48d9179c34a52b86.manifest
[2010.11.05 02:54:38 | 000,011,776 | ---- | M] () -- \Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\amd64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_1e527062c1f59d5f\System.Runtime.Serialization.Formatters.Soap.Resources.dll
[2010.11.05 02:54:42 | 000,090,112 | ---- | M] () -- \Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\amd64_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_bb9a1800691e639c\System.RunTime.Serialization.Resources.dll
[2010.11.05 02:52:16 | 000,847,872 | ---- | M] () -- \Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17514_none_5918bfde74e3f722\System.Runtime.Serialization.dll
[2010.11.05 02:52:08 | 000,847,872 | ---- | M] () -- \Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_93efcca8c8dbf1bb\System.Runtime.Serialization.dll
[2010.11.05 02:52:39 | 000,970,752 | ---- | M] () -- \Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17514_none_a67f221874da7f4c\System.Runtime.Serialization.dll
[2010.11.05 02:52:27 | 000,970,752 | ---- | M] () -- \Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17514_none_d6c257b29c81807f\System.Runtime.Serialization.dll
[2010.11.05 02:53:33 | 000,011,776 | ---- | M] () -- \Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\wow64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_28a71ab4f6565f5a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2010.11.05 02:53:39 | 000,090,112 | ---- | M] () -- \Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\x86_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_5f7b7c7cb0c0f266\System.RunTime.Serialization.Resources.dll
[2010.11.05 02:52:27 | 000,970,752 | ---- | M] () -- \Windows\SoftwareDistribution\Download\433767575943dacb697ee0558fc08c06\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_db9d037fdd581ac1\System.Runtime.Serialization.dll
[2009.07.14 02:16:13 | 000,015,360 | ---- | M] () -- \Windows\System32\serialui.dll
[2009.07.14 16:17:13 | 000,005,120 | ---- | M] () -- \Windows\System32\cs-CZ\serialui.dll.mui
[2009.07.14 01:00:40 | 000,094,208 | ---- | M] () -- \Windows\System32\DriverStore\FileRepository\msports.inf_amd64_neutral_fdcfb86ce78678d1\serial.sys
[2009.06.10 21:37:50 | 000,038,400 | ---- | M] () -- \Windows\System32\DriverStore\FileRepository\smartcrd.inf_amd64_neutral_6fb75ea318f84fe5\grserial.sys
[2009.07.14 02:16:13 | 000,015,360 | ---- | M] () -- \Windows\SysWOW64\serialui.dll
[2009.07.14 16:17:13 | 000,005,120 | ---- | M] () -- \Windows\SysWOW64\cs-CZ\serialui.dll.mui
[2009.07.14 16:17:19 | 000,011,776 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_1c215c9ac50719c5\System.Runtime.Serialization.Formatters.Soap.Resources.dll
[2009.07.14 16:17:22 | 000,005,120 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_aa5fd338fd5bcb23\serialui.dll.mui
[2009.07.14 02:41:54 | 000,017,920 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_50f69335385bc360\serialui.dll
[2009.07.14 16:17:32 | 000,090,112 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_b96904386c2fe002\System.RunTime.Serialization.Resources.dll
[2009.07.14 16:17:25 | 000,009,728 | ---- | M] () -- \Windows\winsxs\amd64_msports.inf.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_20ab142d65ed6acc\serial.sys.mui
[2009.07.14 01:00:40 | 000,094,208 | ---- | M] () -- \Windows\winsxs\amd64_msports.inf_31bf3856ad364e35_6.1.7600.16385_none_548ca258d20f4ada\serial.sys
[2009.06.10 21:40:06 | 000,131,072 | ---- | M] () -- \Windows\winsxs\amd64_netfx-system.runtim..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7600.16385_none_a9d1bee515273f56\System.Runtime.Serialization.Formatters.Soap.dll
[2009.06.10 21:37:50 | 000,038,400 | ---- | M] () -- \Windows\winsxs\amd64_smartcrd.inf_31bf3856ad364e35_6.1.7600.16385_none_ce9ed3064deed3aa\grserial.sys
[2009.06.10 21:30:46 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7600.16385_none_5943b25a748cb06c\System.Runtime.Serialization.dll
[2012.10.06 11:53:01 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7600.17136_none_593e9c4e749147df\System.Runtime.Serialization.dll
[2012.10.06 11:56:09 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7600.21337_none_4270dea28e38c1d7\System.Runtime.Serialization.dll
[2009.06.10 21:30:43 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.16385_none_941abf24c884ab05\System.Runtime.Serialization.dll
[2012.10.06 11:53:00 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.17136_none_9415a918c8894278\System.Runtime.Serialization.dll
[2012.10.06 11:56:08 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.21337_none_7d47eb6ce230bc70\System.Runtime.Serialization.dll
[2012.10.27 00:14:21 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7600.16757_none_6dccf6b5c641c933.manifest
[2012.10.27 00:14:21 | 000,017,792 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7600.16757_none_6dccf6b5c641c933_kdcom.dll_db5e7744
[2009.07.14 16:17:49 | 000,005,120 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_aa5fd338fd5bcb23_serialui.dll.mui_7d29d2a3
[2009.07.14 03:57:29 | 000,017,920 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_50f69335385bc360_serialui.dll_bea29328
[2009.07.14 16:17:47 | 000,005,120 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_4e4137b544fe59ed_serialui.dll.mui_7d29d2a3
[2009.07.14 03:58:37 | 000,015,360 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_f4d7f7b17ffe522a_serialui.dll_bea29328
[2009.07.14 03:15:17 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7600.16385_none_6daa7ec5c65bf5bc.manifest
[2011.02.05 14:10:43 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7600.16757_none_6dccf6b5c641c933.manifest
[2011.02.05 14:05:47 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7600.20897_none_6e2b53d0df7fd8c1.manifest
[2011.02.05 18:35:45 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7601.17556_none_6fb25371c3691bc8.manifest
[2011.02.05 14:11:05 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7601.21655_none_703aeff2dc87a23b.manifest
[2009.07.14 03:11:30 | 000,000,868 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft.windows.h..tserial-driverclass_31bf3856ad364e35_6.1.7600.16385_none_88b1c48f2026fe3f.manifest
[2009.07.14 03:26:23 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7600.16385_none_5943b25a748cb06c.manifest
[2012.10.06 19:44:48 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7600.17136_none_593e9c4e749147df.manifest
[2012.10.06 20:00:33 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7600.21337_none_4270dea28e38c1d7.manifest
[2010.11.20 06:21:24 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17514_none_5918bfde74e3f722.manifest
[2009.07.14 03:27:09 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.16385_none_941abf24c884ab05.manifest
[2012.10.06 19:46:10 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.17136_none_9415a918c8894278.manifest
[2012.10.06 20:01:29 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.21337_none_7d47eb6ce230bc70.manifest
[2010.11.20 06:22:10 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_93efcca8c8dbf1bb.manifest
[2009.07.14 02:52:33 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7600.16385_none_a6aa149474833896.manifest
[2012.10.06 19:07:20 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7600.17136_none_a6a4fe887487d009.manifest
[2012.10.06 19:58:54 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7600.21337_none_8fd740dc8e2f4a01.manifest
[2010.11.20 05:06:16 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17514_none_a67f221874da7f4c.manifest
[2009.07.14 16:16:38 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.16385_cs-cz_34555b4d83cf58b0.manifest
[2012.10.06 21:42:01 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.17136_cs-cz_3450454183d3f023.manifest
[2012.10.06 23:05:03 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.21337_cs-cz_1d8287959d7b6a1b.manifest
[2009.07.14 02:51:52 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7600.16385_none_d6ed4a2e9c2a39c9.manifest
[2012.10.06 19:11:48 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7600.17136_none_d6e834229c2ed13c.manifest
[2012.10.06 20:03:01 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7600.21337_none_c01a7676b5d64b34.manifest
[2010.11.20 05:05:38 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17514_none_d6c257b29c81807f.manifest
[2009.07.14 02:57:53 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.16385_none_dbc7f5fbdd00d40b.manifest
[2012.10.06 19:09:38 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.17136_none_dbc2dfefdd056b7e.manifest
[2012.10.06 20:00:53 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.21337_none_c4f52243f6ace576.manifest
[2010.11.20 05:10:46 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_db9d037fdd581ac1.manifest
[2009.06.10 22:23:19 | 000,131,072 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.seri..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7600.16385_none_1c9a3ec1e01c684b\System.Runtime.Serialization.Formatters.Soap.dll
[2009.07.14 16:17:20 | 000,011,776 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.seri..ters.soap.resources_b03f5f7f11d50a3a_6.1.7600.16385_cs-cz_d5c3552dd9b47144\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2009.06.10 22:14:06 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7600.16385_none_a6aa149474833896\System.Runtime.Serialization.dll
[2012.10.06 11:54:26 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7600.17136_none_a6a4fe887487d009\System.Runtime.Serialization.dll
[2012.10.06 11:57:06 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7600.21337_none_8fd740dc8e2f4a01\System.Runtime.Serialization.dll
[2009.07.14 16:17:32 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.16385_cs-cz_34555b4d83cf58b0\System.RunTime.Serialization.Resources.dll
[2009.07.14 16:17:32 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.17136_cs-cz_3450454183d3f023\System.RunTime.Serialization.Resources.dll
[2009.07.14 16:17:32 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.21337_cs-cz_1d8287959d7b6a1b\System.RunTime.Serialization.Resources.dll
[2009.06.10 22:13:54 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7600.16385_none_d6ed4a2e9c2a39c9\System.Runtime.Serialization.dll
[2012.10.06 11:54:25 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7600.17136_none_d6e834229c2ed13c\System.Runtime.Serialization.dll
[2012.10.06 11:57:05 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7600.21337_none_c01a7676b5d64b34\System.Runtime.Serialization.dll
[2009.07.14 16:17:21 | 000,011,776 | ---- | M] () -- \Windows\winsxs\wow64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_267606ecf967dbc0\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2009.07.14 16:17:13 | 000,005,120 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_4e4137b544fe59ed\serialui.dll.mui
[2009.07.14 02:16:13 | 000,015,360 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_f4d7f7b17ffe522a\serialui.dll
[2009.07.14 16:17:32 | 000,090,112 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_5d4a68b4b3d26ecc\System.RunTime.Serialization.Resources.dll
[2009.06.10 22:13:54 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.16385_none_dbc7f5fbdd00d40b\System.Runtime.Serialization.dll
[2012.10.06 11:54:25 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.17136_none_dbc2dfefdd056b7e\System.Runtime.Serialization.dll
[2012.10.06 11:57:05 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.21337_none_c4f52243f6ace576\System.Runtime.Serialization.dll

< *w7lxe* /s >

========== Alternate Data Streams ==========

@Alternate Data Stream - 162 bytes -> \Users\Randaal\Dropbox\Práce\Dinare.cz\Podklady společnosti\Marketing\- Web (Mojža)\Instalace Wordpress\wordpress\wp-includes\images\uploader-icons-2x.png:com.dropbox.attributes
@Alternate Data Stream - 161 bytes -> \Users\Randaal\Dropbox\Práce\Dinare.cz\Podklady společnosti\Marketing\- Web (Mojža)\Instalace Wordpress\wordpress\wp-includes\images\uploader-icons.png:com.dropbox.attributes

< End of report >

Uživatelský avatar
Randaal
Návštěvník
Návštěvník
Příspěvky: 58
Registrován: 20 říj 2008 22:57
Bydliště: Praha

Re: Relativně pomalé PC + jakýsi malware

#6 Příspěvek od Randaal »

OTL Extras logfile created on: 19.3.2013 13:03:12 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Randaal\Desktop
64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

3,99 Gb Total Physical Memory | 0,88 Gb Available Physical Memory | 22,03% Memory free
7,98 Gb Paging File | 3,74 Gb Available in Paging File | 46,89% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 148,95 Gb Total Space | 54,69 Gb Free Space | 36,72% Space Free | Partition Type: NTFS
Drive D: | 2328,64 Gb Total Space | 402,11 Gb Free Space | 17,27% Space Free | Partition Type: NTFS
Drive E: | 230,72 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS

Computer Name: RANDAAL-PC | User Name: Randaal | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)

[HKEY_USERS\S-1-5-21-964138951-4102265170-513961189-1001\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [Bridge] -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [Bridge] -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{089A464B-517B-42D4-875A-1FEAD21DDA19}" = lport=2869 | protocol=6 | dir=in | app=system |
"{0963D13C-E6F6-4AFA-A3DD-01639FAB5DF0}" = rport=10243 | protocol=6 | dir=out | app=system |
"{0A7CF070-50D7-45ED-A556-D29890F83059}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{0ABC64C3-CED3-4BF6-9FEC-5AB0CA12FE16}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{133ACA84-5AD3-4A69-8043-1BC543FD4DD2}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{31AF3BC9-147F-4FD5-BEDD-900C6D1824B9}" = rport=137 | protocol=17 | dir=out | app=system |
"{4CA1EDAD-01ED-433E-98F0-566093A051CE}" = lport=138 | protocol=17 | dir=in | app=system |
"{4D89D0B9-66E7-4D16-86CA-9F0907947AB9}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{51FB685E-F711-4745-B210-4782ABACCEC2}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{5242881A-B1DB-4122-A5B9-2CBD1030E063}" = lport=10243 | protocol=6 | dir=in | app=system |
"{52EA9D6A-B491-4A70-BB6A-2B0BFA263734}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{5B1CC0A2-668A-4AA6-8006-CEF19EA1AB3E}" = lport=137 | protocol=17 | dir=in | app=system |
"{6FBA3AD0-3F21-4742-BAA7-8B056E00059F}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{6FC50A30-F551-4ABA-8700-3DA2BE4E2314}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{807F7B86-8415-4C7E-B3A7-2791CB54E0C8}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{855C6089-521E-464C-A51B-3621FBCF9637}" = lport=139 | protocol=6 | dir=in | app=system |
"{91A864EB-DF5F-4EFD-927C-919A540FBAF4}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{98CA37A0-4B3C-4A32-BF14-5AAF04C65C1E}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{9C89AC85-62A0-4AA5-9224-A4F9669FA622}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{9CF02DF7-528D-486C-8301-A55CEB5DAE43}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{A7139227-125C-43F6-9972-B2CC3C983D28}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{A81E9CE8-96D3-486A-822A-A68B8FCC5089}" = lport=445 | protocol=6 | dir=in | app=system |
"{AA579926-5755-4D87-9AF4-40E43F85FFF6}" = rport=138 | protocol=17 | dir=out | app=system |
"{AA68C0A6-8DBE-41EE-85CF-5438FA708256}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{B595FBA7-C9D9-4402-9C6E-467C29CA9BA0}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{BCFBC2EA-1CF1-4E60-810C-9F16B8B32B12}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{BEB883C7-5CEB-4C11-B93E-E870F27B6C4D}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\outlook.exe |
"{C36EBE96-4D0A-4A79-8181-3CC25BFE4D21}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{CA11E4A5-FF6A-45CC-824D-B217594C421C}" = rport=445 | protocol=6 | dir=out | app=system |
"{D97B935F-589C-4B69-AAF7-F7837CB3443A}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{E265244A-0076-4750-9B2C-9156FD7042EA}" = rport=139 | protocol=6 | dir=out | app=system |
"{E6CA4CF9-93E2-47F3-8336-83DCB4E67390}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{EDE220FF-AF71-4C50-94F4-6061F7ED5C56}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{F6F6946C-3437-447B-A5E6-67B863A7640D}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0A0A0B4A-E724-4924-A6E8-B5DED9524538}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{0BA89C0E-214B-4D28-8C67-61471C8493AF}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{0F017476-3E8F-48EF-9AD0-149351B3EFAA}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe |
"{1729B706-F26E-45C4-A9C8-E010BEEB7E24}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{17BEFAF6-146E-4443-97CF-CBA92D020D1E}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer.exe |
"{1A55ACA3-A8BE-4A51-AC3B-312AA9C77490}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{1D4B439F-1EF7-4B9E-9B73-B35E55D45543}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe |
"{209F381A-E570-4956-AA7A-DA4DD54E92D8}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{247A37BA-19B9-4F2A-8AC4-98A79071107D}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{25A4E93E-6A34-43E3-AB5E-B2FEB5F5A547}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{317FFBA8-4A9E-42A3-BE5E-F3D2CD69F313}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{33D64FF2-44C5-4375-B3EA-5AEFE14AFEBD}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{38A85B34-36CF-4FD7-881E-A6E7B46E1C06}" = protocol=17 | dir=in | app=c:\program files (x86)\pinnacle\studio 15\programs\rm.exe |
"{3FEBB083-8929-45F4-A766-E8F3E0CAA5F1}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe |
"{413E8984-75C6-41F1-B798-1CD98C05486B}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{51C0B6EA-DE50-4772-AA9D-9C516025592D}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer_service.exe |
"{52B7E1CE-26A2-4F8C-8C16-4BBBFDBB0244}" = protocol=17 | dir=in | app=c:\users\randaal\appdata\roaming\dropbox\bin\dropbox.exe |
"{5BBA4619-F686-4B32-9682-27BBDD2D09E6}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer_service.exe |
"{61169632-79DF-47E3-9910-7BE4076D5C83}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{61958CA9-B439-408E-AC74-8961F22E22E6}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{6C0DAF1E-0288-4FFF-9C94-E8C9F1079045}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{7172BD7A-647E-4458-8CD8-1BC7B6F6BCC0}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{76C68B43-0E32-4721-BE6A-1B2B087A00F1}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{8862A90B-B2E7-4412-AADC-69EC74F0AE07}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{8CB1FEF5-9B88-4F0D-A892-99C5DB5C88AB}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{8D3A1BC9-5E6E-4CE1-82F8-8269A158A226}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{9140FD56-CCF8-4099-9565-418722BD7360}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{9FC26374-52C6-4B16-9F38-E6EFBFC690EC}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{A4E42791-64D1-460D-98CD-BDEC64610E97}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{AA83D1CF-3852-4A3A-A2B6-4DEF4EA9FAAD}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{B2CC95E7-410E-40D4-BE2F-DCDC7D26C84C}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe |
"{B484D41C-81C6-4C5D-9EDC-EA7E3D6AB0AC}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{CC89410F-069F-42B9-9D28-9D1E7140B417}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{CD83A776-0A5F-4232-B4F1-C26B245A149A}" = protocol=6 | dir=out | app=system |
"{D17551DF-7206-4DC3-AF5A-BCA2698BF86E}" = protocol=6 | dir=in | app=c:\program files (x86)\pinnacle\studio 15\programs\studio.exe |
"{D36AACF5-113F-4531-8C8E-0896F76BA2D3}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer.exe |
"{DC9434C7-0F5C-4B2C-87BA-0A884FBA6051}" = protocol=6 | dir=in | app=c:\program files (x86)\pinnacle\studio 15\programs\umi.exe |
"{DEB24957-0D55-45AC-9FF5-DE6FCD3131BC}" = protocol=6 | dir=in | app=c:\users\randaal\appdata\roaming\dropbox\bin\dropbox.exe |
"{E694800F-9202-4EEC-BF27-214DFA7464D2}" = protocol=6 | dir=in | app=c:\program files (x86)\pinnacle\studio 15\programs\rm.exe |
"{E9BE2854-1C4B-4164-904C-A0948C8BBA42}" = protocol=17 | dir=in | app=c:\program files (x86)\pinnacle\studio 15\programs\studio.exe |
"{ECC5C976-5782-4227-94C4-686AD14B9C15}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{EE6B70F9-BB22-4354-8ECB-52861EAECE79}" = dir=out | app=%programfiles%\adobe\adobe photoshop lightroom 4\lightroom.exe |
"{F0F1C8F8-D9D6-4A0D-803D-664C8BBB3016}" = protocol=17 | dir=in | app=c:\program files (x86)\pinnacle\studio 15\programs\umi.exe |
"TCP Query User{1BDB00D9-B77C-43F7-9799-13E0DB37B8B4}D:\hry\age of empires\age of empires 2 (with expansion)\age2_x1.exe" = protocol=6 | dir=in | app=d:\hry\age of empires\age of empires 2 (with expansion)\age2_x1.exe |
"TCP Query User{1E8BE9F7-8370-4956-ACDD-7DDE1BFCEB69}C:\program files (x86)\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files (x86)\winamp\winamp.exe |
"TCP Query User{60345C8F-E566-478F-92B4-43A66B954A6F}C:\program files (x86)\awaremote pro server\awaremote pro server.exe" = protocol=6 | dir=in | app=c:\program files (x86)\awaremote pro server\awaremote pro server.exe |
"TCP Query User{6ECF7540-BF5A-4D7D-9A0E-DE1A4AA3F6DE}C:\windows\syswow64\dplaysvr.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\dplaysvr.exe |
"TCP Query User{9D5F70DA-71AB-403D-BBE0-DE10495C92A6}C:\program files\adobe\adobe after effects cs5\support files\afterfx.exe" = protocol=6 | dir=in | app=c:\program files\adobe\adobe after effects cs5\support files\afterfx.exe |
"TCP Query User{B5879ED3-F704-4BEE-B056-CC4E93A1C971}C:\program files (x86)\mozilla firefox\plugin-container.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\plugin-container.exe |
"UDP Query User{3410CDA4-0839-44D4-A057-2BDFDECA5676}C:\program files (x86)\awaremote pro server\awaremote pro server.exe" = protocol=17 | dir=in | app=c:\program files (x86)\awaremote pro server\awaremote pro server.exe |
"UDP Query User{3DD19E94-E42D-49C8-8A13-397F2473616B}C:\program files (x86)\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files (x86)\winamp\winamp.exe |
"UDP Query User{4BA6B1A3-2263-4B7F-B44C-77BFEE094EEC}C:\program files (x86)\mozilla firefox\plugin-container.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\plugin-container.exe |
"UDP Query User{578B146E-8D8E-4D26-958F-3B89BFD07E4B}C:\windows\syswow64\dplaysvr.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\dplaysvr.exe |
"UDP Query User{8BA753F3-945F-43BF-AB17-3E6205DE0CDF}D:\hry\age of empires\age of empires 2 (with expansion)\age2_x1.exe" = protocol=17 | dir=in | app=d:\hry\age of empires\age of empires 2 (with expansion)\age2_x1.exe |
"UDP Query User{F85A06A2-E389-4432-82DA-E4E0D03B4E2D}C:\program files\adobe\adobe after effects cs5\support files\afterfx.exe" = protocol=17 | dir=in | app=c:\program files\adobe\adobe after effects cs5\support files\afterfx.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{1E9FC118-651D-4934-97BE-E53CAE5C7D45}" = Microsoft_VC80_MFCLOC_x86_x64
"{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}" = Microsoft_VC80_CRT_x86_x64
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{669A82E0-43E2-4645-8A2E-1A3DE78F8312}" = Adobe Photoshop Lightroom 4 64-bit
"{6DE721A5-5E89-4D74-994C-652BB3C0672E}" = Ovladače videa společnosti Pinnacle
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{790E02A1-145A-3843-8C13-A4F41C9B48B7}" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"{8557397C-A42D-486F-97B3-A2CBC2372593}" = Microsoft_VC90_ATL_x86_x64
"{90140000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2010
"{90140000-002A-0405-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Czech) 2010
"{925D058B-564A-443A-B4B2-7E90C6432E55}" = Microsoft_VC80_ATL_x86_x64
"{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}" = Microsoft_VC90_CRT_x86_x64
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}" = Microsoft_VC90_MFC_x86_x64
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Ovladač 3D Vision 306.97
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Ovládací panel NVIDIA 306.97
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Ovladače grafiky 306.97
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizace NVIDIA 1.10.8
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components
"{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}" = Microsoft_VC80_MFC_x86_x64
"{CE52672C-A0E9-4450-8875-88A221D5CD50}" = Windows Live ID Sign-in Assistant
"{E489BCB7-D57D-4751-AAB6-589AF66E2F7F}" = Trapcode Particular
"{E9FA781F-3E80-4399-825A-AD3E11C28C77}" = MSVCRT110_amd64
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"CCleaner" = CCleaner
"HDMI" = Intel(R) Graphics Media Accelerator Driver
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile CSY Language Pack" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"NVIDIA Display Control Panel" = NVIDIA Display Control Panel
"NVIDIA Drivers" = NVIDIA Drivers
"sp6" = Logitech SetPoint 6.51
"Speccy" = Speccy
"WinRAR archiver" = WinRAR 4.20 (64-bit)

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{024521CF-C07E-4F8E-8481-0D75695E03AF}" = PxMergeModule
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{0454BB9A-2A7A-4214-BDFF-937F7A711A44}" = Windows Live Communications Platform
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{0C262D84-FFA4-4621-8ED7-41F8287369F5}" = Google Apps Migration For Microsoft Outlook® 2.3.12.34
"{0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}" = Adobe Community Help
"{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
"{15D2D75C-9CB2-4efd-BAD7-B9B4CB4BC693}" = BrowserProtect
"{15FEDA5F-141C-4127-8D7E-B962D1742728}" = Adobe Photoshop CS5
"{18C6A8F0-F0E7-4C68-9E14-DD4AED3FE741}_is1" = aWARemote Pro Server version 2.2.1
"{1BBD8D70-721A-41AD-AC8F-7308A0C8FA92}" = Adobe Creative Suite 5 Master Collection
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{26A24AE4-039D-4CA4-87B4-2F83217015FF}" = Java 7 Update 15
"{30F99474-EBE3-4134-A02B-F6CD38CFE243}" = Photo Gallery
"{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}" = eReg
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4CCBD1F4-CEEC-452A-9CB8-46564B501315}" = Windows Live UX Platform
"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.1
"{565DE707-5798-4FC3-8DF6-0F58A348A9B0}" = Adobe Premiere Pro CS5 Third Party Royalty Content
"{5AF4B3C4-C393-48D7-AC7E-8E7615579548}" = Adobe AIR
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{6A8DB215-7BCD-4377-B015-2E4541A3E7C6}" = Windows Live PIMT Platform
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7204BDEE-1A48-4D95-A964-44A9250B439E}" = Facebook Messenger 2.1.4814.0
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{797DC296-ADC5-4A08-8CBC-AEB0D6F4B249}" = Windows Live Essentials
"{8A642ACD-CE3A-4A23-A8B1-A0F7EB12B214}" = Windows Live SOXE Definitions
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110
"{90140000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2010
"{90140000-0015-0405-0000-0000000FF1CE}" = Microsoft Office Access MUI (Czech) 2010
"{90140000-0016-0405-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Czech) 2010
"{90140000-0018-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Czech) 2010
"{90140000-0019-0405-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Czech) 2010
"{90140000-001A-0405-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Czech) 2010
"{90140000-001B-0405-0000-0000000FF1CE}" = Microsoft Office Word MUI (Czech) 2010
"{90140000-001F-0405-0000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2010
"{90140000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2010
"{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010
"{90140000-001F-041B-0000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2010
"{90140000-002C-0405-0000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2010
"{90140000-0044-0405-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Czech) 2010
"{90140000-006E-0405-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2010
"{90140000-00A1-0405-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Czech) 2010
"{90140000-00BA-0405-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Czech) 2010
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{949815AB-D269-4DD3-AB1A-539432BAFC1E}" = TurboFLOORPLAN Dum & Interiér & Zahrada PRO
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A035950F-15BA-41C0-9D8F-165FC0536012}" = Movie Maker
"{A07B5EA3-DA77-42CB-A8F6-2813B36BDDB6}_is1" = eMagicOne Store Manager for PrestaShop DEMO 2.3.5.421
"{A1FBD2B3-6768-472D-BA46-C00EACBCE16C}" = Fotogalerie
"{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5
"{A7E7E283-8AB2-3EFE-A3BD-8482F72BAFCF}" = Google Talk Plugin
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC76BA86-7AD7-1029-7B44-AB0000000001}" = Adobe Reader XI (11.0.02) - Czech
"{C0AA232E-BD1B-40B5-A176-A2BEB67FFAE1}" = Adobe After Effects CS5 Third Party Content
"{C424CD5E-EA05-4D3E-B5DA-F9F149E1D3AC}" = Windows Live Installer
"{C9B6EFD0-4F01-4BBA-8374-39AD99A3ED72}" = Windows Live Photo Common
"{CD29B5CA-4727-4114-9AD9-25CCCE6E4014}" = Adobe After Effects CS5 Third Party Royalty Content
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{DE3A9DC5-9A5D-6485-9662-347162C7E4CA}" = Adobe Media Player
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E10DB5DA-E576-40EA-A7FC-1CB2A7B283A6}" = NVIDIA PhysX
"{E18F981B-401C-4D90-BC57-D8903564D558}" = Windows Live UX Platform Language Pack
"{EB5DF19E-75D5-4FF1-AE23-2A9A2E0F2BDD}" = Pinnacle Studio 15 Ultimate Plugins
"{EB91007A-0110-42A6-B869-2709955A9B2A}" = Photo Common
"{ED6C77F9-4D7E-447C-9EC0-9A212D075535}" = Movie Maker
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F92679BF-CA1F-4DD3-8269-A40A9AD873B1}" = Google Apps Sync™ for Microsoft Outlook® 3.2.353.947
"{FE7C0B3D-50B9-4951-BE78-A321CBF86552}" = Windows Live SOXE
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"ASIO4ALL" = ASIO4ALL
"avast" = avast! Free Antivirus
"BeyondCompare3_is1" = Beyond Compare version 3.0.4
"BSPlayerf" = BS.Player FREE
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"DAEMON Tools Lite" = DAEMON Tools Lite
"FileZilla Client" = FileZilla Client 3.6.0
"FL Studio 10" = FL Studio 10
"Google Calendar Sync" = Google Calendar Sync
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
"IL Download Manager" = IL Download Manager
"InstallShield_{949815AB-D269-4DD3-AB1A-539432BAFC1E}" = TurboFLOORPLAN Dum & Interiér & Zahrada PRO
"InstallShield_{E489BCB7-D57D-4751-AAB6-589AF66E2F7F}" = Trapcode Particular
"Knoll Light Factory EZ Studio 15" = Knoll Light Factory EZ Studio 15
"Morphine" = Morphine
"Mozilla Firefox 19.0.2 (x86 cs)" = Mozilla Firefox 19.0.2 (x86 cs)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"Office14.PROPLUS" = Microsoft Office Professional Plus 2010
"rajče.net_is1" = rajče průvodce verze 1.59.45.260
"Red Giant ToonIt Studio 15" = Red Giant ToonIt Studio 15
"reFX Nexus_is1" = reFX Nexus VSTi RTAS v2.2.0
"Rob Papen Albino 3" = Rob Papen Albino 3
"TeamViewer 8" = TeamViewer 8
"Winamp" = Winamp
"WinLiveSuite" = Windows Live Essentials

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-964138951-4102265170-513961189-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Dropbox" = Dropbox
"Europa Casino" = Europa Casino
"Winamp Detect" = Winamp Detector Plug-in

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 18.3.2013 19:43:33 | Computer Name = Randaal-PC | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro c:\program files\Adobe\adobe after
effects cs5\support files\(PCI)\Setup\resources\libraries\ARKCmdDefrag.dll se nezdařilo.
Závislé
sestavení Microsoft.VC90.CRT,processorArchitecture="x86",type="win32",version="9.0.30729.1"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 18.3.2013 19:43:33 | Computer Name = Randaal-PC | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro c:\program files\Adobe\adobe after
effects cs5\support files\(PCI)\Setup\resources\libraries\ARKCmdFS.dll se nezdařilo.
Závislé
sestavení Microsoft.VC90.CRT,processorArchitecture="x86",type="win32",version="9.0.30729.1"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 18.3.2013 19:43:33 | Computer Name = Randaal-PC | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro c:\program files\Adobe\adobe after
effects cs5\support files\(PCI)\Setup\resources\libraries\ARKEngine.dll se nezdařilo.
Závislé
sestavení Microsoft.VC90.CRT,processorArchitecture="x86",type="win32",version="9.0.30729.1"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 18.3.2013 19:43:37 | Computer Name = Randaal-PC | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro c:\program files\Adobe\adobe after
effects cs5\support files\(PCI)\setuproyalty\resources\libraries\ARKCmdCaps.dll
se nezdařilo. Závislé sestavení Microsoft.VC90.CRT,processorArchitecture="x86",type="win32",version="9.0.30729.1"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 18.3.2013 19:43:37 | Computer Name = Randaal-PC | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro c:\program files\Adobe\adobe after
effects cs5\support files\(PCI)\setuproyalty\resources\libraries\ARKCmdDefrag.dll
se nezdařilo. Závislé sestavení Microsoft.VC90.CRT,processorArchitecture="x86",type="win32",version="9.0.30729.1"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 18.3.2013 19:43:37 | Computer Name = Randaal-PC | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro c:\program files\Adobe\adobe after
effects cs5\support files\(PCI)\setuproyalty\resources\libraries\ARKCmdFS.dll se
nezdařilo. Závislé sestavení Microsoft.VC90.CRT,processorArchitecture="x86",type="win32",version="9.0.30729.1"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 18.3.2013 19:43:37 | Computer Name = Randaal-PC | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro c:\program files\Adobe\adobe after
effects cs5\support files\(PCI)\setuproyalty\resources\libraries\ARKEngine.dll
se nezdařilo. Závislé sestavení Microsoft.VC90.CRT,processorArchitecture="x86",type="win32",version="9.0.30729.1"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 18.3.2013 20:08:53 | Computer Name = Randaal-PC | Source = Google Update | ID = 20
Description =

Error - 18.3.2013 23:09:07 | Computer Name = Randaal-PC | Source = Google Update | ID = 20
Description =

Error - 19.3.2013 2:08:52 | Computer Name = Randaal-PC | Source = Google Update | ID = 20
Description =

[ System Events ]
Error - 7.3.2013 14:02:39 | Computer Name = Randaal-PC | Source = Service Control Manager | ID = 7022
Description = Služba Windows Update přestala během spouštění reagovat.

Error - 13.3.2013 22:26:31 | Computer Name = Randaal-PC | Source = Service Control Manager | ID = 7011
Description = Při čekání na odezvu transakce služby nvsvc bylo dosaženo časového
limitu (30000 ms).

Error - 13.3.2013 22:27:49 | Computer Name = Randaal-PC | Source = Service Control Manager | ID = 7011
Description = Při čekání na odezvu transakce služby TeamViewer8 bylo dosaženo časového
limitu (30000 ms).

Error - 13.3.2013 22:28:09 | Computer Name = Randaal-PC | Source = WMPNetworkSvc | ID = 866300
Description =

Error - 14.3.2013 22:18:57 | Computer Name = Randaal-PC | Source = Service Control Manager | ID = 7011
Description = Při čekání na odezvu transakce služby nvsvc bylo dosaženo časového
limitu (30000 ms).

Error - 14.3.2013 22:20:55 | Computer Name = Randaal-PC | Source = WMPNetworkSvc | ID = 866300
Description =

Error - 16.3.2013 7:28:46 | Computer Name = Randaal-PC | Source = DCOM | ID = 10010
Description =

Error - 16.3.2013 8:32:56 | Computer Name = Randaal-PC | Source = Service Control Manager | ID = 7022
Description = Služba Windows Search přestala během spouštění reagovat.

Error - 16.3.2013 8:33:33 | Computer Name = Randaal-PC | Source = Service Control Manager | ID = 7011
Description = Při čekání na odezvu transakce služby ShellHWDetection bylo dosaženo
časového limitu (30000 ms).

Error - 17.3.2013 3:18:07 | Computer Name = Randaal-PC | Source = Service Control Manager | ID = 7011
Description = Při čekání na odezvu transakce služby ShellHWDetection bylo dosaženo
časového limitu (30000 ms).


< End of report >

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Relativně pomalé PC + jakýsi malware

#7 Příspěvek od Márty84 »

Jeste mam dotaz. Jak je to s legalitou office a windowsu? Ultimate neni zrovna bezna domaci verze :?:
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Relativně pomalé PC + jakýsi malware

#8 Příspěvek od Márty84 »

Prihlaseny jste byl, ale odpoved nevidim :(

Zadna odpoved = taky odpoved. Oba dobre vime jak to s tou legalitou je.

Pravidla fora hovori jasne http://forum.viry.cz/viewtopic.php?f=12&t=115512
Pomáhat NELZE:
2) Pokud stroj uživatele prokazatelně obsahuje nelegální hostitelský čí ochranný software
(operační systém, antivir, firewall, atd.), je nutné navést uživatele k nápravě, např. skrze neplacený software,
a začít řešit, až v době kdy je PC "v pořádku". V případě že uživatel nechce na pravidla přistoupit,
je nutné jej vyzvat ať fórum opustí, a vrátí se až je splní.
:39:


Navic se to neslucuje s rankem Vzorny navstevnik, proto vam bude odebran.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Uživatelský avatar
Randaal
Návštěvník
Návštěvník
Příspěvky: 58
Registrován: 20 říj 2008 22:57
Bydliště: Praha

Re: Relativně pomalé PC + jakýsi malware

#9 Příspěvek od Randaal »

Márty84 píše:Jeste mam dotaz. Jak je to s legalitou office a windowsu? Ultimate neni zrovna bezna domaci verze :?:
Na tomto PC tyto dva softwary prozatím legální nejsou. V takovém případě, kdy je potřeba tohle nejdříve napravit, se ozvu za nějaký čas, děkuji za informaci.
Márty84 píše: Prihlaseny jste byl, ale odpoved nevidim :(
Zadna odpoved = taky odpoved. Oba dobre vime jak to s tou legalitou je.
Přihlášený ještě neznamená fyzicky tu.

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Relativně pomalé PC + jakýsi malware

#10 Příspěvek od Márty84 »

Randaal píše:Přihlášený ještě neznamená fyzicky tu.
Ja teda kdyz se chci prihlasit, musim u toho fyzicky byt, ale o to nejde, nehralo to zadnou roli.

Randaal píše:Na tomto PC tyto dva softwary prozatím legální nejsou. V takovém případě, kdy je potřeba tohle nejdříve napravit, se ozvu za nějaký čas, děkuji za informaci.
OK. Neni samozrejme zac.

:closed:
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Zamčeno