Prosím o kontrolu logu obfuscator.xz VirTool

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
tarogar
Level 3.5
Level 3.5
Příspěvky: 829
Registrován: červen 12
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu obfuscator.xz VirTool

Příspěvekod tarogar » 08 pro 2013 11:26

11:24:28.0067 4376 [ 4A2FFDAC45F317E17DF642C7160EB633 ] upnphost C:\WINDOWS\System32\upnphost.dll
11:24:28.0069 4376 upnphost - ok
11:24:28.0076 4376 [ 433ECDE01A52691FA7ACA51C10C09B70 ] usbccgp C:\WINDOWS\System32\drivers\usbccgp.sys
11:24:28.0077 4376 usbccgp - ok
11:24:28.0093 4376 [ B3D6457D841A0CAEF4C52D88621715F2 ] usbcir C:\WINDOWS\System32\drivers\usbcir.sys
11:24:28.0093 4376 usbcir - ok
11:24:28.0103 4376 [ 5477D6E27C7D266EF8C152B9A25ADE5E ] usbehci C:\WINDOWS\System32\drivers\usbehci.sys
11:24:28.0104 4376 usbehci - ok
11:24:28.0115 4376 [ DF56C2C04EFA328D7A66B69007130266 ] usbhub C:\WINDOWS\System32\drivers\usbhub.sys
11:24:28.0117 4376 usbhub - ok
11:24:28.0130 4376 [ C0E33820326199CE3CFD3B9F27F81D99 ] USBHUB3 C:\WINDOWS\System32\drivers\UsbHub3.sys
11:24:28.0131 4376 USBHUB3 - ok
11:24:28.0141 4376 [ 3019097FB6C985EF24C058090FF3BDBD ] usbohci C:\WINDOWS\System32\drivers\usbohci.sys
11:24:28.0141 4376 usbohci - ok
11:24:28.0152 4376 [ 4D655E3B684BE9B0F7FFD8A2935C348C ] usbprint C:\WINDOWS\System32\drivers\usbprint.sys
11:24:28.0152 4376 usbprint - ok
11:24:28.0176 4376 [ B1230E9813B5C7E762DF27756AA23917 ] USBSTOR C:\WINDOWS\System32\drivers\USBSTOR.SYS
11:24:28.0177 4376 USBSTOR - ok
11:24:28.0179 4376 [ BA4FA655E0FC577DB7436FC963932CE4 ] usbuhci C:\WINDOWS\System32\drivers\usbuhci.sys
11:24:28.0179 4376 usbuhci - ok
11:24:28.0197 4376 [ 53AA1CD1740BDE110EB22CD8C05F615F ] USBXHCI C:\WINDOWS\System32\drivers\USBXHCI.SYS
11:24:28.0198 4376 USBXHCI - ok
11:24:28.0206 4376 [ F6F209DDB94959BA104FC8FC87C53759 ] VaultSvc C:\WINDOWS\system32\lsass.exe
11:24:28.0207 4376 VaultSvc - ok
11:24:28.0213 4376 [ FEB26E3B8345A7E8D62F945C4AE86562 ] vdrvroot C:\WINDOWS\system32\drivers\vdrvroot.sys
11:24:28.0213 4376 vdrvroot - ok
11:24:28.0234 4376 [ CFBAD6B48EDFAA0828A52646B7C4C08D ] vds C:\WINDOWS\System32\vds.exe
11:24:28.0239 4376 vds - ok
11:24:28.0253 4376 [ A026EDEAA5EECAE0B08E2748B616D4BD ] VerifierExt C:\WINDOWS\system32\drivers\VerifierExt.sys
11:24:28.0254 4376 VerifierExt - ok
11:24:28.0304 4376 [ 041D3EF364E624DBB2703A64A5AADF89 ] vhdmp C:\WINDOWS\System32\drivers\vhdmp.sys
11:24:28.0306 4376 vhdmp - ok
11:24:28.0322 4376 [ 06D38968028E9AB19DE9B618C7B6D199 ] viaide C:\WINDOWS\system32\drivers\viaide.sys
11:24:28.0322 4376 viaide - ok
11:24:28.0337 4376 [ C6305BDFC4F7CE51F72BB072C03D4ACE ] vmbus C:\WINDOWS\system32\drivers\vmbus.sys
11:24:28.0338 4376 vmbus - ok
11:24:28.0351 4376 [ DA40BEA0A863CE768C940CA9723BF81F ] VMBusHID C:\WINDOWS\System32\drivers\VMBusHID.sys
11:24:28.0351 4376 VMBusHID - ok
11:24:28.0378 4376 [ 9067880BBB1C18703DBFF27D731D7ECA ] vmicguestinterface C:\WINDOWS\System32\ICSvc.dll
11:24:28.0380 4376 vmicguestinterface - ok
11:24:28.0396 4376 [ 9067880BBB1C18703DBFF27D731D7ECA ] vmicheartbeat C:\WINDOWS\System32\ICSvc.dll
11:24:28.0401 4376 vmicheartbeat - ok
11:24:28.0417 4376 [ 9067880BBB1C18703DBFF27D731D7ECA ] vmickvpexchange C:\WINDOWS\System32\ICSvc.dll
11:24:28.0422 4376 vmickvpexchange - ok
11:24:28.0438 4376 [ 9067880BBB1C18703DBFF27D731D7ECA ] vmicrdv C:\WINDOWS\System32\ICSvc.dll
11:24:28.0443 4376 vmicrdv - ok
11:24:28.0459 4376 [ 9067880BBB1C18703DBFF27D731D7ECA ] vmicshutdown C:\WINDOWS\System32\ICSvc.dll
11:24:28.0463 4376 vmicshutdown - ok
11:24:28.0479 4376 [ 9067880BBB1C18703DBFF27D731D7ECA ] vmictimesync C:\WINDOWS\System32\ICSvc.dll
11:24:28.0484 4376 vmictimesync - ok
11:24:28.0501 4376 [ 9067880BBB1C18703DBFF27D731D7ECA ] vmicvss C:\WINDOWS\System32\ICSvc.dll
11:24:28.0506 4376 vmicvss - ok
11:24:28.0521 4376 [ 55D7D963DE85162F1C49721E502F9744 ] volmgr C:\WINDOWS\system32\drivers\volmgr.sys
11:24:28.0522 4376 volmgr - ok
11:24:28.0541 4376 [ CCB9E901F7254BF96D28EB1B0E5329B7 ] volmgrx C:\WINDOWS\system32\drivers\volmgrx.sys
11:24:28.0544 4376 volmgrx - ok
11:24:28.0559 4376 [ 9F9CE33B50611A1C61A46B8911E0B30B ] volsnap C:\WINDOWS\system32\drivers\volsnap.sys
11:24:28.0562 4376 volsnap - ok
11:24:28.0577 4376 [ 01355C98B5C3ED1EC446743CDA848FCE ] vpci C:\WINDOWS\System32\drivers\vpci.sys
11:24:28.0578 4376 vpci - ok
11:24:28.0591 4376 [ 4539F45F9F4C9757A86A56C949421E07 ] vsmraid C:\WINDOWS\system32\drivers\vsmraid.sys
11:24:28.0593 4376 vsmraid - ok
11:24:28.0625 4376 [ D51D7EF1EA5ED2BB01E9D07E6E0533BC ] VSS C:\WINDOWS\system32\vssvc.exe
11:24:28.0637 4376 VSS - ok
11:24:28.0667 4376 [ 0849B7260F26FE05EA56DED0672E2F4B ] VSTXRAID C:\WINDOWS\system32\drivers\vstxraid.sys
11:24:28.0670 4376 VSTXRAID - ok
11:24:28.0686 4376 [ BE970C369E43B509C1EDA2B8FA7CECB0 ] vwifibus C:\WINDOWS\System32\drivers\vwifibus.sys
11:24:28.0687 4376 vwifibus - ok
11:24:28.0705 4376 [ 7599E582CA3A6AAA95A18FFE1172D339 ] W32Time C:\WINDOWS\system32\w32time.dll
11:24:28.0710 4376 W32Time - ok
11:24:28.0721 4376 [ 0910AB9ED404C1434E2D0376C2AD5D8B ] WacomPen C:\WINDOWS\System32\drivers\wacompen.sys
11:24:28.0722 4376 WacomPen - ok
11:24:28.0753 4376 [ 92BF4B3EBD6F163B94B7A20C65E7B698 ] wbengine C:\WINDOWS\system32\wbengine.exe
11:24:28.0766 4376 wbengine - ok
11:24:28.0799 4376 [ 58F28103889817C93E5B5AFABC87E709 ] WbioSrvc C:\WINDOWS\System32\wbiosrvc.dll
11:24:28.0805 4376 WbioSrvc - ok
11:24:28.0816 4376 [ 772365894F14652D376B2E5030179DC9 ] Wcmsvc C:\WINDOWS\System32\wcmsvc.dll
11:24:28.0820 4376 Wcmsvc - ok
11:24:28.0837 4376 [ D2726823DF7E19F213F4805A9D6D145F ] wcncsvc C:\WINDOWS\System32\wcncsvc.dll
11:24:28.0843 4376 wcncsvc - ok
11:24:28.0853 4376 [ 846C02A8B48CBD921A3D6AB521AA0DC4 ] WcsPlugInService C:\WINDOWS\System32\WcsPlugInService.dll
11:24:28.0856 4376 WcsPlugInService - ok
11:24:28.0886 4376 [ 694B28DE12AD47031FFB4B052662131A ] WdBoot C:\WINDOWS\system32\drivers\WdBoot.sys
11:24:28.0887 4376 WdBoot - ok
11:24:28.0908 4376 [ CB6C63FF8342B467E2EF76E98D5B934D ] Wdf01000 C:\WINDOWS\system32\drivers\Wdf01000.sys
11:24:28.0914 4376 Wdf01000 - ok
11:24:28.0932 4376 [ 0B99529A3BECC3528D865DDECB62503B ] WdFilter C:\WINDOWS\system32\drivers\WdFilter.sys
11:24:28.0935 4376 WdFilter - ok
11:24:28.0951 4376 [ 40C67D1A4891120874767F6E6604D6C5 ] WdiServiceHost C:\WINDOWS\system32\wdi.dll
11:24:28.0954 4376 WdiServiceHost - ok
11:24:28.0959 4376 [ 40C67D1A4891120874767F6E6604D6C5 ] WdiSystemHost C:\WINDOWS\system32\wdi.dll
11:24:28.0962 4376 WdiSystemHost - ok
11:24:28.0974 4376 [ 282E7D46310338FF4A6B7680440EB0DA ] WdNisDrv C:\WINDOWS\system32\Drivers\WdNisDrv.sys
11:24:28.0975 4376 WdNisDrv - ok
11:24:28.0994 4376 WdNisSvc - ok
11:24:29.0008 4376 [ 6588A957873326361AB1CAC4E76F8394 ] WebClient C:\WINDOWS\System32\webclnt.dll
11:24:29.0011 4376 WebClient - ok
11:24:29.0021 4376 [ 3274312F263882B51B964329FAF49734 ] Wecsvc C:\WINDOWS\system32\wecsvc.dll
11:24:29.0025 4376 Wecsvc - ok
11:24:29.0035 4376 [ 7CDD84E0023A0C5C230B06A7965EC65E ] WEPHOSTSVC C:\WINDOWS\system32\wephostsvc.dll
11:24:29.0037 4376 WEPHOSTSVC - ok
11:24:29.0049 4376 [ AA1315B87D9B2E39584165318A59F15D ] wercplsupport C:\WINDOWS\System32\wercplsupport.dll
11:24:29.0052 4376 wercplsupport - ok
11:24:29.0063 4376 [ 22B4C24AB921BFF7827FFBCA1F4E1BB3 ] WerSvc C:\WINDOWS\System32\WerSvc.dll
11:24:29.0066 4376 WerSvc - ok
11:24:29.0088 4376 [ 2E3E82D7B1076B90F4E228A8EF17B261 ] WFPLWFS C:\WINDOWS\system32\DRIVERS\wfplwfs.sys
11:24:29.0089 4376 WFPLWFS - ok
11:24:29.0104 4376 [ E06AFE2F94BA7CFA2FE4FD2A449E60E2 ] WiaRpc C:\WINDOWS\System32\wiarpc.dll
11:24:29.0107 4376 WiaRpc - ok
11:24:29.0119 4376 [ 867BCC69ED9C31C501465EB0E8BA9DFA ] WIMMount C:\WINDOWS\system32\drivers\wimmount.sys
11:24:29.0120 4376 WIMMount - ok
11:24:29.0122 4376 WinDefend - ok
11:24:29.0153 4376 [ DD079EC8F44DCA3A176B345C6ADEFB66 ] WinHttpAutoProxySvc C:\WINDOWS\system32\winhttp.dll
11:24:29.0160 4376 WinHttpAutoProxySvc - ok
11:24:29.0197 4376 [ 9DB490F3E823C5C3C070644B96CB9D59 ] Winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
11:24:29.0199 4376 Winmgmt - ok
11:24:29.0251 4376 [ 690C3FC5C9DBD6B9AEDF8341EC720E41 ] WinRM C:\WINDOWS\system32\WsmSvc.dll
11:24:29.0265 4376 WinRM - ok
11:24:29.0306 4376 [ 9378B4E7E4E3EAE2F05823CFFF2C6EF4 ] WlanSvc C:\WINDOWS\System32\wlansvc.dll
11:24:29.0311 4376 WlanSvc - ok
11:24:29.0348 4376 [ C2838466CCC44FAEF2C3D4C1E5971ECB ] wlidsvc C:\WINDOWS\system32\wlidsvc.dll
11:24:29.0361 4376 wlidsvc - ok
11:24:29.0373 4376 [ 2834D9D3B4F554A39C72F00EA3F0E128 ] WmiAcpi C:\WINDOWS\System32\drivers\wmiacpi.sys
11:24:29.0374 4376 WmiAcpi - ok
11:24:29.0390 4376 [ 7AFAC828F52D62F304A911EC32F42EEE ] wmiApSrv C:\WINDOWS\system32\wbem\WmiApSrv.exe
11:24:29.0392 4376 wmiApSrv - ok
11:24:29.0404 4376 WMPNetworkSvc - ok
11:24:29.0445 4376 [ E178371E493BF17EB90FE71ABA8BE643 ] workfolderssvc C:\WINDOWS\system32\workfolderssvc.dll
11:24:29.0458 4376 workfolderssvc - ok
11:24:29.0476 4376 [ E746BCDBA2E02CF6B8D6B26FB167FBE0 ] wpcfltr C:\WINDOWS\system32\DRIVERS\wpcfltr.sys
11:24:29.0476 4376 wpcfltr - ok
11:24:29.0489 4376 [ 4E6A0F60DA7EF050D3D26417CD4D24E9 ] WPCSvc C:\WINDOWS\System32\wpcsvc.dll
11:24:29.0491 4376 WPCSvc - ok
11:24:29.0504 4376 [ D27491CFCE452C154CECFA155AD0EBC8 ] WPDBusEnum C:\WINDOWS\system32\wpdbusenum.dll
11:24:29.0507 4376 WPDBusEnum - ok
11:24:29.0523 4376 [ 9F2904B55F6CECCD1A8D986B5CE2609A ] WpdUpFltr C:\WINDOWS\system32\drivers\WpdUpFltr.sys
11:24:29.0523 4376 WpdUpFltr - ok
11:24:29.0535 4376 [ AE072B0339D0A18E455DC21666CAD572 ] ws2ifsl C:\WINDOWS\system32\drivers\ws2ifsl.sys
11:24:29.0536 4376 ws2ifsl - ok
11:24:29.0550 4376 [ 5CFA46C4ACB2FD70572017052378DAE5 ] wscsvc C:\WINDOWS\System32\wscsvc.dll
11:24:29.0554 4376 wscsvc - ok
11:24:29.0557 4376 WSearch - ok
11:24:29.0617 4376 [ 3671C668670626DAB0D47B44F65F0489 ] WSService C:\WINDOWS\System32\WSService.dll
11:24:29.0631 4376 WSService - ok
11:24:29.0673 4376 [ 86D0BF4F792053A50D6EE43DFA5837A5 ] wuauserv C:\WINDOWS\system32\wuaueng.dll
11:24:29.0685 4376 wuauserv - ok
11:24:29.0695 4376 [ 2FEAE33E9B2B56104596E1BA444405A9 ] WudfPf C:\WINDOWS\system32\drivers\WudfPf.sys
11:24:29.0696 4376 WudfPf - ok
11:24:29.0706 4376 [ 19240C13F526125554B5370566F21A0A ] WUDFRd C:\WINDOWS\System32\drivers\WUDFRd.sys
11:24:29.0707 4376 WUDFRd - ok
11:24:29.0716 4376 [ 19240C13F526125554B5370566F21A0A ] WUDFSensorLP C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
11:24:29.0718 4376 WUDFSensorLP - ok
11:24:29.0730 4376 [ BB73CBC65AABC4EA0A5C6A1474A0A743 ] wudfsvc C:\WINDOWS\System32\WUDFSvc.dll
11:24:29.0733 4376 wudfsvc - ok
11:24:29.0739 4376 [ 19240C13F526125554B5370566F21A0A ] WUDFWpdFs C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
11:24:29.0741 4376 WUDFWpdFs - ok
11:24:29.0758 4376 [ 2FA9794CA36147756F3FDFD6CA29B46F ] WwanSvc C:\WINDOWS\System32\wwansvc.dll
11:24:29.0763 4376 WwanSvc - ok
11:24:29.0770 4376 ================ Scan global ===============================
11:24:29.0799 4376 [ C89780A6F58D113C28A96D85D1261DC5 ] C:\WINDOWS\system32\basesrv.dll
11:24:29.0812 4376 [ 599F1244C60E3D6C28A8DA7FBA7A2C13 ] C:\WINDOWS\system32\winsrv.dll
11:24:29.0824 4376 [ 9C1833ABD62876856836C5AE55C7CE86 ] C:\WINDOWS\system32\sxssrv.dll
11:24:29.0842 4376 [ B4B610BBCB002EC478C6FD80CF915697 ] C:\WINDOWS\system32\services.exe
11:24:29.0847 4376 [Global] - ok
11:24:29.0847 4376 ================ Scan MBR ==================================
11:24:29.0869 4376 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
11:24:30.0019 4376 \Device\Harddisk0\DR0 - ok
11:24:30.0020 4376 ================ Scan VBR ==================================
11:24:30.0022 4376 [ 700C1029F45378736C4424ACD9A78118 ] \Device\Harddisk0\DR0\Partition1
11:24:30.0024 4376 \Device\Harddisk0\DR0\Partition1 - ok
11:24:30.0064 4376 [ B6D1C95D655A74F04D5865207155AF65 ] \Device\Harddisk0\DR0\Partition2
11:24:30.0065 4376 \Device\Harddisk0\DR0\Partition2 - ok
11:24:30.0086 4376 [ DE0683881C1BB0275605A740034E8DFD ] \Device\Harddisk0\DR0\Partition3
11:24:30.0087 4376 \Device\Harddisk0\DR0\Partition3 - ok
11:24:30.0088 4376 ============================================================
11:24:30.0088 4376 Scan finished
11:24:30.0088 4376 ============================================================
11:24:30.0097 2612 Detected object count: 0
11:24:30.0097 2612 Actual detected object count: 0
11:24:31.0859 3388 Deinitialize success
Moje zlatíčko: CPU i5-3570, MB: MSI Z77MA-G45, RAM Corsair Ventage 2x8GB, GPU: Gigabyte GTX680 OC 2GB, Zdroj: CoolerMaster 650W GX serie, HDD: Seagate Baracuda 7200.14 1TB server , CASE Zalman Z11,

Reklama
Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu obfuscator.xz VirTool

Příspěvekod Orcus » 08 pro 2013 12:42

Vypni rezidentní štít antiviru a antispywaru
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud bude po kontrole problém spustit aplikace nebo bude vyskakovat hláška o pokusu použít neplatnou operaci na klíč registru, který je označen pro odstranění, stačí restartovat počítač.

Pokud budou problémy , spusť v nouz. režimu.
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

Uživatelský avatar
tarogar
Level 3.5
Level 3.5
Příspěvky: 829
Registrován: červen 12
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu obfuscator.xz VirTool

Příspěvekod tarogar » 11 pro 2013 15:54

Píše mi to hlášku že Combofix není určem ke spuštění v režimu kompatibility. ??? ale ja ho nespouštím v rež. komp. normálně mám zaškrtnuto jako správce. A taky mi přestaly jít přední USB pro gamepad, flashky, Externí HDD v předních USB jdou ale ten gamepad ne. V zadních ano. Jak USB2 tak USB3. Jakoby šlo do předních USB málo šťávy.
Moje zlatíčko: CPU i5-3570, MB: MSI Z77MA-G45, RAM Corsair Ventage 2x8GB, GPU: Gigabyte GTX680 OC 2GB, Zdroj: CoolerMaster 650W GX serie, HDD: Seagate Baracuda 7200.14 1TB server , CASE Zalman Z11,

Uživatelský avatar
tarogar
Level 3.5
Level 3.5
Příspěvky: 829
Registrován: červen 12
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu obfuscator.xz VirTool

Příspěvekod tarogar » 11 pro 2013 15:55

Předtím to normálně šlo nesmazal jsem ovladač ?
Moje zlatíčko: CPU i5-3570, MB: MSI Z77MA-G45, RAM Corsair Ventage 2x8GB, GPU: Gigabyte GTX680 OC 2GB, Zdroj: CoolerMaster 650W GX serie, HDD: Seagate Baracuda 7200.14 1TB server , CASE Zalman Z11,

Uživatelský avatar
tarogar
Level 3.5
Level 3.5
Příspěvky: 829
Registrován: červen 12
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu obfuscator.xz VirTool

Příspěvekod tarogar » 11 pro 2013 18:06

Po nainstalování ovladačů stále nejde gamepad. V zadních pozicích jde :/
Moje zlatíčko: CPU i5-3570, MB: MSI Z77MA-G45, RAM Corsair Ventage 2x8GB, GPU: Gigabyte GTX680 OC 2GB, Zdroj: CoolerMaster 650W GX serie, HDD: Seagate Baracuda 7200.14 1TB server , CASE Zalman Z11,

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu obfuscator.xz VirTool

Příspěvekod jaro3 » 12 pro 2013 10:08

ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix /Uninstall

Vyčisti systém CCleanerem

Stáhni si OTC

na plochu. Poklepej na něj. Potom klikni na Clean up!.
Restartuj PC , pokud Ti bude doporučeno.

Stáhni si OTL by OldTimer
na plochu. Ujisti se , že máš zavřena všechna ostatní okna a poklepej na ikonu OTL.Nahoře v okně pod Výstup klikni na minimální výstup.Pod Běžné registry změň na Vše. Zatrhni Kontrola na havěť “LOP“ a Kontrola na havěť “ Purity“ . Klikni na Prohledat. Všechny ostatní nastavení ponech jak jsou. Sken může trvat dlouho, až skončí otevřou se dva logy:
OTL.Txt
Extras.Txt

Jsou uloženy ve stejném místě jako OTL. Oba logy sem prosím zkopíruj.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
tarogar
Level 3.5
Level 3.5
Příspěvky: 829
Registrován: červen 12
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu obfuscator.xz VirTool

Příspěvekod tarogar » 12 pro 2013 19:18

Otevřel se jenom jeden i když jsem zadal zadané parametry.
OTL Extras logfile created on: 12. 12. 2013 19:11:14 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Tadeáš\Downloads
64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.16476)
Locale: 00000405 | Country: Czech Republic | Language: CSY | Date Format: d. M. yyyy

15,95 Gb Total Physical Memory | 14,41 Gb Available Physical Memory | 90,32% Memory free
18,33 Gb Paging File | 16,75 Gb Available in Paging File | 91,38% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 220,17 Gb Total Space | 35,68 Gb Free Space | 16,20% Space Free | Partition Type: NTFS
Drive E: | 711,00 Gb Total Space | 223,53 Gb Free Space | 31,44% Space Free | Partition Type: NTFS

Computer Name: PC-TED | User Name: Tadeáš | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\WINDOWS\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\WINDOWS\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [AddToPlaylistVLC] -- "E:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "E:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [AddToPlaylistVLC] -- "E:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "E:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = AC 1C AE C5 46 9F CE 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = [binary data]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = Reg Error: Unknown registry data type -- File not found

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0
"DoNotAllowExceptions" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0B0A8B53-2475-4B57-99FA-95A8E13170EF}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office 15\root\office15\outlook.exe |
"{11DB57FA-F50A-461C-9991-0E18006C4D8E}" = rport=10243 | protocol=6 | dir=out | app=system |
"{3A3ED866-76C8-4E6A-AC6A-6A816AC4C022}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{46C6A330-1419-4341-B64C-2C12B92064DF}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{4BFAC768-6C27-477B-AB7F-87E7B4F19B17}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{605FDA5F-2189-4021-A58E-A26362295EBB}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{951A9B2F-59FD-40FC-A469-61DFF448261A}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{9C99778E-176B-4DE2-8C28-1C2CB63531DD}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{9D5B05D2-695B-41F1-A19D-9915ED7C80CF}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{9FC6F4F8-B17D-47E5-B0D5-1F9009BBA37F}" = lport=10243 | protocol=6 | dir=in | app=system |
"{A6FB5C2B-F9BB-4BDA-B0A8-3CAAC1944F87}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{BA4E6DE1-B9F0-4D28-A162-226AD6A491DF}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{C08A0ACE-600E-4CBD-8AA0-583A21843E8D}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{C10D25A2-AAAA-4433-AD4C-B99785EE464E}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{CC334AE1-4C9F-4F87-95B6-348B5AD09FBA}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{D8644D22-E8FE-4E45-BBDF-1BB4D870B8AD}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{F7D3A71F-5CE9-4886-95B6-A4A7CD89E7AC}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{FF92328A-EEED-454B-B50D-0746D179E1C6}" = lport=2869 | protocol=6 | dir=in | app=system |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{02EAECA9-4858-47CC-9713-039AA04AEC35}" = protocol=6 | dir=in | app=e:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{02F1FBB7-F9AB-4E06-B5F5-C2C4078CFE65}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{03521601-5EF6-4D3C-8F1D-287E42737F7F}" = protocol=17 | dir=in | app=c:\program files (x86)\samsung\samsung universal scan driver\usdagent.exe |
"{038D2110-594F-4A61-B785-24E6D3120EC8}" = dir=out | name=@{microsoft.zunevideo_2.2.299.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} |
"{054AD8AA-963D-47AC-BCE8-16C6ABAC9F91}" = protocol=6 | dir=in | app=e:\program files (x86)\origin games\battlefield 4 beta\bf4.exe |
"{0A2AEE70-E003-4E16-B195-02B866EAEA58}" = protocol=6 | dir=in | app=c:\users\tadeáš\appdata\local\temp\ins3eba\setup.exe |
"{0A73F053-5B82-41E2-8B4F-8CEE44A4F25D}" = dir=out | name=@{microsoft.xboxlivegames_2.0.139.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} |
"{0D3F8B5E-332A-461D-8CD1-700208B098C0}" = dir=out | name=@{microsoft.binghealthandfitness_3.0.1.335_x64__8wekyb3d8bbwe?ms-resource://microsoft.binghealthandfitness/resources/apptitle} |
"{0D59FADA-BCE9-470D-B1A5-9E0C6CB0817E}" = dir=out | name=@{microsoft.bingweather_3.0.1.203_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} |
"{12FECD69-AFF5-411F-A2E9-B34F58ABEA33}" = protocol=17 | dir=in | app=e:\program files (x86)\hearthstone of warcraft\hearthstone\hearthstone.exe |
"{134BBBEE-3C96-4585-AFA9-E9BEEF49F5AB}" = dir=out | name=@{microsoft.bingfinance_3.0.1.299_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} |
"{138BE8E0-ADAD-4C08-B634-2C412820D2E9}" = protocol=6 | dir=in | app=e:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{14526E10-9779-480D-8A0B-2E82461B4647}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{1506E51F-CCAC-4EBB-8979-5CC0E89AF62D}" = dir=in | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} |
"{165E1C4E-E6A1-4664-887A-585AA4250A8E}" = protocol=17 | dir=in | app=e:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{16B6A66A-F32A-4A2E-8151-E1BF440BE077}" = protocol=6 | dir=in | app=e:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{16F21B3E-77A2-45C3-BC60-802D56284729}" = dir=in | name=f5 vpn |
"{18DE1ADD-1308-476C-853B-A196B26E5362}" = protocol=6 | dir=in | app=e:\program files (x86)\activision\call of duty 4 - modern warfare\iw3mp.exe |
"{190494F9-27E9-46A3-BA49-0AA6861B02DA}" = dir=in | name=skype |
"{1B44108C-8ABD-4ADE-BBB8-5485F9173909}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{1B5C2A57-8D34-4982-81F1-3A1F2245A968}" = dir=in | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} |
"{1CC99BE6-A0A5-4F80-91B3-96B21ADC2F9E}" = dir=in | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} |
"{1DB1860C-90F6-4205-A2BC-2475CF774BAC}" = dir=in | app=e:\program files (x86)\skype\phone\skype.exe |
"{22744BCC-4F33-4FD6-80FF-CFBE2B7709A4}" = protocol=6 | dir=in | app=e:\program files (x86)\hearthstone of warcraft\battle.net\battle.net.exe |
"{22A5709D-CA29-4BC8-943A-F73452DBEC95}" = dir=out | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} |
"{27103E37-5F0C-476E-B42F-81C8855C5BDB}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2045\agent.exe |
"{27C70613-6808-4D17-8E2E-7A7658A7F59A}" = protocol=17 | dir=in | app=e:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{2822EEE1-D1C5-41BB-A11A-26B1E380D782}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{2A8A15E0-2DE3-4B72-A5E8-137599D7F514}" = protocol=6 | dir=in | app=e:\program files (x86)\skyrim\steam.exe |
"{2E7C5F97-D526-4658-9E35-6548E5332C7D}" = protocol=6 | dir=in | app=e:\program files (x86)\steam\steam.exe |
"{2EB06D3B-3C5B-4AA5-9601-844B8A73C4D3}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{30B14B58-5EB2-4104-9400-BF8D9995AEA8}" = dir=out | name=windows_ie_ac_001 |
"{31BE32C9-8BC3-48A4-B214-09926FBD481E}" = dir=out | name=f5 vpn |
"{337D5396-F2B7-4334-BBAF-9ABAF80E41AD}" = protocol=6 | dir=in | app=e:\program files (x86)\ubisoft\farcry 3\bin\fc3editor.exe |
"{33A6363F-AAB0-41BA-8A05-A37B402C98D4}" = protocol=17 | dir=in | app=e:\program files (x86)\activision\call of duty 4 - modern warfare\iw3mp.exe |
"{354666D0-7185-4F2A-8120-3B6F5608622B}" = protocol=17 | dir=in | app=e:\program files (x86)\origin games\dead space 3\deadspace3.exe |
"{36507BA5-A602-4395-A2D7-7E1D7AF8079B}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2359\agent.exe |
"{3ABE547B-A058-4DA9-8B40-B8381D43A8B9}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2293\agent.exe |
"{3C3C23C7-1D60-4ED3-ADCD-0AB0B59B02BD}" = dir=out | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} |
"{3CFB6FCA-4393-4E4F-B1F6-FC99B8766EF5}" = dir=in | app=c:\users\tadeáš\appdata\local\microsoft\skydrive\skydrive.exe |
"{4064AF2B-0AC4-4325-939A-B8FF476602FF}" = protocol=17 | dir=in | app=c:\program files (x86)\codemasters\dirt 3\dirt3_game.exe |
"{4282FE99-8560-4BC7-9576-5F3ED84E263F}" = dir=in | name=checkpoint.vpn |
"{44CAFE01-F636-4E37-821C-B80797DE0F9C}" = dir=in | name=sonicwall mobile connect |
"{454B0700-F79E-41DB-AC27-214589647CBB}" = protocol=17 | dir=in | app=e:\program files (x86)\rockstar games\grand theft auto iv\launchgtaiv.exe |
"{4749C674-0F62-4551-8836-8FAECA1ED505}" = dir=out | name=@{microsoft.xboxlivegames_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} |
"{498203E9-F3C9-466E-BB0A-13001926BF56}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{4A5389C2-9B66-40C9-8BA7-5070A1B7B8B4}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{4C14F0B0-FDC9-4CB9-B3CE-D33BC90B6BC1}" = dir=out | name=@{microsoft.bingfinance_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} |
"{4DDE41DC-3484-4FEF-992F-E1CAA3D81B5F}" = dir=out | name=juniper networks junos pulse |
"{4EE50E0C-075F-47E0-92C7-1221EC679965}" = protocol=6 | dir=out | app=system |
"{4EF4E531-BD87-4932-B29C-8E15E63F6298}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{52A51558-A4F5-451F-B114-D57DB2FAF793}" = protocol=6 | dir=in | app=e:\program files (x86)\ubisoft\assassin's creed iii\assassinscreed3.exe |
"{534BE8EC-0F66-45CA-836F-6D0D20C9ED9F}" = dir=in | app=c:\program files\softether vpn client\vpnclient_x64.exe |
"{5449BBF5-08D3-4D3E-A5F2-8E9665CD7755}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{54705599-BF93-4675-8EA8-621F5684606E}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe |
"{548DCF8C-BFF2-4BA4-AA88-FBAF9AC8BCC6}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{560448D6-095C-4907-B046-AC7F710701A7}" = dir=in | name=sonicwall.mobileconnect |
"{562BE16C-F006-4C14-8A1C-7DD0617F6A8E}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2359\agent.exe |
"{577164A0-F1D5-4BCF-A04A-FED3A6409860}" = protocol=6 | dir=in | app=e:\program files (x86)\ubisoft\assassin's creed iii\ac3sp.exe |
"{5928E86B-3176-4BC2-AC56-5900D22B5EA2}" = dir=in | app=e:\program files (x86)\itunes\itunes.exe |
"{5A0EBE10-2754-49E9-8933-DF6FC7599A56}" = protocol=17 | dir=in | app=e:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe |
"{5AC722AD-516B-4734-9C54-23B4B9C7AADD}" = protocol=6 | dir=in | app=e:\program files (x86)\utorrent\utorrent.exe |
"{5B7E022A-3F89-4014-8243-6781F68939F3}" = protocol=17 | dir=in | app=e:\program files (x86)\ubisoft\farcry 3\bin\farcry3_d3d11.exe |
"{5DB973DA-CD2F-4FC3-BBD6-6102ECBA9BB0}" = dir=out | name=@{microsoft.bingmaps_1.2.0.136_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} |
"{5DD4874E-152E-4694-A530-2242F29C1224}" = dir=out | name=@{microsoft.bingtravel_1.2.0.145_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} |
"{5F4632C0-D5B1-40C3-B0D9-E3A759C81B9E}" = dir=out | name=sonicwall.mobileconnect |
"{601391B9-92DC-45A8-815D-B12D1817349E}" = protocol=17 | dir=in | app=e:\program files (x86)\hearthstone of warcraft\battle.net\battle.net.exe |
"{626010D9-DAF5-49F0-A33D-0296CA580953}" = protocol=17 | dir=in | app=e:\program files (x86)\electronic arts\battlefield bad company 2\bfbc2updater.exe |
"{66C34B78-BD96-4EA9-9A4F-35F1C4546523}" = protocol=6 | dir=in | app=c:\users\tadeáš\appdata\local\temp\ins3eba\setup.exe |
"{681DB2A1-A832-4969-964D-0C472E34145C}" = protocol=17 | dir=in | app=e:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{6910BE99-3BA5-479C-9469-C505391B3426}" = protocol=17 | dir=in | app=c:\users\tadeáš\appdata\local\temp\ins3eba\setup.exe |
"{6C599614-1FE1-47EF-8DBA-CCEB71AC3D02}" = protocol=17 | dir=in | app=e:\program files (x86)\ubisoft\assassin's creed iii\ac3mp.exe |
"{6C6E4B6D-8521-404D-A0C9-E0F3DC7F7B60}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.5.9600.20315_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{6C804EDD-1CE9-4B25-9255-594CF099EF49}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{6ECF318A-10F7-4D8D-985B-66B50ED60C1C}" = protocol=6 | dir=in | app=e:\program files (x86)\origin games\dead space 3\deadspace3.exe |
"{70AD801E-559E-48F6-9999-544E48AD6B8E}" = dir=in | name=@{microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{73600B51-AD39-4781-B4F6-0A9252C69033}" = dir=in | app=c:\program files\softether vpn client\vpncmgr_x64.exe |
"{73D0BAF9-DB24-499D-9D1A-62B09FC9B22D}" = protocol=17 | dir=in | app=e:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{748B5050-644D-439D-A88F-31AB982AB817}" = protocol=6 | dir=in | app=e:\program files (x86)\ubisoft\assassin's creed iii\ac3mp.exe |
"{757D7086-B9E7-4E00-8A5C-EA21D5B2BE2A}" = protocol=17 | dir=in | app=e:\program files (x86)\utorrent\utorrent.exe |
"{7811B4ED-EB62-4B0C-B39A-9CB09D6419C6}" = dir=out | name=check point vpn |
"{7A2B3296-E2BB-4E77-A1C4-48870DD5B4F9}" = protocol=17 | dir=in | app=e:\program files (x86)\ubisoft\farcry 3\bin\fc3updater.exe |
"{7C9C5945-CFE2-4CFF-983C-D6AD698C911C}" = dir=in | app=c:\program files\softether vpn client\vpnclient.exe |
"{808F1451-4108-46FD-ADBB-F17324B5F0BD}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{81CA7581-2F42-4B06-9B4F-8395C42BB414}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{84EB7027-79BE-462E-96C5-8FF913D54123}" = dir=in | app=c:\program files\softether vpn client\vpncmd_x64.exe |
"{8BF3C05E-642D-4492-A9B8-544255266360}" = dir=out | name=@{microsoft.bingmaps_2.0.2210.2401_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} |
"{8CECCF24-2F52-498D-A12C-18E53D2BB764}" = protocol=6 | dir=in | app=e:\program files (x86)\electronic arts\battlefield bad company 2\bfbc2updater.exe |
"{8F16AF1E-6B17-4078-B79D-2C5E2C89ED37}" = dir=in | name=check point vpn |
"{921E2F6C-D880-43D7-BBCE-6873BB16A469}" = protocol=6 | dir=in | app=e:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe |
"{926F3B8B-B8AC-443F-83B5-21989BC35594}" = protocol=6 | dir=in | app=e:\program files (x86)\ubisoft\farcry 3\bin\fc3updater.exe |
"{94BF525A-E90F-4DD0-BD6C-14EC7B69CF49}" = protocol=17 | dir=in | app=e:\program files (x86)\ubisoft\farcry 3\bin\farcry3.exe |
"{95271A89-B5FB-40D8-9EE2-81215D4CD76F}" = dir=out | name=windows_ie_ac_001 |
"{9A105839-CDF1-4D37-B9DA-1CC04EEB6BDB}" = protocol=6 | dir=in | app=e:\program files (x86)\origin games\battlefield 3\bf3.exe |
"{9A8EF377-970D-47F2-9662-ACE66C61BAF9}" = protocol=17 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe |
"{9D29736C-C7C9-4CD5-B017-82AA72FB09B0}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.5.9600.20315_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{9E3D57FC-7C37-4424-9352-4831E97D029D}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{A0212AAE-FBB5-442C-B045-51EBB0BA4093}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{A140116D-8809-4444-9BEE-6A6EBF6ADF39}" = protocol=6 | dir=in | app=e:\program files (x86)\ea games\battlefield 2\bf2.exe |
"{A2E8AE88-3E85-46A6-88DF-451302E55B52}" = protocol=6 | dir=in | app=e:\program files (x86)\steam\steamapps\common\payday 2\payday2_win32_release.exe |
"{A353D21E-9E04-477A-97C4-243E7EB05C31}" = protocol=6 | dir=in | app=e:\program files (x86)\hearthstone of warcraft\hearthstone\hearthstone.exe |
"{A6A49A7F-FCE9-41C9-A405-16BA3DE126F4}" = protocol=6 | dir=in | app=c:\program files (x86)\samsung\samsung universal scan driver\usdagent.exe |
"{A72596FD-D98C-4AE2-8DA8-4601AB5D28D4}" = protocol=6 | dir=in | app=c:\program files (x86)\codemasters\dirt 3\dirt3_game.exe |
"{A837C2D6-E1F9-4F1C-8996-202CE0AD06B0}" = protocol=17 | dir=in | app=e:\program files (x86)\origin games\battlefield 4\bf4_x86.exe |
"{A9BF5848-6B6C-4880-AF7C-9D779D9E4D92}" = dir=out | name=@{microsoft.zunevideo_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/33270} |
"{A9D34D8A-5272-4BA7-BEAD-045A785AB4E6}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2045\agent.exe |
"{AB86C56C-C85B-4C23-B7D5-78C488B718EB}" = dir=out | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} |
"{AC811A18-E333-416E-B52E-F98D1411644E}" = dir=out | name=@{microsoft.bingfoodanddrink_3.0.1.201_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfoodanddrink/resources/apptitlewithbranding} |
"{AD13A222-52C3-4431-B56B-C1F5ED902FF9}" = dir=out | name=@{microsoft.bingtravel_3.0.1.202_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} |
"{ADC082D7-F680-4048-8519-DF84EE9FC60E}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{B0CE5DD3-2A69-4C6E-896C-BD39C4AE19F0}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{B1977F69-2CE5-4CB9-AB9A-B6C0F70569F4}" = protocol=17 | dir=in | app=e:\program files (x86)\ubisoft\assassin's creed iii\ac3sp.exe |
"{B366B146-F0D6-4FFB-A07D-4A632698710B}" = dir=out | name=@{microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{B3E9577A-3426-458E-BFD5-846F671A8BAF}" = dir=in | name=@{microsoft.windowsreadinglist_6.3.9654.20321_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} |
"{B4844996-0BCF-4DB2-9D36-625BBA879931}" = dir=out | name=@{microsoft.bingweather_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} |
"{B485FC84-7B3C-4612-847F-60F6FCA04E91}" = protocol=6 | dir=in | app=e:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{B7DDC346-2368-45C5-B658-EA7FFB31EFE4}" = dir=out | name=@{microsoft.zunemusic_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/33273} |
"{B8CA56F4-DE7C-48A3-9460-40A7E426F94C}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{BB2762C7-2CB8-4C2F-B653-48C19F0B0836}" = dir=in | name=juniper networks junos pulse |
"{BBE451CE-BD4A-4CFB-B60D-F8BC75027442}" = protocol=6 | dir=in | app=e:\program files (x86)\origin games\battlefield 4\bf4_x86.exe |
"{BE0A16B3-A796-4898-A696-0AC14323BC77}" = dir=out | name=@{microsoft.windowsreadinglist_6.3.9654.20321_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} |
"{C1C8C835-ED41-4DEC-8CCB-AD5FFC60636E}" = protocol=17 | dir=in | app=c:\program files (x86)\samsung\samsung universal scan driver\iccupdater.exe |
"{C3FC9DD0-30F9-4EF1-9049-73E6D0268491}" = protocol=17 | dir=in | app=e:\program files (x86)\steam\steamapps\common\payday 2\payday2_win32_release.exe |
"{C45043D1-4940-486E-B1DC-DCE6461BDBB9}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2293\agent.exe |
"{C453B363-A0D2-4A71-9AE3-562BE70BA920}" = protocol=6 | dir=in | app=c:\program files (x86)\samsung\samsung universal scan driver\iccupdater.exe |
"{C5AEF73D-BF03-47CE-924D-AB966B372054}" = dir=out | name=@{microsoft.bingsports_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/bingsports} |
"{C704C73C-57DB-4A86-92E1-A8C4204D17D1}" = protocol=17 | dir=in | app=e:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{C8B4D54B-347C-47CD-88E8-52CE5A20EE1A}" = dir=in | app=c:\program files\softether vpn client\vpncmd.exe |
"{C952609E-1D11-4E99-8EFE-0729F9B8D128}" = protocol=6 | dir=in | app=e:\program files (x86)\origin games\battlefield 4\bf4.exe |
"{C96F0C8C-ACA0-4265-A8BE-65E6820736E4}" = dir=in | app=c:\program files (x86)\samsung\samsung universal print driver 2\printerselector\supdapp.exe |
"{CAF83457-736D-4BF2-8907-039694B1F345}" = protocol=17 | dir=in | app=e:\program files (x86)\ea games\battlefield 2\bf2.exe |
"{CB19E230-F27F-4284-A68A-B7E67076EE10}" = protocol=6 | dir=in | app=e:\program files (x86)\steam\steamapps\common\payday 2\payday2_win32_release.exe |
"{CB4C8AAD-37CD-4B97-A702-3E13A12BDDC7}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{CE9A4403-1476-4827-A830-596E404F403D}" = protocol=6 | dir=in | app=e:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe |
"{D41C7551-7E62-4E7A-8766-7A82E683E6A0}" = protocol=17 | dir=in | app=e:\program files (x86)\ubisoft\assassin's creed iii\assassinscreed3.exe |
"{D6980480-941A-4DF6-AB81-3734ECD3D779}" = dir=out | name=junipernetworks.junospulsevpn |
"{D76FE0CD-D202-46F6-846D-12A4FEB65251}" = dir=out | name=@{microsoft.zunemusic_2.2.299.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} |
"{D824B622-0FFA-4572-A1B8-E9D72175F5D8}" = protocol=17 | dir=in | app=e:\program files (x86)\origin games\battlefield 4\bf4.exe |
"{D93B9BD0-0C00-4542-A5EC-5BF9609731BF}" = protocol=17 | dir=in | app=e:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe |
"{DA9461E3-FB2A-421D-AD7C-480507E014AC}" = protocol=17 | dir=in | app=e:\program files (x86)\origin games\battlefield 4 beta\bf4.exe |
"{DA9DCFAD-83F8-4E60-9D79-2CC54E75A03F}" = protocol=6 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe |
"{DB59588E-ED90-4C47-A7B5-7929DD0C0BD2}" = dir=out | name=checkpoint.vpn |
"{DE4B0C91-9C5E-41A8-8C8C-E9A7DE74E593}" = protocol=17 | dir=in | app=e:\program files (x86)\steam\steamapps\common\payday 2\payday2_win32_release.exe |
"{E06FBB5D-7A5B-4C0A-96A8-13B524FA0CF9}" = protocol=17 | dir=in | app=e:\program files (x86)\ubisoft\farcry 3\bin\fc3editor.exe |
"{E5F0728A-E1EF-47FC-8B16-679A53C7F5A8}" = protocol=17 | dir=in | app=e:\program files (x86)\steam\steam.exe |
"{E628F3BA-8472-47F9-81EB-518E827EACDD}" = protocol=17 | dir=in | app=e:\program files (x86)\origin games\crysis 3\bin32\crysis3.exe |
"{E6AF6832-0E38-4699-93D3-1ABC540038CF}" = dir=out | name=skype |
"{E6D89BF7-EBC2-49C8-A120-A7F64F334948}" = protocol=6 | dir=in | app=e:\program files (x86)\ubisoft\farcry 3\bin\farcry3_d3d11.exe |
"{E7985E1D-C36F-4787-80A8-6350D07E9266}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{E8241855-C8FA-43F7-8B30-C3719B43BEC5}" = dir=out | name=@{microsoft.bingsports_3.0.1.203_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/bingsports} |
"{EA191324-87DC-49C7-B192-39CC37C55B1D}" = protocol=6 | dir=in | app=e:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{EC799E33-72BA-42D7-9127-DEFE68F9799D}" = dir=in | name=junipernetworks.junospulsevpn |
"{EFEF25AA-DF9E-434B-B428-131DD649040A}" = dir=out | name=sonicwall mobile connect |
"{F0B015BD-D956-4F6E-BF77-7E6D9F76FD34}" = protocol=6 | dir=in | app=e:\program files (x86)\origin games\crysis 3\bin32\crysis3.exe |
"{F64300AD-D559-4000-BD45-0997BCC8E70A}" = dir=out | name=f5.vpn.client |
"{F77E5446-4378-4E99-8B7A-7061AAAEA193}" = dir=in | name=f5.vpn.client |
"{FAC83FC6-72D0-42B3-81A7-2A5612A14899}" = protocol=6 | dir=in | app=e:\program files (x86)\ubisoft\farcry 3\bin\farcry3.exe |
"{FAD53B9D-328D-4F5F-8CE3-69289B908472}" = dir=out | name=@{microsoft.bingnews_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/news} |
"{FE3F155E-8B08-4810-8A2A-96D880ED51D5}" = protocol=17 | dir=in | app=e:\program files (x86)\skyrim\steam.exe |
"{FE411E85-BACE-4708-83D6-4D13D7C52C9F}" = protocol=17 | dir=in | app=e:\program files (x86)\origin games\battlefield 3\bf3.exe |
"{FE9AB497-4998-4F68-AF28-BFC1C1C90BB2}" = dir=in | app=c:\program files\softether vpn client\vpncmgr.exe |
"{FEAFEB77-288A-4946-B280-D8911F82D3CC}" = protocol=6 | dir=in | app=e:\program files (x86)\rockstar games\grand theft auto iv\launchgtaiv.exe |
"{FF653B3C-54C1-4FA1-B034-96845F1A632C}" = dir=out | name=@{microsoft.bingnews_3.0.1.321_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/apptitle} |
"TCP Query User{01995F32-176C-4D59-9E6F-64AA3C30289B}E:\program files (x86)\robot entertainment\orcs must die!\build\release\orcsmustdie.exe" = protocol=6 | dir=in | app=e:\program files (x86)\robot entertainment\orcs must die!\build\release\orcsmustdie.exe |
"TCP Query User{13F0E03A-F4BE-4A54-95A8-327E316E31D8}E:\program files (x86)\1c company\off-road drive\binaries\win32\shippingpc-pp3workgame.exe" = protocol=6 | dir=in | app=e:\program files (x86)\1c company\off-road drive\binaries\win32\shippingpc-pp3workgame.exe |
"TCP Query User{27888D8D-0EBF-4B10-806F-3ADDA7683709}E:\program files (x86)\origin games\crysis 2 maximum edition\bin32\crysis2.exe" = protocol=6 | dir=in | app=e:\program files (x86)\origin games\crysis 2 maximum edition\bin32\crysis2.exe |
"TCP Query User{32309BA7-B49F-46A3-A53F-2CF1A0A8B024}C:\users\tadeáš\appdata\local\temp\gw2.exe" = protocol=6 | dir=in | app=c:\users\tadeáš\appdata\local\temp\gw2.exe |
"TCP Query User{3C913850-7C21-4AA0-A1E6-9BFFE753A772}E:\program files (x86)\2k games\borderlands 2\binaries\win32\borderlands2.exe" = protocol=6 | dir=in | app=e:\program files (x86)\2k games\borderlands 2\binaries\win32\borderlands2.exe |
"TCP Query User{432603A8-C1F5-40EE-BE26-735E0352C562}E:\program files (x86)\origin games\battlefield 4\bf4.exe" = protocol=6 | dir=in | app=e:\program files (x86)\origin games\battlefield 4\bf4.exe |
"TCP Query User{47F25190-9165-4CDC-BEE5-40D7BAC5A39A}E:\program files (x86)\gog.com\the witcher 2 enhanced edition\bin\witcher2.exe" = protocol=6 | dir=in | app=e:\program files (x86)\gog.com\the witcher 2 enhanced edition\bin\witcher2.exe |
"TCP Query User{4FD5A680-7984-4A9F-B828-2A4A26845B1C}E:\program files (x86)\origin games\medal of honor\mp\mohmpgame.exe" = protocol=6 | dir=in | app=e:\program files (x86)\origin games\medal of honor\mp\mohmpgame.exe |
"TCP Query User{53C31647-EC03-4E51-B6D9-3D3076AB227C}E:\program files (x86)\total war rome ii\rome2.exe" = protocol=6 | dir=in | app=e:\program files (x86)\total war rome ii\rome2.exe |
"TCP Query User{54EFB560-BD29-4871-AE3D-08612793F93C}E:\program files (x86)\guild wars 2\guild wars 2\gw2.exe" = protocol=6 | dir=in | app=e:\program files (x86)\guild wars 2\guild wars 2\gw2.exe |
"TCP Query User{59EB07E5-423B-43A3-9AF5-BFA3E1764EC6}E:\program files (x86)\payday 2\payday2_win32_release.exe" = protocol=6 | dir=in | app=e:\program files (x86)\payday 2\payday2_win32_release.exe |
"TCP Query User{70B38FBD-4CA4-4D21-BF67-B60F1A12D818}I:\battlefield 2\bf2.exe" = protocol=6 | dir=in | app=i:\battlefield 2\bf2.exe |
"TCP Query User{A112052B-68F5-423A-88BA-6F0B1A8613A1}E:\program files (x86)\ps2\planetside2.exe" = protocol=6 | dir=in | app=e:\program files (x86)\ps2\planetside2.exe |
"TCP Query User{A924E391-B939-4F24-8A4E-8B173D4434AD}E:\program files (x86)\ubisoft\fyr cry 3\bin\farcry3.exe" = protocol=6 | dir=in | app=e:\program files (x86)\ubisoft\fyr cry 3\bin\farcry3.exe |
"TCP Query User{B52E0F92-7552-4EF9-83E3-D26028EDE225}E:\program files (x86)\ea games\battlefield 2\bf2_w32ded.exe" = protocol=6 | dir=in | app=e:\program files (x86)\ea games\battlefield 2\bf2_w32ded.exe |
"TCP Query User{CA005728-1FC8-476C-B741-2A832A5E0069}E:\program files (x86)\outlast\outlast\binaries\win64\olgame.exe" = protocol=6 | dir=in | app=e:\program files (x86)\outlast\outlast\binaries\win64\olgame.exe |
"TCP Query User{CA231178-32AB-45D5-8134-036855ADBBE0}E:\program files (x86)\metro last light\metrollbenchmark.exe" = protocol=6 | dir=in | app=e:\program files (x86)\metro last light\metrollbenchmark.exe |
"TCP Query User{CC3E7AC2-EDA3-43E5-82DF-047B74376415}E:\program files (x86)\arma iii alpha\arma3.exe" = protocol=6 | dir=in | app=e:\program files (x86)\arma iii alpha\arma3.exe |
"TCP Query User{CEBD86E4-9FFC-481C-8ECD-3369A709F851}E:\program files (x86)\electronic arts\battlefield bad company 2\bfbc2game.exe" = protocol=6 | dir=in | app=e:\program files (x86)\electronic arts\battlefield bad company 2\bfbc2game.exe |
"TCP Query User{EA9A6470-B12F-4814-B87C-1932E4AD0180}E:\program files (x86)\wrc 4 fia world rally championship\wrc4.exe" = protocol=6 | dir=in | app=e:\program files (x86)\wrc 4 fia world rally championship\wrc4.exe |
"TCP Query User{F0037014-31E3-46CA-A5A5-6F73D3DCF099}E:\program files (x86)\ps2\planetside2.exe" = protocol=6 | dir=in | app=e:\program files (x86)\ps2\planetside2.exe |
"UDP Query User{029CC877-4B47-4E6B-9302-48F346D910D3}E:\program files (x86)\metro last light\metrollbenchmark.exe" = protocol=17 | dir=in | app=e:\program files (x86)\metro last light\metrollbenchmark.exe |
"UDP Query User{03220107-261E-4381-A3FA-576C27805F88}E:\program files (x86)\arma iii alpha\arma3.exe" = protocol=17 | dir=in | app=e:\program files (x86)\arma iii alpha\arma3.exe |
"UDP Query User{03B94CC0-0F82-41D3-98A9-9DF1BEEAE1E9}E:\program files (x86)\gog.com\the witcher 2 enhanced edition\bin\witcher2.exe" = protocol=17 | dir=in | app=e:\program files (x86)\gog.com\the witcher 2 enhanced edition\bin\witcher2.exe |
"UDP Query User{09547B55-62EC-4416-BBDE-FFE17BDD577B}E:\program files (x86)\robot entertainment\orcs must die!\build\release\orcsmustdie.exe" = protocol=17 | dir=in | app=e:\program files (x86)\robot entertainment\orcs must die!\build\release\orcsmustdie.exe |
"UDP Query User{1794B7BF-9D36-413D-8385-DE9D45409ED0}E:\program files (x86)\ea games\battlefield 2\bf2_w32ded.exe" = protocol=17 | dir=in | app=e:\program files (x86)\ea games\battlefield 2\bf2_w32ded.exe |
"UDP Query User{1EC9AC56-30D0-47FA-9E12-F1ECD5E6E97B}E:\program files (x86)\guild wars 2\guild wars 2\gw2.exe" = protocol=17 | dir=in | app=e:\program files (x86)\guild wars 2\guild wars 2\gw2.exe |
"UDP Query User{3B396B3F-A73C-40B1-8539-2ED158F12267}E:\program files (x86)\wrc 4 fia world rally championship\wrc4.exe" = protocol=17 | dir=in | app=e:\program files (x86)\wrc 4 fia world rally championship\wrc4.exe |
"UDP Query User{423276F7-17ED-4DB4-825F-16C7AD01C46B}E:\program files (x86)\payday 2\payday2_win32_release.exe" = protocol=17 | dir=in | app=e:\program files (x86)\payday 2\payday2_win32_release.exe |
"UDP Query User{4CE1DD12-007A-430E-97B8-77C7EBEA6DAE}E:\program files (x86)\total war rome ii\rome2.exe" = protocol=17 | dir=in | app=e:\program files (x86)\total war rome ii\rome2.exe |
"UDP Query User{5E48FEC7-E480-495D-A877-A9D2EAD7D50A}E:\program files (x86)\2k games\borderlands 2\binaries\win32\borderlands2.exe" = protocol=17 | dir=in | app=e:\program files (x86)\2k games\borderlands 2\binaries\win32\borderlands2.exe |
"UDP Query User{73532D17-8D73-41AA-9F40-011204C45435}E:\program files (x86)\ubisoft\fyr cry 3\bin\farcry3.exe" = protocol=17 | dir=in | app=e:\program files (x86)\ubisoft\fyr cry 3\bin\farcry3.exe |
"UDP Query User{98D2F240-8089-4E8A-897F-93929B1907C6}E:\program files (x86)\ps2\planetside2.exe" = protocol=17 | dir=in | app=e:\program files (x86)\ps2\planetside2.exe |
"UDP Query User{9F9C9012-7A49-4295-8C20-1006D5F1FA27}E:\program files (x86)\origin games\battlefield 4\bf4.exe" = protocol=17 | dir=in | app=e:\program files (x86)\origin games\battlefield 4\bf4.exe |
"UDP Query User{B1B22F74-F095-45CF-A025-9EF2D02797C1}C:\users\tadeáš\appdata\local\temp\gw2.exe" = protocol=17 | dir=in | app=c:\users\tadeáš\appdata\local\temp\gw2.exe |
"UDP Query User{B2303C1F-A31E-4F2F-B70F-275CE2DAD453}E:\program files (x86)\electronic arts\battlefield bad company 2\bfbc2game.exe" = protocol=17 | dir=in | app=e:\program files (x86)\electronic arts\battlefield bad company 2\bfbc2game.exe |
"UDP Query User{B85435A7-7061-47C0-9EE6-B4CE2135D1E5}E:\program files (x86)\1c company\off-road drive\binaries\win32\shippingpc-pp3workgame.exe" = protocol=17 | dir=in | app=e:\program files (x86)\1c company\off-road drive\binaries\win32\shippingpc-pp3workgame.exe |
"UDP Query User{D8031448-FEDA-47A6-99CC-EDE9D9D34C77}I:\battlefield 2\bf2.exe" = protocol=17 | dir=in | app=i:\battlefield 2\bf2.exe |
"UDP Query User{E0B7552C-6D30-4BBC-BA4F-F157471CD520}E:\program files (x86)\ps2\planetside2.exe" = protocol=17 | dir=in | app=e:\program files (x86)\ps2\planetside2.exe |
"UDP Query User{E90CDFD8-D732-4382-90BD-05221AF4F067}E:\program files (x86)\origin games\crysis 2 maximum edition\bin32\crysis2.exe" = protocol=17 | dir=in | app=e:\program files (x86)\origin games\crysis 2 maximum edition\bin32\crysis2.exe |
"UDP Query User{ED6659B6-7EC6-4BCB-8CA0-EF6BC965D874}E:\program files (x86)\origin games\medal of honor\mp\mohmpgame.exe" = protocol=17 | dir=in | app=e:\program files (x86)\origin games\medal of honor\mp\mohmpgame.exe |
"UDP Query User{F8C450E3-A9D8-4AB7-8FEE-95C1FE30136B}E:\program files (x86)\outlast\outlast\binaries\win64\olgame.exe" = protocol=17 | dir=in | app=e:\program files (x86)\outlast\outlast\binaries\win64\olgame.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{26A24AE4-039D-4CA4-87B4-2F86417040FF}" = Java 7 Update 40 (64-bit)
"{2EDC2FA3-1F34-34E5-9085-588C9EFD1CC6}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610
"{2EF5D87E-B7BD-458F-8428-E4D0B8B4E65C}" = Apple Mobile Device Support
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6C7F773B-F1B2-4E94-8FC6-884922E7BAD7}" = Smart Technology Programming Software 7.0.27.13
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{764384C5-BCA9-307C-9AAC-FD443662686A}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{90150000-008F-0000-1000-0000000FF1CE}" = Office 15 Click-to-Run Licensing Component
"{A7500970-FE98-11E1-B560-F04DA23A5C58}" = Vegas Pro 12.0 (64-bit)
"{AB085680-FE98-11E1-A232-F04DA23A5C58}" = MSVCRT Redists
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Ovladač 3D Vision 331.82
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Ovládací panel NVIDIA 331.82
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Ovladače grafiky 331.82
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 1.7.1
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Ovladač řídící jednotky 3D Vision 331.82
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizace NVIDIA 9.3.21
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer" = NVIDIA LED Visualizer 1.0
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamC" = GeForce Experience NvStream Client Components
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = SHIELD Streaming
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Ovladač HD audia 1.3.26.4
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 9.3.21
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 1.2.9
"{D601CEAD-2E4F-4BBB-85CC-C29A4CE6A3C0}" = iTunes
"CCleaner" = CCleaner
"CPUID HWMonitor_is1" = CPUID HWMonitor 1.23
"HomeBusinessRetail - cs-cz" = Microsoft Office 2013 pro podnikatele - cs-cz
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"WinRAR archiver" = WinRAR 4.01 (64-bit)

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}" = Battlefield 2(TM)
"{1B705E8F-9893-4486-B5D7-4F7FEB9C871E}_is1" = Euro Truck Simulator 2
"{33A22B2D-55BA-4508-B767-BF2E9C21A73F}" = Assassin's Creed Revelations
"{3AC8457C-0385-4BEA-A959-E095F05D6D67}" = Battlefield: Bad Company™ 2
"{415030B8-3E8B-462A-8C03-41D95AA3AB3B}" = Medal of Honor (TM)
"{4198AE83-A3C6-4C41-85C8-EC63E990696E}" = Crysis®3
"{434D0FA0-1558-4D8E-AC3D-BD1000008200}" = DiRT 3
"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
"{46F044A5-CE8B-4196-984E-5BD6525E361D}" = Apple Application Support
"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.7
"{5454083B-1308-4485-BF17-1110000D8301}" = Grand Theft Auto IV
"{5454083B-1308-4485-BF17-1110000D8302}" = Grand Theft Auto IV
"{5454083B-1308-4485-BF17-1110000D8303}" = Grand Theft Auto IV
"{5454083B-1308-4485-BF17-1110000D8304}" = Grand Theft Auto IV
"{5454083B-1308-4485-BF17-1110000D8305}" = Grand Theft Auto IV
"{579BA58C-F33D-4970-9953-B94B43768AC3}" = Grand Theft Auto IV
"{59E4543A-D49D-4489-B445-473D763C79AF}" = Microsoft Games for Windows - LIVE Redistributable
"{6033673D-2530-4587-8AD0-EB059FC263F9}" = Crysis® 2
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{76285C16-411A-488A-BCE3-C83CB933D8CF}" = Battlefield 3™
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
"{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}" = NVIDIA PhysX
"{90150000-008C-0000-0000-0000000FF1CE}" = Office 15 Click-to-Run Extensibility Component
"{90150000-008C-0405-0000-0000000FF1CE}" = Office 15 Click-to-Run Localization Component
"{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D15E813-0C26-41E7-ABC5-3EB06FF1B3CF}" = Assassin's Creed (R) III
"{a1909659-0a08-4554-8af1-2175904903a1}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{ABADE36E-EC37-413B-8179-B432AD3FACE7}" = Battlefield 4™
"{AC76BA86-7AD7-1029-7B44-AB0000000001}" = Adobe Reader XI (11.0.05) - Czech
"{B67BAFBA-4C9F-48FA-9496-933E3B255044}" = QuickTime
"{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}" = The Sims™ 3
"{CFAB3721-549D-4827-A4E8-7F90192114AB}" = Battlefield 4™ Beta
"{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1" = Rapture3D 2.4.8 Game
"{D4329609-4102-4F8C-B83F-7FE024EEA314}" = Dead Space™ 3
"{E351A4AC-5D5D-4748-A2FE-310EC70F3E05}" = R.A.T. 9 Battery Charge Indicator
"{E3B9C5A9-BD7A-4B56-B754-FAEA7DD6FA88}" = Far Cry 3
"{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"ArnA 2: Combined Operations" = ArnA 2: Combined Operations
"Audacity_is1" = Audacity 2.0.3
"Battle.net" = Battle.net
"Battlelog Web Plugins" = Battlelog Web Plugins
"Borderlands 2_is1" = Borderlands 2
"Combined Community Codec Pack_is1" = Combined Community Codec Pack 2013-08-01
"ESN Sonar-0.70.4" = ESN Sonar
"Farming Simulator 20132.0.0.9" = Farming Simulator 2013
"Fraps" = Fraps (remove only)
"GFWL_{434D0FA0-1558-4D8E-AC3D-BD1000008200}" = DiRT 3
"Google Chrome" = Google Chrome
"Guild Wars 2" = Guild Wars 2
"Hearthstone" = Hearthstone
"HeavyLoad_is1" = HeavyLoad V3.2
"InstallShield_{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
"InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware verze 1.75.0.1300
"Minecraft1.6.2" = Minecraft1.6.2
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"Off-Road Drive_is1" = Off-Road Drive
"OpenAL" = OpenAL
"Orcs Must Die!_is1" = Orcs Must Die!
"Origin" = Origin
"PunkBusterSvc" = PunkBuster Services
"Q2FsbG9mRHV0eUdob3N0cw==_is1" = Call of Duty Ghosts
"RjEyMDEz_is1" = F1 2013
"Samsung Universal Print Driver 2" = Samsung Universal Print Driver 2
"Samsung Universal Scan Driver" = Samsung Universal Scan Driver
"Steam App 107410" = Arma 3
"Steam App 218620" = PAYDAY 2
"Steam App 570" = Dota 2
"The Witcher 2 - Assassins of Kings Enhanced Edition_is1" = The Witcher 2 - Assassins of Kings Enhanced Edition
"TWV0cm9MYXN0TGlnaHQ=_is1" = Metro: Last Light (c) Deep Silver version 1
"Uplay" = Uplay
"uTorrent" = µTorrent
"V1JDNEZJQVdvcmxkUmFsbHlDaGFtcGlvbnNoaXA=_is1" = WRC 4 FIA World Rally Championship
"VG90YWxXYXJST01FSUk=_is1" = Total War ROME II
"VLC media player" = VLC media player 2.1.0

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"SkyDriveSetup.exe" = Microsoft SkyDrive
"SOE-PlanetSide 2 PSG" = PlanetSide 2

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 8. 12. 2013 16:36:47 | Computer Name = PC-TED | Source = Application Error | ID = 1005
Description = Systém Windows nemůže získat přístup k souboru z jednoho z těchto
důvodů: došlo k problému s připojením k síti, s diskem, na kterém je soubor uložen,
nebo s ovladači ukládání nainstalovanými v tomto počítači; nebo disk chybí. Systém
Windows kvůli této chybě ukončil program DSS Launcher. Program: DSS Launcher Soubor:
Hodnota chyby je uvedena v části Další údaje. Akce uživatele 1. Otevřete soubor znovu.
Může
se jednat o dočasný problém, který se při novém spuštění programu nebude opakovat.
2.
Pokud
k souboru stále nelze získat přístup a: - Nachází se v síti, měl by správce sítě
ověřit, zda nedošlo k problému se sítí a zda lze server kontaktovat. - Je na vyměnitelném
disku (například disketě nebo disku CD-ROM), ověřte, zda je disk správně vložen
do počítače. 3. Zkontrolujte a opravte systém souborů pomocí nástroje CHKDSK. Ten
lze spustit tak, že kliknete na tlačítko Start a příkaz Spustit, zadáte příkaz
CMD a kliknete na tlačítko OK. Do příkazového řádku zadejte příkaz CHKDSK /F a stiskněte
klávesu ENTER. 4. Pokud potíže potrvají, obnovte soubor ze záložní kopie. 5. Zjistěte,
zda lze otevřít jiné soubory na stejném disku. Pokud ne, může být disk poškozen.
Jedná-li se o pevný disk, obraťte se na správce nebo na dodavatele počítačového
hardwaru se žádostí o pomoc. Další údaje Hodnota chyby: 00000000 Typ disku: 0

Error - 11. 12. 2013 11:03:58 | Computer Name = PC-TED | Source = NvStreamSvc | ID = 131073
Description =

Error - 11. 12. 2013 11:03:58 | Computer Name = PC-TED | Source = NvStreamSvc | ID = 131073
Description =

Error - 11. 12. 2013 18:22:12 | Computer Name = PC-TED | Source = NvStreamSvc | ID = 131073
Description =

Error - 11. 12. 2013 18:22:12 | Computer Name = PC-TED | Source = NvStreamSvc | ID = 131073
Description =

Error - 12. 12. 2013 14:07:15 | Computer Name = PC-TED | Source = NvStreamSvc | ID = 131073
Description =

Error - 12. 12. 2013 14:07:15 | Computer Name = PC-TED | Source = NvStreamSvc | ID = 131073
Description =

Error - 12. 12. 2013 14:07:19 | Computer Name = PC-TED | Source = Microsoft-Windows-Immersive-Shell | ID = 5973
Description = Aplikaci microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1
se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete
v protokolu Microsoft-Windows-TWinUI/Operational.

Error - 12. 12. 2013 14:07:19 | Computer Name = PC-TED | Source = Microsoft-Windows-Immersive-Shell | ID = 5973
Description = Aplikaci microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1
se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete
v protokolu Microsoft-Windows-TWinUI/Operational.

Error - 12. 12. 2013 14:07:19 | Computer Name = PC-TED | Source = Microsoft-Windows-Immersive-Shell | ID = 5973
Description = Aplikaci microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1
se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete
v protokolu Microsoft-Windows-TWinUI/Operational.

[ System Events ]
Error - 11. 12. 2013 18:24:52 | Computer Name = PC-TED | Source = DCOM | ID = 10016
Description =

Error - 12. 12. 2013 13:50:44 | Computer Name = PC-TED | Source = Schannel | ID = 36888
Description = Výstraha o závažné chybě byla vygenerována a zaslána na vzdálený koncový
bod. To může vést k ukončení připojení. Kód závažné chyby definovaný protokolem
TLS: 43. Stav chyby Windows SChannel: 252

Error - 12. 12. 2013 13:52:55 | Computer Name = PC-TED | Source = DCOM | ID = 10016
Description =

Error - 12. 12. 2013 13:53:04 | Computer Name = PC-TED | Source = Service Control Manager | ID = 7009
Description = Při čekání na připojení služby Steam Client Service bylo dosaženo
časového limitu (30000 ms).

Error - 12. 12. 2013 13:53:04 | Computer Name = PC-TED | Source = Service Control Manager | ID = 7000
Description = Služba Steam Client Service neuspěla při spuštění v důsledku následující
chyby: %%1053

Error - 12. 12. 2013 14:07:14 | Computer Name = PC-TED | Source = DCOM | ID = 10010
Description =

Error - 12. 12. 2013 14:07:14 | Computer Name = PC-TED | Source = DCOM | ID = 10010
Description =

Error - 12. 12. 2013 14:07:15 | Computer Name = PC-TED | Source = DCOM | ID = 10010
Description =

Error - 12. 12. 2013 14:07:26 | Computer Name = PC-TED | Source = Schannel | ID = 36888
Description = Výstraha o závažné chybě byla vygenerována a zaslána na vzdálený koncový
bod. To může vést k ukončení připojení. Kód závažné chyby definovaný protokolem
TLS: 43. Stav chyby Windows SChannel: 252

Error - 12. 12. 2013 14:09:55 | Computer Name = PC-TED | Source = DCOM | ID = 10016
Description =


< End of report >
Moje zlatíčko: CPU i5-3570, MB: MSI Z77MA-G45, RAM Corsair Ventage 2x8GB, GPU: Gigabyte GTX680 OC 2GB, Zdroj: CoolerMaster 650W GX serie, HDD: Seagate Baracuda 7200.14 1TB server , CASE Zalman Z11,

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu obfuscator.xz VirTool

Příspěvekod jaro3 » 13 pro 2013 10:44

Tak to udělej znovu , potřebuju hlavně ten OTL.txt.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
tarogar
Level 3.5
Level 3.5
Příspěvky: 829
Registrován: červen 12
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu obfuscator.xz VirTool

Příspěvekod tarogar » 15 pro 2013 20:12

Takže ještě jednou: OTL logfile created on: 15. 12. 2013 19:53:50 - Run 2
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Tadeáš\Downloads
64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.16476)
Locale: 00000405 | Country: Czech Republic | Language: CSY | Date Format: d. M. yyyy

15,95 Gb Total Physical Memory | 14,01 Gb Available Physical Memory | 87,80% Memory free
18,33 Gb Paging File | 15,33 Gb Available in Paging File | 83,64% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 220,17 Gb Total Space | 27,27 Gb Free Space | 12,39% Space Free | Partition Type: NTFS
Drive E: | 711,00 Gb Total Space | 218,08 Gb Free Space | 30,67% Space Free | Partition Type: NTFS

Computer Name: PC-TED | User Name: Tadeáš | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - C:\Users\Tadeáš\Downloads\OTL.exe (OldTimer Tools)
PRC - C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler.exe (Google Inc.)
PRC - E:\Program Files (x86)\Steam\Steam.exe (Valve Corporation)
PRC - C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve Corporation)
PRC - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
PRC - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (NVIDIA Corporation)
PRC - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (NVIDIA Corporation)
PRC - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation)
PRC - C:\Windows\SysWOW64\PnkBstrA.exe ()
PRC - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)


========== Modules (No Company Name) ==========

MOD - E:\Program Files (x86)\Steam\bin\chromehtml.dll ()
MOD - E:\Program Files (x86)\Steam\bin\audio.dll ()
MOD - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll ()
MOD - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ppgooglenaclpluginchrome.dll ()
MOD - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\PepperFlash\pepflashplayer.dll ()
MOD - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\pdf.dll ()
MOD - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\libglesv2.dll ()
MOD - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\libegl.dll ()
MOD - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ffmpegsumo.dll ()
MOD - E:\Program Files (x86)\Steam\bin\libcef.dll ()
MOD - E:\Program Files (x86)\Steam\SDL2.dll ()
MOD - E:\Program Files (x86)\Steam\bin\mssvoice.asi ()
MOD - E:\Program Files (x86)\Steam\bin\mssmp3.asi ()
MOD - E:\Program Files (x86)\Steam\bin\avcodec-53.dll ()
MOD - E:\Program Files (x86)\Steam\bin\avformat-53.dll ()
MOD - E:\Program Files (x86)\Steam\bin\avutil-51.dll ()
MOD - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll ()
MOD - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll ()


========== Services (SafeList) ==========

SRV:64bit: - (NvStreamSvc) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation)
SRV:64bit: - (OfficeSvc) -- C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe (Microsoft Corporation)
SRV:64bit: - (workfolderssvc) -- C:\Windows\SysNative\workfolderssvc.dll (Microsoft Corporation)
SRV:64bit: - (IEEtwCollectorService) -- C:\WINDOWS\SysNative\IEEtwCollector.exe (Microsoft Corporation)
SRV:64bit: - (WSService) -- C:\Windows\SysNative\WSService.dll (Microsoft Corporation)
SRV:64bit: - (AppXSvc) -- C:\Windows\SysNative\AppXDeploymentServer.dll (Microsoft Corporation)
SRV:64bit: - (AppReadiness) -- C:\Windows\SysNative\AppReadiness.dll (Microsoft Corporation)
SRV:64bit: - (wlidsvc) -- C:\Windows\SysNative\wlidsvc.dll (Microsoft Corporation)
SRV:64bit: - (lfsvc) -- C:\Windows\SysNative\GeofenceMonitorService.dll (Microsoft Corporation)
SRV:64bit: - (Wcmsvc) -- C:\Windows\SysNative\wcmsvc.dll (Microsoft Corporation)
SRV:64bit: - (BrokerInfrastructure) -- C:\Windows\SysNative\bisrv.dll (Microsoft Corporation)
SRV:64bit: - (WdNisSvc) -- C:\Program Files\Windows Defender\NisSrv.exe (Microsoft Corporation)
SRV:64bit: - (WinDefend) -- C:\Program Files\Windows Defender\MsMpEng.exe (Microsoft Corporation)
SRV:64bit: - (PrintNotify) -- C:\Windows\SysNative\spool\drivers\x64\3\PrintConfig.dll (Microsoft Corporation)
SRV:64bit: - (WEPHOSTSVC) -- C:\Windows\SysNative\wephostsvc.dll (Microsoft Corporation)
SRV:64bit: - (EFS) -- C:\Windows\SysNative\efssvc.dll (Microsoft Corporation)
SRV:64bit: - (WiaRpc) -- C:\Windows\SysNative\wiarpc.dll (Microsoft Corporation)
SRV:64bit: - (svsvc) -- C:\Windows\SysNative\svsvc.dll (Microsoft Corporation)
SRV:64bit: - (fhsvc) -- C:\Windows\SysNative\fhsvc.dll (Microsoft Corporation)
SRV:64bit: - (NcaSvc) -- C:\Windows\SysNative\NcaSvc.dll (Microsoft Corporation)
SRV:64bit: - (vmicheartbeat) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
SRV:64bit: - (vmicvss) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
SRV:64bit: - (vmictimesync) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
SRV:64bit: - (vmicshutdown) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
SRV:64bit: - (vmicrdv) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
SRV:64bit: - (vmickvpexchange) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
SRV:64bit: - (vmicguestinterface) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
SRV:64bit: - (LSM) -- C:\Windows\SysNative\lsm.dll (Microsoft Corporation)
SRV:64bit: - (smphost) -- C:\Windows\SysNative\smphost.dll (Microsoft Corporation)
SRV:64bit: - (Netlogon) -- C:\Windows\SysNative\netlogon.dll (Microsoft Corporation)
SRV:64bit: - (SystemEventsBroker) -- C:\Windows\SysNative\SystemEventsBrokerServer.dll (Microsoft Corporation)
SRV:64bit: - (ScDeviceEnum) -- C:\Windows\SysNative\ScDeviceEnum.dll (Microsoft Corporation)
SRV:64bit: - (KeyIso) -- C:\Windows\SysNative\keyiso.dll (Microsoft Corporation)
SRV:64bit: - (TimeBroker) -- C:\Windows\SysNative\TimeBrokerServer.dll (Microsoft Corporation)
SRV:64bit: - (netprofm) -- C:\Windows\SysNative\netprofmsvc.dll (Microsoft Corporation)
SRV:64bit: - (NcbService) -- C:\Windows\SysNative\ncbservice.dll (Microsoft Corporation)
SRV:64bit: - (VaultSvc) -- C:\Windows\SysNative\vaultsvc.dll (Microsoft Corporation)
SRV:64bit: - (DeviceAssociationService) -- C:\Windows\SysNative\das.dll (Microsoft Corporation)
SRV:64bit: - (AudioEndpointBuilder) -- C:\Windows\SysNative\AudioEndpointBuilder.dll (Microsoft Corporation)
SRV:64bit: - (DsmSvc) -- C:\Windows\SysNative\DeviceSetupManager.dll (Microsoft Corporation)
SRV:64bit: - (NcdAutoSetup) -- C:\Windows\SysNative\NcdAutoSetup.dll (Microsoft Corporation)
SRV - (Steam Client Service) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve Corporation)
SRV - (AdobeFlashPlayerUpdateSvc) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
SRV - (Hamachi2Svc) -- C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (LogMeIn Inc.)
SRV - (nvUpdatusService) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (NVIDIA Corporation)
SRV - (Stereo Service) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation)
SRV - (PnkBstrA) -- C:\Windows\SysWOW64\PnkBstrA.exe ()
SRV - (LMIGuardianSvc) -- C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (LogMeIn, Inc.)
SRV - (lfsvc) -- C:\Windows\SysWOW64\GeofenceMonitorService.dll (Microsoft Corporation)
SRV - (AdobeARMservice) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
SRV - (PrintNotify) -- C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll (Microsoft Corporation)
SRV - (StorSvc) -- C:\Windows\SysWOW64\StorSvc.dll (Microsoft Corporation)
SRV - (smphost) -- C:\Windows\SysWOW64\smphost.dll (Microsoft Corporation)


========== Driver Services (SafeList) ==========

DRV:64bit: - (Hamachi) -- C:\Windows\SysNative\drivers\Hamdrv.sys (LogMeIn Inc.)
DRV:64bit: - (nvvad_WaveExtensible) -- C:\Windows\SysNative\drivers\nvvad64v.sys (NVIDIA Corporation)
DRV:64bit: - (Neo_VPN) -- C:\Windows\SysNative\drivers\Neo_VPN.sys (SoftEther Project at University of Tsukuba, Japan.)
DRV:64bit: - (WFPLWFS) -- C:\Windows\SysNative\drivers\wfplwfs.sys (Microsoft Corporation)
DRV:64bit: - (intelpep) -- C:\Windows\SysNative\drivers\intelpep.sys (Microsoft Corporation)
DRV:64bit: - (spaceport) -- C:\Windows\SysNative\drivers\spaceport.sys (Microsoft Corporation)
DRV:64bit: - (stornvme) -- C:\Windows\SysNative\drivers\stornvme.sys (Microsoft Corporation)
DRV:64bit: - (VerifierExt) -- C:\Windows\SysNative\drivers\VerifierExt.sys (Microsoft Corporation)
DRV:64bit: - (pdc) -- C:\Windows\SysNative\drivers\pdc.sys (Microsoft Corporation)
DRV:64bit: - (USBHUB3) -- C:\Windows\SysNative\drivers\USBHUB3.SYS (Microsoft Corporation)
DRV:64bit: - (sdbus) -- C:\Windows\SysNative\drivers\sdbus.sys (Microsoft Corporation)
DRV:64bit: - (RdpVideoMiniport) -- C:\Windows\SysNative\drivers\rdpvideominiport.sys (Microsoft Corporation)
DRV:64bit: - (terminpt) -- C:\Windows\SysNative\drivers\terminpt.sys (Microsoft Corporation)
DRV:64bit: - (NVHDA) -- C:\Windows\SysNative\drivers\nvhda64v.sys (NVIDIA Corporation)
DRV:64bit: - (USBXHCI) -- C:\Windows\SysNative\drivers\USBXHCI.SYS (Microsoft Corporation)
DRV:64bit: - (condrv) -- C:\Windows\SysNative\drivers\condrv.sys (Microsoft Corporation)
DRV:64bit: - (Fs_Rec) -- C:\WINDOWS\SysNative\drivers\fs_rec.sys (Microsoft Corporation)
DRV:64bit: - (dam) -- C:\Windows\SysNative\drivers\dam.sys (Microsoft Corporation)
DRV:64bit: - (acpiex) -- C:\Windows\SysNative\drivers\acpiex.sys (Microsoft Corporation)
DRV:64bit: - (TPM) -- C:\Windows\SysNative\drivers\tpm.sys (Microsoft Corporation)
DRV:64bit: - (mvumis) -- C:\Windows\SysNative\drivers\mvumis.sys (Marvell Semiconductor, Inc.)
DRV:64bit: - (GPIOClx0101) -- C:\Windows\SysNative\drivers\msgpioclx.sys (Microsoft Corporation)
DRV:64bit: - (msgpiowin32) -- C:\Windows\SysNative\drivers\msgpiowin32.sys (Microsoft Corporation)
DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
DRV:64bit: - (LSI_SSS) -- C:\Windows\SysNative\drivers\lsi_sss.sys (LSI Corporation)
DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
DRV:64bit: - (LSI_SAS3) -- C:\Windows\SysNative\drivers\lsi_sas3.sys (LSI Corporation)
DRV:64bit: - (ADP80XX) -- C:\Windows\SysNative\drivers\adp80xx.sys (PMC-Sierra)
DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
DRV:64bit: - (3ware) -- C:\Windows\SysNative\drivers\3ware.sys (LSI)
DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
DRV:64bit: - (EhStorTcgDrv) -- C:\Windows\SysNative\drivers\EhStorTcgDrv.sys (Microsoft Corporation)
DRV:64bit: - (EhStorClass) -- C:\Windows\SysNative\drivers\EhStorClass.sys (Microsoft Corporation)
DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
DRV:64bit: - (VSTXRAID) -- C:\Windows\SysNative\drivers\VSTXRAID.SYS (VIA Corporation)
DRV:64bit: - (UCX01000) -- C:\Windows\SysNative\drivers\UCX01000.SYS (Microsoft Corporation)
DRV:64bit: - (UASPStor) -- C:\Windows\SysNative\drivers\uaspstor.sys (Microsoft Corporation)
DRV:64bit: - (sdstor) -- C:\Windows\SysNative\drivers\sdstor.sys (Microsoft Corporation)
DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology, Inc.)
DRV:64bit: - (SerCx2) -- C:\Windows\SysNative\drivers\SerCx2.sys (Microsoft Corporation)
DRV:64bit: - (storahci) -- C:\Windows\SysNative\drivers\storahci.sys (Microsoft Corporation)
DRV:64bit: - (SpbCx) -- C:\Windows\SysNative\drivers\SpbCx.sys (Microsoft Corporation)
DRV:64bit: - (SerCx) -- C:\Windows\SysNative\drivers\SerCx.sys (Microsoft Corporation)
DRV:64bit: - (wpcfltr) -- C:\Windows\SysNative\drivers\wpcfltr.sys (Microsoft Corporation)
DRV:64bit: - (CLFS) -- C:\Windows\SysNative\drivers\clfs.sys (Microsoft Corporation)
DRV:64bit: - (ReFS) -- C:\WINDOWS\SysNative\drivers\refs.sys (Microsoft Corporation)
DRV:64bit: - (UEFI) -- C:\Windows\SysNative\drivers\uefi.sys (Microsoft Corporation)
DRV:64bit: - (vpci) -- C:\Windows\SysNative\drivers\vpci.sys (Microsoft Corporation)
DRV:64bit: - (WpdUpFltr) -- C:\Windows\SysNative\drivers\WpdUpFltr.sys (Microsoft Corporation)
DRV:64bit: - (WdFilter) -- C:\Windows\SysNative\drivers\WdFilter.sys (Microsoft Corporation)
DRV:64bit: - (WdNisDrv) -- C:\Windows\SysNative\drivers\WdNisDrv.sys (Microsoft Corporation)
DRV:64bit: - (WdBoot) -- C:\Windows\SysNative\drivers\WdBoot.sys (Microsoft Corporation)
DRV:64bit: - (ahcache) -- C:\Windows\SysNative\drivers\ahcache.sys (Microsoft Corporation)
DRV:64bit: - (BasicDisplay) -- C:\Windows\SysNative\drivers\BasicDisplay.sys (Microsoft Corporation)
DRV:64bit: - (BasicRender) -- C:\Windows\SysNative\drivers\BasicRender.sys (Microsoft Corporation)
DRV:64bit: - (HyperVideo) -- C:\Windows\SysNative\drivers\HyperVideo.sys (Microsoft Corporation)
DRV:64bit: - (mshidumdf) -- C:\Windows\SysNative\drivers\mshidumdf.sys (Microsoft Corporation)
DRV:64bit: - (acpitime) -- C:\Windows\SysNative\drivers\acpitime.sys (Microsoft Corporation)
DRV:64bit: - (acpipagr) -- C:\Windows\SysNative\drivers\acpipagr.sys (Microsoft Corporation)
DRV:64bit: - (BthAvrcpTg) -- C:\Windows\SysNative\drivers\BthAvrcpTg.sys (Microsoft Corporation)
DRV:64bit: - (kdnic) -- C:\Windows\SysNative\drivers\kdnic.sys (Microsoft Corporation)
DRV:64bit: - (gencounter) -- C:\Windows\SysNative\drivers\vmgencounter.sys (Microsoft Corporation)
DRV:64bit: - (npsvctrig) -- C:\Windows\SysNative\drivers\npsvctrig.sys (Microsoft Corporation)
DRV:64bit: - (bthhfhid) -- C:\Windows\SysNative\drivers\BthhfHid.sys (Microsoft Corporation)
DRV:64bit: - (hyperkbd) -- C:\Windows\SysNative\drivers\hyperkbd.sys (Microsoft Corporation)
DRV:64bit: - (TsUsbGD) -- C:\Windows\SysNative\drivers\TsUsbGD.sys (Microsoft Corporation)
DRV:64bit: - (BthHFEnum) -- C:\Windows\SysNative\drivers\bthhfenum.sys (Microsoft Corporation)
DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation)
DRV:64bit: - (hidi2c) -- C:\Windows\SysNative\drivers\hidi2c.sys (Microsoft Corporation)
DRV:64bit: - (dmvsc) -- C:\Windows\SysNative\drivers\dmvsc.sys (Microsoft Corporation)
DRV:64bit: - (netvsc) -- C:\Windows\SysNative\drivers\netvsc63.sys (Microsoft Corporation)
DRV:64bit: - (NdisVirtualBus) -- C:\Windows\SysNative\drivers\NdisVirtualBus.sys (Microsoft Corporation)
DRV:64bit: - (NdisImPlatform) -- C:\Windows\SysNative\drivers\NdisImPlatform.sys (Microsoft Corporation)
DRV:64bit: - (MsLldp) -- C:\Windows\SysNative\drivers\mslldp.sys (Microsoft Corporation)
DRV:64bit: - (Ndu) -- C:\Windows\SysNative\drivers\Ndu.sys (Microsoft Corporation)
DRV:64bit: - (StillCam) -- C:\Windows\SysNative\drivers\serscan.sys (Microsoft Corporation)
DRV:64bit: - (FxPPM) -- C:\Windows\SysNative\drivers\fxppm.sys (Microsoft Corporation)
DRV:64bit: - (bcmfn2) -- C:\Windows\SysNative\drivers\bcmfn2.sys (Windows (R) Win 7 DDK provider)
DRV:64bit: - (iaStorAV) -- C:\Windows\SysNative\drivers\iaStorAV.sys (Intel Corporation)
DRV:64bit: - (iaLPSSi_GPIO) -- C:\Windows\SysNative\drivers\iaLPSSi_GPIO.sys (Intel Corporation)
DRV:64bit: - (iaLPSSi_I2C) -- C:\Windows\SysNative\drivers\iaLPSSi_I2C.sys (Intel Corporation)
DRV:64bit: - (RTL8168) -- C:\Windows\SysNative\drivers\Rt630x64.sys (Realtek )
DRV:64bit: - (SaiNtBus) -- C:\Windows\SysNative\drivers\SaiBus.sys (Saitek)
DRV:64bit: - (SaiMini) -- C:\Windows\SysNative\drivers\SaiMini.sys (Saitek)
DRV:64bit: - (SaiK1709) -- C:\Windows\SysNative\drivers\SaiK1709.sys (Saitek)
DRV:64bit: - (SaiU1709) -- C:\Windows\SysNative\drivers\SaiU1709.sys (Saitek)
DRV:64bit: - (GEARAspiWDM) -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys (GEAR Software Inc.)
DRV:64bit: - (MEIx64) -- C:\Windows\SysNative\drivers\HECIx64.sys (Intel Corporation)
DRV:64bit: - (MBfilt) -- C:\Windows\SysNative\drivers\MBfilt64.sys (Creative Technology Ltd.)

========== Standard Registry (All) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\System32\blank.htm
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKCU\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\SysWOW64\ieframe.dll (Microsoft Corporation)
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local


========== FireFox ==========

FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.40.2: C:\Windows\system32\npDeployJava1.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.40.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: E:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@esn.me/esnsonar,version=0.70.4: C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB)
FF - HKLM\Software\MozillaPlugins\@esn/npbattlelog,version=2.3.1: C:\Program Files (x86)\Battlelog Web Plugins\2.3.1\npbattlelog.dll (EA Digital Illusions CE AB)
FF - HKLM\Software\MozillaPlugins\@esn/npbattlelog,version=2.3.2: C:\Program Files (x86)\Battlelog Web Plugins\2.3.2\npbattlelog.dll (EA Digital Illusions CE AB)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\ubisoft.com/uplaypc: C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll (Ubisoft)



========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter},
CHR - homepage: http://www.google.com
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\PepperFlash\pepflashplayer.dll
CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\pdf.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll
CHR - Extension: Dokumenty Google = C:\Users\Tadeáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\
CHR - Extension: Disk Google = C:\Users\Tadeáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: YouTube = C:\Users\Tadeáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: Vyhled\u00E1v\u00E1n\u00ED Google = C:\Users\Tadeáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: GData Centers 7 Lenoir, North Carolina = C:\Users\Tadeáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\iihlpbfdcbeahnkehlplmahdhbadindi\2_0\
CHR - Extension: Pen\u011B\u017Eenka Google = C:\Users\Tadeáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0\
CHR - Extension: Gmail = C:\Users\Tadeáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

O1 HOSTS File: ([2013/08/22 14:25:41 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (Lync Browser Helper) - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
O2:64bit: - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2:64bit: - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
O2:64bit: - BHO: (Microsoft SkyDrive Pro Browser Helper) - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
O2:64bit: - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\office15\URLREDIR.DLL (Microsoft Corporation)
O4:64bit: - HKLM..\Run: [Nvtmru] C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe (NVIDIA Corporation)
O4:64bit: - HKLM..\Run: [ProfilerU] C:\Program Files\SmartTechnology\Software\ProfilerU.exe (Saitek)
O4:64bit: - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Realtek Semiconductor)
O4:64bit: - HKLM..\Run: [SaiMfd] C:\Program Files\SmartTechnology\Software\SaiMfd.exe (Saitek)
O4:64bit: - HKLM..\Run: [ShadowPlay] C:\WINDOWS\SysNative\nvspcap64.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [Adobe ARM] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [iTunesHelper] E:\Program Files (x86)\iTunes\iTunesHelper.exe (Apple Inc.)
O4 - HKLM..\Run: [LogMeIn Hamachi Ui] C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn Inc.)
O4 - HKLM..\Run: [QuickTime Task] E:\Program Files (x86)\QuickTime\QTTask.exe (Apple Inc.)
O4 - HKCU..\Run: [EADM] E:\Program Files (x86)\Origin\Origin.exe (Electronic Arts)
O4 - HKCU..\Run: [Steam] E:\Program Files (x86)\Steam\steam.exe (Valve Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: ForceActiveDesktopOn = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableVirtualization = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableInstallerDetection = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableSecureUIAPaths = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ValidateAdminCodeSignatures = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableUIADesktopToggle = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: scforceoption = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: FilterAdministratorToken = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_UNICODETEXT = 13
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIBV5 = 17
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_PALETTE = 9
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_BITMAP = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_TEXT = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIB = 8
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_OEMTEXT = 7
O8:64bit: - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE (Microsoft Corporation)
O8:64bit: - Extra context menu item: Se&nd to OneNote - C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll (Microsoft Corporation)
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Se&nd to OneNote - C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll (Microsoft Corporation)
O9:64bit: - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll (Microsoft Corporation)
O9:64bit: - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll (Microsoft Corporation)
O9:64bit: - Extra Button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
O9:64bit: - Extra 'Tools' menuitem : Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
O9:64bit: - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9:64bit: - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\office15\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\office15\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\office15\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\office15\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000001 [] - C:\Windows\SysNative\NapiNSP.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000002 [] - C:\Windows\SysNative\pnrpnsp.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000003 [] - C:\Windows\SysNative\pnrpnsp.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000004 [] - C:\Windows\SysNative\nlaapi.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000005 [] - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000006 [] - C:\Windows\SysNative\winrnr.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000004 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000005 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000006 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000007 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000008 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000009 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000010 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\Windows\SysWOW64\NapiNSP.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\Windows\SysWOW64\pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\Windows\SysWOW64\pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Windows\SysWOW64\nlaapi.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - C:\Windows\SysWOW64\winrnr.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKCU\..Trusted Domains: clonewarsadventures.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: freerealms.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: soe.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: sony.com ([]* in Trusted sites)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 217.196.209.2 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3E24CD40-84B2-4C25-93B1-735FD9786AD8}: DhcpNameServer = 217.196.209.2 192.168.0.1
O18:64bit: - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysNative\MSVidCtl.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysNative\itss.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\SysNative\inetcomm.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysNative\itss.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\osf - No CLSID value found
O18:64bit: - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\SysNative\MSVidCtl.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysWOW64\MSVidCtl.dll (Microsoft Corporation)
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\SysWOW64\inetcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\osf {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\office15\MSOSB.DLL (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\SysWOW64\MSVidCtl.dll (Microsoft Corporation)
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)
O18:64bit: - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysNative\mscoree.dll (Microsoft Corporation)
O18:64bit: - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysNative\mscoree.dll (Microsoft Corporation)
O18:64bit: - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysNative\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\WINDOWS\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\WINDOWS\SysWow64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\WINDOWS\SysWow64\SystemPropertiesPerformance.exe (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O29:64bit: - HKLM SecurityProviders - (credssp.dll) - C:\WINDOWS\SysWow64\credssp.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (credssp.dll) - C:\WINDOWS\SysWow64\credssp.dll (Microsoft Corporation)
O30:64bit: - LSA: Authentication Packages - (msv1_0) - C:\WINDOWS\SysNative\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) - C:\WINDOWS\SysWow64\msv1_0.dll (Microsoft Corporation)
O30:64bit: - LSA: Security Packages - (kerberos) - C:\WINDOWS\SysNative\kerberos.dll (Microsoft Corporation)
O30:64bit: - LSA: Security Packages - (msv1_0) - C:\WINDOWS\SysNative\msv1_0.dll (Microsoft Corporation)
O30:64bit: - LSA: Security Packages - (schannel) - C:\WINDOWS\SysNative\schannel.dll (Microsoft Corporation)
O30:64bit: - LSA: Security Packages - (wdigest) - C:\WINDOWS\SysNative\wdigest.dll (Microsoft Corporation)
O30:64bit: - LSA: Security Packages - (tspkg) - C:\WINDOWS\SysNative\tspkg.dll (Microsoft Corporation)
O30:64bit: - LSA: Security Packages - (pku2u) - C:\WINDOWS\SysNative\pku2u.dll (Microsoft Corporation)
O30:64bit: - LSA: Security Packages - (livessp) - C:\WINDOWS\SysNative\livessp.dll (Microsoft Corporation)
Moje zlatíčko: CPU i5-3570, MB: MSI Z77MA-G45, RAM Corsair Ventage 2x8GB, GPU: Gigabyte GTX680 OC 2GB, Zdroj: CoolerMaster 650W GX serie, HDD: Seagate Baracuda 7200.14 1TB server , CASE Zalman Z11,

Uživatelský avatar
tarogar
Level 3.5
Level 3.5
Příspěvky: 829
Registrován: červen 12
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu obfuscator.xz VirTool

Příspěvekod tarogar » 15 pro 2013 20:13

O30 - LSA: Security Packages - (kerberos) - C:\WINDOWS\SysWow64\kerberos.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (msv1_0) - C:\WINDOWS\SysWow64\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (schannel) - C:\WINDOWS\SysWow64\schannel.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (wdigest) - C:\WINDOWS\SysWow64\wdigest.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (tspkg) - C:\WINDOWS\SysWow64\tspkg.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (pku2u) - C:\WINDOWS\SysWow64\pku2u.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (livessp) - File not found
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2013/09/15 14:24:51 | 000,000,224 | ---- | M] () - C:\Autoconfig.ini -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2013/12/15 17:42:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
[2013/12/15 17:42:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\LogMeIn Hamachi
[2013/12/15 17:42:13 | 000,000,000 | ---D | C] -- C:\Users\Tadeáš\AppData\Local\LogMeIn Hamachi
[2013/12/15 16:50:25 | 000,000,000 | ---D | C] -- C:\Users\Tadeáš\AppData\Local\Adobe
[2013/12/13 21:41:39 | 000,000,000 | ---D | C] -- C:\Users\Tadeáš\AppData\Local\LogMeIn
[2013/12/13 21:41:39 | 000,000,000 | ---D | C] -- C:\ProgramData\LogMeIn
[2013/12/13 20:20:04 | 000,000,000 | ---D | C] -- C:\Users\Tadeáš\AppData\Local\gtk-2.0
[2013/12/13 20:20:02 | 000,000,000 | ---D | C] -- C:\Users\Tadeáš\.thumbnails
[2013/12/13 20:10:24 | 000,000,000 | ---D | C] -- C:\Users\Tadeáš\AppData\Local\fontconfig
[2013/12/13 20:09:46 | 000,000,000 | ---D | C] -- C:\Users\Tadeáš\AppData\Local\gegl-0.2
[2013/12/13 20:09:46 | 000,000,000 | ---D | C] -- C:\Users\Tadeáš\.gimp-2.8
[2013/12/12 18:55:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2013/12/12 18:55:23 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2013/12/11 16:40:52 | 005,769,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript9.dll
[2013/12/11 16:40:43 | 001,995,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\inetcpl.cpl
[2013/12/11 16:40:43 | 001,928,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\inetcpl.cpl
[2013/12/11 16:40:43 | 000,817,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ieapfltr.dll
[2013/12/11 16:40:42 | 000,703,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ieapfltr.dll
[2013/12/11 16:40:42 | 000,218,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ie4uinit.exe
[2013/12/11 14:57:16 | 000,075,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\imagehlp.dll
[2013/12/11 14:51:30 | 000,393,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WMPhoto.dll
[2013/12/11 14:51:30 | 000,348,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WMPhoto.dll
[2013/12/11 14:51:02 | 004,105,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SyncEngine.dll
[2013/12/11 14:51:02 | 000,568,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SkyDrive.exe
[2013/12/11 14:47:41 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\scrrun.dll
[2013/12/11 14:47:41 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\scrrun.dll
[2013/12/11 14:41:46 | 000,615,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MDMAgent.exe
[2013/12/11 14:41:46 | 000,287,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mdmregistration.dll
[2013/12/11 14:41:46 | 000,240,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mdmregistration.dll
[2013/12/08 21:26:41 | 000,000,000 | ---D | C] -- C:\Users\Tadeáš\AppData\Local\CrashDumps
[2013/12/08 21:25:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blue Ripple Sound
[2013/12/08 21:25:29 | 019,087,360 | ---- | C] (Intel Corporation / Blue Ripple Sound Limited) -- C:\WINDOWS\SysWow64\mkl_blueripple.dll
[2013/12/08 21:25:29 | 001,417,216 | ---- | C] (Blue Ripple Sound Limited) -- C:\WINDOWS\SysWow64\rapture3d_oal.dll
[2013/12/08 21:25:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\BRS
[2013/12/08 21:25:28 | 000,466,456 | ---- | C] (Creative Labs) -- C:\WINDOWS\SysNative\wrap_oal.dll
[2013/12/08 21:25:28 | 000,444,952 | ---- | C] (Creative Labs) -- C:\WINDOWS\SysWow64\wrap_oal.dll
[2013/12/08 21:25:28 | 000,122,904 | ---- | C] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\WINDOWS\SysNative\OpenAL32.dll
[2013/12/08 21:25:28 | 000,109,080 | ---- | C] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\WINDOWS\SysWow64\OpenAL32.dll
[2013/12/08 21:25:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\OpenAL
[2013/12/08 19:30:19 | 000,000,000 | ---D | C] -- C:\Users\Tadeáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Farming Simulator 2013
[2013/12/08 19:28:45 | 000,000,000 | ---D | C] -- C:\WINDOWS\SysWow64\FSIM2013Unin
[2013/12/08 10:46:42 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERUNT
[2013/12/07 20:22:26 | 000,000,000 | ---D | C] -- C:\Users\Tadeáš\AppData\Local\Arma 3
[2013/12/06 21:13:17 | 000,000,000 | ---D | C] -- C:\Users\Tadeáš\Desktop\Čističe
[2013/12/06 21:06:38 | 000,000,000 | ---D | C] -- C:\Users\Tadeáš\AppData\Local\Apple
[2013/12/06 21:00:21 | 000,000,000 | ---D | C] -- C:\Users\Tadeáš\AppData\Roaming\Malwarebytes
[2013/12/06 21:00:13 | 000,025,928 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\SysNative\drivers\mbam.sys
[2013/12/06 21:00:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2013/12/06 21:00:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2013/12/06 21:00:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2013/12/06 19:32:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Trend Micro
[2013/12/06 19:32:57 | 000,000,000 | ---D | C] -- C:\Users\Tadeáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiJackThis
[2013/12/03 23:20:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AGEIA Technologies
[2013/11/29 16:19:56 | 000,046,136 | -H-- | C] (LogMeIn Inc.) -- C:\WINDOWS\SysNative\drivers\Hamdrv.sys
[2013/11/23 17:43:31 | 000,000,000 | ---D | C] -- C:\Users\Tadeáš\AppData\Roaming\AVG
[2013/11/23 17:42:44 | 000,000,000 | ---D | C] -- C:\ProgramData\AVG
[2013/11/23 17:42:41 | 000,000,000 | -HSD | C] -- C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
[2013/11/23 17:42:41 | 000,000,000 | -H-D | C] -- C:\ProgramData\Common Files
[2013/11/19 19:38:06 | 001,064,224 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvspcap64.dll
[2013/11/19 19:38:06 | 000,955,168 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvspcap.dll
[2013/11/19 19:37:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
[2013/11/19 19:35:49 | 030,361,888 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvoglv64.dll
[2013/11/19 19:35:49 | 025,257,248 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvcompiler.dll
[2013/11/19 19:35:49 | 022,951,200 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvoglv32.dll
[2013/11/19 19:35:49 | 017,560,352 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvcompiler.dll
[2013/11/19 19:35:49 | 015,862,272 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvwgf2um.dll
[2013/11/19 19:35:49 | 011,600,432 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvcuda.dll
[2013/11/19 19:35:49 | 011,514,624 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvopencl.dll
[2013/11/19 19:35:49 | 009,691,888 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvcuda.dll
[2013/11/19 19:35:49 | 009,619,872 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvopencl.dll
[2013/11/19 19:35:49 | 003,132,704 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvcuvid.dll
[2013/11/19 19:35:49 | 003,125,024 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvcuvenc.dll
[2013/11/19 19:35:49 | 002,947,872 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvcuvid.dll
[2013/11/19 19:35:49 | 002,747,680 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvcuvenc.dll
[2013/11/19 19:35:49 | 002,697,248 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvapi.dll
[2013/11/19 19:35:49 | 001,884,448 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvdispco6433182.dll
[2013/11/19 19:35:49 | 001,511,712 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvdispgenco6433182.dll
[2013/11/19 19:35:49 | 001,242,400 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvumdshim.dll
[2013/11/19 19:35:49 | 000,707,360 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\NvFBC64.dll
[2013/11/19 19:35:49 | 000,657,184 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\NvIFR64.dll
[2013/11/19 19:35:49 | 000,609,568 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\NvFBC.dll
[2013/11/19 19:35:49 | 000,562,464 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\NvIFR.dll
[2013/11/19 19:35:49 | 000,479,520 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvEncodeAPI64.dll
[2013/11/19 19:35:49 | 000,405,280 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvEncodeAPI.dll
[2013/11/19 19:35:49 | 000,317,472 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvoglshim64.dll
[2013/11/19 19:35:49 | 000,266,984 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvoglshim32.dll
[2013/11/19 19:35:49 | 000,168,616 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvinitx.dll
[2013/11/19 19:35:49 | 000,141,336 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvinit.dll
[2013/11/19 19:35:49 | 000,039,200 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\drivers\nvvad64v.sys
[2013/11/19 19:35:49 | 000,029,984 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvaudcap64v.dll
[2013/11/19 19:35:49 | 000,028,960 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvaudcap32v.dll
[2013/11/17 19:48:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Codemasters
[2013/11/16 16:18:01 | 018,577,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Xaml.dll
[2013/11/16 16:18:00 | 013,925,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Xaml.dll
[2013/11/16 16:17:59 | 013,176,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinui.dll
[2013/11/16 16:17:58 | 011,674,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\twinui.dll
[2013/11/16 16:17:51 | 002,801,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\actxprxy.dll
[2013/11/16 16:17:51 | 001,085,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinui.appcore.dll
[2013/11/16 16:17:51 | 000,869,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\twinui.appcore.dll
[2013/11/16 16:17:34 | 003,395,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WSService.dll
[2013/11/16 16:17:31 | 007,399,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntoskrnl.exe
[2013/11/16 16:17:31 | 006,639,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mstscax.dll
[2013/11/16 16:17:30 | 005,769,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mstscax.dll
[2013/11/16 16:17:28 | 002,570,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers.dll
[2013/11/16 16:17:26 | 002,617,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\authui.dll
[2013/11/16 16:17:26 | 002,143,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dwmcore.dll
[2013/11/16 16:17:26 | 001,302,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentServer.dll
[2013/11/16 16:17:25 | 001,231,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.dll
[2013/11/16 16:17:24 | 002,328,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
[2013/11/16 16:17:24 | 002,295,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\authui.dll
[2013/11/16 16:17:24 | 002,065,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\explorer.exe
[2013/11/16 16:17:24 | 001,584,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\workfolderssvc.dll
[2013/11/16 16:17:24 | 001,147,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UIAutomationCore.dll
[2013/11/16 16:17:23 | 001,067,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfasfsrcsnk.dll
[2013/11/16 16:17:23 | 000,920,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UIAutomationCore.dll
[2013/11/16 16:17:22 | 001,765,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dwmcore.dll
[2013/11/16 16:17:22 | 000,888,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.dll
[2013/11/16 16:17:22 | 000,883,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfasfsrcsnk.dll
[2013/11/16 16:17:22 | 000,839,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WSShared.dll
[2013/11/16 16:17:22 | 000,481,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfsvr.dll
[2013/11/16 16:17:21 | 004,599,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\d2d1.dll
[2013/11/16 16:17:21 | 002,134,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\d3d9.dll
[2013/11/16 16:17:21 | 001,287,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\kernel32.dll
[2013/11/16 16:17:21 | 001,160,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Web.Http.dll
[2013/11/16 16:17:21 | 000,699,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\d3d10level9.dll
[2013/11/16 16:17:21 | 000,578,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.BackgroundTransfer.dll
[2013/11/16 16:17:21 | 000,380,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfsvr.dll
[2013/11/16 16:17:20 | 001,399,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winmde.dll
[2013/11/16 16:17:20 | 001,373,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmpmde.dll
[2013/11/16 16:17:20 | 000,762,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Web.Http.dll
[2013/11/16 16:17:20 | 000,411,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Networking.BackgroundTransfer.dll
[2013/11/16 16:17:19 | 001,011,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TSWorkspace.dll
[2013/11/16 16:17:19 | 000,708,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\iuilp.dll
[2013/11/16 16:17:18 | 000,761,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WorkfoldersControl.dll
[2013/11/16 16:17:18 | 000,700,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WSShared.dll
[2013/11/16 16:17:18 | 000,656,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dnsapi.dll
[2013/11/16 16:17:18 | 000,533,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppReadiness.dll
[2013/11/16 16:17:17 | 001,204,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\winmde.dll
[2013/11/16 16:17:17 | 000,631,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WWAHost.exe
[2013/11/16 16:17:17 | 000,518,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WWAHost.exe
[2013/11/16 16:17:17 | 000,331,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\eapphost.dll
[2013/11/16 16:17:17 | 000,171,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\kd_02_8086.dll
[2013/11/16 16:17:17 | 000,031,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ploptin.dll
[2013/11/16 16:17:16 | 000,607,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\comdlg32.dll
[2013/11/16 16:17:16 | 000,465,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AudioSes.dll
[2013/11/16 16:17:16 | 000,391,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tsmf.dll
[2013/11/16 16:17:16 | 000,325,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\eapp3hst.dll
[2013/11/16 16:17:16 | 000,270,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\portcls.sys
[2013/11/16 16:17:15 | 000,795,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TSWorkspace.dll
[2013/11/16 16:17:15 | 000,558,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\apphelp.dll
[2013/11/16 16:17:15 | 000,345,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tsmf.dll
[2013/11/16 16:17:15 | 000,317,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wintrust.dll
[2013/11/16 16:17:15 | 000,134,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\psmsrv.dll
[2013/11/16 16:17:14 | 000,371,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\spaceport.sys
[2013/11/16 16:17:14 | 000,286,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pcsvDevice.dll
[2013/11/16 16:17:14 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msched.dll
[2013/11/16 16:17:14 | 000,104,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ncryptsslp.dll
[2013/11/16 16:17:14 | 000,088,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ncryptsslp.dll
[2013/11/16 16:17:13 | 000,830,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\samsrv.dll
[2013/11/16 16:17:13 | 000,262,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\eapphost.dll
[2013/11/16 16:17:12 | 001,843,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Display.dll
[2013/11/16 16:17:12 | 000,325,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\USBXHCI.SYS
[2013/11/16 16:17:12 | 000,092,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dafBth.dll
[2013/11/16 16:17:12 | 000,083,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TSWbPrxy.exe
[2013/11/16 16:17:12 | 000,057,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\stornvme.sys
[2013/11/16 16:17:12 | 000,054,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuauclt.exe
[2013/11/16 16:17:12 | 000,044,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wldp.dll
[2013/11/16 16:17:12 | 000,039,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\intelpep.sys
[2013/11/16 16:17:11 | 001,816,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Display.dll
[2013/11/16 16:17:11 | 000,922,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentExtensions.dll
[2013/11/16 16:17:11 | 000,381,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WUSettingsProvider.dll
[2013/11/16 16:17:11 | 000,184,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dafWfdProvider.dll
[2013/11/16 16:17:11 | 000,113,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\shsetup.dll
[2013/11/16 16:17:10 | 000,335,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\eappcfg.dll
[2013/11/16 16:17:10 | 000,272,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\eappcfg.dll
[2013/11/16 16:17:10 | 000,245,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\eapp3hst.dll
[2013/11/16 16:17:10 | 000,103,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WiFiDisplay.dll
[2013/11/16 16:17:10 | 000,101,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\eappgnui.dll
[2013/11/16 16:17:10 | 000,094,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\shsetup.dll
[2013/11/16 16:17:10 | 000,093,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\eappgnui.dll
[2013/11/16 16:17:09 | 000,186,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WorkFoldersShell.dll
[2013/11/16 16:17:09 | 000,049,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ftp.exe
[2013/11/16 16:17:08 | 001,704,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wucltux.dll
[2013/11/16 16:17:08 | 000,909,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MrmCoreR.dll
[2013/11/16 16:17:08 | 000,621,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MrmCoreR.dll
[2013/11/16 16:17:08 | 000,338,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdpclip.exe
[2013/11/16 16:17:08 | 000,249,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.Store.TestingFramework.dll
[2013/11/16 16:17:08 | 000,226,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\miutils.dll
[2013/11/16 16:17:08 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.ApplicationModel.Store.TestingFramework.dll
[2013/11/16 16:17:08 | 000,180,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\miutils.dll
[2013/11/16 16:17:08 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ftp.exe
[2013/11/16 16:17:07 | 000,160,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppxAllUserStore.dll
[2013/11/16 16:17:07 | 000,139,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppxAllUserStore.dll
[2011/11/23 17:38:28 | 000,704,000 | ---- | C] (Ubisoft) -- C:\Users\Tadeáš\AppData\Roaming\AssassinsCreedRevelations.exe

========== Files - Modified Within 30 Days ==========

[2013/12/15 19:24:00 | 000,000,966 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2013/12/15 19:03:00 | 000,000,914 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2013/12/15 18:35:22 | 000,067,584 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2013/12/15 17:42:17 | 000,000,938 | ---- | M] () -- C:\Users\Public\Desktop\LogMeIn Hamachi.lnk
[2013/12/15 16:55:17 | 001,745,984 | ---- | M] () -- C:\WINDOWS\SysNative\PerfStringBackup.INI
[2013/12/15 16:55:17 | 000,738,682 | ---- | M] () -- C:\WINDOWS\SysNative\perfh005.dat
[2013/12/15 16:55:17 | 000,722,278 | ---- | M] () -- C:\WINDOWS\SysNative\perfh009.dat
[2013/12/15 16:55:17 | 000,151,404 | ---- | M] () -- C:\WINDOWS\SysNative\perfc005.dat
[2013/12/15 16:55:17 | 000,135,394 | ---- | M] () -- C:\WINDOWS\SysNative\perfc009.dat
[2013/12/14 19:40:38 | 000,002,203 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2013/12/14 19:39:50 | 000,000,962 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2013/12/14 19:38:14 | 817,029,117 | -HS- | M] () -- C:\hiberfil.sys
[2013/12/14 19:38:14 | 268,435,456 | -HS- | M] () -- C:\swapfile.sys
[2013/12/14 18:28:49 | 000,000,222 | ---- | M] () -- C:\Users\Tadeáš\Desktop\Neverwinter.url
[2013/12/14 01:21:29 | 000,214,392 | ---- | M] () -- C:\WINDOWS\SysWow64\PnkBstrB.exe
[2013/12/14 01:08:56 | 000,214,392 | ---- | M] () -- C:\WINDOWS\SysWow64\PnkBstrB.ex0
[2013/12/13 20:33:29 | 000,004,541 | ---- | M] () -- C:\Users\Tadeáš\AppData\Local\recently-used.xbel
[2013/12/13 20:08:22 | 000,000,766 | ---- | M] () -- C:\Users\Public\Desktop\GIMP 2.lnk
[2013/12/11 23:21:38 | 000,371,592 | ---- | M] () -- C:\WINDOWS\SysNative\FNTCACHE.DAT
[2013/12/11 20:44:11 | 000,001,111 | ---- | M] () -- C:\Users\Tadeáš\Desktop\Logitech RumblePad 2 USB – zástupce.lnk
[2013/12/08 21:25:28 | 000,466,456 | ---- | M] (Creative Labs) -- C:\WINDOWS\SysNative\wrap_oal.dll
[2013/12/08 21:25:28 | 000,444,952 | ---- | M] (Creative Labs) -- C:\WINDOWS\SysWow64\wrap_oal.dll
[2013/12/08 21:25:28 | 000,122,904 | ---- | M] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\WINDOWS\SysNative\OpenAL32.dll
[2013/12/08 21:25:28 | 000,109,080 | ---- | M] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\WINDOWS\SysWow64\OpenAL32.dll
[2013/12/08 19:30:19 | 000,000,788 | ---- | M] () -- C:\Users\Tadeáš\Desktop\Farming Simulator 2013 .lnk
[2013/12/07 00:01:38 | 000,290,184 | ---- | M] () -- C:\WINDOWS\SysWow64\PnkBstrB.xtr
[2013/12/05 18:04:05 | 000,000,613 | ---- | M] () -- C:\Users\Public\Desktop\Call of Duty Ghosts.lnk
[2013/12/04 01:05:48 | 000,693,240 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\SysWow64\FlashPlayerApp.exe
[2013/12/04 01:05:48 | 000,105,464 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\SysWow64\FlashPlayerCPLApp.cpl
[2013/12/03 17:33:00 | 000,000,222 | ---- | M] () -- C:\Users\Tadeáš\Desktop\PAYDAY 2.url
[2013/11/29 16:19:56 | 000,046,136 | -H-- | M] (LogMeIn Inc.) -- C:\WINDOWS\SysNative\drivers\Hamdrv.sys
[2013/11/26 09:57:44 | 000,218,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ie4uinit.exe
[2013/11/26 09:35:02 | 005,769,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript9.dll
[2013/11/26 09:02:16 | 001,995,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\inetcpl.cpl
[2013/11/26 08:32:06 | 001,928,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\inetcpl.cpl
[2013/11/26 07:34:55 | 000,703,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ieapfltr.dll
[2013/11/26 07:34:27 | 000,817,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ieapfltr.dll
[2013/11/23 05:34:43 | 000,393,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WMPhoto.dll
[2013/11/23 05:13:51 | 000,348,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WMPhoto.dll
[2013/11/23 04:32:09 | 004,105,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SyncEngine.dll
[2013/11/23 04:10:49 | 000,568,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SkyDrive.exe
[2013/11/19 19:37:28 | 000,002,145 | ---- | M] () -- C:\Users\Public\Desktop\3D Vision Photo Viewer.lnk
[2013/11/17 18:47:17 | 000,000,537 | ---- | M] () -- C:\Users\Public\Desktop\F1 2013.lnk

========== Files Created - No Company Name ==========

[2013/12/15 17:41:51 | 000,000,938 | ---- | C] () -- C:\Users\Public\Desktop\LogMeIn Hamachi.lnk
[2013/12/14 18:28:49 | 000,000,222 | ---- | C] () -- C:\Users\Tadeáš\Desktop\Neverwinter.url
[2013/12/13 20:33:29 | 000,004,541 | ---- | C] () -- C:\Users\Tadeáš\AppData\Local\recently-used.xbel
[2013/12/13 20:08:22 | 000,000,766 | ---- | C] () -- C:\Users\Public\Desktop\GIMP 2.lnk
[2013/12/13 20:08:22 | 000,000,766 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk
[2013/12/11 20:44:11 | 000,001,111 | ---- | C] () -- C:\Users\Tadeáš\Desktop\Logitech RumblePad 2 USB – zástupce.lnk
[2013/12/08 19:30:19 | 000,000,788 | ---- | C] () -- C:\Users\Tadeáš\Desktop\Farming Simulator 2013 .lnk
[2013/12/05 18:04:05 | 000,000,613 | ---- | C] () -- C:\Users\Public\Desktop\Call of Duty Ghosts.lnk
[2013/12/05 18:04:05 | 000,000,613 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Call of Duty Ghosts.lnk
[2013/12/03 17:33:00 | 000,000,222 | ---- | C] () -- C:\Users\Tadeáš\Desktop\PAYDAY 2.url
[2013/11/19 19:37:28 | 000,002,145 | ---- | C] () -- C:\Users\Public\Desktop\3D Vision Photo Viewer.lnk
[2013/11/19 19:35:49 | 000,357,152 | ---- | C] () -- C:\WINDOWS\SysNative\NvIFROpenGL.dll
[2013/11/19 19:35:49 | 000,314,656 | ---- | C] () -- C:\WINDOWS\SysWow64\NvIFROpenGL.dll
[2013/11/17 18:47:17 | 000,000,537 | ---- | C] () -- C:\Users\Public\Desktop\F1 2013.lnk
[2013/11/17 18:47:17 | 000,000,537 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\F1 2013.lnk
[2013/11/16 16:17:11 | 000,385,528 | ---- | C] () -- C:\WINDOWS\SysNative\ApnDatabase.xml
[2013/10/08 16:09:45 | 003,123,272 | ---- | C] () -- C:\WINDOWS\SysWow64\pbsvc.exe
[2013/09/15 14:32:47 | 000,142,128 | ---- | C] () -- C:\WINDOWS\wiainst64.exe
[2013/09/15 14:24:40 | 001,571,160 | ---- | C] () -- C:\WINDOWS\TotalUninstaller.exe
[2013/09/14 15:06:55 | 000,007,602 | ---- | C] () -- C:\Users\Tadeáš\AppData\Local\Resmon.ResmonCfg
[2013/08/22 16:36:43 | 000,215,943 | ---- | C] () -- C:\WINDOWS\SysWow64\dssec.dat
[2013/08/22 16:36:42 | 000,000,741 | ---- | C] () -- C:\WINDOWS\SysWow64\NOISE.DAT
[2013/08/22 15:46:23 | 000,067,584 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2013/08/22 08:01:23 | 000,043,131 | ---- | C] () -- C:\WINDOWS\mib.bin
[2013/08/22 04:32:36 | 000,046,080 | ---- | C] () -- C:\WINDOWS\SysWow64\BWContextHandler.dll
[2013/08/22 04:17:46 | 000,103,936 | ---- | C] () -- C:\WINDOWS\SysWow64\OEMLicense.dll
[2013/08/22 00:55:20 | 000,364,544 | ---- | C] () -- C:\WINDOWS\SysWow64\msjetoledb40.dll
[2013/08/22 00:52:39 | 000,673,088 | ---- | C] () -- C:\WINDOWS\SysWow64\mlang.dat
[2013/08/21 12:50:11 | 002,601,752 | ---- | C] () -- C:\WINDOWS\SysWow64\pbsvc_moh.exe
[2013/08/21 08:30:26 | 000,000,331 | ---- | C] () -- C:\WINDOWS\game.ini
[2013/08/20 23:09:14 | 000,214,392 | ---- | C] () -- C:\WINDOWS\SysWow64\PnkBstrB.exe
[2013/08/20 23:09:12 | 000,076,888 | ---- | C] () -- C:\WINDOWS\SysWow64\PnkBstrA.exe
[2011/11/23 17:38:28 | 046,593,024 | ---- | C] () -- C:\Users\Tadeáš\AppData\Roaming\ACRPR.exe

========== ZeroAccess Check ==========

[2013/10/28 08:02:09 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013/11/05 21:21:27 | 021,196,664 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013/11/05 19:51:37 | 018,642,504 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2013/08/22 10:49:49 | 000,921,088 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2013/08/22 03:45:10 | 000,691,712 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2013/08/22 10:45:17 | 000,483,840 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== LOP Check ==========

[2013/11/03 11:54:28 | 000,000,000 | ---D | M] -- C:\Users\Tadeáš\AppData\Roaming\.minecraft
[2013/10/14 18:18:17 | 000,000,000 | ---D | M] -- C:\Users\Tadeáš\AppData\Roaming\123
[2013/10/27 17:38:08 | 000,000,000 | ---D | M] -- C:\Users\Tadeáš\AppData\Roaming\Audacity
[2013/11/23 17:43:31 | 000,000,000 | ---D | M] -- C:\Users\Tadeáš\AppData\Roaming\AVG
[2013/10/18 20:31:44 | 000,000,000 | ---D | M] -- C:\Users\Tadeáš\AppData\Roaming\Battle.net
[2013/10/18 14:48:47 | 000,000,000 | ---D | M] -- C:\Users\Tadeáš\AppData\Roaming\Guild Wars 2
[2013/11/04 19:46:13 | 000,000,000 | ---D | M] -- C:\Users\Tadeáš\AppData\Roaming\JAM Software
[2013/10/27 21:28:32 | 000,000,000 | ---D | M] -- C:\Users\Tadeáš\AppData\Roaming\Milestone
[2013/10/20 17:32:21 | 000,000,000 | ---D | M] -- C:\Users\Tadeáš\AppData\Roaming\Origin
[2013/09/08 11:14:35 | 000,000,000 | ---D | M] -- C:\Users\Tadeáš\AppData\Roaming\Publish Providers
[2013/08/29 13:26:24 | 000,000,000 | ---D | M] -- C:\Users\Tadeáš\AppData\Roaming\PunkBuster
[2013/12/12 18:56:19 | 000,000,000 | ---D | M] -- C:\Users\Tadeáš\AppData\Roaming\Sony
[2013/09/10 09:56:53 | 000,000,000 | ---D | M] -- C:\Users\Tadeáš\AppData\Roaming\Sony Creative Software Inc
[2013/08/26 17:02:32 | 000,000,000 | ---D | M] -- C:\Users\Tadeáš\AppData\Roaming\SpinTires
[2013/10/19 13:45:42 | 000,000,000 | ---D | M] -- C:\Users\Tadeáš\AppData\Roaming\The Creative Assembly
[2013/10/29 09:11:08 | 000,000,000 | ---D | M] -- C:\Users\Tadeáš\AppData\Roaming\Theta
[2013/10/13 18:11:11 | 000,000,000 | ---D | M] -- C:\Users\Tadeáš\AppData\Roaming\TS3Client
[2013/12/13 21:40:20 | 000,000,000 | ---D | M] -- C:\Users\Tadeáš\AppData\Roaming\uTorrent

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 220 bytes -> C:\Users\Tadeáš\SkyDrive:ms-properties

< End of report >
Moje zlatíčko: CPU i5-3570, MB: MSI Z77MA-G45, RAM Corsair Ventage 2x8GB, GPU: Gigabyte GTX680 OC 2GB, Zdroj: CoolerMaster 650W GX serie, HDD: Seagate Baracuda 7200.14 1TB server , CASE Zalman Z11,

Uživatelský avatar
tarogar
Level 3.5
Level 3.5
Příspěvky: 829
Registrován: červen 12
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu obfuscator.xz VirTool

Příspěvekod tarogar » 15 pro 2013 20:22

Našel jsem i nějaký Extras ale nejsem si jistý jestli je to ten nový. :( OTL Extras logfile created on: 12. 12. 2013 19:11:14 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Tadeáš\Downloads
64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.16476)
Locale: 00000405 | Country: Czech Republic | Language: CSY | Date Format: d. M. yyyy

15,95 Gb Total Physical Memory | 14,41 Gb Available Physical Memory | 90,32% Memory free
18,33 Gb Paging File | 16,75 Gb Available in Paging File | 91,38% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 220,17 Gb Total Space | 35,68 Gb Free Space | 16,20% Space Free | Partition Type: NTFS
Drive E: | 711,00 Gb Total Space | 223,53 Gb Free Space | 31,44% Space Free | Partition Type: NTFS

Computer Name: PC-TED | User Name: Tadeáš | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\WINDOWS\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\WINDOWS\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [AddToPlaylistVLC] -- "E:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "E:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [AddToPlaylistVLC] -- "E:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "E:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = AC 1C AE C5 46 9F CE 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = [binary data]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = Reg Error: Unknown registry data type -- File not found

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0
"DoNotAllowExceptions" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0B0A8B53-2475-4B57-99FA-95A8E13170EF}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office 15\root\office15\outlook.exe |
"{11DB57FA-F50A-461C-9991-0E18006C4D8E}" = rport=10243 | protocol=6 | dir=out | app=system |
"{3A3ED866-76C8-4E6A-AC6A-6A816AC4C022}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{46C6A330-1419-4341-B64C-2C12B92064DF}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{4BFAC768-6C27-477B-AB7F-87E7B4F19B17}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{605FDA5F-2189-4021-A58E-A26362295EBB}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{951A9B2F-59FD-40FC-A469-61DFF448261A}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{9C99778E-176B-4DE2-8C28-1C2CB63531DD}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{9D5B05D2-695B-41F1-A19D-9915ED7C80CF}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{9FC6F4F8-B17D-47E5-B0D5-1F9009BBA37F}" = lport=10243 | protocol=6 | dir=in | app=system |
"{A6FB5C2B-F9BB-4BDA-B0A8-3CAAC1944F87}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{BA4E6DE1-B9F0-4D28-A162-226AD6A491DF}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{C08A0ACE-600E-4CBD-8AA0-583A21843E8D}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{C10D25A2-AAAA-4433-AD4C-B99785EE464E}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{CC334AE1-4C9F-4F87-95B6-348B5AD09FBA}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{D8644D22-E8FE-4E45-BBDF-1BB4D870B8AD}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{F7D3A71F-5CE9-4886-95B6-A4A7CD89E7AC}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{FF92328A-EEED-454B-B50D-0746D179E1C6}" = lport=2869 | protocol=6 | dir=in | app=system |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{02EAECA9-4858-47CC-9713-039AA04AEC35}" = protocol=6 | dir=in | app=e:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{02F1FBB7-F9AB-4E06-B5F5-C2C4078CFE65}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{03521601-5EF6-4D3C-8F1D-287E42737F7F}" = protocol=17 | dir=in | app=c:\program files (x86)\samsung\samsung universal scan driver\usdagent.exe |
"{038D2110-594F-4A61-B785-24E6D3120EC8}" = dir=out | name=@{microsoft.zunevideo_2.2.299.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} |
"{054AD8AA-963D-47AC-BCE8-16C6ABAC9F91}" = protocol=6 | dir=in | app=e:\program files (x86)\origin games\battlefield 4 beta\bf4.exe |
"{0A2AEE70-E003-4E16-B195-02B866EAEA58}" = protocol=6 | dir=in | app=c:\users\tadeáš\appdata\local\temp\ins3eba\setup.exe |
"{0A73F053-5B82-41E2-8B4F-8CEE44A4F25D}" = dir=out | name=@{microsoft.xboxlivegames_2.0.139.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} |
"{0D3F8B5E-332A-461D-8CD1-700208B098C0}" = dir=out | name=@{microsoft.binghealthandfitness_3.0.1.335_x64__8wekyb3d8bbwe?ms-resource://microsoft.binghealthandfitness/resources/apptitle} |
"{0D59FADA-BCE9-470D-B1A5-9E0C6CB0817E}" = dir=out | name=@{microsoft.bingweather_3.0.1.203_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} |
"{12FECD69-AFF5-411F-A2E9-B34F58ABEA33}" = protocol=17 | dir=in | app=e:\program files (x86)\hearthstone of warcraft\hearthstone\hearthstone.exe |
"{134BBBEE-3C96-4585-AFA9-E9BEEF49F5AB}" = dir=out | name=@{microsoft.bingfinance_3.0.1.299_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} |
"{138BE8E0-ADAD-4C08-B634-2C412820D2E9}" = protocol=6 | dir=in | app=e:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{14526E10-9779-480D-8A0B-2E82461B4647}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{1506E51F-CCAC-4EBB-8979-5CC0E89AF62D}" = dir=in | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} |
"{165E1C4E-E6A1-4664-887A-585AA4250A8E}" = protocol=17 | dir=in | app=e:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{16B6A66A-F32A-4A2E-8151-E1BF440BE077}" = protocol=6 | dir=in | app=e:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{16F21B3E-77A2-45C3-BC60-802D56284729}" = dir=in | name=f5 vpn |
"{18DE1ADD-1308-476C-853B-A196B26E5362}" = protocol=6 | dir=in | app=e:\program files (x86)\activision\call of duty 4 - modern warfare\iw3mp.exe |
"{190494F9-27E9-46A3-BA49-0AA6861B02DA}" = dir=in | name=skype |
"{1B44108C-8ABD-4ADE-BBB8-5485F9173909}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{1B5C2A57-8D34-4982-81F1-3A1F2245A968}" = dir=in | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} |
"{1CC99BE6-A0A5-4F80-91B3-96B21ADC2F9E}" = dir=in | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} |
"{1DB1860C-90F6-4205-A2BC-2475CF774BAC}" = dir=in | app=e:\program files (x86)\skype\phone\skype.exe |
"{22744BCC-4F33-4FD6-80FF-CFBE2B7709A4}" = protocol=6 | dir=in | app=e:\program files (x86)\hearthstone of warcraft\battle.net\battle.net.exe |
"{22A5709D-CA29-4BC8-943A-F73452DBEC95}" = dir=out | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} |
"{27103E37-5F0C-476E-B42F-81C8855C5BDB}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2045\agent.exe |
"{27C70613-6808-4D17-8E2E-7A7658A7F59A}" = protocol=17 | dir=in | app=e:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{2822EEE1-D1C5-41BB-A11A-26B1E380D782}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{2A8A15E0-2DE3-4B72-A5E8-137599D7F514}" = protocol=6 | dir=in | app=e:\program files (x86)\skyrim\steam.exe |
"{2E7C5F97-D526-4658-9E35-6548E5332C7D}" = protocol=6 | dir=in | app=e:\program files (x86)\steam\steam.exe |
"{2EB06D3B-3C5B-4AA5-9601-844B8A73C4D3}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{30B14B58-5EB2-4104-9400-BF8D9995AEA8}" = dir=out | name=windows_ie_ac_001 |
"{31BE32C9-8BC3-48A4-B214-09926FBD481E}" = dir=out | name=f5 vpn |
"{337D5396-F2B7-4334-BBAF-9ABAF80E41AD}" = protocol=6 | dir=in | app=e:\program files (x86)\ubisoft\farcry 3\bin\fc3editor.exe |
"{33A6363F-AAB0-41BA-8A05-A37B402C98D4}" = protocol=17 | dir=in | app=e:\program files (x86)\activision\call of duty 4 - modern warfare\iw3mp.exe |
"{354666D0-7185-4F2A-8120-3B6F5608622B}" = protocol=17 | dir=in | app=e:\program files (x86)\origin games\dead space 3\deadspace3.exe |
"{36507BA5-A602-4395-A2D7-7E1D7AF8079B}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2359\agent.exe |
"{3ABE547B-A058-4DA9-8B40-B8381D43A8B9}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2293\agent.exe |
"{3C3C23C7-1D60-4ED3-ADCD-0AB0B59B02BD}" = dir=out | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} |
"{3CFB6FCA-4393-4E4F-B1F6-FC99B8766EF5}" = dir=in | app=c:\users\tadeáš\appdata\local\microsoft\skydrive\skydrive.exe |
"{4064AF2B-0AC4-4325-939A-B8FF476602FF}" = protocol=17 | dir=in | app=c:\program files (x86)\codemasters\dirt 3\dirt3_game.exe |
"{4282FE99-8560-4BC7-9576-5F3ED84E263F}" = dir=in | name=checkpoint.vpn |
"{44CAFE01-F636-4E37-821C-B80797DE0F9C}" = dir=in | name=sonicwall mobile connect |
"{454B0700-F79E-41DB-AC27-214589647CBB}" = protocol=17 | dir=in | app=e:\program files (x86)\rockstar games\grand theft auto iv\launchgtaiv.exe |
"{4749C674-0F62-4551-8836-8FAECA1ED505}" = dir=out | name=@{microsoft.xboxlivegames_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} |
"{498203E9-F3C9-466E-BB0A-13001926BF56}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{4A5389C2-9B66-40C9-8BA7-5070A1B7B8B4}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{4C14F0B0-FDC9-4CB9-B3CE-D33BC90B6BC1}" = dir=out | name=@{microsoft.bingfinance_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} |
"{4DDE41DC-3484-4FEF-992F-E1CAA3D81B5F}" = dir=out | name=juniper networks junos pulse |
"{4EE50E0C-075F-47E0-92C7-1221EC679965}" = protocol=6 | dir=out | app=system |
"{4EF4E531-BD87-4932-B29C-8E15E63F6298}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{52A51558-A4F5-451F-B114-D57DB2FAF793}" = protocol=6 | dir=in | app=e:\program files (x86)\ubisoft\assassin's creed iii\assassinscreed3.exe |
"{534BE8EC-0F66-45CA-836F-6D0D20C9ED9F}" = dir=in | app=c:\program files\softether vpn client\vpnclient_x64.exe |
"{5449BBF5-08D3-4D3E-A5F2-8E9665CD7755}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{54705599-BF93-4675-8EA8-621F5684606E}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe |
"{548DCF8C-BFF2-4BA4-AA88-FBAF9AC8BCC6}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{560448D6-095C-4907-B046-AC7F710701A7}" = dir=in | name=sonicwall.mobileconnect |
"{562BE16C-F006-4C14-8A1C-7DD0617F6A8E}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2359\agent.exe |
"{577164A0-F1D5-4BCF-A04A-FED3A6409860}" = protocol=6 | dir=in | app=e:\program files (x86)\ubisoft\assassin's creed iii\ac3sp.exe |
"{5928E86B-3176-4BC2-AC56-5900D22B5EA2}" = dir=in | app=e:\program files (x86)\itunes\itunes.exe |
"{5A0EBE10-2754-49E9-8933-DF6FC7599A56}" = protocol=17 | dir=in | app=e:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe |
"{5AC722AD-516B-4734-9C54-23B4B9C7AADD}" = protocol=6 | dir=in | app=e:\program files (x86)\utorrent\utorrent.exe |
"{5B7E022A-3F89-4014-8243-6781F68939F3}" = protocol=17 | dir=in | app=e:\program files (x86)\ubisoft\farcry 3\bin\farcry3_d3d11.exe |
"{5DB973DA-CD2F-4FC3-BBD6-6102ECBA9BB0}" = dir=out | name=@{microsoft.bingmaps_1.2.0.136_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} |
"{5DD4874E-152E-4694-A530-2242F29C1224}" = dir=out | name=@{microsoft.bingtravel_1.2.0.145_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} |
"{5F4632C0-D5B1-40C3-B0D9-E3A759C81B9E}" = dir=out | name=sonicwall.mobileconnect |
"{601391B9-92DC-45A8-815D-B12D1817349E}" = protocol=17 | dir=in | app=e:\program files (x86)\hearthstone of warcraft\battle.net\battle.net.exe |
"{626010D9-DAF5-49F0-A33D-0296CA580953}" = protocol=17 | dir=in | app=e:\program files (x86)\electronic arts\battlefield bad company 2\bfbc2updater.exe |
"{66C34B78-BD96-4EA9-9A4F-35F1C4546523}" = protocol=6 | dir=in | app=c:\users\tadeáš\appdata\local\temp\ins3eba\setup.exe |
"{681DB2A1-A832-4969-964D-0C472E34145C}" = protocol=17 | dir=in | app=e:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{6910BE99-3BA5-479C-9469-C505391B3426}" = protocol=17 | dir=in | app=c:\users\tadeáš\appdata\local\temp\ins3eba\setup.exe |
"{6C599614-1FE1-47EF-8DBA-CCEB71AC3D02}" = protocol=17 | dir=in | app=e:\program files (x86)\ubisoft\assassin's creed iii\ac3mp.exe |
"{6C6E4B6D-8521-404D-A0C9-E0F3DC7F7B60}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.5.9600.20315_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{6C804EDD-1CE9-4B25-9255-594CF099EF49}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{6ECF318A-10F7-4D8D-985B-66B50ED60C1C}" = protocol=6 | dir=in | app=e:\program files (x86)\origin games\dead space 3\deadspace3.exe |
"{70AD801E-559E-48F6-9999-544E48AD6B8E}" = dir=in | name=@{microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{73600B51-AD39-4781-B4F6-0A9252C69033}" = dir=in | app=c:\program files\softether vpn client\vpncmgr_x64.exe |
"{73D0BAF9-DB24-499D-9D1A-62B09FC9B22D}" = protocol=17 | dir=in | app=e:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{748B5050-644D-439D-A88F-31AB982AB817}" = protocol=6 | dir=in | app=e:\program files (x86)\ubisoft\assassin's creed iii\ac3mp.exe |
"{757D7086-B9E7-4E00-8A5C-EA21D5B2BE2A}" = protocol=17 | dir=in | app=e:\program files (x86)\utorrent\utorrent.exe |
"{7811B4ED-EB62-4B0C-B39A-9CB09D6419C6}" = dir=out | name=check point vpn |
"{7A2B3296-E2BB-4E77-A1C4-48870DD5B4F9}" = protocol=17 | dir=in | app=e:\program files (x86)\ubisoft\farcry 3\bin\fc3updater.exe |
"{7C9C5945-CFE2-4CFF-983C-D6AD698C911C}" = dir=in | app=c:\program files\softether vpn client\vpnclient.exe |
"{808F1451-4108-46FD-ADBB-F17324B5F0BD}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{81CA7581-2F42-4B06-9B4F-8395C42BB414}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{84EB7027-79BE-462E-96C5-8FF913D54123}" = dir=in | app=c:\program files\softether vpn client\vpncmd_x64.exe |
"{8BF3C05E-642D-4492-A9B8-544255266360}" = dir=out | name=@{microsoft.bingmaps_2.0.2210.2401_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} |
"{8CECCF24-2F52-498D-A12C-18E53D2BB764}" = protocol=6 | dir=in | app=e:\program files (x86)\electronic arts\battlefield bad company 2\bfbc2updater.exe |
"{8F16AF1E-6B17-4078-B79D-2C5E2C89ED37}" = dir=in | name=check point vpn |
"{921E2F6C-D880-43D7-BBCE-6873BB16A469}" = protocol=6 | dir=in | app=e:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe |
"{926F3B8B-B8AC-443F-83B5-21989BC35594}" = protocol=6 | dir=in | app=e:\program files (x86)\ubisoft\farcry 3\bin\fc3updater.exe |
"{94BF525A-E90F-4DD0-BD6C-14EC7B69CF49}" = protocol=17 | dir=in | app=e:\program files (x86)\ubisoft\farcry 3\bin\farcry3.exe |
"{95271A89-B5FB-40D8-9EE2-81215D4CD76F}" = dir=out | name=windows_ie_ac_001 |
"{9A105839-CDF1-4D37-B9DA-1CC04EEB6BDB}" = protocol=6 | dir=in | app=e:\program files (x86)\origin games\battlefield 3\bf3.exe |
"{9A8EF377-970D-47F2-9662-ACE66C61BAF9}" = protocol=17 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe |
"{9D29736C-C7C9-4CD5-B017-82AA72FB09B0}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.5.9600.20315_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{9E3D57FC-7C37-4424-9352-4831E97D029D}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{A0212AAE-FBB5-442C-B045-51EBB0BA4093}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{A140116D-8809-4444-9BEE-6A6EBF6ADF39}" = protocol=6 | dir=in | app=e:\program files (x86)\ea games\battlefield 2\bf2.exe |
"{A2E8AE88-3E85-46A6-88DF-451302E55B52}" = protocol=6 | dir=in | app=e:\program files (x86)\steam\steamapps\common\payday 2\payday2_win32_release.exe |
"{A353D21E-9E04-477A-97C4-243E7EB05C31}" = protocol=6 | dir=in | app=e:\program files (x86)\hearthstone of warcraft\hearthstone\hearthstone.exe |
"{A6A49A7F-FCE9-41C9-A405-16BA3DE126F4}" = protocol=6 | dir=in | app=c:\program files (x86)\samsung\samsung universal scan driver\usdagent.exe |
"{A72596FD-D98C-4AE2-8DA8-4601AB5D28D4}" = protocol=6 | dir=in | app=c:\program files (x86)\codemasters\dirt 3\dirt3_game.exe |
"{A837C2D6-E1F9-4F1C-8996-202CE0AD06B0}" = protocol=17 | dir=in | app=e:\program files (x86)\origin games\battlefield 4\bf4_x86.exe |
"{A9BF5848-6B6C-4880-AF7C-9D779D9E4D92}" = dir=out | name=@{microsoft.zunevideo_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/33270} |
"{A9D34D8A-5272-4BA7-BEAD-045A785AB4E6}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2045\agent.exe |
"{AB86C56C-C85B-4C23-B7D5-78C488B718EB}" = dir=out | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} |
"{AC811A18-E333-416E-B52E-F98D1411644E}" = dir=out | name=@{microsoft.bingfoodanddrink_3.0.1.201_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfoodanddrink/resources/apptitlewithbranding} |
"{AD13A222-52C3-4431-B56B-C1F5ED902FF9}" = dir=out | name=@{microsoft.bingtravel_3.0.1.202_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} |
"{ADC082D7-F680-4048-8519-DF84EE9FC60E}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{B0CE5DD3-2A69-4C6E-896C-BD39C4AE19F0}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{B1977F69-2CE5-4CB9-AB9A-B6C0F70569F4}" = protocol=17 | dir=in | app=e:\program files (x86)\ubisoft\assassin's creed iii\ac3sp.exe |
"{B366B146-F0D6-4FFB-A07D-4A632698710B}" = dir=out | name=@{microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{B3E9577A-3426-458E-BFD5-846F671A8BAF}" = dir=in | name=@{microsoft.windowsreadinglist_6.3.9654.20321_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} |
"{B4844996-0BCF-4DB2-9D36-625BBA879931}" = dir=out | name=@{microsoft.bingweather_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} |
"{B485FC84-7B3C-4612-847F-60F6FCA04E91}" = protocol=6 | dir=in | app=e:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{B7DDC346-2368-45C5-B658-EA7FFB31EFE4}" = dir=out | name=@{microsoft.zunemusic_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/33273} |
"{B8CA56F4-DE7C-48A3-9460-40A7E426F94C}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{BB2762C7-2CB8-4C2F-B653-48C19F0B0836}" = dir=in | name=juniper networks junos pulse |
"{BBE451CE-BD4A-4CFB-B60D-F8BC75027442}" = protocol=6 | dir=in | app=e:\program files (x86)\origin games\battlefield 4\bf4_x86.exe |
"{BE0A16B3-A796-4898-A696-0AC14323BC77}" = dir=out | name=@{microsoft.windowsreadinglist_6.3.9654.20321_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} |
"{C1C8C835-ED41-4DEC-8CCB-AD5FFC60636E}" = protocol=17 | dir=in | app=c:\program files (x86)\samsung\samsung universal scan driver\iccupdater.exe |
"{C3FC9DD0-30F9-4EF1-9049-73E6D0268491}" = protocol=17 | dir=in | app=e:\program files (x86)\steam\steamapps\common\payday 2\payday2_win32_release.exe |
"{C45043D1-4940-486E-B1DC-DCE6461BDBB9}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2293\agent.exe |
"{C453B363-A0D2-4A71-9AE3-562BE70BA920}" = protocol=6 | dir=in | app=c:\program files (x86)\samsung\samsung universal scan driver\iccupdater.exe |
"{C5AEF73D-BF03-47CE-924D-AB966B372054}" = dir=out | name=@{microsoft.bingsports_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/bingsports} |
"{C704C73C-57DB-4A86-92E1-A8C4204D17D1}" = protocol=17 | dir=in | app=e:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{C8B4D54B-347C-47CD-88E8-52CE5A20EE1A}" = dir=in | app=c:\program files\softether vpn client\vpncmd.exe |
"{C952609E-1D11-4E99-8EFE-0729F9B8D128}" = protocol=6 | dir=in | app=e:\program files (x86)\origin games\battlefield 4\bf4.exe |
"{C96F0C8C-ACA0-4265-A8BE-65E6820736E4}" = dir=in | app=c:\program files (x86)\samsung\samsung universal print driver 2\printerselector\supdapp.exe |
"{CAF83457-736D-4BF2-8907-039694B1F345}" = protocol=17 | dir=in | app=e:\program files (x86)\ea games\battlefield 2\bf2.exe |
"{CB19E230-F27F-4284-A68A-B7E67076EE10}" = protocol=6 | dir=in | app=e:\program files (x86)\steam\steamapps\common\payday 2\payday2_win32_release.exe |
"{CB4C8AAD-37CD-4B97-A702-3E13A12BDDC7}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{CE9A4403-1476-4827-A830-596E404F403D}" = protocol=6 | dir=in | app=e:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe |
"{D41C7551-7E62-4E7A-8766-7A82E683E6A0}" = protocol=17 | dir=in | app=e:\program files (x86)\ubisoft\assassin's creed iii\assassinscreed3.exe |
"{D6980480-941A-4DF6-AB81-3734ECD3D779}" = dir=out | name=junipernetworks.junospulsevpn |
"{D76FE0CD-D202-46F6-846D-12A4FEB65251}" = dir=out | name=@{microsoft.zunemusic_2.2.299.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} |
"{D824B622-0FFA-4572-A1B8-E9D72175F5D8}" = protocol=17 | dir=in | app=e:\program files (x86)\origin games\battlefield 4\bf4.exe |
"{D93B9BD0-0C00-4542-A5EC-5BF9609731BF}" = protocol=17 | dir=in | app=e:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe |
"{DA9461E3-FB2A-421D-AD7C-480507E014AC}" = protocol=17 | dir=in | app=e:\program files (x86)\origin games\battlefield 4 beta\bf4.exe |
"{DA9DCFAD-83F8-4E60-9D79-2CC54E75A03F}" = protocol=6 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe |
"{DB59588E-ED90-4C47-A7B5-7929DD0C0BD2}" = dir=out | name=checkpoint.vpn |
"{DE4B0C91-9C5E-41A8-8C8C-E9A7DE74E593}" = protocol=17 | dir=in | app=e:\program files (x86)\steam\steamapps\common\payday 2\payday2_win32_release.exe |
"{E06FBB5D-7A5B-4C0A-96A8-13B524FA0CF9}" = protocol=17 | dir=in | app=e:\program files (x86)\ubisoft\farcry 3\bin\fc3editor.exe |
"{E5F0728A-E1EF-47FC-8B16-679A53C7F5A8}" = protocol=17 | dir=in | app=e:\program files (x86)\steam\steam.exe |
"{E628F3BA-8472-47F9-81EB-518E827EACDD}" = protocol=17 | dir=in | app=e:\program files (x86)\origin games\crysis 3\bin32\crysis3.exe |
"{E6AF6832-0E38-4699-93D3-1ABC540038CF}" = dir=out | name=skype |
"{E6D89BF7-EBC2-49C8-A120-A7F64F334948}" = protocol=6 | dir=in | app=e:\program files (x86)\ubisoft\farcry 3\bin\farcry3_d3d11.exe |
"{E7985E1D-C36F-4787-80A8-6350D07E9266}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{E8241855-C8FA-43F7-8B30-C3719B43BEC5}" = dir=out | name=@{microsoft.bingsports_3.0.1.203_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/bingsports} |
"{EA191324-87DC-49C7-B192-39CC37C55B1D}" = protocol=6 | dir=in | app=e:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{EC799E33-72BA-42D7-9127-DEFE68F9799D}" = dir=in | name=junipernetworks.junospulsevpn |
"{EFEF25AA-DF9E-434B-B428-131DD649040A}" = dir=out | name=sonicwall mobile connect |
"{F0B015BD-D956-4F6E-BF77-7E6D9F76FD34}" = protocol=6 | dir=in | app=e:\program files (x86)\origin games\crysis 3\bin32\crysis3.exe |
"{F64300AD-D559-4000-BD45-0997BCC8E70A}" = dir=out | name=f5.vpn.client |
"{F77E5446-4378-4E99-8B7A-7061AAAEA193}" = dir=in | name=f5.vpn.client |
"{FAC83FC6-72D0-42B3-81A7-2A5612A14899}" = protocol=6 | dir=in | app=e:\program files (x86)\ubisoft\farcry 3\bin\farcry3.exe |
"{FAD53B9D-328D-4F5F-8CE3-69289B908472}" = dir=out | name=@{microsoft.bingnews_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/news} |
"{FE3F155E-8B08-4810-8A2A-96D880ED51D5}" = protocol=17 | dir=in | app=e:\program files (x86)\skyrim\steam.exe |
"{FE411E85-BACE-4708-83D6-4D13D7C52C9F}" = protocol=17 | dir=in | app=e:\program files (x86)\origin games\battlefield 3\bf3.exe |
"{FE9AB497-4998-4F68-AF28-BFC1C1C90BB2}" = dir=in | app=c:\program files\softether vpn client\vpncmgr.exe |
"{FEAFEB77-288A-4946-B280-D8911F82D3CC}" = protocol=6 | dir=in | app=e:\program files (x86)\rockstar games\grand theft auto iv\launchgtaiv.exe |
"{FF653B3C-54C1-4FA1-B034-96845F1A632C}" = dir=out | name=@{microsoft.bingnews_3.0.1.321_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/apptitle} |
"TCP Query User{01995F32-176C-4D59-9E6F-64AA3C30289B}E:\program files (x86)\robot entertainment\orcs must die!\build\release\orcsmustdie.exe" = protocol=6 | dir=in | app=e:\program files (x86)\robot entertainment\orcs must die!\build\release\orcsmustdie.exe |
"TCP Query User{13F0E03A-F4BE-4A54-95A8-327E316E31D8}E:\program files (x86)\1c company\off-road drive\binaries\win32\shippingpc-pp3workgame.exe" = protocol=6 | dir=in | app=e:\program files (x86)\1c company\off-road drive\binaries\win32\shippingpc-pp3workgame.exe |
"TCP Query User{27888D8D-0EBF-4B10-806F-3ADDA7683709}E:\program files (x86)\origin games\crysis 2 maximum edition\bin32\crysis2.exe" = protocol=6 | dir=in | app=e:\program files (x86)\origin games\crysis 2 maximum edition\bin32\crysis2.exe |
"TCP Query User{32309BA7-B49F-46A3-A53F-2CF1A0A8B024}C:\users\tadeáš\appdata\local\temp\gw2.exe" = protocol=6 | dir=in | app=c:\users\tadeáš\appdata\local\temp\gw2.exe |
"TCP Query User{3C913850-7C21-4AA0-A1E6-9BFFE753A772}E:\program files (x86)\2k games\borderlands 2\binaries\win32\borderlands2.exe" = protocol=6 | dir=in | app=e:\program files (x86)\2k games\borderlands 2\binaries\win32\borderlands2.exe |
"TCP Query User{432603A8-C1F5-40EE-BE26-735E0352C562}E:\program files (x86)\origin games\battlefield 4\bf4.exe" = protocol=6 | dir=in | app=e:\program files (x86)\origin games\battlefield 4\bf4.exe |
"TCP Query User{47F25190-9165-4CDC-BEE5-40D7BAC5A39A}E:\program files (x86)\gog.com\the witcher 2 enhanced edition\bin\witcher2.exe" = protocol=6 | dir=in | app=e:\program files (x86)\gog.com\the witcher 2 enhanced edition\bin\witcher2.exe |
"TCP Query User{4FD5A680-7984-4A9F-B828-2A4A26845B1C}E:\program files (x86)\origin games\medal of honor\mp\mohmpgame.exe" = protocol=6 | dir=in | app=e:\program files (x86)\origin games\medal of honor\mp\mohmpgame.exe |
"TCP Query User{53C31647-EC03-4E51-B6D9-3D3076AB227C}E:\program files (x86)\total war rome ii\rome2.exe" = protocol=6 | dir=in | app=e:\program files (x86)\total war rome ii\rome2.exe |
"TCP Query User{54EFB560-BD29-4871-AE3D-08612793F93C}E:\program files (x86)\guild wars 2\guild wars 2\gw2.exe" = protocol=6 | dir=in | app=e:\program files (x86)\guild wars 2\guild wars 2\gw2.exe |
"TCP Query User{59EB07E5-423B-43A3-9AF5-BFA3E1764EC6}E:\program files (x86)\payday 2\payday2_win32_release.exe" = protocol=6 | dir=in | app=e:\program files (x86)\payday 2\payday2_win32_release.exe |
"TCP Query User{70B38FBD-4CA4-4D21-BF67-B60F1A12D818}I:\battlefield 2\bf2.exe" = protocol=6 | dir=in | app=i:\battlefield 2\bf2.exe |
"TCP Query User{A112052B-68F5-423A-88BA-6F0B1A8613A1}E:\program files (x86)\ps2\planetside2.exe" = protocol=6 | dir=in | app=e:\program files (x86)\ps2\planetside2.exe |
"TCP Query User{A924E391-B939-4F24-8A4E-8B173D4434AD}E:\program files (x86)\ubisoft\fyr cry 3\bin\farcry3.exe" = protocol=6 | dir=in | app=e:\program files (x86)\ubisoft\fyr cry 3\bin\farcry3.exe |
"TCP Query User{B52E0F92-7552-4EF9-83E3-D26028EDE225}E:\program files (x86)\ea games\battlefield 2\bf2_w32ded.exe" = protocol=6 | dir=in | app=e:\program files (x86)\ea games\battlefield 2\bf2_w32ded.exe |
"TCP Query User{CA005728-1FC8-476C-B741-2A832A5E0069}E:\program files (x86)\outlast\outlast\binaries\win64\olgame.exe" = protocol=6 | dir=in | app=e:\program files (x86)\outlast\outlast\binaries\win64\olgame.exe |
"TCP Query User{CA231178-32AB-45D5-8134-036855ADBBE0}E:\program files (x86)\metro last light\metrollbenchmark.exe" = protocol=6 | dir=in | app=e:\program files (x86)\metro last light\metrollbenchmark.exe |
"TCP Query User{CC3E7AC2-EDA3-43E5-82DF-047B74376415}E:\program files (x86)\arma iii alpha\arma3.exe" = protocol=6 | dir=in | app=e:\program files (x86)\arma iii alpha\arma3.exe |
"TCP Query User{CEBD86E4-9FFC-481C-8ECD-3369A709F851}E:\program files (x86)\electronic arts\battlefield bad company 2\bfbc2game.exe" = protocol=6 | dir=in | app=e:\program files (x86)\electronic arts\battlefield bad company 2\bfbc2game.exe |
"TCP Query User{EA9A6470-B12F-4814-B87C-1932E4AD0180}E:\program files (x86)\wrc 4 fia world rally championship\wrc4.exe" = protocol=6 | dir=in | app=e:\program files (x86)\wrc 4 fia world rally championship\wrc4.exe |
"TCP Query User{F0037014-31E3-46CA-A5A5-6F73D3DCF099}E:\program files (x86)\ps2\planetside2.exe" = protocol=6 | dir=in | app=e:\program files (x86)\ps2\planetside2.exe |
"UDP Query User{029CC877-4B47-4E6B-9302-48F346D910D3}E:\program files (x86)\metro last light\metrollbenchmark.exe" = protocol=17 | dir=in | app=e:\program files (x86)\metro last light\metrollbenchmark.exe |
"UDP Query User{03220107-261E-4381-A3FA-576C27805F88}E:\program files (x86)\arma iii alpha\arma3.exe" = protocol=17 | dir=in | app=e:\program files (x86)\arma iii alpha\arma3.exe |
"UDP Query User{03B94CC0-0F82-41D3-98A9-9DF1BEEAE1E9}E:\program files (x86)\gog.com\the witcher 2 enhanced edition\bin\witcher2.exe" = protocol=17 | dir=in | app=e:\program files (x86)\gog.com\the witcher 2 enhanced edition\bin\witcher2.exe |
"UDP Query User{09547B55-62EC-4416-BBDE-FFE17BDD577B}E:\program files (x86)\robot entertainment\orcs must die!\build\release\orcsmustdie.exe" = protocol=17 | dir=in | app=e:\program files (x86)\robot entertainment\orcs must die!\build\release\orcsmustdie.exe |
"UDP Query User{1794B7BF-9D36-413D-8385-DE9D45409ED0}E:\program files (x86)\ea games\battlefield 2\bf2_w32ded.exe" = protocol=17 | dir=in | app=e:\program files (x86)\ea games\battlefield 2\bf2_w32ded.exe |
"UDP Query User{1EC9AC56-30D0-47FA-9E12-F1ECD5E6E97B}E:\program files (x86)\guild wars 2\guild wars 2\gw2.exe" = protocol=17 | dir=in | app=e:\program files (x86)\guild wars 2\guild wars 2\gw2.exe |
"UDP Query User{3B396B3F-A73C-40B1-8539-2ED158F12267}E:\program files (x86)\wrc 4 fia world rally championship\wrc4.exe" = protocol=17 | dir=in | app=e:\program files (x86)\wrc 4 fia world rally championship\wrc4.exe |
"UDP Query User{423276F7-17ED-4DB4-825F-16C7AD01C46B}E:\program files (x86)\payday 2\payday2_win32_release.exe" = protocol=17 | dir=in | app=e:\program files (x86)\payday 2\payday2_win32_release.exe |
"UDP Query User{4CE1DD12-007A-430E-97B8-77C7EBEA6DAE}E:\program files (x86)\total war rome ii\rome2.exe" = protocol=17 | dir=in | app=e:\program files (x86)\total war rome ii\rome2.exe |
"UDP Query User{5E48FEC7-E480-495D-A877-A9D2EAD7D50A}E:\program files (x86)\2k games\borderlands 2\binaries\win32\borderlands2.exe" = protocol=17 | dir=in | app=e:\program files (x86)\2k games\borderlands 2\binaries\win32\borderlands2.exe |
"UDP Query User{73532D17-8D73-41AA-9F40-011204C45435}E:\program files (x86)\ubisoft\fyr cry 3\bin\farcry3.exe" = protocol=17 | dir=in | app=e:\program files (x86)\ubisoft\fyr cry 3\bin\farcry3.exe |
"UDP Query User{98D2F240-8089-4E8A-897F-93929B1907C6}E:\program files (x86)\ps2\planetside2.exe" = protocol=17 | dir=in | app=e:\program files (x86)\ps2\planetside2.exe |
"UDP Query User{9F9C9012-7A49-4295-8C20-1006D5F1FA27}E:\program files (x86)\origin games\battlefield 4\bf4.exe" = protocol=17 | dir=in | app=e:\program files (x86)\origin games\battlefield 4\bf4.exe |
"UDP Query User{B1B22F74-F095-45CF-A025-9EF2D02797C1}C:\users\tadeáš\appdata\local\temp\gw2.exe" = protocol=17 | dir=in | app=c:\users\tadeáš\appdata\local\temp\gw2.exe |
"UDP Query User{B2303C1F-A31E-4F2F-B70F-275CE2DAD453}E:\program files (x86)\electronic arts\battlefield bad company 2\bfbc2game.exe" = protocol=17 | dir=in | app=e:\program files (x86)\electronic arts\battlefield bad company 2\bfbc2game.exe |
"UDP Query User{B85435A7-7061-47C0-9EE6-B4CE2135D1E5}E:\program files (x86)\1c company\off-road drive\binaries\win32\shippingpc-pp3workgame.exe" = protocol=17 | dir=in | app=e:\program files (x86)\1c company\off-road drive\binaries\win32\shippingpc-pp3workgame.exe |
"UDP Query User{D8031448-FEDA-47A6-99CC-EDE9D9D34C77}I:\battlefield 2\bf2.exe" = protocol=17 | dir=in | app=i:\battlefield 2\bf2.exe |
"UDP Query User{E0B7552C-6D30-4BBC-BA4F-F157471CD520}E:\program files (x86)\ps2\planetside2.exe" = protocol=17 | dir=in | app=e:\program files (x86)\ps2\planetside2.exe |
"UDP Query User{E90CDFD8-D732-4382-90BD-05221AF4F067}E:\program files (x86)\origin games\crysis 2 maximum edition\bin32\crysis2.exe" = protocol=17 | dir=in | app=e:\program files (x86)\origin games\crysis 2 maximum edition\bin32\crysis2.exe |
"UDP Query User{ED6659B6-7EC6-4BCB-8CA0-EF6BC965D874}E:\program files (x86)\origin games\medal of honor\mp\mohmpgame.exe" = protocol=17 | dir=in | app=e:\program files (x86)\origin games\medal of honor\mp\mohmpgame.exe |
"UDP Query User{F8C450E3-A9D8-4AB7-8FEE-95C1FE30136B}E:\program files (x86)\outlast\outlast\binaries\win64\olgame.exe" = protocol=17 | dir=in | app=e:\program files (x86)\outlast\outlast\binaries\win64\olgame.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{26A24AE4-039D-4CA4-87B4-2F86417040FF}" = Java 7 Update 40 (64-bit)
"{2EDC2FA3-1F34-34E5-9085-588C9EFD1CC6}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610
"{2EF5D87E-B7BD-458F-8428-E4D0B8B4E65C}" = Apple Mobile Device Support
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6C7F773B-F1B2-4E94-8FC6-884922E7BAD7}" = Smart Technology Programming Software 7.0.27.13
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{764384C5-BCA9-307C-9AAC-FD443662686A}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{90150000-008F-0000-1000-0000000FF1CE}" = Office 15 Click-to-Run Licensing Component
"{A7500970-FE98-11E1-B560-F04DA23A5C58}" = Vegas Pro 12.0 (64-bit)
"{AB085680-FE98-11E1-A232-F04DA23A5C58}" = MSVCRT Redists
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Ovladač 3D Vision 331.82
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Ovládací panel NVIDIA 331.82
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Ovladače grafiky 331.82
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 1.7.1
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Ovladač řídící jednotky 3D Vision 331.82
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizace NVIDIA 9.3.21
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer" = NVIDIA LED Visualizer 1.0
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamC" = GeForce Experience NvStream Client Components
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = SHIELD Streaming
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Ovladač HD audia 1.3.26.4
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 9.3.21
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 1.2.9
"{D601CEAD-2E4F-4BBB-85CC-C29A4CE6A3C0}" = iTunes
"CCleaner" = CCleaner
"CPUID HWMonitor_is1" = CPUID HWMonitor 1.23
"HomeBusinessRetail - cs-cz" = Microsoft Office 2013 pro podnikatele - cs-cz
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"WinRAR archiver" = WinRAR 4.01 (64-bit)

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}" = Battlefield 2(TM)
"{1B705E8F-9893-4486-B5D7-4F7FEB9C871E}_is1" = Euro Truck Simulator 2
"{33A22B2D-55BA-4508-B767-BF2E9C21A73F}" = Assassin's Creed Revelations
"{3AC8457C-0385-4BEA-A959-E095F05D6D67}" = Battlefield: Bad Company™ 2
"{415030B8-3E8B-462A-8C03-41D95AA3AB3B}" = Medal of Honor (TM)
"{4198AE83-A3C6-4C41-85C8-EC63E990696E}" = Crysis®3
"{434D0FA0-1558-4D8E-AC3D-BD1000008200}" = DiRT 3
"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
"{46F044A5-CE8B-4196-984E-5BD6525E361D}" = Apple Application Support
"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.7
"{5454083B-1308-4485-BF17-1110000D8301}" = Grand Theft Auto IV
"{5454083B-1308-4485-BF17-1110000D8302}" = Grand Theft Auto IV
"{5454083B-1308-4485-BF17-1110000D8303}" = Grand Theft Auto IV
"{5454083B-1308-4485-BF17-1110000D8304}" = Grand Theft Auto IV
"{5454083B-1308-4485-BF17-1110000D8305}" = Grand Theft Auto IV
"{579BA58C-F33D-4970-9953-B94B43768AC3}" = Grand Theft Auto IV
"{59E4543A-D49D-4489-B445-473D763C79AF}" = Microsoft Games for Windows - LIVE Redistributable
"{6033673D-2530-4587-8AD0-EB059FC263F9}" = Crysis® 2
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{76285C16-411A-488A-BCE3-C83CB933D8CF}" = Battlefield 3™
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
"{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}" = NVIDIA PhysX
"{90150000-008C-0000-0000-0000000FF1CE}" = Office 15 Click-to-Run Extensibility Component
"{90150000-008C-0405-0000-0000000FF1CE}" = Office 15 Click-to-Run Localization Component
"{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D15E813-0C26-41E7-ABC5-3EB06FF1B3CF}" = Assassin's Creed (R) III
"{a1909659-0a08-4554-8af1-2175904903a1}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{ABADE36E-EC37-413B-8179-B432AD3FACE7}" = Battlefield 4™
"{AC76BA86-7AD7-1029-7B44-AB0000000001}" = Adobe Reader XI (11.0.05) - Czech
"{B67BAFBA-4C9F-48FA-9496-933E3B255044}" = QuickTime
"{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}" = The Sims™ 3
"{CFAB3721-549D-4827-A4E8-7F90192114AB}" = Battlefield 4™ Beta
"{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1" = Rapture3D 2.4.8 Game
"{D4329609-4102-4F8C-B83F-7FE024EEA314}" = Dead Space™ 3
"{E351A4AC-5D5D-4748-A2FE-310EC70F3E05}" = R.A.T. 9 Battery Charge Indicator
"{E3B9C5A9-BD7A-4B56-B754-FAEA7DD6FA88}" = Far Cry 3
"{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"ArnA 2: Combined Operations" = ArnA 2: Combined Operations
"Audacity_is1" = Audacity 2.0.3
"Battle.net" = Battle.net
"Battlelog Web Plugins" = Battlelog Web Plugins
"Borderlands 2_is1" = Borderlands 2
"Combined Community Codec Pack_is1" = Combined Community Codec Pack 2013-08-01
"ESN Sonar-0.70.4" = ESN Sonar
"Farming Simulator 20132.0.0.9" = Farming Simulator 2013
"Fraps" = Fraps (remove only)
"GFWL_{434D0FA0-1558-4D8E-AC3D-BD1000008200}" = DiRT 3
"Google Chrome" = Google Chrome
"Guild Wars 2" = Guild Wars 2
"Hearthstone" = Hearthstone
"HeavyLoad_is1" = HeavyLoad V3.2
"InstallShield_{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
"InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware verze 1.75.0.1300
"Minecraft1.6.2" = Minecraft1.6.2
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"Off-Road Drive_is1" = Off-Road Drive
"OpenAL" = OpenAL
"Orcs Must Die!_is1" = Orcs Must Die!
"Origin" = Origin
"PunkBusterSvc" = PunkBuster Services
"Q2FsbG9mRHV0eUdob3N0cw==_is1" = Call of Duty Ghosts
"RjEyMDEz_is1" = F1 2013
"Samsung Universal Print Driver 2" = Samsung Universal Print Driver 2
"Samsung Universal Scan Driver" = Samsung Universal Scan Driver
"Steam App 107410" = Arma 3
"Steam App 218620" = PAYDAY 2
"Steam App 570" = Dota 2
"The Witcher 2 - Assassins of Kings Enhanced Edition_is1" = The Witcher 2 - Assassins of Kings Enhanced Edition
"TWV0cm9MYXN0TGlnaHQ=_is1" = Metro: Last Light (c) Deep Silver version 1
"Uplay" = Uplay
"uTorrent" = µTorrent
"V1JDNEZJQVdvcmxkUmFsbHlDaGFtcGlvbnNoaXA=_is1" = WRC 4 FIA World Rally Championship
"VG90YWxXYXJST01FSUk=_is1" = Total War ROME II
"VLC media player" = VLC media player 2.1.0

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"SkyDriveSetup.exe" = Microsoft SkyDrive
"SOE-PlanetSide 2 PSG" = PlanetSide 2

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 8. 12. 2013 16:36:47 | Computer Name = PC-TED | Source = Application Error | ID = 1005
Description = Systém Windows nemůže získat přístup k souboru z jednoho z těchto
důvodů: došlo k problému s připojením k síti, s diskem, na kterém je soubor uložen,
nebo s ovladači ukládání nainstalovanými v tomto počítači; nebo disk chybí. Systém
Windows kvůli této chybě ukončil program DSS Launcher. Program: DSS Launcher Soubor:
Hodnota chyby je uvedena v části Další údaje. Akce uživatele 1. Otevřete soubor znovu.
Může
se jednat o dočasný problém, který se při novém spuštění programu nebude opakovat.
2.
Pokud
k souboru stále nelze získat přístup a: - Nachází se v síti, měl by správce sítě
ověřit, zda nedošlo k problému se sítí a zda lze server kontaktovat. - Je na vyměnitelném
disku (například disketě nebo disku CD-ROM), ověřte, zda je disk správně vložen
do počítače. 3. Zkontrolujte a opravte systém souborů pomocí nástroje CHKDSK. Ten
lze spustit tak, že kliknete na tlačítko Start a příkaz Spustit, zadáte příkaz
CMD a kliknete na tlačítko OK. Do příkazového řádku zadejte příkaz CHKDSK /F a stiskněte
klávesu ENTER. 4. Pokud potíže potrvají, obnovte soubor ze záložní kopie. 5. Zjistěte,
zda lze otevřít jiné soubory na stejném disku. Pokud ne, může být disk poškozen.
Jedná-li se o pevný disk, obraťte se na správce nebo na dodavatele počítačového
hardwaru se žádostí o pomoc. Další údaje Hodnota chyby: 00000000 Typ disku: 0

Error - 11. 12. 2013 11:03:58 | Computer Name = PC-TED | Source = NvStreamSvc | ID = 131073
Description =

Error - 11. 12. 2013 11:03:58 | Computer Name = PC-TED | Source = NvStreamSvc | ID = 131073
Description =

Error - 11. 12. 2013 18:22:12 | Computer Name = PC-TED | Source = NvStreamSvc | ID = 131073
Description =

Error - 11. 12. 2013 18:22:12 | Computer Name = PC-TED | Source = NvStreamSvc | ID = 131073
Description =

Error - 12. 12. 2013 14:07:15 | Computer Name = PC-TED | Source = NvStreamSvc | ID = 131073
Description =

Error - 12. 12. 2013 14:07:15 | Computer Name = PC-TED | Source = NvStreamSvc | ID = 131073
Description =

Error - 12. 12. 2013 14:07:19 | Computer Name = PC-TED | Source = Microsoft-Windows-Immersive-Shell | ID = 5973
Description = Aplikaci microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1
se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete
v protokolu Microsoft-Windows-TWinUI/Operational.

Error - 12. 12. 2013 14:07:19 | Computer Name = PC-TED | Source = Microsoft-Windows-Immersive-Shell | ID = 5973
Description = Aplikaci microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1
se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete
v protokolu Microsoft-Windows-TWinUI/Operational.

Error - 12. 12. 2013 14:07:19 | Computer Name = PC-TED | Source = Microsoft-Windows-Immersive-Shell | ID = 5973
Description = Aplikaci microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1
se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete
v protokolu Microsoft-Windows-TWinUI/Operational.

[ System Events ]
Error - 11. 12. 2013 18:24:52 | Computer Name = PC-TED | Source = DCOM | ID = 10016
Description =

Error - 12. 12. 2013 13:50:44 | Computer Name = PC-TED | Source = Schannel | ID = 36888
Description = Výstraha o závažné chybě byla vygenerována a zaslána na vzdálený koncový
bod. To může vést k ukončení připojení. Kód závažné chyby definovaný protokolem
TLS: 43. Stav chyby Windows SChannel: 252

Error - 12. 12. 2013 13:52:55 | Computer Name = PC-TED | Source = DCOM | ID = 10016
Description =

Error - 12. 12. 2013 13:53:04 | Computer Name = PC-TED | Source = Service Control Manager | ID = 7009
Description = Při čekání na připojení služby Steam Client Service bylo dosaženo
časového limitu (30000 ms).

Error - 12. 12. 2013 13:53:04 | Computer Name = PC-TED | Source = Service Control Manager | ID = 7000
Description = Služba Steam Client Service neuspěla při spuštění v důsledku následující
chyby: %%1053

Error - 12. 12. 2013 14:07:14 | Computer Name = PC-TED | Source = DCOM | ID = 10010
Description =

Error - 12. 12. 2013 14:07:14 | Computer Name = PC-TED | Source = DCOM | ID = 10010
Description =

Error - 12. 12. 2013 14:07:15 | Computer Name = PC-TED | Source = DCOM | ID = 10010
Description =

Error - 12. 12. 2013 14:07:26 | Computer Name = PC-TED | Source = Schannel | ID = 36888
Description = Výstraha o závažné chybě byla vygenerována a zaslána na vzdálený koncový
bod. To může vést k ukončení připojení. Kód závažné chyby definovaný protokolem
TLS: 43. Stav chyby Windows SChannel: 252

Error - 12. 12. 2013 14:09:55 | Computer Name = PC-TED | Source = DCOM | ID = 10016
Description =


< End of report >
Moje zlatíčko: CPU i5-3570, MB: MSI Z77MA-G45, RAM Corsair Ventage 2x8GB, GPU: Gigabyte GTX680 OC 2GB, Zdroj: CoolerMaster 650W GX serie, HDD: Seagate Baracuda 7200.14 1TB server , CASE Zalman Z11,

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu obfuscator.xz VirTool

Příspěvekod jaro3 » 16 pro 2013 10:04

Poklepej na ikonu OTL na ploše.Ujisti se , že máš všechny ostatní aplikace a prohlížeče zavřeny.
Pod Vlastní skenování/opravy do okénka vlož následující text, zobrazený zeleně:

Kód: Vybrat vše

:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.40.2: C:\Windows\system32\npDeployJava1.dll File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKCU\..Trusted Domains: clonewarsadventures.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: freerealms.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: soe.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: sony.com ([]* in Trusted sites)
O18:64bit: - Protocol\Handler\osf - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.

:Files
C:\WINDOWS\System32\*.tmp
C:\WINDOWS\*.tmp
C:\WINDOWS\system32\*.tmp.dll
C:\WINDOWS\System32\dllcache\*.tmp
C:\WINDOWS\system32\SET*.tmp
C:\WINDOWS\system32\DUMP*.tmp
c:\windows\Tasks\*.job /s
C:\*.tmp
C:\WINDOWS\System32\drivers\*.tmp
C:\Documents and Settings\All Users\Data aplikací\*.tmp
C:\Windows\SysNative\drivers\*.tmp
C:\Windows\SysWow64\drivers\*.tmp
C:\Program Files (x86)\*.tmp
C:\Windows\SysWow64\*.tmp
C:\Windows\SysNative\*.tmp
C:\Users\Tadeáš\AppData\Roaming\AVG
C:\ProgramData\AVG

:Reg
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

:Commands
[purity]
[emptytemp]
[start explorer]
[Reboot]


Poté klikni nahoře na Opravit. Nech program nerušeně běžet, na konci se provede restart PC.
Po restartu se objeví log , prosím zkopíruj sem celý jeho obsah.

Drive C: | 220,17 Gb Total Space | 27,27 Gb Free Space | 12,39% Space Free | Partition Type: NTFS

Málo volného místa na disku , uvolni si ho alespoň na 15%!

Stáhni si CrystalDiskInfo
Spusť program a klikni na Úpravy-Kopírovat. Poté sem vlož pomocí Ctrl+V obsah logu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 99 hostů