OTL logfile created on: 13.7.2010 9:09:32 - Run 4
OTL by OldTimer - Version 3.2.9.0 Folder = D:\Documents and Settings\PoKaRko\Dokumenty\Stažené soubory
Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.2180)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 71,00% Memory free
4,00 Gb Paging File | 3,00 Gb Available in Paging File | 87,00% Paging File free
Paging file location(s): D:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = D: | %SystemRoot% = D:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 195,32 Gb Total Space | 24,32 Gb Free Space | 12,45% Space Free | Partition Type: NTFS
Drive D: | 37,56 Gb Total Space | 24,42 Gb Free Space | 65,02% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: VOJTOVO-PC
Current User Name: PoKaRko
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal
========== Processes (SafeList) ========== PRC - D:\Documents and Settings\PoKaRko\Dokumenty\Stažené soubory\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - C:\Program Files\ICQ7.2\ICQ.exe (ICQ, LLC.)
PRC - C:\Program Files\Miranda IM\miranda32.exe ( )
PRC - C:\Program Files\Alwil Software\Avast4\ashDisp.exe (ALWIL Software)
PRC - C:\Program Files\Alwil Software\Avast4\ashServ.exe (ALWIL Software)
PRC - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe (ALWIL Software)
PRC - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe (ALWIL Software)
PRC - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe (ALWIL Software)
PRC - C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesApp32.exe (TuneUp Software)
PRC - C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe (TuneUp Software)
PRC - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe (Rocket Division Software)
PRC - D:\WINDOWS\explorer.exe (Microsoft Corporation)
========== Modules (SafeList) ========== MOD - D:\Documents and Settings\PoKaRko\Dokumenty\Stažené soubory\OTL.exe (OldTimer Tools)
MOD - D:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll (Microsoft Corporation)
MOD - D:\WINDOWS\system32\msscript.ocx (Microsoft Corporation)
========== Win32 Services (SafeList) ========== SRV - (wuauserv) -- C:\WINDOWS\system32\wuauserv.dll File not found
SRV - (HidServ) -- D:\WINDOWS\System32\hidserv.dll File not found
SRV - (FLEXnet Licensing Service) -- D:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Acresso Software Inc.)
SRV - (getPlusHelper) getPlus(R) -- C:\Program Files\NOS\bin\getPlus_Helper.dll (NOS Microsystems Ltd.)
SRV - (aspnet_state) -- D:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe (Microsoft Corporation)
SRV - (WPFFontCache_v0400) -- D:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe (Microsoft Corporation)
SRV - (clr_optimization_v4.0.30319_32) -- D:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
SRV - (NetTcpPortSharing) -- D:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe (Microsoft Corporation)
SRV - (TuneUp.Defrag) -- C:\Program Files\TuneUp Utilities 2010\TuneUpDefragService.exe (TuneUp Software)
SRV - (avast! Antivirus) -- C:\Program Files\Alwil Software\Avast4\ashServ.exe (ALWIL Software)
SRV - (avast! Mail Scanner) -- C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe (ALWIL Software)
SRV - (avast! Web Scanner) -- C:\Program Files\Alwil Software\Avast4\ashWebSv.exe (ALWIL Software)
SRV - (aswUpdSv) -- C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe (ALWIL Software)
SRV - (TuneUp.UtilitiesSvc) -- C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe (TuneUp Software)
SRV - (UxTuneUp) -- D:\WINDOWS\system32\uxtuneup.dll (TuneUp Software)
SRV - (rpcapd) Remote Packet Capture Protocol v.0 (experimental) -- C:\Program Files\WinPcap\rpcapd.exe (CACE Technologies)
SRV - (Microsoft Office Groove Audit Service) -- D:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe (Microsoft Corporation)
SRV - (odserv) -- D:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE (Microsoft Corporation)
SRV - (ose) -- D:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE (Microsoft Corporation)
SRV - (StarWindService) -- C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe (Rocket Division Software)
========== Driver Services (SafeList) ========== DRV - (SCREAMINGBDRIVER) -- D:\WINDOWS\System32\drivers\ScreamingBAudio.sys File not found
DRV - (catchme) -- D:\ComboFix\catchme.sys File not found
DRV - (RegGuard) -- D:\WINDOWS\system32\drivers\regguard.sys (Greatis Software)
DRV - (Partizan) -- D:\WINDOWS\system32\drivers\Partizan.sys (Greatis Software)
DRV - (ezplay) -- D:\WINDOWS\system32\drivers\ezplay.sys (VSO Software)
DRV - (atksgt) -- D:\WINDOWS\system32\drivers\atksgt.sys ()
DRV - (lirsgt) -- D:\WINDOWS\system32\drivers\lirsgt.sys ()
DRV - (hamachi) -- D:\WINDOWS\system32\drivers\hamachi.sys (LogMeIn, Inc.)
DRV - (BootScreen) -- D:\WINDOWS\System32\drivers\vidstub.sys ()
DRV - (ISODrive) -- C:\Program Files\UltraISO\drivers\ISODrive.sys (EZB Systems, Inc.)
DRV - (VBoxDrv) -- D:\WINDOWS\system32\drivers\VBoxDrv.sys (Sun Microsystems, Inc.)
DRV - (VBoxNetFlt) -- D:\WINDOWS\system32\drivers\VBoxNetFlt.sys (Sun Microsystems, Inc.)
DRV - (VBoxNetAdp) -- D:\WINDOWS\system32\drivers\VBoxNetAdp.sys (Sun Microsystems, Inc.)
DRV - (VBoxUSBMon) -- D:\WINDOWS\system32\drivers\VBoxUSBMon.sys (Sun Microsystems, Inc.)
DRV - (aswMon2) -- D:\WINDOWS\System32\drivers\aswmon2.sys (ALWIL Software)
DRV - (aswSP) -- D:\WINDOWS\System32\drivers\aswSP.sys (ALWIL Software)
DRV - (aswFsBlk) -- D:\WINDOWS\system32\drivers\aswFsBlk.sys (ALWIL Software)
DRV - (aswTdi) -- D:\WINDOWS\System32\drivers\aswTdi.sys (ALWIL Software)
DRV - (aswRdr) -- D:\WINDOWS\System32\drivers\aswRdr.sys (ALWIL Software)
DRV - (Aavmker4) -- D:\WINDOWS\System32\drivers\aavmker4.sys (ALWIL Software)
DRV - (TuneUpUtilitiesDrv) -- C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesDriver32.sys (TuneUp Software)
DRV - (ati2mtag) -- D:\WINDOWS\system32\drivers\ati2mtag.sys (ATI Technologies Inc.)
DRV - (TPkd) -- D:\WINDOWS\System32\drivers\TPkd.sys (PACE Anti-Piracy, Inc.)
DRV - (FlashUSB) -- D:\WINDOWS\system32\drivers\FlashUSB.sys (Danish Wireless Design A/S)
DRV - (s1018mdm) -- D:\WINDOWS\system32\drivers\s1018mdm.sys (MCCI Corporation)
DRV - (s1018unic) Sony Ericsson Device 1018 USB Ethernet Emulation (WDM) -- D:\WINDOWS\system32\drivers\s1018unic.sys (MCCI Corporation)
DRV - (s1018mgmt) Sony Ericsson Device 1018 USB WMC Device Management Drivers (WDM) -- D:\WINDOWS\system32\drivers\s1018mgmt.sys (MCCI Corporation)
DRV - (s1018obex) -- D:\WINDOWS\system32\drivers\s1018obex.sys (MCCI Corporation)
DRV - (s1018bus) Sony Ericsson Device 1018 driver (WDM) -- D:\WINDOWS\system32\drivers\s1018bus.sys (MCCI Corporation)
DRV - (s1018nd5) Sony Ericsson Device 1018 USB Ethernet Emulation (NDIS) -- D:\WINDOWS\system32\drivers\s1018nd5.sys (MCCI Corporation)
DRV - (s1018mdfl) -- D:\WINDOWS\system32\drivers\s1018mdfl.sys (MCCI Corporation)
DRV - (USBModem) -- D:\WINDOWS\system32\drivers\lgusbmodem.sys (LG Electronics Inc.)
DRV - (UsbDiag) -- D:\WINDOWS\system32\drivers\lgusbdiag.sys (LG Electronics Inc.)
DRV - (usbbus) -- D:\WINDOWS\system32\drivers\lgusbbus.sys (LG Electronics Inc.)
DRV - (adfs) -- D:\WINDOWS\System32\drivers\adfs.sys (Adobe Systems, Inc.)
DRV - (ggsemc) -- D:\WINDOWS\system32\drivers\ggsemc.sys (Sony Ericsson Mobile Communications)
DRV - (ggflt) -- D:\WINDOWS\system32\drivers\ggflt.sys (Sony Ericsson Mobile Communications)
DRV - (NPF) -- D:\WINDOWS\system32\drivers\npf.sys (CACE Technologies)
DRV - (speedfan) -- D:\WINDOWS\system32\speedfan.sys (Windows (R) 2000 DDK provider)
DRV - (Egatebus) -- D:\WINDOWS\system32\drivers\egatebus.sys (Axalto)
DRV - (Egaterdr) -- D:\WINDOWS\system32\drivers\egaterdr.sys (Axalto)
DRV - (IntcAzAudAddService) Service for Realtek HD Audio (WDM) -- D:\WINDOWS\system32\drivers\RtkHDAud.sys (Realtek Semiconductor Corp.)
DRV - (vax347b) -- D:\WINDOWS\system32\DRIVERS\vax347b.sys ( )
DRV - (HDAudBus) -- D:\WINDOWS\system32\drivers\Hdaudbus.sys (Windows (R) Server 2003 DDK provider)
DRV - (HdAudAddService) -- D:\WINDOWS\system32\drivers\Hdaudio.sys (Windows (R) Server 2003 DDK provider)
DRV - (d347prt) -- D:\WINDOWS\System32\Drivers\d347prt.sys ( )
DRV - (d347bus) -- D:\WINDOWS\system32\DRIVERS\d347bus.sys ( )
DRV - (rtl8139) Realtek RTL8139(A/B/C) -- D:\WINDOWS\system32\drivers\RTL8139.sys (Realtek Semiconductor Corporation)
DRV - (vax347s) -- D:\WINDOWS\System32\Drivers\vax347s.sys ( )
DRV - (giveio) -- D:\WINDOWS\system32\giveio.sys ()
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKLM\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - Reg Error: Key error. File not found
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-329068152-152049171-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ========== FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: "ICQ Search"
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..browser.search.suggest.enabled: false
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.google.cz/"
FF - prefs.js..extensions.enabledItems: {D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}:0.9.6.8
FF - prefs.js..extensions.enabledItems: {19503e42-ca3c-4c27-b1e2-9cdb2170ee34}:1.2.1.22
FF - prefs.js..extensions.enabledItems:
jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems:
gemgecko@gemius.com:1.02
FF - prefs.js..extensions.enabledItems: {5c8bfb7c-9a54-11dc-8314-0800200c9a66}:3.6.3
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.9\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010.06.23 16:48:57 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.9\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010.06.23 16:48:57 | 000,000,000 | ---D | M]
[2010.02.16 14:44:14 | 000,000,000 | ---D | M] -- D:\Documents and Settings\PoKaRko\Data aplikací\Mozilla\Extensions
[2010.07.12 21:21:50 | 000,000,000 | ---D | M] -- D:\Documents and Settings\PoKaRko\Data aplikací\Mozilla\Firefox\Profiles\1ii8yyw2.default\extensions
[2010.05.15 11:56:38 | 000,000,000 | ---D | M] (FlashGot) -- D:\Documents and Settings\PoKaRko\Data aplikací\Mozilla\Firefox\Profiles\1ii8yyw2.default\extensions\{19503e42-ca3c-4c27-b1e2-9cdb2170ee34}
[2010.04.02 22:12:34 | 000,000,000 | ---D | M] (Aero Fox) -- D:\Documents and Settings\PoKaRko\Data aplikací\Mozilla\Firefox\Profiles\1ii8yyw2.default\extensions\{5c8bfb7c-9a54-11dc-8314-0800200c9a66}
[2010.06.20 10:26:05 | 000,000,000 | ---D | M] (No name found) -- D:\Documents and Settings\PoKaRko\Data aplikací\Mozilla\Firefox\Profiles\1ii8yyw2.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
[2010.02.16 14:49:49 | 000,000,000 | ---D | M] (Fast Video Download (with SearchMenu)) -- D:\Documents and Settings\PoKaRko\Data aplikací\Mozilla\Firefox\Profiles\1ii8yyw2.default\extensions\{c50ca3c4-5656-43c2-a061-13e717f73fc8}
[2010.04.13 17:10:07 | 000,000,000 | ---D | M] (Download Statusbar) -- D:\Documents and Settings\PoKaRko\Data aplikací\Mozilla\Firefox\Profiles\1ii8yyw2.default\extensions\{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}
[2010.05.22 13:38:46 | 000,000,000 | ---D | M] (No name found) -- D:\Documents and Settings\PoKaRko\Data aplikací\Mozilla\Firefox\Profiles\1ii8yyw2.default\extensions\{5c8bfb7c-9a54-11dc-8314-0800200c9a66}\chrome\mac\browser\extensions
[2010.05.22 13:38:46 | 000,000,000 | ---D | M] (No name found) -- D:\Documents and Settings\PoKaRko\Data aplikací\Mozilla\Firefox\Profiles\1ii8yyw2.default\extensions\{5c8bfb7c-9a54-11dc-8314-0800200c9a66}\chrome\mac\mozapps\extensions
[2010.05.22 13:38:46 | 000,000,000 | ---D | M] (No name found) -- D:\Documents and Settings\PoKaRko\Data aplikací\Mozilla\Firefox\Profiles\1ii8yyw2.default\extensions\{5c8bfb7c-9a54-11dc-8314-0800200c9a66}\chrome\win\browser\extensions
[2010.04.02 22:12:54 | 000,000,000 | ---D | M] (No name found) -- D:\Documents and Settings\PoKaRko\Data aplikací\Mozilla\Firefox\Profiles\1ii8yyw2.default\extensions\{5c8bfb7c-9a54-11dc-8314-0800200c9a66}\chrome\win\mozapps\extensions
[2010.05.05 13:37:38 | 000,002,555 | ---- | M] () -- D:\Documents and Settings\PoKaRko\Data aplikací\Mozilla\Firefox\Profiles\1ii8yyw2.default\searchplugins\askcom.xml
[2010.07.09 09:16:53 | 000,000,956 | ---- | M] () -- D:\Documents and Settings\PoKaRko\Data aplikací\Mozilla\Firefox\Profiles\1ii8yyw2.default\searchplugins\icqplugin.xml
[2010.03.07 02:46:26 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2010.04.02 11:50:18 | 000,000,638 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\jyxo-cz.xml
[2010.04.02 11:50:18 | 000,001,687 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\mall-cz.xml
[2010.04.02 11:50:18 | 000,001,367 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\seznam-cz.xml
[2010.04.02 11:50:18 | 000,000,654 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\slunecnice-cz.xml
[2010.04.02 11:50:18 | 000,001,179 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-cz.xml
O1 HOSTS File: ([2010.07.09 00:48:03 | 000,371,110 | R--- | M]) - D:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1
www.007guard.comO1 - Hosts: 127.0.0.1 007guard.com
O1 - Hosts: 127.0.0.1 008i.com
O1 - Hosts: 127.0.0.1
www.008k.comO1 - Hosts: 127.0.0.1 008k.com
O1 - Hosts: 127.0.0.1
www.00hq.comO1 - Hosts: 127.0.0.1 00hq.com
O1 - Hosts: 127.0.0.1 010402.com
O1 - Hosts: 127.0.0.1
www.032439.comO1 - Hosts: 127.0.0.1 032439.com
O1 - Hosts: 127.0.0.1
www.0scan.comO1 - Hosts: 127.0.0.1 0scan.com
O1 - Hosts: 127.0.0.1
www.1000gratisproben.comO1 - Hosts: 127.0.0.1 1000gratisproben.com
O1 - Hosts: 127.0.0.1
www.1001namen.comO1 - Hosts: 127.0.0.1 1001namen.com
O1 - Hosts: 127.0.0.1
www.100888290cs.comO1 - Hosts: 127.0.0.1 100888290cs.com
O1 - Hosts: 127.0.0.1
www.100sexlinks.comO1 - Hosts: 127.0.0.1 100sexlinks.com
O1 - Hosts: 127.0.0.1 10sek.com
O1 - Hosts: 127.0.0.1
www.10sek.comO1 - Hosts: 127.0.0.1 1-2005-search.com
O1 - Hosts: 127.0.0.1
www.1-2005-search.comO1 - Hosts: 12818 more lines...
O4 - HKLM..\Run: [avast!] C:\Program Files\Alwil Software\Avast4\ashDisp.exe (ALWIL Software)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 253
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun- = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun- = 0
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-329068152-152049171-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 253
O7 - HKU\S-1-5-21-329068152-152049171-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0
O7 - HKU\S-1-5-21-329068152-152049171-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-329068152-152049171-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun- = 0
O7 - HKU\S-1-5-21-329068152-152049171-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun- = 0
O9 - Extra Button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe (ICQ, LLC.)
O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - D:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - D:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - D:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - D:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - D:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - D:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - D:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - D:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - D:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - D:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - D:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - D:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UIHost - (D:\Documents and Settings\All Users\Data aplikací\TuneUp Software\TuneUp Utilities\WinStyler\tu_logonui.exe) - D:\Documents and Settings\All Users\Data aplikací\TuneUp Software\TuneUp Utilities\WinStyler\tu_logonui.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - D:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O24 - Desktop WallPaper: D:\Documents and Settings\PoKaRko\Plocha\Pozadí pfflochy.bmp
O24 - Desktop BackupWallPaper: D:\Documents and Settings\PoKaRko\Plocha\Pozadí pfflochy.bmp
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - D:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O28 - HKLM ShellExecuteHooks: {F552DDE6-2090-4bf4-B924-6141E87789A5} - C:\Program Files\Greatis\RegRunSuite\RRShell.dll (Greatis Software, LLC)
O32 - HKLM CDRom: AutoRun - 0
O32 - AutoRun File - [2009.10.17 16:23:10 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2010.07.12 08:42:54 | 000,000,000 | RHSD | M] - C:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2010.07.12 08:42:54 | 000,000,000 | RHSD | M] - D:\autorun.inf -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (Partizan) - D:\WINDOWS\System32\Partizan.exe (Greatis Software)
O34 - HKLM BootExecute: (ootExecute settings...) - File not found
O34 - HKLM BootExecute: (on\E) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
NetSvcs: 6to4 - File not found
NetSvcs: HidServ - D:\WINDOWS\System32\hidserv.dll File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: UxTuneUp - D:\WINDOWS\system32\uxtuneup.dll (TuneUp Software)
NetSvcs: WmdmPmSp - File not found
NetSvcs: wuauserv - C:\WINDOWS\system32\wuauserv.dll File not found
Drivers32: msacm.divxa32 - D:\WINDOWS\System32\DivXa32.acm (Kristal StudioDFileDescription)
Drivers32: msacm.iac2 - D:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - D:\WINDOWS\System32\l3codeca.acm (Kristal Studio)
Drivers32: msacm.sl_anet - D:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - D:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: msacm.vorbis - D:\WINDOWS\System32\vorbis.acm (HMS
http://hp.vector.co.jp/authors/VA012897/)
Drivers32: vidc.cvid - D:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.DIV3 - D:\WINDOWS\System32\DivXc32.dll (Kristal Studio)
Drivers32: vidc.DIVX - D:\WINDOWS\System32\DivX.dll ()
Drivers32: VIDC.FPS1 - D:\WINDOWS\System32\frapsvid.dll ()
Drivers32: vidc.iv31 - D:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - D:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - D:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - D:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
Drivers32: VIDC.MP42 - D:\WINDOWS\System32\mpg4c32.dll (Microsoft Corporation)
Drivers32: VIDC.MPG4 - D:\WINDOWS\System32\mpg4c32.dll (Microsoft Corporation)
Drivers32: vidc.VP60 - D:\WINDOWS\system32\vp6vfw.dll (On2.com)
Drivers32: vidc.VP61 - D:\WINDOWS\system32\vp6vfw.dll (On2.com)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point (56027131116781568)
========== Files/Folders - Created Within 30 Days ========== [2010.07.12 22:03:18 | 000,000,000 | RH-D | C] -- D:\Documents and Settings\PoKaRko\Recent
[2010.07.12 21:11:57 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Data aplikací\Kaspersky Lab Setup Files
[2010.07.12 16:41:48 | 000,000,000 | ---D | C] -- D:\Documents and Settings\PoKaRko\Plocha\Nová složka
[2010.07.12 16:08:50 | 000,000,000 | ---D | C] -- C:\Program Files\TopCD
[2010.07.12 16:08:34 | 001,774,269 | ---- | C] (US-Action, s.r.o. ) -- D:\Documents and Settings\PoKaRko\Plocha\autorun.exe
[2010.07.12 16:08:27 | 000,739,343 | ---- | C] (US-Action, s.r.o. ) -- D:\Documents and Settings\PoKaRko\Plocha\setup.exe
[2010.07.12 16:08:24 | 043,574,864 | ---- | C] (Kaspersky Lab) -- D:\Documents and Settings\PoKaRko\Plocha\kaspersky.exe
[2010.07.12 16:05:36 | 000,000,000 | ---D | C] -- D:\Documents and Settings\PoKaRko\Plocha\Zetor
[2010.07.12 16:05:36 | 000,000,000 | ---D | C] -- D:\Documents and Settings\PoKaRko\Plocha\Zamek
[2010.07.12 16:05:36 | 000,000,000 | ---D | C] -- D:\Documents and Settings\PoKaRko\Plocha\Visaci
[2010.07.12 16:05:36 | 000,000,000 | ---D | C] -- D:\Documents and Settings\PoKaRko\Plocha\Text
[2010.07.12 16:05:35 | 000,000,000 | ---D | C] -- D:\Documents and Settings\PoKaRko\Plocha\sdk
[2010.07.12 16:05:32 | 000,000,000 | ---D | C] -- D:\Documents and Settings\PoKaRko\Plocha\DirectX
[2010.07.12 16:05:11 | 000,000,000 | ---D | C] -- D:\Documents and Settings\PoKaRko\Plocha\data
[2010.07.12 16:04:35 | 000,000,000 | ---D | C] -- D:\Documents and Settings\PoKaRko\Plocha\Bonus
[2010.07.12 16:04:34 | 000,000,000 | ---D | C] -- D:\Documents and Settings\PoKaRko\Plocha\autorun
[2010.07.12 15:53:52 | 000,000,000 | ---D | C] -- C:\Program Files\Landwirtschafts-Simulator 2009
[2010.07.12 13:27:53 | 000,000,000 | ---D | C] -- D:\Documents and Settings\PoKaRko\Data aplikací\Locktime
[2010.07.12 13:27:29 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Data aplikací\Locktime
[2010.07.12 10:25:13 | 000,000,000 | ---D | C] -- D:\rsit
[2010.07.12 08:43:20 | 000,024,416 | ---- | C] (Greatis Software) -- D:\WINDOWS\System32\drivers\regguard.sys
[2010.07.12 08:42:54 | 000,000,000 | RHSD | C] -- D:\desktop.ini
[2010.07.12 08:42:54 | 000,000,000 | RHSD | C] -- D:\comment.htt
[2010.07.12 08:42:54 | 000,000,000 | RHSD | C] -- D:\autorun.inf
[2010.07.12 08:42:06 | 000,037,600 | ---- | C] (Greatis Software) -- D:\WINDOWS\System32\Partizan.exe
[2010.07.12 08:42:06 | 000,035,816 | ---- | C] (Greatis Software) -- D:\WINDOWS\System32\drivers\Partizan.sys
[2010.07.12 08:42:00 | 000,000,000 | ---D | C] -- D:\Documents and Settings\PoKaRko\Dokumenty\RegRun2
[2010.07.12 08:41:41 | 001,385,240 | ---- | C] (Greatis Software) -- D:\WINDOWS\RunGuard.exe
[2010.07.12 08:41:41 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dokumenty\regruninfo
[2010.07.12 08:41:24 | 000,000,000 | ---D | C] -- C:\Program Files\Greatis
[2010.07.12 08:26:10 | 000,000,000 | ---D | C] -- D:\Documents and Settings\PoKaRko\Data aplikací\ScanSpyware
[2010.07.12 08:26:09 | 000,008,704 | ---- | C] (ScanSpyware.net) -- D:\WINDOWS\System32\ssbtsr.exe
[2010.07.12 08:26:07 | 000,000,000 | ---D | C] -- C:\Program Files\ScanSpyware
[2010.07.11 22:14:00 | 000,000,000 | ---D | C] -- D:\Documents and Settings\PoKaRko\Dokumenty\bank-gothic-light-bt.ttf
[2010.07.11 21:51:52 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Data aplikací\NCH Swift Sound
[2010.07.11 21:51:48 | 000,000,000 | ---D | C] -- D:\Documents and Settings\PoKaRko\Data aplikací\NCH Swift Sound
[2010.07.11 21:51:48 | 000,000,000 | ---D | C] -- C:\Program Files\NCH Swift Sound
[2010.07.03 18:38:53 | 000,000,000 | ---D | C] -- D:\Documents and Settings\PoKaRko\Data aplikací\Ashampoo
[2010.07.01 11:40:09 | 000,000,000 | ---D | C] -- C:\Program Files\No-IP
[2010.07.01 06:49:42 | 000,000,000 | -HSD | C] -- D:\RECYCLER
[2010.07.01 06:15:52 | 000,018,432 | ---- | C] (Microsoft Corporation) -- D:\WINDOWS\System32\dllcache\iedw.exe
[2010.06.30 15:50:05 | 000,358,944 | ---- | C] (Realtek Semiconductor Crop.) -- D:\WINDOWS\vncutil.exe
[2010.06.30 15:49:55 | 001,833,504 | ---- | C] (Realtek Semiconductor Corp.) -- D:\WINDOWS\SkyTel.exe
[2010.06.30 15:49:52 | 001,489,440 | ---- | C] (Realtek Semiconductor Corp.) -- D:\WINDOWS\RtlUpd.exe
[2010.06.30 15:49:50 | 001,200,128 | ---- | C] (Realtek Semiconductor Corp.) -- D:\WINDOWS\RtkUpd.exe
[2010.06.30 15:49:50 | 000,129,568 | ---- | C] (Realtek Semiconductor) -- D:\WINDOWS\RtkAudioService.exe
[2010.06.30 15:49:32 | 000,094,208 | ---- | C] (sonix) -- D:\WINDOWS\PLFSetL.exe
[2010.06.30 15:49:29 | 000,020,480 | ---- | C] (Microsoft Corporation) -- D:\WINDOWS\notepad.exe.mui
[2010.06.30 15:49:16 | 000,094,208 | ---- | C] (Blizzard Entertainment) -- D:\WINDOWS\DIIUnin.exe
[2010.06.30 15:49:14 | 000,027,176 | ---- | C] (Broadcom Corporation.) -- D:\WINDOWS\BtwIEProxy.exe
[2010.06.30 15:49:10 | 000,077,312 | ---- | C] (Microsoft) -- D:\WINDOWS\arpwrmsg.exe
[2010.06.30 15:49:10 | 000,069,312 | ---- | C] (Microsoft) -- D:\WINDOWS\arpower.dll
[2010.06.30 15:49:10 | 000,058,880 | ---- | C] (Microsoft) -- D:\WINDOWS\arservice.exe
[2010.06.30 15:49:02 | 000,050,752 | ---- | C] (Agere Systems) -- D:\WINDOWS\agrsmdel.exe
[2010.06.30 15:44:24 | 000,069,632 | ---- | C] (Twain Working Group) -- D:\WINDOWS\System32\TWUNK_32.EXE
[2010.06.30 15:44:24 | 000,048,560 | ---- | C] (Twain Working Group) -- D:\WINDOWS\System32\TWUNK_16.EXE
[2010.06.30 15:42:46 | 000,077,312 | ---- | C] (Twain Working Group) -- D:\WINDOWS\System32\twain_32.dll
[2010.06.29 20:33:49 | 000,212,480 | ---- | C] (SteelWerX) -- D:\WINDOWS\SWXCACLS.exe
[2010.06.29 20:33:49 | 000,161,792 | ---- | C] (SteelWerX) -- D:\WINDOWS\SWREG.exe
[2010.06.29 20:33:49 | 000,136,704 | ---- | C] (SteelWerX) -- D:\WINDOWS\SWSC.exe
[2010.06.29 20:33:49 | 000,031,232 | ---- | C] (NirSoft) -- D:\WINDOWS\NIRCMD.exe
[2010.06.29 20:33:35 | 000,000,000 | ---D | C] -- D:\WINDOWS\ERDNT
[2010.06.29 20:30:59 | 000,000,000 | ---D | C] -- D:\Qoobox
[2010.06.29 16:40:21 | 000,000,000 | ---D | C] -- D:\Documents and Settings\PoKaRko\Local Settings\Data aplikací\FreeFixer
[2010.06.29 16:40:21 | 000,000,000 | ---D | C] -- D:\Documents and Settings\PoKaRko\Data aplikací\FreeFixer
[2010.06.29 16:30:04 | 000,000,000 | ---D | C] -- D:\Documents and Settings\PoKaRko\Local Settings\Data aplikací\Aspyr
[2010.06.29 15:20:35 | 000,527,192 | ---- | C] (Microsoft Corporation) -- D:\WINDOWS\System32\XAudio2_7.dll
[2010.06.29 15:20:35 | 000,074,072 | ---- | C] (Microsoft Corporation) -- D:\WINDOWS\System32\XAPOFX1_5.dll
[2010.06.29 15:20:34 | 002,106,216 | ---- | C] (Microsoft Corporation) -- D:\WINDOWS\System32\D3DCompiler_43.dll
[2010.06.29 15:20:34 | 000,239,960 | ---- | C] (Microsoft Corporation) -- D:\WINDOWS\System32\xactengine3_7.dll
[2010.06.29 15:20:33 | 001,868,128 | ---- | C] (Microsoft Corporation) -- D:\WINDOWS\System32\d3dcsx_43.dll
[2010.06.29 15:20:33 | 000,248,672 | ---- | C] (Microsoft Corporation) -- D:\WINDOWS\System32\d3dx11_43.dll
[2010.06.29 15:20:32 | 000,470,880 | ---- | C] (Microsoft Corporation) -- D:\WINDOWS\System32\d3dx10_43.dll
[2010.06.29 15:20:31 | 001,998,168 | ---- | C] (Microsoft Corporation) -- D:\WINDOWS\System32\D3DX9_43.dll
[2010.06.29 15:19:03 | 000,000,000 | ---D | C] -- D:\Documents and Settings\PoKaRko\Data aplikací\Star Wars - The Force Unleashed
[2010.06.28 16:33:27 | 000,000,000 | ---D | C] -- D:\Documents and Settings\PoKaRko\Local Settings\Data aplikací\FontCreator
[2010.06.28 16:33:27 | 000,000,000 | ---D | C] -- D:\Documents and Settings\PoKaRko\Dokumenty\FontCreator
[2010.06.28 16:33:26 | 000,616,600 | ---- | C] (High-Logic B.V.) -- D:\WINDOWS\System32\FontInstaller.dll
[2010.06.28 16:33:24 | 000,000,000 | ---D | C] -- C:\Program Files\High-Logic FontCreator6
[2010.06.28 16:19:23 | 000,000,000 | ---D | C] -- D:\Documents and Settings\PoKaRko\Dokumenty\Fonts
[2010.06.28 16:19:03 | 000,000,000 | ---D | C] -- D:\Documents and Settings\PoKaRko\Data aplikací\FontCreator
[2010.06.28 13:37:26 | 000,000,000 | ---D | C] -- D:\Documents and Settings\PoKaRko\Dokumenty\Cucusoft
[2010.06.28 13:37:17 | 000,258,352 | ---- | C] (Microsoft Corporation) -- D:\WINDOWS\System32\unicows.dll
[2010.06.28 13:37:17 | 000,060,273 | ---- | C] (Open Source Software community project) -- D:\WINDOWS\System32\pthreadGC2.dll
[2010.06.28 13:37:14 | 000,110,592 | ---- | C] (Cucusoft Inc.) -- D:\WINDOWS\System32\PropListCtrl.ocx
[2010.06.27 00:49:00 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Data aplikací\ALM
[2010.06.26 20:15:17 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe Media Player
[2010.06.26 20:13:32 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Adobe AIR
[2010.06.26 20:05:28 | 000,000,000 | ---D | C] -- D:\Documents and Settings\PoKaRko\Data aplikací\CENZURA HD
[2010.06.26 20:05:21 | 000,000,000 | ---D | C] -- C:\Program Files\CENZURA HD
[2010.06.25 20:36:38 | 000,000,000 | ---D | C] -- C:\Program Files\rgcaudio software
[2010.06.20 11:14:53 | 000,040,960 | ---- | C] (Creative Technology Ltd.) -- D:\WINDOWS\System32\eax.dll
[2010.06.20 11:14:53 | 000,000,000 | ---D | C] -- C:\Program Files\Creative Labs
[2010.06.20 11:13:10 | 000,000,000 | ---D | C] -- C:\Program Files\EidosNet
[2010.06.20 11:13:10 | 000,000,000 | ---D | C] -- C:\Program Files\Eidos Interactive
[2010.06.19 20:07:55 | 000,014,048 | ---- | C] (Microsoft Corporation) -- D:\WINDOWS\System32\spmsg.dll
[2010.06.19 20:06:46 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\drivers\UMDF
[2010.06.19 20:05:42 | 000,109,864 | ---- | C] (MCCI Corporation) -- D:\WINDOWS\System32\drivers\s1018unic.sys
[2010.06.19 20:05:42 | 000,106,208 | ---- | C] (MCCI Corporation) -- D:\WINDOWS\System32\drivers\s1018mgmt.sys
[2010.06.19 20:05:42 | 000,010,792 | ---- | C] (MCCI Corporation) -- D:\WINDOWS\System32\drivers\s1018cr.sys
[2010.06.19 20:05:41 | 000,104,744 | ---- | C] (MCCI Corporation) -- D:\WINDOWS\System32\drivers\s1018obex.sys
[2010.06.19 20:05:41 | 000,026,024 | ---- | C] (MCCI Corporation) -- D:\WINDOWS\System32\drivers\s1018nd5.sys
[2010.06.19 20:05:40 | 000,114,728 | ---- | C] (MCCI Corporation) -- D:\WINDOWS\System32\drivers\s1018mdm.sys
[2010.06.19 20:05:40 | 000,015,016 | ---- | C] (MCCI Corporation) -- D:\WINDOWS\System32\drivers\s1018mdfl.sys
[2010.06.19 20:05:40 | 000,012,200 | ---- | C] (MCCI Corporation) -- D:\WINDOWS\System32\drivers\s1018cmnt.sys
[2010.06.19 20:05:40 | 000,012,200 | ---- | C] (MCCI Corporation) -- D:\WINDOWS\System32\drivers\s1018cm.sys
[2010.06.19 20:05:39 | 000,086,824 | ---- | C] (MCCI Corporation) -- D:\WINDOWS\System32\drivers\s1018bus.sys
[2010.06.19 20:05:39 | 000,012,200 | ---- | C] (MCCI Corporation) -- D:\WINDOWS\System32\drivers\s1018whnt.sys
[2010.06.19 20:05:39 | 000,012,200 | ---- | C] (MCCI Corporation) -- D:\WINDOWS\System32\drivers\s1018wh.sys
[2010.06.17 18:48:11 | 000,034,639 | ---- | C] (FTDI Ltd.) -- D:\WINDOWS\System32\drivers\UFS2XX.sys
[2010.06.17 18:48:10 | 000,081,920 | ---- | C] (SaraSoft) -- D:\WINDOWS\System32\UFS2XX.dll
[2010.06.16 21:21:06 | 000,000,000 | ---D | C] -- C:\Program Files\Digiarty
[2010.06.16 18:31:46 | 000,000,000 | ---D | C] -- D:\Documents and Settings\PoKaRko\Data aplikací\Ubisoft
[2010.06.16 18:31:46 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Data aplikací\Ubisoft
[2010.06.16 18:13:05 | 000,000,000 | ---D | C] -- C:\Program Files\Ubisoft
[2010.06.16 18:12:32 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Data aplikací\ICQ
[2010.06.16 18:10:50 | 000,000,000 | ---D | C] -- C:\Program Files\ICQ7.2
[2010.06.13 16:51:10 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\cs-CZ
[2010.06.13 16:44:03 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\xlive
[2010.06.13 16:44:02 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Games for Windows - LIVE
[2010.06.13 16:39:21 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\NtmsData
[2010.06.13 16:25:55 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\EZB Systems
[2010.06.13 16:25:54 | 000,000,000 | ---D | C] -- C:\Program Files\UltraISO
[2010.06.13 16:25:54 | 000,000,000 | ---D | C] -- D:\Documents and Settings\PoKaRko\Dokumenty\My ISO Files
[2010.05.05 13:25:26 | 000,159,616 | ---- | C] ( ) -- D:\WINDOWS\System32\drivers\vax347b.sys
[2010.05.05 13:25:26 | 000,005,248 | ---- | C] ( ) -- D:\WINDOWS\System32\drivers\vax347s.sys
[2010.01.23 18:57:00 | 000,155,136 | ---- | C] ( ) -- D:\WINDOWS\System32\drivers\d347bus.sys
[2010.01.23 18:57:00 | 000,005,248 | ---- | C] ( ) -- D:\WINDOWS\System32\drivers\d347prt.sys
[4 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ]
[2 D:\WINDOWS\System32\*.tmp files -> D:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ========== [2010.07.13 08:10:02 | 014,680,064 | -H-- | M] () -- D:\Documents and Settings\PoKaRko\NTUSER.DAT
[2010.07.13 08:08:20 | 000,000,380 | ---- | M] () -- D:\WINDOWS\tasks\AWC AutoSweep.job
[2010.07.13 08:08:09 | 000,000,006 | -H-- | M] () -- D:\WINDOWS\tasks\SA.DAT
[2010.07.13 08:07:45 | 000,002,048 | --S- | M] () -- D:\WINDOWS\bootstat.dat
[2010.07.13 00:07:31 | 000,000,805 | ---- | M] () -- D:\WINDOWS\ScanSpyware.INI
[2010.07.12 23:29:32 | 000,000,593 | ---- | M] () -- D:\WINDOWS\win.ini
[2010.07.12 23:29:32 | 000,000,305 | ---- | M] () -- D:\WINDOWS\system.ini
[2010.07.12 22:37:08 | 000,017,876 | -H-- | M] () -- D:\WINDOWS\System32\wcdrtc32.dl_
[2010.07.12 21:06:34 | 000,024,416 | ---- | M] (Greatis Software) -- D:\WINDOWS\System32\drivers\regguard.sys
[2010.07.12 17:29:01 | 000,094,752 | ---- | M] () -- D:\Documents and Settings\PoKaRko\Plocha\sexyskater.jpg
[2010.07.12 17:05:50 | 001,455,167 | ---- | M] () -- D:\Documents and Settings\PoKaRko\Plocha\DSC00119.JPG
[2010.07.12 16:51:42 | 000,012,135 | ---- | M] () -- D:\Documents and Settings\PoKaRko\Plocha\email.rar
[2010.07.12 16:49:44 | 000,036,198 | ---- | M] () -- D:\Documents and Settings\PoKaRko\Plocha\DSC00027.JPG
[2010.07.12 16:43:35 | 000,012,135 | ---- | M] () -- D:\Documents and Settings\PoKaRko\Plocha\Script email box.rar
[2010.07.12 16:09:33 | 000,000,749 | ---- | M] () -- D:\Documents and Settings\PoKaRko\Plocha\Traktor Simulátor.lnk
[2010.07.12 15:54:37 | 000,000,804 | ---- | M] () -- D:\Documents and Settings\PoKaRko\Plocha\Landwirtschafts-Simulator 2009.lnk
[2010.07.12 13:32:23 | 358,426,412 | ---- | M] () -- D:\Documents and Settings\PoKaRko\Dokumenty\traktor-zetor-simulator-2009.iso
[2010.07.12 13:27:17 | 002,717,944 | ---- | M] () -- D:\Documents and Settings\PoKaRko\Dokumenty\nl_2011_pro.exe
[2010.07.12 08:47:45 | 000,002,553 | ---- | M] () -- D:\WINDOWS\System32\CONFIG.NT
[2010.07.12 08:47:45 | 000,001,592 | ---- | M] () -- D:\WINDOWS\System32\AUTOEXEC.NT
[2010.07.12 08:47:45 | 000,000,002 | RHS- | M] () -- D:\WINDOWS\winstart.bat
[2010.07.12 08:42:06 | 000,037,600 | ---- | M] (Greatis Software) -- D:\WINDOWS\System32\Partizan.exe
[2010.07.12 08:42:06 | 000,035,816 | ---- | M] (Greatis Software) -- D:\WINDOWS\System32\drivers\Partizan.sys
[2010.07.12 08:41:41 | 000,000,633 | ---- | M] () -- D:\Documents and Settings\PoKaRko\Plocha\RegRun Control Center.lnk
[2010.07.12 08:17:09 | 000,002,323 | ---- | M] () -- D:\Documents and Settings\PoKaRko\Plocha\HiJackThis.lnk
[2010.07.12 07:54:06 | 002,364,360 | ---- | M] () -- D:\WINDOWS\System32\FNTCACHE.DAT
[2010.07.12 00:12:00 | 000,000,178 | -HS- | M] () -- D:\Documents and Settings\PoKaRko\ntuser.ini
[2010.07.12 00:11:35 | 027,327,680 | -H-- | M] () -- D:\Documents and Settings\PoKaRko\Local Settings\Data aplikací\IconCache.db
[2010.07.12 00:11:32 | 000,000,388 | ---- | M] () -- D:\WINDOWS\tasks\SmartDefrag.job
[2010.07.11 23:49:50 | 000,086,144 | ---- | M] () -- D:\Documents and Settings\PoKaRko\Local Settings\Data aplikací\GDIPFONTCACHEV1.DAT
[2010.07.11 23:47:45 | 038,519,167 | ---- | M] () -- D:\Documents and Settings\PoKaRko\Plocha\How_to_make_a_Hip_Hop_RnB_Piano_Beat_in_Fl_Studio.mp4
[2010.07.11 23:32:17 | 000,000,043 | ---- | M] () -- D:\Documents and Settings\PoKaRko\Plocha\How_to_make_a_Hip_Hop_RnB_Piano_Beat_in_Fl_Studio_main_11212.asx
[2010.07.11 23:11:49 | 004,087,007 | ---- | M] () -- D:\Documents and Settings\PoKaRko\Plocha\R-S Clan intro new.mp3
[2010.07.11 23:10:08 | 000,004,287 | ---- | M] () -- D:\WINDOWS\WINCMD.INI
[2010.07.11 22:59:13 | 000,001,066 | ---- | M] () -- D:\WINDOWS\wcx_ftp.ini
[2010.07.11 21:51:51 | 000,000,668 | ---- | M] () -- D:\Documents and Settings\All Users\Plocha\Stamp ID3 Tag Editor.lnk
[2010.07.11 18:30:55 | 000,493,478 | ---- | M] () -- D:\Documents and Settings\PoKaRko\Plocha\R-S Clan intro.mp3
[2010.07.09 22:34:39 | 004,136,469 | ---- | M] () -- D:\Documents and Settings\PoKaRko\Plocha\Pozadí plochy.psd
[2010.07.09 00:48:03 | 000,371,110 | R--- | M] () -- D:\WINDOWS\System32\drivers\etc\hosts
[2010.07.09 00:47:37 | 000,371,110 | R--- | M] () -- D:\WINDOWS\System32\drivers\etc\hosts.20100709-004803.backup
[2010.07.09 00:47:10 | 000,371,110 | R--- | M] () -- D:\WINDOWS\System32\drivers\etc\hosts.20100709-004736.backup
[2010.07.09 00:42:09 | 000,002,192 | ---- | M] () -- D:\WINDOWS\WDICT32.INI
[2010.07.09 00:34:56 | 005,898,296 | ---- | M] () -- D:\Documents and Settings\PoKaRko\Plocha\Pozadí pfflochy.bmp
[2010.07.08 18:07:06 | 000,002,206 | ---- | M] () -- D:\WINDOWS\System32\wpa.dbl
[2010.07.06 16:47:56 | 001,385,240 | ---- | M] (Greatis Software) -- D:\WINDOWS\RunGuard.exe
[2010.07.06 16:47:48 | 000,020,248 | ---- | M] () -- D:\WINDOWS\WinBait.org
[2010.07.06 16:47:48 | 000,020,248 | ---- | M] () -- D:\WINDOWS\WinBait.exe
[2010.07.01 06:53:38 | 000,000,596 | ---- | M] () -- D:\Documents and Settings\PoKaRko\Plocha\CCleaner.lnk
[2010.06.30 19:45:13 | 000,000,027 | ---- | M] () -- D:\WINDOWS\System32\drivers\etc\hosts.20100709-004710.backup
[2010.06.30 19:43:40 | 000,000,002 | ---- | M] () -- D:\WINDOWS\Twain001.Mtx
[2010.06.30 15:43:32 | 000,000,000 | ---- | M] () -- D:\WINDOWS\Twunk002.MTX
[2010.06.29 16:40:48 | 000,012,364 | ---- | M] () -- D:\WINDOWS\is-TJ30R.msg
[2010.06.29 16:40:48 | 000,000,396 | ---- | M] () -- D:\WINDOWS\is-TJ30R.lst
[2010.06.28 19:15:07 | 000,061,440 | ---- | M] () -- D:\Documents and Settings\PoKaRko\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.06.28 16:33:41 | 000,000,147 | ---- | M] () -- D:\WINDOWS\fcp5.cfg
[2010.06.27 11:58:36 | 001,143,006 | ---- | M] () -- D:\WINDOWS\System32\PerfStringBackup.INI
[2010.06.27 11:58:36 | 000,495,958 | ---- | M] () -- D:\WINDOWS\System32\perfh009.dat
[2010.06.27 11:58:36 | 000,491,064 | ---- | M] () -- D:\WINDOWS\System32\perfh005.dat
[2010.06.27 11:58:36 | 000,098,588 | ---- | M] () -- D:\WINDOWS\System32\perfc005.dat
[2010.06.27 11:58:36 | 000,084,442 | ---- | M] () -- D:\WINDOWS\System32\perfc009.dat
[2010.06.26 20:27:50 | 133,667,397 | ---- | M] () -- D:\Documents and Settings\PoKaRko\Dokumenty\Photshop Tutorial Text Effect (HD)_(HD).avi
[2010.06.26 10:03:58 | 000,000,773 | ---- | M] () -- D:\Documents and Settings\PoKaRko\Plocha\TeamViewer 5.lnk
[2010.06.25 21:58:02 | 000,000,284 | ---- | M] () -- D:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2010.06.19 20:07:41 | 000,316,640 | ---- | M] () -- D:\WINDOWS\WMSysPr9.prx
[2010.06.19 20:06:50 | 000,000,000 | -H-- | M] () -- D:\WINDOWS\System32\drivers\UMDF\MsftWdf_user_01_00_00.Wdf
[2010.06.17 16:47:24 | 000,034,308 | ---- | M] () -- D:\WINDOWS\System32\bassmod.dll
[2010.06.16 18:51:26 | 000,004,817 | ---- | M] () -- D:\WINDOWS\WTRAN32.INI
[2010.06.16 18:51:26 | 000,000,000 | ---- | M] () -- D:\WINDOWS\XXLGSC
[4 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ]
========== Files Created - No Company Name ========== [2010.07.12 23:34:25 | 002,019,328 | ---- | C] () -- D:\Documents and Settings\PoKaRko\Plocha\game.exe
[2010.07.12 17:28:58 | 000,094,752 | ---- | C] () -- D:\Documents and Settings\PoKaRko\Plocha\sexyskater.jpg
[2010.07.12 17:05:49 | 001,455,167 | ---- | C] () -- D:\Documents and Settings\PoKaRko\Plocha\DSC00119.JPG
[2010.07.12 16:51:42 | 000,012,135 | ---- | C] () -- D:\Documents and Settings\PoKaRko\Plocha\email.rar
[2010.07.12 16:49:43 | 000,036,198 | ---- | C] () -- D:\Documents and Settings\PoKaRko\Plocha\DSC00027.JPG
[2010.07.12 16:43:35 | 000,012,135 | ---- | C] () -- D:\Documents and Settings\PoKaRko\Plocha\Script email box.rar
[2010.07.12 16:09:33 | 000,000,749 | ---- | C] () -- D:\Documents and Settings\PoKaRko\Plocha\Traktor Simulátor.lnk
[2010.07.12 16:08:34 | 004,214,325 | ---- | C] () -- D:\Documents and Settings\PoKaRko\Plocha\Theme.mp3
[2010.07.12 16:08:34 | 000,433,110 | ---- | C] () -- D:\Documents and Settings\PoKaRko\Plocha\ZetorHistorie.pdf
[2010.07.12 16:08:27 | 109,274,073 | ---- | C] () -- D:\Documents and Settings\PoKaRko\Plocha\setup-1.bin
[2010.07.12 16:08:27 | 002,119,796 | ---- | C] () -- D:\Documents and Settings\PoKaRko\Plocha\motor.wav
[2010.07.12 16:08:24 | 000,330,176 | ---- | C] () -- D:\Documents and Settings\PoKaRko\Plocha\install.bmp
[2010.07.12 16:08:24 | 000,230,156 | ---- | C] () -- D:\Documents and Settings\PoKaRko\Plocha\done.bmp
[2010.07.12 15:54:37 | 000,000,804 | ---- | C] () -- D:\Documents and Settings\PoKaRko\Plocha\Landwirtschafts-Simulator 2009.lnk
[2010.07.12 13:26:25 | 002,717,944 | ---- | C] () -- D:\Documents and Settings\PoKaRko\Dokumenty\nl_2011_pro.exe
[2010.07.12 12:29:11 | 358,426,412 | ---- | C] () -- D:\Documents and Settings\PoKaRko\Dokumenty\traktor-zetor-simulator-2009.iso
[2010.07.12 08:47:45 | 000,000,002 | RHS- | C] () -- D:\WINDOWS\winstart.bat
[2010.07.12 08:41:59 | 000,040,253 | ---- | C] () -- D:\Documents and Settings\PoKaRko\Local Settings\Data aplikací\ShLog.txt
[2010.07.12 08:41:41 | 000,057,556 | ---- | C] () -- D:\WINDOWS\guard.bmp
[2010.07.12 08:41:41 | 000,020,248 | ---- | C] () -- D:\WINDOWS\WinBait.org
[2010.07.12 08:41:41 | 000,020,248 | ---- | C] () -- D:\WINDOWS\WinBait.exe
[2010.07.12 08:41:41 | 000,000,633 | ---- | C] () -- D:\Documents and Settings\PoKaRko\Plocha\RegRun Control Center.lnk
[2010.07.12 08:35:07 | 000,000,805 | ---- | C] () -- D:\WINDOWS\ScanSpyware.INI
[2010.07.11 23:41:34 | 038,519,167 | ---- | C] () -- D:\Documents and Settings\PoKaRko\Plocha\How_to_make_a_Hip_Hop_RnB_Piano_Beat_in_Fl_Studio.mp4
[2010.07.11 23:32:13 | 000,000,043 | ---- | C] () -- D:\Documents and Settings\PoKaRko\Plocha\How_to_make_a_Hip_Hop_RnB_Piano_Beat_in_Fl_Studio_main_11212.asx
[2010.07.11 21:51:51 | 000,000,668 | ---- | C] () -- D:\Documents and Settings\All Users\Plocha\Stamp ID3 Tag Editor.lnk
[2010.07.11 19:34:25 | 000,017,876 | -H-- | C] () -- D:\WINDOWS\System32\wcdrtc32.dl_
[2010.07.11 18:32:50 | 004,087,007 | ---- | C] () -- D:\Documents and Settings\PoKaRko\Plocha\R-S Clan intro new.mp3
[2010.07.11 18:21:38 | 000,493,478 | ---- | C] () -- D:\Documents and Settings\PoKaRko\Plocha\R-S Clan intro.mp3
[2010.07.09 01:01:57 | 000,000,388 | ---- | C] () -- D:\WINDOWS\tasks\SmartDefrag.job
[2010.07.08 21:44:36 | 005,898,296 | ---- | C] () -- D:\Documents and Settings\PoKaRko\Plocha\Pozadí pfflochy.bmp
[2010.07.08 21:36:11 | 004,136,469 | ---- | C] () -- D:\Documents and Settings\PoKaRko\Plocha\Pozadí plochy.psd
[2010.06.30 19:07:57 | 000,000,002 | ---- | C] () -- D:\WINDOWS\Twain001.Mtx
[2010.06.30 15:50:03 | 000,020,480 | ---- | C] () -- D:\WINDOWS\USB_VIDEO_REG.exe
[2010.06.30 15:50:01 | 000,000,000 | ---- | C] () -- D:\WINDOWS\Twunk002.MTX
[2010.06.30 15:49:56 | 000,006,318 | ---- | C] () -- D:\WINDOWS\Suyin.reg
[2010.06.30 15:49:55 | 000,015,497 | ---- | C] () -- D:\WINDOWS\snp2uvc.ini
[2010.06.30 15:49:55 | 000,013,022 | ---- | C] () -- D:\WINDOWS\snp2uvc.src
[2010.06.30 15:49:32 | 000,200,704 | ---- | C] () -- D:\WINDOWS\PLFSetI.exe
[2010.06.30 15:49:31 | 000,000,036 | ---- | C] () -- D:\WINDOWS\PidList.ini
[2010.06.30 15:49:29 | 000,001,979 | ---- | C] () -- D:\WINDOWS\notepad.exe.manifest
[2010.06.30 15:49:29 | 000,000,000 | ---- | C] () -- D:\WINDOWS\nsreg.dat
[2010.06.30 15:49:28 | 000,000,049 | ---- | C] () -- D:\WINDOWS\NeroDigital.ini
[2010.06.30 15:49:22 | 000,626,688 | ---- | C] () -- D:\WINDOWS\Image.dll
[2010.06.30 15:49:18 | 000,106,496 | ---- | C] () -- D:\WINDOWS\FixUVC.exe
[2010.06.30 15:49:16 | 000,028,712 | ---- | C] () -- D:\WINDOWS\DIIUnin.dat
[2010.06.30 15:49:16 | 000,002,829 | ---- | C] () -- D:\WINDOWS\DIIUnin.pif
[2010.06.30 15:49:13 | 000,000,038 | ---- | C] () -- D:\WINDOWS\avisplitter.ini
[2010.06.30 15:49:10 | 000,050,176 | ---- | C] () -- D:\WINDOWS\armcex.dll
[2010.06.30 15:49:02 | 000,222,382 | ---- | C] () -- D:\WINDOWS\Acer Crystal Eye webcam.ico
[2010.06.29 20:33:49 | 000,256,512 | ---- | C] () -- D:\WINDOWS\PEV.exe
[2010.06.29 20:33:49 | 000,098,816 | ---- | C] () -- D:\WINDOWS\sed.exe
[2010.06.29 20:33:49 | 000,080,412 | ---- | C] () -- D:\WINDOWS\grep.exe
[2010.06.29 20:33:49 | 000,077,312 | ---- | C] () -- D:\WINDOWS\MBR.exe
[2010.06.29 20:33:49 | 000,068,096 | ---- | C] () -- D:\WINDOWS\zip.exe
[2010.06.29 16:40:48 | 000,012,364 | ---- | C] () -- D:\WINDOWS\is-TJ30R.msg
[2010.06.29 16:40:48 | 000,000,396 | ---- | C] () -- D:\WINDOWS\is-TJ30R.lst
[2010.06.28 16:19:13 | 000,000,147 | ---- | C] () -- D:\WINDOWS\fcp5.cfg
[2010.06.28 13:37:17 | 000,094,650 | ---- | C] () -- D:\WINDOWS\System32\HKCU_GNU.reg
[2010.06.28 13:37:17 | 000,057,344 | ---- | C] () -- D:\WINDOWS\System32\ff_vfw.dll
[2010.06.28 13:37:17 | 000,006,144 | ---- | C] () -- D:\WINDOWS\System32\ff_acm.acm
[2010.06.28 13:37:17 | 000,002,004 | ---- | C] () -- D:\WINDOWS\System32\HKLM_GNU.reg
[2010.06.28 13:37:17 | 000,000,547 | ---- | C] () -- D:\WINDOWS\System32\ff_vfw.dll.manifest
[2010.06.28 13:37:15 | 000,372,736 | ---- | C] () -- D:\WINDOWS\System32\xvid.ax
[2010.06.26 20:06:00 | 133,667,397 | ---- | C] () -- D:\Documents and Settings\PoKaRko\Dokumenty\Photshop Tutorial Text Effect (HD)_(HD).avi
[2010.06.26 10:03:58 | 000,000,773 | ---- | C] () -- D:\Documents and Settings\PoKaRko\Plocha\TeamViewer 5.lnk
[2010.06.20 07:57:08 | 000,002,528 | ---- | C] () -- D:\Documents and Settings\LocalService\Data aplikací\$_hpcst$.hpc
[2010.06.19 20:06:50 | 000,000,000 | -H-- | C] () -- D:\WINDOWS\System32\drivers\UMDF\MsftWdf_user_01_00_00.Wdf
[2010.06.17 18:48:11 | 000,000,071 | ---- | C] () -- D:\WINDOWS\System32\UFS2XXUN.ini
[2010.06.17 18:48:10 | 000,077,824 | ---- | C] () -- D:\WINDOWS\System32\UFS2XXUN.exe
[2010.06.17 16:47:24 | 000,034,308 | ---- | C] () -- D:\WINDOWS\System32\bassmod.dll
[2010.06.14 19:29:27 | 000,002,323 | ---- | C] () -- D:\Documents and Settings\PoKaRko\Plocha\HiJackThis.lnk
[2010.06.09 21:48:16 | 000,200,704 | ---- | C] () -- D:\WINDOWS\TRNOET.DLL
[2010.06.09 21:48:16 | 000,045,056 | ---- | C] () -- D:\WINDOWS\TRNOEH.DLL
[2010.06.09 21:47:59 | 000,000,041 | ---- | C] () -- D:\WINDOWS\WTRDCTM.INI
[2010.06.09 21:47:15 | 000,002,753 | ---- | C] () -- D:\WINDOWS\UN32P.INI
[2010.06.09 21:32:51 | 000,001,678 | ---- | C] () -- D:\WINDOWS\MAILTRAN.INI
[2010.06.09 21:32:50 | 000,002,476 | ---- | C] () -- D:\WINDOWS\TRNCOM.INI
[2010.06.09 21:32:40 | 000,002,192 | ---- | C] () -- D:\WINDOWS\WDICT32.INI
[2010.06.09 21:32:39 | 000,004,817 | ---- | C] () -- D:\WINDOWS\WTRAN32.INI
[2010.05.17 14:29:30 | 000,000,461 | ---- | C] () -- D:\WINDOWS\EAGRAPH.INI
[2010.05.08 23:53:19 | 000,281,760 | ---- | C] () -- D:\WINDOWS\System32\drivers\atksgt.sys
[2010.05.08 23:53:19 | 000,025,888 | ---- | C] () -- D:\WINDOWS\System32\drivers\lirsgt.sys
[2010.04.08 18:17:48 | 000,151,552 | ---- | C] () -- D:\WINDOWS\System32\nvRegDev.dll
[2010.04.04 17:10:47 | 000,000,286 | ---- | C] () -- D:\WINDOWS\game.ini
[2010.04.01 11:58:29 | 001,589,248 | ---- | C] () -- D:\WINDOWS\System32\libmysql_d.dll
[2010.03.27 20:34:25 | 001,970,176 | ---- | C] () -- D:\WINDOWS\System32\d3dx9.dll
[2010.02.16 13:48:50 | 000,120,200 | ---- | C] () -- D:\WINDOWS\System32\DLLDEV32i.dll
[2010.02.11 13:03:55 | 000,000,155 | ---- | C] () -- D:\WINDOWS\level.ini
[2010.02.11 12:54:59 | 000,138,184 | ---- | C] () -- D:\WINDOWS\System32\drivers\PnkBstrK.sys
[2010.01.30 02:46:59 | 000,163,456 | ---- | C] () -- D:\WINDOWS\System32\drivers\vidstub.sys
[2010.01.30 02:42:00 | 000,049,152 | ---- | C] () -- D:\WINDOWS\System32\DirSize.dll
[2010.01.30 00:23:33 | 000,000,325 | ---- | C] () -- D:\WINDOWS\SIERRA.INI
[2010.01.23 14:30:08 | 000,001,066 | ---- | C] () -- D:\WINDOWS\wcx_ftp.ini
[2010.01.22 19:07:33 | 000,004,287 | ---- | C] () -- D:\WINDOWS\WINCMD.INI
[2009.02.25 09:38:22 | 000,249,856 | ---- | C] () -- D:\WINDOWS\System32\DivX.dll
[2008.10.28 17:40:48 | 000,173,552 | ---- | C] () -- D:\WINDOWS\System32\xlive.dll.cat
[2008.10.07 09:13:30 | 000,197,912 | ---- | C] () -- D:\WINDOWS\System32\physxcudart_20.dll
[2008.10.07 09:13:22 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelTraditionalChinese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelSwedish.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelSpanish.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelPortugese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelKorean.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelJapanese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelGerman.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelFrench.dll
[2007.06.21 22:55:54 | 000,053,299 | ---- | C] () -- D:\WINDOWS\System32\pthreadVC.dll
[2006.05.19 10:22:58 | 000,053,248 | ---- | C] () -- D:\WINDOWS\System32\slbmgpg.dll
[2005.10.14 12:56:50 | 003,596,288 | ---- | C] () -- D:\WINDOWS\System32\qt-dx331.dll
[2005.10.14 12:56:50 | 000,921,600 | ---- | C] () -- D:\WINDOWS\System32\VorbisEnc.dll
[2005.10.14 12:56:50 | 000,761,856 | ---- | C] () -- D:\WINDOWS\System32\xvidcore.dll
[2005.10.14 12:56:50 | 000,237,568 | ---- | C] () -- D:\WINDOWS\System32\OggDS.dll
[2005.10.14 12:56:50 | 000,188,416 | ---- | C] () -- D:\WINDOWS\System32\vorbis.dll
[2005.10.14 12:56:50 | 000,155,136 | ---- | C] () -- D:\WINDOWS\System32\unrar.dll
[2005.10.14 12:56:50 | 000,045,056 | ---- | C] () -- D:\WINDOWS\System32\ogg.dll
[2005.03.02 18:44:59 | 000,036,864 | ---- | C] () -- D:\WINDOWS\System32\frapsvid.dll
[2004.08.22 18:04:56 | 000,069,120 | ---- | C] () -- D:\WINDOWS\daemon.dll
[2004.08.17 15:49:10 | 000,081,920 | ---- | C] () -- D:\WINDOWS\System32\ieencode.dll
[2001.01.12 11:49:38 | 000,021,504 | ---- | C] () -- D:\WINDOWS\System32\zlib.dll
[1996.04.03 21:33:26 | 000,005,248 | ---- | C] () -- D:\WINDOWS\System32\giveio.sys
========== Custom Scans ========== < HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >"ctfmon.exe" = D:\WINDOWS\system32\ctfmon.exe -- [2004.08.17 15:49:24 | 000,015,360 | ---- | M] (Microsoft Corporation)
< c:\windows\*.* /U > < MD5 for: AGP440.SYS >[2004.08.17 15:57:28 | 018,786,869 | ---- | M] () .cab file -- D:\WINDOWS\Driver Cache\i386\sp2.cab:AGP440.sys
< MD5 for: ATAPI.SYS >[2004.08.17 15:57:28 | 018,786,869 | ---- | M] () .cab file -- D:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2004.08.03 23:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- D:\WINDOWS\ERDNT\cache\atapi.sys
[2004.08.03 23:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- D:\WINDOWS\system32\drivers\atapi.sys
[2004.08.03 22:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- D:\WINDOWS\system32\ReinstallBackups\0009\DriverFiles\i386\atapi.sys
[2004.08.03 23:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- D:\WINDOWS\system32\ReinstallBackups\0010\DriverFiles\i386\atapi.sys
< MD5 for: EVENTLOG.DLL >[2004.08.17 15:49:08 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=6EB66066D5C0175320CFEA0A4C74C88F -- D:\WINDOWS\ERDNT\cache\eventlog.dll
[2004.08.17 15:49:08 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=6EB66066D5C0175320CFEA0A4C74C88F -- D:\WINDOWS\system32\eventlog.dll