kontrola z důvodu jedné nefunkční internetové stránky Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
Renee
Level 2
Level 2
Příspěvky: 211
Registrován: srpen 09
Pohlaví: Muž
Stav:
Offline

Re: kontrola z důvodu jedné nefunkční internetové stránky

Příspěvekod Renee » 26 dub 2010 23:34

vše jsem provedl. díky moc za Tvůj čas. ale jenom, jestli můžu.. vůbec nevím, co dělám... kdyby moc nevadilo, prosím řekl bys mi, co jsem v tom počítači měl, případně kde jsem to mohl chytit? díky. :smile:
logy:
OTL.txt:

OTL logfile created on: 26.4.2010 23:28:19 - Run 1
OTL by OldTimer - Version 3.2.3.0 Folder = C:\Users\Renee\Desktop
Enterprise Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 66,00% Memory free
4,00 Gb Paging File | 3,00 Gb Available in Paging File | 81,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 111,69 Gb Total Space | 42,60 Gb Free Space | 38,14% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: RENEE-JE-ŠÉF
Current User Name: Renee
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal

========== Processes (SafeList) ==========

PRC - C:\Users\Renee\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Windows\System32\atieclxx.exe (AMD)
PRC - C:\Windows\System32\atiesrxx.exe (AMD)
PRC - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe (ESET)
PRC - C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET)
PRC - C:\Windows\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\QIP\qip.exe (The Author of QIP)
PRC - C:\Windows\System32\taskhost.exe (Microsoft Corporation)
PRC - c:\Program Files\Windows Defender\MpCmdRun.exe (Microsoft Corporation)


========== Modules (SafeList) ==========

MOD - C:\Users\Renee\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\Windows\System32\sspicli.dll (Microsoft Corporation)
MOD - C:\Windows\System32\sechost.dll (Microsoft Corporation)
MOD - C:\Windows\System32\samcli.dll (Microsoft Corporation)
MOD - C:\Windows\System32\profapi.dll (Microsoft Corporation)
MOD - C:\Windows\System32\netutils.dll (Microsoft Corporation)
MOD - C:\Windows\System32\KernelBase.dll (Microsoft Corporation)
MOD - C:\Windows\System32\dwmapi.dll (Microsoft Corporation)
MOD - C:\Windows\System32\devobj.dll (Microsoft Corporation)
MOD - C:\Windows\System32\cryptbase.dll (Microsoft Corporation)
MOD - C:\Windows\System32\cfgmgr32.dll (Microsoft Corporation)
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc\comctl32.dll (Microsoft Corporation)


========== Win32 Services (SafeList) ==========

SRV - (AMD External Events Utility) -- C:\Windows\System32\atiesrxx.exe (AMD)
SRV - (EhttpSrv) -- C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe (ESET)
SRV - (ekrn) -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe (ESET)
SRV - (WwanSvc) -- C:\Windows\System32\wwansvc.dll (Microsoft Corporation)
SRV - (WbioSrvc) -- C:\Windows\System32\wbiosrvc.dll (Microsoft Corporation)
SRV - (Power) -- C:\Windows\System32\umpo.dll (Microsoft Corporation)
SRV - (Themes) -- C:\Windows\System32\themeservice.dll (Microsoft Corporation)
SRV - (sppuinotify) -- C:\Windows\System32\sppuinotify.dll (Microsoft Corporation)
SRV - (StorSvc) -- C:\Windows\System32\StorSvc.dll (Microsoft Corporation)
SRV - (RpcEptMapper) -- C:\Windows\System32\RpcEpMap.dll (Microsoft Corporation)
SRV - (SensrSvc) -- C:\Windows\System32\sensrsvc.dll (Microsoft Corporation)
SRV - (PeerDistSvc) -- C:\Windows\System32\PeerDistSvc.dll (Microsoft Corporation)
SRV - (PNRPsvc) Protokol PNRP (Peer Name Resolution Protocol) -- C:\Windows\System32\pnrpsvc.dll (Microsoft Corporation)
SRV - (p2pimsvc) -- C:\Windows\System32\pnrpsvc.dll (Microsoft Corporation)
SRV - (HomeGroupProvider) -- C:\Windows\System32\provsvc.dll (Microsoft Corporation)
SRV - (PNRPAutoReg) -- C:\Windows\System32\pnrpauto.dll (Microsoft Corporation)
SRV - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV - (HomeGroupListener) -- C:\Windows\System32\ListSvc.dll (Microsoft Corporation)
SRV - (FontCache) -- C:\Windows\System32\FntCache.dll (Microsoft Corporation)
SRV - (Dhcp) -- C:\Windows\System32\dhcpcore.dll (Microsoft Corporation)
SRV - (defragsvc) -- C:\Windows\System32\defragsvc.dll (Microsoft Corporation)
SRV - (BDESVC) -- C:\Windows\System32\bdesvc.dll (Microsoft Corporation)
SRV - (AxInstSV) Instalační program ovládacích prvků ActiveX (AxInstSV) -- C:\Windows\System32\AxInstSv.dll (Microsoft Corporation)
SRV - (AppIDSvc) -- C:\Windows\System32\appidsvc.dll (Microsoft Corporation)
SRV - (sppsvc) -- C:\Windows\System32\sppsvc.exe (Microsoft Corporation)
SRV - (NetTcpPortSharing) -- C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe (Microsoft Corporation)


========== Driver Services (SafeList) ==========

DRV - (hamachi) -- C:\Windows\System32\drivers\hamachi.sys (LogMeIn, Inc.)
DRV - (sptd) -- C:\Windows\System32\Drivers\sptd.sys (Duplex Secure Ltd.)
DRV - (atikmdag) -- C:\Windows\System32\drivers\atikmdag.sys (ATI Technologies Inc.)
DRV - (amdkmdag) -- C:\Windows\System32\drivers\atipmdag.sys (ATI Technologies Inc.)
DRV - (amdkmdap) -- C:\Windows\System32\drivers\atikmpag.sys (Advanced Micro Devices, Inc.)
DRV - (epfwwfpr) -- C:\Windows\System32\drivers\epfwwfpr.sys (ESET)
DRV - (ehdrv) -- C:\Windows\System32\drivers\ehdrv.sys (ESET)
DRV - (eamonm) -- C:\Windows\System32\drivers\eamonm.sys (ESET)
DRV - (AtiHdmiService) -- C:\Windows\System32\drivers\AtiHdmi.sys (ATI Technologies, Inc.)
DRV - (cmdide) -- C:\Windows\system32\DRIVERS\cmdide.sys (CMD Technology, Inc.)
DRV - (adpahci) -- C:\Windows\system32\DRIVERS\adpahci.sys (Adaptec, Inc.)
DRV - (adp94xx) -- C:\Windows\system32\DRIVERS\adp94xx.sys (Adaptec, Inc.)
DRV - (amdsbs) -- C:\Windows\system32\DRIVERS\amdsbs.sys (AMD Technologies Inc.)
DRV - (adpu320) -- C:\Windows\system32\DRIVERS\adpu320.sys (Adaptec, Inc.)
DRV - (arcsas) -- C:\Windows\system32\DRIVERS\arcsas.sys (Adaptec, Inc.)
DRV - (amdsata) -- C:\Windows\system32\DRIVERS\amdsata.sys (Advanced Micro Devices)
DRV - (arc) -- C:\Windows\system32\DRIVERS\arc.sys (Adaptec, Inc.)
DRV - (amdxata) -- C:\Windows\system32\DRIVERS\amdxata.sys (Advanced Micro Devices)
DRV - (aliide) -- C:\Windows\system32\DRIVERS\aliide.sys (Acer Laboratories Inc.)
DRV - (nvstor) -- C:\Windows\system32\DRIVERS\nvstor.sys (NVIDIA Corporation)
DRV - (nvraid) -- C:\Windows\system32\DRIVERS\nvraid.sys (NVIDIA Corporation)
DRV - (nfrd960) -- C:\Windows\system32\DRIVERS\nfrd960.sys (IBM Corporation)
DRV - (LSI_SAS) -- C:\Windows\system32\DRIVERS\lsi_sas.sys (LSI Corporation)
DRV - (iaStorV) -- C:\Windows\system32\DRIVERS\iaStorV.sys (Intel Corporation)
DRV - (MegaSR) -- C:\Windows\system32\DRIVERS\MegaSR.sys (LSI Corporation, Inc.)
DRV - (KSecPkg) -- C:\Windows\System32\Drivers\ksecpkg.sys (Microsoft Corporation)
DRV - (LSI_SCSI) -- C:\Windows\system32\DRIVERS\lsi_scsi.sys (LSI Corporation)
DRV - (LSI_FC) -- C:\Windows\system32\DRIVERS\lsi_fc.sys (LSI Corporation)
DRV - (LSI_SAS2) -- C:\Windows\system32\DRIVERS\lsi_sas2.sys (LSI Corporation)
DRV - (iirsp) -- C:\Windows\system32\DRIVERS\iirsp.sys (Intel Corp./ICP vortex GmbH)
DRV - (megasas) -- C:\Windows\system32\DRIVERS\megasas.sys (LSI Corporation)
DRV - (hwpolicy) -- C:\Windows\System32\drivers\hwpolicy.sys (Microsoft Corporation)
DRV - (elxstor) -- C:\Windows\system32\DRIVERS\elxstor.sys (Emulex)
DRV - (aic78xx) -- C:\Windows\system32\DRIVERS\djsvs.sys (Adaptec, Inc.)
DRV - (HpSAMD) -- C:\Windows\system32\DRIVERS\HpSAMD.sys (Hewlett-Packard Company)
DRV - (FsDepends) -- C:\Windows\System32\drivers\fsdepends.sys (Microsoft Corporation)
DRV - (vsmraid) -- C:\Windows\system32\DRIVERS\vsmraid.sys (VIA Technologies Inc.,Ltd)
DRV - (vmbus) -- C:\Windows\system32\DRIVERS\vmbus.sys (Microsoft Corporation)
DRV - (vhdmp) -- C:\Windows\system32\DRIVERS\vhdmp.sys (Microsoft Corporation)
DRV - (storflt) -- C:\Windows\system32\DRIVERS\vmstorfl.sys (Microsoft Corporation)
DRV - (vdrvroot) -- C:\Windows\system32\DRIVERS\vdrvroot.sys (Microsoft Corporation)
DRV - (storvsc) -- C:\Windows\system32\DRIVERS\storvsc.sys (Microsoft Corporation)
DRV - (WIMMount) -- C:\Windows\System32\drivers\wimmount.sys (Microsoft Corporation)
DRV - (viaide) -- C:\Windows\system32\DRIVERS\viaide.sys (VIA Technologies, Inc.)
DRV - (ql2300) -- C:\Windows\system32\DRIVERS\ql2300.sys (QLogic Corporation)
DRV - (rdyboost) -- C:\Windows\System32\drivers\rdyboost.sys (Microsoft Corporation)
DRV - (ql40xx) -- C:\Windows\system32\DRIVERS\ql40xx.sys (QLogic Corporation)
DRV - (SiSRaid4) -- C:\Windows\system32\DRIVERS\sisraid4.sys (Silicon Integrated Systems)
DRV - (pcw) -- C:\Windows\System32\drivers\pcw.sys (Microsoft Corporation)
DRV - (SiSRaid2) -- C:\Windows\system32\DRIVERS\SiSRaid2.sys (Silicon Integrated Systems Corp.)
DRV - (stexstor) -- C:\Windows\system32\DRIVERS\stexstor.sys (Promise Technology)
DRV - (CNG) -- C:\Windows\System32\Drivers\cng.sys (Microsoft Corporation)
DRV - (Brserid) Brother MFC Serial Port Interface Driver (WDM) -- C:\Windows\System32\Drivers\Brserid.sys (Brother Industries Ltd.)
DRV - (rdpbus) -- C:\Windows\System32\drivers\rdpbus.sys (Microsoft Corporation)
DRV - (RDPREFMP) -- C:\Windows\System32\drivers\RDPREFMP.sys (Microsoft Corporation)
DRV - (RasAgileVpn) WAN Miniport (IKEv2) -- C:\Windows\System32\drivers\agilevpn.sys (Microsoft Corporation)
DRV - (WfpLwf) -- C:\Windows\System32\drivers\wfplwf.sys (Microsoft Corporation)
DRV - (NdisCap) -- C:\Windows\System32\drivers\ndiscap.sys (Microsoft Corporation)
DRV - (vwifibus) -- C:\Windows\System32\drivers\vwifibus.sys (Microsoft Corporation)
DRV - (1394ohci) -- C:\Windows\System32\drivers\1394ohci.sys (Microsoft Corporation)
DRV - (UmPass) -- C:\Windows\system32\DRIVERS\umpass.sys (Microsoft Corporation)
DRV - (mshidkmdf) -- C:\Windows\System32\drivers\mshidkmdf.sys (Microsoft Corporation)
DRV - (MTConfig) -- C:\Windows\system32\DRIVERS\MTConfig.sys (Microsoft Corporation)
DRV - (CompositeBus) -- C:\Windows\System32\drivers\CompositeBus.sys (Microsoft Corporation)
DRV - (AppID) -- C:\Windows\system32\drivers\appid.sys (Microsoft Corporation)
DRV - (scfilter) -- C:\Windows\System32\drivers\scfilter.sys (Microsoft Corporation)
DRV - (s3cap) -- C:\Windows\system32\DRIVERS\vms3cap.sys (Microsoft Corporation)
DRV - (VMBusHID) -- C:\Windows\system32\DRIVERS\VMBusHID.sys (Microsoft Corporation)
DRV - (discache) -- C:\Windows\System32\drivers\discache.sys (Microsoft Corporation)
DRV - (HidBatt) -- C:\Windows\system32\DRIVERS\HidBatt.sys (Microsoft Corporation)
DRV - (AcpiPmi) -- C:\Windows\system32\DRIVERS\acpipmi.sys (Microsoft Corporation)
DRV - (AmdPPM) -- C:\Windows\system32\DRIVERS\amdppm.sys (Microsoft Corporation)
DRV - (hcw85cir) -- C:\Windows\system32\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV - (BrUsbMdm) -- C:\Windows\System32\Drivers\BrUsbMdm.sys (Brother Industries Ltd.)
DRV - (BrUsbSer) -- C:\Windows\System32\Drivers\BrUsbSer.sys (Brother Industries Ltd.)
DRV - (BrSerWdm) -- C:\Windows\System32\Drivers\BrSerWdm.sys (Brother Industries Ltd.)
DRV - (BrFiltLo) -- C:\Windows\system32\DRIVERS\BrFiltLo.sys (Brother Industries, Ltd.)
DRV - (BrFiltUp) -- C:\Windows\system32\DRIVERS\BrFiltUp.sys (Brother Industries, Ltd.)
DRV - (NVENETFD) -- C:\Windows\System32\drivers\nvm62x32.sys (NVIDIA Corporation)
DRV - (b57nd60x) -- C:\Windows\System32\drivers\b57nd60x.sys (Broadcom Corporation)
DRV - (ebdrv) -- C:\Windows\system32\DRIVERS\evbdx.sys (Broadcom Corporation)
DRV - (b06bdrv) -- C:\Windows\system32\DRIVERS\bxvbdx.sys (Broadcom Corporation)
DRV - (atkdisplf) -- C:\Windows\System32\drivers\ATKDispLowFilter.sys (ASUSTeK Computer Inc.)
DRV - (asusgsb) -- C:\Windows\System32\drivers\asusgsb.sys (ASUSTeK Computer Inc.)
DRV - (ALCXWDM) Service for Realtek AC97 Audio (WDM) -- C:\Windows\System32\drivers\alcxwdm.sys (Realtek Semiconductor Corp.)
DRV - (MTsensor) -- C:\Windows\System32\drivers\ASACPI.sys ()


========== Standard Registry (All) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\System32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.cz/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = cs
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = A2 6C 10 5C BD E4 CA 01 [binary data]
IE - HKCU\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\System32\ieframe.dll (Microsoft Corporation)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

FF - HKLM\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2010.04.01 21:29:48 | 000,000,000 | ---D | M]


O1 HOSTS File: ([2009.06.10 23:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O2 - BHO: (IDMIEHlprObj Class) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll (Tonec Inc.)
O4 - HKLM..\Run: [egui] C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET)
O4 - HKCU..\Run: [QIP2005] C:\Program Files\QIP\qip.exe (The Author of QIP)
O4 - HKCU..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableInstallerDetection = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableSecureUIAPaths = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableVirtualization = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ValidateAdminCodeSignatures = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: scforceoption = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: FilterAdministratorToken = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_TEXT = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_BITMAP = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_OEMTEXT = 7
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIB = 8
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_PALETTE = 9
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_UNICODETEXT = 13
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIBV5 = 17
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O8 - Extra context menu item: Download all links with IDM - C:\Program Files\Internet Download Manager\IEGetAll.htm ()
O8 - Extra context menu item: Download FLV video content with IDM - C:\Program Files\Internet Download Manager\IEGetVL.htm ()
O8 - Extra context menu item: Download with IDM - C:\Program Files\Internet Download Manager\IEExt.htm ()
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\Windows\System32\nlaapi.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\Windows\System32\winrnr.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Windows\System32\NapiNSP.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Windows\System32\pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - C:\Windows\System32\pnrpnsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000018 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000019 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000020 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000021 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000022 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000023 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000024 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000025 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000026 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000027 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000028 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000029 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000030 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000031 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000032 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000033 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000034 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000035 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000036 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000037 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\System32\MSVidCtl.dll (Microsoft Corporation)
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\gopher {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\System32\inetcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\System32\MSVidCtl.dll (Microsoft Corporation)
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\deflate {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\gzip {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\System32\webcheck.dll (Microsoft Corporation)
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found
O29 - HKLM SecurityProviders - (credssp.dll) - C:\Windows\System32\credssp.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) - C:\Windows\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (kerberos) - C:\Windows\System32\kerberos.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (msv1_0) - C:\Windows\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (schannel) - C:\Windows\System32\schannel.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (wdigest) - C:\Windows\System32\wdigest.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (tspkg) - C:\Windows\System32\tspkg.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (pku2u) - C:\Windows\System32\pku2u.dll (Microsoft Corporation)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2010.04.26 23:27:21 | 000,563,712 | ---- | C] (OldTimer Tools) -- C:\Users\Renee\Desktop\OTL.exe
[2010.04.26 23:26:05 | 000,000,000 | ---D | C] -- C:\ComboFix
[2010.04.26 22:06:38 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2010.04.26 22:06:36 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Local\temp
[2010.04.26 21:57:54 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Local\ESET
[2010.04.26 16:03:40 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\Malwarebytes
[2010.04.26 16:03:34 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2010.04.26 16:03:31 | 000,020,824 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2010.04.26 16:03:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2010.04.26 16:03:30 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010.04.25 19:48:25 | 000,000,000 | ---D | C] -- C:\Windows\System32\appmgmt
[2010.04.25 19:41:09 | 000,000,000 | ---D | C] -- C:\Program Files\AMD
[2010.04.25 19:40:36 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Local\Downloaded Installations
[2010.04.25 18:38:22 | 000,000,000 | ---D | C] -- C:\Program Files\Trend Micro
[2010.04.25 18:20:34 | 000,000,000 | ---D | C] -- C:\Program Files\RegCleaner
[2010.04.25 18:09:51 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2010.04.25 14:12:24 | 000,000,000 | ---D | C] -- C:\Users\Renee\Desktop\Documents\ASUS
[2010.04.25 14:10:13 | 000,348,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msvcr71.dll
[2010.04.25 14:10:10 | 000,030,976 | ---- | C] (ASUSTeK Computer Inc.) -- C:\Windows\System32\drivers\ATKDispLowFilter.sys
[2010.04.25 14:10:10 | 000,015,232 | ---- | C] (ASUSTeK Computer Inc.) -- C:\Windows\System32\drivers\asusgsb.sys
[2010.04.22 21:05:17 | 000,000,000 | ---D | C] -- C:\Windows\System32\URTTEMP
[2010.04.22 20:33:03 | 000,000,000 | ---D | C] -- C:\Program Files\Razor
[2010.04.18 20:00:38 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\IDM
[2010.04.18 20:00:38 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\DMCache
[2010.04.18 20:00:33 | 000,000,000 | ---D | C] -- C:\Program Files\Internet Download Manager
[2010.04.15 17:55:52 | 000,000,000 | ---D | C] -- C:\Program Files\Sony Ericsson
[2010.04.14 15:39:33 | 000,427,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\vbscript.dll
[2010.04.14 15:39:26 | 003,899,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntoskrnl.exe
[2010.04.14 15:39:24 | 003,954,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntkrnlpa.exe
[2010.04.08 21:16:00 | 000,000,000 | R--D | C] -- C:\Users\Renee\Searches
[2010.04.08 20:13:57 | 000,000,000 | ---D | C] -- C:\ProgramData\TrackMania
[2010.04.03 14:05:48 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\GRETECH
[2010.04.03 14:05:09 | 000,000,000 | ---D | C] -- C:\Program Files\GRETECH
[2010.04.02 23:30:56 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Local\PunkBuster
[2010.04.02 23:23:17 | 000,000,000 | ---D | C] -- C:\Users\Renee\Desktop\Documents\Battlefield Heroes
[2010.04.02 23:05:38 | 000,000,000 | ---D | C] -- C:\Program Files\EA Games
[2010.04.02 22:39:29 | 000,000,000 | R--D | C] -- C:\Users\Renee\Favorites
[2010.04.02 22:35:57 | 000,000,000 | ---D | C] -- C:\Users\Renee\.thumbnails
[2010.04.02 22:35:47 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\gtk-2.0
[2010.04.02 22:33:15 | 000,000,000 | ---D | C] -- C:\Users\Renee\Desktop\Documents\gegl-0.0
[2010.04.02 22:33:15 | 000,000,000 | ---D | C] -- C:\Users\Renee\.gimp-2.6
[2010.04.02 22:31:11 | 000,000,000 | ---D | C] -- C:\Program Files\GIMP-2.0
[2010.04.02 21:48:37 | 000,000,000 | ---D | C] -- C:\Users\Renee\Desktop\Documents\Square Enix
[2010.04.02 21:35:25 | 000,000,000 | ---D | C] -- C:\Windows\pss
[2010.04.02 20:06:39 | 000,000,000 | ---D | C] -- C:\Program Files\SQUARE ENIX - Eidos Interactive
[2010.04.02 18:22:52 | 000,609,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\comctl32.ocx
[2010.04.02 18:22:52 | 000,132,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MSINET.OCX
[2010.04.02 18:22:51 | 001,081,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mscomctl.ocx
[2010.04.02 18:22:49 | 000,101,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\VB6STKIT.DLL
[2010.04.02 18:22:44 | 000,000,000 | ---D | C] -- C:\Program Files\FootballArena
[2010.04.02 18:01:47 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\OpenOffice.org
[2010.04.02 12:43:46 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\Hamachi
[2010.04.02 12:43:31 | 000,025,280 | ---- | C] (LogMeIn, Inc.) -- C:\Windows\System32\drivers\hamachi.sys
[2010.04.02 12:43:28 | 000,000,000 | ---D | C] -- C:\Program Files\Hamachi
[2010.04.02 11:32:43 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\TuneUp Software
[2010.04.02 11:32:04 | 000,000,000 | ---D | C] -- C:\ProgramData\TuneUp Software
[2010.04.02 11:32:00 | 000,000,000 | -HSD | C] -- C:\ProgramData\{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}
[2010.04.02 11:27:29 | 000,000,000 | ---D | C] -- C:\Program Files\TmNationsForever
[2010.04.02 11:14:26 | 000,000,000 | ---D | C] -- C:\Program Files\OpenOffice.org 3
[2010.04.02 09:47:15 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\browserchoice.exe
[2010.04.02 09:45:51 | 000,606,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mstime.dll
[2010.04.02 09:45:49 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll
[2010.04.02 09:45:48 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedsbs.dll
[2010.04.02 09:45:43 | 002,614,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe
[2010.04.02 09:45:19 | 001,320,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\CertEnroll.dll
[2010.04.02 09:45:18 | 000,507,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winload.exe
[2010.04.02 09:45:17 | 000,442,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winresume.exe
[2010.04.02 09:45:15 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmploc.DLL
[2010.04.02 09:45:04 | 000,716,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript.dll
[2010.04.02 09:45:00 | 000,108,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\t2embed.dll
[2010.04.02 09:44:59 | 000,293,888 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\atmfd.dll
[2010.04.02 09:44:59 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fontsub.dll
[2010.04.02 09:44:48 | 001,328,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\quartz.dll
[2010.04.02 09:44:48 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mciavi32.dll
[2010.04.02 09:44:47 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\avifil32.dll
[2010.04.02 09:44:27 | 000,641,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\CPFilters.dll
[2010.04.02 09:44:25 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msdri.dll
[2010.04.02 09:44:25 | 000,204,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MSNP.ax
[2010.04.02 09:44:22 | 000,465,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\psisdecd.dll
[2010.04.02 09:44:14 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tzres.dll
[2010.04.02 09:44:09 | 000,365,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_isv.dll
[2010.04.02 09:44:08 | 000,369,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc.dll
[2010.04.02 09:44:08 | 000,324,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_isv.exe
[2010.04.02 09:44:08 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate.exe
[2010.04.02 09:44:08 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_ssp_isv.dll
[2010.04.02 09:44:07 | 000,280,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_ssp.exe
[2010.04.02 09:44:07 | 000,277,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_ssp_isv.exe
[2010.04.02 09:44:07 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_ssp.dll
[2010.04.02 01:20:36 | 004,178,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_41.dll
[2010.04.02 01:20:36 | 001,846,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_41.dll
[2010.04.02 01:20:36 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_41.dll
[2010.04.02 01:20:35 | 004,379,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_40.dll
[2010.04.02 01:20:35 | 002,036,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_40.dll
[2010.04.02 01:20:35 | 000,517,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_4.dll
[2010.04.02 01:20:35 | 000,452,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_40.dll
[2010.04.02 01:20:35 | 000,235,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_4.dll
[2010.04.02 01:20:35 | 000,069,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_3.dll
[2010.04.02 01:20:35 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_6.dll
[2010.04.02 01:20:34 | 000,514,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_3.dll
[2010.04.02 01:20:34 | 000,235,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_3.dll
[2010.04.02 01:20:34 | 000,070,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_2.dll
[2010.04.02 01:20:33 | 003,851,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_39.dll
[2010.04.02 01:20:33 | 001,493,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_39.dll
[2010.04.02 01:20:33 | 000,509,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_2.dll
[2010.04.02 01:20:33 | 000,507,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_1.dll
[2010.04.02 01:20:33 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_39.dll
[2010.04.02 01:20:33 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_2.dll
[2010.04.02 01:20:33 | 000,068,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_1.dll
[2010.04.02 01:20:33 | 000,065,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_0.dll
[2010.04.02 01:20:33 | 000,023,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_5.dll
[2010.04.02 01:20:32 | 003,850,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_38.dll
[2010.04.02 01:20:32 | 001,491,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_38.dll
[2010.04.02 01:20:32 | 000,479,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_0.dll
[2010.04.02 01:20:32 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_38.dll
[2010.04.02 01:20:32 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_1.dll
[2010.04.02 01:20:32 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_4.dll
[2010.04.02 01:20:31 | 003,786,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_37.dll
[2010.04.02 01:20:31 | 003,734,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_36.dll
[2010.04.02 01:20:31 | 001,420,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_37.dll
[2010.04.02 01:20:31 | 001,374,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_36.dll
[2010.04.02 01:20:31 | 000,462,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_37.dll
[2010.04.02 01:20:31 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_36.dll
[2010.04.02 01:20:31 | 000,267,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_10.dll
[2010.04.02 01:20:31 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_0.dll
[2010.04.02 01:20:31 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_3.dll
[2010.04.02 01:20:30 | 003,727,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_35.dll
[2010.04.02 01:20:30 | 001,358,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_35.dll
[2010.04.02 01:20:30 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_35.dll
[2010.04.02 01:20:30 | 000,267,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_9.dll
[2010.04.02 01:20:30 | 000,266,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_8.dll
[2010.04.02 01:20:30 | 000,017,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_2.dll
[2010.04.02 01:20:29 | 003,497,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_34.dll
[2010.04.02 01:20:29 | 001,124,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_34.dll
[2010.04.02 01:20:29 | 001,123,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_33.dll
[2010.04.02 01:20:29 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_34.dll
[2010.04.02 01:20:29 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_33.dll
[2010.04.02 01:20:29 | 000,261,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_7.dll
[2010.04.02 01:20:29 | 000,081,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xinput1_3.dll
[2010.04.02 01:20:28 | 003,495,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_33.dll
[2010.04.02 01:20:28 | 000,440,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10.dll
[2010.04.02 01:20:28 | 000,255,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_6.dll
[2010.04.02 01:20:28 | 000,251,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_5.dll
[2010.04.02 01:20:27 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_32.dll
[2010.04.02 01:20:27 | 002,414,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_31.dll
[2010.04.02 01:20:27 | 000,237,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_4.dll
[2010.04.02 01:20:27 | 000,236,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_3.dll
[2010.04.02 01:20:27 | 000,230,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_2.dll
[2010.04.02 01:20:27 | 000,062,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xinput1_2.dll
[2010.04.02 01:20:27 | 000,062,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xinput1_1.dll
[2010.04.02 01:20:27 | 000,015,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\x3daudio1_1.dll
[2010.04.02 01:20:26 | 000,229,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_1.dll
[2010.04.02 01:20:21 | 002,388,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_30.dll
[2010.04.02 01:20:21 | 000,230,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_0.dll
[2010.04.02 01:20:21 | 000,014,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\x3daudio1_0.dll
[2010.04.02 01:20:20 | 002,332,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_29.dll
[2010.04.02 01:20:20 | 002,323,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_28.dll
[2010.04.02 01:20:20 | 002,319,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_27.dll
[2010.04.02 01:20:19 | 002,337,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_25.dll
[2010.04.02 01:20:19 | 002,297,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_26.dll
[2010.04.02 01:20:18 | 002,222,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_24.dll
[2010.04.02 01:19:27 | 000,000,000 | ---D | C] -- C:\Windows\System32\AGEIA
[2010.04.02 01:19:25 | 000,000,000 | ---D | C] -- C:\Program Files\AGEIA Technologies
[2010.04.02 01:19:11 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Wise Installation Wizard
[2010.04.02 01:18:19 | 000,000,000 | ---D | C] -- C:\Renee
[2010.04.02 01:06:13 | 000,000,000 | ---D | C] -- C:\Program Files\2K Games
[2010.04.02 01:05:51 | 000,000,000 | ---D | C] -- C:\BDS
[2010.04.02 01:04:45 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Local\Diagnostics
[2010.04.02 00:48:26 | 000,060,416 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\ALCFDRTM.VER
[2010.04.02 00:48:26 | 000,060,416 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\ALCFDRTM.EXE
[2010.04.02 00:41:02 | 000,691,696 | ---- | C] (Duplex Secure Ltd.) -- C:\Windows\System32\drivers\sptd.sys
[2010.04.02 00:39:20 | 000,000,000 | ---D | C] -- C:\Program Files\DAEMON Tools Lite
[2010.04.02 00:38:39 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\DAEMON Tools Lite
[2010.04.02 00:38:36 | 000,000,000 | ---D | C] -- C:\ProgramData\DAEMON Tools Lite
[2010.04.02 00:37:40 | 000,000,000 | ---D | C] -- C:\Users\Renee\Desktop\Documents\Downloads
[2010.04.01 23:43:55 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\AIMP
[2010.04.01 23:42:28 | 000,000,000 | R--D | C] -- C:\Users\Renee\Obrázky
[2010.04.01 23:42:27 | 000,000,000 | R--D | C] -- C:\Users\Renee\Hudba
[2010.04.01 23:42:27 | 000,000,000 | R--D | C] -- C:\Users\Renee\Filmy
[2010.04.01 23:14:00 | 004,026,112 | R--- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\drivers\alcxwdm.sys
[2010.04.01 23:13:59 | 000,577,536 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\soundman.exe
[2010.04.01 23:13:57 | 010,528,768 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RTLCPL.exe
[2010.04.01 23:13:55 | 018,804,736 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\alsndmgr.cpl
[2010.04.01 23:03:55 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek AC97
[2010.04.01 23:03:40 | 000,315,392 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\alcupd.exe
[2010.04.01 23:03:39 | 000,217,088 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\alcrmv.exe
[2010.04.01 23:03:09 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield
[2010.04.01 23:02:24 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\WinRAR
[2010.04.01 22:56:19 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2010.04.01 22:51:09 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\Macromedia
[2010.04.01 22:51:09 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\Adobe
[2010.04.01 22:49:52 | 000,000,000 | ---D | C] -- C:\Windows\System32\Macromed
[2010.04.01 22:42:19 | 000,000,000 | ---D | C] -- C:\Users\Renee\mobajl
[2010.04.01 22:41:25 | 000,000,000 | ---D | C] -- C:\Program Files\AIMP2
[2010.04.01 22:37:19 | 000,000,000 | ---D | C] -- C:\Program Files\QIP
[2010.04.01 22:36:47 | 000,000,000 | ---D | C] -- C:\Users\Renee\škola
[2010.04.01 22:31:46 | 000,000,000 | ---D | C] -- C:\Users\Renee\programy
[2010.04.01 22:25:06 | 000,000,000 | ---D | C] -- C:\Users\Renee\Desktop\Documents\TrackMania
[2010.04.01 22:24:39 | 000,000,000 | ---D | C] -- C:\Users\Renee\Desktop\Documents\My Games
[2010.04.01 22:24:39 | 000,000,000 | ---D | C] -- C:\Users\Renee\Desktop\Documents\JustCause
[2010.04.01 22:24:25 | 000,000,000 | ---D | C] -- C:\Users\Renee\Desktop\Documents\EA Games
[2010.04.01 21:49:48 | 000,000,000 | ---D | C] -- C:\Windows\Panther
[2010.04.01 21:39:16 | 000,000,000 | ---D | C] -- C:\Users\Renee\hry
[2010.04.01 21:30:33 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Local\ElevatedDiagnostics
[2010.04.01 21:29:48 | 000,000,000 | ---D | C] -- C:\ProgramData\ESET
[2010.04.01 21:29:48 | 000,000,000 | ---D | C] -- C:\Program Files\ESET
[2010.04.01 21:15:04 | 000,181,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MpSigStub.exe
[2010.04.01 21:14:50 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Local\Google
[2010.04.01 21:14:44 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Local\Deployment
[2010.04.01 21:10:56 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\ATI
[2010.04.01 21:10:56 | 000,000,000 | ---D | C] -- C:\ProgramData\ATI
[2010.04.01 21:10:55 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ATI Technologies
[2010.04.01 21:09:39 | 000,000,000 | -HSD | C] -- C:\Windows\Installer
[2010.04.01 21:09:38 | 000,000,000 | ---D | C] -- C:\Program Files\ATI
[2010.04.01 21:08:46 | 000,000,000 | ---D | C] -- C:\Program Files\ATI Technologies
[2010.04.01 21:08:06 | 000,000,000 | ---D | C] -- C:\ATI
[2010.04.01 21:07:33 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information
[2010.04.01 20:59:46 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\Identities
[2010.04.01 20:59:34 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Local\VirtualStore
[2010.04.01 20:59:32 | 000,000,000 | --SD | C] -- C:\Users\Renee\AppData\Roaming\Microsoft
[2010.04.01 20:59:32 | 000,000,000 | R--D | C] -- C:\Users\Renee\Desktop\Documents
[2010.04.01 20:59:32 | 000,000,000 | R--D | C] -- C:\Users\Renee\Desktop
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\AppData\Local\Temporary Internet Files
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\Šablony
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\Soubory cookie
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\SendTo
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\Poslední
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\Okolní tiskárny
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\Okolní síť
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\Nabídka Start
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\Local Settings
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\AppData\Local\History
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\Dokumenty
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\Data aplikací
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\AppData\Local\Data aplikací
[2010.04.01 20:59:32 | 000,000,000 | -H-D | C] -- C:\Users\Renee\AppData
[2010.04.01 20:59:32 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Local\Microsoft
[2010.04.01 20:59:32 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\Media Center Programs
[2010.04.01 20:59:15 | 000,000,000 | -HSD | C] -- C:\ProgramData\Šablony
[2010.04.01 20:59:15 | 000,000,000 | -HSD | C] -- C:\ProgramData\Plocha
[2010.04.01 20:59:15 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Obrázky
[2010.04.01 20:59:15 | 000,000,000 | -HSD | C] -- C:\ProgramData\Oblíbené položky
[2010.04.01 20:59:15 | 000,000,000 | -HSD | C] -- C:\ProgramData\Nabídka Start
[2010.04.01 20:59:15 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Hudba
[2010.04.01 20:59:15 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Filmy
[2010.04.01 20:59:15 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumenty
[2010.04.01 20:59:15 | 000,000,000 | -HSD | C] -- C:\ProgramData\Data aplikací
[2010.04.01 20:59:15 | 000,000,000 | ---D | C] -- C:\Recovery
[2010.04.01 20:53:53 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2010.04.01 20:50:50 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch
[2010.04.01 20:50:41 | 000,000,000 | -HSD | C] -- C:\System Volume Information

Reklama
Uživatelský avatar
Renee
Level 2
Level 2
Příspěvky: 211
Registrován: srpen 09
Pohlaví: Muž
Stav:
Offline

Re: kontrola z důvodu jedné nefunkční internetové stránky

Příspěvekod Renee » 26 dub 2010 23:35

========== Files - Modified Within 30 Days ==========

[2010.04.26 23:28:57 | 001,310,720 | -HS- | M] () -- C:\Users\Renee\NTUSER.DAT
[2010.04.26 23:27:34 | 000,563,712 | ---- | M] (OldTimer Tools) -- C:\Users\Renee\Desktop\OTL.exe
[2010.04.26 23:19:00 | 000,000,962 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3066638169-474057053-1295839724-1001UA.job
[2010.04.26 22:04:43 | 000,000,215 | ---- | M] () -- C:\Windows\system.ini
[2010.04.26 21:59:48 | 000,014,944 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2010.04.26 21:59:48 | 000,014,944 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2010.04.26 21:52:34 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2010.04.26 21:52:31 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010.04.26 21:52:23 | 1610,260,480 | -HS- | M] () -- C:\hiberfil.sys
[2010.04.26 21:51:43 | 000,988,898 | -H-- | M] () -- C:\Users\Renee\AppData\Local\IconCache.db
[2010.04.26 21:49:23 | 000,029,696 | ---- | M] () -- C:\Users\Renee\Desktop\23.doc
[2010.04.26 21:19:01 | 000,000,910 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3066638169-474057053-1295839724-1001Core.job
[2010.04.24 16:11:01 | 000,698,880 | ---- | M] () -- C:\Users\Renee\reg2052010.doc
[2010.04.23 17:01:27 | 001,473,146 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI
[2010.04.23 17:01:27 | 000,631,116 | ---- | M] () -- C:\Windows\System32\perfh005.dat
[2010.04.23 17:01:27 | 000,615,760 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2010.04.23 17:01:27 | 000,123,556 | ---- | M] () -- C:\Windows\System32\perfc005.dat
[2010.04.23 17:01:27 | 000,107,396 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2010.04.23 14:48:12 | 000,138,184 | ---- | M] () -- C:\Windows\System32\drivers\PnkBstrK.sys
[2010.04.23 14:47:52 | 000,215,016 | ---- | M] () -- C:\Windows\System32\PnkBstrB.xtr
[2010.04.22 20:33:06 | 000,000,939 | ---- | M] () -- C:\Users\Renee\Desktop\Razor.lnk
[2010.04.19 14:49:03 | 000,138,056 | ---- | M] () -- C:\Users\Renee\AppData\Roaming\PnkBstrK.sys
[2010.04.19 14:48:37 | 002,427,248 | ---- | M] () -- C:\Windows\System32\pbsvc_heroes.exe
[2010.04.18 20:11:25 | 000,009,728 | ---- | M] () -- C:\Windows\System32\BASSMOD.dll
[2010.04.15 21:40:21 | 000,013,830 | ---- | M] () -- C:\Users\Renee\.recently-used.xbel
[2010.04.02 22:33:04 | 000,001,061 | ---- | M] () -- C:\Users\Public\Desktop\GIMP 2.lnk
[2010.04.02 20:16:59 | 000,001,295 | ---- | M] () -- C:\Users\Public\Desktop\Just Cause 2.lnk
[2010.04.02 18:50:24 | 000,001,527 | ---- | M] () -- C:\Users\Renee\Desktop\Renee.lnk
[2010.04.02 12:43:31 | 000,025,280 | ---- | M] (LogMeIn, Inc.) -- C:\Windows\System32\drivers\hamachi.sys
[2010.04.02 11:38:33 | 000,289,992 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2010.04.02 11:29:52 | 000,001,066 | ---- | M] () -- C:\Users\Public\Desktop\TmNationsForever.lnk
[2010.04.02 11:23:13 | 000,062,952 | ---- | M] () -- C:\Users\Renee\AppData\Local\GDIPFONTCACHEV1.DAT
[2010.04.02 11:13:07 | 000,000,017 | ---- | M] () -- C:\Users\Renee\AppData\Local\resmon.resmoncfg
[2010.04.02 01:23:45 | 000,002,009 | ---- | M] () -- C:\Users\Renee\Desktop\Borderlands.lnk
[2010.04.02 00:49:16 | 000,060,416 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\ALCFDRTM.VER
[2010.04.02 00:48:26 | 000,060,416 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\ALCFDRTM.EXE
[2010.04.02 00:41:02 | 000,691,696 | ---- | M] (Duplex Secure Ltd.) -- C:\Windows\System32\drivers\sptd.sys
[2010.04.01 23:38:50 | 000,524,288 | -HS- | M] () -- C:\Users\Renee\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000002.regtrans-ms
[2010.04.01 23:38:50 | 000,524,288 | -HS- | M] () -- C:\Users\Renee\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000001.regtrans-ms
[2010.04.01 23:38:50 | 000,065,536 | -HS- | M] () -- C:\Users\Renee\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TM.blf
[2010.04.01 21:06:18 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2010.04.01 20:59:32 | 000,000,020 | -HS- | M] () -- C:\Users\Renee\ntuser.ini
[2010.04.01 20:55:02 | 000,000,797 | ---- | M] () -- C:\Windows\System32\license.rtf
[2010.03.29 15:24:58 | 000,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2010.03.29 15:24:46 | 000,020,824 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys

========== Files Created - No Company Name ==========

[2010.04.26 21:49:20 | 000,029,696 | ---- | C] () -- C:\Users\Renee\Desktop\23.doc
[2010.04.24 16:09:04 | 000,698,880 | ---- | C] () -- C:\Users\Renee\reg2052010.doc
[2010.04.22 20:33:06 | 000,000,939 | ---- | C] () -- C:\Users\Renee\Desktop\Razor.lnk
[2010.04.19 14:48:37 | 002,427,248 | ---- | C] () -- C:\Windows\System32\pbsvc_heroes.exe
[2010.04.18 20:11:25 | 000,009,728 | ---- | C] () -- C:\Windows\System32\BASSMOD.dll
[2010.04.15 21:40:21 | 000,013,830 | ---- | C] () -- C:\Users\Renee\.recently-used.xbel
[2010.04.04 10:44:37 | 000,138,184 | ---- | C] () -- C:\Windows\System32\drivers\PnkBstrK.sys
[2010.04.04 10:44:21 | 000,215,016 | ---- | C] () -- C:\Windows\System32\PnkBstrB.exe
[2010.04.04 10:44:20 | 000,075,064 | ---- | C] () -- C:\Windows\System32\PnkBstrA.exe
[2010.04.02 23:31:01 | 000,215,016 | ---- | C] () -- C:\Windows\System32\PnkBstrB.xtr
[2010.04.02 23:21:55 | 000,138,056 | ---- | C] () -- C:\Users\Renee\AppData\Roaming\PnkBstrK.sys
[2010.04.02 22:33:04 | 000,001,061 | ---- | C] () -- C:\Users\Public\Desktop\GIMP 2.lnk
[2010.04.02 20:16:59 | 000,001,295 | ---- | C] () -- C:\Users\Public\Desktop\Just Cause 2.lnk
[2010.04.02 18:49:03 | 000,001,527 | ---- | C] () -- C:\Users\Renee\Desktop\Renee.lnk
[2010.04.02 18:22:52 | 000,372,736 | ---- | C] () -- C:\Windows\System32\toolbar2.ocx
[2010.04.02 11:29:52 | 000,001,066 | ---- | C] () -- C:\Users\Public\Desktop\TmNationsForever.lnk
[2010.04.02 11:13:07 | 000,000,017 | ---- | C] () -- C:\Users\Renee\AppData\Local\resmon.resmoncfg
[2010.04.02 01:23:45 | 000,002,009 | ---- | C] () -- C:\Users\Renee\Desktop\Borderlands.lnk
[2010.04.01 23:14:00 | 000,147,456 | ---- | C] () -- C:\Windows\System32\RtlCPAPI.dll
[2010.04.01 23:13:59 | 000,049,152 | ---- | C] () -- C:\Windows\System32\ChCfg.exe
[2010.04.01 23:13:57 | 000,141,016 | ---- | C] () -- C:\Windows\System32\alsndmgr.wav
[2010.04.01 21:14:53 | 000,000,962 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3066638169-474057053-1295839724-1001UA.job
[2010.04.01 21:14:52 | 000,000,910 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3066638169-474057053-1295839724-1001Core.job
[2010.04.01 21:06:18 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2010.04.01 20:59:32 | 001,310,720 | -HS- | C] () -- C:\Users\Renee\NTUSER.DAT
[2010.04.01 20:59:32 | 000,524,288 | -HS- | C] () -- C:\Users\Renee\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000002.regtrans-ms
[2010.04.01 20:59:32 | 000,524,288 | -HS- | C] () -- C:\Users\Renee\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000001.regtrans-ms
[2010.04.01 20:59:32 | 000,262,144 | -HS- | C] () -- C:\Users\Renee\ntuser.dat.LOG1
[2010.04.01 20:59:32 | 000,065,536 | -HS- | C] () -- C:\Users\Renee\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TM.blf
[2010.04.01 20:59:32 | 000,000,020 | -HS- | C] () -- C:\Users\Renee\ntuser.ini
[2010.04.01 20:59:32 | 000,000,000 | -HS- | C] () -- C:\Users\Renee\ntuser.dat.LOG2
[2010.04.01 20:50:41 | 1610,260,480 | -HS- | C] () -- C:\hiberfil.sys
[2009.07.14 01:51:43 | 000,073,728 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll
[2009.07.14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll
[2008.10.07 09:13:30 | 000,197,912 | ---- | C] () -- C:\Windows\System32\physxcudart_20.dll
[2008.10.07 09:13:22 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelTraditionalChinese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelSwedish.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelSpanish.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelSimplifiedChinese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelPortugese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelKorean.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelJapanese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelGerman.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelFrench.dll
[2004.08.13 09:56:20 | 000,005,810 | ---- | C] () -- C:\Windows\System32\drivers\ASACPI.sys

========== LOP Check ==========

[2010.04.25 19:55:57 | 000,000,000 | ---D | M] -- C:\Users\Renee\AppData\Roaming\AIMP
[2010.04.02 01:05:09 | 000,000,000 | ---D | M] -- C:\Users\Renee\AppData\Roaming\DAEMON Tools Lite
[2010.04.18 20:10:58 | 000,000,000 | ---D | M] -- C:\Users\Renee\AppData\Roaming\DMCache
[2010.04.15 21:38:12 | 000,000,000 | ---D | M] -- C:\Users\Renee\AppData\Roaming\gtk-2.0
[2010.04.18 20:08:43 | 000,000,000 | ---D | M] -- C:\Users\Renee\AppData\Roaming\IDM
[2010.04.02 18:01:47 | 000,000,000 | ---D | M] -- C:\Users\Renee\AppData\Roaming\OpenOffice.org
[2010.04.02 11:32:43 | 000,000,000 | ---D | M] -- C:\Users\Renee\AppData\Roaming\TuneUp Software
[2009.07.14 06:53:46 | 000,011,586 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

========== Purity Check ==========


< End of report >

Extras.txt:

OTL Extras logfile created on: 26.4.2010 23:28:19 - Run 1
OTL by OldTimer - Version 3.2.3.0 Folder = C:\Users\Renee\Desktop
Enterprise Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 66,00% Memory free
4,00 Gb Paging File | 3,00 Gb Available in Paging File | 81,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 111,69 Gb Total Space | 42,60 Gb Free Space | 38,14% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: RENEE-JE-ŠÉF
Current User Name: Renee
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- C:\Users\Renee\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- Reg Error: Key error.
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{01144BEA-886C-067C-5879-4773516F9A8F}" = Catalyst Control Center Graphics Previews Vista
"{032D20C4-51C3-4699-A234-353C1227A62A}" = ESET NOD32 Antivirus
"{0FC27548-D4DB-8039-456B-D9E743FEF86F}" = CCC Help English
"{1BA7B068-4719-42A3-B553-D4ED97434F92}" = ASUS Utilities
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F61E0B1-1AB8-F15E-07C4-46D100A1D3F7}" = Borderlands
"{28996689-E20A-E63B-2BDA-B662AB807C87}" = ATI Catalyst Install Manager
"{3E18D88A-5067-324B-382C-9166D4388ED0}" = ccc-core-static
"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
"{5B07D8FE-CC01-23CE-3961-751687074E54}" = Catalyst Control Center Graphics Previews Common
"{5DE71D48-01EB-4BF2-A643-50FE6C9B6AC9}" = OpenOffice.org 3.2
"{6F817DD0-D103-196F-5D63-365DC87B43EE}" = Catalyst Control Center HydraVision Full
"{87BB78C4-F36D-4D93-A7C7-F80F18219848}" = AMD DnD V1.0.20
"{8D7133DE-27D2-47E5-B248-4180278D32AA}" = Catalyst Control Center - Branding
"{8DC910CD-8EE3-4ffc-A4EB-9B02701059C4}" = Battlefield Heroes
"{9903001D-2728-9D9B-3D8B-F593A502A972}" = Catalyst Control Center InstallProxy
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{B535DA73-AAD1-51E8-9232-9358D2A20E9B}" = Catalyst Control Center Graphics Full Existing
"{C91BC5DF-C6BD-388B-FEB8-2721B9D5C97B}" = Catalyst Control Center Core Implementation
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{D56B0E27-4A3E-46C9-B5C1-D93D580C099C}" = NVIDIA PhysX v8.10.29
"{D575E1CA-56BB-2944-744E-E7CD1EDB9C82}" = Catalyst Control Center Graphics Full New
"{D6AAE701-6EA9-FAA1-AB38-227AA94531A1}" = Catalyst Control Center Graphics Light
"{D8508208-4591-2964-3DDB-16A4BE871230}" = ccc-utility
"{DF7B213D-2065-41ED-BB51-7A3EED31EA7B}" = Ultima Online: Mondain's Legacy
"{FB08F381-6533-4108-B7DD-039E11FBC27E}" = Realtek AC'97 Audio
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"AIMP2" = AIMP2
"CCleaner" = CCleaner
"Football Arena Viewer_is1" = Football Arena 1.00.0013 (BETA)
"GOM Player" = GOM Player
"Hamachi" = Hamachi 1.0.2.5
"HijackThis" = HijackThis 2.0.2
"Internet Download Manager" = Internet Download Manager
"Just Cause 2_is1" = Just Cause 2
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"PunkBusterSvc" = PunkBuster Services
"Sony Ericsson Themes Creator" = Sony Ericsson Themes Creator 4.12.2.4
"TmNationsForever_is1" = TmNationsForever Update 2010-03-15
"WinGimp-2.0_is1" = GIMP 2.6.7
"WinRAR archiver" = WinRAR
"xvid" = XviD MPEG-4 Video Codec

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Google Chrome" = Google Chrome
"QIP 2005" = QIP 2005 8095

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 22.4.2010 15:16:03 | Computer Name = Renee-je-šéf | Source = Application Error | ID = 1000
Description = Název chybující aplikace: uoml_setup.exe, verze: 11.0.0.28844, časové
razítko: 0x4250bcf6 Název chybujícího modulu: iuser.dll, verze: 11.0.0.28844, časové
razítko: 0x4250bbf2 Kód výjimky: 0xc0000005 Posun chyby: 0x0001225d ID chybujícího
procesu: 0xa34 Čas spuštění chybující aplikace: 0x01cae25037e07fd4 Cesta k chybující
aplikaci: C:\Users\Renee\hry\ultima\uoml_setup.exe Cesta k chybujícímu modulu: C:\Program
Files\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\iuser.dll ID
zprávy: 7d9a78e7-4e43-11df-8f40-001731138d36

Error - 22.4.2010 15:45:20 | Computer Name = Renee-je-šéf | Source = Application Error | ID = 1000
Description = Název chybující aplikace: uoml_setup.exe, verze: 11.0.0.28844, časové
razítko: 0x4250bcf6 Název chybujícího modulu: iuser.dll, verze: 11.0.0.28844, časové
razítko: 0x4250bbf2 Kód výjimky: 0xc0000005 Posun chyby: 0x0001225d ID chybujícího
procesu: 0x348 Čas spuštění chybující aplikace: 0x01cae2545146157c Cesta k chybující
aplikaci: C:\Users\Renee\hry\ultima\uoml_setup.exe Cesta k chybujícímu modulu: C:\Program
Files\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\iuser.dll ID
zprávy: 954ccb3f-4e47-11df-8f40-001731138d36

Error - 25.4.2010 8:09:53 | Computer Name = Renee-je-šéf | Source = VSS | ID = 8194
Description =

Error - 25.4.2010 8:12:14 | Computer Name = Renee-je-šéf | Source = Desktop Window Manager | ID = 9020
Description = Správce oken plochy zjistil závažnou chybu (0x88980406).

Error - 25.4.2010 8:15:33 | Computer Name = Renee-je-šéf | Source = Desktop Window Manager | ID = 9020
Description = Správce oken plochy zjistil závažnou chybu (0x88980406).

Error - 25.4.2010 8:19:13 | Computer Name = Renee-je-šéf | Source = Desktop Window Manager | ID = 9020
Description = Správce oken plochy zjistil závažnou chybu (0x88980406).

Error - 25.4.2010 8:21:52 | Computer Name = Renee-je-šéf | Source = VSS | ID = 8194
Description =

Error - 25.4.2010 8:27:26 | Computer Name = Renee-je-šéf | Source = VSS | ID = 8194
Description =

Error - 25.4.2010 8:31:59 | Computer Name = Renee-je-šéf | Source = VSS | ID = 8194
Description =

Error - 26.4.2010 14:19:41 | Computer Name = Renee-je-šéf | Source = Google Update | ID = 20
Description =

[ System Events ]
Error - 25.4.2010 8:28:48 | Computer Name = Renee-je-šéf | Source = Service Control Manager | ID = 7030
Description = Služba ATK Fast User Switch Service je označena jako interaktivní
služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby.
Tato služba nebude fungovat správně.

Error - 25.4.2010 8:32:44 | Computer Name = Renee-je-šéf | Source = Service Control Manager | ID = 7023
Description = Služba Windows Update byla ukončena s následující chybou: %%-2147467243

Error - 25.4.2010 13:41:26 | Computer Name = Renee-je-šéf | Source = Service Control Manager | ID = 7030
Description = Služba AODService je označena jako interaktivní služba. Avšak systém
je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude
fungovat správně.

Error - 25.4.2010 13:54:35 | Computer Name = Renee-je-šéf | Source = WMPNetworkSvc | ID = 866300
Description =

Error - 26.4.2010 8:47:07 | Computer Name = Renee-je-šéf | Source = WMPNetworkSvc | ID = 866300
Description =

Error - 26.4.2010 14:14:13 | Computer Name = Renee-je-šéf | Source = Service Control Manager | ID = 7030
Description = Služba PEVSystemStart je označena jako interaktivní služba. Avšak
systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba
nebude fungovat správně.

Error - 26.4.2010 14:16:46 | Computer Name = Renee-je-šéf | Source = Service Control Manager | ID = 7030
Description = Služba PEVSystemStart je označena jako interaktivní služba. Avšak
systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba
nebude fungovat správně.

Error - 26.4.2010 14:23:46 | Computer Name = Renee-je-šéf | Source = Service Control Manager | ID = 7030
Description = Služba PEVSystemStart je označena jako interaktivní služba. Avšak
systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba
nebude fungovat správně.

Error - 26.4.2010 15:57:33 | Computer Name = Renee-je-šéf | Source = Service Control Manager | ID = 7030
Description = Služba PEVSystemStart je označena jako interaktivní služba. Avšak
systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba
nebude fungovat správně.

Error - 26.4.2010 16:04:39 | Computer Name = Renee-je-šéf | Source = Service Control Manager | ID = 7030
Description = Služba PEVSystemStart je označena jako interaktivní služba. Avšak
systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba
nebude fungovat správně.


< End of report >

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43295
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: kontrola z důvodu jedné nefunkční internetové stránky

Příspěvekod jaro3 » 27 dub 2010 10:42

Hledáme nákazy a uvádíme PC do původního stavu..

Poklepej na ikonu OTL na ploše.Ujisti se , že máš všechny ostatní aplikace a prohlížeče zavřeny.
Pod Custom Scans/Fixes do okénka vlož následující text, zobrazený zeleně:

Kód: Vybrat vše

:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\System32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.cz/
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found

:Files
C:\Windows\System32\appmgmt
C:\Windows\tasks\SA.DAT

:Reg
:Commands
[resethosts]
[purity]
[emptytemp]
[start explorer]
[Reboot]


Poté klikni nahoře na Run Fix. Nech program nerušeně běžet, na konci se provede restart PC.
Po restartu se objeví log , prosím zkopíruj sem celý jeho obsah.

Napiš pak , jak je to s tou stránkou.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
Renee
Level 2
Level 2
Příspěvky: 211
Registrován: srpen 09
Pohlaví: Muž
Stav:
Offline

Re: kontrola z důvodu jedné nefunkční internetové stránky

Příspěvekod Renee » 27 dub 2010 16:08

All processes killed
========== OTL ==========
Process explorer.exe killed successfully!
No active process named firefox.exe was found!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Secondary_Page_URL| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Extensions Off Page| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Local Page| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Security Risk Page| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Search\\CustomizeSearch| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Search\\SearchAssistant| /E : value set successfully!
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Local Page| /E : value set successfully!
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Search Page| /E : value set successfully!
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page Redirect Cache| /E : value set successfully!
Registry key HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\Control Panel\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\VMApplet:/pagefile deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\\{AEB6717E-7E19-11d0-97EE-00C04FD91972} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AEB6717E-7E19-11d0-97EE-00C04FD91972}\ not found.
Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session manager\\BootExecute:autocheck autochk * deleted successfully.
========== FILES ==========
C:\Windows\System32\appmgmt\S-1-5-18 folder moved successfully.
C:\Windows\System32\appmgmt\MACHINE folder moved successfully.
C:\Windows\System32\appmgmt folder moved successfully.
C:\Windows\tasks\SA.DAT moved successfully.
========== REGISTRY ==========
========== COMMANDS ==========
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Public
->Temp folder emptied: 0 bytes

User: Renee
->Temp folder emptied: 4 bytes
->Temporary Internet Files folder emptied: 373351 bytes
->Google Chrome cache emptied: 253771264 bytes
->Flash cache emptied: 1961 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 242,00 mb


OTL by OldTimer - Version 3.2.3.0 log created on 04272010_160253

Files\Folders moved on Reboot...

Registry entries deleted on Reboot...



stránka před tímto fixem jela, teď zase nejede... v průběhu celého čištění občas jela a občas ne.
Edit - tak teď zase jede, ale hrozně pomalu. netuším, čím by to mohlo být, že tak často mění názor.

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43295
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: kontrola z důvodu jedné nefunkční internetové stránky

Příspěvekod jaro3 » 28 dub 2010 08:45

Poklepej znovu na ikonu OTL by OldTimer, pod Custom Scans/Fixes vlož následující text , zeleně zbarvený:

Kód: Vybrat vše

netsvcs
%SYSTEMDRIVE%\*.exe
/md5start
eventlog.dll
scecli.dll
netlogon.dll
cngaudit.dll
sceclt.dll
ntelogon.dll
logevent.dll
iaStor.sys
nvstor.sys
atapi.sys
IdeChnDr.sys
viasraid.sys
AGP440.sys
vaxscsi.sys
nvatabus.sys
viamraid.sys
nvata.sys
nvgts.sys
iastorv.sys
ViPrt.sys
eNetHook.dll
ahcix86.sys
KR10N.sys
nvstor32.sys
ahcix86s.sys
/md5stop
%systemroot%\*. /mp /s
CREATERESTOREPOINT


Neměň nastavení, jen klikni na Run Scan, nech sken dokončit. Až se se objeví textový soubor , tak sem vlož prosím jeho celý obsah.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
Renee
Level 2
Level 2
Příspěvky: 211
Registrován: srpen 09
Pohlaví: Muž
Stav:
Offline

Re: kontrola z důvodu jedné nefunkční internetové stránky

Příspěvekod Renee » 28 dub 2010 23:37

tady je ten log. web teď běží jako nikdy :)

OTL logfile created on: 28.4.2010 23:29:52 - Run 2
OTL by OldTimer - Version 3.2.3.0 Folder = C:\Users\Renee\Desktop
Enterprise Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 67,00% Memory free
4,00 Gb Paging File | 3,00 Gb Available in Paging File | 77,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 111,69 Gb Total Space | 45,85 Gb Free Space | 41,05% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: RENEE-JE-ŠÉF
Current User Name: Renee
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal

========== Processes (SafeList) ==========

PRC - C:\Users\Renee\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Users\Renee\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.)
PRC - C:\Windows\System32\atieclxx.exe (AMD)
PRC - C:\Windows\System32\atiesrxx.exe (AMD)
PRC - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe (ESET)
PRC - C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET)
PRC - C:\Windows\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\QIP\qip.exe (The Author of QIP)
PRC - C:\Windows\System32\taskhost.exe (Microsoft Corporation)


========== Modules (SafeList) ==========

MOD - C:\Users\Renee\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\Windows\System32\sspicli.dll (Microsoft Corporation)
MOD - C:\Windows\System32\sechost.dll (Microsoft Corporation)
MOD - C:\Windows\System32\samcli.dll (Microsoft Corporation)
MOD - C:\Windows\System32\profapi.dll (Microsoft Corporation)
MOD - C:\Windows\System32\netutils.dll (Microsoft Corporation)
MOD - C:\Windows\System32\KernelBase.dll (Microsoft Corporation)
MOD - C:\Windows\System32\dwmapi.dll (Microsoft Corporation)
MOD - C:\Windows\System32\devobj.dll (Microsoft Corporation)
MOD - C:\Windows\System32\cryptbase.dll (Microsoft Corporation)
MOD - C:\Windows\System32\cfgmgr32.dll (Microsoft Corporation)
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc\comctl32.dll (Microsoft Corporation)


========== Win32 Services (SafeList) ==========

SRV - (AMD External Events Utility) -- C:\Windows\System32\atiesrxx.exe (AMD)
SRV - (EhttpSrv) -- C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe (ESET)
SRV - (ekrn) -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe (ESET)
SRV - (WwanSvc) -- C:\Windows\System32\wwansvc.dll (Microsoft Corporation)
SRV - (WbioSrvc) -- C:\Windows\System32\wbiosrvc.dll (Microsoft Corporation)
SRV - (Power) -- C:\Windows\System32\umpo.dll (Microsoft Corporation)
SRV - (Themes) -- C:\Windows\System32\themeservice.dll (Microsoft Corporation)
SRV - (sppuinotify) -- C:\Windows\System32\sppuinotify.dll (Microsoft Corporation)
SRV - (StorSvc) -- C:\Windows\System32\StorSvc.dll (Microsoft Corporation)
SRV - (RpcEptMapper) -- C:\Windows\System32\RpcEpMap.dll (Microsoft Corporation)
SRV - (SensrSvc) -- C:\Windows\System32\sensrsvc.dll (Microsoft Corporation)
SRV - (PeerDistSvc) -- C:\Windows\System32\PeerDistSvc.dll (Microsoft Corporation)
SRV - (PNRPsvc) Protokol PNRP (Peer Name Resolution Protocol) -- C:\Windows\System32\pnrpsvc.dll (Microsoft Corporation)
SRV - (p2pimsvc) -- C:\Windows\System32\pnrpsvc.dll (Microsoft Corporation)
SRV - (HomeGroupProvider) -- C:\Windows\System32\provsvc.dll (Microsoft Corporation)
SRV - (PNRPAutoReg) -- C:\Windows\System32\pnrpauto.dll (Microsoft Corporation)
SRV - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV - (HomeGroupListener) -- C:\Windows\System32\ListSvc.dll (Microsoft Corporation)
SRV - (FontCache) -- C:\Windows\System32\FntCache.dll (Microsoft Corporation)
SRV - (Dhcp) -- C:\Windows\System32\dhcpcore.dll (Microsoft Corporation)
SRV - (defragsvc) -- C:\Windows\System32\defragsvc.dll (Microsoft Corporation)
SRV - (BDESVC) -- C:\Windows\System32\bdesvc.dll (Microsoft Corporation)
SRV - (AxInstSV) Instalační program ovládacích prvků ActiveX (AxInstSV) -- C:\Windows\System32\AxInstSv.dll (Microsoft Corporation)
SRV - (AppIDSvc) -- C:\Windows\System32\appidsvc.dll (Microsoft Corporation)
SRV - (sppsvc) -- C:\Windows\System32\sppsvc.exe (Microsoft Corporation)
SRV - (NetTcpPortSharing) -- C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe (Microsoft Corporation)


========== Driver Services (SafeList) ==========

DRV - (hamachi) -- C:\Windows\System32\drivers\hamachi.sys (LogMeIn, Inc.)
DRV - (sptd) -- C:\Windows\System32\Drivers\sptd.sys ()
DRV - (atikmdag) -- C:\Windows\System32\drivers\atikmdag.sys (ATI Technologies Inc.)
DRV - (amdkmdag) -- C:\Windows\System32\drivers\atipmdag.sys (ATI Technologies Inc.)
DRV - (amdkmdap) -- C:\Windows\System32\drivers\atikmpag.sys (Advanced Micro Devices, Inc.)
DRV - (epfwwfpr) -- C:\Windows\System32\drivers\epfwwfpr.sys (ESET)
DRV - (ehdrv) -- C:\Windows\System32\drivers\ehdrv.sys (ESET)
DRV - (eamonm) -- C:\Windows\System32\drivers\eamonm.sys (ESET)
DRV - (AtiHdmiService) -- C:\Windows\System32\drivers\AtiHdmi.sys (ATI Technologies, Inc.)
DRV - (KSecPkg) -- C:\Windows\System32\Drivers\ksecpkg.sys (Microsoft Corporation)
DRV - (cmdide) -- C:\Windows\system32\DRIVERS\cmdide.sys (CMD Technology, Inc.)
DRV - (adpahci) -- C:\Windows\system32\DRIVERS\adpahci.sys (Adaptec, Inc.)
DRV - (adp94xx) -- C:\Windows\system32\DRIVERS\adp94xx.sys (Adaptec, Inc.)
DRV - (amdsbs) -- C:\Windows\system32\DRIVERS\amdsbs.sys (AMD Technologies Inc.)
DRV - (adpu320) -- C:\Windows\system32\DRIVERS\adpu320.sys (Adaptec, Inc.)
DRV - (arcsas) -- C:\Windows\system32\DRIVERS\arcsas.sys (Adaptec, Inc.)
DRV - (amdsata) -- C:\Windows\system32\DRIVERS\amdsata.sys (Advanced Micro Devices)
DRV - (arc) -- C:\Windows\system32\DRIVERS\arc.sys (Adaptec, Inc.)
DRV - (amdxata) -- C:\Windows\system32\DRIVERS\amdxata.sys (Advanced Micro Devices)
DRV - (aliide) -- C:\Windows\system32\DRIVERS\aliide.sys (Acer Laboratories Inc.)
DRV - (nvstor) -- C:\Windows\system32\DRIVERS\nvstor.sys (NVIDIA Corporation)
DRV - (nvraid) -- C:\Windows\system32\DRIVERS\nvraid.sys (NVIDIA Corporation)
DRV - (nfrd960) -- C:\Windows\system32\DRIVERS\nfrd960.sys (IBM Corporation)
DRV - (LSI_SAS) -- C:\Windows\system32\DRIVERS\lsi_sas.sys (LSI Corporation)
DRV - (iaStorV) -- C:\Windows\system32\DRIVERS\iaStorV.sys (Intel Corporation)
DRV - (MegaSR) -- C:\Windows\system32\DRIVERS\MegaSR.sys (LSI Corporation, Inc.)
DRV - (LSI_SCSI) -- C:\Windows\system32\DRIVERS\lsi_scsi.sys (LSI Corporation)
DRV - (LSI_FC) -- C:\Windows\system32\DRIVERS\lsi_fc.sys (LSI Corporation)
DRV - (LSI_SAS2) -- C:\Windows\system32\DRIVERS\lsi_sas2.sys (LSI Corporation)
DRV - (iirsp) -- C:\Windows\system32\DRIVERS\iirsp.sys (Intel Corp./ICP vortex GmbH)
DRV - (megasas) -- C:\Windows\system32\DRIVERS\megasas.sys (LSI Corporation)
DRV - (hwpolicy) -- C:\Windows\System32\drivers\hwpolicy.sys (Microsoft Corporation)
DRV - (elxstor) -- C:\Windows\system32\DRIVERS\elxstor.sys (Emulex)
DRV - (aic78xx) -- C:\Windows\system32\DRIVERS\djsvs.sys (Adaptec, Inc.)
DRV - (HpSAMD) -- C:\Windows\system32\DRIVERS\HpSAMD.sys (Hewlett-Packard Company)
DRV - (FsDepends) -- C:\Windows\System32\drivers\fsdepends.sys (Microsoft Corporation)
DRV - (vsmraid) -- C:\Windows\system32\DRIVERS\vsmraid.sys (VIA Technologies Inc.,Ltd)
DRV - (vmbus) -- C:\Windows\system32\DRIVERS\vmbus.sys (Microsoft Corporation)
DRV - (vhdmp) -- C:\Windows\system32\DRIVERS\vhdmp.sys (Microsoft Corporation)
DRV - (storflt) -- C:\Windows\system32\DRIVERS\vmstorfl.sys (Microsoft Corporation)
DRV - (vdrvroot) -- C:\Windows\system32\DRIVERS\vdrvroot.sys (Microsoft Corporation)
DRV - (storvsc) -- C:\Windows\system32\DRIVERS\storvsc.sys (Microsoft Corporation)
DRV - (WIMMount) -- C:\Windows\System32\drivers\wimmount.sys (Microsoft Corporation)
DRV - (viaide) -- C:\Windows\system32\DRIVERS\viaide.sys (VIA Technologies, Inc.)
DRV - (ql2300) -- C:\Windows\system32\DRIVERS\ql2300.sys (QLogic Corporation)
DRV - (rdyboost) -- C:\Windows\System32\drivers\rdyboost.sys (Microsoft Corporation)
DRV - (ql40xx) -- C:\Windows\system32\DRIVERS\ql40xx.sys (QLogic Corporation)
DRV - (SiSRaid4) -- C:\Windows\system32\DRIVERS\sisraid4.sys (Silicon Integrated Systems)
DRV - (pcw) -- C:\Windows\System32\drivers\pcw.sys (Microsoft Corporation)
DRV - (SiSRaid2) -- C:\Windows\system32\DRIVERS\SiSRaid2.sys (Silicon Integrated Systems Corp.)
DRV - (stexstor) -- C:\Windows\system32\DRIVERS\stexstor.sys (Promise Technology)
DRV - (CNG) -- C:\Windows\System32\Drivers\cng.sys (Microsoft Corporation)
DRV - (Brserid) Brother MFC Serial Port Interface Driver (WDM) -- C:\Windows\System32\Drivers\Brserid.sys (Brother Industries Ltd.)
DRV - (rdpbus) -- C:\Windows\System32\drivers\rdpbus.sys (Microsoft Corporation)
DRV - (RDPREFMP) -- C:\Windows\System32\drivers\RDPREFMP.sys (Microsoft Corporation)
DRV - (RasAgileVpn) WAN Miniport (IKEv2) -- C:\Windows\System32\drivers\agilevpn.sys (Microsoft Corporation)
DRV - (WfpLwf) -- C:\Windows\System32\drivers\wfplwf.sys (Microsoft Corporation)
DRV - (NdisCap) -- C:\Windows\System32\drivers\ndiscap.sys (Microsoft Corporation)
DRV - (vwifibus) -- C:\Windows\System32\drivers\vwifibus.sys (Microsoft Corporation)
DRV - (1394ohci) -- C:\Windows\System32\drivers\1394ohci.sys (Microsoft Corporation)
DRV - (UmPass) -- C:\Windows\system32\DRIVERS\umpass.sys (Microsoft Corporation)
DRV - (mshidkmdf) -- C:\Windows\System32\drivers\mshidkmdf.sys (Microsoft Corporation)
DRV - (MTConfig) -- C:\Windows\system32\DRIVERS\MTConfig.sys (Microsoft Corporation)
DRV - (CompositeBus) -- C:\Windows\System32\drivers\CompositeBus.sys (Microsoft Corporation)
DRV - (AppID) -- C:\Windows\system32\drivers\appid.sys (Microsoft Corporation)
DRV - (scfilter) -- C:\Windows\System32\drivers\scfilter.sys (Microsoft Corporation)
DRV - (s3cap) -- C:\Windows\system32\DRIVERS\vms3cap.sys (Microsoft Corporation)
DRV - (VMBusHID) -- C:\Windows\system32\DRIVERS\VMBusHID.sys (Microsoft Corporation)
DRV - (discache) -- C:\Windows\System32\drivers\discache.sys (Microsoft Corporation)
DRV - (HidBatt) -- C:\Windows\system32\DRIVERS\HidBatt.sys (Microsoft Corporation)
DRV - (AcpiPmi) -- C:\Windows\system32\DRIVERS\acpipmi.sys (Microsoft Corporation)
DRV - (AmdPPM) -- C:\Windows\system32\DRIVERS\amdppm.sys (Microsoft Corporation)
DRV - (hcw85cir) -- C:\Windows\system32\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV - (BrUsbMdm) -- C:\Windows\System32\Drivers\BrUsbMdm.sys (Brother Industries Ltd.)
DRV - (BrUsbSer) -- C:\Windows\System32\Drivers\BrUsbSer.sys (Brother Industries Ltd.)
DRV - (BrSerWdm) -- C:\Windows\System32\Drivers\BrSerWdm.sys (Brother Industries Ltd.)
DRV - (BrFiltLo) -- C:\Windows\system32\DRIVERS\BrFiltLo.sys (Brother Industries, Ltd.)
DRV - (BrFiltUp) -- C:\Windows\system32\DRIVERS\BrFiltUp.sys (Brother Industries, Ltd.)
DRV - (NVENETFD) -- C:\Windows\System32\drivers\nvm62x32.sys (NVIDIA Corporation)
DRV - (b57nd60x) -- C:\Windows\System32\drivers\b57nd60x.sys (Broadcom Corporation)
DRV - (ebdrv) -- C:\Windows\system32\DRIVERS\evbdx.sys (Broadcom Corporation)
DRV - (b06bdrv) -- C:\Windows\system32\DRIVERS\bxvbdx.sys (Broadcom Corporation)
DRV - (atkdisplf) -- C:\Windows\System32\drivers\ATKDispLowFilter.sys (ASUSTeK Computer Inc.)
DRV - (asusgsb) -- C:\Windows\System32\drivers\asusgsb.sys (ASUSTeK Computer Inc.)
DRV - (ALCXWDM) Service for Realtek AC97 Audio (WDM) -- C:\Windows\System32\drivers\alcxwdm.sys (Realtek Semiconductor Corp.)
DRV - (MTsensor) -- C:\Windows\System32\drivers\ASACPI.sys ()


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = cs
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = A2 6C 10 5C BD E4 CA 01 [binary data]
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

FF - HKLM\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2010.04.01 21:29:48 | 000,000,000 | ---D | M]


O1 HOSTS File: ([2010.04.27 16:02:53 | 000,000,098 | ---- | M]) - C:\Windows\System32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (IDMIEHlprObj Class) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll (Tonec Inc.)
O4 - HKLM..\Run: [egui] C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET)
O4 - HKCU..\Run: [QIP2005] C:\Program Files\QIP\qip.exe (The Author of QIP)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Download all links with IDM - C:\Program Files\Internet Download Manager\IEGetAll.htm ()
O8 - Extra context menu item: Download FLV video content with IDM - C:\Program Files\Internet Download Manager\IEGetVL.htm ()
O8 - Extra context menu item: Download with IDM - C:\Program Files\Internet Download Manager\IEExt.htm ()
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000037 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (systempropertiesperformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O30 - LSA: Security Packages - (pku2u) - C:\Windows\System32\pku2u.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - C:\Windows\System32\ias [2009.07.14 04:37:08 | 000,000,000 | ---D | M]
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: SRService - File not found
NetSvcs: Wmi - C:\Windows\System32\wmi.dll (Microsoft Corporation)
NetSvcs: WmdmPmSp - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found
NetSvcs: Themes - C:\Windows\System32\themeservice.dll (Microsoft Corporation)
NetSvcs: BDESVC - C:\Windows\System32\bdesvc.dll (Microsoft Corporation)

========== Files/Folders - Created Within 30 Days ==========

[2010.04.28 23:29:00 | 000,563,712 | ---- | C] (OldTimer Tools) -- C:\Users\Renee\Desktop\OTL.exe
[2010.04.28 23:00:24 | 000,000,000 | ---D | C] -- C:\Users\Renee\Desktop\Documents\Downloads
[2010.04.28 22:26:57 | 000,000,000 | R--D | C] -- C:\Users\Renee\Favorites
[2010.04.28 22:23:50 | 000,000,000 | ---D | C] -- C:\Users\Renee\Desktop\Documents\Dokumenty
[2010.04.28 22:16:12 | 000,000,000 | R--D | C] -- C:\Users\Renee\Desktop\Documents
[2010.04.28 22:10:34 | 000,000,000 | R--D | C] -- C:\Users\Renee\Desktop
[2010.04.28 16:21:41 | 001,037,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\lsasrv.dll
[2010.04.28 16:21:40 | 000,133,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\ksecpkg.sys
[2010.04.27 16:02:53 | 000,000,000 | ---D | C] -- C:\_OTL
[2010.04.26 23:26:05 | 000,000,000 | ---D | C] -- C:\ComboFix
[2010.04.26 22:06:38 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2010.04.26 22:06:36 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Local\temp
[2010.04.26 21:57:54 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Local\ESET
[2010.04.26 16:03:40 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\Malwarebytes
[2010.04.26 16:03:34 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2010.04.26 16:03:31 | 000,020,824 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2010.04.26 16:03:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2010.04.26 16:03:30 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010.04.25 19:41:09 | 000,000,000 | ---D | C] -- C:\Program Files\AMD
[2010.04.25 19:40:36 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Local\Downloaded Installations
[2010.04.25 18:38:22 | 000,000,000 | ---D | C] -- C:\Program Files\Trend Micro
[2010.04.25 18:20:34 | 000,000,000 | ---D | C] -- C:\Program Files\RegCleaner
[2010.04.25 18:09:51 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2010.04.25 14:10:13 | 000,348,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msvcr71.dll
[2010.04.25 14:10:10 | 000,030,976 | ---- | C] (ASUSTeK Computer Inc.) -- C:\Windows\System32\drivers\ATKDispLowFilter.sys
[2010.04.25 14:10:10 | 000,015,232 | ---- | C] (ASUSTeK Computer Inc.) -- C:\Windows\System32\drivers\asusgsb.sys
[2010.04.22 21:05:17 | 000,000,000 | ---D | C] -- C:\Windows\System32\URTTEMP
[2010.04.22 20:33:03 | 000,000,000 | ---D | C] -- C:\Program Files\Razor
[2010.04.18 20:00:38 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\IDM
[2010.04.18 20:00:38 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\DMCache
[2010.04.18 20:00:33 | 000,000,000 | ---D | C] -- C:\Program Files\Internet Download Manager
[2010.04.15 17:55:52 | 000,000,000 | ---D | C] -- C:\Program Files\Sony Ericsson
[2010.04.14 15:39:33 | 000,427,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\vbscript.dll
[2010.04.14 15:39:26 | 003,899,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntoskrnl.exe
[2010.04.14 15:39:24 | 003,954,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntkrnlpa.exe
[2010.04.08 20:13:57 | 000,000,000 | ---D | C] -- C:\ProgramData\TrackMania
[2010.04.03 14:05:48 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\GRETECH
[2010.04.03 14:05:09 | 000,000,000 | ---D | C] -- C:\Program Files\GRETECH
[2010.04.02 23:30:56 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Local\PunkBuster
[2010.04.02 23:05:38 | 000,000,000 | ---D | C] -- C:\Program Files\EA Games
[2010.04.02 22:35:57 | 000,000,000 | ---D | C] -- C:\Users\Renee\.thumbnails
[2010.04.02 22:35:47 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\gtk-2.0
[2010.04.02 22:33:15 | 000,000,000 | ---D | C] -- C:\Users\Renee\.gimp-2.6
[2010.04.02 22:31:11 | 000,000,000 | ---D | C] -- C:\Program Files\GIMP-2.0
[2010.04.02 21:35:25 | 000,000,000 | ---D | C] -- C:\Windows\pss
[2010.04.02 20:06:39 | 000,000,000 | ---D | C] -- C:\Program Files\SQUARE ENIX - Eidos Interactive
[2010.04.02 18:22:52 | 000,609,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\comctl32.ocx
[2010.04.02 18:22:52 | 000,132,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MSINET.OCX
[2010.04.02 18:22:51 | 001,081,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mscomctl.ocx
[2010.04.02 18:22:49 | 000,101,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\VB6STKIT.DLL
[2010.04.02 18:22:44 | 000,000,000 | ---D | C] -- C:\Program Files\FootballArena
[2010.04.02 18:01:47 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\OpenOffice.org
[2010.04.02 12:43:46 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\Hamachi
[2010.04.02 12:43:31 | 000,025,280 | ---- | C] (LogMeIn, Inc.) -- C:\Windows\System32\drivers\hamachi.sys
[2010.04.02 12:43:28 | 000,000,000 | ---D | C] -- C:\Program Files\Hamachi
[2010.04.02 11:32:43 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\TuneUp Software
[2010.04.02 11:32:04 | 000,000,000 | ---D | C] -- C:\ProgramData\TuneUp Software
[2010.04.02 11:32:00 | 000,000,000 | -HSD | C] -- C:\ProgramData\{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}
[2010.04.02 11:27:29 | 000,000,000 | ---D | C] -- C:\Program Files\TmNationsForever
[2010.04.02 11:14:26 | 000,000,000 | ---D | C] -- C:\Program Files\OpenOffice.org 3
[2010.04.02 09:47:15 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\browserchoice.exe
[2010.04.02 09:45:51 | 000,606,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mstime.dll
[2010.04.02 09:45:49 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll
[2010.04.02 09:45:48 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedsbs.dll
[2010.04.02 09:45:43 | 002,614,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe
[2010.04.02 09:45:19 | 001,320,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\CertEnroll.dll
[2010.04.02 09:45:18 | 000,507,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winload.exe
[2010.04.02 09:45:17 | 000,442,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winresume.exe
[2010.04.02 09:45:15 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmploc.DLL
[2010.04.02 09:45:04 | 000,716,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript.dll
[2010.04.02 09:45:00 | 000,108,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\t2embed.dll
[2010.04.02 09:44:59 | 000,293,888 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\atmfd.dll
[2010.04.02 09:44:59 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fontsub.dll
[2010.04.02 09:44:48 | 001,328,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\quartz.dll
[2010.04.02 09:44:48 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mciavi32.dll
[2010.04.02 09:44:47 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\avifil32.dll
[2010.04.02 09:44:27 | 000,641,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\CPFilters.dll
[2010.04.02 09:44:25 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msdri.dll
[2010.04.02 09:44:25 | 000,204,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MSNP.ax
[2010.04.02 09:44:22 | 000,465,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\psisdecd.dll
[2010.04.02 09:44:14 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tzres.dll
[2010.04.02 09:44:09 | 000,365,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_isv.dll
[2010.04.02 09:44:08 | 000,369,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc.dll
[2010.04.02 09:44:08 | 000,324,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_isv.exe
[2010.04.02 09:44:08 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate.exe
[2010.04.02 09:44:08 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_ssp_isv.dll
[2010.04.02 09:44:07 | 000,280,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_ssp.exe
[2010.04.02 09:44:07 | 000,277,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_ssp_isv.exe
[2010.04.02 09:44:07 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_ssp.dll
[2010.04.02 01:20:36 | 004,178,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_41.dll
[2010.04.02 01:20:36 | 001,846,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_41.dll
[2010.04.02 01:20:36 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_41.dll
[2010.04.02 01:20:35 | 004,379,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_40.dll
[2010.04.02 01:20:35 | 002,036,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_40.dll
[2010.04.02 01:20:35 | 000,517,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_4.dll
[2010.04.02 01:20:35 | 000,452,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_40.dll
[2010.04.02 01:20:35 | 000,235,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_4.dll
[2010.04.02 01:20:35 | 000,069,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_3.dll
[2010.04.02 01:20:35 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_6.dll
[2010.04.02 01:20:34 | 000,514,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_3.dll
[2010.04.02 01:20:34 | 000,235,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_3.dll
[2010.04.02 01:20:34 | 000,070,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_2.dll
[2010.04.02 01:20:33 | 003,851,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_39.dll
[2010.04.02 01:20:33 | 001,493,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_39.dll
[2010.04.02 01:20:33 | 000,509,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_2.dll
[2010.04.02 01:20:33 | 000,507,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_1.dll
[2010.04.02 01:20:33 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_39.dll
[2010.04.02 01:20:33 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_2.dll
[2010.04.02 01:20:33 | 000,068,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_1.dll
[2010.04.02 01:20:33 | 000,065,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_0.dll
[2010.04.02 01:20:33 | 000,023,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_5.dll
[2010.04.02 01:20:32 | 003,850,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_38.dll
[2010.04.02 01:20:32 | 001,491,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_38.dll
[2010.04.02 01:20:32 | 000,479,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_0.dll
[2010.04.02 01:20:32 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_38.dll
[2010.04.02 01:20:32 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_1.dll
[2010.04.02 01:20:32 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_4.dll
[2010.04.02 01:20:31 | 003,786,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_37.dll
[2010.04.02 01:20:31 | 003,734,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_36.dll
[2010.04.02 01:20:31 | 001,420,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_37.dll
[2010.04.02 01:20:31 | 001,374,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_36.dll
[2010.04.02 01:20:31 | 000,462,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_37.dll
[2010.04.02 01:20:31 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_36.dll
[2010.04.02 01:20:31 | 000,267,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_10.dll
[2010.04.02 01:20:31 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_0.dll
[2010.04.02 01:20:31 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_3.dll
[2010.04.02 01:20:30 | 003,727,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_35.dll
[2010.04.02 01:20:30 | 001,358,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_35.dll
[2010.04.02 01:20:30 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_35.dll
[2010.04.02 01:20:30 | 000,267,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_9.dll
[2010.04.02 01:20:30 | 000,266,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_8.dll
[2010.04.02 01:20:30 | 000,017,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_2.dll
[2010.04.02 01:20:29 | 003,497,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_34.dll
[2010.04.02 01:20:29 | 001,124,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_34.dll
[2010.04.02 01:20:29 | 001,123,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_33.dll
[2010.04.02 01:20:29 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_34.dll
[2010.04.02 01:20:29 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_33.dll
[2010.04.02 01:20:29 | 000,261,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_7.dll
[2010.04.02 01:20:29 | 000,081,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xinput1_3.dll
[2010.04.02 01:20:28 | 003,495,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_33.dll
[2010.04.02 01:20:28 | 000,440,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10.dll
[2010.04.02 01:20:28 | 000,255,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_6.dll
[2010.04.02 01:20:28 | 000,251,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_5.dll
[2010.04.02 01:20:27 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_32.dll
[2010.04.02 01:20:27 | 002,414,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_31.dll
[2010.04.02 01:20:27 | 000,237,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_4.dll
[2010.04.02 01:20:27 | 000,236,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_3.dll
[2010.04.02 01:20:27 | 000,230,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_2.dll
[2010.04.02 01:20:27 | 000,062,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xinput1_2.dll
[2010.04.02 01:20:27 | 000,062,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xinput1_1.dll
[2010.04.02 01:20:27 | 000,015,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\x3daudio1_1.dll
[2010.04.02 01:20:26 | 000,229,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_1.dll
[2010.04.02 01:20:21 | 002,388,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_30.dll
[2010.04.02 01:20:21 | 000,230,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_0.dll
[2010.04.02 01:20:21 | 000,014,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\x3daudio1_0.dll
[2010.04.02 01:20:20 | 002,332,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_29.dll
[2010.04.02 01:20:20 | 002,323,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_28.dll
[2010.04.02 01:20:20 | 002,319,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_27.dll
[2010.04.02 01:20:19 | 002,337,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_25.dll
[2010.04.02 01:20:19 | 002,297,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_26.dll
[2010.04.02 01:20:18 | 002,222,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_24.dll
[2010.04.02 01:19:27 | 000,000,000 | ---D | C] -- C:\Windows\System32\AGEIA
[2010.04.02 01:19:25 | 000,000,000 | ---D | C] -- C:\Program Files\AGEIA Technologies
[2010.04.02 01:19:11 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Wise Installation Wizard
[2010.04.02 01:18:19 | 000,000,000 | ---D | C] -- C:\Renee
[2010.04.02 01:06:13 | 000,000,000 | ---D | C] -- C:\Program Files\2K Games
[2010.04.02 01:05:51 | 000,000,000 | ---D | C] -- C:\BDS
[2010.04.02 01:04:45 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Local\Diagnostics
[2010.04.02 00:48:26 | 000,060,416 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\ALCFDRTM.VER
[2010.04.02 00:48:26 | 000,060,416 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\ALCFDRTM.EXE
[2010.04.02 00:39:20 | 000,000,000 | ---D | C] -- C:\Program Files\DAEMON Tools Lite
[2010.04.02 00:38:39 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\DAEMON Tools Lite
[2010.04.02 00:38:36 | 000,000,000 | ---D | C] -- C:\ProgramData\DAEMON Tools Lite
[2010.04.01 23:43:55 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\AIMP
[2010.04.01 23:42:27 | 000,000,000 | ---D | C] -- C:\Users\Renee\HUDBA
[2010.04.01 23:14:00 | 004,026,112 | R--- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\drivers\alcxwdm.sys
[2010.04.01 23:13:59 | 000,577,536 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\soundman.exe
[2010.04.01 23:13:57 | 010,528,768 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RTLCPL.exe
[2010.04.01 23:13:55 | 018,804,736 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\alsndmgr.cpl
[2010.04.01 23:03:55 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek AC97
[2010.04.01 23:03:40 | 000,315,392 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\alcupd.exe
[2010.04.01 23:03:39 | 000,217,088 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\alcrmv.exe
[2010.04.01 23:03:09 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield
[2010.04.01 23:02:24 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\WinRAR
[2010.04.01 22:56:19 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2010.04.01 22:51:09 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\Macromedia
[2010.04.01 22:51:09 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\Adobe
[2010.04.01 22:49:52 | 000,000,000 | ---D | C] -- C:\Windows\System32\Macromed
[2010.04.01 22:41:25 | 000,000,000 | ---D | C] -- C:\Program Files\AIMP2
[2010.04.01 22:37:19 | 000,000,000 | ---D | C] -- C:\Program Files\QIP
[2010.04.01 21:49:48 | 000,000,000 | ---D | C] -- C:\Windows\Panther
[2010.04.01 21:30:33 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Local\ElevatedDiagnostics
[2010.04.01 21:29:48 | 000,000,000 | ---D | C] -- C:\ProgramData\ESET
[2010.04.01 21:29:48 | 000,000,000 | ---D | C] -- C:\Program Files\ESET
[2010.04.01 21:15:04 | 000,181,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MpSigStub.exe
[2010.04.01 21:14:50 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Local\Google
[2010.04.01 21:14:44 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Local\Deployment
[2010.04.01 21:10:56 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\ATI
[2010.04.01 21:10:56 | 000,000,000 | ---D | C] -- C:\ProgramData\ATI
[2010.04.01 21:10:55 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ATI Technologies
[2010.04.01 21:09:39 | 000,000,000 | -HSD | C] -- C:\Windows\Installer
[2010.04.01 21:09:38 | 000,000,000 | ---D | C] -- C:\Program Files\ATI
[2010.04.01 21:08:46 | 000,000,000 | ---D | C] -- C:\Program Files\ATI Technologies
[2010.04.01 21:08:06 | 000,000,000 | ---D | C] -- C:\ATI
[2010.04.01 21:07:33 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information
[2010.04.01 20:59:46 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\Identities
[2010.04.01 20:59:34 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Local\VirtualStore
[2010.04.01 20:59:32 | 000,000,000 | --SD | C] -- C:\Users\Renee\AppData\Roaming\Microsoft
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\AppData\Local\Temporary Internet Files
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\Šablony
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\Soubory cookie
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\SendTo
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\Poslední
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\Okolní tiskárny
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\Okolní síť
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\Nabídka Start
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\Local Settings
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\AppData\Local\History
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\Dokumenty
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\Data aplikací
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\AppData\Local\Data aplikací
[2010.04.01 20:59:32 | 000,000,000 | -H-D | C] -- C:\Users\Renee\AppData
[2010.04.01 20:59:32 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Local\Microsoft
[2010.04.01 20:59:32 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\Media Center Programs
[2010.04.01 20:59:15 | 000,000,000 | -HSD | C] -- C:\ProgramData\Šablony
[2010.04.01 20:59:15 | 000,000,000 | -HSD | C] -- C:\ProgramData\Plocha
[2010.04.01 20:59:15 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Obrázky
[2010.04.01 20:59:15 | 000,000,000 | -HSD | C] -- C:\ProgramData\Oblíbené položky
[2010.04.01 20:59:15 | 000,000,000 | -HSD | C] -- C:\ProgramData\Nabídka Start
[2010.04.01 20:59:15 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Hudba
[2010.04.01 20:59:15 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Filmy
[2010.04.01 20:59:15 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumenty
[2010.04.01 20:59:15 | 000,000,000 | -HSD | C] -- C:\ProgramData\Data aplikací
[2010.04.01 20:59:15 | 000,000,000 | ---D | C] -- C:\Recovery
[2010.04.01 20:53:53 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2010.04.01 20:50:50 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch
[2010.04.01 20:50:41 | 000,000,000 | -HSD | C] -- C:\System Volume Information

========== Files - Modified Within 30 Days ==========

[2010.04.28 23:31:47 | 001,310,720 | -HS- | M] () -- C:\Users\Renee\NTUSER.DAT
[2010.04.28 23:29:17 | 000,563,712 | ---- | M] (OldTimer Tools) -- C:\Users\Renee\Desktop\OTL.exe
[2010.04.28 23:19:01 | 000,000,962 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3066638169-474057053-1295839724-1001UA.job
[2010.04.28 22:29:04 | 000,014,944 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2010.04.28 22:29:04 | 000,014,944 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2010.04.28 22:24:34 | 000,001,518 | ---- | M] () -- C:\Users\Renee\Desktop\Renee.lnk
[2010.04.28 22:21:10 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2010.04.28 22:21:07 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010.04.28 22:21:02 | 1610,260,480 | -HS- | M] () -- C:\hiberfil.sys
[2010.04.28 22:20:21 | 001,777,204 | -H-- | M] () -- C:\Users\Renee\AppData\Local\IconCache.db
[2010.04.28 22:14:33 | 000,002,009 | ---- | M] () -- C:\Users\Renee\Desktop\Borderlands.lnk
[2010.04.27 21:29:00 | 000,000,910 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3066638169-474057053-1295839724-1001Core.job
[2010.04.27 16:02:53 | 000,000,098 | ---- | M] () -- C:\Windows\System32\drivers\etc\Hosts
[2010.04.27 15:58:11 | 000,000,000 | ---- | M] () -- C:\Windows\ativpsrm.bin
[2010.04.26 22:04:43 | 000,000,215 | ---- | M] () -- C:\Windows\system.ini
[2010.04.23 17:01:27 | 001,473,146 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI
[2010.04.23 17:01:27 | 000,631,116 | ---- | M] () -- C:\Windows\System32\perfh005.dat
[2010.04.23 17:01:27 | 000,615,760 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2010.04.23 17:01:27 | 000,123,556 | ---- | M] () -- C:\Windows\System32\perfc005.dat
[2010.04.23 17:01:27 | 000,107,396 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2010.04.23 14:48:12 | 000,138,184 | ---- | M] () -- C:\Windows\System32\drivers\PnkBstrK.sys
[2010.04.23 14:47:52 | 000,215,016 | ---- | M] () -- C:\Windows\System32\PnkBstrB.xtr
[2010.04.19 14:49:03 | 000,138,056 | ---- | M] () -- C:\Users\Renee\AppData\Roaming\PnkBstrK.sys
[2010.04.19 14:48:37 | 002,427,248 | ---- | M] () -- C:\Windows\System32\pbsvc_heroes.exe
[2010.04.18 20:11:25 | 000,009,728 | ---- | M] () -- C:\Windows\System32\BASSMOD.dll
[2010.04.02 22:33:04 | 000,001,061 | ---- | M] () -- C:\Users\Public\Desktop\GIMP 2.lnk
[2010.04.02 20:16:59 | 000,001,295 | ---- | M] () -- C:\Users\Public\Desktop\Just Cause 2.lnk
[2010.04.02 12:43:31 | 000,025,280 | ---- | M] (LogMeIn, Inc.) -- C:\Windows\System32\drivers\hamachi.sys
[2010.04.02 11:38:33 | 000,289,992 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2010.04.02 11:29:52 | 000,001,066 | ---- | M] () -- C:\Users\Public\Desktop\TmNationsForever.lnk
[2010.04.02 11:23:13 | 000,062,952 | ---- | M] () -- C:\Users\Renee\AppData\Local\GDIPFONTCACHEV1.DAT
[2010.04.02 11:13:07 | 000,000,017 | ---- | M] () -- C:\Users\Renee\AppData\Local\resmon.resmoncfg
[2010.04.02 00:49:16 | 000,060,416 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\ALCFDRTM.VER
[2010.04.02 00:48:26 | 000,060,416 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\ALCFDRTM.EXE
[2010.04.02 00:41:02 | 000,691,696 | ---- | M] () -- C:\Windows\System32\drivers\sptd.sys
[2010.04.01 23:38:50 | 000,524,288 | -HS- | M] () -- C:\Users\Renee\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000002.regtrans-ms
[2010.04.01 23:38:50 | 000,524,288 | -HS- | M] () -- C:\Users\Renee\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000001.regtrans-ms
[2010.04.01 23:38:50 | 000,065,536 | -HS- | M] () -- C:\Users\Renee\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TM.blf
[2010.04.01 21:06:18 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2010.04.01 20:59:32 | 000,000,020 | -HS- | M] () -- C:\Users\Renee\ntuser.ini
[2010.04.01 20:55:02 | 000,000,797 | ---- | M] () -- C:\Windows\System32\license.rtf

========== Files Created - No Company Name ==========

[2010.04.28 22:24:12 | 000,001,518 | ---- | C] () -- C:\Users\Renee\Desktop\Renee.lnk
[2010.04.28 22:14:33 | 000,002,009 | ---- | C] () -- C:\Users\Renee\Desktop\Borderlands.lnk
[2010.04.27 15:58:11 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2010.04.19 14:48:37 | 002,427,248 | ---- | C] () -- C:\Windows\System32\pbsvc_heroes.exe
[2010.04.18 20:11:25 | 000,009,728 | ---- | C] () -- C:\Windows\System32\BASSMOD.dll
[2010.04.04 10:44:37 | 000,138,184 | ---- | C] () -- C:\Windows\System32\drivers\PnkBstrK.sys
[2010.04.04 10:44:21 | 000,215,016 | ---- | C] () -- C:\Windows\System32\PnkBstrB.exe
[2010.04.04 10:44:20 | 000,075,064 | ---- | C] () -- C:\Windows\System32\PnkBstrA.exe
[2010.04.02 23:31:01 | 000,215,016 | ---- | C] () -- C:\Windows\System32\PnkBstrB.xtr
[2010.04.02 23:21:55 | 000,138,056 | ---- | C] () -- C:\Users\Renee\AppData\Roaming\PnkBstrK.sys
[2010.04.02 22:33:04 | 000,001,061 | ---- | C] () -- C:\Users\Public\Desktop\GIMP 2.lnk
[2010.04.02 20:16:59 | 000,001,295 | ---- | C] () -- C:\Users\Public\Desktop\Just Cause 2.lnk
[2010.04.02 18:22:52 | 000,372,736 | ---- | C] () -- C:\Windows\System32\toolbar2.ocx
[2010.04.02 11:29:52 | 000,001,066 | ---- | C] () -- C:\Users\Public\Desktop\TmNationsForever.lnk
[2010.04.02 11:13:07 | 000,000,017 | ---- | C] () -- C:\Users\Renee\AppData\Local\resmon.resmoncfg
[2010.04.02 00:41:02 | 000,691,696 | ---- | C] () -- C:\Windows\System32\drivers\sptd.sys
[2010.04.01 23:14:00 | 000,147,456 | ---- | C] () -- C:\Windows\System32\RtlCPAPI.dll
[2010.04.01 23:13:59 | 000,049,152 | ---- | C] () -- C:\Windows\System32\ChCfg.exe
[2010.04.01 23:13:57 | 000,141,016 | ---- | C] () -- C:\Windows\System32\alsndmgr.wav
[2010.04.01 21:14:53 | 000,000,962 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3066638169-474057053-1295839724-1001UA.job
[2010.04.01 21:14:52 | 000,000,910 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3066638169-474057053-1295839724-1001Core.job
[2010.04.01 21:06:18 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2010.04.01 20:59:32 | 001,310,720 | -HS- | C] () -- C:\Users\Renee\NTUSER.DAT
[2010.04.01 20:59:32 | 000,524,288 | -HS- | C] () -- C:\Users\Renee\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000002.regtrans-ms
[2010.04.01 20:59:32 | 000,524,288 | -HS- | C] () -- C:\Users\Renee\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000001.regtrans-ms
[2010.04.01 20:59:32 | 000,262,144 | -HS- | C] () -- C:\Users\Renee\ntuser.dat.LOG1
[2010.04.01 20:59:32 | 000,065,536 | -HS- | C] () -- C:\Users\Renee\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TM.blf
[2010.04.01 20:59:32 | 000,000,020 | -HS- | C] () -- C:\Users\Renee\ntuser.ini
[2010.04.01 20:59:32 | 000,000,000 | -HS- | C] () -- C:\Users\Renee\ntuser.dat.LOG2
[2010.04.01 20:50:41 | 1610,260,480 | -HS- | C] () -- C:\hiberfil.sys
[2009.07.14 01:51:43 | 000,073,728 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll
[2009.07.14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll
[2008.10.07 09:13:30 | 000,197,912 | ---- | C] () -- C:\Windows\System32\physxcudart_20.dll
[2008.10.07 09:13:22 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelTraditionalChinese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelSwedish.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelSpanish.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelSimplifiedChinese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelPortugese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelKorean.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelJapanese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelGerman.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelFrench.dll
[2004.08.13 09:56:20 | 000,005,810 | ---- | C] () -- C:\Windows\System32\drivers\ASACPI.sys

========== Custom Scans ==========


< %SYSTEMDRIVE%\*.exe >


< MD5 for: AGP440.SYS >
[2009.07.14 03:26:15 | 000,053,312 | ---- | M] (Microsoft Corporation) MD5=507812C3054C21CEF746B6EE3D04DD6E -- C:\Windows\System32\drivers\AGP440.sys
[2009.07.14 03:26:15 | 000,053,312 | ---- | M] (Microsoft Corporation) MD5=507812C3054C21CEF746B6EE3D04DD6E -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_x86_neutral_65848c2d7375a720\AGP440.sys
[2009.07.14 03:26:15 | 000,053,312 | ---- | M] (Microsoft Corporation) MD5=507812C3054C21CEF746B6EE3D04DD6E -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.1.7600.16385_none_b9e9435f20046eeb\AGP440.sys

< MD5 for: ATAPI.SYS >
[2009.07.14 03:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\System32\drivers\atapi.sys
[2009.07.14 03:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_x86_neutral_f64b9c35a3a5be81\atapi.sys
[2009.07.14 03:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_dd0e7e3d82dd640d\atapi.sys

< MD5 for: CNGAUDIT.DLL >
[2009.07.14 03:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\System32\cngaudit.dll
[2009.07.14 03:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_e83a414890e8132b\cngaudit.dll

< MD5 for: IASTORV.SYS >
[2009.07.14 03:20:36 | 000,332,352 | ---- | M] (Intel Corporation) MD5=934AF4D7C5F457B9F0743F4299B77B67 -- C:\Windows\System32\drivers\iaStorV.sys
[2009.07.14 03:20:36 | 000,332,352 | ---- | M] (Intel Corporation) MD5=934AF4D7C5F457B9F0743F4299B77B67 -- C:\Windows\System32\DriverStore\FileRepository\iastorv.inf_x86_neutral_18cccb83b34e1453\iaStorV.sys
[2009.07.14 03:20:36 | 000,332,352 | ---- | M] (Intel Corporation) MD5=934AF4D7C5F457B9F0743F4299B77B67 -- C:\Windows\winsxs\x86_iastorv.inf_31bf3856ad364e35_6.1.7600.16385_none_aee7a89be91b9000\iaStorV.sys

< MD5 for: NETLOGON.DLL >
[2009.07.14 03:16:02 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=EAA75D9000B71F10EEC04D2AE6C60E81 -- C:\Windows\System32\netlogon.dll
[2009.07.14 03:16:02 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=EAA75D9000B71F10EEC04D2AE6C60E81 -- C:\Windows\winsxs\x86_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7600.16385_none_fd8e0d66994d7dc8\netlogon.dll

< MD5 for: NVSTOR.SYS >
[2009.07.14 03:20:44 | 000,142,416 | ---- | M] (NVIDIA Corporation) MD5=C99F251A5DE63C6F129CF71933ACED0F -- C:\Windows\System32\drivers\nvstor.sys
[2009.07.14 03:20:44 | 000,142,416 | ---- | M] (NVIDIA Corporation) MD5=C99F251A5DE63C6F129CF71933ACED0F -- C:\Windows\System32\DriverStore\FileRepository\nvraid.inf_x86_neutral_5bde3fe2945bce9e\nvstor.sys
[2009.07.14 03:20:44 | 000,142,416 | ---- | M] (NVIDIA Corporation) MD5=C99F251A5DE63C6F129CF71933ACED0F -- C:\Windows\winsxs\x86_nvraid.inf_31bf3856ad364e35_6.1.7600.16385_none_39b1194b205239d8\nvstor.sys

< MD5 for: SCECLI.DLL >
[2009.07.14 03:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\System32\scecli.dll
[2009.07.14 03:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\winsxs\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_37e4387f3a6f0483\scecli.dll

< %systemroot%\*. /mp /s >

< End of report >

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43295
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: kontrola z důvodu jedné nefunkční internetové stránky

Příspěvekod jaro3 » 29 dub 2010 08:28

Poklepej na ikonu OTL na ploše.Ujisti se , že máš všechny ostatní aplikace a prohlížeče zavřeny.
Pod Vlastní skenování/opravy do okénka vlož následující text, zobrazený zeleně:

Kód: Vybrat vše

:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

:Files
C:\Windows\ativpsrm.bin

:Reg
:Commands
[purity]
[emptytemp]
[start explorer]
[Reboot]

Poté klikni nahoře na Opravit. Nech program nerušeně běžet, na konci se provede restart PC.
Po restartu se objeví log , prosím zkopíruj sem celý jeho obsah.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
Renee
Level 2
Level 2
Příspěvky: 211
Registrován: srpen 09
Pohlaví: Muž
Stav:
Offline

Re: kontrola z důvodu jedné nefunkční internetové stránky

Příspěvekod Renee » 29 dub 2010 19:58

Jenom taková poznámka.. vidím v tom zeleném textu zmínku o Firefoxu.. nevím jistě jestli to má nějaký vliv, já ale Firefox vůbec nemám, používám Chrome

OTL logfile created on: 29.4.2010 19:34:37 - Run 3
OTL by OldTimer - Version 3.2.3.0 Folder = C:\Users\Renee\Desktop
Enterprise Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

2,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 78,00% Memory free
4,00 Gb Paging File | 3,00 Gb Available in Paging File | 82,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 111,69 Gb Total Space | 45,35 Gb Free Space | 40,60% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: RENEE-JE-ŠÉF
Current User Name: Renee
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal

========== Processes (SafeList) ==========

PRC - C:\Users\Renee\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Windows\System32\atieclxx.exe (AMD)
PRC - C:\Windows\System32\atiesrxx.exe (AMD)
PRC - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe (ESET)
PRC - C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET)
PRC - C:\Windows\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\QIP\qip.exe (The Author of QIP)
PRC - C:\Windows\System32\taskhost.exe (Microsoft Corporation)
PRC - C:\Program Files\AIMP2\AIMP2.exe (AIMP DevTeam)


========== Modules (SafeList) ==========

MOD - C:\Users\Renee\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\Windows\System32\sspicli.dll (Microsoft Corporation)
MOD - C:\Windows\System32\sechost.dll (Microsoft Corporation)
MOD - C:\Windows\System32\samcli.dll (Microsoft Corporation)
MOD - C:\Windows\System32\profapi.dll (Microsoft Corporation)
MOD - C:\Windows\System32\netutils.dll (Microsoft Corporation)
MOD - C:\Windows\System32\KernelBase.dll (Microsoft Corporation)
MOD - C:\Windows\System32\dwmapi.dll (Microsoft Corporation)
MOD - C:\Windows\System32\devobj.dll (Microsoft Corporation)
MOD - C:\Windows\System32\cryptbase.dll (Microsoft Corporation)
MOD - C:\Windows\System32\cfgmgr32.dll (Microsoft Corporation)
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc\comctl32.dll (Microsoft Corporation)


========== Win32 Services (SafeList) ==========

SRV - (AMD External Events Utility) -- C:\Windows\System32\atiesrxx.exe (AMD)
SRV - (EhttpSrv) -- C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe (ESET)
SRV - (ekrn) -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe (ESET)
SRV - (WwanSvc) -- C:\Windows\System32\wwansvc.dll (Microsoft Corporation)
SRV - (WbioSrvc) -- C:\Windows\System32\wbiosrvc.dll (Microsoft Corporation)
SRV - (Power) -- C:\Windows\System32\umpo.dll (Microsoft Corporation)
SRV - (Themes) -- C:\Windows\System32\themeservice.dll (Microsoft Corporation)
SRV - (sppuinotify) -- C:\Windows\System32\sppuinotify.dll (Microsoft Corporation)
SRV - (StorSvc) -- C:\Windows\System32\StorSvc.dll (Microsoft Corporation)
SRV - (RpcEptMapper) -- C:\Windows\System32\RpcEpMap.dll (Microsoft Corporation)
SRV - (SensrSvc) -- C:\Windows\System32\sensrsvc.dll (Microsoft Corporation)
SRV - (PeerDistSvc) -- C:\Windows\System32\PeerDistSvc.dll (Microsoft Corporation)
SRV - (PNRPsvc) Protokol PNRP (Peer Name Resolution Protocol) -- C:\Windows\System32\pnrpsvc.dll (Microsoft Corporation)
SRV - (p2pimsvc) -- C:\Windows\System32\pnrpsvc.dll (Microsoft Corporation)
SRV - (HomeGroupProvider) -- C:\Windows\System32\provsvc.dll (Microsoft Corporation)
SRV - (PNRPAutoReg) -- C:\Windows\System32\pnrpauto.dll (Microsoft Corporation)
SRV - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV - (HomeGroupListener) -- C:\Windows\System32\ListSvc.dll (Microsoft Corporation)
SRV - (FontCache) -- C:\Windows\System32\FntCache.dll (Microsoft Corporation)
SRV - (Dhcp) -- C:\Windows\System32\dhcpcore.dll (Microsoft Corporation)
SRV - (defragsvc) -- C:\Windows\System32\defragsvc.dll (Microsoft Corporation)
SRV - (BDESVC) -- C:\Windows\System32\bdesvc.dll (Microsoft Corporation)
SRV - (AxInstSV) Instalační program ovládacích prvků ActiveX (AxInstSV) -- C:\Windows\System32\AxInstSv.dll (Microsoft Corporation)
SRV - (AppIDSvc) -- C:\Windows\System32\appidsvc.dll (Microsoft Corporation)
SRV - (sppsvc) -- C:\Windows\System32\sppsvc.exe (Microsoft Corporation)
SRV - (NetTcpPortSharing) -- C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe (Microsoft Corporation)


========== Driver Services (SafeList) ==========

DRV - (hamachi) -- C:\Windows\System32\drivers\hamachi.sys (LogMeIn, Inc.)
DRV - (sptd) -- C:\Windows\System32\Drivers\sptd.sys ()
DRV - (atikmdag) -- C:\Windows\System32\drivers\atikmdag.sys (ATI Technologies Inc.)
DRV - (amdkmdag) -- C:\Windows\System32\drivers\atipmdag.sys (ATI Technologies Inc.)
DRV - (amdkmdap) -- C:\Windows\System32\drivers\atikmpag.sys (Advanced Micro Devices, Inc.)
DRV - (epfwwfpr) -- C:\Windows\System32\drivers\epfwwfpr.sys (ESET)
DRV - (ehdrv) -- C:\Windows\System32\drivers\ehdrv.sys (ESET)
DRV - (eamonm) -- C:\Windows\System32\drivers\eamonm.sys (ESET)
DRV - (AtiHdmiService) -- C:\Windows\System32\drivers\AtiHdmi.sys (ATI Technologies, Inc.)
DRV - (KSecPkg) -- C:\Windows\System32\Drivers\ksecpkg.sys (Microsoft Corporation)
DRV - (cmdide) -- C:\Windows\system32\DRIVERS\cmdide.sys (CMD Technology, Inc.)
DRV - (adpahci) -- C:\Windows\system32\DRIVERS\adpahci.sys (Adaptec, Inc.)
DRV - (adp94xx) -- C:\Windows\system32\DRIVERS\adp94xx.sys (Adaptec, Inc.)
DRV - (amdsbs) -- C:\Windows\system32\DRIVERS\amdsbs.sys (AMD Technologies Inc.)
DRV - (adpu320) -- C:\Windows\system32\DRIVERS\adpu320.sys (Adaptec, Inc.)
DRV - (arcsas) -- C:\Windows\system32\DRIVERS\arcsas.sys (Adaptec, Inc.)
DRV - (amdsata) -- C:\Windows\system32\DRIVERS\amdsata.sys (Advanced Micro Devices)
DRV - (arc) -- C:\Windows\system32\DRIVERS\arc.sys (Adaptec, Inc.)
DRV - (amdxata) -- C:\Windows\system32\DRIVERS\amdxata.sys (Advanced Micro Devices)
DRV - (aliide) -- C:\Windows\system32\DRIVERS\aliide.sys (Acer Laboratories Inc.)
DRV - (nvstor) -- C:\Windows\system32\DRIVERS\nvstor.sys (NVIDIA Corporation)
DRV - (nvraid) -- C:\Windows\system32\DRIVERS\nvraid.sys (NVIDIA Corporation)
DRV - (nfrd960) -- C:\Windows\system32\DRIVERS\nfrd960.sys (IBM Corporation)
DRV - (LSI_SAS) -- C:\Windows\system32\DRIVERS\lsi_sas.sys (LSI Corporation)
DRV - (iaStorV) -- C:\Windows\system32\DRIVERS\iaStorV.sys (Intel Corporation)
DRV - (MegaSR) -- C:\Windows\system32\DRIVERS\MegaSR.sys (LSI Corporation, Inc.)
DRV - (LSI_SCSI) -- C:\Windows\system32\DRIVERS\lsi_scsi.sys (LSI Corporation)
DRV - (LSI_FC) -- C:\Windows\system32\DRIVERS\lsi_fc.sys (LSI Corporation)
DRV - (LSI_SAS2) -- C:\Windows\system32\DRIVERS\lsi_sas2.sys (LSI Corporation)
DRV - (iirsp) -- C:\Windows\system32\DRIVERS\iirsp.sys (Intel Corp./ICP vortex GmbH)
DRV - (megasas) -- C:\Windows\system32\DRIVERS\megasas.sys (LSI Corporation)
DRV - (hwpolicy) -- C:\Windows\System32\drivers\hwpolicy.sys (Microsoft Corporation)
DRV - (elxstor) -- C:\Windows\system32\DRIVERS\elxstor.sys (Emulex)
DRV - (aic78xx) -- C:\Windows\system32\DRIVERS\djsvs.sys (Adaptec, Inc.)
DRV - (HpSAMD) -- C:\Windows\system32\DRIVERS\HpSAMD.sys (Hewlett-Packard Company)
DRV - (FsDepends) -- C:\Windows\System32\drivers\fsdepends.sys (Microsoft Corporation)
DRV - (vsmraid) -- C:\Windows\system32\DRIVERS\vsmraid.sys (VIA Technologies Inc.,Ltd)
DRV - (vmbus) -- C:\Windows\system32\DRIVERS\vmbus.sys (Microsoft Corporation)
DRV - (vhdmp) -- C:\Windows\system32\DRIVERS\vhdmp.sys (Microsoft Corporation)
DRV - (storflt) -- C:\Windows\system32\DRIVERS\vmstorfl.sys (Microsoft Corporation)
DRV - (vdrvroot) -- C:\Windows\system32\DRIVERS\vdrvroot.sys (Microsoft Corporation)
DRV - (storvsc) -- C:\Windows\system32\DRIVERS\storvsc.sys (Microsoft Corporation)
DRV - (WIMMount) -- C:\Windows\System32\drivers\wimmount.sys (Microsoft Corporation)
DRV - (viaide) -- C:\Windows\system32\DRIVERS\viaide.sys (VIA Technologies, Inc.)
DRV - (ql2300) -- C:\Windows\system32\DRIVERS\ql2300.sys (QLogic Corporation)
DRV - (rdyboost) -- C:\Windows\System32\drivers\rdyboost.sys (Microsoft Corporation)
DRV - (ql40xx) -- C:\Windows\system32\DRIVERS\ql40xx.sys (QLogic Corporation)
DRV - (SiSRaid4) -- C:\Windows\system32\DRIVERS\sisraid4.sys (Silicon Integrated Systems)
DRV - (pcw) -- C:\Windows\System32\drivers\pcw.sys (Microsoft Corporation)
DRV - (SiSRaid2) -- C:\Windows\system32\DRIVERS\SiSRaid2.sys (Silicon Integrated Systems Corp.)
DRV - (stexstor) -- C:\Windows\system32\DRIVERS\stexstor.sys (Promise Technology)
DRV - (CNG) -- C:\Windows\System32\Drivers\cng.sys (Microsoft Corporation)
DRV - (Brserid) Brother MFC Serial Port Interface Driver (WDM) -- C:\Windows\System32\Drivers\Brserid.sys (Brother Industries Ltd.)
DRV - (rdpbus) -- C:\Windows\System32\drivers\rdpbus.sys (Microsoft Corporation)
DRV - (RDPREFMP) -- C:\Windows\System32\drivers\RDPREFMP.sys (Microsoft Corporation)
DRV - (RasAgileVpn) WAN Miniport (IKEv2) -- C:\Windows\System32\drivers\agilevpn.sys (Microsoft Corporation)
DRV - (WfpLwf) -- C:\Windows\System32\drivers\wfplwf.sys (Microsoft Corporation)
DRV - (NdisCap) -- C:\Windows\System32\drivers\ndiscap.sys (Microsoft Corporation)
DRV - (vwifibus) -- C:\Windows\System32\drivers\vwifibus.sys (Microsoft Corporation)
DRV - (1394ohci) -- C:\Windows\System32\drivers\1394ohci.sys (Microsoft Corporation)
DRV - (UmPass) -- C:\Windows\system32\DRIVERS\umpass.sys (Microsoft Corporation)
DRV - (mshidkmdf) -- C:\Windows\System32\drivers\mshidkmdf.sys (Microsoft Corporation)
DRV - (MTConfig) -- C:\Windows\system32\DRIVERS\MTConfig.sys (Microsoft Corporation)
DRV - (CompositeBus) -- C:\Windows\System32\drivers\CompositeBus.sys (Microsoft Corporation)
DRV - (AppID) -- C:\Windows\system32\drivers\appid.sys (Microsoft Corporation)
DRV - (scfilter) -- C:\Windows\System32\drivers\scfilter.sys (Microsoft Corporation)
DRV - (s3cap) -- C:\Windows\system32\DRIVERS\vms3cap.sys (Microsoft Corporation)
DRV - (VMBusHID) -- C:\Windows\system32\DRIVERS\VMBusHID.sys (Microsoft Corporation)
DRV - (discache) -- C:\Windows\System32\drivers\discache.sys (Microsoft Corporation)
DRV - (HidBatt) -- C:\Windows\system32\DRIVERS\HidBatt.sys (Microsoft Corporation)
DRV - (AcpiPmi) -- C:\Windows\system32\DRIVERS\acpipmi.sys (Microsoft Corporation)
DRV - (AmdPPM) -- C:\Windows\system32\DRIVERS\amdppm.sys (Microsoft Corporation)
DRV - (hcw85cir) -- C:\Windows\system32\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV - (BrUsbMdm) -- C:\Windows\System32\Drivers\BrUsbMdm.sys (Brother Industries Ltd.)
DRV - (BrUsbSer) -- C:\Windows\System32\Drivers\BrUsbSer.sys (Brother Industries Ltd.)
DRV - (BrSerWdm) -- C:\Windows\System32\Drivers\BrSerWdm.sys (Brother Industries Ltd.)
DRV - (BrFiltLo) -- C:\Windows\system32\DRIVERS\BrFiltLo.sys (Brother Industries, Ltd.)
DRV - (BrFiltUp) -- C:\Windows\system32\DRIVERS\BrFiltUp.sys (Brother Industries, Ltd.)
DRV - (NVENETFD) -- C:\Windows\System32\drivers\nvm62x32.sys (NVIDIA Corporation)
DRV - (b57nd60x) -- C:\Windows\System32\drivers\b57nd60x.sys (Broadcom Corporation)
DRV - (ebdrv) -- C:\Windows\system32\DRIVERS\evbdx.sys (Broadcom Corporation)
DRV - (b06bdrv) -- C:\Windows\system32\DRIVERS\bxvbdx.sys (Broadcom Corporation)
DRV - (atkdisplf) -- C:\Windows\System32\drivers\ATKDispLowFilter.sys (ASUSTeK Computer Inc.)
DRV - (asusgsb) -- C:\Windows\System32\drivers\asusgsb.sys (ASUSTeK Computer Inc.)
DRV - (ALCXWDM) Service for Realtek AC97 Audio (WDM) -- C:\Windows\System32\drivers\alcxwdm.sys (Realtek Semiconductor Corp.)
DRV - (MTsensor) -- C:\Windows\System32\drivers\ASACPI.sys ()


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = cs
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = A2 6C 10 5C BD E4 CA 01 [binary data]
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

FF - HKLM\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2010.04.01 21:29:48 | 000,000,000 | ---D | M]


O1 HOSTS File: ([2010.04.27 16:02:53 | 000,000,098 | ---- | M]) - C:\Windows\System32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (IDMIEHlprObj Class) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll (Tonec Inc.)
O4 - HKLM..\Run: [egui] C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET)
O4 - HKCU..\Run: [QIP2005] C:\Program Files\QIP\qip.exe (The Author of QIP)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Download all links with IDM - C:\Program Files\Internet Download Manager\IEGetAll.htm ()
O8 - Extra context menu item: Download FLV video content with IDM - C:\Program Files\Internet Download Manager\IEGetVL.htm ()
O8 - Extra context menu item: Download with IDM - C:\Program Files\Internet Download Manager\IEExt.htm ()
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000037 - C:\Windows\System32\idmmbc.dll (Tonec Inc.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (systempropertiesperformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O30 - LSA: Security Packages - (pku2u) - C:\Windows\System32\pku2u.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2010.04.29 15:52:39 | 000,000,000 | ---D | C] -- C:\Users\Renee\Desktop\Documents\TrackMania
[2010.04.28 23:29:00 | 000,563,712 | ---- | C] (OldTimer Tools) -- C:\Users\Renee\Desktop\OTL.exe
[2010.04.28 23:00:24 | 000,000,000 | ---D | C] -- C:\Users\Renee\Desktop\Documents\Downloads
[2010.04.28 22:26:57 | 000,000,000 | R--D | C] -- C:\Users\Renee\Favorites
[2010.04.28 22:23:50 | 000,000,000 | ---D | C] -- C:\Users\Renee\Desktop\Documents\Dokumenty
[2010.04.28 22:16:12 | 000,000,000 | R--D | C] -- C:\Users\Renee\Desktop\Documents
[2010.04.28 22:10:34 | 000,000,000 | R--D | C] -- C:\Users\Renee\Desktop
[2010.04.28 16:21:41 | 001,037,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\lsasrv.dll
[2010.04.28 16:21:40 | 000,133,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\ksecpkg.sys
[2010.04.27 16:02:53 | 000,000,000 | ---D | C] -- C:\_OTL
[2010.04.26 23:26:05 | 000,000,000 | ---D | C] -- C:\ComboFix
[2010.04.26 22:06:38 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2010.04.26 22:06:36 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Local\temp
[2010.04.26 21:57:54 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Local\ESET
[2010.04.26 16:03:40 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\Malwarebytes
[2010.04.26 16:03:34 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2010.04.26 16:03:31 | 000,020,824 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2010.04.26 16:03:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2010.04.26 16:03:30 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010.04.25 19:41:09 | 000,000,000 | ---D | C] -- C:\Program Files\AMD
[2010.04.25 19:40:36 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Local\Downloaded Installations
[2010.04.25 18:38:22 | 000,000,000 | ---D | C] -- C:\Program Files\Trend Micro
[2010.04.25 18:20:34 | 000,000,000 | ---D | C] -- C:\Program Files\RegCleaner
[2010.04.25 18:09:51 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2010.04.25 14:10:13 | 000,348,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msvcr71.dll
[2010.04.25 14:10:10 | 000,030,976 | ---- | C] (ASUSTeK Computer Inc.) -- C:\Windows\System32\drivers\ATKDispLowFilter.sys
[2010.04.25 14:10:10 | 000,015,232 | ---- | C] (ASUSTeK Computer Inc.) -- C:\Windows\System32\drivers\asusgsb.sys
[2010.04.22 21:05:17 | 000,000,000 | ---D | C] -- C:\Windows\System32\URTTEMP
[2010.04.22 20:33:03 | 000,000,000 | ---D | C] -- C:\Program Files\Razor
[2010.04.18 20:00:38 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\IDM
[2010.04.18 20:00:38 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\DMCache
[2010.04.18 20:00:33 | 000,000,000 | ---D | C] -- C:\Program Files\Internet Download Manager
[2010.04.15 17:55:52 | 000,000,000 | ---D | C] -- C:\Program Files\Sony Ericsson
[2010.04.14 15:39:33 | 000,427,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\vbscript.dll
[2010.04.14 15:39:26 | 003,899,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntoskrnl.exe
[2010.04.14 15:39:24 | 003,954,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntkrnlpa.exe
[2010.04.08 20:13:57 | 000,000,000 | ---D | C] -- C:\ProgramData\TrackMania
[2010.04.03 14:05:48 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\GRETECH
[2010.04.03 14:05:09 | 000,000,000 | ---D | C] -- C:\Program Files\GRETECH
[2010.04.02 23:30:56 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Local\PunkBuster
[2010.04.02 23:05:38 | 000,000,000 | ---D | C] -- C:\Program Files\EA Games
[2010.04.02 22:35:57 | 000,000,000 | ---D | C] -- C:\Users\Renee\.thumbnails
[2010.04.02 22:35:47 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\gtk-2.0
[2010.04.02 22:33:15 | 000,000,000 | ---D | C] -- C:\Users\Renee\.gimp-2.6
[2010.04.02 22:31:11 | 000,000,000 | ---D | C] -- C:\Program Files\GIMP-2.0
[2010.04.02 21:35:25 | 000,000,000 | ---D | C] -- C:\Windows\pss
[2010.04.02 20:06:39 | 000,000,000 | ---D | C] -- C:\Program Files\SQUARE ENIX - Eidos Interactive
[2010.04.02 18:22:52 | 000,609,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\comctl32.ocx
[2010.04.02 18:22:52 | 000,132,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MSINET.OCX
[2010.04.02 18:22:51 | 001,081,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mscomctl.ocx
[2010.04.02 18:22:49 | 000,101,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\VB6STKIT.DLL
[2010.04.02 18:22:44 | 000,000,000 | ---D | C] -- C:\Program Files\FootballArena
[2010.04.02 18:01:47 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\OpenOffice.org
[2010.04.02 12:43:46 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\Hamachi
[2010.04.02 12:43:31 | 000,025,280 | ---- | C] (LogMeIn, Inc.) -- C:\Windows\System32\drivers\hamachi.sys
[2010.04.02 12:43:28 | 000,000,000 | ---D | C] -- C:\Program Files\Hamachi
[2010.04.02 11:32:43 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\TuneUp Software
[2010.04.02 11:32:04 | 000,000,000 | ---D | C] -- C:\ProgramData\TuneUp Software
[2010.04.02 11:32:00 | 000,000,000 | -HSD | C] -- C:\ProgramData\{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}
[2010.04.02 11:27:29 | 000,000,000 | ---D | C] -- C:\Program Files\TmNationsForever
[2010.04.02 11:14:26 | 000,000,000 | ---D | C] -- C:\Program Files\OpenOffice.org 3
[2010.04.02 09:47:15 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\browserchoice.exe
[2010.04.02 09:45:51 | 000,606,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mstime.dll
[2010.04.02 09:45:49 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll
[2010.04.02 09:45:48 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedsbs.dll
[2010.04.02 09:45:43 | 002,614,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe
[2010.04.02 09:45:19 | 001,320,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\CertEnroll.dll
[2010.04.02 09:45:18 | 000,507,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winload.exe
[2010.04.02 09:45:17 | 000,442,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winresume.exe
[2010.04.02 09:45:15 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmploc.DLL
[2010.04.02 09:45:04 | 000,716,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript.dll
[2010.04.02 09:45:00 | 000,108,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\t2embed.dll
[2010.04.02 09:44:59 | 000,293,888 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\atmfd.dll
[2010.04.02 09:44:59 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fontsub.dll
[2010.04.02 09:44:48 | 001,328,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\quartz.dll
[2010.04.02 09:44:48 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mciavi32.dll
[2010.04.02 09:44:47 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\avifil32.dll
[2010.04.02 09:44:27 | 000,641,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\CPFilters.dll
[2010.04.02 09:44:25 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msdri.dll
[2010.04.02 09:44:25 | 000,204,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MSNP.ax
[2010.04.02 09:44:22 | 000,465,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\psisdecd.dll
[2010.04.02 09:44:14 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tzres.dll
[2010.04.02 09:44:09 | 000,365,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_isv.dll
[2010.04.02 09:44:08 | 000,369,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc.dll
[2010.04.02 09:44:08 | 000,324,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_isv.exe
[2010.04.02 09:44:08 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate.exe
[2010.04.02 09:44:08 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_ssp_isv.dll
[2010.04.02 09:44:07 | 000,280,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_ssp.exe
[2010.04.02 09:44:07 | 000,277,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_ssp_isv.exe
[2010.04.02 09:44:07 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_ssp.dll
[2010.04.02 01:20:36 | 004,178,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_41.dll
[2010.04.02 01:20:36 | 001,846,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_41.dll
[2010.04.02 01:20:36 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_41.dll
[2010.04.02 01:20:35 | 004,379,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_40.dll
[2010.04.02 01:20:35 | 002,036,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_40.dll
[2010.04.02 01:20:35 | 000,517,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_4.dll
[2010.04.02 01:20:35 | 000,452,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_40.dll
[2010.04.02 01:20:35 | 000,235,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_4.dll
[2010.04.02 01:20:35 | 000,069,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_3.dll
[2010.04.02 01:20:35 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_6.dll
[2010.04.02 01:20:34 | 000,514,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_3.dll
[2010.04.02 01:20:34 | 000,235,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_3.dll
[2010.04.02 01:20:34 | 000,070,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_2.dll
[2010.04.02 01:20:33 | 003,851,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_39.dll
[2010.04.02 01:20:33 | 001,493,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_39.dll
[2010.04.02 01:20:33 | 000,509,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_2.dll
[2010.04.02 01:20:33 | 000,507,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_1.dll
[2010.04.02 01:20:33 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_39.dll
[2010.04.02 01:20:33 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_2.dll
[2010.04.02 01:20:33 | 000,068,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_1.dll
[2010.04.02 01:20:33 | 000,065,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_0.dll
[2010.04.02 01:20:33 | 000,023,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_5.dll
[2010.04.02 01:20:32 | 003,850,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_38.dll
[2010.04.02 01:20:32 | 001,491,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_38.dll
[2010.04.02 01:20:32 | 000,479,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_0.dll
[2010.04.02 01:20:32 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_38.dll
[2010.04.02 01:20:32 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_1.dll
[2010.04.02 01:20:32 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_4.dll
[2010.04.02 01:20:31 | 003,786,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_37.dll
[2010.04.02 01:20:31 | 003,734,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_36.dll
[2010.04.02 01:20:31 | 001,420,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_37.dll
[2010.04.02 01:20:31 | 001,374,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_36.dll
[2010.04.02 01:20:31 | 000,462,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_37.dll
[2010.04.02 01:20:31 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_36.dll
[2010.04.02 01:20:31 | 000,267,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_10.dll
[2010.04.02 01:20:31 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_0.dll
[2010.04.02 01:20:31 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_3.dll
[2010.04.02 01:20:30 | 003,727,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_35.dll
[2010.04.02 01:20:30 | 001,358,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_35.dll
[2010.04.02 01:20:30 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_35.dll
[2010.04.02 01:20:30 | 000,267,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_9.dll
[2010.04.02 01:20:30 | 000,266,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_8.dll
[2010.04.02 01:20:30 | 000,017,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_2.dll
[2010.04.02 01:20:29 | 003,497,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_34.dll
[2010.04.02 01:20:29 | 001,124,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_34.dll
[2010.04.02 01:20:29 | 001,123,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_33.dll
[2010.04.02 01:20:29 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_34.dll
[2010.04.02 01:20:29 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_33.dll
[2010.04.02 01:20:29 | 000,261,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_7.dll
[2010.04.02 01:20:29 | 000,081,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xinput1_3.dll
[2010.04.02 01:20:28 | 003,495,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_33.dll
[2010.04.02 01:20:28 | 000,440,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10.dll
[2010.04.02 01:20:28 | 000,255,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_6.dll
[2010.04.02 01:20:28 | 000,251,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_5.dll
[2010.04.02 01:20:27 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_32.dll
[2010.04.02 01:20:27 | 002,414,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_31.dll
[2010.04.02 01:20:27 | 000,237,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_4.dll
[2010.04.02 01:20:27 | 000,236,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_3.dll
[2010.04.02 01:20:27 | 000,230,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_2.dll
[2010.04.02 01:20:27 | 000,062,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xinput1_2.dll
[2010.04.02 01:20:27 | 000,062,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xinput1_1.dll
[2010.04.02 01:20:27 | 000,015,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\x3daudio1_1.dll
[2010.04.02 01:20:26 | 000,229,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_1.dll
[2010.04.02 01:20:21 | 002,388,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_30.dll
[2010.04.02 01:20:21 | 000,230,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_0.dll
[2010.04.02 01:20:21 | 000,014,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\x3daudio1_0.dll
[2010.04.02 01:20:20 | 002,332,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_29.dll
[2010.04.02 01:20:20 | 002,323,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_28.dll
[2010.04.02 01:20:20 | 002,319,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_27.dll
[2010.04.02 01:20:19 | 002,337,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_25.dll
[2010.04.02 01:20:19 | 002,297,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_26.dll
[2010.04.02 01:20:18 | 002,222,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_24.dll
[2010.04.02 01:19:27 | 000,000,000 | ---D | C] -- C:\Windows\System32\AGEIA
[2010.04.02 01:19:25 | 000,000,000 | ---D | C] -- C:\Program Files\AGEIA Technologies
[2010.04.02 01:19:11 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Wise Installation Wizard
[2010.04.02 01:18:19 | 000,000,000 | ---D | C] -- C:\Renee
[2010.04.02 01:06:13 | 000,000,000 | ---D | C] -- C:\Program Files\2K Games
[2010.04.02 01:05:51 | 000,000,000 | ---D | C] -- C:\BDS
[2010.04.02 01:04:45 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Local\Diagnostics
[2010.04.02 00:48:26 | 000,060,416 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\ALCFDRTM.VER
[2010.04.02 00:48:26 | 000,060,416 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\ALCFDRTM.EXE
[2010.04.02 00:39:20 | 000,000,000 | ---D | C] -- C:\Program Files\DAEMON Tools Lite
[2010.04.02 00:38:39 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\DAEMON Tools Lite
[2010.04.02 00:38:36 | 000,000,000 | ---D | C] -- C:\ProgramData\DAEMON Tools Lite
[2010.04.01 23:43:55 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\AIMP
[2010.04.01 23:42:27 | 000,000,000 | ---D | C] -- C:\Users\Renee\HUDBA
[2010.04.01 23:14:00 | 004,026,112 | R--- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\drivers\alcxwdm.sys
[2010.04.01 23:13:59 | 000,577,536 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\soundman.exe
[2010.04.01 23:13:57 | 010,528,768 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RTLCPL.exe
[2010.04.01 23:13:55 | 018,804,736 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\alsndmgr.cpl
[2010.04.01 23:03:55 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek AC97
[2010.04.01 23:03:40 | 000,315,392 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\alcupd.exe
[2010.04.01 23:03:39 | 000,217,088 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\alcrmv.exe
[2010.04.01 23:03:09 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield
[2010.04.01 23:02:24 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\WinRAR
[2010.04.01 22:56:19 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2010.04.01 22:51:09 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\Macromedia
[2010.04.01 22:51:09 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\Adobe
[2010.04.01 22:49:52 | 000,000,000 | ---D | C] -- C:\Windows\System32\Macromed
[2010.04.01 22:41:25 | 000,000,000 | ---D | C] -- C:\Program Files\AIMP2
[2010.04.01 22:37:19 | 000,000,000 | ---D | C] -- C:\Program Files\QIP
[2010.04.01 21:49:48 | 000,000,000 | ---D | C] -- C:\Windows\Panther
[2010.04.01 21:30:33 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Local\ElevatedDiagnostics
[2010.04.01 21:29:48 | 000,000,000 | ---D | C] -- C:\ProgramData\ESET
[2010.04.01 21:29:48 | 000,000,000 | ---D | C] -- C:\Program Files\ESET
[2010.04.01 21:15:04 | 000,181,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MpSigStub.exe
[2010.04.01 21:14:50 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Local\Google
[2010.04.01 21:14:44 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Local\Deployment
[2010.04.01 21:10:56 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\ATI
[2010.04.01 21:10:56 | 000,000,000 | ---D | C] -- C:\ProgramData\ATI
[2010.04.01 21:10:55 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ATI Technologies
[2010.04.01 21:09:39 | 000,000,000 | -HSD | C] -- C:\Windows\Installer
[2010.04.01 21:09:38 | 000,000,000 | ---D | C] -- C:\Program Files\ATI
[2010.04.01 21:08:46 | 000,000,000 | ---D | C] -- C:\Program Files\ATI Technologies
[2010.04.01 21:08:06 | 000,000,000 | ---D | C] -- C:\ATI
[2010.04.01 21:07:33 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information
[2010.04.01 20:59:46 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\Identities
[2010.04.01 20:59:34 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Local\VirtualStore
[2010.04.01 20:59:32 | 000,000,000 | --SD | C] -- C:\Users\Renee\AppData\Roaming\Microsoft
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\AppData\Local\Temporary Internet Files
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\Šablony
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\Soubory cookie
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\SendTo
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\Poslední
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\Okolní tiskárny
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\Okolní síť
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\Nabídka Start
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\Local Settings
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\AppData\Local\History
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\Dokumenty
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\Data aplikací
[2010.04.01 20:59:32 | 000,000,000 | -HSD | C] -- C:\Users\Renee\AppData\Local\Data aplikací
[2010.04.01 20:59:32 | 000,000,000 | -H-D | C] -- C:\Users\Renee\AppData
[2010.04.01 20:59:32 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Local\Microsoft
[2010.04.01 20:59:32 | 000,000,000 | ---D | C] -- C:\Users\Renee\AppData\Roaming\Media Center Programs
[2010.04.01 20:59:15 | 000,000,000 | -HSD | C] -- C:\ProgramData\Šablony
[2010.04.01 20:59:15 | 000,000,000 | -HSD | C] -- C:\ProgramData\Plocha
[2010.04.01 20:59:15 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Obrázky
[2010.04.01 20:59:15 | 000,000,000 | -HSD | C] -- C:\ProgramData\Oblíbené položky
[2010.04.01 20:59:15 | 000,000,000 | -HSD | C] -- C:\ProgramData\Nabídka Start
[2010.04.01 20:59:15 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Hudba
[2010.04.01 20:59:15 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Filmy
[2010.04.01 20:59:15 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumenty
[2010.04.01 20:59:15 | 000,000,000 | -HSD | C] -- C:\ProgramData\Data aplikací
[2010.04.01 20:59:15 | 000,000,000 | ---D | C] -- C:\Recovery
[2010.04.01 20:53:53 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2010.04.01 20:50:50 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch
[2010.04.01 20:50:41 | 000,000,000 | -HSD | C] -- C:\System Volume Information

========== Files - Modified Within 30 Days ==========

[2010.04.29 19:35:36 | 001,310,720 | -HS- | M] () -- C:\Users\Renee\NTUSER.DAT
[2010.04.29 19:19:00 | 000,000,962 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3066638169-474057053-1295839724-1001UA.job
[2010.04.29 14:17:28 | 000,014,944 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2010.04.29 14:17:28 | 000,014,944 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2010.04.29 14:09:07 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2010.04.29 14:09:04 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010.04.29 14:08:59 | 1610,260,480 | -HS- | M] () -- C:\hiberfil.sys
[2010.04.28 23:39:24 | 001,782,175 | -H-- | M] () -- C:\Users\Renee\AppData\Local\IconCache.db
[2010.04.28 23:29:17 | 000,563,712 | ---- | M] (OldTimer Tools) -- C:\Users\Renee\Desktop\OTL.exe
[2010.04.28 22:24:34 | 000,001,518 | ---- | M] () -- C:\Users\Renee\Desktop\Renee.lnk
[2010.04.28 22:14:33 | 000,002,009 | ---- | M] () -- C:\Users\Renee\Desktop\Borderlands.lnk
[2010.04.27 21:29:00 | 000,000,910 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3066638169-474057053-1295839724-1001Core.job
[2010.04.27 16:02:53 | 000,000,098 | ---- | M] () -- C:\Windows\System32\drivers\etc\Hosts
[2010.04.27 15:58:11 | 000,000,000 | ---- | M] () -- C:\Windows\ativpsrm.bin
[2010.04.26 22:04:43 | 000,000,215 | ---- | M] () -- C:\Windows\system.ini
[2010.04.23 17:01:27 | 001,473,146 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI
[2010.04.23 17:01:27 | 000,631,116 | ---- | M] () -- C:\Windows\System32\perfh005.dat
[2010.04.23 17:01:27 | 000,615,760 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2010.04.23 17:01:27 | 000,123,556 | ---- | M] () -- C:\Windows\System32\perfc005.dat
[2010.04.23 17:01:27 | 000,107,396 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2010.04.23 14:48:12 | 000,138,184 | ---- | M] () -- C:\Windows\System32\drivers\PnkBstrK.sys
[2010.04.23 14:47:52 | 000,215,016 | ---- | M] () -- C:\Windows\System32\PnkBstrB.xtr
[2010.04.19 14:49:03 | 000,138,056 | ---- | M] () -- C:\Users\Renee\AppData\Roaming\PnkBstrK.sys
[2010.04.19 14:48:37 | 002,427,248 | ---- | M] () -- C:\Windows\System32\pbsvc_heroes.exe
[2010.04.18 20:11:25 | 000,009,728 | ---- | M] () -- C:\Windows\System32\BASSMOD.dll
[2010.04.02 22:33:04 | 000,001,061 | ---- | M] () -- C:\Users\Public\Desktop\GIMP 2.lnk
[2010.04.02 20:16:59 | 000,001,295 | ---- | M] () -- C:\Users\Public\Desktop\Just Cause 2.lnk
[2010.04.02 12:43:31 | 000,025,280 | ---- | M] (LogMeIn, Inc.) -- C:\Windows\System32\drivers\hamachi.sys
[2010.04.02 11:38:33 | 000,289,992 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2010.04.02 11:29:52 | 000,001,066 | ---- | M] () -- C:\Users\Public\Desktop\TmNationsForever.lnk
[2010.04.02 11:23:13 | 000,062,952 | ---- | M] () -- C:\Users\Renee\AppData\Local\GDIPFONTCACHEV1.DAT
[2010.04.02 11:13:07 | 000,000,017 | ---- | M] () -- C:\Users\Renee\AppData\Local\resmon.resmoncfg
[2010.04.02 00:49:16 | 000,060,416 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\ALCFDRTM.VER
[2010.04.02 00:48:26 | 000,060,416 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\ALCFDRTM.EXE
[2010.04.02 00:41:02 | 000,691,696 | ---- | M] () -- C:\Windows\System32\drivers\sptd.sys
[2010.04.01 23:38:50 | 000,524,288 | -HS- | M] () -- C:\Users\Renee\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000002.regtrans-ms
[2010.04.01 23:38:50 | 000,524,288 | -HS- | M] () -- C:\Users\Renee\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000001.regtrans-ms
[2010.04.01 23:38:50 | 000,065,536 | -HS- | M] () -- C:\Users\Renee\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TM.blf
[2010.04.01 21:06:18 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2010.04.01 20:59:32 | 000,000,020 | -HS- | M] () -- C:\Users\Renee\ntuser.ini
[2010.04.01 20:55:02 | 000,000,797 | ---- | M] () -- C:\Windows\System32\license.rtf

========== Files Created - No Company Name ==========

[2010.04.28 22:24:12 | 000,001,518 | ---- | C] () -- C:\Users\Renee\Desktop\Renee.lnk
[2010.04.28 22:14:33 | 000,002,009 | ---- | C] () -- C:\Users\Renee\Desktop\Borderlands.lnk
[2010.04.27 15:58:11 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2010.04.19 14:48:37 | 002,427,248 | ---- | C] () -- C:\Windows\System32\pbsvc_heroes.exe
[2010.04.18 20:11:25 | 000,009,728 | ---- | C] () -- C:\Windows\System32\BASSMOD.dll
[2010.04.04 10:44:37 | 000,138,184 | ---- | C] () -- C:\Windows\System32\drivers\PnkBstrK.sys
[2010.04.04 10:44:21 | 000,215,016 | ---- | C] () -- C:\Windows\System32\PnkBstrB.exe
[2010.04.04 10:44:20 | 000,075,064 | ---- | C] () -- C:\Windows\System32\PnkBstrA.exe
[2010.04.02 23:31:01 | 000,215,016 | ---- | C] () -- C:\Windows\System32\PnkBstrB.xtr
[2010.04.02 23:21:55 | 000,138,056 | ---- | C] () -- C:\Users\Renee\AppData\Roaming\PnkBstrK.sys
[2010.04.02 22:33:04 | 000,001,061 | ---- | C] () -- C:\Users\Public\Desktop\GIMP 2.lnk
[2010.04.02 20:16:59 | 000,001,295 | ---- | C] () -- C:\Users\Public\Desktop\Just Cause 2.lnk
[2010.04.02 18:22:52 | 000,372,736 | ---- | C] () -- C:\Windows\System32\toolbar2.ocx
[2010.04.02 11:29:52 | 000,001,066 | ---- | C] () -- C:\Users\Public\Desktop\TmNationsForever.lnk
[2010.04.02 11:13:07 | 000,000,017 | ---- | C] () -- C:\Users\Renee\AppData\Local\resmon.resmoncfg
[2010.04.02 00:41:02 | 000,691,696 | ---- | C] () -- C:\Windows\System32\drivers\sptd.sys
[2010.04.01 23:14:00 | 000,147,456 | ---- | C] () -- C:\Windows\System32\RtlCPAPI.dll
[2010.04.01 23:13:59 | 000,049,152 | ---- | C] () -- C:\Windows\System32\ChCfg.exe
[2010.04.01 23:13:57 | 000,141,016 | ---- | C] () -- C:\Windows\System32\alsndmgr.wav
[2010.04.01 21:14:53 | 000,000,962 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3066638169-474057053-1295839724-1001UA.job
[2010.04.01 21:14:52 | 000,000,910 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3066638169-474057053-1295839724-1001Core.job
[2010.04.01 21:06:18 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2010.04.01 20:59:32 | 001,310,720 | -HS- | C] () -- C:\Users\Renee\NTUSER.DAT
[2010.04.01 20:59:32 | 000,524,288 | -HS- | C] () -- C:\Users\Renee\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000002.regtrans-ms
[2010.04.01 20:59:32 | 000,524,288 | -HS- | C] () -- C:\Users\Renee\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000001.regtrans-ms
[2010.04.01 20:59:32 | 000,262,144 | -HS- | C] () -- C:\Users\Renee\ntuser.dat.LOG1
[2010.04.01 20:59:32 | 000,065,536 | -HS- | C] () -- C:\Users\Renee\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TM.blf
[2010.04.01 20:59:32 | 000,000,020 | -HS- | C] () -- C:\Users\Renee\ntuser.ini
[2010.04.01 20:59:32 | 000,000,000 | -HS- | C] () -- C:\Users\Renee\ntuser.dat.LOG2
[2010.04.01 20:50:41 | 1610,260,480 | -HS- | C] () -- C:\hiberfil.sys
[2009.07.14 01:51:43 | 000,073,728 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll
[2009.07.14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll
[2008.10.07 09:13:30 | 000,197,912 | ---- | C] () -- C:\Windows\System32\physxcudart_20.dll
[2008.10.07 09:13:22 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelTraditionalChinese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelSwedish.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelSpanish.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelSimplifiedChinese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelPortugese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelKorean.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelJapanese.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelGerman.dll
[2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelFrench.dll
[2004.08.13 09:56:20 | 000,005,810 | ---- | C] () -- C:\Windows\System32\drivers\ASACPI.sys

========== Custom Scans ==========


< :OTL >

< PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation) >

< PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) >

< >

< :Files >

< C:\Windows\ativpsrm.bin >
[2010.04.27 15:58:11 | 000,000,000 | ---- | M] () -- C:\Windows\ativpsrm.bin

< >

< :Reg >

< :Commands >

< [purity] >

< [emptytemp] >

< [start explorer] >

< [Reboot] >
< End of report >

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43295
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: kontrola z důvodu jedné nefunkční internetové stránky

Příspěvekod jaro3 » 29 dub 2010 20:48

To je OK, ale přečti ještě jednou , co jsem Ti radil , toto si dal znovu jen log ze skenu...
Zkus to ještě jednou.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
Renee
Level 2
Level 2
Příspěvky: 211
Registrován: srpen 09
Pohlaví: Muž
Stav:
Offline

Re: kontrola z důvodu jedné nefunkční internetové stránky

Příspěvekod Renee » 29 dub 2010 21:23

omlouvám se, nepřečetl jsem si pořádně, co jsi mi radil... :oops: tady je log z opravy (wow, 336 mb?):

All processes killed
========== OTL ==========
Process explorer.exe killed successfully!
No active process named firefox.exe was found!
========== FILES ==========
C:\Windows\ativpsrm.bin moved successfully.
========== REGISTRY ==========
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Public
->Temp folder emptied: 0 bytes

User: Renee
->Temp folder emptied: 532980 bytes
->Temporary Internet Files folder emptied: 4144352 bytes
->Google Chrome cache emptied: 347435158 bytes
->Flash cache emptied: 1567 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 4946 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 336,00 mb


OTL by OldTimer - Version 3.2.3.0 log created on 04292010_211551

Files\Folders moved on Reboot...

Registry entries deleted on Reboot...

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43295
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: kontrola z důvodu jedné nefunkční internetové stránky

Příspěvekod jaro3 » 29 dub 2010 21:47

Smaž složku:
C:\_OTL

Vypni si rez.ochrany i firewall.
Stáhni si Dr. Web CureIt
dej update , po aktualizaci dej start.
Tlacitky dole muzeš soubor léčit(systémové soubory), smazat, přesunout nebo přejmenovat

Spusť F-Secure Online Scanner

Tento skener je možno použít jen v prohlížeči Internet Explorer( není již podmínkou)! Postupuj podle instrukcí na stránce F-Secure pro správnou instalaci. Akceptuj licenci. Po instalaci ActiveX, klikni na Full System Scan. Když stahování skončeno, automaticky začne sken . Vyčkej konce skenu, po jeho dobu neprováděj jiné operace ani neklikej myší. Když skončí sken klikni na tlačítko Automatic clearing (recommended). Poté klikni na tlačítko Show Report a zkopíruj a vlož sem .
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
Renee
Level 2
Level 2
Příspěvky: 211
Registrován: srpen 09
Pohlaví: Muž
Stav:
Offline

Re: kontrola z důvodu jedné nefunkční internetové stránky

Příspěvekod Renee » 30 dub 2010 19:37

Dr.Web shledal můj počítač čistým, online scanner začal nadějně, ale na 15% zkejsnul 9 hodin u souboru, jehož jméno jsem nejspíš zapomněl, ale mělo to něco společného s on-screen keyboard... k logu jsem se tedy nedostal. mám zkoušet dál?


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 4 hosti