Stáhni si OTL
na plochu. Ujisti se , že máš zavřena všechna ostatní okna a poklepej na ikonu OTL.Nahoře v okně pod Výstup klikni na minimální výstup.Pod Běžné registry změň na Vše. Zatrhni Kontrola na havěť “LOP“ a Kontrola na havěť “ Purity“ . Klikni na Prohledat. Všechny ostatní nastavení ponech jak jsou. Sken může trvat dlouho, až skončí otevřou se dva logy:
OTL.Txt
Extras.Txt
Jsou uloženy ve stejném místě jako OTL. Oba logy sem prosím zkopíruj.
Zlobí UAC (řízení uživatelských účtů)
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43294
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Zlobí UAC (řízení uživatelských účtů)
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Zlobí UAC (řízení uživatelských účtů)
OTL.txt
Celý log má víc znaku než se do sem vejde tak sem ho musel rozpůlit.
OTL logfile created on: 19.10.2010 7:23:03 - Run 1
OTL by OldTimer - Version 3.2.15.2 Folder = C:\Users\MIKES\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18975)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 62,00% Memory free
6,00 Gb Paging File | 5,00 Gb Available in Paging File | 81,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 465,76 Gb Total Space | 105,37 Gb Free Space | 22,62% Space Free | Partition Type: NTFS
Computer Name: MIKES-PC | User Name: MIKES | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - C:\Users\MIKES\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)
PRC - C:\Program Files\GameTracker\GSInGameService.exe (ClanServers Hosting LLC)
PRC - C:\Windows\System32\atieclxx.exe (AMD)
PRC - C:\Windows\System32\atiesrxx.exe (AMD)
PRC - C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
PRC - C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
PRC - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe (ESET)
PRC - C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET)
PRC - C:\Windows\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe (Nero AG)
PRC - C:\Program Files\Autodesk\3ds Max 2010\mentalray\satellite\raysat_3dsmax2010_32server.exe ()
PRC - C:\Program Files\Creative\USB Headsets\Volume Panel\VolPanlu.exe (Creative Technology Ltd)
PRC - C:\Program Files\Intel\inteldh\common\SWUpdateClient.exe (Intel(R) Corporation)
PRC - C:\Program Files\Intel\inteldh\msm\MSM.exe (Intel(R) Corporation)
PRC - C:\Program Files\Intel\inteldh\common\IntelDHSvcMgr.exe (Intel(R) Corporation)
PRC - C:\Program Files\Intel\AMT\LMS.exe (Intel Corporation)
PRC - C:\Program Files\Creative\Shared Files\CTAudSvc.exe (Creative Technology Ltd)
PRC - C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
PRC - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe (Lavasoft)
PRC - C:\Program Files\Canon\IJPLM\ijplmsvc.exe ()
PRC - C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe (Pinnacle Systems GmbH)
PRC - C:\Program Files\ScanSoft\OmniPageSE4\OpWareSE4.exe (Nuance Communications, Inc.)
========== Modules (SafeList) ==========
MOD - C:\Users\MIKES\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18305_none_5cb72f2a088b0ed3\comctl32.dll (Microsoft Corporation)
MOD - C:\Windows\System32\msscript.ocx (Microsoft Corporation)
========== Win32 Services (SafeList) ==========
SRV - (Akamai) -- c:\Program Files\Common Files\Akamai\netsession_win_062a651.dll ()
SRV - (Steam Client Service) -- C:\Program Files\Common Files\Steam\SteamService.exe (Valve Corporation)
SRV - (Apple Mobile Device) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)
SRV - (Creative Media Toolbox 6 Licensing Service) -- C:\Program Files\Common Files\Creative Labs Shared\Service\MT6Licensing.exe (Creative Labs)
SRV - (Creative Audio Engine Licensing Service) -- C:\Program Files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe (Creative Labs)
SRV - (WAS) -- C:\Windows\System32\inetsrv\iisw3adm.dll (Microsoft Corporation)
SRV - (W3SVC) -- C:\Windows\System32\inetsrv\iisw3adm.dll (Microsoft Corporation)
SRV - (GS In-Game Service) -- C:\Program Files\GameTracker\GSInGameService.exe (ClanServers Hosting LLC)
SRV - (AMD External Events Utility) -- C:\Windows\System32\atiesrxx.exe (AMD)
SRV - (FLEXnet Licensing Service) -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Acresso Software Inc.)
SRV - (EHttpSrv) -- C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe (ESET)
SRV - (ekrn) -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe (ESET)
SRV - (FontCache) -- C:\Windows\System32\FntCache.dll (Microsoft Corporation)
SRV - (Nero BackItUp Scheduler 4.0) -- C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe (Nero AG)
SRV - (AppHostSvc) -- C:\Windows\System32\inetsrv\apphostsvc.dll (Microsoft Corporation)
SRV - (mi-raysat_3dsmax2010_32) -- C:\Program Files\Autodesk\3ds Max 2010\mentalray\satellite\raysat_3dsmax2010_32server.exe ()
SRV - (ME Services Manager) -- C:\Program Files\Intel\inteldh\msm\MSM.exe (Intel(R) Corporation)
SRV - (Software Services Manager) -- C:\Program Files\Intel\inteldh\common\IntelDHSvcMgr.exe (Intel(R) Corporation)
SRV - (LMS) Intel(R) -- C:\Program Files\Intel\AMT\LMS.exe (Intel Corporation)
SRV - (CTAudSvcService) -- C:\Program Files\Creative\Shared Files\CTAudSvc.exe (Creative Technology Ltd)
SRV - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV - (aawservice) -- C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe (Lavasoft)
SRV - (pr2agmlb) Armed Assault Drivers Auto Removal (pr2agmlb) -- C:\Windows\System32\pr2agmlb.exe (Bohemia Interactive)
SRV - (IJPLMSVC) -- C:\Program Files\Canon\IJPLM\ijplmsvc.exe ()
SRV - (MSSQL$SONY_MEDIAMGR) -- C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe (Microsoft Corporation)
SRV - (SQLAgent$SONY_MEDIAMGR) -- C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlagent.EXE (Microsoft Corporation)
========== Driver Services (SafeList) ==========
DRV - (NwlnkFwd) -- C:\Windows\System32\DRIVERS\nwlnkfwd.sys File not found
DRV - (NwlnkFlt) -- C:\Windows\System32\DRIVERS\nwlnkflt.sys File not found
DRV - (IpInIp) -- C:\Windows\System32\DRIVERS\ipinip.sys File not found
DRV - (IntcAzAudAddService) Service for Realtek HD Audio (WDM) -- C:\Windows\System32\drivers\RTKVHDA.sys File not found
DRV - (eamonm) -- C:\Windows\System32\DRIVERS\eamonm.sys File not found
DRV - (catchme) -- C:\ComboFix\catchme.sys File not found
DRV - (sptd) -- C:\Windows\System32\Drivers\sptd.sys ()
DRV - (SASKUTIL) -- C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS (SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (TotRec8) -- C:\Windows\System32\drivers\TotRec8.sys (High Criteria inc.)
DRV - (TotRec7) -- C:\Windows\System32\drivers\TotRec7.sys (High Criteria inc.)
DRV - (atikmdag) -- C:\Windows\System32\drivers\atikmdag.sys (ATI Technologies Inc.)
DRV - (amdkmdag) -- C:\Windows\System32\drivers\atikmdag.sys (ATI Technologies Inc.)
DRV - (amdkmdap) -- C:\Windows\System32\drivers\atikmpag.sys (Advanced Micro Devices, Inc.)
DRV - (SASDIFSV) -- C:\Program Files\SUPERAntiSpyware\sasdifsv.sys (SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (atksgt) -- C:\Windows\System32\drivers\atksgt.sys ()
DRV - (lirsgt) -- C:\Windows\System32\drivers\lirsgt.sys ()
DRV - (SCDEmu) -- C:\Windows\System32\drivers\scdemu.sys (PowerISO Computing, Inc.)
DRV - (ffire) -- C:\Windows\system32\DRIVERS\ffirel.sys (Windows (R) Codename Longhorn DDK provider)
DRV - (usbaudio) Ovladač zvuků USB (WDM) -- C:\Windows\System32\drivers\USBAUDIO.sys (Microsoft Corporation)
DRV - (NAL) -- C:\Windows\System32\drivers\iqvw32.sys (Intel Corporation )
DRV - (e1yexpress) Intel(R) -- C:\Windows\System32\drivers\e1y6032.sys (Intel Corporation)
DRV - (skfiltv) -- C:\Windows\System32\drivers\skfiltv.sys (Creative Technology Ltd.)
DRV - (adfs) -- C:\Windows\System32\drivers\adfs.sys (Adobe Systems, Inc.)
DRV - (HECI) Intel(R) -- C:\Windows\System32\drivers\HECI.sys (Intel Corporation)
DRV - (MegaSR) -- C:\Windows\system32\drivers\megasr.sys (LSI Corporation, Inc.)
DRV - (adpu320) -- C:\Windows\system32\drivers\adpu320.sys (Adaptec, Inc.)
DRV - (megasas) -- C:\Windows\system32\drivers\megasas.sys (LSI Corporation)
DRV - (adpu160m) -- C:\Windows\system32\drivers\adpu160m.sys (Adaptec, Inc.)
DRV - (SiSRaid4) -- C:\Windows\system32\drivers\sisraid4.sys (Silicon Integrated Systems)
DRV - (HpCISSs) -- C:\Windows\system32\drivers\hpcisss.sys (Hewlett-Packard Company)
DRV - (adpahci) -- C:\Windows\system32\drivers\adpahci.sys (Adaptec, Inc.)
DRV - (LSI_SAS) -- C:\Windows\system32\drivers\lsi_sas.sys (LSI Logic)
DRV - (ql2300) -- C:\Windows\system32\drivers\ql2300.sys (QLogic Corporation)
DRV - (E1G60) Intel(R) -- C:\Windows\System32\drivers\E1G60I32.sys (Intel Corporation)
DRV - (arcsas) -- C:\Windows\system32\drivers\arcsas.sys (Adaptec, Inc.)
DRV - (iaStorV) -- C:\Windows\system32\drivers\iastorv.sys (Intel Corporation)
DRV - (vsmraid) -- C:\Windows\system32\drivers\vsmraid.sys (VIA Technologies Inc.,Ltd)
DRV - (ulsata2) -- C:\Windows\system32\drivers\ulsata2.sys (Promise Technology, Inc.)
DRV - (LSI_SCSI) -- C:\Windows\system32\drivers\lsi_scsi.sys (LSI Logic)
DRV - (LSI_FC) -- C:\Windows\system32\drivers\lsi_fc.sys (LSI Logic)
DRV - (arc) -- C:\Windows\system32\drivers\arc.sys (Adaptec, Inc.)
DRV - (elxstor) -- C:\Windows\system32\drivers\elxstor.sys (Emulex)
DRV - (adp94xx) -- C:\Windows\system32\drivers\adp94xx.sys (Adaptec, Inc.)
DRV - (nvraid) -- C:\Windows\system32\drivers\nvraid.sys (NVIDIA Corporation)
DRV - (nvstor) -- C:\Windows\system32\drivers\nvstor.sys (NVIDIA Corporation)
DRV - (uliahci) -- C:\Windows\system32\drivers\uliahci.sys (ULi Electronics Inc.)
DRV - (viaide) -- C:\Windows\system32\drivers\viaide.sys (VIA Technologies, Inc.)
DRV - (cmdide) -- C:\Windows\system32\drivers\cmdide.sys (CMD Technology, Inc.)
DRV - (aliide) -- C:\Windows\system32\drivers\aliide.sys (Acer Laboratories Inc.)
DRV - (CrystalSysInfo) -- C:\Program Files\MediaCoder\SysInfo.sys ()
DRV - (Ad-Watch Connect Filter) -- C:\Windows\System32\drivers\NSDriver.sys (Lavasoft AB)
DRV - (pe3agmlb) Armed Assault Environment Driver (pe3agmlb) -- C:\Windows\system32\drivers\pe3agmlb.sys (Bohemia Interactive)
DRV - (ps6agmlb) Armed Assault Synchronization Driver (ps6agmlb) -- C:\Windows\system32\drivers\ps6agmlb.sys (Bohemia Interactive)
DRV - (Ph3xIB32) -- C:\Windows\System32\drivers\Ph3xIB32.sys (Philips Semiconductors GmbH)
DRV - (ql40xx) -- C:\Windows\system32\drivers\ql40xx.sys (QLogic Corporation)
DRV - (UlSata) -- C:\Windows\system32\drivers\ulsata.sys (Promise Technology, Inc.)
DRV - (nfrd960) -- C:\Windows\system32\drivers\nfrd960.sys (IBM Corporation)
DRV - (iirsp) -- C:\Windows\system32\drivers\iirsp.sys (Intel Corp./ICP vortex GmbH)
DRV - (aic78xx) -- C:\Windows\system32\drivers\djsvs.sys (Adaptec, Inc.)
DRV - (iteraid) -- C:\Windows\system32\drivers\iteraid.sys (Integrated Technology Express, Inc.)
DRV - (iteatapi) -- C:\Windows\system32\drivers\iteatapi.sys (Integrated Technology Express, Inc.)
DRV - (Symc8xx) -- C:\Windows\system32\drivers\symc8xx.sys (LSI Logic)
DRV - (Sym_u3) -- C:\Windows\system32\drivers\sym_u3.sys (LSI Logic)
DRV - (Mraid35x) -- C:\Windows\system32\drivers\mraid35x.sys (LSI Logic Corporation)
DRV - (Sym_hi) -- C:\Windows\system32\drivers\sym_hi.sys (LSI Logic)
DRV - (Brserid) Brother MFC Serial Port Interface Driver (WDM) -- C:\Windows\system32\drivers\brserid.sys (Brother Industries Ltd.)
DRV - (BrUsbSer) -- C:\Windows\system32\drivers\brusbser.sys (Brother Industries Ltd.)
DRV - (BrFiltUp) -- C:\Windows\system32\drivers\brfiltup.sys (Brother Industries, Ltd.)
DRV - (BrFiltLo) -- C:\Windows\system32\drivers\brfiltlo.sys (Brother Industries, Ltd.)
DRV - (BrSerWdm) -- C:\Windows\system32\drivers\brserwdm.sys (Brother Industries Ltd.)
DRV - (BrUsbMdm) -- C:\Windows\system32\drivers\brusbmdm.sys (Brother Industries Ltd.)
DRV - (ntrigdigi) -- C:\Windows\system32\drivers\ntrigdigi.sys (N-trig Innovative Technologies)
DRV - (MarvinBus) -- C:\Windows\System32\drivers\MarvinBus.sys (Pinnacle Systems GmbH)
DRV - (Hardlock) -- C:\Windows\System32\drivers\hardlock.sys (Aladdin Knowledge Systems Ltd.)
========== Standard Registry (All) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SYSTEM32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SYSTEM32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\System32\ieframe.dll (Microsoft Corporation)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "ICQ Search"
FF - prefs.js..browser.search.defaultthis.engineName: "XfireXO Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2304157&SearchSource=3&q={searchTerms}"
FF - prefs.js..browser.search.selectedEngine: "ICQ Search"
FF - prefs.js..browser.startup.homepage: "http://www.seznam.cz/"
FF - prefs.js..keyword.URL: "http://search.icq.com/search/afe_results.php?ch_id=afex&q="
FF - HKLM\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b}: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2009.12.16 11:24:01 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.19\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010.07.02 22:21:09 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.19\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010.07.30 21:05:46 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2010.10.17 14:11:26 | 000,000,000 | ---D | M]
[2009.12.17 14:27:26 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\mozilla\Extensions
[2009.12.17 14:27:26 | 000,000,000 | ---D | M] (No name found) -- C:\Users\MIKES\AppData\Roaming\mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2010.10.18 13:51:05 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\mozilla\Firefox\Profiles\6z5ko3tl.default\extensions
[2009.12.17 14:28:43 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\MIKES\AppData\Roaming\mozilla\Firefox\Profiles\6z5ko3tl.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010.03.22 16:23:33 | 000,000,000 | ---D | M] (XfireXO Toolbar) -- C:\Users\MIKES\AppData\Roaming\mozilla\Firefox\Profiles\6z5ko3tl.default\extensions\{5e5ab302-7f65-44cd-8211-c1d4caaccea3}
[2010.07.18 17:59:22 | 000,000,000 | ---D | M] (BS Player Toolbar) -- C:\Users\MIKES\AppData\Roaming\mozilla\Firefox\Profiles\6z5ko3tl.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}
[2010.08.07 14:42:39 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\mozilla\Firefox\Profiles\6z5ko3tl.default\extensions\ffxtlbr@Facemoods.com
[2010.08.27 14:16:14 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\mozilla\Firefox\Profiles\6z5ko3tl.default\extensions\radiobar@toolbar
[2010.10.03 10:21:16 | 000,002,385 | ---- | M] () -- C:\Users\MIKES\AppData\Roaming\Mozilla\FireFox\Profiles\6z5ko3tl.default\searchplugins\askcom.xml
[2010.03.16 12:31:34 | 000,000,917 | ---- | M] () -- C:\Users\MIKES\AppData\Roaming\Mozilla\FireFox\Profiles\6z5ko3tl.default\searchplugins\conduit.xml
[2010.10.17 14:20:49 | 000,002,059 | ---- | M] () -- C:\Users\MIKES\AppData\Roaming\Mozilla\FireFox\Profiles\6z5ko3tl.default\searchplugins\daemon-search.xml
[2010.10.13 18:10:15 | 000,000,950 | ---- | M] () -- C:\Users\MIKES\AppData\Roaming\Mozilla\FireFox\Profiles\6z5ko3tl.default\searchplugins\icqplugin-1.xml
[2010.01.09 10:38:15 | 000,000,950 | ---- | M] () -- C:\Users\MIKES\AppData\Roaming\Mozilla\FireFox\Profiles\6z5ko3tl.default\searchplugins\icqplugin-2.xml
[2010.03.08 08:42:32 | 000,000,950 | ---- | M] () -- C:\Users\MIKES\AppData\Roaming\Mozilla\FireFox\Profiles\6z5ko3tl.default\searchplugins\icqplugin-3.xml
[2010.04.02 11:13:26 | 000,000,950 | ---- | M] () -- C:\Users\MIKES\AppData\Roaming\Mozilla\FireFox\Profiles\6z5ko3tl.default\searchplugins\icqplugin-4.xml
[2010.10.13 12:15:52 | 000,000,950 | ---- | M] () -- C:\Users\MIKES\AppData\Roaming\Mozilla\FireFox\Profiles\6z5ko3tl.default\searchplugins\icqplugin-5.xml
[2009.10.14 19:13:26 | 000,000,944 | ---- | M] () -- C:\Users\MIKES\AppData\Roaming\Mozilla\FireFox\Profiles\6z5ko3tl.default\searchplugins\icqplugin.xml
[2010.08.27 14:16:35 | 000,001,589 | ---- | M] () -- C:\Users\MIKES\AppData\Roaming\Mozilla\FireFox\Profiles\6z5ko3tl.default\searchplugins\web-search.xml
[2010.10.03 15:16:17 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2009.12.17 14:33:58 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
[2010.04.01 18:41:06 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2010.07.03 15:17:14 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2010.08.22 13:25:25 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2010.04.01 18:40:53 | 000,023,000 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\browserdirprovider.dll
[2010.04.01 18:40:53 | 000,134,616 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\brwsrcmp.dll
[2007.04.10 17:21:08 | 000,163,256 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Mozilla Firefox\plugins\np-mswmp.dll
[2007.04.30 16:29:22 | 000,049,152 | ---- | M] (Adobe Systems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\np32dsw.dll
[2010.07.17 05:00:04 | 000,423,656 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
[2010.04.01 18:40:57 | 000,065,496 | ---- | M] (mozilla.org) -- C:\Program Files\Mozilla Firefox\plugins\npnul32.dll
[2006.10.26 21:12:16 | 000,016,192 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Mozilla Firefox\plugins\NPOFF12.DLL
[2010.07.02 22:21:08 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll
[2010.07.02 22:21:09 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll
[2010.07.02 22:21:09 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
[2010.07.02 22:21:09 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll
[2010.07.02 22:21:09 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll
[2010.07.02 22:21:09 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll
[2010.07.02 22:21:09 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll
[2010.04.01 18:40:57 | 000,001,706 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\google.xml
[2010.04.01 18:40:57 | 000,000,638 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\jyxo-cz.xml
[2010.04.01 18:40:57 | 000,001,687 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\mall-cz.xml
[2010.04.01 18:40:57 | 000,001,367 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\seznam-cz.xml
[2010.04.01 18:40:57 | 000,000,654 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\slunecnice-cz.xml
[2010.04.01 18:40:57 | 000,001,179 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-cz.xml
Celý log má víc znaku než se do sem vejde tak sem ho musel rozpůlit.
OTL logfile created on: 19.10.2010 7:23:03 - Run 1
OTL by OldTimer - Version 3.2.15.2 Folder = C:\Users\MIKES\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18975)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 62,00% Memory free
6,00 Gb Paging File | 5,00 Gb Available in Paging File | 81,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 465,76 Gb Total Space | 105,37 Gb Free Space | 22,62% Space Free | Partition Type: NTFS
Computer Name: MIKES-PC | User Name: MIKES | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - C:\Users\MIKES\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)
PRC - C:\Program Files\GameTracker\GSInGameService.exe (ClanServers Hosting LLC)
PRC - C:\Windows\System32\atieclxx.exe (AMD)
PRC - C:\Windows\System32\atiesrxx.exe (AMD)
PRC - C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
PRC - C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
PRC - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe (ESET)
PRC - C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET)
PRC - C:\Windows\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe (Nero AG)
PRC - C:\Program Files\Autodesk\3ds Max 2010\mentalray\satellite\raysat_3dsmax2010_32server.exe ()
PRC - C:\Program Files\Creative\USB Headsets\Volume Panel\VolPanlu.exe (Creative Technology Ltd)
PRC - C:\Program Files\Intel\inteldh\common\SWUpdateClient.exe (Intel(R) Corporation)
PRC - C:\Program Files\Intel\inteldh\msm\MSM.exe (Intel(R) Corporation)
PRC - C:\Program Files\Intel\inteldh\common\IntelDHSvcMgr.exe (Intel(R) Corporation)
PRC - C:\Program Files\Intel\AMT\LMS.exe (Intel Corporation)
PRC - C:\Program Files\Creative\Shared Files\CTAudSvc.exe (Creative Technology Ltd)
PRC - C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
PRC - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe (Lavasoft)
PRC - C:\Program Files\Canon\IJPLM\ijplmsvc.exe ()
PRC - C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe (Pinnacle Systems GmbH)
PRC - C:\Program Files\ScanSoft\OmniPageSE4\OpWareSE4.exe (Nuance Communications, Inc.)
========== Modules (SafeList) ==========
MOD - C:\Users\MIKES\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18305_none_5cb72f2a088b0ed3\comctl32.dll (Microsoft Corporation)
MOD - C:\Windows\System32\msscript.ocx (Microsoft Corporation)
========== Win32 Services (SafeList) ==========
SRV - (Akamai) -- c:\Program Files\Common Files\Akamai\netsession_win_062a651.dll ()
SRV - (Steam Client Service) -- C:\Program Files\Common Files\Steam\SteamService.exe (Valve Corporation)
SRV - (Apple Mobile Device) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)
SRV - (Creative Media Toolbox 6 Licensing Service) -- C:\Program Files\Common Files\Creative Labs Shared\Service\MT6Licensing.exe (Creative Labs)
SRV - (Creative Audio Engine Licensing Service) -- C:\Program Files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe (Creative Labs)
SRV - (WAS) -- C:\Windows\System32\inetsrv\iisw3adm.dll (Microsoft Corporation)
SRV - (W3SVC) -- C:\Windows\System32\inetsrv\iisw3adm.dll (Microsoft Corporation)
SRV - (GS In-Game Service) -- C:\Program Files\GameTracker\GSInGameService.exe (ClanServers Hosting LLC)
SRV - (AMD External Events Utility) -- C:\Windows\System32\atiesrxx.exe (AMD)
SRV - (FLEXnet Licensing Service) -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Acresso Software Inc.)
SRV - (EHttpSrv) -- C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe (ESET)
SRV - (ekrn) -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe (ESET)
SRV - (FontCache) -- C:\Windows\System32\FntCache.dll (Microsoft Corporation)
SRV - (Nero BackItUp Scheduler 4.0) -- C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe (Nero AG)
SRV - (AppHostSvc) -- C:\Windows\System32\inetsrv\apphostsvc.dll (Microsoft Corporation)
SRV - (mi-raysat_3dsmax2010_32) -- C:\Program Files\Autodesk\3ds Max 2010\mentalray\satellite\raysat_3dsmax2010_32server.exe ()
SRV - (ME Services Manager) -- C:\Program Files\Intel\inteldh\msm\MSM.exe (Intel(R) Corporation)
SRV - (Software Services Manager) -- C:\Program Files\Intel\inteldh\common\IntelDHSvcMgr.exe (Intel(R) Corporation)
SRV - (LMS) Intel(R) -- C:\Program Files\Intel\AMT\LMS.exe (Intel Corporation)
SRV - (CTAudSvcService) -- C:\Program Files\Creative\Shared Files\CTAudSvc.exe (Creative Technology Ltd)
SRV - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV - (aawservice) -- C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe (Lavasoft)
SRV - (pr2agmlb) Armed Assault Drivers Auto Removal (pr2agmlb) -- C:\Windows\System32\pr2agmlb.exe (Bohemia Interactive)
SRV - (IJPLMSVC) -- C:\Program Files\Canon\IJPLM\ijplmsvc.exe ()
SRV - (MSSQL$SONY_MEDIAMGR) -- C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe (Microsoft Corporation)
SRV - (SQLAgent$SONY_MEDIAMGR) -- C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlagent.EXE (Microsoft Corporation)
========== Driver Services (SafeList) ==========
DRV - (NwlnkFwd) -- C:\Windows\System32\DRIVERS\nwlnkfwd.sys File not found
DRV - (NwlnkFlt) -- C:\Windows\System32\DRIVERS\nwlnkflt.sys File not found
DRV - (IpInIp) -- C:\Windows\System32\DRIVERS\ipinip.sys File not found
DRV - (IntcAzAudAddService) Service for Realtek HD Audio (WDM) -- C:\Windows\System32\drivers\RTKVHDA.sys File not found
DRV - (eamonm) -- C:\Windows\System32\DRIVERS\eamonm.sys File not found
DRV - (catchme) -- C:\ComboFix\catchme.sys File not found
DRV - (sptd) -- C:\Windows\System32\Drivers\sptd.sys ()
DRV - (SASKUTIL) -- C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS (SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (TotRec8) -- C:\Windows\System32\drivers\TotRec8.sys (High Criteria inc.)
DRV - (TotRec7) -- C:\Windows\System32\drivers\TotRec7.sys (High Criteria inc.)
DRV - (atikmdag) -- C:\Windows\System32\drivers\atikmdag.sys (ATI Technologies Inc.)
DRV - (amdkmdag) -- C:\Windows\System32\drivers\atikmdag.sys (ATI Technologies Inc.)
DRV - (amdkmdap) -- C:\Windows\System32\drivers\atikmpag.sys (Advanced Micro Devices, Inc.)
DRV - (SASDIFSV) -- C:\Program Files\SUPERAntiSpyware\sasdifsv.sys (SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (atksgt) -- C:\Windows\System32\drivers\atksgt.sys ()
DRV - (lirsgt) -- C:\Windows\System32\drivers\lirsgt.sys ()
DRV - (SCDEmu) -- C:\Windows\System32\drivers\scdemu.sys (PowerISO Computing, Inc.)
DRV - (ffire) -- C:\Windows\system32\DRIVERS\ffirel.sys (Windows (R) Codename Longhorn DDK provider)
DRV - (usbaudio) Ovladač zvuků USB (WDM) -- C:\Windows\System32\drivers\USBAUDIO.sys (Microsoft Corporation)
DRV - (NAL) -- C:\Windows\System32\drivers\iqvw32.sys (Intel Corporation )
DRV - (e1yexpress) Intel(R) -- C:\Windows\System32\drivers\e1y6032.sys (Intel Corporation)
DRV - (skfiltv) -- C:\Windows\System32\drivers\skfiltv.sys (Creative Technology Ltd.)
DRV - (adfs) -- C:\Windows\System32\drivers\adfs.sys (Adobe Systems, Inc.)
DRV - (HECI) Intel(R) -- C:\Windows\System32\drivers\HECI.sys (Intel Corporation)
DRV - (MegaSR) -- C:\Windows\system32\drivers\megasr.sys (LSI Corporation, Inc.)
DRV - (adpu320) -- C:\Windows\system32\drivers\adpu320.sys (Adaptec, Inc.)
DRV - (megasas) -- C:\Windows\system32\drivers\megasas.sys (LSI Corporation)
DRV - (adpu160m) -- C:\Windows\system32\drivers\adpu160m.sys (Adaptec, Inc.)
DRV - (SiSRaid4) -- C:\Windows\system32\drivers\sisraid4.sys (Silicon Integrated Systems)
DRV - (HpCISSs) -- C:\Windows\system32\drivers\hpcisss.sys (Hewlett-Packard Company)
DRV - (adpahci) -- C:\Windows\system32\drivers\adpahci.sys (Adaptec, Inc.)
DRV - (LSI_SAS) -- C:\Windows\system32\drivers\lsi_sas.sys (LSI Logic)
DRV - (ql2300) -- C:\Windows\system32\drivers\ql2300.sys (QLogic Corporation)
DRV - (E1G60) Intel(R) -- C:\Windows\System32\drivers\E1G60I32.sys (Intel Corporation)
DRV - (arcsas) -- C:\Windows\system32\drivers\arcsas.sys (Adaptec, Inc.)
DRV - (iaStorV) -- C:\Windows\system32\drivers\iastorv.sys (Intel Corporation)
DRV - (vsmraid) -- C:\Windows\system32\drivers\vsmraid.sys (VIA Technologies Inc.,Ltd)
DRV - (ulsata2) -- C:\Windows\system32\drivers\ulsata2.sys (Promise Technology, Inc.)
DRV - (LSI_SCSI) -- C:\Windows\system32\drivers\lsi_scsi.sys (LSI Logic)
DRV - (LSI_FC) -- C:\Windows\system32\drivers\lsi_fc.sys (LSI Logic)
DRV - (arc) -- C:\Windows\system32\drivers\arc.sys (Adaptec, Inc.)
DRV - (elxstor) -- C:\Windows\system32\drivers\elxstor.sys (Emulex)
DRV - (adp94xx) -- C:\Windows\system32\drivers\adp94xx.sys (Adaptec, Inc.)
DRV - (nvraid) -- C:\Windows\system32\drivers\nvraid.sys (NVIDIA Corporation)
DRV - (nvstor) -- C:\Windows\system32\drivers\nvstor.sys (NVIDIA Corporation)
DRV - (uliahci) -- C:\Windows\system32\drivers\uliahci.sys (ULi Electronics Inc.)
DRV - (viaide) -- C:\Windows\system32\drivers\viaide.sys (VIA Technologies, Inc.)
DRV - (cmdide) -- C:\Windows\system32\drivers\cmdide.sys (CMD Technology, Inc.)
DRV - (aliide) -- C:\Windows\system32\drivers\aliide.sys (Acer Laboratories Inc.)
DRV - (CrystalSysInfo) -- C:\Program Files\MediaCoder\SysInfo.sys ()
DRV - (Ad-Watch Connect Filter) -- C:\Windows\System32\drivers\NSDriver.sys (Lavasoft AB)
DRV - (pe3agmlb) Armed Assault Environment Driver (pe3agmlb) -- C:\Windows\system32\drivers\pe3agmlb.sys (Bohemia Interactive)
DRV - (ps6agmlb) Armed Assault Synchronization Driver (ps6agmlb) -- C:\Windows\system32\drivers\ps6agmlb.sys (Bohemia Interactive)
DRV - (Ph3xIB32) -- C:\Windows\System32\drivers\Ph3xIB32.sys (Philips Semiconductors GmbH)
DRV - (ql40xx) -- C:\Windows\system32\drivers\ql40xx.sys (QLogic Corporation)
DRV - (UlSata) -- C:\Windows\system32\drivers\ulsata.sys (Promise Technology, Inc.)
DRV - (nfrd960) -- C:\Windows\system32\drivers\nfrd960.sys (IBM Corporation)
DRV - (iirsp) -- C:\Windows\system32\drivers\iirsp.sys (Intel Corp./ICP vortex GmbH)
DRV - (aic78xx) -- C:\Windows\system32\drivers\djsvs.sys (Adaptec, Inc.)
DRV - (iteraid) -- C:\Windows\system32\drivers\iteraid.sys (Integrated Technology Express, Inc.)
DRV - (iteatapi) -- C:\Windows\system32\drivers\iteatapi.sys (Integrated Technology Express, Inc.)
DRV - (Symc8xx) -- C:\Windows\system32\drivers\symc8xx.sys (LSI Logic)
DRV - (Sym_u3) -- C:\Windows\system32\drivers\sym_u3.sys (LSI Logic)
DRV - (Mraid35x) -- C:\Windows\system32\drivers\mraid35x.sys (LSI Logic Corporation)
DRV - (Sym_hi) -- C:\Windows\system32\drivers\sym_hi.sys (LSI Logic)
DRV - (Brserid) Brother MFC Serial Port Interface Driver (WDM) -- C:\Windows\system32\drivers\brserid.sys (Brother Industries Ltd.)
DRV - (BrUsbSer) -- C:\Windows\system32\drivers\brusbser.sys (Brother Industries Ltd.)
DRV - (BrFiltUp) -- C:\Windows\system32\drivers\brfiltup.sys (Brother Industries, Ltd.)
DRV - (BrFiltLo) -- C:\Windows\system32\drivers\brfiltlo.sys (Brother Industries, Ltd.)
DRV - (BrSerWdm) -- C:\Windows\system32\drivers\brserwdm.sys (Brother Industries Ltd.)
DRV - (BrUsbMdm) -- C:\Windows\system32\drivers\brusbmdm.sys (Brother Industries Ltd.)
DRV - (ntrigdigi) -- C:\Windows\system32\drivers\ntrigdigi.sys (N-trig Innovative Technologies)
DRV - (MarvinBus) -- C:\Windows\System32\drivers\MarvinBus.sys (Pinnacle Systems GmbH)
DRV - (Hardlock) -- C:\Windows\System32\drivers\hardlock.sys (Aladdin Knowledge Systems Ltd.)
========== Standard Registry (All) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SYSTEM32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SYSTEM32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\System32\ieframe.dll (Microsoft Corporation)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "ICQ Search"
FF - prefs.js..browser.search.defaultthis.engineName: "XfireXO Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2304157&SearchSource=3&q={searchTerms}"
FF - prefs.js..browser.search.selectedEngine: "ICQ Search"
FF - prefs.js..browser.startup.homepage: "http://www.seznam.cz/"
FF - prefs.js..keyword.URL: "http://search.icq.com/search/afe_results.php?ch_id=afex&q="
FF - HKLM\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b}: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2009.12.16 11:24:01 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.19\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010.07.02 22:21:09 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.19\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010.07.30 21:05:46 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2010.10.17 14:11:26 | 000,000,000 | ---D | M]
[2009.12.17 14:27:26 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\mozilla\Extensions
[2009.12.17 14:27:26 | 000,000,000 | ---D | M] (No name found) -- C:\Users\MIKES\AppData\Roaming\mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2010.10.18 13:51:05 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\mozilla\Firefox\Profiles\6z5ko3tl.default\extensions
[2009.12.17 14:28:43 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\MIKES\AppData\Roaming\mozilla\Firefox\Profiles\6z5ko3tl.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010.03.22 16:23:33 | 000,000,000 | ---D | M] (XfireXO Toolbar) -- C:\Users\MIKES\AppData\Roaming\mozilla\Firefox\Profiles\6z5ko3tl.default\extensions\{5e5ab302-7f65-44cd-8211-c1d4caaccea3}
[2010.07.18 17:59:22 | 000,000,000 | ---D | M] (BS Player Toolbar) -- C:\Users\MIKES\AppData\Roaming\mozilla\Firefox\Profiles\6z5ko3tl.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}
[2010.08.07 14:42:39 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\mozilla\Firefox\Profiles\6z5ko3tl.default\extensions\ffxtlbr@Facemoods.com
[2010.08.27 14:16:14 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\mozilla\Firefox\Profiles\6z5ko3tl.default\extensions\radiobar@toolbar
[2010.10.03 10:21:16 | 000,002,385 | ---- | M] () -- C:\Users\MIKES\AppData\Roaming\Mozilla\FireFox\Profiles\6z5ko3tl.default\searchplugins\askcom.xml
[2010.03.16 12:31:34 | 000,000,917 | ---- | M] () -- C:\Users\MIKES\AppData\Roaming\Mozilla\FireFox\Profiles\6z5ko3tl.default\searchplugins\conduit.xml
[2010.10.17 14:20:49 | 000,002,059 | ---- | M] () -- C:\Users\MIKES\AppData\Roaming\Mozilla\FireFox\Profiles\6z5ko3tl.default\searchplugins\daemon-search.xml
[2010.10.13 18:10:15 | 000,000,950 | ---- | M] () -- C:\Users\MIKES\AppData\Roaming\Mozilla\FireFox\Profiles\6z5ko3tl.default\searchplugins\icqplugin-1.xml
[2010.01.09 10:38:15 | 000,000,950 | ---- | M] () -- C:\Users\MIKES\AppData\Roaming\Mozilla\FireFox\Profiles\6z5ko3tl.default\searchplugins\icqplugin-2.xml
[2010.03.08 08:42:32 | 000,000,950 | ---- | M] () -- C:\Users\MIKES\AppData\Roaming\Mozilla\FireFox\Profiles\6z5ko3tl.default\searchplugins\icqplugin-3.xml
[2010.04.02 11:13:26 | 000,000,950 | ---- | M] () -- C:\Users\MIKES\AppData\Roaming\Mozilla\FireFox\Profiles\6z5ko3tl.default\searchplugins\icqplugin-4.xml
[2010.10.13 12:15:52 | 000,000,950 | ---- | M] () -- C:\Users\MIKES\AppData\Roaming\Mozilla\FireFox\Profiles\6z5ko3tl.default\searchplugins\icqplugin-5.xml
[2009.10.14 19:13:26 | 000,000,944 | ---- | M] () -- C:\Users\MIKES\AppData\Roaming\Mozilla\FireFox\Profiles\6z5ko3tl.default\searchplugins\icqplugin.xml
[2010.08.27 14:16:35 | 000,001,589 | ---- | M] () -- C:\Users\MIKES\AppData\Roaming\Mozilla\FireFox\Profiles\6z5ko3tl.default\searchplugins\web-search.xml
[2010.10.03 15:16:17 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2009.12.17 14:33:58 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
[2010.04.01 18:41:06 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2010.07.03 15:17:14 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2010.08.22 13:25:25 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2010.04.01 18:40:53 | 000,023,000 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\browserdirprovider.dll
[2010.04.01 18:40:53 | 000,134,616 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\brwsrcmp.dll
[2007.04.10 17:21:08 | 000,163,256 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Mozilla Firefox\plugins\np-mswmp.dll
[2007.04.30 16:29:22 | 000,049,152 | ---- | M] (Adobe Systems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\np32dsw.dll
[2010.07.17 05:00:04 | 000,423,656 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
[2010.04.01 18:40:57 | 000,065,496 | ---- | M] (mozilla.org) -- C:\Program Files\Mozilla Firefox\plugins\npnul32.dll
[2006.10.26 21:12:16 | 000,016,192 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Mozilla Firefox\plugins\NPOFF12.DLL
[2010.07.02 22:21:08 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll
[2010.07.02 22:21:09 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll
[2010.07.02 22:21:09 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
[2010.07.02 22:21:09 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll
[2010.07.02 22:21:09 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll
[2010.07.02 22:21:09 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll
[2010.07.02 22:21:09 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll
[2010.04.01 18:40:57 | 000,001,706 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\google.xml
[2010.04.01 18:40:57 | 000,000,638 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\jyxo-cz.xml
[2010.04.01 18:40:57 | 000,001,687 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\mall-cz.xml
[2010.04.01 18:40:57 | 000,001,367 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\seznam-cz.xml
[2010.04.01 18:40:57 | 000,000,654 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\slunecnice-cz.xml
[2010.04.01 18:40:57 | 000,001,179 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-cz.xml
Re: Zlobí UAC (řízení uživatelských účtů)
O1 HOSTS File: ([2010.10.19 07:18:33 | 000,000,027 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5612.1312\swg.dll (Google Inc.)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O4 - HKLM..\Run: [AdobeCS4ServiceManager] C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [ATICustomerCare] C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe (CANON INC.)
O4 - HKLM..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe (CANON INC.)
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [egui] C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET)
O4 - HKLM..\Run: [IntelSWUpdateClient] C:\Program Files\Intel\inteldh\common\SWUpdateClient.exe (Intel(R) Corporation)
O4 - HKLM..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe (Apple Inc.)
O4 - HKLM..\Run: [Malwarebytes Anti-Malware (reboot)] C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [OpwareSE4] C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe (Nuance Communications, Inc.)
O4 - HKLM..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE (PowerISO Computing, Inc.)
O4 - HKLM..\Run: [SSBkgdUpdate] C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe (Nuance Communications, Inc.)
O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [USBToolTip] C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe (Pinnacle Systems GmbH)
O4 - HKLM..\Run: [VolPanel] C:\Program Files\Creative\USB Headsets\Volume Panel\VolPanlu.exe (Creative Technology Ltd)
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKCU..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKCU..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation)
O4 - HKCU..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
O4 - HKCU..\Run: [uTorrent] C:\Program Files\uTorrent\uTorrent.exe (BitTorrent, Inc.)
O4 - Startup: C:\Users\MIKES\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Xfire.lnk = C:\Program Files\Xfire\Xfire.exe (Xfire Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: BindDirectlyToPropertySetStorage = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableInstallerDetection = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableSecureUIAPaths = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableVirtualization = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ValidateAdminCodeSignatures = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: scforceoption = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: FilterAdministratorToken = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_TEXT = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_BITMAP = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_OEMTEXT = 7
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIB = 8
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_PALETTE = 9
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_UNICODETEXT = 13
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIBV5 = 17
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: disableregistrytools = 0
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: WikiKomentáře Google... - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll (Google Inc.)
O9 - Extra Button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\Windows\System32\nlaapi.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\Windows\System32\NapiNSP.dll (Společnost Microsoft)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\Windows\System32\pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Windows\System32\pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - C:\Windows\System32\winrnr.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000018 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O16 - DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_21)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.0.0.138
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\System32\MSVidCtl.dll (Microsoft Corporation)
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\gopher {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\System32\inetcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\System32\MSVidCtl.dll (Microsoft Corporation)
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\deflate {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\gzip {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (rundll32 shell32) - C:\Windows\System32\shell32.dll (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - C:\Windows\System32\sysdm.cpl (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\System32\webcheck.dll (Microsoft Corporation)
O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Component Categories cache daemon - C:\Windows\System32\browseui.dll (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Windows\Web\Wallpaper\img24.jpg
O24 - Desktop BackupWallPaper: C:\Windows\Web\Wallpaper\img24.jpg
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found
O29 - HKLM SecurityProviders - (credssp.dll) - C:\Windows\System32\credssp.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) - C:\Windows\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (kerberos) - C:\Windows\System32\kerberos.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (msv1_0) - C:\Windows\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (schannel) - C:\Windows\System32\schannel.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (wdigest) - C:\Windows\System32\wdigest.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (tspkg) - C:\Windows\System32\tspkg.dll (Microsoft Corporation)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010.04.24 09:11:53 | 000,000,000 | ---D | M] - C:\Autodesk -- [ NTFS ]
O32 - AutoRun File - [2006.09.18 23:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (lsdelete) - C:\Windows\System32\lsdelete.exe ()
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2010.10.18 16:44:16 | 000,574,464 | ---- | C] (OldTimer Tools) -- C:\Users\MIKES\Desktop\OTL.exe
[2010.10.17 15:30:52 | 000,000,000 | ---D | C] -- C:\ComboFix
[2010.10.17 15:26:28 | 000,000,000 | ---D | C] -- C:\Qoobox
[2010.10.17 14:37:17 | 000,000,000 | ---D | C] -- C:\Nová složka
[2010.10.17 14:36:32 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\DAEMON Tools Images
[2010.10.17 14:20:14 | 000,000,000 | ---D | C] -- C:\Program Files\DAEMON Tools Lite
[2010.10.17 13:16:58 | 002,927,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe
[2010.10.16 16:58:10 | 000,000,000 | ---D | C] -- C:\Program Files\AV Vcs 4.0
[2010.10.16 14:30:55 | 011,584,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\shell32_backup_wti.dll
[2010.10.16 14:30:55 | 002,926,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer_backup_wti.exe
[2010.10.16 14:30:55 | 002,153,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\OobeFldr_backup_wti.dll
[2010.10.16 14:30:55 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ExplorerFrame_backup_wti.dll
[2010.10.15 12:30:07 | 000,000,000 | ---D | C] -- C:\Users\MIKES\AppData\Roaming\Canon
[2010.10.15 12:24:36 | 000,172,032 | ---- | C] (S.U.K. veřejná obchodní společnost) -- C:\Windows\System32\XpBtnS.ocx
[2010.10.15 12:24:36 | 000,000,000 | ---D | C] -- C:\Program Files\Úroky z prodlení
[2010.10.13 18:54:39 | 000,000,000 | ---D | C] -- C:\Users\MIKES\Desktop\Nová složka (3)
[2010.10.13 15:41:26 | 000,000,000 | ---D | C] -- C:\Users\MIKES\Documents\StarCraft II
[2010.10.13 15:41:25 | 000,000,000 | ---D | C] -- C:\Program Files\StarCraft II
[2010.10.13 06:30:00 | 008,147,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmploc.DLL
[2010.10.13 06:29:03 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netevent.dll
[2010.10.13 06:28:28 | 000,157,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\t2embed.dll
[2010.10.13 06:28:26 | 002,038,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
[2010.10.13 06:28:23 | 000,231,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msshsq.dll
[2010.10.13 06:28:03 | 000,385,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\html.iec
[2010.10.13 06:28:02 | 000,602,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll
[2010.10.13 06:28:02 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\licmgr10.dll
[2010.10.13 06:27:57 | 001,469,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl
[2010.10.13 06:27:55 | 000,611,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mstime.dll
[2010.10.13 06:27:53 | 001,638,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
[2010.10.13 06:27:53 | 000,387,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll
[2010.10.13 06:27:53 | 000,184,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iepeers.dll
[2010.10.13 06:27:53 | 000,173,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ie4uinit.exe
[2010.10.13 06:27:53 | 000,164,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll
[2010.10.13 06:27:53 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieUnatt.exe
[2010.10.13 06:27:53 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesysprep.dll
[2010.10.13 06:27:53 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesetup.dll
[2010.10.13 06:27:53 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iernonce.dll
[2010.10.13 06:27:53 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedsbs.dll
[2010.10.13 06:27:53 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
[2010.10.13 06:27:53 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedssync.exe
[2010.10.13 06:27:52 | 000,954,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfc40.dll
[2010.10.13 06:27:51 | 000,954,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfc40u.dll
[2010.10.13 06:27:26 | 000,867,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmpmde.dll
[2010.10.11 11:17:50 | 000,000,000 | ---D | C] -- C:\Users\MIKES\Desktop\tesat
[2010.10.11 08:32:28 | 000,000,000 | ---D | C] -- C:\Program Files\2d3
[2010.10.10 16:23:17 | 000,000,000 | ---D | C] -- C:\Program Files\VTFEdit
[2010.10.08 18:49:26 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DivX Shared
[2010.10.06 20:17:02 | 000,000,000 | ---D | C] -- C:\Users\MIKES\AppData\Local\MigWiz
[2010.10.06 14:16:26 | 000,000,000 | ---D | C] -- C:\Users\MIKES\AppData\Roaming\SUPERAntiSpyware.com
[2010.10.06 14:16:26 | 000,000,000 | ---D | C] -- C:\ProgramData\SUPERAntiSpyware.com
[2010.10.06 14:16:15 | 000,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware
[2010.10.06 07:05:57 | 000,000,000 | ---D | C] -- C:\ProgramData\F-Secure
[2010.10.04 15:01:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Kaspersky Lab
[2010.10.03 19:36:07 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2010.10.03 19:35:07 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2010.10.03 17:44:36 | 000,000,000 | ---D | C] -- C:\Users\MIKES\AppData\Local\temp
[2010.10.03 14:06:28 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2010.10.03 13:03:39 | 000,000,000 | ---D | C] -- C:\Users\MIKES\AppData\Roaming\Malwarebytes
[2010.10.03 13:03:21 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2010.10.03 13:03:20 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2010.10.03 13:03:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2010.10.03 13:03:19 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010.10.02 10:18:42 | 000,000,000 | ---D | C] -- C:\Windows\rundll16.exe
[2010.10.02 10:18:42 | 000,000,000 | ---D | C] -- C:\Windows\logo1_.exe
[2010.10.02 09:45:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\runouce.exe
[2010.10.02 09:45:43 | 000,000,000 | ---D | C] -- C:\Windows\RUNDL132.EXE
[2010.10.02 09:45:43 | 000,000,000 | ---D | C] -- C:\Windows\logo_1.exe
[2010.10.02 09:40:54 | 000,632,080 | R--- | C] (Microsoft Corporation) -- C:\Windows\System32\msvcr80.dll
[2010.10.02 09:40:54 | 000,554,256 | R--- | C] (Microsoft Corporation) -- C:\Windows\System32\msvcp80.dll
[2010.10.02 09:40:54 | 000,034,048 | ---- | C] (MicroWorld Technologies Inc.) -- C:\Windows\System32\eEmpty.exe
[2010.10.02 09:40:37 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\MicroWorld
[2010.10.02 09:40:31 | 000,000,000 | ---D | C] -- C:\ProgramData\MicroWorld
[2010.10.02 09:37:11 | 000,000,000 | ---D | C] -- C:\Program Files\Trend Micro
[2010.09.29 17:03:53 | 000,000,000 | ---D | C] -- C:\Program Files\Futuremark
[2010.09.29 15:44:24 | 000,000,000 | ---D | C] -- C:\Program Files\Lavalys
[2010.09.29 09:31:06 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tzres.dll
[2010.09.28 17:43:09 | 000,000,000 | ---D | C] -- C:\Users\MIKES\AppData\Roaming\Planetside Software
[2010.09.28 17:22:03 | 000,000,000 | ---D | C] -- C:\Program Files\Planetside Software
[2010.09.26 20:05:59 | 000,000,000 | ---D | C] -- C:\Users\MIKES\Documents\KigoImageConverter
[2010.09.26 20:02:17 | 000,000,000 | ---D | C] -- C:\Users\MIKES\AppData\Roaming\uk.co.planetside
[2010.09.26 19:50:41 | 000,000,000 | ---D | C] -- C:\Program Files\Terragen
[2010.09.26 19:49:49 | 000,000,000 | ---D | C] -- C:\Program Files\KigoImageConverter
[2010.09.21 16:33:50 | 000,000,000 | ---D | C] -- C:\Users\MIKES\AppData\Roaming\mIRC
[2010.09.21 16:33:50 | 000,000,000 | ---D | C] -- C:\Program Files\mIRC
[2010.09.20 15:56:43 | 000,000,000 | ---D | C] -- C:\Users\MIKES\Desktop\skiny
[2010.09.20 15:12:42 | 000,000,000 | ---D | C] -- C:\Users\MIKES\Desktop\gloves
[2010.08.08 19:51:41 | 000,121,344 | ---- | C] ( ) -- C:\Windows\System32\lagarith.dll
[1 C:\Users\MIKES\Documents\*.tmp files -> C:\Users\MIKES\Documents\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2010.10.19 07:18:33 | 000,000,027 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts
[2010.10.19 07:18:30 | 008,405,015 | ---- | M] () -- C:\Windows\TempFile
[2010.10.19 07:18:19 | 000,000,936 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2010.10.19 07:18:18 | 000,003,712 | ---- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2010.10.19 07:18:18 | 000,003,712 | ---- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2010.10.19 07:18:09 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010.10.19 07:14:01 | 000,000,940 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2010.10.18 20:26:10 | 000,002,413 | ---- | M] () -- C:\Users\Public\Desktop\iTunes.lnk
[2010.10.18 19:57:15 | 000,077,312 | ---- | M] () -- C:\Users\MIKES\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.10.18 17:59:13 | 000,219,128 | ---- | M] () -- C:\Windows\System32\PnkBstrB.xtr
[2010.10.18 17:51:21 | 000,138,592 | ---- | M] () -- C:\Windows\System32\drivers\PnkBstrK.sys
[2010.10.18 17:09:59 | 000,036,926 | ---- | M] () -- C:\Users\MIKES\Desktop\config_mp.cfg
[2010.10.18 16:44:20 | 000,574,464 | ---- | M] (OldTimer Tools) -- C:\Users\MIKES\Desktop\OTL.exe
[2010.10.18 15:29:43 | 000,000,890 | ---- | M] () -- C:\Users\Public\Desktop\StarCraft II.lnk
[2010.10.17 16:49:46 | 000,184,324 | ---- | M] () -- C:\Users\MIKES\Desktop\Bez názvu.jpg
[2010.10.17 14:20:37 | 000,001,735 | ---- | M] () -- C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
[2010.10.17 14:20:23 | 000,691,696 | ---- | M] () -- C:\Windows\System32\drivers\sptd.sys
[2010.10.17 13:38:52 | 000,000,039 | ---- | M] () -- C:\Windows\Irremote.ini
[2010.10.17 13:15:36 | 002,883,698 | ---- | M] () -- C:\Program Files\Aktivátory - Legalizátory - win7 - winXP - winVista.rar
[2010.10.16 16:59:10 | 000,000,764 | ---- | M] () -- C:\Users\MIKES\Desktop\Voice Changer 4.0 .lnk
[2010.10.16 14:55:43 | 000,202,144 | ---- | M] () -- C:\Windows\UTP.exe
[2010.10.16 12:51:06 | 000,002,675 | ---- | M] () -- C:\Users\MIKES\Desktop\Microsoft Office Word 2007.lnk
[2010.10.15 14:01:28 | 000,662,506 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2010.10.15 14:01:28 | 000,127,966 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2010.10.15 07:33:08 | 002,266,984 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2010.10.14 18:08:50 | 000,669,432 | ---- | M] () -- C:\Users\MIKES\Documents\nwm.veg
[2010.10.14 16:29:45 | 000,669,216 | ---- | M] () -- C:\Users\MIKES\Documents\nwm.veg.bak
[2010.10.12 14:38:13 | 890,165,580 | ---- | M] () -- C:\Users\MIKES\Desktop\iw3mp 2010-10-12 14-31-18-31.avi
[2010.10.12 14:19:30 | 000,015,488 | ---- | M] () -- C:\Users\MIKES\Documents\BUb.veg.tmp.bak
[2010.10.12 12:49:05 | 000,014,560 | ---- | M] () -- C:\Users\MIKES\Documents\BUb.veg.bak
[2010.10.12 10:40:45 | 717,674,130 | ---- | M] () -- C:\Users\MIKES\Desktop\iw3mp 2010-10-12 09-24-52-81.avi
[2010.10.12 10:39:30 | 1149,214,405 | ---- | M] () -- C:\Users\MIKES\Desktop\iw3mp 2010-10-12 09-20-25-34.avi
[2010.10.12 10:31:31 | 709,973,083 | ---- | M] () -- C:\Users\MIKES\Desktop\iw3mp 2010-10-12 09-15-10-66.avi
[2010.10.12 09:46:32 | 1016,633,869 | ---- | M] () -- C:\Users\MIKES\Desktop\iw3mp 2010-10-12 09-10-17-71.avi
[2010.10.11 11:09:16 | 000,001,785 | ---- | M] () -- C:\Users\Public\Desktop\Vegas Pro 9.0.lnk
[2010.10.10 16:23:17 | 000,000,738 | ---- | M] () -- C:\Users\MIKES\Desktop\VTFEdit.lnk
[2010.10.09 17:10:23 | 000,002,900 | ---- | M] () -- C:\Users\MIKES\Documents\Register Vegas Pro.htm
[2010.10.09 15:17:02 | 234,749,433 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2010.10.08 18:49:36 | 000,000,957 | ---- | M] () -- C:\Users\Public\Desktop\DivX Plus Converter.lnk
[2010.10.06 14:16:21 | 000,001,800 | ---- | M] () -- C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
[2010.10.05 19:41:28 | 000,000,995 | ---- | M] () -- C:\Users\MIKES\Desktop\Wow – zástupce.lnk
[2010.10.05 18:34:46 | 000,000,056 | -H-- | M] () -- C:\ProgramData\ezsidmv.dat
[2010.10.04 15:23:43 | 000,000,154 | -HS- | M] () -- C:\Windows\setup_9.0.0.722_04.10.2010_16-32drv.spi
[2010.10.03 13:03:23 | 000,000,818 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010.10.03 10:24:06 | 000,000,102 | ---- | M] () -- C:\Users\MIKES\Documents\AutoHotkey.ahk
[2010.10.02 19:44:57 | 000,000,510 | ---- | M] () -- C:\Windows\WORDPAD.INI
[2010.10.02 13:17:39 | 000,204,670 | ---- | M] () -- C:\Users\MIKES\Documents\pinfect.zip
[2010.10.02 10:03:37 | 000,000,054 | ---- | M] () -- C:\Windows\Lic.xxx
[2010.10.02 09:40:53 | 000,034,048 | ---- | M] (MicroWorld Technologies Inc.) -- C:\Windows\System32\eEmpty.exe
[2010.10.01 17:26:52 | 000,002,395 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
[2010.09.29 17:10:17 | 000,086,016 | ---- | M] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\System32\OpenAL32.dll
[2010.09.26 19:49:49 | 000,000,852 | ---- | M] () -- C:\Users\Public\Desktop\KigoImageConverter.lnk
[2010.09.26 14:23:38 | 000,000,984 | ---- | M] () -- C:\Users\MIKES\Desktop\HAWX.exe – zástupce.lnk
[2010.09.25 18:18:17 | 000,000,671 | ---- | M] () -- C:\Users\MIKES\AppData\Roaming\vso_ts_preview.xml
[2010.09.20 20:33:23 | 056,510,675 | ---- | M] () -- C:\Users\MIKES\Desktop\red dwarf - cerveny trpaslik - s05e06 navrat do reality.mp4
[1 C:\Users\MIKES\Documents\*.tmp files -> C:\Users\MIKES\Documents\*.tmp -> ]
========== Files Created - No Company Name ==========
[2010.10.18 17:50:44 | 000,036,926 | ---- | C] () -- C:\Users\MIKES\Desktop\config_mp.cfg
[2010.10.18 15:17:09 | 000,000,890 | ---- | C] () -- C:\Users\Public\Desktop\StarCraft II.lnk
[2010.10.17 16:49:46 | 000,184,324 | ---- | C] () -- C:\Users\MIKES\Desktop\Bez názvu.jpg
[2010.10.17 14:20:37 | 000,001,735 | ---- | C] () -- C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
[2010.10.17 14:20:22 | 000,691,696 | ---- | C] () -- C:\Windows\System32\drivers\sptd.sys
[2010.10.17 13:15:28 | 002,883,698 | ---- | C] () -- C:\Program Files\Aktivátory - Legalizátory - win7 - winXP - winVista.rar
[2010.10.16 16:59:10 | 000,000,764 | ---- | C] () -- C:\Users\MIKES\Desktop\Voice Changer 4.0 .lnk
[2010.10.16 14:30:53 | 000,202,144 | ---- | C] () -- C:\Windows\UTP.exe
[2010.10.12 19:25:41 | 000,669,432 | ---- | C] () -- C:\Users\MIKES\Documents\nwm.veg
[2010.10.12 19:25:41 | 000,669,216 | ---- | C] () -- C:\Users\MIKES\Documents\nwm.veg.bak
[2010.10.12 14:36:24 | 890,165,580 | ---- | C] () -- C:\Users\MIKES\Desktop\iw3mp 2010-10-12 14-31-18-31.avi
[2010.10.12 12:49:05 | 000,015,488 | ---- | C] () -- C:\Users\MIKES\Documents\BUb.veg.tmp.bak
[2010.10.12 12:49:05 | 000,014,560 | ---- | C] () -- C:\Users\MIKES\Documents\BUb.veg.bak
[2010.10.12 10:40:02 | 717,674,130 | ---- | C] () -- C:\Users\MIKES\Desktop\iw3mp 2010-10-12 09-24-52-81.avi
[2010.10.12 10:33:48 | 1149,214,405 | ---- | C] () -- C:\Users\MIKES\Desktop\iw3mp 2010-10-12 09-20-25-34.avi
[2010.10.12 10:25:57 | 709,973,083 | ---- | C] () -- C:\Users\MIKES\Desktop\iw3mp 2010-10-12 09-15-10-66.avi
[2010.10.12 09:37:58 | 1016,633,869 | ---- | C] () -- C:\Users\MIKES\Desktop\iw3mp 2010-10-12 09-10-17-71.avi
[2010.10.11 11:09:16 | 000,001,785 | ---- | C] () -- C:\Users\Public\Desktop\Vegas Pro 9.0.lnk
[2010.10.10 16:23:17 | 000,000,738 | ---- | C] () -- C:\Users\MIKES\Desktop\VTFEdit.lnk
[2010.10.09 15:17:02 | 234,749,433 | ---- | C] () -- C:\Windows\MEMORY.DMP
[2010.10.08 18:49:36 | 000,000,957 | ---- | C] () -- C:\Users\Public\Desktop\DivX Plus Converter.lnk
[2010.10.06 14:16:21 | 000,001,800 | ---- | C] () -- C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
[2010.10.05 19:41:28 | 000,000,995 | ---- | C] () -- C:\Users\MIKES\Desktop\Wow – zástupce.lnk
[2010.10.05 18:34:46 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2010.10.04 15:23:43 | 000,000,154 | -HS- | C] () -- C:\Windows\setup_9.0.0.722_04.10.2010_16-32drv.spi
[2010.10.03 13:03:23 | 000,000,818 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010.10.02 19:44:57 | 000,000,510 | ---- | C] () -- C:\Windows\WORDPAD.INI
[2010.10.02 09:46:51 | 000,204,670 | ---- | C] () -- C:\Users\MIKES\Documents\pinfect.zip
[2010.10.02 09:41:31 | 000,000,054 | ---- | C] () -- C:\Windows\Lic.xxx
[2010.09.26 19:49:49 | 000,000,852 | ---- | C] () -- C:\Users\Public\Desktop\KigoImageConverter.lnk
[2010.09.26 14:23:38 | 000,000,984 | ---- | C] () -- C:\Users\MIKES\Desktop\HAWX.exe – zástupce.lnk
[2010.09.20 20:33:20 | 056,510,675 | ---- | C] () -- C:\Users\MIKES\Desktop\red dwarf - cerveny trpaslik - s05e06 navrat do reality.mp4
[2010.09.19 10:40:34 | 000,011,089 | ---- | C] () -- C:\Users\MIKES\Desktop\SkaR CoD4 Char Fig.fig
[2010.08.23 10:57:17 | 000,003,972 | ---- | C] () -- C:\Windows\System32\drivers\PciBus.sys
[2010.07.19 14:32:23 | 000,790,528 | ---- | C] () -- C:\Windows\System32\xvidcore.dll
[2010.07.19 14:32:23 | 000,000,038 | ---- | C] () -- C:\Windows\avisplitter.ini
[2010.07.19 14:32:22 | 000,108,032 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll
[2010.07.18 11:30:19 | 000,134,144 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll
[2010.07.09 21:04:40 | 000,041,872 | ---- | C] () -- C:\Windows\System32\xfcodec.dll
[2010.07.07 03:14:26 | 000,023,040 | ---- | C] () -- C:\Windows\System32\atitmpxx.dll
[2010.04.28 14:35:08 | 000,025,199 | ---- | C] () -- C:\Windows\System32\xfisk.ini
[2010.04.28 14:35:08 | 000,000,052 | ---- | C] () -- C:\Windows\System32\ctzapxx.ini
[2010.04.28 14:35:03 | 000,000,381 | R--- | C] () -- C:\Windows\skMCcfg.ini
[2010.04.28 14:34:55 | 000,127,488 | ---- | C] () -- C:\Windows\System32\APOMngr.DLL
[2010.04.28 14:34:55 | 000,069,120 | ---- | C] () -- C:\Windows\System32\CmdRtr.DLL
[2010.03.30 06:50:46 | 000,151,552 | ---- | C] () -- C:\Windows\System32\nvRegDev.dll
[2010.01.21 15:25:57 | 000,165,376 | ---- | C] () -- C:\Windows\System32\unrar.dll
[2009.12.22 21:30:59 | 000,027,993 | ---- | C] () -- C:\Users\MIKES\AppData\Roaming\OFMissionEditorConfig.xml
[2009.12.22 21:15:02 | 000,000,671 | ---- | C] () -- C:\Users\MIKES\AppData\Roaming\vso_ts_preview.xml
[2009.12.21 13:52:32 | 000,077,312 | ---- | C] () -- C:\Users\MIKES\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009.12.18 14:57:49 | 000,000,319 | ---- | C] () -- C:\Windows\game.ini
[2009.12.17 18:37:31 | 000,138,592 | ---- | C] () -- C:\Windows\System32\drivers\PnkBstrK.sys
[2009.12.17 18:37:31 | 000,022,328 | ---- | C] () -- C:\Users\MIKES\AppData\Roaming\PnkBstrK.sys
[2009.12.17 17:29:37 | 000,000,412 | ---- | C] () -- C:\Windows\MAXLINK.INI
[2009.12.17 15:36:14 | 000,281,760 | ---- | C] () -- C:\Windows\System32\drivers\atksgt.sys
[2009.12.17 15:36:14 | 000,025,888 | ---- | C] () -- C:\Windows\System32\drivers\lirsgt.sys
[2009.12.17 14:58:03 | 000,000,039 | ---- | C] () -- C:\Windows\Irremote.ini
[2009.12.16 11:11:42 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2009.04.01 16:53:34 | 000,520,192 | ---- | C] () -- C:\Windows\System32\RegisterDialog.dll
[2008.10.28 17:40:48 | 000,173,552 | ---- | C] () -- C:\Windows\System32\xlive.dll.cat
[2008.09.19 03:49:26 | 000,001,209 | R--- | C] () -- C:\Windows\skSPcfg.ini
[2008.02.05 14:28:20 | 000,000,051 | ---- | C] () -- C:\Users\MIKES\AppData\Local\setup.txt
[2006.11.02 14:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006.11.02 09:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006.08.16 16:13:34 | 001,382,280 | ---- | C] () -- C:\Windows\System32\fftw3.dll
========== LOP Check ==========
[2010.05.03 18:10:05 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\Allstar
[2010.04.25 16:43:18 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\Autodesk
[2010.06.19 21:49:44 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\BSplayer
[2010.06.19 21:06:20 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\BSplayer Pro
[2010.10.15 12:30:08 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\Canon
[2010.07.07 18:17:49 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\Cashfiesta
[2010.06.04 15:43:45 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\CD-LabelPrint
[2010.09.06 20:49:01 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\Cool Record Edit Pro
[2010.02.19 16:28:45 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\DAEMON Tools Lite
[2010.07.10 21:34:20 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\GameTracker
[2010.09.05 14:30:54 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\Get from YouTube
[2010.10.17 19:34:09 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\HLSW
[2010.02.25 16:17:29 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\ICQ
[2010.05.29 13:26:36 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\Leadertech
[2010.09.28 17:43:09 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\Planetside Software
[2010.04.14 18:08:20 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\Publish Providers
[2009.12.17 17:29:04 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\ScanSoft
[2010.09.05 13:18:41 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\Sony
[2010.04.24 15:10:11 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\TotalRecorder
[2010.04.04 17:05:15 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\TS3Client
[2010.03.23 17:05:54 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\Ubisoft
[2010.09.28 17:43:09 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\uk.co.planetside
[2010.10.19 07:20:06 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\uTorrent
[2010.09.25 18:18:18 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\Vso
[2010.10.18 20:46:29 | 000,032,628 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ==========
< End of report >
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5612.1312\swg.dll (Google Inc.)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O4 - HKLM..\Run: [AdobeCS4ServiceManager] C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [ATICustomerCare] C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe (CANON INC.)
O4 - HKLM..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe (CANON INC.)
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [egui] C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET)
O4 - HKLM..\Run: [IntelSWUpdateClient] C:\Program Files\Intel\inteldh\common\SWUpdateClient.exe (Intel(R) Corporation)
O4 - HKLM..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe (Apple Inc.)
O4 - HKLM..\Run: [Malwarebytes Anti-Malware (reboot)] C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [OpwareSE4] C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe (Nuance Communications, Inc.)
O4 - HKLM..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE (PowerISO Computing, Inc.)
O4 - HKLM..\Run: [SSBkgdUpdate] C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe (Nuance Communications, Inc.)
O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [USBToolTip] C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe (Pinnacle Systems GmbH)
O4 - HKLM..\Run: [VolPanel] C:\Program Files\Creative\USB Headsets\Volume Panel\VolPanlu.exe (Creative Technology Ltd)
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKCU..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKCU..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation)
O4 - HKCU..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
O4 - HKCU..\Run: [uTorrent] C:\Program Files\uTorrent\uTorrent.exe (BitTorrent, Inc.)
O4 - Startup: C:\Users\MIKES\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Xfire.lnk = C:\Program Files\Xfire\Xfire.exe (Xfire Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: BindDirectlyToPropertySetStorage = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableInstallerDetection = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableSecureUIAPaths = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableVirtualization = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ValidateAdminCodeSignatures = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: scforceoption = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: FilterAdministratorToken = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_TEXT = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_BITMAP = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_OEMTEXT = 7
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIB = 8
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_PALETTE = 9
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_UNICODETEXT = 13
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIBV5 = 17
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: disableregistrytools = 0
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: WikiKomentáře Google... - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll (Google Inc.)
O9 - Extra Button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\Windows\System32\nlaapi.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\Windows\System32\NapiNSP.dll (Společnost Microsoft)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\Windows\System32\pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Windows\System32\pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - C:\Windows\System32\winrnr.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000018 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O16 - DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_21)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.0.0.138
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\System32\MSVidCtl.dll (Microsoft Corporation)
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\gopher {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\System32\inetcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\System32\MSVidCtl.dll (Microsoft Corporation)
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\deflate {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\gzip {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (rundll32 shell32) - C:\Windows\System32\shell32.dll (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - C:\Windows\System32\sysdm.cpl (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\System32\webcheck.dll (Microsoft Corporation)
O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Component Categories cache daemon - C:\Windows\System32\browseui.dll (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Windows\Web\Wallpaper\img24.jpg
O24 - Desktop BackupWallPaper: C:\Windows\Web\Wallpaper\img24.jpg
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found
O29 - HKLM SecurityProviders - (credssp.dll) - C:\Windows\System32\credssp.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) - C:\Windows\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (kerberos) - C:\Windows\System32\kerberos.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (msv1_0) - C:\Windows\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (schannel) - C:\Windows\System32\schannel.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (wdigest) - C:\Windows\System32\wdigest.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (tspkg) - C:\Windows\System32\tspkg.dll (Microsoft Corporation)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010.04.24 09:11:53 | 000,000,000 | ---D | M] - C:\Autodesk -- [ NTFS ]
O32 - AutoRun File - [2006.09.18 23:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (lsdelete) - C:\Windows\System32\lsdelete.exe ()
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2010.10.18 16:44:16 | 000,574,464 | ---- | C] (OldTimer Tools) -- C:\Users\MIKES\Desktop\OTL.exe
[2010.10.17 15:30:52 | 000,000,000 | ---D | C] -- C:\ComboFix
[2010.10.17 15:26:28 | 000,000,000 | ---D | C] -- C:\Qoobox
[2010.10.17 14:37:17 | 000,000,000 | ---D | C] -- C:\Nová složka
[2010.10.17 14:36:32 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\DAEMON Tools Images
[2010.10.17 14:20:14 | 000,000,000 | ---D | C] -- C:\Program Files\DAEMON Tools Lite
[2010.10.17 13:16:58 | 002,927,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe
[2010.10.16 16:58:10 | 000,000,000 | ---D | C] -- C:\Program Files\AV Vcs 4.0
[2010.10.16 14:30:55 | 011,584,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\shell32_backup_wti.dll
[2010.10.16 14:30:55 | 002,926,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer_backup_wti.exe
[2010.10.16 14:30:55 | 002,153,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\OobeFldr_backup_wti.dll
[2010.10.16 14:30:55 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ExplorerFrame_backup_wti.dll
[2010.10.15 12:30:07 | 000,000,000 | ---D | C] -- C:\Users\MIKES\AppData\Roaming\Canon
[2010.10.15 12:24:36 | 000,172,032 | ---- | C] (S.U.K. veřejná obchodní společnost) -- C:\Windows\System32\XpBtnS.ocx
[2010.10.15 12:24:36 | 000,000,000 | ---D | C] -- C:\Program Files\Úroky z prodlení
[2010.10.13 18:54:39 | 000,000,000 | ---D | C] -- C:\Users\MIKES\Desktop\Nová složka (3)
[2010.10.13 15:41:26 | 000,000,000 | ---D | C] -- C:\Users\MIKES\Documents\StarCraft II
[2010.10.13 15:41:25 | 000,000,000 | ---D | C] -- C:\Program Files\StarCraft II
[2010.10.13 06:30:00 | 008,147,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmploc.DLL
[2010.10.13 06:29:03 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netevent.dll
[2010.10.13 06:28:28 | 000,157,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\t2embed.dll
[2010.10.13 06:28:26 | 002,038,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
[2010.10.13 06:28:23 | 000,231,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msshsq.dll
[2010.10.13 06:28:03 | 000,385,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\html.iec
[2010.10.13 06:28:02 | 000,602,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll
[2010.10.13 06:28:02 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\licmgr10.dll
[2010.10.13 06:27:57 | 001,469,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl
[2010.10.13 06:27:55 | 000,611,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mstime.dll
[2010.10.13 06:27:53 | 001,638,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
[2010.10.13 06:27:53 | 000,387,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll
[2010.10.13 06:27:53 | 000,184,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iepeers.dll
[2010.10.13 06:27:53 | 000,173,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ie4uinit.exe
[2010.10.13 06:27:53 | 000,164,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll
[2010.10.13 06:27:53 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieUnatt.exe
[2010.10.13 06:27:53 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesysprep.dll
[2010.10.13 06:27:53 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesetup.dll
[2010.10.13 06:27:53 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iernonce.dll
[2010.10.13 06:27:53 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedsbs.dll
[2010.10.13 06:27:53 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
[2010.10.13 06:27:53 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedssync.exe
[2010.10.13 06:27:52 | 000,954,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfc40.dll
[2010.10.13 06:27:51 | 000,954,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfc40u.dll
[2010.10.13 06:27:26 | 000,867,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmpmde.dll
[2010.10.11 11:17:50 | 000,000,000 | ---D | C] -- C:\Users\MIKES\Desktop\tesat
[2010.10.11 08:32:28 | 000,000,000 | ---D | C] -- C:\Program Files\2d3
[2010.10.10 16:23:17 | 000,000,000 | ---D | C] -- C:\Program Files\VTFEdit
[2010.10.08 18:49:26 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DivX Shared
[2010.10.06 20:17:02 | 000,000,000 | ---D | C] -- C:\Users\MIKES\AppData\Local\MigWiz
[2010.10.06 14:16:26 | 000,000,000 | ---D | C] -- C:\Users\MIKES\AppData\Roaming\SUPERAntiSpyware.com
[2010.10.06 14:16:26 | 000,000,000 | ---D | C] -- C:\ProgramData\SUPERAntiSpyware.com
[2010.10.06 14:16:15 | 000,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware
[2010.10.06 07:05:57 | 000,000,000 | ---D | C] -- C:\ProgramData\F-Secure
[2010.10.04 15:01:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Kaspersky Lab
[2010.10.03 19:36:07 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2010.10.03 19:35:07 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2010.10.03 17:44:36 | 000,000,000 | ---D | C] -- C:\Users\MIKES\AppData\Local\temp
[2010.10.03 14:06:28 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2010.10.03 13:03:39 | 000,000,000 | ---D | C] -- C:\Users\MIKES\AppData\Roaming\Malwarebytes
[2010.10.03 13:03:21 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2010.10.03 13:03:20 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2010.10.03 13:03:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2010.10.03 13:03:19 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010.10.02 10:18:42 | 000,000,000 | ---D | C] -- C:\Windows\rundll16.exe
[2010.10.02 10:18:42 | 000,000,000 | ---D | C] -- C:\Windows\logo1_.exe
[2010.10.02 09:45:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\runouce.exe
[2010.10.02 09:45:43 | 000,000,000 | ---D | C] -- C:\Windows\RUNDL132.EXE
[2010.10.02 09:45:43 | 000,000,000 | ---D | C] -- C:\Windows\logo_1.exe
[2010.10.02 09:40:54 | 000,632,080 | R--- | C] (Microsoft Corporation) -- C:\Windows\System32\msvcr80.dll
[2010.10.02 09:40:54 | 000,554,256 | R--- | C] (Microsoft Corporation) -- C:\Windows\System32\msvcp80.dll
[2010.10.02 09:40:54 | 000,034,048 | ---- | C] (MicroWorld Technologies Inc.) -- C:\Windows\System32\eEmpty.exe
[2010.10.02 09:40:37 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\MicroWorld
[2010.10.02 09:40:31 | 000,000,000 | ---D | C] -- C:\ProgramData\MicroWorld
[2010.10.02 09:37:11 | 000,000,000 | ---D | C] -- C:\Program Files\Trend Micro
[2010.09.29 17:03:53 | 000,000,000 | ---D | C] -- C:\Program Files\Futuremark
[2010.09.29 15:44:24 | 000,000,000 | ---D | C] -- C:\Program Files\Lavalys
[2010.09.29 09:31:06 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tzres.dll
[2010.09.28 17:43:09 | 000,000,000 | ---D | C] -- C:\Users\MIKES\AppData\Roaming\Planetside Software
[2010.09.28 17:22:03 | 000,000,000 | ---D | C] -- C:\Program Files\Planetside Software
[2010.09.26 20:05:59 | 000,000,000 | ---D | C] -- C:\Users\MIKES\Documents\KigoImageConverter
[2010.09.26 20:02:17 | 000,000,000 | ---D | C] -- C:\Users\MIKES\AppData\Roaming\uk.co.planetside
[2010.09.26 19:50:41 | 000,000,000 | ---D | C] -- C:\Program Files\Terragen
[2010.09.26 19:49:49 | 000,000,000 | ---D | C] -- C:\Program Files\KigoImageConverter
[2010.09.21 16:33:50 | 000,000,000 | ---D | C] -- C:\Users\MIKES\AppData\Roaming\mIRC
[2010.09.21 16:33:50 | 000,000,000 | ---D | C] -- C:\Program Files\mIRC
[2010.09.20 15:56:43 | 000,000,000 | ---D | C] -- C:\Users\MIKES\Desktop\skiny
[2010.09.20 15:12:42 | 000,000,000 | ---D | C] -- C:\Users\MIKES\Desktop\gloves
[2010.08.08 19:51:41 | 000,121,344 | ---- | C] ( ) -- C:\Windows\System32\lagarith.dll
[1 C:\Users\MIKES\Documents\*.tmp files -> C:\Users\MIKES\Documents\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2010.10.19 07:18:33 | 000,000,027 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts
[2010.10.19 07:18:30 | 008,405,015 | ---- | M] () -- C:\Windows\TempFile
[2010.10.19 07:18:19 | 000,000,936 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2010.10.19 07:18:18 | 000,003,712 | ---- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2010.10.19 07:18:18 | 000,003,712 | ---- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2010.10.19 07:18:09 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010.10.19 07:14:01 | 000,000,940 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2010.10.18 20:26:10 | 000,002,413 | ---- | M] () -- C:\Users\Public\Desktop\iTunes.lnk
[2010.10.18 19:57:15 | 000,077,312 | ---- | M] () -- C:\Users\MIKES\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.10.18 17:59:13 | 000,219,128 | ---- | M] () -- C:\Windows\System32\PnkBstrB.xtr
[2010.10.18 17:51:21 | 000,138,592 | ---- | M] () -- C:\Windows\System32\drivers\PnkBstrK.sys
[2010.10.18 17:09:59 | 000,036,926 | ---- | M] () -- C:\Users\MIKES\Desktop\config_mp.cfg
[2010.10.18 16:44:20 | 000,574,464 | ---- | M] (OldTimer Tools) -- C:\Users\MIKES\Desktop\OTL.exe
[2010.10.18 15:29:43 | 000,000,890 | ---- | M] () -- C:\Users\Public\Desktop\StarCraft II.lnk
[2010.10.17 16:49:46 | 000,184,324 | ---- | M] () -- C:\Users\MIKES\Desktop\Bez názvu.jpg
[2010.10.17 14:20:37 | 000,001,735 | ---- | M] () -- C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
[2010.10.17 14:20:23 | 000,691,696 | ---- | M] () -- C:\Windows\System32\drivers\sptd.sys
[2010.10.17 13:38:52 | 000,000,039 | ---- | M] () -- C:\Windows\Irremote.ini
[2010.10.17 13:15:36 | 002,883,698 | ---- | M] () -- C:\Program Files\Aktivátory - Legalizátory - win7 - winXP - winVista.rar
[2010.10.16 16:59:10 | 000,000,764 | ---- | M] () -- C:\Users\MIKES\Desktop\Voice Changer 4.0 .lnk
[2010.10.16 14:55:43 | 000,202,144 | ---- | M] () -- C:\Windows\UTP.exe
[2010.10.16 12:51:06 | 000,002,675 | ---- | M] () -- C:\Users\MIKES\Desktop\Microsoft Office Word 2007.lnk
[2010.10.15 14:01:28 | 000,662,506 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2010.10.15 14:01:28 | 000,127,966 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2010.10.15 07:33:08 | 002,266,984 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2010.10.14 18:08:50 | 000,669,432 | ---- | M] () -- C:\Users\MIKES\Documents\nwm.veg
[2010.10.14 16:29:45 | 000,669,216 | ---- | M] () -- C:\Users\MIKES\Documents\nwm.veg.bak
[2010.10.12 14:38:13 | 890,165,580 | ---- | M] () -- C:\Users\MIKES\Desktop\iw3mp 2010-10-12 14-31-18-31.avi
[2010.10.12 14:19:30 | 000,015,488 | ---- | M] () -- C:\Users\MIKES\Documents\BUb.veg.tmp.bak
[2010.10.12 12:49:05 | 000,014,560 | ---- | M] () -- C:\Users\MIKES\Documents\BUb.veg.bak
[2010.10.12 10:40:45 | 717,674,130 | ---- | M] () -- C:\Users\MIKES\Desktop\iw3mp 2010-10-12 09-24-52-81.avi
[2010.10.12 10:39:30 | 1149,214,405 | ---- | M] () -- C:\Users\MIKES\Desktop\iw3mp 2010-10-12 09-20-25-34.avi
[2010.10.12 10:31:31 | 709,973,083 | ---- | M] () -- C:\Users\MIKES\Desktop\iw3mp 2010-10-12 09-15-10-66.avi
[2010.10.12 09:46:32 | 1016,633,869 | ---- | M] () -- C:\Users\MIKES\Desktop\iw3mp 2010-10-12 09-10-17-71.avi
[2010.10.11 11:09:16 | 000,001,785 | ---- | M] () -- C:\Users\Public\Desktop\Vegas Pro 9.0.lnk
[2010.10.10 16:23:17 | 000,000,738 | ---- | M] () -- C:\Users\MIKES\Desktop\VTFEdit.lnk
[2010.10.09 17:10:23 | 000,002,900 | ---- | M] () -- C:\Users\MIKES\Documents\Register Vegas Pro.htm
[2010.10.09 15:17:02 | 234,749,433 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2010.10.08 18:49:36 | 000,000,957 | ---- | M] () -- C:\Users\Public\Desktop\DivX Plus Converter.lnk
[2010.10.06 14:16:21 | 000,001,800 | ---- | M] () -- C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
[2010.10.05 19:41:28 | 000,000,995 | ---- | M] () -- C:\Users\MIKES\Desktop\Wow – zástupce.lnk
[2010.10.05 18:34:46 | 000,000,056 | -H-- | M] () -- C:\ProgramData\ezsidmv.dat
[2010.10.04 15:23:43 | 000,000,154 | -HS- | M] () -- C:\Windows\setup_9.0.0.722_04.10.2010_16-32drv.spi
[2010.10.03 13:03:23 | 000,000,818 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010.10.03 10:24:06 | 000,000,102 | ---- | M] () -- C:\Users\MIKES\Documents\AutoHotkey.ahk
[2010.10.02 19:44:57 | 000,000,510 | ---- | M] () -- C:\Windows\WORDPAD.INI
[2010.10.02 13:17:39 | 000,204,670 | ---- | M] () -- C:\Users\MIKES\Documents\pinfect.zip
[2010.10.02 10:03:37 | 000,000,054 | ---- | M] () -- C:\Windows\Lic.xxx
[2010.10.02 09:40:53 | 000,034,048 | ---- | M] (MicroWorld Technologies Inc.) -- C:\Windows\System32\eEmpty.exe
[2010.10.01 17:26:52 | 000,002,395 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
[2010.09.29 17:10:17 | 000,086,016 | ---- | M] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\System32\OpenAL32.dll
[2010.09.26 19:49:49 | 000,000,852 | ---- | M] () -- C:\Users\Public\Desktop\KigoImageConverter.lnk
[2010.09.26 14:23:38 | 000,000,984 | ---- | M] () -- C:\Users\MIKES\Desktop\HAWX.exe – zástupce.lnk
[2010.09.25 18:18:17 | 000,000,671 | ---- | M] () -- C:\Users\MIKES\AppData\Roaming\vso_ts_preview.xml
[2010.09.20 20:33:23 | 056,510,675 | ---- | M] () -- C:\Users\MIKES\Desktop\red dwarf - cerveny trpaslik - s05e06 navrat do reality.mp4
[1 C:\Users\MIKES\Documents\*.tmp files -> C:\Users\MIKES\Documents\*.tmp -> ]
========== Files Created - No Company Name ==========
[2010.10.18 17:50:44 | 000,036,926 | ---- | C] () -- C:\Users\MIKES\Desktop\config_mp.cfg
[2010.10.18 15:17:09 | 000,000,890 | ---- | C] () -- C:\Users\Public\Desktop\StarCraft II.lnk
[2010.10.17 16:49:46 | 000,184,324 | ---- | C] () -- C:\Users\MIKES\Desktop\Bez názvu.jpg
[2010.10.17 14:20:37 | 000,001,735 | ---- | C] () -- C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
[2010.10.17 14:20:22 | 000,691,696 | ---- | C] () -- C:\Windows\System32\drivers\sptd.sys
[2010.10.17 13:15:28 | 002,883,698 | ---- | C] () -- C:\Program Files\Aktivátory - Legalizátory - win7 - winXP - winVista.rar
[2010.10.16 16:59:10 | 000,000,764 | ---- | C] () -- C:\Users\MIKES\Desktop\Voice Changer 4.0 .lnk
[2010.10.16 14:30:53 | 000,202,144 | ---- | C] () -- C:\Windows\UTP.exe
[2010.10.12 19:25:41 | 000,669,432 | ---- | C] () -- C:\Users\MIKES\Documents\nwm.veg
[2010.10.12 19:25:41 | 000,669,216 | ---- | C] () -- C:\Users\MIKES\Documents\nwm.veg.bak
[2010.10.12 14:36:24 | 890,165,580 | ---- | C] () -- C:\Users\MIKES\Desktop\iw3mp 2010-10-12 14-31-18-31.avi
[2010.10.12 12:49:05 | 000,015,488 | ---- | C] () -- C:\Users\MIKES\Documents\BUb.veg.tmp.bak
[2010.10.12 12:49:05 | 000,014,560 | ---- | C] () -- C:\Users\MIKES\Documents\BUb.veg.bak
[2010.10.12 10:40:02 | 717,674,130 | ---- | C] () -- C:\Users\MIKES\Desktop\iw3mp 2010-10-12 09-24-52-81.avi
[2010.10.12 10:33:48 | 1149,214,405 | ---- | C] () -- C:\Users\MIKES\Desktop\iw3mp 2010-10-12 09-20-25-34.avi
[2010.10.12 10:25:57 | 709,973,083 | ---- | C] () -- C:\Users\MIKES\Desktop\iw3mp 2010-10-12 09-15-10-66.avi
[2010.10.12 09:37:58 | 1016,633,869 | ---- | C] () -- C:\Users\MIKES\Desktop\iw3mp 2010-10-12 09-10-17-71.avi
[2010.10.11 11:09:16 | 000,001,785 | ---- | C] () -- C:\Users\Public\Desktop\Vegas Pro 9.0.lnk
[2010.10.10 16:23:17 | 000,000,738 | ---- | C] () -- C:\Users\MIKES\Desktop\VTFEdit.lnk
[2010.10.09 15:17:02 | 234,749,433 | ---- | C] () -- C:\Windows\MEMORY.DMP
[2010.10.08 18:49:36 | 000,000,957 | ---- | C] () -- C:\Users\Public\Desktop\DivX Plus Converter.lnk
[2010.10.06 14:16:21 | 000,001,800 | ---- | C] () -- C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
[2010.10.05 19:41:28 | 000,000,995 | ---- | C] () -- C:\Users\MIKES\Desktop\Wow – zástupce.lnk
[2010.10.05 18:34:46 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2010.10.04 15:23:43 | 000,000,154 | -HS- | C] () -- C:\Windows\setup_9.0.0.722_04.10.2010_16-32drv.spi
[2010.10.03 13:03:23 | 000,000,818 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010.10.02 19:44:57 | 000,000,510 | ---- | C] () -- C:\Windows\WORDPAD.INI
[2010.10.02 09:46:51 | 000,204,670 | ---- | C] () -- C:\Users\MIKES\Documents\pinfect.zip
[2010.10.02 09:41:31 | 000,000,054 | ---- | C] () -- C:\Windows\Lic.xxx
[2010.09.26 19:49:49 | 000,000,852 | ---- | C] () -- C:\Users\Public\Desktop\KigoImageConverter.lnk
[2010.09.26 14:23:38 | 000,000,984 | ---- | C] () -- C:\Users\MIKES\Desktop\HAWX.exe – zástupce.lnk
[2010.09.20 20:33:20 | 056,510,675 | ---- | C] () -- C:\Users\MIKES\Desktop\red dwarf - cerveny trpaslik - s05e06 navrat do reality.mp4
[2010.09.19 10:40:34 | 000,011,089 | ---- | C] () -- C:\Users\MIKES\Desktop\SkaR CoD4 Char Fig.fig
[2010.08.23 10:57:17 | 000,003,972 | ---- | C] () -- C:\Windows\System32\drivers\PciBus.sys
[2010.07.19 14:32:23 | 000,790,528 | ---- | C] () -- C:\Windows\System32\xvidcore.dll
[2010.07.19 14:32:23 | 000,000,038 | ---- | C] () -- C:\Windows\avisplitter.ini
[2010.07.19 14:32:22 | 000,108,032 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll
[2010.07.18 11:30:19 | 000,134,144 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll
[2010.07.09 21:04:40 | 000,041,872 | ---- | C] () -- C:\Windows\System32\xfcodec.dll
[2010.07.07 03:14:26 | 000,023,040 | ---- | C] () -- C:\Windows\System32\atitmpxx.dll
[2010.04.28 14:35:08 | 000,025,199 | ---- | C] () -- C:\Windows\System32\xfisk.ini
[2010.04.28 14:35:08 | 000,000,052 | ---- | C] () -- C:\Windows\System32\ctzapxx.ini
[2010.04.28 14:35:03 | 000,000,381 | R--- | C] () -- C:\Windows\skMCcfg.ini
[2010.04.28 14:34:55 | 000,127,488 | ---- | C] () -- C:\Windows\System32\APOMngr.DLL
[2010.04.28 14:34:55 | 000,069,120 | ---- | C] () -- C:\Windows\System32\CmdRtr.DLL
[2010.03.30 06:50:46 | 000,151,552 | ---- | C] () -- C:\Windows\System32\nvRegDev.dll
[2010.01.21 15:25:57 | 000,165,376 | ---- | C] () -- C:\Windows\System32\unrar.dll
[2009.12.22 21:30:59 | 000,027,993 | ---- | C] () -- C:\Users\MIKES\AppData\Roaming\OFMissionEditorConfig.xml
[2009.12.22 21:15:02 | 000,000,671 | ---- | C] () -- C:\Users\MIKES\AppData\Roaming\vso_ts_preview.xml
[2009.12.21 13:52:32 | 000,077,312 | ---- | C] () -- C:\Users\MIKES\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009.12.18 14:57:49 | 000,000,319 | ---- | C] () -- C:\Windows\game.ini
[2009.12.17 18:37:31 | 000,138,592 | ---- | C] () -- C:\Windows\System32\drivers\PnkBstrK.sys
[2009.12.17 18:37:31 | 000,022,328 | ---- | C] () -- C:\Users\MIKES\AppData\Roaming\PnkBstrK.sys
[2009.12.17 17:29:37 | 000,000,412 | ---- | C] () -- C:\Windows\MAXLINK.INI
[2009.12.17 15:36:14 | 000,281,760 | ---- | C] () -- C:\Windows\System32\drivers\atksgt.sys
[2009.12.17 15:36:14 | 000,025,888 | ---- | C] () -- C:\Windows\System32\drivers\lirsgt.sys
[2009.12.17 14:58:03 | 000,000,039 | ---- | C] () -- C:\Windows\Irremote.ini
[2009.12.16 11:11:42 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2009.04.01 16:53:34 | 000,520,192 | ---- | C] () -- C:\Windows\System32\RegisterDialog.dll
[2008.10.28 17:40:48 | 000,173,552 | ---- | C] () -- C:\Windows\System32\xlive.dll.cat
[2008.09.19 03:49:26 | 000,001,209 | R--- | C] () -- C:\Windows\skSPcfg.ini
[2008.02.05 14:28:20 | 000,000,051 | ---- | C] () -- C:\Users\MIKES\AppData\Local\setup.txt
[2006.11.02 14:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006.11.02 09:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006.08.16 16:13:34 | 001,382,280 | ---- | C] () -- C:\Windows\System32\fftw3.dll
========== LOP Check ==========
[2010.05.03 18:10:05 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\Allstar
[2010.04.25 16:43:18 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\Autodesk
[2010.06.19 21:49:44 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\BSplayer
[2010.06.19 21:06:20 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\BSplayer Pro
[2010.10.15 12:30:08 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\Canon
[2010.07.07 18:17:49 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\Cashfiesta
[2010.06.04 15:43:45 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\CD-LabelPrint
[2010.09.06 20:49:01 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\Cool Record Edit Pro
[2010.02.19 16:28:45 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\DAEMON Tools Lite
[2010.07.10 21:34:20 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\GameTracker
[2010.09.05 14:30:54 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\Get from YouTube
[2010.10.17 19:34:09 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\HLSW
[2010.02.25 16:17:29 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\ICQ
[2010.05.29 13:26:36 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\Leadertech
[2010.09.28 17:43:09 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\Planetside Software
[2010.04.14 18:08:20 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\Publish Providers
[2009.12.17 17:29:04 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\ScanSoft
[2010.09.05 13:18:41 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\Sony
[2010.04.24 15:10:11 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\TotalRecorder
[2010.04.04 17:05:15 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\TS3Client
[2010.03.23 17:05:54 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\Ubisoft
[2010.09.28 17:43:09 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\uk.co.planetside
[2010.10.19 07:20:06 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\uTorrent
[2010.09.25 18:18:18 | 000,000,000 | ---D | M] -- C:\Users\MIKES\AppData\Roaming\Vso
[2010.10.18 20:46:29 | 000,032,628 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ==========
< End of report >
Re: Zlobí UAC (řízení uživatelských účtů)
Extras.Txt
OTL Extras logfile created on: 19.10.2010 7:23:03 - Run 1
OTL by OldTimer - Version 3.2.15.2 Folder = C:\Users\MIKES\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18975)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 62,00% Memory free
6,00 Gb Paging File | 5,00 Gb Available in Paging File | 81,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 465,76 Gb Total Space | 105,37 Gb Free Space | 22,62% Space Free | Partition Type: NTFS
Computer Name: MIKES-PC | User Name: MIKES | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"VistaSp2" = Reg Error: Unknown registry data type -- File not found
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{3CAAF6AA-594E-4B89-A4E0-BF0392DE1928}" = lport=5000 | protocol=17 | dir=in | name=akamai netsession interface |
"{77D70E9C-5F08-468A-BB9D-AECA4D733B23}" = lport=49162 | protocol=6 | dir=in | name=akamai netsession interface |
"{DD9E4043-ED97-4F8E-94CD-5F55C85F4119}" = lport=49167 | protocol=6 | dir=in | name=akamai netsession interface |
"{EEF8F525-32F0-4DAE-9B8E-CCE146F903AC}" = lport=5000 | protocol=17 | dir=in | name=akamai netsession interface |
"{FAE37C90-7F9D-48FD-A771-8AF35E112B09}" = lport=5353 | protocol=6 | dir=in | name=adobe csi cs4 |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{03FBFDA7-5CFB-4C94-973A-B320336D229F}" = protocol=17 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.2.0-enus-downloader.exe |
"{073EC1B5-AD4A-45B5-9B07-6A14886F204E}" = protocol=17 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\assassinscreediigame.exe |
"{0C0412CB-5BE8-427B-B5A2-B99F23A89124}" = protocol=17 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\assassinscreedii.exe |
"{0C1ADAF0-846C-4FB9-89D0-A1C83F0E19A3}" = protocol=6 | dir=in | app=c:\program files\pinnacle\studio 14\programs\umi.exe |
"{10FEA83A-8C9A-417F-8203-A16360C39991}" = protocol=17 | dir=in | app=c:\program files\pinnacle\studio 14\programs\studio.exe |
"{1750A9D0-8F0F-4FC1-8CF2-47B0D1E4297A}" = protocol=6 | dir=in | app=c:\program files\starcraft ii\starcraft ii.exe |
"{1BD10A17-7587-4302-885F-6CDE7C92BA59}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{2210B9F3-D21E-40A6-9D71-DC4F8B3553F3}" = protocol=17 | dir=in | app=c:\program files\autodesk\backburner\server.exe |
"{257D9901-1335-4135-9748-A0C21BC4886B}" = protocol=6 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\uplaybrowser.exe |
"{2A737584-04B2-41C2-819A-3519228E2597}" = protocol=6 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\assassinscreediigame.exe |
"{2C157635-443B-453E-8979-8AC406735F83}" = protocol=17 | dir=in | app=c:\program files\activision\call of duty 4 - modern warfare\iw3mp.exe |
"{339872D5-14AA-47BE-941A-9D138B3A356C}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstrb.exe |
"{352FA960-F15D-450A-AF42-D6A20EE86BA9}" = protocol=17 | dir=in | app=c:\program files\starcraft ii\starcraft ii.exe |
"{35BCC3A0-929F-4609-8F8C-E7DB77441AA9}" = protocol=17 | dir=in | app=c:\program files\steam\steamapps\common\call of duty modern warfare 2\iw4mp.exe |
"{38292C81-826E-4ED1-8456-4151A02E11BF}" = protocol=17 | dir=in | app=c:\program files\steam\steamapps\common\call of duty modern warfare 2\iw4sp.exe |
"{3AF2CA9C-4485-4B37-A5F4-10382D1AFFB4}" = protocol=6 | dir=in | app=c:\program files\pinnacle\studio 14\programs\rm.exe |
"{3E673EA4-4109-4CF8-BE3A-09E315361A5F}" = protocol=17 | dir=in | app=c:\program files\autodesk\3ds max 2010\mentalray\satellite\raysat_3dsmax2010_32.exe |
"{3ECCDF1C-F678-4B5A-BAD5-E3B6BB4D56E3}" = protocol=6 | dir=in | app=c:\program files\autodesk\3ds max 2010\3dsmax.exe |
"{3F296548-8C08-4D86-BBD2-ECD8667CFFD2}" = protocol=6 | dir=in | app=c:\program files\pinnacle\studio 14\programs\studio.exe |
"{3FDBA316-3C9E-44AA-97B2-1746E4E9688E}" = protocol=17 | dir=in | app=c:\program files\bohemia interactive\arma 2\arma2.exe |
"{4042B8E7-6EF4-41A7-8015-CC6F7E4D7041}" = protocol=6 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.2.2.10482-to-3.2.2.10505-enus-downloader.exe |
"{43B6D2DC-0F77-44D9-939C-5FBF9A67C478}" = protocol=6 | dir=in | app=c:\program files\autodesk\3ds max 2010\mentalray\satellite\raysat_3dsmax2010_32.exe |
"{489BFC18-BAC4-4F36-835E-8108DC2474AC}" = protocol=6 | dir=in | app=c:\program files\electronic arts\battlefield bad company 2\bfbc2updater.exe |
"{48B59805-72AF-4780-80FE-030433A30DC1}" = protocol=6 | dir=in | app=c:\program files\skype\plugin manager\skypepm.exe |
"{4A051713-7AAE-46D9-9697-0CA68987CA52}" = protocol=17 | dir=in | app=c:\program files\pinnacle\studio 14\programs\rm.exe |
"{4A8F284D-104E-4EEB-B8B2-89797B818A2C}" = protocol=6 | dir=in | app=c:\program files\bohemia interactive\arma 2\arma2oa.exe |
"{577326F6-C408-4E44-96E4-427C8FCF7557}" = protocol=17 | dir=in | app=c:\program files\skype\plugin manager\skypepm.exe |
"{582D7A0D-6DB3-4546-B302-FA780C9BEC20}" = protocol=17 | dir=in | app=c:\program files\autodesk\3ds max 2010\mentalray\satellite\raysat_3dsmax2010_32server.exe |
"{58CCD07B-1093-4F4C-BA62-0B0B189F8794}" = protocol=6 | dir=in | app=c:\program files\autodesk\backburner\monitor.exe |
"{59376853-3DC8-4F46-A39A-8DF7C3181139}" = protocol=6 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\assassinscreedii.exe |
"{5C29947C-1F3B-4F1E-B0C2-F578A9E71F2F}" = protocol=17 | dir=in | app=c:\users\mikes\desktop\stažené soubory\pdf_converter.exe |
"{5EABC160-57BF-468B-B6DE-5AF74C7A2E25}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{5EC471F0-D110-4097-98E6-982FE8EB5234}" = protocol=17 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\uplaybrowser.exe |
"{6486658F-00FA-4696-AA3F-FB50B7684571}" = protocol=17 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\assassinscreedii.exe |
"{696ED1D3-FFED-4303-9708-1D6A1CB15C66}" = protocol=6 | dir=in | app=c:\program files\autodesk\backburner\manager.exe |
"{6ECB486E-8257-4720-B18B-72FB0635B6C2}" = protocol=6 | dir=in | app=c:\program files\common files\adobe\cs4servicemanager\cs4servicemanager.exe |
"{6F7B2630-BDA5-40D8-ADC4-A6057A3AA072}" = protocol=6 | dir=in | app=c:\program files\ubisoft\tom clancy's h.a.w.x\hawx_dx10.exe |
"{6F94559A-DF40-4756-8704-465B1805B682}" = protocol=17 | dir=in | app=c:\program files\steam\steamapps\common\mafia ii - public demo\launcher.exe |
"{700F2F38-9C08-45DF-BE7E-D0C448D6EECD}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{702BE6D3-BB4E-4F3B-8D11-A51019EDF419}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{71287B5E-AF2A-4025-8C16-10B42862AF2F}" = protocol=6 | dir=in | app=c:\users\mikes\desktop\stažené soubory\pdf_converter.exe |
"{71329CEC-89D6-4843-B952-E6A4278C25CF}" = protocol=17 | dir=in | app=c:\program files\autodesk\3ds max 2010\3dsmax.exe |
"{7C8DA8A0-BD86-4847-9637-3B8E499EA391}" = protocol=6 | dir=in | app=c:\program files\bohemia interactive\arma 2\arma2.exe |
"{7F72E563-1A37-455F-8036-229522F59572}" = protocol=17 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\assassinscreediigame.exe |
"{83A30E9C-D0D0-4A07-A924-05E5524434BF}" = protocol=6 | dir=in | app=c:\program files\steam\steamapps\common\call of duty modern warfare 2\iw4sp.exe |
"{86129A38-581C-4219-A428-5B3C51FA05F1}" = protocol=6 | dir=in | app=c:\program files\rockstar games\grand theft auto iv\launchgtaiv.exe |
"{8894D7BD-FCD7-4C31-9B33-DE7C3FE1C481}" = protocol=17 | dir=in | app=c:\program files\utorrent\utorrent.exe |
"{94C033BC-EC42-4953-92DD-041C601A5398}" = protocol=6 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\uplaybrowser.exe |
"{961D2860-B8F4-4157-817E-0111B4A93682}" = protocol=17 | dir=in | app=c:\program files\common files\adobe\cs4servicemanager\cs4servicemanager.exe |
"{96EA0D80-71A1-4992-8A51-39B2E4777ACD}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{9A83966F-60F6-456D-9DAF-426567A8D3AE}" = protocol=17 | dir=in | app=c:\program files\electronic arts\battlefield bad company 2\bfbc2updater.exe |
"{A10F82D1-A3E8-432C-894D-E955C9E53317}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{A3D4054A-CD03-48CB-9101-1D6AC4CD3B65}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{A42BB823-0A4A-4A30-B6D7-15EA1BFE0954}" = protocol=17 | dir=in | app=c:\program files\rockstar games\grand theft auto iv\launchgtaiv.exe |
"{A4CEEA75-C98F-4BA6-80DD-11528423E602}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstra.exe |
"{A5F049C4-B1E0-4222-9012-4A5D8ED6723C}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{AC0D8E50-6E2E-45E1-959C-CB8655474E8F}" = protocol=6 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.2.0-enus-downloader.exe |
"{ACA9A4C9-33CB-4375-9B4E-41E2E929209E}" = protocol=6 | dir=in | app=c:\program files\steam\steamapps\common\mafia ii - public demo\launcher.exe |
"{AE69D610-9E6D-460D-8E28-45D3B25EAF20}" = protocol=17 | dir=in | app=c:\program files\pinnacle\studio 14\programs\umi.exe |
"{BA1ABFA1-EA4F-4767-94BA-3F1ED1FB14A6}" = protocol=17 | dir=in | app=c:\program files\rockstar games\rockstar games social club\rgsclauncher.exe |
"{BA38E2CF-0C7F-425D-A4A6-21D7E57EB546}" = protocol=17 | dir=in | app=c:\program files\itunes\itunes.exe |
"{BB2AF532-168A-4C1E-80AA-6B56762AB63C}" = protocol=17 | dir=in | app=c:\program files\bohemia interactive\arma 2\arma2oa.exe |
"{BC36684E-8E7E-4485-BB54-329A25A614F4}" = protocol=6 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.2.0.10314-to-3.2.2.10482-enus-downloader.exe |
"{BE7E2AB3-623C-42B8-977C-1547D309F736}" = protocol=6 | dir=in | app=c:\program files\ubisoft\tom clancy's h.a.w.x\hawx.exe |
"{BED96965-F3C0-4D75-B6CB-5A780EE34AA5}" = protocol=17 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.2.2.10482-to-3.2.2.10505-enus-downloader.exe |
"{C3D37B16-62C0-40B8-BF77-173CC80F6637}" = protocol=6 | dir=in | app=c:\program files\steam\steamapps\common\call of duty modern warfare 2\iw4mp.exe |
"{C4D34705-C38D-45FE-A79A-763A3E65358A}" = protocol=6 | dir=in | app=c:\program files\utorrent\utorrent.exe |
"{CA98BFE0-10AB-4609-9BA8-DC57EAB2D1F8}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstrb.exe |
"{CAFCE064-8A87-4CA4-81AA-E06C4E62F3FE}" = protocol=17 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.2.0.10314-to-3.2.2.10482-enus-downloader.exe |
"{CCDCDD1A-61E4-43E9-8526-B7179AD630F9}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{CCE72932-6FB0-408C-A0B7-89EFFAA336C1}" = protocol=6 | dir=in | app=c:\program files\itunes\itunes.exe |
"{CEB3A799-BBD3-49CE-B25C-9A47B0EB3749}" = protocol=6 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\assassinscreedii.exe |
"{D015A2DE-D572-4F8B-BFA3-7B84CFB865DE}" = protocol=17 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\uplaybrowser.exe |
"{DA40AAE8-8225-430F-9A22-2DE155B25FB4}" = protocol=6 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\assassinscreediigame.exe |
"{DADE26CD-DA11-4D21-9897-452B31862AD1}" = protocol=17 | dir=in | app=c:\program files\autodesk\backburner\manager.exe |
"{E141A7B5-10D9-4C79-9422-F94BC945AC18}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstra.exe |
"{E1BFEE59-B3C0-4498-BB67-D4DE9DC45EF6}" = protocol=6 | dir=in | app=c:\program files\activision\call of duty 4 - modern warfare\iw3mp.exe |
"{E478438A-F229-47D2-8072-06C73EDDF606}" = protocol=6 | dir=in | app=c:\program files\rockstar games\rockstar games social club\rgsclauncher.exe |
"{E6315F74-31D3-48E4-A431-7776F0B79C26}" = protocol=6 | dir=in | app=c:\program files\autodesk\3ds max 2010\mentalray\satellite\raysat_3dsmax2010_32server.exe |
"{E6EDB1FD-0F8A-4995-94A4-7C26E46699D4}" = protocol=17 | dir=in | app=c:\program files\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |
"{EA5A5915-624E-46A8-AB06-6FC739B4A87A}" = protocol=17 | dir=in | app=c:\program files\rockstar games\rockstar games social club\rgsclauncher.exe |
"{EC125C20-76D9-478B-BE72-8E5FDEB29904}" = protocol=17 | dir=in | app=c:\program files\starcraft ii\starcraft ii.exe |
"{EE1EB6D6-ABF5-45CF-8916-9DAF638D4BFC}" = protocol=6 | dir=in | app=c:\program files\autodesk\backburner\server.exe |
"{EE594279-DA15-4A14-8DCB-3FB0323E0546}" = protocol=6 | dir=in | app=c:\program files\rockstar games\rockstar games social club\rgsclauncher.exe |
"{EED08866-FF70-4D8F-AD0E-EB397D32761D}" = protocol=17 | dir=in | app=c:\program files\autodesk\backburner\monitor.exe |
"{EF956B2A-DBD5-4FAD-9820-E9700CA4DFC7}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{F1559E31-4D46-4C5C-BE95-48B82814C2D2}" = protocol=6 | dir=in | app=c:\program files\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |
"{F2C23439-ACF4-4BE7-B209-6254ADDA80A6}" = protocol=17 | dir=in | app=c:\program files\ubisoft\tom clancy's h.a.w.x\hawx.exe |
"{F8DDC8DF-902E-455C-B43E-3C909B8E362E}" = protocol=6 | dir=in | app=c:\program files\starcraft ii\starcraft ii.exe |
"{F988605D-B4B8-441B-B85C-3050030F956B}" = protocol=17 | dir=in | app=c:\program files\ubisoft\tom clancy's h.a.w.x\hawx_dx10.exe |
"TCP Query User{11F52A4E-0954-42D2-AB10-726C1ACB5CFD}C:\program files\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe |
"TCP Query User{1AA964B8-78C8-4A99-BFC5-8A7EB3022C36}C:\program files\ubisoft\assassin's creed ii\nová složka\server.exe" = protocol=6 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\nová složka\server.exe |
"TCP Query User{2C43B27A-B0C7-496E-9C09-F4A3DBCF70EB}C:\program files\starcraft ii\support\blizzarddownloader.exe" = protocol=6 | dir=in | app=c:\program files\starcraft ii\support\blizzarddownloader.exe |
"TCP Query User{2C744018-E4D7-4FC8-A66B-33426416E805}C:\users\mikes\downloads\assassins creed 2 - crack\assassins creed ii - emulator\server.exe" = protocol=6 | dir=in | app=c:\users\mikes\downloads\assassins creed 2 - crack\assassins creed ii - emulator\server.exe |
"TCP Query User{337D16F9-445E-416D-B4C2-D57FDA098B7E}C:\program files\counter-strike source\hl2.exe" = protocol=6 | dir=in | app=c:\program files\counter-strike source\hl2.exe |
"TCP Query User{38B9F0BE-5D82-4D18-B976-BE68ED90F420}C:\program files\webteh\bsplayer\bsplayer.exe" = protocol=6 | dir=in | app=c:\program files\webteh\bsplayer\bsplayer.exe |
"TCP Query User{42FAC019-DBE7-4F07-8362-FEF2D4539894}C:\program files\ubisoft\assassin's creed ii\nová složka\mitm.exe" = protocol=6 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\nová složka\mitm.exe |
"TCP Query User{4CCF9787-B5FF-478D-B93C-FDD6F174C0BD}C:\users\public\games\world of warcraft\wow-3.3.0.10958-to-3.3.0.11159-enus-downloader.exe" = protocol=6 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.3.0.10958-to-3.3.0.11159-enus-downloader.exe |
"TCP Query User{5BC1F230-E6F7-4108-9C1E-395F5CAAA9A9}C:\program files\icq6.5\icq.exe" = protocol=6 | dir=in | app=c:\program files\icq6.5\icq.exe |
"TCP Query User{630F6A8C-4DF8-42CC-898E-EE061C14CC27}C:\users\mikes\desktop\nová složka\server.exe" = protocol=6 | dir=in | app=c:\users\mikes\desktop\nová složka\server.exe |
"TCP Query User{63FACBF0-7F61-4BE7-A928-3D411E144736}C:\users\public\games\world of warcraft\wow-3.3.2.11403-to-3.3.3.11685-enus-downloader.exe" = protocol=6 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.3.2.11403-to-3.3.3.11685-enus-downloader.exe |
"TCP Query User{66BB643E-1934-47FA-80AC-6DA0B044DA0C}C:\users\public\games\world of warcraft\wow-3.3.3.11685-to-3.3.3.11723-enus-downloader.exe" = protocol=6 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.3.3.11685-to-3.3.3.11723-enus-downloader.exe |
"TCP Query User{679CCFFC-807D-4000-862E-A622A41F1C40}C:\program files\warcraft iii\war3.exe" = protocol=6 | dir=in | app=c:\program files\warcraft iii\war3.exe |
"TCP Query User{686D3554-E572-498E-A83D-FADCD2334ED8}C:\program files\xfire\xfire.exe" = protocol=6 | dir=in | app=c:\program files\xfire\xfire.exe |
"TCP Query User{68D8EDFC-F5D4-4889-AA71-D38C3AA7E71F}C:\casino\bwin casino\casino.exe" = protocol=6 | dir=in | app=c:\casino\bwin casino\casino.exe |
"TCP Query User{71EC9A21-665F-4D33-8401-4569EAC76A94}C:\program files\xfire\xfire.exe" = protocol=6 | dir=in | app=c:\program files\xfire\xfire.exe |
"TCP Query User{78F3C5ED-9212-47E0-995A-49A02AE1E509}C:\users\public\games\world of warcraft\wow-3.2.2.10505-to-3.3.0.10958-enus-downloader.exe" = protocol=6 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.2.2.10505-to-3.3.0.10958-enus-downloader.exe |
"TCP Query User{855B465D-4E6D-4F8C-B7F5-1BCA52AB8508}C:\program files\mirc\mirc.exe" = protocol=6 | dir=in | app=c:\program files\mirc\mirc.exe |
"TCP Query User{871587A9-8B74-4C93-BC7B-F813F3E90953}C:\program files\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\firefox.exe |
"TCP Query User{8E27D578-8BDB-4DB2-99E3-BCA670A2090D}C:\program files\adobe\adobe after effects cs4\support files\afterfx.exe" = protocol=6 | dir=in | app=c:\program files\adobe\adobe after effects cs4\support files\afterfx.exe |
"TCP Query User{8EC379D2-F6C4-40EB-8C90-EE6A9425B9ED}C:\program files\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\program files\utorrent\utorrent.exe |
"TCP Query User{931AC45A-BF2A-489F-ACD7-5B2EC46EA4EA}C:\program files\sony\vegas pro 9.0\vegsrv90.exe" = protocol=6 | dir=in | app=c:\program files\sony\vegas pro 9.0\vegsrv90.exe |
"TCP Query User{94B7A749-8644-48E2-B7A8-2F2299626ABC}C:\users\mikes\desktop\team viewer\teamviewer.exe" = protocol=6 | dir=in | app=c:\users\mikes\desktop\team viewer\teamviewer.exe |
"TCP Query User{A3F9FE6D-ECFE-4573-AA3D-AC220AB4670E}C:\users\public\games\world of warcraft\launcher.exe" = protocol=6 | dir=in | app=c:\users\public\games\world of warcraft\launcher.exe |
"TCP Query User{AEC77640-3B8B-4037-B3C7-9DC5EAEA56B4}C:\program files\ubisoft\assassin's creed ii\nová složka (2)\nová složka\server.exe" = protocol=6 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\nová složka (2)\nová složka\server.exe |
"TCP Query User{B563126F-DF33-4F54-AB44-4AAF21472158}C:\program files\activision\call of duty 4 - modern warfare\mp_tool.exe" = protocol=6 | dir=in | app=c:\program files\activision\call of duty 4 - modern warfare\mp_tool.exe |
"TCP Query User{C17E6562-1EB3-49D8-9709-02662F8E5CF0}C:\users\public\games\world of warcraft\wow-3.3.0.11159-to-3.3.2.11403-enus-downloader.exe" = protocol=6 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.3.0.11159-to-3.3.2.11403-enus-downloader.exe |
"TCP Query User{C5B5900B-2FF1-4EDC-960E-3D4CA5E1FE3A}C:\program files\activision\call of duty 4 - modern warfare\iw3mp.exe" = protocol=6 | dir=in | app=c:\program files\activision\call of duty 4 - modern warfare\iw3mp.exe |
"TCP Query User{CF33C2D7-967E-41C6-801F-857D4C143A98}C:\program files\hlsw\hlsw.exe" = protocol=6 | dir=in | app=c:\program files\hlsw\hlsw.exe |
"TCP Query User{D3EEE410-7727-4935-9650-56022F9A71EB}C:\users\mikes\desktop\nová složka\teamviewer.exe" = protocol=6 | dir=in | app=c:\users\mikes\desktop\nová složka\teamviewer.exe |
"TCP Query User{EE465571-9345-4425-A3B6-06C6DAA9B7FF}C:\program files\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\program files\utorrent\utorrent.exe |
"UDP Query User{0E02C0FB-FF20-430F-B23A-814E1B0FB6B7}C:\program files\ubisoft\assassin's creed ii\nová složka\mitm.exe" = protocol=17 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\nová složka\mitm.exe |
"UDP Query User{150D0C36-097B-4845-BD5C-55BA006DD9CD}C:\program files\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\firefox.exe |
"UDP Query User{2493179D-E011-4990-909B-12385FB01E83}C:\program files\icq6.5\icq.exe" = protocol=17 | dir=in | app=c:\program files\icq6.5\icq.exe |
"UDP Query User{2D37E875-260B-4DD8-8F62-52098F3D4A83}C:\users\mikes\desktop\nová složka\server.exe" = protocol=17 | dir=in | app=c:\users\mikes\desktop\nová složka\server.exe |
"UDP Query User{3A9E61D0-1B31-440A-8766-E5BCF3C38987}C:\program files\xfire\xfire.exe" = protocol=17 | dir=in | app=c:\program files\xfire\xfire.exe |
"UDP Query User{46E466AB-EA56-4B56-A25D-EEE73ABCADF4}C:\users\mikes\downloads\assassins creed 2 - crack\assassins creed ii - emulator\server.exe" = protocol=17 | dir=in | app=c:\users\mikes\downloads\assassins creed 2 - crack\assassins creed ii - emulator\server.exe |
"UDP Query User{65C298EE-063B-49F0-AC45-2C4142C794DA}C:\users\mikes\desktop\nová složka\teamviewer.exe" = protocol=17 | dir=in | app=c:\users\mikes\desktop\nová složka\teamviewer.exe |
"UDP Query User{6C8262AA-64A5-4898-81C1-5547D93BC987}C:\program files\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe |
"UDP Query User{74C8B03A-98D4-464A-A7B0-C91ED5E6562D}C:\program files\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\program files\utorrent\utorrent.exe |
"UDP Query User{7970ED5B-D166-427B-89B7-6603E884BD07}C:\users\public\games\world of warcraft\wow-3.3.3.11685-to-3.3.3.11723-enus-downloader.exe" = protocol=17 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.3.3.11685-to-3.3.3.11723-enus-downloader.exe |
"UDP Query User{7D6495D4-476E-428D-903C-0EBB7AF62581}C:\program files\xfire\xfire.exe" = protocol=17 | dir=in | app=c:\program files\xfire\xfire.exe |
"UDP Query User{7D8324BE-CCAF-4BFE-AD43-B74A4E825E11}C:\program files\activision\call of duty 4 - modern warfare\mp_tool.exe" = protocol=17 | dir=in | app=c:\program files\activision\call of duty 4 - modern warfare\mp_tool.exe |
"UDP Query User{806935C0-E559-428B-B634-F500D392C926}C:\users\public\games\world of warcraft\wow-3.3.0.11159-to-3.3.2.11403-enus-downloader.exe" = protocol=17 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.3.0.11159-to-3.3.2.11403-enus-downloader.exe |
"UDP Query User{83ED5C54-C9C2-40E6-8089-FBC689E95DA6}C:\users\public\games\world of warcraft\wow-3.3.0.10958-to-3.3.0.11159-enus-downloader.exe" = protocol=17 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.3.0.10958-to-3.3.0.11159-enus-downloader.exe |
"UDP Query User{86D175F2-1913-48E2-A508-E19824D07987}C:\casino\bwin casino\casino.exe" = protocol=17 | dir=in | app=c:\casino\bwin casino\casino.exe |
"UDP Query User{8BC68DAC-A272-4354-83C7-1D95F07C1098}C:\users\public\games\world of warcraft\wow-3.2.2.10505-to-3.3.0.10958-enus-downloader.exe" = protocol=17 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.2.2.10505-to-3.3.0.10958-enus-downloader.exe |
"UDP Query User{9500776B-D528-4BF7-B4F8-70ADD3E7BEA9}C:\program files\sony\vegas pro 9.0\vegsrv90.exe" = protocol=17 | dir=in | app=c:\program files\sony\vegas pro 9.0\vegsrv90.exe |
"UDP Query User{99D4E225-08A1-4AFB-B6DF-D5DBF7105272}C:\users\public\games\world of warcraft\wow-3.3.2.11403-to-3.3.3.11685-enus-downloader.exe" = protocol=17 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.3.2.11403-to-3.3.3.11685-enus-downloader.exe |
"UDP Query User{A3953C4D-6B60-42A8-AF90-63F2186CCD9D}C:\users\mikes\desktop\team viewer\teamviewer.exe" = protocol=17 | dir=in | app=c:\users\mikes\desktop\team viewer\teamviewer.exe |
"UDP Query User{A5024872-42E8-4D0F-9343-B03639ED67C9}C:\program files\starcraft ii\support\blizzarddownloader.exe" = protocol=17 | dir=in | app=c:\program files\starcraft ii\support\blizzarddownloader.exe |
"UDP Query User{AA8C07E3-644F-4EF1-87A0-2BA4ED2AB852}C:\program files\webteh\bsplayer\bsplayer.exe" = protocol=17 | dir=in | app=c:\program files\webteh\bsplayer\bsplayer.exe |
"UDP Query User{B2525780-219F-4001-980D-95AAB131100C}C:\program files\counter-strike source\hl2.exe" = protocol=17 | dir=in | app=c:\program files\counter-strike source\hl2.exe |
"UDP Query User{C43C01E4-990F-4EDC-88B5-F736DD2A78DE}C:\program files\ubisoft\assassin's creed ii\nová složka\server.exe" = protocol=17 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\nová složka\server.exe |
"UDP Query User{CC4CBCFA-DFA4-4983-9A67-D6C125312167}C:\program files\ubisoft\assassin's creed ii\nová složka (2)\nová složka\server.exe" = protocol=17 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\nová složka (2)\nová složka\server.exe |
"UDP Query User{CF7C9006-8998-444A-B87A-4B16F70165DE}C:\program files\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\program files\utorrent\utorrent.exe |
"UDP Query User{CFF89E24-DA00-44E1-91FC-FB3463615C96}C:\users\public\games\world of warcraft\launcher.exe" = protocol=17 | dir=in | app=c:\users\public\games\world of warcraft\launcher.exe |
"UDP Query User{D0A80B9D-6F3C-479B-A1E2-1F08B5ACCACF}C:\program files\warcraft iii\war3.exe" = protocol=17 | dir=in | app=c:\program files\warcraft iii\war3.exe |
"UDP Query User{D38EE5FD-4C39-4430-8C6C-4047D0B8B930}C:\program files\activision\call of duty 4 - modern warfare\iw3mp.exe" = protocol=17 | dir=in | app=c:\program files\activision\call of duty 4 - modern warfare\iw3mp.exe |
"UDP Query User{D64084A6-DB83-4132-9A0E-4E9BF06AA37C}C:\program files\adobe\adobe after effects cs4\support files\afterfx.exe" = protocol=17 | dir=in | app=c:\program files\adobe\adobe after effects cs4\support files\afterfx.exe |
"UDP Query User{F26216D5-F3A4-496B-A44C-702BF4D47909}C:\program files\mirc\mirc.exe" = protocol=17 | dir=in | app=c:\program files\mirc\mirc.exe |
"UDP Query User{F3A61B0E-2182-449F-B674-317B9068FEAE}C:\program files\hlsw\hlsw.exe" = protocol=17 | dir=in | app=c:\program files\hlsw\hlsw.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00ADFB20-AE75-46F4-AD2C-F48B15AC3100}" = Adobe Color NA Recommended Settings CS4
"{0224CACC-994D-45F8-B973-D65056EA9C2F}" = Adobe XMP DVA Panels CS3
"{0370E621-61D1-4199-82AF-8F21851FD194}" = i_instrumentation 1.0.38.0
"{03B0D67B-36C9-C2CD-B63B-7B526138BA52}" = ccc-utility
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{04AF207D-9A77-465A-8B76-991F6AB66245}" = Adobe Help Viewer CS3
"{04FC2E4C-0E41-9D39-4E58-1EF29D4EF09D}" = ccc-core-static
"{05308C4E-7285-4066-BAE3-6B50DA6ED755}" = Adobe Update Manager CS4
"{054EFA56-2AC1-48F4-A883-0AB89874B972}" = Adobe Extension Manager CS4
"{06A1BE8A-4CA4-4A39-B9E4-E815AA8FE05C}" = Sony Noise Reduction Plug-In 2.0h
"{08B32819-6EEF-4057-AEDA-5AB681A36A23}" = Adobe Bridge Start Meeting
"{08B3869E-D282-424C-9AFC-870E04A4BA14}" = Rockstar Games Social Club
"{0949C078-58B4-CAF1-9A63-A4545145806D}" = Catalyst Control Center Graphics Previews Common
"{098727E1-775A-4450-B573-3F441F1CA243}" = kuler
"{0CB9668D-F979-4F31-B8B8-67FE90F929F8}" = Bonjour
"{0D2F6F25-394B-4ACA-BC9C-1394E963C620}" = Intel(R) Remote Wake Technology 1.0.45.9
"{0D6013AB-A0C7-41DC-973C-E93129C9A29F}" = Adobe Color JA Extra Settings CS4
"{0D67A4E4-5BE0-4C9A-8AD8-AB552B433F23}" = Adobe Setup
"{0F723FC1-7606-4867-866C-CE80AD292DAF}" = Adobe CSI CS4
"{0F9196C6-58B4-445B-B56E-B1200FECC151}" = Microsoft Bootvis
"{0FEA9A38-B993-0969-3A78-4D5CDDACEFEE}" = ATI Catalyst Install Manager
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP610_series" = Canon MP610 series
"{14addf3e-fc91-470e-8b77-36f75d5107ed}" = Nero 9 Trial
"{1618734A-3957-4ADD-8199-F973763109A8}" = Adobe Anchor Service CS4
"{16E16F01-2E2D-4248-A42F-76261C147B6C}" = Adobe Drive CS4
"{16E6D2C1-7C90-4309-8EC4-D2212690AAA4}" = AdobeColorCommonSetRGB
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
"{197A3012-8C85-4FD3-AB66-9EC7E13DB92E}" = Adobe AIR
"{1D666E21-2924-4B94-9A33-D6136761ACAB}" = Intel(R) Remote Wake Technology 1.0.296.0
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{23F79416-CAD1-41BF-99A3-040F6C814AAA}" = NVIDIA Photoshop Plug-ins
"{26A24AE4-039D-4CA4-87B4-2F83216020FF}" = Java(TM) 6 Update 21
"{273799F6-BC76-46F1-95E1-EF05322C3A5F}" = i_msm 1.0.312.0
"{2BE51F94-8ED9-4B31-898C-01BFA71CC1DC}" = i_swupdate 1.0.40.0
"{2C294A0B-DF22-4023-B168-8C7645B10019}" = Adobe Setup
"{317AC0C7-FEBF-0409-87A3-4FC70D0ED900}" = Autodesk 3ds Max 2010 32-bit
"{35D94F92-1D3A-43C5-8605-EA268B1A7BD9}" = PDF Settings CS4
"{36403ED9-3E0B-4407-B876-82BC479C0B38}" = 3DS Max DDS Plug-In
"{39F6E2B4-CFE8-C30A-66E8-489651F0F34C}" = Adobe Media Player
"{3A4E8896-C2E7-4084-A4A4-B8FD1894E739}" = Adobe XMP Panels CS4
"{3D2C9DE6-9ADE-4252-A241-E43723B0CE02}" = Adobe Color - Photoshop Specific CS4
"{3D347E6D-5A03-4342-B5BA-6A771885F379}" = Autodesk Backburner 2008.1
"{3D9892BB-A751-4E48-ADC8-E4289956CE1D}" = QuickTime
"{3DA8DF9A-044E-46C4-8531-DEDBB0EE37FF}" = Adobe WinSoft Linguistics Plugin
"{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}" = NVIDIA PhysX
"{3F9170C9-A7C2-408F-A4D8-EC77250040BF}" = Sound Forge Pro 10.0
"{40AE01BE-A290-4FFB-8DAB-C624C17DC87E}" = Vegas Movie Studio HD Platinum 10.0
"{411F3ABA-2AB5-4799-AA19-6ADF0A8F7424}" = Adobe Setup
"{43509E18-076E-40FE-AF38-CA5ED400A5A9}" = Pixel Bender Toolkit
"{44E240EC-2224-4078-A88B-2CEE0D3016EF}" = Adobe After Effects CS4 Presets
"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
"{45EC816C-0771-4C14-AE6D-72D1B578F4C8}" = Adobe After Effects CS4
"{4943EFF5-229F-435D-BEA9-BE3CAEA783A7}" = Adobe Service Manager Extension
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4AA3D64E-9EC3-4B0F-AB91-5885AC55641F}" = Microsoft Games for Windows - LIVE
"{4AEA9A23-D627-4699-8A0F-FC474308C2E6}" = Sony Sound Forge 9.0
"{4B215C29-1A3E-4736-92AA-10C83FA56EB9}" = Adobe After Effects CS3 Presets
"{4C335AD4-6821-4028-9A6C-13943762DB55}" = Convert X to DVD 3.4.7.121
"{52A7026F-476C-4E3B-A4C7-8FF7DAD65FEB}" = i_redistributables 1.0.45
"{5454083B-1308-4485-BF17-1110000D8301}" = Grand Theft Auto IV
"{54793AA1-5001-42F4-ABB6-C364617C6078}" = Adobe Linguistics CS3
"{5570C7F0-43D0-4916-8A9E-AEDD52FA86F4}" = Adobe Color EU Extra Settings CS4
"{561968FD-56A1-49FD-9ED0-F55482C7C5BC}" = Adobe Media Encoder CS4 Exporter
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{5B3A354B-C059-4861-A85B-CA46F1089E15}" = Creative USB Headsets
"{5E8B45A0-072C-91F7-BC80-29374194B452}" = Catalyst Control Center Graphics Previews Vista
"{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053
"{60DB5894-B5A1-4B62-B0F3-669A22C0EE5D}" = Adobe Dynamiclink Support
"{60DE4033-9503-48D1-A483-7846BD217CA9}" = ICQ6.5
"{628C3D50-F524-4C49-A958-672CE7953756}" = The Lord of the Rings - Conquest™
"{63C24A08-70F3-4C8E-B9FB-9F21A903801D}" = Adobe Color Video Profiles CS CS4
"{63E5CDBF-8214-4F03-84F8-CD3CE48639AD}" = Adobe Photoshop CS4 Support
"{657B7314-CC55-46A3-BB92-1E3315E051B9}" = ME_Kit_Files
"{67A9747A-E1F5-4E9A-81CC-12B5D5B81B6E}" = Adobe After Effects CS4 Third Party Content
"{67F0E67A-8E93-4C2C-B29D-47C48262738A}" = Adobe Device Central CS4
"{68243FF8-83CA-466B-B2B8-9F99DA5479C4}" = AdobeColorCommonSetCMYK
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{6DE721A5-5E89-4D74-994C-652BB3C0672E}" = Ovladače videa společnosti Pinnacle
"{6E36A172-06FB-4BC8-B7FC-D30D219E6776}" = Tom Clancy's H.A.W.X
"{6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61}" = Adobe Asset Services CS3
"{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK
"{72736F5F-520D-472A-88CC-7B02872FD34E}" = Communication Opt-in
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{7748ac8c-18e3-43bb-959b-088faea16fb2}" = Nero StartSmart
"{777AD08E-B32A-4456-AFE1-094DBECEB268}" = Intel(R) Network Connections 13.5.32.0
"{789289CA-F73A-4A16-A331-54D498CE069F}" = Ventrilo
"{7AB3A249-FB81-416B-917A-A2A10E74C503}" = iTunes
"{7AF35DB0-6833-4780-95AA-5FE2904D51A1}" = MATLAB Component Runtime 7.7
"{7BA01D2D-E25C-0C2C-5779-7A8E02A4BE7D}" = Catalyst Control Center Core Implementation
"{802771A9-A856-4A41-ACF7-1450E523C923}" = Adobe XMP Panels CS3
"{8186FF34-D389-4B7E-9A2F-C197585BCFBD}" = Adobe Media Encoder CS4 Importer
"{820D3F45-F6EE-4AAF-81EF-CE21FF21D230}" = Adobe Type Support CS4
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{83877DB1-8B77-45BC-AB43-2BAC22E093E0}" = Adobe Bridge CS4
"{842B4B72-9E8F-4962-B3C1-1C422A5C4434}" = Suite Shared Configuration CS4
"{8570BEE8-0CA3-4977-9AB1-80ED93F0513C}" = Assassin's Creed II
"{85991ED2-010C-4930-96FA-52F43C2CE98A}" = Apple Mobile Device Support
"{85C70286-A56F-4834-BD24-B34EB76A93A2}" = ESET NOD32 Antivirus
"{878D2EB2-2D55-42A9-955E-1E08F28529FD}" = Sony Media Manager 2.2
"{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher
"{8ACC73AA-6511-7C55-B1A9-8E5D1DEAFAA3}" = The Lord of the Rings FREE Trial
"{8AF3FB06-BDA3-42A3-995C-308812D2F094}" = Adobe After Effects CS3
"{8D2BA474-F406-4710-9AE4-D4F22D21F0DD}" = Adobe Device Central CS3
"{8D7133DE-27D2-47E5-B248-4180278D32AA}" = Catalyst Control Center - Branding
"{8FF4E834-DCAD-29E7-1EE8-9D817A3FA15B}" = CCC Help English
"{90120000-0016-0405-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Czech) 2007
"{90120000-0018-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Czech) 2007
"{90120000-001B-0405-0000-0000000FF1CE}" = Microsoft Office Word MUI (Czech) 2007
"{90120000-001F-0405-0000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2007
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-041B-0000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2007
"{90120000-002C-0405-0000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2007
"{90120000-006E-0405-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2007
"{90120000-00A1-0405-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Czech) 2007
"{90176341-0A8B-4CCC-A78D-F862228A6B95}" = Adobe Anchor Service CS3
"{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007
"{931AB7EA-3656-4BB7-864D-022B09E3DD67}" = Adobe Linguistics CS4
"{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"{94D398EB-D2FD-4FD1-B8C4-592635E8A191}" = Adobe CMaps CS4
"{94FB5B63-A65F-7E5D-560D-A79FB29EA52F}" = Catalyst Control Center InstallProxy
"{981029E0-7FC9-4CF3-AB39-6F133621921A}" = Skype Toolbars
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9C9824D9-9000-4373-A6A5-D0E5D4831394}" = Adobe Bridge CS3
"{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}" = ImagXpress
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{B05DE7B7-0B40-4411-BD4B-222CAE2D8F15}" = Adobe MotionPicture Color Files CS4
"{B15381DD-FF97-4FCD-A881-ED4DB0975500}" = Adobe Color Video Profiles AE CS4
"{B29AD377-CC12-490A-A480-1452337C618D}" = Connect
"{B2D328BE-45AD-4D92-96F9-2151490A203E}" = Apple Application Support
"{b2ec4a38-b545-4a00-8214-13fe0e915e6d}" = Advertising Center
"{B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C}" = Adobe Camera Raw 4.0
"{B65BA85C-0A27-4BC0-A22D-A66F0E5B9494}" = Adobe Photoshop CS4
"{BB4E33EC-8181-4685-96F7-8554293DEC6A}" = Adobe Output Module
"{BE9CEAAA-F069-4331-BF2F-8D350F6504F4}" = Adobe Media Encoder CS4 Additional Exporter
"{BEEFC4F8-2909-48B3-AFAA-55D3533FDEDD}" = Creative MediaSource 5
"{BFA55B0C-DE06-4CA8-9319-F3A6C2FA476F}" = Living 3D Butterflies
"{C03A56EE-2715-5F54-69C4-A1CDB7602354}" = Catalyst Control Center Graphics Full New
"{C2D69781-F392-4118-A5A7-C7E9C38DBFC2}" = Adobe ExtendScript Toolkit 2
"{C307DD64-1C69-8C52-D2C9-02D38995A269}" = Catalyst Control Center HydraVision Full
"{C41300B9-185D-475E-BFEC-39EF732F19B1}" = Apple Software Update
"{C52E3EC1-048C-45E1-8D53-10B0C6509683}" = Adobe Default Language CS4
"{C72D7008-266D-4DD8-BF3C-296B736127F6}" = Mafia
"{CC75AB5C-2110-4A7F-AF52-708680D22FE8}" = Photoshop Camera Raw
"{CCCC1B61-1E92-4388-9AFC-5C883071833D}" = Terragen 2 Free Edition
"{CCEB53A5-A252-4CF3-8602-429AB06BF0AE}" = Terragen
"{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}" = SUPERAntiSpyware
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D0DFF92A-492E-4C40-B862-A74A173C25C5}" = Adobe Version Cue CS3 Client
"{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.2
"{DC785DB7-D389-48C3-B146-96FE99BF4E2B}" = Vegas Pro 9.0
"{DD73CA82-EA82-38AA-863D-9A24A018DC96}" = Microsoft .NET Framework 3.5 Language Pack SP1 - csy
"{DEB90B8E-0DCB-48CE-B90E-8842A2BD643E}" = Adobe Media Encoder CS4
"{DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}" = Ad-Aware 2007
"{DEE88727-779B-47A9-ACEF-F87CA5F92A65}" = ScanSoft OmniPage SE 4
"{E09B48B5-E141-427A-AB0C-D3605127224A}" = Microsoft SQL Server Desktop Engine (SONY_MEDIAMGR)
"{E3E1398E-8FF2-0154-6D8F-7FC26299EBED}" = Catalyst Control Center Graphics Full Existing
"{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"{E4848436-0345-47E2-B648-8B522FCDA623}" = Adobe Photoshop CS4
"{E69AE897-9E0B-485C-8552-7841F48D42D8}" = Adobe Update Manager CS3
"{e8a80433-302b-4ff1-815d-fcc8eac482ff}" = Nero Installer
"{ECF8D4B4-FADB-492E-A79A-5BCEA02DB95D}" = boujou 4
"{F0E64E2E-3A60-40D8-A55D-92F6831875DA}" = Adobe Search for Help
"{F1A14CB2-A048-45A6-AFDA-3571296E1D76}" = Creative Media Toolbox 6
"{F2B5A2A7-2DF9-4361-8BD5-362714528B51}" = NHL® 09
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729)
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01
"{F5C372A1-40F3-49DA-A049-F75CDE9177DC}" = Pinnacle Studio Ultimate Collection Plugins
"{F8EF2B3F-C345-4F20-8FE4-791A20333CD5}" = Adobe ExtendScript Toolkit CS4
"{F93C84A6-0DC6-42AF-89FA-776F7C377353}" = Adobe PDF Library Files CS4
"{FBEF69BB-829C-8D4D-B299-497147916039}" = Catalyst Control Center Graphics Light
"{FCDD51BB-CAD0-4BB1-B7DF-CE86D1032794}" = Adobe Fonts All
"{FD052FB9-FE90-4438-B355-15EDC89D8FB1}" = Microsoft Games for Windows - LIVE Redistributable
"3D Ripper DX_is1" = 3D Ripper DX v1.8.1
"A1Click Ultra PC Cleaner (Registered Version)_is1" = A1Click Ultra PC Cleaner 1.01 (Registered Version)
"A1Click Ultra PC Cleaner (Trial Version)_is1" = A1Click Ultra PC Cleaner 1.01 (Trial Version)
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player
"Adobe_3dcb365ab9e01871fb8c6f27b0ea079" = Adobe After Effects CS4
"Adobe_b7dd24a87e82dcf8af8876fd727b7cf" = Adobe After Effects CS3
"Adobe_faf656ef605427ee2f42989c3ad31b8" = Adobe Photoshop CS4
"Akamai" = Akamai NetSession Interface
"ArmA" = ArmA Uninstall
"ArmA 2" = ArmA 2 Uninstall
"ARMA 2 Operation Arrowhead" = ARMA 2 Operation Arrowhead Uninstall
"Autodesk FBX Plugin 2009.4 - 3ds Max 2010" = Autodesk FBX Plugin 2009.4 - 3ds Max 2010
"AutoHotkey" = AutoHotkey 1.0.48.05
"AV Voice Changer Software 4.0" = AV Voice Changer Software 4.0
"AviSynth" = AviSynth 2.5
"BattlEye" = BattlEye Uninstall
"BSPlayer1" = BSPlayer
"BSPlayerf" = BS.Player FREE
"CamStudio" = CamStudio
"CANONIJPLM100" = PIXMA Extended Survey Program
"CanonMyPrinter" = Canon My Printer
"CanonSolutionMenu" = Canon Utilities Solution Menu
"CCleaner" = CCleaner
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"Cool Record Edit Pro" = Cool Record Edit Pro
"Cossacks : Back To War" = ?????? - ????? ?????
"Counter-Strike: Source" = Counter-Strike: Source
"Creative Software AutoUpdate" = Creative Software AutoUpdate
"DivX Setup.divx.com" = DivX Setup
"Easy-PhotoPrint EX" = Canon Utilities Easy-PhotoPrint EX
"Eurobattle.net1.24b" = Eurobattle.net
"FiestaBar" = FiestaBar™ 3.0.0.247
"FlashFire" = FlashFire
"Fraps" = Fraps (remove only)
"Freeze Buddy Icons" = Freeze Buddy Icons
"Freeze Wallpaper" = Freeze Wallpaper
"GameParkClient_is1" = GamePark
"GameTracker Lite" = GameTracker Lite
"Google Chrome" = Google Chrome
"HASP HL Device Driver" = HASP HL Device Driver
"HECI" = Intel(R) Management Engine Interface
"HLSW_is1" = HLSW v1.2.1
"HOMESTUDENTR" = Microsoft Office Home and Student 2007
"HUFFYUV" = Huffyuv AVI lossless video codec (Remove Only)
"InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"KigoImageConverter_is1" = KigoImageConverter 2.0
"KLiteCodecPack_is1" = K-Lite Mega Codec Pack 6.2.0
"Knoll Light Factory EZ Studio" = Knoll Light Factory EZ Studio
"Mafia 1.0 patch" = Mafia 1.0 patch
"Mafia II_is1" = Mafia II
"Magic Bullet Looks Studio" = Magic Bullet Looks Studio
"Magic Bullet Looks Vegas" = Magic Bullet Looks Vegas
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"MediaCoder" = MediaCoder 0.7.3.4666
"MediaNavigation.CDLabelPrint" = CD-LabelPrint
"meGUI modern media encoder" = meGUI modern media encoder (remove only)
"Microsoft .NET Framework 3.5 Language Pack SP1 - csy" = Microsoft .NET Framework 3.5 SP1 – jazyková sada – CSY
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"mIRC" = mIRC
"Mozilla Firefox (3.0.19)" = Mozilla Firefox (3.0.19)
"MP Navigator EX 1.0" = Canon MP Navigator EX 1.0
"OpenAL" = OpenAL
"PowerISO" = PowerISO
"PROSetDX" = Intel(R) Network Connections 13.5.32.0
"PunkBusterSvc" = PunkBuster Services
"Red Giant ToonIt Studio" = Red Giant ToonIt Studio
"Registrace uživatele zařízení Canon MP610 series" = Registrace uživatele zařízení Canon MP610 series
"Seismovision 3" = Seismovision 3 (remove only)
"Smilies" = Smilies
"StarCraft II" = StarCraft II
"Steam App 10180" = Call of Duty: Modern Warfare 2
"Steam App 10190" = Call of Duty: Modern Warfare 2 - Multiplayer
"Steam App 50280" = Mafia II - Demo
"SysInfo" = Creative System Information
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"TotalRecorder" = Total Recorder 8.1
"Trapcode 3DStroke Studio" = Trapcode 3DStroke Studio
"Trapcode Particular Studio" = Trapcode Particular Studio
"Trapcode Shine" = Trapcode Shine
"Trapcode Shine Studio" = Trapcode Shine Studio
"Uninstaller_B4736000_Creative Media Toolbox 6" = Creative Media Toolbox 6 (Shared Components)
"Úroky z prodlení_is1" = Úroky z prodlení 2.5.
"uTorrent" = µTorrent
"VTFEdit_is1" = VTFEdit 1.2.5
"Warcraft III" = Warcraft III
"WinASO Registry Optimizer 4.0_is1" = WinASO Registry Optimizer 4.0
"WinRAR archiver" = WinRAR archiver
"World of Warcraft" = World of Warcraft
"Xfire" = Xfire (remove only)
"XviD4PSP5" = XviD4PSP 5.0
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Riva Casino" = Riva Casino
"Warcraft III" = Warcraft III: All Products
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 18.10.2010 0:54:33 | Computer Name = MIKES-PC | Source = Bonjour Service | ID = 100
Description = 384: ERROR: read_msg errno 10054 (Stávající připojení bylo vynuceně
ukončeno vzdáleným hostitelem.)
Error - 18.10.2010 0:54:42 | Computer Name = MIKES-PC | Source = Bonjour Service | ID = 100
Description = 384: ERROR: read_msg errno 10054 (Stávající připojení bylo vynuceně
ukončeno vzdáleným hostitelem.)
Error - 18.10.2010 0:56:10 | Computer Name = MIKES-PC | Source = Bonjour Service | ID = 100
Description = 416: ERROR: read_msg errno 10054 (Stávající připojení bylo vynuceně
ukončeno vzdáleným hostitelem.)
Error - 18.10.2010 0:58:06 | Computer Name = MIKES-PC | Source = Bonjour Service | ID = 100
Description = 384: ERROR: read_msg errno 10054 (Stávající připojení bylo vynuceně
ukončeno vzdáleným hostitelem.)
Error - 18.10.2010 0:59:00 | Computer Name = MIKES-PC | Source = Bonjour Service | ID = 100
Description = 416: ERROR: read_msg errno 10054 (Stávající připojení bylo vynuceně
ukončeno vzdáleným hostitelem.)
Error - 18.10.2010 0:59:10 | Computer Name = MIKES-PC | Source = Bonjour Service | ID = 100
Description = 416: ERROR: read_msg errno 10054 (Stávající připojení bylo vynuceně
ukončeno vzdáleným hostitelem.)
Error - 18.10.2010 8:11:07 | Computer Name = MIKES-PC | Source = Application Error | ID = 1000
Description = Chybující aplikace Keytro.exe, verze 0.0.0.0, časové razítko 0x4a72f2c2,
chybující modul Keytro.exe, verze 0.0.0.0, časové razítko 0x4a72f2c2, kód výjimky
0xc0000005, posun chyby 0x0000bdca, ID procesu 0x12a0, čas spuštění aplikace 0x01cb6ebd892d8e44.
Error - 18.10.2010 8:28:27 | Computer Name = MIKES-PC | Source = Application Error | ID = 1000
Description = Chybující aplikace Keytro.exe, verze 0.0.0.0, časové razítko 0x4a72f2c2,
chybující modul Keytro.exe, verze 0.0.0.0, časové razítko 0x4a72f2c2, kód výjimky
0xc0000005, posun chyby 0x0000bdca, ID procesu 0x110c, čas spuštění aplikace 0x01cb6ebff72c15e4.
Error - 19.10.2010 0:18:10 | Computer Name = MIKES-PC | Source = WinMgmt | ID = 10
Description =
Error - 19.10.2010 1:19:53 | Computer Name = MIKES-PC | Source = WinMgmt | ID = 10
Description =
[ System Events ]
Error - 17.10.2010 9:30:01 | Computer Name = MIKES-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 17.10.2010 9:34:15 | Computer Name = MIKES-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 17.10.2010 9:34:15 | Computer Name = MIKES-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 18.10.2010 0:25:30 | Computer Name = MIKES-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 18.10.2010 0:25:30 | Computer Name = MIKES-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 19.10.2010 0:18:11 | Computer Name = MIKES-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 19.10.2010 0:18:11 | Computer Name = MIKES-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 19.10.2010 1:18:10 | Computer Name = MIKES-PC | Source = EventLog | ID = 6008
Description = Předchozí vypnutí systému (7:15:57, 19.10.2010) bylo neočekávané.
Error - 19.10.2010 1:19:53 | Computer Name = MIKES-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 19.10.2010 1:19:53 | Computer Name = MIKES-PC | Source = Service Control Manager | ID = 7000
Description =
< End of report >
OTL Extras logfile created on: 19.10.2010 7:23:03 - Run 1
OTL by OldTimer - Version 3.2.15.2 Folder = C:\Users\MIKES\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18975)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 62,00% Memory free
6,00 Gb Paging File | 5,00 Gb Available in Paging File | 81,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 465,76 Gb Total Space | 105,37 Gb Free Space | 22,62% Space Free | Partition Type: NTFS
Computer Name: MIKES-PC | User Name: MIKES | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"VistaSp2" = Reg Error: Unknown registry data type -- File not found
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{3CAAF6AA-594E-4B89-A4E0-BF0392DE1928}" = lport=5000 | protocol=17 | dir=in | name=akamai netsession interface |
"{77D70E9C-5F08-468A-BB9D-AECA4D733B23}" = lport=49162 | protocol=6 | dir=in | name=akamai netsession interface |
"{DD9E4043-ED97-4F8E-94CD-5F55C85F4119}" = lport=49167 | protocol=6 | dir=in | name=akamai netsession interface |
"{EEF8F525-32F0-4DAE-9B8E-CCE146F903AC}" = lport=5000 | protocol=17 | dir=in | name=akamai netsession interface |
"{FAE37C90-7F9D-48FD-A771-8AF35E112B09}" = lport=5353 | protocol=6 | dir=in | name=adobe csi cs4 |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{03FBFDA7-5CFB-4C94-973A-B320336D229F}" = protocol=17 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.2.0-enus-downloader.exe |
"{073EC1B5-AD4A-45B5-9B07-6A14886F204E}" = protocol=17 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\assassinscreediigame.exe |
"{0C0412CB-5BE8-427B-B5A2-B99F23A89124}" = protocol=17 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\assassinscreedii.exe |
"{0C1ADAF0-846C-4FB9-89D0-A1C83F0E19A3}" = protocol=6 | dir=in | app=c:\program files\pinnacle\studio 14\programs\umi.exe |
"{10FEA83A-8C9A-417F-8203-A16360C39991}" = protocol=17 | dir=in | app=c:\program files\pinnacle\studio 14\programs\studio.exe |
"{1750A9D0-8F0F-4FC1-8CF2-47B0D1E4297A}" = protocol=6 | dir=in | app=c:\program files\starcraft ii\starcraft ii.exe |
"{1BD10A17-7587-4302-885F-6CDE7C92BA59}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{2210B9F3-D21E-40A6-9D71-DC4F8B3553F3}" = protocol=17 | dir=in | app=c:\program files\autodesk\backburner\server.exe |
"{257D9901-1335-4135-9748-A0C21BC4886B}" = protocol=6 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\uplaybrowser.exe |
"{2A737584-04B2-41C2-819A-3519228E2597}" = protocol=6 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\assassinscreediigame.exe |
"{2C157635-443B-453E-8979-8AC406735F83}" = protocol=17 | dir=in | app=c:\program files\activision\call of duty 4 - modern warfare\iw3mp.exe |
"{339872D5-14AA-47BE-941A-9D138B3A356C}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstrb.exe |
"{352FA960-F15D-450A-AF42-D6A20EE86BA9}" = protocol=17 | dir=in | app=c:\program files\starcraft ii\starcraft ii.exe |
"{35BCC3A0-929F-4609-8F8C-E7DB77441AA9}" = protocol=17 | dir=in | app=c:\program files\steam\steamapps\common\call of duty modern warfare 2\iw4mp.exe |
"{38292C81-826E-4ED1-8456-4151A02E11BF}" = protocol=17 | dir=in | app=c:\program files\steam\steamapps\common\call of duty modern warfare 2\iw4sp.exe |
"{3AF2CA9C-4485-4B37-A5F4-10382D1AFFB4}" = protocol=6 | dir=in | app=c:\program files\pinnacle\studio 14\programs\rm.exe |
"{3E673EA4-4109-4CF8-BE3A-09E315361A5F}" = protocol=17 | dir=in | app=c:\program files\autodesk\3ds max 2010\mentalray\satellite\raysat_3dsmax2010_32.exe |
"{3ECCDF1C-F678-4B5A-BAD5-E3B6BB4D56E3}" = protocol=6 | dir=in | app=c:\program files\autodesk\3ds max 2010\3dsmax.exe |
"{3F296548-8C08-4D86-BBD2-ECD8667CFFD2}" = protocol=6 | dir=in | app=c:\program files\pinnacle\studio 14\programs\studio.exe |
"{3FDBA316-3C9E-44AA-97B2-1746E4E9688E}" = protocol=17 | dir=in | app=c:\program files\bohemia interactive\arma 2\arma2.exe |
"{4042B8E7-6EF4-41A7-8015-CC6F7E4D7041}" = protocol=6 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.2.2.10482-to-3.2.2.10505-enus-downloader.exe |
"{43B6D2DC-0F77-44D9-939C-5FBF9A67C478}" = protocol=6 | dir=in | app=c:\program files\autodesk\3ds max 2010\mentalray\satellite\raysat_3dsmax2010_32.exe |
"{489BFC18-BAC4-4F36-835E-8108DC2474AC}" = protocol=6 | dir=in | app=c:\program files\electronic arts\battlefield bad company 2\bfbc2updater.exe |
"{48B59805-72AF-4780-80FE-030433A30DC1}" = protocol=6 | dir=in | app=c:\program files\skype\plugin manager\skypepm.exe |
"{4A051713-7AAE-46D9-9697-0CA68987CA52}" = protocol=17 | dir=in | app=c:\program files\pinnacle\studio 14\programs\rm.exe |
"{4A8F284D-104E-4EEB-B8B2-89797B818A2C}" = protocol=6 | dir=in | app=c:\program files\bohemia interactive\arma 2\arma2oa.exe |
"{577326F6-C408-4E44-96E4-427C8FCF7557}" = protocol=17 | dir=in | app=c:\program files\skype\plugin manager\skypepm.exe |
"{582D7A0D-6DB3-4546-B302-FA780C9BEC20}" = protocol=17 | dir=in | app=c:\program files\autodesk\3ds max 2010\mentalray\satellite\raysat_3dsmax2010_32server.exe |
"{58CCD07B-1093-4F4C-BA62-0B0B189F8794}" = protocol=6 | dir=in | app=c:\program files\autodesk\backburner\monitor.exe |
"{59376853-3DC8-4F46-A39A-8DF7C3181139}" = protocol=6 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\assassinscreedii.exe |
"{5C29947C-1F3B-4F1E-B0C2-F578A9E71F2F}" = protocol=17 | dir=in | app=c:\users\mikes\desktop\stažené soubory\pdf_converter.exe |
"{5EABC160-57BF-468B-B6DE-5AF74C7A2E25}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{5EC471F0-D110-4097-98E6-982FE8EB5234}" = protocol=17 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\uplaybrowser.exe |
"{6486658F-00FA-4696-AA3F-FB50B7684571}" = protocol=17 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\assassinscreedii.exe |
"{696ED1D3-FFED-4303-9708-1D6A1CB15C66}" = protocol=6 | dir=in | app=c:\program files\autodesk\backburner\manager.exe |
"{6ECB486E-8257-4720-B18B-72FB0635B6C2}" = protocol=6 | dir=in | app=c:\program files\common files\adobe\cs4servicemanager\cs4servicemanager.exe |
"{6F7B2630-BDA5-40D8-ADC4-A6057A3AA072}" = protocol=6 | dir=in | app=c:\program files\ubisoft\tom clancy's h.a.w.x\hawx_dx10.exe |
"{6F94559A-DF40-4756-8704-465B1805B682}" = protocol=17 | dir=in | app=c:\program files\steam\steamapps\common\mafia ii - public demo\launcher.exe |
"{700F2F38-9C08-45DF-BE7E-D0C448D6EECD}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{702BE6D3-BB4E-4F3B-8D11-A51019EDF419}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{71287B5E-AF2A-4025-8C16-10B42862AF2F}" = protocol=6 | dir=in | app=c:\users\mikes\desktop\stažené soubory\pdf_converter.exe |
"{71329CEC-89D6-4843-B952-E6A4278C25CF}" = protocol=17 | dir=in | app=c:\program files\autodesk\3ds max 2010\3dsmax.exe |
"{7C8DA8A0-BD86-4847-9637-3B8E499EA391}" = protocol=6 | dir=in | app=c:\program files\bohemia interactive\arma 2\arma2.exe |
"{7F72E563-1A37-455F-8036-229522F59572}" = protocol=17 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\assassinscreediigame.exe |
"{83A30E9C-D0D0-4A07-A924-05E5524434BF}" = protocol=6 | dir=in | app=c:\program files\steam\steamapps\common\call of duty modern warfare 2\iw4sp.exe |
"{86129A38-581C-4219-A428-5B3C51FA05F1}" = protocol=6 | dir=in | app=c:\program files\rockstar games\grand theft auto iv\launchgtaiv.exe |
"{8894D7BD-FCD7-4C31-9B33-DE7C3FE1C481}" = protocol=17 | dir=in | app=c:\program files\utorrent\utorrent.exe |
"{94C033BC-EC42-4953-92DD-041C601A5398}" = protocol=6 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\uplaybrowser.exe |
"{961D2860-B8F4-4157-817E-0111B4A93682}" = protocol=17 | dir=in | app=c:\program files\common files\adobe\cs4servicemanager\cs4servicemanager.exe |
"{96EA0D80-71A1-4992-8A51-39B2E4777ACD}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{9A83966F-60F6-456D-9DAF-426567A8D3AE}" = protocol=17 | dir=in | app=c:\program files\electronic arts\battlefield bad company 2\bfbc2updater.exe |
"{A10F82D1-A3E8-432C-894D-E955C9E53317}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{A3D4054A-CD03-48CB-9101-1D6AC4CD3B65}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{A42BB823-0A4A-4A30-B6D7-15EA1BFE0954}" = protocol=17 | dir=in | app=c:\program files\rockstar games\grand theft auto iv\launchgtaiv.exe |
"{A4CEEA75-C98F-4BA6-80DD-11528423E602}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstra.exe |
"{A5F049C4-B1E0-4222-9012-4A5D8ED6723C}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{AC0D8E50-6E2E-45E1-959C-CB8655474E8F}" = protocol=6 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.2.0-enus-downloader.exe |
"{ACA9A4C9-33CB-4375-9B4E-41E2E929209E}" = protocol=6 | dir=in | app=c:\program files\steam\steamapps\common\mafia ii - public demo\launcher.exe |
"{AE69D610-9E6D-460D-8E28-45D3B25EAF20}" = protocol=17 | dir=in | app=c:\program files\pinnacle\studio 14\programs\umi.exe |
"{BA1ABFA1-EA4F-4767-94BA-3F1ED1FB14A6}" = protocol=17 | dir=in | app=c:\program files\rockstar games\rockstar games social club\rgsclauncher.exe |
"{BA38E2CF-0C7F-425D-A4A6-21D7E57EB546}" = protocol=17 | dir=in | app=c:\program files\itunes\itunes.exe |
"{BB2AF532-168A-4C1E-80AA-6B56762AB63C}" = protocol=17 | dir=in | app=c:\program files\bohemia interactive\arma 2\arma2oa.exe |
"{BC36684E-8E7E-4485-BB54-329A25A614F4}" = protocol=6 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.2.0.10314-to-3.2.2.10482-enus-downloader.exe |
"{BE7E2AB3-623C-42B8-977C-1547D309F736}" = protocol=6 | dir=in | app=c:\program files\ubisoft\tom clancy's h.a.w.x\hawx.exe |
"{BED96965-F3C0-4D75-B6CB-5A780EE34AA5}" = protocol=17 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.2.2.10482-to-3.2.2.10505-enus-downloader.exe |
"{C3D37B16-62C0-40B8-BF77-173CC80F6637}" = protocol=6 | dir=in | app=c:\program files\steam\steamapps\common\call of duty modern warfare 2\iw4mp.exe |
"{C4D34705-C38D-45FE-A79A-763A3E65358A}" = protocol=6 | dir=in | app=c:\program files\utorrent\utorrent.exe |
"{CA98BFE0-10AB-4609-9BA8-DC57EAB2D1F8}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstrb.exe |
"{CAFCE064-8A87-4CA4-81AA-E06C4E62F3FE}" = protocol=17 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.2.0.10314-to-3.2.2.10482-enus-downloader.exe |
"{CCDCDD1A-61E4-43E9-8526-B7179AD630F9}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{CCE72932-6FB0-408C-A0B7-89EFFAA336C1}" = protocol=6 | dir=in | app=c:\program files\itunes\itunes.exe |
"{CEB3A799-BBD3-49CE-B25C-9A47B0EB3749}" = protocol=6 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\assassinscreedii.exe |
"{D015A2DE-D572-4F8B-BFA3-7B84CFB865DE}" = protocol=17 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\uplaybrowser.exe |
"{DA40AAE8-8225-430F-9A22-2DE155B25FB4}" = protocol=6 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\assassinscreediigame.exe |
"{DADE26CD-DA11-4D21-9897-452B31862AD1}" = protocol=17 | dir=in | app=c:\program files\autodesk\backburner\manager.exe |
"{E141A7B5-10D9-4C79-9422-F94BC945AC18}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstra.exe |
"{E1BFEE59-B3C0-4498-BB67-D4DE9DC45EF6}" = protocol=6 | dir=in | app=c:\program files\activision\call of duty 4 - modern warfare\iw3mp.exe |
"{E478438A-F229-47D2-8072-06C73EDDF606}" = protocol=6 | dir=in | app=c:\program files\rockstar games\rockstar games social club\rgsclauncher.exe |
"{E6315F74-31D3-48E4-A431-7776F0B79C26}" = protocol=6 | dir=in | app=c:\program files\autodesk\3ds max 2010\mentalray\satellite\raysat_3dsmax2010_32server.exe |
"{E6EDB1FD-0F8A-4995-94A4-7C26E46699D4}" = protocol=17 | dir=in | app=c:\program files\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |
"{EA5A5915-624E-46A8-AB06-6FC739B4A87A}" = protocol=17 | dir=in | app=c:\program files\rockstar games\rockstar games social club\rgsclauncher.exe |
"{EC125C20-76D9-478B-BE72-8E5FDEB29904}" = protocol=17 | dir=in | app=c:\program files\starcraft ii\starcraft ii.exe |
"{EE1EB6D6-ABF5-45CF-8916-9DAF638D4BFC}" = protocol=6 | dir=in | app=c:\program files\autodesk\backburner\server.exe |
"{EE594279-DA15-4A14-8DCB-3FB0323E0546}" = protocol=6 | dir=in | app=c:\program files\rockstar games\rockstar games social club\rgsclauncher.exe |
"{EED08866-FF70-4D8F-AD0E-EB397D32761D}" = protocol=17 | dir=in | app=c:\program files\autodesk\backburner\monitor.exe |
"{EF956B2A-DBD5-4FAD-9820-E9700CA4DFC7}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{F1559E31-4D46-4C5C-BE95-48B82814C2D2}" = protocol=6 | dir=in | app=c:\program files\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |
"{F2C23439-ACF4-4BE7-B209-6254ADDA80A6}" = protocol=17 | dir=in | app=c:\program files\ubisoft\tom clancy's h.a.w.x\hawx.exe |
"{F8DDC8DF-902E-455C-B43E-3C909B8E362E}" = protocol=6 | dir=in | app=c:\program files\starcraft ii\starcraft ii.exe |
"{F988605D-B4B8-441B-B85C-3050030F956B}" = protocol=17 | dir=in | app=c:\program files\ubisoft\tom clancy's h.a.w.x\hawx_dx10.exe |
"TCP Query User{11F52A4E-0954-42D2-AB10-726C1ACB5CFD}C:\program files\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe |
"TCP Query User{1AA964B8-78C8-4A99-BFC5-8A7EB3022C36}C:\program files\ubisoft\assassin's creed ii\nová složka\server.exe" = protocol=6 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\nová složka\server.exe |
"TCP Query User{2C43B27A-B0C7-496E-9C09-F4A3DBCF70EB}C:\program files\starcraft ii\support\blizzarddownloader.exe" = protocol=6 | dir=in | app=c:\program files\starcraft ii\support\blizzarddownloader.exe |
"TCP Query User{2C744018-E4D7-4FC8-A66B-33426416E805}C:\users\mikes\downloads\assassins creed 2 - crack\assassins creed ii - emulator\server.exe" = protocol=6 | dir=in | app=c:\users\mikes\downloads\assassins creed 2 - crack\assassins creed ii - emulator\server.exe |
"TCP Query User{337D16F9-445E-416D-B4C2-D57FDA098B7E}C:\program files\counter-strike source\hl2.exe" = protocol=6 | dir=in | app=c:\program files\counter-strike source\hl2.exe |
"TCP Query User{38B9F0BE-5D82-4D18-B976-BE68ED90F420}C:\program files\webteh\bsplayer\bsplayer.exe" = protocol=6 | dir=in | app=c:\program files\webteh\bsplayer\bsplayer.exe |
"TCP Query User{42FAC019-DBE7-4F07-8362-FEF2D4539894}C:\program files\ubisoft\assassin's creed ii\nová složka\mitm.exe" = protocol=6 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\nová složka\mitm.exe |
"TCP Query User{4CCF9787-B5FF-478D-B93C-FDD6F174C0BD}C:\users\public\games\world of warcraft\wow-3.3.0.10958-to-3.3.0.11159-enus-downloader.exe" = protocol=6 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.3.0.10958-to-3.3.0.11159-enus-downloader.exe |
"TCP Query User{5BC1F230-E6F7-4108-9C1E-395F5CAAA9A9}C:\program files\icq6.5\icq.exe" = protocol=6 | dir=in | app=c:\program files\icq6.5\icq.exe |
"TCP Query User{630F6A8C-4DF8-42CC-898E-EE061C14CC27}C:\users\mikes\desktop\nová složka\server.exe" = protocol=6 | dir=in | app=c:\users\mikes\desktop\nová složka\server.exe |
"TCP Query User{63FACBF0-7F61-4BE7-A928-3D411E144736}C:\users\public\games\world of warcraft\wow-3.3.2.11403-to-3.3.3.11685-enus-downloader.exe" = protocol=6 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.3.2.11403-to-3.3.3.11685-enus-downloader.exe |
"TCP Query User{66BB643E-1934-47FA-80AC-6DA0B044DA0C}C:\users\public\games\world of warcraft\wow-3.3.3.11685-to-3.3.3.11723-enus-downloader.exe" = protocol=6 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.3.3.11685-to-3.3.3.11723-enus-downloader.exe |
"TCP Query User{679CCFFC-807D-4000-862E-A622A41F1C40}C:\program files\warcraft iii\war3.exe" = protocol=6 | dir=in | app=c:\program files\warcraft iii\war3.exe |
"TCP Query User{686D3554-E572-498E-A83D-FADCD2334ED8}C:\program files\xfire\xfire.exe" = protocol=6 | dir=in | app=c:\program files\xfire\xfire.exe |
"TCP Query User{68D8EDFC-F5D4-4889-AA71-D38C3AA7E71F}C:\casino\bwin casino\casino.exe" = protocol=6 | dir=in | app=c:\casino\bwin casino\casino.exe |
"TCP Query User{71EC9A21-665F-4D33-8401-4569EAC76A94}C:\program files\xfire\xfire.exe" = protocol=6 | dir=in | app=c:\program files\xfire\xfire.exe |
"TCP Query User{78F3C5ED-9212-47E0-995A-49A02AE1E509}C:\users\public\games\world of warcraft\wow-3.2.2.10505-to-3.3.0.10958-enus-downloader.exe" = protocol=6 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.2.2.10505-to-3.3.0.10958-enus-downloader.exe |
"TCP Query User{855B465D-4E6D-4F8C-B7F5-1BCA52AB8508}C:\program files\mirc\mirc.exe" = protocol=6 | dir=in | app=c:\program files\mirc\mirc.exe |
"TCP Query User{871587A9-8B74-4C93-BC7B-F813F3E90953}C:\program files\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\firefox.exe |
"TCP Query User{8E27D578-8BDB-4DB2-99E3-BCA670A2090D}C:\program files\adobe\adobe after effects cs4\support files\afterfx.exe" = protocol=6 | dir=in | app=c:\program files\adobe\adobe after effects cs4\support files\afterfx.exe |
"TCP Query User{8EC379D2-F6C4-40EB-8C90-EE6A9425B9ED}C:\program files\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\program files\utorrent\utorrent.exe |
"TCP Query User{931AC45A-BF2A-489F-ACD7-5B2EC46EA4EA}C:\program files\sony\vegas pro 9.0\vegsrv90.exe" = protocol=6 | dir=in | app=c:\program files\sony\vegas pro 9.0\vegsrv90.exe |
"TCP Query User{94B7A749-8644-48E2-B7A8-2F2299626ABC}C:\users\mikes\desktop\team viewer\teamviewer.exe" = protocol=6 | dir=in | app=c:\users\mikes\desktop\team viewer\teamviewer.exe |
"TCP Query User{A3F9FE6D-ECFE-4573-AA3D-AC220AB4670E}C:\users\public\games\world of warcraft\launcher.exe" = protocol=6 | dir=in | app=c:\users\public\games\world of warcraft\launcher.exe |
"TCP Query User{AEC77640-3B8B-4037-B3C7-9DC5EAEA56B4}C:\program files\ubisoft\assassin's creed ii\nová složka (2)\nová složka\server.exe" = protocol=6 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\nová složka (2)\nová složka\server.exe |
"TCP Query User{B563126F-DF33-4F54-AB44-4AAF21472158}C:\program files\activision\call of duty 4 - modern warfare\mp_tool.exe" = protocol=6 | dir=in | app=c:\program files\activision\call of duty 4 - modern warfare\mp_tool.exe |
"TCP Query User{C17E6562-1EB3-49D8-9709-02662F8E5CF0}C:\users\public\games\world of warcraft\wow-3.3.0.11159-to-3.3.2.11403-enus-downloader.exe" = protocol=6 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.3.0.11159-to-3.3.2.11403-enus-downloader.exe |
"TCP Query User{C5B5900B-2FF1-4EDC-960E-3D4CA5E1FE3A}C:\program files\activision\call of duty 4 - modern warfare\iw3mp.exe" = protocol=6 | dir=in | app=c:\program files\activision\call of duty 4 - modern warfare\iw3mp.exe |
"TCP Query User{CF33C2D7-967E-41C6-801F-857D4C143A98}C:\program files\hlsw\hlsw.exe" = protocol=6 | dir=in | app=c:\program files\hlsw\hlsw.exe |
"TCP Query User{D3EEE410-7727-4935-9650-56022F9A71EB}C:\users\mikes\desktop\nová složka\teamviewer.exe" = protocol=6 | dir=in | app=c:\users\mikes\desktop\nová složka\teamviewer.exe |
"TCP Query User{EE465571-9345-4425-A3B6-06C6DAA9B7FF}C:\program files\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\program files\utorrent\utorrent.exe |
"UDP Query User{0E02C0FB-FF20-430F-B23A-814E1B0FB6B7}C:\program files\ubisoft\assassin's creed ii\nová složka\mitm.exe" = protocol=17 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\nová složka\mitm.exe |
"UDP Query User{150D0C36-097B-4845-BD5C-55BA006DD9CD}C:\program files\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\firefox.exe |
"UDP Query User{2493179D-E011-4990-909B-12385FB01E83}C:\program files\icq6.5\icq.exe" = protocol=17 | dir=in | app=c:\program files\icq6.5\icq.exe |
"UDP Query User{2D37E875-260B-4DD8-8F62-52098F3D4A83}C:\users\mikes\desktop\nová složka\server.exe" = protocol=17 | dir=in | app=c:\users\mikes\desktop\nová složka\server.exe |
"UDP Query User{3A9E61D0-1B31-440A-8766-E5BCF3C38987}C:\program files\xfire\xfire.exe" = protocol=17 | dir=in | app=c:\program files\xfire\xfire.exe |
"UDP Query User{46E466AB-EA56-4B56-A25D-EEE73ABCADF4}C:\users\mikes\downloads\assassins creed 2 - crack\assassins creed ii - emulator\server.exe" = protocol=17 | dir=in | app=c:\users\mikes\downloads\assassins creed 2 - crack\assassins creed ii - emulator\server.exe |
"UDP Query User{65C298EE-063B-49F0-AC45-2C4142C794DA}C:\users\mikes\desktop\nová složka\teamviewer.exe" = protocol=17 | dir=in | app=c:\users\mikes\desktop\nová složka\teamviewer.exe |
"UDP Query User{6C8262AA-64A5-4898-81C1-5547D93BC987}C:\program files\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe |
"UDP Query User{74C8B03A-98D4-464A-A7B0-C91ED5E6562D}C:\program files\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\program files\utorrent\utorrent.exe |
"UDP Query User{7970ED5B-D166-427B-89B7-6603E884BD07}C:\users\public\games\world of warcraft\wow-3.3.3.11685-to-3.3.3.11723-enus-downloader.exe" = protocol=17 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.3.3.11685-to-3.3.3.11723-enus-downloader.exe |
"UDP Query User{7D6495D4-476E-428D-903C-0EBB7AF62581}C:\program files\xfire\xfire.exe" = protocol=17 | dir=in | app=c:\program files\xfire\xfire.exe |
"UDP Query User{7D8324BE-CCAF-4BFE-AD43-B74A4E825E11}C:\program files\activision\call of duty 4 - modern warfare\mp_tool.exe" = protocol=17 | dir=in | app=c:\program files\activision\call of duty 4 - modern warfare\mp_tool.exe |
"UDP Query User{806935C0-E559-428B-B634-F500D392C926}C:\users\public\games\world of warcraft\wow-3.3.0.11159-to-3.3.2.11403-enus-downloader.exe" = protocol=17 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.3.0.11159-to-3.3.2.11403-enus-downloader.exe |
"UDP Query User{83ED5C54-C9C2-40E6-8089-FBC689E95DA6}C:\users\public\games\world of warcraft\wow-3.3.0.10958-to-3.3.0.11159-enus-downloader.exe" = protocol=17 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.3.0.10958-to-3.3.0.11159-enus-downloader.exe |
"UDP Query User{86D175F2-1913-48E2-A508-E19824D07987}C:\casino\bwin casino\casino.exe" = protocol=17 | dir=in | app=c:\casino\bwin casino\casino.exe |
"UDP Query User{8BC68DAC-A272-4354-83C7-1D95F07C1098}C:\users\public\games\world of warcraft\wow-3.2.2.10505-to-3.3.0.10958-enus-downloader.exe" = protocol=17 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.2.2.10505-to-3.3.0.10958-enus-downloader.exe |
"UDP Query User{9500776B-D528-4BF7-B4F8-70ADD3E7BEA9}C:\program files\sony\vegas pro 9.0\vegsrv90.exe" = protocol=17 | dir=in | app=c:\program files\sony\vegas pro 9.0\vegsrv90.exe |
"UDP Query User{99D4E225-08A1-4AFB-B6DF-D5DBF7105272}C:\users\public\games\world of warcraft\wow-3.3.2.11403-to-3.3.3.11685-enus-downloader.exe" = protocol=17 | dir=in | app=c:\users\public\games\world of warcraft\wow-3.3.2.11403-to-3.3.3.11685-enus-downloader.exe |
"UDP Query User{A3953C4D-6B60-42A8-AF90-63F2186CCD9D}C:\users\mikes\desktop\team viewer\teamviewer.exe" = protocol=17 | dir=in | app=c:\users\mikes\desktop\team viewer\teamviewer.exe |
"UDP Query User{A5024872-42E8-4D0F-9343-B03639ED67C9}C:\program files\starcraft ii\support\blizzarddownloader.exe" = protocol=17 | dir=in | app=c:\program files\starcraft ii\support\blizzarddownloader.exe |
"UDP Query User{AA8C07E3-644F-4EF1-87A0-2BA4ED2AB852}C:\program files\webteh\bsplayer\bsplayer.exe" = protocol=17 | dir=in | app=c:\program files\webteh\bsplayer\bsplayer.exe |
"UDP Query User{B2525780-219F-4001-980D-95AAB131100C}C:\program files\counter-strike source\hl2.exe" = protocol=17 | dir=in | app=c:\program files\counter-strike source\hl2.exe |
"UDP Query User{C43C01E4-990F-4EDC-88B5-F736DD2A78DE}C:\program files\ubisoft\assassin's creed ii\nová složka\server.exe" = protocol=17 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\nová složka\server.exe |
"UDP Query User{CC4CBCFA-DFA4-4983-9A67-D6C125312167}C:\program files\ubisoft\assassin's creed ii\nová složka (2)\nová složka\server.exe" = protocol=17 | dir=in | app=c:\program files\ubisoft\assassin's creed ii\nová složka (2)\nová složka\server.exe |
"UDP Query User{CF7C9006-8998-444A-B87A-4B16F70165DE}C:\program files\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\program files\utorrent\utorrent.exe |
"UDP Query User{CFF89E24-DA00-44E1-91FC-FB3463615C96}C:\users\public\games\world of warcraft\launcher.exe" = protocol=17 | dir=in | app=c:\users\public\games\world of warcraft\launcher.exe |
"UDP Query User{D0A80B9D-6F3C-479B-A1E2-1F08B5ACCACF}C:\program files\warcraft iii\war3.exe" = protocol=17 | dir=in | app=c:\program files\warcraft iii\war3.exe |
"UDP Query User{D38EE5FD-4C39-4430-8C6C-4047D0B8B930}C:\program files\activision\call of duty 4 - modern warfare\iw3mp.exe" = protocol=17 | dir=in | app=c:\program files\activision\call of duty 4 - modern warfare\iw3mp.exe |
"UDP Query User{D64084A6-DB83-4132-9A0E-4E9BF06AA37C}C:\program files\adobe\adobe after effects cs4\support files\afterfx.exe" = protocol=17 | dir=in | app=c:\program files\adobe\adobe after effects cs4\support files\afterfx.exe |
"UDP Query User{F26216D5-F3A4-496B-A44C-702BF4D47909}C:\program files\mirc\mirc.exe" = protocol=17 | dir=in | app=c:\program files\mirc\mirc.exe |
"UDP Query User{F3A61B0E-2182-449F-B674-317B9068FEAE}C:\program files\hlsw\hlsw.exe" = protocol=17 | dir=in | app=c:\program files\hlsw\hlsw.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00ADFB20-AE75-46F4-AD2C-F48B15AC3100}" = Adobe Color NA Recommended Settings CS4
"{0224CACC-994D-45F8-B973-D65056EA9C2F}" = Adobe XMP DVA Panels CS3
"{0370E621-61D1-4199-82AF-8F21851FD194}" = i_instrumentation 1.0.38.0
"{03B0D67B-36C9-C2CD-B63B-7B526138BA52}" = ccc-utility
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{04AF207D-9A77-465A-8B76-991F6AB66245}" = Adobe Help Viewer CS3
"{04FC2E4C-0E41-9D39-4E58-1EF29D4EF09D}" = ccc-core-static
"{05308C4E-7285-4066-BAE3-6B50DA6ED755}" = Adobe Update Manager CS4
"{054EFA56-2AC1-48F4-A883-0AB89874B972}" = Adobe Extension Manager CS4
"{06A1BE8A-4CA4-4A39-B9E4-E815AA8FE05C}" = Sony Noise Reduction Plug-In 2.0h
"{08B32819-6EEF-4057-AEDA-5AB681A36A23}" = Adobe Bridge Start Meeting
"{08B3869E-D282-424C-9AFC-870E04A4BA14}" = Rockstar Games Social Club
"{0949C078-58B4-CAF1-9A63-A4545145806D}" = Catalyst Control Center Graphics Previews Common
"{098727E1-775A-4450-B573-3F441F1CA243}" = kuler
"{0CB9668D-F979-4F31-B8B8-67FE90F929F8}" = Bonjour
"{0D2F6F25-394B-4ACA-BC9C-1394E963C620}" = Intel(R) Remote Wake Technology 1.0.45.9
"{0D6013AB-A0C7-41DC-973C-E93129C9A29F}" = Adobe Color JA Extra Settings CS4
"{0D67A4E4-5BE0-4C9A-8AD8-AB552B433F23}" = Adobe Setup
"{0F723FC1-7606-4867-866C-CE80AD292DAF}" = Adobe CSI CS4
"{0F9196C6-58B4-445B-B56E-B1200FECC151}" = Microsoft Bootvis
"{0FEA9A38-B993-0969-3A78-4D5CDDACEFEE}" = ATI Catalyst Install Manager
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP610_series" = Canon MP610 series
"{14addf3e-fc91-470e-8b77-36f75d5107ed}" = Nero 9 Trial
"{1618734A-3957-4ADD-8199-F973763109A8}" = Adobe Anchor Service CS4
"{16E16F01-2E2D-4248-A42F-76261C147B6C}" = Adobe Drive CS4
"{16E6D2C1-7C90-4309-8EC4-D2212690AAA4}" = AdobeColorCommonSetRGB
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
"{197A3012-8C85-4FD3-AB66-9EC7E13DB92E}" = Adobe AIR
"{1D666E21-2924-4B94-9A33-D6136761ACAB}" = Intel(R) Remote Wake Technology 1.0.296.0
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{23F79416-CAD1-41BF-99A3-040F6C814AAA}" = NVIDIA Photoshop Plug-ins
"{26A24AE4-039D-4CA4-87B4-2F83216020FF}" = Java(TM) 6 Update 21
"{273799F6-BC76-46F1-95E1-EF05322C3A5F}" = i_msm 1.0.312.0
"{2BE51F94-8ED9-4B31-898C-01BFA71CC1DC}" = i_swupdate 1.0.40.0
"{2C294A0B-DF22-4023-B168-8C7645B10019}" = Adobe Setup
"{317AC0C7-FEBF-0409-87A3-4FC70D0ED900}" = Autodesk 3ds Max 2010 32-bit
"{35D94F92-1D3A-43C5-8605-EA268B1A7BD9}" = PDF Settings CS4
"{36403ED9-3E0B-4407-B876-82BC479C0B38}" = 3DS Max DDS Plug-In
"{39F6E2B4-CFE8-C30A-66E8-489651F0F34C}" = Adobe Media Player
"{3A4E8896-C2E7-4084-A4A4-B8FD1894E739}" = Adobe XMP Panels CS4
"{3D2C9DE6-9ADE-4252-A241-E43723B0CE02}" = Adobe Color - Photoshop Specific CS4
"{3D347E6D-5A03-4342-B5BA-6A771885F379}" = Autodesk Backburner 2008.1
"{3D9892BB-A751-4E48-ADC8-E4289956CE1D}" = QuickTime
"{3DA8DF9A-044E-46C4-8531-DEDBB0EE37FF}" = Adobe WinSoft Linguistics Plugin
"{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}" = NVIDIA PhysX
"{3F9170C9-A7C2-408F-A4D8-EC77250040BF}" = Sound Forge Pro 10.0
"{40AE01BE-A290-4FFB-8DAB-C624C17DC87E}" = Vegas Movie Studio HD Platinum 10.0
"{411F3ABA-2AB5-4799-AA19-6ADF0A8F7424}" = Adobe Setup
"{43509E18-076E-40FE-AF38-CA5ED400A5A9}" = Pixel Bender Toolkit
"{44E240EC-2224-4078-A88B-2CEE0D3016EF}" = Adobe After Effects CS4 Presets
"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
"{45EC816C-0771-4C14-AE6D-72D1B578F4C8}" = Adobe After Effects CS4
"{4943EFF5-229F-435D-BEA9-BE3CAEA783A7}" = Adobe Service Manager Extension
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4AA3D64E-9EC3-4B0F-AB91-5885AC55641F}" = Microsoft Games for Windows - LIVE
"{4AEA9A23-D627-4699-8A0F-FC474308C2E6}" = Sony Sound Forge 9.0
"{4B215C29-1A3E-4736-92AA-10C83FA56EB9}" = Adobe After Effects CS3 Presets
"{4C335AD4-6821-4028-9A6C-13943762DB55}" = Convert X to DVD 3.4.7.121
"{52A7026F-476C-4E3B-A4C7-8FF7DAD65FEB}" = i_redistributables 1.0.45
"{5454083B-1308-4485-BF17-1110000D8301}" = Grand Theft Auto IV
"{54793AA1-5001-42F4-ABB6-C364617C6078}" = Adobe Linguistics CS3
"{5570C7F0-43D0-4916-8A9E-AEDD52FA86F4}" = Adobe Color EU Extra Settings CS4
"{561968FD-56A1-49FD-9ED0-F55482C7C5BC}" = Adobe Media Encoder CS4 Exporter
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{5B3A354B-C059-4861-A85B-CA46F1089E15}" = Creative USB Headsets
"{5E8B45A0-072C-91F7-BC80-29374194B452}" = Catalyst Control Center Graphics Previews Vista
"{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053
"{60DB5894-B5A1-4B62-B0F3-669A22C0EE5D}" = Adobe Dynamiclink Support
"{60DE4033-9503-48D1-A483-7846BD217CA9}" = ICQ6.5
"{628C3D50-F524-4C49-A958-672CE7953756}" = The Lord of the Rings - Conquest™
"{63C24A08-70F3-4C8E-B9FB-9F21A903801D}" = Adobe Color Video Profiles CS CS4
"{63E5CDBF-8214-4F03-84F8-CD3CE48639AD}" = Adobe Photoshop CS4 Support
"{657B7314-CC55-46A3-BB92-1E3315E051B9}" = ME_Kit_Files
"{67A9747A-E1F5-4E9A-81CC-12B5D5B81B6E}" = Adobe After Effects CS4 Third Party Content
"{67F0E67A-8E93-4C2C-B29D-47C48262738A}" = Adobe Device Central CS4
"{68243FF8-83CA-466B-B2B8-9F99DA5479C4}" = AdobeColorCommonSetCMYK
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{6DE721A5-5E89-4D74-994C-652BB3C0672E}" = Ovladače videa společnosti Pinnacle
"{6E36A172-06FB-4BC8-B7FC-D30D219E6776}" = Tom Clancy's H.A.W.X
"{6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61}" = Adobe Asset Services CS3
"{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK
"{72736F5F-520D-472A-88CC-7B02872FD34E}" = Communication Opt-in
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{7748ac8c-18e3-43bb-959b-088faea16fb2}" = Nero StartSmart
"{777AD08E-B32A-4456-AFE1-094DBECEB268}" = Intel(R) Network Connections 13.5.32.0
"{789289CA-F73A-4A16-A331-54D498CE069F}" = Ventrilo
"{7AB3A249-FB81-416B-917A-A2A10E74C503}" = iTunes
"{7AF35DB0-6833-4780-95AA-5FE2904D51A1}" = MATLAB Component Runtime 7.7
"{7BA01D2D-E25C-0C2C-5779-7A8E02A4BE7D}" = Catalyst Control Center Core Implementation
"{802771A9-A856-4A41-ACF7-1450E523C923}" = Adobe XMP Panels CS3
"{8186FF34-D389-4B7E-9A2F-C197585BCFBD}" = Adobe Media Encoder CS4 Importer
"{820D3F45-F6EE-4AAF-81EF-CE21FF21D230}" = Adobe Type Support CS4
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{83877DB1-8B77-45BC-AB43-2BAC22E093E0}" = Adobe Bridge CS4
"{842B4B72-9E8F-4962-B3C1-1C422A5C4434}" = Suite Shared Configuration CS4
"{8570BEE8-0CA3-4977-9AB1-80ED93F0513C}" = Assassin's Creed II
"{85991ED2-010C-4930-96FA-52F43C2CE98A}" = Apple Mobile Device Support
"{85C70286-A56F-4834-BD24-B34EB76A93A2}" = ESET NOD32 Antivirus
"{878D2EB2-2D55-42A9-955E-1E08F28529FD}" = Sony Media Manager 2.2
"{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher
"{8ACC73AA-6511-7C55-B1A9-8E5D1DEAFAA3}" = The Lord of the Rings FREE Trial
"{8AF3FB06-BDA3-42A3-995C-308812D2F094}" = Adobe After Effects CS3
"{8D2BA474-F406-4710-9AE4-D4F22D21F0DD}" = Adobe Device Central CS3
"{8D7133DE-27D2-47E5-B248-4180278D32AA}" = Catalyst Control Center - Branding
"{8FF4E834-DCAD-29E7-1EE8-9D817A3FA15B}" = CCC Help English
"{90120000-0016-0405-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Czech) 2007
"{90120000-0018-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Czech) 2007
"{90120000-001B-0405-0000-0000000FF1CE}" = Microsoft Office Word MUI (Czech) 2007
"{90120000-001F-0405-0000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2007
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-041B-0000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2007
"{90120000-002C-0405-0000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2007
"{90120000-006E-0405-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2007
"{90120000-00A1-0405-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Czech) 2007
"{90176341-0A8B-4CCC-A78D-F862228A6B95}" = Adobe Anchor Service CS3
"{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007
"{931AB7EA-3656-4BB7-864D-022B09E3DD67}" = Adobe Linguistics CS4
"{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"{94D398EB-D2FD-4FD1-B8C4-592635E8A191}" = Adobe CMaps CS4
"{94FB5B63-A65F-7E5D-560D-A79FB29EA52F}" = Catalyst Control Center InstallProxy
"{981029E0-7FC9-4CF3-AB39-6F133621921A}" = Skype Toolbars
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9C9824D9-9000-4373-A6A5-D0E5D4831394}" = Adobe Bridge CS3
"{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}" = ImagXpress
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{B05DE7B7-0B40-4411-BD4B-222CAE2D8F15}" = Adobe MotionPicture Color Files CS4
"{B15381DD-FF97-4FCD-A881-ED4DB0975500}" = Adobe Color Video Profiles AE CS4
"{B29AD377-CC12-490A-A480-1452337C618D}" = Connect
"{B2D328BE-45AD-4D92-96F9-2151490A203E}" = Apple Application Support
"{b2ec4a38-b545-4a00-8214-13fe0e915e6d}" = Advertising Center
"{B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C}" = Adobe Camera Raw 4.0
"{B65BA85C-0A27-4BC0-A22D-A66F0E5B9494}" = Adobe Photoshop CS4
"{BB4E33EC-8181-4685-96F7-8554293DEC6A}" = Adobe Output Module
"{BE9CEAAA-F069-4331-BF2F-8D350F6504F4}" = Adobe Media Encoder CS4 Additional Exporter
"{BEEFC4F8-2909-48B3-AFAA-55D3533FDEDD}" = Creative MediaSource 5
"{BFA55B0C-DE06-4CA8-9319-F3A6C2FA476F}" = Living 3D Butterflies
"{C03A56EE-2715-5F54-69C4-A1CDB7602354}" = Catalyst Control Center Graphics Full New
"{C2D69781-F392-4118-A5A7-C7E9C38DBFC2}" = Adobe ExtendScript Toolkit 2
"{C307DD64-1C69-8C52-D2C9-02D38995A269}" = Catalyst Control Center HydraVision Full
"{C41300B9-185D-475E-BFEC-39EF732F19B1}" = Apple Software Update
"{C52E3EC1-048C-45E1-8D53-10B0C6509683}" = Adobe Default Language CS4
"{C72D7008-266D-4DD8-BF3C-296B736127F6}" = Mafia
"{CC75AB5C-2110-4A7F-AF52-708680D22FE8}" = Photoshop Camera Raw
"{CCCC1B61-1E92-4388-9AFC-5C883071833D}" = Terragen 2 Free Edition
"{CCEB53A5-A252-4CF3-8602-429AB06BF0AE}" = Terragen
"{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}" = SUPERAntiSpyware
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D0DFF92A-492E-4C40-B862-A74A173C25C5}" = Adobe Version Cue CS3 Client
"{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.2
"{DC785DB7-D389-48C3-B146-96FE99BF4E2B}" = Vegas Pro 9.0
"{DD73CA82-EA82-38AA-863D-9A24A018DC96}" = Microsoft .NET Framework 3.5 Language Pack SP1 - csy
"{DEB90B8E-0DCB-48CE-B90E-8842A2BD643E}" = Adobe Media Encoder CS4
"{DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}" = Ad-Aware 2007
"{DEE88727-779B-47A9-ACEF-F87CA5F92A65}" = ScanSoft OmniPage SE 4
"{E09B48B5-E141-427A-AB0C-D3605127224A}" = Microsoft SQL Server Desktop Engine (SONY_MEDIAMGR)
"{E3E1398E-8FF2-0154-6D8F-7FC26299EBED}" = Catalyst Control Center Graphics Full Existing
"{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"{E4848436-0345-47E2-B648-8B522FCDA623}" = Adobe Photoshop CS4
"{E69AE897-9E0B-485C-8552-7841F48D42D8}" = Adobe Update Manager CS3
"{e8a80433-302b-4ff1-815d-fcc8eac482ff}" = Nero Installer
"{ECF8D4B4-FADB-492E-A79A-5BCEA02DB95D}" = boujou 4
"{F0E64E2E-3A60-40D8-A55D-92F6831875DA}" = Adobe Search for Help
"{F1A14CB2-A048-45A6-AFDA-3571296E1D76}" = Creative Media Toolbox 6
"{F2B5A2A7-2DF9-4361-8BD5-362714528B51}" = NHL® 09
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729)
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01
"{F5C372A1-40F3-49DA-A049-F75CDE9177DC}" = Pinnacle Studio Ultimate Collection Plugins
"{F8EF2B3F-C345-4F20-8FE4-791A20333CD5}" = Adobe ExtendScript Toolkit CS4
"{F93C84A6-0DC6-42AF-89FA-776F7C377353}" = Adobe PDF Library Files CS4
"{FBEF69BB-829C-8D4D-B299-497147916039}" = Catalyst Control Center Graphics Light
"{FCDD51BB-CAD0-4BB1-B7DF-CE86D1032794}" = Adobe Fonts All
"{FD052FB9-FE90-4438-B355-15EDC89D8FB1}" = Microsoft Games for Windows - LIVE Redistributable
"3D Ripper DX_is1" = 3D Ripper DX v1.8.1
"A1Click Ultra PC Cleaner (Registered Version)_is1" = A1Click Ultra PC Cleaner 1.01 (Registered Version)
"A1Click Ultra PC Cleaner (Trial Version)_is1" = A1Click Ultra PC Cleaner 1.01 (Trial Version)
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player
"Adobe_3dcb365ab9e01871fb8c6f27b0ea079" = Adobe After Effects CS4
"Adobe_b7dd24a87e82dcf8af8876fd727b7cf" = Adobe After Effects CS3
"Adobe_faf656ef605427ee2f42989c3ad31b8" = Adobe Photoshop CS4
"Akamai" = Akamai NetSession Interface
"ArmA" = ArmA Uninstall
"ArmA 2" = ArmA 2 Uninstall
"ARMA 2 Operation Arrowhead" = ARMA 2 Operation Arrowhead Uninstall
"Autodesk FBX Plugin 2009.4 - 3ds Max 2010" = Autodesk FBX Plugin 2009.4 - 3ds Max 2010
"AutoHotkey" = AutoHotkey 1.0.48.05
"AV Voice Changer Software 4.0" = AV Voice Changer Software 4.0
"AviSynth" = AviSynth 2.5
"BattlEye" = BattlEye Uninstall
"BSPlayer1" = BSPlayer
"BSPlayerf" = BS.Player FREE
"CamStudio" = CamStudio
"CANONIJPLM100" = PIXMA Extended Survey Program
"CanonMyPrinter" = Canon My Printer
"CanonSolutionMenu" = Canon Utilities Solution Menu
"CCleaner" = CCleaner
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"Cool Record Edit Pro" = Cool Record Edit Pro
"Cossacks : Back To War" = ?????? - ????? ?????
"Counter-Strike: Source" = Counter-Strike: Source
"Creative Software AutoUpdate" = Creative Software AutoUpdate
"DivX Setup.divx.com" = DivX Setup
"Easy-PhotoPrint EX" = Canon Utilities Easy-PhotoPrint EX
"Eurobattle.net1.24b" = Eurobattle.net
"FiestaBar" = FiestaBar™ 3.0.0.247
"FlashFire" = FlashFire
"Fraps" = Fraps (remove only)
"Freeze Buddy Icons" = Freeze Buddy Icons
"Freeze Wallpaper" = Freeze Wallpaper
"GameParkClient_is1" = GamePark
"GameTracker Lite" = GameTracker Lite
"Google Chrome" = Google Chrome
"HASP HL Device Driver" = HASP HL Device Driver
"HECI" = Intel(R) Management Engine Interface
"HLSW_is1" = HLSW v1.2.1
"HOMESTUDENTR" = Microsoft Office Home and Student 2007
"HUFFYUV" = Huffyuv AVI lossless video codec (Remove Only)
"InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"KigoImageConverter_is1" = KigoImageConverter 2.0
"KLiteCodecPack_is1" = K-Lite Mega Codec Pack 6.2.0
"Knoll Light Factory EZ Studio" = Knoll Light Factory EZ Studio
"Mafia 1.0 patch" = Mafia 1.0 patch
"Mafia II_is1" = Mafia II
"Magic Bullet Looks Studio" = Magic Bullet Looks Studio
"Magic Bullet Looks Vegas" = Magic Bullet Looks Vegas
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"MediaCoder" = MediaCoder 0.7.3.4666
"MediaNavigation.CDLabelPrint" = CD-LabelPrint
"meGUI modern media encoder" = meGUI modern media encoder (remove only)
"Microsoft .NET Framework 3.5 Language Pack SP1 - csy" = Microsoft .NET Framework 3.5 SP1 – jazyková sada – CSY
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"mIRC" = mIRC
"Mozilla Firefox (3.0.19)" = Mozilla Firefox (3.0.19)
"MP Navigator EX 1.0" = Canon MP Navigator EX 1.0
"OpenAL" = OpenAL
"PowerISO" = PowerISO
"PROSetDX" = Intel(R) Network Connections 13.5.32.0
"PunkBusterSvc" = PunkBuster Services
"Red Giant ToonIt Studio" = Red Giant ToonIt Studio
"Registrace uživatele zařízení Canon MP610 series" = Registrace uživatele zařízení Canon MP610 series
"Seismovision 3" = Seismovision 3 (remove only)
"Smilies" = Smilies
"StarCraft II" = StarCraft II
"Steam App 10180" = Call of Duty: Modern Warfare 2
"Steam App 10190" = Call of Duty: Modern Warfare 2 - Multiplayer
"Steam App 50280" = Mafia II - Demo
"SysInfo" = Creative System Information
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"TotalRecorder" = Total Recorder 8.1
"Trapcode 3DStroke Studio" = Trapcode 3DStroke Studio
"Trapcode Particular Studio" = Trapcode Particular Studio
"Trapcode Shine" = Trapcode Shine
"Trapcode Shine Studio" = Trapcode Shine Studio
"Uninstaller_B4736000_Creative Media Toolbox 6" = Creative Media Toolbox 6 (Shared Components)
"Úroky z prodlení_is1" = Úroky z prodlení 2.5.
"uTorrent" = µTorrent
"VTFEdit_is1" = VTFEdit 1.2.5
"Warcraft III" = Warcraft III
"WinASO Registry Optimizer 4.0_is1" = WinASO Registry Optimizer 4.0
"WinRAR archiver" = WinRAR archiver
"World of Warcraft" = World of Warcraft
"Xfire" = Xfire (remove only)
"XviD4PSP5" = XviD4PSP 5.0
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Riva Casino" = Riva Casino
"Warcraft III" = Warcraft III: All Products
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 18.10.2010 0:54:33 | Computer Name = MIKES-PC | Source = Bonjour Service | ID = 100
Description = 384: ERROR: read_msg errno 10054 (Stávající připojení bylo vynuceně
ukončeno vzdáleným hostitelem.)
Error - 18.10.2010 0:54:42 | Computer Name = MIKES-PC | Source = Bonjour Service | ID = 100
Description = 384: ERROR: read_msg errno 10054 (Stávající připojení bylo vynuceně
ukončeno vzdáleným hostitelem.)
Error - 18.10.2010 0:56:10 | Computer Name = MIKES-PC | Source = Bonjour Service | ID = 100
Description = 416: ERROR: read_msg errno 10054 (Stávající připojení bylo vynuceně
ukončeno vzdáleným hostitelem.)
Error - 18.10.2010 0:58:06 | Computer Name = MIKES-PC | Source = Bonjour Service | ID = 100
Description = 384: ERROR: read_msg errno 10054 (Stávající připojení bylo vynuceně
ukončeno vzdáleným hostitelem.)
Error - 18.10.2010 0:59:00 | Computer Name = MIKES-PC | Source = Bonjour Service | ID = 100
Description = 416: ERROR: read_msg errno 10054 (Stávající připojení bylo vynuceně
ukončeno vzdáleným hostitelem.)
Error - 18.10.2010 0:59:10 | Computer Name = MIKES-PC | Source = Bonjour Service | ID = 100
Description = 416: ERROR: read_msg errno 10054 (Stávající připojení bylo vynuceně
ukončeno vzdáleným hostitelem.)
Error - 18.10.2010 8:11:07 | Computer Name = MIKES-PC | Source = Application Error | ID = 1000
Description = Chybující aplikace Keytro.exe, verze 0.0.0.0, časové razítko 0x4a72f2c2,
chybující modul Keytro.exe, verze 0.0.0.0, časové razítko 0x4a72f2c2, kód výjimky
0xc0000005, posun chyby 0x0000bdca, ID procesu 0x12a0, čas spuštění aplikace 0x01cb6ebd892d8e44.
Error - 18.10.2010 8:28:27 | Computer Name = MIKES-PC | Source = Application Error | ID = 1000
Description = Chybující aplikace Keytro.exe, verze 0.0.0.0, časové razítko 0x4a72f2c2,
chybující modul Keytro.exe, verze 0.0.0.0, časové razítko 0x4a72f2c2, kód výjimky
0xc0000005, posun chyby 0x0000bdca, ID procesu 0x110c, čas spuštění aplikace 0x01cb6ebff72c15e4.
Error - 19.10.2010 0:18:10 | Computer Name = MIKES-PC | Source = WinMgmt | ID = 10
Description =
Error - 19.10.2010 1:19:53 | Computer Name = MIKES-PC | Source = WinMgmt | ID = 10
Description =
[ System Events ]
Error - 17.10.2010 9:30:01 | Computer Name = MIKES-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 17.10.2010 9:34:15 | Computer Name = MIKES-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 17.10.2010 9:34:15 | Computer Name = MIKES-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 18.10.2010 0:25:30 | Computer Name = MIKES-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 18.10.2010 0:25:30 | Computer Name = MIKES-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 19.10.2010 0:18:11 | Computer Name = MIKES-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 19.10.2010 0:18:11 | Computer Name = MIKES-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 19.10.2010 1:18:10 | Computer Name = MIKES-PC | Source = EventLog | ID = 6008
Description = Předchozí vypnutí systému (7:15:57, 19.10.2010) bylo neočekávané.
Error - 19.10.2010 1:19:53 | Computer Name = MIKES-PC | Source = Service Control Manager | ID = 7000
Description =
Error - 19.10.2010 1:19:53 | Computer Name = MIKES-PC | Source = Service Control Manager | ID = 7000
Description =
< End of report >
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43294
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Zlobí UAC (řízení uživatelských účtů)
Osinstaluj:
C:\ProgramData\Kaspersky Lab
C:\ProgramData\F-Secure
ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix /Uninstall
vyčisti systém CCleanerem
a použij i T-Cleaner
smaže vše po Combu,MWAVu atd.-stáhneš>spustíš
*******************************************************
C:\Program Files\Aktivátory - Legalizátory - win7 - winXP - winVista.rar--ilegal tady netolerujeme!!
mažu...
pokud máš oS ilegal , je to možná příčina UAC.
**********************************************************************************************************************************
Poklepej na ikonu OTL na ploše.Ujisti se , že máš všechny ostatní aplikace a prohlížeče zavřeny.
Pod Vlastní skenování/opravy do okénka vlož následující text, zobrazený zeleně:
Poté klikni nahoře na Opravit. Nech program nerušeně běžet, na konci se provede restart PC.
Po restartu se objeví log , prosím zkopíruj sem celý jeho obsah.
Znáš tyto složky (programy) :
C:\Users\MIKES\Desktop\tesat
C:\Program Files\2d3
?
C:\ProgramData\Kaspersky Lab
C:\ProgramData\F-Secure
ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix /Uninstall
vyčisti systém CCleanerem
a použij i T-Cleaner
smaže vše po Combu,MWAVu atd.-stáhneš>spustíš
*******************************************************
C:\Program Files\Aktivátory - Legalizátory - win7 - winXP - winVista.rar--ilegal tady netolerujeme!!
mažu...
pokud máš oS ilegal , je to možná příčina UAC.
**********************************************************************************************************************************
Poklepej na ikonu OTL na ploše.Ujisti se , že máš všechny ostatní aplikace a prohlížeče zavřeny.
Pod Vlastní skenování/opravy do okénka vlož následující text, zobrazený zeleně:
Kód: Vybrat vše
:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
DRV - (NwlnkFwd) -- C:\Windows\System32\DRIVERS\nwlnkfwd.sys File not found
DRV - (NwlnkFlt) -- C:\Windows\System32\DRIVERS\nwlnkflt.sys File not found
DRV - (IpInIp) -- C:\Windows\System32\DRIVERS\ipinip.sys File not found
DRV - (IntcAzAudAddService) Service for Realtek HD Audio (WDM) -- C:\Windows\System32\drivers\RTKVHDA.sys File not found
DRV - (eamonm) -- C:\Windows\System32\DRIVERS\eamonm.sys File not found
DRV - (catchme) -- C:\ComboFix\catchme.sys File not found
FF - prefs.js..browser.search.defaultenginename: "ICQ Search"
FF - prefs.js..browser.search.defaultthis.engineName: "XfireXO Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2304157&SearchSource=3&q={searchTerms}"
FF - prefs.js..browser.search.selectedEngine: "ICQ Search"
FF - prefs.js..keyword.URL: "http://search.icq.com/search/afe_results.php?ch_id=afex&q="
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
:Files
C:\WINDOWS\System32\*.tmp
C:\WINDOWS\*.tmp
C:\WINDOWS\system32\*.tmp.dll
C:\WINDOWS\system32\SET*.tmp
c:\windows\Tasks\*.job
C:\*.tmp
C:\Windows\System32\perfh009.dat
C:\Windows\System32\perfc009.dat
C:\ProgramData\ezsidmv.dat
C:\Program Files\Aktivátory - Legalizátory - win7 - winXP - winVista.rar
:Reg
:Commands
[purity]
[emptytemp]
[EMPTYFLASH]
[start explorer]
[Reboot]
Poté klikni nahoře na Opravit. Nech program nerušeně běžet, na konci se provede restart PC.
Po restartu se objeví log , prosím zkopíruj sem celý jeho obsah.
Znáš tyto složky (programy) :
C:\Users\MIKES\Desktop\tesat
C:\Program Files\2d3
?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Zlobí UAC (řízení uživatelských účtů)

Den pred tim jsem zkoušel nake theme win ale nepodařilo se mi ho nainstalovat a nechal sem to být... a jeste ten den sem si všimnul že chybí explorer.exe(myslel jsem si že je to internet explorer)tak jsem ten příští den chtěl preinstalovat OS ale nemam instalacni cd.a pak jsem si zpomněl na ten explorer a zkopiroval jsem ho z notebooku a spustil(ctrl+alt+delete/správce úloh/Soubor/nová úloha(spustit)/explorer.exe.A de to.(jestli nevěříte klidně vyfotim nálepku na pc....)
tesat - složka kam si ukládám věci s kterými pracuju v Sony Vegasu
2d3 - program boujou který slouží k importování videa do 3ds maxu
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43294
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Zlobí UAC (řízení uživatelských účtů)
Fajn , udělej ten scipt v OTL , přesunovat soubory z jednoho PC do druhého rozhodně nezkušeným nedoporučuji.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Zlobí UAC (řízení uživatelských účtů)
All processes killed
========== OTL ==========
No active process named explorer.exe was found!
No active process named firefox.exe was found!
Service NwlnkFwd stopped successfully!
Service NwlnkFwd deleted successfully!
File C:\Windows\System32\DRIVERS\nwlnkfwd.sys File not found not found.
Service NwlnkFlt stopped successfully!
Service NwlnkFlt deleted successfully!
File C:\Windows\System32\DRIVERS\nwlnkflt.sys File not found not found.
Service IpInIp stopped successfully!
Service IpInIp deleted successfully!
File C:\Windows\System32\DRIVERS\ipinip.sys File not found not found.
Error: No service named IntcAzAudAddService) Service for Realtek HD Audio (WDM was found to stop!
Service\Driver key IntcAzAudAddService) Service for Realtek HD Audio (WDM not found.
File C:\Windows\System32\drivers\RTKVHDA.sys File not found not found.
Service eamonm stopped successfully!
Service eamonm deleted successfully!
File C:\Windows\System32\DRIVERS\eamonm.sys File not found not found.
Service catchme stopped successfully!
Service catchme deleted successfully!
File C:\ComboFix\catchme.sys File not found not found.
Prefs.js: "ICQ Search" removed from browser.search.defaultenginename
Prefs.js: "XfireXO Customized Web Search" removed from browser.search.defaultthis.engineName
Prefs.js: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2304157&SearchSource=3&q={searchTerms}" removed from browser.search.defaulturl
Prefs.js: "ICQ Search" removed from browser.search.selectedEngine
Prefs.js: "http://search.icq.com/search/afe_results.php?ch_id=afex&q=" removed from keyword.URL
Registry key HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Restrictions\ deleted successfully.
Registry key HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\Control Panel\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\\{AEB6717E-7E19-11d0-97EE-00C04FD91972} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AEB6717E-7E19-11d0-97EE-00C04FD91972}\ not found.
Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session manager\\BootExecute:autocheck autochk * deleted successfully.
========== FILES ==========
File\Folder C:\WINDOWS\System32\*.tmp not found.
File\Folder C:\WINDOWS\*.tmp not found.
File\Folder C:\WINDOWS\system32\*.tmp.dll not found.
File\Folder C:\WINDOWS\system32\SET*.tmp not found.
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job moved successfully.
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job moved successfully.
File\Folder C:\*.tmp not found.
C:\Windows\System32\perfh009.dat moved successfully.
C:\Windows\System32\perfc009.dat moved successfully.
C:\ProgramData\ezsidmv.dat moved successfully.
File\Folder C:\Program Files\Aktivátory - Legalizátory - win7 - winXP - winVista.rar not found.
========== REGISTRY ==========
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: MIKES
->Temp folder emptied: 877422 bytes
->Temporary Internet Files folder emptied: 126846 bytes
->Java cache emptied: 29625 bytes
->FireFox cache emptied: 51703196 bytes
->Google Chrome cache emptied: 0 bytes
->Flash cache emptied: 2904 bytes
User: Public
->Temp folder emptied: 0 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 4058 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 0 bytes
Total Files Cleaned = 50,00 mb
[EMPTYFLASH]
User: All Users
User: Default
User: Default User
User: MIKES
->Flash cache emptied: 0 bytes
User: Public
Total Flash Files Cleaned = 0,00 mb
OTL by OldTimer - Version 3.2.16.0 log created on 10202010_065937
Files\Folders moved on Reboot...
Registry entries deleted on Reboot...
========== OTL ==========
No active process named explorer.exe was found!
No active process named firefox.exe was found!
Service NwlnkFwd stopped successfully!
Service NwlnkFwd deleted successfully!
File C:\Windows\System32\DRIVERS\nwlnkfwd.sys File not found not found.
Service NwlnkFlt stopped successfully!
Service NwlnkFlt deleted successfully!
File C:\Windows\System32\DRIVERS\nwlnkflt.sys File not found not found.
Service IpInIp stopped successfully!
Service IpInIp deleted successfully!
File C:\Windows\System32\DRIVERS\ipinip.sys File not found not found.
Error: No service named IntcAzAudAddService) Service for Realtek HD Audio (WDM was found to stop!
Service\Driver key IntcAzAudAddService) Service for Realtek HD Audio (WDM not found.
File C:\Windows\System32\drivers\RTKVHDA.sys File not found not found.
Service eamonm stopped successfully!
Service eamonm deleted successfully!
File C:\Windows\System32\DRIVERS\eamonm.sys File not found not found.
Service catchme stopped successfully!
Service catchme deleted successfully!
File C:\ComboFix\catchme.sys File not found not found.
Prefs.js: "ICQ Search" removed from browser.search.defaultenginename
Prefs.js: "XfireXO Customized Web Search" removed from browser.search.defaultthis.engineName
Prefs.js: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2304157&SearchSource=3&q={searchTerms}" removed from browser.search.defaulturl
Prefs.js: "ICQ Search" removed from browser.search.selectedEngine
Prefs.js: "http://search.icq.com/search/afe_results.php?ch_id=afex&q=" removed from keyword.URL
Registry key HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Restrictions\ deleted successfully.
Registry key HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\Control Panel\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\\{AEB6717E-7E19-11d0-97EE-00C04FD91972} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AEB6717E-7E19-11d0-97EE-00C04FD91972}\ not found.
Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session manager\\BootExecute:autocheck autochk * deleted successfully.
========== FILES ==========
File\Folder C:\WINDOWS\System32\*.tmp not found.
File\Folder C:\WINDOWS\*.tmp not found.
File\Folder C:\WINDOWS\system32\*.tmp.dll not found.
File\Folder C:\WINDOWS\system32\SET*.tmp not found.
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job moved successfully.
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job moved successfully.
File\Folder C:\*.tmp not found.
C:\Windows\System32\perfh009.dat moved successfully.
C:\Windows\System32\perfc009.dat moved successfully.
C:\ProgramData\ezsidmv.dat moved successfully.
File\Folder C:\Program Files\Aktivátory - Legalizátory - win7 - winXP - winVista.rar not found.
========== REGISTRY ==========
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: MIKES
->Temp folder emptied: 877422 bytes
->Temporary Internet Files folder emptied: 126846 bytes
->Java cache emptied: 29625 bytes
->FireFox cache emptied: 51703196 bytes
->Google Chrome cache emptied: 0 bytes
->Flash cache emptied: 2904 bytes
User: Public
->Temp folder emptied: 0 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 4058 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 0 bytes
Total Files Cleaned = 50,00 mb
[EMPTYFLASH]
User: All Users
User: Default
User: Default User
User: MIKES
->Flash cache emptied: 0 bytes
User: Public
Total Flash Files Cleaned = 0,00 mb
OTL by OldTimer - Version 3.2.16.0 log created on 10202010_065937
Files\Folders moved on Reboot...
Registry entries deleted on Reboot...
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43294
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Zlobí UAC (řízení uživatelských účtů)
Jak to vypadá?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Zlobí UAC (řízení uživatelských účtů)
Furt stejné :_(
Re: Zlobí UAC (řízení uživatelských účtů)
Jen RAM se zase snížila :-)
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43294
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Zlobí UAC (řízení uživatelských účtů)
Stáhni AVP Tools
na svojí plochu.
Zaškrtni :
Hidden startup objels
System Memory
Disk boot sectors
Dokumenty
My email
Počítač
Místní disk C
Místní disk D
Jednotka DVD-Rom (E)
Jednotka BD-ROM (G)
Pokračuj podle instrukcí.Na konci se objeví textový soubor , který si hned ulož (save log) na svojí plochu pod názvem KAS.txt .Poté sem vlož celý obsah toho logu.
na svojí plochu.
Zaškrtni :
Hidden startup objels
System Memory
Disk boot sectors
Dokumenty
My email
Počítač
Místní disk C
Místní disk D
Jednotka DVD-Rom (E)
Jednotka BD-ROM (G)
Pokračuj podle instrukcí.Na konci se objeví textový soubor , který si hned ulož (save log) na svojí plochu pod názvem KAS.txt .Poté sem vlož celý obsah toho logu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 120 hostů