Velké využití disku

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
MaxDel
Level 3.5
Level 3.5
Příspěvky: 662
Registrován: únor 14
Pohlaví: Muž
Stav:
Offline

Re: Velké využití disku

Příspěvekod MaxDel » 19 dub 2015 12:20

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >

< %ALLUSERSPROFILE%\Application Data\*.exe /s >

< %APPDATA%\*. >
[2014/12/31 18:31:00 | 000,000,000 | ---D | M] -- C:\Users\Max\AppData\Roaming\.StarMade
[2015/04/09 19:53:33 | 000,000,000 | ---D | M] -- C:\Users\Max\AppData\Roaming\Adobe
[2015/04/02 19:59:23 | 000,000,000 | ---D | M] -- C:\Users\Max\AppData\Roaming\Anvsoft
[2015/04/02 21:15:27 | 000,000,000 | ---D | M] -- C:\Users\Max\AppData\Roaming\Audacity
[2015/03/07 12:06:04 | 000,000,000 | ---D | M] -- C:\Users\Max\AppData\Roaming\AVAST Software
[2015/02/06 14:42:04 | 000,000,000 | ---D | M] -- C:\Users\Max\AppData\Roaming\Battle.net
[2015/04/09 19:35:23 | 000,000,000 | ---D | M] -- C:\Users\Max\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2015/01/02 16:44:33 | 000,000,000 | ---D | M] -- C:\Users\Max\AppData\Roaming\DAEMON Tools Lite
[2015/01/06 22:43:54 | 000,000,000 | ---D | M] -- C:\Users\Max\AppData\Roaming\DVDVideoSoft
[2014/12/24 20:20:19 | 000,000,000 | ---D | M] -- C:\Users\Max\AppData\Roaming\Intel Corporation
[2014/12/25 20:38:26 | 000,000,000 | ---D | M] -- C:\Users\Max\AppData\Roaming\java
[2014/12/25 17:10:04 | 000,000,000 | ---D | M] -- C:\Users\Max\AppData\Roaming\Macromedia
[2015/02/06 14:46:36 | 000,000,000 | --SD | M] -- C:\Users\Max\AppData\Roaming\Microsoft
[2015/02/26 20:31:08 | 000,000,000 | ---D | M] -- C:\Users\Max\AppData\Roaming\Minecraft Command Generator
[2015/01/16 23:47:08 | 000,000,000 | ---D | M] -- C:\Users\Max\AppData\Roaming\NVIDIA
[2015/04/02 19:30:07 | 000,000,000 | ---D | M] -- C:\Users\Max\AppData\Roaming\OBS
[2015/04/19 10:42:15 | 000,000,000 | ---D | M] -- C:\Users\Max\AppData\Roaming\OpenCandy
[2015/03/01 17:46:52 | 000,000,000 | ---D | M] -- C:\Users\Max\AppData\Roaming\Origin
[2014/12/31 19:20:06 | 000,000,000 | ---D | M] -- C:\Users\Max\AppData\Roaming\Processing
[2015/04/12 20:15:35 | 000,000,000 | ---D | M] -- C:\Users\Max\AppData\Roaming\Samsung
[2015/04/19 12:07:47 | 000,000,000 | ---D | M] -- C:\Users\Max\AppData\Roaming\Skype
[2015/04/13 19:09:01 | 000,000,000 | ---D | M] -- C:\Users\Max\AppData\Roaming\Sony
[2015/03/19 15:16:42 | 000,000,000 | ---D | M] -- C:\Users\Max\AppData\Roaming\Sony Creative Software Inc
[2015/04/09 19:53:33 | 000,000,000 | ---D | M] -- C:\Users\Max\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2015/01/01 18:33:53 | 000,000,000 | ---D | M] -- C:\Users\Max\AppData\Roaming\TeamViewer
[2015/02/15 13:44:42 | 000,000,000 | ---D | M] -- C:\Users\Max\AppData\Roaming\TS3Client
[2015/04/19 10:42:38 | 000,000,000 | ---D | M] -- C:\Users\Max\AppData\Roaming\Uniblue
[2015/03/30 19:26:11 | 000,000,000 | ---D | M] -- C:\Users\Max\AppData\Roaming\Unity
[2015/04/11 20:58:39 | 000,000,000 | ---D | M] -- C:\Users\Max\AppData\Roaming\uTorrent
[2015/01/13 21:04:48 | 000,000,000 | ---D | M] -- C:\Users\Max\AppData\Roaming\Wargaming.net
[2014/12/27 15:52:44 | 000,000,000 | ---D | M] -- C:\Users\Max\AppData\Roaming\WinRAR

< %APPDATA%\*.exe /s >
[2015/01/05 16:00:30 | 005,266,250 | ---- | M] () -- C:\Users\Max\AppData\Roaming\Anvsoft\Common\youtube-dl.exe
[2015/02/26 19:37:43 | 008,689,152 | ---- | M] (SorenIX) -- C:\Users\Max\AppData\Roaming\Minecraft Command Generator\MCCG.exe
[2015/04/19 10:42:16 | 000,198,640 | ---- | M] (OpenCandy) -- C:\Users\Max\AppData\Roaming\OpenCandy\6BFE1DE994674456B73E86FD84F4FF7A\dh.exe
[2015/04/19 10:42:18 | 001,044,112 | ---- | M] (Uniblue Systems Limited ) -- C:\Users\Max\AppData\Roaming\OpenCandy\6BFE1DE994674456B73E86FD84F4FF7A\pcmechanicpmROW_p1v2.exe
[2014/04/14 01:00:00 | 000,042,496 | ---- | M] () -- C:\Users\Max\AppData\Roaming\uTorrent\uninstall.exe
[2014/04/14 01:00:00 | 000,398,760 | ---- | M] (BitTorrent, Inc.) -- C:\Users\Max\AppData\Roaming\uTorrent\utorrent.exe

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\Tasks\*.job /lockedfiles >

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\system32\drivers\*.sys /3 >

< %systemroot%\system32\*.* /3 >

< %SYSTEMDRIVE%\*.exe >

< *crack* /s >
[2015/01/01 18:41:45 | 000,315,178 | ---- | M] () -- \Adobe Photoshop\Adobe Photoshop CS5 CZ\Crack\ADBE_CRACK - 32bit.rar
[2015/01/01 18:41:45 | 000,377,747 | ---- | M] () -- \Adobe Photoshop\Adobe Photoshop CS5 CZ\Crack\ADBE_CRACK - 64bit.rar
[2014/12/17 23:37:39 | 000,213,184 | ---- | M] () -- \Games\World_of_Tanks\res\audio\objects_ice_crack.fsb
[2015/01/27 01:02:59 | 001,815,084 | ---- | M] () -- \Hry\Dying Light\Dying Light\DW\Data\Menu\Movies\Skills\BlueprintsFirecrackers.bik
[2015/04/09 18:32:49 | 000,092,595 | ---- | M] () -- \Users\Max\AppData\Roaming\uTorrent\Adobe Illustrator CS6 + Crack.torrent
[2015/03/01 11:00:38 | 000,017,896 | ---- | M] () -- \Users\Max\AppData\Roaming\uTorrent\Sims 4 Crack Reloaded.1.torrent
[2015/03/01 11:07:32 | 000,017,896 | ---- | M] () -- \Users\Max\AppData\Roaming\uTorrent\Sims 4 Crack Reloaded.2.torrent
[2015/03/01 11:00:38 | 000,017,896 | ---- | M] () -- \Users\Max\AppData\Roaming\uTorrent\Sims 4 Crack Reloaded.torrent
[2015/01/16 23:34:47 | 000,001,702 | ---- | M] () -- \Users\Max\AppData\Roaming\uTorrent\Vegas Pro 12 Crack v2.exe.torrent
[2014/09/01 14:57:56 | 000,000,469 | ---- | M] () -- \Users\Max\Desktop\DeeFalls Texture Pack\assets\minecraft\textures\blocks\stonebrick_cracked.png

< *keygen* /s >
[2015/01/01 18:41:45 | 000,003,121 | ---- | M] () -- \Adobe Photoshop\Adobe Photoshop CS5 CZ\Crack\KeyGen-Readme.txt

< *loader* /s >
[2014/11/12 13:19:51 | 000,509,440 | ---- | M] () -- \Games\Assassin's Creed Unity\UPlay_R1_Loader64.dll
[2014/11/10 11:22:19 | 000,575,192 | ---- | M] () -- \Games\Assassin's Creed Unity\uplay_r1_loader64.ubi
[2014/12/17 23:37:39 | 000,071,208 | ---- | M] () -- \Games\World_of_Tanks\PhysXLoader.dll
[2015/02/05 16:49:34 | 000,001,512 | ---- | M] () -- \Games\World_of_Tanks\res\scripts\client\gui\doc_loaders\eulaversionloader.pyc
[2014/12/17 23:37:39 | 000,002,209 | ---- | M] () -- \Games\World_of_Tanks\res\scripts\client\gui\doc_loaders\graphicspresetsloader.pyc
[2014/12/17 23:37:39 | 000,007,130 | ---- | M] () -- \Games\World_of_Tanks\res\scripts\client\gui\doc_loaders\guicolorsloader.pyc
[2014/12/17 23:37:39 | 000,003,955 | ---- | M] () -- \Games\World_of_Tanks\res\scripts\client\gui\doc_loaders\guisoundsloader.pyc
[2015/02/05 16:49:34 | 000,006,408 | ---- | M] () -- \Games\World_of_Tanks\res\scripts\client\gui\doc_loaders\logindataloader.pyc
[2014/12/17 23:37:39 | 000,002,753 | ---- | M] () -- \Games\World_of_Tanks\res\scripts\client\gui\doc_loaders\windowsstoreddataloader.pyc
[2014/12/17 23:37:39 | 000,001,489 | ---- | M] () -- \Games\World_of_Tanks\res\scripts\client\gui\scaleform\framework\entities\abstract\loadermanagermeta.pyc
[2014/12/17 23:37:39 | 000,006,757 | ---- | M] () -- \Games\World_of_Tanks\res\scripts\client\gui\scaleform\framework\managers\loaders.pyc
[2014/12/17 23:37:39 | 000,003,419 | ---- | M] () -- \Games\World_of_Tanks\res\scripts\client\helpers\rssdownloader.pyc
[2015/02/05 16:49:34 | 000,007,603 | ---- | M] () -- \Games\World_of_Tanks\res\scripts\client\tutorial\loader.pyc
[2014/12/17 23:37:39 | 000,011,286 | ---- | M] () -- \Games\World_of_Tanks\res_bw\scripts\common\lib\unittest\loader.pyc
[2014/11/11 15:24:59 | 000,479,232 | ---- | M] () -- \Hry\Assasins Creed Rogue\Assassin's Creed Rogue\UPlay_R1_Loader64.dll
[2014/11/10 02:22:19 | 000,575,192 | ---- | M] () -- \Hry\Assasins Creed Rogue\Assassin's Creed Rogue\uplay_r1_loader64.ubi
[2014/11/18 03:06:38 | 000,513,536 | ---- | M] () -- \Hry\Far Cry 4\bin\uplay_r1_loader64.dll
[2014/11/10 12:22:18 | 000,575,192 | ---- | M] () -- \Hry\Far Cry 4\bin\uplay_r1_loader64.ubi
[2014/05/19 21:12:54 | 000,000,204 | ---- | M] () -- \processing-2.2.1\modes\java\libraries\video\bin\processing\video\LibraryLoader$DummyLibrary.class
[2014/05/19 21:12:54 | 000,005,934 | ---- | M] () -- \processing-2.2.1\modes\java\libraries\video\bin\processing\video\LibraryLoader.class
[2014/05/19 21:13:02 | 000,007,813 | ---- | M] () -- \processing-2.2.1\modes\java\libraries\video\src\processing\video\LibraryLoader.java
[2010/03/09 05:28:40 | 005,297,608 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\Photodownloader.exe
[2010/03/09 02:38:58 | 000,011,161 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\bitmaps\main_window\C_LoadError.png
[2010/03/09 02:38:58 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\da_dk\Photodownloader.ini
[2010/03/09 02:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\de_de\Photodownloader.ini
[2010/03/09 02:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\en_us\Photodownloader.ini
[2010/03/09 02:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\es_es\Photodownloader.ini
[2010/03/09 02:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\fi_fi\Photodownloader.ini
[2010/03/09 02:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\fr_fr\Photodownloader.ini
[2010/03/09 02:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\it_it\Photodownloader.ini
[2010/03/09 02:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\ja_jp\Photodownloader.ini
[2010/03/09 02:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\ko_kr\Photodownloader.ini
[2010/03/09 02:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\nl_nl\Photodownloader.ini
[2010/03/09 02:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\no_no\Photodownloader.ini
[2010/03/09 02:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\pt_br\Photodownloader.ini
[2010/03/09 02:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\sv_se\Photodownloader.ini
[2010/03/09 02:39:00 | 000,000,308 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\zh_cn\Photodownloader.ini
[2010/03/09 02:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\zh_tw\Photodownloader.ini
[2012/03/13 12:18:28 | 003,297,128 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\Photodownloader.exe
[2012/03/13 10:41:34 | 000,000,860 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\Photodownloader.exe.manifest
[2012/03/13 10:41:58 | 000,011,161 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\bitmaps\main_window\C_LoadError.png
[2012/03/13 10:42:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\da_dk\Photodownloader.ini
[2012/03/13 10:42:02 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\de_de\Photodownloader.ini
[2012/03/13 10:42:02 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\en_us\Photodownloader.ini
[2012/03/13 10:42:02 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\es_es\Photodownloader.ini
[2012/03/13 10:42:02 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\fi_fi\Photodownloader.ini
[2012/03/13 10:42:02 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\fr_fr\Photodownloader.ini
[2012/03/13 10:42:02 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\it_it\Photodownloader.ini
[2012/03/13 10:42:04 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\ja_jp\Photodownloader.ini
[2012/03/13 10:42:04 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\ko_kr\Photodownloader.ini
[2012/03/13 10:42:04 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\nl_nl\Photodownloader.ini
[2012/03/13 10:42:04 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\no_no\Photodownloader.ini
[2012/03/13 10:42:04 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\pt_br\Photodownloader.ini
[2012/03/13 10:42:04 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\sv_se\Photodownloader.ini
[2012/03/13 10:42:06 | 000,000,324 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\zh_cn\Photodownloader.ini
[2012/03/13 10:42:06 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS6\apd\shared_assets\locales\zh_tw\Photodownloader.ini
[2014/11/21 15:29:02 | 000,172,032 | ---- | M] () -- \Program Files (x86)\Anvsoft\Any Video Converter\avcdownloader.dll
[2013/12/24 14:47:18 | 000,005,932 | ---- | M] () -- \Program Files (x86)\Anvsoft\Any Video Converter\plugins\loader.avsi
[2006/10/26 14:40:34 | 000,057,344 | ---- | M] () -- \Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\coloader.dll
[2006/10/26 14:40:34 | 000,005,120 | ---- | M] () -- \Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\coloader.tlb
[2014/12/13 02:50:40 | 000,268,440 | ---- | M] () -- \Program Files (x86)\Common Files\Microsoft Shared\VSTO\10.0\VSTOLoader.dll
[2014/12/13 02:50:40 | 000,019,080 | ---- | M] () -- \Program Files (x86)\Common Files\Microsoft Shared\VSTO\10.0\1033\VSTOLoaderUI.dll
[2014/12/15 23:19:10 | 002,839,720 | ---- | M] () -- \Program Files (x86)\DVDVideoSoft\Free YouTube Download\FreeYTVDownloader.exe
[2014/11/21 19:31:46 | 000,000,882 | ---- | M] () -- \Program Files (x86)\DVDVideoSoft\Free YouTube Download\FreeYTVDownloader.xml
[2014/11/21 19:31:32 | 000,004,856 | ---- | M] () -- \Program Files (x86)\DVDVideoSoft\Free YouTube Download\FreeYTVDownloaderProfile.xml
[2014/11/21 19:31:32 | 000,006,610 | ---- | M] () -- \Program Files (x86)\DVDVideoSoft\Free YouTube Download\FreeYTVDownloaderProfileD.xml
[2014/12/15 23:17:28 | 000,032,768 | ---- | M] () -- \Program Files (x86)\DVDVideoSoft\Free YouTube Download\da-DK\FreeYTVDownloader.resources.dll
[2014/12/15 23:17:28 | 000,032,768 | ---- | M] () -- \Program Files (x86)\DVDVideoSoft\Free YouTube Download\de-DE\FreeYTVDownloader.resources.dll
[2014/12/15 23:17:28 | 000,036,864 | ---- | M] () -- \Program Files (x86)\DVDVideoSoft\Free YouTube Download\el-GR\FreeYTVDownloader.resources.dll
[2014/12/15 23:17:28 | 000,032,768 | ---- | M] () -- \Program Files (x86)\DVDVideoSoft\Free YouTube Download\es-ES\FreeYTVDownloader.resources.dll
[2014/12/15 23:17:30 | 000,013,824 | ---- | M] () -- \Program Files (x86)\DVDVideoSoft\Free YouTube Download\fi-FI\FreeYTVDownloader.resources.dll
[2014/12/15 23:17:28 | 000,032,768 | ---- | M] () -- \Program Files (x86)\DVDVideoSoft\Free YouTube Download\fr-FR\FreeYTVDownloader.resources.dll
[2014/12/15 23:17:30 | 000,032,768 | ---- | M] () -- \Program Files (x86)\DVDVideoSoft\Free YouTube Download\hu-HU\FreeYTVDownloader.resources.dll
[2014/12/15 23:17:28 | 000,032,768 | ---- | M] () -- \Program Files (x86)\DVDVideoSoft\Free YouTube Download\it-IT\FreeYTVDownloader.resources.dll
[2014/12/15 23:17:28 | 000,032,768 | ---- | M] () -- \Program Files (x86)\DVDVideoSoft\Free YouTube Download\ja-JP\FreeYTVDownloader.resources.dll
[2014/12/15 23:17:30 | 000,032,768 | ---- | M] () -- \Program Files (x86)\DVDVideoSoft\Free YouTube Download\nl-NL\FreeYTVDownloader.resources.dll
[2014/12/15 23:17:30 | 000,032,768 | ---- | M] () -- \Program Files (x86)\DVDVideoSoft\Free YouTube Download\pl-PL\FreeYTVDownloader.resources.dll
[2014/12/15 23:17:30 | 000,032,768 | ---- | M] () -- \Program Files (x86)\DVDVideoSoft\Free YouTube Download\pt-BR\FreeYTVDownloader.resources.dll
[2014/12/15 23:17:30 | 000,032,768 | ---- | M] () -- \Program Files (x86)\DVDVideoSoft\Free YouTube Download\pt-PT\FreeYTVDownloader.resources.dll
[2014/12/15 23:17:30 | 000,036,864 | ---- | M] () -- \Program Files (x86)\DVDVideoSoft\Free YouTube Download\ru-RU\FreeYTVDownloader.resources.dll
[2014/12/15 23:17:28 | 000,032,768 | ---- | M] () -- \Program Files (x86)\DVDVideoSoft\Free YouTube Download\sk-SK\FreeYTVDownloader.resources.dll
[2014/12/15 23:17:30 | 000,032,768 | ---- | M] () -- \Program Files (x86)\DVDVideoSoft\Free YouTube Download\sl-SI\FreeYTVDownloader.resources.dll
[2014/12/15 23:17:30 | 000,032,768 | ---- | M] () -- \Program Files (x86)\DVDVideoSoft\Free YouTube Download\sv-SE\FreeYTVDownloader.resources.dll
[2014/12/15 23:17:30 | 000,032,768 | ---- | M] () -- \Program Files (x86)\DVDVideoSoft\Free YouTube Download\tr-TR\FreeYTVDownloader.resources.dll
[2014/12/15 23:17:30 | 000,032,768 | ---- | M] () -- \Program Files (x86)\DVDVideoSoft\Free YouTube Download\vi-VN\FreeYTVDownloader.resources.dll
[2014/12/15 23:17:30 | 000,032,768 | ---- | M] () -- \Program Files (x86)\DVDVideoSoft\Free YouTube Download\zh-CN\FreeYTVDownloader.resources.dll
[2014/12/15 23:17:30 | 000,032,768 | ---- | M] () -- \Program Files (x86)\DVDVideoSoft\Free YouTube Download\zh-TW\FreeYTVDownloader.resources.dll
[2015/03/28 05:44:50 | 001,176,208 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\ExtensionLoader.dll
[2014/06/10 17:42:34 | 000,065,344 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXLoader.dll
[2014/06/10 17:42:34 | 000,067,904 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXLoader64.dll
[2014/06/10 17:42:30 | 000,070,464 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXUpdateLoader.dll
[2014/06/10 17:42:30 | 000,085,312 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXUpdateLoader64.dll
[2015/04/02 20:28:32 | 000,001,737 | ---- | M] () -- \Program Files (x86)\Rockstar Games\Social Club\UI\ext\scui\images\loaderSmallBlue.gif
[2014/12/10 03:28:04 | 000,001,701 | ---- | M] () -- \Program Files (x86)\Steam\friends\broadcastuploaderrornotification.res
[2014/11/11 20:48:42 | 000,007,825 | ---- | M] () -- \Program Files (x86)\Steam\remoteui\static\libs\images\ajax-loader.gif
[2015/01/15 18:59:32 | 000,002,714 | ---- | M] () -- \Program Files (x86)\Steam\steamapps\common\nmrih\sdk\sdktools\maya\icons\zoo\zooscriptloader.xpm
[2015/01/15 18:57:45 | 000,005,500 | ---- | M] () -- \Program Files (x86)\Steam\steamapps\common\nmrih\sdk\sdktools\maya\icons\zoo\zooxferanimquickloader.xpm
[2012/03/13 12:10:54 | 003,297,128 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\Photodownloader.exe
[2012/03/13 10:42:26 | 000,011,161 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\bitmaps\main_window\C_LoadError.png
[2012/03/13 10:42:28 | 000,011,161 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\combined_bitmaps\main_window\C_LoadError.png
[2012/03/13 10:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\da_dk\Photodownloader.ini
[2012/03/13 10:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\de_de\Photodownloader.ini
[2012/03/13 10:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\en_us\Photodownloader.ini
[2012/03/13 10:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\es_es\Photodownloader.ini
[2012/03/13 10:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\fi_fi\Photodownloader.ini
[2012/03/13 10:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\fr_fr\Photodownloader.ini
[2012/03/13 10:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\it_it\Photodownloader.ini
[2012/03/13 10:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\ja_jp\Photodownloader.ini
[2012/03/13 10:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\ko_kr\Photodownloader.ini
[2012/03/13 10:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\nl_nl\Photodownloader.ini
[2012/03/13 10:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\no_no\Photodownloader.ini
[2012/03/13 10:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\pt_br\Photodownloader.ini
[2012/03/13 10:42:28 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\sv_se\Photodownloader.ini
[2012/03/13 10:42:30 | 000,000,324 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\zh_cn\Photodownloader.ini
[2012/03/13 10:42:30 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\photodownloader\apd\shared_assets\locales\zh_tw\Photodownloader.ini
[2015/03/07 12:04:59 | 000,072,440 | ---- | M] () -- \Program Files\AVAST Software\Avast\aswWrcIELoader32.exe
[2015/03/07 12:04:59 | 000,085,336 | ---- | M] () -- \Program Files\AVAST Software\Avast\aswWrcIELoader64.exe
[2015/03/07 12:04:51 | 000,105,464 | ---- | M] () -- \Program Files\AVAST Software\Avast\ng\aswSfLoader.exe
[2014/12/13 02:50:40 | 000,364,184 | ---- | M] () -- \Program Files\Common Files\microsoft shared\VSTO\10.0\VSTOLoader.dll
[2014/12/13 02:50:40 | 000,019,080 | ---- | M] () -- \Program Files\Common Files\microsoft shared\VSTO\10.0\1033\VSTOLoaderUI.dll
[2014/12/29 13:28:06 | 000,000,948 | ---- | M] () -- \Program Files\Java\jdk1.7.0_71\lib\visualvm\platform\config\ModuleAutoDeps\org-openide-loaders.xml
[2014/12/29 13:28:07 | 000,000,411 | ---- | M] () -- \Program Files\Java\jdk1.7.0_71\lib\visualvm\platform\config\Modules\org-openide-loaders.xml
[2014/12/29 13:28:07 | 001,199,828 | ---- | M] () -- \Program Files\Java\jdk1.7.0_71\lib\visualvm\platform\modules\org-openide-loaders.jar
[2014/12/29 13:28:07 | 000,006,178 | ---- | M] () -- \Program Files\Java\jdk1.7.0_71\lib\visualvm\platform\modules\locale\org-openide-loaders_ja.jar
[2014/12/29 13:28:07 | 000,005,756 | ---- | M] () -- \Program Files\Java\jdk1.7.0_71\lib\visualvm\platform\modules\locale\org-openide-loaders_zh_CN.jar
[2014/12/29 13:28:07 | 000,000,457 | ---- | M] () -- \Program Files\Java\jdk1.7.0_71\lib\visualvm\platform\update_tracking\org-openide-loaders.xml
[2014/02/05 11:31:23 | 001,169,184 | R--- | M] () -- \Program Files\NVIDIA Corporation\Installer2\Display.GFExperience.{4E99CD6F-442D-4371-9BBE-4ED8413A7F79}\ExtensionLoader.dll
[2015/04/09 02:58:18 | 000,057,592 | ---- | M] () -- \Program Files\NVIDIA Corporation\Installer2\Display.PhysX.{EA5012DB-D61B-4BB5-85AA-24C8F730FEB0}\files\Common\PhysXLoader.dll
[2015/04/09 02:58:18 | 000,065,784 | ---- | M] () -- \Program Files\NVIDIA Corporation\Installer2\Display.PhysX.{EA5012DB-D61B-4BB5-85AA-24C8F730FEB0}\files\Common\PhysXLoader64.dll
[2015/04/09 02:58:18 | 000,073,976 | ---- | M] () -- \Program Files\NVIDIA Corporation\Installer2\Display.PhysX.{EA5012DB-D61B-4BB5-85AA-24C8F730FEB0}\files\Common\PhysXUpdateLoader.dll
[2015/04/09 02:58:18 | 000,090,872 | ---- | M] () -- \Program Files\NVIDIA Corporation\Installer2\Display.PhysX.{EA5012DB-D61B-4BB5-85AA-24C8F730FEB0}\files\Common\PhysXUpdateLoader64.dll
[2015/03/28 05:45:01 | 000,905,872 | ---- | M] () -- \Program Files\NVIDIA Corporation\Installer2\installer.{B88A79B5-475A-4686-B679-B4EF427C477C}\NVDownloader.dll
[2015/03/28 05:43:42 | 000,028,515 | ---- | M] () -- \Program Files\NVIDIA Corporation\Installer2\installer.{B88A79B5-475A-4686-B679-B4EF427C477C}\NVI2DownloaderExt.CFG
[2015/03/28 05:45:01 | 000,850,576 | ---- | M] () -- \Program Files\NVIDIA Corporation\Installer2\installer.{B88A79B5-475A-4686-B679-B4EF427C477C}\NVI2DownloaderExt.DLL
[2015/04/02 20:28:32 | 000,001,737 | ---- | M] () -- \Program Files\Rockstar Games\Social Club\UI\ext\scui\images\loaderSmallBlue.gif
[2014/03/18 17:17:41 | 000,000,856 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.BingTravel_3.0.4.309_x64__8wekyb3d8bbwe\js\HtmlFileLoader.js
[2014/03/18 17:14:05 | 000,001,160 | ---- | M] () -- \Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe\modernpeople\appframe\backgroundloader.js
[2014/03/18 17:14:06 | 000,004,996 | ---- | M] () -- \Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe\modernshareanything\sharedataloader.js
[2014/03/18 17:14:06 | 000,002,125 | ---- | M] () -- \Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe\modernsharetarget\sharemaildataloader.js
[2014/03/18 17:17:54 | 000,043,128 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.XboxLIVEGames_2.0.139.0_x64__8wekyb3d8bbwe\Framework\imageLoader.js
[2014/12/02 16:08:05 | 000,061,528 | ---- | M] () -- \Program Files\WinRAR\Ace32Loader.exe
[2015/03/22 18:52:23 | 018,231,660 | ---- | M] () -- \Users\Max\AppData\Local\CrashDumps\FreeYTVDownloader.exe.5420.dmp
[2015/04/13 20:29:25 | 000,001,342 | ---- | M] () -- \Users\Max\AppData\Local\Microsoft\CLR_v2.0_32\UsageLogs\FreeYTVDownloader.exe.log
[2015/04/19 10:23:49 | 000,001,980 | ---- | M] () -- \Users\Max\AppData\Local\Microsoft\Windows\INetCache\IE\L7GGBKND\AdLoader[1].htm
[2015/04/19 10:23:49 | 000,019,121 | ---- | M] () -- \Users\Max\AppData\Local\Microsoft\Windows\INetCache\IE\TQL7ZLHE\AdLoader-288a31a04e1398b1a794975bf93ce9a4.min[1].js
[2015/03/12 11:47:42 | 000,072,638 | ---- | M] () -- \Users\Max\AppData\Local\Skype\Apps\login\images\loader.gif
[2015/03/12 11:47:42 | 000,003,032 | ---- | M] () -- \Users\Max\AppData\Local\Skype\Apps\login\images\loader.png
[2015/03/12 11:47:42 | 000,006,012 | ---- | M] () -- \Users\Max\AppData\Local\Skype\Apps\login\images\normal\loader_15fps.gif
[2015/03/12 11:47:42 | 000,021,956 | ---- | M] () -- \Users\Max\AppData\Local\Skype\Apps\login\images\normal\loader_30fps.gif
[2015/03/12 11:47:42 | 000,009,772 | ---- | M] () -- \Users\Max\AppData\Local\Skype\Apps\login\images\retina\loader@2x.png
[2014/11/21 19:31:32 | 000,004,856 | ---- | M] () -- \Users\Max\AppData\Roaming\DVDVideoSoft\FreeYTVDownloader\FreeYTVDownloaderProfile.xml
[2015/04/13 20:29:26 | 001,317,270 | ---- | M] () -- \Users\Max\AppData\Roaming\DVDVideoSoft\logs\FreeYTVDownloader.log
[2015/04/13 20:09:39 | 000,000,532 | ---- | M] () -- \Users\Max\AppData\Roaming\DVDVideoSoft\logs\FreeYTVDownloader_extra_debug.log
[2015/01/06 22:43:36 | 000,243,524 | ---- | M] () -- \Users\Max\AppData\Roaming\DVDVideoSoft\logs\FreeYTVDownloader_install.txt
[2015/01/06 22:46:09 | 000,091,996 | ---- | M] () -- \Users\Max\AppData\Roaming\DVDVideoSoft\logs\FreeYTVDownloader_install_ext2.txt
[2015/01/14 15:17:32 | 000,082,784 | ---- | M] () -- \Windows\assembly\GAC\IALoader\1.7.6223.0__31bf3856ad364e35\IALoader.dll
[2015/04/13 20:00:55 | 000,220,582 | ---- | M] () -- \Windows\Prefetch\FREEYTVDOWNLOADER.EXE-60CDA799.pf
[2013/08/22 06:17:27 | 000,003,584 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/08/22 06:17:25 | 000,003,584 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-1-1.dll
[2013/08/22 06:17:24 | 000,003,584 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-2-0.dll
[2013/08/22 06:17:20 | 000,002,560 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-private-l1-1-0.dll
[2013/08/22 06:17:34 | 000,002,560 | -H-- | M] () -- \Windows\System32\api-ms-win-core-stringloader-l1-1-0.dll
[2013/08/22 06:17:33 | 000,002,560 | -H-- | M] () -- \Windows\System32\api-ms-win-core-stringloader-l1-1-1.dll
[2013/08/22 05:55:19 | 000,036,352 | ---- | M] () -- \Windows\System32\dmloader.dll
[2015/02/16 09:46:46 | 000,012,532 | ---- | M] () -- \Windows\System32\Adobe\Shockwave 12\shockwave_Projector_Loader.dcr
[2013/08/22 15:25:39 | 000,003,584 | ---- | M] () -- \Windows\System32\downlevel\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/08/22 15:25:39 | 000,003,072 | ---- | M] () -- \Windows\System32\downlevel\api-ms-win-core-libraryloader-l1-1-1.dll
[2013/08/22 15:25:38 | 000,002,560 | ---- | M] () -- \Windows\System32\downlevel\api-ms-win-core-stringloader-l1-1-1.dll
[2013/08/22 06:17:27 | 000,003,584 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/08/22 06:17:25 | 000,003,584 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-1.dll
[2013/08/22 06:17:24 | 000,003,584 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-l1-2-0.dll
[2013/08/22 06:17:20 | 000,002,560 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-private-l1-1-0.dll
[2013/08/22 06:17:34 | 000,002,560 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-stringloader-l1-1-0.dll
[2013/08/22 06:17:33 | 000,002,560 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-stringloader-l1-1-1.dll
[2013/08/22 05:55:19 | 000,036,352 | ---- | M] () -- \Windows\SysWOW64\dmloader.dll
[2015/02/16 09:46:46 | 000,012,532 | ---- | M] () -- \Windows\SysWOW64\Adobe\Shockwave 12\shockwave_Projector_Loader.dcr
[2013/08/22 15:25:39 | 000,003,584 | ---- | M] () -- \Windows\SysWOW64\downlevel\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/08/22 15:25:39 | 000,003,072 | ---- | M] () -- \Windows\SysWOW64\downlevel\api-ms-win-core-libraryloader-l1-1-1.dll
[2013/08/22 15:25:38 | 000,002,560 | ---- | M] () -- \Windows\SysWOW64\downlevel\api-ms-win-core-stringloader-l1-1-1.dll
[2014/03/18 18:19:56 | 000,592,677 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.3.9600.16384_none_210fb36c397c4e2b\hvloader.efi
[2014/03/18 18:19:55 | 000,536,051 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.3.9600.16384_none_210fb36c397c4e2b\hvloader.exe
[2014/12/31 14:31:47 | 000,598,463 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.3.9600.17031_none_2142a5b03956989d\hvloader.efi
[2014/12/31 14:31:46 | 000,542,292 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.3.9600.17031_none_2142a5b03956989d\hvloader.exe
[2014/12/31 14:31:51 | 000,598,454 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.3.9600.17039_none_214aa800394f6355\hvloader.efi
[2014/12/31 14:31:50 | 000,542,288 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.3.9600.17039_none_214aa800394f6355\hvloader.exe
[2013/08/22 13:21:30 | 000,046,592 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.3.9600.16384_none_36b27bfc6399d5ce\dmloader.dll
[2013/08/22 15:25:37 | 000,003,584 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-windows-m..namespace-downlevel_31bf3856ad364e35_6.3.9600.16384_none_b8233abb5511544f\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/08/22 15:25:37 | 000,003,072 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-windows-m..namespace-downlevel_31bf3856ad364e35_6.3.9600.16384_none_b8233abb5511544f\api-ms-win-core-libraryloader-l1-1-1.dll
[2013/08/22 15:25:36 | 000,002,560 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-windows-m..namespace-downlevel_31bf3856ad364e35_6.3.9600.16384_none_b8233abb5511544f\api-ms-win-core-stringloader-l1-1-1.dll
[2013/08/22 13:45:31 | 000,003,584 | -H-- | M] () -- \Windows\WinSxS\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.3.9600.16384_none_fb7050014fc6f9b0\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/08/22 13:45:33 | 000,003,584 | -H-- | M] () -- \Windows\WinSxS\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.3.9600.16384_none_fb7050014fc6f9b0\api-ms-win-core-libraryloader-l1-1-1.dll
[2013/08/22 13:45:35 | 000,003,584 | -H-- | M] () -- \Windows\WinSxS\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.3.9600.16384_none_fb7050014fc6f9b0\api-ms-win-core-libraryloader-l1-2-0.dll
[2013/08/22 13:45:30 | 000,002,560 | -H-- | M] () -- \Windows\WinSxS\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.3.9600.16384_none_fb7050014fc6f9b0\api-ms-win-core-libraryloader-private-l1-1-0.dll
[2013/08/22 13:45:40 | 000,002,560 | -H-- | M] () -- \Windows\WinSxS\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.3.9600.16384_none_fb7050014fc6f9b0\api-ms-win-core-stringloader-l1-1-0.dll
[2013/08/22 13:45:44 | 000,002,560 | -H-- | M] () -- \Windows\WinSxS\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.3.9600.16384_none_fb7050014fc6f9b0\api-ms-win-core-stringloader-l1-1-1.dll
[2014/03/18 17:44:52 | 000,000,465 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.3.9600.17031_cs-cz_2433c0f8d0dacafb.manifest
[2014/03/18 18:22:59 | 000,009,588 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.3.9600.17031_cs-cz_2433c0f8d0dacafb_winload.efi.mui_35ee487d
[2014/03/18 18:22:59 | 000,009,604 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.3.9600.17031_cs-cz_2433c0f8d0dacafb_winload.exe.mui_3bc5b827
[2014/03/18 18:22:59 | 000,007,885 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.3.9600.17031_cs-cz_2433c0f8d0dacafb_winresume.efi.mui_f412814e
[2014/03/18 18:22:59 | 000,007,900 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.3.9600.17031_cs-cz_2433c0f8d0dacafb_winresume.exe.mui_ff8b5358
[2014/12/27 10:03:08 | 000,000,547 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.3.9600.17238_none_4c1f12534071dcdd.manifest
[2014/12/31 15:52:38 | 000,724,249 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.3.9600.17238_none_4c1f12534071dcdd_winload.efi_75834aa0
[2014/12/31 15:52:39 | 000,660,625 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.3.9600.17238_none_4c1f12534071dcdd_winload.exe_75835076
[2014/12/31 15:52:40 | 000,646,411 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.3.9600.17238_none_4c1f12534071dcdd_winresume.efi_85cd069f
[2014/12/31 15:52:41 | 000,587,303 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.3.9600.17238_none_4c1f12534071dcdd_winresume.exe_85cd1215
[2013/08/22 17:34:52 | 000,000,596 | ---- | M] () -- \Windows\WinSxS\FileMaps\programdata_microsoft_network_downloader_7fafaef6d33e4371.cdf-ms
[2014/03/18 16:52:41 | 000,000,463 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.3.9600.16384_cs-cz_2400ceb4d1008089.manifest
[2014/03/18 17:39:48 | 000,000,465 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.3.9600.17031_cs-cz_2433c0f8d0dacafb.manifest
[2013/08/22 17:22:38 | 000,000,542 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.3.9600.16384_none_4be51a3d409de6bc.manifest
[2014/03/18 17:39:49 | 000,000,545 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.3.9600.17031_none_4c180c814078312e.manifest
[2014/12/26 13:22:37 | 000,000,547 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.3.9600.17238_none_4c1f12534071dcdd.manifest
[2013/08/22 05:55:19 | 000,036,352 | ---- | M] () -- \Windows\WinSxS\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.3.9600.16384_none_da93e078ab3c6498\dmloader.dll
[2013/08/22 15:25:39 | 000,003,584 | ---- | M] () -- \Windows\WinSxS\x86_microsoft-windows-m..namespace-downlevel_31bf3856ad364e35_6.3.9600.16384_none_5c049f379cb3e319\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/08/22 15:25:39 | 000,003,072 | ---- | M] () -- \Windows\WinSxS\x86_microsoft-windows-m..namespace-downlevel_31bf3856ad364e35_6.3.9600.16384_none_5c049f379cb3e319\api-ms-win-core-libraryloader-l1-1-1.dll
[2013/08/22 15:25:38 | 000,002,560 | ---- | M] () -- \Windows\WinSxS\x86_microsoft-windows-m..namespace-downlevel_31bf3856ad364e35_6.3.9600.16384_none_5c049f379cb3e319\api-ms-win-core-stringloader-l1-1-1.dll
[2013/08/22 06:17:27 | 000,003,584 | -H-- | M] () -- \Windows\WinSxS\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.3.9600.16384_none_9f51b47d9769887a\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/08/22 06:17:25 | 000,003,584 | -H-- | M] () -- \Windows\WinSxS\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.3.9600.16384_none_9f51b47d9769887a\api-ms-win-core-libraryloader-l1-1-1.dll
[2013/08/22 06:17:24 | 000,003,584 | -H-- | M] () -- \Windows\WinSxS\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.3.9600.16384_none_9f51b47d9769887a\api-ms-win-core-libraryloader-l1-2-0.dll
[2013/08/22 06:17:20 | 000,002,560 | -H-- | M] () -- \Windows\WinSxS\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.3.9600.16384_none_9f51b47d9769887a\api-ms-win-core-libraryloader-private-l1-1-0.dll
[2013/08/22 06:17:34 | 000,002,560 | -H-- | M] () -- \Windows\WinSxS\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.3.9600.16384_none_9f51b47d9769887a\api-ms-win-core-stringloader-l1-1-0.dll
[2013/08/22 06:17:33 | 000,002,560 | -H-- | M] () -- \Windows\WinSxS\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.3.9600.16384_none_9f51b47d9769887a\api-ms-win-core-stringloader-l1-1-1.dll
[2014/12/30 16:47:18 | 000,324,084 | ---- | M] () -- \zoek_backup\C_Users_Max_AppData_Roaming_.technic\modpacks\carovny-minecraft-magic-mc\ForgeModLoader-client-0.log
[2014/12/30 16:26:28 | 000,000,000 | ---- | M] () -- \zoek_backup\C_Users_Max_AppData_Roaming_.technic\modpacks\carovny-minecraft-magic-mc\ForgeModLoader-client-0.log.lck
[2014/12/29 14:04:15 | 000,371,597 | ---- | M] () -- \zoek_backup\C_Users_Max_AppData_Roaming_.technic\modpacks\carovny-minecraft-magic-mc\ForgeModLoader-client-1.log

< >

< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"Skype" = "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun -- [2015/03/25 16:34:48 | 031,683,168 | R--- | M] (Skype Technologies S.A.)
"DAEMON Tools Lite" = "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun -- [2014/03/04 11:19:52 | 003,696,912 | ---- | M] (Disc Soft Ltd)
"Steam" = "C:\Program Files (x86)\Steam\steam.exe" -silent -- [2015/03/24 06:22:22 | 002,888,896 | ---- | M] (Valve Corporation)

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c >
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WUAUSERV
IMAGEPATH REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k netsvcs

< End of report >

Reklama
Uživatelský avatar
MaxDel
Level 3.5
Level 3.5
Příspěvky: 662
Registrován: únor 14
Pohlaví: Muž
Stav:
Offline

Re: Velké využití disku

Příspěvekod MaxDel » 19 dub 2015 12:20

OTL Extras logfile created on: 19. 4. 2015 11:45:03 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Max\Downloads
64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17728)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d. M. yyyy

3,90 Gb Total Physical Memory | 2,07 Gb Available Physical Memory | 53,24% Memory free
7,52 Gb Paging File | 5,56 Gb Available in Paging File | 73,88% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 931,17 Gb Total Space | 492,41 Gb Free Space | 52,88% Space Free | Partition Type: NTFS

Computer Name: PC-MAX | User Name: Max | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)

[HKEY_USERS\S-1-5-21-1880163096-3265074161-3403526691-1001\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [Bridge] -- C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [Bridge] -- C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = AC 1C AE C5 46 9F CE 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = [binary data]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = Reg Error: Unknown registry data type -- File not found

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
"DoNotAllowExceptions" = 0

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{090E4B97-DC95-46B3-9AFA-DFD23234D585}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"{15DBCFA6-7D1D-40CA-A7BB-D5174308D3AD}" = lport=80 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe |
"{1700F4A4-D412-4D92-BED7-81C8C467AC87}" = rport=137 | protocol=17 | dir=out | app=system |
"{1F4542D8-D425-4C72-BDEC-B2B323688DD0}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{256D37F8-1B26-4C11-A546-6D798C5C14A9}" = lport=4000 | protocol=6 | dir=out | app=c:\program files (x86)\dll-files.com fixer\dllfixer.exe |
"{2DBACE72-7316-4FFF-AB71-AFFF4B94FBA6}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{324BC190-F2A2-4D53-BF4A-4EE2C686B72E}" = rport=445 | protocol=6 | dir=out | app=system |
"{40F227C4-2A7C-4179-8A5E-90C85C829282}" = lport=47995 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{415F35CB-BBAA-4C6B-8547-5904935CA8F7}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office 15\root\office15\outlook.exe |
"{529B7A41-71DA-49E7-80B8-3E7785290F3C}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe |
"{5A3E5B11-F875-4D04-9DC6-C2161E5C3B47}" = lport=4000 | protocol=6 | dir=out | app=c:\program files (x86)\dll-files.com fixer\dllfixer.exe |
"{74C2ECF9-85BB-4049-AB08-4D0A1EB209A5}" = lport=445 | protocol=6 | dir=in | app=system |
"{7A9190F1-9DE5-43F0-AB25-3677243CF959}" = lport=137 | protocol=17 | dir=in | app=system |
"{8BE1F084-9C3A-4096-93D0-9416D3731A46}" = lport=4000 | protocol=6 | dir=out | app=c:\program files (x86)\dll-files.com fixer\dllfixer.exe |
"{93779EA4-B1FA-48F0-8CA8-D79AFFD6CF79}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamnetworkservice.exe |
"{9C10A278-2D80-45CC-8A5C-1AED1A5F957C}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{A46AF0FC-82CF-4CF4-A9E8-E2A1CABD422C}" = lport=4000 | protocol=6 | dir=out | app=c:\program files (x86)\dll-files.com fixer\dllfixer.exe |
"{B2296EAB-39A4-4AFF-8241-45A6CA050C85}" = lport=4000 | protocol=6 | dir=out | app=c:\program files (x86)\dll-files.com fixer\dllfixer.exe |
"{B2EE5719-9C19-4AAD-B0F8-FD49E9D16A1E}" = lport=47984 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamnetworkservice.exe |
"{BCF55D8D-8EE3-4714-8F27-12C8FEAAF037}" = lport=138 | protocol=17 | dir=in | app=system |
"{C040C3EE-1DE6-4F56-ACC5-99CB08AFFF83}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{CED21348-699F-4CC7-81F8-F0AD1E4A4881}" = lport=4000 | protocol=6 | dir=out | app=c:\program files (x86)\dll-files.com fixer\dllfixer.exe |
"{D348D604-465E-494C-A3EF-732C5952194F}" = rport=139 | protocol=6 | dir=out | app=system |
"{DBBF60B5-EEE5-4973-955B-AC42D961A831}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{DC1E1948-5F7B-46F3-A9A5-0DC8E01B8167}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{E3AD724C-0A24-47AF-9BBC-404F688DB06E}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{E95C2F75-0516-42DA-9DAA-94252B24AD78}" = lport=139 | protocol=6 | dir=in | app=system |
"{EB5BA76C-0150-4A5B-84F6-04AE34CAF5E2}" = rport=138 | protocol=17 | dir=out | app=system |
"{FFFA315D-1AAF-4D1D-8155-3746FBBF44DF}" = lport=443 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe |

Uživatelský avatar
MaxDel
Level 3.5
Level 3.5
Příspěvky: 662
Registrován: únor 14
Pohlaví: Muž
Stav:
Offline

Re: Velké využití disku

Příspěvekod MaxDel » 19 dub 2015 12:21

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{01A7457C-1267-4C3F-8791-02BAD657D5A0}" = dir=out | name=@{microsoft.bingfinance_3.0.2.234_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/brandedapptitle} |
"{021FEE7F-BE3B-4B39-856D-369112B22304}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\bin\steamwebhelper.exe |
"{07F4B844-994C-40D0-982B-B9A69420FF7C}" = dir=out | name=@{microsoft.bingweather_3.0.4.298_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/brandedapptitle} |
"{0E655BF9-D8A2-47F1-8126-AA965B043918}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\teamviewer_service.exe |
"{0F73CE87-AAE7-402B-809B-F5D074E6A3AE}" = dir=out | name=@{microsoft.bingnews_3.0.2.233_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/brandedapptitle} |
"{1161C792-A026-4D4A-B43A-9B2507C37E57}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\bin\steamwebhelper.exe |
"{12A8E9AA-D45B-46BD-A6C1-DA6C617BE72C}" = dir=out | name=@{microsoft.bingfoodanddrink_3.0.2.229_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfoodanddrink/resources/apptitlewithbranding} |
"{1358E425-3714-4063-987E-75128725EFE6}" = protocol=17 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\cdas2pc\cdas2pc.exe |
"{158066AC-B04F-42DC-A3C3-8ED86DCF134E}" = dir=in | name=skype |
"{19492FF5-D1A1-4140-932E-5B54AADED487}" = protocol=17 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\ordersupplies.exe |
"{1CDC249F-1D53-46A8-83C5-189700249D3A}" = protocol=17 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\idsalert.exe |
"{1FEC91FB-4EE9-4A6F-BB64-9C89B151E113}" = dir=in | name=@{microsoft.windowsreadinglist_6.3.9654.20540_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} |
"{239BD659-2497-4A7A-9162-8A34E89C4F92}" = dir=in | name=skype |
"{27FE76BD-039C-453F-9E03-7DAFE6CF535A}" = protocol=58 | dir=in | app=system |
"{29668751-E145-465B-ACE6-50C17BF2E99A}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{2A728508-39C2-4659-B0D8-613A3D52FE0E}" = protocol=6 | dir=in | app=c:\hry\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe |
"{2EC2C19A-C94B-4217-A6A1-9A59B26913DD}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe |
"{2F9D7542-B8C7-4CE2-AEA4-11A65137D9D2}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\teamviewer.exe |
"{34738D1D-1D04-4A33-BE70-F8E248FCB486}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{38BD4BDD-3880-44FE-B7A7-5E66D52FAE04}" = dir=out | name=@{microsoft.bingsports_3.0.2.233_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/brandedapptitle} |
"{3A08C121-AA5E-4452-824A-3DC452121443}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
"{3BAFBAF7-6E84-45D3-BF66-AE159D1EB010}" = dir=out | name=@{microsoft.bingnews_3.0.4.268_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/brandedapptitle} |
"{3BB5043F-B46D-49F4-80C5-BAD2A4356278}" = dir=in | name=onenote |
"{3DF0F939-DCBE-4264-9305-043EE278EFBD}" = dir=out | name=@{microsoft.bingtravel_3.0.2.233_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/brandedapptitle} |
"{4282FE99-8560-4BC7-9576-5F3ED84E263F}" = dir=in | name=checkpoint.vpn |
"{4491DF06-E9B9-4D99-A1B0-37AAB2AF0A83}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{4CCE2DAB-52EA-45BC-98A9-DBEEE3C6F90F}" = dir=out | name=skype |
"{4E6BB23D-CCCE-420A-B387-1DAF85222996}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
"{4FBA96A7-13BE-4DD4-8031-993BC701942C}" = dir=in | name=@{microsoft.windowsreadinglist_6.3.9654.20349_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} |
"{548DCF8C-BFF2-4BA4-AA88-FBAF9AC8BCC6}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{560448D6-095C-4907-B046-AC7F710701A7}" = dir=in | name=sonicwall.mobileconnect |
"{5F4632C0-D5B1-40C3-B0D9-E3A759C81B9E}" = dir=out | name=sonicwall.mobileconnect |
"{6621B3A7-09D8-4729-BFC6-A5FB129F2F0D}" = dir=out | name=@{microsoft.bingweather_3.0.2.233_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} |
"{69AED175-FE03-45DE-AE0F-7C7EED7AF908}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{6B6D177E-1A85-454D-89D9-F41F125FE6D6}" = protocol=6 | dir=in | app=c:\windows\twain_32\samsung\scx3400\scnsearch\usdagent.exe |
"{6BDC42F0-43EE-4A65-8835-FFD0EF44ACF2}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{6EC00594-9D51-4C64-9970-0A6A2C484D7C}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{71654E2F-D3FE-4799-9FE4-32ED44EEA3CA}" = dir=out | name=@{microsoft.bingfoodanddrink_3.0.4.313_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfoodanddrink/resources/apptitlewithbranding} |
"{737C926B-C48F-432A-89AF-EEB066E89B7B}" = dir=out | name=onenote |
"{73EC8D0D-FFC9-4295-A101-3E5976DB2A80}" = protocol=17 | dir=in | app=c:\windows\system32\java.exe |
"{75808051-A52E-49C5-9F40-8378D1837488}" = dir=in | name=onenote |
"{760528C6-1D67-45D3-B802-10F9D10CB300}" = protocol=17 | dir=in | app=c:\program files\avast software\avast\ng\vbox\aswfe.exe |
"{7A83F30D-A3E0-4A5D-8D99-8C5ED04F72AC}" = protocol=17 | dir=in | app=c:\windows\twain_32\samsung\scx3400\scnsearch\usdagent.exe |
"{7AA73984-AC14-47BF-8779-A44CEDCD4804}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe |
"{7FB9E3F2-9055-4DCB-98DA-48E661381AB1}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\the sims 4\game\bin\ts4.exe |
"{83269598-D20A-41DC-A050-A412EBF80FE8}" = dir=out | name=@{microsoft.binghealthandfitness_3.0.4.309_x64__8wekyb3d8bbwe?ms-resource://microsoft.binghealthandfitness/resources/apptitle} |
"{83662EB2-B71E-4C0A-9A8C-EC8BFD3A6168}" = dir=out | name=@{microsoft.xboxlivegames_2.0.139.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} |
"{894C411A-2800-4361-9BEC-64116D34FD37}" = protocol=6 | dir=in | app=c:\program files\avast software\avast\ng\vbox\aswfe.exe |
"{8A909E0E-37D9-4FE7-B099-5FB6D6D12CEA}" = protocol=17 | dir=in | app=c:\program files\common files\common desktop agent\cdasrv.exe |
"{9641D53C-7502-4268-BD92-88824862047C}" = protocol=17 | dir=in | app=c:\hry\the sims 4\game\bin\ts4.exe |
"{97364747-0903-43D6-A194-9466109F505A}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{997E0788-CD49-4252-A8AE-02EA87A2CC05}" = dir=out | name=@{microsoft.windowsreadinglist_6.3.9654.20349_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} |
"{9A3A1B2A-0134-4402-A08A-20B8F1D01BBC}" = dir=out | name=@{microsoft.xboxlivegames_2.0.139.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} |
"{9B5C0615-7A04-41DD-BB5D-75D87E765F91}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{9D847CA6-305E-4E59-AAA4-34719DD33C1D}" = protocol=6 | dir=in | app=c:\program files (x86)\battle.net\battle.net.exe |
"{9DB5AEF8-19DE-4DB1-B6FF-2EDB86C177B7}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{9E3D57FC-7C37-4424-9352-4831E97D029D}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{9E564FDC-E9E2-41A8-B680-E3CC0860FC92}" = dir=out | name=@{microsoft.bingmaps_2.1.3230.2048_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} |
"{A1BA953E-6CCB-483D-A7B2-FA3C1B91F397}" = dir=out | name=@{microsoft.windowsreadinglist_6.3.9654.20540_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} |
"{A3CBC206-CAE9-40FC-AFF1-D8A2C06DDC24}" = dir=out | name=@{microsoft.bingfinance_3.0.4.298_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/brandedapptitle} |
"{ABEA33B9-CD5D-4EE1-847F-816429F12BB3}" = protocol=6 | dir=in | app=c:\windows\system32\java.exe |
"{AC5EA04F-D2BD-436E-8D04-C102D0B44D8F}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\the sims 4\game\bin\ts4.exe |
"{B08B18A9-D8F5-4E40-852E-E5432475A02A}" = protocol=6 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\idsalert.exe |
"{B0E6556E-BFD3-4A93-8FD0-4EDE9A78762F}" = protocol=6 | dir=in | app=c:\users\max\appdata\roaming\utorrent\utorrent.exe |
"{B52B93EB-C91A-401D-BC78-760C10CF6FF7}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\nmrih\sdk\hl2.exe |
"{B8A3AAA5-F04B-4413-9C91-22391213793B}" = dir=in | app=c:\users\administrator\appdata\local\microsoft\skydrive\skydrive.exe |
"{C2CEACB1-1544-40CB-A6BA-E458FF49679C}" = dir=out | name=@{microsoft.zunemusic_2.6.672.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} |
"{C5284E9F-3ADB-4CA7-97AD-08F4E7860C1E}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{C7B8B071-1CBD-4BD8-9664-43A570529098}" = protocol=17 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\ids.application.exe |
"{C86F5D6C-F840-4C85-AD66-D8AFE20A3142}" = dir=out | name=windows_ie_ac_001 |
"{C92F9A0D-81AE-4DD4-9515-95E1E1CFFB39}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\teamviewer.exe |
"{C9A23ED5-F2BF-4150-824F-158CA31E9AD6}" = protocol=17 | dir=in | app=c:\hry\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe |
"{C9D7EA34-1041-4E84-AECF-B5E4E7044ABB}" = dir=out | name=@{microsoft.zunevideo_2.6.439.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} |
"{D01BFC5E-A969-40B5-8E17-22A6BE59E18D}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{D1A6EFD8-D14F-49C3-8825-7B1B4A7D411B}" = protocol=6 | dir=in | app=c:\hry\the sims 4\game\bin\ts4.exe |
"{D299F7D7-C2DE-49F8-A9E6-2CE951182A7C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\nmrih\sdk\hl2.exe |
"{D5D8168C-630C-41F1-A265-D6150F24ADB5}" = dir=out | name=@{microsoft.bingsports_3.0.4.298_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/brandedapptitle} |
"{D6980480-941A-4DF6-AB81-3734ECD3D779}" = dir=out | name=junipernetworks.junospulsevpn |
"{D7D25CA3-4C2D-4635-90DA-F4A4D90D01C2}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{D9A0EF73-5E9E-452A-9842-49DD048BD195}" = dir=out | name=@{microsoft.binghealthandfitness_3.0.2.233_x64__8wekyb3d8bbwe?ms-resource://microsoft.binghealthandfitness/resources/apptitle} |
"{DA5537C4-E4C3-4FFF-A04E-8BF3D0118C43}" = protocol=6 | dir=in | app=c:\program files\common files\common desktop agent\cdasrv.exe |
"{DA6B4AB5-D980-497D-9D4A-0EEBACD84227}" = dir=out | name=@{microsoft.zunevideo_2.2.705.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} |
"{DB59588E-ED90-4C47-A7B5-7929DD0C0BD2}" = dir=out | name=checkpoint.vpn |
"{DBC2F7F4-9596-4E88-A6A9-783C31DDC6EC}" = protocol=17 | dir=in | app=c:\program files (x86)\battle.net\battle.net.exe |
"{E1B0432D-42C1-4C70-88AD-E91C8AEC691A}" = protocol=6 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\ids.application.exe |
"{E438EC56-48A9-49A0-BD60-704EF28B6DA2}" = protocol=6 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\cdas2pc\cdas2pc.exe |
"{E48FF441-0CC5-4155-BDB0-1528ADE80454}" = dir=out | name=windows_ie_ac_001 |
"{E4C08DDE-069C-438B-A7DC-937F18E1F357}" = dir=out | name=@{microsoft.bingmaps_2.0.2530.2317_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} |
"{E4E9828E-AB7B-41BE-BD36-EFCB99F2D2E6}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-503 |
"{EC799E33-72BA-42D7-9127-DEFE68F9799D}" = dir=in | name=junipernetworks.junospulsevpn |
"{ED19E828-DB62-4D05-A010-B1F2030B5867}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.5.9600.20413_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{ED61F3DC-2DC4-48FD-B884-40393BD4F402}" = dir=out | name=skype |
"{EDDC37A5-82B3-44FC-8545-15BA44D697B4}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\teamviewer_service.exe |
"{EDF86AAB-9C70-4774-99CC-233BD3B70ED1}" = dir=out | name=@{microsoft.bingtravel_3.0.4.309_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/brandedapptitle} |
"{EEC432F6-201E-4F52-9BAC-C79289ED8CF9}" = protocol=17 | dir=in | app=c:\program files (x86)\scan assistant\usdagent.exe |
"{EF7DEB28-E97F-4563-88A2-5D6BC4597EDA}" = dir=out | name=@{microsoft.zunemusic_2.2.705.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} |
"{F0863BA6-8048-4D65-B568-ED3A37176DA4}" = dir=out | name=onenote |
"{F3428A13-4E77-4629-9FA2-401A386ED077}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.5.9600.20413_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{F579740C-003C-4781-B36A-3DBFA093A3B2}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{F64300AD-D559-4000-BD45-0997BCC8E70A}" = dir=out | name=f5.vpn.client |
"{F77E5446-4378-4E99-8B7A-7061AAAEA193}" = dir=in | name=f5.vpn.client |
"{F796A79E-FEF7-4168-AFBD-D057F3F9B3C1}" = protocol=17 | dir=in | app=c:\users\max\appdata\roaming\utorrent\utorrent.exe |
"{F7EDD07A-5B30-4CBE-82DC-F0D5D24B074B}" = protocol=6 | dir=in | app=c:\program files (x86)\scan assistant\usdagent.exe |
"{FB1DE3DA-75CC-4B73-9D25-9768AE37F885}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{FC5AD14B-BEB7-4945-A1C8-EA9D7F83B6EF}" = protocol=6 | dir=in | app=c:\program files (x86)\samsung\easy printer manager\ordersupplies.exe |
"TCP Query User{52A1D500-9A27-4E34-941E-09E785B6B3C5}C:\program files (x86)\skype\phone\skype.exe" = protocol=6 | dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"TCP Query User{5ABC8E8D-605B-4C27-A66C-624F2E14F858}C:\users\max\appdata\roaming\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\users\max\appdata\roaming\utorrent\utorrent.exe |
"TCP Query User{5C737080-5A59-4DCD-AA33-4E734F9253DC}C:\windows\system32\java.exe" = protocol=6 | dir=in | app=c:\windows\system32\java.exe |
"TCP Query User{7F364D61-1FB6-4ACC-AFED-7244F70003DD}C:\hry\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe" = protocol=6 | dir=in | app=c:\hry\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe |
"TCP Query User{A749C581-59D9-4FC1-8093-43E7A754E506}C:\games\world_of_tanks\wotlauncher.exe" = protocol=6 | dir=in | app=c:\games\world_of_tanks\wotlauncher.exe |
"TCP Query User{C36767CA-EB71-4F65-8216-6A80ED694FEC}C:\program files\rockstar games\grand theft auto v\gta5.exe" = protocol=6 | dir=in | app=c:\program files\rockstar games\grand theft auto v\gta5.exe |
"TCP Query User{DD42ABCC-F8CA-4BD6-B92A-547FC2986E03}C:\program files (x86)\skype\phone\skype.exe" = protocol=6 | dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"UDP Query User{015B0558-643E-4BF3-B776-7979E02D87A6}C:\games\world_of_tanks\wotlauncher.exe" = protocol=17 | dir=in | app=c:\games\world_of_tanks\wotlauncher.exe |
"UDP Query User{0269067B-68A8-4938-8436-B93403FB098A}C:\users\max\appdata\roaming\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\users\max\appdata\roaming\utorrent\utorrent.exe |
"UDP Query User{17AD4CE2-999B-4547-9D21-ACF0ED73ECD2}C:\program files\rockstar games\grand theft auto v\gta5.exe" = protocol=17 | dir=in | app=c:\program files\rockstar games\grand theft auto v\gta5.exe |
"UDP Query User{60EE128A-62A8-41C2-8747-6D83FD90C748}C:\program files (x86)\skype\phone\skype.exe" = protocol=17 | dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"UDP Query User{80F11CC7-8144-4E63-AB89-957CE2EF0354}C:\program files (x86)\skype\phone\skype.exe" = protocol=17 | dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"UDP Query User{B5648774-94EB-4B5D-9A28-777D74FE4058}C:\windows\system32\java.exe" = protocol=17 | dir=in | app=c:\windows\system32\java.exe |
"UDP Query User{F5FA18F7-8C9A-4588-80DD-95757FA29AFC}C:\hry\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe" = protocol=17 | dir=in | app=c:\hry\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{031A0E14-0413-4C97-9772-2639B782F46F}" = Common Desktop Agent
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{1E9FC118-651D-4934-97BE-E53CAE5C7D45}" = Microsoft_VC80_MFCLOC_x86_x64
"{26A24AE4-039D-4CA4-87B4-2F06417071FF}" = Java 7 Update 71 (64-bit)
"{2EDC2FA3-1F34-34E5-9085-588C9EFD1CC6}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610
"{314DDDC0-E935-11E0-8F9F-F04DA23A5C58}" = Vegas Pro 11.0 (64-bit)
"{33C19CDE-E935-11E0-A0DA-F04DA23A5C58}" = MSVCRT Redists
"{409CB30E-E457-4008-9B1A-ED1B9EA21140}" = Intel(R) Rapid Storage Technology
"{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}" = Microsoft_VC80_CRT_x86_x64
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{64A3A4F4-B792-11D6-A78A-00B0D0170710}" = Java SE Development Kit 7 Update 71 (64-bit)
"{764384C5-BCA9-307C-9AAC-FD443662686A}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610
"{8557397C-A42D-486F-97B3-A2CBC2372593}" = Microsoft_VC90_ATL_x86_x64
"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
"{90120000-002A-0405-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Czech) 2007
"{90150000-007E-0000-1000-0000000FF1CE}" = Office 15 Click-to-Run Licensing Component
"{90150000-008C-0000-1000-0000000FF1CE}" = Office 15 Click-to-Run Extensibility Component
"{90150000-008C-0405-1000-0000000FF1CE}" = Office 15 Click-to-Run Localization Component
"{925D058B-564A-443A-B4B2-7E90C6432E55}" = Microsoft_VC80_ATL_x86_x64
"{929FBD26-9020-399B-9A7A-751D61F0B942}" = Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005
"{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}" = Microsoft_VC90_CRT_x86_x64
"{93F692D4-0C4D-4EED-9BFE-657C1D5959FE}" = Intel(R) Rapid Storage Technology
"{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}" = Microsoft_VC90_MFC_x86_x64
"{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}" = Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005
"{A7500970-FE98-11E1-B560-F04DA23A5C58}" = Vegas Pro 12.0 (64-bit)
"{AB085680-FE98-11E1-A232-F04DA23A5C58}" = MSVCRT Redists
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Ovládací panel NVIDIA 347.88
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Ovladače grafiky 347.88
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 2.4.1.21
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Ovladač řídící jednotky 3D Vision 347.09
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Systémový software PhysX 9.14.0702
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizace NVIDIA 2.4.1.21
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer" = NVIDIA LED Visualizer 1.0
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = SHIELD Streaming
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GfExperienceService" = NVIDIA GeForce Experience Service
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Ovladač HD audia 1.3.33.0
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Miracast.VirtualAudio" = NVIDIA Virtuální audio Miracast 350.12
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service" = NVIDIA Network Service
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 2.4.1.21
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController" = SHIELD Wireless Controller Driver
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core" = NVIDIA Update Core
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 1.2.27
"{B5E06417-A4AC-4225-B36E-7E34C91616E7}" = Intel® Trusted Connect Service Client
"{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}" = Microsoft_VC80_MFC_x86_x64
"CPUID HWMonitor_is1" = CPUID HWMonitor 1.27
"ProfessionalRetail - cs-cz" = Microsoft Office 2013 pro profesionály - cs-cz
"Screen+_is1" = Screen+ version Screen+ 1.2.1
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"VueScan x64" = VueScan x64
"WinRAR archiver" = WinRAR 5.20 (64-bit)

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
"{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}" = Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005
"{15FEDA5F-141C-4127-8D7E-B962D1742728}" = Adobe Photoshop CS5
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F88FC5D-4D46-448A-AF59-7061FFC6ABBF}_is1" = PC Mechanic
"{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}" = Skype™ 7.3
"{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
"{3D6AD258-61EA-35F5-812C-B7A02152996E}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610
"{4869414E-7AEA-4C8E-BE1C-8D40977FD517}" = Adobe Illustrator CS6
"{48EBEBBF-B9F8-4520-A3CF-89A730721917}" = The Sims™ 4
"{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
"{6B4ED6F7-BB88-4945-B0C6-01410E1BAC3A}" = ON_OFF Charge 2 B13.1028.1
"{6C36881B-0E51-4231-9D02-BF2149664D34}" = Google Drive
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7f51bdb9-ee21-49ee-94d6-90afc321780e}" = Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005
"{80EE9168-BB59-4F87-BF1A-57C137EAF714}" = LogMeIn Hamachi
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{90120000-0015-0405-0000-0000000FF1CE}" = Microsoft Office Access MUI (Czech) 2007
"{90120000-0016-0405-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Czech) 2007
"{90120000-0018-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Czech) 2007
"{90120000-0019-0405-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Czech) 2007
"{90120000-001A-0405-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Czech) 2007
"{90120000-001B-0405-0000-0000000FF1CE}" = Microsoft Office Word MUI (Czech) 2007
"{90120000-001F-0405-0000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2007
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-041B-0000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2007
"{90120000-002C-0405-0000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0044-0405-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Czech) 2007
"{90120000-006E-0405-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2007
"{90120000-00A1-0405-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Czech) 2007
"{90120000-00BA-0405-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Czech) 2007
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{95716cce-fc71-413f-8ad5-56c2892d4b3a}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{a1909659-0a08-4554-8af1-2175904903a1}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610
"{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AF37176A-78CA-545B-34EF-8B6A21514DD1}" = Adobe Help Manager
"{B455E95A-B804-439F-B533-336B1635AE97}" = NVIDIA PhysX
"{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}" = PDF Settings CS6
"{ce085a78-074e-4823-8dc1-8a721b94b76d}" = Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{DE3A9DC5-9A5D-6485-9662-347162C7E4CA}" = Adobe Media Player
"{E01FA564-2094-4833-8F2F-1FFEC6AFCC46}" = Grand Theft Auto V
"{E0229316-E73B-484B-B9E0-45098AB38D8C}}_is1" = MSI Gaming APP
"{E7D4E834-93EB-351F-B8FB-82CDAE623003}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}" = Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005
"{FE23D063-934D-4829-A0D8-00634CE79B4A}" = Adobe AIR
"Adobe AIR" = Adobe AIR
"Adobe Shockwave Player" = Adobe Shockwave Player 12.1
"Any Video Converter_is1" = Any Video Converter 5.7.7
"Audacity_is1" = Audacity 2.0.5
"Avast" = Avast Free Antivirus
"Battle.net" = Battle.net
"COD - Advanced Warfare_is1" = COD - Advanced Warfare
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"CrystalDiskInfo_is1" = CrystalDiskInfo 6.3.1
"DAEMON Tools Lite" = DAEMON Tools Lite
"ENTERPRISE" = Microsoft Office Enterprise 2007
"Far Cry 4_is1" = Far Cry 4
"Fraps" = Fraps (remove only)
"Free YouTube Download_is1" = Free YouTube Download version 3.2.51.1215
"Google Chrome" = Google Chrome
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Help Manager
"InstallShield_{6B4ED6F7-BB88-4945-B0C6-01410E1BAC3A}" = ON_OFF Charge 2 B13.1028.1
"LogMeIn Hamachi" = LogMeIn Hamachi
"Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware verze 2.1.4.1018
"MoodEditor" = Pamela RME 2.0
"Open Broadcaster Software" = Open Broadcaster Software
"Origin" = Origin
"Rockstar Games Social Club" = Rockstar Games Social Club
"Samsung Easy Printer Manager" = Samsung Easy Printer Manager
"Samsung Printer Live Update" = Samsung Printer Live Update
"Samsung Scan Assistant" = Samsung Scan Assistant
"Samsung SCX-3400 Series" = Samsung SCX-3400 Series
"Steam" = Steam
"Steam App 224260" = No More Room in Hell
"TeamViewer" = TeamViewer 10
"The Sims 4 Deluxe Edition_is1" = The Sims 4 Deluxe Edition version 1.0.732.20 Update 5

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-1880163096-3265074161-3403526691-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1EAC1D02-C6AC-4FA6-9A44-96258C37C812EU}_is1" = World of Tanks
"UnityWebPlayer" = Unity Web Player

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 16. 4. 2015 6:08:48 | Computer Name = PC-Max | Source = NvStreamSvc | ID = 133073
Description =

Error - 16. 4. 2015 6:41:09 | Computer Name = PC-Max | Source = NvStreamSvc | ID = 133073
Description =

Error - 16. 4. 2015 7:13:24 | Computer Name = PC-Max | Source = NvStreamSvc | ID = 133073
Description =

Error - 16. 4. 2015 7:47:30 | Computer Name = PC-Max | Source = NvStreamSvc | ID = 133073
Description =

Error - 17. 4. 2015 7:31:04 | Computer Name = PC-Max | Source = NvStreamSvc | ID = 133073
Description =

Error - 17. 4. 2015 9:27:58 | Computer Name = PC-Max | Source = NvStreamSvc | ID = 133073
Description =

Error - 17. 4. 2015 13:56:03 | Computer Name = PC-Max | Source = Application Hang | ID = 1002
Description = Program GTA5.exe verze 1.0.331.1 přestal spolupracovat se systémem
Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto
problému, vyhledejte historii problému v ovládacím panelu Centrum akcí. ID procesu:
f10 Čas spuštění: 01d0792fb18bc0f4 Čas ukončení: 4294967295 Cesta k aplikaci: C:\Program
Files\Rockstar Games\Grand Theft Auto V\GTA5.exe ID hlášení: f6c1bcd2-e52a-11e4-8272-74d435974be7

Úplný
název chybujícího balíčku: ID aplikace související s chybujícím balíčkem:

Error - 17. 4. 2015 13:57:04 | Computer Name = PC-Max | Source = Application Hang | ID = 1002
Description = Program Skype.exe verze 7.3.59.101 přestal spolupracovat se systémem
Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto
problému, vyhledejte historii problému v ovládacím panelu Centrum akcí. ID procesu:
13c8 Čas spuštění: 01d079125cb20261 Čas ukončení: 4294967295 Cesta k aplikaci: C:\Program
Files (x86)\Skype\Phone\Skype.exe ID hlášení: 243426c9-e52b-11e4-8272-74d435974be7

Úplný
název chybujícího balíčku: ID aplikace související s chybujícím balíčkem:

Error - 18. 4. 2015 3:10:16 | Computer Name = PC-Max | Source = NvStreamSvc | ID = 133073
Description =

Error - 18. 4. 2015 5:59:25 | Computer Name = PC-Max | Source = NvStreamSvc | ID = 133073
Description =

[ System Events ]
Error - 14. 4. 2015 8:47:35 | Computer Name = PC-Max | Source = DCOM | ID = 10010
Description =

Error - 14. 4. 2015 8:48:05 | Computer Name = PC-Max | Source = DCOM | ID = 10010
Description =

Error - 14. 4. 2015 9:05:55 | Computer Name = PC-Max | Source = BROWSER | ID = 8009
Description =

Error - 14. 4. 2015 9:19:08 | Computer Name = PC-Max | Source = DCOM | ID = 10010
Description =

Error - 14. 4. 2015 9:19:38 | Computer Name = PC-Max | Source = DCOM | ID = 10010
Description =

Error - 14. 4. 2015 9:54:48 | Computer Name = PC-Max | Source = BROWSER | ID = 8020
Description =

Error - 14. 4. 2015 11:04:22 | Computer Name = PC-Max | Source = BROWSER | ID = 8019
Description =

Error - 14. 4. 2015 12:07:45 | Computer Name = PC-Max | Source = DCOM | ID = 10010
Description =

Error - 14. 4. 2015 12:08:15 | Computer Name = PC-Max | Source = DCOM | ID = 10010
Description =

Error - 15. 4. 2015 13:14:19 | Computer Name = PC-Max | Source = DCOM | ID = 10010
Description =


< End of report >

mople71
Level 3.5
Level 3.5
Příspěvky: 662
Registrován: listopad 14
Pohlaví: Muž
Stav:
Offline

Re: Velké využití disku

Příspěvekod mople71 » 19 dub 2015 20:14

Hm, tak si říkám, jestli to má cenu čistit, když tam je tolik nelegálního SW...

Doporučím se propříště pirátskému SW vyvarovat, přináší s sebou dárečky v podobě malware. ;)

Mezitím než projdu celý tvůj log:


Zmáčkni Windows + X a otevři Příkazovou řádku s právy administrátora. Do ní zadej:

Kód: Vybrat vše

dism /online /Cleanup-Image /StartComponentCleanup /ResetBase

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43064
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Velké využití disku

Příspěvekod jaro3 » 21 dub 2015 10:24

Odinstaluj cracklé programy:
[2015/01/01 18:41:45 | 000,315,178 | ---- | M] () -- \Adobe Photoshop\Adobe Photoshop CS5 CZ\Crack\ADBE_CRACK - 32bit.rar
[2015/01/01 18:41:45 | 000,377,747 | ---- | M] () -- \Adobe Photoshop\Adobe Photoshop CS5 CZ\Crack\ADBE_CRACK - 64bit.rar
[2014/12/17 23:37:39 | 000,213,184 | ---- | M] () -- \Games\World_of_Tanks\res\audio\objects_ice_crack.fsb
[2015/01/27 01:02:59 | 001,815,084 | ---- | M] () -- \Hry\Dying Light\Dying Light\DW\Data\Menu\Movies\Skills\BlueprintsFirecrackers.bik
[2015/04/09 18:32:49 | 000,092,595 | ---- | M] () -- \Users\Max\AppData\Roaming\uTorrent\Adobe Illustrator CS6 + Crack.torrent
[2015/03/01 11:00:38 | 000,017,896 | ---- | M] () -- \Users\Max\AppData\Roaming\uTorrent\Sims 4 Crack Reloaded.1.torrent
[2015/03/01 11:07:32 | 000,017,896 | ---- | M] () -- \Users\Max\AppData\Roaming\uTorrent\Sims 4 Crack Reloaded.2.torrent
[2015/03/01 11:00:38 | 000,017,896 | ---- | M] () -- \Users\Max\AppData\Roaming\uTorrent\Sims 4 Crack Reloaded.torrent
[2015/01/16 23:34:47 | 000,001,702 | ---- | M] () -- \Users\Max\AppData\Roaming\uTorrent\Vegas Pro 12 Crack v2.exe.torrent
[2014/09/01 14:57:56 | 000,000,469 | ---- | M] () -- \Users\Max\Desktop\DeeFalls Texture Pack\assets\minecraft\textures\blocks\stonebrick_cracked.png
[2015/01/01 18:41:45 | 000,003,121 | ---- | M] () -- \Adobe Photoshop\Adobe Photoshop CS5 CZ\Crack\KeyGen-Readme.txt

Poklepej na ikonu OTL na ploše.Ujisti se , že máš všechny ostatní aplikace a prohlížeče zavřeny.
Pod Vlastní skenování/opravy do okénka vlož následující text, zobrazený zeleně:

Kód: Vybrat vše

:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
SRV - [2015/02/18 19:11:32 | 000,315,488 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\S-1-5-21-1880163096-3265074161-3403526691-1001\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-1880163096-3265074161-3403526691-1001\..\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66}: "URL" = http://www.google.com/search?q={searchTerms}
IE - HKU\S-1-5-21-1880163096-3265074161-3403526691-1001\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02
CHR - plugin: Error reading preferences file
CHR - Extension: No name found = C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\
CHR - Extension: No name found = C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_1\
CHR - Extension: No name found = C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_1\
CHR - Extension: No name found = C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_1\
CHR - Extension: No name found = C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.30_1\
CHR - Extension: No name found = C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\
CHR - Extension: No name found = C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\10.2.0.190_1\
CHR - Extension: No name found = C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_1\
CHR - Extension: No name found = C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_1\
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
[2015/04/07 21:58:57 | 000,739,720 | ---- | M] () -- C:\Windows\SysNative\perfh005.dat
[2015/04/07 21:58:57 | 000,723,316 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2015/04/07 21:58:57 | 000,151,940 | ---- | M] () -- C:\Windows\SysNative\perfc005.dat
[2015/04/07 21:58:57 | 000,135,930 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2015/04/19 10:42:16 | 000,198,640 | ---- | M] (OpenCandy) -- C:\Users\Max\AppData\Roaming\OpenCandy\6BFE1DE994674456B73E86FD84F4FF7A\dh.exe
[2015/04/19 10:42:18 | 001,044,112 | ---- | M] (Uniblue Systems Limited ) -- C:\Users\Max\AppData\Roaming\OpenCandy\6BFE1DE994674456B73E86FD84F4FF7A\pcmechanicpmROW_p1v2.exe

:Files
C:\WINDOWS\System32\*.tmp
C:\WINDOWS\*.tmp
C:\WINDOWS\system32\*.tmp.dll
C:\WINDOWS\System32\dllcache\*.tmp
C:\WINDOWS\system32\SET*.tmp
C:\WINDOWS\system32\DUMP*.tmp
c:\windows\Tasks\*.job /s
C:\*.tmp
C:\WINDOWS\System32\drivers\*.tmp
C:\Program Files\*.tmp
C:\Documents and Settings\All Users\Data aplikací\*.tmp
C:\Windows\SysNative\drivers\*.tmp
C:\Windows\SysWow64\drivers\*.tmp
C:\Program Files (x86)\*.tmp
C:\Windows\SysWow64\*.tmp
C:\Windows\SysNative\*.tmp
C:\Program Files (x86)\*.tmp
C:\Users\Max\Desktop\ComboFix.exe
C:\Users\Max\AppData\Roaming\OpenCandy

:Reg
:Commands
[purity]
[emptytemp]
[start explorer]
[Reboot]


Poté klikni nahoře na Opravit. Nech program nerušeně běžet, na konci se provede restart PC.
Po restartu se objeví log , prosím zkopíruj sem celý jeho obsah.

V možnostech složky si povol zobrazování skrytých souborů a složek+ odškrtni zatržítko skrýt chráněné soubory operačního systému

Toto otestuj na Virustotal
C:\Windows\SysNative\drivers\tcpip.sys

Klikni vpravo od okénka na Vybrat a v Exploreru najdi požadovaný soubor v Tvém PC. Označ ho myší a klikni na Otevřít , poté klikni na Send File. Pokud už byl soubor testován , objeví se okno ve kterém klikni na Reanalyze. Soubor se začne postupně testovat více antivirovými programy. Až skončí test posledního antiviru , objeví se nahoře result a červeně počet nákaz , např. 0/43 , nebo 1/43. Pak zkopíruj myší odkaz na tuto stránku a vlož ji do svého příspěvku.

Nebo na:
http://www.virscan.org/
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 1 host