Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

mozila a vyskakujuce reklamy

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
esperian26
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 26 úno 2010 16:26

mozila a vyskakujuce reklamy

#1 Příspěvek od esperian26 »

ahojte moj problem spociva v tom ze mi vyskakuju reklamy ,ale nie v novom okne ale v aktulnom ktore používam , je jedno na akej stranke som (v nastaveniach ich mam vypnute)

Logfile of random's system information tool 1.06 (written by random/random)
Run by Esperian at 2010-02-26 16:22:59
Microsoft® Windows Vista™ Home Basic Service Pack 2
System drive C: has 60 GB (57%) free of 105 GB
Total RAM: 1790 MB (42% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:23:29, on 26. 2. 2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v7.00 (7.00.6002.18005)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Microsoft Security Essentials\msseces.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.Exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\Ares\Ares.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\PROGRA~1\Crawler\CToolbar.exe
C:\Users\Esperian\Downloads\RSIT.exe
C:\Program Files\trend micro\Esperian.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE= ... io&pf=cnnb
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.crawler.com/search/dispatche ... tbid=60347
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dymasearch.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE= ... io&pf=cnnb
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE= ... io&pf=cnnb
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O1 - Hosts: ::1 localhost
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: dymanet - {0ac89f42-45b9-ab77-69e4-ce07c5a93ec7} - C:\Windows\system32\9bde048a-7ed2-a7ef-69ec-5aec1d017869.dll
O2 - BHO: (no name) - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - C:\PROGRA~1\Crawler\ctbr.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: &Crawler Toolbar - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - C:\PROGRA~1\Crawler\ctbr.dll
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [MSSE] "c:\Program Files\Microsoft Security Essentials\msseces.exe" -hide
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKLM\..\Run: [B2C_AGENT] C:\ProgramData\LGMOBILEAX\B2C_Client\B2CNotiAgent.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [ares] "C:\Program Files\Ares\Ares.exe" -h
O4 - HKCU\..\Run: [SpywareTerminatorUpdate] "C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O8 - Extra context menu item: Crawler Search - tbr:iemenu
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - C:\PROGRA~1\Crawler\ctbr.dll
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: Služba Google Update (gupdate1caa5b117bd44c5) (gupdate1caa5b117bd44c5) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Recovery Service for Windows - Unknown owner - C:\Windows\SMINST\BLService.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 7911 bytes

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\HPCeeScheduleForEsperian.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-23 62080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0ac89f42-45b9-ab77-69e4-ce07c5a93ec7}]
dymanet - C:\Windows\system32\9bde048a-7ed2-a7ef-69ec-5aec1d017869.dll [2010-01-30 1935360]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}]
C:\PROGRA~1\Crawler\ctbr.dll [2010-01-29 1230184]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll [2008-02-22 509328]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{855F3B16-6D32-4FE6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2010-01-03 1019128]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
{4B3803EA-5230-4DC3-A7FC-33638F3D3542} - &Crawler Toolbar - C:\PROGRA~1\Crawler\ctbr.dll [2010-01-29 1230184]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2008-04-17 1049896]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
"MSSE"=c:\Program Files\Microsoft Security Essentials\msseces.exe [2009-09-13 1048392]
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2007-03-01 153136]
"SpywareTerminator"=C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe [2010-01-26 2166784]
"B2C_AGENT"=C:\ProgramData\LGMOBILEAX\B2C_Client\B2CNotiAgent.exe [2009-06-15 182208]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-11-10 417792]
"NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2009-07-23 13797920]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [2007-06-27 152872]
"ares"=C:\Program Files\Ares\Ares.exe [2010-01-22 1011712]
"SpywareTerminatorUpdate"=C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe [2010-01-26 3037696]
"msnmsgr"=C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2009-07-26 3883840]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2007-05-11 40048]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ares]
C:\Program Files\Ares\Ares.exe [2010-01-22 1011712]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Health Check Scheduler]
c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe [2008-04-15 70912]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2006-12-10 49152]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hpWirelessAssistant]
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2008-04-15 488752]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ICQ]
C:\Program Files\ICQ7.0\ICQ.exe [2010-01-12 133368]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2008-02-26 2289664]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsnMsgr]
C:\Program Files\MSN Messenger\MsnMsgr.Exe /background []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QlbCtrl.exe]
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2008-03-14 202032]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QPService]
C:\Program Files\HP\QuickPlay\QPService.exe [2008-04-01 468264]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files\Skype\Phone\Skype.exe [2009-10-09 25623336]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpywareTerminatorUpdate]
C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe [2010-01-26 3037696]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe [2008-02-22 144784]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UCam_Menu]
C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [2007-12-24 222504]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
C:\PROGRA~1\HP\DIGITA~1\bin\hpqtra08.exe [2007-01-02 210520]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Esperian^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Stardock ObjectDock.lnk]
C:\PROGRA~1\Stardock\OBJECT~1\OBJECT~1.EXE [2007-04-30 3450608]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======List of files/folders created in the last 1 months======

2010-02-26 16:22:59 ----D---- C:\rsit
2010-02-26 16:22:59 ----D---- C:\Program Files\trend micro
2010-02-26 14:31:48 ----D---- C:\Program Files\Crawler
2010-02-24 11:36:48 ----A---- C:\Windows\system32\tzres.dll
2010-02-24 11:36:17 ----A---- C:\Windows\system32\secproc_isv.dll
2010-02-24 11:36:16 ----A---- C:\Windows\system32\secproc.dll
2010-02-24 11:36:14 ----A---- C:\Windows\system32\RMActivate_isv.exe
2010-02-24 11:36:13 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2010-02-24 11:36:13 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2010-02-24 11:36:13 ----A---- C:\Windows\system32\RMActivate.exe
2010-02-24 11:36:12 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2010-02-24 11:36:12 ----A---- C:\Windows\system32\secproc_ssp.dll
2010-02-24 11:36:12 ----A---- C:\Windows\system32\msdrm.dll
2010-02-24 11:36:10 ----A---- C:\Windows\system32\gameux.dll
2010-02-24 11:36:08 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2010-02-24 11:36:08 ----A---- C:\Windows\system32\Apphlpdm.dll
2010-02-21 02:27:24 ----D---- C:\Program Files\SopCast
2010-02-18 19:00:33 ----D---- C:\72c92e84267b60dea49239
2010-02-16 20:38:44 ----A---- C:\Windows\CmdPrint.INI
2010-02-16 18:48:47 ----A---- C:\Windows\NeroDigital.ini
2010-02-16 18:34:58 ----D---- C:\ProgramData\InstallShield
2010-02-16 18:34:46 ----D---- C:\Users\Esperian\AppData\Roaming\Corel
2010-02-16 18:33:20 ----D---- C:\Program Files\Common Files\Corel
2010-02-16 18:29:23 ----D---- C:\Program Files\Corel
2010-02-14 18:31:28 ----A---- C:\Windows\system32\NCTImageFile.dll
2010-02-14 18:31:22 ----A---- C:\Windows\system32\NCTVideoView.dll
2010-02-14 18:31:19 ----A---- C:\Windows\system32\NCTVideoFile.dll
2010-02-14 18:31:15 ----A---- C:\Windows\system32\NCTQuickTimeFile.dll
2010-02-14 18:31:14 ----A---- C:\Windows\system32\NCTRMFile.dll
2010-02-14 18:31:11 ----A---- C:\Windows\system32\NCTWMVFile.dll
2010-02-14 18:31:03 ----A---- C:\Windows\system32\NCTVideoCoreM.dll
2010-02-14 18:30:56 ----A---- C:\Windows\system32\NCTAVIFile.dll
2010-02-14 18:30:55 ----A---- C:\Windows\system32\NCTVideoCompress.dll
2010-02-14 18:30:55 ----A---- C:\Windows\system32\NCTAudioFormatSettings3.dll
2010-02-14 18:30:54 ----A---- C:\Windows\system32\NCTAudioCompress3.dll
2010-02-14 18:30:53 ----A---- C:\Windows\system32\NCTAudioCompress2.dll
2010-02-14 18:30:53 ----A---- C:\Windows\system32\msvcr70.dll
2010-02-14 18:30:53 ----A---- C:\Windows\system32\msvcp70.dll
2010-02-14 18:30:52 ----A---- C:\Windows\system32\lame_enc.dll
2010-02-14 18:30:45 ----D---- C:\Windows\system32\RMBin
2010-02-14 18:30:45 ----A---- C:\Windows\system32\viscomwave.dll
2010-02-14 18:30:45 ----A---- C:\Windows\system32\viscomqtenc.dll
2010-02-14 18:30:45 ----A---- C:\Windows\system32\SkinCrafter.dll
2010-02-14 18:30:44 ----A---- C:\Windows\system32\viscomqtde.dll
2010-02-14 18:30:37 ----D---- C:\Program Files\A-one Video Convertor
2010-02-14 17:45:05 ----A---- C:\Windows\system32\0dbfcd86-827d-ea0f-cfa6-5a8c9fbfbfa2.exe
2010-02-12 18:20:20 ----D---- C:\Users\Esperian\AppData\Roaming\ABBYY
2010-02-12 18:16:50 ----D---- C:\Program Files\ABBYY FineReader 8.0 Professional Edition
2010-02-12 18:06:07 ----D---- C:\temp
2010-02-12 17:08:31 ----D---- C:\Program Files\Microsoft Silverlight
2010-02-12 17:07:56 ----DC---- C:\Windows\system32\DRVSTORE
2010-02-12 17:06:30 ----D---- C:\Program Files\Microsoft Sync Framework
2010-02-12 17:04:29 ----A---- C:\Windows\system32\d3dx9_32.dll
2010-02-12 17:04:12 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2010-02-12 17:02:08 ----D---- C:\Program Files\Microsoft
2010-02-12 17:01:37 ----D---- C:\Program Files\Windows Live SkyDrive
2010-02-12 17:01:23 ----D---- C:\Program Files\Windows Live
2010-02-12 16:51:10 ----D---- C:\Program Files\Common Files\Windows Live
2010-02-10 19:59:36 ----D---- C:\Users\Esperian\AppData\Roaming\foobar2000
2010-02-10 19:58:59 ----D---- C:\Program Files\foobar2000
2010-02-10 07:36:31 ----A---- C:\Windows\system32\ntoskrnl.exe
2010-02-10 07:36:31 ----A---- C:\Windows\system32\ntkrnlpa.exe
2010-02-10 07:36:15 ----A---- C:\Windows\system32\quartz.dll
2010-02-10 07:36:13 ----A---- C:\Windows\system32\tsbyuv.dll
2010-02-10 07:36:13 ----A---- C:\Windows\system32\msyuv.dll
2010-02-10 07:36:13 ----A---- C:\Windows\system32\msvidc32.dll
2010-02-10 07:36:13 ----A---- C:\Windows\system32\msrle32.dll
2010-02-10 07:36:12 ----A---- C:\Windows\system32\iyuv_32.dll
2010-02-10 07:36:11 ----A---- C:\Windows\system32\mciavi32.dll
2010-02-10 07:36:10 ----A---- C:\Windows\system32\msvfw32.dll
2010-02-10 07:36:10 ----A---- C:\Windows\system32\avifil32.dll
2010-02-08 21:07:24 ----D---- C:\Users\Esperian\AppData\Roaming\Opera
2010-02-08 21:04:00 ----D---- C:\Program Files\Opera
2010-02-07 20:32:06 ----D---- C:\Users\Esperian\AppData\Roaming\CyberLink
2010-02-07 15:54:16 ----D---- C:\ProgramData\Apple Computer
2010-02-07 15:54:16 ----D---- C:\Program Files\QuickTime
2010-02-07 15:53:08 ----D---- C:\Program Files\Common Files\Apple
2010-02-07 15:52:48 ----D---- C:\Program Files\Apple Software Update
2010-02-07 15:52:47 ----D---- C:\ProgramData\Apple
2010-02-05 19:05:42 ----D---- C:\Program Files\DIFX
2010-02-05 19:05:19 ----D---- C:\Program Files\infineon
2010-02-05 19:03:59 ----D---- C:\Program Files\LG Electronics
2010-02-05 19:02:08 ----D---- C:\KP500
2010-02-05 19:01:05 ----A---- C:\Windows\system32\lgAxconfig.ini
2010-02-05 19:01:05 ----A---- C:\Windows\system32\CommonDL.dll
2010-02-05 19:00:50 ----D---- C:\ProgramData\LGMOBILEAX
2010-02-04 20:53:32 ----D---- C:\Users\Esperian\AppData\Roaming\DivX
2010-02-04 16:46:21 ----D---- C:\Program Files\Common Files\PX Storage Engine
2010-02-04 16:45:10 ----D---- C:\Program Files\Google
2010-02-04 16:45:10 ----D---- C:\Program Files\Common Files\DivX Shared
2010-02-04 16:45:09 ----D---- C:\Program Files\DivX
2010-01-31 21:20:21 ----D---- C:\Program Files\Paint.NET
2010-01-30 11:55:32 ----A---- C:\Windows\system32\9bde048a-7ed2-a7ef-69ec-5aec1d017869.dll
2010-01-29 16:56:45 ----D---- C:\Program Files\Windows Portable Devices
2010-01-29 16:52:15 ----A---- C:\Windows\system32\UIAnimation.dll
2010-01-29 16:52:13 ----A---- C:\Windows\system32\UIRibbonRes.dll
2010-01-29 16:52:12 ----A---- C:\Windows\system32\UIRibbon.dll
2010-01-29 16:51:33 ----A---- C:\Windows\system32\WMPhoto.dll
2010-01-29 16:51:30 ----A---- C:\Windows\system32\cdd.dll
2010-01-29 16:51:28 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2010-01-29 16:51:28 ----A---- C:\Windows\system32\d3d10warp.dll
2010-01-29 16:51:27 ----A---- C:\Windows\system32\XpsRasterService.dll
2010-01-29 16:51:27 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2010-01-29 16:51:27 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2010-01-29 16:51:27 ----A---- C:\Windows\system32\WindowsCodecs.dll
2010-01-29 16:51:27 ----A---- C:\Windows\system32\dxdiagn.dll
2010-01-29 16:51:27 ----A---- C:\Windows\system32\d2d1.dll
2010-01-29 16:51:26 ----A---- C:\Windows\system32\xpsservices.dll
2010-01-29 16:51:26 ----A---- C:\Windows\system32\XpsPrint.dll
2010-01-29 16:51:26 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2010-01-29 16:51:26 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2010-01-29 16:51:26 ----A---- C:\Windows\system32\OpcServices.dll
2010-01-29 16:51:26 ----A---- C:\Windows\system32\dxdiag.exe
2010-01-29 16:51:25 ----A---- C:\Windows\system32\FntCache.dll
2010-01-29 16:51:25 ----A---- C:\Windows\system32\dxgi.dll
2010-01-29 16:51:25 ----A---- C:\Windows\system32\DWrite.dll
2010-01-29 16:51:25 ----A---- C:\Windows\system32\d3d11.dll
2010-01-29 16:51:25 ----A---- C:\Windows\system32\d3d10level9.dll
2010-01-29 16:51:25 ----A---- C:\Windows\system32\d3d10core.dll
2010-01-29 16:51:25 ----A---- C:\Windows\system32\d3d10_1core.dll
2010-01-29 16:51:25 ----A---- C:\Windows\system32\d3d10_1.dll
2010-01-29 16:51:25 ----A---- C:\Windows\system32\d3d10.dll
2010-01-29 16:50:46 ----A---- C:\Windows\system32\WPDShextAutoplay.exe
2010-01-29 16:50:46 ----A---- C:\Windows\system32\BthMtpContextHandler.dll
2010-01-29 16:50:45 ----A---- C:\Windows\system32\wpdbusenum.dll
2010-01-29 16:50:40 ----A---- C:\Windows\system32\PortableDeviceConnectApi.dll
2010-01-29 16:50:34 ----A---- C:\Windows\system32\wpdshext.dll
2010-01-29 16:50:34 ----A---- C:\Windows\system32\wpd_ci.dll
2010-01-29 16:50:33 ----A---- C:\Windows\system32\WPDSp.dll
2010-01-29 16:50:33 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2010-01-29 16:50:33 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll
2010-01-29 16:50:33 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2010-01-29 16:50:33 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2010-01-29 16:50:33 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2010-01-29 16:49:31 ----A---- C:\Windows\system32\oleaccrc.dll
2010-01-29 16:49:30 ----A---- C:\Windows\system32\UIAutomationCore.dll
2010-01-29 16:49:30 ----A---- C:\Windows\system32\oleacc.dll
2010-01-29 13:05:16 ----D---- C:\Users\Esperian\AppData\Roaming\Media Player Classic
2010-01-28 18:59:48 ----D---- C:\Windows\system32\vi-VN
2010-01-28 18:59:48 ----D---- C:\Windows\system32\eu-ES
2010-01-28 18:59:48 ----D---- C:\Windows\system32\ca-ES
2010-01-28 18:33:39 ----D---- C:\Windows\system32\SPReview
2010-01-28 18:16:37 ----A---- C:\Windows\system32\scavenge.dll
2010-01-28 18:16:07 ----A---- C:\Windows\system32\compcln.exe
2010-01-28 18:05:04 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2010-01-28 18:05:04 ----A---- C:\Windows\system32\SearchIndexer.exe
2010-01-28 18:05:04 ----A---- C:\Windows\system32\SearchFilterHost.exe
2010-01-28 18:05:03 ----A---- C:\Windows\system32\sdohlp.dll
2010-01-28 18:05:03 ----A---- C:\Windows\system32\sdclt.exe
2010-01-28 18:05:03 ----A---- C:\Windows\system32\rtffilt.dll
2010-01-28 18:05:03 ----A---- C:\Windows\system32\rsaenh.dll
2010-01-28 18:05:02 ----A---- C:\Windows\system32\samlib.dll
2010-01-28 18:05:02 ----A---- C:\Windows\system32\rtutils.dll
2010-01-28 18:05:02 ----A---- C:\Windows\system32\riched20.dll
2010-01-28 18:05:01 ----A---- C:\Windows\system32\scrrun.dll
2010-01-28 18:05:01 ----A---- C:\Windows\system32\rpchttp.dll
2010-01-28 18:05:01 ----A---- C:\Windows\system32\rpcss.dll
2010-01-28 18:05:00 ----A---- C:\Windows\system32\SCardSvr.dll
2010-01-28 18:05:00 ----A---- C:\Windows\system32\scansetting.dll
2010-01-28 18:05:00 ----A---- C:\Windows\system32\samsrv.dll
2010-01-28 18:04:57 ----A---- C:\Windows\system32\schedsvc.dll
2010-01-28 18:04:57 ----A---- C:\Windows\system32\scrobj.dll
2010-01-28 18:04:57 ----A---- C:\Windows\system32\scksp.dll
2010-01-28 18:04:57 ----A---- C:\Windows\system32\scesrv.dll
2010-01-28 18:04:57 ----A---- C:\Windows\system32\scecli.dll
2010-01-28 18:04:55 ----A---- C:\Windows\system32\perfdisk.dll
2010-01-28 18:04:55 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2010-01-28 18:04:55 ----A---- C:\Windows\system32\pdh.dll
2010-01-28 18:04:55 ----A---- C:\Windows\system32\pcaui.dll
2010-01-28 18:04:55 ----A---- C:\Windows\system32\p2psvc.dll
2010-01-28 18:04:55 ----A---- C:\Windows\system32\P2PGraph.dll
2010-01-28 18:04:54 ----A---- C:\Windows\system32\powercpl.dll
2010-01-28 18:04:54 ----A---- C:\Windows\system32\PNPXAssoc.dll
2010-01-28 18:04:54 ----A---- C:\Windows\system32\PnPutil.exe
2010-01-28 18:04:54 ----A---- C:\Windows\system32\PnPUnattend.exe
2010-01-28 18:04:54 ----A---- C:\Windows\system32\pnpui.dll
2010-01-28 18:04:54 ----A---- C:\Windows\system32\pnpsetup.dll
2010-01-28 18:04:54 ----A---- C:\Windows\system32\pnidui.dll
2010-01-28 18:04:53 ----A---- C:\Windows\system32\pidgenx.dll
2010-01-28 18:04:53 ----A---- C:\Windows\system32\photowiz.dll
2010-01-28 18:04:52 ----A---- C:\Windows\system32\PkgMgr.exe
2010-01-28 18:04:52 ----A---- C:\Windows\system32\ntdll.dll
2010-01-28 18:04:52 ----A---- C:\Windows\system32\nslookup.exe
2010-01-28 18:04:51 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2010-01-28 18:04:50 ----A---- C:\Windows\system32\oleaut32.dll
2010-01-28 18:04:50 ----A---- C:\Windows\system32\ole32.dll
2010-01-28 18:04:50 ----A---- C:\Windows\system32\offfilt.dll
2010-01-28 18:04:50 ----A---- C:\Windows\system32\odbc32.dll
2010-01-28 18:04:50 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2010-01-28 18:04:50 ----A---- C:\Windows\system32\nlhtml.dll
2010-01-28 18:04:49 ----A---- C:\Windows\system32\osk.exe
2010-01-28 18:04:49 ----A---- C:\Windows\system32\oobefldr.dll
2010-01-28 18:04:49 ----A---- C:\Windows\system32\onex.dll
2010-01-28 18:04:49 ----A---- C:\Windows\system32\olepro32.dll
2010-01-28 18:04:49 ----A---- C:\Windows\system32\oleprn.dll
2010-01-28 18:04:49 ----A---- C:\Windows\system32\odbccp32.dll
2010-01-28 18:04:49 ----A---- C:\Windows\system32\odbcconf.dll
2010-01-28 18:04:48 ----A---- C:\Windows\system32\rasgcw.dll
2010-01-28 18:04:48 ----A---- C:\Windows\system32\rasdlg.dll
2010-01-28 18:04:48 ----A---- C:\Windows\system32\rasdial.exe
2010-01-28 18:04:48 ----A---- C:\Windows\system32\ocsetup.exe
2010-01-28 18:04:48 ----A---- C:\Windows\system32\occache.dll
2010-01-28 18:04:48 ----A---- C:\Windows\system32\ntprint.dll
2010-01-28 18:04:48 ----A---- C:\Windows\system32\ntmarta.dll
2010-01-28 18:04:47 ----A---- C:\Windows\system32\rastapi.dll
2010-01-28 18:04:47 ----A---- C:\Windows\system32\rasppp.dll
2010-01-28 18:04:47 ----A---- C:\Windows\system32\rasplap.dll
2010-01-28 18:04:47 ----A---- C:\Windows\system32\rasmontr.dll
2010-01-28 18:04:47 ----A---- C:\Windows\system32\rasmans.dll
2010-01-28 18:04:47 ----A---- C:\Windows\system32\raschap.dll
2010-01-28 18:04:47 ----A---- C:\Windows\system32\rasdiag.dll
2010-01-28 18:04:47 ----A---- C:\Windows\system32\rasapi32.dll
2010-01-28 18:04:47 ----A---- C:\Windows\system32\Query.dll
2010-01-28 18:04:47 ----A---- C:\Windows\system32\qedit.dll
2010-01-28 18:04:46 ----A---- C:\Windows\system32\RelMon.dll
2010-01-28 18:04:46 ----A---- C:\Windows\system32\rekeywiz.exe
2010-01-28 18:04:46 ----A---- C:\Windows\system32\regsvc.dll
2010-01-28 18:04:46 ----A---- C:\Windows\system32\RacEngn.dll
2010-01-28 18:04:46 ----A---- C:\Windows\system32\qmgr.dll
2010-01-28 18:04:45 ----A---- C:\Windows\system32\regapi.dll
2010-01-28 18:04:45 ----A---- C:\Windows\system32\reg.exe
2010-01-28 18:04:45 ----A---- C:\Windows\system32\rdpwsx.dll
2010-01-28 18:04:45 ----A---- C:\Windows\system32\rdpencom.dll
2010-01-28 18:04:44 ----A---- C:\Windows\system32\prnntfy.dll
2010-01-28 18:04:44 ----A---- C:\Windows\system32\printui.dll
2010-01-28 18:04:44 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2010-01-28 18:04:44 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2010-01-28 18:04:44 ----A---- C:\Windows\system32\PresentationHost.exe
2010-01-28 18:04:43 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2010-01-28 18:04:43 ----A---- C:\Windows\system32\powrprof.dll
2010-01-28 18:04:42 ----A---- C:\Windows\system32\puiapi.dll
2010-01-28 18:04:41 ----A---- C:\Windows\system32\qdvd.dll
2010-01-28 18:04:41 ----A---- C:\Windows\system32\QAGENTRT.DLL
2010-01-28 18:04:41 ----A---- C:\Windows\system32\propsys.dll
2010-01-28 18:04:41 ----A---- C:\Windows\system32\propdefs.dll
2010-01-28 18:04:41 ----A---- C:\Windows\system32\profsvc.dll
2010-01-28 18:04:40 ----A---- C:\Windows\system32\psisdecd.dll
2010-01-28 18:04:40 ----A---- C:\Windows\system32\PSHED.DLL
2010-01-28 18:04:39 ----A---- C:\Windows\system32\sendmail.dll
2010-01-28 18:04:38 ----A---- C:\Windows\system32\shlwapi.dll
2010-01-28 18:04:38 ----A---- C:\Windows\system32\shell32.dll
2010-01-28 18:04:38 ----A---- C:\Windows\system32\shdocvw.dll
2010-01-28 18:04:38 ----A---- C:\Windows\system32\sethc.exe
2010-01-28 18:04:38 ----A---- C:\Windows\system32\services.exe
2010-01-28 18:04:37 ----A---- C:\Windows\system32\setupapi.dll
2010-01-28 18:04:33 ----A---- C:\Windows\system32\eapphost.dll
2010-01-28 18:04:33 ----A---- C:\Windows\system32\eappgnui.dll
2010-01-28 18:04:32 ----A---- C:\Windows\system32\EhStorAPI.dll
2010-01-28 18:04:32 ----A---- C:\Windows\system32\eappcfg.dll
2010-01-28 18:04:32 ----A---- C:\Windows\system32\eapp3hst.dll
2010-01-28 18:04:31 ----A---- C:\Windows\system32\dwm.exe
2010-01-28 18:04:31 ----A---- C:\Windows\system32\dsprop.dll
2010-01-28 18:04:31 ----A---- C:\Windows\system32\dsound.dll
2010-01-28 18:04:30 ----A---- C:\Windows\system32\f3ahvoas.dll
2010-01-28 18:04:30 ----A---- C:\Windows\system32\extmgr.dll
2010-01-28 18:04:30 ----A---- C:\Windows\system32\ExplorerFrame.dll
2010-01-28 18:04:30 ----A---- C:\Windows\system32\evr.dll
2010-01-28 18:04:30 ----A---- C:\Windows\system32\eudcedit.exe
2010-01-28 18:04:30 ----A---- C:\Windows\system32\esent.dll
2010-01-28 18:04:30 ----A---- C:\Windows\explorer.exe
2010-01-28 18:04:29 ----A---- C:\Windows\system32\es.dll
2010-01-28 18:04:29 ----A---- C:\Windows\system32\EncDec.dll
2010-01-28 18:04:29 ----A---- C:\Windows\system32\emdmgmt.dll
2010-01-28 18:04:29 ----A---- C:\Windows\system32\EhStorShell.dll
2010-01-28 18:04:29 ----A---- C:\Windows\system32\EhStorPwdMgr.dll
2010-01-28 18:04:29 ----A---- C:\Windows\system32\EhStorAuthn.dll
2010-01-28 18:04:29 ----A---- C:\Windows\system32\diagperf.dll
2010-01-28 18:04:28 ----A---- C:\Windows\system32\diskraid.exe
2010-01-28 18:04:28 ----A---- C:\Windows\system32\diskpart.exe
2010-01-28 18:04:28 ----A---- C:\Windows\system32\dimsroam.dll
2010-01-28 18:04:28 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2010-01-28 18:04:27 ----A---- C:\Windows\system32\dfsr.exe
2010-01-28 18:04:27 ----A---- C:\Windows\system32\dfshim.dll
2010-01-28 18:04:27 ----A---- C:\Windows\system32\devmgr.dll
2010-01-28 18:04:26 ----A---- C:\Windows\system32\dhcpcsvc.dll
2010-01-28 18:04:25 ----A---- C:\Windows\system32\drvstore.dll
2010-01-28 18:04:25 ----A---- C:\Windows\system32\drvinst.exe
2010-01-28 18:04:25 ----A---- C:\Windows\system32\drmv2clt.dll
2010-01-28 18:04:25 ----A---- C:\Windows\system32\drmmgrtn.dll
2010-01-28 18:04:25 ----A---- C:\Windows\system32\dpapimig.exe
2010-01-28 18:04:25 ----A---- C:\Windows\system32\dot3svc.dll
2010-01-28 18:04:25 ----A---- C:\Windows\system32\dot3msm.dll
2010-01-28 18:04:25 ----A---- C:\Windows\system32\dot3cfg.dll
2010-01-28 18:04:24 ----A---- C:\Windows\system32\hbaapi.dll
2010-01-28 18:04:24 ----A---- C:\Windows\system32\dnsrslvr.dll
2010-01-28 18:04:24 ----A---- C:\Windows\system32\dnsapi.dll
2010-01-28 18:04:24 ----A---- C:\Windows\system32\dmusic.dll
2010-01-28 18:04:24 ----A---- C:\Windows\system32\dmsynth.dll
2010-01-28 18:04:23 ----A---- C:\Windows\system32\gpresult.exe
2010-01-28 18:04:22 ----A---- C:\Windows\system32\iasnap.dll
2010-01-28 18:04:22 ----A---- C:\Windows\system32\IasMigReader.exe
2010-01-28 18:04:22 ----A---- C:\Windows\system32\IasMigPlugin.dll
2010-01-28 18:04:22 ----A---- C:\Windows\system32\iashlpr.dll
2010-01-28 18:04:22 ----A---- C:\Windows\system32\iasdatastore.dll
2010-01-28 18:04:22 ----A---- C:\Windows\system32\iasads.dll
2010-01-28 18:04:22 ----A---- C:\Windows\system32\iasacct.dll
2010-01-28 18:04:22 ----A---- C:\Windows\system32\gpupdate.exe
2010-01-28 18:04:22 ----A---- C:\Windows\system32\gpsvc.dll
2010-01-28 18:04:21 ----A---- C:\Windows\system32\hidserv.dll
2010-01-28 18:04:21 ----A---- C:\Windows\system32\hdwwiz.exe
2010-01-28 18:04:21 ----A---- C:\Windows\system32\fontext.dll
2010-01-28 18:04:21 ----A---- C:\Windows\system32\findstr.exe
2010-01-28 18:04:21 ----A---- C:\Windows\system32\fc.exe
2010-01-28 18:04:21 ----A---- C:\Windows\system32\Faultrep.dll
2010-01-28 18:04:20 ----A---- C:\Windows\system32\gpapi.dll
2010-01-28 18:04:20 ----A---- C:\Windows\system32\gdi32.dll
2010-01-28 18:04:20 ----A---- C:\Windows\system32\feclient.dll
2010-01-28 18:04:20 ----A---- C:\Windows\system32\fdWSD.dll
2010-01-28 18:04:20 ----A---- C:\Windows\system32\fdWCN.dll
2010-01-28 18:04:20 ----A---- C:\Windows\system32\fdSSDP.dll
2010-01-28 18:04:20 ----A---- C:\Windows\system32\fdProxy.dll
2010-01-28 18:04:20 ----A---- C:\Windows\system32\fdeploy.dll
2010-01-28 18:04:20 ----A---- C:\Windows\system32\fdBthProxy.dll
2010-01-28 18:04:20 ----A---- C:\Windows\system32\fdBth.dll
2010-01-28 18:04:19 ----A---- C:\Windows\system32\gpedit.dll
2010-01-28 18:04:19 ----A---- C:\Windows\system32\fundisc.dll
2010-01-28 18:04:18 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2010-01-28 18:04:18 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2010-01-28 18:04:18 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll
2010-01-28 18:04:18 ----A---- C:\Windows\system32\ftp.exe
2010-01-28 18:04:18 ----A---- C:\Windows\system32\authui.dll
2010-01-28 18:04:18 ----A---- C:\Windows\system32\audiosrv.dll
2010-01-28 18:04:18 ----A---- C:\Windows\system32\AudioSes.dll
2010-01-28 18:04:17 ----A---- C:\Windows\system32\autoplay.dll
2010-01-28 18:04:17 ----A---- C:\Windows\system32\autochk.exe
2010-01-28 18:04:17 ----A---- C:\Windows\system32\autofmt.exe
2010-01-28 18:04:17 ----A---- C:\Windows\system32\autoconv.exe
2010-01-28 18:04:17 ----A---- C:\Windows\system32\authz.dll
2010-01-28 18:04:17 ----A---- C:\Windows\system32\audiodg.exe
2010-01-28 18:04:15 ----A---- C:\Windows\system32\bthci.dll
2010-01-28 18:04:15 ----A---- C:\Windows\system32\browseui.dll
2010-01-28 18:04:15 ----A---- C:\Windows\system32\brcpl.dll
2010-01-28 18:04:14 ----A---- C:\Windows\system32\blackbox.dll
2010-01-28 18:04:14 ----A---- C:\Windows\system32\bitsigd.dll
2010-01-28 18:04:14 ----A---- C:\Windows\system32\BFE.DLL
2010-01-28 18:04:14 ----A---- C:\Windows\system32\bcrypt.dll
2010-01-28 18:04:14 ----A---- C:\Windows\system32\basecsp.dll
2010-01-28 18:04:14 ----A---- C:\Windows\system32\azroles.dll

esperian26
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 26 úno 2010 16:26

Re: mozila a vyskakujuce reklamy

#2 Příspěvek od esperian26 »

musel som to rozdelit lebo to ma vela znakov tak tu je pokracovanie

2010-01-28 18:04:13 ----A---- C:\Windows\system32\accessibilitycpl.dll
2010-01-28 18:04:12 ----A---- C:\Windows\system32\apphelp.dll
2010-01-28 18:04:11 ----A---- C:\Windows\system32\apds.dll
2010-01-28 18:04:11 ----A---- C:\Windows\system32\adsmsext.dll
2010-01-28 18:04:11 ----A---- C:\Windows\system32\adsldpc.dll
2010-01-28 18:04:10 ----A---- C:\Windows\system32\conime.exe
2010-01-28 18:04:10 ----A---- C:\Windows\system32\comuid.dll
2010-01-28 18:04:10 ----A---- C:\Windows\system32\comsvcs.dll
2010-01-28 18:04:10 ----A---- C:\Windows\system32\advapi32.dll
2010-01-28 18:04:10 ----A---- C:\Windows\system32\adtschema.dll
2010-01-28 18:04:09 ----A---- C:\Windows\system32\crypt32.dll
2010-01-28 18:04:09 ----A---- C:\Windows\system32\credui.dll
2010-01-28 18:04:09 ----A---- C:\Windows\system32\connect.dll
2010-01-28 18:04:08 ----A---- C:\Windows\system32\comdlg32.dll
2010-01-28 18:04:08 ----A---- C:\Windows\system32\cmdial32.dll
2010-01-28 18:04:07 ----A---- C:\Windows\system32\dbgeng.dll
2010-01-28 18:04:07 ----A---- C:\Windows\system32\davclnt.dll
2010-01-28 18:04:07 ----A---- C:\Windows\system32\cmmon32.exe
2010-01-28 18:04:06 ----A---- C:\Windows\system32\DevicePairingWizard.exe
2010-01-28 18:04:06 ----A---- C:\Windows\system32\DevicePairingProxy.dll
2010-01-28 18:04:06 ----A---- C:\Windows\system32\DevicePairing.dll
2010-01-28 18:04:06 ----A---- C:\Windows\system32\DeviceEject.exe
2010-01-28 18:04:06 ----A---- C:\Windows\system32\dataclen.dll
2010-01-28 18:04:06 ----A---- C:\Windows\system32\d3d9.dll
2010-01-28 18:04:05 ----A---- C:\Windows\system32\csrstub.exe
2010-01-28 18:04:05 ----A---- C:\Windows\system32\cscript.exe
2010-01-28 18:04:05 ----A---- C:\Windows\system32\cscdll.dll
2010-01-28 18:04:05 ----A---- C:\Windows\system32\cscapi.dll
2010-01-28 18:04:05 ----A---- C:\Windows\system32\cryptui.dll
2010-01-28 18:04:05 ----A---- C:\Windows\system32\cryptsvc.dll
2010-01-28 18:04:04 ----A---- C:\Windows\system32\certmgr.dll
2010-01-28 18:04:04 ----A---- C:\Windows\system32\CertEnrollUI.dll
2010-01-28 18:04:04 ----A---- C:\Windows\system32\CertEnroll.dll
2010-01-28 18:04:04 ----A---- C:\Windows\system32\certcli.dll
2010-01-28 18:04:03 ----A---- C:\Windows\system32\cbsra.exe
2010-01-28 18:04:03 ----A---- C:\Windows\system32\bthudtask.exe
2010-01-28 18:04:03 ----A---- C:\Windows\system32\bthserv.dll
2010-01-28 18:04:02 ----A---- C:\Windows\system32\CHxReadingStringIME.dll
2010-01-28 18:04:02 ----A---- C:\Windows\system32\chtbrkr.dll
2010-01-28 18:04:02 ----A---- C:\Windows\system32\chsbrkr.dll
2010-01-28 18:04:02 ----A---- C:\Windows\system32\cipher.exe
2010-01-28 18:04:02 ----A---- C:\Windows\system32\ci.dll
2010-01-28 18:04:02 ----A---- C:\Windows\system32\certreq.exe
2010-01-28 18:04:02 ----A---- C:\Windows\system32\certprop.dll
2010-01-28 18:04:01 ----A---- C:\Windows\system32\certutil.exe
2010-01-28 18:04:00 ----A---- C:\Windows\system32\msftedit.dll
2010-01-28 18:04:00 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-01-28 18:04:00 ----A---- C:\Windows\system32\msfeeds.dll
2010-01-28 18:04:00 ----A---- C:\Windows\system32\msexch40.dll
2010-01-28 18:04:00 ----A---- C:\Windows\system32\msexcl40.dll
2010-01-28 18:04:00 ----A---- C:\Windows\system32\msdtctm.dll
2010-01-28 18:03:59 ----A---- C:\Windows\system32\msihnd.dll
2010-01-28 18:03:59 ----A---- C:\Windows\system32\msiexec.exe
2010-01-28 18:03:58 ----A---- C:\Windows\system32\msi.dll
2010-01-28 18:03:58 ----A---- C:\Windows\system32\mshtmled.dll
2010-01-28 18:03:57 ----A---- C:\Windows\system32\msdtcprx.dll
2010-01-28 18:03:56 ----A---- C:\Windows\system32\msimsg.dll
2010-01-28 18:03:56 ----A---- C:\Windows\system32\msctfui.dll
2010-01-28 18:03:56 ----A---- C:\Windows\system32\msctfp.dll
2010-01-28 18:03:56 ----A---- C:\Windows\system32\MsCtfMonitor.dll
2010-01-28 18:03:56 ----A---- C:\Windows\system32\msctf.dll
2010-01-28 18:03:55 ----A---- C:\Windows\system32\MPSSVC.dll
2010-01-28 18:03:55 ----A---- C:\Windows\system32\mprapi.dll
2010-01-28 18:03:55 ----A---- C:\Windows\system32\mpr.dll
2010-01-28 18:03:54 ----A---- C:\Windows\system32\modemui.dll
2010-01-28 18:03:54 ----A---- C:\Windows\system32\MMDevAPI.dll
2010-01-28 18:03:53 ----A---- C:\Windows\system32\mscories.dll
2010-01-28 18:03:53 ----A---- C:\Windows\system32\mscorier.dll
2010-01-28 18:03:53 ----A---- C:\Windows\system32\mscoree.dll
2010-01-28 18:03:53 ----A---- C:\Windows\system32\mscms.dll
2010-01-28 18:03:53 ----A---- C:\Windows\system32\mscandui.dll
2010-01-28 18:03:52 ----A---- C:\Windows\system32\netcenter.dll
2010-01-28 18:03:52 ----A---- C:\Windows\system32\netapi32.dll
2010-01-28 18:03:52 ----A---- C:\Windows\system32\ncryptui.dll
2010-01-28 18:03:52 ----A---- C:\Windows\system32\ncrypt.dll
2010-01-28 18:03:51 ----A---- C:\Windows\system32\netplwiz.dll
2010-01-28 18:03:51 ----A---- C:\Windows\system32\netlogon.dll
2010-01-28 18:03:51 ----A---- C:\Windows\system32\mtxclu.dll
2010-01-28 18:03:50 ----A---- C:\Windows\system32\NcdProp.dll
2010-01-28 18:03:50 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2010-01-28 18:03:49 ----A---- C:\Windows\system32\newdev.exe
2010-01-28 18:03:49 ----A---- C:\Windows\system32\newdev.dll
2010-01-28 18:03:49 ----A---- C:\Windows\system32\networkexplorer.dll
2010-01-28 18:03:49 ----A---- C:\Windows\system32\netshell.dll
2010-01-28 18:03:48 ----A---- C:\Windows\system32\networkmap.dll
2010-01-28 18:03:48 ----A---- C:\Windows\system32\networkitemfactory.dll
2010-01-28 18:03:48 ----A---- C:\Windows\system32\msscntrs.dll
2010-01-28 18:03:48 ----A---- C:\Windows\system32\msscb.dll
2010-01-28 18:03:48 ----A---- C:\Windows\system32\msrepl40.dll
2010-01-28 18:03:48 ----A---- C:\Windows\system32\msrating.dll
2010-01-28 18:03:48 ----A---- C:\Windows\system32\msnetobj.dll
2010-01-28 18:03:48 ----A---- C:\Windows\system32\msltus40.dll
2010-01-28 18:03:47 ----A---- C:\Windows\system32\msrd3x40.dll
2010-01-28 18:03:47 ----A---- C:\Windows\system32\msrd2x40.dll
2010-01-28 18:03:47 ----A---- C:\Windows\system32\mspbde40.dll
2010-01-28 18:03:47 ----A---- C:\Windows\system32\msjtes40.dll
2010-01-28 18:03:47 ----A---- C:\Windows\system32\msjter40.dll
2010-01-28 18:03:47 ----A---- C:\Windows\system32\msjint40.dll
2010-01-28 18:03:47 ----A---- C:\Windows\system32\msjetoledb40.dll
2010-01-28 18:03:47 ----A---- C:\Windows\system32\msinfo32.exe
2010-01-28 18:03:47 ----A---- C:\Windows\system32\msimtf.dll
2010-01-28 18:03:46 ----A---- C:\Windows\system32\msxbde40.dll
2010-01-28 18:03:46 ----A---- C:\Windows\system32\mswstr10.dll
2010-01-28 18:03:46 ----A---- C:\Windows\system32\mswsock.dll
2010-01-28 18:03:46 ----A---- C:\Windows\system32\mswdat10.dll
2010-01-28 18:03:46 ----A---- C:\Windows\system32\msvcrt.dll
2010-01-28 18:03:46 ----A---- C:\Windows\system32\msvcp60.dll
2010-01-28 18:03:46 ----A---- C:\Windows\system32\msutb.dll
2010-01-28 18:03:46 ----A---- C:\Windows\system32\msjet40.dll
2010-01-28 18:03:46 ----A---- C:\Windows\system32\msisip.dll
2010-01-28 18:03:43 ----A---- C:\Windows\system32\MSVidCtl.dll
2010-01-28 18:03:43 ----A---- C:\Windows\system32\mssrch.dll
2010-01-28 18:03:43 ----A---- C:\Windows\system32\mssprxy.dll
2010-01-28 18:03:43 ----A---- C:\Windows\system32\mssphtb.dll
2010-01-28 18:03:43 ----A---- C:\Windows\system32\mssph.dll
2010-01-28 18:03:43 ----A---- C:\Windows\system32\mssitlb.dll
2010-01-28 18:03:43 ----A---- C:\Windows\system32\msshooks.dll
2010-01-28 18:03:43 ----A---- C:\Windows\system32\msscp.dll
2010-01-28 18:03:42 ----A---- C:\Windows\system32\mstsc.exe
2010-01-28 18:03:42 ----A---- C:\Windows\system32\mstlsapi.dll
2010-01-28 18:03:42 ----A---- C:\Windows\system32\mstime.dll
2010-01-28 18:03:42 ----A---- C:\Windows\system32\mstext40.dll
2010-01-28 18:03:42 ----A---- C:\Windows\system32\mssvp.dll
2010-01-28 18:03:42 ----A---- C:\Windows\system32\msstrc.dll
2010-01-28 18:03:42 ----A---- C:\Windows\system32\msshsq.dll
2010-01-28 18:03:42 ----A---- C:\Windows\system32\InkEd.dll
2010-01-28 18:03:42 ----A---- C:\Windows\system32\inetcomm.dll
2010-01-28 18:03:41 ----A---- C:\Windows\system32\infocardapi.dll
2010-01-28 18:03:41 ----A---- C:\Windows\system32\inetppui.dll
2010-01-28 18:03:41 ----A---- C:\Windows\system32\inetpp.dll
2010-01-28 18:03:40 ----A---- C:\Windows\system32\iscsilog.dll
2010-01-28 18:03:40 ----A---- C:\Windows\system32\IPSECSVC.DLL
2010-01-28 18:03:40 ----A---- C:\Windows\system32\imm32.dll
2010-01-28 18:03:39 ----A---- C:\Windows\system32\ipsmsnap.dll
2010-01-28 18:03:39 ----A---- C:\Windows\system32\ipsecsnp.dll
2010-01-28 18:03:39 ----A---- C:\Windows\system32\ipconfig.exe
2010-01-28 18:03:39 ----A---- C:\Windows\system32\input.dll
2010-01-28 18:03:38 ----A---- C:\Windows\system32\iphlpsvc.dll
2010-01-28 18:03:38 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2010-01-28 18:03:38 ----A---- C:\Windows\system32\iertutil.dll
2010-01-28 18:03:37 ----A---- C:\Windows\system32\ifmon.dll
2010-01-28 18:03:37 ----A---- C:\Windows\system32\iedkcs32.dll
2010-01-28 18:03:37 ----A---- C:\Windows\system32\ieaksie.dll
2010-01-28 18:03:37 ----A---- C:\Windows\system32\icardres.dll
2010-01-28 18:03:37 ----A---- C:\Windows\system32\icardagt.exe
2010-01-28 18:03:37 ----A---- C:\Windows\system32\iassvcs.dll
2010-01-28 18:03:37 ----A---- C:\Windows\system32\iassdo.dll
2010-01-28 18:03:37 ----A---- C:\Windows\system32\iassam.dll
2010-01-28 18:03:37 ----A---- C:\Windows\system32\iasrecst.dll
2010-01-28 18:03:37 ----A---- C:\Windows\system32\iasrad.dll
2010-01-28 18:03:37 ----A---- C:\Windows\system32\iaspolcy.dll
2010-01-28 18:03:36 ----A---- C:\Windows\system32\IMJP10K.DLL
2010-01-28 18:03:36 ----A---- C:\Windows\system32\imapi2.dll
2010-01-28 18:03:36 ----A---- C:\Windows\system32\imapi.dll
2010-01-28 18:03:35 ----A---- C:\Windows\system32\imapi2fs.dll
2010-01-28 18:03:35 ----A---- C:\Windows\system32\IKEEXT.DLL
2010-01-28 18:03:34 ----A---- C:\Windows\system32\mfplat.dll
2010-01-28 18:03:33 ----A---- C:\Windows\system32\mfc42u.dll
2010-01-28 18:03:33 ----A---- C:\Windows\system32\mfc42.dll
2010-01-28 18:03:32 ----A---- C:\Windows\system32\mimefilt.dll
2010-01-28 18:03:32 ----A---- C:\Windows\system32\milcore.dll
2010-01-28 18:03:30 ----A---- C:\Windows\system32\mmcndmgr.dll
2010-01-28 18:03:30 ----A---- C:\Windows\system32\mmcico.dll
2010-01-28 18:03:30 ----A---- C:\Windows\system32\mmci.dll
2010-01-28 18:03:30 ----A---- C:\Windows\system32\midimap.dll
2010-01-28 18:03:29 ----A---- C:\Windows\system32\mmc.exe
2010-01-28 18:03:28 ----A---- C:\Windows\system32\l2nacp.dll
2010-01-28 18:03:28 ----A---- C:\Windows\system32\korwbrkr.dll
2010-01-28 18:03:28 ----A---- C:\Windows\system32\kd1394.dll
2010-01-28 18:03:27 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2010-01-28 18:03:27 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2010-01-28 18:03:27 ----A---- C:\Windows\system32\mblctr.exe
2010-01-28 18:03:27 ----A---- C:\Windows\system32\kernel32.dll
2010-01-28 18:03:27 ----A---- C:\Windows\system32\kdusb.dll
2010-01-28 18:03:27 ----A---- C:\Windows\system32\kdcom.dll
2010-01-28 18:03:26 ----A---- C:\Windows\system32\logman.exe
2010-01-28 18:03:26 ----A---- C:\Windows\system32\logagent.exe
2010-01-28 18:03:25 ----A---- C:\Windows\system32\wercon.exe
2010-01-28 18:03:25 ----A---- C:\Windows\system32\wer.dll
2010-01-28 18:03:25 ----A---- C:\Windows\system32\webcheck.dll
2010-01-28 18:03:25 ----A---- C:\Windows\system32\WebClnt.dll
2010-01-28 18:03:25 ----A---- C:\Windows\system32\shsetup.dll
2010-01-28 18:03:25 ----A---- C:\Windows\system32\Magnify.exe
2010-01-28 18:03:24 ----A---- C:\Windows\system32\wdscore.dll
2010-01-28 18:03:24 ----A---- C:\Windows\system32\wdc.dll
2010-01-28 18:03:23 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
2010-01-28 18:03:23 ----A---- C:\Windows\system32\whealogr.dll
2010-01-28 18:03:23 ----A---- C:\Windows\system32\wevtutil.exe
2010-01-28 18:03:23 ----A---- C:\Windows\system32\wevtsvc.dll
2010-01-28 18:03:22 ----A---- C:\Windows\system32\win32spl.dll
2010-01-28 18:03:22 ----A---- C:\Windows\system32\wiaservc.dll
2010-01-28 18:03:22 ----A---- C:\Windows\system32\wiaaut.dll
2010-01-28 18:03:22 ----A---- C:\Windows\system32\wevtapi.dll
2010-01-28 18:03:22 ----A---- C:\Windows\system32\wersvc.dll
2010-01-28 18:03:22 ----A---- C:\Windows\system32\WerFaultSecure.exe
2010-01-28 18:03:22 ----A---- C:\Windows\system32\WerFault.exe
2010-01-28 18:03:21 ----A---- C:\Windows\system32\version.dll
2010-01-28 18:03:21 ----A---- C:\Windows\system32\vdsutil.dll
2010-01-28 18:03:21 ----A---- C:\Windows\system32\vdsdyn.dll
2010-01-28 18:03:21 ----A---- C:\Windows\system32\vds.exe
2010-01-28 18:03:21 ----A---- C:\Windows\system32\vdmdbg.dll
2010-01-28 18:03:21 ----A---- C:\Windows\system32\vbscript.dll
2010-01-28 18:03:21 ----A---- C:\Windows\system32\uxsms.dll
2010-01-28 18:03:21 ----A---- C:\Windows\system32\Utilman.exe
2010-01-28 18:03:21 ----A---- C:\Windows\system32\user32.dll
2010-01-28 18:03:20 ----A---- C:\Windows\system32\usp10.dll
2010-01-28 18:03:20 ----A---- C:\Windows\system32\userenv.dll
2010-01-28 18:03:20 ----A---- C:\Windows\system32\usercpl.dll
2010-01-28 18:03:19 ----A---- C:\Windows\system32\wcnwiz2.dll
2010-01-28 18:03:19 ----A---- C:\Windows\system32\wcnwiz.dll
2010-01-28 18:03:19 ----A---- C:\Windows\system32\WcnNetsh.dll
2010-01-28 18:03:19 ----A---- C:\Windows\system32\wcncsvc.dll
2010-01-28 18:03:18 ----A---- C:\Windows\system32\wscisvif.dll
2010-01-28 18:03:18 ----A---- C:\Windows\system32\WscEapPr.dll
2010-01-28 18:03:18 ----A---- C:\Windows\system32\wscapi.dll
2010-01-28 18:03:18 ----A---- C:\Windows\system32\w32time.dll
2010-01-28 18:03:18 ----A---- C:\Windows\system32\VSSVC.exe
2010-01-28 18:03:18 ----A---- C:\Windows\system32\vssapi.dll
2010-01-28 18:03:17 ----A---- C:\Windows\system32\WSDMon.dll
2010-01-28 18:03:17 ----A---- C:\Windows\system32\wsdchngr.dll
2010-01-28 18:03:17 ----A---- C:\Windows\system32\wscsvc.dll
2010-01-28 18:03:17 ----A---- C:\Windows\system32\wscript.exe
2010-01-28 18:03:17 ----A---- C:\Windows\system32\wscntfy.dll
2010-01-28 18:03:17 ----A---- C:\Windows\system32\wow32.dll
2010-01-28 18:03:17 ----A---- C:\Windows\system32\WMVXENCD.DLL
2010-01-28 18:03:17 ----A---- C:\Windows\system32\WMVSDECD.DLL
2010-01-28 18:03:17 ----A---- C:\Windows\system32\WMVENCOD.DLL
2010-01-28 18:03:16 ----A---- C:\Windows\system32\wusa.exe
2010-01-28 18:03:16 ----A---- C:\Windows\system32\wpcsvc.dll
2010-01-28 18:03:16 ----A---- C:\Windows\system32\wpccpl.dll
2010-01-28 18:03:16 ----A---- C:\Windows\system32\wpcao.dll
2010-01-28 18:03:15 ----A---- C:\Windows\system32\xmlfilter.dll
2010-01-28 18:03:15 ----A---- C:\Windows\system32\wsepno.dll
2010-01-28 18:03:14 ----A---- C:\Windows\system32\wsnmp32.dll
2010-01-28 18:03:14 ----A---- C:\Windows\system32\WsmSvc.dll
2010-01-28 18:03:14 ----A---- C:\Windows\system32\wshext.dll
2010-01-28 18:03:14 ----A---- C:\Windows\system32\wshbth.dll
2010-01-28 18:03:14 ----A---- C:\Windows\system32\wlanpref.dll
2010-01-28 18:03:13 ----A---- C:\Windows\system32\wlgpclnt.dll
2010-01-28 18:03:13 ----A---- C:\Windows\system32\Wldap32.dll
2010-01-28 18:03:13 ----A---- C:\Windows\system32\wlanui.dll
2010-01-28 18:03:13 ----A---- C:\Windows\system32\wlangpui.dll
2010-01-28 18:03:13 ----A---- C:\Windows\system32\wisptis.exe
2010-01-28 18:03:13 ----A---- C:\Windows\system32\WinSCard.dll
2010-01-28 18:03:13 ----A---- C:\Windows\system32\winrnr.dll
2010-01-28 18:03:13 ----A---- C:\Windows\system32\winresume.exe
2010-01-28 18:03:12 ----A---- C:\Windows\system32\winsrv.dll
2010-01-28 18:03:12 ----A---- C:\Windows\system32\WinSAT.exe
2010-01-28 18:03:12 ----A---- C:\Windows\system32\winmm.dll
2010-01-28 18:03:12 ----A---- C:\Windows\system32\winlogon.exe
2010-01-28 18:03:12 ----A---- C:\Windows\system32\winload.exe
2010-01-28 18:03:11 ----A---- C:\Windows\system32\wmpmde.dll
2010-01-28 18:03:11 ----A---- C:\Windows\system32\wmpeffects.dll
2010-01-28 18:03:11 ----A---- C:\Windows\system32\WMNetMgr.dll
2010-01-28 18:03:10 ----A---- C:\Windows\system32\wmdrmsdk.dll
2010-01-28 18:03:09 ----A---- C:\Windows\system32\wmicmiplugin.dll
2010-01-28 18:03:09 ----A---- C:\Windows\system32\sud.dll
2010-01-28 18:03:09 ----A---- C:\Windows\system32\Storprop.dll
2010-01-28 18:03:09 ----A---- C:\Windows\system32\stobject.dll
2010-01-28 18:03:08 ----A---- C:\Windows\system32\srvsvc.dll
2010-01-28 18:03:08 ----A---- C:\Windows\system32\srchadmin.dll
2010-01-28 18:03:08 ----A---- C:\Windows\system32\srcore.dll
2010-01-28 18:03:06 ----A---- C:\Windows\system32\sysmain.dll
2010-01-28 18:03:06 ----A---- C:\Windows\system32\sysclass.dll
2010-01-28 18:03:06 ----A---- C:\Windows\system32\SyncCenter.dll
2010-01-28 18:03:06 ----A---- C:\Windows\system32\swprv.dll
2010-01-28 18:03:05 ----A---- C:\Windows\system32\smss.exe
2010-01-28 18:03:05 ----A---- C:\Windows\system32\SMBHelperClass.dll
2010-01-28 18:03:05 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2010-01-28 18:03:05 ----A---- C:\Windows\system32\slwmi.dll
2010-01-28 18:03:04 ----A---- C:\Windows\system32\SmiEngine.dll
2010-01-28 18:03:04 ----A---- C:\Windows\system32\SLsvc.exe
2010-01-28 18:03:04 ----A---- C:\Windows\system32\slcc.dll
2010-01-28 18:03:04 ----A---- C:\Windows\system32\SLC.dll
2010-01-28 18:03:04 ----A---- C:\Windows\system32\shwebsvc.dll
2010-01-28 18:03:04 ----A---- C:\Windows\system32\shsvcs.dll
2010-01-28 18:03:03 ----A---- C:\Windows\system32\spp.dll
2010-01-28 18:03:03 ----A---- C:\Windows\system32\spoolsv.exe
2010-01-28 18:03:03 ----A---- C:\Windows\system32\spoolss.dll
2010-01-28 18:03:03 ----A---- C:\Windows\system32\spinstall.exe
2010-01-28 18:03:03 ----A---- C:\Windows\system32\spcmsg.dll
2010-01-28 18:03:03 ----A---- C:\Windows\system32\slwga.dll
2010-01-28 18:03:03 ----A---- C:\Windows\system32\SLUINotify.dll
2010-01-28 18:03:03 ----A---- C:\Windows\system32\SLUI.exe
2010-01-28 18:03:03 ----A---- C:\Windows\system32\slmgr.vbs
2010-01-28 18:03:03 ----A---- C:\Windows\system32\SLLUA.exe
2010-01-28 18:03:03 ----A---- C:\Windows\system32\SLCommDlg.dll
2010-01-28 18:03:03 ----A---- C:\Windows\system32\slcinst.dll
2010-01-28 18:03:03 ----A---- C:\Windows\system32\SLCExt.dll
2010-01-28 18:03:02 ----A---- C:\Windows\system32\sqlsrv32.dll
2010-01-28 18:03:02 ----A---- C:\Windows\system32\spwizui.dll
2010-01-28 18:03:02 ----A---- C:\Windows\system32\spwinsat.dll
2010-01-28 18:03:02 ----A---- C:\Windows\system32\spreview.exe
2010-01-28 18:03:02 ----A---- C:\Windows\system32\sperror.dll
2010-01-28 18:03:01 ----A---- C:\Windows\system32\TsWpfWrp.exe
2010-01-28 18:03:01 ----A---- C:\Windows\system32\TSTheme.exe
2010-01-28 18:03:01 ----A---- C:\Windows\system32\softkbd.dll
2010-01-28 18:03:01 ----A---- C:\Windows\system32\SndVol.exe
2010-01-28 18:02:59 ----A---- C:\Windows\system32\zipfldr.dll
2010-01-28 18:02:59 ----A---- C:\Windows\system32\untfs.dll
2010-01-28 18:02:59 ----A---- C:\Windows\system32\tscupgrd.exe
2010-01-28 18:02:58 ----A---- C:\Windows\system32\uDWM.dll
2010-01-28 18:02:57 ----A---- C:\Windows\system32\umpnpmgr.dll
2010-01-28 18:02:57 ----A---- C:\Windows\system32\ulib.dll
2010-01-28 18:02:57 ----A---- C:\Windows\system32\systemcpl.dll
2010-01-28 18:02:51 ----A---- C:\Windows\system32\tquery.dll
2010-01-28 18:02:51 ----A---- C:\Windows\system32\tcpmon.dll
2010-01-28 18:02:51 ----A---- C:\Windows\system32\tcpipcfg.dll
2010-01-28 18:02:51 ----A---- C:\Windows\system32\tapisrv.dll
2010-01-28 18:02:50 ----A---- C:\Windows\system32\termsrv.dll
2010-01-28 18:02:50 ----A---- C:\Windows\system32\taskeng.exe
2010-01-28 18:02:50 ----A---- C:\Windows\system32\taskcomp.dll
2010-01-28 18:02:49 ----A---- C:\Windows\system32\themeui.dll
2010-01-28 18:02:49 ----A---- C:\Windows\system32\themecpl.dll
2010-01-28 18:02:49 ----A---- C:\Windows\system32\thawbrkr.dll
2010-01-28 17:21:28 ----A---- C:\Windows\system32\winhttp.dll
2010-01-28 17:21:17 ----A---- C:\Windows\system32\httpapi.dll
2010-01-28 17:21:15 ----A---- C:\Windows\system32\nshhttp.dll
2010-01-28 13:41:41 ----D---- C:\Program Files\Common Files\SWF Studio
2010-01-28 13:41:40 ----SHD---- C:\Users\Esperian\AppData\Roaming\.#
2010-01-28 13:27:19 ----D---- C:\Users\Esperian\AppData\Roaming\CianoDock
2010-01-28 13:08:51 ----A---- C:\Windows\system32\kerberos.dll
2010-01-28 13:08:49 ----A---- C:\Windows\system32\schannel.dll
2010-01-27 21:02:00 ----D---- C:\Windows\system32\EventProviders
2010-01-27 19:00:58 ----A---- C:\Windows\system32\pwNative.exe
2010-01-27 18:59:58 ----D---- C:\Program Files\Foxit Software
2010-01-27 17:15:22 ----A---- C:\Windows\system32\unrar.dll
2010-01-27 17:15:18 ----A---- C:\Windows\avisplitter.ini
2010-01-27 17:15:12 ----D---- C:\Program Files\7-Zip
2010-01-27 17:15:11 ----A---- C:\Windows\system32\yv12vfw.dll
2010-01-27 17:15:10 ----A---- C:\Windows\system32\xvidvfw.dll
2010-01-27 17:15:10 ----A---- C:\Windows\system32\xvidcore.dll
2010-01-27 17:15:04 ----A---- C:\Windows\system32\ff_vfw.dll.manifest
2010-01-27 17:15:03 ----A---- C:\Windows\system32\ff_vfw.dll
2010-01-27 17:14:56 ----D---- C:\Program Files\K-Lite Codec Pack
2010-01-27 16:48:44 ----D---- C:\Users\Esperian\AppData\Roaming\Printer Info Cache
2010-01-27 16:48:43 ----D---- C:\Users\Esperian\AppData\Roaming\Image Zone Express
2010-01-27 16:44:32 ----D---- C:\ProgramData\WEBREG
2010-01-27 16:43:31 ----D---- C:\ProgramData\HPSSUPPLY
2010-01-27 16:41:17 ----D---- C:\Users\Esperian\AppData\Roaming\HP
2010-01-27 16:39:07 ----D---- C:\Program Files\Common Files\Hewlett-Packard
2010-01-27 16:38:14 ----D---- C:\Program Files\Common Files\HP
2010-01-27 15:56:25 ----HD---- C:\Config.Msi
2010-01-27 15:48:18 ----D---- C:\ProgramData\HP
2010-01-27 15:47:56 ----A---- C:\Windows\system32\hpzids01.dll
2010-01-27 15:47:55 ----A---- C:\Windows\system32\hpowiav1.dll
2010-01-27 15:47:54 ----A---- C:\Windows\system32\hpovst01.dll
2010-01-27 15:47:54 ----A---- C:\Windows\system32\hpotscl1.dll
2010-01-27 14:33:20 ----A---- C:\Windows\system32\netfxperf.dll
2010-01-27 14:30:15 ----D---- C:\Program Files\MSXML 4.0
2010-01-27 14:24:58 ----A---- C:\Windows\system32\wlansvc.dll
2010-01-27 14:24:58 ----A---- C:\Windows\system32\wlanhlp.dll
2010-01-27 14:24:57 ----A---- C:\Windows\system32\wlansec.dll
2010-01-27 14:24:57 ----A---- C:\Windows\system32\wlanmsm.dll
2010-01-27 14:24:57 ----A---- C:\Windows\system32\L2SecHC.dll
2010-01-27 14:24:56 ----A---- C:\Windows\system32\wlanapi.dll
2010-01-27 14:24:49 ----A---- C:\Windows\system32\mshtml.dll
2010-01-27 14:24:45 ----A---- C:\Windows\system32\ieframe.dll
2010-01-27 14:24:42 ----A---- C:\Windows\system32\wininet.dll
2010-01-27 14:24:41 ----A---- C:\Windows\system32\urlmon.dll
2010-01-27 14:24:37 ----A---- C:\Windows\system32\ieapfltr.dll
2010-01-27 14:24:35 ----A---- C:\Windows\system32\ieui.dll
2010-01-27 14:24:34 ----A---- C:\Windows\system32\jsproxy.dll
2010-01-27 14:24:34 ----A---- C:\Windows\system32\iepeers.dll
2010-01-27 14:24:32 ----A---- C:\Windows\system32\ieencode.dll
2010-01-27 14:24:00 ----A---- C:\Windows\system32\netiohlp.dll
2010-01-27 14:23:58 ----A---- C:\Windows\system32\NETSTAT.EXE
2010-01-27 14:23:57 ----A---- C:\Windows\system32\TCPSVCS.EXE
2010-01-27 14:23:57 ----A---- C:\Windows\system32\HOSTNAME.EXE
2010-01-27 14:23:57 ----A---- C:\Windows\system32\finger.exe
2010-01-27 14:23:57 ----A---- C:\Windows\system32\ARP.EXE
2010-01-27 14:23:56 ----A---- C:\Windows\system32\ROUTE.EXE
2010-01-27 14:23:56 ----A---- C:\Windows\system32\MRINFO.EXE
2010-01-27 14:23:55 ----A---- C:\Windows\system32\netevent.dll
2010-01-27 14:23:10 ----A---- C:\Windows\system32\WMVCORE.DLL
2010-01-27 14:23:09 ----A---- C:\Windows\system32\mf.dll
2010-01-27 14:23:07 ----A---- C:\Windows\system32\rrinstaller.exe
2010-01-27 14:23:07 ----A---- C:\Windows\system32\mfps.dll
2010-01-27 14:23:07 ----A---- C:\Windows\system32\mfpmp.exe
2010-01-27 14:23:06 ----A---- C:\Windows\system32\mferror.dll
2010-01-27 14:22:52 ----A---- C:\Windows\system32\kbd106n.dll
2010-01-27 14:20:26 ----A---- C:\Windows\system32\atmfd.dll
2010-01-27 14:20:25 ----A---- C:\Windows\system32\t2embed.dll
2010-01-27 14:20:25 ----A---- C:\Windows\system32\fontsub.dll
2010-01-27 14:20:24 ----A---- C:\Windows\system32\lpk.dll
2010-01-27 14:20:24 ----A---- C:\Windows\system32\dciman32.dll
2010-01-27 14:20:24 ----A---- C:\Windows\system32\atmlib.dll
2010-01-27 14:17:41 ----A---- C:\Windows\system32\tsgqec.dll
2010-01-27 14:17:41 ----A---- C:\Windows\system32\mstscax.dll
2010-01-27 14:17:41 ----A---- C:\Windows\system32\aaclient.dll
2010-01-27 14:17:38 ----A---- C:\Windows\system32\lsasrv.dll
2010-01-27 14:17:37 ----A---- C:\Windows\system32\wdigest.dll
2010-01-27 14:17:37 ----A---- C:\Windows\system32\msv1_0.dll
2010-01-27 14:17:36 ----A---- C:\Windows\system32\secur32.dll
2010-01-27 14:17:35 ----A---- C:\Windows\system32\lsass.exe
2010-01-27 14:17:09 ----A---- C:\Windows\system32\localspl.dll
2010-01-27 14:17:04 ----A---- C:\Windows\system32\msxml6.dll
2010-01-27 14:17:04 ----A---- C:\Windows\system32\msxml3.dll
2010-01-27 14:16:48 ----A---- C:\Windows\system32\jscript.dll
2010-01-27 14:16:35 ----A---- C:\Windows\system32\atl.dll
2010-01-27 14:16:23 ----A---- C:\Windows\system32\wkssvc.dll
2010-01-27 14:07:13 ----A---- C:\Windows\system32\wmpdxm.dll
2010-01-27 13:59:31 ----A---- C:\Windows\system32\rpcrt4.dll
2010-01-27 13:58:23 ----A---- C:\Windows\system32\msasn1.dll
2010-01-27 13:57:00 ----A---- C:\Windows\system32\rastls.dll
2010-01-27 13:56:54 ----A---- C:\Windows\system32\WSDApi.dll
2010-01-27 13:56:38 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2010-01-27 13:56:19 ----A---- C:\Windows\system32\wmp.dll
2010-01-27 13:56:14 ----A---- C:\Windows\system32\unregmp2.exe
2010-01-27 13:56:11 ----A---- C:\Windows\system32\spwmp.dll
2010-01-27 13:56:10 ----A---- C:\Windows\system32\dxmasf.dll
2010-01-27 13:56:09 ----A---- C:\Windows\system32\wmploc.DLL
2010-01-27 01:30:18 ----SHD---- C:\System Volume Information

======List of files/folders modified in the last 1 months======

2010-02-26 16:22:59 ----RD---- C:\Program Files
2010-02-26 16:22:57 ----D---- C:\Windows\Temp
2010-02-26 16:21:00 ----D---- C:\Windows\system32\catroot2
2010-02-26 14:29:58 ----D---- C:\Users\Esperian\AppData\Roaming\Spyware Terminator
2010-02-26 11:53:32 ----D---- C:\ProgramData\Spyware Terminator
2010-02-25 16:57:37 ----D---- C:\Windows\system32\Tasks
2010-02-24 17:11:43 ----D---- C:\Windows\rescache
2010-02-24 11:57:07 ----RSD---- C:\Windows\Fonts
2010-02-24 11:57:07 ----D---- C:\Windows\system32\cs-CZ
2010-02-24 11:57:07 ----D---- C:\Windows\System32
2010-02-24 11:57:07 ----D---- C:\Windows\AppPatch
2010-02-24 11:43:10 ----D---- C:\Windows\winsxs
2010-02-24 11:41:59 ----D---- C:\Windows\system32\catroot
2010-02-24 09:16:06 ----N---- C:\Windows\system32\MpSigStub.exe
2010-02-23 21:50:48 ----D---- C:\Windows\Prefetch
2010-02-23 07:40:19 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-02-23 07:40:17 ----D---- C:\Windows\inf
2010-02-20 16:31:21 ----SD---- C:\Users\Esperian\AppData\Roaming\Microsoft
2010-02-20 15:02:05 ----A---- C:\Windows\win.ini
2010-02-20 15:02:00 ----SHD---- C:\Windows\Installer
2010-02-18 10:22:49 ----D---- C:\Windows\Tasks
2010-02-18 09:40:12 ----HD---- C:\Windows\system32\GroupPolicy
2010-02-18 09:40:12 ----HD---- C:\ProgramData
2010-02-17 19:46:56 ----D---- C:\WINDOWS
2010-02-16 18:34:45 ----SD---- C:\Windows\Downloaded Program Files
2010-02-16 18:34:44 ----D---- C:\Program Files\Common Files\InstallShield
2010-02-16 18:33:20 ----D---- C:\Program Files\Common Files
2010-02-15 13:53:31 ----D---- C:\Windows\Debug
2010-02-14 12:18:05 ----D---- C:\Windows\system32\LogFiles
2010-02-12 21:12:28 ----D---- C:\Windows\Microsoft.NET
2010-02-12 21:11:26 ----RSD---- C:\Windows\assembly
2010-02-12 17:07:56 ----D---- C:\Windows\system32\drivers
2010-02-12 17:06:13 ----SD---- C:\ProgramData\Microsoft
2010-02-12 17:01:46 ----D---- C:\Program Files\Common Files\microsoft shared
2010-02-12 16:41:44 ----D---- C:\ProgramData\NVIDIA
2010-02-10 21:08:54 ----D---- C:\Program Files\Windows Mail
2010-02-10 16:39:24 ----D---- C:\ProgramData\Microsoft Help
2010-02-07 16:14:40 ----D---- C:\Users\Esperian\AppData\Roaming\Hewlett-Packard
2010-02-07 16:09:50 ----D---- C:\ProgramData\Hewlett-Packard
2010-02-07 15:55:35 ----D---- C:\Program Files\Internet Explorer
2010-02-07 08:53:04 ----D---- C:\Program Files\Spyware Terminator
2010-02-05 19:03:57 ----HD---- C:\Program Files\InstallShield Installation Information
2010-02-01 20:26:20 ----A---- C:\Windows\system32\mrt.exe
2010-01-31 22:59:04 ----D---- C:\Windows\system32\WDI
2010-01-31 21:25:57 ----D---- C:\Users\Esperian\AppData\Roaming\Ahead
2010-01-29 16:56:45 ----D---- C:\Windows\system32\wbem
2010-01-29 16:56:44 ----D---- C:\Windows\system32\zh-TW
2010-01-29 16:56:44 ----D---- C:\Windows\system32\zh-HK
2010-01-29 16:56:44 ----D---- C:\Windows\system32\zh-CN
2010-01-29 16:56:44 ----D---- C:\Windows\system32\uk-UA
2010-01-29 16:56:44 ----D---- C:\Windows\system32\tr-TR
2010-01-29 16:56:44 ----D---- C:\Windows\system32\th-TH
2010-01-29 16:56:44 ----D---- C:\Windows\system32\sv-SE
2010-01-29 16:56:44 ----D---- C:\Windows\system32\sr-Latn-CS
2010-01-29 16:56:44 ----D---- C:\Windows\system32\sl-SI
2010-01-29 16:56:44 ----D---- C:\Windows\system32\sk-SK
2010-01-29 16:56:44 ----D---- C:\Windows\system32\ru-RU
2010-01-29 16:56:44 ----D---- C:\Windows\system32\ro-RO
2010-01-29 16:56:44 ----D---- C:\Windows\system32\pt-PT
2010-01-29 16:56:44 ----D---- C:\Windows\system32\pt-BR
2010-01-29 16:56:44 ----D---- C:\Windows\system32\pl-PL
2010-01-29 16:56:44 ----D---- C:\Windows\system32\nl-NL
2010-01-29 16:56:44 ----D---- C:\Windows\system32\nb-NO
2010-01-29 16:56:44 ----D---- C:\Windows\system32\lv-LV
2010-01-29 16:56:44 ----D---- C:\Windows\system32\lt-LT
2010-01-29 16:56:44 ----D---- C:\Windows\system32\ko-KR
2010-01-29 16:56:44 ----D---- C:\Windows\system32\ja-JP
2010-01-29 16:56:44 ----D---- C:\Windows\system32\it-IT
2010-01-29 16:56:44 ----D---- C:\Windows\system32\hu-HU
2010-01-29 16:56:44 ----D---- C:\Windows\system32\hr-HR
2010-01-29 16:56:44 ----D---- C:\Windows\system32\he-IL
2010-01-29 16:56:44 ----D---- C:\Windows\system32\fr-FR
2010-01-29 16:56:44 ----D---- C:\Windows\system32\fi-FI
2010-01-29 16:56:44 ----D---- C:\Windows\system32\et-EE
2010-01-29 16:56:44 ----D---- C:\Windows\system32\es-ES
2010-01-29 16:56:44 ----D---- C:\Windows\system32\en-US
2010-01-29 16:56:44 ----D---- C:\Windows\system32\el-GR
2010-01-29 16:56:44 ----D---- C:\Windows\system32\de-DE
2010-01-29 16:56:44 ----D---- C:\Windows\system32\da-DK
2010-01-29 16:56:44 ----D---- C:\Windows\system32\bg-BG
2010-01-29 16:56:44 ----D---- C:\Windows\system32\ar-SA
2010-01-28 19:08:40 ----SHD---- C:\boot
2010-01-28 19:00:48 ----D---- C:\Program Files\Windows Sidebar
2010-01-28 19:00:48 ----D---- C:\Program Files\Windows Media Player
2010-01-28 19:00:48 ----D---- C:\Program Files\Windows Calendar
2010-01-28 19:00:48 ----D---- C:\Program Files\Movie Maker
2010-01-28 19:00:47 ----D---- C:\Program Files\Windows Photo Gallery
2010-01-28 19:00:47 ----D---- C:\Program Files\Windows Collaboration
2010-01-28 19:00:47 ----D---- C:\Program Files\Common Files\System
2010-01-28 19:00:44 ----D---- C:\Windows\servicing
2010-01-28 19:00:44 ----D---- C:\Program Files\Windows Defender
2010-01-28 19:00:35 ----D---- C:\Windows\IME
2010-01-28 19:00:34 ----D---- C:\Windows\system32\XPSViewer
2010-01-28 19:00:34 ----D---- C:\Windows\system32\oobe
2010-01-28 19:00:33 ----D---- C:\Windows\system32\migration
2010-01-28 19:00:32 ----D---- C:\Windows\system32\AdvancedInstallers
2010-01-28 19:00:31 ----D---- C:\Windows\system32\setup
2010-01-28 19:00:31 ----D---- C:\Windows\system32\cs
2010-01-28 19:00:27 ----D---- C:\Windows\system32\SLUI
2010-01-28 19:00:26 ----D---- C:\Windows\system32\manifeststore
2010-01-28 19:00:23 ----D---- C:\Windows\system32\migwiz
2010-01-28 18:59:48 ----D---- C:\Windows\system32\Boot
2010-01-27 22:03:12 ----D---- C:\Program Files\Microsoft Works
2010-01-27 18:44:38 ----D---- C:\Windows\pss
2010-01-27 17:51:15 ----D---- C:\Windows\en-US
2010-01-27 17:51:07 ----D---- C:\Windows\system32\en
2010-01-27 17:17:29 ----D---- C:\Users\Esperian\AppData\Roaming\Adobe
2010-01-27 16:43:32 ----D---- C:\Program Files\HP
2010-01-27 16:39:16 ----D---- C:\Windows\twain_32
2010-01-27 16:10:14 ----D---- C:\Windows\PolicyDefinitions
2010-01-27 14:30:11 ----D---- C:\Windows\SoftwareDistribution
2010-01-27 07:39:51 ----D---- C:\Windows\Logs
2010-01-27 01:30:56 ----A---- C:\Windows\CSUP.txt

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2009-06-18 142832]
R1 sp_rsdrv2;Spyware Terminator Driver 2; \??\C:\Windows\system32\drivers\sp_rsdrv2.sys [2010-01-26 142592]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-18 12672]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2007-10-18 8704]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2009-09-05 1183744]
R3 CmBatt;Ovladač baterie Microsoft ACPI Control Method Battery; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-21 14208]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT32.sys [2008-10-03 222208]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2007-06-18 16768]
R3 HpqRemHid;HP Remote Control HID Device; C:\Windows\system32\DRIVERS\HpqRemHid.sys [2007-07-11 7168]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2007-11-01 985600]
R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2007-11-01 208896]
R3 MpNWMon;Microsoft Malware Protection Network Driver; C:\Windows\system32\DRIVERS\MpNWMon.sys [2009-06-18 42480]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvmfdx32.sys [2008-01-29 1042464]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda32v.sys [2008-05-03 42528]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2009-07-23 9791072]
R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2008-04-24 14848]
R3 RTSTOR;Realtek USB 2.0 Card Reader; C:\Windows\system32\drivers\RTSTOR.SYS [2008-04-21 62976]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2008-04-17 199344]
R3 usbvideo;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2007-11-01 661504]
R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-21 11264]
S3 BCM43XV;Broadcom Extensible 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl6.sys [2006-11-02 464384]
S3 Dot4;Ovladač MS IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4.sys [2008-01-21 131584]
S3 Dot4Print;Ovladač třídy tiskárny standardu IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2008-01-21 16384]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2008-01-21 36864]
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2009-08-05 54632]
S3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 HSFHWAZL;HSFHWAZL; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2008-01-21 200704]
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 pwdrvio;pwdrvio; \??\C:\Windows\system32\pwdrvio.sys [2009-11-04 16456]
S3 pwdspio;pwdspio; \??\C:\Windows\system32\pwdspio.sys [2009-11-04 11088]
S3 usbbus;LGE Mobile Composite USB Device; C:\Windows\system32\DRIVERS\lgusbbus.sys [2009-08-21 13056]
S3 UsbDiag;LGE Mobile USB Serial Port; C:\Windows\system32\DRIVERS\lgusbdiag.sys [2009-08-21 20864]
S3 USBModem;LGE Mobile USB Modem; C:\Windows\system32\DRIVERS\lgusbmodem.sys [2009-08-21 24960]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-21 35328]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 HP Health Check Service;HP Health Check Service; c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [2008-04-15 94208]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2008-02-26 73728]
R2 MsMpSvc;@c:\Program Files\Microsoft Security Essentials\MpAsDesc.dll,-241; c:\Program Files\Microsoft Security Essentials\MsMpEng.exe [2009-07-02 17904]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-21 21504]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2009-07-23 211488]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-21 21504]
R2 Recovery Service for Windows;Recovery Service for Windows; C:\Windows\SMINST\BLService.exe [2008-04-25 361808]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared Files\RichVideo.exe [2007-01-09 272024]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-05-19 240512]
R2 sp_rssrv;Spyware Terminator Realtime Shield Service; C:\Program Files\Spyware Terminator\sp_rsser.exe [2010-01-26 488960]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2007-10-18 386560]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2007-06-27 279848]
S2 gupdate1caa5b117bd44c5;Služba Google Update (gupdate1caa5b117bd44c5); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-02-04 133104]
S3 Com4QLBEx;Com4QLBEx; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2008-04-03 193840]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
S3 fsssvc;Služba Windows Live Zabezpečení rodiny; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2009-08-05 704864]
S3 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2008-01-25 148832]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-06-29 800040]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]

-----------------EOF-----------------

pitimir
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 479
Registrován: 18 čer 2008 17:54
Bydliště: Šutrovec
Kontaktovat uživatele:

Re: mozila a vyskakujuce reklamy

#3 Příspěvek od pitimir »

Ahoj, vitaj na fore :welcome:

1) Stiahni GooredFix na plochu. Spust -> "OK". Vytvori sa log, ten posli.


2) Stiahni Kenco (najlepsie na plochu) a dvojklikom spust. Po chvilke by sa ti mal zobrazit log (nachadza sa aj na ploche s nazvom "kenco.log") - ten sem vloz.
P.S.: Ak by program ziadal restart, potvrd ho.


3) Stiahni GMER, rozbal ho na plochu a spust. Program automaticky zacne scan (po jeho skonceni vloz log c. 1) - pokial pri scanovani nieco najde (=vyskoci nejake upozornenie), klik na "NO" a nastavis program podla obrazku:
Obrázek
Klik na "Scan". Po scane klik na "Save" a log c. 2 vloz sem.

Ak nic nenajde (=nevyskoci nic), zaskrtaj vpravo vsetko a spusti scan. Po jeho ukonceni klik na "Copy" a vloz log c. 2.
Ja som skromný, mám len dve veci do podpisu...

1) Chcete pomôcť fóru? Podporte ho_!!

2) Prosím všetkých, ktorí majú problém: :!:
- založte si vlastný topic a do 1. prispevku vložte log z RSIT a presný stručný popis problému.
- bez odporúčania nespúšťajte ŽIADEN iný program nájdený na fóre/internete.
- needitujte a nemažte príspevky.
- dodržujte inštrukcie a nerobte nič naviac (z vlastnej iniciatívy).

esperian26
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 26 úno 2010 16:26

Re: mozila a vyskakujuce reklamy

#4 Příspěvek od esperian26 »

log z gooredfix

GooredFix by jpshortstuff (08.01.10.1)
Log created at 16:50 on 26/02/2010 (Esperian)
Firefox version 3.6 (sk)

========== GooredScan ==========


========== GooredLog ==========

C:\Program Files\Mozilla Firefox\extensions\
{1fb5773a-b865-de68-e5e5-6a85582f658b} [16:45 14/02/2010]
{972ce4c6-7e08-4474-a285-3208198ce6fd} [16:29 26/01/2010]
{B13721C7-F507-4982-B2E5-502A71474FED} [17:28 26/01/2010]

[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"{20a82645-c095-46ed-80e3-08825760534b}"="c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\" [13:47 27/01/2010]
"{4B3803EA-5230-4DC3-A7FC-33638F3D3542}"="C:\Program Files\Crawler\firefox\" [13:32 26/02/2010]

-=E.O.F=-


log z kenco

Kenco by jpshortstuff (31.12.09.1)
Log created at 16:52 on 26/02/2010 (Esperian)

========== Task Unlocker ==========

========== KencoScan ==========

========== C:\Windows\Tasks ==========
GoogleUpdateTaskMachineCore.job -> [15:55 04/02/2010] 996 bytes
GoogleUpdateTaskMachineUA.job -> [15:55 04/02/2010] 1000 bytes
HPCeeScheduleForEsperian.job -> [15:14 07/02/2010] 334 bytes

-=E.O.F=-

pri skenovani cez gmer mi naslo nejaku chybu , tak som ho potom nastavil podla obrazka a spustil scan .. tu je log

GMER 1.0.15.15281 - http://www.gmer.net
Rootkit scan 2010-02-26 17:10:06
Windows 6.0.6002 Service Pack 2
Running: gmer.exe; Driver: C:\Users\Esperian\AppData\Local\Temp\kxlyqkow.sys


---- System - GMER 1.0.15 ----

SSDT \??\C:\Windows\system32\drivers\sp_rsdrv2.sys ZwClose [0x8CFA088E]
SSDT \??\C:\Windows\system32\drivers\sp_rsdrv2.sys ZwCreateFile [0x8CFA00EC]
SSDT \??\C:\Windows\system32\drivers\sp_rsdrv2.sys ZwCreateKey [0x8CF9FDCE]
SSDT \??\C:\Windows\system32\drivers\sp_rsdrv2.sys ZwCreateSection [0x8CFA1938]
SSDT \??\C:\Windows\system32\drivers\sp_rsdrv2.sys ZwDeleteKey [0x8CF9FED8]
SSDT \??\C:\Windows\system32\drivers\sp_rsdrv2.sys ZwDeleteValueKey [0x8CF9FFC2]
SSDT \??\C:\Windows\system32\drivers\sp_rsdrv2.sys ZwLoadDriver [0x8CFA0BBC]
SSDT \??\C:\Windows\system32\drivers\sp_rsdrv2.sys ZwOpenFile [0x8CFA03F4]
SSDT \??\C:\Windows\system32\drivers\sp_rsdrv2.sys ZwSetInformationFile [0x8CFA0526]
SSDT \??\C:\Windows\system32\drivers\sp_rsdrv2.sys ZwSetValueKey [0x8CF9FBFC]
SSDT \??\C:\Windows\system32\drivers\sp_rsdrv2.sys ZwTerminateProcess [0x8CFA0B04]
SSDT \??\C:\Windows\system32\drivers\sp_rsdrv2.sys ZwWriteFile [0x8CFA070C]

---- Devices - GMER 1.0.15 ----

AttachedDevice \Driver\kbdclass \Device\KeyboardClass0 Wdf01000.sys (WDF Dynamic/Microsoft Corporation)

pitimir
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 479
Registrován: 18 čer 2008 17:54
Bydliště: Šutrovec
Kontaktovat uživatele:

Re: mozila a vyskakujuce reklamy

#5 Příspěvek od pitimir »

Super. Dalsi scan a budeme mazat to, co ostane :)

Stiahni ComboFix, najlepsie na plochu. Vypni vsetky otvorene aplikacie, ako aj rezidenty antiviru, antispywaru a firewall. Spust program cez ucet s administratorskymi pravami a postupuj podla instrukcii. Cely sken bude trvat cca 10 minut. Pocas neho moze byt PC restartovane. Log, ktory ComboFix vytvori, najdes na adrese "C:\ComboFix.txt".
Ten vloz sem.

Pozor: Kym ComboFix nevytvori log, na nic neklikat, nic nestlacat !!
Ja som skromný, mám len dve veci do podpisu...

1) Chcete pomôcť fóru? Podporte ho_!!

2) Prosím všetkých, ktorí majú problém: :!:
- založte si vlastný topic a do 1. prispevku vložte log z RSIT a presný stručný popis problému.
- bez odporúčania nespúšťajte ŽIADEN iný program nájdený na fóre/internete.
- needitujte a nemažte príspevky.
- dodržujte inštrukcie a nerobte nič naviac (z vlastnej iniciatívy).

esperian26
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 26 úno 2010 16:26

Re: mozila a vyskakujuce reklamy

#6 Příspěvek od esperian26 »

t&k tu jw log z combofixu

ComboFix 10-02-26.01 - Esperian . 02. 2010 20:02:24.1.2 - x86
Microsoft® Windows Vista™ Home Basic 6.0.6002.2.1250.421.1029.18.1790.1098 [GMT 1:00]
Running from: c:\users\Esperian\Desktop\ComboFix.exe
SP: Spyware Terminator *disabled* (Updated) {55EE49A8-16BE-4601-BBE6-607B7F7317DE}
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\$recycle.bin\S-1-5-21-1272261070-1556258247-3665504125-500
c:\users\Esperian\AppData\Local\Microsoft\Windows\Temporary Internet Files\4f36ce31-4332-8cc7-88ac-8ed1f7599fb5
c:\users\Esperian\AppData\Roaming\.#
c:\windows\system32\0dbfcd86-827d-ea0f-cfa6-5a8c9fbfbfa2.exe
c:\windows\System32\9bde048a-7ed2-a7ef-69ec-5aec1d017869.dll

.
((((((((((((((((((((((((( Files Created from 2010-01-26 to 2010-02-26 )))))))))))))))))))))))))))))))
.

2010-02-26 15:22 . 2010-02-26 15:45 -------- d-----w- C:\rsit
2010-02-26 15:22 . 2010-02-26 15:45 -------- d-----w- c:\program files\trend micro
2010-02-26 13:31 . 2010-02-26 18:01 -------- d-----w- c:\program files\Crawler
2010-02-21 01:27 . 2010-02-21 01:28 -------- d-----w- c:\program files\SopCast
2010-02-18 18:00 . 2010-02-18 18:00 -------- d-----w- C:\72c92e84267b60dea49239
2010-02-16 17:40 . 2010-02-26 14:06 88 --sh--r- c:\windows\system32\55A6E63418.sys
2010-02-16 17:34 . 2010-02-16 17:34 -------- d-----w- c:\programdata\InstallShield
2010-02-16 17:34 . 2010-02-16 17:34 -------- d-----w- c:\users\Esperian\AppData\Roaming\Corel
2010-02-16 17:33 . 2010-02-16 17:33 -------- d-----w- c:\program files\Common Files\Corel
2010-02-16 17:30 . 2010-02-26 14:06 3766 --sha-w- c:\windows\system32\KGyGaAvL.sys
2010-02-16 17:29 . 2010-02-16 17:33 -------- d-----w- c:\program files\Corel
2010-02-14 21:35 . 2010-02-14 21:37 -------- d-----w- c:\users\Esperian\AppData\Local\Microsoft Games
2010-02-14 17:31 . 2005-03-18 14:01 626688 ----a-w- c:\windows\system32\NCTImageFile.dll
2010-02-14 17:31 . 2005-02-22 16:32 312320 ----a-w- c:\windows\system32\NCTVideoView.dll
2010-02-14 17:31 . 2005-06-29 15:28 188416 ----a-w- c:\windows\system32\NCTVideoFile.dll
2010-02-14 17:31 . 2005-07-19 16:53 249856 ----a-w- c:\windows\system32\NCTQuickTimeFile.dll
2010-02-14 17:31 . 2005-05-25 14:24 764416 ----a-w- c:\windows\system32\NCTRMFile.dll
2010-02-14 17:31 . 2005-07-01 17:09 215552 ----a-w- c:\windows\system32\NCTWMVFile.dll
2010-02-14 17:31 . 2005-07-08 17:31 495104 ----a-w- c:\windows\system32\NCTVideoCoreM.dll
2010-02-14 16:46 . 2010-02-14 16:46 -------- d-----w- c:\users\Esperian\AppData\Local\Apple Computer
2010-02-12 17:20 . 2010-02-12 17:26 -------- d-----w- c:\users\Esperian\AppData\Local\ABBYY
2010-02-12 17:20 . 2010-02-12 17:20 -------- d-----w- c:\users\Esperian\AppData\Roaming\ABBYY
2010-02-12 17:16 . 2010-02-12 17:19 -------- d-----w- c:\program files\ABBYY FineReader 8.0 Professional Edition
2010-02-12 17:06 . 2010-02-12 17:06 -------- d-----w- c:\temp\FR80PE
2010-02-12 17:06 . 2010-02-12 17:06 -------- d-----w- C:\temp
2010-02-12 16:17 . 2010-02-26 17:59 -------- d-----w- c:\users\Esperian\Tracing
2010-02-12 16:08 . 2010-02-13 15:00 -------- d-----w- c:\program files\Microsoft Silverlight
2010-02-12 16:07 . 2010-02-12 16:07 -------- dc----w- c:\windows\system32\DRVSTORE
2010-02-12 16:07 . 2009-08-05 21:48 54632 ----a-w- c:\windows\system32\drivers\fssfltr.sys
2010-02-12 16:06 . 2010-02-12 16:06 -------- d-----w- c:\program files\Microsoft Sync Framework
2010-02-12 16:04 . 2006-11-29 12:06 3426072 ----a-w- c:\windows\system32\d3dx9_32.dll
2010-02-12 16:04 . 2010-02-12 16:04 -------- d-----w- c:\program files\Microsoft SQL Server Compact Edition
2010-02-12 16:02 . 2010-02-12 16:08 -------- d-----w- c:\program files\Microsoft
2010-02-12 16:01 . 2010-02-12 16:01 -------- d-----w- c:\program files\Windows Live SkyDrive
2010-02-12 16:01 . 2010-02-12 16:07 -------- d-----w- c:\program files\Windows Live
2010-02-12 15:51 . 2010-02-12 15:51 -------- d-----w- c:\program files\Common Files\Windows Live
2010-02-10 18:59 . 2010-02-12 15:51 -------- d-----w- c:\users\Esperian\AppData\Roaming\foobar2000
2010-02-10 18:58 . 2010-02-10 18:59 -------- d-----w- c:\program files\foobar2000
2010-02-08 20:07 . 2010-02-08 20:07 -------- d-----w- c:\users\Esperian\AppData\Local\Opera
2010-02-08 20:04 . 2010-02-09 11:26 -------- d-----w- c:\program files\Opera
2010-02-07 19:32 . 2010-02-07 19:32 -------- d-----w- c:\users\Esperian\AppData\Roaming\CyberLink
2010-02-07 19:32 . 2010-02-07 19:32 -------- d-----w- c:\users\Public\Recorded TV
2010-02-07 14:54 . 2010-02-07 14:55 -------- d-----w- c:\program files\QuickTime
2010-02-07 14:54 . 2010-02-07 14:54 -------- d-----w- c:\programdata\Apple Computer
2010-02-07 14:53 . 2010-02-07 14:53 -------- d-----w- c:\program files\Common Files\Apple
2010-02-07 14:52 . 2010-02-07 14:52 -------- d-----w- c:\users\Esperian\AppData\Local\Apple
2010-02-07 14:52 . 2010-02-07 14:52 -------- d-----w- c:\program files\Apple Software Update
2010-02-07 14:52 . 2010-02-07 14:52 -------- d-----w- c:\programdata\Apple
2010-02-05 18:05 . 2010-02-05 18:05 -------- d-----w- c:\program files\DIFX
2010-02-05 18:05 . 2010-02-05 18:05 -------- d-----w- c:\users\Esperian\AppData\Local\Downloaded Installations
2010-02-05 18:05 . 2009-05-12 14:53 16896 ----a-w- c:\windows\system32\drivers\FlashUsb.sys
2010-02-05 18:05 . 2010-02-05 18:05 -------- d-----w- c:\program files\infineon
2010-02-05 18:04 . 2009-08-21 01:08 24960 ----a-w- c:\windows\system32\drivers\lgusbmodem.sys
2010-02-05 18:04 . 2009-08-21 01:08 20864 ----a-w- c:\windows\system32\drivers\lgusbdiag.sys
2010-02-05 18:04 . 2009-08-21 01:08 13056 ----a-w- c:\windows\system32\drivers\lgusbbus.sys
2010-02-05 18:03 . 2010-02-05 18:03 -------- d-----w- c:\program files\LG Electronics
2010-02-05 18:02 . 2010-02-05 18:02 -------- d-----w- C:\KP500
2010-02-05 18:01 . 2010-01-15 04:24 59328 ----a-w- c:\programdata\LGMOBILEAX\LGMLauncher.exe
2010-02-05 18:01 . 2006-05-04 07:33 53248 ----a-w- c:\windows\system32\CommonDL.dll
2010-02-05 18:01 . 2010-02-05 01:33 1021888 ----a-w- c:\programdata\LGMOBILEAX\B2C_Client\LGUserCSTool.exe
2010-02-05 18:01 . 2010-02-04 22:18 90112 ----a-w- c:\programdata\LGMOBILEAX\B2C_Client\LGMobileDL.dll
2010-02-05 18:01 . 2010-02-04 22:18 499712 ----a-w- c:\programdata\LGMOBILEAX\B2C_Client\LGMUpgradeDL.dll
2010-02-05 18:01 . 2009-10-06 06:12 24576 ----a-w- c:\programdata\LGMOBILEAX\B2C_Client\LGMobileDLRapi.dll
2010-02-05 18:01 . 2009-11-04 03:57 206792 ----a-w- c:\programdata\LGMOBILEAX\B2C_Client\B2CAppUninstall.exe
2010-02-05 18:01 . 2009-06-15 06:21 182208 ----a-w- c:\programdata\LGMOBILEAX\B2C_Client\B2CNotiAgent.exe
2010-02-05 18:00 . 2010-02-05 18:01 -------- d-----w- c:\programdata\LGMOBILEAX
2010-02-04 19:53 . 2010-02-04 19:53 -------- d-----w- c:\users\Esperian\AppData\Roaming\DivX
2010-02-04 15:46 . 2010-02-04 15:46 -------- d-----w- c:\program files\Common Files\PX Storage Engine
2010-02-04 15:45 . 2010-02-04 15:52 -------- d-----w- c:\users\Esperian\AppData\Local\Google
2010-02-04 15:45 . 2010-02-04 15:47 -------- d-----w- c:\program files\Google
2010-02-04 15:45 . 2010-02-04 15:45 -------- d-----w- c:\program files\Common Files\DivX Shared
2010-02-04 15:45 . 2010-02-04 15:46 -------- d-----w- c:\program files\DivX
2010-01-31 20:20 . 2010-01-31 20:21 -------- d-----w- c:\program files\Paint.NET
2010-01-31 20:19 . 2010-02-24 15:57 -------- d-----w- c:\users\Esperian\AppData\Local\Paint.NET
2010-01-29 15:56 . 2010-01-29 15:56 -------- d-----w- c:\program files\Windows Portable Devices
2010-01-29 15:52 . 2009-09-10 02:00 92672 ----a-w- c:\windows\system32\UIAnimation.dll
2010-01-29 15:52 . 2009-09-10 02:00 1164800 ----a-w- c:\windows\system32\UIRibbonRes.dll
2010-01-29 15:52 . 2009-09-10 02:01 3023360 ----a-w- c:\windows\system32\UIRibbon.dll
2010-01-29 15:50 . 2009-10-01 01:02 30208 ----a-w- c:\windows\system32\WPDShextAutoplay.exe
2010-01-29 15:50 . 2009-10-01 01:02 31232 ----a-w- c:\windows\system32\BthMtpContextHandler.dll
2010-01-29 15:50 . 2009-10-01 01:01 81920 ----a-w- c:\windows\system32\wpdbusenum.dll
2010-01-29 15:50 . 2009-10-01 01:01 60928 ----a-w- c:\windows\system32\PortableDeviceConnectApi.dll
2010-01-29 15:50 . 2009-10-01 01:02 2537472 ----a-w- c:\windows\system32\wpdshext.dll
2010-01-29 15:50 . 2009-10-01 01:01 546816 ----a-w- c:\windows\system32\wpd_ci.dll
2010-01-29 15:50 . 2009-10-01 01:02 334848 ----a-w- c:\windows\system32\PortableDeviceApi.dll
2010-01-29 15:50 . 2009-10-01 01:02 87552 ----a-w- c:\windows\system32\WPDShServiceObj.dll
2010-01-29 15:50 . 2009-10-01 01:01 160256 ----a-w- c:\windows\system32\PortableDeviceTypes.dll
2010-01-29 15:50 . 2009-10-01 01:01 350208 ----a-w- c:\windows\system32\WPDSp.dll
2010-01-29 15:50 . 2009-10-01 01:01 196608 ----a-w- c:\windows\system32\PortableDeviceWMDRM.dll
2010-01-29 15:50 . 2009-10-01 01:01 100864 ----a-w- c:\windows\system32\PortableDeviceClassExtension.dll
2010-01-29 15:49 . 2009-10-08 21:07 4096 ----a-w- c:\windows\system32\oleaccrc.dll
2010-01-29 15:49 . 2009-10-08 21:08 555520 ----a-w- c:\windows\system32\UIAutomationCore.dll
2010-01-29 15:49 . 2009-10-08 21:08 234496 ----a-w- c:\windows\system32\oleacc.dll
2010-01-29 12:05 . 2010-01-29 12:05 -------- d-----w- c:\users\Esperian\AppData\Roaming\Media Player Classic
2010-01-28 17:59 . 2010-01-28 18:00 -------- d-----w- c:\windows\system32\ca-ES
2010-01-28 17:59 . 2010-01-28 18:00 -------- d-----w- c:\windows\system32\eu-ES
2010-01-28 17:59 . 2010-01-28 18:00 -------- d-----w- c:\windows\system32\vi-VN
2010-01-28 17:33 . 2010-01-28 17:33 -------- d-----w- c:\windows\system32\SPReview
2010-01-28 17:16 . 2009-04-10 22:28 928768 ----a-w- c:\windows\system32\scavenge.dll
2010-01-28 17:16 . 2009-04-10 22:27 57856 ----a-w- c:\windows\system32\compcln.exe
2010-01-28 17:04 . 2009-04-10 22:28 595456 ----a-w- c:\windows\system32\schedsvc.dll
2010-01-28 17:03 . 2009-04-10 22:28 332800 ----a-w- c:\windows\system32\msihnd.dll
2010-01-28 17:02 . 2009-04-10 22:28 342528 ----a-w- c:\windows\system32\zipfldr.dll
2010-01-28 16:21 . 2009-08-24 11:36 377344 ----a-w- c:\windows\system32\winhttp.dll
2010-01-28 16:21 . 2009-11-03 19:41 411648 ----a-w- c:\windows\system32\drivers\http.sys
2010-01-28 16:21 . 2009-11-03 21:42 30720 ----a-w- c:\windows\system32\httpapi.dll
2010-01-28 16:21 . 2009-11-03 21:43 24064 ----a-w- c:\windows\system32\nshhttp.dll
2010-01-28 12:41 . 2010-01-28 12:41 -------- d-----w- c:\program files\Common Files\SWF Studio
2010-01-28 12:27 . 2010-01-28 12:46 -------- d-----w- c:\users\Esperian\AppData\Roaming\CianoDock
2010-01-28 12:08 . 2009-06-15 14:52 499712 ----a-w- c:\windows\system32\kerberos.dll
2010-01-28 12:08 . 2009-06-15 14:53 270848 ----a-w- c:\windows\system32\schannel.dll
2010-01-27 20:02 . 2010-01-27 20:02 -------- d-----w- c:\windows\system32\EventProviders

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-02-26 19:00 . 2010-01-26 19:52 -------- d-----w- c:\users\Esperian\AppData\Roaming\Spyware Terminator
2010-02-26 17:59 . 2010-01-26 14:51 32156 ----a-w- c:\programdata\nvModes.dat
2010-02-26 10:53 . 2010-01-26 19:52 -------- d-----w- c:\programdata\Spyware Terminator
2010-02-24 19:28 . 2010-01-27 15:48 -------- d-----w- c:\users\Esperian\AppData\Roaming\Image Zone Express
2010-02-24 12:44 . 2010-01-26 16:15 69968 ----a-w- c:\users\Esperian\AppData\Local\GDIPFONTCACHEV1.DAT
2010-02-24 08:16 . 2010-01-26 16:35 181632 ------w- c:\windows\system32\MpSigStub.exe
2010-02-23 06:40 . 2008-06-06 22:12 590348 ----a-w- c:\windows\system32\perfh005.dat
2010-02-23 06:40 . 2008-06-06 22:12 114900 ----a-w- c:\windows\system32\perfc005.dat
2010-02-16 17:34 . 2008-06-06 12:34 -------- d-----w- c:\program files\Common Files\InstallShield
2010-02-14 17:42 . 2010-02-14 17:30 -------- d-----w- c:\program files\A-one Video Convertor
2010-02-12 15:41 . 2010-01-26 14:57 -------- d-----w- c:\programdata\NVIDIA
2010-02-10 20:08 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail
2010-02-10 15:39 . 2010-01-26 18:23 -------- d-----w- c:\programdata\Microsoft Help
2010-02-07 15:14 . 2010-01-26 16:12 -------- d-----w- c:\users\Esperian\AppData\Roaming\Hewlett-Packard
2010-02-07 15:09 . 2008-06-06 13:54 -------- d-----w- c:\programdata\Hewlett-Packard
2010-02-07 07:53 . 2010-01-26 19:52 -------- d-----w- c:\program files\Spyware Terminator
2010-02-05 18:03 . 2008-06-06 12:34 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-01-31 20:25 . 2010-01-26 18:18 -------- d-----w- c:\users\Esperian\AppData\Roaming\Ahead
2010-01-29 15:56 . 2006-11-02 10:25 665600 ----a-w- c:\windows\inf\drvindex.dat
2010-01-29 15:56 . 2010-01-29 15:56 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_07_00.Wdf
2010-01-28 18:00 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Sidebar
2010-01-28 18:00 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Calendar
2010-01-28 18:00 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Photo Gallery
2010-01-28 18:00 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Collaboration
2010-01-28 18:00 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Defender
2010-01-27 21:03 . 2010-01-26 16:10 -------- d-----w- c:\program files\Microsoft Works
2010-01-27 18:00 . 2010-01-27 17:59 -------- d-----w- c:\program files\Foxit Software
2010-01-27 16:16 . 2010-01-27 16:14 -------- d-----w- c:\program files\K-Lite Codec Pack
2010-01-27 16:15 . 2010-01-27 16:15 -------- d-----w- c:\program files\7-Zip
2010-01-27 15:48 . 2010-01-27 15:48 -------- d-----w- c:\users\Esperian\AppData\Roaming\Printer Info Cache
2010-01-27 15:45 . 2010-01-27 15:41 -------- d-----w- c:\users\Esperian\AppData\Roaming\HP
2010-01-27 15:45 . 2010-01-27 14:48 -------- d-----w- c:\programdata\HP
2010-01-27 15:44 . 2010-01-27 15:32 148928 ----a-w- c:\windows\hpoins19.dat
2010-01-27 15:44 . 2010-01-27 15:44 -------- d-----w- c:\programdata\WEBREG
2010-01-27 15:43 . 2008-06-06 12:54 -------- d-----w- c:\program files\HP
2010-01-27 15:43 . 2010-01-27 15:43 -------- d-----w- c:\programdata\HPSSUPPLY
2010-01-27 15:42 . 2010-01-27 15:38 -------- d-----w- c:\program files\Common Files\HP
2010-01-27 15:39 . 2010-01-27 15:39 -------- d-----w- c:\program files\Common Files\Hewlett-Packard
2010-01-27 15:07 . 2010-01-27 15:06 242577 ----a-w- c:\programdata\HP\Installer\Temp\ENU-Package.exe
2010-01-27 13:30 . 2010-01-27 13:30 -------- d-----w- c:\program files\MSXML 4.0
2010-01-26 19:54 . 2010-01-26 14:56 -------- d-----w- c:\programdata\CyberLink
2010-01-26 19:52 . 2010-01-26 19:52 6144 ----a-w- c:\programdata\Spyware Terminator\sp_rsdel.exe
2010-01-26 19:52 . 2010-01-26 19:52 5632 ----a-w- c:\programdata\Spyware Terminator\fileobjinfo.sys
2010-01-26 19:52 . 2010-01-26 19:52 142592 ----a-w- c:\windows\system32\drivers\sp_rsdrv2.sys
2010-01-26 18:41 . 2010-01-26 18:41 -------- d-----w- c:\program files\Microsoft.NET
2010-01-26 18:20 . 2010-01-26 18:20 -------- d-----w- c:\programdata\LightScribe
2010-01-26 18:17 . 2010-01-26 18:17 -------- d-----w- c:\programdata\Ahead
2010-01-26 18:17 . 2010-01-26 18:13 -------- d-----w- c:\program files\Common Files\Ahead
2010-01-26 18:13 . 2010-01-26 18:13 -------- d-----w- c:\programdata\Nero
2010-01-26 18:13 . 2010-01-26 18:13 -------- d-----w- c:\program files\Nero
2010-01-26 17:39 . 2010-01-26 17:32 -------- d-----w- c:\users\Esperian\AppData\Roaming\Skype
2010-01-26 17:34 . 2010-01-26 17:34 56 ---ha-w- c:\programdata\ezsidmv.dat
2010-01-26 17:34 . 2010-01-26 17:34 -------- d-----w- c:\users\Esperian\AppData\Roaming\skypePM
2010-01-26 17:28 . 2010-01-26 17:27 -------- d-----r- c:\program files\Skype
2010-01-26 17:27 . 2010-01-26 17:27 -------- d-----w- c:\program files\Common Files\Skype
2010-01-26 17:27 . 2010-01-26 17:27 -------- d-----w- c:\programdata\Skype
2010-01-26 17:25 . 2010-01-26 17:22 -------- d-----w- c:\program files\Ares
2010-01-26 17:16 . 2010-01-26 17:10 -------- d-----w- c:\program files\ICQ7.0
2010-01-26 17:16 . 2010-01-26 17:11 -------- d-----w- c:\users\Esperian\AppData\Roaming\ICQ
2010-01-26 17:12 . 2010-01-26 17:12 -------- d-----w- c:\program files\CCleaner
2010-01-26 17:11 . 2010-01-26 17:11 -------- d-----w- c:\program files\ICQ6Toolbar
2010-01-26 17:11 . 2010-01-26 17:11 -------- d-----w- c:\programdata\ICQ
2010-01-26 17:10 . 2010-01-26 17:10 -------- d-----w- c:\program files\Common Files\Stardock
2010-01-26 17:10 . 2010-01-26 17:10 -------- d-----w- c:\program files\Stardock
2010-01-26 17:00 . 2008-06-06 12:37 -------- d-----w- c:\program files\Common Files\Symantec Shared
2010-01-26 16:30 . 2010-01-26 16:30 -------- d-----w- c:\program files\Microsoft Security Essentials
2010-01-26 16:23 . 2008-06-06 12:37 -------- d-----w- c:\programdata\Symantec
2010-01-26 16:15 . 2010-01-26 16:15 -------- d-----w- c:\users\Esperian\AppData\Roaming\Symantec
2010-01-26 16:09 . 2010-01-26 16:09 -------- d-----w- c:\program files\Common Files\Adobe
2010-01-26 16:07 . 2010-01-26 16:07 0 --sha-r- c:\windows\system32\drivers\103C_HP_cNB_Presario CQ50 Notebook PC_Y5335KV_0U_Q2CE8294G1M_E480059-221_4A_I360A_SWistron_V08.36_F.07_T080626_WV2-1_L405_M1790_J160_7AMD_8F31_91.90_#100126_N168C001C;10DE0760_(FQ171EA#AKB)_XMOBILE_CN10_Z_2F.07.MRK
2010-01-26 16:03 . 2010-01-26 16:03 -------- d-sh--we c:\programdata\Plocha
2010-01-26 16:03 . 2010-01-26 16:03 -------- d-sh--we c:\programdata\Oblíbené položky
2010-01-26 16:03 . 2010-01-26 16:03 -------- d-sh--we c:\programdata\Šablony
2010-01-26 16:03 . 2010-01-26 16:03 -------- d-sh--we c:\programdata\Nabídka Start
2010-01-26 16:03 . 2010-01-26 16:03 -------- d-sh--we c:\programdata\Dokumenty
2010-01-26 16:03 . 2010-01-26 16:03 -------- d-sh--we c:\programdata\Data aplikací
2010-01-26 14:55 . 2008-06-06 13:41 -------- d-----w- c:\program files\CyberLink
2010-01-26 14:51 . 2010-01-26 14:51 -------- d-----w- c:\program files\Common Files\LightScribe
2010-01-26 14:49 . 2010-01-26 14:47 -------- d-----w- c:\program files\CONEXANT
2010-01-26 14:47 . 2010-01-26 14:47 -------- d-----w- c:\program files\NetWaiting
2010-01-26 14:46 . 2010-01-26 14:46 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_SynTP_01000.Wdf
2010-01-26 14:46 . 2010-01-26 14:46 -------- d-----w- c:\program files\Synaptics
2010-01-26 14:42 . 2010-01-26 14:40 -------- d-----w- c:\program files\Atheros
2010-01-26 14:40 . 2010-01-26 14:40 -------- d-----w- c:\program files\Cisco
2010-01-26 14:40 . 2010-01-26 14:40 -------- d-----w- c:\programdata\Atheros
2010-01-26 14:36 . 2010-01-26 14:36 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_00_00.Wdf
2010-01-25 12:00 . 2010-02-24 10:36 471552 ----a-w- c:\windows\system32\secproc_isv.dll
2010-01-25 12:00 . 2010-02-24 10:36 152576 ----a-w- c:\windows\system32\secproc_ssp_isv.dll
2010-01-25 12:00 . 2010-02-24 10:36 152064 ----a-w- c:\windows\system32\secproc_ssp.dll
2010-01-25 12:00 . 2010-02-24 10:36 471552 ----a-w- c:\windows\system32\secproc.dll
2010-01-25 11:58 . 2010-02-24 10:36 332288 ----a-w- c:\windows\system32\msdrm.dll
2010-01-25 08:21 . 2010-02-24 10:36 526336 ----a-w- c:\windows\system32\RMActivate_isv.exe
2010-01-25 08:21 . 2010-02-24 10:36 346624 ----a-w- c:\windows\system32\RMActivate_ssp_isv.exe
2010-01-25 08:21 . 2010-02-24 10:36 518144 ----a-w- c:\windows\system32\RMActivate.exe
2010-01-25 08:21 . 2010-02-24 10:36 347136 ----a-w- c:\windows\system32\RMActivate_ssp.exe
2010-01-23 09:26 . 2010-02-24 10:36 2048 ----a-w- c:\windows\system32\tzres.dll
2010-01-06 15:39 . 2010-02-24 10:36 1696256 ----a-w- c:\windows\system32\gameux.dll
2010-01-06 15:38 . 2010-02-24 10:36 28672 ----a-w- c:\windows\system32\Apphlpdm.dll
2010-01-06 15:38 . 2010-02-24 10:36 173056 ----a-w- c:\windows\AppPatch\AcXtrnal.dll
2010-01-06 15:38 . 2010-02-24 10:36 542720 ----a-w- c:\windows\AppPatch\AcLayers.dll
2008-09-16 17:01 . 2010-01-26 15:28 22 --sha-w- c:\windows\SMINST\HPCD.SYS
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2007-06-27 152872]
"ares"="c:\program files\Ares\Ares.exe" [2010-01-22 1011712]
"SpywareTerminatorUpdate"="c:\program files\Spyware Terminator\SpywareTerminatorUpdate.exe" [2010-01-26 3037696]
"msnmsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [2009-07-26 3883840]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2008-04-17 1049896]
"Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-21 1008184]
"MSSE"="c:\program files\Microsoft Security Essentials\msseces.exe" [2009-09-13 1048392]
"NeroFilterCheck"="c:\program files\Common Files\Ahead\Lib\NeroCheck.exe" [2007-03-01 153136]
"SpywareTerminator"="c:\program files\Spyware Terminator\SpywareTerminatorShield.exe" [2010-01-26 2166784]
"B2C_AGENT"="c:\programdata\LGMOBILEAX\B2C_Client\B2CNotiAgent.exe" [2009-06-15 182208]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2009-11-10 417792]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-07-23 13797920]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"

[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
backup=c:\windows\pss\HP Digital Imaging Monitor.lnk.CommonStartup
backupExtension=.CommonStartup

[HKLM\~\startupfolder\C:^Users^Esperian^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Stardock ObjectDock.lnk]
path=c:\users\Esperian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Stardock ObjectDock.lnk
backup=c:\windows\pss\Stardock ObjectDock.lnk.Startup
backupExtension=.Startup

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2007-05-11 12:06 40048 ----a-w- c:\program files\Adobe\Reader 8.0\Reader\reader_sl.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ares]
2010-01-22 21:57 1011712 ----a-w- c:\program files\Ares\Ares.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Health Check Scheduler]
2008-04-15 11:42 70912 ----a-w- c:\program files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
2006-12-10 20:52 49152 ----a-w- c:\program files\HP\HP Software Update\hpwuSchd2.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hpWirelessAssistant]
2008-04-15 12:51 488752 ----a-w- c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ICQ]
2010-01-12 22:53 133368 ----a-w- c:\program files\ICQ7.0\ICQ.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
2008-02-26 13:08 2289664 ----a-w- c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QlbCtrl.exe]
2008-03-14 06:45 202032 ----a-w- c:\program files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QPService]
2008-04-01 17:31 468264 ----a-w- c:\program files\HP\QuickPlay\QPService.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
2009-10-09 12:11 25623336 ----a-r- c:\program files\Skype\Phone\Skype.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpywareTerminatorUpdate]
2010-01-26 19:52 3037696 ----a-w- c:\program files\Spyware Terminator\SpywareTerminatorUpdate.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2008-02-22 02:25 144784 ----a-w- c:\program files\Java\jre1.6.0_05\bin\jusched.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UCam_Menu]
2007-12-24 14:55 222504 ------w- c:\program files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"VistaSp2"=hex(b):cb,63,83,be,44,a0,ca,01

R1 sp_rsdrv2;Spyware Terminator Driver 2;c:\windows\System32\drivers\sp_rsdrv2.sys [26. 1. 2010 20:52 142592]
R2 Recovery Service for Windows;Recovery Service for Windows;c:\windows\SMINST\BLService.exe [6. 6. 2008 14:57 361808]
R3 MpNWMon;Microsoft Malware Protection Network Driver;c:\windows\System32\drivers\MpNWMon.sys [18. 6. 2009 18:48 42480]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\System32\drivers\nvhda32v.sys [3. 5. 2008 13:39 42528]
S2 gupdate1caa5b117bd44c5;Služba Google Update (gupdate1caa5b117bd44c5);c:\program files\Google\Update\GoogleUpdate.exe [4. 2. 2010 16:45 133104]
S3 Com4QLBEx;Com4QLBEx;c:\program files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [6. 6. 2008 14:05 193840]
S3 fssfltr;FssFltr;c:\windows\System32\drivers\fssfltr.sys [12. 2. 2010 17:07 54632]
S3 fsssvc;Služba Windows Live Zabezpečení rodiny;c:\program files\Windows Live\Family Safety\fsssvc.exe [5. 8. 2009 22:48 704864]
S3 pwdrvio;pwdrvio;c:\windows\System32\pwdrvio.sys [27. 1. 2010 19:00 16456]
S3 pwdspio;pwdspio;c:\windows\System32\pwdspio.sys [27. 1. 2010 19:00 11088]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceNoNetwork REG_MULTI_SZ PLA DPS BFE mpssvc
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache

[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2008-02-26 13:06 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
Contents of the 'Scheduled Tasks' folder

2010-02-26 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-04 15:45]

2010-02-26 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-04 15:45]

2010-02-18 c:\windows\Tasks\HPCeeScheduleForEsperian.job
- c:\program files\hewlett-packard\sdp\ceement\HPCEE.exe [2008-06-06 13:14]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.dymasearch.com/
mStart Page = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=cs_sk&c=83&bd=Presario&pf=cnnb
IE: Crawler Search - tbr:iemenu
IE: E&xportovať do programu Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
Handler: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - c:\progra~1\Crawler\ctbr.dll
FF - ProfilePath - c:\users\Esperian\AppData\Roaming\Mozilla\Firefox\Profiles\febeprof.esp\
FF - prefs.js: browser.search.defaulturl - hxxp://www.dymasearch.com/search.php?src=tops&q=
FF - prefs.js: browser.startup.homepage - hxxp://sk.start3.mozilla.com/firefox?client=firefox-a&rls=org.mozilla:sk:official
FF - prefs.js: keyword.URL - hxxp://www.dymasearch.com/search.php?src=tops&q=
FF - component: c:\program files\Crawler\firefox\components\xcomm.dll
FF - component: c:\program files\Crawler\firefox\components\xshared.dll
FF - component: c:\program files\Crawler\firefox\components\xsupport.dll
FF - component: c:\program files\Crawler\firefox\components\xwsg.dll
FF - component: c:\program files\Mozilla Firefox\extensions\{1fb5773a-b865-de68-e5e5-6a85582f658b}\components\25f7c71a-81f5-54f7-72ca-8d35d7df2128.dll
FF - component: c:\program files\Mozilla Firefox\extensions\{B13721C7-F507-4982-B2E5-502A71474FED}\components\NPComponent.dll
FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dll
FF - plugin: c:\program files\Google\Update\1.2.183.17\npGoogleOneClick8.dll
FF - plugin: c:\program files\Microsoft\Office Live\npOLW.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
FF - plugin: c:\program files\Windows Live\Photo Gallery\NPWLPG.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

---- FIREFOX POLICIES ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.debug", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("html5.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".sk");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
.
- - - - ORPHANS REMOVED - - - -

BHO-{0ac89f42-45b9-ab77-69e4-ce07c5a93ec7} - c:\windows\system32\9bde048a-7ed2-a7ef-69ec-5aec1d017869.dll
MSConfigStartUp-MsnMsgr - c:\program files\MSN Messenger\MsnMsgr.Exe
AddRemove-0dbfcd86-827d-ea0f-cfa6-5a8c9fbfbfa2 - c:\windows\system32\0dbfcd86-827d-ea0f-cfa6-5a8c9fbfbfa2.exe



**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-02-26 20:11
Windows 6.0.6002 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
Completion time: 2010-02-26 20:13:53
ComboFix-quarantined-files.txt 2010-02-26 19:13

Pre-Run: Volných bajtů: 62 058 225 664
Post-Run: Volných bajtů: 61 845 843 968

- - End Of File - - CB1A06AA800A491ED64D4ABA1B23C099

esperian26
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 26 úno 2010 16:26

Re: mozila a vyskakujuce reklamy

#7 Příspěvek od esperian26 »


Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: mozila a vyskakujuce reklamy

#8 Příspěvek od motji »

Hezké odpoledne, záskok za kolegu :)

:arrow: Pokud nemáte, přesuňte Combofix na plochu
-otevřete si Poznámkový blok
-Do něj zkopírujte text z tohoto okénka

Kód: Vybrat vše


Collect::
c:\windows\system32\55A6E63418.sys

Dirlook::
c:\temp\FR80PE

DDS::
uStart Page = hxxp://www.dymasearch.com/
mStart Page = hxxp://ie.redirect.hp.com/svs/rdr?TYPE= ... io&pf=cnnb

Firefox::
FF - ProfilePath - c:\users\Esperian\AppData\Roaming\Mozilla\Firefox\Profiles\febeprof.esp\
FF - prefs.js: browser.search.defaulturl - hxxp://www.dymasearch.com/search.php?src=tops&q=
FF - prefs.js: keyword.URL - hxxp://www.dymasearch.com/search.php?src=tops&q=

-uložte Vámi vytvořený TXT soubor jako CFScript.txt na plochu
-po uložení uchopte vámi vytvořený skript levým myšítkem a -přesuňte ho nad ikonu Combofixu, kde ho upustíte:

Obrázek


-po aplikaci na Vás vypadne další log,vložte ho sem

Upozornění : může se stát, že po aplikaci skriptu a restartu Windows nenaběhnou, v tom případě znovu restartujte a přitom mačkejte F8, pak zvolte Poslední známou funkční konfiguraci
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

esperian26
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 26 úno 2010 16:26

Re: mozila a vyskakujuce reklamy

#9 Příspěvek od esperian26 »

tak tu je ten novy log

ComboFix 10-02-26.01 - Esperian . 03. 2010 18:31:25.2.2 - x86
Microsoft® Windows Vista™ Home Basic 6.0.6002.2.1250.421.1029.18.1790.878 [GMT 1:00]
Running from: c:\users\Esperian\Desktop\ComboFix.exe
Command switches used :: c:\users\Esperian\Desktop\CFScript.txt
SP: Spyware Terminator *disabled* (Updated) {55EE49A8-16BE-4601-BBE6-607B7F7317DE}
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}

file zipped: c:\windows\system32\55A6E63418.sys
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\windows\system32\55A6E63418.sys

.
((((((((((((((((((((((((( Files Created from 2010-02-01 to 2010-03-01 )))))))))))))))))))))))))))))))
.

2010-03-01 17:43 . 2010-03-01 17:43 -------- d-----w- c:\users\Esperian\AppData\Local\temp
2010-03-01 17:43 . 2010-03-01 17:43 -------- d-----w- c:\users\Public\AppData\Local\temp
2010-03-01 17:43 . 2010-03-01 17:43 -------- d-----w- c:\users\Default\AppData\Local\temp
2010-02-26 15:22 . 2010-02-26 15:45 -------- d-----w- C:\rsit
2010-02-26 15:22 . 2010-02-26 15:45 -------- d-----w- c:\program files\trend micro
2010-02-26 13:31 . 2010-03-01 17:22 -------- d-----w- c:\program files\Crawler
2010-02-21 01:27 . 2010-02-21 01:28 -------- d-----w- c:\program files\SopCast
2010-02-18 18:00 . 2010-02-18 18:00 -------- d-----w- C:\72c92e84267b60dea49239
2010-02-16 17:34 . 2010-02-16 17:34 -------- d-----w- c:\programdata\InstallShield
2010-02-16 17:34 . 2010-02-16 17:34 -------- d-----w- c:\users\Esperian\AppData\Roaming\Corel
2010-02-16 17:33 . 2010-02-16 17:33 -------- d-----w- c:\program files\Common Files\Corel
2010-02-16 17:30 . 2010-02-28 20:57 3766 --sha-w- c:\windows\system32\KGyGaAvL.sys
2010-02-16 17:29 . 2010-02-16 17:33 -------- d-----w- c:\program files\Corel
2010-02-14 21:35 . 2010-02-14 21:37 -------- d-----w- c:\users\Esperian\AppData\Local\Microsoft Games
2010-02-14 17:31 . 2005-03-18 14:01 626688 ----a-w- c:\windows\system32\NCTImageFile.dll
2010-02-14 17:31 . 2005-02-22 16:32 312320 ----a-w- c:\windows\system32\NCTVideoView.dll
2010-02-14 17:31 . 2005-06-29 15:28 188416 ----a-w- c:\windows\system32\NCTVideoFile.dll
2010-02-14 17:31 . 2005-07-19 16:53 249856 ----a-w- c:\windows\system32\NCTQuickTimeFile.dll
2010-02-14 17:31 . 2005-05-25 14:24 764416 ----a-w- c:\windows\system32\NCTRMFile.dll
2010-02-14 17:31 . 2005-07-01 17:09 215552 ----a-w- c:\windows\system32\NCTWMVFile.dll
2010-02-14 17:31 . 2005-07-08 17:31 495104 ----a-w- c:\windows\system32\NCTVideoCoreM.dll
2010-02-14 16:46 . 2010-02-14 16:46 -------- d-----w- c:\users\Esperian\AppData\Local\Apple Computer
2010-02-12 17:20 . 2010-02-12 17:26 -------- d-----w- c:\users\Esperian\AppData\Local\ABBYY
2010-02-12 17:20 . 2010-02-12 17:20 -------- d-----w- c:\users\Esperian\AppData\Roaming\ABBYY
2010-02-12 17:16 . 2010-02-12 17:19 -------- d-----w- c:\program files\ABBYY FineReader 8.0 Professional Edition
2010-02-12 17:06 . 2010-02-12 17:06 -------- d-----w- c:\temp\FR80PE
2010-02-12 17:06 . 2010-02-12 17:06 -------- d-----w- C:\temp
2010-02-12 16:17 . 2010-03-01 17:09 -------- d-----w- c:\users\Esperian\Tracing
2010-02-12 16:08 . 2010-02-13 15:00 -------- d-----w- c:\program files\Microsoft Silverlight
2010-02-12 16:07 . 2010-02-12 16:07 -------- dc----w- c:\windows\system32\DRVSTORE
2010-02-12 16:07 . 2009-08-05 21:48 54632 ----a-w- c:\windows\system32\drivers\fssfltr.sys
2010-02-12 16:06 . 2010-02-12 16:06 -------- d-----w- c:\program files\Microsoft Sync Framework
2010-02-12 16:04 . 2006-11-29 12:06 3426072 ----a-w- c:\windows\system32\d3dx9_32.dll
2010-02-12 16:04 . 2010-02-12 16:04 -------- d-----w- c:\program files\Microsoft SQL Server Compact Edition
2010-02-12 16:02 . 2010-02-12 16:08 -------- d-----w- c:\program files\Microsoft
2010-02-12 16:01 . 2010-02-12 16:01 -------- d-----w- c:\program files\Windows Live SkyDrive
2010-02-12 16:01 . 2010-02-12 16:07 -------- d-----w- c:\program files\Windows Live
2010-02-12 15:51 . 2010-02-12 15:51 -------- d-----w- c:\program files\Common Files\Windows Live
2010-02-10 18:59 . 2010-02-12 15:51 -------- d-----w- c:\users\Esperian\AppData\Roaming\foobar2000
2010-02-10 18:58 . 2010-02-10 18:59 -------- d-----w- c:\program files\foobar2000
2010-02-08 20:07 . 2010-02-08 20:07 -------- d-----w- c:\users\Esperian\AppData\Local\Opera
2010-02-08 20:04 . 2010-02-09 11:26 -------- d-----w- c:\program files\Opera
2010-02-07 19:32 . 2010-02-07 19:32 -------- d-----w- c:\users\Esperian\AppData\Roaming\CyberLink
2010-02-07 19:32 . 2010-02-07 19:32 -------- d-----w- c:\users\Public\Recorded TV
2010-02-07 14:54 . 2010-02-07 14:55 -------- d-----w- c:\program files\QuickTime
2010-02-07 14:54 . 2010-02-07 14:54 -------- d-----w- c:\programdata\Apple Computer
2010-02-07 14:53 . 2010-02-07 14:53 -------- d-----w- c:\program files\Common Files\Apple
2010-02-07 14:52 . 2010-02-07 14:52 -------- d-----w- c:\users\Esperian\AppData\Local\Apple
2010-02-07 14:52 . 2010-02-07 14:52 -------- d-----w- c:\program files\Apple Software Update
2010-02-07 14:52 . 2010-02-07 14:52 -------- d-----w- c:\programdata\Apple
2010-02-05 18:05 . 2010-02-05 18:05 -------- d-----w- c:\program files\DIFX
2010-02-05 18:05 . 2010-02-05 18:05 -------- d-----w- c:\users\Esperian\AppData\Local\Downloaded Installations
2010-02-05 18:05 . 2009-05-12 14:53 16896 ----a-w- c:\windows\system32\drivers\FlashUsb.sys
2010-02-05 18:05 . 2010-02-05 18:05 -------- d-----w- c:\program files\infineon
2010-02-05 18:04 . 2009-08-21 01:08 24960 ----a-w- c:\windows\system32\drivers\lgusbmodem.sys
2010-02-05 18:04 . 2009-08-21 01:08 20864 ----a-w- c:\windows\system32\drivers\lgusbdiag.sys
2010-02-05 18:04 . 2009-08-21 01:08 13056 ----a-w- c:\windows\system32\drivers\lgusbbus.sys
2010-02-05 18:03 . 2010-02-05 18:03 -------- d-----w- c:\program files\LG Electronics
2010-02-05 18:02 . 2010-02-05 18:02 -------- d-----w- C:\KP500
2010-02-05 18:01 . 2010-01-15 04:24 59328 ----a-w- c:\programdata\LGMOBILEAX\LGMLauncher.exe
2010-02-05 18:01 . 2006-05-04 07:33 53248 ----a-w- c:\windows\system32\CommonDL.dll
2010-02-05 18:01 . 2010-02-05 01:33 1021888 ----a-w- c:\programdata\LGMOBILEAX\B2C_Client\LGUserCSTool.exe
2010-02-05 18:01 . 2010-02-04 22:18 90112 ----a-w- c:\programdata\LGMOBILEAX\B2C_Client\LGMobileDL.dll
2010-02-05 18:01 . 2010-02-04 22:18 499712 ----a-w- c:\programdata\LGMOBILEAX\B2C_Client\LGMUpgradeDL.dll
2010-02-05 18:01 . 2009-10-06 06:12 24576 ----a-w- c:\programdata\LGMOBILEAX\B2C_Client\LGMobileDLRapi.dll
2010-02-05 18:01 . 2009-11-04 03:57 206792 ----a-w- c:\programdata\LGMOBILEAX\B2C_Client\B2CAppUninstall.exe
2010-02-05 18:01 . 2009-06-15 06:21 182208 ----a-w- c:\programdata\LGMOBILEAX\B2C_Client\B2CNotiAgent.exe
2010-02-05 18:00 . 2010-02-05 18:01 -------- d-----w- c:\programdata\LGMOBILEAX
2010-02-04 19:53 . 2010-02-04 19:53 -------- d-----w- c:\users\Esperian\AppData\Roaming\DivX
2010-02-04 15:46 . 2010-02-04 15:46 -------- d-----w- c:\program files\Common Files\PX Storage Engine
2010-02-04 15:45 . 2010-02-04 15:52 -------- d-----w- c:\users\Esperian\AppData\Local\Google
2010-02-04 15:45 . 2010-02-04 15:47 -------- d-----w- c:\program files\Google
2010-02-04 15:45 . 2010-02-04 15:45 -------- d-----w- c:\program files\Common Files\DivX Shared
2010-02-04 15:45 . 2010-02-04 15:46 -------- d-----w- c:\program files\DivX
2010-01-31 20:20 . 2010-01-31 20:21 -------- d-----w- c:\program files\Paint.NET
2010-01-31 20:19 . 2010-02-24 15:57 -------- d-----w- c:\users\Esperian\AppData\Local\Paint.NET

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-03-01 17:16 . 2010-01-27 15:48 -------- d-----w- c:\users\Esperian\AppData\Roaming\Image Zone Express
2010-03-01 17:07 . 2010-01-26 14:51 32156 ----a-w- c:\programdata\nvModes.dat
2010-02-27 20:26 . 2010-01-26 19:52 -------- d-----w- c:\users\Esperian\AppData\Roaming\Spyware Terminator
2010-02-26 10:53 . 2010-01-26 19:52 -------- d-----w- c:\programdata\Spyware Terminator
2010-02-24 12:44 . 2010-01-26 16:15 69968 ----a-w- c:\users\Esperian\AppData\Local\GDIPFONTCACHEV1.DAT
2010-02-24 08:16 . 2010-01-26 16:35 181632 ------w- c:\windows\system32\MpSigStub.exe
2010-02-23 06:40 . 2008-06-06 22:12 590348 ----a-w- c:\windows\system32\perfh005.dat
2010-02-23 06:40 . 2008-06-06 22:12 114900 ----a-w- c:\windows\system32\perfc005.dat
2010-02-16 17:34 . 2008-06-06 12:34 -------- d-----w- c:\program files\Common Files\InstallShield
2010-02-14 17:42 . 2010-02-14 17:30 -------- d-----w- c:\program files\A-one Video Convertor
2010-02-12 15:41 . 2010-01-26 14:57 -------- d-----w- c:\programdata\NVIDIA
2010-02-10 20:08 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail
2010-02-10 15:39 . 2010-01-26 18:23 -------- d-----w- c:\programdata\Microsoft Help
2010-02-07 15:14 . 2010-01-26 16:12 -------- d-----w- c:\users\Esperian\AppData\Roaming\Hewlett-Packard
2010-02-07 15:09 . 2008-06-06 13:54 -------- d-----w- c:\programdata\Hewlett-Packard
2010-02-07 07:53 . 2010-01-26 19:52 -------- d-----w- c:\program files\Spyware Terminator
2010-02-05 18:03 . 2008-06-06 12:34 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-01-31 20:25 . 2010-01-26 18:18 -------- d-----w- c:\users\Esperian\AppData\Roaming\Ahead
2010-01-29 15:56 . 2010-01-29 15:56 -------- d-----w- c:\program files\Windows Portable Devices
2010-01-29 15:56 . 2006-11-02 10:25 665600 ----a-w- c:\windows\inf\drvindex.dat
2010-01-29 15:56 . 2010-01-29 15:56 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_07_00.Wdf
2010-01-29 12:05 . 2010-01-29 12:05 -------- d-----w- c:\users\Esperian\AppData\Roaming\Media Player Classic
2010-01-28 18:00 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Sidebar
2010-01-28 18:00 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Calendar
2010-01-28 18:00 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Photo Gallery
2010-01-28 18:00 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Collaboration
2010-01-28 18:00 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Defender
2010-01-28 12:46 . 2010-01-28 12:27 -------- d-----w- c:\users\Esperian\AppData\Roaming\CianoDock
2010-01-28 12:41 . 2010-01-28 12:41 -------- d-----w- c:\program files\Common Files\SWF Studio
2010-01-27 21:03 . 2010-01-26 16:10 -------- d-----w- c:\program files\Microsoft Works
2010-01-27 18:00 . 2010-01-27 17:59 -------- d-----w- c:\program files\Foxit Software
2010-01-27 16:16 . 2010-01-27 16:14 -------- d-----w- c:\program files\K-Lite Codec Pack
2010-01-27 16:15 . 2010-01-27 16:15 -------- d-----w- c:\program files\7-Zip
2010-01-27 15:48 . 2010-01-27 15:48 -------- d-----w- c:\users\Esperian\AppData\Roaming\Printer Info Cache
2010-01-27 15:45 . 2010-01-27 15:41 -------- d-----w- c:\users\Esperian\AppData\Roaming\HP
2010-01-27 15:45 . 2010-01-27 14:48 -------- d-----w- c:\programdata\HP
2010-01-27 15:44 . 2010-01-27 15:32 148928 ----a-w- c:\windows\hpoins19.dat
2010-01-27 15:44 . 2010-01-27 15:44 -------- d-----w- c:\programdata\WEBREG
2010-01-27 15:43 . 2008-06-06 12:54 -------- d-----w- c:\program files\HP
2010-01-27 15:43 . 2010-01-27 15:43 -------- d-----w- c:\programdata\HPSSUPPLY
2010-01-27 15:42 . 2010-01-27 15:38 -------- d-----w- c:\program files\Common Files\HP
2010-01-27 15:39 . 2010-01-27 15:39 -------- d-----w- c:\program files\Common Files\Hewlett-Packard
2010-01-27 15:07 . 2010-01-27 15:06 242577 ----a-w- c:\programdata\HP\Installer\Temp\ENU-Package.exe
2010-01-27 13:30 . 2010-01-27 13:30 -------- d-----w- c:\program files\MSXML 4.0
2010-01-26 19:54 . 2010-01-26 14:56 -------- d-----w- c:\programdata\CyberLink
2010-01-26 19:52 . 2010-01-26 19:52 6144 ----a-w- c:\programdata\Spyware Terminator\sp_rsdel.exe
2010-01-26 19:52 . 2010-01-26 19:52 5632 ----a-w- c:\programdata\Spyware Terminator\fileobjinfo.sys
2010-01-26 19:52 . 2010-01-26 19:52 142592 ----a-w- c:\windows\system32\drivers\sp_rsdrv2.sys
2010-01-26 18:41 . 2010-01-26 18:41 -------- d-----w- c:\program files\Microsoft.NET
2010-01-26 18:20 . 2010-01-26 18:20 -------- d-----w- c:\programdata\LightScribe
2010-01-26 18:17 . 2010-01-26 18:17 -------- d-----w- c:\programdata\Ahead
2010-01-26 18:17 . 2010-01-26 18:13 -------- d-----w- c:\program files\Common Files\Ahead
2010-01-26 18:13 . 2010-01-26 18:13 -------- d-----w- c:\programdata\Nero
2010-01-26 18:13 . 2010-01-26 18:13 -------- d-----w- c:\program files\Nero
2010-01-26 17:39 . 2010-01-26 17:32 -------- d-----w- c:\users\Esperian\AppData\Roaming\Skype
2010-01-26 17:34 . 2010-01-26 17:34 56 ---ha-w- c:\programdata\ezsidmv.dat
2010-01-26 17:34 . 2010-01-26 17:34 -------- d-----w- c:\users\Esperian\AppData\Roaming\skypePM
2010-01-26 17:28 . 2010-01-26 17:27 -------- d-----r- c:\program files\Skype
2010-01-26 17:27 . 2010-01-26 17:27 -------- d-----w- c:\program files\Common Files\Skype
2010-01-26 17:27 . 2010-01-26 17:27 -------- d-----w- c:\programdata\Skype
2010-01-26 17:25 . 2010-01-26 17:22 -------- d-----w- c:\program files\Ares
2010-01-26 17:16 . 2010-01-26 17:10 -------- d-----w- c:\program files\ICQ7.0
2010-01-26 17:16 . 2010-01-26 17:11 -------- d-----w- c:\users\Esperian\AppData\Roaming\ICQ
2010-01-26 17:12 . 2010-01-26 17:12 -------- d-----w- c:\program files\CCleaner
2010-01-26 17:11 . 2010-01-26 17:11 -------- d-----w- c:\program files\ICQ6Toolbar
2010-01-26 17:11 . 2010-01-26 17:11 -------- d-----w- c:\programdata\ICQ
2010-01-26 17:10 . 2010-01-26 17:10 -------- d-----w- c:\program files\Common Files\Stardock
2010-01-26 17:10 . 2010-01-26 17:10 -------- d-----w- c:\program files\Stardock
2010-01-26 17:00 . 2008-06-06 12:37 -------- d-----w- c:\program files\Common Files\Symantec Shared
2010-01-26 16:30 . 2010-01-26 16:30 -------- d-----w- c:\program files\Microsoft Security Essentials
2010-01-26 16:23 . 2008-06-06 12:37 -------- d-----w- c:\programdata\Symantec
2010-01-26 16:15 . 2010-01-26 16:15 -------- d-----w- c:\users\Esperian\AppData\Roaming\Symantec
2010-01-26 16:09 . 2010-01-26 16:09 -------- d-----w- c:\program files\Common Files\Adobe
2010-01-26 16:07 . 2010-01-26 16:07 0 --sha-r- c:\windows\system32\drivers\103C_HP_cNB_Presario CQ50 Notebook PC_Y5335KV_0U_Q2CE8294G1M_E480059-221_4A_I360A_SWistron_V08.36_F.07_T080626_WV2-1_L405_M1790_J160_7AMD_8F31_91.90_#100126_N168C001C;10DE0760_(FQ171EA#AKB)_XMOBILE_CN10_Z_2F.07.MRK
2010-01-26 16:03 . 2010-01-26 16:03 -------- d-sh--we c:\programdata\Plocha
2010-01-26 16:03 . 2010-01-26 16:03 -------- d-sh--we c:\programdata\Oblíbené položky
2010-01-26 16:03 . 2010-01-26 16:03 -------- d-sh--we c:\programdata\Šablony
2010-01-26 16:03 . 2010-01-26 16:03 -------- d-sh--we c:\programdata\Nabídka Start
2010-01-26 16:03 . 2010-01-26 16:03 -------- d-sh--we c:\programdata\Dokumenty
2010-01-26 16:03 . 2010-01-26 16:03 -------- d-sh--we c:\programdata\Data aplikací
2010-01-26 14:55 . 2008-06-06 13:41 -------- d-----w- c:\program files\CyberLink
2010-01-26 14:51 . 2010-01-26 14:51 -------- d-----w- c:\program files\Common Files\LightScribe
2010-01-26 14:49 . 2010-01-26 14:47 -------- d-----w- c:\program files\CONEXANT
2010-01-26 14:47 . 2010-01-26 14:47 -------- d-----w- c:\program files\NetWaiting
2010-01-26 14:46 . 2010-01-26 14:46 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_SynTP_01000.Wdf
2010-01-26 14:46 . 2010-01-26 14:46 -------- d-----w- c:\program files\Synaptics
2010-01-26 14:42 . 2010-01-26 14:40 -------- d-----w- c:\program files\Atheros
2010-01-26 14:40 . 2010-01-26 14:40 -------- d-----w- c:\program files\Cisco
2010-01-26 14:40 . 2010-01-26 14:40 -------- d-----w- c:\programdata\Atheros
2010-01-26 14:36 . 2010-01-26 14:36 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_00_00.Wdf
2010-01-25 12:00 . 2010-02-24 10:36 471552 ----a-w- c:\windows\system32\secproc_isv.dll
2010-01-25 12:00 . 2010-02-24 10:36 152576 ----a-w- c:\windows\system32\secproc_ssp_isv.dll
2010-01-25 12:00 . 2010-02-24 10:36 152064 ----a-w- c:\windows\system32\secproc_ssp.dll
2010-01-25 12:00 . 2010-02-24 10:36 471552 ----a-w- c:\windows\system32\secproc.dll
2010-01-25 11:58 . 2010-02-24 10:36 332288 ----a-w- c:\windows\system32\msdrm.dll
2010-01-25 08:21 . 2010-02-24 10:36 526336 ----a-w- c:\windows\system32\RMActivate_isv.exe
2010-01-25 08:21 . 2010-02-24 10:36 346624 ----a-w- c:\windows\system32\RMActivate_ssp_isv.exe
2010-01-25 08:21 . 2010-02-24 10:36 518144 ----a-w- c:\windows\system32\RMActivate.exe
2010-01-25 08:21 . 2010-02-24 10:36 347136 ----a-w- c:\windows\system32\RMActivate_ssp.exe
2010-01-23 09:26 . 2010-02-24 10:36 2048 ----a-w- c:\windows\system32\tzres.dll
2008-09-16 17:01 . 2010-01-26 15:28 22 --sha-w- c:\windows\SMINST\HPCD.SYS
.

(((((((((((((((((((((((((((((((((((((((((((( Look )))))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
---- Directory of c:\temp\FR80PE ----

2010-02-12 17:06 . 2005-10-21 10:45 1338368 ----a-w- c:\temp\FR80PE\ABBYY FineReader 8.0 Professional Edition.msi
2010-02-12 17:06 . 2005-10-20 06:13 139264 ----a-w- c:\temp\FR80PE\1058.mst
2010-02-12 17:06 . 2005-10-20 06:13 95232 ----a-w- c:\temp\FR80PE\1055.mst
2010-02-12 17:06 . 2005-10-20 06:13 96256 ----a-w- c:\temp\FR80PE\1051.mst
2010-02-12 17:06 . 2005-10-20 06:13 154624 ----a-w- c:\temp\FR80PE\1049.mst
2010-02-12 17:06 . 2005-10-20 06:13 99328 ----a-w- c:\temp\FR80PE\1045.mst
2010-02-12 17:06 . 2005-10-20 06:13 100864 ----a-w- c:\temp\FR80PE\1038.mst
2010-02-12 17:06 . 2005-10-20 06:13 3584 ----a-w- c:\temp\FR80PE\1033.mst
2010-02-12 17:06 . 2005-10-20 06:13 101376 ----a-w- c:\temp\FR80PE\1029.mst
2010-02-12 17:06 . 2005-10-20 06:13 146432 ----a-w- c:\temp\FR80PE\1026.mst
2010-02-12 17:06 . 2005-10-19 22:10 13027 ----a-w- c:\temp\FR80PE\ReadMe\Readme_Ukrainian.htm
2010-02-12 17:06 . 2005-10-19 22:10 10094 ----a-w- c:\temp\FR80PE\ReadMe\Readme_Turkish.htm
2010-02-12 17:06 . 2005-10-19 22:10 11894 ----a-w- c:\temp\FR80PE\ReadMe\Readme_Slovak.htm
2010-02-12 17:06 . 2005-10-19 22:10 13169 ----a-w- c:\temp\FR80PE\ReadMe\Readme_Russian.htm
2010-02-12 17:06 . 2005-10-19 22:10 12486 ----a-w- c:\temp\FR80PE\ReadMe\Readme_Polish.htm
2010-02-12 17:06 . 2005-10-19 22:10 12083 ----a-w- c:\temp\FR80PE\ReadMe\Readme_Hungarian.htm
2010-02-12 17:06 . 2005-10-19 22:10 11569 ----a-w- c:\temp\FR80PE\ReadMe\Readme_English.htm
2010-02-12 17:06 . 2005-10-19 22:09 13083 ----a-w- c:\temp\FR80PE\ReadMe\Readme_Czech.htm
2010-02-12 17:06 . 2005-10-19 22:09 13490 ----a-w- c:\temp\FR80PE\ReadMe\Readme_Bulgarian.htm
2010-02-12 17:06 . 2005-10-20 06:06 128 ----a-w- c:\temp\FR80PE\FineReader 8.0\www.abbyy.com.url
2010-02-12 17:06 . 2005-10-20 00:07 145248 ----a-w- c:\temp\FR80PE\FineReader 8.0\Univers.amm
2010-02-12 17:06 . 2005-10-20 00:07 62214 ----a-w- c:\temp\FR80PE\FineReader 8.0\Univers.amd
2010-02-12 17:06 . 2005-10-20 01:28 389319 ----a-w- c:\temp\FR80PE\FineReader 8.0\Underlin.str
2010-02-12 17:06 . 2005-10-19 22:12 344951 ----a-w- c:\temp\FR80PE\FineReader 8.0\Underlin.ptc
2010-02-12 17:06 . 2005-10-19 22:12 860827 ----a-w- c:\temp\FR80PE\FineReader 8.0\Underlin.pat
2010-02-12 17:06 . 2005-10-20 00:07 401008 ----a-w- c:\temp\FR80PE\FineReader 8.0\Ukrain.amm
2010-02-12 17:06 . 2005-10-20 00:07 1801310 ----a-w- c:\temp\FR80PE\FineReader 8.0\Ukrain.amd
2010-02-12 17:06 . 2005-10-20 01:28 238587 ----a-w- c:\temp\FR80PE\FineReader 8.0\Typewrit.str
2010-02-12 17:06 . 2005-10-19 22:12 334243 ----a-w- c:\temp\FR80PE\FineReader 8.0\Typewrit.pts
2010-02-12 17:06 . 2005-10-19 22:12 163297 ----a-w- c:\temp\FR80PE\FineReader 8.0\Typewrit.ptc
2010-02-12 17:06 . 2005-10-19 22:12 582395 ----a-w- c:\temp\FR80PE\FineReader 8.0\Typewrit.pat
2010-02-12 17:06 . 2005-10-20 02:48 271662 ----a-w- c:\temp\FR80PE\FineReader 8.0\Tutorial4.chm
2010-02-12 17:06 . 2005-10-20 02:48 266923 ----a-w- c:\temp\FR80PE\FineReader 8.0\Tutorial24.chm
2010-02-12 17:06 . 2005-10-20 02:47 272139 ----a-w- c:\temp\FR80PE\FineReader 8.0\Tutorial23.chm
2010-02-12 17:06 . 2005-10-20 02:48 272213 ----a-w- c:\temp\FR80PE\FineReader 8.0\Tutorial17.chm
2010-02-12 17:06 . 2005-10-20 02:47 272637 ----a-w- c:\temp\FR80PE\FineReader 8.0\Tutorial16.chm
2010-02-12 17:06 . 2005-10-20 02:48 270857 ----a-w- c:\temp\FR80PE\FineReader 8.0\Tutorial15.chm
2010-02-12 17:06 . 2005-10-20 02:48 272715 ----a-w- c:\temp\FR80PE\FineReader 8.0\Tutorial14.chm
2010-02-12 17:06 . 2005-10-20 02:47 272032 ----a-w- c:\temp\FR80PE\FineReader 8.0\Tutorial1.chm
2010-02-12 17:06 . 2005-10-20 02:47 267872 ----a-w- c:\temp\FR80PE\FineReader 8.0\Tutorial0.chm
2010-02-12 17:06 . 2005-10-20 00:07 1068192 ----a-w- c:\temp\FR80PE\FineReader 8.0\Turkish.amm
2010-02-12 17:06 . 2005-10-20 00:07 1655138 ----a-w- c:\temp\FR80PE\FineReader 8.0\Turkish.amd
2010-02-12 17:06 . 2005-10-20 00:09 405504 ----a-w- c:\temp\FR80PE\FineReader 8.0\TRS.dll
2010-02-12 17:06 . 2005-10-20 02:02 13824 ----a-w- c:\temp\FR80PE\FineReader 8.0\TrigrammsInstaller.exe
2010-02-12 17:06 . 2005-10-20 00:49 565248 ----a-w- c:\temp\FR80PE\FineReader 8.0\Synthesis.dll
2010-02-12 17:06 . 2005-02-22 16:18 101 ----a-w- c:\temp\FR80PE\FineReader 8.0\Support\SYLFAEN.REG
2010-02-12 17:06 . 2005-07-22 21:20 40960 ----a-w- c:\temp\FR80PE\FineReader 8.0\Support\Ainfo23.dll
2010-02-12 17:06 . 2005-07-22 20:04 57344 ----a-w- c:\temp\FR80PE\FineReader 8.0\Support\Ainfo1.dll
2010-02-12 17:06 . 2005-07-22 20:13 57344 ----a-w- c:\temp\FR80PE\FineReader 8.0\Support\Ainfo0.dll
2010-02-12 17:06 . 2005-08-26 16:28 160 ----a-w- c:\temp\FR80PE\FineReader 8.0\Support\ainfo.inf
2010-02-12 17:06 . 2005-07-26 18:12 774144 ----a-w- c:\temp\FR80PE\FineReader 8.0\Support\Ainfo.exe
2010-02-12 17:06 . 2002-01-23 15:15 2514890 ----a-w- c:\temp\FR80PE\FineReader 8.0\StdFonts.psa
2010-02-12 17:06 . 2005-03-23 15:02 1446336 ----a-w- c:\temp\FR80PE\FineReader 8.0\StdFonts.mtr
2010-02-12 17:06 . 2005-10-20 00:50 69632 ----a-w- c:\temp\FR80PE\FineReader 8.0\Splrt.dll
2010-02-12 17:06 . 2005-10-19 21:19 9107 ----a-w- c:\temp\FR80PE\FineReader 8.0\SndToWP9.wcm
2010-02-12 17:06 . 2005-10-19 21:19 8402 ----a-w- c:\temp\FR80PE\FineReader 8.0\SndToWp8.wcm
2010-02-12 17:06 . 2005-10-19 21:19 8401 ----a-w- c:\temp\FR80PE\FineReader 8.0\SndToWp7.wcm
2010-02-12 17:06 . 2005-10-19 21:19 10358 ----a-w- c:\temp\FR80PE\FineReader 8.0\SndToWP12.wcm
2010-02-12 17:06 . 2005-10-19 21:19 10406 ----a-w- c:\temp\FR80PE\FineReader 8.0\SndToWP11.wcm
2010-02-12 17:06 . 2005-10-19 21:19 10406 ----a-w- c:\temp\FR80PE\FineReader 8.0\SndToWP10.wcm
2010-02-12 17:06 . 2005-10-20 00:06 64284 ----a-w- c:\temp\FR80PE\FineReader 8.0\Sloven.amm
2010-02-12 17:06 . 2005-10-20 00:06 524590 ----a-w- c:\temp\FR80PE\FineReader 8.0\Sloven.amd
2010-02-12 17:06 . 2005-10-20 00:06 92833 ----a-w- c:\temp\FR80PE\FineReader 8.0\Slovak.amm
2010-02-12 17:06 . 2005-10-20 00:06 1104240 ----a-w- c:\temp\FR80PE\FineReader 8.0\Slovak.amd
2010-02-12 17:06 . 2005-10-20 02:34 5472256 ----a-w- c:\temp\FR80PE\FineReader 8.0\ShellRes.dll
2010-02-12 17:06 . 2005-10-20 02:38 364544 ----a-w- c:\temp\FR80PE\FineReader 8.0\Shell4.dll
2010-02-12 17:06 . 2005-10-20 02:42 380928 ----a-w- c:\temp\FR80PE\FineReader 8.0\Shell24.dll
2010-02-12 17:06 . 2005-10-20 02:39 356352 ----a-w- c:\temp\FR80PE\FineReader 8.0\Shell23.dll
2010-02-12 17:06 . 2005-10-20 02:41 389120 ----a-w- c:\temp\FR80PE\FineReader 8.0\Shell17.dll
2010-02-12 17:06 . 2005-10-20 02:40 348160 ----a-w- c:\temp\FR80PE\FineReader 8.0\Shell16.dll
2010-02-12 17:06 . 2005-10-20 02:38 348160 ----a-w- c:\temp\FR80PE\FineReader 8.0\Shell15.dll
2010-02-12 17:06 . 2005-10-20 02:40 348160 ----a-w- c:\temp\FR80PE\FineReader 8.0\Shell14.dll
2010-02-12 17:06 . 2005-10-20 02:39 364544 ----a-w- c:\temp\FR80PE\FineReader 8.0\Shell1.dll
2010-02-12 17:06 . 2005-10-20 02:34 335872 ----a-w- c:\temp\FR80PE\FineReader 8.0\Shell0.dll
2010-02-12 17:06 . 2005-10-20 02:34 11264 ----a-w- c:\temp\FR80PE\FineReader 8.0\ScreenshotReaderRes.dll
2010-02-12 17:06 . 2005-10-20 02:38 11776 ----a-w- c:\temp\FR80PE\FineReader 8.0\ScreenshotReader4.dll
2010-02-12 17:06 . 2005-10-20 02:42 11264 ----a-w- c:\temp\FR80PE\FineReader 8.0\ScreenshotReader24.dll
2010-02-12 17:06 . 2005-10-20 02:39 11776 ----a-w- c:\temp\FR80PE\FineReader 8.0\ScreenshotReader23.dll
2010-02-12 17:06 . 2005-10-20 02:41 11776 ----a-w- c:\temp\FR80PE\FineReader 8.0\ScreenshotReader17.dll
2010-02-12 17:06 . 2005-10-20 02:40 11776 ----a-w- c:\temp\FR80PE\FineReader 8.0\ScreenshotReader16.dll
2010-02-12 17:06 . 2005-10-20 02:38 11264 ----a-w- c:\temp\FR80PE\FineReader 8.0\ScreenshotReader15.dll
2010-02-12 17:06 . 2005-10-20 02:40 11264 ----a-w- c:\temp\FR80PE\FineReader 8.0\ScreenshotReader14.dll
2010-02-12 17:06 . 2005-10-20 02:39 11776 ----a-w- c:\temp\FR80PE\FineReader 8.0\ScreenshotReader1.dll
2010-02-12 17:06 . 2005-10-20 02:34 11264 ----a-w- c:\temp\FR80PE\FineReader 8.0\ScreenshotReader0.dll
2010-02-12 17:06 . 2005-10-20 02:32 348160 ----a-w- c:\temp\FR80PE\FineReader 8.0\ScreenshotReader.exe
2010-02-12 17:06 . 2000-10-04 14:08 69632 ----a-w- c:\temp\FR80PE\FineReader 8.0\Scan\Twain\TWUNK_32.EXE
2010-02-12 17:06 . 2000-10-04 14:08 48560 ----a-w- c:\temp\FR80PE\FineReader 8.0\Scan\Twain\TWUNK_16.EXE
2010-02-12 17:06 . 2000-10-04 14:07 77312 ----a-w- c:\temp\FR80PE\FineReader 8.0\Scan\Twain\TWAIN_32.DLL
2010-02-12 17:06 . 2000-10-04 14:08 87392 ----a-w- c:\temp\FR80PE\FineReader 8.0\Scan\Twain\TWAIN.DLL
2010-02-12 17:06 . 2005-10-19 22:32 19728 ----a-w- c:\temp\FR80PE\FineReader 8.0\Scan\scanners.dat
2010-02-12 17:06 . 2005-10-20 02:38 102400 ----a-w- c:\temp\FR80PE\FineReader 8.0\Scan\ScanMan4.dll
2010-02-12 17:06 . 2005-10-20 02:42 98304 ----a-w- c:\temp\FR80PE\FineReader 8.0\Scan\ScanMan24.dll
2010-02-12 17:06 . 2005-10-20 02:39 98304 ----a-w- c:\temp\FR80PE\FineReader 8.0\Scan\ScanMan23.dll
2010-02-12 17:06 . 2005-10-20 02:41 98304 ----a-w- c:\temp\FR80PE\FineReader 8.0\Scan\ScanMan17.dll
2010-02-12 17:06 . 2005-10-20 02:40 98304 ----a-w- c:\temp\FR80PE\FineReader 8.0\Scan\ScanMan16.dll
2010-02-12 17:06 . 2005-10-20 02:38 98304 ----a-w- c:\temp\FR80PE\FineReader 8.0\Scan\ScanMan15.dll
2010-02-12 17:06 . 2005-10-20 02:40 98304 ----a-w- c:\temp\FR80PE\FineReader 8.0\Scan\ScanMan14.dll
2010-02-12 17:06 . 2005-10-20 02:39 102400 ----a-w- c:\temp\FR80PE\FineReader 8.0\Scan\ScanMan1.dll
2010-02-12 17:06 . 2005-10-20 02:34 98304 ----a-w- c:\temp\FR80PE\FineReader 8.0\Scan\ScanMan0.dll
2010-02-12 17:06 . 2005-10-20 00:12 1527808 ----a-w- c:\temp\FR80PE\FineReader 8.0\Scan\ScanMan.exe
2010-02-12 17:06 . 2005-10-20 00:06 1407974 ----a-w- c:\temp\FR80PE\FineReader 8.0\Russian.amm
2010-02-12 17:06 . 2005-10-20 00:06 2672776 ----a-w- c:\temp\FR80PE\FineReader 8.0\Russian.amd
2010-02-12 17:06 . 2004-10-28 08:47 684 ----a-w- c:\temp\FR80PE\FineReader 8.0\Resource\Font\zy______.pfm
2010-02-12 17:06 . 2004-10-28 08:47 96418 ----a-w- c:\temp\FR80PE\FineReader 8.0\Resource\Font\zy______.pfb
2010-02-12 17:06 . 2004-10-28 08:47 7248 ----a-w- c:\temp\FR80PE\FineReader 8.0\Resource\Font\zy______.mmm
2010-02-12 17:06 . 2004-10-28 08:47 683 ----a-w- c:\temp\FR80PE\FineReader 8.0\Resource\Font\zx______.pfm
2010-02-12 17:06 . 2004-10-28 08:47 75573 ----a-w- c:\temp\FR80PE\FineReader 8.0\Resource\Font\zx______.pfb
2010-02-12 17:06 . 2004-10-28 08:47 7248 ----a-w- c:\temp\FR80PE\FineReader 8.0\Resource\Font\zx______.mmm
2010-02-12 17:06 . 2004-10-28 08:47 672 ----a-w- c:\temp\FR80PE\FineReader 8.0\Resource\Font\sy______.pfm
2010-02-12 17:06 . 2004-10-28 08:47 34705 ----a-w- c:\temp\FR80PE\FineReader 8.0\Resource\Font\sy______.pfb
2010-02-12 17:06 . 2004-10-28 08:47 35448 ----a-w- c:\temp\FR80PE\FineReader 8.0\Resource\Font\CourierStd.otf
2010-02-12 17:06 . 2004-10-28 08:47 36824 ----a-w- c:\temp\FR80PE\FineReader 8.0\Resource\Font\CourierStd-Oblique.otf
2010-02-12 17:06 . 2004-10-28 08:47 36496 ----a-w- c:\temp\FR80PE\FineReader 8.0\Resource\Font\CourierStd-BoldOblique.otf
2010-02-12 17:06 . 2004-10-28 08:47 35188 ----a-w- c:\temp\FR80PE\FineReader 8.0\Resource\Font\CourierStd-Bold.otf
2010-02-12 17:06 . 2004-10-28 08:47 89660 ----a-w- c:\temp\FR80PE\FineReader 8.0\Resource\Font\AdobePiStd.otf
2010-02-12 17:06 . 2004-10-28 08:47 1249 ----a-w- c:\temp\FR80PE\FineReader 8.0\Resource\Cmap\Identity-V
2010-02-12 17:06 . 2004-10-28 08:47 6716 ----a-w- c:\temp\FR80PE\FineReader 8.0\Resource\Cmap\Identity-H
2010-02-12 17:06 . 2005-10-20 00:44 126976 ----a-w- c:\temp\FR80PE\FineReader 8.0\RegExp.dll
2010-02-12 17:06 . 2005-10-20 01:58 28213248 ----a-w- c:\temp\FR80PE\FineReader 8.0\RecPage.dll
2010-02-12 17:06 . 2005-10-20 00:46 270336 ----a-w- c:\temp\FR80PE\FineReader 8.0\Recognizer.dll
2010-02-12 17:06 . 2005-10-20 01:28 149295 ----a-w- c:\temp\FR80PE\FineReader 8.0\Printer.str
2010-02-12 17:06 . 2005-10-20 01:27 64837 ----a-w- c:\temp\FR80PE\FineReader 8.0\Printer.spt
2010-02-12 17:06 . 2005-10-19 22:12 377627 ----a-w- c:\temp\FR80PE\FineReader 8.0\Printer.pts
2010-02-12 17:06 . 2005-10-19 22:12 139499 ----a-w- c:\temp\FR80PE\FineReader 8.0\Printer.ptc
2010-02-12 17:06 . 2005-10-19 22:12 678543 ----a-w- c:\temp\FR80PE\FineReader 8.0\Printer.pat
2010-02-12 17:06 . 2005-10-20 00:06 174246 ----a-w- c:\temp\FR80PE\FineReader 8.0\Polish.amm
2010-02-12 17:06 . 2005-10-20 00:06 1502998 ----a-w- c:\temp\FR80PE\FineReader 8.0\Polish.amd
2010-02-12 17:06 . 2005-08-05 13:45 44633 ----a-w- c:\temp\FR80PE\FineReader 8.0\PhoneContacts.csv
2010-02-12 17:06 . 2005-10-20 00:45 929792 ----a-w- c:\temp\FR80PE\FineReader 8.0\PDFReader.dll
2010-02-12 17:06 . 2005-02-14 19:38 5013504 ----a-w- c:\temp\FR80PE\FineReader 8.0\PDFL70.dll
2010-02-12 17:06 . 2005-03-28 17:09 9834 ----a-w- c:\temp\FR80PE\FineReader 8.0\Pascal.amd
2010-02-12 17:06 . 2005-10-19 22:12 17711 ----a-w- c:\temp\FR80PE\FineReader 8.0\Part.pts
2010-02-12 17:06 . 2005-10-19 22:12 199 ----a-w- c:\temp\FR80PE\FineReader 8.0\Part.ptc
2010-02-12 17:06 . 2005-10-19 22:12 30546 ----a-w- c:\temp\FR80PE\FineReader 8.0\Part.pat
2010-02-12 17:06 . 2005-05-19 17:19 1038 ----a-w- c:\temp\FR80PE\FineReader 8.0\Numbers.amd
2010-02-12 17:06 . 2005-10-20 01:27 449811 ----a-w- c:\temp\FR80PE\FineReader 8.0\Normal.str
2010-02-12 17:06 . 2005-10-20 01:22 157208 ----a-w- c:\temp\FR80PE\FineReader 8.0\Normal.spt
2010-02-12 17:06 . 2005-10-19 22:12 764274 ----a-w- c:\temp\FR80PE\FineReader 8.0\Normal.pts
2010-02-12 17:06 . 2005-10-19 22:12 303455 ----a-w- c:\temp\FR80PE\FineReader 8.0\Normal.ptc
2010-02-12 17:06 . 2005-10-19 22:12 8374 ----a-w- c:\temp\FR80PE\FineReader 8.0\Normal.pdi
2010-02-12 17:06 . 2005-10-19 22:12 1656368 ----a-w- c:\temp\FR80PE\FineReader 8.0\Normal.pat
2010-02-12 17:06 . 2003-02-21 04:42 348160 ----a-w- c:\temp\FR80PE\FineReader 8.0\msvcr71.dll
2010-02-12 17:06 . 2005-10-19 23:32 135168 ----a-w- c:\temp\FR80PE\FineReader 8.0\MorphoRes4.dll
2010-02-12 17:06 . 2005-10-19 23:32 131072 ----a-w- c:\temp\FR80PE\FineReader 8.0\MorphoRes24.dll
2010-02-12 17:06 . 2005-10-19 23:31 131072 ----a-w- c:\temp\FR80PE\FineReader 8.0\MorphoRes23.dll
2010-02-12 17:06 . 2005-10-19 23:31 131072 ----a-w- c:\temp\FR80PE\FineReader 8.0\MorphoRes17.dll
2010-02-12 17:06 . 2005-10-19 23:31 131072 ----a-w- c:\temp\FR80PE\FineReader 8.0\MorphoRes16.dll
2010-02-12 17:06 . 2005-10-19 23:31 139264 ----a-w- c:\temp\FR80PE\FineReader 8.0\MorphoRes15.dll
2010-02-12 17:06 . 2005-10-19 23:31 131072 ----a-w- c:\temp\FR80PE\FineReader 8.0\MorphoRes14.dll
2010-02-12 17:06 . 2005-10-19 23:31 135168 ----a-w- c:\temp\FR80PE\FineReader 8.0\MorphoRes1.dll
2010-02-12 17:06 . 2005-10-19 23:31 131072 ----a-w- c:\temp\FR80PE\FineReader 8.0\MorphoRes0.dll
2010-02-12 17:06 . 2005-10-19 23:38 696320 ----a-w- c:\temp\FR80PE\FineReader 8.0\Morphology.dll
2010-02-12 17:06 . 2000-10-05 17:36 360531 ----a-w- c:\temp\FR80PE\FineReader 8.0\litgen.dll
2010-02-12 17:06 . 2003-06-26 17:56 6130 ----a-w- c:\temp\FR80PE\FineReader 8.0\License_JasPer.txt
2010-02-12 17:06 . 2005-10-19 23:30 5320704 ----a-w- c:\temp\FR80PE\FineReader 8.0\Langinfo.dll
2010-02-12 17:06 . 2005-01-24 09:58 561152 ----a-w- c:\temp\FR80PE\FineReader 8.0\JP2KLib.dll
2010-02-12 17:06 . 2005-10-20 01:28 392967 ----a-w- c:\temp\FR80PE\FineReader 8.0\Italic.str
2010-02-12 17:06 . 2005-10-19 22:12 695138 ----a-w- c:\temp\FR80PE\FineReader 8.0\Italic.pts
2010-02-12 17:06 . 2005-10-19 22:12 238325 ----a-w- c:\temp\FR80PE\FineReader 8.0\Italic.ptc
2010-02-12 17:06 . 2005-10-19 22:12 1466568 ----a-w- c:\temp\FR80PE\FineReader 8.0\Italic.pat
2010-02-12 17:06 . 2005-10-20 00:43 1142784 ----a-w- c:\temp\FR80PE\FineReader 8.0\Image.dll
2010-02-12 17:06 . 2005-10-20 00:03 676848 ----a-w- c:\temp\FR80PE\FineReader 8.0\Hungar.amm
2010-02-12 17:06 . 2005-10-20 00:04 5545852 ----a-w- c:\temp\FR80PE\FineReader 8.0\Hungar.amd
2010-02-12 17:06 . 2005-10-20 02:38 15872 ----a-w- c:\temp\FR80PE\FineReader 8.0\FRWordZoom4.dll
2010-02-12 17:06 . 2005-10-20 02:42 15360 ----a-w- c:\temp\FR80PE\FineReader 8.0\FRWordZoom24.dll
2010-02-12 17:06 . 2005-10-20 02:39 15872 ----a-w- c:\temp\FR80PE\FineReader 8.0\FRWordZoom23.dll
2010-02-12 17:06 . 2005-10-20 02:41 15872 ----a-w- c:\temp\FR80PE\FineReader 8.0\FRWordZoom17.dll
2010-02-12 17:06 . 2005-10-20 02:40 15360 ----a-w- c:\temp\FR80PE\FineReader 8.0\FRWordZoom16.dll
2010-02-12 17:06 . 2005-10-20 02:38 15872 ----a-w- c:\temp\FR80PE\FineReader 8.0\FRWordZoom15.dll
2010-02-12 17:06 . 2005-10-20 02:40 15360 ----a-w- c:\temp\FR80PE\FineReader 8.0\FRWordZoom14.dll
2010-02-12 17:06 . 2005-10-20 02:39 15360 ----a-w- c:\temp\FR80PE\FineReader 8.0\FRWordZoom1.dll
2010-02-12 17:06 . 2005-10-20 02:34 15360 ----a-w- c:\temp\FR80PE\FineReader 8.0\FRWordZoom0.dll
2010-02-12 17:06 . 2005-10-20 02:32 1032192 ----a-w- c:\temp\FR80PE\FineReader 8.0\FRWordZoom.dll
2010-02-12 17:06 . 2005-03-28 17:02 8957 ----a-w- c:\temp\FR80PE\FineReader 8.0\Fortran.amd
2010-02-12 17:06 . 2005-10-19 23:10 2560 ----a-w- c:\temp\FR80PE\FineReader 8.0\FObjEventSrc.dll
2010-02-12 17:06 . 2005-10-20 02:34 8192 ----a-w- c:\temp\FR80PE\FineReader 8.0\FineUIRes.dll
2010-02-12 17:06 . 2005-10-20 02:38 58368 ----a-w- c:\temp\FR80PE\FineReader 8.0\FineUI4.dll
2010-02-12 17:06 . 2005-10-20 02:42 57344 ----a-w- c:\temp\FR80PE\FineReader 8.0\FineUI24.dll
2010-02-12 17:06 . 2005-10-20 02:39 58880 ----a-w- c:\temp\FR80PE\FineReader 8.0\FineUI23.dll
2010-02-12 17:06 . 2005-10-20 02:41 58880 ----a-w- c:\temp\FR80PE\FineReader 8.0\FineUI17.dll
2010-02-12 17:06 . 2005-10-20 02:40 57856 ----a-w- c:\temp\FR80PE\FineReader 8.0\FineUI16.dll
2010-02-12 17:06 . 2005-10-20 02:38 57856 ----a-w- c:\temp\FR80PE\FineReader 8.0\FineUI15.dll
2010-02-12 17:06 . 2005-10-20 02:40 57856 ----a-w- c:\temp\FR80PE\FineReader 8.0\FineUI14.dll
2010-02-12 17:06 . 2005-10-20 02:39 58368 ----a-w- c:\temp\FR80PE\FineReader 8.0\FineUI1.dll
2010-02-12 17:06 . 2005-10-20 02:34 56832 ----a-w- c:\temp\FR80PE\FineReader 8.0\FineUI0.dll
2010-02-12 17:06 . 2005-10-20 02:03 335872 ----a-w- c:\temp\FR80PE\FineReader 8.0\FineUI.dll
2010-02-12 17:06 . 2005-10-20 02:30 61440 ----a-w- c:\temp\FR80PE\FineReader 8.0\FineSTI.exe
2010-02-12 17:06 . 2005-10-19 22:37 33280 ----a-w- c:\temp\FR80PE\FineReader 8.0\Finereader8.dot
2010-02-12 17:06 . 2005-10-19 22:37 45568 ----a-w- c:\temp\FR80PE\FineReader 8.0\Finereader8.2003.dot
2010-02-12 17:06 . 2005-10-20 02:45 1031112 ----a-w- c:\temp\FR80PE\FineReader 8.0\FineReader4.chm
2010-02-12 17:06 . 2005-10-20 02:46 1018981 ----a-w- c:\temp\FR80PE\FineReader 8.0\FineReader24.chm
2010-02-12 17:06 . 2005-10-20 02:45 1014968 ----a-w- c:\temp\FR80PE\FineReader 8.0\FineReader23.chm
2010-02-12 17:06 . 2005-10-20 02:46 1073598 ----a-w- c:\temp\FR80PE\FineReader 8.0\FineReader17.chm
2010-02-12 17:06 . 2005-10-20 02:45 1060748 ----a-w- c:\temp\FR80PE\FineReader 8.0\FineReader16.chm
2010-02-12 17:06 . 2005-10-20 02:46 1041575 ----a-w- c:\temp\FR80PE\FineReader 8.0\FineReader15.chm
2010-02-12 17:06 . 2005-10-20 02:46 1023281 ----a-w- c:\temp\FR80PE\FineReader 8.0\FineReader14.chm
2010-02-12 17:06 . 2005-10-20 02:45 1029384 ----a-w- c:\temp\FR80PE\FineReader 8.0\FineReader1.chm
2010-02-12 17:06 . 2005-10-20 02:44 976426 ----a-w- c:\temp\FR80PE\FineReader 8.0\FineReader0.chm
2010-02-12 17:06 . 2005-10-20 02:30 2727936 ----a-w- c:\temp\FR80PE\FineReader 8.0\FineReader.exe
2010-02-12 17:06 . 2005-10-06 18:21 3329 ----a-w- c:\temp\FR80PE\FineReader 8.0\FineOCR.txt
2010-02-12 17:06 . 2005-10-20 02:31 217088 ----a-w- c:\temp\FR80PE\FineReader 8.0\FineOCR.exe
2010-02-12 17:06 . 2005-10-19 23:14 372736 ----a-w- c:\temp\FR80PE\FineReader 8.0\FineObj.dll
2010-02-12 17:06 . 2005-10-20 00:37 19968 ----a-w- c:\temp\FR80PE\FineReader 8.0\FineBR.drv
2010-02-12 17:06 . 2005-10-06 13:07 890 ----a-w- c:\temp\FR80PE\FineReader 8.0\Fine.ini
2010-02-12 17:06 . 2005-10-20 02:30 28160 ----a-w- c:\temp\FR80PE\FineReader 8.0\FECMenu.dll
2010-02-12 17:06 . 2005-10-20 01:28 449175 ----a-w- c:\temp\FR80PE\FineReader 8.0\Fax.str
2010-02-12 17:06 . 2005-10-19 22:12 852428 ----a-w- c:\temp\FR80PE\FineReader 8.0\Fax.pts
2010-02-12 17:06 . 2005-10-19 22:12 309930 ----a-w- c:\temp\FR80PE\FineReader 8.0\Fax.ptc
2010-02-12 17:06 . 2005-10-19 22:12 1627054 ----a-w- c:\temp\FR80PE\FineReader 8.0\Fax.pat
2010-02-12 17:06 . 2005-10-20 00:41 2056192 ----a-w- c:\temp\FR80PE\FineReader 8.0\Export.dll
2010-02-12 17:06 . 2005-10-20 00:01 163571 ----a-w- c:\temp\FR80PE\FineReader 8.0\EnglishMedical.amm
2010-02-12 17:06 . 2005-10-20 00:01 188732 ----a-w- c:\temp\FR80PE\FineReader 8.0\EnglishMedical.amd
2010-02-12 17:06 . 2005-10-20 00:01 163571 ----a-w- c:\temp\FR80PE\FineReader 8.0\EnglishLaw.amm
2010-02-12 17:06 . 2005-10-20 00:01 103060 ----a-w- c:\temp\FR80PE\FineReader 8.0\EnglishLaw.amd
2010-02-12 17:06 . 2005-10-20 00:01 163571 ----a-w- c:\temp\FR80PE\FineReader 8.0\English.amm
2010-02-12 17:06 . 2005-10-20 00:01 1058462 ----a-w- c:\temp\FR80PE\FineReader 8.0\English.amd
2010-02-12 17:06 . 2005-10-20 02:38 122880 ----a-w- c:\temp\FR80PE\FineReader 8.0\Engine4.dll
2010-02-12 17:06 . 2005-10-20 02:41 151552 ----a-w- c:\temp\FR80PE\FineReader 8.0\Engine24.dll
2010-02-12 17:06 . 2005-10-20 02:39 122880 ----a-w- c:\temp\FR80PE\FineReader 8.0\Engine23.dll
2010-02-12 17:06 . 2005-10-20 02:41 151552 ----a-w- c:\temp\FR80PE\FineReader 8.0\Engine17.dll
2010-02-12 17:06 . 2005-10-20 02:40 118784 ----a-w- c:\temp\FR80PE\FineReader 8.0\Engine16.dll
2010-02-12 17:06 . 2005-10-20 02:38 118784 ----a-w- c:\temp\FR80PE\FineReader 8.0\Engine15.dll
2010-02-12 17:06 . 2005-10-20 02:40 118784 ----a-w- c:\temp\FR80PE\FineReader 8.0\Engine14.dll
2010-02-12 17:06 . 2005-10-20 02:39 126976 ----a-w- c:\temp\FR80PE\FineReader 8.0\Engine1.dll
2010-02-12 17:06 . 2005-10-20 02:34 118784 ----a-w- c:\temp\FR80PE\FineReader 8.0\Engine0.dll
2010-02-12 17:06 . 2005-10-20 00:37 1257472 ----a-w- c:\temp\FR80PE\FineReader 8.0\Engine.dll
2010-02-12 17:06 . 2005-06-23 16:04 1096544 ----a-w- c:\temp\FR80PE\FineReader 8.0\Demo\DemoPhoto.JPG
2010-02-12 17:06 . 2005-07-28 17:13 1157599 ----a-w- c:\temp\FR80PE\FineReader 8.0\Demo\Demo.pdf
2010-02-12 17:06 . 2005-08-02 11:34 2245586 ----a-w- c:\temp\FR80PE\FineReader 8.0\Demo\0422\DemoImage1.tif
2010-02-12 17:06 . 2005-08-23 15:50 2897224 ----a-w- c:\temp\FR80PE\FineReader 8.0\Demo\041F\DemoImage1.tif
2010-02-12 17:06 . 2005-08-23 14:38 2374084 ----a-w- c:\temp\FR80PE\FineReader 8.0\Demo\041B\DemoImage1.tif
2010-02-12 17:06 . 2005-06-02 15:07 2174830 ----a-w- c:\temp\FR80PE\FineReader 8.0\Demo\0419\DemoImage1.tif
2010-02-12 17:06 . 2005-07-13 10:24 2483468 ----a-w- c:\temp\FR80PE\FineReader 8.0\Demo\0415\DemoImage1.tif
2010-02-12 17:06 . 2005-08-02 14:21 2217944 ----a-w- c:\temp\FR80PE\FineReader 8.0\Demo\040E\DemoImage1.tif
2010-02-12 17:06 . 2005-06-03 12:34 1452664 ----a-w- c:\temp\FR80PE\FineReader 8.0\Demo\0409\DemoImage1.tif
2010-02-12 17:06 . 2005-08-24 10:50 2445904 ----a-w- c:\temp\FR80PE\FineReader 8.0\Demo\0405\DemoImage1.tif
2010-02-12 17:06 . 2005-08-24 10:45 2739016 ----a-w- c:\temp\FR80PE\FineReader 8.0\Demo\0402\DemoImage1.tif
2010-02-12 17:06 . 2005-10-20 00:29 2375680 ----a-w- c:\temp\FR80PE\FineReader 8.0\Da.dll
2010-02-12 17:06 . 2005-10-20 00:00 162029 ----a-w- c:\temp\FR80PE\FineReader 8.0\Czech.amm
2010-02-12 17:06 . 2005-10-20 00:00 2175250 ----a-w- c:\temp\FR80PE\FineReader 8.0\Czech.amd
2010-02-12 17:06 . 2005-07-15 12:36 2995 ----a-w- c:\temp\FR80PE\FineReader 8.0\CountriesRegistration.csv
2010-02-12 17:06 . 2005-02-14 17:29 2166784 ----a-w- c:\temp\FR80PE\FineReader 8.0\CoolType.dll
2010-02-12 17:06 . 2005-03-28 17:02 27204 ----a-w- c:\temp\FR80PE\FineReader 8.0\Cobol.amd
2010-02-12 17:06 . 2005-03-28 17:01 12384 ----a-w- c:\temp\FR80PE\FineReader 8.0\Chemistry.amd
2010-02-12 17:06 . 2005-03-28 17:01 11484 ----a-w- c:\temp\FR80PE\FineReader 8.0\C.amd
2010-02-12 17:06 . 2005-10-20 00:00 69546 ----a-w- c:\temp\FR80PE\FineReader 8.0\Bulgar.amm
2010-02-12 17:06 . 2005-10-20 00:00 675656 ----a-w- c:\temp\FR80PE\FineReader 8.0\Bulgar.amd
2010-02-12 17:06 . 2005-10-20 01:28 426195 ----a-w- c:\temp\FR80PE\FineReader 8.0\Bold.str
2010-02-12 17:06 . 2005-10-19 22:12 207125 ----a-w- c:\temp\FR80PE\FineReader 8.0\Bold.ptc
2010-02-12 17:06 . 2005-10-19 22:12 1175275 ----a-w- c:\temp\FR80PE\FineReader 8.0\Bold.pat
2010-02-12 17:06 . 2005-02-14 17:29 217088 ----a-w- c:\temp\FR80PE\FineReader 8.0\BIBUtils.dll
2010-02-12 17:06 . 2005-02-14 17:29 180224 ----a-w- c:\temp\FR80PE\FineReader 8.0\BIB.dll
2010-02-12 17:06 . 2005-03-28 17:01 11419 ----a-w- c:\temp\FR80PE\FineReader 8.0\Basic.amd
2010-02-12 17:06 . 2005-10-20 00:13 442368 ----a-w- c:\temp\FR80PE\FineReader 8.0\Barcode.dll
2010-02-12 17:06 . 2005-02-14 17:29 151552 ----a-w- c:\temp\FR80PE\FineReader 8.0\AXE8SharedExpat.dll
2010-02-12 17:06 . 2005-02-14 17:29 151552 ----a-w- c:\temp\FR80PE\FineReader 8.0\AXE16SharedExpat.dll
2010-02-12 17:06 . 2005-10-19 23:23 1011712 ----a-w- c:\temp\FR80PE\FineReader 8.0\Awl.dll
2010-02-12 17:06 . 2005-02-14 17:29 258048 ----a-w- c:\temp\FR80PE\FineReader 8.0\ARE.dll
2010-02-12 17:06 . 2005-10-20 00:45 69632 ----a-w- c:\temp\FR80PE\FineReader 8.0\APDFLWrapper.dll
2010-02-12 17:06 . 2005-02-14 17:29 1803264 ----a-w- c:\temp\FR80PE\FineReader 8.0\AGM.dll
2010-02-12 17:06 . 2005-02-14 17:29 450560 ----a-w- c:\temp\FR80PE\FineReader 8.0\AdobeXMP.dll
2010-02-12 17:06 . 2005-02-14 17:29 622592 ----a-w- c:\temp\FR80PE\FineReader 8.0\ACE.dll
2010-02-12 17:06 . 2003-04-21 13:09 245408 ----a-w- c:\temp\FR80PE\unicows.dll
2010-02-12 17:06 . 2005-10-19 22:10 360 ----a-w- c:\temp\FR80PE\setup.ini
2010-02-12 17:06 . 2005-10-19 18:38 356352 ----a-w- c:\temp\FR80PE\setup.exe
2010-02-12 17:06 . 2002-03-11 10:06 1822520 ----a-w- c:\temp\FR80PE\instmsiW.exe


((((((((((((((((((((((((((((( SnapShot@2010-02-26_19.11.32 )))))))))))))))))))))))))))))))))))))))))
.
+ 2010-03-01 17:06 . 2010-03-01 17:06 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2010-02-26 17:58 . 2010-02-26 17:58 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2010-03-01 17:06 . 2010-03-01 17:06 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- 2010-02-26 17:58 . 2010-02-26 17:58 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2007-06-27 152872]
"ares"="c:\program files\Ares\Ares.exe" [2010-01-22 1011712]
"SpywareTerminatorUpdate"="c:\program files\Spyware Terminator\SpywareTerminatorUpdate.exe" [2010-01-26 3037696]
"msnmsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [2009-07-26 3883840]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2008-04-17 1049896]
"Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-21 1008184]
"MSSE"="c:\program files\Microsoft Security Essentials\msseces.exe" [2009-09-13 1048392]
"NeroFilterCheck"="c:\program files\Common Files\Ahead\Lib\NeroCheck.exe" [2007-03-01 153136]
"SpywareTerminator"="c:\program files\Spyware Terminator\SpywareTerminatorShield.exe" [2010-01-26 2166784]
"B2C_AGENT"="c:\programdata\LGMOBILEAX\B2C_Client\B2CNotiAgent.exe" [2009-06-15 182208]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2009-11-10 417792]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-07-23 13797920]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"

[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
backup=c:\windows\pss\HP Digital Imaging Monitor.lnk.CommonStartup
backupExtension=.CommonStartup

[HKLM\~\startupfolder\C:^Users^Esperian^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Stardock ObjectDock.lnk]
path=c:\users\Esperian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Stardock ObjectDock.lnk
backup=c:\windows\pss\Stardock ObjectDock.lnk.Startup
backupExtension=.Startup

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2007-05-11 12:06 40048 ----a-w- c:\program files\Adobe\Reader 8.0\Reader\reader_sl.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ares]
2010-01-22 21:57 1011712 ----a-w- c:\program files\Ares\Ares.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Health Check Scheduler]
2008-04-15 11:42 70912 ----a-w- c:\program files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
2006-12-10 20:52 49152 ----a-w- c:\program files\HP\HP Software Update\hpwuSchd2.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hpWirelessAssistant]
2008-04-15 12:51 488752 ----a-w- c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ICQ]
2010-01-12 22:53 133368 ----a-w- c:\program files\ICQ7.0\ICQ.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
2008-02-26 13:08 2289664 ----a-w- c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QlbCtrl.exe]
2008-03-14 06:45 202032 ----a-w- c:\program files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QPService]
2008-04-01 17:31 468264 ----a-w- c:\program files\HP\QuickPlay\QPService.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
2009-10-09 12:11 25623336 ----a-r- c:\program files\Skype\Phone\Skype.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpywareTerminatorUpdate]
2010-01-26 19:52 3037696 ----a-w- c:\program files\Spyware Terminator\SpywareTerminatorUpdate.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2008-02-22 02:25 144784 ----a-w- c:\program files\Java\jre1.6.0_05\bin\jusched.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UCam_Menu]
2007-12-24 14:55 222504 ------w- c:\program files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"VistaSp2"=hex(b):cb,63,83,be,44,a0,ca,01

R1 sp_rsdrv2;Spyware Terminator Driver 2;c:\windows\System32\drivers\sp_rsdrv2.sys [26. 1. 2010 20:52 142592]
R2 Recovery Service for Windows;Recovery Service for Windows;c:\windows\SMINST\BLService.exe [6. 6. 2008 14:57 361808]
R3 MpNWMon;Microsoft Malware Protection Network Driver;c:\windows\System32\drivers\MpNWMon.sys [18. 6. 2009 18:48 42480]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\System32\drivers\nvhda32v.sys [3. 5. 2008 13:39 42528]
S2 gupdate1caa5b117bd44c5;Služba Google Update (gupdate1caa5b117bd44c5);c:\program files\Google\Update\GoogleUpdate.exe [4. 2. 2010 16:45 133104]
S3 Com4QLBEx;Com4QLBEx;c:\program files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [6. 6. 2008 14:05 193840]
S3 fssfltr;FssFltr;c:\windows\System32\drivers\fssfltr.sys [12. 2. 2010 17:07 54632]
S3 fsssvc;Služba Windows Live Zabezpečení rodiny;c:\program files\Windows Live\Family Safety\fsssvc.exe [5. 8. 2009 22:48 704864]
S3 pwdrvio;pwdrvio;c:\windows\System32\pwdrvio.sys [27. 1. 2010 19:00 16456]
S3 pwdspio;pwdspio;c:\windows\System32\pwdspio.sys [27. 1. 2010 19:00 11088]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceNoNetwork REG_MULTI_SZ PLA DPS BFE mpssvc
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache

[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2008-02-26 13:06 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
Contents of the 'Scheduled Tasks' folder

2010-03-01 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-04 15:45]

2010-02-28 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-04 15:45]

2010-02-18 c:\windows\Tasks\HPCeeScheduleForEsperian.job
- c:\program files\hewlett-packard\sdp\ceement\HPCEE.exe [2008-06-06 13:14]
.
.
------- Supplementary Scan -------
.
IE: Crawler Search - tbr:iemenu
IE: E&xportovať do programu Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
Handler: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - c:\progra~1\Crawler\ctbr.dll
FF - ProfilePath - c:\users\Esperian\AppData\Roaming\Mozilla\Firefox\Profiles\febeprof.esp\
FF - prefs.js: browser.startup.homepage - hxxp://sk.start3.mozilla.com/firefox?client=firefox-a&rls=org.mozilla:sk:official
FF - component: c:\program files\Crawler\firefox\components\xcomm.dll
FF - component: c:\program files\Crawler\firefox\components\xshared.dll
FF - component: c:\program files\Crawler\firefox\components\xsupport.dll
FF - component: c:\program files\Crawler\firefox\components\xwsg.dll
FF - component: c:\program files\Mozilla Firefox\extensions\{1fb5773a-b865-de68-e5e5-6a85582f658b}\components\25f7c71a-81f5-54f7-72ca-8d35d7df2128.dll
FF - component: c:\program files\Mozilla Firefox\extensions\{B13721C7-F507-4982-B2E5-502A71474FED}\components\NPComponent.dll
FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dll
FF - plugin: c:\program files\Google\Update\1.2.183.17\npGoogleOneClick8.dll
FF - plugin: c:\program files\Microsoft\Office Live\npOLW.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
FF - plugin: c:\program files\Windows Live\Photo Gallery\NPWLPG.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

---- FIREFOX POLICIES ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.debug", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("html5.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".sk");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-03-01 18:43
Windows 6.0.6002 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
Completion time: 2010-03-01 18:48:09
ComboFix-quarantined-files.txt 2010-03-01 17:48
ComboFix2.txt 2010-02-26 19:13

Pre-Run: Volných bajtů: 62 733 127 680
Post-Run: Volných bajtů: 62 497 021 952

- - End Of File - - 3596F05B39942C1996AE87EA33154015
Upload was successful

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: mozila a vyskakujuce reklamy

#10 Příspěvek od motji »

Jakt o ted vypadá s počítačem?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

esperian26
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 26 úno 2010 16:26

Re: mozila a vyskakujuce reklamy

#11 Příspěvek od esperian26 »

no neviem ale asi to velmi nepomohlo pretoze stale tie reklamy vyskakuju :(

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: mozila a vyskakujuce reklamy

#12 Příspěvek od motji »

:arrow: Stahněte MBAM z mého podpisu
-Nainstalujte,dejte úplný sken

NIC NEMAZAT :!:
-MBAM má občas falešné detekce,proto budeme mazat až po kontrole logu.
-Log zkopírujte sem.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

esperian26
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 26 úno 2010 16:26

Re: mozila a vyskakujuce reklamy

#13 Příspěvek od esperian26 »

ahoj

tak tu je ten log

Malwarebytes' Anti-Malware 1.44
Verze databáze: 3510
Windows 6.0.6002 Service Pack 2
Internet Explorer 7.0.6002.18005

2. 3. 2010 18:06:29
mbam-log-2010-03-02 (18-06-13).txt

Typ kontroly: Kompletní kontrola (C:\|D:\|E:\|)
Zkontrolované objekty: 285823
Uplynulý čas: 1 hour(s), 56 minute(s), 54 second(s)

Infikované procesy v paměti: 0
Infikované moduly v paměti: 0
Infikované klíče registru: 0
Infikované hodnoty registru: 0
Infikované datové položky registru: 0
Infikované adresáře: 0
Infikované soubory: 1

Infikované procesy v paměti:
(Nebyly nalezeny žádné škodlivé položky)

Infikované moduly v paměti:
(Nebyly nalezeny žádné škodlivé položky)

Infikované klíče registru:
(Nebyly nalezeny žádné škodlivé položky)

Infikované hodnoty registru:
(Nebyly nalezeny žádné škodlivé položky)

Infikované datové položky registru:
(Nebyly nalezeny žádné škodlivé položky)

Infikované adresáře:
(Nebyly nalezeny žádné škodlivé položky)

Infikované soubory:
C:\Users\Esperian\Downloads\MediaPlayerCodecInstall.exe (Adware.Agent) -> No action taken.


dufam ze som to spravne spravil

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: mozila a vyskakujuce reklamy

#14 Příspěvek od motji »

:arrow: Dejte soubor otestovat na http://www.virustotal.com

C:\Users\Esperian\Downloads\MediaPlayerCodecInstall.exe

-Na virustotalu dáte procházet, a do spodního okénka nakopírujete přímo cestu k souboru a dáte odeslat
-z prohlížeče zkopírujete adresu ke stránce s výsledky
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

esperian26
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 26 úno 2010 16:26

Re: mozila a vyskakujuce reklamy

#15 Příspěvek od esperian26 »


Odpovědět