Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosim o kontrolu logu

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Poulito
Návštěvník
Návštěvník
Příspěvky: 22
Registrován: 11 črc 2011 14:07

Prosim o kontrolu logu

#1 Příspěvek od Poulito »

Dobrý den, chtěl bych poprosit o kontrolu tohoto logu. jedna se o log z netbooku. nabiha trochu pomaleji tak bych chtel vedet jestli za to nemuze neco v PC. Děkuji

Logfile of random's system information tool 1.09 (written by random/random)
Run by Kuba at 2011-07-12 09:25:09
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 61 GB (60%) free of 102 GB
Total RAM: 2038 MB (48% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:25:29, on 12.7.2011
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal

Running processes:
C:\windows\system32\Dwm.exe
C:\windows\Explorer.EXE
C:\windows\system32\taskhost.exe
C:\windows\system32\taskeng.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe
C:\Windows\AsScrPro.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\ASUS\APRP\aprp.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\windows\system32\SearchFilterHost.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\windows\system32\igfxsrvc.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Adobe\Reader 9.0\Reader\reader_sl.exe
C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\syncables\syncables desktop\syncables.exe
C:\Program Files\RocketDock\RocketDock.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\syncables\syncables desktop\jre\bin\javaw.exe
C:\Program Files\Internet Explorer\IELowutil.exe
C:\windows\system32\ctfmon.exe
C:\Users\Kuba\Desktop\RSIT.exe
C:\Program Files\trend micro\Kuba.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.qip.ru/ie
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.qip.ru
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://qip.ru
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.qip.ru/ie
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: (no name) - {A3BC75A2-1F87-4686-AA43-5347D756017C} - (no file)
R3 - URLSearchHook: QIPBHO Class - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Users\Kuba\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: QIPBHO - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Users\Kuba\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [SynAsusAcpi] %ProgramFiles%\Synaptics\SynTP\SynAsusAcpi.exe
O4 - HKLM\..\Run: [ASUS Screen Saver Protector] C:\windows\AsScrPro.exe
O4 - HKLM\..\Run: [UCam_Menu] "C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\YouCam" UpdateWithCreateOnce "Software\CyberLink\YouCam\2.0"
O4 - HKLM\..\Run: [HotkeyMon] AsusSender.exe C:\Program Files\EeePC\HotkeyService\HotKeyMon.exe
O4 - HKLM\..\Run: [HotkeyService] AsusSender.exe C:\Program Files\EeePC\HotkeyService\HotkeyService.exe
O4 - HKLM\..\Run: [SuperHybridEngine] AsusSender.exe C:\Program Files\EeePC\SHE\SuperHybridEngine.exe
O4 - HKLM\..\Run: [CapsHook] AsusSender.exe C:\Program Files\EeePC\CapsHook\CapsHook.exe
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [OOBESetup] C:\Program Files\asus\OOBERegBackup\OOBERegBackup.exe /restore -"C:\Program Files\asus\OOBERegBackup\OOBEReg.ini"
O4 - HKLM\..\Run: [ASUSPRP] C:\Program Files\ASUS\APRP\APRP.EXE
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin
O4 - HKCU\..\Run: [Syncables] C:\Program Files\syncables\syncables desktop\Syncables.exe
O4 - HKCU\..\Run: [RocketDock] "C:\Program Files\RocketDock\RocketDock.exe"
O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ7.5\ICQ.exe" silent loginmode=4
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: VPN Client.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files\ICQ7.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files\ICQ7.5\ICQ.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {784797A8-342D-4072-9486-03C8D0F2F0A1} (Battlefield Heroes Updater) - https://www.battlefieldheroes.com/stati ... 0.31.0.cab
O16 - DPF: {C8BC46C7-921C-4102-B67D-F1F7E65FB0BE} (Battlefield Play4Free Updater) - https://battlefield.play4free.com/stati ... 0.26.2.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\windows\system32\nvinit.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Asus Launcher Service (AsusService) - Unknown owner - C:\Windows\System32\AsusService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Cisco Systems, Inc. VPN Service (CVPND) - Cisco Systems, Inc. - C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe
O23 - Service: LogMeIn Hamachi 2.0 Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: Intel(R) MPI Library Process Manager, Intel (impi_smpd) - Intel Corporation - C:\MSC.Software\Marc\2010\marc2010\intelmpi\win32\bin\ismpd.exe
O23 - Service: InstallShield Licensing Service - Macrovision - C:\Program Files\Common Files\InstallShield Shared\Service\InstallShield Licensing Service.exe
O23 - Service: MSC.Licensing 11.6 - Acresso Software Inc. - C:\MSC.Software\MSC.Licensing\11.6\lmgrd.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\windows\system32\PnkBstrA.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: UGS License Server (ugslmd) - Acresso Software Inc. - D:\Programy\UGS\UGSLicensing\lmgrd.exe
O23 - Service: Zoo License Manager (ZooService) - Robert McNeel & Associates - C:\PROGRA~1\ZOO4~1.0\ZOOSER~1.EXE

--
End of file - 12546 bytes

======Scheduled tasks folder======

C:\windows\tasks\AWC AutoSweep.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\6gyx01z2.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "extensions.enabledItems" - "{3f963a5b-e555-4543-90e2-c3908898db71}:10.0.0.1151, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.12"
prefs.js - "keyword.URL" - "http://www.google.com/search?ie=UTF-8&o ... &gfns=1&q="

"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\windows\system32\Macromed\Flash\NPSWF32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll

D:\Programy\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}

D:\Programy\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
nsIQTScriptablePlugin.xpt

D:\Programy\Mozilla Firefox\plugins\
npdeployJava1.dll
NPOFF12.DLL
nppdf32.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
QuickTimePlugin.class

D:\Programy\Mozilla Firefox\searchplugins\
avg_igeared.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-23 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2010-09-22 191792]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2011-07-04 820864]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}]
QIPBHO Class - C:\Users\Kuba\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll [2010-11-24 150400]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-05-04 42272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CCC7A320-B3CA-4199-B1A6-9F516DD69829}
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2011-07-04 820864]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [2009-06-05 186904]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-11-19 1594664]
"SynAsusAcpi"=C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe [2009-11-19 83240]
"ASUS Screen Saver Protector"=C:\windows\AsScrPro.exe [2010-07-30 3058304]
"UCam_Menu"=C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"HotkeyMon"=AsusSender.exe C:\Program Files\EeePC\HotkeyService\HotKeyMon.exe []
"HotkeyService"=AsusSender.exe C:\Program Files\EeePC\HotkeyService\HotkeyService.exe []
"SuperHybridEngine"=AsusSender.exe C:\Program Files\EeePC\SHE\SuperHybridEngine.exe []
"CapsHook"=AsusSender.exe C:\Program Files\EeePC\CapsHook\CapsHook.exe []
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2010-04-27 9177632]
"OOBESetup"=C:\Program Files\asus\OOBERegBackup\OOBERegBackup.exe [2009-12-11 334848]
"ASUSPRP"=C:\Program Files\ASUS\APRP\APRP.EXE [2010-07-30 2018032]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-03-30 937920]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2010-10-25 141848]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2010-10-25 173592]
"Persistence"=C:\windows\system32\igfxpers.exe [2010-10-25 150552]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2011-06-08 37296]
"LogMeIn Hamachi Ui"=C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe [2011-05-25 1951112]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-04-08 254696]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2011-07-04 3493720]
"AdobeAAMUpdater-1.0"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2011-03-30 499608]
"SwitchBoard"=C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5.5ServiceManager"=C:\Program Files\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe [2011-01-12 1523360]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Syncables"=C:\Program Files\syncables\syncables desktop\Syncables.exe [2010-04-15 370480]
"RocketDock"=C:\Program Files\RocketDock\RocketDock.exe [2007-09-02 495616]
"ICQ"=C:\Program Files\ICQ7.5\ICQ.exe [2011-06-29 124216]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
VPN Client.lnk - C:\windows\Installer\{B0BF7057-6869-4E4B-920C-EA2A58DA07F0}\Icon3E5562ED7.ico

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\windows\system32\nvinit.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2010-10-25 218112]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.siren"=sirenacm.dll
"SENTINEL"=snti386.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2011-07-12 09:14:43 ----D---- C:\ProgramData\ALM
2011-07-12 08:50:54 ----D---- C:\rsit
2011-07-12 08:50:54 ----D---- C:\Program Files\trend micro
2011-07-12 08:42:02 ----A---- C:\windows\system32\drivers\aswFsBlk.sys
2011-07-12 08:42:01 ----A---- C:\windows\system32\drivers\aswSP.sys
2011-07-12 08:41:54 ----A---- C:\windows\system32\drivers\aswRdr.sys
2011-07-12 08:41:52 ----A---- C:\windows\system32\drivers\aswTdi.sys
2011-07-12 08:41:51 ----A---- C:\windows\system32\drivers\aswSnx.sys
2011-07-12 08:41:47 ----A---- C:\windows\system32\drivers\aswMonFlt.sys
2011-07-12 08:41:29 ----A---- C:\windows\avastSS.scr
2011-07-12 08:41:28 ----A---- C:\windows\system32\aswBoot.exe
2011-07-12 08:41:16 ----D---- C:\ProgramData\AVAST Software
2011-07-12 08:41:16 ----D---- C:\Program Files\AVAST Software
2011-06-29 22:16:34 ----A---- C:\windows\system32\mssrch.dll
2011-06-29 22:16:33 ----A---- C:\windows\system32\tquery.dll
2011-06-29 22:16:33 ----A---- C:\windows\system32\SearchIndexer.exe
2011-06-29 22:16:32 ----A---- C:\windows\system32\SearchProtocolHost.exe
2011-06-29 22:16:32 ----A---- C:\windows\system32\mssvp.dll
2011-06-29 22:16:32 ----A---- C:\windows\system32\mssph.dll
2011-06-29 22:16:31 ----A---- C:\windows\system32\SearchFilterHost.exe
2011-06-29 22:16:31 ----A---- C:\windows\system32\mssphtb.dll
2011-06-29 22:16:31 ----A---- C:\windows\system32\msscntrs.dll
2011-06-29 21:56:06 ----A---- C:\windows\system32\umpnpmgr.dll
2011-06-25 20:56:57 ----A---- C:\windows\system32\drivers\tap0901.sys
2011-06-24 21:13:37 ----A---- C:\windows\NHL09 Uninstaller.exe
2011-06-24 20:59:17 ----D---- C:\Users\Kuba\AppData\Roaming\Leadertech
2011-06-15 23:33:36 ----A---- C:\windows\system32\mshtmled.dll
2011-06-15 23:33:35 ----A---- C:\windows\system32\iertutil.dll
2011-06-15 23:33:34 ----A---- C:\windows\system32\jscript.dll
2011-06-15 23:33:34 ----A---- C:\windows\system32\ieui.dll
2011-06-15 23:33:33 ----A---- C:\windows\system32\jscript9.dll
2011-06-15 23:33:30 ----A---- C:\windows\system32\mshtml.dll
2011-06-15 23:33:30 ----A---- C:\windows\system32\ieframe.dll
2011-06-15 23:33:29 ----A---- C:\windows\system32\urlmon.dll
2011-06-15 23:23:08 ----A---- C:\windows\system32\drivers\srvnet.sys
2011-06-15 23:23:08 ----A---- C:\windows\system32\drivers\srv2.sys
2011-06-15 23:23:08 ----A---- C:\windows\system32\drivers\srv.sys
2011-06-15 23:23:07 ----A---- C:\windows\system32\inetcomm.dll
2011-06-15 21:30:58 ----D---- C:\windows\system32\SPReview
2011-06-15 21:29:43 ----D---- C:\windows\system32\EventProviders
2011-06-15 21:15:34 ----A---- C:\windows\system32\dfshim.dll
2011-06-15 21:15:27 ----A---- C:\windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2011-06-15 21:15:27 ----A---- C:\windows\system32\drivers\TsUsbFlt.sys
2011-06-15 21:15:26 ----A---- C:\windows\system32\mstscax.dll
2011-06-15 21:15:21 ----A---- C:\windows\system32\d3d10warp.dll
2011-06-15 21:15:20 ----A---- C:\windows\system32\mfc40u.dll
2011-06-15 21:15:20 ----A---- C:\windows\system32\mfc40.dll
2011-06-15 21:15:18 ----A---- C:\windows\system32\sysmain.dll
2011-06-15 21:15:17 ----A---- C:\windows\system32\secproc_isv.dll
2011-06-15 21:15:16 ----A---- C:\windows\system32\shell32.dll
2011-06-15 21:15:15 ----A---- C:\windows\system32\RMActivate_isv.exe
2011-06-15 21:15:14 ----A---- C:\windows\system32\secproc.dll
2011-06-15 21:15:13 ----A---- C:\windows\system32\RMActivate.exe
2011-06-15 21:15:10 ----A---- C:\windows\system32\spwizui.dll
2011-06-15 21:15:10 ----A---- C:\windows\system32\mscoree.dll
2011-06-15 21:15:08 ----A---- C:\windows\system32\mf.dll
2011-06-15 21:15:07 ----A---- C:\windows\system32\mcupdate_GenuineIntel.dll
2011-06-15 21:15:07 ----A---- C:\windows\system32\CertEnroll.dll
2011-06-15 21:15:06 ----A---- C:\windows\system32\wmp.dll
2011-06-15 21:15:04 ----A---- C:\windows\system32\PresentationHostProxy.dll
2011-06-15 21:15:04 ----A---- C:\windows\system32\PresentationHost.exe
2011-06-15 21:15:04 ----A---- C:\windows\system32\drivers\msiscsi.sys
2011-06-15 21:15:04 ----A---- C:\windows\system32\drivers\hwpolicy.sys
2011-06-15 21:15:03 ----A---- C:\windows\system32\schedsvc.dll
2011-06-15 21:15:02 ----A---- C:\windows\system32\RacEngn.dll
2011-06-15 21:15:01 ----A---- C:\windows\system32\AuthFWSnapin.dll
2011-06-15 21:15:00 ----A---- C:\windows\system32\ntdll.dll
2011-06-15 21:14:59 ----A---- C:\windows\system32\rdpdd.dll
2011-06-15 21:14:58 ----A---- C:\windows\system32\qmgr.dll
2011-06-15 21:14:58 ----A---- C:\windows\system32\ExplorerFrame.dll
2011-06-15 21:14:57 ----A---- C:\windows\system32\ole32.dll
2011-06-15 21:14:56 ----A---- C:\windows\system32\wevtsvc.dll
2011-06-15 21:14:55 ----A---- C:\windows\system32\vssapi.dll
2011-06-15 21:14:55 ----A---- C:\windows\system32\SearchFolder.dll
2011-06-15 21:14:55 ----A---- C:\windows\system32\d3d9.dll
2011-06-15 21:14:54 ----A---- C:\windows\system32\taskschd.dll
2011-06-15 21:14:54 ----A---- C:\windows\system32\IKEEXT.DLL
2011-06-15 21:14:53 ----A---- C:\windows\system32\kernel32.dll
2011-06-15 21:14:53 ----A---- C:\windows\system32\crypt32.dll
2011-06-15 21:14:52 ----A---- C:\windows\system32\wer.dll
2011-06-15 21:14:52 ----A---- C:\windows\system32\termsrv.dll
2011-06-15 21:14:52 ----A---- C:\windows\system32\spreview.exe
2011-06-15 21:14:52 ----A---- C:\windows\system32\spinstall.exe
2011-06-15 21:14:52 ----A---- C:\windows\system32\mstsc.exe
2011-06-15 21:14:52 ----A---- C:\windows\system32\certcli.dll
2011-06-15 21:14:51 ----A---- C:\windows\system32\rpcrt4.dll
2011-06-15 21:14:51 ----A---- C:\windows\system32\lsasrv.dll
2011-06-15 21:14:51 ----A---- C:\windows\system32\gpsvc.dll
2011-06-15 21:14:50 ----A---- C:\windows\system32\odbc32.dll
2011-06-15 21:14:50 ----A---- C:\windows\system32\msxml6.dll
2011-06-15 21:14:50 ----A---- C:\windows\system32\dwmcore.dll
2011-06-15 21:14:49 ----A---- C:\windows\system32\wbengine.exe
2011-06-15 21:14:49 ----A---- C:\windows\system32\scavengeui.dll
2011-06-15 21:14:49 ----A---- C:\windows\system32\MPSSVC.dll
2011-06-15 21:14:49 ----A---- C:\windows\system32\diagperf.dll
2011-06-15 21:14:48 ----A---- C:\windows\system32\WinSAT.exe
2011-06-15 21:14:48 ----A---- C:\windows\system32\TSWorkspace.dll
2011-06-15 21:14:48 ----A---- C:\windows\system32\quartz.dll
2011-06-15 21:14:48 ----A---- C:\windows\system32\dot3api.dll
2011-06-15 21:14:47 ----A---- C:\windows\system32\winhttp.dll
2011-06-15 21:14:47 ----A---- C:\windows\system32\tsmf.dll
2011-06-15 21:14:47 ----A---- C:\windows\system32\localspl.dll
2011-06-15 21:14:46 ----A---- C:\windows\system32\setupapi.dll
2011-06-15 21:14:46 ----A---- C:\windows\system32\MSVidCtl.dll
2011-06-15 21:14:46 ----A---- C:\windows\system32\apphelp.dll
2011-06-15 21:14:45 ----A---- C:\windows\system32\WindowsCodecs.dll
2011-06-15 21:14:45 ----A---- C:\windows\system32\VSSVC.exe
2011-06-15 21:14:45 ----A---- C:\windows\system32\netlogon.dll
2011-06-15 21:14:45 ----A---- C:\windows\system32\dbgeng.dll
2011-06-15 21:14:45 ----A---- C:\windows\system32\d3d11.dll
2011-06-15 21:14:44 ----A---- C:\windows\system32\winlogon.exe
2011-06-15 21:14:44 ----A---- C:\windows\system32\user32.dll
2011-06-15 21:14:44 ----A---- C:\windows\system32\netcfgx.dll
2011-06-15 21:14:43 ----A---- C:\windows\system32\WsmSvc.dll
2011-06-15 21:14:43 ----A---- C:\windows\system32\WMVDECOD.DLL
2011-06-15 21:14:43 ----A---- C:\windows\system32\webio.dll
2011-06-15 21:14:43 ----A---- C:\windows\system32\Query.dll
2011-06-15 21:14:43 ----A---- C:\windows\system32\drivers\rdpwd.sys
2011-06-15 21:14:42 ----A---- C:\windows\system32\upnp.dll
2011-06-15 21:14:42 ----A---- C:\windows\system32\schannel.dll
2011-06-15 21:14:42 ----A---- C:\windows\system32\mmcndmgr.dll
2011-06-15 21:14:42 ----A---- C:\windows\system32\DShowRdpFilter.dll
2011-06-15 21:14:42 ----A---- C:\windows\system32\advapi32.dll
2011-06-15 21:14:41 ----A---- C:\windows\system32\netfxperf.dll
2011-06-15 21:14:41 ----A---- C:\windows\system32\msv1_0.dll
2011-06-15 21:14:41 ----A---- C:\windows\system32\lsm.exe
2011-06-15 21:14:40 ----A---- C:\windows\system32\sppobjs.dll
2011-06-15 21:14:40 ----A---- C:\windows\system32\msdrm.dll
2011-06-15 21:14:40 ----A---- C:\windows\system32\imapi2fs.dll
2011-06-15 21:14:40 ----A---- C:\windows\system32\authui.dll
2011-06-15 21:14:39 ----A---- C:\windows\system32\shlwapi.dll
2011-06-15 21:14:39 ----A---- C:\windows\system32\SessEnv.dll
2011-06-15 21:14:39 ----A---- C:\windows\system32\PortableDeviceApi.dll
2011-06-15 21:14:38 ----A---- C:\windows\system32\usp10.dll
2011-06-15 21:14:38 ----A---- C:\windows\system32\mcbuilder.exe
2011-06-15 21:14:38 ----A---- C:\windows\system32\KernelBase.dll
2011-06-15 21:14:38 ----A---- C:\windows\system32\certmgr.dll
2011-06-15 21:14:37 ----A---- C:\windows\system32\xpsservices.dll
2011-06-15 21:14:37 ----A---- C:\windows\system32\winload.exe
2011-06-15 21:14:37 ----A---- C:\windows\system32\userenv.dll
2011-06-15 21:14:36 ----A---- C:\windows\system32\WebClnt.dll
2011-06-15 21:14:36 ----A---- C:\windows\system32\sppwinob.dll
2011-06-15 21:14:36 ----A---- C:\windows\system32\iphlpsvc.dll
2011-06-15 21:14:36 ----A---- C:\windows\system32\comdlg32.dll
2011-06-15 21:14:36 ----A---- C:\windows\system32\audiosrv.dll
2011-06-15 21:14:35 ----A---- C:\windows\system32\rpcss.dll
2011-06-15 21:14:35 ----A---- C:\windows\system32\cmd.exe
2011-06-15 21:14:34 ----A---- C:\windows\system32\framedynos.dll
2011-06-15 21:14:34 ----A---- C:\windows\system32\BFE.DLL
2011-06-15 21:14:33 ----A---- C:\windows\system32\wuaueng.dll
2011-06-15 21:14:33 ----A---- C:\windows\system32\Wldap32.dll
2011-06-15 21:14:33 ----A---- C:\windows\system32\win32spl.dll
2011-06-15 21:14:33 ----A---- C:\windows\system32\propsys.dll
2011-06-15 21:14:33 ----A---- C:\windows\system32\nlasvc.dll
2011-06-15 21:14:33 ----A---- C:\windows\system32\mfds.dll
2011-06-15 21:14:33 ----A---- C:\windows\system32\drivers\volsnap.sys
2011-06-15 21:14:33 ----A---- C:\windows\system32\drivers\ndis.sys
2011-06-15 21:14:32 ----A---- C:\windows\system32\wucltux.dll
2011-06-15 21:14:32 ----A---- C:\windows\system32\winresume.exe
2011-06-15 21:14:32 ----A---- C:\windows\system32\samsrv.dll
2011-06-15 21:14:32 ----A---- C:\windows\system32\profsvc.dll
2011-06-15 21:14:32 ----A---- C:\windows\system32\ncsi.dll
2011-06-15 21:14:32 ----A---- C:\windows\system32\drivers\netio.sys
2011-06-15 21:14:31 ----A---- C:\windows\system32\werconcpl.dll
2011-06-15 21:14:31 ----A---- C:\windows\system32\themeui.dll
2011-06-15 21:14:31 ----A---- C:\windows\system32\taskeng.exe
2011-06-15 21:14:31 ----A---- C:\windows\system32\spp.dll
2011-06-15 21:14:31 ----A---- C:\windows\system32\credui.dll
2011-06-15 21:14:31 ----A---- C:\windows\system32\azroles.dll
2011-06-15 21:14:30 ----A---- C:\windows\system32\wintrust.dll
2011-06-15 21:14:30 ----A---- C:\windows\system32\msxml3.dll
2011-06-15 21:14:30 ----A---- C:\windows\system32\mswsock.dll
2011-06-15 21:14:30 ----A---- C:\windows\system32\mfreadwrite.dll
2011-06-15 21:14:30 ----A---- C:\windows\system32\drivers\http.sys
2011-06-15 21:14:30 ----A---- C:\windows\system32\dhcpcore.dll
2011-06-15 21:14:30 ----A---- C:\windows\system32\basecsp.dll
2011-06-15 21:14:29 ----A---- C:\windows\system32\taskcomp.dll
2011-06-15 21:14:29 ----A---- C:\windows\system32\NaturalLanguage6.dll
2011-06-15 21:14:29 ----A---- C:\windows\system32\evr.dll
2011-06-15 21:14:29 ----A---- C:\windows\system32\dxgi.dll
2011-06-15 21:14:29 ----A---- C:\windows\system32\drivers\mrxdav.sys
2011-06-15 21:14:29 ----A---- C:\windows\system32\dbghelp.dll
2011-06-15 21:14:28 ----A---- C:\windows\system32\WinSATAPI.dll
2011-06-15 21:14:28 ----A---- C:\windows\system32\spoolsv.exe
2011-06-15 21:14:28 ----A---- C:\windows\system32\gdi32.dll
2011-06-15 21:14:28 ----A---- C:\windows\system32\calc.exe
2011-06-15 21:14:27 ----A---- C:\windows\system32\vpnike.dll
2011-06-15 21:14:27 ----A---- C:\windows\system32\srvsvc.dll
2011-06-15 21:14:27 ----A---- C:\windows\system32\sqlsrv32.dll
2011-06-15 21:14:27 ----A---- C:\windows\system32\QAGENTRT.DLL
2011-06-15 21:14:26 ----A---- C:\windows\system32\UIRibbon.dll
2011-06-15 21:14:26 ----A---- C:\windows\system32\lpksetup.exe
2011-06-15 21:14:26 ----A---- C:\windows\system32\fveapi.dll
2011-06-15 21:14:26 ----A---- C:\windows\system32\cryptsvc.dll
2011-06-15 21:14:25 ----A---- C:\windows\system32\ws2_32.dll
2011-06-15 21:14:25 ----A---- C:\windows\system32\sxs.dll
2011-06-15 21:14:25 ----A---- C:\windows\system32\netshell.dll
2011-06-15 21:14:25 ----A---- C:\windows\system32\hgprint.dll
2011-06-15 21:14:25 ----A---- C:\windows\system32\drivers\fvevol.sys
2011-06-15 21:14:24 ----A---- C:\windows\system32\stobject.dll
2011-06-15 21:14:24 ----A---- C:\windows\system32\prncache.dll
2011-06-15 21:14:24 ----A---- C:\windows\system32\printui.dll
2011-06-15 21:14:24 ----A---- C:\windows\system32\inetpp.dll
2011-06-15 21:14:24 ----A---- C:\windows\system32\drivers\rdbss.sys
2011-06-15 21:14:24 ----A---- C:\windows\system32\drivers\msdsm.sys
2011-06-15 21:14:24 ----A---- C:\windows\system32\comctl32.dll
2011-06-15 21:14:23 ----A---- C:\windows\system32\WSDApi.dll
2011-06-15 21:14:23 ----A---- C:\windows\system32\wmpeffects.dll
2011-06-15 21:14:23 ----A---- C:\windows\system32\rpchttp.dll
2011-06-15 21:14:23 ----A---- C:\windows\system32\net1.exe
2011-06-15 21:14:23 ----A---- C:\windows\system32\msi.dll
2011-06-15 21:14:23 ----A---- C:\windows\system32\dps.dll
2011-06-15 21:14:22 ----A---- C:\windows\system32\ci.dll
2011-06-15 21:14:22 ----A---- C:\windows\system32\aitagent.exe
2011-06-15 21:14:22 ----A---- C:\windows\system32\aepdu.dll
2011-06-15 21:14:21 ----A---- C:\windows\system32\vds.exe
2011-06-15 21:14:21 ----A---- C:\windows\system32\scansetting.dll
2011-06-15 21:14:21 ----A---- C:\windows\system32\FXSSVC.exe
2011-06-15 21:14:21 ----A---- C:\windows\system32\drivers\pci.sys
2011-06-15 21:14:20 ----A---- C:\windows\system32\WMVCORE.DLL
2011-06-15 21:14:20 ----A---- C:\windows\system32\wlangpui.dll
2011-06-15 21:14:20 ----A---- C:\windows\system32\MMDevAPI.dll
2011-06-15 21:14:20 ----A---- C:\windows\system32\davclnt.dll
2011-06-15 21:14:20 ----A---- C:\windows\system32\aaclient.dll
2011-06-15 21:14:19 ----A---- C:\windows\system32\QSHVHOST.DLL
2011-06-15 21:14:19 ----A---- C:\windows\system32\drivers\usbport.sys
2011-06-15 21:14:19 ----A---- C:\windows\system32\consent.exe
2011-06-15 21:14:18 ----A---- C:\windows\system32\wpdshext.dll
2011-06-15 21:14:18 ----A---- C:\windows\system32\webservices.dll
2011-06-15 21:14:18 ----A---- C:\windows\system32\t2embed.dll
2011-06-15 21:14:18 ----A---- C:\windows\system32\pnidui.dll
2011-06-15 21:14:18 ----A---- C:\windows\system32\IPSECSVC.DLL
2011-06-15 21:14:17 ----A---- C:\windows\system32\TsUsbGDCoInstaller.dll
2011-06-15 21:14:17 ----A---- C:\windows\system32\SyncCenter.dll
2011-06-15 21:14:17 ----A---- C:\windows\system32\netdiagfx.dll
2011-06-15 21:14:17 ----A---- C:\windows\system32\fde.dll
2011-06-15 21:14:17 ----A---- C:\windows\system32\drivers\termdd.sys
2011-06-15 21:14:17 ----A---- C:\windows\system32\drivers\sbp2port.sys
2011-06-15 21:14:16 ----A---- C:\windows\system32\wuapi.dll
2011-06-15 21:14:16 ----A---- C:\windows\system32\wscapi.dll
2011-06-15 21:14:16 ----A---- C:\windows\system32\sdengin2.dll
2011-06-15 21:14:15 ----A---- C:\windows\system32\wisptis.exe
2011-06-15 21:14:15 ----A---- C:\windows\system32\WinSCard.dll
2011-06-15 21:14:15 ----A---- C:\windows\system32\pla.dll
2011-06-15 21:14:15 ----A---- C:\windows\system32\msasn1.dll
2011-06-15 21:14:15 ----A---- C:\windows\system32\mcmde.dll
2011-06-15 21:14:15 ----A---- C:\windows\system32\drivers\vhdmp.sys
2011-06-15 21:14:14 ----A---- C:\windows\system32\winsta.dll
2011-06-15 21:14:14 ----A---- C:\windows\system32\rdpcore.dll
2011-06-15 21:14:14 ----A---- C:\windows\system32\MSMPEG2ENC.DLL
2011-06-15 21:14:14 ----A---- C:\windows\system32\drivers\msahci.sys
2011-06-15 21:14:14 ----A---- C:\windows\system32\conhost.exe
2011-06-15 21:14:13 ----A---- C:\windows\system32\WUDFSvc.dll
2011-06-15 21:14:13 ----A---- C:\windows\system32\wiaservc.dll
2011-06-15 21:14:13 ----A---- C:\windows\system32\setupcl.exe
2011-06-15 21:14:13 ----A---- C:\windows\system32\ntshrui.dll
2011-06-15 21:14:13 ----A---- C:\windows\system32\imapi2.dll
2011-06-15 21:14:13 ----A---- C:\windows\system32\DXPTaskRingtone.dll
2011-06-15 21:14:13 ----A---- C:\windows\system32\aeinv.dll
2011-06-15 21:14:12 ----A---- C:\windows\system32\gameux.dll
2011-06-15 21:14:11 ----A---- C:\windows\system32\WMPEncEn.dll
2011-06-15 21:14:11 ----A---- C:\windows\system32\winmm.dll
2011-06-15 21:14:11 ----A---- C:\windows\system32\shsvcs.dll
2011-06-15 21:14:11 ----A---- C:\windows\system32\rasmans.dll
2011-06-15 21:14:11 ----A---- C:\windows\system32\onex.dll
2011-06-15 21:14:11 ----A---- C:\windows\system32\dwmredir.dll
2011-06-15 21:14:11 ----A---- C:\windows\system32\drivers\acpi.sys
2011-06-15 21:14:10 ----A---- C:\windows\system32\vaultsvc.dll
2011-06-15 21:14:10 ----A---- C:\windows\system32\TabSvc.dll
2011-06-15 21:14:10 ----A---- C:\windows\system32\Narrator.exe
2011-06-15 21:14:10 ----A---- C:\windows\system32\hbaapi.dll
2011-06-15 21:14:10 ----A---- C:\windows\system32\drivers\udfs.sys
2011-06-15 21:14:10 ----A---- C:\windows\system32\autofmt.exe
2011-06-15 21:14:09 ----A---- C:\windows\system32\samcli.dll
2011-06-15 21:14:09 ----A---- C:\windows\system32\proquota.exe
2011-06-15 21:14:09 ----A---- C:\windows\system32\netiohlp.dll
2011-06-15 21:14:09 ----A---- C:\windows\system32\msutb.dll
2011-06-15 21:14:09 ----A---- C:\windows\system32\IPHLPAPI.DLL
2011-06-15 21:14:09 ----A---- C:\windows\system32\halmacpi.dll
2011-06-15 21:14:09 ----A---- C:\windows\system32\hal.dll
2011-06-15 21:14:09 ----A---- C:\windows\system32\bootres.dll
2011-06-15 21:14:09 ----A---- C:\windows\system32\autochk.exe
2011-06-15 21:14:09 ----A---- C:\windows\system32\audiodg.exe
2011-06-15 21:14:08 ----A---- C:\windows\system32\thumbcache.dll
2011-06-15 21:14:08 ----A---- C:\windows\system32\tcpipcfg.dll
2011-06-15 21:14:08 ----A---- C:\windows\system32\srchadmin.dll
2011-06-15 21:14:08 ----A---- C:\windows\system32\schtasks.exe
2011-06-15 21:14:08 ----A---- C:\windows\system32\regapi.dll
2011-06-15 21:14:08 ----A---- C:\windows\system32\msinfo32.exe
2011-06-15 21:14:08 ----A---- C:\windows\system32\mimefilt.dll
2011-06-15 21:14:08 ----A---- C:\windows\system32\ipsmsnap.dll
2011-06-15 21:14:08 ----A---- C:\windows\system32\autoconv.exe
2011-06-15 21:14:08 ----A---- C:\windows\system32\AudioSes.dll
2011-06-15 21:14:07 ----A---- C:\windows\system32\wcncsvc.dll
2011-06-15 21:14:07 ----A---- C:\windows\system32\powercpl.dll
2011-06-15 21:14:07 ----A---- C:\windows\system32\msihnd.dll
2011-06-15 21:14:07 ----A---- C:\windows\system32\framedyn.dll
2011-06-15 21:14:07 ----A---- C:\windows\system32\eapphost.dll
2011-06-15 21:14:07 ----A---- C:\windows\system32\drivers\volmgr.sys
2011-06-15 21:14:06 ----A---- C:\windows\system32\sspicli.dll
2011-06-15 21:14:06 ----A---- C:\windows\system32\QAGENT.DLL
2011-06-15 21:14:06 ----A---- C:\windows\system32\netid.dll
2011-06-15 21:14:06 ----A---- C:\windows\system32\mscorier.dll
2011-06-15 21:14:06 ----A---- C:\windows\system32\drivers\partmgr.sys
2011-06-15 21:14:06 ----A---- C:\windows\system32\drivers\netbt.sys
2011-06-15 21:14:06 ----A---- C:\windows\system32\AuxiliaryDisplayCpl.dll
2011-06-15 21:14:05 ----A---- C:\windows\system32\wdc.dll
2011-06-15 21:14:05 ----A---- C:\windows\system32\umpo.dll
2011-06-15 21:14:05 ----A---- C:\windows\system32\StructuredQuery.dll
2011-06-15 21:14:05 ----A---- C:\windows\system32\scesrv.dll
2011-06-15 21:14:05 ----A---- C:\windows\system32\DXP.dll
2011-06-15 21:14:05 ----A---- C:\windows\system32\actxprxy.dll
2011-06-15 21:14:04 ----A---- C:\windows\system32\Vault.dll
2011-06-15 21:14:04 ----A---- C:\windows\system32\untfs.dll
2011-06-15 21:14:04 ----A---- C:\windows\system32\sdclt.exe
2011-06-15 21:14:04 ----A---- C:\windows\system32\rastls.dll
2011-06-15 21:14:04 ----A---- C:\windows\system32\nci.dll
2011-06-15 21:14:04 ----A---- C:\windows\system32\drivers\ataport.sys
2011-06-15 21:14:03 ----A---- C:\windows\system32\wlanpref.dll
2011-06-15 21:14:03 ----A---- C:\windows\system32\sppsvc.exe
2011-06-15 21:14:03 ----A---- C:\windows\system32\RpcRtRemote.dll
2011-06-15 21:14:03 ----A---- C:\windows\system32\ListSvc.dll
2011-06-15 21:14:02 ----A---- C:\windows\system32\WMNetMgr.dll
2011-06-15 21:14:02 ----A---- C:\windows\system32\Robocopy.exe
2011-06-15 21:14:01 ----A---- C:\windows\system32\DxpTaskSync.dll
2011-06-15 21:14:00 ----A---- C:\windows\system32\XpsRasterService.dll
2011-06-15 21:14:00 ----A---- C:\windows\system32\taskmgr.exe
2011-06-15 21:14:00 ----A---- C:\windows\system32\mtxclu.dll
2011-06-15 21:14:00 ----A---- C:\windows\system32\msdri.dll
2011-06-15 21:14:00 ----A---- C:\windows\system32\drivers\usbvideo.sys
2011-06-15 21:14:00 ----A---- C:\windows\system32\drivers\mpio.sys
2011-06-15 21:14:00 ----A---- C:\windows\system32\drivers\mountmgr.sys
2011-06-15 21:14:00 ----A---- C:\windows\system32\Display.dll
2011-06-15 21:13:59 ----A---- C:\windows\system32\userinit.exe
2011-06-15 21:13:59 ----A---- C:\windows\system32\termmgr.dll
2011-06-15 21:13:59 ----A---- C:\windows\system32\sharemediacpl.dll
2011-06-15 21:13:59 ----A---- C:\windows\system32\puiobj.dll
2011-06-15 21:13:59 ----A---- C:\windows\system32\eudcedit.exe
2011-06-15 21:13:59 ----A---- C:\windows\system32\drivers\usbehci.sys
2011-06-15 21:13:59 ----A---- C:\windows\system32\drivers\scsiport.sys
2011-06-15 21:13:59 ----A---- C:\windows\system32\DiagCpl.dll
2011-06-15 21:13:58 ----A---- C:\windows\system32\wiadefui.dll
2011-06-15 21:13:58 ----A---- C:\windows\system32\shsetup.dll
2011-06-15 21:13:58 ----A---- C:\windows\system32\rasppp.dll
2011-06-15 21:13:58 ----A---- C:\windows\system32\msdtctm.dll
2011-06-15 21:13:58 ----A---- C:\windows\system32\logoncli.dll
2011-06-15 21:13:58 ----A---- C:\windows\system32\biocpl.dll
2011-06-15 21:13:57 ----A---- C:\windows\system32\sppcomapi.dll
2011-06-15 21:13:57 ----A---- C:\windows\system32\SensorsCpl.dll
2011-06-15 21:13:57 ----A---- C:\windows\system32\msconfig.exe
2011-06-15 21:13:57 ----A---- C:\windows\system32\FirewallControlPanel.dll
2011-06-15 21:13:57 ----A---- C:\windows\system32\cabview.dll
2011-06-15 21:13:56 ----A---- C:\windows\system32\wpccpl.dll
2011-06-15 21:13:56 ----A---- C:\windows\system32\themecpl.dll
2011-06-15 21:13:56 ----A---- C:\windows\system32\FWPUCLNT.DLL
2011-06-15 21:13:56 ----A---- C:\windows\system32\drivers\rdyboost.sys
2011-06-15 21:13:56 ----A---- C:\windows\system32\drivers\BTHUSB.SYS
2011-06-15 21:13:56 ----A---- C:\windows\system32\dnscmmc.dll
2011-06-15 21:13:55 ----A---- C:\windows\system32\tapisrv.dll
2011-06-15 21:13:55 ----A---- C:\windows\system32\scecli.dll
2011-06-15 21:13:55 ----A---- C:\windows\system32\PhotoScreensaver.scr
2011-06-15 21:13:55 ----A---- C:\windows\system32\hgcpl.dll
2011-06-15 21:13:55 ----A---- C:\windows\system32\drivers\ksecdd.sys
2011-06-15 21:13:54 ----A---- C:\windows\system32\winsrv.dll
2011-06-15 21:13:54 ----A---- C:\windows\system32\mscories.dll
2011-06-15 21:13:54 ----A---- C:\windows\system32\mscms.dll
2011-06-15 21:13:54 ----A---- C:\windows\system32\mprddm.dll
2011-06-15 21:13:54 ----A---- C:\windows\system32\localsec.dll
2011-06-15 21:13:54 ----A---- C:\windows\system32\fontext.dll
2011-06-15 21:13:54 ----A---- C:\windows\system32\drivers\usbhub.sys
2011-06-15 21:13:53 ----A---- C:\windows\system32\wlanui.dll
2011-06-15 21:13:53 ----A---- C:\windows\system32\wkssvc.dll
2011-06-15 21:13:53 ----A---- C:\windows\system32\VAN.dll
2011-06-15 21:13:53 ----A---- C:\windows\system32\usercpl.dll
2011-06-15 21:13:53 ----A---- C:\windows\system32\srcore.dll
2011-06-15 21:13:53 ----A---- C:\windows\system32\SndVolSSO.dll
2011-06-15 21:13:53 ----A---- C:\windows\system32\qedit.dll
2011-06-15 21:13:53 ----A---- C:\windows\system32\PerfCenterCPL.dll
2011-06-15 21:13:53 ----A---- C:\windows\system32\KMSVC.DLL
2011-06-15 21:13:53 ----A---- C:\windows\system32\iasacct.dll
2011-06-15 21:13:53 ----A---- C:\windows\system32\bcdsrv.dll
2011-06-15 21:13:53 ----A---- C:\windows\system32\batmeter.dll
2011-06-15 21:13:52 ----A---- C:\windows\system32\wpdbusenum.dll
2011-06-15 21:13:52 ----A---- C:\windows\system32\wksprt.exe
2011-06-15 21:13:52 ----A---- C:\windows\system32\w32tm.exe
2011-06-15 21:13:52 ----A---- C:\windows\system32\spwizeng.dll
2011-06-15 21:13:52 ----A---- C:\windows\system32\SndVol.exe
2011-06-15 21:13:52 ----A---- C:\windows\system32\qdvd.dll
2011-06-15 21:13:52 ----A---- C:\windows\system32\prntvpt.dll
2011-06-15 21:13:52 ----A---- C:\windows\system32\netcenter.dll
2011-06-15 21:13:52 ----A---- C:\windows\system32\mblctr.exe
2011-06-15 21:13:52 ----A---- C:\windows\system32\azroleui.dll
2011-06-15 21:13:51 ----A---- C:\windows\system32\zipfldr.dll
2011-06-15 21:13:51 ----A---- C:\windows\system32\MSAC3ENC.DLL
2011-06-15 21:13:51 ----A---- C:\windows\system32\fdeploy.dll
2011-06-15 21:13:51 ----A---- C:\windows\system32\drivers\ks.sys
2011-06-15 21:13:51 ----A---- C:\windows\system32\accessibilitycpl.dll
2011-06-15 21:13:50 ----A---- C:\windows\system32\wusa.exe
2011-06-15 21:13:50 ----A---- C:\windows\system32\networkmap.dll
2011-06-15 21:13:50 ----A---- C:\windows\system32\netjoin.dll
2011-06-15 21:13:50 ----A---- C:\windows\system32\mspbda.dll
2011-06-15 21:13:50 ----A---- C:\windows\system32\MCEWMDRMNDBootstrap.dll
2011-06-15 21:13:50 ----A---- C:\windows\system32\Faultrep.dll
2011-06-15 21:13:50 ----A---- C:\windows\system32\cryptui.dll
2011-06-15 21:13:50 ----A---- C:\windows\system32\cfgmgr32.dll
2011-06-15 21:13:50 ----A---- C:\windows\system32\adsldp.dll
2011-06-15 21:13:49 ----A---- C:\windows\system32\sud.dll
2011-06-15 21:13:49 ----A---- C:\windows\system32\prnfldr.dll
2011-06-15 21:13:49 ----A---- C:\windows\system32\photowiz.dll
2011-06-15 21:13:49 ----A---- C:\windows\system32\OnLineIDCpl.dll
2011-06-15 21:13:49 ----A---- C:\windows\system32\msieftp.dll
2011-06-15 21:13:49 ----A---- C:\windows\system32\ActionCenter.dll
2011-06-15 21:13:48 ----A---- C:\windows\system32\taskhost.exe
2011-06-15 21:13:48 ----A---- C:\windows\system32\taskbarcpl.dll
2011-06-15 21:13:48 ----A---- C:\windows\system32\slui.exe
2011-06-15 21:13:48 ----A---- C:\windows\system32\rdpcorekmts.dll
2011-06-15 21:13:48 ----A---- C:\windows\system32\MediaMetadataHandler.dll
2011-06-15 21:13:48 ----A---- C:\windows\system32\iprtrmgr.dll
2011-06-15 21:13:48 ----A---- C:\windows\system32\iasrad.dll
2011-06-15 21:13:48 ----A---- C:\windows\system32\dot3cfg.dll
2011-06-15 21:13:48 ----A---- C:\windows\system32\defaultlocationcpl.dll
2011-06-15 21:13:48 ----A---- C:\windows\system32\credssp.dll
2011-06-15 21:13:47 ----A---- C:\windows\system32\wpd_ci.dll
2011-06-15 21:13:47 ----A---- C:\windows\system32\sisbkup.dll
2011-06-15 21:13:47 ----A---- C:\windows\system32\shwebsvc.dll
2011-06-15 21:13:47 ----A---- C:\windows\system32\ifsutil.dll
2011-06-15 21:13:47 ----A---- C:\windows\system32\halacpi.dll
2011-06-15 21:13:47 ----A---- C:\windows\system32\ftp.exe
2011-06-15 21:13:47 ----A---- C:\windows\system32\efscore.dll
2011-06-15 21:13:46 ----A---- C:\windows\system32\syncui.dll
2011-06-15 21:13:46 ----A---- C:\windows\system32\sdcpl.dll
2011-06-15 21:13:46 ----A---- C:\windows\system32\recovery.dll
2011-06-15 21:13:46 ----A---- C:\windows\system32\rdpwsx.dll
2011-06-15 21:13:46 ----A---- C:\windows\system32\odbcjt32.dll
2011-06-15 21:13:46 ----A---- C:\windows\system32\fsquirt.exe
2011-06-15 21:13:46 ----A---- C:\windows\system32\autoplay.dll
2011-06-15 21:13:46 ----A---- C:\windows\system32\ActionCenterCPL.dll
2011-06-15 21:13:45 ----A---- C:\windows\system32\wmpmde.dll
2011-06-15 21:13:45 ----A---- C:\windows\system32\sppnp.dll
2011-06-15 21:13:45 ----A---- C:\windows\system32\rtutils.dll
2011-06-15 21:13:45 ----A---- C:\windows\system32\ntlanman.dll
2011-06-15 21:13:45 ----A---- C:\windows\system32\dskquoui.dll
2011-06-15 21:13:45 ----A---- C:\windows\system32\DeviceCenter.dll
2011-06-15 21:13:45 ----A---- C:\windows\system32\bcdedit.exe
2011-06-15 21:13:44 ----A---- C:\windows\system32\vdsutil.dll
2011-06-15 21:13:44 ----A---- C:\windows\system32\systemcpl.dll
2011-06-15 21:13:44 ----A---- C:\windows\system32\SmartcardCredentialProvider.dll
2011-06-15 21:13:44 ----A---- C:\windows\system32\sethc.exe
2011-06-15 21:13:44 ----A---- C:\windows\system32\riched20.dll
2011-06-15 21:13:44 ----A---- C:\windows\system32\recdisc.exe
2011-06-15 21:13:44 ----A---- C:\windows\system32\OobeFldr.dll
2011-06-15 21:13:44 ----A---- C:\windows\system32\ntprint.dll
2011-06-15 21:13:44 ----A---- C:\windows\system32\nshwfp.dll
2011-06-15 21:13:44 ----A---- C:\windows\system32\bcdboot.exe
2011-06-15 21:13:43 ----A---- C:\windows\system32\rstrui.exe
2011-06-15 21:13:43 ----A---- C:\windows\system32\drivers\tdx.sys
2011-06-15 21:13:43 ----A---- C:\windows\system32\blackbox.dll
2011-06-15 21:13:43 ----A---- C:\windows\system32\AxInstSv.dll
2011-06-15 21:13:41 ----A---- C:\windows\system32\wmpsrcwp.dll
2011-06-15 21:13:41 ----A---- C:\windows\system32\netplwiz.dll
2011-06-15 21:13:41 ----A---- C:\windows\system32\NAPHLPR.DLL
2011-06-15 21:13:41 ----A---- C:\windows\system32\migisol.dll
2011-06-15 21:13:41 ----A---- C:\windows\system32\fms.dll
2011-06-15 21:13:41 ----A---- C:\windows\system32\activeds.dll
2011-06-15 21:13:40 ----A---- C:\windows\system32\nshipsec.dll
2011-06-15 21:13:40 ----A---- C:\windows\system32\nlaapi.dll
2011-06-15 21:13:40 ----A---- C:\windows\system32\httpapi.dll
2011-06-15 21:13:40 ----A---- C:\windows\system32\drivers\tssecsrv.sys
2011-06-15 21:13:40 ----A---- C:\windows\system32\dot3svc.dll
2011-06-15 21:13:40 ----A---- C:\windows\system32\cdosys.dll
2011-06-15 21:13:40 ----A---- C:\windows\system32\AuxiliaryDisplayServices.dll
2011-06-15 21:13:40 ----A---- C:\windows\system32\asycfilt.dll
2011-06-15 21:13:39 ----A---- C:\windows\system32\wuwebv.dll
2011-06-15 21:13:39 ----A---- C:\windows\system32\wsqmcons.exe
2011-06-15 21:13:39 ----A---- C:\windows\system32\wlanmsm.dll
2011-06-15 21:13:39 ----A---- C:\windows\system32\wavemsp.dll
2011-06-15 21:13:39 ----A---- C:\windows\system32\ReAgent.dll
2011-06-15 21:13:39 ----A---- C:\windows\system32\provsvc.dll
2011-06-15 21:13:39 ----A---- C:\windows\system32\msftedit.dll
2011-06-15 21:13:39 ----A---- C:\windows\system32\isoburn.exe
2011-06-15 21:13:39 ----A---- C:\windows\system32\dot3ui.dll
2011-06-15 21:13:38 ----A---- C:\windows\system32\wvc.dll
2011-06-15 21:13:38 ----A---- C:\windows\system32\wtsapi32.dll
2011-06-15 21:13:38 ----A---- C:\windows\system32\wimgapi.dll
2011-06-15 21:13:38 ----A---- C:\windows\system32\tzutil.exe
2011-06-15 21:13:38 ----A---- C:\windows\system32\sysclass.dll
2011-06-15 21:13:38 ----A---- C:\windows\system32\ocsetup.exe
2011-06-15 21:13:38 ----A---- C:\windows\system32\dsuiext.dll
2011-06-15 21:13:38 ----A---- C:\windows\system32\drivers\ndproxy.sys
2011-06-15 21:13:38 ----A---- C:\windows\system32\dfrgui.exe
2011-06-15 21:13:38 ----A---- C:\windows\system32\appinfo.dll
2011-06-15 21:13:37 ----A---- C:\windows\twain_32.dll
2011-06-15 21:13:37 ----A---- C:\windows\system32\twext.dll
2011-06-15 21:13:37 ----A---- C:\windows\system32\shdocvw.dll
2011-06-15 21:13:37 ----A---- C:\windows\system32\qcap.dll
2011-06-15 21:13:37 ----A---- C:\windows\system32\mstask.dll
2011-06-15 21:13:37 ----A---- C:\windows\system32\certprop.dll
2011-06-15 21:13:36 ----A---- C:\windows\system32\uxlib.dll
2011-06-15 21:13:36 ----A---- C:\windows\system32\ssText3d.scr
2011-06-15 21:13:36 ----A---- C:\windows\system32\srrstr.dll
2011-06-15 21:13:36 ----A---- C:\windows\system32\slwga.dll
2011-06-15 21:13:36 ----A---- C:\windows\system32\setupugc.exe
2011-06-15 21:13:36 ----A---- C:\windows\system32\qasf.dll
2011-06-15 21:13:36 ----A---- C:\windows\system32\imm32.dll
2011-06-15 21:13:35 ----A---- C:\windows\system32\wwanconn.dll
2011-06-15 21:13:35 ----A---- C:\windows\system32\wmdrmsdk.dll
2011-06-15 21:13:35 ----A---- C:\windows\system32\nslookup.exe
2011-06-15 21:13:35 ----A---- C:\windows\system32\msvfw32.dll
2011-06-15 21:13:35 ----A---- C:\windows\system32\mciavi32.dll
2011-06-15 21:13:35 ----A---- C:\windows\system32\clusapi.dll
2011-06-15 21:13:35 ----A---- C:\windows\system32\audiodev.dll
2011-06-15 21:13:34 ----A---- C:\windows\system32\WPDShServiceObj.dll
2011-06-15 21:13:34 ----A---- C:\windows\system32\msscp.dll
2011-06-15 21:13:34 ----A---- C:\windows\system32\diskraid.exe
2011-06-15 21:13:34 ----A---- C:\windows\system32\DevicePairingFolder.dll
2011-06-15 21:13:33 ----A---- C:\windows\system32\wimserv.exe
2011-06-15 21:13:33 ----A---- C:\windows\system32\TSpkg.dll
2011-06-15 21:13:33 ----A---- C:\windows\system32\remotepg.dll
2011-06-15 21:13:33 ----A---- C:\windows\system32\rdpencom.dll
2011-06-15 21:13:33 ----A---- C:\windows\system32\raschap.dll
2011-06-15 21:13:33 ----A---- C:\windows\system32\perfmon.exe
2011-06-15 21:13:33 ----A---- C:\windows\system32\drmmgrtn.dll
2011-06-15 21:13:33 ----A---- C:\windows\system32\acppage.dll
2011-06-15 21:13:32 ----A---- C:\windows\system32\wmpdxm.dll
2011-06-15 21:13:32 ----A---- C:\windows\system32\WindowsAnytimeUpgradeResults.exe
2011-06-15 21:13:32 ----A---- C:\windows\system32\vpnikeapi.dll
2011-06-15 21:13:32 ----A---- C:\windows\system32\UserAccountControlSettings.dll
2011-06-15 21:13:32 ----A---- C:\windows\system32\sdrsvc.dll
2011-06-15 21:13:32 ----A---- C:\windows\system32\QUTIL.DLL
2011-06-15 21:13:32 ----A---- C:\windows\system32\onexui.dll
2011-06-15 21:13:32 ----A---- C:\windows\system32\olepro32.dll
2011-06-15 21:13:32 ----A---- C:\windows\system32\odbccp32.dll
2011-06-15 21:13:32 ----A---- C:\windows\system32\ocsetapi.dll
2011-06-15 21:13:32 ----A---- C:\windows\system32\nltest.exe
2011-06-15 21:13:32 ----A---- C:\windows\system32\networkexplorer.dll
2011-06-15 21:13:32 ----A---- C:\windows\system32\NAPCRYPT.DLL
2011-06-15 21:13:32 ----A---- C:\windows\system32\input.dll
2011-06-15 21:13:32 ----A---- C:\windows\system32\browser.dll
2011-06-15 21:13:31 ----A---- C:\windows\system32\wpdwcn.dll
2011-06-15 21:13:31 ----A---- C:\windows\system32\vdsbas.dll
2011-06-15 21:13:31 ----A---- C:\windows\system32\sspisrv.dll
2011-06-15 21:13:31 ----A---- C:\windows\system32\runonce.exe
2011-06-15 21:13:31 ----A---- C:\windows\system32\Mcx2Svc.dll
2011-06-15 21:13:31 ----A---- C:\windows\system32\logagent.exe
2011-06-15 21:13:31 ----A---- C:\windows\system32\iTVData.dll
2011-06-15 21:13:31 ----A---- C:\windows\system32\dxdiagn.dll
2011-06-15 21:13:31 ----A---- C:\windows\bfsvc.exe
2011-06-15 21:13:30 ----A---- C:\windows\system32\wmdrmdev.dll
2011-06-15 21:13:30 ----A---- C:\windows\system32\PnPUnattend.exe
2011-06-15 21:13:30 ----A---- C:\windows\system32\msvidc32.dll
2011-06-15 21:13:30 ----A---- C:\windows\system32\msiexec.exe
2011-06-15 21:13:30 ----A---- C:\windows\system32\MFPlay.dll
2011-06-15 21:13:30 ----A---- C:\windows\system32\eapp3hst.dll
2011-06-15 21:13:30 ----A---- C:\windows\system32\drivers\rmcast.sys
2011-06-15 21:13:30 ----A---- C:\windows\system32\d3d10level9.dll
2011-06-15 21:13:29 ----A---- C:\windows\system32\wudriver.dll
2011-06-15 21:13:29 ----A---- C:\windows\system32\wmpshell.dll
2011-06-15 21:13:29 ----A---- C:\windows\system32\unimdmat.dll
2011-06-15 21:13:29 ----A---- C:\windows\system32\tabcal.exe
2011-06-15 21:13:29 ----A---- C:\windows\system32\sqlcese30.dll
2011-06-15 21:13:29 ----A---- C:\windows\system32\shacct.dll
2011-06-15 21:13:29 ----A---- C:\windows\system32\rdpd3d.dll
2011-06-15 21:13:29 ----A---- C:\windows\system32\mprapi.dll
2011-06-15 21:13:29 ----A---- C:\windows\system32\lsmproxy.dll
2011-06-15 21:13:29 ----A---- C:\windows\system32\iscsium.dll
2011-06-15 21:13:29 ----A---- C:\windows\system32\Bubbles.scr
2011-06-15 21:13:29 ----A---- C:\windows\system32\bitsadmin.exe
2011-06-15 21:13:28 ----A---- C:\windows\system32\WUDFPlatform.dll
2011-06-15 21:13:28 ----A---- C:\windows\system32\WPDSp.dll
2011-06-15 21:13:28 ----A---- C:\windows\system32\srvcli.dll
2011-06-15 21:13:28 ----A---- C:\windows\system32\PortableDeviceSyncProvider.dll
2011-06-15 21:13:28 ----A---- C:\windows\system32\pdh.dll
2011-06-15 21:13:28 ----A---- C:\windows\system32\OpcServices.dll
2011-06-15 21:13:28 ----A---- C:\windows\system32\olethk32.dll
2011-06-15 21:13:28 ----A---- C:\windows\system32\ncryptui.dll
2011-06-15 21:13:28 ----A---- C:\windows\system32\MdSched.exe
2011-06-15 21:13:28 ----A---- C:\windows\system32\logman.exe
2011-06-15 21:13:28 ----A---- C:\windows\system32\djoin.exe
2011-06-15 21:13:28 ----A---- C:\windows\system32\cscapi.dll
2011-06-15 21:13:27 ----A---- C:\windows\system32\wwanprotdim.dll
2011-06-15 21:13:27 ----A---- C:\windows\system32\WMPhoto.dll
2011-06-15 21:13:27 ----A---- C:\windows\system32\WMADMOD.DLL
2011-06-15 21:13:27 ----A---- C:\windows\system32\utildll.dll
2011-06-15 21:13:27 ----A---- C:\windows\system32\tsgqec.dll
2011-06-15 21:13:27 ----A---- C:\windows\system32\Ribbons.scr
2011-06-15 21:13:27 ----A---- C:\windows\system32\QSVRMGMT.DLL
2011-06-15 21:13:27 ----A---- C:\windows\system32\PortableDeviceStatus.dll
2011-06-15 21:13:27 ----A---- C:\windows\system32\odbctrac.dll
2011-06-15 21:13:27 ----A---- C:\windows\system32\Mystify.scr
2011-06-15 21:13:27 ----A---- C:\windows\system32\mapistub.dll
2011-06-15 21:13:27 ----A---- C:\windows\system32\mapi32.dll
2011-06-15 21:13:27 ----A---- C:\windows\system32\lpremove.exe
2011-06-15 21:13:27 ----A---- C:\windows\system32\ActionQueue.dll
2011-06-15 21:13:26 ----A---- C:\windows\system32\WMVSDECD.DLL
2011-06-15 21:13:26 ----A---- C:\windows\system32\WindowsAnytimeUpgrade.exe
2011-06-15 21:13:26 ----A---- C:\windows\system32\wiavideo.dll
2011-06-15 21:13:26 ----A---- C:\windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2011-06-15 21:13:26 ----A---- C:\windows\system32\takeown.exe
2011-06-15 21:13:26 ----A---- C:\windows\system32\sqmapi.dll
2011-06-15 21:13:26 ----A---- C:\windows\system32\iyuv_32.dll
2011-06-15 21:13:26 ----A---- C:\windows\system32\fphc.dll
2011-06-15 21:13:26 ----A---- C:\windows\system32\dot3msm.dll
2011-06-15 21:13:26 ----A---- C:\windows\system32\avifil32.dll
2011-06-15 21:13:25 ----A---- C:\windows\system32\wmdrmnet.dll
2011-06-15 21:13:25 ----A---- C:\windows\system32\sppinst.dll
2011-06-15 21:13:25 ----A---- C:\windows\system32\qdv.dll
2011-06-15 21:13:25 ----A---- C:\windows\system32\QCLIPROV.DLL
2011-06-15 21:13:25 ----A---- C:\windows\system32\msyuv.dll
2011-06-15 21:13:25 ----A---- C:\windows\system32\msrle32.dll
2011-06-15 21:13:25 ----A---- C:\windows\system32\msnetobj.dll
2011-06-15 21:13:25 ----A---- C:\windows\system32\imagehlp.dll
2011-06-15 21:13:25 ----A---- C:\windows\system32\EhStorAPI.dll
2011-06-15 21:13:25 ----A---- C:\windows\system32\cca.dll
2011-06-15 21:13:24 ----A---- C:\windows\system32\WUDFx.dll
2011-06-15 21:13:24 ----A---- C:\windows\system32\WUDFHost.exe
2011-06-15 21:13:24 ----A---- C:\windows\system32\wsnmp32.dll
2011-06-15 21:13:24 ----A---- C:\windows\system32\WMSPDMOD.DLL
2011-06-15 21:13:24 ----A---- C:\windows\system32\vfwwdm32.dll
2011-06-15 21:13:24 ----A---- C:\windows\system32\unattend.dll
2011-06-15 21:13:24 ----A---- C:\windows\system32\setupcln.dll
2011-06-15 21:13:24 ----A---- C:\windows\system32\RelPost.exe
2011-06-15 21:13:24 ----A---- C:\windows\system32\pdhui.dll
2011-06-15 21:13:24 ----A---- C:\windows\system32\MuiUnattend.exe
2011-06-15 21:13:24 ----A---- C:\windows\system32\cmstp.exe
2011-06-15 21:13:24 ----A---- C:\windows\system32\basesrv.dll
2011-06-15 21:13:23 ----A---- C:\windows\system32\wuauclt.exe
2011-06-15 21:13:23 ----A---- C:\windows\system32\umb.dll
2011-06-15 21:13:23 ----A---- C:\windows\system32\tsbyuv.dll
2011-06-15 21:13:23 ----A---- C:\windows\system32\relog.exe
2011-06-15 21:13:23 ----A---- C:\windows\system32\PrintIsolationProxy.dll
2011-06-15 21:13:23 ----A---- C:\windows\system32\msorcl32.dll
2011-06-15 21:13:23 ----A---- C:\windows\system32\iasrecst.dll
2011-06-15 21:13:23 ----A---- C:\windows\system32\drivers\tcpipreg.sys
2011-06-15 21:13:23 ----A---- C:\windows\system32\drivers\ndisuio.sys
2011-06-15 21:13:23 ----A---- C:\windows\system32\drivers\bthport.sys
2011-06-15 21:13:23 ----A---- C:\windows\system32\AzSqlExt.dll
2011-06-15 21:13:22 ----A---- C:\windows\system32\wkscli.dll
2011-06-15 21:13:22 ----A---- C:\windows\system32\WavDest.dll
2011-06-15 21:13:22 ----A---- C:\windows\system32\sppuinotify.dll
2011-06-15 21:13:22 ----A---- C:\windows\system32\spbcd.dll
2011-06-15 21:13:22 ----A---- C:\windows\system32\rastapi.dll
2011-06-15 21:13:22 ----A---- C:\windows\system32\netiougc.exe
2011-06-15 21:13:22 ----A---- C:\windows\system32\netbtugc.exe
2011-06-15 21:13:22 ----A---- C:\windows\system32\mydocs.dll
2011-06-15 21:13:22 ----A---- C:\windows\system32\iscsicli.exe
2011-06-15 21:13:22 ----A---- C:\windows\system32\diskpart.exe
2011-06-15 21:13:22 ----A---- C:\windows\system32\amstream.dll
2011-06-15 21:13:21 ----A---- C:\windows\system32\wmpps.dll
2011-06-15 21:13:21 ----A---- C:\windows\system32\syssetup.dll
2011-06-15 21:13:21 ----A---- C:\windows\system32\setbcdlocale.dll
2011-06-15 21:13:21 ----A---- C:\windows\system32\secproc_ssp_isv.dll
2011-06-15 21:13:21 ----A---- C:\windows\system32\secproc_ssp.dll
2011-06-15 21:13:21 ----A---- C:\windows\system32\resutils.dll
2011-06-15 21:13:21 ----A---- C:\windows\system32\nrpsrv.dll
2011-06-15 21:13:21 ----A---- C:\windows\system32\MultiDigiMon.exe
2011-06-15 21:13:21 ----A---- C:\windows\system32\itircl.dll
2011-06-15 21:13:21 ----A---- C:\windows\system32\FXSTIFF.dll
2011-06-15 21:13:21 ----A---- C:\windows\system32\drivers\usbccgp.sys
2011-06-15 21:13:21 ----A---- C:\windows\system32\CertPolEng.dll
2011-06-15 21:13:20 ----A---- C:\windows\system32\wuapp.exe
2011-06-15 21:13:20 ----A---- C:\windows\system32\WerFaultSecure.exe
2011-06-15 21:13:20 ----A---- C:\windows\system32\tlscsp.dll
2011-06-15 21:13:20 ----A---- C:\windows\system32\secur32.dll
2011-06-15 21:13:20 ----A---- C:\windows\system32\RMActivate_ssp_isv.exe
2011-06-15 21:13:20 ----A---- C:\windows\system32\RMActivate_ssp.exe
2011-06-15 21:13:20 ----A---- C:\windows\system32\ReAgentc.exe
2011-06-15 21:13:20 ----A---- C:\windows\system32\netutils.dll
2011-06-15 21:13:20 ----A---- C:\windows\system32\findstr.exe
2011-06-15 21:13:20 ----A---- C:\windows\system32\eappgnui.dll
2011-06-15 21:13:19 ----A---- C:\windows\system32\wiarpc.dll
2011-06-15 21:13:19 ----A---- C:\windows\system32\sppc.dll
2011-06-15 21:13:19 ----A---- C:\windows\system32\netapi32.dll
2011-06-15 21:13:19 ----A---- C:\windows\system32\muifontsetup.dll
2011-06-15 21:13:19 ----A---- C:\windows\system32\mobsync.exe
2011-06-15 21:13:19 ----A---- C:\windows\system32\mciqtz32.dll
2011-06-15 21:13:19 ----A---- C:\windows\system32\iccvid.dll
2011-06-15 21:13:19 ----A---- C:\windows\system32\cabinet.dll
2011-06-15 21:13:18 ----A---- C:\windows\system32\wdiasqmmodule.dll
2011-06-15 21:13:18 ----A---- C:\windows\system32\unlodctr.exe
2011-06-15 21:13:18 ----A---- C:\windows\system32\spopk.dll
2011-06-15 21:13:18 ----A---- C:\windows\system32\shimgvw.dll
2011-06-15 21:13:18 ----A---- C:\windows\system32\repair-bde.exe
2011-06-15 21:13:18 ----A---- C:\windows\system32\manage-bde.exe
2011-06-15 21:13:18 ----A---- C:\windows\system32\luainstall.dll
2011-06-15 21:13:18 ----A---- C:\windows\system32\HotStartUserAgent.dll
2011-06-15 21:13:18 ----A---- C:\windows\system32\drivers\usbrpm.sys
2011-06-15 21:13:18 ----A---- C:\windows\system32\drivers\tdi.sys
2011-06-15 21:13:18 ----A---- C:\windows\system32\drivers\CompositeBus.sys
2011-06-15 21:13:18 ----A---- C:\windows\system32\dosx.exe
2011-06-15 21:13:17 ----A---- C:\windows\system32\WUDFCoinstaller.dll
2011-06-15 21:13:17 ----A---- C:\windows\system32\rdprefdrvapi.dll
2011-06-15 21:13:17 ----A---- C:\windows\system32\profprov.dll
2011-06-15 21:13:17 ----A---- C:\windows\system32\odbcconf.dll
2011-06-15 21:13:17 ----A---- C:\windows\system32\netcfg.exe
2011-06-15 21:13:17 ----A---- C:\windows\system32\msdmo.dll
2011-06-15 21:13:17 ----A---- C:\windows\system32\inetmib1.dll
2011-06-15 21:13:17 ----A---- C:\windows\system32\drivers\cdrom.sys
2011-06-15 21:13:16 ----A---- C:\windows\system32\wups.dll
2011-06-15 21:13:16 ----A---- C:\windows\system32\UIRibbonRes.dll
2011-06-15 21:13:16 ----A---- C:\windows\system32\perfts.dll
2011-06-15 21:13:16 ----A---- C:\windows\system32\icaapi.dll
2011-06-15 21:13:16 ----A---- C:\windows\system32\browcli.dll
2011-06-15 21:13:15 ----A---- C:\windows\system32\TRAPI.dll
2011-06-15 21:13:15 ----A---- C:\windows\system32\RDPENCDD.dll
2011-06-15 21:13:15 ----A---- C:\windows\system32\FXSMON.dll
2011-06-15 21:13:15 ----A---- C:\windows\system32\elsTrans.dll
2011-06-15 21:13:15 ----A---- C:\windows\system32\drivers\tunnel.sys
2011-06-15 21:13:15 ----A---- C:\windows\system32\drivers\dfsc.sys
2011-06-15 21:13:15 ----A---- C:\windows\system32\bitsperf.dll
2011-06-15 21:13:14 ----A---- C:\windows\system32\wshbth.dll
2011-06-15 21:13:14 ----A---- C:\windows\system32\schedcli.dll
2011-06-15 21:13:14 ----A---- C:\windows\system32\napdsnap.dll
2011-06-15 21:13:14 ----A---- C:\windows\system32\LogonUI.exe
2011-06-15 21:13:14 ----A---- C:\windows\system32\dsauth.dll
2011-06-15 21:13:14 ----A---- C:\windows\system32\drivers\acpipmi.sys
2011-06-15 21:13:14 ----A---- C:\windows\system32\cscdll.dll
2011-06-15 21:13:13 ----A---- C:\windows\system32\wups2.dll
2011-06-15 21:13:13 ----A---- C:\windows\system32\wsdchngr.dll
2011-06-15 21:13:13 ----A---- C:\windows\system32\sscore.dll
2011-06-15 21:13:13 ----A---- C:\windows\system32\shgina.dll
2011-06-15 21:13:13 ----A---- C:\windows\system32\riched32.dll
2011-06-15 21:13:13 ----A---- C:\windows\system32\drivers\ndiswan.sys
2011-06-15 21:13:11 ----A---- C:\windows\system32\rdpcfgex.dll
2011-06-15 21:13:11 ----A---- C:\windows\system32\drivers\WUDFRd.sys
2011-06-15 21:13:11 ----A---- C:\windows\system32\drivers\appid.sys
2011-06-15 21:13:10 ----A---- C:\windows\system32\wshirda.dll
2011-06-15 21:13:10 ----A---- C:\windows\system32\drivers\IPMIDrv.sys
2011-06-15 21:13:09 ----A---- C:\windows\system32\drivers\USBCAMD2.sys
2011-06-15 21:13:09 ----A---- C:\windows\system32\drivers\USBCAMD.sys
2011-06-15 21:13:09 ----A---- C:\windows\system32\drivers\kbdhid.sys
2011-06-15 21:13:08 ----A---- C:\windows\system32\spwmp.dll
2011-06-15 21:13:08 ----A---- C:\windows\system32\drivers\wanarp.sys
2011-06-15 21:13:08 ----A---- C:\windows\system32\drivers\umbus.sys
2011-06-15 21:13:08 ----A---- C:\windows\system32\drivers\tdtcp.sys
2011-06-15 21:13:08 ----A---- C:\windows\system32\drivers\tdpipe.sys
2011-06-15 21:13:08 ----A---- C:\windows\system32\drivers\HdAudio.sys
2011-06-15 21:13:08 ----A---- C:\windows\system32\drivers\hdaudbus.sys
2011-06-15 21:13:08 ----A---- C:\windows\system32\C_ISCII.DLL
2011-06-15 21:13:08 ----A---- C:\windows\system32\browseui.dll
2011-06-15 21:13:07 ----A---- C:\windows\system32\wmploc.DLL
2011-06-15 21:13:07 ----A---- C:\windows\system32\shunimpl.dll
2011-06-15 21:13:07 ----A---- C:\windows\system32\RDPREFDD.dll
2011-06-15 21:13:07 ----A---- C:\windows\system32\dxmasf.dll
2011-06-15 21:13:07 ----A---- C:\windows\system32\drivers\WUDFPf.sys
2011-06-15 21:13:07 ----A---- C:\windows\system32\drivers\scfilter.sys
2011-06-15 21:13:07 ----A---- C:\windows\system32\drivers\RDPCDD.sys
2011-06-15 21:13:06 ----A---- C:\windows\system32\KBDUS.DLL
2011-06-15 21:13:06 ----A---- C:\windows\system32\KBDUGHR1.DLL
2011-06-15 21:13:06 ----A---- C:\windows\system32\KBDTURME.DLL
2011-06-15 21:13:06 ----A---- C:\windows\system32\KBDTAJIK.DLL
2011-06-15 21:13:06 ----A---- C:\windows\system32\KBDSF.DLL
2011-06-15 21:13:06 ----A---- C:\windows\system32\KBDNEPR.DLL
2011-06-15 21:13:06 ----A---- C:\windows\system32\KBDMON.DLL
2011-06-15 21:13:06 ----A---- C:\windows\system32\KBDMAORI.DLL
2011-06-15 21:13:06 ----A---- C:\windows\system32\KBDLT1.DLL
2011-06-15 21:13:06 ----A---- C:\windows\system32\kbdlk41a.dll
2011-06-15 21:13:06 ----A---- C:\windows\system32\KBDINTEL.DLL
2011-06-15 21:13:06 ----A---- C:\windows\system32\KBDINTAM.DLL
2011-06-15 21:13:06 ----A---- C:\windows\system32\KBDINORI.DLL
2011-06-15 21:13:06 ----A---- C:\windows\system32\KBDINMAR.DLL
2011-06-15 21:13:06 ----A---- C:\windows\system32\KBDINKAN.DLL
2011-06-15 21:13:06 ----A---- C:\windows\system32\KBDINHIN.DLL
2011-06-15 21:13:06 ----A---- C:\windows\system32\KBDINBEN.DLL
2011-06-15 21:13:06 ----A---- C:\windows\system32\KBDGEO.DLL
2011-06-15 21:13:06 ----A---- C:\windows\system32\KBDBULG.DLL
2011-06-15 21:13:06 ----A---- C:\windows\system32\KBDBLR.DLL
2011-06-15 21:13:06 ----A---- C:\windows\system32\KBDBASH.DLL
2011-06-15 21:13:05 ----A---- C:\windows\system32\tzres.dll
2011-06-15 21:13:05 ----A---- C:\windows\system32\spwizres.dll
2011-06-15 21:13:05 ----A---- C:\windows\system32\pifmgr.dll
2011-06-15 21:13:05 ----A---- C:\windows\system32\nlsbres.dll
2011-06-15 21:13:05 ----A---- C:\windows\system32\KBDTUQ.DLL
2011-06-15 21:13:05 ----A---- C:\windows\system32\KBDTUF.DLL
2011-06-15 21:13:05 ----A---- C:\windows\system32\KBDSG.DLL
2011-06-15 21:13:05 ----A---- C:\windows\system32\KBDPO.DLL
2011-06-15 21:13:05 ----A---- C:\windows\system32\KBDGR1.DLL
2011-06-15 21:13:05 ----A---- C:\windows\system32\KBDGKL.DLL
2011-06-15 21:13:05 ----A---- C:\windows\system32\KBDCZ1.DLL
2011-06-15 21:13:05 ----A---- C:\windows\system32\dpnaddr.dll
2011-06-15 21:13:05 ----A---- C:\windows\system32\BlbEvents.dll
2011-06-15 21:12:22 ----A---- C:\windows\system32\wmicmiplugin.dll
2011-06-15 21:12:22 ----A---- C:\windows\system32\wbemcomn.dll
2011-06-15 21:12:04 ----A---- C:\windows\system32\SmiEngine.dll
2011-06-15 21:11:55 ----A---- C:\windows\system32\wdscore.dll
2011-06-15 21:11:55 ----A---- C:\windows\system32\PkgMgr.exe
2011-06-15 21:10:44 ----A---- C:\windows\system32\drvstore.dll
2011-06-15 21:10:42 ----A---- C:\windows\system32\dpx.dll
2011-06-15 20:47:12 ----A---- C:\windows\system32\drivers\tcpip.sys
2011-06-15 20:47:12 ----A---- C:\windows\system32\drivers\FWPKCLNT.SYS
2011-06-15 20:47:12 ----A---- C:\windows\system32\drivers\afd.sys
2011-06-14 21:29:25 ----A---- C:\windows\system32\oleaut32.dll
2011-06-14 21:25:46 ----A---- C:\windows\system32\drivers\mrxsmb20.sys
2011-06-14 21:25:46 ----A---- C:\windows\system32\drivers\mrxsmb10.sys
2011-06-14 21:25:46 ----A---- C:\windows\system32\drivers\mrxsmb.sys
2011-06-14 20:53:06 ----D---- C:\Program Files\Common Files\Java
2011-06-14 20:52:26 ----A---- C:\windows\system32\javaws.exe
2011-06-14 20:52:26 ----A---- C:\windows\system32\javaw.exe
2011-06-14 20:52:26 ----A---- C:\windows\system32\java.exe

======List of files/folders modified in the last 1 month======

2011-07-12 09:25:07 ----D---- C:\Users\Kuba\AppData\Roaming\ICQ
2011-07-12 09:24:22 ----D---- C:\windows\Temp
2011-07-12 09:23:39 ----D---- C:\windows\system32\config
2011-07-12 09:23:26 ----D---- C:\ProgramData\NVIDIA
2011-07-12 09:16:55 ----D---- C:\Users\Kuba\AppData\Roaming\Adobe
2011-07-12 09:16:38 ----D---- C:\Program Files\Adobe
2011-07-12 09:14:43 ----HD---- C:\ProgramData
2011-07-12 09:14:02 ----D---- C:\Program Files\Common Files\Adobe
2011-07-12 09:13:45 ----D---- C:\ProgramData\Adobe
2011-07-12 09:13:17 ----SHD---- C:\windows\Installer
2011-07-12 09:11:11 ----RSD---- C:\windows\Fonts
2011-07-12 09:05:50 ----D---- C:\windows\System32
2011-07-12 09:04:48 ----D---- C:\Program Files\Common Files\Adobe AIR
2011-07-12 09:01:40 ----D---- C:\windows\winsxs
2011-07-12 08:50:54 ----RD---- C:\Program Files
2011-07-12 08:47:42 ----D---- C:\ProgramData\AVG10
2011-07-12 08:45:21 ----D---- C:\windows\system32\Tasks
2011-07-12 08:44:28 ----D---- C:\ProgramData\MFAData
2011-07-12 08:43:53 ----SHD---- C:\System Volume Information
2011-07-12 08:43:11 ----AD---- C:\windows\system32\drivers
2011-07-12 08:42:38 ----D---- C:\windows\inf
2011-07-12 08:41:29 ----D---- C:\Windows
2011-07-12 08:36:33 ----D---- C:\Program Files\Common Files\Apple
2011-07-12 08:35:41 ----DC---- C:\windows\system32\DRVSTORE
2011-07-04 21:02:43 ----A---- C:\windows\system32\PerfStringBackup.INI
2011-07-03 22:20:39 ----D---- C:\windows\Microsoft.NET
2011-07-03 22:19:25 ----RSD---- C:\windows\assembly
2011-07-01 20:26:02 ----D---- C:\Program Files\ICQ7.5
2011-06-30 10:10:43 ----D---- C:\windows\system32\catroot
2011-06-30 10:10:42 ----D---- C:\windows\system32\catroot2
2011-06-29 21:56:29 ----D---- C:\Users\Kuba\AppData\Roaming\AIMP
2011-06-25 20:58:00 ----D---- C:\windows\system32\DriverStore
2011-06-24 22:03:40 ----D---- C:\windows\debug
2011-06-16 20:43:56 ----D---- C:\Program Files\Microsoft Silverlight
2011-06-15 23:45:01 ----D---- C:\Program Files\Internet Explorer
2011-06-15 23:43:44 ----D---- C:\ProgramData\Microsoft Help
2011-06-15 23:37:53 ----A---- C:\windows\system32\MRT.exe
2011-06-15 22:58:47 ----SHD---- C:\Boot
2011-06-15 22:50:49 ----D---- C:\Program Files\Windows Sidebar
2011-06-15 22:50:49 ----D---- C:\Program Files\Windows Portable Devices
2011-06-15 22:50:49 ----D---- C:\Program Files\Windows Photo Viewer
2011-06-15 22:50:49 ----D---- C:\Program Files\Windows Media Player
2011-06-15 22:50:49 ----D---- C:\Program Files\Windows Mail
2011-06-15 22:50:49 ----D---- C:\Program Files\Windows Journal
2011-06-15 22:50:49 ----D---- C:\Program Files\DVD Maker
2011-06-15 22:50:47 ----D---- C:\Program Files\Windows Defender
2011-06-15 22:50:46 ----D---- C:\windows\servicing
2011-06-15 22:50:46 ----D---- C:\windows\ehome
2011-06-15 22:50:38 ----D---- C:\windows\system32\sysprep
2011-06-15 22:50:38 ----D---- C:\windows\system32\oobe
2011-06-15 22:50:38 ----D---- C:\windows\system32\en-US
2011-06-15 22:50:38 ----D---- C:\windows\system32\da-DK
2011-06-15 22:50:37 ----D---- C:\windows\system32\Setup
2011-06-15 22:50:37 ----D---- C:\windows\system32\migration
2011-06-15 22:50:37 ----D---- C:\windows\system32\cs
2011-06-15 22:50:37 ----D---- C:\windows\system32\AdvancedInstallers
2011-06-15 22:50:36 ----D---- C:\windows\system32\sppui
2011-06-15 22:50:36 ----D---- C:\windows\system32\manifeststore
2011-06-15 22:50:36 ----D---- C:\windows\system32\es-ES
2011-06-15 22:50:36 ----D---- C:\windows\system32\cs-CZ
2011-06-15 22:50:35 ----D---- C:\windows\system32\drivers\cs-CZ
2011-06-15 22:50:34 ----D---- C:\windows\system32\wbem
2011-06-15 22:50:34 ----D---- C:\windows\system32\migwiz
2011-06-15 22:50:33 ----D---- C:\windows\system32\Dism
2011-06-15 22:50:11 ----D---- C:\windows\AppPatch
2011-06-15 22:49:59 ----D---- C:\windows\system32\Boot
2011-06-15 22:48:01 ----D---- C:\windows\system32\wdi
2011-06-15 22:45:09 ----A---- C:\windows\system32\msclmd.dll
2011-06-14 20:53:06 ----D---- C:\Program Files\Common Files
2011-06-14 20:52:11 ----D---- C:\Program Files\Java

Poulito
Návštěvník
Návštěvník
Příspěvky: 22
Registrován: 11 črc 2011 14:07

Re: Prosim o kontrolu logu

#2 Příspěvek od Poulito »

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2009-06-05 330264]
R0 nvpciflt;nvpciflt; C:\windows\system32\DRIVERS\nvpciflt.sys [2010-10-16 19656]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 sptd;sptd; C:\windows\System32\Drivers\sptd.sys [2010-11-15 691696]
R1 AsUpIO;AsUpIO; C:\windows\system32\drivers\AsUpIO.sys [2010-03-31 11520]
R1 aswRdr;aswRdr; C:\windows\system32\drivers\aswRdr.sys [2011-07-04 25432]
R1 aswSnx;aswSnx; C:\windows\system32\drivers\aswSnx.sys [2011-07-04 441176]
R1 aswSP;aswSP; C:\windows\system32\drivers\aswSP.sys [2011-07-04 309848]
R1 aswTdi;avast! Network Shield Support; C:\windows\system32\drivers\aswTdi.sys [2011-07-04 43608]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 aswFsBlk;aswFsBlk; C:\windows\system32\drivers\aswFsBlk.sys [2011-07-04 19544]
R2 aswMonFlt;aswMonFlt; \??\C:\windows\system32\drivers\aswMonFlt.sys [2011-07-04 54104]
R2 CVPNDRVA;Cisco Systems Inc. IPSec Driver; \??\C:\windows\system32\Drivers\CVPNDRVA.sys [2010-03-23 308859]
R2 Sentinel;Sentinel; C:\windows\System32\Drivers\SENTINEL.SYS [2001-06-22 73728]
R3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\windows\system32\DRIVERS\bcmwl6.sys [2010-05-08 2710592]
R3 DNE;Deterministic Network Enhancer Miniport; C:\windows\system32\DRIVERS\dne2000.sys [2008-11-16 131984]
R3 hamachi;Hamachi Network Interface; C:\windows\system32\DRIVERS\hamachi.sys [2009-03-18 26176]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd32.sys [2010-10-25 4807168]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\windows\system32\drivers\RTKVHDA.sys [2010-04-27 3084256]
R3 kbfiltr;Keyboard Filter; C:\windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 13880]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\windows\system32\DRIVERS\L1C62x86.sys [2010-05-10 68208]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2009-11-19 230448]
R3 tap0901;TAP-Win32 Adapter V9; C:\windows\system32\DRIVERS\tap0901.sys [2010-11-08 26112]
S2 Parvdm;Parvdm; C:\windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 anzrk82k;anzrk82k; C:\windows\system32\drivers\anzrk82k.sys []
S3 athr;Atheros Extensible Wireless LAN device driver; C:\windows\system32\DRIVERS\athr.sys [2009-07-14 1096704]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2010-11-20 393216]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2010-11-20 60416]
S3 btwampfl;Bluetooth AMP USB Filter; C:\windows\system32\drivers\btwampfl.sys [2010-05-21 293928]
S3 btwaudio;Bluetooth Audio Device Service; C:\windows\system32\drivers\btwaudio.sys [2010-05-21 88104]
S3 btwavdt;Bluetooth AVDT; C:\windows\system32\drivers\btwavdt.sys [2010-05-21 111144]
S3 btwl2cap;Bluetooth L2CAP Service; C:\windows\system32\DRIVERS\btwl2cap.sys [2010-05-21 33320]
S3 btwrchid;btwrchid; C:\windows\system32\DRIVERS\btwrchid.sys [2010-05-21 18728]
S3 CVirtA;Cisco Systems VPN Adapter; C:\windows\system32\DRIVERS\CVirtA.sys [2007-01-18 5275]
S3 EagleNT;EagleNT; \??\C:\windows\system32\drivers\EagleNT.sys []
S3 fssfltr;FssFltr; C:\windows\system32\DRIVERS\fssfltr.sys [2010-09-23 39272]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
S3 sisagp;Filtr SIS sběrnice AGP; C:\windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 USBAAPL;Apple Mobile USB Driver; C:\windows\System32\Drivers\usbaapl.sys [2011-02-18 41984]
S3 viaagp;Filtr VIA sběrnice AGP; C:\windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2011-02-18 37664]
R2 AsusService;Asus Launcher Service; C:\Windows\System32\AsusService.exe [2009-08-19 219136]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2011-07-04 42184]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-04-06 349472]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2010-05-21 652576]
R2 CVPND;Cisco Systems, Inc. VPN Service; C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe [2010-03-23 1528616]
R2 Hamachi2Svc;LogMeIn Hamachi 2.0 Tunneling Engine; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [2011-05-25 1336712]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2009-06-05 354840]
R2 impi_smpd;Intel(R) MPI Library Process Manager, Intel; C:\MSC.Software\Marc\2010\marc2010\intelmpi\win32\bin\ismpd.exe [2007-10-11 1114112]
R2 MSC.Licensing 11.6;MSC.Licensing 11.6; C:\MSC.Software\MSC.Licensing\11.6\lmgrd.exe [2009-07-14 1431440]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\windows\System32\svchost.exe [2009-07-14 20992]
R2 nvsvc;NVIDIA Display Driver Service; C:\windows\system32\nvvsvc.exe [2010-10-16 600680]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2010-10-16 1641064]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\windows\System32\svchost.exe [2009-07-14 20992]
R2 PnkBstrA;PnkBstrA; C:\windows\system32\PnkBstrA.exe [2010-12-30 75136]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2010-09-22 249136]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2010-10-16 369256]
R2 UGS License Server (ugslmd);UGS License Server (ugslmd); D:\Programy\UGS\UGSLicensing\lmgrd.exe [2009-07-07 1510152]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 1710464]
R2 ZooService;Zoo License Manager; C:\PROGRA~1\ZOO4~1.0\ZOOSER~1.EXE [2008-11-19 249856]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2010-09-23 1493352]
S3 InstallShield Licensing Service;InstallShield Licensing Service; C:\Program Files\Common Files\InstallShield Shared\Service\InstallShield Licensing Service.exe [2011-03-16 78536]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 SwitchBoard;SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2010-11-12 1343400]

-----------------EOF-----------------

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosim o kontrolu logu

#3 Příspěvek od vyosek »

Zdravim a pekny den preji :)

:arrow: Stahnete OTL (viz muj podpis) a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na OTL pravym a dejte Run As Administrator ci Spustit jako spravce
  • Pokud pouzivate 64bitovy OS, zkontrolujte, zda-li je zaskrtnuty ctverecek u Pro 64 bitové OS, pokud ne, zaskrtnete jej
  • Zaskrtnete okenko Pro vsechny uzivatele
  • Zaskrtnete okenko Kontrola na havet "LOP"
  • Zaskrtnete okenko Kontrola na havet "Purity"
  • Stari souboru zmente z 30 dnu na 7 dnu
  • Do spodniho okenka Vlastni skenovani/opravy vlozte skript nize
  • Kód: Vybrat vše

    netsvcs
    drivers32
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
    c:\windows\*.* /U
    %SYSTEMDRIVE%\*.exe
    %ALLUSERSPROFILE%\Application Data\*.
    %ALLUSERSPROFILE%\Application Data\*.exe /s
    %APPDATA%\*.
    %APPDATA%\*.exe /s
    /md5start
    adp3132.sys
    AGP440.sys
    ahcix86.sys
    ahcix86s.sys
    atapi.sys
    autochk.exe
    cdrom.sys
    cngaudit.dll
    cryptsvc.dll
    eNetHook.dll
    eventlog.dll
    explorer.exe
    hal.dll
    Changer.sys
    iaStor.sys
    iastorv.sys
    IdeChnDr.sys
    isapnp.sys
    JakNDis.sys
    KR10N.sys
    logevent.dll
    lsass.exe
    mv61xx.sys
    ndis.sys
    netlogon.dll
    ntelogon.dll
    nvata.sys
    nvatabus.sys
    nvgts.sys
    nvraid.sys
    nvrd32.sys
    nvstor.sys
    nvstor32.sys
    scecli.dll
    sceclt.dll
    smss.exe
    svchost.exe
    symmpi.sys
    tcpip.sys
    userinit.exe
    vaxscsi.sys
    viamraid.sys
    viasraid.sys
    ViPrt.sys
    winlogon.exe
    ws2_32.dll
    /md5stop
    %systemroot%\*. /mp /s
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\Tasks\*.job /lockedfiles
    %systemroot%\system32\drivers\*.sys /lockedfiles
    %systemroot%\System32\config\*.sav
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\system32\drivers\*.sys /3
    %systemroot%\system32\*.* /3
    CREATERESTOREPOINT
  • Kliknete na tlacitko Prohledat
  • Po dokonceni skenu (cca 10 az 15 min) se objevi logy OTL.txt a Extras.txt, oba sem vlozte
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Poulito
Návštěvník
Návštěvník
Příspěvky: 22
Registrován: 11 črc 2011 14:07

Re: Prosim o kontrolu logu

#4 Příspěvek od Poulito »

tak zde je otl.txt
OTL logfile created on: 13.7.2011 10:52:21 - Run 1
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Users\Kuba\Desktop
Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

1,99 Gb Total Physical Memory | 0,89 Gb Available Physical Memory | 44,57% Memory free
3,98 Gb Paging File | 2,55 Gb Available in Paging File | 64,05% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files
Drive C: | 100,00 Gb Total Space | 59,34 Gb Free Space | 59,34% Space Free | Partition Type: NTFS
Drive D: | 117,87 Gb Total Space | 60,87 Gb Free Space | 51,64% Space Free | Partition Type: NTFS

Computer Name: KUBA-PC | User Name: Kuba | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days

========== Processes (SafeList) ==========

PRC - [2011.07.13 10:49:52 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\Kuba\Desktop\OTL.exe
PRC - [2011.07.04 13:43:54 | 003,493,720 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2011.07.04 13:43:51 | 000,042,184 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2011.06.16 06:30:16 | 000,924,632 | ---- | M] (Mozilla Corporation) -- D:\Programy\Mozilla Firefox\firefox.exe
PRC - [2011.05.25 17:29:54 | 001,951,112 | ---- | M] (LogMeIn Inc.) -- C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe
PRC - [2011.05.25 17:29:48 | 001,336,712 | ---- | M] (LogMeIn Inc.) -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
PRC - [2011.02.25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2010.11.20 14:17:47 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe
PRC - [2010.11.20 14:17:00 | 000,271,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\conhost.exe
PRC - [2010.10.16 13:42:38 | 000,792,680 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
PRC - [2010.10.16 12:48:56 | 001,641,064 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
PRC - [2010.10.16 12:46:40 | 000,369,256 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
PRC - [2010.07.30 02:13:48 | 003,058,304 | ---- | M] (ASUS) -- C:\Windows\AsScrPro.exe
PRC - [2010.06.30 00:31:56 | 001,241,520 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files\EeePC\HotkeyService\HotkeyService.exe
PRC - [2010.05.29 01:41:36 | 000,445,344 | ---- | M] (ASUS) -- C:\Program Files\EeePC\CapsHook\CapsHook.exe
PRC - [2010.05.21 22:42:48 | 000,828,704 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
PRC - [2010.05.21 22:42:48 | 000,652,576 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
PRC - [2010.05.11 23:55:17 | 000,643,072 | ---- | M] () -- D:\Programy\UGS\UGSLicensing\ugslmd.exe
PRC - [2010.04.15 19:34:00 | 000,370,480 | ---- | M] (syncables, LLC) -- C:\Program Files\syncables\syncables desktop\syncables.exe
PRC - [2010.04.15 19:34:00 | 000,145,184 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\syncables\syncables desktop\jre\bin\javaw.exe
PRC - [2010.04.03 02:45:20 | 000,407,552 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files\EeePC\SHE\SuperHybridEngine.exe
PRC - [2010.03.23 13:19:32 | 001,528,616 | ---- | M] (Cisco Systems, Inc.) -- C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe
PRC - [2009.11.19 15:44:14 | 000,083,240 | ---- | M] (Synaptics Incorporated) -- C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe
PRC - [2009.09.11 20:41:02 | 000,100,328 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files\EeePC\HotkeyService\HotKeyMon.exe
PRC - [2009.08.19 02:35:56 | 000,219,136 | ---- | M] () -- C:\Windows\System32\AsusService.exe
PRC - [2009.07.14 18:05:22 | 001,650,688 | ---- | M] () -- C:\MSC.Software\MSC.Licensing\11.6\msc.exe
PRC - [2009.07.14 18:05:22 | 001,431,440 | ---- | M] (Acresso Software Inc.) -- C:\MSC.Software\MSC.Licensing\11.6\lmgrd.exe
PRC - [2009.07.07 08:16:28 | 001,510,152 | ---- | M] (Acresso Software Inc.) -- D:\Programy\UGS\UGSLicensing\lmgrd.exe
PRC - [2009.06.05 04:03:32 | 000,186,904 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
PRC - [2009.06.05 04:03:06 | 000,354,840 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
PRC - [2008.11.19 15:19:14 | 000,249,856 | ---- | M] (Robert McNeel & Associates) -- C:\Program Files\Zoo 4.0\ZooService.exe
PRC - [2007.10.11 01:04:00 | 001,114,112 | ---- | M] (Intel Corporation) -- C:\MSC.Software\Marc\2010\marc2010\intelmpi\win32\bin\ismpd.exe
PRC - [2007.09.02 14:58:52 | 000,495,616 | ---- | M] () -- C:\Program Files\RocketDock\RocketDock.exe
PRC - [1998.05.24 15:26:54 | 000,351,232 | ---- | M] () -- D:\Programy\salamander\SALAMAND.EXE


========== Modules (SafeList) ==========

MOD - [2011.07.13 10:49:52 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\Kuba\Desktop\OTL.exe
MOD - [2010.11.20 13:55:09 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
MOD - [2010.10.16 20:55:00 | 000,100,968 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvinit.dll
MOD - [2010.05.29 01:41:38 | 000,208,792 | ---- | M] (ASUS) -- C:\Program Files\EeePC\CapsHook\Hook.dll


========== Win32 Services (SafeList) ==========

SRV - [2011.07.04 13:43:51 | 000,042,184 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV - [2011.05.25 17:29:48 | 001,336,712 | ---- | M] (LogMeIn Inc.) [Auto | Running] -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc)
SRV - [2011.03.16 21:42:26 | 000,078,536 | ---- | M] (Macrovision ) [On_Demand | Stopped] -- C:\Program Files\Common Files\InstallShield Shared\Service\InstallShield Licensing Service.exe -- (InstallShield Licensing Service)
SRV - [2010.11.12 21:09:22 | 001,343,400 | ---- | M] (Microsoft Corporation) [Unknown | Stopped] -- C:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc)
SRV - [2010.10.16 12:48:56 | 001,641,064 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe -- (nvUpdatusService)
SRV - [2010.10.16 12:46:40 | 000,369,256 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2010.05.21 22:42:48 | 000,652,576 | ---- | M] (Broadcom Corporation.) [Auto | Running] -- C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe -- (btwdins)
SRV - [2010.03.23 13:19:32 | 001,528,616 | ---- | M] (Cisco Systems, Inc.) [Auto | Running] -- C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe -- (CVPND)
SRV - [2010.02.19 13:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
SRV - [2009.08.19 02:35:56 | 000,219,136 | ---- | M] () [Auto | Running] -- C:\Windows\System32\AsusService.exe -- (AsusService)
SRV - [2009.07.14 18:05:22 | 001,431,440 | ---- | M] (Acresso Software Inc.) [Auto | Running] -- C:\MSC.Software\MSC.Licensing\11.6\lmgrd.exe -- (MSC.Licensing 11.6)
SRV - [2009.07.14 03:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc)
SRV - [2009.07.14 03:15:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2009.07.07 08:16:28 | 001,510,152 | ---- | M] (Acresso Software Inc.) [Auto | Running] -- D:\Programy\UGS\UGSLicensing\lmgrd.exe -- (UGS License Server (ugslmd)) UGS License Server (ugslmd)
SRV - [2009.06.05 04:03:06 | 000,354,840 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe -- (IAANTMON) Intel(R)
SRV - [2008.11.19 15:19:14 | 000,249,856 | ---- | M] (Robert McNeel & Associates) [Auto | Running] -- C:\Program Files\Zoo 4.0\ZooService.exe -- (ZooService)
SRV - [2007.10.11 01:04:00 | 001,114,112 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\MSC.Software\Marc\2010\marc2010\intelmpi\win32\bin\ismpd.exe -- (impi_smpd) Intel(R)


========== Driver Services (SafeList) ==========

DRV - [2011.07.04 13:36:43 | 000,441,176 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\windows\System32\drivers\aswSnx.sys -- (aswSnx)
DRV - [2011.07.04 13:36:32 | 000,309,848 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\windows\System32\drivers\aswSP.sys -- (aswSP)
DRV - [2011.07.04 13:35:23 | 000,043,608 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\windows\System32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2011.07.04 13:32:32 | 000,025,432 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\windows\System32\drivers\aswRdr.sys -- (aswRdr)
DRV - [2011.07.04 13:32:20 | 000,054,104 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\System32\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV - [2011.07.04 13:32:12 | 000,019,544 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\windows\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2010.11.20 12:24:41 | 000,052,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV - [2010.11.15 11:54:58 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\windows\System32\Drivers\sptd.sys -- (sptd)
DRV - [2010.11.08 23:04:26 | 000,026,112 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\tap0901.sys -- (tap0901)
DRV - [2010.10.16 20:55:00 | 010,084,360 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm)
DRV - [2010.10.16 20:55:00 | 000,019,656 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\windows\system32\DRIVERS\nvpciflt.sys -- (nvpciflt)
DRV - [2010.05.10 11:28:15 | 000,068,208 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\L1C62x86.sys -- (L1C)
DRV - [2010.03.31 03:40:20 | 000,011,520 | ---- | M] () [Kernel | System | Running] -- C:\Windows\System32\drivers\AsUpIO.sys -- (AsUpIO)
DRV - [2010.03.23 13:15:36 | 000,308,859 | ---- | M] (Cisco Systems, Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\CVPNDRVA.sys -- (CVPNDRVA)
DRV - [2009.07.20 11:29:40 | 000,013,880 | ---- | M] ( ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\kbfiltr.sys -- (kbfiltr)
DRV - [2009.07.14 00:02:46 | 001,096,704 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\athr.sys -- (athr)
DRV - [2009.03.18 17:35:40 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\hamachi.sys -- (hamachi)
DRV - [2008.11.16 18:39:44 | 000,131,984 | ---- | M] (Deterministic Networks, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\dne2000.sys -- (DNE)
DRV - [2007.01.18 20:28:02 | 000,005,275 | ---- | M] (Cisco Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\CVirtA.sys -- (CVirtA)
DRV - [2001.06.22 06:39:02 | 000,073,728 | ---- | M] (Rainbow Technologies, Inc.) [Kernel | Auto | Running] -- C:\windows\System32\Drivers\SENTINEL.SYS -- (Sentinel)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========



IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus.msn.com
IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://eeepc.asus.com [binary data]
IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://eeepc.asus.com [binary data]
IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qip.ru
IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.qip.ru
IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://eeepc.asus.com [binary data]
IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://search.qip.ru/ie
IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://search.qip.ru
IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = [binary data]
IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://qip.ru
IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1002\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.qip.ru/ie
IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1002\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1002\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - Reg Error: Key error. File not found
IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1002\..\URLSearchHook: {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Users\Kuba\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll (qip.ru)
IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

========== FireFox ==========

FF - prefs.js..browser.search.defaultenginename: "QIP Search"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.seznam.cz/"
FF - prefs.js..extensions.enabledItems: {3f963a5b-e555-4543-90e2-c3908898db71}:10.0.0.1151
FF - prefs.js..keyword.URL: "http://www.google.com/search?ie=UTF-8&o ... &gfns=1&q="
FF - prefs.js..network.proxy.type: 0

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2011.07.12 08:41:35 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0\extensions\\Components: D:\Programy\Mozilla Firefox\components [2011.06.21 21:25:01 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0\extensions\\Plugins: D:\Programy\Mozilla Firefox\plugins [2011.06.18 10:26:26 | 000,000,000 | ---D | M]

[2010.11.12 20:01:38 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Kuba\AppData\Roaming\Mozilla\Extensions
[2011.03.22 22:24:53 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\6gyx01z2.default\extensions
File not found (No name found) --
[2011.07.12 08:41:35 | 000,000,000 | ---D | M] (avast! WebRep) -- C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\WEBREP\FF
[2010.12.12 23:14:00 | 000,000,000 | ---D | M] (Java Console) -- D:\PROGRAMY\MOZILLA FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
[2011.03.10 00:45:11 | 000,000,000 | ---D | M] (Java Console) -- D:\PROGRAMY\MOZILLA FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
[2011.06.14 20:52:36 | 000,000,000 | ---D | M] (Java Console) -- D:\PROGRAMY\MOZILLA FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}

O1 HOSTS File: ([2010.11.18 22:01:42 | 000,000,034 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 activate.adobe.com
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (QIPBHO Class) - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Users\Kuba\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll (qip.ru)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKU\S-1-5-21-1471548175-4006260625-704717435-1002\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3 - HKU\S-1-5-21-1471548175-4006260625-704717435-1002\..\Toolbar\WebBrowser: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.
O4 - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AdobeCS5.5ServiceManager] File not found
O4 - HKLM..\Run: [ASUS Screen Saver Protector] C:\Windows\AsScrPro.exe (ASUS)
O4 - HKLM..\Run: [ASUSPRP] C:\Program Files\ASUS\APRP\aprp.exe (ASUSTek Computer Inc.)
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [CapsHook] C:\windows\System32\AsusSender.exe (ASUSTek Computer Inc.)
O4 - HKLM..\Run: [HotkeyMon] C:\windows\System32\AsusSender.exe (ASUSTek Computer Inc.)
O4 - HKLM..\Run: [HotkeyService] C:\windows\System32\AsusSender.exe (ASUSTek Computer Inc.)
O4 - HKLM..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe (Intel Corporation)
O4 - HKLM..\Run: [LogMeIn Hamachi Ui] C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn Inc.)
O4 - HKLM..\Run: [OOBESetup] C:\Program Files\asus\OOBERegBackup\OOBERegBackup.exe (ASUSTeK Computer Inc.)
O4 - HKLM..\Run: [SuperHybridEngine] C:\windows\System32\AsusSender.exe (ASUSTek Computer Inc.)
O4 - HKLM..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [SynAsusAcpi] C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe (Synaptics Incorporated)
O4 - HKU\S-1-5-21-1471548175-4006260625-704717435-1002..\Run: [ICQ] C:\Program Files\ICQ7.5\ICQ.exe (ICQ, LLC.)
O4 - HKU\S-1-5-21-1471548175-4006260625-704717435-1002..\Run: [RocketDock] C:\Program Files\RocketDock\RocketDock.exe ()
O4 - HKU\S-1-5-21-1471548175-4006260625-704717435-1002..\Run: [Syncables] C:\Program Files\syncables\syncables desktop\syncables.exe (syncables, LLC)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-1471548175-4006260625-704717435-1000..\RunOnce: [Reboot] C:\windows\System32\AsusSender.exe (ASUSTek Computer Inc.)
O4 - HKU\S-1-5-21-1471548175-4006260625-704717435-1000..\RunOnce: [spchecker] C:\Program Files\AVG\AVG10\Notification\SPCheckerTE.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKU\S-1-5-21-1471548175-4006260625-704717435-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1471548175-4006260625-704717435-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files\ICQ7.5\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files\ICQ7.5\ICQ.exe (ICQ, LLC.)
O9 - Extra Button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O16 - DPF: {784797A8-342D-4072-9486-03C8D0F2F0A1} https://www.battlefieldheroes.com/stati ... 0.31.0.cab (Battlefield Heroes Updater)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {C8BC46C7-921C-4102-B67D-F1F7E65FB0BE} https://battlefield.play4free.com/stati ... 0.26.2.cab (Battlefield Play4Free Updater)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_26)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.77.224.1 10.109.255.254
O20 - AppInit_DLLs: (C:\windows\system32\nvinit.dll) - C:\Windows\System32\nvinit.dll (NVIDIA Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009.06.10 23:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\{54caa998-f169-11df-9140-20cf30454f5a}\Shell - "" = AutoRun
O33 - MountPoints2\{54caa998-f169-11df-9140-20cf30454f5a}\Shell\AutoRun\command - "" = E:\Autorun.exe
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - File not found
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: SRService - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found

Drivers32: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: MSVideo8 - C:\windows\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: SENTINEL - C:\windows\System32\snti386.dll (Rainbow Technologies, Inc.)
Drivers32: vidc.cvid - C:\windows\System32\iccvid.dll (Radius Inc.)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

========== Files/Folders - Created Within 7 Days ==========

[2011.07.13 10:49:31 | 000,579,584 | ---- | C] (OldTimer Tools) -- C:\Users\Kuba\Desktop\OTL.exe
[2011.07.12 09:14:43 | 000,000,000 | ---D | C] -- C:\ProgramData\ALM
[2011.07.12 09:05:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Master Collection CS5.5
[2011.07.12 08:50:54 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2011.07.12 08:50:54 | 000,000,000 | ---D | C] -- C:\rsit
[2011.07.12 08:42:02 | 000,019,544 | ---- | C] (AVAST Software) -- C:\windows\System32\drivers\aswFsBlk.sys
[2011.07.12 08:42:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\avast! Free Antivirus
[2011.07.12 08:42:01 | 000,309,848 | ---- | C] (AVAST Software) -- C:\windows\System32\drivers\aswSP.sys
[2011.07.12 08:41:54 | 000,025,432 | ---- | C] (AVAST Software) -- C:\windows\System32\drivers\aswRdr.sys
[2011.07.12 08:41:52 | 000,043,608 | ---- | C] (AVAST Software) -- C:\windows\System32\drivers\aswTdi.sys
[2011.07.12 08:41:51 | 000,441,176 | ---- | C] (AVAST Software) -- C:\windows\System32\drivers\aswSnx.sys
[2011.07.12 08:41:47 | 000,054,104 | ---- | C] (AVAST Software) -- C:\windows\System32\drivers\aswMonFlt.sys
[2011.07.12 08:41:29 | 000,040,112 | ---- | C] (AVAST Software) -- C:\windows\avastSS.scr
[2011.07.12 08:41:28 | 000,199,304 | ---- | C] (AVAST Software) -- C:\windows\System32\aswBoot.exe
[2011.07.12 08:41:16 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software
[2011.07.12 08:41:16 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
[2010.07.06 04:50:14 | 000,013,880 | ---- | C] ( ) -- C:\windows\System32\drivers\kbfiltr.sys
[1 C:\windows\System32\*.tmp files -> C:\windows\System32\*.tmp -> ]

========== Files - Modified Within 7 Days ==========

[2011.07.13 10:49:52 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\Kuba\Desktop\OTL.exe
[2011.07.13 10:47:53 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
[2011.07.12 09:31:10 | 000,009,920 | -H-- | M] () -- C:\windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011.07.12 09:31:10 | 000,009,920 | -H-- | M] () -- C:\windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011.07.12 09:23:19 | 000,000,374 | ---- | M] () -- C:\windows\tasks\AWC AutoSweep.job
[2011.07.12 09:22:50 | 003,775,984 | ---- | M] () -- C:\windows\System32\FNTCACHE.DAT
[2011.07.12 09:22:16 | 1602,740,224 | -HS- | M] () -- C:\hiberfil.sys
[2011.07.12 08:42:02 | 000,001,994 | ---- | M] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2011.07.12 08:41:47 | 000,002,577 | ---- | M] () -- C:\windows\System32\config.nt
[2011.07.11 14:58:39 | 000,781,383 | ---- | M] () -- C:\Users\Kuba\Desktop\RSIT.exe
[1 C:\windows\System32\*.tmp files -> C:\windows\System32\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011.07.12 09:13:17 | 000,001,067 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Content Viewer.lnk
[2011.07.12 09:04:58 | 000,000,967 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Help.lnk
[2011.07.12 08:42:02 | 000,001,994 | ---- | C] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2011.07.11 14:58:39 | 000,781,383 | ---- | C] () -- C:\Users\Kuba\Desktop\RSIT.exe
[2011.06.24 21:13:37 | 000,159,468 | ---- | C] () -- C:\windows\NHL09 Uninstaller.exe
[2011.03.16 21:42:46 | 000,196,608 | ---- | C] () -- C:\windows\System32\BongoSDK.10.v40.dll
[2011.03.16 21:42:46 | 000,192,512 | ---- | C] () -- C:\windows\System32\BongoSDK.dll
[2011.03.10 10:56:51 | 000,116,224 | ---- | C] () -- C:\windows\System32\pdfcmnnt.dll
[2011.01.28 23:02:59 | 000,000,132 | ---- | C] () -- C:\Users\Kuba\AppData\Roaming\Adobe PNG Format CS5 Prefs
[2011.01.15 00:10:12 | 000,001,456 | ---- | C] () -- C:\Users\Kuba\AppData\Local\Adobe Save for Web 12.0 Prefs
[2010.12.24 16:10:48 | 000,139,080 | ---- | C] () -- C:\windows\System32\drivers\PnkBstrK.sys
[2010.12.24 16:10:48 | 000,138,056 | ---- | C] () -- C:\Users\Kuba\AppData\Roaming\PnkBstrK.sys
[2010.12.24 16:10:16 | 000,270,240 | ---- | C] () -- C:\windows\System32\PnkBstrB.exe
[2010.12.24 16:10:14 | 000,075,136 | ---- | C] () -- C:\windows\System32\PnkBstrA.exe
[2010.11.13 00:29:51 | 000,006,144 | ---- | C] () -- C:\windows\System32\drivers\ASUSHWIO.SYS
[2010.11.13 00:22:26 | 000,000,852 | ---- | C] () -- C:\windows\System32\drivers\RTKHDRC.dat
[2010.11.13 00:22:26 | 000,000,520 | ---- | C] () -- C:\windows\System32\drivers\RTEQEX0.dat
[2010.11.13 00:21:40 | 000,004,692 | ---- | C] () -- C:\windows\System32\drivers\SamSfPa.dat
[2010.11.13 00:21:40 | 000,000,008 | ---- | C] () -- C:\windows\System32\drivers\rtkhdaud.dat
[2010.10.16 13:42:48 | 000,415,059 | ---- | C] () -- C:\windows\System32\nvcoproc.bin
[2010.10.16 13:42:36 | 000,379,496 | ---- | C] () -- C:\windows\System32\easyUpdatusAPIU.dll
[2010.07.30 02:25:13 | 000,129,472 | ---- | C] () -- C:\windows\TISReg.exe
[2010.07.30 02:18:59 | 000,219,136 | ---- | C] () -- C:\windows\System32\AsusService.exe
[2010.07.30 02:18:58 | 000,025,616 | ---- | C] () -- C:\windows\AsAcpiSvrLang.ini
[2010.07.30 02:16:06 | 000,131,984 | ---- | C] () -- C:\ProgramData\FullRemove.exe
[2010.07.30 02:14:28 | 000,011,520 | ---- | C] () -- C:\windows\System32\drivers\AsUpIO.sys
[2010.07.30 02:07:27 | 000,013,931 | ---- | C] () -- C:\windows\System32\RaCoInst.dat
[2010.03.23 13:26:48 | 000,201,512 | ---- | C] () -- C:\windows\System32\vpnapi.dll
[2009.07.14 06:57:37 | 000,067,584 | --S- | C] () -- C:\windows\bootstat.dat
[2009.07.14 06:33:53 | 003,775,984 | ---- | C] () -- C:\windows\System32\FNTCACHE.DAT
[2009.07.14 04:05:48 | 000,616,008 | ---- | C] () -- C:\windows\System32\perfh009.dat
[2009.07.14 04:05:48 | 000,291,294 | ---- | C] () -- C:\windows\System32\perfi009.dat
[2009.07.14 04:05:48 | 000,106,388 | ---- | C] () -- C:\windows\System32\perfc009.dat
[2009.07.14 04:05:48 | 000,031,548 | ---- | C] () -- C:\windows\System32\perfd009.dat
[2009.07.14 04:05:05 | 000,000,741 | ---- | C] () -- C:\windows\System32\NOISE.DAT
[2009.07.14 04:04:11 | 000,215,943 | ---- | C] () -- C:\windows\System32\dssec.dat
[2009.07.14 01:55:01 | 000,043,131 | ---- | C] () -- C:\windows\mib.bin
[2009.07.14 01:51:43 | 000,073,728 | ---- | C] () -- C:\windows\System32\BthpanContextHandler.dll
[2009.07.14 01:42:10 | 000,064,000 | ---- | C] () -- C:\windows\System32\BWContextHandler.dll
[2009.06.20 21:14:36 | 000,292,004 | ---- | C] () -- C:\windows\System32\perfi005.dat
[2009.06.20 21:14:35 | 000,631,292 | ---- | C] () -- C:\windows\System32\perfh005.dat
[2009.06.20 21:14:35 | 000,121,914 | ---- | C] () -- C:\windows\System32\perfc005.dat
[2009.06.20 21:14:35 | 000,036,232 | ---- | C] () -- C:\windows\System32\perfd005.dat
[2009.06.10 23:26:10 | 000,673,088 | ---- | C] () -- C:\windows\System32\mlang.dat
[2009.02.26 08:50:32 | 000,000,176 | ---- | C] () -- C:\windows\explorer.exe.config

========== LOP Check ==========

[2010.07.30 02:24:45 | 000,000,000 | ---D | M] -- C:\Users\Default\AppData\Roaming\ASUS WebStorage
[2011.05.05 13:12:09 | 000,000,000 | ---D | M] -- C:\Users\Default\AppData\Roaming\IObit
[2010.07.30 02:24:45 | 000,000,000 | ---D | M] -- C:\Users\Default User\AppData\Roaming\ASUS WebStorage
[2011.05.05 13:12:09 | 000,000,000 | ---D | M] -- C:\Users\Default User\AppData\Roaming\IObit
[2011.06.29 21:56:29 | 000,000,000 | ---D | M] -- C:\Users\Kuba\AppData\Roaming\AIMP
[2011.01.28 22:47:23 | 000,000,000 | ---D | M] -- C:\Users\Kuba\AppData\Roaming\AMPSoft
[2011.05.19 06:13:41 | 000,000,000 | ---D | M] -- C:\Users\Kuba\AppData\Roaming\ASUS WebStorage
[2010.11.12 19:53:13 | 000,000,000 | ---D | M] -- C:\Users\Kuba\AppData\Roaming\AVG10
[2011.05.09 20:31:07 | 000,000,000 | ---D | M] -- C:\Users\Kuba\AppData\Roaming\DAEMON Tools Lite
[2011.07.13 10:48:37 | 000,000,000 | ---D | M] -- C:\Users\Kuba\AppData\Roaming\ICQ
[2011.05.05 22:03:43 | 000,000,000 | ---D | M] -- C:\Users\Kuba\AppData\Roaming\IObit
[2011.06.24 20:59:17 | 000,000,000 | ---D | M] -- C:\Users\Kuba\AppData\Roaming\Leadertech
[2010.11.18 13:15:01 | 000,000,000 | ---D | M] -- C:\Users\Kuba\AppData\Roaming\VitySoft
[2011.07.12 09:23:19 | 000,000,374 | ---- | M] () -- C:\windows\Tasks\AWC AutoSweep.job
[2011.03.28 12:58:29 | 000,032,536 | ---- | M] () -- C:\windows\Tasks\SCHEDLGU.TXT

========== Purity Check ==========



========== Custom Scans ==========


< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"Syncables" = C:\Program Files\syncables\syncables desktop\Syncables.exe -- [2010.04.15 19:34:00 | 000,370,480 | ---- | M] (syncables, LLC)
"RocketDock" = "C:\Program Files\RocketDock\RocketDock.exe" -- [2007.09.02 14:58:52 | 000,495,616 | ---- | M] ()
"ICQ" = "C:\Program Files\ICQ7.5\ICQ.exe" silent loginmode=4 -- [2011.06.29 10:46:19 | 000,124,216 | ---- | M] (ICQ, LLC.)

< c:\windows\*.* /U >

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >

< %ALLUSERSPROFILE%\Application Data\*.exe /s >

< %APPDATA%\*. >
[2011.07.12 09:16:55 | 000,000,000 | ---D | M] -- C:\Users\Kuba\AppData\Roaming\Adobe
[2011.06.29 21:56:29 | 000,000,000 | ---D | M] -- C:\Users\Kuba\AppData\Roaming\AIMP
[2011.01.28 22:47:23 | 000,000,000 | ---D | M] -- C:\Users\Kuba\AppData\Roaming\AMPSoft
[2011.02.03 14:38:24 | 000,000,000 | ---D | M] -- C:\Users\Kuba\AppData\Roaming\Apple Computer
[2011.05.19 06:13:41 | 000,000,000 | ---D | M] -- C:\Users\Kuba\AppData\Roaming\ASUS WebStorage
[2010.11.12 19:53:13 | 000,000,000 | ---D | M] -- C:\Users\Kuba\AppData\Roaming\AVG10
[2011.05.09 20:31:07 | 000,000,000 | ---D | M] -- C:\Users\Kuba\AppData\Roaming\DAEMON Tools Lite
[2010.12.20 12:42:21 | 000,000,000 | ---D | M] -- C:\Users\Kuba\AppData\Roaming\Hamachi
[2011.07.13 10:48:37 | 000,000,000 | ---D | M] -- C:\Users\Kuba\AppData\Roaming\ICQ
[2009.07.14 06:54:12 | 000,000,000 | ---D | M] -- C:\Users\Kuba\AppData\Roaming\Identities
[2010.07.30 02:02:11 | 000,000,000 | ---D | M] -- C:\Users\Kuba\AppData\Roaming\InstallShield
[2011.05.05 22:03:43 | 000,000,000 | ---D | M] -- C:\Users\Kuba\AppData\Roaming\IObit
[2011.06.24 20:59:17 | 000,000,000 | ---D | M] -- C:\Users\Kuba\AppData\Roaming\Leadertech
[2010.07.30 02:18:47 | 000,000,000 | ---D | M] -- C:\Users\Kuba\AppData\Roaming\Macromedia
[2010.12.13 16:32:02 | 000,000,000 | ---D | M] -- C:\Users\Kuba\AppData\Roaming\MathWorks
[2011.05.19 11:17:43 | 000,000,000 | --SD | M] -- C:\Users\Kuba\AppData\Roaming\Microsoft
[2010.11.12 20:01:38 | 000,000,000 | ---D | M] -- C:\Users\Kuba\AppData\Roaming\Mozilla
[2011.02.03 14:27:29 | 000,000,000 | ---D | M] -- C:\Users\Kuba\AppData\Roaming\PSpad
[2010.11.18 13:15:01 | 000,000,000 | ---D | M] -- C:\Users\Kuba\AppData\Roaming\VitySoft
[2011.04.23 23:05:06 | 000,000,000 | ---D | M] -- C:\Users\Kuba\AppData\Roaming\vlc
[2010.11.18 12:59:34 | 000,000,000 | ---D | M] -- C:\Users\Kuba\AppData\Roaming\WinRAR

< %APPDATA%\*.exe /s >


< MD5 for: AGP440.SYS >
[2009.07.14 03:26:15 | 000,053,312 | ---- | M] (Microsoft Corporation) MD5=507812C3054C21CEF746B6EE3D04DD6E -- C:\Windows\System32\drivers\AGP440.sys
[2009.07.14 03:26:15 | 000,053,312 | ---- | M] (Microsoft Corporation) MD5=507812C3054C21CEF746B6EE3D04DD6E -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_x86_neutral_a97a2a0d0fbc6696\AGP440.sys
[2009.07.14 03:26:15 | 000,053,312 | ---- | M] (Microsoft Corporation) MD5=507812C3054C21CEF746B6EE3D04DD6E -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.1.7600.16385_none_b9e9435f20046eeb\AGP440.sys
[2009.07.14 03:26:15 | 000,053,312 | ---- | M] (Microsoft Corporation) MD5=507812C3054C21CEF746B6EE3D04DD6E -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.1.7601.17514_none_bc1a57271cf2f285\AGP440.sys

< MD5 for: ATAPI.SYS >
[2009.07.14 03:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\System32\drivers\atapi.sys
[2009.07.14 03:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_x86_neutral_fab873f3e8a3315c\atapi.sys
[2009.07.14 03:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_dd0e7e3d82dd640d\atapi.sys
[2009.07.14 03:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_df3f92057fcbe7a7\atapi.sys

< MD5 for: AUTOCHK.EXE >
[2009.07.14 03:14:12 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=41E4C8EBA464E7D6A5BA5E8827732AEB -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_e1ca436d2314b860\autochk.exe
[2010.11.20 14:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\System32\autochk.exe
[2010.11.20 14:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_e3fb573520033bfa\autochk.exe

< MD5 for: CDROM.SYS >
[2009.07.14 01:11:26 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=BA6E70AA0E6091BC39DE29477D866A77 -- C:\Windows\winsxs\x86_cdrom.inf_31bf3856ad364e35_6.1.7600.16385_none_5f7fb206051affbb\cdrom.sys
[2010.11.20 10:38:10 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=BE167ED0FDB9C1FA1133953C18D5A6C9 -- C:\Windows\System32\drivers\cdrom.sys
[2010.11.20 10:38:10 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=BE167ED0FDB9C1FA1133953C18D5A6C9 -- C:\Windows\System32\DriverStore\FileRepository\cdrom.inf_x86_neutral_6381e09675524225\cdrom.sys
[2010.11.20 10:38:10 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=BE167ED0FDB9C1FA1133953C18D5A6C9 -- C:\Windows\winsxs\x86_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_61b0c5ce02098355\cdrom.sys

< MD5 for: CNGAUDIT.DLL >
[2009.07.14 03:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\System32\cngaudit.dll
[2009.07.14 03:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_e83a414890e8132b\cngaudit.dll

< MD5 for: CRYPTSVC.DLL >
[2009.07.14 03:15:07 | 000,135,680 | ---- | M] (Microsoft Corporation) MD5=9C231178CE4FB385F4B54B0A9080B8A4 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7600.16385_none_75d5ef87fc22e35a\cryptsvc.dll
[2010.11.20 14:18:24 | 000,136,192 | ---- | M] (Microsoft Corporation) MD5=A585BEBF7D054BD9618EDA0922D5484A -- C:\Windows\System32\cryptsvc.dll
[2010.11.20 14:18:24 | 000,136,192 | ---- | M] (Microsoft Corporation) MD5=A585BEBF7D054BD9618EDA0922D5484A -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.17514_none_7807034ff91166f4\cryptsvc.dll

< MD5 for: EVENTLOG.DLL >
[2007.01.23 17:22:16 | 000,032,890 | ---- | M] () MD5=4FA5D1120762802A741F374F8B391E69 -- C:\Programy\MATLAB\R2009a\sys\perl\win32\lib\auto\Win32\EventLog\EventLog.dll

< MD5 for: EXPLORER.EXE >
[2011.02.26 07:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_54149f9ef14031fc\explorer.exe
[2009.07.14 03:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_518afd35db100430\explorer.exe
[2011.02.26 07:51:13 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=255CF508D7CFB10E0794D6AC93280BD8 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_525b5180f3f95373\explorer.exe
[2009.10.31 07:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_51a66d6ddafc2ed1\explorer.exe
[2011.02.26 07:33:07 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=2AF58D15EDC06EC6FDACCE1F19482BBF -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_51a3a583dafd0cef\explorer.exe
[2010.11.20 14:17:09 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_53bc10fdd7fe87ca\explorer.exe
[2011.02.25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\explorer.exe
[2011.02.25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_5389023fd8245f84\explorer.exe
[2009.08.03 07:49:47 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=9FF6C4C91A3711C0A3B18F87B08B518D -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_526619d4f3f142e6\explorer.exe
[2009.08.03 07:35:50 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=B95EEB0F4E5EFBF1038A35B3351CF047 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_51e07e31dad00878\explorer.exe
[2009.10.31 08:00:51 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=C76153C7ECA00FA852BB0C193378F917 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_52283b2af41f3691\explorer.exe

< MD5 for: HAL.DLL >
[2010.11.20 14:29:53 | 000,194,432 | ---- | M] (Microsoft Corporation) MD5=1BF0D4727FDB437D513CFF8A9359C050 -- C:\Windows\System32\hal.dll
[2010.11.20 14:29:53 | 000,194,432 | ---- | M] (Microsoft Corporation) MD5=1BF0D4727FDB437D513CFF8A9359C050 -- C:\Windows\winsxs\x86_microsoft-windows-hal_31bf3856ad364e35_6.1.7601.17514_none_ad305c8fb7ec5060\hal.dll
[2009.07.14 03:20:28 | 000,194,640 | ---- | M] (Microsoft Corporation) MD5=9A557EAE64ABAB3BA67A9BB035D24CB9 -- C:\Windows\winsxs\x86_microsoft-windows-hal_31bf3856ad364e35_6.1.7600.16385_none_aaff48c7bafdccc6\hal.dll

< MD5 for: IASTOR.SYS >
[2009.06.05 03:54:36 | 000,408,600 | ---- | M] (Intel Corporation) MD5=1D004CB1DA6323B1F55CAEF7F94B61D9 -- C:\Program Files\Intel\Intel Matrix Storage Manager\driver64\IaStor.sys
[2009.06.05 03:43:16 | 000,330,264 | ---- | M] (Intel Corporation) MD5=D483687EACE0C065EE772481A96E05F5 -- C:\Program Files\Intel\Intel Matrix Storage Manager\driver\IaStor.sys
[2009.06.05 03:43:16 | 000,330,264 | ---- | M] (Intel Corporation) MD5=D483687EACE0C065EE772481A96E05F5 -- C:\Windows\System32\drivers\iaStor.sys
[2009.06.05 03:43:16 | 000,330,264 | ---- | M] (Intel Corporation) MD5=D483687EACE0C065EE772481A96E05F5 -- C:\Windows\System32\DriverStore\FileRepository\iaahci.inf_x86_neutral_c1f15fc3e546800a\iaStor.sys

< MD5 for: IASTORV.SYS >
[2011.03.11 07:38:51 | 000,332,160 | ---- | M] (Intel Corporation) MD5=5CD5F9A5444E6CDCB0AC89BD62D8B76E -- C:\Windows\System32\drivers\iaStorV.sys
[2011.03.11 07:38:51 | 000,332,160 | ---- | M] (Intel Corporation) MD5=5CD5F9A5444E6CDCB0AC89BD62D8B76E -- C:\Windows\System32\DriverStore\FileRepository\iastorv.inf_x86_neutral_0bcee2057afcc090\iaStorV.sys
[2011.03.11 07:38:51 | 000,332,160 | ---- | M] (Intel Corporation) MD5=5CD5F9A5444E6CDCB0AC89BD62D8B76E -- C:\Windows\winsxs\x86_iastorv.inf_31bf3856ad364e35_6.1.7601.17577_none_b0daddb9e6380745\iaStorV.sys
[2011.03.11 07:43:55 | 000,332,160 | ---- | M] (Intel Corporation) MD5=71F1A494FEDF4B33C02C4A6A28D6D9E9 -- C:\Windows\winsxs\x86_iastorv.inf_31bf3856ad364e35_6.1.7600.16778_none_aef580fde910b4b0\iaStorV.sys
[2011.03.11 07:28:00 | 000,332,160 | ---- | M] (Intel Corporation) MD5=778D0E6D7D9EBA0C403BADBAAD41DB20 -- C:\Windows\winsxs\x86_iastorv.inf_31bf3856ad364e35_6.1.7601.21680_none_b152a892ff64119f\iaStorV.sys
[2009.07.14 03:20:36 | 000,332,352 | ---- | M] (Intel Corporation) MD5=934AF4D7C5F457B9F0743F4299B77B67 -- C:\Windows\winsxs\x86_iastorv.inf_31bf3856ad364e35_6.1.7600.16385_none_aee7a89be91b9000\iaStorV.sys
[2010.11.20 14:29:54 | 000,332,160 | ---- | M] (Intel Corporation) MD5=A3CAE5D281DB4CFF7CFF8233507EE5AD -- C:\Windows\System32\DriverStore\FileRepository\iastorv.inf_x86_neutral_668286aa35d55928\iaStorV.sys
[2010.11.20 14:29:54 | 000,332,160 | ---- | M] (Intel Corporation) MD5=A3CAE5D281DB4CFF7CFF8233507EE5AD -- C:\Windows\winsxs\x86_iastorv.inf_31bf3856ad364e35_6.1.7601.17514_none_b118bc63e60a139a\iaStorV.sys
[2011.03.11 07:52:21 | 000,332,160 | ---- | M] (Intel Corporation) MD5=B9039A34C2F8769490DCC494E2402445 -- C:\Windows\winsxs\x86_iastorv.inf_31bf3856ad364e35_6.1.7600.20921_none_afae2d45020c148b\iaStorV.sys

< MD5 for: ISAPNP.SYS >
[2009.07.14 03:20:36 | 000,046,656 | ---- | M] (Microsoft Corporation) MD5=1F32BB6B38F62F7DF1A7AB7292638A35 -- C:\Windows\System32\drivers\isapnp.sys
[2009.07.14 03:20:36 | 000,046,656 | ---- | M] (Microsoft Corporation) MD5=1F32BB6B38F62F7DF1A7AB7292638A35 -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_x86_neutral_a97a2a0d0fbc6696\isapnp.sys
[2009.07.14 03:20:36 | 000,046,656 | ---- | M] (Microsoft Corporation) MD5=1F32BB6B38F62F7DF1A7AB7292638A35 -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.1.7600.16385_none_b9e9435f20046eeb\isapnp.sys
[2009.07.14 03:20:36 | 000,046,656 | ---- | M] (Microsoft Corporation) MD5=1F32BB6B38F62F7DF1A7AB7292638A35 -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.1.7601.17514_none_bc1a57271cf2f285\isapnp.sys

< MD5 for: LSASS.EXE >
[2009.07.14 03:14:23 | 000,022,528 | ---- | M] (Microsoft Corporation) MD5=F42309C4191C506B71DB5D1126D26318 -- C:\Windows\System32\lsass.exe
[2009.07.14 03:14:23 | 000,022,528 | ---- | M] (Microsoft Corporation) MD5=F42309C4191C506B71DB5D1126D26318 -- C:\Windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.1.7600.16385_none_a620e0e5be1ecda7\lsass.exe
[2009.07.14 03:14:23 | 000,022,528 | ---- | M] (Microsoft Corporation) MD5=F42309C4191C506B71DB5D1126D26318 -- C:\Windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.1.7600.16484_none_a61fe281be1fb177\lsass.exe
[2009.07.14 03:14:23 | 000,022,528 | ---- | M] (Microsoft Corporation) MD5=F42309C4191C506B71DB5D1126D26318 -- C:\Windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.1.7600.20594_none_a69eaf60d7456d32\lsass.exe
[2009.07.14 03:14:23 | 000,022,528 | ---- | M] (Microsoft Corporation) MD5=F42309C4191C506B71DB5D1126D26318 -- C:\Windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.1.7601.17514_none_a851f4adbb0d5141\lsass.exe

< MD5 for: NDIS.SYS >
[2009.07.14 03:20:44 | 000,710,720 | ---- | M] (Microsoft Corporation) MD5=23759D175A0A9BAAF04D05047BC135A8 -- C:\Windows\winsxs\x86_microsoft-windows-ndis_31bf3856ad364e35_6.1.7600.16385_none_a79d81ea7d62a289\ndis.sys
[2010.11.20 14:30:06 | 000,712,576 | ---- | M] (Microsoft Corporation) MD5=E7C54812A2AAF43316EB6930C1FFA108 -- C:\Windows\System32\drivers\ndis.sys
[2010.11.20 14:30:06 | 000,712,576 | ---- | M] (Microsoft Corporation) MD5=E7C54812A2AAF43316EB6930C1FFA108 -- C:\Windows\winsxs\x86_microsoft-windows-ndis_31bf3856ad364e35_6.1.7601.17514_none_a9ce95b27a512623\ndis.sys

< MD5 for: NETLOGON.DLL >
[2010.11.20 14:20:28 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=C1809B9907ADEDAF16F50C894100883B -- C:\Windows\System32\netlogon.dll
[2010.11.20 14:20:28 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=C1809B9907ADEDAF16F50C894100883B -- C:\Windows\winsxs\x86_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7601.17514_none_ffbf212e963c0162\netlogon.dll
[2009.07.14 03:16:02 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=EAA75D9000B71F10EEC04D2AE6C60E81 -- C:\Windows\winsxs\x86_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7600.16385_none_fd8e0d66994d7dc8\netlogon.dll

< MD5 for: NVRAID.SYS >
[2009.07.14 03:20:44 | 000,117,312 | ---- | M] (NVIDIA Corporation) MD5=3F3D04B1D08D43C16EA7963954EC768D -- C:\Windows\winsxs\x86_nvraid.inf_31bf3856ad364e35_6.1.7600.16385_none_39b1194b205239d8\nvraid.sys
[2010.11.20 14:30:06 | 000,117,120 | ---- | M] (NVIDIA Corporation) MD5=AF2EEC9580C1D32FB7EAF105D9784061 -- C:\Windows\System32\DriverStore\FileRepository\nvraid.inf_x86_neutral_dd659ed032d28a14\nvraid.sys
[2010.11.20 14:30:06 | 000,117,120 | ---- | M] (NVIDIA Corporation) MD5=AF2EEC9580C1D32FB7EAF105D9784061 -- C:\Windows\winsxs\x86_nvraid.inf_31bf3856ad364e35_6.1.7601.17514_none_3be22d131d40bd72\nvraid.sys
[2011.03.11 07:39:00 | 000,117,120 | ---- | M] (NVIDIA Corporation) MD5=B3E25EE28883877076E0E1FF877D02E0 -- C:\Windows\System32\drivers\nvraid.sys
[2011.03.11 07:39:00 | 000,117,120 | ---- | M] (NVIDIA Corporation) MD5=B3E25EE28883877076E0E1FF877D02E0 -- C:\Windows\System32\DriverStore\FileRepository\nvraid.inf_x86_neutral_0276fc3b3ea60d41\nvraid.sys
[2011.03.11 07:39:00 | 000,117,120 | ---- | M] (NVIDIA Corporation) MD5=B3E25EE28883877076E0E1FF877D02E0 -- C:\Windows\winsxs\x86_nvraid.inf_31bf3856ad364e35_6.1.7601.17577_none_3ba44e691d6eb11d\nvraid.sys
[2011.03.11 07:28:10 | 000,117,120 | ---- | M] (NVIDIA Corporation) MD5=E3B840350A72CA6F39BD2BEF85A2BCFB -- C:\Windows\winsxs\x86_nvraid.inf_31bf3856ad364e35_6.1.7601.21680_none_3c1c1942369abb77\nvraid.sys
[2011.03.11 07:44:01 | 000,117,120 | ---- | M] (NVIDIA Corporation) MD5=F1B0BED906F97E16F6D0C3629D2F21C6 -- C:\Windows\winsxs\x86_nvraid.inf_31bf3856ad364e35_6.1.7600.16778_none_39bef1ad20475e88\nvraid.sys
[2011.03.11 07:52:25 | 000,117,120 | ---- | M] (NVIDIA Corporation) MD5=FCD5C3542A85EEBA7D0833B7E5086C10 -- C:\Windows\winsxs\x86_nvraid.inf_31bf3856ad364e35_6.1.7600.20921_none_3a779df43942be63\nvraid.sys

< MD5 for: NVSTOR.SYS >
[2011.03.11 07:39:00 | 000,143,744 | ---- | M] (NVIDIA Corporation) MD5=4380E59A170D88C4F1022EFF6719A8A4 -- C:\Windows\System32\drivers\nvstor.sys
[2011.03.11 07:39:00 | 000,143,744 | ---- | M] (NVIDIA Corporation) MD5=4380E59A170D88C4F1022EFF6719A8A4 -- C:\Windows\System32\DriverStore\FileRepository\nvraid.inf_x86_neutral_0276fc3b3ea60d41\nvstor.sys
[2011.03.11 07:39:00 | 000,143,744 | ---- | M] (NVIDIA Corporation) MD5=4380E59A170D88C4F1022EFF6719A8A4 -- C:\Windows\winsxs\x86_nvraid.inf_31bf3856ad364e35_6.1.7601.17577_none_3ba44e691d6eb11d\nvstor.sys
[2011.03.11 07:44:01 | 000,143,744 | ---- | M] (NVIDIA Corporation) MD5=4520B63899E867F354EE012D34E11536 -- C:\Windows\winsxs\x86_nvraid.inf_31bf3856ad364e35_6.1.7600.16778_none_39bef1ad20475e88\nvstor.sys
[2011.03.11 07:28:10 | 000,143,744 | ---- | M] (NVIDIA Corporation) MD5=66D468654A58594F5F3BA63D5AD5B1AF -- C:\Windows\winsxs\x86_nvraid.inf_31bf3856ad364e35_6.1.7601.21680_none_3c1c1942369abb77\nvstor.sys
[2011.03.11 07:52:25 | 000,143,744 | ---- | M] (NVIDIA Corporation) MD5=8A7583A3B58D3EEB28BB26626526BC91 -- C:\Windows\winsxs\x86_nvraid.inf_31bf3856ad364e35_6.1.7600.20921_none_3a779df43942be63\nvstor.sys
[2010.11.20 14:30:06 | 000,143,744 | ---- | M] (NVIDIA Corporation) MD5=9283C58EBAA2618F93482EB5DABCEC82 -- C:\Windows\System32\DriverStore\FileRepository\nvraid.inf_x86_neutral_dd659ed032d28a14\nvstor.sys
[2010.11.20 14:30:06 | 000,143,744 | ---- | M] (NVIDIA Corporation) MD5=9283C58EBAA2618F93482EB5DABCEC82 -- C:\Windows\winsxs\x86_nvraid.inf_31bf3856ad364e35_6.1.7601.17514_none_3be22d131d40bd72\nvstor.sys
[2009.07.14 03:20:44 | 000,142,416 | ---- | M] (NVIDIA Corporation) MD5=C99F251A5DE63C6F129CF71933ACED0F -- C:\Windows\winsxs\x86_nvraid.inf_31bf3856ad364e35_6.1.7600.16385_none_39b1194b205239d8\nvstor.sys

< MD5 for: SCECLI.DLL >
[2009.07.14 03:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\winsxs\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_37e4387f3a6f0483\scecli.dll
[2010.11.20 14:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\System32\scecli.dll
[2010.11.20 14:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\winsxs\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_3a154c47375d881d\scecli.dll

< MD5 for: SMSS.EXE >
[2009.07.14 03:14:39 | 000,069,632 | ---- | M] (Microsoft Corporation) MD5=16742790895960690237A5143CEDEC8B -- C:\Windows\System32\smss.exe
[2009.07.14 03:14:39 | 000,069,632 | ---- | M] (Microsoft Corporation) MD5=16742790895960690237A5143CEDEC8B -- C:\Windows\winsxs\x86_microsoft-windows-smss_31bf3856ad364e35_6.1.7600.16385_none_ac10fe207a85352b\smss.exe

< MD5 for: SVCHOST.EXE >
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\System32\svchost.exe
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe

< MD5 for: TCPIP.SYS >
[2011.04.25 06:56:06 | 001,286,016 | ---- | M] (Microsoft Corporation) MD5=0158D5E9982E9D6A90DFC802F618E130 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16802_none_b347f075c77b9c9d\tcpip.sys
[2011.04.25 06:31:30 | 001,290,624 | ---- | M] (Microsoft Corporation) MD5=24326784DF8F3D5F5BBB9F878CE33C14 -- C:\Windows\System32\drivers\tcpip.sys
[2011.04.25 06:31:30 | 001,290,624 | ---- | M] (Microsoft Corporation) MD5=24326784DF8F3D5F5BBB9F878CE33C14 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17603_none_b52f4dc5c4a121e0\tcpip.sys
[2009.07.14 03:19:10 | 001,285,712 | ---- | M] (Microsoft Corporation) MD5=2CC3D75488ABD3EC628BBB9A4FC84EFC -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16385_none_b2f46875c7b9d667\tcpip.sys
[2010.11.20 14:30:12 | 001,290,112 | ---- | M] (Microsoft Corporation) MD5=37E8FA3779668837CA9E2C36D2415949 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17514_none_b5257c3dc4a85a01\tcpip.sys
[2011.04.25 08:31:09 | 001,301,376 | ---- | M] (Microsoft Corporation) MD5=6D4728CFF2724FF3A4654971D61D0F1C -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21712_none_b5ad1a5addc7c444\tcpip.sys
[2011.04.25 06:44:18 | 001,298,816 | ---- | M] (Microsoft Corporation) MD5=8861B9A06BA99C6E1D62D0C86DFAB86C -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20951_none_b39a7d5ae0c2aec5\tcpip.sys
[2010.06.14 08:06:58 | 001,288,576 | ---- | M] (Microsoft Corporation) MD5=A39EA325C081AD27461F630C8E3E56E0 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20733_none_b3b219fae0b0af43\tcpip.sys
[2010.06.14 08:12:30 | 001,286,016 | ---- | M] (Microsoft Corporation) MD5=BB7F39C31C4A4417FD318E7CD184E225 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16610_none_b33b1c29c7858b92\tcpip.sys

< MD5 for: USERINIT.EXE >
[2010.11.20 14:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\System32\userinit.exe
[2010.11.20 14:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2009.07.14 03:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe

< MD5 for: WINLOGON.EXE >
[2009.10.28 08:17:59 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=37CDB7E72EB66BA85A87CBE37E7F03FD -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_6fc699643622d177\winlogon.exe
[2009.10.28 07:52:08 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=3BABE6767C78FBF5FB8435FEED187F30 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_703394514f56f7c2\winlogon.exe
[2010.11.20 14:17:54 | 000,286,720 | ---- | M] (Microsoft Corporation) MD5=6D13E1406F50C66E2A95D97F22C47560 -- C:\Windows\System32\winlogon.exe
[2010.11.20 14:17:54 | 000,286,720 | ---- | M] (Microsoft Corporation) MD5=6D13E1406F50C66E2A95D97F22C47560 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_71ca6b0233339500\winlogon.exe
[2009.07.14 03:14:45 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=8EC6A4AB12B8F3759E21F8E3A388F2CF -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_6f99573a36451166\winlogon.exe

< MD5 for: WS2_32.DLL >
[2010.11.20 14:21:38 | 000,206,848 | ---- | M] (Microsoft Corporation) MD5=7FF15A4F092CD4A96055BA69F903E3E9 -- C:\Windows\System32\ws2_32.dll
[2010.11.20 14:21:38 | 000,206,848 | ---- | M] (Microsoft Corporation) MD5=7FF15A4F092CD4A96055BA69F903E3E9 -- C:\Windows\winsxs\x86_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.1.7601.17514_none_f4bf1aae2c981ecf\ws2_32.dll
[2009.07.14 03:16:20 | 000,206,336 | ---- | M] (Microsoft Corporation) MD5=DAAE8A9B8C0ACC7F858454132553C30D -- C:\Windows\winsxs\x86_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.1.7600.16385_none_f28e06e62fa99b35\ws2_32.dll

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >
[1 C:\windows\system32\*.tmp files -> C:\windows\system32\*.tmp -> ]

< %systemroot%\Tasks\*.job /lockedfiles >

< %systemroot%\system32\drivers\*.sys /lockedfiles >
[2010.11.15 11:54:58 | 000,691,696 | ---- | M] () Unable to obtain MD5 -- C:\windows\system32\drivers\sptd.sys

< %systemroot%\System32\config\*.sav >

< %systemroot%\system32\*.dll /lockedfiles >
[1 C:\windows\system32\*.tmp files -> C:\windows\system32\*.tmp -> ]

< %systemroot%\system32\drivers\*.sys /3 >

< %systemroot%\system32\*.* /3 >
[2011.07.12 09:31:10 | 000,009,920 | -H-- | M] () -- C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011.07.12 09:31:10 | 000,009,920 | -H-- | M] () -- C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011.07.12 08:41:47 | 000,002,577 | ---- | M] () -- C:\windows\system32\config.nt
[2011.07.12 09:22:50 | 003,775,984 | ---- | M] () -- C:\windows\system32\FNTCACHE.DAT
[1 C:\windows\system32\*.tmp files -> C:\windows\system32\*.tmp -> ]

< End of report >

Poulito
Návštěvník
Návštěvník
Příspěvky: 22
Registrován: 11 črc 2011 14:07

Re: Prosim o kontrolu logu

#5 Příspěvek od Poulito »

a zde extra.txt

OTL Extras logfile created on: 13.7.2011 10:52:21 - Run 1
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Users\Kuba\Desktop
Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

1,99 Gb Total Physical Memory | 0,89 Gb Available Physical Memory | 44,57% Memory free
3,98 Gb Paging File | 2,55 Gb Available in Paging File | 64,05% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files
Drive C: | 100,00 Gb Total Space | 59,34 Gb Free Space | 59,34% Space Free | Partition Type: NTFS
Drive D: | 117,87 Gb Total Space | 60,87 Gb Free Space | 51,64% Space Free | Partition Type: NTFS

Computer Name: KUBA-PC | User Name: Kuba | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\windows\winhlp32.exe (Microsoft Corporation)

[HKEY_USERS\S-1-5-21-1471548175-4006260625-704717435-1002\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- D:\Programy\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "D:\Programy\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [Bridge] -- C:\Program Files\Adobe\Adobe Bridge CS5.1\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "D:\Programy\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"AutoUpdateDisableNotify" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}" = PDFCreator
"{00BA866C-F2A2-4BB9-A308-3DFA695B6F7C}" = Java DB 10.5.3.0
"{00C1C899-DA84-45DB-A75D-4DF6C1087B20}" = Marc 2010
"{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{068B46A0-8858-4CEB-80BC-A4AE787A05FC}" = Windows Live Sync
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
"{116F4B23-8797-4270-9394-76435E010086}" = MSC.Licensing 11.6
"{17780F99-A9DF-450B-81B3-6781B20A17A8}" = FontResizer
"{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{26A24AE4-039D-4CA4-87B4-2F83216023FF}" = Java(TM) 6 Update 26
"{28006915-2739-4EBE-B5E8-49B25D32EB33}" = Atheros Client Installation Program
"{287ECFA4-719A-2143-A09B-D6A12DE54E40}" = Acrobat.com
"{300A98D6-8DA2-45FF-9314-A6861D76A535}" = syncables desktop SE
"{3108C217-BE83-42E4-AE9E-A56A2A92E549}" = Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver
"{32A3A4F4-B792-11D6-A78A-00B0D0160230}" = Java(TM) SE Development Kit 6 Update 23
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{342F5437-C87D-4BB5-89B9-B23E16C6A395}" = Microsoft VC80 Support DLLs
"{3521BDBD-D453-5D9F-AA55-44B75D214629}" = Adobe Community Help
"{38E5A3B1-ADF1-47E0-8024-76310A30EB36}" = LiveUpdate
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{4264C020-850B-4F08-ACBE-98205D9C336C}" = Windows Live Writer
"{436E0B79-2CFB-4E5F-9380-E17C1B25D0C5}" = WIDCOMM Bluetooth Software
"{463F67F4-58D0-4C0D-BBC9-D0CC4E56D1B8}" = Windows Live UX Platform Language Pack
"{46C045BF-2B3F-4BC4-8E4C-00E0CF8BD9DB}" = Adobe AIR
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4B5092B6-F231-4D18-83BC-2618B729CA45}" = CapsHook
"{4CBABDFD-49F8-47FD-BE7D-ECDE7270525A}" = Windows Live PIMT Platform
"{4E33D05D-76CF-5D3C-4D5D-7727530FA161}" = Adobe Content Viewer
"{4FCBCF89-1823-4D97-A6F2-0E8DD66E273A}" = Broadcom Wireless Network Adapter
"{50300123-F8FC-4B50-B449-E847D04F1BA2}" = Windows Live Messenger
"{54DBAF71-635A-45CB-A7DD-7EAB60F5C460}" = V-Ray for Rhinoceros 4.0
"{57752979-A1C9-4C02-856B-FBB27AC4E02C}" = QuickTime
"{587178E7-B1DF-494E-9838-FA4DD36E873C}" = ASUSUpdate for Eee PC
"{5C033AB9-C264-4311-8F6C-D6E8CDC4AB71}" = MD Adams 2010
"{5C2CBFFD-FC3B-4AA9-993B-CE2B8DA25B87}" = Rhinoceros 4.0
"{61AD15B2-50DB-4686-A739-14FE180D4429}" = Windows Live ID Sign-in Assistant
"{6333FC29-BFE5-4024-AC78-958A1A7555D1}" = EeeSplendid
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{64B2D6B3-71AC-45A7-A6A1-2E07ABF58341}" = Windows Live Movie Maker
"{66BE05E7-4FA4-49C7-9BF4-44A522DEE57B}" = UGS NX 7.5
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{7036A6F4-5DAD-3908-956D-1752CD7F7E5A}" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{71C0E38E-09F2-4386-9977-404D4F6640CD}" = Hotkey Service
"{7578ADEA-D65F-4C89-A249-B1C88B6FFC20}" = ICQ7.5
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{78906B56-0E81-42A7-AC25-F54C946E1538}" = Windows Live Photo Common
"{791CAF6C-90A3-11D4-8306-00D0B72E1DB9}" = sentinelsystemdriver
"{853A4763-6643-4604-8D64-28BDD8925F4C}" = Apple Application Support
"{859D40CF-8491-44AD-8FA8-7389CB418C64}" = 32 Bit HP CIO Components Installer
"{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
"{88F08F98-12BC-4613-81A2-8F9B88CFC73E}" = Super Hybrid Engine
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A30D5C0-BD4A-4E65-AADF-20A457DE6D38}" = Windows Live Family Safety
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8FC4F1DD-F7FD-4766-804D-3C8FF1D309B0}" = Ralink RT2860 Wireless LAN Card
"{90120000-0015-0405-0000-0000000FF1CE}" = Microsoft Office Access MUI (Czech) 2007
"{90120000-0015-0405-0000-0000000FF1CE}_ENTERPRISE_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0016-0405-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Czech) 2007
"{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Czech) 2007
"{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0019-0405-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Czech) 2007
"{90120000-0019-0405-0000-0000000FF1CE}_ENTERPRISE_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001A-0405-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Czech) 2007
"{90120000-001A-0405-0000-0000000FF1CE}_ENTERPRISE_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0405-0000-0000000FF1CE}" = Microsoft Office Word MUI (Czech) 2007
"{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0405-0000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2007
"{90120000-001F-0405-0000-0000000FF1CE}_ENTERPRISE_{294B4278-CF7B-40B9-86A1-2D3FF0C2C524}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{A0516415-ED61-419A-981D-93596DA74165}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-041B-0000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2007
"{90120000-001F-041B-0000-0000000FF1CE}_ENTERPRISE_{10EC59E5-9BCE-4884-BB1A-E28627220232}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-002C-0405-0000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{90120000-0044-0405-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Czech) 2007
"{90120000-0044-0405-0000-0000000FF1CE}_ENTERPRISE_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-006E-0405-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2007
"{90120000-006E-0405-0000-0000000FF1CE}_ENTERPRISE_{E12F9D31-4025-4BC6-B1B2-AB262C5580B0}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0405-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Czech) 2007
"{90120000-00A1-0405-0000-0000000FF1CE}_ENTERPRISE_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00BA-0405-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Czech) 2007
"{90120000-00BA-0405-0000-0000000FF1CE}_ENTERPRISE_{1FC5BC34-0301-40D2-9432-05BA220277B8}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}" = Intel® Matrix Storage Manager
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office 2010
"{95E1E426-EE9E-4F68-8F02-58A5A09B38F3}" = Rhinoceros 4.0 SR8
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AB78C965-5C67-409B-8433-D7B5BDB12073}" = Windows Live Writer Resources
"{AC76BA86-7AD7-FFFF-7B44-A91000000001}" = Adobe Reader 9.4.5 MUI
"{AF844339-2F8A-4593-81B3-9F4C54038C4E}" = Windows Live MIME IFilter
"{B0BF7057-6869-4E4B-920C-EA2A58DA07F0}" = Cisco Systems VPN Client 5.0.07.0290
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Ovladač 3D Vision 260.99
"{B2FE1952-0186-46c3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Ovládací panel NVIDIA 260.99
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Ovladače grafiky 260.99
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus" = NVIDIA Update 260.99
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Systémový software PhysX 260.99
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Ovladač HD audia 1.1.9.0
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B40EED7A-63D4-4ED2-910D-9A64FF94DF22}" = UGSLicensing
"{B6D38690-755E-4F40-A35A-23F8BC2B86AC}" = Microsoft_VC90_MFCLOC_x86
"{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}" = NVIDIA PhysX
"{C2E4B5BD-32DB-4817-A060-341AB17C3F90}" = Bonjour
"{C41300B9-185D-475E-BFEC-39EF732F19B1}" = Apple Software Update
"{C454280F-3C3E-4929-B60E-9E6CED5717E7}" = Windows Live Mail
"{CACAEB5F-174D-4C7C-AC56-A33289A807CA}" = Apple Mobile Device Support
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{CFF8B8E8-E086-4DE0-935F-FE22CAB54F80}" = Microsoft Search Enhancement Pack
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D57FC112-312E-4D70-860F-2DB8FB6858F0}" = Adobe Creative Suite 5.5 Master Collection
"{D6D7D44A-7056-4EAF-9B63-2691B41583DA}" = MD Adams R3
"{D802DD00-16A8-4A58-AFC9-020C2380ECDA}" = EeeSplendid
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{EB4DF488-AAEF-406F-A341-CB2AAA315B90}" = Windows Live Messenger
"{EEF985E8-8B36-4230-B174-117A2381C17F}" = LogMeIn Hamachi
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F2B5A2A7-2DF9-4361-8BD5-362714528B51}" = NHL® 09
"{F53D678E-238F-4A71-9742-08BB6774E9DC}" = Windows Live Family Safety
"{FB79FDB7-4DE1-453D-99FE-9A880F57380E}" = Windows Live Fotogalerie
"{FE62C88B-425B-4BDE-8B70-CD5AE3B83176}" = Windows Live Essentials
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"AIMP2" = AIMP2
"AMP Font Viewer" = AMP Font Viewer
"ASUS VIBE" = ASUS VIBE
"ASUS WebStorage" = ASUS WebStorage
"avast" = avast! Free Antivirus
"CCleaner" = CCleaner
"com.adobe.dmp.contentviewer" = Adobe Content Viewer
"Deluxe Menu" = Deluxe Menu
"Eee Docking_is1" = Eee Docking 3.8.1
"ENTERPRISE" = Microsoft Office Enterprise 2007
"GSview 4.9" = GSview 4.9
"HDMI" = Intel(R) Graphics Media Accelerator Driver
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
"InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
"InstallShield_{17780F99-A9DF-450B-81B3-6781B20A17A8}" = FontResizer
"JDownloader" = JDownloader
"LogMeIn Hamachi" = LogMeIn Hamachi
"MatlabR2009a" = MATLAB R2009a
"Metal Gear Solid" = Metal Gear Solid
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile CSY Language Pack" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"Mozilla Firefox 5.0 (x86 cs)" = Mozilla Firefox 5.0 (x86 cs)
"n2n Gui_is1" = n2n Gui 0.44 VS
"NVIDIA.Updatus" = NVIDIA Updatus
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"OOBERegBackup_is1" = OOBERegBackup
"PSPad editor_is1" = PSPad editor
"PunkBusterSvc" = PunkBuster Services
"Rhino RDK" = Rhino RDK
"RocketDock_is1" = RocketDock 1.3.5
"ScreenSaverPatch_is1" = ScreenSaverPatch
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"VLC media player" = VLC media player 1.1.9
"WinLiveSuite" = Windows Live Essentials
"WinRAR archiver" = WinRAR
"Zoo 4.0" = Zoo 4.0

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-1471548175-4006260625-704717435-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Google Chrome" = Google Chrome

========== Last 10 Event Log Errors ==========

Error reading Event Logs: The Event Service is not operating properly or the Event Logs are corrupt!

< End of report >

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosim o kontrolu logu

#6 Příspěvek od vyosek »

:arrow: Spustte znovu OTL
  • Pokud pouzivate Win Vista ci W7, kliknete na OTL pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do spodniho okenka Vlastni skenovani/opravy vlozte skript nize
  • Kód: Vybrat vše

    :otl
    IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus.msn.com
    IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://eeepc.asus.com [binary data]
    IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://eeepc.asus.com [binary data]
    IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qip.ru
    IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.qip.ru
    IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://eeepc.asus.com [binary data]
    IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://search.qip.ru/ie
    IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://search.qip.ru
    IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = [binary data]
    IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://qip.ru
    IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1002\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.qip.ru/ie
    IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1002\..\URLSearchHook: - Reg Error: Key error. File not found
    IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1002\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - Reg Error: Key error. File not found
    IE - HKU\S-1-5-21-1471548175-4006260625-704717435-1002\..\URLSearchHook: {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Users\Kuba\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll (qip.ru)
    FF - prefs.js..browser.search.defaultenginename: "QIP Search"
    O2 - BHO: (QIPBHO Class) - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Users\Kuba\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll (qip.ru)
    O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
    O3 - HKU\S-1-5-21-1471548175-4006260625-704717435-1002\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
    O3 - HKU\S-1-5-21-1471548175-4006260625-704717435-1002\..\Toolbar\WebBrowser: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.
    O13 - gopher Prefix: missing
    O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
    O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
    O33 - MountPoints2\{54caa998-f169-11df-9140-20cf30454f5a}\Shell - "" = AutoRun
    [1 C:\windows\System32\*.tmp files -> C:\windows\System32\*.tmp -> ]
    [2010.11.12 19:53:13 | 000,000,000 | ---D | M] -- C:\Users\Kuba\AppData\Roaming\AVG10
    
    :reg
    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    "Adobe ARM"=-
    "Adobe Reader Speed Launcher"=-
    "LogMeIn Hamachi Ui"=-
    "SunJavaUpdateSched"=-
    "AdobeAAMUpdater-1.0"=-
    "SwitchBoard"=-
    "AdobeCS5.5ServiceManager"=-
    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    "RocketDock"=-
    "ICQ"=-
     
    :files
    C:\windows\tasks\AWC AutoSweep.job
    %windir%\system32\*.tmp.dll /s
    %windir%\system32\SET*.tmp /s
    %windir%\*.tmp
    
    :commands
    [RESETHOSTS]
    [EMPTYTEMP]
    [EMPTYFLASH]
  • Nasledne kliknete na Opravit
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Poulito
Návštěvník
Návštěvník
Příspěvky: 22
Registrován: 11 črc 2011 14:07

Re: Prosim o kontrolu logu

#7 Příspěvek od Poulito »

All processes killed
========== OTL ==========
HKU\S-1-5-21-1471548175-4006260625-704717435-1000\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Page_URL| /E : value set successfully!
HKU\S-1-5-21-1471548175-4006260625-704717435-1000\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Secondary_Page_URL| /E : value set successfully!
HKU\S-1-5-21-1471548175-4006260625-704717435-1000\SOFTWARE\Microsoft\Internet Explorer\Main\\Secondary Start Pages| /E : value set successfully!
HKU\S-1-5-21-1471548175-4006260625-704717435-1002\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Page_URL| /E : value set successfully!
HKU\S-1-5-21-1471548175-4006260625-704717435-1002\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Search_URL| /E : value set successfully!
HKU\S-1-5-21-1471548175-4006260625-704717435-1002\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Secondary_Page_URL| /E : value set successfully!
HKU\S-1-5-21-1471548175-4006260625-704717435-1002\SOFTWARE\Microsoft\Internet Explorer\Main\\Search Bar| /E : value set successfully!
HKU\S-1-5-21-1471548175-4006260625-704717435-1002\SOFTWARE\Microsoft\Internet Explorer\Main\\Search Page| /E : value set successfully!
HKU\S-1-5-21-1471548175-4006260625-704717435-1002\SOFTWARE\Microsoft\Internet Explorer\Main\\Secondary Start Pages| /E : value set successfully!
HKU\S-1-5-21-1471548175-4006260625-704717435-1002\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
HKU\S-1-5-21-1471548175-4006260625-704717435-1002\SOFTWARE\Microsoft\Internet Explorer\Search\\SearchAssistant| /E : value set successfully!
Registry value HKEY_USERS\S-1-5-21-1471548175-4006260625-704717435-1002\Software\Microsoft\Internet Explorer\URLSearchHooks\\ deleted successfully.
Registry value HKEY_USERS\S-1-5-21-1471548175-4006260625-704717435-1002\Software\Microsoft\Internet Explorer\URLSearchHooks\\{A3BC75A2-1F87-4686-AA43-5347D756017C} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A3BC75A2-1F87-4686-AA43-5347D756017C}\ not found.
Registry value HKEY_USERS\S-1-5-21-1471548175-4006260625-704717435-1002\Software\Microsoft\Internet Explorer\URLSearchHooks\\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}\ deleted successfully.
C:\Users\Kuba\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll moved successfully.
Prefs.js: "QIP Search" removed from browser.search.defaultenginename
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}\ not found.
File C:\Users\Kuba\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully.
Registry value HKEY_USERS\S-1-5-21-1471548175-4006260625-704717435-1002\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{21FA44EF-376D-4D53-9B0F-8A89D3229068} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21FA44EF-376D-4D53-9B0F-8A89D3229068}\ not found.
Registry value HKEY_USERS\S-1-5-21-1471548175-4006260625-704717435-1002\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CCC7A320-B3CA-4199-B1A6-9F516DD69829}\ not found.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\Prefixes\\gopher|:gopher:// /E : value set successfully!
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\VMApplet:/pagefile deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{54caa998-f169-11df-9140-20cf30454f5a}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{54caa998-f169-11df-9140-20cf30454f5a}\ not found.
C:\windows\System32\SET494E.tmp deleted successfully.
C:\Users\Kuba\AppData\Roaming\AVG10\cfgall folder moved successfully.
C:\Users\Kuba\AppData\Roaming\AVG10 folder moved successfully.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe Reader Speed Launcher deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\LogMeIn Hamachi Ui deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeAAMUpdater-1.0 deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SwitchBoard deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeCS5.5ServiceManager deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\RocketDock deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\ICQ deleted successfully.
========== FILES ==========
C:\windows\tasks\AWC AutoSweep.job moved successfully.
File/Folder C:\windows\system32\*.tmp.dll not found.
File/Folder C:\windows\system32\SET*.tmp not found.
File/Folder C:\windows\*.tmp not found.
========== COMMANDS ==========
C:\windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 56823 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Kuba
->Temp folder emptied: 14364368 bytes
->Temporary Internet Files folder emptied: 11562105 bytes
->Java cache emptied: 17256 bytes
->FireFox cache emptied: 320928986 bytes
->Google Chrome cache emptied: 0 bytes
->Flash cache emptied: 11419 bytes

User: Public

User: UpdatusUser
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 122927 bytes
RecycleBin emptied: 1715832 bytes

Total Files Cleaned = 333,00 mb


[EMPTYFLASH]

User: All Users

User: Default
->Flash cache emptied: 0 bytes

User: Default User
->Flash cache emptied: 0 bytes

User: Kuba
->Flash cache emptied: 0 bytes

User: Public

User: UpdatusUser

Total Flash Files Cleaned = 0,00 mb


OTL by OldTimer - Version 3.2.26.1 log created on 07132011_121731

Files\Folders moved on Reboot...
C:\windows\temp\HS.log moved successfully.

Registry entries deleted on Reboot...

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosim o kontrolu logu

#8 Příspěvek od vyosek »

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner (viz muj podpis)
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: Doporucuji provest defragmentaci disku
  • Nejjednodussi (ale nejmene ucinny) zpusob je pomoci utility ve windowsech
    • Kliknete na Tento pocitac, dale na disk kliknete pravym tlacitkem, vyberte Vlastnosti
    • prepnete se do zalozky Nastroje
    • Nyni vidite pomucky Defragmentace - spustte ji kliknutim na Defragmentovat
    • Toto provedte se vsemi disky
  • Dalsi moznosti (a mnou doporucenou) je pres programek Defraggler http://www.stahuj.centrum.cz/utility_a_ ... efraggler/
    • Program stahnete, nainstalujte (dejte fajfku pryc u yahoo toolbaru) a spustte
    • Kliknete na Analyzovat
    • Pokud je ve sloupci Fragmentováno vice jak 5%, doporucuji provest defragmentaci (klik na Defragmentovat)
    • Postup provedte se vsemi disky
  • Posledni moznost je pres jednoduchy programek JKDefrag http://www.stahuj.centrum.cz/utility_a_ ... /jkdefrag/
    • Vyhodou programku je, ze se neinstaluje
    • Staci tedy jen stahnout dle verze vaseho OS a rozbalit
    • Nasledne spustit pomoci souboru JKDefrag pripadne JKDefrag64
    • Probehne analyza disku a nasledne i defragmentace
:arrow: Napiste co PC
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Poulito
Návštěvník
Návštěvník
Příspěvky: 22
Registrován: 11 črc 2011 14:07

Re: Prosim o kontrolu logu

#9 Příspěvek od Poulito »

dekuji za pomoc :) prvni kroky sem prosel ted jdu na defragmentaci..po analyze kde jeden disk ma 51% a druhy 25% to bude hodne potreba :)

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosim o kontrolu logu

#10 Příspěvek od vyosek »

No to bude :turned: A bude chvili trvat :D

Pak se ozvete :)
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Odpovědět