Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Další FB vir

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Jinoch
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 30 lis 2006 21:45

Další FB vir

#1 Příspěvek od Jinoch »

Jsem další z těch, kdo chtěl upgradnout plugin. Ještě před tím, než jsem se dozvěděl a tomto foru, tak jsem celej komp prohnal Malware Fighterem od iObitu a esetem přes internet. Obojí dvojí něco našlo a odstranilo, ovšem nejsem si jist, zda je to čistý.
Přikládám tedy log.txt a info.txt z programu RSIT.exe


Logfile of random's system information tool 1.09 (written by random/random)
Run by Petra at 2011-07-25 19:00:50
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 29 GB (58%) free of 50 GB
Total RAM: 2047 MB (41% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:01:05, on 25.7.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
D:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
D:\Program Files\IObit\Smart Defrag 2\SmartDefrag.exe
C:\WINDOWS\Explorer.EXE
D:\Program Files\Advanced SystemCare 4\PMonitor.exe
C:\WINDOWS\update.2\svchost.exe
C:\WINDOWS\update.5.0\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\update.2\svchost.exe
C:\WINDOWS\update.1\svchost.exe
C:\PROGRA~1\Bandoo\Bandoo.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\RunDLL32.exe
C:\WINDOWS\update.tray-12-0\svchost.exe
C:\WINDOWS\system32\ctfmon.exe
D:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Documents and Settings\Petra\Local Settings\Data aplikací\Google\Update\1.3.21.57\GoogleCrashHandler.exe
D:\Program Files\Advanced SystemCare 4\ASC.exe
D:\Program Files\Advanced SystemCare 4\ASCTray.exe
D:\Program Files\IObit\IObit Malware Fighter\IMF.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Documents and Settings\Petra\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Petra\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Petra\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Petra\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Petra\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Petra\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Petra\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\WINDOWS\ufa\ufa.exe
C:\Documents and Settings\Petra\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\Downloads\RSIT.exe
C:\Program Files\trend micro\Petra.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - D:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll (file missing)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - D:\Program Files\AVG\AVG10\avgssie.dll (file missing)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Searchqu Toolbar - {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\PROGRA~1\WI9130~1\ToolBar\searchqudtx.dll
O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - D:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll (file missing)
O2 - BHO: UrlHelper Class - {A40DC6C5-79D0-4ca8-A185-8FF989AF1115} - C:\PROGRA~1\WI9130~1\Datamngr\IEBHO.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: Bandoo IE Plugin - {EB5CEE80-030A-4ED8-8E20-454E9C68380F} - C:\Program Files\Bandoo\Plugins\IE\ieplugin.dll
O3 - Toolbar: Searchqu Toolbar - {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\PROGRA~1\WI9130~1\ToolBar\searchqudtx.dll
O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - D:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll (file missing)
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [AVG_TRAY] D:\Program Files\AVG\AVG10\avgtray.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit -login
O4 - HKLM\..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nView\nwiz.exe /installquiet
O4 - HKLM\..\Run: [QuickTime Task] "D:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [wxpdrv] C:\WINDOWS\services32.exe
O4 - HKLM\..\Run: [tray_ico0] C:\WINDOWS\update.tray-12-0\svchost.exe
O4 - HKLM\..\Run: [IObit Malware Fighter] "D:\Program Files\IObit\IObit Malware Fighter\IMF.exe" /autostart
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Petra\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [DAEMON Tools Lite] "D:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-1547161642-823518204-839522115-1006\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'UpdatusUser')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupda ... 2351011180
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microso ... 2351058039
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{29CBF4D9-3275-4E5A-AEF6-996C387710D2}: NameServer = 62.84.128.6,62.84.132.6
O18 - Protocol: avgsecuritytoolbar - {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - D:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll (file missing)
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - D:\Program Files\AVG\AVG10\avgpp.dll (file missing)
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O20 - AppInit_DLLs: c:\progra~1\wi9130~1\datamngr\datamngr.dll c:\progra~1\wi9130~1\datamngr\iebho.dll c:\progra~1\bandoo\bndhook.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Advanced SystemCare Service (AdvancedSystemCareService) - Unknown owner - E:\Program Files\Advanced SystemCare 4\ASCService.exe (file missing)
O23 - Service: AVG Security Toolbar Service - Unknown owner - D:\Program Files\AVG\AVG10\Toolbar\ToolbarBroker.exe (file missing)
O23 - Service: AVG Firewall (avgfws) - Unknown owner - D:\Program Files\AVG\AVG10\avgfws.exe (file missing)
O23 - Service: AVGIDSAgent - Unknown owner - D:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe (file missing)
O23 - Service: AVG WatchDog (avgwd) - Unknown owner - D:\Program Files\AVG\AVG10\avgwdsvc.exe (file missing)
O23 - Service: Bandoo Coordinator - Bandoo Media Inc. - C:\PROGRA~1\Bandoo\Bandoo.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: IMF Service (IMFservice) - IObit - D:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Sony Ericsson PCCompanion - Avanquest Software - C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe
O23 - Service: srviecheck - Unknown owner - C:\WINDOWS\update.2\svchost.exe (file missing)
O23 - Service: wxpdrivers - Unknown owner - C:\WINDOWS\update.1\svchost.exe

--
End of file - 10942 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\ASC4_PerformanceMonitor.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-823518204-839522115-1004Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-823518204-839522115-1004UA.job
C:\WINDOWS\tasks\SmartDefrag_Startup.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{D3A99DA9-0D0B-4BCF-B2B2-4A8055A0C1EB}.job

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\Petra\Data aplikací\Mozilla\Firefox\Profiles\z57hpwvq.default

prefs.js - "browser.startup.homepage" - "http://www.ogame.cz"
prefs.js - "keyword.URL" - "http://search.avg.com/route/?d=4e283740 ... &lng=cs&q="

"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"jqs@sun.com"=C:\Program Files\Java\jre6\lib\deploy\jqs\ff
"{1E73965B-8B48-48be-9C8D-68B920ABC1C4}"=D:\Program Files\AVG\AVG10\Firefox4\
"avg@igeared"=D:\Program Files\AVG\AVG10\Toolbar\Firefox\avg@igeared


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{AB2CE124-6272-4b12-94A9-7303C7397BD1}
{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}

C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
nsIQTScriptablePlugin.xpt

C:\Program Files\Mozilla Firefox\plugins\
nppdf32.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
npwachk.dll
QuickTimePlugin.class

C:\Program Files\Mozilla Firefox\searchplugins\
avg_igeared.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
SearchquWebSearch.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Documents and Settings\Petra\Data aplikací\Mozilla\Firefox\Profiles\z57hpwvq.default\extensions\
firefox@bandoo.com
{99079a25-328f-4bd4-be04-00955acaa0a7}

C:\Documents and Settings\Petra\Data aplikací\Mozilla\Firefox\Profiles\z57hpwvq.default\searchplugins\
SearchquWebSearch.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-01-30 62376]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - D:\Program Files\AVG\AVG10\avgssie.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll [2009-01-14 92504]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{99079a25-328f-4bd4-be04-00955acaa0a7}]
Searchqu Toolbar - C:\PROGRA~1\WI9130~1\ToolBar\searchqudtx.dll [2011-03-02 88976]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A3BC75A2-1F87-4686-AA43-5347D756017C}]
AVG Security Toolbar BHO - D:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A40DC6C5-79D0-4ca8-A185-8FF989AF1115}]
UrlHelper Class - C:\PROGRA~1\WI9130~1\Datamngr\IEBHO.dll [2011-03-02 722840]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-05-16 1164680]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-02-09 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-02-09 79648]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EB5CEE80-030A-4ED8-8E20-454E9C68380F}]
BandooIEPlugin Class - C:\Program Files\Bandoo\Plugins\IE\ieplugin.dll [2011-03-14 2048400]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{99079a25-328f-4bd4-be04-00955acaa0a7} - Searchqu Toolbar - C:\PROGRA~1\WI9130~1\ToolBar\searchqudtx.dll [2011-03-02 88976]
{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - AVG Security Toolbar - D:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll []

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"BluetoothAuthenticationAgent"=bthprops.cpl,,BluetoothAuthenticationAgent []
"KernelFaultCheck"=C:\WINDOWS\system32\dumprep 0 -k []
"AVG_TRAY"=D:\Program Files\AVG\AVG10\avgtray.exe []
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2011-07-05 20053608]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2011-05-25 13895272]
"NvMediaCenter"=NvMCTray.dll,NvTaskbarInit -login []
"nwiz"=C:\Program Files\NVIDIA Corporation\nView\nwiz.exe [2011-05-05 1632360]
"QuickTime Task"=D:\Program Files\QuickTime\qttask.exe [2008-09-06 413696]
"wxpdrv"=C:\WINDOWS\services32.exe [2011-07-25 1185280]
"tray_ico"= []
"tray_ico0"=C:\WINDOWS\update.tray-12-0\svchost.exe [2011-07-25 1185280]
"tray_ico1"= []
"tray_ico2"= []
"tray_ico3"= []
"tray_ico4"= []
"IObit Malware Fighter"=D:\Program Files\IObit\IObit Malware Fighter\IMF.exe [2011-07-20 4393816]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"Google Update"=C:\Documents and Settings\Petra\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [2011-04-09 136176]
"DAEMON Tools Lite"=D:\Program Files\DAEMON Tools Lite\DTLite.exe [2011-01-20 1305408]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="c:\progra~1\wi9130~1\datamngr\datamngr.dll c:\progra~1\wi9130~1\datamngr\iebho.dll c:\progra~1\bandoo\bndhook.dll "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"=C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [2009-05-24 304128]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\wxpdrivers]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\wxpdrivers]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLUA"=0
"EnableSecureUIAPaths"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoInstrumentation"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe"="C:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe:*:Enabled:Ubisoft Game Launcher"
"C:\Program Files\BearShare Applications\BearShare\BearShare.exe"="C:\Program Files\BearShare Applications\BearShare\BearShare.exe:*:Enabled:BearShare"
"C:\Program Files\Windows Searchqu Toolbar\ToolBar\dtUser.exe"="C:\Program Files\Windows Searchqu Toolbar\ToolBar\dtUser.exe:*:Enabled:DTX broker"
"D:\Program Files\Electronic Arts\Need for Speed(TM) Hot Pursuit\Launcher.exe"="D:\Program Files\Electronic Arts\Need for Speed(TM) Hot Pursuit\Launcher.exe:*:Enabled:Need for Speed(TM) Hot Pursuit"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
"D:\Program Files\Ventrilo\Ventrilo.exe"="D:\Program Files\Ventrilo\Ventrilo.exe:*:Enabled:Ventrilo.exe"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"D:\Program Files\AVG\AVG10\avgdiagex.exe"="D:\Program Files\AVG\AVG10\avgdiagex.exe:*:Enabled:AVG Diagnostika 2011"
"D:\Program Files\AVG\AVG10\avgnsx.exe"="D:\Program Files\AVG\AVG10\avgnsx.exe:*:Enabled:Webový štít"
"D:\Program Files\AVG\AVG10\avgmfapx.exe"="D:\Program Files\AVG\AVG10\avgmfapx.exe:*:Enabled:Instalátor AVG"
"D:\Program Files\AVG\AVG10\avgam.exe"="D:\Program Files\AVG\AVG10\avgam.exe:*:Enabled:Správce událostí AVG"
"D:\Program Files\AVG\AVG10\avgemcx.exe"="D:\Program Files\AVG\AVG10\avgemcx.exe:*:Enabled:Obecná kontrola pošty"
"C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe"="C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe:*:Enabled:Daemonu.exe"
"D:\Program Files\Codemasters\DiRT 3\dirt3_game.exe"="D:\Program Files\Codemasters\DiRT 3\dirt3_game.exe:*:Enabled:DiRT 3"
"C:\Program Files\TeamViewer\Version6\TeamViewer.exe"="C:\Program Files\TeamViewer\Version6\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application"
"C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe"="C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe:*:Enabled:Teamviewer Remote Control Service"
"D:\Downloads\Flash-Player.exe"="D:\Downloads\Flash-Player.exe:*:Enabled:D:\Downloads\Flash-Player.exe"
"C:\WINDOWS\update.1\svchost.exe"="C:\WINDOWS\update.1\svchost.exe:*:Enabled:C:\WINDOWS\update.1\svchost.exe"
"C:\WINDOWS\update.tray-12-0\svchost.exe"="C:\WINDOWS\update.tray-12-0\svchost.exe:*:Enabled:C:\WINDOWS\update.tray-12-0\svchost.exe"
"C:\WINDOWS\update.2\svchost.exe"="C:\WINDOWS\update.2\svchost.exe:*:Enabled:C:\WINDOWS\update.2\svchost.exe"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\BearShare Applications\BearShare\BearShare.exe"="C:\Program Files\BearShare Applications\BearShare\BearShare.exe:*:Enabled:BearShare"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"mixer1"=wdmaud.drv
"VIDC.FFDS"=ffdshow.ax
"msacm.avis"=ff_acm.acm
"msacm.divxa32"=msaud32_divx.acm
"VIDC.XFR1"=xfcodec.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======List of files/folders created in the last 1 month======

2011-07-25 19:00:51 ----D---- C:\Program Files\trend micro
2011-07-25 19:00:50 ----D---- C:\rsit
2011-07-25 15:55:00 ----D---- C:\Program Files\ESET
2011-07-25 15:32:20 ----A---- C:\WINDOWS\ddh_iplist.txt
2011-07-25 15:29:55 ----D---- C:\WINDOWS\ufa
2011-07-25 15:29:55 ----D---- C:\WINDOWS\rpcminer
2011-07-25 15:29:55 ----D---- C:\WINDOWS\phoenix
2011-07-25 15:29:31 ----A---- C:\WINDOWS\btc_client_iplist.txt
2011-07-25 15:29:10 ----HD---- C:\WINDOWS\update.5.0
2011-07-25 15:28:29 ----A---- C:\WINDOWS\iecheck_iplist.txt
2011-07-25 15:26:10 ----HD---- C:\WINDOWS\update.2
2011-07-25 15:24:35 ----A---- C:\WINDOWS\unrar.exe
2011-07-25 15:21:59 ----A---- C:\WINDOWS\iplist.txt
2011-07-25 15:19:49 ----A---- C:\WINDOWS\front_ip_list.txt
2011-07-25 15:15:11 ----D---- C:\WINDOWS\av_ico
2011-07-25 15:13:36 ----HD---- C:\WINDOWS\update.1
2011-07-25 15:13:26 ----HD---- C:\WINDOWS\update.tray-12-0-lnk
2011-07-25 15:13:26 ----HD---- C:\WINDOWS\update.tray-12-0
2011-07-25 14:43:40 ----A---- C:\WINDOWS\winlog-ids.txt
2011-07-25 14:43:40 ----A---- C:\WINDOWS\winlog-dirs.txt
2011-07-25 14:43:34 ----A---- C:\WINDOWS\services32.exe
2011-07-24 22:28:12 ----D---- C:\Documents and Settings\Petra\Data aplikací\TeamViewer
2011-07-24 22:28:05 ----D---- C:\Program Files\TeamViewer
2011-07-22 16:50:18 ----SHD---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\DSS
2011-07-22 16:50:17 ----D---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Codemasters
2011-07-22 16:43:27 ----D---- C:\WINDOWS\system32\xlive
2011-07-22 16:43:22 ----D---- C:\Program Files\Microsoft Games for Windows - LIVE
2011-07-22 16:42:28 ----A---- C:\WINDOWS\system32\mkl_blueripple.dll
2011-07-22 16:42:27 ----A---- C:\WINDOWS\system32\rapture3d_oal.dll
2011-07-22 16:42:26 ----D---- C:\Program Files\BRS
2011-07-22 16:42:23 ----RA---- C:\WINDOWS\system32\tmp5F.tmp
2011-07-22 16:42:23 ----RA---- C:\WINDOWS\system32\tmp5E.tmp
2011-07-21 18:36:28 ----A---- C:\WINDOWS\system32\nvrszht.dll
2011-07-21 18:36:28 ----A---- C:\WINDOWS\system32\nvrszhc.dll
2011-07-21 18:36:28 ----A---- C:\WINDOWS\system32\nvrstr.dll
2011-07-21 18:36:28 ----A---- C:\WINDOWS\system32\nvrsth.dll
2011-07-21 18:36:28 ----A---- C:\WINDOWS\system32\nvrssv.dll
2011-07-21 18:36:28 ----A---- C:\WINDOWS\system32\nvrssl.dll
2011-07-21 18:36:28 ----A---- C:\WINDOWS\system32\nvrssk.dll
2011-07-21 18:36:27 ----A---- C:\WINDOWS\system32\nvrsru.dll
2011-07-21 18:36:27 ----A---- C:\WINDOWS\system32\nvrsptb.dll
2011-07-21 18:36:27 ----A---- C:\WINDOWS\system32\nvrspt.dll
2011-07-21 18:36:27 ----A---- C:\WINDOWS\system32\nvrspl.dll
2011-07-21 18:36:27 ----A---- C:\WINDOWS\system32\nvrsno.dll
2011-07-21 18:36:27 ----A---- C:\WINDOWS\system32\nvrsnl.dll
2011-07-21 18:36:27 ----A---- C:\WINDOWS\system32\nvrsko.dll
2011-07-21 18:36:27 ----A---- C:\WINDOWS\system32\nvrsja.dll
2011-07-21 18:36:27 ----A---- C:\WINDOWS\system32\nvrsit.dll
2011-07-21 18:36:27 ----A---- C:\WINDOWS\system32\nvrshu.dll
2011-07-21 18:36:27 ----A---- C:\WINDOWS\system32\nvrshe.dll
2011-07-21 18:36:27 ----A---- C:\WINDOWS\system32\nvrsfr.dll
2011-07-21 18:36:27 ----A---- C:\WINDOWS\system32\nvrsfi.dll
2011-07-21 18:36:27 ----A---- C:\WINDOWS\system32\nvrsesm.dll
2011-07-21 18:36:27 ----A---- C:\WINDOWS\system32\nvrses.dll
2011-07-21 18:36:27 ----A---- C:\WINDOWS\system32\nvrseng.dll
2011-07-21 18:36:27 ----A---- C:\WINDOWS\system32\nvrsel.dll
2011-07-21 18:36:27 ----A---- C:\WINDOWS\system32\nvrsde.dll
2011-07-21 18:36:27 ----A---- C:\WINDOWS\system32\nvrsda.dll
2011-07-21 18:36:27 ----A---- C:\WINDOWS\system32\nvrscs.dll
2011-07-21 18:36:27 ----A---- C:\WINDOWS\system32\nvrsar.dll
2011-07-21 18:35:54 ----A---- C:\WINDOWS\system32\nvgenco322090.dll
2011-07-21 18:35:54 ----A---- C:\WINDOWS\system32\nvdispco3220150.dll
2011-07-21 18:10:06 ----D---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\NVIDIA
2011-07-21 18:08:44 ----A---- C:\WINDOWS\system32\nvgenco322060.dll
2011-07-21 18:08:44 ----A---- C:\WINDOWS\system32\nvdispco3220140.dll
2011-07-21 16:28:57 ----D---- C:\WINDOWS\system32\drivers\AVG
2011-07-19 20:24:12 ----D---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Trymedia
2011-07-13 15:26:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2507938$
2011-07-13 15:24:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2555917$
2011-07-09 14:46:39 ----D---- C:\Documents and Settings\Petra\Data aplikací\OpenOffice.org
2011-06-29 15:25:31 ----HDC---- C:\WINDOWS\$NtUninstallKB2541763$

======List of files/folders modified in the last 1 month======

2011-07-25 19:00:51 ----RD---- C:\Program Files
2011-07-25 19:00:03 ----D---- C:\Documents and Settings\Petra\Data aplikací\Skype
2011-07-25 18:45:49 ----D---- C:\WINDOWS\Temp
2011-07-25 16:30:42 ----D---- C:\WINDOWS\system32\drivers\etc
2011-07-25 16:11:16 ----D---- C:\WINDOWS
2011-07-25 16:04:47 ----D---- C:\Program Files\Bandoo
2011-07-25 15:52:26 ----D---- C:\WINDOWS\system32
2011-07-25 15:52:26 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-07-25 15:48:14 ----SHD---- C:\System Volume Information
2011-07-25 15:48:14 ----D---- C:\WINDOWS\system32\Restore
2011-07-25 15:13:46 ----A---- C:\boot.ini
2011-07-25 14:52:57 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-07-25 13:58:15 ----D---- C:\WINDOWS\system32\wbem
2011-07-25 13:52:27 ----D---- C:\Documents and Settings\Petra\Data aplikací\Winamp
2011-07-25 10:12:52 ----D---- C:\WINDOWS\system32\CatRoot2
2011-07-22 16:49:46 ----SHD---- C:\WINDOWS\Installer
2011-07-22 16:43:38 ----D---- C:\WINDOWS\system32\DirectX
2011-07-22 16:43:34 ----HD---- C:\WINDOWS\inf
2011-07-22 16:43:15 ----D---- C:\Program Files\Common Files\Microsoft Shared
2011-07-22 16:43:14 ----SD---- C:\Documents and Settings\Petra\Data aplikací\Microsoft
2011-07-22 16:42:35 ----D---- C:\WINDOWS\WinSxS
2011-07-22 16:42:23 ----D---- C:\Program Files\OpenAL
2011-07-22 16:42:23 ----A---- C:\WINDOWS\system32\wrap_oal.dll
2011-07-22 16:42:23 ----A---- C:\WINDOWS\system32\OpenAL32.dll
2011-07-22 16:19:55 ----D---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\DAEMON Tools Lite
2011-07-22 16:19:31 ----SD---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Microsoft
2011-07-21 18:36:40 ----D---- C:\WINDOWS\Help
2011-07-21 18:36:24 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-07-21 18:36:15 ----D---- C:\WINDOWS\system32\drivers
2011-07-21 18:36:09 ----D---- C:\Program Files\NVIDIA Corporation
2011-07-21 18:36:06 ----D---- C:\WINDOWS\system32\ReinstallBackups
2011-07-21 18:15:08 ----D---- C:\WINDOWS\system32\RTCOM
2011-07-21 18:10:07 ----D---- C:\Documents and Settings
2011-07-21 17:59:11 ----D---- C:\WINDOWS\Debug
2011-07-21 16:28:41 ----D---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\MFAData
2011-07-13 15:24:35 ----A---- C:\WINDOWS\system32\MRT.exe
2011-07-13 15:19:36 ----HD---- C:\WINDOWS\$hf_mig$
2011-07-11 14:17:00 ----A---- C:\WINDOWS\RtlExUpd.dll
2011-07-09 14:38:52 ----RSD---- C:\WINDOWS\assembly
2011-07-09 14:38:19 ----RSD---- C:\WINDOWS\Fonts
2011-07-09 10:38:21 ----A---- C:\Documents and Settings\Petra\Data aplikací\burnaware.ini
2011-07-06 13:27:00 ----A---- C:\WINDOWS\system32\RtkCoInstXP.dll
2011-07-05 17:23:30 ----D---- C:\Program Files\Mozilla Firefox
2011-07-05 16:08:20 ----A---- C:\WINDOWS\RTHDCPL.EXE
2011-06-30 17:44:31 ----SD---- C:\WINDOWS\Tasks

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 AVGIDSEH;AVGIDSEH; C:\WINDOWS\system32\DRIVERS\AVGIDSEH.Sys [2011-02-22 22992]
R0 Avgrkx86;AVG Anti-Rootkit Driver; C:\WINDOWS\system32\DRIVERS\avgrkx86.sys [2011-03-16 32592]
R0 BtHidBus;Bluetooth HID Bus Service; C:\WINDOWS\System32\Drivers\BtHidBus.sys [2009-06-17 20744]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2011-03-04 45648]
R0 SmartDefragDriver;SmartDefragDriver; C:\WINDOWS\System32\Drivers\SmartDefragDriver.sys [2011-02-23 13496]
R1 AmdK8;Ovladač procesoru AMD; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2005-03-09 42496]
R1 Avgldx86;AVG AVI Loader Driver; C:\WINDOWS\system32\DRIVERS\avgldx86.sys [2011-01-07 248656]
R1 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield; C:\WINDOWS\system32\DRIVERS\avgmfx86.sys [2011-03-01 34896]
R1 Avgtdix;AVG TDI Driver; C:\WINDOWS\system32\DRIVERS\avgtdix.sys [2011-04-05 297168]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys [2011-04-09 218688]
R2 atksgt;atksgt; C:\WINDOWS\system32\DRIVERS\atksgt.sys [2011-04-09 271360]
R2 lirsgt;lirsgt; C:\WINDOWS\system32\DRIVERS\lirsgt.sys [2011-04-09 18048]
R2 PfFilter;PfFilter; \??\D:\Program Files\IObit\Protected Folder\pffilter.sys []
R2 WIBUKEY;WIBU-KEY Kernel Driver; C:\WINDOWS\SYSTEM32\DRIVERS\WibuKey.sys [2006-11-22 72704]
R3 Avgfwdx;Avgfwdx; C:\WINDOWS\system32\DRIVERS\avgfwdx.sys [2010-07-12 30432]
R3 AVGIDSDriver;AVGIDSDriver; C:\WINDOWS\system32\DRIVERS\AVGIDSDriver.Sys [2011-04-14 134480]
R3 AVGIDSFilter;AVGIDSFilter; C:\WINDOWS\system32\DRIVERS\AVGIDSFilter.Sys [2011-02-10 24144]
R3 AVGIDSShim;AVGIDSShim; C:\WINDOWS\system32\DRIVERS\AVGIDSShim.Sys [2011-02-10 27216]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2008-04-13 17024]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2008-04-13 101120]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2008-04-13 18944]
R3 FileMonitor;FileMonitor; \??\D:\Program Files\IObit\IObit Malware Fighter\Drivers\wxp_x86\FileMonitor.sys []
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2011-07-07 6367848]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2011-05-25 12753664]
R3 RegFilter;RegFilter; \??\D:\Program Files\IObit\IObit Malware Fighter\drivers\wxp_x86\regfilter.sys []
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2008-04-13 59136]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2011-01-14 277352]
R3 UrlFilter;UrlFilter; \??\D:\Program Files\IObit\IObit Malware Fighter\drivers\wxp_x86\UrlFilter.sys []
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S2 713xTVCard;SAA7135 TV Card; C:\WINDOWS\system32\DRIVERS\SAA713x.sys [2005-03-15 277504]
S3 Ambfilt;Ambfilt; C:\WINDOWS\system32\drivers\Ambfilt.sys [2009-11-18 1691480]
S3 Avgfwfd;AVG network filter service; C:\WINDOWS\system32\DRIVERS\avgfwdx.sys [2010-07-12 30432]
S3 BT;Bluetooth PAN Network Adapter; C:\WINDOWS\system32\DRIVERS\btnetdrv.sys []
S3 Btcsrusb;Bluetooth USB For Bluetooth Service; C:\WINDOWS\System32\Drivers\btcusb.sys []
S3 BTHPORT;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2008-06-14 272128]
S3 btnetBUs;Bluetooth PAN Bus Service; C:\WINDOWS\System32\Drivers\btnetBus.sys [2009-06-17 29192]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 IvtBtBUs;IVT Bluetooth Bus Service; C:\WINDOWS\System32\Drivers\IvtBtBus.sys [2009-06-17 25480]
S3 Monfilt;Monfilt; C:\WINDOWS\system32\drivers\Monfilt.sys [2009-11-18 1395800]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 VComm;Virtual Serial port driver; C:\WINDOWS\system32\DRIVERS\VComm.sys []
S3 VcommMgr;Bluetooth VComm Manager Service; C:\WINDOWS\System32\Drivers\VcommMgr.sys []
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Bandoo Coordinator;Bandoo Coordinator; C:\PROGRA~1\Bandoo\Bandoo.exe [2011-03-14 1617296]
R2 BthServ;Bluetooth Support Service; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 ezGOSvc;Easybits GO Services for Windows; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 IMFservice;IMF Service; D:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe [2011-07-20 820568]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2011-02-02 153376]
R2 NVSvc;NVIDIA Driver Helper Service; C:\WINDOWS\system32\nvsvc32.exe [2011-05-25 154728]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-05-25 2214504]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-01-14 226656]
R2 srviecheck;srviecheck; C:\WINDOWS\update.2\svchost.exe srv []
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 1529728]
R2 WSearch;Windows Search; C:\WINDOWS\system32\SearchIndexer.exe [2008-05-26 439808]
R2 wxpdrivers;wxpdrivers; C:\WINDOWS\update.1\svchost.exe [2011-07-25 1185280]
S2 AdvancedSystemCareService;Advanced SystemCare Service; E:\Program Files\Advanced SystemCare 4\ASCService.exe []
S2 avgfws;AVG Firewall; D:\Program Files\AVG\AVG10\avgfws.exe []
S2 AVGIDSAgent;AVGIDSAgent; D:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe []
S2 avgwd;AVG WatchDog; D:\Program Files\AVG\AVG10\avgwdsvc.exe []
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 AVG Security Toolbar Service;AVG Security Toolbar Service; D:\Program Files\AVG\AVG10\Toolbar\ToolbarBroker.exe []
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;Služba Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2008-09-08 575488]
S3 Sony Ericsson PCCompanion;Sony Ericsson PCCompanion; C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe [2011-04-20 152064]
S3 WinRM;Windows Remote Management (WS-Management); C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Služba sdílení portů Net.Tcp; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Jinoch
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 30 lis 2006 21:45

Re: Další FB vir

#2 Příspěvek od Jinoch »

info.txt logfile of random's system information tool 1.09 2011-07-25 19:01:10

======Uninstall list======

-->MsiExec /X{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\FlashUtil10r_ActiveX.exe -maintain activex
Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\FlashUtil10t_Plugin.exe -maintain plugin
Adobe Reader X (10.0.1) - Czech-->MsiExec.exe /I{AC76BA86-7AD7-1029-7B44-AA0000000001}
Advanced SystemCare 4-->"D:\Program Files\Advanced SystemCare 4\unins000.exe"
Aktualizace NVIDIA 1.3.5-->"C:\WINDOWS\system32\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.2\NVI2.DLL",UninstallPackage Display.Update
Aktualizace systému Microsoft Windows (KB971513)-->"C:\WINDOWS\$NtUninstallKB971513$\spuninst\spuninst.exe"
Aktualizace systému Windows Internet Explorer 8 (KB2447568)-->"C:\WINDOWS\ie8updates\KB2447568-IE8\spuninst\spuninst.exe"
Aktualizace systému Windows Internet Explorer 8 (KB976662)-->"C:\WINDOWS\ie8updates\KB976662-IE8\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB2141007)-->"C:\WINDOWS\$NtUninstallKB2141007$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB2345886)-->"C:\WINDOWS\$NtUninstallKB2345886$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB2467659)-->"C:\WINDOWS\$NtUninstallKB2467659$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB2492386)-->"C:\WINDOWS\$NtUninstallKB2492386$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB2541763)-->"C:\WINDOWS\$NtUninstallKB2541763$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB955759)-->"C:\WINDOWS\$NtUninstallKB955759$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB967715)-->"C:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB968389)-->"C:\WINDOWS\$NtUninstallKB968389$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB971029)-->"C:\WINDOWS\$NtUninstallKB971029$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB971737)-->"C:\WINDOWS\$NtUninstallKB971737$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB973687)-->"C:\WINDOWS\$NtUninstallKB973687$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB973815)-->"C:\WINDOWS\$NtUninstallKB973815$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB2378111)-->"C:\WINDOWS\$NtUninstallKB2378111_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB952069)-->"C:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB954155)-->"C:\WINDOWS\$NtUninstallKB954155_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB973540)-->"C:\WINDOWS\$NtUninstallKB973540_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB973540)-->"C:\WINDOWS\$NtUninstallKB973540_WM9L$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB975558)-->"C:\WINDOWS\$NtUninstallKB975558_WM8$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB978695)-->"C:\WINDOWS\$NtUninstallKB978695_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB979402)-->"C:\WINDOWS\$NtUninstallKB979402_WM9L$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player 11 (KB954154)-->"C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
Aktualizace zabezpečení produktu Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB2482017)-->"C:\WINDOWS\ie7updates\KB2482017-IE7\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB938127-v2)-->"C:\WINDOWS\ie7updates\KB938127-v2-IE7\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB982381)-->"C:\WINDOWS\ie7updates\KB982381-IE7\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2482017)-->"C:\WINDOWS\ie8updates\KB2482017-IE8\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2497640)-->"C:\WINDOWS\ie8updates\KB2497640-IE8\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2510531)-->"C:\WINDOWS\ie8updates\KB2510531-IE8\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2530548)-->"C:\WINDOWS\ie8updates\KB2530548-IE8\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2544521)-->"C:\WINDOWS\ie8updates\KB2544521-IE8\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB971961)-->"C:\WINDOWS\ie8updates\KB971961-IE8\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB981332)-->"C:\WINDOWS\ie8updates\KB981332-IE8\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB982381)-->"C:\WINDOWS\ie8updates\KB982381-IE8\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2079403)-->"C:\WINDOWS\$NtUninstallKB2079403$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2115168)-->"C:\WINDOWS\$NtUninstallKB2115168$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2121546)-->"C:\WINDOWS\$NtUninstallKB2121546$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2229593)-->"C:\WINDOWS\$NtUninstallKB2229593$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2259922)-->"C:\WINDOWS\$NtUninstallKB2259922$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2296011)-->"C:\WINDOWS\$NtUninstallKB2296011$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2347290)-->"C:\WINDOWS\$NtUninstallKB2347290$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2360937)-->"C:\WINDOWS\$NtUninstallKB2360937$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2387149)-->"C:\WINDOWS\$NtUninstallKB2387149$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2393802)-->"C:\WINDOWS\$NtUninstallKB2393802$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2412687)-->"C:\WINDOWS\$NtUninstallKB2412687$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2419632)-->"C:\WINDOWS\$NtUninstallKB2419632$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2423089)-->"C:\WINDOWS\$NtUninstallKB2423089$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2440591)-->"C:\WINDOWS\$NtUninstallKB2440591$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2443105)-->"C:\WINDOWS\$NtUninstallKB2443105$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2476490)-->"C:\WINDOWS\$NtUninstallKB2476490$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2476687)-->"C:\WINDOWS\$NtUninstallKB2476687$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2478960)-->"C:\WINDOWS\$NtUninstallKB2478960$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2478971)-->"C:\WINDOWS\$NtUninstallKB2478971$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2479628)-->"C:\WINDOWS\$NtUninstallKB2479628$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2479943)-->"C:\WINDOWS\$NtUninstallKB2479943$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2481109)-->"C:\WINDOWS\$NtUninstallKB2481109$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2483185)-->"C:\WINDOWS\$NtUninstallKB2483185$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2485376)-->"C:\WINDOWS\$NtUninstallKB2485376$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2485663)-->"C:\WINDOWS\$NtUninstallKB2485663$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2503658)-->"C:\WINDOWS\$NtUninstallKB2503658$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2503665)-->"C:\WINDOWS\$NtUninstallKB2503665$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2506212)-->"C:\WINDOWS\$NtUninstallKB2506212$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2506223)-->"C:\WINDOWS\$NtUninstallKB2506223$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2507618)-->"C:\WINDOWS\$NtUninstallKB2507618$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2507938)-->"C:\WINDOWS\$NtUninstallKB2507938$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2508272)-->"C:\WINDOWS\$NtUninstallKB2508272$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2508429)-->"C:\WINDOWS\$NtUninstallKB2508429$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2509553)-->"C:\WINDOWS\$NtUninstallKB2509553$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2511455)-->"C:\WINDOWS\$NtUninstallKB2511455$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2524375)-->"C:\WINDOWS\$NtUninstallKB2524375$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2535512)-->"C:\WINDOWS\$NtUninstallKB2535512$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2536276)-->"C:\WINDOWS\$NtUninstallKB2536276$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2544893)-->"C:\WINDOWS\$NtUninstallKB2544893$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2555917)-->"C:\WINDOWS\$NtUninstallKB2555917$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB923561)-->"C:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB923789)-->C:\WINDOWS\system32\MacroMed\Flash\genuinst.exe C:\WINDOWS\system32\MacroMed\Flash\KB923789.inf
Aktualizace zabezpečení systému Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB952004)-->"C:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB955069)-->"C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956572)-->"C:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956744)-->"C:\WINDOWS\$NtUninstallKB956744$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956802)-->"C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956844)-->"C:\WINDOWS\$NtUninstallKB956844$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB958869)-->"C:\WINDOWS\$NtUninstallKB958869$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB959426)-->"C:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB960225)-->"C:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB960803)-->"C:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB960859)-->"C:\WINDOWS\$NtUninstallKB960859$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB961501)-->"C:\WINDOWS\$NtUninstallKB961501$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB969059)-->"C:\WINDOWS\$NtUninstallKB969059$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB970238)-->"C:\WINDOWS\$NtUninstallKB970238$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB970430)-->"C:\WINDOWS\$NtUninstallKB970430$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB971468)-->"C:\WINDOWS\$NtUninstallKB971468$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB971657)-->"C:\WINDOWS\$NtUninstallKB971657$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB971961)-->"C:\WINDOWS\$NtUninstallKB971961$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB972270)-->"C:\WINDOWS\$NtUninstallKB972270$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB973507)-->"C:\WINDOWS\$NtUninstallKB973507$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB973869)-->"C:\WINDOWS\$NtUninstallKB973869$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB973904)-->"C:\WINDOWS\$NtUninstallKB973904$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB974112)-->"C:\WINDOWS\$NtUninstallKB974112$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB974318)-->"C:\WINDOWS\$NtUninstallKB974318$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB974392)-->"C:\WINDOWS\$NtUninstallKB974392$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB974571)-->"C:\WINDOWS\$NtUninstallKB974571$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB975025)-->"C:\WINDOWS\$NtUninstallKB975025$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB975467)-->"C:\WINDOWS\$NtUninstallKB975467$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB975560)-->"C:\WINDOWS\$NtUninstallKB975560$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB975561)-->"C:\WINDOWS\$NtUninstallKB975561$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB975562)-->"C:\WINDOWS\$NtUninstallKB975562$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB975713)-->"C:\WINDOWS\$NtUninstallKB975713$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB977816)-->"C:\WINDOWS\$NtUninstallKB977816$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB977914)-->"C:\WINDOWS\$NtUninstallKB977914$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB978037)-->"C:\WINDOWS\$NtUninstallKB978037$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB978338)-->"C:\WINDOWS\$NtUninstallKB978338$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB978542)-->"C:\WINDOWS\$NtUninstallKB978542$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB978601)-->"C:\WINDOWS\$NtUninstallKB978601$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB978706)-->"C:\WINDOWS\$NtUninstallKB978706$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB979309)-->"C:\WINDOWS\$NtUninstallKB979309$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB979482)-->"C:\WINDOWS\$NtUninstallKB979482$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB979559)-->"C:\WINDOWS\$NtUninstallKB979559$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB979683)-->"C:\WINDOWS\$NtUninstallKB979683$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB979687)-->"C:\WINDOWS\$NtUninstallKB979687$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB980195)-->"C:\WINDOWS\$NtUninstallKB980195$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB980218)-->"C:\WINDOWS\$NtUninstallKB980218$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB980232)-->"C:\WINDOWS\$NtUninstallKB980232$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB980436)-->"C:\WINDOWS\$NtUninstallKB980436$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB981322)-->"C:\WINDOWS\$NtUninstallKB981322$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB981349)-->"C:\WINDOWS\$NtUninstallKB981349$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB981997)-->"C:\WINDOWS\$NtUninstallKB981997$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB982132)-->"C:\WINDOWS\$NtUninstallKB982132$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB982214)-->"C:\WINDOWS\$NtUninstallKB982214$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB982381)-->"C:\WINDOWS\$NtUninstallKB982381$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB982665)-->"C:\WINDOWS\$NtUninstallKB982665$\spuninst\spuninst.exe"
Anno 1701-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A2433A63-5F5D-40E5-B529-9123C2B3E734}\Setup.exe" -l0x5 -removeonly
Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
ArchiCAD 13 CZE-->D:\Program Files\Graphisoft\ArchiCAD 13\Uninstall.AC\uninstaller.exe
Athlon 64 Processor Driver-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C151CE54-E7EA-4804-854B-F515368B0798}\setup.exe" -l0x5
AVG 2011-->MsiExec.exe /I{1E1300BC-6DBA-476B-8CCF-4AA81ED4DF6A}
AVG 2011-->MsiExec.exe /I{80490945-CE48-45CF-9CCA-CA0EF44D9FE4}
Balíček ovladače systému Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0)-->C:\PROGRA~1\DIFX\270581355A767BF1\dpinst.exe /u C:\WINDOWS\system32\DRVSTORE\pccsmcfd_A3B3916E5D8138F59EE218321B27B044D3B18294\pccsmcfd.inf
Balíček zprostředkovatele služby Microsoft Base Smart Card Cryptographic Service-->"C:\WINDOWS\$NtUninstallbasecsp$\spuninst\spuninst.exe"
BearShare-->"C:\Documents and Settings\All Users.WINDOWS\Data aplikací\{888803CF-24CB-4360-955A-9B6EE8BEEDC1}\BearShare_V9_en_Setup.exe" REMOVE=TRUE MODIFY=FALSE
BearShare-->C:\Documents and Settings\All Users.WINDOWS\Data aplikací\{888803CF-24CB-4360-955A-9B6EE8BEEDC1}\BearShare_V9_en_Setup.exe
BurnAware Free 3.3.1-->"D:\Program Files\BurnAware Free\unins000.exe"
Canon MP600-->"C:\WINDOWS\system32\CanonIJ Uninstaller Information\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP600\DelDrv.exe" /U:{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP600 /L0x0005
Canon My Printer-->D:\Program Files\Canon\uninst.exe uninst.ini uinstrsc.dll
Crazy Machines 2 Complete-->"D:\Program Files\Crazy Machines 2 Complete\unins000.exe"
Crysis WARHEAD(R)-->"C:\Documents and Settings\All Users.WINDOWS\Data aplikací\{0691F710-1ECA-4B5A-9727-25554F1BFDC6}\setup.exe" REMOVE=TRUE MODIFY=FALSE
Crysis WARHEAD(R)-->C:\Documents and Settings\All Users.WINDOWS\Data aplikací\{0691F710-1ECA-4B5A-9727-25554F1BFDC6}\setup.exe
Crysis® 2-->MsiExec.exe /X{6033673D-2530-4587-8AD0-EB059FC263F9}
DAEMON Tools Lite-->E:\Program Files\DAEMON Tools Lite\uninst.exe
Diablo II-->C:\WINDOWS\DIIUnin.exe C:\WINDOWS\DIIUnin.dat
DiRT 3-->MsiExec.exe /I{434D0FA0-1558-4D8E-AC3D-BD1000008200}
DiRT 3-->MsiExec.exe /I{434D0FA0-AB8C-497F-B30A-7A1000018201}
DiRT 3-->MsiExec.exe /X{434D0FA0-1558-4D8E-AC3D-BD1000008200}
Duke Nukem Forever-->"D:\Program Files\Duke Nukem Forever\unins000.exe"
EA Download Manager-->D:\Program Files\Electronic Arts\EADM\EADMUninstall.exe
ESET Online Scanner v3-->C:\Program Files\ESET\ESET Online Scanner\OnlineScannerUninstaller.exe
Fallout New Vegas-->"D:\Program Files\Bethesda Softworks\Fallout New Vegas\unins000.exe"
ffdshow v1.1.3800 [2011-03-28]-->"D:\Program Files\ffdshow\unins000.exe"
FLV-Media Player 1.7-->D:\Program Files\FLV-Media Player\uninst.exe
Game Booster-->"D:\Program Files\IObit\Game Booster\unins000.exe"
GOM Player-->"D:\Program Files\GRETECH\GomPlayer\Uninstall.exe"
High Definition Audio Driver Package - KB888111-->"C:\WINDOWS\$NtUninstallKB888111WXPSP2$\spuninst\spuninst.exe"
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB915800-v4)-->"C:\WINDOWS\$NtUninstallKB915800-v4$\spuninst\spuninst.exe"
IObit Malware Fighter-->"D:\Program Files\IObit\IObit Malware Fighter\unins000.exe"
Java(TM) 6 Update 24-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216020FF}
JDownloader-->D:\Program Files\JDownloader\uninstall.exe
Junk Mail filter update-->MsiExec.exe /I{8E5233E1-7495-44FB-8DEB-4BE906D59619}
Medieval CUE Splitter-->MsiExec.exe /I{B96D2269-568B-4CBF-9332-12FAE8B158F7}
Microsoft .NET Framework 1.1 Czech Language Pack-->MsiExec.exe /X{5E65E94D-69F2-4850-9E93-6459C53A0F50}
Microsoft .NET Framework 1.1 Security Update (KB2416447)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M2416447\M2416447Uninstall.msp"
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - CSY-->MsiExec.exe /I{A2C9CD1B-2551-3AED-B244-6698FB929FA6}
Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - CSY-->MsiExec.exe /I{546C143E-68DC-314D-97BC-1E454E3BA429}
Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
Microsoft .NET Framework 3.5 Language Pack SP1 - csy-->MsiExec.exe /I{DD73CA82-EA82-38AA-863D-9A24A018DC96}
Microsoft .NET Framework 3.5 SP1 – jazyková sada – CSY-->C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - csy\setup.exe
Microsoft .NET Framework 3.5 SP1-->C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft .NET Framework 4 Client Profile CSY Language Pack-->C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SetupCache\ClientLP\Setup.exe /repair /x86 /lcid 1029 /parameterfolder ClientLP
Microsoft .NET Framework 4 Client Profile CSY Language Pack-->MsiExec.exe /X{7036A6F4-5DAD-3908-956D-1752CD7F7E5A}
Microsoft .NET Framework 4 Client Profile-->C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\Setup.exe /repair /x86 /parameterfolder Client
Microsoft .NET Framework 4 Client Profile-->MsiExec.exe /X{3C3901C5-3455-3E0A-A214-0B093A5070A6}
Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Games for Windows - LIVE Redistributable-->MsiExec.exe /X{F2508213-9989-4E85-A078-72BE483917EF}
Microsoft Games for Windows Marketplace-->MsiExec.exe /X{4CB0307C-565E-4441-86BE-0DF2E4FB828C}
Microsoft Internationalized Domain Names Mitigation APIs-->"C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
Microsoft National Language Support Downlevel APIs-->"C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
Microsoft Search Enhancement Pack-->MsiExec.exe /I{9C9CEB9D-53FD-49A7-85D2-FE674F72F24E}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft Sync Framework Runtime Native v1.0 (x86)-->MsiExec.exe /I{8A74E887-8F0F-4017-AF53-CBA42211AAA5}
Microsoft Sync Framework Services Native v1.0 (x86)-->MsiExec.exe /I{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148-->MsiExec.exe /X{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570-->MsiExec.exe /X{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022-->MsiExec.exe /X{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161-->MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319-->MsiExec.exe /X{196BB40D-1578-3D01-B289-BEFC77A11A1E}
Mozilla Firefox 5.0 (x86 cs)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
Nástroj pro odesílání služby Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
Need for Speed(TM) Hot Pursuit-->MsiExec.exe /X{83A606F5-BF6F-42ED-9F33-B9F74297CDED}
Nokia Connectivity Cable Driver-->MsiExec.exe /X{C3F19A5F-35A8-4FDB-A6ED-0F4CE398DA48}
NVIDIA nView 135.85-->"C:\WINDOWS\system32\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.2\NVI2.DLL",UninstallPackage Display.NView
NVIDIA nView Desktop Manager-->C:\Program Files\NVIDIA Corporation\nView\nViewSetup.exe -uninstall
NVIDIA Ovladače grafiky 275.33-->"C:\WINDOWS\system32\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.2\NVI2.DLL",UninstallPackage Display.Driver
NVIDIA PhysX-->MsiExec.exe /X{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}
OpenAL-->"C:\Program Files\OpenAL\OpenALwEAX.exe" /U
OpenOffice.org 3.3-->MsiExec.exe /I{D5B94160-4A07-4956-9C73-8C5EEFEF180F}
Oprava hotfix aplikace Windows Media Player 11 (KB939683)-->"C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
Oprava Hotfix systému Windows XP (KB2443685)-->"C:\WINDOWS\$NtUninstallKB2443685$\spuninst\spuninst.exe"
Oprava Hotfix systému Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
Oprava Hotfix systému Windows XP (KB961118)-->"C:\WINDOWS\$NtUninstallKB961118$\spuninst\spuninst.exe"
Oprava Hotfix systému Windows XP (KB981793)-->"C:\WINDOWS\$NtUninstallKB981793$\spuninst\spuninst.exe"
PC Connectivity Solution-->MsiExec.exe /I{83258E90-1F76-4E13-9F60-A0F8ED41E76F}
Protected Folder-->"D:\Program Files\IObit\Protected Folder\unins000.exe"
QuickTime-->MsiExec.exe /I{8DC42D05-680B-41B0-8878-6C14D24602DB}
Rapture3D 2.4.8 Game-->"C:\Program Files\BRS\unins000.exe"
REALTEK GbE & FE Ethernet PCI-E NIC Driver-->C:\Program Files\InstallShield Installation Information\{C9BED750-1211-4480-B1A5-718A3BE15525}\setup.exe -runfromtemp -removeonly
Realtek High Definition Audio Driver-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -l0x5 -removeonly
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A8894F19-59C8-38D2-8A75-36C0CCE56A5B} /qb+ REBOOTPROMPT=""
Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)-->C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {3E0806DB-3085-378A-840A-F0D3AE3609D1} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)-->C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {728D9A6A-2206-31E8-9F65-C3EABEFCF53E} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)-->C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {2CE2EB39-45C8-32D4-8A99-5529C38F1B99} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile CSY Language Pack (KB2478663)-->C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SetupCache\ClientLP\setup.exe /uninstallpatch {728D9A6A-2206-31E8-9F65-C3EABEFCF53E} /parameterfolder ClientLP
Security Update for Microsoft .NET Framework 4 Client Profile CSY Language Pack (KB2518870)-->C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SetupCache\ClientLP\setup.exe /uninstallpatch {2CE2EB39-45C8-32D4-8A99-5529C38F1B99} /parameterfolder ClientLP
Security Update for Windows Search 4 - KB963093-->"C:\WINDOWS\$NtUninstallKB963093$\spuninst\spuninst.exe"
Segoe UI-->MsiExec.exe /I{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}
SimCity™ Společnost Turistické destinace-->MsiExec.exe /X{D1C7BB12-BE01-11DC-AAC9-EEBA55D89593}
SimCity™ Společnost-->D:\Program Files\Electronic Arts\SimCity™ Společnost\SCS Uninstaller.exe -FromAddRemove
SimCity™ Společnost-->MsiExec.exe /X{0B5154C0-8F00-4616-B0AB-6240AE80D9CE}
Skype Toolbars-->MsiExec.exe /I{B6CF2967-C81E-40C0-9815-C05774FEF120}
Skype™ 5.3-->MsiExec.exe /X{D6F879CC-59D6-4D4B-AE9B-D761E48D25ED}
Smart Defrag 2-->"D:\Program Files\IObit\Smart Defrag 2\unins000.exe"
SMPlayer 0.6.9-->D:\Program Files\SMPlayer\uninst.exe
Sony Ericsson PC Companion 2.01.192-->"C:\Program Files\InstallShield Installation Information\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}\setup.exe" -runfromtemp -l0x0009 -removeonly
TeamSpeak 3 Client-->"D:\Program Files\TeamSpeak 3 Client\uninstall.exe"
TeamViewer 6-->C:\Program Files\TeamViewer\Version6\uninstall.exe
TmNationsForever-->"D:\Program Files\TmNationsForever\unins000.exe"
Trucks & Trailers 1.00-->D:\Program Files\Trucks & Trailers\uninst.exe
Ubisoft Game Launcher-->"C:\Program Files\InstallShield Installation Information\{888F1505-C2B3-4FDE-835D-36353EBD4754}\setup.exe" -runfromtemp -l0x0409 -removeonly
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
Ventrilo Client-->MsiExec.exe /I{789289CA-F73A-4A16-A331-54D498CE069F}
WIBU-KEY Setup (WIBU-KEY Remove)-->C:\Program Files\WIBUKEY\Setup\Setup32.exe /R:{00060000-0000-1004-8002-0000C06B5161}
Winamp-->"D:\Program Files\Winamp\UninstWA.exe"
Windows Internet Explorer 8-->"C:\WINDOWS\ie8\spuninst\spuninst.exe"
Windows Live Communications Platform-->MsiExec.exe /I{3175E049-F9A9-4A3D-8F19-AC9FB04514D1}
Windows Live Essentials-->C:\Program Files\Windows Live\Installer\wlarp.exe
Windows Live Essentials-->MsiExec.exe /I{F4D69A8D-BB5C-4C3D-A1AD-64C24233EDD6}
Windows Live ID Sign-in Assistant-->MsiExec.exe /X{0840B4D6-7DD1-4187-8523-E6FC0007EFB7}
Windows Live Sync-->MsiExec.exe /X{1407B87C-36E3-4FC1-9051-D08B21E1096F}
Windows Management Framework Core-->"C:\WINDOWS\$968930Uinstall_KB968930$\spuninst\spuninst.exe"
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Media Player 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
Windows Search 4.0-->"C:\WINDOWS\$NtUninstallKB940157$\spuninst\spuninst.exe"
Windows Searchqu Toolbar-->C:\Program Files\Windows Searchqu Toolbar\uninstall.exe
Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
WinRAR 4.00 (32-bit)-->D:\Program Files\WinRAR\uninstall.exe
Xfire (remove only)-->"D:\Program Files\Xfire\uninst.exe"
XMedia Recode 2.3.2.0-->D:\Program Files\XMedia Recode\uninst.exe
XML Paper Specification Shared Components Language Pack 1.0-->"C:\WINDOWS\$NtUninstallXPSEPSCLP$\spuninst\spuninst.exe"
XP Codec Pack-->D:\Program Files\XP Codec Pack\Uninstall.exe

Hosts File Missing
======Security center information======

AV: AVG Internet Security 2011
FW: AVG Firewall

======System event log======

Computer Name: PETRA-42C96A313
Event Code: 35
Message: Služba Systémový čas nyní synchronizuje systémový čas s časem
zdroje time.windows.com (ntp.m|0x1|192.168.14.73:123->207.46.232.182:123).

Record Number: 4310
Source Name: W32Time
Time Written: 20110606200747.000000+120
Event Type: Informace
User:

Computer Name: PETRA-42C96A313
Event Code: 7036
Message: Stav služby Služba modelu COM pro zápis na disk CD (IMAPI) byl změněn na: Zastaveno

Record Number: 4309
Source Name: Service Control Manager
Time Written: 20110606163743.000000+120
Event Type: Informace
User:

Computer Name: PETRA-42C96A313
Event Code: 7036
Message: Stav služby Služba modelu COM pro zápis na disk CD (IMAPI) byl změněn na: Spuštěno

Record Number: 4308
Source Name: Service Control Manager
Time Written: 20110606163737.000000+120
Event Type: Informace
User:

Computer Name: PETRA-42C96A313
Event Code: 7035
Message: Řídící příkaz Spuštěno byl službě Služba modelu COM pro zápis na disk CD (IMAPI) úspěšně odeslán.

Record Number: 4307
Source Name: Service Control Manager
Time Written: 20110606163737.000000+120
Event Type: Informace
User: NT AUTHORITY\SYSTEM

Computer Name: PETRA-42C96A313
Event Code: 4226
Message: Došlo k překročení limitu možného počtu souběžných připojení protokolem TCP.

Record Number: 4306
Source Name: Tcpip
Time Written: 20110606161952.000000+120
Event Type: Upozornění
User:

=====Application event log=====

Computer Name: PETRA-42C96A313
Event Code: 0
Message:
Record Number: 558
Source Name: Bandoo Coordinator
Time Written: 20110427171747.000000+120
Event Type: Informace
User:

Computer Name: PETRA-42C96A313
Event Code: 35
Message:
Record Number: 557
Source Name: N360
Time Written: 20110427171745.000000+120
Event Type: Informace
User: NT AUTHORITY\SYSTEM

Computer Name: PETRA-42C96A313
Event Code: 34
Message:
Record Number: 556
Source Name: N360
Time Written: 20110427171744.000000+120
Event Type: Informace
User: NT AUTHORITY\SYSTEM

Computer Name: PETRA-42C96A313
Event Code: 36
Message:
Record Number: 555
Source Name: N360
Time Written: 20110426213855.000000+120
Event Type: Informace
User: NT AUTHORITY\SYSTEM

Computer Name: PETRA-42C96A313
Event Code: 0
Message:
Record Number: 554
Source Name: Sony Ericsson PCCompanion
Time Written: 20110426183928.000000+120
Event Type: Informace
User:

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%CommonProgramFiles%\Microsoft Shared\Windows Live;C:\Program Files\PC Connectivity Solution\;C:\Program Files\NVIDIA Corporation\PhysX\Common;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\WINDOWS\system32\Wbem;C:\WINDOWS\system32\WindowsPowerShell\v1.0;D:\Program Files\QuickTime\QTSystem\
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 107 Stepping 1, AuthenticAMD
"PROCESSOR_REVISION"=6b01
"NUMBER_OF_PROCESSORS"=2
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.PSC1
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"PSModulePath"=C:\WINDOWS\system32\WindowsPowerShell\v1.0\Modules\
"CLASSPATH"=.;C:\Program Files\Java\jre6\lib\ext\QTJava.zip
"QTJAVA"=C:\Program Files\Java\jre6\lib\ext\QTJava.zip

-----------------EOF-----------------

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Další FB vir

#3 Příspěvek od vyosek »

Zdravim, pekny vecer preji a vitam Vas u nas na foru :welcome:

:arrow: Vse od IOBIt odinstalujte - jsou to cinske smejdy, databazi haveti ukradli jine (renomovane) spolecnosti, ucinek je spise nulovy nez dobry

:arrow: Stahnete RKill http://download.bleepingcomputer.com/grinler/rkill.com :arrow: Aplikujte exeHelper by Raktor :arrow: Aplikujte RogueKiller
stell píše: pouzijes RogueKiller>.spustis>>stlac 2> [enter] log vloz sem
http://www.viry.cz/forum/viewtopic.php? ... 05#p981205
:arrow: Jeste znovu RogueKiller ale nyni s moznosti 3 a pote jeste jednou s moznosti 4

:arrow: RKill, eXeHelper i RogueKiller by mely udelat logy, vlozte mi je sem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Jinoch
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 30 lis 2006 21:45

Re: Další FB vir

#4 Příspěvek od Jinoch »

Tak jsem to zkusil. Při tom prvním kroku s Rkillem mi pořád vyskakovaly hlášky o neplatném procesu apod. Nakonec se i přesto sputil a log je zde:
This log file is located at C:\rkill.log.
Please post this only if requested to by the person helping you.
Otherwise you can close this log when you wish.

Rkill was run on 25.07.2011 at 19:30:24.
Operating System: Microsoft Windows XP

Processes terminated by Rkill or while it was running:

Rkill completed on 25.07.2011 at 19:30:24.

Druhý krok exeHelper byl OK, log je zde:

exeHelper by Raktor
Build 20100414
Run at 19:19:58 on 07/25/11
Now searching...
Checking for numerical processes...
Checking for sysguard processes...
Checking for bad processes...
Checking for bad files...
Checking for bad registry entries...
Resetting filetype association for .exe
Resetting filetype association for .com
Resetting userinit and shell values...
Resetting policies...
--Finished--

exeHelper by Raktor
Build 20100414
Run at 19:30:58 on 07/25/11
Now searching...
Checking for numerical processes...
Checking for sysguard processes...
Checking for bad processes...
Checking for bad files...
Checking for bad registry entries...
Resetting filetype association for .exe
Resetting filetype association for .com
Resetting userinit and shell values...
Resetting policies...
--Finished--

Aplikace RogueKiller 1 scan je zde:

RogueKiller V5.2.8 [07/23/2011] by Tigzy
contact at http://www.sur-la-toile.com
mail: tigzyRK<at>gmail<dot>com
Feedback: http://www.sur-la-toile.com/discussion- ... ntees.html

Operating System: Windows XP (5.1.2600 Service Pack 3) 32 bits version
Started in : Normal mode
User: Petra [Admin rights]
Mode: Scan -- Date : 07/25/2011 19:32:01

Bad processes: 3
[SVCHOST] svchost.exe -- c:\windows\update.5.0\svchost.exe -> KILLED
[SVCHOST] svchost.exe -- c:\windows\update.2\svchost.exe -> KILLED
[SVCHOST] svchost.exe -- c:\windows\update.tray-12-0\svchost.exe -> KILLED

Registry Entries: 6
[SUSP PATH] HKLM\[...]\Run : wxpdrv (C:\WINDOWS\services32.exe) -> FOUND
[HJ] HKLM\[...]\System : EnableLUA (0) -> FOUND
[HJ] HKLM\[...]\Security Center : AntiVirusDisableNotify (1) -> FOUND
[HJ] HKLM\[...]\Security Center : FirewallDisableNotify (1) -> FOUND
[HJ] HKLM\[...]\Security Center : UpdatesDisableNotify (1) -> FOUND
[HJ] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND

HOSTS File:


Finished : << RKreport[1].txt >>
RKreport[1].txt


Aplikace RougeKiller s možností 3 Hosts fix je zde:

RogueKiller V5.2.8 [07/23/2011] by Tigzy
contact at http://www.sur-la-toile.com
mail: tigzyRK<at>gmail<dot>com
Feedback: http://www.sur-la-toile.com/discussion- ... ntees.html

Operating System: Windows XP (5.1.2600 Service Pack 3) 32 bits version
Started in : Normal mode
User: Petra [Admin rights]
Mode: HOSTSFix -- Date : 07/25/2011 19:33:29

Bad processes: 0

HOSTS File:


Resetted HOSTS:
127.0.0.1 localhost

Finished : << RKreport[2].txt >>
RKreport[1].txt ; RKreport[2].txt

A poslední aplikace RogueKilleru s možností 4 Proxy fix je zde:

RogueKiller V5.2.8 [07/23/2011] by Tigzy
contact at http://www.sur-la-toile.com
mail: tigzyRK<at>gmail<dot>com
Feedback: http://www.sur-la-toile.com/discussion- ... ntees.html

Operating System: Windows XP (5.1.2600 Service Pack 3) 32 bits version
Started in : Normal mode
User: Petra [Admin rights]
Mode: ProxyFix -- Date : 07/25/2011 19:33:43

Bad processes: 0

Registry Entries: 0

Finished : << RKreport[3].txt >>
RKreport[1].txt ; RKreport[2].txt ; RKreport[3].txt

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Další FB vir

#5 Příspěvek od vyosek »

Jeste poprosim o RogueKiller s moznosti "2" - jak bylo psano i v navodu
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Jinoch
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 30 lis 2006 21:45

Re: Další FB vir

#6 Příspěvek od Jinoch »

RogueKiller možnost 2:

RogueKiller V5.2.8 [07/23/2011] by Tigzy
contact at http://www.sur-la-toile.com
mail: tigzyRK<at>gmail<dot>com
Feedback: http://www.sur-la-toile.com/discussion- ... ntees.html

Operating System: Windows XP (5.1.2600 Service Pack 3) 32 bits version
Started in : Normal mode
User: Petra [Admin rights]
Mode: Remove -- Date : 07/25/2011 19:58:41

Bad processes: 1
[SVCHOST] svchost.exe -- c:\windows\update.tray-12-0\svchost.exe -> KILLED

Registry Entries: 6
[SUSP PATH] HKLM\[...]\Run : wxpdrv (C:\WINDOWS\services32.exe) -> DELETED
[HJ] HKLM\[...]\System : EnableLUA (0) -> REPLACED (1)
[HJ] HKLM\[...]\Security Center : AntiVirusDisableNotify (1) -> REPLACED (0)
[HJ] HKLM\[...]\Security Center : FirewallDisableNotify (1) -> REPLACED (0)
[HJ] HKLM\[...]\Security Center : UpdatesDisableNotify (1) -> REPLACED (0)
[HJ] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> REPLACED (0)

HOSTS File:


Finished : << RKreport[4].txt >>
RKreport[1].txt ; RKreport[2].txt ; RKreport[3].txt ; RKreport[4].txt

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Další FB vir

#7 Příspěvek od vyosek »

Vyborne, jdeme dale :James008:

PROSIM CTETE DUKLADNE NAVOD - TATO UTILITA MA VELKOU SCHOPNOST MAZAT A JE NUTNE JI APLIKOVAT JEN NA DOPORUCENI, JINAK VAM MUZE JIT SYSTEM DO KYTEK
:arrow: Stahnete a ulozte na plochu Combofix http://download.bleepingcomputer.com/sUBs/ComboFix.exe
  • Vypnete vsechny rezidentni bezpecnostní programy - firewally, antiviry, antispywary apod.
  • Pokud mate Win XP spustte pod uctem Spravce\Administratora
  • Pokud mate Win Vista ci Win 7, kliknete na Combofix pravym a dejte Run As Administrator ci Spustit jako spravce
  • Ihned po startu se zobrazi stranka s licencnim ujednanim, pokracujte kliknutim na Ano
  • Pokud Vam CF nabidne instalaci Konzoly pro zotaveni, tak souhlaste
  • Dale postupujte dle pokynu, behem scanu nechte PC naprosto v klidu - nespoustejte zadne aplikace a neklikejte do zobrazujiciho se okna
  • Scan by mel trvat cca 10 min, ale pokud bude PC hodne zaneseno, muze se cas prodlouzit
  • Po dokonceni skenu a pripadnem restartu CF zobrazi log, pripadne jej najdete zde C:\ComboFix.txt, jeho obsah sem vlozte
  • Detailni postup vc. obrazku mate zde http://www.bleepingcomputer.com/combofi ... t-combofix
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Jinoch
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 30 lis 2006 21:45

Re: Další FB vir

#8 Příspěvek od Jinoch »

Takže log z ComboFixu je tu. To AVG fyzicky na tom PC už není. Jenom se tak tváří ten virus :roll: Musím ten log na dvě části kvůli max. počtu znaků.


ComboFix 11-07-25.02 - Petra 25.07.2011 20:06:55.1.2 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1250.420.1029.18.2047.1254 [GMT 2:00]
Spuštěný z: c:\documents and settings\Petra\Plocha\ComboFix.exe
AV: AVG Internet Security 2011 *Enabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF}
FW: AVG Firewall *Enabled* {8decf618-9569-4340-b34a-d78d28969b66}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\Mozilla Firefox\searchplugins\SearchquWebSearch.xml
c:\program files\Windows Searchqu Toolbar
c:\program files\Windows Searchqu Toolbar\Datamngr\datamngr.dll
c:\program files\Windows Searchqu Toolbar\Datamngr\datamngrUI.exe
c:\program files\Windows Searchqu Toolbar\Datamngr\FirefoxExtension\components\DataMngrHlp.dll
c:\program files\Windows Searchqu Toolbar\Datamngr\FirefoxExtension\components\DataMngrHlp.xpt
c:\program files\Windows Searchqu Toolbar\Datamngr\FirefoxExtension\content\DataMngr.js
c:\program files\Windows Searchqu Toolbar\Datamngr\FirefoxExtension\content\FFBHO.js
c:\program files\Windows Searchqu Toolbar\Datamngr\FirefoxExtension\content\overlay.js
c:\program files\Windows Searchqu Toolbar\Datamngr\FirefoxExtension\content\overlay.xul
c:\program files\Windows Searchqu Toolbar\Datamngr\FirefoxExtension\content\Settings.xml
c:\program files\Windows Searchqu Toolbar\Datamngr\FirefoxExtension\chrome.manifest
c:\program files\Windows Searchqu Toolbar\Datamngr\FirefoxExtension\install.rdf
c:\program files\Windows Searchqu Toolbar\Datamngr\IEBHO.dll
c:\program files\Windows Searchqu Toolbar\ToolBar\as_guid.dat
c:\program files\Windows Searchqu Toolbar\ToolBar\components\windowmediator.js
c:\program files\Windows Searchqu Toolbar\ToolBar\dtUser.exe
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\bandoocode.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\data\search\engines.xml
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\data\search\search.xsl
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\imeshcode.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\lib\about.xml
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\lib\bandoocode.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\lib\dtxpanel.xul
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\lib\dtxpanelwin.xul
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\lib\dtxprefwin.xul
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\lib\dtxtransparentwin.xul
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\lib\dtxwin.xul
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\lib\emailnotifierproviders.xml
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\lib\external.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\lib\imeshcode.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\lib\neterror.xhtml
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\lib\nsDragAndDrop.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\lib\vmncode.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\lib\wmpstreamer.html
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\modules\datastore.jsm
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\neterror.xhtml
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\partner.coupons.xml
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\preferences.xml
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\radiobeta.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\template.xml
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\toolbar.htm
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\toolbar.xul
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\vmncode.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\vmnrsswin.xml
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\alert_coupon.css
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\arrow-next-off.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\arrow-next.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\arrow-previous-off.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\arrow-previous.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\bg-coupon-blue.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\bg-save.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\btn-getcoupon.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\btn-next-blue.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\btn-previous-blue.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\btn-wide-close-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\btn-wide-close.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\coupon-activated.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\couponTooltip.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\css\dialog.css
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\css\ie7style.css
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\ico-coupon.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\ico-dollar.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\arrow-grey.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\arrows_grey-left.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\arrows_grey-right.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\bg_top.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\btn-back.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\btn-getcoupon.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\btn-search.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\coupon-activated.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\delete.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\loader.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\scrollb-disable.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\scrollb-down.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\scrollb.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\scrollt-disable.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\scrollt-down.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\scrollt.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\sprite.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\tab-arrow-hover.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\tab-arrow.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\tab-off-l.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\tab-off-l_BAK.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\tab-off-r.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\tab-off-r_BAK.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\tab-on-l.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\tab-on-r.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\tab-over-l.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\tab-over-r.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\tab-white-left.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\tab-white-mdl.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\tab-white-right.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\images\vid-bg.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\index.html
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\jquery.contextMenu.css
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\jquery.contextMenu.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\js\jquery-1.4.2.min.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\js\jquery.event.wheel.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\js\jquery.scrollTo-min.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\js\JSON.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\js\listnav.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\js\main.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\page_white_copy.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\panel.html
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\partner.xml
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\placeholder-logo.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\skin\css\dialog.css
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\skin\images\bg.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\skin\images\btn-wide-close-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\skin\images\btn-wide-close.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\skin\images\default.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\skin\images\transparent.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\skin\images\win-btm-left.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\skin\images\win-btm-mdl.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\skin\images\win-btm-right-resize.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\skin\images\win-btm-right.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\skin\main.html
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\skin\scripts\defscript.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\tb_icon.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\widget.jsw
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\widget.xml
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Coupons_v2\widget_version.txt
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\css\dialog.css
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\images\arrow-grey.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\images\arrows_grey-left.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\images\arrows_grey-right.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\images\back.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\images\btn-search-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\images\btn-search.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\images\delete.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\images\scrollb-disable.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\images\scrollb-down.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\images\scrollb.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\images\scrollt-disable.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\images\scrollt-down.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\images\scrollt.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\images\tab-arrow-hover.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\images\tab-arrow.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\images\tab-off-l.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\images\tab-off-r.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\images\tab-on-l.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\images\tab-on-r.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\images\tab-over-l.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\images\tab-over-r.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\images\tab-red-left.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\images\tab-red-mdl.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\images\tab-red-right.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\images\tab-white-left.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\images\tab-white-mdl.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\images\tab-white-right.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\images\throbber.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\images\vid-bg.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\images\youtube.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\index.html
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\js\function.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\js\jquery-1.4.2.min.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\js\JSON.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\skin\css\dialog.css
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\skin\images\bg-facebook.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\skin\images\blank.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\skin\images\btn-wide-close-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\skin\images\btn-wide-close.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\skin\images\default.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\skin\images\transparent.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\skin\images\win-btm-left.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\skin\images\win-btm-mdl.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\skin\images\win-btm-right-resize.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\skin\images\win-btm-right.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\skin\main.html
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\skin\scripts\defscript.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\skin\scripts\jquery-1.4.2.min.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\tb_icon.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\widget.jsw
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\widget.xml
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.MyStartFacebook\widget_version.txt
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.PPCBully\tb_icon.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.PPCBully\widget.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.PPCBully\widget.xml
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.PPCBully\widget_version
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\css\twitter.css
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\images\btn-login-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\images\btn-login.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\images\btn-submit.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\images\loginbg.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\images\refresh-over.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\images\refresh.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\images\scrollbottom-disable.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\images\scrollbottom-down.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\images\scrollbottom-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\images\scrollbottom.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\images\scrolltop-disable.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\images\scrolltop-down.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\images\scrolltop-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\images\scrolltop.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\images\tab-off-l.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\images\tab-off-r.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\images\tab-on-l.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\images\tab-on-r.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\images\throbber.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\images\twitter-logo48.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\images\twitter_top.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\js\jquery.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\js\scripts.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\skin\css\dialog.css
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\skin\images\bg.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\skin\images\btn-wide-close-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\skin\images\btn-wide-close.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\skin\images\default.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\skin\images\transparent.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\skin\images\win-btm-left.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\skin\images\win-btm-mdl.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\skin\images\win-btm-right-resize.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\skin\images\win-btm-right.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\skin\main.html
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\skin\scripts\defscript.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\tb_icon.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\widget.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\widget.xml
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.Twitter\widget_version.txt
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\css\autocomplete.css
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\css\dialog.css
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\images\arrow-grey.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\images\arrows_grey-left.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\images\arrows_grey-right.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\images\bg.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\images\btn-search-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\images\btn-search.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\images\powered-by-youtube.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\images\tab-off-l.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\images\tab-off-r.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\images\tab-on-l.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\images\tab-on-r.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\images\tab-red-left.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\images\tab-red-mdl.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\images\tab-red-right.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\images\tab-white-left.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\images\tab-white-mdl.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\images\tab-white-right.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\images\throbber.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\images\vid-bg.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\images\youtube.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\index.html
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\js\autocomplete.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\js\jquery-1.4.3.min.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\js\paginator.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\js\youtube.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\skin\css\dialog.css
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\skin\images\bg.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\skin\images\btn-search.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\skin\images\btn-wide-close-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\skin\images\btn-wide-close.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\skin\images\default.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\skin\images\tab-off-l.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\skin\images\tab-off-r.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\skin\images\tab-on-l.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\skin\images\tab-on-r.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\skin\images\transparent.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\skin\images\win-btm-left.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\skin\images\win-btm-mdl.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\skin\images\win-btm-right-resize.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\skin\images\win-btm-right.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\skin\main.html
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\skin\scripts\defscript.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\tb_icon.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\widget.jsw
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\widget.xml
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\content\widgets\net.vmn.www.YouTube_v2\widget_version.txt
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\babylon_logo.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\bandoo.css
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\bluelite.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\bluesky.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\btn-search-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\btn-search.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\btn-settings-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\btn-settings.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\btn-widgets-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\btn-widgets.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\btn_settings.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\ca.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\dictionary.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\divider.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\downloadcom.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\dtxlogo.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\ebay.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\email.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\email_on.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\facebook.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\games.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\graphred0.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\graphred0_5.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\graphred1.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\graphred1_5.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\graphred2.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\graphred2_5.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\graphred3.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\graphred3_5.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\graphred4.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\graphred4_5.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\graphred5.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\graphredna.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\grey.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\ico-shield.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\icon_radio_png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\icon_seperator_png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\images.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\imesh.css
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\add.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\aol.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\arrow-dn.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\arrow-right-disabled.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\arrow-right.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\arrow-up.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\bg-btn-divider.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\bg-btn-end.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\bg-btn-mdl.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\bg-btn-mdl_ff.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\bg-btn-start.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\bg-btnover-divider.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\bg-btnover-end.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\bg-btnover-mdl.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\bg-btnover-mdl_ff.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\bg-btnover-start.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\blank.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\btn-widgets-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\btn-widgets.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\btn_slider.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\btnback-down-vista.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\btnback-vista.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\btnleft-down-vista.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\btnleft-vista.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\btnright-down-vista.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\btnright-vista.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\button-splitter-down-vista.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\button-splitter-vista.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\collapse.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\comcast.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\dtx.css
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\edit-back-hot.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\edit-back.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\expand.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\found.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\gmail.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\highlight.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\highlight_blue.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\highlight_cyan.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\highlight_lime.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\highlight_magenta.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\highlight_yellow.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\hotmail.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\checkmark.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\chevron.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\ico-check.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\imap.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\lastsearch-thumb-back.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\loadingMid.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\lock.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\logo-separator.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\mailcom.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\menu_bg-basic.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\menu_separator_bar.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\menu_separator_white.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\menuitem-splitter.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\menuitemback-down-vista.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\menuitemback-vista.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\menuitemleft-down-vista.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\menuitemleft-vista.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\menuitemright-down-vista.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\menuitemright-vista.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\modify.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\move.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\movetarget.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\css\panels.css
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\css\popupAbout.css
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\css\popupGames.css
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\css\popupRSS.css
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\css\popupWidgets.css
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\default\css\dialog.css
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\default\images\bg.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\default\images\btn-search.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\default\images\btn-wide-close-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\default\images\btn-wide-close.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\default\images\default.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\default\images\tab-off-l.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\default\images\tab-off-r.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\default\images\tab-on-l.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\default\images\tab-on-r.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\default\images\transparent.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\default\images\ttlbar-left.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\default\images\ttlbar-mdl.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\default\images\ttlbar-right.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\default\images\win-btm-left.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\default\images\win-btm-mdl.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\default\images\win-btm-right-resize.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\default\images\win-btm-right.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\default\images\win-left.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\default\images\win-right.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\default\main.html
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\default\scripts\defscript.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\footer.htm
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\gamecategory.xsl
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\gameData.js
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\gameList.xsl
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\games.xsl
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\gametype.xsl
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\arrow-dn.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\arrow-sml-drop.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\arrow-sml.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\arrow-up.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\arrowr-bluew5.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\bg-aboutbox.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\bg-btnover.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\bg-pnl520x390.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\btn-addtoolbar-left-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\btn-addtoolbar-left.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\btn-addtoolbar-right.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\btn-back.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\btn-close-grey.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\btn-close-greyover.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\btn-drag.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\btn-mdl-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\btn-mdl.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\btn-moredetails.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\btn-next-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\btn-next.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\btn-play-left-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\btn-play-left.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\btn-previous-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\btn-previous.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\btn-right-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\btn-search-pnlbtm-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\btn-search-pnlbtm.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\btn-try-left-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\btn-try-left.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\bullet-orange.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\gamethumb-on.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\gamethumb2-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\ico-calendar.png

Jinoch
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 30 lis 2006 21:45

Re: Další FB vir

#9 Příspěvek od Jinoch »

c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\ico-dollar.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\ico-download.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\ico-joystick24.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\ico-news24.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\ico-play.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\ico-tags.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\icon-Add.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\icon-download.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\icon-Info.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\icon-play.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\icon-shop.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\menul-bgon.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\menul-bgover.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\panel-botm-noscroll.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\scroll-bg-206.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\scroll-bg.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\scroll-topwin.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\scrollb-disable.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\scrollb-down.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\scrollb-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\scrollb.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\scrollt-disable.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\scrollt-down.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\scrollt-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\scrollt.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\searchbox-pnlbtm.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\star_x_grey.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\star_x_orange.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\TRUSTe_about.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\view-detailed-on.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\view-detailed-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\view-thumb-on.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\view-thumb-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\widgets-square-16px.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\widgets-square-24px.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\images\widgets.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\initHTML.html
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\popupGames.html
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\popupHTML.html
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\popupRSS.html
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\popupWidgets.html
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\panels\scroll.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\pop.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\css\manager.css
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\css\slider.css
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\bg-pnl.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\btn-close-grey.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\btn-close-greyover.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\collapsed_button.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\expanded_button.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\ico-playstation-down.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\ico-playstation-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\ico-playstation.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\ico-radio.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\music-note.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\radio-btn-pause-on.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\radio-btn-pause.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\radio-btn-play-on.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\radio-btn-play.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\radio-eq-bg.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\radio-eq-buffer.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\radio-eq-busy.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\radio-eq-off.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\radio-eq-on.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\radio-eq-warning.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\radio-options-design-on.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\radio-options-design.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\radio-options-on.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\radio-options.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\radio-volume-0.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\radio-volume-1.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\radio-volume-2.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\radio-volume-3.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\radio-volume-mute.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\scrollbar-handle.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\scrollbar-track.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\slider.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\slideron.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\images\track.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\managerpanel.html
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radio\volumeslider.html
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radiobeta-buffering.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radiobeta-connecting.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radiobeta-playing.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radiobeta-stopped.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\radiobeta.ico
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\reload.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\remove.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\rename.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\resize-box.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\rss.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\rsschannelback.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\RSSLogo.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\rsstabdivider.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\scroll-left.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\scroll-right.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\search-go.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\search.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\text-ellipsis.xml
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\throbber.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\toolbarsplitter.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\transparent_1px.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\uwa\border_02.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\uwa\border_03.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\uwa\border_04.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\uwa\border_06.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\uwa\border_07.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\uwa\border_08.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\uwa\border_09.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\uwa\border_10.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\uwa\border_11.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\uwa\border_12.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\uwa\border_13.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\uwa\border_14.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\uwa\border_15.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\uwa\border_16.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\uwa\border_18.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\uwa\border_19.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\uwa\border_20.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\uwa\border_21.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\uwa\btn-close-grey.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\uwa\btn-close-greyover.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\uwa\close-hot.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\uwa\close-normal.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\uwa\loadingMid.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\uwa\proxy.html
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\uwa\template.html
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\uwa\template.xml
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\uwa\templateFF.html
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\uwa\throbber.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\icons\cond999.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\icons\icons.xml
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\icons\na-s.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\icons\na-t.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\icons\na.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\images\add.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\images\arrowr-bluew5.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\images\bg-pnl.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\images\bg-pnl520x350.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\images\bg-pnl520x350blue-whitebg.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\images\bg-pnl520x350blue.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\images\box-check.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\images\box-uncheck.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\images\btn-close-grey.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\images\btn-close-greyover.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\images\btn-delete.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\images\btn-search-pnlbtm-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\images\btn-search-pnlbtm.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\images\btnarrow-next-off.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\images\btnarrow-next.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\images\btnarrow-previous-off.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\images\btnarrow-previous.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\images\ico-hotandhumid-s.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\images\ico-hotandhumid.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\images\ico-check.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\images\options-weather.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\images\over-blue.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\images\over-orange.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\images\powered-by-weatherbug.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\images\powered-by-weatherbug2.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\images\radio-checked.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\images\radio-unchecked.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\images\searchbox-pnlbtm.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\images\weather-contour.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\popupWeather.css
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\weatherbutton\panels\popupWeather.html
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lib\yahoo.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\lichen.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\logo-about.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\logo-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\logo-separator.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\logo.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\mail.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\maps.bmp
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\menuseparatorback.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\modify-save.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\modify.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\modifyhot.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\music.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\news.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\options\options-main.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\options\options-search.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\options\options-weather.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\options\options-weather.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\options\options-widgets.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\orange.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\pixsy.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\protect-id.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\radiobeta-buffering.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\radiobeta-connecting.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\radiobeta-playing.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\radiobeta-stopped.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\radiobeta.ico
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\relatedlinks.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\rss-collapse.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\rss-delete.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\rss-expand.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\rss-feed.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\rss-folder-remove.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\rss-folder-rename.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\rss-folder.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\rss-found.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\rss-reload.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\rss-subscribe.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\rss.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\rssback.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\rsstopback.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\search-over.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\search.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\search_button_over_png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\search_button_png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\searchbar\searchbar-background-left.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\searchbar\searchbar-background-middle.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\searchbar\searchbar-background-right.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\settings.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\shopping.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\siteinfo.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\skin-bluelite.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\skin-bluesky.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\skin-grey.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\skin-lichen.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\skin-orange.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\skin-yellow.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\skin.xml
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\technorati.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\throbber.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\toolbarsplitter.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\translate.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\video.bmp
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\vmn.css
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\vmn.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\weather.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\web.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\widgets-square-16px.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\wikipedia.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\yahoosearch.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\yellow.gif
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\youtube.png
c:\program files\Windows Searchqu Toolbar\ToolBar\chrome\skin\zoom.png
c:\program files\Windows Searchqu Toolbar\ToolBar\manifest.xml
c:\program files\Windows Searchqu Toolbar\ToolBar\searchquband.dll
c:\program files\Windows Searchqu Toolbar\ToolBar\searchqudtx.dll
c:\program files\Windows Searchqu Toolbar\ToolBar\uninstall.exe
c:\program files\Windows Searchqu Toolbar\uninstall.exe
c:\windows\btc_client_iplist.txt
c:\windows\ddh_iplist.txt
c:\windows\front_ip_list.txt
c:\windows\iecheck_iplist.txt
c:\windows\info1
c:\windows\iplist.txt
c:\windows\loader2.exe_ok
c:\windows\phoenix.rar
c:\windows\proc_list1.log
c:\windows\rpcminer.rar
c:\windows\services32.exe
c:\windows\system32\drivers\etc\HSTS~1
c:\windows\system32\ezGOSvc.dll
c:\windows\system32\searchindexer.exe
c:\windows\ufa.rar
c:\windows\update.1
c:\windows\update.1\svchost.exe
c:\windows\update.2
c:\windows\update.5.0
c:\windows\winlog-dirs.txt
c:\windows\winlog-ids.txt
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_EZGOSVC
-------\Legacy_SRVIECHECK
-------\Legacy_SRVSYSDRIVER32
-------\Legacy_WXPDRIVERS
-------\Service_ezGOSvc
-------\Service_srviecheck
-------\Service_wxpdrivers
-------\Legacy_WSearch
-------\Service_WSearch
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-06-25 do 2011-07-25 )))))))))))))))))))))))))))))))
.
.
2011-07-25 17:57 . 2011-07-25 17:57 0 ----a-w- c:\windows\ativpsrm.bin
2011-07-25 17:56 . 2010-08-26 02:03 311296 ----a-r- c:\windows\system32\atiiiexx.dll
2011-07-25 17:56 . 2010-08-26 01:57 450560 ----a-r- c:\windows\system32\ATIDEMGX.dll
2011-07-25 17:55 . 2010-07-21 11:30 101904 ----a-r- c:\windows\system32\drivers\AtihdXP3.sys
2011-07-25 17:00 . 2011-07-25 17:01 -------- d-----w- c:\program files\trend micro
2011-07-25 17:00 . 2011-07-25 17:01 -------- d-----w- C:\rsit
2011-07-25 13:55 . 2011-07-25 13:55 -------- d-----w- c:\program files\ESET
2011-07-25 13:29 . 2011-07-25 13:29 -------- d-----w- c:\windows\ufa
2011-07-25 13:29 . 2011-07-25 13:29 -------- d-----w- c:\windows\rpcminer
2011-07-25 13:29 . 2011-07-25 13:29 -------- d-----w- c:\windows\phoenix
2011-07-25 13:24 . 2011-07-25 13:29 246272 ----a-w- c:\windows\unrar.exe
2011-07-25 13:15 . 2011-07-25 13:15 -------- d-----w- c:\windows\av_ico
2011-07-25 13:13 . 2011-07-25 13:13 -------- d--h--w- c:\windows\update.tray-12-0
2011-07-25 13:13 . 2011-07-25 13:13 -------- d--h--w- c:\windows\update.tray-12-0-lnk
2011-07-25 12:43 . 2011-07-25 12:43 -------- d-----w- c:\documents and settings\LocalService\Nabídka Start
2011-07-25 11:58 . 2011-07-25 11:58 -------- d-----w- c:\windows\system32\wbem\Framework
2011-07-24 20:28 . 2011-07-24 21:41 -------- d-----w- c:\documents and settings\Petra\Data aplikací\TeamViewer
2011-07-24 20:28 . 2011-07-24 20:28 -------- d-----w- c:\program files\TeamViewer
2011-07-22 14:50 . 2011-07-22 14:50 -------- d-sh--w- c:\documents and settings\All Users.WINDOWS\Data aplikací\DSS
2011-07-22 14:50 . 2011-07-22 14:50 -------- d-----w- c:\documents and settings\All Users.WINDOWS\Data aplikací\Codemasters
2011-07-22 14:43 . 2011-07-22 14:43 -------- d-----w- c:\windows\system32\xlive
2011-07-22 14:43 . 2011-07-22 14:43 -------- d-----w- c:\program files\Microsoft Games for Windows - LIVE
2011-07-22 14:42 . 2010-09-22 11:12 19087360 ----a-w- c:\windows\system32\mkl_blueripple.dll
2011-07-22 14:42 . 2011-03-19 13:16 1417216 ----a-w- c:\windows\system32\rapture3d_oal.dll
2011-07-22 14:42 . 2011-07-22 14:42 -------- d-----w- c:\program files\BRS
2011-07-22 14:42 . 2011-04-15 23:40 809496 ----a-r- c:\windows\system32\tmp5F.tmp
2011-07-22 14:42 . 2011-04-15 23:40 809496 ----a-r- c:\windows\system32\tmp5E.tmp
2011-07-21 16:35 . 2011-05-25 07:25 899688 ----a-w- c:\windows\system32\nvdispco3220150.dll
2011-07-21 16:35 . 2011-05-25 07:25 865896 ----a-w- c:\windows\system32\nvgenco322090.dll
2011-07-21 16:10 . 2011-07-21 16:10 -------- d-----w- c:\documents and settings\UpdatusUser
2011-07-21 16:10 . 2011-07-21 16:10 -------- d-----w- c:\documents and settings\All Users.WINDOWS\Data aplikací\NVIDIA
2011-07-21 16:08 . 2011-04-08 05:14 944232 ----a-w- c:\windows\system32\nvdispco3220140.dll
2011-07-21 16:08 . 2011-04-08 05:14 855656 ----a-w- c:\windows\system32\nvgenco322060.dll
2011-07-21 14:28 . 2011-07-25 10:35 -------- d-----w- c:\windows\system32\drivers\AVG
2011-07-19 18:24 . 2011-07-19 18:24 -------- d-----w- c:\documents and settings\All Users.WINDOWS\Data aplikací\Trymedia
2011-07-11 21:48 . 2011-07-11 21:48 12800 ----a-w- c:\program files\Mozilla Firefox\plugins\npwachk.dll
2011-07-09 12:46 . 2011-07-09 12:46 -------- d-----w- c:\documents and settings\Petra\Data aplikací\OpenOffice.org
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-07-22 14:42 . 2011-04-25 13:41 444952 ----a-w- c:\windows\system32\wrap_oal.dll
2011-07-22 14:42 . 2011-04-25 13:41 109080 ----a-w- c:\windows\system32\OpenAL32.dll
2011-07-20 13:20 . 2011-06-05 08:55 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-07-11 12:17 . 2011-04-09 11:51 1698408 ----a-w- c:\windows\RtlExUpd.dll
2011-07-07 15:39 . 2011-04-09 11:51 6367848 ----a-w- c:\windows\system32\drivers\RtkHDAud.sys
2011-07-06 11:27 . 2011-04-09 11:51 60008 ----a-w- c:\windows\system32\RtkCoInstXP.dll
2011-07-05 14:08 . 2011-04-09 11:51 20053608 ----a-w- c:\windows\RTHDCPL.EXE
2011-06-30 14:15 . 2011-04-09 11:51 891496 ----a-w- c:\windows\system32\RTSndMgr.CPL
2011-06-17 16:11 . 2011-06-17 16:55 663424 ----a-w- c:\windows\system32\ezGOSvcApp.exe
2011-06-06 11:35 . 2004-08-18 12:00 1858944 ----a-w- c:\windows\system32\win32k.sys
2011-05-28 15:21 . 2011-05-28 15:16 21840 ----atw- c:\windows\system32\SIntfNT.dll
2011-05-28 15:21 . 2011-05-28 15:16 17212 ----atw- c:\windows\system32\SIntf32.dll
2011-05-28 15:21 . 2011-05-28 15:16 12067 ----atw- c:\windows\system32\SIntf16.dll
2011-05-28 15:12 . 2011-05-28 15:12 94208 ----a-w- c:\windows\DIIUnin.exe
2011-05-28 15:12 . 2011-05-28 15:12 2829 ----a-w- c:\windows\DIIUnin.pif
2011-05-25 07:26 . 2011-04-07 20:15 54272 ----a-w- c:\windows\system32\nvwddi.dll
2011-05-25 07:26 . 2011-04-07 20:15 154728 ----a-w- c:\windows\system32\nvsvc32.exe
2011-05-25 07:26 . 2011-04-07 20:15 111208 ----a-w- c:\windows\system32\nvmctray.dll
2011-05-25 07:26 . 2011-04-07 20:15 13895272 ----a-w- c:\windows\system32\nvcpl.dll
2011-05-25 07:26 . 2011-04-07 20:15 145000 ----a-w- c:\windows\system32\nvcolor.exe
2011-05-25 07:26 . 2011-04-07 20:15 543336 ----a-w- c:\windows\system32\easyupdatusapiu.dll
2011-05-25 07:25 . 2011-04-09 12:00 61440 ----a-w- c:\windows\system32\OpenCL.dll
2011-05-25 07:25 . 2011-04-09 12:00 16068608 ----a-w- c:\windows\system32\nvoglnt.dll
2011-05-25 07:25 . 2011-04-09 12:00 5332992 ----a-w- c:\windows\system32\nvcuda.dll
2011-05-25 07:25 . 2011-04-09 12:00 2808936 ----a-w- c:\windows\system32\nvcuvid.dll
2011-05-25 07:25 . 2011-04-09 12:00 2082408 ----a-w- c:\windows\system32\nvcuvenc.dll
2011-05-25 07:25 . 2011-04-09 12:00 13004800 ----a-w- c:\windows\system32\nvcompiler.dll
2011-05-25 07:25 . 2011-04-09 12:00 4198272 ----a-w- c:\windows\system32\nv4_disp.dll
2011-05-25 07:25 . 2011-04-09 12:00 2328576 ----a-w- c:\windows\system32\nvapi.dll
2011-05-25 07:25 . 2011-04-09 12:00 12753664 ----a-w- c:\windows\system32\drivers\nv4_mini.sys
2011-05-02 15:32 . 2011-04-09 11:00 692736 ----a-w- c:\windows\system32\inetcomm.dll
2011-04-29 17:25 . 2004-08-18 12:00 151552 ----a-w- c:\windows\system32\schannel.dll
2011-04-29 16:19 . 2004-08-18 12:00 456320 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2011-06-16 04:30 . 2011-04-29 17:22 142296 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="d:\program files\DAEMON Tools Lite\DTLite.exe" [2011-01-20 1305408]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BluetoothAuthenticationAgent"="bthprops.cpl" [2008-04-14 110592]
"RTHDCPL"="RTHDCPL.EXE" [2011-07-05 20053608]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2011-05-25 13895272]
"NvMediaCenter"="NvMCTray.dll" [2011-05-25 111208]
"nwiz"="c:\program files\NVIDIA Corporation\nView\nwiz.exe" [2011-05-04 1632360]
"QuickTime Task"="d:\program files\QuickTime\qttask.exe" [2008-09-06 413696]
"tray_ico0"="c:\windows\update.tray-12-0\svchost.exe" [2011-07-25 1185280]
"IObit Malware Fighter"="d:\program files\IObit\IObit Malware Fighter\IMF.exe" [2011-07-20 4393816]
"5654722.exe"="c:\docume~1\Petra\LOCALS~1\Temp\5654722.exe" [2011-07-25 256000]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableSecureUIAPaths"= 0 (0x0)
"EnableLUA"= 0 (0x0)
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"= "c:\program files\Windows Desktop Search\MSNLNamespaceMgr.dll" [2009-05-24 304128]
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice]
@="Service"
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusDisableNotify"=dword:00000001
"FirewallDisableNotify"=dword:00000001
"UpdatesDisableNotify"=dword:00000001
"FirewallOverride"=dword:00000001
"DisableThumbnailCache"=dword:00000001
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Ubisoft\\Ubisoft Game Launcher\\UbisoftGameLauncher.exe"=
"c:\\Program Files\\BearShare Applications\\BearShare\\BearShare.exe"=
"d:\\Program Files\\Electronic Arts\\Need for Speed(TM) Hot Pursuit\\Launcher.exe"=
"c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"=
"d:\\Program Files\\Ventrilo\\Ventrilo.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\NVIDIA Corporation\\NVIDIA Updatus\\daemonu.exe"=
"d:\\Program Files\\Codemasters\\DiRT 3\\dirt3_game.exe"=
"c:\\Program Files\\TeamViewer\\Version6\\TeamViewer.exe"=
"c:\\Program Files\\TeamViewer\\Version6\\TeamViewer_Service.exe"=
"d:\\Downloads\\Flash-Player.exe"=
"c:\\WINDOWS\\update.tray-12-0\\svchost.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"5985:TCP"= 5985:TCP:*:Disabled:Vzdálená správa systému Windows
.
R0 AVGIDSEH;AVGIDSEH;c:\windows\system32\drivers\AVGIDSEH.sys [22.2.2011 8:13 22992]
R0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\drivers\avgrkx86.sys [16.3.2011 16:03 32592]
R0 BtHidBus;Bluetooth HID Bus Service;c:\windows\system32\drivers\BtHidBus.sys [17.6.2009 14:01 20744]
R0 SmartDefragDriver;SmartDefragDriver;c:\windows\system32\drivers\SmartDefragDriver.sys [2.6.2011 18:04 13496]
R1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\drivers\avgldx86.sys [7.1.2011 6:41 248656]
R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [5.4.2011 0:59 297168]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\drivers\dtsoftbus01.sys [9.4.2011 20:06 218688]
R2 IMFservice;IMF Service;d:\program files\IObit\IObit Malware Fighter\IMFsrv.exe [2.6.2011 18:04 820568]
R2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [21.7.2011 18:10 2214504]
R2 PfFilter;PfFilter;d:\program files\IObit\Protected Folder\pffilter.sys [2.6.2011 18:03 140848]
R3 Avgfwdx;Avgfwdx;c:\windows\system32\drivers\avgfwdx.sys [12.7.2010 4:33 30432]
R3 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\drivers\AVGIDSDriver.sys [14.4.2011 21:28 134480]
R3 AVGIDSFilter;AVGIDSFilter;c:\windows\system32\drivers\AVGIDSFilter.sys [10.2.2011 7:53 24144]
R3 AVGIDSShim;AVGIDSShim;c:\windows\system32\drivers\AVGIDSShim.sys [10.2.2011 7:53 27216]
R3 RegFilter;RegFilter;d:\program files\IObit\IObit Malware Fighter\Drivers\wxp_x86\RegFilter.sys [25.7.2011 15:25 30368]
R3 UrlFilter;UrlFilter;d:\program files\IObit\IObit Malware Fighter\Drivers\wxp_x86\UrlFilter.sys [25.7.2011 15:25 16080]
S2 713xTVCard;SAA7135 TV Card;c:\windows\system32\drivers\SAA713x.sys [15.3.2005 12:00 277504]
S2 AdvancedSystemCareService;Advanced SystemCare Service;e:\program files\Advanced SystemCare 4\ASCService.exe --> e:\program files\Advanced SystemCare 4\ASCService.exe [?]
S2 avgfws;AVG Firewall;"d:\program files\AVG\AVG10\avgfws.exe" --> d:\program files\AVG\AVG10\avgfws.exe [?]
S2 AVGIDSAgent;AVGIDSAgent;"d:\program files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe" --> d:\program files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe [?]
S2 avgwd;AVG WatchDog;"d:\program files\AVG\AVG10\avgwdsvc.exe" --> d:\program files\AVG\AVG10\avgwdsvc.exe [?]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [18.3.2010 13:16 130384]
S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [9.4.2011 13:51 1691480]
S3 AVG Security Toolbar Service;AVG Security Toolbar Service;d:\program files\AVG\AVG10\Toolbar\ToolbarBroker.exe --> d:\program files\AVG\AVG10\Toolbar\ToolbarBroker.exe [?]
S3 Avgfwfd;AVG network filter service;c:\windows\system32\drivers\avgfwdx.sys [12.7.2010 4:33 30432]
S3 btnetBUs;Bluetooth PAN Bus Service;c:\windows\system32\drivers\btnetBus.sys [17.6.2009 14:02 29192]
S3 IvtBtBUs;IVT Bluetooth Bus Service;c:\windows\system32\drivers\IvtBtBus.sys [17.6.2009 14:01 25480]
S3 Sony Ericsson PCCompanion;Sony Ericsson PCCompanion;c:\program files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe [26.4.2011 18:37 152064]
S3 WinRM;Windows Remote Management (WS-Management);c:\windows\system32\svchost.exe -k WINRM [18.8.2004 14:00 14336]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [18.3.2010 13:16 753504]
S4 FileMonitor;FileMonitor;d:\program files\IObit\IObit Malware Fighter\Drivers\wxp_x86\FileMonitor.sys [25.7.2011 15:25 239600]
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - ATI_HOTKEY_POLLER
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
WINRM REG_MULTI_SZ WINRM
.
Obsah adresáře 'Naplánované úlohy'
.
2011-06-12 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 10:34]
.
2011-07-25 c:\windows\Tasks\ASC4_PerformanceMonitor.job
- d:\program files\Advanced SystemCare 4\PMonitor.exe [2011-04-09 12:46]
.
2011-07-25 c:\windows\Tasks\SmartDefrag_Startup.job
- d:\program files\IObit\Smart Defrag 2\SmartDefrag.exe [2011-06-02 15:31]
.
2011-07-25 c:\windows\Tasks\User_Feed_Synchronization-{D3A99DA9-0D0B-4BCF-B2B2-4A8055A0C1EB}.job
- c:\windows\system32\msfeedssync.exe [2007-08-13 02:31]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
TCP: Interfaces\{29CBF4D9-3275-4E5A-AEF6-996C387710D2}: NameServer = 62.84.128.6,62.84.132.6
FF - ProfilePath - c:\documents and settings\Petra\Data aplikací\Mozilla\Firefox\Profiles\z57hpwvq.default\
FF - prefs.js: browser.search.selectedEngine - AVG Secure Search
FF - prefs.js: browser.startup.homepage - hxxp://www.ogame.cz
FF - prefs.js: keyword.URL - hxxp://search.avg.com/route/?d=4e283740&v=7.005.030.004&i=26&tp=ab&iy=&ychte=us&lng=cs&q=
FF - user.js: browser.cache.memory.capacity - 16000
FF - user.js: browser.display.show_image_placeholders - true
FF - user.js: browser.chrome.favicons - false
FF - user.js: browser.turbo.enabled - true
FF - user.js: browser.urlbar.autocomplete.enabled - true
FF - user.js: browser.urlbar.autofill - true
FF - user.js: content.max.tokenizing.time - 2250000
FF - user.js: content.notify.backoffcount - 5
FF - user.js: content.notify.interval - 750000
FF - user.js: content.notify.ontimer - true
FF - user.js: content.notify.ontimer - true
FF - user.js: content.switch.threshold - 750000
FF - user.js: dom.disable_window_status_change - true
FF - user.js: network.http.max-connections - 32
FF - user.js: network.http.max-connections-per-server - 8
FF - user.js: network.http.max-persistent-connections-per-proxy - 8
FF - user.js: network.http.max-persistent-connections-per-server - 4
FF - user.js: network.http.pipelining - true
FF - user.js: network.http.pipelining.maxrequests - 8
FF - user.js: network.http.proxy.pipelining - true
FF - user.js: network.http.request.max-start-delay - 0
FF - user.js: nglayout.initialpaint.delay - 750
FF - user.js: plugin.expose_full_path - true
FF - user.js: ui.submenuDelay - 0
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
URLSearchHooks-{A3BC75A2-1F87-4686-AA43-5347D756017C} - (no file)
BHO-{A3BC75A2-1F87-4686-AA43-5347D756017C} - (no file)
Toolbar-10 - (no file)
Toolbar-{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
WebBrowser-{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
HKLM-Run-sysdriver32.exe - c:\windows\sysdriver32.exe
HKLM-Run-sysdriver32_.exe - c:\windows\sysdriver32_.exe
SafeBoot-wxpdrivers
AddRemove-DAEMON Tools Lite - e:\program files\DAEMON Tools Lite\uninst.exe
AddRemove-Searchqu 101 MediaBar - c:\program files\Windows Searchqu Toolbar\uninstall.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-07-25 20:13
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'winlogon.exe'(1356)
c:\windows\system32\Ati2evxx.dll
c:\windows\system32\atiadlxx.dll
.
- - - - - - - > 'explorer.exe'(3700)
c:\windows\system32\webcheck.dll
c:\windows\system32\msls31.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\Ati2evxx.exe
c:\windows\system32\Ati2evxx.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
c:\progra~1\Bandoo\Bandoo.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
c:\windows\system32\rundll32.exe
c:\windows\RTHDCPL.EXE
c:\windows\TEMP\554248.exe
c:\windows\update.2\svchost.exe
c:\windows\l1rezerv.exe
c:\windows\update.2\svchost.exe
c:\windows\TEMP\6367502.exe
.
**************************************************************************
.
Celkový čas: 2011-07-25 20:15:30 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-07-25 18:15
.
Před spuštěním: Volných bajtů: 30 492 258 304
Po spuštění: Volných bajtů: 30 393 700 352
.
WindowsXP-KB310994-SP2-Home-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Home Edition" /noexecute=AlwaysOff /fastdetect /usepmtimer
.
- - End Of File - - D8CEA269559206B1FB26B8C291A6668C

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Další FB vir

#10 Příspěvek od vyosek »

:arrow: Pokud nemate, tak presunte Combofix na plochu
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    KillAll::
    
    File::
    c:\windows\unrar.exe
    c:\windows\system32\tmp5F.tmp
    c:\windows\system32\tmp5E.tmp
    c:\windows\Tasks\AppleSoftwareUpdate.job
    c:\windows\Tasks\SmartDefrag_Startup.job
    c:\windows\Tasks\User_Feed_Synchronization-{D3A99DA9-0D0B-4BCF-B2B2-4A8055A0C1EB}.job
    c:\windows\Tasks\ASC4_PerformanceMonitor.job
    
    Firefox::
    FF - ProfilePath - c:\documents and settings\Petra\Data aplikací\Mozilla\Firefox\Profiles\z57hpwvq.default\
    FF - prefs.js: browser.search.selectedEngine - AVG Secure Search
    FF - prefs.js: keyword.URL - hxxp://search.avg.com/route/?d=4e283740 ... &lng=cs&q=
    
    Folder::
    c:\windows\rpcminer
    c:\windows\phoenix
    c:\windows\ufa
    c:\windows\av_ico
    c:\windows\update.tray-12-0
    c:\windows\update.tray-12-0-lnk
    d:\program files\IObit
    c:\docume~1\Petra\LOCALS~1\Temp
    d:\program files\Advanced SystemCare 4
    
    Driver::
    AdvancedSystemCareService
    
    Collect::
    d:\Downloads\\Flash-Player.exe
    
    Registry::
    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "DAEMON Tools Lite"=-
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "QuickTime Task"=-
    "tray_ico0"=-
    "IObit Malware Fighter"=-
    "5654722.exe"=-
    [HKEY_LOCAL_MACHINE\software\microsoft\security center]
    "AntiVirusDisableNotify"=dword:00000000
    "FirewallDisableNotify"=dword:00000000
    "UpdatesDisableNotify"=dword:00000000
    "FirewallOverride"=dword:00000000
    "DisableThumbnailCache"=dword:00000000
    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
    "d:\\Downloads\\Flash-Player.exe"=-
    "c:\\WINDOWS\\update.tray-12-0\\svchost.exe"=-
    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
    "5985:TCP"=-
    
    Reboot::
  • Ulozte vytvoreny TXT jako CFScript.txt
  • Pretahnete vytvoreny CFScript.txt nad Combofix a pustte (viz obrazek nize)
    Obrázek
  • Po aplikaci skriptu (a pripadnem restartu) na Vas vypadne log, jeho obsah sem vlozte
:arrow: Muze se stat, ze po aplikaci skriptu nenabehnou windows, v tomto pripade restartuje PC a mackejte F8 a zvolte Posledni znamou konfiguraci
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Jinoch
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 30 lis 2006 21:45

Re: Další FB vir

#11 Příspěvek od Jinoch »

Win naběhly v poho. Tady je log, který se objevil po restartu, zase musím rozdělit na dvě části kvůli počtu znaků:


ComboFix 11-07-25.02 - Petra 25.07.2011 20:58:09.2.2 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1250.420.1029.18.2047.1267 [GMT 2:00]
Spuštěný z: c:\documents and settings\Petra\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\Petra\Plocha\CFScript.txt
AV: AVG Internet Security 2011 *Enabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF}
FW: AVG Firewall *Enabled* {8decf618-9569-4340-b34a-d78d28969b66}
.
FILE ::
"c:\windows\system32\tmp5E.tmp"
"c:\windows\system32\tmp5F.tmp"
"c:\windows\Tasks\AppleSoftwareUpdate.job"
"c:\windows\Tasks\ASC4_PerformanceMonitor.job"
"c:\windows\Tasks\SmartDefrag_Startup.job"
"c:\windows\Tasks\User_Feed_Synchronization-{D3A99DA9-0D0B-4BCF-B2B2-4A8055A0C1EB}.job"
"c:\windows\unrar.exe"
.
file zipped: d:\downloads\\Flash-Player.exe
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\docume~1\Petra\LOCALS~1\Temp
c:\docume~1\Petra\LOCALS~1\Temp\408370e0-d168-477f-bb1c-5ffd493b15f1.dmp
c:\docume~1\Petra\LOCALS~1\Temp\4721910.exe
c:\docume~1\Petra\LOCALS~1\Temp\Arabic.bin
c:\docume~1\Petra\LOCALS~1\Temp\Av-test.txt
c:\docume~1\Petra\LOCALS~1\Temp\Click.wav
c:\docume~1\Petra\LOCALS~1\Temp\Croatian.bin
c:\docume~1\Petra\LOCALS~1\Temp\Czech.bin
c:\docume~1\Petra\LOCALS~1\Temp\Danish.bin
c:\docume~1\Petra\LOCALS~1\Temp\Dutch.bin
c:\docume~1\Petra\LOCALS~1\Temp\English.bin
c:\docume~1\Petra\LOCALS~1\Temp\etilqs_epV7vxTtRMkItnezFkOR
c:\docume~1\Petra\LOCALS~1\Temp\Finnish.bin
c:\docume~1\Petra\LOCALS~1\Temp\French.bin
c:\docume~1\Petra\LOCALS~1\Temp\German.bin
c:\docume~1\Petra\LOCALS~1\Temp\Greek.bin
c:\docume~1\Petra\LOCALS~1\Temp\Hebrew.bin
c:\docume~1\Petra\LOCALS~1\Temp\Hungarian.bin
c:\docume~1\Petra\LOCALS~1\Temp\Italian.bin
c:\docume~1\Petra\LOCALS~1\Temp\Japanese.bin
c:\docume~1\Petra\LOCALS~1\Temp\Korean.bin
c:\docume~1\Petra\LOCALS~1\Temp\Lithuanian.bin
c:\docume~1\Petra\LOCALS~1\Temp\Norwegian.bin
c:\docume~1\Petra\LOCALS~1\Temp\Polish.bin
c:\docume~1\Petra\LOCALS~1\Temp\Portuguese(Brazil).bin
c:\docume~1\Petra\LOCALS~1\Temp\Portuguese.bin
c:\docume~1\Petra\LOCALS~1\Temp\Russian.bin
c:\docume~1\Petra\LOCALS~1\Temp\SimChin.bin
c:\docume~1\Petra\LOCALS~1\Temp\Slovak.bin
c:\docume~1\Petra\LOCALS~1\Temp\Slovenian.bin
c:\docume~1\Petra\LOCALS~1\Temp\Spanish.bin
c:\docume~1\Petra\LOCALS~1\Temp\SWEDISH.bin
c:\docume~1\Petra\LOCALS~1\Temp\Thai.bin
c:\docume~1\Petra\LOCALS~1\Temp\TradChin.bin
c:\docume~1\Petra\LOCALS~1\Temp\Turkish.bin
c:\windows\av_ico
c:\windows\ddh_iplist.txt
c:\windows\front_ip_list.txt
c:\windows\iecheck_iplist.txt
c:\windows\info1
c:\windows\iplist.txt
c:\windows\l1rezerv.exe
c:\windows\loader2.exe_ok
c:\windows\phoenix
c:\windows\phoenix\kernels\phatk\__init__.py
c:\windows\phoenix\kernels\phatk\__init__.pyc
c:\windows\phoenix\kernels\phatk\BFIPatcher.py
c:\windows\phoenix\kernels\phatk\BFIPatcher.pyc
c:\windows\phoenix\kernels\phatk\kernel.cl
c:\windows\phoenix\kernels\poclbm\__init__.py
c:\windows\phoenix\kernels\poclbm\__init__.pyc
c:\windows\phoenix\kernels\poclbm\BFIPatcher.py
c:\windows\phoenix\kernels\poclbm\BFIPatcher.pyc
c:\windows\phoenix\kernels\poclbm\kernel.cl
c:\windows\phoenix\phoenix.exe
c:\windows\proc_list1.log
c:\windows\rpcminer
c:\windows\rpcminer\bitcoinminercuda_10.cubin
c:\windows\rpcminer\bitcoinminercuda_11.cubin
c:\windows\rpcminer\bitcoinminercuda_20.cubin
c:\windows\rpcminer\bitcoinmineropencl.cl
c:\windows\rpcminer\cudart32_32_16.dll
c:\windows\rpcminer\curllib.dll
c:\windows\rpcminer\libeay32.dll
c:\windows\rpcminer\libsasl.dll
c:\windows\rpcminer\openldap.dll
c:\windows\rpcminer\rpcminer-4way.exe
c:\windows\rpcminer\rpcminer-cpu.exe
c:\windows\rpcminer\rpcminer-cuda.exe
c:\windows\rpcminer\rpcminer-opencl.exe
c:\windows\rpcminer\ssleay32.dll
c:\windows\sysdriver32.exe
c:\windows\sysdriver32_.exe
c:\windows\system32\drivers\etc\HSTS~1
c:\windows\system32\tmp5E.tmp
c:\windows\system32\tmp5F.tmp
c:\windows\systemup.exe
c:\windows\Tasks\AppleSoftwareUpdate.job
c:\windows\Tasks\ASC4_PerformanceMonitor.job
c:\windows\Tasks\SmartDefrag_Startup.job
c:\windows\Tasks\User_Feed_Synchronization-{D3A99DA9-0D0B-4BCF-B2B2-4A8055A0C1EB}.job
c:\windows\TEMP\7466730.exe
c:\windows\ufa
c:\windows\ufa\ufa.exe
c:\windows\unrar.exe
c:\windows\update.2
c:\windows\update.2\svchost.exe
c:\windows\update.5.0
c:\windows\update.tray-12-0-lnk
c:\windows\update.tray-12-0-lnk\svchost.exe
c:\windows\update.tray-12-0
c:\windows\update.tray-12-0\svchost.exe
c:\windows\winsetupapi.log
d:\downloads\Flash-Player.exe
d:\program files\Advanced SystemCare 4
d:\program files\Advanced SystemCare 4\About.dll
d:\program files\Advanced SystemCare 4\ASC.exe
d:\program files\Advanced SystemCare 4\asc4-patch.exe
d:\program files\Advanced SystemCare 4\ASCInit.exe
d:\program files\Advanced SystemCare 4\ASCService.exe
d:\program files\Advanced SystemCare 4\ASCTray.exe
d:\program files\Advanced SystemCare 4\ASCv4ComputerMenu.dll
d:\program files\Advanced SystemCare 4\ASCv4ComputerMenu_64.dll
d:\program files\Advanced SystemCare 4\ASCv4ExtMenu.dll
d:\program files\Advanced SystemCare 4\ASCv4ExtMenu_64.dll
d:\program files\Advanced SystemCare 4\AutoCare.exe
d:\program files\Advanced SystemCare 4\AutoSweep.exe
d:\program files\Advanced SystemCare 4\AutoUpdate.exe
d:\program files\Advanced SystemCare 4\Config.ini
d:\program files\Advanced SystemCare 4\cxLibraryD12.bpl
d:\program files\Advanced SystemCare 4\datastate.dll
d:\program files\Advanced SystemCare 4\Def.dbd
d:\program files\Advanced SystemCare 4\DiskMap.dll
d:\program files\Advanced SystemCare 4\DiskScan.exe
d:\program files\Advanced SystemCare 4\DriverData.db
d:\program files\Advanced SystemCare 4\dxBarD12.bpl
d:\program files\Advanced SystemCare 4\dxComnD12.bpl
d:\program files\Advanced SystemCare 4\dxCoreD12.bpl
d:\program files\Advanced SystemCare 4\dxDockingD12.bpl
d:\program files\Advanced SystemCare 4\dxGDIPlusD12.bpl
d:\program files\Advanced SystemCare 4\dxSkinOffice2007BlueD12.bpl
d:\program files\Advanced SystemCare 4\dxSkinsCoreD12.bpl
d:\program files\Advanced SystemCare 4\dxThemeD12.bpl
d:\program files\Advanced SystemCare 4\EULA.rtf
d:\program files\Advanced SystemCare 4\fav.ico
d:\program files\Advanced SystemCare 4\FfSweep.dll
d:\program files\Advanced SystemCare 4\FileSweep.dll
d:\program files\Advanced SystemCare 4\Freeware\ASC_FreeSoftwareDownloader.exe
d:\program files\Advanced SystemCare 4\Freeware\FreeSoftwareDownload\DefragSetup.exe
d:\program files\Advanced SystemCare 4\Freeware\FreeSoftwareDownload\IObitMalwareFighterSetup.exe
d:\program files\Advanced SystemCare 4\Freeware\FreeSoftwareDownload\ProtectedFolderSetup.exe
d:\program files\Advanced SystemCare 4\Freeware\Check.dll
d:\program files\Advanced SystemCare 4\help.html
d:\program files\Advanced SystemCare 4\ChangeType.exe
d:\program files\Advanced SystemCare 4\checkinfo.txt
d:\program files\Advanced SystemCare 4\images\dcScreen.png
d:\program files\Advanced SystemCare 4\images\dcScreen2.png
d:\program files\Advanced SystemCare 4\images\icon-dc.png
d:\program files\Advanced SystemCare 4\images\icon-qc.png
d:\program files\Advanced SystemCare 4\images\icon-tb.png
d:\program files\Advanced SystemCare 4\images\icon-tbox.png
d:\program files\Advanced SystemCare 4\images\main.png
d:\program files\Advanced SystemCare 4\images\mainPro.png
d:\program files\Advanced SystemCare 4\images\toolboxscreen.png
d:\program files\Advanced SystemCare 4\images\turboboost.png
d:\program files\Advanced SystemCare 4\Language\Arabic.lng
d:\program files\Advanced SystemCare 4\Language\Belarusian.lng
d:\program files\Advanced SystemCare 4\Language\Bulgarian.lng
d:\program files\Advanced SystemCare 4\Language\Czech.lng
d:\program files\Advanced SystemCare 4\Language\Danish.lng
d:\program files\Advanced SystemCare 4\Language\Dutch.lng
d:\program files\Advanced SystemCare 4\Language\English.lng
d:\program files\Advanced SystemCare 4\Language\French.lng
d:\program files\Advanced SystemCare 4\Language\German.lng
d:\program files\Advanced SystemCare 4\Language\Greek.lng
d:\program files\Advanced SystemCare 4\Language\Hungarian.lng
d:\program files\Advanced SystemCare 4\Language\ChineseSimp.lng
d:\program files\Advanced SystemCare 4\Language\ChineseTrad.lng
d:\program files\Advanced SystemCare 4\Language\Italiano.lng
d:\program files\Advanced SystemCare 4\Language\Japanese.lng
d:\program files\Advanced SystemCare 4\Language\Korean.lng
d:\program files\Advanced SystemCare 4\Language\Polish.lng
d:\program files\Advanced SystemCare 4\Language\PortugueseBR.lng
d:\program files\Advanced SystemCare 4\Language\Russian.lng
d:\program files\Advanced SystemCare 4\Language\Serbian.lng
d:\program files\Advanced SystemCare 4\Language\Spanish.lng
d:\program files\Advanced SystemCare 4\Language\Swedish.lng
d:\program files\Advanced SystemCare 4\Language\Turkish.lng
d:\program files\Advanced SystemCare 4\LatestNews\imagenews.png
d:\program files\Advanced SystemCare 4\LatestNews\LatestNews.ini
d:\program files\Advanced SystemCare 4\License.dat
d:\program files\Advanced SystemCare 4\madbasic_.bpl
d:\program files\Advanced SystemCare 4\maddisAsm_.bpl
d:\program files\Advanced SystemCare 4\madexcept_.bpl
d:\program files\Advanced SystemCare 4\NtfsData.dll
d:\program files\Advanced SystemCare 4\OFCommon.dll
d:\program files\Advanced SystemCare 4\OFCommon3.dll
d:\program files\Advanced SystemCare 4\PMonitor.exe
d:\program files\Advanced SystemCare 4\Register.exe
d:\program files\Advanced SystemCare 4\RescueCenter.exe
d:\program files\Advanced SystemCare 4\rtl120.bpl
d:\program files\Advanced SystemCare 4\Scan.dll
d:\program files\Advanced SystemCare 4\ScanCache.db
d:\program files\Advanced SystemCare 4\SecurityHoles_Download\ie8-windowsxp-kb981332-x86-csy.exe
d:\program files\Advanced SystemCare 4\SecurityHoles_Download\ndp20sp2-kb976569-x86.exe
d:\program files\Advanced SystemCare 4\SecurityHoles_Download\ndp30sp2-kb976570-x86.exe
d:\program files\Advanced SystemCare 4\services.ini
d:\program files\Advanced SystemCare 4\sqlite3.dll
d:\program files\Advanced SystemCare 4\StartMenu.exe
d:\program files\Advanced SystemCare 4\Suc10_RegistryCleaner.exe
d:\program files\Advanced SystemCare 4\Suc11_PrivacySweeper.exe
d:\program files\Advanced SystemCare 4\Suc12_Uninstal.exe
d:\program files\Advanced SystemCare 4\Suc13_DiskCleaner.exe
d:\program files\Advanced SystemCare 4\Suc14_FileShredder.exe
d:\program files\Advanced SystemCare 4\Sun10_ClonedFilesScanner.exe
d:\program files\Advanced SystemCare 4\Sun11_DiskExplorer.exe
d:\program files\Advanced SystemCare 4\Sun12_SystemInformation.exe
d:\program files\Advanced SystemCare 4\Sun13_EmptyFoldersScanner.exe
d:\program files\Advanced SystemCare 4\Sun14_SystemControl.exe
d:\program files\Advanced SystemCare 4\Suo10_SmartRAM.exe
d:\program files\Advanced SystemCare 4\Suo11_InternetBooster.exe
d:\program files\Advanced SystemCare 4\Suo12_StartupManager.exe
d:\program files\Advanced SystemCare 4\Suo13_RegistryDefrag.exe
d:\program files\Advanced SystemCare 4\Suo14_SmartDefrag.exe
d:\program files\Advanced SystemCare 4\Suo15_GameBooster.exe
d:\program files\Advanced SystemCare 4\Sur10_Undelete.exe
d:\program files\Advanced SystemCare 4\Sur11_ShortcutFixer.exe
d:\program files\Advanced SystemCare 4\Sur12_DiskDoctor.exe
d:\program files\Advanced SystemCare 4\Sur13_WinFix.exe
d:\program files\Advanced SystemCare 4\Sur14_IEHelper.exe
d:\program files\Advanced SystemCare 4\Sus10_SecurityHolesScanner.exe
d:\program files\Advanced SystemCare 4\Sus11_ProcessManager.exe
d:\program files\Advanced SystemCare 4\Sus12_DriverManager.exe
d:\program files\Advanced SystemCare 4\Sus13_IMF.exe
d:\program files\Advanced SystemCare 4\taskMgr.dll
d:\program files\Advanced SystemCare 4\TaskSchedule.exe
d:\program files\Advanced SystemCare 4\tb.dat
d:\program files\Advanced SystemCare 4\TBconfig.ini
d:\program files\Advanced SystemCare 4\TbFfSweep.dll
d:\program files\Advanced SystemCare 4\TbFileSweep.dll
d:\program files\Advanced SystemCare 4\ToolBox.exe
d:\program files\Advanced SystemCare 4\Toolbox_Language\Arabic.lng
d:\program files\Advanced SystemCare 4\Toolbox_Language\Belarus.lng
d:\program files\Advanced SystemCare 4\Toolbox_Language\Belarusian.lng
d:\program files\Advanced SystemCare 4\Toolbox_Language\Bulgarian.lng
d:\program files\Advanced SystemCare 4\Toolbox_Language\Czech.lng
d:\program files\Advanced SystemCare 4\Toolbox_Language\English.lng
d:\program files\Advanced SystemCare 4\Toolbox_Language\French.lng
d:\program files\Advanced SystemCare 4\Toolbox_Language\German.lng
d:\program files\Advanced SystemCare 4\Toolbox_Language\Greek.lng
d:\program files\Advanced SystemCare 4\Toolbox_Language\Hungarian.lng
d:\program files\Advanced SystemCare 4\Toolbox_Language\ChineseSimp.lng
d:\program files\Advanced SystemCare 4\Toolbox_Language\ChineseTrad.lng
d:\program files\Advanced SystemCare 4\Toolbox_Language\Italian.lng
d:\program files\Advanced SystemCare 4\Toolbox_Language\Italiano.lng
d:\program files\Advanced SystemCare 4\Toolbox_Language\Japanese.lng
d:\program files\Advanced SystemCare 4\Toolbox_Language\Korean.lng
d:\program files\Advanced SystemCare 4\Toolbox_Language\Polish.lng
d:\program files\Advanced SystemCare 4\Toolbox_Language\Portuguese(Brazil).lng
d:\program files\Advanced SystemCare 4\Toolbox_Language\Russian.lng
d:\program files\Advanced SystemCare 4\Toolbox_Language\Serbian.LNG
d:\program files\Advanced SystemCare 4\Toolbox_Language\Spanish.lng
d:\program files\Advanced SystemCare 4\Toolbox_Language\Swedish.lng
d:\program files\Advanced SystemCare 4\Toolbox_Language\Turkish.lng
d:\program files\Advanced SystemCare 4\Toolbox_UI\img\btn-bg.png
d:\program files\Advanced SystemCare 4\Toolbox_UI\img\menu-bg.png
d:\program files\Advanced SystemCare 4\Toolbox_UI\Index.html
d:\program files\Advanced SystemCare 4\Toolbox_UI\js\jquery-1.4.2.min.js
d:\program files\Advanced SystemCare 4\Toolbox_UI\Recently.html
d:\program files\Advanced SystemCare 4\TurboBoost.exe
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\Btn_Back_Disable.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\Btn_Back_Down.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\Btn_Back_Move.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\Btn_Back_Normal.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\Btn_BackBG.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\Btn_Down.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\Btn_Move.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\Btn_Normal.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\BtnStop_Down.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\BtnStop_Move.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\BtnStop_Normal.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\btnUpgradeDown.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\btnUpgradeNormal.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\btnUpgradeOver.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\CareBG.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\CareWorkBG.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\Close_Move.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\Close_Normal.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\CheckBox_Checked.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\CheckBox_Normal.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\Img_Error.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\Img_NoProblem.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\Layout.ini
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\Main_Shade.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\Min_Move.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\Min_Normal.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\More_Move.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\More_Normal.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\Preview.jpg
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\ProgressBarBG.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\ProgressBarInnerBG.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\ProgressBarInnerLeft.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\ProgressBarInnerMid.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\ProgressBarInnerRight.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\Rescue_Move.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\Rescue_Normal.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\ScannerBG.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\ScanningBG.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\Skin_Move.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\Skin_Normal.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\TopBar.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\TrackBar.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\TrackBG.png
d:\program files\Advanced SystemCare 4\UI\Asia\appimages\UpgraudD.png
d:\program files\Advanced SystemCare 4\UI\Asia\css\css.css
d:\program files\Advanced SystemCare 4\UI\Asia\images\clear.gif
d:\program files\Advanced SystemCare 4\UI\Asia\images\dailycare.png
d:\program files\Advanced SystemCare 4\UI\Asia\images\deepcare.png
d:\program files\Advanced SystemCare 4\UI\Asia\images\halo.png
d:\program files\Advanced SystemCare 4\UI\Asia\images\hints.png
d:\program files\Advanced SystemCare 4\UI\Asia\images\MainBG.png
d:\program files\Advanced SystemCare 4\UI\Asia\images\quickcare.png
d:\program files\Advanced SystemCare 4\UI\Asia\images\shadow.png
d:\program files\Advanced SystemCare 4\UI\Asia\images\Thumbs.db
d:\program files\Advanced SystemCare 4\UI\Asia\images\tip215.png
d:\program files\Advanced SystemCare 4\UI\Asia\images\toolBox.png
d:\program files\Advanced SystemCare 4\UI\Asia\images\toolboxs.png
d:\program files\Advanced SystemCare 4\UI\Asia\images\transparent.gif
d:\program files\Advanced SystemCare 4\UI\Asia\images\turboboostoff.png
d:\program files\Advanced SystemCare 4\UI\Asia\images\turbobooston.png
d:\program files\Advanced SystemCare 4\UI\Asia\js\action.js
d:\program files\Advanced SystemCare 4\UI\Asia\js\action1.js
d:\program files\Advanced SystemCare 4\UI\Asia\js\jquery-1.4.2.js
d:\program files\Advanced SystemCare 4\UI\Asia\js\jquery.easing.1.3.js
d:\program files\Advanced SystemCare 4\UI\Asia\main.html
d:\program files\Advanced SystemCare 4\UI\Black\appimages\Btn_Back_Disable.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\Btn_Back_Down.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\Btn_Back_Move.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\Btn_Back_Normal.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\Btn_BackBG.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\Btn_Down.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\Btn_Move.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\Btn_Normal.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\BtnStop_Down.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\BtnStop_Move.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\BtnStop_Normal.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\btnUpgradeDown.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\btnUpgradeNormal.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\btnUpgradeOver.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\CareBG.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\CareWorkBG.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\Close_Move.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\Close_Normal.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\halo.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\CheckBox_Checked.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\CheckBox_Normal.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\Img_Error.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\Img_NoProblem.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\Layout.ini
d:\program files\Advanced SystemCare 4\UI\Black\appimages\Main_Shade.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\Min_Move.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\Min_Normal.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\More_Move.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\More_Normal.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\Preview.jpg
d:\program files\Advanced SystemCare 4\UI\Black\appimages\ProgressBarBG.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\ProgressBarInnerBG.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\ProgressBarInnerLeft.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\ProgressBarInnerMid.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\ProgressBarInnerRight.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\Rescue_Move.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\Rescue_Normal.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\ScannerBG.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\ScanningBG.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\Setting_Move.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\Setting_Normal.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\shadow.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\Skin_Move.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\Skin_Normal.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\tip215.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\TopBar.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\TrackBar.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\TrackBG.png
d:\program files\Advanced SystemCare 4\UI\Black\appimages\UpgraudD.png
d:\program files\Advanced SystemCare 4\UI\Black\css\css.css
d:\program files\Advanced SystemCare 4\UI\Black\images\clear.gif
d:\program files\Advanced SystemCare 4\UI\Black\images\dailycare.png
d:\program files\Advanced SystemCare 4\UI\Black\images\deepcare.png
d:\program files\Advanced SystemCare 4\UI\Black\images\halo.png
d:\program files\Advanced SystemCare 4\UI\Black\images\hints.png
d:\program files\Advanced SystemCare 4\UI\Black\images\MainBG.png
d:\program files\Advanced SystemCare 4\UI\Black\images\quickcare.png
d:\program files\Advanced SystemCare 4\UI\Black\images\shadow.png
d:\program files\Advanced SystemCare 4\UI\Black\images\Thumbs.db
d:\program files\Advanced SystemCare 4\UI\Black\images\tip215.png
d:\program files\Advanced SystemCare 4\UI\Black\images\toolBox.png
d:\program files\Advanced SystemCare 4\UI\Black\images\toolboxs.png
d:\program files\Advanced SystemCare 4\UI\Black\images\transparent.gif
d:\program files\Advanced SystemCare 4\UI\Black\images\turboboostoff.png
d:\program files\Advanced SystemCare 4\UI\Black\images\turbobooston.png
d:\program files\Advanced SystemCare 4\UI\Black\js\action.js
d:\program files\Advanced SystemCare 4\UI\Black\js\action1.js
d:\program files\Advanced SystemCare 4\UI\Black\js\jquery-1.4.2.js
d:\program files\Advanced SystemCare 4\UI\Black\js\jquery.easing.1.3.js
d:\program files\Advanced SystemCare 4\UI\Black\main.html
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\Btn_Back_Disable.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\Btn_Back_Down.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\Btn_Back_Move.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\Btn_Back_Normal.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\Btn_BackBG.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\Btn_Down.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\Btn_Move.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\Btn_Normal.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\BtnStop_Down.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\BtnStop_Move.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\BtnStop_Normal.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\CareBG.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\CareWorkBG.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\Close_Move.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\Close_Normal.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\CheckBox_Checked.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\CheckBox_Normal.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\Img_Error.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\Img_NoProblem.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\Layout.ini
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\Main_Shade.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\Min_Move.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\Min_Normal.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\More_Move.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\More_Normal.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\Preview.jpg
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\ProgressBarBG.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\ProgressBarInnerBG.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\ProgressBarInnerLeft.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\ProgressBarInnerMid.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\ProgressBarInnerRight.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\Rescue_Move.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\Rescue_Normal.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\ScannerBG.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\ScanningBG.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\Skin_Move.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\Skin_Normal.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\TopBar.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\TrackBar.png
d:\program files\Advanced SystemCare 4\UI\Blue\appimages\TrackBG.png
d:\program files\Advanced SystemCare 4\UI\Blue\css\css.css
d:\program files\Advanced SystemCare 4\UI\Blue\images\clear.gif
d:\program files\Advanced SystemCare 4\UI\Blue\images\deepcare.png
d:\program files\Advanced SystemCare 4\UI\Blue\images\MainBG.png
d:\program files\Advanced SystemCare 4\UI\Blue\images\quickcare.png
d:\program files\Advanced SystemCare 4\UI\Blue\images\tip215.png
d:\program files\Advanced SystemCare 4\UI\Blue\images\toolBox.png
d:\program files\Advanced SystemCare 4\UI\Blue\images\transparent.gif
d:\program files\Advanced SystemCare 4\UI\Blue\images\turboboostoff.png
d:\program files\Advanced SystemCare 4\UI\Blue\images\turbobooston.png
d:\program files\Advanced SystemCare 4\UI\Blue\js\action.js
d:\program files\Advanced SystemCare 4\UI\Blue\js\action1.js
d:\program files\Advanced SystemCare 4\UI\Blue\js\jquery-1.4.2.js
d:\program files\Advanced SystemCare 4\UI\Blue\js\jquery.easing.1.3.js
d:\program files\Advanced SystemCare 4\UI\Blue\main.html
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\Btn_Back_Disable.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\Btn_Back_Down.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\Btn_Back_Move.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\Btn_Back_Normal.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\Btn_BackBG.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\Btn_Down.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\Btn_Move.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\Btn_Normal.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\BtnStop_Down.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\BtnStop_Move.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\BtnStop_Normal.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\btnUpgradeDown.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\btnUpgradeNormal.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\btnUpgradeOver.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\CareBG.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\CareWorkBG.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\Close_Move.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\Close_Normal.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\CheckBox_Checked.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\CheckBox_Normal.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\Img_Error.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\Img_NoProblem.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\Layout.ini
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\Main_Shade.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\Min_Move.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\Min_Normal.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\More_Move.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\More_Normal.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\Preview.jpg
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\ProgressBarBG.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\ProgressBarInnerBG.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\ProgressBarInnerLeft.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\ProgressBarInnerMid.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\ProgressBarInnerRight.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\Rescue_Move.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\Rescue_Normal.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\ScannerBG.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\ScanningBG.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\Skin_Move.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\Skin_Normal.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\TopBar.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\TrackBar.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\TrackBG.png
d:\program files\Advanced SystemCare 4\UI\Cute\appimages\UpgraudD.png
d:\program files\Advanced SystemCare 4\UI\Cute\css\css.css
d:\program files\Advanced SystemCare 4\UI\Cute\images\clear.gif
d:\program files\Advanced SystemCare 4\UI\Cute\images\dailycare.png
d:\program files\Advanced SystemCare 4\UI\Cute\images\deepcare.png
d:\program files\Advanced SystemCare 4\UI\Cute\images\halo.png
d:\program files\Advanced SystemCare 4\UI\Cute\images\hints.png
d:\program files\Advanced SystemCare 4\UI\Cute\images\MainBG.png
d:\program files\Advanced SystemCare 4\UI\Cute\images\quickcare.png
d:\program files\Advanced SystemCare 4\UI\Cute\images\shadow.png
d:\program files\Advanced SystemCare 4\UI\Cute\images\Thumbs.db
d:\program files\Advanced SystemCare 4\UI\Cute\images\tip215.png
d:\program files\Advanced SystemCare 4\UI\Cute\images\toolBox.png
d:\program files\Advanced SystemCare 4\UI\Cute\images\toolboxs.png
d:\program files\Advanced SystemCare 4\UI\Cute\images\transparent.gif
d:\program files\Advanced SystemCare 4\UI\Cute\images\turboboostoff.png
d:\program files\Advanced SystemCare 4\UI\Cute\images\turbobooston.png
d:\program files\Advanced SystemCare 4\UI\Cute\js\action.js
d:\program files\Advanced SystemCare 4\UI\Cute\js\action1.js
d:\program files\Advanced SystemCare 4\UI\Cute\js\jquery-1.4.2.js
d:\program files\Advanced SystemCare 4\UI\Cute\js\jquery.easing.1.3.js
d:\program files\Advanced SystemCare 4\UI\Cute\main.html
d:\program files\Advanced SystemCare 4\UI\Default\appimages\Btn_Back_Disable.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\Btn_Back_Down.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\Btn_Back_Move.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\Btn_Back_Normal.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\Btn_BackBG.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\Btn_Down.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\Btn_Move.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\Btn_Normal.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\BtnStop_Down.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\BtnStop_Move.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\BtnStop_Normal.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\CareBG.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\CareWorkBG.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\Close_Move.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\Close_Normal.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\CheckBox_Checked.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\CheckBox_Normal.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\Img_Error.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\Img_NoProblem.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\Layout.ini
d:\program files\Advanced SystemCare 4\UI\Default\appimages\Main_Shade.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\Min_Move.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\Min_Normal.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\More_Move.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\More_Normal.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\Preview.jpg
d:\program files\Advanced SystemCare 4\UI\Default\appimages\ProgressBarBG.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\ProgressBarInnerBG.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\ProgressBarInnerLeft.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\ProgressBarInnerMid.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\ProgressBarInnerRight.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\Rescue_Move.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\Rescue_Normal.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\ScannerBG.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\ScanningBG.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\Skin_Move.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\Skin_Normal.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\TopBar.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\TrackBar.png
d:\program files\Advanced SystemCare 4\UI\Default\appimages\TrackBG.png
d:\program files\Advanced SystemCare 4\UI\Default\css\css.css
d:\program files\Advanced SystemCare 4\UI\Default\images\clear.gif
d:\program files\Advanced SystemCare 4\UI\Default\images\dailycare.png
d:\program files\Advanced SystemCare 4\UI\Default\images\deepcare.png
d:\program files\Advanced SystemCare 4\UI\Default\images\halo.png
d:\program files\Advanced SystemCare 4\UI\Default\images\hints.png
d:\program files\Advanced SystemCare 4\UI\Default\images\MainBG.png
d:\program files\Advanced SystemCare 4\UI\Default\images\quickcare.png
d:\program files\Advanced SystemCare 4\UI\Default\images\shadow.png
d:\program files\Advanced SystemCare 4\UI\Default\images\Thumbs.db
d:\program files\Advanced SystemCare 4\UI\Default\images\tip215.png
d:\program files\Advanced SystemCare 4\UI\Default\images\toolBox.png
d:\program files\Advanced SystemCare 4\UI\Default\images\toolboxs.png
d:\program files\Advanced SystemCare 4\UI\Default\images\transparent.gif
d:\program files\Advanced SystemCare 4\UI\Default\images\turboboostoff.png
d:\program files\Advanced SystemCare 4\UI\Default\images\turbobooston.png
d:\program files\Advanced SystemCare 4\UI\Default\js\action.js
d:\program files\Advanced SystemCare 4\UI\Default\js\action1.js
d:\program files\Advanced SystemCare 4\UI\Default\js\jquery-1.4.2.js
d:\program files\Advanced SystemCare 4\UI\Default\js\jquery.easing.1.3.js
d:\program files\Advanced SystemCare 4\UI\Default\main.html
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\Btn_Back_Disable.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\Btn_Back_Down.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\Btn_Back_Move.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\Btn_Back_Normal.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\Btn_BackBG.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\Btn_Down.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\Btn_Move.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\Btn_Normal.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\BtnStop_Down.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\BtnStop_Move.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\BtnStop_Normal.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\btnUpgradeDown.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\btnUpgradeNormal.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\btnUpgradeOver.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\CareBG.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\CareWorkBG.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\Close_Move.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\Close_Normal.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\halo.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\CheckBox_Checked.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\CheckBox_Normal.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\Img_Error.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\Img_NoProblem.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\Layout.ini
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\Main_Shade.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\Min_Move.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\Min_Normal.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\More_Move.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\More_Normal.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\Preview.jpg
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\ProgressBarBG.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\ProgressBarInnerBG.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\ProgressBarInnerLeft.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\ProgressBarInnerMid.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\ProgressBarInnerRight.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\Rescue_Move.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\Rescue_Normal.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\ScannerBG.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\ScanningBG.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\shadow.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\Skin_Move.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\Skin_Normal.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\tip215.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\TopBar.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\TrackBar.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\TrackBG.png
d:\program files\Advanced SystemCare 4\UI\Flat\appimages\UpgraudD.png
d:\program files\Advanced SystemCare 4\UI\Flat\css\css.css
d:\program files\Advanced SystemCare 4\UI\Flat\images\CareBG.png
d:\program files\Advanced SystemCare 4\UI\Flat\images\clear.gif
d:\program files\Advanced SystemCare 4\UI\Flat\images\dailycare.png
d:\program files\Advanced SystemCare 4\UI\Flat\images\deepcare.png
d:\program files\Advanced SystemCare 4\UI\Flat\images\halo.png
d:\program files\Advanced SystemCare 4\UI\Flat\images\hints.png
d:\program files\Advanced SystemCare 4\UI\Flat\images\MainBG.png
d:\program files\Advanced SystemCare 4\UI\Flat\images\quickcare.png
d:\program files\Advanced SystemCare 4\UI\Flat\images\shadow.png
d:\program files\Advanced SystemCare 4\UI\Flat\images\Thumbs.db
d:\program files\Advanced SystemCare 4\UI\Flat\images\tip215.png
d:\program files\Advanced SystemCare 4\UI\Flat\images\toolBox.png
d:\program files\Advanced SystemCare 4\UI\Flat\images\toolboxs.png
d:\program files\Advanced SystemCare 4\UI\Flat\images\transparent.gif
d:\program files\Advanced SystemCare 4\UI\Flat\images\turboboostoff.png
d:\program files\Advanced SystemCare 4\UI\Flat\images\turbobooston.png
d:\program files\Advanced SystemCare 4\UI\Flat\js\action.js
d:\program files\Advanced SystemCare 4\UI\Flat\js\action1.js
d:\program files\Advanced SystemCare 4\UI\Flat\js\jquery-1.4.2.js
d:\program files\Advanced SystemCare 4\UI\Flat\js\jquery.easing.1.3.js
d:\program files\Advanced SystemCare 4\UI\Flat\main.html
d:\program files\Advanced SystemCare 4\UI\China\appimages\Btn_Back_Disable.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\Btn_Back_Down.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\Btn_Back_Move.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\Btn_Back_Normal.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\Btn_BackBG.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\Btn_Down.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\Btn_Move.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\Btn_Normal.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\BtnStop_Down.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\BtnStop_Move.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\BtnStop_Normal.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\btnUpgradeDown.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\btnUpgradeNormal.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\btnUpgradeOver.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\CareBG.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\CareWorkBG.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\Close_Move.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\Close_Normal.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\CheckBox_Checked.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\CheckBox_Normal.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\Img_Error.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\Img_NoProblem.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\Layout.ini
d:\program files\Advanced SystemCare 4\UI\China\appimages\Main_Shade.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\Min_Move.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\Min_Normal.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\More_Move.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\More_Normal.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\Preview.jpg
d:\program files\Advanced SystemCare 4\UI\China\appimages\ProgressBarBG.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\ProgressBarInnerBG.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\ProgressBarInnerLeft.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\ProgressBarInnerMid.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\ProgressBarInnerRight.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\Rescue_Move.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\Rescue_Normal.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\ScannerBG.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\ScanningBG.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\Skin_Move.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\Skin_Normal.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\TopBar.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\TrackBar.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\TrackBG.png
d:\program files\Advanced SystemCare 4\UI\China\appimages\UpgraudD.png
d:\program files\Advanced SystemCare 4\UI\China\css\css.css
d:\program files\Advanced SystemCare 4\UI\China\images\clear.gif
d:\program files\Advanced SystemCare 4\UI\China\images\dailycare.png
d:\program files\Advanced SystemCare 4\UI\China\images\deepcare.png
d:\program files\Advanced SystemCare 4\UI\China\images\halo.png
d:\program files\Advanced SystemCare 4\UI\China\images\hints.png
d:\program files\Advanced SystemCare 4\UI\China\images\MainBG.png
d:\program files\Advanced SystemCare 4\UI\China\images\quickcare.png
d:\program files\Advanced SystemCare 4\UI\China\images\shadow.png
d:\program files\Advanced SystemCare 4\UI\China\images\Thumbs.db
d:\program files\Advanced SystemCare 4\UI\China\images\tip215.png
d:\program files\Advanced SystemCare 4\UI\China\images\toolBox.png
d:\program files\Advanced SystemCare 4\UI\China\images\toolboxs.png
d:\program files\Advanced SystemCare 4\UI\China\images\transparent.gif
d:\program files\Advanced SystemCare 4\UI\China\images\turboboostoff.png
d:\program files\Advanced SystemCare 4\UI\China\images\turbobooston.png
d:\program files\Advanced SystemCare 4\UI\China\js\action.js
d:\program files\Advanced SystemCare 4\UI\China\js\action1.js
d:\program files\Advanced SystemCare 4\UI\China\js\jquery-1.4.2.js
d:\program files\Advanced SystemCare 4\UI\China\js\jquery.easing.1.3.js
d:\program files\Advanced SystemCare 4\UI\China\main.html
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\Btn_Back_Disable.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\Btn_Back_Down.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\Btn_Back_Move.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\Btn_Back_Normal.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\Btn_BackBG.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\Btn_Down.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\Btn_Move.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\Btn_Normal.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\BtnStop_Down.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\BtnStop_Move.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\BtnStop_Normal.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\CareBG.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\CareWorkBG.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\Close_Move.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\Close_Normal.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\halo.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\CheckBox_Checked.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\CheckBox_Normal.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\Img_Error.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\Img_NoProblem.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\Layout.ini
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\Main_Shade.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\Min_Move.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\Min_Normal.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\More_Move.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\More_Normal.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\Preview.jpg
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\ProgressBarBG.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\ProgressBarInnerBG.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\ProgressBarInnerLeft.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\ProgressBarInnerMid.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\ProgressBarInnerRight.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\Rescue_Move.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\Rescue_Normal.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\ScannerBG.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\ScanningBG.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\shadow.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\Skin_Move.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\Skin_Normal.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\tip215.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\TopBar.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\TrackBar.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\TrackBG.png
d:\program files\Advanced SystemCare 4\UI\Maya\appimages\UpgraudD.png
d:\program files\Advanced SystemCare 4\UI\Maya\css\css.css
d:\program files\Advanced SystemCare 4\UI\Maya\images\clear.gif
d:\program files\Advanced SystemCare 4\UI\Maya\images\deepcare.png
d:\program files\Advanced SystemCare 4\UI\Maya\images\halo.png
d:\program files\Advanced SystemCare 4\UI\Maya\images\Main_Shade.png
d:\program files\Advanced SystemCare 4\UI\Maya\images\MainBG.png
d:\program files\Advanced SystemCare 4\UI\Maya\images\quickcare.png
d:\program files\Advanced SystemCare 4\UI\Maya\images\shadow.png
d:\program files\Advanced SystemCare 4\UI\Maya\images\Thumbs.db
d:\program files\Advanced SystemCare 4\UI\Maya\images\tip215.png
d:\program files\Advanced SystemCare 4\UI\Maya\images\toolBox.png
d:\program files\Advanced SystemCare 4\UI\Maya\images\toolboxs.png
d:\program files\Advanced SystemCare 4\UI\Maya\images\transparent.gif
d:\program files\Advanced SystemCare 4\UI\Maya\images\turboboostoff.png
d:\program files\Advanced SystemCare 4\UI\Maya\images\turbobooston.png
d:\program files\Advanced SystemCare 4\UI\Maya\js\action.js
d:\program files\Advanced SystemCare 4\UI\Maya\js\action1.js
d:\program files\Advanced SystemCare 4\UI\Maya\js\jquery-1.4.2.js
d:\program files\Advanced SystemCare 4\UI\Maya\js\jquery.easing.1.3.js
d:\program files\Advanced SystemCare 4\UI\Maya\main.html
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\Btn_Back_Disable.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\Btn_Back_Down.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\Btn_Back_Move.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\Btn_Back_Normal.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\Btn_BackBG.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\Btn_Down.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\Btn_Move.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\Btn_Normal.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\BtnStop_Down.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\BtnStop_Move.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\BtnStop_Normal.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\CareBG.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\CareWorkBG.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\Close_Move.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\Close_Normal.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\CheckBox_Checked.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\CheckBox_Normal.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\Img_Error.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\Img_NoProblem.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\Layout.ini
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\Main_Shade.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\Min_Move.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\Min_Normal.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\More_Move.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\More_Normal.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\Preview.jpg
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\ProgressBarBG.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\ProgressBarInnerBG.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\ProgressBarInnerLeft.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\ProgressBarInnerMid.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\ProgressBarInnerRight.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\Rescue_Move.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\Rescue_Normal.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\ScannerBG.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\ScanningBG.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\Skin_Move.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\Skin_Normal.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\TopBar.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\TrackBar.png
d:\program files\Advanced SystemCare 4\UI\Metal\appimages\TrackBG.png
d:\program files\Advanced SystemCare 4\UI\Metal\css\css.css
d:\program files\Advanced SystemCare 4\UI\Metal\images\clear.gif
d:\program files\Advanced SystemCare 4\UI\Metal\images\deepcare.png
d:\program files\Advanced SystemCare 4\UI\Metal\images\MainBG.png
d:\program files\Advanced SystemCare 4\UI\Metal\images\quickcare.png
d:\program files\Advanced SystemCare 4\UI\Metal\images\Thumbs.db
d:\program files\Advanced SystemCare 4\UI\Metal\images\tip215.png
d:\program files\Advanced SystemCare 4\UI\Metal\images\toolBox.png
d:\program files\Advanced SystemCare 4\UI\Metal\images\transparent.gif
d:\program files\Advanced SystemCare 4\UI\Metal\images\turboboostoff.png
d:\program files\Advanced SystemCare 4\UI\Metal\images\turbobooston.png
d:\program files\Advanced SystemCare 4\UI\Metal\js\action.js
d:\program files\Advanced SystemCare 4\UI\Metal\js\action1.js
d:\program files\Advanced SystemCare 4\UI\Metal\js\jquery-1.4.2.js
d:\program files\Advanced SystemCare 4\UI\Metal\js\jquery.easing.1.3.js
d:\program files\Advanced SystemCare 4\UI\Metal\main.html
d:\program files\Advanced SystemCare 4\UI\Office\appimages\Btn_Back_Disable.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\Btn_Back_Down.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\Btn_Back_Move.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\Btn_Back_Normal.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\Btn_BackBG.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\Btn_Down.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\Btn_Move.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\Btn_Normal.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\BtnStop_Down.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\BtnStop_Move.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\BtnStop_Normal.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\CareBG.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\CareWorkBG.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\Close_Move.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\Close_Normal.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\CheckBox_Checked.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\CheckBox_Normal.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\Img_Error.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\Img_NoProblem.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\Layout.ini
d:\program files\Advanced SystemCare 4\UI\Office\appimages\Main_Shade.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\Min_Move.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\Min_Normal.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\More_Move.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\More_Normal.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\Preview.jpg
d:\program files\Advanced SystemCare 4\UI\Office\appimages\ProgressBarBG.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\ProgressBarInnerBG.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\ProgressBarInnerLeft.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\ProgressBarInnerMid.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\ProgressBarInnerRight.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\Rescue_Move.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\Rescue_Normal.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\ScannerBG.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\ScanningBG.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\Skin_Move.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\Skin_Normal.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\TopBar.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\TrackBar.png
d:\program files\Advanced SystemCare 4\UI\Office\appimages\TrackBG.png
d:\program files\Advanced SystemCare 4\UI\Office\css\css.css
d:\program files\Advanced SystemCare 4\UI\Office\images\clear.gif
d:\program files\Advanced SystemCare 4\UI\Office\images\deepcare.png
d:\program files\Advanced SystemCare 4\UI\Office\images\MainBG.png
d:\program files\Advanced SystemCare 4\UI\Office\images\quickcare.png
d:\program files\Advanced SystemCare 4\UI\Office\images\tip215.png
d:\program files\Advanced SystemCare 4\UI\Office\images\toolBox.png
d:\program files\Advanced SystemCare 4\UI\Office\images\transparent.gif
d:\program files\Advanced SystemCare 4\UI\Office\images\turboboostoff.png
d:\program files\Advanced SystemCare 4\UI\Office\images\turbobooston.png
d:\program files\Advanced SystemCare 4\UI\Office\js\action.js
d:\program files\Advanced SystemCare 4\UI\Office\js\action1.js
d:\program files\Advanced SystemCare 4\UI\Office\js\jquery-1.4.2.js
d:\program files\Advanced SystemCare 4\UI\Office\js\jquery.easing.1.3.js
d:\program files\Advanced SystemCare 4\UI\Office\main.html
d:\program files\Advanced SystemCare 4\UI\Public\js\action.js
d:\program files\Advanced SystemCare 4\UI\Public\js\jquery-1.4.2.js
d:\program files\Advanced SystemCare 4\UI\Public\js\jquery.easing.1.3.js
d:\program files\Advanced SystemCare 4\UI\Public\upgrade\btnMLDown.png
d:\program files\Advanced SystemCare 4\UI\Public\upgrade\btnMLNormal.png
d:\program files\Advanced SystemCare 4\UI\Public\upgrade\btnMLOver.png
d:\program files\Advanced SystemCare 4\UI\Public\upgrade\btnUpgradeDown.png
d:\program files\Advanced SystemCare 4\UI\Public\upgrade\btnUpgradeNormal.png
d:\program files\Advanced SystemCare 4\UI\Public\upgrade\btnUpgradeOver.png
d:\program files\Advanced SystemCare 4\UI\Public\upgrade\UpgradeW.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\Btn_Back_Disable.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\Btn_Back_Down.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\Btn_Back_Move.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\Btn_Back_Normal.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\Btn_BackBG.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\Btn_Down.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\Btn_Move.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\Btn_Normal.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\BtnStop_Down.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\BtnStop_Move.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\BtnStop_Normal.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\btnUpgradeDown.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\btnUpgradeNormal.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\btnUpgradeOver.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\CareBG.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\CareWorkBG.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\Close_Move.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\Close_Normal.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\halo.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\CheckBox_Checked.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\CheckBox_Normal.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\Img_Error.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\Img_NoProblem.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\Layout.ini
d:\program files\Advanced SystemCare 4\UI\White\appimages\Main_Shade.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\MainBG.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\Min_Move.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\Min_Normal.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\More_Move.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\More_Normal.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\Preview.jpg
d:\program files\Advanced SystemCare 4\UI\White\appimages\ProgressBarBG.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\ProgressBarInnerBG.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\ProgressBarInnerLeft.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\ProgressBarInnerMid.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\ProgressBarInnerRight.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\Rescue_Move.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\Rescue_Normal.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\ScannerBG.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\ScanningBG.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\shadow.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\Skin_Move.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\Skin_Normal.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\tip215.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\TopBar.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\TrackBar.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\TrackBG.png
d:\program files\Advanced SystemCare 4\UI\White\appimages\UpgraudD.png
d:\program files\Advanced SystemCare 4\UI\White\css\css.css
d:\program files\Advanced SystemCare 4\UI\White\images\clear.gif
d:\program files\Advanced SystemCare 4\UI\White\images\deepcare.png
d:\program files\Advanced SystemCare 4\UI\White\images\halo.png
d:\program files\Advanced SystemCare 4\UI\White\images\MainBG.png
d:\program files\Advanced SystemCare 4\UI\White\images\quickcare.png
d:\program files\Advanced SystemCare 4\UI\White\images\shadow.png
d:\program files\Advanced SystemCare 4\UI\White\images\Thumbs.db
d:\program files\Advanced SystemCare 4\UI\White\images\tip215.png
d:\program files\Advanced SystemCare 4\UI\White\images\toolBox.png
d:\program files\Advanced SystemCare 4\UI\White\images\toolboxs.png
d:\program files\Advanced SystemCare 4\UI\White\images\transparent.gif
d:\program files\Advanced SystemCare 4\UI\White\images\turboboostoff.png
d:\program files\Advanced SystemCare 4\UI\White\images\turbobooston.png
d:\program files\Advanced SystemCare 4\UI\White\js\action.js
d:\program files\Advanced SystemCare 4\UI\White\js\action1.js
d:\program files\Advanced SystemCare 4\UI\White\js\jquery-1.4.2.js
d:\program files\Advanced SystemCare 4\UI\White\js\jquery.easing.1.3.js
d:\program files\Advanced SystemCare 4\UI\White\main.html
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\Btn_Back_Disable.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\Btn_Back_Down.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\Btn_Back_Move.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\Btn_Back_Normal.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\Btn_BackBG.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\Btn_Down.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\Btn_Move.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\Btn_Normal.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\BtnStop_Down.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\BtnStop_Move.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\BtnStop_Normal.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\btnUpgradeDown.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\btnUpgradeNormal.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\btnUpgradeOver.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\CareBG.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\CareWorkBG.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\Close_Move.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\Close_Normal.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\halo.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\CheckBox_Checked.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\CheckBox_Normal.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\Img_Error-45.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\Img_Error.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\Img_NoProblem.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\Layout.ini
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\Main_Shade.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\Min_Move.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\Min_Normal.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\More_Move.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\More_Normal.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\Preview.jpg
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\ProgressBarBG.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\ProgressBarInnerBG.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\ProgressBarInnerLeft.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\ProgressBarInnerMid.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\ProgressBarInnerRight.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\Rescue_Move.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\Rescue_Normal.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\ScannerBG.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\ScanningBG.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\shadow.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\Skin_Move.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\Skin_Normal.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\tip215.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\TopBar.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\TrackBar.png
d:\program files\Advanced SystemCare 4\UI\Wood\appimages\TrackBG.png
d:\program files\Advanced SystemCare 4\UI\Wood\css\css.css
d:\program files\Advanced SystemCare 4\UI\Wood\images\btnUpgradeDown.png
d:\program files\Advanced SystemCare 4\UI\Wood\images\clear.gif
d:\program files\Advanced SystemCare 4\UI\Wood\images\dailycare.png
d:\program files\Advanced SystemCare 4\UI\Wood\images\deepcare.png

Jinoch
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 30 lis 2006 21:45

Re: Další FB vir

#12 Příspěvek od Jinoch »

d:\program files\Advanced SystemCare 4\UI\Wood\images\halo.png
d:\program files\Advanced SystemCare 4\UI\Wood\images\hints.png
d:\program files\Advanced SystemCare 4\UI\Wood\images\MainBG.png
d:\program files\Advanced SystemCare 4\UI\Wood\images\quickcare.png
d:\program files\Advanced SystemCare 4\UI\Wood\images\shadow.png
d:\program files\Advanced SystemCare 4\UI\Wood\images\Thumbs.db
d:\program files\Advanced SystemCare 4\UI\Wood\images\tip215.png
d:\program files\Advanced SystemCare 4\UI\Wood\images\toolBox.png
d:\program files\Advanced SystemCare 4\UI\Wood\images\toolboxs.png
d:\program files\Advanced SystemCare 4\UI\Wood\images\transparent.gif
d:\program files\Advanced SystemCare 4\UI\Wood\images\turboboostoff.png
d:\program files\Advanced SystemCare 4\UI\Wood\images\turbobooston.png
d:\program files\Advanced SystemCare 4\UI\Wood\js\action.js
d:\program files\Advanced SystemCare 4\UI\Wood\js\action1.js
d:\program files\Advanced SystemCare 4\UI\Wood\js\jquery-1.4.2.js
d:\program files\Advanced SystemCare 4\UI\Wood\js\jquery.easing.1.3.js
d:\program files\Advanced SystemCare 4\UI\Wood\main.html
d:\program files\Advanced SystemCare 4\UnDelete.dll
d:\program files\Advanced SystemCare 4\unins000.dat
d:\program files\Advanced SystemCare 4\unins000.exe
d:\program files\Advanced SystemCare 4\unins000.msg
d:\program files\Advanced SystemCare 4\Update\config.dat
d:\program files\Advanced SystemCare 4\Update\Update.Ini
d:\program files\Advanced SystemCare 4\UpdateHistory.txt
d:\program files\Advanced SystemCare 4\vcl120.bpl
d:\program files\Advanced SystemCare 4\vclx120.bpl
d:\program files\Advanced SystemCare 4\Wizard.exe
d:\program files\Advanced SystemCare 4\Zástupce - ASC.lnk
d:\program files\IObit
d:\program files\IObit\Game Booster\AutoUpdate.exe
d:\program files\IObit\Game Booster\bookmarks.exe
d:\program files\IObit\Game Booster\Boost.exe
d:\program files\IObit\Game Booster\Downloadpath\TeamSpeak_22895.exe
d:\program files\IObit\Game Booster\Downloadpath\Ventrilo_22027.exe
d:\program files\IObit\Game Booster\Downloadpath\Xfire_23662.exe
d:\program files\IObit\Game Booster\fav.ico
d:\program files\IObit\Game Booster\Freeware\GB_FreeSoftwareDownloader.exe
d:\program files\IObit\Game Booster\Freeware\Check.dll
d:\program files\IObit\Game Booster\Freeware\Languages\Inno_English.lng
d:\program files\IObit\Game Booster\GameBooster.exe
d:\program files\IObit\Game Booster\GameBooster.exe.BAK
d:\program files\IObit\Game Booster\gbinit.exe
d:\program files\IObit\Game Booster\gbtray.exe
d:\program files\IObit\Game Booster\iobit.game.booster.v2.3.0.113-patch.exe
d:\program files\IObit\Game Booster\keymaker.exe
d:\program files\IObit\Game Booster\Language\Arabic.lng
d:\program files\IObit\Game Booster\Language\Catalan.lng
d:\program files\IObit\Game Booster\Language\Croatian.lng
d:\program files\IObit\Game Booster\Language\Czech.lng
d:\program files\IObit\Game Booster\Language\Dansk.lng
d:\program files\IObit\Game Booster\Language\Dutch.lng
d:\program files\IObit\Game Booster\Language\English.lng
d:\program files\IObit\Game Booster\Language\Finnish.lng
d:\program files\IObit\Game Booster\Language\French.lng
d:\program files\IObit\Game Booster\Language\German.lng
d:\program files\IObit\Game Booster\Language\Hungarian.lng
d:\program files\IObit\Game Booster\Language\ChineseSimp.lng
d:\program files\IObit\Game Booster\Language\ChineseTrad.lng
d:\program files\IObit\Game Booster\Language\Indonesian.lng
d:\program files\IObit\Game Booster\Language\Italian.lng
d:\program files\IObit\Game Booster\Language\Korean.lng
d:\program files\IObit\Game Booster\Language\Polish.lng
d:\program files\IObit\Game Booster\Language\Portuguese(BRAZIL).lng
d:\program files\IObit\Game Booster\Language\Romanian.lng
d:\program files\IObit\Game Booster\Language\Russian.lng
d:\program files\IObit\Game Booster\Language\Spanish.lng
d:\program files\IObit\Game Booster\Language\Swedish.lng
d:\program files\IObit\Game Booster\Language\Turkish.lng
d:\program files\IObit\Game Booster\LatestNews\imagenews.png
d:\program files\IObit\Game Booster\LatestNews\LatestNews.ini
d:\program files\IObit\Game Booster\license.dat
d:\program files\IObit\Game Booster\madbasic_.bpl
d:\program files\IObit\Game Booster\maddisAsm_.bpl
d:\program files\IObit\Game Booster\madexcept_.bpl
d:\program files\IObit\Game Booster\PowerConfig.dll
d:\program files\IObit\Game Booster\rtl120.bpl
d:\program files\IObit\Game Booster\sqlite3.dll
d:\program files\IObit\Game Booster\taskMgr.dll
d:\program files\IObit\Game Booster\TaskSchedule.exe
d:\program files\IObit\Game Booster\unins000.dat
d:\program files\IObit\Game Booster\unins000.exe
d:\program files\IObit\Game Booster\unins000.msg
d:\program files\IObit\Game Booster\Update\Update.ini
d:\program files\IObit\Game Booster\vcl120.bpl
d:\program files\IObit\Game Booster\vclx120.bpl
d:\program files\IObit\IObit Malware Fighter\BlueBirdInit.exe
d:\program files\IObit\IObit Malware Fighter\datastate.dll
d:\program files\IObit\IObit Malware Fighter\db\core000.def
d:\program files\IObit\IObit Malware Fighter\db\core001.def
d:\program files\IObit\IObit Malware Fighter\db\core002.def
d:\program files\IObit\IObit Malware Fighter\db\core003.def
d:\program files\IObit\IObit Malware Fighter\db\core004.def
d:\program files\IObit\IObit Malware Fighter\db\core005.def
d:\program files\IObit\IObit Malware Fighter\db\core006.def
d:\program files\IObit\IObit Malware Fighter\db\core007.def
d:\program files\IObit\IObit Malware Fighter\db\core008.def
d:\program files\IObit\IObit Malware Fighter\db\core009.def
d:\program files\IObit\IObit Malware Fighter\db\core010.def
d:\program files\IObit\IObit Malware Fighter\db\core011.def
d:\program files\IObit\IObit Malware Fighter\db\core012.def
d:\program files\IObit\IObit Malware Fighter\DebugOutput_IMF.exe.txt
d:\program files\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys
d:\program files\IObit\IObit Malware Fighter\Drivers\win7_amd64\RegFilter.sys
d:\program files\IObit\IObit Malware Fighter\Drivers\win7_amd64\UrlFilter.sys
d:\program files\IObit\IObit Malware Fighter\Drivers\win7_ia64\FileMonitor.sys
d:\program files\IObit\IObit Malware Fighter\Drivers\win7_ia64\RegFilter.sys
d:\program files\IObit\IObit Malware Fighter\Drivers\win7_ia64\UrlFilter.sys
d:\program files\IObit\IObit Malware Fighter\Drivers\win7_x86\FileMonitor.sys
d:\program files\IObit\IObit Malware Fighter\Drivers\win7_x86\RegFilter.sys
d:\program files\IObit\IObit Malware Fighter\Drivers\win7_x86\UrlFilter.sys
d:\program files\IObit\IObit Malware Fighter\Drivers\wlh_amd64\FileMonitor.sys
d:\program files\IObit\IObit Malware Fighter\Drivers\wlh_amd64\RegFilter.sys
d:\program files\IObit\IObit Malware Fighter\Drivers\wlh_amd64\UrlFilter.sys
d:\program files\IObit\IObit Malware Fighter\Drivers\wlh_ia64\FileMonitor.sys
d:\program files\IObit\IObit Malware Fighter\Drivers\wlh_ia64\RegFilter.sys
d:\program files\IObit\IObit Malware Fighter\Drivers\wlh_ia64\UrlFilter.sys
d:\program files\IObit\IObit Malware Fighter\Drivers\wlh_x86\FileMonitor.sys
d:\program files\IObit\IObit Malware Fighter\Drivers\wlh_x86\RegFilter.sys
d:\program files\IObit\IObit Malware Fighter\Drivers\wlh_x86\UrlFilter.sys
d:\program files\IObit\IObit Malware Fighter\Drivers\wnet_amd64\FileMonitor.sys
d:\program files\IObit\IObit Malware Fighter\Drivers\wnet_amd64\RegFilter.sys
d:\program files\IObit\IObit Malware Fighter\Drivers\wnet_amd64\UrlFilter.sys
d:\program files\IObit\IObit Malware Fighter\Drivers\wnet_ia64\FileMonitor.sys
d:\program files\IObit\IObit Malware Fighter\Drivers\wnet_ia64\RegFilter.sys
d:\program files\IObit\IObit Malware Fighter\Drivers\wnet_ia64\UrlFilter.sys
d:\program files\IObit\IObit Malware Fighter\Drivers\wnet_x86\FileMonitor.sys
d:\program files\IObit\IObit Malware Fighter\Drivers\wnet_x86\RegFilter.sys
d:\program files\IObit\IObit Malware Fighter\Drivers\wnet_x86\UrlFilter.sys
d:\program files\IObit\IObit Malware Fighter\Drivers\wxp_ia64\UrlFilter.sys
d:\program files\IObit\IObit Malware Fighter\Drivers\wxp_x86\FileMonitor.sys
d:\program files\IObit\IObit Malware Fighter\Drivers\wxp_x86\RegFilter.sys
d:\program files\IObit\IObit Malware Fighter\Drivers\wxp_x86\UrlFilter.sys
d:\program files\IObit\IObit Malware Fighter\EULA.rtf
d:\program files\IObit\IObit Malware Fighter\fav.ico
d:\program files\IObit\IObit Malware Fighter\FileMonitor.dll
d:\program files\IObit\IObit Malware Fighter\Freeware\Check.dll
d:\program files\IObit\IObit Malware Fighter\Freeware\IMF_FreeSoftwareDownloader.exe
d:\program files\IObit\IObit Malware Fighter\help\help.html
d:\program files\IObit\IObit Malware Fighter\help\img\cloud.png
d:\program files\IObit\IObit Malware Fighter\help\img\main-cloud.png
d:\program files\IObit\IObit Malware Fighter\help\img\main-free.png
d:\program files\IObit\IObit Malware Fighter\help\img\main-pro.png
d:\program files\IObit\IObit Malware Fighter\help\img\main-protect.png
d:\program files\IObit\IObit Malware Fighter\help\img\main-scan.png
d:\program files\IObit\IObit Malware Fighter\help\img\overview.png
d:\program files\IObit\IObit Malware Fighter\help\img\protect.png
d:\program files\IObit\IObit Malware Fighter\help\img\scan.png
d:\program files\IObit\IObit Malware Fighter\IMF.exe
d:\program files\IObit\IObit Malware Fighter\IMFShellExt.dll
d:\program files\IObit\IObit Malware Fighter\IMFsrv.exe
d:\program files\IObit\IObit Malware Fighter\IMFUpdater.exe
d:\program files\IObit\IObit Malware Fighter\IntegrateFilter.dll
d:\program files\IObit\IObit Malware Fighter\IObitUninstal.exe
d:\program files\IObit\IObit Malware Fighter\Language\Arabic.lng
d:\program files\IObit\IObit Malware Fighter\Language\cache
d:\program files\IObit\IObit Malware Fighter\Language\Czech.lng
d:\program files\IObit\IObit Malware Fighter\Language\English.lng
d:\program files\IObit\IObit Malware Fighter\Language\French.lng
d:\program files\IObit\IObit Malware Fighter\Language\German.lng
d:\program files\IObit\IObit Malware Fighter\Language\Hungarian.lng
d:\program files\IObit\IObit Malware Fighter\Language\ChineseSimp.lng
d:\program files\IObit\IObit Malware Fighter\Language\ChineseTrad.lng
d:\program files\IObit\IObit Malware Fighter\Language\Italian.lng
d:\program files\IObit\IObit Malware Fighter\Language\Japanese.lng
d:\program files\IObit\IObit Malware Fighter\Language\Korean.lng
d:\program files\IObit\IObit Malware Fighter\Language\Latvian.lng
d:\program files\IObit\IObit Malware Fighter\Language\Polish.lng
d:\program files\IObit\IObit Malware Fighter\Language\Portuguese(PT-BR).lng
d:\program files\IObit\IObit Malware Fighter\Language\Russian.lng
d:\program files\IObit\IObit Malware Fighter\Language\Serbian.lng
d:\program files\IObit\IObit Malware Fighter\Language\Spanish.lng
d:\program files\IObit\IObit Malware Fighter\Language\Swedish.lng
d:\program files\IObit\IObit Malware Fighter\Language\Turkish.lng
d:\program files\IObit\IObit Malware Fighter\Language\Vietnamese.lng
d:\program files\IObit\IObit Malware Fighter\LatestNews\LatestNews.ini
d:\program files\IObit\IObit Malware Fighter\license.dat
d:\program files\IObit\IObit Malware Fighter\ProtectorLog.log
d:\program files\IObit\IObit Malware Fighter\Quarantine Zone\hrpbgonp
d:\program files\IObit\IObit Malware Fighter\Quarantine Zone\info.db
d:\program files\IObit\IObit Malware Fighter\Quarantine Zone\kuucydhu
d:\program files\IObit\IObit Malware Fighter\Quarantine Zone\qalstsow
d:\program files\IObit\IObit Malware Fighter\Quarantine Zone\qrycdkjj
d:\program files\IObit\IObit Malware Fighter\Quarantine Zone\wqcbgibu
d:\program files\IObit\IObit Malware Fighter\RegFilter.dll
d:\program files\IObit\IObit Malware Fighter\rtl120.bpl
d:\program files\IObit\IObit Malware Fighter\Scan.dll
d:\program files\IObit\IObit Malware Fighter\StartMenu.exe
d:\program files\IObit\IObit Malware Fighter\taskmgr.dll
d:\program files\IObit\IObit Malware Fighter\TaskSchedule.exe
d:\program files\IObit\IObit Malware Fighter\unins000.dat
d:\program files\IObit\IObit Malware Fighter\unins000.exe
d:\program files\IObit\IObit Malware Fighter\unins000.msg
d:\program files\IObit\IObit Malware Fighter\unrar.dll
d:\program files\IObit\IObit Malware Fighter\URLFilter.dll
d:\program files\IObit\IObit Malware Fighter\vcl120.bpl
d:\program files\IObit\IObit Malware Fighter\vclx120.bpl
d:\program files\IObit\IObit Malware Fighter\zlibwapi.dll
d:\program files\IObit\IObit Security 360\Downloaded\netfx3-kb928416-v3.0-x86-csy.exe
d:\program files\IObit\IObit Security 360\IS360Init.exe
d:\program files\IObit\IObit Security 360\Quarantine Zone\info.db
d:\program files\IObit\IObit Security 360\SecurityHoles.db
d:\program files\IObit\IObit Security 360\SecurityHoles.ini
d:\program files\IObit\IObit Security 360\UpdateLog.txt
d:\program files\IObit\Protected Folder\help\images\pic01.png
d:\program files\IObit\Protected Folder\help\images\pic02.png
d:\program files\IObit\Protected Folder\help\images\pic03.png
d:\program files\IObit\Protected Folder\help\images\pic04.png
d:\program files\IObit\Protected Folder\help\images\pic05.png
d:\program files\IObit\Protected Folder\help\images\pic06.png
d:\program files\IObit\Protected Folder\help\index.html
d:\program files\IObit\Protected Folder\Language\Arabic.lng
d:\program files\IObit\Protected Folder\Language\Brazilian.lng
d:\program files\IObit\Protected Folder\Language\Bulgarian.lng
d:\program files\IObit\Protected Folder\Language\Czech.lng
d:\program files\IObit\Protected Folder\Language\English.lng
d:\program files\IObit\Protected Folder\Language\French.lng
d:\program files\IObit\Protected Folder\Language\German.lng
d:\program files\IObit\Protected Folder\Language\Hungarian.lng
d:\program files\IObit\Protected Folder\Language\ChineseSimp.lng
d:\program files\IObit\Protected Folder\Language\ChineseTrad.lng
d:\program files\IObit\Protected Folder\Language\Korean.lng
d:\program files\IObit\Protected Folder\Language\Malay.lng
d:\program files\IObit\Protected Folder\Language\Moldova.lng
d:\program files\IObit\Protected Folder\Language\Polish.lng
d:\program files\IObit\Protected Folder\Language\Portuguese.lng
d:\program files\IObit\Protected Folder\Language\Russian.lng
d:\program files\IObit\Protected Folder\Language\Slovak.lng
d:\program files\IObit\Protected Folder\Language\Spanish.lng
d:\program files\IObit\Protected Folder\Language\Swedish.lng
d:\program files\IObit\Protected Folder\Language\Turkish.lng
d:\program files\IObit\Protected Folder\pffilter.sys
d:\program files\IObit\Protected Folder\PfCheckService.exe
d:\program files\IObit\Protected Folder\PfShellExtension.dll
d:\program files\IObit\Protected Folder\ProtectedFolder.exe
d:\program files\IObit\Protected Folder\unins000.dat
d:\program files\IObit\Protected Folder\unins000.exe
d:\program files\IObit\Protected Folder\update.ini
d:\program files\IObit\Smart Defrag 2\drivers\win7_x64\SmartDefragBootTime.exe
d:\program files\IObit\Smart Defrag 2\drivers\win7_x64\SmartDefragDriver.sys
d:\program files\IObit\Smart Defrag 2\drivers\win7_x86\SmartDefragBootTime.exe
d:\program files\IObit\Smart Defrag 2\drivers\win7_x86\SmartDefragDriver.sys
d:\program files\IObit\Smart Defrag 2\drivers\wlh_x64\SmartDefragBootTime.exe
d:\program files\IObit\Smart Defrag 2\drivers\wlh_x64\SmartDefragDriver.sys
d:\program files\IObit\Smart Defrag 2\drivers\wlh_x86\SmartDefragBootTime.exe
d:\program files\IObit\Smart Defrag 2\drivers\wlh_x86\SmartDefragDriver.sys
d:\program files\IObit\Smart Defrag 2\drivers\wnet_x64\SmartDefragBootTime.exe
d:\program files\IObit\Smart Defrag 2\drivers\wnet_x64\SmartDefragDriver.sys
d:\program files\IObit\Smart Defrag 2\drivers\wnet_x86\SmartDefragBootTime.exe
d:\program files\IObit\Smart Defrag 2\drivers\wnet_x86\SmartDefragDriver.sys
d:\program files\IObit\Smart Defrag 2\drivers\wxp_x64\SmartDefragBootTime.exe
d:\program files\IObit\Smart Defrag 2\drivers\wxp_x64\SmartDefragDriver.sys
d:\program files\IObit\Smart Defrag 2\drivers\wxp_x86\SmartDefragBootTime.exe
d:\program files\IObit\Smart Defrag 2\drivers\wxp_x86\SmartDefragDriver.sys
d:\program files\IObit\Smart Defrag 2\EULA.rtf
d:\program files\IObit\Smart Defrag 2\Help\Images\001.jpg
d:\program files\IObit\Smart Defrag 2\Help\Images\002.jpg
d:\program files\IObit\Smart Defrag 2\Help\Images\003.jpg
d:\program files\IObit\Smart Defrag 2\Help\Images\004.jpg
d:\program files\IObit\Smart Defrag 2\Help\Images\005.jpg
d:\program files\IObit\Smart Defrag 2\Help\Images\006.jpg
d:\program files\IObit\Smart Defrag 2\Help\Images\007.jpg
d:\program files\IObit\Smart Defrag 2\Help\Images\008.jpg
d:\program files\IObit\Smart Defrag 2\Help\Images\009.jpg
d:\program files\IObit\Smart Defrag 2\Help\Index.html
d:\program files\IObit\Smart Defrag 2\Language\Albanian.lng
d:\program files\IObit\Smart Defrag 2\Language\Arabic.lng
d:\program files\IObit\Smart Defrag 2\Language\Bulgarian.lng
d:\program files\IObit\Smart Defrag 2\Language\Czech.lng
d:\program files\IObit\Smart Defrag 2\Language\Danish.lng
d:\program files\IObit\Smart Defrag 2\Language\Dutch.lng
d:\program files\IObit\Smart Defrag 2\Language\English.lng
d:\program files\IObit\Smart Defrag 2\Language\Finnish.lng
d:\program files\IObit\Smart Defrag 2\Language\Flemish.lng
d:\program files\IObit\Smart Defrag 2\Language\French.lng
d:\program files\IObit\Smart Defrag 2\Language\Georgian.lng
d:\program files\IObit\Smart Defrag 2\Language\German.lng
d:\program files\IObit\Smart Defrag 2\Language\Greek.lng
d:\program files\IObit\Smart Defrag 2\Language\Hebrew.lng
d:\program files\IObit\Smart Defrag 2\Language\Hungarian.lng
d:\program files\IObit\Smart Defrag 2\Language\ChineseSimp.lng
d:\program files\IObit\Smart Defrag 2\Language\ChineseTrad.lng
d:\program files\IObit\Smart Defrag 2\Language\Italian.lng
d:\program files\IObit\Smart Defrag 2\Language\Italiano.lng
d:\program files\IObit\Smart Defrag 2\Language\Japanese.lng
d:\program files\IObit\Smart Defrag 2\Language\Korean.lng
d:\program files\IObit\Smart Defrag 2\Language\Kurdish.lng
d:\program files\IObit\Smart Defrag 2\Language\Malay.lng
d:\program files\IObit\Smart Defrag 2\Language\Malayalam.lng
d:\program files\IObit\Smart Defrag 2\Language\Norwegian.lng
d:\program files\IObit\Smart Defrag 2\Language\Polish.lng
d:\program files\IObit\Smart Defrag 2\Language\Portuguese(Brazil).lng
d:\program files\IObit\Smart Defrag 2\Language\Portuguese(Portugal).lng
d:\program files\IObit\Smart Defrag 2\Language\Romanian.lng
d:\program files\IObit\Smart Defrag 2\Language\Russian.lng
d:\program files\IObit\Smart Defrag 2\Language\Slovak.lng
d:\program files\IObit\Smart Defrag 2\Language\Slovenian.lng
d:\program files\IObit\Smart Defrag 2\Language\Spanish.lng
d:\program files\IObit\Smart Defrag 2\Language\Swedish.lng
d:\program files\IObit\Smart Defrag 2\Language\Turkish.lng
d:\program files\IObit\Smart Defrag 2\Language\Vietnamese.lng
d:\program files\IObit\Smart Defrag 2\LatestNews\LatestNews.ini
d:\program files\IObit\Smart Defrag 2\madbasic_.bpl
d:\program files\IObit\Smart Defrag 2\maddisAsm_.bpl
d:\program files\IObit\Smart Defrag 2\madexcept_.bpl
d:\program files\IObit\Smart Defrag 2\NtfsData.dll
d:\program files\IObit\Smart Defrag 2\rtl120.bpl
d:\program files\IObit\Smart Defrag 2\SDDriverMgr.dll
d:\program files\IObit\Smart Defrag 2\SDInit.exe
d:\program files\IObit\Smart Defrag 2\Skins\Black\Add_Left.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Add_Middle.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Add_Right.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Add_Shadow.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Analyze_Disable.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Analyze_Focus.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Analyze_Hot.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Analyze_Normal.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Center.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Close_Hot.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Close_Normal.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\ColumnDivider.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\ColumnHeader.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Corner_Bottom_Left.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Corner_Bottom_Right.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Corner_Top_Left.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Corner_Top_Right.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Defrag_Disable.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Defrag_Focus.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Defrag_Hot.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Defrag_Normal.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Defrag_Option_Disable.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Defrag_Option_Focus.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Defrag_Option_Hot.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Defrag_Option_Normal.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Frame_Bottom.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Frame_Left.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Frame_Left_Top.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Frame_Right.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Frame_Right_Top.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Frame_Top.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Hide.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Checkbox_Disable.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Checkbox_Checked.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Checkbox_Unchecked.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Item_Selected.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Layout.ini
d:\program files\IObit\Smart Defrag 2\Skins\Black\line.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Logo.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Maximize_Hot.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Maximize_Normal.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Minimize_Hot.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Minimize_Normal.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\News_Left.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\News_Middle.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\News_Right.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Page_Body.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Pause_Disable.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Pause_Focus.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Pause_Hot.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Pause_Normal.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Progress_Bg_Left.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Progress_Bg_Middle.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Progress_Bg_Right.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Progress_Fg_Left.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Progress_Fg_Middle.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Progress_Fg_Right.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Restore_Hot.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Restore_Normal.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Setting_Text_Shadow.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Show.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Statistics.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Stop_Disable.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Stop_Focus.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Stop_Hot.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Stop_Normal.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Tab_Focus.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Tab_Hot.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Tab_Normal.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Title.png
d:\program files\IObit\Smart Defrag 2\Skins\Black\Top.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Add_Left.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Add_Middle.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Add_Right.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Add_Shadow.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Analyze_Disable.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Analyze_Focus.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Analyze_Hot.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Analyze_Normal.png
d:\program files\IObit\Smart Defrag 2\Skins\White\center.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Close_Hot.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Close_Normal.png
d:\program files\IObit\Smart Defrag 2\Skins\White\ColumnDivider.png
d:\program files\IObit\Smart Defrag 2\Skins\White\ColumnHeader.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Corner_Bottom_Left.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Corner_Bottom_Right.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Corner_Top_Left.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Corner_Top_Right.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Defrag_Disable.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Defrag_Focus.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Defrag_Hot.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Defrag_Normal.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Defrag_Option_Disable.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Defrag_Option_Focus.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Defrag_Option_Hot.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Defrag_Option_Normal.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Frame_Bottom.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Frame_Left.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Frame_Left_Top.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Frame_Right.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Frame_Right_Top.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Frame_Top.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Hide.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Checkbox_Disable.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Checkbox_Checked.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Checkbox_Unchecked.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Item_Selected.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Layout.ini
d:\program files\IObit\Smart Defrag 2\Skins\White\line.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Logo.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Maximize_Hot.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Maximize_Normal.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Minimize_Hot.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Minimize_Normal.png
d:\program files\IObit\Smart Defrag 2\Skins\White\News_Left.png
d:\program files\IObit\Smart Defrag 2\Skins\White\News_Middle.png
d:\program files\IObit\Smart Defrag 2\Skins\White\News_Right.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Page_Body.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Pause_Disable.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Pause_Focus.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Pause_Hot.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Pause_Normal.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Progress_Bg_Left.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Progress_Bg_Middle.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Progress_Bg_Right.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Progress_Fg_Left.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Progress_Fg_Middle.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Progress_Fg_Right.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Restore_Hot.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Restore_Normal.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Setting_Text_Shadow.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Show.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Statistics.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Stop_Disable.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Stop_Focus.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Stop_Hot.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Stop_Normal.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Tab_Focus.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Tab_Hot.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Tab_Normal.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Title.png
d:\program files\IObit\Smart Defrag 2\Skins\White\Top.png
d:\program files\IObit\Smart Defrag 2\SmartDefrag.exe
d:\program files\IObit\Smart Defrag 2\taskMgr.dll
d:\program files\IObit\Smart Defrag 2\TaskSchedule.exe
d:\program files\IObit\Smart Defrag 2\unins000.dat
d:\program files\IObit\Smart Defrag 2\unins000.exe
d:\program files\IObit\Smart Defrag 2\unins000.msg
d:\program files\IObit\Smart Defrag 2\vcl120.bpl
d:\program files\IObit\Smart Defrag 2\vclx120.bpl
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_ADVANCEDSYSTEMCARESERVICE
-------\Legacy_SRVIECHECK
-------\Legacy_SRVSYSDRIVER32
-------\Service_AdvancedSystemCareService
-------\Service_srviecheck
-------\Service_srvsysdriver32
-------\Legacy_FileMonitor
-------\Legacy_IMFservice
-------\Legacy_PfFilter
-------\Legacy_RegFilter
-------\Legacy_UrlFilter
-------\Legacy_FileMonitor
-------\Legacy_IMFservice
-------\Legacy_PfFilter
-------\Legacy_RegFilter
-------\Legacy_UrlFilter
-------\Service_FileMonitor
-------\Service_IMFservice
-------\Service_PfFilter
-------\Service_RegFilter
-------\Service_UrlFilter
-------\Service_FileMonitor
-------\Service_IMFservice
-------\Service_PfFilter
-------\Service_RegFilter
-------\Service_UrlFilter
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-06-25 do 2011-07-25 )))))))))))))))))))))))))))))))
.
.
2011-07-25 18:40 . 2011-07-25 18:40 -------- d-----w- c:\documents and settings\Petra\Local Settings\Data aplikací\ATI
2011-07-25 18:40 . 2011-07-25 18:40 -------- d-----w- c:\documents and settings\Petra\Data aplikací\ATI
2011-07-25 18:40 . 2011-07-25 18:40 -------- d-----w- c:\documents and settings\All Users.WINDOWS\Data aplikací\ATI
2011-07-25 18:36 . 2011-07-25 18:36 -------- d-----w- c:\program files\Common Files\ATI Technologies
2011-07-25 18:35 . 2011-07-25 18:35 -------- d-----w- c:\program files\ATI
2011-07-25 18:34 . 2011-07-25 18:37 -------- d-----w- c:\program files\ATI Technologies
2011-07-25 17:57 . 2011-07-25 17:57 0 ----a-w- c:\windows\ativpsrm.bin
2011-07-25 17:56 . 2010-08-26 02:03 311296 ----a-r- c:\windows\system32\atiiiexx.dll
2011-07-25 17:56 . 2010-08-26 01:57 450560 ----a-r- c:\windows\system32\ATIDEMGX.dll
2011-07-25 17:55 . 2010-07-21 11:30 101904 ----a-r- c:\windows\system32\drivers\AtihdXP3.sys
2011-07-25 17:00 . 2011-07-25 17:01 -------- d-----w- c:\program files\trend micro
2011-07-25 17:00 . 2011-07-25 17:01 -------- d-----w- C:\rsit
2011-07-25 13:55 . 2011-07-25 13:55 -------- d-----w- c:\program files\ESET
2011-07-25 12:43 . 2011-07-25 12:43 -------- d-----w- c:\documents and settings\LocalService\Nabídka Start
2011-07-25 11:58 . 2011-07-25 11:58 -------- d-----w- c:\windows\system32\wbem\Framework
2011-07-24 20:28 . 2011-07-24 21:41 -------- d-----w- c:\documents and settings\Petra\Data aplikací\TeamViewer
2011-07-24 20:28 . 2011-07-24 20:28 -------- d-----w- c:\program files\TeamViewer
2011-07-22 14:50 . 2011-07-22 14:50 -------- d-sh--w- c:\documents and settings\All Users.WINDOWS\Data aplikací\DSS
2011-07-22 14:50 . 2011-07-22 14:50 -------- d-----w- c:\documents and settings\All Users.WINDOWS\Data aplikací\Codemasters
2011-07-22 14:43 . 2011-07-22 14:43 -------- d-----w- c:\windows\system32\xlive
2011-07-22 14:43 . 2011-07-22 14:43 -------- d-----w- c:\program files\Microsoft Games for Windows - LIVE
2011-07-22 14:42 . 2010-09-22 11:12 19087360 ----a-w- c:\windows\system32\mkl_blueripple.dll
2011-07-22 14:42 . 2011-03-19 13:16 1417216 ----a-w- c:\windows\system32\rapture3d_oal.dll
2011-07-22 14:42 . 2011-07-22 14:42 -------- d-----w- c:\program files\BRS
2011-07-21 16:35 . 2011-05-25 07:25 899688 ----a-w- c:\windows\system32\nvdispco3220150.dll
2011-07-21 16:35 . 2011-05-25 07:25 865896 ----a-w- c:\windows\system32\nvgenco322090.dll
2011-07-21 16:10 . 2011-07-21 16:10 -------- d-----w- c:\documents and settings\UpdatusUser
2011-07-21 16:10 . 2011-07-21 16:10 -------- d-----w- c:\documents and settings\All Users.WINDOWS\Data aplikací\NVIDIA
2011-07-21 16:08 . 2011-04-08 05:14 944232 ----a-w- c:\windows\system32\nvdispco3220140.dll
2011-07-21 16:08 . 2011-04-08 05:14 855656 ----a-w- c:\windows\system32\nvgenco322060.dll
2011-07-21 14:28 . 2011-07-25 10:35 -------- d-----w- c:\windows\system32\drivers\AVG
2011-07-19 18:24 . 2011-07-19 18:24 -------- d-----w- c:\documents and settings\All Users.WINDOWS\Data aplikací\Trymedia
2011-07-11 21:48 . 2011-07-11 21:48 12800 ----a-w- c:\program files\Mozilla Firefox\plugins\npwachk.dll
2011-07-09 12:46 . 2011-07-09 12:46 -------- d-----w- c:\documents and settings\Petra\Data aplikací\OpenOffice.org
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-07-22 14:42 . 2011-04-25 13:41 444952 ----a-w- c:\windows\system32\wrap_oal.dll
2011-07-22 14:42 . 2011-04-25 13:41 109080 ----a-w- c:\windows\system32\OpenAL32.dll
2011-07-20 13:20 . 2011-06-05 08:55 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-07-11 12:17 . 2011-04-09 11:51 1698408 ----a-w- c:\windows\RtlExUpd.dll
2011-07-07 15:39 . 2011-04-09 11:51 6367848 ----a-w- c:\windows\system32\drivers\RtkHDAud.sys
2011-07-06 11:27 . 2011-04-09 11:51 60008 ----a-w- c:\windows\system32\RtkCoInstXP.dll
2011-07-05 14:08 . 2011-04-09 11:51 20053608 ----a-w- c:\windows\RTHDCPL.EXE
2011-06-30 14:15 . 2011-04-09 11:51 891496 ----a-w- c:\windows\system32\RTSndMgr.CPL
2011-06-17 16:11 . 2011-06-17 16:55 663424 ----a-w- c:\windows\system32\ezGOSvcApp.exe
2011-06-06 11:35 . 2004-08-18 12:00 1858944 ----a-w- c:\windows\system32\win32k.sys
2011-05-28 15:21 . 2011-05-28 15:16 21840 ----atw- c:\windows\system32\SIntfNT.dll
2011-05-28 15:21 . 2011-05-28 15:16 17212 ----atw- c:\windows\system32\SIntf32.dll
2011-05-28 15:21 . 2011-05-28 15:16 12067 ----atw- c:\windows\system32\SIntf16.dll
2011-05-28 15:12 . 2011-05-28 15:12 94208 ----a-w- c:\windows\DIIUnin.exe
2011-05-28 15:12 . 2011-05-28 15:12 2829 ----a-w- c:\windows\DIIUnin.pif
2011-05-25 07:26 . 2011-04-07 20:15 54272 ----a-w- c:\windows\system32\nvwddi.dll
2011-05-25 07:26 . 2011-04-07 20:15 154728 ----a-w- c:\windows\system32\nvsvc32.exe
2011-05-25 07:26 . 2011-04-07 20:15 111208 ----a-w- c:\windows\system32\nvmctray.dll
2011-05-25 07:26 . 2011-04-07 20:15 13895272 ----a-w- c:\windows\system32\nvcpl.dll
2011-05-25 07:26 . 2011-04-07 20:15 145000 ----a-w- c:\windows\system32\nvcolor.exe
2011-05-25 07:26 . 2011-04-07 20:15 543336 ----a-w- c:\windows\system32\easyupdatusapiu.dll
2011-05-25 07:25 . 2011-04-09 12:00 61440 ----a-w- c:\windows\system32\OpenCL.dll
2011-05-25 07:25 . 2011-04-09 12:00 16068608 ----a-w- c:\windows\system32\nvoglnt.dll
2011-05-25 07:25 . 2011-04-09 12:00 5332992 ----a-w- c:\windows\system32\nvcuda.dll
2011-05-25 07:25 . 2011-04-09 12:00 2808936 ----a-w- c:\windows\system32\nvcuvid.dll
2011-05-25 07:25 . 2011-04-09 12:00 2082408 ----a-w- c:\windows\system32\nvcuvenc.dll
2011-05-25 07:25 . 2011-04-09 12:00 13004800 ----a-w- c:\windows\system32\nvcompiler.dll
2011-05-25 07:25 . 2011-04-09 12:00 4198272 ----a-w- c:\windows\system32\nv4_disp.dll
2011-05-25 07:25 . 2011-04-09 12:00 2328576 ----a-w- c:\windows\system32\nvapi.dll
2011-05-25 07:25 . 2011-04-09 12:00 12753664 ----a-w- c:\windows\system32\drivers\nv4_mini.sys
2011-05-02 15:32 . 2011-04-09 11:00 692736 ----a-w- c:\windows\system32\inetcomm.dll
2011-04-29 17:25 . 2004-08-18 12:00 151552 ----a-w- c:\windows\system32\schannel.dll
2011-04-29 16:19 . 2004-08-18 12:00 456320 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2011-06-16 04:30 . 2011-04-29 17:22 142296 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BluetoothAuthenticationAgent"="bthprops.cpl" [2008-04-14 110592]
"RTHDCPL"="RTHDCPL.EXE" [2011-07-05 20053608]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2011-05-25 13895272]
"NvMediaCenter"="NvMCTray.dll" [2011-05-25 111208]
"nwiz"="c:\program files\NVIDIA Corporation\nView\nwiz.exe" [2011-05-04 1632360]
"sysdriver32.exe"="c:\windows\sysdriver32.exe" [BU]
"sysdriver32_.exe"="c:\windows\sysdriver32_.exe" [BU]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-08-25 98304]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableSecureUIAPaths"= 0 (0x0)
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"= "c:\program files\Windows Desktop Search\MSNLNamespaceMgr.dll" [2009-05-24 304128]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\progra~1\Bandoo\BndHook.dll
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Ubisoft\\Ubisoft Game Launcher\\UbisoftGameLauncher.exe"=
"c:\\Program Files\\BearShare Applications\\BearShare\\BearShare.exe"=
"d:\\Program Files\\Electronic Arts\\Need for Speed(TM) Hot Pursuit\\Launcher.exe"=
"c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"=
"d:\\Program Files\\Ventrilo\\Ventrilo.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\NVIDIA Corporation\\NVIDIA Updatus\\daemonu.exe"=
"d:\\Program Files\\Codemasters\\DiRT 3\\dirt3_game.exe"=
"c:\\Program Files\\TeamViewer\\Version6\\TeamViewer.exe"=
"c:\\Program Files\\TeamViewer\\Version6\\TeamViewer_Service.exe"=
.
R0 AVGIDSEH;AVGIDSEH;c:\windows\system32\drivers\AVGIDSEH.sys [22.2.2011 8:13 22992]
R0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\drivers\avgrkx86.sys [16.3.2011 16:03 32592]
R0 BtHidBus;Bluetooth HID Bus Service;c:\windows\system32\drivers\BtHidBus.sys [17.6.2009 14:01 20744]
R0 SmartDefragDriver;SmartDefragDriver;c:\windows\system32\drivers\SmartDefragDriver.sys [2.6.2011 18:04 13496]
R1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\drivers\avgldx86.sys [7.1.2011 6:41 248656]
R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [5.4.2011 0:59 297168]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\drivers\dtsoftbus01.sys [9.4.2011 20:06 218688]
R2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [21.7.2011 18:10 2214504]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdXP3.sys [25.7.2011 19:55 101904]
R3 Avgfwdx;Avgfwdx;c:\windows\system32\drivers\avgfwdx.sys [12.7.2010 4:33 30432]
R3 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\drivers\AVGIDSDriver.sys [14.4.2011 21:28 134480]
R3 AVGIDSFilter;AVGIDSFilter;c:\windows\system32\drivers\AVGIDSFilter.sys [10.2.2011 7:53 24144]
R3 AVGIDSShim;AVGIDSShim;c:\windows\system32\drivers\AVGIDSShim.sys [10.2.2011 7:53 27216]
S2 713xTVCard;SAA7135 TV Card;c:\windows\system32\drivers\SAA713x.sys [15.3.2005 12:00 277504]
S2 avgfws;AVG Firewall;"d:\program files\AVG\AVG10\avgfws.exe" --> d:\program files\AVG\AVG10\avgfws.exe [?]
S2 AVGIDSAgent;AVGIDSAgent;"d:\program files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe" --> d:\program files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe [?]
S2 avgwd;AVG WatchDog;"d:\program files\AVG\AVG10\avgwdsvc.exe" --> d:\program files\AVG\AVG10\avgwdsvc.exe [?]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [18.3.2010 13:16 130384]
S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [9.4.2011 13:51 1691480]
S3 AVG Security Toolbar Service;AVG Security Toolbar Service;d:\program files\AVG\AVG10\Toolbar\ToolbarBroker.exe --> d:\program files\AVG\AVG10\Toolbar\ToolbarBroker.exe [?]
S3 Avgfwfd;AVG network filter service;c:\windows\system32\drivers\avgfwdx.sys [12.7.2010 4:33 30432]
S3 btnetBUs;Bluetooth PAN Bus Service;c:\windows\system32\drivers\btnetBus.sys [17.6.2009 14:02 29192]
S3 CFcatchme;CFcatchme;\??\c:\combofix\CFcatchme.sys --> c:\combofix\CFcatchme.sys [?]
S3 IvtBtBUs;IVT Bluetooth Bus Service;c:\windows\system32\drivers\IvtBtBus.sys [17.6.2009 14:01 25480]
S3 Sony Ericsson PCCompanion;Sony Ericsson PCCompanion;c:\program files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe [26.4.2011 18:37 152064]
S3 WinRM;Windows Remote Management (WS-Management);c:\windows\system32\svchost.exe -k WINRM [18.8.2004 14:00 14336]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [18.3.2010 13:16 753504]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
WINRM REG_MULTI_SZ WINRM
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
TCP: Interfaces\{29CBF4D9-3275-4E5A-AEF6-996C387710D2}: NameServer = 62.84.128.6,62.84.132.6
FF - ProfilePath - c:\documents and settings\Petra\Data aplikací\Mozilla\Firefox\Profiles\z57hpwvq.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.ogame.cz
FF - user.js: browser.cache.memory.capacity - 16000
FF - user.js: browser.display.show_image_placeholders - true
FF - user.js: browser.chrome.favicons - false
FF - user.js: browser.turbo.enabled - true
FF - user.js: browser.urlbar.autocomplete.enabled - true
FF - user.js: browser.urlbar.autofill - true
FF - user.js: content.max.tokenizing.time - 2250000
FF - user.js: content.notify.backoffcount - 5
FF - user.js: content.notify.interval - 750000
FF - user.js: content.notify.ontimer - true
FF - user.js: content.notify.ontimer - true
FF - user.js: content.switch.threshold - 750000
FF - user.js: dom.disable_window_status_change - true
FF - user.js: network.http.max-connections - 32
FF - user.js: network.http.max-connections-per-server - 8
FF - user.js: network.http.max-persistent-connections-per-proxy - 8
FF - user.js: network.http.max-persistent-connections-per-server - 4
FF - user.js: network.http.pipelining - true
FF - user.js: network.http.pipelining.maxrequests - 8
FF - user.js: network.http.proxy.pipelining - true
FF - user.js: network.http.request.max-start-delay - 0
FF - user.js: nglayout.initialpaint.delay - 750
FF - user.js: plugin.expose_full_path - true
FF - user.js: ui.submenuDelay - 0
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
HKLM-Run-l1rezerv.exe - c:\windows\l1rezerv.exe
HKLM-Run-systemup - c:\windows\systemup.exe
SafeBoot-IMFservice
AddRemove-Advanced SystemCare 4_is1 - d:\program files\Advanced SystemCare 4\unins000.exe
AddRemove-Game Booster_is1 - d:\program files\IObit\Game Booster\unins000.exe
AddRemove-IObit Malware Fighter_is1 - d:\program files\IObit\IObit Malware Fighter\unins000.exe
AddRemove-Protected Folder_is1 - d:\program files\IObit\Protected Folder\unins000.exe
AddRemove-Smart Defrag 2_is1 - d:\program files\IObit\Smart Defrag 2\unins000.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-07-25 21:05
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'winlogon.exe'(1356)
c:\windows\system32\Ati2evxx.dll
c:\windows\system32\atiadlxx.dll
.
- - - - - - - > 'explorer.exe'(2824)
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\Ati2evxx.exe
c:\windows\system32\Ati2evxx.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
c:\progra~1\Bandoo\Bandoo.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
c:\windows\system32\rundll32.exe
c:\windows\RTHDCPL.EXE
c:\program files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
c:\program files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
.
**************************************************************************
.
Celkový čas: 2011-07-25 21:08:33 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-07-25 19:08
ComboFix2.txt 2011-07-25 18:15
.
Před spuštěním: Volných bajtů: 29 953 495 040
Po spuštění: Volných bajtů: 29 550 333 952
.
- - End Of File - - 1A5CE0AD1F229A503A8A5A372F370469

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Další FB vir

#13 Příspěvek od vyosek »

Jeste jeden skript - postup je stejny

Kód: Vybrat vše

KillAll::

Registry::
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"sysdriver32.exe"=-
"sysdriver32_.exe"=-
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"D:\Downloads\Flash-Player.exe"=-
"C:\WINDOWS\update.1\svchost.exe"=-
"C:\WINDOWS\update.tray-12-0\svchost.exe"=-
"C:\WINDOWS\update.2\svchost.exe"=-

Collect::D:\Downloads\Flash-Player.exe

Reboot::
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Jinoch
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 30 lis 2006 21:45

Re: Další FB vir

#14 Příspěvek od Jinoch »

Jinak při každém spuštěním ComboFixu mi to píše, že AVG residenntní štíty jsou aktivní, i když tu AVG nemám... Tak dávám vždy "Ano".

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Další FB vir

#15 Příspěvek od vyosek »

:arrow: Pustte tam jeste remover http://download.avg.com/filedir/util/su ... 1_1184.exe ten ho da do pryc
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Odpovědět