Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

FB vir (aktualizace abdobe reader) - část první

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
meda
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 26 črc 2011 11:36

FB vir (aktualizace abdobe reader) - část první

#1 Příspěvek od meda »

Logfile of random's system information tool 1.09 (written by random/random)
Run by Meda at 2003-01-10 12:22:31
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 12 GB (48%) free of 25 GB
Total RAM: 511 MB (50% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:24:30, on 10.1.2003
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\Mixer.exe
C:\WINDOWS\system32\RunDll32.exe
C:\WINDOWS\system32\RunDll32.exe
C:\Program Files\Labtec\Labtec Keyboard-Desktop Software\DsiMmKbd.EXE
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
C:\WINDOWS\update.tray-8-0\svchost.exe
C:\WINDOWS\update.tray-12-0\svchost.exe
C:\WINDOWS\l1rezerv.exe
C:\WINDOWS\systemup.exe
D:\avast\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
D:\avast\aswUpdSv.exe
D:\avast\ashServ.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\update.2\svchost.exe
C:\WINDOWS\sysdriver32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\update.1\svchost.exe
C:\WINDOWS\update.2\svchost.exe
D:\avast\setup\avast.setup
D:\avast\ashMaiSv.exe
D:\avast\ashWebSv.exe
C:\WINDOWS\update.5.0\svchost.exe
C:\WINDOWS\update.5.0\svchost.exe
C:\Documents and Settings\Meda\Plocha\RSIT.exe
C:\Program Files\trend micro\Meda.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG10\avgssie.dll (file missing)
O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll (file missing)
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll (file missing)
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [C-Media Mixer] Mixer.exe /startup
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [CmPCIaudio] RunDll32 CMICNFG3.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [LabtecKB] C:\Program Files\Labtec\Labtec Keyboard-Desktop Software\DsiMmKbd.EXE
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [wxpdrv] C:\WINDOWS\services32.exe
O4 - HKLM\..\Run: [tray_ico0] C:\WINDOWS\update.tray-8-0\svchost.exe
O4 - HKLM\..\Run: [tray_ico1] C:\WINDOWS\update.tray-12-0\svchost.exe
O4 - HKLM\..\Run: [1350150.exe] "C:\WINDOWS\TEMP\1350150.exe"
O4 - HKLM\..\Run: [sysdriver32.exe] "C:\WINDOWS\sysdriver32.exe" rezerv
O4 - HKLM\..\Run: [sysdriver32_.exe] "C:\WINDOWS\sysdriver32_.exe" rezerv
O4 - HKLM\..\Run: [2972590.exe] "C:\DOCUME~1\Meda\LOCALS~1\Temp\2972590.exe"
O4 - HKLM\..\Run: [5874524.exe] "C:\DOCUME~1\Meda\LOCALS~1\Temp\5874524.exe"
O4 - HKLM\..\Run: [3224756.exe] "C:\WINDOWS\TEMP\3224756.exe"
O4 - HKLM\..\Run: [4178942.exe] "C:\DOCUME~1\Meda\LOCALS~1\Temp\4178942.exe"
O4 - HKLM\..\Run: [8181215.exe] "C:\WINDOWS\TEMP\8181215.exe"
O4 - HKLM\..\Run: [22260774-loader2.exe] "C:\WINDOWS\TEMP\22260774-loader2.exe"
O4 - HKLM\..\Run: [l1rezerv.exe] "C:\WINDOWS\l1rezerv.exe"
O4 - HKLM\..\Run: [systemup] "C:\WINDOWS\systemup.exe" stand
O4 - HKLM\..\Run: [AVG_TRAY] C:\Program Files\AVG\AVG10\avgtray.exe
O4 - HKLM\..\Run: [avast!] D:\avast\ashDisp.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Meda\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O9 - Extra button: HP Smart Select - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: avgsecuritytoolbar - {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - C:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll (file missing)
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG10\avgpp.dll (file missing)
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Unknown owner - C:\Program Files\Avira\AntiVir Desktop\sched.exe (file missing)
O23 - Service: Avira AntiVir Guard (AntiVirService) - Unknown owner - C:\Program Files\Avira\AntiVir Desktop\avguard.exe (file missing)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - D:\avast\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - D:\avast\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - D:\avast\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - D:\avast\ashWebSv.exe
O23 - Service: AVG Security Toolbar Service - Unknown owner - C:\Program Files\AVG\AVG10\Toolbar\ToolbarBroker.exe (file missing)
O23 - Service: AVGIDSAgent - Unknown owner - C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe (file missing)
O23 - Service: AVG WatchDog (avgwd) - Unknown owner - C:\Program Files\AVG\AVG10\avgwdsvc.exe (file missing)
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: srvbtcclient - Unknown owner - C:\WINDOWS\update.5.0\svchost.exe
O23 - Service: srviecheck - Unknown owner - C:\WINDOWS\update.2\svchost.exe
O23 - Service: srvsysdriver32 - Unknown owner - C:\WINDOWS\sysdriver32.exe
O23 - Service: wxpdrivers - Unknown owner - C:\WINDOWS\update.1\svchost.exe

--
End of file - 8573 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1078081533-515967899-682003330-1003Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1078081533-515967899-682003330-1003UA.job
C:\WINDOWS\tasks\WGASetup.job

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\Meda\Data aplikací\Mozilla\Firefox\Profiles\qor8117j.default

prefs.js - "browser.startup.homepage" - "http://seznam.cz"
prefs.js - "extensions.enabledItems" - "{20a82645-c095-46ed-80e3-08825760534b}:1.1, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.18"

"smartwebprinting@hp.com"=C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn2
"{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"{1E73965B-8B48-48be-9C8D-68B920ABC1C4}"=C:\Program Files\AVG\AVG10\Firefox4\
"avg@igeared"=C:\Program Files\AVG\AVG10\Toolbar\Firefox\avg@igeared


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files\Google\Picasa3\npPicasa3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files\Mozilla Firefox\components\
browser.xpt
browserdirprovider.dll
brwsrcmp.dll
components.list
FeedConverter.js
FeedProcessor.js
FeedWriter.js
fuelApplication.js
GPSDGeolocationProvider.js
jsconsole-clhandler.js
NetworkGeolocationProvider.js
nsAddonRepository.js
nsBadCertHandler.js
nsBlocklistService.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsContentDispatchChooser.js
nsContentPrefService.js
nsDefaultCLH.js
nsDownloadManagerUI.js
nsExtensionManager.js
nsFormAutoComplete.js
nsHandlerService.js
nsHelperAppDlg.js
nsINIProcessor.js
nsLivemarkService.js
nsLoginInfo.js
nsLoginManager.js
nsLoginManagerPrompter.js
nsMicrosummaryService.js
nsPlacesAutoComplete.js
nsPlacesDBFlush.js
nsPlacesTransactionsService.js
nsPrivateBrowsingService.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsTaggingService.js
nsTryToClose.js
nsUpdateService.js
nsUpdateServiceStub.js
nsUpdateTimerManager.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsURLFormatter.js
nsWebHandlerApp.js
pluginGlue.js
storage-Legacy.js
storage-mozStorage.js
txEXSLTRegExFunctions.js
WebContentConverter.js

C:\Program Files\Mozilla Firefox\plugins\
npnul32.dll
nppdf32.dll

C:\Program Files\Mozilla Firefox\searchplugins\
avg_igeared.xml
google.xml
jyxo-cz.xml
mall-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Documents and Settings\Meda\Data aplikací\Mozilla\Firefox\Profiles\qor8117j.default\extensions\
{20a82645-c095-46ed-80e3-08825760534b}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2008-03-27 322880]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG10\avgssie.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A3BC75A2-1F87-4686-AA43-5347D756017C}]
AVG Security Toolbar BHO - C:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2008-03-27 501056]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - AVG Security Toolbar - C:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll []

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2005-12-10 7311360]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2005-12-10 86016]
"C-Media Mixer"=Mixer.exe /startup []
"Cmaudio"=RunDll32 cmicnfg.cpl,CMICtrlWnd []
"CmPCIaudio"=RunDll32 CMICNFG3.cpl,CMICtrlWnd []
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe /min []
"LabtecKB"=C:\Program Files\Labtec\Labtec Keyboard-Desktop Software\DsiMmKbd.EXE [2003-04-08 184320]
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2008-03-25 49152]
"hpqSRMon"= []
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2011-01-31 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-20 932288]
"NeroCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"wxpdrv"=C:\WINDOWS\services32.exe []
"tray_ico"= []
"tray_ico0"=C:\WINDOWS\update.tray-8-0\svchost.exe [2003-01-09 1185280]
"tray_ico1"=C:\WINDOWS\update.tray-12-0\svchost.exe [2003-01-09 1185280]
"tray_ico2"= []
"tray_ico3"= []
"tray_ico4"= []
"1350150.exe"=C:\WINDOWS\TEMP\1350150.exe [2003-01-09 247296]
"sysdriver32.exe"=C:\WINDOWS\sysdriver32.exe [2003-01-09 256000]
"sysdriver32_.exe"=C:\WINDOWS\sysdriver32_.exe [2003-01-09 256000]
"2972590.exe"=C:\DOCUME~1\Meda\LOCALS~1\Temp\2972590.exe [2003-01-09 247296]
"5874524.exe"=C:\DOCUME~1\Meda\LOCALS~1\Temp\5874524.exe [2003-01-09 247296]
"3224756.exe"=C:\WINDOWS\TEMP\3224756.exe [2003-01-09 247296]
"4178942.exe"=C:\DOCUME~1\Meda\LOCALS~1\Temp\4178942.exe [2003-01-09 256000]
"8181215.exe"=C:\WINDOWS\TEMP\8181215.exe [2003-01-09 495616]
"22260774-loader2.exe"=C:\WINDOWS\TEMP\22260774-loader2.exe [2003-01-09 256000]
"l1rezerv.exe"=C:\WINDOWS\l1rezerv.exe [2003-01-09 232960]
"systemup"=C:\WINDOWS\systemup.exe [2003-01-09 114176]
"AVG_TRAY"=C:\Program Files\AVG\AVG10\avgtray.exe []
"avast!"=D:\avast\ashDisp.exe [2006-08-05 108160]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"Google Update"=C:\Documents and Settings\Meda\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [2011-01-23 136176]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\wxpdrivers]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\wxpdrivers]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLUA"=0
"EnableSecureUIAPaths"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"D:\Programky\QIP 8095\qip.exe"="D:\Programky\QIP 8095\qip.exe:*:Enabled:Quiet Internet Pager"
"C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe:*:Enabled:hpqtra08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe:*:Enabled:hpqste08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hposid01.exe"="C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:*:Enabled:hposid01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe:*:Enabled:hpiscnapp.exe"
"C:\Program Files\Common Files\HP\Digital Imaging\bin\hpqPhotoCrm.exe"="C:\Program Files\Common Files\HP\Digital Imaging\bin\hpqPhotoCrm.exe:*:Enabled:hpqphotocrm.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqpsapp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqpsapp.exe:*:Enabled:hpqpsapp.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqpse.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqpse.exe:*:Enabled:hpqpse.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqsudi.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqsudi.exe:*:Enabled:hpqsudi.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe:*:Enabled:hpqgplgtupl.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe:*:Enabled:hpqgpc01.exe"
"C:\Prograky\XBMC\XBMC.exe"="C:\Prograky\XBMC\XBMC.exe:*:Enabled:XBMC"
"C:\Documents and Settings\Meda\Dokumenty\Stažené soubory\Flash-Player.exe"="C:\Documents and Settings\Meda\Dokumenty\Stažené soubory\Flash-Player.exe:*:Enabled:C:\Documents and Settings\Meda\Dokumenty\Stažené soubory\Flash-Player.exe"
"C:\WINDOWS\update.1\svchost.exe"="C:\WINDOWS\update.1\svchost.exe:*:Enabled:C:\WINDOWS\update.1\svchost.exe"
"C:\WINDOWS\update.tray-8-0\svchost.exe"="C:\WINDOWS\update.tray-8-0\svchost.exe:*:Enabled:C:\WINDOWS\update.tray-8-0\svchost.exe"
"C:\WINDOWS\update.2\svchost.exe"="C:\WINDOWS\update.2\svchost.exe:*:Enabled:C:\WINDOWS\update.2\svchost.exe"
"C:\Program Files\AVG\AVG10\avgnsx.exe"="C:\Program Files\AVG\AVG10\avgnsx.exe:*:Enabled:Webový štít"
"C:\Program Files\AVG\AVG10\avgmfapx.exe"="C:\Program Files\AVG\AVG10\avgmfapx.exe:*:Enabled:Instalátor AVG"
"C:\Program Files\AVG\AVG10\avgemcx.exe"="C:\Program Files\AVG\AVG10\avgemcx.exe:*:Enabled:Obecná kontrola pošty"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe:*:Enabled:hpqtra08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe:*:Enabled:hpqste08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hposid01.exe"="C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:*:Enabled:hposid01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe:*:Enabled:hpiscnapp.exe"
"C:\Program Files\Common Files\HP\Digital Imaging\bin\hpqPhotoCrm.exe"="C:\Program Files\Common Files\HP\Digital Imaging\bin\hpqPhotoCrm.exe:*:Enabled:hpqphotocrm.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqpsapp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqpsapp.exe:*:Enabled:hpqpsapp.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqpse.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqpse.exe:*:Enabled:hpqpse.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqsudi.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqsudi.exe:*:Enabled:hpqsudi.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe:*:Enabled:hpqgplgtupl.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe:*:Enabled:hpqgpc01.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"midi"=wdmaud.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave1"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer2"=wdmaud.drv

======List of files/folders created in the last 1 month======

2011-06-29 19:30:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2541763$
2011-06-16 14:27:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2476490$
2011-06-16 14:27:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2503665$
2011-06-16 14:27:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2535512$
2011-06-16 14:26:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2536276$
2011-06-16 14:25:14 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893$
2011-05-26 19:49:24 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2011-05-25 21:05:14 ----D---- C:\WINDOWS\system32\XPSViewer
2011-05-25 21:05:07 ----D---- C:\Program Files\MSBuild
2011-05-25 21:05:04 ----D---- C:\WINDOWS\system32\en-US
2011-05-25 21:04:55 ----D---- C:\Program Files\Reference Assemblies
2011-05-25 21:04:20 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2011-05-25 21:04:20 ----N---- C:\WINDOWS\system32\prntvpt.dll
2011-05-25 21:04:19 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2011-05-25 21:04:19 ----D---- C:\5c9679a7e92f9e04a19b05bb84
2011-05-24 13:59:38 ----RSD---- C:\WINDOWS\assembly
2011-05-24 13:54:46 ----D---- C:\WINDOWS\Microsoft.NET
2011-05-24 12:45:35 ----D---- C:\Documents and Settings\Meda\Data aplikací\EveryWAN Remote Support Personal Edition
2011-05-02 18:41:40 ----A---- C:\WINDOWS\Codec Pack - All In 1 Setup Log.txt
2011-04-15 14:49:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2485663$
2011-04-15 14:49:11 ----HDC---- C:\WINDOWS\$NtUninstallKB2506223$
2011-04-15 14:48:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2412687$
2011-04-15 14:48:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2508272$
2011-04-15 14:48:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2503658$
2011-04-15 14:48:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2507618$
2011-04-15 14:48:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2508429$
2011-04-15 14:47:53 ----HDC---- C:\WINDOWS\$NtUninstallKB2511455$
2011-04-15 14:47:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2506212$
2011-04-15 14:45:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2509553$
2011-04-13 23:40:10 ----A---- C:\WINDOWS\system32\GPhotos.scr
2011-03-16 19:37:42 ----HDC---- C:\WINDOWS\$NtUninstallKB971029$
2011-03-09 20:20:10 ----HDC---- C:\WINDOWS\$NtUninstallKB2479943$
2011-03-09 20:18:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2481109$
2011-03-06 00:08:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2524375$
2011-02-10 03:06:21 ----HDC---- C:\WINDOWS\$NtUninstallKB2478971$
2011-02-10 03:06:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2485376$
2011-02-10 03:05:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2479628$
2011-02-10 03:05:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2483185$
2011-02-10 03:01:26 ----HDC---- C:\WINDOWS\$NtUninstallKB2476687$
2011-02-10 03:01:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2478960$
2011-02-10 03:01:09 ----A---- C:\WINDOWS\imsins.BAK
2011-02-10 03:00:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2393802$
2011-01-21 14:23:33 ----D---- C:\Documents and Settings\Meda\Data aplikací\WinRAR
2011-01-16 19:46:58 ----D---- C:\Documents and Settings\Meda\Data aplikací\XBMC
2011-01-16 19:46:16 ----A---- C:\WINDOWS\system32\D3DCompiler_43.dll
2011-01-16 19:46:12 ----A---- C:\WINDOWS\system32\D3DX9_43.dll
2011-01-16 19:44:25 ----D---- C:\Prograky
2011-01-16 19:28:45 ----D---- C:\Program Files\Microsoft SDKs
2011-01-16 19:18:37 ----D---- C:\Documents and Settings\Meda\Data aplikací\J River
2011-01-16 19:12:31 ----N---- C:\WINDOWS\system32\AudDevicePlugin.dll
2011-01-16 19:12:31 ----N---- C:\WINDOWS\system32\AReadyLB.dll
2011-01-16 19:12:31 ----A---- C:\WINDOWS\system32\w3url.dll
2011-01-16 19:12:26 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2011-01-16 19:12:19 ----D---- C:\WINDOWS\Logs
2011-01-16 19:11:45 ----D---- C:\Program Files\J River
2011-01-13 02:40:21 ----HDC---- C:\WINDOWS\$NtUninstallKB2419632$
2011-01-08 03:03:29 ----A---- C:\WINDOWS\system32\MediaIO1.dll
2011-01-08 03:03:27 ----A---- C:\WINDOWS\system32\MioPlayer2.dll
2010-12-16 01:05:37 ----HDC---- C:\WINDOWS\$NtUninstallKB2296199$
2010-12-16 01:05:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2010-12-16 01:04:53 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2010-12-16 01:04:45 ----HDC---- C:\WINDOWS\$NtUninstallKB2443685$
2010-12-16 01:04:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2436673$
2010-12-16 01:04:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2467659$
2010-12-16 01:02:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2010-12-09 18:59:36 ----D---- C:\Documents and Settings\Meda\Data aplikací\Ahead
2010-12-09 18:57:02 ----RA---- C:\WINDOWS\system32\picn20.dll
2010-12-09 18:57:00 ----RA---- C:\WINDOWS\system32\imagx5.dll
2010-12-09 18:56:59 ----RA---- C:\WINDOWS\system32\ImagXpr5.dll
2010-12-09 18:56:59 ----RA---- C:\WINDOWS\system32\imagr5.dll
2010-12-09 18:56:53 ----RA---- C:\WINDOWS\system32\NeroCheck.exe
2010-12-09 18:56:53 ----D---- C:\Program Files\Common Files\Ahead
2010-11-27 14:56:10 ----D---- C:\Documents and Settings\All Users\Data aplikací\Windows Genuine Advantage
2010-11-19 19:18:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2387149$
2010-11-19 19:18:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2279986$
2010-11-19 19:18:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2345886$
2010-11-19 19:18:21 ----HDC---- C:\WINDOWS\$NtUninstallKB2259922$
2010-11-19 19:18:11 ----HDC---- C:\WINDOWS\$NtUninstallKB2296011$
2010-11-19 19:18:01 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2010-11-19 19:17:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2378111_WM9$
2010-11-19 19:17:42 ----HDC---- C:\WINDOWS\$NtUninstallKB982132$
2010-11-19 19:17:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$
2010-11-19 19:14:51 ----HDC---- C:\WINDOWS\$NtUninstallKB979687$
2010-11-19 19:14:41 ----HDC---- C:\WINDOWS\$NtUninstallKB2121546$
2010-11-19 19:13:51 ----HDC---- C:\WINDOWS\$NtUninstallKB981322$
2010-11-19 19:13:41 ----HDC---- C:\WINDOWS\$NtUninstallKB981957$
2010-11-19 19:13:31 ----HDC---- C:\WINDOWS\$NtUninstallKB2141007$
2010-11-19 19:13:14 ----HDC---- C:\WINDOWS\$NtUninstallKB2158563$
2010-11-19 19:12:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2360937$
2010-09-08 01:21:54 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2010-09-02 16:06:28 ----HDC---- C:\WINDOWS\$NtUninstallKB960763$
2010-09-02 16:06:06 ----D---- C:\Program Files\MSXML 4.0
2010-09-01 13:57:04 ----A---- C:\WINDOWS\system32\drivers\usbscan.sys
2010-09-01 13:52:12 ----D---- C:\Documents and Settings\All Users\Data aplikací\Hewlett-Packard
2010-09-01 13:52:00 ----A---- C:\WINDOWS\system32\hpz3l5mu.dll
2010-09-01 13:50:02 ----A---- C:\WINDOWS\system32\hpzids01.dll
2010-09-01 13:50:02 ----A---- C:\WINDOWS\system32\hpowiax7.dll
2010-09-01 13:50:01 ----A---- C:\WINDOWS\system32\hpovst15.dll
2010-09-01 13:50:01 ----A---- C:\WINDOWS\system32\hpotscl6.dll
2010-09-01 13:13:55 ----D---- C:\Documents and Settings\Meda\Data aplikací\HP
2010-09-01 12:37:21 ----D---- C:\Documents and Settings\All Users\Data aplikací\HP
2010-09-01 12:36:41 ----D---- C:\Program Files\Common Files\HP
2010-09-01 12:36:38 ----D---- C:\Program Files\Hewlett-Packard
2010-09-01 12:36:29 ----D---- C:\Program Files\Common Files\Hewlett-Packard
2010-09-01 12:35:40 ----A---- C:\WINDOWS\system32\hppldcoi.dll
2010-09-01 12:35:40 ----A---- C:\WINDOWS\system32\drivers\HPZius12.sys
2010-09-01 12:35:39 ----A---- C:\WINDOWS\system32\drivers\HPZipr12.sys
2010-09-01 12:35:38 ----A---- C:\WINDOWS\system32\drivers\HPZid412.sys
2010-09-01 12:35:31 ----DC---- C:\WINDOWS\system32\DRVSTORE
2010-09-01 12:35:13 ----A---- C:\WINDOWS\system32\drivers\usbprint.sys
2010-09-01 12:34:21 ----HD---- C:\Config.Msi
2010-09-01 12:31:30 ----D---- C:\Program Files\HP
2010-08-11 13:31:12 ----HDC---- C:\WINDOWS\$NtUninstallKB982214$
2010-08-11 13:31:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2010-08-11 13:30:42 ----HDC---- C:\WINDOWS\$NtUninstallKB981852$
2010-08-11 13:30:28 ----HDC---- C:\WINDOWS\$NtUninstallKB2079403$
2010-08-11 13:29:41 ----HDC---- C:\WINDOWS\$NtUninstallKB2160329$
2010-08-11 13:29:26 ----HDC---- C:\WINDOWS\$NtUninstallKB980436$
2010-08-11 13:27:34 ----HDC---- C:\WINDOWS\$NtUninstallKB981997$
2010-08-11 13:27:20 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2010-08-10 11:53:53 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2010-08-10 11:53:35 ----HDC---- C:\WINDOWS\$NtUninstallKB929399$
2010-08-10 11:53:18 ----HDC---- C:\WINDOWS\$NtUninstallKB939683$
2010-08-10 11:52:53 ----HDC---- C:\WINDOWS\$NtUninstallKB954154_WM11$
2010-08-09 15:49:34 ----N---- C:\WINDOWS\system32\spmsg.dll
2010-08-09 15:49:33 ----HDC---- C:\WINDOWS\$NtUninstallMSCompPackV1$
2010-08-09 15:49:17 ----D---- C:\Program Files\Windows Media Connect 2
2010-08-09 15:49:04 ----HDC---- C:\WINDOWS\$NtUninstallwmp11$
2010-08-09 15:48:15 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2010-08-09 15:47:45 ----D---- C:\WINDOWS\system32\LogFiles
2010-08-09 15:47:45 ----D---- C:\WINDOWS\system32\drivers\UMDF
2010-08-09 15:47:40 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2010-08-03 12:46:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2286198$
2010-07-28 13:12:04 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2010-07-28 13:11:52 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2010-07-27 15:57:37 ----HDC---- C:\WINDOWS\$NtUninstallKB980218$
2010-07-27 15:57:14 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2010-07-27 15:56:54 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2010-07-27 15:56:32 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2010-07-27 15:56:10 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2010-07-27 15:55:49 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2010-07-27 15:55:29 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2010-07-27 15:54:54 ----HDC---- C:\WINDOWS\$NtUninstallKB971468$
2010-07-27 15:54:13 ----HDC---- C:\WINDOWS\$NtUninstallKB979683$
2010-07-27 15:53:49 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2010-07-27 15:53:40 ----HDC---- C:\WINDOWS\$NtUninstallKB980195$
2010-07-27 15:53:30 ----HDC---- C:\WINDOWS\$NtUninstallKB980232$
2010-07-27 15:53:19 ----HDC---- C:\WINDOWS\$NtUninstallKB979402_WM9$
2010-07-27 15:53:10 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-07-27 15:53:05 ----D---- C:\WINDOWS\system32\KB905474
2010-07-27 15:52:47 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-07-27 15:52:32 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2010-07-27 15:52:13 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-07-27 15:51:54 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2010-07-27 15:51:39 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2010-07-27 15:51:24 ----HDC---- C:\WINDOWS\$NtUninstallKB978037$
2010-07-27 15:51:03 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2010-07-27 15:50:43 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2010-07-27 15:50:23 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2010-07-27 15:49:56 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2010-07-27 15:49:43 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2010-07-27 15:49:23 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-07-27 15:48:58 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2010-07-27 15:46:02 ----A---- C:\WINDOWS\system32\MRT.exe
2010-07-27 15:45:52 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-07-27 15:45:34 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2010-07-27 15:45:24 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-07-27 15:45:15 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2010-07-27 15:45:06 ----HDC---- C:\WINDOWS\$NtUninstallKB975561$
2010-07-27 15:44:57 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2010-07-27 15:44:49 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2010-07-27 15:44:36 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2010-07-27 15:44:28 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-07-27 15:44:18 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2010-07-27 15:44:06 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2010-07-27 15:43:56 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2010-07-27 15:43:42 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2010-07-27 15:43:33 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2010-07-27 15:43:23 ----HDC---- C:\WINDOWS\$NtUninstallKB981793$
2010-07-27 15:43:15 ----HDC---- C:\WINDOWS\$NtUninstallKB978601$
2010-07-27 15:43:01 ----HDC---- C:\WINDOWS\$NtUninstallKB979559$
2010-07-27 15:42:11 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2010-07-27 15:42:01 ----HDC---- C:\WINDOWS\$NtUninstallKB978695_WM9$
2010-07-27 15:41:46 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-07-27 15:41:33 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2010-07-27 15:41:21 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2010-07-27 15:41:10 ----HDC---- C:\WINDOWS\$NtUninstallKB950760$
2010-07-27 15:41:01 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-07-27 15:40:49 ----HDC---- C:\WINDOWS\$NtUninstallKB954459$
2010-07-27 15:40:24 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2010-07-27 15:40:15 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2010-07-27 15:39:49 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2010-07-27 15:39:38 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2010-07-27 15:39:29 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2010-07-27 15:39:20 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2010-07-27 15:39:12 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2010-07-27 15:39:03 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2010-07-27 15:38:55 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2010-07-27 15:38:44 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2010-07-27 15:38:34 ----HDC---- C:\WINDOWS\$NtUninstallKB975562$
2010-07-27 15:38:21 ----D---- C:\WINDOWS\ie8updates
2010-07-27 15:38:12 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2010-07-27 15:38:02 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2010-07-27 15:37:52 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2010-07-27 15:37:38 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2010-07-27 15:37:29 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-07-27 15:37:10 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-07-27 15:30:08 ----N---- C:\WINDOWS\system32\browserchoice.exe
2010-07-27 15:16:43 ----D---- C:\WINDOWS\system32\PreInstall
2010-07-27 15:16:40 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2010-07-27 15:16:39 ----HD---- C:\WINDOWS\$hf_mig$
2010-07-27 15:09:43 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2010-07-27 15:05:52 ----D---- C:\WINDOWS\WBEM
2010-07-27 15:04:50 ----HDC---- C:\WINDOWS\ie8
2010-07-25 20:58:52 ----D---- C:\Documents and Settings\Meda\Data aplikací\Avira
2010-07-25 20:56:25 ----D---- C:\Program Files\OpenOffice.org 3
2010-07-25 20:52:29 ----A---- C:\WINDOWS\system32\drivers\ssmdrv.sys
2010-07-25 20:52:28 ----A---- C:\WINDOWS\system32\drivers\avipbb.sys
2010-07-25 20:52:28 ----A---- C:\WINDOWS\system32\drivers\avgntmgr.sys
2010-07-25 20:52:28 ----A---- C:\WINDOWS\system32\drivers\avgntflt.sys
2010-07-25 20:52:27 ----A---- C:\WINDOWS\system32\drivers\avgntdd.sys
2010-07-25 20:50:13 ----HDC---- C:\WINDOWS\$NtUninstallKB952011$
2010-07-25 20:48:49 ----D---- C:\Program Files\Google
2010-07-25 20:48:35 ----D---- C:\Documents and Settings\Meda\Data aplikací\Macromedia
2010-07-25 20:48:35 ----D---- C:\Documents and Settings\Meda\Data aplikací\Adobe
2010-07-25 20:47:24 ----A---- C:\WINDOWS\nsreg.dat
2010-07-25 20:47:20 ----D---- C:\Documents and Settings\Meda\Data aplikací\Mozilla
2010-07-25 20:47:13 ----D---- C:\Program Files\Mozilla Firefox
2010-07-25 20:44:33 ----A---- C:\WINDOWS\mixerdef.ini
2010-07-25 20:42:28 ----A---- C:\WINDOWS\system32\CMRMDRV3.exe
2010-07-25 20:41:59 ----A---- C:\WINDOWS\CmiPCIUninstall.exe
2010-07-25 20:41:58 ----A---- C:\WINDOWS\cmudax3.ini
2010-07-25 20:41:53 ----D---- C:\Program Files\C-Media PCI Audio Device
2010-07-25 20:41:53 ----A---- C:\WINDOWS\system32\drivers\cmudax3.sys
2010-07-25 20:41:53 ----A---- C:\WINDOWS\system32\cmudax3.DLL
2010-07-25 20:41:40 ----D---- C:\PCI-8738-090401-5.12.8.1734(XP-RC-01)_FR
2010-07-25 20:38:58 ----RA---- C:\WINDOWS\system32\cmuda.dll
2010-07-25 20:38:58 ----RA---- C:\WINDOWS\system32\cmirmdrv.exe
2010-07-25 20:38:58 ----RA---- C:\WINDOWS\system32\cmirmdrv.dll
2010-07-25 20:38:56 ----RA---- C:\WINDOWS\system32\udaprop.dll
2010-07-25 20:38:56 ----RA---- C:\WINDOWS\system32\cmiwcnfg.dll
2010-07-25 20:38:55 ----RA---- C:\WINDOWS\system32\drivers\cmuda.sys
2010-07-25 20:29:37 ----RA---- C:\WINDOWS\cmijack.dat
2010-07-25 20:29:37 ----RA---- C:\WINDOWS\cmaudio.dat
2010-07-25 20:29:36 ----RA---- C:\WINDOWS\cmuninst.exe
2010-07-25 20:29:36 ----RA---- C:\WINDOWS\cmuninst.dat
2010-07-25 20:29:35 ----RA---- C:\WINDOWS\system32\cmnprop.dll
2010-07-25 20:29:35 ----RA---- C:\WINDOWS\mixer.exe
2010-07-25 20:29:34 ----RA---- C:\WINDOWS\system32\Audio3D.dll
2010-07-25 20:29:34 ----RA---- C:\WINDOWS\system32\a3d.dll
2010-07-25 20:29:32 ----RA---- C:\WINDOWS\system32\drivers\cmaudio.sys
2010-07-25 20:25:20 ----A---- C:\WINDOWS\CMISETUP.INI
2010-07-25 20:25:20 ----A---- C:\WINDOWS\CMCDPLAY.INI
2010-07-25 20:25:18 ----A---- C:\WINDOWS\Wininit.ini
2010-07-25 20:25:12 ----D---- C:\Program Files\C-Media 3D Audio
2010-07-25 20:25:12 ----A---- C:\WINDOWS\CMIUninstall.exe
2010-07-25 20:25:12 ----A---- C:\WINDOWS\CmiRmRedundDir.exe
2010-07-25 20:25:12 ----A---- C:\WINDOWS\CMIRmDriver.dll
2010-07-25 20:24:55 ----A---- C:\WINDOWS\IsUninst.exe
2010-07-25 20:16:32 ----D---- C:\WINDOWS\nview
2010-07-25 20:16:32 ----A---- C:\WINDOWS\system32\nvudisp.exe
2010-07-25 20:16:21 ----A---- C:\WINDOWS\system32\NVUNINST.EXE
2010-07-25 20:16:05 ----D---- C:\NVIDIA
2010-07-25 20:14:44 ----D---- C:\Program Files\InstallShield Installation Information
2010-07-25 20:13:27 ----A---- C:\WINDOWS\system32\difxapi.dll
2010-07-25 20:13:26 ----D---- C:\Program Files\VIA
2010-07-25 20:13:19 ----D---- C:\Program Files\Common Files\InstallShield
2010-07-25 20:13:00 ----A---- C:\WINDOWS\system32\drivers\videX32.sys
2010-07-25 20:12:58 ----D---- C:\VIA_HyperionPro_V524A
2010-07-25 20:11:35 ----A---- C:\WINDOWS\iun6002.exe
2010-07-25 20:09:05 ----D---- C:\Program Files\Codec Pack - All In 1
2010-07-25 20:06:51 ----D---- C:\WINDOWS\Prefetch
2010-07-25 20:03:48 ----D---- C:\Documents and Settings\Meda\Data aplikací\OpenOffice.org
2010-07-25 20:00:56 ----N---- C:\WINDOWS\system32\msxml6r.dll
2010-07-25 20:00:56 ----N---- C:\WINDOWS\system32\msxml6.dll
2010-07-25 20:00:45 ----N---- C:\WINDOWS\system32\smtpapi.dll
2010-07-25 20:00:45 ----N---- C:\WINDOWS\system32\rwnh.dll
2010-07-25 20:00:45 ----N---- C:\WINDOWS\system32\drivers\irbus.sys
2010-07-25 20:00:45 ----N---- C:\WINDOWS\system32\comsdupd.exe
2010-07-25 20:00:42 ----N---- C:\WINDOWS\system32\bitsprx4.dll
2010-07-25 20:00:42 ----N---- C:\WINDOWS\system32\azroles.dll
2010-07-25 20:00:42 ----N---- C:\WINDOWS\system32\ativvaxx.dll
2010-07-25 20:00:42 ----N---- C:\WINDOWS\system32\ativtmxx.dll
2010-07-25 20:00:42 ----N---- C:\WINDOWS\system32\ati3duag.dll
2010-07-25 20:00:42 ----N---- C:\WINDOWS\system32\ati3d1ag.dll
2010-07-25 20:00:42 ----N---- C:\WINDOWS\system32\ati2dvag.dll
2010-07-25 20:00:42 ----N---- C:\WINDOWS\system32\ati2dvaa.dll
2010-07-25 20:00:42 ----N---- C:\WINDOWS\system32\ati2cqag.dll
2010-07-25 20:00:42 ----N---- C:\WINDOWS\system32\aaclient.dll
2010-07-25 20:00:41 ----N---- C:\WINDOWS\system32\eappgnui.dll
2010-07-25 20:00:41 ----N---- C:\WINDOWS\system32\eappcfg.dll
2010-07-25 20:00:41 ----N---- C:\WINDOWS\system32\eapp3hst.dll
2010-07-25 20:00:41 ----N---- C:\WINDOWS\system32\eapolqec.dll
2010-07-25 20:00:41 ----N---- C:\WINDOWS\system32\dot3ui.dll
2010-07-25 20:00:41 ----N---- C:\WINDOWS\system32\dot3svc.dll
2010-07-25 20:00:41 ----N---- C:\WINDOWS\system32\dot3msm.dll
2010-07-25 20:00:41 ----N---- C:\WINDOWS\system32\dot3gpclnt.dll
2010-07-25 20:00:41 ----N---- C:\WINDOWS\system32\dot3dlg.dll
2010-07-25 20:00:41 ----N---- C:\WINDOWS\system32\dot3cfg.dll
2010-07-25 20:00:41 ----N---- C:\WINDOWS\system32\dot3api.dll
2010-07-25 20:00:41 ----N---- C:\WINDOWS\system32\dimsroam.dll
2010-07-25 20:00:41 ----N---- C:\WINDOWS\system32\dimsntfy.dll
2010-07-25 20:00:41 ----N---- C:\WINDOWS\system32\dhcpqec.dll
2010-07-25 20:00:41 ----N---- C:\WINDOWS\system32\credssp.dll
2010-07-25 20:00:40 ----N---- C:\WINDOWS\system32\eapsvc.dll
2010-07-25 20:00:40 ----N---- C:\WINDOWS\system32\eapqec.dll
2010-07-25 20:00:40 ----N---- C:\WINDOWS\system32\eappprxy.dll
2010-07-25 20:00:40 ----N---- C:\WINDOWS\system32\eapphost.dll
2010-07-25 20:00:39 ----N---- C:\WINDOWS\system32\kmsvc.dll
2010-07-25 20:00:39 ----N---- C:\WINDOWS\system32\kbdpash.dll
2010-07-25 20:00:39 ----N---- C:\WINDOWS\system32\kbdnepr.dll
2010-07-25 20:00:39 ----N---- C:\WINDOWS\system32\kbdiultn.dll
2010-07-25 20:00:39 ----N---- C:\WINDOWS\system32\kbdbhc.dll
2010-07-25 20:00:38 ----N---- C:\WINDOWS\system32\mssha.dll
2010-07-25 20:00:38 ----N---- C:\WINDOWS\system32\mmcperf.exe
2010-07-25 20:00:38 ----N---- C:\WINDOWS\system32\mmcfxcommon.dll
2010-07-25 20:00:38 ----N---- C:\WINDOWS\system32\mmcex.dll
2010-07-25 20:00:38 ----N---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2010-07-25 20:00:38 ----N---- C:\WINDOWS\system32\l2gpstore.dll
2010-07-25 20:00:37 ----N---- C:\WINDOWS\system32\napstat.exe
2010-07-25 20:00:37 ----N---- C:\WINDOWS\system32\napmontr.dll
2010-07-25 20:00:37 ----N---- C:\WINDOWS\system32\napipsec.dll
2010-07-25 20:00:37 ----N---- C:\WINDOWS\system32\mtxparhd.dll
2010-07-25 20:00:37 ----N---- C:\WINDOWS\system32\msshavmsg.dll
2010-07-25 20:00:36 ----N---- C:\WINDOWS\system32\s3gnb.dll
2010-07-25 20:00:36 ----N---- C:\WINDOWS\system32\rhttpaa.dll
2010-07-25 20:00:36 ----N---- C:\WINDOWS\system32\rasqec.dll
2010-07-25 20:00:36 ----N---- C:\WINDOWS\system32\qutil.dll
2010-07-25 20:00:36 ----N---- C:\WINDOWS\system32\qcliprov.dll
2010-07-25 20:00:36 ----N---- C:\WINDOWS\system32\qagentrt.dll
2010-07-25 20:00:36 ----N---- C:\WINDOWS\system32\qagent.dll
2010-07-25 20:00:36 ----N---- C:\WINDOWS\system32\photometadatahandler.dll
2010-07-25 20:00:36 ----N---- C:\WINDOWS\system32\onex.dll
2010-07-25 20:00:35 ----N---- C:\WINDOWS\system32\slserv.exe
2010-07-25 20:00:35 ----N---- C:\WINDOWS\system32\slrundll.exe
2010-07-25 20:00:35 ----N---- C:\WINDOWS\system32\slgen.dll
2010-07-25 20:00:35 ----N---- C:\WINDOWS\system32\slextspk.dll
2010-07-25 20:00:35 ----N---- C:\WINDOWS\system32\slcoinst.dll
2010-07-25 20:00:35 ----N---- C:\WINDOWS\system32\setupn.exe
2010-07-25 20:00:34 ----N---- C:\WINDOWS\system32\xpsp3res.dll
2010-07-25 20:00:34 ----N---- C:\WINDOWS\system32\wlanapi.dll
2010-07-25 20:00:34 ----N---- C:\WINDOWS\system32\windowscodecsext.dll
2010-07-25 20:00:34 ----N---- C:\WINDOWS\system32\windowscodecs.dll
2010-07-25 20:00:34 ----N---- C:\WINDOWS\system32\verclsid.exe
2010-07-25 20:00:34 ----N---- C:\WINDOWS\system32\tzchange.exe
2010-07-25 20:00:34 ----N---- C:\WINDOWS\system32\tspkg.dll
2010-07-25 20:00:34 ----N---- C:\WINDOWS\system32\tsgqec.dll
2010-07-25 20:00:33 ----N---- C:\WINDOWS\system32\wmphoto.dll
2010-07-25 20:00:30 ----N---- C:\WINDOWS\slrundll.exe
2010-07-25 20:00:30 ----A---- C:\WINDOWS\system32\xmllite.dll
2010-07-25 20:00:29 ----D---- C:\WINDOWS\system32\cs-cz
2010-07-25 20:00:29 ----D---- C:\WINDOWS\l2schemas
2010-07-25 20:00:28 ----D---- C:\WINDOWS\system32\cs
2010-07-25 20:00:28 ----D---- C:\WINDOWS\system32\bits
2010-07-25 19:58:30 ----D---- C:\WINDOWS\ServicePackFiles
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\ati1xsxx.sys
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\ati1xbxx.sys
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\ati1tuxx.sys
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\ati1ttxx.sys
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\ati1snxx.sys
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\ati1rvxx.sys
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\ati1raxx.sys
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\ati1pdxx.sys
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\ati1mdxx.sys
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\ati1btxx.sys
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\amdagp.sys
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\alim1541.sys
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\agpcpq.sys
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\agp440.sys
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\adv11nt5.dll
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\adv09nt5.dll
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\adv08nt5.dll
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\adv07nt5.dll
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\adv05nt5.dll
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\adv02nt5.dll
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\adv01nt5.dll
2010-07-25 19:56:43 ----D---- C:\WINDOWS\network diagnostic
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\ch7xxnt5.dll
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\hidir.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\hidbth.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\hdaudbus.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\gagp30kx.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\bthusb.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\bthprint.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\bthport.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\bthpan.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\bthmodem.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\bthenum.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\atv10nt5.dll
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\atv06nt5.dll
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\atv04nt5.dll
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\atv02nt5.dll
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\atv01nt5.dll
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\atinxsxx.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\atinxbxx.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\atintuxx.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\atinttxx.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\atinsnxx.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\atinrvxx.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\atinraxx.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\atinpdxx.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\atinmdxx.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\atinbtxx.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\ati2mtag.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\ati2mtaa.sys
2010-07-25 19:56:41 ----N---- C:\WINDOWS\system32\drivers\siint5.dll
2010-07-25 19:56:41 ----N---- C:\WINDOWS\system32\drivers\sffp_mmc.sys
2010-07-25 19:56:41 ----N---- C:\WINDOWS\system32\drivers\s3gnbm.sys
2010-07-25 19:56:41 ----N---- C:\WINDOWS\system32\drivers\rndismpx.sys
2010-07-25 19:56:41 ----N---- C:\WINDOWS\system32\drivers\rfcomm.sys
2010-07-25 19:56:41 ----N---- C:\WINDOWS\system32\drivers\recagent.sys
2010-07-25 19:56:41 ----N---- C:\WINDOWS\system32\drivers\ntmtlfax.sys
2010-07-25 19:56:41 ----N---- C:\WINDOWS\system32\drivers\mutohpen.sys
2010-07-25 19:56:41 ----N---- C:\WINDOWS\system32\drivers\mtxparhm.sys
2010-07-25 19:56:41 ----N---- C:\WINDOWS\system32\drivers\mtlstrm.sys
2010-07-25 19:56:41 ----N---- C:\WINDOWS\system32\drivers\mtlmnt5.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\watv10nt.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\watv06nt.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\wadv11nt.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\wadv09nt.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\wadv08nt.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\wadv07nt.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\wacompen.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\viaagp.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\vchnt5.dll
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\usbvideo.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\usb8023x.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\smbali.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\slwdmsup.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\slnthal.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\slntamr.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\slnt7554.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\sisagp.sys
2010-07-25 19:55:04 ----A---- C:\WINDOWS\002693_.tmp
2010-07-25 19:54:43 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-07-25 19:54:27 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2010-07-25 19:51:50 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2010-07-25 19:48:14 ----A---- C:\Microsoft-Windows-XP-SP3-CZ.exe
2010-07-25 19:43:35 ----D---- C:\Program Files\7-Zip
2010-07-25 19:41:42 ----D---- C:\totalcmd
2010-07-25 19:41:42 ----D---- C:\Documents and Settings\Meda\Data aplikací\GHISLER
2010-07-25 19:41:42 ----A---- C:\WINDOWS\UC.PIF
2010-07-25 19:41:42 ----A---- C:\WINDOWS\RAR.PIF
2010-07-25 19:41:42 ----A---- C:\WINDOWS\PKZIP.PIF
2010-07-25 19:41:42 ----A---- C:\WINDOWS\PKUNZIP.PIF
2010-07-25 19:41:42 ----A---- C:\WINDOWS\NOCLOSE.PIF
2010-07-25 19:41:42 ----A---- C:\WINDOWS\LHA.PIF
2010-07-25 19:41:42 ----A---- C:\WINDOWS\ARJ.PIF
2010-07-25 19:37:09 ----SHD---- C:\RECYCLER
2010-07-25 19:32:51 ----A---- C:\WINDOWS\system32\drivers\usbstor.sys
2010-07-25 19:29:55 ----D---- C:\Documents and Settings\Meda\Data aplikací\Identities
2010-07-25 19:29:53 ----HD---- C:\Program Files\Uninstall Information
2010-07-25 19:29:47 ----SD---- C:\Documents and Settings\Meda\Data aplikací\Microsoft
2010-07-25 19:29:47 ----ASH---- C:\Documents and Settings\Meda\Data aplikací\desktop.ini
2010-07-25 19:28:52 ----D---- C:\WINDOWS\SoftwareDistribution
2010-07-25 19:28:50 ----SD---- C:\WINDOWS\system32\Microsoft
2010-07-25 19:28:50 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-07-25 19:27:44 ----AS---- C:\WINDOWS\bootstat.dat
2010-07-25 19:25:01 ----D---- C:\WINDOWS\system32\xircom
2010-07-25 19:25:01 ----D---- C:\Program Files\xerox
2010-07-25 19:25:01 ----D---- C:\Program Files\microsoft frontpage
2010-07-25 19:24:33 ----RASH---- C:\MSDOS.SYS
2010-07-25 19:24:33 ----RASH---- C:\IO.SYS
2010-07-25 19:24:33 ----A---- C:\WINDOWS\control.ini
2010-07-25 19:24:33 ----A---- C:\CONFIG.SYS
2010-07-25 19:24:33 ----A---- C:\AUTOEXEC.BAT
2010-07-25 19:24:11 ----A---- C:\WINDOWS\system32\mapi32.dll
2010-07-25 19:23:05 ----SD---- C:\WINDOWS\Downloaded Program Files
2010-07-25 19:23:05 ----RD---- C:\WINDOWS\Offline Web Pages
2010-07-25 19:22:51 ----HD---- C:\Program Files\WindowsUpdate
2010-07-25 19:22:46 ----D---- C:\Program Files\Online Services
2010-07-25 19:22:30 ----D---- C:\WINDOWS\system32\DirectX
2010-07-25 19:22:15 ----A---- C:\WINDOWS\system32\atrace.dll
2010-07-25 19:22:13 ----A---- C:\WINDOWS\system32\desktop.ini
2010-07-25 19:22:13 ----A---- C:\WINDOWS\desktop.ini
2010-07-25 19:22:08 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2010-07-25 19:22:07 ----D---- C:\Program Files\Common Files\Services
2010-07-25 19:22:07 ----A---- C:\WINDOWS\system32\acctres.dll
2010-07-25 19:22:05 ----SD---- C:\WINDOWS\Tasks
2010-07-25 19:22:05 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2010-07-25 19:22:04 ----D---- C:\Program Files\Common Files\MSSoap
2010-07-25 19:22:01 ----D---- C:\WINDOWS\system32\Macromed
2010-07-25 19:22:01 ----D---- C:\WINDOWS\srchasst
2010-07-25 19:21:59 ----A---- C:\WINDOWS\system32\wuweb.dll
2010-07-25 19:21:59 ----A---- C:\WINDOWS\system32\wucltui.dll
2010-07-25 19:21:59 ----A---- C:\WINDOWS\system32\wuauserv.dll
2010-07-25 19:21:59 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2010-07-25 19:21:58 ----A---- C:\WINDOWS\system32\wups.dll
2010-07-25 19:21:58 ----A---- C:\WINDOWS\system32\wuaueng.dll
2010-07-25 19:21:58 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2010-07-25 19:21:58 ----A---- C:\WINDOWS\system32\wuauclt.exe
2010-07-25 19:21:58 ----A---- C:\WINDOWS\system32\wuapi.dll
2010-07-25 19:21:58 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2010-07-25 19:21:58 ----A---- C:\WINDOWS\system32\qmgr.dll
2010-07-25 19:21:58 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2010-07-25 19:21:58 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2010-07-25 19:21:55 ----D---- C:\Program Files\Movie Maker
2010-07-25 19:21:52 ----A---- C:\WINDOWS\system32\safrslv.dll
2010-07-25 19:21:52 ----A---- C:\WINDOWS\system32\safrdm.dll
2010-07-25 19:21:52 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2010-07-25 19:21:52 ----A---- C:\WINDOWS\system32\racpldlg.dll
2010-07-25 19:21:49 ----D---- C:\WINDOWS\system32\Restore
2010-07-25 19:21:49 ----A---- C:\WINDOWS\system32\srsvc.dll
2010-07-25 19:21:49 ----A---- C:\WINDOWS\system32\srrstr.dll
2010-07-25 19:21:49 ----A---- C:\WINDOWS\system32\srclient.dll
2010-07-25 19:21:49 ----A---- C:\WINDOWS\system32\fltmc.exe
2010-07-25 19:21:49 ----A---- C:\WINDOWS\system32\fltlib.dll
2010-07-25 19:21:49 ----A---- C:\WINDOWS\system32\drivers\sr.sys
2010-07-25 19:21:49 ----A---- C:\WINDOWS\system32\drivers\fltmgr.sys
2010-07-25 19:21:48 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2010-07-25 19:21:48 ----A---- C:\WINDOWS\system32\msconf.dll
2010-07-25 19:21:48 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2010-07-25 19:21:48 ----A---- C:\WINDOWS\system32\mnmdd.dll
2010-07-25 19:21:48 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2010-07-25 19:21:48 ----A---- C:\WINDOWS\system32\ils.dll
2010-07-25 19:21:46 ----D---- C:\Program Files\NetMeeting
2010-07-25 19:21:46 ----A---- C:\WINDOWS\system32\msoert2.dll
2010-07-25 19:21:46 ----A---- C:\WINDOWS\system32\msoeacct.dll
2010-07-25 19:21:46 ----A---- C:\WINDOWS\system32\inetres.dll
2010-07-25 19:21:45 ----A---- C:\WINDOWS\system32\inetcomm.dll
2010-07-25 19:21:44 ----D---- C:\Program Files\Outlook Express
2010-07-25 19:21:44 ----A---- C:\WINDOWS\system32\schedsvc.dll
2010-07-25 19:21:44 ----A---- C:\WINDOWS\system32\mstinit.exe
2010-07-25 19:21:44 ----A---- C:\WINDOWS\system32\mstask.dll
2010-07-25 19:21:44 ----A---- C:\WINDOWS\system32\isign32.dll
2010-07-25 19:21:44 ----A---- C:\WINDOWS\system32\icwphbk.dll
2010-07-25 19:21:44 ----A---- C:\WINDOWS\system32\icwdial.dll
2010-07-25 19:21:43 ----A---- C:\WINDOWS\system32\inetcfg.dll
2010-07-25 19:21:35 ----D---- C:\Program Files\Common Files\System
2010-07-25 19:21:34 ----D---- C:\Program Files\Internet Explorer
2010-07-25 19:20:52 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2010-07-25 19:20:42 ----D---- C:\Program Files\ComPlus Applications
2010-07-25 19:20:40 ----A---- C:\WINDOWS\vbaddin.ini
2010-07-25 19:20:40 ----A---- C:\WINDOWS\vb.ini
2010-07-25 19:20:35 ----D---- C:\WINDOWS\Registration
2010-07-25 19:20:27 ----D---- C:\Program Files\Windows Media Player
2010-07-25 19:20:21 ----D---- C:\Program Files\Messenger
2010-07-25 19:20:18 ----D---- C:\Program Files\MSN Gaming Zone
2010-07-25 19:20:18 ----A---- C:\WINDOWS\system32\write.exe
2010-07-25 19:20:10 ----A---- C:\WINDOWS\system32\winchat.exe
2010-07-25 19:20:10 ----A---- C:\WINDOWS\system32\sndvol32.exe
2010-07-25 19:20:10 ----A---- C:\WINDOWS\system32\hticons.dll
2010-07-25 19:20:10 ----A---- C:\WINDOWS\system32\avwav.dll
2010-07-25 19:20:10 ----A---- C:\WINDOWS\system32\avtapi.dll
2010-07-25 19:20:10 ----A---- C:\WINDOWS\system32\avmeter.dll
2010-07-25 19:20:04 ----A---- C:\WINDOWS\system32\winmine.exe
2010-07-25 19:20:04 ----A---- C:\WINDOWS\system32\sol.exe
2010-07-25 19:20:04 ----A---- C:\WINDOWS\system32\charmap.exe
2010-07-25 19:20:04 ----A---- C:\WINDOWS\system32\getuname.dll
2010-07-25 19:20:04 ----A---- C:\WINDOWS\system32\calc.exe
2010-07-25 19:20:03 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2010-07-25 19:20:03 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2010-07-25 19:20:03 ----A---- C:\WINDOWS\system32\tslabels.ini
2010-07-25 19:20:03 ----A---- C:\WINDOWS\system32\tskill.exe
2010-07-25 19:20:03 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2010-07-25 19:20:03 ----A---- C:\WINDOWS\system32\tscon.exe
2010-07-25 19:20:03 ----A---- C:\WINDOWS\system32\shadow.exe
2010-07-25 19:20:03 ----A---- C:\WINDOWS\system32\rwinsta.exe
2010-07-25 19:20:03 ----A---- C:\WINDOWS\system32\reset.exe
2010-07-25 19:20:03 ----A---- C:\WINDOWS\system32\regini.exe
2010-07-25 19:20:03 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2010-07-25 19:20:03 ----A---- C:\WINDOWS\system32\qwinsta.exe
2010-07-25 19:20:03 ----A---- C:\WINDOWS\system32\qappsrv.exe
2010-07-25 19:20:03 ----A---- C:\WINDOWS\system32\mshearts.exe
2010-07-25 19:20:03 ----A---- C:\WINDOWS\system32\freecell.exe
2010-07-25 19:20:02 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2010-07-25 19:20:02 ----A---- C:\WINDOWS\system32\mtxex.dll
2010-07-25 19:20:02 ----A---- C:\WINDOWS\system32\mtxdm.dll
2010-07-25 19:20:02 ----A---- C:\WINDOWS\system32\msg.exe
2010-07-25 19:20:02 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2010-07-25 19:20:02 ----A---- C:\WINDOWS\system32\logoff.exe
2010-07-25 19:20:02 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2010-07-25 19:20:02 ----A---- C:\WINDOWS\system32\cdmodem.dll
2010-07-25 19:20:01 ----A---- C:\WINDOWS\system32\stclient.dll
2010-07-25 19:20:01 ----A---- C:\WINDOWS\system32\comsnap.dll
2010-07-25 19:20:01 ----A---- C:\WINDOWS\system32\comrepl.dll
2010-07-25 19:20:01 ----A---- C:\WINDOWS\system32\comaddin.dll
2010-07-25 19:19:57 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2010-07-25 19:19:56 ----D---- C:\Program Files\Windows NT
2010-07-25 19:19:56 ----A---- C:\WINDOWS\system32\sndrec32.exe
2010-07-25 19:19:56 ----A---- C:\WINDOWS\system32\mspaint.exe
2010-07-25 19:19:56 ----A---- C:\WINDOWS\system32\mplay32.exe
2010-07-25 19:19:56 ----A---- C:\WINDOWS\system32\hypertrm.dll
2010-07-25 19:19:56 ----A---- C:\WINDOWS\system32\clipbrd.exe
2010-07-25 19:19:56 ----A---- C:\WINDOWS\system32\accwiz.exe
2010-07-25 19:19:55 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2010-07-25 19:19:55 ----A---- C:\WINDOWS\system32\spider.exe
2010-07-25 19:19:55 ----A---- C:\WINDOWS\system32\remotepg.dll
2010-07-25 19:19:55 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2010-07-25 19:19:55 ----A---- C:\WINDOWS\system32\mstscax.dll
2010-07-25 19:19:55 ----A---- C:\WINDOWS\system32\mstsc.exe
2010-07-25 19:19:55 ----A---- C:\WINDOWS\system32\drivers\tdtcp.sys
2010-07-25 19:19:55 ----A---- C:\WINDOWS\system32\drivers\tdpipe.sys
2010-07-25 19:19:55 ----A---- C:\WINDOWS\system32\drivers\rdpwd.sys
2010-07-25 19:19:54 ----D---- C:\WINDOWS\system32\MsDtc
2010-07-25 19:19:54 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2010-07-25 19:19:54 ----A---- C:\WINDOWS\system32\termsrv.dll
2010-07-25 19:19:54 ----A---- C:\WINDOWS\system32\sessmgr.exe
2010-07-25 19:19:54 ----A---- C:\WINDOWS\system32\rdshost.exe
2010-07-25 19:19:54 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2010-07-25 19:19:54 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2010-07-25 19:19:54 ----A---- C:\WINDOWS\system32\rdpclip.exe
2010-07-25 19:19:54 ----A---- C:\WINDOWS\system32\rdchost.dll
2010-07-25 19:19:54 ----A---- C:\WINDOWS\system32\qprocess.exe
2010-07-25 19:19:54 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2010-07-25 19:19:54 ----A---- C:\WINDOWS\system32\icaapi.dll
2010-07-25 19:19:54 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2010-07-25 19:19:53 ----A---- C:\WINDOWS\system32\xolehlp.dll
2010-07-25 19:19:53 ----A---- C:\WINDOWS\system32\mtxoci.dll
2010-07-25 19:19:53 ----A---- C:\WINDOWS\system32\msdtctm.dll
2010-07-25 19:19:53 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2010-07-25 19:19:53 ----A---- C:\WINDOWS\system32\msdtclog.dll
2010-07-25 19:19:53 ----A---- C:\WINDOWS\system32\msdtc.exe
2010-07-25 19:19:52 ----D---- C:\WINDOWS\system32\Com
2010-07-25 19:19:52 ----A---- C:\WINDOWS\system32\comsvcs.dll
2010-07-25 19:19:52 ----A---- C:\WINDOWS\system32\colbact.dll
2010-07-25 19:19:52 ----A---- C:\WINDOWS\system32\clbcatex.dll
2010-07-25 19:19:52 ----A---- C:\WINDOWS\system32\catsrvut.dll
2010-07-25 19:19:52 ----A---- C:\WINDOWS\system32\catsrvps.dll
2010-07-25 19:19:52 ----A---- C:\WINDOWS\system32\catsrv.dll
2010-07-25 19:19:51 ----A---- C:\WINDOWS\system32\comuid.dll
2010-07-25 19:19:51 ----A---- C:\WINDOWS\system32\clbcatq.dll
2010-07-25 19:19:45 ----A---- C:\WINDOWS\system32\servdeps.dll
2010-07-25 19:19:45 ----A---- C:\WINDOWS\system32\mmfutil.dll
2010-07-25 19:19:45 ----A---- C:\WINDOWS\system32\licwmi.dll
2010-07-25 19:19:43 ----A---- C:\WINDOWS\system32\cmprops.dll
2010-07-25 19:19:41 ----A---- C:\WINDOWS\system32\drivers\rdpdr.sys
2010-07-25 19:19:40 ----A---- C:\WINDOWS\system32\drivers\termdd.sys
2010-03-30 23:16:34 ----A---- C:\WINDOWS\system32\PresentationHostProxy.dll
2010-03-30 23:10:40 ----A---- C:\WINDOWS\system32\PresentationHost.exe
2010-01-06 00:56:25 ----D---- C:\Documents and Settings\All Users\Data aplikací\HP Product Assistant
2010-01-06 00:53:10 ----A---- C:\WINDOWS\hpqins05.dat
2010-01-06 00:46:38 ----D---- C:\Documents and Settings\All Users\Data aplikací\HPSSUPPLY
2010-01-06 00:42:57 ----D---- C:\Documents and Settings\Meda\Data aplikací\Uniblue
2009-12-22 19:39:20 ----N---- C:\WINDOWS\system32\imapi2fs.dll
2009-12-22 19:39:20 ----N---- C:\WINDOWS\system32\imapi2.dll
2009-11-07 00:07:08 ----A---- C:\WINDOWS\system32\netfxperf.dll
2009-11-07 00:07:04 ----A---- C:\WINDOWS\system32\mscoree.dll
2009-11-07 00:06:46 ----A---- C:\WINDOWS\system32\dfshim.dll
2009-08-06 18:24:10 ----A---- C:\WINDOWS\system32\wups2.dll
2009-07-20 23:05:40 ----A---- C:\WINDOWS\system32\msxml4.dll
2009-05-21 20:21:18 ----A---- C:\WINDOWS\system32\msvcp71.dll
2009-03-08 03:39:48 ----A---- C:\WINDOWS\system32\ieframe.dll
2009-03-08 03:34:48 ----N---- C:\WINDOWS\system32\WinFXDocObj.exe
2009-03-08 03:32:52 ----A---- C:\WINDOWS\system32\ieudinit.exe
2009-03-08 03:32:26 ----A---- C:\WINDOWS\system32\msfeeds.dll
2009-03-08 03:32:22 ----A---- C:\WINDOWS\system32\iertutil.dll
2009-03-08 03:31:54 ----N---- C:\WINDOWS\system32\msfeedssync.exe
2009-03-08 03:31:52 ----N---- C:\WINDOWS\system32\icardie.dll
2009-03-08 03:31:52 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
2009-03-08 03:22:46 ----N---- C:\WINDOWS\system32\ieui.dll
2009-03-08 03:11:12 ----N---- C:\WINDOWS\system32\ieapfltr.dll
2009-02-06 20:07:58 ----N---- C:\WINDOWS\system32\ieapfltr.dat
2009-01-07 17:20:38 ----A---- C:\WINDOWS\system32\nlsdl.dll
2009-01-07 17:20:36 ----A---- C:\WINDOWS\system32\normaliz.dll
2009-01-07 17:20:36 ----A---- C:\WINDOWS\system32\idndl.dll
2009-01-07 17:20:18 ----A---- C:\WINDOWS\system32\msdbg2.dll
2008-07-29 20:10:04 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2008-07-29 20:10:04 ----A---- C:\WINDOWS\system32\evr.dll
2008-07-29 20:10:04 ----A---- C:\WINDOWS\system32\dxva2.dll
2008-07-29 18:59:58 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2008-07-29 18:59:58 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2008-07-29 18:59:58 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2008-07-29 18:24:50 ----A---- C:\WINDOWS\system32\infocardapi.dll
2008-07-29 18:24:50 ----A---- C:\WINDOWS\system32\icardres.dll
2008-07-29 18:24:50 ----A---- C:\WINDOWS\system32\icardagt.exe
2008-07-25 10:16:58 ----A---- C:\WINDOWS\system32\mscories.dll
2008-07-25 10:16:58 ----A---- C:\WINDOWS\system32\mscorier.dll
2008-05-05 06:25:04 ----A---- C:\WINDOWS\system32\xpsp4res.dll
2008-04-14 07:52:50 ----N---- C:\WINDOWS\system32\spupdwxp.exe
2008-04-14 07:52:48 ----A---- C:\WINDOWS\system32\spdwnwxp.exe
2008-04-14 07:52:24 ----N---- C:\WINDOWS\system32\faxpatch.exe
2008-03-26 01:25:30 ----A---- C:\WINDOWS\system32\msvcr71.dll
2008-03-20 08:36:30 ----RA---- C:\WINDOWS\system32\AbaleZip.dll
2008-03-16 11:14:08 ----A---- C:\WINDOWS\system32\gdiplus.dll
2008-03-14 05:56:18 ----RA---- C:\WINDOWS\Twunk_32.dll
2008-03-14 05:56:18 ----RA---- C:\WINDOWS\Twunk_16.dll
2008-03-04 20:45:04 ----A---- C:\WINDOWS\system32\hpboidps.dll
2008-03-04 20:45:00 ----A---- C:\WINDOWS\system32\hpboid.dll
2008-03-04 20:44:58 ----A---- C:\WINDOWS\system32\hpbpro.dll
2008-03-04 20:44:52 ----A---- C:\WINDOWS\system32\hpbmiapi.dll
2008-03-04 20:44:50 ----A---- C:\WINDOWS\system32\hpbprops.dll
2008-02-28 10:53:20 ----A---- C:\WINDOWS\system32\hpzisn12.dll
2008-02-28 10:53:20 ----A---- C:\WINDOWS\system32\hpzipt12.dll
2008-02-28 10:53:18 ----A---- C:\WINDOWS\system32\HPZipr12.dll
2008-02-28 10:53:18 ----A---- C:\WINDOWS\system32\HPZipm12.dll
2008-02-28 10:53:18 ----A---- C:\WINDOWS\system32\HPZinw12.dll
2008-02-28 10:53:18 ----A---- C:\WINDOWS\system32\HPZidr12.dll
2007-11-20 15:06:30 ----A---- C:\WINDOWS\system32\msxml4r.dll
2007-04-24 09:33:00 ----A---- C:\WINDOWS\system32\hplbdchn.dll
2006-11-02 10:51:40 ----N---- C:\WINDOWS\system32\wpdshextres.dll
2006-10-18 20:58:00 ----N---- C:\WINDOWS\system32\wdfmgr.exe
2006-10-18 20:58:00 ----N---- C:\WINDOWS\system32\uwdf.exe
2006-10-18 20:47:22 ----N---- C:\WINDOWS\system32\wpdsp.dll
2006-10-18 20:47:22 ----N---- C:\WINDOWS\system32\WPDShServiceObj.dll
2006-10-18 20:47:22 ----N---- C:\WINDOWS\system32\WpdShext.dll
2006-10-18 20:47:22 ----N---- C:\WINDOWS\system32\wpdmtpus.dll
2006-10-18 20:47:22 ----N---- C:\WINDOWS\system32\wpdmtp.dll
2006-10-18 20:47:22 ----N---- C:\WINDOWS\system32\wpdconns.dll
2006-10-18 20:47:22 ----N---- C:\WINDOWS\system32\wpd_ci.dll
2006-10-18 20:47:22 ----N---- C:\WINDOWS\system32\WMVXENCD.dll
2006-10-18 20:47:22 ----N---- C:\WINDOWS\system32\WMVSENCD.dll
2006-10-18 20:47:22 ----N---- C:\WINDOWS\system32\WMVSDECD.dll
2006-10-18 20:47:22 ----N---- C:\WINDOWS\system32\WMVENCOD.dll
2006-10-18 20:47:22 ----N---- C:\WINDOWS\system32\WMVDECOD.dll
2006-10-18 20:47:22 ----N---- C:\WINDOWS\system32\WMVADVE.DLL
2006-10-18 20:47:22 ----N---- C:\WINDOWS\system32\WMVADVD.dll
2006-10-18 20:47:22 ----A---- C:\WINDOWS\system32\SET8A.tmp
2006-10-18 20:47:20 ----N---- C:\WINDOWS\system32\wmpsrcwp.dll
2006-10-18 20:47:20 ----N---- C:\WINDOWS\system32\wmpps.dll
2006-10-18 20:47:20 ----N---- C:\WINDOWS\system32\wmpmde.dll
2006-10-18 20:47:20 ----N---- C:\WINDOWS\system32\wmpencen.dll
2006-10-18 20:47:20 ----N---- C:\WINDOWS\system32\wmpeffects.dll
2006-10-18 20:47:20 ----N---- C:\WINDOWS\system32\wmdrmsdk.dll
2006-10-18 20:47:20 ----N---- C:\WINDOWS\system32\wmdrmnet.dll
2006-10-18 20:47:20 ----A---- C:\WINDOWS\system32\SET83.tmp
2006-10-18 20:47:20 ----A---- C:\WINDOWS\system32\SET82.tmp
2006-10-18 20:47:18 ----N---- C:\WINDOWS\system32\wmdrmdev.dll
2006-10-18 20:47:18 ----N---- C:\WINDOWS\system32\wdfapi.dll
2006-10-18 20:47:18 ----N---- C:\WINDOWS\system32\PortableDeviceWMDRM.dll
2006-10-18 20:47:18 ----N---- C:\WINDOWS\system32\PortableDeviceWiaCompat.dll
2006-10-18 20:47:18 ----N---- C:\WINDOWS\system32\PortableDeviceTypes.dll
2006-10-18 20:47:18 ----N---- C:\WINDOWS\system32\PortableDeviceClassExtension.dll
2006-10-18 20:47:18 ----N---- C:\WINDOWS\system32\PortableDeviceApi.dll
2006-10-18 20:47:18 ----A---- C:\WINDOWS\system32\SET7E.tmp
2006-10-18 20:47:14 ----N---- C:\WINDOWS\system32\MPG4DECD.dll
2006-10-18 20:47:14 ----N---- C:\WINDOWS\system32\mp4sdecd.dll
2006-10-18 20:47:14 ----N---- C:\WINDOWS\system32\MP43DECD.dll
2006-10-18 20:47:14 ----N---- C:\WINDOWS\system32\MFPLAT.dll
2006-10-18 20:47:08 ----N---- C:\WINDOWS\system32\audiodev.dll
2006-10-18 19:00:46 ----N---- C:\WINDOWS\system32\drmupgds.exe
2006-10-18 19:00:14 ----N---- C:\WINDOWS\system32\wpdshextautoplay.exe
2006-10-18 19:00:00 ----N---- C:\WINDOWS\system32\drivers\wpdusb.sys
2006-10-02 14:28:42 ----N---- C:\WINDOWS\system32\msdelta.dll
2006-09-28 19:13:26 ----N---- C:\WINDOWS\system32\WUDFCoinstaller.dll
2006-09-28 18:00:34 ----N---- C:\WINDOWS\system32\drivers\WudfRd.sys
2006-09-28 17:56:38 ----N---- C:\WINDOWS\system32\WUDFx.dll
2006-09-28 17:56:38 ----N---- C:\WINDOWS\system32\WudfHost.exe
2006-09-28 17:56:16 ----N---- C:\WINDOWS\system32\WudfPlatform.dll
2006-09-28 17:56:14 ----N---- C:\WINDOWS\system32\WudfSvc.dll
2006-09-28 17:55:50 ----N---- C:\WINDOWS\system32\drivers\WudfPf.sys
2006-08-24 15:15:06 ----A---- C:\WINDOWS\system32\rgb9rast_2.dll
2005-12-19 06:23:40 ----A---- C:\WINDOWS\system32\divx_xx11.dll
2005-12-19 06:23:40 ----A---- C:\WINDOWS\system32\divx_xx0c.dll
2005-12-19 06:23:40 ----A---- C:\WINDOWS\system32\divx_xx07.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nwiz.exe
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvwimg.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvwdmcpl.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvwddi.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvsvc32.exe
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvshell.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvoglnt.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvnt4cpl.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvmctray.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvmccsrs.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvmccs.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nview.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvhwvid.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvdspsch.exe
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvcpl.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvcolor.exe
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvcodins.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvcod.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvappbar.exe
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvapi.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\keystone.exe
2005-10-14 10:56:50 ----A---- C:\WINDOWS\system32\xvidcore.dll
2005-10-14 10:56:50 ----A---- C:\WINDOWS\system32\xvid.dll
2005-10-14 10:56:50 ----A---- C:\WINDOWS\system32\VorbisEnc.dll
2005-10-14 10:56:50 ----A---- C:\WINDOWS\system32\vorbis.dll
2005-10-14 10:56:50 ----A---- C:\WINDOWS\system32\unrar.dll
2005-10-14 10:56:50 ----A---- C:\WINDOWS\system32\qt-dx331.dll
2005-10-14 10:56:50 ----A---- C:\WINDOWS\system32\OggDS.dll
2005-10-14 10:56:50 ----A---- C:\WINDOWS\system32\ogg.dll
2005-10-14 10:56:50 ----A---- C:\WINDOWS\system32\DivXsm.exe
2005-10-14 10:56:48 ----A---- C:\WINDOWS\system32\MMSwitch.dll
2005-10-14 10:56:48 ----A---- C:\WINDOWS\system32\MMAVILNG.exe
2004-08-17 16:49:22 ----A---- C:\WINDOWS\system32\wzcsvc.dll
2004-08-17 16:49:22 ----A---- C:\WINDOWS\system32\wzcsapi.dll
2004-08-17 16:49:16 ----A---- C:\WINDOWS\system32\pjlmon.dll
2004-08-17 16:49:16 ----A---- C:\WINDOWS\system32\pid.dll
2004-08-17 16:49:14 ----A---- C:\WINDOWS\system32\msyuv.dll
2004-08-17 16:49:10 ----A---- C:\WINDOWS\system32\iyuv_32.dll
2004-08-17 16:49:08 ----A---- C:\WINDOWS\system32\hid.dll
2004-08-17 16:49:06 ----A---- C:\WINDOWS\system32\dmutil.dll
2004-08-17 16:49:04 ----A---- C:\WINDOWS\system32\cnbjmon.dll
2004-08-17 16:45:30 ----A---- C:\WINDOWS\system32\ntkrnlpa.exe
2004-08-17 16:44:38 ----A---- C:\WINDOWS\system32\drivers\crusoe.sys
2004-08-17 16:43:34 ----A---- C:\WINDOWS\system32\drivers\processr.sys
2004-08-17 16:43:28 ----A---- C:\WINDOWS\system32\drivers\amdk7.sys
2004-08-17 16:43:28 ----A---- C:\WINDOWS\system32\drivers\amdk6.sys
2004-08-17 16:43:24 ----A---- C:\WINDOWS\system32\drivers\mouclass.sys
2004-08-17 16:43:22 ----A---- C:\WINDOWS\system32\drivers\modem.sys
2004-08-17 16:43:10 ----A---- C:\WINDOWS\system32\drivers\parport.sys
2004-08-17 16:43:08 ----A---- C:\WINDOWS\system32\drivers\p3.sys
2004-08-17 14:51:20 ----A---- C:\WINDOWS\system32\netsetup.exe
2004-08-17 14:49:38 ----A---- C:\WINDOWS\system32\tsddd.dll
2004-08-17 14:49:38 ----A---- C:\WINDOWS\system32\rdpdd.dll
2004-08-17 14:49:36 ----A---- C:\WINDOWS\system32\drmclien.dll
2004-08-17 14:49:34 ----A---- C:\WINDOWS\system32\WMVCore.dll
2004-08-17 14:49:34 ----A---- C:\WINDOWS\system32\drmv2clt.dll
2004-08-17 14:49:32 ----A---- C:\WINDOWS\system32\msscp.dll
2004-08-17 14:49:32 ----A---- C:\WINDOWS\system32\msnetobj.dll
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\xcopy.exe
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\wscript.exe
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\wscntfy.exe
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\wpnpinst.exe
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\wpabaln.exe
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\sstext3d.scr
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\ssstars.scr
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\sspipes.scr
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\ssmyst.scr
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\ssmypics.scr
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\ssmarque.scr
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\ssflwbox.scr
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\ssbezier.scr
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\ss3dfo.scr
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\scrnsave.scr
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\logon.scr
2004-08-17 14:49:28 ----A---- C:\WINDOWS\winhlp32.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\winver.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\winlogon.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\wiaacmgr.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\wextract.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\vssvc.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\utilman.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\userinit.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\ups.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\upnpcont.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\tracert.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\tracerpt.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\tourstart.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\tlntsvr.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\tlntsess.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\tlntadmn.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\telnet.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\taskmgr.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\sysocmgr.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\svchost.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\stimon.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\spoolsv.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\spnpinst.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\smss.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\smlogsvc.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\smbinst.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\skeys.exe
Naposledy upravil(a) meda dne 26 črc 2011 12:41, celkem upraveno 1 x.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119506
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: FB vir (aktualizace abdobe reader) - část první

#2 Příspěvek od Rudy »

Udělejte kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předm nic nemažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

meda
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 26 črc 2011 11:36

Re: FB vir (aktualizace abdobe reader) - část první

#3 Příspěvek od meda »

Malwarebytes' Anti-Malware
www.malwarebytes.org

Verze databáze:

Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702

10.1.2003 21:35:56
mbam-log-2003-01-10 (21-35-56).txt

Typ: Rychlá kontrola
Kontrolované objekty: 162924
Uplynulý čas: 54 minut, 19 sekund

Infikované procesy v paměti: 10
Infikované moduly v paměti: 0
Infikované klíče v registru: 7
Infikované hodnoty v registru: 7
Infikované datové položky v registru: 3
Infikované složky: 0
Infikované soubory: 14

Infikované procesy v paměti:
c:\WINDOWS\update.tray-8-0\svchost.exe (Trojan.Dropper) -> 1956 -> Unloaded process successfully.
c:\WINDOWS\update.tray-12-0\svchost.exe (Trojan.Dropper) -> 1968 -> Unloaded process successfully.
c:\WINDOWS\systemup.exe (Trojan.Agent) -> 220 -> Unloaded process successfully.
c:\WINDOWS\update.1\svchost.exe (Trojan.Dropper) -> 232 -> Unloaded process successfully.
c:\WINDOWS\l1rezerv.exe (Trojan.Agent) -> 176 -> Unloaded process successfully.
c:\WINDOWS\sysdriver32.exe (Trojan.Delf) -> 568 -> Unloaded process successfully.
c:\WINDOWS\update.2\svchost.exe (Backdoor.Agent) -> 528 -> Unloaded process successfully.
c:\WINDOWS\update.2\svchost.exe (Backdoor.Agent) -> 2288 -> Unloaded process successfully.
c:\WINDOWS\update.5.0\svchost.exe (Trojan.Downloader) -> 1520 -> Unloaded process successfully.
c:\WINDOWS\update.5.0\svchost.exe (Trojan.Downloader) -> 2036 -> Unloaded process successfully.

Infikované moduly v paměti:
(Žádné škodlivé položky nebyly zjištěny)

Infikované klíče v registru:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wxpdrivers (Trojan.Dropper) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\srvsysdriver32 (Trojan.Delf) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\srviecheck (Backdoor.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\srvbtcclient (Trojan.Downloader) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\wxpdrivers (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\wxpdrivers (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SRVSYSDRIVER32 (Trojan.Agent) -> Quarantined and deleted successfully.

Infikované hodnoty v registru:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\tray_ico0 (Trojan.Dropper) -> Value: tray_ico0 -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\tray_ico1 (Trojan.Dropper) -> Value: tray_ico1 -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\systemup (Trojan.Agent) -> Value: systemup -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\l1rezerv.exe (Trojan.Agent) -> Value: l1rezerv.exe -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sysdriver32.exe (Trojan.Delf) -> Value: sysdriver32.exe -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sysdriver32_.exe (Trojan.Delf) -> Value: sysdriver32_.exe -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wxpDrivers\ImagePath (Trojan.Agent) -> Value: ImagePath -> Quarantined and deleted successfully.

Infikované datové položky v registru:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

Infikované složky:
(Žádné škodlivé položky nebyly zjištěny)

Infikované soubory:
c:\WINDOWS\update.tray-8-0\svchost.exe (Trojan.Dropper) -> Quarantined and deleted successfully.
c:\WINDOWS\update.tray-12-0\svchost.exe (Trojan.Dropper) -> Quarantined and deleted successfully.
c:\WINDOWS\systemup.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\update.1\svchost.exe (Trojan.Dropper) -> Quarantined and deleted successfully.
c:\WINDOWS\Temp\118819.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\Temp\1660754.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\Temp\1948364.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\Temp\4354841.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\Temp\450829613.exe (Trojan.FakeAlert.Gen) -> Quarantined and deleted successfully.
c:\WINDOWS\l1rezerv.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\sysdriver32.exe (Trojan.Delf) -> Quarantined and deleted successfully.
c:\WINDOWS\sysdriver32_.exe (Trojan.Delf) -> Quarantined and deleted successfully.
c:\WINDOWS\update.2\svchost.exe (Backdoor.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\update.5.0\svchost.exe (Trojan.Downloader) -> Quarantined and deleted successfully.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119506
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: FB vir (aktualizace abdobe reader) - část první

#4 Příspěvek od Rudy »

Smazáno. Nyní restartujte a dejte nový log z RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

meda
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 26 črc 2011 11:36

Re: FB vir (aktualizace abdobe reader) - část první

#5 Příspěvek od meda »

Nový log z RSIT, část první :

Logfile of random's system information tool 1.09 (written by random/random)
Run by Meda at 2003-01-11 10:33:06
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 12 GB (47%) free of 25 GB
Total RAM: 511 MB (61% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:33:12, on 11.1.2003
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\Mixer.exe
C:\WINDOWS\system32\RunDll32.exe
C:\WINDOWS\system32\RunDll32.exe
C:\Program Files\Labtec\Labtec Keyboard-Desktop Software\DsiMmKbd.EXE
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
D:\avast\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
D:\avast\aswUpdSv.exe
D:\avast\ashServ.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Documents and Settings\Meda\Plocha\RSIT.exe
C:\Program Files\trend micro\Meda.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG10\avgssie.dll (file missing)
O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll (file missing)
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll (file missing)
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [C-Media Mixer] Mixer.exe /startup
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [CmPCIaudio] RunDll32 CMICNFG3.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [LabtecKB] C:\Program Files\Labtec\Labtec Keyboard-Desktop Software\DsiMmKbd.EXE
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [wxpdrv] C:\WINDOWS\services32.exe
O4 - HKLM\..\Run: [1350150.exe] "C:\WINDOWS\TEMP\1350150.exe"
O4 - HKLM\..\Run: [2972590.exe] "C:\DOCUME~1\Meda\LOCALS~1\Temp\2972590.exe"
O4 - HKLM\..\Run: [5874524.exe] "C:\DOCUME~1\Meda\LOCALS~1\Temp\5874524.exe"
O4 - HKLM\..\Run: [3224756.exe] "C:\WINDOWS\TEMP\3224756.exe"
O4 - HKLM\..\Run: [4178942.exe] "C:\DOCUME~1\Meda\LOCALS~1\Temp\4178942.exe"
O4 - HKLM\..\Run: [8181215.exe] "C:\WINDOWS\TEMP\8181215.exe"
O4 - HKLM\..\Run: [22260774-loader2.exe] "C:\WINDOWS\TEMP\22260774-loader2.exe"
O4 - HKLM\..\Run: [AVG_TRAY] C:\Program Files\AVG\AVG10\avgtray.exe
O4 - HKLM\..\Run: [avast!] D:\avast\ashDisp.exe
O4 - HKLM\..\Run: [sysdriver32.exe] "C:\WINDOWS\sysdriver32.exe" rezerv
O4 - HKLM\..\Run: [sysdriver32_.exe] "C:\WINDOWS\sysdriver32_.exe" rezerv
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Meda\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O9 - Extra button: HP Smart Select - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: avgsecuritytoolbar - {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - C:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll (file missing)
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG10\avgpp.dll (file missing)
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Unknown owner - C:\Program Files\Avira\AntiVir Desktop\sched.exe (file missing)
O23 - Service: Avira AntiVir Guard (AntiVirService) - Unknown owner - C:\Program Files\Avira\AntiVir Desktop\avguard.exe (file missing)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - D:\avast\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - D:\avast\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - D:\avast\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - D:\avast\ashWebSv.exe
O23 - Service: AVG Security Toolbar Service - Unknown owner - C:\Program Files\AVG\AVG10\Toolbar\ToolbarBroker.exe (file missing)
O23 - Service: AVGIDSAgent - Unknown owner - C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe (file missing)
O23 - Service: AVG WatchDog (avgwd) - Unknown owner - C:\Program Files\AVG\AVG10\avgwdsvc.exe (file missing)
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

--
End of file - 7541 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1078081533-515967899-682003330-1003Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1078081533-515967899-682003330-1003UA.job
C:\WINDOWS\tasks\WGASetup.job

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\Meda\Data aplikací\Mozilla\Firefox\Profiles\qor8117j.default

prefs.js - "browser.startup.homepage" - "http://seznam.cz"
prefs.js - "extensions.enabledItems" - "{20a82645-c095-46ed-80e3-08825760534b}:1.1, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.18"

"smartwebprinting@hp.com"=C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn2
"{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"{1E73965B-8B48-48be-9C8D-68B920ABC1C4}"=C:\Program Files\AVG\AVG10\Firefox4\
"avg@igeared"=C:\Program Files\AVG\AVG10\Toolbar\Firefox\avg@igeared


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files\Google\Picasa3\npPicasa3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files\Mozilla Firefox\components\
browser.xpt
browserdirprovider.dll
brwsrcmp.dll
components.list
FeedConverter.js
FeedProcessor.js
FeedWriter.js
fuelApplication.js
GPSDGeolocationProvider.js
jsconsole-clhandler.js
NetworkGeolocationProvider.js
nsAddonRepository.js
nsBadCertHandler.js
nsBlocklistService.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsContentDispatchChooser.js
nsContentPrefService.js
nsDefaultCLH.js
nsDownloadManagerUI.js
nsExtensionManager.js
nsFormAutoComplete.js
nsHandlerService.js
nsHelperAppDlg.js
nsINIProcessor.js
nsLivemarkService.js
nsLoginInfo.js
nsLoginManager.js
nsLoginManagerPrompter.js
nsMicrosummaryService.js
nsPlacesAutoComplete.js
nsPlacesDBFlush.js
nsPlacesTransactionsService.js
nsPrivateBrowsingService.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsTaggingService.js
nsTryToClose.js
nsUpdateService.js
nsUpdateServiceStub.js
nsUpdateTimerManager.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsURLFormatter.js
nsWebHandlerApp.js
pluginGlue.js
storage-Legacy.js
storage-mozStorage.js
txEXSLTRegExFunctions.js
WebContentConverter.js

C:\Program Files\Mozilla Firefox\plugins\
npnul32.dll
nppdf32.dll

C:\Program Files\Mozilla Firefox\searchplugins\
avg_igeared.xml
google.xml
jyxo-cz.xml
mall-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Documents and Settings\Meda\Data aplikací\Mozilla\Firefox\Profiles\qor8117j.default\extensions\
{20a82645-c095-46ed-80e3-08825760534b}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2008-03-27 322880]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG10\avgssie.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A3BC75A2-1F87-4686-AA43-5347D756017C}]
AVG Security Toolbar BHO - C:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2008-03-27 501056]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - AVG Security Toolbar - C:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll []

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2005-12-10 7311360]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2005-12-10 86016]
"C-Media Mixer"=Mixer.exe /startup []
"Cmaudio"=RunDll32 cmicnfg.cpl,CMICtrlWnd []
"CmPCIaudio"=RunDll32 CMICNFG3.cpl,CMICtrlWnd []
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe /min []
"LabtecKB"=C:\Program Files\Labtec\Labtec Keyboard-Desktop Software\DsiMmKbd.EXE [2003-04-08 184320]
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2008-03-25 49152]
"hpqSRMon"= []
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2011-01-31 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-20 932288]
"NeroCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"wxpdrv"=C:\WINDOWS\services32.exe []
"tray_ico"= []
"tray_ico2"= []
"tray_ico3"= []
"tray_ico4"= []
"1350150.exe"=C:\WINDOWS\TEMP\1350150.exe [2003-01-09 247296]
"2972590.exe"=C:\DOCUME~1\Meda\LOCALS~1\Temp\2972590.exe [2003-01-09 247296]
"5874524.exe"=C:\DOCUME~1\Meda\LOCALS~1\Temp\5874524.exe [2003-01-09 247296]
"3224756.exe"=C:\WINDOWS\TEMP\3224756.exe [2003-01-09 247296]
"4178942.exe"=C:\DOCUME~1\Meda\LOCALS~1\Temp\4178942.exe [2003-01-09 256000]
"8181215.exe"=C:\WINDOWS\TEMP\8181215.exe [2003-01-09 495616]
"22260774-loader2.exe"=C:\WINDOWS\TEMP\22260774-loader2.exe [2003-01-09 256000]
"AVG_TRAY"=C:\Program Files\AVG\AVG10\avgtray.exe []
"avast!"=D:\avast\ashDisp.exe [2006-08-05 108160]
"sysdriver32.exe"=C:\WINDOWS\sysdriver32.exe rezerv []
"sysdriver32_.exe"=C:\WINDOWS\sysdriver32_.exe rezerv []

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"Google Update"=C:\Documents and Settings\Meda\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [2011-01-23 136176]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLUA"=0
"EnableSecureUIAPaths"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"D:\Programky\QIP 8095\qip.exe"="D:\Programky\QIP 8095\qip.exe:*:Enabled:Quiet Internet Pager"
"C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe:*:Enabled:hpqtra08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe:*:Enabled:hpqste08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hposid01.exe"="C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:*:Enabled:hposid01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe:*:Enabled:hpiscnapp.exe"
"C:\Program Files\Common Files\HP\Digital Imaging\bin\hpqPhotoCrm.exe"="C:\Program Files\Common Files\HP\Digital Imaging\bin\hpqPhotoCrm.exe:*:Enabled:hpqphotocrm.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqpsapp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqpsapp.exe:*:Enabled:hpqpsapp.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqpse.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqpse.exe:*:Enabled:hpqpse.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqsudi.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqsudi.exe:*:Enabled:hpqsudi.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe:*:Enabled:hpqgplgtupl.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe:*:Enabled:hpqgpc01.exe"
"C:\Prograky\XBMC\XBMC.exe"="C:\Prograky\XBMC\XBMC.exe:*:Enabled:XBMC"
"C:\Documents and Settings\Meda\Dokumenty\Stažené soubory\Flash-Player.exe"="C:\Documents and Settings\Meda\Dokumenty\Stažené soubory\Flash-Player.exe:*:Enabled:C:\Documents and Settings\Meda\Dokumenty\Stažené soubory\Flash-Player.exe"
"C:\WINDOWS\update.1\svchost.exe"="C:\WINDOWS\update.1\svchost.exe:*:Enabled:C:\WINDOWS\update.1\svchost.exe"
"C:\WINDOWS\update.tray-8-0\svchost.exe"="C:\WINDOWS\update.tray-8-0\svchost.exe:*:Enabled:C:\WINDOWS\update.tray-8-0\svchost.exe"
"C:\WINDOWS\update.2\svchost.exe"="C:\WINDOWS\update.2\svchost.exe:*:Enabled:C:\WINDOWS\update.2\svchost.exe"
"C:\Program Files\AVG\AVG10\avgnsx.exe"="C:\Program Files\AVG\AVG10\avgnsx.exe:*:Enabled:Webový štít"
"C:\Program Files\AVG\AVG10\avgmfapx.exe"="C:\Program Files\AVG\AVG10\avgmfapx.exe:*:Enabled:Instalátor AVG"
"C:\Program Files\AVG\AVG10\avgemcx.exe"="C:\Program Files\AVG\AVG10\avgemcx.exe:*:Enabled:Obecná kontrola pošty"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe:*:Enabled:hpqtra08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe:*:Enabled:hpqste08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hposid01.exe"="C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:*:Enabled:hposid01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe:*:Enabled:hpiscnapp.exe"
"C:\Program Files\Common Files\HP\Digital Imaging\bin\hpqPhotoCrm.exe"="C:\Program Files\Common Files\HP\Digital Imaging\bin\hpqPhotoCrm.exe:*:Enabled:hpqphotocrm.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqpsapp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqpsapp.exe:*:Enabled:hpqpsapp.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqpse.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqpse.exe:*:Enabled:hpqpse.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqsudi.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqsudi.exe:*:Enabled:hpqsudi.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe:*:Enabled:hpqgplgtupl.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe:*:Enabled:hpqgpc01.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"midi"=wdmaud.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave1"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer2"=wdmaud.drv

======List of files/folders created in the last 1 month======

2011-06-29 19:30:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2541763$
2011-06-16 14:27:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2476490$
2011-06-16 14:27:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2503665$
2011-06-16 14:27:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2535512$
2011-06-16 14:26:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2536276$
2011-06-16 14:25:14 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893$
2011-05-26 19:49:24 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2011-05-25 21:05:14 ----D---- C:\WINDOWS\system32\XPSViewer
2011-05-25 21:05:07 ----D---- C:\Program Files\MSBuild
2011-05-25 21:05:04 ----D---- C:\WINDOWS\system32\en-US
2011-05-25 21:04:55 ----D---- C:\Program Files\Reference Assemblies
2011-05-25 21:04:20 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2011-05-25 21:04:20 ----N---- C:\WINDOWS\system32\prntvpt.dll
2011-05-25 21:04:19 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2011-05-25 21:04:19 ----D---- C:\5c9679a7e92f9e04a19b05bb84
2011-05-24 13:59:38 ----RSD---- C:\WINDOWS\assembly
2011-05-24 13:54:46 ----D---- C:\WINDOWS\Microsoft.NET
2011-05-24 12:45:35 ----D---- C:\Documents and Settings\Meda\Data aplikací\EveryWAN Remote Support Personal Edition
2011-05-02 18:41:40 ----A---- C:\WINDOWS\Codec Pack - All In 1 Setup Log.txt
2011-04-15 14:49:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2485663$
2011-04-15 14:49:11 ----HDC---- C:\WINDOWS\$NtUninstallKB2506223$
2011-04-15 14:48:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2412687$
2011-04-15 14:48:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2508272$
2011-04-15 14:48:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2503658$
2011-04-15 14:48:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2507618$
2011-04-15 14:48:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2508429$
2011-04-15 14:47:53 ----HDC---- C:\WINDOWS\$NtUninstallKB2511455$
2011-04-15 14:47:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2506212$
2011-04-15 14:45:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2509553$
2011-04-13 23:40:10 ----A---- C:\WINDOWS\system32\GPhotos.scr
2011-03-16 19:37:42 ----HDC---- C:\WINDOWS\$NtUninstallKB971029$
2011-03-09 20:20:10 ----HDC---- C:\WINDOWS\$NtUninstallKB2479943$
2011-03-09 20:18:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2481109$
2011-03-06 00:08:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2524375$
2011-02-10 03:06:21 ----HDC---- C:\WINDOWS\$NtUninstallKB2478971$
2011-02-10 03:06:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2485376$
2011-02-10 03:05:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2479628$
2011-02-10 03:05:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2483185$
2011-02-10 03:01:26 ----HDC---- C:\WINDOWS\$NtUninstallKB2476687$
2011-02-10 03:01:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2478960$
2011-02-10 03:01:09 ----A---- C:\WINDOWS\imsins.BAK
2011-02-10 03:00:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2393802$
2011-01-21 14:23:33 ----D---- C:\Documents and Settings\Meda\Data aplikací\WinRAR
2011-01-16 19:46:58 ----D---- C:\Documents and Settings\Meda\Data aplikací\XBMC
2011-01-16 19:46:16 ----A---- C:\WINDOWS\system32\D3DCompiler_43.dll
2011-01-16 19:46:12 ----A---- C:\WINDOWS\system32\D3DX9_43.dll
2011-01-16 19:44:25 ----D---- C:\Prograky
2011-01-16 19:28:45 ----D---- C:\Program Files\Microsoft SDKs
2011-01-16 19:18:37 ----D---- C:\Documents and Settings\Meda\Data aplikací\J River
2011-01-16 19:12:31 ----N---- C:\WINDOWS\system32\AudDevicePlugin.dll
2011-01-16 19:12:31 ----N---- C:\WINDOWS\system32\AReadyLB.dll
2011-01-16 19:12:31 ----A---- C:\WINDOWS\system32\w3url.dll
2011-01-16 19:12:26 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2011-01-16 19:12:19 ----D---- C:\WINDOWS\Logs
2011-01-16 19:11:45 ----D---- C:\Program Files\J River
2011-01-13 02:40:21 ----HDC---- C:\WINDOWS\$NtUninstallKB2419632$
2011-01-08 03:03:29 ----A---- C:\WINDOWS\system32\MediaIO1.dll
2011-01-08 03:03:27 ----A---- C:\WINDOWS\system32\MioPlayer2.dll
2010-12-16 01:05:37 ----HDC---- C:\WINDOWS\$NtUninstallKB2296199$
2010-12-16 01:05:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2010-12-16 01:04:53 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2010-12-16 01:04:45 ----HDC---- C:\WINDOWS\$NtUninstallKB2443685$
2010-12-16 01:04:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2436673$
2010-12-16 01:04:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2467659$
2010-12-16 01:02:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2010-12-09 18:59:36 ----D---- C:\Documents and Settings\Meda\Data aplikací\Ahead
2010-12-09 18:57:02 ----RA---- C:\WINDOWS\system32\picn20.dll
2010-12-09 18:57:00 ----RA---- C:\WINDOWS\system32\imagx5.dll
2010-12-09 18:56:59 ----RA---- C:\WINDOWS\system32\ImagXpr5.dll
2010-12-09 18:56:59 ----RA---- C:\WINDOWS\system32\imagr5.dll
2010-12-09 18:56:53 ----RA---- C:\WINDOWS\system32\NeroCheck.exe
2010-12-09 18:56:53 ----D---- C:\Program Files\Common Files\Ahead
2010-11-27 14:56:10 ----D---- C:\Documents and Settings\All Users\Data aplikací\Windows Genuine Advantage
2010-11-19 19:18:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2387149$
2010-11-19 19:18:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2279986$
2010-11-19 19:18:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2345886$
2010-11-19 19:18:21 ----HDC---- C:\WINDOWS\$NtUninstallKB2259922$
2010-11-19 19:18:11 ----HDC---- C:\WINDOWS\$NtUninstallKB2296011$
2010-11-19 19:18:01 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2010-11-19 19:17:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2378111_WM9$
2010-11-19 19:17:42 ----HDC---- C:\WINDOWS\$NtUninstallKB982132$
2010-11-19 19:17:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$
2010-11-19 19:14:51 ----HDC---- C:\WINDOWS\$NtUninstallKB979687$
2010-11-19 19:14:41 ----HDC---- C:\WINDOWS\$NtUninstallKB2121546$
2010-11-19 19:13:51 ----HDC---- C:\WINDOWS\$NtUninstallKB981322$
2010-11-19 19:13:41 ----HDC---- C:\WINDOWS\$NtUninstallKB981957$
2010-11-19 19:13:31 ----HDC---- C:\WINDOWS\$NtUninstallKB2141007$
2010-11-19 19:13:14 ----HDC---- C:\WINDOWS\$NtUninstallKB2158563$
2010-11-19 19:12:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2360937$
2010-09-08 01:21:54 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2010-09-02 16:06:28 ----HDC---- C:\WINDOWS\$NtUninstallKB960763$
2010-09-02 16:06:06 ----D---- C:\Program Files\MSXML 4.0
2010-09-01 13:57:04 ----A---- C:\WINDOWS\system32\drivers\usbscan.sys
2010-09-01 13:52:12 ----D---- C:\Documents and Settings\All Users\Data aplikací\Hewlett-Packard
2010-09-01 13:52:00 ----A---- C:\WINDOWS\system32\hpz3l5mu.dll
2010-09-01 13:50:02 ----A---- C:\WINDOWS\system32\hpzids01.dll
2010-09-01 13:50:02 ----A---- C:\WINDOWS\system32\hpowiax7.dll
2010-09-01 13:50:01 ----A---- C:\WINDOWS\system32\hpovst15.dll
2010-09-01 13:50:01 ----A---- C:\WINDOWS\system32\hpotscl6.dll
2010-09-01 13:13:55 ----D---- C:\Documents and Settings\Meda\Data aplikací\HP
2010-09-01 12:37:21 ----D---- C:\Documents and Settings\All Users\Data aplikací\HP
2010-09-01 12:36:41 ----D---- C:\Program Files\Common Files\HP
2010-09-01 12:36:38 ----D---- C:\Program Files\Hewlett-Packard
2010-09-01 12:36:29 ----D---- C:\Program Files\Common Files\Hewlett-Packard
2010-09-01 12:35:40 ----A---- C:\WINDOWS\system32\hppldcoi.dll
2010-09-01 12:35:40 ----A---- C:\WINDOWS\system32\drivers\HPZius12.sys
2010-09-01 12:35:39 ----A---- C:\WINDOWS\system32\drivers\HPZipr12.sys
2010-09-01 12:35:38 ----A---- C:\WINDOWS\system32\drivers\HPZid412.sys
2010-09-01 12:35:31 ----DC---- C:\WINDOWS\system32\DRVSTORE
2010-09-01 12:35:13 ----A---- C:\WINDOWS\system32\drivers\usbprint.sys
2010-09-01 12:34:21 ----HD---- C:\Config.Msi
2010-09-01 12:31:30 ----D---- C:\Program Files\HP
2010-08-11 13:31:12 ----HDC---- C:\WINDOWS\$NtUninstallKB982214$
2010-08-11 13:31:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2010-08-11 13:30:42 ----HDC---- C:\WINDOWS\$NtUninstallKB981852$
2010-08-11 13:30:28 ----HDC---- C:\WINDOWS\$NtUninstallKB2079403$
2010-08-11 13:29:41 ----HDC---- C:\WINDOWS\$NtUninstallKB2160329$
2010-08-11 13:29:26 ----HDC---- C:\WINDOWS\$NtUninstallKB980436$
2010-08-11 13:27:34 ----HDC---- C:\WINDOWS\$NtUninstallKB981997$
2010-08-11 13:27:20 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2010-08-10 11:53:53 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2010-08-10 11:53:35 ----HDC---- C:\WINDOWS\$NtUninstallKB929399$
2010-08-10 11:53:18 ----HDC---- C:\WINDOWS\$NtUninstallKB939683$
2010-08-10 11:52:53 ----HDC---- C:\WINDOWS\$NtUninstallKB954154_WM11$
2010-08-09 15:49:34 ----N---- C:\WINDOWS\system32\spmsg.dll
2010-08-09 15:49:33 ----HDC---- C:\WINDOWS\$NtUninstallMSCompPackV1$
2010-08-09 15:49:17 ----D---- C:\Program Files\Windows Media Connect 2
2010-08-09 15:49:04 ----HDC---- C:\WINDOWS\$NtUninstallwmp11$
2010-08-09 15:48:15 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2010-08-09 15:47:45 ----D---- C:\WINDOWS\system32\LogFiles
2010-08-09 15:47:45 ----D---- C:\WINDOWS\system32\drivers\UMDF
2010-08-09 15:47:40 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2010-08-03 12:46:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2286198$
2010-07-28 13:12:04 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2010-07-28 13:11:52 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2010-07-27 15:57:37 ----HDC---- C:\WINDOWS\$NtUninstallKB980218$
2010-07-27 15:57:14 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2010-07-27 15:56:54 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2010-07-27 15:56:32 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2010-07-27 15:56:10 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2010-07-27 15:55:49 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2010-07-27 15:55:29 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2010-07-27 15:54:54 ----HDC---- C:\WINDOWS\$NtUninstallKB971468$
2010-07-27 15:54:13 ----HDC---- C:\WINDOWS\$NtUninstallKB979683$
2010-07-27 15:53:49 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2010-07-27 15:53:40 ----HDC---- C:\WINDOWS\$NtUninstallKB980195$
2010-07-27 15:53:30 ----HDC---- C:\WINDOWS\$NtUninstallKB980232$
2010-07-27 15:53:19 ----HDC---- C:\WINDOWS\$NtUninstallKB979402_WM9$
2010-07-27 15:53:10 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-07-27 15:53:05 ----D---- C:\WINDOWS\system32\KB905474
2010-07-27 15:52:47 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-07-27 15:52:32 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2010-07-27 15:52:13 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-07-27 15:51:54 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2010-07-27 15:51:39 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2010-07-27 15:51:24 ----HDC---- C:\WINDOWS\$NtUninstallKB978037$
2010-07-27 15:51:03 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2010-07-27 15:50:43 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2010-07-27 15:50:23 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2010-07-27 15:49:56 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2010-07-27 15:49:43 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2010-07-27 15:49:23 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-07-27 15:48:58 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2010-07-27 15:46:02 ----A---- C:\WINDOWS\system32\MRT.exe
2010-07-27 15:45:52 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-07-27 15:45:34 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2010-07-27 15:45:24 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-07-27 15:45:15 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2010-07-27 15:45:06 ----HDC---- C:\WINDOWS\$NtUninstallKB975561$
2010-07-27 15:44:57 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2010-07-27 15:44:49 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2010-07-27 15:44:36 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2010-07-27 15:44:28 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-07-27 15:44:18 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2010-07-27 15:44:06 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2010-07-27 15:43:56 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2010-07-27 15:43:42 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2010-07-27 15:43:33 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2010-07-27 15:43:23 ----HDC---- C:\WINDOWS\$NtUninstallKB981793$
2010-07-27 15:43:15 ----HDC---- C:\WINDOWS\$NtUninstallKB978601$
2010-07-27 15:43:01 ----HDC---- C:\WINDOWS\$NtUninstallKB979559$
2010-07-27 15:42:11 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2010-07-27 15:42:01 ----HDC---- C:\WINDOWS\$NtUninstallKB978695_WM9$
2010-07-27 15:41:46 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-07-27 15:41:33 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2010-07-27 15:41:21 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2010-07-27 15:41:10 ----HDC---- C:\WINDOWS\$NtUninstallKB950760$
2010-07-27 15:41:01 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-07-27 15:40:49 ----HDC---- C:\WINDOWS\$NtUninstallKB954459$
2010-07-27 15:40:24 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2010-07-27 15:40:15 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2010-07-27 15:39:49 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2010-07-27 15:39:38 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2010-07-27 15:39:29 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2010-07-27 15:39:20 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2010-07-27 15:39:12 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2010-07-27 15:39:03 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2010-07-27 15:38:55 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2010-07-27 15:38:44 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2010-07-27 15:38:34 ----HDC---- C:\WINDOWS\$NtUninstallKB975562$
2010-07-27 15:38:21 ----D---- C:\WINDOWS\ie8updates
2010-07-27 15:38:12 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2010-07-27 15:38:02 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2010-07-27 15:37:52 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2010-07-27 15:37:38 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2010-07-27 15:37:29 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-07-27 15:37:10 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-07-27 15:30:08 ----N---- C:\WINDOWS\system32\browserchoice.exe
2010-07-27 15:16:43 ----D---- C:\WINDOWS\system32\PreInstall
2010-07-27 15:16:40 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2010-07-27 15:16:39 ----HD---- C:\WINDOWS\$hf_mig$
2010-07-27 15:09:43 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2010-07-27 15:05:52 ----D---- C:\WINDOWS\WBEM
2010-07-27 15:04:50 ----HDC---- C:\WINDOWS\ie8
2010-07-25 20:58:52 ----D---- C:\Documents and Settings\Meda\Data aplikací\Avira
2010-07-25 20:56:25 ----D---- C:\Program Files\OpenOffice.org 3
2010-07-25 20:52:29 ----A---- C:\WINDOWS\system32\drivers\ssmdrv.sys
2010-07-25 20:52:28 ----A---- C:\WINDOWS\system32\drivers\avipbb.sys
2010-07-25 20:52:28 ----A---- C:\WINDOWS\system32\drivers\avgntmgr.sys
2010-07-25 20:52:28 ----A---- C:\WINDOWS\system32\drivers\avgntflt.sys
2010-07-25 20:52:27 ----A---- C:\WINDOWS\system32\drivers\avgntdd.sys
2010-07-25 20:50:13 ----HDC---- C:\WINDOWS\$NtUninstallKB952011$
2010-07-25 20:48:49 ----D---- C:\Program Files\Google
2010-07-25 20:48:35 ----D---- C:\Documents and Settings\Meda\Data aplikací\Macromedia
2010-07-25 20:48:35 ----D---- C:\Documents and Settings\Meda\Data aplikací\Adobe
2010-07-25 20:47:24 ----A---- C:\WINDOWS\nsreg.dat
2010-07-25 20:47:20 ----D---- C:\Documents and Settings\Meda\Data aplikací\Mozilla
2010-07-25 20:47:13 ----D---- C:\Program Files\Mozilla Firefox
2010-07-25 20:44:33 ----A---- C:\WINDOWS\mixerdef.ini
2010-07-25 20:42:28 ----A---- C:\WINDOWS\system32\CMRMDRV3.exe
2010-07-25 20:41:59 ----A---- C:\WINDOWS\CmiPCIUninstall.exe
2010-07-25 20:41:58 ----A---- C:\WINDOWS\cmudax3.ini
2010-07-25 20:41:53 ----D---- C:\Program Files\C-Media PCI Audio Device
2010-07-25 20:41:53 ----A---- C:\WINDOWS\system32\drivers\cmudax3.sys
2010-07-25 20:41:53 ----A---- C:\WINDOWS\system32\cmudax3.DLL
2010-07-25 20:41:40 ----D---- C:\PCI-8738-090401-5.12.8.1734(XP-RC-01)_FR
2010-07-25 20:38:58 ----RA---- C:\WINDOWS\system32\cmuda.dll
2010-07-25 20:38:58 ----RA---- C:\WINDOWS\system32\cmirmdrv.exe
2010-07-25 20:38:58 ----RA---- C:\WINDOWS\system32\cmirmdrv.dll
2010-07-25 20:38:56 ----RA---- C:\WINDOWS\system32\udaprop.dll
2010-07-25 20:38:56 ----RA---- C:\WINDOWS\system32\cmiwcnfg.dll
2010-07-25 20:38:55 ----RA---- C:\WINDOWS\system32\drivers\cmuda.sys
2010-07-25 20:29:37 ----RA---- C:\WINDOWS\cmijack.dat
2010-07-25 20:29:37 ----RA---- C:\WINDOWS\cmaudio.dat
2010-07-25 20:29:36 ----RA---- C:\WINDOWS\cmuninst.exe
2010-07-25 20:29:36 ----RA---- C:\WINDOWS\cmuninst.dat
2010-07-25 20:29:35 ----RA---- C:\WINDOWS\system32\cmnprop.dll
2010-07-25 20:29:35 ----RA---- C:\WINDOWS\mixer.exe
2010-07-25 20:29:34 ----RA---- C:\WINDOWS\system32\Audio3D.dll
2010-07-25 20:29:34 ----RA---- C:\WINDOWS\system32\a3d.dll
2010-07-25 20:29:32 ----RA---- C:\WINDOWS\system32\drivers\cmaudio.sys
2010-07-25 20:25:20 ----A---- C:\WINDOWS\CMISETUP.INI
2010-07-25 20:25:20 ----A---- C:\WINDOWS\CMCDPLAY.INI
2010-07-25 20:25:18 ----A---- C:\WINDOWS\Wininit.ini
2010-07-25 20:25:12 ----D---- C:\Program Files\C-Media 3D Audio
2010-07-25 20:25:12 ----A---- C:\WINDOWS\CMIUninstall.exe
2010-07-25 20:25:12 ----A---- C:\WINDOWS\CmiRmRedundDir.exe
2010-07-25 20:25:12 ----A---- C:\WINDOWS\CMIRmDriver.dll
2010-07-25 20:24:55 ----A---- C:\WINDOWS\IsUninst.exe
2010-07-25 20:16:32 ----D---- C:\WINDOWS\nview
2010-07-25 20:16:32 ----A---- C:\WINDOWS\system32\nvudisp.exe
2010-07-25 20:16:21 ----A---- C:\WINDOWS\system32\NVUNINST.EXE
2010-07-25 20:16:05 ----D---- C:\NVIDIA
2010-07-25 20:14:44 ----D---- C:\Program Files\InstallShield Installation Information
2010-07-25 20:13:27 ----A---- C:\WINDOWS\system32\difxapi.dll
2010-07-25 20:13:26 ----D---- C:\Program Files\VIA
2010-07-25 20:13:19 ----D---- C:\Program Files\Common Files\InstallShield
2010-07-25 20:13:00 ----A---- C:\WINDOWS\system32\drivers\videX32.sys
2010-07-25 20:12:58 ----D---- C:\VIA_HyperionPro_V524A
2010-07-25 20:11:35 ----A---- C:\WINDOWS\iun6002.exe
2010-07-25 20:09:05 ----D---- C:\Program Files\Codec Pack - All In 1
2010-07-25 20:06:51 ----D---- C:\WINDOWS\Prefetch
2010-07-25 20:03:48 ----D---- C:\Documents and Settings\Meda\Data aplikací\OpenOffice.org
2010-07-25 20:00:56 ----N---- C:\WINDOWS\system32\msxml6r.dll
2010-07-25 20:00:56 ----N---- C:\WINDOWS\system32\msxml6.dll
2010-07-25 20:00:45 ----N---- C:\WINDOWS\system32\smtpapi.dll
2010-07-25 20:00:45 ----N---- C:\WINDOWS\system32\rwnh.dll
2010-07-25 20:00:45 ----N---- C:\WINDOWS\system32\drivers\irbus.sys
2010-07-25 20:00:45 ----N---- C:\WINDOWS\system32\comsdupd.exe
2010-07-25 20:00:42 ----N---- C:\WINDOWS\system32\bitsprx4.dll
2010-07-25 20:00:42 ----N---- C:\WINDOWS\system32\azroles.dll
2010-07-25 20:00:42 ----N---- C:\WINDOWS\system32\ativvaxx.dll
2010-07-25 20:00:42 ----N---- C:\WINDOWS\system32\ativtmxx.dll
2010-07-25 20:00:42 ----N---- C:\WINDOWS\system32\ati3duag.dll
2010-07-25 20:00:42 ----N---- C:\WINDOWS\system32\ati3d1ag.dll
2010-07-25 20:00:42 ----N---- C:\WINDOWS\system32\ati2dvag.dll
2010-07-25 20:00:42 ----N---- C:\WINDOWS\system32\ati2dvaa.dll
2010-07-25 20:00:42 ----N---- C:\WINDOWS\system32\ati2cqag.dll
2010-07-25 20:00:42 ----N---- C:\WINDOWS\system32\aaclient.dll
2010-07-25 20:00:41 ----N---- C:\WINDOWS\system32\eappgnui.dll
2010-07-25 20:00:41 ----N---- C:\WINDOWS\system32\eappcfg.dll
2010-07-25 20:00:41 ----N---- C:\WINDOWS\system32\eapp3hst.dll
2010-07-25 20:00:41 ----N---- C:\WINDOWS\system32\eapolqec.dll
2010-07-25 20:00:41 ----N---- C:\WINDOWS\system32\dot3ui.dll
2010-07-25 20:00:41 ----N---- C:\WINDOWS\system32\dot3svc.dll
2010-07-25 20:00:41 ----N---- C:\WINDOWS\system32\dot3msm.dll
2010-07-25 20:00:41 ----N---- C:\WINDOWS\system32\dot3gpclnt.dll
2010-07-25 20:00:41 ----N---- C:\WINDOWS\system32\dot3dlg.dll
2010-07-25 20:00:41 ----N---- C:\WINDOWS\system32\dot3cfg.dll
2010-07-25 20:00:41 ----N---- C:\WINDOWS\system32\dot3api.dll
2010-07-25 20:00:41 ----N---- C:\WINDOWS\system32\dimsroam.dll
2010-07-25 20:00:41 ----N---- C:\WINDOWS\system32\dimsntfy.dll
2010-07-25 20:00:41 ----N---- C:\WINDOWS\system32\dhcpqec.dll
2010-07-25 20:00:41 ----N---- C:\WINDOWS\system32\credssp.dll
2010-07-25 20:00:40 ----N---- C:\WINDOWS\system32\eapsvc.dll
2010-07-25 20:00:40 ----N---- C:\WINDOWS\system32\eapqec.dll
2010-07-25 20:00:40 ----N---- C:\WINDOWS\system32\eappprxy.dll
2010-07-25 20:00:40 ----N---- C:\WINDOWS\system32\eapphost.dll
2010-07-25 20:00:39 ----N---- C:\WINDOWS\system32\kmsvc.dll
2010-07-25 20:00:39 ----N---- C:\WINDOWS\system32\kbdpash.dll
2010-07-25 20:00:39 ----N---- C:\WINDOWS\system32\kbdnepr.dll
2010-07-25 20:00:39 ----N---- C:\WINDOWS\system32\kbdiultn.dll
2010-07-25 20:00:39 ----N---- C:\WINDOWS\system32\kbdbhc.dll
2010-07-25 20:00:38 ----N---- C:\WINDOWS\system32\mssha.dll
2010-07-25 20:00:38 ----N---- C:\WINDOWS\system32\mmcperf.exe
2010-07-25 20:00:38 ----N---- C:\WINDOWS\system32\mmcfxcommon.dll
2010-07-25 20:00:38 ----N---- C:\WINDOWS\system32\mmcex.dll
2010-07-25 20:00:38 ----N---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2010-07-25 20:00:38 ----N---- C:\WINDOWS\system32\l2gpstore.dll
2010-07-25 20:00:37 ----N---- C:\WINDOWS\system32\napstat.exe
2010-07-25 20:00:37 ----N---- C:\WINDOWS\system32\napmontr.dll
2010-07-25 20:00:37 ----N---- C:\WINDOWS\system32\napipsec.dll
2010-07-25 20:00:37 ----N---- C:\WINDOWS\system32\mtxparhd.dll
2010-07-25 20:00:37 ----N---- C:\WINDOWS\system32\msshavmsg.dll
2010-07-25 20:00:36 ----N---- C:\WINDOWS\system32\s3gnb.dll
2010-07-25 20:00:36 ----N---- C:\WINDOWS\system32\rhttpaa.dll
2010-07-25 20:00:36 ----N---- C:\WINDOWS\system32\rasqec.dll
2010-07-25 20:00:36 ----N---- C:\WINDOWS\system32\qutil.dll
2010-07-25 20:00:36 ----N---- C:\WINDOWS\system32\qcliprov.dll
2010-07-25 20:00:36 ----N---- C:\WINDOWS\system32\qagentrt.dll
2010-07-25 20:00:36 ----N---- C:\WINDOWS\system32\qagent.dll
2010-07-25 20:00:36 ----N---- C:\WINDOWS\system32\photometadatahandler.dll
2010-07-25 20:00:36 ----N---- C:\WINDOWS\system32\onex.dll
2010-07-25 20:00:35 ----N---- C:\WINDOWS\system32\slserv.exe
2010-07-25 20:00:35 ----N---- C:\WINDOWS\system32\slrundll.exe
2010-07-25 20:00:35 ----N---- C:\WINDOWS\system32\slgen.dll
2010-07-25 20:00:35 ----N---- C:\WINDOWS\system32\slextspk.dll
2010-07-25 20:00:35 ----N---- C:\WINDOWS\system32\slcoinst.dll
2010-07-25 20:00:35 ----N---- C:\WINDOWS\system32\setupn.exe
2010-07-25 20:00:34 ----N---- C:\WINDOWS\system32\xpsp3res.dll
2010-07-25 20:00:34 ----N---- C:\WINDOWS\system32\wlanapi.dll
2010-07-25 20:00:34 ----N---- C:\WINDOWS\system32\windowscodecsext.dll
2010-07-25 20:00:34 ----N---- C:\WINDOWS\system32\windowscodecs.dll
2010-07-25 20:00:34 ----N---- C:\WINDOWS\system32\verclsid.exe
2010-07-25 20:00:34 ----N---- C:\WINDOWS\system32\tzchange.exe
2010-07-25 20:00:34 ----N---- C:\WINDOWS\system32\tspkg.dll
2010-07-25 20:00:34 ----N---- C:\WINDOWS\system32\tsgqec.dll
2010-07-25 20:00:33 ----N---- C:\WINDOWS\system32\wmphoto.dll
2010-07-25 20:00:30 ----N---- C:\WINDOWS\slrundll.exe
2010-07-25 20:00:30 ----A---- C:\WINDOWS\system32\xmllite.dll
2010-07-25 20:00:29 ----D---- C:\WINDOWS\system32\cs-cz
2010-07-25 20:00:29 ----D---- C:\WINDOWS\l2schemas
2010-07-25 20:00:28 ----D---- C:\WINDOWS\system32\cs
2010-07-25 20:00:28 ----D---- C:\WINDOWS\system32\bits
2010-07-25 19:58:30 ----D---- C:\WINDOWS\ServicePackFiles
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\ati1xsxx.sys
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\ati1xbxx.sys
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\ati1tuxx.sys
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\ati1ttxx.sys
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\ati1snxx.sys
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\ati1rvxx.sys
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\ati1raxx.sys
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\ati1pdxx.sys
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\ati1mdxx.sys
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\ati1btxx.sys
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\amdagp.sys
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\alim1541.sys
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\agpcpq.sys
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\agp440.sys
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\adv11nt5.dll
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\adv09nt5.dll
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\adv08nt5.dll
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\adv07nt5.dll
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\adv05nt5.dll
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\adv02nt5.dll
2010-07-25 19:56:43 ----N---- C:\WINDOWS\system32\drivers\adv01nt5.dll
2010-07-25 19:56:43 ----D---- C:\WINDOWS\network diagnostic
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\ch7xxnt5.dll
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\hidir.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\hidbth.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\hdaudbus.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\gagp30kx.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\bthusb.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\bthprint.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\bthport.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\bthpan.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\bthmodem.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\bthenum.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\atv10nt5.dll
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\atv06nt5.dll
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\atv04nt5.dll
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\atv02nt5.dll
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\atv01nt5.dll
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\atinxsxx.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\atinxbxx.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\atintuxx.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\atinttxx.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\atinsnxx.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\atinrvxx.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\atinraxx.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\atinpdxx.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\atinmdxx.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\atinbtxx.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\ati2mtag.sys
2010-07-25 19:56:42 ----N---- C:\WINDOWS\system32\drivers\ati2mtaa.sys
2010-07-25 19:56:41 ----N---- C:\WINDOWS\system32\drivers\siint5.dll
2010-07-25 19:56:41 ----N---- C:\WINDOWS\system32\drivers\sffp_mmc.sys
2010-07-25 19:56:41 ----N---- C:\WINDOWS\system32\drivers\s3gnbm.sys
2010-07-25 19:56:41 ----N---- C:\WINDOWS\system32\drivers\rndismpx.sys
2010-07-25 19:56:41 ----N---- C:\WINDOWS\system32\drivers\rfcomm.sys
2010-07-25 19:56:41 ----N---- C:\WINDOWS\system32\drivers\recagent.sys
2010-07-25 19:56:41 ----N---- C:\WINDOWS\system32\drivers\ntmtlfax.sys
2010-07-25 19:56:41 ----N---- C:\WINDOWS\system32\drivers\mutohpen.sys
2010-07-25 19:56:41 ----N---- C:\WINDOWS\system32\drivers\mtxparhm.sys
2010-07-25 19:56:41 ----N---- C:\WINDOWS\system32\drivers\mtlstrm.sys
2010-07-25 19:56:41 ----N---- C:\WINDOWS\system32\drivers\mtlmnt5.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\watv10nt.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\watv06nt.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\wadv11nt.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\wadv09nt.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\wadv08nt.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\wadv07nt.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\wacompen.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\viaagp.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\vchnt5.dll
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\usbvideo.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\usb8023x.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\smbali.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\slwdmsup.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\slnthal.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\slntamr.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\slnt7554.sys
2010-07-25 19:56:40 ----N---- C:\WINDOWS\system32\drivers\sisagp.sys
2010-07-25 19:55:04 ----A---- C:\WINDOWS\002693_.tmp
2010-07-25 19:54:43 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-07-25 19:54:27 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2010-07-25 19:51:50 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2010-07-25 19:48:14 ----A---- C:\Microsoft-Windows-XP-SP3-CZ.exe
2010-07-25 19:43:35 ----D---- C:\Program Files\7-Zip
2010-07-25 19:41:42 ----D---- C:\totalcmd
2010-07-25 19:41:42 ----D---- C:\Documents and Settings\Meda\Data aplikací\GHISLER
2010-07-25 19:41:42 ----A---- C:\WINDOWS\UC.PIF
2010-07-25 19:41:42 ----A---- C:\WINDOWS\RAR.PIF
2010-07-25 19:41:42 ----A---- C:\WINDOWS\PKZIP.PIF
2010-07-25 19:41:42 ----A---- C:\WINDOWS\PKUNZIP.PIF
2010-07-25 19:41:42 ----A---- C:\WINDOWS\NOCLOSE.PIF
2010-07-25 19:41:42 ----A---- C:\WINDOWS\LHA.PIF
2010-07-25 19:41:42 ----A---- C:\WINDOWS\ARJ.PIF
2010-07-25 19:37:09 ----SHD---- C:\RECYCLER
2010-07-25 19:32:51 ----A---- C:\WINDOWS\system32\drivers\usbstor.sys
2010-07-25 19:29:55 ----D---- C:\Documents and Settings\Meda\Data aplikací\Identities
2010-07-25 19:29:53 ----HD---- C:\Program Files\Uninstall Information
2010-07-25 19:29:47 ----SD---- C:\Documents and Settings\Meda\Data aplikací\Microsoft
2010-07-25 19:29:47 ----ASH---- C:\Documents and Settings\Meda\Data aplikací\desktop.ini
2010-07-25 19:28:52 ----D---- C:\WINDOWS\SoftwareDistribution
2010-07-25 19:28:50 ----SD---- C:\WINDOWS\system32\Microsoft
2010-07-25 19:28:50 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-07-25 19:27:44 ----AS---- C:\WINDOWS\bootstat.dat
2010-07-25 19:25:01 ----D---- C:\WINDOWS\system32\xircom
2010-07-25 19:25:01 ----D---- C:\Program Files\xerox
2010-07-25 19:25:01 ----D---- C:\Program Files\microsoft frontpage
2010-07-25 19:24:33 ----RASH---- C:\MSDOS.SYS
2010-07-25 19:24:33 ----RASH---- C:\IO.SYS
2010-07-25 19:24:33 ----A---- C:\WINDOWS\control.ini
2010-07-25 19:24:33 ----A---- C:\CONFIG.SYS
2010-07-25 19:24:33 ----A---- C:\AUTOEXEC.BAT
2010-07-25 19:24:11 ----A---- C:\WINDOWS\system32\mapi32.dll
2010-07-25 19:23:05 ----SD---- C:\WINDOWS\Downloaded Program Files
2010-07-25 19:23:05 ----RD---- C:\WINDOWS\Offline Web Pages
2010-07-25 19:22:51 ----HD---- C:\Program Files\WindowsUpdate
2010-07-25 19:22:46 ----D---- C:\Program Files\Online Services
2010-07-25 19:22:30 ----D---- C:\WINDOWS\system32\DirectX
2010-07-25 19:22:15 ----A---- C:\WINDOWS\system32\atrace.dll
2010-07-25 19:22:13 ----A---- C:\WINDOWS\system32\desktop.ini
2010-07-25 19:22:13 ----A---- C:\WINDOWS\desktop.ini
2010-07-25 19:22:08 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2010-07-25 19:22:07 ----D---- C:\Program Files\Common Files\Services
2010-07-25 19:22:07 ----A---- C:\WINDOWS\system32\acctres.dll
2010-07-25 19:22:05 ----SD---- C:\WINDOWS\Tasks
2010-07-25 19:22:05 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2010-07-25 19:22:04 ----D---- C:\Program Files\Common Files\MSSoap
2010-07-25 19:22:01 ----D---- C:\WINDOWS\system32\Macromed
2010-07-25 19:22:01 ----D---- C:\WINDOWS\srchasst
2010-07-25 19:21:59 ----A---- C:\WINDOWS\system32\wuweb.dll
2010-07-25 19:21:59 ----A---- C:\WINDOWS\system32\wucltui.dll
2010-07-25 19:21:59 ----A---- C:\WINDOWS\system32\wuauserv.dll
2010-07-25 19:21:59 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2010-07-25 19:21:58 ----A---- C:\WINDOWS\system32\wups.dll
2010-07-25 19:21:58 ----A---- C:\WINDOWS\system32\wuaueng.dll
2010-07-25 19:21:58 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2010-07-25 19:21:58 ----A---- C:\WINDOWS\system32\wuauclt.exe
2010-07-25 19:21:58 ----A---- C:\WINDOWS\system32\wuapi.dll
2010-07-25 19:21:58 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2010-07-25 19:21:58 ----A---- C:\WINDOWS\system32\qmgr.dll
2010-07-25 19:21:58 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2010-07-25 19:21:58 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2010-07-25 19:21:55 ----D---- C:\Program Files\Movie Maker
2010-07-25 19:21:52 ----A---- C:\WINDOWS\system32\safrslv.dll
2010-07-25 19:21:52 ----A---- C:\WINDOWS\system32\safrdm.dll
2010-07-25 19:21:52 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2010-07-25 19:21:52 ----A---- C:\WINDOWS\system32\racpldlg.dll
2010-07-25 19:21:49 ----D---- C:\WINDOWS\system32\Restore
2010-07-25 19:21:49 ----A---- C:\WINDOWS\system32\srsvc.dll
2010-07-25 19:21:49 ----A---- C:\WINDOWS\system32\srrstr.dll
2010-07-25 19:21:49 ----A---- C:\WINDOWS\system32\srclient.dll
2010-07-25 19:21:49 ----A---- C:\WINDOWS\system32\fltmc.exe
2010-07-25 19:21:49 ----A---- C:\WINDOWS\system32\fltlib.dll
2010-07-25 19:21:49 ----A---- C:\WINDOWS\system32\drivers\sr.sys
2010-07-25 19:21:49 ----A---- C:\WINDOWS\system32\drivers\fltmgr.sys
2010-07-25 19:21:48 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2010-07-25 19:21:48 ----A---- C:\WINDOWS\system32\msconf.dll
2010-07-25 19:21:48 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2010-07-25 19:21:48 ----A---- C:\WINDOWS\system32\mnmdd.dll
2010-07-25 19:21:48 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2010-07-25 19:21:48 ----A---- C:\WINDOWS\system32\ils.dll
2010-07-25 19:21:46 ----D---- C:\Program Files\NetMeeting
2010-07-25 19:21:46 ----A---- C:\WINDOWS\system32\msoert2.dll
2010-07-25 19:21:46 ----A---- C:\WINDOWS\system32\msoeacct.dll
2010-07-25 19:21:46 ----A---- C:\WINDOWS\system32\inetres.dll
2010-07-25 19:21:45 ----A---- C:\WINDOWS\system32\inetcomm.dll
2010-07-25 19:21:44 ----D---- C:\Program Files\Outlook Express
2010-07-25 19:21:44 ----A---- C:\WINDOWS\system32\schedsvc.dll
2010-07-25 19:21:44 ----A---- C:\WINDOWS\system32\mstinit.exe
2010-07-25 19:21:44 ----A---- C:\WINDOWS\system32\mstask.dll
2010-07-25 19:21:44 ----A---- C:\WINDOWS\system32\isign32.dll
2010-07-25 19:21:44 ----A---- C:\WINDOWS\system32\icwphbk.dll
2010-07-25 19:21:44 ----A---- C:\WINDOWS\system32\icwdial.dll
2010-07-25 19:21:43 ----A---- C:\WINDOWS\system32\inetcfg.dll
2010-07-25 19:21:35 ----D---- C:\Program Files\Common Files\System
2010-07-25 19:21:34 ----D---- C:\Program Files\Internet Explorer
2010-07-25 19:20:52 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2010-07-25 19:20:42 ----D---- C:\Program Files\ComPlus Applications
2010-07-25 19:20:40 ----A---- C:\WINDOWS\vbaddin.ini
2010-07-25 19:20:40 ----A---- C:\WINDOWS\vb.ini
2010-07-25 19:20:35 ----D---- C:\WINDOWS\Registration
2010-07-25 19:20:27 ----D---- C:\Program Files\Windows Media Player
2010-07-25 19:20:21 ----D---- C:\Program Files\Messenger
2010-07-25 19:20:18 ----D---- C:\Program Files\MSN Gaming Zone
2010-07-25 19:20:18 ----A---- C:\WINDOWS\system32\write.exe
2010-07-25 19:20:10 ----A---- C:\WINDOWS\system32\winchat.exe
2010-07-25 19:20:10 ----A---- C:\WINDOWS\system32\sndvol32.exe
2010-07-25 19:20:10 ----A---- C:\WINDOWS\system32\hticons.dll
2010-07-25 19:20:10 ----A---- C:\WINDOWS\system32\avwav.dll
2010-07-25 19:20:10 ----A---- C:\WINDOWS\system32\avtapi.dll
2010-07-25 19:20:10 ----A---- C:\WINDOWS\system32\avmeter.dll
2010-07-25 19:20:04 ----A---- C:\WINDOWS\system32\winmine.exe
2010-07-25 19:20:04 ----A---- C:\WINDOWS\system32\sol.exe
2010-07-25 19:20:04 ----A---- C:\WINDOWS\system32\charmap.exe
2010-07-25 19:20:04 ----A---- C:\WINDOWS\system32\getuname.dll
2010-07-25 19:20:04 ----A---- C:\WINDOWS\system32\calc.exe
2010-07-25 19:20:03 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2010-07-25 19:20:03 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2010-07-25 19:20:03 ----A---- C:\WINDOWS\system32\tslabels.ini
2010-07-25 19:20:03 ----A---- C:\WINDOWS\system32\tskill.exe
2010-07-25 19:20:03 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2010-07-25 19:20:03 ----A---- C:\WINDOWS\system32\tscon.exe
2010-07-25 19:20:03 ----A---- C:\WINDOWS\system32\shadow.exe
2010-07-25 19:20:03 ----A---- C:\WINDOWS\system32\rwinsta.exe
2010-07-25 19:20:03 ----A---- C:\WINDOWS\system32\reset.exe
2010-07-25 19:20:03 ----A---- C:\WINDOWS\system32\regini.exe
2010-07-25 19:20:03 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2010-07-25 19:20:03 ----A---- C:\WINDOWS\system32\qwinsta.exe
2010-07-25 19:20:03 ----A---- C:\WINDOWS\system32\qappsrv.exe
2010-07-25 19:20:03 ----A---- C:\WINDOWS\system32\mshearts.exe
2010-07-25 19:20:03 ----A---- C:\WINDOWS\system32\freecell.exe
2010-07-25 19:20:02 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2010-07-25 19:20:02 ----A---- C:\WINDOWS\system32\mtxex.dll
2010-07-25 19:20:02 ----A---- C:\WINDOWS\system32\mtxdm.dll
2010-07-25 19:20:02 ----A---- C:\WINDOWS\system32\msg.exe
2010-07-25 19:20:02 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2010-07-25 19:20:02 ----A---- C:\WINDOWS\system32\logoff.exe
2010-07-25 19:20:02 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2010-07-25 19:20:02 ----A---- C:\WINDOWS\system32\cdmodem.dll
2010-07-25 19:20:01 ----A---- C:\WINDOWS\system32\stclient.dll
2010-07-25 19:20:01 ----A---- C:\WINDOWS\system32\comsnap.dll
2010-07-25 19:20:01 ----A---- C:\WINDOWS\system32\comrepl.dll
2010-07-25 19:20:01 ----A---- C:\WINDOWS\system32\comaddin.dll
2010-07-25 19:19:57 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2010-07-25 19:19:56 ----D---- C:\Program Files\Windows NT
2010-07-25 19:19:56 ----A---- C:\WINDOWS\system32\sndrec32.exe
2010-07-25 19:19:56 ----A---- C:\WINDOWS\system32\mspaint.exe
2010-07-25 19:19:56 ----A---- C:\WINDOWS\system32\mplay32.exe
2010-07-25 19:19:56 ----A---- C:\WINDOWS\system32\hypertrm.dll
2010-07-25 19:19:56 ----A---- C:\WINDOWS\system32\clipbrd.exe
2010-07-25 19:19:56 ----A---- C:\WINDOWS\system32\accwiz.exe
2010-07-25 19:19:55 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2010-07-25 19:19:55 ----A---- C:\WINDOWS\system32\spider.exe
2010-07-25 19:19:55 ----A---- C:\WINDOWS\system32\remotepg.dll
2010-07-25 19:19:55 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2010-07-25 19:19:55 ----A---- C:\WINDOWS\system32\mstscax.dll
2010-07-25 19:19:55 ----A---- C:\WINDOWS\system32\mstsc.exe
2010-07-25 19:19:55 ----A---- C:\WINDOWS\system32\drivers\tdtcp.sys
2010-07-25 19:19:55 ----A---- C:\WINDOWS\system32\drivers\tdpipe.sys
2010-07-25 19:19:55 ----A---- C:\WINDOWS\system32\drivers\rdpwd.sys
2010-07-25 19:19:54 ----D---- C:\WINDOWS\system32\MsDtc
2010-07-25 19:19:54 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2010-07-25 19:19:54 ----A---- C:\WINDOWS\system32\termsrv.dll
2010-07-25 19:19:54 ----A---- C:\WINDOWS\system32\sessmgr.exe
2010-07-25 19:19:54 ----A---- C:\WINDOWS\system32\rdshost.exe
2010-07-25 19:19:54 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2010-07-25 19:19:54 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2010-07-25 19:19:54 ----A---- C:\WINDOWS\system32\rdpclip.exe
2010-07-25 19:19:54 ----A---- C:\WINDOWS\system32\rdchost.dll
2010-07-25 19:19:54 ----A---- C:\WINDOWS\system32\qprocess.exe
2010-07-25 19:19:54 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2010-07-25 19:19:54 ----A---- C:\WINDOWS\system32\icaapi.dll
2010-07-25 19:19:54 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2010-07-25 19:19:53 ----A---- C:\WINDOWS\system32\xolehlp.dll
2010-07-25 19:19:53 ----A---- C:\WINDOWS\system32\mtxoci.dll
2010-07-25 19:19:53 ----A---- C:\WINDOWS\system32\msdtctm.dll
2010-07-25 19:19:53 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2010-07-25 19:19:53 ----A---- C:\WINDOWS\system32\msdtclog.dll
2010-07-25 19:19:53 ----A---- C:\WINDOWS\system32\msdtc.exe
2010-07-25 19:19:52 ----D---- C:\WINDOWS\system32\Com
2010-07-25 19:19:52 ----A---- C:\WINDOWS\system32\comsvcs.dll
2010-07-25 19:19:52 ----A---- C:\WINDOWS\system32\colbact.dll
2010-07-25 19:19:52 ----A---- C:\WINDOWS\system32\clbcatex.dll
2010-07-25 19:19:52 ----A---- C:\WINDOWS\system32\catsrvut.dll
2010-07-25 19:19:52 ----A---- C:\WINDOWS\system32\catsrvps.dll
2010-07-25 19:19:52 ----A---- C:\WINDOWS\system32\catsrv.dll
2010-07-25 19:19:51 ----A---- C:\WINDOWS\system32\comuid.dll
2010-07-25 19:19:51 ----A---- C:\WINDOWS\system32\clbcatq.dll
2010-07-25 19:19:45 ----A---- C:\WINDOWS\system32\servdeps.dll
2010-07-25 19:19:45 ----A---- C:\WINDOWS\system32\mmfutil.dll
2010-07-25 19:19:45 ----A---- C:\WINDOWS\system32\licwmi.dll
2010-07-25 19:19:43 ----A---- C:\WINDOWS\system32\cmprops.dll
2010-07-25 19:19:41 ----A---- C:\WINDOWS\system32\drivers\rdpdr.sys
2010-07-25 19:19:40 ----A---- C:\WINDOWS\system32\drivers\termdd.sys
2010-03-30 23:16:34 ----A---- C:\WINDOWS\system32\PresentationHostProxy.dll
2010-03-30 23:10:40 ----A---- C:\WINDOWS\system32\PresentationHost.exe
2010-01-06 00:56:25 ----D---- C:\Documents and Settings\All Users\Data aplikací\HP Product Assistant
2010-01-06 00:53:10 ----A---- C:\WINDOWS\hpqins05.dat
2010-01-06 00:46:38 ----D---- C:\Documents and Settings\All Users\Data aplikací\HPSSUPPLY
2010-01-06 00:42:57 ----D---- C:\Documents and Settings\Meda\Data aplikací\Uniblue
2009-12-22 19:39:20 ----N---- C:\WINDOWS\system32\imapi2fs.dll
2009-12-22 19:39:20 ----N---- C:\WINDOWS\system32\imapi2.dll
2009-11-07 00:07:08 ----A---- C:\WINDOWS\system32\netfxperf.dll
2009-11-07 00:07:04 ----A---- C:\WINDOWS\system32\mscoree.dll
2009-11-07 00:06:46 ----A---- C:\WINDOWS\system32\dfshim.dll
2009-08-06 18:24:10 ----A---- C:\WINDOWS\system32\wups2.dll
2009-07-20 23:05:40 ----A---- C:\WINDOWS\system32\msxml4.dll
2009-05-21 20:21:18 ----A---- C:\WINDOWS\system32\msvcp71.dll
2009-03-08 03:39:48 ----A---- C:\WINDOWS\system32\ieframe.dll
2009-03-08 03:34:48 ----N---- C:\WINDOWS\system32\WinFXDocObj.exe
2009-03-08 03:32:52 ----A---- C:\WINDOWS\system32\ieudinit.exe
2009-03-08 03:32:26 ----A---- C:\WINDOWS\system32\msfeeds.dll
2009-03-08 03:32:22 ----A---- C:\WINDOWS\system32\iertutil.dll
2009-03-08 03:31:54 ----N---- C:\WINDOWS\system32\msfeedssync.exe
2009-03-08 03:31:52 ----N---- C:\WINDOWS\system32\icardie.dll
2009-03-08 03:31:52 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
2009-03-08 03:22:46 ----N---- C:\WINDOWS\system32\ieui.dll
2009-03-08 03:11:12 ----N---- C:\WINDOWS\system32\ieapfltr.dll
2009-02-06 20:07:58 ----N---- C:\WINDOWS\system32\ieapfltr.dat
2009-01-07 17:20:38 ----A---- C:\WINDOWS\system32\nlsdl.dll
2009-01-07 17:20:36 ----A---- C:\WINDOWS\system32\normaliz.dll
2009-01-07 17:20:36 ----A---- C:\WINDOWS\system32\idndl.dll
2009-01-07 17:20:18 ----A---- C:\WINDOWS\system32\msdbg2.dll
2008-07-29 20:10:04 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2008-07-29 20:10:04 ----A---- C:\WINDOWS\system32\evr.dll
2008-07-29 20:10:04 ----A---- C:\WINDOWS\system32\dxva2.dll
2008-07-29 18:59:58 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2008-07-29 18:59:58 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2008-07-29 18:59:58 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2008-07-29 18:24:50 ----A---- C:\WINDOWS\system32\infocardapi.dll
2008-07-29 18:24:50 ----A---- C:\WINDOWS\system32\icardres.dll
2008-07-29 18:24:50 ----A---- C:\WINDOWS\system32\icardagt.exe
2008-07-25 10:16:58 ----A---- C:\WINDOWS\system32\mscories.dll
2008-07-25 10:16:58 ----A---- C:\WINDOWS\system32\mscorier.dll
2008-05-05 06:25:04 ----A---- C:\WINDOWS\system32\xpsp4res.dll
2008-04-14 07:52:50 ----N---- C:\WINDOWS\system32\spupdwxp.exe
2008-04-14 07:52:48 ----A---- C:\WINDOWS\system32\spdwnwxp.exe
2008-04-14 07:52:24 ----N---- C:\WINDOWS\system32\faxpatch.exe
2008-03-26 01:25:30 ----A---- C:\WINDOWS\system32\msvcr71.dll
2008-03-20 08:36:30 ----RA---- C:\WINDOWS\system32\AbaleZip.dll
2008-03-16 11:14:08 ----A---- C:\WINDOWS\system32\gdiplus.dll
2008-03-14 05:56:18 ----RA---- C:\WINDOWS\Twunk_32.dll
2008-03-14 05:56:18 ----RA---- C:\WINDOWS\Twunk_16.dll
2008-03-04 20:45:04 ----A---- C:\WINDOWS\system32\hpboidps.dll
2008-03-04 20:45:00 ----A---- C:\WINDOWS\system32\hpboid.dll
2008-03-04 20:44:58 ----A---- C:\WINDOWS\system32\hpbpro.dll
2008-03-04 20:44:52 ----A---- C:\WINDOWS\system32\hpbmiapi.dll
2008-03-04 20:44:50 ----A---- C:\WINDOWS\system32\hpbprops.dll
2008-02-28 10:53:20 ----A---- C:\WINDOWS\system32\hpzisn12.dll
2008-02-28 10:53:20 ----A---- C:\WINDOWS\system32\hpzipt12.dll
2008-02-28 10:53:18 ----A---- C:\WINDOWS\system32\HPZipr12.dll
2008-02-28 10:53:18 ----A---- C:\WINDOWS\system32\HPZipm12.dll
2008-02-28 10:53:18 ----A---- C:\WINDOWS\system32\HPZinw12.dll
2008-02-28 10:53:18 ----A---- C:\WINDOWS\system32\HPZidr12.dll
2007-11-20 15:06:30 ----A---- C:\WINDOWS\system32\msxml4r.dll
2007-04-24 09:33:00 ----A---- C:\WINDOWS\system32\hplbdchn.dll
2006-11-02 10:51:40 ----N---- C:\WINDOWS\system32\wpdshextres.dll
2006-10-18 20:58:00 ----N---- C:\WINDOWS\system32\wdfmgr.exe
2006-10-18 20:58:00 ----N---- C:\WINDOWS\system32\uwdf.exe
2006-10-18 20:47:22 ----N---- C:\WINDOWS\system32\wpdsp.dll
2006-10-18 20:47:22 ----N---- C:\WINDOWS\system32\WPDShServiceObj.dll
2006-10-18 20:47:22 ----N---- C:\WINDOWS\system32\WpdShext.dll
2006-10-18 20:47:22 ----N---- C:\WINDOWS\system32\wpdmtpus.dll
2006-10-18 20:47:22 ----N---- C:\WINDOWS\system32\wpdmtp.dll
2006-10-18 20:47:22 ----N---- C:\WINDOWS\system32\wpdconns.dll
2006-10-18 20:47:22 ----N---- C:\WINDOWS\system32\wpd_ci.dll
2006-10-18 20:47:22 ----N---- C:\WINDOWS\system32\WMVXENCD.dll
2006-10-18 20:47:22 ----N---- C:\WINDOWS\system32\WMVSENCD.dll
2006-10-18 20:47:22 ----N---- C:\WINDOWS\system32\WMVSDECD.dll
2006-10-18 20:47:22 ----N---- C:\WINDOWS\system32\WMVENCOD.dll
2006-10-18 20:47:22 ----N---- C:\WINDOWS\system32\WMVDECOD.dll
2006-10-18 20:47:22 ----N---- C:\WINDOWS\system32\WMVADVE.DLL
2006-10-18 20:47:22 ----N---- C:\WINDOWS\system32\WMVADVD.dll
2006-10-18 20:47:22 ----A---- C:\WINDOWS\system32\SET8A.tmp
2006-10-18 20:47:20 ----N---- C:\WINDOWS\system32\wmpsrcwp.dll
2006-10-18 20:47:20 ----N---- C:\WINDOWS\system32\wmpps.dll
2006-10-18 20:47:20 ----N---- C:\WINDOWS\system32\wmpmde.dll
2006-10-18 20:47:20 ----N---- C:\WINDOWS\system32\wmpencen.dll
2006-10-18 20:47:20 ----N---- C:\WINDOWS\system32\wmpeffects.dll
2006-10-18 20:47:20 ----N---- C:\WINDOWS\system32\wmdrmsdk.dll
2006-10-18 20:47:20 ----N---- C:\WINDOWS\system32\wmdrmnet.dll
2006-10-18 20:47:20 ----A---- C:\WINDOWS\system32\SET83.tmp
2006-10-18 20:47:20 ----A---- C:\WINDOWS\system32\SET82.tmp
2006-10-18 20:47:18 ----N---- C:\WINDOWS\system32\wmdrmdev.dll
2006-10-18 20:47:18 ----N---- C:\WINDOWS\system32\wdfapi.dll
2006-10-18 20:47:18 ----N---- C:\WINDOWS\system32\PortableDeviceWMDRM.dll
2006-10-18 20:47:18 ----N---- C:\WINDOWS\system32\PortableDeviceWiaCompat.dll
2006-10-18 20:47:18 ----N---- C:\WINDOWS\system32\PortableDeviceTypes.dll
2006-10-18 20:47:18 ----N---- C:\WINDOWS\system32\PortableDeviceClassExtension.dll
2006-10-18 20:47:18 ----N---- C:\WINDOWS\system32\PortableDeviceApi.dll
2006-10-18 20:47:18 ----A---- C:\WINDOWS\system32\SET7E.tmp
2006-10-18 20:47:14 ----N---- C:\WINDOWS\system32\MPG4DECD.dll
2006-10-18 20:47:14 ----N---- C:\WINDOWS\system32\mp4sdecd.dll
2006-10-18 20:47:14 ----N---- C:\WINDOWS\system32\MP43DECD.dll
2006-10-18 20:47:14 ----N---- C:\WINDOWS\system32\MFPLAT.dll
2006-10-18 20:47:08 ----N---- C:\WINDOWS\system32\audiodev.dll
2006-10-18 19:00:46 ----N---- C:\WINDOWS\system32\drmupgds.exe
2006-10-18 19:00:14 ----N---- C:\WINDOWS\system32\wpdshextautoplay.exe
2006-10-18 19:00:00 ----N---- C:\WINDOWS\system32\drivers\wpdusb.sys
2006-10-02 14:28:42 ----N---- C:\WINDOWS\system32\msdelta.dll
2006-09-28 19:13:26 ----N---- C:\WINDOWS\system32\WUDFCoinstaller.dll
2006-09-28 18:00:34 ----N---- C:\WINDOWS\system32\drivers\WudfRd.sys
2006-09-28 17:56:38 ----N---- C:\WINDOWS\system32\WUDFx.dll
2006-09-28 17:56:38 ----N---- C:\WINDOWS\system32\WudfHost.exe
2006-09-28 17:56:16 ----N---- C:\WINDOWS\system32\WudfPlatform.dll
2006-09-28 17:56:14 ----N---- C:\WINDOWS\system32\WudfSvc.dll
2006-09-28 17:55:50 ----N---- C:\WINDOWS\system32\drivers\WudfPf.sys
2006-08-24 15:15:06 ----A---- C:\WINDOWS\system32\rgb9rast_2.dll
2005-12-19 06:23:40 ----A---- C:\WINDOWS\system32\divx_xx11.dll
2005-12-19 06:23:40 ----A---- C:\WINDOWS\system32\divx_xx0c.dll
2005-12-19 06:23:40 ----A---- C:\WINDOWS\system32\divx_xx07.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nwiz.exe
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvwimg.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvwdmcpl.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvwddi.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvsvc32.exe
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvshell.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvoglnt.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvnt4cpl.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvmctray.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvmccsrs.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvmccs.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nview.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvhwvid.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvdspsch.exe
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvcpl.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvcolor.exe
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvcodins.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvcod.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvappbar.exe
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\nvapi.dll
2005-12-10 02:06:00 ----A---- C:\WINDOWS\system32\keystone.exe
2005-10-14 10:56:50 ----A---- C:\WINDOWS\system32\xvidcore.dll
2005-10-14 10:56:50 ----A---- C:\WINDOWS\system32\xvid.dll
2005-10-14 10:56:50 ----A---- C:\WINDOWS\system32\VorbisEnc.dll
2005-10-14 10:56:50 ----A---- C:\WINDOWS\system32\vorbis.dll
2005-10-14 10:56:50 ----A---- C:\WINDOWS\system32\unrar.dll
2005-10-14 10:56:50 ----A---- C:\WINDOWS\system32\qt-dx331.dll
2005-10-14 10:56:50 ----A---- C:\WINDOWS\system32\OggDS.dll
2005-10-14 10:56:50 ----A---- C:\WINDOWS\system32\ogg.dll
2005-10-14 10:56:50 ----A---- C:\WINDOWS\system32\DivXsm.exe
2005-10-14 10:56:48 ----A---- C:\WINDOWS\system32\MMSwitch.dll
2005-10-14 10:56:48 ----A---- C:\WINDOWS\system32\MMAVILNG.exe
2004-08-17 16:49:22 ----A---- C:\WINDOWS\system32\wzcsvc.dll
2004-08-17 16:49:22 ----A---- C:\WINDOWS\system32\wzcsapi.dll
2004-08-17 16:49:16 ----A---- C:\WINDOWS\system32\pjlmon.dll
2004-08-17 16:49:16 ----A---- C:\WINDOWS\system32\pid.dll
2004-08-17 16:49:14 ----A---- C:\WINDOWS\system32\msyuv.dll
2004-08-17 16:49:10 ----A---- C:\WINDOWS\system32\iyuv_32.dll
2004-08-17 16:49:08 ----A---- C:\WINDOWS\system32\hid.dll
2004-08-17 16:49:06 ----A---- C:\WINDOWS\system32\dmutil.dll
2004-08-17 16:49:04 ----A---- C:\WINDOWS\system32\cnbjmon.dll
2004-08-17 16:45:30 ----A---- C:\WINDOWS\system32\ntkrnlpa.exe
2004-08-17 16:44:38 ----A---- C:\WINDOWS\system32\drivers\crusoe.sys
2004-08-17 16:43:34 ----A---- C:\WINDOWS\system32\drivers\processr.sys
2004-08-17 16:43:28 ----A---- C:\WINDOWS\system32\drivers\amdk7.sys
2004-08-17 16:43:28 ----A---- C:\WINDOWS\system32\drivers\amdk6.sys
2004-08-17 16:43:24 ----A---- C:\WINDOWS\system32\drivers\mouclass.sys
2004-08-17 16:43:22 ----A---- C:\WINDOWS\system32\drivers\modem.sys
2004-08-17 16:43:10 ----A---- C:\WINDOWS\system32\drivers\parport.sys
2004-08-17 16:43:08 ----A---- C:\WINDOWS\system32\drivers\p3.sys
2004-08-17 14:51:20 ----A---- C:\WINDOWS\system32\netsetup.exe
2004-08-17 14:49:38 ----A---- C:\WINDOWS\system32\tsddd.dll
2004-08-17 14:49:38 ----A---- C:\WINDOWS\system32\rdpdd.dll
2004-08-17 14:49:36 ----A---- C:\WINDOWS\system32\drmclien.dll
2004-08-17 14:49:34 ----A---- C:\WINDOWS\system32\WMVCore.dll
2004-08-17 14:49:34 ----A---- C:\WINDOWS\system32\drmv2clt.dll
2004-08-17 14:49:32 ----A---- C:\WINDOWS\system32\msscp.dll
2004-08-17 14:49:32 ----A---- C:\WINDOWS\system32\msnetobj.dll
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\xcopy.exe
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\wscript.exe
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\wscntfy.exe
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\wpnpinst.exe
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\wpabaln.exe
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\sstext3d.scr
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\ssstars.scr
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\sspipes.scr
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\ssmyst.scr
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\ssmypics.scr
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\ssmarque.scr
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\ssflwbox.scr
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\ssbezier.scr
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\ss3dfo.scr
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\scrnsave.scr
2004-08-17 14:49:30 ----A---- C:\WINDOWS\system32\logon.scr
2004-08-17 14:49:28 ----A---- C:\WINDOWS\winhlp32.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\winver.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\winlogon.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\wiaacmgr.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\wextract.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\vssvc.exe

meda
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 26 črc 2011 11:36

Re: FB vir (aktualizace abdobe reader) - část první

#6 Příspěvek od meda »

nový log z RSIT, část druhá :
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\utilman.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\userinit.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\ups.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\upnpcont.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\tracert.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\tracerpt.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\tourstart.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\tlntsvr.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\tlntsess.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\tlntadmn.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\telnet.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\taskmgr.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\sysocmgr.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\svchost.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\stimon.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\spoolsv.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\spnpinst.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\smss.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\smlogsvc.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\smbinst.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\skeys.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\sigverif.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\schtasks.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\shutdown.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\shrpubw.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\shmgrate.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\setup.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\sethc.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\services.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\secedit.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\sdbinst.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\scardsvr.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\savedump.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\runonce.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\rundll32.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\rtcshare.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\rsnotify.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\rsh.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\rexec.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\regsvr32.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\reg.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\rcp.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\rcimlby.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\rasphone.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\proxycfg.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\proquota.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\progman.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\powercfg.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\ping.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\perfmon.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\packager.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\osk.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\openfiles.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\odbcconf.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\odbcad32.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\ntvdm.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\system32\ntbackup.exe
2004-08-17 14:49:28 ----A---- C:\WINDOWS\regedit.exe
2004-08-17 14:49:26 ----A---- C:\WINDOWS\system32\nslookup.exe
2004-08-17 14:49:26 ----A---- C:\WINDOWS\system32\notepad.exe
2004-08-17 14:49:26 ----A---- C:\WINDOWS\system32\netstat.exe
2004-08-17 14:49:26 ----A---- C:\WINDOWS\system32\netsh.exe
2004-08-17 14:49:26 ----A---- C:\WINDOWS\system32\netdde.exe
2004-08-17 14:49:26 ----A---- C:\WINDOWS\system32\net1.exe
2004-08-17 14:49:26 ----A---- C:\WINDOWS\system32\net.exe
2004-08-17 14:49:26 ----A---- C:\WINDOWS\system32\nddeapir.exe
2004-08-17 14:49:26 ----A---- C:\WINDOWS\system32\narrator.exe
2004-08-17 14:49:26 ----A---- C:\WINDOWS\system32\msiexec.exe
2004-08-17 14:49:26 ----A---- C:\WINDOWS\system32\mshta.exe
2004-08-17 14:49:26 ----A---- C:\WINDOWS\system32\mqtgsvc.exe
2004-08-17 14:49:26 ----A---- C:\WINDOWS\system32\mqsvc.exe
2004-08-17 14:49:26 ----A---- C:\WINDOWS\system32\mqbkup.exe
2004-08-17 14:49:26 ----A---- C:\WINDOWS\system32\mobsync.exe
2004-08-17 14:49:26 ----A---- C:\WINDOWS\system32\mmc.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\makecab.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\magnify.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\lsass.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\logonui.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\logman.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\logagent.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\locator.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\ipxroute.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\ipv6.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\ipconfig.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\imapi.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\iexpress.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\grpconv.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\gpresult.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\ftp.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\fsquirt.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\fontview.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\findstr.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\extrac32.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\eventcreate.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\eudcedit.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\dxdiag.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\dwwin.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\dvdupgrd.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\dumprep.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\dpvsetup.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\dpnsvr.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\dplaysvr.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\dmremote.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\dmadmin.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\dllhost.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\diskpart.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\diantz.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\dfrgntfs.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\dfrgfat.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\defrag.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\ddeshare.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\ctfmon.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\csrss.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\cscript.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\conime.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\cmstp.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\cmmon32.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\cmdl32.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\cmd.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\clipsrv.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\cliconfg.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\cleanmgr.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\cisvc.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\cipher.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\system32\blastcln.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\hh.exe
2004-08-17 14:49:24 ----A---- C:\WINDOWS\explorer.exe
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\zipfldr.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\xmlprovi.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\xmlprov.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\xactsrv.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wzcdlg.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wtsapi32.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wstdecod.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wsock32.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wsnmp32.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wshtcpip.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wshrm.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wship6.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wshext.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wshcon.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wshbth.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wsecedit.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wscsvc.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\ws2help.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\ws2_32.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wow32.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wmvdmoe2.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wmvdmod.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wmstream.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\WMSPDMOE.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wmspdmod.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wmsdmoe2.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wmsdmoe.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wmsdmod.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wmpui.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wmpshell.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wmpdxm.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wmpcore.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wmpcd.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wmpasf.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wmp.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\WMNetmgr.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wmidx.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wmdmps.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wmdmlog.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wmasf.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\WMADMOE.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\WMADMOD.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wlnotify.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wldap32.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wkssvc.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wintrust.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\winsta.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\winsrv.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\winshfhc.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\winscard.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\winrnr.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\winmm.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\winipsec.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wininet.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\winhttp.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\win32spl.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wiavideo.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\wiashext.dll
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\autolfn.exe
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\autochk.exe
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\autofmt.exe
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\autoconv.exe
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\auditusr.exe
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\atmadm.exe
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\at.exe
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\asr_pfu.exe
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\asr_fmt.exe
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\alg.exe
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\ahui.exe
2004-08-17 14:49:22 ----A---- C:\WINDOWS\system32\actmovie.exe
2004-08-17 14:49:20 ----A---- C:\WINDOWS\twain_32.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\wiaservc.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\wiascr.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\wiadss.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\wiadefui.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\webvw.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\webcheck.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\webclnt.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\wdigest.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\w3ssl.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\w32time.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\vssapi.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\version.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\vdmredir.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\vdmdbg.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\vbscript.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\vbajet32.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\uxtheme.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\usp10.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\userenv.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\user32.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\usbmon.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\urlmon.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\url.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\upnpui.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\upnphost.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\upnp.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\untfs.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\uniplat.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\unimdmat.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\umpnpmgr.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\umandlg.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\ulib.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\udhisapi.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\txflog.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\twext.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\trkwks.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\tlntsvrp.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\themeui.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\termmgr.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\tcpmonui.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\tcpmon.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\tcpmib.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\tapisrv.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\tapi32.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\tapi3.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\t2embed.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\syssetup.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\syncui.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\synceng.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\sxs.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\strmfilt.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\strmdll.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\stobject.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\sti_ci.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\sti.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\ssdpsrv.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\ssdpapi.dll
2004-08-17 14:49:20 ----A---- C:\WINDOWS\system32\srvsvc.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\sqlunirl.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\sqlsrv32.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\spoolss.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\snmpsnap.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\snmpapi.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\smlogcfg.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\slbiop.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\slayerxp.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\sigtab.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\schannel.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\shsvcs.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\shscrap.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\shmedia.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\shlwapi.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\shimgvw.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\shimeng.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\shgina.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\shfolder.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\shell32.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\shdocvw.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\sfcfiles.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\sfc_os.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\sfc.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\setupapi.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\sensapi.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\sens.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\sendmail.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\sendcmsg.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\security.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\secur32.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\seclogon.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\sdhcinst.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\scrrun.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\scrobj.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\sclgntfy.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\scesrv.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\scecli.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\sccsccp.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\scarddlg.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\sbeio.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\sbe.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\samsrv.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\samlib.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\rtutils.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\rtipxmib.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\rsmps.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\rshx32.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\rpcss.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\riched20.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\resutils.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\regwizc.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\regsvc.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\regapi.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\rcbdyctl.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\rastls.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\rastapi.dll
2004-08-17 14:49:18 ----A---- C:\WINDOWS\system32\rassapi.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\rasppp.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\rasmans.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\rasman.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\raschap.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\rasdlg.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\rasauto.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\rasapi32.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\rasadhlp.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\query.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\quartz.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\qedit.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\qdvd.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\qdv.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\qcap.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\qasf.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\pstorsvc.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\pstorec.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\psbase.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\psapi.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\profmap.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\printui.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\powrprof.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\polstore.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\pnrpnsp.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\pngfilt.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\photowiz.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\perfproc.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\perfos.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\perfdisk.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\perfctrs.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\pdh.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\pautoenr.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\p2psvc.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\p2pnetsh.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\p2pgraph.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\p2pgasvc.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\p2p.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\osuninst.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\opengl32.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\olepro32.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\oleprn.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\oleaut32.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\ole32.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\offfilt.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\odtext32.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\odpdx32.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\odfox32.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\odexl32.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\oddbse32.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\odbctrac.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\odbcjt32.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\odbccu32.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\odbccr32.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\odbccp32.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\odbcconf.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\odbcbcp.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\odbc32gt.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\odbc32.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\occache.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\objsel.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\oakley.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\nwwks.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\nwprovau.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\ntshrui.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\ntprint.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\ntmssvc.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\ntmsmgr.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\ntmsdba.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\ntmsapi.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\ntmarta.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\ntlsapi.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\ntlanman.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\ntdsapi.dll
2004-08-17 14:49:16 ----A---- C:\WINDOWS\system32\npptools.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\nlhtml.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\newdev.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\netui1.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\netui0.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\netshell.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\netrap.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\netplwiz.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\netman.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\netlogon.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\netid.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\netcfgx.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\netapi32.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\nddenb32.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\nddeapi.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\ncobjapi.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\mydocs.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\mtxclu.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msxml3.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msxml2.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msxml.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msxbde40.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\mswstr10.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\mswsock.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\mswmdm.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\mswebdvd.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\mswdat10.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msw3prt.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msvidctl.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msvfw32.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msvcrt.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msvcp60.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msvcirt.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msvbvm60.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msv1_0.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msutb.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\mstlsapi.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\mstime.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\mstext40.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\mssap.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msrle32.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msrepl40.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msrd3x40.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msrd2x40.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msrating.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\mspmsp.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\mspmsnsv.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\mspbde40.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\mspatcha.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msorcl32.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msnsspc.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msltus40.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\mslbui.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msjtes40.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msjter40.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msjint40.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msjet40.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msisip.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msimtf.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msimg32.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msihnd.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msieftp.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msidle.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msident.dll
2004-08-17 14:49:14 ----A---- C:\WINDOWS\system32\msi.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mshtmled.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mshtml.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\msgsvc.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\msgina.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\msftedit.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\msexch40.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\msexcl40.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\msdmo.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\msdart.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\msdadiag.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\msctfp.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\msctf.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mscpxl32.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mscms.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\msasn1.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\msapsspc.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\msacm32.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mqutil.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mqupgrd.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mqtrig.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mqsnap.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mqsec.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mqrtdep.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mqrt.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mqqm.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mqoa.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mqlogmgr.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mqise.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mqdscli.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mqad.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mprapi.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mpr.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\MPG4DMOD.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\MP4SDMOD.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\MP43DMOD.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\modemui.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mobsync.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mmcshext.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mmcndmgr.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mmcbase.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mlang.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\miglibnt.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\midimap.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mgmtapi.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mfcsubs.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mfc42u.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mfc42.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mf3216.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mdminst.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mciwave.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mciseq.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mciqtz32.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mciavi32.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\mcastmib.dll
2004-08-17 14:49:12 ----A---- C:\WINDOWS\system32\lsasrv.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\w3egr.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\lprhelp.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\lpk.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\localui.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\localspl.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\localsec.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\loadperf.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\lmrt.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\lmhsvc.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\linkinfo.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\licmgr10.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\licdll.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\LAPRXY.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\keymgr.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\kernel32.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\kerberos.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\jsproxy.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\jscript.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\ixsso.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\iuengine.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\itss.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\itircl.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\ir50_qcx.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\ir50_qc.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\ir50_32.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\ir41_qcx.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\ir41_qc.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\ipv6mon.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\ipsmsnap.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\ipsecsvc.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\ipsecsnp.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\ippromon.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\iphlpapi.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\inseng.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\input.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\initpki.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\inetppui.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\inetpp.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\inetmib1.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\imm32.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\imgutil.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\imeshare.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\imagehlp.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\igmpagnt.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\ifmon.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\iesetup.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\iernonce.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\iepeers.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\ieaksie.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\ieakeng.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\idq.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\icm32.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\iccvid.dll
2004-08-17 14:49:10 ----A---- C:\WINDOWS\system32\iasrad.dll
2004-08-17 14:49:08 ----A---- C:\WINDOWS\system32\htui.dll
2004-08-17 14:49:08 ----A---- C:\WINDOWS\system32\httpapi.dll
2004-08-17 14:49:08 ----A---- C:\WINDOWS\system32\hotplug.dll
2004-08-17 14:49:08 ----A---- C:\WINDOWS\system32\hnetwiz.dll
2004-08-17 14:49:08 ----A---- C:\WINDOWS\system32\hnetcfg.dll
2004-08-17 14:49:08 ----A---- C:\WINDOWS\system32\hhsetup.dll
2004-08-17 14:49:08 ----A---- C:\WINDOWS\system32\hccoin.dll
2004-08-17 14:49:08 ----A---- C:\WINDOWS\system32\h323msp.dll
2004-08-17 14:49:08 ----A---- C:\WINDOWS\system32\gptext.dll
2004-08-17 14:49:08 ----A---- C:\WINDOWS\system32\gpedit.dll
2004-08-17 14:49:08 ----A---- C:\WINDOWS\system32\glu32.dll
2004-08-17 14:49:08 ----A---- C:\WINDOWS\system32\gdi32.dll
2004-08-17 14:49:08 ----A---- C:\WINDOWS\system32\fwcfg.dll
2004-08-17 14:49:08 ----A---- C:\WINDOWS\system32\fontext.dll
2004-08-17 14:49:08 ----A---- C:\WINDOWS\system32\fldrclnr.dll
2004-08-17 14:49:08 ----A---- C:\WINDOWS\system32\filemgmt.dll
2004-08-17 14:49:08 ----A---- C:\WINDOWS\system32\feclient.dll
2004-08-17 14:49:08 ----A---- C:\WINDOWS\system32\fdeploy.dll
2004-08-17 14:49:08 ----A---- C:\WINDOWS\system32\faultrep.dll
2004-08-17 14:49:08 ----A---- C:\WINDOWS\system32\extmgr.dll
2004-08-17 14:49:08 ----A---- C:\WINDOWS\system32\expsrv.dll
2004-08-17 14:49:08 ----A---- C:\WINDOWS\system32\eventlog.dll
2004-08-17 14:49:08 ----A---- C:\WINDOWS\system32\esent.dll
2004-08-17 14:49:08 ----A---- C:\WINDOWS\system32\es.dll
2004-08-17 14:49:08 ----A---- C:\WINDOWS\system32\ersvc.dll
2004-08-17 14:49:08 ----A---- C:\WINDOWS\system32\encdec.dll
2004-08-17 14:49:08 ----A---- C:\WINDOWS\system32\encapi.dll
2004-08-17 14:49:08 ----A---- C:\WINDOWS\system32\els.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\efsadu.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dxtrans.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dxmasf.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dxdiagn.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dx8vb.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dx7vb.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\duser.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dswave.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dsuiext.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dssec.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dsquery.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dsprop.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dsound3d.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dsound.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dskquota.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dsdmoprp.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dsdmo.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\ds32gt.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\drprov.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\drmstor.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dpwsockx.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dpvvox.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dpvoice.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dpvacm.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dpnhupnp.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dpnhpast.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dpnet.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dpmodemx.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dplayx.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\docprop2.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dnsapi.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dmusic.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dmsynth.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dmstyle.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dmserver.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dmscript.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dmloader.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dmime.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dmdskmgr.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dmcompos.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dmband.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dinput8.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dinput.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\digest.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dhcpcsvc.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dgnet.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dfsshlex.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dfrgui.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dfrgsnap.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\devmgr.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\devenum.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\ddrawex.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\ddraw.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dciman32.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dbnmpntw.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dbnetlib.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dbmsrpcn.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dbghelp.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\davclnt.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\dataclen.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\danim.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\d3dim700.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\d3d9.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\d3d8thk.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\d3d8.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\csrsrv.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\cscui.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\cscdll.dll
2004-08-17 14:49:06 ----A---- C:\WINDOWS\system32\cryptui.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\cryptsvc.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\cryptnet.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\cryptext.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\cryptdll.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\cryptdlg.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\crypt32.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\credui.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\corpol.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\comres.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\compstui.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\compatui.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\comdlg32.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\comctl32.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\cmutil.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\cmsetacl.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\cmdial32.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\cmcfg32.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\clusapi.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\cliconfg.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\ciodm.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\cewmdm.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\certmgr.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\certcli.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\cdosys.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\cdm.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\cdfview.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\camocx.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\cabview.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\cabinet.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\btpanui.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\bthserv.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\bthci.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\browsewm.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\browseui.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\browser.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\blackbox.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\bidispl.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\batmeter.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\basesrv.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\avifil32.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\authz.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\audiosrv.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\atmlib.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\atl.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\asycfilt.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\appmgr.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\appmgmts.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\apphelp.dll
2004-08-17 14:49:04 ----A---- C:\WINDOWS\system32\amstream.dll
2004-08-17 14:49:02 ----A---- C:\WINDOWS\system32\alrsvc.dll
2004-08-17 14:49:02 ----A---- C:\WINDOWS\system32\advpack.dll
2004-08-17 14:49:02 ----A---- C:\WINDOWS\system32\advapi32.dll
2004-08-17 14:49:02 ----A---- C:\WINDOWS\system32\adsnt.dll
2004-08-17 14:49:02 ----A---- C:\WINDOWS\system32\adsmsext.dll
2004-08-17 14:49:02 ----A---- C:\WINDOWS\system32\adsldpc.dll
2004-08-17 14:49:02 ----A---- C:\WINDOWS\system32\adsldp.dll
2004-08-17 14:49:02 ----A---- C:\WINDOWS\system32\admparse.dll
2004-08-17 14:49:02 ----A---- C:\WINDOWS\system32\actxprxy.dll
2004-08-17 14:49:02 ----A---- C:\WINDOWS\system32\activeds.dll
2004-08-17 14:49:02 ----A---- C:\WINDOWS\system32\aclui.dll
2004-08-17 14:49:02 ----A---- C:\WINDOWS\system32\6to4svc.dll
2004-08-17 14:48:58 ----A---- C:\WINDOWS\system32\ntdll.dll
2004-08-17 14:48:56 ----A---- C:\WINDOWS\system32\wmploc.dll
2004-08-17 14:48:54 ----A---- C:\WINDOWS\system32\wmi.dll
2004-08-17 14:48:54 ----A---- C:\WINDOWS\system32\wmerror.dll
2004-08-17 14:48:54 ----A---- C:\WINDOWS\system32\winntbbu.dll
2004-08-17 14:48:54 ----A---- C:\WINDOWS\system32\winbrand.dll
2004-08-17 14:48:44 ----A---- C:\WINDOWS\system32\xpsp2res.dll
2004-08-17 14:48:44 ----A---- C:\WINDOWS\system32\xpsp1res.dll
2004-08-17 14:48:40 ----A---- C:\WINDOWS\system32\shdoclc.dll
2004-08-17 14:48:40 ----A---- C:\WINDOWS\system32\dpcdll.dll
2004-08-17 14:48:38 ----A---- C:\WINDOWS\system32\qedwipes.dll
2004-08-17 14:48:36 ----A---- C:\WINDOWS\system32\xpob2res.dll
2004-08-17 14:48:36 ----A---- C:\WINDOWS\system32\odbcp32r.dll
2004-08-17 14:48:36 ----A---- C:\WINDOWS\system32\odbcji32.dll
2004-08-17 14:48:36 ----A---- C:\WINDOWS\system32\odbcint.dll
2004-08-17 14:48:32 ----A---- C:\WINDOWS\system32\msprivs.dll
2004-08-17 14:48:32 ----A---- C:\WINDOWS\system32\msorc32r.dll
2004-08-17 14:48:30 ----A---- C:\WINDOWS\system32\msimsg.dll
2004-08-17 14:48:24 ----A---- C:\WINDOWS\system32\mshtmler.dll
2004-08-17 14:48:22 ----A---- C:\WINDOWS\system32\msdxmlc.dll
2004-08-17 14:48:22 ----A---- C:\WINDOWS\system32\mscpx32r.dll
2004-08-17 14:48:22 ----A---- C:\WINDOWS\system32\msafd.dll
2004-08-17 14:48:20 ----A---- C:\WINDOWS\system32\moricons.dll
2004-08-17 14:48:20 ----A---- C:\WINDOWS\system32\kbdukx.dll
2004-08-17 14:48:20 ----A---- C:\WINDOWS\system32\kbdsmsno.dll
2004-08-17 14:48:20 ----A---- C:\WINDOWS\system32\kbdsmsfi.dll
2004-08-17 14:48:20 ----A---- C:\WINDOWS\system32\kbdno1.dll
2004-08-17 14:48:20 ----A---- C:\WINDOWS\system32\kbdmlt48.dll
2004-08-17 14:48:20 ----A---- C:\WINDOWS\system32\kbdmlt47.dll
2004-08-17 14:48:20 ----A---- C:\WINDOWS\system32\kbdmaori.dll
2004-08-17 14:48:20 ----A---- C:\WINDOWS\system32\kbdinmal.dll
2004-08-17 14:48:20 ----A---- C:\WINDOWS\system32\kbdinben.dll
2004-08-17 14:48:20 ----A---- C:\WINDOWS\system32\kbdinbe1.dll
2004-08-17 14:48:18 ----A---- C:\WINDOWS\system32\kbdfi1.dll
2004-08-17 14:48:16 ----A---- C:\WINDOWS\system32\icmp.dll
2004-08-17 14:48:16 ----A---- C:\WINDOWS\system32\gpkrsrc.dll
2004-08-17 14:48:16 ----A---- C:\WINDOWS\system32\framebuf.dll
2004-08-17 14:48:12 ----A---- C:\WINDOWS\system32\pidgen.dll
2004-08-17 14:48:12 ----A---- C:\WINDOWS\system32\dsprpres.dll
2004-08-17 14:48:10 ----A---- C:\WINDOWS\system32\dpnlobby.dll
2004-08-17 14:48:10 ----A---- C:\WINDOWS\system32\dpnaddr.dll
2004-08-17 14:48:08 ----A---- C:\WINDOWS\system32\cfgmgr32.dll
2004-08-17 14:48:06 ----A---- C:\WINDOWS\system32\browselc.dll
2004-08-17 14:48:06 ----A---- C:\WINDOWS\system32\atmfd.dll
2004-08-17 14:48:06 ----A---- C:\WINDOWS\system32\asferror.dll
2004-08-17 14:45:38 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2004-08-17 14:45:06 ----A---- C:\WINDOWS\system32\drivers\dmio.sys
2004-08-17 14:45:04 ----A---- C:\WINDOWS\system32\drivers\dmboot.sys
2004-08-17 14:45:00 ----A---- C:\WINDOWS\system32\drivers\kbdhid.sys
2004-08-17 14:45:00 ----A---- C:\WINDOWS\system32\drivers\kbdclass.sys
2004-08-17 14:44:44 ----A---- C:\WINDOWS\system32\win32k.sys
2004-08-17 14:44:38 ----A---- C:\WINDOWS\system32\drivers\intelppm.sys
2004-08-17 14:44:22 ----A---- C:\WINDOWS\system32\drivers\volsnap.sys
2004-08-17 14:44:16 ----A---- C:\WINDOWS\system32\drivers\serial.sys
2004-08-17 14:43:22 ----A---- C:\WINDOWS\system32\mmsystem.dll
2004-08-17 14:43:14 ----A---- C:\WINDOWS\system32\drivers\pcmcia.sys
2004-08-17 14:43:12 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2004-08-17 14:43:12 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2004-08-04 00:15:22 ----A---- C:\WINDOWS\system32\drivers\ks.sys
2004-08-04 00:09:56 ----A---- C:\WINDOWS\system32\drivers\sonydcam.sys
2004-08-04 00:08:58 ----A---- C:\WINDOWS\system32\drivers\usbintel.sys
2004-08-04 00:08:04 ----A---- C:\WINDOWS\system32\drivers\stream.sys
2004-08-04 00:07:48 ----A---- C:\WINDOWS\system32\drivers\mssmbios.sys
2004-08-04 00:07:46 ----A---- C:\WINDOWS\system32\drivers\mf.sys
2004-08-04 00:03:18 ----A---- C:\WINDOWS\system32\drivers\tunmp.sys
2004-08-04 00:03:14 ----A---- C:\WINDOWS\system32\drivers\ndisuio.sys
2004-08-03 23:58:42 ----A---- C:\WINDOWS\system32\drivers\swenum.sys
2004-08-03 23:58:30 ----A---- C:\WINDOWS\system32\drivers\nic1394.sys
2004-08-03 23:58:30 ----A---- C:\WINDOWS\system32\drivers\arp1394.sys
2004-08-03 22:20:08 ----A---- C:\WINDOWS\system32\drivers\rdbss.sys
2004-08-03 22:15:22 ----A---- C:\WINDOWS\system32\drivers\mup.sys
2004-08-03 22:15:18 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2004-08-03 22:15:10 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2004-08-03 22:14:46 ----A---- C:\WINDOWS\system32\drivers\srv.sys
2004-08-03 22:14:42 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2004-08-03 22:14:38 ----A---- C:\WINDOWS\system32\drivers\netbt.sys
2004-08-03 22:14:32 ----A---- C:\WINDOWS\system32\drivers\ndiswan.sys
2004-08-03 22:14:30 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2004-08-03 22:14:30 ----A---- C:\WINDOWS\system32\drivers\ipsec.sys
2004-08-03 22:14:28 ----A---- C:\WINDOWS\system32\drivers\raspptp.sys
2004-08-03 22:14:28 ----A---- C:\WINDOWS\system32\drivers\classpnp.sys
2004-08-03 22:14:24 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2004-08-03 22:14:18 ----A---- C:\WINDOWS\system32\drivers\fastfat.sys
2004-08-03 22:14:16 ----A---- C:\WINDOWS\system32\drivers\afd.sys
2004-08-03 22:14:12 ----A---- C:\WINDOWS\system32\drivers\cdfs.sys
2004-08-03 22:08:48 ----A---- C:\WINDOWS\system32\drivers\usbccgp.sys
2004-08-03 22:08:44 ----A---- C:\WINDOWS\system32\drivers\usbport.sys
2004-08-03 22:08:44 ----A---- C:\WINDOWS\system32\drivers\usbhub.sys
2004-08-03 22:08:38 ----A---- C:\WINDOWS\system32\drivers\usbuhci.sys
2004-08-03 22:08:38 ----A---- C:\WINDOWS\system32\drivers\usbehci.sys
2004-08-03 22:08:20 ----A---- C:\WINDOWS\system32\drivers\hidclass.sys
2004-08-03 22:08:18 ----A---- C:\WINDOWS\system32\drivers\hidparse.sys
2004-08-03 22:07:50 ----A---- C:\WINDOWS\system32\drivers\tdi.sys
2004-08-03 22:07:48 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2004-08-03 22:07:46 ----A---- C:\WINDOWS\system32\drivers\tcpip6.sys
2004-08-03 22:07:34 ----A---- C:\WINDOWS\system32\watchdog.sys
2004-08-03 22:07:08 ----A---- C:\WINDOWS\system32\drivers\vga.sys
2004-08-03 22:07:06 ----A---- C:\WINDOWS\system32\drivers\videoprt.sys
2004-08-03 22:05:08 ----A---- C:\WINDOWS\system32\drivers\raspppoe.sys
2004-08-03 22:05:04 ----A---- C:\WINDOWS\system32\drivers\asyncmac.sys
2004-08-03 22:04:58 ----A---- C:\WINDOWS\system32\drivers\wanarp.sys
2004-08-03 22:04:52 ----A---- C:\WINDOWS\system32\drivers\ipnat.sys
2004-08-03 22:04:46 ----A---- C:\WINDOWS\system32\drivers\ipinip.sys
2004-08-03 22:04:34 ----A---- C:\WINDOWS\system32\drivers\usb8023.sys
2004-08-03 22:04:32 ----A---- C:\WINDOWS\system32\drivers\rndismp.sys
2004-08-03 22:04:20 ----A---- C:\WINDOWS\system32\drivers\psched.sys
2004-08-03 22:04:14 ----A---- C:\WINDOWS\system32\drivers\msgpc.sys
2004-08-03 22:03:36 ----A---- C:\WINDOWS\system32\drivers\nwlnkipx.sys
2004-08-03 22:03:22 ----A---- C:\WINDOWS\system32\drivers\netbios.sys
2004-08-03 22:02:24 ----A---- C:\WINDOWS\system32\drivers\nwrdr.sys
2004-08-03 22:00:58 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys
2004-08-03 22:00:56 ----A---- C:\WINDOWS\system32\drivers\dxg.sys
2004-08-03 22:00:44 ----A---- C:\WINDOWS\system32\drivers\npfs.sys
2004-08-03 22:00:42 ----A---- C:\WINDOWS\system32\drivers\msfs.sys
2004-08-03 22:00:32 ----A---- C:\WINDOWS\system32\drivers\udfs.sys
2004-08-03 22:00:16 ----A---- C:\WINDOWS\system32\drivers\imapi.sys
2004-08-03 22:00:14 ----A---- C:\WINDOWS\system32\drivers\http.sys
2004-08-03 22:00:08 ----A---- C:\WINDOWS\system32\drivers\ip6fw.sys
2004-08-03 22:00:00 ----A---- C:\WINDOWS\system32\drivers\tape.sys
2004-08-03 21:59:58 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2004-08-03 21:59:56 ----A---- C:\WINDOWS\system32\drivers\sfloppy.sys
2004-08-03 21:59:56 ----A---- C:\WINDOWS\system32\drivers\sffp_sd.sys
2004-08-03 21:59:56 ----A---- C:\WINDOWS\system32\drivers\sffdisk.sys
2004-08-03 21:59:56 ----A---- C:\WINDOWS\system32\drivers\disk.sys
2004-08-03 21:59:54 ----A---- C:\WINDOWS\system32\drivers\diskdump.sys
2004-08-03 21:59:54 ----A---- C:\WINDOWS\system32\drivers\cdrom.sys
2004-08-03 21:59:52 ----A---- C:\WINDOWS\system32\drivers\nmnt.sys
2004-08-03 21:59:48 ----A---- C:\WINDOWS\system32\drivers\ksecdd.sys
2004-08-03 21:59:44 ----A---- C:\WINDOWS\system32\drivers\viaide.sys
2004-08-03 21:59:44 ----A---- C:\WINDOWS\system32\drivers\atapi.sys
2004-08-03 21:59:42 ----A---- C:\WINDOWS\system32\drivers\scsiport.sys
2004-08-03 21:59:42 ----A---- C:\WINDOWS\system32\drivers\pciidex.sys
2004-08-03 21:59:36 ----A---- C:\WINDOWS\system32\spiisupd.exe
2004-08-03 21:59:28 ----A---- C:\WINDOWS\system32\drivers\flpydisk.sys
2004-08-03 21:59:28 ----A---- C:\WINDOWS\system32\drivers\fdc.sys
2004-08-03 21:59:24 ----A---- C:\WINDOWS\system32\kd1394.dll
2004-08-03 21:59:10 ----A---- C:\WINDOWS\system32\HAL.DLL
2004-08-03 21:59:08 ----A---- C:\WINDOWS\system32\drivers\serenum.sys
2004-08-03 21:58:36 ----A---- C:\WINDOWS\system32\drivers\atmlane.sys
2004-08-03 21:58:34 ----A---- C:\WINDOWS\system32\drivers\update.sys
2004-08-03 21:58:32 ----A---- C:\WINDOWS\system32\drivers\mountmgr.sys
2004-08-03 21:58:32 ----A---- C:\WINDOWS\system32\drivers\atmarpc.sys
2004-08-03 21:58:26 ----A---- C:\WINDOWS\system32\msvcrt40.dll
2004-08-03 21:58:22 ----A---- C:\WINDOWS\system32\drivers\mqac.sys
2004-08-03 21:51:26 ----A---- C:\WINDOWS\system32\dosx.exe
2004-08-03 21:51:20 ----A---- C:\WINDOWS\system32\winnls.dll
2004-08-03 21:49:46 ----A---- C:\WINDOWS\system32\krnl386.exe
2004-08-03 21:48:46 ----A---- C:\WINDOWS\system32\redir.exe
2004-08-03 21:46:56 ----A---- C:\WINDOWS\system32\keyboard.sys
2004-08-03 21:45:20 ----A---- C:\WINDOWS\system32\ntio.sys
2004-08-03 21:45:16 ----A---- C:\WINDOWS\system32\ntio412.sys
2004-08-03 21:45:16 ----A---- C:\WINDOWS\system32\ntio404.sys
2004-08-03 21:45:14 ----A---- C:\WINDOWS\system32\ntio804.sys
2004-08-03 21:45:12 ----A---- C:\WINDOWS\system32\ntio411.sys
2004-08-03 21:38:34 ----RASH---- C:\NTDETECT.COM
2004-08-03 21:31:44 ----A---- C:\WINDOWS\system32\slbcsp.dll
2004-08-03 21:31:44 ----A---- C:\WINDOWS\system32\sccbase.dll
2004-08-03 21:31:44 ----A---- C:\WINDOWS\system32\rsaenh.dll
2004-08-03 21:31:44 ----A---- C:\WINDOWS\system32\gpkcsp.dll
2004-08-03 21:31:44 ----A---- C:\WINDOWS\system32\dssenh.dll
2004-08-02 13:20:40 ----A---- C:\WINDOWS\system32\secupd.dat
2004-07-17 10:46:14 ----A---- C:\WINDOWS\system32\tcpmon.ini
2004-07-17 10:41:10 ----A---- C:\WINDOWS\system32\login.cmd
2004-07-17 10:39:00 ----A---- C:\WINDOWS\system32\xenroll.dll
2004-07-17 10:36:44 ----A---- C:\WINDOWS\system32\odbc16gt.dll
2004-07-17 10:36:44 ----A---- C:\WINDOWS\system32\ds16gt.dLL
2004-07-17 10:36:38 ----A---- C:\WINDOWS\system32\drivers\secdrv.sys
2004-07-17 10:34:48 ----A---- C:\WINDOWS\system32\msjetoledb40.dll
2003-04-04 13:10:36 ----A---- C:\WINDOWS\UNINST32.EXE
2003-03-18 18:05:50 ----A---- C:\WINDOWS\system32\atl71.dll
2003-01-16 05:26:52 ----A---- C:\WINDOWS\system32\drivers\DKbFltr.SYS
2003-01-10 13:54:17 ----D---- C:\Documents and Settings\Meda\Data aplikací\Malwarebytes
2003-01-10 13:53:25 ----A---- C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2003-01-10 13:53:14 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2003-01-10 13:53:02 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2003-01-10 13:53:02 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2003-01-10 12:22:44 ----D---- C:\Program Files\trend micro
2003-01-10 12:22:31 ----D---- C:\rsit
2003-01-09 21:55:54 ----A---- C:\WINDOWS\system32\drivers\aswRdr.sys
2003-01-09 21:55:53 ----A---- C:\WINDOWS\system32\drivers\aswTdi.sys
2003-01-09 21:55:53 ----A---- C:\WINDOWS\system32\drivers\aavmker4.sys
2003-01-09 21:55:51 ----A---- C:\WINDOWS\system32\drivers\aswmon2.sys
2003-01-09 21:55:51 ----A---- C:\WINDOWS\system32\drivers\aswmon.sys
2003-01-09 21:55:42 ----A---- C:\WINDOWS\system32\MFC71.dll
2003-01-09 21:55:42 ----A---- C:\WINDOWS\system32\AVASTSS.scr
2003-01-09 21:55:42 ----A---- C:\WINDOWS\system32\aswBoot.exe
2003-01-09 21:09:55 ----ASH---- C:\hiberfil.sys
2003-01-09 20:55:28 ----HD---- C:\Documents and Settings\All Users\Data aplikací\Common Files
2003-01-09 20:52:40 ----D---- C:\WINDOWS\system32\drivers\AVG
2003-01-09 20:48:10 ----HD---- C:\WINDOWS\update.tray-12-0-lnk
2003-01-09 20:48:10 ----HD---- C:\WINDOWS\update.tray-12-0
2003-01-09 20:40:29 ----D---- C:\Documents and Settings\All Users\Data aplikací\MFAData
2003-01-09 19:44:53 ----A---- C:\WINDOWS\ddh_iplist.txt
2003-01-09 19:41:13 ----D---- C:\WINDOWS\ufa
2003-01-09 19:41:13 ----D---- C:\WINDOWS\rpcminer
2003-01-09 19:41:13 ----D---- C:\WINDOWS\phoenix
2003-01-09 19:39:56 ----A---- C:\WINDOWS\btc_client_iplist.txt
2003-01-09 19:39:31 ----HD---- C:\WINDOWS\update.5.0
2003-01-09 19:35:16 ----A---- C:\WINDOWS\iecheck_iplist.txt
2003-01-09 19:33:50 ----A---- C:\WINDOWS\unrar.exe
2003-01-09 19:33:21 ----HD---- C:\WINDOWS\update.2
2003-01-09 19:29:56 ----A---- C:\WINDOWS\iplist.txt
2003-01-09 11:51:58 ----A---- C:\WINDOWS\front_ip_list.txt
2003-01-09 11:51:47 ----D---- C:\WINDOWS\av_ico
2003-01-09 11:50:17 ----HD---- C:\WINDOWS\update.1
2003-01-09 11:49:58 ----HD---- C:\WINDOWS\update.tray-8-0-lnk
2003-01-09 11:49:58 ----HD---- C:\WINDOWS\update.tray-8-0
2003-01-09 11:39:27 ----A---- C:\WINDOWS\winlog-ids.txt
2003-01-09 11:39:27 ----A---- C:\WINDOWS\winlog-dirs.txt
2003-01-01 11:31:07 ----D---- C:\WINDOWS\system32\NtmsData
2003-01-01 01:17:43 ----A---- C:\WINDOWS\system32\h323log.txt
2003-01-01 01:15:28 ----A---- C:\WINDOWS\system32\drivers\splitter.sys
2003-01-01 01:15:26 ----A---- C:\WINDOWS\system32\drivers\aec.sys
2003-01-01 01:15:25 ----A---- C:\WINDOWS\system32\drivers\swmidi.sys
2003-01-01 01:15:23 ----A---- C:\WINDOWS\system32\drivers\dmusic.sys
2003-01-01 01:15:21 ----A---- C:\WINDOWS\system32\drivers\mskssrv.sys
2003-01-01 01:15:19 ----A---- C:\WINDOWS\system32\drivers\mspclock.sys
2003-01-01 01:15:17 ----A---- C:\WINDOWS\system32\drivers\sysaudio.sys
2003-01-01 01:15:16 ----A---- C:\WINDOWS\system32\drivers\drmkaud.sys
2003-01-01 01:15:15 ----A---- C:\WINDOWS\system32\drivers\kmixer.sys
2003-01-01 01:15:13 ----A---- C:\WINDOWS\system32\drivers\wdmaud.sys
2003-01-01 01:15:11 ----A---- C:\WINDOWS\system32\drivers\mspqm.sys
2003-01-01 01:15:07 ----A---- C:\WINDOWS\system32\drivers\audstub.sys
2003-01-01 01:14:47 ----A---- C:\WINDOWS\system32\hidserv.dll
2003-01-01 01:14:21 ----A---- C:\WINDOWS\system32\drivers\redbook.sys
2003-01-01 01:14:12 ----A---- C:\WINDOWS\system32\nv4_disp.dll
2003-01-01 01:14:12 ----A---- C:\WINDOWS\system32\drivers\nv4_mini.sys
2003-01-01 01:13:53 ----A---- C:\WINDOWS\system32\drivers\gameenum.sys
2003-01-01 01:13:45 ----A---- C:\WINDOWS\system32\drivers\msmpu401.sys
2003-01-01 01:13:44 ----A---- C:\WINDOWS\system32\ksuser.dll
2003-01-01 01:13:44 ----A---- C:\WINDOWS\system32\drivers\portcls.sys
2003-01-01 01:13:44 ----A---- C:\WINDOWS\system32\drivers\drmk.sys
2003-01-01 01:13:31 ----A---- C:\WINDOWS\system32\drivers\fetnd5.sys
2003-01-01 01:13:27 ----A---- C:\WINDOWS\system32\usbui.dll
2003-01-01 01:13:22 ----A---- C:\WINDOWS\system32\drivers\uagp35.sys
2003-01-01 01:13:16 ----A---- C:\WINDOWS\system32\mdmxsdk.dll
2003-01-01 01:13:16 ----A---- C:\WINDOWS\system32\hsfcisp2.dll
2003-01-01 01:13:16 ----A---- C:\WINDOWS\system32\drivers\mdmxsdk.sys
2003-01-01 01:13:16 ----A---- C:\WINDOWS\system32\drivers\HSFCXTS2.sys
2003-01-01 01:13:16 ----A---- C:\WINDOWS\system32\drivers\HSFBS2S2.sys
2003-01-01 01:13:15 ----A---- C:\WINDOWS\system32\drivers\HSFDPSP2.sys
2003-01-01 01:11:55 ----SHD---- C:\WINDOWS\Installer
2003-01-01 01:11:55 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2003-01-01 01:11:54 ----D---- C:\Program Files\Common Files\ODBC
2003-01-01 01:11:54 ----A---- C:\WINDOWS\ODBCINST.INI
2003-01-01 01:11:52 ----D---- C:\Program Files\Common Files\SpeechEngines
2003-01-01 01:11:51 ----RD---- C:\Program Files
2003-01-01 01:11:51 ----D---- C:\Program Files\Common Files\Microsoft Shared
2003-01-01 01:11:51 ----D---- C:\Program Files\Common Files
2003-01-01 01:11:48 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2003-01-01 01:11:48 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2003-01-01 01:11:48 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2003-01-01 01:11:46 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2003-01-01 01:11:46 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2003-01-01 01:11:46 ----RA---- C:\WINDOWS\system32\kbdur.dll
2003-01-01 01:11:46 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2003-01-01 01:11:46 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2003-01-01 01:11:46 ----RA---- C:\WINDOWS\system32\kbdru.dll
2003-01-01 01:11:46 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2003-01-01 01:11:46 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2003-01-01 01:11:46 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2003-01-01 01:11:46 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2003-01-01 01:11:46 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2003-01-01 01:11:46 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2003-01-01 01:11:45 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2003-01-01 01:11:45 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2003-01-01 01:11:45 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2003-01-01 01:11:45 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2003-01-01 01:11:45 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2003-01-01 01:11:45 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2003-01-01 01:11:45 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2003-01-01 01:11:44 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2003-01-01 01:11:44 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2003-01-01 01:11:44 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2003-01-01 01:11:44 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2003-01-01 01:11:43 ----RA---- C:\WINDOWS\system32\kbdest.dll
2003-01-01 01:11:40 ----A---- C:\WINDOWS\system32\kbdycl.dll
2003-01-01 01:11:40 ----A---- C:\WINDOWS\system32\kbdsl1.dll
2003-01-01 01:11:40 ----A---- C:\WINDOWS\system32\kbdsl.dll
2003-01-01 01:11:40 ----A---- C:\WINDOWS\system32\kbdro.dll
2003-01-01 01:11:40 ----A---- C:\WINDOWS\system32\kbdpl1.dll
2003-01-01 01:11:40 ----A---- C:\WINDOWS\system32\kbdpl.dll
2003-01-01 01:11:40 ----A---- C:\WINDOWS\system32\kbdhu1.dll
2003-01-01 01:11:40 ----A---- C:\WINDOWS\system32\kbdhu.dll
2003-01-01 01:11:40 ----A---- C:\WINDOWS\system32\kbdcr.dll
2003-01-01 01:11:40 ----A---- C:\WINDOWS\system32\KBDAL.DLL
2003-01-01 01:11:39 ----A---- C:\WINDOWS\system32\spxcoins.dll
2003-01-01 01:11:39 ----A---- C:\WINDOWS\system32\irclass.dll
2003-01-01 01:11:39 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2003-01-01 01:11:39 ----A---- C:\WINDOWS\system32\dgsetup.dll
2003-01-01 01:11:39 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2003-01-01 01:11:37 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2003-01-01 01:11:37 ----A---- C:\WINDOWS\TASKMAN.EXE
2003-01-01 01:11:37 ----A---- C:\WINDOWS\system32\drivers\irenum.sys
2003-01-01 01:11:37 ----A---- C:\WINDOWS\system32\batt.dll
2003-01-01 01:11:37 ----A---- C:\WINDOWS\notepad.exe
2003-01-01 01:11:36 ----A---- C:\WINDOWS\system32\storprop.dll
2003-01-01 01:11:27 ----ASH---- C:\Documents and Settings\All Users\Data aplikací\desktop.ini
2003-01-01 01:11:23 ----RA---- C:\WINDOWS\SET8.tmp
2003-01-01 01:11:20 ----RA---- C:\WINDOWS\SET4.tmp
2003-01-01 01:11:19 ----RA---- C:\WINDOWS\SET3.tmp
2003-01-01 01:11:14 ----D---- C:\WINDOWS\system32\CatRoot2
2003-01-01 01:11:14 ----D---- C:\WINDOWS\system32\CatRoot
2003-01-01 01:11:08 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2003-01-01 01:10:48 ----SHD---- C:\System Volume Information
2003-01-01 01:10:48 ----D---- C:\Documents and Settings
2003-01-01 01:10:47 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2003-01-01 01:10:02 ----A---- C:\boot.ini
2003-01-01 01:06:20 ----RSHDC---- C:\WINDOWS\system32\dllcache
2003-01-01 01:06:20 ----RSD---- C:\WINDOWS\Fonts
2003-01-01 01:06:20 ----RD---- C:\WINDOWS\Web
2003-01-01 01:06:20 ----HD---- C:\WINDOWS\inf
2003-01-01 01:06:20 ----D---- C:\WINDOWS\WinSxS
2003-01-01 01:06:20 ----D---- C:\WINDOWS\twain_32
2003-01-01 01:06:20 ----D---- C:\WINDOWS\Temp
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\wins
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\wbem
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\usmt
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\spool
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\ShellExt
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\Setup
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\ras
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\oobe
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\npp
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\mui
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\inetsrv
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\IME
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\icsxml
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\ias
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\export
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\drivers\etc
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\drivers\disdn
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\drivers
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\dhcp
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\config
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\3com_dmi
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\3076
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\2052
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\1054
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\1042
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\1041
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\1037
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\1033
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\1031
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\1029
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\1028
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32\1025
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system32
2003-01-01 01:06:20 ----D---- C:\WINDOWS\system
2003-01-01 01:06:20 ----D---- C:\WINDOWS\security
2003-01-01 01:06:20 ----D---- C:\WINDOWS\Resources
2003-01-01 01:06:20 ----D---- C:\WINDOWS\repair
2003-01-01 01:06:20 ----D---- C:\WINDOWS\Provisioning
2003-01-01 01:06:20 ----D---- C:\WINDOWS\pchealth
2003-01-01 01:06:20 ----D---- C:\WINDOWS\PeerNet
2003-01-01 01:06:20 ----D---- C:\WINDOWS\mui
2003-01-01 01:06:20 ----D---- C:\WINDOWS\msapps
2003-01-01 01:06:20 ----D---- C:\WINDOWS\msagent
2003-01-01 01:06:20 ----D---- C:\WINDOWS\Media
2003-01-01 01:06:20 ----D---- C:\WINDOWS\java
2003-01-01 01:06:20 ----D---- C:\WINDOWS\ime
2003-01-01 01:06:20 ----D---- C:\WINDOWS\Help
2003-01-01 01:06:20 ----D---- C:\WINDOWS\ehome
2003-01-01 01:06:20 ----D---- C:\WINDOWS\Driver Cache
2003-01-01 01:06:20 ----D---- C:\WINDOWS\Debug
2003-01-01 01:06:20 ----D---- C:\WINDOWS\Cursors
2003-01-01 01:06:20 ----D---- C:\WINDOWS\Connection Wizard
2003-01-01 01:06:20 ----D---- C:\WINDOWS\Config
2003-01-01 01:06:20 ----D---- C:\WINDOWS\AppPatch
2003-01-01 01:06:20 ----D---- C:\WINDOWS\addins
2003-01-01 01:06:20 ----D---- C:\WINDOWS
2003-01-01 01:06:19 ----ASH---- C:\pagefile.sys
2003-01-01 00:33:19 ----D---- C:\WINDOWS\system32\appmgmt
2003-01-01 00:20:34 ----D---- C:\Documents and Settings\All Users\Data aplikací\nView_Profiles
2002-12-31 23:30:21 ----D---- C:\Program Files\Common Files\Adobe
2002-12-31 23:30:21 ----D---- C:\Program Files\Adobe
2002-12-31 23:14:39 ----D---- C:\Program Files\Labtec
2002-12-31 23:14:30 ----RA---- C:\WINDOWS\DynaRes.DLL
2002-12-31 23:02:24 ----A---- C:\WINDOWS\system32\drivers\i8042prt.sys

======List of files/folders modified in the last 1 month======

2010-09-18 07:53:37 ----A---- C:\WINDOWS\system32\mfc40u.dll
2010-09-18 07:53:37 ----A---- C:\WINDOWS\system32\mfc40.dll
2010-08-09 15:49:24 ----A---- C:\WINDOWS\win.ini
2010-07-25 19:23:55 ----ASH---- C:\WINDOWS\fonts\desktop.ini
2009-11-27 17:09:43 ----A---- C:\WINDOWS\system32\tsbyuv.dll
2009-11-27 17:09:43 ----A---- C:\WINDOWS\system32\msvidc32.dll
2009-10-15 17:32:57 ----A---- C:\WINDOWS\system32\fontsub.dll
2009-03-08 03:32:52 ----A---- C:\WINDOWS\system32\ieakui.dll
2009-03-08 03:22:38 ----A---- C:\WINDOWS\system32\msls31.dll
2009-02-06 11:39:08 ----A---- C:\WINDOWS\system32\sc.exe
2008-04-14 07:52:58 ----A---- C:\WINDOWS\system32\tree.com
2008-04-14 07:52:58 ----A---- C:\WINDOWS\system32\more.com
2008-04-14 07:52:58 ----A---- C:\WINDOWS\system32\format.com
2008-04-14 07:52:50 ----A---- C:\WINDOWS\system32\tasklist.exe
2008-04-14 07:52:50 ----A---- C:\WINDOWS\system32\taskkill.exe
2008-04-14 07:52:50 ----A---- C:\WINDOWS\system32\systeminfo.exe
2008-04-14 07:52:48 ----A---- C:\WINDOWS\system32\sort.exe
2008-04-14 07:52:26 ----A---- C:\WINDOWS\system32\help.exe
2008-04-14 07:52:26 ----A---- C:\WINDOWS\system32\getmac.exe
2008-04-14 07:52:24 ----A---- C:\WINDOWS\system32\forcedos.exe
2008-04-14 07:52:22 ----A---- C:\WINDOWS\system32\eventtriggers.exe
2008-04-14 07:52:20 ----A---- C:\WINDOWS\system32\driverquery.exe
2008-04-14 07:52:14 ----A---- C:\WINDOWS\system32\cacls.exe
2008-04-14 07:52:14 ----A---- C:\WINDOWS\system32\bootcfg.exe
2008-04-14 07:52:10 ----A---- C:\WINDOWS\system32\attrib.exe
2008-04-14 07:52:06 ----A---- C:\WINDOWS\system32\wavemsp.dll
2008-04-14 07:52:06 ----A---- C:\WINDOWS\system32\verifier.dll
2008-04-14 07:51:56 ----A---- C:\WINDOWS\system32\rsvpsp.dll
2008-04-14 07:51:54 ----A---- C:\WINDOWS\system32\perfnet.dll
2008-04-14 07:51:54 ----A---- C:\WINDOWS\system32\oledlg.dll
2008-04-14 07:51:54 ----A---- C:\WINDOWS\system32\olecnv32.dll
2008-04-14 07:51:54 ----A---- C:\WINDOWS\system32\olecli32.dll
2008-04-14 07:51:54 ----A---- C:\WINDOWS\system32\ocmanage.dll
2008-04-14 07:51:52 ----A---- C:\WINDOWS\system32\nwapi32.dll
2008-04-14 07:51:52 ----A---- C:\WINDOWS\system32\ntvdmd.dll
2008-04-14 07:51:48 ----A---- C:\WINDOWS\system32\mprdim.dll
2008-04-14 07:51:46 ----A---- C:\WINDOWS\system32\mimefilt.dll
2008-04-14 07:51:46 ----A---- C:\WINDOWS\system32\jgpl400.dll
2008-04-14 07:51:46 ----A---- C:\WINDOWS\system32\jgdw400.dll
2008-04-14 07:51:46 ----A---- C:\WINDOWS\system32\ipxwan.dll
2008-04-14 07:51:46 ----A---- C:\WINDOWS\system32\iprtrmgr.dll
2008-04-14 07:51:46 ----A---- C:\WINDOWS\system32\ipmontr.dll
2008-04-14 07:51:44 ----A---- C:\WINDOWS\system32\hlink.dll
2008-04-14 07:51:42 ----A---- C:\WINDOWS\system32\fde.dll
2008-04-14 07:51:42 ----A---- C:\WINDOWS\system32\exts.dll
2008-04-14 07:51:42 ----A---- C:\WINDOWS\system32\dskquoui.dll
2008-04-14 07:51:40 ----A---- C:\WINDOWS\system32\dmdlgs.dll
2008-04-14 07:51:40 ----A---- C:\WINDOWS\system32\dispex.dll
2008-04-14 07:51:40 ----A---- C:\WINDOWS\system32\diskcopy.dll
2008-04-14 07:51:40 ----A---- C:\WINDOWS\system32\dhcpmon.dll
2008-04-14 07:51:40 ----A---- C:\WINDOWS\system32\datime.dll
2008-04-14 07:51:40 ----A---- C:\WINDOWS\system32\confmsp.dll
2008-04-14 07:51:40 ----A---- C:\WINDOWS\system32\cic.dll
2008-04-14 07:51:38 ----A---- C:\WINDOWS\system32\capesnpn.dll
2008-04-14 07:51:38 ----A---- C:\WINDOWS\system32\adsnw.dll
2008-04-14 07:48:12 ----A---- C:\WINDOWS\system32\kbdnec.dll
2003-01-01 01:11:50 ----A---- C:\WINDOWS\system.ini

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 uagp35;Filtr Microsoft AGPv3.5; C:\WINDOWS\system32\DRIVERS\uagp35.sys [2008-04-13 44672]
R0 videX32;videX32; C:\WINDOWS\system32\DRIVERS\videX32.sys [2009-05-05 13976]
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2006-08-05 24304]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2006-08-05 36176]
R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2010-08-02 126856]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2009-05-11 28520]
R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2006-08-05 87424]
R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2010-08-02 60936]
R2 mdmxsdk;mdmxsdk; C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [2004-08-03 11868]
R3 cmuda;C-Media WDM Audio Interface; C:\WINDOWS\system32\drivers\cmuda.sys [2003-02-26 739983]
R3 cmuda3;C-Media PCI Audio Interface; C:\WINDOWS\system32\drivers\cmudax3.sys [2009-03-18 1512960]
R3 DKbFltr;Dritek HotKey Filter Driver; C:\WINDOWS\system32\DRIVERS\DKbFltr.sys [2003-01-16 16256]
R3 FETNDIS;VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\fetnd5.sys [2001-08-17 27165]
R3 HSF_DP;HSF_DP; C:\WINDOWS\system32\DRIVERS\HSFDPSP2.sys [2004-08-03 1041536]
R3 HSFHWBS2;HSFHWBS2; C:\WINDOWS\system32\DRIVERS\HSFBS2S2.sys [2004-08-03 220032]
R3 ms_mpu401;Microsoft MPU-401 MIDI UART Driver; C:\WINDOWS\system32\drivers\msmpu401.sys [2001-08-17 2944]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2005-12-10 3536768]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 winachsf;winachsf; C:\WINDOWS\system32\DRIVERS\HSFCXTS2.sys [2004-08-03 685056]
S1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir Desktop\avgio.sys []
S1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
S3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2006-08-05 16352]
S3 cmpci;C-Media PCI Audio Driver (WDM); C:\WINDOWS\system32\drivers\cmaudio.sys [2002-11-18 377358]
S3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2008-01-25 49920]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2008-01-25 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2008-01-25 21568]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\mbamswissarmy.sys []
S3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-25 12160]
S3 tunmp;Microsoft Tun Miniport Adapter Driver; C:\WINDOWS\system32\DRIVERS\tunmp.sys [2008-04-13 12288]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 aswUpdSv;avast! iAVS4 Control Service; D:\avast\aswUpdSv.exe [2006-08-05 59008]
R2 avast! Antivirus;avast! Antivirus; D:\avast\ashServ.exe [2006-08-05 108160]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2005-12-10 131139]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R3 hpqcxs08;hpqcxs08; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 AntiVirService;Avira AntiVir Guard; C:\Program Files\Avira\AntiVir Desktop\avguard.exe []
S2 AntiVirSchedulerService;Avira AntiVir Scheduler; C:\Program Files\Avira\AntiVir Desktop\sched.exe []
S2 AVGIDSAgent;AVGIDSAgent; C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe []
S2 avgwd;AVG WatchDog; C:\Program Files\AVG\AVG10\avgwdsvc.exe []
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 avast! Mail Scanner;avast! Mail Scanner; D:\avast\ashMaiSv.exe [2006-08-05 251520]
S3 avast! Web Scanner;avast! Web Scanner; D:\avast\ashWebSv.exe [2006-08-05 370304]
S3 AVG Security Toolbar Service;AVG Security Toolbar Service; C:\Program Files\AVG\AVG10\Toolbar\ToolbarBroker.exe []
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-12-22 136120]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119506
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: FB vir (aktualizace abdobe reader) - část první

#7 Příspěvek od Rudy »

Je tam ještě pár zbytků. Dejte log z ComboFix.
Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe

pote spustte aplikaci pod uctem s administratorskym opravnenim

hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.

v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se

jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine

aplikace ani nic jineho

behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)

upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode,

pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k

nezadoucim kolizim s rezidentem antispyware
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

meda
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 26 črc 2011 11:36

Re: FB vir (aktualizace abdobe reader) - část první

#8 Příspěvek od meda »

ComboFix 11-07-27.01 - Meda 11.01.2003 16:56:30.1.1 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.511.60 [GMT 1:00]
Spuštěný z: c:\documents and settings\Meda\Plocha\ComboFix.exe
AV: AntiVir Desktop *Disabled/Outdated* {AD166499-45F9-482A-A743-FDD3350758C7}
AV: avast! antivirus 4.7.869 [VPS 0631-3] *Enabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\docume~1\Meda\LOCALS~1\Temp\2972590.exe
c:\docume~1\Meda\LOCALS~1\Temp\4178942.exe
c:\docume~1\Meda\LOCALS~1\Temp\5874524.exe
c:\documents and settings\Meda\Dokumenty\cc_20110123_170537.reg
c:\documents and settings\Meda\Dokumenty\cc_20110123_170905.reg
c:\windows\sysdriver32.exe
c:\windows\sysdriver32_.exe
c:\windows\system\cmicnfg.cpl
c:\windows\system\CMICNFG3.cpl
c:\windows\system\winspool.drv
c:\windows\system32\w3url.dll
c:\windows\TEMP\1350150.exe
c:\windows\TEMP\22260774-loader2.exe
c:\windows\TEMP\3224756.exe
c:\windows\update.1
c:\windows\update.1\svchost.exe
c:\windows\update.2
c:\windows\update.2\svchost.exe
c:\windows\update.5.0
c:\windows\update.5.0\svchost.exe
c:\windows\update.tray-12-0\svchost.exe
c:\windows\update.tray-8-0\svchost.exe
.
Nakažená kopie c:\windows\system32\msgsvc.dll byla nalezena a vyléčena.
Obnovena kopie z - c:\windows\ServicePackFiles\i386\msgsvc.dll
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_SRVBTCCLIENT
-------\Legacy_SRVIECHECK
-------\Legacy_SRVSYSDRIVER32
-------\Legacy_WXPDRIVERS
-------\Service_srvbtcclient
-------\Service_srviecheck
-------\Service_srvsysdriver32
-------\Service_wxpdrivers
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2002-12-11 do 2003-01-11 )))))))))))))))))))))))))))))))
.
.
2011-05-25 20:04 . 2011-05-25 20:04 -------- d-----w- C:\5c9679a7e92f9e04a19b05bb84
2011-01-16 18:44 . 2011-01-16 18:44 -------- d-----w- C:\Prograky
2010-07-25 19:41 . 2010-07-25 19:41 -------- d-----w- C:\PCI-8738-090401-5.12.8.1734(XP-RC-01)_FR
2010-07-25 19:16 . 2010-07-25 19:16 -------- d-----w- C:\NVIDIA
2010-07-25 19:12 . 2010-07-25 19:13 -------- d-----w- C:\VIA_HyperionPro_V524A
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-11-02 15:17 . 2001-10-25 14:00 40960 ----a-w- c:\windows\system32\drivers\ndproxy.sys
2010-09-18 06:53 . 2001-10-25 14:00 954368 ----a-w- c:\windows\system32\mfc40.dll
2010-09-18 06:53 . 2001-10-25 14:00 953856 ----a-w- c:\windows\system32\mfc40u.dll
2010-06-15 16:18 . 2001-10-25 14:00 143422 ----a-w- c:\windows\system32\l3codecx.ax
2010-06-14 14:31 . 2010-07-25 18:21 744448 ----a-w- c:\windows\pchealth\helpctr\binaries\helpsvc.exe
2009-11-27 16:09 . 2001-10-25 14:00 28672 ----a-w- c:\windows\system32\msvidc32.dll
2009-11-27 16:09 . 2001-10-24 12:25 8704 ----a-w- c:\windows\system32\tsbyuv.dll
2009-11-21 16:03 . 2004-08-17 13:49 471552 ----a-w- c:\windows\apppatch\aclayers.dll
2009-10-15 16:32 . 2001-10-25 14:00 81920 ----a-w- c:\windows\system32\fontsub.dll
2009-10-12 13:40 . 2004-08-17 13:49 79872 ----a-w- c:\windows\system32\raschap.dll
2009-03-08 02:34 . 2004-08-17 13:49 236544 ----a-w- c:\windows\system32\webcheck.dll
2009-03-08 02:22 . 2001-10-25 14:00 156160 ----a-w- c:\windows\system32\msls31.dll
2009-02-06 10:39 . 2001-10-25 14:00 35328 ----a-w- c:\windows\system32\sc.exe
2008-05-08 14:02 . 2001-10-25 14:00 203136 ----a-w- c:\windows\system32\drivers\rmcast.sys
2008-04-14 06:52 . 2001-10-25 14:00 29696 ----a-w- c:\windows\system32\format.com
2008-04-14 06:52 . 2001-10-25 14:00 16896 ----a-w- c:\windows\system32\more.com
2008-04-14 06:52 . 2001-10-25 14:00 12800 ----a-w- c:\windows\system32\tree.com
2008-04-14 06:52 . 2010-07-25 18:21 150528 ----a-w- c:\windows\pchealth\UploadLB\Binaries\uploadm.exe
2008-04-14 06:52 . 2001-10-25 14:00 78336 ----a-w- c:\windows\system32\tasklist.exe
2008-04-14 06:52 . 2001-10-25 14:00 77312 ----a-w- c:\windows\system32\taskkill.exe
2008-04-14 06:52 . 2001-10-25 14:00 72192 ----a-w- c:\windows\system32\systeminfo.exe
2008-04-14 06:52 . 2001-10-25 14:00 25600 ----a-w- c:\windows\system32\sort.exe
2008-04-14 06:52 . 2010-07-25 18:21 171008 ----a-w- c:\windows\pchealth\helpctr\binaries\msconfig.exe
2008-04-14 06:52 . 2010-07-25 18:21 769024 ----a-w- c:\windows\pchealth\helpctr\binaries\helpctr.exe
2008-04-14 06:52 . 2010-07-25 18:21 18432 ----a-w- c:\windows\pchealth\helpctr\binaries\hscupd.exe
2008-04-14 06:52 . 2001-10-25 14:00 60928 ----a-w- c:\windows\system32\getmac.exe
2008-04-14 06:52 . 2001-10-25 14:00 15360 ----a-w- c:\windows\system32\help.exe
2008-04-14 06:52 . 2001-10-25 14:00 7680 ----a-w- c:\windows\system32\forcedos.exe
2008-04-14 06:52 . 2001-10-25 14:00 84992 ----a-w- c:\windows\system32\eventtriggers.exe
2008-04-14 06:52 . 2001-10-25 14:00 64000 ----a-w- c:\windows\system32\driverquery.exe
2008-04-14 06:52 . 2001-10-25 14:00 20480 ----a-w- c:\windows\system32\cacls.exe
2008-04-14 06:52 . 2001-10-25 14:00 149504 ----a-w- c:\windows\system32\bootcfg.exe
2008-04-14 06:52 . 2004-08-17 13:49 601088 ----a-w- c:\windows\system32\autochk.exe
2008-04-14 06:52 . 2001-10-25 14:00 12288 ----a-w- c:\windows\system32\attrib.exe
2008-04-14 06:52 . 2010-07-25 18:56 11325 ------w- c:\windows\system32\drivers\vchnt5.dll
2008-04-14 06:52 . 2004-08-17 13:49 279040 ----a-w- c:\windows\help\tshoot.dll
2008-04-14 06:52 . 2001-10-25 14:00 26624 ----a-w- c:\windows\system32\verifier.dll
2008-04-14 06:52 . 2001-10-25 14:00 215552 ----a-w- c:\windows\system32\wavemsp.dll
2008-04-14 06:52 . 2010-07-25 18:22 726590 ----a-w- c:\windows\srchasst\srchui.dll
2008-04-14 06:52 . 2010-07-25 18:22 58434 ----a-w- c:\windows\srchasst\srchctls.dll
2008-04-14 06:52 . 2004-08-17 13:49 33280 ----a-w- c:\windows\help\sstub.dll
2008-04-14 06:51 . 2004-08-17 13:49 34816 ----a-w- c:\windows\help\sniffpol.dll
2008-04-14 06:51 . 2001-10-25 14:00 92672 ----a-w- c:\windows\system32\rsvpsp.dll
2008-04-14 06:51 . 2010-07-25 18:21 38400 ----a-w- c:\windows\pchealth\helpctr\binaries\pchsvc.dll
2008-04-14 06:51 . 2010-07-25 18:21 102912 ----a-w- c:\windows\pchealth\helpctr\binaries\pchshell.dll
2008-04-14 06:51 . 2001-10-25 14:00 74752 ----a-w- c:\windows\system32\olecli32.dll
2008-04-14 06:51 . 2001-10-25 14:00 67584 ----a-w- c:\windows\system32\ocmanage.dll
2008-04-14 06:51 . 2001-10-25 14:00 37376 ----a-w- c:\windows\system32\olecnv32.dll
2008-04-14 06:51 . 2001-10-25 14:00 17408 ----a-w- c:\windows\system32\perfnet.dll
2008-04-14 06:51 . 2001-10-25 14:00 122880 ----a-w- c:\windows\system32\oledlg.dll
2008-04-14 06:51 . 2001-10-25 14:00 64000 ----a-w- c:\windows\system32\nwapi32.dll
2008-04-14 06:51 . 2001-10-25 14:00 15360 ----a-w- c:\windows\system32\ntvdmd.dll
2008-04-14 06:51 . 2010-07-25 18:22 3166208 ----a-w- c:\windows\srchasst\msgr3en.dll
2008-04-14 06:51 . 2010-07-25 18:21 378880 ----a-w- c:\windows\pchealth\helpctr\binaries\msinfo.dll
2008-04-14 06:51 . 2001-10-25 14:00 53248 ----a-w- c:\windows\system32\mprdim.dll
2008-04-14 06:51 . 2001-10-25 14:00 29696 ----a-w- c:\windows\system32\mimefilt.dll
2008-04-14 06:51 . 2001-10-25 14:00 22016 ----a-w- c:\windows\system32\ipxwan.dll
2008-04-14 06:51 . 2001-10-25 14:00 177152 ----a-w- c:\windows\system32\iprtrmgr.dll
2008-04-14 06:51 . 2001-10-25 14:00 160256 ----a-w- c:\windows\system32\ipmontr.dll
2008-04-14 06:51 . 2001-10-25 14:00 72704 ----a-w- c:\windows\system32\hlink.dll
2008-04-14 06:51 . 2001-10-25 14:00 157184 ----a-w- c:\windows\system32\dskquoui.dll
2008-04-14 06:51 . 2001-10-25 14:00 125952 ----a-w- c:\windows\system32\exts.dll
2008-04-14 06:51 . 2001-10-25 14:00 124416 ----a-w- c:\windows\system32\fde.dll
2008-04-14 06:51 . 2001-10-25 14:00 390656 ----a-w- c:\windows\system32\dhcpmon.dll
2008-04-14 06:51 . 2001-10-25 14:00 358400 ----a-w- c:\windows\system32\confmsp.dll
2008-04-14 06:51 . 2001-10-25 14:00 32768 ----a-w- c:\windows\system32\dispex.dll
2008-04-14 06:51 . 2001-10-25 14:00 285184 ----a-w- c:\windows\system32\dmdlgs.dll
2008-04-14 06:51 . 2001-10-25 14:00 165376 ----a-w- c:\windows\system32\datime.dll
2008-04-14 06:51 . 2001-10-25 14:00 1504768 ----a-w- c:\windows\system32\diskcopy.dll
2008-04-14 06:51 . 2001-10-25 14:00 148480 ----a-w- c:\windows\system32\cic.dll
2008-04-14 06:51 . 2004-08-17 13:49 245248 ----a-w- c:\windows\apppatch\acspecfc.dll
2008-04-14 06:51 . 2004-08-17 13:49 1852928 ----a-w- c:\windows\apppatch\acgenral.dll
2008-04-14 06:51 . 2004-08-17 13:49 141312 ----a-w- c:\windows\apppatch\aclua.dll
2008-04-14 06:51 . 2004-08-17 13:49 116224 ----a-w- c:\windows\apppatch\acxtrnal.dll
2008-04-14 06:51 . 2001-10-25 14:00 151040 ----a-w- c:\windows\system32\capesnpn.dll
2008-04-14 06:51 . 2001-10-25 14:00 123392 ----a-w- c:\windows\system32\adsnw.dll
2008-04-14 06:51 . 2010-07-25 19:00 39424 ------w- c:\windows\apppatch\acadproc.dll
2008-04-14 06:48 . 2001-10-25 14:00 7168 ----a-w- c:\windows\system32\kbdnec.dll
2008-04-14 05:57 . 2001-10-25 14:00 37248 ----a-w- c:\windows\system32\drivers\isapnp.sys
2008-04-14 05:43 . 2001-10-25 14:00 44544 ----a-w- c:\windows\system32\drivers\fips.sys
2008-04-13 22:27 . 2001-10-25 14:00 10112 ----a-w- c:\windows\system32\drivers\ndistapi.sys
2008-04-13 22:15 . 2001-08-17 22:03 25728 ----a-w- c:\windows\system32\drivers\usbcamd2.sys
2008-04-13 22:15 . 2001-08-17 22:03 25600 ----a-w- c:\windows\system32\drivers\usbcamd.sys
2008-04-13 22:15 . 2001-10-25 14:00 10368 ----a-w- c:\windows\system32\drivers\hidusb.sys
2008-04-13 22:10 . 2001-10-25 14:00 19712 ----a-w- c:\windows\system32\drivers\partmgr.sys
2008-04-13 19:12 . 2001-10-25 14:00 16896 ----a-w- c:\windows\system32\stdole2.tlb
2007-04-02 16:17 . 2004-08-17 13:49 518944 ----a-w- c:\windows\system32\msexch40.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2005-12-10 7311360]
"nwiz"="nwiz.exe" [2005-12-10 1519616]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2005-12-10 86016]
"C-Media Mixer"="Mixer.exe" [2002-10-15 1818624]
"LabtecKB"="c:\program files\Labtec\Labtec Keyboard-Desktop Software\DsiMmKbd.EXE" [2003-04-08 184320]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2008-03-25 49152]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2011-01-31 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-09-20 932288]
"NeroCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
"l1rezerv.exe"="c:\windows\l1rezerv.exe" [2003-01-11 232960]
"systemup"="c:\windows\systemup.exe" [2003-01-11 114176]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableSecureUIAPaths"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0c:\progra~1\AVG\AVG10\avgchsvx.exe /sync\0c:\progra~1\AVG\AVG10\avgrsx.exe /sync /restart
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"FirewallOverride"=dword:00000001
"DisableThumbnailCache"=dword:00000001
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"d:\\Programky\\QIP 8095\\qip.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpiscnapp.exe"=
"c:\\Program Files\\Common Files\\HP\\Digital Imaging\\bin\\hpqPhotoCrm.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqpsapp.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqpse.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqsudi.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqgplgtupl.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqgpc01.exe"=
"c:\\Prograky\\XBMC\\XBMC.exe"=
"c:\\Documents and Settings\\Meda\\Dokumenty\\Stažené soubory\\Flash-Player.exe"=
.
S2 AntiVirSchedulerService;Avira AntiVir Scheduler;"c:\program files\Avira\AntiVir Desktop\sched.exe" --> c:\program files\Avira\AntiVir Desktop\sched.exe [?]
S2 AVGIDSAgent;AVGIDSAgent;"c:\program files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe" --> c:\program files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe [?]
S2 avgwd;AVG WatchDog;"c:\program files\AVG\AVG10\avgwdsvc.exe" --> c:\program files\AVG\AVG10\avgwdsvc.exe [?]
S3 AVG Security Toolbar Service;AVG Security Toolbar Service;c:\program files\AVG\AVG10\Toolbar\ToolbarBroker.exe --> c:\program files\AVG\AVG10\Toolbar\ToolbarBroker.exe [?]
S3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [10.1.2003 13:53 41272]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
.
Obsah adresáře 'Naplánované úlohy'
.
2003-01-11 c:\windows\Tasks\WGASetup.job
- c:\windows\system32\KB905474\wgasetup.exe [2010-07-27 20:18]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
uDefault_Search_URL = hxxp://www.google.com/ie
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
TCP: DhcpNameServer = 192.168.0.1
Handler: avgsecuritytoolbar - {F2DDE6B2-9684-4A55-86D4-E255E237B77C} -
FF - ProfilePath - c:\documents and settings\Meda\Data aplikací\Mozilla\Firefox\Profiles\qor8117j.default\
FF - prefs.js: browser.startup.homepage - hxxp://seznam.cz
FF - prefs.js: network.proxy.type - 0
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - %profile%\extensions\{20a82645-c095-46ed-80e3-08825760534b}
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
BHO-{A3BC75A2-1F87-4686-AA43-5347D756017C} - c:\program files\AVG\AVG10\Toolbar\IEToolbar.dll
Toolbar-{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - c:\program files\AVG\AVG10\Toolbar\IEToolbar.dll
HKLM-Run-Cmaudio - cmicnfg.cpl
HKLM-Run-CmPCIaudio - CMICNFG3.cpl
HKLM-Run-avgnt - c:\program files\Avira\AntiVir Desktop\avgnt.exe
HKLM-Run-hpqSRMon - (no file)
HKLM-Run-wxpdrv - c:\windows\services32.exe
HKLM-Run-tray_ico - (no file)
HKLM-Run-tray_ico2 - (no file)
HKLM-Run-tray_ico3 - (no file)
HKLM-Run-tray_ico4 - (no file)
HKLM-Run-AVG_TRAY - c:\program files\AVG\AVG10\avgtray.exe
HKLM-Run-tray_ico1 - c:\windows\update.tray-12-0\svchost.exe
HKLM-Run-tray_ico0 - c:\windows\update.tray-8-0\svchost.exe
AddRemove-AVG - c:\program files\AVG\AVG10\avgmfapx.exe
AddRemove-Avira AntiVir Desktop - c:\program files\Avira\AntiVir Desktop\setup.exe
AddRemove-SAMSUNG CDMA Modem - d:\omnia\SSCDUninstall.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2003-01-11 17:16
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'explorer.exe'(2676)
c:\program files\Windows Media Player\wmpband.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
d:\avast\aswUpdSv.exe
d:\avast\ashServ.exe
c:\windows\system32\RUNDLL32.EXE
c:\windows\Mixer.exe
c:\windows\system32\nvsvc32.exe
.
**************************************************************************
.
Celkový čas: 2003-01-11 17:19:24 - počítač byl restartován
ComboFix-quarantined-files.txt 2003-01-11 16:19
.
Před spuštěním: Volných bajtů: 12 811 399 168
Po spuštění: Volných bajtů: 14 318 379 008
.
WindowsXP-KB310994-SP2-Pro-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=AlwaysOff /fastdetect
.
- - End Of File - - 7B8EB42B14A38C69106A59F1323E2C75

meda
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 26 črc 2011 11:36

Re: FB vir (aktualizace abdobe reader) - část první

#9 Příspěvek od meda »

Takže už je hotovo? Jesli ano, děkuji mockrát! :)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119506
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: FB vir (aktualizace abdobe reader) - část první

#10 Příspěvek od Rudy »

Ještě dočistíme. Otevřte poznámkový blok a zkopírujte do něj:
Registry::
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"l1rezerv.exe"=-
"systemup"=-
Uložte na plochu jako CFScript.txt. Pak jej myší přetáhněte nad ikonu ComboFix a pusťte. CF se spustí a vykoná příkazy ze skriptu.

Obrázek
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět