
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Trojský kôň Win32/Agent.SDG.Gen - prosím o pomoc
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Trojský kôň Win32/Agent.SDG.Gen - prosím o pomoc
Dobrý deň
Chcel by som Vás poprosiť o pomoc pri riešení víru, Trojský kôň Win32/Agent.SDG.Gen. mi napadol prednedávnom boot sector pc a teraz už ho mám aj v laptope, skušal som všetko možné čo mi google ponukol no nepodarilo sa mi ho odstrániť.
Chcel by som Vás poprosiť o pomoc pri riešení víru, Trojský kôň Win32/Agent.SDG.Gen. mi napadol prednedávnom boot sector pc a teraz už ho mám aj v laptope, skušal som všetko možné čo mi google ponukol no nepodarilo sa mi ho odstrániť.
Re: Trojský kôň Win32/Agent.SDG.Gen - prosím o pomoc
Tu je log z pc (nechcelo mi ho odoslať naraz)
Logfile of random's system information tool 1.09 (written by random/random)
Run by Spash at 2011-10-27 21:49:24
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 37 GB (75%) free of 50 GB
Total RAM: 2048 MB (54% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:49:28, on 27. 10. 2011
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v8.00 (8.00.7601.17514)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\Google\Gmail Notifier\gnotify.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Users\Spash\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Users\Spash\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Users\Spash\AppData\Local\Google\Update\1.3.21.79\GoogleCrashHandler.exe
C:\Users\Spash\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Spash\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\rundll32.exe
C:\Users\Spash\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Spash\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\TC UP\totalcmd.exe
C:\Users\Spash\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Spash\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Spash\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Spash\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Spash\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Spash\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\NOTEPAD.EXE
C:\Windows\system32\NOTEPAD.EXE
C:\Windows\system32\NOTEPAD.EXE
C:\Users\Spash\Desktop\RSIT.exe
C:\Program Files\trend micro\Spash.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [{0228e555-4f9c-4e35-a3ec-b109a192b4c2}] C:\Program Files\Google\Gmail Notifier\gnotify.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Google Update] "C:\Users\Spash\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [chromium] C:\Users\Spash\AppData\Local\Google\Chrome\Application\chrome.exe --no-startup-window
O4 - HKCU\..\Run: [SRDownloader] F:\download\SRDownloader.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-2935269482-1580412803-1049093956-1003\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-2935269482-1580412803-1049093956-1003\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
--
End of file - 4796 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2935269482-1580412803-1049093956-1001Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2935269482-1580412803-1049093956-1001UA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2009-04-09 2029640]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2011-10-17 11430504]
"{0228e555-4f9c-4e35-a3ec-b109a192b4c2}"=C:\Program Files\Google\Gmail Notifier\gnotify.exe [2005-07-15 479232]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2010-04-01 357696]
"Google Update"=C:\Users\Spash\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-26 135664]
"chromium"=C:\Users\Spash\AppData\Local\Google\Chrome\Application\chrome.exe [2011-10-21 1036344]
"SRDownloader"=F:\download\SRDownloader.exe [2011-10-19 903680]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2011-10-27 21:45:45 ----A---- C:\sector.txt
2011-10-27 21:42:14 ----D---- C:\Program Files\trend micro
2011-10-27 21:42:13 ----D---- C:\rsit
2011-10-27 17:26:34 ----D---- C:\Windows\system32\Macromed
2011-10-27 16:38:46 ----D---- C:\Program Files\Google
2011-10-27 16:30:54 ----D---- C:\Windows\system32\SPReview
2011-10-27 16:30:16 ----D---- C:\Windows\system32\EventProviders
2011-10-27 16:29:40 ----D---- C:\Windows\system32\Wat
2011-10-27 16:25:12 ----A---- C:\Windows\system32\dfshim.dll
2011-10-27 16:25:06 ----A---- C:\Windows\system32\LSCSHostPolicy.dll
2011-10-27 16:25:06 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2011-10-27 16:25:05 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2011-10-27 16:25:05 ----A---- C:\Windows\system32\mstscax.dll
2011-10-27 16:25:00 ----A---- C:\Windows\system32\d3d10warp.dll
2011-10-27 16:24:59 ----A---- C:\Windows\system32\mfc40.dll
2011-10-27 16:24:58 ----A---- C:\Windows\system32\tssrvlic.dll
2011-10-27 16:24:58 ----A---- C:\Windows\system32\RDVGHelper.exe
2011-10-27 16:24:58 ----A---- C:\Windows\system32\rdpcorets.dll
2011-10-27 16:24:58 ----A---- C:\Windows\system32\mfc40u.dll
2011-10-27 16:24:56 ----A---- C:\Windows\system32\XpsPrint.dll
2011-10-27 16:24:56 ----A---- C:\Windows\system32\sysmain.dll
2011-10-27 16:24:55 ----A---- C:\Windows\system32\d2d1.dll
2011-10-27 16:24:54 ----A---- C:\Windows\system32\secproc_isv.dll
2011-10-27 16:24:53 ----A---- C:\Windows\system32\shell32.dll
2011-10-27 16:24:52 ----A---- C:\Windows\system32\RMActivate_isv.exe
2011-10-27 16:24:51 ----A---- C:\Windows\system32\secproc.dll
2011-10-27 16:24:49 ----A---- C:\Windows\system32\RMActivate.exe
2011-10-27 16:24:46 ----A---- C:\Windows\system32\spwizui.dll
2011-10-27 16:24:46 ----A---- C:\Windows\system32\mscoree.dll
2011-10-27 16:24:43 ----A---- C:\Windows\system32\mf.dll
2011-10-27 16:24:42 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2011-10-27 16:24:42 ----A---- C:\Windows\system32\CertEnroll.dll
2011-10-27 16:24:41 ----A---- C:\Windows\system32\mssrch.dll
2011-10-27 16:24:39 ----A---- C:\Windows\system32\wmp.dll
2011-10-27 16:24:38 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2011-10-27 16:24:38 ----A---- C:\Windows\system32\PresentationHost.exe
2011-10-27 16:24:38 ----A---- C:\Windows\system32\esent.dll
2011-10-27 16:24:38 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2011-10-27 16:24:38 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2011-10-27 16:24:36 ----A---- C:\Windows\system32\tquery.dll
2011-10-27 16:24:36 ----A---- C:\Windows\system32\schedsvc.dll
2011-10-27 16:24:35 ----A---- C:\Windows\system32\RacEngn.dll
2011-10-27 16:24:33 ----A---- C:\Windows\system32\ntdll.dll
2011-10-27 16:24:33 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2011-10-27 16:24:31 ----A---- C:\Windows\system32\rdpudd.dll
2011-10-27 16:24:31 ----A---- C:\Windows\system32\rdpdd.dll
2011-10-27 16:24:30 ----A---- C:\Windows\system32\qmgr.dll
2011-10-27 16:24:29 ----A---- C:\Windows\system32\ExplorerFrame.dll
2011-10-27 16:24:28 ----A---- C:\Windows\system32\wevtsvc.dll
2011-10-27 16:24:28 ----A---- C:\Windows\system32\ole32.dll
2011-10-27 16:24:27 ----A---- C:\Windows\system32\vssapi.dll
2011-10-27 16:24:27 ----A---- C:\Windows\system32\SearchFolder.dll
2011-10-27 16:24:26 ----A---- C:\Windows\system32\DWrite.dll
2011-10-27 16:24:26 ----A---- C:\Windows\system32\d3d9.dll
2011-10-27 16:24:26 ----A---- C:\Windows\explorer.exe
2011-10-27 16:24:25 ----A---- C:\Windows\system32\taskschd.dll
2011-10-27 16:24:25 ----A---- C:\Windows\system32\IKEEXT.DLL
2011-10-27 16:24:24 ----A---- C:\Windows\system32\crypt32.dll
2011-10-27 16:24:23 ----A---- C:\Windows\system32\PushPrinterConnections.exe
2011-10-27 16:24:23 ----A---- C:\Windows\system32\mstsc.exe
2011-10-27 16:24:23 ----A---- C:\Windows\system32\FntCache.dll
2011-10-27 16:24:23 ----A---- C:\Windows\system32\drivers\ntfs.sys
2011-10-27 16:24:22 ----A---- C:\Windows\system32\wer.dll
2011-10-27 16:24:22 ----A---- C:\Windows\system32\termsrv.dll
2011-10-27 16:24:22 ----A---- C:\Windows\system32\spreview.exe
2011-10-27 16:24:22 ----A---- C:\Windows\system32\spinstall.exe
2011-10-27 16:24:22 ----A---- C:\Windows\system32\certcli.dll
2011-10-27 16:24:21 ----A---- C:\Windows\system32\rpcrt4.dll
2011-10-27 16:24:21 ----A---- C:\Windows\system32\lsasrv.dll
2011-10-27 16:24:21 ----A---- C:\Windows\system32\gpsvc.dll
2011-10-27 16:24:20 ----A---- C:\Windows\system32\msxml6.dll
2011-10-27 16:24:20 ----A---- C:\Windows\system32\dwmcore.dll
2011-10-27 16:24:19 ----A---- C:\Windows\system32\wbengine.exe
2011-10-27 16:24:19 ----A---- C:\Windows\system32\odbc32.dll
2011-10-27 16:24:19 ----A---- C:\Windows\system32\MPSSVC.dll
2011-10-27 16:24:19 ----A---- C:\Windows\system32\diagperf.dll
2011-10-27 16:24:18 ----A---- C:\Windows\system32\scavengeui.dll
2011-10-27 16:24:18 ----A---- C:\Windows\system32\mstime.dll
2011-10-27 16:24:18 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2011-10-27 16:24:17 ----A---- C:\Windows\system32\WinSAT.exe
2011-10-27 16:24:17 ----A---- C:\Windows\system32\umrdp.dll
2011-10-27 16:24:16 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2011-10-27 16:24:16 ----A---- C:\Windows\system32\TSWorkspace.dll
2011-10-27 16:24:16 ----A---- C:\Windows\system32\tsmf.dll
2011-10-27 16:24:16 ----A---- C:\Windows\system32\quartz.dll
2011-10-27 16:24:16 ----A---- C:\Windows\system32\localspl.dll
2011-10-27 16:24:16 ----A---- C:\Windows\system32\iedkcs32.dll
2011-10-27 16:24:16 ----A---- C:\Windows\system32\dot3api.dll
2011-10-27 16:24:15 ----A---- C:\Windows\system32\winhttp.dll
2011-10-27 16:24:15 ----A---- C:\Windows\system32\setupapi.dll
2011-10-27 16:24:15 ----A---- C:\Windows\system32\drivers\nvstor.sys
2011-10-27 16:24:14 ----A---- C:\Windows\system32\MSVidCtl.dll
2011-10-27 16:24:14 ----A---- C:\Windows\system32\apphelp.dll
2011-10-27 16:24:13 ----A---- C:\Windows\system32\VSSVC.exe
2011-10-27 16:24:13 ----A---- C:\Windows\system32\netlogon.dll
2011-10-27 16:24:13 ----A---- C:\Windows\system32\dbgeng.dll
2011-10-27 16:24:12 ----A---- C:\Windows\system32\winlogon.exe
2011-10-27 16:24:12 ----A---- C:\Windows\system32\WindowsCodecs.dll
2011-10-27 16:24:12 ----A---- C:\Windows\system32\user32.dll
2011-10-27 16:24:12 ----A---- C:\Windows\system32\rdpshell.exe
2011-10-27 16:24:12 ----A---- C:\Windows\system32\netcfgx.dll
2011-10-27 16:24:12 ----A---- C:\Windows\system32\d3d11.dll
2011-10-27 16:24:11 ----A---- C:\Windows\system32\WMVDECOD.DLL
2011-10-27 16:24:11 ----A---- C:\Windows\system32\webio.dll
2011-10-27 16:24:11 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2011-10-27 16:24:10 ----A---- C:\Windows\system32\WsmSvc.dll
2011-10-27 16:24:10 ----A---- C:\Windows\system32\Query.dll
2011-10-27 16:24:10 ----A---- C:\Windows\system32\gpprefcl.dll
2011-10-27 16:24:10 ----A---- C:\Windows\system32\drivers\nvraid.sys
2011-10-27 16:24:10 ----A---- C:\Windows\system32\advapi32.dll
2011-10-27 16:24:09 ----A---- C:\Windows\system32\upnp.dll
2011-10-27 16:24:09 ----A---- C:\Windows\system32\schannel.dll
2011-10-27 16:24:09 ----A---- C:\Windows\system32\mmcndmgr.dll
2011-10-27 16:24:09 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2011-10-27 16:24:08 ----A---- C:\Windows\system32\netfxperf.dll
2011-10-27 16:24:08 ----A---- C:\Windows\system32\msv1_0.dll
2011-10-27 16:24:08 ----A---- C:\Windows\system32\lsm.exe
2011-10-27 16:24:08 ----A---- C:\Windows\system32\imapi2fs.dll
2011-10-27 16:24:08 ----A---- C:\Windows\system32\drivers\csc.sys
2011-10-27 16:24:07 ----A---- C:\Windows\system32\sppobjs.dll
2011-10-27 16:24:07 ----A---- C:\Windows\system32\msdrm.dll
2011-10-27 16:24:07 ----A---- C:\Windows\system32\authui.dll
2011-10-27 16:24:06 ----A---- C:\Windows\system32\usp10.dll
2011-10-27 16:24:06 ----A---- C:\Windows\system32\shlwapi.dll
2011-10-27 16:24:06 ----A---- C:\Windows\system32\SessEnv.dll
2011-10-27 16:24:06 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2011-10-27 16:24:06 ----A---- C:\Windows\system32\mcbuilder.exe
2011-10-27 16:24:04 ----A---- C:\Windows\system32\userenv.dll
2011-10-27 16:24:04 ----A---- C:\Windows\system32\d3d10_1core.dll
2011-10-27 16:24:04 ----A---- C:\Windows\system32\certmgr.dll
2011-10-27 16:24:03 ----A---- C:\Windows\system32\xpsservices.dll
2011-10-27 16:24:03 ----A---- C:\Windows\system32\winload.exe
2011-10-27 16:24:03 ----A---- C:\Windows\system32\WebClnt.dll
2011-10-27 16:24:03 ----A---- C:\Windows\system32\drvstore.dll
2011-10-27 16:24:03 ----A---- C:\Windows\system32\audiosrv.dll
2011-10-27 16:24:02 ----A---- C:\Windows\system32\sppwinob.dll
2011-10-27 16:24:02 ----A---- C:\Windows\system32\iphlpsvc.dll
2011-10-27 16:24:02 ----A---- C:\Windows\system32\comdlg32.dll
2011-10-27 16:24:01 ----A---- C:\Windows\system32\rpcss.dll
2011-10-27 16:24:01 ----A---- C:\Windows\system32\cmd.exe
2011-10-27 16:24:00 ----A---- C:\Windows\system32\win32spl.dll
2011-10-27 16:24:00 ----A---- C:\Windows\system32\framedynos.dll
2011-10-27 16:24:00 ----A---- C:\Windows\system32\BFE.DLL
2011-10-27 16:23:59 ----A---- C:\Windows\system32\Wldap32.dll
2011-10-27 16:23:59 ----A---- C:\Windows\system32\rdpendp.dll
2011-10-27 16:23:59 ----A---- C:\Windows\system32\propsys.dll
2011-10-27 16:23:59 ----A---- C:\Windows\system32\nlasvc.dll
2011-10-27 16:23:59 ----A---- C:\Windows\system32\mfds.dll
2011-10-27 16:23:59 ----A---- C:\Windows\system32\drivers\volsnap.sys
2011-10-27 16:23:58 ----A---- C:\Windows\system32\wuaueng.dll
2011-10-27 16:23:58 ----A---- C:\Windows\system32\samsrv.dll
2011-10-27 16:23:58 ----A---- C:\Windows\system32\drivers\netio.sys
2011-10-27 16:23:58 ----A---- C:\Windows\system32\drivers\ndis.sys
2011-10-27 16:23:58 ----A---- C:\Windows\system32\cscsvc.dll
2011-10-27 16:23:57 ----A---- C:\Windows\system32\wucltux.dll
2011-10-27 16:23:57 ----A---- C:\Windows\system32\wmicmiplugin.dll
2011-10-27 16:23:57 ----A---- C:\Windows\system32\winresume.exe
2011-10-27 16:23:57 ----A---- C:\Windows\system32\profsvc.dll
2011-10-27 16:23:57 ----A---- C:\Windows\system32\ncsi.dll
2011-10-27 16:23:56 ----A---- C:\Windows\system32\werconcpl.dll
2011-10-27 16:23:56 ----A---- C:\Windows\system32\rdpclip.exe
2011-10-27 16:23:56 ----A---- C:\Windows\system32\azroles.dll
2011-10-27 16:23:56 ----A---- C:\Windows\system32\appmgr.dll
2011-10-27 16:23:55 ----A---- C:\Windows\system32\themeui.dll
2011-10-27 16:23:55 ----A---- C:\Windows\system32\taskeng.exe
2011-10-27 16:23:55 ----A---- C:\Windows\system32\credui.dll
2011-10-27 16:23:54 ----A---- C:\Windows\system32\spp.dll
2011-10-27 16:23:54 ----A---- C:\Windows\system32\mswsock.dll
2011-10-27 16:23:54 ----A---- C:\Windows\system32\drivers\storport.sys
2011-10-27 16:23:54 ----A---- C:\Windows\system32\drivers\http.sys
2011-10-27 16:23:54 ----A---- C:\Windows\system32\dhcpcore.dll
2011-10-27 16:23:53 ----A---- C:\Windows\system32\wintrust.dll
2011-10-27 16:23:53 ----A---- C:\Windows\system32\msxml3.dll
2011-10-27 16:23:53 ----A---- C:\Windows\system32\mfreadwrite.dll
2011-10-27 16:23:53 ----A---- C:\Windows\system32\dxgi.dll
2011-10-27 16:23:53 ----A---- C:\Windows\system32\basecsp.dll
2011-10-27 16:23:52 ----A---- C:\Windows\system32\taskcomp.dll
2011-10-27 16:23:52 ----A---- C:\Windows\system32\rdpinit.exe
2011-10-27 16:23:52 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2011-10-27 16:23:52 ----A---- C:\Windows\system32\evr.dll
2011-10-27 16:23:52 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2011-10-27 16:23:52 ----A---- C:\Windows\system32\dbghelp.dll
2011-10-27 16:23:51 ----A---- C:\Windows\system32\WinSATAPI.dll
2011-10-27 16:23:51 ----A---- C:\Windows\system32\spoolsv.exe
2011-10-27 16:23:51 ----A---- C:\Windows\system32\gdi32.dll
2011-10-27 16:23:51 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2011-10-27 16:23:51 ----A---- C:\Windows\system32\calc.exe
2011-10-27 16:23:50 ----A---- C:\Windows\system32\vpnike.dll
2011-10-27 16:23:50 ----A---- C:\Windows\system32\sqlsrv32.dll
2011-10-27 16:23:50 ----A---- C:\Windows\system32\QAGENTRT.DLL
2011-10-27 16:23:50 ----A---- C:\Windows\system32\drivers\amdsata.sys
2011-10-27 16:23:49 ----A---- C:\Windows\system32\UIRibbon.dll
2011-10-27 16:23:49 ----A---- C:\Windows\system32\srvsvc.dll
2011-10-27 16:23:48 ----A---- C:\Windows\system32\lpksetup.exe
2011-10-27 16:23:48 ----A---- C:\Windows\system32\fveapi.dll
2011-10-27 16:23:48 ----A---- C:\Windows\system32\cryptsvc.dll
2011-10-27 16:23:47 ----A---- C:\Windows\system32\tspubwmi.dll
2011-10-27 16:23:47 ----A---- C:\Windows\system32\sxs.dll
2011-10-27 16:23:47 ----A---- C:\Windows\system32\netshell.dll
2011-10-27 16:23:47 ----A---- C:\Windows\system32\ie4uinit.exe
2011-10-27 16:23:47 ----A---- C:\Windows\system32\drivers\fvevol.sys
2011-10-27 16:23:46 ----A---- C:\Windows\system32\ws2_32.dll
2011-10-27 16:23:46 ----A---- C:\Windows\system32\stobject.dll
2011-10-27 16:23:46 ----A---- C:\Windows\system32\hgprint.dll
2011-10-27 16:23:46 ----A---- C:\Windows\system32\drivers\rdbss.sys
2011-10-27 16:23:46 ----A---- C:\Windows\system32\drivers\msdsm.sys
2011-10-27 16:23:45 ----A---- C:\Windows\system32\prncache.dll
2011-10-27 16:23:45 ----A---- C:\Windows\system32\printui.dll
2011-10-27 16:23:45 ----A---- C:\Windows\system32\inetpp.dll
2011-10-27 16:23:45 ----A---- C:\Windows\system32\comctl32.dll
2011-10-27 16:23:44 ----A---- C:\Windows\system32\msi.dll
2011-10-27 16:23:44 ----A---- C:\Windows\system32\dps.dll
2011-10-27 16:23:43 ----A---- C:\Windows\system32\WSDApi.dll
2011-10-27 16:23:43 ----A---- C:\Windows\system32\wmpeffects.dll
2011-10-27 16:23:43 ----A---- C:\Windows\system32\rpchttp.dll
2011-10-27 16:23:43 ----A---- C:\Windows\system32\net1.exe
2011-10-27 16:23:43 ----A---- C:\Windows\system32\ci.dll
2011-10-27 16:23:42 ----A---- C:\Windows\system32\drivers\vmbus.sys
2011-10-27 16:23:42 ----A---- C:\Windows\system32\drivers\pci.sys
2011-10-27 16:23:42 ----A---- C:\Windows\system32\aitagent.exe
2011-10-27 16:23:42 ----A---- C:\Windows\system32\aepdu.dll
2011-10-27 16:23:41 ----A---- C:\Windows\system32\vds.exe
2011-10-27 16:23:41 ----A---- C:\Windows\system32\scansetting.dll
2011-10-27 16:23:41 ----A---- C:\Windows\system32\FXSSVC.exe
2011-10-27 16:23:40 ----A---- C:\Windows\system32\WMVCORE.DLL
2011-10-27 16:23:40 ----A---- C:\Windows\system32\wlangpui.dll
2011-10-27 16:23:40 ----A---- C:\Windows\system32\MMDevAPI.dll
2011-10-27 16:23:40 ----A---- C:\Windows\system32\davclnt.dll
2011-10-27 16:23:40 ----A---- C:\Windows\system32\cdd.dll
2011-10-27 16:23:40 ----A---- C:\Windows\system32\aaclient.dll
2011-10-27 16:23:39 ----A---- C:\Windows\system32\QSHVHOST.DLL
2011-10-27 16:23:39 ----A---- C:\Windows\system32\IPSECSVC.DLL
2011-10-27 16:23:39 ----A---- C:\Windows\system32\drivers\usbport.sys
2011-10-27 16:23:39 ----A---- C:\Windows\system32\consent.exe
2011-10-27 16:23:38 ----A---- C:\Windows\system32\wpdshext.dll
2011-10-27 16:23:38 ----A---- C:\Windows\system32\webservices.dll
2011-10-27 16:23:38 ----A---- C:\Windows\system32\t2embed.dll
2011-10-27 16:23:38 ----A---- C:\Windows\system32\scrptadm.dll
2011-10-27 16:23:38 ----A---- C:\Windows\system32\pnidui.dll
2011-10-27 16:23:37 ----A---- C:\Windows\system32\tscfgwmi.dll
2011-10-27 16:23:37 ----A---- C:\Windows\system32\netdiagfx.dll
2011-10-27 16:23:37 ----A---- C:\Windows\system32\fde.dll
2011-10-27 16:23:37 ----A---- C:\Windows\system32\drivers\termdd.sys
2011-10-27 16:23:37 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2011-10-27 16:23:37 ----A---- C:\Windows\system32\drivers\rdpdr.sys
2011-10-27 16:23:37 ----A---- C:\Windows\system32\drivers\amdxata.sys
2011-10-27 16:23:36 ----A---- C:\Windows\system32\wuapi.dll
2011-10-27 16:23:36 ----A---- C:\Windows\system32\wscapi.dll
2011-10-27 16:23:36 ----A---- C:\Windows\system32\vmicsvc.exe
2011-10-27 16:23:36 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2011-10-27 16:23:36 ----A---- C:\Windows\system32\SyncCenter.dll
2011-10-27 16:23:36 ----A---- C:\Windows\system32\sdengin2.dll
2011-10-27 16:23:34 ----A---- C:\Windows\system32\wisptis.exe
2011-10-27 16:23:34 ----A---- C:\Windows\system32\WinSCard.dll
2011-10-27 16:23:34 ----A---- C:\Windows\system32\pla.dll
2011-10-27 16:23:34 ----A---- C:\Windows\system32\msasn1.dll
2011-10-27 16:23:34 ----A---- C:\Windows\system32\cscobj.dll
2011-10-27 16:23:33 ----A---- C:\Windows\system32\winsta.dll
2011-10-27 16:23:33 ----A---- C:\Windows\system32\rdpcore.dll
2011-10-27 16:23:33 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2011-10-27 16:23:33 ----A---- C:\Windows\system32\mcmde.dll
2011-10-27 16:23:33 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2011-10-27 16:23:33 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2011-10-27 16:23:32 ----A---- C:\Windows\system32\WUDFSvc.dll
2011-10-27 16:23:32 ----A---- C:\Windows\system32\wiaservc.dll
2011-10-27 16:23:32 ----A---- C:\Windows\system32\setupcl.exe
2011-10-27 16:23:32 ----A---- C:\Windows\system32\ntshrui.dll
2011-10-27 16:23:32 ----A---- C:\Windows\system32\imapi2.dll
2011-10-27 16:23:32 ----A---- C:\Windows\system32\iepeers.dll
2011-10-27 16:23:32 ----A---- C:\Windows\system32\drivers\msahci.sys
2011-10-27 16:23:31 ----A---- C:\Windows\system32\gameux.dll
2011-10-27 16:23:31 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2011-10-27 16:23:31 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2011-10-27 16:23:31 ----A---- C:\Windows\system32\aeinv.dll
2011-10-27 16:23:29 ----A---- C:\Windows\system32\WMPEncEn.dll
2011-10-27 16:23:29 ----A---- C:\Windows\system32\shsvcs.dll
2011-10-27 16:23:29 ----A---- C:\Windows\system32\onex.dll
2011-10-27 16:23:29 ----A---- C:\Windows\system32\mssvp.dll
2011-10-27 16:23:29 ----A---- C:\Windows\system32\dwmredir.dll
2011-10-27 16:23:29 ----A---- C:\Windows\system32\drivers\acpi.sys
2011-10-27 16:23:28 ----A---- C:\Windows\system32\winmm.dll
2011-10-27 16:23:28 ----A---- C:\Windows\system32\vaultsvc.dll
2011-10-27 16:23:28 ----A---- C:\Windows\system32\TabSvc.dll
2011-10-27 16:23:28 ----A---- C:\Windows\system32\rasmans.dll
2011-10-27 16:23:28 ----A---- C:\Windows\system32\hbaapi.dll
2011-10-27 16:23:28 ----A---- C:\Windows\system32\drivers\udfs.sys
2011-10-27 16:23:28 ----A---- C:\Windows\system32\autofmt.exe
2011-10-27 16:23:27 ----A---- C:\Windows\system32\samcli.dll
2011-10-27 16:23:27 ----A---- C:\Windows\system32\netiohlp.dll
2011-10-27 16:23:27 ----A---- C:\Windows\system32\Narrator.exe
2011-10-27 16:23:27 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2011-10-27 16:23:27 ----A---- C:\Windows\system32\bootres.dll
2011-10-27 16:23:27 ----A---- C:\Windows\system32\autochk.exe
2011-10-27 16:23:27 ----A---- C:\Windows\system32\audiodg.exe
2011-10-27 16:23:26 ----A---- C:\Windows\system32\thumbcache.dll
2011-10-27 16:23:26 ----A---- C:\Windows\system32\regapi.dll
2011-10-27 16:23:26 ----A---- C:\Windows\system32\proquota.exe
2011-10-27 16:23:26 ----A---- C:\Windows\system32\msutb.dll
2011-10-27 16:23:26 ----A---- C:\Windows\system32\msinfo32.exe
2011-10-27 16:23:26 ----A---- C:\Windows\system32\mimefilt.dll
2011-10-27 16:23:26 ----A---- C:\Windows\system32\halmacpi.dll
2011-10-27 16:23:26 ----A---- C:\Windows\system32\hal.dll
2011-10-27 16:23:26 ----A---- C:\Windows\system32\autoconv.exe
2011-10-27 16:23:26 ----A---- C:\Windows\system32\AudioSes.dll
2011-10-27 16:23:25 ----A---- C:\Windows\system32\tcpipcfg.dll
2011-10-27 16:23:25 ----A---- C:\Windows\system32\srchadmin.dll
2011-10-27 16:23:25 ----A---- C:\Windows\system32\schtasks.exe
2011-10-27 16:23:25 ----A---- C:\Windows\system32\powercpl.dll
2011-10-27 16:23:25 ----A---- C:\Windows\system32\ipsmsnap.dll
2011-10-27 16:23:25 ----A---- C:\Windows\system32\eapphost.dll
2011-10-27 16:23:24 ----A---- C:\Windows\system32\wcncsvc.dll
2011-10-27 16:23:24 ----A---- C:\Windows\system32\sspicli.dll
2011-10-27 16:23:24 ----A---- C:\Windows\system32\msihnd.dll
2011-10-27 16:23:24 ----A---- C:\Windows\system32\mscorier.dll
2011-10-27 16:23:24 ----A---- C:\Windows\system32\framedyn.dll
2011-10-27 16:23:24 ----A---- C:\Windows\system32\drivers\volmgr.sys
2011-10-27 16:23:23 ----A---- C:\Windows\system32\QAGENT.DLL
2011-10-27 16:23:23 ----A---- C:\Windows\system32\drivers\partmgr.sys
2011-10-27 16:23:23 ----A---- C:\Windows\system32\drivers\netbt.sys
2011-10-27 16:23:23 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2011-10-27 16:23:22 ----A---- C:\Windows\system32\umpo.dll
2011-10-27 16:23:22 ----A---- C:\Windows\system32\netid.dll
2011-10-27 16:23:22 ----A---- C:\Windows\system32\DXP.dll
2011-10-27 16:23:22 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2011-10-27 16:23:22 ----A---- C:\Windows\system32\actxprxy.dll
2011-10-27 16:23:21 ----A---- C:\Windows\system32\wdc.dll
2011-10-27 16:23:21 ----A---- C:\Windows\system32\untfs.dll
2011-10-27 16:23:21 ----A---- C:\Windows\system32\StructuredQuery.dll
2011-10-27 16:23:21 ----A---- C:\Windows\system32\scesrv.dll
2011-10-27 16:23:21 ----A---- C:\Windows\system32\rastls.dll
2011-10-27 16:23:20 ----A---- C:\Windows\system32\Vault.dll
2011-10-27 16:23:20 ----A---- C:\Windows\system32\sdclt.exe
2011-10-27 16:23:20 ----A---- C:\Windows\system32\nci.dll
2011-10-27 16:23:20 ----A---- C:\Windows\system32\drivers\ataport.sys
2011-10-27 16:23:19 ----A---- C:\Windows\system32\WMNetMgr.dll
2011-10-27 16:23:19 ----A---- C:\Windows\system32\wlanpref.dll
2011-10-27 16:23:19 ----A---- C:\Windows\system32\sppsvc.exe
2011-10-27 16:23:19 ----A---- C:\Windows\system32\RpcRtRemote.dll
2011-10-27 16:23:19 ----A---- C:\Windows\system32\ListSvc.dll
2011-10-27 16:23:19 ----A---- C:\Windows\system32\licmgr10.dll
2011-10-27 16:23:18 ----A---- C:\Windows\system32\Robocopy.exe
2011-10-27 16:23:17 ----A---- C:\Windows\system32\taskmgr.exe
2011-10-27 16:23:17 ----A---- C:\Windows\system32\DxpTaskSync.dll
2011-10-27 16:23:17 ----A---- C:\Windows\system32\Display.dll
2011-10-27 16:23:16 ----A---- C:\Windows\system32\XpsRasterService.dll
2011-10-27 16:23:16 ----A---- C:\Windows\system32\userinit.exe
2011-10-27 16:23:16 ----A---- C:\Windows\system32\sharemediacpl.dll
2011-10-27 16:23:16 ----A---- C:\Windows\system32\puiobj.dll
2011-10-27 16:23:16 ----A---- C:\Windows\system32\mtxclu.dll
2011-10-27 16:23:16 ----A---- C:\Windows\system32\mssphtb.dll
2011-10-27 16:23:16 ----A---- C:\Windows\system32\msdri.dll
2011-10-27 16:23:16 ----A---- C:\Windows\system32\drivers\mpio.sys
2011-10-27 16:23:16 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2011-10-27 16:23:15 ----A---- C:\Windows\system32\termmgr.dll
2011-10-27 16:23:15 ----A---- C:\Windows\system32\drivers\usbehci.sys
2011-10-27 16:23:15 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2011-10-27 16:23:15 ----A---- C:\Windows\system32\DiagCpl.dll
2011-10-27 16:23:15 ----A---- C:\Windows\system32\cscui.dll
2011-10-27 16:23:14 ----A---- C:\Windows\system32\eudcedit.exe
2011-10-27 16:23:14 ----A---- C:\Windows\system32\drivers\winhv.sys
2011-10-27 16:23:14 ----A---- C:\Windows\system32\drivers\scsiport.sys
2011-10-27 16:23:13 ----A---- C:\Windows\system32\wiadefui.dll
2011-10-27 16:23:13 ----A---- C:\Windows\system32\shsetup.dll
2011-10-27 16:23:13 ----A---- C:\Windows\system32\rasppp.dll
2011-10-27 16:23:13 ----A---- C:\Windows\system32\msdtctm.dll
2011-10-27 16:23:13 ----A---- C:\Windows\system32\logoncli.dll
2011-10-27 16:23:13 ----A---- C:\Windows\system32\drivers\vmstorfl.sys
2011-10-27 16:23:13 ----A---- C:\Windows\system32\biocpl.dll
2011-10-27 16:23:12 ----A---- C:\Windows\system32\sppcomapi.dll
2011-10-27 16:23:12 ----A---- C:\Windows\system32\msconfig.exe
2011-10-27 16:23:12 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2011-10-27 16:23:12 ----A---- C:\Windows\system32\drivers\storvsc.sys
2011-10-27 16:23:12 ----A---- C:\Windows\system32\cabview.dll
2011-10-27 16:23:11 ----A---- C:\Windows\system32\themecpl.dll
2011-10-27 16:23:11 ----A---- C:\Windows\system32\SensorsCpl.dll
2011-10-27 16:23:10 ----A---- C:\Windows\system32\wpccpl.dll
2011-10-27 16:23:10 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2011-10-27 16:23:10 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2011-10-27 16:23:10 ----A---- C:\Windows\system32\dnscmmc.dll
2011-10-27 16:23:09 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2011-10-27 16:23:09 ----A---- C:\Windows\system32\hgcpl.dll
2011-10-27 16:23:08 ----A---- C:\Windows\system32\tapisrv.dll
2011-10-27 16:23:08 ----A---- C:\Windows\system32\scecli.dll
2011-10-27 16:23:08 ----A---- C:\Windows\system32\mscories.dll
2011-10-27 16:23:08 ----A---- C:\Windows\system32\mscms.dll
2011-10-27 16:23:08 ----A---- C:\Windows\system32\localsec.dll
2011-10-27 16:23:08 ----A---- C:\Windows\system32\fontext.dll
2011-10-27 16:23:08 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2011-10-27 16:23:07 ----A---- C:\Windows\system32\wkssvc.dll
2011-10-27 16:23:07 ----A---- C:\Windows\system32\usercpl.dll
2011-10-27 16:23:07 ----A---- C:\Windows\system32\srcore.dll
2011-10-27 16:23:07 ----A---- C:\Windows\system32\SndVolSSO.dll
2011-10-27 16:23:07 ----A---- C:\Windows\system32\mprddm.dll
2011-10-27 16:23:07 ----A---- C:\Windows\system32\KMSVC.DLL
2011-10-27 16:23:07 ----A---- C:\Windows\system32\iasacct.dll
2011-10-27 16:23:07 ----A---- C:\Windows\system32\drivers\usbhub.sys
2011-10-27 16:23:07 ----A---- C:\Windows\system32\bcdsrv.dll
2011-10-27 16:23:06 ----A---- C:\Windows\system32\wlanui.dll
2011-10-27 16:23:06 ----A---- C:\Windows\system32\VAN.dll
2011-10-27 16:23:06 ----A---- C:\Windows\system32\qedit.dll
2011-10-27 16:23:06 ----A---- C:\Windows\system32\prntvpt.dll
2011-10-27 16:23:06 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2011-10-27 16:23:06 ----A---- C:\Windows\system32\mblctr.exe
2011-10-27 16:23:06 ----A---- C:\Windows\system32\batmeter.dll
2011-10-27 16:23:05 ----A---- C:\Windows\system32\wpdbusenum.dll
2011-10-27 16:23:05 ----A---- C:\Windows\system32\wksprt.exe
2011-10-27 16:23:05 ----A---- C:\Windows\system32\w32tm.exe
2011-10-27 16:23:05 ----A---- C:\Windows\system32\SndVol.exe
2011-10-27 16:23:05 ----A---- C:\Windows\system32\qdvd.dll
2011-10-27 16:23:05 ----A---- C:\Windows\system32\netcenter.dll
2011-10-27 16:23:04 ----A---- C:\Windows\system32\spwizeng.dll
2011-10-27 16:23:04 ----A---- C:\Windows\system32\drivers\ks.sys
2011-10-27 16:23:04 ----A---- C:\Windows\system32\azroleui.dll
2011-10-27 16:23:04 ----A---- C:\Windows\system32\accessibilitycpl.dll
2011-10-27 16:23:03 ----A---- C:\Windows\system32\zipfldr.dll
2011-10-27 16:23:03 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2011-10-27 16:23:03 ----A---- C:\Windows\system32\fdeploy.dll
2011-10-27 16:23:02 ----A---- C:\Windows\system32\networkmap.dll
2011-10-27 16:23:02 ----A---- C:\Windows\system32\netjoin.dll
2011-10-27 16:23:02 ----A---- C:\Windows\system32\cryptui.dll
2011-10-27 16:23:02 ----A---- C:\Windows\system32\adsldp.dll
2011-10-27 16:23:01 ----A---- C:\Windows\system32\wusa.exe
2011-10-27 16:23:01 ----A---- C:\Windows\system32\prnfldr.dll
2011-10-27 16:23:01 ----A---- C:\Windows\system32\mspbda.dll
2011-10-27 16:23:01 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2011-10-27 16:23:01 ----A---- C:\Windows\system32\Faultrep.dll
2011-10-27 16:23:00 ----A---- C:\Windows\system32\taskbarcpl.dll
2011-10-27 16:23:00 ----A---- C:\Windows\system32\sud.dll
2011-10-27 16:23:00 ----A---- C:\Windows\system32\photowiz.dll
2011-10-27 16:23:00 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2011-10-27 16:23:00 ----A---- C:\Windows\system32\msieftp.dll
2011-10-27 16:23:00 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2011-10-27 16:23:00 ----A---- C:\Windows\system32\ActionCenter.dll
2011-10-27 16:22:59 ----A---- C:\Windows\system32\taskhost.exe
2011-10-27 16:22:59 ----A---- C:\Windows\system32\slui.exe
2011-10-27 16:22:59 ----A---- C:\Windows\system32\rdpcorekmts.dll
2011-10-27 16:22:59 ----A---- C:\Windows\system32\iprtrmgr.dll
2011-10-27 16:22:59 ----A---- C:\Windows\system32\iasrad.dll
2011-10-27 16:22:59 ----A---- C:\Windows\system32\drivers\hidclass.sys
2011-10-27 16:22:59 ----A---- C:\Windows\system32\credssp.dll
2011-10-27 16:22:58 ----A---- C:\Windows\system32\sisbkup.dll
2011-10-27 16:22:58 ----A---- C:\Windows\system32\shwebsvc.dll
2011-10-27 16:22:58 ----A---- C:\Windows\system32\ifsutil.dll
2011-10-27 16:22:58 ----A---- C:\Windows\system32\ieUnatt.exe
2011-10-27 16:22:58 ----A---- C:\Windows\system32\halacpi.dll
2011-10-27 16:22:58 ----A---- C:\Windows\system32\ftp.exe
2011-10-27 16:22:58 ----A---- C:\Windows\system32\dot3cfg.dll
2011-10-27 16:22:58 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2011-10-27 16:22:57 ----A---- C:\Windows\system32\wpd_ci.dll
2011-10-27 16:22:57 ----A---- C:\Windows\system32\sdcpl.dll
2011-10-27 16:22:57 ----A---- C:\Windows\system32\recovery.dll
2011-10-27 16:22:57 ----A---- C:\Windows\system32\iesysprep.dll
2011-10-27 16:22:57 ----A---- C:\Windows\system32\efscore.dll
2011-10-27 16:22:57 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2011-10-27 16:22:56 ----A---- C:\Windows\system32\syncui.dll
2011-10-27 16:22:56 ----A---- C:\Windows\system32\rdpwsx.dll
2011-10-27 16:22:56 ----A---- C:\Windows\system32\DeviceCenter.dll
2011-10-27 16:22:56 ----A---- C:\Windows\system32\bcdedit.exe
2011-10-27 16:22:56 ----A---- C:\Windows\system32\autoplay.dll
2011-10-27 16:22:55 ----A---- C:\Windows\system32\wmpmde.dll
2011-10-27 16:22:55 ----A---- C:\Windows\system32\sppnp.dll
2011-10-27 16:22:55 ----A---- C:\Windows\system32\rtutils.dll
2011-10-27 16:22:55 ----A---- C:\Windows\system32\ntlanman.dll
2011-10-27 16:22:55 ----A---- C:\Windows\system32\dskquoui.dll
2011-10-27 16:22:54 ----A---- C:\Windows\system32\vdsutil.dll
2011-10-27 16:22:54 ----A---- C:\Windows\system32\systemcpl.dll
2011-10-27 16:22:54 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2011-10-27 16:22:54 ----A---- C:\Windows\system32\recdisc.exe
2011-10-27 16:22:54 ----A---- C:\Windows\system32\rdpsign.exe
2011-10-27 16:22:54 ----A---- C:\Windows\system32\OobeFldr.dll
2011-10-27 16:22:54 ----A---- C:\Windows\system32\ntprint.dll
2011-10-27 16:22:54 ----A---- C:\Windows\system32\nshwfp.dll
2011-10-27 16:22:54 ----A---- C:\Windows\system32\bcdboot.exe
2011-10-27 16:22:53 ----A---- C:\Windows\system32\sethc.exe
2011-10-27 16:22:53 ----A---- C:\Windows\system32\rstrui.exe
2011-10-27 16:22:53 ----A---- C:\Windows\system32\riched20.dll
2011-10-27 16:22:53 ----A---- C:\Windows\system32\fvecpl.dll
2011-10-27 16:22:53 ----A---- C:\Windows\system32\drivers\tdx.sys
2011-10-27 16:22:53 ----A---- C:\Windows\system32\blackbox.dll
2011-10-27 16:22:52 ----A---- C:\Windows\system32\wmpsrcwp.dll
2011-10-27 16:22:52 ----A---- C:\Windows\system32\netplwiz.dll
2011-10-27 16:22:52 ----A---- C:\Windows\system32\NAPHLPR.DLL
2011-10-27 16:22:52 ----A---- C:\Windows\system32\migisol.dll
2011-10-27 16:22:52 ----A---- C:\Windows\system32\fms.dll
2011-10-27 16:22:52 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2011-10-27 16:22:52 ----A---- C:\Windows\system32\dpx.dll
2011-10-27 16:22:52 ----A---- C:\Windows\system32\AxInstSv.dll
2011-10-27 16:22:52 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2011-10-27 16:22:52 ----A---- C:\Windows\system32\activeds.dll
2011-10-27 16:22:51 ----A---- C:\Windows\system32\wsqmcons.exe
2011-10-27 16:22:51 ----A---- C:\Windows\system32\nshipsec.dll
2011-10-27 16:22:51 ----A---- C:\Windows\system32\nlaapi.dll
2011-10-27 16:22:51 ----A---- C:\Windows\system32\httpapi.dll
2011-10-27 16:22:51 ----A---- C:\Windows\system32\dot3svc.dll
2011-10-27 16:22:51 ----A---- C:\Windows\system32\cdosys.dll
2011-10-27 16:22:51 ----A---- C:\Windows\system32\asycfilt.dll
2011-10-27 16:22:50 ----A---- C:\Windows\system32\wuwebv.dll
2011-10-27 16:22:50 ----A---- C:\Windows\system32\wlanmsm.dll
2011-10-27 16:22:50 ----A---- C:\Windows\system32\wavemsp.dll
2011-10-27 16:22:50 ----A---- C:\Windows\system32\ReAgent.dll
2011-10-27 16:22:50 ----A---- C:\Windows\system32\provsvc.dll
2011-10-27 16:22:50 ----A---- C:\Windows\system32\msftedit.dll
2011-10-27 16:22:50 ----A---- C:\Windows\system32\isoburn.exe
2011-10-27 16:22:50 ----A---- C:\Windows\system32\dot3ui.dll
2011-10-27 16:22:49 ----A---- C:\Windows\system32\wvc.dll
2011-10-27 16:22:49 ----A---- C:\Windows\system32\wtsapi32.dll
2011-10-27 16:22:49 ----A---- C:\Windows\system32\tzutil.exe
2011-10-27 16:22:49 ----A---- C:\Windows\system32\sysclass.dll
2011-10-27 16:22:49 ----A---- C:\Windows\system32\ocsetup.exe
2011-10-27 16:22:49 ----A---- C:\Windows\system32\dsuiext.dll
2011-10-27 16:22:49 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2011-10-27 16:22:49 ----A---- C:\Windows\system32\dfrgui.exe
2011-10-27 16:22:49 ----A---- C:\Windows\system32\appinfo.dll
2011-10-27 16:22:48 ----A---- C:\Windows\system32\wimgapi.dll
2011-10-27 16:22:48 ----A---- C:\Windows\system32\PkgMgr.exe
2011-10-27 16:22:48 ----A---- C:\Windows\system32\mstask.dll
2011-10-27 16:22:48 ----A---- C:\Windows\system32\certprop.dll
2011-10-27 16:22:48 ----A---- C:\Windows\system32\AdmTmpl.dll
2011-10-27 16:22:47 ----A---- C:\Windows\twain_32.dll
2011-10-27 16:22:47 ----A---- C:\Windows\system32\webcheck.dll
2011-10-27 16:22:47 ----A---- C:\Windows\system32\twext.dll
2011-10-27 16:22:47 ----A---- C:\Windows\system32\shdocvw.dll
2011-10-27 16:22:47 ----A---- C:\Windows\system32\setupugc.exe
2011-10-27 16:22:47 ----A---- C:\Windows\system32\qcap.dll
2011-10-27 16:22:47 ----A---- C:\Windows\system32\occache.dll
2011-10-27 16:22:46 ----A---- C:\Windows\system32\uxlib.dll
2011-10-27 16:22:46 ----A---- C:\Windows\system32\SmiEngine.dll
2011-10-27 16:22:46 ----A---- C:\Windows\system32\qasf.dll
2011-10-27 16:22:46 ----A---- C:\Windows\system32\PresentationSettings.exe
2011-10-27 16:22:46 ----A---- C:\Windows\system32\msrating.dll
2011-10-27 16:22:46 ----A---- C:\Windows\system32\msfeedsbs.dll
2011-10-27 16:22:46 ----A---- C:\Windows\system32\imm32.dll
2011-10-27 16:22:45 ----A---- C:\Windows\system32\wwanconn.dll
2011-10-27 16:22:45 ----A---- C:\Windows\system32\ssText3d.scr
2011-10-27 16:22:45 ----A---- C:\Windows\system32\srrstr.dll
2011-10-27 16:22:45 ----A---- C:\Windows\system32\slwga.dll
2011-10-27 16:22:45 ----A---- C:\Windows\system32\msvfw32.dll
2011-10-27 16:22:44 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2011-10-27 16:22:44 ----A---- C:\Windows\system32\wmdrmsdk.dll
2011-10-27 16:22:44 ----A---- C:\Windows\system32\nslookup.exe
2011-10-27 16:22:44 ----A---- C:\Windows\system32\mciavi32.dll
2011-10-27 16:22:44 ----A---- C:\Windows\system32\imgutil.dll
2011-10-27 16:22:44 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2011-10-27 16:22:44 ----A---- C:\Windows\system32\clusapi.dll
2011-10-27 16:22:44 ----A---- C:\Windows\system32\audiodev.dll
2011-10-27 16:22:43 ----A---- C:\Windows\system32\wimserv.exe
2011-10-27 16:22:43 ----A---- C:\Windows\system32\TSpkg.dll
2011-10-27 16:22:43 ----A---- C:\Windows\system32\rdpencom.dll
2011-10-27 16:22:43 ----A---- C:\Windows\system32\perfmon.exe
2011-10-27 16:22:43 ----A---- C:\Windows\system32\msscp.dll
2011-10-27 16:22:43 ----A---- C:\Windows\system32\diskraid.exe
2011-10-27 16:22:43 ----A---- C:\Windows\system32\acppage.dll
2011-10-27 16:22:42 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2011-10-27 16:22:42 ----A---- C:\Windows\system32\sdrsvc.dll
2011-10-27 16:22:42 ----A---- C:\Windows\system32\remotepg.dll
2011-10-27 16:22:42 ----A---- C:\Windows\system32\raschap.dll
2011-10-27 16:22:42 ----A---- C:\Windows\system32\QUTIL.DLL
2011-10-27 16:22:42 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2011-10-27 16:22:42 ----A---- C:\Windows\system32\input.dll
2011-10-27 16:22:42 ----A---- C:\Windows\system32\drmmgrtn.dll
2011-10-27 16:22:42 ----A---- C:\Windows\system32\browser.dll
2011-10-27 16:22:41 ----A---- C:\Windows\system32\wmpdxm.dll
2011-10-27 16:22:41 ----A---- C:\Windows\system32\vpnikeapi.dll
2011-10-27 16:22:41 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2011-10-27 16:22:41 ----A---- C:\Windows\system32\olepro32.dll
2011-10-27 16:22:41 ----A---- C:\Windows\system32\ocsetapi.dll
2011-10-27 16:22:41 ----A---- C:\Windows\system32\nltest.exe
2011-10-27 16:22:41 ----A---- C:\Windows\system32\networkexplorer.dll
2011-10-27 16:22:40 ----A---- C:\Windows\system32\wpdwcn.dll
2011-10-27 16:22:40 ----A---- C:\Windows\system32\vdsbas.dll
2011-10-27 16:22:40 ----A---- C:\Windows\system32\runonce.exe
2011-10-27 16:22:40 ----A---- C:\Windows\system32\onexui.dll
2011-10-27 16:22:40 ----A---- C:\Windows\system32\iTVData.dll
2011-10-27 16:22:40 ----A---- C:\Windows\system32\inseng.dll
2011-10-27 16:22:40 ----A---- C:\Windows\system32\dxdiagn.dll
2011-10-27 16:22:40 ----A---- C:\Windows\bfsvc.exe
2011-10-27 16:22:39 ----A---- C:\Windows\system32\sspisrv.dll
2011-10-27 16:22:39 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2011-10-27 16:22:39 ----A---- C:\Windows\system32\msvidc32.dll
2011-10-27 16:22:39 ----A---- C:\Windows\system32\MFPlay.dll
2011-10-27 16:22:39 ----A---- C:\Windows\system32\Mcx2Svc.dll
2011-10-27 16:22:39 ----A---- C:\Windows\system32\logagent.exe
2011-10-27 16:22:39 ----A---- C:\Windows\system32\eapp3hst.dll
2011-10-27 16:22:38 ----A---- C:\Windows\system32\wmpshell.dll
2011-10-27 16:22:38 ----A---- C:\Windows\system32\wmdrmdev.dll
2011-10-27 16:22:38 ----A---- C:\Windows\system32\shacct.dll
2011-10-27 16:22:38 ----A---- C:\Windows\system32\PnPUnattend.exe
2011-10-27 16:22:38 ----A---- C:\Windows\system32\msiexec.exe
2011-10-27 16:22:38 ----A---- C:\Windows\system32\drivers\rmcast.sys
2011-10-27 16:22:38 ----A---- C:\Windows\system32\d3d10level9.dll
2011-10-27 16:22:37 ----A---- C:\Windows\system32\wudriver.dll
2011-10-27 16:22:37 ----A---- C:\Windows\system32\unimdmat.dll
2011-10-27 16:22:37 ----A---- C:\Windows\system32\tabcal.exe
2011-10-27 16:22:37 ----A---- C:\Windows\system32\sqlcese30.dll
2011-10-27 16:22:37 ----A---- C:\Windows\system32\rdpd3d.dll
2011-10-27 16:22:37 ----A---- C:\Windows\system32\lsmproxy.dll
2011-10-27 16:22:37 ----A---- C:\Windows\system32\iscsium.dll
2011-10-27 16:22:37 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2011-10-27 16:22:37 ----A---- C:\Windows\system32\Bubbles.scr
2011-10-27 16:22:37 ----A---- C:\Windows\system32\bitsadmin.exe
2011-10-27 16:22:36 ----A---- C:\Windows\system32\WPDSp.dll
2011-10-27 16:22:36 ----A---- C:\Windows\system32\srvcli.dll
2011-10-27 16:22:36 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll
2011-10-27 16:22:36 ----A---- C:\Windows\system32\pdh.dll
2011-10-27 16:22:36 ----A---- C:\Windows\system32\OpcServices.dll
2011-10-27 16:22:36 ----A---- C:\Windows\system32\ncryptui.dll
2011-10-27 16:22:36 ----A---- C:\Windows\system32\mprapi.dll
2011-10-27 16:22:36 ----A---- C:\Windows\system32\logman.exe
2011-10-27 16:22:36 ----A---- C:\Windows\system32\cscapi.dll
2011-10-27 16:22:35 ----A---- C:\Windows\system32\wwanprotdim.dll
2011-10-27 16:22:35 ----A---- C:\Windows\system32\WUDFPlatform.dll
2011-10-27 16:22:35 ----A---- C:\Windows\system32\tsgqec.dll
2011-10-27 16:22:35 ----A---- C:\Windows\system32\Ribbons.scr
2011-10-27 16:22:35 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2011-10-27 16:22:35 ----A---- C:\Windows\system32\PortableDeviceStatus.dll
2011-10-27 16:22:35 ----A---- C:\Windows\system32\olethk32.dll
2011-10-27 16:22:35 ----A---- C:\Windows\system32\Mystify.scr
2011-10-27 16:22:35 ----A---- C:\Windows\system32\MdSched.exe
2011-10-27 16:22:35 ----A---- C:\Windows\system32\lpremove.exe
2011-10-27 16:22:35 ----A---- C:\Windows\system32\djoin.exe
2011-10-27 16:22:35 ----A---- C:\Windows\system32\CscMig.dll
2011-10-27 16:22:34 ----A---- C:\Windows\system32\WMPhoto.dll
2011-10-27 16:22:34 ----A---- C:\Windows\system32\WMADMOD.DLL
2011-10-27 16:22:34 ----A---- C:\Windows\system32\utildll.dll
2011-10-27 16:22:34 ----A---- C:\Windows\system32\mapistub.dll
2011-10-27 16:22:34 ----A---- C:\Windows\system32\mapi32.dll
2011-10-27 16:22:34 ----A---- C:\Windows\system32\fphc.dll
2011-10-27 16:22:34 ----A---- C:\Windows\system32\dot3msm.dll
2011-10-27 16:22:34 ----A---- C:\Windows\system32\avifil32.dll
2011-10-27 16:22:34 ----A---- C:\Windows\system32\ActionQueue.dll
2011-10-27 16:22:33 ----A---- C:\Windows\system32\WMVSDECD.DLL
2011-10-27 16:22:33 ----A---- C:\Windows\system32\wmdrmnet.dll
2011-10-27 16:22:33 ----A---- C:\Windows\system32\wiavideo.dll
2011-10-27 16:22:33 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2011-10-27 16:22:33 ----A---- C:\Windows\system32\takeown.exe
2011-10-27 16:22:33 ----A---- C:\Windows\system32\qdv.dll
2011-10-27 16:22:33 ----A---- C:\Windows\system32\iyuv_32.dll
2011-10-27 16:22:33 ----A---- C:\Windows\system32\imagehlp.dll
2011-10-27 16:22:33 ----A---- C:\Windows\system32\EhStorAPI.dll
2011-10-27 16:22:32 ----A---- C:\Windows\system32\WUDFx.dll
2011-10-27 16:22:32 ----A---- C:\Windows\system32\unattend.dll
2011-10-27 16:22:32 ----A---- C:\Windows\system32\sppinst.dll
2011-10-27 16:22:32 ----A---- C:\Windows\system32\qprocess.exe
2011-10-27 16:22:32 ----A---- C:\Windows\system32\QCLIPROV.DLL
2011-10-27 16:22:32 ----A---- C:\Windows\system32\msyuv.dll
2011-10-27 16:22:32 ----A---- C:\Windows\system32\msrle32.dll
2011-10-27 16:22:32 ----A---- C:\Windows\system32\msnetobj.dll
2011-10-27 16:22:32 ----A---- C:\Windows\system32\cmstp.exe
2011-10-27 16:22:32 ----A---- C:\Windows\system32\cca.dll
2011-10-27 16:22:31 ----A---- C:\Windows\system32\WUDFHost.exe
2011-10-27 16:22:31 ----A---- C:\Windows\system32\wsnmp32.dll
2011-10-27 16:22:31 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2011-10-27 16:22:31 ----A---- C:\Windows\system32\vfwwdm32.dll
2011-10-27 16:22:31 ----A---- C:\Windows\system32\setupcln.dll
2011-10-27 16:22:31 ----A---- C:\Windows\system32\RelPost.exe
2011-10-27 16:22:31 ----A---- C:\Windows\system32\pdhui.dll
2011-10-27 16:22:31 ----A---- C:\Windows\system32\MuiUnattend.exe
2011-10-27 16:22:31 ----A---- C:\Windows\system32\basesrv.dll
2011-10-27 16:22:30 ----A---- C:\Windows\system32\wuauclt.exe
2011-10-27 16:22:30 ----A---- C:\Windows\system32\umb.dll
2011-10-27 16:22:30 ----A---- C:\Windows\system32\tsbyuv.dll
2011-10-27 16:22:30 ----A---- C:\Windows\system32\qwinsta.exe
2011-10-27 16:22:30 ----A---- C:\Windows\system32\PrintIsolationProxy.dll
2011-10-27 16:22:30 ----A---- C:\Windows\system32\msorcl32.dll
2011-10-27 16:22:30 ----A---- C:\Windows\system32\msg.exe
2011-10-27 16:22:30 ----A---- C:\Windows\system32\iasrecst.dll
2011-10-27 16:22:30 ----A---- C:\Windows\system32\chglogon.exe
2011-10-27 16:22:30 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2011-10-27 16:22:30 ----A---- C:\Windows\system32\drivers\ndisuio.sys
2011-10-27 16:22:30 ----A---- C:\Windows\system32\AzSqlExt.dll
2011-10-27 16:22:29 ----A---- C:\Windows\system32\wkscli.dll
2011-10-27 16:22:29 ----A---- C:\Windows\system32\WavDest.dll
2011-10-27 16:22:29 ----A---- C:\Windows\system32\sppuinotify.dll
2011-10-27 16:22:29 ----A---- C:\Windows\system32\spbcd.dll
2011-10-27 16:22:29 ----A---- C:\Windows\system32\relog.exe
2011-10-27 16:22:29 ----A---- C:\Windows\system32\rastapi.dll
2011-10-27 16:22:29 ----A---- C:\Windows\system32\quser.exe
2011-10-27 16:22:29 ----A---- C:\Windows\system32\netiougc.exe
2011-10-27 16:22:29 ----A---- C:\Windows\system32\mydocs.dll
2011-10-27 16:22:29 ----A---- C:\Windows\system32\iscsicli.exe
2011-10-27 16:22:29 ----A---- C:\Windows\system32\diskpart.exe
2011-10-27 16:22:29 ----A---- C:\Windows\system32\BdeHdCfg.exe
2011-10-27 16:22:29 ----A---- C:\Windows\system32\amstream.dll
2011-10-27 16:22:28 ----A---- C:\Windows\system32\syssetup.dll
2011-10-27 16:22:28 ----A---- C:\Windows\system32\setbcdlocale.dll
2011-10-27 16:22:28 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2011-10-27 16:22:28 ----A---- C:\Windows\system32\secproc_ssp.dll
2011-10-27 16:22:28 ----A---- C:\Windows\system32\resutils.dll
2011-10-27 16:22:28 ----A---- C:\Windows\system32\nrpsrv.dll
2011-10-27 16:22:28 ----A---- C:\Windows\system32\netbtugc.exe
2011-10-27 16:22:28 ----A---- C:\Windows\system32\MultiDigiMon.exe
2011-10-27 16:22:28 ----A---- C:\Windows\system32\itircl.dll
2011-10-27 16:22:28 ----A---- C:\Windows\system32\CertPolEng.dll
2011-10-27 16:22:27 ----A---- C:\Windows\system32\wuapp.exe
2011-10-27 16:22:27 ----A---- C:\Windows\system32\wmpps.dll
2011-10-27 16:22:27 ----A---- C:\Windows\system32\WerFaultSecure.exe
2011-10-27 16:22:27 ----A---- C:\Windows\system32\tsdiscon.exe
2011-10-27 16:22:27 ----A---- C:\Windows\system32\tscon.exe
2011-10-27 16:22:27 ----A---- C:\Windows\system32\secur32.dll
2011-10-27 16:22:27 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2011-10-27 16:22:27 ----A---- C:\Windows\system32\ReAgentc.exe
2011-10-27 16:22:27 ----A---- C:\Windows\system32\qappsrv.exe
2011-10-27 16:22:27 ----A---- C:\Windows\system32\PrintBrmUi.exe
2011-10-27 16:22:27 ----A---- C:\Windows\system32\chgusr.exe
2011-10-27 16:22:27 ----A---- C:\Windows\system32\chgport.exe
2011-10-27 16:22:27 ----A---- C:\Windows\system32\FXSTIFF.dll
2011-10-27 16:22:27 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2011-10-27 16:22:26 ----A---- C:\Windows\system32\wiarpc.dll
2011-10-27 16:22:26 ----A---- C:\Windows\system32\tskill.exe
2011-10-27 16:22:26 ----A---- C:\Windows\system32\tlscsp.dll
2011-10-27 16:22:26 ----A---- C:\Windows\system32\shadow.exe
2011-10-27 16:22:26 ----A---- C:\Windows\system32\rwinsta.exe
2011-10-27 16:22:26 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2011-10-27 16:22:26 ----A---- C:\Windows\system32\netutils.dll
2011-10-27 16:22:26 ----A---- C:\Windows\system32\mobsync.exe
2011-10-27 16:22:26 ----A---- C:\Windows\system32\mciqtz32.dll
2011-10-27 16:22:26 ----A---- C:\Windows\system32\logoff.exe
2011-10-27 16:22:26 ----A---- C:\Windows\system32\findstr.exe
2011-10-27 16:22:26 ----A---- C:\Windows\system32\eappgnui.dll
2011-10-27 16:22:25 ----A---- C:\Windows\system32\sppc.dll
2011-10-27 16:22:25 ----A---- C:\Windows\system32\spopk.dll
2011-10-27 16:22:25 ----A---- C:\Windows\system32\shimgvw.dll
2011-10-27 16:22:25 ----A---- C:\Windows\system32\prevhost.exe
2011-10-27 16:22:25 ----A---- C:\Windows\system32\netapi32.dll
2011-10-27 16:22:25 ----A---- C:\Windows\system32\muifontsetup.dll
2011-10-27 16:22:25 ----A---- C:\Windows\system32\iccvid.dll
2011-10-27 16:22:25 ----A---- C:\Windows\system32\drivers\tdi.sys
2011-10-27 16:22:25 ----A---- C:\Windows\system32\dosx.exe
2011-10-27 16:22:25 ----A---- C:\Windows\system32\cabinet.dll
2011-10-27 16:22:24 ----A---- C:\Windows\system32\wdiasqmmodule.dll
2011-10-27 16:22:24 ----A---- C:\Windows\system32\vmstorfltres.dll
2011-10-27 16:22:24 ----A---- C:\Windows\system32\vmicres.dll
2011-10-27 16:22:24 ----A---- C:\Windows\system32\unlodctr.exe
2011-10-27 16:22:24 ----A---- C:\Windows\system32\reset.exe
2011-10-27 16:22:24 ----A---- C:\Windows\system32\repair-bde.exe
2011-10-27 16:22:24 ----A---- C:\Windows\system32\rdprefdrvapi.dll
2011-10-27 16:22:24 ----A---- C:\Windows\system32\query.exe
2011-10-27 16:22:24 ----A---- C:\Windows\system32\netcfg.exe
2011-10-27 16:22:24 ----A---- C:\Windows\system32\msdmo.dll
2011-10-27 16:22:24 ----A---- C:\Windows\system32\manage-bde.exe
2011-10-27 16:22:24 ----A---- C:\Windows\system32\luainstall.dll
2011-10-27 16:22:24 ----A---- C:\Windows\system32\inetmib1.dll
2011-10-27 16:22:24 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2011-10-27 16:22:24 ----A---- C:\Windows\system32\drivers\usbrpm.sys
2011-10-27 16:22:24 ----A---- C:\Windows\system32\drivers\CompositeBus.sys
2011-10-27 16:22:23 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2011-10-27 16:22:23 ----A---- C:\Windows\system32\change.exe
2011-10-27 16:22:23 ----A---- C:\Windows\system32\drivers\cdrom.sys
2011-10-27 16:22:22 ----A---- C:\Windows\system32\wups.dll
2011-10-27 16:22:22 ----A---- C:\Windows\system32\vmbusres.dll
2011-10-27 16:22:22 ----A---- C:\Windows\system32\UIRibbonRes.dll
2011-10-27 16:22:22 ----A---- C:\Windows\system32\profprov.dll
2011-10-27 16:22:22 ----A---- C:\Windows\system32\perfts.dll
2011-10-27 16:22:22 ----A---- C:\Windows\system32\odbcconf.dll
2011-10-27 16:22:22 ----A---- C:\Windows\system32\browcli.dll
2011-10-27 16:22:21 ----A---- C:\Windows\system32\icaapi.dll
2011-10-27 16:22:21 ----A---- C:\Windows\system32\FXSMON.dll
2011-10-27 16:22:21 ----A---- C:\Windows\system32\drivers\dfsc.sys
2011-10-27 16:22:20 ----A---- C:\Windows\system32\TRAPI.dll
2011-10-27 16:22:20 ----A---- C:\Windows\system32\RDPENCDD.dll
2011-10-27 16:22:20 ----A---- C:\Windows\system32\msfeedssync.exe
2011-10-27 16:22:20 ----A---- C:\Windows\system32\elsTrans.dll
2011-10-27 16:22:20 ----A---- C:\Windows\system32\drivers\tunnel.sys
2011-10-27 16:22:20 ----A---- C:\Windows\system32\bitsperf.dll
2011-10-27 16:22:19 ----A---- C:\Windows\system32\wshbth.dll
2011-10-27 16:22:19 ----A---- C:\Windows\system32\schedcli.dll
2011-10-27 16:22:19 ----A---- C:\Windows\system32\napdsnap.dll
2011-10-27 16:22:19 ----A---- C:\Windows\system32\LogonUI.exe
2011-10-27 16:22:19 ----A---- C:\Windows\system32\dsauth.dll
2011-10-27 16:22:19 ----A---- C:\Windows\system32\cscdll.dll
2011-10-27 16:22:18 ----A---- C:\Windows\system32\sscore.dll
2011-10-27 16:22:18 ----A---- C:\Windows\system32\drivers\acpipmi.sys
2011-10-27 16:22:17 ----A---- C:\Windows\system32\wups2.dll
2011-10-27 16:22:17 ----A---- C:\Windows\system32\wsdchngr.dll
2011-10-27 16:22:17 ----A---- C:\Windows\system32\shgina.dll
2011-10-27 16:22:17 ----A---- C:\Windows\system32\riched32.dll
2011-10-27 16:22:17 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2011-10-27 16:22:16 ----A---- C:\Windows\system32\rdpcfgex.dll
2011-10-27 16:22:16 ----A---- C:\Windows\system32\drivers\VMBusHID.sys
2011-10-27 16:22:16 ----A---- C:\Windows\system32\drivers\hidusb.sys
2011-10-27 16:22:16 ----A---- C:\Windows\system32\drivers\appid.sys
2011-10-27 16:22:15 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2011-10-27 16:22:14 ----A---- C:\Windows\system32\wshirda.dll
2011-10-27 16:22:14 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2011-10-27 16:22:13 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2011-10-27 16:22:13 ----A---- C:\Windows\system32\drivers\USBCAMD.sys
2011-10-27 16:22:13 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2011-10-27 16:22:12 ----A---- C:\Windows\system32\vmictimeprovider.dll
2011-10-27 16:22:12 ----A---- C:\Windows\system32\VmdCoinstall.dll
2011-10-27 16:22:12 ----A---- C:\Windows\system32\vmbuspipe.dll
2011-10-27 16:22:12 ----A---- C:\Windows\system32\VmbusCoinstaller.dll
2011-10-27 16:22:12 ----A---- C:\Windows\system32\spwmp.dll
2011-10-27 16:22:12 ----A---- C:\Windows\system32\IcCoinstall.dll
2011-10-27 16:22:12 ----A---- C:\Windows\system32\drivers\wanarp.sys
2011-10-27 16:22:12 ----A---- C:\Windows\system32\drivers\umbus.sys
2011-10-27 16:22:12 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2011-10-27 16:22:12 ----A---- C:\Windows\system32\drivers\tdpipe.sys
2011-10-27 16:22:12 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2011-10-27 16:22:12 ----A---- C:\Windows\system32\browseui.dll
2011-10-27 16:22:11 ----A---- C:\Windows\system32\shunimpl.dll
2011-10-27 16:22:11 ----A---- C:\Windows\system32\RDPREFDD.dll
2011-10-27 16:22:11 ----A---- C:\Windows\system32\dxmasf.dll
2011-10-27 16:22:11 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2011-10-27 16:22:11 ----A---- C:\Windows\system32\drivers\sffp_sd.sys
2011-10-27 16:22:11 ----A---- C:\Windows\system32\drivers\scfilter.sys
2011-10-27 16:22:11 ----A---- C:\Windows\system32\drivers\RDPCDD.sys
2011-10-27 16:22:11 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2011-10-27 16:22:11 ----A---- C:\Windows\system32\C_ISCII.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\wmploc.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDUS.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDUGHR1.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDTURME.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDTAJIK.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDSF.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDNEPR.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDMON.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDMAORI.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDLT1.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\kbdlk41a.dll
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDINTEL.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDINTAM.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDINORI.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDINMAR.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDINKAN.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDINHIN.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDGEO.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDBULG.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDBLR.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDBASH.DLL
2011-10-27 16:22:08 ----A---- C:\Windows\system32\spwizres.dll
2011-10-27 16:22:08 ----A---- C:\Windows\system32\pifmgr.dll
2011-10-27 16:22:08 ----A---- C:\Windows\system32\nlsbres.dll
2011-10-27 16:22:08 ----A---- C:\Windows\system32\KBDTUQ.DLL
2011-10-27 16:22:08 ----A---- C:\Windows\system32\KBDTUF.DLL
2011-10-27 16:22:08 ----A---- C:\Windows\system32\KBDSG.DLL
2011-10-27 16:22:08 ----A---- C:\Windows\system32\KBDPO.DLL
2011-10-27 16:22:08 ----A---- C:\Windows\system32\KBDINBEN.DLL
2011-10-27 16:22:08 ----A---- C:\Windows\system32\KBDGR1.DLL
2011-10-27 16:22:08 ----A---- C:\Windows\system32\KBDGKL.DLL
2011-10-27 16:22:08 ----A---- C:\Windows\system32\KBDCZ1.DLL
2011-10-27 16:22:08 ----A---- C:\Windows\system32\drivers\vms3cap.sys
2011-10-27 16:22:08 ----A---- C:\Windows\system32\dpnaddr.dll
2011-10-27 16:22:08 ----A---- C:\Windows\system32\BlbEvents.dll
2011-10-27 16:21:56 ----A---- C:\Windows\system32\wdscore.dll
2011-10-27 16:21:45 ----A---- C:\Windows\system32\wbemcomn.dll
2011-10-27 16:21:40 ----A---- C:\Windows\system32\sqmapi.dll
2011-10-27 07:15:53 ----A---- C:\Windows\system32\MRT.exe
2011-10-27 07:12:32 ----A---- C:\Windows\system32\browserchoice.exe
2011-10-27 07:08:14 ----A---- C:\Windows\system32\drivers\srv2.sys
2011-10-27 07:08:14 ----A---- C:\Windows\system32\drivers\srv.sys
2011-10-27 07:08:13 ----A---- C:\Windows\system32\drivers\srvnet.sys
2011-10-27 07:08:11 ----A---- C:\Windows\system32\drivers\afd.sys
2011-10-27 07:08:09 ----A---- C:\Windows\system32\jscript.dll
2011-10-27 07:08:08 ----A---- C:\Windows\system32\vbscript.dll
2011-10-27 07:07:57 ----A---- C:\Windows\system32\ntoskrnl.exe
2011-10-27 07:07:53 ----A---- C:\Windows\system32\ntkrnlpa.exe
2011-10-27 07:07:52 ----A---- C:\Windows\system32\dnsrslvr.dll
2011-10-27 07:07:52 ----A---- C:\Windows\system32\dnsapi.dll
2011-10-27 07:07:51 ----A---- C:\Windows\system32\dnscacheugc.exe
2011-10-27 07:07:50 ----A---- C:\Windows\system32\fontsub.dll
2011-10-27 07:07:50 ----A---- C:\Windows\system32\atmlib.dll
2011-10-27 07:07:50 ----A---- C:\Windows\system32\atmfd.dll
2011-10-27 07:07:33 ----A---- C:\Windows\system32\psisdecd.dll
2011-10-27 07:07:30 ----A---- C:\Windows\system32\umpnpmgr.dll
2011-10-27 07:07:30 ----A---- C:\Windows\system32\cfgmgr32.dll
2011-10-27 07:07:17 ----A---- C:\Windows\system32\kerberos.dll
2011-10-27 07:07:15 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2011-10-27 07:07:15 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2011-10-27 07:07:15 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2011-10-27 07:07:13 ----A---- C:\Windows\system32\oleaut32.dll
2011-10-27 07:07:13 ----A---- C:\Windows\system32\oleacc.dll
2011-10-27 07:07:07 ----A---- C:\Windows\system32\tzres.dll
2011-10-27 07:06:54 ----A---- C:\Windows\system32\drivers\tcpip.sys
2011-10-27 07:06:53 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2011-10-27 07:06:52 ----A---- C:\Windows\system32\inetcomm.dll
2011-10-27 07:06:33 ----A---- C:\Windows\system32\win32k.sys
2011-10-27 07:06:26 ----A---- C:\Windows\system32\WFS.exe
2011-10-27 07:06:26 ----A---- C:\Windows\system32\FXSCOVER.exe
2011-10-27 07:06:24 ----A---- C:\Windows\system32\CPFilters.dll
2011-10-27 07:06:23 ----A---- C:\Windows\system32\sbe.dll
2011-10-27 07:06:23 ----A---- C:\Windows\system32\EncDec.dll
2011-10-27 07:06:10 ----A---- C:\Windows\system32\kernel32.dll
2011-10-27 07:06:09 ----A---- C:\Windows\system32\KernelBase.dll
2011-10-27 07:06:08 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2011-10-27 07:06:08 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2011-10-27 07:06:08 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2011-10-27 07:06:08 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2011-10-27 07:06:08 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2011-10-27 07:06:08 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2011-10-27 07:06:08 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2011-10-27 07:06:08 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2011-10-27 07:06:08 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2011-10-27 07:06:08 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2011-10-27 07:06:08 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2011-10-27 07:06:08 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2011-10-27 07:06:08 ----A---- C:\Windows\system32\winsrv.dll
2011-10-27 07:06:08 ----A---- C:\Windows\system32\conhost.exe
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2011-10-27 07:05:58 ----A---- C:\Windows\system32\ieframe.dll
2011-10-27 07:05:54 ----A---- C:\Windows\system32\mshtml.dll
2011-10-27 07:05:48 ----A---- C:\Windows\system32\wininet.dll
2011-10-27 07:05:46 ----A---- C:\Windows\system32\iertutil.dll
2011-10-27 07:05:45 ----A---- C:\Windows\system32\urlmon.dll
2011-10-27 07:05:44 ----A---- C:\Windows\system32\msfeeds.dll
2011-10-27 07:05:43 ----A---- C:\Windows\system32\mshtmled.dll
2011-10-27 07:05:43 ----A---- C:\Windows\system32\ieui.dll
2011-10-27 07:05:42 ----A---- C:\Windows\system32\url.dll
2011-10-27 07:05:42 ----A---- C:\Windows\system32\jsproxy.dll
2011-10-27 07:05:35 ----A---- C:\Windows\system32\odbcjt32.dll
2011-10-27 07:05:34 ----A---- C:\Windows\system32\odbccu32.dll
2011-10-27 07:05:34 ----A---- C:\Windows\system32\odbccr32.dll
2011-10-27 07:05:34 ----A---- C:\Windows\system32\odbccp32.dll
2011-10-27 07:05:33 ----A---- C:\Windows\system32\odbctrac.dll
2011-10-27 07:05:14 ----A---- C:\Windows\system32\mfc42.dll
2011-10-27 07:05:13 ----A---- C:\Windows\system32\mfc42u.dll
2011-10-27 07:05:07 ----A---- C:\Windows\system32\drivers\bowser.sys
2011-10-27 07:05:02 ----A---- C:\Windows\system32\poqexec.exe
2011-10-27 06:55:08 ----D---- C:\Program Files\Screamer Radio
2011-10-26 15:50:26 ----A---- C:\Windows\system32\drivers\PnkBstrK.sys
2011-10-26 15:50:26 ----A---- C:\Users\Spash\AppData\Roaming\PnkBstrK.sys
2011-10-26 15:50:02 ----A---- C:\Windows\system32\PnkBstrB.exe
2011-10-26 15:50:00 ----A---- C:\Windows\system32\PnkBstrA.exe
2011-10-26 15:49:31 ----D---- C:\Windows\system32\RTCOM
2011-10-26 15:48:37 ----A---- C:\Windows\system32\WavesLib.dll
2011-10-26 15:48:36 ----A---- C:\Windows\system32\WavesGUILib.dll
2011-10-26 15:48:36 ----A---- C:\Windows\system32\tosade.dll
2011-10-26 15:48:36 ----A---- C:\Windows\system32\TepeqAPO.dll
2011-10-26 15:48:36 ----A---- C:\Windows\system32\tadefxapo2.dll
2011-10-26 15:48:36 ----A---- C:\Windows\system32\tadefxapo.dll
2011-10-26 15:48:36 ----A---- C:\Windows\system32\SRSWOW.dll
2011-10-26 15:48:36 ----A---- C:\Windows\system32\SRSTSXT.dll
2011-10-26 15:48:36 ----A---- C:\Windows\system32\SRSTSHD.dll
2011-10-26 15:48:36 ----A---- C:\Windows\system32\SRSHP360.dll
2011-10-26 15:48:36 ----A---- C:\Windows\system32\SFNHK.dll
2011-10-26 15:48:36 ----A---- C:\Windows\system32\SFCOM.dll
2011-10-26 15:48:36 ----A---- C:\Windows\system32\SFAPO.dll
2011-10-26 15:48:35 ----A---- C:\Windows\system32\RtkPgExt.dll
2011-10-26 15:48:35 ----A---- C:\Windows\system32\RtkCoInst.dll
2011-10-26 15:48:35 ----A---- C:\Windows\system32\drivers\RTKVHDA.sys
2011-10-26 15:48:34 ----A---- C:\Windows\system32\RtkApoApi.dll
2011-10-26 15:48:34 ----A---- C:\Windows\system32\RtkAPO.dll
2011-10-26 15:48:34 ----A---- C:\Windows\system32\RTEEP32A.dll
2011-10-26 15:48:34 ----A---- C:\Windows\system32\RTEEL32A.dll
2011-10-26 15:48:34 ----A---- C:\Windows\system32\RTEEG32A.dll
2011-10-26 15:48:34 ----A---- C:\Windows\system32\RTEED32A.dll
2011-10-26 15:48:34 ----A---- C:\Windows\system32\RP3DHT32.dll
2011-10-26 15:48:34 ----A---- C:\Windows\system32\RP3DAA32.dll
2011-10-26 15:48:34 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2011-10-26 15:48:33 ----A---- C:\Windows\system32\RCoRes.dat
2011-10-26 15:48:33 ----A---- C:\Windows\system32\R4EEP32A.dll
2011-10-26 15:48:33 ----A---- C:\Windows\system32\R4EEL32A.dll
2011-10-26 15:48:33 ----A---- C:\Windows\system32\R4EEG32A.dll
2011-10-26 15:48:33 ----A---- C:\Windows\system32\R4EED32A.dll
2011-10-26 15:48:33 ----A---- C:\Windows\system32\R4EEA32A.dll
2011-10-26 15:48:33 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2011-10-26 15:48:33 ----A---- C:\Windows\system32\MaxxAudioRealtek.dll
2011-10-26 15:48:33 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2011-10-26 15:48:33 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2011-10-26 15:48:33 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2011-10-26 15:48:33 ----A---- C:\Windows\system32\MaxxAudioAPO.dll
2011-10-26 15:48:33 ----A---- C:\Windows\system32\KAAPORT.dll
2011-10-26 15:48:27 ----A---- C:\Windows\system32\FMAPO.dll
2011-10-26 15:48:27 ----A---- C:\Windows\system32\DTSVoiceClarityDLL.dll
2011-10-26 15:48:27 ----A---- C:\Windows\system32\DTSU2PREC32.dll
2011-10-26 15:48:27 ----A---- C:\Windows\system32\DTSU2PLFX32.dll
2011-10-26 15:48:27 ----A---- C:\Windows\system32\DTSU2PGFX32.dll
2011-10-26 15:48:27 ----A---- C:\Windows\system32\DTSSymmetryDLL.dll
2011-10-26 15:48:27 ----A---- C:\Windows\system32\DTSS2SpeakerDLL.dll
2011-10-26 15:48:26 ----D---- C:\Program Files\Realtek
2011-10-26 15:48:26 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL.dll
2011-10-26 15:48:26 ----A---- C:\Windows\system32\DTSNeoPCDLL.dll
2011-10-26 15:48:26 ----A---- C:\Windows\system32\DTSLimiterDLL.dll
2011-10-26 15:48:26 ----A---- C:\Windows\system32\DTSLFXAPO.dll
2011-10-26 15:48:26 ----A---- C:\Windows\system32\DTSGFXAPONS.dll
2011-10-26 15:48:26 ----A---- C:\Windows\system32\DTSGFXAPO.dll
2011-10-26 15:48:26 ----A---- C:\Windows\system32\DTSGainCompensatorDLL.dll
2011-10-26 15:48:26 ----A---- C:\Windows\system32\DTSBoostDLL.dll
2011-10-26 15:48:26 ----A---- C:\Windows\system32\DTSBassEnhancementDLL.dll
2011-10-26 15:48:26 ----A---- C:\Windows\system32\AERTARen.dll
2011-10-26 15:48:26 ----A---- C:\Windows\system32\AERTACap.dll
2011-10-26 15:48:25 ----HD---- C:\Program Files\InstallShield Installation Information
2011-10-26 15:48:12 ----HD---- C:\Program Files\Temp
2011-10-26 15:48:11 ----A---- C:\Windows\RtlExUpd.dll
2011-10-26 15:42:50 ----D---- C:\Windows\Panther
2011-10-26 15:42:38 ----RASH---- C:\BOOTSECT.BAK
2011-10-26 15:42:36 ----SHD---- C:\Boot
2011-10-26 15:38:01 ----HD---- C:\Program Files\Common Files\EAInstaller
2011-10-26 15:37:34 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2011-10-26 15:37:33 ----A---- C:\Windows\system32\XAudio2_7.dll
2011-10-26 15:37:33 ----A---- C:\Windows\system32\xactengine3_7.dll
2011-10-26 15:37:33 ----A---- C:\Windows\system32\D3DX9_43.dll
2011-10-26 15:37:33 ----A---- C:\Windows\system32\d3dx11_43.dll
2011-10-26 15:37:33 ----A---- C:\Windows\system32\d3dx10_43.dll
2011-10-26 15:37:33 ----A---- C:\Windows\system32\d3dcsx_43.dll
2011-10-26 15:37:33 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2011-10-26 15:37:32 ----A---- C:\Windows\system32\XAudio2_6.dll
2011-10-26 15:37:32 ----A---- C:\Windows\system32\XAudio2_5.dll
2011-10-26 15:37:32 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2011-10-26 15:37:32 ----A---- C:\Windows\system32\xactengine3_6.dll
2011-10-26 15:37:32 ----A---- C:\Windows\system32\xactengine3_5.dll
2011-10-26 15:37:32 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2011-10-26 15:37:32 ----A---- C:\Windows\system32\d3dcsx_42.dll
2011-10-26 15:37:32 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2011-10-26 15:37:31 ----A---- C:\Windows\system32\D3DX9_42.dll
2011-10-26 15:37:31 ----A---- C:\Windows\system32\D3DX9_41.dll
2011-10-26 15:37:31 ----A---- C:\Windows\system32\d3dx11_42.dll
2011-10-26 15:37:31 ----A---- C:\Windows\system32\d3dx10_42.dll
2011-10-26 15:37:31 ----A---- C:\Windows\system32\d3dx10_41.dll
2011-10-26 15:37:31 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2011-10-26 15:37:30 ----A---- C:\Windows\system32\XAudio2_4.dll
2011-10-26 15:37:30 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2011-10-26 15:37:30 ----A---- C:\Windows\system32\xactengine3_4.dll
2011-10-26 15:37:30 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2011-10-26 15:37:30 ----A---- C:\Windows\system32\D3DX9_40.dll
2011-10-26 15:37:30 ----A---- C:\Windows\system32\d3dx10_40.dll
2011-10-26 15:37:30 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2011-10-26 15:37:29 ----A---- C:\Windows\system32\XAudio2_3.dll
2011-10-26 15:37:29 ----A---- C:\Windows\system32\XAudio2_2.dll
2011-10-26 15:37:29 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2011-10-26 15:37:29 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2011-10-26 15:37:29 ----A---- C:\Windows\system32\xactengine3_3.dll
2011-10-26 15:37:29 ----A---- C:\Windows\system32\xactengine3_2.dll
2011-10-26 15:37:29 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2011-10-26 15:37:29 ----A---- C:\Windows\system32\D3DX9_39.dll
2011-10-26 15:37:29 ----A---- C:\Windows\system32\d3dx10_39.dll
2011-10-26 15:37:29 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2011-10-26 15:37:28 ----A---- C:\Windows\system32\XAudio2_1.dll
2011-10-26 15:37:28 ----A---- C:\Windows\system32\XAudio2_0.dll
2011-10-26 15:37:28 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2011-10-26 15:37:28 ----A---- C:\Windows\system32\xactengine3_1.dll
2011-10-26 15:37:28 ----A---- C:\Windows\system32\xactengine3_0.dll
2011-10-26 15:37:28 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2011-10-26 15:37:28 ----A---- C:\Windows\system32\D3DX9_38.dll
2011-10-26 15:37:28 ----A---- C:\Windows\system32\d3dx10_38.dll
2011-10-26 15:37:28 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2011-10-26 15:37:27 ----A---- C:\Windows\system32\xactengine2_10.dll
2011-10-26 15:37:27 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2011-10-26 15:37:27 ----A---- C:\Windows\system32\D3DX9_37.dll
2011-10-26 15:37:27 ----A---- C:\Windows\system32\d3dx10_37.dll
2011-10-26 15:37:27 ----A---- C:\Windows\system32\d3dx10_36.dll
2011-10-26 15:37:27 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2011-10-26 15:37:27 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2011-10-26 15:37:26 ----A---- C:\Windows\system32\xactengine2_9.dll
2011-10-26 15:37:26 ----A---- C:\Windows\system32\xactengine2_8.dll
2011-10-26 15:37:26 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2011-10-26 15:37:26 ----A---- C:\Windows\system32\d3dx9_36.dll
2011-10-26 15:37:26 ----A---- C:\Windows\system32\d3dx9_35.dll
2011-10-26 15:37:26 ----A---- C:\Windows\system32\d3dx10_35.dll
2011-10-26 15:37:26 ----A---- C:\Windows\system32\d3dx10_34.dll
2011-10-26 15:37:26 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2011-10-26 15:37:26 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2011-10-26 15:37:25 ----A---- C:\Windows\system32\xinput1_3.dll
2011-10-26 15:37:25 ----A---- C:\Windows\system32\xactengine2_7.dll
2011-10-26 15:37:25 ----A---- C:\Windows\system32\d3dx9_34.dll
2011-10-26 15:37:25 ----A---- C:\Windows\system32\d3dx9_33.dll
2011-10-26 15:37:25 ----A---- C:\Windows\system32\d3dx10_33.dll
2011-10-26 15:37:25 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2011-10-26 15:37:24 ----A---- C:\Windows\system32\xactengine2_6.dll
2011-10-26 15:37:24 ----A---- C:\Windows\system32\xactengine2_5.dll
2011-10-26 15:37:24 ----A---- C:\Windows\system32\xactengine2_4.dll
2011-10-26 15:37:24 ----A---- C:\Windows\system32\x3daudio1_1.dll
2011-10-26 15:37:24 ----A---- C:\Windows\system32\d3dx9_32.dll
2011-10-26 15:37:24 ----A---- C:\Windows\system32\d3dx9_31.dll
2011-10-26 15:37:24 ----A---- C:\Windows\system32\d3dx10.dll
2011-10-26 15:37:23 ----A---- C:\Windows\system32\xinput1_2.dll
2011-10-26 15:37:23 ----A---- C:\Windows\system32\xinput1_1.dll
2011-10-26 15:37:23 ----A---- C:\Windows\system32\xactengine2_3.dll
2011-10-26 15:37:23 ----A---- C:\Windows\system32\xactengine2_2.dll
2011-10-26 15:37:23 ----A---- C:\Windows\system32\xactengine2_1.dll
2011-10-26 15:37:20 ----A---- C:\Windows\system32\d3dx9_30.dll
2011-10-26 15:37:19 ----A---- C:\Windows\system32\xactengine2_0.dll
2011-10-26 15:37:19 ----A---- C:\Windows\system32\x3daudio1_0.dll
2011-10-26 15:37:19 ----A---- C:\Windows\system32\d3dx9_29.dll
2011-10-26 15:37:19 ----A---- C:\Windows\system32\d3dx9_28.dll
2011-10-26 15:37:19 ----A---- C:\Windows\system32\d3dx9_27.dll
2011-10-26 15:37:19 ----A---- C:\Windows\system32\d3dx9_26.dll
2011-10-26 15:37:18 ----A---- C:\Windows\system32\d3dx9_25.dll
2011-10-26 15:37:18 ----A---- C:\Windows\system32\d3dx9_24.dll
2011-10-26 15:36:16 ----N---- C:\Windows\system32\MpSigStub.exe
2011-10-26 15:20:44 ----RA---- C:\Windows\system32\pbsvc.exe
2011-10-26 15:09:59 ----D---- C:\ProgramData\NVIDIA
2011-10-26 15:09:54 ----A---- C:\Windows\system32\nvvsvc.exe
2011-10-26 15:09:54 ----A---- C:\Windows\system32\nvsvc.dll
2011-10-26 15:09:54 ----A---- C:\Windows\system32\nvshext.dll
2011-10-26 15:09:54 ----A---- C:\Windows\system32\nvmctray.dll
2011-10-26 15:09:54 ----A---- C:\Windows\system32\nvcpl.dll
2011-10-26 15:09:54 ----A---- C:\Windows\system32\easyupdatusapiu.dll
2011-10-26 15:09:38 ----D---- C:\ProgramData\NVIDIA Corporation
2011-10-26 15:08:54 ----A---- C:\Windows\system32\OpenCL.dll
2011-10-26 15:08:53 ----A---- C:\Windows\system32\nvoglv32.dll
2011-10-26 15:08:53 ----A---- C:\Windows\system32\nvgenco32.dll
2011-10-26 15:08:53 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2011-10-26 15:08:52 ----A---- C:\Windows\system32\nvdispco32.dll
2011-10-26 15:08:52 ----A---- C:\Windows\system32\nvcuvid.dll
2011-10-26 15:08:52 ----A---- C:\Windows\system32\nvcuvenc.dll
2011-10-26 15:08:51 ----A---- C:\Windows\system32\nvcuda.dll
2011-10-26 15:08:51 ----A---- C:\Windows\system32\nvcompiler.dll
2011-10-26 15:08:51 ----A---- C:\Windows\system32\nvapi.dll
Logfile of random's system information tool 1.09 (written by random/random)
Run by Spash at 2011-10-27 21:49:24
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 37 GB (75%) free of 50 GB
Total RAM: 2048 MB (54% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:49:28, on 27. 10. 2011
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v8.00 (8.00.7601.17514)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\Google\Gmail Notifier\gnotify.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Users\Spash\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Users\Spash\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Users\Spash\AppData\Local\Google\Update\1.3.21.79\GoogleCrashHandler.exe
C:\Users\Spash\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Spash\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\rundll32.exe
C:\Users\Spash\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Spash\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\TC UP\totalcmd.exe
C:\Users\Spash\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Spash\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Spash\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Spash\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Spash\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Spash\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\NOTEPAD.EXE
C:\Windows\system32\NOTEPAD.EXE
C:\Windows\system32\NOTEPAD.EXE
C:\Users\Spash\Desktop\RSIT.exe
C:\Program Files\trend micro\Spash.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [{0228e555-4f9c-4e35-a3ec-b109a192b4c2}] C:\Program Files\Google\Gmail Notifier\gnotify.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Google Update] "C:\Users\Spash\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [chromium] C:\Users\Spash\AppData\Local\Google\Chrome\Application\chrome.exe --no-startup-window
O4 - HKCU\..\Run: [SRDownloader] F:\download\SRDownloader.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-2935269482-1580412803-1049093956-1003\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-2935269482-1580412803-1049093956-1003\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
--
End of file - 4796 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2935269482-1580412803-1049093956-1001Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2935269482-1580412803-1049093956-1001UA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2009-04-09 2029640]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2011-10-17 11430504]
"{0228e555-4f9c-4e35-a3ec-b109a192b4c2}"=C:\Program Files\Google\Gmail Notifier\gnotify.exe [2005-07-15 479232]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2010-04-01 357696]
"Google Update"=C:\Users\Spash\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-26 135664]
"chromium"=C:\Users\Spash\AppData\Local\Google\Chrome\Application\chrome.exe [2011-10-21 1036344]
"SRDownloader"=F:\download\SRDownloader.exe [2011-10-19 903680]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2011-10-27 21:45:45 ----A---- C:\sector.txt
2011-10-27 21:42:14 ----D---- C:\Program Files\trend micro
2011-10-27 21:42:13 ----D---- C:\rsit
2011-10-27 17:26:34 ----D---- C:\Windows\system32\Macromed
2011-10-27 16:38:46 ----D---- C:\Program Files\Google
2011-10-27 16:30:54 ----D---- C:\Windows\system32\SPReview
2011-10-27 16:30:16 ----D---- C:\Windows\system32\EventProviders
2011-10-27 16:29:40 ----D---- C:\Windows\system32\Wat
2011-10-27 16:25:12 ----A---- C:\Windows\system32\dfshim.dll
2011-10-27 16:25:06 ----A---- C:\Windows\system32\LSCSHostPolicy.dll
2011-10-27 16:25:06 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2011-10-27 16:25:05 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2011-10-27 16:25:05 ----A---- C:\Windows\system32\mstscax.dll
2011-10-27 16:25:00 ----A---- C:\Windows\system32\d3d10warp.dll
2011-10-27 16:24:59 ----A---- C:\Windows\system32\mfc40.dll
2011-10-27 16:24:58 ----A---- C:\Windows\system32\tssrvlic.dll
2011-10-27 16:24:58 ----A---- C:\Windows\system32\RDVGHelper.exe
2011-10-27 16:24:58 ----A---- C:\Windows\system32\rdpcorets.dll
2011-10-27 16:24:58 ----A---- C:\Windows\system32\mfc40u.dll
2011-10-27 16:24:56 ----A---- C:\Windows\system32\XpsPrint.dll
2011-10-27 16:24:56 ----A---- C:\Windows\system32\sysmain.dll
2011-10-27 16:24:55 ----A---- C:\Windows\system32\d2d1.dll
2011-10-27 16:24:54 ----A---- C:\Windows\system32\secproc_isv.dll
2011-10-27 16:24:53 ----A---- C:\Windows\system32\shell32.dll
2011-10-27 16:24:52 ----A---- C:\Windows\system32\RMActivate_isv.exe
2011-10-27 16:24:51 ----A---- C:\Windows\system32\secproc.dll
2011-10-27 16:24:49 ----A---- C:\Windows\system32\RMActivate.exe
2011-10-27 16:24:46 ----A---- C:\Windows\system32\spwizui.dll
2011-10-27 16:24:46 ----A---- C:\Windows\system32\mscoree.dll
2011-10-27 16:24:43 ----A---- C:\Windows\system32\mf.dll
2011-10-27 16:24:42 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2011-10-27 16:24:42 ----A---- C:\Windows\system32\CertEnroll.dll
2011-10-27 16:24:41 ----A---- C:\Windows\system32\mssrch.dll
2011-10-27 16:24:39 ----A---- C:\Windows\system32\wmp.dll
2011-10-27 16:24:38 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2011-10-27 16:24:38 ----A---- C:\Windows\system32\PresentationHost.exe
2011-10-27 16:24:38 ----A---- C:\Windows\system32\esent.dll
2011-10-27 16:24:38 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2011-10-27 16:24:38 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2011-10-27 16:24:36 ----A---- C:\Windows\system32\tquery.dll
2011-10-27 16:24:36 ----A---- C:\Windows\system32\schedsvc.dll
2011-10-27 16:24:35 ----A---- C:\Windows\system32\RacEngn.dll
2011-10-27 16:24:33 ----A---- C:\Windows\system32\ntdll.dll
2011-10-27 16:24:33 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2011-10-27 16:24:31 ----A---- C:\Windows\system32\rdpudd.dll
2011-10-27 16:24:31 ----A---- C:\Windows\system32\rdpdd.dll
2011-10-27 16:24:30 ----A---- C:\Windows\system32\qmgr.dll
2011-10-27 16:24:29 ----A---- C:\Windows\system32\ExplorerFrame.dll
2011-10-27 16:24:28 ----A---- C:\Windows\system32\wevtsvc.dll
2011-10-27 16:24:28 ----A---- C:\Windows\system32\ole32.dll
2011-10-27 16:24:27 ----A---- C:\Windows\system32\vssapi.dll
2011-10-27 16:24:27 ----A---- C:\Windows\system32\SearchFolder.dll
2011-10-27 16:24:26 ----A---- C:\Windows\system32\DWrite.dll
2011-10-27 16:24:26 ----A---- C:\Windows\system32\d3d9.dll
2011-10-27 16:24:26 ----A---- C:\Windows\explorer.exe
2011-10-27 16:24:25 ----A---- C:\Windows\system32\taskschd.dll
2011-10-27 16:24:25 ----A---- C:\Windows\system32\IKEEXT.DLL
2011-10-27 16:24:24 ----A---- C:\Windows\system32\crypt32.dll
2011-10-27 16:24:23 ----A---- C:\Windows\system32\PushPrinterConnections.exe
2011-10-27 16:24:23 ----A---- C:\Windows\system32\mstsc.exe
2011-10-27 16:24:23 ----A---- C:\Windows\system32\FntCache.dll
2011-10-27 16:24:23 ----A---- C:\Windows\system32\drivers\ntfs.sys
2011-10-27 16:24:22 ----A---- C:\Windows\system32\wer.dll
2011-10-27 16:24:22 ----A---- C:\Windows\system32\termsrv.dll
2011-10-27 16:24:22 ----A---- C:\Windows\system32\spreview.exe
2011-10-27 16:24:22 ----A---- C:\Windows\system32\spinstall.exe
2011-10-27 16:24:22 ----A---- C:\Windows\system32\certcli.dll
2011-10-27 16:24:21 ----A---- C:\Windows\system32\rpcrt4.dll
2011-10-27 16:24:21 ----A---- C:\Windows\system32\lsasrv.dll
2011-10-27 16:24:21 ----A---- C:\Windows\system32\gpsvc.dll
2011-10-27 16:24:20 ----A---- C:\Windows\system32\msxml6.dll
2011-10-27 16:24:20 ----A---- C:\Windows\system32\dwmcore.dll
2011-10-27 16:24:19 ----A---- C:\Windows\system32\wbengine.exe
2011-10-27 16:24:19 ----A---- C:\Windows\system32\odbc32.dll
2011-10-27 16:24:19 ----A---- C:\Windows\system32\MPSSVC.dll
2011-10-27 16:24:19 ----A---- C:\Windows\system32\diagperf.dll
2011-10-27 16:24:18 ----A---- C:\Windows\system32\scavengeui.dll
2011-10-27 16:24:18 ----A---- C:\Windows\system32\mstime.dll
2011-10-27 16:24:18 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2011-10-27 16:24:17 ----A---- C:\Windows\system32\WinSAT.exe
2011-10-27 16:24:17 ----A---- C:\Windows\system32\umrdp.dll
2011-10-27 16:24:16 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2011-10-27 16:24:16 ----A---- C:\Windows\system32\TSWorkspace.dll
2011-10-27 16:24:16 ----A---- C:\Windows\system32\tsmf.dll
2011-10-27 16:24:16 ----A---- C:\Windows\system32\quartz.dll
2011-10-27 16:24:16 ----A---- C:\Windows\system32\localspl.dll
2011-10-27 16:24:16 ----A---- C:\Windows\system32\iedkcs32.dll
2011-10-27 16:24:16 ----A---- C:\Windows\system32\dot3api.dll
2011-10-27 16:24:15 ----A---- C:\Windows\system32\winhttp.dll
2011-10-27 16:24:15 ----A---- C:\Windows\system32\setupapi.dll
2011-10-27 16:24:15 ----A---- C:\Windows\system32\drivers\nvstor.sys
2011-10-27 16:24:14 ----A---- C:\Windows\system32\MSVidCtl.dll
2011-10-27 16:24:14 ----A---- C:\Windows\system32\apphelp.dll
2011-10-27 16:24:13 ----A---- C:\Windows\system32\VSSVC.exe
2011-10-27 16:24:13 ----A---- C:\Windows\system32\netlogon.dll
2011-10-27 16:24:13 ----A---- C:\Windows\system32\dbgeng.dll
2011-10-27 16:24:12 ----A---- C:\Windows\system32\winlogon.exe
2011-10-27 16:24:12 ----A---- C:\Windows\system32\WindowsCodecs.dll
2011-10-27 16:24:12 ----A---- C:\Windows\system32\user32.dll
2011-10-27 16:24:12 ----A---- C:\Windows\system32\rdpshell.exe
2011-10-27 16:24:12 ----A---- C:\Windows\system32\netcfgx.dll
2011-10-27 16:24:12 ----A---- C:\Windows\system32\d3d11.dll
2011-10-27 16:24:11 ----A---- C:\Windows\system32\WMVDECOD.DLL
2011-10-27 16:24:11 ----A---- C:\Windows\system32\webio.dll
2011-10-27 16:24:11 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2011-10-27 16:24:10 ----A---- C:\Windows\system32\WsmSvc.dll
2011-10-27 16:24:10 ----A---- C:\Windows\system32\Query.dll
2011-10-27 16:24:10 ----A---- C:\Windows\system32\gpprefcl.dll
2011-10-27 16:24:10 ----A---- C:\Windows\system32\drivers\nvraid.sys
2011-10-27 16:24:10 ----A---- C:\Windows\system32\advapi32.dll
2011-10-27 16:24:09 ----A---- C:\Windows\system32\upnp.dll
2011-10-27 16:24:09 ----A---- C:\Windows\system32\schannel.dll
2011-10-27 16:24:09 ----A---- C:\Windows\system32\mmcndmgr.dll
2011-10-27 16:24:09 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2011-10-27 16:24:08 ----A---- C:\Windows\system32\netfxperf.dll
2011-10-27 16:24:08 ----A---- C:\Windows\system32\msv1_0.dll
2011-10-27 16:24:08 ----A---- C:\Windows\system32\lsm.exe
2011-10-27 16:24:08 ----A---- C:\Windows\system32\imapi2fs.dll
2011-10-27 16:24:08 ----A---- C:\Windows\system32\drivers\csc.sys
2011-10-27 16:24:07 ----A---- C:\Windows\system32\sppobjs.dll
2011-10-27 16:24:07 ----A---- C:\Windows\system32\msdrm.dll
2011-10-27 16:24:07 ----A---- C:\Windows\system32\authui.dll
2011-10-27 16:24:06 ----A---- C:\Windows\system32\usp10.dll
2011-10-27 16:24:06 ----A---- C:\Windows\system32\shlwapi.dll
2011-10-27 16:24:06 ----A---- C:\Windows\system32\SessEnv.dll
2011-10-27 16:24:06 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2011-10-27 16:24:06 ----A---- C:\Windows\system32\mcbuilder.exe
2011-10-27 16:24:04 ----A---- C:\Windows\system32\userenv.dll
2011-10-27 16:24:04 ----A---- C:\Windows\system32\d3d10_1core.dll
2011-10-27 16:24:04 ----A---- C:\Windows\system32\certmgr.dll
2011-10-27 16:24:03 ----A---- C:\Windows\system32\xpsservices.dll
2011-10-27 16:24:03 ----A---- C:\Windows\system32\winload.exe
2011-10-27 16:24:03 ----A---- C:\Windows\system32\WebClnt.dll
2011-10-27 16:24:03 ----A---- C:\Windows\system32\drvstore.dll
2011-10-27 16:24:03 ----A---- C:\Windows\system32\audiosrv.dll
2011-10-27 16:24:02 ----A---- C:\Windows\system32\sppwinob.dll
2011-10-27 16:24:02 ----A---- C:\Windows\system32\iphlpsvc.dll
2011-10-27 16:24:02 ----A---- C:\Windows\system32\comdlg32.dll
2011-10-27 16:24:01 ----A---- C:\Windows\system32\rpcss.dll
2011-10-27 16:24:01 ----A---- C:\Windows\system32\cmd.exe
2011-10-27 16:24:00 ----A---- C:\Windows\system32\win32spl.dll
2011-10-27 16:24:00 ----A---- C:\Windows\system32\framedynos.dll
2011-10-27 16:24:00 ----A---- C:\Windows\system32\BFE.DLL
2011-10-27 16:23:59 ----A---- C:\Windows\system32\Wldap32.dll
2011-10-27 16:23:59 ----A---- C:\Windows\system32\rdpendp.dll
2011-10-27 16:23:59 ----A---- C:\Windows\system32\propsys.dll
2011-10-27 16:23:59 ----A---- C:\Windows\system32\nlasvc.dll
2011-10-27 16:23:59 ----A---- C:\Windows\system32\mfds.dll
2011-10-27 16:23:59 ----A---- C:\Windows\system32\drivers\volsnap.sys
2011-10-27 16:23:58 ----A---- C:\Windows\system32\wuaueng.dll
2011-10-27 16:23:58 ----A---- C:\Windows\system32\samsrv.dll
2011-10-27 16:23:58 ----A---- C:\Windows\system32\drivers\netio.sys
2011-10-27 16:23:58 ----A---- C:\Windows\system32\drivers\ndis.sys
2011-10-27 16:23:58 ----A---- C:\Windows\system32\cscsvc.dll
2011-10-27 16:23:57 ----A---- C:\Windows\system32\wucltux.dll
2011-10-27 16:23:57 ----A---- C:\Windows\system32\wmicmiplugin.dll
2011-10-27 16:23:57 ----A---- C:\Windows\system32\winresume.exe
2011-10-27 16:23:57 ----A---- C:\Windows\system32\profsvc.dll
2011-10-27 16:23:57 ----A---- C:\Windows\system32\ncsi.dll
2011-10-27 16:23:56 ----A---- C:\Windows\system32\werconcpl.dll
2011-10-27 16:23:56 ----A---- C:\Windows\system32\rdpclip.exe
2011-10-27 16:23:56 ----A---- C:\Windows\system32\azroles.dll
2011-10-27 16:23:56 ----A---- C:\Windows\system32\appmgr.dll
2011-10-27 16:23:55 ----A---- C:\Windows\system32\themeui.dll
2011-10-27 16:23:55 ----A---- C:\Windows\system32\taskeng.exe
2011-10-27 16:23:55 ----A---- C:\Windows\system32\credui.dll
2011-10-27 16:23:54 ----A---- C:\Windows\system32\spp.dll
2011-10-27 16:23:54 ----A---- C:\Windows\system32\mswsock.dll
2011-10-27 16:23:54 ----A---- C:\Windows\system32\drivers\storport.sys
2011-10-27 16:23:54 ----A---- C:\Windows\system32\drivers\http.sys
2011-10-27 16:23:54 ----A---- C:\Windows\system32\dhcpcore.dll
2011-10-27 16:23:53 ----A---- C:\Windows\system32\wintrust.dll
2011-10-27 16:23:53 ----A---- C:\Windows\system32\msxml3.dll
2011-10-27 16:23:53 ----A---- C:\Windows\system32\mfreadwrite.dll
2011-10-27 16:23:53 ----A---- C:\Windows\system32\dxgi.dll
2011-10-27 16:23:53 ----A---- C:\Windows\system32\basecsp.dll
2011-10-27 16:23:52 ----A---- C:\Windows\system32\taskcomp.dll
2011-10-27 16:23:52 ----A---- C:\Windows\system32\rdpinit.exe
2011-10-27 16:23:52 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2011-10-27 16:23:52 ----A---- C:\Windows\system32\evr.dll
2011-10-27 16:23:52 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2011-10-27 16:23:52 ----A---- C:\Windows\system32\dbghelp.dll
2011-10-27 16:23:51 ----A---- C:\Windows\system32\WinSATAPI.dll
2011-10-27 16:23:51 ----A---- C:\Windows\system32\spoolsv.exe
2011-10-27 16:23:51 ----A---- C:\Windows\system32\gdi32.dll
2011-10-27 16:23:51 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2011-10-27 16:23:51 ----A---- C:\Windows\system32\calc.exe
2011-10-27 16:23:50 ----A---- C:\Windows\system32\vpnike.dll
2011-10-27 16:23:50 ----A---- C:\Windows\system32\sqlsrv32.dll
2011-10-27 16:23:50 ----A---- C:\Windows\system32\QAGENTRT.DLL
2011-10-27 16:23:50 ----A---- C:\Windows\system32\drivers\amdsata.sys
2011-10-27 16:23:49 ----A---- C:\Windows\system32\UIRibbon.dll
2011-10-27 16:23:49 ----A---- C:\Windows\system32\srvsvc.dll
2011-10-27 16:23:48 ----A---- C:\Windows\system32\lpksetup.exe
2011-10-27 16:23:48 ----A---- C:\Windows\system32\fveapi.dll
2011-10-27 16:23:48 ----A---- C:\Windows\system32\cryptsvc.dll
2011-10-27 16:23:47 ----A---- C:\Windows\system32\tspubwmi.dll
2011-10-27 16:23:47 ----A---- C:\Windows\system32\sxs.dll
2011-10-27 16:23:47 ----A---- C:\Windows\system32\netshell.dll
2011-10-27 16:23:47 ----A---- C:\Windows\system32\ie4uinit.exe
2011-10-27 16:23:47 ----A---- C:\Windows\system32\drivers\fvevol.sys
2011-10-27 16:23:46 ----A---- C:\Windows\system32\ws2_32.dll
2011-10-27 16:23:46 ----A---- C:\Windows\system32\stobject.dll
2011-10-27 16:23:46 ----A---- C:\Windows\system32\hgprint.dll
2011-10-27 16:23:46 ----A---- C:\Windows\system32\drivers\rdbss.sys
2011-10-27 16:23:46 ----A---- C:\Windows\system32\drivers\msdsm.sys
2011-10-27 16:23:45 ----A---- C:\Windows\system32\prncache.dll
2011-10-27 16:23:45 ----A---- C:\Windows\system32\printui.dll
2011-10-27 16:23:45 ----A---- C:\Windows\system32\inetpp.dll
2011-10-27 16:23:45 ----A---- C:\Windows\system32\comctl32.dll
2011-10-27 16:23:44 ----A---- C:\Windows\system32\msi.dll
2011-10-27 16:23:44 ----A---- C:\Windows\system32\dps.dll
2011-10-27 16:23:43 ----A---- C:\Windows\system32\WSDApi.dll
2011-10-27 16:23:43 ----A---- C:\Windows\system32\wmpeffects.dll
2011-10-27 16:23:43 ----A---- C:\Windows\system32\rpchttp.dll
2011-10-27 16:23:43 ----A---- C:\Windows\system32\net1.exe
2011-10-27 16:23:43 ----A---- C:\Windows\system32\ci.dll
2011-10-27 16:23:42 ----A---- C:\Windows\system32\drivers\vmbus.sys
2011-10-27 16:23:42 ----A---- C:\Windows\system32\drivers\pci.sys
2011-10-27 16:23:42 ----A---- C:\Windows\system32\aitagent.exe
2011-10-27 16:23:42 ----A---- C:\Windows\system32\aepdu.dll
2011-10-27 16:23:41 ----A---- C:\Windows\system32\vds.exe
2011-10-27 16:23:41 ----A---- C:\Windows\system32\scansetting.dll
2011-10-27 16:23:41 ----A---- C:\Windows\system32\FXSSVC.exe
2011-10-27 16:23:40 ----A---- C:\Windows\system32\WMVCORE.DLL
2011-10-27 16:23:40 ----A---- C:\Windows\system32\wlangpui.dll
2011-10-27 16:23:40 ----A---- C:\Windows\system32\MMDevAPI.dll
2011-10-27 16:23:40 ----A---- C:\Windows\system32\davclnt.dll
2011-10-27 16:23:40 ----A---- C:\Windows\system32\cdd.dll
2011-10-27 16:23:40 ----A---- C:\Windows\system32\aaclient.dll
2011-10-27 16:23:39 ----A---- C:\Windows\system32\QSHVHOST.DLL
2011-10-27 16:23:39 ----A---- C:\Windows\system32\IPSECSVC.DLL
2011-10-27 16:23:39 ----A---- C:\Windows\system32\drivers\usbport.sys
2011-10-27 16:23:39 ----A---- C:\Windows\system32\consent.exe
2011-10-27 16:23:38 ----A---- C:\Windows\system32\wpdshext.dll
2011-10-27 16:23:38 ----A---- C:\Windows\system32\webservices.dll
2011-10-27 16:23:38 ----A---- C:\Windows\system32\t2embed.dll
2011-10-27 16:23:38 ----A---- C:\Windows\system32\scrptadm.dll
2011-10-27 16:23:38 ----A---- C:\Windows\system32\pnidui.dll
2011-10-27 16:23:37 ----A---- C:\Windows\system32\tscfgwmi.dll
2011-10-27 16:23:37 ----A---- C:\Windows\system32\netdiagfx.dll
2011-10-27 16:23:37 ----A---- C:\Windows\system32\fde.dll
2011-10-27 16:23:37 ----A---- C:\Windows\system32\drivers\termdd.sys
2011-10-27 16:23:37 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2011-10-27 16:23:37 ----A---- C:\Windows\system32\drivers\rdpdr.sys
2011-10-27 16:23:37 ----A---- C:\Windows\system32\drivers\amdxata.sys
2011-10-27 16:23:36 ----A---- C:\Windows\system32\wuapi.dll
2011-10-27 16:23:36 ----A---- C:\Windows\system32\wscapi.dll
2011-10-27 16:23:36 ----A---- C:\Windows\system32\vmicsvc.exe
2011-10-27 16:23:36 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2011-10-27 16:23:36 ----A---- C:\Windows\system32\SyncCenter.dll
2011-10-27 16:23:36 ----A---- C:\Windows\system32\sdengin2.dll
2011-10-27 16:23:34 ----A---- C:\Windows\system32\wisptis.exe
2011-10-27 16:23:34 ----A---- C:\Windows\system32\WinSCard.dll
2011-10-27 16:23:34 ----A---- C:\Windows\system32\pla.dll
2011-10-27 16:23:34 ----A---- C:\Windows\system32\msasn1.dll
2011-10-27 16:23:34 ----A---- C:\Windows\system32\cscobj.dll
2011-10-27 16:23:33 ----A---- C:\Windows\system32\winsta.dll
2011-10-27 16:23:33 ----A---- C:\Windows\system32\rdpcore.dll
2011-10-27 16:23:33 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2011-10-27 16:23:33 ----A---- C:\Windows\system32\mcmde.dll
2011-10-27 16:23:33 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2011-10-27 16:23:33 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2011-10-27 16:23:32 ----A---- C:\Windows\system32\WUDFSvc.dll
2011-10-27 16:23:32 ----A---- C:\Windows\system32\wiaservc.dll
2011-10-27 16:23:32 ----A---- C:\Windows\system32\setupcl.exe
2011-10-27 16:23:32 ----A---- C:\Windows\system32\ntshrui.dll
2011-10-27 16:23:32 ----A---- C:\Windows\system32\imapi2.dll
2011-10-27 16:23:32 ----A---- C:\Windows\system32\iepeers.dll
2011-10-27 16:23:32 ----A---- C:\Windows\system32\drivers\msahci.sys
2011-10-27 16:23:31 ----A---- C:\Windows\system32\gameux.dll
2011-10-27 16:23:31 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2011-10-27 16:23:31 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2011-10-27 16:23:31 ----A---- C:\Windows\system32\aeinv.dll
2011-10-27 16:23:29 ----A---- C:\Windows\system32\WMPEncEn.dll
2011-10-27 16:23:29 ----A---- C:\Windows\system32\shsvcs.dll
2011-10-27 16:23:29 ----A---- C:\Windows\system32\onex.dll
2011-10-27 16:23:29 ----A---- C:\Windows\system32\mssvp.dll
2011-10-27 16:23:29 ----A---- C:\Windows\system32\dwmredir.dll
2011-10-27 16:23:29 ----A---- C:\Windows\system32\drivers\acpi.sys
2011-10-27 16:23:28 ----A---- C:\Windows\system32\winmm.dll
2011-10-27 16:23:28 ----A---- C:\Windows\system32\vaultsvc.dll
2011-10-27 16:23:28 ----A---- C:\Windows\system32\TabSvc.dll
2011-10-27 16:23:28 ----A---- C:\Windows\system32\rasmans.dll
2011-10-27 16:23:28 ----A---- C:\Windows\system32\hbaapi.dll
2011-10-27 16:23:28 ----A---- C:\Windows\system32\drivers\udfs.sys
2011-10-27 16:23:28 ----A---- C:\Windows\system32\autofmt.exe
2011-10-27 16:23:27 ----A---- C:\Windows\system32\samcli.dll
2011-10-27 16:23:27 ----A---- C:\Windows\system32\netiohlp.dll
2011-10-27 16:23:27 ----A---- C:\Windows\system32\Narrator.exe
2011-10-27 16:23:27 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2011-10-27 16:23:27 ----A---- C:\Windows\system32\bootres.dll
2011-10-27 16:23:27 ----A---- C:\Windows\system32\autochk.exe
2011-10-27 16:23:27 ----A---- C:\Windows\system32\audiodg.exe
2011-10-27 16:23:26 ----A---- C:\Windows\system32\thumbcache.dll
2011-10-27 16:23:26 ----A---- C:\Windows\system32\regapi.dll
2011-10-27 16:23:26 ----A---- C:\Windows\system32\proquota.exe
2011-10-27 16:23:26 ----A---- C:\Windows\system32\msutb.dll
2011-10-27 16:23:26 ----A---- C:\Windows\system32\msinfo32.exe
2011-10-27 16:23:26 ----A---- C:\Windows\system32\mimefilt.dll
2011-10-27 16:23:26 ----A---- C:\Windows\system32\halmacpi.dll
2011-10-27 16:23:26 ----A---- C:\Windows\system32\hal.dll
2011-10-27 16:23:26 ----A---- C:\Windows\system32\autoconv.exe
2011-10-27 16:23:26 ----A---- C:\Windows\system32\AudioSes.dll
2011-10-27 16:23:25 ----A---- C:\Windows\system32\tcpipcfg.dll
2011-10-27 16:23:25 ----A---- C:\Windows\system32\srchadmin.dll
2011-10-27 16:23:25 ----A---- C:\Windows\system32\schtasks.exe
2011-10-27 16:23:25 ----A---- C:\Windows\system32\powercpl.dll
2011-10-27 16:23:25 ----A---- C:\Windows\system32\ipsmsnap.dll
2011-10-27 16:23:25 ----A---- C:\Windows\system32\eapphost.dll
2011-10-27 16:23:24 ----A---- C:\Windows\system32\wcncsvc.dll
2011-10-27 16:23:24 ----A---- C:\Windows\system32\sspicli.dll
2011-10-27 16:23:24 ----A---- C:\Windows\system32\msihnd.dll
2011-10-27 16:23:24 ----A---- C:\Windows\system32\mscorier.dll
2011-10-27 16:23:24 ----A---- C:\Windows\system32\framedyn.dll
2011-10-27 16:23:24 ----A---- C:\Windows\system32\drivers\volmgr.sys
2011-10-27 16:23:23 ----A---- C:\Windows\system32\QAGENT.DLL
2011-10-27 16:23:23 ----A---- C:\Windows\system32\drivers\partmgr.sys
2011-10-27 16:23:23 ----A---- C:\Windows\system32\drivers\netbt.sys
2011-10-27 16:23:23 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2011-10-27 16:23:22 ----A---- C:\Windows\system32\umpo.dll
2011-10-27 16:23:22 ----A---- C:\Windows\system32\netid.dll
2011-10-27 16:23:22 ----A---- C:\Windows\system32\DXP.dll
2011-10-27 16:23:22 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2011-10-27 16:23:22 ----A---- C:\Windows\system32\actxprxy.dll
2011-10-27 16:23:21 ----A---- C:\Windows\system32\wdc.dll
2011-10-27 16:23:21 ----A---- C:\Windows\system32\untfs.dll
2011-10-27 16:23:21 ----A---- C:\Windows\system32\StructuredQuery.dll
2011-10-27 16:23:21 ----A---- C:\Windows\system32\scesrv.dll
2011-10-27 16:23:21 ----A---- C:\Windows\system32\rastls.dll
2011-10-27 16:23:20 ----A---- C:\Windows\system32\Vault.dll
2011-10-27 16:23:20 ----A---- C:\Windows\system32\sdclt.exe
2011-10-27 16:23:20 ----A---- C:\Windows\system32\nci.dll
2011-10-27 16:23:20 ----A---- C:\Windows\system32\drivers\ataport.sys
2011-10-27 16:23:19 ----A---- C:\Windows\system32\WMNetMgr.dll
2011-10-27 16:23:19 ----A---- C:\Windows\system32\wlanpref.dll
2011-10-27 16:23:19 ----A---- C:\Windows\system32\sppsvc.exe
2011-10-27 16:23:19 ----A---- C:\Windows\system32\RpcRtRemote.dll
2011-10-27 16:23:19 ----A---- C:\Windows\system32\ListSvc.dll
2011-10-27 16:23:19 ----A---- C:\Windows\system32\licmgr10.dll
2011-10-27 16:23:18 ----A---- C:\Windows\system32\Robocopy.exe
2011-10-27 16:23:17 ----A---- C:\Windows\system32\taskmgr.exe
2011-10-27 16:23:17 ----A---- C:\Windows\system32\DxpTaskSync.dll
2011-10-27 16:23:17 ----A---- C:\Windows\system32\Display.dll
2011-10-27 16:23:16 ----A---- C:\Windows\system32\XpsRasterService.dll
2011-10-27 16:23:16 ----A---- C:\Windows\system32\userinit.exe
2011-10-27 16:23:16 ----A---- C:\Windows\system32\sharemediacpl.dll
2011-10-27 16:23:16 ----A---- C:\Windows\system32\puiobj.dll
2011-10-27 16:23:16 ----A---- C:\Windows\system32\mtxclu.dll
2011-10-27 16:23:16 ----A---- C:\Windows\system32\mssphtb.dll
2011-10-27 16:23:16 ----A---- C:\Windows\system32\msdri.dll
2011-10-27 16:23:16 ----A---- C:\Windows\system32\drivers\mpio.sys
2011-10-27 16:23:16 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2011-10-27 16:23:15 ----A---- C:\Windows\system32\termmgr.dll
2011-10-27 16:23:15 ----A---- C:\Windows\system32\drivers\usbehci.sys
2011-10-27 16:23:15 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2011-10-27 16:23:15 ----A---- C:\Windows\system32\DiagCpl.dll
2011-10-27 16:23:15 ----A---- C:\Windows\system32\cscui.dll
2011-10-27 16:23:14 ----A---- C:\Windows\system32\eudcedit.exe
2011-10-27 16:23:14 ----A---- C:\Windows\system32\drivers\winhv.sys
2011-10-27 16:23:14 ----A---- C:\Windows\system32\drivers\scsiport.sys
2011-10-27 16:23:13 ----A---- C:\Windows\system32\wiadefui.dll
2011-10-27 16:23:13 ----A---- C:\Windows\system32\shsetup.dll
2011-10-27 16:23:13 ----A---- C:\Windows\system32\rasppp.dll
2011-10-27 16:23:13 ----A---- C:\Windows\system32\msdtctm.dll
2011-10-27 16:23:13 ----A---- C:\Windows\system32\logoncli.dll
2011-10-27 16:23:13 ----A---- C:\Windows\system32\drivers\vmstorfl.sys
2011-10-27 16:23:13 ----A---- C:\Windows\system32\biocpl.dll
2011-10-27 16:23:12 ----A---- C:\Windows\system32\sppcomapi.dll
2011-10-27 16:23:12 ----A---- C:\Windows\system32\msconfig.exe
2011-10-27 16:23:12 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2011-10-27 16:23:12 ----A---- C:\Windows\system32\drivers\storvsc.sys
2011-10-27 16:23:12 ----A---- C:\Windows\system32\cabview.dll
2011-10-27 16:23:11 ----A---- C:\Windows\system32\themecpl.dll
2011-10-27 16:23:11 ----A---- C:\Windows\system32\SensorsCpl.dll
2011-10-27 16:23:10 ----A---- C:\Windows\system32\wpccpl.dll
2011-10-27 16:23:10 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2011-10-27 16:23:10 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2011-10-27 16:23:10 ----A---- C:\Windows\system32\dnscmmc.dll
2011-10-27 16:23:09 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2011-10-27 16:23:09 ----A---- C:\Windows\system32\hgcpl.dll
2011-10-27 16:23:08 ----A---- C:\Windows\system32\tapisrv.dll
2011-10-27 16:23:08 ----A---- C:\Windows\system32\scecli.dll
2011-10-27 16:23:08 ----A---- C:\Windows\system32\mscories.dll
2011-10-27 16:23:08 ----A---- C:\Windows\system32\mscms.dll
2011-10-27 16:23:08 ----A---- C:\Windows\system32\localsec.dll
2011-10-27 16:23:08 ----A---- C:\Windows\system32\fontext.dll
2011-10-27 16:23:08 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2011-10-27 16:23:07 ----A---- C:\Windows\system32\wkssvc.dll
2011-10-27 16:23:07 ----A---- C:\Windows\system32\usercpl.dll
2011-10-27 16:23:07 ----A---- C:\Windows\system32\srcore.dll
2011-10-27 16:23:07 ----A---- C:\Windows\system32\SndVolSSO.dll
2011-10-27 16:23:07 ----A---- C:\Windows\system32\mprddm.dll
2011-10-27 16:23:07 ----A---- C:\Windows\system32\KMSVC.DLL
2011-10-27 16:23:07 ----A---- C:\Windows\system32\iasacct.dll
2011-10-27 16:23:07 ----A---- C:\Windows\system32\drivers\usbhub.sys
2011-10-27 16:23:07 ----A---- C:\Windows\system32\bcdsrv.dll
2011-10-27 16:23:06 ----A---- C:\Windows\system32\wlanui.dll
2011-10-27 16:23:06 ----A---- C:\Windows\system32\VAN.dll
2011-10-27 16:23:06 ----A---- C:\Windows\system32\qedit.dll
2011-10-27 16:23:06 ----A---- C:\Windows\system32\prntvpt.dll
2011-10-27 16:23:06 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2011-10-27 16:23:06 ----A---- C:\Windows\system32\mblctr.exe
2011-10-27 16:23:06 ----A---- C:\Windows\system32\batmeter.dll
2011-10-27 16:23:05 ----A---- C:\Windows\system32\wpdbusenum.dll
2011-10-27 16:23:05 ----A---- C:\Windows\system32\wksprt.exe
2011-10-27 16:23:05 ----A---- C:\Windows\system32\w32tm.exe
2011-10-27 16:23:05 ----A---- C:\Windows\system32\SndVol.exe
2011-10-27 16:23:05 ----A---- C:\Windows\system32\qdvd.dll
2011-10-27 16:23:05 ----A---- C:\Windows\system32\netcenter.dll
2011-10-27 16:23:04 ----A---- C:\Windows\system32\spwizeng.dll
2011-10-27 16:23:04 ----A---- C:\Windows\system32\drivers\ks.sys
2011-10-27 16:23:04 ----A---- C:\Windows\system32\azroleui.dll
2011-10-27 16:23:04 ----A---- C:\Windows\system32\accessibilitycpl.dll
2011-10-27 16:23:03 ----A---- C:\Windows\system32\zipfldr.dll
2011-10-27 16:23:03 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2011-10-27 16:23:03 ----A---- C:\Windows\system32\fdeploy.dll
2011-10-27 16:23:02 ----A---- C:\Windows\system32\networkmap.dll
2011-10-27 16:23:02 ----A---- C:\Windows\system32\netjoin.dll
2011-10-27 16:23:02 ----A---- C:\Windows\system32\cryptui.dll
2011-10-27 16:23:02 ----A---- C:\Windows\system32\adsldp.dll
2011-10-27 16:23:01 ----A---- C:\Windows\system32\wusa.exe
2011-10-27 16:23:01 ----A---- C:\Windows\system32\prnfldr.dll
2011-10-27 16:23:01 ----A---- C:\Windows\system32\mspbda.dll
2011-10-27 16:23:01 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2011-10-27 16:23:01 ----A---- C:\Windows\system32\Faultrep.dll
2011-10-27 16:23:00 ----A---- C:\Windows\system32\taskbarcpl.dll
2011-10-27 16:23:00 ----A---- C:\Windows\system32\sud.dll
2011-10-27 16:23:00 ----A---- C:\Windows\system32\photowiz.dll
2011-10-27 16:23:00 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2011-10-27 16:23:00 ----A---- C:\Windows\system32\msieftp.dll
2011-10-27 16:23:00 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2011-10-27 16:23:00 ----A---- C:\Windows\system32\ActionCenter.dll
2011-10-27 16:22:59 ----A---- C:\Windows\system32\taskhost.exe
2011-10-27 16:22:59 ----A---- C:\Windows\system32\slui.exe
2011-10-27 16:22:59 ----A---- C:\Windows\system32\rdpcorekmts.dll
2011-10-27 16:22:59 ----A---- C:\Windows\system32\iprtrmgr.dll
2011-10-27 16:22:59 ----A---- C:\Windows\system32\iasrad.dll
2011-10-27 16:22:59 ----A---- C:\Windows\system32\drivers\hidclass.sys
2011-10-27 16:22:59 ----A---- C:\Windows\system32\credssp.dll
2011-10-27 16:22:58 ----A---- C:\Windows\system32\sisbkup.dll
2011-10-27 16:22:58 ----A---- C:\Windows\system32\shwebsvc.dll
2011-10-27 16:22:58 ----A---- C:\Windows\system32\ifsutil.dll
2011-10-27 16:22:58 ----A---- C:\Windows\system32\ieUnatt.exe
2011-10-27 16:22:58 ----A---- C:\Windows\system32\halacpi.dll
2011-10-27 16:22:58 ----A---- C:\Windows\system32\ftp.exe
2011-10-27 16:22:58 ----A---- C:\Windows\system32\dot3cfg.dll
2011-10-27 16:22:58 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2011-10-27 16:22:57 ----A---- C:\Windows\system32\wpd_ci.dll
2011-10-27 16:22:57 ----A---- C:\Windows\system32\sdcpl.dll
2011-10-27 16:22:57 ----A---- C:\Windows\system32\recovery.dll
2011-10-27 16:22:57 ----A---- C:\Windows\system32\iesysprep.dll
2011-10-27 16:22:57 ----A---- C:\Windows\system32\efscore.dll
2011-10-27 16:22:57 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2011-10-27 16:22:56 ----A---- C:\Windows\system32\syncui.dll
2011-10-27 16:22:56 ----A---- C:\Windows\system32\rdpwsx.dll
2011-10-27 16:22:56 ----A---- C:\Windows\system32\DeviceCenter.dll
2011-10-27 16:22:56 ----A---- C:\Windows\system32\bcdedit.exe
2011-10-27 16:22:56 ----A---- C:\Windows\system32\autoplay.dll
2011-10-27 16:22:55 ----A---- C:\Windows\system32\wmpmde.dll
2011-10-27 16:22:55 ----A---- C:\Windows\system32\sppnp.dll
2011-10-27 16:22:55 ----A---- C:\Windows\system32\rtutils.dll
2011-10-27 16:22:55 ----A---- C:\Windows\system32\ntlanman.dll
2011-10-27 16:22:55 ----A---- C:\Windows\system32\dskquoui.dll
2011-10-27 16:22:54 ----A---- C:\Windows\system32\vdsutil.dll
2011-10-27 16:22:54 ----A---- C:\Windows\system32\systemcpl.dll
2011-10-27 16:22:54 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2011-10-27 16:22:54 ----A---- C:\Windows\system32\recdisc.exe
2011-10-27 16:22:54 ----A---- C:\Windows\system32\rdpsign.exe
2011-10-27 16:22:54 ----A---- C:\Windows\system32\OobeFldr.dll
2011-10-27 16:22:54 ----A---- C:\Windows\system32\ntprint.dll
2011-10-27 16:22:54 ----A---- C:\Windows\system32\nshwfp.dll
2011-10-27 16:22:54 ----A---- C:\Windows\system32\bcdboot.exe
2011-10-27 16:22:53 ----A---- C:\Windows\system32\sethc.exe
2011-10-27 16:22:53 ----A---- C:\Windows\system32\rstrui.exe
2011-10-27 16:22:53 ----A---- C:\Windows\system32\riched20.dll
2011-10-27 16:22:53 ----A---- C:\Windows\system32\fvecpl.dll
2011-10-27 16:22:53 ----A---- C:\Windows\system32\drivers\tdx.sys
2011-10-27 16:22:53 ----A---- C:\Windows\system32\blackbox.dll
2011-10-27 16:22:52 ----A---- C:\Windows\system32\wmpsrcwp.dll
2011-10-27 16:22:52 ----A---- C:\Windows\system32\netplwiz.dll
2011-10-27 16:22:52 ----A---- C:\Windows\system32\NAPHLPR.DLL
2011-10-27 16:22:52 ----A---- C:\Windows\system32\migisol.dll
2011-10-27 16:22:52 ----A---- C:\Windows\system32\fms.dll
2011-10-27 16:22:52 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2011-10-27 16:22:52 ----A---- C:\Windows\system32\dpx.dll
2011-10-27 16:22:52 ----A---- C:\Windows\system32\AxInstSv.dll
2011-10-27 16:22:52 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2011-10-27 16:22:52 ----A---- C:\Windows\system32\activeds.dll
2011-10-27 16:22:51 ----A---- C:\Windows\system32\wsqmcons.exe
2011-10-27 16:22:51 ----A---- C:\Windows\system32\nshipsec.dll
2011-10-27 16:22:51 ----A---- C:\Windows\system32\nlaapi.dll
2011-10-27 16:22:51 ----A---- C:\Windows\system32\httpapi.dll
2011-10-27 16:22:51 ----A---- C:\Windows\system32\dot3svc.dll
2011-10-27 16:22:51 ----A---- C:\Windows\system32\cdosys.dll
2011-10-27 16:22:51 ----A---- C:\Windows\system32\asycfilt.dll
2011-10-27 16:22:50 ----A---- C:\Windows\system32\wuwebv.dll
2011-10-27 16:22:50 ----A---- C:\Windows\system32\wlanmsm.dll
2011-10-27 16:22:50 ----A---- C:\Windows\system32\wavemsp.dll
2011-10-27 16:22:50 ----A---- C:\Windows\system32\ReAgent.dll
2011-10-27 16:22:50 ----A---- C:\Windows\system32\provsvc.dll
2011-10-27 16:22:50 ----A---- C:\Windows\system32\msftedit.dll
2011-10-27 16:22:50 ----A---- C:\Windows\system32\isoburn.exe
2011-10-27 16:22:50 ----A---- C:\Windows\system32\dot3ui.dll
2011-10-27 16:22:49 ----A---- C:\Windows\system32\wvc.dll
2011-10-27 16:22:49 ----A---- C:\Windows\system32\wtsapi32.dll
2011-10-27 16:22:49 ----A---- C:\Windows\system32\tzutil.exe
2011-10-27 16:22:49 ----A---- C:\Windows\system32\sysclass.dll
2011-10-27 16:22:49 ----A---- C:\Windows\system32\ocsetup.exe
2011-10-27 16:22:49 ----A---- C:\Windows\system32\dsuiext.dll
2011-10-27 16:22:49 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2011-10-27 16:22:49 ----A---- C:\Windows\system32\dfrgui.exe
2011-10-27 16:22:49 ----A---- C:\Windows\system32\appinfo.dll
2011-10-27 16:22:48 ----A---- C:\Windows\system32\wimgapi.dll
2011-10-27 16:22:48 ----A---- C:\Windows\system32\PkgMgr.exe
2011-10-27 16:22:48 ----A---- C:\Windows\system32\mstask.dll
2011-10-27 16:22:48 ----A---- C:\Windows\system32\certprop.dll
2011-10-27 16:22:48 ----A---- C:\Windows\system32\AdmTmpl.dll
2011-10-27 16:22:47 ----A---- C:\Windows\twain_32.dll
2011-10-27 16:22:47 ----A---- C:\Windows\system32\webcheck.dll
2011-10-27 16:22:47 ----A---- C:\Windows\system32\twext.dll
2011-10-27 16:22:47 ----A---- C:\Windows\system32\shdocvw.dll
2011-10-27 16:22:47 ----A---- C:\Windows\system32\setupugc.exe
2011-10-27 16:22:47 ----A---- C:\Windows\system32\qcap.dll
2011-10-27 16:22:47 ----A---- C:\Windows\system32\occache.dll
2011-10-27 16:22:46 ----A---- C:\Windows\system32\uxlib.dll
2011-10-27 16:22:46 ----A---- C:\Windows\system32\SmiEngine.dll
2011-10-27 16:22:46 ----A---- C:\Windows\system32\qasf.dll
2011-10-27 16:22:46 ----A---- C:\Windows\system32\PresentationSettings.exe
2011-10-27 16:22:46 ----A---- C:\Windows\system32\msrating.dll
2011-10-27 16:22:46 ----A---- C:\Windows\system32\msfeedsbs.dll
2011-10-27 16:22:46 ----A---- C:\Windows\system32\imm32.dll
2011-10-27 16:22:45 ----A---- C:\Windows\system32\wwanconn.dll
2011-10-27 16:22:45 ----A---- C:\Windows\system32\ssText3d.scr
2011-10-27 16:22:45 ----A---- C:\Windows\system32\srrstr.dll
2011-10-27 16:22:45 ----A---- C:\Windows\system32\slwga.dll
2011-10-27 16:22:45 ----A---- C:\Windows\system32\msvfw32.dll
2011-10-27 16:22:44 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2011-10-27 16:22:44 ----A---- C:\Windows\system32\wmdrmsdk.dll
2011-10-27 16:22:44 ----A---- C:\Windows\system32\nslookup.exe
2011-10-27 16:22:44 ----A---- C:\Windows\system32\mciavi32.dll
2011-10-27 16:22:44 ----A---- C:\Windows\system32\imgutil.dll
2011-10-27 16:22:44 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2011-10-27 16:22:44 ----A---- C:\Windows\system32\clusapi.dll
2011-10-27 16:22:44 ----A---- C:\Windows\system32\audiodev.dll
2011-10-27 16:22:43 ----A---- C:\Windows\system32\wimserv.exe
2011-10-27 16:22:43 ----A---- C:\Windows\system32\TSpkg.dll
2011-10-27 16:22:43 ----A---- C:\Windows\system32\rdpencom.dll
2011-10-27 16:22:43 ----A---- C:\Windows\system32\perfmon.exe
2011-10-27 16:22:43 ----A---- C:\Windows\system32\msscp.dll
2011-10-27 16:22:43 ----A---- C:\Windows\system32\diskraid.exe
2011-10-27 16:22:43 ----A---- C:\Windows\system32\acppage.dll
2011-10-27 16:22:42 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2011-10-27 16:22:42 ----A---- C:\Windows\system32\sdrsvc.dll
2011-10-27 16:22:42 ----A---- C:\Windows\system32\remotepg.dll
2011-10-27 16:22:42 ----A---- C:\Windows\system32\raschap.dll
2011-10-27 16:22:42 ----A---- C:\Windows\system32\QUTIL.DLL
2011-10-27 16:22:42 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2011-10-27 16:22:42 ----A---- C:\Windows\system32\input.dll
2011-10-27 16:22:42 ----A---- C:\Windows\system32\drmmgrtn.dll
2011-10-27 16:22:42 ----A---- C:\Windows\system32\browser.dll
2011-10-27 16:22:41 ----A---- C:\Windows\system32\wmpdxm.dll
2011-10-27 16:22:41 ----A---- C:\Windows\system32\vpnikeapi.dll
2011-10-27 16:22:41 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2011-10-27 16:22:41 ----A---- C:\Windows\system32\olepro32.dll
2011-10-27 16:22:41 ----A---- C:\Windows\system32\ocsetapi.dll
2011-10-27 16:22:41 ----A---- C:\Windows\system32\nltest.exe
2011-10-27 16:22:41 ----A---- C:\Windows\system32\networkexplorer.dll
2011-10-27 16:22:40 ----A---- C:\Windows\system32\wpdwcn.dll
2011-10-27 16:22:40 ----A---- C:\Windows\system32\vdsbas.dll
2011-10-27 16:22:40 ----A---- C:\Windows\system32\runonce.exe
2011-10-27 16:22:40 ----A---- C:\Windows\system32\onexui.dll
2011-10-27 16:22:40 ----A---- C:\Windows\system32\iTVData.dll
2011-10-27 16:22:40 ----A---- C:\Windows\system32\inseng.dll
2011-10-27 16:22:40 ----A---- C:\Windows\system32\dxdiagn.dll
2011-10-27 16:22:40 ----A---- C:\Windows\bfsvc.exe
2011-10-27 16:22:39 ----A---- C:\Windows\system32\sspisrv.dll
2011-10-27 16:22:39 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2011-10-27 16:22:39 ----A---- C:\Windows\system32\msvidc32.dll
2011-10-27 16:22:39 ----A---- C:\Windows\system32\MFPlay.dll
2011-10-27 16:22:39 ----A---- C:\Windows\system32\Mcx2Svc.dll
2011-10-27 16:22:39 ----A---- C:\Windows\system32\logagent.exe
2011-10-27 16:22:39 ----A---- C:\Windows\system32\eapp3hst.dll
2011-10-27 16:22:38 ----A---- C:\Windows\system32\wmpshell.dll
2011-10-27 16:22:38 ----A---- C:\Windows\system32\wmdrmdev.dll
2011-10-27 16:22:38 ----A---- C:\Windows\system32\shacct.dll
2011-10-27 16:22:38 ----A---- C:\Windows\system32\PnPUnattend.exe
2011-10-27 16:22:38 ----A---- C:\Windows\system32\msiexec.exe
2011-10-27 16:22:38 ----A---- C:\Windows\system32\drivers\rmcast.sys
2011-10-27 16:22:38 ----A---- C:\Windows\system32\d3d10level9.dll
2011-10-27 16:22:37 ----A---- C:\Windows\system32\wudriver.dll
2011-10-27 16:22:37 ----A---- C:\Windows\system32\unimdmat.dll
2011-10-27 16:22:37 ----A---- C:\Windows\system32\tabcal.exe
2011-10-27 16:22:37 ----A---- C:\Windows\system32\sqlcese30.dll
2011-10-27 16:22:37 ----A---- C:\Windows\system32\rdpd3d.dll
2011-10-27 16:22:37 ----A---- C:\Windows\system32\lsmproxy.dll
2011-10-27 16:22:37 ----A---- C:\Windows\system32\iscsium.dll
2011-10-27 16:22:37 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2011-10-27 16:22:37 ----A---- C:\Windows\system32\Bubbles.scr
2011-10-27 16:22:37 ----A---- C:\Windows\system32\bitsadmin.exe
2011-10-27 16:22:36 ----A---- C:\Windows\system32\WPDSp.dll
2011-10-27 16:22:36 ----A---- C:\Windows\system32\srvcli.dll
2011-10-27 16:22:36 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll
2011-10-27 16:22:36 ----A---- C:\Windows\system32\pdh.dll
2011-10-27 16:22:36 ----A---- C:\Windows\system32\OpcServices.dll
2011-10-27 16:22:36 ----A---- C:\Windows\system32\ncryptui.dll
2011-10-27 16:22:36 ----A---- C:\Windows\system32\mprapi.dll
2011-10-27 16:22:36 ----A---- C:\Windows\system32\logman.exe
2011-10-27 16:22:36 ----A---- C:\Windows\system32\cscapi.dll
2011-10-27 16:22:35 ----A---- C:\Windows\system32\wwanprotdim.dll
2011-10-27 16:22:35 ----A---- C:\Windows\system32\WUDFPlatform.dll
2011-10-27 16:22:35 ----A---- C:\Windows\system32\tsgqec.dll
2011-10-27 16:22:35 ----A---- C:\Windows\system32\Ribbons.scr
2011-10-27 16:22:35 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2011-10-27 16:22:35 ----A---- C:\Windows\system32\PortableDeviceStatus.dll
2011-10-27 16:22:35 ----A---- C:\Windows\system32\olethk32.dll
2011-10-27 16:22:35 ----A---- C:\Windows\system32\Mystify.scr
2011-10-27 16:22:35 ----A---- C:\Windows\system32\MdSched.exe
2011-10-27 16:22:35 ----A---- C:\Windows\system32\lpremove.exe
2011-10-27 16:22:35 ----A---- C:\Windows\system32\djoin.exe
2011-10-27 16:22:35 ----A---- C:\Windows\system32\CscMig.dll
2011-10-27 16:22:34 ----A---- C:\Windows\system32\WMPhoto.dll
2011-10-27 16:22:34 ----A---- C:\Windows\system32\WMADMOD.DLL
2011-10-27 16:22:34 ----A---- C:\Windows\system32\utildll.dll
2011-10-27 16:22:34 ----A---- C:\Windows\system32\mapistub.dll
2011-10-27 16:22:34 ----A---- C:\Windows\system32\mapi32.dll
2011-10-27 16:22:34 ----A---- C:\Windows\system32\fphc.dll
2011-10-27 16:22:34 ----A---- C:\Windows\system32\dot3msm.dll
2011-10-27 16:22:34 ----A---- C:\Windows\system32\avifil32.dll
2011-10-27 16:22:34 ----A---- C:\Windows\system32\ActionQueue.dll
2011-10-27 16:22:33 ----A---- C:\Windows\system32\WMVSDECD.DLL
2011-10-27 16:22:33 ----A---- C:\Windows\system32\wmdrmnet.dll
2011-10-27 16:22:33 ----A---- C:\Windows\system32\wiavideo.dll
2011-10-27 16:22:33 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2011-10-27 16:22:33 ----A---- C:\Windows\system32\takeown.exe
2011-10-27 16:22:33 ----A---- C:\Windows\system32\qdv.dll
2011-10-27 16:22:33 ----A---- C:\Windows\system32\iyuv_32.dll
2011-10-27 16:22:33 ----A---- C:\Windows\system32\imagehlp.dll
2011-10-27 16:22:33 ----A---- C:\Windows\system32\EhStorAPI.dll
2011-10-27 16:22:32 ----A---- C:\Windows\system32\WUDFx.dll
2011-10-27 16:22:32 ----A---- C:\Windows\system32\unattend.dll
2011-10-27 16:22:32 ----A---- C:\Windows\system32\sppinst.dll
2011-10-27 16:22:32 ----A---- C:\Windows\system32\qprocess.exe
2011-10-27 16:22:32 ----A---- C:\Windows\system32\QCLIPROV.DLL
2011-10-27 16:22:32 ----A---- C:\Windows\system32\msyuv.dll
2011-10-27 16:22:32 ----A---- C:\Windows\system32\msrle32.dll
2011-10-27 16:22:32 ----A---- C:\Windows\system32\msnetobj.dll
2011-10-27 16:22:32 ----A---- C:\Windows\system32\cmstp.exe
2011-10-27 16:22:32 ----A---- C:\Windows\system32\cca.dll
2011-10-27 16:22:31 ----A---- C:\Windows\system32\WUDFHost.exe
2011-10-27 16:22:31 ----A---- C:\Windows\system32\wsnmp32.dll
2011-10-27 16:22:31 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2011-10-27 16:22:31 ----A---- C:\Windows\system32\vfwwdm32.dll
2011-10-27 16:22:31 ----A---- C:\Windows\system32\setupcln.dll
2011-10-27 16:22:31 ----A---- C:\Windows\system32\RelPost.exe
2011-10-27 16:22:31 ----A---- C:\Windows\system32\pdhui.dll
2011-10-27 16:22:31 ----A---- C:\Windows\system32\MuiUnattend.exe
2011-10-27 16:22:31 ----A---- C:\Windows\system32\basesrv.dll
2011-10-27 16:22:30 ----A---- C:\Windows\system32\wuauclt.exe
2011-10-27 16:22:30 ----A---- C:\Windows\system32\umb.dll
2011-10-27 16:22:30 ----A---- C:\Windows\system32\tsbyuv.dll
2011-10-27 16:22:30 ----A---- C:\Windows\system32\qwinsta.exe
2011-10-27 16:22:30 ----A---- C:\Windows\system32\PrintIsolationProxy.dll
2011-10-27 16:22:30 ----A---- C:\Windows\system32\msorcl32.dll
2011-10-27 16:22:30 ----A---- C:\Windows\system32\msg.exe
2011-10-27 16:22:30 ----A---- C:\Windows\system32\iasrecst.dll
2011-10-27 16:22:30 ----A---- C:\Windows\system32\chglogon.exe
2011-10-27 16:22:30 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2011-10-27 16:22:30 ----A---- C:\Windows\system32\drivers\ndisuio.sys
2011-10-27 16:22:30 ----A---- C:\Windows\system32\AzSqlExt.dll
2011-10-27 16:22:29 ----A---- C:\Windows\system32\wkscli.dll
2011-10-27 16:22:29 ----A---- C:\Windows\system32\WavDest.dll
2011-10-27 16:22:29 ----A---- C:\Windows\system32\sppuinotify.dll
2011-10-27 16:22:29 ----A---- C:\Windows\system32\spbcd.dll
2011-10-27 16:22:29 ----A---- C:\Windows\system32\relog.exe
2011-10-27 16:22:29 ----A---- C:\Windows\system32\rastapi.dll
2011-10-27 16:22:29 ----A---- C:\Windows\system32\quser.exe
2011-10-27 16:22:29 ----A---- C:\Windows\system32\netiougc.exe
2011-10-27 16:22:29 ----A---- C:\Windows\system32\mydocs.dll
2011-10-27 16:22:29 ----A---- C:\Windows\system32\iscsicli.exe
2011-10-27 16:22:29 ----A---- C:\Windows\system32\diskpart.exe
2011-10-27 16:22:29 ----A---- C:\Windows\system32\BdeHdCfg.exe
2011-10-27 16:22:29 ----A---- C:\Windows\system32\amstream.dll
2011-10-27 16:22:28 ----A---- C:\Windows\system32\syssetup.dll
2011-10-27 16:22:28 ----A---- C:\Windows\system32\setbcdlocale.dll
2011-10-27 16:22:28 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2011-10-27 16:22:28 ----A---- C:\Windows\system32\secproc_ssp.dll
2011-10-27 16:22:28 ----A---- C:\Windows\system32\resutils.dll
2011-10-27 16:22:28 ----A---- C:\Windows\system32\nrpsrv.dll
2011-10-27 16:22:28 ----A---- C:\Windows\system32\netbtugc.exe
2011-10-27 16:22:28 ----A---- C:\Windows\system32\MultiDigiMon.exe
2011-10-27 16:22:28 ----A---- C:\Windows\system32\itircl.dll
2011-10-27 16:22:28 ----A---- C:\Windows\system32\CertPolEng.dll
2011-10-27 16:22:27 ----A---- C:\Windows\system32\wuapp.exe
2011-10-27 16:22:27 ----A---- C:\Windows\system32\wmpps.dll
2011-10-27 16:22:27 ----A---- C:\Windows\system32\WerFaultSecure.exe
2011-10-27 16:22:27 ----A---- C:\Windows\system32\tsdiscon.exe
2011-10-27 16:22:27 ----A---- C:\Windows\system32\tscon.exe
2011-10-27 16:22:27 ----A---- C:\Windows\system32\secur32.dll
2011-10-27 16:22:27 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2011-10-27 16:22:27 ----A---- C:\Windows\system32\ReAgentc.exe
2011-10-27 16:22:27 ----A---- C:\Windows\system32\qappsrv.exe
2011-10-27 16:22:27 ----A---- C:\Windows\system32\PrintBrmUi.exe
2011-10-27 16:22:27 ----A---- C:\Windows\system32\chgusr.exe
2011-10-27 16:22:27 ----A---- C:\Windows\system32\chgport.exe
2011-10-27 16:22:27 ----A---- C:\Windows\system32\FXSTIFF.dll
2011-10-27 16:22:27 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2011-10-27 16:22:26 ----A---- C:\Windows\system32\wiarpc.dll
2011-10-27 16:22:26 ----A---- C:\Windows\system32\tskill.exe
2011-10-27 16:22:26 ----A---- C:\Windows\system32\tlscsp.dll
2011-10-27 16:22:26 ----A---- C:\Windows\system32\shadow.exe
2011-10-27 16:22:26 ----A---- C:\Windows\system32\rwinsta.exe
2011-10-27 16:22:26 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2011-10-27 16:22:26 ----A---- C:\Windows\system32\netutils.dll
2011-10-27 16:22:26 ----A---- C:\Windows\system32\mobsync.exe
2011-10-27 16:22:26 ----A---- C:\Windows\system32\mciqtz32.dll
2011-10-27 16:22:26 ----A---- C:\Windows\system32\logoff.exe
2011-10-27 16:22:26 ----A---- C:\Windows\system32\findstr.exe
2011-10-27 16:22:26 ----A---- C:\Windows\system32\eappgnui.dll
2011-10-27 16:22:25 ----A---- C:\Windows\system32\sppc.dll
2011-10-27 16:22:25 ----A---- C:\Windows\system32\spopk.dll
2011-10-27 16:22:25 ----A---- C:\Windows\system32\shimgvw.dll
2011-10-27 16:22:25 ----A---- C:\Windows\system32\prevhost.exe
2011-10-27 16:22:25 ----A---- C:\Windows\system32\netapi32.dll
2011-10-27 16:22:25 ----A---- C:\Windows\system32\muifontsetup.dll
2011-10-27 16:22:25 ----A---- C:\Windows\system32\iccvid.dll
2011-10-27 16:22:25 ----A---- C:\Windows\system32\drivers\tdi.sys
2011-10-27 16:22:25 ----A---- C:\Windows\system32\dosx.exe
2011-10-27 16:22:25 ----A---- C:\Windows\system32\cabinet.dll
2011-10-27 16:22:24 ----A---- C:\Windows\system32\wdiasqmmodule.dll
2011-10-27 16:22:24 ----A---- C:\Windows\system32\vmstorfltres.dll
2011-10-27 16:22:24 ----A---- C:\Windows\system32\vmicres.dll
2011-10-27 16:22:24 ----A---- C:\Windows\system32\unlodctr.exe
2011-10-27 16:22:24 ----A---- C:\Windows\system32\reset.exe
2011-10-27 16:22:24 ----A---- C:\Windows\system32\repair-bde.exe
2011-10-27 16:22:24 ----A---- C:\Windows\system32\rdprefdrvapi.dll
2011-10-27 16:22:24 ----A---- C:\Windows\system32\query.exe
2011-10-27 16:22:24 ----A---- C:\Windows\system32\netcfg.exe
2011-10-27 16:22:24 ----A---- C:\Windows\system32\msdmo.dll
2011-10-27 16:22:24 ----A---- C:\Windows\system32\manage-bde.exe
2011-10-27 16:22:24 ----A---- C:\Windows\system32\luainstall.dll
2011-10-27 16:22:24 ----A---- C:\Windows\system32\inetmib1.dll
2011-10-27 16:22:24 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2011-10-27 16:22:24 ----A---- C:\Windows\system32\drivers\usbrpm.sys
2011-10-27 16:22:24 ----A---- C:\Windows\system32\drivers\CompositeBus.sys
2011-10-27 16:22:23 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2011-10-27 16:22:23 ----A---- C:\Windows\system32\change.exe
2011-10-27 16:22:23 ----A---- C:\Windows\system32\drivers\cdrom.sys
2011-10-27 16:22:22 ----A---- C:\Windows\system32\wups.dll
2011-10-27 16:22:22 ----A---- C:\Windows\system32\vmbusres.dll
2011-10-27 16:22:22 ----A---- C:\Windows\system32\UIRibbonRes.dll
2011-10-27 16:22:22 ----A---- C:\Windows\system32\profprov.dll
2011-10-27 16:22:22 ----A---- C:\Windows\system32\perfts.dll
2011-10-27 16:22:22 ----A---- C:\Windows\system32\odbcconf.dll
2011-10-27 16:22:22 ----A---- C:\Windows\system32\browcli.dll
2011-10-27 16:22:21 ----A---- C:\Windows\system32\icaapi.dll
2011-10-27 16:22:21 ----A---- C:\Windows\system32\FXSMON.dll
2011-10-27 16:22:21 ----A---- C:\Windows\system32\drivers\dfsc.sys
2011-10-27 16:22:20 ----A---- C:\Windows\system32\TRAPI.dll
2011-10-27 16:22:20 ----A---- C:\Windows\system32\RDPENCDD.dll
2011-10-27 16:22:20 ----A---- C:\Windows\system32\msfeedssync.exe
2011-10-27 16:22:20 ----A---- C:\Windows\system32\elsTrans.dll
2011-10-27 16:22:20 ----A---- C:\Windows\system32\drivers\tunnel.sys
2011-10-27 16:22:20 ----A---- C:\Windows\system32\bitsperf.dll
2011-10-27 16:22:19 ----A---- C:\Windows\system32\wshbth.dll
2011-10-27 16:22:19 ----A---- C:\Windows\system32\schedcli.dll
2011-10-27 16:22:19 ----A---- C:\Windows\system32\napdsnap.dll
2011-10-27 16:22:19 ----A---- C:\Windows\system32\LogonUI.exe
2011-10-27 16:22:19 ----A---- C:\Windows\system32\dsauth.dll
2011-10-27 16:22:19 ----A---- C:\Windows\system32\cscdll.dll
2011-10-27 16:22:18 ----A---- C:\Windows\system32\sscore.dll
2011-10-27 16:22:18 ----A---- C:\Windows\system32\drivers\acpipmi.sys
2011-10-27 16:22:17 ----A---- C:\Windows\system32\wups2.dll
2011-10-27 16:22:17 ----A---- C:\Windows\system32\wsdchngr.dll
2011-10-27 16:22:17 ----A---- C:\Windows\system32\shgina.dll
2011-10-27 16:22:17 ----A---- C:\Windows\system32\riched32.dll
2011-10-27 16:22:17 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2011-10-27 16:22:16 ----A---- C:\Windows\system32\rdpcfgex.dll
2011-10-27 16:22:16 ----A---- C:\Windows\system32\drivers\VMBusHID.sys
2011-10-27 16:22:16 ----A---- C:\Windows\system32\drivers\hidusb.sys
2011-10-27 16:22:16 ----A---- C:\Windows\system32\drivers\appid.sys
2011-10-27 16:22:15 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2011-10-27 16:22:14 ----A---- C:\Windows\system32\wshirda.dll
2011-10-27 16:22:14 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2011-10-27 16:22:13 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2011-10-27 16:22:13 ----A---- C:\Windows\system32\drivers\USBCAMD.sys
2011-10-27 16:22:13 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2011-10-27 16:22:12 ----A---- C:\Windows\system32\vmictimeprovider.dll
2011-10-27 16:22:12 ----A---- C:\Windows\system32\VmdCoinstall.dll
2011-10-27 16:22:12 ----A---- C:\Windows\system32\vmbuspipe.dll
2011-10-27 16:22:12 ----A---- C:\Windows\system32\VmbusCoinstaller.dll
2011-10-27 16:22:12 ----A---- C:\Windows\system32\spwmp.dll
2011-10-27 16:22:12 ----A---- C:\Windows\system32\IcCoinstall.dll
2011-10-27 16:22:12 ----A---- C:\Windows\system32\drivers\wanarp.sys
2011-10-27 16:22:12 ----A---- C:\Windows\system32\drivers\umbus.sys
2011-10-27 16:22:12 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2011-10-27 16:22:12 ----A---- C:\Windows\system32\drivers\tdpipe.sys
2011-10-27 16:22:12 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2011-10-27 16:22:12 ----A---- C:\Windows\system32\browseui.dll
2011-10-27 16:22:11 ----A---- C:\Windows\system32\shunimpl.dll
2011-10-27 16:22:11 ----A---- C:\Windows\system32\RDPREFDD.dll
2011-10-27 16:22:11 ----A---- C:\Windows\system32\dxmasf.dll
2011-10-27 16:22:11 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2011-10-27 16:22:11 ----A---- C:\Windows\system32\drivers\sffp_sd.sys
2011-10-27 16:22:11 ----A---- C:\Windows\system32\drivers\scfilter.sys
2011-10-27 16:22:11 ----A---- C:\Windows\system32\drivers\RDPCDD.sys
2011-10-27 16:22:11 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2011-10-27 16:22:11 ----A---- C:\Windows\system32\C_ISCII.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\wmploc.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDUS.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDUGHR1.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDTURME.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDTAJIK.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDSF.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDNEPR.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDMON.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDMAORI.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDLT1.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\kbdlk41a.dll
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDINTEL.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDINTAM.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDINORI.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDINMAR.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDINKAN.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDINHIN.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDGEO.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDBULG.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDBLR.DLL
2011-10-27 16:22:09 ----A---- C:\Windows\system32\KBDBASH.DLL
2011-10-27 16:22:08 ----A---- C:\Windows\system32\spwizres.dll
2011-10-27 16:22:08 ----A---- C:\Windows\system32\pifmgr.dll
2011-10-27 16:22:08 ----A---- C:\Windows\system32\nlsbres.dll
2011-10-27 16:22:08 ----A---- C:\Windows\system32\KBDTUQ.DLL
2011-10-27 16:22:08 ----A---- C:\Windows\system32\KBDTUF.DLL
2011-10-27 16:22:08 ----A---- C:\Windows\system32\KBDSG.DLL
2011-10-27 16:22:08 ----A---- C:\Windows\system32\KBDPO.DLL
2011-10-27 16:22:08 ----A---- C:\Windows\system32\KBDINBEN.DLL
2011-10-27 16:22:08 ----A---- C:\Windows\system32\KBDGR1.DLL
2011-10-27 16:22:08 ----A---- C:\Windows\system32\KBDGKL.DLL
2011-10-27 16:22:08 ----A---- C:\Windows\system32\KBDCZ1.DLL
2011-10-27 16:22:08 ----A---- C:\Windows\system32\drivers\vms3cap.sys
2011-10-27 16:22:08 ----A---- C:\Windows\system32\dpnaddr.dll
2011-10-27 16:22:08 ----A---- C:\Windows\system32\BlbEvents.dll
2011-10-27 16:21:56 ----A---- C:\Windows\system32\wdscore.dll
2011-10-27 16:21:45 ----A---- C:\Windows\system32\wbemcomn.dll
2011-10-27 16:21:40 ----A---- C:\Windows\system32\sqmapi.dll
2011-10-27 07:15:53 ----A---- C:\Windows\system32\MRT.exe
2011-10-27 07:12:32 ----A---- C:\Windows\system32\browserchoice.exe
2011-10-27 07:08:14 ----A---- C:\Windows\system32\drivers\srv2.sys
2011-10-27 07:08:14 ----A---- C:\Windows\system32\drivers\srv.sys
2011-10-27 07:08:13 ----A---- C:\Windows\system32\drivers\srvnet.sys
2011-10-27 07:08:11 ----A---- C:\Windows\system32\drivers\afd.sys
2011-10-27 07:08:09 ----A---- C:\Windows\system32\jscript.dll
2011-10-27 07:08:08 ----A---- C:\Windows\system32\vbscript.dll
2011-10-27 07:07:57 ----A---- C:\Windows\system32\ntoskrnl.exe
2011-10-27 07:07:53 ----A---- C:\Windows\system32\ntkrnlpa.exe
2011-10-27 07:07:52 ----A---- C:\Windows\system32\dnsrslvr.dll
2011-10-27 07:07:52 ----A---- C:\Windows\system32\dnsapi.dll
2011-10-27 07:07:51 ----A---- C:\Windows\system32\dnscacheugc.exe
2011-10-27 07:07:50 ----A---- C:\Windows\system32\fontsub.dll
2011-10-27 07:07:50 ----A---- C:\Windows\system32\atmlib.dll
2011-10-27 07:07:50 ----A---- C:\Windows\system32\atmfd.dll
2011-10-27 07:07:33 ----A---- C:\Windows\system32\psisdecd.dll
2011-10-27 07:07:30 ----A---- C:\Windows\system32\umpnpmgr.dll
2011-10-27 07:07:30 ----A---- C:\Windows\system32\cfgmgr32.dll
2011-10-27 07:07:17 ----A---- C:\Windows\system32\kerberos.dll
2011-10-27 07:07:15 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2011-10-27 07:07:15 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2011-10-27 07:07:15 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2011-10-27 07:07:13 ----A---- C:\Windows\system32\oleaut32.dll
2011-10-27 07:07:13 ----A---- C:\Windows\system32\oleacc.dll
2011-10-27 07:07:07 ----A---- C:\Windows\system32\tzres.dll
2011-10-27 07:06:54 ----A---- C:\Windows\system32\drivers\tcpip.sys
2011-10-27 07:06:53 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2011-10-27 07:06:52 ----A---- C:\Windows\system32\inetcomm.dll
2011-10-27 07:06:33 ----A---- C:\Windows\system32\win32k.sys
2011-10-27 07:06:26 ----A---- C:\Windows\system32\WFS.exe
2011-10-27 07:06:26 ----A---- C:\Windows\system32\FXSCOVER.exe
2011-10-27 07:06:24 ----A---- C:\Windows\system32\CPFilters.dll
2011-10-27 07:06:23 ----A---- C:\Windows\system32\sbe.dll
2011-10-27 07:06:23 ----A---- C:\Windows\system32\EncDec.dll
2011-10-27 07:06:10 ----A---- C:\Windows\system32\kernel32.dll
2011-10-27 07:06:09 ----A---- C:\Windows\system32\KernelBase.dll
2011-10-27 07:06:08 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2011-10-27 07:06:08 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2011-10-27 07:06:08 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2011-10-27 07:06:08 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2011-10-27 07:06:08 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2011-10-27 07:06:08 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2011-10-27 07:06:08 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2011-10-27 07:06:08 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2011-10-27 07:06:08 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2011-10-27 07:06:08 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2011-10-27 07:06:08 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2011-10-27 07:06:08 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2011-10-27 07:06:08 ----A---- C:\Windows\system32\winsrv.dll
2011-10-27 07:06:08 ----A---- C:\Windows\system32\conhost.exe
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2011-10-27 07:06:07 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2011-10-27 07:05:58 ----A---- C:\Windows\system32\ieframe.dll
2011-10-27 07:05:54 ----A---- C:\Windows\system32\mshtml.dll
2011-10-27 07:05:48 ----A---- C:\Windows\system32\wininet.dll
2011-10-27 07:05:46 ----A---- C:\Windows\system32\iertutil.dll
2011-10-27 07:05:45 ----A---- C:\Windows\system32\urlmon.dll
2011-10-27 07:05:44 ----A---- C:\Windows\system32\msfeeds.dll
2011-10-27 07:05:43 ----A---- C:\Windows\system32\mshtmled.dll
2011-10-27 07:05:43 ----A---- C:\Windows\system32\ieui.dll
2011-10-27 07:05:42 ----A---- C:\Windows\system32\url.dll
2011-10-27 07:05:42 ----A---- C:\Windows\system32\jsproxy.dll
2011-10-27 07:05:35 ----A---- C:\Windows\system32\odbcjt32.dll
2011-10-27 07:05:34 ----A---- C:\Windows\system32\odbccu32.dll
2011-10-27 07:05:34 ----A---- C:\Windows\system32\odbccr32.dll
2011-10-27 07:05:34 ----A---- C:\Windows\system32\odbccp32.dll
2011-10-27 07:05:33 ----A---- C:\Windows\system32\odbctrac.dll
2011-10-27 07:05:14 ----A---- C:\Windows\system32\mfc42.dll
2011-10-27 07:05:13 ----A---- C:\Windows\system32\mfc42u.dll
2011-10-27 07:05:07 ----A---- C:\Windows\system32\drivers\bowser.sys
2011-10-27 07:05:02 ----A---- C:\Windows\system32\poqexec.exe
2011-10-27 06:55:08 ----D---- C:\Program Files\Screamer Radio
2011-10-26 15:50:26 ----A---- C:\Windows\system32\drivers\PnkBstrK.sys
2011-10-26 15:50:26 ----A---- C:\Users\Spash\AppData\Roaming\PnkBstrK.sys
2011-10-26 15:50:02 ----A---- C:\Windows\system32\PnkBstrB.exe
2011-10-26 15:50:00 ----A---- C:\Windows\system32\PnkBstrA.exe
2011-10-26 15:49:31 ----D---- C:\Windows\system32\RTCOM
2011-10-26 15:48:37 ----A---- C:\Windows\system32\WavesLib.dll
2011-10-26 15:48:36 ----A---- C:\Windows\system32\WavesGUILib.dll
2011-10-26 15:48:36 ----A---- C:\Windows\system32\tosade.dll
2011-10-26 15:48:36 ----A---- C:\Windows\system32\TepeqAPO.dll
2011-10-26 15:48:36 ----A---- C:\Windows\system32\tadefxapo2.dll
2011-10-26 15:48:36 ----A---- C:\Windows\system32\tadefxapo.dll
2011-10-26 15:48:36 ----A---- C:\Windows\system32\SRSWOW.dll
2011-10-26 15:48:36 ----A---- C:\Windows\system32\SRSTSXT.dll
2011-10-26 15:48:36 ----A---- C:\Windows\system32\SRSTSHD.dll
2011-10-26 15:48:36 ----A---- C:\Windows\system32\SRSHP360.dll
2011-10-26 15:48:36 ----A---- C:\Windows\system32\SFNHK.dll
2011-10-26 15:48:36 ----A---- C:\Windows\system32\SFCOM.dll
2011-10-26 15:48:36 ----A---- C:\Windows\system32\SFAPO.dll
2011-10-26 15:48:35 ----A---- C:\Windows\system32\RtkPgExt.dll
2011-10-26 15:48:35 ----A---- C:\Windows\system32\RtkCoInst.dll
2011-10-26 15:48:35 ----A---- C:\Windows\system32\drivers\RTKVHDA.sys
2011-10-26 15:48:34 ----A---- C:\Windows\system32\RtkApoApi.dll
2011-10-26 15:48:34 ----A---- C:\Windows\system32\RtkAPO.dll
2011-10-26 15:48:34 ----A---- C:\Windows\system32\RTEEP32A.dll
2011-10-26 15:48:34 ----A---- C:\Windows\system32\RTEEL32A.dll
2011-10-26 15:48:34 ----A---- C:\Windows\system32\RTEEG32A.dll
2011-10-26 15:48:34 ----A---- C:\Windows\system32\RTEED32A.dll
2011-10-26 15:48:34 ----A---- C:\Windows\system32\RP3DHT32.dll
2011-10-26 15:48:34 ----A---- C:\Windows\system32\RP3DAA32.dll
2011-10-26 15:48:34 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2011-10-26 15:48:33 ----A---- C:\Windows\system32\RCoRes.dat
2011-10-26 15:48:33 ----A---- C:\Windows\system32\R4EEP32A.dll
2011-10-26 15:48:33 ----A---- C:\Windows\system32\R4EEL32A.dll
2011-10-26 15:48:33 ----A---- C:\Windows\system32\R4EEG32A.dll
2011-10-26 15:48:33 ----A---- C:\Windows\system32\R4EED32A.dll
2011-10-26 15:48:33 ----A---- C:\Windows\system32\R4EEA32A.dll
2011-10-26 15:48:33 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2011-10-26 15:48:33 ----A---- C:\Windows\system32\MaxxAudioRealtek.dll
2011-10-26 15:48:33 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2011-10-26 15:48:33 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2011-10-26 15:48:33 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2011-10-26 15:48:33 ----A---- C:\Windows\system32\MaxxAudioAPO.dll
2011-10-26 15:48:33 ----A---- C:\Windows\system32\KAAPORT.dll
2011-10-26 15:48:27 ----A---- C:\Windows\system32\FMAPO.dll
2011-10-26 15:48:27 ----A---- C:\Windows\system32\DTSVoiceClarityDLL.dll
2011-10-26 15:48:27 ----A---- C:\Windows\system32\DTSU2PREC32.dll
2011-10-26 15:48:27 ----A---- C:\Windows\system32\DTSU2PLFX32.dll
2011-10-26 15:48:27 ----A---- C:\Windows\system32\DTSU2PGFX32.dll
2011-10-26 15:48:27 ----A---- C:\Windows\system32\DTSSymmetryDLL.dll
2011-10-26 15:48:27 ----A---- C:\Windows\system32\DTSS2SpeakerDLL.dll
2011-10-26 15:48:26 ----D---- C:\Program Files\Realtek
2011-10-26 15:48:26 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL.dll
2011-10-26 15:48:26 ----A---- C:\Windows\system32\DTSNeoPCDLL.dll
2011-10-26 15:48:26 ----A---- C:\Windows\system32\DTSLimiterDLL.dll
2011-10-26 15:48:26 ----A---- C:\Windows\system32\DTSLFXAPO.dll
2011-10-26 15:48:26 ----A---- C:\Windows\system32\DTSGFXAPONS.dll
2011-10-26 15:48:26 ----A---- C:\Windows\system32\DTSGFXAPO.dll
2011-10-26 15:48:26 ----A---- C:\Windows\system32\DTSGainCompensatorDLL.dll
2011-10-26 15:48:26 ----A---- C:\Windows\system32\DTSBoostDLL.dll
2011-10-26 15:48:26 ----A---- C:\Windows\system32\DTSBassEnhancementDLL.dll
2011-10-26 15:48:26 ----A---- C:\Windows\system32\AERTARen.dll
2011-10-26 15:48:26 ----A---- C:\Windows\system32\AERTACap.dll
2011-10-26 15:48:25 ----HD---- C:\Program Files\InstallShield Installation Information
2011-10-26 15:48:12 ----HD---- C:\Program Files\Temp
2011-10-26 15:48:11 ----A---- C:\Windows\RtlExUpd.dll
2011-10-26 15:42:50 ----D---- C:\Windows\Panther
2011-10-26 15:42:38 ----RASH---- C:\BOOTSECT.BAK
2011-10-26 15:42:36 ----SHD---- C:\Boot
2011-10-26 15:38:01 ----HD---- C:\Program Files\Common Files\EAInstaller
2011-10-26 15:37:34 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2011-10-26 15:37:33 ----A---- C:\Windows\system32\XAudio2_7.dll
2011-10-26 15:37:33 ----A---- C:\Windows\system32\xactengine3_7.dll
2011-10-26 15:37:33 ----A---- C:\Windows\system32\D3DX9_43.dll
2011-10-26 15:37:33 ----A---- C:\Windows\system32\d3dx11_43.dll
2011-10-26 15:37:33 ----A---- C:\Windows\system32\d3dx10_43.dll
2011-10-26 15:37:33 ----A---- C:\Windows\system32\d3dcsx_43.dll
2011-10-26 15:37:33 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2011-10-26 15:37:32 ----A---- C:\Windows\system32\XAudio2_6.dll
2011-10-26 15:37:32 ----A---- C:\Windows\system32\XAudio2_5.dll
2011-10-26 15:37:32 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2011-10-26 15:37:32 ----A---- C:\Windows\system32\xactengine3_6.dll
2011-10-26 15:37:32 ----A---- C:\Windows\system32\xactengine3_5.dll
2011-10-26 15:37:32 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2011-10-26 15:37:32 ----A---- C:\Windows\system32\d3dcsx_42.dll
2011-10-26 15:37:32 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2011-10-26 15:37:31 ----A---- C:\Windows\system32\D3DX9_42.dll
2011-10-26 15:37:31 ----A---- C:\Windows\system32\D3DX9_41.dll
2011-10-26 15:37:31 ----A---- C:\Windows\system32\d3dx11_42.dll
2011-10-26 15:37:31 ----A---- C:\Windows\system32\d3dx10_42.dll
2011-10-26 15:37:31 ----A---- C:\Windows\system32\d3dx10_41.dll
2011-10-26 15:37:31 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2011-10-26 15:37:30 ----A---- C:\Windows\system32\XAudio2_4.dll
2011-10-26 15:37:30 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2011-10-26 15:37:30 ----A---- C:\Windows\system32\xactengine3_4.dll
2011-10-26 15:37:30 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2011-10-26 15:37:30 ----A---- C:\Windows\system32\D3DX9_40.dll
2011-10-26 15:37:30 ----A---- C:\Windows\system32\d3dx10_40.dll
2011-10-26 15:37:30 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2011-10-26 15:37:29 ----A---- C:\Windows\system32\XAudio2_3.dll
2011-10-26 15:37:29 ----A---- C:\Windows\system32\XAudio2_2.dll
2011-10-26 15:37:29 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2011-10-26 15:37:29 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2011-10-26 15:37:29 ----A---- C:\Windows\system32\xactengine3_3.dll
2011-10-26 15:37:29 ----A---- C:\Windows\system32\xactengine3_2.dll
2011-10-26 15:37:29 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2011-10-26 15:37:29 ----A---- C:\Windows\system32\D3DX9_39.dll
2011-10-26 15:37:29 ----A---- C:\Windows\system32\d3dx10_39.dll
2011-10-26 15:37:29 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2011-10-26 15:37:28 ----A---- C:\Windows\system32\XAudio2_1.dll
2011-10-26 15:37:28 ----A---- C:\Windows\system32\XAudio2_0.dll
2011-10-26 15:37:28 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2011-10-26 15:37:28 ----A---- C:\Windows\system32\xactengine3_1.dll
2011-10-26 15:37:28 ----A---- C:\Windows\system32\xactengine3_0.dll
2011-10-26 15:37:28 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2011-10-26 15:37:28 ----A---- C:\Windows\system32\D3DX9_38.dll
2011-10-26 15:37:28 ----A---- C:\Windows\system32\d3dx10_38.dll
2011-10-26 15:37:28 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2011-10-26 15:37:27 ----A---- C:\Windows\system32\xactengine2_10.dll
2011-10-26 15:37:27 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2011-10-26 15:37:27 ----A---- C:\Windows\system32\D3DX9_37.dll
2011-10-26 15:37:27 ----A---- C:\Windows\system32\d3dx10_37.dll
2011-10-26 15:37:27 ----A---- C:\Windows\system32\d3dx10_36.dll
2011-10-26 15:37:27 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2011-10-26 15:37:27 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2011-10-26 15:37:26 ----A---- C:\Windows\system32\xactengine2_9.dll
2011-10-26 15:37:26 ----A---- C:\Windows\system32\xactengine2_8.dll
2011-10-26 15:37:26 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2011-10-26 15:37:26 ----A---- C:\Windows\system32\d3dx9_36.dll
2011-10-26 15:37:26 ----A---- C:\Windows\system32\d3dx9_35.dll
2011-10-26 15:37:26 ----A---- C:\Windows\system32\d3dx10_35.dll
2011-10-26 15:37:26 ----A---- C:\Windows\system32\d3dx10_34.dll
2011-10-26 15:37:26 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2011-10-26 15:37:26 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2011-10-26 15:37:25 ----A---- C:\Windows\system32\xinput1_3.dll
2011-10-26 15:37:25 ----A---- C:\Windows\system32\xactengine2_7.dll
2011-10-26 15:37:25 ----A---- C:\Windows\system32\d3dx9_34.dll
2011-10-26 15:37:25 ----A---- C:\Windows\system32\d3dx9_33.dll
2011-10-26 15:37:25 ----A---- C:\Windows\system32\d3dx10_33.dll
2011-10-26 15:37:25 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2011-10-26 15:37:24 ----A---- C:\Windows\system32\xactengine2_6.dll
2011-10-26 15:37:24 ----A---- C:\Windows\system32\xactengine2_5.dll
2011-10-26 15:37:24 ----A---- C:\Windows\system32\xactengine2_4.dll
2011-10-26 15:37:24 ----A---- C:\Windows\system32\x3daudio1_1.dll
2011-10-26 15:37:24 ----A---- C:\Windows\system32\d3dx9_32.dll
2011-10-26 15:37:24 ----A---- C:\Windows\system32\d3dx9_31.dll
2011-10-26 15:37:24 ----A---- C:\Windows\system32\d3dx10.dll
2011-10-26 15:37:23 ----A---- C:\Windows\system32\xinput1_2.dll
2011-10-26 15:37:23 ----A---- C:\Windows\system32\xinput1_1.dll
2011-10-26 15:37:23 ----A---- C:\Windows\system32\xactengine2_3.dll
2011-10-26 15:37:23 ----A---- C:\Windows\system32\xactengine2_2.dll
2011-10-26 15:37:23 ----A---- C:\Windows\system32\xactengine2_1.dll
2011-10-26 15:37:20 ----A---- C:\Windows\system32\d3dx9_30.dll
2011-10-26 15:37:19 ----A---- C:\Windows\system32\xactengine2_0.dll
2011-10-26 15:37:19 ----A---- C:\Windows\system32\x3daudio1_0.dll
2011-10-26 15:37:19 ----A---- C:\Windows\system32\d3dx9_29.dll
2011-10-26 15:37:19 ----A---- C:\Windows\system32\d3dx9_28.dll
2011-10-26 15:37:19 ----A---- C:\Windows\system32\d3dx9_27.dll
2011-10-26 15:37:19 ----A---- C:\Windows\system32\d3dx9_26.dll
2011-10-26 15:37:18 ----A---- C:\Windows\system32\d3dx9_25.dll
2011-10-26 15:37:18 ----A---- C:\Windows\system32\d3dx9_24.dll
2011-10-26 15:36:16 ----N---- C:\Windows\system32\MpSigStub.exe
2011-10-26 15:20:44 ----RA---- C:\Windows\system32\pbsvc.exe
2011-10-26 15:09:59 ----D---- C:\ProgramData\NVIDIA
2011-10-26 15:09:54 ----A---- C:\Windows\system32\nvvsvc.exe
2011-10-26 15:09:54 ----A---- C:\Windows\system32\nvsvc.dll
2011-10-26 15:09:54 ----A---- C:\Windows\system32\nvshext.dll
2011-10-26 15:09:54 ----A---- C:\Windows\system32\nvmctray.dll
2011-10-26 15:09:54 ----A---- C:\Windows\system32\nvcpl.dll
2011-10-26 15:09:54 ----A---- C:\Windows\system32\easyupdatusapiu.dll
2011-10-26 15:09:38 ----D---- C:\ProgramData\NVIDIA Corporation
2011-10-26 15:08:54 ----A---- C:\Windows\system32\OpenCL.dll
2011-10-26 15:08:53 ----A---- C:\Windows\system32\nvoglv32.dll
2011-10-26 15:08:53 ----A---- C:\Windows\system32\nvgenco32.dll
2011-10-26 15:08:53 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2011-10-26 15:08:52 ----A---- C:\Windows\system32\nvdispco32.dll
2011-10-26 15:08:52 ----A---- C:\Windows\system32\nvcuvid.dll
2011-10-26 15:08:52 ----A---- C:\Windows\system32\nvcuvenc.dll
2011-10-26 15:08:51 ----A---- C:\Windows\system32\nvcuda.dll
2011-10-26 15:08:51 ----A---- C:\Windows\system32\nvcompiler.dll
2011-10-26 15:08:51 ----A---- C:\Windows\system32\nvapi.dll
Re: Trojský kôň Win32/Agent.SDG.Gen - prosím o pomoc
2011-10-26 15:08:27 ----D---- C:\Users\Spash\AppData\Roaming\Macromedia
2011-10-26 15:08:26 ----D---- C:\Users\Spash\AppData\Roaming\Adobe
2011-10-26 15:07:19 ----D---- C:\Program Files\Common Files\InstallShield
2011-10-26 15:04:50 ----D---- C:\Users\Spash\AppData\Roaming\HEXelon
2011-10-26 15:04:02 ----D---- C:\Program Files\TC UP
2011-10-26 15:00:24 ----D---- C:\Program Files\NVIDIA Corporation
2011-10-26 14:59:17 ----A---- C:\Windows\system32\drivers\sptd.sys
2011-10-26 14:59:02 ----D---- C:\Program Files\DAEMON Tools Lite
2011-10-26 14:58:53 ----D---- C:\Users\Spash\AppData\Roaming\DAEMON Tools Lite
2011-10-26 14:58:51 ----D---- C:\ProgramData\DAEMON Tools Lite
2011-10-26 14:58:17 ----A---- C:\Windows\system32\PerfStringBackup.INI
2011-10-26 14:57:23 ----D---- C:\Users\Spash\AppData\Roaming\ESET
2011-10-26 14:56:35 ----D---- C:\ProgramData\ESET
2011-10-26 14:56:35 ----D---- C:\Program Files\ESET
2011-10-26 14:54:45 ----SHD---- C:\Windows\Installer
2011-10-26 14:53:07 ----D---- C:\Users\Spash\AppData\Roaming\Identities
2011-10-26 14:52:37 ----SD---- C:\Users\Spash\AppData\Roaming\Microsoft
2011-10-26 14:52:37 ----D---- C:\Users\Spash\AppData\Roaming\Media Center Programs
2011-10-26 14:51:04 ----SHD---- C:\Recovery
2011-10-26 14:51:04 ----SHD---- C:\ProgramData\Šablony
2011-10-26 14:51:04 ----SHD---- C:\ProgramData\Plocha
2011-10-26 14:51:04 ----SHD---- C:\ProgramData\Oblíbené položky
2011-10-26 14:51:04 ----SHD---- C:\ProgramData\Nabídka Start
2011-10-26 14:51:04 ----SHD---- C:\ProgramData\Dokumenty
2011-10-26 14:51:04 ----SHD---- C:\ProgramData\Data aplikací
2011-10-26 14:46:45 ----D---- C:\Windows\SoftwareDistribution
2011-10-26 14:44:06 ----D---- C:\Windows\Prefetch
2011-10-26 14:43:46 ----SHD---- C:\System Volume Information
2011-10-26 14:43:46 ----ASH---- C:\pagefile.sys
2011-10-26 14:43:46 ----ASH---- C:\hiberfil.sys
2011-10-15 00:54:52 ----A---- C:\Windows\system32\nvStreaming.exe
======List of files/folders modified in the last 1 month======
2011-10-27 21:49:26 ----D---- C:\Windows\Temp
2011-10-27 21:42:14 ----RD---- C:\Program Files
2011-10-27 21:31:03 ----D---- C:\Windows\system32\config
2011-10-27 21:30:43 ----D---- C:\Windows\System32
2011-10-27 21:30:43 ----D---- C:\Windows\inf
2011-10-27 21:26:08 ----D---- C:\Windows\Logs
2011-10-27 21:24:43 ----D---- C:\Windows\Microsoft.NET
2011-10-27 21:24:40 ----RSD---- C:\Windows\assembly
2011-10-27 21:19:19 ----D---- C:\Windows\winsxs
2011-10-27 21:18:08 ----D---- C:\Windows
2011-10-27 21:18:00 ----D---- C:\Windows\system32\DriverStore
2011-10-27 21:14:35 ----D---- C:\Program Files\Windows Sidebar
2011-10-27 21:14:35 ----D---- C:\Program Files\Windows Mail
2011-10-27 21:14:35 ----D---- C:\Program Files\DVD Maker
2011-10-27 21:14:34 ----D---- C:\Program Files\Windows Portable Devices
2011-10-27 21:14:34 ----D---- C:\Program Files\Windows Media Player
2011-10-27 21:14:34 ----D---- C:\Program Files\Internet Explorer
2011-10-27 21:14:33 ----D---- C:\Program Files\Windows Photo Viewer
2011-10-27 21:14:33 ----D---- C:\Program Files\Windows Journal
2011-10-27 21:14:30 ----D---- C:\Windows\servicing
2011-10-27 21:14:30 ----D---- C:\Windows\ehome
2011-10-27 21:14:30 ----D---- C:\Program Files\Windows Defender
2011-10-27 21:14:22 ----SHD---- C:\Windows\BitLockerDiscoveryVolumeContents
2011-10-27 21:14:21 ----D---- C:\Windows\system32\oobe
2011-10-27 21:14:21 ----D---- C:\Windows\system32\en-US
2011-10-27 21:14:21 ----D---- C:\Windows\system32\da-DK
2011-10-27 21:14:21 ----D---- C:\Windows\PolicyDefinitions
2011-10-27 21:14:20 ----D---- C:\Windows\system32\sysprep
2011-10-27 21:14:20 ----D---- C:\Windows\system32\migration
2011-10-27 21:14:19 ----D---- C:\Windows\system32\Setup
2011-10-27 21:14:19 ----D---- C:\Windows\system32\cs
2011-10-27 21:14:19 ----D---- C:\Windows\system32\AdvancedInstallers
2011-10-27 21:14:18 ----D---- C:\Windows\system32\cs-CZ
2011-10-27 21:14:16 ----D---- C:\Windows\system32\sppui
2011-10-27 21:14:16 ----D---- C:\Windows\system32\manifeststore
2011-10-27 21:14:16 ----D---- C:\Windows\system32\es-ES
2011-10-27 21:14:15 ----D---- C:\Windows\system32\wbem
2011-10-27 21:14:15 ----D---- C:\Windows\system32\drivers\UMDF
2011-10-27 21:14:15 ----D---- C:\Windows\system32\drivers\cs-CZ
2011-10-27 21:14:15 ----D---- C:\Windows\system32\drivers
2011-10-27 21:14:14 ----D---- C:\Windows\system32\migwiz
2011-10-27 21:14:14 ----D---- C:\Windows\system32\Dism
2011-10-27 21:13:49 ----RSD---- C:\Windows\Fonts
2011-10-27 21:13:49 ----D---- C:\Windows\AppPatch
2011-10-27 21:13:41 ----D---- C:\Windows\system32\Boot
2011-10-27 21:12:40 ----D---- C:\Windows\system32\wdi
2011-10-27 21:10:13 ----A---- C:\Windows\system32\msclmd.dll
2011-10-27 16:29:37 ----D---- C:\Windows\system32\catroot
2011-10-27 16:15:34 ----D---- C:\Windows\system32\catroot2
2011-10-27 07:15:55 ----D---- C:\Windows\debug
2011-10-26 15:49:55 ----D---- C:\Windows\system32\LogFiles
2011-10-26 15:42:24 ----D---- C:\Windows\Setup
2011-10-26 15:38:01 ----D---- C:\Program Files\Common Files
2011-10-26 15:37:40 ----D---- C:\Program Files\Common Files\microsoft shared
2011-10-26 15:10:03 ----RD---- C:\Users
2011-10-26 15:09:59 ----HD---- C:\ProgramData
2011-10-26 15:09:53 ----D---- C:\Windows\Help
2011-10-26 15:01:57 ----D---- C:\Windows\system32\CodeIntegrity
2011-10-26 14:59:26 ----D---- C:\Windows\Tasks
2011-10-26 14:59:26 ----D---- C:\Windows\system32\Tasks
2011-10-26 14:56:14 ----D---- C:\Windows\system32\restore
2011-10-26 14:52:57 ----SHD---- C:\$Recycle.Bin
2011-10-26 14:51:05 ----SD---- C:\ProgramData\Microsoft
2011-10-26 14:51:04 ----D---- C:\Program Files\Windows NT
2011-10-26 14:50:57 ----D---- C:\Windows\rescache
2011-10-26 14:44:34 ----D---- C:\Windows\CSC
2011-10-15 10:53:00 ----A---- C:\Windows\system32\nvwgf2um.dll
2011-10-15 10:53:00 ----A---- C:\Windows\system32\nvd3dum.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2011-10-26 691696]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2009-04-09 107256]
R1 VD_FileDisk;VD_FileDisk; C:\Windows\system32\drivers\VD_FileDisk.sys [2006-01-13 15872]
R2 eamon;eamon; C:\Windows\system32\DRIVERS\eamon.sys [2009-04-09 113960]
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2009-04-09 133000]
R2 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2009-04-09 38240]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 Epfwndis;Eset Personal Firewall; C:\Windows\system32\DRIVERS\Epfwndis.sys [2009-04-09 33096]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2011-10-18 3546664]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 ar6lr491;ar6lr491; C:\Windows\system32\drivers\ar6lr491.sys []
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 15872]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2009-04-09 731840]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2011-10-15 1136448]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-10-15 2253120]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2011-10-26 75136]
R2 PnkBstrB;PnkBstrB; C:\Windows\system32\PnkBstrB.exe [2011-10-26 189248]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-10-15 381248]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [2009-04-09 20680]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-10-27 1343400]
-----------------EOF-----------------
2011-10-26 15:08:26 ----D---- C:\Users\Spash\AppData\Roaming\Adobe
2011-10-26 15:07:19 ----D---- C:\Program Files\Common Files\InstallShield
2011-10-26 15:04:50 ----D---- C:\Users\Spash\AppData\Roaming\HEXelon
2011-10-26 15:04:02 ----D---- C:\Program Files\TC UP
2011-10-26 15:00:24 ----D---- C:\Program Files\NVIDIA Corporation
2011-10-26 14:59:17 ----A---- C:\Windows\system32\drivers\sptd.sys
2011-10-26 14:59:02 ----D---- C:\Program Files\DAEMON Tools Lite
2011-10-26 14:58:53 ----D---- C:\Users\Spash\AppData\Roaming\DAEMON Tools Lite
2011-10-26 14:58:51 ----D---- C:\ProgramData\DAEMON Tools Lite
2011-10-26 14:58:17 ----A---- C:\Windows\system32\PerfStringBackup.INI
2011-10-26 14:57:23 ----D---- C:\Users\Spash\AppData\Roaming\ESET
2011-10-26 14:56:35 ----D---- C:\ProgramData\ESET
2011-10-26 14:56:35 ----D---- C:\Program Files\ESET
2011-10-26 14:54:45 ----SHD---- C:\Windows\Installer
2011-10-26 14:53:07 ----D---- C:\Users\Spash\AppData\Roaming\Identities
2011-10-26 14:52:37 ----SD---- C:\Users\Spash\AppData\Roaming\Microsoft
2011-10-26 14:52:37 ----D---- C:\Users\Spash\AppData\Roaming\Media Center Programs
2011-10-26 14:51:04 ----SHD---- C:\Recovery
2011-10-26 14:51:04 ----SHD---- C:\ProgramData\Šablony
2011-10-26 14:51:04 ----SHD---- C:\ProgramData\Plocha
2011-10-26 14:51:04 ----SHD---- C:\ProgramData\Oblíbené položky
2011-10-26 14:51:04 ----SHD---- C:\ProgramData\Nabídka Start
2011-10-26 14:51:04 ----SHD---- C:\ProgramData\Dokumenty
2011-10-26 14:51:04 ----SHD---- C:\ProgramData\Data aplikací
2011-10-26 14:46:45 ----D---- C:\Windows\SoftwareDistribution
2011-10-26 14:44:06 ----D---- C:\Windows\Prefetch
2011-10-26 14:43:46 ----SHD---- C:\System Volume Information
2011-10-26 14:43:46 ----ASH---- C:\pagefile.sys
2011-10-26 14:43:46 ----ASH---- C:\hiberfil.sys
2011-10-15 00:54:52 ----A---- C:\Windows\system32\nvStreaming.exe
======List of files/folders modified in the last 1 month======
2011-10-27 21:49:26 ----D---- C:\Windows\Temp
2011-10-27 21:42:14 ----RD---- C:\Program Files
2011-10-27 21:31:03 ----D---- C:\Windows\system32\config
2011-10-27 21:30:43 ----D---- C:\Windows\System32
2011-10-27 21:30:43 ----D---- C:\Windows\inf
2011-10-27 21:26:08 ----D---- C:\Windows\Logs
2011-10-27 21:24:43 ----D---- C:\Windows\Microsoft.NET
2011-10-27 21:24:40 ----RSD---- C:\Windows\assembly
2011-10-27 21:19:19 ----D---- C:\Windows\winsxs
2011-10-27 21:18:08 ----D---- C:\Windows
2011-10-27 21:18:00 ----D---- C:\Windows\system32\DriverStore
2011-10-27 21:14:35 ----D---- C:\Program Files\Windows Sidebar
2011-10-27 21:14:35 ----D---- C:\Program Files\Windows Mail
2011-10-27 21:14:35 ----D---- C:\Program Files\DVD Maker
2011-10-27 21:14:34 ----D---- C:\Program Files\Windows Portable Devices
2011-10-27 21:14:34 ----D---- C:\Program Files\Windows Media Player
2011-10-27 21:14:34 ----D---- C:\Program Files\Internet Explorer
2011-10-27 21:14:33 ----D---- C:\Program Files\Windows Photo Viewer
2011-10-27 21:14:33 ----D---- C:\Program Files\Windows Journal
2011-10-27 21:14:30 ----D---- C:\Windows\servicing
2011-10-27 21:14:30 ----D---- C:\Windows\ehome
2011-10-27 21:14:30 ----D---- C:\Program Files\Windows Defender
2011-10-27 21:14:22 ----SHD---- C:\Windows\BitLockerDiscoveryVolumeContents
2011-10-27 21:14:21 ----D---- C:\Windows\system32\oobe
2011-10-27 21:14:21 ----D---- C:\Windows\system32\en-US
2011-10-27 21:14:21 ----D---- C:\Windows\system32\da-DK
2011-10-27 21:14:21 ----D---- C:\Windows\PolicyDefinitions
2011-10-27 21:14:20 ----D---- C:\Windows\system32\sysprep
2011-10-27 21:14:20 ----D---- C:\Windows\system32\migration
2011-10-27 21:14:19 ----D---- C:\Windows\system32\Setup
2011-10-27 21:14:19 ----D---- C:\Windows\system32\cs
2011-10-27 21:14:19 ----D---- C:\Windows\system32\AdvancedInstallers
2011-10-27 21:14:18 ----D---- C:\Windows\system32\cs-CZ
2011-10-27 21:14:16 ----D---- C:\Windows\system32\sppui
2011-10-27 21:14:16 ----D---- C:\Windows\system32\manifeststore
2011-10-27 21:14:16 ----D---- C:\Windows\system32\es-ES
2011-10-27 21:14:15 ----D---- C:\Windows\system32\wbem
2011-10-27 21:14:15 ----D---- C:\Windows\system32\drivers\UMDF
2011-10-27 21:14:15 ----D---- C:\Windows\system32\drivers\cs-CZ
2011-10-27 21:14:15 ----D---- C:\Windows\system32\drivers
2011-10-27 21:14:14 ----D---- C:\Windows\system32\migwiz
2011-10-27 21:14:14 ----D---- C:\Windows\system32\Dism
2011-10-27 21:13:49 ----RSD---- C:\Windows\Fonts
2011-10-27 21:13:49 ----D---- C:\Windows\AppPatch
2011-10-27 21:13:41 ----D---- C:\Windows\system32\Boot
2011-10-27 21:12:40 ----D---- C:\Windows\system32\wdi
2011-10-27 21:10:13 ----A---- C:\Windows\system32\msclmd.dll
2011-10-27 16:29:37 ----D---- C:\Windows\system32\catroot
2011-10-27 16:15:34 ----D---- C:\Windows\system32\catroot2
2011-10-27 07:15:55 ----D---- C:\Windows\debug
2011-10-26 15:49:55 ----D---- C:\Windows\system32\LogFiles
2011-10-26 15:42:24 ----D---- C:\Windows\Setup
2011-10-26 15:38:01 ----D---- C:\Program Files\Common Files
2011-10-26 15:37:40 ----D---- C:\Program Files\Common Files\microsoft shared
2011-10-26 15:10:03 ----RD---- C:\Users
2011-10-26 15:09:59 ----HD---- C:\ProgramData
2011-10-26 15:09:53 ----D---- C:\Windows\Help
2011-10-26 15:01:57 ----D---- C:\Windows\system32\CodeIntegrity
2011-10-26 14:59:26 ----D---- C:\Windows\Tasks
2011-10-26 14:59:26 ----D---- C:\Windows\system32\Tasks
2011-10-26 14:56:14 ----D---- C:\Windows\system32\restore
2011-10-26 14:52:57 ----SHD---- C:\$Recycle.Bin
2011-10-26 14:51:05 ----SD---- C:\ProgramData\Microsoft
2011-10-26 14:51:04 ----D---- C:\Program Files\Windows NT
2011-10-26 14:50:57 ----D---- C:\Windows\rescache
2011-10-26 14:44:34 ----D---- C:\Windows\CSC
2011-10-15 10:53:00 ----A---- C:\Windows\system32\nvwgf2um.dll
2011-10-15 10:53:00 ----A---- C:\Windows\system32\nvd3dum.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2011-10-26 691696]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2009-04-09 107256]
R1 VD_FileDisk;VD_FileDisk; C:\Windows\system32\drivers\VD_FileDisk.sys [2006-01-13 15872]
R2 eamon;eamon; C:\Windows\system32\DRIVERS\eamon.sys [2009-04-09 113960]
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2009-04-09 133000]
R2 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2009-04-09 38240]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 Epfwndis;Eset Personal Firewall; C:\Windows\system32\DRIVERS\Epfwndis.sys [2009-04-09 33096]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2011-10-18 3546664]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 ar6lr491;ar6lr491; C:\Windows\system32\drivers\ar6lr491.sys []
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 15872]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2009-04-09 731840]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2011-10-15 1136448]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-10-15 2253120]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2011-10-26 75136]
R2 PnkBstrB;PnkBstrB; C:\Windows\system32\PnkBstrB.exe [2011-10-26 189248]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-10-15 381248]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [2009-04-09 20680]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-10-27 1343400]
-----------------EOF-----------------
Re: Trojský kôň Win32/Agent.SDG.Gen - prosím o pomoc
Dobrý večer
Stáhněte TDSSKiller http://support.kaspersky.com/downloads/ ... killer.exe
- a uložte ho na plochu.
- 2x klikněte na ikonu programu a spusťte
- dejte volbu Spustit kontrolu - pak potvrdte start sken
- pokud program najde infikovaný soubor, ukáže se Vám předvolená akce Cure, v tom případě potvrdte tlačítko Continue
- pokud bude chtít program restartovat počítač, klikněte na tlačítko Reboot Now
- pokud si restart nevyžádá, klikněte na tlačítko Report. Měl vy na Vás vyskočit log, obsah logu zkopírujte do svého topicu.
- pokud se log nezobrazí, je uložený ve Vašem kořenovém adresáři.


- a uložte ho na plochu.
- 2x klikněte na ikonu programu a spusťte
- dejte volbu Spustit kontrolu - pak potvrdte start sken
- pokud program najde infikovaný soubor, ukáže se Vám předvolená akce Cure, v tom případě potvrdte tlačítko Continue
- pokud bude chtít program restartovat počítač, klikněte na tlačítko Reboot Now
- pokud si restart nevyžádá, klikněte na tlačítko Report. Měl vy na Vás vyskočit log, obsah logu zkopírujte do svého topicu.
- pokud se log nezobrazí, je uložený ve Vašem kořenovém adresáři.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: Trojský kôň Win32/Agent.SDG.Gen - prosím o pomoc
Ďakujem za ochotu
V noci som ešte podľa tejto rady
vymazal System Volume Information, potom som dal hĺbkovú kontrolu pomocou ESET SYS Rescue, ponachádzalo mi vírusy v SVI, tie som dal vyliečiť alebo odstrániť a nakoniec mi po zapnutí PC opäť vyhodilo hlášku
28. 10. 2011 10:34:31 Kontrola pri štarte boot sektor MBR sektor 2. fyzického disku Win32/Agent.SDG.Gen trójsky kôň nemožno liečiť
Vyzerá to tak že mám zasiahnutý aj externý disk WD 640GB.
Tu na je log z TDSSKiller-a
10:37:18.0297 5948 TDSS rootkit removing tool 2.6.13.0 Oct 25 2011 13:56:21
10:37:19.0061 5948 ============================================================
10:37:19.0061 5948 Current date / time: 2011/10/28 10:37:19.0061
10:37:19.0061 5948 SystemInfo:
10:37:19.0061 5948
10:37:19.0061 5948 OS Version: 6.1.7601 ServicePack: 1.0
10:37:19.0061 5948 Product type: Workstation
10:37:19.0061 5948 ComputerName: SPASH-PC
10:37:19.0061 5948 UserName: Spash
10:37:19.0061 5948 Windows directory: C:\Windows
10:37:19.0061 5948 System windows directory: C:\Windows
10:37:19.0061 5948 Processor architecture: Intel x86
10:37:19.0061 5948 Number of processors: 2
10:37:19.0061 5948 Page size: 0x1000
10:37:19.0061 5948 Boot type: Normal boot
10:37:19.0061 5948 ============================================================
10:37:21.0267 5948 Initialize success
10:37:23.0985 2004 ============================================================
10:37:23.0985 2004 Scan started
10:37:23.0985 2004 Mode: Manual;
10:37:23.0985 2004 ============================================================
10:37:25.0049 2004 1394ohci (1b133875b8aa8ac48969bd3458afe9f5) C:\Windows\system32\drivers\1394ohci.sys
10:37:25.0076 2004 1394ohci - ok
10:37:25.0123 2004 84241777 - ok
10:37:25.0173 2004 ACPI (cea80c80bed809aa0da6febc04733349) C:\Windows\system32\drivers\ACPI.sys
10:37:25.0178 2004 ACPI - ok
10:37:25.0236 2004 AcpiPmi (1efbc664abff416d1d07db115dcb264f) C:\Windows\system32\drivers\acpipmi.sys
10:37:25.0262 2004 AcpiPmi - ok
10:37:25.0315 2004 adp94xx (21e785ebd7dc90a06391141aac7892fb) C:\Windows\system32\DRIVERS\adp94xx.sys
10:37:25.0321 2004 adp94xx - ok
10:37:25.0341 2004 adpahci (0c676bc278d5b59ff5abd57bbe9123f2) C:\Windows\system32\DRIVERS\adpahci.sys
10:37:25.0378 2004 adpahci - ok
10:37:25.0395 2004 adpu320 (7c7b5ee4b7b822ec85321fe23a27db33) C:\Windows\system32\DRIVERS\adpu320.sys
10:37:25.0424 2004 adpu320 - ok
10:37:25.0493 2004 AFD (9ebbba55060f786f0fcaa3893bfa2806) C:\Windows\system32\drivers\afd.sys
10:37:25.0496 2004 AFD - ok
10:37:25.0532 2004 agp440 (507812c3054c21cef746b6ee3d04dd6e) C:\Windows\system32\drivers\agp440.sys
10:37:25.0533 2004 agp440 - ok
10:37:25.0569 2004 aic78xx (8b30250d573a8f6b4bd23195160d8707) C:\Windows\system32\DRIVERS\djsvs.sys
10:37:25.0595 2004 aic78xx - ok
10:37:25.0644 2004 aliide (0d40bcf52ea90fc7df2aeab6503dea44) C:\Windows\system32\drivers\aliide.sys
10:37:25.0670 2004 aliide - ok
10:37:25.0706 2004 amdagp (3c6600a0696e90a463771c7422e23ab5) C:\Windows\system32\drivers\amdagp.sys
10:37:25.0707 2004 amdagp - ok
10:37:25.0719 2004 amdide (cd5914170297126b6266860198d1d4f0) C:\Windows\system32\drivers\amdide.sys
10:37:25.0745 2004 amdide - ok
10:37:25.0786 2004 AmdK8 (00dda200d71bac534bf56a9db5dfd666) C:\Windows\system32\DRIVERS\amdk8.sys
10:37:25.0813 2004 AmdK8 - ok
10:37:25.0825 2004 AmdPPM (3cbf30f5370fda40dd3e87df38ea53b6) C:\Windows\system32\DRIVERS\amdppm.sys
10:37:25.0873 2004 AmdPPM - ok
10:37:25.0919 2004 amdsata (e7f4d42d8076ec60e21715cd11743a0d) C:\Windows\system32\drivers\amdsata.sys
10:37:25.0920 2004 amdsata - ok
10:37:25.0962 2004 amdsbs (ea43af0c423ff267355f74e7a53bdaba) C:\Windows\system32\DRIVERS\amdsbs.sys
10:37:25.0990 2004 amdsbs - ok
10:37:26.0017 2004 amdxata (146459d2b08bfdcbfa856d9947043c81) C:\Windows\system32\drivers\amdxata.sys
10:37:26.0018 2004 amdxata - ok
10:37:26.0065 2004 AppID (aea177f783e20150ace5383ee368da19) C:\Windows\system32\drivers\appid.sys
10:37:26.0066 2004 AppID - ok
10:37:26.0105 2004 arc (2932004f49677bd84dbc72edb754ffb3) C:\Windows\system32\DRIVERS\arc.sys
10:37:26.0106 2004 arc - ok
10:37:26.0126 2004 arcsas (5d6f36c46fd283ae1b57bd2e9feb0bc7) C:\Windows\system32\DRIVERS\arcsas.sys
10:37:26.0152 2004 arcsas - ok
10:37:26.0177 2004 AsyncMac (add2ade1c2b285ab8378d2daaf991481) C:\Windows\system32\DRIVERS\asyncmac.sys
10:37:26.0178 2004 AsyncMac - ok
10:37:26.0320 2004 atapi (338c86357871c167a96ab976519bf59e) C:\Windows\system32\drivers\atapi.sys
10:37:26.0321 2004 atapi - ok
10:37:26.0430 2004 b06bdrv (1a231abec60fd316ec54c66715543cec) C:\Windows\system32\DRIVERS\bxvbdx.sys
10:37:26.0436 2004 b06bdrv - ok
10:37:26.0470 2004 b57nd60x (bd8869eb9cde6bbe4508d869929869ee) C:\Windows\system32\DRIVERS\b57nd60x.sys
10:37:26.0520 2004 b57nd60x - ok
10:37:26.0537 2004 Beep (505506526a9d467307b3c393dedaf858) C:\Windows\system32\drivers\Beep.sys
10:37:26.0563 2004 Beep - ok
10:37:26.0592 2004 blbdrive (2287078ed48fcfc477b05b20cf38f36f) C:\Windows\system32\DRIVERS\blbdrive.sys
10:37:26.0593 2004 blbdrive - ok
10:37:26.0630 2004 bowser (8f2da3028d5fcbd1a060a3de64cd6506) C:\Windows\system32\DRIVERS\bowser.sys
10:37:26.0631 2004 bowser - ok
10:37:26.0643 2004 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\DRIVERS\BrFiltLo.sys
10:37:26.0646 2004 BrFiltLo - ok
10:37:26.0659 2004 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\DRIVERS\BrFiltUp.sys
10:37:26.0662 2004 BrFiltUp - ok
10:37:26.0693 2004 Brserid (845b8ce732e67f3b4133164868c666ea) C:\Windows\System32\Drivers\Brserid.sys
10:37:26.0699 2004 Brserid - ok
10:37:26.0712 2004 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\System32\Drivers\BrSerWdm.sys
10:37:26.0713 2004 BrSerWdm - ok
10:37:26.0726 2004 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\System32\Drivers\BrUsbMdm.sys
10:37:26.0730 2004 BrUsbMdm - ok
10:37:26.0742 2004 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\System32\Drivers\BrUsbSer.sys
10:37:26.0746 2004 BrUsbSer - ok
10:37:26.0759 2004 BTHMODEM (ed3df7c56ce0084eb2034432fc56565a) C:\Windows\system32\DRIVERS\bthmodem.sys
10:37:26.0785 2004 BTHMODEM - ok
10:37:26.0827 2004 cdfs (77ea11b065e0a8ab902d78145ca51e10) C:\Windows\system32\DRIVERS\cdfs.sys
10:37:26.0828 2004 cdfs - ok
10:37:26.0877 2004 cdrom (be167ed0fdb9c1fa1133953c18d5a6c9) C:\Windows\system32\drivers\cdrom.sys
10:37:26.0878 2004 cdrom - ok
10:37:26.0908 2004 circlass (3fe3fe94a34df6fb06e6418d0f6a0060) C:\Windows\system32\DRIVERS\circlass.sys
10:37:26.0911 2004 circlass - ok
10:37:26.0943 2004 CLFS (635181e0e9bbf16871bf5380d71db02d) C:\Windows\system32\CLFS.sys
10:37:26.0947 2004 CLFS - ok
10:37:26.0981 2004 CmBatt (dea805815e587dad1dd2c502220b5616) C:\Windows\system32\DRIVERS\CmBatt.sys
10:37:26.0982 2004 CmBatt - ok
10:37:27.0011 2004 cmdide (c537b1db64d495b9b4717b4d6d9edbf2) C:\Windows\system32\drivers\cmdide.sys
10:37:27.0011 2004 cmdide - ok
10:37:27.0043 2004 CNG (1b675691ed940766149c93e8f4488d68) C:\Windows\system32\Drivers\cng.sys
10:37:27.0047 2004 CNG - ok
10:37:27.0065 2004 Compbatt (a6023d3823c37043986713f118a89bee) C:\Windows\system32\DRIVERS\compbatt.sys
10:37:27.0066 2004 Compbatt - ok
10:37:27.0106 2004 CompositeBus (cbe8c58a8579cfe5fccf809e6f114e89) C:\Windows\system32\drivers\CompositeBus.sys
10:37:27.0110 2004 CompositeBus - ok
10:37:27.0139 2004 crcdisk (2c4ebcfc84a9b44f209dff6c6e6c61d1) C:\Windows\system32\DRIVERS\crcdisk.sys
10:37:27.0164 2004 crcdisk - ok
10:37:27.0216 2004 CSC (3c2177a897b4ca2788c6fb0c3fd81d4b) C:\Windows\system32\drivers\csc.sys
10:37:27.0220 2004 CSC - ok
10:37:27.0281 2004 DfsC (f024449c97ec1e464aaffda18593db88) C:\Windows\system32\Drivers\dfsc.sys
10:37:27.0306 2004 DfsC - ok
10:37:27.0336 2004 discache (1a050b0274bfb3890703d490f330c0da) C:\Windows\system32\drivers\discache.sys
10:37:27.0336 2004 discache - ok
10:37:27.0360 2004 Disk (565003f326f99802e68ca78f2a68e9ff) C:\Windows\system32\DRIVERS\disk.sys
10:37:27.0385 2004 Disk - ok
10:37:27.0439 2004 drmkaud (b918e7c5f9bf77202f89e1a9539f2eb4) C:\Windows\system32\drivers\drmkaud.sys
10:37:27.0464 2004 drmkaud - ok
10:37:27.0499 2004 DXGKrnl (23f5d28378a160352ba8f817bd8c71cb) C:\Windows\System32\drivers\dxgkrnl.sys
10:37:27.0674 2004 DXGKrnl - ok
10:37:27.0713 2004 eamon (3b2e8f97b6869c29da023ee75bf585d5) C:\Windows\system32\DRIVERS\eamon.sys
10:37:27.0718 2004 eamon - ok
10:37:27.0815 2004 ebdrv (024e1b5cac09731e4d868e64dbfb4ab0) C:\Windows\system32\DRIVERS\evbdx.sys
10:37:27.0884 2004 ebdrv - ok
10:37:28.0175 2004 ehdrv (4fad054cbcaa296be7bd2cb77da9d9b4) C:\Windows\system32\DRIVERS\ehdrv.sys
10:37:28.0210 2004 ehdrv - ok
10:37:28.0268 2004 elxstor (0ed67910c8c326796faa00b2bf6d9d3c) C:\Windows\system32\DRIVERS\elxstor.sys
10:37:28.0274 2004 elxstor - ok
10:37:28.0302 2004 epfw (63c9dfc27c401bff6188a1ca68d0abb0) C:\Windows\system32\DRIVERS\epfw.sys
10:37:28.0307 2004 epfw - ok
10:37:28.0327 2004 Epfwndis (3b47010b2425b69826004767e59045ba) C:\Windows\system32\DRIVERS\Epfwndis.sys
10:37:28.0376 2004 Epfwndis - ok
10:37:28.0424 2004 epfwwfp (b379d66406fe395e8adc557ef6074d17) C:\Windows\system32\DRIVERS\epfwwfp.sys
10:37:28.0428 2004 epfwwfp - ok
10:37:28.0464 2004 ErrDev (8fc3208352dd3912c94367a206ab3f11) C:\Windows\system32\drivers\errdev.sys
10:37:28.0488 2004 ErrDev - ok
10:37:28.0534 2004 exfat (2dc9108d74081149cc8b651d3a26207f) C:\Windows\system32\drivers\exfat.sys
10:37:28.0536 2004 exfat - ok
10:37:28.0551 2004 fastfat (7e0ab74553476622fb6ae36f73d97d35) C:\Windows\system32\drivers\fastfat.sys
10:37:28.0553 2004 fastfat - ok
10:37:28.0588 2004 fdc (e817a017f82df2a1f8cfdbda29388b29) C:\Windows\system32\DRIVERS\fdc.sys
10:37:28.0589 2004 fdc - ok
10:37:28.0607 2004 FileInfo (6cf00369c97f3cf563be99be983d13d8) C:\Windows\system32\drivers\fileinfo.sys
10:37:28.0608 2004 FileInfo - ok
10:37:28.0622 2004 Filetrace (42c51dc94c91da21cb9196eb64c45db9) C:\Windows\system32\drivers\filetrace.sys
10:37:28.0623 2004 Filetrace - ok
10:37:28.0637 2004 flpydisk (87907aa70cb3c56600f1c2fb8841579b) C:\Windows\system32\DRIVERS\flpydisk.sys
10:37:28.0638 2004 flpydisk - ok
10:37:28.0671 2004 FltMgr (7520ec808e0c35e0ee6f841294316653) C:\Windows\system32\drivers\fltmgr.sys
10:37:28.0673 2004 FltMgr - ok
10:37:28.0690 2004 FsDepends (1a16b57943853e598cff37fe2b8cbf1d) C:\Windows\system32\drivers\FsDepends.sys
10:37:28.0691 2004 FsDepends - ok
10:37:28.0704 2004 Fs_Rec (a574b4360e438977038aae4bf60d79a2) C:\Windows\system32\drivers\Fs_Rec.sys
10:37:28.0731 2004 Fs_Rec - ok
10:37:28.0781 2004 fvevol (8a73e79089b282100b9393b644cb853b) C:\Windows\system32\DRIVERS\fvevol.sys
10:37:28.0832 2004 fvevol - ok
10:37:28.0853 2004 gagp30kx (65ee0c7a58b65e74ae05637418153938) C:\Windows\system32\DRIVERS\gagp30kx.sys
10:37:28.0854 2004 gagp30kx - ok
10:37:28.0875 2004 hcw85cir (c44e3c2bab6837db337ddee7544736db) C:\Windows\system32\drivers\hcw85cir.sys
10:37:28.0876 2004 hcw85cir - ok
10:37:28.0920 2004 HdAudAddService (a5ef29d5315111c80a5c1abad14c8972) C:\Windows\system32\drivers\HdAudio.sys
10:37:28.0923 2004 HdAudAddService - ok
10:37:28.0948 2004 HDAudBus (9036377b8a6c15dc2eec53e489d159b5) C:\Windows\system32\drivers\HDAudBus.sys
10:37:28.0952 2004 HDAudBus - ok
10:37:28.0979 2004 HidBatt (1d58a7f3e11a9731d0eaaaa8405acc36) C:\Windows\system32\DRIVERS\HidBatt.sys
10:37:29.0003 2004 HidBatt - ok
10:37:29.0018 2004 HidBth (89448f40e6df260c206a193a4683ba78) C:\Windows\system32\DRIVERS\hidbth.sys
10:37:29.0019 2004 HidBth - ok
10:37:29.0052 2004 HidIr (cf50b4cf4a4f229b9f3c08351f99ca5e) C:\Windows\system32\DRIVERS\hidir.sys
10:37:29.0077 2004 HidIr - ok
10:37:29.0143 2004 HidUsb (10c19f8290891af023eaec0832e1eb4d) C:\Windows\system32\drivers\hidusb.sys
10:37:29.0169 2004 HidUsb - ok
10:37:29.0201 2004 HpSAMD (295fdc419039090eb8b49ffdbb374549) C:\Windows\system32\drivers\HpSAMD.sys
10:37:29.0202 2004 HpSAMD - ok
10:37:29.0251 2004 HTTP (871917b07a141bff43d76d8844d48106) C:\Windows\system32\drivers\HTTP.sys
10:37:29.0256 2004 HTTP - ok
10:37:29.0296 2004 hwpolicy (0c4e035c7f105f1299258c90886c64c5) C:\Windows\system32\drivers\hwpolicy.sys
10:37:29.0296 2004 hwpolicy - ok
10:37:29.0329 2004 i8042prt (f151f0bdc47f4a28b1b20a0818ea36d6) C:\Windows\system32\drivers\i8042prt.sys
10:37:29.0330 2004 i8042prt - ok
10:37:29.0377 2004 iaStorV (a3cae5d281db4cff7cff8233507ee5ad) C:\Windows\system32\drivers\iaStorV.sys
10:37:29.0405 2004 iaStorV - ok
10:37:29.0436 2004 iirsp (4173ff5708f3236cf25195fecd742915) C:\Windows\system32\DRIVERS\iirsp.sys
10:37:29.0463 2004 iirsp - ok
10:37:29.0652 2004 IntcAzAudAddService (345ac48d17f5c2f2aa1ee50d34c3978b) C:\Windows\system32\drivers\RTKVHDA.sys
10:37:29.0708 2004 IntcAzAudAddService - ok
10:37:29.0976 2004 intelide (a0f12f2c9ba6c72f3987ce780e77c130) C:\Windows\system32\drivers\intelide.sys
10:37:29.0977 2004 intelide - ok
10:37:30.0015 2004 intelppm (3b514d27bfc4accb4037bc6685f766e0) C:\Windows\system32\DRIVERS\intelppm.sys
10:37:30.0050 2004 intelppm - ok
10:37:30.0066 2004 IpFilterDriver (709d1761d3b19a932ff0238ea6d50200) C:\Windows\system32\DRIVERS\ipfltdrv.sys
10:37:30.0092 2004 IpFilterDriver - ok
10:37:30.0134 2004 IPMIDRV (4bd7134618c1d2a27466a099062547bf) C:\Windows\system32\drivers\IPMIDrv.sys
10:37:30.0135 2004 IPMIDRV - ok
10:37:30.0160 2004 IPNAT (a5fa468d67abcdaa36264e463a7bb0cd) C:\Windows\system32\drivers\ipnat.sys
10:37:30.0161 2004 IPNAT - ok
10:37:30.0179 2004 IRENUM (42996cff20a3084a56017b7902307e9f) C:\Windows\system32\drivers\irenum.sys
10:37:30.0180 2004 IRENUM - ok
10:37:30.0208 2004 isapnp (1f32bb6b38f62f7df1a7ab7292638a35) C:\Windows\system32\drivers\isapnp.sys
10:37:30.0209 2004 isapnp - ok
10:37:30.0248 2004 iScsiPrt (cb7a9abb12b8415bce5d74994c7ba3ae) C:\Windows\system32\drivers\msiscsi.sys
10:37:30.0250 2004 iScsiPrt - ok
10:37:30.0288 2004 kbdclass (adef52ca1aeae82b50df86b56413107e) C:\Windows\system32\drivers\kbdclass.sys
10:37:30.0315 2004 kbdclass - ok
10:37:30.0364 2004 kbdhid (9e3ced91863e6ee98c24794d05e27a71) C:\Windows\system32\drivers\kbdhid.sys
10:37:30.0389 2004 kbdhid - ok
10:37:30.0421 2004 KSecDD (412cea1aa78cc02a447f5c9e62b32ff1) C:\Windows\system32\Drivers\ksecdd.sys
10:37:30.0423 2004 KSecDD - ok
10:37:30.0447 2004 KSecPkg (26c046977e85b95036453d7b88ba1820) C:\Windows\system32\Drivers\ksecpkg.sys
10:37:30.0474 2004 KSecPkg - ok
10:37:30.0556 2004 lltdio (f7611ec07349979da9b0ae1f18ccc7a6) C:\Windows\system32\DRIVERS\lltdio.sys
10:37:30.0557 2004 lltdio - ok
10:37:30.0600 2004 LSI_FC (eb119a53ccf2acc000ac71b065b78fef) C:\Windows\system32\DRIVERS\lsi_fc.sys
10:37:30.0601 2004 LSI_FC - ok
10:37:30.0616 2004 LSI_SAS (8ade1c877256a22e49b75d1cc9161f9c) C:\Windows\system32\DRIVERS\lsi_sas.sys
10:37:30.0617 2004 LSI_SAS - ok
10:37:30.0638 2004 LSI_SAS2 (dc9dc3d3daa0e276fd2ec262e38b11e9) C:\Windows\system32\DRIVERS\lsi_sas2.sys
10:37:30.0639 2004 LSI_SAS2 - ok
10:37:30.0653 2004 LSI_SCSI (0a036c7d7cab643a7f07135ac47e0524) C:\Windows\system32\DRIVERS\lsi_scsi.sys
10:37:30.0654 2004 LSI_SCSI - ok
10:37:30.0683 2004 luafv (6703e366cc18d3b6e534f5cf7df39cee) C:\Windows\system32\drivers\luafv.sys
10:37:30.0685 2004 luafv - ok
10:37:30.0701 2004 megasas (0fff5b045293002ab38eb1fd1fc2fb74) C:\Windows\system32\DRIVERS\megasas.sys
10:37:30.0702 2004 megasas - ok
10:37:30.0728 2004 MegaSR (dcbab2920c75f390caf1d29f675d03d6) C:\Windows\system32\DRIVERS\MegaSR.sys
10:37:30.0731 2004 MegaSR - ok
10:37:30.0746 2004 Modem (f001861e5700ee84e2d4e52c712f4964) C:\Windows\system32\drivers\modem.sys
10:37:30.0772 2004 Modem - ok
10:37:30.0797 2004 monitor (79d10964de86b292320e9dfe02282a23) C:\Windows\system32\DRIVERS\monitor.sys
10:37:30.0846 2004 monitor - ok
10:37:30.0881 2004 mouclass (fb18cc1d4c2e716b6b903b0ac0cc0609) C:\Windows\system32\drivers\mouclass.sys
10:37:30.0907 2004 mouclass - ok
10:37:30.0935 2004 mouhid (2c388d2cd01c9042596cf3c8f3c7b24d) C:\Windows\system32\DRIVERS\mouhid.sys
10:37:30.0936 2004 mouhid - ok
10:37:30.0976 2004 mountmgr (fc8771f45ecccfd89684e38842539b9b) C:\Windows\system32\drivers\mountmgr.sys
10:37:30.0977 2004 mountmgr - ok
10:37:31.0007 2004 mpio (2d699fb6e89ce0d8da14ecc03b3edfe0) C:\Windows\system32\drivers\mpio.sys
10:37:31.0008 2004 mpio - ok
10:37:31.0030 2004 mpsdrv (ad2723a7b53dd1aacae6ad8c0bfbf4d0) C:\Windows\system32\drivers\mpsdrv.sys
10:37:31.0031 2004 mpsdrv - ok
10:37:31.0063 2004 MRxDAV (ceb46ab7c01c9f825f8cc6babc18166a) C:\Windows\system32\drivers\mrxdav.sys
10:37:31.0064 2004 MRxDAV - ok
10:37:31.0118 2004 mrxsmb (5d16c921e3671636c0eba3bbaac5fd25) C:\Windows\system32\DRIVERS\mrxsmb.sys
10:37:31.0144 2004 mrxsmb - ok
10:37:31.0159 2004 mrxsmb10 (6d17a4791aca19328c685d256349fefc) C:\Windows\system32\DRIVERS\mrxsmb10.sys
10:37:31.0187 2004 mrxsmb10 - ok
10:37:31.0221 2004 mrxsmb20 (b81f204d146000be76651a50670a5e9e) C:\Windows\system32\DRIVERS\mrxsmb20.sys
10:37:31.0222 2004 mrxsmb20 - ok
10:37:31.0250 2004 msahci (012c5f4e9349e711e11e0f19a8589f0a) C:\Windows\system32\drivers\msahci.sys
10:37:31.0251 2004 msahci - ok
10:37:31.0270 2004 msdsm (55055f8ad8be27a64c831322a780a228) C:\Windows\system32\drivers\msdsm.sys
10:37:31.0298 2004 msdsm - ok
10:37:31.0328 2004 Msfs (daefb28e3af5a76abcc2c3078c07327f) C:\Windows\system32\drivers\Msfs.sys
10:37:31.0329 2004 Msfs - ok
10:37:31.0342 2004 mshidkmdf (3e1e5767043c5af9367f0056295e9f84) C:\Windows\System32\drivers\mshidkmdf.sys
10:37:31.0365 2004 mshidkmdf - ok
10:37:31.0405 2004 msisadrv (0a4e5757ae09fa9622e3158cc1aef114) C:\Windows\system32\drivers\msisadrv.sys
10:37:31.0406 2004 msisadrv - ok
10:37:31.0460 2004 MSKSSRV (8c0860d6366aaffb6c5bb9df9448e631) C:\Windows\system32\drivers\MSKSSRV.sys
10:37:31.0477 2004 MSKSSRV - ok
10:37:31.0491 2004 MSPCLOCK (3ea8b949f963562cedbb549eac0c11ce) C:\Windows\system32\drivers\MSPCLOCK.sys
10:37:31.0514 2004 MSPCLOCK - ok
10:37:31.0527 2004 MSPQM (f456e973590d663b1073e9c463b40932) C:\Windows\system32\drivers\MSPQM.sys
10:37:31.0530 2004 MSPQM - ok
10:37:31.0545 2004 MsRPC (0e008fc4819d238c51d7c93e7b41e560) C:\Windows\system32\drivers\MsRPC.sys
10:37:31.0546 2004 MsRPC - ok
10:37:31.0574 2004 mssmbios (fc6b9ff600cc585ea38b12589bd4e246) C:\Windows\system32\drivers\mssmbios.sys
10:37:31.0598 2004 mssmbios - ok
10:37:31.0625 2004 MSTEE (b42c6b921f61a6e55159b8be6cd54a36) C:\Windows\system32\drivers\MSTEE.sys
10:37:31.0644 2004 MSTEE - ok
10:37:31.0657 2004 MTConfig (33599130f44e1f34631cea241de8ac84) C:\Windows\system32\DRIVERS\MTConfig.sys
10:37:31.0683 2004 MTConfig - ok
10:37:31.0696 2004 Mup (159fad02f64e6381758c990f753bcc80) C:\Windows\system32\Drivers\mup.sys
10:37:31.0697 2004 Mup - ok
10:37:31.0732 2004 NativeWifiP (26384429fcd85d83746f63e798ab1480) C:\Windows\system32\DRIVERS\nwifi.sys
10:37:31.0735 2004 NativeWifiP - ok
10:37:31.0794 2004 NDIS (e7c54812a2aaf43316eb6930c1ffa108) C:\Windows\system32\drivers\ndis.sys
10:37:31.0800 2004 NDIS - ok
10:37:31.0841 2004 NdisCap (0e1787aa6c9191d3d319e8bafe86f80c) C:\Windows\system32\DRIVERS\ndiscap.sys
10:37:31.0842 2004 NdisCap - ok
10:37:31.0868 2004 NdisTapi (e4a8aec125a2e43a9e32afeea7c9c888) C:\Windows\system32\DRIVERS\ndistapi.sys
10:37:31.0870 2004 NdisTapi - ok
10:37:31.0901 2004 Ndisuio (d8a65dafb3eb41cbb622745676fcd072) C:\Windows\system32\DRIVERS\ndisuio.sys
10:37:31.0902 2004 Ndisuio - ok
10:37:31.0936 2004 NdisWan (38fbe267e7e6983311179230facb1017) C:\Windows\system32\DRIVERS\ndiswan.sys
10:37:31.0938 2004 NdisWan - ok
10:37:31.0968 2004 NDProxy (a4bdc541e69674fbff1a8ff00be913f2) C:\Windows\system32\drivers\NDProxy.sys
10:37:31.0969 2004 NDProxy - ok
10:37:32.0006 2004 NetBIOS (80b275b1ce3b0e79909db7b39af74d51) C:\Windows\system32\DRIVERS\netbios.sys
10:37:32.0007 2004 NetBIOS - ok
10:37:32.0044 2004 NetBT (280122ddcf04b378edd1ad54d71c1e54) C:\Windows\system32\DRIVERS\netbt.sys
10:37:32.0046 2004 NetBT - ok
10:37:32.0088 2004 nfrd960 (1d85c4b390b0ee09c7a46b91efb2c097) C:\Windows\system32\DRIVERS\nfrd960.sys
10:37:32.0118 2004 nfrd960 - ok
10:37:32.0143 2004 Npfs (1db262a9f8c087e8153d89bef3d2235f) C:\Windows\system32\drivers\Npfs.sys
10:37:32.0144 2004 Npfs - ok
10:37:32.0160 2004 nsiproxy (e9a0a4d07e53d8fea2bb8387a3293c58) C:\Windows\system32\drivers\nsiproxy.sys
10:37:32.0162 2004 nsiproxy - ok
10:37:32.0226 2004 Ntfs (33c3093d09017cfe2e219f2472bff6eb) C:\Windows\system32\drivers\Ntfs.sys
10:37:32.0236 2004 Ntfs - ok
10:37:32.0261 2004 Null (f9756a98d69098dca8945d62858a812c) C:\Windows\system32\drivers\Null.sys
10:37:32.0285 2004 Null - ok
10:37:32.0622 2004 nvlddmkm (66b4bf606fcc7f0622d4a21bb1461089) C:\Windows\system32\DRIVERS\nvlddmkm.sys
10:37:32.0704 2004 nvlddmkm - ok
10:37:32.0968 2004 nvraid (af2eec9580c1d32fb7eaf105d9784061) C:\Windows\system32\drivers\nvraid.sys
10:37:33.0004 2004 nvraid - ok
10:37:33.0028 2004 nvstor (9283c58ebaa2618f93482eb5dabcec82) C:\Windows\system32\drivers\nvstor.sys
10:37:33.0030 2004 nvstor - ok
10:37:33.0083 2004 nv_agp (5a0983915f02bae73267cc2a041f717d) C:\Windows\system32\drivers\nv_agp.sys
10:37:33.0085 2004 nv_agp - ok
10:37:33.0119 2004 ohci1394 (08a70a1f2cdde9bb49b885cb817a66eb) C:\Windows\system32\drivers\ohci1394.sys
10:37:33.0120 2004 ohci1394 - ok
10:37:33.0161 2004 Parport (2ea877ed5dd9713c5ac74e8ea7348d14) C:\Windows\system32\DRIVERS\parport.sys
10:37:33.0187 2004 Parport - ok
10:37:33.0215 2004 partmgr (bf8f6af06da75b336f07e23aef97d93b) C:\Windows\system32\drivers\partmgr.sys
10:37:33.0216 2004 partmgr - ok
10:37:33.0229 2004 Parvdm (eb0a59f29c19b86479d36b35983daadc) C:\Windows\system32\DRIVERS\parvdm.sys
10:37:33.0253 2004 Parvdm - ok
10:37:33.0281 2004 pci (673e55c3498eb970088e812ea820aa8f) C:\Windows\system32\drivers\pci.sys
10:37:33.0283 2004 pci - ok
10:37:33.0311 2004 pciide (afe86f419014db4e5593f69ffe26ce0a) C:\Windows\system32\drivers\pciide.sys
10:37:33.0336 2004 pciide - ok
10:37:33.0367 2004 pcmcia (f396431b31693e71e8a80687ef523506) C:\Windows\system32\DRIVERS\pcmcia.sys
10:37:33.0369 2004 pcmcia - ok
10:37:33.0383 2004 pcw (250f6b43d2b613172035c6747aeeb19f) C:\Windows\system32\drivers\pcw.sys
10:37:33.0410 2004 pcw - ok
10:37:33.0439 2004 PEAUTH (9e0104ba49f4e6973749a02bf41344ed) C:\Windows\system32\drivers\peauth.sys
10:37:33.0448 2004 PEAUTH - ok
10:37:33.0526 2004 PptpMiniport (631e3e205ad6d86f2aed6a4a8e69f2db) C:\Windows\system32\DRIVERS\raspptp.sys
10:37:33.0528 2004 PptpMiniport - ok
10:37:33.0541 2004 Processor (85b1e3a0c7585bc4aae6899ec6fcf011) C:\Windows\system32\DRIVERS\processr.sys
10:37:33.0567 2004 Processor - ok
10:37:33.0621 2004 Psched (6270ccae2a86de6d146529fe55b3246a) C:\Windows\system32\DRIVERS\pacer.sys
10:37:33.0622 2004 Psched - ok
10:37:33.0671 2004 ql2300 (ab95ecf1f6659a60ddc166d8315b0751) C:\Windows\system32\DRIVERS\ql2300.sys
10:37:33.0690 2004 ql2300 - ok
10:37:33.0706 2004 ql40xx (b4dd51dd25182244b86737dc51af2270) C:\Windows\system32\DRIVERS\ql40xx.sys
10:37:33.0707 2004 ql40xx - ok
10:37:33.0723 2004 QWAVEdrv (584078ca1b95ca72df2a27c336f9719d) C:\Windows\system32\drivers\qwavedrv.sys
10:37:33.0749 2004 QWAVEdrv - ok
10:37:33.0763 2004 RasAcd (30a81b53c766d0133bb86d234e5556ab) C:\Windows\system32\DRIVERS\rasacd.sys
10:37:33.0788 2004 RasAcd - ok
10:37:33.0826 2004 RasAgileVpn (57ec4aef73660166074d8f7f31c0d4fd) C:\Windows\system32\DRIVERS\AgileVpn.sys
10:37:33.0851 2004 RasAgileVpn - ok
10:37:33.0869 2004 Rasl2tp (d9f91eafec2815365cbe6d167e4e332a) C:\Windows\system32\DRIVERS\rasl2tp.sys
10:37:33.0870 2004 Rasl2tp - ok
10:37:33.0891 2004 RasPppoe (0fe8b15916307a6ac12bfb6a63e45507) C:\Windows\system32\DRIVERS\raspppoe.sys
10:37:33.0893 2004 RasPppoe - ok
10:37:33.0918 2004 RasSstp (44101f495a83ea6401d886e7fd70096b) C:\Windows\system32\DRIVERS\rassstp.sys
10:37:33.0919 2004 RasSstp - ok
10:37:33.0951 2004 rdbss (d528bc58a489409ba40334ebf96a311b) C:\Windows\system32\DRIVERS\rdbss.sys
10:37:33.0953 2004 rdbss - ok
10:37:33.0976 2004 rdpbus (0d8f05481cb76e70e1da06ee9f0da9df) C:\Windows\system32\DRIVERS\rdpbus.sys
10:37:34.0001 2004 rdpbus - ok
10:37:34.0033 2004 RDPCDD (23dae03f29d253ae74c44f99e515f9a1) C:\Windows\system32\DRIVERS\RDPCDD.sys
10:37:34.0058 2004 RDPCDD - ok
10:37:34.0093 2004 RDPDR (b973fcfc50dc1434e1970a146f7e3885) C:\Windows\system32\drivers\rdpdr.sys
10:37:34.0095 2004 RDPDR - ok
10:37:34.0118 2004 RDPENCDD (5a53ca1598dd4156d44196d200c94b8a) C:\Windows\system32\drivers\rdpencdd.sys
10:37:34.0119 2004 RDPENCDD - ok
10:37:34.0136 2004 RDPREFMP (44b0a53cd4f27d50ed461dae0c0b4e1f) C:\Windows\system32\drivers\rdprefmp.sys
10:37:34.0137 2004 RDPREFMP - ok
10:37:34.0195 2004 RdpVideoMiniport (68a0387f58e226deee23d9715955572a) C:\Windows\system32\drivers\rdpvideominiport.sys
10:37:34.0220 2004 RdpVideoMiniport - ok
10:37:34.0262 2004 RDPWD (288b06960d78428ff89e811632684e20) C:\Windows\system32\drivers\RDPWD.sys
10:37:34.0289 2004 RDPWD - ok
10:37:34.0379 2004 rdyboost (518395321dc96fe2c9f0e96ac743b656) C:\Windows\system32\drivers\rdyboost.sys
10:37:34.0381 2004 rdyboost - ok
10:37:34.0451 2004 rspndr (032b0d36ad92b582d869879f5af5b928) C:\Windows\system32\DRIVERS\rspndr.sys
10:37:34.0453 2004 rspndr - ok
10:37:34.0488 2004 s3cap (7fa7f2e249a5dcbb7970630e15e1f482) C:\Windows\system32\drivers\vms3cap.sys
10:37:34.0521 2004 s3cap - ok
10:37:34.0565 2004 sbp2port (05d860da1040f111503ac416ccef2bca) C:\Windows\system32\drivers\sbp2port.sys
10:37:34.0591 2004 sbp2port - ok
10:37:34.0628 2004 scfilter (0693b5ec673e34dc147e195779a4dcf6) C:\Windows\system32\DRIVERS\scfilter.sys
10:37:34.0631 2004 scfilter - ok
10:37:34.0674 2004 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
10:37:34.0675 2004 secdrv - ok
10:37:34.0716 2004 Serenum (9ad8b8b515e3df6acd4212ef465de2d1) C:\Windows\system32\DRIVERS\serenum.sys
10:37:34.0741 2004 Serenum - ok
10:37:34.0756 2004 Serial (5fb7fcea0490d821f26f39cc5ea3d1e2) C:\Windows\system32\DRIVERS\serial.sys
10:37:34.0757 2004 Serial - ok
10:37:34.0780 2004 sermouse (79bffb520327ff916a582dfea17aa813) C:\Windows\system32\DRIVERS\sermouse.sys
10:37:34.0781 2004 sermouse - ok
10:37:34.0825 2004 sffdisk (9f976e1eb233df46fce808d9dea3eb9c) C:\Windows\system32\drivers\sffdisk.sys
10:37:34.0850 2004 sffdisk - ok
10:37:34.0864 2004 sffp_mmc (932a68ee27833cfd57c1639d375f2731) C:\Windows\system32\drivers\sffp_mmc.sys
10:37:34.0889 2004 sffp_mmc - ok
10:37:34.0911 2004 sffp_sd (6d4ccaedc018f1cf52866bbbaa235982) C:\Windows\system32\drivers\sffp_sd.sys
10:37:34.0912 2004 sffp_sd - ok
10:37:34.0938 2004 sfloppy (db96666cc8312ebc45032f30b007a547) C:\Windows\system32\DRIVERS\sfloppy.sys
10:37:34.0939 2004 sfloppy - ok
10:37:34.0973 2004 sisagp (2565cac0dc9fe0371bdce60832582b2e) C:\Windows\system32\drivers\sisagp.sys
10:37:34.0974 2004 sisagp - ok
10:37:34.0988 2004 SiSRaid2 (a9f0486851becb6dda1d89d381e71055) C:\Windows\system32\DRIVERS\SiSRaid2.sys
10:37:34.0989 2004 SiSRaid2 - ok
10:37:35.0018 2004 SiSRaid4 (3727097b55738e2f554972c3be5bc1aa) C:\Windows\system32\DRIVERS\sisraid4.sys
10:37:35.0068 2004 SiSRaid4 - ok
10:37:35.0090 2004 Smb (3e21c083b8a01cb70ba1f09303010fce) C:\Windows\system32\DRIVERS\smb.sys
10:37:35.0092 2004 Smb - ok
10:37:35.0121 2004 spldr (95cf1ae7527fb70f7816563cbc09d942) C:\Windows\system32\drivers\spldr.sys
10:37:35.0126 2004 spldr - ok
10:37:35.0210 2004 sptd (cdddec541bc3c96f91ecb48759673505) C:\Windows\system32\Drivers\sptd.sys
10:37:35.0210 2004 Suspicious file (NoAccess): C:\Windows\system32\Drivers\sptd.sys. md5: cdddec541bc3c96f91ecb48759673505
10:37:35.0213 2004 sptd ( LockedFile.Multi.Generic ) - warning
10:37:35.0214 2004 sptd - detected LockedFile.Multi.Generic (1)
10:37:35.0249 2004 srv (e4c2764065d66ea1d2d3ebc28fe99c46) C:\Windows\system32\DRIVERS\srv.sys
10:37:35.0252 2004 srv - ok
10:37:35.0283 2004 srv2 (03f0545bd8d4c77fa0ae1ceedfcc71ab) C:\Windows\system32\DRIVERS\srv2.sys
10:37:35.0286 2004 srv2 - ok
10:37:35.0320 2004 srvnet (be6bd660caa6f291ae06a718a4fa8abc) C:\Windows\system32\DRIVERS\srvnet.sys
10:37:35.0322 2004 srvnet - ok
10:37:35.0370 2004 stexstor (db32d325c192b801df274bfd12a7e72b) C:\Windows\system32\DRIVERS\stexstor.sys
10:37:35.0396 2004 stexstor - ok
10:37:35.0442 2004 storflt (472af0311073dceceaa8fa18ba2bdf89) C:\Windows\system32\drivers\vmstorfl.sys
10:37:35.0443 2004 storflt - ok
10:37:35.0482 2004 storvsc (dcaffd62259e0bdb433dd67b5bb37619) C:\Windows\system32\drivers\storvsc.sys
10:37:35.0507 2004 storvsc - ok
10:37:35.0530 2004 swenum (e58c78a848add9610a4db6d214af5224) C:\Windows\system32\drivers\swenum.sys
10:37:35.0533 2004 swenum - ok
10:37:35.0578 2004 Synth3dVsc - ok
10:37:35.0654 2004 Tcpip (04e4a7d53a7ace02e8c55b17a498f631) C:\Windows\system32\drivers\tcpip.sys
10:37:35.0665 2004 Tcpip - ok
10:37:35.0710 2004 TCPIP6 (04e4a7d53a7ace02e8c55b17a498f631) C:\Windows\system32\DRIVERS\tcpip.sys
10:37:35.0720 2004 TCPIP6 - ok
10:37:35.0760 2004 tcpipreg (cca24162e055c3714ce5a88b100c64ed) C:\Windows\system32\drivers\tcpipreg.sys
10:37:35.0762 2004 tcpipreg - ok
10:37:35.0796 2004 TDPIPE (1cb91b2bd8f6dd367dfc2ef26fd751b2) C:\Windows\system32\drivers\tdpipe.sys
10:37:35.0797 2004 TDPIPE - ok
10:37:35.0816 2004 TDTCP (2c10395baa4847f83042813c515cc289) C:\Windows\system32\drivers\tdtcp.sys
10:37:35.0817 2004 TDTCP - ok
10:37:35.0849 2004 tdx (b459575348c20e8121d6039da063c704) C:\Windows\system32\DRIVERS\tdx.sys
10:37:35.0851 2004 tdx - ok
10:37:35.0881 2004 TermDD (04dbf4b01ea4bf25a9a3e84affac9b20) C:\Windows\system32\drivers\termdd.sys
10:37:35.0907 2004 TermDD - ok
10:37:35.0970 2004 tssecsrv (254bb140eee3c59d6114c1a86b636877) C:\Windows\system32\DRIVERS\tssecsrv.sys
10:37:35.0971 2004 tssecsrv - ok
10:37:36.0011 2004 TsUsbFlt (fd1d6c73e6333be727cbcc6054247654) C:\Windows\system32\drivers\tsusbflt.sys
10:37:36.0037 2004 TsUsbFlt - ok
10:37:36.0063 2004 tsusbhub - ok
10:37:36.0123 2004 tunnel (b2fa25d9b17a68bb93d58b0556e8c90d) C:\Windows\system32\DRIVERS\tunnel.sys
10:37:36.0125 2004 tunnel - ok
10:37:36.0158 2004 uagp35 (750fbcb269f4d7dd2e420c56b795db6d) C:\Windows\system32\DRIVERS\uagp35.sys
10:37:36.0184 2004 uagp35 - ok
10:37:36.0227 2004 udfs (ee43346c7e4b5e63e54f927babbb32ff) C:\Windows\system32\DRIVERS\udfs.sys
10:37:36.0229 2004 udfs - ok
10:37:36.0284 2004 uliagpkx (44e8048ace47befbfdc2e9be4cbc8880) C:\Windows\system32\drivers\uliagpkx.sys
10:37:36.0285 2004 uliagpkx - ok
10:37:36.0328 2004 umbus (d295bed4b898f0fd999fcfa9b32b071b) C:\Windows\system32\drivers\umbus.sys
10:37:36.0353 2004 umbus - ok
10:37:36.0377 2004 UmPass (7550ad0c6998ba1cb4843e920ee0feac) C:\Windows\system32\DRIVERS\umpass.sys
10:37:36.0402 2004 UmPass - ok
10:37:36.0440 2004 usbccgp (7e72e7d7e0757d59481d530fd2b0bfae) C:\Windows\system32\drivers\usbccgp.sys
10:37:36.0441 2004 usbccgp - ok
10:37:36.0471 2004 usbcir (04ec7cec62ec3b6d9354eee93327fc82) C:\Windows\system32\drivers\usbcir.sys
10:37:36.0503 2004 usbcir - ok
10:37:36.0517 2004 usbehci (cfbce999c057d78979a181c9c60f208e) C:\Windows\system32\drivers\usbehci.sys
10:37:36.0518 2004 usbehci - ok
10:37:36.0562 2004 usbhub (9d22aad9ac6a07c691a1113e5f860868) C:\Windows\system32\drivers\usbhub.sys
10:37:36.0589 2004 usbhub - ok
10:37:36.0609 2004 usbohci (a6fb7957ea7afb1165991e54ce934b74) C:\Windows\system32\drivers\usbohci.sys
10:37:36.0610 2004 usbohci - ok
10:37:36.0636 2004 usbprint (797d862fe0875e75c7cc4c1ad7b30252) C:\Windows\system32\DRIVERS\usbprint.sys
10:37:36.0637 2004 usbprint - ok
10:37:36.0661 2004 USBSTOR (bf63ebfc6979fefb2bc03df7989a0c1a) C:\Windows\system32\drivers\USBSTOR.SYS
10:37:36.0663 2004 USBSTOR - ok
10:37:36.0677 2004 usbuhci (78780c3ebce17405b1ccd07a3a8a7d72) C:\Windows\system32\drivers\usbuhci.sys
10:37:36.0703 2004 usbuhci - ok
10:37:36.0745 2004 vdrvroot (a059c4c3edb09e07d21a8e5c0aabd3cb) C:\Windows\system32\drivers\vdrvroot.sys
10:37:36.0746 2004 vdrvroot - ok
10:37:36.0805 2004 VD_FileDisk (e3389e42561670d112d77a431010377b) C:\Windows\system32\drivers\VD_FileDisk.sys
10:37:36.0808 2004 VD_FileDisk - ok
10:37:36.0833 2004 vga (17c408214ea61696cec9c66e388b14f3) C:\Windows\system32\DRIVERS\vgapnp.sys
10:37:36.0834 2004 vga - ok
10:37:36.0914 2004 VgaSave (8e38096ad5c8570a6f1570a61e251561) C:\Windows\System32\drivers\vga.sys
10:37:36.0915 2004 VgaSave - ok
10:37:36.0929 2004 VGPU - ok
10:37:36.0964 2004 vhdmp (5461686cca2fda57b024547733ab42e3) C:\Windows\system32\drivers\vhdmp.sys
10:37:36.0966 2004 vhdmp - ok
10:37:37.0010 2004 viaagp (c829317a37b4bea8f39735d4b076e923) C:\Windows\system32\drivers\viaagp.sys
10:37:37.0012 2004 viaagp - ok
10:37:37.0040 2004 ViaC7 (e02f079a6aa107f06b16549c6e5c7b74) C:\Windows\system32\DRIVERS\viac7.sys
10:37:37.0042 2004 ViaC7 - ok
10:37:37.0064 2004 viaide (e43574f6a56a0ee11809b48c09e4fd3c) C:\Windows\system32\drivers\viaide.sys
10:37:37.0065 2004 viaide - ok
10:37:37.0089 2004 vmbus (c2f2911156fdc7817c52829c86da494e) C:\Windows\system32\drivers\vmbus.sys
10:37:37.0095 2004 vmbus - ok
10:37:37.0124 2004 VMBusHID (d4d77455211e204f370d08f4963063ce) C:\Windows\system32\drivers\VMBusHID.sys
10:37:37.0125 2004 VMBusHID - ok
10:37:37.0146 2004 volmgr (4c63e00f2f4b5f86ab48a58cd990f212) C:\Windows\system32\drivers\volmgr.sys
10:37:37.0148 2004 volmgr - ok
10:37:37.0177 2004 volmgrx (b5bb72067ddddbbfb04b2f89ff8c3c87) C:\Windows\system32\drivers\volmgrx.sys
10:37:37.0182 2004 volmgrx - ok
10:37:37.0221 2004 volsnap (f497f67932c6fa693d7de2780631cfe7) C:\Windows\system32\drivers\volsnap.sys
10:37:37.0224 2004 volsnap - ok
10:37:37.0252 2004 vsmraid (9dfa0cc2f8855a04816729651175b631) C:\Windows\system32\DRIVERS\vsmraid.sys
10:37:37.0254 2004 vsmraid - ok
10:37:37.0274 2004 vwifibus (90567b1e658001e79d7c8bbd3dde5aa6) C:\Windows\System32\drivers\vwifibus.sys
10:37:37.0275 2004 vwifibus - ok
10:37:37.0300 2004 WacomPen (de3721e89c653aa281428c8a69745d90) C:\Windows\system32\DRIVERS\wacompen.sys
10:37:37.0304 2004 WacomPen - ok
10:37:37.0344 2004 WANARP (3c3c78515f5ab448b022bdf5b8ffdd2e) C:\Windows\system32\DRIVERS\wanarp.sys
10:37:37.0345 2004 WANARP - ok
10:37:37.0349 2004 Wanarpv6 (3c3c78515f5ab448b022bdf5b8ffdd2e) C:\Windows\system32\DRIVERS\wanarp.sys
10:37:37.0351 2004 Wanarpv6 - ok
10:37:37.0407 2004 Wd (1112a9badacb47b7c0bb0392e3158dff) C:\Windows\system32\DRIVERS\wd.sys
10:37:37.0408 2004 Wd - ok
10:37:37.0432 2004 Wdf01000 (9950e3d0f08141c7e89e64456ae7dc73) C:\Windows\system32\drivers\Wdf01000.sys
10:37:37.0484 2004 Wdf01000 - ok
10:37:37.0542 2004 WfpLwf (8b9a943f3b53861f2bfaf6c186168f79) C:\Windows\system32\DRIVERS\wfplwf.sys
10:37:37.0567 2004 WfpLwf - ok
10:37:37.0580 2004 WIMMount (5cf95b35e59e2a38023836fff31be64c) C:\Windows\system32\drivers\wimmount.sys
10:37:37.0582 2004 WIMMount - ok
10:37:37.0649 2004 WmiAcpi (0217679b8fca58714c3bf2726d2ca84e) C:\Windows\system32\drivers\wmiacpi.sys
10:37:37.0674 2004 WmiAcpi - ok
10:37:37.0701 2004 ws2ifsl (6db3276587b853bf886b69528fdb048c) C:\Windows\system32\drivers\ws2ifsl.sys
10:37:37.0727 2004 ws2ifsl - ok
10:37:37.0773 2004 WudfPf (e714a1c0354636837e20ccbf00888ee7) C:\Windows\system32\drivers\WudfPf.sys
10:37:37.0800 2004 WudfPf - ok
10:37:37.0835 2004 WUDFRd (1023ee888c9b47178c5293ed5336ab69) C:\Windows\system32\DRIVERS\WUDFRd.sys
10:37:37.0839 2004 WUDFRd - ok
10:37:37.0902 2004 yukonw7 (b07c5b7efdf936ff93d4f540938725be) C:\Windows\system32\DRIVERS\yk62x86.sys
10:37:37.0931 2004 yukonw7 - ok
10:37:37.0946 2004 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0
10:37:37.0953 2004 \Device\Harddisk0\DR0 - ok
10:37:38.0523 2004 MBR (0x1B8) (31cfc50fbd443daeec9a5c7ae8da8f6d) \Device\Harddisk1\DR1
10:37:38.0810 2004 \Device\Harddisk1\DR1 - ok
10:37:38.0813 2004 Boot (0x1200) (09f12c8b57d4673362bbaf4efdc1d3c6) \Device\Harddisk0\DR0\Partition0
10:37:38.0814 2004 \Device\Harddisk0\DR0\Partition0 - ok
10:37:38.0830 2004 Boot (0x1200) (9abcc455698052ca5b72c957441bb9f7) \Device\Harddisk0\DR0\Partition1
10:37:38.0832 2004 \Device\Harddisk0\DR0\Partition1 - ok
10:37:38.0851 2004 Boot (0x1200) (60da173cb75251d245cde1a3a2e05fa7) \Device\Harddisk0\DR0\Partition2
10:37:38.0852 2004 \Device\Harddisk0\DR0\Partition2 - ok
10:37:38.0861 2004 Boot (0x1200) (9dd9f42bcceb014f26ecd3099af7a9d0) \Device\Harddisk0\DR0\Partition3
10:37:38.0862 2004 \Device\Harddisk0\DR0\Partition3 - ok
10:37:38.0866 2004 Boot (0x1200) (103e36efd07f8a2e8011ddc3c643faff) \Device\Harddisk1\DR1\Partition0
10:37:38.0867 2004 \Device\Harddisk1\DR1\Partition0 - ok
10:37:38.0868 2004 ============================================================
10:37:38.0868 2004 Scan finished
10:37:38.0868 2004 ============================================================
10:37:38.0879 2868 Detected object count: 1
10:37:38.0879 2868 Actual detected object count: 1
10:37:41.0444 2868 sptd ( LockedFile.Multi.Generic ) - skipped by user
10:37:41.0445 2868 sptd ( LockedFile.Multi.Generic ) - User select action: Skip
10:37:43.0421 4160 Deinitialize success

V noci som ešte podľa tejto rady
Kód: Vybrat vše
http://www.viry.cz/forum/viewtopic.php?f=11&t=47040
28. 10. 2011 10:34:31 Kontrola pri štarte boot sektor MBR sektor 2. fyzického disku Win32/Agent.SDG.Gen trójsky kôň nemožno liečiť
Vyzerá to tak že mám zasiahnutý aj externý disk WD 640GB.
Tu na je log z TDSSKiller-a
10:37:18.0297 5948 TDSS rootkit removing tool 2.6.13.0 Oct 25 2011 13:56:21
10:37:19.0061 5948 ============================================================
10:37:19.0061 5948 Current date / time: 2011/10/28 10:37:19.0061
10:37:19.0061 5948 SystemInfo:
10:37:19.0061 5948
10:37:19.0061 5948 OS Version: 6.1.7601 ServicePack: 1.0
10:37:19.0061 5948 Product type: Workstation
10:37:19.0061 5948 ComputerName: SPASH-PC
10:37:19.0061 5948 UserName: Spash
10:37:19.0061 5948 Windows directory: C:\Windows
10:37:19.0061 5948 System windows directory: C:\Windows
10:37:19.0061 5948 Processor architecture: Intel x86
10:37:19.0061 5948 Number of processors: 2
10:37:19.0061 5948 Page size: 0x1000
10:37:19.0061 5948 Boot type: Normal boot
10:37:19.0061 5948 ============================================================
10:37:21.0267 5948 Initialize success
10:37:23.0985 2004 ============================================================
10:37:23.0985 2004 Scan started
10:37:23.0985 2004 Mode: Manual;
10:37:23.0985 2004 ============================================================
10:37:25.0049 2004 1394ohci (1b133875b8aa8ac48969bd3458afe9f5) C:\Windows\system32\drivers\1394ohci.sys
10:37:25.0076 2004 1394ohci - ok
10:37:25.0123 2004 84241777 - ok
10:37:25.0173 2004 ACPI (cea80c80bed809aa0da6febc04733349) C:\Windows\system32\drivers\ACPI.sys
10:37:25.0178 2004 ACPI - ok
10:37:25.0236 2004 AcpiPmi (1efbc664abff416d1d07db115dcb264f) C:\Windows\system32\drivers\acpipmi.sys
10:37:25.0262 2004 AcpiPmi - ok
10:37:25.0315 2004 adp94xx (21e785ebd7dc90a06391141aac7892fb) C:\Windows\system32\DRIVERS\adp94xx.sys
10:37:25.0321 2004 adp94xx - ok
10:37:25.0341 2004 adpahci (0c676bc278d5b59ff5abd57bbe9123f2) C:\Windows\system32\DRIVERS\adpahci.sys
10:37:25.0378 2004 adpahci - ok
10:37:25.0395 2004 adpu320 (7c7b5ee4b7b822ec85321fe23a27db33) C:\Windows\system32\DRIVERS\adpu320.sys
10:37:25.0424 2004 adpu320 - ok
10:37:25.0493 2004 AFD (9ebbba55060f786f0fcaa3893bfa2806) C:\Windows\system32\drivers\afd.sys
10:37:25.0496 2004 AFD - ok
10:37:25.0532 2004 agp440 (507812c3054c21cef746b6ee3d04dd6e) C:\Windows\system32\drivers\agp440.sys
10:37:25.0533 2004 agp440 - ok
10:37:25.0569 2004 aic78xx (8b30250d573a8f6b4bd23195160d8707) C:\Windows\system32\DRIVERS\djsvs.sys
10:37:25.0595 2004 aic78xx - ok
10:37:25.0644 2004 aliide (0d40bcf52ea90fc7df2aeab6503dea44) C:\Windows\system32\drivers\aliide.sys
10:37:25.0670 2004 aliide - ok
10:37:25.0706 2004 amdagp (3c6600a0696e90a463771c7422e23ab5) C:\Windows\system32\drivers\amdagp.sys
10:37:25.0707 2004 amdagp - ok
10:37:25.0719 2004 amdide (cd5914170297126b6266860198d1d4f0) C:\Windows\system32\drivers\amdide.sys
10:37:25.0745 2004 amdide - ok
10:37:25.0786 2004 AmdK8 (00dda200d71bac534bf56a9db5dfd666) C:\Windows\system32\DRIVERS\amdk8.sys
10:37:25.0813 2004 AmdK8 - ok
10:37:25.0825 2004 AmdPPM (3cbf30f5370fda40dd3e87df38ea53b6) C:\Windows\system32\DRIVERS\amdppm.sys
10:37:25.0873 2004 AmdPPM - ok
10:37:25.0919 2004 amdsata (e7f4d42d8076ec60e21715cd11743a0d) C:\Windows\system32\drivers\amdsata.sys
10:37:25.0920 2004 amdsata - ok
10:37:25.0962 2004 amdsbs (ea43af0c423ff267355f74e7a53bdaba) C:\Windows\system32\DRIVERS\amdsbs.sys
10:37:25.0990 2004 amdsbs - ok
10:37:26.0017 2004 amdxata (146459d2b08bfdcbfa856d9947043c81) C:\Windows\system32\drivers\amdxata.sys
10:37:26.0018 2004 amdxata - ok
10:37:26.0065 2004 AppID (aea177f783e20150ace5383ee368da19) C:\Windows\system32\drivers\appid.sys
10:37:26.0066 2004 AppID - ok
10:37:26.0105 2004 arc (2932004f49677bd84dbc72edb754ffb3) C:\Windows\system32\DRIVERS\arc.sys
10:37:26.0106 2004 arc - ok
10:37:26.0126 2004 arcsas (5d6f36c46fd283ae1b57bd2e9feb0bc7) C:\Windows\system32\DRIVERS\arcsas.sys
10:37:26.0152 2004 arcsas - ok
10:37:26.0177 2004 AsyncMac (add2ade1c2b285ab8378d2daaf991481) C:\Windows\system32\DRIVERS\asyncmac.sys
10:37:26.0178 2004 AsyncMac - ok
10:37:26.0320 2004 atapi (338c86357871c167a96ab976519bf59e) C:\Windows\system32\drivers\atapi.sys
10:37:26.0321 2004 atapi - ok
10:37:26.0430 2004 b06bdrv (1a231abec60fd316ec54c66715543cec) C:\Windows\system32\DRIVERS\bxvbdx.sys
10:37:26.0436 2004 b06bdrv - ok
10:37:26.0470 2004 b57nd60x (bd8869eb9cde6bbe4508d869929869ee) C:\Windows\system32\DRIVERS\b57nd60x.sys
10:37:26.0520 2004 b57nd60x - ok
10:37:26.0537 2004 Beep (505506526a9d467307b3c393dedaf858) C:\Windows\system32\drivers\Beep.sys
10:37:26.0563 2004 Beep - ok
10:37:26.0592 2004 blbdrive (2287078ed48fcfc477b05b20cf38f36f) C:\Windows\system32\DRIVERS\blbdrive.sys
10:37:26.0593 2004 blbdrive - ok
10:37:26.0630 2004 bowser (8f2da3028d5fcbd1a060a3de64cd6506) C:\Windows\system32\DRIVERS\bowser.sys
10:37:26.0631 2004 bowser - ok
10:37:26.0643 2004 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\DRIVERS\BrFiltLo.sys
10:37:26.0646 2004 BrFiltLo - ok
10:37:26.0659 2004 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\DRIVERS\BrFiltUp.sys
10:37:26.0662 2004 BrFiltUp - ok
10:37:26.0693 2004 Brserid (845b8ce732e67f3b4133164868c666ea) C:\Windows\System32\Drivers\Brserid.sys
10:37:26.0699 2004 Brserid - ok
10:37:26.0712 2004 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\System32\Drivers\BrSerWdm.sys
10:37:26.0713 2004 BrSerWdm - ok
10:37:26.0726 2004 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\System32\Drivers\BrUsbMdm.sys
10:37:26.0730 2004 BrUsbMdm - ok
10:37:26.0742 2004 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\System32\Drivers\BrUsbSer.sys
10:37:26.0746 2004 BrUsbSer - ok
10:37:26.0759 2004 BTHMODEM (ed3df7c56ce0084eb2034432fc56565a) C:\Windows\system32\DRIVERS\bthmodem.sys
10:37:26.0785 2004 BTHMODEM - ok
10:37:26.0827 2004 cdfs (77ea11b065e0a8ab902d78145ca51e10) C:\Windows\system32\DRIVERS\cdfs.sys
10:37:26.0828 2004 cdfs - ok
10:37:26.0877 2004 cdrom (be167ed0fdb9c1fa1133953c18d5a6c9) C:\Windows\system32\drivers\cdrom.sys
10:37:26.0878 2004 cdrom - ok
10:37:26.0908 2004 circlass (3fe3fe94a34df6fb06e6418d0f6a0060) C:\Windows\system32\DRIVERS\circlass.sys
10:37:26.0911 2004 circlass - ok
10:37:26.0943 2004 CLFS (635181e0e9bbf16871bf5380d71db02d) C:\Windows\system32\CLFS.sys
10:37:26.0947 2004 CLFS - ok
10:37:26.0981 2004 CmBatt (dea805815e587dad1dd2c502220b5616) C:\Windows\system32\DRIVERS\CmBatt.sys
10:37:26.0982 2004 CmBatt - ok
10:37:27.0011 2004 cmdide (c537b1db64d495b9b4717b4d6d9edbf2) C:\Windows\system32\drivers\cmdide.sys
10:37:27.0011 2004 cmdide - ok
10:37:27.0043 2004 CNG (1b675691ed940766149c93e8f4488d68) C:\Windows\system32\Drivers\cng.sys
10:37:27.0047 2004 CNG - ok
10:37:27.0065 2004 Compbatt (a6023d3823c37043986713f118a89bee) C:\Windows\system32\DRIVERS\compbatt.sys
10:37:27.0066 2004 Compbatt - ok
10:37:27.0106 2004 CompositeBus (cbe8c58a8579cfe5fccf809e6f114e89) C:\Windows\system32\drivers\CompositeBus.sys
10:37:27.0110 2004 CompositeBus - ok
10:37:27.0139 2004 crcdisk (2c4ebcfc84a9b44f209dff6c6e6c61d1) C:\Windows\system32\DRIVERS\crcdisk.sys
10:37:27.0164 2004 crcdisk - ok
10:37:27.0216 2004 CSC (3c2177a897b4ca2788c6fb0c3fd81d4b) C:\Windows\system32\drivers\csc.sys
10:37:27.0220 2004 CSC - ok
10:37:27.0281 2004 DfsC (f024449c97ec1e464aaffda18593db88) C:\Windows\system32\Drivers\dfsc.sys
10:37:27.0306 2004 DfsC - ok
10:37:27.0336 2004 discache (1a050b0274bfb3890703d490f330c0da) C:\Windows\system32\drivers\discache.sys
10:37:27.0336 2004 discache - ok
10:37:27.0360 2004 Disk (565003f326f99802e68ca78f2a68e9ff) C:\Windows\system32\DRIVERS\disk.sys
10:37:27.0385 2004 Disk - ok
10:37:27.0439 2004 drmkaud (b918e7c5f9bf77202f89e1a9539f2eb4) C:\Windows\system32\drivers\drmkaud.sys
10:37:27.0464 2004 drmkaud - ok
10:37:27.0499 2004 DXGKrnl (23f5d28378a160352ba8f817bd8c71cb) C:\Windows\System32\drivers\dxgkrnl.sys
10:37:27.0674 2004 DXGKrnl - ok
10:37:27.0713 2004 eamon (3b2e8f97b6869c29da023ee75bf585d5) C:\Windows\system32\DRIVERS\eamon.sys
10:37:27.0718 2004 eamon - ok
10:37:27.0815 2004 ebdrv (024e1b5cac09731e4d868e64dbfb4ab0) C:\Windows\system32\DRIVERS\evbdx.sys
10:37:27.0884 2004 ebdrv - ok
10:37:28.0175 2004 ehdrv (4fad054cbcaa296be7bd2cb77da9d9b4) C:\Windows\system32\DRIVERS\ehdrv.sys
10:37:28.0210 2004 ehdrv - ok
10:37:28.0268 2004 elxstor (0ed67910c8c326796faa00b2bf6d9d3c) C:\Windows\system32\DRIVERS\elxstor.sys
10:37:28.0274 2004 elxstor - ok
10:37:28.0302 2004 epfw (63c9dfc27c401bff6188a1ca68d0abb0) C:\Windows\system32\DRIVERS\epfw.sys
10:37:28.0307 2004 epfw - ok
10:37:28.0327 2004 Epfwndis (3b47010b2425b69826004767e59045ba) C:\Windows\system32\DRIVERS\Epfwndis.sys
10:37:28.0376 2004 Epfwndis - ok
10:37:28.0424 2004 epfwwfp (b379d66406fe395e8adc557ef6074d17) C:\Windows\system32\DRIVERS\epfwwfp.sys
10:37:28.0428 2004 epfwwfp - ok
10:37:28.0464 2004 ErrDev (8fc3208352dd3912c94367a206ab3f11) C:\Windows\system32\drivers\errdev.sys
10:37:28.0488 2004 ErrDev - ok
10:37:28.0534 2004 exfat (2dc9108d74081149cc8b651d3a26207f) C:\Windows\system32\drivers\exfat.sys
10:37:28.0536 2004 exfat - ok
10:37:28.0551 2004 fastfat (7e0ab74553476622fb6ae36f73d97d35) C:\Windows\system32\drivers\fastfat.sys
10:37:28.0553 2004 fastfat - ok
10:37:28.0588 2004 fdc (e817a017f82df2a1f8cfdbda29388b29) C:\Windows\system32\DRIVERS\fdc.sys
10:37:28.0589 2004 fdc - ok
10:37:28.0607 2004 FileInfo (6cf00369c97f3cf563be99be983d13d8) C:\Windows\system32\drivers\fileinfo.sys
10:37:28.0608 2004 FileInfo - ok
10:37:28.0622 2004 Filetrace (42c51dc94c91da21cb9196eb64c45db9) C:\Windows\system32\drivers\filetrace.sys
10:37:28.0623 2004 Filetrace - ok
10:37:28.0637 2004 flpydisk (87907aa70cb3c56600f1c2fb8841579b) C:\Windows\system32\DRIVERS\flpydisk.sys
10:37:28.0638 2004 flpydisk - ok
10:37:28.0671 2004 FltMgr (7520ec808e0c35e0ee6f841294316653) C:\Windows\system32\drivers\fltmgr.sys
10:37:28.0673 2004 FltMgr - ok
10:37:28.0690 2004 FsDepends (1a16b57943853e598cff37fe2b8cbf1d) C:\Windows\system32\drivers\FsDepends.sys
10:37:28.0691 2004 FsDepends - ok
10:37:28.0704 2004 Fs_Rec (a574b4360e438977038aae4bf60d79a2) C:\Windows\system32\drivers\Fs_Rec.sys
10:37:28.0731 2004 Fs_Rec - ok
10:37:28.0781 2004 fvevol (8a73e79089b282100b9393b644cb853b) C:\Windows\system32\DRIVERS\fvevol.sys
10:37:28.0832 2004 fvevol - ok
10:37:28.0853 2004 gagp30kx (65ee0c7a58b65e74ae05637418153938) C:\Windows\system32\DRIVERS\gagp30kx.sys
10:37:28.0854 2004 gagp30kx - ok
10:37:28.0875 2004 hcw85cir (c44e3c2bab6837db337ddee7544736db) C:\Windows\system32\drivers\hcw85cir.sys
10:37:28.0876 2004 hcw85cir - ok
10:37:28.0920 2004 HdAudAddService (a5ef29d5315111c80a5c1abad14c8972) C:\Windows\system32\drivers\HdAudio.sys
10:37:28.0923 2004 HdAudAddService - ok
10:37:28.0948 2004 HDAudBus (9036377b8a6c15dc2eec53e489d159b5) C:\Windows\system32\drivers\HDAudBus.sys
10:37:28.0952 2004 HDAudBus - ok
10:37:28.0979 2004 HidBatt (1d58a7f3e11a9731d0eaaaa8405acc36) C:\Windows\system32\DRIVERS\HidBatt.sys
10:37:29.0003 2004 HidBatt - ok
10:37:29.0018 2004 HidBth (89448f40e6df260c206a193a4683ba78) C:\Windows\system32\DRIVERS\hidbth.sys
10:37:29.0019 2004 HidBth - ok
10:37:29.0052 2004 HidIr (cf50b4cf4a4f229b9f3c08351f99ca5e) C:\Windows\system32\DRIVERS\hidir.sys
10:37:29.0077 2004 HidIr - ok
10:37:29.0143 2004 HidUsb (10c19f8290891af023eaec0832e1eb4d) C:\Windows\system32\drivers\hidusb.sys
10:37:29.0169 2004 HidUsb - ok
10:37:29.0201 2004 HpSAMD (295fdc419039090eb8b49ffdbb374549) C:\Windows\system32\drivers\HpSAMD.sys
10:37:29.0202 2004 HpSAMD - ok
10:37:29.0251 2004 HTTP (871917b07a141bff43d76d8844d48106) C:\Windows\system32\drivers\HTTP.sys
10:37:29.0256 2004 HTTP - ok
10:37:29.0296 2004 hwpolicy (0c4e035c7f105f1299258c90886c64c5) C:\Windows\system32\drivers\hwpolicy.sys
10:37:29.0296 2004 hwpolicy - ok
10:37:29.0329 2004 i8042prt (f151f0bdc47f4a28b1b20a0818ea36d6) C:\Windows\system32\drivers\i8042prt.sys
10:37:29.0330 2004 i8042prt - ok
10:37:29.0377 2004 iaStorV (a3cae5d281db4cff7cff8233507ee5ad) C:\Windows\system32\drivers\iaStorV.sys
10:37:29.0405 2004 iaStorV - ok
10:37:29.0436 2004 iirsp (4173ff5708f3236cf25195fecd742915) C:\Windows\system32\DRIVERS\iirsp.sys
10:37:29.0463 2004 iirsp - ok
10:37:29.0652 2004 IntcAzAudAddService (345ac48d17f5c2f2aa1ee50d34c3978b) C:\Windows\system32\drivers\RTKVHDA.sys
10:37:29.0708 2004 IntcAzAudAddService - ok
10:37:29.0976 2004 intelide (a0f12f2c9ba6c72f3987ce780e77c130) C:\Windows\system32\drivers\intelide.sys
10:37:29.0977 2004 intelide - ok
10:37:30.0015 2004 intelppm (3b514d27bfc4accb4037bc6685f766e0) C:\Windows\system32\DRIVERS\intelppm.sys
10:37:30.0050 2004 intelppm - ok
10:37:30.0066 2004 IpFilterDriver (709d1761d3b19a932ff0238ea6d50200) C:\Windows\system32\DRIVERS\ipfltdrv.sys
10:37:30.0092 2004 IpFilterDriver - ok
10:37:30.0134 2004 IPMIDRV (4bd7134618c1d2a27466a099062547bf) C:\Windows\system32\drivers\IPMIDrv.sys
10:37:30.0135 2004 IPMIDRV - ok
10:37:30.0160 2004 IPNAT (a5fa468d67abcdaa36264e463a7bb0cd) C:\Windows\system32\drivers\ipnat.sys
10:37:30.0161 2004 IPNAT - ok
10:37:30.0179 2004 IRENUM (42996cff20a3084a56017b7902307e9f) C:\Windows\system32\drivers\irenum.sys
10:37:30.0180 2004 IRENUM - ok
10:37:30.0208 2004 isapnp (1f32bb6b38f62f7df1a7ab7292638a35) C:\Windows\system32\drivers\isapnp.sys
10:37:30.0209 2004 isapnp - ok
10:37:30.0248 2004 iScsiPrt (cb7a9abb12b8415bce5d74994c7ba3ae) C:\Windows\system32\drivers\msiscsi.sys
10:37:30.0250 2004 iScsiPrt - ok
10:37:30.0288 2004 kbdclass (adef52ca1aeae82b50df86b56413107e) C:\Windows\system32\drivers\kbdclass.sys
10:37:30.0315 2004 kbdclass - ok
10:37:30.0364 2004 kbdhid (9e3ced91863e6ee98c24794d05e27a71) C:\Windows\system32\drivers\kbdhid.sys
10:37:30.0389 2004 kbdhid - ok
10:37:30.0421 2004 KSecDD (412cea1aa78cc02a447f5c9e62b32ff1) C:\Windows\system32\Drivers\ksecdd.sys
10:37:30.0423 2004 KSecDD - ok
10:37:30.0447 2004 KSecPkg (26c046977e85b95036453d7b88ba1820) C:\Windows\system32\Drivers\ksecpkg.sys
10:37:30.0474 2004 KSecPkg - ok
10:37:30.0556 2004 lltdio (f7611ec07349979da9b0ae1f18ccc7a6) C:\Windows\system32\DRIVERS\lltdio.sys
10:37:30.0557 2004 lltdio - ok
10:37:30.0600 2004 LSI_FC (eb119a53ccf2acc000ac71b065b78fef) C:\Windows\system32\DRIVERS\lsi_fc.sys
10:37:30.0601 2004 LSI_FC - ok
10:37:30.0616 2004 LSI_SAS (8ade1c877256a22e49b75d1cc9161f9c) C:\Windows\system32\DRIVERS\lsi_sas.sys
10:37:30.0617 2004 LSI_SAS - ok
10:37:30.0638 2004 LSI_SAS2 (dc9dc3d3daa0e276fd2ec262e38b11e9) C:\Windows\system32\DRIVERS\lsi_sas2.sys
10:37:30.0639 2004 LSI_SAS2 - ok
10:37:30.0653 2004 LSI_SCSI (0a036c7d7cab643a7f07135ac47e0524) C:\Windows\system32\DRIVERS\lsi_scsi.sys
10:37:30.0654 2004 LSI_SCSI - ok
10:37:30.0683 2004 luafv (6703e366cc18d3b6e534f5cf7df39cee) C:\Windows\system32\drivers\luafv.sys
10:37:30.0685 2004 luafv - ok
10:37:30.0701 2004 megasas (0fff5b045293002ab38eb1fd1fc2fb74) C:\Windows\system32\DRIVERS\megasas.sys
10:37:30.0702 2004 megasas - ok
10:37:30.0728 2004 MegaSR (dcbab2920c75f390caf1d29f675d03d6) C:\Windows\system32\DRIVERS\MegaSR.sys
10:37:30.0731 2004 MegaSR - ok
10:37:30.0746 2004 Modem (f001861e5700ee84e2d4e52c712f4964) C:\Windows\system32\drivers\modem.sys
10:37:30.0772 2004 Modem - ok
10:37:30.0797 2004 monitor (79d10964de86b292320e9dfe02282a23) C:\Windows\system32\DRIVERS\monitor.sys
10:37:30.0846 2004 monitor - ok
10:37:30.0881 2004 mouclass (fb18cc1d4c2e716b6b903b0ac0cc0609) C:\Windows\system32\drivers\mouclass.sys
10:37:30.0907 2004 mouclass - ok
10:37:30.0935 2004 mouhid (2c388d2cd01c9042596cf3c8f3c7b24d) C:\Windows\system32\DRIVERS\mouhid.sys
10:37:30.0936 2004 mouhid - ok
10:37:30.0976 2004 mountmgr (fc8771f45ecccfd89684e38842539b9b) C:\Windows\system32\drivers\mountmgr.sys
10:37:30.0977 2004 mountmgr - ok
10:37:31.0007 2004 mpio (2d699fb6e89ce0d8da14ecc03b3edfe0) C:\Windows\system32\drivers\mpio.sys
10:37:31.0008 2004 mpio - ok
10:37:31.0030 2004 mpsdrv (ad2723a7b53dd1aacae6ad8c0bfbf4d0) C:\Windows\system32\drivers\mpsdrv.sys
10:37:31.0031 2004 mpsdrv - ok
10:37:31.0063 2004 MRxDAV (ceb46ab7c01c9f825f8cc6babc18166a) C:\Windows\system32\drivers\mrxdav.sys
10:37:31.0064 2004 MRxDAV - ok
10:37:31.0118 2004 mrxsmb (5d16c921e3671636c0eba3bbaac5fd25) C:\Windows\system32\DRIVERS\mrxsmb.sys
10:37:31.0144 2004 mrxsmb - ok
10:37:31.0159 2004 mrxsmb10 (6d17a4791aca19328c685d256349fefc) C:\Windows\system32\DRIVERS\mrxsmb10.sys
10:37:31.0187 2004 mrxsmb10 - ok
10:37:31.0221 2004 mrxsmb20 (b81f204d146000be76651a50670a5e9e) C:\Windows\system32\DRIVERS\mrxsmb20.sys
10:37:31.0222 2004 mrxsmb20 - ok
10:37:31.0250 2004 msahci (012c5f4e9349e711e11e0f19a8589f0a) C:\Windows\system32\drivers\msahci.sys
10:37:31.0251 2004 msahci - ok
10:37:31.0270 2004 msdsm (55055f8ad8be27a64c831322a780a228) C:\Windows\system32\drivers\msdsm.sys
10:37:31.0298 2004 msdsm - ok
10:37:31.0328 2004 Msfs (daefb28e3af5a76abcc2c3078c07327f) C:\Windows\system32\drivers\Msfs.sys
10:37:31.0329 2004 Msfs - ok
10:37:31.0342 2004 mshidkmdf (3e1e5767043c5af9367f0056295e9f84) C:\Windows\System32\drivers\mshidkmdf.sys
10:37:31.0365 2004 mshidkmdf - ok
10:37:31.0405 2004 msisadrv (0a4e5757ae09fa9622e3158cc1aef114) C:\Windows\system32\drivers\msisadrv.sys
10:37:31.0406 2004 msisadrv - ok
10:37:31.0460 2004 MSKSSRV (8c0860d6366aaffb6c5bb9df9448e631) C:\Windows\system32\drivers\MSKSSRV.sys
10:37:31.0477 2004 MSKSSRV - ok
10:37:31.0491 2004 MSPCLOCK (3ea8b949f963562cedbb549eac0c11ce) C:\Windows\system32\drivers\MSPCLOCK.sys
10:37:31.0514 2004 MSPCLOCK - ok
10:37:31.0527 2004 MSPQM (f456e973590d663b1073e9c463b40932) C:\Windows\system32\drivers\MSPQM.sys
10:37:31.0530 2004 MSPQM - ok
10:37:31.0545 2004 MsRPC (0e008fc4819d238c51d7c93e7b41e560) C:\Windows\system32\drivers\MsRPC.sys
10:37:31.0546 2004 MsRPC - ok
10:37:31.0574 2004 mssmbios (fc6b9ff600cc585ea38b12589bd4e246) C:\Windows\system32\drivers\mssmbios.sys
10:37:31.0598 2004 mssmbios - ok
10:37:31.0625 2004 MSTEE (b42c6b921f61a6e55159b8be6cd54a36) C:\Windows\system32\drivers\MSTEE.sys
10:37:31.0644 2004 MSTEE - ok
10:37:31.0657 2004 MTConfig (33599130f44e1f34631cea241de8ac84) C:\Windows\system32\DRIVERS\MTConfig.sys
10:37:31.0683 2004 MTConfig - ok
10:37:31.0696 2004 Mup (159fad02f64e6381758c990f753bcc80) C:\Windows\system32\Drivers\mup.sys
10:37:31.0697 2004 Mup - ok
10:37:31.0732 2004 NativeWifiP (26384429fcd85d83746f63e798ab1480) C:\Windows\system32\DRIVERS\nwifi.sys
10:37:31.0735 2004 NativeWifiP - ok
10:37:31.0794 2004 NDIS (e7c54812a2aaf43316eb6930c1ffa108) C:\Windows\system32\drivers\ndis.sys
10:37:31.0800 2004 NDIS - ok
10:37:31.0841 2004 NdisCap (0e1787aa6c9191d3d319e8bafe86f80c) C:\Windows\system32\DRIVERS\ndiscap.sys
10:37:31.0842 2004 NdisCap - ok
10:37:31.0868 2004 NdisTapi (e4a8aec125a2e43a9e32afeea7c9c888) C:\Windows\system32\DRIVERS\ndistapi.sys
10:37:31.0870 2004 NdisTapi - ok
10:37:31.0901 2004 Ndisuio (d8a65dafb3eb41cbb622745676fcd072) C:\Windows\system32\DRIVERS\ndisuio.sys
10:37:31.0902 2004 Ndisuio - ok
10:37:31.0936 2004 NdisWan (38fbe267e7e6983311179230facb1017) C:\Windows\system32\DRIVERS\ndiswan.sys
10:37:31.0938 2004 NdisWan - ok
10:37:31.0968 2004 NDProxy (a4bdc541e69674fbff1a8ff00be913f2) C:\Windows\system32\drivers\NDProxy.sys
10:37:31.0969 2004 NDProxy - ok
10:37:32.0006 2004 NetBIOS (80b275b1ce3b0e79909db7b39af74d51) C:\Windows\system32\DRIVERS\netbios.sys
10:37:32.0007 2004 NetBIOS - ok
10:37:32.0044 2004 NetBT (280122ddcf04b378edd1ad54d71c1e54) C:\Windows\system32\DRIVERS\netbt.sys
10:37:32.0046 2004 NetBT - ok
10:37:32.0088 2004 nfrd960 (1d85c4b390b0ee09c7a46b91efb2c097) C:\Windows\system32\DRIVERS\nfrd960.sys
10:37:32.0118 2004 nfrd960 - ok
10:37:32.0143 2004 Npfs (1db262a9f8c087e8153d89bef3d2235f) C:\Windows\system32\drivers\Npfs.sys
10:37:32.0144 2004 Npfs - ok
10:37:32.0160 2004 nsiproxy (e9a0a4d07e53d8fea2bb8387a3293c58) C:\Windows\system32\drivers\nsiproxy.sys
10:37:32.0162 2004 nsiproxy - ok
10:37:32.0226 2004 Ntfs (33c3093d09017cfe2e219f2472bff6eb) C:\Windows\system32\drivers\Ntfs.sys
10:37:32.0236 2004 Ntfs - ok
10:37:32.0261 2004 Null (f9756a98d69098dca8945d62858a812c) C:\Windows\system32\drivers\Null.sys
10:37:32.0285 2004 Null - ok
10:37:32.0622 2004 nvlddmkm (66b4bf606fcc7f0622d4a21bb1461089) C:\Windows\system32\DRIVERS\nvlddmkm.sys
10:37:32.0704 2004 nvlddmkm - ok
10:37:32.0968 2004 nvraid (af2eec9580c1d32fb7eaf105d9784061) C:\Windows\system32\drivers\nvraid.sys
10:37:33.0004 2004 nvraid - ok
10:37:33.0028 2004 nvstor (9283c58ebaa2618f93482eb5dabcec82) C:\Windows\system32\drivers\nvstor.sys
10:37:33.0030 2004 nvstor - ok
10:37:33.0083 2004 nv_agp (5a0983915f02bae73267cc2a041f717d) C:\Windows\system32\drivers\nv_agp.sys
10:37:33.0085 2004 nv_agp - ok
10:37:33.0119 2004 ohci1394 (08a70a1f2cdde9bb49b885cb817a66eb) C:\Windows\system32\drivers\ohci1394.sys
10:37:33.0120 2004 ohci1394 - ok
10:37:33.0161 2004 Parport (2ea877ed5dd9713c5ac74e8ea7348d14) C:\Windows\system32\DRIVERS\parport.sys
10:37:33.0187 2004 Parport - ok
10:37:33.0215 2004 partmgr (bf8f6af06da75b336f07e23aef97d93b) C:\Windows\system32\drivers\partmgr.sys
10:37:33.0216 2004 partmgr - ok
10:37:33.0229 2004 Parvdm (eb0a59f29c19b86479d36b35983daadc) C:\Windows\system32\DRIVERS\parvdm.sys
10:37:33.0253 2004 Parvdm - ok
10:37:33.0281 2004 pci (673e55c3498eb970088e812ea820aa8f) C:\Windows\system32\drivers\pci.sys
10:37:33.0283 2004 pci - ok
10:37:33.0311 2004 pciide (afe86f419014db4e5593f69ffe26ce0a) C:\Windows\system32\drivers\pciide.sys
10:37:33.0336 2004 pciide - ok
10:37:33.0367 2004 pcmcia (f396431b31693e71e8a80687ef523506) C:\Windows\system32\DRIVERS\pcmcia.sys
10:37:33.0369 2004 pcmcia - ok
10:37:33.0383 2004 pcw (250f6b43d2b613172035c6747aeeb19f) C:\Windows\system32\drivers\pcw.sys
10:37:33.0410 2004 pcw - ok
10:37:33.0439 2004 PEAUTH (9e0104ba49f4e6973749a02bf41344ed) C:\Windows\system32\drivers\peauth.sys
10:37:33.0448 2004 PEAUTH - ok
10:37:33.0526 2004 PptpMiniport (631e3e205ad6d86f2aed6a4a8e69f2db) C:\Windows\system32\DRIVERS\raspptp.sys
10:37:33.0528 2004 PptpMiniport - ok
10:37:33.0541 2004 Processor (85b1e3a0c7585bc4aae6899ec6fcf011) C:\Windows\system32\DRIVERS\processr.sys
10:37:33.0567 2004 Processor - ok
10:37:33.0621 2004 Psched (6270ccae2a86de6d146529fe55b3246a) C:\Windows\system32\DRIVERS\pacer.sys
10:37:33.0622 2004 Psched - ok
10:37:33.0671 2004 ql2300 (ab95ecf1f6659a60ddc166d8315b0751) C:\Windows\system32\DRIVERS\ql2300.sys
10:37:33.0690 2004 ql2300 - ok
10:37:33.0706 2004 ql40xx (b4dd51dd25182244b86737dc51af2270) C:\Windows\system32\DRIVERS\ql40xx.sys
10:37:33.0707 2004 ql40xx - ok
10:37:33.0723 2004 QWAVEdrv (584078ca1b95ca72df2a27c336f9719d) C:\Windows\system32\drivers\qwavedrv.sys
10:37:33.0749 2004 QWAVEdrv - ok
10:37:33.0763 2004 RasAcd (30a81b53c766d0133bb86d234e5556ab) C:\Windows\system32\DRIVERS\rasacd.sys
10:37:33.0788 2004 RasAcd - ok
10:37:33.0826 2004 RasAgileVpn (57ec4aef73660166074d8f7f31c0d4fd) C:\Windows\system32\DRIVERS\AgileVpn.sys
10:37:33.0851 2004 RasAgileVpn - ok
10:37:33.0869 2004 Rasl2tp (d9f91eafec2815365cbe6d167e4e332a) C:\Windows\system32\DRIVERS\rasl2tp.sys
10:37:33.0870 2004 Rasl2tp - ok
10:37:33.0891 2004 RasPppoe (0fe8b15916307a6ac12bfb6a63e45507) C:\Windows\system32\DRIVERS\raspppoe.sys
10:37:33.0893 2004 RasPppoe - ok
10:37:33.0918 2004 RasSstp (44101f495a83ea6401d886e7fd70096b) C:\Windows\system32\DRIVERS\rassstp.sys
10:37:33.0919 2004 RasSstp - ok
10:37:33.0951 2004 rdbss (d528bc58a489409ba40334ebf96a311b) C:\Windows\system32\DRIVERS\rdbss.sys
10:37:33.0953 2004 rdbss - ok
10:37:33.0976 2004 rdpbus (0d8f05481cb76e70e1da06ee9f0da9df) C:\Windows\system32\DRIVERS\rdpbus.sys
10:37:34.0001 2004 rdpbus - ok
10:37:34.0033 2004 RDPCDD (23dae03f29d253ae74c44f99e515f9a1) C:\Windows\system32\DRIVERS\RDPCDD.sys
10:37:34.0058 2004 RDPCDD - ok
10:37:34.0093 2004 RDPDR (b973fcfc50dc1434e1970a146f7e3885) C:\Windows\system32\drivers\rdpdr.sys
10:37:34.0095 2004 RDPDR - ok
10:37:34.0118 2004 RDPENCDD (5a53ca1598dd4156d44196d200c94b8a) C:\Windows\system32\drivers\rdpencdd.sys
10:37:34.0119 2004 RDPENCDD - ok
10:37:34.0136 2004 RDPREFMP (44b0a53cd4f27d50ed461dae0c0b4e1f) C:\Windows\system32\drivers\rdprefmp.sys
10:37:34.0137 2004 RDPREFMP - ok
10:37:34.0195 2004 RdpVideoMiniport (68a0387f58e226deee23d9715955572a) C:\Windows\system32\drivers\rdpvideominiport.sys
10:37:34.0220 2004 RdpVideoMiniport - ok
10:37:34.0262 2004 RDPWD (288b06960d78428ff89e811632684e20) C:\Windows\system32\drivers\RDPWD.sys
10:37:34.0289 2004 RDPWD - ok
10:37:34.0379 2004 rdyboost (518395321dc96fe2c9f0e96ac743b656) C:\Windows\system32\drivers\rdyboost.sys
10:37:34.0381 2004 rdyboost - ok
10:37:34.0451 2004 rspndr (032b0d36ad92b582d869879f5af5b928) C:\Windows\system32\DRIVERS\rspndr.sys
10:37:34.0453 2004 rspndr - ok
10:37:34.0488 2004 s3cap (7fa7f2e249a5dcbb7970630e15e1f482) C:\Windows\system32\drivers\vms3cap.sys
10:37:34.0521 2004 s3cap - ok
10:37:34.0565 2004 sbp2port (05d860da1040f111503ac416ccef2bca) C:\Windows\system32\drivers\sbp2port.sys
10:37:34.0591 2004 sbp2port - ok
10:37:34.0628 2004 scfilter (0693b5ec673e34dc147e195779a4dcf6) C:\Windows\system32\DRIVERS\scfilter.sys
10:37:34.0631 2004 scfilter - ok
10:37:34.0674 2004 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
10:37:34.0675 2004 secdrv - ok
10:37:34.0716 2004 Serenum (9ad8b8b515e3df6acd4212ef465de2d1) C:\Windows\system32\DRIVERS\serenum.sys
10:37:34.0741 2004 Serenum - ok
10:37:34.0756 2004 Serial (5fb7fcea0490d821f26f39cc5ea3d1e2) C:\Windows\system32\DRIVERS\serial.sys
10:37:34.0757 2004 Serial - ok
10:37:34.0780 2004 sermouse (79bffb520327ff916a582dfea17aa813) C:\Windows\system32\DRIVERS\sermouse.sys
10:37:34.0781 2004 sermouse - ok
10:37:34.0825 2004 sffdisk (9f976e1eb233df46fce808d9dea3eb9c) C:\Windows\system32\drivers\sffdisk.sys
10:37:34.0850 2004 sffdisk - ok
10:37:34.0864 2004 sffp_mmc (932a68ee27833cfd57c1639d375f2731) C:\Windows\system32\drivers\sffp_mmc.sys
10:37:34.0889 2004 sffp_mmc - ok
10:37:34.0911 2004 sffp_sd (6d4ccaedc018f1cf52866bbbaa235982) C:\Windows\system32\drivers\sffp_sd.sys
10:37:34.0912 2004 sffp_sd - ok
10:37:34.0938 2004 sfloppy (db96666cc8312ebc45032f30b007a547) C:\Windows\system32\DRIVERS\sfloppy.sys
10:37:34.0939 2004 sfloppy - ok
10:37:34.0973 2004 sisagp (2565cac0dc9fe0371bdce60832582b2e) C:\Windows\system32\drivers\sisagp.sys
10:37:34.0974 2004 sisagp - ok
10:37:34.0988 2004 SiSRaid2 (a9f0486851becb6dda1d89d381e71055) C:\Windows\system32\DRIVERS\SiSRaid2.sys
10:37:34.0989 2004 SiSRaid2 - ok
10:37:35.0018 2004 SiSRaid4 (3727097b55738e2f554972c3be5bc1aa) C:\Windows\system32\DRIVERS\sisraid4.sys
10:37:35.0068 2004 SiSRaid4 - ok
10:37:35.0090 2004 Smb (3e21c083b8a01cb70ba1f09303010fce) C:\Windows\system32\DRIVERS\smb.sys
10:37:35.0092 2004 Smb - ok
10:37:35.0121 2004 spldr (95cf1ae7527fb70f7816563cbc09d942) C:\Windows\system32\drivers\spldr.sys
10:37:35.0126 2004 spldr - ok
10:37:35.0210 2004 sptd (cdddec541bc3c96f91ecb48759673505) C:\Windows\system32\Drivers\sptd.sys
10:37:35.0210 2004 Suspicious file (NoAccess): C:\Windows\system32\Drivers\sptd.sys. md5: cdddec541bc3c96f91ecb48759673505
10:37:35.0213 2004 sptd ( LockedFile.Multi.Generic ) - warning
10:37:35.0214 2004 sptd - detected LockedFile.Multi.Generic (1)
10:37:35.0249 2004 srv (e4c2764065d66ea1d2d3ebc28fe99c46) C:\Windows\system32\DRIVERS\srv.sys
10:37:35.0252 2004 srv - ok
10:37:35.0283 2004 srv2 (03f0545bd8d4c77fa0ae1ceedfcc71ab) C:\Windows\system32\DRIVERS\srv2.sys
10:37:35.0286 2004 srv2 - ok
10:37:35.0320 2004 srvnet (be6bd660caa6f291ae06a718a4fa8abc) C:\Windows\system32\DRIVERS\srvnet.sys
10:37:35.0322 2004 srvnet - ok
10:37:35.0370 2004 stexstor (db32d325c192b801df274bfd12a7e72b) C:\Windows\system32\DRIVERS\stexstor.sys
10:37:35.0396 2004 stexstor - ok
10:37:35.0442 2004 storflt (472af0311073dceceaa8fa18ba2bdf89) C:\Windows\system32\drivers\vmstorfl.sys
10:37:35.0443 2004 storflt - ok
10:37:35.0482 2004 storvsc (dcaffd62259e0bdb433dd67b5bb37619) C:\Windows\system32\drivers\storvsc.sys
10:37:35.0507 2004 storvsc - ok
10:37:35.0530 2004 swenum (e58c78a848add9610a4db6d214af5224) C:\Windows\system32\drivers\swenum.sys
10:37:35.0533 2004 swenum - ok
10:37:35.0578 2004 Synth3dVsc - ok
10:37:35.0654 2004 Tcpip (04e4a7d53a7ace02e8c55b17a498f631) C:\Windows\system32\drivers\tcpip.sys
10:37:35.0665 2004 Tcpip - ok
10:37:35.0710 2004 TCPIP6 (04e4a7d53a7ace02e8c55b17a498f631) C:\Windows\system32\DRIVERS\tcpip.sys
10:37:35.0720 2004 TCPIP6 - ok
10:37:35.0760 2004 tcpipreg (cca24162e055c3714ce5a88b100c64ed) C:\Windows\system32\drivers\tcpipreg.sys
10:37:35.0762 2004 tcpipreg - ok
10:37:35.0796 2004 TDPIPE (1cb91b2bd8f6dd367dfc2ef26fd751b2) C:\Windows\system32\drivers\tdpipe.sys
10:37:35.0797 2004 TDPIPE - ok
10:37:35.0816 2004 TDTCP (2c10395baa4847f83042813c515cc289) C:\Windows\system32\drivers\tdtcp.sys
10:37:35.0817 2004 TDTCP - ok
10:37:35.0849 2004 tdx (b459575348c20e8121d6039da063c704) C:\Windows\system32\DRIVERS\tdx.sys
10:37:35.0851 2004 tdx - ok
10:37:35.0881 2004 TermDD (04dbf4b01ea4bf25a9a3e84affac9b20) C:\Windows\system32\drivers\termdd.sys
10:37:35.0907 2004 TermDD - ok
10:37:35.0970 2004 tssecsrv (254bb140eee3c59d6114c1a86b636877) C:\Windows\system32\DRIVERS\tssecsrv.sys
10:37:35.0971 2004 tssecsrv - ok
10:37:36.0011 2004 TsUsbFlt (fd1d6c73e6333be727cbcc6054247654) C:\Windows\system32\drivers\tsusbflt.sys
10:37:36.0037 2004 TsUsbFlt - ok
10:37:36.0063 2004 tsusbhub - ok
10:37:36.0123 2004 tunnel (b2fa25d9b17a68bb93d58b0556e8c90d) C:\Windows\system32\DRIVERS\tunnel.sys
10:37:36.0125 2004 tunnel - ok
10:37:36.0158 2004 uagp35 (750fbcb269f4d7dd2e420c56b795db6d) C:\Windows\system32\DRIVERS\uagp35.sys
10:37:36.0184 2004 uagp35 - ok
10:37:36.0227 2004 udfs (ee43346c7e4b5e63e54f927babbb32ff) C:\Windows\system32\DRIVERS\udfs.sys
10:37:36.0229 2004 udfs - ok
10:37:36.0284 2004 uliagpkx (44e8048ace47befbfdc2e9be4cbc8880) C:\Windows\system32\drivers\uliagpkx.sys
10:37:36.0285 2004 uliagpkx - ok
10:37:36.0328 2004 umbus (d295bed4b898f0fd999fcfa9b32b071b) C:\Windows\system32\drivers\umbus.sys
10:37:36.0353 2004 umbus - ok
10:37:36.0377 2004 UmPass (7550ad0c6998ba1cb4843e920ee0feac) C:\Windows\system32\DRIVERS\umpass.sys
10:37:36.0402 2004 UmPass - ok
10:37:36.0440 2004 usbccgp (7e72e7d7e0757d59481d530fd2b0bfae) C:\Windows\system32\drivers\usbccgp.sys
10:37:36.0441 2004 usbccgp - ok
10:37:36.0471 2004 usbcir (04ec7cec62ec3b6d9354eee93327fc82) C:\Windows\system32\drivers\usbcir.sys
10:37:36.0503 2004 usbcir - ok
10:37:36.0517 2004 usbehci (cfbce999c057d78979a181c9c60f208e) C:\Windows\system32\drivers\usbehci.sys
10:37:36.0518 2004 usbehci - ok
10:37:36.0562 2004 usbhub (9d22aad9ac6a07c691a1113e5f860868) C:\Windows\system32\drivers\usbhub.sys
10:37:36.0589 2004 usbhub - ok
10:37:36.0609 2004 usbohci (a6fb7957ea7afb1165991e54ce934b74) C:\Windows\system32\drivers\usbohci.sys
10:37:36.0610 2004 usbohci - ok
10:37:36.0636 2004 usbprint (797d862fe0875e75c7cc4c1ad7b30252) C:\Windows\system32\DRIVERS\usbprint.sys
10:37:36.0637 2004 usbprint - ok
10:37:36.0661 2004 USBSTOR (bf63ebfc6979fefb2bc03df7989a0c1a) C:\Windows\system32\drivers\USBSTOR.SYS
10:37:36.0663 2004 USBSTOR - ok
10:37:36.0677 2004 usbuhci (78780c3ebce17405b1ccd07a3a8a7d72) C:\Windows\system32\drivers\usbuhci.sys
10:37:36.0703 2004 usbuhci - ok
10:37:36.0745 2004 vdrvroot (a059c4c3edb09e07d21a8e5c0aabd3cb) C:\Windows\system32\drivers\vdrvroot.sys
10:37:36.0746 2004 vdrvroot - ok
10:37:36.0805 2004 VD_FileDisk (e3389e42561670d112d77a431010377b) C:\Windows\system32\drivers\VD_FileDisk.sys
10:37:36.0808 2004 VD_FileDisk - ok
10:37:36.0833 2004 vga (17c408214ea61696cec9c66e388b14f3) C:\Windows\system32\DRIVERS\vgapnp.sys
10:37:36.0834 2004 vga - ok
10:37:36.0914 2004 VgaSave (8e38096ad5c8570a6f1570a61e251561) C:\Windows\System32\drivers\vga.sys
10:37:36.0915 2004 VgaSave - ok
10:37:36.0929 2004 VGPU - ok
10:37:36.0964 2004 vhdmp (5461686cca2fda57b024547733ab42e3) C:\Windows\system32\drivers\vhdmp.sys
10:37:36.0966 2004 vhdmp - ok
10:37:37.0010 2004 viaagp (c829317a37b4bea8f39735d4b076e923) C:\Windows\system32\drivers\viaagp.sys
10:37:37.0012 2004 viaagp - ok
10:37:37.0040 2004 ViaC7 (e02f079a6aa107f06b16549c6e5c7b74) C:\Windows\system32\DRIVERS\viac7.sys
10:37:37.0042 2004 ViaC7 - ok
10:37:37.0064 2004 viaide (e43574f6a56a0ee11809b48c09e4fd3c) C:\Windows\system32\drivers\viaide.sys
10:37:37.0065 2004 viaide - ok
10:37:37.0089 2004 vmbus (c2f2911156fdc7817c52829c86da494e) C:\Windows\system32\drivers\vmbus.sys
10:37:37.0095 2004 vmbus - ok
10:37:37.0124 2004 VMBusHID (d4d77455211e204f370d08f4963063ce) C:\Windows\system32\drivers\VMBusHID.sys
10:37:37.0125 2004 VMBusHID - ok
10:37:37.0146 2004 volmgr (4c63e00f2f4b5f86ab48a58cd990f212) C:\Windows\system32\drivers\volmgr.sys
10:37:37.0148 2004 volmgr - ok
10:37:37.0177 2004 volmgrx (b5bb72067ddddbbfb04b2f89ff8c3c87) C:\Windows\system32\drivers\volmgrx.sys
10:37:37.0182 2004 volmgrx - ok
10:37:37.0221 2004 volsnap (f497f67932c6fa693d7de2780631cfe7) C:\Windows\system32\drivers\volsnap.sys
10:37:37.0224 2004 volsnap - ok
10:37:37.0252 2004 vsmraid (9dfa0cc2f8855a04816729651175b631) C:\Windows\system32\DRIVERS\vsmraid.sys
10:37:37.0254 2004 vsmraid - ok
10:37:37.0274 2004 vwifibus (90567b1e658001e79d7c8bbd3dde5aa6) C:\Windows\System32\drivers\vwifibus.sys
10:37:37.0275 2004 vwifibus - ok
10:37:37.0300 2004 WacomPen (de3721e89c653aa281428c8a69745d90) C:\Windows\system32\DRIVERS\wacompen.sys
10:37:37.0304 2004 WacomPen - ok
10:37:37.0344 2004 WANARP (3c3c78515f5ab448b022bdf5b8ffdd2e) C:\Windows\system32\DRIVERS\wanarp.sys
10:37:37.0345 2004 WANARP - ok
10:37:37.0349 2004 Wanarpv6 (3c3c78515f5ab448b022bdf5b8ffdd2e) C:\Windows\system32\DRIVERS\wanarp.sys
10:37:37.0351 2004 Wanarpv6 - ok
10:37:37.0407 2004 Wd (1112a9badacb47b7c0bb0392e3158dff) C:\Windows\system32\DRIVERS\wd.sys
10:37:37.0408 2004 Wd - ok
10:37:37.0432 2004 Wdf01000 (9950e3d0f08141c7e89e64456ae7dc73) C:\Windows\system32\drivers\Wdf01000.sys
10:37:37.0484 2004 Wdf01000 - ok
10:37:37.0542 2004 WfpLwf (8b9a943f3b53861f2bfaf6c186168f79) C:\Windows\system32\DRIVERS\wfplwf.sys
10:37:37.0567 2004 WfpLwf - ok
10:37:37.0580 2004 WIMMount (5cf95b35e59e2a38023836fff31be64c) C:\Windows\system32\drivers\wimmount.sys
10:37:37.0582 2004 WIMMount - ok
10:37:37.0649 2004 WmiAcpi (0217679b8fca58714c3bf2726d2ca84e) C:\Windows\system32\drivers\wmiacpi.sys
10:37:37.0674 2004 WmiAcpi - ok
10:37:37.0701 2004 ws2ifsl (6db3276587b853bf886b69528fdb048c) C:\Windows\system32\drivers\ws2ifsl.sys
10:37:37.0727 2004 ws2ifsl - ok
10:37:37.0773 2004 WudfPf (e714a1c0354636837e20ccbf00888ee7) C:\Windows\system32\drivers\WudfPf.sys
10:37:37.0800 2004 WudfPf - ok
10:37:37.0835 2004 WUDFRd (1023ee888c9b47178c5293ed5336ab69) C:\Windows\system32\DRIVERS\WUDFRd.sys
10:37:37.0839 2004 WUDFRd - ok
10:37:37.0902 2004 yukonw7 (b07c5b7efdf936ff93d4f540938725be) C:\Windows\system32\DRIVERS\yk62x86.sys
10:37:37.0931 2004 yukonw7 - ok
10:37:37.0946 2004 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0
10:37:37.0953 2004 \Device\Harddisk0\DR0 - ok
10:37:38.0523 2004 MBR (0x1B8) (31cfc50fbd443daeec9a5c7ae8da8f6d) \Device\Harddisk1\DR1
10:37:38.0810 2004 \Device\Harddisk1\DR1 - ok
10:37:38.0813 2004 Boot (0x1200) (09f12c8b57d4673362bbaf4efdc1d3c6) \Device\Harddisk0\DR0\Partition0
10:37:38.0814 2004 \Device\Harddisk0\DR0\Partition0 - ok
10:37:38.0830 2004 Boot (0x1200) (9abcc455698052ca5b72c957441bb9f7) \Device\Harddisk0\DR0\Partition1
10:37:38.0832 2004 \Device\Harddisk0\DR0\Partition1 - ok
10:37:38.0851 2004 Boot (0x1200) (60da173cb75251d245cde1a3a2e05fa7) \Device\Harddisk0\DR0\Partition2
10:37:38.0852 2004 \Device\Harddisk0\DR0\Partition2 - ok
10:37:38.0861 2004 Boot (0x1200) (9dd9f42bcceb014f26ecd3099af7a9d0) \Device\Harddisk0\DR0\Partition3
10:37:38.0862 2004 \Device\Harddisk0\DR0\Partition3 - ok
10:37:38.0866 2004 Boot (0x1200) (103e36efd07f8a2e8011ddc3c643faff) \Device\Harddisk1\DR1\Partition0
10:37:38.0867 2004 \Device\Harddisk1\DR1\Partition0 - ok
10:37:38.0868 2004 ============================================================
10:37:38.0868 2004 Scan finished
10:37:38.0868 2004 ============================================================
10:37:38.0879 2868 Detected object count: 1
10:37:38.0879 2868 Actual detected object count: 1
10:37:41.0444 2868 sptd ( LockedFile.Multi.Generic ) - skipped by user
10:37:41.0445 2868 sptd ( LockedFile.Multi.Generic ) - User select action: Skip
10:37:43.0421 4160 Deinitialize success
Re: Trojský kôň Win32/Agent.SDG.Gen - prosím o pomoc

- ComboFix je třeba spustit pod účtem s právy administrátora
- Před použitím vypněte všechny rezidentní bezpečnostní programy - antiviry, firewally, antispywary
- Po spuštění se zobrazí podmínky užití, potvrďte je stiskem tlačítka Ano
- Dále postupujte dle pokynů, během aplikování ComboFixu neklikejte do zobrazujícího se okna

- Po dokončení skenování, trvajícího maximálně 10 minut, by měl program vytvořit log - C:\ComboFix.txt, zkopírujte celý jeho obsah sem
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: Trojský kôň Win32/Agent.SDG.Gen - prosím o pomoc
opäť ďakujem 
ComboFix 11-10-30.04 - Spash . 10. 2011 19:54:58.2.2 - x86
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.421.1029.18.2048.1356 [GMT 1:00]
Running from: c:\users\Spash\Desktop\ComboFix.exe
AV: ESET Smart Security 4.0 *Disabled/Updated* {CB0F8167-5331-BA19-698E-64816B6801A5}
FW: ESET personal firewall *Disabled* {F3340042-195E-BB41-42D1-CDB495BB46DE}
SP: ESET Smart Security 4.0 *Disabled/Updated* {706E6083-750B-B597-533E-5FF310EF4B18}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Created a new restore point
.
.
((((((((((((((((((((((((( Files Created from 2011-09-28 to 2011-10-31 )))))))))))))))))))))))))))))))
.
.
2011-10-31 19:01 . 2011-10-31 19:01 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-10-31 09:00 . 2011-10-31 09:00 -------- d-----w- c:\program files\Microsoft Works
2011-10-31 09:00 . 2011-10-31 09:00 -------- d-----w- c:\windows\PCHEALTH
2011-10-31 09:00 . 2011-10-31 09:00 -------- d-----w- c:\program files\Microsoft.NET
2011-10-31 08:58 . 2011-10-31 09:00 -------- d-----w- c:\program files\Microsoft Office 2007
2011-10-31 08:21 . 2011-10-31 08:21 -------- d-----w- c:\program files\Launchy
2011-10-31 08:12 . 2011-10-31 09:01 -------- d-----w- c:\programdata\Microsoft Help
2011-10-31 08:11 . 2011-10-31 08:11 -------- d-----r- C:\MSOCache
2011-10-30 17:43 . 2011-10-31 18:28 56200 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{4729EE43-E636-471D-A0CE-0A5BD62E0B34}\offreg.dll
2011-10-29 09:18 . 2011-10-29 09:18 -------- d-----w- c:\program files\MSXML 4.0
2011-10-28 11:30 . 2011-10-18 00:28 6668624 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{4729EE43-E636-471D-A0CE-0A5BD62E0B34}\mpengine.dll
2011-10-28 10:45 . 1997-05-26 12:55 23040 ----a-w- c:\windows\system32\irisco32.dll
2011-10-28 10:45 . 2011-10-28 10:45 -------- d-----w- c:\program files\Readiris10
2011-10-28 10:45 . 2011-10-28 10:46 -------- d-----w- c:\program files\SmarThru 4
2011-10-28 10:45 . 2008-02-25 07:14 479232 ----a-w- c:\windows\ssndii.exe
2011-10-28 10:44 . 2011-10-28 10:44 -------- d-----w- c:\windows\Samsung
2011-10-28 10:44 . 2008-01-04 06:54 151552 ----a-w- c:\windows\system32\sse1mci.exe
2011-10-28 10:44 . 2008-01-04 06:54 65536 ----a-w- c:\windows\system32\sse1mci.dll
2011-10-28 10:44 . 2008-01-04 06:57 19968 ------w- c:\windows\system32\Spool\prtprocs\w32x86\sse1mpc.dll
2011-10-28 10:43 . 2008-01-03 04:50 110592 ----a-r- c:\windows\WiaInst.exe
2011-10-28 10:43 . 2008-01-03 04:23 5120 ----a-r- c:\windows\system32\drivers\SSPORT.sys
2011-10-28 10:43 . 2008-01-03 04:23 49152 ----a-r- c:\windows\system32\Ssusbpn.dll
2011-10-28 10:43 . 2008-01-03 04:23 57344 ----a-r- c:\windows\system32\Ssdevm.dll
2011-10-28 10:43 . 2008-01-03 04:07 11264 ----a-r- c:\windows\system32\sssegfilter.dll
2011-10-28 10:43 . 2008-01-03 04:07 217088 ----a-r- c:\windows\system32\ssminidriver.dll
2011-10-28 10:43 . 2008-01-03 04:07 27136 ----a-r- c:\windows\system32\ssimgfilter.dll
2011-10-28 10:43 . 2008-01-03 04:07 10752 ----a-r- c:\windows\system32\sserrhandler.dll
2011-10-28 10:43 . 2008-02-05 07:53 22723 ------w- c:\windows\system32\sse1ml3.dll
2011-10-28 10:43 . 2011-10-28 10:43 -------- d-----w- c:\windows\system32\drivers\Samsung
2011-10-28 10:42 . 2011-10-28 10:42 -------- d-----w- c:\program files\Samsung
2011-10-28 08:30 . 2011-03-02 10:43 175616 ----a-w- c:\windows\system32\unrar.dll
2011-10-28 08:30 . 2011-10-28 08:31 -------- d-----w- c:\program files\K-Lite Codec Pack
2011-10-28 08:27 . 2011-10-28 08:27 -------- d-----w- c:\program files\Webteh
2011-10-27 19:42 . 2011-10-27 19:49 -------- d-----w- c:\program files\trend micro
2011-10-27 15:26 . 2011-10-27 15:26 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-10-27 15:26 . 2011-10-27 15:26 -------- d-----w- c:\windows\system32\Macromed
2011-10-27 14:38 . 2011-10-27 14:38 -------- d-----w- c:\program files\Google
2011-10-27 14:30 . 2011-10-27 14:30 -------- d-----w- c:\windows\system32\SPReview
2011-10-27 14:30 . 2011-10-27 14:30 -------- d-----w- c:\windows\system32\EventProviders
2011-10-27 14:29 . 2011-10-27 14:29 -------- d-----w- c:\windows\system32\Wat
2011-10-27 14:25 . 2010-11-05 01:58 1130824 ----a-w- c:\windows\system32\dfshim.dll
2011-10-27 14:25 . 2010-11-20 12:19 53760 ----a-w- c:\windows\system32\LSCSHostPolicy.dll
2011-10-27 14:25 . 2010-11-20 10:24 52224 ----a-w- c:\windows\system32\drivers\TsUsbFlt.sys
2011-10-27 14:25 . 2010-11-20 12:21 11776 ----a-w- c:\windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2011-10-27 14:25 . 2010-11-20 12:19 3215872 ----a-w- c:\windows\system32\mstscax.dll
2011-10-27 14:25 . 2010-11-20 12:18 1171456 ----a-w- c:\windows\system32\d3d10warp.dll
2011-10-27 14:23 . 2010-11-20 12:30 245632 ----a-w- c:\windows\system32\drivers\volsnap.sys
2011-10-27 14:22 . 2010-11-20 12:21 129536 ----a-w- c:\windows\system32\rdpcorekmts.dll
2011-10-27 14:21 . 2010-11-20 12:21 189952 ----a-w- c:\windows\system32\wdscore.dll
2011-10-27 14:21 . 2010-11-20 12:21 363008 ----a-w- c:\windows\system32\wbemcomn.dll
2011-10-27 14:21 . 2010-11-20 12:21 189952 ----a-w- c:\program files\Windows Portable Devices\sqmapi.dll
2011-10-27 14:21 . 2010-11-20 12:19 606208 ----a-w- c:\windows\system32\wbem\fastprox.dll
2011-10-27 14:21 . 2010-11-20 12:21 189952 ----a-w- c:\windows\system32\sqmapi.dll
2011-10-27 05:12 . 2010-02-11 07:10 293376 ----a-w- c:\windows\system32\browserchoice.exe
2011-10-27 05:08 . 2011-04-29 02:46 311808 ----a-w- c:\windows\system32\drivers\srv.sys
2011-10-27 05:08 . 2011-04-29 02:46 310272 ----a-w- c:\windows\system32\drivers\srv2.sys
2011-10-27 05:08 . 2011-04-29 02:46 114688 ----a-w- c:\windows\system32\drivers\srvnet.sys
2011-10-27 05:08 . 2011-04-25 02:18 338944 ----a-w- c:\windows\system32\drivers\afd.sys
2011-10-27 05:08 . 2011-02-18 05:43 428032 ----a-w- c:\windows\system32\vbscript.dll
2011-10-27 05:06 . 2011-06-21 05:34 1290624 ----a-w- c:\windows\system32\drivers\tcpip.sys
2011-10-27 04:55 . 2011-10-27 04:56 -------- d-----w- c:\program files\Screamer Radio
2011-10-26 13:50 . 2011-10-26 13:50 138056 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2011-10-26 13:50 . 2011-10-26 13:50 189248 ----a-w- c:\windows\system32\PnkBstrB.exe
2011-10-26 13:50 . 2011-10-26 13:50 189248 ----a-w- c:\windows\system32\PnkBstrB.ex0
2011-10-26 13:50 . 2011-10-26 13:50 75136 ----a-w- c:\windows\system32\PnkBstrA.exe
2011-10-26 13:49 . 2011-10-26 13:49 -------- d-----w- c:\windows\system32\RTCOM
2011-10-26 13:42 . 2011-10-26 12:51 -------- d-----w- c:\windows\Panther
2011-10-26 13:42 . 2011-10-27 19:19 -------- d-----w- C:\Boot
2011-10-26 13:38 . 2011-10-26 13:38 -------- d--h--w- c:\program files\Common Files\EAInstaller
2011-10-26 13:36 . 2011-05-24 17:14 222080 ------w- c:\windows\system32\MpSigStub.exe
2011-10-26 13:20 . 2011-10-10 14:42 2580552 ----a-r- c:\windows\system32\pbsvc.exe
2011-10-26 13:10 . 2011-10-26 13:10 -------- d-----w- c:\users\UpdatusUser
2011-10-26 13:09 . 2011-10-31 18:26 -------- d-----w- c:\programdata\NVIDIA
2011-10-26 13:09 . 2011-10-15 08:53 6350144 ----a-w- c:\windows\system32\nvcpl.dll
2011-10-26 13:09 . 2011-10-15 08:53 602432 ----a-w- c:\windows\system32\easyupdatusapiu.dll
2011-10-26 13:09 . 2011-10-15 08:53 3840320 ----a-w- c:\windows\system32\nvsvc.dll
2011-10-26 13:09 . 2011-10-15 08:53 203072 ----a-w- c:\windows\system32\nvmctray.dll
2011-10-26 13:09 . 2011-10-15 08:53 123712 ----a-w- c:\windows\system32\nvshext.dll
2011-10-26 13:09 . 2011-10-15 08:53 1136448 ----a-w- c:\windows\system32\nvvsvc.exe
2011-10-26 13:09 . 2011-10-26 13:09 -------- d-----w- c:\programdata\NVIDIA Corporation
2011-10-26 13:08 . 2011-10-15 08:53 61248 ----a-w- c:\windows\system32\OpenCL.dll
2011-10-26 13:08 . 2011-10-15 08:53 877376 ----a-w- c:\windows\system32\nvgenco32.dll
2011-10-26 13:08 . 2011-10-15 08:53 18871616 ----a-w- c:\windows\system32\nvoglv32.dll
2011-10-26 13:08 . 2011-10-15 08:53 10327360 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys
2011-10-26 13:08 . 2011-10-15 08:53 919872 ----a-w- c:\windows\system32\nvdispco32.dll
2011-10-26 13:08 . 2011-10-15 08:53 2401088 ----a-w- c:\windows\system32\nvcuvid.dll
2011-10-26 13:08 . 2011-10-15 08:53 2099520 ----a-w- c:\windows\system32\nvcuvenc.dll
2011-10-26 13:08 . 2011-10-15 08:53 5578560 ----a-w- c:\windows\system32\nvcuda.dll
2011-10-26 13:08 . 2011-10-15 08:53 2458432 ----a-w- c:\windows\system32\nvapi.dll
2011-10-26 13:08 . 2011-10-15 08:53 17248576 ----a-w- c:\windows\system32\nvcompiler.dll
2011-10-26 13:07 . 2011-10-28 10:45 -------- d-----w- c:\program files\Common Files\InstallShield
2011-10-26 13:04 . 2011-10-26 13:06 -------- d-----w- c:\program files\TC UP
2011-10-26 13:00 . 2011-10-26 13:11 -------- d-----w- c:\program files\NVIDIA Corporation
2011-10-26 12:59 . 2011-10-26 12:59 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2011-10-26 12:59 . 2011-10-26 12:59 -------- d-----w- c:\program files\DAEMON Tools Lite
2011-10-26 12:58 . 2011-10-26 12:58 -------- d-----w- c:\programdata\DAEMON Tools Lite
2011-10-26 12:56 . 2011-10-31 18:31 -------- d-----w- c:\windows\system32\wbem\Performance
2011-10-26 12:56 . 2011-10-26 12:56 -------- d-----w- c:\program files\ESET
2011-10-26 12:54 . 2011-10-31 09:02 -------- d-sh--w- c:\windows\Installer
2011-10-26 12:52 . 2011-10-26 12:53 -------- d-----w- c:\users\Spash
2011-10-14 22:54 . 2011-10-14 22:54 321856 ----a-w- c:\windows\system32\nvStreaming.exe
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-10-27 19:10 . 2009-07-14 02:05 152576 ----a-w- c:\windows\system32\msclmd.dll
2011-10-15 08:53 . 2009-07-13 22:09 7041856 ----a-w- c:\windows\system32\nvwgf2um.dll
2011-10-15 08:53 . 2009-06-10 21:19 13205312 ----a-w- c:\windows\system32\nvd3dum.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2010-04-01 357696]
"chromium"="c:\users\Spash\AppData\Local\Google\Chrome\Application\chrome.exe" [2011-10-26 1036344]
"SRDownloader"="f:\download\SRDownloader.exe" [2011-10-19 903680]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2009-04-09 2029640]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2011-10-17 11430504]
"{0228e555-4f9c-4e35-a3ec-b109a192b4c2}"="c:\program files\Google\Gmail Notifier\gnotify.exe" [2005-07-15 479232]
"Samsung PanelMgr"="c:\windows\Samsung\PanelMgr\SSMMgr.exe" [2008-08-08 536576]
.
c:\users\Spash\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Launchy.lnk - c:\program files\Launchy\Launchy.exe [2011-10-31 380928]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
R3 84241777;84241777; [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2010-11-20 15872]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2011-10-27 1343400]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2011-10-26 691696]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [2009-04-09 107256]
S1 VD_FileDisk;VD_FileDisk; [x]
S2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [2009-04-09 731840]
S2 epfwwfp;epfwwfp;c:\windows\system32\DRIVERS\epfwwfp.sys [2009-04-09 38240]
S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-10-15 2253120]
S2 SSPORT;SSPORT;c:\windows\system32\Drivers\SSPORT.sys [2008-01-03 5120]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-10-14 381248]
S3 yukonw7;Ovladač NDIS6.2 Miniport pro řadič Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x86.sys [2009-07-13 311296]
.
.
Contents of the 'Scheduled Tasks' folder
.
2011-10-27 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2935269482-1580412803-1049093956-1001Core.job
- c:\users\Spash\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-26 12:59]
.
2011-10-31 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2935269482-1580412803-1049093956-1001UA.job
- c:\users\Spash\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-26 12:59]
.
.
------- Supplementary Scan -------
.
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: SmarThru4 Capture Selection - c:\program files\SmarThru 4\WebCapture.dll2.htm
IE: SmarThru4 Save as HTML - c:\program files\SmarThru 4\WebCapture.dll1.htm
IE: SmarThru4 Save Selected Text - c:\program files\SmarThru 4\WebCapture.dll.htm
IE: SmarThru4 Web Capture - c:\program files\SmarThru 4\WebCapture.dll
TCP: DhcpNameServer = 173.193.227.124 173.192.105.217
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Completion time: 2011-10-31 20:03:53
ComboFix-quarantined-files.txt 2011-10-31 19:03
ComboFix2.txt 2011-10-31 18:30
.
Pre-Run: Volných bajtů: 36 066 992 128
Post-Run: Volných bajtů: 36 022 177 792
.
- - End Of File - - 61A2469D1FAABD9EED3859716E8A4919

ComboFix 11-10-30.04 - Spash . 10. 2011 19:54:58.2.2 - x86
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.421.1029.18.2048.1356 [GMT 1:00]
Running from: c:\users\Spash\Desktop\ComboFix.exe
AV: ESET Smart Security 4.0 *Disabled/Updated* {CB0F8167-5331-BA19-698E-64816B6801A5}
FW: ESET personal firewall *Disabled* {F3340042-195E-BB41-42D1-CDB495BB46DE}
SP: ESET Smart Security 4.0 *Disabled/Updated* {706E6083-750B-B597-533E-5FF310EF4B18}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Created a new restore point
.
.
((((((((((((((((((((((((( Files Created from 2011-09-28 to 2011-10-31 )))))))))))))))))))))))))))))))
.
.
2011-10-31 19:01 . 2011-10-31 19:01 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-10-31 09:00 . 2011-10-31 09:00 -------- d-----w- c:\program files\Microsoft Works
2011-10-31 09:00 . 2011-10-31 09:00 -------- d-----w- c:\windows\PCHEALTH
2011-10-31 09:00 . 2011-10-31 09:00 -------- d-----w- c:\program files\Microsoft.NET
2011-10-31 08:58 . 2011-10-31 09:00 -------- d-----w- c:\program files\Microsoft Office 2007
2011-10-31 08:21 . 2011-10-31 08:21 -------- d-----w- c:\program files\Launchy
2011-10-31 08:12 . 2011-10-31 09:01 -------- d-----w- c:\programdata\Microsoft Help
2011-10-31 08:11 . 2011-10-31 08:11 -------- d-----r- C:\MSOCache
2011-10-30 17:43 . 2011-10-31 18:28 56200 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{4729EE43-E636-471D-A0CE-0A5BD62E0B34}\offreg.dll
2011-10-29 09:18 . 2011-10-29 09:18 -------- d-----w- c:\program files\MSXML 4.0
2011-10-28 11:30 . 2011-10-18 00:28 6668624 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{4729EE43-E636-471D-A0CE-0A5BD62E0B34}\mpengine.dll
2011-10-28 10:45 . 1997-05-26 12:55 23040 ----a-w- c:\windows\system32\irisco32.dll
2011-10-28 10:45 . 2011-10-28 10:45 -------- d-----w- c:\program files\Readiris10
2011-10-28 10:45 . 2011-10-28 10:46 -------- d-----w- c:\program files\SmarThru 4
2011-10-28 10:45 . 2008-02-25 07:14 479232 ----a-w- c:\windows\ssndii.exe
2011-10-28 10:44 . 2011-10-28 10:44 -------- d-----w- c:\windows\Samsung
2011-10-28 10:44 . 2008-01-04 06:54 151552 ----a-w- c:\windows\system32\sse1mci.exe
2011-10-28 10:44 . 2008-01-04 06:54 65536 ----a-w- c:\windows\system32\sse1mci.dll
2011-10-28 10:44 . 2008-01-04 06:57 19968 ------w- c:\windows\system32\Spool\prtprocs\w32x86\sse1mpc.dll
2011-10-28 10:43 . 2008-01-03 04:50 110592 ----a-r- c:\windows\WiaInst.exe
2011-10-28 10:43 . 2008-01-03 04:23 5120 ----a-r- c:\windows\system32\drivers\SSPORT.sys
2011-10-28 10:43 . 2008-01-03 04:23 49152 ----a-r- c:\windows\system32\Ssusbpn.dll
2011-10-28 10:43 . 2008-01-03 04:23 57344 ----a-r- c:\windows\system32\Ssdevm.dll
2011-10-28 10:43 . 2008-01-03 04:07 11264 ----a-r- c:\windows\system32\sssegfilter.dll
2011-10-28 10:43 . 2008-01-03 04:07 217088 ----a-r- c:\windows\system32\ssminidriver.dll
2011-10-28 10:43 . 2008-01-03 04:07 27136 ----a-r- c:\windows\system32\ssimgfilter.dll
2011-10-28 10:43 . 2008-01-03 04:07 10752 ----a-r- c:\windows\system32\sserrhandler.dll
2011-10-28 10:43 . 2008-02-05 07:53 22723 ------w- c:\windows\system32\sse1ml3.dll
2011-10-28 10:43 . 2011-10-28 10:43 -------- d-----w- c:\windows\system32\drivers\Samsung
2011-10-28 10:42 . 2011-10-28 10:42 -------- d-----w- c:\program files\Samsung
2011-10-28 08:30 . 2011-03-02 10:43 175616 ----a-w- c:\windows\system32\unrar.dll
2011-10-28 08:30 . 2011-10-28 08:31 -------- d-----w- c:\program files\K-Lite Codec Pack
2011-10-28 08:27 . 2011-10-28 08:27 -------- d-----w- c:\program files\Webteh
2011-10-27 19:42 . 2011-10-27 19:49 -------- d-----w- c:\program files\trend micro
2011-10-27 15:26 . 2011-10-27 15:26 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-10-27 15:26 . 2011-10-27 15:26 -------- d-----w- c:\windows\system32\Macromed
2011-10-27 14:38 . 2011-10-27 14:38 -------- d-----w- c:\program files\Google
2011-10-27 14:30 . 2011-10-27 14:30 -------- d-----w- c:\windows\system32\SPReview
2011-10-27 14:30 . 2011-10-27 14:30 -------- d-----w- c:\windows\system32\EventProviders
2011-10-27 14:29 . 2011-10-27 14:29 -------- d-----w- c:\windows\system32\Wat
2011-10-27 14:25 . 2010-11-05 01:58 1130824 ----a-w- c:\windows\system32\dfshim.dll
2011-10-27 14:25 . 2010-11-20 12:19 53760 ----a-w- c:\windows\system32\LSCSHostPolicy.dll
2011-10-27 14:25 . 2010-11-20 10:24 52224 ----a-w- c:\windows\system32\drivers\TsUsbFlt.sys
2011-10-27 14:25 . 2010-11-20 12:21 11776 ----a-w- c:\windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2011-10-27 14:25 . 2010-11-20 12:19 3215872 ----a-w- c:\windows\system32\mstscax.dll
2011-10-27 14:25 . 2010-11-20 12:18 1171456 ----a-w- c:\windows\system32\d3d10warp.dll
2011-10-27 14:23 . 2010-11-20 12:30 245632 ----a-w- c:\windows\system32\drivers\volsnap.sys
2011-10-27 14:22 . 2010-11-20 12:21 129536 ----a-w- c:\windows\system32\rdpcorekmts.dll
2011-10-27 14:21 . 2010-11-20 12:21 189952 ----a-w- c:\windows\system32\wdscore.dll
2011-10-27 14:21 . 2010-11-20 12:21 363008 ----a-w- c:\windows\system32\wbemcomn.dll
2011-10-27 14:21 . 2010-11-20 12:21 189952 ----a-w- c:\program files\Windows Portable Devices\sqmapi.dll
2011-10-27 14:21 . 2010-11-20 12:19 606208 ----a-w- c:\windows\system32\wbem\fastprox.dll
2011-10-27 14:21 . 2010-11-20 12:21 189952 ----a-w- c:\windows\system32\sqmapi.dll
2011-10-27 05:12 . 2010-02-11 07:10 293376 ----a-w- c:\windows\system32\browserchoice.exe
2011-10-27 05:08 . 2011-04-29 02:46 311808 ----a-w- c:\windows\system32\drivers\srv.sys
2011-10-27 05:08 . 2011-04-29 02:46 310272 ----a-w- c:\windows\system32\drivers\srv2.sys
2011-10-27 05:08 . 2011-04-29 02:46 114688 ----a-w- c:\windows\system32\drivers\srvnet.sys
2011-10-27 05:08 . 2011-04-25 02:18 338944 ----a-w- c:\windows\system32\drivers\afd.sys
2011-10-27 05:08 . 2011-02-18 05:43 428032 ----a-w- c:\windows\system32\vbscript.dll
2011-10-27 05:06 . 2011-06-21 05:34 1290624 ----a-w- c:\windows\system32\drivers\tcpip.sys
2011-10-27 04:55 . 2011-10-27 04:56 -------- d-----w- c:\program files\Screamer Radio
2011-10-26 13:50 . 2011-10-26 13:50 138056 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2011-10-26 13:50 . 2011-10-26 13:50 189248 ----a-w- c:\windows\system32\PnkBstrB.exe
2011-10-26 13:50 . 2011-10-26 13:50 189248 ----a-w- c:\windows\system32\PnkBstrB.ex0
2011-10-26 13:50 . 2011-10-26 13:50 75136 ----a-w- c:\windows\system32\PnkBstrA.exe
2011-10-26 13:49 . 2011-10-26 13:49 -------- d-----w- c:\windows\system32\RTCOM
2011-10-26 13:42 . 2011-10-26 12:51 -------- d-----w- c:\windows\Panther
2011-10-26 13:42 . 2011-10-27 19:19 -------- d-----w- C:\Boot
2011-10-26 13:38 . 2011-10-26 13:38 -------- d--h--w- c:\program files\Common Files\EAInstaller
2011-10-26 13:36 . 2011-05-24 17:14 222080 ------w- c:\windows\system32\MpSigStub.exe
2011-10-26 13:20 . 2011-10-10 14:42 2580552 ----a-r- c:\windows\system32\pbsvc.exe
2011-10-26 13:10 . 2011-10-26 13:10 -------- d-----w- c:\users\UpdatusUser
2011-10-26 13:09 . 2011-10-31 18:26 -------- d-----w- c:\programdata\NVIDIA
2011-10-26 13:09 . 2011-10-15 08:53 6350144 ----a-w- c:\windows\system32\nvcpl.dll
2011-10-26 13:09 . 2011-10-15 08:53 602432 ----a-w- c:\windows\system32\easyupdatusapiu.dll
2011-10-26 13:09 . 2011-10-15 08:53 3840320 ----a-w- c:\windows\system32\nvsvc.dll
2011-10-26 13:09 . 2011-10-15 08:53 203072 ----a-w- c:\windows\system32\nvmctray.dll
2011-10-26 13:09 . 2011-10-15 08:53 123712 ----a-w- c:\windows\system32\nvshext.dll
2011-10-26 13:09 . 2011-10-15 08:53 1136448 ----a-w- c:\windows\system32\nvvsvc.exe
2011-10-26 13:09 . 2011-10-26 13:09 -------- d-----w- c:\programdata\NVIDIA Corporation
2011-10-26 13:08 . 2011-10-15 08:53 61248 ----a-w- c:\windows\system32\OpenCL.dll
2011-10-26 13:08 . 2011-10-15 08:53 877376 ----a-w- c:\windows\system32\nvgenco32.dll
2011-10-26 13:08 . 2011-10-15 08:53 18871616 ----a-w- c:\windows\system32\nvoglv32.dll
2011-10-26 13:08 . 2011-10-15 08:53 10327360 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys
2011-10-26 13:08 . 2011-10-15 08:53 919872 ----a-w- c:\windows\system32\nvdispco32.dll
2011-10-26 13:08 . 2011-10-15 08:53 2401088 ----a-w- c:\windows\system32\nvcuvid.dll
2011-10-26 13:08 . 2011-10-15 08:53 2099520 ----a-w- c:\windows\system32\nvcuvenc.dll
2011-10-26 13:08 . 2011-10-15 08:53 5578560 ----a-w- c:\windows\system32\nvcuda.dll
2011-10-26 13:08 . 2011-10-15 08:53 2458432 ----a-w- c:\windows\system32\nvapi.dll
2011-10-26 13:08 . 2011-10-15 08:53 17248576 ----a-w- c:\windows\system32\nvcompiler.dll
2011-10-26 13:07 . 2011-10-28 10:45 -------- d-----w- c:\program files\Common Files\InstallShield
2011-10-26 13:04 . 2011-10-26 13:06 -------- d-----w- c:\program files\TC UP
2011-10-26 13:00 . 2011-10-26 13:11 -------- d-----w- c:\program files\NVIDIA Corporation
2011-10-26 12:59 . 2011-10-26 12:59 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2011-10-26 12:59 . 2011-10-26 12:59 -------- d-----w- c:\program files\DAEMON Tools Lite
2011-10-26 12:58 . 2011-10-26 12:58 -------- d-----w- c:\programdata\DAEMON Tools Lite
2011-10-26 12:56 . 2011-10-31 18:31 -------- d-----w- c:\windows\system32\wbem\Performance
2011-10-26 12:56 . 2011-10-26 12:56 -------- d-----w- c:\program files\ESET
2011-10-26 12:54 . 2011-10-31 09:02 -------- d-sh--w- c:\windows\Installer
2011-10-26 12:52 . 2011-10-26 12:53 -------- d-----w- c:\users\Spash
2011-10-14 22:54 . 2011-10-14 22:54 321856 ----a-w- c:\windows\system32\nvStreaming.exe
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-10-27 19:10 . 2009-07-14 02:05 152576 ----a-w- c:\windows\system32\msclmd.dll
2011-10-15 08:53 . 2009-07-13 22:09 7041856 ----a-w- c:\windows\system32\nvwgf2um.dll
2011-10-15 08:53 . 2009-06-10 21:19 13205312 ----a-w- c:\windows\system32\nvd3dum.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2010-04-01 357696]
"chromium"="c:\users\Spash\AppData\Local\Google\Chrome\Application\chrome.exe" [2011-10-26 1036344]
"SRDownloader"="f:\download\SRDownloader.exe" [2011-10-19 903680]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2009-04-09 2029640]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2011-10-17 11430504]
"{0228e555-4f9c-4e35-a3ec-b109a192b4c2}"="c:\program files\Google\Gmail Notifier\gnotify.exe" [2005-07-15 479232]
"Samsung PanelMgr"="c:\windows\Samsung\PanelMgr\SSMMgr.exe" [2008-08-08 536576]
.
c:\users\Spash\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Launchy.lnk - c:\program files\Launchy\Launchy.exe [2011-10-31 380928]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
R3 84241777;84241777; [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2010-11-20 15872]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2011-10-27 1343400]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2011-10-26 691696]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [2009-04-09 107256]
S1 VD_FileDisk;VD_FileDisk; [x]
S2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [2009-04-09 731840]
S2 epfwwfp;epfwwfp;c:\windows\system32\DRIVERS\epfwwfp.sys [2009-04-09 38240]
S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-10-15 2253120]
S2 SSPORT;SSPORT;c:\windows\system32\Drivers\SSPORT.sys [2008-01-03 5120]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-10-14 381248]
S3 yukonw7;Ovladač NDIS6.2 Miniport pro řadič Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x86.sys [2009-07-13 311296]
.
.
Contents of the 'Scheduled Tasks' folder
.
2011-10-27 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2935269482-1580412803-1049093956-1001Core.job
- c:\users\Spash\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-26 12:59]
.
2011-10-31 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2935269482-1580412803-1049093956-1001UA.job
- c:\users\Spash\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-26 12:59]
.
.
------- Supplementary Scan -------
.
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: SmarThru4 Capture Selection - c:\program files\SmarThru 4\WebCapture.dll2.htm
IE: SmarThru4 Save as HTML - c:\program files\SmarThru 4\WebCapture.dll1.htm
IE: SmarThru4 Save Selected Text - c:\program files\SmarThru 4\WebCapture.dll.htm
IE: SmarThru4 Web Capture - c:\program files\SmarThru 4\WebCapture.dll
TCP: DhcpNameServer = 173.193.227.124 173.192.105.217
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Completion time: 2011-10-31 20:03:53
ComboFix-quarantined-files.txt 2011-10-31 19:03
ComboFix2.txt 2011-10-31 18:30
.
Pre-Run: Volných bajtů: 36 066 992 128
Post-Run: Volných bajtů: 36 022 177 792
.
- - End Of File - - 61A2469D1FAABD9EED3859716E8A4919
Naposledy upravil(a) Spash dne 31 říj 2011 20:04, celkem upraveno 1 x.
Re: Trojský kôň Win32/Agent.SDG.Gen - prosím o pomoc
Pak ještě něco domažeme, ale nejdřív mrkneme zda tam něco nezůstalo.
Stahněte MBAM z mého podpisu
-Nainstalujte,dejte úplný sken
NIC NEMAZAT
-MBAM má občas falešné detekce,proto budeme mazat až po kontrole logu.
-Log zkopírujte sem.

-Nainstalujte,dejte úplný sken
NIC NEMAZAT

-MBAM má občas falešné detekce,proto budeme mazat až po kontrole logu.
-Log zkopírujte sem.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: Trojský kôň Win32/Agent.SDG.Gen - prosím o pomoc
Malwarebytes' Anti-Malware 1.50
www.malwarebytes.org
Verze databáze: 8052
Windows 6.1.7601 Service Pack 1
Internet Explorer 8.0.7601.17514
31. 10. 2011 20:12:47
mbam-log-2011-10-31 (20-12-47).txt
Typ kontroly: Rychlý test
Testované objekty: 168686
Uplynulý čas: 2 minut, 51 sekund
Infikované procesy v paměti: 0
Infikované moduly v paměti: 0
Infikované klíče v registru: 0
Infikované hodnoty v registru: 0
Infikované datové položky v registru: 0
Infikované složky: 0
Infikované soubory: 0
Infikované procesy v paměti:
(Žádné škodlivé položky nebyly zjištěny)
Infikované moduly v paměti:
(Žádné škodlivé položky nebyly zjištěny)
Infikované klíče v registru:
(Žádné škodlivé položky nebyly zjištěny)
Infikované hodnoty v registru:
(Žádné škodlivé položky nebyly zjištěny)
Infikované datové položky v registru:
(Žádné škodlivé položky nebyly zjištěny)
Infikované složky:
(Žádné škodlivé položky nebyly zjištěny)
Infikované soubory:
(Žádné škodlivé položky nebyly zjištěny)
www.malwarebytes.org
Verze databáze: 8052
Windows 6.1.7601 Service Pack 1
Internet Explorer 8.0.7601.17514
31. 10. 2011 20:12:47
mbam-log-2011-10-31 (20-12-47).txt
Typ kontroly: Rychlý test
Testované objekty: 168686
Uplynulý čas: 2 minut, 51 sekund
Infikované procesy v paměti: 0
Infikované moduly v paměti: 0
Infikované klíče v registru: 0
Infikované hodnoty v registru: 0
Infikované datové položky v registru: 0
Infikované složky: 0
Infikované soubory: 0
Infikované procesy v paměti:
(Žádné škodlivé položky nebyly zjištěny)
Infikované moduly v paměti:
(Žádné škodlivé položky nebyly zjištěny)
Infikované klíče v registru:
(Žádné škodlivé položky nebyly zjištěny)
Infikované hodnoty v registru:
(Žádné škodlivé položky nebyly zjištěny)
Infikované datové položky v registru:
(Žádné škodlivé položky nebyly zjištěny)
Infikované složky:
(Žádné škodlivé položky nebyly zjištěny)
Infikované soubory:
(Žádné škodlivé položky nebyly zjištěny)
Re: Trojský kôň Win32/Agent.SDG.Gen - prosím o pomoc
Takže mrtvolky tam nejsou
. Vy jste mi upravoval log combofixu?
Pokud nemáte, přesuňte Combofix na plochu
-otevřete si Poznámkový blok
-Do něj zkopírujte text z tohoto okénka
-uložte Vámi vytvořený TXT soubor jako CFScript.txt na plochu
-po uložení uchopte vámi vytvořený skript levým myšítkem a -přesuňte ho nad ikonu Combofixu, kde ho upustíte:

-po aplikaci na Vás vypadne další log,vložte ho sem
Upozornění : může se stát, že po aplikaci skriptu a restartu Windows nenaběhnou, v tom případě znovu restartujte a přitom mačkejte F8, pak zvolte Poslední známou funkční konfiguraci


-otevřete si Poznámkový blok
-Do něj zkopírujte text z tohoto okénka
Kód: Vybrat vše
Driver::
84241777
SSPORT
File::
c:\windows\system32\Drivers\SSPORT.sys
-po uložení uchopte vámi vytvořený skript levým myšítkem a -přesuňte ho nad ikonu Combofixu, kde ho upustíte:

-po aplikaci na Vás vypadne další log,vložte ho sem
Upozornění : může se stát, že po aplikaci skriptu a restartu Windows nenaběhnou, v tom případě znovu restartujte a přitom mačkejte F8, pak zvolte Poslední známou funkční konfiguraci
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: Trojský kôň Win32/Agent.SDG.Gen - prosím o pomoc
no ja som tam dal druhý log, pretože som si na to prvom všimol že nebol komplet vypnutý ESET, tak som spravil nový scan.
tuna je log, no po restarte mi znova nabehlo:
28. 10. 2011 9:34:31 Kontrola pri štarte boot sektor MBR sektor 2. fyzického disku Win32/Agent.SDG.Gen trójsky kôň nemožno liečiť
no všimol som si, že ho nedalo pod používateľom:Spash-PC/Spash,, nemohlo by to byť tým že už je iba na externom disku, lebo keď mi to vyhodilo tak externý zapracoval
ďakujem za odpoveď
ComboFix 11-11-01.01 - Spash . 11. 2011 8:33.3.2 - x86
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.421.1029.18.2048.1388 [GMT 1:00]
Running from: c:\users\Spash\Desktop\ComboFix.exe
Command switches used :: c:\users\Spash\Desktop\CFScript.txt
AV: ESET Smart Security 4.0 *Disabled/Updated* {CB0F8167-5331-BA19-698E-64816B6801A5}
FW: ESET personal firewall *Disabled* {F3340042-195E-BB41-42D1-CDB495BB46DE}
SP: ESET Smart Security 4.0 *Disabled/Updated* {706E6083-750B-B597-533E-5FF310EF4B18}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Created a new restore point
.
FILE ::
"c:\windows\system32\Drivers\SSPORT.sys"
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_84241777
-------\Legacy_SSPORT
-------\Service_84241777
-------\Service_SSPORT
.
.
((((((((((((((((((((((((( Files Created from 2011-10-01 to 2011-11-01 )))))))))))))))))))))))))))))))
.
.
2011-11-01 07:42 . 2011-11-01 07:42 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-11-01 07:16 . 2011-11-01 07:16 56200 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{4729EE43-E636-471D-A0CE-0A5BD62E0B34}\offreg.dll
2011-10-31 19:08 . 2010-11-29 16:42 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-10-31 19:08 . 2011-10-31 19:08 -------- d-----w- c:\programdata\Malwarebytes
2011-10-31 19:08 . 2011-10-31 19:08 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-10-31 19:08 . 2010-11-29 16:42 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-10-31 09:00 . 2011-10-31 09:00 -------- d-----w- c:\program files\Microsoft Works
2011-10-31 09:00 . 2011-10-31 09:00 -------- d-----w- c:\windows\PCHEALTH
2011-10-31 09:00 . 2011-10-31 09:00 -------- d-----w- c:\program files\Microsoft.NET
2011-10-31 08:58 . 2011-10-31 09:00 -------- d-----w- c:\program files\Microsoft Office 2007
2011-10-31 08:21 . 2011-10-31 08:21 -------- d-----w- c:\program files\Launchy
2011-10-31 08:12 . 2011-10-31 09:01 -------- d-----w- c:\programdata\Microsoft Help
2011-10-31 08:11 . 2011-10-31 08:11 -------- d-----r- C:\MSOCache
2011-10-29 09:18 . 2011-10-29 09:18 -------- d-----w- c:\program files\MSXML 4.0
2011-10-28 11:30 . 2011-10-18 00:28 6668624 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{4729EE43-E636-471D-A0CE-0A5BD62E0B34}\mpengine.dll
2011-10-28 10:45 . 1997-05-26 12:55 23040 ----a-w- c:\windows\system32\irisco32.dll
2011-10-28 10:45 . 2011-10-28 10:45 -------- d-----w- c:\program files\Readiris10
2011-10-28 10:45 . 2011-10-28 10:46 -------- d-----w- c:\program files\SmarThru 4
2011-10-28 10:45 . 2008-02-25 07:14 479232 ----a-w- c:\windows\ssndii.exe
2011-10-28 10:44 . 2011-10-28 10:44 -------- d-----w- c:\windows\Samsung
2011-10-28 10:44 . 2008-01-04 06:54 151552 ----a-w- c:\windows\system32\sse1mci.exe
2011-10-28 10:44 . 2008-01-04 06:54 65536 ----a-w- c:\windows\system32\sse1mci.dll
2011-10-28 10:44 . 2008-01-04 06:57 19968 ------w- c:\windows\system32\Spool\prtprocs\w32x86\sse1mpc.dll
2011-10-28 10:43 . 2008-01-03 04:50 110592 ----a-r- c:\windows\WiaInst.exe
2011-10-28 10:43 . 2008-01-03 04:23 5120 ----a-r- c:\windows\system32\drivers\SSPORT.sys
2011-10-28 10:43 . 2008-01-03 04:23 49152 ----a-r- c:\windows\system32\Ssusbpn.dll
2011-10-28 10:43 . 2008-01-03 04:23 57344 ----a-r- c:\windows\system32\Ssdevm.dll
2011-10-28 10:43 . 2008-01-03 04:07 11264 ----a-r- c:\windows\system32\sssegfilter.dll
2011-10-28 10:43 . 2008-01-03 04:07 217088 ----a-r- c:\windows\system32\ssminidriver.dll
2011-10-28 10:43 . 2008-01-03 04:07 27136 ----a-r- c:\windows\system32\ssimgfilter.dll
2011-10-28 10:43 . 2008-01-03 04:07 10752 ----a-r- c:\windows\system32\sserrhandler.dll
2011-10-28 10:43 . 2008-02-05 07:53 22723 ------w- c:\windows\system32\sse1ml3.dll
2011-10-28 10:43 . 2011-10-28 10:43 -------- d-----w- c:\windows\system32\drivers\Samsung
2011-10-28 10:42 . 2011-10-28 10:42 -------- d-----w- c:\program files\Samsung
2011-10-28 08:30 . 2011-03-02 10:43 175616 ----a-w- c:\windows\system32\unrar.dll
2011-10-28 08:30 . 2011-10-28 08:31 -------- d-----w- c:\program files\K-Lite Codec Pack
2011-10-28 08:27 . 2011-10-28 08:27 -------- d-----w- c:\program files\Webteh
2011-10-27 19:42 . 2011-10-27 19:49 -------- d-----w- c:\program files\trend micro
2011-10-27 15:26 . 2011-10-27 15:26 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-10-27 15:26 . 2011-10-27 15:26 -------- d-----w- c:\windows\system32\Macromed
2011-10-27 14:38 . 2011-10-27 14:38 -------- d-----w- c:\program files\Google
2011-10-27 14:30 . 2011-10-27 14:30 -------- d-----w- c:\windows\system32\SPReview
2011-10-27 14:30 . 2011-10-27 14:30 -------- d-----w- c:\windows\system32\EventProviders
2011-10-27 14:29 . 2011-10-27 14:29 -------- d-----w- c:\windows\system32\Wat
2011-10-27 14:25 . 2010-11-05 01:58 1130824 ----a-w- c:\windows\system32\dfshim.dll
2011-10-27 14:25 . 2010-11-20 12:19 53760 ----a-w- c:\windows\system32\LSCSHostPolicy.dll
2011-10-27 14:25 . 2010-11-20 10:24 52224 ----a-w- c:\windows\system32\drivers\TsUsbFlt.sys
2011-10-27 14:25 . 2010-11-20 12:21 11776 ----a-w- c:\windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2011-10-27 14:25 . 2010-11-20 12:19 3215872 ----a-w- c:\windows\system32\mstscax.dll
2011-10-27 14:25 . 2010-11-20 12:18 1171456 ----a-w- c:\windows\system32\d3d10warp.dll
2011-10-27 14:23 . 2010-11-20 12:30 245632 ----a-w- c:\windows\system32\drivers\volsnap.sys
2011-10-27 14:22 . 2010-11-20 12:21 129536 ----a-w- c:\windows\system32\rdpcorekmts.dll
2011-10-27 14:21 . 2010-11-20 12:21 189952 ----a-w- c:\windows\system32\wdscore.dll
2011-10-27 14:21 . 2010-11-20 12:21 363008 ----a-w- c:\windows\system32\wbemcomn.dll
2011-10-27 14:21 . 2010-11-20 12:21 189952 ----a-w- c:\program files\Windows Portable Devices\sqmapi.dll
2011-10-27 14:21 . 2010-11-20 12:19 606208 ----a-w- c:\windows\system32\wbem\fastprox.dll
2011-10-27 14:21 . 2010-11-20 12:21 189952 ----a-w- c:\windows\system32\sqmapi.dll
2011-10-27 05:12 . 2010-02-11 07:10 293376 ----a-w- c:\windows\system32\browserchoice.exe
2011-10-27 05:08 . 2011-04-29 02:46 311808 ----a-w- c:\windows\system32\drivers\srv.sys
2011-10-27 05:08 . 2011-04-29 02:46 310272 ----a-w- c:\windows\system32\drivers\srv2.sys
2011-10-27 05:08 . 2011-04-29 02:46 114688 ----a-w- c:\windows\system32\drivers\srvnet.sys
2011-10-27 05:08 . 2011-04-25 02:18 338944 ----a-w- c:\windows\system32\drivers\afd.sys
2011-10-27 05:08 . 2011-02-18 05:43 428032 ----a-w- c:\windows\system32\vbscript.dll
2011-10-27 05:06 . 2011-06-21 05:34 1290624 ----a-w- c:\windows\system32\drivers\tcpip.sys
2011-10-27 04:55 . 2011-10-27 04:56 -------- d-----w- c:\program files\Screamer Radio
2011-10-26 13:50 . 2011-10-26 13:50 138056 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2011-10-26 13:50 . 2011-10-26 13:50 189248 ----a-w- c:\windows\system32\PnkBstrB.exe
2011-10-26 13:50 . 2011-10-26 13:50 189248 ----a-w- c:\windows\system32\PnkBstrB.ex0
2011-10-26 13:50 . 2011-10-26 13:50 75136 ----a-w- c:\windows\system32\PnkBstrA.exe
2011-10-26 13:49 . 2011-10-26 13:49 -------- d-----w- c:\windows\system32\RTCOM
2011-10-26 13:42 . 2011-10-26 12:51 -------- d-----w- c:\windows\Panther
2011-10-26 13:42 . 2011-10-27 19:19 -------- d-----w- C:\Boot
2011-10-26 13:38 . 2011-10-26 13:38 -------- d--h--w- c:\program files\Common Files\EAInstaller
2011-10-26 13:36 . 2011-05-24 17:14 222080 ------w- c:\windows\system32\MpSigStub.exe
2011-10-26 13:20 . 2011-10-10 14:42 2580552 ----a-r- c:\windows\system32\pbsvc.exe
2011-10-26 13:10 . 2011-10-26 13:10 -------- d-----w- c:\users\UpdatusUser
2011-10-26 13:09 . 2011-11-01 07:44 -------- d-----w- c:\programdata\NVIDIA
2011-10-26 13:09 . 2011-10-15 08:53 6350144 ----a-w- c:\windows\system32\nvcpl.dll
2011-10-26 13:09 . 2011-10-15 08:53 602432 ----a-w- c:\windows\system32\easyupdatusapiu.dll
2011-10-26 13:09 . 2011-10-15 08:53 3840320 ----a-w- c:\windows\system32\nvsvc.dll
2011-10-26 13:09 . 2011-10-15 08:53 203072 ----a-w- c:\windows\system32\nvmctray.dll
2011-10-26 13:09 . 2011-10-15 08:53 123712 ----a-w- c:\windows\system32\nvshext.dll
2011-10-26 13:09 . 2011-10-15 08:53 1136448 ----a-w- c:\windows\system32\nvvsvc.exe
2011-10-26 13:09 . 2011-10-26 13:09 -------- d-----w- c:\programdata\NVIDIA Corporation
2011-10-26 13:08 . 2011-10-15 08:53 61248 ----a-w- c:\windows\system32\OpenCL.dll
2011-10-26 13:08 . 2011-10-15 08:53 877376 ----a-w- c:\windows\system32\nvgenco32.dll
2011-10-26 13:08 . 2011-10-15 08:53 18871616 ----a-w- c:\windows\system32\nvoglv32.dll
2011-10-26 13:08 . 2011-10-15 08:53 10327360 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys
2011-10-26 13:08 . 2011-10-15 08:53 919872 ----a-w- c:\windows\system32\nvdispco32.dll
2011-10-26 13:08 . 2011-10-15 08:53 2401088 ----a-w- c:\windows\system32\nvcuvid.dll
2011-10-26 13:08 . 2011-10-15 08:53 2099520 ----a-w- c:\windows\system32\nvcuvenc.dll
2011-10-26 13:08 . 2011-10-15 08:53 5578560 ----a-w- c:\windows\system32\nvcuda.dll
2011-10-26 13:08 . 2011-10-15 08:53 2458432 ----a-w- c:\windows\system32\nvapi.dll
2011-10-26 13:08 . 2011-10-15 08:53 17248576 ----a-w- c:\windows\system32\nvcompiler.dll
2011-10-26 13:07 . 2011-10-28 10:45 -------- d-----w- c:\program files\Common Files\InstallShield
2011-10-26 13:04 . 2011-10-26 13:06 -------- d-----w- c:\program files\TC UP
2011-10-26 13:00 . 2011-10-26 13:11 -------- d-----w- c:\program files\NVIDIA Corporation
2011-10-26 12:59 . 2011-10-26 12:59 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2011-10-26 12:59 . 2011-10-26 12:59 -------- d-----w- c:\program files\DAEMON Tools Lite
2011-10-26 12:58 . 2011-10-26 12:58 -------- d-----w- c:\programdata\DAEMON Tools Lite
2011-10-26 12:56 . 2011-11-01 07:19 -------- d-----w- c:\windows\system32\wbem\Performance
2011-10-26 12:56 . 2011-10-26 12:56 -------- d-----w- c:\program files\ESET
2011-10-26 12:54 . 2011-10-31 09:02 -------- d-sh--w- c:\windows\Installer
2011-10-26 12:52 . 2011-10-26 12:53 -------- d-----w- c:\users\Spash
2011-10-14 22:54 . 2011-10-14 22:54 321856 ----a-w- c:\windows\system32\nvStreaming.exe
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-10-27 19:10 . 2009-07-14 02:05 152576 ----a-w- c:\windows\system32\msclmd.dll
2011-10-15 08:53 . 2009-07-13 22:09 7041856 ----a-w- c:\windows\system32\nvwgf2um.dll
2011-10-15 08:53 . 2009-06-10 21:19 13205312 ----a-w- c:\windows\system32\nvd3dum.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2010-04-01 357696]
"chromium"="c:\users\Spash\AppData\Local\Google\Chrome\Application\chrome.exe" [2011-10-26 1036344]
"SRDownloader"="f:\download\SRDownloader.exe" [2011-10-19 903680]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2009-04-09 2029640]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2011-10-17 11430504]
"{0228e555-4f9c-4e35-a3ec-b109a192b4c2}"="c:\program files\Google\Gmail Notifier\gnotify.exe" [2005-07-15 479232]
"Samsung PanelMgr"="c:\windows\Samsung\PanelMgr\SSMMgr.exe" [2008-08-08 536576]
.
c:\users\Spash\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Launchy.lnk - c:\program files\Launchy\Launchy.exe [2011-10-31 380928]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2010-11-20 15872]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2011-10-27 1343400]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2011-10-26 691696]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [2009-04-09 107256]
S1 VD_FileDisk;VD_FileDisk; [x]
S2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [2009-04-09 731840]
S2 epfwwfp;epfwwfp;c:\windows\system32\DRIVERS\epfwwfp.sys [2009-04-09 38240]
S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-10-15 2253120]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-10-14 381248]
S3 yukonw7;Ovladač NDIS6.2 Miniport pro řadič Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x86.sys [2009-07-13 311296]
.
.
Contents of the 'Scheduled Tasks' folder
.
2011-10-27 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2935269482-1580412803-1049093956-1001Core.job
- c:\users\Spash\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-26 12:59]
.
2011-11-01 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2935269482-1580412803-1049093956-1001UA.job
- c:\users\Spash\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-26 12:59]
.
.
------- Supplementary Scan -------
.
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: SmarThru4 Capture Selection - c:\program files\SmarThru 4\WebCapture.dll2.htm
IE: SmarThru4 Save as HTML - c:\program files\SmarThru 4\WebCapture.dll1.htm
IE: SmarThru4 Save Selected Text - c:\program files\SmarThru 4\WebCapture.dll.htm
IE: SmarThru4 Web Capture - c:\program files\SmarThru 4\WebCapture.dll
TCP: DhcpNameServer = 173.193.227.124 173.192.105.217
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Other Running Processes ------------------------
.
c:\windows\system32\nvvsvc.exe
c:\program files\NVIDIA Corporation\Display\nvxdsync.exe
c:\windows\system32\nvvsvc.exe
c:\windows\system32\taskhost.exe
c:\windows\system32\PnkBstrA.exe
c:\windows\system32\PnkBstrB.exe
c:\windows\system32\conhost.exe
c:\program files\NVIDIA Corporation\Display\nvtray.exe
c:\windows\system32\WUDFHost.exe
c:\program files\Windows Media Player\wmpnetwk.exe
c:\windows\system32\sppsvc.exe
.
**************************************************************************
.
Completion time: 2011-11-01 08:48:13 - machine was rebooted
ComboFix-quarantined-files.txt 2011-11-01 07:48
ComboFix2.txt 2011-10-31 19:03
ComboFix3.txt 2011-10-31 18:30
.
Pre-Run: Volných bajtů: 36 035 346 432
Post-Run: Volných bajtů: 35 900 874 752
.
- - End Of File - - 88620FDA554FD43448329D3AD95E47BA
tuna je log, no po restarte mi znova nabehlo:
28. 10. 2011 9:34:31 Kontrola pri štarte boot sektor MBR sektor 2. fyzického disku Win32/Agent.SDG.Gen trójsky kôň nemožno liečiť
no všimol som si, že ho nedalo pod používateľom:Spash-PC/Spash,, nemohlo by to byť tým že už je iba na externom disku, lebo keď mi to vyhodilo tak externý zapracoval
ďakujem za odpoveď
ComboFix 11-11-01.01 - Spash . 11. 2011 8:33.3.2 - x86
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.421.1029.18.2048.1388 [GMT 1:00]
Running from: c:\users\Spash\Desktop\ComboFix.exe
Command switches used :: c:\users\Spash\Desktop\CFScript.txt
AV: ESET Smart Security 4.0 *Disabled/Updated* {CB0F8167-5331-BA19-698E-64816B6801A5}
FW: ESET personal firewall *Disabled* {F3340042-195E-BB41-42D1-CDB495BB46DE}
SP: ESET Smart Security 4.0 *Disabled/Updated* {706E6083-750B-B597-533E-5FF310EF4B18}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Created a new restore point
.
FILE ::
"c:\windows\system32\Drivers\SSPORT.sys"
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_84241777
-------\Legacy_SSPORT
-------\Service_84241777
-------\Service_SSPORT
.
.
((((((((((((((((((((((((( Files Created from 2011-10-01 to 2011-11-01 )))))))))))))))))))))))))))))))
.
.
2011-11-01 07:42 . 2011-11-01 07:42 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-11-01 07:16 . 2011-11-01 07:16 56200 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{4729EE43-E636-471D-A0CE-0A5BD62E0B34}\offreg.dll
2011-10-31 19:08 . 2010-11-29 16:42 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-10-31 19:08 . 2011-10-31 19:08 -------- d-----w- c:\programdata\Malwarebytes
2011-10-31 19:08 . 2011-10-31 19:08 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-10-31 19:08 . 2010-11-29 16:42 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-10-31 09:00 . 2011-10-31 09:00 -------- d-----w- c:\program files\Microsoft Works
2011-10-31 09:00 . 2011-10-31 09:00 -------- d-----w- c:\windows\PCHEALTH
2011-10-31 09:00 . 2011-10-31 09:00 -------- d-----w- c:\program files\Microsoft.NET
2011-10-31 08:58 . 2011-10-31 09:00 -------- d-----w- c:\program files\Microsoft Office 2007
2011-10-31 08:21 . 2011-10-31 08:21 -------- d-----w- c:\program files\Launchy
2011-10-31 08:12 . 2011-10-31 09:01 -------- d-----w- c:\programdata\Microsoft Help
2011-10-31 08:11 . 2011-10-31 08:11 -------- d-----r- C:\MSOCache
2011-10-29 09:18 . 2011-10-29 09:18 -------- d-----w- c:\program files\MSXML 4.0
2011-10-28 11:30 . 2011-10-18 00:28 6668624 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{4729EE43-E636-471D-A0CE-0A5BD62E0B34}\mpengine.dll
2011-10-28 10:45 . 1997-05-26 12:55 23040 ----a-w- c:\windows\system32\irisco32.dll
2011-10-28 10:45 . 2011-10-28 10:45 -------- d-----w- c:\program files\Readiris10
2011-10-28 10:45 . 2011-10-28 10:46 -------- d-----w- c:\program files\SmarThru 4
2011-10-28 10:45 . 2008-02-25 07:14 479232 ----a-w- c:\windows\ssndii.exe
2011-10-28 10:44 . 2011-10-28 10:44 -------- d-----w- c:\windows\Samsung
2011-10-28 10:44 . 2008-01-04 06:54 151552 ----a-w- c:\windows\system32\sse1mci.exe
2011-10-28 10:44 . 2008-01-04 06:54 65536 ----a-w- c:\windows\system32\sse1mci.dll
2011-10-28 10:44 . 2008-01-04 06:57 19968 ------w- c:\windows\system32\Spool\prtprocs\w32x86\sse1mpc.dll
2011-10-28 10:43 . 2008-01-03 04:50 110592 ----a-r- c:\windows\WiaInst.exe
2011-10-28 10:43 . 2008-01-03 04:23 5120 ----a-r- c:\windows\system32\drivers\SSPORT.sys
2011-10-28 10:43 . 2008-01-03 04:23 49152 ----a-r- c:\windows\system32\Ssusbpn.dll
2011-10-28 10:43 . 2008-01-03 04:23 57344 ----a-r- c:\windows\system32\Ssdevm.dll
2011-10-28 10:43 . 2008-01-03 04:07 11264 ----a-r- c:\windows\system32\sssegfilter.dll
2011-10-28 10:43 . 2008-01-03 04:07 217088 ----a-r- c:\windows\system32\ssminidriver.dll
2011-10-28 10:43 . 2008-01-03 04:07 27136 ----a-r- c:\windows\system32\ssimgfilter.dll
2011-10-28 10:43 . 2008-01-03 04:07 10752 ----a-r- c:\windows\system32\sserrhandler.dll
2011-10-28 10:43 . 2008-02-05 07:53 22723 ------w- c:\windows\system32\sse1ml3.dll
2011-10-28 10:43 . 2011-10-28 10:43 -------- d-----w- c:\windows\system32\drivers\Samsung
2011-10-28 10:42 . 2011-10-28 10:42 -------- d-----w- c:\program files\Samsung
2011-10-28 08:30 . 2011-03-02 10:43 175616 ----a-w- c:\windows\system32\unrar.dll
2011-10-28 08:30 . 2011-10-28 08:31 -------- d-----w- c:\program files\K-Lite Codec Pack
2011-10-28 08:27 . 2011-10-28 08:27 -------- d-----w- c:\program files\Webteh
2011-10-27 19:42 . 2011-10-27 19:49 -------- d-----w- c:\program files\trend micro
2011-10-27 15:26 . 2011-10-27 15:26 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-10-27 15:26 . 2011-10-27 15:26 -------- d-----w- c:\windows\system32\Macromed
2011-10-27 14:38 . 2011-10-27 14:38 -------- d-----w- c:\program files\Google
2011-10-27 14:30 . 2011-10-27 14:30 -------- d-----w- c:\windows\system32\SPReview
2011-10-27 14:30 . 2011-10-27 14:30 -------- d-----w- c:\windows\system32\EventProviders
2011-10-27 14:29 . 2011-10-27 14:29 -------- d-----w- c:\windows\system32\Wat
2011-10-27 14:25 . 2010-11-05 01:58 1130824 ----a-w- c:\windows\system32\dfshim.dll
2011-10-27 14:25 . 2010-11-20 12:19 53760 ----a-w- c:\windows\system32\LSCSHostPolicy.dll
2011-10-27 14:25 . 2010-11-20 10:24 52224 ----a-w- c:\windows\system32\drivers\TsUsbFlt.sys
2011-10-27 14:25 . 2010-11-20 12:21 11776 ----a-w- c:\windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2011-10-27 14:25 . 2010-11-20 12:19 3215872 ----a-w- c:\windows\system32\mstscax.dll
2011-10-27 14:25 . 2010-11-20 12:18 1171456 ----a-w- c:\windows\system32\d3d10warp.dll
2011-10-27 14:23 . 2010-11-20 12:30 245632 ----a-w- c:\windows\system32\drivers\volsnap.sys
2011-10-27 14:22 . 2010-11-20 12:21 129536 ----a-w- c:\windows\system32\rdpcorekmts.dll
2011-10-27 14:21 . 2010-11-20 12:21 189952 ----a-w- c:\windows\system32\wdscore.dll
2011-10-27 14:21 . 2010-11-20 12:21 363008 ----a-w- c:\windows\system32\wbemcomn.dll
2011-10-27 14:21 . 2010-11-20 12:21 189952 ----a-w- c:\program files\Windows Portable Devices\sqmapi.dll
2011-10-27 14:21 . 2010-11-20 12:19 606208 ----a-w- c:\windows\system32\wbem\fastprox.dll
2011-10-27 14:21 . 2010-11-20 12:21 189952 ----a-w- c:\windows\system32\sqmapi.dll
2011-10-27 05:12 . 2010-02-11 07:10 293376 ----a-w- c:\windows\system32\browserchoice.exe
2011-10-27 05:08 . 2011-04-29 02:46 311808 ----a-w- c:\windows\system32\drivers\srv.sys
2011-10-27 05:08 . 2011-04-29 02:46 310272 ----a-w- c:\windows\system32\drivers\srv2.sys
2011-10-27 05:08 . 2011-04-29 02:46 114688 ----a-w- c:\windows\system32\drivers\srvnet.sys
2011-10-27 05:08 . 2011-04-25 02:18 338944 ----a-w- c:\windows\system32\drivers\afd.sys
2011-10-27 05:08 . 2011-02-18 05:43 428032 ----a-w- c:\windows\system32\vbscript.dll
2011-10-27 05:06 . 2011-06-21 05:34 1290624 ----a-w- c:\windows\system32\drivers\tcpip.sys
2011-10-27 04:55 . 2011-10-27 04:56 -------- d-----w- c:\program files\Screamer Radio
2011-10-26 13:50 . 2011-10-26 13:50 138056 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2011-10-26 13:50 . 2011-10-26 13:50 189248 ----a-w- c:\windows\system32\PnkBstrB.exe
2011-10-26 13:50 . 2011-10-26 13:50 189248 ----a-w- c:\windows\system32\PnkBstrB.ex0
2011-10-26 13:50 . 2011-10-26 13:50 75136 ----a-w- c:\windows\system32\PnkBstrA.exe
2011-10-26 13:49 . 2011-10-26 13:49 -------- d-----w- c:\windows\system32\RTCOM
2011-10-26 13:42 . 2011-10-26 12:51 -------- d-----w- c:\windows\Panther
2011-10-26 13:42 . 2011-10-27 19:19 -------- d-----w- C:\Boot
2011-10-26 13:38 . 2011-10-26 13:38 -------- d--h--w- c:\program files\Common Files\EAInstaller
2011-10-26 13:36 . 2011-05-24 17:14 222080 ------w- c:\windows\system32\MpSigStub.exe
2011-10-26 13:20 . 2011-10-10 14:42 2580552 ----a-r- c:\windows\system32\pbsvc.exe
2011-10-26 13:10 . 2011-10-26 13:10 -------- d-----w- c:\users\UpdatusUser
2011-10-26 13:09 . 2011-11-01 07:44 -------- d-----w- c:\programdata\NVIDIA
2011-10-26 13:09 . 2011-10-15 08:53 6350144 ----a-w- c:\windows\system32\nvcpl.dll
2011-10-26 13:09 . 2011-10-15 08:53 602432 ----a-w- c:\windows\system32\easyupdatusapiu.dll
2011-10-26 13:09 . 2011-10-15 08:53 3840320 ----a-w- c:\windows\system32\nvsvc.dll
2011-10-26 13:09 . 2011-10-15 08:53 203072 ----a-w- c:\windows\system32\nvmctray.dll
2011-10-26 13:09 . 2011-10-15 08:53 123712 ----a-w- c:\windows\system32\nvshext.dll
2011-10-26 13:09 . 2011-10-15 08:53 1136448 ----a-w- c:\windows\system32\nvvsvc.exe
2011-10-26 13:09 . 2011-10-26 13:09 -------- d-----w- c:\programdata\NVIDIA Corporation
2011-10-26 13:08 . 2011-10-15 08:53 61248 ----a-w- c:\windows\system32\OpenCL.dll
2011-10-26 13:08 . 2011-10-15 08:53 877376 ----a-w- c:\windows\system32\nvgenco32.dll
2011-10-26 13:08 . 2011-10-15 08:53 18871616 ----a-w- c:\windows\system32\nvoglv32.dll
2011-10-26 13:08 . 2011-10-15 08:53 10327360 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys
2011-10-26 13:08 . 2011-10-15 08:53 919872 ----a-w- c:\windows\system32\nvdispco32.dll
2011-10-26 13:08 . 2011-10-15 08:53 2401088 ----a-w- c:\windows\system32\nvcuvid.dll
2011-10-26 13:08 . 2011-10-15 08:53 2099520 ----a-w- c:\windows\system32\nvcuvenc.dll
2011-10-26 13:08 . 2011-10-15 08:53 5578560 ----a-w- c:\windows\system32\nvcuda.dll
2011-10-26 13:08 . 2011-10-15 08:53 2458432 ----a-w- c:\windows\system32\nvapi.dll
2011-10-26 13:08 . 2011-10-15 08:53 17248576 ----a-w- c:\windows\system32\nvcompiler.dll
2011-10-26 13:07 . 2011-10-28 10:45 -------- d-----w- c:\program files\Common Files\InstallShield
2011-10-26 13:04 . 2011-10-26 13:06 -------- d-----w- c:\program files\TC UP
2011-10-26 13:00 . 2011-10-26 13:11 -------- d-----w- c:\program files\NVIDIA Corporation
2011-10-26 12:59 . 2011-10-26 12:59 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2011-10-26 12:59 . 2011-10-26 12:59 -------- d-----w- c:\program files\DAEMON Tools Lite
2011-10-26 12:58 . 2011-10-26 12:58 -------- d-----w- c:\programdata\DAEMON Tools Lite
2011-10-26 12:56 . 2011-11-01 07:19 -------- d-----w- c:\windows\system32\wbem\Performance
2011-10-26 12:56 . 2011-10-26 12:56 -------- d-----w- c:\program files\ESET
2011-10-26 12:54 . 2011-10-31 09:02 -------- d-sh--w- c:\windows\Installer
2011-10-26 12:52 . 2011-10-26 12:53 -------- d-----w- c:\users\Spash
2011-10-14 22:54 . 2011-10-14 22:54 321856 ----a-w- c:\windows\system32\nvStreaming.exe
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-10-27 19:10 . 2009-07-14 02:05 152576 ----a-w- c:\windows\system32\msclmd.dll
2011-10-15 08:53 . 2009-07-13 22:09 7041856 ----a-w- c:\windows\system32\nvwgf2um.dll
2011-10-15 08:53 . 2009-06-10 21:19 13205312 ----a-w- c:\windows\system32\nvd3dum.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2010-04-01 357696]
"chromium"="c:\users\Spash\AppData\Local\Google\Chrome\Application\chrome.exe" [2011-10-26 1036344]
"SRDownloader"="f:\download\SRDownloader.exe" [2011-10-19 903680]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2009-04-09 2029640]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2011-10-17 11430504]
"{0228e555-4f9c-4e35-a3ec-b109a192b4c2}"="c:\program files\Google\Gmail Notifier\gnotify.exe" [2005-07-15 479232]
"Samsung PanelMgr"="c:\windows\Samsung\PanelMgr\SSMMgr.exe" [2008-08-08 536576]
.
c:\users\Spash\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Launchy.lnk - c:\program files\Launchy\Launchy.exe [2011-10-31 380928]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2010-11-20 15872]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2011-10-27 1343400]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2011-10-26 691696]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [2009-04-09 107256]
S1 VD_FileDisk;VD_FileDisk; [x]
S2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [2009-04-09 731840]
S2 epfwwfp;epfwwfp;c:\windows\system32\DRIVERS\epfwwfp.sys [2009-04-09 38240]
S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-10-15 2253120]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-10-14 381248]
S3 yukonw7;Ovladač NDIS6.2 Miniport pro řadič Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x86.sys [2009-07-13 311296]
.
.
Contents of the 'Scheduled Tasks' folder
.
2011-10-27 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2935269482-1580412803-1049093956-1001Core.job
- c:\users\Spash\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-26 12:59]
.
2011-11-01 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2935269482-1580412803-1049093956-1001UA.job
- c:\users\Spash\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-26 12:59]
.
.
------- Supplementary Scan -------
.
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: SmarThru4 Capture Selection - c:\program files\SmarThru 4\WebCapture.dll2.htm
IE: SmarThru4 Save as HTML - c:\program files\SmarThru 4\WebCapture.dll1.htm
IE: SmarThru4 Save Selected Text - c:\program files\SmarThru 4\WebCapture.dll.htm
IE: SmarThru4 Web Capture - c:\program files\SmarThru 4\WebCapture.dll
TCP: DhcpNameServer = 173.193.227.124 173.192.105.217
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Other Running Processes ------------------------
.
c:\windows\system32\nvvsvc.exe
c:\program files\NVIDIA Corporation\Display\nvxdsync.exe
c:\windows\system32\nvvsvc.exe
c:\windows\system32\taskhost.exe
c:\windows\system32\PnkBstrA.exe
c:\windows\system32\PnkBstrB.exe
c:\windows\system32\conhost.exe
c:\program files\NVIDIA Corporation\Display\nvtray.exe
c:\windows\system32\WUDFHost.exe
c:\program files\Windows Media Player\wmpnetwk.exe
c:\windows\system32\sppsvc.exe
.
**************************************************************************
.
Completion time: 2011-11-01 08:48:13 - machine was rebooted
ComboFix-quarantined-files.txt 2011-11-01 07:48
ComboFix2.txt 2011-10-31 19:03
ComboFix3.txt 2011-10-31 18:30
.
Pre-Run: Volných bajtů: 36 035 346 432
Post-Run: Volných bajtů: 35 900 874 752
.
- - End Of File - - 88620FDA554FD43448329D3AD95E47BA
Re: Trojský kôň Win32/Agent.SDG.Gen - prosím o pomoc
Co máte jako 2. fyzický disk?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: Trojský kôň Win32/Agent.SDG.Gen - prosím o pomoc
Mám dve diskové jednotky
1. internú - SAMSUNG SP2004C ATA Device
rozdelený na partície C: D: E: F:
2. externú - WD 6400AAV External USB Device
tvorený jednou partíciou
1. internú - SAMSUNG SP2004C ATA Device
rozdelený na partície C: D: E: F:
2. externú - WD 6400AAV External USB Device
tvorený jednou partíciou
Re: Trojský kôň Win32/Agent.SDG.Gen - prosím o pomoc
A ve správci disků máte jako druhý fyzický disk ten externí?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: Trojský kôň Win32/Agent.SDG.Gen - prosím o pomoc
myslíš toto ?
ak nie tak mi pls napíš kde to nájdem, lebo vo win7 sa ešte moc nevyznám. ďakujem
Kód: Vybrat vše
http://imgupload.sk/viewer.php?file=62220631103438238129.jpg