[2011.11.19 05:01:36 | 000,471,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_isv.dll
[2011.11.19 05:01:36 | 000,471,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc.dll
[2011.11.19 05:01:36 | 000,347,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_ssp.exe
[2011.11.19 05:01:35 | 000,346,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_ssp_isv.exe
[2011.11.19 05:01:35 | 000,332,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msdrm.dll
[2011.11.19 05:01:35 | 000,152,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_ssp_isv.dll
[2011.11.19 05:01:35 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_ssp.dll
[2011.11.18 14:03:29 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\browserchoice.exe
[2011.11.18 13:59:19 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\nshhttp.dll
[2011.11.18 13:58:09 | 000,000,000 | ---D | C] -- C:\Program Files\MSXML 4.0
[2011.11.18 12:55:55 | 000,000,000 | ---D | C] -- C:\Users\misak\AppData\Roaming\InstallShield
[2011.11.18 12:39:30 | 008,147,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmploc.DLL
[2011.11.18 12:39:05 | 000,292,864 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\atmfd.dll
[2011.11.18 12:39:05 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fontsub.dll
[2011.11.18 12:39:04 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\System32\atmlib.dll
[2011.11.18 12:39:04 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dciman32.dll
[2011.11.18 12:38:54 | 002,452,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dat
[2011.11.18 12:38:51 | 000,078,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieencode.dll
[2011.11.18 12:37:14 | 001,136,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfc42.dll
[2011.11.18 12:37:13 | 001,162,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfc42u.dll
[2011.11.18 12:37:09 | 000,081,920 | ---- | C] (Radius Inc.) -- C:\Windows\System32\iccvid.dll
[2011.11.18 12:37:02 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dnscacheugc.exe
[2011.11.18 12:36:59 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\asycfilt.dll
[2011.11.18 12:36:51 | 000,157,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\t2embed.dll
[2011.11.18 12:36:28 | 001,169,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sdclt.exe
[2011.11.18 12:36:19 | 000,317,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MP4SDECD.DLL
[2011.11.18 12:36:13 | 000,954,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfc40.dll
[2011.11.18 12:36:13 | 000,954,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfc40u.dll
[2011.11.18 12:36:06 | 000,867,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmpmde.dll
[2011.11.18 12:36:03 | 000,429,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\EncDec.dll
[2011.11.18 12:36:02 | 000,322,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sbe.dll
[2011.11.18 12:36:02 | 000,177,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mpg2splt.ax
[2011.11.18 12:36:02 | 000,153,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sbeio.dll
[2011.11.18 12:35:53 | 000,220,672 | ---- | C] (Fraunhofer Institut Integrierte Schaltungen IIS) -- C:\Windows\System32\l3codecp.acm
[2011.11.18 12:35:53 | 000,062,464 | ---- | C] (Fraunhofer Institut Integrierte Schaltungen IIS) -- C:\Windows\System32\l3codeca.acm
[2011.11.18 12:35:42 | 000,352,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\taskschd.dll
[2011.11.18 12:35:41 | 000,345,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmicmiplugin.dll
[2011.11.18 12:35:41 | 000,270,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\taskcomp.dll
[2011.11.18 12:35:37 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\consent.exe
[2011.11.18 12:35:03 | 000,049,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\csrsrv.dll
[2011.11.18 12:34:59 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\aaclient.dll
[2011.11.18 12:34:59 | 000,063,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tscupgrd.exe
[2011.11.18 12:34:59 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tsgqec.dll
[2011.11.18 12:34:50 | 000,355,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WSDApi.dll
[2011.11.18 12:34:44 | 001,314,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\quartz.dll
[2011.11.18 12:34:43 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mciavi32.dll
[2011.11.18 07:30:04 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[2011.11.18 01:50:15 | 000,310,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\unregmp2.exe
[2011.11.18 01:48:24 | 000,604,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMSPDMOD.DLL
[2011.11.18 01:47:53 | 002,386,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMVCORE.DLL
[2011.11.18 01:47:53 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rrinstaller.exe
[2011.11.18 01:47:53 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfpmp.exe
[2011.11.18 01:47:53 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mferror.dll
[2011.11.18 01:47:32 | 000,302,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wlansec.dll
[2011.11.18 01:47:32 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wlanmsm.dll
[2011.11.18 01:47:32 | 000,127,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\L2SecHC.dll
[2011.11.18 01:47:32 | 000,068,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wlanhlp.dll
[2011.11.18 01:47:32 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wlanapi.dll
[2011.11.18 01:46:51 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netiohlp.dll
[2011.11.18 01:46:51 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NETSTAT.EXE
[2011.11.18 01:46:51 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ARP.EXE
[2011.11.18 01:46:51 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ROUTE.EXE
[2011.11.18 01:46:51 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MRINFO.EXE
[2011.11.18 01:46:51 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\finger.exe
[2011.11.18 01:46:51 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\HOSTNAME.EXE
[2011.11.18 01:44:37 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msdxm.tlb
[2011.11.18 01:44:37 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\amcompat.tlb
[2011.11.18 01:44:36 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\spwmp.dll
[2011.11.18 01:44:36 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msdxm.ocx
[2011.11.18 01:44:36 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxmasf.dll
[2011.11.18 01:15:07 | 000,000,000 | ---D | C] -- C:\ProgramData\IObit
[2011.11.18 01:10:31 | 000,000,000 | ---D | C] -- C:\Users\misak\AppData\Roaming\IObit
[2011.11.18 01:01:59 | 000,000,000 | ---D | C] -- C:\Users\misak\AppData\Local\Adobe
[2011.11.18 00:59:27 | 000,000,000 | ---D | C] -- C:\Users\misak\AppData\Roaming\WinRAR
[2011.11.18 00:59:27 | 000,000,000 | ---D | C] -- C:\Users\misak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
[2011.11.18 00:59:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
[2011.11.18 00:59:22 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2011.11.18 00:36:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2011.11.18 00:36:00 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2011.11.18 00:30:36 | 000,000,000 | ---D | C] -- C:\Users\misak\AppData\Roaming\Mozilla
[2011.11.18 00:30:36 | 000,000,000 | ---D | C] -- C:\Users\misak\AppData\Local\Mozilla
[2011.11.18 00:28:43 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2011.11.18 00:28:09 | 000,000,000 | ---D | C] -- C:\Users\misak\Downloads
[2011.11.18 00:26:11 | 000,000,000 | ---D | C] -- C:\Users\misak\AppData\Roaming\Adobe
[2011.11.17 23:58:27 | 000,025,136 | R--- | C] (Symantec Corporation) -- C:\Windows\System32\drivers\SymIMV.sys
[2011.11.17 23:58:20 | 000,124,464 | ---- | C] (Symantec Corporation) -- C:\Windows\System32\drivers\SYMEVENT.SYS
[2011.11.17 23:58:20 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Symantec Shared
[2011.11.17 23:58:20 | 000,000,000 | ---D | C] -- C:\Program Files\Symantec
[2011.11.17 23:58:05 | 002,421,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wucltux.dll
[2011.11.17 23:58:05 | 000,044,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wups2.dll
[2011.11.17 23:57:47 | 000,575,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuapi.dll
[2011.11.17 23:57:47 | 000,087,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wudriver.dll
[2011.11.17 23:57:47 | 000,035,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wups.dll
[2011.11.17 23:57:41 | 000,171,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuwebv.dll
[2011.11.17 23:57:41 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuapp.exe
[2011.11.17 23:56:33 | 000,000,000 | ---D | C] -- C:\Users\misak\Bluetooth Software
[2011.11.17 23:56:33 | 000,000,000 | ---D | C] -- C:\Users\misak\Documents\Bluetooth Exchange Folder
[2011.11.17 23:56:21 | 000,000,000 | ---D | C] -- C:\Users\misak\AppData\Roaming\ATI
[2011.11.17 23:56:21 | 000,000,000 | ---D | C] -- C:\Users\misak\AppData\Local\ATI
[2011.11.17 23:56:17 | 000,000,000 | ---D | C] -- C:\Users\misak\AppData\Local\Hewlett-Packard
[2011.11.17 23:56:10 | 000,000,000 | ---D | C] -- C:\Users\misak\Documents\My Received Files
[2011.11.17 23:56:02 | 000,000,000 | R--D | C] -- C:\Users\misak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
[2011.11.17 23:56:02 | 000,000,000 | R--D | C] -- C:\Users\misak\Searches
[2011.11.17 23:56:02 | 000,000,000 | R--D | C] -- C:\Users\misak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
[2011.11.17 23:55:56 | 000,000,000 | ---D | C] -- C:\Users\misak\AppData\Roaming\Identities
[2011.11.17 23:55:54 | 000,000,000 | R--D | C] -- C:\Users\misak\Contacts
[2011.11.17 23:55:40 | 000,000,000 | ---D | C] -- C:\Users\misak\AppData\Roaming\hewlett-packard
[2011.11.17 23:44:33 | 000,000,000 | ---D | C] -- C:\Users\misak\AppData\Local\VirtualStore
[2011.11.17 23:36:48 | 000,000,000 | ---D | C] -- C:\Users\misak\AppData\Roaming\HP TCS
[2011.11.17 23:35:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works
[2011.11.17 23:35:32 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office
[2011.11.17 23:35:13 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Works
[2011.11.17 23:34:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe
[2011.11.17 23:33:59 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2011.11.17 23:33:59 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe
[2011.11.17 23:31:13 | 000,000,000 | -HSD | C] -- C:\Users\misak\AppData\Local\Temporary Internet Files
[2011.11.17 23:31:13 | 000,000,000 | -HSD | C] -- C:\Users\misak\AppData\Local\Historie
[2011.11.17 23:31:13 | 000,000,000 | -HSD | C] -- C:\Users\misak\AppData\Local\Data aplikací
[2011.11.17 23:31:12 | 000,000,000 | -HSD | C] -- C:\Users\misak\Šablony
[2011.11.17 23:31:12 | 000,000,000 | -HSD | C] -- C:\Users\misak\Soubory cookie
[2011.11.17 23:31:12 | 000,000,000 | -HSD | C] -- C:\Users\misak\SendTo
[2011.11.17 23:31:12 | 000,000,000 | -HSD | C] -- C:\Users\misak\Recent
[2011.11.17 23:31:12 | 000,000,000 | -HSD | C] -- C:\Users\misak\Okolní tiskárny
[2011.11.17 23:31:12 | 000,000,000 | -HSD | C] -- C:\Users\misak\Okolní síť
[2011.11.17 23:31:12 | 000,000,000 | -HSD | C] -- C:\Users\misak\Documents\Obrázky
[2011.11.17 23:31:12 | 000,000,000 | -HSD | C] -- C:\Users\misak\Nabídka Start
[2011.11.17 23:31:12 | 000,000,000 | -HSD | C] -- C:\Users\misak\Local Settings
[2011.11.17 23:31:12 | 000,000,000 | -HSD | C] -- C:\Users\misak\Documents\Hudba
[2011.11.17 23:31:12 | 000,000,000 | -HSD | C] -- C:\Users\misak\Documents\Filmy
[2011.11.17 23:31:12 | 000,000,000 | -HSD | C] -- C:\Users\misak\Dokumenty
[2011.11.17 23:31:12 | 000,000,000 | -HSD | C] -- C:\Users\misak\Data aplikací
[2011.11.17 23:31:11 | 000,000,000 | --SD | C] -- C:\Users\misak\AppData\Roaming\Microsoft
[2011.11.17 23:31:11 | 000,000,000 | R--D | C] -- C:\Users\misak\Videos
[2011.11.17 23:31:11 | 000,000,000 | R--D | C] -- C:\Users\misak\Saved Games
[2011.11.17 23:31:11 | 000,000,000 | R--D | C] -- C:\Users\misak\Pictures
[2011.11.17 23:31:11 | 000,000,000 | R--D | C] -- C:\Users\misak\Music
[2011.11.17 23:31:11 | 000,000,000 | R--D | C] -- C:\Users\misak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
[2011.11.17 23:31:11 | 000,000,000 | R--D | C] -- C:\Users\misak\Links
[2011.11.17 23:31:11 | 000,000,000 | R--D | C] -- C:\Users\misak\Favorites
[2011.11.17 23:31:11 | 000,000,000 | R--D | C] -- C:\Users\misak\Desktop\Downloads
[2011.11.17 23:31:11 | 000,000,000 | R--D | C] -- C:\Users\misak\Documents
[2011.11.17 23:31:11 | 000,000,000 | R--D | C] -- C:\Users\misak\Desktop
[2011.11.17 23:31:11 | 000,000,000 | R--D | C] -- C:\Users\misak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
[2011.11.17 23:31:11 | 000,000,000 | -H-D | C] -- C:\Users\misak\AppData
[2011.11.17 23:31:11 | 000,000,000 | ---D | C] -- C:\Users\misak\AppData\Local\Temp
[2011.11.17 23:31:11 | 000,000,000 | ---D | C] -- C:\Users\misak\AppData\Local\Microsoft
[2011.11.17 23:31:11 | 000,000,000 | ---D | C] -- C:\Users\misak\AppData\Roaming\Media Center Programs
[2011.11.17 23:31:11 | 000,000,000 | ---D | C] -- C:\Users\misak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HP
[2011.11.17 23:31:11 | 000,000,000 | ---D | C] -- C:\Users\misak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink DVD Suite
[2011.11.17 23:30:53 | 000,000,000 | -HSD | C] -- C:\ProgramData\Šablony
[2011.11.17 23:30:53 | 000,000,000 | -HSD | C] -- C:\ProgramData\Plocha
[2011.11.17 23:30:53 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Obrázky
[2011.11.17 23:30:53 | 000,000,000 | -HSD | C] -- C:\ProgramData\Oblíbené položky
[2011.11.17 23:30:53 | 000,000,000 | -HSD | C] -- C:\ProgramData\Nabídka Start
[2011.11.17 23:30:53 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Hudba
[2011.11.17 23:30:53 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Filmy
[2011.11.17 23:30:53 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumenty
[2011.11.17 23:30:53 | 000,000,000 | -HSD | C] -- C:\ProgramData\Data aplikací
[2011.11.17 23:23:04 | 000,000,000 | ---D | C] -- C:\ProgramData\ATI
[2011.11.17 22:58:18 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LightScribe Direct Disc Labeling
[2011.11.17 22:58:18 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\LightScribe
[2011.11.17 22:55:06 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2011.11.17 22:54:00 | 000,233,472 | ---- | C] (Broadcom Corporation.) -- C:\Windows\System32\BtwRSupport.dll
[2011.11.17 22:53:55 | 000,000,000 | ---D | C] -- C:\Windows\System32\es-MX
[2011.11.17 22:53:55 | 000,000,000 | ---D | C] -- C:\Windows\System32\es-AR
[2011.11.17 22:53:52 | 000,000,000 | ---D | C] -- C:\Program Files\WIDCOMM
[2011.11.17 22:53:14 | 000,022,072 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\System32\drivers\usbfilter.sys
[2011.11.17 22:53:14 | 000,000,000 | ---D | C] -- C:\Windows\System32\DRVSTORE
[2011.11.17 22:53:13 | 000,000,000 | ---D | C] -- C:\Program Files\AMD
[2011.11.17 22:52:58 | 000,000,000 | ---D | C] -- C:\Windows\System32\HPMDP
[2011.11.17 22:52:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Atheros
[2011.11.17 22:52:18 | 001,093,120 | ---- | C] (Atheros Communications, Inc.) -- C:\Windows\System32\drivers\athr.sys
[2011.11.17 22:50:54 | 000,142,848 | ---- | C] (Realtek Corporation ) -- C:\Windows\System32\drivers\Rtlh86.sys
[2011.11.17 22:50:54 | 000,073,728 | ---- | C] (Realtek Semiconductor Corporation) -- C:\Windows\System32\RtNicProp32.dll
[2011.11.17 22:50:53 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek
[2011.11.17 22:50:27 | 000,376,832 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\System32\aestecap.dll
[2011.11.17 22:50:27 | 000,133,632 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\System32\aestacap.dll
[2011.11.17 22:50:27 | 000,053,248 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\System32\aestaren.dll
[2011.11.17 22:50:26 | 010,645,607 | ---- | C] (IDT, Inc.) -- C:\Windows\System32\idtcpl.cpl
[2011.11.17 22:50:26 | 002,912,256 | ---- | C] (IDT, Inc.) -- C:\Windows\System32\stlang.dll
[2011.11.17 22:50:26 | 000,536,576 | ---- | C] (IDT, Inc.) -- C:\Windows\System32\idtmini1.exe
[2011.11.17 22:50:26 | 000,450,663 | ---- | C] (IDT, Inc.) -- C:\Windows\sttray.exe
[2011.11.17 22:50:26 | 000,073,728 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\System32\AESTCom.dll
[2011.11.17 22:50:15 | 000,000,000 | ---D | C] -- C:\Windows\System32\SRSLabs
[2011.11.17 22:49:34 | 000,168,960 | ---- | C] (IDT, Inc.) -- C:\Windows\System32\staco.dll
[2011.11.17 22:49:10 | 000,671,744 | ---- | C] (IDT, Inc.) -- C:\Windows\System32\stapo.dll
[2011.11.17 22:49:10 | 000,404,480 | ---- | C] (IDT, Inc.) -- C:\Windows\System32\stcplx.dll
[2011.11.17 22:49:10 | 000,391,168 | ---- | C] (IDT, Inc.) -- C:\Windows\System32\drivers\stwrt.sys
[2011.11.17 22:49:09 | 000,428,544 | ---- | C] (IDT, Inc.) -- C:\Windows\System32\stapi32.dll
[2011.11.17 22:48:56 | 000,000,000 | ---D | C] -- C:\Program Files\IDT
[2011.11.17 22:48:37 | 000,000,000 | ---D | C] -- C:\Windows\System32\SDA
[2011.11.17 22:48:27 | 000,000,000 | ---D | C] -- C:\Program Files\DIFX
[2011.11.17 22:47:40 | 000,000,000 | ---D | C] -- C:\Program Files\Synaptics
[2011.11.17 22:47:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center
[2011.11.17 22:45:14 | 000,000,000 | ---D | C] -- C:\Program Files\ATI
[2011.11.17 22:45:12 | 000,000,000 | ---D | C] -- C:\Program Files\ATI Technologies
[2011.11.17 22:40:51 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2011.11.17 22:36:32 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch
========== Files - Modified Within 30 Days ==========
[2011.11.23 20:03:24 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2011.11.23 19:58:48 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\misak\Desktop\OTL.exe
[2011.11.23 19:07:22 | 000,003,216 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2011.11.23 19:07:22 | 000,003,216 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2011.11.23 18:57:04 | 000,047,104 | ---- | M] () -- C:\Users\misak\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.11.23 17:09:38 | 003,983,975 | ---- | M] () -- C:\Users\misak\Desktop\James Brown I feel good.mp3
[2011.11.23 17:05:04 | 112,560,049 | ---- | M] () -- C:\Users\misak\Desktop\Sklsk kola Nov Bor.wmv
[2011.11.23 17:00:14 | 000,001,909 | ---- | M] () -- C:\Users\Public\Desktop\MP3 Downloader.lnk
[2011.11.23 17:00:14 | 000,001,905 | ---- | M] () -- C:\Users\Public\Desktop\Video Search.lnk
[2011.11.23 17:00:13 | 000,000,979 | ---- | M] () -- C:\Users\Public\Desktop\aTube Catcher.lnk
[2011.11.23 16:21:16 | 000,607,464 | ---- | M] () -- C:\Windows\System32\perfh005.dat
[2011.11.23 16:21:16 | 000,595,996 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2011.11.23 16:21:16 | 000,118,096 | ---- | M] () -- C:\Windows\System32\perfc005.dat
[2011.11.23 16:21:16 | 000,104,070 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2011.11.23 15:07:07 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011.11.23 15:06:38 | 3218,956,288 | -HS- | M] () -- C:\hiberfil.sys
[2011.11.23 05:11:55 | 000,000,012 | ---- | M] () -- C:\Windows\bthservsdp.dat
[2011.11.23 05:06:44 | 2072,464,519 | ---- | M] () -- C:\Users\misak\Desktop\Top-Gear_cela-6-serie_cesky-dabing.zip
[2011.11.23 04:57:05 | 1718,455,817 | ---- | M] () -- C:\Users\misak\Desktop\Top-Gear_cela-7-serie_cesky-dabing.zip
[2011.11.23 04:52:07 | 1564,055,138 | R--- | M] () -- C:\Users\misak\Desktop\Top-Gear_cela-8-serie_cesky-dabing.zip
[2011.11.23 04:03:59 | 578,380,883 | R--- | M] () -- C:\Users\misak\Desktop\Top-Gear_cela-9-serie_cesky-dabing.zip
[2011.11.22 20:30:00 | 000,287,896 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2011.11.22 20:22:28 | 000,000,104 | ---- | M] () -- C:\Users\misak\Desktop\Počítač – zástupce.lnk
[2011.11.22 19:58:24 | 2167,209,982 | ---- | M] () -- C:\3590F75ABA9E485486C100C1A9D4FF06XAGBTFLRFWEPBRRT
[2011.11.22 11:32:10 | 000,001,702 | ---- | M] () -- C:\Users\Public\Desktop\Defraggler.lnk
[2011.11.21 23:05:15 | 000,000,340 | ---- | M] () -- C:\Users\misak\Desktop\Zvuk – zástupce.lnk
[2011.11.20 16:59:58 | 000,000,838 | ---- | M] () -- C:\Users\Public\Desktop\Zune.lnk
[2011.11.20 00:32:41 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_ZuneDriver_01_09_00.Wdf
[2011.11.20 00:32:41 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_WinUSB_01009.Wdf
[2011.11.20 00:15:41 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf
[2011.11.19 07:54:27 | 000,000,859 | ---- | M] () -- C:\Users\Public\Desktop\VLC media player.lnk
[2011.11.19 05:25:27 | 000,414,368 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl
[2011.11.18 01:50:15 | 000,310,784 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\unregmp2.exe
[2011.11.18 01:48:24 | 000,604,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\WMSPDMOD.DLL
[2011.11.18 01:47:53 | 002,386,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\WMVCORE.DLL
[2011.11.18 01:47:53 | 000,053,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\rrinstaller.exe
[2011.11.18 01:47:53 | 000,024,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mfpmp.exe
[2011.11.18 01:47:53 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mferror.dll
[2011.11.18 01:47:32 | 002,501,921 | ---- | M] () -- C:\Windows\System32\wlan.tmf
[2011.11.18 01:47:32 | 000,302,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wlansec.dll
[2011.11.18 01:47:32 | 000,293,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wlanmsm.dll
[2011.11.18 01:47:32 | 000,127,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\L2SecHC.dll
[2011.11.18 01:47:32 | 000,068,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wlanhlp.dll
[2011.11.18 01:47:32 | 000,065,024 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wlanapi.dll
[2011.11.18 01:46:51 | 000,105,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\netiohlp.dll
[2011.11.18 01:46:51 | 000,027,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\NETSTAT.EXE
[2011.11.18 01:46:51 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ARP.EXE
[2011.11.18 01:46:51 | 000,017,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ROUTE.EXE
[2011.11.18 01:46:51 | 000,011,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\MRINFO.EXE
[2011.11.18 01:46:51 | 000,010,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\finger.exe
[2011.11.18 01:46:51 | 000,008,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\HOSTNAME.EXE
[2011.11.18 01:44:37 | 000,043,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msdxm.tlb
[2011.11.18 01:44:37 | 000,018,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\amcompat.tlb
[2011.11.18 01:44:36 | 000,007,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\spwmp.dll
[2011.11.18 01:44:36 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msdxm.ocx
[2011.11.18 00:36:07 | 000,000,804 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2011.11.18 00:28:46 | 000,000,846 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2011.11.18 00:22:47 | 000,588,472 | ---- | M] (EasyBits Software AS) -- C:\Windows\System32\ezsvc7x.dll
[2011.11.18 00:21:39 | 000,000,322 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleFormisak.job
[2011.11.17 23:58:20 | 000,124,464 | ---- | M] (Symantec Corporation) -- C:\Windows\System32\drivers\SYMEVENT.SYS
[2011.11.17 23:58:20 | 000,010,635 | ---- | M] () -- C:\Windows\System32\drivers\SYMEVENT.CAT
[2011.11.17 23:58:20 | 000,000,806 | ---- | M] () -- C:\Windows\System32\drivers\SYMEVENT.INF
[2011.11.17 23:32:30 | 000,000,000 | RHS- | M] () -- C:\Windows\System32\drivers\103C_HP_cNB_Pavilion dv6 Notebook PC_Y5335KV_0U_QCNF9363QCJ_E518373-221_4A_I3060_SQuanta_V19.15_F.14_T090713_WV3-1_L405_M3070_J500_7AMD_8F31_92.10_#111117_N10EC8168;168C002B_(VP953EA#AKB)_XMOBILE_CN10_Z_2Rev 1.MRK
[2011.11.17 23:14:33 | 000,001,928 | ---- | M] () -- C:\Users\Public\Desktop\HP MediaSmart.lnk
[2011.11.17 22:56:28 | 000,000,000 | ---- | M] () -- C:\Windows\ativpsrm.bin
[2011.11.17 22:48:09 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_SynTP_01007.Wdf
========== Files Created - No Company Name ==========
[2011.11.23 20:03:24 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2011.11.23 17:09:30 | 003,983,975 | ---- | C] () -- C:\Users\misak\Desktop\James Brown I feel good.mp3
[2011.11.23 17:03:45 | 112,560,049 | ---- | C] () -- C:\Users\misak\Desktop\Sklsk kola Nov Bor.wmv
[2011.11.23 17:00:14 | 000,001,909 | ---- | C] () -- C:\Users\Public\Desktop\MP3 Downloader.lnk
[2011.11.23 17:00:14 | 000,001,905 | ---- | C] () -- C:\Users\Public\Desktop\Video Search.lnk
[2011.11.23 17:00:13 | 000,000,979 | ---- | C] () -- C:\Users\Public\Desktop\aTube Catcher.lnk
[2011.11.23 02:15:17 | 2072,464,519 | ---- | C] () -- C:\Users\misak\Desktop\Top-Gear_cela-6-serie_cesky-dabing.zip
[2011.11.23 02:14:24 | 1718,455,817 | ---- | C] () -- C:\Users\misak\Desktop\Top-Gear_cela-7-serie_cesky-dabing.zip
[2011.11.23 02:14:03 | 1564,055,138 | R--- | C] () -- C:\Users\misak\Desktop\Top-Gear_cela-8-serie_cesky-dabing.zip
[2011.11.23 02:13:24 | 578,380,883 | R--- | C] () -- C:\Users\misak\Desktop\Top-Gear_cela-9-serie_cesky-dabing.zip
[2011.11.22 20:29:57 | 000,287,896 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2011.11.22 20:22:28 | 000,000,104 | ---- | C] () -- C:\Users\misak\Desktop\Počítač – zástupce.lnk
[2011.11.22 19:58:24 | 2167,209,982 | ---- | C] () -- C:\3590F75ABA9E485486C100C1A9D4FF06XAGBTFLRFWEPBRRT
[2011.11.22 11:32:10 | 000,001,702 | ---- | C] () -- C:\Users\Public\Desktop\Defraggler.lnk
[2011.11.21 23:05:15 | 000,000,340 | ---- | C] () -- C:\Users\misak\Desktop\Zvuk – zástupce.lnk
[2011.11.20 16:59:58 | 000,000,838 | ---- | C] () -- C:\Users\Public\Desktop\Zune.lnk
[2011.11.20 00:32:41 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_ZuneDriver_01_09_00.Wdf
[2011.11.20 00:32:41 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_WinUSB_01009.Wdf
[2011.11.20 00:15:41 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf
[2011.11.20 00:14:48 | 000,000,003 | ---- | C] () -- C:\Windows\System32\drivers\MsftWdf_Kernel_01009_Inbox_Critical.Wdf
[2011.11.19 16:42:53 | 000,047,104 | ---- | C] () -- C:\Users\misak\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.11.19 12:31:21 | 000,130,008 | ---- | C] () -- C:\Windows\System32\systemsf.ebd
[2011.11.19 12:31:17 | 000,009,239 | ---- | C] () -- C:\Windows\System32\spcinstrumentation.man
[2011.11.19 12:31:07 | 000,442,788 | ---- | C] () -- C:\Windows\System32\dot3.tmf
[2011.11.19 12:31:04 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2011.11.19 12:31:04 | 000,107,612 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2011.11.19 12:31:00 | 000,392,170 | ---- | C] () -- C:\Windows\System32\onex.tmf
[2011.11.19 12:30:53 | 000,344,698 | ---- | C] () -- C:\Windows\System32\eaphost.tmf
[2011.11.19 12:30:31 | 000,208,966 | ---- | C] () -- C:\Windows\System32\WFP.TMF
[2011.11.19 12:30:27 | 000,092,918 | ---- | C] () -- C:\Windows\System32\slmgr.vbs
[2011.11.19 12:29:18 | 000,009,212 | ---- | C] () -- C:\Windows\System32\RacUR.xml
[2011.11.19 07:54:27 | 000,000,859 | ---- | C] () -- C:\Users\Public\Desktop\VLC media player.lnk
[2011.11.19 05:04:26 | 000,201,184 | ---- | C] () -- C:\Windows\System32\winrm.vbs
[2011.11.19 05:04:26 | 000,004,675 | ---- | C] () -- C:\Windows\System32\wsmanconfig_schema.xml
[2011.11.19 05:04:26 | 000,002,426 | ---- | C] () -- C:\Windows\System32\WsmTxt.xsl
[2011.11.18 01:47:32 | 002,501,921 | ---- | C] () -- C:\Windows\System32\wlan.tmf
[2011.11.18 00:36:07 | 000,000,804 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2011.11.18 00:28:46 | 000,000,858 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2011.11.18 00:28:46 | 000,000,846 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2011.11.17 23:58:20 | 000,010,635 | ---- | C] () -- C:\Windows\System32\drivers\SYMEVENT.CAT
[2011.11.17 23:58:20 | 000,000,806 | ---- | C] () -- C:\Windows\System32\drivers\SYMEVENT.INF
[2011.11.17 23:56:06 | 000,000,949 | ---- | C] () -- C:\Users\misak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[2011.11.17 23:56:01 | 000,000,944 | ---- | C] () -- C:\Users\misak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
[2011.11.17 23:55:54 | 000,000,915 | ---- | C] () -- C:\Users\misak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk
[2011.11.17 23:55:41 | 000,000,322 | ---- | C] () -- C:\Windows\tasks\HPCeeScheduleFormisak.job
[2011.11.17 23:35:37 | 000,001,903 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office PowerPoint Viewer 2003.lnk
[2011.11.17 23:35:37 | 000,001,797 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spouštěč úloh sady Microsoft Works.lnk
[2011.11.17 23:34:05 | 000,001,804 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader 9.lnk
[2011.11.17 23:32:30 | 000,000,000 | RHS- | C] () -- C:\Windows\System32\drivers\103C_HP_cNB_Pavilion dv6 Notebook PC_Y5335KV_0U_QCNF9363QCJ_E518373-221_4A_I3060_SQuanta_V19.15_F.14_T090713_WV3-1_L405_M3070_J500_7AMD_8F31_92.10_#111117_N10EC8168;168C002B_(VP953EA#AKB)_XMOBILE_CN10_Z_2Rev 1.MRK
[2011.11.17 23:14:33 | 000,001,928 | ---- | C] () -- C:\Users\Public\Desktop\HP MediaSmart.lnk
[2011.11.17 22:56:28 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2011.11.17 22:56:26 | 3218,956,288 | -HS- | C] () -- C:\hiberfil.sys
[2011.11.17 22:48:09 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_SynTP_01007.Wdf
[2011.11.17 22:41:22 | 000,000,012 | ---- | C] () -- C:\Windows\bthservsdp.dat
[2009.03.22 02:38:30 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2009.03.22 02:31:38 | 000,607,464 | ---- | C] () -- C:\Windows\System32\perfh005.dat
[2009.03.22 02:31:38 | 000,286,912 | ---- | C] () -- C:\Windows\System32\perfi005.dat
[2009.03.22 02:31:38 | 000,118,096 | ---- | C] () -- C:\Windows\System32\perfc005.dat
[2009.03.22 02:31:38 | 000,034,724 | ---- | C] () -- C:\Windows\System32\perfd005.dat
[2009.03.21 19:59:47 | 000,000,428 | ---- | C] () -- C:\Windows\System32\ezdigsgn.dat
[2009.01.22 01:34:38 | 000,159,744 | ---- | C] () -- C:\Windows\System32\atitmmxx.dll
[2009.01.22 00:51:52 | 003,107,788 | ---- | C] () -- C:\Windows\System32\atiumdva.dat
[2008.10.29 18:13:34 | 000,180,720 | ---- | C] () -- C:\Windows\System32\atiicdxx.dat
[2008.10.21 13:40:00 | 000,081,920 | ---- | C] () -- C:\Windows\System32\ATIODE.exe
[2008.10.21 13:40:00 | 000,045,056 | ---- | C] () -- C:\Windows\System32\ATIODCLI.exe
[2006.11.02 13:57:28 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2006.11.02 13:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006.11.02 11:33:01 | 000,595,996 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2006.11.02 11:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2006.11.02 11:33:01 | 000,104,070 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2006.11.02 11:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2006.11.02 11:23:21 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2006.11.02 09:58:30 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2006.11.02 09:19:00 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2006.11.02 08:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006.11.02 08:25:31 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
[2001.11.14 13:56:00 | 001,802,240 | ---- | C] () -- C:\Windows\System32\lcppn21.dll
========== LOP Check ==========
[2011.11.20 01:16:57 | 000,000,000 | ---D | M] -- C:\Users\misak\AppData\Roaming\IObit
[2011.11.23 05:12:01 | 000,015,034 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ==========
========== Custom Scans ==========
< >
< >
< MD5 for: AGP440.SYS >
[2008.01.21 03:23:01 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\System32\drivers\AGP440.sys
[2008.01.21 03:23:01 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_51b95d75\AGP440.sys
[2008.01.21 03:23:01 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_f750e484\AGP440.sys
[2008.01.21 03:23:01 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.0.6001.18000_none_ba12ed3bbeb0d97a\AGP440.sys
[2008.01.21 03:23:01 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.0.6002.18005_none_bbfe6647bbd2a4c6\AGP440.sys
[2006.11.02 10:49:52 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=EF23439CDD587F64C2C1B8825CEAD7D8 -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_920a2c1f\AGP440.sys
< MD5 for: ATAPI.SYS >
[2009.04.11 07:32:26 | 000,019,944 | ---- | M] (Microsoft Corporation) MD5=1F05B78AB91C9075565A9D8A4B880BC4 -- C:\Windows\System32\drivers\atapi.sys
[2009.04.11 07:32:26 | 000,019,944 | ---- | M] (Microsoft Corporation) MD5=1F05B78AB91C9075565A9D8A4B880BC4 -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_b12d8e84\atapi.sys
[2009.04.11 07:32:26 | 000,019,944 | ---- | M] (Microsoft Corporation) MD5=1F05B78AB91C9075565A9D8A4B880BC4 -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6002.18005_none_df23a1261eab99e8\atapi.sys
[2008.01.21 03:23:00 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_cc18792d\atapi.sys
[2008.01.21 03:23:00 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6001.18000_none_dd38281a2189ce9c\atapi.sys
[2006.11.02 10:49:36 | 000,019,048 | ---- | M] (Microsoft Corporation) MD5=4F4FCB8B6EA06784FB6D475B7EC7300F -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_c6c2e699\atapi.sys
[2008.08.16 13:03:39 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=66A1A71D66C5235A31C16F30147E7AF6 -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_181d523c\atapi.sys
[2008.08.16 13:03:39 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=66A1A71D66C5235A31C16F30147E7AF6 -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6001.22245_none_dd9b888d3ac35a04\atapi.sys
[2009.03.22 02:54:55 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=9C0E70031905ADBF94EDB9EA14AF943B -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_7f3e4ed9\atapi.sys
[2009.03.22 02:54:55 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=9C0E70031905ADBF94EDB9EA14AF943B -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6001.22193_none_dd6376773aedb5e4\atapi.sys
[2009.03.22 02:54:55 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=E26DDFE464B464DAF1C739122978D1D6 -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_b7393fc6\atapi.sys
[2009.03.22 02:54:55 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=E26DDFE464B464DAF1C739122978D1D6 -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6000.20847_none_dbb74a7b3d9afbc1\atapi.sys
< MD5 for: AUTOCHK.EXE >
[2009.04.11 07:27:20 | 000,643,072 | ---- | M] (Microsoft Corporation) MD5=10761177A6EBE45843F443E99509F5E7 -- C:\Windows\System32\autochk.exe
[2009.04.11 07:27:20 | 000,643,072 | ---- | M] (Microsoft Corporation) MD5=10761177A6EBE45843F443E99509F5E7 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.0.6002.18005_none_e3df6655bee2ee3b\autochk.exe
[2008.01.21 03:24:45 | 000,642,560 | ---- | M] (Microsoft Corporation) MD5=2FC5BE79B51714B479809358E4908FC3 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.0.6001.18000_none_e1f3ed49c1c122ef\autochk.exe
< MD5 for: CDROM.SYS >
[2008.01.21 03:23:02 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=1EC25CEA0DE6AC4718BF89F9E1778B57 -- C:\Windows\System32\DriverStore\FileRepository\cdrom.inf_a29e71c6\cdrom.sys
[2008.01.21 03:23:02 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=1EC25CEA0DE6AC4718BF89F9E1778B57 -- C:\Windows\winsxs\x86_cdrom.inf_31bf3856ad364e35_6.0.6001.18000_none_5fa95be2a3c76a4a\cdrom.sys
[2009.04.11 05:39:17 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=6B4BFFB9BECD728097024276430DB314 -- C:\Windows\System32\drivers\cdrom.sys
[2009.04.11 05:39:17 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=6B4BFFB9BECD728097024276430DB314 -- C:\Windows\System32\DriverStore\FileRepository\cdrom.inf_c949a5b6\cdrom.sys
[2009.04.11 05:39:17 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=6B4BFFB9BECD728097024276430DB314 -- C:\Windows\winsxs\x86_cdrom.inf_31bf3856ad364e35_6.0.6002.18005_none_6194d4eea0e93596\cdrom.sys
[2006.11.02 09:51:44 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=8D1866E61AF096AE8B582454F5E4D303 -- C:\Windows\System32\DriverStore\FileRepository\cdrom.inf_e487f727\cdrom.sys
< MD5 for: CNGAUDIT.DLL >
[2006.11.02 10:46:03 | 000,011,776 | ---- | M] (Microsoft Corporation) MD5=7F15B4953378C8B5161D65C26D5FED4D -- C:\Windows\System32\cngaudit.dll
[2006.11.02 10:46:03 | 000,011,776 | ---- | M] (Microsoft Corporation) MD5=7F15B4953378C8B5161D65C26D5FED4D -- C:\Windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.0.6000.16386_none_e62d292932a96ce6\cngaudit.dll
< MD5 for: CRYPTSVC.DLL >
[2008.01.21 03:24:35 | 000,128,000 | ---- | M] (Microsoft Corporation) MD5=6DE363F9F99334514C46AEC02D3E3678 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.0.6001.18000_none_75ff99649acf4de9\cryptsvc.dll
[2009.04.11 07:28:18 | 000,129,024 | ---- | M] (Microsoft Corporation) MD5=FB27772BEAF8E1D28CCD825C09DA939B -- C:\Windows\System32\cryptsvc.dll
[2009.04.11 07:28:18 | 000,129,024 | ---- | M] (Microsoft Corporation) MD5=FB27772BEAF8E1D28CCD825C09DA939B -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.0.6002.18005_none_77eb127097f11935\cryptsvc.dll
< MD5 for: EVENTLOG.DLL >
[2007.05.17 21:34:04 | 000,007,216 | ---- | M] () MD5=C2A279A458A06DE2C83D842AA042B5A8 -- C:\Program Files\CyberLink\PowerDirector\EventLog.dll
< MD5 for: EXPLORER.EXE >
[2009.03.22 03:11:18 | 002,923,520 | ---- | M] (Microsoft Corporation) MD5=37440D09DEAE0B672A04DCCF7ABF06BE -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6000.16771_none_4f83bb287ccdb7e3\explorer.exe
[2009.03.22 03:11:17 | 002,927,104 | ---- | M] (Microsoft Corporation) MD5=4F554999D7D5F05DAAEBBA7B5BA1089D -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6001.18164_none_5177ca9879e978e8\explorer.exe
[2009.03.22 03:11:17 | 002,927,616 | ---- | M] (Microsoft Corporation) MD5=50BA5850147410CDE89C523AD3BC606E -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6001.22298_none_51e4f8c7931bd1e1\explorer.exe
[2009.04.11 07:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) MD5=D07D4C3038F3578FFCE1C0237F2A1253 -- C:\Windows\explorer.exe
[2009.04.11 07:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) MD5=D07D4C3038F3578FFCE1C0237F2A1253 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6002.18005_none_53a0201e76de3a0b\explorer.exe
[2009.03.22 03:11:17 | 002,923,520 | ---- | M] (Microsoft Corporation) MD5=E7156B0B74762D9DE0E66BDCDE06E5FB -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6000.20947_none_5033cb5995cd990b\explorer.exe
[2008.01.21 03:24:24 | 002,927,104 | ---- | M] (Microsoft Corporation) MD5=FFA764631CB70A30065C12EF8E174F9F -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6001.18000_none_51b4a71279bc6ebf\explorer.exe
< MD5 for: HAL.DLL >
[2009.04.11 07:32:46 | 000,177,128 | ---- | M] (Microsoft Corporation) MD5=B8D52005181A15D7D1470CBF2AF214DD -- C:\Windows\System32\hal.dll
< MD5 for: IASTORV.SYS >
[2008.01.21 03:23:23 | 000,235,064 | ---- | M] (Intel Corporation) MD5=54155EA1B0DF185878E0FC9EC3AC3A14 -- C:\Windows\System32\drivers\iaStorV.sys
[2008.01.21 03:23:23 | 000,235,064 | ---- | M] (Intel Corporation) MD5=54155EA1B0DF185878E0FC9EC3AC3A14 -- C:\Windows\System32\DriverStore\FileRepository\iastorv.inf_c9df7691\iaStorV.sys
[2008.01.21 03:23:23 | 000,235,064 | ---- | M] (Intel Corporation) MD5=54155EA1B0DF185878E0FC9EC3AC3A14 -- C:\Windows\winsxs\x86_iastorv.inf_31bf3856ad364e35_6.0.6001.18000_none_af11527887c7fa8f\iaStorV.sys
[2006.11.02 10:51:25 | 000,232,040 | ---- | M] (Intel Corporation) MD5=C957BF4B5D80B46C5017BF0101E6C906 -- C:\Windows\System32\DriverStore\FileRepository\iastorv.inf_37cdafa4\iaStorV.sys
< MD5 for: ISAPNP.SYS >
[2006.11.02 10:50:24 | 000,047,208 | ---- | M] (Microsoft Corporation) MD5=350FCA7E73CF65BCEF43FAE1E4E91293 -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_920a2c1f\isapnp.sys
[2008.01.21 03:23:01 | 000,049,720 | ---- | M] (Microsoft Corporation) MD5=6C70698A3E5C4376C6AB5C7C17FB0614 -- C:\Windows\System32\drivers\isapnp.sys
[2008.01.21 03:23:01 | 000,049,720 | ---- | M] (Microsoft Corporation) MD5=6C70698A3E5C4376C6AB5C7C17FB0614 -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_51b95d75\isapnp.sys
[2008.01.21 03:23:01 | 000,049,720 | ---- | M] (Microsoft Corporation) MD5=6C70698A3E5C4376C6AB5C7C17FB0614 -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_f750e484\isapnp.sys
[2008.01.21 03:23:01 | 000,049,720 | ---- | M] (Microsoft Corporation) MD5=6C70698A3E5C4376C6AB5C7C17FB0614 -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.0.6001.18000_none_ba12ed3bbeb0d97a\isapnp.sys
[2008.01.21 03:23:01 | 000,049,720 | ---- | M] (Microsoft Corporation) MD5=6C70698A3E5C4376C6AB5C7C17FB0614 -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.0.6002.18005_none_bbfe6647bbd2a4c6\isapnp.sys
< MD5 for: LSASS.EXE >
[2011.11.18 01:44:00 | 000,009,728 | ---- | M] (Microsoft Corporation) MD5=203D86EBD6D8E4C8501B222421E81506 -- C:\Windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.0.6002.22152_none_a886901f7335e2fc\lsass.exe
[2011.11.18 01:48:10 | 000,009,728 | ---- | M] (Microsoft Corporation) MD5=2D3AC5E7AC01E905F3ABD2D745FE3A9B -- C:\Windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.0.6002.22223_none_a8a80213731ca5a7\lsass.exe
[2011.11.18 01:44:01 | 000,009,728 | ---- | M] (Microsoft Corporation) MD5=3978F3540329E16C0AC3BCF677E5669F -- C:\Windows\System32\lsass.exe
[2011.11.18 01:44:01 | 000,009,728 | ---- | M] (Microsoft Corporation) MD5=3978F3540329E16C0AC3BCF677E5669F -- C:\Windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.0.6002.18051_none_a7fbf30a5a1929db\lsass.exe
[2011.11.18 07:31:41 | 000,007,680 | ---- | M] (Microsoft Corporation) MD5=59DE082968FDD257FFF0D209B9A5B460 -- C:\Windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.0.6000.16820_none_a44eb0105fb4d975\lsass.exe
[2011.11.18 01:43:58 | 000,009,728 | ---- | M] (Microsoft Corporation) MD5=6F1F23D3599EAE17734451936B7F17C6 -- C:\Windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.0.6001.22450_none_a69e1da376115b2a\lsass.exe
[2011.11.18 01:43:59 | 000,009,728 | ---- | M] (Microsoft Corporation) MD5=A911ECAC81F94ADEAFBE8E3F7873EDB0 -- C:\Windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.0.6001.18272_none_a600dfae5d0228c9\lsass.exe
[2011.11.18 07:31:41 | 000,007,680 | ---- | M] (Microsoft Corporation) MD5=AFF8A58280863629CA4FFA9E0B259F1E -- C:\Windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.0.6000.21010_none_a4e2f4e978ca9090\lsass.exe
[2011.11.18 01:44:01 | 000,007,680 | ---- | M] (Microsoft Corporation) MD5=BA9A67672E025078C77967731BCFC560 -- C:\Windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.0.6000.21067_none_a4b3e75378eccda6\lsass.exe
[2011.11.18 01:44:02 | 000,007,680 | ---- | M] (Microsoft Corporation) MD5=C731B1FE449D4E9CEA358C9D55B69BE9 -- C:\Windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.0.6000.16870_none_a418a0745fdd652a\lsass.exe
[2011.11.18 01:48:10 | 000,009,728 | ---- | M] (Microsoft Corporation) MD5=CB7E838C140B4087B2DA323F2D4523C5 -- C:\Windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.0.6001.22518_none_a6d1618975e9b345\lsass.exe
[2011.11.18 01:48:10 | 000,007,680 | ---- | M] (Microsoft Corporation) MD5=D09A5DA84B7C9CA9B02EBCD7FAE41C8D -- C:\Windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.0.6000.21125_none_a4dd285578ce285b\lsass.exe
[2008.01.21 03:24:15 | 000,009,728 | ---- | M] (Microsoft Corporation) MD5=DCF733788C7D088D814E5F80EB4B3E0F -- C:\Windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.0.6001.18000_none_a64a8ac25ccb3836\lsass.exe
[2008.01.21 03:24:15 | 000,009,728 | ---- | M] (Microsoft Corporation) MD5=DCF733788C7D088D814E5F80EB4B3E0F -- C:\Windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.0.6001.18215_none_a644c0145ccecd28\lsass.exe
[2008.01.21 03:24:15 | 000,009,728 | ---- | M] (Microsoft Corporation) MD5=DCF733788C7D088D814E5F80EB4B3E0F -- C:\Windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.0.6002.18005_none_a83603ce59ed0382\lsass.exe
[2011.11.18 07:31:40 | 000,009,728 | ---- | M] (Microsoft Corporation) MD5=F4C62B07E5BF96F1FDCA9DB393ECED22 -- C:\Windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.0.6001.22376_none_a68e7da1761c2def\lsass.exe
< MD5 for: NDIS.SYS >
[2009.04.11 07:32:49 | 000,527,848 | ---- | M] (Microsoft Corporation) MD5=1357274D1883F68300AEADD15D7BBB42 -- C:\Windows\System32\drivers\ndis.sys
[2009.04.11 07:32:49 | 000,527,848 | ---- | M] (Microsoft Corporation) MD5=1357274D1883F68300AEADD15D7BBB42 -- C:\Windows\winsxs\x86_microsoft-windows-ndis_31bf3856ad364e35_6.0.6002.18005_none_a9b2a4d31930d864\ndis.sys
[2008.01.21 03:23:50 | 000,529,464 | ---- | M] (Microsoft Corporation) MD5=9BDC71790FA08F0A0B5F10462B1BD0B1 -- C:\Windows\winsxs\x86_microsoft-windows-ndis_31bf3856ad364e35_6.0.6001.18000_none_a7c72bc71c0f0d18\ndis.sys
< MD5 for: NETLOGON.DLL >
[2009.04.11 07:28:23 | 000,592,896 | ---- | M] (Microsoft Corporation) MD5=95DAECF0FB120A7B5DA679CC54E37DDE -- C:\Windows\System32\netlogon.dll
[2009.04.11 07:28:23 | 000,592,896 | ---- | M] (Microsoft Corporation) MD5=95DAECF0FB120A7B5DA679CC54E37DDE -- C:\Windows\winsxs\x86_microsoft-windows-security-netlogon_31bf3856ad364e35_6.0.6002.18005_none_ffa3304f351bb3a3\netlogon.dll
[2008.01.21 03:24:05 | 000,592,384 | ---- | M] (Microsoft Corporation) MD5=A8EFC0B6E75B789F7FD3BA5025D4E37F -- C:\Windows\winsxs\x86_microsoft-windows-security-netlogon_31bf3856ad364e35_6.0.6001.18000_none_fdb7b74337f9e857\netlogon.dll
< MD5 for: NVRAID.SYS >
[2008.01.21 03:23:21 | 000,102,968 | ---- | M] (NVIDIA Corporation) MD5=2EDF9E7751554B42CBB60116DE727101 -- C:\Windows\System32\drivers\nvraid.sys
[2008.01.21 03:23:21 | 000,102,968 | ---- | M] (NVIDIA Corporation) MD5=2EDF9E7751554B42CBB60116DE727101 -- C:\Windows\System32\DriverStore\FileRepository\nvraid.inf_31c3d71d\nvraid.sys
[2008.01.21 03:23:21 | 000,102,968 | ---- | M] (NVIDIA Corporation) MD5=2EDF9E7751554B42CBB60116DE727101 -- C:\Windows\winsxs\x86_nvraid.inf_31bf3856ad364e35_6.0.6001.18000_none_39dac327befea467\nvraid.sys
[2006.11.02 10:50:24 | 000,088,680 | ---- | M] (NVIDIA Corporation) MD5=E69E946F80C1C31C53003BFBF50CBB7C -- C:\Windows\System32\DriverStore\FileRepository\nvraid.inf_733654ff\nvraid.sys
< MD5 for: NVSTOR.SYS >
[2006.11.02 10:50:13 | 000,040,040 | ---- | M] (NVIDIA Corporation) MD5=9E0BA19A28C498A6D323D065DB76DFFC -- C:\Windows\System32\DriverStore\FileRepository\nvraid.inf_733654ff\nvstor.sys
[2008.01.21 03:23:21 | 000,045,112 | ---- | M] (NVIDIA Corporation) MD5=ABED0C09758D1D97DB0042DBB2688177 -- C:\Windows\System32\drivers\nvstor.sys
[2008.01.21 03:23:21 | 000,045,112 | ---- | M] (NVIDIA Corporation) MD5=ABED0C09758D1D97DB0042DBB2688177 -- C:\Windows\System32\DriverStore\FileRepository\nvraid.inf_31c3d71d\nvstor.sys
[2008.01.21 03:23:21 | 000,045,112 | ---- | M] (NVIDIA Corporation) MD5=ABED0C09758D1D97DB0042DBB2688177 -- C:\Windows\winsxs\x86_nvraid.inf_31bf3856ad364e35_6.0.6001.18000_none_39dac327befea467\nvstor.sys
< MD5 for: SCECLI.DLL >
[2008.01.21 03:24:50 | 000,177,152 | ---- | M] (Microsoft Corporation) MD5=28B84EB538F7E8A0FE8B9299D591E0B9 -- C:\Windows\winsxs\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.0.6001.18000_none_380de25bd91b6f12\scecli.dll
[2009.04.11 07:28:24 | 000,177,152 | ---- | M] (Microsoft Corporation) MD5=8FC182167381E9915651267044105EE1 -- C:\Windows\System32\scecli.dll
[2009.04.11 07:28:24 | 000,177,152 | ---- | M] (Microsoft Corporation) MD5=8FC182167381E9915651267044105EE1 -- C:\Windows\winsxs\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.0.6002.18005_none_39f95b67d63d3a5e\scecli.dll
< MD5 for: SMSS.EXE >
[2008.01.21 03:23:50 | 000,064,000 | ---- | M] (Microsoft Corporation) MD5=6701DDAF68BEDE6BBEEA9D514D73A35B -- C:\Windows\winsxs\x86_microsoft-windows-smss_31bf3856ad364e35_6.0.6001.18000_none_ac3aa7fd19319fba\smss.exe
[2009.04.11 07:28:04 | 000,064,000 | ---- | M] (Microsoft Corporation) MD5=98AF15A94CD6AC37248E72E5FE789B35 -- C:\Windows\System32\smss.exe
[2009.04.11 07:28:04 | 000,064,000 | ---- | M] (Microsoft Corporation) MD5=98AF15A94CD6AC37248E72E5FE789B35 -- C:\Windows\winsxs\x86_microsoft-windows-smss_31bf3856ad364e35_6.0.6002.18005_none_ae26210916536b06\smss.exe
< MD5 for: SVCHOST.EXE >
[2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation) MD5=3794B461C45882E06856F282EEF025AF -- C:\Windows\System32\svchost.exe
[2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation) MD5=3794B461C45882E06856F282EEF025AF -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.0.6001.18000_none_b5bb59a1054dbde5\svchost.exe
< MD5 for: TCPIP.SYS >
[2009.03.22 02:52:27 | 000,891,448 | ---- | M] (Microsoft Corporation) MD5=01EC1E92595F839BEE70D439C46796E3 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22167_none_b36dd19b7fae39c7\tcpip.sys
[2009.04.11 07:33:02 | 000,897,000 | ---- | M] (Microsoft Corporation) MD5=0E6B0885C3D5E4643ED2D043DE3433D8 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.18005_none_b5098b5e63880c42\tcpip.sys
[2011.09.20 22:02:55 | 000,913,280 | ---- | M] (Microsoft Corporation) MD5=16731B631F28F63CD9F4CB60940E7DDD -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.22719_none_b58c64c97caa1c43\tcpip.sys
[2011.11.18 01:46:52 | 000,816,640 | ---- | M] (Microsoft Corporation) MD5=2512B4D1353370D6688B1AF1F5AFA1CF -- C:\Windows\winsxs\x86_microsoft-windows-tcpip_31bf3856ad364e35_6.0.6000.21108_none_6030d425ab49af00\tcpip.sys
[2011.11.18 01:46:49 | 000,900,168 | ---- | M] (Microsoft Corporation) MD5=2608E71AAD54564647D4BB984E1925AA -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22497_none_b34d67897fc6850f\tcpip.sys
[2011.11.18 01:46:52 | 000,813,568 | ---- | M] (Microsoft Corporation) MD5=300208927321066EA53761FDC98747C6 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip_31bf3856ad364e35_6.0.6000.16908_none_5fa75f38922bdbf4\tcpip.sys
[2010.06.16 16:55:58 | 000,902,032 | ---- | M] (Microsoft Corporation) MD5=6216A954ED7045B62880A92D6C9B9FC7 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22713_none_b39feb737f8937a0\tcpip.sys
[2011.11.18 01:46:50 | 000,904,776 | ---- | M] (Microsoft Corporation) MD5=65877AA1B6A7CB797488E831698973E9 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.18091_none_b4a43aea63d4a25f\tcpip.sys
[2010.06.16 17:39:32 | 000,912,776 | ---- | M] (Microsoft Corporation) MD5=6A10AFCE0B38371064BE41C1FBFD3C6B -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.22425_none_b57d8e037cb5db63\tcpip.sys
[2010.06.16 16:59:54 | 000,898,952 | ---- | M] (Microsoft Corporation) MD5=782568AB6A43160A159B6215B70BCCE9 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.18493_none_b2bfcb7c66ac7d10\tcpip.sys
[2011.09.20 22:02:55 | 000,905,088 | ---- | M] (Microsoft Corporation) MD5=814A1C66FBD4E1B310A517221F1456BF -- C:\Windows\System32\drivers\tcpip.sys
[2011.09.20 22:02:55 | 000,905,088 | ---- | M] (Microsoft Corporation) MD5=814A1C66FBD4E1B310A517221F1456BF -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.18519_none_b502c618638c7f52\tcpip.sys
[2009.03.22 02:52:27 | 000,891,448 | ---- | M] (Microsoft Corporation) MD5=82E266BEE5F0167E41C6ECFDD2A79C02 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.18063_none_b2e033a8669434a1\tcpip.sys
[2011.11.18 01:46:49 | 000,897,608 | ---- | M] (Microsoft Corporation) MD5=8A7AD2A214233F684242F289ED83EBC3 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.18311_none_b3144862666d6db3\tcpip.sys
[2010.06.16 17:04:57 | 000,905,088 | ---- | M] (Microsoft Corporation) MD5=A474879AFA4A596B3A531F3E69730DBF -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.18272_none_b4baded863c37e22\tcpip.sys
[2008.01.21 03:25:03 | 000,891,448 | ---- | M] (Microsoft Corporation) MD5=FC6E2835D667774D409C7C7021EAF9C4 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.18000_none_b31e1252666640f6\tcpip.sys
[2011.11.18 01:46:50 | 000,905,784 | ---- | M] (Microsoft Corporation) MD5=FF71856BD4CD6D4367F9FD84BE79A874 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.22200_none_b58e289d7caa2a80\tcpip.sys
< MD5 for: USERINIT.EXE >
[2008.01.21 03:24:49 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=0E135526E9785D085BCD9AEDE6FBCBF9 -- C:\Windows\System32\userinit.exe
[2008.01.21 03:24:49 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=0E135526E9785D085BCD9AEDE6FBCBF9 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.0.6001.18000_none_dc28ba15d1aff80b\userinit.exe
< MD5 for: WINLOGON.EXE >
[2009.04.11 07:28:13 | 000,314,368 | ---- | M] (Microsoft Corporation) MD5=898E7C06A350D4A1A64A9EA264D55452 -- C:\Windows\System32\winlogon.exe
[2009.04.11 07:28:13 | 000,314,368 | ---- | M] (Microsoft Corporation) MD5=898E7C06A350D4A1A64A9EA264D55452 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6002.18005_none_71ae7a22d2134741\winlogon.exe
[2008.01.21 03:24:49 | 000,314,880 | ---- | M] (Microsoft Corporation) MD5=C2610B6BDBEFC053BBDAB4F1B965CB24 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6001.18000_none_6fc30116d4f17bf5\winlogon.exe
< MD5 for: WS2_32.DLL >
[2008.01.21 03:24:48 | 000,179,200 | ---- | M] (Microsoft Corporation) MD5=B304D47D5744BA20FCB99FB8B2C07B0B -- C:\Windows\System32\ws2_32.dll
[2008.01.21 03:24:48 | 000,179,200 | ---- | M] (Microsoft Corporation) MD5=B304D47D5744BA20FCB99FB8B2C07B0B -- C:\Windows\winsxs\x86_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.0.6001.18000_none_f2b7b0c2ce5605c4\ws2_32.dll
< >
< %systemroot%*.* /U /s >
[9 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\048ca14c42a6069df3e54485f67fac38\*.tmp files -> C:\Windows\SoftwareDistribution\Download\048ca14c42a6069df3e54485f67fac38\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\403e94e4733160399d502d235c8e56a3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\403e94e4733160399d502d235c8e56a3\*.tmp -> ]
[2 C:\Windows\Temp\*.tmp files -> C:\Windows\Temp\*.tmp -> ]
< %SYSTEMDRIVE%\*.exe >
< %ALLUSERSPROFILE%\Application Data\*. >
< %ALLUSERSPROFILE%\Application Data\*.exe /s >
< %APPDATA%\*. >
[2011.11.18 01:01:59 | 000,000,000 | ---D | M] -- C:\Users\misak\AppData\Roaming\Adobe
[2011.11.17 23:56:21 | 000,000,000 | ---D | M] -- C:\Users\misak\AppData\Roaming\ATI
[2011.11.17 23:55:40 | 000,000,000 | ---D | M] -- C:\Users\misak\AppData\Roaming\hewlett-packard
[2011.11.17 23:36:48 | 000,000,000 | ---D | M] -- C:\Users\misak\AppData\Roaming\HP TCS
[2011.11.17 23:55:56 | 000,000,000 | ---D | M] -- C:\Users\misak\AppData\Roaming\Identities
[2011.11.18 12:55:55 | 000,000,000 | ---D | M] -- C:\Users\misak\AppData\Roaming\InstallShield
[2011.11.20 01:16:57 | 000,000,000 | ---D | M] -- C:\Users\misak\AppData\Roaming\IObit
[2011.11.19 05:25:36 | 000,000,000 | ---D | M] -- C:\Users\misak\AppData\Roaming\Macromedia
[2006.11.02 13:37:34 | 000,000,000 | ---D | M] -- C:\Users\misak\AppData\Roaming\Media Center Programs
[2011.11.18 13:10:54 | 000,000,000 | --SD | M] -- C:\Users\misak\AppData\Roaming\Microsoft
[2011.11.18 00:30:42 | 000,000,000 | ---D | M] -- C:\Users\misak\AppData\Roaming\Mozilla
[2011.11.19 13:13:54 | 000,000,000 | ---D | M] -- C:\Users\misak\AppData\Roaming\vlc
[2011.11.18 00:59:42 | 000,000,000 | ---D | M] -- C:\Users\misak\AppData\Roaming\WinRAR
< %APPDATA%\*.exe /s >
< %systemroot%\*. /mp /s >
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\Tasks\*.job /lockedfiles >
< %systemroot%\system32\drivers\*.sys /lockedfiles >
< %systemroot%\System32\config\*.sav >
[2008.01.21 04:14:18 | 016,846,848 | ---- | M] () -- C:\Windows\System32\config\COMPONENTS.SAV
[2008.01.21 04:14:08 | 000,106,496 | ---- | M] () -- C:\Windows\System32\config\DEFAULT.SAV
[2008.01.21 04:14:18 | 000,020,480 | ---- | M] () -- C:\Windows\System32\config\SECURITY.SAV
[2006.11.02 11:34:08 | 010,133,504 | ---- | M] () -- C:\Windows\System32\config\SOFTWARE.SAV
[2006.11.02 11:34:08 | 001,826,816 | ---- | M] () -- C:\Windows\System32\config\SYSTEM.SAV
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\system32\drivers\*.sys /3 >
< %systemroot%\system32\*.* /3 >
[2011.11.23 21:07:22 | 000,003,216 | -H-- | M] () -- C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2011.11.23 21:07:22 | 000,003,216 | -H-- | M] () -- C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2011.11.22 20:30:00 | 000,287,896 | ---- | M] () -- C:\Windows\system32\FNTCACHE.DAT
[2011.11.22 08:28:46 | 000,006,928 | ---- | M] () -- C:\Windows\system32\jupdate-1.6.0_29-b11.log
[2011.11.23 16:21:16 | 000,118,096 | ---- | M] () -- C:\Windows\system32\perfc005.dat
[2011.11.23 16:21:16 | 000,104,070 | ---- | M] () -- C:\Windows\system32\perfc009.dat
[2011.11.23 16:21:16 | 000,607,464 | ---- | M] () -- C:\Windows\system32\perfh005.dat
[2011.11.23 16:21:16 | 000,595,996 | ---- | M] () -- C:\Windows\system32\perfh009.dat
[2011.11.23 16:21:16 | 001,418,230 | ---- | M] () -- C:\Windows\system32\PerfStringBackup.INI
< %SYSTEMDRIVE%\*.exe >
< >
< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >
< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c >
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WUAUSERV
IMAGEPATH REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k netsvcs
< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c >
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\BITS
IMAGEPATH REG_EXPAND_SZ %SystemRoot%\System32\svchost.exe -k netsvcs
< >
< type c:\boot.ini >> test.txt /c >
< %SystemDrive%\PhysicalMBR.bin /md5 >
[2011.11.23 20:03:24 | 000,000,512 | ---- | M] () MD5=CC6EF895E2E4B08AE8D0AD3D207774F9 -- C:\PhysicalMBR.bin
< >
< *crack* /s >
< *keygen* /s >
< *loader* /s >
[2008.09.15 15:14:34 | 002,184,488 | ---- | M] () -- \Program Files\CyberLink\Shared files\Plugin\5.0\CES_3DLoaderFBX.dll
[2008.12.17 12:04:54 | 000,053,248 | ---- | M] () -- \Program Files\Hewlett-Packard\HP TCS\ContentDownloader.exe
[2008.12.17 11:54:34 | 000,005,974 | ---- | M] () -- \Program Files\Hewlett-Packard\HP TCS\ContentDownloader.exe.config
[2008.11.28 18:05:14 | 000,010,498 | ---- | M] () -- \Program Files\Hewlett-Packard\Media\DVD\System\KernelCtrl\ImageLoader.kc
[2008.11.28 18:05:14 | 000,010,146 | ---- | M] () -- \Program Files\Hewlett-Packard\Media\DVD\System\KernelCtrl\ImageLoader2.kc
[2008.11.28 18:05:14 | 000,003,499 | ---- | M] () -- \Program Files\Hewlett-Packard\Media\DVD\Widget\langloader.kc
[2008.11.28 18:05:14 | 000,012,438 | ---- | M] () -- \Program Files\Hewlett-Packard\Media\DVD\Widget\layoutloader.kc
[2008.11.26 17:13:00 | 000,003,124 | ---- | M] () -- \Program Files\Hewlett-Packard\Media\TV\Kernel\Partner\FLVLoader.html
[2008.11.26 17:13:00 | 000,000,974 | ---- | M] () -- \Program Files\Hewlett-Packard\Media\TV\Kernel\Partner\FLVLoader.swf
[2008.11.26 17:13:30 | 000,010,920 | ---- | M] () -- \Program Files\Hewlett-Packard\Media\TV\mm\MediaCtrl\ImageLoader.kc
[2008.11.26 17:13:36 | 000,003,536 | ---- | M] () -- \Program Files\Hewlett-Packard\Media\TV\Widget\langloader.kc
[2008.11.26 17:13:36 | 000,012,557 | ---- | M] () -- \Program Files\Hewlett-Packard\Media\TV\Widget\layoutloader.kc
[2008.12.25 13:41:58 | 002,184,488 | ---- | M] () -- \Program Files\Hewlett-Packard\TouchSmart\Media\Kernel\Dump\CES\CES_3DLoaderFBX.dll
[2008.12.25 13:42:22 | 000,010,488 | ---- | M] () -- \Program Files\Hewlett-Packard\TouchSmart\Media\System\KernelCtrl\ImageLoader.kc
[2008.12.25 13:42:22 | 000,014,928 | ---- | M] () -- \Program Files\Hewlett-Packard\TouchSmart\Media\System\KernelCtrl\ImageLoader2.kc
[2008.12.25 13:42:22 | 000,004,194 | ---- | M] () -- \Program Files\Hewlett-Packard\TouchSmart\Media\System\KernelCtrl\URLDownloader.kc
[2008.12.25 13:42:24 | 000,003,489 | ---- | M] () -- \Program Files\Hewlett-Packard\TouchSmart\Media\Widget\langloader.kc
[2008.12.25 13:42:24 | 000,012,484 | ---- | M] () -- \Program Files\Hewlett-Packard\TouchSmart\Media\Widget\layoutloader.kc
[2009.03.21 18:54:01 | 000,033,656 | R--- | M] () -- \Program Files\Norton Internet Security\Engine\16.0.0.125\HSLoader.exe
[2 \Program Files\Norton Internet Security\Engine\16.0.0.125\*.tmp files -> \Program Files\Norton Internet Security\Engine\16.0.0.125\*.tmp -> ]
[2008.09.15 15:14:34 | 002,184,488 | ---- | M] () -- \SWSetup\CyberDVD\Stage1\PDIR\ShareFiles\Share\Plugin\5.0\CES_3DLoaderFBX.dll
[2011.11.23 17:00:14 | 000,001,909 | ---- | M] () -- \Users\Public\Desktop\MP3 Downloader.lnk
[2008.01.21 03:23:37 | 000,038,400 | ---- | M] () -- \Windows\System32\dmloader.dll
[2008.08.06 15:30:04 | 000,009,622 | ---- | M] () -- \Windows\System32\Adobe\Shockwave 11\shockwave_Projector_Loader.dcr
[2008.08.06 15:35:32 | 000,009,622 | ---- | M] () -- \Windows\System32\Macromed\Shockwave 10\shockwave_Projector_Loader.dcr
[2009.03.22 02:31:03 | 000,003,402 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6001.18000_cs-cz_33426ea9fd097a15.manifest
[2009.03.22 02:31:03 | 000,027,648 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6001.18000_cs-cz_33426ea9fd097a15_winload.exe.mui_3bc5b827
[2009.03.22 02:31:03 | 000,019,968 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6001.18000_cs-cz_33426ea9fd097a15_winresume.exe.mui_ff8b5358
[2008.01.21 03:26:53 | 000,003,402 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6001.18000_en-us_7698ba05e403d673.manifest
[2008.01.21 03:26:53 | 000,026,112 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6001.18000_en-us_7698ba05e403d673_winload.exe.mui_3bc5b827
[2008.01.21 03:26:53 | 000,019,456 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6001.18000_en-us_7698ba05e403d673_winresume.exe.mui_ff8b5358
[2011.11.20 15:04:55 | 000,004,864 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6002.18005_none_5d12333e69c8ab94.manifest
[2011.11.20 15:04:55 | 000,986,600 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6002.18005_none_5d12333e69c8ab94_winload.exe_75835076
[2011.11.20 15:04:56 | 000,926,184 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6002.18005_none_5d12333e69c8ab94_winresume.exe_85cd1215
[2008.01.21 03:26:48 | 000,003,885 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.0.6001.18000_none_6b332839511be4b2.manifest
[2008.01.21 03:26:48 | 000,021,048 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.0.6001.18000_none_6b332839511be4b2_spldr.sys_98bd87a0
[2009.03.22 02:37:16 | 000,003,414 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.16646_de-de_cb9c6772f81a418b.manifest
[2009.03.22 02:37:14 | 000,003,414 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.16646_en-us_748d3d6be6f84d50.manifest
[2009.03.22 02:37:12 | 000,003,414 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.16646_es-es_74589a4fe71f3ef5.manifest
[2009.03.22 02:37:14 | 000,003,414 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.16646_fr-fr_1710104ed9f15557.manifest
[2009.03.22 02:37:12 | 000,003,414 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.16646_it-it_01380695b1233ad5.manifest
[2009.03.22 02:37:13 | 000,003,414 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.16646_ja-jp_a35d85a2a43e4cb0.manifest
[2009.03.22 02:37:17 | 000,003,414 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.16646_nl-nl_2d992eca70004957.manifest
[2009.03.22 02:37:16 | 000,003,414 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.20782_de-de_cbf6c366115bebbd.manifest
[2009.03.22 02:37:13 | 000,003,414 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.20782_en-us_74e7995f0039f782.manifest
[2009.03.22 02:37:12 | 000,003,414 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.20782_es-es_74b2f6430060e927.manifest
[2009.03.22 02:37:14 | 000,003,414 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.20782_fr-fr_176a6c41f332ff89.manifest
[2009.03.22 02:37:11 | 000,003,414 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.20782_it-it_01926288ca64e507.manifest
[2009.03.22 02:37:13 | 000,003,414 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.20782_ja-jp_a3b7e195bd7ff6e2.manifest
[2009.03.22 02:37:17 | 000,003,414 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6000.20782_nl-nl_2df38abd8941f389.manifest
[2009.03.22 02:28:50 | 000,003,402 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6001.18000_cs-cz_33426ea9fd097a15.manifest
[2008.01.21 03:21:45 | 000,003,402 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.0.6001.18000_en-us_7698ba05e403d673.manifest
[2009.03.22 02:37:16 | 000,004,858 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6000.16646_none_591b3d986f9b5725.manifest
[2009.03.22 02:37:16 | 000,004,858 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6000.20782_none_5975998b88dd0157.manifest
[2008.01.21 03:20:53 | 000,004,864 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6001.18000_none_5b26ba326ca6e048.manifest
[2009.03.22 02:37:15 | 000,004,864 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6001.18027_none_5b181c606cb0c98b.manifest
[2009.03.22 02:37:15 | 000,004,864 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6001.22125_none_5b9fb89785d036a7.manifest
[2009.04.11 00:12:44 | 000,004,864 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.0.6002.18005_none_5d12333e69c8ab94.manifest
[2006.11.02 11:13:06 | 000,003,970 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.0.6000.16386_none_68fc663d5430d3de.manifest
[2008.01.21 03:19:11 | 000,003,885 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.0.6001.18000_none_6b332839511be4b2.manifest
[2008.01.21 03:23:37 | 000,038,400 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.0.6001.18000_none_45f41bf18fa2cf5a\dmloader.dll
[2008.01.21 03:23:37 | 000,038,400 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.0.6002.18005_none_47df94fd8cc49aa6\dmloader.dll
< End of report >

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
prosim o kontrolu logu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
-
- Návštěvník
- Příspěvky: 10
- Registrován: 21 lis 2011 17:16
Re: prosim o kontrolu logu
Havet zatim nevidno, krome cerstve ziskaneho AskToolbaru. Ale toho se zbavime jednoduse
Znovu spustte OTL (jako spravce)
Do spodniho okna vlozte nasledujici text
Kliknete na Opravit
Pokud se Vas zepta na restart, souhlaste.
Po restartu se objevi novy log, ten sem dejte.
Takze ted si pockam na toto
stale neni aktualizovany Internet Explorer 

Do spodniho okna vlozte nasledujici text
Kód: Vybrat vše
:otl
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE= ... on&pf=cnnb
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE= ... on&pf=cnnb
IE - HKU\S-1-5-21-1762712237-2758434183-963774343-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://eu.ask.com/?l=dis&o=14672
IE - HKU\S-1-5-21-1762712237-2758434183-963774343-1000\..\URLSearchHook: {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
[2011.11.23 16:59:46 | 000,000,000 | ---D | M] (Ask Toolbar) -- C:\Users\misak\AppData\Roaming\Mozilla\Firefox\Profiles\bnixdkyq.default\extensions\toolbar@ask.com
[2011.05.17 13:12:44 | 000,002,333 | ---- | M] () -- C:\Users\misak\AppData\Roaming\Mozilla\Firefox\Profiles\bnixdkyq.default\searchplugins\askcom.xml
O2 - BHO: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O3 - HKLM\..\Toolbar: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [ApnUpdater] C:\Program Files\Ask.com\Updater\Updater.exe (Ask)
[2011.11.23 16:59:29 | 000,000,000 | ---D | C] -- C:\Program Files\Ask.com
[2011.11.18 01:15:07 | 000,000,000 | ---D | C] -- C:\ProgramData\IObit
[2011.11.18 01:10:31 | 000,000,000 | ---D | C] -- C:\Users\misak\AppData\Roaming\IObit
[9 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\048ca14c42a6069df3e54485f67fac38\*.tmp files -> C:\Windows\SoftwareDistribution\Download\048ca14c42a6069df3e54485f67fac38\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\403e94e4733160399d502d235c8e56a3\*.tmp files -> C:\Windows\SoftwareDistribution\Download\403e94e4733160399d502d235c8e56a3\*.tmp -> ]
[2 C:\Windows\Temp\*.tmp files -> C:\Windows\Temp\*.tmp -> ]
:files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp /s
:reg
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=-
"UpdateLBPShortCut"=-
"UpdatePSTShortCut"=-
"UpdateP2GoShortCut"=-
"UpdatePDIRShortCut"=-
"Zune Launcher"=-
:Commands
[emptytemp]
[emptyflash]
[resethosts]
[purity]
[clearallrestorepoints]
Pokud se Vas zepta na restart, souhlaste.
Po restartu se objevi novy log, ten sem dejte.

Márty84 píše:Podivejte se na tento navod http://www.viry.cz/forum/viewtopic.php?f=29&t=62878 a dejte oba logy


Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).