Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

olmarik.rf

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
lepic
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 20 úno 2009 21:39

Re: olmarik.rf

#16 Příspěvek od lepic »

combofix spustený....
pripájam konečný log...

ComboFix 12-01-23.02 - budo 24.01.2011 21:56:56.4.1 - x86
Microsoft Windows XP Professional 5.1.2600.3.1250.1.1033.18.767.302 [GMT 1:00]
Running from: c:\documents and settings\budo\Desktop\ComboFix.exe
AV: Avira Desktop *Disabled/Updated* {AD166499-45F9-482A-A743-FDD3350758C7}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\documents and settings\budo\Application Data\inst.exe
c:\documents and settings\budo\Application Data\vso_ts_preview.xml
c:\windows\system32\CF15997.exe
.
.
((((((((((((((((((((((((( Files Created from 2010-12-24 to 2011-01-24 )))))))))))))))))))))))))))))))
.
.
2012-01-22 08:40 . 2012-01-22 08:40 -------- d-----w- c:\program files\FreeTime
2012-01-22 08:23 . 2012-01-22 08:23 -------- d-----w- c:\documents and settings\budo\Application Data\avidemux
2012-01-19 18:41 . 2012-01-19 18:41 -------- d-----w- c:\documents and settings\budo\Application Data\Sammsoft
2012-01-19 18:15 . 2012-01-19 18:15 -------- d-----w- c:\documents and settings\budo\Application Data\Avira
2012-01-19 18:14 . 2012-01-21 18:01 134856 ----a-w- c:\windows\system32\drivers\avipbb.sys
2012-01-19 18:14 . 2011-09-15 22:55 36000 ----a-w- c:\windows\system32\drivers\avkmgr.sys
2012-01-19 18:14 . 2011-09-15 22:55 74640 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2012-01-19 18:14 . 2012-01-19 18:14 -------- d-----w- c:\program files\Avira
2012-01-19 18:14 . 2012-01-19 18:14 -------- d-----w- c:\documents and settings\All Users\Application Data\Avira
2012-01-19 18:07 . 2012-01-19 18:07 -------- d-----w- c:\program files\Ask.com
2012-01-19 18:07 . 2012-01-19 18:07 -------- d-----w- c:\documents and settings\budo\Local Settings\Application Data\AskToolbar
2012-01-19 18:07 . 2012-01-19 18:07 -------- d-----w- c:\documents and settings\budo\Local Settings\Application Data\APN
2012-01-19 18:07 . 2012-01-19 18:07 -------- d-----w- c:\program files\ARO 2011
2012-01-18 21:22 . 2012-01-18 21:23 -------- d-----w- c:\program files\trend micro
2012-01-18 21:22 . 2012-01-18 21:23 -------- d-----w- C:\rsit
2012-01-18 21:02 . 2012-01-18 21:02 -------- d-----w- c:\documents and settings\NetworkService\Local Settings\Application Data\ESET
2012-01-17 23:15 . 2012-01-17 23:15 -------- d-----w- c:\program files\BricsCad
2012-01-17 23:10 . 2012-01-19 21:23 -------- d-----w- c:\program files\Common Files\BricsCad
2012-01-17 22:29 . 2012-01-17 22:29 -------- d-----w- c:\documents and settings\LocalService\Local Settings\Application Data\ESET
2012-01-17 21:46 . 2012-01-17 21:46 -------- d-----w- c:\documents and settings\budo\Local Settings\Application Data\ESET
2012-01-17 19:57 . 2012-01-19 18:04 -------- d-----w- c:\program files\ESET
2012-01-17 19:53 . 2012-01-17 19:53 -------- d-----w- c:\documents and settings\budo\Application Data\ESET
2012-01-17 19:52 . 2012-01-19 18:04 -------- d-----w- c:\documents and settings\All Users\Application Data\ESET
2012-01-17 19:52 . 2009-09-02 09:20 652 ----a-w- c:\windows\FIX.reg
2012-01-17 19:52 . 2008-11-01 12:23 280 ----a-w- c:\windows\reset.reg
2012-01-09 22:48 . 2012-01-09 22:48 43992 ----a-w- c:\program files\Mozilla Firefox\mozutils.dll
2012-01-09 22:48 . 2012-01-09 22:48 479232 ----a-w- c:\program files\Mozilla Firefox\msvcm80.dll
2012-01-09 22:48 . 2012-01-09 22:48 626688 ----a-w- c:\program files\Mozilla Firefox\msvcr80.dll
2012-01-09 22:48 . 2012-01-09 22:48 548864 ----a-w- c:\program files\Mozilla Firefox\msvcp80.dll
2012-01-03 07:22 . 2012-01-03 07:22 103864 ----a-w- c:\program files\Mozilla Firefox\plugins\nppdf32.dll
2011-12-25 21:53 . 2012-01-17 19:16 -------- d-----w- c:\documents and settings\budo\Local Settings\Application Data\Linkury
2011-12-25 21:50 . 2011-12-25 21:50 -------- d-----w- c:\documents and settings\budo\Application Data\OpenCandy
2011-12-25 13:45 . 2011-12-25 13:45 -------- d-----w- c:\program files\Common Files\EasyInfo
2011-12-25 13:26 . 2011-12-26 11:19 -------- d-----w- c:\program files\EA SPORTS
2011-12-04 13:42 . 2011-12-04 13:42 -------- d-----w- c:\documents and settings\All Users\Application Data\PC Tools
2011-12-02 20:48 . 2011-08-17 13:49 138496 -c--a-w- c:\windows\system32\dllcache\afd.sys
2011-12-02 20:48 . 2011-08-17 13:49 138496 ----a-w- c:\windows\system32\drivers\afd.sys
2011-11-27 22:49 . 2011-12-04 12:18 -------- d-----w- c:\program files\SUPERAntiSpyware
2011-11-27 22:49 . 2011-11-27 22:49 -------- d-----w- c:\documents and settings\All Users\Application Data\SUPERAntiSpyware.com
2011-11-26 13:35 . 2011-11-26 13:35 -------- d-s---w- c:\documents and settings\NetworkService\UserData
2011-11-26 12:51 . 2011-11-26 12:52 -------- d-----w- c:\documents and settings\Administrator
2011-11-25 23:36 . 2011-11-25 23:36 -------- d-----w- c:\program files\NETGATE
2011-11-25 23:03 . 2011-11-25 23:03 -------- d-s---w- c:\documents and settings\LocalService\UserData
2011-11-25 22:49 . 2011-11-25 22:49 -------- d-----w- c:\documents and settings\All Users\Application Data\Simply Super Software
2011-11-25 22:07 . 2011-12-04 14:37 -------- d-sh--w- c:\documents and settings\budo\Local Settings\Application Data\63d7923a
2011-11-10 21:19 . 2012-01-09 22:48 121816 ----a-w- c:\program files\Mozilla Firefox\components\browsercomps.dll
2011-11-10 21:19 . 2012-01-09 22:48 97240 ----a-w- c:\program files\Mozilla Firefox\libEGL.dll
2011-11-10 21:19 . 2012-01-09 22:48 486360 ----a-w- c:\program files\Mozilla Firefox\libGLESv2.dll
2011-11-10 21:19 . 2012-01-09 22:48 2124760 ----a-w- c:\program files\Mozilla Firefox\mozjs.dll
2011-11-10 21:19 . 2012-01-09 22:48 15832 ----a-w- c:\program files\Mozilla Firefox\mozalloc.dll
2011-11-10 21:19 . 2012-01-09 22:48 814040 ----a-w- c:\program files\Mozilla Firefox\mozsqlite3.dll
2011-11-10 21:19 . 2011-11-05 03:20 2106216 ----a-w- c:\program files\Mozilla Firefox\D3DCompiler_43.dll
2011-11-10 21:19 . 2011-11-05 03:20 1998168 ----a-w- c:\program files\Mozilla Firefox\d3dx9_43.dll
2011-11-02 22:05 . 2011-11-02 22:05 -------- d-----w- c:\documents and settings\All Users\Application Data\vsosdk
2011-11-02 20:32 . 2012-01-17 19:13 -------- d-----w- c:\program files\VSO
2011-11-02 20:30 . 2012-01-17 19:13 47360 ----a-w- c:\documents and settings\budo\Application Data\pcouffin.sys
2011-11-02 20:30 . 2011-11-02 20:33 47360 ----a-w- c:\windows\system32\drivers\pcouffin.sys
2011-11-02 20:27 . 2012-01-17 19:13 -------- d-----w- c:\documents and settings\budo\Application Data\Vso
2011-10-10 10:09 . 2011-10-10 10:09 4550304 ----a-w- c:\program files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}\components\SkypeFfComponent.dll
2011-10-07 22:42 . 2010-12-07 12:23 25088 ----a-w- c:\windows\system32\drivers\lgandmodem.sys
2011-10-07 22:42 . 2010-12-07 12:23 20096 ----a-w- c:\windows\system32\drivers\lgandgps.sys
2011-10-07 22:42 . 2010-12-07 12:23 20736 ----a-w- c:\windows\system32\drivers\lganddiag.sys
2011-10-07 22:42 . 2010-12-07 12:22 14336 ----a-w- c:\windows\system32\drivers\lgandbus.sys
2011-10-07 22:42 . 2011-10-07 22:42 -------- d-----w- c:\program files\LG Electronics
2011-10-07 22:39 . 2011-10-07 22:39 -------- d-----w- C:\LGP690
2011-10-07 22:37 . 2011-05-10 11:37 655872 ----a-w- c:\windows\system32\msvcr90.dll
2011-10-07 22:37 . 2011-05-10 11:37 568832 ----a-w- c:\windows\system32\msvcp90.dll
2011-10-07 22:37 . 2011-05-10 11:37 224768 ----a-w- c:\windows\system32\msvcm90.dll
2011-10-07 22:37 . 2006-05-04 06:33 53248 ----a-w- c:\windows\system32\CommonDL.dll
2011-10-07 22:37 . 2011-10-07 22:38 -------- d-----w- c:\documents and settings\All Users\Application Data\LGMOBILEAX
2011-10-06 19:20 . 2011-10-06 19:20 -------- d-----w- c:\windows\Sun
2011-10-06 19:10 . 2011-10-06 19:10 -------- d-----w- c:\program files\Common Files\Java
2011-10-06 19:10 . 2011-10-03 03:06 476904 ----a-w- c:\program files\Mozilla Firefox\plugins\npdeployJava1.dll
2011-10-06 19:10 . 2011-10-03 03:06 472808 ----a-w- c:\windows\system32\deployJava1.dll
2011-10-06 19:10 . 2011-10-03 00:37 73728 ----a-w- c:\windows\system32\javacpl.cpl
2011-10-06 19:09 . 2011-10-19 21:09 -------- d-----w- c:\program files\Java
2011-10-05 02:52 . 2011-10-05 02:52 756048 ----a-w- c:\program files\Common Files\Microsoft Shared\OFFICE12\MSPTLS.DLL
2011-09-08 23:08 . 2011-09-08 23:09 -------- d-----w- c:\documents and settings\budo\Application Data\Naviextras
2011-09-08 23:06 . 2011-09-08 23:06 -------- d-----w- c:\program files\Naviextras
2011-09-08 22:46 . 2011-09-08 22:46 -------- d-----w- c:\program files\Microsoft ActiveSync
2011-05-27 06:51 . 2011-12-04 12:15 -------- d--h--w- c:\windows\system32\GroupPolicy
2011-05-27 06:51 . 2011-05-27 06:51 -------- d-----w- c:\windows\system32\winrm
2011-05-27 06:51 . 2011-05-27 06:51 -------- dc-h--w- c:\windows\$968930Uinstall_KB968930$
2011-05-18 21:21 . 2011-05-18 21:20 389120 ----a-w- c:\windows\system32\CF7699.exe
2011-05-18 20:40 . 2011-12-04 12:16 -------- d-----w- c:\program files\Microsoft Security Client
2011-05-18 20:23 . 2011-08-10 21:24 -------- d-----w- c:\documents and settings\All Users\Application Data\Skype Extras
2011-05-13 19:11 . 2011-05-13 19:11 641536 ----a-w- c:\program files\Common Files\Microsoft Shared\VC\msdia80.dll
2011-05-10 22:15 . 2011-05-10 22:15 -------- d-----w- c:\documents and settings\budo\Local Settings\Application Data\Conduit
2011-05-03 22:35 . 2011-02-23 15:04 13496 ----a-w- c:\windows\system32\drivers\SmartDefragDriver.sys
2011-05-03 22:35 . 2011-02-23 14:54 29520 ----a-w- c:\windows\system32\SmartDefragBootTime.exe
2011-05-03 22:34 . 2011-05-03 22:35 -------- d-----w- c:\documents and settings\budo\Application Data\IObit
2011-05-03 22:34 . 2011-05-03 22:35 -------- d-----w- c:\program files\IObit
2011-05-02 18:37 . 2011-05-02 18:45 -------- d-----w- c:\windows\SxsCaPendDel
2011-04-19 02:47 . 2011-04-19 02:47 670032 ----a-w- c:\program files\Common Files\Microsoft Shared\VC\msdia90.dll
2011-03-30 22:34 . 2011-03-30 23:21 -------- d-----w- C:\FORM studio
2011-03-29 01:04 . 2011-03-29 01:04 -------- d-----w- c:\documents and settings\New Folder
2011-03-26 17:17 . 2011-03-26 17:17 -------- d-----w- c:\documents and settings\budo\Application Data\Kastner software
2011-03-26 17:15 . 2011-03-26 17:15 -------- d-----w- c:\program files\KASTNER software
2011-03-26 17:15 . 2011-03-26 17:15 -------- d-----w- c:\documents and settings\All Users\Application Data\KASTNER software
2011-03-20 03:40 . 2011-03-20 03:40 1079144 ----a-w- c:\program files\Common Files\Microsoft Shared\OFFICE12\RICHED20.DLL
2011-03-16 22:17 . 2011-03-16 22:17 -------- d-----w- c:\documents and settings\budo\Local Settings\Application Data\Daňové_riaditeľstvo_SR
2011-03-16 22:12 . 2011-10-25 00:05 -------- d-----w- c:\documents and settings\budo\Local Settings\Application Data\Deployment
2011-02-19 22:03 . 2011-02-19 22:03 799568 ----a-w- c:\program files\Common Files\Microsoft Shared\VC\msdia100.dll
2011-02-16 17:00 . 2011-02-16 17:00 17370496 ----a-w- c:\program files\Common Files\Microsoft Shared\OFFICE12\MSO.DLL
2011-01-28 22:43 . 2011-01-28 22:45 -------- d-----w- c:\windows\nview
2011-01-28 22:43 . 2006-10-22 11:22 208896 ----a-w- c:\windows\system32\nvudisp.exe
2011-01-28 22:42 . 2006-10-22 14:06 208896 ----a-w- c:\windows\system32\NVUNINST.EXE
2011-01-28 22:42 . 2003-11-10 17:13 69715 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\ctor.dll
2011-01-28 22:42 . 2003-11-10 17:12 266240 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\iscript.dll
2011-01-28 22:42 . 2003-11-10 17:12 192512 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\iuser.dll
2011-01-28 22:42 . 2003-11-10 17:11 5632 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\DotNetInstaller.exe
2011-01-28 22:42 . 2005-03-21 18:04 729088 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\iKernel.dll
2011-01-28 22:42 . 2011-01-28 22:42 188548 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\iGdi.dll
2011-01-28 22:42 . 2012-01-17 23:10 311428 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\setup.dll
2011-01-28 22:41 . 2011-01-28 22:41 -------- d-----w- C:\NVIDIA
2011-01-24 20:40 . 2011-01-24 20:40 -------- d-----w- c:\windows\LastGood
2011-01-06 18:27 . 2008-04-13 23:09 5504 -c--a-w- c:\windows\system32\dllcache\mstee.sys
2011-01-06 18:27 . 2008-04-13 23:09 5504 ----a-w- c:\windows\system32\drivers\MSTEE.sys
2011-01-06 18:24 . 2012-01-17 19:47 -------- d-----w- c:\program files\V-Gear BEE
2011-01-06 18:24 . 2011-01-06 18:24 796672 ----a-w- c:\windows\GPInstall.exe
2011-01-06 18:23 . 2004-08-09 16:43 94208 ----a-w- c:\windows\amcap.exe
2010-12-26 13:32 . 2010-12-26 20:02 -------- d-----w- c:\documents and settings\budo\Local Settings\Application Data\NFS Underground 2
2010-12-26 13:26 . 2010-12-26 13:26 -------- d-----w- c:\program files\Common Files\DirectX
2010-12-26 13:12 . 2011-12-25 21:50 443448 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-12-26 13:11 . 2012-01-19 21:20 -------- d-----w- c:\documents and settings\budo\Application Data\DAEMON Tools Lite
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-11-25 21:57 . 2008-04-14 04:42 293376 ----a-w- c:\windows\system32\winsrv.dll
2011-11-23 13:25 . 2008-04-14 00:00 1859584 ----a-w- c:\windows\system32\win32k.sys
2011-11-18 12:35 . 2008-04-14 04:42 60416 ----a-w- c:\windows\system32\packager.exe
2011-11-03 15:28 . 2008-04-14 04:42 386048 ----a-w- c:\windows\system32\qdvd.dll
2011-11-03 15:28 . 2008-04-14 04:42 1292288 ----a-w- c:\windows\system32\quartz.dll
2011-11-01 20:35 . 2008-04-14 04:42 667136 ----a-w- c:\windows\system32\wininet.dll
2011-11-01 20:35 . 2008-04-14 04:41 81920 ----a-w- c:\windows\system32\ieencode.dll
2011-11-01 20:35 . 2008-04-14 04:41 61952 ----a-w- c:\windows\system32\tdc.ocx
2011-11-01 16:07 . 2008-04-14 04:42 1288704 ----a-w- c:\windows\system32\ole32.dll
2011-11-01 15:02 . 2008-04-13 23:07 369664 ----a-w- c:\windows\system32\html.iec
2011-10-28 05:31 . 2008-04-14 04:41 33280 ----a-w- c:\windows\system32\csrsrv.dll
2011-10-25 13:33 . 2008-04-13 23:57 2192768 ----a-w- c:\windows\system32\ntoskrnl.exe
2011-10-25 12:52 . 2008-04-14 00:01 2069376 ----a-w- c:\windows\system32\ntkrnlpa.exe
2011-10-18 11:13 . 2008-04-14 04:41 186880 ----a-w- c:\windows\system32\encdec.dll
2011-10-14 14:47 . 2008-04-14 04:42 176128 ----a-w- c:\windows\system32\winmm.dll
2011-10-14 14:47 . 2008-04-14 04:41 23040 ----a-w- c:\windows\system32\mciseq.dll
2011-10-10 14:22 . 2010-06-05 23:13 692736 ----a-w- c:\windows\system32\inetcomm.dll
2011-09-28 07:06 . 2008-04-14 04:41 599040 ----a-w- c:\windows\system32\crypt32.dll
2011-09-26 09:41 . 2008-07-29 18:59 611328 ----a-w- c:\windows\system32\uiautomationcore.dll
2011-09-26 09:41 . 2001-08-23 11:00 220160 ----a-w- c:\windows\system32\oleacc.dll
2011-09-26 09:41 . 2001-08-23 11:00 20480 ----a-w- c:\windows\system32\oleaccrc.dll
2011-08-12 11:51 . 2010-06-05 23:28 26488 ----a-w- c:\windows\system32\spupdsvc.exe
2011-07-15 13:29 . 2008-04-13 23:47 456320 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2011-07-08 14:02 . 2008-04-13 23:27 10496 ----a-w- c:\windows\system32\drivers\ndistapi.sys
2011-06-24 14:10 . 2010-06-05 23:11 139656 ----a-w- c:\windows\system32\drivers\rdpwd.sys
2011-06-11 00:58 . 2011-06-11 00:58 36176 ----a-w- c:\windows\system32\mfc100cht.dll
2011-06-11 00:58 . 2011-06-11 00:58 36176 ----a-w- c:\windows\system32\mfc100chs.dll
2011-04-29 17:25 . 2008-04-14 04:42 151552 ----a-w- c:\windows\system32\schannel.dll
2011-04-21 13:37 . 2008-04-13 23:47 105472 ----a-w- c:\windows\system32\drivers\mup.sys
2011-03-11 14:10 . 2008-04-14 04:41 471552 ----a-w- c:\windows\apppatch\aclayers.dll
2011-03-04 06:45 . 2008-04-14 04:42 434176 ----a-w- c:\windows\system32\vbscript.dll
2011-02-17 13:18 . 2008-04-13 23:45 357888 ----a-w- c:\windows\system32\drivers\srv.sys
2011-02-17 12:32 . 2010-06-05 23:30 5120 ----a-w- c:\windows\system32\xpsp4res.dll
2011-02-15 12:56 . 2008-04-14 04:39 290432 ----a-w- c:\windows\system32\atmfd.dll
2011-02-09 13:53 . 2008-04-14 04:42 270848 ----a-w- c:\windows\system32\sbe.dll
2011-02-08 13:33 . 2008-04-14 04:41 978944 ----a-w- c:\windows\system32\mfc42.dll
2011-02-08 13:33 . 2007-04-03 07:44 974848 ----a-w- c:\windows\system32\mfc42u.dll
2011-02-02 07:58 . 2010-06-05 23:11 2067456 ----a-w- c:\windows\system32\mstscax.dll
2011-01-27 11:57 . 2010-06-05 23:11 677888 ----a-w- c:\windows\system32\mstsc.exe
2011-01-21 14:44 . 2008-04-14 04:42 439296 ----a-w- c:\windows\system32\shimgvw.dll
2010-12-22 12:34 . 2008-04-14 04:41 301568 ----a-w- c:\windows\system32\kerberos.dll
2010-12-20 17:32 . 2008-04-14 04:42 551936 ----a-w- c:\windows\system32\oleaut32.dll
2010-12-20 17:26 . 2008-04-14 04:41 730112 ----a-w- c:\windows\system32\lsasrv.dll
2010-12-09 15:15 . 2008-04-14 04:41 718336 ----a-w- c:\windows\system32\ntdll.dll
2010-11-18 18:12 . 2010-06-05 23:13 81920 ----a-w- c:\windows\system32\isign32.dll
2010-11-09 14:52 . 2008-04-14 04:42 249856 ----a-w- c:\windows\system32\odbc32.dll
2010-11-02 15:17 . 2008-04-13 23:27 40960 ----a-w- c:\windows\system32\drivers\ndproxy.sys
2012-01-09 22:48 . 2011-11-10 21:19 121816 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((( SnapShot_2011-04-02_02.54.37 )))))))))))))))))))))))))))))))))))))))))
.
+ 2011-01-24 20:39 . 2011-01-24 20:39 16384 c:\windows\temp\Perflib_Perfdata_708.dat
+ 2011-06-11 00:58 . 2011-06-11 00:58 51024 c:\windows\system32\vcomp100.dll
+ 2001-08-23 11:00 . 2012-01-03 23:33 67740 c:\windows\system32\perfc009.dat
+ 2011-06-11 00:58 . 2011-06-11 00:58 81744 c:\windows\system32\mfcm100u.dll
+ 2011-06-11 00:58 . 2011-06-11 00:58 81744 c:\windows\system32\mfcm100.dll
+ 2011-06-11 00:58 . 2011-06-11 00:58 60752 c:\windows\system32\mfc100rus.dll
+ 2011-06-11 00:58 . 2011-06-11 00:58 43344 c:\windows\system32\mfc100kor.dll
+ 2011-06-11 00:58 . 2011-06-11 00:58 43856 c:\windows\system32\mfc100jpn.dll
+ 2011-06-11 00:58 . 2011-06-11 00:58 62288 c:\windows\system32\mfc100ita.dll
+ 2011-06-11 00:58 . 2011-06-11 00:58 64336 c:\windows\system32\mfc100fra.dll
+ 2011-06-11 00:58 . 2011-06-11 00:58 63824 c:\windows\system32\mfc100esn.dll
+ 2011-06-11 00:58 . 2011-06-11 00:58 55120 c:\windows\system32\mfc100enu.dll
+ 2011-06-11 00:58 . 2011-06-11 00:58 64336 c:\windows\system32\mfc100deu.dll
+ 2012-01-19 18:14 . 2010-06-17 14:14 28520 c:\windows\system32\drivers\ssmdrv.sys
+ 2008-04-14 04:42 . 2011-11-18 12:35 60416 c:\windows\system32\dllcache\packager.exe
+ 2008-04-14 04:41 . 2011-10-14 14:47 23040 c:\windows\system32\dllcache\mciseq.dll
- 2008-04-14 04:41 . 2008-04-14 04:41 23040 c:\windows\system32\dllcache\mciseq.dll
+ 2008-04-13 23:10 . 2008-04-13 23:10 96512 c:\windows\system32\dllcache\atapi.sys
+ 2011-12-25 02:49 . 2011-12-25 02:49 31504 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_wp.exe
+ 2010-07-13 21:52 . 2012-01-12 09:29 35088 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\oisicon.exe
- 2010-07-13 21:52 . 2011-12-24 16:16 35088 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\oisicon.exe
+ 2010-07-13 21:52 . 2012-01-12 09:29 18704 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\mspicons.exe
- 2010-07-13 21:52 . 2011-12-24 16:16 18704 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\mspicons.exe
- 2010-07-13 21:52 . 2011-12-24 16:16 20240 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\cagicon.exe
+ 2010-07-13 21:52 . 2012-01-12 09:29 20240 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\cagicon.exe
+ 2012-01-05 23:09 . 2012-01-05 23:09 36864 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\750de53f30e516eb2c62de9bab7954e9\System.Web.DynamicData.Design.ni.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 77824 c:\windows\assembly\GAC_MSIL\System.Web.RegularExpressions\2.0.0.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
+ 2012-01-03 23:31 . 2012-01-03 23:31 77824 c:\windows\assembly\GAC_MSIL\System.Web.RegularExpressions\2.0.0.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 81920 c:\windows\assembly\GAC_MSIL\System.Drawing.Design\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
+ 2012-01-03 23:31 . 2012-01-03 23:31 81920 c:\windows\assembly\GAC_MSIL\System.Drawing.Design\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
+ 2012-01-03 23:32 . 2012-01-03 23:32 81920 c:\windows\assembly\GAC_MSIL\System.Configuration.Install\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 81920 c:\windows\assembly\GAC_MSIL\System.Configuration.Install\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 32768 c:\windows\assembly\GAC_MSIL\Microsoft.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
+ 2012-01-03 23:31 . 2012-01-03 23:31 32768 c:\windows\assembly\GAC_MSIL\Microsoft.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
+ 2012-01-03 23:32 . 2012-01-03 23:32 12800 c:\windows\assembly\GAC_MSIL\Microsoft.Vsa.Vb.CodeDOMProcessor\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 12800 c:\windows\assembly\GAC_MSIL\Microsoft.Vsa.Vb.CodeDOMProcessor\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
+ 2012-01-03 23:32 . 2012-01-03 23:32 28672 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 28672 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 77824 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Utilities\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.dll
+ 2012-01-03 23:32 . 2012-01-03 23:32 77824 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Utilities\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.dll
+ 2012-01-03 23:32 . 2012-01-03 23:32 36864 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Framework\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 36864 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Framework\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 77824 c:\windows\assembly\GAC_MSIL\IEHost\2.0.0.0__b03f5f7f11d50a3a\IEHost.dll
+ 2012-01-03 23:32 . 2012-01-03 23:32 77824 c:\windows\assembly\GAC_MSIL\IEHost\2.0.0.0__b03f5f7f11d50a3a\IEHost.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 13312 c:\windows\assembly\GAC_MSIL\cscompmgd\8.0.0.0__b03f5f7f11d50a3a\cscompmgd.dll
+ 2012-01-03 23:32 . 2012-01-03 23:32 13312 c:\windows\assembly\GAC_MSIL\cscompmgd\8.0.0.0__b03f5f7f11d50a3a\cscompmgd.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 10752 c:\windows\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
+ 2012-01-03 23:32 . 2012-01-03 23:32 10752 c:\windows\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 72192 c:\windows\assembly\GAC_32\ISymWrapper\2.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
+ 2012-01-03 23:32 . 2012-01-03 23:32 72192 c:\windows\assembly\GAC_32\ISymWrapper\2.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 69120 c:\windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
+ 2011-10-13 20:02 . 2012-01-03 23:32 69120 c:\windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 8192 c:\windows\WinSxS\MSIL_IEExecRemote_b03f5f7f11d50a3a_2.0.0.0_x-ww_6e57c34e\IEExecRemote.dll
+ 2012-01-03 23:32 . 2012-01-03 23:32 8192 c:\windows\WinSxS\MSIL_IEExecRemote_b03f5f7f11d50a3a_2.0.0.0_x-ww_6e57c34e\IEExecRemote.dll
+ 2012-01-03 23:32 . 2012-01-03 23:32 7168 c:\windows\assembly\GAC_MSIL\Microsoft_VsaVb\8.0.0.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 7168 c:\windows\assembly\GAC_MSIL\Microsoft_VsaVb\8.0.0.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 5632 c:\windows\assembly\GAC_MSIL\Microsoft.VisualC\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
+ 2012-01-03 23:32 . 2012-01-03 23:32 5632 c:\windows\assembly\GAC_MSIL\Microsoft.VisualC\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
+ 2012-01-03 23:32 . 2012-01-03 23:32 6656 c:\windows\assembly\GAC_MSIL\IIEHost\2.0.0.0__b03f5f7f11d50a3a\IIEHost.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 6656 c:\windows\assembly\GAC_MSIL\IIEHost\2.0.0.0__b03f5f7f11d50a3a\IIEHost.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 8192 c:\windows\assembly\GAC_MSIL\IEExecRemote\2.0.0.0__b03f5f7f11d50a3a\IEExecRemote.dll
+ 2012-01-03 23:32 . 2012-01-03 23:32 8192 c:\windows\assembly\GAC_MSIL\IEExecRemote\2.0.0.0__b03f5f7f11d50a3a\IEExecRemote.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 113664 c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.Wrapper.dll
+ 2012-01-03 23:32 . 2012-01-03 23:32 113664 c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.Wrapper.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 258048 c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.dll
+ 2012-01-03 23:32 . 2012-01-03 23:32 258048 c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.dll
+ 2012-01-22 08:44 . 2002-12-06 06:02 272896 c:\windows\system32\pncrt.dll
+ 2001-08-23 11:00 . 2012-01-03 23:33 432784 c:\windows\system32\perfh009.dat
+ 2011-06-11 00:58 . 2011-06-11 00:58 773968 c:\windows\system32\msvcr100.dll
+ 2011-06-11 00:58 . 2011-06-11 00:58 421200 c:\windows\system32\msvcp100.dll
- 2008-04-14 04:42 . 2011-06-20 17:44 293376 c:\windows\system32\dllcache\winsrv.dll
+ 2008-04-14 04:42 . 2011-11-25 21:57 293376 c:\windows\system32\dllcache\winsrv.dll
- 2008-04-14 04:42 . 2008-04-14 04:42 176128 c:\windows\system32\dllcache\winmm.dll
+ 2008-04-14 04:42 . 2011-10-14 14:47 176128 c:\windows\system32\dllcache\winmm.dll
- 2008-04-14 04:42 . 2008-04-14 04:42 386048 c:\windows\system32\dllcache\qdvd.dll
+ 2008-04-14 04:42 . 2011-11-03 15:28 386048 c:\windows\system32\dllcache\qdvd.dll
+ 2011-06-11 00:58 . 2011-06-11 00:58 138056 c:\windows\system32\atl100.dll
+ 2011-12-25 02:49 . 2011-12-25 02:49 436496 c:\windows\Microsoft.NET\Framework\v2.0.50727\webengine.dll
+ 2011-12-25 04:40 . 2011-12-25 04:40 819200 c:\windows\Installer\42c9a.msp
+ 2012-01-19 18:13 . 2012-01-19 18:13 160768 c:\windows\Installer\4093e.msi
- 2010-07-13 21:52 . 2011-12-24 16:16 888080 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\wordicon.exe
+ 2010-07-13 21:52 . 2012-01-12 09:29 888080 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\wordicon.exe
+ 2010-07-13 21:52 . 2012-01-12 09:29 272648 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\pubs.exe
- 2010-07-13 21:52 . 2011-12-24 16:16 272648 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\pubs.exe
- 2010-07-13 21:52 . 2011-12-24 16:16 922384 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\pptico.exe
+ 2010-07-13 21:52 . 2012-01-12 09:29 922384 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\pptico.exe
- 2010-07-13 21:52 . 2011-12-24 16:16 845584 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\outicon.exe
+ 2010-07-13 21:52 . 2012-01-12 09:29 845584 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\outicon.exe
+ 2010-07-13 21:52 . 2012-01-12 09:29 217864 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\misc.exe
- 2010-07-13 21:52 . 2011-12-24 16:16 217864 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\misc.exe
- 2010-07-13 21:52 . 2011-12-24 16:16 184080 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\joticon.exe
+ 2010-07-13 21:52 . 2012-01-12 09:29 184080 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\joticon.exe
+ 2010-07-13 21:52 . 2012-01-12 09:29 159504 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\inficon.exe
- 2010-07-13 21:52 . 2011-12-24 16:16 159504 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\inficon.exe
+ 2012-01-19 18:07 . 2012-01-19 18:07 102400 c:\windows\Installer\{86D4B82A-ABED-442A-BE86-96357B70F4FE}\ARPPRODUCTICON.exe
+ 2012-01-05 23:09 . 2012-01-05 23:09 129536 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Routing\0bda7bdfaf440d5dd4bc6a1dea7ffa39\System.Web.Routing.ni.dll
+ 2012-01-12 09:41 . 2012-01-12 09:41 859648 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\6e29f9faa74a48b83a13a3413b826295\System.Web.Extensions.Design.ni.dll
+ 2012-01-05 23:09 . 2012-01-05 23:09 859648 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\682fcc9f5962141e21a3560ee33572ee\System.Web.Extensions.Design.ni.dll
+ 2012-01-12 09:41 . 2012-01-12 09:41 328704 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity\be8965fe859bc53dff61579bf626858b\System.Web.Entity.ni.dll
+ 2012-01-05 23:09 . 2012-01-05 23:09 328704 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity\316c8b32ae76922e08278fc5675c7f67\System.Web.Entity.ni.dll
+ 2012-01-05 23:09 . 2012-01-05 23:09 301056 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity.D#\90dc9d07db731898037e249b5d8af0ca\System.Web.Entity.Design.ni.dll
+ 2012-01-12 09:41 . 2012-01-12 09:41 301056 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity.D#\8441b3eb247e0344fede848337ee911c\System.Web.Entity.Design.ni.dll
+ 2012-01-05 23:09 . 2012-01-05 23:09 547328 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\506619be1ab8976c034ec8b0c3a7c5df\System.Web.DynamicData.ni.dll
+ 2012-01-12 09:41 . 2012-01-12 09:41 547328 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\09c6a41f187ba483486cdb92dad714a1\System.Web.DynamicData.ni.dll
+ 2012-01-05 23:09 . 2012-01-05 23:09 141312 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Abstract#\5efb726d424b9712632eff749411fa89\System.Web.Abstractions.ni.dll
+ 2012-01-05 23:08 . 2012-01-05 23:08 756736 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity.#\f374e8e7849a72d1470b4a6a0771a137\System.Data.Entity.Design.ni.dll
+ 2012-01-05 23:07 . 2012-01-05 23:07 320512 c:\windows\assembly\NativeImages_v2.0.50727_32\ServiceModelReg\439732479756e0f6df88d29e50a402bf\ServiceModelReg.ni.exe
+ 2012-01-03 23:53 . 2012-01-03 23:53 842240 c:\windows\assembly\NativeImages_v2.0.50727_32\AspNetMMCExt\bfcea15c95909860c4f4ac19bd7a2d6c\AspNetMMCExt.ni.dll
+ 2012-01-03 23:31 . 2012-01-03 23:31 839680 c:\windows\assembly\GAC_MSIL\System.Web.Services\2.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 839680 c:\windows\assembly\GAC_MSIL\System.Web.Services\2.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
+ 2012-01-03 23:31 . 2012-01-03 23:31 835584 c:\windows\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 835584 c:\windows\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
+ 2012-01-03 23:33 . 2012-01-03 23:33 114688 c:\windows\assembly\GAC_MSIL\System.ServiceProcess\2.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 114688 c:\windows\assembly\GAC_MSIL\System.ServiceProcess\2.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 258048 c:\windows\assembly\GAC_MSIL\System.Security\2.0.0.0__b03f5f7f11d50a3a\System.Security.dll
+ 2012-01-03 23:33 . 2012-01-03 23:33 258048 c:\windows\assembly\GAC_MSIL\System.Security\2.0.0.0__b03f5f7f11d50a3a\System.Security.dll
+ 2012-01-03 23:31 . 2012-01-03 23:31 131072 c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 131072 c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
+ 2012-01-03 23:31 . 2012-01-03 23:31 303104 c:\windows\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 303104 c:\windows\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
+ 2012-01-03 23:31 . 2012-01-03 23:31 258048 c:\windows\assembly\GAC_MSIL\System.Messaging\2.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 258048 c:\windows\assembly\GAC_MSIL\System.Messaging\2.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
+ 2012-01-03 23:31 . 2012-01-03 23:31 372736 c:\windows\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 372736 c:\windows\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
+ 2012-01-03 23:33 . 2012-01-03 23:33 626688 c:\windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 626688 c:\windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 401408 c:\windows\assembly\GAC_MSIL\System.DirectoryServices\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
+ 2012-01-03 23:32 . 2012-01-03 23:32 401408 c:\windows\assembly\GAC_MSIL\System.DirectoryServices\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 188416 c:\windows\assembly\GAC_MSIL\System.DirectoryServices.Protocols\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
+ 2012-01-03 23:32 . 2012-01-03 23:32 188416 c:\windows\assembly\GAC_MSIL\System.DirectoryServices.Protocols\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
+ 2012-01-03 23:33 . 2012-01-03 23:33 970752 c:\windows\assembly\GAC_MSIL\System.Deployment\2.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 970752 c:\windows\assembly\GAC_MSIL\System.Deployment\2.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 745472 c:\windows\assembly\GAC_MSIL\System.Data.SqlXml\2.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
+ 2012-01-03 23:33 . 2012-01-03 23:33 745472 c:\windows\assembly\GAC_MSIL\System.Data.SqlXml\2.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
+ 2012-01-03 23:33 . 2012-01-03 23:33 425984 c:\windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 425984 c:\windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 110592 c:\windows\assembly\GAC_MSIL\sysglobl\2.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
+ 2012-01-03 23:32 . 2012-01-03 23:32 110592 c:\windows\assembly\GAC_MSIL\sysglobl\2.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
+ 2012-01-03 23:32 . 2012-01-03 23:32 659456 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 659456 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 372736 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
+ 2012-01-03 23:31 . 2012-01-03 23:31 372736 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 110592 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
+ 2012-01-03 23:32 . 2012-01-03 23:32 110592 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 749568 c:\windows\assembly\GAC_MSIL\Microsoft.JScript\8.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
+ 2012-01-03 23:31 . 2012-01-03 23:31 749568 c:\windows\assembly\GAC_MSIL\Microsoft.JScript\8.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 655360 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Tasks\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Tasks.dll
+ 2012-01-03 23:32 . 2012-01-03 23:32 655360 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Tasks\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Tasks.dll
+ 2012-01-03 23:32 . 2012-01-03 23:32 348160 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Engine\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Engine.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 348160 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Engine\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Engine.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 507904 c:\windows\assembly\GAC_MSIL\AspNetMMCExt\2.0.0.0__b03f5f7f11d50a3a\AspNetMMCExt.dll
+ 2012-01-03 23:31 . 2012-01-03 23:31 507904 c:\windows\assembly\GAC_MSIL\AspNetMMCExt\2.0.0.0__b03f5f7f11d50a3a\AspNetMMCExt.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 261632 c:\windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
+ 2011-10-13 20:02 . 2012-01-03 23:31 261632 c:\windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 113664 c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
+ 2012-01-03 23:32 . 2012-01-03 23:32 113664 c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 258048 c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
+ 2012-01-03 23:32 . 2012-01-03 23:32 258048 c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 486400 c:\windows\assembly\GAC_32\System.Data.OracleClient\2.0.0.0__b77a5c561934e089\System.Data.OracleClient.dll
+ 2012-01-03 23:31 . 2012-01-03 23:31 486400 c:\windows\assembly\GAC_32\System.Data.OracleClient\2.0.0.0__b77a5c561934e089\System.Data.OracleClient.dll
+ 2011-06-11 00:58 . 2011-06-11 00:58 4422992 c:\windows\system32\mfc100u.dll
+ 2011-06-11 00:58 . 2011-06-11 00:58 4397384 c:\windows\system32\mfc100.dll
+ 2008-04-14 04:42 . 2011-11-03 15:28 1292288 c:\windows\system32\dllcache\quartz.dll
+ 2011-12-25 02:50 . 2011-12-25 02:50 5246976 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Web.dll
+ 2011-12-08 18:24 . 2011-12-08 18:24 4989952 c:\windows\Installer\42c92.msp
+ 2012-01-19 18:07 . 2012-01-19 18:07 2095616 c:\windows\Installer\40938.msi
+ 2011-12-26 07:59 . 2011-12-26 07:59 4368896 c:\windows\Installer\2e0cc.msp
+ 2011-06-28 20:27 . 2011-06-28 20:27 4028928 c:\windows\Installer\21c8d.msp
+ 2012-01-12 20:45 . 2012-01-12 20:45 3954688 c:\windows\Installer\140320.msi
+ 2010-07-13 21:52 . 2012-01-12 09:29 1172240 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\xlicons.exe
- 2010-07-13 21:52 . 2011-12-24 16:16 1172240 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\xlicons.exe
+ 2010-07-13 21:52 . 2012-01-12 09:29 1165584 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\accicons.exe
- 2010-07-13 21:52 . 2011-12-24 16:16 1165584 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\accicons.exe
+ 2012-01-05 23:10 . 2012-01-05 23:10 1356288 c:\windows\assembly\NativeImages_v2.0.50727_32\System.WorkflowServ#\05c29118462056cf810df0b6aa660d05\System.WorkflowServices.ni.dll
+ 2012-01-05 23:10 . 2012-01-05 23:10 1908224 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Run#\26b3258c559dc0ab6bdce481ffd458b3\System.Workflow.Runtime.ni.dll
+ 2012-01-05 23:10 . 2012-01-05 23:10 4514304 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Com#\1642d1b72cd84caf24cbe7c5e8fd8368\System.Workflow.ComponentModel.ni.dll
+ 2012-01-05 23:10 . 2012-01-05 23:10 2992640 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Act#\32ce12c3c2049f2df94c44c94b052e16\System.Workflow.Activities.ni.dll
+ 2012-01-05 23:10 . 2012-01-05 23:10 1840640 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Services\f63ae1310e004777e880f28377bcddd2\System.Web.Services.ni.dll
+ 2012-01-05 23:10 . 2012-01-05 23:10 2209280 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Mobile\c99b02434e71ca9898bebbc08d63e885\System.Web.Mobile.ni.dll
+ 2012-01-12 09:41 . 2012-01-12 09:41 2405888 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\c8f78b9e94857fdf6c2a378dd1629ee0\System.Web.Extensions.ni.dll
+ 2012-01-05 23:09 . 2012-01-05 23:09 2405376 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\8f99ddc1af0e50ac410158b243ce253d\System.Web.Extensions.ni.dll
+ 2012-01-12 09:41 . 2012-01-12 09:41 1706496 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel#\ae749b024162e9ac79110c633b5ce6be\System.ServiceModel.Web.ni.dll
+ 2012-01-05 23:09 . 2012-01-05 23:09 1706496 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel#\2fd3f0c5a40653917000e251cd3fc7bb\System.ServiceModel.Web.ni.dll
+ 2012-01-03 23:53 . 2012-01-03 23:53 1070080 c:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityModel\23eb4618c9d171be9fb551a13a475a32\System.IdentityModel.ni.dll
+ 2012-01-05 23:08 . 2012-01-05 23:08 1328128 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Services\f35064c125799df650c1a959d8fa450b\System.Data.Services.ni.dll
+ 2012-01-05 23:08 . 2012-01-05 23:08 1712128 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\a86c12788293105a0d9fda1bc90c90bc\Microsoft.VisualBasic.ni.dll
+ 2012-01-05 23:08 . 2012-01-05 23:08 1609728 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\6c46eade19e6f222f8b233ab0065d84a\Microsoft.PowerShell.Commands.Utility.ni.dll
+ 2012-01-03 23:33 . 2012-01-03 23:33 3182592 c:\windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 3182592 c:\windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 2048000 c:\windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.XML.dll
+ 2012-01-03 23:33 . 2012-01-03 23:33 2048000 c:\windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.XML.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 5025792 c:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
+ 2012-01-03 23:31 . 2012-01-03 23:31 5025792 c:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
+ 2012-01-12 09:33 . 2012-01-12 09:33 1277952 c:\windows\assembly\GAC_MSIL\System.Web.Extensions\3.5.0.0__31bf3856ad364e35\System.Web.Extensions.dll
- 2011-05-27 07:14 . 2011-05-27 07:14 1277952 c:\windows\assembly\GAC_MSIL\System.Web.Extensions\3.5.0.0__31bf3856ad364e35\System.Web.Extensions.dll
+ 2012-01-03 23:31 . 2012-01-03 23:31 5062656 c:\windows\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 5062656 c:\windows\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
+ 2012-01-03 23:31 . 2012-01-03 23:31 5246976 c:\windows\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\System.Web.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 2933248 c:\windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
+ 2011-10-13 20:02 . 2012-01-03 23:33 2933248 c:\windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
- 2011-10-13 20:02 . 2011-10-13 20:02 4550656 c:\windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
+ 2011-10-13 20:02 . 2012-01-03 23:32 4550656 c:\windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
+ 2010-06-07 20:56 . 2012-01-12 09:36 52128560 c:\windows\system32\MRT.exe
+ 2012-01-05 23:09 . 2012-01-05 23:09 11817472 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web\62e34cfb5a8b233667c7c5a47a32ad93\System.Web.ni.dll
+ 2012-01-05 23:07 . 2012-01-05 23:07 17403904 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel\2dac4fc006596760cd4988d0bfd52ff0\System.ServiceModel.ni.dll
+ 2012-01-03 23:42 . 2012-01-03 23:42 10683392 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Design\9e15d80ffb037e9171fa4bd2e0233497\System.Design.ni.dll
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
2011-08-23 20:20 1515688 ----a-w- c:\program files\Ask.com\GenericAskToolbar.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2011-08-23 1515688]
.
[HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"H/PC Connection Agent"="c:\program files\Microsoft ActiveSync\Wcescomm.exe" [2006-11-13 1289000]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2011-10-13 17351304]
"AROReminder"="c:\program files\ARO 2011\ARO.exe" [2011-11-11 2315120]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"reset"="regedit" [X]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2006-10-22 7700480]
"nwiz"="nwiz.exe" [2006-10-22 1622016]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2006-10-22 86016]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2011-06-09 254696]
"B2C_AGENT"="c:\documents and settings\All Users\Application Data\LGMOBILEAX\B2C_Client\B2CNotiAgent.exe" [2011-09-27 404568]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2012-01-03 37296]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-02 843712]
"ApnUpdater"="c:\program files\Ask.com\Updater\Updater.exe" [2011-08-23 887976]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2011-09-23 258512]
.
c:\documents and settings\All Users\Start Menu\Programs\Startup\
VideoCam Suite 2.0.lnk - c:\program files\Panasonic\VideoCam Suite 2\VideoCamSuiteAutoStart.exe [2010-12-24 185688]
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\WINDOWS\\system32\\dpnsvr.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\program files\Microsoft ActiveSync\rapimgr.exe"= c:\program files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager
"c:\program files\Microsoft ActiveSync\wcescomm.exe"= c:\program files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager
"c:\program files\Microsoft ActiveSync\WCESMgr.exe"= c:\program files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\Mozilla Firefox\\firefox.exe"=
"c:\\Documents and Settings\\budo\\Local Settings\\Application Data\\Google\\Update\\GoogleUpdate.exe"=
"c:\\Documents and Settings\\budo\\Local Settings\\Application Data\\Google\\Chrome\\Application\\chrome.exe"=
"c:\\Program Files\\Common Files\\Java\\Java Update\\jusched.exe"=
"c:\\Program Files\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe"=
"c:\\Program Files\\Java\\jre6\\bin\\javaw.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"5985:TCP"= 5985:TCP:*:Disabled:Windows Remote Management
"26675:TCP"= 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service
.
R0 SmartDefragDriver;SmartDefragDriver;c:\windows\system32\drivers\SmartDefragDriver.sys [03.05.2011 23:35 13496]
R0 sptd;sptd;\SystemRoot\\SystemRoot\System32\Drivers\sptd.sys --> \SystemRoot\\SystemRoot\System32\Drivers\sptd.sys [?]
R1 avkmgr;avkmgr;c:\windows\system32\drivers\avkmgr.sys [19.01.2012 19:14 36000]
R2 AntiVirSchedulerService;Avira Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [19.01.2012 19:14 86224]
S1 MpKsl4bfce11e;MpKsl4bfce11e;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{D71BDFE2-4411-480B-B80F-91A6835D04DC}\MpKsl4bfce11e.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{D71BDFE2-4411-480B-B80F-91A6835D04DC}\MpKsl4bfce11e.sys [?]
S1 MpKslc38e01d8;MpKslc38e01d8;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{BB2DA343-873D-41C6-B296-35AE3E37645B}\MpKslc38e01d8.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{BB2DA343-873D-41C6-B296-35AE3E37645B}\MpKslc38e01d8.sys [?]
S1 MpKsld888743e;MpKsld888743e;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{3CCBC110-988E-4331-8F0B-993985FB1EF2}\MpKsld888743e.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{3CCBC110-988E-4331-8F0B-993985FB1EF2}\MpKsld888743e.sys [?]
S1 MpKsldea0136e;MpKsldea0136e;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{BDC77CB2-9D3A-401B-A616-971503931667}\MpKsldea0136e.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{BDC77CB2-9D3A-401B-A616-971503931667}\MpKsldea0136e.sys [?]
S2 SSPORT;SSPORT;\??\c:\windows\system32\Drivers\SSPORT.sys --> c:\windows\system32\Drivers\SSPORT.sys [?]
S3 Andbus;LGE Android Platform Composite USB Device;c:\windows\system32\drivers\lgandbus.sys [07.10.2011 23:42 14336]
S3 AndDiag;LGE Android Platform USB Serial Port;c:\windows\system32\drivers\lganddiag.sys [07.10.2011 23:42 20736]
S3 AndGps;LGE Android Platform USB GPS NMEA Port;c:\windows\system32\drivers\lgandgps.sys [07.10.2011 23:42 20096]
S3 ANDModem;LGE Android Platform USB Modem;c:\windows\system32\drivers\lgandmodem.sys [07.10.2011 23:42 25088]
S3 pcouffin;VSO Software pcouffin;c:\windows\system32\drivers\pcouffin.sys [02.11.2011 21:30 47360]
S3 WinRM;Windows Remote Management (WS-Management);c:\windows\system32\svchost.exe -k WINRM [14.04.2008 05:42 14336]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
WINRM REG_MULTI_SZ WINRM
.
Contents of the 'Scheduled Tasks' folder
.
2012-01-15 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-583907252-764733703-1708537768-1003Core.job
- c:\documents and settings\budo\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2010-08-12 19:54]
.
2012-01-23 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-583907252-764733703-1708537768-1003UA.job
- c:\documents and settings\budo\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2010-08-12 19:54]
.
2012-01-23 c:\windows\Tasks\Scheduled Update for Ask Toolbar.job
- c:\program files\Ask.com\UpdateTask.exe [2011-08-23 20:20]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://search.linkury.com
uSearchAssistant = hxxp://cloud-search.linkury.com/results.htm?cx=partner-pub-7890126930977991:1926905636&cof=FORID:11&q={searchTerms}&sa=Search&siteurl=search.linkury.com
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.1.10
FF - ProfilePath - c:\documents and settings\budo\Application Data\Mozilla\Firefox\Profiles\14pb2rgf.default\
FF - prefs.js: browser.startup.homepage - hxxp://google.sk
FF - prefs.js: keyword.URL - hxxp://cloud-search.linkury.com/results.htm?cx=partner-pub-7890126930977991:7317400059&cof=FORID:11&sa=Search&siteurl=search.linkury.com&q=
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-01-24 22:04
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
Completion time: 2011-01-24 22:08:59
ComboFix-quarantined-files.txt 2011-01-24 21:08
ComboFix2.txt 2011-04-02 02:56
ComboFix3.txt 2011-12-02 21:07
.
Pre-Run: 85,915,283,456 bytes free
Post-Run: 86,000,840,704 bytes free
.
- - End Of File - - A0F86613A1968C52C14F07D4C6B6A285

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: olmarik.rf

#17 Příspěvek od motji »

Jak oto ted s pc vypadá?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

lepic
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 20 úno 2009 21:39

Re: olmarik.rf

#18 Příspěvek od lepic »

po combofixe sa pc znormalizoval a slape super. dakujem vsetkym za pomoc

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: olmarik.rf

#19 Příspěvek od motji »

Omlouvám se za zpoždění :oops:

:arrow: Pokud nemáte, přesuňte Combofix na plochu
-otevřete si Poznámkový blok
-Do něj zkopírujte text z tohoto okénka

Kód: Vybrat vše

Folder::
c:\program files\Ask.com

Registry::
[-HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= -
[-HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[-HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[-HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[-HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"reset"=-

Driver::
SSPORT

File::
c:\windows\Tasks\Scheduled Update for Ask Toolbar.job

DDS::
uStart Page = hxxp://search.linkury.com
uSearchAssistant = hxxp://cloud-search.linkury.com/results ... ORID:11&q={searchTerms}&sa=Search&siteurl=search.linkury.com
FF - prefs.js: keyword.URL - hxxp://cloud-search.linkury.com/results ... ury.com&q=



-uložte Vámi vytvořený TXT soubor jako CFScript.txt na plochu
-po uložení uchopte vámi vytvořený skript levým myšítkem a -přesuňte ho nad ikonu Combofixu, kde ho upustíte:

Obrázek


-po aplikaci na Vás vypadne další log,vložte ho sem

Upozornění : může se stát, že po aplikaci skriptu a restartu Windows nenaběhnou, v tom případě znovu restartujte a přitom mačkejte F8, pak zvolte Poslední známou funkční konfiguraci
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Odpovědět