
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Poprosil by som o radu , caste padanie win7 (blue sod)
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Poprosil by som o radu , caste padanie win7 (blue sod)
Logfile of random's system information tool 1.09 (written by random/random)
Run by stillpro at 2012-03-14 00:01:57
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 26 GB (52%) free of 50 GB
Total RAM: 4095 MB (71% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 00:02:00, on 14/03/2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files\trend micro\stillpro.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.babylon.com/?AF=100996&ba ... cb4e0088d3
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: TheBflix - {76309156-27C8-4241-BA08-220715B1E812} - C:\ProgramData\TheBflix\bhoclass.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-2616995272-1237585870-1307665432-1003\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-2616995272-1237585870-1307665432-1003\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files (x86)\PokerStars\PokerStarsUpdate.exe (file missing)
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 7624 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
winlogon.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\AUDIODG.EXE 0x260
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"taskhost.exe"
C:\Windows\Explorer.EXE
"C:\Windows\system32\Dwm.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\Skype\Phone\Skype.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe" /SILENT
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=3576.fec36a0.51529650 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll" E7CF176E110C211B -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" 3576 "\\.\pipe\gecko-crash-server-pipe.3576" plugin
"c:\program files\windows defender\MpCmdRun.exe" SpyNetService -RestrictPrivileges -AccessKey 460D243A-5CA1-1E3F-5A32-1E668DF8D5FB -Reinvoke
"C:\Windows\system32\NOTEPAD.EXE" C:\rsit\info.txt
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\stillpro\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
=========Mozilla firefox=========
ProfilePath - C:\Users\stillpro\AppData\Roaming\Mozilla\Firefox\Profiles\53vxz5j2.default
prefs.js - "browser.startup.homepage" - "http://search.babylon.com/?AF=100996&ba ... cb4e0088d3"
prefs.js - "keyword.URL" - "http://search.babylon.com/?AF=100996&ba ... e0088d3&q="
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
C:\Program Files (x86)\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
C:\Program Files (x86)\Mozilla Firefox\searchplugins\
babylon.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
C:\Users\stillpro\AppData\Roaming\Mozilla\Firefox\Profiles\53vxz5j2.default\extensions\
info@bflix.info
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-06-06 63912]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{76309156-27C8-4241-BA08-220715B1E812}]
TheBflix Class - C:\ProgramData\TheBflix\bhoclass.dll [2012-02-23 141824]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Plug-In - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-04-15 1164680]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2011-04-18 15146376]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2012-02-13 3481408]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-06-06 937920]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2012-03-14 00:00:40 ----D---- C:\rsit
2012-03-14 00:00:40 ----D---- C:\Program Files\trend micro
2012-03-13 20:47:38 ----N---- C:\bootsqm.dat
2012-03-13 20:18:10 ----A---- C:\Windows\SYSWOW64\MSVCRTD.DLL
2012-03-13 20:18:10 ----A---- C:\Windows\SYSWOW64\mfc42d.dll
2012-03-13 20:18:06 ----A---- C:\Windows\SYSWOW64\drivers\AsIO.sys
2012-03-13 20:18:06 ----A---- C:\Windows\SYSWOW64\AsIO.dll
2012-03-13 20:18:02 ----D---- C:\Program Files (x86)\ASUS
2012-03-13 20:18:02 ----A---- C:\Windows\SYSWOW64\drivers\AsInsHelp64.sys
2012-03-13 20:18:02 ----A---- C:\Windows\SYSWOW64\drivers\AsInsHelp32.sys
2012-03-13 18:09:40 ----D---- C:\Windows\system32\appmgmt
2012-03-13 17:21:41 ----D---- C:\Program Files (x86)\Adobe
2012-03-13 17:21:08 ----D---- C:\ProgramData\Adobe
2012-03-12 20:43:17 ----D---- C:\Windows\Minidump
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\wininet.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\wextract.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\url.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\occache.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\msrating.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\msls31.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\mshta.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\jscript.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\inseng.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieui.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieakui.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieaksie.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieakeng.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ie4uinit.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\icardie.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\admparse.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\wininet.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\webcheck.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\urlmon.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\url.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2012-03-09 00:15:07 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2012-03-09 00:15:07 ----A---- C:\Windows\system32\pngfilt.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\occache.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\msrating.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\msls31.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\mshtmler.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\mshtmled.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\mshtml.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\mshta.exe
2012-03-09 00:15:07 ----A---- C:\Windows\system32\msfeedssync.exe
2012-03-09 00:15:07 ----A---- C:\Windows\system32\msfeedsbs.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\licmgr10.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\jsproxy.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\jscript9.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\jscript.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\inseng.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\imgutil.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieUnatt.exe
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieui.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\iesysprep.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\iesetup.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\iertutil.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\iernonce.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\iepeers.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieframe.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\iedkcs32.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieapfltr.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieapfltr.dat
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieakui.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieaksie.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieakeng.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\IEAdvpack.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ie4uinit.exe
2012-03-09 00:15:07 ----A---- C:\Windows\system32\icardie.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\dxtrans.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\dxtmsft.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\admparse.dll
2012-03-09 00:15:06 ----A---- C:\Windows\system32\wextract.exe
2012-03-09 00:15:06 ----A---- C:\Windows\system32\vbscript.dll
2012-03-09 00:15:06 ----A---- C:\Windows\system32\msfeeds.dll
2012-03-09 00:15:06 ----A---- C:\Windows\system32\iexpress.exe
2012-03-06 13:39:21 ----D---- C:\ProgramData\Media Center Programs
2012-03-05 12:54:01 ----D---- C:\Users\stillpro\AppData\Roaming\NVIDIA
2012-03-05 12:54:00 ----D---- C:\Users\stillpro\AppData\Roaming\LOVE
2012-03-05 11:22:09 ----D---- C:\Program Files (x86)\Microsoft Works
2012-03-05 11:21:57 ----D---- C:\Program Files (x86)\Microsoft Visual Studio
2012-03-05 11:21:46 ----D---- C:\Windows\PCHEALTH
2012-03-05 11:20:21 ----D---- C:\Program Files\Microsoft Office
2012-03-05 11:20:18 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2012-03-05 11:20:00 ----D---- C:\ProgramData\Microsoft Help
2012-03-05 11:20:00 ----D---- C:\Program Files (x86)\Microsoft Office
2012-03-05 11:19:18 ----RHD---- C:\MSOCache
2012-03-05 11:16:11 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2012-03-05 11:16:07 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2012-03-05 11:15:50 ----D---- C:\Users\stillpro\AppData\Roaming\DAEMON Tools Lite
2012-03-05 11:15:48 ----D---- C:\ProgramData\DAEMON Tools Lite
2012-03-04 16:30:53 ----D---- C:\Users\stillpro\AppData\Roaming\LolClient
2012-03-04 15:02:55 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2012-03-04 15:02:55 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2012-03-04 15:02:55 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2012-03-04 15:02:55 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2012-03-04 15:02:55 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2012-03-04 15:00:18 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2012-03-03 14:38:05 ----D---- C:\Users\stillpro\AppData\Roaming\BSplayer Pro
2012-03-03 14:38:05 ----D---- C:\Users\stillpro\AppData\Roaming\BSplayer
2012-03-03 14:38:05 ----D---- C:\Program Files (x86)\Webteh
2012-03-03 14:12:15 ----D---- C:\Program Files (x86)\Pando Networks
2012-03-01 13:27:50 ----A---- C:\user.js
2012-03-01 13:27:44 ----D---- C:\Users\stillpro\AppData\Roaming\Babylon
2012-03-01 13:27:44 ----D---- C:\ProgramData\Babylon
2012-03-01 13:27:43 ----D---- C:\ProgramData\Premium
2012-03-01 13:27:39 ----D---- C:\ProgramData\TheBflix
2012-03-01 13:27:14 ----D---- C:\ProgramData\InstallMate
2012-03-01 10:10:30 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2012-03-01 10:10:30 ----A---- C:\Windows\system32\drivers\usbport.sys
2012-03-01 10:10:30 ----A---- C:\Windows\system32\drivers\usbohci.sys
2012-03-01 10:10:30 ----A---- C:\Windows\system32\drivers\usbhub.sys
2012-03-01 10:10:30 ----A---- C:\Windows\system32\drivers\usbehci.sys
2012-03-01 10:10:30 ----A---- C:\Windows\system32\drivers\usbd.sys
2012-03-01 10:10:30 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2012-03-01 10:10:28 ----A---- C:\Windows\system32\fsutil.exe
2012-03-01 10:10:28 ----A---- C:\Windows\system32\esent.dll
2012-03-01 10:10:28 ----A---- C:\Windows\system32\drivers\amdxata.sys
2012-03-01 10:10:27 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2012-03-01 10:10:27 ----A---- C:\Windows\SYSWOW64\esent.dll
2012-03-01 10:10:27 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2012-03-01 10:10:27 ----A---- C:\Windows\system32\drivers\storport.sys
2012-03-01 10:10:27 ----A---- C:\Windows\system32\drivers\nvstor.sys
2012-03-01 10:10:27 ----A---- C:\Windows\system32\drivers\nvraid.sys
2012-03-01 10:10:27 ----A---- C:\Windows\system32\drivers\ntfs.sys
2012-03-01 10:10:27 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2012-03-01 10:10:27 ----A---- C:\Windows\system32\drivers\amdsata.sys
2012-02-29 20:08:46 ----D---- C:\Windows\Panther
2012-02-29 20:08:34 ----RASH---- C:\BOOTSECT.BAK
2012-02-29 20:08:32 ----SHD---- C:\Boot
2012-02-29 16:27:27 ----D---- C:\Program Files (x86)\Lavalys
2012-02-29 13:58:24 ----D---- C:\Windows\system32\Macromed
2012-02-29 13:48:31 ----A---- C:\Windows\system32\FntCache.dll
2012-02-29 13:48:30 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2012-02-29 13:48:30 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2012-02-29 13:48:30 ----A---- C:\Windows\system32\DWrite.dll
2012-02-29 13:48:30 ----A---- C:\Windows\system32\d2d1.dll
2012-02-29 13:46:29 ----AH---- C:\ProgramData\ezsidmv.dat
2012-02-29 13:46:24 ----D---- C:\Users\stillpro\AppData\Roaming\skypePM
2012-02-29 13:46:24 ----D---- C:\ProgramData\Skype Extras
2012-02-29 13:45:46 ----D---- C:\Users\stillpro\AppData\Roaming\Skype
2012-02-29 13:45:38 ----D---- C:\Program Files (x86)\Google
2012-02-29 13:45:30 ----RD---- C:\Program Files (x86)\Skype
2012-02-29 13:45:23 ----D---- C:\ProgramData\Skype
2012-02-29 13:40:10 ----D---- C:\Program Files (x86)\Microsoft.NET
2012-02-29 13:27:56 ----A---- C:\Windows\system32\MRT.exe
2012-02-29 12:15:02 ----A---- C:\Windows\SYSWOW64\tzres.dll
2012-02-29 12:15:01 ----A---- C:\Windows\system32\tzres.dll
2012-02-29 12:14:03 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2012-02-29 12:14:03 ----A---- C:\Windows\system32\kerberos.dll
2012-02-29 12:09:05 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2012-02-29 12:09:05 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2012-02-29 12:09:05 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2012-02-29 12:09:05 ----A---- C:\Windows\system32\odbctrac.dll
2012-02-29 12:09:05 ----A---- C:\Windows\system32\odbccu32.dll
2012-02-29 12:09:05 ----A---- C:\Windows\system32\odbccr32.dll
2012-02-29 12:09:05 ----A---- C:\Windows\system32\odbccp32.dll
2012-02-29 12:09:04 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2012-02-29 12:09:04 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2012-02-29 12:09:00 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2012-02-29 12:09:00 ----A---- C:\Windows\system32\poqexec.exe
2012-02-29 12:08:53 ----A---- C:\Windows\SYSWOW64\explorer.exe
2012-02-29 12:08:53 ----A---- C:\Windows\explorer.exe
2012-02-29 12:08:51 ----A---- C:\Windows\SYSWOW64\sbe.dll
2012-02-29 12:08:51 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2012-02-29 12:08:51 ----A---- C:\Windows\system32\sbe.dll
2012-02-29 12:08:51 ----A---- C:\Windows\system32\CPFilters.dll
2012-02-29 12:08:44 ----A---- C:\Windows\SYSWOW64\quartz.dll
2012-02-29 12:08:44 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2012-02-29 12:08:44 ----A---- C:\Windows\system32\quartz.dll
2012-02-29 12:08:44 ----A---- C:\Windows\system32\qdvd.dll
2012-02-29 12:08:43 ----A---- C:\Windows\system32\shell32.dll
2012-02-29 12:08:42 ----A---- C:\Windows\SYSWOW64\shell32.dll
2012-02-29 12:08:42 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2012-02-29 12:08:42 ----A---- C:\Windows\system32\ntshrui.dll
2012-02-29 12:08:37 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2012-02-29 12:08:37 ----A---- C:\Windows\system32\tquery.dll
2012-02-29 12:08:37 ----A---- C:\Windows\system32\SearchIndexer.exe
2012-02-29 12:08:37 ----A---- C:\Windows\system32\mssrch.dll
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\tquery.dll
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\mssph.dll
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2012-02-29 12:08:36 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2012-02-29 12:08:36 ----A---- C:\Windows\system32\SearchFilterHost.exe
2012-02-29 12:08:36 ----A---- C:\Windows\system32\mssvp.dll
2012-02-29 12:08:36 ----A---- C:\Windows\system32\mssphtb.dll
2012-02-29 12:08:36 ----A---- C:\Windows\system32\mssph.dll
2012-02-29 12:08:36 ----A---- C:\Windows\system32\msscntrs.dll
2012-02-29 12:08:30 ----A---- C:\Windows\SYSWOW64\webio.dll
2012-02-29 12:08:30 ----A---- C:\Windows\SYSWOW64\schannel.dll
2012-02-29 12:08:30 ----A---- C:\Windows\system32\webio.dll
2012-02-29 12:08:30 ----A---- C:\Windows\system32\schannel.dll
2012-02-29 12:08:30 ----A---- C:\Windows\system32\lsass.exe
2012-02-29 12:08:30 ----A---- C:\Windows\system32\lsasrv.dll
2012-02-29 12:08:30 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2012-02-29 12:08:30 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2012-02-29 12:08:30 ----A---- C:\Windows\system32\drivers\cng.sys
2012-02-29 12:08:29 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2012-02-29 12:08:29 ----A---- C:\Windows\SYSWOW64\secur32.dll
2012-02-29 12:08:29 ----A---- C:\Windows\system32\sspisrv.dll
2012-02-29 12:08:29 ----A---- C:\Windows\system32\sspicli.dll
2012-02-29 12:08:29 ----A---- C:\Windows\system32\secur32.dll
2012-02-29 12:08:26 ----A---- C:\Windows\system32\csrsrv.dll
2012-02-29 12:08:21 ----A---- C:\Windows\SYSWOW64\xmllite.dll
2012-02-29 12:08:21 ----A---- C:\Windows\system32\xmllite.dll
2012-02-29 12:08:18 ----A---- C:\Windows\system32\drivers\tcpip.sys
2012-02-29 12:08:14 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2012-02-29 12:08:14 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2012-02-29 12:08:14 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2012-02-29 12:08:14 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2012-02-29 12:08:14 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2012-02-29 12:08:12 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2012-02-29 12:08:12 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2012-02-29 12:08:12 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2012-02-29 12:08:12 ----A---- C:\Windows\system32\fontsub.dll
2012-02-29 12:08:12 ----A---- C:\Windows\system32\atmlib.dll
2012-02-29 12:08:12 ----A---- C:\Windows\system32\atmfd.dll
2012-02-29 12:07:55 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2012-02-29 12:07:55 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2012-02-29 12:07:55 ----A---- C:\Windows\system32\mfc42u.dll
2012-02-29 12:07:55 ----A---- C:\Windows\system32\mfc42.dll
2012-02-29 12:07:51 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2012-02-29 12:07:51 ----A---- C:\Windows\system32\XpsPrint.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2012-02-29 12:07:46 ----A---- C:\Windows\SYSWOW64\wow32.dll
2012-02-29 12:07:46 ----A---- C:\Windows\SYSWOW64\user.exe
2012-02-29 12:07:46 ----A---- C:\Windows\SYSWOW64\setup16.exe
2012-02-29 12:07:46 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2012-02-29 12:07:46 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2012-02-29 12:07:46 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2012-02-29 12:07:46 ----A---- C:\Windows\SYSWOW64\instnm.exe
2012-02-29 12:07:46 ----A---- C:\Windows\system32\wow64win.dll
2012-02-29 12:07:46 ----A---- C:\Windows\system32\wow64cpu.dll
2012-02-29 12:07:46 ----A---- C:\Windows\system32\wow64.dll
2012-02-29 12:07:46 ----A---- C:\Windows\system32\winsrv.dll
2012-02-29 12:07:46 ----A---- C:\Windows\system32\ntvdm64.dll
2012-02-29 12:07:46 ----A---- C:\Windows\system32\KernelBase.dll
2012-02-29 12:07:46 ----A---- C:\Windows\system32\kernel32.dll
2012-02-29 12:07:46 ----A---- C:\Windows\system32\conhost.exe
2012-02-29 12:07:13 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe
2012-02-29 12:07:13 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2012-02-29 12:07:13 ----A---- C:\Windows\system32\dnsrslvr.dll
2012-02-29 12:07:13 ----A---- C:\Windows\system32\dnscacheugc.exe
2012-02-29 12:07:13 ----A---- C:\Windows\system32\dnsapi.dll
2012-02-29 12:06:43 ----A---- C:\Windows\system32\win32k.sys
2012-02-29 12:06:39 ----A---- C:\Windows\system32\winresume.exe
2012-02-29 12:06:39 ----A---- C:\Windows\system32\winload.exe
2012-02-29 12:06:39 ----A---- C:\Windows\system32\kdusb.dll
2012-02-29 12:06:39 ----A---- C:\Windows\system32\kdcom.dll
2012-02-29 12:06:39 ----A---- C:\Windows\system32\kd1394.dll
2012-02-29 12:06:35 ----A---- C:\Windows\system32\drivers\srvnet.sys
2012-02-29 12:06:35 ----A---- C:\Windows\system32\drivers\srv2.sys
2012-02-29 12:06:35 ----A---- C:\Windows\system32\drivers\srv.sys
2012-02-29 12:06:27 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2012-02-29 12:06:27 ----A---- C:\Windows\system32\d3d10_1.dll
2012-02-29 12:06:26 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2012-02-29 12:06:25 ----A---- C:\Windows\system32\drivers\afd.sys
2012-02-29 12:06:24 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2012-02-29 12:06:24 ----A---- C:\Windows\system32\psisdecd.dll
2012-02-29 12:06:20 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2012-02-29 12:06:20 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2012-02-29 12:06:20 ----A---- C:\Windows\SYSWOW64\devobj.dll
2012-02-29 12:06:20 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2012-02-29 12:06:20 ----A---- C:\Windows\system32\umpnpmgr.dll
2012-02-29 12:06:20 ----A---- C:\Windows\system32\FXSCOVER.exe
2012-02-29 12:04:25 ----D---- C:\Windows\SYSWOW64\drivers\sk-SK
2012-02-29 12:04:23 ----D---- C:\Windows\sk-SK
2012-02-29 12:04:21 ----D---- C:\Windows\system32\drivers\sk-SK
2012-02-29 11:58:33 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2012-02-29 11:58:33 ----A---- C:\Windows\SYSWOW64\packager.dll
2012-02-29 11:58:33 ----A---- C:\Windows\system32\prevhost.exe
2012-02-29 11:58:33 ----A---- C:\Windows\system32\packager.dll
2012-02-29 11:57:55 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2012-02-29 11:57:54 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2012-02-29 11:57:54 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-02-29 11:57:18 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2012-02-29 11:57:18 ----A---- C:\Windows\system32\EncDec.dll
2012-02-29 11:56:54 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2012-02-29 11:56:54 ----A---- C:\Windows\system32\msvcrt.dll
2012-02-29 11:56:53 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2012-02-29 11:56:53 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2012-02-29 11:56:53 ----A---- C:\Windows\system32\ntdll.dll
2012-02-29 11:56:53 ----A---- C:\Windows\system32\inetcomm.dll
2012-02-29 11:56:52 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2012-02-29 11:56:52 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2012-02-29 11:56:52 ----A---- C:\Windows\system32\oleaut32.dll
2012-02-29 11:56:52 ----A---- C:\Windows\system32\oleacc.dll
2012-02-29 11:56:51 ----A---- C:\Windows\system32\drivers\bowser.sys
2012-02-29 11:43:18 ----D---- C:\ProgramData\NVIDIA
2012-02-29 11:43:06 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2012-02-29 11:43:03 ----SHD---- C:\Windows\Installer
2012-02-29 11:42:48 ----A---- C:\Windows\system32\nvvsvc.exe
2012-02-29 11:42:48 ----A---- C:\Windows\system32\nvsvc64.dll
2012-02-29 11:42:48 ----A---- C:\Windows\system32\nvshext.dll
2012-02-29 11:42:48 ----A---- C:\Windows\system32\nvmctray.dll
2012-02-29 11:42:48 ----A---- C:\Windows\system32\nvcpl.dll
2012-02-29 11:42:38 ----D---- C:\ProgramData\NVIDIA Corporation
2012-02-29 11:42:24 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2012-02-29 11:42:24 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2012-02-29 11:42:24 ----A---- C:\Windows\system32\OpenCL.dll
2012-02-29 11:42:24 ----A---- C:\Windows\system32\nvwgf2umx.dll
2012-02-29 11:42:24 ----A---- C:\Windows\system32\nvoglv64.dll
2012-02-29 11:42:24 ----A---- C:\Windows\system32\nvhdap64.dll
2012-02-29 11:42:24 ----A---- C:\Windows\system32\nvhdagenco6420103.dll
2012-02-29 11:42:24 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2012-02-29 11:42:23 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2012-02-29 11:42:23 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2012-02-29 11:42:23 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2012-02-29 11:42:23 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2012-02-29 11:42:23 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2012-02-29 11:42:23 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2012-02-29 11:42:23 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2012-02-29 11:42:23 ----A---- C:\Windows\system32\nvgenco64.dll
2012-02-29 11:42:23 ----A---- C:\Windows\system32\nvdispco64.dll
2012-02-29 11:42:23 ----A---- C:\Windows\system32\nvd3dumx.dll
2012-02-29 11:42:23 ----A---- C:\Windows\system32\nvcuvid.dll
2012-02-29 11:42:23 ----A---- C:\Windows\system32\nvcuvenc.dll
2012-02-29 11:42:23 ----A---- C:\Windows\system32\nvcuda.dll
2012-02-29 11:42:23 ----A---- C:\Windows\system32\nvcompiler.dll
2012-02-29 11:42:23 ----A---- C:\Windows\system32\nvapi64.dll
2012-02-29 11:42:23 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2012-02-29 11:42:11 ----D---- C:\Program Files\NVIDIA Corporation
2012-02-29 11:41:54 ----D---- C:\NVIDIA
2012-02-29 11:20:20 ----D---- C:\Users\stillpro\AppData\Roaming\Macromedia
2012-02-29 11:20:20 ----D---- C:\Users\stillpro\AppData\Roaming\Adobe
2012-02-29 11:20:17 ----D---- C:\Windows\SYSWOW64\Macromed
2012-02-29 11:19:17 ----D---- C:\Users\stillpro\AppData\Roaming\Mozilla
2012-02-29 11:19:14 ----D---- C:\Program Files (x86)\Mozilla Firefox
2012-02-29 11:17:50 ----D---- C:\Users\stillpro\AppData\Roaming\Identities
2012-02-29 11:17:35 ----SD---- C:\Users\stillpro\AppData\Roaming\Microsoft
2012-02-29 11:17:35 ----D---- C:\Users\stillpro\AppData\Roaming\Media Center Programs
2012-02-29 11:16:30 ----D---- C:\Windows\SYSWOW64\Wat
2012-02-29 11:16:30 ----D---- C:\Windows\system32\Wat
2012-02-29 11:15:24 ----SHD---- C:\Recovery
2012-02-29 11:15:21 ----D---- C:\Windows\SoftwareDistribution
2012-02-29 11:10:02 ----D---- C:\Windows\Prefetch
2012-02-29 11:09:34 ----ASH---- C:\pagefile.sys
2012-02-29 11:09:33 ----ASH---- C:\hiberfil.sys
2012-02-29 11:09:32 ----SHD---- C:\System Volume Information
2012-02-16 16:37:48 ----A---- C:\settings.ini
======List of files/folders modified in the last 1 month======
2012-03-14 00:01:54 ----D---- C:\Windows\Temp
2012-03-14 00:00:40 ----RD---- C:\Program Files
2012-03-13 23:51:52 ----D---- C:\Windows\System32
2012-03-13 23:51:52 ----D---- C:\Windows\inf
2012-03-13 23:51:52 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-03-13 23:46:14 ----D---- C:\Windows
2012-03-13 23:31:00 ----D---- C:\Windows\system32\LogFiles
2012-03-13 23:18:08 ----D---- C:\Windows\system32\config
2012-03-13 21:10:42 ----D---- C:\Windows\Tasks
2012-03-13 21:10:42 ----D---- C:\Windows\system32\wfp
2012-03-13 21:10:41 ----D---- C:\Windows\system32\wbem
2012-03-13 21:10:38 ----D---- C:\Windows\registration
2012-03-13 20:31:15 ----D---- C:\Windows\system32\wdi
2012-03-13 20:18:10 ----D---- C:\Windows\SysWOW64
2012-03-13 20:18:09 ----D---- C:\Windows\system32\drivers
2012-03-13 20:18:08 ----D---- C:\Windows\system32\DriverStore
2012-03-13 20:18:08 ----D---- C:\Windows\system32\catroot
2012-03-13 20:18:06 ----D---- C:\Windows\SYSWOW64\drivers
2012-03-13 20:18:02 ----RD---- C:\Program Files (x86)
2012-03-13 20:17:48 ----D---- C:\Program Files (x86)\Common Files
2012-03-13 18:26:42 ----RSD---- C:\Windows\assembly
2012-03-13 18:26:42 ----D---- C:\Windows\Microsoft.NET
2012-03-13 18:09:29 ----HD---- C:\ProgramData
2012-03-13 17:21:58 ----D---- C:\Windows\winsxs
2012-03-13 12:11:48 ----D---- C:\Windows\system32\catroot2
2012-03-10 09:18:26 ----D---- C:\Windows\system32\Tasks
2012-03-09 17:19:34 ----D---- C:\Windows\rescache
2012-03-09 08:54:05 ----D---- C:\Windows\SYSWOW64\sk-SK
2012-03-09 08:54:05 ----D---- C:\Program Files\Internet Explorer
2012-03-09 08:54:05 ----D---- C:\Program Files (x86)\Internet Explorer
2012-03-09 08:54:04 ----D---- C:\Windows\system32\sk-SK
2012-03-09 08:54:03 ----D---- C:\Windows\SYSWOW64\migration
2012-03-09 08:54:03 ----D---- C:\Windows\SYSWOW64\en-US
2012-03-09 08:54:01 ----D---- C:\Windows\system32\migration
2012-03-09 08:54:01 ----D---- C:\Windows\system32\en-US
2012-03-09 08:54:01 ----D---- C:\Windows\PolicyDefinitions
2012-03-09 00:15:51 ----D---- C:\Windows\Logs
2012-03-05 11:22:01 ----D---- C:\Program Files (x86)\MSBuild
2012-03-05 11:21:56 ----D---- C:\Windows\ShellNew
2012-03-05 11:21:49 ----RSD---- C:\Windows\Fonts
2012-03-05 11:21:46 ----SD---- C:\ProgramData\Microsoft
2012-03-05 11:21:14 ----D---- C:\Program Files\Common Files\Microsoft Shared
2012-03-05 11:20:10 ----A---- C:\Windows\win.ini
2012-02-29 22:04:39 ----D---- C:\Windows\system32\drivers\UMDF
2012-02-29 20:08:18 ----D---- C:\Windows\Setup
2012-02-29 14:40:52 ----D---- C:\Windows\LiveKernelReports
2012-02-29 13:58:28 ----D---- C:\Windows\Downloaded Program Files
2012-02-29 13:33:00 ----D---- C:\Program Files\Common Files\System
2012-02-29 13:32:59 ----D---- C:\Windows\ehome
2012-02-29 13:32:58 ----D---- C:\Windows\AppPatch
2012-02-29 13:32:56 ----D---- C:\Windows\system32\Boot
2012-02-29 13:27:57 ----D---- C:\Windows\debug
2012-02-29 12:04:27 ----D---- C:\Program Files\Windows Sidebar
2012-02-29 12:04:26 ----D---- C:\Windows\SYSWOW64\migwiz
2012-02-29 12:04:26 ----D---- C:\Windows\servicing
2012-02-29 12:04:26 ----D---- C:\Program Files\Windows Photo Viewer
2012-02-29 12:04:26 ----D---- C:\Program Files\Windows Media Player
2012-02-29 12:04:26 ----D---- C:\Program Files\Windows Mail
2012-02-29 12:04:26 ----D---- C:\Program Files\Windows Journal
2012-02-29 12:04:26 ----D---- C:\Program Files\Windows Defender
2012-02-29 12:04:26 ----D---- C:\Program Files\DVD Maker
2012-02-29 12:04:26 ----D---- C:\Program Files (x86)\Windows Sidebar
2012-02-29 12:04:26 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2012-02-29 12:04:26 ----D---- C:\Program Files (x86)\Windows Media Player
2012-02-29 12:04:26 ----D---- C:\Program Files (x86)\Windows Mail
2012-02-29 12:04:26 ----D---- C:\Program Files (x86)\Windows Defender
2012-02-29 12:04:25 ----D---- C:\Windows\SYSWOW64\WCN
2012-02-29 12:04:24 ----D---- C:\Windows\SYSWOW64\wbem
2012-02-29 12:04:23 ----D---- C:\Windows\system32\sysprep
2012-02-29 12:04:23 ----D---- C:\Windows\system32\oobe
2012-02-29 12:04:23 ----D---- C:\Windows\system32\migwiz
2012-02-29 12:04:21 ----D---- C:\Windows\system32\WCN
2012-02-29 11:56:06 ----RD---- C:\Users
2012-02-29 11:42:47 ----D---- C:\Windows\Help
2012-02-29 11:27:26 ----D---- C:\Windows\system32\CodeIntegrity
2012-02-29 11:17:48 ----SHD---- C:\$Recycle.Bin
2012-02-29 11:16:40 ----A---- C:\Windows\SYSWOW64\user32.dll
2012-02-29 11:16:40 ----A---- C:\Windows\SYSWOW64\slwga.dll
2012-02-29 11:16:40 ----A---- C:\Windows\system32\user32.dll
2012-02-29 11:16:40 ----A---- C:\Windows\system32\systemcpl.dll
2012-02-29 11:16:40 ----A---- C:\Windows\system32\slwga.dll
2012-02-29 11:16:15 ----D---- C:\Windows\system32\restore
2012-02-29 11:09:58 ----D---- C:\Windows\CSC
2012-02-23 09:18:36 ----N---- C:\Windows\system32\MpSigStub.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2012-03-13 13368]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2012-03-05 283200]
R3 L1C;NDIS Miniport Driver for Atheros AR8131/AR8132 PCI-E Ethernet Controller (NDIS 6.20); C:\Windows\system32\DRIVERS\L1C62x64.sys [2009-06-10 57344]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2012-03-13 15416]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2012-01-17 188224]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-21 20992]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys [2010-11-21 88960]
S3 terminpt;Microsoft Remote Desktop Input Driver; C:\Windows\system32\drivers\terminpt.sys [2010-11-21 34816]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys [2010-11-21 117248]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2012-02-10 889664]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-02-10 2348352]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-02-09 382272]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-02-29 136176]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-02-29 136176]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-02-29 1255736]
-----------------EOF-----------------
Run by stillpro at 2012-03-14 00:01:57
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 26 GB (52%) free of 50 GB
Total RAM: 4095 MB (71% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 00:02:00, on 14/03/2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files\trend micro\stillpro.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.babylon.com/?AF=100996&ba ... cb4e0088d3
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: TheBflix - {76309156-27C8-4241-BA08-220715B1E812} - C:\ProgramData\TheBflix\bhoclass.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-2616995272-1237585870-1307665432-1003\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-2616995272-1237585870-1307665432-1003\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files (x86)\PokerStars\PokerStarsUpdate.exe (file missing)
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 7624 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
winlogon.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\AUDIODG.EXE 0x260
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"taskhost.exe"
C:\Windows\Explorer.EXE
"C:\Windows\system32\Dwm.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\Skype\Phone\Skype.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe" /SILENT
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=3576.fec36a0.51529650 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll" E7CF176E110C211B -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" 3576 "\\.\pipe\gecko-crash-server-pipe.3576" plugin
"c:\program files\windows defender\MpCmdRun.exe" SpyNetService -RestrictPrivileges -AccessKey 460D243A-5CA1-1E3F-5A32-1E668DF8D5FB -Reinvoke
"C:\Windows\system32\NOTEPAD.EXE" C:\rsit\info.txt
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\stillpro\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
=========Mozilla firefox=========
ProfilePath - C:\Users\stillpro\AppData\Roaming\Mozilla\Firefox\Profiles\53vxz5j2.default
prefs.js - "browser.startup.homepage" - "http://search.babylon.com/?AF=100996&ba ... cb4e0088d3"
prefs.js - "keyword.URL" - "http://search.babylon.com/?AF=100996&ba ... e0088d3&q="
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
C:\Program Files (x86)\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
C:\Program Files (x86)\Mozilla Firefox\searchplugins\
babylon.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
C:\Users\stillpro\AppData\Roaming\Mozilla\Firefox\Profiles\53vxz5j2.default\extensions\
info@bflix.info
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-06-06 63912]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{76309156-27C8-4241-BA08-220715B1E812}]
TheBflix Class - C:\ProgramData\TheBflix\bhoclass.dll [2012-02-23 141824]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Plug-In - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-04-15 1164680]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2011-04-18 15146376]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2012-02-13 3481408]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-06-06 937920]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2012-03-14 00:00:40 ----D---- C:\rsit
2012-03-14 00:00:40 ----D---- C:\Program Files\trend micro
2012-03-13 20:47:38 ----N---- C:\bootsqm.dat
2012-03-13 20:18:10 ----A---- C:\Windows\SYSWOW64\MSVCRTD.DLL
2012-03-13 20:18:10 ----A---- C:\Windows\SYSWOW64\mfc42d.dll
2012-03-13 20:18:06 ----A---- C:\Windows\SYSWOW64\drivers\AsIO.sys
2012-03-13 20:18:06 ----A---- C:\Windows\SYSWOW64\AsIO.dll
2012-03-13 20:18:02 ----D---- C:\Program Files (x86)\ASUS
2012-03-13 20:18:02 ----A---- C:\Windows\SYSWOW64\drivers\AsInsHelp64.sys
2012-03-13 20:18:02 ----A---- C:\Windows\SYSWOW64\drivers\AsInsHelp32.sys
2012-03-13 18:09:40 ----D---- C:\Windows\system32\appmgmt
2012-03-13 17:21:41 ----D---- C:\Program Files (x86)\Adobe
2012-03-13 17:21:08 ----D---- C:\ProgramData\Adobe
2012-03-12 20:43:17 ----D---- C:\Windows\Minidump
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\wininet.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\wextract.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\url.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\occache.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\msrating.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\msls31.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\mshta.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\jscript.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\inseng.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieui.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieakui.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieaksie.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieakeng.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ie4uinit.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\icardie.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\admparse.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\wininet.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\webcheck.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\urlmon.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\url.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2012-03-09 00:15:07 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2012-03-09 00:15:07 ----A---- C:\Windows\system32\pngfilt.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\occache.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\msrating.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\msls31.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\mshtmler.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\mshtmled.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\mshtml.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\mshta.exe
2012-03-09 00:15:07 ----A---- C:\Windows\system32\msfeedssync.exe
2012-03-09 00:15:07 ----A---- C:\Windows\system32\msfeedsbs.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\licmgr10.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\jsproxy.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\jscript9.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\jscript.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\inseng.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\imgutil.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieUnatt.exe
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieui.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\iesysprep.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\iesetup.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\iertutil.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\iernonce.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\iepeers.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieframe.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\iedkcs32.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieapfltr.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieapfltr.dat
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieakui.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieaksie.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieakeng.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\IEAdvpack.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ie4uinit.exe
2012-03-09 00:15:07 ----A---- C:\Windows\system32\icardie.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\dxtrans.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\dxtmsft.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\admparse.dll
2012-03-09 00:15:06 ----A---- C:\Windows\system32\wextract.exe
2012-03-09 00:15:06 ----A---- C:\Windows\system32\vbscript.dll
2012-03-09 00:15:06 ----A---- C:\Windows\system32\msfeeds.dll
2012-03-09 00:15:06 ----A---- C:\Windows\system32\iexpress.exe
2012-03-06 13:39:21 ----D---- C:\ProgramData\Media Center Programs
2012-03-05 12:54:01 ----D---- C:\Users\stillpro\AppData\Roaming\NVIDIA
2012-03-05 12:54:00 ----D---- C:\Users\stillpro\AppData\Roaming\LOVE
2012-03-05 11:22:09 ----D---- C:\Program Files (x86)\Microsoft Works
2012-03-05 11:21:57 ----D---- C:\Program Files (x86)\Microsoft Visual Studio
2012-03-05 11:21:46 ----D---- C:\Windows\PCHEALTH
2012-03-05 11:20:21 ----D---- C:\Program Files\Microsoft Office
2012-03-05 11:20:18 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2012-03-05 11:20:00 ----D---- C:\ProgramData\Microsoft Help
2012-03-05 11:20:00 ----D---- C:\Program Files (x86)\Microsoft Office
2012-03-05 11:19:18 ----RHD---- C:\MSOCache
2012-03-05 11:16:11 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2012-03-05 11:16:07 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2012-03-05 11:15:50 ----D---- C:\Users\stillpro\AppData\Roaming\DAEMON Tools Lite
2012-03-05 11:15:48 ----D---- C:\ProgramData\DAEMON Tools Lite
2012-03-04 16:30:53 ----D---- C:\Users\stillpro\AppData\Roaming\LolClient
2012-03-04 15:02:55 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2012-03-04 15:02:55 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2012-03-04 15:02:55 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2012-03-04 15:02:55 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2012-03-04 15:02:55 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2012-03-04 15:00:18 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2012-03-03 14:38:05 ----D---- C:\Users\stillpro\AppData\Roaming\BSplayer Pro
2012-03-03 14:38:05 ----D---- C:\Users\stillpro\AppData\Roaming\BSplayer
2012-03-03 14:38:05 ----D---- C:\Program Files (x86)\Webteh
2012-03-03 14:12:15 ----D---- C:\Program Files (x86)\Pando Networks
2012-03-01 13:27:50 ----A---- C:\user.js
2012-03-01 13:27:44 ----D---- C:\Users\stillpro\AppData\Roaming\Babylon
2012-03-01 13:27:44 ----D---- C:\ProgramData\Babylon
2012-03-01 13:27:43 ----D---- C:\ProgramData\Premium
2012-03-01 13:27:39 ----D---- C:\ProgramData\TheBflix
2012-03-01 13:27:14 ----D---- C:\ProgramData\InstallMate
2012-03-01 10:10:30 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2012-03-01 10:10:30 ----A---- C:\Windows\system32\drivers\usbport.sys
2012-03-01 10:10:30 ----A---- C:\Windows\system32\drivers\usbohci.sys
2012-03-01 10:10:30 ----A---- C:\Windows\system32\drivers\usbhub.sys
2012-03-01 10:10:30 ----A---- C:\Windows\system32\drivers\usbehci.sys
2012-03-01 10:10:30 ----A---- C:\Windows\system32\drivers\usbd.sys
2012-03-01 10:10:30 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2012-03-01 10:10:28 ----A---- C:\Windows\system32\fsutil.exe
2012-03-01 10:10:28 ----A---- C:\Windows\system32\esent.dll
2012-03-01 10:10:28 ----A---- C:\Windows\system32\drivers\amdxata.sys
2012-03-01 10:10:27 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2012-03-01 10:10:27 ----A---- C:\Windows\SYSWOW64\esent.dll
2012-03-01 10:10:27 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2012-03-01 10:10:27 ----A---- C:\Windows\system32\drivers\storport.sys
2012-03-01 10:10:27 ----A---- C:\Windows\system32\drivers\nvstor.sys
2012-03-01 10:10:27 ----A---- C:\Windows\system32\drivers\nvraid.sys
2012-03-01 10:10:27 ----A---- C:\Windows\system32\drivers\ntfs.sys
2012-03-01 10:10:27 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2012-03-01 10:10:27 ----A---- C:\Windows\system32\drivers\amdsata.sys
2012-02-29 20:08:46 ----D---- C:\Windows\Panther
2012-02-29 20:08:34 ----RASH---- C:\BOOTSECT.BAK
2012-02-29 20:08:32 ----SHD---- C:\Boot
2012-02-29 16:27:27 ----D---- C:\Program Files (x86)\Lavalys
2012-02-29 13:58:24 ----D---- C:\Windows\system32\Macromed
2012-02-29 13:48:31 ----A---- C:\Windows\system32\FntCache.dll
2012-02-29 13:48:30 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2012-02-29 13:48:30 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2012-02-29 13:48:30 ----A---- C:\Windows\system32\DWrite.dll
2012-02-29 13:48:30 ----A---- C:\Windows\system32\d2d1.dll
2012-02-29 13:46:29 ----AH---- C:\ProgramData\ezsidmv.dat
2012-02-29 13:46:24 ----D---- C:\Users\stillpro\AppData\Roaming\skypePM
2012-02-29 13:46:24 ----D---- C:\ProgramData\Skype Extras
2012-02-29 13:45:46 ----D---- C:\Users\stillpro\AppData\Roaming\Skype
2012-02-29 13:45:38 ----D---- C:\Program Files (x86)\Google
2012-02-29 13:45:30 ----RD---- C:\Program Files (x86)\Skype
2012-02-29 13:45:23 ----D---- C:\ProgramData\Skype
2012-02-29 13:40:10 ----D---- C:\Program Files (x86)\Microsoft.NET
2012-02-29 13:27:56 ----A---- C:\Windows\system32\MRT.exe
2012-02-29 12:15:02 ----A---- C:\Windows\SYSWOW64\tzres.dll
2012-02-29 12:15:01 ----A---- C:\Windows\system32\tzres.dll
2012-02-29 12:14:03 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2012-02-29 12:14:03 ----A---- C:\Windows\system32\kerberos.dll
2012-02-29 12:09:05 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2012-02-29 12:09:05 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2012-02-29 12:09:05 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2012-02-29 12:09:05 ----A---- C:\Windows\system32\odbctrac.dll
2012-02-29 12:09:05 ----A---- C:\Windows\system32\odbccu32.dll
2012-02-29 12:09:05 ----A---- C:\Windows\system32\odbccr32.dll
2012-02-29 12:09:05 ----A---- C:\Windows\system32\odbccp32.dll
2012-02-29 12:09:04 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2012-02-29 12:09:04 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2012-02-29 12:09:00 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2012-02-29 12:09:00 ----A---- C:\Windows\system32\poqexec.exe
2012-02-29 12:08:53 ----A---- C:\Windows\SYSWOW64\explorer.exe
2012-02-29 12:08:53 ----A---- C:\Windows\explorer.exe
2012-02-29 12:08:51 ----A---- C:\Windows\SYSWOW64\sbe.dll
2012-02-29 12:08:51 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2012-02-29 12:08:51 ----A---- C:\Windows\system32\sbe.dll
2012-02-29 12:08:51 ----A---- C:\Windows\system32\CPFilters.dll
2012-02-29 12:08:44 ----A---- C:\Windows\SYSWOW64\quartz.dll
2012-02-29 12:08:44 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2012-02-29 12:08:44 ----A---- C:\Windows\system32\quartz.dll
2012-02-29 12:08:44 ----A---- C:\Windows\system32\qdvd.dll
2012-02-29 12:08:43 ----A---- C:\Windows\system32\shell32.dll
2012-02-29 12:08:42 ----A---- C:\Windows\SYSWOW64\shell32.dll
2012-02-29 12:08:42 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2012-02-29 12:08:42 ----A---- C:\Windows\system32\ntshrui.dll
2012-02-29 12:08:37 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2012-02-29 12:08:37 ----A---- C:\Windows\system32\tquery.dll
2012-02-29 12:08:37 ----A---- C:\Windows\system32\SearchIndexer.exe
2012-02-29 12:08:37 ----A---- C:\Windows\system32\mssrch.dll
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\tquery.dll
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\mssph.dll
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2012-02-29 12:08:36 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2012-02-29 12:08:36 ----A---- C:\Windows\system32\SearchFilterHost.exe
2012-02-29 12:08:36 ----A---- C:\Windows\system32\mssvp.dll
2012-02-29 12:08:36 ----A---- C:\Windows\system32\mssphtb.dll
2012-02-29 12:08:36 ----A---- C:\Windows\system32\mssph.dll
2012-02-29 12:08:36 ----A---- C:\Windows\system32\msscntrs.dll
2012-02-29 12:08:30 ----A---- C:\Windows\SYSWOW64\webio.dll
2012-02-29 12:08:30 ----A---- C:\Windows\SYSWOW64\schannel.dll
2012-02-29 12:08:30 ----A---- C:\Windows\system32\webio.dll
2012-02-29 12:08:30 ----A---- C:\Windows\system32\schannel.dll
2012-02-29 12:08:30 ----A---- C:\Windows\system32\lsass.exe
2012-02-29 12:08:30 ----A---- C:\Windows\system32\lsasrv.dll
2012-02-29 12:08:30 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2012-02-29 12:08:30 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2012-02-29 12:08:30 ----A---- C:\Windows\system32\drivers\cng.sys
2012-02-29 12:08:29 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2012-02-29 12:08:29 ----A---- C:\Windows\SYSWOW64\secur32.dll
2012-02-29 12:08:29 ----A---- C:\Windows\system32\sspisrv.dll
2012-02-29 12:08:29 ----A---- C:\Windows\system32\sspicli.dll
2012-02-29 12:08:29 ----A---- C:\Windows\system32\secur32.dll
2012-02-29 12:08:26 ----A---- C:\Windows\system32\csrsrv.dll
2012-02-29 12:08:21 ----A---- C:\Windows\SYSWOW64\xmllite.dll
2012-02-29 12:08:21 ----A---- C:\Windows\system32\xmllite.dll
2012-02-29 12:08:18 ----A---- C:\Windows\system32\drivers\tcpip.sys
2012-02-29 12:08:14 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2012-02-29 12:08:14 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2012-02-29 12:08:14 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2012-02-29 12:08:14 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2012-02-29 12:08:14 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2012-02-29 12:08:12 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2012-02-29 12:08:12 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2012-02-29 12:08:12 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2012-02-29 12:08:12 ----A---- C:\Windows\system32\fontsub.dll
2012-02-29 12:08:12 ----A---- C:\Windows\system32\atmlib.dll
2012-02-29 12:08:12 ----A---- C:\Windows\system32\atmfd.dll
2012-02-29 12:07:55 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2012-02-29 12:07:55 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2012-02-29 12:07:55 ----A---- C:\Windows\system32\mfc42u.dll
2012-02-29 12:07:55 ----A---- C:\Windows\system32\mfc42.dll
2012-02-29 12:07:51 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2012-02-29 12:07:51 ----A---- C:\Windows\system32\XpsPrint.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2012-02-29 12:07:46 ----A---- C:\Windows\SYSWOW64\wow32.dll
2012-02-29 12:07:46 ----A---- C:\Windows\SYSWOW64\user.exe
2012-02-29 12:07:46 ----A---- C:\Windows\SYSWOW64\setup16.exe
2012-02-29 12:07:46 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2012-02-29 12:07:46 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2012-02-29 12:07:46 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2012-02-29 12:07:46 ----A---- C:\Windows\SYSWOW64\instnm.exe
2012-02-29 12:07:46 ----A---- C:\Windows\system32\wow64win.dll
2012-02-29 12:07:46 ----A---- C:\Windows\system32\wow64cpu.dll
2012-02-29 12:07:46 ----A---- C:\Windows\system32\wow64.dll
2012-02-29 12:07:46 ----A---- C:\Windows\system32\winsrv.dll
2012-02-29 12:07:46 ----A---- C:\Windows\system32\ntvdm64.dll
2012-02-29 12:07:46 ----A---- C:\Windows\system32\KernelBase.dll
2012-02-29 12:07:46 ----A---- C:\Windows\system32\kernel32.dll
2012-02-29 12:07:46 ----A---- C:\Windows\system32\conhost.exe
2012-02-29 12:07:13 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe
2012-02-29 12:07:13 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2012-02-29 12:07:13 ----A---- C:\Windows\system32\dnsrslvr.dll
2012-02-29 12:07:13 ----A---- C:\Windows\system32\dnscacheugc.exe
2012-02-29 12:07:13 ----A---- C:\Windows\system32\dnsapi.dll
2012-02-29 12:06:43 ----A---- C:\Windows\system32\win32k.sys
2012-02-29 12:06:39 ----A---- C:\Windows\system32\winresume.exe
2012-02-29 12:06:39 ----A---- C:\Windows\system32\winload.exe
2012-02-29 12:06:39 ----A---- C:\Windows\system32\kdusb.dll
2012-02-29 12:06:39 ----A---- C:\Windows\system32\kdcom.dll
2012-02-29 12:06:39 ----A---- C:\Windows\system32\kd1394.dll
2012-02-29 12:06:35 ----A---- C:\Windows\system32\drivers\srvnet.sys
2012-02-29 12:06:35 ----A---- C:\Windows\system32\drivers\srv2.sys
2012-02-29 12:06:35 ----A---- C:\Windows\system32\drivers\srv.sys
2012-02-29 12:06:27 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2012-02-29 12:06:27 ----A---- C:\Windows\system32\d3d10_1.dll
2012-02-29 12:06:26 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2012-02-29 12:06:25 ----A---- C:\Windows\system32\drivers\afd.sys
2012-02-29 12:06:24 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2012-02-29 12:06:24 ----A---- C:\Windows\system32\psisdecd.dll
2012-02-29 12:06:20 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2012-02-29 12:06:20 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2012-02-29 12:06:20 ----A---- C:\Windows\SYSWOW64\devobj.dll
2012-02-29 12:06:20 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2012-02-29 12:06:20 ----A---- C:\Windows\system32\umpnpmgr.dll
2012-02-29 12:06:20 ----A---- C:\Windows\system32\FXSCOVER.exe
2012-02-29 12:04:25 ----D---- C:\Windows\SYSWOW64\drivers\sk-SK
2012-02-29 12:04:23 ----D---- C:\Windows\sk-SK
2012-02-29 12:04:21 ----D---- C:\Windows\system32\drivers\sk-SK
2012-02-29 11:58:33 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2012-02-29 11:58:33 ----A---- C:\Windows\SYSWOW64\packager.dll
2012-02-29 11:58:33 ----A---- C:\Windows\system32\prevhost.exe
2012-02-29 11:58:33 ----A---- C:\Windows\system32\packager.dll
2012-02-29 11:57:55 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2012-02-29 11:57:54 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2012-02-29 11:57:54 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-02-29 11:57:18 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2012-02-29 11:57:18 ----A---- C:\Windows\system32\EncDec.dll
2012-02-29 11:56:54 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2012-02-29 11:56:54 ----A---- C:\Windows\system32\msvcrt.dll
2012-02-29 11:56:53 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2012-02-29 11:56:53 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2012-02-29 11:56:53 ----A---- C:\Windows\system32\ntdll.dll
2012-02-29 11:56:53 ----A---- C:\Windows\system32\inetcomm.dll
2012-02-29 11:56:52 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2012-02-29 11:56:52 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2012-02-29 11:56:52 ----A---- C:\Windows\system32\oleaut32.dll
2012-02-29 11:56:52 ----A---- C:\Windows\system32\oleacc.dll
2012-02-29 11:56:51 ----A---- C:\Windows\system32\drivers\bowser.sys
2012-02-29 11:43:18 ----D---- C:\ProgramData\NVIDIA
2012-02-29 11:43:06 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2012-02-29 11:43:03 ----SHD---- C:\Windows\Installer
2012-02-29 11:42:48 ----A---- C:\Windows\system32\nvvsvc.exe
2012-02-29 11:42:48 ----A---- C:\Windows\system32\nvsvc64.dll
2012-02-29 11:42:48 ----A---- C:\Windows\system32\nvshext.dll
2012-02-29 11:42:48 ----A---- C:\Windows\system32\nvmctray.dll
2012-02-29 11:42:48 ----A---- C:\Windows\system32\nvcpl.dll
2012-02-29 11:42:38 ----D---- C:\ProgramData\NVIDIA Corporation
2012-02-29 11:42:24 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2012-02-29 11:42:24 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2012-02-29 11:42:24 ----A---- C:\Windows\system32\OpenCL.dll
2012-02-29 11:42:24 ----A---- C:\Windows\system32\nvwgf2umx.dll
2012-02-29 11:42:24 ----A---- C:\Windows\system32\nvoglv64.dll
2012-02-29 11:42:24 ----A---- C:\Windows\system32\nvhdap64.dll
2012-02-29 11:42:24 ----A---- C:\Windows\system32\nvhdagenco6420103.dll
2012-02-29 11:42:24 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2012-02-29 11:42:23 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2012-02-29 11:42:23 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2012-02-29 11:42:23 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2012-02-29 11:42:23 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2012-02-29 11:42:23 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2012-02-29 11:42:23 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2012-02-29 11:42:23 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2012-02-29 11:42:23 ----A---- C:\Windows\system32\nvgenco64.dll
2012-02-29 11:42:23 ----A---- C:\Windows\system32\nvdispco64.dll
2012-02-29 11:42:23 ----A---- C:\Windows\system32\nvd3dumx.dll
2012-02-29 11:42:23 ----A---- C:\Windows\system32\nvcuvid.dll
2012-02-29 11:42:23 ----A---- C:\Windows\system32\nvcuvenc.dll
2012-02-29 11:42:23 ----A---- C:\Windows\system32\nvcuda.dll
2012-02-29 11:42:23 ----A---- C:\Windows\system32\nvcompiler.dll
2012-02-29 11:42:23 ----A---- C:\Windows\system32\nvapi64.dll
2012-02-29 11:42:23 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2012-02-29 11:42:11 ----D---- C:\Program Files\NVIDIA Corporation
2012-02-29 11:41:54 ----D---- C:\NVIDIA
2012-02-29 11:20:20 ----D---- C:\Users\stillpro\AppData\Roaming\Macromedia
2012-02-29 11:20:20 ----D---- C:\Users\stillpro\AppData\Roaming\Adobe
2012-02-29 11:20:17 ----D---- C:\Windows\SYSWOW64\Macromed
2012-02-29 11:19:17 ----D---- C:\Users\stillpro\AppData\Roaming\Mozilla
2012-02-29 11:19:14 ----D---- C:\Program Files (x86)\Mozilla Firefox
2012-02-29 11:17:50 ----D---- C:\Users\stillpro\AppData\Roaming\Identities
2012-02-29 11:17:35 ----SD---- C:\Users\stillpro\AppData\Roaming\Microsoft
2012-02-29 11:17:35 ----D---- C:\Users\stillpro\AppData\Roaming\Media Center Programs
2012-02-29 11:16:30 ----D---- C:\Windows\SYSWOW64\Wat
2012-02-29 11:16:30 ----D---- C:\Windows\system32\Wat
2012-02-29 11:15:24 ----SHD---- C:\Recovery
2012-02-29 11:15:21 ----D---- C:\Windows\SoftwareDistribution
2012-02-29 11:10:02 ----D---- C:\Windows\Prefetch
2012-02-29 11:09:34 ----ASH---- C:\pagefile.sys
2012-02-29 11:09:33 ----ASH---- C:\hiberfil.sys
2012-02-29 11:09:32 ----SHD---- C:\System Volume Information
2012-02-16 16:37:48 ----A---- C:\settings.ini
======List of files/folders modified in the last 1 month======
2012-03-14 00:01:54 ----D---- C:\Windows\Temp
2012-03-14 00:00:40 ----RD---- C:\Program Files
2012-03-13 23:51:52 ----D---- C:\Windows\System32
2012-03-13 23:51:52 ----D---- C:\Windows\inf
2012-03-13 23:51:52 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-03-13 23:46:14 ----D---- C:\Windows
2012-03-13 23:31:00 ----D---- C:\Windows\system32\LogFiles
2012-03-13 23:18:08 ----D---- C:\Windows\system32\config
2012-03-13 21:10:42 ----D---- C:\Windows\Tasks
2012-03-13 21:10:42 ----D---- C:\Windows\system32\wfp
2012-03-13 21:10:41 ----D---- C:\Windows\system32\wbem
2012-03-13 21:10:38 ----D---- C:\Windows\registration
2012-03-13 20:31:15 ----D---- C:\Windows\system32\wdi
2012-03-13 20:18:10 ----D---- C:\Windows\SysWOW64
2012-03-13 20:18:09 ----D---- C:\Windows\system32\drivers
2012-03-13 20:18:08 ----D---- C:\Windows\system32\DriverStore
2012-03-13 20:18:08 ----D---- C:\Windows\system32\catroot
2012-03-13 20:18:06 ----D---- C:\Windows\SYSWOW64\drivers
2012-03-13 20:18:02 ----RD---- C:\Program Files (x86)
2012-03-13 20:17:48 ----D---- C:\Program Files (x86)\Common Files
2012-03-13 18:26:42 ----RSD---- C:\Windows\assembly
2012-03-13 18:26:42 ----D---- C:\Windows\Microsoft.NET
2012-03-13 18:09:29 ----HD---- C:\ProgramData
2012-03-13 17:21:58 ----D---- C:\Windows\winsxs
2012-03-13 12:11:48 ----D---- C:\Windows\system32\catroot2
2012-03-10 09:18:26 ----D---- C:\Windows\system32\Tasks
2012-03-09 17:19:34 ----D---- C:\Windows\rescache
2012-03-09 08:54:05 ----D---- C:\Windows\SYSWOW64\sk-SK
2012-03-09 08:54:05 ----D---- C:\Program Files\Internet Explorer
2012-03-09 08:54:05 ----D---- C:\Program Files (x86)\Internet Explorer
2012-03-09 08:54:04 ----D---- C:\Windows\system32\sk-SK
2012-03-09 08:54:03 ----D---- C:\Windows\SYSWOW64\migration
2012-03-09 08:54:03 ----D---- C:\Windows\SYSWOW64\en-US
2012-03-09 08:54:01 ----D---- C:\Windows\system32\migration
2012-03-09 08:54:01 ----D---- C:\Windows\system32\en-US
2012-03-09 08:54:01 ----D---- C:\Windows\PolicyDefinitions
2012-03-09 00:15:51 ----D---- C:\Windows\Logs
2012-03-05 11:22:01 ----D---- C:\Program Files (x86)\MSBuild
2012-03-05 11:21:56 ----D---- C:\Windows\ShellNew
2012-03-05 11:21:49 ----RSD---- C:\Windows\Fonts
2012-03-05 11:21:46 ----SD---- C:\ProgramData\Microsoft
2012-03-05 11:21:14 ----D---- C:\Program Files\Common Files\Microsoft Shared
2012-03-05 11:20:10 ----A---- C:\Windows\win.ini
2012-02-29 22:04:39 ----D---- C:\Windows\system32\drivers\UMDF
2012-02-29 20:08:18 ----D---- C:\Windows\Setup
2012-02-29 14:40:52 ----D---- C:\Windows\LiveKernelReports
2012-02-29 13:58:28 ----D---- C:\Windows\Downloaded Program Files
2012-02-29 13:33:00 ----D---- C:\Program Files\Common Files\System
2012-02-29 13:32:59 ----D---- C:\Windows\ehome
2012-02-29 13:32:58 ----D---- C:\Windows\AppPatch
2012-02-29 13:32:56 ----D---- C:\Windows\system32\Boot
2012-02-29 13:27:57 ----D---- C:\Windows\debug
2012-02-29 12:04:27 ----D---- C:\Program Files\Windows Sidebar
2012-02-29 12:04:26 ----D---- C:\Windows\SYSWOW64\migwiz
2012-02-29 12:04:26 ----D---- C:\Windows\servicing
2012-02-29 12:04:26 ----D---- C:\Program Files\Windows Photo Viewer
2012-02-29 12:04:26 ----D---- C:\Program Files\Windows Media Player
2012-02-29 12:04:26 ----D---- C:\Program Files\Windows Mail
2012-02-29 12:04:26 ----D---- C:\Program Files\Windows Journal
2012-02-29 12:04:26 ----D---- C:\Program Files\Windows Defender
2012-02-29 12:04:26 ----D---- C:\Program Files\DVD Maker
2012-02-29 12:04:26 ----D---- C:\Program Files (x86)\Windows Sidebar
2012-02-29 12:04:26 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2012-02-29 12:04:26 ----D---- C:\Program Files (x86)\Windows Media Player
2012-02-29 12:04:26 ----D---- C:\Program Files (x86)\Windows Mail
2012-02-29 12:04:26 ----D---- C:\Program Files (x86)\Windows Defender
2012-02-29 12:04:25 ----D---- C:\Windows\SYSWOW64\WCN
2012-02-29 12:04:24 ----D---- C:\Windows\SYSWOW64\wbem
2012-02-29 12:04:23 ----D---- C:\Windows\system32\sysprep
2012-02-29 12:04:23 ----D---- C:\Windows\system32\oobe
2012-02-29 12:04:23 ----D---- C:\Windows\system32\migwiz
2012-02-29 12:04:21 ----D---- C:\Windows\system32\WCN
2012-02-29 11:56:06 ----RD---- C:\Users
2012-02-29 11:42:47 ----D---- C:\Windows\Help
2012-02-29 11:27:26 ----D---- C:\Windows\system32\CodeIntegrity
2012-02-29 11:17:48 ----SHD---- C:\$Recycle.Bin
2012-02-29 11:16:40 ----A---- C:\Windows\SYSWOW64\user32.dll
2012-02-29 11:16:40 ----A---- C:\Windows\SYSWOW64\slwga.dll
2012-02-29 11:16:40 ----A---- C:\Windows\system32\user32.dll
2012-02-29 11:16:40 ----A---- C:\Windows\system32\systemcpl.dll
2012-02-29 11:16:40 ----A---- C:\Windows\system32\slwga.dll
2012-02-29 11:16:15 ----D---- C:\Windows\system32\restore
2012-02-29 11:09:58 ----D---- C:\Windows\CSC
2012-02-23 09:18:36 ----N---- C:\Windows\system32\MpSigStub.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2012-03-13 13368]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2012-03-05 283200]
R3 L1C;NDIS Miniport Driver for Atheros AR8131/AR8132 PCI-E Ethernet Controller (NDIS 6.20); C:\Windows\system32\DRIVERS\L1C62x64.sys [2009-06-10 57344]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2012-03-13 15416]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2012-01-17 188224]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-21 20992]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys [2010-11-21 88960]
S3 terminpt;Microsoft Remote Desktop Input Driver; C:\Windows\system32\drivers\terminpt.sys [2010-11-21 34816]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys [2010-11-21 117248]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2012-02-10 889664]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-02-10 2348352]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-02-09 382272]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-02-29 136176]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-02-29 136176]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-02-29 1255736]
-----------------EOF-----------------
- chodnik74
- Přítel fóra
- Příspěvky: 4975
- Registrován: 13 zář 2010 21:30
- Bydliště: Napajedla
- Kontaktovat uživatele:
Re: Poprosil by som o radu , caste padanie win7 (blue sod)
Dobrý den 
Jelikož jsme na forum, které se zabývá havěti a nevidím antivir, tak bych vám doporučil nainstalovat nějaké zabezpečení. Co vy na to?
a teď k padání..
Jděte do složky C:\Windows\Minidump, pokud zde najdete soubory,tak je zabalte( třeba programem winrar) a nahrajte na http://www.leteckaposta.cz , sem mi vložte odkaz na stažení

Jelikož jsme na forum, které se zabývá havěti a nevidím antivir, tak bych vám doporučil nainstalovat nějaké zabezpečení. Co vy na to?

a teď k padání..

Napiš mi: chodnik74@gmail.com nebo 
>RSIT<>MBAM<>VirusTotal
Doporučuji:
| 
Postup si raději vícekrát přečtěte a v případě jakýchkoliv nejasností či pochybností se ptejte.
Pokud máte infikovaný počítač nebo se nechová jako obvykle, tak si zálohujte všechny data a pozorně postupujte dle pokynů rádce! 
Nepoužívejte utilitu Combofix bez dohledu a doporučení rádce!
Jste s naší pomocí spokojeni
Neváhejte a podpořte forum ZDE.
Pravidla fora: č.1 a č.2

>RSIT<>MBAM<>VirusTotal
Doporučuji:








Pravidla fora: č.1 a č.2
Re: Poprosil by som o radu , caste padanie win7 (blue sod)
http://leteckaposta.cz/735357204 - minidump , mam v pc nod a xoft spy , staci ak nainstalujem tie ?
Re: Poprosil by som o radu , caste padanie win7 (blue sod)
ale mam pocit ze to robi graficky ovladac , ak ho nemam pc ide normalne , ak som mal starsi islo mi to normalne ale novy mi to robi ... proste neviem kde najst starsie verzie a nechce sa mi kazdu jednu skusat instalovat ci to pojde no rad by som to vyriesil
- chodnik74
- Přítel fóra
- Příspěvky: 4975
- Registrován: 13 zář 2010 21:30
- Bydliště: Napajedla
- Kontaktovat uživatele:
Re: Poprosil by som o radu , caste padanie win7 (blue sod)
Bohužel ten nahraný archív je poškozený a nemohu ho otevřít. Mohl by jste archív vytvořit znovu a nahrát? Děkuji
Jinak postačí antivir, ale pokud ten NOD nemáte legální, tak ho tam ani nedávejte. Doporučuji Avast, aktuálně ve verzi 7
Jinak postačí antivir, ale pokud ten NOD nemáte legální, tak ho tam ani nedávejte. Doporučuji Avast, aktuálně ve verzi 7

Napiš mi: chodnik74@gmail.com nebo 
>RSIT<>MBAM<>VirusTotal
Doporučuji:
| 
Postup si raději vícekrát přečtěte a v případě jakýchkoliv nejasností či pochybností se ptejte.
Pokud máte infikovaný počítač nebo se nechová jako obvykle, tak si zálohujte všechny data a pozorně postupujte dle pokynů rádce! 
Nepoužívejte utilitu Combofix bez dohledu a doporučení rádce!
Jste s naší pomocí spokojeni
Neváhejte a podpořte forum ZDE.
Pravidla fora: č.1 a č.2

>RSIT<>MBAM<>VirusTotal
Doporučuji:








Pravidla fora: č.1 a č.2
Re: Poprosil by som o radu , caste padanie win7 (blue sod)
http://leteckaposta.cz/652828872 - novy minidump
Naposledy upravil(a) stillgod dne 14 bře 2012 20:37, celkem upraveno 1 x.
Re: Poprosil by som o radu , caste padanie win7 (blue sod)
Zdravimstillgod píše:Nod mam cracknuty a aktualizuje mi ho + kamos mi dava passwordy ktore funguju

S dovolenim si dovolim jako MOD fora zasahnout - pravidla fora, pripadne autorska prava vam asi moc nerikaji, ze

Re: Poprosil by som o radu , caste padanie win7 (blue sod)
nemyslel som si ze tu riesite autorske prava vsetkych programov
sorry , ale radsej by som tu radu co s tym moze byt (:

Re: Poprosil by som o radu , caste padanie win7 (blue sod)
Thread v pravidlech fora: http://forum.viry.cz/viewtopic.php?f=12&t=115512
Pokud chcete pomoci, odinstalujte ilegalni ESET, dejte free reseni v podobe Avastu, Aviry ci MSE. Nasledne dejte novy lg z RSIT.
Do te doby vam nebude pomoci. pokud nechcete ci se vam to nelibi, nikdo vas ke zmene nenuti a paklize se vam u nas nelibi diky tomuto pristupu, tak tlacitko Odhlasit se, je vlevo nahore.
Takze, podminky pomoci byly receny, az budou splneny, bude se pokracovat...
Nelegalnim SW se nezabyvame, jelikoz nelegalni programy jsou vetsinou zdrojem haveti. Navic tim porusujete i autorska prava, pachate trestny cin a ten jako takovy nebude nasim forem podporovan. Uvedomte si, ze jste na bezpecnostnim foru - podpora warezu (zvlaste bezpecnostnich programu) by byla zcela proti logice foraPomáhat NELZE:
2) Pokud stroj uživatele prokazatelně obsahuje nelegální hostitelský čí ochranný software
(operační systém, antivir, firewall, atd.), je nutné navést uživatele k nápravě, např. skrze neplacený software,
a začít řešit, až v době kdy je PC "v pořádku". V případě že uživatel nechce na pravidla přistoupit,
je nutné jej vyzvat ať fórum opustí, a vrátí se až je splní.

Pokud chcete pomoci, odinstalujte ilegalni ESET, dejte free reseni v podobe Avastu, Aviry ci MSE. Nasledne dejte novy lg z RSIT.
Do te doby vam nebude pomoci. pokud nechcete ci se vam to nelibi, nikdo vas ke zmene nenuti a paklize se vam u nas nelibi diky tomuto pristupu, tak tlacitko Odhlasit se, je vlevo nahore.
Takze, podminky pomoci byly receny, az budou splneny, bude se pokracovat...
Re: Poprosil by som o radu , caste padanie win7 (blue sod)
no lenze ja ho nemam nainstalovany iba v pc a to som uz spominal a to ste si mohli pozriet prvy log
nikde som nepisal ze ho pouzivam (nepouzivam) ...
ale hlavne chcem odpoved na ten minidump ci tam nieco vidno, od chodnik74


Re: Poprosil by som o radu , caste padanie win7 (blue sod)
Tak a dost, sasky tu ze sebe delat nenecham - ten edit o tom nelegalnin NODu jste udelal proc?
Az bude zde log s Avastem, bude se dal pokracovat, rozumime...
Az bude zde log s Avastem, bude se dal pokracovat, rozumime...
Re: Poprosil by som o radu , caste padanie win7 (blue sod)
Tu je novy log, dal som tam 90 dnovy trial norton ktory si windows stahuje sam a na ten minidump by som rad odpoved videl ak sa da
Logfile of random's system information tool 1.09 (written by random/random)
Run by stillpro at 2012-03-15 21:14:24
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 24 GB (48%) free of 50 GB
Total RAM: 4095 MB (63% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:14:31, on 15/03/2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\ASUS\EPU-4 Engine\FourEngine.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\XoftSpySE6\XoftSpySE.exe
C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\ccSvcHst.exe
C:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files\trend micro\stillpro.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.babylon.com/?AF=100996&ba ... cb4e0088d3
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\coIEPlg.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\IPSBHO.DLL
O2 - BHO: TheBflix - {76309156-27C8-4241-BA08-220715B1E812} - C:\ProgramData\TheBflix\bhoclass.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\coIEPlg.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [XoftSpySE] "C:\Program Files (x86)\XoftSpySE6\XoftSpySE.exe" -NM -hidesplash
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files (x86)\PokerStars\PokerStarsUpdate.exe (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: symres - {AA1061FE-6C41-421F-9344-69640C9732AB} - C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\coIEPlg.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Norton Internet Security - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\ccSvcHst.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: XoftSpyService - ParetoLogic Inc. - C:\Program Files (x86)\Common Files\XoftSpySE\6\xoftspyservice.exe
--
End of file - 7641 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\Explorer.EXE
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\ccSvcHst.exe" /s "Norton Internet Security" /m "C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\diMaster.dll" /prefetch:1
C:\Windows\system32\svchost.exe -k imgsvc
taskeng.exe {BEF0BC44-E193-431E-A209-2777AE3A24FF}
"C:\Program Files (x86)\ASUS\EPU-4 Engine\FourEngine.exe" -b
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\XoftSpySE6\XoftSpySE.exe" -NM -hidesplash
"C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe" -r
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\ccSvcHst.exe" /c /a /s UserSession
"C:\Program Files (x86)\Common Files\XoftSpySE\6\xoftspyservice.exe"
"C:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe" /SILENT
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=3452.f6606c0.73613785 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll" Mozilla.Firefox.8.0.1 -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.jar" 3452 "\\.\pipe\gecko-crash-server-pipe.3452" plugin
C:\Windows\system32\AUDIODG.EXE 0x454
"D:\downloadss\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\ParetoLogic Update Version3.job
C:\Windows\tasks\RegInOut Scheduled Scan - stillpro.job
C:\Windows\tasks\XoftSpySE.job
=========Mozilla firefox=========
ProfilePath - C:\Users\stillpro\AppData\Roaming\Mozilla\Firefox\Profiles\53vxz5j2.default
prefs.js - "browser.startup.homepage" - "http://search.babylon.com/?AF=100996&ba ... cb4e0088d3"
prefs.js - "keyword.URL" - "http://search.babylon.com/?AF=100996&ba ... e0088d3&q="
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA}
C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
C:\Program Files (x86)\Mozilla Firefox\searchplugins\
babylon.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
C:\Users\stillpro\AppData\Roaming\Mozilla\Firefox\Profiles\53vxz5j2.default\extensions\
info@bflix.info
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-06-06 63912]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Symantec NCO BHO - C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\coIEPlg.dll [2012-03-15 378736]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Symantec Intrusion Prevention - C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\IPSBHO.DLL [2012-03-15 107896]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{76309156-27C8-4241-BA08-220715B1E812}]
TheBflix Class - C:\ProgramData\TheBflix\bhoclass.dll [2012-02-23 141824]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\coIEPlg.dll [2012-03-15 378736]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2011-04-18 15146376]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2012-02-13 3481408]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-06-06 937920]
"XoftSpySE"=C:\Program Files (x86)\XoftSpySE6\XoftSpySE.exe [2009-09-05 3399168]
"HDAudDeck"=C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2009-08-29 2252800]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SymEFA.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SymEFA.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"wave8"=wdmaud.drv
"midi8"=wdmaud.drv
"mixer8"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2012-03-15 17:16:58 ----A---- C:\Windows\ntbtlog.txt
2012-03-15 12:49:47 ----RA---- C:\Windows\system32\drivers\SymIMV.sys
2012-03-15 12:49:43 ----D---- C:\Program Files\Symantec
2012-03-15 12:49:43 ----D---- C:\Program Files\Common Files\Symantec Shared
2012-03-15 12:49:43 ----A---- C:\Windows\system32\drivers\SYMEVENT64x86.SYS
2012-03-15 12:46:23 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-03-15 12:46:22 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2012-03-15 12:46:21 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2012-03-15 12:40:34 ----D---- C:\Windows\system32\drivers\NISx64
2012-03-15 12:40:34 ----D---- C:\Program Files (x86)\Norton Internet Security
2012-03-15 12:40:33 ----D---- C:\ProgramData\Norton
2012-03-15 12:39:51 ----D---- C:\ProgramData\NortonInstaller
2012-03-15 12:39:51 ----D---- C:\Program Files (x86)\NortonInstaller
2012-03-15 12:39:13 ----A---- C:\Windows\system32\drivers\L1C62x64.sys
2012-03-15 12:38:56 ----D---- C:\Windows\SYSWOW64\Atheros_L1e
2012-03-15 12:38:10 ----A---- C:\Windows\system32\VIASysFx.dll
2012-03-15 12:38:10 ----A---- C:\Windows\system32\VIAPropPageExt.dll
2012-03-15 12:38:10 ----A---- C:\Windows\system32\ViaMicArrayPropPageExt.dll
2012-03-15 12:38:10 ----A---- C:\Windows\system32\ViaMicArrayAPO.dll
2012-03-15 12:38:10 ----A---- C:\Windows\system32\nQPropPageExt.dll
2012-03-15 12:38:10 ----A---- C:\Windows\system32\nQAPO.dll
2012-03-15 12:38:10 ----A---- C:\Windows\system32\Dts2PropPageExt.dll
2012-03-15 12:38:10 ----A---- C:\Windows\system32\drivers\viahduaa.sys
2012-03-15 12:38:03 ----N---- C:\Windows\difxapi.dll
2012-03-15 12:38:01 ----D---- C:\Program Files (x86)\VIA
2012-03-15 12:37:21 ----A---- C:\Windows\system32\drivers\AtiPcie.sys
2012-03-15 12:37:00 ----D---- C:\Program Files\ATI
2012-03-15 12:36:34 ----A---- C:\Windows\system32\win32k.sys
2012-03-15 12:36:32 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2012-03-15 12:36:32 ----A---- C:\Windows\system32\DWrite.dll
2012-03-15 12:36:22 ----A---- C:\Windows\system32\rdrmemptylst.exe
2012-03-15 12:36:22 ----A---- C:\Windows\system32\rdpwsx.dll
2012-03-15 12:36:22 ----A---- C:\Windows\system32\rdpcorekmts.dll
2012-03-15 12:36:01 ----A---- C:\Windows\Ascd_log.ini
2012-03-15 12:35:58 ----A---- C:\Windows\system32\rdpcorets.dll
2012-03-15 12:35:58 ----A---- C:\Windows\system32\rdpcore.dll
2012-03-15 12:35:57 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2012-03-15 12:35:57 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2012-03-15 12:35:57 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2012-03-15 12:35:35 ----A---- C:\Windows\Language_trs.ini
2012-03-15 12:35:29 ----A---- C:\Windows\Ascd_tmp.ini
2012-03-14 19:34:43 ----D---- C:\ProgramData\RegInOut
2012-03-14 19:34:42 ----D---- C:\Windows\RegInOut System Utilities
2012-03-14 19:34:32 ----D---- C:\Program Files (x86)\RegInOut
2012-03-14 14:42:43 ----D---- C:\Program Files\WhoCrashed
2012-03-14 14:27:20 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2012-03-14 14:27:20 ----A---- C:\Windows\system32\XAudio2_5.dll
2012-03-14 14:27:19 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2012-03-14 14:27:19 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2012-03-14 14:27:19 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2012-03-14 14:27:19 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2012-03-14 14:27:19 ----A---- C:\Windows\system32\xactengine3_5.dll
2012-03-14 14:27:19 ----A---- C:\Windows\system32\d3dx11_42.dll
2012-03-14 14:27:19 ----A---- C:\Windows\system32\d3dcsx_42.dll
2012-03-14 14:27:19 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2012-03-14 14:27:18 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2012-03-14 14:27:18 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2012-03-14 14:27:18 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2012-03-14 14:27:18 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2012-03-14 14:27:18 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2012-03-14 14:27:18 ----A---- C:\Windows\system32\D3DX9_42.dll
2012-03-14 14:27:18 ----A---- C:\Windows\system32\D3DX9_41.dll
2012-03-14 14:27:18 ----A---- C:\Windows\system32\d3dx10_42.dll
2012-03-14 14:27:18 ----A---- C:\Windows\system32\d3dx10_41.dll
2012-03-14 14:27:18 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2012-03-14 14:27:17 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2012-03-14 14:27:17 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2012-03-14 14:27:17 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2012-03-14 14:27:17 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2012-03-14 14:27:17 ----A---- C:\Windows\system32\XAudio2_4.dll
2012-03-14 14:27:17 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2012-03-14 14:27:17 ----A---- C:\Windows\system32\xactengine3_4.dll
2012-03-14 14:27:17 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2012-03-14 14:27:16 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2012-03-14 14:27:16 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2012-03-14 14:27:16 ----A---- C:\Windows\system32\d3dx10_40.dll
2012-03-14 14:27:16 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2012-03-14 14:27:15 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2012-03-14 14:27:15 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2012-03-14 14:27:15 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2012-03-14 14:27:15 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2012-03-14 14:27:15 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2012-03-14 14:27:15 ----A---- C:\Windows\system32\XAudio2_3.dll
2012-03-14 14:27:15 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2012-03-14 14:27:15 ----A---- C:\Windows\system32\xactengine3_3.dll
2012-03-14 14:27:15 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2012-03-14 14:27:15 ----A---- C:\Windows\system32\D3DX9_40.dll
2012-03-14 14:27:14 ----A---- C:\Windows\system32\XAudio2_2.dll
2012-03-14 14:27:14 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2012-03-14 14:27:13 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2012-03-14 14:27:13 ----A---- C:\Windows\system32\xactengine3_2.dll
2012-03-14 14:27:13 ----A---- C:\Windows\system32\d3dx10_39.dll
2012-03-14 14:27:13 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2012-03-14 14:27:12 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2012-03-14 14:27:12 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2012-03-14 14:27:12 ----A---- C:\Windows\system32\XAudio2_1.dll
2012-03-14 14:27:12 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2012-03-14 14:27:12 ----A---- C:\Windows\system32\D3DX9_39.dll
2012-03-14 14:27:11 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2012-03-14 14:27:11 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2012-03-14 14:27:11 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2012-03-14 14:27:11 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2012-03-14 14:27:11 ----A---- C:\Windows\system32\xactengine3_1.dll
2012-03-14 14:27:11 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2012-03-14 14:27:11 ----A---- C:\Windows\system32\d3dx10_38.dll
2012-03-14 14:27:11 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2012-03-14 14:27:10 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2012-03-14 14:27:10 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2012-03-14 14:27:10 ----A---- C:\Windows\system32\XAudio2_0.dll
2012-03-14 14:27:10 ----A---- C:\Windows\system32\D3DX9_38.dll
2012-03-14 14:27:09 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2012-03-14 14:27:09 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2012-03-14 14:27:09 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2012-03-14 14:27:09 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2012-03-14 14:27:09 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2012-03-14 14:27:09 ----A---- C:\Windows\system32\xactengine3_0.dll
2012-03-14 14:27:09 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2012-03-14 14:27:09 ----A---- C:\Windows\system32\D3DX9_37.dll
2012-03-14 14:27:09 ----A---- C:\Windows\system32\d3dx10_37.dll
2012-03-14 14:27:09 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2012-03-14 14:27:08 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2012-03-14 14:27:08 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2012-03-14 14:27:08 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2012-03-14 14:27:08 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2012-03-14 14:27:08 ----A---- C:\Windows\system32\xactengine2_10.dll
2012-03-14 14:27:08 ----A---- C:\Windows\system32\d3dx9_36.dll
2012-03-14 14:27:08 ----A---- C:\Windows\system32\d3dx10_36.dll
2012-03-14 14:27:08 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2012-03-14 14:27:07 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2012-03-14 14:27:07 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2012-03-14 14:27:07 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2012-03-14 14:27:07 ----A---- C:\Windows\system32\xactengine2_9.dll
2012-03-14 14:27:07 ----A---- C:\Windows\system32\d3dx10_35.dll
2012-03-14 14:27:07 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2012-03-14 14:27:06 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2012-03-14 14:27:06 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2012-03-14 14:27:06 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2012-03-14 14:27:06 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2012-03-14 14:27:06 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2012-03-14 14:27:06 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2012-03-14 14:27:06 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2012-03-14 14:27:06 ----A---- C:\Windows\system32\xinput1_3.dll
2012-03-14 14:27:06 ----A---- C:\Windows\system32\xactengine2_8.dll
2012-03-14 14:27:06 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2012-03-14 14:27:06 ----A---- C:\Windows\system32\d3dx9_35.dll
2012-03-14 14:27:06 ----A---- C:\Windows\system32\d3dx9_34.dll
2012-03-14 14:27:06 ----A---- C:\Windows\system32\d3dx10_34.dll
2012-03-14 14:27:06 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2012-03-14 14:27:05 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2012-03-14 14:27:05 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2012-03-14 14:27:05 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2012-03-14 14:27:05 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2012-03-14 14:27:05 ----A---- C:\Windows\system32\xactengine2_7.dll
2012-03-14 14:27:05 ----A---- C:\Windows\system32\d3dx9_33.dll
2012-03-14 14:27:05 ----A---- C:\Windows\system32\d3dx10_33.dll
2012-03-14 14:27:05 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2012-03-14 14:27:04 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2012-03-14 14:27:04 ----A---- C:\Windows\system32\xactengine2_6.dll
2012-03-14 14:27:03 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2012-03-14 14:27:03 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2012-03-14 14:27:03 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2012-03-14 14:27:03 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2012-03-14 14:27:03 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2012-03-14 14:27:03 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2012-03-14 14:27:03 ----A---- C:\Windows\system32\xactengine2_5.dll
2012-03-14 14:27:03 ----A---- C:\Windows\system32\xactengine2_4.dll
2012-03-14 14:27:03 ----A---- C:\Windows\system32\x3daudio1_1.dll
2012-03-14 14:27:03 ----A---- C:\Windows\system32\d3dx9_32.dll
2012-03-14 14:27:03 ----A---- C:\Windows\system32\d3dx9_31.dll
2012-03-14 14:27:03 ----A---- C:\Windows\system32\d3dx10.dll
2012-03-14 14:27:02 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2012-03-14 14:27:02 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2012-03-14 14:27:02 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2012-03-14 14:27:02 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2012-03-14 14:27:02 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2012-03-14 14:27:02 ----A---- C:\Windows\system32\xinput1_2.dll
2012-03-14 14:27:02 ----A---- C:\Windows\system32\xinput1_1.dll
2012-03-14 14:27:02 ----A---- C:\Windows\system32\xactengine2_3.dll
2012-03-14 14:27:02 ----A---- C:\Windows\system32\xactengine2_2.dll
2012-03-14 14:27:02 ----A---- C:\Windows\system32\xactengine2_1.dll
2012-03-14 14:26:59 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2012-03-14 14:26:59 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2012-03-14 14:26:59 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2012-03-14 14:26:59 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2012-03-14 14:26:59 ----A---- C:\Windows\system32\xactengine2_0.dll
2012-03-14 14:26:59 ----A---- C:\Windows\system32\x3daudio1_0.dll
2012-03-14 14:26:59 ----A---- C:\Windows\system32\d3dx9_30.dll
2012-03-14 14:26:59 ----A---- C:\Windows\system32\d3dx9_29.dll
2012-03-14 14:26:58 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2012-03-14 14:26:58 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2012-03-14 14:26:58 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2012-03-14 14:26:58 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2012-03-14 14:26:58 ----A---- C:\Windows\system32\d3dx9_28.dll
2012-03-14 14:26:58 ----A---- C:\Windows\system32\d3dx9_27.dll
2012-03-14 14:26:58 ----A---- C:\Windows\system32\d3dx9_26.dll
2012-03-14 14:26:58 ----A---- C:\Windows\system32\d3dx9_25.dll
2012-03-14 14:26:57 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2012-03-14 14:26:57 ----A---- C:\Windows\system32\d3dx9_24.dll
2012-03-14 14:20:41 ----A---- C:\Windows\system32\nvvsvc.exe
2012-03-14 14:20:41 ----A---- C:\Windows\system32\nvsvc64.dll
2012-03-14 14:20:41 ----A---- C:\Windows\system32\nvshext.dll
2012-03-14 14:20:41 ----A---- C:\Windows\system32\nvmctray.dll
2012-03-14 14:20:41 ----A---- C:\Windows\system32\nvcpl.dll
2012-03-14 14:20:04 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2012-03-14 14:20:04 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2012-03-14 14:20:04 ----A---- C:\Windows\system32\OpenCL.dll
2012-03-14 14:20:04 ----A---- C:\Windows\system32\nvwgf2umx.dll
2012-03-14 14:20:04 ----A---- C:\Windows\system32\nvhdap64.dll
2012-03-14 14:20:04 ----A---- C:\Windows\system32\nvhdagenco6420103.dll
2012-03-14 14:20:04 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2012-03-14 14:20:03 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2012-03-14 14:20:03 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2012-03-14 14:20:03 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2012-03-14 14:20:03 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2012-03-14 14:20:03 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2012-03-14 14:20:03 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2012-03-14 14:20:03 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2012-03-14 14:20:03 ----A---- C:\Windows\system32\nvoglv64.dll
2012-03-14 14:20:03 ----A---- C:\Windows\system32\nvgenco64.dll
2012-03-14 14:20:03 ----A---- C:\Windows\system32\nvdispco64.dll
2012-03-14 14:20:03 ----A---- C:\Windows\system32\nvd3dumx.dll
2012-03-14 14:20:03 ----A---- C:\Windows\system32\nvcuvid.dll
2012-03-14 14:20:03 ----A---- C:\Windows\system32\nvcuvenc.dll
2012-03-14 14:20:03 ----A---- C:\Windows\system32\nvcuda.dll
2012-03-14 14:20:03 ----A---- C:\Windows\system32\nvcompiler.dll
2012-03-14 14:20:03 ----A---- C:\Windows\system32\nvapi64.dll
2012-03-14 14:20:03 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2012-03-14 14:00:02 ----D---- C:\Users\stillpro\AppData\Roaming\ESET
2012-03-14 13:59:10 ----D---- C:\ProgramData\ESET
2012-03-14 13:59:10 ----D---- C:\Program Files\ESET
2012-03-14 13:58:05 ----D---- C:\Program Files (x86)\ESET
2012-03-14 13:50:51 ----D---- C:\Minidump
2012-03-14 13:45:34 ----D---- C:\ProgramData\ParetoLogic
2012-03-14 13:45:31 ----D---- C:\ProgramData\XoftSpySE
2012-03-14 13:45:30 ----D---- C:\Program Files (x86)\XoftSpySE6
2012-03-14 13:45:10 ----D---- C:\Users\stillpro\AppData\Roaming\WinRAR
2012-03-14 13:45:00 ----D---- C:\Program Files (x86)\WinRAR
2012-03-14 13:14:25 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2012-03-14 13:00:33 ----D---- C:\ProgramData\Sun
2012-03-14 13:00:18 ----D---- C:\Program Files (x86)\Java
2012-03-14 01:21:08 ----D---- C:\ProgramData\NVIDIA
2012-03-14 01:20:43 ----D---- C:\ProgramData\NVIDIA Corporation
2012-03-14 01:00:34 ----D---- C:\Program Files\CCleaner
2012-03-14 00:00:40 ----D---- C:\rsit
2012-03-14 00:00:40 ----D---- C:\Program Files\trend micro
2012-03-13 20:47:38 ----N---- C:\bootsqm.dat
2012-03-13 20:18:10 ----A---- C:\Windows\SYSWOW64\MSVCRTD.DLL
2012-03-13 20:18:10 ----A---- C:\Windows\SYSWOW64\mfc42d.dll
2012-03-13 20:18:06 ----A---- C:\Windows\SYSWOW64\drivers\AsIO.sys
2012-03-13 20:18:06 ----A---- C:\Windows\SYSWOW64\AsIO.dll
2012-03-13 20:18:02 ----D---- C:\Program Files (x86)\ASUS
2012-03-13 20:18:02 ----A---- C:\Windows\SYSWOW64\drivers\AsInsHelp64.sys
2012-03-13 20:18:02 ----A---- C:\Windows\SYSWOW64\drivers\AsInsHelp32.sys
2012-03-13 18:09:40 ----D---- C:\Windows\system32\appmgmt
2012-03-13 17:21:41 ----D---- C:\Program Files (x86)\Adobe
2012-03-13 17:21:08 ----D---- C:\ProgramData\Adobe
2012-03-12 20:43:17 ----D---- C:\Windows\Minidump
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\wininet.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\wextract.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\url.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\occache.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\msrating.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\msls31.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\mshta.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\jscript.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\inseng.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieui.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieakui.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieaksie.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieakeng.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ie4uinit.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\icardie.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\admparse.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\wininet.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\webcheck.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\urlmon.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\url.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2012-03-09 00:15:07 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2012-03-09 00:15:07 ----A---- C:\Windows\system32\pngfilt.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\occache.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\msrating.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\msls31.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\mshtmler.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\mshtmled.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\mshtml.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\mshta.exe
2012-03-09 00:15:07 ----A---- C:\Windows\system32\msfeedssync.exe
2012-03-09 00:15:07 ----A---- C:\Windows\system32\msfeedsbs.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\licmgr10.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\jsproxy.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\jscript9.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\jscript.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\inseng.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\imgutil.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieUnatt.exe
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieui.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\iesysprep.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\iesetup.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\iertutil.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\iernonce.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\iepeers.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieframe.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\iedkcs32.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieapfltr.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieapfltr.dat
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieakui.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieaksie.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieakeng.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\IEAdvpack.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ie4uinit.exe
2012-03-09 00:15:07 ----A---- C:\Windows\system32\icardie.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\dxtrans.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\dxtmsft.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\admparse.dll
2012-03-09 00:15:06 ----A---- C:\Windows\system32\wextract.exe
2012-03-09 00:15:06 ----A---- C:\Windows\system32\vbscript.dll
2012-03-09 00:15:06 ----A---- C:\Windows\system32\msfeeds.dll
2012-03-09 00:15:06 ----A---- C:\Windows\system32\iexpress.exe
2012-03-06 13:39:21 ----D---- C:\ProgramData\Media Center Programs
2012-03-05 12:54:01 ----D---- C:\Users\stillpro\AppData\Roaming\NVIDIA
2012-03-05 12:54:00 ----D---- C:\Users\stillpro\AppData\Roaming\LOVE
2012-03-05 11:22:09 ----D---- C:\Program Files (x86)\Microsoft Works
2012-03-05 11:21:57 ----D---- C:\Program Files (x86)\Microsoft Visual Studio
2012-03-05 11:21:46 ----D---- C:\Windows\PCHEALTH
2012-03-05 11:20:21 ----D---- C:\Program Files\Microsoft Office
2012-03-05 11:20:18 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2012-03-05 11:20:00 ----D---- C:\ProgramData\Microsoft Help
2012-03-05 11:20:00 ----D---- C:\Program Files (x86)\Microsoft Office
2012-03-05 11:19:18 ----RHD---- C:\MSOCache
2012-03-05 11:16:11 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2012-03-05 11:16:07 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2012-03-05 11:15:50 ----D---- C:\Users\stillpro\AppData\Roaming\DAEMON Tools Lite
2012-03-05 11:15:48 ----D---- C:\ProgramData\DAEMON Tools Lite
2012-03-04 16:30:53 ----D---- C:\Users\stillpro\AppData\Roaming\LolClient
2012-03-04 15:02:55 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2012-03-04 15:02:55 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2012-03-04 15:02:55 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2012-03-04 15:02:55 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2012-03-04 15:02:55 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2012-03-04 15:00:18 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2012-03-03 14:38:05 ----D---- C:\Users\stillpro\AppData\Roaming\BSplayer Pro
2012-03-03 14:38:05 ----D---- C:\Users\stillpro\AppData\Roaming\BSplayer
2012-03-03 14:38:05 ----D---- C:\Program Files (x86)\Webteh
2012-03-03 14:12:15 ----D---- C:\Program Files (x86)\Pando Networks
2012-03-01 13:27:50 ----A---- C:\user.js
2012-03-01 13:27:44 ----D---- C:\Users\stillpro\AppData\Roaming\Babylon
2012-03-01 13:27:44 ----D---- C:\ProgramData\Babylon
2012-03-01 13:27:43 ----D---- C:\ProgramData\Premium
2012-03-01 13:27:39 ----D---- C:\ProgramData\TheBflix
2012-03-01 13:27:14 ----D---- C:\ProgramData\InstallMate
2012-03-01 10:10:30 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2012-03-01 10:10:30 ----A---- C:\Windows\system32\drivers\usbport.sys
2012-03-01 10:10:30 ----A---- C:\Windows\system32\drivers\usbohci.sys
2012-03-01 10:10:30 ----A---- C:\Windows\system32\drivers\usbhub.sys
2012-03-01 10:10:30 ----A---- C:\Windows\system32\drivers\usbehci.sys
2012-03-01 10:10:30 ----A---- C:\Windows\system32\drivers\usbd.sys
2012-03-01 10:10:30 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2012-03-01 10:10:28 ----A---- C:\Windows\system32\fsutil.exe
2012-03-01 10:10:28 ----A---- C:\Windows\system32\esent.dll
2012-03-01 10:10:28 ----A---- C:\Windows\system32\drivers\amdxata.sys
2012-03-01 10:10:27 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2012-03-01 10:10:27 ----A---- C:\Windows\SYSWOW64\esent.dll
2012-03-01 10:10:27 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2012-03-01 10:10:27 ----A---- C:\Windows\system32\drivers\storport.sys
2012-03-01 10:10:27 ----A---- C:\Windows\system32\drivers\nvstor.sys
2012-03-01 10:10:27 ----A---- C:\Windows\system32\drivers\nvraid.sys
2012-03-01 10:10:27 ----A---- C:\Windows\system32\drivers\ntfs.sys
2012-03-01 10:10:27 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2012-03-01 10:10:27 ----A---- C:\Windows\system32\drivers\amdsata.sys
2012-02-29 20:08:46 ----D---- C:\Windows\Panther
2012-02-29 20:08:34 ----RASH---- C:\BOOTSECT.BAK
2012-02-29 20:08:32 ----SHD---- C:\Boot
2012-02-29 16:27:27 ----D---- C:\Program Files (x86)\Lavalys
2012-02-29 13:58:24 ----D---- C:\Windows\system32\Macromed
2012-02-29 13:48:31 ----A---- C:\Windows\system32\FntCache.dll
2012-02-29 13:48:30 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2012-02-29 13:48:30 ----A---- C:\Windows\system32\d2d1.dll
2012-02-29 13:46:29 ----AH---- C:\ProgramData\ezsidmv.dat
2012-02-29 13:46:24 ----D---- C:\Users\stillpro\AppData\Roaming\skypePM
2012-02-29 13:46:24 ----D---- C:\ProgramData\Skype Extras
2012-02-29 13:45:46 ----D---- C:\Users\stillpro\AppData\Roaming\Skype
2012-02-29 13:45:38 ----D---- C:\Program Files (x86)\Google
2012-02-29 13:45:30 ----RD---- C:\Program Files (x86)\Skype
2012-02-29 13:45:23 ----D---- C:\ProgramData\Skype
2012-02-29 13:40:10 ----D---- C:\Program Files (x86)\Microsoft.NET
2012-02-29 13:27:56 ----A---- C:\Windows\system32\MRT.exe
2012-02-29 12:15:02 ----A---- C:\Windows\SYSWOW64\tzres.dll
2012-02-29 12:15:01 ----A---- C:\Windows\system32\tzres.dll
2012-02-29 12:14:03 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2012-02-29 12:14:03 ----A---- C:\Windows\system32\kerberos.dll
2012-02-29 12:09:05 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2012-02-29 12:09:05 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2012-02-29 12:09:05 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2012-02-29 12:09:05 ----A---- C:\Windows\system32\odbctrac.dll
2012-02-29 12:09:05 ----A---- C:\Windows\system32\odbccu32.dll
2012-02-29 12:09:05 ----A---- C:\Windows\system32\odbccr32.dll
2012-02-29 12:09:05 ----A---- C:\Windows\system32\odbccp32.dll
2012-02-29 12:09:04 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2012-02-29 12:09:04 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2012-02-29 12:09:00 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2012-02-29 12:09:00 ----A---- C:\Windows\system32\poqexec.exe
2012-02-29 12:08:53 ----A---- C:\Windows\SYSWOW64\explorer.exe
2012-02-29 12:08:53 ----A---- C:\Windows\explorer.exe
2012-02-29 12:08:51 ----A---- C:\Windows\SYSWOW64\sbe.dll
2012-02-29 12:08:51 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2012-02-29 12:08:51 ----A---- C:\Windows\system32\sbe.dll
2012-02-29 12:08:51 ----A---- C:\Windows\system32\CPFilters.dll
2012-02-29 12:08:44 ----A---- C:\Windows\SYSWOW64\quartz.dll
2012-02-29 12:08:44 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2012-02-29 12:08:44 ----A---- C:\Windows\system32\quartz.dll
2012-02-29 12:08:44 ----A---- C:\Windows\system32\qdvd.dll
2012-02-29 12:08:43 ----A---- C:\Windows\system32\shell32.dll
2012-02-29 12:08:42 ----A---- C:\Windows\SYSWOW64\shell32.dll
2012-02-29 12:08:42 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2012-02-29 12:08:42 ----A---- C:\Windows\system32\ntshrui.dll
2012-02-29 12:08:37 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2012-02-29 12:08:37 ----A---- C:\Windows\system32\tquery.dll
2012-02-29 12:08:37 ----A---- C:\Windows\system32\SearchIndexer.exe
2012-02-29 12:08:37 ----A---- C:\Windows\system32\mssrch.dll
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\tquery.dll
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\mssph.dll
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2012-02-29 12:08:36 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2012-02-29 12:08:36 ----A---- C:\Windows\system32\SearchFilterHost.exe
2012-02-29 12:08:36 ----A---- C:\Windows\system32\mssvp.dll
2012-02-29 12:08:36 ----A---- C:\Windows\system32\mssphtb.dll
2012-02-29 12:08:36 ----A---- C:\Windows\system32\mssph.dll
2012-02-29 12:08:36 ----A---- C:\Windows\system32\msscntrs.dll
2012-02-29 12:08:30 ----A---- C:\Windows\SYSWOW64\webio.dll
2012-02-29 12:08:30 ----A---- C:\Windows\SYSWOW64\schannel.dll
2012-02-29 12:08:30 ----A---- C:\Windows\system32\webio.dll
2012-02-29 12:08:30 ----A---- C:\Windows\system32\schannel.dll
2012-02-29 12:08:30 ----A---- C:\Windows\system32\lsass.exe
2012-02-29 12:08:30 ----A---- C:\Windows\system32\lsasrv.dll
2012-02-29 12:08:30 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2012-02-29 12:08:30 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2012-02-29 12:08:30 ----A---- C:\Windows\system32\drivers\cng.sys
2012-02-29 12:08:29 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2012-02-29 12:08:29 ----A---- C:\Windows\SYSWOW64\secur32.dll
2012-02-29 12:08:29 ----A---- C:\Windows\system32\sspisrv.dll
2012-02-29 12:08:29 ----A---- C:\Windows\system32\sspicli.dll
2012-02-29 12:08:29 ----A---- C:\Windows\system32\secur32.dll
2012-02-29 12:08:26 ----A---- C:\Windows\system32\csrsrv.dll
2012-02-29 12:08:21 ----A---- C:\Windows\SYSWOW64\xmllite.dll
2012-02-29 12:08:21 ----A---- C:\Windows\system32\xmllite.dll
2012-02-29 12:08:18 ----A---- C:\Windows\system32\drivers\tcpip.sys
2012-02-29 12:08:14 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2012-02-29 12:08:14 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2012-02-29 12:08:14 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2012-02-29 12:08:14 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2012-02-29 12:08:14 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2012-02-29 12:08:12 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2012-02-29 12:08:12 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2012-02-29 12:08:12 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2012-02-29 12:08:12 ----A---- C:\Windows\system32\fontsub.dll
2012-02-29 12:08:12 ----A---- C:\Windows\system32\atmlib.dll
2012-02-29 12:08:12 ----A---- C:\Windows\system32\atmfd.dll
2012-02-29 12:07:55 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2012-02-29 12:07:55 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2012-02-29 12:07:55 ----A---- C:\Windows\system32\mfc42u.dll
2012-02-29 12:07:55 ----A---- C:\Windows\system32\mfc42.dll
2012-02-29 12:07:51 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2012-02-29 12:07:51 ----A---- C:\Windows\system32\XpsPrint.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2012-02-29 12:07:46 ----A---- C:\Windows\SYSWOW64\wow32.dll
2012-02-29 12:07:46 ----A---- C:\Windows\SYSWOW64\user.exe
2012-02-29 12:07:46 ----A---- C:\Windows\SYSWOW64\setup16.exe
2012-02-29 12:07:46 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2012-02-29 12:07:46 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2012-02-29 12:07:46 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2012-02-29 12:07:46 ----A---- C:\Windows\SYSWOW64\instnm.exe
2012-02-29 12:07:46 ----A---- C:\Windows\system32\wow64win.dll
2012-02-29 12:07:46 ----A---- C:\Windows\system32\wow64cpu.dll
2012-02-29 12:07:46 ----A---- C:\Windows\system32\wow64.dll
2012-02-29 12:07:46 ----A---- C:\Windows\system32\winsrv.dll
2012-02-29 12:07:46 ----A---- C:\Windows\system32\ntvdm64.dll
2012-02-29 12:07:46 ----A---- C:\Windows\system32\KernelBase.dll
2012-02-29 12:07:46 ----A---- C:\Windows\system32\kernel32.dll
2012-02-29 12:07:46 ----A---- C:\Windows\system32\conhost.exe
2012-02-29 12:07:13 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe
2012-02-29 12:07:13 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2012-02-29 12:07:13 ----A---- C:\Windows\system32\dnsrslvr.dll
2012-02-29 12:07:13 ----A---- C:\Windows\system32\dnscacheugc.exe
2012-02-29 12:07:13 ----A---- C:\Windows\system32\dnsapi.dll
2012-02-29 12:06:39 ----A---- C:\Windows\system32\winresume.exe
2012-02-29 12:06:39 ----A---- C:\Windows\system32\winload.exe
2012-02-29 12:06:39 ----A---- C:\Windows\system32\kdusb.dll
2012-02-29 12:06:39 ----A---- C:\Windows\system32\kdcom.dll
2012-02-29 12:06:39 ----A---- C:\Windows\system32\kd1394.dll
2012-02-29 12:06:35 ----A---- C:\Windows\system32\drivers\srvnet.sys
2012-02-29 12:06:35 ----A---- C:\Windows\system32\drivers\srv2.sys
2012-02-29 12:06:35 ----A---- C:\Windows\system32\drivers\srv.sys
2012-02-29 12:06:27 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2012-02-29 12:06:27 ----A---- C:\Windows\system32\d3d10_1.dll
2012-02-29 12:06:26 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2012-02-29 12:06:25 ----A---- C:\Windows\system32\drivers\afd.sys
2012-02-29 12:06:24 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2012-02-29 12:06:24 ----A---- C:\Windows\system32\psisdecd.dll
2012-02-29 12:06:20 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2012-02-29 12:06:20 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2012-02-29 12:06:20 ----A---- C:\Windows\SYSWOW64\devobj.dll
2012-02-29 12:06:20 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2012-02-29 12:06:20 ----A---- C:\Windows\system32\umpnpmgr.dll
2012-02-29 12:06:20 ----A---- C:\Windows\system32\FXSCOVER.exe
2012-02-29 12:04:25 ----D---- C:\Windows\SYSWOW64\drivers\sk-SK
2012-02-29 12:04:23 ----D---- C:\Windows\sk-SK
2012-02-29 12:04:21 ----D---- C:\Windows\system32\drivers\sk-SK
2012-02-29 11:58:33 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2012-02-29 11:58:33 ----A---- C:\Windows\SYSWOW64\packager.dll
2012-02-29 11:58:33 ----A---- C:\Windows\system32\prevhost.exe
2012-02-29 11:58:33 ----A---- C:\Windows\system32\packager.dll
2012-02-29 11:57:18 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2012-02-29 11:57:18 ----A---- C:\Windows\system32\EncDec.dll
2012-02-29 11:56:54 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2012-02-29 11:56:54 ----A---- C:\Windows\system32\msvcrt.dll
2012-02-29 11:56:53 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2012-02-29 11:56:53 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2012-02-29 11:56:53 ----A---- C:\Windows\system32\ntdll.dll
2012-02-29 11:56:53 ----A---- C:\Windows\system32\inetcomm.dll
2012-02-29 11:56:52 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2012-02-29 11:56:52 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2012-02-29 11:56:52 ----A---- C:\Windows\system32\oleaut32.dll
2012-02-29 11:56:52 ----A---- C:\Windows\system32\oleacc.dll
2012-02-29 11:56:51 ----A---- C:\Windows\system32\drivers\bowser.sys
2012-02-29 11:43:03 ----SHD---- C:\Windows\Installer
2012-02-29 11:42:11 ----D---- C:\Program Files\NVIDIA Corporation
2012-02-29 11:41:54 ----D---- C:\NVIDIA
2012-02-29 11:20:20 ----D---- C:\Users\stillpro\AppData\Roaming\Macromedia
2012-02-29 11:20:20 ----D---- C:\Users\stillpro\AppData\Roaming\Adobe
2012-02-29 11:20:17 ----D---- C:\Windows\SYSWOW64\Macromed
2012-02-29 11:19:17 ----D---- C:\Users\stillpro\AppData\Roaming\Mozilla
2012-02-29 11:19:14 ----D---- C:\Program Files (x86)\Mozilla Firefox
2012-02-29 11:17:50 ----D---- C:\Users\stillpro\AppData\Roaming\Identities
2012-02-29 11:17:35 ----SD---- C:\Users\stillpro\AppData\Roaming\Microsoft
2012-02-29 11:17:35 ----D---- C:\Users\stillpro\AppData\Roaming\Media Center Programs
2012-02-29 11:16:30 ----D---- C:\Windows\SYSWOW64\Wat
2012-02-29 11:16:30 ----D---- C:\Windows\system32\Wat
2012-02-29 11:15:24 ----SHD---- C:\Recovery
2012-02-29 11:15:21 ----D---- C:\Windows\SoftwareDistribution
2012-02-29 11:10:02 ----D---- C:\Windows\Prefetch
2012-02-29 11:09:34 ----ASH---- C:\pagefile.sys
2012-02-29 11:09:33 ----ASH---- C:\hiberfil.sys
2012-02-29 11:09:32 ----SHD---- C:\System Volume Information
2012-02-16 16:37:48 ----A---- C:\settings.ini
======List of files/folders modified in the last 1 month======
2012-03-15 21:32:47 ----D---- C:\Windows\Tasks
2012-03-15 21:32:47 ----D---- C:\Windows\system32\wfp
2012-03-15 21:32:46 ----D---- C:\Windows\system32\wbem
2012-03-15 21:32:46 ----D---- C:\Windows\system32\CodeIntegrity
2012-03-15 21:32:44 ----D---- C:\Windows\registration
2012-03-15 21:14:26 ----D---- C:\Windows\Temp
2012-03-15 20:59:11 ----D---- C:\Windows\System32
2012-03-15 20:59:11 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-03-15 20:59:10 ----D---- C:\Windows\inf
2012-03-15 20:58:33 ----D---- C:\Windows
2012-03-15 20:02:49 ----D---- C:\Windows\system32\catroot2
2012-03-15 19:16:57 ----D---- C:\Windows\system32\config
2012-03-15 19:07:21 ----D---- C:\Windows\system32\drivers
2012-03-15 19:07:20 ----D---- C:\Windows\system32\DriverStore
2012-03-15 19:07:20 ----D---- C:\Windows\system32\catroot
2012-03-15 15:44:25 ----D---- C:\Program Files (x86)\Common Files
2012-03-15 12:51:38 ----D---- C:\Windows\Logs
2012-03-15 12:49:43 ----RD---- C:\Program Files
2012-03-15 12:49:43 ----D---- C:\Program Files\Common Files
2012-03-15 12:48:12 ----D---- C:\Windows\winsxs
2012-03-15 12:46:59 ----D---- C:\Windows\SysWOW64
2012-03-15 12:40:34 ----RD---- C:\Program Files (x86)
2012-03-15 12:40:33 ----HD---- C:\ProgramData
2012-03-15 12:39:48 ----D---- C:\Windows\system32\Tasks
2012-03-15 12:35:28 ----D---- C:\Windows\SYSWOW64\drivers
2012-03-14 22:43:19 ----D---- C:\Windows\security
2012-03-14 21:44:07 ----RD---- C:\Users
2012-03-14 14:27:02 ----RSD---- C:\Windows\assembly
2012-03-14 14:27:00 ----D---- C:\Windows\Microsoft.NET
2012-03-14 14:20:33 ----D---- C:\Windows\Help
2012-03-13 23:31:00 ----D---- C:\Windows\system32\LogFiles
2012-03-13 20:31:15 ----D---- C:\Windows\system32\wdi
2012-03-09 17:19:34 ----D---- C:\Windows\rescache
2012-03-09 08:54:05 ----D---- C:\Windows\SYSWOW64\sk-SK
2012-03-09 08:54:05 ----D---- C:\Program Files\Internet Explorer
2012-03-09 08:54:05 ----D---- C:\Program Files (x86)\Internet Explorer
2012-03-09 08:54:04 ----D---- C:\Windows\system32\sk-SK
2012-03-09 08:54:03 ----D---- C:\Windows\SYSWOW64\migration
2012-03-09 08:54:03 ----D---- C:\Windows\SYSWOW64\en-US
2012-03-09 08:54:01 ----D---- C:\Windows\system32\migration
2012-03-09 08:54:01 ----D---- C:\Windows\system32\en-US
2012-03-09 08:54:01 ----D---- C:\Windows\PolicyDefinitions
2012-03-05 11:22:01 ----D---- C:\Program Files (x86)\MSBuild
2012-03-05 11:21:56 ----D---- C:\Windows\ShellNew
2012-03-05 11:21:49 ----RSD---- C:\Windows\Fonts
2012-03-05 11:21:46 ----SD---- C:\ProgramData\Microsoft
2012-03-05 11:21:14 ----D---- C:\Program Files\Common Files\Microsoft Shared
2012-03-05 11:20:10 ----A---- C:\Windows\win.ini
2012-02-29 22:04:39 ----D---- C:\Windows\system32\drivers\UMDF
2012-02-29 20:08:18 ----D---- C:\Windows\Setup
2012-02-29 14:40:52 ----D---- C:\Windows\LiveKernelReports
2012-02-29 13:58:28 ----D---- C:\Windows\Downloaded Program Files
2012-02-29 13:33:00 ----D---- C:\Program Files\Common Files\System
2012-02-29 13:32:59 ----D---- C:\Windows\ehome
2012-02-29 13:32:58 ----D---- C:\Windows\AppPatch
2012-02-29 13:32:56 ----D---- C:\Windows\system32\Boot
2012-02-29 13:27:57 ----D---- C:\Windows\debug
2012-02-29 12:04:27 ----D---- C:\Program Files\Windows Sidebar
2012-02-29 12:04:26 ----D---- C:\Windows\SYSWOW64\migwiz
2012-02-29 12:04:26 ----D---- C:\Windows\servicing
2012-02-29 12:04:26 ----D---- C:\Program Files\Windows Photo Viewer
2012-02-29 12:04:26 ----D---- C:\Program Files\Windows Media Player
2012-02-29 12:04:26 ----D---- C:\Program Files\Windows Mail
2012-02-29 12:04:26 ----D---- C:\Program Files\Windows Journal
2012-02-29 12:04:26 ----D---- C:\Program Files\Windows Defender
2012-02-29 12:04:26 ----D---- C:\Program Files\DVD Maker
2012-02-29 12:04:26 ----D---- C:\Program Files (x86)\Windows Sidebar
2012-02-29 12:04:26 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2012-02-29 12:04:26 ----D---- C:\Program Files (x86)\Windows Media Player
2012-02-29 12:04:26 ----D---- C:\Program Files (x86)\Windows Mail
2012-02-29 12:04:26 ----D---- C:\Program Files (x86)\Windows Defender
2012-02-29 12:04:25 ----D---- C:\Windows\SYSWOW64\WCN
2012-02-29 12:04:24 ----D---- C:\Windows\SYSWOW64\wbem
2012-02-29 12:04:23 ----D---- C:\Windows\system32\sysprep
2012-02-29 12:04:23 ----D---- C:\Windows\system32\oobe
2012-02-29 12:04:23 ----D---- C:\Windows\system32\migwiz
2012-02-29 12:04:21 ----D---- C:\Windows\system32\WCN
2012-02-29 11:17:48 ----SHD---- C:\$Recycle.Bin
2012-02-29 11:16:15 ----D---- C:\Windows\system32\restore
2012-02-29 11:09:58 ----D---- C:\Windows\CSC
2012-02-23 09:18:36 ----N---- C:\Windows\system32\MpSigStub.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 AtiPcie;AMD PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie.sys [2009-05-07 16440]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 SymEFA;Symantec Extended File Attributes; C:\Windows\system32\drivers\NISx64\1007000.01E\SYMEFA64.SYS [2012-03-15 402992]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2012-03-13 13368]
R1 BHDrvx64;Symantec Heuristics Driver; C:\Windows\system32\drivers\NISx64\1007000.01E\BHDrvx64.sys [2012-03-15 334384]
R1 ccHP;Symantec Hash Provider; C:\Windows\system32\drivers\NISx64\1007000.01E\ccHPx64.sys [2012-03-15 583296]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2012-03-05 283200]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2012-03-14 482936]
R1 IDSVia64;IDSVia64; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\ipsdefs\20120315.002\IDSvia64.sys [2012-03-15 488568]
R1 SRTSPX;Symantec Real Time Storage Protection (PEL) x64; C:\Windows\system32\drivers\NISx64\1007000.01E\SRTSPX64.SYS [2012-03-15 32304]
R1 SymIM;Symantec Network Security Intermediate Filter Driver; C:\Windows\system32\DRIVERS\SymIMv.sys [2012-03-15 31280]
R1 SYMTDI;Symantec Network Dispatch Driver; C:\Windows\system32\drivers\NISx64\1007000.01E\SYMTDI.SYS [2012-03-15 278576]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2012-03-14 138360]
R3 L1C;NDIS Miniport Driver for Atheros AR8131/AR8132 PCI-E Ethernet Controller (NDIS 6.20); C:\Windows\system32\DRIVERS\L1C62x64.sys [2009-07-28 58880]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2009-07-16 15416]
R3 NAVENG;NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20120315.002\ENG64.SYS [2012-03-14 117880]
R3 NAVEX15;NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20120315.002\EX64.SYS [2012-03-14 2048632]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2012-01-17 188224]
R3 SRTSP;Symantec Real Time Storage Protection x64; C:\Windows\system32\drivers\NISx64\1007000.01E\SRTSP64.SYS [2012-03-15 476720]
R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [2012-03-15 172592]
R3 SYMFW;Symantec Network Filter Driver; C:\Windows\system32\drivers\NISx64\1007000.01E\SYMFW.SYS [2012-03-15 120880]
R3 SYMNDISV;Symantec Network Filter Driver; C:\Windows\system32\drivers\NISx64\1007000.01E\SYMNDISV.SYS [2012-03-15 56880]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service; C:\Windows\system32\drivers\viahduaa.sys [2009-08-18 1235968]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-21 20992]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys [2010-11-21 88960]
S3 terminpt;Microsoft Remote Desktop Input Driver; C:\Windows\system32\drivers\terminpt.sys [2010-11-21 34816]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys [2010-11-21 117248]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 Norton Internet Security;Norton Internet Security; C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\ccSvcHst.exe [2012-03-15 117640]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2012-02-10 889664]
R3 XoftSpyService;XoftSpyService; C:\Program Files (x86)\Common Files\XoftSpySE\6\xoftspyservice.exe [2009-08-28 582424]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-03-14 136176]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-03-14 136176]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-02-29 1255736]
-----------------EOF-----------------
Logfile of random's system information tool 1.09 (written by random/random)
Run by stillpro at 2012-03-15 21:14:24
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 24 GB (48%) free of 50 GB
Total RAM: 4095 MB (63% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:14:31, on 15/03/2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\ASUS\EPU-4 Engine\FourEngine.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\XoftSpySE6\XoftSpySE.exe
C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\ccSvcHst.exe
C:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files\trend micro\stillpro.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.babylon.com/?AF=100996&ba ... cb4e0088d3
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\coIEPlg.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\IPSBHO.DLL
O2 - BHO: TheBflix - {76309156-27C8-4241-BA08-220715B1E812} - C:\ProgramData\TheBflix\bhoclass.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\coIEPlg.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [XoftSpySE] "C:\Program Files (x86)\XoftSpySE6\XoftSpySE.exe" -NM -hidesplash
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files (x86)\PokerStars\PokerStarsUpdate.exe (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: symres - {AA1061FE-6C41-421F-9344-69640C9732AB} - C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\coIEPlg.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Norton Internet Security - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\ccSvcHst.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: XoftSpyService - ParetoLogic Inc. - C:\Program Files (x86)\Common Files\XoftSpySE\6\xoftspyservice.exe
--
End of file - 7641 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\Explorer.EXE
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\ccSvcHst.exe" /s "Norton Internet Security" /m "C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\diMaster.dll" /prefetch:1
C:\Windows\system32\svchost.exe -k imgsvc
taskeng.exe {BEF0BC44-E193-431E-A209-2777AE3A24FF}
"C:\Program Files (x86)\ASUS\EPU-4 Engine\FourEngine.exe" -b
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\XoftSpySE6\XoftSpySE.exe" -NM -hidesplash
"C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe" -r
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\ccSvcHst.exe" /c /a /s UserSession
"C:\Program Files (x86)\Common Files\XoftSpySE\6\xoftspyservice.exe"
"C:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe" /SILENT
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=3452.f6606c0.73613785 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll" Mozilla.Firefox.8.0.1 -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.jar" 3452 "\\.\pipe\gecko-crash-server-pipe.3452" plugin
C:\Windows\system32\AUDIODG.EXE 0x454
"D:\downloadss\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\ParetoLogic Update Version3.job
C:\Windows\tasks\RegInOut Scheduled Scan - stillpro.job
C:\Windows\tasks\XoftSpySE.job
=========Mozilla firefox=========
ProfilePath - C:\Users\stillpro\AppData\Roaming\Mozilla\Firefox\Profiles\53vxz5j2.default
prefs.js - "browser.startup.homepage" - "http://search.babylon.com/?AF=100996&ba ... cb4e0088d3"
prefs.js - "keyword.URL" - "http://search.babylon.com/?AF=100996&ba ... e0088d3&q="
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA}
C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
C:\Program Files (x86)\Mozilla Firefox\searchplugins\
babylon.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
C:\Users\stillpro\AppData\Roaming\Mozilla\Firefox\Profiles\53vxz5j2.default\extensions\
info@bflix.info
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-06-06 63912]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Symantec NCO BHO - C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\coIEPlg.dll [2012-03-15 378736]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Symantec Intrusion Prevention - C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\IPSBHO.DLL [2012-03-15 107896]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{76309156-27C8-4241-BA08-220715B1E812}]
TheBflix Class - C:\ProgramData\TheBflix\bhoclass.dll [2012-02-23 141824]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\coIEPlg.dll [2012-03-15 378736]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2011-04-18 15146376]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2012-02-13 3481408]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-06-06 937920]
"XoftSpySE"=C:\Program Files (x86)\XoftSpySE6\XoftSpySE.exe [2009-09-05 3399168]
"HDAudDeck"=C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2009-08-29 2252800]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SymEFA.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SymEFA.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"wave8"=wdmaud.drv
"midi8"=wdmaud.drv
"mixer8"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2012-03-15 17:16:58 ----A---- C:\Windows\ntbtlog.txt
2012-03-15 12:49:47 ----RA---- C:\Windows\system32\drivers\SymIMV.sys
2012-03-15 12:49:43 ----D---- C:\Program Files\Symantec
2012-03-15 12:49:43 ----D---- C:\Program Files\Common Files\Symantec Shared
2012-03-15 12:49:43 ----A---- C:\Windows\system32\drivers\SYMEVENT64x86.SYS
2012-03-15 12:46:23 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-03-15 12:46:22 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2012-03-15 12:46:21 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2012-03-15 12:40:34 ----D---- C:\Windows\system32\drivers\NISx64
2012-03-15 12:40:34 ----D---- C:\Program Files (x86)\Norton Internet Security
2012-03-15 12:40:33 ----D---- C:\ProgramData\Norton
2012-03-15 12:39:51 ----D---- C:\ProgramData\NortonInstaller
2012-03-15 12:39:51 ----D---- C:\Program Files (x86)\NortonInstaller
2012-03-15 12:39:13 ----A---- C:\Windows\system32\drivers\L1C62x64.sys
2012-03-15 12:38:56 ----D---- C:\Windows\SYSWOW64\Atheros_L1e
2012-03-15 12:38:10 ----A---- C:\Windows\system32\VIASysFx.dll
2012-03-15 12:38:10 ----A---- C:\Windows\system32\VIAPropPageExt.dll
2012-03-15 12:38:10 ----A---- C:\Windows\system32\ViaMicArrayPropPageExt.dll
2012-03-15 12:38:10 ----A---- C:\Windows\system32\ViaMicArrayAPO.dll
2012-03-15 12:38:10 ----A---- C:\Windows\system32\nQPropPageExt.dll
2012-03-15 12:38:10 ----A---- C:\Windows\system32\nQAPO.dll
2012-03-15 12:38:10 ----A---- C:\Windows\system32\Dts2PropPageExt.dll
2012-03-15 12:38:10 ----A---- C:\Windows\system32\drivers\viahduaa.sys
2012-03-15 12:38:03 ----N---- C:\Windows\difxapi.dll
2012-03-15 12:38:01 ----D---- C:\Program Files (x86)\VIA
2012-03-15 12:37:21 ----A---- C:\Windows\system32\drivers\AtiPcie.sys
2012-03-15 12:37:00 ----D---- C:\Program Files\ATI
2012-03-15 12:36:34 ----A---- C:\Windows\system32\win32k.sys
2012-03-15 12:36:32 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2012-03-15 12:36:32 ----A---- C:\Windows\system32\DWrite.dll
2012-03-15 12:36:22 ----A---- C:\Windows\system32\rdrmemptylst.exe
2012-03-15 12:36:22 ----A---- C:\Windows\system32\rdpwsx.dll
2012-03-15 12:36:22 ----A---- C:\Windows\system32\rdpcorekmts.dll
2012-03-15 12:36:01 ----A---- C:\Windows\Ascd_log.ini
2012-03-15 12:35:58 ----A---- C:\Windows\system32\rdpcorets.dll
2012-03-15 12:35:58 ----A---- C:\Windows\system32\rdpcore.dll
2012-03-15 12:35:57 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2012-03-15 12:35:57 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2012-03-15 12:35:57 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2012-03-15 12:35:35 ----A---- C:\Windows\Language_trs.ini
2012-03-15 12:35:29 ----A---- C:\Windows\Ascd_tmp.ini
2012-03-14 19:34:43 ----D---- C:\ProgramData\RegInOut
2012-03-14 19:34:42 ----D---- C:\Windows\RegInOut System Utilities
2012-03-14 19:34:32 ----D---- C:\Program Files (x86)\RegInOut
2012-03-14 14:42:43 ----D---- C:\Program Files\WhoCrashed
2012-03-14 14:27:20 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2012-03-14 14:27:20 ----A---- C:\Windows\system32\XAudio2_5.dll
2012-03-14 14:27:19 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2012-03-14 14:27:19 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2012-03-14 14:27:19 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2012-03-14 14:27:19 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2012-03-14 14:27:19 ----A---- C:\Windows\system32\xactengine3_5.dll
2012-03-14 14:27:19 ----A---- C:\Windows\system32\d3dx11_42.dll
2012-03-14 14:27:19 ----A---- C:\Windows\system32\d3dcsx_42.dll
2012-03-14 14:27:19 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2012-03-14 14:27:18 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2012-03-14 14:27:18 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2012-03-14 14:27:18 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2012-03-14 14:27:18 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2012-03-14 14:27:18 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2012-03-14 14:27:18 ----A---- C:\Windows\system32\D3DX9_42.dll
2012-03-14 14:27:18 ----A---- C:\Windows\system32\D3DX9_41.dll
2012-03-14 14:27:18 ----A---- C:\Windows\system32\d3dx10_42.dll
2012-03-14 14:27:18 ----A---- C:\Windows\system32\d3dx10_41.dll
2012-03-14 14:27:18 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2012-03-14 14:27:17 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2012-03-14 14:27:17 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2012-03-14 14:27:17 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2012-03-14 14:27:17 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2012-03-14 14:27:17 ----A---- C:\Windows\system32\XAudio2_4.dll
2012-03-14 14:27:17 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2012-03-14 14:27:17 ----A---- C:\Windows\system32\xactengine3_4.dll
2012-03-14 14:27:17 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2012-03-14 14:27:16 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2012-03-14 14:27:16 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2012-03-14 14:27:16 ----A---- C:\Windows\system32\d3dx10_40.dll
2012-03-14 14:27:16 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2012-03-14 14:27:15 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2012-03-14 14:27:15 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2012-03-14 14:27:15 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2012-03-14 14:27:15 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2012-03-14 14:27:15 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2012-03-14 14:27:15 ----A---- C:\Windows\system32\XAudio2_3.dll
2012-03-14 14:27:15 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2012-03-14 14:27:15 ----A---- C:\Windows\system32\xactengine3_3.dll
2012-03-14 14:27:15 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2012-03-14 14:27:15 ----A---- C:\Windows\system32\D3DX9_40.dll
2012-03-14 14:27:14 ----A---- C:\Windows\system32\XAudio2_2.dll
2012-03-14 14:27:14 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2012-03-14 14:27:13 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2012-03-14 14:27:13 ----A---- C:\Windows\system32\xactengine3_2.dll
2012-03-14 14:27:13 ----A---- C:\Windows\system32\d3dx10_39.dll
2012-03-14 14:27:13 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2012-03-14 14:27:12 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2012-03-14 14:27:12 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2012-03-14 14:27:12 ----A---- C:\Windows\system32\XAudio2_1.dll
2012-03-14 14:27:12 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2012-03-14 14:27:12 ----A---- C:\Windows\system32\D3DX9_39.dll
2012-03-14 14:27:11 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2012-03-14 14:27:11 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2012-03-14 14:27:11 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2012-03-14 14:27:11 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2012-03-14 14:27:11 ----A---- C:\Windows\system32\xactengine3_1.dll
2012-03-14 14:27:11 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2012-03-14 14:27:11 ----A---- C:\Windows\system32\d3dx10_38.dll
2012-03-14 14:27:11 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2012-03-14 14:27:10 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2012-03-14 14:27:10 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2012-03-14 14:27:10 ----A---- C:\Windows\system32\XAudio2_0.dll
2012-03-14 14:27:10 ----A---- C:\Windows\system32\D3DX9_38.dll
2012-03-14 14:27:09 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2012-03-14 14:27:09 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2012-03-14 14:27:09 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2012-03-14 14:27:09 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2012-03-14 14:27:09 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2012-03-14 14:27:09 ----A---- C:\Windows\system32\xactengine3_0.dll
2012-03-14 14:27:09 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2012-03-14 14:27:09 ----A---- C:\Windows\system32\D3DX9_37.dll
2012-03-14 14:27:09 ----A---- C:\Windows\system32\d3dx10_37.dll
2012-03-14 14:27:09 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2012-03-14 14:27:08 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2012-03-14 14:27:08 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2012-03-14 14:27:08 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2012-03-14 14:27:08 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2012-03-14 14:27:08 ----A---- C:\Windows\system32\xactengine2_10.dll
2012-03-14 14:27:08 ----A---- C:\Windows\system32\d3dx9_36.dll
2012-03-14 14:27:08 ----A---- C:\Windows\system32\d3dx10_36.dll
2012-03-14 14:27:08 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2012-03-14 14:27:07 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2012-03-14 14:27:07 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2012-03-14 14:27:07 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2012-03-14 14:27:07 ----A---- C:\Windows\system32\xactengine2_9.dll
2012-03-14 14:27:07 ----A---- C:\Windows\system32\d3dx10_35.dll
2012-03-14 14:27:07 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2012-03-14 14:27:06 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2012-03-14 14:27:06 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2012-03-14 14:27:06 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2012-03-14 14:27:06 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2012-03-14 14:27:06 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2012-03-14 14:27:06 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2012-03-14 14:27:06 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2012-03-14 14:27:06 ----A---- C:\Windows\system32\xinput1_3.dll
2012-03-14 14:27:06 ----A---- C:\Windows\system32\xactengine2_8.dll
2012-03-14 14:27:06 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2012-03-14 14:27:06 ----A---- C:\Windows\system32\d3dx9_35.dll
2012-03-14 14:27:06 ----A---- C:\Windows\system32\d3dx9_34.dll
2012-03-14 14:27:06 ----A---- C:\Windows\system32\d3dx10_34.dll
2012-03-14 14:27:06 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2012-03-14 14:27:05 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2012-03-14 14:27:05 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2012-03-14 14:27:05 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2012-03-14 14:27:05 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2012-03-14 14:27:05 ----A---- C:\Windows\system32\xactengine2_7.dll
2012-03-14 14:27:05 ----A---- C:\Windows\system32\d3dx9_33.dll
2012-03-14 14:27:05 ----A---- C:\Windows\system32\d3dx10_33.dll
2012-03-14 14:27:05 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2012-03-14 14:27:04 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2012-03-14 14:27:04 ----A---- C:\Windows\system32\xactengine2_6.dll
2012-03-14 14:27:03 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2012-03-14 14:27:03 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2012-03-14 14:27:03 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2012-03-14 14:27:03 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2012-03-14 14:27:03 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2012-03-14 14:27:03 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2012-03-14 14:27:03 ----A---- C:\Windows\system32\xactengine2_5.dll
2012-03-14 14:27:03 ----A---- C:\Windows\system32\xactengine2_4.dll
2012-03-14 14:27:03 ----A---- C:\Windows\system32\x3daudio1_1.dll
2012-03-14 14:27:03 ----A---- C:\Windows\system32\d3dx9_32.dll
2012-03-14 14:27:03 ----A---- C:\Windows\system32\d3dx9_31.dll
2012-03-14 14:27:03 ----A---- C:\Windows\system32\d3dx10.dll
2012-03-14 14:27:02 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2012-03-14 14:27:02 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2012-03-14 14:27:02 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2012-03-14 14:27:02 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2012-03-14 14:27:02 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2012-03-14 14:27:02 ----A---- C:\Windows\system32\xinput1_2.dll
2012-03-14 14:27:02 ----A---- C:\Windows\system32\xinput1_1.dll
2012-03-14 14:27:02 ----A---- C:\Windows\system32\xactengine2_3.dll
2012-03-14 14:27:02 ----A---- C:\Windows\system32\xactengine2_2.dll
2012-03-14 14:27:02 ----A---- C:\Windows\system32\xactengine2_1.dll
2012-03-14 14:26:59 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2012-03-14 14:26:59 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2012-03-14 14:26:59 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2012-03-14 14:26:59 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2012-03-14 14:26:59 ----A---- C:\Windows\system32\xactengine2_0.dll
2012-03-14 14:26:59 ----A---- C:\Windows\system32\x3daudio1_0.dll
2012-03-14 14:26:59 ----A---- C:\Windows\system32\d3dx9_30.dll
2012-03-14 14:26:59 ----A---- C:\Windows\system32\d3dx9_29.dll
2012-03-14 14:26:58 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2012-03-14 14:26:58 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2012-03-14 14:26:58 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2012-03-14 14:26:58 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2012-03-14 14:26:58 ----A---- C:\Windows\system32\d3dx9_28.dll
2012-03-14 14:26:58 ----A---- C:\Windows\system32\d3dx9_27.dll
2012-03-14 14:26:58 ----A---- C:\Windows\system32\d3dx9_26.dll
2012-03-14 14:26:58 ----A---- C:\Windows\system32\d3dx9_25.dll
2012-03-14 14:26:57 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2012-03-14 14:26:57 ----A---- C:\Windows\system32\d3dx9_24.dll
2012-03-14 14:20:41 ----A---- C:\Windows\system32\nvvsvc.exe
2012-03-14 14:20:41 ----A---- C:\Windows\system32\nvsvc64.dll
2012-03-14 14:20:41 ----A---- C:\Windows\system32\nvshext.dll
2012-03-14 14:20:41 ----A---- C:\Windows\system32\nvmctray.dll
2012-03-14 14:20:41 ----A---- C:\Windows\system32\nvcpl.dll
2012-03-14 14:20:04 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2012-03-14 14:20:04 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2012-03-14 14:20:04 ----A---- C:\Windows\system32\OpenCL.dll
2012-03-14 14:20:04 ----A---- C:\Windows\system32\nvwgf2umx.dll
2012-03-14 14:20:04 ----A---- C:\Windows\system32\nvhdap64.dll
2012-03-14 14:20:04 ----A---- C:\Windows\system32\nvhdagenco6420103.dll
2012-03-14 14:20:04 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2012-03-14 14:20:03 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2012-03-14 14:20:03 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2012-03-14 14:20:03 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2012-03-14 14:20:03 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2012-03-14 14:20:03 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2012-03-14 14:20:03 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2012-03-14 14:20:03 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2012-03-14 14:20:03 ----A---- C:\Windows\system32\nvoglv64.dll
2012-03-14 14:20:03 ----A---- C:\Windows\system32\nvgenco64.dll
2012-03-14 14:20:03 ----A---- C:\Windows\system32\nvdispco64.dll
2012-03-14 14:20:03 ----A---- C:\Windows\system32\nvd3dumx.dll
2012-03-14 14:20:03 ----A---- C:\Windows\system32\nvcuvid.dll
2012-03-14 14:20:03 ----A---- C:\Windows\system32\nvcuvenc.dll
2012-03-14 14:20:03 ----A---- C:\Windows\system32\nvcuda.dll
2012-03-14 14:20:03 ----A---- C:\Windows\system32\nvcompiler.dll
2012-03-14 14:20:03 ----A---- C:\Windows\system32\nvapi64.dll
2012-03-14 14:20:03 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2012-03-14 14:00:02 ----D---- C:\Users\stillpro\AppData\Roaming\ESET
2012-03-14 13:59:10 ----D---- C:\ProgramData\ESET
2012-03-14 13:59:10 ----D---- C:\Program Files\ESET
2012-03-14 13:58:05 ----D---- C:\Program Files (x86)\ESET
2012-03-14 13:50:51 ----D---- C:\Minidump
2012-03-14 13:45:34 ----D---- C:\ProgramData\ParetoLogic
2012-03-14 13:45:31 ----D---- C:\ProgramData\XoftSpySE
2012-03-14 13:45:30 ----D---- C:\Program Files (x86)\XoftSpySE6
2012-03-14 13:45:10 ----D---- C:\Users\stillpro\AppData\Roaming\WinRAR
2012-03-14 13:45:00 ----D---- C:\Program Files (x86)\WinRAR
2012-03-14 13:14:25 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2012-03-14 13:00:33 ----D---- C:\ProgramData\Sun
2012-03-14 13:00:18 ----D---- C:\Program Files (x86)\Java
2012-03-14 01:21:08 ----D---- C:\ProgramData\NVIDIA
2012-03-14 01:20:43 ----D---- C:\ProgramData\NVIDIA Corporation
2012-03-14 01:00:34 ----D---- C:\Program Files\CCleaner
2012-03-14 00:00:40 ----D---- C:\rsit
2012-03-14 00:00:40 ----D---- C:\Program Files\trend micro
2012-03-13 20:47:38 ----N---- C:\bootsqm.dat
2012-03-13 20:18:10 ----A---- C:\Windows\SYSWOW64\MSVCRTD.DLL
2012-03-13 20:18:10 ----A---- C:\Windows\SYSWOW64\mfc42d.dll
2012-03-13 20:18:06 ----A---- C:\Windows\SYSWOW64\drivers\AsIO.sys
2012-03-13 20:18:06 ----A---- C:\Windows\SYSWOW64\AsIO.dll
2012-03-13 20:18:02 ----D---- C:\Program Files (x86)\ASUS
2012-03-13 20:18:02 ----A---- C:\Windows\SYSWOW64\drivers\AsInsHelp64.sys
2012-03-13 20:18:02 ----A---- C:\Windows\SYSWOW64\drivers\AsInsHelp32.sys
2012-03-13 18:09:40 ----D---- C:\Windows\system32\appmgmt
2012-03-13 17:21:41 ----D---- C:\Program Files (x86)\Adobe
2012-03-13 17:21:08 ----D---- C:\ProgramData\Adobe
2012-03-12 20:43:17 ----D---- C:\Windows\Minidump
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\wininet.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\wextract.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\url.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\occache.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\msrating.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\msls31.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\mshta.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\jscript.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\inseng.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieui.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieakui.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieaksie.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ieakeng.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\ie4uinit.exe
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\icardie.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2012-03-09 00:15:07 ----A---- C:\Windows\SYSWOW64\admparse.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\wininet.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\webcheck.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\urlmon.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\url.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2012-03-09 00:15:07 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2012-03-09 00:15:07 ----A---- C:\Windows\system32\pngfilt.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\occache.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\msrating.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\msls31.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\mshtmler.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\mshtmled.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\mshtml.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\mshta.exe
2012-03-09 00:15:07 ----A---- C:\Windows\system32\msfeedssync.exe
2012-03-09 00:15:07 ----A---- C:\Windows\system32\msfeedsbs.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\licmgr10.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\jsproxy.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\jscript9.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\jscript.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\inseng.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\imgutil.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieUnatt.exe
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieui.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\iesysprep.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\iesetup.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\iertutil.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\iernonce.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\iepeers.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieframe.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\iedkcs32.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieapfltr.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieapfltr.dat
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieakui.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieaksie.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ieakeng.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\IEAdvpack.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\ie4uinit.exe
2012-03-09 00:15:07 ----A---- C:\Windows\system32\icardie.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\dxtrans.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\dxtmsft.dll
2012-03-09 00:15:07 ----A---- C:\Windows\system32\admparse.dll
2012-03-09 00:15:06 ----A---- C:\Windows\system32\wextract.exe
2012-03-09 00:15:06 ----A---- C:\Windows\system32\vbscript.dll
2012-03-09 00:15:06 ----A---- C:\Windows\system32\msfeeds.dll
2012-03-09 00:15:06 ----A---- C:\Windows\system32\iexpress.exe
2012-03-06 13:39:21 ----D---- C:\ProgramData\Media Center Programs
2012-03-05 12:54:01 ----D---- C:\Users\stillpro\AppData\Roaming\NVIDIA
2012-03-05 12:54:00 ----D---- C:\Users\stillpro\AppData\Roaming\LOVE
2012-03-05 11:22:09 ----D---- C:\Program Files (x86)\Microsoft Works
2012-03-05 11:21:57 ----D---- C:\Program Files (x86)\Microsoft Visual Studio
2012-03-05 11:21:46 ----D---- C:\Windows\PCHEALTH
2012-03-05 11:20:21 ----D---- C:\Program Files\Microsoft Office
2012-03-05 11:20:18 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2012-03-05 11:20:00 ----D---- C:\ProgramData\Microsoft Help
2012-03-05 11:20:00 ----D---- C:\Program Files (x86)\Microsoft Office
2012-03-05 11:19:18 ----RHD---- C:\MSOCache
2012-03-05 11:16:11 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2012-03-05 11:16:07 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2012-03-05 11:15:50 ----D---- C:\Users\stillpro\AppData\Roaming\DAEMON Tools Lite
2012-03-05 11:15:48 ----D---- C:\ProgramData\DAEMON Tools Lite
2012-03-04 16:30:53 ----D---- C:\Users\stillpro\AppData\Roaming\LolClient
2012-03-04 15:02:55 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2012-03-04 15:02:55 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2012-03-04 15:02:55 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2012-03-04 15:02:55 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2012-03-04 15:02:55 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2012-03-04 15:00:18 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2012-03-03 14:38:05 ----D---- C:\Users\stillpro\AppData\Roaming\BSplayer Pro
2012-03-03 14:38:05 ----D---- C:\Users\stillpro\AppData\Roaming\BSplayer
2012-03-03 14:38:05 ----D---- C:\Program Files (x86)\Webteh
2012-03-03 14:12:15 ----D---- C:\Program Files (x86)\Pando Networks
2012-03-01 13:27:50 ----A---- C:\user.js
2012-03-01 13:27:44 ----D---- C:\Users\stillpro\AppData\Roaming\Babylon
2012-03-01 13:27:44 ----D---- C:\ProgramData\Babylon
2012-03-01 13:27:43 ----D---- C:\ProgramData\Premium
2012-03-01 13:27:39 ----D---- C:\ProgramData\TheBflix
2012-03-01 13:27:14 ----D---- C:\ProgramData\InstallMate
2012-03-01 10:10:30 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2012-03-01 10:10:30 ----A---- C:\Windows\system32\drivers\usbport.sys
2012-03-01 10:10:30 ----A---- C:\Windows\system32\drivers\usbohci.sys
2012-03-01 10:10:30 ----A---- C:\Windows\system32\drivers\usbhub.sys
2012-03-01 10:10:30 ----A---- C:\Windows\system32\drivers\usbehci.sys
2012-03-01 10:10:30 ----A---- C:\Windows\system32\drivers\usbd.sys
2012-03-01 10:10:30 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2012-03-01 10:10:28 ----A---- C:\Windows\system32\fsutil.exe
2012-03-01 10:10:28 ----A---- C:\Windows\system32\esent.dll
2012-03-01 10:10:28 ----A---- C:\Windows\system32\drivers\amdxata.sys
2012-03-01 10:10:27 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2012-03-01 10:10:27 ----A---- C:\Windows\SYSWOW64\esent.dll
2012-03-01 10:10:27 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2012-03-01 10:10:27 ----A---- C:\Windows\system32\drivers\storport.sys
2012-03-01 10:10:27 ----A---- C:\Windows\system32\drivers\nvstor.sys
2012-03-01 10:10:27 ----A---- C:\Windows\system32\drivers\nvraid.sys
2012-03-01 10:10:27 ----A---- C:\Windows\system32\drivers\ntfs.sys
2012-03-01 10:10:27 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2012-03-01 10:10:27 ----A---- C:\Windows\system32\drivers\amdsata.sys
2012-02-29 20:08:46 ----D---- C:\Windows\Panther
2012-02-29 20:08:34 ----RASH---- C:\BOOTSECT.BAK
2012-02-29 20:08:32 ----SHD---- C:\Boot
2012-02-29 16:27:27 ----D---- C:\Program Files (x86)\Lavalys
2012-02-29 13:58:24 ----D---- C:\Windows\system32\Macromed
2012-02-29 13:48:31 ----A---- C:\Windows\system32\FntCache.dll
2012-02-29 13:48:30 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2012-02-29 13:48:30 ----A---- C:\Windows\system32\d2d1.dll
2012-02-29 13:46:29 ----AH---- C:\ProgramData\ezsidmv.dat
2012-02-29 13:46:24 ----D---- C:\Users\stillpro\AppData\Roaming\skypePM
2012-02-29 13:46:24 ----D---- C:\ProgramData\Skype Extras
2012-02-29 13:45:46 ----D---- C:\Users\stillpro\AppData\Roaming\Skype
2012-02-29 13:45:38 ----D---- C:\Program Files (x86)\Google
2012-02-29 13:45:30 ----RD---- C:\Program Files (x86)\Skype
2012-02-29 13:45:23 ----D---- C:\ProgramData\Skype
2012-02-29 13:40:10 ----D---- C:\Program Files (x86)\Microsoft.NET
2012-02-29 13:27:56 ----A---- C:\Windows\system32\MRT.exe
2012-02-29 12:15:02 ----A---- C:\Windows\SYSWOW64\tzres.dll
2012-02-29 12:15:01 ----A---- C:\Windows\system32\tzres.dll
2012-02-29 12:14:03 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2012-02-29 12:14:03 ----A---- C:\Windows\system32\kerberos.dll
2012-02-29 12:09:05 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2012-02-29 12:09:05 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2012-02-29 12:09:05 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2012-02-29 12:09:05 ----A---- C:\Windows\system32\odbctrac.dll
2012-02-29 12:09:05 ----A---- C:\Windows\system32\odbccu32.dll
2012-02-29 12:09:05 ----A---- C:\Windows\system32\odbccr32.dll
2012-02-29 12:09:05 ----A---- C:\Windows\system32\odbccp32.dll
2012-02-29 12:09:04 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2012-02-29 12:09:04 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2012-02-29 12:09:00 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2012-02-29 12:09:00 ----A---- C:\Windows\system32\poqexec.exe
2012-02-29 12:08:53 ----A---- C:\Windows\SYSWOW64\explorer.exe
2012-02-29 12:08:53 ----A---- C:\Windows\explorer.exe
2012-02-29 12:08:51 ----A---- C:\Windows\SYSWOW64\sbe.dll
2012-02-29 12:08:51 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2012-02-29 12:08:51 ----A---- C:\Windows\system32\sbe.dll
2012-02-29 12:08:51 ----A---- C:\Windows\system32\CPFilters.dll
2012-02-29 12:08:44 ----A---- C:\Windows\SYSWOW64\quartz.dll
2012-02-29 12:08:44 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2012-02-29 12:08:44 ----A---- C:\Windows\system32\quartz.dll
2012-02-29 12:08:44 ----A---- C:\Windows\system32\qdvd.dll
2012-02-29 12:08:43 ----A---- C:\Windows\system32\shell32.dll
2012-02-29 12:08:42 ----A---- C:\Windows\SYSWOW64\shell32.dll
2012-02-29 12:08:42 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2012-02-29 12:08:42 ----A---- C:\Windows\system32\ntshrui.dll
2012-02-29 12:08:37 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2012-02-29 12:08:37 ----A---- C:\Windows\system32\tquery.dll
2012-02-29 12:08:37 ----A---- C:\Windows\system32\SearchIndexer.exe
2012-02-29 12:08:37 ----A---- C:\Windows\system32\mssrch.dll
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\tquery.dll
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\mssph.dll
2012-02-29 12:08:36 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2012-02-29 12:08:36 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2012-02-29 12:08:36 ----A---- C:\Windows\system32\SearchFilterHost.exe
2012-02-29 12:08:36 ----A---- C:\Windows\system32\mssvp.dll
2012-02-29 12:08:36 ----A---- C:\Windows\system32\mssphtb.dll
2012-02-29 12:08:36 ----A---- C:\Windows\system32\mssph.dll
2012-02-29 12:08:36 ----A---- C:\Windows\system32\msscntrs.dll
2012-02-29 12:08:30 ----A---- C:\Windows\SYSWOW64\webio.dll
2012-02-29 12:08:30 ----A---- C:\Windows\SYSWOW64\schannel.dll
2012-02-29 12:08:30 ----A---- C:\Windows\system32\webio.dll
2012-02-29 12:08:30 ----A---- C:\Windows\system32\schannel.dll
2012-02-29 12:08:30 ----A---- C:\Windows\system32\lsass.exe
2012-02-29 12:08:30 ----A---- C:\Windows\system32\lsasrv.dll
2012-02-29 12:08:30 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2012-02-29 12:08:30 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2012-02-29 12:08:30 ----A---- C:\Windows\system32\drivers\cng.sys
2012-02-29 12:08:29 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2012-02-29 12:08:29 ----A---- C:\Windows\SYSWOW64\secur32.dll
2012-02-29 12:08:29 ----A---- C:\Windows\system32\sspisrv.dll
2012-02-29 12:08:29 ----A---- C:\Windows\system32\sspicli.dll
2012-02-29 12:08:29 ----A---- C:\Windows\system32\secur32.dll
2012-02-29 12:08:26 ----A---- C:\Windows\system32\csrsrv.dll
2012-02-29 12:08:21 ----A---- C:\Windows\SYSWOW64\xmllite.dll
2012-02-29 12:08:21 ----A---- C:\Windows\system32\xmllite.dll
2012-02-29 12:08:18 ----A---- C:\Windows\system32\drivers\tcpip.sys
2012-02-29 12:08:14 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2012-02-29 12:08:14 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2012-02-29 12:08:14 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2012-02-29 12:08:14 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2012-02-29 12:08:14 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2012-02-29 12:08:12 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2012-02-29 12:08:12 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2012-02-29 12:08:12 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2012-02-29 12:08:12 ----A---- C:\Windows\system32\fontsub.dll
2012-02-29 12:08:12 ----A---- C:\Windows\system32\atmlib.dll
2012-02-29 12:08:12 ----A---- C:\Windows\system32\atmfd.dll
2012-02-29 12:07:55 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2012-02-29 12:07:55 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2012-02-29 12:07:55 ----A---- C:\Windows\system32\mfc42u.dll
2012-02-29 12:07:55 ----A---- C:\Windows\system32\mfc42.dll
2012-02-29 12:07:51 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2012-02-29 12:07:51 ----A---- C:\Windows\system32\XpsPrint.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2012-02-29 12:07:46 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2012-02-29 12:07:46 ----A---- C:\Windows\SYSWOW64\wow32.dll
2012-02-29 12:07:46 ----A---- C:\Windows\SYSWOW64\user.exe
2012-02-29 12:07:46 ----A---- C:\Windows\SYSWOW64\setup16.exe
2012-02-29 12:07:46 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2012-02-29 12:07:46 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2012-02-29 12:07:46 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2012-02-29 12:07:46 ----A---- C:\Windows\SYSWOW64\instnm.exe
2012-02-29 12:07:46 ----A---- C:\Windows\system32\wow64win.dll
2012-02-29 12:07:46 ----A---- C:\Windows\system32\wow64cpu.dll
2012-02-29 12:07:46 ----A---- C:\Windows\system32\wow64.dll
2012-02-29 12:07:46 ----A---- C:\Windows\system32\winsrv.dll
2012-02-29 12:07:46 ----A---- C:\Windows\system32\ntvdm64.dll
2012-02-29 12:07:46 ----A---- C:\Windows\system32\KernelBase.dll
2012-02-29 12:07:46 ----A---- C:\Windows\system32\kernel32.dll
2012-02-29 12:07:46 ----A---- C:\Windows\system32\conhost.exe
2012-02-29 12:07:13 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe
2012-02-29 12:07:13 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2012-02-29 12:07:13 ----A---- C:\Windows\system32\dnsrslvr.dll
2012-02-29 12:07:13 ----A---- C:\Windows\system32\dnscacheugc.exe
2012-02-29 12:07:13 ----A---- C:\Windows\system32\dnsapi.dll
2012-02-29 12:06:39 ----A---- C:\Windows\system32\winresume.exe
2012-02-29 12:06:39 ----A---- C:\Windows\system32\winload.exe
2012-02-29 12:06:39 ----A---- C:\Windows\system32\kdusb.dll
2012-02-29 12:06:39 ----A---- C:\Windows\system32\kdcom.dll
2012-02-29 12:06:39 ----A---- C:\Windows\system32\kd1394.dll
2012-02-29 12:06:35 ----A---- C:\Windows\system32\drivers\srvnet.sys
2012-02-29 12:06:35 ----A---- C:\Windows\system32\drivers\srv2.sys
2012-02-29 12:06:35 ----A---- C:\Windows\system32\drivers\srv.sys
2012-02-29 12:06:27 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2012-02-29 12:06:27 ----A---- C:\Windows\system32\d3d10_1.dll
2012-02-29 12:06:26 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2012-02-29 12:06:25 ----A---- C:\Windows\system32\drivers\afd.sys
2012-02-29 12:06:24 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2012-02-29 12:06:24 ----A---- C:\Windows\system32\psisdecd.dll
2012-02-29 12:06:20 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2012-02-29 12:06:20 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2012-02-29 12:06:20 ----A---- C:\Windows\SYSWOW64\devobj.dll
2012-02-29 12:06:20 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2012-02-29 12:06:20 ----A---- C:\Windows\system32\umpnpmgr.dll
2012-02-29 12:06:20 ----A---- C:\Windows\system32\FXSCOVER.exe
2012-02-29 12:04:25 ----D---- C:\Windows\SYSWOW64\drivers\sk-SK
2012-02-29 12:04:23 ----D---- C:\Windows\sk-SK
2012-02-29 12:04:21 ----D---- C:\Windows\system32\drivers\sk-SK
2012-02-29 11:58:33 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2012-02-29 11:58:33 ----A---- C:\Windows\SYSWOW64\packager.dll
2012-02-29 11:58:33 ----A---- C:\Windows\system32\prevhost.exe
2012-02-29 11:58:33 ----A---- C:\Windows\system32\packager.dll
2012-02-29 11:57:18 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2012-02-29 11:57:18 ----A---- C:\Windows\system32\EncDec.dll
2012-02-29 11:56:54 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2012-02-29 11:56:54 ----A---- C:\Windows\system32\msvcrt.dll
2012-02-29 11:56:53 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2012-02-29 11:56:53 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2012-02-29 11:56:53 ----A---- C:\Windows\system32\ntdll.dll
2012-02-29 11:56:53 ----A---- C:\Windows\system32\inetcomm.dll
2012-02-29 11:56:52 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2012-02-29 11:56:52 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2012-02-29 11:56:52 ----A---- C:\Windows\system32\oleaut32.dll
2012-02-29 11:56:52 ----A---- C:\Windows\system32\oleacc.dll
2012-02-29 11:56:51 ----A---- C:\Windows\system32\drivers\bowser.sys
2012-02-29 11:43:03 ----SHD---- C:\Windows\Installer
2012-02-29 11:42:11 ----D---- C:\Program Files\NVIDIA Corporation
2012-02-29 11:41:54 ----D---- C:\NVIDIA
2012-02-29 11:20:20 ----D---- C:\Users\stillpro\AppData\Roaming\Macromedia
2012-02-29 11:20:20 ----D---- C:\Users\stillpro\AppData\Roaming\Adobe
2012-02-29 11:20:17 ----D---- C:\Windows\SYSWOW64\Macromed
2012-02-29 11:19:17 ----D---- C:\Users\stillpro\AppData\Roaming\Mozilla
2012-02-29 11:19:14 ----D---- C:\Program Files (x86)\Mozilla Firefox
2012-02-29 11:17:50 ----D---- C:\Users\stillpro\AppData\Roaming\Identities
2012-02-29 11:17:35 ----SD---- C:\Users\stillpro\AppData\Roaming\Microsoft
2012-02-29 11:17:35 ----D---- C:\Users\stillpro\AppData\Roaming\Media Center Programs
2012-02-29 11:16:30 ----D---- C:\Windows\SYSWOW64\Wat
2012-02-29 11:16:30 ----D---- C:\Windows\system32\Wat
2012-02-29 11:15:24 ----SHD---- C:\Recovery
2012-02-29 11:15:21 ----D---- C:\Windows\SoftwareDistribution
2012-02-29 11:10:02 ----D---- C:\Windows\Prefetch
2012-02-29 11:09:34 ----ASH---- C:\pagefile.sys
2012-02-29 11:09:33 ----ASH---- C:\hiberfil.sys
2012-02-29 11:09:32 ----SHD---- C:\System Volume Information
2012-02-16 16:37:48 ----A---- C:\settings.ini
======List of files/folders modified in the last 1 month======
2012-03-15 21:32:47 ----D---- C:\Windows\Tasks
2012-03-15 21:32:47 ----D---- C:\Windows\system32\wfp
2012-03-15 21:32:46 ----D---- C:\Windows\system32\wbem
2012-03-15 21:32:46 ----D---- C:\Windows\system32\CodeIntegrity
2012-03-15 21:32:44 ----D---- C:\Windows\registration
2012-03-15 21:14:26 ----D---- C:\Windows\Temp
2012-03-15 20:59:11 ----D---- C:\Windows\System32
2012-03-15 20:59:11 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-03-15 20:59:10 ----D---- C:\Windows\inf
2012-03-15 20:58:33 ----D---- C:\Windows
2012-03-15 20:02:49 ----D---- C:\Windows\system32\catroot2
2012-03-15 19:16:57 ----D---- C:\Windows\system32\config
2012-03-15 19:07:21 ----D---- C:\Windows\system32\drivers
2012-03-15 19:07:20 ----D---- C:\Windows\system32\DriverStore
2012-03-15 19:07:20 ----D---- C:\Windows\system32\catroot
2012-03-15 15:44:25 ----D---- C:\Program Files (x86)\Common Files
2012-03-15 12:51:38 ----D---- C:\Windows\Logs
2012-03-15 12:49:43 ----RD---- C:\Program Files
2012-03-15 12:49:43 ----D---- C:\Program Files\Common Files
2012-03-15 12:48:12 ----D---- C:\Windows\winsxs
2012-03-15 12:46:59 ----D---- C:\Windows\SysWOW64
2012-03-15 12:40:34 ----RD---- C:\Program Files (x86)
2012-03-15 12:40:33 ----HD---- C:\ProgramData
2012-03-15 12:39:48 ----D---- C:\Windows\system32\Tasks
2012-03-15 12:35:28 ----D---- C:\Windows\SYSWOW64\drivers
2012-03-14 22:43:19 ----D---- C:\Windows\security
2012-03-14 21:44:07 ----RD---- C:\Users
2012-03-14 14:27:02 ----RSD---- C:\Windows\assembly
2012-03-14 14:27:00 ----D---- C:\Windows\Microsoft.NET
2012-03-14 14:20:33 ----D---- C:\Windows\Help
2012-03-13 23:31:00 ----D---- C:\Windows\system32\LogFiles
2012-03-13 20:31:15 ----D---- C:\Windows\system32\wdi
2012-03-09 17:19:34 ----D---- C:\Windows\rescache
2012-03-09 08:54:05 ----D---- C:\Windows\SYSWOW64\sk-SK
2012-03-09 08:54:05 ----D---- C:\Program Files\Internet Explorer
2012-03-09 08:54:05 ----D---- C:\Program Files (x86)\Internet Explorer
2012-03-09 08:54:04 ----D---- C:\Windows\system32\sk-SK
2012-03-09 08:54:03 ----D---- C:\Windows\SYSWOW64\migration
2012-03-09 08:54:03 ----D---- C:\Windows\SYSWOW64\en-US
2012-03-09 08:54:01 ----D---- C:\Windows\system32\migration
2012-03-09 08:54:01 ----D---- C:\Windows\system32\en-US
2012-03-09 08:54:01 ----D---- C:\Windows\PolicyDefinitions
2012-03-05 11:22:01 ----D---- C:\Program Files (x86)\MSBuild
2012-03-05 11:21:56 ----D---- C:\Windows\ShellNew
2012-03-05 11:21:49 ----RSD---- C:\Windows\Fonts
2012-03-05 11:21:46 ----SD---- C:\ProgramData\Microsoft
2012-03-05 11:21:14 ----D---- C:\Program Files\Common Files\Microsoft Shared
2012-03-05 11:20:10 ----A---- C:\Windows\win.ini
2012-02-29 22:04:39 ----D---- C:\Windows\system32\drivers\UMDF
2012-02-29 20:08:18 ----D---- C:\Windows\Setup
2012-02-29 14:40:52 ----D---- C:\Windows\LiveKernelReports
2012-02-29 13:58:28 ----D---- C:\Windows\Downloaded Program Files
2012-02-29 13:33:00 ----D---- C:\Program Files\Common Files\System
2012-02-29 13:32:59 ----D---- C:\Windows\ehome
2012-02-29 13:32:58 ----D---- C:\Windows\AppPatch
2012-02-29 13:32:56 ----D---- C:\Windows\system32\Boot
2012-02-29 13:27:57 ----D---- C:\Windows\debug
2012-02-29 12:04:27 ----D---- C:\Program Files\Windows Sidebar
2012-02-29 12:04:26 ----D---- C:\Windows\SYSWOW64\migwiz
2012-02-29 12:04:26 ----D---- C:\Windows\servicing
2012-02-29 12:04:26 ----D---- C:\Program Files\Windows Photo Viewer
2012-02-29 12:04:26 ----D---- C:\Program Files\Windows Media Player
2012-02-29 12:04:26 ----D---- C:\Program Files\Windows Mail
2012-02-29 12:04:26 ----D---- C:\Program Files\Windows Journal
2012-02-29 12:04:26 ----D---- C:\Program Files\Windows Defender
2012-02-29 12:04:26 ----D---- C:\Program Files\DVD Maker
2012-02-29 12:04:26 ----D---- C:\Program Files (x86)\Windows Sidebar
2012-02-29 12:04:26 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2012-02-29 12:04:26 ----D---- C:\Program Files (x86)\Windows Media Player
2012-02-29 12:04:26 ----D---- C:\Program Files (x86)\Windows Mail
2012-02-29 12:04:26 ----D---- C:\Program Files (x86)\Windows Defender
2012-02-29 12:04:25 ----D---- C:\Windows\SYSWOW64\WCN
2012-02-29 12:04:24 ----D---- C:\Windows\SYSWOW64\wbem
2012-02-29 12:04:23 ----D---- C:\Windows\system32\sysprep
2012-02-29 12:04:23 ----D---- C:\Windows\system32\oobe
2012-02-29 12:04:23 ----D---- C:\Windows\system32\migwiz
2012-02-29 12:04:21 ----D---- C:\Windows\system32\WCN
2012-02-29 11:17:48 ----SHD---- C:\$Recycle.Bin
2012-02-29 11:16:15 ----D---- C:\Windows\system32\restore
2012-02-29 11:09:58 ----D---- C:\Windows\CSC
2012-02-23 09:18:36 ----N---- C:\Windows\system32\MpSigStub.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 AtiPcie;AMD PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie.sys [2009-05-07 16440]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 SymEFA;Symantec Extended File Attributes; C:\Windows\system32\drivers\NISx64\1007000.01E\SYMEFA64.SYS [2012-03-15 402992]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2012-03-13 13368]
R1 BHDrvx64;Symantec Heuristics Driver; C:\Windows\system32\drivers\NISx64\1007000.01E\BHDrvx64.sys [2012-03-15 334384]
R1 ccHP;Symantec Hash Provider; C:\Windows\system32\drivers\NISx64\1007000.01E\ccHPx64.sys [2012-03-15 583296]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2012-03-05 283200]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2012-03-14 482936]
R1 IDSVia64;IDSVia64; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\ipsdefs\20120315.002\IDSvia64.sys [2012-03-15 488568]
R1 SRTSPX;Symantec Real Time Storage Protection (PEL) x64; C:\Windows\system32\drivers\NISx64\1007000.01E\SRTSPX64.SYS [2012-03-15 32304]
R1 SymIM;Symantec Network Security Intermediate Filter Driver; C:\Windows\system32\DRIVERS\SymIMv.sys [2012-03-15 31280]
R1 SYMTDI;Symantec Network Dispatch Driver; C:\Windows\system32\drivers\NISx64\1007000.01E\SYMTDI.SYS [2012-03-15 278576]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2012-03-14 138360]
R3 L1C;NDIS Miniport Driver for Atheros AR8131/AR8132 PCI-E Ethernet Controller (NDIS 6.20); C:\Windows\system32\DRIVERS\L1C62x64.sys [2009-07-28 58880]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2009-07-16 15416]
R3 NAVENG;NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20120315.002\ENG64.SYS [2012-03-14 117880]
R3 NAVEX15;NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20120315.002\EX64.SYS [2012-03-14 2048632]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2012-01-17 188224]
R3 SRTSP;Symantec Real Time Storage Protection x64; C:\Windows\system32\drivers\NISx64\1007000.01E\SRTSP64.SYS [2012-03-15 476720]
R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [2012-03-15 172592]
R3 SYMFW;Symantec Network Filter Driver; C:\Windows\system32\drivers\NISx64\1007000.01E\SYMFW.SYS [2012-03-15 120880]
R3 SYMNDISV;Symantec Network Filter Driver; C:\Windows\system32\drivers\NISx64\1007000.01E\SYMNDISV.SYS [2012-03-15 56880]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service; C:\Windows\system32\drivers\viahduaa.sys [2009-08-18 1235968]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-21 20992]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys [2010-11-21 88960]
S3 terminpt;Microsoft Remote Desktop Input Driver; C:\Windows\system32\drivers\terminpt.sys [2010-11-21 34816]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys [2010-11-21 117248]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 Norton Internet Security;Norton Internet Security; C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\ccSvcHst.exe [2012-03-15 117640]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2012-02-10 889664]
R3 XoftSpyService;XoftSpyService; C:\Program Files (x86)\Common Files\XoftSpySE\6\xoftspyservice.exe [2009-08-28 582424]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-03-14 136176]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-03-14 136176]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-02-29 1255736]
-----------------EOF-----------------
Re: Poprosil by som o radu , caste padanie win7 (blue sod)




- chodnik74
- Přítel fóra
- Příspěvky: 4975
- Registrován: 13 zář 2010 21:30
- Bydliště: Napajedla
- Kontaktovat uživatele:
Re: Poprosil by som o radu , caste padanie win7 (blue sod)
Omlouvám se za vstup,
ale opravdu by jste si mohl tohle chování odpustit a začít se chovat trochu příjemně a klidně. Děkuji
ale opravdu by jste si mohl tohle chování odpustit a začít se chovat trochu příjemně a klidně. Děkuji

Napiš mi: chodnik74@gmail.com nebo 
>RSIT<>MBAM<>VirusTotal
Doporučuji:
| 
Postup si raději vícekrát přečtěte a v případě jakýchkoliv nejasností či pochybností se ptejte.
Pokud máte infikovaný počítač nebo se nechová jako obvykle, tak si zálohujte všechny data a pozorně postupujte dle pokynů rádce! 
Nepoužívejte utilitu Combofix bez dohledu a doporučení rádce!
Jste s naší pomocí spokojeni
Neváhejte a podpořte forum ZDE.
Pravidla fora: č.1 a č.2

>RSIT<>MBAM<>VirusTotal
Doporučuji:








Pravidla fora: č.1 a č.2
Re: Poprosil by som o radu , caste padanie win7 (blue sod)
ja nechapem co take som urobil ze sa tu rozculujete kriste
ale kaslem na to myslel som ze tu pomahaju a nie riesia kokotiny
