Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

RSIT - Vypíná se mi NTB prosím o kontrolu

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Sauron5302
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 21 čer 2011 17:51

RSIT - Vypíná se mi NTB prosím o kontrolu

#1 Příspěvek od Sauron5302 »

Logfile of random's system information tool 1.09 (written by random/random)
Run by Petr-Adrian-Dagmar at 2012-04-14 10:51:04
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 175 GB (73%) free of 238 GB
Total RAM: 4095 MB (62% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:51:25, on 14.4.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe
C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe
C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMTray.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files\trend micro\Petr-Adrian-Dagmar.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [UpdateLBPShortCut] "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
O4 - HKLM\..\Run: [UpdateP2GoShortCut] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [Setwallpaper] c:\programdata\SetWallpaper.cmd
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Google Update] "C:\Users\Petr-Adrian-Dagmar\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: FancyStart daemon.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: ADSM Service (ADSMService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: avast! Firewall - AVAST Software - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Internet Pass-Through Service (PassThru Service) - Unknown owner - C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: SRS Volume Sync Service (SRS_VolSync_Service) - SRS Labs, Inc. - C:\Program Files\SRS Labs\SRS Premium Sound\SRS_VolSync.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 11011 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\AUDIODG.EXE 0x27c
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Windows\system32\FBAgent.exe"
"C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
atieclxx
"C:\Program Files\AVAST Software\Avast\afwServ.exe"
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE"
"C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE"
taskeng.exe {40227BE6-CB65-4677-94D6-21ED0BF5AB13}
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe"
"C:\Program Files (x86)\ASUS\ASUS CopyProtect\aspg.exe"
"C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe"
"C:\Program Files\P4G\BatteryLife.exe"
"C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe"
"C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe"
"C:\Program Files (x86)\ASUS\ATK Hotkey\HControl.exe"
Atouch64.exe
"C:\Program Files\SRS Labs\SRS Premium Sound\SRS_VolSync.exe"
ATKOSD.exe
"C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe"
KBFiltr.exe
WDC.exe
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Windows\SysWOW64\ACEngSvr.exe" -Embedding
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe"
"C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDECK.EXE" -r
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMTray.exe"
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe"
"C:\Program Files\Internet Explorer\iexplore.exe"
C:\Windows\system32\Macromed\Flash\FlashUtil64_11_2_202_233_ActiveX.exe -Embedding
"C:\Program Files\Internet Explorer\iexplore.exe" SCODEF:1672 CREDAT:203010
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-4230939595-2186652044-2116577817-10014_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-4230939595-2186652044-2116577817-10014 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\Windows\system32\SearchFilterHost.exe" 0 524 528 536 65536 532
C:\Windows\System32\svchost.exe -k WerSvcGroup
"C:\Users\Petr-Adrian-Dagmar\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4230939595-2186652044-2116577817-1001Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4230939595-2186652044-2116577817-1001UA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2012-03-07 1211776]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files\Windows Live\Family Safety\fssbho.dll [2008-12-08 68960]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-12-21 689040]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-03-26 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre6\bin\ssv.dll [2012-04-01 325408]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-03-07 1003704]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-12-21 561552]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-10-21 1219152]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2012-04-01 42272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2012-03-07 1211776]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-10-21 1219152]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-03-07 1003704]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2009-06-12 619392]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]
"Google Update"=C:\Users\Petr-Adrian-Dagmar\AppData\Local\Google\Update\GoogleUpdate.exe [2012-04-06 116648]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2012-02-13 3481408]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2012-03-27 37296]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ADSMTray]
C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMTray.exe [2009-06-24 272952]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [2008-07-19 104936]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HTC Sync Loader]
C:\Program Files (x86)\HTC\HTC Sync 3.0\htcUPCTLoader.exe [2011-12-20 634880]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"UpdateLBPShortCut"=C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"UpdateP2GoShortCut"=C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2008-12-04 218408]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2009-06-26 98304]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe [2009-08-17 6859392]
"HDAudDeck"=C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2009-07-13 2244096]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe [2009-04-20 159744]
"Setwallpaper"=c:\programdata\SetWallpaper.cmd []
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2012-01-18 254696]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-03 843712]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2012-03-27 37296]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2012-03-07 4241512]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
FancyStart daemon.lnk - C:\Windows\Installer\{F0DF4513-3C4C-4EB8-8012-2C5F70AF3988}\_A1DDD39913A1970387B7B3.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2012-04-14 10:51:05 ----D---- C:\Program Files\trend micro
2012-04-14 10:51:04 ----D---- C:\rsit
2012-04-14 09:00:58 ----D---- C:\Users\Petr-Adrian-Dagmar\AppData\Roaming\TeamViewer
2012-04-14 07:28:22 ----A---- C:\Windows\SYSWOW64\FlashPlayerInstaller.exe
2012-04-13 18:50:11 ----SHD---- C:\Config.Msi
2012-04-11 20:04:06 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2012-04-11 20:04:06 ----A---- C:\Windows\system32\mshtmled.dll
2012-04-11 20:04:05 ----A---- C:\Windows\system32\iertutil.dll
2012-04-11 20:04:04 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2012-04-11 20:04:03 ----A---- C:\Windows\SYSWOW64\url.dll
2012-04-11 20:04:03 ----A---- C:\Windows\system32\jscript9.dll
2012-04-11 20:04:02 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2012-04-11 20:04:02 ----A---- C:\Windows\SYSWOW64\ieui.dll
2012-04-11 20:04:02 ----A---- C:\Windows\system32\url.dll
2012-04-11 20:04:02 ----A---- C:\Windows\system32\ieui.dll
2012-04-11 20:04:01 ----A---- C:\Windows\SYSWOW64\jscript.dll
2012-04-11 20:04:00 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2012-04-11 20:04:00 ----A---- C:\Windows\system32\jscript.dll
2012-04-11 20:03:59 ----A---- C:\Windows\system32\urlmon.dll
2012-04-11 20:03:58 ----A---- C:\Windows\SYSWOW64\wininet.dll
2012-04-11 20:03:58 ----A---- C:\Windows\system32\jsproxy.dll
2012-04-11 20:03:56 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2012-04-11 20:03:56 ----A---- C:\Windows\system32\wininet.dll
2012-04-11 20:03:54 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2012-04-11 20:03:52 ----A---- C:\Windows\system32\mshtml.dll
2012-04-11 20:03:49 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2012-04-11 20:03:47 ----A---- C:\Windows\system32\ieframe.dll
2012-04-11 20:03:08 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-04-11 20:03:06 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2012-04-11 20:03:05 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2012-04-11 19:58:50 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2012-04-11 19:58:49 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2012-04-11 19:58:49 ----A---- C:\Windows\system32\imagehlp.dll
2012-04-11 19:58:48 ----A---- C:\Windows\SYSWOW64\wmi.dll
2012-04-11 19:58:48 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2012-04-11 19:58:48 ----A---- C:\Windows\system32\wmi.dll
2012-04-11 19:58:48 ----A---- C:\Windows\system32\wintrust.dll
2012-04-09 17:46:29 ----D---- C:\Program Files (x86)\Polda 5
2012-04-09 17:42:46 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2012-04-09 17:42:26 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2012-04-09 17:42:08 ----D---- C:\Users\Petr-Adrian-Dagmar\AppData\Roaming\DAEMON Tools Lite
2012-04-09 17:42:02 ----D---- C:\ProgramData\DAEMON Tools Lite
2012-04-09 17:35:40 ----D---- C:\Users\Petr-Adrian-Dagmar\AppData\Roaming\CyberLink
2012-04-09 07:47:39 ----D---- C:\Program Files\CCleaner
2012-04-09 07:45:18 ----D---- C:\Program Files\Defraggler
2012-04-08 10:25:16 ----D---- C:\MAXON
2012-04-07 18:16:21 ----A---- C:\Windows\system32\rdpcorekmts.dll
2012-04-07 18:16:20 ----A---- C:\Windows\system32\rdpwsx.dll
2012-04-07 12:35:31 ----D---- C:\Windows\system32\SPReview
2012-04-05 10:47:28 ----D---- C:\sfzone_profile
2012-04-05 10:34:25 ----A---- C:\Windows\system32\drivers\aswFsBlk.sys
2012-04-05 10:34:24 ----A---- C:\Windows\system32\drivers\aswSP.sys
2012-04-05 10:34:18 ----A---- C:\Windows\system32\drivers\aswFW.sys
2012-04-05 10:33:54 ----A---- C:\Windows\system32\drivers\aswNdis2.sys
2012-04-05 10:33:53 ----A---- C:\Windows\system32\drivers\aswTdi.sys
2012-04-05 10:33:53 ----A---- C:\Windows\system32\drivers\aswRdr2.sys
2012-04-05 10:33:51 ----A---- C:\Windows\system32\drivers\aswKbd.sys
2012-04-05 10:33:50 ----A---- C:\Windows\system32\drivers\aswSnx.sys
2012-04-05 10:33:48 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2012-04-05 10:32:57 ----A---- C:\Windows\system32\drivers\aswNdis.sys
2012-04-05 10:32:39 ----A---- C:\Windows\SYSWOW64\aswBoot.exe
2012-04-05 10:32:39 ----A---- C:\Windows\avastSS.scr
2012-04-05 06:39:05 ----D---- C:\Users\Petr-Adrian-Dagmar\AppData\Roaming\MAXON
2012-04-05 05:46:12 ----D---- C:\ProgramData\MTA San Andreas All
2012-04-04 19:57:17 ----A---- C:\Windows\system32\MRT.exe
2012-04-04 19:02:06 ----A---- C:\Windows\ATKPF.ini
2012-04-04 17:29:56 ----D---- C:\Users\Petr-Adrian-Dagmar\AppData\Roaming\.minecraft
2012-04-04 17:22:00 ----D---- C:\Windows\system32\EventProviders
2012-04-04 15:39:54 ----A---- C:\Windows\ntbtlog.txt
2012-04-04 15:26:53 ----D---- C:\Windows\Minidump
2012-04-04 06:08:36 ----D---- C:\Users\Petr-Adrian-Dagmar\AppData\Roaming\.techniclauncher
2012-04-04 05:32:19 ----A---- C:\Windows\system32\netfxperf.dll
2012-04-04 05:32:19 ----A---- C:\Windows\system32\dfshim.dll
2012-04-04 05:32:02 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2012-04-04 05:31:52 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2012-04-04 05:31:52 ----A---- C:\Windows\system32\mstscax.dll
2012-04-04 05:31:52 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2012-04-04 05:31:51 ----A---- C:\Windows\system32\d3d10warp.dll
2012-04-04 05:31:45 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2012-04-04 05:31:40 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2012-04-04 05:31:39 ----A---- C:\Windows\SYSWOW64\mfc40u.dll
2012-04-04 05:31:39 ----A---- C:\Windows\SYSWOW64\mfc40.dll
2012-04-04 05:31:39 ----A---- C:\Windows\system32\sysmain.dll
2012-04-04 05:31:33 ----A---- C:\Windows\system32\MSVidCtl.dll
2012-04-04 05:31:31 ----A---- C:\Windows\system32\wmp.dll
2012-04-04 05:31:29 ----A---- C:\Windows\system32\mscoree.dll
2012-04-04 05:31:29 ----A---- C:\Windows\system32\d2d1.dll
2012-04-04 05:31:28 ----A---- C:\Windows\system32\mmcndmgr.dll
2012-04-04 05:31:26 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2012-04-04 05:31:26 ----A---- C:\Windows\system32\secproc_isv.dll
2012-04-04 05:31:26 ----A---- C:\Windows\system32\mf.dll
2012-04-04 05:31:25 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2012-04-04 05:31:25 ----A---- C:\Windows\system32\RMActivate_isv.exe
2012-04-04 05:31:25 ----A---- C:\Windows\system32\RMActivate.exe
2012-04-04 05:31:24 ----A---- C:\Windows\system32\xpsservices.dll
2012-04-04 05:31:24 ----A---- C:\Windows\system32\secproc.dll
2012-04-04 05:31:22 ----A---- C:\Windows\SYSWOW64\secproc.dll
2012-04-04 05:31:22 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2012-04-04 05:31:21 ----A---- C:\Windows\system32\rpcrt4.dll
2012-04-04 05:31:20 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2012-04-04 05:31:18 ----A---- C:\Windows\system32\schedsvc.dll
2012-04-04 05:31:18 ----A---- C:\Windows\system32\ole32.dll
2012-04-04 05:31:16 ----A---- C:\Windows\system32\spwizui.dll
2012-04-04 05:31:15 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2012-04-04 05:31:14 ----A---- C:\Windows\system32\taskschd.dll
2012-04-04 05:31:14 ----A---- C:\Windows\system32\RacEngn.dll
2012-04-04 05:31:13 ----A---- C:\Windows\system32\wevtsvc.dll
2012-04-04 05:31:13 ----A---- C:\Windows\system32\diagperf.dll
2012-04-04 05:31:12 ----A---- C:\Windows\SYSWOW64\mf.dll
2012-04-04 05:31:12 ----A---- C:\Windows\system32\ExplorerFrame.dll
2012-04-04 05:31:10 ----A---- C:\Windows\system32\vssapi.dll
2012-04-04 05:31:10 ----A---- C:\Windows\system32\msxml3.dll
2012-04-04 05:31:09 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2012-04-04 05:31:09 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2012-04-04 05:31:08 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2012-04-04 05:31:06 ----A---- C:\Windows\system32\UIRibbon.dll
2012-04-04 05:31:06 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2012-04-04 05:31:04 ----A---- C:\Windows\SYSWOW64\wmp.dll
2012-04-04 05:31:02 ----A---- C:\Windows\system32\WsmSvc.dll
2012-04-04 05:31:01 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2012-04-04 05:31:01 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2012-04-04 05:31:01 ----A---- C:\Windows\system32\WMVCORE.DLL
2012-04-04 05:30:59 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2012-04-04 05:30:59 ----A---- C:\Windows\system32\PresentationHost.exe
2012-04-04 05:30:58 ----A---- C:\Windows\system32\rdpdd.dll
2012-04-04 05:30:57 ----A---- C:\Windows\system32\spreview.exe
2012-04-04 05:30:57 ----A---- C:\Windows\system32\spinstall.exe
2012-04-04 05:30:57 ----A---- C:\Windows\system32\MPSSVC.dll
2012-04-04 05:30:56 ----A---- C:\Windows\system32\WinSAT.exe
2012-04-04 05:30:56 ----A---- C:\Windows\system32\CertEnroll.dll
2012-04-04 05:30:53 ----A---- C:\Windows\system32\WMVDECOD.DLL
2012-04-04 05:30:52 ----A---- C:\Windows\system32\d3d9.dll
2012-04-04 05:30:51 ----A---- C:\Windows\system32\msxml6.dll
2012-04-04 05:30:50 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2012-04-04 05:30:50 ----A---- C:\Windows\system32\SearchFolder.dll
2012-04-04 05:30:50 ----A---- C:\Windows\system32\IKEEXT.DLL
2012-04-04 05:30:49 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2012-04-04 05:30:48 ----A---- C:\Windows\SYSWOW64\AuthFWSnapin.dll
2012-04-04 05:30:48 ----A---- C:\Windows\system32\gpsvc.dll
2012-04-04 05:30:47 ----A---- C:\Windows\system32\VSSVC.exe
2012-04-04 05:30:47 ----A---- C:\Windows\system32\FntCache.dll
2012-04-04 05:30:46 ----A---- C:\Windows\system32\dwmcore.dll
2012-04-04 05:30:46 ----A---- C:\Windows\system32\dbgeng.dll
2012-04-04 05:30:44 ----A---- C:\Windows\system32\drivers\http.sys
2012-04-04 05:30:41 ----A---- C:\Windows\system32\drivers\ndis.sys
2012-04-04 05:30:41 ----A---- C:\Windows\system32\crypt32.dll
2012-04-04 05:30:38 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2012-04-04 05:30:37 ----A---- C:\Windows\SYSWOW64\ole32.dll
2012-04-04 05:30:37 ----A---- C:\Windows\system32\actxprxy.dll
2012-04-04 05:30:36 ----A---- C:\Windows\system32\TSWorkspace.dll
2012-04-04 05:30:36 ----A---- C:\Windows\system32\audiosrv.dll
2012-04-04 05:30:35 ----A---- C:\Windows\system32\qmgr.dll
2012-04-04 05:30:34 ----A---- C:\Windows\system32\termsrv.dll
2012-04-04 05:30:32 ----A---- C:\Windows\system32\mstsc.exe
2012-04-04 05:30:27 ----A---- C:\Windows\system32\imapi2fs.dll
2012-04-04 05:30:26 ----A---- C:\Windows\SYSWOW64\vssapi.dll
2012-04-04 05:30:26 ----A---- C:\Windows\system32\netlogon.dll
2012-04-04 05:30:25 ----A---- C:\Windows\system32\winhttp.dll
2012-04-04 05:30:25 ----A---- C:\Windows\system32\d3d11.dll
2012-04-04 05:30:23 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2012-04-04 05:30:22 ----A---- C:\Windows\SYSWOW64\d3d9.dll
2012-04-04 05:30:22 ----A---- C:\Windows\system32\QAGENTRT.DLL
2012-04-04 05:30:22 ----A---- C:\Windows\system32\propsys.dll
2012-04-04 05:30:22 ----A---- C:\Windows\system32\msv1_0.dll
2012-04-04 05:30:20 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2012-04-04 05:30:20 ----A---- C:\Windows\system32\wbengine.exe
2012-04-04 05:30:20 ----A---- C:\Windows\system32\setupapi.dll
2012-04-04 05:30:20 ----A---- C:\Windows\system32\rpcss.dll
2012-04-04 05:30:17 ----A---- C:\Windows\system32\werconcpl.dll
2012-04-04 05:30:17 ----A---- C:\Windows\system32\taskeng.exe
2012-04-04 05:30:17 ----A---- C:\Windows\system32\odbc32.dll
2012-04-04 05:30:17 ----A---- C:\Windows\system32\authui.dll
2012-04-04 05:30:16 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2012-04-04 05:30:14 ----A---- C:\Windows\system32\user32.dll
2012-04-04 05:30:13 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2012-04-04 05:30:13 ----A---- C:\Windows\system32\WSDApi.dll
2012-04-04 05:30:12 ----A---- C:\Windows\system32\drivers\netio.sys
2012-04-04 05:30:11 ----A---- C:\Windows\system32\drivers\tdx.sys
2012-04-04 05:30:11 ----A---- C:\Windows\system32\dhcpcore.dll
2012-04-04 05:30:11 ----A---- C:\Windows\system32\certmgr.dll
2012-04-04 05:30:09 ----A---- C:\Windows\SYSWOW64\wer.dll
2012-04-04 05:30:09 ----A---- C:\Windows\system32\scavengeui.dll
2012-04-04 05:30:09 ----A---- C:\Windows\system32\drivers\netbt.sys
2012-04-04 05:30:08 ----A---- C:\Windows\SYSWOW64\certcli.dll
2012-04-04 05:30:07 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2012-04-04 05:30:07 ----A---- C:\Windows\system32\localspl.dll
2012-04-04 05:30:06 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2012-04-04 05:30:06 ----A---- C:\Windows\system32\tsmf.dll
2012-04-04 05:30:06 ----A---- C:\Windows\system32\ncsi.dll
2012-04-04 05:30:06 ----A---- C:\Windows\system32\msdrm.dll
2012-04-04 05:30:04 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2012-04-04 05:30:04 ----A---- C:\Windows\system32\shlwapi.dll
2012-04-04 05:30:03 ----A---- C:\Windows\system32\netshell.dll
2012-04-04 05:30:03 ----A---- C:\Windows\system32\msdtctm.dll
2012-04-04 05:30:03 ----A---- C:\Windows\system32\framedynos.dll
2012-04-04 05:30:02 ----A---- C:\Windows\SYSWOW64\odbc32.dll
2012-04-04 05:30:01 ----A---- C:\Windows\SYSWOW64\tcpmonui.dll
2012-04-04 05:30:01 ----A---- C:\Windows\system32\wmicmiplugin.dll
2012-04-04 05:30:00 ----A---- C:\Windows\system32\netcfgx.dll
2012-04-04 05:29:48 ----A---- C:\Windows\system32\ws2_32.dll
2012-04-04 05:29:48 ----A---- C:\Windows\system32\winlogon.exe
2012-04-04 05:29:48 ----A---- C:\Windows\system32\usp10.dll
2012-04-04 05:29:47 ----A---- C:\Windows\system32\nlasvc.dll
2012-04-04 05:29:46 ----A---- C:\Windows\system32\lsm.exe
2012-04-04 05:29:46 ----A---- C:\Windows\system32\dxgi.dll
2012-04-04 05:29:46 ----A---- C:\Windows\system32\comdlg32.dll
2012-04-04 05:29:45 ----A---- C:\Windows\system32\wmpps.dll
2012-04-04 05:29:44 ----A---- C:\Windows\system32\apphelp.dll
2012-04-04 05:29:42 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2012-04-04 05:29:41 ----A---- C:\Windows\SYSWOW64\dot3api.dll
2012-04-04 05:29:41 ----A---- C:\Windows\system32\Query.dll
2012-04-04 05:29:41 ----A---- C:\Windows\system32\mswsock.dll
2012-04-04 05:29:41 ----A---- C:\Windows\system32\drvstore.dll
2012-04-04 05:29:40 ----A---- C:\Windows\SYSWOW64\tsmf.dll
2012-04-04 05:29:40 ----A---- C:\Windows\system32\wpdshext.dll
2012-04-04 05:29:40 ----A---- C:\Windows\system32\azroles.dll
2012-04-04 05:29:39 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2012-04-04 05:29:39 ----A---- C:\Windows\system32\QAGENT.DLL
2012-04-04 05:29:39 ----A---- C:\Windows\system32\BFE.DLL
2012-04-04 05:29:38 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2012-04-04 05:29:38 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2012-04-04 05:29:37 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2012-04-04 05:29:37 ----A---- C:\Windows\system32\Vault.dll
2012-04-04 05:29:37 ----A---- C:\Windows\system32\samsrv.dll
2012-04-04 05:29:37 ----A---- C:\Windows\system32\cmd.exe
2012-04-04 05:29:36 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2012-04-04 05:29:36 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2012-04-04 05:29:35 ----A---- C:\Windows\system32\lpksetup.exe
2012-04-04 05:29:34 ----A---- C:\Windows\SYSWOW64\dbgeng.dll
2012-04-04 05:29:33 ----A---- C:\Windows\system32\win32spl.dll
2012-04-04 05:29:32 ----A---- C:\Windows\SYSWOW64\netlogon.dll
2012-04-04 05:29:28 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2012-04-04 05:29:28 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2012-04-04 05:29:27 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2012-04-04 05:29:27 ----A---- C:\Windows\system32\WebClnt.dll
2012-04-04 05:29:26 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2012-04-04 05:29:26 ----A---- C:\Windows\system32\WindowsCodecs.dll
2012-04-04 05:29:25 ----A---- C:\Windows\SYSWOW64\Query.dll
2012-04-04 05:29:25 ----A---- C:\Windows\system32\sxs.dll
2012-04-04 05:29:25 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2012-04-04 05:29:24 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2012-04-04 05:29:24 ----A---- C:\Windows\system32\Wldap32.dll
2012-04-04 05:29:24 ----A---- C:\Windows\system32\taskcomp.dll
2012-04-04 05:29:24 ----A---- C:\Windows\system32\mfds.dll
2012-04-04 05:29:24 ----A---- C:\Windows\system32\mcbuilder.exe
2012-04-04 05:29:23 ----A---- C:\Windows\SYSWOW64\upnp.dll
2012-04-04 05:29:23 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2012-04-04 05:29:23 ----A---- C:\Windows\system32\pnidui.dll
2012-04-04 05:29:23 ----A---- C:\Windows\system32\ipsmsnap.dll
2012-04-04 05:29:22 ----A---- C:\Windows\SYSWOW64\mmcndmgr.dll
2012-04-04 05:29:22 ----A---- C:\Windows\SYSWOW64\DShowRdpFilter.dll
2012-04-04 05:29:22 ----A---- C:\Windows\system32\hgprint.dll
2012-04-04 05:29:21 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2012-04-04 05:29:21 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2012-04-04 05:29:21 ----A---- C:\Windows\system32\wuaueng.dll
2012-04-04 05:29:21 ----A---- C:\Windows\system32\webservices.dll
2012-04-04 05:29:21 ----A---- C:\Windows\system32\SessEnv.dll
2012-04-04 05:29:20 ----A---- C:\Windows\SYSWOW64\imapi2fs.dll
2012-04-04 05:29:20 ----A---- C:\Windows\system32\spoolsv.exe
2012-04-04 05:29:19 ----A---- C:\Windows\SYSWOW64\SessEnv.dll
2012-04-04 05:29:19 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2012-04-04 05:29:19 ----A---- C:\Windows\SYSWOW64\authui.dll
2012-04-04 05:29:19 ----A---- C:\Windows\system32\winsta.dll
2012-04-04 05:29:18 ----A---- C:\Windows\system32\sqlsrv32.dll
2012-04-04 05:29:18 ----A---- C:\Windows\system32\fveapi.dll
2012-04-04 05:29:18 ----A---- C:\Windows\system32\dot3api.dll
2012-04-04 05:29:17 ----A---- C:\Windows\SYSWOW64\PortableDeviceApi.dll
2012-04-04 05:29:16 ----A---- C:\Windows\SYSWOW64\usp10.dll
2012-04-04 05:29:16 ----A---- C:\Windows\SYSWOW64\shlwapi.dll
2012-04-04 05:29:16 ----A---- C:\Windows\system32\gdi32.dll
2012-04-04 05:29:16 ----A---- C:\Windows\system32\drivers\volsnap.sys
2012-04-04 05:29:16 ----A---- C:\Windows\system32\drivers\msrpc.sys
2012-04-04 05:29:15 ----A---- C:\Windows\SYSWOW64\mcbuilder.exe
2012-04-04 05:29:15 ----A---- C:\Windows\system32\prncache.dll
2012-04-04 05:29:15 ----A---- C:\Windows\system32\mcmde.dll
2012-04-04 05:29:14 ----A---- C:\Windows\system32\schtasks.exe
2012-04-04 05:29:12 ----A---- C:\Windows\SYSWOW64\userenv.dll
2012-04-04 05:29:12 ----A---- C:\Windows\SYSWOW64\certmgr.dll
2012-04-04 05:29:12 ----A---- C:\Windows\system32\WMNetMgr.dll
2012-04-04 05:29:12 ----A---- C:\Windows\system32\wlanpref.dll
2012-04-04 05:29:11 ----A---- C:\Windows\system32\wuapi.dll
2012-04-04 05:29:11 ----A---- C:\Windows\system32\vpnike.dll
2012-04-04 05:29:11 ----A---- C:\Windows\system32\userenv.dll
2012-04-04 05:29:10 ----A---- C:\Windows\SYSWOW64\xpsservices.dll
2012-04-04 05:29:10 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2012-04-04 05:29:10 ----A---- C:\Windows\SYSWOW64\drvstore.dll
2012-04-04 05:29:10 ----A---- C:\Windows\system32\drivers\rdbss.sys
2012-04-04 05:29:09 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2012-04-04 05:29:09 ----A---- C:\Windows\system32\photowiz.dll
2012-04-04 05:29:09 ----A---- C:\Windows\system32\evr.dll
2012-04-04 05:29:09 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2012-04-04 05:29:07 ----A---- C:\Windows\system32\IPSECSVC.DLL
2012-04-04 05:29:07 ----A---- C:\Windows\system32\framedyn.dll
2012-04-04 05:29:07 ----A---- C:\Windows\system32\AudioSes.dll
2012-04-04 05:29:06 ----A---- C:\Windows\system32\wmpmde.dll
2012-04-04 05:29:06 ----A---- C:\Windows\system32\sppobjs.dll
2012-04-04 05:29:06 ----A---- C:\Windows\system32\FXSSVC.exe
2012-04-04 05:29:06 ----A---- C:\Windows\system32\aepdu.dll
2012-04-04 05:29:05 ----A---- C:\Windows\SYSWOW64\cmd.exe
2012-04-04 05:29:05 ----A---- C:\Windows\system32\WMPEncEn.dll
2012-04-04 05:29:05 ----A---- C:\Windows\system32\wmpeffects.dll
2012-04-04 05:29:05 ----A---- C:\Windows\system32\SyncCenter.dll
2012-04-04 05:29:05 ----A---- C:\Windows\system32\mfreadwrite.dll
2012-04-04 05:29:04 ----A---- C:\Windows\system32\srvsvc.dll
2012-04-04 05:29:03 ----A---- C:\Windows\system32\shsvcs.dll
2012-04-04 05:29:02 ----A---- C:\Windows\system32\aeinv.dll
2012-04-04 05:29:01 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2012-04-04 05:29:01 ----A---- C:\Windows\SYSWOW64\propsys.dll
2012-04-04 05:29:01 ----A---- C:\Windows\SYSWOW64\framedynos.dll
2012-04-04 05:29:01 ----A---- C:\Windows\system32\fde.dll
2012-04-04 05:29:00 ----A---- C:\Windows\system32\WinSATAPI.dll
2012-04-04 05:28:58 ----A---- C:\Windows\SYSWOW64\Wldap32.dll
2012-04-04 05:28:58 ----A---- C:\Windows\SYSWOW64\mfds.dll
2012-04-04 05:28:58 ----A---- C:\Windows\system32\stobject.dll
2012-04-04 05:28:57 ----A---- C:\Windows\system32\netdiagfx.dll
2012-04-04 05:28:57 ----A---- C:\Windows\system32\localsec.dll
2012-04-04 05:28:57 ----A---- C:\Windows\system32\imapi2.dll
2012-04-04 05:28:57 ----A---- C:\Windows\system32\credui.dll
2012-04-04 05:28:57 ----A---- C:\Windows\system32\cdd.dll
2012-04-04 05:28:57 ----A---- C:\Windows\system32\bcryptprimitives.dll
2012-04-04 05:28:56 ----A---- C:\Windows\SYSWOW64\user32.dll
2012-04-04 05:28:56 ----A---- C:\Windows\system32\iphlpsvc.dll
2012-04-04 05:28:56 ----A---- C:\Windows\system32\drivers\udfs.sys
2012-04-04 05:28:55 ----A---- C:\Windows\system32\netid.dll
2012-04-04 05:28:55 ----A---- C:\Windows\system32\inetpp.dll
2012-04-04 05:28:55 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2012-04-04 05:28:54 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2012-04-04 05:28:54 ----A---- C:\Windows\SYSWOW64\azroles.dll
2012-04-04 05:28:54 ----A---- C:\Windows\system32\tcpipcfg.dll
2012-04-04 05:28:54 ----A---- C:\Windows\system32\spp.dll
2012-04-04 05:28:54 ----A---- C:\Windows\system32\QSHVHOST.DLL
2012-04-04 05:28:54 ----A---- C:\Windows\system32\davclnt.dll
2012-04-04 05:28:53 ----A---- C:\Windows\system32\biocpl.dll
2012-04-04 05:28:52 ----A---- C:\Windows\system32\profsvc.dll
2012-04-04 05:28:52 ----A---- C:\Windows\system32\msinfo32.exe
2012-04-04 05:28:52 ----A---- C:\Windows\system32\gameux.dll
2012-04-04 05:28:51 ----A---- C:\Windows\system32\scansetting.dll
2012-04-04 05:28:51 ----A---- C:\Windows\system32\printui.dll
2012-04-04 05:28:50 ----A---- C:\Windows\SYSWOW64\themeui.dll
2012-04-04 05:28:50 ----A---- C:\Windows\SYSWOW64\credui.dll
2012-04-04 05:28:50 ----A---- C:\Windows\system32\mspbda.dll
2012-04-04 05:28:49 ----A---- C:\Windows\system32\pla.dll
2012-04-04 05:28:49 ----A---- C:\Windows\splwow64.exe
2012-04-04 05:28:48 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2012-04-04 05:28:47 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2012-04-04 05:28:46 ----A---- C:\Windows\SYSWOW64\spp.dll
2012-04-04 05:28:46 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll
2012-04-04 05:28:45 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2012-04-04 05:28:45 ----A---- C:\Windows\system32\wusa.exe
2012-04-04 05:28:44 ----A---- C:\Windows\system32\msdri.dll
2012-04-04 05:28:44 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2012-04-04 05:28:44 ----A---- C:\Windows\system32\aitagent.exe
2012-04-04 05:28:43 ----A---- C:\Windows\system32\wiaservc.dll
2012-04-04 05:28:43 ----A---- C:\Windows\system32\vds.exe
2012-04-04 05:28:43 ----A---- C:\Windows\system32\drivers\pci.sys
2012-04-04 05:28:42 ----A---- C:\Windows\SYSWOW64\basecsp.dll
2012-04-04 05:28:42 ----A---- C:\Windows\system32\rpchttp.dll
2012-04-04 05:28:42 ----A---- C:\Windows\system32\cryptsvc.dll
2012-04-04 05:28:41 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2012-04-04 05:28:41 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2012-04-04 05:28:41 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2012-04-04 05:28:41 ----A---- C:\Windows\SYSWOW64\dbghelp.dll
2012-04-04 05:28:41 ----A---- C:\Windows\system32\mscms.dll
2012-04-04 05:28:40 ----A---- C:\Windows\SYSWOW64\NaturalLanguage6.dll
2012-04-04 05:28:40 ----A---- C:\Windows\system32\PkgMgr.exe
2012-04-04 05:28:39 ----A---- C:\Windows\system32\XpsRasterService.dll
2012-04-04 05:28:39 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2012-04-04 05:28:39 ----A---- C:\Windows\system32\drivers\rasl2tp.sys
2012-04-04 05:28:38 ----A---- C:\Windows\SYSWOW64\taskcomp.dll
2012-04-04 05:28:38 ----A---- C:\Windows\system32\wisptis.exe
2012-04-04 05:28:38 ----A---- C:\Windows\system32\ocsetup.exe
2012-04-04 05:28:38 ----A---- C:\Windows\system32\msi.dll
2012-04-04 05:28:37 ----A---- C:\Windows\SYSWOW64\evr.dll
2012-04-04 05:28:37 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2012-04-04 05:28:34 ----A---- C:\Windows\system32\sppwinob.dll
2012-04-04 05:28:32 ----A---- C:\Windows\SYSWOW64\WinSATAPI.dll
2012-04-04 05:28:31 ----A---- C:\Windows\SYSWOW64\calc.exe
2012-04-04 05:28:31 ----A---- C:\Windows\system32\ocsetapi.dll
2012-04-04 05:28:31 ----A---- C:\Windows\system32\DXP.dll
2012-04-04 05:28:31 ----A---- C:\Windows\system32\drivers\volmgr.sys
2012-04-04 05:28:29 ----A---- C:\Windows\SYSWOW64\sqlsrv32.dll
2012-04-04 05:28:29 ----A---- C:\Windows\system32\wpdbusenum.dll
2012-04-04 05:28:29 ----A---- C:\Windows\system32\eapp3hst.dll
2012-04-04 05:28:29 ----A---- C:\Windows\system32\drivers\msdsm.sys
2012-04-04 05:28:29 ----A---- C:\Windows\system32\ci.dll
2012-04-04 05:28:28 ----A---- C:\Windows\system32\wcncsvc.dll
2012-04-04 05:28:28 ----A---- C:\Windows\system32\upnp.dll
2012-04-04 05:28:28 ----A---- C:\Windows\system32\mprapi.dll
2012-04-04 05:28:27 ----A---- C:\Windows\system32\Robocopy.exe
2012-04-04 05:28:27 ----A---- C:\Windows\system32\eapphost.dll
2012-04-04 05:28:26 ----A---- C:\Windows\SYSWOW64\UIRibbon.dll
2012-04-04 05:28:26 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2012-04-04 05:28:26 ----A---- C:\Windows\system32\t2embed.dll
2012-04-04 05:28:26 ----A---- C:\Windows\system32\drivers\HpSAMD.sys
2012-04-04 05:28:25 ----A---- C:\Windows\SYSWOW64\sxs.dll
2012-04-04 05:28:25 ----A---- C:\Windows\system32\thumbcache.dll
2012-04-04 05:28:24 ----A---- C:\Windows\SYSWOW64\ws2_32.dll
2012-04-04 05:28:24 ----A---- C:\Windows\SYSWOW64\netshell.dll
2012-04-04 05:28:24 ----A---- C:\Windows\system32\hal.dll
2012-04-04 05:28:23 ----A---- C:\Windows\SYSWOW64\stobject.dll
2012-04-04 05:28:23 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2012-04-04 05:28:23 ----A---- C:\Windows\system32\DxpTaskSync.dll
2012-04-04 05:28:23 ----A---- C:\Windows\system32\drivers\fvevol.sys
2012-04-04 05:28:22 ----A---- C:\Windows\system32\scecli.dll
2012-04-04 05:28:22 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2012-04-04 05:28:21 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2012-04-04 05:28:21 ----A---- C:\Windows\system32\dwmredir.dll
2012-04-04 05:28:20 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2012-04-04 05:28:20 ----A---- C:\Windows\system32\msasn1.dll
2012-04-04 05:28:20 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2012-04-04 05:28:18 ----A---- C:\Windows\system32\puiobj.dll
2012-04-04 05:28:18 ----A---- C:\Windows\system32\nlaapi.dll
2012-04-04 05:28:18 ----A---- C:\Windows\system32\iasrad.dll
2012-04-04 05:28:18 ----A---- C:\Windows\system32\drivers\ipfltdrv.sys
2012-04-04 05:28:17 ----A---- C:\Windows\SYSWOW64\prncache.dll
2012-04-04 05:28:17 ----A---- C:\Windows\system32\themeui.dll
2012-04-04 05:28:16 ----A---- C:\Windows\system32\onex.dll
2012-04-04 05:28:16 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2012-04-04 05:28:15 ----A---- C:\Windows\SYSWOW64\printui.dll
2012-04-04 05:28:15 ----A---- C:\Windows\SYSWOW64\msi.dll
2012-04-04 05:28:13 ----A---- C:\Windows\SYSWOW64\WSDApi.dll
2012-04-04 05:28:13 ----A---- C:\Windows\SYSWOW64\wmpeffects.dll
2012-04-04 05:28:13 ----A---- C:\Windows\SYSWOW64\net1.exe
2012-04-04 05:28:13 ----A---- C:\Windows\system32\aaclient.dll
2012-04-04 05:28:12 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2012-04-04 05:28:11 ----A---- C:\Windows\system32\wdc.dll
2012-04-04 05:28:10 ----A---- C:\Windows\SYSWOW64\scansetting.dll
2012-04-04 05:28:10 ----A---- C:\Windows\system32\scesrv.dll
2012-04-04 05:28:10 ----A---- C:\Windows\system32\rasmans.dll
2012-04-04 05:28:09 ----A---- C:\Windows\system32\wlangpui.dll
2012-04-04 05:28:09 ----A---- C:\Windows\system32\msftedit.dll
2012-04-04 05:28:07 ----A---- C:\Windows\system32\sdengin2.dll
2012-04-04 05:28:06 ----A---- C:\Windows\system32\StructuredQuery.dll
2012-04-04 05:28:04 ----A---- C:\Windows\system32\VAN.dll
2012-04-04 05:28:02 ----A---- C:\Windows\system32\wiadefui.dll
2012-04-04 05:28:01 ----A---- C:\Windows\system32\netcenter.dll
2012-04-04 05:28:01 ----A---- C:\Windows\system32\dskquoui.dll
2012-04-04 05:28:00 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2012-04-04 05:28:00 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2012-04-04 05:28:00 ----A---- C:\Windows\system32\samcli.dll
2012-04-04 05:28:00 ----A---- C:\Windows\system32\drivers\partmgr.sys
2012-04-04 05:27:59 ----A---- C:\Windows\SYSWOW64\WMVCORE.DLL
2012-04-04 05:27:59 ----A---- C:\Windows\SYSWOW64\wlangpui.dll
2012-04-04 05:27:59 ----A---- C:\Windows\system32\wscapi.dll
2012-04-04 05:27:59 ----A---- C:\Windows\system32\SndVol.exe
2012-04-04 05:27:59 ----A---- C:\Windows\system32\iasacct.dll
2012-04-04 05:27:59 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2012-04-04 05:27:58 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2012-04-04 05:27:58 ----A---- C:\Windows\system32\wucltux.dll
2012-04-04 05:27:58 ----A---- C:\Windows\system32\regapi.dll
2012-04-04 05:27:58 ----A---- C:\Windows\system32\drivers\termdd.sys
2012-04-04 05:27:57 ----A---- C:\Windows\SYSWOW64\QSHVHOST.DLL
2012-04-04 05:27:57 ----A---- C:\Windows\system32\TabSvc.dll
2012-04-04 05:27:57 ----A---- C:\Windows\system32\srchadmin.dll
2012-04-04 05:27:57 ----A---- C:\Windows\system32\QUTIL.DLL
2012-04-04 05:27:57 ----A---- C:\Windows\system32\consent.exe
2012-04-04 05:27:56 ----A---- C:\Windows\SYSWOW64\wpdshext.dll
2012-04-04 05:27:56 ----A---- C:\Windows\SYSWOW64\t2embed.dll
2012-04-04 05:27:56 ----A---- C:\Windows\SYSWOW64\pnidui.dll
2012-04-04 05:27:55 ----A---- C:\Windows\SYSWOW64\webservices.dll
2012-04-04 05:27:55 ----A---- C:\Windows\SYSWOW64\fde.dll
2012-04-04 05:27:55 ----A---- C:\Windows\system32\WUDFSvc.dll
2012-04-04 05:27:55 ----A---- C:\Windows\system32\wksprt.exe
2012-04-04 05:27:55 ----A---- C:\Windows\system32\setupcl.exe
2012-04-04 05:27:55 ----A---- C:\Windows\system32\drivers\msahci.sys
2012-04-04 05:27:54 ----A---- C:\Windows\SYSWOW64\SyncCenter.dll
2012-04-04 05:27:54 ----A---- C:\Windows\SYSWOW64\netdiagfx.dll
2012-04-04 05:27:54 ----A---- C:\Windows\system32\taskhost.exe
2012-04-04 05:27:54 ----A---- C:\Windows\system32\rastls.dll
2012-04-04 05:27:52 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2012-04-04 05:27:52 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2012-04-04 05:27:52 ----A---- C:\Windows\system32\drivers\acpi.sys
2012-04-04 05:27:50 ----A---- C:\Windows\system32\tapisrv.dll
2012-04-04 05:27:49 ----A---- C:\Windows\system32\netiohlp.dll
2012-04-04 05:27:49 ----A---- C:\Windows\system32\msconfig.exe
2012-04-04 05:27:49 ----A---- C:\Windows\system32\mimefilt.dll
2012-04-04 05:27:49 ----A---- C:\Windows\system32\ListSvc.dll
2012-04-04 05:27:49 ----A---- C:\Windows\system32\drivers\raspptp.sys
2012-04-04 05:27:48 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2012-04-04 05:27:48 ----A---- C:\Windows\SYSWOW64\pla.dll
2012-04-04 05:27:48 ----A---- C:\Windows\SYSWOW64\msasn1.dll
2012-04-04 05:27:48 ----A---- C:\Windows\system32\hgcpl.dll
2012-04-04 05:27:47 ----A---- C:\Windows\system32\lsmproxy.dll
2012-04-04 05:27:47 ----A---- C:\Windows\system32\drivers\ks.sys
2012-04-04 05:27:47 ----A---- C:\Windows\system32\clusapi.dll
2012-04-04 05:27:47 ----A---- C:\Windows\system32\basecsp.dll
2012-04-04 05:27:46 ----A---- C:\Windows\SYSWOW64\winsta.dll
2012-04-04 05:27:46 ----A---- C:\Windows\SYSWOW64\MSMPEG2ENC.DLL
2012-04-04 05:27:46 ----A---- C:\Windows\system32\fdeploy.dll
2012-04-04 05:27:46 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2012-04-04 05:27:45 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2012-04-04 05:27:45 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2012-04-04 05:27:44 ----A---- C:\Windows\system32\mtxclu.dll
2012-04-04 05:27:43 ----A---- C:\Windows\SYSWOW64\imapi2.dll
2012-04-04 05:27:43 ----A---- C:\Windows\system32\riched20.dll
2012-04-04 05:27:42 ----A---- C:\Windows\SYSWOW64\DXPTaskRingtone.dll
2012-04-04 05:27:42 ----A---- C:\Windows\system32\dnscmmc.dll
2012-04-04 05:27:41 ----A---- C:\Windows\SYSWOW64\gameux.dll
2012-04-04 05:27:38 ----A---- C:\Windows\system32\RpcRtRemote.dll
2012-04-04 05:27:37 ----A---- C:\Windows\SYSWOW64\WMPEncEn.dll
2012-04-04 05:27:37 ----A---- C:\Windows\SYSWOW64\onex.dll
2012-04-04 05:27:37 ----A---- C:\Windows\system32\sharemediacpl.dll
2012-04-04 05:27:37 ----A---- C:\Windows\system32\powercpl.dll
2012-04-04 05:27:37 ----A---- C:\Windows\system32\logoncli.dll
2012-04-04 05:27:36 ----A---- C:\Windows\SYSWOW64\shsvcs.dll
2012-04-04 05:27:35 ----A---- C:\Windows\SYSWOW64\winmm.dll
2012-04-04 05:27:35 ----A---- C:\Windows\system32\themecpl.dll
2012-04-04 05:27:35 ----A---- C:\Windows\system32\SensorsCpl.dll
2012-04-04 05:27:35 ----A---- C:\Windows\system32\nci.dll
2012-04-04 05:27:35 ----A---- C:\Windows\system32\eudcedit.exe
2012-04-04 05:27:34 ----A---- C:\Windows\SYSWOW64\hbaapi.dll
2012-04-04 05:27:34 ----A---- C:\Windows\SYSWOW64\autofmt.exe
2012-04-04 05:27:34 ----A---- C:\Windows\system32\netjoin.dll
2012-04-04 05:27:33 ----A---- C:\Windows\system32\Narrator.exe
2012-04-04 05:27:33 ----A---- C:\Windows\system32\Faultrep.dll
2012-04-04 05:27:32 ----A---- C:\Windows\SYSWOW64\netiohlp.dll
2012-04-04 05:27:32 ----A---- C:\Windows\SYSWOW64\autochk.exe
2012-04-04 05:27:32 ----A---- C:\Windows\system32\wkssvc.dll
2012-04-04 05:27:31 ----A---- C:\Windows\SYSWOW64\samcli.dll
2012-04-04 05:27:31 ----A---- C:\Windows\SYSWOW64\IPHLPAPI.DLL
2012-04-04 05:27:31 ----A---- C:\Windows\system32\vpnikeapi.dll
2012-04-04 05:27:30 ----A---- C:\Windows\SYSWOW64\proquota.exe
2012-04-04 05:27:30 ----A---- C:\Windows\system32\sppcomapi.dll
2012-04-04 05:27:30 ----A---- C:\Windows\system32\comctl32.dll
2012-04-04 05:27:30 ----A---- C:\Windows\system32\cabview.dll
2012-04-04 05:27:30 ----A---- C:\Windows\system32\autochk.exe
2012-04-04 05:27:29 ----A---- C:\Windows\SYSWOW64\thumbcache.dll
2012-04-04 05:27:29 ----A---- C:\Windows\SYSWOW64\msutb.dll
2012-04-04 05:27:29 ----A---- C:\Windows\SYSWOW64\autoconv.exe
2012-04-04 05:27:29 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2012-04-04 05:27:29 ----A---- C:\Windows\system32\autofmt.exe
2012-04-04 05:27:28 ----A---- C:\Windows\SYSWOW64\regapi.dll
2012-04-04 05:27:28 ----A---- C:\Windows\SYSWOW64\msinfo32.exe
2012-04-04 05:27:28 ----A---- C:\Windows\SYSWOW64\mimefilt.dll
2012-04-04 05:27:28 ----A---- C:\Windows\SYSWOW64\ipsmsnap.dll
2012-04-04 05:27:28 ----A---- C:\Windows\system32\autoconv.exe
2012-04-04 05:27:27 ----A---- C:\Windows\system32\shsetup.dll
2012-04-04 05:27:27 ----A---- C:\Windows\system32\nshipsec.dll
2012-04-04 05:27:27 ----A---- C:\Windows\system32\fms.dll
2012-04-04 05:27:27 ----A---- C:\Windows\system32\audiodg.exe
2012-04-04 05:27:26 ----A---- C:\Windows\SYSWOW64\tcpipcfg.dll
2012-04-04 05:27:26 ----A---- C:\Windows\SYSWOW64\srchadmin.dll
2012-04-04 05:27:26 ----A---- C:\Windows\SYSWOW64\schtasks.exe
2012-04-04 05:27:26 ----A---- C:\Windows\system32\wpd_ci.dll
2012-04-04 05:27:24 ----A---- C:\Windows\SYSWOW64\powercpl.dll
2012-04-04 05:27:24 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2012-04-04 05:27:24 ----A---- C:\Windows\system32\bcdsrv.dll
2012-04-04 05:27:23 ----A---- C:\Windows\SYSWOW64\wcncsvc.dll
2012-04-04 05:27:23 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2012-04-04 05:27:23 ----A---- C:\Windows\SYSWOW64\framedyn.dll
2012-04-04 05:27:23 ----A---- C:\Windows\system32\wwanconn.dll
2012-04-04 05:27:23 ----A---- C:\Windows\system32\sdclt.exe
2012-04-04 05:27:23 ----A---- C:\Windows\system32\prntvpt.dll
2012-04-04 05:27:23 ----A---- C:\Windows\system32\drivers\wanarp.sys
2012-04-04 05:27:22 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2012-04-04 05:27:22 ----A---- C:\Windows\system32\wlanui.dll
2012-04-04 05:27:22 ----A---- C:\Windows\system32\mscorier.dll
2012-04-04 05:27:22 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2012-04-04 05:27:22 ----A---- C:\Windows\system32\drivers\scsiport.sys
2012-04-04 05:27:21 ----A---- C:\Windows\SYSWOW64\AuxiliaryDisplayCpl.dll
2012-04-04 05:27:21 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2012-04-04 05:27:20 ----A---- C:\Windows\SYSWOW64\QAGENT.DLL
2012-04-04 05:27:20 ----A---- C:\Windows\system32\SmiEngine.dll
2012-04-04 05:27:20 ----A---- C:\Windows\system32\dps.dll
2012-04-04 05:27:19 ----A---- C:\Windows\SYSWOW64\netid.dll
2012-04-04 05:27:19 ----A---- C:\Windows\system32\qedit.dll
2012-04-04 05:27:19 ----A---- C:\Windows\system32\mprddm.dll
2012-04-04 05:27:19 ----A---- C:\Windows\system32\fontext.dll
2012-04-04 05:27:19 ----A---- C:\Windows\system32\Display.dll
2012-04-04 05:27:19 ----A---- C:\Windows\system32\AxInstSv.dll
2012-04-04 05:27:18 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2012-04-04 05:27:18 ----A---- C:\Windows\system32\drivers\hidclass.sys
2012-04-04 05:27:18 ----A---- C:\Windows\system32\credssp.dll
2012-04-04 05:27:18 ----A---- C:\Windows\system32\batmeter.dll
2012-04-04 05:27:17 ----A---- C:\Windows\SYSWOW64\wdc.dll
2012-04-04 05:27:17 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2012-04-04 05:27:17 ----A---- C:\Windows\system32\mblctr.exe
2012-04-04 05:27:16 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2012-04-04 05:27:16 ----A---- C:\Windows\system32\wmpsrcwp.dll
2012-04-04 05:27:15 ----A---- C:\Windows\SYSWOW64\Vault.dll
2012-04-04 05:27:15 ----A---- C:\Windows\SYSWOW64\untfs.dll
2012-04-04 05:27:15 ----A---- C:\Windows\SYSWOW64\rastls.dll
2012-04-04 05:27:15 ----A---- C:\Windows\SYSWOW64\nci.dll
2012-04-04 05:27:13 ----A---- C:\Windows\SYSWOW64\wlanpref.dll
2012-04-04 05:27:12 ----A---- C:\Windows\SYSWOW64\RpcRtRemote.dll
2012-04-04 05:27:12 ----A---- C:\Windows\system32\DiagCpl.dll
2012-04-04 05:27:11 ----A---- C:\Windows\SYSWOW64\WMNetMgr.dll
2012-04-04 05:27:11 ----A---- C:\Windows\system32\usercpl.dll
2012-04-04 05:27:11 ----A---- C:\Windows\system32\rtutils.dll
2012-04-04 05:27:10 ----A---- C:\Windows\SYSWOW64\Robocopy.exe
2012-04-04 05:27:10 ----A---- C:\Windows\system32\bootres.dll
2012-04-04 05:27:09 ----A---- C:\Windows\system32\provsvc.dll
2012-04-04 05:27:08 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2012-04-04 05:27:07 ----A---- C:\Windows\system32\wpccpl.dll
2012-04-04 05:27:07 ----A---- C:\Windows\system32\sppsvc.exe
2012-04-04 05:27:06 ----A---- C:\Windows\SYSWOW64\DxpTaskSync.dll
2012-04-04 05:27:06 ----A---- C:\Windows\system32\rasppp.dll
2012-04-04 05:27:05 ----A---- C:\Windows\SYSWOW64\taskmgr.exe
2012-04-04 05:27:05 ----A---- C:\Windows\system32\SndVolSSO.dll
2012-04-04 05:27:05 ----A---- C:\Windows\system32\dot3cfg.dll
2012-04-04 05:27:04 ----A---- C:\Windows\SYSWOW64\Display.dll
2012-04-04 05:27:04 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2012-04-04 05:27:03 ----A---- C:\Windows\SYSWOW64\mtxclu.dll
2012-04-04 05:27:02 ----A---- C:\Windows\system32\dxdiagn.dll
2012-04-04 05:26:57 ----A---- C:\Windows\SYSWOW64\XpsRasterService.dll
2012-04-04 05:26:57 ----A---- C:\Windows\SYSWOW64\userinit.exe
2012-04-04 05:26:57 ----A---- C:\Windows\SYSWOW64\puiobj.dll
2012-04-04 05:26:57 ----A---- C:\Windows\system32\shdocvw.dll
2012-04-04 05:26:57 ----A---- C:\Windows\system32\hbaapi.dll
2012-04-04 05:26:56 ----A---- C:\Windows\SYSWOW64\termmgr.dll
2012-04-04 05:26:56 ----A---- C:\Windows\system32\taskmgr.exe
2012-04-04 05:26:56 ----A---- C:\Windows\system32\prnfldr.dll
2012-04-04 05:26:55 ----A---- C:\Windows\SYSWOW64\eudcedit.exe
2012-04-04 05:26:55 ----A---- C:\Windows\system32\proquota.exe
2012-04-04 05:26:55 ----A---- C:\Windows\system32\pdh.dll
2012-04-04 05:26:55 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2012-04-04 05:26:55 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2012-04-04 05:26:54 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2012-04-04 05:26:54 ----A---- C:\Windows\system32\drivers\ataport.sys
2012-04-04 05:26:53 ----A---- C:\Windows\SYSWOW64\shsetup.dll
2012-04-04 05:26:53 ----A---- C:\Windows\SYSWOW64\logoncli.dll
2012-04-04 05:26:53 ----A---- C:\Windows\system32\untfs.dll
2012-04-04 05:26:53 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2012-04-04 05:26:52 ----A---- C:\Windows\SYSWOW64\wiadefui.dll
2012-04-04 05:26:52 ----A---- C:\Windows\SYSWOW64\sppcomapi.dll
2012-04-04 05:26:52 ----A---- C:\Windows\SYSWOW64\rasppp.dll
2012-04-04 05:26:52 ----A---- C:\Windows\SYSWOW64\cabview.dll
2012-04-04 05:26:51 ----A---- C:\Windows\system32\userinit.exe
2012-04-04 05:26:49 ----A---- C:\Windows\system32\accessibilitycpl.dll
2012-04-04 05:26:48 ----A---- C:\Windows\SYSWOW64\FirewallControlPanel.dll
2012-04-04 05:26:47 ----A---- C:\Windows\SYSWOW64\SensorsCpl.dll
2012-04-04 05:26:46 ----A---- C:\Windows\SYSWOW64\themecpl.dll
2012-04-04 05:26:46 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2012-04-04 05:26:46 ----A---- C:\Windows\system32\slui.exe
2012-04-04 05:26:45 ----A---- C:\Windows\SYSWOW64\dnscmmc.dll
2012-04-04 05:26:45 ----A---- C:\Windows\system32\zipfldr.dll
2012-04-04 05:26:42 ----A---- C:\Windows\system32\msieftp.dll
2012-04-04 05:26:42 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2012-04-04 05:26:41 ----A---- C:\Windows\SYSWOW64\PhotoScreensaver.scr
2012-04-04 05:26:41 ----A---- C:\Windows\SYSWOW64\hgcpl.dll
2012-04-04 05:26:39 ----A---- C:\Windows\SYSWOW64\tapisrv.dll
2012-04-04 05:26:39 ----A---- C:\Windows\SYSWOW64\scecli.dll
2012-04-04 05:26:39 ----A---- C:\Windows\system32\sud.dll
2012-04-04 05:26:39 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2012-04-04 05:26:38 ----A---- C:\Windows\SYSWOW64\mscories.dll
2012-04-04 05:26:38 ----A---- C:\Windows\SYSWOW64\mscms.dll
2012-04-04 05:26:38 ----A---- C:\Windows\SYSWOW64\fontext.dll
2012-04-04 05:26:38 ----A---- C:\Windows\system32\DeviceCenter.dll
2012-04-04 05:26:37 ----A---- C:\Windows\SYSWOW64\mprddm.dll
2012-04-04 05:26:37 ----A---- C:\Windows\SYSWOW64\localsec.dll
2012-04-04 05:26:37 ----A---- C:\Windows\system32\dot3svc.dll
2012-04-04 05:26:36 ----A---- C:\Windows\SYSWOW64\iasacct.dll
2012-04-04 05:26:36 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2012-04-04 05:26:36 ----A---- C:\Windows\system32\networkmap.dll
2012-04-04 05:26:36 ----A---- C:\Windows\system32\cryptui.dll
2012-04-04 05:26:35 ----A---- C:\Windows\SYSWOW64\SndVolSSO.dll
2012-04-04 05:26:35 ----A---- C:\Windows\system32\taskbarcpl.dll
2012-04-04 05:26:35 ----A---- C:\Windows\system32\srcore.dll
2012-04-04 05:26:35 ----A---- C:\Windows\system32\ActionCenter.dll
2012-04-04 05:26:34 ----A---- C:\Windows\SYSWOW64\usercpl.dll
2012-04-04 05:26:34 ----A---- C:\Windows\SYSWOW64\PerfCenterCPL.dll
2012-04-04 05:26:34 ----A---- C:\Windows\system32\twext.dll
2012-04-04 05:26:33 ----A---- C:\Windows\SYSWOW64\wlanui.dll
2012-04-04 05:26:33 ----A---- C:\Windows\SYSWOW64\VAN.dll
2012-04-04 05:26:33 ----A---- C:\Windows\SYSWOW64\qedit.dll
2012-04-04 05:26:33 ----A---- C:\Windows\SYSWOW64\prntvpt.dll
2012-04-04 05:26:33 ----A---- C:\Windows\SYSWOW64\batmeter.dll
2012-04-04 05:26:32 ----A---- C:\Windows\SYSWOW64\SndVol.exe
2012-04-04 05:26:32 ----A---- C:\Windows\SYSWOW64\netcenter.dll
2012-04-04 05:26:32 ----A---- C:\Windows\system32\OobeFldr.dll
2012-04-04 05:26:31 ----A---- C:\Windows\SYSWOW64\w32tm.exe
2012-04-04 05:26:31 ----A---- C:\Windows\system32\uxlib.dll

Sauron5302
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 21 čer 2011 17:51

Re: RSIT - Vypíná se mi NTB prosím o kontrolu

#2 Příspěvek od Sauron5302 »

cislo:2

2012-04-04 05:26:31 ----A---- C:\Windows\system32\recovery.dll
2012-04-04 05:26:31 ----A---- C:\Windows\system32\bcdedit.exe
2012-04-04 05:26:30 ----A---- C:\Windows\system32\dsuiext.dll
2012-04-04 05:26:30 ----A---- C:\Windows\system32\azroleui.dll
2012-04-04 05:26:29 ----A---- C:\Windows\system32\cca.dll
2012-04-04 05:26:29 ----A---- C:\Windows\system32\asycfilt.dll
2012-04-04 05:26:28 ----A---- C:\Windows\SYSWOW64\spwizeng.dll
2012-04-04 05:26:28 ----A---- C:\Windows\system32\sisbkup.dll
2012-04-04 05:26:28 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2012-04-04 05:26:28 ----A---- C:\Windows\system32\isoburn.exe
2012-04-04 05:26:27 ----A---- C:\Windows\SYSWOW64\azroleui.dll
2012-04-04 05:26:27 ----A---- C:\Windows\SYSWOW64\accessibilitycpl.dll
2012-04-04 05:26:26 ----A---- C:\Windows\system32\tzutil.exe
2012-04-04 05:26:26 ----A---- C:\Windows\system32\efscore.dll
2012-04-04 05:26:25 ----A---- C:\Windows\SYSWOW64\zipfldr.dll
2012-04-04 05:26:25 ----A---- C:\Windows\SYSWOW64\fdeploy.dll
2012-04-04 05:26:25 ----A---- C:\Windows\system32\syncui.dll
2012-04-04 05:26:25 ----A---- C:\Windows\system32\sdcpl.dll
2012-04-04 05:26:24 ----A---- C:\Windows\system32\systemcpl.dll
2012-04-04 05:26:24 ----A---- C:\Windows\system32\recdisc.exe
2012-04-04 05:26:24 ----A---- C:\Windows\system32\netplwiz.dll
2012-04-04 05:26:24 ----A---- C:\Windows\system32\httpapi.dll
2012-04-04 05:26:23 ----A---- C:\Windows\SYSWOW64\MSAC3ENC.DLL
2012-04-04 05:26:23 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2012-04-04 05:26:23 ----A---- C:\Windows\system32\shwebsvc.dll
2012-04-04 05:26:23 ----A---- C:\Windows\system32\drivers\mpio.sys
2012-04-04 05:26:23 ----A---- C:\Windows\system32\autoplay.dll
2012-04-04 05:26:22 ----A---- C:\Windows\SYSWOW64\netjoin.dll
2012-04-04 05:26:22 ----A---- C:\Windows\SYSWOW64\adsldp.dll
2012-04-04 05:26:22 ----A---- C:\Windows\system32\certcli.dll
2012-04-04 05:26:21 ----A---- C:\Windows\SYSWOW64\networkmap.dll
2012-04-04 05:26:21 ----A---- C:\Windows\system32\wlanmsm.dll
2012-04-04 05:26:21 ----A---- C:\Windows\system32\sysclass.dll
2012-04-04 05:26:21 ----A---- C:\Windows\system32\sdrsvc.dll
2012-04-04 05:26:21 ----A---- C:\Windows\system32\ncryptui.dll
2012-04-04 05:26:21 ----A---- C:\Windows\system32\appinfo.dll
2012-04-04 05:26:20 ----A---- C:\Windows\SYSWOW64\wusa.exe
2012-04-04 05:26:20 ----A---- C:\Windows\SYSWOW64\MCEWMDRMNDBootstrap.dll
2012-04-04 05:26:20 ----A---- C:\Windows\SYSWOW64\Faultrep.dll
2012-04-04 05:26:20 ----A---- C:\Windows\system32\msvidc32.dll
2012-04-04 05:26:20 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2012-04-04 05:26:19 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2012-04-04 05:26:18 ----A---- C:\Windows\SYSWOW64\prnfldr.dll
2012-04-04 05:26:18 ----A---- C:\Windows\system32\spwizeng.dll
2012-04-04 05:26:17 ----A---- C:\Windows\SYSWOW64\OnLineIDCpl.dll
2012-04-04 05:26:17 ----A---- C:\Windows\SYSWOW64\ActionCenter.dll
2012-04-04 05:26:17 ----A---- C:\Windows\system32\MFPlay.dll
2012-04-04 05:26:16 ----A---- C:\Windows\SYSWOW64\sud.dll
2012-04-04 05:26:16 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2012-04-04 05:26:14 ----A---- C:\Windows\SYSWOW64\photowiz.dll
2012-04-04 05:26:14 ----A---- C:\Windows\SYSWOW64\MediaMetadataHandler.dll
2012-04-04 05:26:14 ----A---- C:\Windows\system32\vdsutil.dll
2012-04-04 05:26:13 ----A---- C:\Windows\SYSWOW64\credssp.dll
2012-04-04 05:26:13 ----A---- C:\Windows\system32\termmgr.dll
2012-04-04 05:26:12 ----A---- C:\Windows\SYSWOW64\iasrad.dll
2012-04-04 05:26:12 ----A---- C:\Windows\system32\msscp.dll
2012-04-04 05:26:11 ----A---- C:\Windows\SYSWOW64\iprtrmgr.dll
2012-04-04 05:26:11 ----A---- C:\Windows\system32\sethc.exe
2012-04-04 05:26:11 ----A---- C:\Windows\system32\rstrui.exe
2012-04-04 05:26:10 ----A---- C:\Windows\SYSWOW64\defaultlocationcpl.dll
2012-04-04 05:26:10 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2012-04-04 05:26:10 ----A---- C:\Windows\system32\ReAgent.dll
2012-04-04 05:26:10 ----A---- C:\Windows\system32\ntlanman.dll
2012-04-04 05:26:09 ----A---- C:\Windows\SYSWOW64\ftp.exe
2012-04-04 05:26:09 ----A---- C:\Windows\SYSWOW64\dot3cfg.dll
2012-04-04 05:26:09 ----A---- C:\Windows\system32\tsgqec.dll
2012-04-04 05:26:08 ----A---- C:\Windows\SYSWOW64\sisbkup.dll
2012-04-04 05:26:08 ----A---- C:\Windows\SYSWOW64\ifsutil.dll
2012-04-04 05:26:08 ----A---- C:\Windows\system32\sqlcese30.dll
2012-04-04 05:26:07 ----A---- C:\Windows\SYSWOW64\shwebsvc.dll
2012-04-04 05:26:07 ----A---- C:\Windows\system32\iprtrmgr.dll
2012-04-04 05:26:07 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2012-04-04 05:26:06 ----A---- C:\Windows\SYSWOW64\efscore.dll
2012-04-04 05:26:06 ----A---- C:\Windows\system32\wwanprotdim.dll
2012-04-04 05:26:06 ----A---- C:\Windows\system32\rdpd3d.dll
2012-04-04 05:26:03 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2012-04-04 05:26:01 ----A---- C:\Windows\SYSWOW64\ActionCenterCPL.dll
2012-04-04 05:26:01 ----A---- C:\Windows\system32\ssText3d.scr
2012-04-04 05:26:01 ----A---- C:\Windows\system32\iTVData.dll
2012-04-04 05:26:00 ----A---- C:\Windows\SYSWOW64\syncui.dll
2012-04-04 05:26:00 ----A---- C:\Windows\SYSWOW64\autoplay.dll
2012-04-04 05:26:00 ----A---- C:\Windows\system32\iyuv_32.dll
2012-04-04 05:25:59 ----A---- C:\Windows\system32\wmdrmsdk.dll
2012-04-04 05:25:59 ----A---- C:\Windows\system32\srvcli.dll
2012-04-04 05:25:59 ----A---- C:\Windows\system32\slwga.dll
2012-04-04 05:25:59 ----A---- C:\Windows\system32\drmmgrtn.dll
2012-04-04 05:25:58 ----A---- C:\Windows\SYSWOW64\ntlanman.dll
2012-04-04 05:25:58 ----A---- C:\Windows\SYSWOW64\DeviceCenter.dll
2012-04-04 05:25:57 ----A---- C:\Windows\SYSWOW64\wmpmde.dll
2012-04-04 05:25:57 ----A---- C:\Windows\SYSWOW64\rtutils.dll
2012-04-04 05:25:57 ----A---- C:\Windows\SYSWOW64\dskquoui.dll
2012-04-04 05:25:57 ----A---- C:\Windows\system32\msiexec.exe
2012-04-04 05:25:56 ----A---- C:\Windows\SYSWOW64\OobeFldr.dll
2012-04-04 05:25:56 ----A---- C:\Windows\system32\wavemsp.dll
2012-04-04 05:25:56 ----A---- C:\Windows\system32\nslookup.exe
2012-04-04 05:25:55 ----A---- C:\Windows\system32\ntprint.dll
2012-04-04 05:25:55 ----A---- C:\Windows\system32\NAPHLPR.DLL
2012-04-04 05:25:55 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2012-04-04 05:25:55 ----A---- C:\Windows\system32\acppage.dll
2012-04-04 05:25:54 ----A---- C:\Windows\SYSWOW64\systemcpl.dll
2012-04-04 05:25:54 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2012-04-04 05:25:54 ----A---- C:\Windows\SYSWOW64\ntprint.dll
2012-04-04 05:25:53 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2012-04-04 05:25:53 ----A---- C:\Windows\system32\bcdboot.exe
2012-04-04 05:25:52 ----A---- C:\Windows\SYSWOW64\sethc.exe
2012-04-04 05:25:52 ----A---- C:\Windows\SYSWOW64\riched20.dll
2012-04-04 05:25:51 ----A---- C:\Windows\system32\srrstr.dll
2012-04-04 05:25:50 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2012-04-04 05:25:48 ----A---- C:\Windows\SYSWOW64\NAPHLPR.DLL
2012-04-04 05:25:48 ----A---- C:\Windows\system32\sppnp.dll
2012-04-04 05:25:47 ----A---- C:\Windows\SYSWOW64\netplwiz.dll
2012-04-04 05:25:47 ----A---- C:\Windows\SYSWOW64\migisol.dll
2012-04-04 05:25:47 ----A---- C:\Windows\SYSWOW64\fms.dll
2012-04-04 05:25:47 ----A---- C:\Windows\SYSWOW64\activeds.dll
2012-04-04 05:25:47 ----A---- C:\Windows\system32\TSpkg.dll
2012-04-04 05:25:47 ----A---- C:\Windows\system32\certprop.dll
2012-04-04 05:25:46 ----A---- C:\Windows\SYSWOW64\wmpsrcwp.dll
2012-04-04 05:25:45 ----A---- C:\Windows\SYSWOW64\dpx.dll
2012-04-04 05:25:45 ----A---- C:\Windows\system32\networkexplorer.dll
2012-04-04 05:25:45 ----A---- C:\Windows\system32\cabinet.dll
2012-04-04 05:25:44 ----A---- C:\Windows\SYSWOW64\httpapi.dll
2012-04-04 05:25:44 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2012-04-04 05:25:44 ----A---- C:\Windows\system32\remotepg.dll
2012-04-04 05:25:43 ----A---- C:\Windows\SYSWOW64\nshipsec.dll
2012-04-04 05:25:43 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2012-04-04 05:25:43 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2012-04-04 05:25:43 ----A---- C:\Windows\system32\wkscli.dll
2012-04-04 05:25:42 ----A---- C:\Windows\system32\dfrgui.exe
2012-04-04 05:25:42 ----A---- C:\Windows\system32\cdosys.dll
2012-04-04 05:25:40 ----A---- C:\Windows\SYSWOW64\msftedit.dll
2012-04-04 05:25:40 ----A---- C:\Windows\SYSWOW64\isoburn.exe
2012-04-04 05:25:39 ----A---- C:\Windows\SYSWOW64\wavemsp.dll
2012-04-04 05:25:39 ----A---- C:\Windows\SYSWOW64\ReAgent.dll
2012-04-04 05:25:39 ----A---- C:\Windows\system32\WinSCard.dll
2012-04-04 05:25:38 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2012-04-04 05:25:38 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll
2012-04-04 05:25:38 ----A---- C:\Windows\system32\ftp.exe
2012-04-04 05:25:37 ----A---- C:\Windows\SYSWOW64\provsvc.dll
2012-04-04 05:25:37 ----A---- C:\Windows\system32\wsnmp32.dll
2012-04-04 05:25:37 ----A---- C:\Windows\system32\wmpdxm.dll
2012-04-04 05:25:36 ----A---- C:\Windows\SYSWOW64\dot3ui.dll
2012-04-04 05:25:36 ----A---- C:\Windows\system32\net1.exe
2012-04-04 05:25:35 ----A---- C:\Windows\SYSWOW64\dfrgui.exe
2012-04-04 05:25:35 ----A---- C:\Windows\system32\wuwebv.dll
2012-04-04 05:25:33 ----A---- C:\Windows\SYSWOW64\dsuiext.dll
2012-04-04 05:25:33 ----A---- C:\Windows\system32\wvc.dll
2012-04-04 05:25:32 ----A---- C:\Windows\SYSWOW64\tzutil.exe
2012-04-04 05:25:32 ----A---- C:\Windows\SYSWOW64\ocsetup.exe
2012-04-04 05:25:32 ----A---- C:\Windows\system32\wsqmcons.exe
2012-04-04 05:25:32 ----A---- C:\Windows\system32\wmdrmdev.dll
2012-04-04 05:25:32 ----A---- C:\Windows\system32\WerFaultSecure.exe
2012-04-04 05:25:32 ----A---- C:\Windows\system32\blackbox.dll
2012-04-04 05:25:31 ----A---- C:\Windows\SYSWOW64\wvc.dll
2012-04-04 05:25:31 ----A---- C:\Windows\SYSWOW64\wtsapi32.dll
2012-04-04 05:25:31 ----A---- C:\Windows\SYSWOW64\wimgapi.dll
2012-04-04 05:25:31 ----A---- C:\Windows\system32\mfps.dll
2012-04-04 05:25:30 ----A---- C:\Windows\SYSWOW64\mstask.dll
2012-04-04 05:25:30 ----A---- C:\Windows\system32\msyuv.dll
2012-04-04 05:25:29 ----A---- C:\Windows\SYSWOW64\twext.dll
2012-04-04 05:25:29 ----A---- C:\Windows\SYSWOW64\PkgMgr.exe
2012-04-04 05:25:29 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2012-04-04 05:25:27 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2012-04-04 05:25:27 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2012-04-04 05:25:27 ----A---- C:\Windows\system32\mapistub.dll
2012-04-04 05:25:27 ----A---- C:\Windows\system32\mapi32.dll
2012-04-04 05:25:27 ----A---- C:\Windows\system32\Bubbles.scr
2012-04-04 05:25:26 ----A---- C:\Windows\system32\OpcServices.dll
2012-04-04 05:25:25 ----A---- C:\Windows\twain_32.dll
2012-04-04 05:25:25 ----A---- C:\Windows\SYSWOW64\qcap.dll
2012-04-04 05:25:25 ----A---- C:\Windows\system32\WUDFPlatform.dll
2012-04-04 05:25:25 ----A---- C:\Windows\system32\unimdmat.dll
2012-04-04 05:25:24 ----A---- C:\Windows\SYSWOW64\setupugc.exe
2012-04-04 05:25:24 ----A---- C:\Windows\system32\msrle32.dll
2012-04-04 05:25:23 ----A---- C:\Windows\SYSWOW64\qasf.dll
2012-04-04 05:25:22 ----A---- C:\Windows\system32\iscsium.dll
2012-04-04 05:25:20 ----A---- C:\Windows\SYSWOW64\uxlib.dll
2012-04-04 05:25:20 ----A---- C:\Windows\system32\seclogon.dll
2012-04-04 05:25:20 ----A---- C:\Windows\system32\diskraid.exe
2012-04-04 05:25:19 ----A---- C:\Windows\SYSWOW64\slwga.dll
2012-04-04 05:25:19 ----A---- C:\Windows\system32\tsbyuv.dll
2012-04-04 05:25:19 ----A---- C:\Windows\system32\ifsutil.dll
2012-04-04 05:25:18 ----A---- C:\Windows\SYSWOW64\ssText3d.scr
2012-04-04 05:25:18 ----A---- C:\Windows\system32\Ribbons.scr
2012-04-04 05:25:18 ----A---- C:\Windows\system32\Mystify.scr
2012-04-04 05:25:16 ----A---- C:\Windows\SYSWOW64\msvfw32.dll
2012-04-04 05:25:16 ----A---- C:\Windows\system32\drivers\umbus.sys
2012-04-04 05:25:15 ----A---- C:\Windows\SYSWOW64\nslookup.exe
2012-04-04 05:25:15 ----A---- C:\Windows\SYSWOW64\mciavi32.dll
2012-04-04 05:25:15 ----A---- C:\Windows\SYSWOW64\audiodev.dll
2012-04-04 05:25:14 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2012-04-04 05:25:14 ----A---- C:\Windows\system32\muifontsetup.dll
2012-04-04 05:25:14 ----A---- C:\Windows\system32\d3d10level9.dll
2012-04-04 05:25:13 ----A---- C:\Windows\SYSWOW64\clusapi.dll
2012-04-04 05:25:13 ----A---- C:\Windows\system32\wmpshell.dll
2012-04-04 05:25:13 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2012-04-04 05:25:13 ----A---- C:\Windows\system32\perfmon.exe
2012-04-04 05:25:12 ----A---- C:\Windows\system32\rdpencom.dll
2012-04-04 05:25:11 ----A---- C:\Windows\SYSWOW64\DevicePairingFolder.dll
2012-04-04 05:25:10 ----A---- C:\Windows\SYSWOW64\WPDShServiceObj.dll
2012-04-04 05:25:10 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2012-04-04 05:25:09 ----A---- C:\Windows\SYSWOW64\msscp.dll
2012-04-04 05:25:09 ----A---- C:\Windows\SYSWOW64\diskraid.exe
2012-04-04 05:25:09 ----A---- C:\Windows\system32\AzSqlExt.dll
2012-04-04 05:25:08 ----A---- C:\Windows\SYSWOW64\wimserv.exe
2012-04-04 05:25:08 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2012-04-04 05:25:08 ----A---- C:\Windows\system32\umb.dll
2012-04-04 05:25:08 ----A---- C:\Windows\system32\tlscsp.dll
2012-04-04 05:25:08 ----A---- C:\Windows\system32\netutils.dll
2012-04-04 05:25:07 ----A---- C:\Windows\SYSWOW64\rdpencom.dll
2012-04-04 05:25:07 ----A---- C:\Windows\SYSWOW64\acppage.dll
2012-04-04 05:25:07 ----A---- C:\Windows\system32\qasf.dll
2012-04-04 05:25:07 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2012-04-04 05:25:07 ----A---- C:\Windows\system32\dbghelp.dll
2012-04-04 05:25:06 ----A---- C:\Windows\SYSWOW64\perfmon.exe
2012-04-04 05:25:06 ----A---- C:\Windows\system32\FXSAPI.dll
2012-04-04 05:25:06 ----A---- C:\Windows\system32\browser.dll
2012-04-04 05:25:06 ----A---- C:\Windows\system32\ActionQueue.dll
2012-04-04 05:25:05 ----A---- C:\Windows\SYSWOW64\remotepg.dll
2012-04-04 05:25:05 ----A---- C:\Windows\SYSWOW64\raschap.dll
2012-04-04 05:25:05 ----A---- C:\Windows\system32\runonce.exe
2012-04-04 05:25:05 ----A---- C:\Windows\bfsvc.exe
2012-04-04 05:25:04 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2012-04-04 05:25:04 ----A---- C:\Windows\system32\raschap.dll
2012-04-04 05:25:03 ----A---- C:\Windows\SYSWOW64\QUTIL.DLL
2012-04-04 05:25:03 ----A---- C:\Windows\SYSWOW64\NAPCRYPT.DLL
2012-04-04 05:25:03 ----A---- C:\Windows\SYSWOW64\input.dll
2012-04-04 05:25:03 ----A---- C:\Windows\system32\wpdwcn.dll
2012-04-04 05:25:03 ----A---- C:\Windows\system32\wiavideo.dll
2012-04-04 05:25:03 ----A---- C:\Windows\system32\syssetup.dll
2012-04-04 05:25:02 ----A---- C:\Windows\system32\WMADMOD.DLL
2012-04-04 05:25:01 ----A---- C:\Windows\SYSWOW64\UserAccountControlSettings.dll
2012-04-04 05:25:01 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2012-04-04 05:25:01 ----A---- C:\Windows\SYSWOW64\ocsetapi.dll
2012-04-04 05:25:01 ----A---- C:\Windows\SYSWOW64\networkexplorer.dll
2012-04-04 05:25:01 ----A---- C:\Windows\system32\MdSched.exe
2012-04-04 05:25:00 ----A---- C:\Windows\SYSWOW64\vpnikeapi.dll
2012-04-04 05:24:59 ----A---- C:\Windows\SYSWOW64\wmpdxm.dll
2012-04-04 05:24:59 ----A---- C:\Windows\system32\WMVSDECD.DLL
2012-04-04 05:24:59 ----A---- C:\Windows\system32\vdsbas.dll
2012-04-04 05:24:59 ----A---- C:\Windows\system32\PrintIsolationProxy.dll
2012-04-04 05:24:58 ----A---- C:\Windows\SYSWOW64\onexui.dll
2012-04-04 05:24:58 ----A---- C:\Windows\SYSWOW64\iTVData.dll
2012-04-04 05:24:58 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2012-04-04 05:24:57 ----A---- C:\Windows\SYSWOW64\vdsbas.dll
2012-04-04 05:24:56 ----A---- C:\Windows\SYSWOW64\wpdwcn.dll
2012-04-04 05:24:56 ----A---- C:\Windows\SYSWOW64\runonce.exe
2012-04-04 05:24:56 ----A---- C:\Windows\system32\mstask.dll
2012-04-04 05:24:56 ----A---- C:\Windows\system32\Mcx2Svc.dll
2012-04-04 05:24:55 ----A---- C:\Windows\SYSWOW64\logagent.exe
2012-04-04 05:24:55 ----A---- C:\Windows\SYSWOW64\dxdiagn.dll
2012-04-04 05:24:55 ----A---- C:\Windows\system32\nltest.exe
2012-04-04 05:24:55 ----A---- C:\Windows\system32\drivers\rmcast.sys
2012-04-04 05:24:55 ----A---- C:\Windows\system32\bitsadmin.exe
2012-04-04 05:24:53 ----A---- C:\Windows\SYSWOW64\msvidc32.dll
2012-04-04 05:24:53 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2012-04-04 05:24:53 ----A---- C:\Windows\SYSWOW64\MFPlay.dll
2012-04-04 05:24:53 ----A---- C:\Windows\SYSWOW64\eapp3hst.dll
2012-04-04 05:24:53 ----A---- C:\Windows\system32\shacct.dll
2012-04-04 05:24:53 ----A---- C:\Windows\system32\cscapi.dll
2012-04-04 05:24:52 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2012-04-04 05:24:52 ----A---- C:\Windows\system32\vss_ps.dll
2012-04-04 05:24:52 ----A---- C:\Windows\system32\tabcal.exe
2012-04-04 05:24:52 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2012-04-04 05:24:51 ----A---- C:\Windows\SYSWOW64\wmdrmdev.dll
2012-04-04 05:24:51 ----A---- C:\Windows\SYSWOW64\shacct.dll
2012-04-04 05:24:44 ----A---- C:\Windows\system32\wmdrmnet.dll
2012-04-04 05:24:43 ----A---- C:\Windows\SYSWOW64\wmpshell.dll
2012-04-04 05:24:43 ----A---- C:\Windows\system32\logman.exe
2012-04-04 05:24:41 ----A---- C:\Windows\SYSWOW64\lsmproxy.dll
2012-04-04 05:24:41 ----A---- C:\Windows\SYSWOW64\bitsadmin.exe
2012-04-04 05:24:41 ----A---- C:\Windows\system32\WPDSp.dll
2012-04-04 05:24:41 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2012-04-04 05:24:41 ----A---- C:\Windows\system32\qcap.dll
2012-04-04 05:24:40 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2012-04-04 05:24:40 ----A---- C:\Windows\SYSWOW64\unimdmat.dll
2012-04-04 05:24:40 ----A---- C:\Windows\SYSWOW64\sqlcese30.dll
2012-04-04 05:24:40 ----A---- C:\Windows\SYSWOW64\iscsium.dll
2012-04-04 05:24:40 ----A---- C:\Windows\system32\wudriver.dll
2012-04-04 05:24:40 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2012-04-04 05:24:40 ----A---- C:\Windows\system32\msnetobj.dll
2012-04-04 05:24:39 ----A---- C:\Windows\SYSWOW64\rdpd3d.dll
2012-04-04 05:24:39 ----A---- C:\Windows\SYSWOW64\Bubbles.scr
2012-04-04 05:24:39 ----A---- C:\Windows\system32\secproc_ssp.dll
2012-04-04 05:24:39 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll
2012-04-04 05:24:38 ----A---- C:\Windows\SYSWOW64\mprapi.dll
2012-04-04 05:24:38 ----A---- C:\Windows\system32\qdv.dll
2012-04-04 05:24:37 ----A---- C:\Windows\SYSWOW64\PortableDeviceSyncProvider.dll
2012-04-04 05:24:37 ----A---- C:\Windows\SYSWOW64\pdh.dll
2012-04-04 05:24:37 ----A---- C:\Windows\SYSWOW64\OpcServices.dll
2012-04-04 05:24:37 ----A---- C:\Windows\SYSWOW64\cscapi.dll
2012-04-04 05:24:37 ----A---- C:\Windows\system32\spbcd.dll
2012-04-04 05:24:36 ----A---- C:\Windows\SYSWOW64\WPDSp.dll
2012-04-04 05:24:36 ----A---- C:\Windows\SYSWOW64\srvcli.dll
2012-04-04 05:24:36 ----A---- C:\Windows\SYSWOW64\olethk32.dll
2012-04-04 05:24:36 ----A---- C:\Windows\SYSWOW64\ncryptui.dll
2012-04-04 05:24:36 ----A---- C:\Windows\SYSWOW64\logman.exe
2012-04-04 05:24:36 ----A---- C:\Windows\system32\PortableDeviceStatus.dll
2012-04-04 05:24:36 ----A---- C:\Windows\system32\fphc.dll
2012-04-04 05:24:36 ----A---- C:\Windows\system32\drivers\ndisuio.sys
2012-04-04 05:24:36 ----A---- C:\Windows\system32\dot3ui.dll
2012-04-04 05:24:35 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2012-04-04 05:24:35 ----A---- C:\Windows\SYSWOW64\Ribbons.scr
2012-04-04 05:24:35 ----A---- C:\Windows\SYSWOW64\QSVRMGMT.DLL
2012-04-04 05:24:35 ----A---- C:\Windows\SYSWOW64\PortableDeviceStatus.dll
2012-04-04 05:24:35 ----A---- C:\Windows\system32\takeown.exe
2012-04-04 05:24:34 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2012-04-04 05:24:34 ----A---- C:\Windows\SYSWOW64\Mystify.scr
2012-04-04 05:24:34 ----A---- C:\Windows\SYSWOW64\mapistub.dll
2012-04-04 05:24:34 ----A---- C:\Windows\SYSWOW64\mapi32.dll
2012-04-04 05:24:34 ----A---- C:\Windows\system32\PnPUnattend.exe
2012-04-04 05:24:33 ----A---- C:\Windows\SYSWOW64\WMADMOD.DLL
2012-04-04 05:24:33 ----A---- C:\Windows\SYSWOW64\utildll.dll
2012-04-04 05:24:33 ----A---- C:\Windows\SYSWOW64\fphc.dll
2012-04-04 05:24:33 ----A---- C:\Windows\SYSWOW64\avifil32.dll
2012-04-04 05:24:33 ----A---- C:\Windows\system32\WMPhoto.dll
2012-04-04 05:24:33 ----A---- C:\Windows\system32\amstream.dll
2012-04-04 05:24:32 ----A---- C:\Windows\SYSWOW64\dot3msm.dll
2012-04-04 05:24:30 ----A---- C:\Windows\SYSWOW64\wiavideo.dll
2012-04-04 05:24:29 ----A---- C:\Windows\SYSWOW64\takeown.exe
2012-04-04 05:24:29 ----A---- C:\Windows\system32\EhStorAPI.dll
2012-04-04 05:24:28 ----A---- C:\Windows\SYSWOW64\WMVSDECD.DLL
2012-04-04 05:24:28 ----A---- C:\Windows\SYSWOW64\iyuv_32.dll
2012-04-04 05:24:28 ----A---- C:\Windows\system32\vfwwdm32.dll
2012-04-04 05:24:27 ----A---- C:\Windows\SYSWOW64\wmdrmnet.dll
2012-04-04 05:24:27 ----A---- C:\Windows\system32\shimgvw.dll
2012-04-04 05:24:27 ----A---- C:\Windows\system32\netapi32.dll
2012-04-04 05:24:27 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2012-04-04 05:24:26 ----A---- C:\Windows\SYSWOW64\qdv.dll
2012-04-04 05:24:26 ----A---- C:\Windows\system32\QCLIPROV.DLL
2012-04-04 05:24:26 ----A---- C:\Windows\system32\nrpsrv.dll
2012-04-04 05:24:26 ----A---- C:\Windows\system32\djoin.exe
2012-04-04 05:24:26 ----A---- C:\Windows\system32\cmstp.exe
2012-04-04 05:24:26 ----A---- C:\Windows\system32\CertPolEng.dll
2012-04-04 05:24:25 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2012-04-04 05:24:25 ----A---- C:\Windows\SYSWOW64\EhStorAPI.dll
2012-04-04 05:24:25 ----A---- C:\Windows\system32\WUDFHost.exe
2012-04-04 05:24:25 ----A---- C:\Windows\system32\iasrecst.dll
2012-04-04 05:24:24 ----A---- C:\Windows\SYSWOW64\sppinst.dll
2012-04-04 05:24:24 ----A---- C:\Windows\SYSWOW64\msyuv.dll
2012-04-04 05:24:24 ----A---- C:\Windows\system32\WUDFx.dll
2012-04-04 05:24:24 ----A---- C:\Windows\system32\WavDest.dll
2012-04-04 05:24:23 ----A---- C:\Windows\SYSWOW64\QCLIPROV.DLL
2012-04-04 05:24:23 ----A---- C:\Windows\SYSWOW64\msrle32.dll
2012-04-04 05:24:22 ----A---- C:\Windows\SYSWOW64\cmstp.exe
2012-04-04 05:24:22 ----A---- C:\Windows\SYSWOW64\cca.dll
2012-04-04 05:24:22 ----A---- C:\Windows\system32\fdProxy.dll
2012-04-04 05:24:21 ----A---- C:\Windows\SYSWOW64\wsnmp32.dll
2012-04-04 05:24:21 ----A---- C:\Windows\SYSWOW64\vfwwdm32.dll
2012-04-04 05:24:21 ----A---- C:\Windows\SYSWOW64\pdhui.dll
2012-04-04 05:24:21 ----A---- C:\Windows\SYSWOW64\MuiUnattend.exe
2012-04-04 05:24:21 ----A---- C:\Windows\system32\MultiDigiMon.exe
2012-04-04 05:24:21 ----A---- C:\Windows\system32\KMSVC.DLL
2012-04-04 05:24:21 ----A---- C:\Windows\system32\drivers\pacer.sys
2012-04-04 05:24:20 ----A---- C:\Windows\SYSWOW64\WMSPDMOD.DLL
2012-04-04 05:24:20 ----A---- C:\Windows\SYSWOW64\setupcln.dll
2012-04-04 05:24:19 ----A---- C:\Windows\system32\wuauclt.exe
2012-04-04 05:24:19 ----A---- C:\Windows\system32\relog.exe
2012-04-04 05:24:19 ----A---- C:\Windows\system32\mydocs.dll
2012-04-04 05:24:18 ----A---- C:\Windows\SYSWOW64\AzSqlExt.dll
2012-04-04 05:24:18 ----A---- C:\Windows\system32\sscore.dll
2012-04-04 05:24:18 ----A---- C:\Windows\system32\iscsicli.exe
2012-04-04 05:24:17 ----A---- C:\Windows\system32\diskpart.exe
2012-04-04 05:24:16 ----A---- C:\Windows\SYSWOW64\tsbyuv.dll
2012-04-04 05:24:15 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2012-04-04 05:24:15 ----A---- C:\Windows\SYSWOW64\iasrecst.dll
2012-04-04 05:24:15 ----A---- C:\Windows\system32\mobsync.exe
2012-04-04 05:24:14 ----A---- C:\Windows\SYSWOW64\relog.exe
2012-04-04 05:24:14 ----A---- C:\Windows\SYSWOW64\netiougc.exe
2012-04-04 05:24:14 ----A---- C:\Windows\system32\BWUnpairElevated.dll
2012-04-04 05:24:13 ----A---- C:\Windows\SYSWOW64\wkscli.dll
2012-04-04 05:24:13 ----A---- C:\Windows\SYSWOW64\spbcd.dll
2012-04-04 05:24:13 ----A---- C:\Windows\SYSWOW64\iscsicli.exe
2012-04-04 05:24:13 ----A---- C:\Windows\system32\itircl.dll
2012-04-04 05:24:12 ----A---- C:\Windows\SYSWOW64\mydocs.dll
2012-04-04 05:24:12 ----A---- C:\Windows\SYSWOW64\diskpart.exe
2012-04-04 05:24:12 ----A---- C:\Windows\SYSWOW64\amstream.dll
2012-04-04 05:24:12 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2012-04-04 05:24:12 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2012-04-04 05:24:12 ----A---- C:\Windows\system32\msdmo.dll
2012-04-04 05:24:12 ----A---- C:\Windows\system32\dot3msm.dll
2012-04-04 05:24:12 ----A---- C:\Windows\system32\browcli.dll
2012-04-04 05:24:11 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll
2012-04-04 05:24:11 ----A---- C:\Windows\SYSWOW64\resutils.dll
2012-04-04 05:24:11 ----A---- C:\Windows\SYSWOW64\rastapi.dll
2012-04-04 05:24:11 ----A---- C:\Windows\SYSWOW64\netbtugc.exe
2012-04-04 05:24:10 ----A---- C:\Windows\SYSWOW64\syssetup.dll
2012-04-04 05:24:10 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll
2012-04-04 05:24:10 ----A---- C:\Windows\SYSWOW64\itircl.dll
2012-04-04 05:24:09 ----A---- C:\Windows\SYSWOW64\CertPolEng.dll
2012-04-04 05:24:08 ----A---- C:\Windows\SYSWOW64\wmpps.dll
2012-04-04 05:24:08 ----A---- C:\Windows\system32\wuapp.exe
2012-04-04 05:24:08 ----A---- C:\Windows\system32\FXSTIFF.dll
2012-04-04 05:24:07 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2012-04-04 05:24:07 ----A---- C:\Windows\SYSWOW64\WerFaultSecure.exe
2012-04-04 05:24:07 ----A---- C:\Windows\system32\mciqtz32.dll
2012-04-04 05:24:07 ----A---- C:\Windows\system32\choice.exe
2012-04-04 05:24:07 ----A---- C:\Windows\system32\findstr.exe
2012-04-04 05:24:07 ----A---- C:\Windows\system32\eappgnui.dll
2012-04-04 05:24:06 ----A---- C:\Windows\SYSWOW64\tlscsp.dll
2012-04-04 05:24:06 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe
2012-04-04 05:24:06 ----A---- C:\Windows\SYSWOW64\ReAgentc.exe
2012-04-04 05:24:06 ----A---- C:\Windows\SYSWOW64\findstr.exe
2012-04-04 05:24:06 ----A---- C:\Windows\SYSWOW64\eappgnui.dll
2012-04-04 05:24:06 ----A---- C:\Windows\system32\luainstall.dll
2012-04-04 05:24:06 ----A---- C:\Windows\system32\drivers\tunnel.sys
2012-04-04 05:24:05 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe
2012-04-04 05:24:05 ----A---- C:\Windows\SYSWOW64\netutils.dll
2012-04-04 05:24:05 ----A---- C:\Windows\SYSWOW64\mciqtz32.dll
2012-04-04 05:24:05 ----A---- C:\Windows\system32\sppc.dll
2012-04-04 05:24:05 ----A---- C:\Windows\system32\onexui.dll
2012-04-04 05:24:04 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2012-04-04 05:24:04 ----A---- C:\Windows\SYSWOW64\mobsync.exe
2012-04-04 05:24:04 ----A---- C:\Windows\system32\schedcli.dll
2012-04-04 05:24:04 ----A---- C:\Windows\system32\manage-bde.exe
2012-04-04 05:24:04 ----A---- C:\Windows\system32\drivers\dfsc.sys
2012-04-04 05:24:03 ----A---- C:\Windows\SYSWOW64\sppc.dll
2012-04-04 05:24:03 ----A---- C:\Windows\SYSWOW64\muifontsetup.dll
2012-04-04 05:24:03 ----A---- C:\Windows\SYSWOW64\iccvid.dll
2012-04-04 05:24:03 ----A---- C:\Windows\SYSWOW64\cabinet.dll
2012-04-04 05:24:03 ----A---- C:\Windows\system32\wdiasqmmodule.dll
2012-04-04 05:24:03 ----A---- C:\Windows\system32\repair-bde.exe
2012-04-04 05:24:03 ----A---- C:\Windows\system32\inetmib1.dll
2012-04-04 05:24:02 ----A---- C:\Windows\SYSWOW64\spopk.dll
2012-04-04 05:24:02 ----A---- C:\Windows\SYSWOW64\shimgvw.dll
2012-04-04 05:24:02 ----A---- C:\Windows\SYSWOW64\luainstall.dll
2012-04-04 05:24:02 ----A---- C:\Windows\system32\spopk.dll
2012-04-04 05:24:02 ----A---- C:\Windows\system32\RDPENCDD.dll
2012-04-04 05:24:01 ----A---- C:\Windows\SYSWOW64\unlodctr.exe
2012-04-04 05:24:01 ----A---- C:\Windows\SYSWOW64\msdmo.dll
2012-04-04 05:24:01 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2012-04-04 05:24:01 ----A---- C:\Windows\system32\profprov.dll
2012-04-04 05:24:00 ----A---- C:\Windows\system32\odbcconf.dll
2012-04-04 05:23:59 ----A---- C:\Windows\SYSWOW64\rdprefdrvapi.dll
2012-04-04 05:23:59 ----A---- C:\Windows\SYSWOW64\inetmib1.dll
2012-04-04 05:23:59 ----A---- C:\Windows\system32\fixmapi.exe
2012-04-04 05:23:57 ----A---- C:\Windows\SYSWOW64\odbcconf.dll
2012-04-04 05:23:57 ----A---- C:\Windows\SYSWOW64\browcli.dll
2012-04-04 05:23:57 ----A---- C:\Windows\system32\UIRibbonRes.dll
2012-04-04 05:23:57 ----A---- C:\Windows\system32\FXSMON.dll
2012-04-04 05:23:57 ----A---- C:\Windows\system32\elsTrans.dll
2012-04-04 05:23:56 ----A---- C:\Windows\SYSWOW64\wups.dll
2012-04-04 05:23:56 ----A---- C:\Windows\SYSWOW64\UIRibbonRes.dll
2012-04-04 05:23:56 ----A---- C:\Windows\system32\TRAPI.dll
2012-04-04 05:23:56 ----A---- C:\Windows\system32\drivers\tdi.sys
2012-04-04 05:23:55 ----A---- C:\Windows\system32\wshbth.dll
2012-04-04 05:23:54 ----A---- C:\Windows\SYSWOW64\perfts.dll
2012-04-04 05:23:54 ----A---- C:\Windows\SYSWOW64\imm32.dll
2012-04-04 05:23:54 ----A---- C:\Windows\system32\LogonUI.exe
2012-04-04 05:23:54 ----A---- C:\Windows\system32\dsauth.dll
2012-04-04 05:23:53 ----A---- C:\Windows\system32\rdprefdrvapi.dll
2012-04-04 05:23:53 ----A---- C:\Windows\system32\napdsnap.dll
2012-04-04 05:23:52 ----A---- C:\Windows\SYSWOW64\elsTrans.dll
2012-04-04 05:23:52 ----A---- C:\Windows\system32\FXSUNATD.exe
2012-04-04 05:23:51 ----A---- C:\Windows\SYSWOW64\TRAPI.dll
2012-04-04 05:23:51 ----A---- C:\Windows\SYSWOW64\bitsperf.dll
2012-04-04 05:23:51 ----A---- C:\Windows\system32\drivers\usbrpm.sys
2012-04-04 05:23:51 ----A---- C:\Windows\system32\cscdll.dll
2012-04-04 05:23:51 ----A---- C:\Windows\system32\bitsperf.dll
2012-04-04 05:23:50 ----A---- C:\Windows\SYSWOW64\wshbth.dll
2012-04-04 05:23:50 ----A---- C:\Windows\SYSWOW64\schedcli.dll
2012-04-04 05:23:50 ----A---- C:\Windows\SYSWOW64\napdsnap.dll
2012-04-04 05:23:50 ----A---- C:\Windows\SYSWOW64\dsauth.dll
2012-04-04 05:23:50 ----A---- C:\Windows\SYSWOW64\cscdll.dll
2012-04-04 05:23:49 ----A---- C:\Windows\system32\wups2.dll
2012-04-04 05:23:49 ----A---- C:\Windows\system32\drivers\acpipmi.sys
2012-04-04 05:23:48 ----A---- C:\Windows\SYSWOW64\sscore.dll
2012-04-04 05:23:48 ----A---- C:\Windows\system32\wups.dll
2012-04-04 05:23:48 ----A---- C:\Windows\system32\wsdchngr.dll
2012-04-04 05:23:47 ----A---- C:\Windows\system32\shgina.dll
2012-04-04 05:23:45 ----A---- C:\Windows\SYSWOW64\wsdchngr.dll
2012-04-04 05:23:45 ----A---- C:\Windows\SYSWOW64\shgina.dll
2012-04-04 05:23:45 ----A---- C:\Windows\SYSWOW64\riched32.dll
2012-04-04 05:23:44 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2012-04-04 05:23:43 ----A---- C:\Windows\system32\wshirda.dll
2012-04-04 05:23:43 ----A---- C:\Windows\system32\drivers\CompositeBus.sys
2012-04-04 05:23:42 ----A---- C:\Windows\system32\drivers\hidusb.sys
2012-04-04 05:23:42 ----A---- C:\Windows\system32\drivers\appid.sys
2012-04-04 05:23:40 ----A---- C:\Windows\SYSWOW64\wshirda.dll
2012-04-04 05:23:40 ----A---- C:\Windows\system32\rdpcfgex.dll
2012-04-04 05:23:39 ----A---- C:\Windows\system32\riched32.dll
2012-04-04 05:23:39 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2012-04-04 05:23:38 ----A---- C:\Windows\system32\spwmp.dll
2012-04-04 05:23:38 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2012-04-04 05:23:38 ----A---- C:\Windows\system32\browseui.dll
2012-04-04 05:23:37 ----A---- C:\Windows\SYSWOW64\browseui.dll
2012-04-04 05:23:37 ----A---- C:\Windows\system32\C_ISCII.DLL
2012-04-04 05:23:36 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2012-04-04 05:23:35 ----A---- C:\Windows\SYSWOW64\C_ISCII.DLL
2012-04-04 05:23:35 ----A---- C:\Windows\system32\dxmasf.dll
2012-04-04 05:23:35 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2012-04-04 05:23:35 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2012-04-04 05:23:35 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2012-04-04 05:23:35 ----A---- C:\Windows\system32\drivers\cdrom.sys
2012-04-04 05:23:34 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2012-04-04 05:23:34 ----A---- C:\Windows\system32\drivers\scfilter.sys
2012-04-04 05:23:33 ----AH---- C:\Windows\system32\api-ms-win-core-ums-l1-1-0.dll
2012-04-04 05:23:33 ----A---- C:\Windows\system32\shunimpl.dll
2012-04-04 05:23:33 ----A---- C:\Windows\system32\drivers\sffp_sd.sys
2012-04-04 05:23:32 ----A---- C:\Windows\SYSWOW64\shunimpl.dll
2012-04-04 05:23:32 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2012-04-04 05:23:31 ----A---- C:\Windows\SYSWOW64\KBDTUQ.DLL
2012-04-04 05:23:31 ----A---- C:\Windows\SYSWOW64\KBDTUF.DLL
2012-04-04 05:23:31 ----A---- C:\Windows\SYSWOW64\KBDSG.DLL
2012-04-04 05:23:31 ----A---- C:\Windows\SYSWOW64\kbdlk41a.dll
2012-04-04 05:23:31 ----A---- C:\Windows\SYSWOW64\KBDGR1.DLL
2012-04-04 05:23:31 ----A---- C:\Windows\system32\KBDTUQ.DLL
2012-04-04 05:23:31 ----A---- C:\Windows\system32\KBDTUF.DLL
2012-04-04 05:23:31 ----A---- C:\Windows\system32\KBDSG.DLL
2012-04-04 05:23:31 ----A---- C:\Windows\system32\KBDSF.DLL
2012-04-04 05:23:31 ----A---- C:\Windows\system32\KBDPO.DLL
2012-04-04 05:23:31 ----A---- C:\Windows\system32\KBDINTAM.DLL
2012-04-04 05:23:31 ----A---- C:\Windows\system32\KBDINBEN.DLL
2012-04-04 05:23:30 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2012-04-04 05:23:30 ----A---- C:\Windows\SYSWOW64\KBDGKL.DLL
2012-04-04 05:23:30 ----A---- C:\Windows\system32\KBDNEPR.DLL
2012-04-04 05:23:30 ----A---- C:\Windows\system32\kbdlk41a.dll
2012-04-04 05:23:30 ----A---- C:\Windows\system32\KBDGR1.DLL
2012-04-04 05:23:30 ----A---- C:\Windows\system32\KBDGKL.DLL
2012-04-04 05:23:29 ----A---- C:\Windows\system32\wmploc.DLL
2012-04-04 05:23:28 ----A---- C:\Windows\SYSWOW64\KBDUS.DLL
2012-04-04 05:23:28 ----A---- C:\Windows\SYSWOW64\KBDUGHR1.DLL
2012-04-04 05:23:28 ----A---- C:\Windows\SYSWOW64\KBDTURME.DLL
2012-04-04 05:23:28 ----A---- C:\Windows\SYSWOW64\KBDTAJIK.DLL
2012-04-04 05:23:28 ----A---- C:\Windows\SYSWOW64\KBDMON.DLL
2012-04-04 05:23:28 ----A---- C:\Windows\SYSWOW64\KBDINTEL.DLL
2012-04-04 05:23:28 ----A---- C:\Windows\SYSWOW64\KBDINHIN.DLL
2012-04-04 05:23:28 ----A---- C:\Windows\SYSWOW64\KBDGEO.DLL
2012-04-04 05:23:28 ----A---- C:\Windows\SYSWOW64\KBDCZ1.DLL
2012-04-04 05:23:28 ----A---- C:\Windows\SYSWOW64\KBDBLR.DLL
2012-04-04 05:23:28 ----A---- C:\Windows\system32\KBDUS.DLL
2012-04-04 05:23:28 ----A---- C:\Windows\system32\KBDUGHR1.DLL
2012-04-04 05:23:28 ----A---- C:\Windows\system32\KBDGEO.DLL
2012-04-04 05:23:28 ----A---- C:\Windows\system32\KBDCZ1.DLL
2012-04-04 05:23:27 ----A---- C:\Windows\SYSWOW64\KBDMAORI.DLL
2012-04-04 05:23:27 ----A---- C:\Windows\SYSWOW64\KBDLT1.DLL
2012-04-04 05:23:27 ----A---- C:\Windows\SYSWOW64\KBDINTAM.DLL
2012-04-04 05:23:27 ----A---- C:\Windows\SYSWOW64\KBDINORI.DLL
2012-04-04 05:23:27 ----A---- C:\Windows\SYSWOW64\KBDINMAR.DLL
2012-04-04 05:23:27 ----A---- C:\Windows\SYSWOW64\KBDINKAN.DLL
2012-04-04 05:23:27 ----A---- C:\Windows\SYSWOW64\KBDINBEN.DLL
2012-04-04 05:23:27 ----A---- C:\Windows\SYSWOW64\KBDBULG.DLL
2012-04-04 05:23:27 ----A---- C:\Windows\system32\KBDTAJIK.DLL
2012-04-04 05:23:27 ----A---- C:\Windows\system32\KBDMON.DLL
2012-04-04 05:23:27 ----A---- C:\Windows\system32\KBDLT1.DLL
2012-04-04 05:23:27 ----A---- C:\Windows\system32\KBDBULG.DLL
2012-04-04 05:23:27 ----A---- C:\Windows\system32\KBDBLR.DLL
2012-04-04 05:23:26 ----A---- C:\Windows\SYSWOW64\KBDSF.DLL
2012-04-04 05:23:26 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL
2012-04-04 05:23:26 ----A---- C:\Windows\system32\KBDTURME.DLL
2012-04-04 05:23:26 ----A---- C:\Windows\system32\KBDBASH.DLL
2012-04-04 05:23:25 ----A---- C:\Windows\SYSWOW64\KBDPO.DLL
2012-04-04 05:23:25 ----A---- C:\Windows\SYSWOW64\KBDNEPR.DLL
2012-04-04 05:23:18 ----A---- C:\Windows\system32\KBDMAORI.DLL
2012-04-04 05:23:18 ----A---- C:\Windows\system32\KBDINTEL.DLL
2012-04-04 05:23:18 ----A---- C:\Windows\system32\KBDINORI.DLL
2012-04-04 05:23:18 ----A---- C:\Windows\system32\KBDINMAR.DLL
2012-04-04 05:23:18 ----A---- C:\Windows\system32\KBDINKAN.DLL
2012-04-04 05:23:17 ----A---- C:\Windows\SYSWOW64\dpnaddr.dll
2012-04-04 05:23:17 ----A---- C:\Windows\system32\KBDINHIN.DLL
2012-04-04 05:23:17 ----A---- C:\Windows\system32\dpnaddr.dll
2012-04-04 05:23:16 ----A---- C:\Windows\system32\nlsbres.dll
2012-04-04 05:23:14 ----A---- C:\Windows\SYSWOW64\nlsbres.dll
2012-04-04 05:23:13 ----A---- C:\Windows\SYSWOW64\spwizres.dll
2012-04-04 05:23:13 ----A---- C:\Windows\SYSWOW64\pifmgr.dll
2012-04-04 05:23:13 ----A---- C:\Windows\system32\spwizres.dll
2012-04-04 05:23:13 ----A---- C:\Windows\system32\pifmgr.dll
2012-04-04 05:23:13 ----A---- C:\Windows\system32\BlbEvents.dll
2012-04-04 05:16:22 ----A---- C:\Windows\SYSWOW64\wdscore.dll
2012-04-04 05:16:21 ----A---- C:\Windows\system32\dpx.dll
2012-04-04 05:16:00 ----A---- C:\Windows\SYSWOW64\sqmapi.dll
2012-04-04 05:15:18 ----A---- C:\Windows\SYSWOW64\wbemcomn.dll
2012-04-04 05:09:21 ----A---- C:\Windows\system32\wbemcomn.dll
2012-04-04 05:09:08 ----A---- C:\Windows\system32\sqmapi.dll
2012-04-03 17:56:31 ----D---- C:\Program Files (x86)\uTorrent
2012-04-03 17:55:54 ----D---- C:\Users\Petr-Adrian-Dagmar\AppData\Roaming\uTorrent
2012-04-03 14:51:59 ----N---- C:\Windows\system32\MpSigStub.exe
2012-04-02 18:44:42 ----D---- C:\Program Files (x86)\Amnesia - The Dark Descent12
2012-04-02 18:35:27 ----D---- C:\Users\Petr-Adrian-Dagmar\AppData\Roaming\HTC.388BC06ACDAB6261375BCE37FBA2E023C0D7EE34.1
2012-04-02 17:30:44 ----A---- C:\Windows\system32\aswBoot.exe
2012-04-02 17:29:24 ----D---- C:\ProgramData\AVAST Software
2012-04-02 17:29:24 ----D---- C:\Program Files\AVAST Software
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\wextract.exe
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\occache.dll
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\msrating.dll
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\msls31.dll
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\mshta.exe
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\inseng.dll
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\ieakui.dll
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\ieaksie.dll
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\ieakeng.dll
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\ie4uinit.exe
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\icardie.dll
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2012-04-02 15:30:23 ----A---- C:\Windows\SYSWOW64\admparse.dll
2012-04-02 15:30:22 ----A---- C:\Windows\system32\wextract.exe
2012-04-02 15:30:22 ----A---- C:\Windows\system32\webcheck.dll
2012-04-02 15:30:22 ----A---- C:\Windows\system32\vbscript.dll
2012-04-02 15:30:22 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2012-04-02 15:30:22 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2012-04-02 15:30:22 ----A---- C:\Windows\system32\pngfilt.dll
2012-04-02 15:30:22 ----A---- C:\Windows\system32\occache.dll
2012-04-02 15:30:22 ----A---- C:\Windows\system32\msrating.dll
2012-04-02 15:30:22 ----A---- C:\Windows\system32\msls31.dll
2012-04-02 15:30:22 ----A---- C:\Windows\system32\mshtmler.dll
2012-04-02 15:30:22 ----A---- C:\Windows\system32\mshta.exe
2012-04-02 15:30:22 ----A---- C:\Windows\system32\msfeedssync.exe
2012-04-02 15:30:22 ----A---- C:\Windows\system32\msfeedsbs.dll
2012-04-02 15:30:22 ----A---- C:\Windows\system32\msfeeds.dll
2012-04-02 15:30:22 ----A---- C:\Windows\system32\licmgr10.dll
2012-04-02 15:30:22 ----A---- C:\Windows\system32\inseng.dll
2012-04-02 15:30:22 ----A---- C:\Windows\system32\imgutil.dll
2012-04-02 15:30:22 ----A---- C:\Windows\system32\iexpress.exe
2012-04-02 15:30:22 ----A---- C:\Windows\system32\ieUnatt.exe
2012-04-02 15:30:22 ----A---- C:\Windows\system32\iesysprep.dll
2012-04-02 15:30:22 ----A---- C:\Windows\system32\iesetup.dll
2012-04-02 15:30:22 ----A---- C:\Windows\system32\iernonce.dll
2012-04-02 15:30:22 ----A---- C:\Windows\system32\iepeers.dll
2012-04-02 15:30:22 ----A---- C:\Windows\system32\iedkcs32.dll
2012-04-02 15:30:22 ----A---- C:\Windows\system32\ieapfltr.dll
2012-04-02 15:30:22 ----A---- C:\Windows\system32\ieapfltr.dat
2012-04-02 15:30:22 ----A---- C:\Windows\system32\ieakui.dll
2012-04-02 15:30:22 ----A---- C:\Windows\system32\ieaksie.dll
2012-04-02 15:30:22 ----A---- C:\Windows\system32\ieakeng.dll
2012-04-02 15:30:22 ----A---- C:\Windows\system32\IEAdvpack.dll
2012-04-02 15:30:22 ----A---- C:\Windows\system32\ie4uinit.exe
2012-04-02 15:30:22 ----A---- C:\Windows\system32\icardie.dll
2012-04-02 15:30:22 ----A---- C:\Windows\system32\dxtrans.dll
2012-04-02 15:30:22 ----A---- C:\Windows\system32\dxtmsft.dll
2012-04-02 15:30:22 ----A---- C:\Windows\system32\admparse.dll
2012-04-02 12:39:47 ----A---- C:\Windows\system32\drivers\usbport.sys
2012-04-02 12:39:47 ----A---- C:\Windows\system32\drivers\usbhub.sys
2012-04-02 12:39:47 ----A---- C:\Windows\system32\drivers\usbehci.sys
2012-04-02 12:39:47 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2012-04-02 12:39:46 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2012-04-02 12:39:46 ----A---- C:\Windows\system32\drivers\usbohci.sys
2012-04-02 12:39:46 ----A---- C:\Windows\system32\drivers\usbd.sys
2012-04-02 12:39:44 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2012-04-02 12:39:44 ----A---- C:\Windows\system32\kerberos.dll
2012-04-02 12:38:25 ----A---- C:\Windows\SYSWOW64\esent.dll
2012-04-02 12:38:25 ----A---- C:\Windows\system32\esent.dll
2012-04-02 12:38:25 ----A---- C:\Windows\system32\drivers\ntfs.sys
2012-04-02 12:38:23 ----A---- C:\Windows\system32\drivers\storport.sys
2012-04-02 12:38:23 ----A---- C:\Windows\system32\drivers\nvstor.sys
2012-04-02 12:38:23 ----A---- C:\Windows\system32\drivers\nvraid.sys
2012-04-02 12:38:22 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2012-04-02 12:38:22 ----A---- C:\Windows\system32\fsutil.exe
2012-04-02 12:38:22 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2012-04-02 12:38:22 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2012-04-02 07:13:33 ----A---- C:\Windows\system32\browserchoice.exe
2012-04-02 07:04:47 ----A---- C:\Windows\SYSWOW64\xmllite.dll
2012-04-02 07:04:47 ----A---- C:\Windows\system32\xmllite.dll
2012-04-02 07:01:06 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2012-04-02 07:01:06 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2012-04-02 07:01:06 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2012-04-02 07:01:06 ----A---- C:\Windows\system32\odbctrac.dll
2012-04-02 07:01:06 ----A---- C:\Windows\system32\odbccu32.dll
2012-04-02 07:01:06 ----A---- C:\Windows\system32\odbccr32.dll
2012-04-02 07:01:06 ----A---- C:\Windows\system32\odbccp32.dll
2012-04-02 07:01:05 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2012-04-02 07:01:05 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2012-04-02 07:00:53 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2012-04-02 07:00:53 ----A---- C:\Windows\system32\poqexec.exe
2012-04-02 07:00:50 ----A---- C:\Windows\SYSWOW64\explorer.exe
2012-04-02 07:00:50 ----A---- C:\Windows\explorer.exe
2012-04-02 07:00:47 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2012-04-02 07:00:47 ----A---- C:\Windows\system32\sbe.dll
2012-04-02 07:00:47 ----A---- C:\Windows\system32\CPFilters.dll
2012-04-02 07:00:46 ----A---- C:\Windows\SYSWOW64\sbe.dll
2012-04-02 07:00:41 ----A---- C:\Windows\SYSWOW64\quartz.dll
2012-04-02 07:00:41 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2012-04-02 07:00:41 ----A---- C:\Windows\system32\quartz.dll
2012-04-02 07:00:41 ----A---- C:\Windows\system32\qdvd.dll
2012-04-02 07:00:33 ----A---- C:\Windows\system32\shell32.dll
2012-04-02 07:00:32 ----A---- C:\Windows\SYSWOW64\shell32.dll
2012-04-02 07:00:30 ----A---- C:\Windows\system32\ntshrui.dll
2012-04-02 07:00:29 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2012-04-02 07:00:17 ----A---- C:\Windows\system32\tquery.dll
2012-04-02 07:00:16 ----A---- C:\Windows\SYSWOW64\tquery.dll
2012-04-02 07:00:16 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2012-04-02 07:00:16 ----A---- C:\Windows\system32\mssrch.dll
2012-04-02 07:00:15 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2012-04-02 07:00:15 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2012-04-02 07:00:15 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2012-04-02 07:00:15 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2012-04-02 07:00:15 ----A---- C:\Windows\SYSWOW64\mssph.dll
2012-04-02 07:00:15 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2012-04-02 07:00:15 ----A---- C:\Windows\system32\SearchIndexer.exe
2012-04-02 07:00:15 ----A---- C:\Windows\system32\SearchFilterHost.exe
2012-04-02 07:00:15 ----A---- C:\Windows\system32\mssvp.dll
2012-04-02 07:00:15 ----A---- C:\Windows\system32\mssphtb.dll
2012-04-02 07:00:15 ----A---- C:\Windows\system32\mssph.dll
2012-04-02 07:00:14 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2012-04-02 07:00:14 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2012-04-02 07:00:14 ----A---- C:\Windows\system32\msscntrs.dll
2012-04-02 07:00:07 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2012-04-02 07:00:07 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2012-04-02 07:00:07 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2012-04-02 07:00:04 ----A---- C:\Windows\system32\schannel.dll
2012-04-02 07:00:04 ----A---- C:\Windows\system32\lsasrv.dll
2012-04-02 07:00:03 ----A---- C:\Windows\SYSWOW64\webio.dll
2012-04-02 07:00:03 ----A---- C:\Windows\SYSWOW64\schannel.dll
2012-04-02 07:00:03 ----A---- C:\Windows\system32\webio.dll
2012-04-02 07:00:03 ----A---- C:\Windows\system32\sspicli.dll
2012-04-02 07:00:03 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2012-04-02 07:00:03 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2012-04-02 07:00:03 ----A---- C:\Windows\system32\drivers\cng.sys
2012-04-02 07:00:02 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2012-04-02 07:00:02 ----A---- C:\Windows\SYSWOW64\secur32.dll
2012-04-02 07:00:02 ----A---- C:\Windows\system32\sspisrv.dll
2012-04-02 07:00:02 ----A---- C:\Windows\system32\secur32.dll
2012-04-02 07:00:02 ----A---- C:\Windows\system32\lsass.exe
2012-04-02 06:59:45 ----A---- C:\Windows\system32\win32k.sys
2012-04-02 06:59:35 ----A---- C:\Windows\system32\drivers\tcpip.sys
2012-04-02 06:59:35 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2012-04-02 06:59:32 ----A---- C:\Windows\system32\csrsrv.dll
2012-04-02 06:53:15 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2012-04-02 06:53:15 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2012-04-02 06:53:07 ----A---- C:\Windows\system32\DWrite.dll
2012-04-02 06:53:06 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2012-04-02 06:51:25 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2012-04-02 06:51:25 ----A---- C:\Windows\system32\XpsPrint.dll
2012-04-02 06:51:13 ----A---- C:\Windows\system32\mfc42u.dll
2012-04-02 06:51:12 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2012-04-02 06:51:12 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2012-04-02 06:51:12 ----A---- C:\Windows\system32\mfc42.dll
2012-04-02 06:40:15 ----D---- C:\Windows\SYSWOW64\Wat
2012-04-02 06:40:15 ----D---- C:\Windows\system32\Wat
2012-04-02 06:01:31 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2012-04-02 06:01:31 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2012-04-02 06:01:31 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2012-04-02 06:01:31 ----A---- C:\Windows\system32\fontsub.dll
2012-04-02 06:01:31 ----A---- C:\Windows\system32\atmlib.dll
2012-04-02 06:01:31 ----A---- C:\Windows\system32\atmfd.dll
2012-04-02 05:56:35 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2012-04-02 05:56:09 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe
2012-04-02 05:56:09 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2012-04-02 05:56:09 ----A---- C:\Windows\system32\dnsrslvr.dll
2012-04-02 05:56:09 ----A---- C:\Windows\system32\dnscacheugc.exe
2012-04-02 05:56:09 ----A---- C:\Windows\system32\dnsapi.dll
2012-04-02 05:56:01 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2012-04-02 05:56:01 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2012-04-02 05:56:01 ----A---- C:\Windows\system32\d3d10_1core.dll
2012-04-02 05:56:01 ----A---- C:\Windows\system32\d3d10_1.dll
2012-04-02 05:55:58 ----A---- C:\Windows\system32\drivers\srv2.sys
2012-04-02 05:55:58 ----A---- C:\Windows\system32\drivers\srv.sys
2012-04-02 05:55:57 ----A---- C:\Windows\system32\drivers\srvnet.sys
2012-04-02 05:55:50 ----A---- C:\Windows\system32\psisdecd.dll
2012-04-02 05:55:49 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2012-04-02 05:55:42 ----A---- C:\Windows\system32\drivers\afd.sys
2012-04-02 05:55:25 ----A---- C:\Windows\system32\winresume.exe
2012-04-02 05:55:25 ----A---- C:\Windows\system32\winload.exe
2012-04-02 05:55:25 ----A---- C:\Windows\system32\setbcdlocale.dll
2012-04-02 05:55:25 ----A---- C:\Windows\system32\kdusb.dll
2012-04-02 05:55:25 ----A---- C:\Windows\system32\kdcom.dll
2012-04-02 05:55:25 ----A---- C:\Windows\system32\kd1394.dll
2012-04-02 05:55:11 ----A---- C:\Windows\system32\KernelBase.dll
2012-04-02 05:55:11 ----A---- C:\Windows\system32\kernel32.dll
2012-04-02 05:55:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2012-04-02 05:55:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2012-04-02 05:55:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2012-04-02 05:55:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2012-04-02 05:55:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2012-04-02 05:55:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2012-04-02 05:55:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2012-04-02 05:55:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2012-04-02 05:55:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2012-04-02 05:55:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2012-04-02 05:55:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2012-04-02 05:55:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2012-04-02 05:55:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2012-04-02 05:55:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2012-04-02 05:55:10 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2012-04-02 05:55:10 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2012-04-02 05:55:10 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2012-04-02 05:55:10 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2012-04-02 05:55:10 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2012-04-02 05:55:10 ----A---- C:\Windows\SYSWOW64\wow32.dll
2012-04-02 05:55:10 ----A---- C:\Windows\SYSWOW64\setup16.exe
2012-04-02 05:55:10 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2012-04-02 05:55:10 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2012-04-02 05:55:10 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2012-04-02 05:55:10 ----A---- C:\Windows\SYSWOW64\instnm.exe
2012-04-02 05:55:10 ----A---- C:\Windows\system32\wow64win.dll
2012-04-02 05:55:10 ----A---- C:\Windows\system32\wow64cpu.dll
2012-04-02 05:55:10 ----A---- C:\Windows\system32\wow64.dll
2012-04-02 05:55:10 ----A---- C:\Windows\system32\winsrv.dll
2012-04-02 05:55:10 ----A---- C:\Windows\system32\ntvdm64.dll
2012-04-02 05:55:10 ----A---- C:\Windows\system32\conhost.exe
2012-04-02 05:55:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2012-04-02 05:55:09 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2012-04-02 05:55:09 ----A---- C:\Windows\SYSWOW64\user.exe
2012-04-02 05:55:01 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2012-04-02 05:55:01 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2012-04-02 05:55:01 ----A---- C:\Windows\SYSWOW64\devobj.dll
2012-04-02 05:55:01 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2012-04-02 05:55:01 ----A---- C:\Windows\system32\umpnpmgr.dll
2012-04-02 05:55:01 ----A---- C:\Windows\system32\cfgmgr32.dll
2012-04-02 05:54:54 ----A---- C:\Windows\system32\WFS.exe
2012-04-02 05:54:54 ----A---- C:\Windows\system32\FXSCOVER.exe
2012-04-02 05:54:52 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2012-04-02 05:54:52 ----A---- C:\Windows\system32\prevhost.exe
2012-04-02 05:54:43 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2012-04-02 05:54:43 ----A---- C:\Windows\system32\inetcomm.dll
2012-04-02 05:54:41 ----A---- C:\Windows\system32\msvcrt.dll
2012-04-02 05:54:40 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2012-04-02 05:54:36 ----A---- C:\Windows\system32\drivers\bowser.sys
2012-04-02 05:54:33 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2012-04-02 05:54:33 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2012-04-02 05:54:33 ----A---- C:\Windows\system32\oleaut32.dll
2012-04-02 05:54:33 ----A---- C:\Windows\system32\oleacc.dll
2012-04-02 05:54:29 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2012-04-02 05:54:29 ----A---- C:\Windows\system32\EncDec.dll
2012-04-02 05:54:17 ----A---- C:\Windows\SYSWOW64\tzres.dll
2012-04-02 05:54:17 ----A---- C:\Windows\system32\tzres.dll
2012-04-02 05:54:04 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2012-04-02 05:54:04 ----A---- C:\Windows\system32\ntdll.dll
2012-04-02 05:21:35 ----A---- C:\Windows\SYSWOW64\packager.dll
2012-04-02 05:21:35 ----A---- C:\Windows\system32\packager.dll
2012-04-02 01:03:43 ----A---- C:\Pass.txt
2012-04-02 00:05:07 ----ASH---- C:\pagefile.sys
2012-04-02 00:05:02 ----SHD---- C:\System Volume Information
2012-04-02 00:04:44 ----ASH---- C:\hiberfil.sys
2012-04-01 18:55:07 ----D---- C:\Android
2012-04-01 18:31:55 ----D---- C:\Users\Petr-Adrian-Dagmar\AppData\Roaming\HTC
2012-04-01 18:28:02 ----D---- C:\Program Files (x86)\MSXML 4.0
2012-04-01 18:13:09 ----D---- C:\Program Files (x86)\Rockstar Games
2012-04-01 17:34:41 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2012-04-01 17:06:05 ----D---- C:\ProgramData\Sun
2012-04-01 17:05:50 ----A---- C:\Windows\SYSWOW64\javaws.exe
2012-04-01 17:05:50 ----A---- C:\Windows\SYSWOW64\javaw.exe
2012-04-01 17:05:50 ----A---- C:\Windows\SYSWOW64\java.exe
2012-04-01 17:05:50 ----A---- C:\Windows\SYSWOW64\deployJava1.dll
2012-04-01 17:05:31 ----D---- C:\Program Files (x86)\Java
2012-04-01 16:59:43 ----D---- C:\Program Files (x86)\Spirent Communications
2012-04-01 16:59:35 ----D---- C:\Program Files (x86)\HTC
2012-04-01 16:46:22 ----D---- C:\Program Files (x86)\Microsoft Office
2012-04-01 16:32:28 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2012-04-01 16:32:28 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2012-04-01 16:32:28 ----A---- C:\Windows\system32\XAudio2_6.dll
2012-04-01 16:32:28 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2012-04-01 16:32:26 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2012-04-01 16:32:26 ----A---- C:\Windows\system32\xactengine3_6.dll
2012-04-01 16:32:25 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2012-04-01 16:32:25 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2012-04-01 16:32:22 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2012-04-01 16:32:22 ----A---- C:\Windows\system32\XAudio2_5.dll
2012-04-01 16:32:21 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2012-04-01 16:32:21 ----A---- C:\Windows\system32\xactengine3_5.dll
2012-04-01 16:32:20 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2012-04-01 16:32:20 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2012-04-01 16:32:18 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2012-04-01 16:32:18 ----A---- C:\Windows\system32\d3dcsx_42.dll
2012-04-01 16:32:17 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2012-04-01 16:32:17 ----A---- C:\Windows\system32\d3dx11_42.dll
2012-04-01 16:32:16 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2012-04-01 16:32:16 ----A---- C:\Windows\system32\d3dx10_42.dll
2012-04-01 16:32:14 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2012-04-01 16:32:14 ----A---- C:\Windows\system32\D3DX9_42.dll
2012-04-01 16:32:12 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2012-04-01 16:32:12 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2012-04-01 16:32:12 ----A---- C:\Windows\system32\d3dx10_41.dll
2012-04-01 16:32:12 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2012-04-01 16:32:10 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2012-04-01 16:32:10 ----A---- C:\Windows\system32\D3DX9_41.dll
2012-04-01 16:32:09 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2012-04-01 16:32:09 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2012-04-01 16:32:08 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2012-04-01 16:32:08 ----A---- C:\Windows\system32\XAudio2_4.dll
2012-04-01 16:32:07 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2012-04-01 16:32:07 ----A---- C:\Windows\system32\xactengine3_4.dll
2012-04-01 16:32:06 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2012-04-01 16:32:06 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2012-04-01 16:32:05 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2012-04-01 16:32:05 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2012-04-01 16:32:05 ----A---- C:\Windows\system32\d3dx10_40.dll
2012-04-01 16:32:05 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2012-04-01 16:32:03 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2012-04-01 16:32:03 ----A---- C:\Windows\system32\D3DX9_40.dll
2012-04-01 16:32:01 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2012-04-01 16:32:01 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2012-04-01 16:32:00 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2012-04-01 16:32:00 ----A---- C:\Windows\system32\XAudio2_3.dll
2012-04-01 16:31:59 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2012-04-01 16:31:59 ----A---- C:\Windows\system32\xactengine3_3.dll
2012-04-01 16:31:58 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2012-04-01 16:31:58 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2012-04-01 16:31:56 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2012-04-01 16:31:56 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2012-04-01 16:31:56 ----A---- C:\Windows\system32\XAudio2_2.dll
2012-04-01 16:31:56 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2012-04-01 16:31:55 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2012-04-01 16:31:55 ----A---- C:\Windows\system32\xactengine3_2.dll
2012-04-01 16:31:53 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2012-04-01 16:31:53 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2012-04-01 16:31:53 ----A---- C:\Windows\system32\d3dx10_39.dll
2012-04-01 16:31:53 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2012-04-01 16:31:52 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2012-04-01 16:31:52 ----A---- C:\Windows\system32\D3DX9_39.dll
2012-04-01 16:31:50 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2012-04-01 16:31:50 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2012-04-01 16:31:49 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2012-04-01 16:31:49 ----A---- C:\Windows\system32\XAudio2_1.dll
2012-04-01 16:31:48 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2012-04-01 16:31:48 ----A---- C:\Windows\system32\xactengine3_1.dll
2012-04-01 16:31:47 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2012-04-01 16:31:47 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2012-04-01 16:31:45 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2012-04-01 16:31:45 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2012-04-01 16:31:45 ----A---- C:\Windows\system32\d3dx10_38.dll
2012-04-01 16:31:45 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2012-04-01 16:31:43 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2012-04-01 16:31:43 ----A---- C:\Windows\system32\D3DX9_38.dll
2012-04-01 16:31:41 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2012-04-01 16:31:41 ----A---- C:\Windows\system32\XAudio2_0.dll
2012-04-01 16:31:39 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2012-04-01 16:31:39 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2012-04-01 16:31:39 ----A---- C:\Windows\system32\xactengine3_0.dll
2012-04-01 16:31:39 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2012-04-01 16:31:37 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2012-04-01 16:31:37 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2012-04-01 16:31:37 ----A---- C:\Windows\system32\d3dx10_37.dll
2012-04-01 16:31:37 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2012-04-01 16:31:36 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2012-04-01 16:31:36 ----A---- C:\Windows\system32\D3DX9_37.dll
2012-04-01 16:31:34 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2012-04-01 16:31:34 ----A---- C:\Windows\system32\xactengine2_10.dll
2012-04-01 16:31:32 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2012-04-01 16:31:32 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2012-04-01 16:31:32 ----A---- C:\Windows\system32\d3dx10_36.dll
2012-04-01 16:31:32 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2012-04-01 16:31:30 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2012-04-01 16:31:30 ----A---- C:\Windows\system32\d3dx9_36.dll
2012-04-01 16:31:28 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2012-04-01 16:31:28 ----A---- C:\Windows\system32\xactengine2_9.dll
2012-04-01 16:31:27 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2012-04-01 16:31:27 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2012-04-01 16:31:27 ----A---- C:\Windows\system32\d3dx10_35.dll
2012-04-01 16:31:27 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2012-04-01 16:31:26 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2012-04-01 16:31:26 ----A---- C:\Windows\system32\d3dx9_35.dll
2012-04-01 16:31:24 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2012-04-01 16:31:24 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2012-04-01 16:31:24 ----A---- C:\Windows\system32\xactengine2_8.dll
2012-04-01 16:31:24 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2012-04-01 16:31:23 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2012-04-01 16:31:23 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2012-04-01 16:31:23 ----A---- C:\Windows\system32\d3dx10_34.dll
2012-04-01 16:31:23 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2012-04-01 16:31:22 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2012-04-01 16:31:22 ----A---- C:\Windows\system32\d3dx9_34.dll
2012-04-01 16:31:21 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2012-04-01 16:31:21 ----A---- C:\Windows\system32\xinput1_3.dll
2012-04-01 16:31:19 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2012-04-01 16:31:19 ----A---- C:\Windows\system32\xactengine2_7.dll
2012-04-01 16:31:18 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2012-04-01 16:31:18 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2012-04-01 16:31:18 ----A---- C:\Windows\system32\d3dx10_33.dll
2012-04-01 16:31:18 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2012-04-01 16:31:17 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2012-04-01 16:31:17 ----A---- C:\Windows\system32\d3dx9_33.dll
2012-04-01 16:31:15 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2012-04-01 16:31:15 ----A---- C:\Windows\system32\xactengine2_6.dll
2012-04-01 16:31:14 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2012-04-01 16:31:14 ----A---- C:\Windows\system32\xactengine2_5.dll
2012-04-01 16:31:13 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2012-04-01 16:31:13 ----A---- C:\Windows\system32\d3dx10.dll
2012-04-01 16:31:09 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2012-04-01 16:31:09 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2012-04-01 16:31:09 ----A---- C:\Windows\system32\xactengine2_4.dll
2012-04-01 16:31:09 ----A---- C:\Windows\system32\x3daudio1_1.dll
2012-04-01 16:31:08 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2012-04-01 16:31:08 ----A---- C:\Windows\system32\d3dx9_31.dll
2012-04-01 16:31:07 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2012-04-01 16:31:07 ----A---- C:\Windows\system32\xactengine2_3.dll
2012-04-01 16:31:06 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2012-04-01 16:31:06 ----A---- C:\Windows\system32\xinput1_2.dll
2012-04-01 16:31:05 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2012-04-01 16:31:05 ----A---- C:\Windows\system32\xactengine2_2.dll
2012-04-01 16:31:04 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2012-04-01 16:31:04 ----A---- C:\Windows\system32\xinput1_1.dll
2012-04-01 16:31:02 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2012-04-01 16:31:02 ----A---- C:\Windows\system32\xactengine2_1.dll
2012-04-01 16:30:52 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2012-04-01 16:30:52 ----A---- C:\Windows\system32\d3dx9_30.dll
2012-04-01 16:30:50 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2012-04-01 16:30:50 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2012-04-01 16:30:50 ----A---- C:\Windows\system32\xactengine2_0.dll
2012-04-01 16:30:50 ----A---- C:\Windows\system32\x3daudio1_0.dll
2012-04-01 16:30:49 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2012-04-01 16:30:49 ----A---- C:\Windows\system32\d3dx9_29.dll
2012-04-01 16:30:48 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2012-04-01 16:30:48 ----A---- C:\Windows\system32\d3dx9_28.dll
2012-04-01 16:30:47 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2012-04-01 16:30:47 ----A---- C:\Windows\system32\d3dx9_27.dll
2012-04-01 16:30:46 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2012-04-01 16:30:46 ----A---- C:\Windows\system32\d3dx9_26.dll
2012-04-01 16:30:45 ----A---- C:\Windows\system32\d3dx9_25.dll
2012-04-01 16:30:44 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2012-04-01 16:30:44 ----A---- C:\Windows\system32\d3dx9_24.dll
2012-04-01 16:15:13 ----D---- C:\Users\Petr-Adrian-Dagmar\AppData\Roaming\WinRAR
2012-04-01 16:15:07 ----D---- C:\Program Files\WinRAR
2012-04-01 16:13:34 ----D---- C:\Program Files (x86)\MerKury2
2012-04-01 16:10:04 ----D---- C:\Users\Petr-Adrian-Dagmar\AppData\Roaming\Skype
2012-04-01 16:09:53 ----RD---- C:\Program Files (x86)\Skype
2012-04-01 16:09:47 ----D---- C:\ProgramData\Skype
2012-04-01 16:06:46 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2012-04-01 16:06:40 ----D---- C:\Windows\system32\Macromed
2012-04-01 15:55:52 ----D---- C:\Windows\system32\log
2012-04-01 15:52:02 ----D---- C:\Users\Petr-Adrian-Dagmar\AppData\Roaming\Macromedia
2012-04-01 15:33:35 ----D---- C:\Users\Petr-Adrian-Dagmar\AppData\Roaming\Adobe
2012-04-01 15:33:00 ----A---- C:\Windows\system32\rdrmemptylst.exe
2012-04-01 15:32:13 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2012-04-01 15:32:13 ----A---- C:\Windows\system32\rdpcore.dll
2012-04-01 15:32:13 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2012-04-01 15:32:13 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2012-04-01 15:31:00 ----D---- C:\Users\Petr-Adrian-Dagmar\AppData\Roaming\ATI
2012-04-01 15:29:58 ----D---- C:\Users\Petr-Adrian-Dagmar\AppData\Roaming\Identities
2012-04-01 15:28:34 ----A---- C:\Windows\system32\drivers\fssfltr.sys
2012-04-01 15:28:31 ----D---- C:\Program Files\Windows Live
2012-04-01 15:26:20 ----D---- C:\Program Files (x86)\Microsoft Sync Framework
2012-04-01 15:24:57 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2012-04-01 15:24:57 ----A---- C:\Windows\system32\d3dx9_32.dll
2012-04-01 15:19:33 ----D---- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2012-04-01 15:16:26 ----D---- C:\Program Files (x86)\Microsoft
2012-04-01 15:15:40 ----D---- C:\Program Files (x86)\Windows Live SkyDrive
2012-04-01 15:15:27 ----D---- C:\Program Files (x86)\Windows Live
2012-04-01 15:11:49 ----HD---- C:\asus.dat
2012-04-01 15:11:23 ----SD---- C:\Users\Petr-Adrian-Dagmar\AppData\Roaming\Microsoft
2012-04-01 15:11:23 ----D---- C:\Users\Petr-Adrian-Dagmar\AppData\Roaming\Media Center Programs

======List of files/folders modified in the last 1 month======

2012-04-14 10:51:24 ----D---- C:\Windows\Temp
2012-04-14 10:51:05 ----RD---- C:\Program Files
2012-04-14 09:23:21 ----D---- C:\Windows\system32\Tasks
2012-04-14 09:22:38 ----D---- C:\Windows
2012-04-14 08:52:23 ----D---- C:\Windows\System32
2012-04-14 08:52:23 ----D---- C:\Windows\inf
2012-04-14 08:52:23 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-04-14 07:28:22 ----D---- C:\Windows\SysWOW64
2012-04-14 07:26:36 ----D---- C:\Windows\system32\config
2012-04-13 19:50:09 ----RSD---- C:\Windows\assembly
2012-04-13 19:50:09 ----D---- C:\Windows\Microsoft.NET
2012-04-13 18:51:37 ----SHD---- C:\Windows\Installer
2012-04-12 05:03:05 ----D---- C:\Windows\winsxs
2012-04-12 04:59:21 ----D---- C:\Program Files\Internet Explorer
2012-04-12 04:59:21 ----D---- C:\Program Files (x86)\Internet Explorer
2012-04-12 04:59:20 ----D---- C:\Windows\SYSWOW64\migration
2012-04-12 04:59:18 ----D---- C:\Windows\system32\migration
2012-04-12 04:59:07 ----D---- C:\Windows\system32\drivers
2012-04-11 20:06:20 ----D---- C:\ProgramData\Microsoft Help
2012-04-11 20:04:30 ----D---- C:\Windows\system32\catroot
2012-04-11 20:04:29 ----D---- C:\Windows\system32\catroot2
2012-04-10 06:18:02 ----A---- C:\Windows\system32\AutoRunFilter.ini
2012-04-09 17:46:29 ----RD---- C:\Program Files (x86)
2012-04-09 17:44:09 ----D---- C:\Windows\system32\DriverStore
2012-04-09 17:42:02 ----HD---- C:\ProgramData
2012-04-09 17:35:44 ----D---- C:\ProgramData\CyberLink
2012-04-08 11:12:23 ----D---- C:\Windows\system32\LogFiles
2012-04-08 10:40:09 ----D---- C:\Windows\Prefetch
2012-04-07 18:27:50 ----RSD---- C:\Windows\Fonts
2012-04-07 14:48:21 ----SHD---- C:\Boot
2012-04-07 14:24:28 ----D---- C:\Program Files (x86)\Windows Mail
2012-04-07 14:24:27 ----D---- C:\Program Files (x86)\Windows Sidebar
2012-04-07 14:24:27 ----D---- C:\Program Files (x86)\Windows Portable Devices
2012-04-07 14:24:26 ----D---- C:\Program Files (x86)\Windows Media Player
2012-04-07 14:24:25 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2012-04-07 14:23:59 ----D---- C:\Program Files\Windows Sidebar
2012-04-07 14:23:58 ----D---- C:\Program Files\Windows Mail
2012-04-07 14:23:58 ----D---- C:\Program Files\DVD Maker
2012-04-07 14:23:56 ----D---- C:\Program Files\Windows Portable Devices
2012-04-07 14:23:56 ----D---- C:\Program Files\Windows Media Player
2012-04-07 14:23:54 ----D---- C:\Program Files\Windows Photo Viewer
2012-04-07 14:23:52 ----D---- C:\Program Files\Windows Journal
2012-04-07 14:23:25 ----D---- C:\Program Files\Windows Defender
2012-04-07 14:23:25 ----D---- C:\Program Files\Common Files\System
2012-04-07 14:23:24 ----D---- C:\Windows\servicing
2012-04-07 14:23:21 ----D---- C:\Windows\ehome
2012-04-07 14:21:40 ----D---- C:\Windows\SYSWOW64\lv-LV
2012-04-07 14:21:35 ----D---- C:\Windows\SYSWOW64\da-DK
2012-04-07 14:21:28 ----D---- C:\Windows\SYSWOW64\hr-HR
2012-04-07 14:21:15 ----D---- C:\Windows\SYSWOW64\et-EE
2012-04-07 14:21:01 ----D---- C:\Windows\SYSWOW64\sk-SK
2012-04-07 14:20:43 ----D---- C:\Windows\SYSWOW64\en-US
2012-04-07 14:20:42 ----D---- C:\Windows\SYSWOW64\oobe
2012-04-07 14:20:41 ----D---- C:\Windows\SYSWOW64\Setup
2012-04-07 14:20:41 ----D---- C:\Windows\SYSWOW64\hu
2012-04-07 14:20:41 ----D---- C:\Windows\SYSWOW64\cs
2012-04-07 14:20:41 ----D---- C:\Windows\SYSWOW64\AdvancedInstallers
2012-04-07 14:20:40 ----D---- C:\Windows\SYSWOW64\cs-CZ
2012-04-07 14:20:37 ----D---- C:\Windows\SYSWOW64\hu-HU
2012-04-07 14:20:35 ----D---- C:\Windows\SYSWOW64\en
2012-04-07 14:20:34 ----D---- C:\Windows\SYSWOW64\sr-Latn-CS
2012-04-07 14:20:33 ----D---- C:\Windows\SYSWOW64\manifeststore
2012-04-07 14:20:33 ----D---- C:\Windows\SYSWOW64\es-ES
2012-04-07 14:20:32 ----D---- C:\Windows\SYSWOW64\sl-SI
2012-04-07 14:20:31 ----D---- C:\Windows\SYSWOW64\pl-PL
2012-04-07 14:20:28 ----D---- C:\Windows\SYSWOW64\sppui
2012-04-07 14:20:27 ----D---- C:\Windows\SYSWOW64\bg-BG
2012-04-07 14:20:26 ----D---- C:\Windows\SYSWOW64\ro-RO
2012-04-07 14:20:24 ----D---- C:\Windows\SYSWOW64\wbem
2012-04-07 14:20:22 ----D---- C:\Windows\SYSWOW64\lt-LT
2012-04-07 14:20:19 ----D---- C:\Windows\SYSWOW64\migwiz
2012-04-07 14:20:18 ----D---- C:\Windows\SYSWOW64\Dism
2012-04-07 14:19:30 ----D---- C:\Windows\system32\lv-LV
2012-04-07 14:19:28 ----D---- C:\Windows\system32\hr-HR
2012-04-07 14:19:28 ----D---- C:\Windows\system32\da-DK
2012-04-07 14:19:26 ----D---- C:\Windows\system32\et-EE
2012-04-07 14:19:24 ----D---- C:\Windows\system32\sk-SK
2012-04-07 14:19:20 ----D---- C:\Windows\system32\en-US
2012-04-07 14:19:15 ----D---- C:\Windows\system32\oobe
2012-04-07 14:19:14 ----D---- C:\Windows\system32\Setup
2012-04-07 14:19:14 ----D---- C:\Windows\system32\hu
2012-04-07 14:19:14 ----D---- C:\Windows\system32\cs
2012-04-07 14:19:14 ----D---- C:\Windows\system32\AdvancedInstallers
2012-04-07 14:19:13 ----D---- C:\Windows\system32\cs-CZ
2012-04-07 14:19:11 ----D---- C:\Windows\system32\hu-HU
2012-04-07 14:19:06 ----D---- C:\Windows\system32\sr-Latn-CS
2012-04-07 14:19:06 ----D---- C:\Windows\system32\manifeststore
2012-04-07 14:19:05 ----D---- C:\Windows\system32\es-ES
2012-04-07 14:19:04 ----D---- C:\Windows\system32\sl-SI
2012-04-07 14:19:02 ----D---- C:\Windows\system32\pl-PL
2012-04-07 14:18:58 ----D---- C:\Windows\system32\sppui
2012-04-07 14:18:57 ----D---- C:\Windows\system32\bg-BG
2012-04-07 14:18:54 ----D---- C:\Windows\system32\ro-RO
2012-04-07 14:18:52 ----D---- C:\Windows\system32\drivers\pl-PL
2012-04-07 14:18:52 ----D---- C:\Windows\system32\drivers\hu-HU
2012-04-07 14:18:52 ----D---- C:\Windows\system32\drivers\en-US
2012-04-07 14:18:52 ----D---- C:\Windows\system32\drivers\cs-CZ
2012-04-07 14:18:50 ----D---- C:\Windows\system32\wbem
2012-04-07 14:18:48 ----D---- C:\Windows\system32\lt-LT
2012-04-07 14:18:45 ----D---- C:\Windows\system32\migwiz
2012-04-07 14:18:44 ----D---- C:\Windows\system32\Dism
2012-04-07 14:18:01 ----D---- C:\Windows\AppPatch
2012-04-07 13:56:46 ----D---- C:\Windows\system32\Boot
2012-04-07 13:15:45 ----A---- C:\Windows\SYSWOW64\msclmd.dll
2012-04-07 13:15:43 ----A---- C:\Windows\system32\msclmd.dll
2012-04-06 08:50:24 ----D---- C:\Windows\Tasks
2012-04-05 17:10:38 ----D---- C:\Windows\system32\wdi
2012-04-04 19:57:19 ----D---- C:\Windows\debug
2012-04-04 18:43:01 ----A---- C:\Windows\system32\ServiceFilter.ini
2012-04-03 18:36:47 ----D---- C:\ProgramData\Adobe
2012-04-03 05:24:20 ----D---- C:\Program Files (x86)\Microsoft.NET
2012-04-02 20:07:04 ----A---- C:\Windows\win.ini
2012-04-02 16:09:01 ----D---- C:\Windows\PolicyDefinitions
2012-04-02 15:50:24 ----SD---- C:\ProgramData\Microsoft
2012-04-02 15:47:08 ----D---- C:\Windows\Logs
2012-04-02 15:21:39 ----D---- C:\Program Files (x86)\Microsoft Works
2012-04-02 05:07:44 ----D---- C:\Windows\system32\drivers\etc
2012-04-01 18:28:55 ----D---- C:\Program Files (x86)\Adobe
2012-04-01 18:13:09 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2012-04-01 17:42:02 ----D---- C:\Program Files (x86)\Common Files
2012-04-01 17:36:32 ----D---- C:\Program Files\Common Files\Microsoft Shared
2012-04-01 17:35:03 ----D---- C:\Program Files\Microsoft Office
2012-04-01 17:34:54 ----D---- C:\Windows\ShellNew
2012-04-01 15:58:00 ----A---- C:\Windows\system32\Defrag.ini
2012-04-01 15:49:33 ----D---- C:\Windows\SYSWOW64\drivers
2012-04-01 15:34:16 ----D---- C:\Windows\SoftwareDistribution
2012-04-01 15:29:43 ----SHD---- C:\$Recycle.Bin
2012-04-01 15:28:34 ----DC---- C:\Windows\system32\DRVSTORE
2012-04-01 15:11:22 ----RD---- C:\Users
2012-04-01 15:08:52 ----SHD---- C:\Recovery
2012-04-01 15:08:52 ----D---- C:\Windows\system32\Recovery

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

Sauron5302
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 21 čer 2011 17:51

Re: RSIT - Vypíná se mi NTB prosím o kontrolu

#3 Příspěvek od Sauron5302 »

cislo:3

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 AsDsm;AsDsm; C:\Windows\system32\drivers\AsDsm.sys [2009-10-17 35384]
R0 aswNdis;avast! Firewall NDIS Filter Service; C:\Windows\system32\DRIVERS\aswNdis.sys [2012-03-07 12368]
R0 aswNdis2;avast! Firewall Core Firewall Service; C:\Windows\system32\drivers\aswNdis2.sys [2012-03-07 258904]
R0 AtiPcie;AMD PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie.sys [2009-05-05 16440]
R0 lullaby;lullaby; C:\Windows\system32\DRIVERS\lullaby.sys [2009-06-18 15928]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 aswFW;avast! TDI Firewall driver; C:\Windows\system32\drivers\aswFW.sys [2012-03-07 141144]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2012-03-07 28504]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2012-03-07 53080]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2012-03-07 819032]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2012-03-07 337240]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2012-03-07 59224]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2012-04-09 283200]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files\ATKGFNEX\ASMMAP64.sys [2007-07-24 14904]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2012-03-07 24408]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2012-03-07 69976]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-06-06 1478144]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-06-26 6036480]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2009-06-12 112128]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATK64AMD.sys [2009-05-13 15928]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-05-23 215040]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2009-06-05 1806400]
R3 SRS_PremiumSound_Service;SRS Labs Premium Sound; C:\Windows\system32\drivers\srs_PremiumSound_amd64.sys [2009-05-18 343592]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2009-06-05 34872]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service; C:\Windows\system32\drivers\viahduaa.sys [2009-07-09 1222144]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2008-12-08 61792]
S3 HTCAND64;HTC Device Driver; C:\Windows\System32\Drivers\ANDROIDUSB.sys [2009-11-01 33736]
S3 htcnprot;HTC NDIS Protocol Driver; C:\Windows\system32\DRIVERS\htcnprot.sys [2010-06-25 36928]
S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSG664.sys [2009-06-10 56832]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 WimFltr;WimFltr; C:\Windows\system32\DRIVERS\wimfltr.sys [2008-05-24 154168]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2009-09-17 359552]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2009-06-26 203264]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe [2009-06-16 84536]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [2007-08-08 94208]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2012-03-07 44768]
R2 avast! Firewall;avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [2012-03-07 134920]
R2 BBSvc;Bing Bar Update Service; C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-10-21 196176]
R2 BBUpdate;BBUpdate; C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE [2011-10-13 249648]
R2 PassThru Service;Internet Pass-Through Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [2011-09-15 88576]
R2 SRS_VolSync_Service;SRS Volume Sync Service; C:\Program Files\SRS Labs\SRS Premium Sound\SRS_VolSync.exe [2009-07-10 128224]
R3 ADSMService;ADSM Service; C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe [2008-03-31 225280]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-02-29 158856]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-14 253088]
S3 fsssvc;Windows Live Zabezpečení rodiny; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2008-12-08 533344]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-04-02 1255736]

-----------------EOF-----------------

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: RSIT - Vypíná se mi NTB prosím o kontrolu

#4 Příspěvek od motji »

Hezké dopoledne :)

:arrow: Stahněte MBAM http://www.viry.cz/forum/viewtopic.php?f=29&t=115222
-Nainstalujte,dejte úplný sken

NIC NEMAZAT :!:
-MBAM má občas falešné detekce,proto budeme mazat až po kontrole logu.
-Log zkopírujte sem.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Sauron5302
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 21 čer 2011 17:51

Re: RSIT - Vypíná se mi NTB prosím o kontrolu

#5 Příspěvek od Sauron5302 »

alwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware) 1.61.0.1400
www.malwarebytes.org

Verze databáze: v2012.04.17.05

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
Petr-Adrian-Dagmar :: PETR-ADRIAN-DAG [administrátor]

Ochrana: Povolena

17.4.2012 19:30:42
mbam-log-2012-04-18 (06-28-42).txt

Typ: Úplná kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 574435
Uplynulý čas: 2 hodin, 33 minut, 59 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 11
C:\Program Files (x86)\MerKury2\MerKury2\.MerKury2 - Starter.exe (Backdoor.Hupigon) -> Žádná instrukce nebyla provedena.
C:\Program Files (x86)\MerKury2\MerKury2\metin2client.exe (RiskWare.Tool.CK) -> Žádná instrukce nebyla provedena.
C:\Users\Petr-Adrian-Dagmar\Desktop\Programy,Hry ADI\C4D.SoftwareR13RC gRabb9\MC4-Key generator.exe (Trojan.Agent.CK) -> Žádná instrukce nebyla provedena.
C:\Users\Petr-Adrian-Dagmar\Desktop\Programy,Hry ADI\MerKury2\MerKury2\.MerKury2 - Starter.exe (Backdoor.Hupigon) -> Žádná instrukce nebyla provedena.
C:\Users\Petr-Adrian-Dagmar\Desktop\Programy,Hry ADI\MerKury2\MerKury2\metin2client.exe (RiskWare.Tool.CK) -> Žádná instrukce nebyla provedena.
C:\Users\Petr-Adrian-Dagmar\Desktop\Programy,Hry ADI\Metin2Mage[V2]\Metin2Mage[V2]\Metin2Mage.exe (Backdoor.Hupigon) -> Žádná instrukce nebyla provedena.
D:\ar\xpam.exe (Trojan.MultiDropper) -> Žádná instrukce nebyla provedena.
D:\downlkoady\Heylo2\mc.exe (Trojan.Downloader) -> Žádná instrukce nebyla provedena.
D:\downlkoady\Heylo2\torrent.exe (Trojan.Dropper) -> Žádná instrukce nebyla provedena.
D:\fighter\666.ExE (Malware.Packer) -> Žádná instrukce nebyla provedena.
D:\Program Files (x86)\Adobe Photoshop CS3 Portable CZ - neinstaluje se\Msvcrt.dll (Malware.Packer.Gen) -> Žádná instrukce nebyla provedena.

(konec)

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: RSIT - Vypíná se mi NTB prosím o kontrolu

#6 Příspěvek od motji »

To všechno jsou nelegální programy?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Sauron5302
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 21 čer 2011 17:51

Re: RSIT - Vypíná se mi NTB prosím o kontrolu

#7 Příspěvek od Sauron5302 »

jen cinema4d a PhotoShop CS3

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: RSIT - Vypíná se mi NTB prosím o kontrolu

#8 Příspěvek od motji »

Tohle znáte?
D:\ar\xpam.exe
D:\fighter\666.ExE
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Sauron5302
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 21 čer 2011 17:51

Re: RSIT - Vypíná se mi NTB prosím o kontrolu

#9 Příspěvek od Sauron5302 »

to neznám.

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: RSIT - Vypíná se mi NTB prosím o kontrolu

#10 Příspěvek od motji »

V mbamu vše smažte apoprosím o log ze rsitu s názvem info.txt :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Sauron5302
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 21 čer 2011 17:51

Re: RSIT - Vypíná se mi NTB prosím o kontrolu

#11 Příspěvek od Sauron5302 »

Kód: Vybrat vše

info.txt logfile of random's system information tool 1.09 2012-04-24 06:18:58

======Uninstall list======

 Update for Microsoft Office 2007 (KB2508958)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {0C5823AA-7B6F-44E1-8D5B-8FD1FF0E6438}
µTorrent-->"C:\Program Files (x86)\uTorrent\uTorrent.exe" /UNINSTALL
2007 Microsoft Office system-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall PROHYBRIDR /dll OSETUP.DLL
Acrobat.com-->MsiExec.exe /X{287ECFA4-719A-2143-A09B-D6A12DE54E40}
Activation Assistant for the 2007 Microsoft Office suites-->"C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}\Microsoft Office Activation Assistant.exe" REMOVE=TRUE MODIFY=FALSE
Actualizare Microsoft Office Excel 2007 Help (KB963678)-->msiexec /package {90120000-0016-0418-0000-0000000FF1CE} /uninstall {6195740F-0C89-4CDD-ACAD-67CCE1495348}
Actualizare Microsoft Office Powerpoint 2007 Help (KB963669)-->msiexec /package {90120000-0018-0418-0000-0000000FF1CE} /uninstall {E78703E2-69D3-4204-B101-9D8B7B72585C}
Actualizare Microsoft Office Word 2007 Help (KB963665)-->msiexec /package {90120000-001B-0418-0000-0000000FF1CE} /uninstall {1531AE8C-8271-4A8C-9ABA-86AE70B0DA82}
Adobe AIR-->c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall
Adobe AIR-->MsiExec.exe /I{FE23D063-934D-4829-A0D8-00634CE79B4A}
Adobe Community Help-->msiexec /qb /x {0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}
Adobe Community Help-->MsiExec.exe /I{0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}
Adobe Flash Player 10 Plugin-->C:\Windows\SysWOW64\Macromed\Flash\uninstall_plugin.exe
Adobe Flash Player 11 ActiveX 64-bit-->C:\Windows\system32\Macromed\Flash\FlashUtil64_11_2_202_233_ActiveX.exe -maintain activex
Adobe Media Player-->msiexec /qb /x {DE3A9DC5-9A5D-6485-9662-347162C7E4CA}
Adobe Media Player-->MsiExec.exe /I{DE3A9DC5-9A5D-6485-9662-347162C7E4CA}
Adobe Photoshop CS5-->C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\core\PDApp.exe --appletID="DWA_UI" --appletVersion="1.0" --mode="Uninstall" --mediaSignature="{15FEDA5F-141C-4127-8D7E-B962D1742728}"
Adobe Reader 9.5.1 MUI-->MsiExec.exe /I{AC76BA86-7AD7-FFFF-7B44-A91000000001}
Age of Mythology Gold-->"C:\Program Files (x86)\Microsoft Games\Age of Mythology\UNINSTAL.EXE" /runtemp /uninstall
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678)-->msiexec /package {90120000-0016-0405-0000-0000000FF1CE} /uninstall {0A1FAC46-B899-421D-B1A2-470896DC45DB}
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669)-->msiexec /package {90120000-0018-0405-0000-0000000FF1CE} /uninstall {5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665)-->msiexec /package {90120000-001B-0405-0000-0000000FF1CE} /uninstall {E68DD413-B834-4923-8181-0A03B7555187}
Aktualizácia Microsoft Office Excel 2007 Help (KB963678)-->msiexec /package {90120000-0016-041B-0000-0000000FF1CE} /uninstall {9A8C39B0-D27F-4F81-BE74-2FECF164707E}
Aktualizácia Microsoft Office Powerpoint 2007 Help (KB963669)-->msiexec /package {90120000-0018-041B-0000-0000000FF1CE} /uninstall {CE23B3DC-18CC-46FC-A309-81D6670F8D3D}
Aktualizácia Microsoft Office Word 2007 Help (KB963665)-->msiexec /package {90120000-001B-041B-0000-0000000FF1CE} /uninstall {D6DBF512-87C0-4F6A-8FB9-AC3A389D9DE5}
Aktualizacja produktu Microsoft Office Excel 2007 Help (KB963678)-->msiexec /package {90120000-0016-0415-0000-0000000FF1CE} /uninstall {04E205D6-88B1-4652-B162-42DF2C3B1228}
Aktualizacja produktu Microsoft Office Powerpoint 2007 Help (KB963669)-->msiexec /package {90120000-0018-0415-0000-0000000FF1CE} /uninstall {442ECBCF-94A7-48CC-8CD9-D31FFFD5FA86}
Aktualizacja produktu Microsoft Office Word 2007 Help (KB963665)-->msiexec /package {90120000-001B-0415-0000-0000000FF1CE} /uninstall {128A36ED-21BE-4547-9FFE-5B85AEC735DD}
AMD USB Filter Driver-->MsiExec.exe /X{4F5B18A3-E921-4FFE-BEF4-ACBB98964FC2}
Asistent pro přihlášení ke službě Windows Live-->MsiExec.exe /I{BD86C297-41C7-4DB5-82C4-98DE3399A2EF}
ASUS AI Recovery-->MsiExec.exe /I{06585B02-F20D-4AB2-9A64-86EF2AE0F8F0}
ASUS CopyProtect-->MsiExec.exe /I{6B77A7F6-DD63-4F13-A6FF-83137A5AC354}
ASUS Data Security Manager-->MsiExec.exe /X{FA2092C5-7979-412D-A962-6485274AE1EE}
ASUS FancyStart-->MsiExec.exe /I{F0DF4513-3C4C-4EB8-8012-2C5F70AF3988}
ASUS LifeFrame3-->MsiExec.exe /I{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}
ASUS Live Update-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{E657B243-9AD4-4ECC-BE81-4CCF8D667FD0}\Setup.exe" -l0x9 
ASUS MultiFrame-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{9D48531D-2135-49FC-BC29-ACCDA5396A76}\setup.exe" -l0x9 
ASUS Power4Gear Hybrid-->MsiExec.exe /I{1686C4D1-B1FD-42E8-B7A8-FB4C4DBA5BA8}
ASUS SmartLogon-->MsiExec.exe /I{64452561-169F-4A36-A2FF-B5E118EC65F5}
ASUS Splendid Video Enhancement Technology-->MsiExec.exe /I{0969AF05-4FF6-4C00-9406-43599238DE0D}
ASUS Virtual Camera-->MsiExec.exe /I{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}
Atheros Client Installation Program-->C:\Program Files (x86)\InstallShield Installation Information\{28006915-2739-4EBE-B5E8-49B25D32EB33}\setup.exe -runfromtemp -l0x0009 -removeonly
ATK Generic Function Service-->C:\Program Files (x86)\InstallShield Installation Information\{D3D54F3E-C5C3-443D-978F-87A72E5616E8}\setup.exe -runfromtemp -l0x0009 -removeonly
ATK Hotkey-->MsiExec.exe /I{7C05592D-424B-46CB-B505-E0013E8E75C9}
ATK Media-->MsiExec.exe /I{D1E5870E-E3E5-4475-98A6-ADD614524ADF}
ATKOSD2-->MsiExec.exe /I{3B05F2FB-745B-4012-ADF2-439F36B2E70B}
avast! Internet Security-->C:\Program Files\AVAST Software\Avast\aswRunDll.exe "C:\Program Files\AVAST Software\Avast\Setup\setiface.dll" RunSetup
Bing Bar-->MsiExec.exe /X{B4089055-D468-45A4-A6BA-5A138DD715FC}
Catalyst Control Center - Branding-->MsiExec.exe /I{81601299-AD02-403C-9A47-93C509FE2EC2}
CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
ControlDeck-->MsiExec.exe /I{5B65EF64-1DFA-414A-8C94-7BB726158E21}
CyberLink LabelPrint-->"C:\Program Files (x86)\InstallShield Installation Information\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\Setup.exe" /z-uninstall
CyberLink LabelPrint-->"C:\Program Files (x86)\InstallShield Installation Information\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\Setup.exe" /z-uninstall
CyberLink Power2Go-->"C:\Program Files (x86)\InstallShield Installation Information\{40BF1E83-20EB-11D8-97C5-0009C5020658}\Setup.exe" /z-uninstall
CyberLink Power2Go-->"C:\Program Files (x86)\InstallShield Installation Information\{40BF1E83-20EB-11D8-97C5-0009C5020658}\Setup.exe" /z-uninstall
DAEMON Tools Lite-->C:\Program Files (x86)\DAEMON Tools Lite\uninst.exe
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{4FE6ABAF-20F3-4F5F-A966-380FDAE9A31A}" "1029" "0"
Defraggler-->"C:\Program Files\Defraggler\uninst.exe"
ETDWare PS/2-x64 7.0.5.5_WHQL-->C:\Program Files\Elantech\ETDUninst.exe
Fast Boot-->MsiExec.exe /I{13F4A7F3-EABC-4261-AF6B-1317777F0755}
GameSpy Arcade-->C:\PROGRA~2\GAMESP~1\UNWISE.EXE C:\PROGRA~2\GAMESP~1\INSTALL.LOG
Garena Plus-->C:\Program Files (x86)\Garena Plus\uninst.exe
GTA San Andreas-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}\setup.exe" -l0x9  -removeonly
HTC BMP USB Driver-->MsiExec.exe /I{31A559C1-9E4D-423B-9DD3-34A6C5398752}
HTC Driver Installer-->MsiExec.exe /X{6D6664A9-3342-4948-9B7E-034EFE366F0F}
HTC Sync-->MsiExec.exe /I{7A3FFA58-876F-489C-B6CF-0503916224DF}
Choice Guard-->MsiExec.exe /I{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}
Java(TM) 6 Update 31-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216031FF}
Junk Mail filter update-->MsiExec.exe /I{4AB8B41B-3AF1-46BE-99B0-0ACD3B300C0A}
LogMeIn Hamachi-->C:\Windows\SysWOW64\\msiexec.exe /i {E2494AD8-314D-44F8-B39C-4358A60DC184} REMOVE=ALL
LogMeIn Hamachi-->MsiExec.exe /I{E2494AD8-314D-44F8-B39C-4358A60DC184}
Malwarebytes Anti-Malware verze 1.61.0.1400-->"C:\Program Files (x86)\Malwarebytes' Anti-Malware\unins000.exe"
Microsoft .NET Framework 4 Client Profile CSY Language Pack-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\ClientLP\Setup.exe /repair /x86 /x64 /lcid 1029 /parameterfolder ClientLP
Microsoft .NET Framework 4 Client Profile CSY Language Pack-->MsiExec.exe /X{790E02A1-145A-3843-8C13-A4F41C9B48B7}
Microsoft .NET Framework 4 Client Profile-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\Setup.exe /repair /x86 /x64 /parameterfolder Client
Microsoft .NET Framework 4 Client Profile-->MsiExec.exe /X{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-002A-040E-1000-0000000FF1CE} /uninstall {B3C14F81-2C4A-400D-9ECE-55A667F8F737}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-006E-040E-0000-0000000FF1CE} /uninstall {B3C14F81-2C4A-400D-9ECE-55A667F8F737}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0015-0405-0000-0000000FF1CE} /uninstall {3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0015-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0015-040E-0000-0000000FF1CE} /uninstall {D6F600AB-D132-40CA-B78A-20BE2C83395E}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0015-0415-0000-0000000FF1CE} /uninstall {01CC3B2D-70DB-49DC-839A-A923D2A39EA4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0015-0418-0000-0000000FF1CE} /uninstall {13618660-2F11-4E8E-AD45-19D97C3FCF2B}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0015-041B-0000-0000000FF1CE} /uninstall {4754EB3B-ED3D-4095-A2FD-684A3058A4FF}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0015-0424-0000-0000000FF1CE} /uninstall {DE6F6651-39D5-44FA-96FD-647D5B3A3093}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0016-0405-0000-0000000FF1CE} /uninstall {3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0016-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0016-040E-0000-0000000FF1CE} /uninstall {D6F600AB-D132-40CA-B78A-20BE2C83395E}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0016-0415-0000-0000000FF1CE} /uninstall {01CC3B2D-70DB-49DC-839A-A923D2A39EA4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0016-0418-0000-0000000FF1CE} /uninstall {13618660-2F11-4E8E-AD45-19D97C3FCF2B}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0016-041B-0000-0000000FF1CE} /uninstall {4754EB3B-ED3D-4095-A2FD-684A3058A4FF}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0016-0424-0000-0000000FF1CE} /uninstall {DE6F6651-39D5-44FA-96FD-647D5B3A3093}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0018-0405-0000-0000000FF1CE} /uninstall {3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0018-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0018-040E-0000-0000000FF1CE} /uninstall {D6F600AB-D132-40CA-B78A-20BE2C83395E}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0018-0415-0000-0000000FF1CE} /uninstall {01CC3B2D-70DB-49DC-839A-A923D2A39EA4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0018-0418-0000-0000000FF1CE} /uninstall {13618660-2F11-4E8E-AD45-19D97C3FCF2B}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0018-041B-0000-0000000FF1CE} /uninstall {4754EB3B-ED3D-4095-A2FD-684A3058A4FF}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0018-0424-0000-0000000FF1CE} /uninstall {DE6F6651-39D5-44FA-96FD-647D5B3A3093}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0019-0405-0000-0000000FF1CE} /uninstall {3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0019-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0019-040E-0000-0000000FF1CE} /uninstall {D6F600AB-D132-40CA-B78A-20BE2C83395E}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0019-0415-0000-0000000FF1CE} /uninstall {01CC3B2D-70DB-49DC-839A-A923D2A39EA4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0019-0418-0000-0000000FF1CE} /uninstall {13618660-2F11-4E8E-AD45-19D97C3FCF2B}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0019-041B-0000-0000000FF1CE} /uninstall {4754EB3B-ED3D-4095-A2FD-684A3058A4FF}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0019-0424-0000-0000000FF1CE} /uninstall {DE6F6651-39D5-44FA-96FD-647D5B3A3093}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001A-0405-0000-0000000FF1CE} /uninstall {3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001A-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001A-040E-0000-0000000FF1CE} /uninstall {D6F600AB-D132-40CA-B78A-20BE2C83395E}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001A-0415-0000-0000000FF1CE} /uninstall {01CC3B2D-70DB-49DC-839A-A923D2A39EA4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001A-0418-0000-0000000FF1CE} /uninstall {13618660-2F11-4E8E-AD45-19D97C3FCF2B}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001A-041B-0000-0000000FF1CE} /uninstall {4754EB3B-ED3D-4095-A2FD-684A3058A4FF}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001A-0424-0000-0000000FF1CE} /uninstall {DE6F6651-39D5-44FA-96FD-647D5B3A3093}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001B-0405-0000-0000000FF1CE} /uninstall {3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001B-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001B-040E-0000-0000000FF1CE} /uninstall {D6F600AB-D132-40CA-B78A-20BE2C83395E}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001B-0415-0000-0000000FF1CE} /uninstall {01CC3B2D-70DB-49DC-839A-A923D2A39EA4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001B-0418-0000-0000000FF1CE} /uninstall {13618660-2F11-4E8E-AD45-19D97C3FCF2B}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001B-041B-0000-0000000FF1CE} /uninstall {4754EB3B-ED3D-4095-A2FD-684A3058A4FF}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001B-0424-0000-0000000FF1CE} /uninstall {DE6F6651-39D5-44FA-96FD-647D5B3A3093}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-002A-0000-1000-0000000FF1CE} /uninstall {664655D8-B9BB-455D-8A58-7EAF7B0B2862}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-002A-0405-1000-0000000FF1CE} /uninstall {A0AAD4D5-9F9C-49BB-AB64-0FD4695424E8}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-002A-0409-1000-0000000FF1CE} /uninstall {98333358-268C-4164-B6D4-C96DF5153727}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-002A-0415-1000-0000000FF1CE} /uninstall {0C8AB602-A234-45AB-B355-4C863C1D2FA8}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-002A-0418-1000-0000000FF1CE} /uninstall {C618587E-CCC5-46B5-88C3-2E7C1195B3C7}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-002A-041B-1000-0000000FF1CE} /uninstall {8382BA92-20E3-47B6-971B-F673F0492D4E}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-002A-0424-1000-0000000FF1CE} /uninstall {455248D4-FBA8-4C55-AB56-3F209028D7B5}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-006E-0405-0000-0000000FF1CE} /uninstall {A0AAD4D5-9F9C-49BB-AB64-0FD4695424E8}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {98333358-268C-4164-B6D4-C96DF5153727}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-006E-0415-0000-0000000FF1CE} /uninstall {0C8AB602-A234-45AB-B355-4C863C1D2FA8}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-006E-0418-0000-0000000FF1CE} /uninstall {C618587E-CCC5-46B5-88C3-2E7C1195B3C7}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-006E-041B-0000-0000000FF1CE} /uninstall {8382BA92-20E3-47B6-971B-F673F0492D4E}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-006E-0424-0000-0000000FF1CE} /uninstall {455248D4-FBA8-4C55-AB56-3F209028D7B5}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0115-0409-0000-0000000FF1CE} /uninstall {98333358-268C-4164-B6D4-C96DF5153727}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0116-0409-1000-0000000FF1CE} /uninstall {98333358-268C-4164-B6D4-C96DF5153727}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0117-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {6E107EB7-8B55-48BF-ACCB-199F86A2CD93}
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0015-0405-0000-0000000FF1CE}" "{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" "1029" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0016-0405-0000-0000000FF1CE}" "{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" "1029" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0018-0405-0000-0000000FF1CE}" "{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" "1029" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0019-0405-0000-0000000FF1CE}" "{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" "1029" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001A-0405-0000-0000000FF1CE}" "{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" "1029" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001B-0405-0000-0000000FF1CE}" "{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" "1029" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0405-0000-0000000FF1CE}" "{2304F942-79D2-46F7-A512-269A7F5B7EFC}" "1029" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0407-0000-0000000FF1CE}" "{65A2328E-FDFB-4CA3-8582-357EA6825FEA}" "1029" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0409-0000-0000000FF1CE}" "{99ACCA38-6DD3-48A8-96AE-A283C9759279}" "1029" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-041B-0000-0000000FF1CE}" "{A162C5E6-7778-4D5B-9F0A-38F0122DD859}" "1029" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002A-0000-1000-0000000FF1CE}" "{967EF02C-5C7E-4718-8FCB-BDC050190CCF}" "1029" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002A-0405-1000-0000000FF1CE}" "{AB90513B-B892-41B5-8F8B-1D356A449652}" "1029" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002C-0405-0000-0000000FF1CE}" "{8148DB19-71B1-4415-8B26-DF5B9E873FC3}" "1029" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{047B0968-E622-4FAA-9B4B-121FA109EDDE}" "1029" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-006E-0405-0000-0000000FF1CE}" "{EEF3E2C0-135B-44DC-BEDD-7F01CFBEFF46}" "1029" "0"
Microsoft Office 2010 Service Pack 1 (SP1)-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-00A1-0405-0000-0000000FF1CE}" "{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" "1029" "0"
Microsoft Office Access MUI (Czech) 2007-->MsiExec.exe /X{90120000-0015-0405-0000-0000000FF1CE}
Microsoft Office Access MUI (Czech) 2010-->MsiExec.exe /X{90140000-0015-0405-0000-0000000FF1CE}
Microsoft Office Access MUI (English) 2007-->MsiExec.exe /X{90120000-0015-0409-0000-0000000FF1CE}
Microsoft Office Access MUI (Hungarian) 2007-->MsiExec.exe /X{90120000-0015-040E-0000-0000000FF1CE}
Microsoft Office Access MUI (Polish) 2007-->MsiExec.exe /X{90120000-0015-0415-0000-0000000FF1CE}
Microsoft Office Access MUI (Romanian) 2007-->MsiExec.exe /X{90120000-0015-0418-0000-0000000FF1CE}
Microsoft Office Access MUI (Slovak) 2007-->MsiExec.exe /X{90120000-0015-041B-0000-0000000FF1CE}
Microsoft Office Access MUI (Slovenian) 2007-->MsiExec.exe /X{90120000-0015-0424-0000-0000000FF1CE}
Microsoft Office Access Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0117-0409-0000-0000000FF1CE}
Microsoft Office Excel 2007 Help-frissítés (KB963678)-->msiexec /package {90120000-0016-040E-0000-0000000FF1CE} /uninstall {76BD9044-91EB-46FC-8CA6-0AA239BB8A93}
Microsoft Office Excel MUI (Czech) 2007-->MsiExec.exe /X{90120000-0016-0405-0000-0000000FF1CE}
Microsoft Office Excel MUI (Czech) 2010-->MsiExec.exe /X{90140000-0016-0405-0000-0000000FF1CE}
Microsoft Office Excel MUI (English) 2007-->MsiExec.exe /X{90120000-0016-0409-0000-0000000FF1CE}
Microsoft Office Excel MUI (Hungarian) 2007-->MsiExec.exe /X{90120000-0016-040E-0000-0000000FF1CE}
Microsoft Office Excel MUI (Polish) 2007-->MsiExec.exe /X{90120000-0016-0415-0000-0000000FF1CE}
Microsoft Office Excel MUI (Romanian) 2007-->MsiExec.exe /X{90120000-0016-0418-0000-0000000FF1CE}
Microsoft Office Excel MUI (Slovak) 2007-->MsiExec.exe /X{90120000-0016-041B-0000-0000000FF1CE}
Microsoft Office Excel MUI (Slovenian) 2007-->MsiExec.exe /X{90120000-0016-0424-0000-0000000FF1CE}
Microsoft Office File Validation Add-In-->MsiExec.exe /I{90140000-2005-0000-0000-0000000FF1CE}
Microsoft Office Office 64-bit Components 2007-->MsiExec.exe /X{90120000-002A-0000-1000-0000000FF1CE}
Microsoft Office Office 64-bit Components 2010-->MsiExec.exe /X{90140000-002A-0000-1000-0000000FF1CE}
Microsoft Office OneNote MUI (Czech) 2010-->MsiExec.exe /X{90140000-00A1-0405-0000-0000000FF1CE}
Microsoft Office Outlook MUI (Czech) 2007-->MsiExec.exe /X{90120000-001A-0405-0000-0000000FF1CE}
Microsoft Office Outlook MUI (Czech) 2010-->MsiExec.exe /X{90140000-001A-0405-0000-0000000FF1CE}
Microsoft Office Outlook MUI (English) 2007-->MsiExec.exe /X{90120000-001A-0409-0000-0000000FF1CE}
Microsoft Office Outlook MUI (Hungarian) 2007-->MsiExec.exe /X{90120000-001A-040E-0000-0000000FF1CE}
Microsoft Office Outlook MUI (Polish) 2007-->MsiExec.exe /X{90120000-001A-0415-0000-0000000FF1CE}
Microsoft Office Outlook MUI (Romanian) 2007-->MsiExec.exe /X{90120000-001A-0418-0000-0000000FF1CE}
Microsoft Office Outlook MUI (Slovak) 2007-->MsiExec.exe /X{90120000-001A-041B-0000-0000000FF1CE}
Microsoft Office Outlook MUI (Slovenian) 2007-->MsiExec.exe /X{90120000-001A-0424-0000-0000000FF1CE}
Microsoft Office Powerpoint 2007 Help-frissítés (KB963669)-->msiexec /package {90120000-0018-040E-0000-0000000FF1CE} /uninstall {6863CE52-1321-482E-B930-B325EE09AEFF}
Microsoft Office PowerPoint MUI (Czech) 2007-->MsiExec.exe /X{90120000-0018-0405-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (Czech) 2010-->MsiExec.exe /X{90140000-0018-0405-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (English) 2007-->MsiExec.exe /X{90120000-0018-0409-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (Hungarian) 2007-->MsiExec.exe /X{90120000-0018-040E-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (Polish) 2007-->MsiExec.exe /X{90120000-0018-0415-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (Romanian) 2007-->MsiExec.exe /X{90120000-0018-0418-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (Slovak) 2007-->MsiExec.exe /X{90120000-0018-041B-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (Slovenian) 2007-->MsiExec.exe /X{90120000-0018-0424-0000-0000000FF1CE}
Microsoft Office Professional 2010-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Office Setup Controller\setup.exe" /uninstall SINGLEIMAGE /dll OSETUP.DLL
Microsoft Office Professional Hybrid 2007-->MsiExec.exe /X{91120000-0031-0000-0000-0000000FF1CE}
Microsoft Office Proof (Croatian) 2007-->MsiExec.exe /X{90120000-001F-041A-0000-0000000FF1CE}
Microsoft Office Proof (Czech) 2007-->MsiExec.exe /X{90120000-001F-0405-0000-0000000FF1CE}
Microsoft Office Proof (Czech) 2010-->MsiExec.exe /X{90140000-001F-0405-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (English) 2010-->MsiExec.exe /X{90140000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
Microsoft Office Proof (German) 2010-->MsiExec.exe /X{90140000-001F-0407-0000-0000000FF1CE}
Microsoft Office Proof (Hungarian) 2007-->MsiExec.exe /X{90120000-001F-040E-0000-0000000FF1CE}
Microsoft Office Proof (Italian) 2007-->MsiExec.exe /X{90120000-001F-0410-0000-0000000FF1CE}
Microsoft Office Proof (Polish) 2007-->MsiExec.exe /X{90120000-001F-0415-0000-0000000FF1CE}
Microsoft Office Proof (Romanian) 2007-->MsiExec.exe /X{90120000-001F-0418-0000-0000000FF1CE}
Microsoft Office Proof (Slovak) 2007-->MsiExec.exe /X{90120000-001F-041B-0000-0000000FF1CE}
Microsoft Office Proof (Slovak) 2010-->MsiExec.exe /X{90140000-001F-041B-0000-0000000FF1CE}
Microsoft Office Proof (Slovenian) 2007-->MsiExec.exe /X{90120000-001F-0424-0000-0000000FF1CE}
Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
Microsoft Office Proofing (Czech) 2007-->MsiExec.exe /X{90120000-002C-0405-0000-0000000FF1CE}
Microsoft Office Proofing (Czech) 2010-->MsiExec.exe /X{90140000-002C-0405-0000-0000000FF1CE}
Microsoft Office Proofing (English) 2007-->MsiExec.exe /X{90120000-002C-0409-0000-0000000FF1CE}
Microsoft Office Proofing (Hungarian) 2007-->MsiExec.exe /X{90120000-002C-040E-0000-0000000FF1CE}
Microsoft Office Proofing (Polish) 2007-->MsiExec.exe /X{90120000-002C-0415-0000-0000000FF1CE}
Microsoft Office Proofing (Romanian) 2007-->MsiExec.exe /X{90120000-002C-0418-0000-0000000FF1CE}
Microsoft Office Proofing (Slovak) 2007-->MsiExec.exe /X{90120000-002C-041B-0000-0000000FF1CE}
Microsoft Office Proofing (Slovenian) 2007-->MsiExec.exe /X{90120000-002C-0424-0000-0000000FF1CE}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-0405-0000-0000000FF1CE} /uninstall {0B7A4B67-2A38-42B1-9857-662FAB361E08}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {928D7B99-2BEA-49F9-83B8-20FA57860643}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {1FF96026-A04A-4C3E-B50A-BB7022654D0F}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {71F055E8-E2C6-4214-BB3D-BFE03561B89E}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-040E-0000-0000000FF1CE} /uninstall {0AD4BB83-13B4-4C9D-9BAC-7F64E0B2D5D7}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-0410-0000-0000000FF1CE} /uninstall {A23BFC95-4A73-410F-9248-4C2B48E38C49}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-0415-0000-0000000FF1CE} /uninstall {9CC96D78-9E1D-46E0-AF4D-3EB440CD4619}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-0418-0000-0000000FF1CE} /uninstall {0E2DB3D7-94EA-4B12-A9C1-D3C52BDE07D8}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-041A-0000-0000000FF1CE} /uninstall {9DECF714-4963-48E2-924A-B9075485AF6B}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-041B-0000-0000000FF1CE} /uninstall {FDF9A959-241A-4662-A8DE-7DED9C22D160}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-0424-0000-0000000FF1CE} /uninstall {8FF4ED5D-9EA1-4EC5-8F10-767E1705310C}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}
Microsoft Office Publisher MUI (Czech) 2007-->MsiExec.exe /X{90120000-0019-0405-0000-0000000FF1CE}
Microsoft Office Publisher MUI (Czech) 2010-->MsiExec.exe /X{90140000-0019-0405-0000-0000000FF1CE}
Microsoft Office Publisher MUI (English) 2007-->MsiExec.exe /X{90120000-0019-0409-0000-0000000FF1CE}
Microsoft Office Publisher MUI (Hungarian) 2007-->MsiExec.exe /X{90120000-0019-040E-0000-0000000FF1CE}
Microsoft Office Publisher MUI (Polish) 2007-->MsiExec.exe /X{90120000-0019-0415-0000-0000000FF1CE}
Microsoft Office Publisher MUI (Romanian) 2007-->MsiExec.exe /X{90120000-0019-0418-0000-0000000FF1CE}
Microsoft Office Publisher MUI (Slovak) 2007-->MsiExec.exe /X{90120000-0019-041B-0000-0000000FF1CE}
Microsoft Office Publisher MUI (Slovenian) 2007-->MsiExec.exe /X{90120000-0019-0424-0000-0000000FF1CE}
Microsoft Office Shared 64-bit MUI (Czech) 2007-->MsiExec.exe /X{90120000-002A-0405-1000-0000000FF1CE}
Microsoft Office Shared 64-bit MUI (Czech) 2010-->MsiExec.exe /X{90140000-002A-0405-1000-0000000FF1CE}
Microsoft Office Shared 64-bit MUI (English) 2007-->MsiExec.exe /X{90120000-002A-0409-1000-0000000FF1CE}
Microsoft Office Shared 64-bit MUI (Hungarian) 2007-->MsiExec.exe /X{90120000-002A-040E-1000-0000000FF1CE}
Microsoft Office Shared 64-bit MUI (Polish) 2007-->MsiExec.exe /X{90120000-002A-0415-1000-0000000FF1CE}
Microsoft Office Shared 64-bit MUI (Romanian) 2007-->MsiExec.exe /X{90120000-002A-0418-1000-0000000FF1CE}
Microsoft Office Shared 64-bit MUI (Slovak) 2007-->MsiExec.exe /X{90120000-002A-041B-1000-0000000FF1CE}
Microsoft Office Shared 64-bit MUI (Slovenian) 2007-->MsiExec.exe /X{90120000-002A-0424-1000-0000000FF1CE}
Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0116-0409-1000-0000000FF1CE}
Microsoft Office Shared MUI (Czech) 2007-->MsiExec.exe /X{90120000-006E-0405-0000-0000000FF1CE}
Microsoft Office Shared MUI (Czech) 2010-->MsiExec.exe /X{90140000-006E-0405-0000-0000000FF1CE}
Microsoft Office Shared MUI (English) 2007-->MsiExec.exe /X{90120000-006E-0409-0000-0000000FF1CE}
Microsoft Office Shared MUI (Hungarian) 2007-->MsiExec.exe /X{90120000-006E-040E-0000-0000000FF1CE}
Microsoft Office Shared MUI (Polish) 2007-->MsiExec.exe /X{90120000-006E-0415-0000-0000000FF1CE}
Microsoft Office Shared MUI (Romanian) 2007-->MsiExec.exe /X{90120000-006E-0418-0000-0000000FF1CE}
Microsoft Office Shared MUI (Slovak) 2007-->MsiExec.exe /X{90120000-006E-041B-0000-0000000FF1CE}
Microsoft Office Shared MUI (Slovenian) 2007-->MsiExec.exe /X{90120000-006E-0424-0000-0000000FF1CE}
Microsoft Office Shared Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0115-0409-0000-0000000FF1CE}
Microsoft Office Single Image 2010-->MsiExec.exe /X{90140000-003D-0000-0000-0000000FF1CE}
Microsoft Office Word 2007 Help-frissítés (KB963665)-->msiexec /package {90120000-001B-040E-0000-0000000FF1CE} /uninstall {0E56E23A-EDB8-42C7-A285-7258C5944EB4}
Microsoft Office Word MUI (Czech) 2007-->MsiExec.exe /X{90120000-001B-0405-0000-0000000FF1CE}
Microsoft Office Word MUI (Czech) 2010-->MsiExec.exe /X{90140000-001B-0405-0000-0000000FF1CE}
Microsoft Office Word MUI (English) 2007-->MsiExec.exe /X{90120000-001B-0409-0000-0000000FF1CE}
Microsoft Office Word MUI (Hungarian) 2007-->MsiExec.exe /X{90120000-001B-040E-0000-0000000FF1CE}
Microsoft Office Word MUI (Polish) 2007-->MsiExec.exe /X{90120000-001B-0415-0000-0000000FF1CE}
Microsoft Office Word MUI (Romanian) 2007-->MsiExec.exe /X{90120000-001B-0418-0000-0000000FF1CE}
Microsoft Office Word MUI (Slovak) 2007-->MsiExec.exe /X{90120000-001B-041B-0000-0000000FF1CE}
Microsoft Office Word MUI (Slovenian) 2007-->MsiExec.exe /X{90120000-001B-0424-0000-0000000FF1CE}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft Sync Framework Services Native v1.0 (x86)-->MsiExec.exe /I{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}
Microsoft Visual C++ 2005 Redistributable (x64)-->MsiExec.exe /X{071c9b48-7c32-4621-a0ac-3f809523288f}
Microsoft Visual C++ 2005 Redistributable (x64)-->MsiExec.exe /X{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161-->MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}
Microsoft_VC80_ATL_x86_x64-->MsiExec.exe /I{925D058B-564A-443A-B4B2-7E90C6432E55}
Microsoft_VC80_ATL_x86-->MsiExec.exe /I{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}
Microsoft_VC80_CRT_x86_x64-->MsiExec.exe /I{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}
Microsoft_VC80_CRT_x86-->MsiExec.exe /I{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}
Microsoft_VC80_MFC_x86_x64-->MsiExec.exe /I{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}
Microsoft_VC80_MFC_x86-->MsiExec.exe /I{D1A19B02-817E-4296-A45B-07853FD74D57}
Microsoft_VC80_MFCLOC_x86_x64-->MsiExec.exe /I{1E9FC118-651D-4934-97BE-E53CAE5C7D45}
Microsoft_VC80_MFCLOC_x86-->MsiExec.exe /I{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}
Microsoft_VC90_ATL_x86_x64-->MsiExec.exe /I{8557397C-A42D-486F-97B3-A2CBC2372593}
Microsoft_VC90_ATL_x86-->MsiExec.exe /I{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}
Microsoft_VC90_CRT_x86_x64-->MsiExec.exe /I{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}
Microsoft_VC90_CRT_x86-->MsiExec.exe /I{08D2E121-7F6A-43EB-97FD-629B44903403}
Microsoft_VC90_MFC_x86_x64-->MsiExec.exe /I{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}
Microsoft_VC90_MFC_x86-->MsiExec.exe /I{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}
MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
MSXML 4.0 SP3 Parser (KB973685)-->MsiExec.exe /I{859DFA95-E4A6-48CD-B88E-A3E483E89B44}
MSXML 4.0 SP3 Parser-->MsiExec.exe /I{196467F1-C11F-4F76-858B-5812ADC83B94}
MSXML4 Parser-->MsiExec.exe /I{01501EBA-EC35-4F9F-8889-3BE346E5DA13}
MTA:SA v1.3-->C:\Program Files (x86)\Rockstar Games\GTA San Andreas\Uninstall.exe
Multimedia Card Reader-->C:\Program Files (x86)\InstallShield Installation Information\{DA41F9E9-B878-467F-95E7-27E4D1943533}\setup.exe -runfromtemp -l0x0409
Nástroj pro odesílání služby Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
PDF Settings CS5-->MsiExec.exe /I{A78FE97A-C0C8-49CE-89D0-EDD524A17392}
Polda V-->"C:\Windows\UNISTB32.EXE" /U "C:\Program Files (x86)\Polda 5\UNINST0.000" "C:\Program Files (x86)\Polda 5\UNINST1.000"
Posodobitev za Microsoft Office Excel 2007 Help (KB963678)-->msiexec /package {90120000-0016-0424-0000-0000000FF1CE} /uninstall {FD705E62-13B4-4BF5-A4B2-A7599309751B}
Posodobitev za Microsoft Office Powerpoint 2007 Help (KB963669)-->msiexec /package {90120000-0018-0424-0000-0000000FF1CE} /uninstall {045DC059-1CCC-47B9-BA35-713E269D33B8}
Posodobitev za Microsoft Office Word 2007 Help (KB963665)-->msiexec /package {90120000-001B-0424-0000-0000000FF1CE} /uninstall {AD1C31E7-4856-4887-9307-1ABDE0F2DF7C}
Realtek 8136 8168 8169 Ethernet Driver-->C:\Program Files (x86)\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe -runfromtemp -removeonly
Samsung Kies-->"C:\Program Files (x86)\InstallShield Installation Information\{758C8301-2696-4855-AF45-534B1200980A}\setup.exe" -runfromtemp -l0x0409  -removeonly
Samsung Kies-->MsiExec.exe /I{758C8301-2696-4855-AF45-534B1200980A}
SAMSUNG USB Driver for Mobile Phones-->C:\Program Files (x86)\Samsung\USB Drivers\Uninstall.exe
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {E720AD01-93D5-3E8E-BB8D-E4EF5AF4E5DD} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {FF811680-AECE-3F35-A98C-1B84B6E09168} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {5D45782A-1099-317E-ABCC-FF63D5B21386} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {E59B2174-E924-311F-8549-AD714C14664D} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {FDD13F1E-9C6B-311E-A0D9-D6E172FC28FF} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile CSY Language Pack (KB2518870)-->c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\ClientLP\setup.exe /uninstallpatch {E720AD01-93D5-3E8E-BB8D-E4EF5AF4E5DD} /parameterfolder ClientLP
Security Update for Microsoft Office 2007 suites (KB2596785) 32-Bit Edition-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {A0D5F849-D9D5-48ED-99D0-C74D7BFA6A09}
Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {293FB6BE-D3EB-4162-B522-F9108040B9FE}
Security Update for Microsoft Office 2007 suites (KB2598041) 32-Bit Edition-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {ABB5F56F-FC55-4C7E-9622-B8A1E670BAFC}
Security Update for Microsoft Office 2010 (KB2553091)-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{07CA44F3-F5B3-4D12-8C91-EDC5FE91D45C}" "1029" "0"
Security Update for Microsoft Office 2010 (KB2553096)-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{10802A6D-EDBF-4383-BCBD-9D5B32F56D35}" "1029" "0"
Security Update for Microsoft Office 2010 (KB2589320) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{DCE6D0BF-93E4-46C5-9A7C-F1EFF9707C02}" "1029" "0"
Security Update for Microsoft Office 2010 (KB2598039) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{01F2485C-FAEE-47E7-986E-B4F2FFC22D57}" "1029" "0"
Security Update for Microsoft Office PowerPoint 2007 (KB2596764) 32-Bit Edition-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {AEA16A27-0B97-4670-818F-A98D06EC0A6F}
Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {0EF0D4FB-BB23-4515-AAEA-1240AC2DA525}
Security Update for Microsoft Office Publisher 2007 (KB2596705) 32-Bit Edition-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {5A8732F0-C20F-4A9B-A2A9-66FE7A586C35}
Security Update for Microsoft PowerPoint 2010 (KB2553185) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{61461470-8168-4F4B-97B7-617AF354F028}" "1029" "0"
Security Update for Microsoft SharePoint Workspace 2010 (KB2566445)-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002A-0000-1000-0000000FF1CE}" "{337A3FB9-281D-4EC8-9CC1-7F6DDAC2359F}" "1029" "0"
Security Update for Microsoft Visio Viewer 2010 (KB2597170) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{011FE2F6-5427-4EC9-AE80-6B28E69781C1}" "1029" "0"
Skype™ 5.8-->MsiExec.exe /X{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}
SRS Premium Sound-->MsiExec.exe /X{4B6B024F-F6D4-4A7B-8ADA-F9F8370320CC}
UnLock Root 2.31-->C:\Program Files (x86)\Unlockroot\uninstunlockroot.exe
Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {29C7BE97-DE59-37A2-A687-2ADD5321948A} /parameterfolder Client
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {7D799A81-5661-3159-BF92-754161CED6E6} /parameterfolder Client
Update for Microsoft .NET Framework 4 Client Profile (KB2600217)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {4DFA8287-EA36-3469-99FE-F568FEC81653} /parameterfolder Client
Update for Microsoft Excel 2010 (KB2553439) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{3D1F379C-AA64-4823-90A4-A8DDD4B48C21}" "1029" "0"
Update for Microsoft Office 2007 Help for Common Features (KB963673)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {AB365889-0395-4FAD-B702-CA5985D53D42}
Update for Microsoft Office 2007 suites (KB2596651) 32-Bit Edition-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {B7873DF5-9E1C-45EE-8895-D29C6AE01202}
Update for Microsoft Office 2007 suites (KB2596789) 32-Bit Edition-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {C20964A7-5181-45E5-9E82-72F5D400DEBF}
Update for Microsoft Office 2007 suites (KB2598306) 32-Bit Edition-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {F1070E28-73A6-4C99-98DF-17F584E4C2B6}
Update for Microsoft Office 2010 (KB2494150)-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{3FCFD88F-4D13-4F38-8625-ABABEA7F61EA}" "1029" "0"
Update for Microsoft Office 2010 (KB2553065)-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{A8686D24-1E89-43A1-973E-05A258D2B3F8}" "1029" "0"
Update for Microsoft Office 2010 (KB2553181) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{48E1B6C2-7299-4F3F-AA63-42F0ACE55AA4}" "1029" "0"
Update for Microsoft Office 2010 (KB2553267) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{18B3CF2A-73F7-4716-B1AE-86D68726D408}" "1029" "0"
Update for Microsoft Office 2010 (KB2553270) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0405-0000-0000000FF1CE}" "{2AB2E0DF-DF6F-4051-895B-A09FA08AD387}" "1029" "0"
Update for Microsoft Office 2010 (KB2553270) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0407-0000-0000000FF1CE}" "{E6EAF5E1-5E2A-4E4F-847E-97B45179E45B}" "1029" "0"
Update for Microsoft Office 2010 (KB2553270) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0409-0000-0000000FF1CE}" "{17E7B9AB-2DD2-457D-8D8E-CD14ACA973FE}" "1029" "0"
Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{C8694FF0-8203-483B-A07A-2BC40433167D}" "1029" "0"
Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-006E-0405-0000-0000000FF1CE}" "{6F6FD0B7-2500-41ED-8425-A6AE5958EB52}" "1029" "0"
Update for Microsoft Office 2010 (KB2553385) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{28FAC187-7C0E-413A-B90A-76F19D0FBF30}" "1029" "0"
Update for Microsoft Office 2010 (KB2566458)-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{EFB525A0-E1C0-4E32-9968-FE401BC87363}" "1029" "0"
Update for Microsoft Office 2010 (KB2596964) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{ED31DE9A-3E13-4E2C-9106-E0D8AFFB9FA6}" "1029" "0"
Update for Microsoft Office 2010 (KB2597091) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002A-0000-1000-0000000FF1CE}" "{4D98EEEA-A31B-42FA-991A-F989594F4DA5}" "1029" "0"
Update for Microsoft Office 2010 (KB2597091) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{4D98EEEA-A31B-42FA-991A-F989594F4DA5}" "1029" "0"
Update for Microsoft Office Access 2007 Help (KB963663)-->msiexec /package {90120000-0015-0409-0000-0000000FF1CE} /uninstall {6B76A18A-AA1E-42AB-A7AD-6C84BBB43987}
Update for Microsoft Office Excel 2007 (KB2596596) 32-Bit Edition-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {567103D1-96CD-4B76-93B9-2681A187DEFF}
Update for Microsoft Office Excel 2007 Help (KB963678)-->msiexec /package {90120000-0016-0409-0000-0000000FF1CE} /uninstall {199DF7B6-169C-448C-B511-1054101BE9C9}
Update for Microsoft Office Outlook 2007 Help (KB963677)-->msiexec /package {90120000-001A-0409-0000-0000000FF1CE} /uninstall {0451F231-E3E3-4943-AB9F-58EB96171784}
Update for Microsoft Office Powerpoint 2007 Help (KB963669)-->msiexec /package {90120000-0018-0409-0000-0000000FF1CE} /uninstall {397B1D4F-ED7B-4ACA-A637-43B670843876}
Update for Microsoft Office Publisher 2007 Help (KB963667)-->msiexec /package {90120000-0019-0409-0000-0000000FF1CE} /uninstall {2E40DE55-B289-4C8B-8901-5D369B16814F}
Update for Microsoft Office Script Editor Help (KB963671)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {CD11C6A2-FFC6-4271-8EAB-79C3582F505C}
Update for Microsoft Office Word 2007 Help (KB963665)-->msiexec /package {90120000-001B-0409-0000-0000000FF1CE} /uninstall {80E762AA-C921-4839-9D7D-DB62A72C0726}
Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002A-0000-1000-0000000FF1CE}" "{BEBC2484-290C-46AD-9834-6DAD1FA80273}" "1029" "0"
Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{BEBC2484-290C-46AD-9834-6DAD1FA80273}" "1029" "0"
Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-00A1-0405-0000-0000000FF1CE}" "{3CF6665E-28CD-4EBC-B0C1-34BF7FB09C53}" "1029" "0"
Update for Microsoft Outlook 2010 (KB2553248) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001A-0405-0000-0000000FF1CE}" "{F6FA58FA-BB74-41AD-92F5-4ED4B8081D8D}" "1029" "0"
Update for Microsoft Outlook 2010 (KB2553248) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{38990592-F6A1-4A26-96C7-0600E36AE794}" "1029" "0"
Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001A-0405-0000-0000000FF1CE}" "{F5375654-36F8-42FE-A2C2-0826FDF22D42}" "1029" "0"
Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{BC6DFBFD-16DD-47E1-A7EF-2C062930FA4F}" "1029" "0"
USB 2.0 1.3M UVC WebCam-->C:\Windows\Uninstsxga.bat
VIA Platform Device Manager-->C:\PROGRA~2\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{20D4A895-748C-4D88-871C-FDB1695B0169} 
Windows Live Communications Platform-->MsiExec.exe /I{F69E83CF-B440-43F8-89E6-6EA80712109B}
Windows Live Essentials-->C:\Program Files (x86)\Windows Live\Installer\wlarp.exe
Windows Live Essentials-->MsiExec.exe /I{4EA44BA4-A708-4223-BC1A-22B6DA9E7D1C}
Windows Live Fotogalerie-->MsiExec.exe /X{A13DE9CB-8C84-4889-B114-C5A9661F844E}
Windows Live Mail-->MsiExec.exe /I{54FEAF1A-8F2A-44C1-95CA-5C1C21F4F934}
Windows Live Messenger-->MsiExec.exe /X{20D0CDB1-5F03-4A5D-86EB-7C218053B157}
Windows Live Sync-->MsiExec.exe /X{4B4451CE-D1E6-4BDE-B4B2-59F03BB83B7C}
Windows Live Writer-->MsiExec.exe /X{6E5EEE1B-3907-44C3-83BA-AD4B8CE40F76}
Windows Live Zabezpečení rodiny-->MsiExec.exe /X{D35D9E34-7B4A-44E3-A882-69A6C6088BC6}
WinFlash-->MsiExec.exe /X{8F21291E-0444-4B1D-B9F9-4370A73E346D}
WinRAR 4.10 (64-bit)-->C:\Program Files\WinRAR\uninstall.exe
Wireless Console 3-->MsiExec.exe /I{20FDF948-C8ED-4543-A539-F7F4AEF5AFA2}

======System event log======

Computer Name: WIN-PQSIHB85SK5
Event Code: 7040
Message: Režim spuštění služby Windows Search byl změněn z auto start na disabled.
Record Number: 1277
Source Name: Service Control Manager
Time Written: 20091017035549.198255-000
Event Type: Informace
User: Petr-Adrian-Dag\Administrator

Computer Name: WIN-PQSIHB85SK5
Event Code: 104
Message: Byl vymazán soubor protokolu Setup.
Record Number: 1276
Source Name: Microsoft-Windows-Eventlog
Time Written: 20091017035536.858645-000
Event Type: Informace
User: Petr-Adrian-Dag\Administrator

Computer Name: WIN-PQSIHB85SK5
Event Code: 104
Message: Byl vymazán soubor protokolu Application.
Record Number: 1275
Source Name: Microsoft-Windows-Eventlog
Time Written: 20091017035536.484244-000
Event Type: Informace
User: Petr-Adrian-Dag\Administrator

Computer Name: WIN-PQSIHB85SK5
Event Code: 7036
Message: Stav služby Windows Update byl změněn na: running
Record Number: 1274
Source Name: Service Control Manager
Time Written: 20091017035535.220643-000
Event Type: Informace
User: 

Computer Name: WIN-PQSIHB85SK5
Event Code: 104
Message: Byl vymazán soubor protokolu System.
Record Number: 1273
Source Name: Microsoft-Windows-Eventlog
Time Written: 20091017035536.312644-000
Event Type: Informace
User: Petr-Adrian-Dag\Administrator

=====Application event log=====

Computer Name: Petr-Adrian-Dag
Event Code: 4625
Message: Subsystém EventSystem zabraňuje vytváření duplicitních záznamů v protokolu událostí po dobu 86400 sekund.  Tuto dobu lze změnit pomocí hodnoty REG_DWORD s názvem SuppressDuplicateDuration v následujícím klíči registru: HKLM\Software\Microsoft\EventSystem\EventLog.
Record Number: 1056
Source Name: Microsoft-Windows-EventSystem
Time Written: 20120401220723.000000-000
Event Type: Informace
User: 

Computer Name: WIN-PQSIHB85SK5
Event Code: 1532
Message: Služba Profil uživatele byla zastavena.  


Record Number: 1055
Source Name: Microsoft-Windows-User Profiles Service
Time Written: 20091017035611.038273-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM

Computer Name: WIN-PQSIHB85SK5
Event Code: 1003
Message: Služba Windows Search byla spuštěna.

Record Number: 1054
Source Name: Microsoft-Windows-Search
Time Written: 20091017035553.000000-000
Event Type: Informace
User: 

Computer Name: WIN-PQSIHB85SK5
Event Code: 1013
Message: Služba Windows Search byla řádně zastavena.

Record Number: 1053
Source Name: Microsoft-Windows-Search
Time Written: 20091017035551.000000-000
Event Type: Informace
User: 

Computer Name: WIN-PQSIHB85SK5
Event Code: 103
Message: Windows (3096) Windows: Databázový stroj zastavil instanci (0).
Record Number: 1052
Source Name: ESENT
Time Written: 20091017035551.000000-000
Event Type: Informace
User: 

=====Security event log=====

Computer Name: WIN-PQSIHB85SK5
Event Code: 4672
Message: Novému přihlášení byla přiřazena zvláštní oprávnění.

Předmět:
	ID zabezpečení:		S-1-5-18
	Název účtu:		SYSTEM
	Doména účtu:		NT AUTHORITY
	ID přihlášení:		0x3e7

Oprávnění:		SeAssignPrimaryTokenPrivilege
			SeTcbPrivilege
			SeSecurityPrivilege
			SeTakeOwnershipPrivilege
			SeLoadDriverPrivilege
			SeBackupPrivilege
			SeRestorePrivilege
			SeDebugPrivilege
			SeAuditPrivilege
			SeSystemEnvironmentPrivilege
			SeImpersonatePrivilege
Record Number: 245
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20091017035552.926658-000
Event Type: Úspěšný audit
User: 

Computer Name: WIN-PQSIHB85SK5
Event Code: 4624
Message: Účet byl úspěšně přihlášen.

Předmět:
	ID zabezpečení:		S-1-5-18
	Název účtu:		WIN-PQSIHB85SK5$
	Doména účtu:		WORKGROUP
	ID přihlášení:		0x3e7

Typ přihlášení:			5

Nové přihlášení:
	ID zabezpečení:		S-1-5-18
	Název účtu:		SYSTEM
	Doména účtu:		NT AUTHORITY
	ID přihlášení:		0x3e7
	GUID přihlášení:		{00000000-0000-0000-0000-000000000000}

Informace o procesu:
	ID procesu:		0x1e0
	Název procesu:		C:\Windows\System32\services.exe

Informace o síti:
	Název pracovní stanice:	
	Adresa zdrojové sítě	-
	Zdrojový port:		-

Podrobné informace o ověření:
	Proces přihlášení:		Advapi  
	Balíček ověření:	Negotiate
	Přenosové služby:	-
	Název balíčku (pouze NTLM):	-
	Délka klíče:		0

Tato událost je generována po vytvoření relace přihlášení. Je generována v počítači, ke kterému byl získán přístup.

Pole s předmětem označují účet v místním systému, který požadoval přihlášení. Jedná se nejčastěji o službu, například službu serveru nebo místní proces, například Winlogon.exe nebo Services.exe.

Pole Typ přihlášení označuje, k jakému typu přihlášení došlo. Nejběžnější typy jsou 2 (interaktivní) a 3 (síť).

Pole Nové přihlášení označují účet, pro který bylo nové přihlášení vytvořeno, tj. účet, který byl přihlášen.

Pole Síť označují původ požadavku na vzdálené přihlášení. Název pracovní stanice není vždy k dispozici a v některých případech může být toto pole prázdné.

Pole s informacemi o ověření poskytují podrobné informace o tomto konkrétním požadavku na přihlášení.
	- GUID přihlášení je jednoznačný identifikátor, který je možné použít ke spojení této události s událostí KDC.
	- Přenosové služby označují, které pomocné služby se podílely na tomto požadavku na přihlášení.
	- Název balíčku označuje, který dílčí protokol z protokolů NTLM byl použit.
	- Délka klíče označuje délku generovaného klíče relace. Tato hodnota bude 0, pokud nebyl požadován žádný klíč relace.
Record Number: 244
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20091017035552.926658-000
Event Type: Úspěšný audit
User: 

Computer Name: WIN-PQSIHB85SK5
Event Code: 4738
Message: Byl změněn uživatelský účet.

Předmět:
	ID zabezpečení:		S-1-5-21-4230939595-2186652044-2116577817-500
	Název účtu:		Administrator
	Doména účtu:		WIN-PQSIHB85SK5
	ID přihlášení:		0x27d44

Cílový účet:
	ID zabezpečení:		S-1-5-21-4230939595-2186652044-2116577817-500
	Název účtu:		Administrator
	Doména účtu:		WIN-PQSIHB85SK5

Změněné atributy:
	Název účtu SAM:	-
	Zobrazovaný název:		-
	Zaregistrovaný název uživatele:	-
	Domovský adresář:		-
	Domovská jednotka:		-
	Cesta skriptu:		-
	Cesta profilu:		-
	Pracovní stanice uživatele:	-
	Poslední nastavení hesla:	-
	Vypršení platnosti účtu:		-
	ID primární skupiny:	-
	Povolené delegování:	-
	Původní hodnota UAC:		0x210
	Nová hodnota UAC:		0x211
	Řízení účtu uživatele:	
		Účet je zakázán.
	Parametry uživatele:	-
	Historie identifikátoru zabezpečení:		-
	Přihlašovací hodiny:		-

Další informace:
	Oprávnění:		-
Record Number: 243
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20091017035547.591453-000
Event Type: Úspěšný audit
User: 

Computer Name: WIN-PQSIHB85SK5
Event Code: 4725
Message: Uživatelský účet byl zakázán.

Předmět:
	ID zabezpečení:		S-1-5-21-4230939595-2186652044-2116577817-500
	Název účtu:		Administrator
	Doména účtu:		WIN-PQSIHB85SK5
	ID přihlášení:		0x27d44

Cílový účet:
	ID zabezpečení:		S-1-5-21-4230939595-2186652044-2116577817-500
	Název účtu:		Administrator
	Doména účtu:		WIN-PQSIHB85SK5
Record Number: 242
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20091017035547.591453-000
Event Type: Úspěšný audit
User: 

Computer Name: WIN-PQSIHB85SK5
Event Code: 1102
Message: Protokol auditu byl vymazán.
Předmět:
	ID zabezpečení:	S-1-5-21-4230939595-2186652044-2116577817-500
	Název účtu:	Administrator
	Název domény:	WIN-PQSIHB85SK5
	ID přihlášení:	0x27d44
Record Number: 241
Source Name: Microsoft-Windows-Eventlog
Time Written: 20091017035536.749445-000
Event Type: Úspěšný audit
User: 

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PROCESSOR_ARCHITECTURE"=AMD64
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"USERNAME"=SYSTEM
"windir"=%SystemRoot%
"PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\
"NUMBER_OF_PROCESSORS"=2
"PROCESSOR_LEVEL"=17
"PROCESSOR_IDENTIFIER"=AMD64 Family 17 Model 3 Stepping 1, AuthenticAMD
"PROCESSOR_REVISION"=0301
"configsetroot"=%SystemRoot%\ConfigSetRoot

-----------------EOF-----------------

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: RSIT - Vypíná se mi NTB prosím o kontrolu

#12 Příspěvek od motji »

:arrow: Spusťte combofix podle tohoto návodu
http://www.bleepingcomputer.com/combofi ... t-combofix
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Odpovědět