Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosim o kontrolu pc

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
dodo65
Návštěvník
Návštěvník
Příspěvky: 99
Registrován: 02 říj 2009 13:37

Re: Prosim o kontrolu pc

#16 Příspěvek od dodo65 »

Tak tu je z comba

ComboFix 09-12-11.04 - Dodo . 12. 2009 11:09:15.2.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.421.1051.18.3070.1644 [GMT 0:00]
Running from: c:\users\Dodo\Desktop\ComboFix.exe
Command switches used :: c:\users\Dodo\Desktop\CFScript.txt
SP: Spybot - Search and Destroy *enabled* (Updated) {ED588FAF-1B8F-43B4-ACA8-8E3C85DADBE9}
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}

FILE ::
"c:\Autorun.inf"
"D:\Autorun.inf"
"E:\Autorun.inf"
"F:\Autorun.inf"
"G:\Autorun.inf"
"H:\Autorun.inf"
"I:\Autorun.inf"
"K:\Autorun.inf"
"L:\Autorun.inf"
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\$recycle.bin
d:\$recycle.bin

.
((((((((((((((((((((((((( Files Created from 2009-11-13 to 2009-12-13 )))))))))))))))))))))))))))))))
.

2009-12-13 11:14 . 2009-12-13 11:14 -------- d-----w- c:\users\Dodo\AppData\Local\temp
2009-12-13 11:14 . 2009-12-13 11:14 -------- d-----w- c:\users\Public\AppData\Local\temp
2009-12-13 11:14 . 2009-12-13 11:14 -------- d-----w- c:\users\Default\AppData\Local\temp
2009-12-13 11:07 . 2009-12-13 11:07 -------- d-----w- C:\32788R22FWJFW
2009-12-12 10:07 . 2009-12-12 10:07 56 ---ha-w- c:\windows\system32\ezsidmv.dat
2009-12-11 18:43 . 2009-12-11 18:43 -------- d-----w- c:\program files\trend micro
2009-12-11 18:43 . 2009-12-11 18:43 -------- d-----w- C:\rsit
2009-12-11 17:48 . 2009-12-11 17:48 -------- d-----w- c:\users\Dodo\AppData\Roaming\CyberLink
2009-12-11 17:48 . 2009-12-11 17:48 -------- d-----w- c:\users\Public\CyberLink
2009-12-11 08:04 . 2009-12-11 08:04 -------- d-----w- c:\users\Dodo\AppData\Local\Power2Go
2009-12-10 19:21 . 2009-12-10 19:21 -------- d-----w- c:\programdata\CyberLink
2009-12-10 19:21 . 2008-07-24 11:38 29992 ----a-w- c:\programdata\CyberLink\Power2Go\P2GoGadget.dll
2009-12-10 19:20 . 2009-12-10 19:20 36864 ----a-w- c:\programdata\Temp\{40BF1E83-20EB-11D8-97C5-0009C5020658}\PostBuild.exe
2009-12-10 19:19 . 2009-12-10 19:19 -------- d-----w- c:\program files\Common Files\LightScribe
2009-12-10 19:19 . 2007-03-22 21:28 1053232 ------w- c:\windows\system32\MFC71u.dll
2009-12-10 19:18 . 2009-12-10 19:22 -------- d-----w- c:\program files\CyberLink
2009-12-10 19:18 . 2009-12-10 19:17 53319 ----a-w- c:\programdata\Temp\{5DB1DF0C-AABC-4362-8A6D-CEFDFB036E41}\PostBuild.exe
2009-12-09 08:39 . 2009-11-09 12:31 24064 ----a-w- c:\windows\system32\nshhttp.dll
2009-12-09 08:39 . 2009-11-09 10:36 411648 ----a-w- c:\windows\system32\drivers\http.sys
2009-12-09 08:39 . 2009-11-09 12:30 30720 ----a-w- c:\windows\system32\httpapi.dll
2009-12-09 08:04 . 2009-08-24 11:36 377344 ----a-w- c:\windows\system32\winhttp.dll
2009-12-09 08:04 . 2009-10-27 14:11 834048 ----a-w- c:\windows\system32\wininet.dll
2009-12-09 08:03 . 2009-10-27 13:16 78336 ----a-w- c:\windows\system32\ieencode.dll
2009-12-09 08:03 . 2009-10-07 11:36 243712 ----a-w- c:\windows\system32\rastls.dll
2009-12-03 10:47 . 2009-12-03 11:02 -------- d-----w- c:\users\Dodo\AppData\Local\Adobe
2009-12-03 10:45 . 2009-12-03 10:45 -------- d-----w- c:\program files\Common Files\Adobe
2009-11-27 08:09 . 2009-10-29 09:17 2048 ----a-w- c:\windows\system32\tzres.dll
2009-11-25 21:49 . 2009-08-11 16:44 1401856 ----a-w- c:\windows\system32\msxml6.dll
2009-11-25 21:49 . 2009-08-11 16:44 1248768 ----a-w- c:\windows\system32\msxml3.dll
2009-11-20 11:28 . 2009-11-20 11:28 -------- d-----w- c:\programdata\Martau
2009-11-16 18:36 . 2009-11-16 18:36 -------- d-----w- c:\program files\Windows Portable Devices
2009-11-16 18:33 . 2009-10-01 01:02 30208 ----a-w- c:\windows\system32\WPDShextAutoplay.exe
2009-11-16 18:33 . 2009-10-01 01:02 31232 ----a-w- c:\windows\system32\BthMtpContextHandler.dll
2009-11-16 18:33 . 2009-10-01 01:01 81920 ----a-w- c:\windows\system32\wpdbusenum.dll
2009-11-16 18:33 . 2009-10-01 01:01 60928 ----a-w- c:\windows\system32\PortableDeviceConnectApi.dll
2009-11-16 18:33 . 2009-10-01 01:02 2537472 ----a-w- c:\windows\system32\wpdshext.dll
2009-11-16 18:33 . 2009-10-01 01:02 334848 ----a-w- c:\windows\system32\PortableDeviceApi.dll
2009-11-16 18:33 . 2009-10-01 01:02 87552 ----a-w- c:\windows\system32\WPDShServiceObj.dll
2009-11-16 18:33 . 2009-10-01 01:01 546816 ----a-w- c:\windows\system32\wpd_ci.dll
2009-11-16 18:33 . 2009-10-01 01:01 160256 ----a-w- c:\windows\system32\PortableDeviceTypes.dll
2009-11-16 18:33 . 2009-10-01 01:01 350208 ----a-w- c:\windows\system32\WPDSp.dll
2009-11-16 18:33 . 2009-10-01 01:01 196608 ----a-w- c:\windows\system32\PortableDeviceWMDRM.dll
2009-11-16 18:33 . 2009-10-01 01:01 100864 ----a-w- c:\windows\system32\PortableDeviceClassExtension.dll
2009-11-16 18:32 . 2009-10-08 21:07 4096 ----a-w- c:\windows\system32\oleaccrc.dll
2009-11-16 18:32 . 2009-10-08 21:08 555520 ----a-w- c:\windows\system32\UIAutomationCore.dll
2009-11-16 18:32 . 2009-10-08 21:08 234496 ----a-w- c:\windows\system32\oleacc.dll
2009-11-15 11:01 . 2009-11-15 11:01 -------- d-----w- c:\windows\system32\ca-ES
2009-11-15 11:01 . 2009-11-15 11:01 -------- d-----w- c:\windows\system32\eu-ES
2009-11-15 11:01 . 2009-11-15 11:01 -------- d-----w- c:\windows\system32\vi-VN
2009-11-15 09:06 . 2009-11-15 09:06 -------- d-----w- c:\windows\system32\EventProviders
2009-11-15 08:57 . 2009-11-15 08:57 -------- d-----w- c:\windows\system32\ErrorLogs
2009-11-15 08:41 . 2009-04-11 05:03 12240896 ----a-w- c:\windows\system32\NlsLexicons0007.dll
2009-11-15 08:41 . 2009-04-11 06:28 1081344 ----a-w- c:\windows\system32\SLCExt.dll
2009-11-15 08:41 . 2009-04-11 06:27 3408896 ----a-w- c:\windows\system32\SLsvc.exe
2009-11-15 08:41 . 2009-04-11 06:28 2134528 ----a-w- c:\windows\system32\FunctionDiscoveryFolder.dll
2009-11-15 08:41 . 2009-04-11 06:27 65536 ----a-w- c:\windows\system32\DevicePairingWizard.exe
2009-11-15 08:41 . 2009-04-11 05:03 2644480 ----a-w- c:\windows\system32\NlsLexicons0009.dll
2009-11-15 08:41 . 2009-04-11 06:28 1480704 ----a-w- c:\windows\system32\mssrch.dll
2009-11-15 08:38 . 2009-04-11 06:28 705536 ----a-w- c:\windows\system32\SmiEngine.dll
2009-11-15 08:38 . 2009-04-11 06:28 218624 ----a-w- c:\windows\system32\wdscore.dll
2009-11-15 08:38 . 2009-04-11 06:27 130560 ----a-w- c:\windows\system32\PkgMgr.exe
2009-11-15 08:38 . 2009-04-11 06:28 247808 ----a-w- c:\windows\system32\drvstore.dll
2009-11-14 16:27 . 2001-09-20 23:00 67584 ------w- c:\windows\system32\WNASPINT.DLL
2009-11-14 16:27 . 1999-12-07 05:00 565760 ----a-w- c:\windows\system32\msvcp50.dll
2009-11-14 16:27 . 1996-08-20 20:37 15840 ------w- c:\windows\system32\Machnm1.exe
2009-11-14 16:26 . 2009-11-14 16:26 -------- d-----w- c:\program files\Common Files\InstallShield
2009-11-14 15:45 . 2003-01-25 22:32 523264 ----a-w- c:\windows\system32\AviProcessor.dll
2009-11-14 15:45 . 2002-11-05 08:40 42496 ----a-w- c:\windows\system32\picn20.dll
2009-11-14 15:45 . 2001-07-18 06:02 98816 ----a-w- c:\windows\system32\FGWVB32.DLL
2009-11-14 15:45 . 2001-07-17 12:30 1718576 ------w- c:\windows\system32\gdiplus.dll
2009-11-14 15:45 . 2000-11-22 14:38 532480 ----a-w- c:\windows\system32\imagx5.dll
2009-11-14 15:45 . 2000-11-06 12:18 507904 ----a-w- c:\windows\system32\imagr5.dll
2009-11-14 15:45 . 2000-10-20 11:21 271216 ----a-w- c:\windows\system32\ImagXpr5.dll
2009-11-14 15:45 . 2003-03-13 12:51 51200 ----a-w- c:\windows\system32\camcodec.dll
2009-11-14 15:45 . 2000-09-20 00:14 114688 ----a-w- c:\windows\system32\avizlib.dll
2009-11-14 15:45 . 2000-08-23 17:00 33280 ----a-w- c:\windows\system32\Huffyuv.dll
2009-11-13 11:18 . 2009-08-07 02:24 44768 ----a-w- c:\windows\system32\wups2.dll
2009-11-13 11:18 . 2009-08-07 02:24 53472 ----a-w- c:\windows\system32\wuauclt.exe
2009-11-13 11:18 . 2009-08-07 01:45 2421760 ----a-w- c:\windows\system32\wucltux.dll
2009-11-13 11:18 . 2009-08-07 02:23 1929952 ----a-w- c:\windows\system32\wuaueng.dll
2009-11-13 11:17 . 2009-08-07 02:24 35552 ----a-w- c:\windows\system32\wups.dll
2009-11-13 11:17 . 2009-08-07 02:23 575704 ----a-w- c:\windows\system32\wuapi.dll
2009-11-13 11:17 . 2009-08-07 01:44 87552 ----a-w- c:\windows\system32\wudriver.dll
2009-11-13 11:17 . 2009-08-06 19:23 171608 ----a-w- c:\windows\system32\wuwebv.dll
2009-11-13 11:17 . 2009-08-06 18:44 33792 ----a-w- c:\windows\system32\wuapp.exe

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-12-13 11:14 . 2009-11-10 17:06 -------- d-----w- c:\users\Dodo\AppData\Roaming\Skype
2009-12-13 10:39 . 2009-11-10 17:14 -------- d-----w- c:\users\Dodo\AppData\Roaming\skypePM
2009-12-12 19:13 . 2009-11-10 22:13 12 ----a-w- c:\windows\bthservsdp.dat
2009-12-12 09:38 . 2009-11-10 17:25 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2009-12-10 19:25 . 2009-11-10 15:42 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-12-09 18:38 . 2009-11-10 17:41 -------- d-----w- c:\program files\BS_Player
2009-12-09 08:42 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail
2009-11-24 23:54 . 2009-11-10 14:44 1280480 ----a-w- c:\windows\system32\aswBoot.exe
2009-11-24 23:49 . 2009-11-10 14:44 48560 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2009-11-24 23:48 . 2009-11-10 14:44 23120 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2009-11-24 23:47 . 2009-11-10 14:44 97480 ----a-w- c:\windows\system32\AvastSS.scr
2009-11-16 18:36 . 2006-11-02 10:25 665600 ----a-w- c:\windows\inf\drvindex.dat
2009-11-16 18:36 . 2009-11-16 18:36 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_07_00.Wdf
2009-11-15 11:01 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Sidebar
2009-11-15 11:01 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Calendar
2009-11-15 11:01 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Photo Gallery
2009-11-15 11:01 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Collaboration
2009-11-15 11:01 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Defender
2009-11-12 10:10 . 2009-11-12 10:10 -------- dc-h--w- c:\programdata\{A613CA96-150A-4A1D-90CE-67F81379DF8C}
2009-11-11 20:26 . 2009-11-11 20:26 -------- d-----w- c:\program files\MSXML 4.0
2009-11-11 19:15 . 2009-11-10 14:37 100256 ----a-w- c:\users\Dodo\AppData\Local\GDIPFONTCACHEV1.DAT
2009-11-11 17:11 . 2009-11-11 17:11 -------- d-----w- c:\program files\Total Video Converter
2009-11-11 15:56 . 2009-11-11 15:56 -------- d-----w- c:\programdata\Apple Computer
2009-11-11 15:56 . 2009-11-11 15:54 -------- d-----w- c:\users\Dodo\AppData\Roaming\Vso
2009-11-11 15:54 . 2009-11-11 15:54 81920 ----a-w- c:\users\Dodo\AppData\Roaming\ezpinst.exe
2009-11-11 15:54 . 2009-11-11 15:54 81920 ----a-w- c:\users\Dodo\AppData\Roaming\ezpinst.exe
2009-11-11 15:54 . 2009-11-11 15:54 47360 ----a-w- c:\windows\system32\drivers\pcouffin.sys
2009-11-11 15:54 . 2009-11-11 15:54 47360 ----a-w- c:\users\Dodo\AppData\Roaming\pcouffin.sys
2009-11-11 15:54 . 2009-11-11 15:54 47360 ----a-w- c:\users\Dodo\AppData\Roaming\pcouffin.sys
2009-11-11 13:30 . 2009-11-10 17:40 -------- d-----w- c:\users\Dodo\AppData\Roaming\Ahead
2009-11-11 11:57 . 2009-11-10 15:43 -------- d-----w- c:\program files\Atheros
2009-11-11 11:56 . 2009-11-11 11:54 -------- d--h--w- c:\program files\Temp
2009-11-11 11:54 . 2009-11-11 11:54 319456 ----a-w- c:\windows\DIFxAPI.dll
2009-11-11 11:54 . 2009-11-11 11:54 -------- d-----w- c:\program files\Realtek
2009-11-11 11:47 . 2009-11-11 11:47 -------- d-----w- c:\program files\Driver-Soft
2009-11-11 10:41 . 2009-11-11 10:40 -------- d-----w- c:\programdata\{D5ABFFAD-D592-4F98-B02B-587125B4801F}
2009-11-11 10:35 . 2009-11-11 10:35 -------- d-----w- c:\users\Dodo\AppData\Roaming\uniblue
2009-11-11 09:55 . 2009-11-11 09:46 -------- d-----w- c:\programdata\Microsoft Help
2009-11-11 09:52 . 2009-11-11 09:51 -------- d-----w- c:\program files\Microsoft Works
2009-11-11 09:51 . 2006-11-02 12:37 -------- d-----w- c:\program files\MSBuild
2009-11-11 09:50 . 2009-11-11 09:50 -------- d-----w- c:\program files\Microsoft.NET
2009-11-11 09:48 . 2009-11-11 09:48 -------- d-----w- c:\program files\Microsoft Visual Studio 8
2009-11-10 22:29 . 2009-11-10 22:29 0 ----a-w- c:\windows\ativpsrm.bin
2009-11-10 22:27 . 2009-11-10 22:27 -------- d-----w- c:\programdata\ATI
2009-11-10 22:26 . 2009-11-10 22:25 -------- d-----w- c:\program files\ATK
2009-11-10 22:17 . 2009-11-10 22:14 -------- d-----w- c:\program files\ATI Technologies
2009-11-10 22:14 . 2009-11-10 22:14 -------- d-----w- c:\program files\ATI
2009-11-10 18:17 . 2009-11-10 17:41 -------- d-----w- c:\users\Dodo\AppData\Roaming\BSplayer
2009-11-10 17:41 . 2009-11-10 17:41 -------- d-----w- c:\program files\Conduit
2009-11-10 17:41 . 2009-11-10 17:41 -------- d-----w- c:\users\Dodo\AppData\Roaming\BSplayer Pro
2009-11-10 17:40 . 2009-11-10 17:40 -------- d-----w- c:\programdata\Ahead
2009-11-10 17:39 . 2009-11-10 17:37 -------- d-----w- c:\program files\Common Files\Ahead
2009-11-10 17:37 . 2009-11-10 17:37 -------- d-----w- c:\programdata\Nero
2009-11-10 17:37 . 2009-11-10 17:37 -------- d-----w- c:\program files\Nero
2009-11-10 17:28 . 2009-11-10 17:28 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdRapi_01_00_00.Wdf
2009-11-10 17:17 . 2009-11-10 17:17 -------- d-----w- c:\users\Dodo\AppData\Roaming\Malwarebytes
2009-11-10 17:16 . 2009-11-10 17:16 -------- d-----w- c:\programdata\Malwarebytes
2009-11-10 17:01 . 2009-11-10 17:01 -------- d-----w- c:\program files\Skype
2009-11-10 17:01 . 2009-11-10 17:01 -------- d-----w- c:\programdata\Skype
2009-11-10 17:01 . 2009-11-10 17:01 -------- d-----w- c:\program files\Common Files\Skype
2009-11-10 15:43 . 2009-11-10 15:42 -------- d-----w- c:\programdata\Atheros
2009-11-10 15:42 . 2009-11-10 15:42 -------- d-----w- c:\program files\Cisco
2009-11-10 15:42 . 2009-11-10 15:42 -------- d-----w- c:\users\Dodo\AppData\Roaming\InstallShield
2009-11-10 14:44 . 2009-11-10 14:44 -------- d-----w- c:\program files\Alwil Software
2009-11-10 14:38 . 2009-11-10 14:38 -------- d-----w- c:\users\Dodo\AppData\Roaming\ATI
2009-11-02 20:42 . 2009-11-10 17:04 195456 ------w- c:\windows\system32\MpSigStub.exe
2009-10-07 16:56 . 2009-11-10 17:00 872960 ----a-w- c:\users\Dodo\AppData\Roaming\Mozilla\Firefox\Profiles\pec2pk04.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\frozen.dll
2009-10-07 16:56 . 2009-11-10 17:00 43008 ----a-w- c:\users\Dodo\AppData\Roaming\Mozilla\Firefox\Profiles\pec2pk04.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\googletoolbarloader.dll
2009-10-07 16:56 . 2009-11-10 17:00 340480 ----a-w- c:\users\Dodo\AppData\Roaming\Mozilla\Firefox\Profiles\pec2pk04.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\libraries\googletoolbar-ff2.dll
2009-10-07 16:55 . 2009-11-10 17:00 346624 ----a-w- c:\users\Dodo\AppData\Roaming\Mozilla\Firefox\Profiles\pec2pk04.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\libraries\googletoolbar-ff3.dll
2009-09-30 14:53 . 2009-11-10 15:43 1184768 ----a-w- c:\windows\system32\drivers\athr.sys
2009-09-30 14:53 . 2009-11-10 15:43 1184768 ----a-w- c:\windows\system32\athr.sys
2009-09-25 10:34 . 2009-11-11 11:54 2968608 ----a-w- c:\windows\system32\RtkHDMI.dll
2009-09-25 10:34 . 2009-11-11 11:54 53280 ----a-w- c:\windows\system32\RHCoInst.dll
2009-09-25 10:34 . 2009-11-11 11:54 1352224 ----a-w- c:\windows\system32\RHDMIExt.dll
2009-09-25 10:13 . 2009-11-11 11:54 159232 ----a-w- c:\windows\system32\drivers\RtHDMIV.sys
2009-09-25 02:10 . 2009-11-16 18:34 974848 ----a-w- c:\windows\system32\WindowsCodecs.dll
2009-09-25 02:07 . 2009-11-16 18:34 189440 ----a-w- c:\windows\system32\WindowsCodecsExt.dll
2009-09-25 02:04 . 2009-11-16 18:34 321024 ----a-w- c:\windows\system32\PhotoMetadataHandler.dll
2009-09-25 01:49 . 2009-11-16 18:34 1554432 ----a-w- c:\windows\system32\xpsservices.dll
2009-09-25 01:48 . 2009-11-16 18:34 351232 ----a-w- c:\windows\system32\XpsPrint.dll
2009-09-25 01:38 . 2009-11-16 18:34 847360 ----a-w- c:\windows\system32\OpcServices.dll
2009-09-25 01:36 . 2009-11-16 18:34 280064 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2009-09-25 01:35 . 2009-11-16 18:34 135680 ----a-w- c:\windows\system32\XpsRasterService.dll
2009-09-25 01:33 . 2009-11-16 18:34 195584 ----a-w- c:\windows\system32\dxdiagn.dll
2009-09-25 01:33 . 2009-11-16 18:34 829440 ----a-w- c:\windows\system32\d3d10warp.dll
2009-09-25 01:33 . 2009-11-16 18:34 369664 ----a-w- c:\windows\system32\WMPhoto.dll
2009-09-25 01:32 . 2009-11-16 18:34 252928 ----a-w- c:\windows\system32\dxdiag.exe
2009-09-25 01:31 . 2009-11-16 18:34 519680 ----a-w- c:\windows\system32\d3d11.dll
2009-09-25 01:31 . 2009-11-16 18:34 486912 ----a-w- c:\windows\system32\d3d10level9.dll
2009-09-25 01:31 . 2009-11-16 18:34 161280 ----a-w- c:\windows\system32\d3d10_1.dll
2009-09-25 01:31 . 2009-11-16 18:34 218112 ----a-w- c:\windows\system32\d3d10_1core.dll
2009-09-25 01:31 . 2009-11-16 18:34 1030144 ----a-w- c:\windows\system32\d3d10.dll
2009-09-25 01:31 . 2009-11-16 18:34 828928 ----a-w- c:\windows\system32\d2d1.dll
2009-09-25 01:30 . 2009-11-16 18:34 481792 ----a-w- c:\windows\system32\dxgi.dll
2009-09-25 01:30 . 2009-11-16 18:34 190464 ----a-w- c:\windows\system32\d3d10core.dll
2009-09-25 01:27 . 2009-11-16 18:34 634880 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2009-09-25 01:27 . 2009-11-16 18:34 37888 ----a-w- c:\windows\system32\cdd.dll
2009-09-25 01:27 . 2009-11-16 18:34 793088 ----a-w- c:\windows\system32\FntCache.dll
2009-09-25 01:27 . 2009-11-16 18:34 1064448 ----a-w- c:\windows\system32\DWrite.dll
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}"= "c:\program files\BS_Player\tbBS_P.dll" [2009-07-02 2215960]

[HKEY_CLASSES_ROOT\clsid\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
2009-07-02 10:18 2215960 ----a-w- c:\program files\BS_Player\tbBS_P.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}"= "c:\program files\BS_Player\tbBS_P.dll" [2009-07-02 2215960]

[HKEY_CLASSES_ROOT\clsid\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}"= "c:\program files\BS_Player\tbBS_P.dll" [2009-07-02 2215960]

[HKEY_CLASSES_ROOT\clsid\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-04-11 1233920]
"SpybotSD TeaTimer"="d:\program files\Spybot - Search & Destroy\TeaTimer.exe" [2009-03-05 2260480]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2007-06-27 152872]
"LightScribe Control Panel"="c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe" [2008-06-09 2363392]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-21 1008184]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2008-08-30 61440]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-11-24 81000]
"NeroFilterCheck"="c:\program files\Common Files\Ahead\Lib\NeroCheck.exe" [2007-03-01 153136]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-27 31016]
"Windows Mobile Device Center"="c:\windows\WindowsMobile\wmdc.exe" [2007-05-31 648072]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-10-03 35696]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2009-09-04 935288]
"CLMLServer"="c:\program files\CyberLink\Power2Go\CLMLSvc.exe" [2008-07-18 104936]
"P2Go_Menu"="c:\program files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" [2008-06-13 210216]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UniblueSpeedUpMyPC]
2009-04-29 09:45 614696 ----a-w- d:\program files\Uniblue\Uniblue\SpeedUpMyPC\Launcher.exe

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"VistaSp2"=hex(b):1d,1e,b7,72,e3,65,ca,01

R1 aswSP;avast! Self Protection;c:\windows\System32\drivers\aswSP.sys [10. 11. 2009 14:44 114768]
R2 aswFsBlk;aswFsBlk;c:\windows\System32\drivers\aswFsBlk.sys [10. 11. 2009 14:44 20560]
R2 aswMonFlt;aswMonFlt;c:\windows\System32\drivers\aswMonFlt.sys [10. 11. 2009 14:44 53328]
R2 SBSDWSCService;SBSD Security Center Service;d:\program files\Spybot - Search & Destroy\SDWinSec.exe [10. 11. 2009 17:25 1153368]
R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver;c:\windows\System32\drivers\SiSGB6.sys [10. 11. 2009 22:54 48128]
S3 FontCache;Windows Font Cache Service;c:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [21. 1. 2008 2:23 21504]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
WindowsMobile REG_MULTI_SZ wcescomm rapimgr
LocalServiceRestricted REG_MULTI_SZ WcesComm RapiMgr
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache

[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2008-06-09 10:14 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
------- Supplementary Scan -------
.
uStart Page = about:blank
IE: E&xportovať do programu Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
FF - ProfilePath - c:\users\Dodo\AppData\Roaming\Mozilla\Firefox\Profiles\pec2pk04.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT1750559&SearchSource=3&q={searchTerms}
FF - prefs.js: browser.search.selectedEngine - BS Player Customized Web Search
FF - prefs.js: browser.startup.homepage - hxxp://www.google.sk/
FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT1750559&SearchSource=2&q=
FF - component: c:\users\Dodo\AppData\Roaming\Mozilla\Firefox\Profiles\pec2pk04.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\frozen.dll
FF - plugin: d:\program files\Magic Video Converter\codec\real\browser\plugins\nppl3260.dll
FF - plugin: d:\program files\Magic Video Converter\codec\real\browser\plugins\nprpjplug.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

---- FIREFOX POLICIES ----
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl3.rsa_seed_sha", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".sk");
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-12-13 11:14
Windows 6.0.6002 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
Completion time: 2009-12-13 11:16:38
ComboFix-quarantined-files.txt 2009-12-13 11:16
ComboFix2.txt 2009-12-12 09:55

Pre-Run: 191 500 709 888 bytes free
Post-Run: 191 459 667 968 bytes free

- - End Of File - - 06D1CCF54450DD31A697198C7FE9EE02

dodo65
Návštěvník
Návštěvník
Příspěvky: 99
Registrován: 02 říj 2009 13:37

Re: Prosim o kontrolu pc

#17 Příspěvek od dodo65 »

Tu je z usbfixu


############################## | UsbFix V6.062 |

User : Dodo (Administrators) # DODO-PC
Update on 12/12/2009 by Chiquitine29, C_XX & Chimay8
Start at: 11:26:24 | 13. 12. 2009
Website : http://pagesperso-orange.fr/NosTools/index.html
Contact : FindyKill.Contact@gmail.com

Intel(R) Core(TM)2 Duo CPU T5870 @ 2.00GHz
Microsoft® Windows Vista™ Home Premium (6.0.6002 32-bit) # Service Pack 2
Internet Explorer 7.0.6002.18005
Windows Firewall Status : Enabled

C:\ -> Local Fixed Disk # 232,88 Go (178,46 Go free) [VistaOS] # NTFS
D:\ -> Local Fixed Disk # 221,16 Go (128,74 Go free) [DATA] # NTFS
E:\ -> CD-ROM Disc
F:\ -> Removable Disk # 15,05 Go (12,5 Go free) [CORSAIR] # FAT32

############################## | Active processes |

C:\Windows\System32\smss.exe 384
C:\Windows\system32\csrss.exe 524
C:\Windows\system32\wininit.exe 588
C:\Windows\system32\csrss.exe 600
C:\Windows\system32\services.exe 632
C:\Windows\system32\lsass.exe 644
C:\Windows\system32\lsm.exe 656
C:\Windows\system32\winlogon.exe 760
C:\Windows\system32\svchost.exe 840
C:\Windows\system32\svchost.exe 912
C:\Windows\System32\svchost.exe 956
C:\Windows\system32\Ati2evxx.exe 1036
C:\Windows\System32\svchost.exe 1064
C:\Windows\System32\svchost.exe 1128
C:\Windows\system32\svchost.exe 1148
C:\Windows\system32\SLsvc.exe 1260
C:\Windows\system32\svchost.exe 1300
C:\Windows\system32\Ati2evxx.exe 1452
C:\Windows\system32\svchost.exe 1516
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe 1664
C:\Windows\system32\WLANExt.exe 1672
C:\Program Files\Alwil Software\Avast4\ashServ.exe 1688
C:\Windows\system32\Dwm.exe 1800
C:\Windows\Explorer.EXE 1848
C:\Program Files\Windows Defender\MSASCui.exe 2000
C:\Program Files\Alwil Software\Avast4\ashDisp.exe 2028
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe 2044
C:\Windows\WindowsMobile\wmdc.exe 200
C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe 276
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe 396
C:\Program Files\Windows Sidebar\sidebar.exe 512
D:\Program files\Spybot - Search & Destroy\TeaTimer.exe 732
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe 896
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe 1272
C:\Windows\system32\taskeng.exe 2072
C:\Windows\System32\spoolsv.exe 2108
C:\Windows\system32\svchost.exe 2136
C:\Windows\system32\taskeng.exe 2368
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe 2920
C:\Windows\system32\svchost.exe 2976
C:\Program Files\Common Files\LightScribe\LSSrvc.exe 3056
C:\Windows\system32\svchost.exe 3168
C:\Windows\System32\svchost.exe 3220
C:\Windows\system32\SearchIndexer.exe 3244
D:\Program files\Spybot - Search & Destroy\SDWinSec.exe 3472
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe 3852
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe 3876
C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe 3912
C:\Windows\system32\svchost.exe 3948
C:\Windows\servicing\TrustedInstaller.exe 4016
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe 1988
C:\Program Files\Mozilla Firefox\firefox.exe 1996
C:\Windows\system32\wbem\wmiprvse.exe 2972
C:\Windows\system32\wbem\wmiprvse.exe 940
C:\Windows\system32\conime.exe 1124
C:\Windows\System32\mobsync.exe 3164
C:\Windows\system32\WUDFHost.exe 1424

################## | Files # Infected Folders |


################## | Registry # Infected Keys |

[HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System] "DisableRegistryTools"
[HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] "NoDrives"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] "NoDrives"

################## | Registry # Mountpoints2 |


################## | Cracks / Keygens / Serials |

"D:\Programy\Corsair\Loft\Lavoft\cracked\lavalicense.dll"
06. 05. 2009 10:01 |Size 643435 |Crc32 9a274dd7 |Md5 989393221c9a8a037d74bd14333adeff

"D:\Programy\Loaris Trojan Remover 1.1.8.7\keygen\keygen.exe"
06. 09. 2009 00:46 |Size 308224 |Crc32 cc5a3bb1 |Md5 5453de53608d3c6eedafdc440d06aa40

"D:\Programy\Loft\Lavoft\cracked\lavalicense.dll"
06. 05. 2009 10:01 |Size 643435 |Crc32 9a274dd7 |Md5 989393221c9a8a037d74bd14333adeff

"D:\Programy\Microsoft Office 2007 Enterprise SK_88misho88_WarXtreme.com\Bonus\keygen.exe"
26. 12. 2006 16:01 |Size 237056 |Crc32 a52ec485 |Md5 a357c09f259edac1920375cb2df01545

"D:\Programy\Nero 7\Nero_7_Keygen.exe"
21. 04. 2007 21:09 |Size 118784 |Crc32 52ce3b97 |Md5 a2fcfa38b381163e372a3f195541a848

"D:\Programy\RegCure 1.5.1.3\CRACK\RegCure.exe"
25. 12. 2008 03:11 |Size 12031304 |Crc32 6b2f76eb |Md5 3786e44536b19807ab8b3160a9c9fcd9

"D:\Programy\Total.Video.Converter.3.20.090104+Serial+CZ\EMTotalVideoConverter320CZ.exe"
12. 01. 2009 09:06 |Size 275298 |Crc32 79007adf |Md5 2d739b80ebfe0ecb4b3277730984bea1

"D:\Htc\SPB\SPB DVD mobile 1.1.0\spb.mobile.dvd.1.1.keygen-tsrh.zip"
-> Contain : spbmobile.dvd.keygen.tsrh.exe

"D:\Programy\Karaoke\Karaoke-DART_Karaoke_Studio_CDG_v1.3.5cdgpkeygenORiON.zip"
-> Contain : orndrtkg.exe 155648 DFLT-N 3% 150272 02-11-2002 04:41:22 50f15bc0

"D:\Programy\Driver Genius 2007 Professional Edition 7.1.622\KEYGEN.rar"
-> contain : KEYGEN\keygen.exe


################## | ! End of report # UsbFix V6.062 ! |

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Prosim o kontrolu pc

#18 Příspěvek od motji »

:arrow: Tohle F:\ -> Removable Disk # 15,05 Go (12,5 Go free) [CORSAIR] # FAT32 je ta fleška? Nebo ji pc vůbec nedetekovalo?

:arrow: :?: Cracky a keygeny - víte že většina takových souborů obsahuje nějakou mršku?

:arrow: Odinstalujte combofix přes
Start >> Spustit zkopírujte do okénka:

ComboFix /Uninstall

stiskněte Enter
-To odinstaluje ComboFix a smaže s ním související soubory a složky.



:arrow: Stáhněte T-Cleaner
http://sweb.cz/Marinus/T-Cleaner.exe

-Spusťte,pro potvrzení volby mačkejte klávesu A, Enter
-po použití prográmek vymažte.Pozor,antiviry ho mohou falešně označit za vir


:arrow: Stahněte TFC a použijte
TFC (http://oldtimer.geekstogo.com/TFC.exe)


:arrow: Stáhněte Ccleaner,viz můj podpis
-nainstalujte a vyčištěte dočasné soubory, i registry

:arrow: Vložte nový log ze RSIT a řekněte co počítač,jak se chová,už je vše v pořádku?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

dodo65
Návštěvník
Návštěvník
Příspěvky: 99
Registrován: 02 říj 2009 13:37

Re: Prosim o kontrolu pc

#19 Příspěvek od dodo65 »

Tu je z rsit

Logfile of random's system information tool 1.06 (written by random/random)
Run by Dodo at 2009-12-13 15:31:24
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 183 GB (77%) free of 238 GB
Total RAM: 3070 MB (62% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:31:39, on 13. 12. 2009
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v7.00 (7.00.6002.18005)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Windows\system32\taskeng.exe
C:\Windows\WindowsMobile\wmdc.exe
C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files\Windows Sidebar\sidebar.exe
D:\Program files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files\Mozilla Firefox\firefox.exe
D:\Stahovanie\RSIT.exe
C:\Program Files\trend micro\Dodo.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - D:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O3 - Toolbar: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Windows Mobile Device Center] %windir%\WindowsMobile\wmdc.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [CLMLServer] "C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe"
O4 - HKLM\..\Run: [P2Go_Menu] "C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [SpybotSD TeaTimer] D:\Program files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - D:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - D:\PROGRA~1\SPYBOT~1\SDHelper.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - D:\Program files\Spybot - Search & Destroy\SDWinSec.exe

--
End of file - 6416 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - D:\PROGRA~1\SPYBOT~1\SDHelper.dll [2009-01-26 1879896]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
BS Player Toolbar - C:\Program Files\BS_Player\tbBS_P.dll [2009-07-02 2215960]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - BS Player Toolbar - C:\Program Files\BS_Player\tbBS_P.dll [2009-07-02 2215960]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2008-08-30 61440]
"avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-11-24 81000]
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2007-03-01 153136]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
"Windows Mobile Device Center"=C:\Windows\WindowsMobile\wmdc.exe [2007-05-31 648072]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-09-04 935288]
"CLMLServer"=C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe [2008-07-18 104936]
"P2Go_Menu"=C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2008-06-13 210216]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-11 1233920]
"SpybotSD TeaTimer"=D:\Program files\Spybot - Search & Destroy\TeaTimer.exe [2009-03-05 2260480]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [2007-06-27 152872]
"LightScribe Control Panel"=C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2008-06-09 2363392]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UniblueSpeedUpMyPC]
D:\Program files\Uniblue\Uniblue\SpeedUpMyPC\Launcher.exe [2009-04-29 614696]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"= []

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
"NoDrives"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======List of files/folders created in the last 1 months======

2009-12-13 15:31:24 ----D---- C:\rsit
2009-12-13 11:35:58 ----D---- C:\ProgramData\P4G
2009-12-13 11:35:58 ----D---- C:\Program Files\P4G
2009-12-13 11:26:23 ----A---- C:\UsbFix.txt
2009-12-13 11:25:58 ----D---- C:\UsbFix
2009-12-13 11:16:39 ----A---- C:\ComboFix.txt
2009-12-13 11:15:48 ----SHD---- C:\$RECYCLE.BIN
2009-12-12 09:55:29 ----D---- C:\Windows\temp
2009-12-12 09:48:17 ----D---- C:\Windows\ERDNT
2009-12-11 18:43:09 ----D---- C:\Program Files\trend micro
2009-12-11 17:48:20 ----D---- C:\Users\Dodo\AppData\Roaming\CyberLink
2009-12-10 19:21:37 ----D---- C:\ProgramData\CyberLink
2009-12-10 19:19:34 ----D---- C:\Program Files\Common Files\LightScribe
2009-12-10 19:19:07 ----N---- C:\Windows\system32\MFC71u.dll
2009-12-10 19:18:33 ----D---- C:\Program Files\CyberLink
2009-12-10 19:18:01 ----D---- C:\ProgramData\Temp
2009-12-09 08:39:49 ----A---- C:\Windows\system32\nshhttp.dll
2009-12-09 08:39:45 ----A---- C:\Windows\system32\httpapi.dll
2009-12-09 08:04:24 ----A---- C:\Windows\system32\winhttp.dll
2009-12-09 08:04:05 ----A---- C:\Windows\system32\wininet.dll
2009-12-09 08:04:04 ----A---- C:\Windows\system32\mshtml.dll
2009-12-09 08:04:03 ----A---- C:\Windows\system32\urlmon.dll
2009-12-09 08:04:02 ----A---- C:\Windows\system32\ieframe.dll
2009-12-09 08:04:00 ----A---- C:\Windows\system32\ieui.dll
2009-12-09 08:03:59 ----A---- C:\Windows\system32\ieencode.dll
2009-12-09 08:03:58 ----A---- C:\Windows\system32\ieapfltr.dll
2009-12-09 08:03:29 ----A---- C:\Windows\system32\rastls.dll
2009-12-03 10:45:36 ----D---- C:\ProgramData\Adobe
2009-12-03 10:45:26 ----D---- C:\Program Files\Common Files\Adobe
2009-12-03 10:45:26 ----D---- C:\Program Files\Adobe
2009-11-27 08:09:50 ----A---- C:\Windows\system32\tzres.dll
2009-11-25 21:49:49 ----A---- C:\Windows\system32\msxml6.dll
2009-11-25 21:49:49 ----A---- C:\Windows\system32\msxml3.dll
2009-11-20 11:28:35 ----D---- C:\ProgramData\Martau
2009-11-16 18:36:30 ----D---- C:\Program Files\Windows Portable Devices
2009-11-16 18:34:46 ----A---- C:\Windows\system32\UIAnimation.dll
2009-11-16 18:34:45 ----A---- C:\Windows\system32\UIRibbonRes.dll
2009-11-16 18:34:44 ----A---- C:\Windows\system32\UIRibbon.dll
2009-11-16 18:34:18 ----A---- C:\Windows\system32\WMPhoto.dll
2009-11-16 18:34:17 ----A---- C:\Windows\system32\cdd.dll
2009-11-16 18:34:16 ----A---- C:\Windows\system32\XpsRasterService.dll
2009-11-16 18:34:16 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2009-11-16 18:34:16 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2009-11-16 18:34:16 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2009-11-16 18:34:16 ----A---- C:\Windows\system32\d3d10warp.dll
2009-11-16 18:34:16 ----A---- C:\Windows\system32\d2d1.dll
2009-11-16 18:34:15 ----A---- C:\Windows\system32\XpsPrint.dll
2009-11-16 18:34:15 ----A---- C:\Windows\system32\WindowsCodecs.dll
2009-11-16 18:34:15 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2009-11-16 18:34:15 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2009-11-16 18:34:15 ----A---- C:\Windows\system32\OpcServices.dll
2009-11-16 18:34:15 ----A---- C:\Windows\system32\dxdiagn.dll
2009-11-16 18:34:15 ----A---- C:\Windows\system32\dxdiag.exe
2009-11-16 18:34:14 ----A---- C:\Windows\system32\xpsservices.dll
2009-11-16 18:34:14 ----A---- C:\Windows\system32\FntCache.dll
2009-11-16 18:34:14 ----A---- C:\Windows\system32\dxgi.dll
2009-11-16 18:34:14 ----A---- C:\Windows\system32\DWrite.dll
2009-11-16 18:34:14 ----A---- C:\Windows\system32\d3d11.dll
2009-11-16 18:34:14 ----A---- C:\Windows\system32\d3d10level9.dll
2009-11-16 18:34:14 ----A---- C:\Windows\system32\d3d10core.dll
2009-11-16 18:34:14 ----A---- C:\Windows\system32\d3d10_1core.dll
2009-11-16 18:34:13 ----A---- C:\Windows\system32\d3d10_1.dll
2009-11-16 18:34:13 ----A---- C:\Windows\system32\d3d10.dll
2009-11-16 18:33:34 ----A---- C:\Windows\system32\WPDShextAutoplay.exe
2009-11-16 18:33:34 ----A---- C:\Windows\system32\wpdbusenum.dll
2009-11-16 18:33:34 ----A---- C:\Windows\system32\BthMtpContextHandler.dll
2009-11-16 18:33:31 ----A---- C:\Windows\system32\PortableDeviceConnectApi.dll
2009-11-16 18:33:28 ----A---- C:\Windows\system32\WPDSp.dll
2009-11-16 18:33:28 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2009-11-16 18:33:28 ----A---- C:\Windows\system32\wpdshext.dll
2009-11-16 18:33:28 ----A---- C:\Windows\system32\wpd_ci.dll
2009-11-16 18:33:28 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll
2009-11-16 18:33:28 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2009-11-16 18:33:28 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2009-11-16 18:33:28 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2009-11-16 18:32:04 ----A---- C:\Windows\system32\oleaccrc.dll
2009-11-16 18:32:03 ----A---- C:\Windows\system32\UIAutomationCore.dll
2009-11-16 18:32:03 ----A---- C:\Windows\system32\oleacc.dll
2009-11-15 11:01:08 ----D---- C:\Windows\system32\eu-ES
2009-11-15 11:01:08 ----D---- C:\Windows\system32\ca-ES
2009-11-15 11:01:07 ----D---- C:\Windows\system32\vi-VN
2009-11-15 09:06:14 ----D---- C:\Windows\system32\EventProviders
2009-11-15 08:57:32 ----D---- C:\Windows\system32\ErrorLogs
2009-11-15 08:41:11 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2009-11-15 08:41:08 ----A---- C:\Windows\system32\SLCExt.dll
2009-11-15 08:41:07 ----A---- C:\Windows\system32\SLsvc.exe
2009-11-15 08:41:05 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll
2009-11-15 08:41:05 ----A---- C:\Windows\system32\DevicePairingWizard.exe
2009-11-15 08:41:04 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2009-11-15 08:41:00 ----A---- C:\Windows\system32\mssrch.dll
2009-11-15 08:40:57 ----A---- C:\Windows\system32\tquery.dll
2009-11-15 08:40:56 ----A---- C:\Windows\system32\RMActivate_isv.exe
2009-11-15 08:40:56 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2009-11-15 08:40:55 ----A---- C:\Windows\system32\scavenge.dll
2009-11-15 08:40:55 ----A---- C:\Windows\system32\RMActivate.exe
2009-11-15 08:40:54 ----A---- C:\Windows\system32\msi.dll
2009-11-15 08:40:53 ----A---- C:\Windows\system32\imapi2fs.dll
2009-11-15 08:40:52 ----A---- C:\Windows\system32\WscEapPr.dll
2009-11-15 08:40:52 ----A---- C:\Windows\system32\wcnwiz2.dll
2009-11-15 08:40:52 ----A---- C:\Windows\system32\sysmain.dll
2009-11-15 08:40:52 ----A---- C:\Windows\system32\secproc_isv.dll
2009-11-15 08:40:50 ----A---- C:\Windows\system32\icardagt.exe
2009-11-15 08:40:49 ----A---- C:\Windows\system32\EhStorShell.dll
2009-11-15 08:40:49 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2009-11-15 08:40:48 ----A---- C:\Windows\system32\spreview.exe
2009-11-15 08:40:48 ----A---- C:\Windows\system32\spinstall.exe
2009-11-15 08:40:47 ----A---- C:\Windows\system32\drmv2clt.dll
2009-11-15 08:40:46 ----A---- C:\Windows\system32\spwizui.dll
2009-11-15 08:40:46 ----A---- C:\Windows\system32\secproc.dll
2009-11-15 08:40:46 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2009-11-15 08:40:45 ----A---- C:\Windows\system32\shell32.dll
2009-11-15 08:40:44 ----A---- C:\Windows\system32\SearchIndexer.exe
2009-11-15 08:40:44 ----A---- C:\Windows\system32\p2psvc.dll
2009-11-15 08:40:43 ----A---- C:\Windows\system32\mssvp.dll
2009-11-15 08:40:42 ----A---- C:\Windows\system32\mssphtb.dll
2009-11-15 08:40:42 ----A---- C:\Windows\system32\mssph.dll
2009-11-15 08:40:42 ----A---- C:\Windows\system32\MSMPEG2VDEC.DLL
2009-11-15 08:40:42 ----A---- C:\Windows\system32\mscoree.dll
2009-11-15 08:40:42 ----A---- C:\Windows\system32\imapi2.dll
2009-11-15 08:40:41 ----A---- C:\Windows\system32\sdohlp.dll
2009-11-15 08:40:40 ----A---- C:\Windows\system32\IMJP10K.DLL
2009-11-15 08:40:40 ----A---- C:\Windows\system32\esent.dll
2009-11-15 08:40:39 ----A---- C:\Windows\system32\wevtsvc.dll
2009-11-15 08:40:39 ----A---- C:\Windows\system32\sperror.dll
2009-11-15 08:40:39 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2009-11-15 08:40:39 ----A---- C:\Windows\system32\korwbrkr.dll
2009-11-15 08:40:39 ----A---- C:\Windows\system32\DevicePairing.dll
2009-11-15 08:40:38 ----A---- C:\Windows\system32\SLC.dll
2009-11-15 08:40:38 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2009-11-15 08:40:38 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2009-11-15 08:40:38 ----A---- C:\Windows\system32\msshsq.dll
2009-11-15 08:40:36 ----A---- C:\Windows\system32\msjet40.dll
2009-11-15 08:40:36 ----A---- C:\Windows\system32\MPSSVC.dll
2009-11-15 08:40:34 ----A---- C:\Windows\system32\Query.dll
2009-11-15 08:40:34 ----A---- C:\Windows\system32\qmgr.dll
2009-11-15 08:40:34 ----A---- C:\Windows\system32\msexch40.dll
2009-11-15 08:40:33 ----A---- C:\Windows\system32\P2PGraph.dll
2009-11-15 08:40:33 ----A---- C:\Windows\system32\IasMigReader.exe
2009-11-15 08:40:33 ----A---- C:\Windows\system32\diagperf.dll
2009-11-15 08:40:32 ----A---- C:\Windows\system32\ole32.dll
2009-11-15 08:40:31 ----A---- C:\Windows\system32\srchadmin.dll
2009-11-15 08:40:31 ----A---- C:\Windows\system32\ntdll.dll
2009-11-15 08:40:30 ----A---- C:\Windows\system32\winload.exe
2009-11-15 08:40:30 ----A---- C:\Windows\system32\mblctr.exe
2009-11-15 08:40:30 ----A---- C:\Windows\system32\EncDec.dll
2009-11-15 08:40:29 ----A---- C:\Windows\system32\uDWM.dll
2009-11-15 08:40:29 ----A---- C:\Windows\system32\mmc.exe
2009-11-15 08:40:28 ----A---- C:\Windows\system32\riched20.dll
2009-11-15 08:40:28 ----A---- C:\Windows\system32\IasMigPlugin.dll
2009-11-15 08:40:27 ----A---- C:\Windows\system32\RacEngn.dll
2009-11-15 08:40:27 ----A---- C:\Windows\system32\fdBth.dll
2009-11-15 08:40:25 ----A---- C:\Windows\system32\spoolss.dll
2009-11-15 08:40:25 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2009-11-15 08:40:25 ----A---- C:\Windows\system32\SearchFilterHost.exe
2009-11-15 08:40:25 ----A---- C:\Windows\system32\milcore.dll
2009-11-15 08:40:25 ----A---- C:\Windows\system32\kernel32.dll
2009-11-15 08:40:25 ----A---- C:\Windows\system32\EhStorAPI.dll
2009-11-15 08:40:25 ----A---- C:\Windows\system32\CertEnroll.dll
2009-11-15 08:40:24 ----A---- C:\Windows\system32\schedsvc.dll
2009-11-15 08:40:24 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2009-11-15 08:40:23 ----A---- C:\Windows\system32\msjtes40.dll
2009-11-15 08:40:23 ----A---- C:\Windows\system32\fsquirt.exe
2009-11-15 08:40:23 ----A---- C:\Windows\system32\AuxiliaryDisplayDriverLib.dll
2009-11-15 08:40:22 ----A---- C:\Windows\system32\msvcp60.dll
2009-11-15 08:40:22 ----A---- C:\Windows\system32\infocardapi.dll
2009-11-15 08:40:22 ----A---- C:\Windows\system32\gpedit.dll
2009-11-15 08:40:21 ----A---- C:\Windows\system32\WinSAT.exe
2009-11-15 08:40:21 ----A---- C:\Windows\system32\PresentationSettings.exe
2009-11-15 08:40:21 ----A---- C:\Windows\system32\es.dll
2009-11-15 08:40:20 ----A---- C:\Windows\system32\mstext40.dll
2009-11-15 08:40:20 ----A---- C:\Windows\system32\Magnify.exe
2009-11-15 08:40:20 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2009-11-15 08:40:20 ----A---- C:\Windows\system32\advapi32.dll
2009-11-15 08:40:18 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
2009-11-15 08:40:18 ----A---- C:\Windows\system32\WebClnt.dll
2009-11-15 08:40:18 ----A---- C:\Windows\system32\slwmi.dll
2009-11-15 08:40:18 ----A---- C:\Windows\system32\msxbde40.dll
2009-11-15 08:40:18 ----A---- C:\Windows\system32\msexcl40.dll
2009-11-15 08:40:18 ----A---- C:\Windows\system32\comsvcs.dll
2009-11-15 08:40:17 ----A---- C:\Windows\system32\vssapi.dll
2009-11-15 08:40:17 ----A---- C:\Windows\system32\msfeeds.dll
2009-11-15 08:40:17 ----A---- C:\Windows\system32\authui.dll
2009-11-15 08:40:15 ----A---- C:\Windows\system32\vbscript.dll
2009-11-15 08:40:15 ----A---- C:\Windows\system32\PresentationHost.exe
2009-11-15 08:40:15 ----A---- C:\Windows\system32\NetProjW.dll
2009-11-15 08:40:15 ----A---- C:\Windows\system32\msrepl40.dll
2009-11-15 08:40:14 ----A---- C:\Windows\system32\propsys.dll
2009-11-15 08:40:14 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2009-11-15 08:40:14 ----A---- C:\Windows\system32\newdev.dll
2009-11-15 08:40:14 ----A---- C:\Windows\system32\iasrecst.dll
2009-11-15 08:40:14 ----A---- C:\Windows\system32\gpsvc.dll
2009-11-15 08:40:14 ----A---- C:\Windows\system32\eudcedit.exe
2009-11-15 08:40:14 ----A---- C:\Windows\system32\crypt32.dll
2009-11-15 08:40:13 ----A---- C:\Windows\system32\setupapi.dll
2009-11-15 08:40:13 ----A---- C:\Windows\system32\rpcss.dll
2009-11-15 08:40:13 ----A---- C:\Windows\system32\iedkcs32.dll
2009-11-15 08:40:13 ----A---- C:\Windows\explorer.exe
2009-11-15 08:40:12 ----A---- C:\Windows\system32\mspbde40.dll
2009-11-15 08:40:12 ----A---- C:\Windows\system32\d3d9.dll
2009-11-15 08:40:11 ----A---- C:\Windows\system32\shlwapi.dll
2009-11-15 08:40:11 ----A---- C:\Windows\system32\msltus40.dll
2009-11-15 08:40:11 ----A---- C:\Windows\system32\mfc42.dll
2009-11-15 08:40:11 ----A---- C:\Windows\system32\EhStorPwdMgr.dll
2009-11-15 08:40:11 ----A---- C:\Windows\system32\EhStorAuthn.dll
2009-11-15 08:40:11 ----A---- C:\Windows\system32\davclnt.dll
2009-11-15 08:40:10 ----A---- C:\Windows\system32\wevtapi.dll
2009-11-15 08:40:10 ----A---- C:\Windows\system32\msrd3x40.dll
2009-11-15 08:40:10 ----A---- C:\Windows\system32\msdtctm.dll
2009-11-15 08:40:10 ----A---- C:\Windows\system32\browseui.dll
2009-11-15 08:40:09 ----A---- C:\Windows\system32\photowiz.dll
2009-11-15 08:40:09 ----A---- C:\Windows\system32\nlhtml.dll
2009-11-15 08:40:08 ----A---- C:\Windows\system32\user32.dll
2009-11-15 08:40:08 ----A---- C:\Windows\system32\samsrv.dll
2009-11-15 08:40:08 ----A---- C:\Windows\system32\quartz.dll
2009-11-15 08:40:08 ----A---- C:\Windows\system32\ci.dll
2009-11-15 08:40:07 ----A---- C:\Windows\system32\win32spl.dll
2009-11-15 08:40:07 ----A---- C:\Windows\system32\WcnNetsh.dll
2009-11-15 08:40:07 ----A---- C:\Windows\system32\SLCommDlg.dll
2009-11-15 08:40:07 ----A---- C:\Windows\system32\oleaut32.dll
2009-11-15 08:40:06 ----A---- C:\Windows\system32\netshell.dll
2009-11-15 08:40:06 ----A---- C:\Windows\system32\IKEEXT.DLL
2009-11-15 08:40:06 ----A---- C:\Windows\system32\compcln.exe
2009-11-15 08:40:06 ----A---- C:\Windows\system32\apds.dll
2009-11-15 08:40:05 ----A---- C:\Windows\system32\xmlfilter.dll
2009-11-15 08:40:05 ----A---- C:\Windows\system32\mswstr10.dll
2009-11-15 08:40:05 ----A---- C:\Windows\system32\msctf.dll
2009-11-15 08:40:05 ----A---- C:\Windows\system32\emdmgmt.dll
2009-11-15 08:40:05 ----A---- C:\Windows\system32\audiosrv.dll
2009-11-15 08:40:04 ----A---- C:\Windows\system32\QAGENTRT.DLL
2009-11-15 08:40:04 ----A---- C:\Windows\system32\msvcrt.dll
2009-11-15 08:40:04 ----A---- C:\Windows\system32\gdi32.dll
2009-11-15 08:40:03 ----A---- C:\Windows\system32\VSSVC.exe
2009-11-15 08:40:03 ----A---- C:\Windows\system32\SLUI.exe
2009-11-15 08:40:03 ----A---- C:\Windows\system32\mfc42u.dll
2009-11-15 08:40:03 ----A---- C:\Windows\system32\iphlpsvc.dll
2009-11-15 08:40:02 ----A---- C:\Windows\system32\sqlsrv32.dll
2009-11-15 08:40:02 ----A---- C:\Windows\system32\msrd2x40.dll
2009-11-15 08:40:02 ----A---- C:\Windows\system32\eapphost.dll
2009-11-15 08:40:00 ----A---- C:\Windows\system32\winresume.exe
2009-11-15 08:40:00 ----A---- C:\Windows\system32\propdefs.dll
2009-11-15 08:40:00 ----A---- C:\Windows\system32\odbc32.dll
2009-11-15 08:39:59 ----A---- C:\Windows\system32\shdocvw.dll
2009-11-15 08:39:58 ----A---- C:\Windows\system32\wevtutil.exe
2009-11-15 08:39:58 ----A---- C:\Windows\system32\mssitlb.dll
2009-11-15 08:39:58 ----A---- C:\Windows\system32\dbgeng.dll
2009-11-15 08:39:56 ----A---- C:\Windows\system32\WsmSvc.dll
2009-11-15 08:39:56 ----A---- C:\Windows\system32\usp10.dll
2009-11-15 08:39:56 ----A---- C:\Windows\system32\swprv.dll
2009-11-15 08:39:56 ----A---- C:\Windows\system32\mmcndmgr.dll
2009-11-15 08:39:55 ----A---- C:\Windows\system32\vds.exe
2009-11-15 08:39:55 ----A---- C:\Windows\system32\netlogon.dll
2009-11-15 08:39:55 ----A---- C:\Windows\system32\mshtmled.dll
2009-11-15 08:39:55 ----A---- C:\Windows\system32\msctfp.dll
2009-11-15 08:39:55 ----A---- C:\Windows\system32\fdBthProxy.dll
2009-11-15 08:39:55 ----A---- C:\Windows\system32\drvinst.exe
2009-11-15 08:39:55 ----A---- C:\Windows\system32\devmgr.dll
2009-11-15 08:39:54 ----A---- C:\Windows\system32\Wldap32.dll
2009-11-15 08:39:54 ----A---- C:\Windows\system32\wcnwiz.dll
2009-11-15 08:39:54 ----A---- C:\Windows\system32\msscb.dll
2009-11-15 08:39:54 ----A---- C:\Windows\system32\evr.dll
2009-11-15 08:39:54 ----A---- C:\Windows\system32\DevicePairingProxy.dll
2009-11-15 08:39:54 ----A---- C:\Windows\system32\BFE.DLL
2009-11-15 08:39:54 ----A---- C:\Windows\system32\adsldpc.dll
2009-11-15 08:39:53 ----A---- C:\Windows\system32\WMVSDECD.DLL
2009-11-15 08:39:53 ----A---- C:\Windows\system32\services.exe
2009-11-15 08:39:52 ----A---- C:\Windows\system32\wercon.exe
2009-11-15 08:39:52 ----A---- C:\Windows\system32\wcncsvc.dll
2009-11-15 08:39:52 ----A---- C:\Windows\system32\mimefilt.dll
2009-11-15 08:39:52 ----A---- C:\Windows\system32\iertutil.dll
2009-11-15 08:39:52 ----A---- C:\Windows\system32\comdlg32.dll
2009-11-15 08:39:52 ----A---- C:\Windows\system32\certcli.dll
2009-11-15 08:39:52 ----A---- C:\Windows\system32\adtschema.dll
2009-11-15 08:39:51 ----A---- C:\Windows\system32\umpnpmgr.dll
2009-11-15 08:39:51 ----A---- C:\Windows\system32\taskeng.exe
2009-11-15 08:39:51 ----A---- C:\Windows\system32\rtffilt.dll
2009-11-15 08:39:51 ----A---- C:\Windows\system32\reg.exe
2009-11-15 08:39:51 ----A---- C:\Windows\system32\mswdat10.dll
2009-11-15 08:39:51 ----A---- C:\Windows\system32\msjter40.dll
2009-11-15 08:39:51 ----A---- C:\Windows\system32\msdtcprx.dll
2009-11-15 08:39:51 ----A---- C:\Windows\system32\msdrm.dll
2009-11-15 08:39:51 ----A---- C:\Windows\system32\ipsmsnap.dll
2009-11-15 08:39:51 ----A---- C:\Windows\system32\dnsapi.dll
2009-11-15 08:39:51 ----A---- C:\Windows\system32\certutil.exe
2009-11-15 08:39:50 ----A---- C:\Windows\system32\WMNetMgr.dll
2009-11-15 08:39:50 ----A---- C:\Windows\system32\w32time.dll
2009-11-15 08:39:50 ----A---- C:\Windows\system32\rsaenh.dll
2009-11-15 08:39:50 ----A---- C:\Windows\system32\msshooks.dll
2009-11-15 08:39:50 ----A---- C:\Windows\system32\msscntrs.dll
2009-11-15 08:39:50 ----A---- C:\Windows\system32\IPSECSVC.DLL
2009-11-15 08:39:50 ----A---- C:\Windows\system32\bthserv.dll
2009-11-15 08:39:50 ----A---- C:\Windows\system32\bcrypt.dll
2009-11-15 08:39:49 ----A---- C:\Windows\system32\TsWpfWrp.exe
2009-11-15 08:39:49 ----A---- C:\Windows\system32\netapi32.dll
2009-11-15 08:39:49 ----A---- C:\Windows\system32\msstrc.dll
2009-11-15 08:39:49 ----A---- C:\Windows\system32\msihnd.dll
2009-11-15 08:39:49 ----A---- C:\Windows\system32\MMDevAPI.dll
2009-11-15 08:39:49 ----A---- C:\Windows\system32\inetpp.dll
2009-11-15 08:39:49 ----A---- C:\Windows\system32\inetcomm.dll
2009-11-15 08:39:49 ----A---- C:\Windows\system32\dfshim.dll
2009-11-15 08:39:48 ----A---- C:\Windows\system32\wmicmiplugin.dll
2009-11-15 08:39:48 ----A---- C:\Windows\system32\termsrv.dll
2009-11-15 08:39:48 ----A---- C:\Windows\system32\profsvc.dll
2009-11-15 08:39:48 ----A---- C:\Windows\system32\mtxclu.dll
2009-11-15 08:39:48 ----A---- C:\Windows\system32\mscories.dll
2009-11-15 08:39:48 ----A---- C:\Windows\system32\hidserv.dll
2009-11-15 08:39:48 ----A---- C:\Windows\system32\fundisc.dll
2009-11-15 08:39:48 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2009-11-15 08:39:48 ----A---- C:\Windows\system32\cryptsvc.dll
2009-11-15 08:39:47 ----A---- C:\Windows\system32\wdc.dll
2009-11-15 08:39:47 ----A---- C:\Windows\system32\shsvcs.dll
2009-11-15 08:39:47 ----A---- C:\Windows\system32\msiexec.exe
2009-11-15 08:39:47 ----A---- C:\Windows\system32\imapi.dll
2009-11-15 08:39:47 ----A---- C:\Windows\system32\chsbrkr.dll
2009-11-15 08:39:46 ----A---- C:\Windows\system32\spoolsv.exe
2009-11-15 08:39:46 ----A---- C:\Windows\system32\rasmans.dll
2009-11-15 08:39:46 ----A---- C:\Windows\system32\pnidui.dll
2009-11-15 08:39:46 ----A---- C:\Windows\system32\icardres.dll
2009-11-15 08:39:46 ----A---- C:\Windows\system32\iassdo.dll
2009-11-15 08:39:46 ----A---- C:\Windows\system32\autofmt.exe
2009-11-15 08:39:45 ----A---- C:\Windows\system32\wersvc.dll
2009-11-15 08:39:45 ----A---- C:\Windows\system32\slmgr.vbs
2009-11-15 08:39:45 ----A---- C:\Windows\system32\scrrun.dll
2009-11-15 08:39:45 ----A---- C:\Windows\system32\PSHED.DLL
2009-11-15 08:39:45 ----A---- C:\Windows\system32\pidgenx.dll
2009-11-15 08:39:45 ----A---- C:\Windows\system32\pdh.dll
2009-11-15 08:39:45 ----A---- C:\Windows\system32\dhcpcsvc.dll
2009-11-15 08:39:45 ----A---- C:\Windows\system32\CertEnrollUI.dll
2009-11-15 08:39:45 ----A---- C:\Windows\system32\azroles.dll
2009-11-15 08:39:44 ----A---- C:\Windows\system32\wmpmde.dll
2009-11-15 08:39:44 ----A---- C:\Windows\system32\winlogon.exe
2009-11-15 08:39:44 ----A---- C:\Windows\system32\SyncCenter.dll
2009-11-15 08:39:43 ----A---- C:\Windows\system32\SLUINotify.dll
2009-11-15 08:39:43 ----A---- C:\Windows\system32\sethc.exe
2009-11-15 08:39:43 ----A---- C:\Windows\system32\ncrypt.dll
2009-11-15 08:39:43 ----A---- C:\Windows\system32\msjetoledb40.dll
2009-11-15 08:39:43 ----A---- C:\Windows\system32\kd1394.dll
2009-11-15 08:39:43 ----A---- C:\Windows\system32\comuid.dll
2009-11-15 08:39:43 ----A---- C:\Windows\system32\certmgr.dll
2009-11-15 08:39:42 ----A---- C:\Windows\system32\wisptis.exe
2009-11-15 08:39:42 ----A---- C:\Windows\system32\untfs.dll
2009-11-15 08:39:42 ----A---- C:\Windows\system32\taskcomp.dll
2009-11-15 08:39:42 ----A---- C:\Windows\system32\spp.dll
2009-11-15 08:39:42 ----A---- C:\Windows\system32\scrobj.dll
2009-11-15 08:39:42 ----A---- C:\Windows\system32\rtutils.dll
2009-11-15 08:39:42 ----A---- C:\Windows\system32\iassam.dll
2009-11-15 08:39:42 ----A---- C:\Windows\system32\dwm.exe
2009-11-15 08:39:42 ----A---- C:\Windows\system32\autochk.exe
2009-11-15 08:39:41 ----A---- C:\Windows\system32\winsrv.dll
2009-11-15 08:39:41 ----A---- C:\Windows\system32\printui.dll
2009-11-15 08:39:41 ----A---- C:\Windows\system32\iasnap.dll
2009-11-15 08:39:41 ----A---- C:\Windows\system32\autoconv.exe
2009-11-15 08:39:40 ----A---- C:\Windows\system32\wow32.dll
2009-11-15 08:39:40 ----A---- C:\Windows\system32\userenv.dll
2009-11-15 08:39:40 ----A---- C:\Windows\system32\osk.exe
2009-11-15 08:39:40 ----A---- C:\Windows\system32\onex.dll
2009-11-15 08:39:40 ----A---- C:\Windows\system32\mswsock.dll
2009-11-15 08:39:40 ----A---- C:\Windows\system32\kdcom.dll
2009-11-15 08:39:40 ----A---- C:\Windows\system32\cscript.exe
2009-11-15 08:39:40 ----A---- C:\Windows\system32\basecsp.dll
2009-11-15 08:39:40 ----A---- C:\Windows\system32\audiodg.exe
2009-11-15 08:39:39 ----A---- C:\Windows\system32\WinSCard.dll
2009-11-15 08:39:39 ----A---- C:\Windows\system32\winmm.dll
2009-11-15 08:39:39 ----A---- C:\Windows\system32\WerFaultSecure.exe
2009-11-15 08:39:39 ----A---- C:\Windows\system32\spcmsg.dll
2009-11-15 08:39:39 ----A---- C:\Windows\system32\RelMon.dll
2009-11-15 08:39:39 ----A---- C:\Windows\system32\rdpencom.dll
2009-11-15 08:39:39 ----A---- C:\Windows\system32\offfilt.dll
2009-11-15 08:39:39 ----A---- C:\Windows\system32\msftedit.dll
2009-11-15 08:39:39 ----A---- C:\Windows\system32\kdusb.dll
2009-11-15 08:39:38 ----A---- C:\Windows\system32\wsepno.dll
2009-11-15 08:39:38 ----A---- C:\Windows\system32\WerFault.exe
2009-11-15 08:39:38 ----A---- C:\Windows\system32\Utilman.exe
2009-11-15 08:39:38 ----A---- C:\Windows\system32\stobject.dll
2009-11-15 08:39:38 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2009-11-15 08:39:38 ----A---- C:\Windows\system32\secproc_ssp.dll
2009-11-15 08:39:38 ----A---- C:\Windows\system32\mfplat.dll
2009-11-15 08:39:38 ----A---- C:\Windows\system32\dnsrslvr.dll
2009-11-15 08:39:38 ----A---- C:\Windows\system32\diskraid.exe
2009-11-15 08:39:37 ----A---- C:\Windows\system32\wscript.exe
2009-11-15 08:39:37 ----A---- C:\Windows\system32\wiaservc.dll
2009-11-15 08:39:37 ----A---- C:\Windows\system32\ulib.dll
2009-11-15 08:39:37 ----A---- C:\Windows\system32\sysclass.dll
2009-11-15 08:39:37 ----A---- C:\Windows\system32\SndVol.exe
2009-11-15 08:39:37 ----A---- C:\Windows\system32\prnntfy.dll
2009-11-15 08:39:37 ----A---- C:\Windows\system32\odbccp32.dll
2009-11-15 08:39:37 ----A---- C:\Windows\system32\msnetobj.dll
2009-11-15 08:39:37 ----A---- C:\Windows\system32\mscms.dll
2009-11-15 08:39:37 ----A---- C:\Windows\system32\mcmde.dll
2009-11-15 08:39:37 ----A---- C:\Windows\system32\iasdatastore.dll
2009-11-15 08:39:37 ----A---- C:\Windows\system32\apphelp.dll
2009-11-15 08:39:37 ----A---- C:\Windows\system32\adsmsext.dll
2009-11-15 08:39:36 ----A---- C:\Windows\system32\wscntfy.dll
2009-11-15 08:39:36 ----A---- C:\Windows\system32\rastapi.dll
2009-11-15 08:39:36 ----A---- C:\Windows\system32\pnpsetup.dll
2009-11-15 08:39:36 ----A---- C:\Windows\system32\ipsecsnp.dll
2009-11-15 08:39:36 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2009-11-15 08:39:36 ----A---- C:\Windows\system32\fdProxy.dll
2009-11-15 08:39:36 ----A---- C:\Windows\system32\dsound.dll
2009-11-15 08:39:36 ----A---- C:\Windows\system32\cryptui.dll
2009-11-15 08:39:36 ----A---- C:\Windows\system32\brcpl.dll
2009-11-15 08:39:35 ----A---- C:\Windows\system32\wscsvc.dll
2009-11-15 08:39:35 ----A---- C:\Windows\system32\WMVENCOD.DLL
2009-11-15 08:39:35 ----A---- C:\Windows\system32\wlangpui.dll
2009-11-15 08:39:35 ----A---- C:\Windows\system32\vdsdyn.dll
2009-11-15 08:39:35 ----A---- C:\Windows\system32\regsvc.dll
2009-11-15 08:39:35 ----A---- C:\Windows\system32\rasapi32.dll
2009-11-15 08:39:35 ----A---- C:\Windows\system32\ntprint.dll
2009-11-15 08:39:35 ----A---- C:\Windows\system32\logman.exe
2009-11-15 08:39:35 ----A---- C:\Windows\system32\iepeers.dll
2009-11-15 08:39:35 ----A---- C:\Windows\system32\iashlpr.dll
2009-11-15 08:39:35 ----A---- C:\Windows\system32\gpapi.dll
2009-11-15 08:39:35 ----A---- C:\Windows\system32\diskpart.exe
2009-11-15 08:39:34 ----A---- C:\Windows\system32\zipfldr.dll
2009-11-15 08:39:34 ----A---- C:\Windows\system32\wusa.exe
2009-11-15 08:39:34 ----A---- C:\Windows\system32\wshext.dll
2009-11-15 08:39:34 ----A---- C:\Windows\system32\wpccpl.dll
2009-11-15 08:39:34 ----A---- C:\Windows\system32\webcheck.dll
2009-11-15 08:39:34 ----A---- C:\Windows\system32\netcenter.dll
2009-11-15 08:39:34 ----A---- C:\Windows\system32\mscorier.dll
2009-11-15 08:39:34 ----A---- C:\Windows\system32\iasrad.dll
2009-11-15 08:39:34 ----A---- C:\Windows\system32\findstr.exe
2009-11-15 08:39:33 ----A---- C:\Windows\system32\wsnmp32.dll
2009-11-15 08:39:33 ----A---- C:\Windows\system32\wer.dll
2009-11-15 08:39:33 ----A---- C:\Windows\system32\themecpl.dll
2009-11-15 08:39:33 ----A---- C:\Windows\system32\rasdlg.dll
2009-11-15 08:39:33 ----A---- C:\Windows\system32\iassvcs.dll
2009-11-15 08:39:32 ----A---- C:\Windows\system32\uxsms.dll
2009-11-15 08:39:32 ----A---- C:\Windows\system32\tsbyuv.dll
2009-11-15 08:39:32 ----A---- C:\Windows\system32\srvsvc.dll
2009-11-15 08:39:32 ----A---- C:\Windows\system32\slcc.dll
2009-11-15 08:39:32 ----A---- C:\Windows\system32\scansetting.dll
2009-11-15 08:39:32 ----A---- C:\Windows\system32\powrprof.dll
2009-11-15 08:39:32 ----A---- C:\Windows\system32\ntmarta.dll
2009-11-15 08:39:32 ----A---- C:\Windows\system32\msutb.dll
2009-11-15 08:39:32 ----A---- C:\Windows\system32\mstsc.exe
2009-11-15 08:39:32 ----A---- C:\Windows\system32\mstlsapi.dll
2009-11-15 08:39:32 ----A---- C:\Windows\system32\mssprxy.dll
2009-11-15 08:39:32 ----A---- C:\Windows\system32\iasads.dll
2009-11-15 08:39:31 ----A---- C:\Windows\system32\powercpl.dll
2009-11-15 08:39:31 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2009-11-15 08:39:31 ----A---- C:\Windows\system32\newdev.exe
2009-11-15 08:39:31 ----A---- C:\Windows\system32\networkmap.dll
2009-11-15 08:39:31 ----A---- C:\Windows\system32\iasacct.dll
2009-11-15 08:39:31 ----A---- C:\Windows\system32\authz.dll
2009-11-15 08:39:30 ----A---- C:\Windows\system32\themeui.dll
2009-11-15 08:39:30 ----A---- C:\Windows\system32\systemcpl.dll
2009-11-15 08:39:30 ----A---- C:\Windows\system32\sud.dll
2009-11-15 08:39:30 ----A---- C:\Windows\system32\samlib.dll
2009-11-15 08:39:30 ----A---- C:\Windows\system32\pcaui.dll
2009-11-15 08:39:30 ----A---- C:\Windows\system32\mmci.dll
2009-11-15 08:39:30 ----A---- C:\Windows\system32\dot3svc.dll
2009-11-15 08:39:30 ----A---- C:\Windows\system32\connect.dll
2009-11-15 08:39:30 ----A---- C:\Windows\system32\accessibilitycpl.dll
2009-11-15 08:39:29 ----A---- C:\Windows\system32\wlanpref.dll
2009-11-15 08:39:29 ----A---- C:\Windows\system32\usercpl.dll
2009-11-15 08:39:29 ----A---- C:\Windows\system32\rpchttp.dll
2009-11-15 08:39:29 ----A---- C:\Windows\system32\regapi.dll
2009-11-15 08:39:29 ----A---- C:\Windows\system32\qdvd.dll
2009-11-15 08:39:29 ----A---- C:\Windows\system32\msinfo32.exe
2009-11-15 08:39:29 ----A---- C:\Windows\system32\ieaksie.dll
2009-11-15 08:39:29 ----A---- C:\Windows\system32\autoplay.dll
2009-11-15 08:39:28 ----A---- C:\Windows\system32\wpcao.dll
2009-11-15 08:39:28 ----A---- C:\Windows\system32\vdsutil.dll
2009-11-15 08:39:28 ----A---- C:\Windows\system32\tapisrv.dll
2009-11-15 08:39:28 ----A---- C:\Windows\system32\scksp.dll
2009-11-15 08:39:28 ----A---- C:\Windows\system32\scesrv.dll
2009-11-15 08:39:28 ----A---- C:\Windows\system32\psisdecd.dll
2009-11-15 08:39:28 ----A---- C:\Windows\system32\oleprn.dll
2009-11-15 08:39:28 ----A---- C:\Windows\system32\mpr.dll
2009-11-15 08:39:28 ----A---- C:\Windows\system32\feclient.dll
2009-11-15 08:39:28 ----A---- C:\Windows\system32\AudioSes.dll
2009-11-15 08:39:27 ----A---- C:\Windows\system32\wscisvif.dll
2009-11-15 08:39:27 ----A---- C:\Windows\system32\sdclt.exe
2009-11-15 08:39:27 ----A---- C:\Windows\system32\rekeywiz.exe
2009-11-15 08:39:27 ----A---- C:\Windows\system32\qedit.dll
2009-11-15 08:39:27 ----A---- C:\Windows\system32\perfdisk.dll
2009-11-15 08:39:27 ----A---- C:\Windows\system32\ncryptui.dll
2009-11-15 08:39:27 ----A---- C:\Windows\system32\imm32.dll
2009-11-15 08:39:27 ----A---- C:\Windows\system32\iaspolcy.dll
2009-11-15 08:39:27 ----A---- C:\Windows\system32\Faultrep.dll
2009-11-15 08:39:27 ----A---- C:\Windows\system32\dpapimig.exe
2009-11-15 08:39:27 ----A---- C:\Windows\system32\dot3msm.dll
2009-11-15 08:39:27 ----A---- C:\Windows\system32\DeviceEject.exe
2009-11-15 08:39:26 ----A---- C:\Windows\system32\TSTheme.exe
2009-11-15 08:39:26 ----A---- C:\Windows\system32\tcpipcfg.dll
2009-11-15 08:39:26 ----A---- C:\Windows\system32\spwinsat.dll
2009-11-15 08:39:26 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2009-11-15 08:39:26 ----A---- C:\Windows\system32\scecli.dll
2009-11-15 08:39:26 ----A---- C:\Windows\system32\rasplap.dll
2009-11-15 08:39:26 ----A---- C:\Windows\system32\rasgcw.dll
2009-11-15 08:39:26 ----A---- C:\Windows\system32\pnpui.dll
2009-11-15 08:39:26 ----A---- C:\Windows\system32\hdwwiz.exe
2009-11-15 08:39:26 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2009-11-15 08:39:26 ----A---- C:\Windows\system32\extmgr.dll
2009-11-15 08:39:26 ----A---- C:\Windows\system32\certreq.exe
2009-11-15 08:39:25 ----A---- C:\Windows\system32\whealogr.dll
2009-11-15 08:39:25 ----A---- C:\Windows\system32\tcpmon.dll
2009-11-15 08:39:25 ----A---- C:\Windows\system32\srcore.dll
2009-11-15 08:39:25 ----A---- C:\Windows\system32\SCardSvr.dll
2009-11-15 08:39:25 ----A---- C:\Windows\system32\raschap.dll
2009-11-15 08:39:25 ----A---- C:\Windows\system32\PnPUnattend.exe
2009-11-15 08:39:25 ----A---- C:\Windows\system32\fontext.dll
2009-11-15 08:39:25 ----A---- C:\Windows\system32\fdWSD.dll
2009-11-15 08:39:25 ----A---- C:\Windows\system32\conime.exe
2009-11-15 08:39:25 ----A---- C:\Windows\system32\cmmon32.exe
2009-11-15 08:39:25 ----A---- C:\Windows\system32\cmdial32.dll
2009-11-15 08:39:24 ----A---- C:\Windows\system32\WMVXENCD.DLL
2009-11-15 08:39:24 ----A---- C:\Windows\system32\wlanui.dll
2009-11-15 08:39:24 ----A---- C:\Windows\system32\wiaaut.dll
2009-11-15 08:39:24 ----A---- C:\Windows\system32\shwebsvc.dll
2009-11-15 08:39:24 ----A---- C:\Windows\system32\rasppp.dll
2009-11-15 08:39:24 ----A---- C:\Windows\system32\PnPutil.exe
2009-11-15 08:39:24 ----A---- C:\Windows\system32\oobefldr.dll
2009-11-15 08:39:24 ----A---- C:\Windows\system32\MSVidCtl.dll
2009-11-15 08:39:24 ----A---- C:\Windows\system32\dsprop.dll
2009-11-15 08:39:24 ----A---- C:\Windows\system32\dimsroam.dll
2009-11-15 08:39:23 ----A---- C:\Windows\system32\shsetup.dll
2009-11-15 08:39:23 ----A---- C:\Windows\system32\rasmontr.dll
2009-11-15 08:39:23 ----A---- C:\Windows\system32\occache.dll
2009-11-15 08:39:23 ----A---- C:\Windows\system32\mscandui.dll
2009-11-15 08:39:23 ----A---- C:\Windows\system32\modemui.dll
2009-11-15 08:39:23 ----A---- C:\Windows\system32\chtbrkr.dll
2009-11-15 08:39:22 ----A---- C:\Windows\system32\wmdrmsdk.dll
2009-11-15 08:39:22 ----A---- C:\Windows\system32\wlgpclnt.dll
2009-11-15 08:39:22 ----A---- C:\Windows\system32\smss.exe
2009-11-15 08:39:22 ----A---- C:\Windows\system32\rdpwsx.dll
2009-11-15 08:39:22 ----A---- C:\Windows\system32\netplwiz.dll
2009-11-15 08:39:22 ----A---- C:\Windows\system32\dataclen.dll
2009-11-15 08:39:22 ----A---- C:\Windows\system32\credui.dll
2009-11-15 08:39:22 ----A---- C:\Windows\system32\blackbox.dll
2009-11-15 08:39:21 ----A---- C:\Windows\system32\WSDMon.dll
2009-11-15 08:39:21 ----A---- C:\Windows\system32\wpcsvc.dll
2009-11-15 08:39:21 ----A---- C:\Windows\system32\wmpeffects.dll
2009-11-15 08:39:21 ----A---- C:\Windows\system32\networkexplorer.dll
2009-11-15 08:39:21 ----A---- C:\Windows\system32\mstime.dll
2009-11-15 08:39:21 ----A---- C:\Windows\system32\logagent.exe
2009-11-15 08:39:21 ----A---- C:\Windows\system32\ifmon.dll
2009-11-15 08:39:21 ----A---- C:\Windows\system32\cipher.exe
2009-11-15 08:39:21 ----A---- C:\Windows\system32\certprop.dll
2009-11-15 08:39:20 ----A---- C:\Windows\system32\wscapi.dll
2009-11-15 08:39:20 ----A---- C:\Windows\system32\thawbrkr.dll
2009-11-15 08:39:20 ----A---- C:\Windows\system32\softkbd.dll
2009-11-15 08:39:20 ----A---- C:\Windows\system32\sendmail.dll
2009-11-15 08:39:20 ----A---- C:\Windows\system32\msscp.dll
2009-11-15 08:39:20 ----A---- C:\Windows\system32\msrating.dll
2009-11-15 08:39:20 ----A---- C:\Windows\system32\msimtf.dll
2009-11-15 08:39:20 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2009-11-15 08:39:20 ----A---- C:\Windows\system32\InkEd.dll
2009-11-15 08:39:20 ----A---- C:\Windows\system32\gpresult.exe
2009-11-15 08:39:19 ----A---- C:\Windows\system32\wshbth.dll
2009-11-15 08:39:19 ----A---- C:\Windows\system32\version.dll
2009-11-15 08:39:19 ----A---- C:\Windows\system32\SLLUA.exe
2009-11-15 08:39:19 ----A---- C:\Windows\system32\puiapi.dll
2009-11-15 08:39:19 ----A---- C:\Windows\system32\olepro32.dll
2009-11-15 08:39:19 ----A---- C:\Windows\system32\msisip.dll
2009-11-15 08:39:19 ----A---- C:\Windows\system32\msctfui.dll
2009-11-15 08:39:19 ----A---- C:\Windows\system32\mprapi.dll
2009-11-15 08:39:19 ----A---- C:\Windows\system32\input.dll
2009-11-15 08:39:19 ----A---- C:\Windows\system32\ExplorerFrame.dll
2009-11-15 08:39:19 ----A---- C:\Windows\system32\drmmgrtn.dll
2009-11-15 08:39:19 ----A---- C:\Windows\system32\dmsynth.dll
2009-11-15 08:39:18 ----A---- C:\Windows\system32\msjint40.dll
2009-11-15 08:39:18 ----A---- C:\Windows\system32\MsCtfMonitor.dll
2009-11-15 08:39:18 ----A---- C:\Windows\system32\l2nacp.dll
2009-11-15 08:39:18 ----A---- C:\Windows\system32\ftp.exe
2009-11-15 08:39:18 ----A---- C:\Windows\system32\fdSSDP.dll
2009-11-15 08:39:18 ----A---- C:\Windows\system32\fc.exe
2009-11-15 08:39:18 ----A---- C:\Windows\system32\eapp3hst.dll
2009-11-15 08:39:18 ----A---- C:\Windows\system32\dmusic.dll
2009-11-15 08:39:18 ----A---- C:\Windows\system32\cscapi.dll
2009-11-15 08:39:17 ----A---- C:\Windows\system32\wsdchngr.dll
2009-11-15 08:39:17 ----A---- C:\Windows\system32\tscupgrd.exe
2009-11-15 08:39:17 ----A---- C:\Windows\system32\Storprop.dll
2009-11-15 08:39:17 ----A---- C:\Windows\system32\SMBHelperClass.dll
2009-11-15 08:39:17 ----A---- C:\Windows\system32\slcinst.dll
2009-11-15 08:39:17 ----A---- C:\Windows\system32\rasdial.exe
2009-11-15 08:39:17 ----A---- C:\Windows\system32\rasdiag.dll
2009-11-15 08:39:17 ----A---- C:\Windows\system32\nslookup.exe
2009-11-15 08:39:17 ----A---- C:\Windows\system32\networkitemfactory.dll
2009-11-15 08:39:17 ----A---- C:\Windows\system32\msfeedsbs.dll
2009-11-15 08:39:17 ----A---- C:\Windows\system32\ipconfig.exe
2009-11-15 08:39:17 ----A---- C:\Windows\system32\CHxReadingStringIME.dll
2009-11-15 08:39:17 ----A---- C:\Windows\system32\fdWCN.dll
2009-11-15 08:39:17 ----A---- C:\Windows\system32\eappcfg.dll
2009-11-15 08:39:17 ----A---- C:\Windows\system32\dot3cfg.dll
2009-11-15 08:39:17 ----A---- C:\Windows\system32\cscdll.dll
2009-11-15 08:39:17 ----A---- C:\Windows\system32\bthudtask.exe
2009-11-15 08:39:17 ----A---- C:\Windows\system32\bthci.dll
2009-11-15 08:39:16 ----A---- C:\Windows\system32\PNPXAssoc.dll
2009-11-15 08:39:16 ----A---- C:\Windows\system32\ocsetup.exe
2009-11-15 08:39:16 ----A---- C:\Windows\system32\mmcico.dll
2009-11-15 08:39:16 ----A---- C:\Windows\system32\hbaapi.dll
2009-11-15 08:39:16 ----A---- C:\Windows\system32\gpupdate.exe
2009-11-15 08:39:16 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2009-11-15 08:39:16 ----A---- C:\Windows\system32\fdeploy.dll
2009-11-15 08:39:16 ----A---- C:\Windows\system32\eappgnui.dll
2009-11-15 08:39:15 ----A---- C:\Windows\system32\NcdProp.dll
2009-11-15 08:39:15 ----A---- C:\Windows\system32\iscsilog.dll
2009-11-15 08:39:15 ----A---- C:\Windows\system32\csrstub.exe
2009-11-15 08:39:15 ----A---- C:\Windows\system32\cbsra.exe
2009-11-15 08:39:15 ----A---- C:\Windows\system32\bitsigd.dll
2009-11-15 08:39:14 ----A---- C:\Windows\system32\winrnr.dll
2009-11-15 08:39:14 ----A---- C:\Windows\system32\vdmdbg.dll
2009-11-15 08:39:14 ----A---- C:\Windows\system32\slwga.dll
2009-11-15 08:39:14 ----A---- C:\Windows\system32\odbcconf.dll
2009-11-15 08:39:14 ----A---- C:\Windows\system32\midimap.dll
2009-11-15 08:39:14 ----A---- C:\Windows\system32\inetppui.dll
2009-11-15 08:39:11 ----A---- C:\Windows\system32\msimsg.dll
2009-11-15 08:39:11 ----A---- C:\Windows\system32\f3ahvoas.dll
2009-11-15 08:38:58 ----A---- C:\Windows\system32\SmiEngine.dll
2009-11-15 08:38:55 ----A---- C:\Windows\system32\wdscore.dll
2009-11-15 08:38:55 ----A---- C:\Windows\system32\PkgMgr.exe
2009-11-15 08:38:43 ----A---- C:\Windows\system32\drvstore.dll
2009-11-14 16:27:10 ----N---- C:\Windows\system32\WNASPINT.DLL
2009-11-14 16:27:08 ----N---- C:\Windows\system32\Machnm1.exe
2009-11-14 16:27:08 ----A---- C:\Windows\system32\msvcp50.dll
2009-11-14 16:26:43 ----D---- C:\Program Files\Common Files\InstallShield
2009-11-14 15:45:51 ----N---- C:\Windows\system32\gdiplus.dll
2009-11-14 15:45:51 ----A---- C:\Windows\system32\picn20.dll
2009-11-14 15:45:51 ----A---- C:\Windows\system32\imagx5.dll
2009-11-14 15:45:51 ----A---- C:\Windows\system32\imagr5.dll
2009-11-14 15:45:51 ----A---- C:\Windows\system32\FGWVB32.DLL
2009-11-14 15:45:51 ----A---- C:\Windows\system32\AviProcessor.dll
2009-11-14 15:45:50 ----A---- C:\Windows\system32\ImagXpr5.dll
2009-11-14 15:45:49 ----A---- C:\Windows\system32\Huffyuv.dll
2009-11-14 15:45:49 ----A---- C:\Windows\system32\camcodec.dll
2009-11-14 15:45:49 ----A---- C:\Windows\system32\avizlib.dll

======List of files/folders modified in the last 1 months======

2009-12-13 15:29:32 ----D---- C:\Windows
2009-12-13 15:28:58 ----D---- C:\ProgramData\Spybot - Search & Destroy
2009-12-13 15:22:35 ----D---- C:\Users\Dodo\AppData\Roaming\Skype
2009-12-13 15:18:51 ----D---- C:\Windows\system32\drivers
2009-12-13 11:58:49 ----D---- C:\Users\Dodo\AppData\Roaming\skypePM
2009-12-13 11:42:11 ----D---- C:\Windows\System32
2009-12-13 11:42:11 ----D---- C:\Windows\inf
2009-12-13 11:42:11 ----A---- C:\Windows\system32\PerfStringBackup.INI
2009-12-13 11:39:30 ----D---- C:\Windows\Prefetch
2009-12-13 11:35:58 ----RD---- C:\Program Files
2009-12-13 11:35:58 ----D---- C:\ProgramData
2009-12-13 11:35:57 ----HD---- C:\Program Files\InstallShield Installation Information
2009-12-13 11:35:53 ----SHD---- C:\System Volume Information
2009-12-13 11:14:12 ----N---- C:\Windows\system.ini
2009-12-13 11:11:45 ----D---- C:\Windows\AppPatch
2009-12-13 11:11:45 ----D---- C:\Program Files\Common Files
2009-12-13 10:46:08 ----SD---- C:\ProgramData\Microsoft
2009-12-12 19:12:56 ----D---- C:\Program Files\Mozilla Firefox
2009-12-11 17:41:14 ----D---- C:\Windows\rescache
2009-12-11 08:38:25 ----SD---- C:\Users\Dodo\AppData\Roaming\Microsoft
2009-12-10 19:25:27 ----SHD---- C:\Windows\Installer
2009-12-09 20:12:10 ----D---- C:\Windows\Debug
2009-12-09 18:38:37 ----D---- C:\Program Files\BS_Player
2009-12-09 08:55:32 ----D---- C:\Windows\winsxs
2009-12-09 08:45:22 ----D---- C:\Windows\system32\catroot
2009-12-09 08:45:21 ----D---- C:\Windows\system32\catroot2
2009-12-09 08:42:36 ----D---- C:\Windows\system32\en-US
2009-12-09 08:42:35 ----D---- C:\Program Files\Windows Mail
2009-12-03 10:47:00 ----D---- C:\Users\Dodo\AppData\Roaming\Adobe
2009-12-01 20:06:19 ----A---- C:\Windows\system32\mrt.exe
2009-11-27 08:57:10 ----D---- C:\Windows\system32\sk-SK
2009-11-24 23:54:29 ----A---- C:\Windows\system32\aswBoot.exe
2009-11-22 14:21:05 ----D---- C:\PerfLogs
2009-11-22 14:15:48 ----D---- C:\Windows\system32\codec
2009-11-20 11:47:40 ----A---- C:\Windows\NeroDigital.ini
2009-11-16 21:10:42 ----D---- C:\Windows\system32\WDI
2009-11-16 18:44:22 ----D---- C:\Windows\system32\Tasks
2009-11-16 18:43:01 ----D---- C:\Windows\WindowsMobile
2009-11-16 18:36:30 ----D---- C:\Windows\system32\wbem
2009-11-16 18:36:29 ----D---- C:\Windows\system32\zh-TW
2009-11-16 18:36:29 ----D---- C:\Windows\system32\zh-HK
2009-11-16 18:36:29 ----D---- C:\Windows\system32\zh-CN
2009-11-16 18:36:29 ----D---- C:\Windows\system32\uk-UA
2009-11-16 18:36:29 ----D---- C:\Windows\system32\tr-TR
2009-11-16 18:36:29 ----D---- C:\Windows\system32\th-TH
2009-11-16 18:36:29 ----D---- C:\Windows\system32\sv-SE
2009-11-16 18:36:29 ----D---- C:\Windows\system32\sr-Latn-CS
2009-11-16 18:36:29 ----D---- C:\Windows\system32\sl-SI
2009-11-16 18:36:29 ----D---- C:\Windows\system32\ru-RU
2009-11-16 18:36:29 ----D---- C:\Windows\system32\ro-RO
2009-11-16 18:36:29 ----D---- C:\Windows\system32\pt-PT
2009-11-16 18:36:29 ----D---- C:\Windows\system32\pt-BR
2009-11-16 18:36:29 ----D---- C:\Windows\system32\pl-PL
2009-11-16 18:36:29 ----D---- C:\Windows\system32\nl-NL
2009-11-16 18:36:29 ----D---- C:\Windows\system32\nb-NO
2009-11-16 18:36:29 ----D---- C:\Windows\system32\lv-LV
2009-11-16 18:36:29 ----D---- C:\Windows\system32\lt-LT
2009-11-16 18:36:29 ----D---- C:\Windows\system32\ko-KR
2009-11-16 18:36:29 ----D---- C:\Windows\system32\ja-JP
2009-11-16 18:36:29 ----D---- C:\Windows\system32\it-IT
2009-11-16 18:36:29 ----D---- C:\Windows\system32\hu-HU
2009-11-16 18:36:29 ----D---- C:\Windows\system32\hr-HR
2009-11-16 18:36:29 ----D---- C:\Windows\system32\he-IL
2009-11-16 18:36:29 ----D---- C:\Windows\system32\fr-FR
2009-11-16 18:36:29 ----D---- C:\Windows\system32\fi-FI
2009-11-16 18:36:29 ----D---- C:\Windows\system32\et-EE
2009-11-16 18:36:29 ----D---- C:\Windows\system32\es-ES
2009-11-16 18:36:29 ----D---- C:\Windows\system32\el-GR
2009-11-16 18:36:29 ----D---- C:\Windows\system32\de-DE
2009-11-16 18:36:29 ----D---- C:\Windows\system32\cs-CZ
2009-11-16 18:36:29 ----D---- C:\Windows\system32\bg-BG
2009-11-16 18:36:29 ----D---- C:\Windows\system32\ar-SA
2009-11-16 18:36:28 ----D---- C:\Windows\system32\da-DK
2009-11-16 18:32:34 ----D---- C:\Windows\system32\LogFiles
2009-11-15 17:32:56 ----D---- C:\Windows\Microsoft.NET
2009-11-15 17:32:49 ----RSD---- C:\Windows\assembly
2009-11-15 11:07:24 ----D---- C:\Boot
2009-11-15 11:01:35 ----D---- C:\Program Files\Windows Sidebar
2009-11-15 11:01:35 ----D---- C:\Program Files\Windows Calendar
2009-11-15 11:01:35 ----D---- C:\Program Files\Movie Maker
2009-11-15 11:01:34 ----D---- C:\Program Files\Internet Explorer
2009-11-15 11:01:31 ----D---- C:\Program Files\Windows Photo Gallery
2009-11-15 11:01:31 ----D---- C:\Program Files\Windows Media Player
2009-11-15 11:01:31 ----D---- C:\Program Files\Windows Collaboration
2009-11-15 11:01:31 ----D---- C:\Program Files\Common Files\System
2009-11-15 11:01:30 ----D---- C:\Windows\servicing
2009-11-15 11:01:30 ----D---- C:\Windows\ehome
2009-11-15 11:01:30 ----D---- C:\Program Files\Windows Defender
2009-11-15 11:01:29 ----D---- C:\Windows\IME
2009-11-15 11:01:28 ----D---- C:\Windows\system32\XPSViewer
2009-11-15 11:01:28 ----D---- C:\Windows\system32\oobe
2009-11-15 11:01:28 ----D---- C:\Windows\system32\migration
2009-11-15 11:01:27 ----D---- C:\Windows\system32\SLUI
2009-11-15 11:01:27 ----D---- C:\Windows\system32\setup
2009-11-15 11:01:27 ----D---- C:\Windows\system32\AdvancedInstallers
2009-11-15 11:01:26 ----D---- C:\Windows\system32\manifeststore
2009-11-15 11:01:26 ----D---- C:\Windows\system32\en
2009-11-15 11:01:21 ----D---- C:\Windows\system32\migwiz
2009-11-15 11:01:13 ----RSD---- C:\Windows\Fonts
2009-11-15 11:01:07 ----D---- C:\Windows\system32\Boot

dodo65
Návštěvník
Návštěvník
Příspěvky: 99
Registrován: 02 říj 2009 13:37

Re: Prosim o kontrolu pc

#20 Příspěvek od dodo65 »

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2009-11-24 23120]
R1 aswSP;avast! Self Protection; C:\Windows\system32\drivers\aswSP.sys [2009-09-15 114768]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2009-11-24 48560]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\DRIVERS\aswFsBlk.sys [2009-09-15 20560]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\DRIVERS\aswMonFlt.sys [2009-09-15 53328]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2009-09-30 1184768]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2008-12-01 4179968]
R3 BthEnum;Bluetooth Enumerator Service; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-11 22528]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-21 92160]
R3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2009-04-11 29696]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-21 14208]
R3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2009-04-11 236544]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATKACPI.sys [2006-12-14 7680]
R3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2009-11-11 47360]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-11 148992]
R3 RTHDMIAzAudService;Service for HDMI; C:\Windows\system32\drivers\RtHDMIV.sys [2009-09-25 159232]
R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSGB6.sys [2008-05-02 48128]
R3 usbvideo;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2009-04-11 507904]
S3 catchme;catchme; \??\C:\Users\Dodo\AppData\Local\Temp\catchme.sys []
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 smserial;smserial; C:\Windows\system32\DRIVERS\smserial.sys [2006-11-02 1010560]
S3 usb_rndisx;USB RNDIS Adapter; C:\Windows\system32\DRIVERS\usb8023x.sys [2009-04-11 15872]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
S3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller; C:\Windows\system32\DRIVERS\yk60x86.sys [2006-11-02 194048]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]
S4 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2008-01-21 88576]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-21 11264]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-11-24 18752]
R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [2008-12-01 720896]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-11-24 138680]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2008-06-09 73728]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 SBSDWSCService;SBSD Security Center Service; D:\Program files\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-11-24 254040]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-11-24 352920]
R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2007-06-27 279848]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-06-29 800040]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]

-----------------EOF-----------------

dodo65
Návštěvník
Návštěvník
Příspěvky: 99
Registrován: 02 říj 2009 13:37

Re: Prosim o kontrolu pc

#21 Příspěvek od dodo65 »

Ano toto je ta fleska Removable Disk # 15,05 Go (12,5 Go free) [CORSAIR] # FAT32
Chcem sa opytat ci uz je v poriadku.Pocitac ju detekuje a po chvili zase nie.Dakujem

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Prosim o kontrolu pc

#22 Příspěvek od motji »

:arrow: Smažte
C:\UsbFix.txt
C:\UsbFix
C:\ComboFix.txt

Jsou s počítačem ještě nějaké problémy?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

dodo65
Návštěvník
Návštěvník
Příspěvky: 99
Registrován: 02 říj 2009 13:37

Re: Prosim o kontrolu pc

#23 Příspěvek od dodo65 »

Pc ide zatial v pohode.Dakujem.Chcem sa opytat co mam robit s tou flashkou?

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Prosim o kontrolu pc

#24 Příspěvek od motji »

Na flešce nic nevidím, žádnouinfekci. Zkuste ji naformátovat.
Nedetekuje znamená co? že když jí zapojíte do pc, že se nenačte vůbec, nebo že se akorát automaticky neotevře? Po combofixu máte vypnutý autorun :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

dodo65
Návštěvník
Návštěvník
Příspěvky: 99
Registrován: 02 říj 2009 13:37

Re: Prosim o kontrolu pc

#25 Příspěvek od dodo65 »

Ked ju pripojim do usb tak ju nacita aj otvori a ked ukladam na nu data tak po chvyli napise problem pri detektovani usb a vypne ju.Teraz som ju dal formatovat tak uvidim.Dakujem.Este sa chcem opytat ako spustim ten autorun.

dodo65
Návštěvník
Návštěvník
Příspěvky: 99
Registrován: 02 říj 2009 13:37

Re: Prosim o kontrolu pc

#26 Příspěvek od dodo65 »

Pc pise usb zariadenie nie je rozpoznane.Co sa da s tym spravit?Dakujem

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Prosim o kontrolu pc

#27 Příspěvek od motji »

Formátoval jse ho fat32 nebo ntfs?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

dodo65
Návštěvník
Návštěvník
Příspěvky: 99
Registrován: 02 říj 2009 13:37

Re: Prosim o kontrolu pc

#28 Příspěvek od dodo65 »

Formatoval som ho vo fat32

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Prosim o kontrolu pc

#29 Příspěvek od motji »

běžte do správce zařízení, odinstalujte všechny usb drivery, restartujte počítač, zapojte flešku a nechte drivery znovu načíst
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

dodo65
Návštěvník
Návštěvník
Příspěvky: 99
Registrován: 02 říj 2009 13:37

Re: Prosim o kontrolu pc

#30 Příspěvek od dodo65 »

Spravil som to.Chvilu ju nacitalo a potom napisal zariadenie usb nie je rozpoznane.

Odpovědět