
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Pre motji
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pre motji
Logfile of random's system information tool 1.06 (written by random/random)
Run by Administrátor at 2010-01-30 22:04:06
Microsoft® Windows Vista™ Home Basic Service Pack 2
System drive C: has 112 GB (84%) free of 133 GB
Total RAM: 2039 MB (52% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:04:22, on 30. 1. 2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18882)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\pthosttr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\VolCtrl.exe
C:\Program Files\Hewlett-Packard\HP wireless Assistant\WiFiMsg.EXE
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Používateľ\Downloads\RSIT.exe
C:\Program Files\trend micro\Administrátor.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [PTHOSTTR] C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE /Start
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
O4 - HKLM\..\RunOnce: [*WerKernelReporting] %SYSTEMROOT%\SYSTEM32\WerFault.exe -k -rq
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O13 - Gopher Prefix:
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\Windows\system32\guard32.dll
O20 - Winlogon Notify: DeviceNP - C:\Windows\SYSTEM32\DeviceNP.dll
O23 - Service: Andrea ADI Filters Service (AEADIFilters) - Andrea Electronics Corporation - C:\Windows\system32\AEADISRV.EXE
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Windows\system32\agrsmsvc.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: HP ProtectTools Device Locking / Auditing (FLCDLOCK) - Hewlett-Packard Ltd - C:\Windows\system32\flcdlock.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
--
End of file - 5416 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
"PTHOSTTR"=C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE [2007-01-09 145184]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2008-03-27 1045800]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2008-05-22 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2008-05-22 166424]
"Persistence"=C:\Windows\system32\igfxpers.exe [2008-05-22 133656]
"QlbCtrl.exe"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2008-05-14 177456]
"hpWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2008-04-15 488752]
"avast5"=C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe [2010-01-28 2757512]
"SoundMAXPnP"=C:\Program Files\Analog Devices\Core\smax4pnp.exe [2007-02-21 1183744]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cfp.exe [2010-01-27 1800464]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"*WerKernelReporting"=C:\Windows\SYSTEM32\WerFault.exe [2009-04-10 217088]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-10 1233920]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Health Check Scheduler]
c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe [2008-04-15 70912]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2008-03-17 2289664]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files\Skype\Phone\Skype.exe [2009-10-09 25623336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"=" C:\Windows\system32\guard32.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\DeviceNP]
C:\Windows\system32\DeviceNP.dll [2007-06-08 49152]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2008-02-11 204800]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2010-01-30 22:04:07 ----D---- C:\Program Files\trend micro
2010-01-30 22:04:06 ----D---- C:\rsit
2010-01-29 18:59:20 ----D---- C:\Windows\Minidump
2010-01-28 14:22:43 ----D---- C:\Program Files\Lavalys
2010-01-27 15:29:39 ----D---- C:\Users\Administrátor\AppData\Roaming\Macromedia
2010-01-27 15:29:39 ----D---- C:\Users\Administrátor\AppData\Roaming\Adobe
2010-01-27 15:29:14 ----D---- C:\Users\Administrátor\AppData\Roaming\Mozilla
2010-01-27 15:26:48 ----A---- C:\Windows\system32\WMPhoto.dll
2010-01-27 15:26:46 ----A---- C:\Windows\system32\cdd.dll
2010-01-27 15:26:45 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2010-01-27 15:26:45 ----A---- C:\Windows\system32\d3d10warp.dll
2010-01-27 15:26:44 ----A---- C:\Windows\system32\XpsRasterService.dll
2010-01-27 15:26:44 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2010-01-27 15:26:44 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2010-01-27 15:26:44 ----A---- C:\Windows\system32\WindowsCodecs.dll
2010-01-27 15:26:44 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2010-01-27 15:26:44 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2010-01-27 15:26:44 ----A---- C:\Windows\system32\dxdiagn.dll
2010-01-27 15:26:44 ----A---- C:\Windows\system32\dxdiag.exe
2010-01-27 15:26:44 ----A---- C:\Windows\system32\d2d1.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\xpsservices.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\XpsPrint.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\OpcServices.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\FntCache.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\dxgi.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\DWrite.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\d3d11.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\d3d10level9.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\d3d10core.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\d3d10_1core.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\d3d10_1.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\d3d10.dll
2010-01-27 14:54:09 ----D---- C:\ProgramData\Comodo
2010-01-27 14:54:07 ----A---- C:\Windows\system32\guard32.dll
2010-01-27 14:54:03 ----D---- C:\Program Files\COMODO
2010-01-27 14:38:14 ----A---- C:\Windows\system32\tzres.dll
2010-01-27 14:37:37 ----A---- C:\Windows\system32\nshhttp.dll
2010-01-27 14:37:37 ----A---- C:\Windows\system32\httpapi.dll
2010-01-27 14:37:30 ----A---- C:\Windows\system32\winhttp.dll
2010-01-26 16:11:30 ----A---- C:\Windows\system32\wdigest.dll
2010-01-26 16:11:30 ----A---- C:\Windows\system32\msv1_0.dll
2010-01-26 16:11:30 ----A---- C:\Windows\system32\kerberos.dll
2010-01-26 16:11:29 ----A---- C:\Windows\system32\schannel.dll
2010-01-26 16:11:29 ----A---- C:\Windows\system32\secur32.dll
2010-01-26 16:11:29 ----A---- C:\Windows\system32\lsass.exe
2010-01-26 16:11:29 ----A---- C:\Windows\system32\lsasrv.dll
2010-01-26 16:11:21 ----A---- C:\Windows\system32\Apphlpdm.dll
2010-01-26 16:11:20 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2010-01-26 16:09:08 ----N---- C:\Windows\system32\MpSigStub.exe
2010-01-26 15:58:30 ----D---- C:\Windows\system32\ca-ES
2010-01-26 15:58:29 ----D---- C:\Windows\system32\vi-VN
2010-01-26 15:58:29 ----D---- C:\Windows\system32\eu-ES
2010-01-26 15:55:25 ----D---- C:\Windows\system32\SPReview
2010-01-26 15:45:58 ----A---- C:\Windows\system32\scavenge.dll
2010-01-26 15:45:51 ----A---- C:\Windows\system32\compcln.exe
2010-01-26 15:41:50 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2010-01-26 15:41:50 ----A---- C:\Windows\system32\secproc_ssp.dll
2010-01-26 15:41:50 ----A---- C:\Windows\system32\secproc_isv.dll
2010-01-26 15:41:50 ----A---- C:\Windows\system32\secproc.dll
2010-01-26 15:41:50 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2010-01-26 15:41:50 ----A---- C:\Windows\system32\SearchIndexer.exe
2010-01-26 15:41:50 ----A---- C:\Windows\system32\SearchFilterHost.exe
2010-01-26 15:41:50 ----A---- C:\Windows\system32\sdohlp.dll
2010-01-26 15:41:50 ----A---- C:\Windows\system32\sdclt.exe
2010-01-26 15:41:49 ----A---- C:\Windows\system32\samlib.dll
2010-01-26 15:41:49 ----A---- C:\Windows\system32\rtutils.dll
2010-01-26 15:41:49 ----A---- C:\Windows\system32\rtffilt.dll
2010-01-26 15:41:49 ----A---- C:\Windows\system32\rsaenh.dll
2010-01-26 15:41:49 ----A---- C:\Windows\system32\rrinstaller.exe
2010-01-26 15:41:49 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2010-01-26 15:41:49 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2010-01-26 15:41:49 ----A---- C:\Windows\system32\RMActivate_isv.exe
2010-01-26 15:41:49 ----A---- C:\Windows\system32\riched20.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\scrrun.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\SCardSvr.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\scansetting.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\samsrv.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\rpchttp.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\rpcss.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\rpcrt4.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\RMActivate.exe
2010-01-26 15:41:47 ----A---- C:\Windows\system32\schedsvc.dll
2010-01-26 15:41:47 ----A---- C:\Windows\system32\scrobj.dll
2010-01-26 15:41:47 ----A---- C:\Windows\system32\scksp.dll
2010-01-26 15:41:47 ----A---- C:\Windows\system32\scesrv.dll
2010-01-26 15:41:47 ----A---- C:\Windows\system32\scecli.dll
2010-01-26 15:41:46 ----A---- C:\Windows\system32\pdh.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\powercpl.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\PNPXAssoc.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\PnPutil.exe
2010-01-26 15:41:45 ----A---- C:\Windows\system32\PnPUnattend.exe
2010-01-26 15:41:45 ----A---- C:\Windows\system32\pnpui.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\pnpsetup.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\pnidui.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\perfdisk.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\pcaui.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\p2psvc.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\P2PGraph.dll
2010-01-26 15:41:44 ----A---- C:\Windows\system32\PkgMgr.exe
2010-01-26 15:41:44 ----A---- C:\Windows\system32\pidgenx.dll
2010-01-26 15:41:44 ----A---- C:\Windows\system32\photowiz.dll
2010-01-26 15:41:44 ----A---- C:\Windows\system32\ntkrnlpa.exe
2010-01-26 15:41:44 ----A---- C:\Windows\system32\ntdll.dll
2010-01-26 15:41:44 ----A---- C:\Windows\system32\nslookup.exe
2010-01-26 15:41:43 ----A---- C:\Windows\system32\osk.exe
2010-01-26 15:41:43 ----A---- C:\Windows\system32\oobefldr.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\onex.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\olepro32.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\oleprn.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\oleaut32.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\ole32.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\offfilt.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\odbccp32.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\odbcconf.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\odbc32.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\nlhtml.dll
2010-01-26 15:41:42 ----A---- C:\Windows\system32\rasgcw.dll
2010-01-26 15:41:42 ----A---- C:\Windows\system32\rasdlg.dll
2010-01-26 15:41:42 ----A---- C:\Windows\system32\rasdial.exe
2010-01-26 15:41:42 ----A---- C:\Windows\system32\ocsetup.exe
2010-01-26 15:41:42 ----A---- C:\Windows\system32\ntprint.dll
2010-01-26 15:41:42 ----A---- C:\Windows\system32\ntoskrnl.exe
2010-01-26 15:41:42 ----A---- C:\Windows\system32\ntmarta.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rastls.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rastapi.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rasppp.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rasplap.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rasmontr.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rasmans.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\raschap.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rasdiag.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rasapi32.dll
2010-01-26 15:41:40 ----A---- C:\Windows\system32\Query.dll
2010-01-26 15:41:40 ----A---- C:\Windows\system32\quartz.dll
2010-01-26 15:41:40 ----A---- C:\Windows\system32\qmgr.dll
2010-01-26 15:41:40 ----A---- C:\Windows\system32\qedit.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\RelMon.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\rekeywiz.exe
2010-01-26 15:41:39 ----A---- C:\Windows\system32\regsvc.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\regapi.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\reg.exe
2010-01-26 15:41:39 ----A---- C:\Windows\system32\rdpwsx.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\rdpencom.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\RacEngn.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\prnntfy.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\printui.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\PresentationHost.exe
2010-01-26 15:41:38 ----A---- C:\Windows\system32\qdvd.dll
2010-01-26 15:41:38 ----A---- C:\Windows\system32\QAGENTRT.DLL
2010-01-26 15:41:38 ----A---- C:\Windows\system32\puiapi.dll
2010-01-26 15:41:38 ----A---- C:\Windows\system32\propsys.dll
2010-01-26 15:41:38 ----A---- C:\Windows\system32\propdefs.dll
2010-01-26 15:41:38 ----A---- C:\Windows\system32\profsvc.dll
2010-01-26 15:41:38 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2010-01-26 15:41:38 ----A---- C:\Windows\system32\powrprof.dll
2010-01-26 15:41:37 ----A---- C:\Windows\system32\psisdecd.dll
2010-01-26 15:41:37 ----A---- C:\Windows\system32\PSHED.DLL
2010-01-26 15:41:36 ----A---- C:\Windows\system32\shlwapi.dll
2010-01-26 15:41:36 ----A---- C:\Windows\system32\shell32.dll
2010-01-26 15:41:36 ----A---- C:\Windows\system32\shdocvw.dll
2010-01-26 15:41:36 ----A---- C:\Windows\system32\sendmail.dll
2010-01-26 15:41:35 ----A---- C:\Windows\system32\setupapi.dll
2010-01-26 15:41:35 ----A---- C:\Windows\system32\sethc.exe
2010-01-26 15:41:35 ----A---- C:\Windows\system32\services.exe
2010-01-26 15:41:32 ----A---- C:\Windows\system32\eapphost.dll
2010-01-26 15:41:32 ----A---- C:\Windows\system32\eappgnui.dll
2010-01-26 15:41:31 ----A---- C:\Windows\system32\evr.dll
2010-01-26 15:41:31 ----A---- C:\Windows\system32\EhStorAPI.dll
2010-01-26 15:41:31 ----A---- C:\Windows\system32\eappcfg.dll
2010-01-26 15:41:31 ----A---- C:\Windows\system32\eapp3hst.dll
2010-01-26 15:41:31 ----A---- C:\Windows\system32\dxmasf.dll
2010-01-26 15:41:31 ----A---- C:\Windows\system32\dwm.exe
2010-01-26 15:41:31 ----A---- C:\Windows\system32\dsprop.dll
2010-01-26 15:41:31 ----A---- C:\Windows\system32\dsound.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\f3ahvoas.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\ExplorerFrame.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\eudcedit.exe
2010-01-26 15:41:30 ----A---- C:\Windows\system32\esent.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\es.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\EncDec.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\emdmgmt.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\EhStorShell.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\EhStorPwdMgr.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\EhStorAuthn.dll
2010-01-26 15:41:30 ----A---- C:\Windows\explorer.exe
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dpapimig.exe
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dot3svc.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dot3msm.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dot3cfg.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\diskraid.exe
2010-01-26 15:41:29 ----A---- C:\Windows\system32\diskpart.exe
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dimsroam.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\diagperf.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dhcpcsvc.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dfsr.exe
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dfshim.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\devmgr.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\hbaapi.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\gpresult.exe
2010-01-26 15:41:28 ----A---- C:\Windows\system32\drvstore.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\drvinst.exe
2010-01-26 15:41:28 ----A---- C:\Windows\system32\drmv2clt.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\drmmgrtn.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\dnsrslvr.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\dnsapi.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\dmusic.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\dmsynth.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\iasnap.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\IasMigReader.exe
2010-01-26 15:41:27 ----A---- C:\Windows\system32\IasMigPlugin.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\iashlpr.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\iasdatastore.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\iasads.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\iasacct.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\hidserv.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\hdwwiz.exe
2010-01-26 15:41:27 ----A---- C:\Windows\system32\gpupdate.exe
2010-01-26 15:41:27 ----A---- C:\Windows\system32\gpsvc.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\fontext.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\gpapi.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\gdi32.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\findstr.exe
2010-01-26 15:41:26 ----A---- C:\Windows\system32\feclient.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fdWSD.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fdWCN.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fdSSDP.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fdProxy.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fdeploy.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fdBthProxy.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fdBth.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fc.exe
2010-01-26 15:41:26 ----A---- C:\Windows\system32\Faultrep.dll
2010-01-26 15:41:25 ----A---- C:\Windows\system32\gpedit.dll
2010-01-26 15:41:25 ----A---- C:\Windows\system32\gameux.dll
2010-01-26 15:41:25 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2010-01-26 15:41:25 ----A---- C:\Windows\system32\fundisc.dll
2010-01-26 15:41:25 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll
2010-01-26 15:41:25 ----A---- C:\Windows\system32\ftp.exe
2010-01-26 15:41:25 ----A---- C:\Windows\system32\fsquirt.exe
2010-01-26 15:41:24 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2010-01-26 15:41:24 ----A---- C:\Windows\system32\autoplay.dll
2010-01-26 15:41:24 ----A---- C:\Windows\system32\autochk.exe
2010-01-26 15:41:24 ----A---- C:\Windows\system32\autofmt.exe
2010-01-26 15:41:24 ----A---- C:\Windows\system32\autoconv.exe
2010-01-26 15:41:24 ----A---- C:\Windows\system32\authz.dll
2010-01-26 15:41:24 ----A---- C:\Windows\system32\authui.dll
2010-01-26 15:41:24 ----A---- C:\Windows\system32\audiosrv.dll
2010-01-26 15:41:24 ----A---- C:\Windows\system32\AudioSes.dll
2010-01-26 15:41:24 ----A---- C:\Windows\system32\audiodg.exe
2010-01-26 15:41:24 ----A---- C:\Windows\system32\atmlib.dll
2010-01-26 15:41:24 ----A---- C:\Windows\system32\atmfd.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\bthci.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\browseui.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\brcpl.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\blackbox.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\bitsigd.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\BFE.DLL
2010-01-26 15:41:23 ----A---- C:\Windows\system32\bcrypt.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\basecsp.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\azroles.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\accessibilitycpl.dll
2010-01-26 15:41:22 ----A---- C:\Windows\system32\apphelp.dll
2010-01-26 15:41:22 ----A---- C:\Windows\system32\aaclient.dll
2010-01-26 15:41:21 ----A---- C:\Windows\system32\apds.dll
2010-01-26 15:41:21 ----A---- C:\Windows\system32\adsmsext.dll
2010-01-26 15:41:21 ----A---- C:\Windows\system32\adsldpc.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\crypt32.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\credui.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\connect.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\conime.exe
2010-01-26 15:41:20 ----A---- C:\Windows\system32\comuid.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\comsvcs.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\cmdial32.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\advapi32.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\adtschema.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\DevicePairingWizard.exe
2010-01-26 15:41:19 ----A---- C:\Windows\system32\DevicePairingProxy.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\DevicePairing.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\DeviceEject.exe
2010-01-26 15:41:19 ----A---- C:\Windows\system32\dbgeng.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\davclnt.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\dataclen.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\d3d9.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\cscdll.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\cscapi.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\comdlg32.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\cmmon32.exe
2010-01-26 15:41:18 ----A---- C:\Windows\system32\cryptui.dll
2010-01-26 15:41:17 ----A---- C:\Windows\system32\csrstub.exe
2010-01-26 15:41:17 ----A---- C:\Windows\system32\cscript.exe
2010-01-26 15:41:17 ----A---- C:\Windows\system32\cryptsvc.dll
2010-01-26 15:41:16 ----A---- C:\Windows\system32\certmgr.dll
2010-01-26 15:41:16 ----A---- C:\Windows\system32\CertEnrollUI.dll
2010-01-26 15:41:16 ----A---- C:\Windows\system32\CertEnroll.dll
2010-01-26 15:41:16 ----A---- C:\Windows\system32\certcli.dll
2010-01-26 15:41:15 ----A---- C:\Windows\system32\cbsra.exe
2010-01-26 15:41:15 ----A---- C:\Windows\system32\bthudtask.exe
2010-01-26 15:41:15 ----A---- C:\Windows\system32\bthserv.dll
2010-01-26 15:41:14 ----A---- C:\Windows\system32\CHxReadingStringIME.dll
2010-01-26 15:41:14 ----A---- C:\Windows\system32\chtbrkr.dll
2010-01-26 15:41:14 ----A---- C:\Windows\system32\chsbrkr.dll
2010-01-26 15:41:14 ----A---- C:\Windows\system32\cipher.exe
2010-01-26 15:41:14 ----A---- C:\Windows\system32\ci.dll
2010-01-26 15:41:13 ----A---- C:\Windows\system32\certutil.exe
2010-01-26 15:41:13 ----A---- C:\Windows\system32\certreq.exe
2010-01-26 15:41:13 ----A---- C:\Windows\system32\certprop.dll
2010-01-26 15:41:12 ----A---- C:\Windows\system32\msihnd.dll
2010-01-26 15:41:12 ----A---- C:\Windows\system32\msiexec.exe
2010-01-26 15:41:12 ----A---- C:\Windows\system32\msi.dll
2010-01-26 15:41:12 ----A---- C:\Windows\system32\msftedit.dll
2010-01-26 15:41:12 ----A---- C:\Windows\system32\msexch40.dll
2010-01-26 15:41:12 ----A---- C:\Windows\system32\msexcl40.dll
2010-01-26 15:41:12 ----A---- C:\Windows\system32\msdtctm.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\msimsg.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\msdtcprx.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\msdrm.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\msctfui.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\msctfp.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\MsCtfMonitor.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\msctf.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\MPSSVC.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\mprapi.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\mpr.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\MMDevAPI.dll
2010-01-26 15:41:10 ----A---- C:\Windows\system32\mscories.dll
2010-01-26 15:41:10 ----A---- C:\Windows\system32\mscorier.dll
2010-01-26 15:41:10 ----A---- C:\Windows\system32\mscms.dll
2010-01-26 15:41:10 ----A---- C:\Windows\system32\mscandui.dll
2010-01-26 15:41:10 ----A---- C:\Windows\system32\modemui.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\netplwiz.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\netlogon.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\netiohlp.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\netcenter.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\netapi32.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\ncryptui.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\ncrypt.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\mtxclu.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\mscoree.dll
2010-01-26 15:41:08 ----A---- C:\Windows\system32\NcdProp.dll
2010-01-26 15:41:08 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2010-01-26 15:41:08 ----A---- C:\Windows\system32\msxml6.dll
2010-01-26 15:41:08 ----A---- C:\Windows\system32\msxml3.dll
2010-01-26 15:41:07 ----A---- C:\Windows\system32\newdev.exe
2010-01-26 15:41:07 ----A---- C:\Windows\system32\newdev.dll
2010-01-26 15:41:07 ----A---- C:\Windows\system32\networkmap.dll
2010-01-26 15:41:07 ----A---- C:\Windows\system32\networkitemfactory.dll
2010-01-26 15:41:07 ----A---- C:\Windows\system32\networkexplorer.dll
2010-01-26 15:41:07 ----A---- C:\Windows\system32\netshell.dll
2010-01-26 15:41:06 ----A---- C:\Windows\system32\msscntrs.dll
2010-01-26 15:41:06 ----A---- C:\Windows\system32\msscb.dll
2010-01-26 15:41:06 ----A---- C:\Windows\system32\msrepl40.dll
2010-01-26 15:41:06 ----A---- C:\Windows\system32\msrd3x40.dll
2010-01-26 15:41:06 ----A---- C:\Windows\system32\msrd2x40.dll
2010-01-26 15:41:06 ----A---- C:\Windows\system32\mspbde40.dll
2010-01-26 15:41:06 ----A---- C:\Windows\system32\msnetobj.dll
2010-01-26 15:41:06 ----A---- C:\Windows\system32\msltus40.dll
2010-01-26 15:41:06 ----A---- C:\Windows\system32\msinfo32.exe
2010-01-26 15:41:06 ----A---- C:\Windows\system32\msimtf.dll
2010-01-26 15:41:05 ----A---- C:\Windows\system32\msvcp60.dll
2010-01-26 15:41:05 ----A---- C:\Windows\system32\msutb.dll
2010-01-26 15:41:05 ----A---- C:\Windows\system32\msjtes40.dll
2010-01-26 15:41:05 ----A---- C:\Windows\system32\msjter40.dll
2010-01-26 15:41:05 ----A---- C:\Windows\system32\msjint40.dll
2010-01-26 15:41:05 ----A---- C:\Windows\system32\msjetoledb40.dll
2010-01-26 15:41:05 ----A---- C:\Windows\system32\msjet40.dll
2010-01-26 15:41:05 ----A---- C:\Windows\system32\msisip.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\msxbde40.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\mswstr10.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\mswsock.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\mswdat10.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\MSVidCtl.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\msvcrt.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\mstscax.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\mstsc.exe
2010-01-26 15:41:04 ----A---- C:\Windows\system32\mstlsapi.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\mssvp.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\mssrch.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\mssprxy.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\mssphtb.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\mssph.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\mssitlb.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\msshsq.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\msshooks.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\msscp.dll
2010-01-26 15:41:03 ----A---- C:\Windows\system32\mstext40.dll
2010-01-26 15:41:03 ----A---- C:\Windows\system32\msstrc.dll
2010-01-26 15:41:03 ----A---- C:\Windows\system32\InkEd.dll
2010-01-26 15:41:03 ----A---- C:\Windows\system32\infocardapi.dll
2010-01-26 15:41:03 ----A---- C:\Windows\system32\inetppui.dll
2010-01-26 15:41:03 ----A---- C:\Windows\system32\inetpp.dll
2010-01-26 15:41:03 ----A---- C:\Windows\system32\inetcomm.dll
2010-01-26 15:41:02 ----A---- C:\Windows\system32\iscsilog.dll
2010-01-26 15:41:02 ----A---- C:\Windows\system32\ipsmsnap.dll
2010-01-26 15:41:02 ----A---- C:\Windows\system32\IPSECSVC.DLL
2010-01-26 15:41:02 ----A---- C:\Windows\system32\imm32.dll
2010-01-26 15:41:01 ----A---- C:\Windows\system32\ipsecsnp.dll
2010-01-26 15:41:01 ----A---- C:\Windows\system32\iphlpsvc.dll
2010-01-26 15:41:01 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2010-01-26 15:41:01 ----A---- C:\Windows\system32\ipconfig.exe
2010-01-26 15:41:01 ----A---- C:\Windows\system32\input.dll
2010-01-26 15:41:01 ----A---- C:\Windows\system32\ifmon.dll
2010-01-26 15:41:01 ----A---- C:\Windows\system32\icardres.dll
2010-01-26 15:41:01 ----A---- C:\Windows\system32\icardagt.exe
2010-01-26 15:41:01 ----A---- C:\Windows\system32\iassvcs.dll
2010-01-26 15:41:01 ----A---- C:\Windows\system32\iassdo.dll
2010-01-26 15:41:01 ----A---- C:\Windows\system32\iassam.dll
2010-01-26 15:41:01 ----A---- C:\Windows\system32\iasrecst.dll
2010-01-26 15:41:01 ----A---- C:\Windows\system32\iasrad.dll
2010-01-26 15:41:01 ----A---- C:\Windows\system32\iaspolcy.dll
2010-01-26 15:41:00 ----A---- C:\Windows\system32\IMJP10K.DLL
2010-01-26 15:41:00 ----A---- C:\Windows\system32\imapi2fs.dll
2010-01-26 15:41:00 ----A---- C:\Windows\system32\imapi2.dll
2010-01-26 15:41:00 ----A---- C:\Windows\system32\imapi.dll
2010-01-26 15:41:00 ----A---- C:\Windows\system32\IKEEXT.DLL
2010-01-26 15:40:58 ----A---- C:\Windows\system32\mfps.dll
2010-01-26 15:40:58 ----A---- C:\Windows\system32\mfpmp.exe
2010-01-26 15:40:58 ----A---- C:\Windows\system32\mfplat.dll
2010-01-26 15:40:58 ----A---- C:\Windows\system32\mferror.dll
2010-01-26 15:40:58 ----A---- C:\Windows\system32\mfc42u.dll
2010-01-26 15:40:58 ----A---- C:\Windows\system32\mfc42.dll
Run by Administrátor at 2010-01-30 22:04:06
Microsoft® Windows Vista™ Home Basic Service Pack 2
System drive C: has 112 GB (84%) free of 133 GB
Total RAM: 2039 MB (52% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:04:22, on 30. 1. 2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18882)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\pthosttr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\VolCtrl.exe
C:\Program Files\Hewlett-Packard\HP wireless Assistant\WiFiMsg.EXE
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Používateľ\Downloads\RSIT.exe
C:\Program Files\trend micro\Administrátor.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [PTHOSTTR] C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE /Start
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
O4 - HKLM\..\RunOnce: [*WerKernelReporting] %SYSTEMROOT%\SYSTEM32\WerFault.exe -k -rq
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O13 - Gopher Prefix:
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\Windows\system32\guard32.dll
O20 - Winlogon Notify: DeviceNP - C:\Windows\SYSTEM32\DeviceNP.dll
O23 - Service: Andrea ADI Filters Service (AEADIFilters) - Andrea Electronics Corporation - C:\Windows\system32\AEADISRV.EXE
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Windows\system32\agrsmsvc.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: HP ProtectTools Device Locking / Auditing (FLCDLOCK) - Hewlett-Packard Ltd - C:\Windows\system32\flcdlock.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
--
End of file - 5416 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
"PTHOSTTR"=C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE [2007-01-09 145184]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2008-03-27 1045800]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2008-05-22 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2008-05-22 166424]
"Persistence"=C:\Windows\system32\igfxpers.exe [2008-05-22 133656]
"QlbCtrl.exe"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2008-05-14 177456]
"hpWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2008-04-15 488752]
"avast5"=C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe [2010-01-28 2757512]
"SoundMAXPnP"=C:\Program Files\Analog Devices\Core\smax4pnp.exe [2007-02-21 1183744]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cfp.exe [2010-01-27 1800464]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"*WerKernelReporting"=C:\Windows\SYSTEM32\WerFault.exe [2009-04-10 217088]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-10 1233920]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Health Check Scheduler]
c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe [2008-04-15 70912]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2008-03-17 2289664]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files\Skype\Phone\Skype.exe [2009-10-09 25623336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"=" C:\Windows\system32\guard32.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\DeviceNP]
C:\Windows\system32\DeviceNP.dll [2007-06-08 49152]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2008-02-11 204800]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2010-01-30 22:04:07 ----D---- C:\Program Files\trend micro
2010-01-30 22:04:06 ----D---- C:\rsit
2010-01-29 18:59:20 ----D---- C:\Windows\Minidump
2010-01-28 14:22:43 ----D---- C:\Program Files\Lavalys
2010-01-27 15:29:39 ----D---- C:\Users\Administrátor\AppData\Roaming\Macromedia
2010-01-27 15:29:39 ----D---- C:\Users\Administrátor\AppData\Roaming\Adobe
2010-01-27 15:29:14 ----D---- C:\Users\Administrátor\AppData\Roaming\Mozilla
2010-01-27 15:26:48 ----A---- C:\Windows\system32\WMPhoto.dll
2010-01-27 15:26:46 ----A---- C:\Windows\system32\cdd.dll
2010-01-27 15:26:45 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2010-01-27 15:26:45 ----A---- C:\Windows\system32\d3d10warp.dll
2010-01-27 15:26:44 ----A---- C:\Windows\system32\XpsRasterService.dll
2010-01-27 15:26:44 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2010-01-27 15:26:44 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2010-01-27 15:26:44 ----A---- C:\Windows\system32\WindowsCodecs.dll
2010-01-27 15:26:44 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2010-01-27 15:26:44 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2010-01-27 15:26:44 ----A---- C:\Windows\system32\dxdiagn.dll
2010-01-27 15:26:44 ----A---- C:\Windows\system32\dxdiag.exe
2010-01-27 15:26:44 ----A---- C:\Windows\system32\d2d1.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\xpsservices.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\XpsPrint.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\OpcServices.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\FntCache.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\dxgi.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\DWrite.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\d3d11.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\d3d10level9.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\d3d10core.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\d3d10_1core.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\d3d10_1.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\d3d10.dll
2010-01-27 14:54:09 ----D---- C:\ProgramData\Comodo
2010-01-27 14:54:07 ----A---- C:\Windows\system32\guard32.dll
2010-01-27 14:54:03 ----D---- C:\Program Files\COMODO
2010-01-27 14:38:14 ----A---- C:\Windows\system32\tzres.dll
2010-01-27 14:37:37 ----A---- C:\Windows\system32\nshhttp.dll
2010-01-27 14:37:37 ----A---- C:\Windows\system32\httpapi.dll
2010-01-27 14:37:30 ----A---- C:\Windows\system32\winhttp.dll
2010-01-26 16:11:30 ----A---- C:\Windows\system32\wdigest.dll
2010-01-26 16:11:30 ----A---- C:\Windows\system32\msv1_0.dll
2010-01-26 16:11:30 ----A---- C:\Windows\system32\kerberos.dll
2010-01-26 16:11:29 ----A---- C:\Windows\system32\schannel.dll
2010-01-26 16:11:29 ----A---- C:\Windows\system32\secur32.dll
2010-01-26 16:11:29 ----A---- C:\Windows\system32\lsass.exe
2010-01-26 16:11:29 ----A---- C:\Windows\system32\lsasrv.dll
2010-01-26 16:11:21 ----A---- C:\Windows\system32\Apphlpdm.dll
2010-01-26 16:11:20 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2010-01-26 16:09:08 ----N---- C:\Windows\system32\MpSigStub.exe
2010-01-26 15:58:30 ----D---- C:\Windows\system32\ca-ES
2010-01-26 15:58:29 ----D---- C:\Windows\system32\vi-VN
2010-01-26 15:58:29 ----D---- C:\Windows\system32\eu-ES
2010-01-26 15:55:25 ----D---- C:\Windows\system32\SPReview
2010-01-26 15:45:58 ----A---- C:\Windows\system32\scavenge.dll
2010-01-26 15:45:51 ----A---- C:\Windows\system32\compcln.exe
2010-01-26 15:41:50 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2010-01-26 15:41:50 ----A---- C:\Windows\system32\secproc_ssp.dll
2010-01-26 15:41:50 ----A---- C:\Windows\system32\secproc_isv.dll
2010-01-26 15:41:50 ----A---- C:\Windows\system32\secproc.dll
2010-01-26 15:41:50 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2010-01-26 15:41:50 ----A---- C:\Windows\system32\SearchIndexer.exe
2010-01-26 15:41:50 ----A---- C:\Windows\system32\SearchFilterHost.exe
2010-01-26 15:41:50 ----A---- C:\Windows\system32\sdohlp.dll
2010-01-26 15:41:50 ----A---- C:\Windows\system32\sdclt.exe
2010-01-26 15:41:49 ----A---- C:\Windows\system32\samlib.dll
2010-01-26 15:41:49 ----A---- C:\Windows\system32\rtutils.dll
2010-01-26 15:41:49 ----A---- C:\Windows\system32\rtffilt.dll
2010-01-26 15:41:49 ----A---- C:\Windows\system32\rsaenh.dll
2010-01-26 15:41:49 ----A---- C:\Windows\system32\rrinstaller.exe
2010-01-26 15:41:49 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2010-01-26 15:41:49 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2010-01-26 15:41:49 ----A---- C:\Windows\system32\RMActivate_isv.exe
2010-01-26 15:41:49 ----A---- C:\Windows\system32\riched20.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\scrrun.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\SCardSvr.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\scansetting.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\samsrv.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\rpchttp.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\rpcss.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\rpcrt4.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\RMActivate.exe
2010-01-26 15:41:47 ----A---- C:\Windows\system32\schedsvc.dll
2010-01-26 15:41:47 ----A---- C:\Windows\system32\scrobj.dll
2010-01-26 15:41:47 ----A---- C:\Windows\system32\scksp.dll
2010-01-26 15:41:47 ----A---- C:\Windows\system32\scesrv.dll
2010-01-26 15:41:47 ----A---- C:\Windows\system32\scecli.dll
2010-01-26 15:41:46 ----A---- C:\Windows\system32\pdh.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\powercpl.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\PNPXAssoc.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\PnPutil.exe
2010-01-26 15:41:45 ----A---- C:\Windows\system32\PnPUnattend.exe
2010-01-26 15:41:45 ----A---- C:\Windows\system32\pnpui.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\pnpsetup.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\pnidui.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\perfdisk.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\pcaui.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\p2psvc.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\P2PGraph.dll
2010-01-26 15:41:44 ----A---- C:\Windows\system32\PkgMgr.exe
2010-01-26 15:41:44 ----A---- C:\Windows\system32\pidgenx.dll
2010-01-26 15:41:44 ----A---- C:\Windows\system32\photowiz.dll
2010-01-26 15:41:44 ----A---- C:\Windows\system32\ntkrnlpa.exe
2010-01-26 15:41:44 ----A---- C:\Windows\system32\ntdll.dll
2010-01-26 15:41:44 ----A---- C:\Windows\system32\nslookup.exe
2010-01-26 15:41:43 ----A---- C:\Windows\system32\osk.exe
2010-01-26 15:41:43 ----A---- C:\Windows\system32\oobefldr.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\onex.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\olepro32.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\oleprn.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\oleaut32.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\ole32.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\offfilt.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\odbccp32.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\odbcconf.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\odbc32.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\nlhtml.dll
2010-01-26 15:41:42 ----A---- C:\Windows\system32\rasgcw.dll
2010-01-26 15:41:42 ----A---- C:\Windows\system32\rasdlg.dll
2010-01-26 15:41:42 ----A---- C:\Windows\system32\rasdial.exe
2010-01-26 15:41:42 ----A---- C:\Windows\system32\ocsetup.exe
2010-01-26 15:41:42 ----A---- C:\Windows\system32\ntprint.dll
2010-01-26 15:41:42 ----A---- C:\Windows\system32\ntoskrnl.exe
2010-01-26 15:41:42 ----A---- C:\Windows\system32\ntmarta.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rastls.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rastapi.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rasppp.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rasplap.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rasmontr.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rasmans.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\raschap.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rasdiag.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rasapi32.dll
2010-01-26 15:41:40 ----A---- C:\Windows\system32\Query.dll
2010-01-26 15:41:40 ----A---- C:\Windows\system32\quartz.dll
2010-01-26 15:41:40 ----A---- C:\Windows\system32\qmgr.dll
2010-01-26 15:41:40 ----A---- C:\Windows\system32\qedit.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\RelMon.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\rekeywiz.exe
2010-01-26 15:41:39 ----A---- C:\Windows\system32\regsvc.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\regapi.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\reg.exe
2010-01-26 15:41:39 ----A---- C:\Windows\system32\rdpwsx.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\rdpencom.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\RacEngn.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\prnntfy.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\printui.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\PresentationHost.exe
2010-01-26 15:41:38 ----A---- C:\Windows\system32\qdvd.dll
2010-01-26 15:41:38 ----A---- C:\Windows\system32\QAGENTRT.DLL
2010-01-26 15:41:38 ----A---- C:\Windows\system32\puiapi.dll
2010-01-26 15:41:38 ----A---- C:\Windows\system32\propsys.dll
2010-01-26 15:41:38 ----A---- C:\Windows\system32\propdefs.dll
2010-01-26 15:41:38 ----A---- C:\Windows\system32\profsvc.dll
2010-01-26 15:41:38 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2010-01-26 15:41:38 ----A---- C:\Windows\system32\powrprof.dll
2010-01-26 15:41:37 ----A---- C:\Windows\system32\psisdecd.dll
2010-01-26 15:41:37 ----A---- C:\Windows\system32\PSHED.DLL
2010-01-26 15:41:36 ----A---- C:\Windows\system32\shlwapi.dll
2010-01-26 15:41:36 ----A---- C:\Windows\system32\shell32.dll
2010-01-26 15:41:36 ----A---- C:\Windows\system32\shdocvw.dll
2010-01-26 15:41:36 ----A---- C:\Windows\system32\sendmail.dll
2010-01-26 15:41:35 ----A---- C:\Windows\system32\setupapi.dll
2010-01-26 15:41:35 ----A---- C:\Windows\system32\sethc.exe
2010-01-26 15:41:35 ----A---- C:\Windows\system32\services.exe
2010-01-26 15:41:32 ----A---- C:\Windows\system32\eapphost.dll
2010-01-26 15:41:32 ----A---- C:\Windows\system32\eappgnui.dll
2010-01-26 15:41:31 ----A---- C:\Windows\system32\evr.dll
2010-01-26 15:41:31 ----A---- C:\Windows\system32\EhStorAPI.dll
2010-01-26 15:41:31 ----A---- C:\Windows\system32\eappcfg.dll
2010-01-26 15:41:31 ----A---- C:\Windows\system32\eapp3hst.dll
2010-01-26 15:41:31 ----A---- C:\Windows\system32\dxmasf.dll
2010-01-26 15:41:31 ----A---- C:\Windows\system32\dwm.exe
2010-01-26 15:41:31 ----A---- C:\Windows\system32\dsprop.dll
2010-01-26 15:41:31 ----A---- C:\Windows\system32\dsound.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\f3ahvoas.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\ExplorerFrame.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\eudcedit.exe
2010-01-26 15:41:30 ----A---- C:\Windows\system32\esent.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\es.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\EncDec.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\emdmgmt.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\EhStorShell.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\EhStorPwdMgr.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\EhStorAuthn.dll
2010-01-26 15:41:30 ----A---- C:\Windows\explorer.exe
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dpapimig.exe
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dot3svc.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dot3msm.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dot3cfg.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\diskraid.exe
2010-01-26 15:41:29 ----A---- C:\Windows\system32\diskpart.exe
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dimsroam.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\diagperf.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dhcpcsvc.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dfsr.exe
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dfshim.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\devmgr.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\hbaapi.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\gpresult.exe
2010-01-26 15:41:28 ----A---- C:\Windows\system32\drvstore.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\drvinst.exe
2010-01-26 15:41:28 ----A---- C:\Windows\system32\drmv2clt.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\drmmgrtn.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\dnsrslvr.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\dnsapi.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\dmusic.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\dmsynth.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\iasnap.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\IasMigReader.exe
2010-01-26 15:41:27 ----A---- C:\Windows\system32\IasMigPlugin.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\iashlpr.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\iasdatastore.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\iasads.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\iasacct.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\hidserv.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\hdwwiz.exe
2010-01-26 15:41:27 ----A---- C:\Windows\system32\gpupdate.exe
2010-01-26 15:41:27 ----A---- C:\Windows\system32\gpsvc.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\fontext.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\gpapi.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\gdi32.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\findstr.exe
2010-01-26 15:41:26 ----A---- C:\Windows\system32\feclient.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fdWSD.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fdWCN.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fdSSDP.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fdProxy.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fdeploy.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fdBthProxy.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fdBth.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fc.exe
2010-01-26 15:41:26 ----A---- C:\Windows\system32\Faultrep.dll
2010-01-26 15:41:25 ----A---- C:\Windows\system32\gpedit.dll
2010-01-26 15:41:25 ----A---- C:\Windows\system32\gameux.dll
2010-01-26 15:41:25 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2010-01-26 15:41:25 ----A---- C:\Windows\system32\fundisc.dll
2010-01-26 15:41:25 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll
2010-01-26 15:41:25 ----A---- C:\Windows\system32\ftp.exe
2010-01-26 15:41:25 ----A---- C:\Windows\system32\fsquirt.exe
2010-01-26 15:41:24 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2010-01-26 15:41:24 ----A---- C:\Windows\system32\autoplay.dll
2010-01-26 15:41:24 ----A---- C:\Windows\system32\autochk.exe
2010-01-26 15:41:24 ----A---- C:\Windows\system32\autofmt.exe
2010-01-26 15:41:24 ----A---- C:\Windows\system32\autoconv.exe
2010-01-26 15:41:24 ----A---- C:\Windows\system32\authz.dll
2010-01-26 15:41:24 ----A---- C:\Windows\system32\authui.dll
2010-01-26 15:41:24 ----A---- C:\Windows\system32\audiosrv.dll
2010-01-26 15:41:24 ----A---- C:\Windows\system32\AudioSes.dll
2010-01-26 15:41:24 ----A---- C:\Windows\system32\audiodg.exe
2010-01-26 15:41:24 ----A---- C:\Windows\system32\atmlib.dll
2010-01-26 15:41:24 ----A---- C:\Windows\system32\atmfd.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\bthci.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\browseui.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\brcpl.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\blackbox.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\bitsigd.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\BFE.DLL
2010-01-26 15:41:23 ----A---- C:\Windows\system32\bcrypt.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\basecsp.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\azroles.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\accessibilitycpl.dll
2010-01-26 15:41:22 ----A---- C:\Windows\system32\apphelp.dll
2010-01-26 15:41:22 ----A---- C:\Windows\system32\aaclient.dll
2010-01-26 15:41:21 ----A---- C:\Windows\system32\apds.dll
2010-01-26 15:41:21 ----A---- C:\Windows\system32\adsmsext.dll
2010-01-26 15:41:21 ----A---- C:\Windows\system32\adsldpc.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\crypt32.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\credui.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\connect.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\conime.exe
2010-01-26 15:41:20 ----A---- C:\Windows\system32\comuid.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\comsvcs.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\cmdial32.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\advapi32.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\adtschema.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\DevicePairingWizard.exe
2010-01-26 15:41:19 ----A---- C:\Windows\system32\DevicePairingProxy.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\DevicePairing.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\DeviceEject.exe
2010-01-26 15:41:19 ----A---- C:\Windows\system32\dbgeng.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\davclnt.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\dataclen.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\d3d9.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\cscdll.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\cscapi.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\comdlg32.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\cmmon32.exe
2010-01-26 15:41:18 ----A---- C:\Windows\system32\cryptui.dll
2010-01-26 15:41:17 ----A---- C:\Windows\system32\csrstub.exe
2010-01-26 15:41:17 ----A---- C:\Windows\system32\cscript.exe
2010-01-26 15:41:17 ----A---- C:\Windows\system32\cryptsvc.dll
2010-01-26 15:41:16 ----A---- C:\Windows\system32\certmgr.dll
2010-01-26 15:41:16 ----A---- C:\Windows\system32\CertEnrollUI.dll
2010-01-26 15:41:16 ----A---- C:\Windows\system32\CertEnroll.dll
2010-01-26 15:41:16 ----A---- C:\Windows\system32\certcli.dll
2010-01-26 15:41:15 ----A---- C:\Windows\system32\cbsra.exe
2010-01-26 15:41:15 ----A---- C:\Windows\system32\bthudtask.exe
2010-01-26 15:41:15 ----A---- C:\Windows\system32\bthserv.dll
2010-01-26 15:41:14 ----A---- C:\Windows\system32\CHxReadingStringIME.dll
2010-01-26 15:41:14 ----A---- C:\Windows\system32\chtbrkr.dll
2010-01-26 15:41:14 ----A---- C:\Windows\system32\chsbrkr.dll
2010-01-26 15:41:14 ----A---- C:\Windows\system32\cipher.exe
2010-01-26 15:41:14 ----A---- C:\Windows\system32\ci.dll
2010-01-26 15:41:13 ----A---- C:\Windows\system32\certutil.exe
2010-01-26 15:41:13 ----A---- C:\Windows\system32\certreq.exe
2010-01-26 15:41:13 ----A---- C:\Windows\system32\certprop.dll
2010-01-26 15:41:12 ----A---- C:\Windows\system32\msihnd.dll
2010-01-26 15:41:12 ----A---- C:\Windows\system32\msiexec.exe
2010-01-26 15:41:12 ----A---- C:\Windows\system32\msi.dll
2010-01-26 15:41:12 ----A---- C:\Windows\system32\msftedit.dll
2010-01-26 15:41:12 ----A---- C:\Windows\system32\msexch40.dll
2010-01-26 15:41:12 ----A---- C:\Windows\system32\msexcl40.dll
2010-01-26 15:41:12 ----A---- C:\Windows\system32\msdtctm.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\msimsg.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\msdtcprx.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\msdrm.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\msctfui.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\msctfp.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\MsCtfMonitor.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\msctf.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\MPSSVC.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\mprapi.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\mpr.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\MMDevAPI.dll
2010-01-26 15:41:10 ----A---- C:\Windows\system32\mscories.dll
2010-01-26 15:41:10 ----A---- C:\Windows\system32\mscorier.dll
2010-01-26 15:41:10 ----A---- C:\Windows\system32\mscms.dll
2010-01-26 15:41:10 ----A---- C:\Windows\system32\mscandui.dll
2010-01-26 15:41:10 ----A---- C:\Windows\system32\modemui.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\netplwiz.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\netlogon.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\netiohlp.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\netcenter.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\netapi32.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\ncryptui.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\ncrypt.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\mtxclu.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\mscoree.dll
2010-01-26 15:41:08 ----A---- C:\Windows\system32\NcdProp.dll
2010-01-26 15:41:08 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2010-01-26 15:41:08 ----A---- C:\Windows\system32\msxml6.dll
2010-01-26 15:41:08 ----A---- C:\Windows\system32\msxml3.dll
2010-01-26 15:41:07 ----A---- C:\Windows\system32\newdev.exe
2010-01-26 15:41:07 ----A---- C:\Windows\system32\newdev.dll
2010-01-26 15:41:07 ----A---- C:\Windows\system32\networkmap.dll
2010-01-26 15:41:07 ----A---- C:\Windows\system32\networkitemfactory.dll
2010-01-26 15:41:07 ----A---- C:\Windows\system32\networkexplorer.dll
2010-01-26 15:41:07 ----A---- C:\Windows\system32\netshell.dll
2010-01-26 15:41:06 ----A---- C:\Windows\system32\msscntrs.dll
2010-01-26 15:41:06 ----A---- C:\Windows\system32\msscb.dll
2010-01-26 15:41:06 ----A---- C:\Windows\system32\msrepl40.dll
2010-01-26 15:41:06 ----A---- C:\Windows\system32\msrd3x40.dll
2010-01-26 15:41:06 ----A---- C:\Windows\system32\msrd2x40.dll
2010-01-26 15:41:06 ----A---- C:\Windows\system32\mspbde40.dll
2010-01-26 15:41:06 ----A---- C:\Windows\system32\msnetobj.dll
2010-01-26 15:41:06 ----A---- C:\Windows\system32\msltus40.dll
2010-01-26 15:41:06 ----A---- C:\Windows\system32\msinfo32.exe
2010-01-26 15:41:06 ----A---- C:\Windows\system32\msimtf.dll
2010-01-26 15:41:05 ----A---- C:\Windows\system32\msvcp60.dll
2010-01-26 15:41:05 ----A---- C:\Windows\system32\msutb.dll
2010-01-26 15:41:05 ----A---- C:\Windows\system32\msjtes40.dll
2010-01-26 15:41:05 ----A---- C:\Windows\system32\msjter40.dll
2010-01-26 15:41:05 ----A---- C:\Windows\system32\msjint40.dll
2010-01-26 15:41:05 ----A---- C:\Windows\system32\msjetoledb40.dll
2010-01-26 15:41:05 ----A---- C:\Windows\system32\msjet40.dll
2010-01-26 15:41:05 ----A---- C:\Windows\system32\msisip.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\msxbde40.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\mswstr10.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\mswsock.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\mswdat10.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\MSVidCtl.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\msvcrt.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\mstscax.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\mstsc.exe
2010-01-26 15:41:04 ----A---- C:\Windows\system32\mstlsapi.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\mssvp.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\mssrch.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\mssprxy.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\mssphtb.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\mssph.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\mssitlb.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\msshsq.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\msshooks.dll
2010-01-26 15:41:04 ----A---- C:\Windows\system32\msscp.dll
2010-01-26 15:41:03 ----A---- C:\Windows\system32\mstext40.dll
2010-01-26 15:41:03 ----A---- C:\Windows\system32\msstrc.dll
2010-01-26 15:41:03 ----A---- C:\Windows\system32\InkEd.dll
2010-01-26 15:41:03 ----A---- C:\Windows\system32\infocardapi.dll
2010-01-26 15:41:03 ----A---- C:\Windows\system32\inetppui.dll
2010-01-26 15:41:03 ----A---- C:\Windows\system32\inetpp.dll
2010-01-26 15:41:03 ----A---- C:\Windows\system32\inetcomm.dll
2010-01-26 15:41:02 ----A---- C:\Windows\system32\iscsilog.dll
2010-01-26 15:41:02 ----A---- C:\Windows\system32\ipsmsnap.dll
2010-01-26 15:41:02 ----A---- C:\Windows\system32\IPSECSVC.DLL
2010-01-26 15:41:02 ----A---- C:\Windows\system32\imm32.dll
2010-01-26 15:41:01 ----A---- C:\Windows\system32\ipsecsnp.dll
2010-01-26 15:41:01 ----A---- C:\Windows\system32\iphlpsvc.dll
2010-01-26 15:41:01 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2010-01-26 15:41:01 ----A---- C:\Windows\system32\ipconfig.exe
2010-01-26 15:41:01 ----A---- C:\Windows\system32\input.dll
2010-01-26 15:41:01 ----A---- C:\Windows\system32\ifmon.dll
2010-01-26 15:41:01 ----A---- C:\Windows\system32\icardres.dll
2010-01-26 15:41:01 ----A---- C:\Windows\system32\icardagt.exe
2010-01-26 15:41:01 ----A---- C:\Windows\system32\iassvcs.dll
2010-01-26 15:41:01 ----A---- C:\Windows\system32\iassdo.dll
2010-01-26 15:41:01 ----A---- C:\Windows\system32\iassam.dll
2010-01-26 15:41:01 ----A---- C:\Windows\system32\iasrecst.dll
2010-01-26 15:41:01 ----A---- C:\Windows\system32\iasrad.dll
2010-01-26 15:41:01 ----A---- C:\Windows\system32\iaspolcy.dll
2010-01-26 15:41:00 ----A---- C:\Windows\system32\IMJP10K.DLL
2010-01-26 15:41:00 ----A---- C:\Windows\system32\imapi2fs.dll
2010-01-26 15:41:00 ----A---- C:\Windows\system32\imapi2.dll
2010-01-26 15:41:00 ----A---- C:\Windows\system32\imapi.dll
2010-01-26 15:41:00 ----A---- C:\Windows\system32\IKEEXT.DLL
2010-01-26 15:40:58 ----A---- C:\Windows\system32\mfps.dll
2010-01-26 15:40:58 ----A---- C:\Windows\system32\mfpmp.exe
2010-01-26 15:40:58 ----A---- C:\Windows\system32\mfplat.dll
2010-01-26 15:40:58 ----A---- C:\Windows\system32\mferror.dll
2010-01-26 15:40:58 ----A---- C:\Windows\system32\mfc42u.dll
2010-01-26 15:40:58 ----A---- C:\Windows\system32\mfc42.dll
Re: Pre motji
2010-01-26 15:40:58 ----A---- C:\Windows\system32\mf.dll
2010-01-26 15:40:57 ----A---- C:\Windows\system32\mmcndmgr.dll
2010-01-26 15:40:57 ----A---- C:\Windows\system32\mmcico.dll
2010-01-26 15:40:57 ----A---- C:\Windows\system32\mmci.dll
2010-01-26 15:40:57 ----A---- C:\Windows\system32\mmc.exe
2010-01-26 15:40:57 ----A---- C:\Windows\system32\mimefilt.dll
2010-01-26 15:40:57 ----A---- C:\Windows\system32\milcore.dll
2010-01-26 15:40:57 ----A---- C:\Windows\system32\midimap.dll
2010-01-26 15:40:56 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2010-01-26 15:40:56 ----A---- C:\Windows\system32\mblctr.exe
2010-01-26 15:40:56 ----A---- C:\Windows\system32\l2nacp.dll
2010-01-26 15:40:56 ----A---- C:\Windows\system32\korwbrkr.dll
2010-01-26 15:40:56 ----A---- C:\Windows\system32\kernel32.dll
2010-01-26 15:40:56 ----A---- C:\Windows\system32\kdusb.dll
2010-01-26 15:40:56 ----A---- C:\Windows\system32\kdcom.dll
2010-01-26 15:40:56 ----A---- C:\Windows\system32\kd1394.dll
2010-01-26 15:40:55 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2010-01-26 15:40:55 ----A---- C:\Windows\system32\logman.exe
2010-01-26 15:40:55 ----A---- C:\Windows\system32\logagent.exe
2010-01-26 15:40:55 ----A---- C:\Windows\system32\localspl.dll
2010-01-26 15:40:54 ----A---- C:\Windows\system32\WebClnt.dll
2010-01-26 15:40:54 ----A---- C:\Windows\system32\shsetup.dll
2010-01-26 15:40:54 ----A---- C:\Windows\system32\Magnify.exe
2010-01-26 15:40:53 ----A---- C:\Windows\system32\wercon.exe
2010-01-26 15:40:53 ----A---- C:\Windows\system32\wer.dll
2010-01-26 15:40:53 ----A---- C:\Windows\system32\wdscore.dll
2010-01-26 15:40:53 ----A---- C:\Windows\system32\wdc.dll
2010-01-26 15:40:52 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
2010-01-26 15:40:52 ----A---- C:\Windows\system32\wevtutil.exe
2010-01-26 15:40:51 ----A---- C:\Windows\system32\win32spl.dll
2010-01-26 15:40:51 ----A---- C:\Windows\system32\wiaservc.dll
2010-01-26 15:40:51 ----A---- C:\Windows\system32\wiaaut.dll
2010-01-26 15:40:51 ----A---- C:\Windows\system32\whealogr.dll
2010-01-26 15:40:51 ----A---- C:\Windows\system32\wevtsvc.dll
2010-01-26 15:40:51 ----A---- C:\Windows\system32\wevtapi.dll
2010-01-26 15:40:51 ----A---- C:\Windows\system32\wersvc.dll
2010-01-26 15:40:51 ----A---- C:\Windows\system32\WerFaultSecure.exe
2010-01-26 15:40:51 ----A---- C:\Windows\system32\WerFault.exe
2010-01-26 15:40:51 ----A---- C:\Windows\system32\version.dll
2010-01-26 15:40:51 ----A---- C:\Windows\system32\vdsutil.dll
2010-01-26 15:40:51 ----A---- C:\Windows\system32\vdsdyn.dll
2010-01-26 15:40:51 ----A---- C:\Windows\system32\vds.exe
2010-01-26 15:40:51 ----A---- C:\Windows\system32\vdmdbg.dll
2010-01-26 15:40:50 ----A---- C:\Windows\system32\uxsms.dll
2010-01-26 15:40:50 ----A---- C:\Windows\system32\Utilman.exe
2010-01-26 15:40:50 ----A---- C:\Windows\system32\usp10.dll
2010-01-26 15:40:50 ----A---- C:\Windows\system32\userenv.dll
2010-01-26 15:40:50 ----A---- C:\Windows\system32\usercpl.dll
2010-01-26 15:40:50 ----A---- C:\Windows\system32\user32.dll
2010-01-26 15:40:49 ----A---- C:\Windows\system32\wcnwiz2.dll
2010-01-26 15:40:49 ----A---- C:\Windows\system32\wcnwiz.dll
2010-01-26 15:40:49 ----A---- C:\Windows\system32\WcnNetsh.dll
2010-01-26 15:40:49 ----A---- C:\Windows\system32\wcncsvc.dll
2010-01-26 15:40:49 ----A---- C:\Windows\system32\w32time.dll
2010-01-26 15:40:49 ----A---- C:\Windows\system32\VSSVC.exe
2010-01-26 15:40:48 ----A---- C:\Windows\system32\wscisvif.dll
2010-01-26 15:40:48 ----A---- C:\Windows\system32\WscEapPr.dll
2010-01-26 15:40:48 ----A---- C:\Windows\system32\wscapi.dll
2010-01-26 15:40:48 ----A---- C:\Windows\system32\vssapi.dll
2010-01-26 15:40:47 ----A---- C:\Windows\system32\WSDMon.dll
2010-01-26 15:40:47 ----A---- C:\Windows\system32\wsdchngr.dll
2010-01-26 15:40:47 ----A---- C:\Windows\system32\WSDApi.dll
2010-01-26 15:40:47 ----A---- C:\Windows\system32\wscsvc.dll
2010-01-26 15:40:47 ----A---- C:\Windows\system32\wscript.exe
2010-01-26 15:40:47 ----A---- C:\Windows\system32\wscntfy.dll
2010-01-26 15:40:47 ----A---- C:\Windows\system32\wow32.dll
2010-01-26 15:40:47 ----A---- C:\Windows\system32\WMVXENCD.DLL
2010-01-26 15:40:47 ----A---- C:\Windows\system32\WMVSDECD.DLL
2010-01-26 15:40:47 ----A---- C:\Windows\system32\WMVENCOD.DLL
2010-01-26 15:40:46 ----A---- C:\Windows\system32\xmlfilter.dll
2010-01-26 15:40:46 ----A---- C:\Windows\system32\wusa.exe
2010-01-26 15:40:46 ----A---- C:\Windows\system32\wsepno.dll
2010-01-26 15:40:46 ----A---- C:\Windows\system32\wpcsvc.dll
2010-01-26 15:40:46 ----A---- C:\Windows\system32\wpccpl.dll
2010-01-26 15:40:46 ----A---- C:\Windows\system32\wpcao.dll
2010-01-26 15:40:46 ----A---- C:\Windows\system32\WMVCORE.DLL
2010-01-26 15:40:45 ----A---- C:\Windows\system32\wsnmp32.dll
2010-01-26 15:40:45 ----A---- C:\Windows\system32\WsmSvc.dll
2010-01-26 15:40:45 ----A---- C:\Windows\system32\wshext.dll
2010-01-26 15:40:45 ----A---- C:\Windows\system32\wshbth.dll
2010-01-26 15:40:45 ----A---- C:\Windows\system32\wlgpclnt.dll
2010-01-26 15:40:45 ----A---- C:\Windows\system32\Wldap32.dll
2010-01-26 15:40:45 ----A---- C:\Windows\system32\wlanui.dll
2010-01-26 15:40:45 ----A---- C:\Windows\system32\wlansvc.dll
2010-01-26 15:40:45 ----A---- C:\Windows\system32\wlanpref.dll
2010-01-26 15:40:45 ----A---- C:\Windows\system32\wlanmsm.dll
2010-01-26 15:40:45 ----A---- C:\Windows\system32\wlanhlp.dll
2010-01-26 15:40:45 ----A---- C:\Windows\system32\wlangpui.dll
2010-01-26 15:40:45 ----A---- C:\Windows\system32\wisptis.exe
2010-01-26 15:40:44 ----A---- C:\Windows\system32\winsrv.dll
2010-01-26 15:40:44 ----A---- C:\Windows\system32\WinSCard.dll
2010-01-26 15:40:44 ----A---- C:\Windows\system32\WinSAT.exe
2010-01-26 15:40:44 ----A---- C:\Windows\system32\winrnr.dll
2010-01-26 15:40:44 ----A---- C:\Windows\system32\winresume.exe
2010-01-26 15:40:44 ----A---- C:\Windows\system32\winmm.dll
2010-01-26 15:40:44 ----A---- C:\Windows\system32\winlogon.exe
2010-01-26 15:40:44 ----A---- C:\Windows\system32\winload.exe
2010-01-26 15:40:43 ----A---- C:\Windows\system32\wmpmde.dll
2010-01-26 15:40:43 ----A---- C:\Windows\system32\wmploc.DLL
2010-01-26 15:40:43 ----A---- C:\Windows\system32\wmpeffects.dll
2010-01-26 15:40:43 ----A---- C:\Windows\system32\WMNetMgr.dll
2010-01-26 15:40:42 ----A---- C:\Windows\system32\wmp.dll
2010-01-26 15:40:42 ----A---- C:\Windows\system32\wmicmiplugin.dll
2010-01-26 15:40:42 ----A---- C:\Windows\system32\wmdrmsdk.dll
2010-01-26 15:40:42 ----A---- C:\Windows\system32\Storprop.dll
2010-01-26 15:40:41 ----A---- C:\Windows\system32\sud.dll
2010-01-26 15:40:41 ----A---- C:\Windows\system32\stobject.dll
2010-01-26 15:40:40 ----A---- C:\Windows\system32\srchadmin.dll
2010-01-26 15:40:40 ----A---- C:\Windows\system32\srcore.dll
2010-01-26 15:40:39 ----A---- C:\Windows\system32\srvsvc.dll
2010-01-26 15:40:38 ----A---- C:\Windows\system32\sysmain.dll
2010-01-26 15:40:38 ----A---- C:\Windows\system32\sysclass.dll
2010-01-26 15:40:38 ----A---- C:\Windows\system32\SyncCenter.dll
2010-01-26 15:40:38 ----A---- C:\Windows\system32\swprv.dll
2010-01-26 15:40:37 ----A---- C:\Windows\system32\smss.exe
2010-01-26 15:40:37 ----A---- C:\Windows\system32\SmiEngine.dll
2010-01-26 15:40:37 ----A---- C:\Windows\system32\SMBHelperClass.dll
2010-01-26 15:40:37 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2010-01-26 15:40:37 ----A---- C:\Windows\system32\slwmi.dll
2010-01-26 15:40:37 ----A---- C:\Windows\system32\SLsvc.exe
2010-01-26 15:40:37 ----A---- C:\Windows\system32\slcc.dll
2010-01-26 15:40:37 ----A---- C:\Windows\system32\SLC.dll
2010-01-26 15:40:37 ----A---- C:\Windows\system32\shwebsvc.dll
2010-01-26 15:40:37 ----A---- C:\Windows\system32\shsvcs.dll
2010-01-26 15:40:36 ----A---- C:\Windows\system32\sqlsrv32.dll
2010-01-26 15:40:36 ----A---- C:\Windows\system32\spwmp.dll
2010-01-26 15:40:36 ----A---- C:\Windows\system32\spwizui.dll
2010-01-26 15:40:36 ----A---- C:\Windows\system32\spwinsat.dll
2010-01-26 15:40:36 ----A---- C:\Windows\system32\spp.dll
2010-01-26 15:40:36 ----A---- C:\Windows\system32\spoolsv.exe
2010-01-26 15:40:36 ----A---- C:\Windows\system32\spoolss.dll
2010-01-26 15:40:36 ----A---- C:\Windows\system32\spinstall.exe
2010-01-26 15:40:36 ----A---- C:\Windows\system32\sperror.dll
2010-01-26 15:40:36 ----A---- C:\Windows\system32\spcmsg.dll
2010-01-26 15:40:36 ----A---- C:\Windows\system32\slwga.dll
2010-01-26 15:40:36 ----A---- C:\Windows\system32\SLUINotify.dll
2010-01-26 15:40:36 ----A---- C:\Windows\system32\SLUI.exe
2010-01-26 15:40:36 ----A---- C:\Windows\system32\slmgr.vbs
2010-01-26 15:40:36 ----A---- C:\Windows\system32\SLLUA.exe
2010-01-26 15:40:36 ----A---- C:\Windows\system32\SLCommDlg.dll
2010-01-26 15:40:36 ----A---- C:\Windows\system32\slcinst.dll
2010-01-26 15:40:36 ----A---- C:\Windows\system32\SLCExt.dll
2010-01-26 15:40:35 ----A---- C:\Windows\system32\TsWpfWrp.exe
2010-01-26 15:40:35 ----A---- C:\Windows\system32\TSTheme.exe
2010-01-26 15:40:35 ----A---- C:\Windows\system32\spreview.exe
2010-01-26 15:40:35 ----A---- C:\Windows\system32\softkbd.dll
2010-01-26 15:40:35 ----A---- C:\Windows\system32\SndVol.exe
2010-01-26 15:40:34 ----A---- C:\Windows\system32\tsgqec.dll
2010-01-26 15:40:34 ----A---- C:\Windows\system32\tscupgrd.exe
2010-01-26 15:40:32 ----A---- C:\Windows\system32\zipfldr.dll
2010-01-26 15:40:32 ----A---- C:\Windows\system32\untfs.dll
2010-01-26 15:40:30 ----A---- C:\Windows\system32\umpnpmgr.dll
2010-01-26 15:40:30 ----A---- C:\Windows\system32\ulib.dll
2010-01-26 15:40:30 ----A---- C:\Windows\system32\uDWM.dll
2010-01-26 15:40:29 ----A---- C:\Windows\system32\systemcpl.dll
2010-01-26 15:40:27 ----A---- C:\Windows\system32\tsbyuv.dll
2010-01-26 15:40:27 ----A---- C:\Windows\system32\tquery.dll
2010-01-26 15:40:27 ----A---- C:\Windows\system32\tcpmon.dll
2010-01-26 15:40:27 ----A---- C:\Windows\system32\tcpipcfg.dll
2010-01-26 15:40:27 ----A---- C:\Windows\system32\tapisrv.dll
2010-01-26 15:40:26 ----A---- C:\Windows\system32\themeui.dll
2010-01-26 15:40:26 ----A---- C:\Windows\system32\themecpl.dll
2010-01-26 15:40:26 ----A---- C:\Windows\system32\thawbrkr.dll
2010-01-26 15:40:26 ----A---- C:\Windows\system32\termsrv.dll
2010-01-26 15:40:26 ----A---- C:\Windows\system32\taskeng.exe
2010-01-26 15:40:26 ----A---- C:\Windows\system32\taskcomp.dll
2010-01-26 15:35:37 ----D---- C:\Windows\system32\EventProviders
2010-01-26 15:24:18 ----D---- C:\Windows\pss
2010-01-26 15:16:51 ----A---- C:\Windows\system32\kbd106n.dll
2010-01-26 15:10:20 ----A---- C:\Windows\system32\wups2.dll
2010-01-26 15:10:20 ----A---- C:\Windows\system32\wucltux.dll
2010-01-26 15:10:20 ----A---- C:\Windows\system32\wuaueng.dll
2010-01-26 15:10:20 ----A---- C:\Windows\system32\wuauclt.exe
2010-01-26 15:10:05 ----A---- C:\Windows\system32\wups.dll
2010-01-26 15:10:05 ----A---- C:\Windows\system32\wudriver.dll
2010-01-26 15:10:05 ----A---- C:\Windows\system32\wuapi.dll
2010-01-26 15:09:56 ----A---- C:\Windows\system32\wuwebv.dll
2010-01-26 15:09:56 ----A---- C:\Windows\system32\wuapp.exe
2010-01-26 15:03:10 ----A---- C:\Windows\system32\occache.dll
2010-01-26 15:03:10 ----A---- C:\Windows\system32\jsproxy.dll
2010-01-26 15:03:09 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-01-26 15:03:09 ----A---- C:\Windows\system32\msfeeds.dll
2010-01-26 15:03:09 ----A---- C:\Windows\system32\ieui.dll
2010-01-26 15:03:09 ----A---- C:\Windows\system32\iepeers.dll
2010-01-26 15:03:08 ----A---- C:\Windows\system32\wininet.dll
2010-01-26 15:03:08 ----A---- C:\Windows\system32\msfeedssync.exe
2010-01-26 15:03:08 ----A---- C:\Windows\system32\iesetup.dll
2010-01-26 15:03:08 ----A---- C:\Windows\system32\iernonce.dll
2010-01-26 15:03:06 ----A---- C:\Windows\system32\ie4uinit.exe
2010-01-26 15:03:04 ----A---- C:\Windows\system32\ieUnatt.exe
2010-01-26 15:03:04 ----A---- C:\Windows\system32\iesysprep.dll
2010-01-26 15:03:04 ----A---- C:\Windows\system32\iertutil.dll
2010-01-26 15:03:04 ----A---- C:\Windows\system32\iedkcs32.dll
2010-01-26 15:03:03 ----A---- C:\Windows\system32\urlmon.dll
2010-01-26 15:03:02 ----A---- C:\Windows\system32\mshtml.dll
2010-01-26 15:03:02 ----A---- C:\Windows\system32\ieframe.dll
2010-01-26 14:57:27 ----A---- C:\Windows\system32\mshtmler.dll
2010-01-26 14:57:27 ----A---- C:\Windows\system32\mshtmled.dll
2010-01-26 14:57:27 ----A---- C:\Windows\system32\icardie.dll
2010-01-26 14:57:27 ----A---- C:\Windows\system32\admparse.dll
2010-01-26 14:57:26 ----A---- C:\Windows\system32\msls31.dll
2010-01-26 14:57:26 ----A---- C:\Windows\system32\imgutil.dll
2010-01-26 14:57:26 ----A---- C:\Windows\system32\ieakeng.dll
2010-01-26 14:57:26 ----A---- C:\Windows\system32\dxtrans.dll
2010-01-26 14:57:26 ----A---- C:\Windows\system32\dxtmsft.dll
2010-01-26 14:57:26 ----A---- C:\Windows\system32\corpol.dll
2010-01-26 14:57:25 ----A---- C:\Windows\system32\WinFXDocObj.exe
2010-01-26 14:57:25 ----A---- C:\Windows\system32\wextract.exe
2010-01-26 14:57:25 ----A---- C:\Windows\system32\webcheck.dll
2010-01-26 14:57:25 ----A---- C:\Windows\system32\mstime.dll
2010-01-26 14:57:25 ----A---- C:\Windows\system32\msrating.dll
2010-01-26 14:57:25 ----A---- C:\Windows\system32\licmgr10.dll
2010-01-26 14:57:25 ----A---- C:\Windows\system32\inseng.dll
2010-01-26 14:57:25 ----A---- C:\Windows\system32\ieakui.dll
2010-01-26 14:57:25 ----A---- C:\Windows\system32\ieaksie.dll
2010-01-26 14:57:24 ----A---- C:\Windows\system32\vbscript.dll
2010-01-26 14:57:24 ----A---- C:\Windows\system32\pngfilt.dll
2010-01-26 14:57:24 ----A---- C:\Windows\system32\jscript.dll
2010-01-26 14:57:24 ----A---- C:\Windows\system32\ieapfltr.dll
2010-01-26 14:57:24 ----A---- C:\Windows\system32\advpack.dll
2010-01-26 14:57:23 ----A---- C:\Windows\system32\url.dll
2010-01-26 14:57:22 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2010-01-26 14:57:22 ----A---- C:\Windows\system32\SetDepNx.exe
2010-01-26 14:57:22 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2010-01-26 14:57:22 ----A---- C:\Windows\system32\PDMSetup.exe
2010-01-26 14:57:22 ----A---- C:\Windows\system32\mshta.exe
2010-01-26 14:57:22 ----A---- C:\Windows\system32\iexpress.exe
2010-01-26 14:46:36 ----D---- C:\Program Files\Mozilla Thunderbird
2010-01-26 14:32:36 ----D---- C:\Program Files\Common Files\Skype
2010-01-26 14:32:31 ----RD---- C:\Program Files\Skype
2010-01-26 14:32:27 ----D---- C:\ProgramData\Skype
2010-01-26 14:28:56 ----D---- C:\Program Files\CCleaner
2010-01-26 14:13:12 ----D---- C:\Windows\system32\Macromed
2010-01-26 02:14:42 ----SHD---- C:\System Volume Information
2010-01-26 02:11:50 ----D---- C:\Windows\Panther
2010-01-26 02:11:37 ----RAS---- C:\BOOTSECT.BAK
2010-01-26 02:11:34 ----SHD---- C:\Boot
2010-01-26 02:11:16 ----D---- C:\Windows\system32\OEM
2010-01-26 02:10:44 ----D---- C:\Windows\sk-SK
2010-01-25 18:30:44 ----A---- C:\Windows\system32\aswBoot.exe
2010-01-25 18:30:37 ----D---- C:\ProgramData\Alwil Software
2010-01-25 18:30:37 ----D---- C:\Program Files\Alwil Software
2010-01-25 18:24:31 ----D---- C:\Program Files\Mozilla Firefox
2010-01-25 18:07:41 ----D---- C:\Program Files\Common Files\LightScribe
2010-01-25 18:04:11 ----D---- C:\Users\Administrátor\AppData\Roaming\GTek
2010-01-25 18:03:56 ----D---- C:\Program Files\HP
2010-01-25 18:03:55 ----A---- C:\Windows\system32\IVIresizeW7.dll
2010-01-25 18:03:55 ----A---- C:\Windows\system32\IVIresizePX.dll
2010-01-25 18:03:55 ----A---- C:\Windows\system32\IVIresizeP6.dll
2010-01-25 18:03:55 ----A---- C:\Windows\system32\IVIresizeM6.dll
2010-01-25 18:03:55 ----A---- C:\Windows\system32\IVIresizeA6.dll
2010-01-25 18:03:55 ----A---- C:\Windows\system32\IVIresize.dll
2010-01-25 18:03:27 ----D---- C:\Program Files\Common Files\InterVideo
2010-01-25 18:03:04 ----D---- C:\Program Files\InterVideo
2010-01-25 18:02:41 ----D---- C:\Program Files\Common Files\InstallShield
2010-01-25 17:52:55 ----A---- C:\Windows\system32\BttnCmns_64.dll
2010-01-25 17:52:55 ----A---- C:\Windows\system32\BttnCmns.dll
2010-01-25 17:52:55 ----A---- C:\Windows\system32\BttnCmn.dll
2010-01-25 17:51:45 ----RA---- C:\Windows\system32\CSVer.dll
2010-01-25 17:51:45 ----D---- C:\Program Files\Intel
2010-01-25 17:50:56 ----D---- C:\Program Files\Broadcom
2010-01-25 17:48:44 ----A---- C:\Windows\system32\oemdspif.dll
2010-01-25 17:48:44 ----A---- C:\Windows\system32\igfxzoom.exe
2010-01-25 17:48:44 ----A---- C:\Windows\system32\igfxtray.exe
2010-01-25 17:48:44 ----A---- C:\Windows\system32\igfxTMM.dll
2010-01-25 17:48:44 ----A---- C:\Windows\system32\igfxsrvc.exe
2010-01-25 17:48:44 ----A---- C:\Windows\system32\igfxsrvc.dll
2010-01-25 17:48:44 ----A---- C:\Windows\system32\igfxress.dll
2010-01-25 17:48:44 ----A---- C:\Windows\system32\igfxpph.dll
2010-01-25 17:48:44 ----A---- C:\Windows\system32\igfxpers.exe
2010-01-25 17:48:44 ----A---- C:\Windows\system32\igfxext.exe
2010-01-25 17:48:44 ----A---- C:\Windows\system32\igfxexps.dll
2010-01-25 17:48:44 ----A---- C:\Windows\system32\igfxdo.dll
2010-01-25 17:48:44 ----A---- C:\Windows\system32\igfxdev.dll
2010-01-25 17:48:44 ----A---- C:\Windows\system32\igfxCoIn_v1437.dll
2010-01-25 17:48:44 ----A---- C:\Windows\system32\igfxcfg.exe
2010-01-25 17:48:44 ----A---- C:\Windows\system32\igdumd32.dll
2010-01-25 17:48:44 ----A---- C:\Windows\system32\ig4icd32.dll
2010-01-25 17:48:44 ----A---- C:\Windows\system32\ig4dev32.dll
2010-01-25 17:48:44 ----A---- C:\Windows\system32\hkcmd.exe
2010-01-25 17:48:44 ----A---- C:\Windows\system32\hccutils.dll
2010-01-25 17:48:25 ----RA---- C:\Windows\system32\difxapi.dll
2010-01-25 17:48:25 ----D---- C:\Windows\system32\Lang
2010-01-25 17:48:22 ----D---- C:\Intel
2010-01-25 17:47:42 ----A---- C:\Windows\system32\Prounstl.exe
2010-01-25 17:47:42 ----A---- C:\Windows\system32\NicInstE.dll
2010-01-25 17:47:42 ----A---- C:\Windows\system32\NicCo.dll
2010-01-25 17:47:42 ----A---- C:\Windows\system32\e1000msg.dll
2010-01-25 17:47:17 ----D---- C:\Program Files\Synaptics
2010-01-25 17:46:58 ----A---- C:\Windows\system32\WdfCoInstaller01000.dll
2010-01-25 17:46:58 ----A---- C:\Windows\system32\SynTPCo4.dll
2010-01-25 17:46:58 ----A---- C:\Windows\system32\SynTPAPI.dll
2010-01-25 17:46:58 ----A---- C:\Windows\system32\SynCtrl.dll
2010-01-25 17:46:58 ----A---- C:\Windows\system32\SynCOM.dll
2010-01-25 17:42:40 ----D---- C:\Users\Administrátor\AppData\Roaming\hpqLog
2010-01-25 17:42:39 ----D---- C:\Program Files\HPQ
2010-01-25 17:42:39 ----D---- C:\Program Files\Hewlett-Packard
2010-01-25 17:41:14 ----N---- C:\Windows\system32\agrsmdel.exe
2010-01-25 17:40:50 ----A---- C:\Windows\system32\SmaxCo.dll
2010-01-25 17:40:50 ----A---- C:\Windows\system32\AEADISRV.EXE
2010-01-25 17:40:50 ----A---- C:\Windows\system32\AEADIExt.dll
2010-01-25 17:40:50 ----A---- C:\Windows\system32\AEADIAPR.dll
2010-01-25 17:40:50 ----A---- C:\Windows\system32\AEADIAPO.dll
2010-01-25 17:40:39 ----D---- C:\Program Files\Analog Devices
2010-01-25 17:40:36 ----HD---- C:\Program Files\InstallShield Installation Information
2010-01-25 17:40:31 ----D---- C:\Windows\Options
2010-01-25 17:40:30 ----D---- C:\SWSetup
2010-01-25 17:40:27 ----SHD---- C:\Windows\Installer
2010-01-25 17:40:23 ----D---- C:\Users\Administrátor\AppData\Roaming\Hewlett Packard
2010-01-25 17:40:16 ----D---- C:\Users\Administrátor\AppData\Roaming\InstallShield
2010-01-25 17:39:08 ----D---- C:\SYSTEM.SAV
2010-01-25 17:37:32 ----D---- C:\Users\Administrátor\AppData\Roaming\Identities
2010-01-25 17:37:25 ----SD---- C:\Users\Administrátor\AppData\Roaming\Microsoft
2010-01-25 17:34:30 ----D---- C:\Windows\Debug
2010-01-25 17:30:59 ----D---- C:\Windows\SoftwareDistribution
2010-01-25 17:26:43 ----D---- C:\Windows\Prefetch
======List of files/folders modified in the last 1 months======
2010-01-30 22:04:17 ----D---- C:\Windows\Temp
2010-01-30 22:04:07 ----RD---- C:\Program Files
2010-01-30 20:43:04 ----D---- C:\Windows\System32
2010-01-30 20:43:04 ----D---- C:\Windows\inf
2010-01-30 20:43:04 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-01-29 18:59:20 ----D---- C:\Windows
2010-01-27 20:09:30 ----D---- C:\Windows\winsxs
2010-01-27 19:49:29 ----D---- C:\Windows\rescache
2010-01-27 19:46:25 ----D---- C:\Windows\system32\catroot
2010-01-27 19:46:24 ----D---- C:\Windows\system32\catroot2
2010-01-27 15:59:38 ----D---- C:\Windows\system32\sk-SK
2010-01-27 15:59:35 ----D---- C:\Windows\system32\drivers
2010-01-27 15:59:33 ----D---- C:\Windows\system32\en-US
2010-01-27 15:27:24 ----HD---- C:\ProgramData
2010-01-27 15:20:00 ----SD---- C:\Windows\Downloaded Program Files
2010-01-27 14:35:29 ----D---- C:\Windows\PolicyDefinitions
2010-01-27 14:34:14 ----D---- C:\Program Files\Internet Explorer
2010-01-26 16:23:24 ----D---- C:\Windows\system32\WDI
2010-01-26 16:12:05 ----D---- C:\Windows\AppPatch
2010-01-26 16:06:31 ----D---- C:\Windows\Microsoft.NET
2010-01-26 16:06:30 ----RSD---- C:\Windows\assembly
2010-01-26 15:58:53 ----D---- C:\Program Files\Windows Calendar
2010-01-26 15:58:53 ----D---- C:\Program Files\Movie Maker
2010-01-26 15:58:52 ----D---- C:\Windows\servicing
2010-01-26 15:58:52 ----D---- C:\Program Files\Windows Sidebar
2010-01-26 15:58:52 ----D---- C:\Program Files\Windows Photo Gallery
2010-01-26 15:58:52 ----D---- C:\Program Files\Windows Media Player
2010-01-26 15:58:52 ----D---- C:\Program Files\Windows Mail
2010-01-26 15:58:52 ----D---- C:\Program Files\Windows Defender
2010-01-26 15:58:52 ----D---- C:\Program Files\Windows Collaboration
2010-01-26 15:58:52 ----D---- C:\Program Files\Common Files\System
2010-01-26 15:58:49 ----D---- C:\Windows\system32\XPSViewer
2010-01-26 15:58:49 ----D---- C:\Windows\system32\lv-LV
2010-01-26 15:58:49 ----D---- C:\Windows\system32\hr-HR
2010-01-26 15:58:49 ----D---- C:\Windows\system32\et-EE
2010-01-26 15:58:49 ----D---- C:\Windows\system32\da-DK
2010-01-26 15:58:49 ----D---- C:\Windows\IME
2010-01-26 15:58:48 ----D---- C:\Windows\system32\ko-KR
2010-01-26 15:58:47 ----D---- C:\Windows\system32\oobe
2010-01-26 15:58:47 ----D---- C:\Windows\system32\migration
2010-01-26 15:58:47 ----D---- C:\Windows\system32\it-IT
2010-01-26 15:58:47 ----D---- C:\Windows\system32\el-GR
2010-01-26 15:58:47 ----D---- C:\Windows\system32\de-DE
2010-01-26 15:58:46 ----D---- C:\Windows\system32\zh-CN
2010-01-26 15:58:46 ----D---- C:\Windows\system32\sv-SE
2010-01-26 15:58:46 ----D---- C:\Windows\system32\sr-Latn-CS
2010-01-26 15:58:46 ----D---- C:\Windows\system32\SLUI
2010-01-26 15:58:46 ----D---- C:\Windows\system32\sl-SI
2010-01-26 15:58:46 ----D---- C:\Windows\system32\setup
2010-01-26 15:58:46 ----D---- C:\Windows\system32\ru-RU
2010-01-26 15:58:46 ----D---- C:\Windows\system32\pt-PT
2010-01-26 15:58:46 ----D---- C:\Windows\system32\manifeststore
2010-01-26 15:58:46 ----D---- C:\Windows\system32\hu-HU
2010-01-26 15:58:46 ----D---- C:\Windows\system32\he-IL
2010-01-26 15:58:46 ----D---- C:\Windows\system32\fr-FR
2010-01-26 15:58:46 ----D---- C:\Windows\system32\fi-FI
2010-01-26 15:58:46 ----D---- C:\Windows\system32\es-ES
2010-01-26 15:58:46 ----D---- C:\Windows\system32\en
2010-01-26 15:58:46 ----D---- C:\Windows\system32\cs-CZ
2010-01-26 15:58:46 ----D---- C:\Windows\system32\AdvancedInstallers
2010-01-26 15:58:45 ----D---- C:\Windows\system32\zh-TW
2010-01-26 15:58:45 ----D---- C:\Windows\system32\uk-UA
2010-01-26 15:58:45 ----D---- C:\Windows\system32\tr-TR
2010-01-26 15:58:45 ----D---- C:\Windows\system32\th-TH
2010-01-26 15:58:45 ----D---- C:\Windows\system32\ro-RO
2010-01-26 15:58:45 ----D---- C:\Windows\system32\pl-PL
2010-01-26 15:58:45 ----D---- C:\Windows\system32\ja-JP
2010-01-26 15:58:45 ----D---- C:\Windows\system32\bg-BG
2010-01-26 15:58:43 ----D---- C:\Windows\system32\wbem
2010-01-26 15:58:42 ----D---- C:\Windows\system32\pt-BR
2010-01-26 15:58:42 ----D---- C:\Windows\system32\nl-NL
2010-01-26 15:58:42 ----D---- C:\Windows\system32\nb-NO
2010-01-26 15:58:42 ----D---- C:\Windows\system32\migwiz
2010-01-26 15:58:42 ----D---- C:\Windows\system32\lt-LT
2010-01-26 15:58:42 ----D---- C:\Windows\system32\ar-SA
2010-01-26 15:58:35 ----RSD---- C:\Windows\Fonts
2010-01-26 15:58:29 ----D---- C:\Windows\system32\Boot
2010-01-26 14:32:58 ----D---- C:\Windows\system32\Tasks
2010-01-26 14:32:36 ----D---- C:\Program Files\Common Files
2010-01-26 02:10:44 ----D---- C:\Windows\WindowsMobile
2010-01-26 02:10:44 ----D---- C:\Windows\system32\sysprep
2010-01-26 02:10:44 ----D---- C:\Windows\DigitalLocker
2010-01-25 18:30:54 ----D---- C:\Program Files\Common Files\microsoft shared
2010-01-25 18:21:40 ----SD---- C:\ProgramData\Microsoft
2010-01-25 18:19:59 ----SHD---- C:\$Recycle.Bin
2010-01-25 18:19:42 ----RD---- C:\Users
2010-01-25 17:55:05 ----D---- C:\Windows\system32\WCN
2010-01-25 17:55:05 ----D---- C:\Windows\system32\DriverStore
2010-01-25 17:44:35 ----D---- C:\Windows\Logs
2010-01-25 17:40:20 ----D---- C:\Windows\system32\restore
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2010-01-28 23376]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2010-01-28 163280]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2010-01-28 46672]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\Windows\System32\DRIVERS\cmdguard.sys [2010-01-27 130960]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\Windows\System32\DRIVERS\cmdhlp.sys [2010-01-27 29520]
R1 inspect;COMODO Internet Security Firewall Driver; C:\Windows\system32\DRIVERS\inspect.sys [2010-01-27 74328]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2010-01-28 19024]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2010-01-28 51792]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\ADIHdAud.sys [2008-04-24 309248]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\AGRSM.sys [2008-02-29 1202560]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-21 14208]
R3 e1express;Intel(R) PRO/1000 PCI Express Network Connection Driver; C:\Windows\system32\DRIVERS\e1e6032.sys [2007-05-24 223616]
R3 HBtnKey;HBtnKey; C:\Windows\system32\DRIVERS\cpqbttn.sys [2008-04-14 9344]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2007-06-18 16768]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2008-02-11 2302976]
R3 NETw5v32;Intel(R) Wireless WiFi Link Adapter Driver for Windows Vista 32 Bit ; C:\Windows\system32\DRIVERS\NETw5v32.sys [2008-04-28 3658752]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2008-03-27 199472]
R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-21 11264]
S3 BthEnum;Bluetooth Request Block Driver; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-10 22528]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-21 92160]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2009-04-10 507904]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2009-04-10 29696]
S3 DAMDrv;DAMDrv; C:\Windows\system32\DRIVERS\DAMDrv.sys [2007-06-08 30008]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 NETw3v32;Intel(R) PRO/Wireless 3945ABG Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw3v32.sys [2008-01-21 2225664]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-10 148992]
S3 UIUSys;Conexant Setup API; C:\Windows\system32\DRIVERS\UIUSYS.SYS []
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AEADIFilters;Andrea ADI Filters Service; C:\Windows\system32\AEADISRV.EXE [2007-02-06 69632]
R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\Windows\system32\agrsmsvc.exe [2007-12-11 12800]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-01-28 40384]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 cmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2010-01-27 723632]
R2 HP Health Check Service;HP Health Check Service; c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [2008-04-15 94208]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2008-03-17 73728]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-01-28 40384]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-01-28 40384]
R3 Com4QLBEx;Com4QLBEx; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2008-04-03 193840]
R3 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2008-04-16 165192]
S3 FLCDLOCK;HP ProtectTools Device Locking / Auditing; C:\Windows\system32\flcdlock.exe [2007-06-08 172131]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
-----------------EOF-----------------
2010-01-26 15:40:57 ----A---- C:\Windows\system32\mmcndmgr.dll
2010-01-26 15:40:57 ----A---- C:\Windows\system32\mmcico.dll
2010-01-26 15:40:57 ----A---- C:\Windows\system32\mmci.dll
2010-01-26 15:40:57 ----A---- C:\Windows\system32\mmc.exe
2010-01-26 15:40:57 ----A---- C:\Windows\system32\mimefilt.dll
2010-01-26 15:40:57 ----A---- C:\Windows\system32\milcore.dll
2010-01-26 15:40:57 ----A---- C:\Windows\system32\midimap.dll
2010-01-26 15:40:56 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2010-01-26 15:40:56 ----A---- C:\Windows\system32\mblctr.exe
2010-01-26 15:40:56 ----A---- C:\Windows\system32\l2nacp.dll
2010-01-26 15:40:56 ----A---- C:\Windows\system32\korwbrkr.dll
2010-01-26 15:40:56 ----A---- C:\Windows\system32\kernel32.dll
2010-01-26 15:40:56 ----A---- C:\Windows\system32\kdusb.dll
2010-01-26 15:40:56 ----A---- C:\Windows\system32\kdcom.dll
2010-01-26 15:40:56 ----A---- C:\Windows\system32\kd1394.dll
2010-01-26 15:40:55 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2010-01-26 15:40:55 ----A---- C:\Windows\system32\logman.exe
2010-01-26 15:40:55 ----A---- C:\Windows\system32\logagent.exe
2010-01-26 15:40:55 ----A---- C:\Windows\system32\localspl.dll
2010-01-26 15:40:54 ----A---- C:\Windows\system32\WebClnt.dll
2010-01-26 15:40:54 ----A---- C:\Windows\system32\shsetup.dll
2010-01-26 15:40:54 ----A---- C:\Windows\system32\Magnify.exe
2010-01-26 15:40:53 ----A---- C:\Windows\system32\wercon.exe
2010-01-26 15:40:53 ----A---- C:\Windows\system32\wer.dll
2010-01-26 15:40:53 ----A---- C:\Windows\system32\wdscore.dll
2010-01-26 15:40:53 ----A---- C:\Windows\system32\wdc.dll
2010-01-26 15:40:52 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
2010-01-26 15:40:52 ----A---- C:\Windows\system32\wevtutil.exe
2010-01-26 15:40:51 ----A---- C:\Windows\system32\win32spl.dll
2010-01-26 15:40:51 ----A---- C:\Windows\system32\wiaservc.dll
2010-01-26 15:40:51 ----A---- C:\Windows\system32\wiaaut.dll
2010-01-26 15:40:51 ----A---- C:\Windows\system32\whealogr.dll
2010-01-26 15:40:51 ----A---- C:\Windows\system32\wevtsvc.dll
2010-01-26 15:40:51 ----A---- C:\Windows\system32\wevtapi.dll
2010-01-26 15:40:51 ----A---- C:\Windows\system32\wersvc.dll
2010-01-26 15:40:51 ----A---- C:\Windows\system32\WerFaultSecure.exe
2010-01-26 15:40:51 ----A---- C:\Windows\system32\WerFault.exe
2010-01-26 15:40:51 ----A---- C:\Windows\system32\version.dll
2010-01-26 15:40:51 ----A---- C:\Windows\system32\vdsutil.dll
2010-01-26 15:40:51 ----A---- C:\Windows\system32\vdsdyn.dll
2010-01-26 15:40:51 ----A---- C:\Windows\system32\vds.exe
2010-01-26 15:40:51 ----A---- C:\Windows\system32\vdmdbg.dll
2010-01-26 15:40:50 ----A---- C:\Windows\system32\uxsms.dll
2010-01-26 15:40:50 ----A---- C:\Windows\system32\Utilman.exe
2010-01-26 15:40:50 ----A---- C:\Windows\system32\usp10.dll
2010-01-26 15:40:50 ----A---- C:\Windows\system32\userenv.dll
2010-01-26 15:40:50 ----A---- C:\Windows\system32\usercpl.dll
2010-01-26 15:40:50 ----A---- C:\Windows\system32\user32.dll
2010-01-26 15:40:49 ----A---- C:\Windows\system32\wcnwiz2.dll
2010-01-26 15:40:49 ----A---- C:\Windows\system32\wcnwiz.dll
2010-01-26 15:40:49 ----A---- C:\Windows\system32\WcnNetsh.dll
2010-01-26 15:40:49 ----A---- C:\Windows\system32\wcncsvc.dll
2010-01-26 15:40:49 ----A---- C:\Windows\system32\w32time.dll
2010-01-26 15:40:49 ----A---- C:\Windows\system32\VSSVC.exe
2010-01-26 15:40:48 ----A---- C:\Windows\system32\wscisvif.dll
2010-01-26 15:40:48 ----A---- C:\Windows\system32\WscEapPr.dll
2010-01-26 15:40:48 ----A---- C:\Windows\system32\wscapi.dll
2010-01-26 15:40:48 ----A---- C:\Windows\system32\vssapi.dll
2010-01-26 15:40:47 ----A---- C:\Windows\system32\WSDMon.dll
2010-01-26 15:40:47 ----A---- C:\Windows\system32\wsdchngr.dll
2010-01-26 15:40:47 ----A---- C:\Windows\system32\WSDApi.dll
2010-01-26 15:40:47 ----A---- C:\Windows\system32\wscsvc.dll
2010-01-26 15:40:47 ----A---- C:\Windows\system32\wscript.exe
2010-01-26 15:40:47 ----A---- C:\Windows\system32\wscntfy.dll
2010-01-26 15:40:47 ----A---- C:\Windows\system32\wow32.dll
2010-01-26 15:40:47 ----A---- C:\Windows\system32\WMVXENCD.DLL
2010-01-26 15:40:47 ----A---- C:\Windows\system32\WMVSDECD.DLL
2010-01-26 15:40:47 ----A---- C:\Windows\system32\WMVENCOD.DLL
2010-01-26 15:40:46 ----A---- C:\Windows\system32\xmlfilter.dll
2010-01-26 15:40:46 ----A---- C:\Windows\system32\wusa.exe
2010-01-26 15:40:46 ----A---- C:\Windows\system32\wsepno.dll
2010-01-26 15:40:46 ----A---- C:\Windows\system32\wpcsvc.dll
2010-01-26 15:40:46 ----A---- C:\Windows\system32\wpccpl.dll
2010-01-26 15:40:46 ----A---- C:\Windows\system32\wpcao.dll
2010-01-26 15:40:46 ----A---- C:\Windows\system32\WMVCORE.DLL
2010-01-26 15:40:45 ----A---- C:\Windows\system32\wsnmp32.dll
2010-01-26 15:40:45 ----A---- C:\Windows\system32\WsmSvc.dll
2010-01-26 15:40:45 ----A---- C:\Windows\system32\wshext.dll
2010-01-26 15:40:45 ----A---- C:\Windows\system32\wshbth.dll
2010-01-26 15:40:45 ----A---- C:\Windows\system32\wlgpclnt.dll
2010-01-26 15:40:45 ----A---- C:\Windows\system32\Wldap32.dll
2010-01-26 15:40:45 ----A---- C:\Windows\system32\wlanui.dll
2010-01-26 15:40:45 ----A---- C:\Windows\system32\wlansvc.dll
2010-01-26 15:40:45 ----A---- C:\Windows\system32\wlanpref.dll
2010-01-26 15:40:45 ----A---- C:\Windows\system32\wlanmsm.dll
2010-01-26 15:40:45 ----A---- C:\Windows\system32\wlanhlp.dll
2010-01-26 15:40:45 ----A---- C:\Windows\system32\wlangpui.dll
2010-01-26 15:40:45 ----A---- C:\Windows\system32\wisptis.exe
2010-01-26 15:40:44 ----A---- C:\Windows\system32\winsrv.dll
2010-01-26 15:40:44 ----A---- C:\Windows\system32\WinSCard.dll
2010-01-26 15:40:44 ----A---- C:\Windows\system32\WinSAT.exe
2010-01-26 15:40:44 ----A---- C:\Windows\system32\winrnr.dll
2010-01-26 15:40:44 ----A---- C:\Windows\system32\winresume.exe
2010-01-26 15:40:44 ----A---- C:\Windows\system32\winmm.dll
2010-01-26 15:40:44 ----A---- C:\Windows\system32\winlogon.exe
2010-01-26 15:40:44 ----A---- C:\Windows\system32\winload.exe
2010-01-26 15:40:43 ----A---- C:\Windows\system32\wmpmde.dll
2010-01-26 15:40:43 ----A---- C:\Windows\system32\wmploc.DLL
2010-01-26 15:40:43 ----A---- C:\Windows\system32\wmpeffects.dll
2010-01-26 15:40:43 ----A---- C:\Windows\system32\WMNetMgr.dll
2010-01-26 15:40:42 ----A---- C:\Windows\system32\wmp.dll
2010-01-26 15:40:42 ----A---- C:\Windows\system32\wmicmiplugin.dll
2010-01-26 15:40:42 ----A---- C:\Windows\system32\wmdrmsdk.dll
2010-01-26 15:40:42 ----A---- C:\Windows\system32\Storprop.dll
2010-01-26 15:40:41 ----A---- C:\Windows\system32\sud.dll
2010-01-26 15:40:41 ----A---- C:\Windows\system32\stobject.dll
2010-01-26 15:40:40 ----A---- C:\Windows\system32\srchadmin.dll
2010-01-26 15:40:40 ----A---- C:\Windows\system32\srcore.dll
2010-01-26 15:40:39 ----A---- C:\Windows\system32\srvsvc.dll
2010-01-26 15:40:38 ----A---- C:\Windows\system32\sysmain.dll
2010-01-26 15:40:38 ----A---- C:\Windows\system32\sysclass.dll
2010-01-26 15:40:38 ----A---- C:\Windows\system32\SyncCenter.dll
2010-01-26 15:40:38 ----A---- C:\Windows\system32\swprv.dll
2010-01-26 15:40:37 ----A---- C:\Windows\system32\smss.exe
2010-01-26 15:40:37 ----A---- C:\Windows\system32\SmiEngine.dll
2010-01-26 15:40:37 ----A---- C:\Windows\system32\SMBHelperClass.dll
2010-01-26 15:40:37 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2010-01-26 15:40:37 ----A---- C:\Windows\system32\slwmi.dll
2010-01-26 15:40:37 ----A---- C:\Windows\system32\SLsvc.exe
2010-01-26 15:40:37 ----A---- C:\Windows\system32\slcc.dll
2010-01-26 15:40:37 ----A---- C:\Windows\system32\SLC.dll
2010-01-26 15:40:37 ----A---- C:\Windows\system32\shwebsvc.dll
2010-01-26 15:40:37 ----A---- C:\Windows\system32\shsvcs.dll
2010-01-26 15:40:36 ----A---- C:\Windows\system32\sqlsrv32.dll
2010-01-26 15:40:36 ----A---- C:\Windows\system32\spwmp.dll
2010-01-26 15:40:36 ----A---- C:\Windows\system32\spwizui.dll
2010-01-26 15:40:36 ----A---- C:\Windows\system32\spwinsat.dll
2010-01-26 15:40:36 ----A---- C:\Windows\system32\spp.dll
2010-01-26 15:40:36 ----A---- C:\Windows\system32\spoolsv.exe
2010-01-26 15:40:36 ----A---- C:\Windows\system32\spoolss.dll
2010-01-26 15:40:36 ----A---- C:\Windows\system32\spinstall.exe
2010-01-26 15:40:36 ----A---- C:\Windows\system32\sperror.dll
2010-01-26 15:40:36 ----A---- C:\Windows\system32\spcmsg.dll
2010-01-26 15:40:36 ----A---- C:\Windows\system32\slwga.dll
2010-01-26 15:40:36 ----A---- C:\Windows\system32\SLUINotify.dll
2010-01-26 15:40:36 ----A---- C:\Windows\system32\SLUI.exe
2010-01-26 15:40:36 ----A---- C:\Windows\system32\slmgr.vbs
2010-01-26 15:40:36 ----A---- C:\Windows\system32\SLLUA.exe
2010-01-26 15:40:36 ----A---- C:\Windows\system32\SLCommDlg.dll
2010-01-26 15:40:36 ----A---- C:\Windows\system32\slcinst.dll
2010-01-26 15:40:36 ----A---- C:\Windows\system32\SLCExt.dll
2010-01-26 15:40:35 ----A---- C:\Windows\system32\TsWpfWrp.exe
2010-01-26 15:40:35 ----A---- C:\Windows\system32\TSTheme.exe
2010-01-26 15:40:35 ----A---- C:\Windows\system32\spreview.exe
2010-01-26 15:40:35 ----A---- C:\Windows\system32\softkbd.dll
2010-01-26 15:40:35 ----A---- C:\Windows\system32\SndVol.exe
2010-01-26 15:40:34 ----A---- C:\Windows\system32\tsgqec.dll
2010-01-26 15:40:34 ----A---- C:\Windows\system32\tscupgrd.exe
2010-01-26 15:40:32 ----A---- C:\Windows\system32\zipfldr.dll
2010-01-26 15:40:32 ----A---- C:\Windows\system32\untfs.dll
2010-01-26 15:40:30 ----A---- C:\Windows\system32\umpnpmgr.dll
2010-01-26 15:40:30 ----A---- C:\Windows\system32\ulib.dll
2010-01-26 15:40:30 ----A---- C:\Windows\system32\uDWM.dll
2010-01-26 15:40:29 ----A---- C:\Windows\system32\systemcpl.dll
2010-01-26 15:40:27 ----A---- C:\Windows\system32\tsbyuv.dll
2010-01-26 15:40:27 ----A---- C:\Windows\system32\tquery.dll
2010-01-26 15:40:27 ----A---- C:\Windows\system32\tcpmon.dll
2010-01-26 15:40:27 ----A---- C:\Windows\system32\tcpipcfg.dll
2010-01-26 15:40:27 ----A---- C:\Windows\system32\tapisrv.dll
2010-01-26 15:40:26 ----A---- C:\Windows\system32\themeui.dll
2010-01-26 15:40:26 ----A---- C:\Windows\system32\themecpl.dll
2010-01-26 15:40:26 ----A---- C:\Windows\system32\thawbrkr.dll
2010-01-26 15:40:26 ----A---- C:\Windows\system32\termsrv.dll
2010-01-26 15:40:26 ----A---- C:\Windows\system32\taskeng.exe
2010-01-26 15:40:26 ----A---- C:\Windows\system32\taskcomp.dll
2010-01-26 15:35:37 ----D---- C:\Windows\system32\EventProviders
2010-01-26 15:24:18 ----D---- C:\Windows\pss
2010-01-26 15:16:51 ----A---- C:\Windows\system32\kbd106n.dll
2010-01-26 15:10:20 ----A---- C:\Windows\system32\wups2.dll
2010-01-26 15:10:20 ----A---- C:\Windows\system32\wucltux.dll
2010-01-26 15:10:20 ----A---- C:\Windows\system32\wuaueng.dll
2010-01-26 15:10:20 ----A---- C:\Windows\system32\wuauclt.exe
2010-01-26 15:10:05 ----A---- C:\Windows\system32\wups.dll
2010-01-26 15:10:05 ----A---- C:\Windows\system32\wudriver.dll
2010-01-26 15:10:05 ----A---- C:\Windows\system32\wuapi.dll
2010-01-26 15:09:56 ----A---- C:\Windows\system32\wuwebv.dll
2010-01-26 15:09:56 ----A---- C:\Windows\system32\wuapp.exe
2010-01-26 15:03:10 ----A---- C:\Windows\system32\occache.dll
2010-01-26 15:03:10 ----A---- C:\Windows\system32\jsproxy.dll
2010-01-26 15:03:09 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-01-26 15:03:09 ----A---- C:\Windows\system32\msfeeds.dll
2010-01-26 15:03:09 ----A---- C:\Windows\system32\ieui.dll
2010-01-26 15:03:09 ----A---- C:\Windows\system32\iepeers.dll
2010-01-26 15:03:08 ----A---- C:\Windows\system32\wininet.dll
2010-01-26 15:03:08 ----A---- C:\Windows\system32\msfeedssync.exe
2010-01-26 15:03:08 ----A---- C:\Windows\system32\iesetup.dll
2010-01-26 15:03:08 ----A---- C:\Windows\system32\iernonce.dll
2010-01-26 15:03:06 ----A---- C:\Windows\system32\ie4uinit.exe
2010-01-26 15:03:04 ----A---- C:\Windows\system32\ieUnatt.exe
2010-01-26 15:03:04 ----A---- C:\Windows\system32\iesysprep.dll
2010-01-26 15:03:04 ----A---- C:\Windows\system32\iertutil.dll
2010-01-26 15:03:04 ----A---- C:\Windows\system32\iedkcs32.dll
2010-01-26 15:03:03 ----A---- C:\Windows\system32\urlmon.dll
2010-01-26 15:03:02 ----A---- C:\Windows\system32\mshtml.dll
2010-01-26 15:03:02 ----A---- C:\Windows\system32\ieframe.dll
2010-01-26 14:57:27 ----A---- C:\Windows\system32\mshtmler.dll
2010-01-26 14:57:27 ----A---- C:\Windows\system32\mshtmled.dll
2010-01-26 14:57:27 ----A---- C:\Windows\system32\icardie.dll
2010-01-26 14:57:27 ----A---- C:\Windows\system32\admparse.dll
2010-01-26 14:57:26 ----A---- C:\Windows\system32\msls31.dll
2010-01-26 14:57:26 ----A---- C:\Windows\system32\imgutil.dll
2010-01-26 14:57:26 ----A---- C:\Windows\system32\ieakeng.dll
2010-01-26 14:57:26 ----A---- C:\Windows\system32\dxtrans.dll
2010-01-26 14:57:26 ----A---- C:\Windows\system32\dxtmsft.dll
2010-01-26 14:57:26 ----A---- C:\Windows\system32\corpol.dll
2010-01-26 14:57:25 ----A---- C:\Windows\system32\WinFXDocObj.exe
2010-01-26 14:57:25 ----A---- C:\Windows\system32\wextract.exe
2010-01-26 14:57:25 ----A---- C:\Windows\system32\webcheck.dll
2010-01-26 14:57:25 ----A---- C:\Windows\system32\mstime.dll
2010-01-26 14:57:25 ----A---- C:\Windows\system32\msrating.dll
2010-01-26 14:57:25 ----A---- C:\Windows\system32\licmgr10.dll
2010-01-26 14:57:25 ----A---- C:\Windows\system32\inseng.dll
2010-01-26 14:57:25 ----A---- C:\Windows\system32\ieakui.dll
2010-01-26 14:57:25 ----A---- C:\Windows\system32\ieaksie.dll
2010-01-26 14:57:24 ----A---- C:\Windows\system32\vbscript.dll
2010-01-26 14:57:24 ----A---- C:\Windows\system32\pngfilt.dll
2010-01-26 14:57:24 ----A---- C:\Windows\system32\jscript.dll
2010-01-26 14:57:24 ----A---- C:\Windows\system32\ieapfltr.dll
2010-01-26 14:57:24 ----A---- C:\Windows\system32\advpack.dll
2010-01-26 14:57:23 ----A---- C:\Windows\system32\url.dll
2010-01-26 14:57:22 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2010-01-26 14:57:22 ----A---- C:\Windows\system32\SetDepNx.exe
2010-01-26 14:57:22 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2010-01-26 14:57:22 ----A---- C:\Windows\system32\PDMSetup.exe
2010-01-26 14:57:22 ----A---- C:\Windows\system32\mshta.exe
2010-01-26 14:57:22 ----A---- C:\Windows\system32\iexpress.exe
2010-01-26 14:46:36 ----D---- C:\Program Files\Mozilla Thunderbird
2010-01-26 14:32:36 ----D---- C:\Program Files\Common Files\Skype
2010-01-26 14:32:31 ----RD---- C:\Program Files\Skype
2010-01-26 14:32:27 ----D---- C:\ProgramData\Skype
2010-01-26 14:28:56 ----D---- C:\Program Files\CCleaner
2010-01-26 14:13:12 ----D---- C:\Windows\system32\Macromed
2010-01-26 02:14:42 ----SHD---- C:\System Volume Information
2010-01-26 02:11:50 ----D---- C:\Windows\Panther
2010-01-26 02:11:37 ----RAS---- C:\BOOTSECT.BAK
2010-01-26 02:11:34 ----SHD---- C:\Boot
2010-01-26 02:11:16 ----D---- C:\Windows\system32\OEM
2010-01-26 02:10:44 ----D---- C:\Windows\sk-SK
2010-01-25 18:30:44 ----A---- C:\Windows\system32\aswBoot.exe
2010-01-25 18:30:37 ----D---- C:\ProgramData\Alwil Software
2010-01-25 18:30:37 ----D---- C:\Program Files\Alwil Software
2010-01-25 18:24:31 ----D---- C:\Program Files\Mozilla Firefox
2010-01-25 18:07:41 ----D---- C:\Program Files\Common Files\LightScribe
2010-01-25 18:04:11 ----D---- C:\Users\Administrátor\AppData\Roaming\GTek
2010-01-25 18:03:56 ----D---- C:\Program Files\HP
2010-01-25 18:03:55 ----A---- C:\Windows\system32\IVIresizeW7.dll
2010-01-25 18:03:55 ----A---- C:\Windows\system32\IVIresizePX.dll
2010-01-25 18:03:55 ----A---- C:\Windows\system32\IVIresizeP6.dll
2010-01-25 18:03:55 ----A---- C:\Windows\system32\IVIresizeM6.dll
2010-01-25 18:03:55 ----A---- C:\Windows\system32\IVIresizeA6.dll
2010-01-25 18:03:55 ----A---- C:\Windows\system32\IVIresize.dll
2010-01-25 18:03:27 ----D---- C:\Program Files\Common Files\InterVideo
2010-01-25 18:03:04 ----D---- C:\Program Files\InterVideo
2010-01-25 18:02:41 ----D---- C:\Program Files\Common Files\InstallShield
2010-01-25 17:52:55 ----A---- C:\Windows\system32\BttnCmns_64.dll
2010-01-25 17:52:55 ----A---- C:\Windows\system32\BttnCmns.dll
2010-01-25 17:52:55 ----A---- C:\Windows\system32\BttnCmn.dll
2010-01-25 17:51:45 ----RA---- C:\Windows\system32\CSVer.dll
2010-01-25 17:51:45 ----D---- C:\Program Files\Intel
2010-01-25 17:50:56 ----D---- C:\Program Files\Broadcom
2010-01-25 17:48:44 ----A---- C:\Windows\system32\oemdspif.dll
2010-01-25 17:48:44 ----A---- C:\Windows\system32\igfxzoom.exe
2010-01-25 17:48:44 ----A---- C:\Windows\system32\igfxtray.exe
2010-01-25 17:48:44 ----A---- C:\Windows\system32\igfxTMM.dll
2010-01-25 17:48:44 ----A---- C:\Windows\system32\igfxsrvc.exe
2010-01-25 17:48:44 ----A---- C:\Windows\system32\igfxsrvc.dll
2010-01-25 17:48:44 ----A---- C:\Windows\system32\igfxress.dll
2010-01-25 17:48:44 ----A---- C:\Windows\system32\igfxpph.dll
2010-01-25 17:48:44 ----A---- C:\Windows\system32\igfxpers.exe
2010-01-25 17:48:44 ----A---- C:\Windows\system32\igfxext.exe
2010-01-25 17:48:44 ----A---- C:\Windows\system32\igfxexps.dll
2010-01-25 17:48:44 ----A---- C:\Windows\system32\igfxdo.dll
2010-01-25 17:48:44 ----A---- C:\Windows\system32\igfxdev.dll
2010-01-25 17:48:44 ----A---- C:\Windows\system32\igfxCoIn_v1437.dll
2010-01-25 17:48:44 ----A---- C:\Windows\system32\igfxcfg.exe
2010-01-25 17:48:44 ----A---- C:\Windows\system32\igdumd32.dll
2010-01-25 17:48:44 ----A---- C:\Windows\system32\ig4icd32.dll
2010-01-25 17:48:44 ----A---- C:\Windows\system32\ig4dev32.dll
2010-01-25 17:48:44 ----A---- C:\Windows\system32\hkcmd.exe
2010-01-25 17:48:44 ----A---- C:\Windows\system32\hccutils.dll
2010-01-25 17:48:25 ----RA---- C:\Windows\system32\difxapi.dll
2010-01-25 17:48:25 ----D---- C:\Windows\system32\Lang
2010-01-25 17:48:22 ----D---- C:\Intel
2010-01-25 17:47:42 ----A---- C:\Windows\system32\Prounstl.exe
2010-01-25 17:47:42 ----A---- C:\Windows\system32\NicInstE.dll
2010-01-25 17:47:42 ----A---- C:\Windows\system32\NicCo.dll
2010-01-25 17:47:42 ----A---- C:\Windows\system32\e1000msg.dll
2010-01-25 17:47:17 ----D---- C:\Program Files\Synaptics
2010-01-25 17:46:58 ----A---- C:\Windows\system32\WdfCoInstaller01000.dll
2010-01-25 17:46:58 ----A---- C:\Windows\system32\SynTPCo4.dll
2010-01-25 17:46:58 ----A---- C:\Windows\system32\SynTPAPI.dll
2010-01-25 17:46:58 ----A---- C:\Windows\system32\SynCtrl.dll
2010-01-25 17:46:58 ----A---- C:\Windows\system32\SynCOM.dll
2010-01-25 17:42:40 ----D---- C:\Users\Administrátor\AppData\Roaming\hpqLog
2010-01-25 17:42:39 ----D---- C:\Program Files\HPQ
2010-01-25 17:42:39 ----D---- C:\Program Files\Hewlett-Packard
2010-01-25 17:41:14 ----N---- C:\Windows\system32\agrsmdel.exe
2010-01-25 17:40:50 ----A---- C:\Windows\system32\SmaxCo.dll
2010-01-25 17:40:50 ----A---- C:\Windows\system32\AEADISRV.EXE
2010-01-25 17:40:50 ----A---- C:\Windows\system32\AEADIExt.dll
2010-01-25 17:40:50 ----A---- C:\Windows\system32\AEADIAPR.dll
2010-01-25 17:40:50 ----A---- C:\Windows\system32\AEADIAPO.dll
2010-01-25 17:40:39 ----D---- C:\Program Files\Analog Devices
2010-01-25 17:40:36 ----HD---- C:\Program Files\InstallShield Installation Information
2010-01-25 17:40:31 ----D---- C:\Windows\Options
2010-01-25 17:40:30 ----D---- C:\SWSetup
2010-01-25 17:40:27 ----SHD---- C:\Windows\Installer
2010-01-25 17:40:23 ----D---- C:\Users\Administrátor\AppData\Roaming\Hewlett Packard
2010-01-25 17:40:16 ----D---- C:\Users\Administrátor\AppData\Roaming\InstallShield
2010-01-25 17:39:08 ----D---- C:\SYSTEM.SAV
2010-01-25 17:37:32 ----D---- C:\Users\Administrátor\AppData\Roaming\Identities
2010-01-25 17:37:25 ----SD---- C:\Users\Administrátor\AppData\Roaming\Microsoft
2010-01-25 17:34:30 ----D---- C:\Windows\Debug
2010-01-25 17:30:59 ----D---- C:\Windows\SoftwareDistribution
2010-01-25 17:26:43 ----D---- C:\Windows\Prefetch
======List of files/folders modified in the last 1 months======
2010-01-30 22:04:17 ----D---- C:\Windows\Temp
2010-01-30 22:04:07 ----RD---- C:\Program Files
2010-01-30 20:43:04 ----D---- C:\Windows\System32
2010-01-30 20:43:04 ----D---- C:\Windows\inf
2010-01-30 20:43:04 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-01-29 18:59:20 ----D---- C:\Windows
2010-01-27 20:09:30 ----D---- C:\Windows\winsxs
2010-01-27 19:49:29 ----D---- C:\Windows\rescache
2010-01-27 19:46:25 ----D---- C:\Windows\system32\catroot
2010-01-27 19:46:24 ----D---- C:\Windows\system32\catroot2
2010-01-27 15:59:38 ----D---- C:\Windows\system32\sk-SK
2010-01-27 15:59:35 ----D---- C:\Windows\system32\drivers
2010-01-27 15:59:33 ----D---- C:\Windows\system32\en-US
2010-01-27 15:27:24 ----HD---- C:\ProgramData
2010-01-27 15:20:00 ----SD---- C:\Windows\Downloaded Program Files
2010-01-27 14:35:29 ----D---- C:\Windows\PolicyDefinitions
2010-01-27 14:34:14 ----D---- C:\Program Files\Internet Explorer
2010-01-26 16:23:24 ----D---- C:\Windows\system32\WDI
2010-01-26 16:12:05 ----D---- C:\Windows\AppPatch
2010-01-26 16:06:31 ----D---- C:\Windows\Microsoft.NET
2010-01-26 16:06:30 ----RSD---- C:\Windows\assembly
2010-01-26 15:58:53 ----D---- C:\Program Files\Windows Calendar
2010-01-26 15:58:53 ----D---- C:\Program Files\Movie Maker
2010-01-26 15:58:52 ----D---- C:\Windows\servicing
2010-01-26 15:58:52 ----D---- C:\Program Files\Windows Sidebar
2010-01-26 15:58:52 ----D---- C:\Program Files\Windows Photo Gallery
2010-01-26 15:58:52 ----D---- C:\Program Files\Windows Media Player
2010-01-26 15:58:52 ----D---- C:\Program Files\Windows Mail
2010-01-26 15:58:52 ----D---- C:\Program Files\Windows Defender
2010-01-26 15:58:52 ----D---- C:\Program Files\Windows Collaboration
2010-01-26 15:58:52 ----D---- C:\Program Files\Common Files\System
2010-01-26 15:58:49 ----D---- C:\Windows\system32\XPSViewer
2010-01-26 15:58:49 ----D---- C:\Windows\system32\lv-LV
2010-01-26 15:58:49 ----D---- C:\Windows\system32\hr-HR
2010-01-26 15:58:49 ----D---- C:\Windows\system32\et-EE
2010-01-26 15:58:49 ----D---- C:\Windows\system32\da-DK
2010-01-26 15:58:49 ----D---- C:\Windows\IME
2010-01-26 15:58:48 ----D---- C:\Windows\system32\ko-KR
2010-01-26 15:58:47 ----D---- C:\Windows\system32\oobe
2010-01-26 15:58:47 ----D---- C:\Windows\system32\migration
2010-01-26 15:58:47 ----D---- C:\Windows\system32\it-IT
2010-01-26 15:58:47 ----D---- C:\Windows\system32\el-GR
2010-01-26 15:58:47 ----D---- C:\Windows\system32\de-DE
2010-01-26 15:58:46 ----D---- C:\Windows\system32\zh-CN
2010-01-26 15:58:46 ----D---- C:\Windows\system32\sv-SE
2010-01-26 15:58:46 ----D---- C:\Windows\system32\sr-Latn-CS
2010-01-26 15:58:46 ----D---- C:\Windows\system32\SLUI
2010-01-26 15:58:46 ----D---- C:\Windows\system32\sl-SI
2010-01-26 15:58:46 ----D---- C:\Windows\system32\setup
2010-01-26 15:58:46 ----D---- C:\Windows\system32\ru-RU
2010-01-26 15:58:46 ----D---- C:\Windows\system32\pt-PT
2010-01-26 15:58:46 ----D---- C:\Windows\system32\manifeststore
2010-01-26 15:58:46 ----D---- C:\Windows\system32\hu-HU
2010-01-26 15:58:46 ----D---- C:\Windows\system32\he-IL
2010-01-26 15:58:46 ----D---- C:\Windows\system32\fr-FR
2010-01-26 15:58:46 ----D---- C:\Windows\system32\fi-FI
2010-01-26 15:58:46 ----D---- C:\Windows\system32\es-ES
2010-01-26 15:58:46 ----D---- C:\Windows\system32\en
2010-01-26 15:58:46 ----D---- C:\Windows\system32\cs-CZ
2010-01-26 15:58:46 ----D---- C:\Windows\system32\AdvancedInstallers
2010-01-26 15:58:45 ----D---- C:\Windows\system32\zh-TW
2010-01-26 15:58:45 ----D---- C:\Windows\system32\uk-UA
2010-01-26 15:58:45 ----D---- C:\Windows\system32\tr-TR
2010-01-26 15:58:45 ----D---- C:\Windows\system32\th-TH
2010-01-26 15:58:45 ----D---- C:\Windows\system32\ro-RO
2010-01-26 15:58:45 ----D---- C:\Windows\system32\pl-PL
2010-01-26 15:58:45 ----D---- C:\Windows\system32\ja-JP
2010-01-26 15:58:45 ----D---- C:\Windows\system32\bg-BG
2010-01-26 15:58:43 ----D---- C:\Windows\system32\wbem
2010-01-26 15:58:42 ----D---- C:\Windows\system32\pt-BR
2010-01-26 15:58:42 ----D---- C:\Windows\system32\nl-NL
2010-01-26 15:58:42 ----D---- C:\Windows\system32\nb-NO
2010-01-26 15:58:42 ----D---- C:\Windows\system32\migwiz
2010-01-26 15:58:42 ----D---- C:\Windows\system32\lt-LT
2010-01-26 15:58:42 ----D---- C:\Windows\system32\ar-SA
2010-01-26 15:58:35 ----RSD---- C:\Windows\Fonts
2010-01-26 15:58:29 ----D---- C:\Windows\system32\Boot
2010-01-26 14:32:58 ----D---- C:\Windows\system32\Tasks
2010-01-26 14:32:36 ----D---- C:\Program Files\Common Files
2010-01-26 02:10:44 ----D---- C:\Windows\WindowsMobile
2010-01-26 02:10:44 ----D---- C:\Windows\system32\sysprep
2010-01-26 02:10:44 ----D---- C:\Windows\DigitalLocker
2010-01-25 18:30:54 ----D---- C:\Program Files\Common Files\microsoft shared
2010-01-25 18:21:40 ----SD---- C:\ProgramData\Microsoft
2010-01-25 18:19:59 ----SHD---- C:\$Recycle.Bin
2010-01-25 18:19:42 ----RD---- C:\Users
2010-01-25 17:55:05 ----D---- C:\Windows\system32\WCN
2010-01-25 17:55:05 ----D---- C:\Windows\system32\DriverStore
2010-01-25 17:44:35 ----D---- C:\Windows\Logs
2010-01-25 17:40:20 ----D---- C:\Windows\system32\restore
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2010-01-28 23376]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2010-01-28 163280]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2010-01-28 46672]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\Windows\System32\DRIVERS\cmdguard.sys [2010-01-27 130960]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\Windows\System32\DRIVERS\cmdhlp.sys [2010-01-27 29520]
R1 inspect;COMODO Internet Security Firewall Driver; C:\Windows\system32\DRIVERS\inspect.sys [2010-01-27 74328]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2010-01-28 19024]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2010-01-28 51792]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\ADIHdAud.sys [2008-04-24 309248]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\AGRSM.sys [2008-02-29 1202560]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-21 14208]
R3 e1express;Intel(R) PRO/1000 PCI Express Network Connection Driver; C:\Windows\system32\DRIVERS\e1e6032.sys [2007-05-24 223616]
R3 HBtnKey;HBtnKey; C:\Windows\system32\DRIVERS\cpqbttn.sys [2008-04-14 9344]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2007-06-18 16768]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2008-02-11 2302976]
R3 NETw5v32;Intel(R) Wireless WiFi Link Adapter Driver for Windows Vista 32 Bit ; C:\Windows\system32\DRIVERS\NETw5v32.sys [2008-04-28 3658752]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2008-03-27 199472]
R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-21 11264]
S3 BthEnum;Bluetooth Request Block Driver; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-10 22528]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-21 92160]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2009-04-10 507904]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2009-04-10 29696]
S3 DAMDrv;DAMDrv; C:\Windows\system32\DRIVERS\DAMDrv.sys [2007-06-08 30008]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 NETw3v32;Intel(R) PRO/Wireless 3945ABG Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw3v32.sys [2008-01-21 2225664]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-10 148992]
S3 UIUSys;Conexant Setup API; C:\Windows\system32\DRIVERS\UIUSYS.SYS []
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AEADIFilters;Andrea ADI Filters Service; C:\Windows\system32\AEADISRV.EXE [2007-02-06 69632]
R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\Windows\system32\agrsmsvc.exe [2007-12-11 12800]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-01-28 40384]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 cmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2010-01-27 723632]
R2 HP Health Check Service;HP Health Check Service; c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [2008-04-15 94208]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2008-03-17 73728]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-01-28 40384]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-01-28 40384]
R3 Com4QLBEx;Com4QLBEx; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2008-04-03 193840]
R3 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2008-04-16 165192]
S3 FLCDLOCK;HP ProtectTools Device Locking / Auditing; C:\Windows\system32\flcdlock.exe [2007-06-08 172131]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
-----------------EOF-----------------
Re: Pre motji
Dobrý večer
Jaký je problém s počítačem?
a omlouvám se, ale už jdu spát
, zítra ráno na to kouknu 

Jaký je problém s počítačem?

a omlouvám se, ale už jdu spát


Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: Pre motji
Padá.




Re: Pre motji
A můžete to více popsat? Padá kdy? jen tak nebo při zátěži? Vyhodí modrou obrazovku? Máte ve složce windows složku minidump?
Stahněte MBAM z mého podpisu
-Nainstalujte,dejte úplný sken
NIC NEMAZAT
-MBAM má občas falešné detekce,proto budeme mazat až po kontrole logu.
-Log zkopírujte sem.

-Nainstalujte,dejte úplný sken
NIC NEMAZAT

-MBAM má občas falešné detekce,proto budeme mazat až po kontrole logu.
-Log zkopírujte sem.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: Pre motji
Nenašiel nič. To som už skúšal ako prvé.
Padá pri hre Bulánci.
Sám sa vypne pri prechádzaní internetu.
Sem tam BSOD.
V minidump je súbor formátu .DMP
EDIT: Help! Avast našiel Trójskeho koňa zo stránky viry.cz v procese firefox.exe
EDIT2: Log z Avastu 30. 1. 2010 22:28:37 http://www.viry.cz/forum/viewtopic.php?f=13&t=1076 [L] Win32:Mhtplo-7 [Trj] (0)
EDIT3: firefox.exe na virustotal http://www.virustotal.com/analisis/f646 ... 1264887225
EDIT4: Stále ked idem tu http://www.viry.cz/forum/viewtopic.php?f=13&t=1076 nahlási Avast! vírus. Na iných topicoch všetko OK.
Padá pri hre Bulánci.
Sám sa vypne pri prechádzaní internetu.
Sem tam BSOD.
V minidump je súbor formátu .DMP
EDIT: Help! Avast našiel Trójskeho koňa zo stránky viry.cz v procese firefox.exe
EDIT2: Log z Avastu 30. 1. 2010 22:28:37 http://www.viry.cz/forum/viewtopic.php?f=13&t=1076 [L] Win32:Mhtplo-7 [Trj] (0)
EDIT3: firefox.exe na virustotal http://www.virustotal.com/analisis/f646 ... 1264887225
EDIT4: Stále ked idem tu http://www.viry.cz/forum/viewtopic.php?f=13&t=1076 nahlási Avast! vírus. Na iných topicoch všetko OK.
Re: Pre motji
Na fóre viry.cz hlásila aj Avira vírus.
Niečo tu bude. Možno nejaká infikovaná reklama.
Niečo tu bude. Možno nejaká infikovaná reklama.

Re: Pre motji

Poprosím kolegu, ať se na to podívá



Pro jistotu

- ComboFix je třeba spustit pod účtem s právy administrátora
- Před použitím vypněte všechny rezidentní bezpečnostní programy - antiviry, firewally, antispywary
- Po spuštění se zobrazí podmínky užití, potvrďte je stiskem tlačítka Ano
- Dále postupujte dle pokynů, během aplikování ComboFixu neklikejte do zobrazujícího se okna

- Po dokončení skenování, trvajícího maximálně 10 minut, by měl program vytvořit log - C:\ComboFix.txt, skopírujte celý jeho obsah sem
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: Pre motji
Nejde uploadnuť. Napíše že nemám práva ale som správca.
Potom napíš výsledok tej stránky. ä
Idem na Combofix. Počkaj prosím tu.

Potom napíš výsledok tej stránky. ä
Idem na Combofix. Počkaj prosím tu.
Re: Pre motji
Budu tu asi v poledne, ted bohužel musím pryč 

Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: Pre motji
ComboFix 10-01-30.04 - Administrátor . 01. 2010 9:33.1.2 - x86
Microsoft® Windows Vista™ Home Basic 6.0.6002.2.1250.421.1051.18.2039.1162 [GMT 1:00]
Running from: c:\users\Administrátor\Desktop\ComboFix.exe
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
.
((((((((((((((((((((((((( Files Created from 2009-12-28 to 2010-01-31 )))))))))))))))))))))))))))))))
.
2010-01-31 08:40 . 2010-01-31 08:40 -------- d-----w- c:\users\Default\AppData\Local\temp
2010-01-30 21:04 . 2010-01-30 21:04 -------- d-----w- c:\program files\trend micro
2010-01-30 21:04 . 2010-01-30 21:04 -------- d-----w- C:\rsit
2010-01-28 13:22 . 2010-01-28 13:22 -------- d-----w- c:\program files\Lavalys
2010-01-27 13:54 . 2010-01-27 13:59 -------- d-----w- c:\programdata\Comodo
2010-01-27 13:54 . 2010-01-27 18:55 74328 ----a-w- c:\windows\system32\drivers\inspect.sys
2010-01-27 13:54 . 2010-01-27 18:55 171552 ----a-w- c:\windows\system32\guard32.dll
2010-01-27 13:54 . 2010-01-27 18:55 29520 ----a-w- c:\windows\system32\drivers\cmdhlp.sys
2010-01-27 13:54 . 2010-01-27 18:55 130960 ----a-w- c:\windows\system32\drivers\cmdguard.sys
2010-01-27 13:54 . 2010-01-27 13:54 -------- d-----w- c:\program files\COMODO
2010-01-27 13:38 . 2009-10-29 09:17 2048 ----a-w- c:\windows\system32\tzres.dll
2010-01-27 13:37 . 2009-11-03 21:43 24064 ----a-w- c:\windows\system32\nshhttp.dll
2010-01-27 13:37 . 2009-11-03 21:42 30720 ----a-w- c:\windows\system32\httpapi.dll
2010-01-27 13:37 . 2009-11-03 19:41 411648 ----a-w- c:\windows\system32\drivers\http.sys
2010-01-27 13:37 . 2009-08-24 11:36 377344 ----a-w- c:\windows\system32\winhttp.dll
2010-01-26 15:15 . 2010-01-30 21:46 12 ----a-w- c:\windows\bthservsdp.dat
2010-01-26 15:11 . 2009-06-15 14:54 175104 ----a-w- c:\windows\system32\wdigest.dll
2010-01-26 15:11 . 2009-06-15 14:53 218624 ----a-w- c:\windows\system32\msv1_0.dll
2010-01-26 15:11 . 2009-06-15 14:52 499712 ----a-w- c:\windows\system32\kerberos.dll
2010-01-26 15:11 . 2009-06-15 23:15 439864 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2010-01-26 15:11 . 2009-06-15 14:53 72704 ----a-w- c:\windows\system32\secur32.dll
2010-01-26 15:11 . 2009-06-15 14:53 270848 ----a-w- c:\windows\system32\schannel.dll
2010-01-26 15:11 . 2009-06-15 14:52 1259008 ----a-w- c:\windows\system32\lsasrv.dll
2010-01-26 15:11 . 2009-06-15 12:48 9728 ----a-w- c:\windows\system32\lsass.exe
2010-01-26 15:11 . 2009-08-29 00:14 28672 ----a-w- c:\windows\system32\Apphlpdm.dll
2010-01-26 15:11 . 2009-08-29 00:27 4240384 ----a-w- c:\windows\system32\GameUXLegacyGDFs.dll
2010-01-26 15:09 . 2010-01-14 10:12 181120 ------w- c:\windows\system32\MpSigStub.exe
2010-01-26 14:58 . 2010-01-26 14:58 -------- d-----w- c:\windows\system32\ca-ES
2010-01-26 14:58 . 2010-01-26 14:58 -------- d-----w- c:\windows\system32\eu-ES
2010-01-26 14:58 . 2010-01-26 14:58 -------- d-----w- c:\windows\system32\vi-VN
2010-01-26 14:55 . 2010-01-26 14:55 -------- d-----w- c:\windows\system32\SPReview
2010-01-26 14:45 . 2009-04-10 22:28 928768 ----a-w- c:\windows\system32\scavenge.dll
2010-01-26 14:45 . 2009-04-10 22:27 57856 ----a-w- c:\windows\system32\compcln.exe
2010-01-26 14:40 . 2009-04-10 22:28 2868224 ----a-w- c:\windows\system32\mf.dll
2010-01-26 14:35 . 2010-01-26 14:35 -------- d-----w- c:\windows\system32\EventProviders
2010-01-26 14:16 . 2008-02-29 06:35 6656 ----a-w- c:\windows\system32\kbd106n.dll
2010-01-26 14:10 . 2009-08-07 02:24 44768 ----a-w- c:\windows\system32\wups2.dll
2010-01-26 14:10 . 2009-08-07 02:24 53472 ----a-w- c:\windows\system32\wuauclt.exe
2010-01-26 14:10 . 2009-08-07 02:23 1929952 ----a-w- c:\windows\system32\wuaueng.dll
2010-01-26 14:10 . 2009-08-07 01:45 2421760 ----a-w- c:\windows\system32\wucltux.dll
2010-01-26 14:10 . 2009-08-07 02:24 35552 ----a-w- c:\windows\system32\wups.dll
2010-01-26 14:10 . 2009-08-07 02:23 575704 ----a-w- c:\windows\system32\wuapi.dll
2010-01-26 14:10 . 2009-08-07 01:44 87552 ----a-w- c:\windows\system32\wudriver.dll
2010-01-26 14:09 . 2009-08-06 18:23 171608 ----a-w- c:\windows\system32\wuwebv.dll
2010-01-26 14:09 . 2009-08-06 17:44 33792 ----a-w- c:\windows\system32\wuapp.exe
2010-01-26 13:57 . 2009-03-08 11:32 72704 ----a-w- c:\windows\system32\admparse.dll
2010-01-26 13:46 . 2010-01-26 13:46 -------- d-----w- c:\program files\Mozilla Thunderbird
2010-01-26 13:32 . 2010-01-26 13:32 -------- d-----w- c:\program files\Common Files\Skype
2010-01-26 13:32 . 2010-01-26 15:19 -------- d-----r- c:\program files\Skype
2010-01-26 13:32 . 2010-01-26 13:32 -------- d-----w- c:\programdata\Skype
2010-01-26 13:28 . 2010-01-26 13:28 -------- d-----w- c:\program files\CCleaner
2010-01-26 13:13 . 2010-01-26 13:13 -------- d-----w- c:\windows\system32\Macromed
2010-01-26 01:11 . 2010-01-25 16:31 -------- d-----w- c:\windows\Panther
2010-01-26 01:11 . 2010-01-26 15:04 -------- d-----w- C:\Boot
2010-01-26 01:11 . 2010-01-26 01:11 -------- d-----w- c:\windows\system32\OEM
2010-01-26 01:10 . 2010-01-26 01:10 -------- d-----w- c:\windows\sk-SK
2010-01-26 01:10 . 2010-01-27 14:59 -------- d-----w- c:\windows\system32\drivers\sk-SK
2010-01-25 17:31 . 2010-01-28 21:57 163280 ----a-w- c:\windows\system32\drivers\aswSP.sys
2010-01-25 17:31 . 2010-01-28 21:54 19024 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2010-01-25 17:31 . 2010-01-28 21:54 23376 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2010-01-25 17:31 . 2010-01-28 21:57 46672 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2010-01-25 17:31 . 2010-01-28 21:54 51792 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2010-01-25 17:30 . 2010-01-28 22:09 152672 ----a-w- c:\windows\system32\aswBoot.exe
2010-01-25 17:30 . 2010-01-19 11:57 38848 ----a-w- c:\windows\system32\avastSS.scr
2010-01-25 17:30 . 2010-01-25 17:30 -------- d-----w- c:\programdata\Alwil Software
2010-01-25 17:30 . 2010-01-25 17:30 -------- d-----w- c:\program files\Alwil Software
2010-01-25 17:19 . 2010-01-25 17:19 -------- d-----w- c:\users\Používateľ
2010-01-25 17:07 . 2010-01-25 17:07 -------- d-----w- c:\program files\Common Files\LightScribe
2010-01-25 17:03 . 2010-01-25 17:03 -------- d-----w- c:\program files\HP
2010-01-25 17:03 . 2002-11-22 01:57 204800 ----a-w- c:\windows\system32\IVIresizeW7.dll
2010-01-25 17:03 . 2002-11-22 01:57 200704 ----a-w- c:\windows\system32\IVIresizeA6.dll
2010-01-25 17:03 . 2002-11-22 01:57 192512 ----a-w- c:\windows\system32\IVIresizeP6.dll
2010-01-25 17:03 . 2002-11-22 01:57 192512 ----a-w- c:\windows\system32\IVIresizeM6.dll
2010-01-25 17:03 . 2002-11-22 01:57 188416 ----a-w- c:\windows\system32\IVIresizePX.dll
2010-01-25 17:03 . 2002-11-22 01:57 20480 ----a-w- c:\windows\system32\IVIresize.dll
2010-01-25 17:03 . 2010-01-25 17:03 -------- d-----w- c:\program files\Common Files\InterVideo
2010-01-25 17:03 . 2010-01-25 17:03 -------- d-----w- c:\program files\InterVideo
2010-01-25 17:02 . 2010-01-25 17:02 -------- d-----w- c:\program files\Common Files\InstallShield
2010-01-25 16:53 . 2008-04-14 13:39 9344 ----a-w- c:\windows\system32\drivers\CPQBttn.sys
2010-01-25 16:52 . 2007-06-18 16:12 16768 ----a-w- c:\windows\system32\drivers\HpqKbFiltr.sys
2010-01-25 16:52 . 2006-11-02 06:09 1419232 ----a-w- c:\windows\system32\drivers\wdfcoinstaller01005.dll
2010-01-25 16:52 . 2007-06-08 13:46 1560576 ----a-w- c:\windows\system32\BttnCmns_64.dll
2010-01-25 16:52 . 2006-06-30 05:46 1560576 ----a-w- c:\windows\system32\BttnCmns.dll
2010-01-25 16:52 . 2005-10-31 14:30 987136 ----a-w- c:\windows\system32\BttnCmn.dll
2010-01-25 16:51 . 2010-01-25 16:51 -------- d-----w- c:\program files\Intel
2010-01-25 16:51 . 2007-07-26 16:15 53248 ----a-r- c:\windows\system32\CSVer.dll
2010-01-25 16:50 . 2010-01-25 16:50 -------- d-----w- c:\program files\Broadcom
2010-01-25 16:47 . 2007-05-24 14:07 62840 ----a-w- c:\windows\system32\NicInstE.dll
2010-01-25 16:47 . 2007-05-24 14:07 154496 ----a-w- c:\windows\system32\Prounstl.exe
2010-01-25 16:47 . 2007-05-24 14:07 28536 ----a-w- c:\windows\system32\NicCo.dll
2010-01-25 16:47 . 2007-05-24 14:07 223616 ----a-w- c:\windows\system32\drivers\e1e6032.sys
2010-01-25 16:47 . 2007-05-24 14:07 179048 ----a-w- c:\windows\system32\e1000msg.dll
2010-01-25 16:47 . 2010-01-25 16:47 -------- d-----w- c:\program files\Synaptics
2010-01-25 16:46 . 2008-03-27 19:06 199472 ----a-w- c:\windows\system32\drivers\SynTP.sys
2010-01-25 16:46 . 2008-03-27 19:04 110592 ----a-w- c:\windows\system32\SynTPCo4.dll
2010-01-25 16:46 . 2008-03-27 18:27 151552 ----a-w- c:\windows\system32\SynTPAPI.dll
2010-01-25 16:46 . 2008-03-27 18:16 196608 ----a-w- c:\windows\system32\SynCtrl.dll
2010-01-25 16:46 . 2008-03-27 18:15 163840 ----a-w- c:\windows\system32\SynCOM.dll
2010-01-25 16:46 . 2006-03-09 09:58 1060424 ----a-w- c:\windows\system32\WdfCoInstaller01000.dll
2010-01-25 16:42 . 2010-01-25 17:08 -------- d-----w- c:\program files\Hewlett-Packard
2010-01-25 16:42 . 2010-01-25 16:42 -------- d-----w- c:\program files\HPQ
2010-01-25 16:41 . 2008-02-29 15:07 54824 ------w- c:\windows\system32\agrsmdel.exe
2010-01-25 16:40 . 2008-04-24 13:26 309248 ----a-w- c:\windows\system32\drivers\ADIHdAud.sys
2010-01-25 16:40 . 2007-06-08 07:56 131072 ----a-w- c:\windows\system32\AEADIAPO.dll
2010-01-25 16:40 . 2007-02-21 09:01 606208 ----a-w- c:\windows\system32\AEADIExt.dll
2010-01-25 16:40 . 2007-02-06 07:44 69632 ----a-w- c:\windows\system32\AEADISRV.EXE
2010-01-25 16:40 . 2007-01-26 13:07 30208 ----a-w- c:\windows\system32\SmaxCo.dll
2010-01-25 16:40 . 2007-01-10 14:40 50176 ----a-w- c:\windows\system32\AEADIAPR.dll
2010-01-25 16:40 . 2010-01-25 16:41 -------- d-----w- c:\program files\Analog Devices
2010-01-25 16:40 . 2010-01-25 17:04 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-01-25 16:40 . 2010-01-25 16:40 -------- d-----w- c:\windows\Options
2010-01-25 16:40 . 2010-01-25 17:02 -------- d-----w- C:\SWSetup
2010-01-25 16:40 . 2010-01-27 14:03 -------- d-sh--w- c:\windows\Installer
2010-01-25 16:39 . 2010-01-25 17:08 -------- d-----w- C:\SYSTEM.SAV
2010-01-25 16:37 . 2010-01-27 13:56 -------- d-----w- c:\users\Administrátor
2010-01-25 16:34 . 2010-01-26 13:29 -------- d-----w- c:\windows\Debug
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-01-26 14:58 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Calendar
2010-01-26 14:58 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Sidebar
2010-01-26 14:58 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Photo Gallery
2010-01-26 14:58 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Defender
2010-01-26 14:58 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Collaboration
2010-01-26 14:58 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail
2010-01-26 14:58 . 2006-11-02 10:25 665600 ----a-w- c:\windows\inf\drvindex.dat
2010-01-26 13:34 . 2010-01-26 13:34 56 ---ha-w- c:\programdata\ezsidmv.dat
2010-01-25 16:47 . 2010-01-25 16:47 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_SynTP_01000.Wdf
2010-01-25 16:44 . 2010-01-25 16:44 0 --sha-r- c:\windows\system32\drivers\103C_HP_bNB_550_Y5336AN_0U_QCNU90660C8_EU_4A_I3618_SHP_V12.00_68MVU F.05_T090119_WV2-1_L41B_M2039_J250_7Intel_86FD_91.80_#100125_N808610C4;80864222_(NA952EA#AKR)_XMOBILE_CN10_Z_2F.05_G80862A12.MRK
2010-01-02 06:38 . 2010-01-26 14:03 916480 ----a-w- c:\windows\system32\wininet.dll
2010-01-02 06:32 . 2010-01-26 14:03 71680 ----a-w- c:\windows\system32\iesetup.dll
2010-01-02 06:32 . 2010-01-26 14:03 109056 ----a-w- c:\windows\system32\iesysprep.dll
2010-01-02 04:57 . 2010-01-26 14:03 133632 ----a-w- c:\windows\system32\ieUnatt.exe
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-04-10 1233920]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-21 1008184]
"PTHOSTTR"="c:\program files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE" [2007-01-09 145184]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2008-03-27 1045800]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2008-05-22 141848]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2008-05-22 166424]
"Persistence"="c:\windows\system32\igfxpers.exe" [2008-05-22 133656]
"QlbCtrl.exe"="c:\program files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2008-05-14 177456]
"hpWirelessAssistant"="c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" [2008-04-15 488752]
"avast5"="c:\progra~1\ALWILS~1\Avast5\avastUI.exe" [2010-01-28 2757512]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2007-02-21 1183744]
"COMODO Internet Security"="c:\program files\COMODO\COMODO Internet Security\cfp.exe" [2010-01-27 1800464]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\DeviceNP]
2007-06-08 08:04 49152 ----a-r- c:\windows\System32\DeviceNP.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\System32\guard32.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Health Check Scheduler]
2008-04-15 12:42 70912 ----a-w- c:\program files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
2008-03-17 16:59 2289664 ----a-w- c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
2009-10-09 12:11 25623336 ----a-r- c:\program files\Skype\Phone\Skype.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"VistaSp2"=hex(b):d9,0c,82,c8,98,9e,ca,01
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-1445392323-651822737-1915893961-1000]
"EnableNotifications"=dword:00000001
"EnableNotificationsRef"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-1445392323-651822737-1915893961-1001]
"EnableNotifications"=dword:00000001
"EnableNotificationsRef"=dword:00000002
R1 aswSP;aswSP;c:\windows\System32\drivers\aswSP.sys [25. 1. 2010 18:31 163280]
R1 cmdGuard;COMODO Internet Security Sandbox Driver;c:\windows\System32\drivers\cmdguard.sys [27. 1. 2010 14:54 130960]
R1 cmdHlp;COMODO Internet Security Helper Driver;c:\windows\System32\drivers\cmdhlp.sys [27. 1. 2010 14:54 29520]
R2 aswFsBlk;aswFsBlk;c:\windows\System32\drivers\aswFsBlk.sys [25. 1. 2010 18:31 19024]
R2 aswMonFlt;aswMonFlt;c:\windows\System32\drivers\aswMonFlt.sys [25. 1. 2010 18:31 51792]
R3 Com4QLBEx;Com4QLBEx;c:\program files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [25. 1. 2010 17:52 193840]
R3 NETw5v32;Intel(R) Wireless WiFi Link Adapter Driver for Windows Vista 32 Bit ;c:\windows\System32\drivers\NETw5v32.sys [28. 4. 2008 6:29 3658752]
S3 DAMDrv;DAMDrv;c:\windows\System32\drivers\DAMDrv.sys [8. 6. 2007 8:49 30008]
S3 FLCDLOCK;HP ProtectTools Device Locking / Auditing;c:\windows\System32\flcdlock.exe [8. 6. 2007 9:06 172131]
S3 FontCache;Windows Font Cache Service;c:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [21. 1. 2008 3:33 21504]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceNoNetwork REG_MULTI_SZ PLA DPS BFE mpssvc
bthsvcs REG_MULTI_SZ BthServ
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2008-03-17 16:56 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
.
------- Supplementary Scan -------
.
FF - ProfilePath - c:\users\Administrátor\AppData\Roaming\Mozilla\Firefox\Profiles\esov0l7c.default\
---- FIREFOX POLICIES ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.debug", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("html5.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".sk");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-01-31 09:40
Windows 6.0.6002 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
--------------------- DLLs Loaded Under Running Processes ---------------------
- - - - - - - > 'winlogon.exe'(3044)
c:\windows\system32\guard32.dll
- - - - - - - > 'lsass.exe'(692)
c:\windows\system32\guard32.dll
.
Completion time: 2010-01-31 09:43:12
ComboFix-quarantined-files.txt 2010-01-31 08:43
Pre-Run: 117 551 792 128 bytes free
Post-Run: 117 551 161 344 bytes free
Current=1 Default=1 Failed=0 LastKnownGood=10 Sets=1,2,3,4,5,6,7,8,9,10
- - End Of File - - AD3FD94C0912805FB3713C9C759E8BD2
Microsoft® Windows Vista™ Home Basic 6.0.6002.2.1250.421.1051.18.2039.1162 [GMT 1:00]
Running from: c:\users\Administrátor\Desktop\ComboFix.exe
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
.
((((((((((((((((((((((((( Files Created from 2009-12-28 to 2010-01-31 )))))))))))))))))))))))))))))))
.
2010-01-31 08:40 . 2010-01-31 08:40 -------- d-----w- c:\users\Default\AppData\Local\temp
2010-01-30 21:04 . 2010-01-30 21:04 -------- d-----w- c:\program files\trend micro
2010-01-30 21:04 . 2010-01-30 21:04 -------- d-----w- C:\rsit
2010-01-28 13:22 . 2010-01-28 13:22 -------- d-----w- c:\program files\Lavalys
2010-01-27 13:54 . 2010-01-27 13:59 -------- d-----w- c:\programdata\Comodo
2010-01-27 13:54 . 2010-01-27 18:55 74328 ----a-w- c:\windows\system32\drivers\inspect.sys
2010-01-27 13:54 . 2010-01-27 18:55 171552 ----a-w- c:\windows\system32\guard32.dll
2010-01-27 13:54 . 2010-01-27 18:55 29520 ----a-w- c:\windows\system32\drivers\cmdhlp.sys
2010-01-27 13:54 . 2010-01-27 18:55 130960 ----a-w- c:\windows\system32\drivers\cmdguard.sys
2010-01-27 13:54 . 2010-01-27 13:54 -------- d-----w- c:\program files\COMODO
2010-01-27 13:38 . 2009-10-29 09:17 2048 ----a-w- c:\windows\system32\tzres.dll
2010-01-27 13:37 . 2009-11-03 21:43 24064 ----a-w- c:\windows\system32\nshhttp.dll
2010-01-27 13:37 . 2009-11-03 21:42 30720 ----a-w- c:\windows\system32\httpapi.dll
2010-01-27 13:37 . 2009-11-03 19:41 411648 ----a-w- c:\windows\system32\drivers\http.sys
2010-01-27 13:37 . 2009-08-24 11:36 377344 ----a-w- c:\windows\system32\winhttp.dll
2010-01-26 15:15 . 2010-01-30 21:46 12 ----a-w- c:\windows\bthservsdp.dat
2010-01-26 15:11 . 2009-06-15 14:54 175104 ----a-w- c:\windows\system32\wdigest.dll
2010-01-26 15:11 . 2009-06-15 14:53 218624 ----a-w- c:\windows\system32\msv1_0.dll
2010-01-26 15:11 . 2009-06-15 14:52 499712 ----a-w- c:\windows\system32\kerberos.dll
2010-01-26 15:11 . 2009-06-15 23:15 439864 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2010-01-26 15:11 . 2009-06-15 14:53 72704 ----a-w- c:\windows\system32\secur32.dll
2010-01-26 15:11 . 2009-06-15 14:53 270848 ----a-w- c:\windows\system32\schannel.dll
2010-01-26 15:11 . 2009-06-15 14:52 1259008 ----a-w- c:\windows\system32\lsasrv.dll
2010-01-26 15:11 . 2009-06-15 12:48 9728 ----a-w- c:\windows\system32\lsass.exe
2010-01-26 15:11 . 2009-08-29 00:14 28672 ----a-w- c:\windows\system32\Apphlpdm.dll
2010-01-26 15:11 . 2009-08-29 00:27 4240384 ----a-w- c:\windows\system32\GameUXLegacyGDFs.dll
2010-01-26 15:09 . 2010-01-14 10:12 181120 ------w- c:\windows\system32\MpSigStub.exe
2010-01-26 14:58 . 2010-01-26 14:58 -------- d-----w- c:\windows\system32\ca-ES
2010-01-26 14:58 . 2010-01-26 14:58 -------- d-----w- c:\windows\system32\eu-ES
2010-01-26 14:58 . 2010-01-26 14:58 -------- d-----w- c:\windows\system32\vi-VN
2010-01-26 14:55 . 2010-01-26 14:55 -------- d-----w- c:\windows\system32\SPReview
2010-01-26 14:45 . 2009-04-10 22:28 928768 ----a-w- c:\windows\system32\scavenge.dll
2010-01-26 14:45 . 2009-04-10 22:27 57856 ----a-w- c:\windows\system32\compcln.exe
2010-01-26 14:40 . 2009-04-10 22:28 2868224 ----a-w- c:\windows\system32\mf.dll
2010-01-26 14:35 . 2010-01-26 14:35 -------- d-----w- c:\windows\system32\EventProviders
2010-01-26 14:16 . 2008-02-29 06:35 6656 ----a-w- c:\windows\system32\kbd106n.dll
2010-01-26 14:10 . 2009-08-07 02:24 44768 ----a-w- c:\windows\system32\wups2.dll
2010-01-26 14:10 . 2009-08-07 02:24 53472 ----a-w- c:\windows\system32\wuauclt.exe
2010-01-26 14:10 . 2009-08-07 02:23 1929952 ----a-w- c:\windows\system32\wuaueng.dll
2010-01-26 14:10 . 2009-08-07 01:45 2421760 ----a-w- c:\windows\system32\wucltux.dll
2010-01-26 14:10 . 2009-08-07 02:24 35552 ----a-w- c:\windows\system32\wups.dll
2010-01-26 14:10 . 2009-08-07 02:23 575704 ----a-w- c:\windows\system32\wuapi.dll
2010-01-26 14:10 . 2009-08-07 01:44 87552 ----a-w- c:\windows\system32\wudriver.dll
2010-01-26 14:09 . 2009-08-06 18:23 171608 ----a-w- c:\windows\system32\wuwebv.dll
2010-01-26 14:09 . 2009-08-06 17:44 33792 ----a-w- c:\windows\system32\wuapp.exe
2010-01-26 13:57 . 2009-03-08 11:32 72704 ----a-w- c:\windows\system32\admparse.dll
2010-01-26 13:46 . 2010-01-26 13:46 -------- d-----w- c:\program files\Mozilla Thunderbird
2010-01-26 13:32 . 2010-01-26 13:32 -------- d-----w- c:\program files\Common Files\Skype
2010-01-26 13:32 . 2010-01-26 15:19 -------- d-----r- c:\program files\Skype
2010-01-26 13:32 . 2010-01-26 13:32 -------- d-----w- c:\programdata\Skype
2010-01-26 13:28 . 2010-01-26 13:28 -------- d-----w- c:\program files\CCleaner
2010-01-26 13:13 . 2010-01-26 13:13 -------- d-----w- c:\windows\system32\Macromed
2010-01-26 01:11 . 2010-01-25 16:31 -------- d-----w- c:\windows\Panther
2010-01-26 01:11 . 2010-01-26 15:04 -------- d-----w- C:\Boot
2010-01-26 01:11 . 2010-01-26 01:11 -------- d-----w- c:\windows\system32\OEM
2010-01-26 01:10 . 2010-01-26 01:10 -------- d-----w- c:\windows\sk-SK
2010-01-26 01:10 . 2010-01-27 14:59 -------- d-----w- c:\windows\system32\drivers\sk-SK
2010-01-25 17:31 . 2010-01-28 21:57 163280 ----a-w- c:\windows\system32\drivers\aswSP.sys
2010-01-25 17:31 . 2010-01-28 21:54 19024 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2010-01-25 17:31 . 2010-01-28 21:54 23376 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2010-01-25 17:31 . 2010-01-28 21:57 46672 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2010-01-25 17:31 . 2010-01-28 21:54 51792 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2010-01-25 17:30 . 2010-01-28 22:09 152672 ----a-w- c:\windows\system32\aswBoot.exe
2010-01-25 17:30 . 2010-01-19 11:57 38848 ----a-w- c:\windows\system32\avastSS.scr
2010-01-25 17:30 . 2010-01-25 17:30 -------- d-----w- c:\programdata\Alwil Software
2010-01-25 17:30 . 2010-01-25 17:30 -------- d-----w- c:\program files\Alwil Software
2010-01-25 17:19 . 2010-01-25 17:19 -------- d-----w- c:\users\Používateľ
2010-01-25 17:07 . 2010-01-25 17:07 -------- d-----w- c:\program files\Common Files\LightScribe
2010-01-25 17:03 . 2010-01-25 17:03 -------- d-----w- c:\program files\HP
2010-01-25 17:03 . 2002-11-22 01:57 204800 ----a-w- c:\windows\system32\IVIresizeW7.dll
2010-01-25 17:03 . 2002-11-22 01:57 200704 ----a-w- c:\windows\system32\IVIresizeA6.dll
2010-01-25 17:03 . 2002-11-22 01:57 192512 ----a-w- c:\windows\system32\IVIresizeP6.dll
2010-01-25 17:03 . 2002-11-22 01:57 192512 ----a-w- c:\windows\system32\IVIresizeM6.dll
2010-01-25 17:03 . 2002-11-22 01:57 188416 ----a-w- c:\windows\system32\IVIresizePX.dll
2010-01-25 17:03 . 2002-11-22 01:57 20480 ----a-w- c:\windows\system32\IVIresize.dll
2010-01-25 17:03 . 2010-01-25 17:03 -------- d-----w- c:\program files\Common Files\InterVideo
2010-01-25 17:03 . 2010-01-25 17:03 -------- d-----w- c:\program files\InterVideo
2010-01-25 17:02 . 2010-01-25 17:02 -------- d-----w- c:\program files\Common Files\InstallShield
2010-01-25 16:53 . 2008-04-14 13:39 9344 ----a-w- c:\windows\system32\drivers\CPQBttn.sys
2010-01-25 16:52 . 2007-06-18 16:12 16768 ----a-w- c:\windows\system32\drivers\HpqKbFiltr.sys
2010-01-25 16:52 . 2006-11-02 06:09 1419232 ----a-w- c:\windows\system32\drivers\wdfcoinstaller01005.dll
2010-01-25 16:52 . 2007-06-08 13:46 1560576 ----a-w- c:\windows\system32\BttnCmns_64.dll
2010-01-25 16:52 . 2006-06-30 05:46 1560576 ----a-w- c:\windows\system32\BttnCmns.dll
2010-01-25 16:52 . 2005-10-31 14:30 987136 ----a-w- c:\windows\system32\BttnCmn.dll
2010-01-25 16:51 . 2010-01-25 16:51 -------- d-----w- c:\program files\Intel
2010-01-25 16:51 . 2007-07-26 16:15 53248 ----a-r- c:\windows\system32\CSVer.dll
2010-01-25 16:50 . 2010-01-25 16:50 -------- d-----w- c:\program files\Broadcom
2010-01-25 16:47 . 2007-05-24 14:07 62840 ----a-w- c:\windows\system32\NicInstE.dll
2010-01-25 16:47 . 2007-05-24 14:07 154496 ----a-w- c:\windows\system32\Prounstl.exe
2010-01-25 16:47 . 2007-05-24 14:07 28536 ----a-w- c:\windows\system32\NicCo.dll
2010-01-25 16:47 . 2007-05-24 14:07 223616 ----a-w- c:\windows\system32\drivers\e1e6032.sys
2010-01-25 16:47 . 2007-05-24 14:07 179048 ----a-w- c:\windows\system32\e1000msg.dll
2010-01-25 16:47 . 2010-01-25 16:47 -------- d-----w- c:\program files\Synaptics
2010-01-25 16:46 . 2008-03-27 19:06 199472 ----a-w- c:\windows\system32\drivers\SynTP.sys
2010-01-25 16:46 . 2008-03-27 19:04 110592 ----a-w- c:\windows\system32\SynTPCo4.dll
2010-01-25 16:46 . 2008-03-27 18:27 151552 ----a-w- c:\windows\system32\SynTPAPI.dll
2010-01-25 16:46 . 2008-03-27 18:16 196608 ----a-w- c:\windows\system32\SynCtrl.dll
2010-01-25 16:46 . 2008-03-27 18:15 163840 ----a-w- c:\windows\system32\SynCOM.dll
2010-01-25 16:46 . 2006-03-09 09:58 1060424 ----a-w- c:\windows\system32\WdfCoInstaller01000.dll
2010-01-25 16:42 . 2010-01-25 17:08 -------- d-----w- c:\program files\Hewlett-Packard
2010-01-25 16:42 . 2010-01-25 16:42 -------- d-----w- c:\program files\HPQ
2010-01-25 16:41 . 2008-02-29 15:07 54824 ------w- c:\windows\system32\agrsmdel.exe
2010-01-25 16:40 . 2008-04-24 13:26 309248 ----a-w- c:\windows\system32\drivers\ADIHdAud.sys
2010-01-25 16:40 . 2007-06-08 07:56 131072 ----a-w- c:\windows\system32\AEADIAPO.dll
2010-01-25 16:40 . 2007-02-21 09:01 606208 ----a-w- c:\windows\system32\AEADIExt.dll
2010-01-25 16:40 . 2007-02-06 07:44 69632 ----a-w- c:\windows\system32\AEADISRV.EXE
2010-01-25 16:40 . 2007-01-26 13:07 30208 ----a-w- c:\windows\system32\SmaxCo.dll
2010-01-25 16:40 . 2007-01-10 14:40 50176 ----a-w- c:\windows\system32\AEADIAPR.dll
2010-01-25 16:40 . 2010-01-25 16:41 -------- d-----w- c:\program files\Analog Devices
2010-01-25 16:40 . 2010-01-25 17:04 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-01-25 16:40 . 2010-01-25 16:40 -------- d-----w- c:\windows\Options
2010-01-25 16:40 . 2010-01-25 17:02 -------- d-----w- C:\SWSetup
2010-01-25 16:40 . 2010-01-27 14:03 -------- d-sh--w- c:\windows\Installer
2010-01-25 16:39 . 2010-01-25 17:08 -------- d-----w- C:\SYSTEM.SAV
2010-01-25 16:37 . 2010-01-27 13:56 -------- d-----w- c:\users\Administrátor
2010-01-25 16:34 . 2010-01-26 13:29 -------- d-----w- c:\windows\Debug
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-01-26 14:58 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Calendar
2010-01-26 14:58 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Sidebar
2010-01-26 14:58 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Photo Gallery
2010-01-26 14:58 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Defender
2010-01-26 14:58 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Collaboration
2010-01-26 14:58 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail
2010-01-26 14:58 . 2006-11-02 10:25 665600 ----a-w- c:\windows\inf\drvindex.dat
2010-01-26 13:34 . 2010-01-26 13:34 56 ---ha-w- c:\programdata\ezsidmv.dat
2010-01-25 16:47 . 2010-01-25 16:47 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_SynTP_01000.Wdf
2010-01-25 16:44 . 2010-01-25 16:44 0 --sha-r- c:\windows\system32\drivers\103C_HP_bNB_550_Y5336AN_0U_QCNU90660C8_EU_4A_I3618_SHP_V12.00_68MVU F.05_T090119_WV2-1_L41B_M2039_J250_7Intel_86FD_91.80_#100125_N808610C4;80864222_(NA952EA#AKR)_XMOBILE_CN10_Z_2F.05_G80862A12.MRK
2010-01-02 06:38 . 2010-01-26 14:03 916480 ----a-w- c:\windows\system32\wininet.dll
2010-01-02 06:32 . 2010-01-26 14:03 71680 ----a-w- c:\windows\system32\iesetup.dll
2010-01-02 06:32 . 2010-01-26 14:03 109056 ----a-w- c:\windows\system32\iesysprep.dll
2010-01-02 04:57 . 2010-01-26 14:03 133632 ----a-w- c:\windows\system32\ieUnatt.exe
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-04-10 1233920]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-21 1008184]
"PTHOSTTR"="c:\program files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE" [2007-01-09 145184]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2008-03-27 1045800]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2008-05-22 141848]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2008-05-22 166424]
"Persistence"="c:\windows\system32\igfxpers.exe" [2008-05-22 133656]
"QlbCtrl.exe"="c:\program files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2008-05-14 177456]
"hpWirelessAssistant"="c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" [2008-04-15 488752]
"avast5"="c:\progra~1\ALWILS~1\Avast5\avastUI.exe" [2010-01-28 2757512]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2007-02-21 1183744]
"COMODO Internet Security"="c:\program files\COMODO\COMODO Internet Security\cfp.exe" [2010-01-27 1800464]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\DeviceNP]
2007-06-08 08:04 49152 ----a-r- c:\windows\System32\DeviceNP.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\System32\guard32.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Health Check Scheduler]
2008-04-15 12:42 70912 ----a-w- c:\program files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
2008-03-17 16:59 2289664 ----a-w- c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
2009-10-09 12:11 25623336 ----a-r- c:\program files\Skype\Phone\Skype.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"VistaSp2"=hex(b):d9,0c,82,c8,98,9e,ca,01
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-1445392323-651822737-1915893961-1000]
"EnableNotifications"=dword:00000001
"EnableNotificationsRef"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-1445392323-651822737-1915893961-1001]
"EnableNotifications"=dword:00000001
"EnableNotificationsRef"=dword:00000002
R1 aswSP;aswSP;c:\windows\System32\drivers\aswSP.sys [25. 1. 2010 18:31 163280]
R1 cmdGuard;COMODO Internet Security Sandbox Driver;c:\windows\System32\drivers\cmdguard.sys [27. 1. 2010 14:54 130960]
R1 cmdHlp;COMODO Internet Security Helper Driver;c:\windows\System32\drivers\cmdhlp.sys [27. 1. 2010 14:54 29520]
R2 aswFsBlk;aswFsBlk;c:\windows\System32\drivers\aswFsBlk.sys [25. 1. 2010 18:31 19024]
R2 aswMonFlt;aswMonFlt;c:\windows\System32\drivers\aswMonFlt.sys [25. 1. 2010 18:31 51792]
R3 Com4QLBEx;Com4QLBEx;c:\program files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [25. 1. 2010 17:52 193840]
R3 NETw5v32;Intel(R) Wireless WiFi Link Adapter Driver for Windows Vista 32 Bit ;c:\windows\System32\drivers\NETw5v32.sys [28. 4. 2008 6:29 3658752]
S3 DAMDrv;DAMDrv;c:\windows\System32\drivers\DAMDrv.sys [8. 6. 2007 8:49 30008]
S3 FLCDLOCK;HP ProtectTools Device Locking / Auditing;c:\windows\System32\flcdlock.exe [8. 6. 2007 9:06 172131]
S3 FontCache;Windows Font Cache Service;c:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [21. 1. 2008 3:33 21504]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceNoNetwork REG_MULTI_SZ PLA DPS BFE mpssvc
bthsvcs REG_MULTI_SZ BthServ
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2008-03-17 16:56 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
.
------- Supplementary Scan -------
.
FF - ProfilePath - c:\users\Administrátor\AppData\Roaming\Mozilla\Firefox\Profiles\esov0l7c.default\
---- FIREFOX POLICIES ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.debug", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("html5.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".sk");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-01-31 09:40
Windows 6.0.6002 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
--------------------- DLLs Loaded Under Running Processes ---------------------
- - - - - - - > 'winlogon.exe'(3044)
c:\windows\system32\guard32.dll
- - - - - - - > 'lsass.exe'(692)
c:\windows\system32\guard32.dll
.
Completion time: 2010-01-31 09:43:12
ComboFix-quarantined-files.txt 2010-01-31 08:43
Pre-Run: 117 551 792 128 bytes free
Post-Run: 117 551 161 344 bytes free
Current=1 Default=1 Failed=0 LastKnownGood=10 Sets=1,2,3,4,5,6,7,8,9,10
- - End Of File - - AD3FD94C0912805FB3713C9C759E8BD2
Re: Pre motji
Tak Avast! už nehlási trojana na tej stránke. Zničoho nič. 

Re: Pre motji
No to není z ničeho nic
, už jsme to opravili
. Byl tam odkaz na zavirovanou stránku.
A prosím nehoň mě, mám své povinnosti doma, zde chodím, až máš čas
.
Pokud nemáte, přesuňte Combofix na plochu
-otevřete si Poznámkový blok
-Do něj zkopírujte text z tohoto okénka
-uložte Vámi vytvořený TXT soubor jako CFScript.txt na plochu
-po uložení uchopte vámi vytvořený skript levým myšítkem a -přesuňte ho nad ikonu Combofixu, kde ho upustíte:

-po aplikaci na Vás vypadne další log,vložte ho sem
Upozornění : může se stát, že po aplikaci skriptu a restartu Windows nenaběhnou, v tom případě znovu restartujte a přitom mačkejte F8, pak zvolte Poslední známou funkční konfiguraci
Odinstalujte combofix přes
Start >> Spustit zkopírujte do okénka:
ComboFix /Uninstall
stiskněte Enter
-To odinstaluje ComboFix a smaže s ním související soubory a složky.
Stáhněte T-Cleaner
http://sweb.cz/Marinus/T-Cleaner.exe
-Spusťte,pro potvrzení volby mačkejte klávesu A, Enter
-po použití prográmek vymažte.Pozor,antiviry ho mohou falešně označit za vir
Stahněte OTC a použijte
http://oldtimer.geekstogo.com/OTC.exe
Stáhněte Ccleaner,viz můj podpis
-nainstalujte a vyčištěte dočasné soubory, i registry
Vložte nový log ze RSIT a řekněte co počítač,jak se chová,už je vše v pořádku?
Pc pozoruj, kdyby zase spadlo do Bsod, napiš, napiš i jaké jsou problémy. V logu z combofixu nic zvláštního nevidím, potřebovala bych vidět ten minidump


A prosím nehoň mě, mám své povinnosti doma, zde chodím, až máš čas


-otevřete si Poznámkový blok
-Do něj zkopírujte text z tohoto okénka
Kód: Vybrat vše
FixCSet::
-po uložení uchopte vámi vytvořený skript levým myšítkem a -přesuňte ho nad ikonu Combofixu, kde ho upustíte:

-po aplikaci na Vás vypadne další log,vložte ho sem
Upozornění : může se stát, že po aplikaci skriptu a restartu Windows nenaběhnou, v tom případě znovu restartujte a přitom mačkejte F8, pak zvolte Poslední známou funkční konfiguraci

Start >> Spustit zkopírujte do okénka:
ComboFix /Uninstall
stiskněte Enter
-To odinstaluje ComboFix a smaže s ním související soubory a složky.

http://sweb.cz/Marinus/T-Cleaner.exe
-Spusťte,pro potvrzení volby mačkejte klávesu A, Enter
-po použití prográmek vymažte.Pozor,antiviry ho mohou falešně označit za vir

http://oldtimer.geekstogo.com/OTC.exe

-nainstalujte a vyčištěte dočasné soubory, i registry

Pc pozoruj, kdyby zase spadlo do Bsod, napiš, napiš i jaké jsou problémy. V logu z combofixu nic zvláštního nevidím, potřebovala bych vidět ten minidump

Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: Pre motji
Combofix problém. Spravil som všetko presne podľa návodu a CF sa iba normálne spustil.
RSIT za chvíľu tu bude.
Ostatné OK.
RSIT za chvíľu tu bude.
Ostatné OK.
Re: Pre motji
Logfile of random's system information tool 1.06 (written by random/random)
Run by Administrátor at 2010-01-31 12:50:50
Microsoft® Windows Vista™ Home Basic Service Pack 2
System drive C: has 112 GB (84%) free of 133 GB
Total RAM: 2039 MB (56% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:50:53, on 31. 1. 2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18882)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\pthosttr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Hewlett-Packard\HP wireless Assistant\WiFiMsg.EXE
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\VolCtrl.exe
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Users\Používateľ\Downloads\RSIT.exe
C:\Program Files\trend micro\Administrátor.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [PTHOSTTR] C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE /Start
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: DeviceNP - C:\Windows\SYSTEM32\DeviceNP.dll
O23 - Service: Andrea ADI Filters Service (AEADIFilters) - Andrea Electronics Corporation - C:\Windows\system32\AEADISRV.EXE
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Windows\system32\agrsmsvc.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: HP ProtectTools Device Locking / Auditing (FLCDLOCK) - Hewlett-Packard Ltd - C:\Windows\system32\flcdlock.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
--
End of file - 4617 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
"PTHOSTTR"=C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE [2007-01-09 145184]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2008-03-27 1045800]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2008-05-22 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2008-05-22 166424]
"Persistence"=C:\Windows\system32\igfxpers.exe [2008-05-22 133656]
"QlbCtrl.exe"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2008-05-14 177456]
"hpWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2008-04-15 488752]
"avast5"=C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe [2010-01-28 2757512]
"SoundMAXPnP"=C:\Program Files\Analog Devices\Core\smax4pnp.exe [2007-02-21 1183744]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cfp.exe [2010-01-27 1800464]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-10 1233920]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Health Check Scheduler]
c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe [2008-04-15 70912]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2008-03-17 2289664]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files\Skype\Phone\Skype.exe [2009-10-09 25623336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\DeviceNP]
C:\Windows\system32\DeviceNP.dll [2007-06-08 49152]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2008-02-11 204800]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"= []
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 months======
2010-01-31 12:50:50 ----D---- C:\rsit
2010-01-31 12:33:04 ----D---- C:\$RECYCLE.BIN
2010-01-31 12:30:53 ----D---- C:\Windows\temp
2010-01-31 10:36:56 ----A---- C:\Windows\system32\unrar.dll
2010-01-31 10:36:56 ----A---- C:\Windows\avisplitter.ini
2010-01-31 10:36:47 ----A---- C:\Windows\system32\yv12vfw.dll
2010-01-31 10:36:47 ----A---- C:\Windows\system32\xvidvfw.dll
2010-01-31 10:36:47 ----A---- C:\Windows\system32\xvidcore.dll
2010-01-31 10:36:45 ----A---- C:\Windows\system32\ff_vfw.dll.manifest
2010-01-31 10:36:45 ----A---- C:\Windows\system32\ff_vfw.dll
2010-01-31 10:36:41 ----D---- C:\Program Files\K-Lite Codec Pack
2010-01-31 09:32:45 ----D---- C:\Windows\ERDNT
2010-01-30 22:04:07 ----D---- C:\Program Files\trend micro
2010-01-29 18:59:20 ----D---- C:\Windows\Minidump
2010-01-28 14:22:43 ----D---- C:\Program Files\Lavalys
2010-01-27 15:29:39 ----D---- C:\Users\Administrátor\AppData\Roaming\Macromedia
2010-01-27 15:29:39 ----D---- C:\Users\Administrátor\AppData\Roaming\Adobe
2010-01-27 15:29:14 ----D---- C:\Users\Administrátor\AppData\Roaming\Mozilla
2010-01-27 15:26:48 ----A---- C:\Windows\system32\WMPhoto.dll
2010-01-27 15:26:46 ----A---- C:\Windows\system32\cdd.dll
2010-01-27 15:26:45 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2010-01-27 15:26:45 ----A---- C:\Windows\system32\d3d10warp.dll
2010-01-27 15:26:44 ----A---- C:\Windows\system32\XpsRasterService.dll
2010-01-27 15:26:44 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2010-01-27 15:26:44 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2010-01-27 15:26:44 ----A---- C:\Windows\system32\WindowsCodecs.dll
2010-01-27 15:26:44 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2010-01-27 15:26:44 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2010-01-27 15:26:44 ----A---- C:\Windows\system32\dxdiagn.dll
2010-01-27 15:26:44 ----A---- C:\Windows\system32\dxdiag.exe
2010-01-27 15:26:44 ----A---- C:\Windows\system32\d2d1.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\xpsservices.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\XpsPrint.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\OpcServices.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\FntCache.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\dxgi.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\DWrite.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\d3d11.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\d3d10level9.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\d3d10core.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\d3d10_1core.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\d3d10_1.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\d3d10.dll
2010-01-27 14:54:09 ----D---- C:\ProgramData\Comodo
2010-01-27 14:54:07 ----A---- C:\Windows\system32\guard32.dll
2010-01-27 14:54:03 ----D---- C:\Program Files\COMODO
2010-01-27 14:38:14 ----A---- C:\Windows\system32\tzres.dll
2010-01-27 14:37:37 ----A---- C:\Windows\system32\nshhttp.dll
2010-01-27 14:37:37 ----A---- C:\Windows\system32\httpapi.dll
2010-01-27 14:37:30 ----A---- C:\Windows\system32\winhttp.dll
2010-01-26 16:11:30 ----A---- C:\Windows\system32\wdigest.dll
2010-01-26 16:11:30 ----A---- C:\Windows\system32\msv1_0.dll
2010-01-26 16:11:30 ----A---- C:\Windows\system32\kerberos.dll
2010-01-26 16:11:29 ----A---- C:\Windows\system32\schannel.dll
2010-01-26 16:11:29 ----A---- C:\Windows\system32\secur32.dll
2010-01-26 16:11:29 ----A---- C:\Windows\system32\lsass.exe
2010-01-26 16:11:29 ----A---- C:\Windows\system32\lsasrv.dll
2010-01-26 16:11:21 ----A---- C:\Windows\system32\Apphlpdm.dll
2010-01-26 16:11:20 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2010-01-26 16:09:08 ----N---- C:\Windows\system32\MpSigStub.exe
2010-01-26 15:58:30 ----D---- C:\Windows\system32\ca-ES
2010-01-26 15:58:29 ----D---- C:\Windows\system32\vi-VN
2010-01-26 15:58:29 ----D---- C:\Windows\system32\eu-ES
2010-01-26 15:55:25 ----D---- C:\Windows\system32\SPReview
2010-01-26 15:45:58 ----A---- C:\Windows\system32\scavenge.dll
2010-01-26 15:45:51 ----A---- C:\Windows\system32\compcln.exe
2010-01-26 15:41:50 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2010-01-26 15:41:50 ----A---- C:\Windows\system32\secproc_ssp.dll
2010-01-26 15:41:50 ----A---- C:\Windows\system32\secproc_isv.dll
2010-01-26 15:41:50 ----A---- C:\Windows\system32\secproc.dll
2010-01-26 15:41:50 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2010-01-26 15:41:50 ----A---- C:\Windows\system32\SearchIndexer.exe
2010-01-26 15:41:50 ----A---- C:\Windows\system32\SearchFilterHost.exe
2010-01-26 15:41:50 ----A---- C:\Windows\system32\sdohlp.dll
2010-01-26 15:41:50 ----A---- C:\Windows\system32\sdclt.exe
2010-01-26 15:41:49 ----A---- C:\Windows\system32\samlib.dll
2010-01-26 15:41:49 ----A---- C:\Windows\system32\rtutils.dll
2010-01-26 15:41:49 ----A---- C:\Windows\system32\rtffilt.dll
2010-01-26 15:41:49 ----A---- C:\Windows\system32\rsaenh.dll
2010-01-26 15:41:49 ----A---- C:\Windows\system32\rrinstaller.exe
2010-01-26 15:41:49 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2010-01-26 15:41:49 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2010-01-26 15:41:49 ----A---- C:\Windows\system32\RMActivate_isv.exe
2010-01-26 15:41:49 ----A---- C:\Windows\system32\riched20.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\scrrun.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\SCardSvr.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\scansetting.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\samsrv.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\rpchttp.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\rpcss.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\rpcrt4.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\RMActivate.exe
2010-01-26 15:41:47 ----A---- C:\Windows\system32\schedsvc.dll
2010-01-26 15:41:47 ----A---- C:\Windows\system32\scrobj.dll
2010-01-26 15:41:47 ----A---- C:\Windows\system32\scksp.dll
2010-01-26 15:41:47 ----A---- C:\Windows\system32\scesrv.dll
2010-01-26 15:41:47 ----A---- C:\Windows\system32\scecli.dll
2010-01-26 15:41:46 ----A---- C:\Windows\system32\pdh.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\powercpl.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\PNPXAssoc.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\PnPutil.exe
2010-01-26 15:41:45 ----A---- C:\Windows\system32\PnPUnattend.exe
2010-01-26 15:41:45 ----A---- C:\Windows\system32\pnpui.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\pnpsetup.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\pnidui.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\perfdisk.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\pcaui.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\p2psvc.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\P2PGraph.dll
2010-01-26 15:41:44 ----A---- C:\Windows\system32\PkgMgr.exe
2010-01-26 15:41:44 ----A---- C:\Windows\system32\pidgenx.dll
2010-01-26 15:41:44 ----A---- C:\Windows\system32\photowiz.dll
2010-01-26 15:41:44 ----A---- C:\Windows\system32\ntkrnlpa.exe
2010-01-26 15:41:44 ----A---- C:\Windows\system32\ntdll.dll
2010-01-26 15:41:44 ----A---- C:\Windows\system32\nslookup.exe
2010-01-26 15:41:43 ----A---- C:\Windows\system32\osk.exe
2010-01-26 15:41:43 ----A---- C:\Windows\system32\oobefldr.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\onex.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\olepro32.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\oleprn.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\oleaut32.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\ole32.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\offfilt.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\odbccp32.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\odbcconf.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\odbc32.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\nlhtml.dll
2010-01-26 15:41:42 ----A---- C:\Windows\system32\rasgcw.dll
2010-01-26 15:41:42 ----A---- C:\Windows\system32\rasdlg.dll
2010-01-26 15:41:42 ----A---- C:\Windows\system32\rasdial.exe
2010-01-26 15:41:42 ----A---- C:\Windows\system32\ocsetup.exe
2010-01-26 15:41:42 ----A---- C:\Windows\system32\ntprint.dll
2010-01-26 15:41:42 ----A---- C:\Windows\system32\ntoskrnl.exe
2010-01-26 15:41:42 ----A---- C:\Windows\system32\ntmarta.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rastls.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rastapi.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rasppp.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rasplap.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rasmontr.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rasmans.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\raschap.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rasdiag.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rasapi32.dll
2010-01-26 15:41:40 ----A---- C:\Windows\system32\Query.dll
2010-01-26 15:41:40 ----A---- C:\Windows\system32\quartz.dll
2010-01-26 15:41:40 ----A---- C:\Windows\system32\qmgr.dll
2010-01-26 15:41:40 ----A---- C:\Windows\system32\qedit.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\RelMon.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\rekeywiz.exe
2010-01-26 15:41:39 ----A---- C:\Windows\system32\regsvc.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\regapi.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\reg.exe
2010-01-26 15:41:39 ----A---- C:\Windows\system32\rdpwsx.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\rdpencom.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\RacEngn.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\prnntfy.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\printui.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\PresentationHost.exe
2010-01-26 15:41:38 ----A---- C:\Windows\system32\qdvd.dll
2010-01-26 15:41:38 ----A---- C:\Windows\system32\QAGENTRT.DLL
2010-01-26 15:41:38 ----A---- C:\Windows\system32\puiapi.dll
2010-01-26 15:41:38 ----A---- C:\Windows\system32\propsys.dll
2010-01-26 15:41:38 ----A---- C:\Windows\system32\propdefs.dll
2010-01-26 15:41:38 ----A---- C:\Windows\system32\profsvc.dll
2010-01-26 15:41:38 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2010-01-26 15:41:38 ----A---- C:\Windows\system32\powrprof.dll
2010-01-26 15:41:37 ----A---- C:\Windows\system32\psisdecd.dll
2010-01-26 15:41:37 ----A---- C:\Windows\system32\PSHED.DLL
2010-01-26 15:41:36 ----A---- C:\Windows\system32\shlwapi.dll
2010-01-26 15:41:36 ----A---- C:\Windows\system32\shell32.dll
2010-01-26 15:41:36 ----A---- C:\Windows\system32\shdocvw.dll
2010-01-26 15:41:36 ----A---- C:\Windows\system32\sendmail.dll
2010-01-26 15:41:35 ----A---- C:\Windows\system32\setupapi.dll
2010-01-26 15:41:35 ----A---- C:\Windows\system32\sethc.exe
2010-01-26 15:41:35 ----A---- C:\Windows\system32\services.exe
2010-01-26 15:41:32 ----A---- C:\Windows\system32\eapphost.dll
2010-01-26 15:41:32 ----A---- C:\Windows\system32\eappgnui.dll
2010-01-26 15:41:31 ----A---- C:\Windows\system32\evr.dll
2010-01-26 15:41:31 ----A---- C:\Windows\system32\EhStorAPI.dll
2010-01-26 15:41:31 ----A---- C:\Windows\system32\eappcfg.dll
2010-01-26 15:41:31 ----A---- C:\Windows\system32\eapp3hst.dll
2010-01-26 15:41:31 ----A---- C:\Windows\system32\dxmasf.dll
2010-01-26 15:41:31 ----A---- C:\Windows\system32\dwm.exe
2010-01-26 15:41:31 ----A---- C:\Windows\system32\dsprop.dll
2010-01-26 15:41:31 ----A---- C:\Windows\system32\dsound.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\f3ahvoas.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\ExplorerFrame.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\eudcedit.exe
2010-01-26 15:41:30 ----A---- C:\Windows\system32\esent.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\es.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\EncDec.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\emdmgmt.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\EhStorShell.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\EhStorPwdMgr.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\EhStorAuthn.dll
2010-01-26 15:41:30 ----A---- C:\Windows\explorer.exe
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dpapimig.exe
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dot3svc.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dot3msm.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dot3cfg.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\diskraid.exe
2010-01-26 15:41:29 ----A---- C:\Windows\system32\diskpart.exe
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dimsroam.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\diagperf.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dhcpcsvc.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dfsr.exe
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dfshim.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\devmgr.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\hbaapi.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\gpresult.exe
2010-01-26 15:41:28 ----A---- C:\Windows\system32\drvstore.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\drvinst.exe
2010-01-26 15:41:28 ----A---- C:\Windows\system32\drmv2clt.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\drmmgrtn.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\dnsrslvr.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\dnsapi.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\dmusic.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\dmsynth.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\iasnap.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\IasMigReader.exe
2010-01-26 15:41:27 ----A---- C:\Windows\system32\IasMigPlugin.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\iashlpr.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\iasdatastore.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\iasads.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\iasacct.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\hidserv.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\hdwwiz.exe
2010-01-26 15:41:27 ----A---- C:\Windows\system32\gpupdate.exe
2010-01-26 15:41:27 ----A---- C:\Windows\system32\gpsvc.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\fontext.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\gpapi.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\gdi32.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\findstr.exe
2010-01-26 15:41:26 ----A---- C:\Windows\system32\feclient.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fdWSD.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fdWCN.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fdSSDP.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fdProxy.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fdeploy.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fdBthProxy.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fdBth.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fc.exe
2010-01-26 15:41:26 ----A---- C:\Windows\system32\Faultrep.dll
2010-01-26 15:41:25 ----A---- C:\Windows\system32\gpedit.dll
2010-01-26 15:41:25 ----A---- C:\Windows\system32\gameux.dll
2010-01-26 15:41:25 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2010-01-26 15:41:25 ----A---- C:\Windows\system32\fundisc.dll
2010-01-26 15:41:25 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll
2010-01-26 15:41:25 ----A---- C:\Windows\system32\ftp.exe
2010-01-26 15:41:25 ----A---- C:\Windows\system32\fsquirt.exe
2010-01-26 15:41:24 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2010-01-26 15:41:24 ----A---- C:\Windows\system32\autoplay.dll
2010-01-26 15:41:24 ----A---- C:\Windows\system32\autochk.exe
2010-01-26 15:41:24 ----A---- C:\Windows\system32\autofmt.exe
2010-01-26 15:41:24 ----A---- C:\Windows\system32\autoconv.exe
2010-01-26 15:41:24 ----A---- C:\Windows\system32\authz.dll
2010-01-26 15:41:24 ----A---- C:\Windows\system32\authui.dll
2010-01-26 15:41:24 ----A---- C:\Windows\system32\audiosrv.dll
2010-01-26 15:41:24 ----A---- C:\Windows\system32\AudioSes.dll
2010-01-26 15:41:24 ----A---- C:\Windows\system32\audiodg.exe
2010-01-26 15:41:24 ----A---- C:\Windows\system32\atmlib.dll
2010-01-26 15:41:24 ----A---- C:\Windows\system32\atmfd.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\bthci.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\browseui.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\brcpl.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\blackbox.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\bitsigd.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\BFE.DLL
2010-01-26 15:41:23 ----A---- C:\Windows\system32\bcrypt.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\basecsp.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\azroles.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\accessibilitycpl.dll
2010-01-26 15:41:22 ----A---- C:\Windows\system32\apphelp.dll
2010-01-26 15:41:22 ----A---- C:\Windows\system32\aaclient.dll
2010-01-26 15:41:21 ----A---- C:\Windows\system32\apds.dll
2010-01-26 15:41:21 ----A---- C:\Windows\system32\adsmsext.dll
2010-01-26 15:41:21 ----A---- C:\Windows\system32\adsldpc.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\crypt32.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\credui.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\connect.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\conime.exe
2010-01-26 15:41:20 ----A---- C:\Windows\system32\comuid.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\comsvcs.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\cmdial32.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\advapi32.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\adtschema.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\DevicePairingWizard.exe
2010-01-26 15:41:19 ----A---- C:\Windows\system32\DevicePairingProxy.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\DevicePairing.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\DeviceEject.exe
2010-01-26 15:41:19 ----A---- C:\Windows\system32\dbgeng.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\davclnt.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\dataclen.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\d3d9.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\cscdll.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\cscapi.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\comdlg32.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\cmmon32.exe
2010-01-26 15:41:18 ----A---- C:\Windows\system32\cryptui.dll
2010-01-26 15:41:17 ----A---- C:\Windows\system32\csrstub.exe
2010-01-26 15:41:17 ----A---- C:\Windows\system32\cscript.exe
2010-01-26 15:41:17 ----A---- C:\Windows\system32\cryptsvc.dll
2010-01-26 15:41:16 ----A---- C:\Windows\system32\certmgr.dll
2010-01-26 15:41:16 ----A---- C:\Windows\system32\CertEnrollUI.dll
2010-01-26 15:41:16 ----A---- C:\Windows\system32\CertEnroll.dll
2010-01-26 15:41:16 ----A---- C:\Windows\system32\certcli.dll
2010-01-26 15:41:15 ----A---- C:\Windows\system32\cbsra.exe
2010-01-26 15:41:15 ----A---- C:\Windows\system32\bthudtask.exe
2010-01-26 15:41:15 ----A---- C:\Windows\system32\bthserv.dll
2010-01-26 15:41:14 ----A---- C:\Windows\system32\CHxReadingStringIME.dll
2010-01-26 15:41:14 ----A---- C:\Windows\system32\chtbrkr.dll
2010-01-26 15:41:14 ----A---- C:\Windows\system32\chsbrkr.dll
2010-01-26 15:41:14 ----A---- C:\Windows\system32\cipher.exe
2010-01-26 15:41:14 ----A---- C:\Windows\system32\ci.dll
2010-01-26 15:41:13 ----A---- C:\Windows\system32\certutil.exe
2010-01-26 15:41:13 ----A---- C:\Windows\system32\certreq.exe
2010-01-26 15:41:13 ----A---- C:\Windows\system32\certprop.dll
2010-01-26 15:41:12 ----A---- C:\Windows\system32\msihnd.dll
2010-01-26 15:41:12 ----A---- C:\Windows\system32\msiexec.exe
2010-01-26 15:41:12 ----A---- C:\Windows\system32\msi.dll
2010-01-26 15:41:12 ----A---- C:\Windows\system32\msftedit.dll
2010-01-26 15:41:12 ----A---- C:\Windows\system32\msexch40.dll
2010-01-26 15:41:12 ----A---- C:\Windows\system32\msexcl40.dll
2010-01-26 15:41:12 ----A---- C:\Windows\system32\msdtctm.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\msimsg.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\msdtcprx.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\msdrm.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\msctfui.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\msctfp.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\MsCtfMonitor.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\msctf.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\MPSSVC.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\mprapi.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\mpr.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\MMDevAPI.dll
2010-01-26 15:41:10 ----A---- C:\Windows\system32\mscories.dll
2010-01-26 15:41:10 ----A---- C:\Windows\system32\mscorier.dll
2010-01-26 15:41:10 ----A---- C:\Windows\system32\mscms.dll
2010-01-26 15:41:10 ----A---- C:\Windows\system32\mscandui.dll
2010-01-26 15:41:10 ----A---- C:\Windows\system32\modemui.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\netplwiz.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\netlogon.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\netiohlp.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\netcenter.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\netapi32.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\ncryptui.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\ncrypt.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\mtxclu.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\mscoree.dll
2010-01-26 15:41:08 ----A---- C:\Windows\system32\NcdProp.dll
2010-01-26 15:41:08 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2010-01-26 15:41:08 ----A---- C:\Windows\system32\msxml6.dll
2010-01-26 15:41:08 ----A---- C:\Windows\system32\msxml3.dll
2010-01-26 15:41:07 ----A---- C:\Windows\system32\newdev.exe
2010-01-26 15:41:07 ----A---- C:\Windows\system32\newdev.dll
2010-01-26 15:41:07 ----A---- C:\Windows\system32\networkmap.dll
2010-01-26 15:41:07 ----A---- C:\Windows\system32\networkitemfactory.dll
2010-01-26 15:41:07 ----A---- C:\Windows\system32\networkexplorer.dll
Run by Administrátor at 2010-01-31 12:50:50
Microsoft® Windows Vista™ Home Basic Service Pack 2
System drive C: has 112 GB (84%) free of 133 GB
Total RAM: 2039 MB (56% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:50:53, on 31. 1. 2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18882)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\pthosttr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Hewlett-Packard\HP wireless Assistant\WiFiMsg.EXE
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\VolCtrl.exe
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Users\Používateľ\Downloads\RSIT.exe
C:\Program Files\trend micro\Administrátor.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [PTHOSTTR] C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE /Start
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: DeviceNP - C:\Windows\SYSTEM32\DeviceNP.dll
O23 - Service: Andrea ADI Filters Service (AEADIFilters) - Andrea Electronics Corporation - C:\Windows\system32\AEADISRV.EXE
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Windows\system32\agrsmsvc.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: HP ProtectTools Device Locking / Auditing (FLCDLOCK) - Hewlett-Packard Ltd - C:\Windows\system32\flcdlock.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
--
End of file - 4617 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
"PTHOSTTR"=C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE [2007-01-09 145184]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2008-03-27 1045800]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2008-05-22 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2008-05-22 166424]
"Persistence"=C:\Windows\system32\igfxpers.exe [2008-05-22 133656]
"QlbCtrl.exe"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2008-05-14 177456]
"hpWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2008-04-15 488752]
"avast5"=C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe [2010-01-28 2757512]
"SoundMAXPnP"=C:\Program Files\Analog Devices\Core\smax4pnp.exe [2007-02-21 1183744]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cfp.exe [2010-01-27 1800464]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-10 1233920]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Health Check Scheduler]
c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe [2008-04-15 70912]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2008-03-17 2289664]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files\Skype\Phone\Skype.exe [2009-10-09 25623336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\DeviceNP]
C:\Windows\system32\DeviceNP.dll [2007-06-08 49152]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2008-02-11 204800]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"= []
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 months======
2010-01-31 12:50:50 ----D---- C:\rsit
2010-01-31 12:33:04 ----D---- C:\$RECYCLE.BIN
2010-01-31 12:30:53 ----D---- C:\Windows\temp
2010-01-31 10:36:56 ----A---- C:\Windows\system32\unrar.dll
2010-01-31 10:36:56 ----A---- C:\Windows\avisplitter.ini
2010-01-31 10:36:47 ----A---- C:\Windows\system32\yv12vfw.dll
2010-01-31 10:36:47 ----A---- C:\Windows\system32\xvidvfw.dll
2010-01-31 10:36:47 ----A---- C:\Windows\system32\xvidcore.dll
2010-01-31 10:36:45 ----A---- C:\Windows\system32\ff_vfw.dll.manifest
2010-01-31 10:36:45 ----A---- C:\Windows\system32\ff_vfw.dll
2010-01-31 10:36:41 ----D---- C:\Program Files\K-Lite Codec Pack
2010-01-31 09:32:45 ----D---- C:\Windows\ERDNT
2010-01-30 22:04:07 ----D---- C:\Program Files\trend micro
2010-01-29 18:59:20 ----D---- C:\Windows\Minidump
2010-01-28 14:22:43 ----D---- C:\Program Files\Lavalys
2010-01-27 15:29:39 ----D---- C:\Users\Administrátor\AppData\Roaming\Macromedia
2010-01-27 15:29:39 ----D---- C:\Users\Administrátor\AppData\Roaming\Adobe
2010-01-27 15:29:14 ----D---- C:\Users\Administrátor\AppData\Roaming\Mozilla
2010-01-27 15:26:48 ----A---- C:\Windows\system32\WMPhoto.dll
2010-01-27 15:26:46 ----A---- C:\Windows\system32\cdd.dll
2010-01-27 15:26:45 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2010-01-27 15:26:45 ----A---- C:\Windows\system32\d3d10warp.dll
2010-01-27 15:26:44 ----A---- C:\Windows\system32\XpsRasterService.dll
2010-01-27 15:26:44 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2010-01-27 15:26:44 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2010-01-27 15:26:44 ----A---- C:\Windows\system32\WindowsCodecs.dll
2010-01-27 15:26:44 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2010-01-27 15:26:44 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2010-01-27 15:26:44 ----A---- C:\Windows\system32\dxdiagn.dll
2010-01-27 15:26:44 ----A---- C:\Windows\system32\dxdiag.exe
2010-01-27 15:26:44 ----A---- C:\Windows\system32\d2d1.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\xpsservices.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\XpsPrint.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\OpcServices.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\FntCache.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\dxgi.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\DWrite.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\d3d11.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\d3d10level9.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\d3d10core.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\d3d10_1core.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\d3d10_1.dll
2010-01-27 15:26:43 ----A---- C:\Windows\system32\d3d10.dll
2010-01-27 14:54:09 ----D---- C:\ProgramData\Comodo
2010-01-27 14:54:07 ----A---- C:\Windows\system32\guard32.dll
2010-01-27 14:54:03 ----D---- C:\Program Files\COMODO
2010-01-27 14:38:14 ----A---- C:\Windows\system32\tzres.dll
2010-01-27 14:37:37 ----A---- C:\Windows\system32\nshhttp.dll
2010-01-27 14:37:37 ----A---- C:\Windows\system32\httpapi.dll
2010-01-27 14:37:30 ----A---- C:\Windows\system32\winhttp.dll
2010-01-26 16:11:30 ----A---- C:\Windows\system32\wdigest.dll
2010-01-26 16:11:30 ----A---- C:\Windows\system32\msv1_0.dll
2010-01-26 16:11:30 ----A---- C:\Windows\system32\kerberos.dll
2010-01-26 16:11:29 ----A---- C:\Windows\system32\schannel.dll
2010-01-26 16:11:29 ----A---- C:\Windows\system32\secur32.dll
2010-01-26 16:11:29 ----A---- C:\Windows\system32\lsass.exe
2010-01-26 16:11:29 ----A---- C:\Windows\system32\lsasrv.dll
2010-01-26 16:11:21 ----A---- C:\Windows\system32\Apphlpdm.dll
2010-01-26 16:11:20 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2010-01-26 16:09:08 ----N---- C:\Windows\system32\MpSigStub.exe
2010-01-26 15:58:30 ----D---- C:\Windows\system32\ca-ES
2010-01-26 15:58:29 ----D---- C:\Windows\system32\vi-VN
2010-01-26 15:58:29 ----D---- C:\Windows\system32\eu-ES
2010-01-26 15:55:25 ----D---- C:\Windows\system32\SPReview
2010-01-26 15:45:58 ----A---- C:\Windows\system32\scavenge.dll
2010-01-26 15:45:51 ----A---- C:\Windows\system32\compcln.exe
2010-01-26 15:41:50 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2010-01-26 15:41:50 ----A---- C:\Windows\system32\secproc_ssp.dll
2010-01-26 15:41:50 ----A---- C:\Windows\system32\secproc_isv.dll
2010-01-26 15:41:50 ----A---- C:\Windows\system32\secproc.dll
2010-01-26 15:41:50 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2010-01-26 15:41:50 ----A---- C:\Windows\system32\SearchIndexer.exe
2010-01-26 15:41:50 ----A---- C:\Windows\system32\SearchFilterHost.exe
2010-01-26 15:41:50 ----A---- C:\Windows\system32\sdohlp.dll
2010-01-26 15:41:50 ----A---- C:\Windows\system32\sdclt.exe
2010-01-26 15:41:49 ----A---- C:\Windows\system32\samlib.dll
2010-01-26 15:41:49 ----A---- C:\Windows\system32\rtutils.dll
2010-01-26 15:41:49 ----A---- C:\Windows\system32\rtffilt.dll
2010-01-26 15:41:49 ----A---- C:\Windows\system32\rsaenh.dll
2010-01-26 15:41:49 ----A---- C:\Windows\system32\rrinstaller.exe
2010-01-26 15:41:49 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2010-01-26 15:41:49 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2010-01-26 15:41:49 ----A---- C:\Windows\system32\RMActivate_isv.exe
2010-01-26 15:41:49 ----A---- C:\Windows\system32\riched20.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\scrrun.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\SCardSvr.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\scansetting.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\samsrv.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\rpchttp.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\rpcss.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\rpcrt4.dll
2010-01-26 15:41:48 ----A---- C:\Windows\system32\RMActivate.exe
2010-01-26 15:41:47 ----A---- C:\Windows\system32\schedsvc.dll
2010-01-26 15:41:47 ----A---- C:\Windows\system32\scrobj.dll
2010-01-26 15:41:47 ----A---- C:\Windows\system32\scksp.dll
2010-01-26 15:41:47 ----A---- C:\Windows\system32\scesrv.dll
2010-01-26 15:41:47 ----A---- C:\Windows\system32\scecli.dll
2010-01-26 15:41:46 ----A---- C:\Windows\system32\pdh.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\powercpl.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\PNPXAssoc.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\PnPutil.exe
2010-01-26 15:41:45 ----A---- C:\Windows\system32\PnPUnattend.exe
2010-01-26 15:41:45 ----A---- C:\Windows\system32\pnpui.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\pnpsetup.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\pnidui.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\perfdisk.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\pcaui.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\p2psvc.dll
2010-01-26 15:41:45 ----A---- C:\Windows\system32\P2PGraph.dll
2010-01-26 15:41:44 ----A---- C:\Windows\system32\PkgMgr.exe
2010-01-26 15:41:44 ----A---- C:\Windows\system32\pidgenx.dll
2010-01-26 15:41:44 ----A---- C:\Windows\system32\photowiz.dll
2010-01-26 15:41:44 ----A---- C:\Windows\system32\ntkrnlpa.exe
2010-01-26 15:41:44 ----A---- C:\Windows\system32\ntdll.dll
2010-01-26 15:41:44 ----A---- C:\Windows\system32\nslookup.exe
2010-01-26 15:41:43 ----A---- C:\Windows\system32\osk.exe
2010-01-26 15:41:43 ----A---- C:\Windows\system32\oobefldr.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\onex.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\olepro32.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\oleprn.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\oleaut32.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\ole32.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\offfilt.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\odbccp32.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\odbcconf.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\odbc32.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2010-01-26 15:41:43 ----A---- C:\Windows\system32\nlhtml.dll
2010-01-26 15:41:42 ----A---- C:\Windows\system32\rasgcw.dll
2010-01-26 15:41:42 ----A---- C:\Windows\system32\rasdlg.dll
2010-01-26 15:41:42 ----A---- C:\Windows\system32\rasdial.exe
2010-01-26 15:41:42 ----A---- C:\Windows\system32\ocsetup.exe
2010-01-26 15:41:42 ----A---- C:\Windows\system32\ntprint.dll
2010-01-26 15:41:42 ----A---- C:\Windows\system32\ntoskrnl.exe
2010-01-26 15:41:42 ----A---- C:\Windows\system32\ntmarta.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rastls.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rastapi.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rasppp.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rasplap.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rasmontr.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rasmans.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\raschap.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rasdiag.dll
2010-01-26 15:41:41 ----A---- C:\Windows\system32\rasapi32.dll
2010-01-26 15:41:40 ----A---- C:\Windows\system32\Query.dll
2010-01-26 15:41:40 ----A---- C:\Windows\system32\quartz.dll
2010-01-26 15:41:40 ----A---- C:\Windows\system32\qmgr.dll
2010-01-26 15:41:40 ----A---- C:\Windows\system32\qedit.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\RelMon.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\rekeywiz.exe
2010-01-26 15:41:39 ----A---- C:\Windows\system32\regsvc.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\regapi.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\reg.exe
2010-01-26 15:41:39 ----A---- C:\Windows\system32\rdpwsx.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\rdpencom.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\RacEngn.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\prnntfy.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\printui.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2010-01-26 15:41:39 ----A---- C:\Windows\system32\PresentationHost.exe
2010-01-26 15:41:38 ----A---- C:\Windows\system32\qdvd.dll
2010-01-26 15:41:38 ----A---- C:\Windows\system32\QAGENTRT.DLL
2010-01-26 15:41:38 ----A---- C:\Windows\system32\puiapi.dll
2010-01-26 15:41:38 ----A---- C:\Windows\system32\propsys.dll
2010-01-26 15:41:38 ----A---- C:\Windows\system32\propdefs.dll
2010-01-26 15:41:38 ----A---- C:\Windows\system32\profsvc.dll
2010-01-26 15:41:38 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2010-01-26 15:41:38 ----A---- C:\Windows\system32\powrprof.dll
2010-01-26 15:41:37 ----A---- C:\Windows\system32\psisdecd.dll
2010-01-26 15:41:37 ----A---- C:\Windows\system32\PSHED.DLL
2010-01-26 15:41:36 ----A---- C:\Windows\system32\shlwapi.dll
2010-01-26 15:41:36 ----A---- C:\Windows\system32\shell32.dll
2010-01-26 15:41:36 ----A---- C:\Windows\system32\shdocvw.dll
2010-01-26 15:41:36 ----A---- C:\Windows\system32\sendmail.dll
2010-01-26 15:41:35 ----A---- C:\Windows\system32\setupapi.dll
2010-01-26 15:41:35 ----A---- C:\Windows\system32\sethc.exe
2010-01-26 15:41:35 ----A---- C:\Windows\system32\services.exe
2010-01-26 15:41:32 ----A---- C:\Windows\system32\eapphost.dll
2010-01-26 15:41:32 ----A---- C:\Windows\system32\eappgnui.dll
2010-01-26 15:41:31 ----A---- C:\Windows\system32\evr.dll
2010-01-26 15:41:31 ----A---- C:\Windows\system32\EhStorAPI.dll
2010-01-26 15:41:31 ----A---- C:\Windows\system32\eappcfg.dll
2010-01-26 15:41:31 ----A---- C:\Windows\system32\eapp3hst.dll
2010-01-26 15:41:31 ----A---- C:\Windows\system32\dxmasf.dll
2010-01-26 15:41:31 ----A---- C:\Windows\system32\dwm.exe
2010-01-26 15:41:31 ----A---- C:\Windows\system32\dsprop.dll
2010-01-26 15:41:31 ----A---- C:\Windows\system32\dsound.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\f3ahvoas.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\ExplorerFrame.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\eudcedit.exe
2010-01-26 15:41:30 ----A---- C:\Windows\system32\esent.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\es.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\EncDec.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\emdmgmt.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\EhStorShell.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\EhStorPwdMgr.dll
2010-01-26 15:41:30 ----A---- C:\Windows\system32\EhStorAuthn.dll
2010-01-26 15:41:30 ----A---- C:\Windows\explorer.exe
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dpapimig.exe
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dot3svc.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dot3msm.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dot3cfg.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\diskraid.exe
2010-01-26 15:41:29 ----A---- C:\Windows\system32\diskpart.exe
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dimsroam.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\diagperf.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dhcpcsvc.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dfsr.exe
2010-01-26 15:41:29 ----A---- C:\Windows\system32\dfshim.dll
2010-01-26 15:41:29 ----A---- C:\Windows\system32\devmgr.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\hbaapi.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\gpresult.exe
2010-01-26 15:41:28 ----A---- C:\Windows\system32\drvstore.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\drvinst.exe
2010-01-26 15:41:28 ----A---- C:\Windows\system32\drmv2clt.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\drmmgrtn.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\dnsrslvr.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\dnsapi.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\dmusic.dll
2010-01-26 15:41:28 ----A---- C:\Windows\system32\dmsynth.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\iasnap.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\IasMigReader.exe
2010-01-26 15:41:27 ----A---- C:\Windows\system32\IasMigPlugin.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\iashlpr.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\iasdatastore.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\iasads.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\iasacct.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\hidserv.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\hdwwiz.exe
2010-01-26 15:41:27 ----A---- C:\Windows\system32\gpupdate.exe
2010-01-26 15:41:27 ----A---- C:\Windows\system32\gpsvc.dll
2010-01-26 15:41:27 ----A---- C:\Windows\system32\fontext.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\gpapi.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\gdi32.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\findstr.exe
2010-01-26 15:41:26 ----A---- C:\Windows\system32\feclient.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fdWSD.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fdWCN.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fdSSDP.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fdProxy.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fdeploy.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fdBthProxy.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fdBth.dll
2010-01-26 15:41:26 ----A---- C:\Windows\system32\fc.exe
2010-01-26 15:41:26 ----A---- C:\Windows\system32\Faultrep.dll
2010-01-26 15:41:25 ----A---- C:\Windows\system32\gpedit.dll
2010-01-26 15:41:25 ----A---- C:\Windows\system32\gameux.dll
2010-01-26 15:41:25 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2010-01-26 15:41:25 ----A---- C:\Windows\system32\fundisc.dll
2010-01-26 15:41:25 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll
2010-01-26 15:41:25 ----A---- C:\Windows\system32\ftp.exe
2010-01-26 15:41:25 ----A---- C:\Windows\system32\fsquirt.exe
2010-01-26 15:41:24 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2010-01-26 15:41:24 ----A---- C:\Windows\system32\autoplay.dll
2010-01-26 15:41:24 ----A---- C:\Windows\system32\autochk.exe
2010-01-26 15:41:24 ----A---- C:\Windows\system32\autofmt.exe
2010-01-26 15:41:24 ----A---- C:\Windows\system32\autoconv.exe
2010-01-26 15:41:24 ----A---- C:\Windows\system32\authz.dll
2010-01-26 15:41:24 ----A---- C:\Windows\system32\authui.dll
2010-01-26 15:41:24 ----A---- C:\Windows\system32\audiosrv.dll
2010-01-26 15:41:24 ----A---- C:\Windows\system32\AudioSes.dll
2010-01-26 15:41:24 ----A---- C:\Windows\system32\audiodg.exe
2010-01-26 15:41:24 ----A---- C:\Windows\system32\atmlib.dll
2010-01-26 15:41:24 ----A---- C:\Windows\system32\atmfd.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\bthci.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\browseui.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\brcpl.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\blackbox.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\bitsigd.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\BFE.DLL
2010-01-26 15:41:23 ----A---- C:\Windows\system32\bcrypt.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\basecsp.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\azroles.dll
2010-01-26 15:41:23 ----A---- C:\Windows\system32\accessibilitycpl.dll
2010-01-26 15:41:22 ----A---- C:\Windows\system32\apphelp.dll
2010-01-26 15:41:22 ----A---- C:\Windows\system32\aaclient.dll
2010-01-26 15:41:21 ----A---- C:\Windows\system32\apds.dll
2010-01-26 15:41:21 ----A---- C:\Windows\system32\adsmsext.dll
2010-01-26 15:41:21 ----A---- C:\Windows\system32\adsldpc.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\crypt32.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\credui.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\connect.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\conime.exe
2010-01-26 15:41:20 ----A---- C:\Windows\system32\comuid.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\comsvcs.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\cmdial32.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\advapi32.dll
2010-01-26 15:41:20 ----A---- C:\Windows\system32\adtschema.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\DevicePairingWizard.exe
2010-01-26 15:41:19 ----A---- C:\Windows\system32\DevicePairingProxy.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\DevicePairing.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\DeviceEject.exe
2010-01-26 15:41:19 ----A---- C:\Windows\system32\dbgeng.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\davclnt.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\dataclen.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\d3d9.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\cscdll.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\cscapi.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\comdlg32.dll
2010-01-26 15:41:19 ----A---- C:\Windows\system32\cmmon32.exe
2010-01-26 15:41:18 ----A---- C:\Windows\system32\cryptui.dll
2010-01-26 15:41:17 ----A---- C:\Windows\system32\csrstub.exe
2010-01-26 15:41:17 ----A---- C:\Windows\system32\cscript.exe
2010-01-26 15:41:17 ----A---- C:\Windows\system32\cryptsvc.dll
2010-01-26 15:41:16 ----A---- C:\Windows\system32\certmgr.dll
2010-01-26 15:41:16 ----A---- C:\Windows\system32\CertEnrollUI.dll
2010-01-26 15:41:16 ----A---- C:\Windows\system32\CertEnroll.dll
2010-01-26 15:41:16 ----A---- C:\Windows\system32\certcli.dll
2010-01-26 15:41:15 ----A---- C:\Windows\system32\cbsra.exe
2010-01-26 15:41:15 ----A---- C:\Windows\system32\bthudtask.exe
2010-01-26 15:41:15 ----A---- C:\Windows\system32\bthserv.dll
2010-01-26 15:41:14 ----A---- C:\Windows\system32\CHxReadingStringIME.dll
2010-01-26 15:41:14 ----A---- C:\Windows\system32\chtbrkr.dll
2010-01-26 15:41:14 ----A---- C:\Windows\system32\chsbrkr.dll
2010-01-26 15:41:14 ----A---- C:\Windows\system32\cipher.exe
2010-01-26 15:41:14 ----A---- C:\Windows\system32\ci.dll
2010-01-26 15:41:13 ----A---- C:\Windows\system32\certutil.exe
2010-01-26 15:41:13 ----A---- C:\Windows\system32\certreq.exe
2010-01-26 15:41:13 ----A---- C:\Windows\system32\certprop.dll
2010-01-26 15:41:12 ----A---- C:\Windows\system32\msihnd.dll
2010-01-26 15:41:12 ----A---- C:\Windows\system32\msiexec.exe
2010-01-26 15:41:12 ----A---- C:\Windows\system32\msi.dll
2010-01-26 15:41:12 ----A---- C:\Windows\system32\msftedit.dll
2010-01-26 15:41:12 ----A---- C:\Windows\system32\msexch40.dll
2010-01-26 15:41:12 ----A---- C:\Windows\system32\msexcl40.dll
2010-01-26 15:41:12 ----A---- C:\Windows\system32\msdtctm.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\msimsg.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\msdtcprx.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\msdrm.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\msctfui.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\msctfp.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\MsCtfMonitor.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\msctf.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\MPSSVC.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\mprapi.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\mpr.dll
2010-01-26 15:41:11 ----A---- C:\Windows\system32\MMDevAPI.dll
2010-01-26 15:41:10 ----A---- C:\Windows\system32\mscories.dll
2010-01-26 15:41:10 ----A---- C:\Windows\system32\mscorier.dll
2010-01-26 15:41:10 ----A---- C:\Windows\system32\mscms.dll
2010-01-26 15:41:10 ----A---- C:\Windows\system32\mscandui.dll
2010-01-26 15:41:10 ----A---- C:\Windows\system32\modemui.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\netplwiz.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\netlogon.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\netiohlp.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\netcenter.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\netapi32.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\ncryptui.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\ncrypt.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\mtxclu.dll
2010-01-26 15:41:09 ----A---- C:\Windows\system32\mscoree.dll
2010-01-26 15:41:08 ----A---- C:\Windows\system32\NcdProp.dll
2010-01-26 15:41:08 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2010-01-26 15:41:08 ----A---- C:\Windows\system32\msxml6.dll
2010-01-26 15:41:08 ----A---- C:\Windows\system32\msxml3.dll
2010-01-26 15:41:07 ----A---- C:\Windows\system32\newdev.exe
2010-01-26 15:41:07 ----A---- C:\Windows\system32\newdev.dll
2010-01-26 15:41:07 ----A---- C:\Windows\system32\networkmap.dll
2010-01-26 15:41:07 ----A---- C:\Windows\system32\networkitemfactory.dll
2010-01-26 15:41:07 ----A---- C:\Windows\system32\networkexplorer.dll