Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

nejde spustit ani instalovat mwav, mbam, tuneup

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
zmija832
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 12 úno 2007 11:39

nejde spustit ani instalovat mwav, mbam, tuneup

#1 Příspěvek od zmija832 »

Dobrý den, situace začala když jsem zapnul pc, již při přihlášení uživatele byly místo ikonek šachovnice. Od té doby pc blbne a nechce moc komunikovat. Windows chce instalovat aktualizace, nejdou, po spuštění se nespustí Avast i když by měl, nejde nainstalovat Mbam, nejde spustit Mwav, Tune up jde spustit ale pak už s ním nic nehne, nereaguje a nejde vypnout jinak než přes Správce úloh. Nevím jesli to s tím souvisí, ale nefunguje od té doby i správně klávesnice, jako by nebyla česká.

Děkuji za pomoc. :cry:

zmija832
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 12 úno 2007 11:39

Re: nejde spustit ani instalovat mwav, mbam, tuneup

#2 Příspěvek od zmija832 »

A ještě, instalace Ashampoo Burning proběhla v pořádku, program běží.

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: nejde spustit ani instalovat mwav, mbam, tuneup

#3 Příspěvek od motji »

Dobrý večer :)
:arrow: V nouzovém režimu jsou stejné problémy?

:arrow: vložte log ze Rsitu, viz můj podpis :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

zmija832
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 12 úno 2007 11:39

Re: nejde spustit ani instalovat mwav, mbam, tuneup

#4 Příspěvek od zmija832 »

Dobry den log rsit, zacaly blikat i ikony , dale nejde preinstalovat windows


Logfile of random's system information tool 1.06 (written by random/random)
Run by ruda677 at 2010-04-13 09:32:28
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 25 GB (54%) free of 47 GB
Total RAM: 3327 MB (86% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 9:32:35, on 13.4.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.17023)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\TuneUp Utilities 2009\OneClickStarter.exe
C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\skeys.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\TUProgSt.exe
C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\ruda677\Plocha\RSIT.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Documents and Settings\ruda677\Plocha\ruda677.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - Default URLSearchHook is missing
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,,SKEYS /I
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\ycomp5_6_2_0.dll
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\PROGRA~1\COMMON~1\Symantec Shared\IDS\IPSBHO.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: &Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\ycomp5_6_2_0.dll
O3 - Toolbar: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SNPSTD2] C:\WINDOWS\vsnpstd2.exe
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\PSDrvCheck.exe -CheckReg
O4 - HKLM\..\Run: [SRFirstRun] rundll32 srclient.dll,CreateFirstRunRp
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - ProtocolDefaults: '@ivt' protocol is in My Computer Zone, should be Intranet Zone
O15 - ProtocolDefaults: 'file' protocol is in My Computer Zone, should be Internet Zone
O15 - ProtocolDefaults: 'ftp' protocol is in My Computer Zone, should be Internet Zone
O15 - ProtocolDefaults: 'http' protocol is in My Computer Zone, should be Internet Zone
O15 - ProtocolDefaults: 'https' protocol is in My Computer Zone, should be Internet Zone
O17 - HKLM\System\CCS\Services\Tcpip\..\{DEE853AE-BD9F-4D36-BDA3-E5EF1E22BA04}: NameServer = 10.3.0.1,62.84.128.6
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Capture Device Service - InterVideo Inc. - C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE
O23 - Service: LiveUpdate Notice - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software - C:\WINDOWS\System32\TuneUpDefragService.exe
O23 - Service: TuneUp Program Statistics Service (TuneUp.ProgramStatisticsSvc) - TuneUp Software - C:\WINDOWS\System32\TUProgSt.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe

--
End of file - 7506 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\1-Click Maintenance.job
C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
Yahoo! Companion BHO - C:\Program Files\Yahoo!\Companion\Installs\cpn2\ycomp5_6_2_0.dll [2005-04-22 328275]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2009-12-21 61888]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Symantec Intrusion Prevention - C:\PROGRA~1\COMMON~1\Symantec Shared\IDS\IPSBHO.dll [2010-03-12 116088]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-03-09 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-03-09 79648]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - &Yahoo! Companion - C:\Program Files\Yahoo!\Companion\Installs\cpn2\ycomp5_6_2_0.dll [2005-04-22 328275]
{D4027C7F-154A-4066-A1AD-4243D8127440}

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2008-05-16 13529088]
"avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-11-25 81000]
"SNPSTD2"=C:\WINDOWS\vsnpstd2.exe [2004-06-10 286720]
"PinnacleDriverCheck"=C:\WINDOWS\system32\PSDrvCheck.exe [2004-03-10 406016]
"SRFirstRun"=rundll32 srclient.dll,CreateFirstRunRp []
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2008-05-16 86016]
"nwiz"=nwiz.exe /install []
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-12-11 948672]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-12-22 35760]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonMyPrinter]
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2008-03-18 1848648]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenu]
C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2008-03-11 689488]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HDAudDeck]
C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe [2008-08-15 30003200]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\InCD]
C:\Program Files\Ahead\InCD\InCD.exe [2004-04-06 1298542]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSPM Startup]
C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe [2005-08-11 249856]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSScheduler]
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2005-08-11 81920]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LaunchList]
C:\Program Files\Pinnacle\Studio 9\LaunchList.exe [2004-03-23 49152]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCLEPCI]
C:\PROGRA~1\Pinnacle\PPE\PPE.EXE [2004-02-03 49152]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe [2003-12-08 32768]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Share-to-Web Namespace Daemon]
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe [2002-04-11 69632]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
C:\Program Files\Winamp\winampa.exe [2009-04-10 37888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\zzzHPSETUP]
F:\Setup.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^ruda677^Nabídka Start^Programy^Po spuštění^Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk]
C:\PROGRA~1\MICROS~2\Office12\ONENOTEM.EXE [2006-10-26 98632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=149

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\WINDOWS\system32\usmt\migwiz.exe"="C:\WINDOWS\system32\usmt\migwiz.exe:*:Enabled:Průvodce přenesením souborů a nastavení"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\Java\jre6\bin\javaw.exe"="C:\Program Files\Java\jre6\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

======List of files/folders created in the last 1 months======

2010-04-13 09:32:28 ----DC---- C:\rsit
2010-04-13 09:18:45 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2010-04-13 09:18:37 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2010-04-13 09:18:35 ----A---- C:\WINDOWS\imsins.BAK
2010-04-13 09:18:24 ----D---- C:\WINDOWS\ie7updates
2010-04-13 00:05:58 ----AD---- C:\WINDOWS\VDLL.DLL
2010-04-13 00:05:58 ----AD---- C:\WINDOWS\system32\runouce.exe
2010-04-13 00:05:58 ----AD---- C:\WINDOWS\rundll16.exe
2010-04-13 00:05:58 ----AD---- C:\WINDOWS\RUNDL132.EXE
2010-04-13 00:05:58 ----AD---- C:\WINDOWS\logo1_.exe
2010-04-13 00:05:58 ----AD---- C:\WINDOWS\logo_1.exe
2010-04-13 00:04:34 ----A---- C:\WINDOWS\system32\msvcr80.dll
2010-04-13 00:04:33 ----A---- C:\WINDOWS\system32\msvcp80.dll
2010-04-13 00:04:32 ----A---- C:\WINDOWS\system32\eEmpty.exe
2010-04-12 23:42:05 ----A---- C:\WINDOWS\system32\TASKMGR.COM
2010-04-12 23:42:05 ----A---- C:\WINDOWS\system32\T.COM
2010-04-12 23:42:05 ----A---- C:\WINDOWS\REGEDIT.COM
2010-04-12 23:42:05 ----A---- C:\WINDOWS\R.COM
2010-04-12 23:42:02 ----D---- C:\Program Files\Common Files\MicroWorld
2010-04-12 23:41:45 ----D---- C:\Documents and Settings\All Users\Data aplikací\MicroWorld
2010-04-12 21:07:22 ----A---- C:\Program Files\nerocsy.txt
2010-04-12 21:07:22 ----A---- C:\Program Files\Cti_mne.txt
2010-04-12 18:26:46 ----D---- C:\Documents and Settings\All Users\Data aplikací\ashampoo
2010-04-12 18:26:13 ----D---- C:\Program Files\Ashampoo
2010-04-12 16:52:33 ----A---- C:\WINDOWS\system32\TUProgSt.exe
2010-04-12 16:52:32 ----A---- C:\WINDOWS\system32\uxtuneup.dll
2010-04-12 16:52:31 ----A---- C:\WINDOWS\system32\TuneUpDefragService.exe
2010-04-12 16:51:58 ----D---- C:\Documents and Settings\All Users\Data aplikací\TuneUp Software
2010-04-12 16:51:38 ----SHD---- C:\Documents and Settings\All Users\Data aplikací\{55A29068-F2CE-456C-9148-C869879E2357}
2010-04-12 12:23:40 ----HD---- C:\Documents and Settings\All Users\Data aplikací\CanonIJEGV
2010-04-11 10:35:10 ----DC---- C:\My Documents
2010-04-11 10:35:10 ----D---- C:\WINDOWS\Application Data
2010-04-11 10:34:24 ----D---- C:\Program Files\Ahead
2010-04-11 10:33:38 ----D---- C:\Documents and Settings\All Users\Data aplikací\CyberLink
2010-04-11 10:33:28 ----A---- C:\Program Files\Uninstall_CDS.exe
2010-04-11 10:33:25 ----D---- C:\Program Files\CyberLink DVD Solution
2010-04-10 16:12:43 ----A---- C:\WINDOWS\u3dedit3.INI
2010-04-10 14:54:10 ----DC---- C:\Config.Msi
2010-04-10 14:17:04 ----HDC---- C:\WINDOWS\$NtUninstallKB978262$
2010-04-09 12:56:12 ----DC---- C:\OpenSSL
2010-04-09 09:08:26 ----HDC---- C:\WINDOWS\ie7
2010-04-09 09:08:19 ----HDC---- C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$
2010-04-09 09:08:08 ----HDC---- C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$
2010-04-09 07:26:10 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2010-04-09 07:26:05 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2010-04-09 07:26:00 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2010-04-09 07:25:55 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2010-04-09 07:25:51 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2010-04-09 07:25:46 ----HDC---- C:\WINDOWS\$NtUninstallKB971468$
2010-04-09 07:25:43 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2010-04-09 07:25:38 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-04-09 07:25:33 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-04-09 07:25:28 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2010-04-09 07:25:22 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-04-09 07:25:15 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2010-04-09 07:25:11 ----HDC---- C:\WINDOWS\$NtUninstallKB978037$
2010-04-09 07:25:06 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2010-04-09 07:25:01 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2010-04-09 07:24:55 ----HDC---- C:\WINDOWS\$NtUninstallKB977165-v2$
2010-04-09 07:24:48 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2010-04-09 07:24:43 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-04-09 07:24:36 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2010-04-09 07:24:31 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-04-09 07:24:23 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2010-04-09 07:24:16 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-04-09 07:24:11 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2010-04-09 07:24:04 ----HDC---- C:\WINDOWS\$NtUninstallKB975561$
2010-04-09 07:23:55 ----HDC---- C:\WINDOWS\$NtUninstallKB978251$
2010-04-09 07:23:49 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2010-04-09 07:23:44 ----DC---- C:\WINDOWS\$NtUninstallKB975025$
2010-04-09 07:23:39 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2010-04-09 07:23:33 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-04-09 07:23:27 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2010-04-09 07:23:17 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2010-04-09 07:23:09 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2010-04-09 07:23:01 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2010-04-09 07:22:43 ----HDC---- C:\WINDOWS\$NtUninstallKB980182$
2010-04-09 07:22:37 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2010-04-09 07:22:32 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2010-04-09 07:22:26 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-04-09 07:22:19 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2010-04-09 07:22:09 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2010-04-09 07:22:04 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-04-09 07:22:00 ----HDC---- C:\WINDOWS\$NtUninstallKB954459$
2010-04-09 07:21:51 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2010-04-09 07:21:43 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2010-04-09 07:21:38 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2010-04-09 07:21:33 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2010-04-09 07:21:28 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2010-04-09 07:21:23 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2010-04-09 07:21:18 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2010-04-09 07:21:13 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2010-04-09 07:21:07 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2010-04-09 07:20:56 ----HDC---- C:\WINDOWS\$NtUninstallKB979306$
2010-04-09 07:20:52 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2010-04-09 07:20:47 ----HDC---- C:\WINDOWS\$NtUninstallKB971961$
2010-04-09 07:20:42 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-04-09 07:20:36 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-04-09 07:20:28 ----HDC---- C:\WINDOWS\$NtUninstallKB969947$
2010-04-08 17:48:21 ----D---- C:\Program Files\Easy CD-DA Extractor 10
2010-04-08 08:33:31 ----D---- C:\WINDOWS\NV17562876.TMP
2010-04-08 08:20:10 ----D---- C:\WINDOWS\NV28762836.TMP
2010-04-08 08:14:53 ----D---- C:\WINDOWS\AsDmiHtm
2010-04-08 08:04:12 ----D---- C:\Documents and Settings\All Users\Data aplikací\WinZip
2010-04-08 08:04:10 ----D---- C:\Program Files\WinZip
2010-04-08 08:01:08 ----DC---- C:\ASUS.000
2010-04-08 08:00:55 ----DC---- C:\ASUS.SYS
2010-04-08 07:55:57 ----D---- C:\Documents and Settings\All Users\Data aplikací\Corel
2010-04-08 07:55:32 ----D---- C:\Program Files\Corel
2010-04-08 07:50:19 ----D---- C:\Program Files\ASUS
2010-04-07 19:24:23 ----D---- C:\Program Files\Wise Registry Cleaner
2010-04-07 18:46:33 ----D---- C:\WINDOWS\Prefetch
2010-04-07 18:40:49 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2010-04-07 18:31:23 ----A---- C:\WINDOWS\system32\spxcoins.dll
2010-04-07 18:31:23 ----A---- C:\WINDOWS\system32\irclass.dll
2010-04-07 18:31:11 ----RA---- C:\WINDOWS\SET47.tmp
2010-04-07 18:31:08 ----RA---- C:\WINDOWS\SET3B.tmp
2010-04-07 18:31:07 ----RA---- C:\WINDOWS\SET38.tmp
2010-04-07 14:22:45 ----RA---- C:\WINDOWS\SET46.tmp
2010-04-07 14:22:43 ----RA---- C:\WINDOWS\SET3A.tmp
2010-04-07 14:22:42 ----RA---- C:\WINDOWS\SET37.tmp
2010-04-07 13:34:00 ----ASH---- C:\Documents and Settings\All Users\Data aplikací\desktop.ini
2010-04-07 13:33:55 ----RA---- C:\WINDOWS\SET8E.tmp
2010-04-07 13:33:53 ----RA---- C:\WINDOWS\SET82.tmp
2010-04-07 13:33:51 ----RA---- C:\WINDOWS\SET7F.tmp
2010-04-07 13:23:46 ----A---- C:\WINDOWS\UPGRADE.TXT
2010-04-07 12:58:50 ----D---- C:\Documents and Settings\All Users\Data aplikací\Easy CD-DA Extractor
2010-04-07 08:48:01 ----A---- C:\WINDOWS\system32\muweb.dll
2010-04-07 08:48:01 ----A---- C:\WINDOWS\system32\mucltui.dll.mui
2010-04-07 08:48:01 ----A---- C:\WINDOWS\system32\mucltui.dll
2010-04-07 08:45:57 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2010-04-06 14:32:34 ----A---- C:\WINDOWS\system32\wmpns.dll
2010-04-06 14:24:37 ----A---- C:\WINDOWS\system32\SETBROWS.EXE
2010-04-06 14:24:37 ----A---- C:\WINDOWS\system32\INETWH32.DLL
2010-04-06 14:15:08 ----A---- C:\WINDOWS\system32\Iyvu9_32.dll
2010-04-06 14:15:08 ----A---- C:\WINDOWS\system32\Iacenc.dll
2010-04-06 09:22:55 ----A---- C:\WINDOWS\PixieTool.INI
2010-04-04 14:46:59 ----A---- C:\WINDOWS\hpqcopy.INI
2010-04-04 14:36:15 ----D---- C:\Program Files\Common Files\Java
2010-04-04 14:36:15 ----D---- C:\Documents and Settings\All Users\Data aplikací\Sun
2010-04-04 14:36:02 ----A---- C:\WINDOWS\system32\javaws.exe
2010-04-04 14:36:02 ----A---- C:\WINDOWS\system32\javaw.exe
2010-04-04 14:36:02 ----A---- C:\WINDOWS\system32\java.exe
2010-04-04 14:15:03 ----A---- C:\WINDOWS\system32\VegaShEx.dll
2010-04-04 14:15:01 ----A---- C:\WINDOWS\system32\ZDec.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lttwn80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\ltkrn80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\ltimg80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\ltfil80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lfwpg80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lfwfx80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lftif80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lftga80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lfras80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lfpsd80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lfpng80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lfpcx80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lfpct80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lfpcd80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lfmsp80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lfmac80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lflmb80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lflma80n.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\Pcdlib32.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\Lfkodak.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\lfimg80n.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\lfica80n.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\lfgif80n.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\lffpx80n.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\Lffpx7.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\lffax80n.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\lfeps80n.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\lfcmp80n.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\lfcal80n.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\lfbmp80n.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\lfawd80n.dll
2010-03-30 15:25:57 ----A---- C:\WINDOWS\WTRAN32.INI
2010-03-29 18:56:41 ----D---- C:\WINDOWS\Easy CD-DA Extractor 12.0.4
2010-03-29 18:27:24 ----D---- C:\Program Files\Easy CD-DA Extractor 12
2010-03-29 13:40:35 ----AD---- C:\Documents and Settings\All Users\Data aplikací\TEMP
2010-03-20 09:33:03 ----HD---- C:\Documents and Settings\All Users\Data aplikací\CanonBJ
2010-03-20 09:32:54 ----HD---- C:\WINDOWS\system32\CanonIJ Uninstaller Information
2010-03-20 09:32:46 ----HD---- C:\Program Files\CanonBJ
2010-03-19 15:59:29 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2010-03-19 09:58:05 ----A---- C:\WINDOWS\system32\MRT.exe
2010-03-14 20:12:50 ----A---- C:\WINDOWS\system32\deploytk.dll
2010-03-14 19:45:13 ----D---- C:\Documents and Settings\All Users\Data aplikací\McAfee
2010-03-14 19:45:12 ----D---- C:\Program Files\McAfee Security Scan
2010-03-14 19:02:34 ----A---- C:\WINDOWS\Irremote.ini
2010-03-14 17:12:17 ----D---- C:\WINDOWS\NV1601152.TMP
2010-03-14 17:11:20 ----N---- C:\WINDOWS\system32\browserchoice.exe
2010-03-14 17:06:11 ----D---- C:\WINDOWS\NV8681232.TMP
2010-03-14 16:48:27 ----D---- C:\Program Files\Theorica Divx ;-) Codecs
2010-03-14 16:41:18 ----A---- C:\WINDOWS\iun6002.exe
2010-03-14 16:36:07 ----A---- C:\WINDOWS\RtlExUpd.dll
2010-03-14 16:31:01 ----D---- C:\Program Files\Kodek CZ
2010-03-14 16:26:22 ----A---- C:\WINDOWS\system32\rmoc3260.dll
2010-03-14 16:26:22 ----A---- C:\WINDOWS\system32\pndx5032.dll
2010-03-14 16:26:22 ----A---- C:\WINDOWS\system32\pndx5016.dll
2010-03-14 16:26:21 ----A---- C:\WINDOWS\avisplitter.ini
2010-03-14 16:26:20 ----A---- C:\WINDOWS\system32\yv12vfw.dll
2010-03-14 16:26:19 ----A---- C:\WINDOWS\system32\qt-dx331.dll
2010-03-14 16:26:19 ----A---- C:\WINDOWS\system32\dpl100.dll
2010-03-14 16:26:19 ----A---- C:\WINDOWS\system32\divx.dll
2010-03-14 16:23:11 ----D---- C:\Program Files\XP Codec Pack

======List of files/folders modified in the last 1 months======

2010-04-13 09:32:32 ----D---- C:\WINDOWS\Temp
2010-04-13 09:21:54 ----D---- C:\WINDOWS
2010-04-13 09:21:34 ----D---- C:\WINDOWS\system32
2010-04-13 09:20:50 ----D---- C:\WINDOWS\system32\CatRoot2
2010-04-13 09:20:50 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-04-13 09:18:47 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-04-13 09:18:47 ----HD---- C:\WINDOWS\inf
2010-04-13 09:18:47 ----D---- C:\WINDOWS\system32\drivers
2010-04-13 09:18:41 ----HD---- C:\WINDOWS\$hf_mig$
2010-04-13 09:18:29 ----D---- C:\Program Files\Internet Explorer
2010-04-12 23:53:34 ----A---- C:\WINDOWS\win.ini
2010-04-12 23:42:02 ----D---- C:\Program Files\Common Files
2010-04-12 23:26:15 ----SHD---- C:\WINDOWS\Installer
2010-04-12 23:24:47 ----D---- C:\Program Files\Microsoft Works
2010-04-12 23:24:39 ----D---- C:\Program Files\MSBuild
2010-04-12 23:24:06 ----D---- C:\Program Files\Common Files\DESIGNER
2010-04-12 23:23:58 ----HD---- C:\WINDOWS\ShellNew
2010-04-12 23:23:20 ----RSD---- C:\WINDOWS\Fonts
2010-04-12 21:16:14 ----D---- C:\Documents and Settings
2010-04-12 21:13:02 ----RD---- C:\Program Files
2010-04-12 17:52:46 ----D---- C:\WINDOWS\pss
2010-04-12 17:03:27 ----D---- C:\Program Files\Ask.com
2010-04-12 17:02:41 ----SD---- C:\WINDOWS\Tasks
2010-04-12 16:55:05 ----D---- C:\Program Files\TuneUp Utilities 2009
2010-04-12 16:52:33 ----D---- C:\WINDOWS\system32\config
2010-04-12 13:30:20 ----D---- C:\WINDOWS\Debug
2010-04-12 13:10:29 ----D---- C:\WINDOWS\setup.pss
2010-04-12 13:08:48 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-04-12 13:08:47 ----D---- C:\WINDOWS\Help
2010-04-12 11:47:52 ----D---- C:\Program Files\Canon
2010-04-12 11:28:45 ----D---- C:\Program Files\WinRAR
2010-04-11 10:40:17 ----D---- C:\ppwork
2010-04-11 10:33:37 ----D---- C:\Program Files\CyberLink
2010-04-11 10:33:34 ----HD---- C:\Program Files\InstallShield Installation Information
2010-04-11 09:52:45 ----A---- C:\WINDOWS\Ascd_log.ini
2010-04-11 09:44:45 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-04-11 09:38:01 ----D---- C:\Program Files\VIA
2010-04-11 08:37:06 ----D---- C:\WINDOWS\security
2010-04-10 16:14:38 ----A---- C:\WINDOWS\ULead32.ini
2010-04-10 16:02:58 ----D---- C:\Documents and Settings\All Users\Data aplikací\Ulead Systems
2010-04-10 16:00:28 ----D---- C:\WINDOWS\system32\wbem
2010-04-10 16:00:28 ----D---- C:\WINDOWS\AppPatch
2010-04-10 15:49:44 ----D---- C:\Program Files\Movie Maker
2010-04-10 15:48:58 ----D---- C:\Program Files\Outlook Express
2010-04-10 15:44:23 ----D---- C:\WINDOWS\SoftwareDistribution
2010-04-10 15:40:48 ----D---- C:\WINDOWS\system32\CatRoot
2010-04-10 15:37:49 ----D---- C:\Program Files\Pinnacle
2010-04-10 15:20:55 ----D---- C:\Program Files\Hemera Products
2010-04-10 14:58:51 ----D---- C:\WINDOWS\Registration
2010-04-10 14:58:38 ----D---- C:\Program Files\Common Files\Symantec Shared
2010-04-10 14:57:32 ----D---- C:\TRANSLAT
2010-04-10 14:57:20 ----D---- C:\Program Files\Common Files\snpstd2
2010-04-10 14:55:42 ----HD---- C:\WINDOWS\msdownld.tmp
2010-04-10 14:54:42 ----D---- C:\Program Files\Symantec
2010-04-10 14:54:02 ----D---- C:\Program Files\Ulead Systems
2010-04-10 14:53:15 ----D---- C:\WINDOWS\system32\Restore
2010-04-09 13:53:17 ----D---- C:\Program Files\Common Files\Ulead Systems
2010-04-09 09:11:37 ----D---- C:\WINDOWS\Media
2010-04-09 09:09:27 ----D---- C:\WINDOWS\system32\cs-cz
2010-04-09 08:11:53 ----D---- C:\Program Files\Hewlett-Packard
2010-04-09 08:09:06 ----D---- C:\Documents and Settings\All Users\Data aplikací\Symantec
2010-04-08 18:33:36 ----D---- C:\Documents and Settings\All Users\Data aplikací\Pinnacle
2010-04-08 17:09:08 ----D---- C:\WINDOWS\nview
2010-04-08 07:52:38 ----D---- C:\Program Files\Common Files\Adobe
2010-04-08 07:52:36 ----D---- C:\WINDOWS\WinSxS
2010-04-08 07:52:29 ----D---- C:\Program Files\Adobe
2010-04-08 07:51:09 ----D---- C:\Program Files\Realtek
2010-04-07 20:29:09 ----D---- C:\WINDOWS\system32\Setup
2010-04-07 20:29:09 ----D---- C:\WINDOWS\system
2010-04-07 20:29:01 ----D---- C:\WINDOWS\L2Schemas
2010-04-07 20:29:00 ----D---- C:\WINDOWS\system32\usmt
2010-04-07 20:28:50 ----D---- C:\WINDOWS\ime
2010-04-07 20:28:48 ----D---- C:\WINDOWS\Network Diagnostic
2010-04-07 20:28:35 ----D---- C:\WINDOWS\PeerNet
2010-04-07 20:28:22 ----D---- C:\WINDOWS\system32\npp
2010-04-07 20:28:16 ----D---- C:\WINDOWS\msagent
2010-04-07 20:28:12 ----D---- C:\WINDOWS\system32\cs
2010-04-07 20:25:31 ----D---- C:\WINDOWS\system32\1029
2010-04-07 20:25:20 ----D---- C:\WINDOWS\twain_32
2010-04-07 20:24:48 ----D---- C:\WINDOWS\system32\icsxml
2010-04-07 20:24:20 ----D---- C:\WINDOWS\system32\ias
2010-04-07 20:24:15 ----D---- C:\WINDOWS\system32\1033
2010-04-07 20:23:14 ----D---- C:\WINDOWS\Driver Cache
2010-04-07 19:13:08 ----D---- C:\Program Files\K-Lite Codec Pack
2010-04-07 18:46:49 ----SHD---- C:\System Volume Information
2010-04-07 18:41:32 ----A---- C:\WINDOWS\ODBCINST.INI
2010-04-07 18:40:51 ----RD---- C:\WINDOWS\Web
2010-04-07 18:40:45 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2010-04-07 18:40:33 ----D---- C:\WINDOWS\system32\oobe
2010-04-07 18:40:20 ----D---- C:\WINDOWS\system32\Com
2010-04-07 18:38:59 ----SHC---- C:\boot.ini
2010-04-07 18:31:26 ----A---- C:\WINDOWS\system.ini
2010-04-07 13:44:46 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-04-06 14:15:07 ----D---- C:\Program Files\Intel
2010-04-04 14:57:08 ----D---- C:\Program Files\Mozilla Firefox
2010-04-04 14:36:22 ----D---- C:\Program Files\hp deskjet 845c series
2010-04-04 14:36:01 ----D---- C:\Program Files\Java
2010-03-31 12:25:10 ----D---- C:\WINDOWS\ie8updates
2010-03-29 13:40:14 ----D---- C:\WINDOWS\Easy CD-DA Extractor
2010-03-24 09:41:10 ----D---- C:\Program Files\JDownloader
2010-03-19 10:02:33 ----HDC---- C:\WINDOWS\ie8
2010-03-19 10:02:27 ----D---- C:\WINDOWS\WBEM
2010-03-14 17:49:59 ----A---- C:\WINDOWS\Ascd_tmp.ini

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2009-11-25 27408]
R1 AFS2K;AFS2k; C:\WINDOWS\system32\drivers\AFS2K.sys [2010-04-10 82380]
R1 aswSP;avast! Self Protection; C:\WINDOWS\system32\drivers\aswSP.sys [2009-11-25 114768]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2009-11-25 48560]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 PCLEPCI;PCLEPCI; \??\C:\WINDOWS\system32\drivers\pclepci.sys []
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2009-11-25 20560]
R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2009-11-25 94160]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-14 60800]
R3 ASAPIW2k;ASAPIW2K; C:\WINDOWS\system32\drivers\ASAPIW2k.sys [2004-03-10 11264]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2009-11-25 23120]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-14 144384]
R3 MarvinBus;Pinnacle Marvin Bus; C:\WINDOWS\system32\DRIVERS\MarvinBus.sys [2004-03-29 90464]
R3 monfilt;monfilt; C:\WINDOWS\system32\drivers\monfilt.sys [2008-02-14 1389056]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-14 61824]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2008-05-16 6557408]
R3 pfc;Padus ASPI Shell; C:\WINDOWS\system32\drivers\pfc.sys [2003-12-05 10368]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2008-07-01 108800]
R3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
R3 snpstd2;VideoCAM Look; C:\WINDOWS\system32\DRIVERS\snpstd2.sys [2004-07-28 334080]
R3 usbaudio;Ovladač zvukové karty USB (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-14 60032]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-14 30208]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-14 59520]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service; C:\WINDOWS\system32\drivers\viahduaa.sys [2008-07-25 845184]
S3 61883;61883 Unit Device; C:\WINDOWS\system32\DRIVERS\61883.sys [2008-04-14 48128]
S3 Avc;AVC Device; C:\WINDOWS\system32\DRIVERS\avc.sys [2008-04-14 38912]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 MSDV;Microsoft DV Camera and VCR; C:\WINDOWS\system32\DRIVERS\msdv.sys [2008-04-14 51200]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 nm;Ovladač programu Sledování sítě; C:\WINDOWS\system32\DRIVERS\NMnt.sys [2008-04-14 40320]
S3 SPBBCDrv;SPBBCDrv; \??\C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCDrv.sys []
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 SymIM;Symantec Network Security Intermediate Filter Service; C:\WINDOWS\system32\DRIVERS\SymIM.sys []
S3 SymIMMP;SymIMMP; C:\WINDOWS\system32\DRIVERS\SymIM.sys []
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-11-25 18752]
R2 Automatic LiveUpdate Scheduler;Automatic LiveUpdate Scheduler; C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe [2008-02-09 238968]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-11-25 138680]
R2 Capture Device Service;Capture Device Service; C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe [2007-03-06 198168]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-03-09 153376]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2008-05-16 159812]
R2 SerialKeys;SerialKeys; C:\WINDOWS\system32\skeys.exe [2008-04-14 26112]
R2 TuneUp.ProgramStatisticsSvc;TuneUp Program Statistics Service; C:\WINDOWS\System32\TUProgSt.exe [2010-04-12 603904]
R2 UleadBurningHelper;Ulead Burning Helper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [2007-03-03 67056]
R2 UxTuneUp;TuneUp Theme Extension; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-11-25 254040]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-11-25 352920]
S2 CLTNetCnService;Symantec Lic NetConnect service; C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe /h ccCommon []
S2 LiveUpdate Notice;LiveUpdate Notice; C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe /h ccCommon []
S3 LiveUpdate;LiveUpdate; C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE [2008-02-09 3220856]
S3 McComponentHostService;McAfee Security Scan Component Host Service; C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe [2010-01-15 227232]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 TuneUp.Defrag;TuneUp Drive Defrag Service; C:\WINDOWS\System32\TuneUpDefragService.exe [2010-04-12 360192]

-----------------EOF-----------------

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: nejde spustit ani instalovat mwav, mbam, tuneup

#5 Příspěvek od motji »

:o nejde přeinstalovat proč? ted už nic nezkoušejte, něco tam vidím, zkusíme se s tím poprat.
Kdyby s Vámi počítač nechtěl komunikovat, nouzový režim Vám funguje? Pracujte v něm.

Ještě si něco ověřím, a jdem na to :D

:arrow: Stáhněte a spusťte http://users.telenet.be/marcvn/tools/reglooks.exe
- objeví se červené okno a program bude pracovat.
-po dokončení skenu na Vás vyskočí poznámkový blok result.txt- obsah sem zkopírujte
- v případě že na Vás nevyskočí, najdete ho zde c:\result.txt
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

zmija832
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 12 úno 2007 11:39

Re: nejde spustit ani instalovat mwav, mbam, tuneup

#6 Příspěvek od zmija832 »

Nouzovy reyim dela to same, rsit nejde spustit ani v nouzovem reyimu, vypisuje Chyba nacteni se nezdarilo .....

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: nejde spustit ani instalovat mwav, mbam, tuneup

#7 Příspěvek od motji »

zmija832 píše:Nouzovy reyim dela to same, rsit nejde spustit ani v nouzovem reyimu, vypisuje Chyba nacteni se nezdarilo .....
rsit? myslíte reglooks,ne? rsit už jste dělal :o
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

zmija832
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 12 úno 2007 11:39

Re: nejde spustit ani instalovat mwav, mbam, tuneup

#8 Příspěvek od zmija832 »

ano jsem popleta

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: nejde spustit ani instalovat mwav, mbam, tuneup

#9 Příspěvek od motji »

Nevadí, zkusíme něco jiného. Jinak máte možnost vypálit live cd na jiném počítači?


:arrow: Stahněte Rkill z jednoho z odkazů, pokud by ho vir blokoval, zkuste stahnout jiný

Rkill EXE:
http://download.bleepingcomputer.com/grinler/rkill.exe

Rkill COM:
http://download.bleepingcomputer.com/grinler/rkill.com

Rkill SCR:
http://download.bleepingcomputer.com/grinler/rkill.scr

Rkill PIF:
http://download.bleepingcomputer.com/grinler/rkill.pif

-spusťte ho a nechejte pracovat. Sám se ukončí.

- :!: Ted nerestartujte počítač! :!:


:arrow: Combofix stahněte takto:
- pravým myšítkem klikněte na odkaz combofixu --uložit jako.. ,a teď ho přejmenujte na Potvora.com a uložte.


:arrow: Stáhněte na plochu, ukončete všechna aktivní okna a spusťte ComboFix - http://download.bleepingcomputer.com/sUBs/ComboFix.exe

-souhlaste s instalací konzole pro zotavení

- ComboFix je třeba spustit pod účtem s právy administrátora

- Před použitím vypněte všechny rezidentní bezpečnostní programy - antiviry, firewally, antispywary

- Po spuštění se zobrazí podmínky užití, potvrďte je stiskem tlačítka Ano

- Dále postupujte dle pokynů, během aplikování ComboFixu neklikejte do zobrazujícího se okna :!:

- Po dokončení skenování, trvajícího maximálně 10 minut, by měl program vytvořit log - C:\ComboFix.txt, zkopírujte celý jeho obsah sem
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

zmija832
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 12 úno 2007 11:39

Re: nejde spustit ani instalovat mwav, mbam, tuneup

#10 Příspěvek od zmija832 »

BUDETE SE ASI ZLOBIT, SPUSTIL JSEM COMBOFIX BEY PREJMENOVANI :oops: MOJE NERVY , PAK TO ZAMRZLO A NESEL ZKOPIROVAT LOG, VLOGU BYLO NECO SMAZANE , PAK JSEM SPUSTIL ZNOVA COMBOFIX PREJMENOVANY, LOG ZDE

ComboFix 10-04-12.04 - ruda677 13.04.2010 10:32:50.2.2 - x86
Spuštěný z: c:\documents and settings\ruda677\Plocha\POVORA.COM.exe
.

((((((((((((((((((((((((( Soubory vytvořené od 2010-03-13 do 2010-04-13 )))))))))))))))))))))))))))))))
.

2010-04-13 07:45 . 2010-04-13 07:59 -------- d-----w- c:\windows\RegLooks
2010-04-13 07:32 . 2010-04-13 07:32 -------- dc----w- C:\rsit
2010-04-12 22:05 . 2010-04-12 22:05 -------- d---a-w- c:\windows\VDLL.DLL
2010-04-12 22:05 . 2010-04-12 22:05 -------- d---a-w- c:\windows\system32\runouce.exe
2010-04-12 22:05 . 2010-04-12 22:05 -------- d---a-w- c:\windows\rundll16.exe
2010-04-12 22:05 . 2010-04-12 22:05 -------- d---a-w- c:\windows\RUNDL132.EXE
2010-04-12 22:05 . 2010-04-12 22:05 -------- d---a-w- c:\windows\logo1_.exe
2010-04-12 22:05 . 2010-04-12 22:05 -------- d---a-w- c:\windows\logo_1.exe
2010-04-12 22:04 . 2010-04-12 22:04 632064 ----a-w- c:\windows\system32\msvcr80.dll
2010-04-12 22:04 . 2010-04-12 22:04 554240 ----a-w- c:\windows\system32\msvcp80.dll
2010-04-12 22:04 . 2010-04-12 22:04 34048 ----a-w- c:\windows\system32\eEmpty.exe
2010-04-12 21:42 . 2008-04-14 12:00 147968 ----a-w- c:\windows\R.COM
2010-04-12 21:42 . 2008-04-14 12:00 137216 ----a-w- c:\windows\system32\T.COM
2010-04-12 21:42 . 2010-04-12 21:42 -------- d-----w- c:\program files\Common Files\MicroWorld
2010-04-12 16:26 . 2010-04-12 16:26 -------- d-----w- c:\program files\Ashampoo
2010-04-12 14:52 . 2010-04-12 14:52 603904 ----a-w- c:\windows\system32\TUProgSt.exe
2010-04-12 14:52 . 2008-12-11 11:31 27904 ----a-w- c:\windows\system32\uxtuneup.dll
2010-04-12 14:52 . 2010-04-12 14:52 360192 ----a-w- c:\windows\system32\TuneUpDefragService.exe
2010-04-12 09:30 . 2009-10-20 16:20 265728 -c----w- c:\windows\system32\dllcache\http.sys
2010-04-12 09:30 . 2010-03-11 12:36 52224 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2010-04-12 09:30 . 2010-03-11 12:36 459264 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2010-04-12 09:30 . 2010-03-11 12:36 268288 -c----w- c:\windows\system32\dllcache\iertutil.dll
2010-04-12 09:30 . 2010-03-11 12:36 63488 -c----w- c:\windows\system32\dllcache\icardie.dll
2010-04-12 09:30 . 2010-03-11 12:36 6067200 -c----w- c:\windows\system32\dllcache\ieframe.dll
2010-04-12 09:30 . 2010-03-11 12:36 380928 -c----w- c:\windows\system32\dllcache\ieapfltr.dll
2010-04-12 09:30 . 2010-03-10 13:17 13824 -c----w- c:\windows\system32\dllcache\ieudinit.exe
2010-04-12 09:30 . 2009-06-29 08:33 2452872 -c----w- c:\windows\system32\dllcache\ieapfltr.dat
2010-04-11 08:35 . 2010-04-11 08:35 -------- dc----w- C:\My Documents
2010-04-11 08:35 . 2010-04-11 08:35 -------- d-----w- c:\windows\Application Data
2010-04-11 08:34 . 2010-04-11 08:34 -------- d-----w- c:\program files\Ahead
2010-04-11 08:34 . 2003-12-05 09:46 10368 ------w- c:\windows\system32\drivers\pfc.sys
2010-04-11 08:33 . 2004-03-11 11:27 40960 ----a-w- c:\program files\Uninstall_CDS.exe
2010-04-11 08:33 . 2010-04-11 08:33 -------- d-----w- c:\program files\CyberLink DVD Solution
2010-04-10 13:47 . 2008-06-14 17:35 272128 -c----w- c:\windows\system32\dllcache\bthport.sys
2010-04-10 13:46 . 2009-06-10 07:21 2066432 -c----w- c:\windows\system32\dllcache\mstscax.dll
2010-04-10 13:46 . 2009-12-09 10:11 2191360 -c----w- c:\windows\system32\dllcache\ntoskrnl.exe
2010-04-10 13:46 . 2009-12-09 10:11 2068224 -c----w- c:\windows\system32\dllcache\ntkrnlpa.exe
2010-04-10 13:46 . 2009-12-09 10:11 2147328 -c----w- c:\windows\system32\dllcache\ntkrnlmp.exe
2010-04-10 13:46 . 2009-12-09 10:11 2025984 -c----w- c:\windows\system32\dllcache\ntkrpamp.exe
2010-04-10 13:46 . 2009-12-04 18:22 455424 -c----w- c:\windows\system32\dllcache\mrxsmb.sys
2010-04-10 13:46 . 2009-11-27 17:14 17920 -c----w- c:\windows\system32\dllcache\msyuv.dll
2010-04-10 13:46 . 2009-11-27 16:09 8704 -c----w- c:\windows\system32\dllcache\tsbyuv.dll
2010-04-10 13:46 . 2009-11-27 16:09 48128 -c----w- c:\windows\system32\dllcache\iyuv_32.dll
2010-04-10 12:58 . 2010-04-10 12:58 -------- d-----w- c:\windows\system32\wbem\Repository
2010-04-09 10:56 . 2010-04-10 12:54 -------- dc----w- C:\OpenSSL
2010-04-08 15:48 . 2010-04-10 12:57 -------- d-----w- c:\program files\Easy CD-DA Extractor 10
2010-04-08 06:33 . 2010-04-10 12:57 -------- d-----w- c:\windows\NV17562876.TMP
2010-04-08 06:20 . 2010-04-10 12:58 -------- d-----w- c:\windows\NV28762836.TMP
2010-04-08 06:14 . 2010-04-10 12:58 -------- d-----w- c:\windows\AsDmiHtm
2010-04-08 06:01 . 2010-04-08 06:01 -------- dc----w- C:\ASUS.000
2010-04-08 06:00 . 2010-04-10 12:58 -------- dc----w- C:\ASUS.SYS
2010-04-08 05:55 . 2010-04-08 05:55 -------- d-----w- c:\program files\Corel
2010-04-08 05:50 . 2010-04-10 12:58 -------- d-----w- c:\program files\ASUS
2010-04-07 17:24 . 2010-04-10 12:58 -------- d-----w- c:\program files\Wise Registry Cleaner
2010-04-07 16:42 . 2008-04-14 12:00 79872 -c--a-w- c:\windows\system32\dllcache\rwia330.dll
2010-04-07 16:41 . 2001-10-24 10:24 5632 -c--a-w- c:\windows\system32\dllcache\EXCH_adsiisex.dll
2010-04-07 16:31 . 2008-04-14 12:00 24661 -c--a-w- c:\windows\system32\dllcache\spxcoins.dll
2010-04-07 16:31 . 2008-04-14 12:00 24661 ----a-w- c:\windows\system32\spxcoins.dll
2010-04-07 16:31 . 2008-04-14 12:00 13312 -c--a-w- c:\windows\system32\dllcache\irclass.dll
2010-04-07 16:31 . 2008-04-14 12:00 13312 ----a-w- c:\windows\system32\irclass.dll
2010-04-07 06:28 . 2010-04-07 06:28 -------- d-----w- c:\documents and settings\NetworkService.NT AUTHORITY.002\Nabídka Start
2010-04-07 06:28 . 2010-04-07 06:28 -------- d-----w- c:\documents and settings\LocalService.NT AUTHORITY.002\Data aplikací
2010-04-07 06:28 . 2010-04-10 12:58 -------- d-sh--w- c:\documents and settings\NetworkService.NT AUTHORITY.002
2010-04-07 06:28 . 2010-04-07 06:28 -------- d-----w- c:\documents and settings\NetworkService.NT AUTHORITY.002\Data aplikací
2010-04-06 12:32 . 2008-04-14 12:00 221184 ----a-w- c:\windows\system32\wmpns.dll
2010-04-06 12:32 . 2010-04-10 12:58 -------- d-----w- c:\documents and settings\adamek
2010-04-06 12:32 . 2010-04-07 16:09 -------- d--h--r- c:\documents and settings\adamek\Data aplikací
2010-04-06 12:32 . 2010-04-07 06:27 -------- d-----r- c:\documents and settings\adamek\Oblíbené položky
2010-04-06 12:32 . 2010-04-07 06:27 -------- d-----r- c:\documents and settings\adamek\Nabídka Start
2010-04-06 12:32 . 2010-04-07 06:26 -------- d-----r- c:\documents and settings\adamek\Dokumenty
2010-04-06 12:32 . 2010-03-12 18:11 -------- d--h--w- c:\documents and settings\adamek\Okolní tiskárny
2010-04-06 12:32 . 2010-03-12 18:11 -------- d--h--w- c:\documents and settings\adamek\Okolní síť
2010-04-06 12:32 . 2010-03-12 18:11 -------- d-----w- c:\documents and settings\adamek\Plocha
2010-04-06 12:24 . 1996-09-10 20:33 48640 ----a-w- c:\windows\system32\INETWH32.DLL
2010-04-06 12:24 . 1996-08-27 12:48 4528 ----a-w- c:\windows\system32\SETBROWS.EXE
2010-04-06 12:15 . 1998-11-18 14:33 144384 ----a-w- c:\windows\system32\Iacenc.dll
2010-04-06 12:15 . 1997-06-13 06:56 56832 ----a-w- c:\windows\system32\Iyvu9_32.dll
2010-04-05 09:22 . 2008-04-13 22:16 51200 ----a-w- c:\windows\system32\drivers\msdv.sys
2010-04-05 09:22 . 2008-04-13 22:16 38912 ----a-w- c:\windows\system32\drivers\avc.sys
2010-04-05 09:22 . 2008-04-13 22:16 48128 ----a-w- c:\windows\system32\drivers\61883.sys
2010-04-04 12:36 . 2010-04-04 12:36 -------- d-----w- c:\program files\Common Files\Java
2010-04-04 12:15 . 2001-11-02 11:50 147456 ----a-w- c:\windows\system32\VegaShEx.dll
2010-04-04 12:15 . 2002-02-13 14:15 77824 ----a-w- c:\windows\system32\ZDec.dll
2010-04-04 12:09 . 2010-04-10 13:02 82380 ----a-w- c:\windows\system32\drivers\AFS2K.SYS
2010-03-29 16:56 . 2010-04-10 13:15 -------- d-----w- c:\windows\Easy CD-DA Extractor 12.0.4
2010-03-29 16:27 . 2010-04-10 13:15 -------- d-----w- c:\program files\Easy CD-DA Extractor 12
2010-03-20 07:32 . 2010-03-20 07:32 -------- d--h--w- c:\windows\system32\CanonIJ Uninstaller Information
2010-03-20 07:32 . 2010-03-20 07:32 -------- d--h--w- c:\program files\CanonBJ
2010-03-19 13:47 . 2008-04-13 22:17 25856 ----a-w- c:\windows\system32\drivers\usbprint.sys
2010-03-19 08:33 . 2010-03-19 08:33 -------- d-sh--w- c:\windows\system32\config\systemprofile\IETldCache
2010-03-16 12:39 . 2010-04-07 06:28 -------- d-----w- c:\documents and settings\ruda677\6MaxfaktorTvz
2010-03-14 18:12 . 2010-03-09 02:28 411368 ----a-w- c:\windows\system32\deploytk.dll
2010-03-14 17:45 . 2010-03-22 10:45 -------- d-----w- c:\program files\McAfee Security Scan
2010-03-14 15:12 . 2010-03-14 15:30 -------- d-----w- c:\windows\NV1601152.TMP
2010-03-14 15:11 . 2010-02-12 10:03 293376 ------w- c:\windows\system32\browserchoice.exe
2010-03-14 15:06 . 2010-03-14 15:08 -------- d-----w- c:\windows\NV8681232.TMP
2010-03-14 14:48 . 2010-03-14 14:48 -------- d-----w- c:\program files\Theorica Divx ;-) Codecs
2010-03-14 14:41 . 2010-03-14 14:41 729088 ----a-w- c:\windows\iun6002.exe
2010-03-14 14:36 . 2009-11-02 12:48 831488 ----a-w- c:\windows\RtlExUpd.dll
2010-03-14 14:31 . 2010-04-07 17:14 -------- d-----w- c:\program files\Kodek CZ
2010-03-14 14:26 . 2004-01-25 16:18 217088 ----a-w- c:\windows\system32\yv12vfw.dll
2010-03-14 14:26 . 2009-07-14 00:15 90112 ----a-w- c:\windows\system32\dpl100.dll
2010-03-14 14:26 . 2009-07-14 00:15 685056 ----a-w- c:\windows\system32\divx.dll
2010-03-14 14:26 . 2008-11-06 16:37 3596288 ----a-w- c:\windows\system32\qt-dx331.dll
2010-03-14 14:23 . 2010-03-14 14:23 -------- d-----w- c:\program files\XP Codec Pack

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-04-12 21:24 . 2009-11-19 11:36 -------- d-----w- c:\program files\Microsoft Works
2010-04-12 21:24 . 2009-11-19 11:36 -------- d-----w- c:\program files\MSBuild
2010-04-12 15:03 . 2010-03-13 13:44 -------- d-----w- c:\program files\Ask.com
2010-04-12 14:55 . 2010-03-12 16:38 -------- d-----w- c:\program files\TuneUp Utilities 2009
2010-04-12 11:08 . 2008-04-14 12:00 47386 ----a-w- c:\windows\system32\perfc005.dat
2010-04-12 11:08 . 2008-04-14 12:00 313244 ----a-w- c:\windows\system32\perfh005.dat
2010-04-12 09:47 . 2009-07-17 11:52 -------- d-----w- c:\program files\Canon
2010-04-11 08:33 . 2009-10-26 11:57 -------- d-----w- c:\program files\CyberLink
2010-04-11 08:33 . 2009-02-27 13:43 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-04-11 07:38 . 2010-03-12 14:54 -------- d-----w- c:\program files\VIA
2010-04-10 13:37 . 2010-03-13 11:55 -------- d-----w- c:\program files\Pinnacle
2010-04-10 13:20 . 2009-06-16 05:07 -------- d-----w- c:\program files\Hemera Products
2010-04-10 12:58 . 2010-03-06 10:39 -------- d-----w- c:\program files\Common Files\Symantec Shared
2010-04-10 12:57 . 2010-03-13 08:53 -------- d-----w- c:\program files\Common Files\snpstd2
2010-04-10 12:54 . 2010-03-12 14:45 -------- d-----w- c:\program files\Symantec
2010-04-10 12:54 . 2010-03-07 08:29 -------- d-----w- c:\program files\Ulead Systems
2010-04-09 11:53 . 2010-03-07 08:58 -------- d-----w- c:\program files\Common Files\Ulead Systems
2010-04-09 06:11 . 2009-03-17 16:34 -------- d-----w- c:\program files\Hewlett-Packard
2010-04-08 05:52 . 2009-04-02 07:16 -------- d-----w- c:\program files\Common Files\Adobe
2010-04-08 05:51 . 2010-03-12 15:00 -------- d-----w- c:\program files\Realtek
2010-04-07 17:13 . 2010-03-05 16:16 -------- d-----w- c:\program files\K-Lite Codec Pack
2010-04-07 16:40 . 2010-03-12 17:21 22976 ----a-w- c:\windows\system32\emptyregdb.dat
2010-04-06 12:15 . 2009-02-27 13:41 -------- d-----w- c:\program files\Intel
2010-04-04 12:36 . 2009-03-17 16:34 -------- d-----w- c:\program files\hp deskjet 845c series
2010-04-04 12:36 . 2009-11-16 11:26 -------- d-----w- c:\program files\Java
2010-03-24 07:41 . 2010-03-06 16:37 -------- d-----w- c:\program files\JDownloader
2010-03-13 13:38 . 2010-03-13 13:38 -------- d-----w- c:\program files\Haali
2010-03-13 13:38 . 2010-03-13 13:38 -------- d-----w- c:\program files\CoreCodec
2010-03-13 11:44 . 2010-03-13 11:44 -------- d-----w- c:\program files\ArcSoft
2010-03-13 11:43 . 2009-07-21 05:15 -------- d-----w- c:\program files\Digital Camera (3310)
2010-03-13 09:56 . 2010-03-13 09:56 -------- d-----w- c:\program files\Common Files\CANON
2010-03-13 08:53 . 2010-03-13 08:53 -------- d-----w- c:\program files\KYE
2010-03-12 22:37 . 2009-05-12 08:05 -------- d-----w- c:\program files\Winamp
2010-03-12 22:22 . 2010-03-12 22:22 0 ----a-w- c:\windows\nsreg.dat
2010-03-12 21:46 . 2010-03-12 21:46 -------- d-----w- c:\program files\CCleaner
2010-03-12 20:38 . 2010-03-12 17:23 76487 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2010-03-12 20:38 . 2010-03-12 17:23 2378 ----a-w- c:\windows\pchealth\helpctr\PackageStore\SkuStore.bin
2010-03-12 20:38 . 2010-03-12 17:23 8972 ----a-w- c:\windows\pchealth\helpctr\Config\Cntstore.bin
2010-03-12 15:25 . 2010-03-12 15:25 -------- d-----w- c:\program files\Yahoo!
2010-03-11 16:24 . 2010-03-11 16:24 -------- d-----w- c:\program files\GIGABYTE
2010-03-11 12:36 . 2008-04-14 12:00 832512 ------w- c:\windows\system32\wininet.dll
2010-03-11 12:36 . 2008-04-14 12:00 78336 ----a-w- c:\windows\system32\ieencode.dll
2010-03-11 12:36 . 2008-04-14 12:00 17408 ----a-w- c:\windows\system32\corpol.dll
2010-03-07 08:47 . 2010-03-07 08:47 -------- d-----w- c:\program files\InterVideo
2010-03-07 08:47 . 2010-03-07 08:31 -------- d-----w- c:\program files\Common Files\InterVideo
2010-03-06 10:34 . 2010-03-06 07:58 -------- d-----w- c:\program files\DivX
2010-03-06 10:34 . 2010-03-06 07:58 -------- d-----w- c:\program files\Common Files\DivX Shared
2010-03-06 08:00 . 2010-03-06 07:58 -------- d-----w- c:\program files\Google
2010-03-05 13:48 . 2010-03-05 13:45 -------- d-----w- c:\program files\Movie DVD Maker
2010-03-05 11:17 . 2010-03-05 11:11 -------- d-----w- c:\program files\Common Files\MAGIX Shared
2010-03-05 11:12 . 2010-03-05 11:10 -------- d-----w- c:\program files\MAGIX
2010-02-24 13:55 . 2010-02-24 13:55 -------- d-----w- c:\program files\AVG
2010-02-24 08:49 . 2010-02-24 08:49 -------- d-----w- c:\program files\Translate Client
2010-02-23 19:14 . 2010-02-23 19:00 -------- d-----w- c:\program files\Absolute Uninstaller
2010-02-23 17:34 . 2010-01-26 17:58 -------- d-----w- c:\program files\Exact Audio Copy
2010-02-23 16:52 . 2009-04-15 10:14 -------- d-----w- c:\program files\Windows Media Connect 2
2010-02-23 16:52 . 2009-06-09 14:51 -------- d-----w- c:\program files\Kalenden2009
2010-02-21 12:39 . 2009-12-05 12:51 -------- d-----w- c:\program files\MyHeritage
2010-02-21 08:20 . 2010-02-21 08:20 -------- d-----w- c:\program files\Microsoft Silverlight
2010-02-10 17:13 . 2003-09-30 10:47 165376 ----a-w- c:\windows\system32\unrar.dll
2010-02-03 12:37 . 2010-01-19 08:29 1315 ---ha-w- C:\hpothb07.dat
2010-02-02 19:42 . 2010-03-12 21:36 2025768 ----a-w- c:\program files\SkypeSetup.exe
2009-11-13 08:56 . 2010-03-12 21:18 39502856 ----a-r- c:\program files\setupcze.exe
2009-10-16 13:51 . 2010-03-12 21:46 3309072 ----a-w- c:\program files\ccsetup224.exe
2009-03-02 14:59 . 2009-03-02 14:58 7353264 -c--a-w- c:\program files\Firefox Setup 3.0.6.exe
2006-03-09 22:41 . 2010-04-12 19:07 290 ----a-w- c:\program files\file_id.diz
2006-03-09 22:38 . 2010-04-12 19:07 1634304 ----a-w- c:\program files\covered-csy.nls
2006-03-09 22:38 . 2010-04-12 19:07 1171456 ----a-w- c:\program files\nerocsy.nls
2006-03-09 22:05 . 2010-04-12 19:07 7414 ----a-w- c:\program files\Cti_mne.txt
2006-03-09 15:01 . 2010-04-12 19:07 39868 ----a-w- c:\program files\nerocsy.txt
.

------- Sigcheck -------

[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\drivers\atapi.sys
[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\drivers\system32\DRIVERS\atapi.sys

[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\asyncmac.sys
[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\drivers\asyncmac.sys

[-] 2008-04-14 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\dllcache\beep.sys
[-] 2008-04-14 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\drivers\beep.sys

[-] 2008-04-14 . 1B6162FE7F66B1A71A4B70F941C4AA9B . 24576 . . [5.1.2600.5512] . . c:\windows\system32\drivers\kbdclass.sys

[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ndis.sys
[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ndis.sys

[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ntfs.sys
[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ntfs.sys

[-] 2008-04-14 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\dllcache\null.sys
[-] 2008-04-14 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\drivers\null.sys

[-] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\SoftwareDistribution\Download\1d2803a1f84cfd41d61e509943d67213\sp3gdr\tcpip.sys
[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys
[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys
[-] 2008-04-14 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys

[-] 2008-04-14 . 249276D3EF1E74B992299CB96099E4D7 . 77824 . . [5.1.2600.5512] . . c:\windows\system32\browser.dll
[-] 2008-04-14 . 249276D3EF1E74B992299CB96099E4D7 . 77824 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\browser.dll

[-] 2008-04-14 . ED0A176354487CEED65B80A7148AB739 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\lsass.exe
[-] 2008-04-14 . ED0A176354487CEED65B80A7148AB739 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\lsass.exe

[-] 2008-04-14 . 72E1E9E2977BE08BDEEDB6D8FD9D4D40 . 198144 . . [5.1.2600.5512] . . c:\windows\system32\netman.dll
[-] 2008-04-14 . 72E1E9E2977BE08BDEEDB6D8FD9D4D40 . 198144 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\netman.dll

[-] 2008-04-14 . 19395D092FD85DDC2D9C7729CF5A2AC8 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\qmgr.dll
[-] 2008-04-14 . 19395D092FD85DDC2D9C7729CF5A2AC8 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\dllcache\qmgr.dll

[-] 2009-02-09 . C0BD34A62508BA68F146E22CE45919F9 . 401408 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\rpcss.dll
[-] 2009-02-09 . C0BD34A62508BA68F146E22CE45919F9 . 401408 . . [5.1.2600.5755] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP3QFE\rpcss.dll
[-] 2009-02-09 . BE27674D1CBC3214AEC84B4336A38BBF . 401408 . . [5.1.2600.5755] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP3GDR\rpcss.dll
[-] 2009-02-09 . BE27674D1CBC3214AEC84B4336A38BBF . 401408 . . [5.1.2600.5755] . . c:\windows\system32\rpcss.dll
[-] 2009-02-09 . BE27674D1CBC3214AEC84B4336A38BBF . 401408 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\rpcss.dll
[-] 2009-02-09 . 2B269C916766BDB43404F043B763427D . 399360 . . [5.1.2600.3520] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP2GDR\rpcss.dll
[-] 2009-02-09 . BEF7BB41E666EAA34BE7E99C2B107DB8 . 401408 . . [5.1.2600.3520] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP2QFE\rpcss.dll
[-] 2008-04-14 . C868F3AE15CF71A93F2AA3A32856D839 . 399360 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\rpcss.dll

[-] 2009-02-09 . 9EF697AF07BB8DD82C3B02CA953A95B7 . 111104 . . [5.1.2600.5755] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP3GDR\services.exe
[-] 2009-02-09 . 9EF697AF07BB8DD82C3B02CA953A95B7 . 111104 . . [5.1.2600.5755] . . c:\windows\system32\services.exe
[-] 2009-02-09 . 9EF697AF07BB8DD82C3B02CA953A95B7 . 111104 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\services.exe
[-] 2009-02-09 . 3D107D45CCFDB266E91D84B52CD7F430 . 111104 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\services.exe
[-] 2009-02-09 . 3D107D45CCFDB266E91D84B52CD7F430 . 111104 . . [5.1.2600.5755] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP3QFE\services.exe
[-] 2009-02-09 . 4F9F7B567970B524F31D9970A23F7C24 . 111104 . . [5.1.2600.3520] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP2GDR\services.exe
[-] 2009-02-09 . 33081FED75032291EE0E008D5385E86F . 111104 . . [5.1.2600.3520] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP2QFE\services.exe
[-] 2008-04-14 . F0D2AE69035092BF22DAD6B50FAB85C2 . 108544 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\services.exe

[-] 2008-04-14 . CB1090BCA0E7B40D0B5B4E4D66531809 . 57856 . . [5.1.2600.5512] . . c:\windows\system32\spoolsv.exe
[-] 2008-04-14 . CB1090BCA0E7B40D0B5B4E4D66531809 . 57856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\spoolsv.exe

[-] 2008-04-14 . CDDB1F8E1AEA356F3AD106F2CF9B7FEA . 507904 . . [5.1.2600.5512] . . c:\windows\system32\winlogon.exe
[-] 2008-04-14 . CDDB1F8E1AEA356F3AD106F2CF9B7FEA . 507904 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\winlogon.exe

[-] 2009-08-06 . 62BB79160F86CD962F312C68C6239BFD . 53472 . . [7.4.7600.226] . . c:\windows\system32\wuauclt.exe
[-] 2009-08-06 . 62BB79160F86CD962F312C68C6239BFD . 53472 . . [7.4.7600.226] . . c:\windows\system32\dllcache\wuauclt.exe

[-] 2008-04-14 . 4F993463DC5F3F80D77A3D34D7BFBFED . 617472 . . [5.82] . . c:\windows\system32\comctl32.dll
[-] 2008-04-14 . 4F993463DC5F3F80D77A3D34D7BFBFED . 617472 . . [5.82] . . c:\windows\system32\dllcache\comctl32.dll

[-] 2008-04-14 . F3AB0933CBD166D271992F411C27CCAF . 62464 . . [5.1.2600.5512] . . c:\windows\system32\cryptsvc.dll
[-] 2008-04-14 . F3AB0933CBD166D271992F411C27CCAF . 62464 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\cryptsvc.dll

[-] 2008-07-07 20:29 . A371F11EF07653591C8DE26AFB13CE7F . 253952 . . [2001.12.4414.706] . . c:\windows\SoftwareDistribution\Download\238cf948db525111b0a69f7144be46ee\sp3gdr\es.dll
[-] 2008-07-07 20:29 . A371F11EF07653591C8DE26AFB13CE7F . 253952 . . [2001.12.4414.706] . . c:\windows\system32\es.dll
[-] 2008-07-07 20:29 . A371F11EF07653591C8DE26AFB13CE7F . 253952 . . [2001.12.4414.706] . . c:\windows\system32\dllcache\es.dll
[-] 2008-07-07 20:25 . BE68EA4457E2E5717231CF91BE5448E0 . 253952 . . [2001.12.4414.706] . . c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll
[-] 2008-04-14 12:00 . 260C69FD67687B0DC062FC3D31655857 . 246272 . . [2001.12.4414.701] . . c:\windows\$NtUninstallKB950974$\es.dll

[-] 2008-04-14 . 6C60CA8AC7470AC01CFD3D24C7283CD1 . 110080 . . [5.1.2600.5512] . . c:\windows\system32\imm32.dll
[-] 2008-04-14 . 6C60CA8AC7470AC01CFD3D24C7283CD1 . 110080 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\imm32.dll

[-] 2009-03-21 . 0D8F61460F84139BBE5E391D8DE18D9A . 990208 . . [5.1.2600.5781] . . c:\windows\$hf_mig$\KB959426\SP3QFE\kernel32.dll
[-] 2009-03-21 . 545C653E8FE241CA6200798AA94FE5C7 . 988160 . . [5.1.2600.5781] . . c:\windows\SoftwareDistribution\Download\5aa53a77792c8cc6cbdb431d4bf47daa\sp3gdr\kernel32.dll
[-] 2009-03-21 . 545C653E8FE241CA6200798AA94FE5C7 . 988160 . . [5.1.2600.5781] . . c:\windows\system32\kernel32.dll
[-] 2009-03-21 . 545C653E8FE241CA6200798AA94FE5C7 . 988160 . . [5.1.2600.5781] . . c:\windows\system32\dllcache\kernel32.dll
[-] 2008-04-14 . FD91CD95A1C663DF54DD371CC8A234DE . 988160 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB959426$\kernel32.dll

[-] 2008-04-14 . 7FDE9FC15765E02B23E1756930165AD1 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\linkinfo.dll
[-] 2008-04-14 . 7FDE9FC15765E02B23E1756930165AD1 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\linkinfo.dll

[-] 2008-04-14 . C66BA7BD13C8FB8BEC4863B88641C763 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\lpk.dll
[-] 2008-04-14 . C66BA7BD13C8FB8BEC4863B88641C763 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\lpk.dll

[-] 2008-04-14 . D165DFCB4EA452510E53416F573018BB . 343040 . . [7.0.2600.5512] . . c:\windows\system32\msvcrt.dll
[-] 2008-04-14 . D165DFCB4EA452510E53416F573018BB . 343040 . . [7.0.2600.5512] . . c:\windows\system32\dllcache\msvcrt.dll

[-] 2008-06-20 . 1289B7611CCD6CB27596AE92CBF03E35 . 247296 . . [5.1.2600.5625] . . c:\windows\SoftwareDistribution\Download\1d2803a1f84cfd41d61e509943d67213\sp3gdr\mswsock.dll
[-] 2008-06-20 . 1289B7611CCD6CB27596AE92CBF03E35 . 247296 . . [5.1.2600.5625] . . c:\windows\system32\mswsock.dll
[-] 2008-06-20 . 1289B7611CCD6CB27596AE92CBF03E35 . 247296 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\mswsock.dll
[-] 2008-06-20 . B6CEC406351EA5EF131416D5F52D006F . 247296 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\mswsock.dll
[-] 2008-04-14 . AAC97DAB5F8A0573CF10E0EAC42A7724 . 247296 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\mswsock.dll

[-] 2008-04-14 . C2ED0E3408F50BBC149D4F0936E67832 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\netlogon.dll
[-] 2008-04-14 . C2ED0E3408F50BBC149D4F0936E67832 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\netlogon.dll

[-] 2009-12-10 . 7782F11AE957B736585870CD2671227B . 2191488 . . [5.1.2600.5913] . . c:\windows\$hf_mig$\KB977165-v2\SP3QFE\ntoskrnl.exe
[-] 2009-12-10 . 7782F11AE957B736585870CD2671227B . 2191488 . . [5.1.2600.5913] . . c:\windows\SoftwareDistribution\Download\c598abb0f20235776cb4dcfe11c042d3\SP3QFE\ntoskrnl.exe
[-] 2009-12-09 . 7D9B31E0903E2809DA5FC10A94813091 . 2182528 . . [5.1.2600.3654] . . c:\windows\SoftwareDistribution\Download\c598abb0f20235776cb4dcfe11c042d3\SP2GDR\ntoskrnl.exe
[-] 2009-12-09 . B214F89473F73C0733D9C402F36E2125 . 2188160 . . [5.1.2600.3654] . . c:\windows\SoftwareDistribution\Download\c598abb0f20235776cb4dcfe11c042d3\SP2QFE\ntoskrnl.exe
[-] 2009-12-09 . 3B0DC252A20C8A938ED21073EE736AEA . 2191360 . . [5.1.2600.5913] . . c:\windows\Driver Cache\i386\ntoskrnl.exe
[-] 2009-12-09 . 3B0DC252A20C8A938ED21073EE736AEA . 2191360 . . [5.1.2600.5913] . . c:\windows\SoftwareDistribution\Download\c598abb0f20235776cb4dcfe11c042d3\SP3GDR\ntoskrnl.exe
[-] 2009-12-09 . 3B0DC252A20C8A938ED21073EE736AEA . 2191360 . . [5.1.2600.5913] . . c:\windows\system32\dllcache\ntoskrnl.exe
[-] 2009-12-09 . 07A58A2A4460A4B7A58E0920F4CFA729 . 2147328 . . [5.1.2600.5913] . . c:\windows\system32\ntoskrnl.exe
[-] 2009-02-10 . 97480EBFE1D4B547657BAD75AAAB1325 . 2191360 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntoskrnl.exe
[-] 2009-02-10 . 97480EBFE1D4B547657BAD75AAAB1325 . 2191360 . . [5.1.2600.5755] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP3QFE\ntoskrnl.exe
[-] 2009-02-09 . DF530FCAD41349C92945DF52EBA9F3E4 . 2182656 . . [5.1.2600.3520] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP2GDR\ntoskrnl.exe
[-] 2009-02-09 . C424407DDD99223BF3248044CBBE91F6 . 2188288 . . [5.1.2600.3520] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP2QFE\ntoskrnl.exe
[-] 2009-02-09 . F48662F55CD8DDD4DBBBCB69DE197725 . 2191232 . . [5.1.2600.5755] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP3GDR\ntoskrnl.exe
[-] 2009-02-09 . 6499BF91CF62B4319D6ED7E99D0B6998 . 2147328 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB977165-v2$\ntoskrnl.exe
[-] 2008-04-14 . 27C7A7AED8A477F6A0C7D3AD00AB9419 . 2147328 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\ntoskrnl.exe

[-] 2008-04-14 . 9FA69781CAA7A1DA981A24F240A61A60 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\powrprof.dll
[-] 2008-04-14 . 9FA69781CAA7A1DA981A24F240A61A60 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\powrprof.dll

[-] 2008-04-14 . 830CE8951C71F361D7D2F38416CC8BC1 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\scecli.dll
[-] 2008-04-14 . 830CE8951C71F361D7D2F38416CC8BC1 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\scecli.dll

[-] 2008-04-14 . 5EE949255BABC0B17C09DDB2E59E3878 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\sfc.dll
[-] 2008-04-14 . 5EE949255BABC0B17C09DDB2E59E3878 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\sfc.dll

[-] 2008-04-14 . BE4A520E29B6391F49E79CCC52044D93 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\svchost.exe
[-] 2008-04-14 . BE4A520E29B6391F49E79CCC52044D93 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\svchost.exe

[-] 2008-04-14 . C2546CD7A398476F9DF5614B2AE160E8 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\tapisrv.dll
[-] 2008-04-14 . C2546CD7A398476F9DF5614B2AE160E8 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\tapisrv.dll

[-] 2008-04-14 . E16E0990967374E76F3E40CACAFD3D53 . 578560 . . [5.1.2600.5512] . . c:\windows\system32\user32.dll
[-] 2008-04-14 . E16E0990967374E76F3E40CACAFD3D53 . 578560 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\user32.dll

[-] 2008-04-14 . 7DC1830F22E7D275B438127B68030239 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\userinit.exe
[-] 2008-04-14 . 7DC1830F22E7D275B438127B68030239 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\userinit.exe

[-] 2008-04-14 . 951D473917C51F21496D914CF6E5DDD1 . 82432 . . [5.1.2600.5512] . . c:\windows\system32\ws2_32.dll
[-] 2008-04-14 . 951D473917C51F21496D914CF6E5DDD1 . 82432 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ws2_32.dll

[-] 2008-04-14 . 27AFD587C462E280EE046B8CCA3C2CD1 . 1034240 . . [6.00.2900.5512] . . c:\windows\explorer.exe
[-] 2008-04-14 . 27AFD587C462E280EE046B8CCA3C2CD1 . 1034240 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\explorer.exe

[-] 2008-04-14 . 35B91147124F64AC8081A2EDB9EA4DEE . 171008 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll
[-] 2008-04-14 . 35B91147124F64AC8081A2EDB9EA4DEE . 171008 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\srsvc.dll

[-] 2008-04-14 . 278A14BEDEF58687EAF8BEC056A78D8B . 13824 . . [5.1.2600.5512] . . c:\windows\system32\wscntfy.exe
[-] 2008-04-14 . 278A14BEDEF58687EAF8BEC056A78D8B . 13824 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\wscntfy.exe

[-] 2008-04-14 . EAA4BB9EDB3FB10CF8979FE65E63658F . 129024 . . [5.1.2600.5512] . . c:\windows\system32\xmlprov.dll
[-] 2008-04-14 . EAA4BB9EDB3FB10CF8979FE65E63658F . 129024 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\xmlprov.dll

[-] 2008-04-14 . 2EE99F67C930931EB404DADCE57E976E . 56320 . . [5.1.2600.5512] . . c:\windows\system32\eventlog.dll
[-] 2008-04-14 . 2EE99F67C930931EB404DADCE57E976E . 56320 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\eventlog.dll

[-] 2008-04-14 . 56A6034E7764E23D9114223EB3523925 . 1571840 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll
[-] 2008-04-14 . 56A6034E7764E23D9114223EB3523925 . 1571840 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\sfcfiles.dll

[-] 2008-04-14 . A756B8F0F7BAFBA6DFE39F7D169F2519 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\ctfmon.exe
[-] 2008-04-14 . A756B8F0F7BAFBA6DFE39F7D169F2519 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ctfmon.exe

[-] 2008-04-14 . B927443008910B412BEC72FC41C1BAD0 . 135168 . . [6.00.2900.5512] . . c:\windows\system32\shsvcs.dll
[-] 2008-04-14 . B927443008910B412BEC72FC41C1BAD0 . 135168 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\shsvcs.dll

[-] 2008-04-14 . 8F31505484A190D5B22274708799F4EC . 59904 . . [5.1.2600.5512] . . c:\windows\system32\regsvc.dll
[-] 2008-04-14 . 8F31505484A190D5B22274708799F4EC . 59904 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\regsvc.dll

[-] 2008-04-14 . 3FF232A7731621B8902D81D42418C93C . 192512 . . [5.1.2600.5512] . . c:\windows\system32\schedsvc.dll
[-] 2008-04-14 . 3FF232A7731621B8902D81D42418C93C . 192512 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\schedsvc.dll

[-] 2008-04-14 . BECD5271DC4E3B7C3D035F790FCBC1E5 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\ssdpsrv.dll
[-] 2008-04-14 . BECD5271DC4E3B7C3D035F790FCBC1E5 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ssdpsrv.dll

[-] 2008-04-14 . A75DD6FC3DBEE4FFF5EBC9F2C28BB66E . 295936 . . [5.1.2600.5512] . . c:\windows\system32\termsrv.dll
[-] 2008-04-14 . A75DD6FC3DBEE4FFF5EBC9F2C28BB66E . 295936 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\termsrv.dll

[-] 2008-04-14 . AFDFF022A01F0B11C776F0860C3B282F . 11776 . . [5.1.2600.0] . . c:\windows\system32\drivers\acpiec.sys

[-] 2008-04-14 12:00 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\drivers\aec.sys

[-] 2008-04-14 . 08FD04AA961BDC77FB983F328334E3D7 . 42368 . . [5.1.2600.5512] . . c:\windows\system32\drivers\agp440.sys

[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ip6fw.sys
[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ip6fw.sys

[-] 2008-04-14 12:00 . 7C3351F60B759D5D917E68342AE3307C . 927504 . . [4.1.0.61] . . c:\windows\system32\mfc40u.dll
[-] 2008-04-14 12:00 . 7C3351F60B759D5D917E68342AE3307C . 927504 . . [4.1.0.61] . . c:\windows\system32\dllcache\mfc40u.dll

[-] 2008-04-14 . 221CD1C815B8A6B79389C3F5D1018DE8 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\msgsvc.dll
[-] 2008-04-14 . 221CD1C815B8A6B79389C3F5D1018DE8 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\msgsvc.dll

[-] 2008-04-14 12:00 . 6199B2AE3F9DB9CB6DB230471A1DC601 . 52224 . . [9.0.1.56] . . c:\windows\system32\mspmsnsv.dll
[-] 2008-04-14 12:00 . 6199B2AE3F9DB9CB6DB230471A1DC601 . 52224 . . [9.0.1.56] . . c:\windows\system32\dllcache\mspmsnsv.dll

[-] 2009-12-10 . 58516936F00D10D4B615C458A8A4AB71 . 2068352 . . [5.1.2600.5913] . . c:\windows\$hf_mig$\KB977165-v2\SP3QFE\ntkrnlpa.exe
[-] 2009-12-10 . 58516936F00D10D4B615C458A8A4AB71 . 2068352 . . [5.1.2600.5913] . . c:\windows\SoftwareDistribution\Download\c598abb0f20235776cb4dcfe11c042d3\SP3QFE\ntkrnlpa.exe
[-] 2009-12-09 . 76D45A9AFAD9FFE3070814DE95648EC7 . 2059904 . . [5.1.2600.3654] . . c:\windows\SoftwareDistribution\Download\c598abb0f20235776cb4dcfe11c042d3\SP2GDR\ntkrnlpa.exe
[-] 2009-12-09 . D9FB61F23249B39EE9922A2CC3001DD0 . 2065280 . . [5.1.2600.3654] . . c:\windows\SoftwareDistribution\Download\c598abb0f20235776cb4dcfe11c042d3\SP2QFE\ntkrnlpa.exe
[-] 2009-12-09 . 166530C022AB3A0F9EADB20633AE034E . 2068224 . . [5.1.2600.5913] . . c:\windows\Driver Cache\i386\ntkrnlpa.exe
[-] 2009-12-09 . 166530C022AB3A0F9EADB20633AE034E . 2068224 . . [5.1.2600.5913] . . c:\windows\SoftwareDistribution\Download\c598abb0f20235776cb4dcfe11c042d3\SP3GDR\ntkrnlpa.exe
[-] 2009-12-09 . 166530C022AB3A0F9EADB20633AE034E . 2068224 . . [5.1.2600.5913] . . c:\windows\system32\dllcache\ntkrnlpa.exe
[-] 2009-12-09 . B2CEA3C57AA8230C7BCC0B2AF35EC55A . 2025984 . . [5.1.2600.5913] . . c:\windows\system32\ntkrnlpa.exe
[-] 2009-02-10 . D721665942F74CA7FF4162A0761CBB0A . 2068224 . . [5.1.2600.5755] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP3GDR\ntkrnlpa.exe
[-] 2009-02-09 . 73A13AA10E146A3E2B4AC6D007953A74 . 2059904 . . [5.1.2600.3520] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP2GDR\ntkrnlpa.exe
[-] 2009-02-09 . BB64DC108F8C4EE4D4B7998AA19E5FA7 . 2065152 . . [5.1.2600.3520] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP2QFE\ntkrnlpa.exe
[-] 2009-02-09 . 6DD6966FA0FF770A3E5545875557C7F1 . 2025984 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB977165-v2$\ntkrnlpa.exe
[-] 2009-02-09 . FF8A3F180A224AA27EBAB937CA027F4D . 2068352 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntkrnlpa.exe
[-] 2009-02-09 . FF8A3F180A224AA27EBAB937CA027F4D . 2068352 . . [5.1.2600.5755] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP3QFE\ntkrnlpa.exe
[-] 2008-04-14 . 9F12E026DC0B0C43F521114EFB3A3ACC . 2025984 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\ntkrnlpa.exe

[-] 2008-04-14 12:00 . 023DD70573D644F3D9C8B1258A7BFD08 . 435712 . . [5.1.2400.5512] . . c:\windows\system32\ntmssvc.dll
[-] 2008-04-14 12:00 . 023DD70573D644F3D9C8B1258A7BFD08 . 435712 . . [5.1.2400.5512] . . c:\windows\system32\dllcache\ntmssvc.dll

[-] 2008-04-14 . 651BD90DCEE5B7BDC74A2EB7C9266F9E . 186368 . . [5.1.2600.5512] . . c:\windows\system32\upnphost.dll
[-] 2008-04-14 . 651BD90DCEE5B7BDC74A2EB7C9266F9E . 186368 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\upnphost.dll
.
((((((((((((((((((((((((((((( SnapShot@2010-04-13_08.26.26 )))))))))))))))))))))))))))))))))))))))))
.
+ 2010-04-07 06:28 . 2010-04-13 08:32 32768 c:\windows\Temp\Temporary Internet Files\Content.IE5\index.dat
- 2010-04-07 06:28 . 2010-04-13 08:23 32768 c:\windows\Temp\Temporary Internet Files\Content.IE5\index.dat
+ 2010-04-13 08:34 . 2010-04-13 08:34 53248 c:\windows\Temp\catchme.dll
- 2010-04-13 08:26 . 2010-04-13 08:26 53248 c:\windows\Temp\catchme.dll
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-05-16 13529088]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-11-24 81000]
"SNPSTD2"="c:\windows\vsnpstd2.exe" [2004-06-10 286720]
"PinnacleDriverCheck"="c:\windows\system32\PSDrvCheck.exe" [2004-03-10 406016]
"SRFirstRun"="srclient.dll" [2008-04-14 67584]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2008-05-16 86016]
"nwiz"="nwiz.exe" [2008-05-16 1630208]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-26 31016]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]

[HKLM\~\startupfolder\C:^Documents and Settings^ruda677^Nabídka Start^Programy^Po spuštění^Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk]
path=c:\documents and settings\ruda677\Nabídka Start\Programy\Po spuštění\Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk
backup=c:\windows\pss\Výřezy obrazovky a spuštění aplikace OneNote 2007.lnkStartup

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2009-12-11 14:57 948672 ----a-r- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2009-12-22 00:57 35760 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonMyPrinter]
2008-03-18 01:06 1848648 ----a-w- c:\program files\Canon\MyPrinter\BJMYPRT.EXE

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenu]
2008-03-11 01:20 689488 ----a-w- c:\program files\Canon\SolutionMenu\CNSLMAIN.EXE

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
2006-10-26 22:47 31016 ----a-w- c:\program files\Microsoft Office\Office12\GrooveMonitor.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HDAudDeck]
2008-08-15 03:13 30003200 ----a-r- c:\program files\VIA\VIAudioi\HDADeck\HDeck.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\InCD]
2004-04-06 17:36 1298542 ------w- c:\program files\Ahead\InCD\InCD.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSPM Startup]
2005-08-11 15:30 249856 ----a-w- c:\program files\Common Files\InstallShield\UpdateService\ISUSPM.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSScheduler]
2005-08-11 15:30 81920 ----a-w- c:\program files\Common Files\InstallShield\UpdateService\issch.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LaunchList]
2004-03-23 12:44 49152 ----a-w- c:\program files\Pinnacle\Studio 9\LaunchList.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCLEPCI]
2004-02-03 13:13 49152 ----a-w- c:\progra~1\Pinnacle\PPE\PPE.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
2003-12-08 15:35 32768 ----a-w- c:\program files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Share-to-Web Namespace Daemon]
2002-04-11 02:19 69632 -c--a-w- c:\program files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2010-02-18 09:43 248040 ----a-w- c:\program files\Common Files\Java\Java Update\jusched.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
2009-04-10 17:29 37888 ----a-w- c:\program files\Winamp\winampa.exe

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\WINDOWS\\system32\\usmt\\migwiz.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Program Files\\Java\\jre6\\bin\\javaw.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=

R2 LiveUpdate Notice;LiveUpdate Notice;c:\program files\Common Files\Symantec Shared\ccSvcHst.exe [x]
R3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files\McAfee Security Scan\2.0.181\McCHSvc.exe [2010-01-15 227232]
S1 aswSP;avast! Self Protection; [x]
S2 aswFsBlk;aswFsBlk;c:\windows\system32\DRIVERS\aswFsBlk.sys [2009-11-24 20560]
S3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys [2008-07-25 845184]


HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
Obsah adresáře 'Naplánované úlohy'

2010-04-13 c:\windows\Tasks\1-Click Maintenance.job
- c:\program files\TuneUp Utilities 2009\OneClickStarter.exe [2008-12-11 19:36]

2010-04-13 c:\windows\Tasks\Scheduled Update for Ask Toolbar.job
- c:\program files\Ask.com\UpdateTask.exe [2010-02-04 14:50]
.
.
------- Doplňkový sken -------
.
TCP: {DEE853AE-BD9F-4D36-BDA3-E5EF1E22BA04} = 10.3.0.1,62.84.128.6
FF - ProfilePath -

---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.debug", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("html5.enable", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-04-13 10:34
Windows 5.1.2600 Service Pack 3 NTFS

skenování skrytých procesů ...

skenování skrytých položek 'Po spuštění' ...

skenování skrytých souborů ...

sken byl úspešně dokončen
skryté soubory: 0

**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------

[HKEY_USERS\S-1-5-21-1801674531-507921405-2147098553-1004\Software\Microsoft\Multimedia]
@DACL=(02 0000)

[HKEY_USERS\S-1-5-21-1801674531-507921405-2147098553-1004\Software\Microsoft\SystemCertificates]
@DACL=(02 0000)

[HKEY_USERS\S-1-5-21-1801674531-507921405-2147098553-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
@DACL=(02 0000)

[HKEY_USERS\S-1-5-21-1801674531-507921405-2147098553-1004\Software\Microsoft\Windows\CurrentVersion\WinTrust]
@DACL=(02 0000)
.
--------------------- Knihovny navázané na běžící procesy ---------------------

- - - - - - - > 'winlogon.exe'(772)
c:\windows\system32\vorbis.dll
c:\windows\system32\ogg.dll

- - - - - - - > 'lsass.exe'(828)
c:\windows\system32\vorbis.dll
c:\windows\system32\ogg.dll

- - - - - - - > 'explorer.exe'(3276)
c:\windows\system32\vorbis.dll
c:\windows\system32\ogg.dll
.
Celkový čas: 2010-04-13 10:35:58
ComboFix-quarantined-files.txt 2010-04-13 08:35
ComboFix2.txt 2010-04-13 08:27

Před spuštěním: Volných bajtů: 26 740 051 968
Po spuštění: Volných bajtů: 26 727 665 664

Current=1 Default=1 Failed=0 LastKnownGood=5 Sets=1,2,3,4,5
- - End Of File - - C6D7DEE31798EFCDDD367113BED2F40C

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: nejde spustit ani instalovat mwav, mbam, tuneup

#11 Příspěvek od motji »

Já bych se nezlobila, přejmenovává se to kvůli blokování havěti, ale potřebuju vidět, co poprvé smazal :roll:

:arrow: Start - Spustit
-do okénka napište
notepad "C:\ComboFix.txt"
-pokud na Vás vyběhne log, vložte ho zde :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

zmija832
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 12 úno 2007 11:39

Re: nejde spustit ani instalovat mwav, mbam, tuneup

#12 Příspěvek od zmija832 »

PC PORAD PROBLIKAVA, START NEJDE SPUSTIT, JAKO BY PORAD KAZDOU SEKUNDU NACITAVAL, TAKZE MENU START NEZOBRAZI :cry:

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: nejde spustit ani instalovat mwav, mbam, tuneup

#13 Příspěvek od motji »

Najděte na disku C tento log
C:\ComboFix.txt
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

zmija832
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 12 úno 2007 11:39

Re: nejde spustit ani instalovat mwav, mbam, tuneup

#14 Příspěvek od zmija832 »

uAU, NEJDE NAJET DO C PISE obsahuje skryte soubory, dam zobrazit souborz a nejde to ,zase pise obsahuje skryte soubory. :(

zmija832
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 12 úno 2007 11:39

Re: nejde spustit ani instalovat mwav, mbam, tuneup

#15 Příspěvek od zmija832 »

musim od pc , objevim se odpoledne, prozatim diky

Odpovědět