Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu logu

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
davros
Návštěvník
Návštěvník
Příspěvky: 67
Registrován: 03 čer 2008 12:38

Re: Prosím o kontrolu logu

#31 Příspěvek od davros »

CREATERESTOREPOINT
Restore point Set: OTL Restore Point (55745656140070912)

========== Files/Folders - Created Within 30 Days ==========

[2010.05.01 17:16:42 | 000,000,000 | --SD | C] -- C:\cokoliv.com
[2010.05.01 14:32:54 | 000,161,792 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2010.05.01 14:32:54 | 000,031,232 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
[2010.05.01 14:32:53 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2010.05.01 14:32:53 | 000,136,704 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2010.05.01 14:31:01 | 000,000,000 | ---D | C] -- C:\Qoobox
[2010.05.01 13:29:34 | 000,000,000 | ---D | C] -- C:\_OTL
[2010.05.01 11:30:30 | 000,000,000 | ---D | C] -- C:\WINDOWS\CSC
[2010.05.01 10:13:27 | 000,016,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spmsg.dll
[2010.05.01 10:10:55 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\SEVCIKJ\Recent
[2010.05.01 03:30:50 | 012,212,040 | ---- | C] (Microsoft Corporation) -- C:\Documents and Settings\SEVCIKJ\Dokumenty\WMFDist11-WindowsXP-X86-ENU_1.exe
[2010.04.30 20:14:24 | 000,095,024 | ---- | C] (Sunbelt Software) -- C:\WINDOWS\System32\drivers\SBREDrv.sys
[2010.04.24 19:01:45 | 000,000,000 | ---D | C] -- C:\Program Files\Hetman Software
[2010.04.24 18:24:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SEVCIKJ\Plocha\Restored Files
[2010.04.24 14:14:12 | 000,000,000 | RHSD | C] -- C:\autorun.inf
[2010.04.24 13:51:47 | 000,000,000 | ---D | C] -- C:\UsbFix
[2010.04.24 03:13:14 | 000,000,000 | ---D | C] -- C:\Program Files\Opera
[2010.04.24 03:10:34 | 003,376,656 | ---- | C] (Piriform Ltd) -- C:\Documents and Settings\SEVCIKJ\Dokumenty\ccsetup230.exe
[2010.04.18 20:09:08 | 000,000,000 | ---D | C] -- C:\Program Files\Fiat
[2010.04.18 14:02:54 | 000,272,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\bthport.sys
[2010.04.18 14:01:54 | 002,192,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntoskrnl.exe
[2010.04.18 14:01:51 | 002,148,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntkrnlmp.exe
[2010.04.18 14:01:50 | 002,026,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntkrpamp.exe
[2010.04.18 14:00:32 | 001,985,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iertutil.dll
[2010.04.18 14:00:32 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeedsbs.dll
[2010.04.18 14:00:30 | 000,594,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeeds.dll
[2010.04.18 13:58:50 | 000,455,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mrxsmb.sys
[2010.04.18 10:05:32 | 000,172,032 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxres.dll
[2010.04.18 09:59:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch
[2010.04.18 01:49:43 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winzm.ime
[2010.04.18 01:49:42 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winsp.ime
[2010.04.18 01:49:42 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winpy.ime
[2010.04.18 01:49:41 | 000,079,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winar30.ime
[2010.04.18 01:49:41 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wingb.ime
[2010.04.18 01:49:41 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winime.ime
[2010.04.18 01:49:40 | 000,041,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\weitekp9.dll
[2010.04.18 01:49:40 | 000,031,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\weitekp9.sys
[2010.04.18 01:49:39 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wamreg51.dll
[2010.04.18 01:49:39 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wamps51.dll
[2010.04.18 01:49:38 | 000,366,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\w3svc.dll
[2010.04.18 01:49:38 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wam51.dll
[2010.04.18 01:49:38 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\w3ext.dll
[2010.04.18 01:49:38 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\w3svapi.dll
[2010.04.18 01:49:37 | 000,048,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\w32.dll
[2010.04.18 01:49:37 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\w3ctrs51.dll
[2010.04.18 01:49:36 | 000,426,041 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\voicepad.dll
[2010.04.18 01:49:36 | 000,086,073 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\voicesub.dll
[2010.04.18 01:49:30 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\uihelper.dll
[2010.04.18 01:49:30 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\uniime.dll
[2010.04.18 01:49:30 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\unicdime.ime
[2010.04.18 01:49:29 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tsprof.exe
[2010.04.18 01:49:28 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tools.dll
[2010.04.18 01:49:27 | 000,455,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tintsetp.exe
[2010.04.18 01:49:27 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tintlphr.exe
[2010.04.18 01:49:27 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tmigrate.dll
[2010.04.18 01:49:26 | 000,571,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tintlgnt.ime
[2010.04.18 01:49:26 | 000,185,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\thawbrkr.dll
[2010.04.18 01:49:25 | 000,021,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdipx.sys
[2010.04.18 01:49:25 | 000,019,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdspx.sys
[2010.04.18 01:49:25 | 000,013,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdasync.sys
[2010.04.18 01:49:20 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\svcext51.dll
[2010.04.18 01:49:19 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sspifilt.dll
[2010.04.18 01:49:19 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\status.dll
[2010.04.18 01:49:18 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ssinc51.dll
[2010.04.18 01:49:17 | 000,101,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\srusbusd.dll
[2010.04.18 01:49:15 | 000,143,422 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\softkey.dll
[2010.04.18 01:49:15 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmptrap.exe
[2010.04.18 01:49:15 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_snprfdll.dll
[2010.04.18 01:49:14 | 000,358,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpincl.dll
[2010.04.18 01:49:14 | 000,259,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpcl.dll
[2010.04.18 01:49:14 | 000,188,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpsmir.dll
[2010.04.18 01:49:14 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpthrd.dll
[2010.04.18 01:49:14 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpstup.dll
[2010.04.18 01:49:14 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpmib.dll
[2010.04.18 01:49:13 | 000,460,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smtpsvc.dll
[2010.04.18 01:49:13 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmp.exe
[2010.04.18 01:49:12 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smierrsm.dll
[2010.04.18 01:49:12 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_smtpctrs.dll
[2010.04.18 01:49:12 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smimsgif.dll
[2010.04.18 01:49:12 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smierrsy.dll
[2010.04.18 01:49:11 | 000,236,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smi2smir.exe
[2010.04.18 01:49:11 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm9aw.dll
[2010.04.18 01:49:11 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smb6w.dll
[2010.04.18 01:49:11 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sma3w.dll
[2010.04.18 01:49:10 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm8cw.dll
[2010.04.18 01:49:10 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm93w.dll
[2010.04.18 01:49:10 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm92w.dll
[2010.04.18 01:49:10 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm90w.dll
[2010.04.18 01:49:10 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm8dw.dll
[2010.04.18 01:49:10 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm8aw.dll
[2010.04.18 01:49:10 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm89w.dll
[2010.04.18 01:49:09 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm87w.dll
[2010.04.18 01:49:09 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm81w.dll
[2010.04.18 01:49:09 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm59w.dll
[2010.04.18 01:49:08 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\simptcp.dll
[2010.04.18 01:49:05 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_scripto.dll
[2010.04.18 01:49:05 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_seos.dll
[2010.04.18 01:49:03 | 000,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia330.dll
[2010.04.18 01:49:03 | 000,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia001.dll
[2010.04.18 01:49:03 | 000,029,184 | ---- | C] (RICOH Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rw330ext.dll
[2010.04.18 01:49:03 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rw001ext.dll
[2010.04.18 01:49:02 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rpcref.dll
[2010.04.18 01:49:01 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\romanime.ime
[2010.04.18 01:48:59 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_regtrace.exe
[2010.04.18 01:48:59 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\register.exe
[2010.04.18 01:48:58 | 000,020,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ramdisk.sys
[2010.04.18 01:48:57 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\quick.ime
[2010.04.18 01:48:57 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\quser.exe
[2010.04.18 01:48:57 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\query.exe
[2010.04.18 01:48:56 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pwsdata.dll
[2010.04.18 01:48:54 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmxviceo.dll
[2010.04.18 01:48:54 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmxmcro.dll
[2010.04.18 01:48:54 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmxgl.dll
[2010.04.18 01:48:53 | 000,482,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pintlgnt.ime
[2010.04.18 01:48:53 | 000,070,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pintlphr.exe
[2010.04.18 01:48:53 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmigrate.dll
[2010.04.18 01:48:53 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pintlcsd.dll
[2010.04.18 01:48:52 | 000,079,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\phon.ime
[2010.04.18 01:48:51 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\permchk.dll
[2010.04.18 01:48:50 | 000,036,927 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\padrs411.dll
[2010.04.18 01:48:50 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pagecnt.dll
[2010.04.18 01:48:50 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\padrs804.dll
[2010.04.18 01:48:50 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\padrs412.dll
[2010.04.18 01:48:49 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\padrs404.dll
[2010.04.18 01:48:45 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_ntfsdrv.dll
[2010.04.18 01:48:44 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nsepm.dll
[2010.04.18 01:48:43 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nextlink.dll
[2010.04.18 01:48:41 | 000,229,439 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\multibox.dll
[2010.04.18 01:48:40 | 000,119,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mtstocom.exe
[2010.04.18 01:48:35 | 001,875,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msir3jp.lex
[2010.04.18 01:48:35 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msir3jp.dll
[2010.04.18 01:48:27 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\migregdb.exe
[2010.04.18 01:48:26 | 000,092,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mga.sys
[2010.04.18 01:48:26 | 000,092,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mga.dll
[2010.04.18 01:48:25 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\metada51.dll
[2010.04.18 01:48:25 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\md5filt.dll
[2010.04.18 01:48:25 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mdsync.dll
[2010.04.18 01:48:24 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_mailmsg.dll
[2010.04.18 01:48:23 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\lpdsvc.dll
[2010.04.18 01:48:23 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\logscrpt.dll
[2010.04.18 01:48:23 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\lprmon.dll
[2010.04.18 01:48:23 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\lonsint.dll
[2010.04.18 01:48:21 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\lmmib2.dll
[2010.04.18 01:48:19 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\korwbrkr.dll
[2010.04.18 01:48:18 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth3.dll
[2010.04.18 01:48:18 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth2.dll
[2010.04.18 01:48:18 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdvntc.dll
[2010.04.18 01:48:18 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdusa.dll
[2010.04.18 01:48:18 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdurdu.dll
[2010.04.18 01:48:18 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth1.dll
[2010.04.18 01:48:18 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth0.dll
[2010.04.18 01:48:18 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdsyr2.dll
[2010.04.18 01:48:18 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdsyr1.dll
[2010.04.18 01:48:17 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdnecat.dll
[2010.04.18 01:48:17 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdnecnt.dll
[2010.04.18 01:48:17 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdnec95.dll
[2010.04.18 01:48:16 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdlk41a.dll
[2010.04.18 01:48:16 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdlk41j.dll
[2010.04.18 01:48:16 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinpun.dll
[2010.04.18 01:48:16 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdintel.dll
[2010.04.18 01:48:16 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdintam.dll
[2010.04.18 01:48:16 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinmar.dll
[2010.04.18 01:48:16 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinkan.dll
[2010.04.18 01:48:16 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinhin.dll
[2010.04.18 01:48:15 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdibm02.dll
[2010.04.18 01:48:15 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinguj.dll
[2010.04.18 01:48:15 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdindev.dll
[2010.04.18 01:48:15 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdheb.dll
[2010.04.18 01:48:15 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdfa.dll
[2010.04.18 01:48:15 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdgeo.dll
[2010.04.18 01:48:14 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdax2.dll
[2010.04.18 01:48:14 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbd106n.dll
[2010.04.18 01:48:14 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbddiv2.dll
[2010.04.18 01:48:14 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbddiv1.dll
[2010.04.18 01:48:14 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbda3.dll
[2010.04.18 01:48:14 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbda2.dll
[2010.04.18 01:48:14 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbda1.dll
[2010.04.18 01:48:14 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdarmw.dll
[2010.04.18 01:48:14 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdarme.dll
[2010.04.18 01:48:13 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\jupiw.dll
[2010.04.18 01:48:13 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iwrps.dll
[2010.04.18 01:48:13 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbd101a.dll
[2010.04.18 01:48:13 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbd101.dll
[2010.04.18 01:48:12 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iscomlog.dll
[2010.04.18 01:48:12 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\isapips.dll
[2010.04.18 01:48:11 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iprip.dll
[2010.04.18 01:48:09 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\infocomm.dll
[2010.04.18 01:48:09 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetin51.exe
[2010.04.18 01:48:09 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\infoctrs.dll
[2010.04.18 01:48:08 | 000,471,102 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imskdic.dll
[2010.04.18 01:48:08 | 000,315,455 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imskf.dll
[2010.04.18 01:48:07 | 000,274,489 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjputyc.dll
[2010.04.18 01:48:07 | 000,262,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjputy.exe
[2010.04.18 01:48:07 | 000,102,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imlang.dll
[2010.04.18 01:48:07 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imkrinst.exe
[2010.04.18 01:48:07 | 000,045,109 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpuex.exe
[2010.04.18 01:48:06 | 000,233,527 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjprw.exe
[2010.04.18 01:48:06 | 000,208,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpmig.exe
[2010.04.18 01:48:06 | 000,155,705 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpdsvr.exe
[2010.04.18 01:48:05 | 000,716,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpcus.dll
[2010.04.18 01:48:05 | 000,307,257 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpdct.exe
[2010.04.18 01:48:05 | 000,081,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpdct.dll
[2010.04.18 01:48:05 | 000,057,398 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpdadm.exe
[2010.04.18 01:48:04 | 000,811,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjp81k.dll
[2010.04.18 01:48:04 | 000,368,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpcic.dll
[2010.04.18 01:48:04 | 000,340,023 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjp81.ime
[2010.04.18 01:48:03 | 000,311,359 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imepadsv.exe
[2010.04.18 01:48:03 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imekrcic.dll
[2010.04.18 01:48:03 | 000,102,463 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imepadsm.dll
[2010.04.18 01:48:03 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imekrmbx.dll
[2010.04.18 01:48:03 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imekrmig.exe
[2010.04.18 01:48:02 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imekr61.ime
[2010.04.18 01:48:02 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iissync.exe
[2010.04.18 01:48:02 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iismui.dll
[2010.04.18 01:48:01 | 000,145,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iische51.dll
[2010.04.18 01:48:01 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iislog51.dll
[2010.04.18 01:48:01 | 000,060,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisclex4.dll
[2010.04.18 01:48:01 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisadmin.dll
[2010.04.18 01:48:01 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iiscrmap.dll
[2010.04.18 01:48:01 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisfecnv.dll
[2010.04.18 01:47:55 | 010,129,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hwxkor.dll
[2010.04.18 01:47:44 | 010,096,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hwxcht.dll
[2010.04.18 01:47:44 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\httpod51.dll
[2010.04.18 01:47:43 | 000,268,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\httpext.dll
[2010.04.18 01:47:43 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\httpmb51.dll
[2010.04.18 01:47:42 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hostmib.dll
[2010.04.18 01:47:41 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hanjadic.dll
[2010.04.18 01:47:40 | 000,032,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\gzip.dll
[2010.04.18 01:47:38 | 000,126,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ftpsv251.dll
[2010.04.18 01:47:38 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ftpctrs2.dll
[2010.04.18 01:47:38 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ftpmib.dll
[2010.04.18 01:47:38 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ftlx041e.dll
[2010.04.18 01:47:37 | 000,024,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fpadmcgi.exe
[2010.04.18 01:47:37 | 000,020,541 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fpadmdll.dll
[2010.04.18 01:47:37 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\flattemp.exe
[2010.04.18 01:47:36 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_fcachdll.dll
[2010.04.18 01:47:36 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\exstrace.dll
[2010.04.18 01:47:36 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\f3ahvoas.dll
[2010.04.18 01:47:35 | 000,105,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\evntagnt.dll
[2010.04.18 01:47:35 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\evntwin.exe
[2010.04.18 01:47:35 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\evntcmd.exe
[2010.04.18 01:47:34 | 000,057,856 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esuimgd.dll
[2010.04.18 01:47:34 | 000,045,056 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esunid.dll
[2010.04.18 01:47:34 | 000,031,744 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esucmd.dll
[2010.04.18 01:47:34 | 000,025,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\et4000.sys
[2010.04.18 01:47:26 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dayi.ime
[2010.04.18 01:47:26 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\davcdata.exe
[2010.04.18 01:47:24 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cprofile.exe
[2010.04.18 01:47:23 | 000,057,399 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cplexe.exe
[2010.04.18 01:47:23 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\convlog.exe
[2010.04.18 01:47:23 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\counters.dll
[2010.04.18 01:47:22 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\controt.dll
[2010.04.18 01:47:22 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\compfilt.dll
[2010.04.18 01:47:20 | 000,480,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cintsetp.exe
[2010.04.18 01:47:20 | 000,198,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cintime.dll
[2010.04.18 01:47:20 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cintlgnt.ime
[2010.04.18 01:47:19 | 000,097,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chtmbx.dll
[2010.04.18 01:47:19 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chtskdic.dll
[2010.04.18 01:47:18 | 001,677,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chsbrkr.dll
[2010.04.18 01:47:18 | 000,838,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chtbrkr.dll
[2010.04.18 01:47:17 | 000,078,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chajei.ime
[2010.04.18 01:47:17 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chgport.exe
[2010.04.18 01:47:17 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chgusr.exe
[2010.04.18 01:47:17 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chglogon.exe
[2010.04.18 01:47:17 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\change.exe
[2010.04.18 01:47:16 | 000,054,528 | ---- | C] (Philips Semiconductors GmbH) -- C:\WINDOWS\System32\dllcache\cap7146.sys
[2010.04.18 01:47:15 | 000,218,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\c_g18030.dll
[2010.04.18 01:47:15 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\c_iscii.dll
[2010.04.18 01:47:15 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\c_is2022.dll
[2010.04.18 01:47:04 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\browscap.dll
[2010.04.18 01:47:02 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\authfilt.dll
[2010.04.18 01:47:00 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\asptxn.dll
[2010.04.18 01:46:59 | 000,372,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\asp51.dll
[2010.04.18 01:46:59 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\aspperf.dll
[2010.04.18 01:46:58 | 000,330,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\aqueue.dll
[2010.04.18 01:46:58 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_aqadmin.dll
[2010.04.18 01:46:57 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\appconf.dll
[2010.04.18 01:46:57 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt0804.dll
[2010.04.18 01:46:56 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt0412.dll
[2010.04.18 01:46:56 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt0411.dll
[2010.04.18 01:46:56 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt040d.dll
[2010.04.18 01:46:56 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt0404.dll
[2010.04.18 01:46:56 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt0401.dll
[2010.04.18 01:46:55 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\adrot.dll
[2010.04.18 01:46:55 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_adsiisex.dll
[2010.04.18 01:46:54 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\admexs.dll
[2010.04.18 01:46:54 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\admxprox.dll
[2010.04.18 01:46:49 | 000,032,827 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tcptest.exe
[2010.04.18 01:46:49 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tcptsat.dll
[2010.04.18 01:46:49 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wamregps.dll
[2010.04.18 01:46:48 | 000,020,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shtml.dll
[2010.04.18 01:46:48 | 000,016,437 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shtml.exe
[2010.04.18 01:46:48 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\staxmem.dll
[2010.04.18 01:46:42 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\logui.ocx
[2010.04.18 01:46:41 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\isatq.dll
[2010.04.18 01:46:41 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetsloc.dll
[2010.04.18 01:46:41 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\infoadmn.dll
[2010.04.18 01:46:41 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetmgr.exe
[2010.04.18 01:46:40 | 000,834,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetmgr.dll
[2010.04.18 01:46:40 | 000,171,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisui.dll
[2010.04.18 01:46:40 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisrtl.dll
[2010.04.18 01:46:39 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisext51.dll
[2010.04.18 01:46:39 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iismap.dll
[2010.04.18 01:46:39 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisrstas.exe
[2010.04.18 01:46:39 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisreset.exe
[2010.04.18 01:46:39 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ftpsapi2.dll
[2010.04.18 01:46:39 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisrstap.dll
[2010.04.18 01:46:38 | 000,598,071 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fpmmc.dll
[2010.04.18 01:46:38 | 000,212,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fpmmcsat.dll
[2010.04.18 01:46:38 | 000,188,494 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fpcount.exe
[2010.04.18 01:46:38 | 000,020,541 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fpexedll.dll
[2010.04.18 01:46:38 | 000,020,538 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fpremadm.exe
[2010.04.18 01:46:37 | 000,876,653 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp4awel.dll
[2010.04.18 01:46:37 | 000,147,513 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp4apws.dll
[2010.04.18 01:46:37 | 000,109,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp98swin.exe
[2010.04.18 01:46:37 | 000,102,509 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp4atxt.dll
[2010.04.18 01:46:37 | 000,082,035 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp4anscp.dll
[2010.04.18 01:46:37 | 000,049,212 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp4awebs.dll
[2010.04.18 01:46:37 | 000,049,210 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp4areg.dll
[2010.04.18 01:46:37 | 000,041,020 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp4avnb.dll
[2010.04.18 01:46:37 | 000,032,826 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp4avss.dll
[2010.04.18 01:46:37 | 000,014,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp98sadm.exe
[2010.04.18 01:46:36 | 000,184,435 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp4amsft.dll
[2010.04.18 01:46:36 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\coadmin.dll
[2010.04.18 01:46:35 | 000,278,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\certwiz.ocx
[2010.04.18 01:46:35 | 000,188,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cfgwiz.exe
[2010.04.18 01:46:35 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\certmap.ocx
[2010.04.18 01:46:35 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cnfgprts.ocx
[2010.04.18 01:46:34 | 000,290,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\adsiis51.dll
[2010.04.18 01:46:34 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\admwprox.dll
[2010.04.18 01:46:34 | 000,020,540 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\author.dll
[2010.04.18 01:46:34 | 000,016,439 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\author.exe
[2010.04.18 01:46:33 | 000,016,439 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\admin.exe
[2010.04.18 01:46:32 | 000,020,540 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\admin.dll
[2010.04.18 01:43:13 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\isignup.exe
[2010.04.18 01:09:46 | 000,024,661 | ---- | C] (Perle Systems Ltd.) -- C:\WINDOWS\System32\spxcoins.dll
[2010.04.18 01:09:46 | 000,024,661 | ---- | C] (Perle Systems Ltd.) -- C:\WINDOWS\System32\dllcache\spxcoins.dll
[2010.04.18 01:09:46 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\irclass.dll
[2010.04.18 01:09:46 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\irclass.dll
[2010.04.06 11:00:55 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Nokia
[2010.04.06 11:00:35 | 000,021,632 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\pccsmcfd.sys
[2010.04.06 11:00:24 | 000,000,000 | ---D | C] -- C:\Program Files\PC Connectivity Solution
[2010.04.06 10:57:54 | 000,019,328 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\ccdcmbo.sys
[2010.04.06 10:57:54 | 000,008,064 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\WINDOWS\System32\drivers\usbser_lowerfltj.sys
[2010.04.06 10:57:54 | 000,008,064 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\WINDOWS\System32\drivers\usbser_lowerflt.sys
[2010.04.06 10:57:53 | 001,419,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wdfcoinstaller01005.dll
[2010.04.06 10:57:53 | 000,095,744 | ---- | C] (Nokia) -- C:\WINDOWS\System32\nmwcdcocls.dll
[2010.04.06 10:57:53 | 000,016,896 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\ccdcmb.sys
[2010.04.06 10:55:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\Installations
[2010.04.05 21:32:12 | 000,000,000 | ---D | C] -- C:\Program Files\7-Zip
[2010.04.05 13:21:37 | 000,047,360 | ---- | C] (VSO Software) -- C:\Documents and Settings\SEVCIKJ\Data aplikací\pcouffin.sys
[2010.04.05 13:21:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Vso
[2010.04.05 13:21:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SEVCIKJ\Dokumenty\PcSetup
[2010.04.04 14:58:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SEVCIKJ\Dokumenty\DVDFab
[2010.04.04 13:35:56 | 000,000,000 | ---D | C] -- C:\Program Files\Elaborate Bytes
[2010.04.04 13:33:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SEVCIKJ\Dokumenty\AnyDVDHD
[2010.04.04 13:32:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\SlySoft
[2010.04.04 13:01:59 | 000,000,000 | ---D | C] -- C:\Program Files\SlySoft

========== Files - Modified Within 30 Days ==========

[2010.05.01 22:38:59 | 000,002,826 | ---- | M] () -- C:\WINDOWS\WINCMD.INI
[2010.05.01 22:35:30 | 000,001,180 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010.05.01 22:34:50 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010.05.01 22:34:45 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010.05.01 22:34:40 | 2137,116,672 | -HS- | M] () -- C:\hiberfil.sys
[2010.05.01 22:34:22 | 000,447,876 | ---- | M] () -- C:\WINDOWS\System32\oodbs.lor
[2010.05.01 22:24:33 | 004,456,448 | ---- | M] () -- C:\Documents and Settings\SEVCIKJ\ntuser.dat
[2010.05.01 22:24:33 | 000,000,272 | -HS- | M] () -- C:\Documents and Settings\SEVCIKJ\ntuser.ini
[2010.05.01 19:41:24 | 000,002,792 | ---- | M] () -- C:\UsbFix_Upload_Me_SEVCIKJ-NTB.zip
[2010.05.01 14:19:21 | 2137,145,344 | ---- | M] () -- C:\WINDOWS\MEMORY.DMP
[2010.05.01 14:16:48 | 003,924,810 | R--- | M] () -- C:\Documents and Settings\SEVCIKJ\Plocha\cokoliv.com.exe
[2010.05.01 13:28:02 | 001,778,598 | ---- | M] () -- C:\Documents and Settings\SEVCIKJ\Plocha\UsbFix.exe
[2010.05.01 11:49:03 | 000,447,138 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010.05.01 11:49:03 | 000,444,018 | ---- | M] () -- C:\WINDOWS\System32\perfh005.dat
[2010.05.01 11:49:03 | 000,085,524 | ---- | M] () -- C:\WINDOWS\System32\perfc005.dat
[2010.05.01 11:49:03 | 000,073,750 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010.05.01 11:49:02 | 001,064,456 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010.05.01 10:28:40 | 000,133,872 | -H-- | M] () -- C:\treeinfo.wc
[2010.05.01 03:33:18 | 000,000,116 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2010.05.01 03:30:50 | 012,212,040 | ---- | M] (Microsoft Corporation) -- C:\Documents and Settings\SEVCIKJ\Dokumenty\WMFDist11-WindowsXP-X86-ENU_1.exe
[2010.05.01 02:09:30 | 000,000,472 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Update (Daily).job
[2010.05.01 01:43:24 | 002,637,920 | -H-- | M] () -- C:\Documents and Settings\SEVCIKJ\Local Settings\Data aplikací\IconCache.db
[2010.04.30 20:14:14 | 000,095,024 | ---- | M] (Sunbelt Software) -- C:\WINDOWS\System32\drivers\SBREDrv.sys
[2010.04.29 15:39:38 | 000,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2010.04.29 15:39:26 | 000,020,952 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2010.04.26 15:58:12 | 000,256,512 | ---- | M] () -- C:\WINDOWS\PEV.exe
[2010.04.25 22:11:33 | 017,969,040 | ---- | M] () -- C:\Documents and Settings\SEVCIKJ\Plocha\Fotky.zip
[2010.04.24 18:46:37 | 000,024,576 | ---- | M] () -- C:\Documents and Settings\SEVCIKJ\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.04.24 18:27:04 | 000,000,349 | ---- | M] () -- C:\Documents and Settings\All Users\Dokumenty\PCLECHAL.INI
[2010.04.24 03:10:37 | 003,376,656 | ---- | M] (Piriform Ltd) -- C:\Documents and Settings\SEVCIKJ\Dokumenty\ccsetup230.exe
[2010.04.18 20:09:08 | 000,000,551 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\ePER.lnk
[2010.04.18 14:24:22 | 000,275,760 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010.04.18 01:50:34 | 000,000,288 | ---- | M] () -- C:\WINDOWS\System32\$winnt$.inf
[2010.04.18 01:45:42 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx
[2010.04.18 01:45:41 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb
[2010.04.18 01:45:41 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb
[2010.04.18 01:45:20 | 000,004,249 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI
[2010.04.18 01:43:51 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\WindowsLogon.manifest
[2010.04.18 01:43:51 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\logonui.exe.manifest
[2010.04.18 01:43:42 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest
[2010.04.18 01:43:42 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\WindowsShell.Manifest
[2010.04.18 01:43:42 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\sapi.cpl.manifest
[2010.04.18 01:43:42 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\nwc.cpl.manifest
[2010.04.18 01:43:42 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\ncpa.cpl.manifest
[2010.04.18 01:43:42 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\cdplayer.exe.manifest
[2010.04.18 01:43:23 | 000,000,573 | ---- | M] () -- C:\WINDOWS\win.ini
[2010.04.18 01:41:29 | 000,025,152 | ---- | M] () -- C:\WINDOWS\System32\emptyregdb.dat
[2010.04.18 01:40:38 | 000,000,655 | ---- | M] () -- C:\WINDOWS\System32\mapisvc.inf
[2010.04.18 01:36:43 | 000,000,282 | -HS- | M] () -- C:\boot.ini
[2010.04.18 01:25:54 | 000,004,444 | ---- | M] () -- C:\WINDOWS\System32\pid.PNF
[2010.04.18 01:13:50 | 000,004,128 | ---- | M] () -- C:\INFCACHE.1
[2010.04.18 01:10:27 | 000,000,227 | ---- | M] () -- C:\WINDOWS\system.ini
[2010.04.17 22:49:13 | 000,138,376 | ---- | M] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2010.04.17 19:54:55 | 000,000,880 | ---- | M] () -- C:\WINDOWS\setupapi.old
[2010.04.06 11:10:53 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ccdcmb_01005.Wdf
[2010.04.06 11:10:51 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
[2010.04.06 11:07:30 | 000,002,341 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Nokia PC Suite.lnk
[2010.04.05 13:21:38 | 000,007,887 | ---- | M] () -- C:\Documents and Settings\SEVCIKJ\Data aplikací\pcouffin.cat
[2010.04.05 13:21:37 | 000,047,360 | ---- | M] (VSO Software) -- C:\Documents and Settings\SEVCIKJ\Data aplikací\pcouffin.sys
[2010.04.05 13:21:37 | 000,001,144 | ---- | M] () -- C:\Documents and Settings\SEVCIKJ\Data aplikací\pcouffin.inf
[2010.04.04 14:33:26 | 000,000,085 | -HS- | M] () -- C:\Documents and Settings\All Users\Data aplikací\.zreglib

davros
Návštěvník
Návštěvník
Příspěvky: 67
Registrován: 03 čer 2008 12:38

Re: Prosím o kontrolu logu

#32 Příspěvek od davros »

========== Files Created - No Company Name ==========

[2010.05.01 19:25:18 | 000,002,792 | ---- | C] () -- C:\UsbFix_Upload_Me_SEVCIKJ-NTB.zip
[2010.05.01 17:44:21 | 2137,116,672 | -HS- | C] () -- C:\hiberfil.sys
[2010.05.01 14:32:54 | 000,256,512 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2010.05.01 14:32:54 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2010.05.01 14:32:54 | 000,077,312 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2010.05.01 14:32:54 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2010.05.01 14:32:53 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2010.05.01 14:16:44 | 003,924,810 | R--- | C] () -- C:\Documents and Settings\SEVCIKJ\Plocha\cokoliv.com.exe
[2010.05.01 13:28:55 | 001,778,598 | ---- | C] () -- C:\Documents and Settings\SEVCIKJ\Plocha\UsbFix.exe
[2010.05.01 09:09:34 | 000,000,012 | ---- | C] () -- C:\Documents and Settings\LocalService\Data aplikací\kcmdte.dat
[2010.05.01 02:09:29 | 000,000,472 | ---- | C] () -- C:\WINDOWS\tasks\Ad-Aware Update (Daily).job
[2010.04.25 22:11:32 | 017,969,040 | ---- | C] () -- C:\Documents and Settings\SEVCIKJ\Plocha\Fotky.zip
[2010.04.18 20:09:08 | 000,000,551 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\ePER.lnk
[2010.04.18 01:52:56 | 2137,145,344 | ---- | C] () -- C:\WINDOWS\MEMORY.DMP
[2010.04.18 01:49:49 | 000,028,288 | ---- | C] () -- C:\WINDOWS\System32\dllcache\xjis.nls
[2010.04.18 01:48:55 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prcp.nls
[2010.04.18 01:48:54 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prc.nls
[2010.04.18 01:48:52 | 000,175,104 | ---- | C] () -- C:\WINDOWS\System32\dllcache\pintlcsa.dll
[2010.04.18 01:48:20 | 000,047,066 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ksc.nls
[2010.04.18 01:48:19 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\korwbrkr.lex
[2010.04.18 01:48:08 | 000,059,392 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imscinst.exe
[2010.04.18 01:48:06 | 000,196,665 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imjpinst.exe
[2010.04.18 01:48:02 | 000,134,339 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imekr.lex
[2010.04.18 01:47:49 | 013,463,552 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hwxjpn.dll
[2010.04.18 01:47:41 | 000,108,827 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hanja.lex
[2010.04.18 01:47:37 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\dllcache\fpencode.dll
[2010.04.18 01:47:19 | 000,173,568 | ---- | C] () -- C:\WINDOWS\System32\dllcache\chtskf.dll
[2010.04.18 01:47:14 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_864.nls
[2010.04.18 01:47:14 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_862.nls
[2010.04.18 01:47:14 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_870.nls
[2010.04.18 01:47:13 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_858.nls
[2010.04.18 01:47:13 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_720.nls
[2010.04.18 01:47:13 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_708.nls
[2010.04.18 01:47:13 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28596.nls
[2010.04.18 01:47:12 | 000,180,770 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20932.nls
[2010.04.18 01:47:12 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20949.nls
[2010.04.18 01:47:12 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20936.nls
[2010.04.18 01:47:12 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21027.nls
[2010.04.18 01:47:12 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21025.nls
[2010.04.18 01:47:12 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20924.nls
[2010.04.18 01:47:11 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20880.nls
[2010.04.18 01:47:11 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20871.nls
[2010.04.18 01:47:11 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20838.nls
[2010.04.18 01:47:11 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20833.nls
[2010.04.18 01:47:11 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20424.nls
[2010.04.18 01:47:11 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20423.nls
[2010.04.18 01:47:11 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20420.nls
[2010.04.18 01:47:11 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20297.nls
[2010.04.18 01:47:11 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20290.nls
[2010.04.18 01:47:11 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20285.nls
[2010.04.18 01:47:11 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20284.nls
[2010.04.18 01:47:11 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20280.nls
[2010.04.18 01:47:10 | 000,187,938 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20005.nls
[2010.04.18 01:47:10 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20278.nls
[2010.04.18 01:47:10 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20277.nls
[2010.04.18 01:47:10 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20273.nls
[2010.04.18 01:47:10 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20269.nls
[2010.04.18 01:47:10 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20108.nls
[2010.04.18 01:47:10 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20107.nls
[2010.04.18 01:47:10 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20106.nls
[2010.04.18 01:47:10 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20105.nls
[2010.04.18 01:47:09 | 000,186,402 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20001.nls
[2010.04.18 01:47:09 | 000,185,378 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20003.nls
[2010.04.18 01:47:09 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20004.nls
[2010.04.18 01:47:09 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20002.nls
[2010.04.18 01:47:08 | 000,189,986 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1361.nls
[2010.04.18 01:47:08 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20000.nls
[2010.04.18 01:47:07 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1149.nls
[2010.04.18 01:47:07 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1148.nls
[2010.04.18 01:47:07 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1147.nls
[2010.04.18 01:47:07 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1146.nls
[2010.04.18 01:47:07 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1145.nls
[2010.04.18 01:47:07 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1144.nls
[2010.04.18 01:47:07 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1143.nls
[2010.04.18 01:47:07 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1142.nls
[2010.04.18 01:47:07 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1141.nls
[2010.04.18 01:47:07 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1140.nls
[2010.04.18 01:47:07 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1047.nls
[2010.04.18 01:47:07 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10021.nls
[2010.04.18 01:47:06 | 000,195,618 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10002.nls
[2010.04.18 01:47:06 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10003.nls
[2010.04.18 01:47:06 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10008.nls
[2010.04.18 01:47:06 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10005.nls
[2010.04.18 01:47:06 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10004.nls
[2010.04.18 01:47:05 | 000,162,850 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10001.nls
[2010.04.18 01:47:04 | 000,082,172 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bopomofo.nls
[2010.04.18 01:47:03 | 000,066,728 | ---- | C] () -- C:\WINDOWS\System32\dllcache\big5.nls
[2010.04.18 01:43:51 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest
[2010.04.18 01:43:42 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest
[2010.04.18 01:43:42 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\WindowsShell.Manifest
[2010.04.18 01:43:42 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\sapi.cpl.manifest
[2010.04.18 01:43:42 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\nwc.cpl.manifest
[2010.04.18 01:43:42 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\ncpa.cpl.manifest
[2010.04.18 01:25:54 | 000,004,444 | ---- | C] () -- C:\WINDOWS\System32\pid.PNF
[2010.04.18 01:09:21 | 000,144,484 | ---- | C] () -- C:\WINDOWS\System32\dllcache\netfx.cat
[2010.04.18 01:09:21 | 000,034,747 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mediactr.cat
[2010.04.18 01:09:20 | 002,033,597 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5.CAT
[2010.04.18 01:09:20 | 001,246,067 | ---- | C] () -- C:\WINDOWS\System32\dllcache\SP3.CAT
[2010.04.18 01:09:20 | 000,809,394 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5IIS.CAT
[2010.04.18 01:09:20 | 000,399,670 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MAPIMIG.CAT
[2010.04.18 01:09:20 | 000,105,628 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tabletpc.cat
[2010.04.18 01:09:20 | 000,037,509 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MW770.CAT
[2010.04.18 01:09:20 | 000,033,765 | ---- | C] () -- C:\WINDOWS\System32\dllcache\FP4.CAT
[2010.04.18 01:09:20 | 000,016,825 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IMS.CAT
[2010.04.18 01:09:20 | 000,013,497 | ---- | C] () -- C:\WINDOWS\System32\dllcache\HPCRDP.CAT
[2010.04.18 01:09:20 | 000,012,363 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MSMSGS.CAT
[2010.04.18 01:09:20 | 000,010,027 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MSTSWEB.CAT
[2010.04.18 01:09:20 | 000,008,599 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IASNT4.CAT
[2010.04.18 01:09:20 | 000,007,382 | ---- | C] () -- C:\WINDOWS\System32\dllcache\OEMBIOS.CAT
[2010.04.18 01:09:20 | 000,007,334 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmerrenu.cat
[2010.04.18 01:09:19 | 000,631,112 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5INF.CAT
[2010.04.17 15:30:36 | 000,000,880 | ---- | C] () -- C:\WINDOWS\setupapi.old
[2010.04.13 17:59:02 | 001,427,428 | ---- | C] () -- C:\Documents and Settings\SEVCIKJ\Plocha\da duvam ili vucem.avi
[2010.04.13 17:58:11 | 007,011,766 | ---- | C] () -- C:\Documents and Settings\SEVCIKJ\Plocha\Vašut ve skryté kameře.wmv
[2010.04.06 11:10:53 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ccdcmb_01005.Wdf
[2010.04.06 11:10:51 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
[2010.04.06 11:01:05 | 000,002,341 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Nokia PC Suite.lnk
[2010.04.05 13:21:38 | 000,007,887 | ---- | C] () -- C:\Documents and Settings\SEVCIKJ\Data aplikací\pcouffin.cat
[2010.04.05 13:21:38 | 000,000,055 | ---- | C] () -- C:\Documents and Settings\SEVCIKJ\Data aplikací\pcouffin.log
[2010.04.05 13:21:37 | 000,001,144 | ---- | C] () -- C:\Documents and Settings\SEVCIKJ\Data aplikací\pcouffin.inf
[2010.04.04 13:36:21 | 000,000,085 | -HS- | C] () -- C:\Documents and Settings\All Users\Data aplikací\.zreglib
[2009.10.24 10:44:00 | 000,000,608 | ---- | C] () -- C:\WINDOWS\disney.ini
[2009.02.21 13:15:36 | 000,405,588 | ---- | C] () -- C:\WINDOWS\System32\vc6-stlport-re300l.dll
[2008.12.06 12:04:45 | 000,000,173 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini
[2008.10.07 10:13:30 | 000,197,912 | ---- | C] () -- C:\WINDOWS\System32\physxcudart_20.dll
[2008.10.07 10:13:22 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelTraditionalChinese.dll
[2008.10.07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSwedish.dll
[2008.10.07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSpanish.dll
[2008.10.07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll
[2008.10.07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelPortugese.dll
[2008.10.07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelKorean.dll
[2008.10.07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelJapanese.dll
[2008.10.07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelGerman.dll
[2008.10.07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelFrench.dll
[2008.04.18 23:14:37 | 000,278,984 | ---- | C] () -- C:\WINDOWS\System32\drivers\atksgt.sys
[2008.04.18 23:14:36 | 000,025,416 | ---- | C] () -- C:\WINDOWS\System32\drivers\lirsgt.sys
[2008.04.14 10:51:54 | 000,363,520 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2008.02.23 15:03:47 | 000,000,116 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2008.02.06 10:40:04 | 000,000,019 | ---- | C] () -- C:\WINDOWS\SoundConverter.INI
[2008.01.26 17:27:47 | 000,034,308 | ---- | C] () -- C:\WINDOWS\System32\BASSMOD.dll
[2008.01.25 22:07:17 | 000,138,376 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2008.01.25 17:58:46 | 000,002,826 | ---- | C] () -- C:\WINDOWS\WINCMD.INI
[2008.01.16 08:51:23 | 000,000,000 | ---- | C] () -- C:\WINDOWS\vpc32.INI
[2008.01.15 14:50:52 | 000,000,654 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2007.11.08 14:42:04 | 000,000,000 | ---- | C] () -- C:\WINDOWS\tosOBEX.INI
[2007.11.08 14:41:55 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2007.11.08 14:39:36 | 000,056,056 | ---- | C] () -- C:\WINDOWS\System32\DLAAPI_W.DLL
[2007.11.08 14:39:36 | 000,000,176 | ---- | C] () -- C:\WINDOWS\wininit.ini
[2007.11.08 14:34:54 | 000,073,728 | ---- | C] () -- C:\WINDOWS\System32\pbadrvdll.dll
[2007.11.08 14:31:36 | 001,736,704 | ---- | C] () -- C:\WINDOWS\System32\Tsp1.dll
[2007.11.08 14:29:39 | 000,143,360 | ---- | C] () -- C:\WINDOWS\System32\bioapi_mds300.dll
[2007.11.08 14:29:39 | 000,106,496 | ---- | C] () -- C:\WINDOWS\System32\bioapi100.dll
[2007.11.08 13:59:49 | 000,910,304 | ---- | C] () -- C:\WINDOWS\System32\igmedkrn.dll
[2007.11.08 13:59:49 | 000,204,800 | ---- | C] () -- C:\WINDOWS\System32\igfxCoIn_v4831.dll
[2007.09.06 02:01:22 | 000,012,288 | ---- | C] () -- C:\WINDOWS\System32\DivXWMPExtType.dll
[2007.08.23 18:55:34 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
[2007.08.23 18:50:04 | 000,000,416 | ---- | C] () -- C:\WINDOWS\System32\dtu100.dll.manifest
[2007.08.23 18:50:04 | 000,000,416 | ---- | C] () -- C:\WINDOWS\System32\dpl100.dll.manifest
[2007.03.29 23:00:40 | 000,203,264 | R--- | C] () -- C:\WINDOWS\System32\CddbCdda.dll
[2007.01.31 22:16:50 | 000,237,568 | ---- | C] () -- C:\WINDOWS\System32\AmRes_en.dll
[2007.01.31 22:11:14 | 000,122,880 | ---- | C] () -- C:\WINDOWS\System32\OEM_Resources.dll
[2007.01.31 22:08:44 | 000,253,952 | ---- | C] () -- C:\WINDOWS\System32\AmRes_es.dll
[2007.01.31 22:08:36 | 000,237,568 | ---- | C] () -- C:\WINDOWS\System32\AmRes_ko.dll
[2007.01.31 22:08:26 | 000,253,952 | ---- | C] () -- C:\WINDOWS\System32\AmRes_de.dll
[2007.01.31 22:08:18 | 000,237,568 | ---- | C] () -- C:\WINDOWS\System32\AmRes_pt-BR.dll
[2007.01.31 22:08:08 | 000,249,856 | ---- | C] () -- C:\WINDOWS\System32\AmRes_fr.dll
[2007.01.31 22:08:00 | 000,233,472 | ---- | C] () -- C:\WINDOWS\System32\AmRes_ja.dll
[2007.01.31 22:07:50 | 000,266,240 | ---- | C] () -- C:\WINDOWS\System32\AmRes_ru.dll
[2007.01.31 22:07:42 | 000,249,856 | ---- | C] () -- C:\WINDOWS\System32\AmRes_it.dll
[2007.01.31 22:07:34 | 000,217,088 | ---- | C] () -- C:\WINDOWS\System32\AmRes_zh-CHS.dll
[2007.01.31 22:07:24 | 000,212,992 | ---- | C] () -- C:\WINDOWS\System32\AmRes_zh-CHT.dll
[2007.01.31 15:09:46 | 000,090,112 | ---- | C] () -- C:\WINDOWS\System32\Internationalization_pt.dll
[2007.01.31 15:09:26 | 000,077,824 | ---- | C] () -- C:\WINDOWS\System32\Internationalization_zh-CHT.dll
[2007.01.31 15:09:06 | 000,077,824 | ---- | C] () -- C:\WINDOWS\System32\Internationalization_ko.dll
[2007.01.31 15:08:46 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\Internationalization_es.dll
[2007.01.31 15:08:26 | 000,090,112 | ---- | C] () -- C:\WINDOWS\System32\Internationalization_ru.dll
[2007.01.31 15:08:06 | 000,081,920 | ---- | C] () -- C:\WINDOWS\System32\Internationalization_ja.dll
[2007.01.31 15:07:46 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\Internationalization_it.dll
[2007.01.31 15:07:26 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\Internationalization_de.dll
[2007.01.31 15:07:04 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\Internationalization_fr.dll
[2007.01.31 15:06:46 | 000,073,728 | ---- | C] () -- C:\WINDOWS\System32\Internationalization_zh-CHS.dll
[2007.01.30 17:31:50 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\wxvault.dll
[2007.01.30 17:30:30 | 000,004,096 | ---- | C] () -- C:\WINDOWS\System32\detoured.dll
[2007.01.02 11:14:20 | 000,835,584 | ---- | C] () -- C:\WINDOWS\System32\DemoLicense.dll
[2006.11.07 06:25:58 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\px.ini
[2006.09.17 01:36:50 | 000,520,192 | ---- | C] () -- C:\WINDOWS\System32\CddbPlaylist2Roxio.dll
[2006.09.17 01:36:50 | 000,204,800 | ---- | C] () -- C:\WINDOWS\System32\CddbFileTaggerRoxio.dll
[2006.08.14 13:02:10 | 000,072,192 | ---- | C] () -- C:\WINDOWS\System32\xltZlib.dll
[2006.06.12 10:01:16 | 000,348,160 | ---- | C] () -- C:\WINDOWS\tsp.dll
[2005.10.14 12:56:48 | 003,223,552 | ---- | C] () -- C:\WINDOWS\System32\libavcodec.dll
[2005.10.14 12:56:48 | 000,540,672 | ---- | C] () -- C:\WINDOWS\System32\libmplayer.dll
[2005.10.14 12:56:48 | 000,266,240 | ---- | C] () -- C:\WINDOWS\System32\TomsMoComp_ff.dll
[2005.10.14 12:56:48 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\libmpeg2_ff.dll
[2005.09.02 16:44:08 | 000,110,592 | ---- | C] () -- C:\WINDOWS\System32\TosBtAcc.dll
[2005.07.22 23:30:20 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\TosCommAPI.dll
[2004.09.13 18:34:16 | 000,003,568 | ---- | C] () -- C:\WINDOWS\System32\fxsperf.ini
[2004.09.13 18:20:49 | 000,020,480 | ---- | C] () -- C:\WINDOWS\System32\mssockrj.dll
[2004.09.13 18:20:49 | 000,006,231 | ---- | C] () -- C:\WINDOWS\System32\wbnt.dll
[2004.09.10 14:34:00 | 000,917,504 | ---- | C] () -- C:\WINDOWS\System32\lmgr10.dll
[2004.09.10 14:34:00 | 000,057,344 | ---- | C] () -- C:\WINDOWS\System32\ADsSecurity.dll
[2004.07.20 19:04:02 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\TosBtHcrpAPI.dll
[2004.01.15 16:43:28 | 000,114,688 | ---- | C] () -- C:\WINDOWS\System32\TBTMonUI.dll
[2003.04.09 16:38:04 | 000,005,664 | ---- | C] () -- C:\WINDOWS\System32\OUTLPERF.INI
[2002.09.29 13:24:22 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\OggDS.dll
[2002.09.29 13:23:16 | 000,921,600 | ---- | C] () -- C:\WINDOWS\System32\vorbisenc.dll
[2002.09.29 13:23:14 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\vorbis.dll
[2002.09.29 13:23:07 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\ogg.dll

========== LOP Check ==========

[2007.11.08 14:29:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Data aplikací\Wave Systems Corp
[2008.04.08 20:37:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Downloaded Installations
[2010.01.19 10:19:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Gemfor
[2010.04.06 10:55:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Installations
[2010.03.14 17:44:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\MinigolfAdventures
[2008.04.08 20:28:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Nokia
[2007.11.08 14:29:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\NTRU Cryptosystems
[2009.10.10 13:56:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\PC Suite
[2009.11.20 08:52:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\PCTV Systems
[2010.04.04 13:32:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\SlySoft
[2008.12.24 01:43:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\TEMP
[2010.03.14 21:29:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\TreeCardGames
[2007.11.08 14:29:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Wave Systems Corp
[2008.02.05 08:19:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Default User\Data aplikací\Wave Systems Corp
[2008.03.09 18:52:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Allstar
[2010.04.09 23:20:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\BID
[2008.09.06 01:57:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\BITS
[2008.03.06 14:20:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Datalayer
[2009.07.04 00:04:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\gtk-2.0
[2010.04.09 21:03:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\MahJong Suite
[2008.04.03 20:14:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Nokia
[2008.04.08 21:02:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\NSeries
[2009.09.28 15:59:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Opera
[2010.04.06 11:19:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\PC Suite
[2008.02.02 17:18:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\PPMate
[2008.07.18 14:34:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Softplicity
[2008.11.21 19:21:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\uTorrent
[2009.06.06 00:40:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\VitySoft
[2010.04.05 13:21:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Vso
[2010.05.01 17:46:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Wave Systems Corp
[2010.04.26 02:57:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\XnView
[2010.05.01 02:09:30 | 000,000,472 | ---- | M] () -- C:\WINDOWS\Tasks\Ad-Aware Update (Daily).job

========== Purity Check ==========



========== Custom Scans ==========


< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"H/PC Connection Agent" = "C:\PROGRA~1\MICROS~3\wcescomm.exe" -- [2006.06.27 13:55:26 | 001,211,176 | ---- | M] (Microsoft Corporation)
"PC Suite Tray" = "C:\Program Files\Nokia\Nokia PC Suite 6\PCSuite.exe" -onlytray -- [2008.04.16 12:53:46 | 001,079,808 | ---- | M] (Nokia)
"ctfmon.exe" = C:\WINDOWS\system32\ctfmon.exe -- [2008.04.14 08:52:18 | 000,015,360 | ---- | M] (Microsoft Corporation)

< c:\windows\*.* /U >

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >

< %ALLUSERSPROFILE%\Application Data\*.exe /s >

< %APPDATA%\*. >
[2008.02.02 12:31:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\AccurateRip
[2008.01.22 12:54:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Adobe
[2008.10.12 16:37:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\AdobeUM
[2008.03.09 18:52:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Allstar
[2008.01.27 01:58:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Apple Computer
[2010.04.09 23:20:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\BID
[2008.09.06 01:57:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\BITS
[2008.01.25 18:11:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\CyberLink
[2008.03.06 14:20:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Datalayer
[2008.01.22 12:52:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Dell
[2009.11.21 13:05:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\DivX
[2009.12.24 03:40:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\dvdcss
[2008.01.25 18:00:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\GRETECH
[2009.07.04 00:04:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\gtk-2.0
[2008.02.02 03:36:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Help
[2004.09.13 18:46:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Identities
[2007.11.08 14:24:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\InstallShield
[2007.11.08 14:37:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Intel
[2009.07.13 11:34:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Lavasoft
[2008.01.25 19:42:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Macromedia
[2010.04.09 21:03:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\MahJong Suite
[2009.09.28 02:17:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Malwarebytes
[2008.01.27 01:51:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Media Player Classic
[2009.03.30 15:01:27 | 000,000,000 | --SD | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Microsoft
[2008.04.03 20:14:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Nokia
[2008.04.08 21:02:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\NSeries
[2009.09.28 15:59:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Opera
[2010.04.06 11:19:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\PC Suite
[2008.02.02 17:18:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\PPMate
[2008.01.22 12:54:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Roxio
[2008.07.27 15:34:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Skype
[2008.07.27 13:28:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\skypePM
[2008.07.18 14:34:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Softplicity
[2008.03.22 11:30:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Sun
[2008.02.02 17:24:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\TVU Networks
[2008.11.21 19:21:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\uTorrent
[2009.06.06 00:40:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\VitySoft
[2010.04.24 16:37:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\vlc
[2010.04.05 13:21:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Vso
[2010.05.01 17:46:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Wave Systems Corp
[2008.02.02 13:03:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Winamp
[2008.01.25 21:43:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\WinRAR
[2010.04.26 02:57:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SEVCIKJ\Data aplikací\XnView

< %APPDATA%\*.exe /s >
[2007.03.22 12:46:40 | 000,126,976 | ---- | M] () -- C:\Documents and Settings\SEVCIKJ\Data aplikací\GRETECH\GomPlayer\GrLauncher.exe
[2007.11.08 14:28:59 | 000,010,134 | R--- | M] () -- C:\Documents and Settings\SEVCIKJ\Data aplikací\Microsoft\Installer\{9556CFD4-3F7E-4D1C-958B-759703E9CC21}\ARPPRODUCTICON.exe
[2009.09.20 17:23:18 | 005,519,752 | ---- | M] (TVU networks) -- C:\Documents and Settings\SEVCIKJ\Data aplikací\TVU Networks\TVU AutoUpgrade\TVUPlayer2.4.7.2.exe


< MD5 for: AGP440.SYS >
[2004.08.18 14:00:00 | 018,786,869 | ---- | M] () .cab file -- C:\i386\sp2.cab:AGP440.sys
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys
[2008.04.13 20:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ERDNT\cache\agp440.sys
[2008.04.13 20:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys
[2004.08.04 01:07:42 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=2C428FA0C3E3A01ED93C9B2A27D8D4BB -- C:\i386\AGP440.SYS

< MD5 for: ATAPI.SYS >
[2004.08.18 14:00:00 | 018,786,869 | ---- | M] () .cab file -- C:\i386\sp2.cab:atapi.sys
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008.04.14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2004.08.04 00:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\i386\atapi.sys

< MD5 for: CRYPTSVC.DLL >
[2004.08.18 14:00:00 | 000,060,416 | ---- | M] (Microsoft Corporation) MD5=70D2A1756F4B2067658A186C963FCABD -- C:\i386\cryptsvc.dll
[2008.04.14 05:21:38 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=F3AB0933CBD166D271992F411C27CCAF -- C:\WINDOWS\ERDNT\cache\cryptsvc.dll
[2008.04.14 08:51:40 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=F3AB0933CBD166D271992F411C27CCAF -- C:\WINDOWS\system32\cryptsvc.dll
[2008.04.14 08:51:40 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=F3AB0933CBD166D271992F411C27CCAF -- C:\WINDOWS\system32\dllcache\cryptsvc.dll

< MD5 for: EVENTLOG.DLL >
[2008.04.14 05:21:41 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\ERDNT\cache\eventlog.dll
[2008.04.14 08:51:42 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\system32\dllcache\eventlog.dll
[2008.04.14 08:51:42 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\system32\eventlog.dll
[2004.08.18 14:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=6EB66066D5C0175320CFEA0A4C74C88F -- C:\i386\eventlog.dll

< MD5 for: EXPLORER.EXE >
[2008.04.14 05:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\ERDNT\cache\explorer.exe
[2008.04.14 08:52:24 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\explorer.exe
[2008.04.14 08:52:24 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\system32\dllcache\explorer.exe
[2004.08.18 14:00:00 | 001,032,704 | ---- | M] (Microsoft Corporation) MD5=53114D57AB73A406AC7F602227781A99 -- C:\WINDOWS\$NtUninstallKB938828$\explorer.exe
[2007.06.13 15:11:59 | 001,033,728 | ---- | M] (Microsoft Corporation) MD5=9B32416BD5988C97B6397CE0B02CAF97 -- C:\WINDOWS\$hf_mig$\KB938828\SP2QFE\explorer.exe
[2007.06.13 15:23:39 | 001,033,728 | ---- | M] (Microsoft Corporation) MD5=ED7B460B142A32097B8A8F6ECC941815 -- C:\i386\explorer.exe

< MD5 for: HAL.DLL >
[2004.08.18 14:00:00 | 018,786,869 | ---- | M] () .cab file -- C:\i386\sp2.cab:hal.dll
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:hal.dll
[2008.04.14 00:01:30 | 000,134,400 | ---- | M] (Microsoft Corporation) MD5=4329EE7D502C9113EBA0F9570392F5EE -- C:\WINDOWS\system32\hal.dll
[2005.06.23 02:05:52 | 000,134,272 | ---- | M] (Microsoft Corporation) MD5=4A8F90497503FD24BD284156B75822F6 -- C:\i386\HAL.DLL

< MD5 for: CHANGER.SYS >
[2004.08.18 14:00:00 | 018,786,869 | ---- | M] () .cab file -- C:\i386\sp2.cab:Changer.sys
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:Changer.sys

< MD5 for: ISAPNP.SYS >
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:isapnp.sys
[2001.10.24 13:44:12 | 000,035,840 | ---- | M] (Microsoft Corporation) MD5=1091528512E4DD7ED5FDDCC4DF1C53D7 -- C:\i386\isapnp.sys
[2008.04.14 07:57:54 | 000,037,248 | ---- | M] (Microsoft Corporation) MD5=CC9F8A2D60AED1A51A3AC34C59B987AE -- C:\WINDOWS\system32\drivers\isapnp.sys

< MD5 for: LSASS.EXE >
[2004.08.18 14:00:00 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=82A362FE1D4980B71B588D9C10748511 -- C:\i386\lsass.exe
[2008.04.14 05:22:29 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=ED0A176354487CEED65B80A7148AB739 -- C:\WINDOWS\ERDNT\cache\lsass.exe
[2008.04.14 08:52:30 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=ED0A176354487CEED65B80A7148AB739 -- C:\WINDOWS\system32\dllcache\lsass.exe
[2008.04.14 08:52:30 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=ED0A176354487CEED65B80A7148AB739 -- C:\WINDOWS\system32\lsass.exe

< MD5 for: NDIS.SYS >
[2008.04.13 21:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ERDNT\cache\ndis.sys
[2008.04.14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\dllcache\ndis.sys
[2008.04.14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys
[2004.08.18 14:00:00 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- C:\i386\ndis.sys

< MD5 for: NETLOGON.DLL >
[2004.08.18 14:00:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=2591CADAEF7D2242039255028E577688 -- C:\i386\netlogon.dll
[2008.04.14 05:21:50 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\ERDNT\cache\netlogon.dll
[2008.04.14 08:51:52 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\system32\dllcache\netlogon.dll
[2008.04.14 08:51:52 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\system32\netlogon.dll

< MD5 for: SCECLI.DLL >
[2004.08.18 14:00:00 | 000,184,832 | ---- | M] (Microsoft Corporation) MD5=07119058D451CB7EA4317BCFDA8599A6 -- C:\i386\scecli.dll
[2008.04.14 05:21:54 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\ERDNT\cache\scecli.dll
[2008.04.14 08:51:56 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\system32\dllcache\scecli.dll
[2008.04.14 08:51:56 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\system32\scecli.dll

< MD5 for: SMSS.EXE >
[2004.08.18 14:00:00 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=04B69D49D7FC3358A372E97DB6D39447 -- C:\i386\smss.exe
[2004.08.17 15:49:28 | 000,164,864 | ---- | M] (Microsoft Corporation) MD5=3C100B7FDB179B63829103DF6541337F -- C:\cmdcons\SYSTEM32\SMSS.EXE
[2008.04.14 08:52:48 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=9B08A8C6331C2DA9C30377BCB4262721 -- C:\WINDOWS\system32\dllcache\smss.exe
[2008.04.14 08:52:48 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=9B08A8C6331C2DA9C30377BCB4262721 -- C:\WINDOWS\system32\smss.exe
[2004.08.18 14:00:00 | 000,481,792 | ---- | M] (Microsoft Corporation) MD5=CB56F803D2CAF6B3F32E82D2F73F4B3A -- C:\i386\SYSTEM32\SMSS.EXE

< MD5 for: SVCHOST.EXE >
[2008.04.14 05:22:48 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\ERDNT\cache\svchost.exe
[2008.04.14 08:52:50 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\system32\dllcache\svchost.exe
[2008.04.14 08:52:50 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\system32\svchost.exe
[2004.08.18 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=DFBA2915B0BF58ABB288CD4C9318CB3F -- C:\i386\svchost.exe

< MD5 for: TCPIP.SYS >
[2006.04.20 13:51:50 | 000,359,808 | ---- | M] (Microsoft Corporation) MD5=1DBF125862891817F374F407626967F4 -- C:\WINDOWS\$NtUninstallKB941644$\tcpip.sys
[2007.10.30 18:53:32 | 000,360,832 | ---- | M] (Microsoft Corporation) MD5=64798ECFA43D78C7178375FCDD16D8C8 -- C:\WINDOWS\$hf_mig$\KB941644\SP2QFE\tcpip.sys
[2008.06.20 12:44:42 | 000,360,960 | ---- | M] (Microsoft Corporation) MD5=744E57C99232201AE98C49168B918F48 -- C:\WINDOWS\$hf_mig$\KB951748\SP2QFE\tcpip.sys
[2007.10.30 19:20:55 | 000,360,064 | ---- | M] (Microsoft Corporation) MD5=90CAFF4B094573449A0872A0F919B178 -- C:\i386\tcpip.sys
[2007.10.30 19:20:55 | 000,360,064 | ---- | M] (Microsoft Corporation) MD5=90CAFF4B094573449A0872A0F919B178 -- C:\WINDOWS\$NtUninstallKB951748_0$\tcpip.sys
[2008.04.14 00:50:18 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS\$NtUninstallKB951748$\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\$hf_mig$\KB951748\SP3GDR\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\ERDNT\cache\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\dllcache\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\drivers\tcpip.sys
[2004.08.18 14:00:00 | 000,359,040 | ---- | M] (Microsoft Corporation) MD5=9F4B36614A0FC234525BA224957DE55C -- C:\WINDOWS\$NtUninstallKB917953$\tcpip.sys
[2008.06.20 13:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\tcpip.sys
[2006.04.20 14:18:35 | 000,360,576 | ---- | M] (Microsoft Corporation) MD5=B2220C618B42A2212A59D91EBD6FC4B4 -- C:\WINDOWS\$hf_mig$\KB917953\SP2QFE\tcpip.sys

< MD5 for: USERINIT.EXE >
[2008.04.14 05:22:50 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\ERDNT\cache\userinit.exe
[2008.04.14 08:52:52 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\system32\dllcache\userinit.exe
[2008.04.14 08:52:52 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\system32\userinit.exe
[2004.08.18 14:00:00 | 000,024,576 | ---- | M] (Microsoft Corporation) MD5=836F7960362FF95C5D49E40B891F2CFC -- C:\i386\userinit.exe

< MD5 for: WINLOGON.EXE >
[2004.08.18 14:00:00 | 000,502,272 | ---- | M] (Microsoft Corporation) MD5=221C29AE1B4CC61D11D8B27DE78B2307 -- C:\i386\winlogon.exe
[2008.04.14 05:22:53 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\ERDNT\cache\winlogon.exe
[2008.04.14 08:52:54 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\system32\dllcache\winlogon.exe
[2008.04.14 08:52:54 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\system32\winlogon.exe

< MD5 for: WS2_32.DLL >
[2004.08.18 14:00:00 | 000,082,944 | ---- | M] (Microsoft Corporation) MD5=382E9B87F1282E697C67AF84E34E35E2 -- C:\i386\ws2_32.dll
[2008.04.14 05:22:06 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=951D473917C51F21496D914CF6E5DDD1 -- C:\WINDOWS\ERDNT\cache\ws2_32.dll
[2008.04.14 08:52:08 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=951D473917C51F21496D914CF6E5DDD1 -- C:\WINDOWS\system32\dllcache\ws2_32.dll
[2008.04.14 08:52:08 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=951D473917C51F21496D914CF6E5DDD1 -- C:\WINDOWS\system32\ws2_32.dll

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >
[2008.04.14 08:51:40 | 001,267,200 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\WINDOWS\system32\comsvcs.dll

< %systemroot%\Tasks\*.job /lockedfiles >

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >
[2010.04.18 03:05:04 | 000,262,144 | ---- | M] () -- C:\WINDOWS\system32\config\default.sav
[2010.04.17 04:05:59 | 000,262,144 | ---- | M] () -- C:\WINDOWS\system32\config\security.sav
[2010.04.18 03:05:04 | 034,078,720 | ---- | M] () -- C:\WINDOWS\system32\config\software.sav
[2010.04.18 03:05:04 | 009,175,040 | ---- | M] () -- C:\WINDOWS\system32\config\system.sav

< %systemroot%\system32\*.dll /lockedfiles >
[2008.04.14 08:51:40 | 001,267,200 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\WINDOWS\system32\comsvcs.dll

< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON

< %systemroot%\system32\drivers\*.sys /3 >
[2010.04.29 15:39:26 | 000,020,952 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\system32\drivers\mbam.sys
[2010.04.29 15:39:38 | 000,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\system32\drivers\mbamswissarmy.sys
[2010.04.30 20:14:14 | 000,095,024 | ---- | M] (Sunbelt Software) -- C:\WINDOWS\system32\drivers\SBREDrv.sys

< %systemroot%\system32\*.* /3 >
[2010.05.01 22:34:22 | 000,447,876 | ---- | M] () -- C:\WINDOWS\system32\oodbs.lor
[2010.05.01 11:49:03 | 000,085,524 | ---- | M] () -- C:\WINDOWS\system32\perfc005.dat
[2010.05.01 11:49:03 | 000,073,750 | ---- | M] () -- C:\WINDOWS\system32\perfc009.dat
[2010.05.01 11:49:03 | 000,444,018 | ---- | M] () -- C:\WINDOWS\system32\perfh005.dat
[2010.05.01 11:49:03 | 000,447,138 | ---- | M] () -- C:\WINDOWS\system32\perfh009.dat
[2010.05.01 11:49:02 | 001,064,456 | ---- | M] () -- C:\WINDOWS\system32\PerfStringBackup.INI
[2010.05.01 22:35:30 | 000,001,180 | ---- | M] () -- C:\WINDOWS\system32\wpa.dbl
< End of report >

Uživatelský avatar
Caroprd111
VIP
VIP
Příspěvky: 13492
Registrován: 22 bře 2009 20:48
Bydliště: Třebíč
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#33 Příspěvek od Caroprd111 »

Obrázek Odinstalujte ComboFix přes:
Start >> Spustit, zkopírujte do okénka:

ComboFix /Uninstall

stiskněte Enter



Obrázek Stáhněte T-Cleaner http://sweb.cz/Marinus/T-Cleaner.exe
  • Spusťte, pro potvrzení volby mačkejte klávesu A, Enter
  • Po použití program vymažte. Pozor, antiviry ho mohou falešně označit za vir.

Obrázek Spusťte OTL a do spodního okna vložte následující skript.

Kód: Vybrat vše

:Files
C:\Recycler\S-1-5-21-842925246-2025429265-682008880-1013 
H:\Recycler\S-1-5-21-842925246-2025429265-682008880-1013
C:\RECYCLER\S-1-5-21-842925246-2025429265-682008880-1013

:Commands
[REBOOT] 
Poté klikněte na Opravit, PC se restartuje, log vložte sem.
Obrázek

davros
Návštěvník
Návštěvník
Příspěvky: 67
Registrován: 03 čer 2008 12:38

Re: Prosím o kontrolu logu

#34 Příspěvek od davros »

========== FILES ==========
Folder move failed. C:\Recycler\S-1-5-21-842925246-2025429265-682008880-1013\com4 scheduled to be moved on reboot.
Folder move failed. C:\Recycler\S-1-5-21-842925246-2025429265-682008880-1013 scheduled to be moved on reboot.
Folder move failed. H:\Recycler\S-1-5-21-842925246-2025429265-682008880-1013\com4 scheduled to be moved on reboot.
Folder move failed. H:\Recycler\S-1-5-21-842925246-2025429265-682008880-1013 scheduled to be moved on reboot.
Folder move failed. C:\RECYCLER\S-1-5-21-842925246-2025429265-682008880-1013\com4 scheduled to be moved on reboot.
Folder move failed. C:\RECYCLER\S-1-5-21-842925246-2025429265-682008880-1013 scheduled to be moved on reboot.
========== COMMANDS ==========

OTL by OldTimer - Version 3.2.4.0 log created on 05022010_141805

Files\Folders moved on Reboot...
File move failed. C:\Recycler\S-1-5-21-842925246-2025429265-682008880-1013\com4 scheduled to be moved on reboot.
Folder move failed. C:\Recycler\S-1-5-21-842925246-2025429265-682008880-1013\com4 scheduled to be moved on reboot.
Folder move failed. C:\Recycler\S-1-5-21-842925246-2025429265-682008880-1013 scheduled to be moved on reboot.
File move failed. H:\Recycler\S-1-5-21-842925246-2025429265-682008880-1013\com4 scheduled to be moved on reboot.
Folder move failed. H:\Recycler\S-1-5-21-842925246-2025429265-682008880-1013\com4 scheduled to be moved on reboot.
Folder move failed. H:\Recycler\S-1-5-21-842925246-2025429265-682008880-1013 scheduled to be moved on reboot.

Registry entries deleted on Reboot...

Uživatelský avatar
Caroprd111
VIP
VIP
Příspěvky: 13492
Registrován: 22 bře 2009 20:48
Bydliště: Třebíč
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#35 Příspěvek od Caroprd111 »

Obrázek Stáhněte Avenger http://www.viry.cz/forum/viewtopic.php?f=15&t=19832 a použijte s tímto skriptem:

Kód: Vybrat vše

Begin copying here:

Folders to delete:
C:\Recycler\S-1-5-21-842925246-2025429265-682008880-1013 
H:\Recycler\S-1-5-21-842925246-2025429265-682008880-1013
C:\RECYCLER\S-1-5-21-842925246-2025429265-682008880-1013
Log vložte sem.
Obrázek

davros
Návštěvník
Návštěvník
Příspěvky: 67
Registrován: 03 čer 2008 12:38

Re: Prosím o kontrolu logu

#36 Příspěvek od davros »

Logfile of The Avenger Version 2.0, (c) by Swandog46
http://swandog46.geekstogo.com

Platform: Windows XP

*******************

Script file opened successfully.
Script file read successfully.

Backups directory opened successfully at C:\Avenger

*******************

Beginning to process script file:

Rootkit scan active.
No rootkits found!

Folder "C:\Recycler\S-1-5-21-842925246-2025429265-682008880-1013" deleted successfully.

Error: could not open folder "H:\Recycler\S-1-5-21-842925246-2025429265-682008880-1013"
Deletion of folder "H:\Recycler\S-1-5-21-842925246-2025429265-682008880-1013" failed!
Status: 0xc000003a (STATUS_OBJECT_PATH_NOT_FOUND)
--> bad path / the parent directory does not exist


Error: folder "C:\RECYCLER\S-1-5-21-842925246-2025429265-682008880-1013" not found!
Deletion of folder "C:\RECYCLER\S-1-5-21-842925246-2025429265-682008880-1013" failed!
Status: 0xc0000034 (STATUS_OBJECT_NAME_NOT_FOUND)
--> the object does not exist


Completed script processing.

*******************

Finished! Terminate.

Uživatelský avatar
Caroprd111
VIP
VIP
Příspěvky: 13492
Registrován: 22 bře 2009 20:48
Bydliště: Třebíč
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#37 Příspěvek od Caroprd111 »

Zkuste znovu spustit ComboFix.
Obrázek

davros
Návštěvník
Návštěvník
Příspěvky: 67
Registrován: 03 čer 2008 12:38

Re: Prosím o kontrolu logu

#38 Příspěvek od davros »

ComboFix 10-05-02.01 - SEVCIKJ 02.05.2010 20:20:13.5.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.2038.1367 [GMT 2:00]
Spuštěný z: c:\documents and settings\SEVCIKJ\Plocha\ComboFix.exe
AV: Symantec AntiVirus Corporate Edition *On-access scanning disabled* (Updated) {FB06448E-52B8-493A-90F3-E43226D3305C}
.

((((((((((((((((((((((((( Soubory vytvořené od 2010-04-02 do 2010-05-02 )))))))))))))))))))))))))))))))
.

2010-05-02 12:18 . 2010-05-02 12:18 -------- d-----w- C:\_OTL
2010-05-01 12:06 . 2010-05-01 12:06 -------- d-sh--w- c:\windows\system32\config\systemprofile\PrivacIE
2010-04-30 18:14 . 2010-04-30 18:14 95024 ----a-w- c:\windows\system32\drivers\SBREDrv.sys
2010-04-24 17:01 . 2010-04-24 17:01 -------- d-----w- c:\program files\Hetman Software
2010-04-24 11:51 . 2010-05-02 12:16 -------- d-----w- C:\UsbFix
2010-04-24 01:13 . 2010-04-24 01:13 -------- d-----w- c:\program files\Opera
2010-04-18 18:09 . 2010-04-18 18:09 -------- d-----w- c:\program files\Fiat
2010-04-18 12:02 . 2008-06-14 17:35 272128 -c----w- c:\windows\system32\dllcache\bthport.sys
2010-04-18 12:01 . 2010-02-17 12:09 2192128 -c----w- c:\windows\system32\dllcache\ntoskrnl.exe
2010-04-18 12:01 . 2010-02-16 19:08 2148352 -c----w- c:\windows\system32\dllcache\ntkrnlmp.exe
2010-04-18 12:01 . 2010-02-16 19:08 2026496 -c----w- c:\windows\system32\dllcache\ntkrpamp.exe
2010-04-18 12:00 . 2010-02-25 06:18 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2010-04-18 12:00 . 2010-02-25 06:18 1985536 -c----w- c:\windows\system32\dllcache\iertutil.dll
2010-04-18 12:00 . 2010-02-25 06:18 247808 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2010-04-18 12:00 . 2010-02-25 06:18 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2010-04-18 12:00 . 2010-02-25 06:18 594432 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2010-04-18 11:58 . 2010-02-24 13:11 455680 -c----w- c:\windows\system32\dllcache\mrxsmb.sys
2010-04-18 08:05 . 2007-05-18 11:45 172032 ----a-w- c:\windows\system32\igfxres.dll
2010-04-17 23:48 . 2001-10-25 11:00 14848 -c--a-w- c:\windows\system32\dllcache\register.exe
2010-04-17 23:47 . 2001-10-25 11:00 10129408 -c--a-w- c:\windows\system32\dllcache\hwxkor.dll
2010-04-17 23:46 . 2008-04-14 06:51 372736 -c--a-w- c:\windows\system32\dllcache\asp51.dll
2010-04-17 23:43 . 2001-10-25 11:00 16384 -c--a-w- c:\windows\system32\dllcache\isignup.exe
2010-04-17 23:09 . 2001-10-25 11:00 24661 -c--a-w- c:\windows\system32\dllcache\spxcoins.dll
2010-04-17 23:09 . 2001-10-25 11:00 24661 ----a-w- c:\windows\system32\spxcoins.dll
2010-04-17 23:09 . 2001-10-25 11:00 13312 -c--a-w- c:\windows\system32\dllcache\irclass.dll
2010-04-17 23:09 . 2001-10-25 11:00 13312 ----a-w- c:\windows\system32\irclass.dll
2010-04-06 09:00 . 2010-04-06 09:00 -------- d-----w- c:\program files\Common Files\Nokia
2010-04-06 09:00 . 2007-09-17 13:53 21632 ----a-w- c:\windows\system32\drivers\pccsmcfd.sys
2010-04-06 09:00 . 2010-04-06 09:00 -------- d-----w- c:\program files\PC Connectivity Solution
2010-04-06 08:57 . 2007-11-29 08:39 8064 ----a-w- c:\windows\system32\drivers\usbser_lowerfltj.sys
2010-04-06 08:57 . 2007-11-29 08:39 8064 ----a-w- c:\windows\system32\drivers\usbser_lowerflt.sys
2010-04-06 08:57 . 2007-11-29 08:39 19328 ----a-w- c:\windows\system32\drivers\ccdcmbo.sys
2010-04-06 08:57 . 2007-11-29 08:39 95744 ----a-w- c:\windows\system32\nmwcdcocls.dll
2010-04-06 08:57 . 2007-11-29 08:39 16896 ----a-w- c:\windows\system32\drivers\ccdcmb.sys
2010-04-06 08:57 . 2007-11-29 08:33 1419232 ----a-w- c:\windows\system32\wdfcoinstaller01005.dll
2010-04-05 19:32 . 2010-04-05 19:32 -------- d-----w- c:\program files\7-Zip
2010-04-04 11:35 . 2010-04-05 11:21 -------- d-----w- c:\program files\Elaborate Bytes
2010-04-04 11:01 . 2010-04-04 11:01 -------- d-----w- c:\program files\SlySoft

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-05-02 18:16 . 2008-01-15 08:15 -------- d-----w- c:\program files\Symantec AntiVirus
2010-05-02 16:31 . 2008-01-25 22:26 -------- d-----w- c:\program files\HLSW
2010-05-02 01:04 . 2008-09-12 22:42 -------- d-----w- c:\program files\FlashGet
2010-05-01 18:01 . 2009-09-28 00:17 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-05-01 09:49 . 2004-09-13 16:21 85524 ----a-w- c:\windows\system32\perfc005.dat
2010-05-01 09:49 . 2004-09-13 16:21 444018 ----a-w- c:\windows\system32\perfh005.dat
2010-04-29 13:39 . 2009-09-28 00:17 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-04-29 13:39 . 2009-09-28 00:17 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-04-25 22:20 . 2007-11-08 12:24 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-04-24 12:01 . 2010-03-14 11:26 -------- d-----w- c:\program files\Tropico Jong
2010-04-24 12:01 . 2008-01-25 20:53 -------- d-----w- c:\program files\Mafia
2010-04-24 09:01 . 2009-10-24 10:53 -------- d-----w- c:\program files\Spybot - Search & Destroy
2010-04-24 01:11 . 2008-09-13 11:39 -------- d-----w- c:\program files\CCleaner
2010-04-17 23:41 . 2004-09-13 16:35 25152 ----a-w- c:\windows\system32\emptyregdb.dat
2010-04-17 20:49 . 2008-01-25 20:07 138376 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2010-04-17 20:49 . 2008-01-25 20:06 202448 ----a-w- c:\windows\system32\PnkBstrB.exe
2010-04-17 13:30 . 2009-03-13 22:17 -------- d-----w- c:\program files\Bulk Image Downloader
2010-04-06 09:10 . 2010-04-06 09:10 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_ccdcmb_01005.Wdf
2010-04-06 09:10 . 2010-04-06 09:10 0 ---ha-w- c:\windows\system32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
2010-04-06 09:00 . 2008-04-13 10:22 -------- d-----w- c:\program files\Nokia
2010-03-30 22:20 . 2010-03-30 22:20 104768 ----a-w- c:\windows\system32\drivers\AnyDVD.sys
2010-03-28 01:22 . 2010-03-28 01:22 -------- d-----w- c:\program files\MediaInfo
2010-03-21 16:02 . 2007-11-08 12:39 -------- d-----w- c:\program files\Roxio
2010-03-21 15:55 . 2008-04-12 14:03 -------- d-----w- c:\program files\GIMP-2.0
2010-03-21 15:53 . 2008-12-23 19:47 -------- d-----w- c:\program files\fraps
2010-03-19 21:29 . 2008-01-25 15:58 -------- d-----w- c:\program files\totalcmd
2010-03-19 13:31 . 2010-03-19 13:31 89256 ------w- c:\windows\system32\ElbyCDIO.dll
2010-03-17 10:10 . 2010-03-17 10:10 664 ----a-w- c:\windows\system32\d3d9caps.dat
2010-03-14 19:30 . 2010-03-14 19:29 -------- d-----w- c:\program files\MahJong Suite
2010-03-10 06:17 . 2008-04-14 06:52 420352 ----a-w- c:\windows\system32\vbscript.dll
2010-03-07 21:24 . 2008-01-25 16:00 -------- d-----w- c:\program files\GomPlayer
2010-02-25 06:18 . 2008-04-14 06:52 916480 ----a-w- c:\windows\system32\wininet.dll
2010-02-24 13:11 . 2008-04-13 22:47 455680 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2010-02-16 19:08 . 2008-04-14 08:06 2026496 ----a-w- c:\windows\system32\ntkrnlpa.exe
2010-02-16 19:08 . 2008-04-14 06:06 2148352 ----a-w- c:\windows\system32\ntoskrnl.exe
2010-02-12 10:03 . 2010-03-19 20:09 293376 ------w- c:\windows\system32\browserchoice.exe
2010-02-12 04:35 . 2008-04-14 06:51 100864 ----a-w- c:\windows\system32\6to4svc.dll
2010-02-11 12:02 . 2008-04-13 22:30 226880 ----a-w- c:\windows\system32\drivers\tcpip6.sys
.

(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"PC Suite Tray"="c:\program files\Nokia\Nokia PC Suite 6\PCSuite.exe" [2008-04-16 1079808]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Dell QuickSet"="c:\program files\Dell\QuickSet\quickset.exe" [2007-05-14 1191936]
"Document Manager"="c:\program files\Wave Systems Corp\Services Manager\DocMgr\bin\docmgr.exe" [2007-01-30 102400]
"SecureUpgrade"="c:\program files\Wave Systems Corp\SecureUpgrade.exe" [2007-01-22 212992]
"IntelZeroConfig"="c:\program files\Intel\Wireless\bin\ZCfgSvc.exe" [2007-02-21 819200]
"IntelWireless"="c:\program files\Intel\Wireless\Bin\ifrmewrk.exe" [2007-02-21 970752]
"KADxMain"="c:\windows\system32\KADxMain.exe" [2006-11-02 282624]
"ccApp"="c:\program files\Common Files\Symantec Shared\ccApp.exe" [2006-11-21 52840]
"NSLauncher"="c:\program files\Nokia\Nokia Software Launcher\NSLauncher.exe" [2007-08-02 3096576]
"Apoint"="c:\program files\Apoint\Apoint.exe" [2007-01-25 159744]
"OODefragTray"="c:\program files\OO Software\Defrag\oodtray.exe" [2009-09-11 2524416]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-01-11 39792]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"tscuninstall"="c:\windows\system32\tscupgrd.exe" [2004-08-18 44544]

c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Bluetooth Manager.lnk - c:\program files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe [2007-1-11 2150400]
Digital Line Detect.lnk - c:\program files\Digital Line Detect\DLG.exe [2007-11-8 50688]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"HonorAutoRunSetting"= 0 (0x0)

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"HonorAutoRunSetting"= 0 (0x0)

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\system32\wxvault.dll

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0OODBS

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Authentication Packages REG_MULTI_SZ msv1_0 wvauth
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KernelFaultCheck
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Persistence
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SigmatelSysTrayApp

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"StrmServer.exe"=c:\program files\Common Files\PCTV Systems\StreamingServer\StrmServer.exe
"RemoTerm.exe"=c:\program files\Common Files\PCTV Systems\RemoTerm\RemoTerm.exe

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"c:\\Program Files\\HLSW\\hlsw.exe"=
"c:\\Program Files\\FlashGet\\flashget.exe"=
"c:\program files\Microsoft ActiveSync\rapimgr.exe"= c:\program files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager
"c:\program files\Microsoft ActiveSync\wcescomm.exe"= c:\program files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager
"c:\program files\Microsoft ActiveSync\WCESMgr.exe"= c:\program files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application
"c:\\Program Files\\T-Mobile\\Speedmanager plus\\Speedmanager plus.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Java\\jre6\\launch4j-tmp\\frd.exe"=
"c:\\Program Files\\totalcmd\\folder\\Charon\\Charon.exe"=
"c:\\Program Files\\Fiat\\ePER\\j2sdk1.4.1\\bin\\javaw.exe"=
"c:\\Program Files\\Opera\\opera.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"26675:TCP"= 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service

R0 sfdrv01a;StarForce Protection Environment Driver (version 1.x.a);c:\windows\system32\drivers\sfdrv01a.sys [5.7.2006 14:46 63352]
R1 atm;NettGain 1200 ATM;c:\windows\system32\drivers\ATM.sys [21.2.2009 13:15 233684]
R1 TSM;TSM Driver - Layered Version;c:\windows\system32\drivers\TSM.sys [21.2.2009 13:15 36413]
R2 ameisvc;Web'n'walk Manager mobile equipment installation service;c:\program files\T-Mobile\Web'n'walk Manager\ameisvc.exe [21.7.2009 17:48 66288]
R2 ASFIPmon;Broadcom ASF IP and SMBIOS Mailbox Monitor;c:\program files\Broadcom\ASFIPMon\AsfIpMon.exe [19.12.2006 16:21 79432]
R2 Ethpdrv;Ethernet Packet Driver;c:\windows\system32\drivers\ethpdrv.sys [1.8.2007 22:30 16376]
R2 Wave UCSPlus;Wave UCSPlus;c:\windows\system32\dllhost.exe [14.4.2008 8:52 5120]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [28.8.2009 20:02 102448]
S0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [25.1.2008 21:11 721904]
S3 adusbser;AnyDATA USB Device for Legacy Serial Communication;c:\windows\system32\drivers\adusbser.sys [18.9.2009 8:05 100992]
S3 Axtmvflt;Axesstel USB Filter Service;c:\windows\system32\drivers\axtmvflt.sys [3.1.2010 14:58 3456]
S3 Axtmvmdm;Axesstel USB Modem;c:\windows\system32\drivers\axtmvmdm.sys [3.1.2010 14:58 40064]
S3 Axtmvprt;Axesstel Diagnostic Port;c:\windows\system32\drivers\axtmvprt.sys [3.1.2010 14:58 38784]
S3 DXEC01;DXEC01;c:\windows\system32\drivers\dxec01.sys [2.11.2006 14:32 97536]
S3 gHidPnp;USB Device Enhanced Function Driver;c:\windows\system32\Drivers\gHidPnp.Sys --> c:\windows\system32\Drivers\gHidPnp.Sys [?]
S3 gMouPS2;PS2 Scroll Mouse Device;c:\windows\system32\DRIVERS\gMouPS2.sys --> c:\windows\system32\DRIVERS\gMouPS2.sys [?]
S3 gMouUsb;USB Mouse Device Drv;c:\windows\system32\DRIVERS\gMouUsb.sys --> c:\windows\system32\DRIVERS\gMouUsb.sys [?]
S3 IpwP;IPWireless 3G Network Adapter;c:\windows\system32\drivers\ipw3gnet.sys [6.12.2009 17:32 51040]
S3 MODRC;DiBcom Infrared Receiver;c:\windows\system32\drivers\modrc.sys [20.11.2009 8:43 13824]
S3 SavRoam;SAVRoam;c:\program files\Symantec AntiVirus\SavRoam.exe [18.5.2007 14:32 119344]
.
Obsah adresáře 'Naplánované úlohy'
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyServer = 112.78.197.37:80
uInternet Settings,ProxyOverride = <local>
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: En&queue current page with Bulk Image Downloader - file://c:\program files\Bulk Image Downloader\iemenu\iebidqueue.htm
IE: Enqueue link target with Bulk Ima&ge Downloader - file://c:\program files\Bulk Image Downloader\iemenu\iebidlinkqueue.htm
IE: Open &link target with Bulk Image Downloader - file://c:\program files\Bulk Image Downloader\iemenu\iebidlink.htm
IE: Open current page with Bulk I&mage Downloader - file://c:\program files\Bulk Image Downloader\iemenu\iebid.htm
IE: Stáhnout pomocí FlashGet - c:\program files\FlashGet\jc_link.htm
IE: Stáhnout vše pomocí FlashGet - c:\program files\FlashGet\jc_all.htm
LSP: c:\windows\system32\biolsp.dll
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -

MSConfigStartUp-CTFMON - (no file)
AddRemove-HijackThis - c:\program files\trend micro\HijackThis.exe



**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-05-02 20:25
Windows 5.1.2600 Service Pack 3 NTFS

skenování skrytých procesů ...

skenování skrytých položek 'Po spuštění' ...

skenování skrytých souborů ...

sken byl úspešně dokončen
skryté soubory: 0

**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------

[HKEY_LOCAL_MACHINE\software\DeterministicNetworks\DNE\Parameters]
"SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
00,5c,00,4d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,79,00,73,00,\

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\System*]
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
.
--------------------- Knihovny navázané na běžící procesy ---------------------

- - - - - - - > 'winlogon.exe'(1396)
c:\windows\system32\wxvault.dll
c:\windows\system32\detoured.dll

- - - - - - - > 'lsass.exe'(1460)
c:\windows\system32\wxvault.dll
c:\windows\system32\detoured.dll
c:\windows\system32\wvauth.dll
c:\windows\system32\biolsp.dll
.
Celkový čas: 2010-05-02 20:27:11
ComboFix-quarantined-files.txt 2010-05-02 18:27

Před spuštěním: Volných bajtů: 85 101 682 688
Po spuštění: Volných bajtů: 85 061 668 864

Current=1 Default=1 Failed=0 LastKnownGood=4 Sets=1,2,3,4
- - End Of File - - 4475CF4AAE803623472E04B6BF88D0B0

Uživatelský avatar
Caroprd111
VIP
VIP
Příspěvky: 13492
Registrován: 22 bře 2009 20:48
Bydliště: Třebíč
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#39 Příspěvek od Caroprd111 »

Jak to vypadá s PC :???:
Obrázek

davros
Návštěvník
Návštěvník
Příspěvky: 67
Registrován: 03 čer 2008 12:38

Re: Prosím o kontrolu logu

#40 Příspěvek od davros »

Musím to zaťukat, beží to jak po drátkách.

Díky Vám za pomoc.

Uživatelský avatar
Caroprd111
VIP
VIP
Příspěvky: 13492
Registrován: 22 bře 2009 20:48
Bydliště: Třebíč
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#41 Příspěvek od Caroprd111 »

Poprosím o nový log z RSIT.
Obrázek

davros
Návštěvník
Návštěvník
Příspěvky: 67
Registrován: 03 čer 2008 12:38

Re: Prosím o kontrolu logu

#42 Příspěvek od davros »

Logfile of random's system information tool 1.06 (written by random/random)
Run by SEVCIKJ at 2010-05-02 21:22:37
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 80 GB (70%) free of 114 GB
Total RAM: 2038 MB (65% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:22:58, on 2.5.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Wave Systems Corp\Services Manager\DocMgr\bin\docmgr.exe
C:\Program Files\Wave Systems Corp\SecureUpgrade.exe
C:\Program Files\Broadcom\ASFIPMon\AsfIpMon.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Apoint\Apoint.exe
C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
C:\Program Files\OO Software\Defrag\oodag.exe
C:\Program Files\Apoint\ApMsgFwd.exe
C:\Program Files\Apoint\Apntex.exe
C:\Program Files\Apoint\HidFind.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\PnkBstrB.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\PROGRA~1\MICROS~3\wcescomm.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\StacSV.exe
C:\PROGRA~1\MICROS~3\rapimgr.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\dllhost.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\T-Mobile\Web'n'walk Manager\ameisvc.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\system32\dllhost.exe
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
C:\Program Files\PC Connectivity Solution\Transports\NclToBTSrv.exe
C:\Program Files\Intel\Wireless\Bin\Dot1XCfg.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Symantec AntiVirus\vptray.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Opera\opera.exe
C:\Program Files\totalcmd\TOTALCMD.EXE
C:\Program Files\totalcmd\folder\uklid\RSIT.exe
C:\Program Files\trend micro\SEVCIKJ.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 112.78.197.37:80
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: IeCatch5 Class - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\Program Files\FlashGet\jccatch.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 6.0 CE\Acrobat\AcroIEFavClient.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: gFlash Class - {F156768E-81EF-470C-9057-481BA8380DBA} - C:\Program Files\FlashGet\getflash.dll
O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\Program Files\FlashGet\fgiebar.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 6.0 CE\Acrobat\AcroIEFavClient.dll
O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe
O4 - HKLM\..\Run: [Document Manager] C:\Program Files\Wave Systems Corp\Services Manager\DocMgr\bin\docmgr.exe
O4 - HKLM\..\Run: [SecureUpgrade] C:\Program Files\Wave Systems Corp\SecureUpgrade.exe
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [KADxMain] C:\WINDOWS\system32\KADxMain.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [NSLauncher] C:\Program Files\Nokia\Nokia Software Launcher\NSLauncher.exe /startup
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
O4 - HKLM\..\Run: [OODefragTray] C:\Program Files\OO Software\Defrag\oodtray.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\\vptray.exe
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\PROGRA~1\MICROS~3\wcescomm.exe"
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files\Nokia\Nokia PC Suite 6\PCSuite.exe" -onlytray
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'Default user')
O4 - Global Startup: Bluetooth Manager.lnk = ?
O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: En&queue current page with Bulk Image Downloader - file://C:\Program Files\Bulk Image Downloader\iemenu\iebidqueue.htm
O8 - Extra context menu item: Enqueue link target with Bulk Ima&ge Downloader - file://C:\Program Files\Bulk Image Downloader\iemenu\iebidlinkqueue.htm
O8 - Extra context menu item: Open &link target with Bulk Image Downloader - file://C:\Program Files\Bulk Image Downloader\iemenu\iebidlink.htm
O8 - Extra context menu item: Open current page with Bulk I&mage Downloader - file://C:\Program Files\Bulk Image Downloader\iemenu\iebid.htm
O8 - Extra context menu item: Stáhnout pomocí FlashGet - C:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: Stáhnout vše pomocí FlashGet - C:\Program Files\FlashGet\jc_all.htm
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra 'Tools' menuitem: Vytvořit mobilní oblíbenou položku... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O20 - AppInit_DLLs: C:\WINDOWS\system32\wxvault.dll
O23 - Service: Web'n'walk Manager mobile equipment installation service (ameisvc) - Gemfor s.r.o. - C:\Program Files\T-Mobile\Web'n'walk Manager\ameisvc.exe
O23 - Service: Broadcom ASF IP and SMBIOS Mailbox Monitor (ASFIPmon) - Broadcom Corporation - C:\Program Files\Broadcom\ASFIPMon\AsfIpMon.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
O23 - Service: O&O Defrag - O&O Software GmbH - C:\Program Files\OO Software\Defrag\oodag.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\WINDOWS\system32\PnkBstrB.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
O23 - Service: SecureStorageService - Wave Systems Corp. - C:\Program Files\Wave Systems Corp\Secure Storage Manager\SecureStorageService.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: SigmaTel Audio Service (STacSV) - SigmaTel, Inc. - C:\WINDOWS\system32\StacSV.exe
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe
O23 - Service: NTRU TSS v1.2.1.12 TCS (tcsd_win32.exe) - Unknown owner - C:\Program Files\NTRU Cryptosystems\NTRU TCG Software Stack\bin\tcsd_win32.exe
O23 - Service: Intel(R) PROSet/Wireless SSO Service (WLANKEEPER) - Intel(R) Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe

--
End of file - 11170 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2F364306-AA45-47B5-9F9D-39A8B94E7EF7}]
IeCatch5 Class - C:\Program Files\FlashGet\jccatch.dll [2006-05-16 81920]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
AcroIEToolbarHelper Class - C:\Program Files\Adobe\Acrobat 6.0 CE\Acrobat\AcroIEFavClient.dll [2003-05-12 147456]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-04-18 35840]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-04-18 73728]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F156768E-81EF-470C-9057-481BA8380DBA}]
gFlash Class - C:\Program Files\FlashGet\getflash.dll [2006-09-12 126976]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{E0E899AB-F487-11D5-8D29-0050BA6940E3} - FlashGet Bar - C:\Program Files\FlashGet\fgiebar.dll [2005-06-07 86016]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files\Adobe\Acrobat 6.0 CE\Acrobat\AcroIEFavClient.dll [2003-05-12 147456]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Dell QuickSet"=C:\Program Files\Dell\QuickSet\quickset.exe [2007-05-14 1191936]
"Document Manager"=C:\Program Files\Wave Systems Corp\Services Manager\DocMgr\bin\docmgr.exe [2007-01-30 102400]
"SecureUpgrade"=C:\Program Files\Wave Systems Corp\SecureUpgrade.exe [2007-01-22 212992]
"IntelZeroConfig"=C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe [2007-02-21 819200]
"IntelWireless"=C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe [2007-02-21 970752]
"KADxMain"=C:\WINDOWS\system32\KADxMain.exe [2006-11-02 282624]
"ccApp"=C:\Program Files\Common Files\Symantec Shared\ccApp.exe [2006-11-21 52840]
"NSLauncher"=C:\Program Files\Nokia\Nokia Software Launcher\NSLauncher.exe [2007-08-02 3096576]
"Apoint"=C:\Program Files\Apoint\Apoint.exe [2007-01-25 159744]
"OODefragTray"=C:\Program Files\OO Software\Defrag\oodtray.exe [2009-09-12 2524416]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-01-11 39792]
"vptray"=C:\PROGRA~1\SYMANT~1\\vptray.exe [2007-05-18 126000]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"H/PC Connection Agent"=C:\PROGRA~1\MICROS~3\wcescomm.exe [2006-06-27 1211176]
"PC Suite Tray"=C:\Program Files\Nokia\Nokia PC Suite 6\PCSuite.exe [2008-04-16 1079808]

C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Bluetooth Manager.lnk - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
Digital Line Detect.lnk - C:\Program Files\Digital Line Detect\DLG.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="C:\WINDOWS\system32\wxvault.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2007-05-18 204800]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\NavLogon]
C:\WINDOWS\system32\NavLogon.dll [2007-05-18 43568]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"authentication packages"=msv1_0
wvauth

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"HonorAutoRunSetting"=0
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\WINDOWS\system32\PnkBstrA.exe"="C:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA"
"C:\WINDOWS\system32\PnkBstrB.exe"="C:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB"
"C:\Program Files\HLSW\hlsw.exe"="C:\Program Files\HLSW\hlsw.exe:*:Enabled:hlsw"
"C:\Program Files\FlashGet\flashget.exe"="C:\Program Files\FlashGet\flashget.exe:*:Enabled:Flashget"
"C:\Program Files\Microsoft ActiveSync\rapimgr.exe"="C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager"
"C:\Program Files\Microsoft ActiveSync\wcescomm.exe"="C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager"
"C:\Program Files\Microsoft ActiveSync\WCESMgr.exe"="C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application"
"C:\Program Files\T-Mobile\Speedmanager plus\Speedmanager plus.exe"="C:\Program Files\T-Mobile\Speedmanager plus\Speedmanager plus.exe:*:Enabled:Speedmanager plus"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Java\jre6\launch4j-tmp\frd.exe"="C:\Program Files\Java\jre6\launch4j-tmp\frd.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Program Files\PCTV Systems\DistanTV\RemoteTVApp.exe"="C:\Program Files\PCTV Systems\DistanTV\RemoteTVApp.exe:LocalSubNet:Enabled:PCTV Systems DistanTV"
"C:\Program Files\Common Files\PCTV Systems\StreamingServer\StrmServer.exe"="C:\Program Files\Common Files\PCTV Systems\StreamingServer\StrmServer.exe:LocalSubNet:Enabled:PCTV Systems Streaming Server"
"C:\Program Files\totalcmd\folder\Charon\Charon.exe"="C:\Program Files\totalcmd\folder\Charon\Charon.exe:*:Enabled:Charon - A proxy checking / scanning program."
"C:\Program Files\Fiat\ePER\j2sdk1.4.1\bin\javaw.exe"="C:\Program Files\Fiat\ePER\j2sdk1.4.1\bin\javaw.exe:*:Enabled:javaw"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Microsoft ActiveSync\rapimgr.exe"="C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager"
"C:\Program Files\Microsoft ActiveSync\wcescomm.exe"="C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager"
"C:\Program Files\Microsoft ActiveSync\WCESMgr.exe"="C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

======List of files/folders created in the last 1 months======

2010-05-02 21:22:39 ----D---- C:\Program Files\trend micro
2010-05-02 21:22:37 ----D---- C:\rsit
2010-05-02 20:27:11 ----A---- C:\ComboFix.txt
2010-05-02 20:19:10 ----A---- C:\WINDOWS\MBR.exe
2010-05-02 20:19:09 ----A---- C:\WINDOWS\zip.exe
2010-05-02 20:19:09 ----A---- C:\WINDOWS\SWXCACLS.exe
2010-05-02 20:19:09 ----A---- C:\WINDOWS\SWSC.exe
2010-05-02 20:19:09 ----A---- C:\WINDOWS\SWREG.exe
2010-05-02 20:19:09 ----A---- C:\WINDOWS\sed.exe
2010-05-02 20:19:09 ----A---- C:\WINDOWS\PEV.exe
2010-05-02 20:19:09 ----A---- C:\WINDOWS\NIRCMD.exe
2010-05-02 20:19:09 ----A---- C:\WINDOWS\grep.exe
2010-05-02 20:19:02 ----D---- C:\ComboFix
2010-05-02 20:17:44 ----D---- C:\WINDOWS\ERDNT
2010-05-02 20:17:40 ----D---- C:\Qoobox
2010-05-02 18:54:27 ----D---- C:\Avenger
2010-05-02 18:54:26 ----A---- C:\avenger.txt
2010-05-02 14:18:05 ----D---- C:\_OTL
2010-05-01 20:01:10 ----A---- C:\mbam-error.txt
2010-05-01 11:30:30 ----D---- C:\WINDOWS\CSC
2010-05-01 11:30:05 ----A---- C:\WINDOWS\ntbtlog.txt
2010-05-01 10:13:27 ----N---- C:\WINDOWS\system32\spmsg.dll
2010-04-24 19:01:45 ----D---- C:\Program Files\Hetman Software
2010-04-24 14:14:12 ----RAD---- C:\autorun.inf
2010-04-24 13:51:47 ----D---- C:\UsbFix
2010-04-24 03:13:14 ----D---- C:\Program Files\Opera
2010-04-23 21:35:19 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2010-04-23 21:35:04 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2010-04-18 20:09:08 ----D---- C:\Program Files\Fiat
2010-04-18 14:21:42 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2010-04-18 14:21:32 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2010-04-18 14:21:24 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2010-04-18 14:21:11 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2010-04-18 14:21:01 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2010-04-18 14:20:51 ----HDC---- C:\WINDOWS\$NtUninstallKB971468$
2010-04-18 14:20:36 ----HDC---- C:\WINDOWS\$NtUninstallKB979683$
2010-04-18 14:20:12 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2010-04-18 14:20:02 ----HDC---- C:\WINDOWS\$NtUninstallKB980232$
2010-04-18 14:19:50 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-04-18 14:19:38 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-04-18 14:19:22 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2010-04-18 14:19:11 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-04-18 14:18:55 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2010-04-18 14:18:44 ----HDC---- C:\WINDOWS\$NtUninstallKB978037$
2010-04-18 14:18:33 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2010-04-18 14:18:25 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2010-04-18 14:18:15 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2010-04-18 14:17:52 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2010-04-18 14:17:36 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2010-04-18 14:17:26 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-04-18 14:16:58 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2010-04-18 14:16:47 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-04-18 14:16:24 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2010-04-18 14:16:12 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-04-18 14:15:59 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2010-04-18 14:15:45 ----HDC---- C:\WINDOWS\$NtUninstallKB975561$
2010-04-18 14:15:31 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2010-04-18 14:15:19 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2010-04-18 14:15:02 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2010-04-18 14:14:51 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-04-18 14:14:37 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2010-04-18 14:14:26 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2010-04-18 14:14:17 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2010-04-18 14:13:10 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2010-04-18 14:12:58 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2010-04-18 14:12:39 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2010-04-18 14:12:28 ----HDC---- C:\WINDOWS\$NtUninstallKB978601$
2010-04-18 14:12:12 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2010-04-18 14:12:02 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2010-04-18 14:11:46 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-04-18 14:11:26 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2010-04-18 14:11:02 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2010-04-18 14:10:51 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-04-18 14:10:39 ----HDC---- C:\WINDOWS\$NtUninstallKB954459$
2010-04-18 14:10:09 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2010-04-18 14:09:52 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2010-04-18 14:09:06 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2010-04-18 14:08:58 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2010-04-18 14:08:43 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2010-04-18 14:08:30 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2010-04-18 14:08:21 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2010-04-18 14:07:35 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2010-04-18 14:07:24 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2010-04-18 14:07:07 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2010-04-18 14:06:59 ----HDC---- C:\WINDOWS\$NtUninstallKB979306$
2010-04-18 14:06:50 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2010-04-18 14:06:39 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-04-18 14:06:26 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-04-18 14:06:11 ----HDC---- C:\WINDOWS\$NtUninstallKB969947$
2010-04-18 10:05:32 ----A---- C:\WINDOWS\system32\igfxres.dll
2010-04-18 09:59:53 ----D---- C:\WINDOWS\Prefetch
2010-04-18 01:43:51 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2010-04-18 01:09:46 ----A---- C:\WINDOWS\system32\spxcoins.dll
2010-04-18 01:09:46 ----A---- C:\WINDOWS\system32\irclass.dll
2010-04-06 11:00:55 ----D---- C:\Program Files\Common Files\Nokia
2010-04-06 11:00:24 ----D---- C:\Program Files\PC Connectivity Solution
2010-04-06 10:57:53 ----A---- C:\WINDOWS\system32\wdfcoinstaller01005.dll
2010-04-06 10:57:53 ----A---- C:\WINDOWS\system32\nmwcdcocls.dll
2010-04-06 10:55:28 ----D---- C:\Documents and Settings\All Users\Data aplikací\Installations
2010-04-05 21:32:12 ----D---- C:\Program Files\7-Zip
2010-04-05 13:21:37 ----D---- C:\Documents and Settings\SEVCIKJ\Data aplikací\Vso
2010-04-04 13:35:56 ----D---- C:\Program Files\Elaborate Bytes
2010-04-04 13:32:04 ----D---- C:\Documents and Settings\All Users\Data aplikací\SlySoft
2010-04-04 13:01:59 ----D---- C:\Program Files\SlySoft

======List of files/folders modified in the last 1 months======

2010-05-02 21:22:39 ----RD---- C:\Program Files
2010-05-02 21:21:10 ----A---- C:\WINDOWS\WINCMD.INI
2010-05-02 20:28:22 ----D---- C:\Program Files\Symantec AntiVirus
2010-05-02 20:27:20 ----D---- C:\WINDOWS\temp
2010-05-02 20:26:43 ----SD---- C:\WINDOWS\Tasks
2010-05-02 20:25:43 ----D---- C:\WINDOWS
2010-05-02 20:25:43 ----A---- C:\WINDOWS\system.ini
2010-05-02 20:24:01 ----D---- C:\WINDOWS\system32\drivers
2010-05-02 20:24:01 ----D---- C:\WINDOWS\system32
2010-05-02 20:24:01 ----D---- C:\WINDOWS\AppPatch
2010-05-02 20:23:53 ----D---- C:\Program Files\Common Files
2010-05-02 20:19:46 ----D---- C:\WINDOWS\system32\CatRoot2
2010-05-02 20:19:23 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-05-02 20:19:13 ----SHD---- C:\System Volume Information
2010-05-02 20:19:13 ----D---- C:\WINDOWS\system32\Restore
2010-05-02 19:04:59 ----HD---- C:\WINDOWS\inf
2010-05-02 18:57:51 ----D---- C:\WINDOWS\Registration
2010-05-02 18:57:37 ----A---- C:\WINDOWS\ModemLog_Conexant HDA D330 MDC V.92 Modem.txt
2010-05-02 18:31:00 ----D---- C:\Program Files\HLSW
2010-05-02 03:04:30 ----D---- C:\Program Files\FlashGet
2010-05-02 02:37:19 ----A---- C:\WINDOWS\NeroDigital.ini
2010-05-02 02:01:18 ----D---- C:\Documents and Settings\SEVCIKJ\Data aplikací\XnView
2010-05-01 22:23:52 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-05-01 20:01:09 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2010-05-01 17:46:16 ----D---- C:\Documents and Settings\SEVCIKJ\Data aplikací\Wave Systems Corp
2010-05-01 11:49:02 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-05-01 10:14:27 ----D---- C:\WINDOWS\system32\CatRoot
2010-05-01 10:11:52 ----SHD---- C:\WINDOWS\Installer
2010-05-01 10:11:49 ----D---- C:\Config.Msi
2010-05-01 10:11:34 ----DC---- C:\WINDOWS\system32\DRVSTORE
2010-05-01 01:52:25 ----D---- C:\Documents and Settings\All Users\Data aplikací\Lavasoft
2010-05-01 01:42:46 ----D---- C:\WINDOWS\SxsCaPendDel
2010-04-30 20:06:01 ----D---- C:\WINDOWS\WinSxS
2010-04-29 22:38:54 ----D---- C:\WINDOWS\system32\FxsTmp
2010-04-27 19:23:50 ----A---- C:\WINDOWS\ModemLog_Axesstel USB Modem.txt
2010-04-26 00:20:57 ----HD---- C:\Program Files\InstallShield Installation Information
2010-04-24 16:37:00 ----D---- C:\Documents and Settings\SEVCIKJ\Data aplikací\vlc
2010-04-24 14:01:32 ----D---- C:\Program Files\Tropico Jong
2010-04-24 14:01:32 ----D---- C:\Program Files\Mafia
2010-04-24 11:01:33 ----D---- C:\Program Files\Spybot - Search & Destroy
2010-04-24 11:01:32 ----D---- C:\Documents and Settings\All Users\Data aplikací\Spybot - Search & Destroy
2010-04-24 03:11:43 ----D---- C:\Program Files\CCleaner
2010-04-18 20:10:01 ----HD---- C:\Program Files\Uninstall Information
2010-04-18 17:13:36 ----D---- C:\WINDOWS\Minidump
2010-04-18 17:13:36 ----D---- C:\WINDOWS\Debug
2010-04-18 14:24:15 ----D---- C:\WINDOWS\system32\wbem
2010-04-18 14:15:48 ----D---- C:\Program Files\Movie Maker
2010-04-18 14:12:05 ----D---- C:\Program Files\Outlook Express
2010-04-18 13:19:05 ----D---- C:\WINDOWS\SoftwareDistribution
2010-04-18 13:19:02 ----D---- C:\WINDOWS\Help
2010-04-18 12:10:45 ----D---- C:\WINDOWS\system32\cs-cz
2010-04-18 12:10:36 ----D---- C:\Program Files\Internet Explorer
2010-04-18 11:56:58 ----HDC---- C:\WINDOWS\ie8
2010-04-18 03:04:07 ----D---- C:\WINDOWS\system
2010-04-18 03:03:59 ----D---- C:\WINDOWS\l2schemas
2010-04-18 03:03:58 ----D---- C:\WINDOWS\system32\usmt
2010-04-18 03:03:55 ----D---- C:\WINDOWS\system32\Setup
2010-04-18 03:03:45 ----D---- C:\WINDOWS\Media
2010-04-18 03:03:44 ----D---- C:\WINDOWS\network diagnostic
2010-04-18 03:03:17 ----D---- C:\WINDOWS\PeerNet
2010-04-18 03:03:17 ----D---- C:\WINDOWS\ime
2010-04-18 03:02:44 ----D---- C:\WINDOWS\system32\npp
2010-04-18 03:02:30 ----D---- C:\WINDOWS\msagent
2010-04-18 03:02:19 ----D---- C:\WINDOWS\system32\cs
2010-04-18 03:01:41 ----D---- C:\WINDOWS\ehome
2010-04-18 03:00:45 ----D---- C:\WINDOWS\twain_32
2010-04-18 03:00:29 ----D---- C:\WINDOWS\system32\icsxml
2010-04-18 02:59:49 ----D---- C:\WINDOWS\system32\1033
2010-04-18 02:59:49 ----D---- C:\WINDOWS\system32\1029
2010-04-18 02:58:42 ----D---- C:\WINDOWS\Driver Cache
2010-04-18 01:51:04 ----D---- C:\WINDOWS\system32\config
2010-04-18 01:46:25 ----D---- C:\Program Files\Windows Media Player
2010-04-18 01:45:52 ----D---- C:\WINDOWS\security
2010-04-18 01:45:20 ----A---- C:\WINDOWS\ODBCINST.INI
2010-04-18 01:44:36 ----D---- C:\WINDOWS\system32\ias
2010-04-18 01:43:54 ----RD---- C:\WINDOWS\Web
2010-04-18 01:43:42 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2010-04-18 01:43:23 ----A---- C:\WINDOWS\win.ini
2010-04-18 01:42:59 ----D---- C:\WINDOWS\system32\oobe
2010-04-18 01:41:31 ----D---- C:\WINDOWS\system32\Com
2010-04-18 01:40:19 ----D---- C:\WINDOWS\Cursors
2010-04-18 01:40:10 ----D---- C:\Program Files\Windows NT
2010-04-18 01:39:48 ----D---- C:\WINDOWS\addins
2010-04-18 01:36:43 ----ASH---- C:\boot.ini
2010-04-18 01:23:21 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-04-18 01:13:52 ----D---- C:\drivers
2010-04-18 01:10:26 ----RSD---- C:\WINDOWS\Fonts
2010-04-18 01:09:21 ----ASH---- C:\Documents and Settings\All Users\Data aplikací\desktop.ini
2010-04-17 22:49:04 ----A---- C:\WINDOWS\system32\PnkBstrB.exe
2010-04-17 15:30:56 ----D---- C:\Program Files\Bulk Image Downloader
2010-04-17 03:56:57 ----HD---- C:\WINDOWS\$hf_mig$
2010-04-09 23:20:13 ----D---- C:\Documents and Settings\SEVCIKJ\Data aplikací\BID
2010-04-09 21:03:30 ----D---- C:\Documents and Settings\SEVCIKJ\Data aplikací\MahJong Suite
2010-04-06 19:52:54 ----A---- C:\WINDOWS\system32\MRT.exe
2010-04-06 11:19:19 ----D---- C:\Documents and Settings\SEVCIKJ\Data aplikací\PC Suite
2010-04-06 11:00:54 ----D---- C:\Program Files\Nokia

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 APPDRV;APPDRV; C:\WINDOWS\SYSTEM32\DRIVERS\APPDRV.SYS [2005-08-12 16128]
R1 atm;NettGain 1200 ATM; \??\C:\WINDOWS\system32\drivers\atm.sys []
R1 DLACDBHM;DLACDBHM; C:\WINDOWS\System32\Drivers\DLACDBHM.SYS [2006-08-11 12920]
R1 DLARTL_M;DLARTL_M; C:\WINDOWS\System32\Drivers\DLARTL_M.SYS [2006-08-11 28184]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys []
R1 ElbyCDIO;ElbyCDIO Driver; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [2010-01-01 26024]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 prodrv06;StarForce Protection Environment Driver v6; C:\WINDOWS\System32\drivers\prodrv06.sys [2003-10-10 52128]
R1 SAVRT;SAVRT; \??\C:\Program Files\Symantec AntiVirus\savrt.sys []
R1 SAVRTPEL;SAVRTPEL; \??\C:\Program Files\Symantec AntiVirus\Savrtpel.sys []
R1 SPBBCDrv;SPBBCDrv; \??\C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCDrv.sys []
R1 SYMTDI;SYMTDI; C:\WINDOWS\System32\Drivers\SYMTDI.SYS [2007-02-12 196752]
R1 Tosrfcom;Bluetooth RFCOMM; C:\WINDOWS\System32\Drivers\tosrfcom.sys [2007-04-26 64896]
R1 TSM;TSM Driver - Layered Version; \??\C:\WINDOWS\system32\drivers\tsm.sys []
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2008-04-14 8832]
R1 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2001-10-25 12032]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.6.0.0; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2007-11-08 21425]
R2 atksgt;atksgt; C:\WINDOWS\system32\DRIVERS\atksgt.sys [2008-04-18 278984]
R2 BASFND;BASFND; \??\C:\Program Files\Broadcom\ASFIPMon\BASFND.sys []
R2 DLABMFSM;DLABMFSM; C:\WINDOWS\System32\DLA\DLABMFSM.SYS [2006-08-18 35096]
R2 DLABOIOM;DLABOIOM; C:\WINDOWS\System32\DLA\DLABOIOM.SYS [2006-08-18 32472]
R2 DLADResM;DLADResM; C:\WINDOWS\System32\DLA\DLADResM.SYS [2006-08-18 9400]
R2 DLAIFS_M;DLAIFS_M; C:\WINDOWS\System32\DLA\DLAIFS_M.SYS [2006-08-18 104472]
R2 DLAOPIOM;DLAOPIOM; C:\WINDOWS\System32\DLA\DLAOPIOM.SYS [2006-08-18 26008]
R2 DLAPoolM;DLAPoolM; C:\WINDOWS\System32\DLA\DLAPoolM.SYS [2006-08-18 14520]
R2 DLAUDF_M;DLAUDF_M; C:\WINDOWS\System32\DLA\DLAUDF_M.SYS [2006-08-18 97848]
R2 DLAUDFAM;DLAUDFAM; C:\WINDOWS\System32\DLA\DLAUDFAM.SYS [2006-08-18 94648]
R2 DRVNDDM;DRVNDDM; C:\WINDOWS\System32\Drivers\DRVNDDM.SYS [2006-08-11 51768]
R2 Ethpdrv;Ethernet Packet Driver; C:\WINDOWS\system32\DRIVERS\ethpdrv.sys [2007-08-01 16376]
R2 lirsgt;lirsgt; C:\WINDOWS\system32\DRIVERS\lirsgt.sys [2008-04-18 25416]
R2 mdmxsdk;mdmxsdk; C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [2007-01-31 12672]
R2 s24trans;WLAN Transport; C:\WINDOWS\system32\DRIVERS\s24trans.sys [2007-02-21 12416]
R3 AnyDVD;AnyDVD; C:\WINDOWS\System32\Drivers\AnyDVD.sys [2010-03-31 104768]
R3 ApfiltrService;Alps Touch Pad Filter Driver for Windows 2000/XP/Vista; C:\WINDOWS\system32\DRIVERS\Apfiltr.sys [2007-02-17 132608]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-14 60800]
R3 b57w2k;Broadcom NetXtreme Gigabit Ethernet; C:\WINDOWS\system32\DRIVERS\b57xp32.sys [2007-03-18 160256]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2008-04-14 13952]
R3 DNE;Deterministic Network Enhancer Miniport; C:\WINDOWS\system32\DRIVERS\dne2000.sys [2005-10-11 110080]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys []
R3 guardian2;guardian2; C:\WINDOWS\System32\Drivers\oz776.sys [2007-04-16 56576]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 HSF_DPV;HSF_DPV; C:\WINDOWS\system32\DRIVERS\HSF_DPV.sys [2007-01-31 989696]
R3 HSFHWAZL;HSFHWAZL; C:\WINDOWS\system32\DRIVERS\HSFHWAZL.sys [2007-01-31 209152]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\igxpmp32.sys [2007-05-18 5707744]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 NAVENG;NAVENG; \??\C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20100430.003\naveng.sys []
R3 NAVEX15;NAVEX15; \??\C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20100430.003\navex15.sys []
R3 NETw4x32;Ovladač adaptéru Intel(R) Wireless WiFi Link pro systém Windows XP 32 Bit; C:\WINDOWS\system32\DRIVERS\NETw4x32.sys [2007-03-12 2203520]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-14 61824]
R3 STHDA;SigmaTel High Definition Audio CODEC; C:\WINDOWS\system32\drivers\sthda.sys [2007-02-19 1228296]
R3 SymEvent;SymEvent; \??\C:\WINDOWS\system32\Drivers\SYMEVENT.SYS []
R3 SYMREDRV;SYMREDRV; C:\WINDOWS\System32\Drivers\SYMREDRV.SYS [2007-02-12 24720]
R3 tosporte;Bluetooth COM Port; C:\WINDOWS\system32\DRIVERS\tosporte.sys [2007-04-26 41600]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-14 30208]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-14 59520]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
R3 winachsf;winachsf; C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys [2007-01-31 730112]
S3 adusbser;AnyDATA USB Device for Legacy Serial Communication; C:\WINDOWS\system32\DRIVERS\adusbser.sys [2007-11-14 100992]
S3 Axtmvflt;Axesstel USB Filter Service; C:\WINDOWS\system32\DRIVERS\Axtmvflt.sys [2007-03-22 3456]
S3 Axtmvmdm;Axesstel USB Modem; C:\WINDOWS\system32\DRIVERS\Axtmvmdm.sys [2007-03-26 40064]
S3 Axtmvprt;Axesstel Diagnostic Port; C:\WINDOWS\System32\Drivers\Axtmvprt.sys [2007-03-26 38784]
S3 catchme;catchme; \??\C:\DOCUME~1\SEVCIKJ\LOCALS~1\Temp\catchme.sys []
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 DXEC01;DXEC01; C:\WINDOWS\system32\drivers\dxec01.sys [2006-11-02 97536]
S3 EL90XBC;3Com EtherLink XL 90XB/C Adapter Driver; C:\WINDOWS\system32\DRIVERS\el90xbc5.sys [2001-08-17 66591]
S3 gHidPnp;USB Device Enhanced Function Driver; C:\WINDOWS\System32\Drivers\gHidPnp.Sys []
S3 gMouPS2;PS2 Scroll Mouse Device; C:\WINDOWS\system32\DRIVERS\gMouPS2.sys []
S3 gMouUsb;USB Mouse Device Drv; C:\WINDOWS\system32\DRIVERS\gMouUsb.sys []
S3 IpwP;IPWireless 3G Network Adapter; C:\WINDOWS\system32\DRIVERS\ipw3gnet.sys [2008-10-10 51040]
S3 mbr;mbr; \??\C:\DOCUME~1\SEVCIKJ\LOCALS~1\Temp\mbr.sys []
S3 mod7700;DiBcom DIB7700 based TV tuner device; C:\WINDOWS\System32\Drivers\mod7700.sys [2008-06-26 819072]
S3 MODRC;DiBcom Infrared Receiver; C:\WINDOWS\system32\DRIVERS\modrc.sys [2007-10-19 13824]
S3 MPE;Filtr MPE BDA; C:\WINDOWS\system32\DRIVERS\MPE.sys [2008-04-14 15232]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 nmwcd;Nokia USB Phone Parent; C:\WINDOWS\system32\drivers\ccdcmb.sys [2007-11-29 16896]
S3 nmwcdc;Nokia USB Generic; C:\WINDOWS\system32\drivers\ccdcmbo.sys [2007-11-29 19328]
S3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2004-08-04 1897408]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2007-09-17 21632]
S3 PnkBstrK;PnkBstrK; \??\C:\WINDOWS\system32\drivers\PnkBstrK.sys []
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 toshidpt;Bluetooth HID Port; C:\WINDOWS\system32\drivers\Toshidpt.sys [2007-04-26 3712]
S3 tosrfbd;Bluetooth RFBUS; C:\WINDOWS\system32\DRIVERS\tosrfbd.sys [2007-04-26 113920]
S3 tosrfbnp;Bluetooth RFBNEP; C:\WINDOWS\System32\Drivers\tosrfbnp.sys [2007-04-26 36480]
S3 Tosrfhid;Bluetooth RFHID; C:\WINDOWS\system32\DRIVERS\Tosrfhid.sys [2007-04-26 73600]
S3 tosrfnds;Bluetooth Personal Area Network; C:\WINDOWS\system32\DRIVERS\tosrfnds.sys [2007-04-26 18612]
S3 Tosrfusb;Bluetooth USB Controller; C:\WINDOWS\system32\DRIVERS\tosrfusb.sys [2007-04-26 41856]
S3 upperdev;upperdev; C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys [2007-11-29 8064]
S3 usb_rndisx;USB RNDIS Adapter; C:\WINDOWS\system32\DRIVERS\usb8023x.sys [2008-04-14 12800]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 usbser;Nokia USB Serial Port; C:\WINDOWS\system32\DRIVERS\usbser.sys [2008-04-14 26112]
S3 UsbserFilt;UsbserFilt; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys [2007-11-29 8064]
S3 wceusbsh;Windows CE USB Serial Host Driver; C:\WINDOWS\system32\DRIVERS\wceusbsh.sys [2008-04-14 31744]
S3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2006-11-02 492000]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-15 82688]
S4 agp440;Filtr Intel sběrnice AGP; C:\WINDOWS\system32\DRIVERS\agp440.sys [2008-04-13 42368]
S4 agpCPQ;Filtr Compaq sběrnice AGP; C:\WINDOWS\system32\DRIVERS\agpCPQ.sys [2008-04-13 44928]
S4 alim1541;Filtr ALI sběrnice AGP; C:\WINDOWS\system32\DRIVERS\alim1541.sys [2008-04-13 42752]
S4 amdagp;Ovladač filtru AMD portu AGP; C:\WINDOWS\system32\DRIVERS\amdagp.sys [2008-04-13 43008]
S4 cbidf;cbidf; C:\WINDOWS\system32\DRIVERS\cbidf2k.sys [2001-10-25 13952]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\DRIVERS\intelide.sys [2008-04-14 5504]
S4 sisagp;Filtr SIS sběrnice AGP ; C:\WINDOWS\system32\DRIVERS\sisagp.sys [2008-04-13 40960]
S4 viaagp;Filtr VIA sběrnice AGP ; C:\WINDOWS\system32\DRIVERS\viaagp.sys [2008-04-13 42240]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ameisvc;Web'n'walk Manager mobile equipment installation service; C:\Program Files\T-Mobile\Web'n'walk Manager\ameisvc.exe [2009-07-21 66288]
R2 ASFIPmon;Broadcom ASF IP and SMBIOS Mailbox Monitor; C:\Program Files\Broadcom\ASFIPMon\AsfIpMon.exe [2006-12-19 79432]
R2 ccEvtMgr;Symantec Event Manager; C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe [2006-11-21 192104]
R2 ccSetMgr;Symantec Settings Manager; C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe [2006-11-21 169576]
R2 DefWatch;Symantec AntiVirus Definition Watcher; C:\Program Files\Symantec AntiVirus\DefWatch.exe [2007-05-18 31280]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\Wireless\Bin\EvtEng.exe [2007-02-21 643072]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-04-18 152984]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 NICCONFIGSVC;NICCONFIGSVC; C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe [2007-05-14 475136]
R2 O&O Defrag;O&O Defrag; C:\Program Files\OO Software\Defrag\oodag.exe [2009-09-12 1488128]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2008-01-26 66872]
R2 PnkBstrB;PnkBstrB; C:\WINDOWS\system32\PnkBstrB.exe [2010-04-17 202448]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe [2007-02-21 327680]
R2 S24EventMonitor;Intel(R) PROSet/Wireless Service; C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe [2007-02-21 983040]
R2 SPBBCSvc;Symantec SPBBCSvc; C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe [2007-01-10 1160792]
R2 STacSV;SigmaTel Audio Service; C:\WINDOWS\system32\StacSV.exe [2007-02-19 90112]
R2 Symantec AntiVirus;Symantec AntiVirus; C:\Program Files\Symantec AntiVirus\Rtvscan.exe [2007-05-18 1828912]
R2 Wave UCSPlus;Wave UCSPlus; C:\WINDOWS\system32\dllhost.exe [2008-04-14 5120]
R2 WLANKEEPER;Intel(R) PROSet/Wireless SSO Service; C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe [2007-02-21 294912]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2008-04-29 572928]
S2 Fax;Fax; C:\WINDOWS\system32\fxssvc.exe [2008-04-14 268288]
S2 tcsd_win32.exe;NTRU TSS v1.2.1.12 TCS; C:\Program Files\NTRU Cryptosystems\NTRU TCG Software Stack\bin\tcsd_win32.exe [2007-02-01 1466368]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 LiveUpdate;LiveUpdate; C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE [2006-09-13 2528960]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 SavRoam;SAVRoam; C:\Program Files\Symantec AntiVirus\SavRoam.exe [2007-05-18 119344]
S3 SecureStorageService;SecureStorageService; C:\Program Files\Wave Systems Corp\Secure Storage Manager\SecureStorageService.exe [2007-01-29 487424]
S3 SNDSrvc;Symantec Network Drivers Service; C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe [2007-02-12 214672]
S3 WMConnectCDS;Služba Windows Media Connect; C:\Program Files\Windows Media Connect 2\wmccds.exe [2005-10-06 855552]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Uživatelský avatar
Caroprd111
VIP
VIP
Příspěvky: 13492
Registrován: 22 bře 2009 20:48
Bydliště: Třebíč
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#43 Příspěvek od Caroprd111 »

Dnes už odcházím, na log se podívám zítra. :)
Obrázek

davros
Návštěvník
Návštěvník
Příspěvky: 67
Registrován: 03 čer 2008 12:38

Re: Prosím o kontrolu logu

#44 Příspěvek od davros »

Ok, zatím děkuji za vydatnou pomoc.

Uživatelský avatar
Caroprd111
VIP
VIP
Příspěvky: 13492
Registrován: 22 bře 2009 20:48
Bydliště: Třebíč
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#45 Příspěvek od Caroprd111 »

Obrázek Odinstalujte ComboFix přes:
Start >> Spustit, zkopírujte do okénka:

ComboFix /Uninstall

stiskněte Enter



Obrázek Stáhněte T-Cleaner http://sweb.cz/Marinus/T-Cleaner.exe
  • Spusťte, pro potvrzení volby mačkejte klávesu A, Enter
  • Po použití program vymažte. Pozor, antiviry ho mohou falešně označit za vir.

Obrázek Stáhněte TFC http://oldtimer.geekstogo.com/TFC.exe
  • Spusťte.
  • Klikněte na "Start". Potvrďte hlášku kliknutím na "Ok" (Bude následovat restart)

Obrázek Stáhněte OTC http://oldtimer.geekstogo.com/OTC.exe
  • Spusťte.
  • Klikněte na "CleanUp!". Potvrďte hlášky kliknutím na "Yes" (Bude následovat restart)


Obrázek Stáhněte Ccleaner http://viry.cz/forum/viewtopic.php?t=7478
  • Nainstalujte a v průběhu instalace odškrtněte, že chcete instalovat yahoo toolbar.

    Obrázek Záložka Čistič
  • Dejte analyzovat, po dokončení dejte Spustit Ccleaner.

    Obrázek Záložka Registry
  • Klikněte na Hledej problémy, po dokončení klikněte na Opravit problémy, zálohu dělat nemusíte, potom dejte Opravit všechny problémy.
    Obrázek OK Obrázek Zavřít


Obrázek V logu nevidím firewall, doinstalujte :!: Přehled: http://www.viry.cz/forum/viewtopic.php?f=41&t=6523
Obrázek

Odpovědět