Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

prosim o kontrolu log

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
killer.
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 90
Registrován: 11 led 2007 22:58

prosim o kontrolu log

#1 Příspěvek od killer. »

Prosim o kontrolu logu,seka se prohlizec.Diky


Logfile of random's system information tool 1.07 (written by random/random)
Run by Zdena at 2010-05-09 16:34:09
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 177 GB (74%) free of 238 GB
Total RAM: 1919 MB (68% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:34:18, on 9.5.2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18904)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\ASUS\ASUS Live Update\ALU.exe
C:\Program Files\ASUS\Asus MultiFrame\MultiFrame.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.Exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\ICQ7.0\ICQ.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Sunbelt Software\Personal Firewall\SbPFCl.exe
C:\Windows\System32\mobsync.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Users\Zdena\Desktop\RSIT.exe
C:\Program Files\trend micro\Zdena.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.crawler.com/search/dispatche ... tbid=60446
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60446
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_custo ... TbId=60446
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60446
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://dnl.crawler.com/support/sa_custo ... TbId=60446
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WebTransBHO Class - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\ProgramData\LangSoft\WebIE.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\ProgramData\LangSoft\WebIE.dll
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [SpywareTerminatorUpdate] "C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"
O4 - HKCU\..\Run: [EPSON Stylus DX4400 Series] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE /FU "C:\Users\Zdena\AppData\Local\Temp\E_SDB61.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ7.0\ICQ.exe" silent loginmode=4
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\ProgramData\LangSoft\WebIE.dll
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files\ATK Hotkey\ASLDRSrv.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: SbPF.Launcher - Sunbelt Software, Inc. - C:\Program Files\Sunbelt Software\Personal Firewall\SbPFLnch.exe
O23 - Service: Sunbelt Personal Firewall 4 (SPF4) - Sunbelt Software, Inc. - C:\Program Files\Sunbelt Software\Personal Firewall\SbPFSvc.exe
O23 - Service: spmgr - Unknown owner - C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe

--
End of file - 7721 bytes

======Scheduled tasks folder======

C:\Windows\tasks\User_Feed_Synchronization-{86640402-383E-4D0E-9B93-CBEAB4C57EAB}.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\ProgramData\LangSoft\WebIE.dll [2010-03-27 520192]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre6\bin\ssv.dll [2010-03-27 321312]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-03-27 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\ProgramData\LangSoft\WebIE.dll [2010-03-27 520192]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SpywareTerminator"=C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe [2010-04-14 2176512]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-02-15 4390912]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2010-03-17 421888]
"avast5"=C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe [2010-05-06 2815192]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-11 1233920]
""= []
"SpywareTerminatorUpdate"=C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe [2010-03-27 3037696]
"EPSON Stylus DX4400 Series"=C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE [2007-03-01 180736]
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-19 125952]
"ICQ"=C:\Program Files\ICQ7.0\ICQ.exe [2010-03-28 133368]
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Camera ScreenSaver]
C:\Windows\ASScrProlog.exe [2010-03-27 37232]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\ASScrPro.exe [2010-03-27 33136]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSTPE]
C:\Windows\system32\ASUSTPE.exe [2006-12-12 106496]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATKMEDIA]
C:\Program Files\ASUS\ATK Media\DMEDIA.EXE [2006-11-02 61440]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON Stylus DX4400 Series]
C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE [2007-03-01 180736]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON Stylus DX4400 Series (kopie 1)]
C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE [2007-03-01 180736]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2008-06-09 2363392]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PowerForPhone]
C:\Program Files\PowerForPhone\PowerForPhone.exe [2007-06-26 778240]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Windows\RtHDVCpl.exe [2007-02-15 4390912]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SMSERIAL]
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [2007-09-03 630784]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2006-11-10 90112]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Java\jre6\bin\jusched.exe [2010-03-27 149280]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-12-06 1029416]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Uninstall Adobe Download Manager]
C:\Program Files\NOS\bin\getPlus_Helper.dll [2010-03-22 68000]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Defender]
C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth Manager.lnk]
C:\PROGRA~1\Toshiba\BLUETO~1\TosBtMng.exe [2007-01-18 2752512]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Zdena^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^CCC.lnk]
C:\PROGRA~1\ATITEC~1\ATI.ACE\CORE-S~1\CCC.exe [2006-09-29 49152]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLUA"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2010-05-09 16:34:09 ----D---- C:\rsit
2010-05-09 16:34:09 ----D---- C:\Program Files\trend micro
2010-05-09 16:15:43 ----A---- C:\Windows\zip.exe
2010-05-09 16:15:43 ----A---- C:\Windows\SWSC.exe
2010-05-09 16:15:43 ----A---- C:\Windows\SWREG.exe
2010-05-09 16:15:43 ----A---- C:\Windows\sed.exe
2010-05-09 16:15:43 ----A---- C:\Windows\PEV.exe
2010-05-09 16:15:43 ----A---- C:\Windows\NIRCMD.exe
2010-05-09 16:15:43 ----A---- C:\Windows\MBR.exe
2010-05-09 16:15:43 ----A---- C:\Windows\grep.exe
2010-05-09 16:15:29 ----D---- C:\Windows\ERDNT
2010-05-09 16:14:58 ----D---- C:\Qoobox
2010-05-09 16:14:40 ----A---- C:\Windows\SWXCACLS.exe
2010-05-09 14:08:32 ----D---- C:\Program Files\Sunbelt Software
2010-05-09 14:05:46 ----A---- C:\Windows\system32\aswBoot.exe
2010-05-09 14:05:32 ----D---- C:\ProgramData\Alwil Software
2010-05-09 14:05:32 ----D---- C:\Program Files\Alwil Software
2010-05-03 23:07:55 ----D---- C:\Users\Zdena\AppData\Roaming\WinRAR
2010-05-03 23:07:18 ----D---- C:\Program Files\WinRAR
2010-05-02 12:00:13 ----D---- C:\ProgramData\Apple Computer
2010-05-02 12:00:13 ----D---- C:\Program Files\QuickTime
2010-05-02 11:59:13 ----D---- C:\Program Files\Common Files\Apple
2010-05-02 11:58:48 ----D---- C:\ProgramData\Apple
2010-05-02 11:58:48 ----D---- C:\Program Files\Apple Software Update
2010-05-01 09:54:39 ----D---- C:\Program Files\Windows Portable Devices
2010-04-30 23:54:09 ----A---- C:\Windows\system32\UIAnimation.dll
2010-04-30 23:54:08 ----A---- C:\Windows\system32\UIRibbonRes.dll
2010-04-30 23:54:08 ----A---- C:\Windows\system32\UIRibbon.dll
2010-04-30 23:53:40 ----A---- C:\Windows\system32\WMPhoto.dll
2010-04-30 23:53:40 ----A---- C:\Windows\system32\cdd.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\XpsRasterService.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\XpsPrint.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\WindowsCodecs.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2010-04-30 23:53:39 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\OpcServices.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\dxdiagn.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\dxdiag.exe
2010-04-30 23:53:39 ----A---- C:\Windows\system32\d3d10warp.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\d2d1.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\xpsservices.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\FntCache.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\dxgi.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\DWrite.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\d3d11.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\d3d10level9.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\d3d10core.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\d3d10_1core.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\d3d10_1.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\d3d10.dll
2010-04-30 23:53:01 ----A---- C:\Windows\system32\WPDShextAutoplay.exe
2010-04-30 23:53:01 ----A---- C:\Windows\system32\wpdbusenum.dll
2010-04-30 23:53:01 ----A---- C:\Windows\system32\BthMtpContextHandler.dll
2010-04-30 23:52:57 ----A---- C:\Windows\system32\PortableDeviceConnectApi.dll
2010-04-30 23:52:54 ----A---- C:\Windows\system32\WpdMtpUS.dll
2010-04-30 23:52:54 ----A---- C:\Windows\system32\WpdConns.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\WPDSp.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\wpdshext.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\WpdMtp.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\wpd_ci.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2010-04-30 23:51:46 ----A---- C:\Windows\system32\UIAutomationCore.dll
2010-04-30 23:51:46 ----A---- C:\Windows\system32\oleaccrc.dll
2010-04-30 23:51:46 ----A---- C:\Windows\system32\oleacc.dll
2010-04-29 20:17:00 ----A---- C:\Windows\system32\gameux.dll
2010-04-29 20:16:56 ----A---- C:\Windows\system32\Apphlpdm.dll
2010-04-29 20:16:55 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2010-04-29 15:15:02 ----D---- C:\Windows\system32\eu-ES
2010-04-29 15:15:02 ----D---- C:\Windows\system32\ca-ES
2010-04-29 15:15:00 ----D---- C:\Windows\system32\vi-VN
2010-04-29 14:01:11 ----D---- C:\Windows\system32\EventProviders
2010-04-21 19:28:36 ----D---- C:\Program Files\Xilisoft
2010-04-20 22:08:42 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2010-04-20 22:08:38 ----A---- C:\Windows\system32\SLCExt.dll
2010-04-20 22:08:37 ----A---- C:\Windows\system32\SLsvc.exe
2010-04-20 22:08:30 ----A---- C:\Windows\system32\DevicePairingWizard.exe
2010-04-20 22:08:29 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll
2010-04-20 22:08:26 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2010-04-20 22:08:20 ----A---- C:\Windows\system32\mssrch.dll
2010-04-20 22:08:15 ----A---- C:\Windows\system32\tquery.dll
2010-04-20 22:08:12 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2010-04-20 22:08:09 ----A---- C:\Windows\system32\scavenge.dll
2010-04-20 22:08:07 ----A---- C:\Windows\system32\msi.dll
2010-04-20 22:08:05 ----A---- C:\Windows\system32\imapi2fs.dll
2010-04-20 22:08:03 ----A---- C:\Windows\system32\WscEapPr.dll
2010-04-20 22:08:03 ----A---- C:\Windows\system32\wcnwiz2.dll
2010-04-20 22:08:02 ----A---- C:\Windows\system32\sysmain.dll
2010-04-20 22:07:59 ----A---- C:\Windows\system32\icardagt.exe
2010-04-20 22:07:57 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2010-04-20 22:07:56 ----A---- C:\Windows\system32\EhStorShell.dll
2010-04-20 22:07:54 ----A---- C:\Windows\system32\spreview.exe
2010-04-20 22:07:54 ----A---- C:\Windows\system32\spinstall.exe
2010-04-20 22:07:53 ----A---- C:\Windows\system32\drmv2clt.dll
2010-04-20 22:07:51 ----A---- C:\Windows\system32\spwizui.dll
2010-04-20 22:07:51 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2010-04-20 22:07:49 ----A---- C:\Windows\system32\shell32.dll
2010-04-20 22:07:47 ----A---- C:\Windows\system32\p2psvc.dll
2010-04-20 22:07:46 ----A---- C:\Windows\system32\SearchIndexer.exe
2010-04-20 22:07:45 ----A---- C:\Windows\system32\mssvp.dll
2010-04-20 22:07:43 ----A---- C:\Windows\system32\mscoree.dll
2010-04-20 22:07:42 ----A---- C:\Windows\system32\mssphtb.dll
2010-04-20 22:07:42 ----A---- C:\Windows\system32\MSMPEG2VDEC.DLL
2010-04-20 22:07:41 ----A---- C:\Windows\system32\mssph.dll
2010-04-20 22:07:40 ----A---- C:\Windows\system32\imapi2.dll
2010-04-20 22:07:38 ----A---- C:\Windows\system32\sdohlp.dll
2010-04-20 22:07:37 ----A---- C:\Windows\system32\esent.dll
2010-04-20 22:07:36 ----A---- C:\Windows\system32\IMJP10K.DLL
2010-04-20 22:07:35 ----A---- C:\Windows\system32\DevicePairing.dll
2010-04-20 22:07:34 ----A---- C:\Windows\system32\sperror.dll
2010-04-20 22:07:33 ----A---- C:\Windows\system32\wevtsvc.dll
2010-04-20 22:07:33 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2010-04-20 22:07:33 ----A---- C:\Windows\system32\korwbrkr.dll
2010-04-20 22:07:32 ----A---- C:\Windows\system32\SLC.dll
2010-04-20 22:07:31 ----A---- C:\Windows\system32\msshsq.dll
2010-04-20 22:07:27 ----A---- C:\Windows\system32\msjet40.dll
2010-04-20 22:07:27 ----A---- C:\Windows\system32\MPSSVC.dll
2010-04-20 22:07:25 ----A---- C:\Windows\system32\Query.dll
2010-04-20 22:07:25 ----A---- C:\Windows\system32\qmgr.dll
2010-04-20 22:07:23 ----A---- C:\Windows\system32\msexch40.dll
2010-04-20 22:07:23 ----A---- C:\Windows\system32\diagperf.dll
2010-04-20 22:07:22 ----A---- C:\Windows\system32\P2PGraph.dll
2010-04-20 22:07:22 ----A---- C:\Windows\system32\IasMigReader.exe
2010-04-20 22:07:21 ----A---- C:\Windows\system32\ole32.dll
2010-04-20 22:07:21 ----A---- C:\Windows\system32\ntdll.dll
2010-04-20 22:07:20 ----A---- C:\Windows\system32\winload.exe
2010-04-20 22:07:20 ----A---- C:\Windows\system32\srchadmin.dll
2010-04-20 22:07:20 ----A---- C:\Windows\system32\mblctr.exe
2010-04-20 22:07:19 ----A---- C:\Windows\system32\uDWM.dll
2010-04-20 22:07:19 ----A---- C:\Windows\system32\mmc.exe
2010-04-20 22:07:19 ----A---- C:\Windows\system32\EncDec.dll
2010-04-20 22:07:19 ----A---- C:\Windows\system32\dfsr.exe
2010-04-20 22:07:18 ----A---- C:\Windows\system32\IasMigPlugin.dll
2010-04-20 22:07:17 ----A---- C:\Windows\system32\riched20.dll
2010-04-20 22:07:17 ----A---- C:\Windows\system32\fdBth.dll
2010-04-20 22:07:15 ----A---- C:\Windows\system32\RacEngn.dll
2010-04-20 22:07:15 ----A---- C:\Windows\system32\kernel32.dll
2010-04-20 22:07:14 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2010-04-20 22:07:14 ----A---- C:\Windows\system32\SearchFilterHost.exe
2010-04-20 22:07:14 ----A---- C:\Windows\system32\milcore.dll
2010-04-20 22:07:13 ----A---- C:\Windows\system32\EhStorAPI.dll
2010-04-20 22:07:13 ----A---- C:\Windows\system32\CertEnroll.dll
2010-04-20 22:07:12 ----A---- C:\Windows\system32\spoolss.dll
2010-04-20 22:07:12 ----A---- C:\Windows\system32\schedsvc.dll
2010-04-20 22:07:11 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2010-04-20 22:07:09 ----A---- C:\Windows\system32\AuxiliaryDisplayDriverLib.dll
2010-04-20 22:07:08 ----A---- C:\Windows\system32\msvcp60.dll
2010-04-20 22:07:08 ----A---- C:\Windows\system32\msjtes40.dll
2010-04-20 22:07:08 ----A---- C:\Windows\system32\gpedit.dll
2010-04-20 22:07:07 ----A---- C:\Windows\system32\infocardapi.dll
2010-04-20 22:07:05 ----A---- C:\Windows\system32\WinSAT.exe
2010-04-20 22:07:05 ----A---- C:\Windows\system32\es.dll
2010-04-20 22:07:04 ----A---- C:\Windows\system32\PresentationSettings.exe
2010-04-20 22:07:03 ----A---- C:\Windows\system32\Magnify.exe
2010-04-20 22:07:03 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2010-04-20 22:07:02 ----A---- C:\Windows\system32\mstext40.dll
2010-04-20 22:07:02 ----A---- C:\Windows\system32\advapi32.dll
2010-04-20 22:06:59 ----A---- C:\Windows\system32\WebClnt.dll
2010-04-20 22:06:58 ----A---- C:\Windows\system32\slwmi.dll
2010-04-20 22:06:58 ----A---- C:\Windows\system32\msexcl40.dll
2010-04-20 22:06:57 ----A---- C:\Windows\system32\msxbde40.dll
2010-04-20 22:06:57 ----A---- C:\Windows\system32\comsvcs.dll
2010-04-20 22:06:56 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
2010-04-20 22:06:54 ----A---- C:\Windows\system32\vssapi.dll
2010-04-20 22:06:53 ----A---- C:\Windows\system32\authui.dll
2010-04-20 22:06:51 ----A---- C:\Windows\system32\NetProjW.dll
2010-04-20 22:06:50 ----A---- C:\Windows\system32\PresentationHost.exe
2010-04-20 22:06:50 ----A---- C:\Windows\system32\msrepl40.dll
2010-04-20 22:06:49 ----A---- C:\Windows\system32\propsys.dll
2010-04-20 22:06:49 ----A---- C:\Windows\system32\newdev.dll
2010-04-20 22:06:48 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2010-04-20 22:06:48 ----A---- C:\Windows\system32\iasrecst.dll
2010-04-20 22:06:48 ----A---- C:\Windows\system32\gpsvc.dll
2010-04-20 22:06:48 ----A---- C:\Windows\system32\eudcedit.exe
2010-04-20 22:06:48 ----A---- C:\Windows\system32\crypt32.dll
2010-04-20 22:06:47 ----A---- C:\Windows\system32\rpcss.dll
2010-04-20 22:06:47 ----A---- C:\Windows\explorer.exe
2010-04-20 22:06:46 ----A---- C:\Windows\system32\setupapi.dll
2010-04-20 22:06:45 ----A---- C:\Windows\system32\mspbde40.dll
2010-04-20 22:06:45 ----A---- C:\Windows\system32\d3d9.dll
2010-04-20 22:06:43 ----A---- C:\Windows\system32\msltus40.dll
2010-04-20 22:06:43 ----A---- C:\Windows\system32\davclnt.dll
2010-04-20 22:06:42 ----A---- C:\Windows\system32\shlwapi.dll
2010-04-20 22:06:42 ----A---- C:\Windows\system32\mfc42.dll
2010-04-20 22:06:41 ----A---- C:\Windows\system32\msrd3x40.dll
2010-04-20 22:06:41 ----A---- C:\Windows\system32\EhStorPwdMgr.dll
2010-04-20 22:06:41 ----A---- C:\Windows\system32\EhStorAuthn.dll
2010-04-20 22:06:40 ----A---- C:\Windows\system32\msdtctm.dll
2010-04-20 22:06:39 ----A---- C:\Windows\system32\wevtapi.dll
2010-04-20 22:06:39 ----A---- C:\Windows\system32\photowiz.dll
2010-04-20 22:06:39 ----A---- C:\Windows\system32\nlhtml.dll
2010-04-20 22:06:39 ----A---- C:\Windows\system32\browseui.dll
2010-04-20 22:06:36 ----A---- C:\Windows\system32\user32.dll
2010-04-20 22:06:35 ----A---- C:\Windows\system32\samsrv.dll
2010-04-20 22:06:35 ----A---- C:\Windows\system32\ci.dll
2010-04-20 22:06:34 ----A---- C:\Windows\system32\win32spl.dll
2010-04-20 22:06:33 ----A---- C:\Windows\system32\WcnNetsh.dll
2010-04-20 22:06:33 ----A---- C:\Windows\system32\SLCommDlg.dll
2010-04-20 22:06:32 ----A---- C:\Windows\system32\oleaut32.dll
2010-04-20 22:06:31 ----A---- C:\Windows\system32\IKEEXT.DLL
2010-04-20 22:06:30 ----A---- C:\Windows\system32\netshell.dll
2010-04-20 22:06:30 ----A---- C:\Windows\system32\compcln.exe
2010-04-20 22:06:30 ----A---- C:\Windows\system32\apds.dll
2010-04-20 22:06:28 ----A---- C:\Windows\system32\xmlfilter.dll
2010-04-20 22:06:28 ----A---- C:\Windows\system32\mswstr10.dll
2010-04-20 22:06:28 ----A---- C:\Windows\system32\audiosrv.dll
2010-04-20 22:06:27 ----A---- C:\Windows\system32\msctf.dll
2010-04-20 22:06:27 ----A---- C:\Windows\system32\emdmgmt.dll
2010-04-20 22:06:26 ----A---- C:\Windows\system32\msvcrt.dll
2010-04-20 22:06:25 ----A---- C:\Windows\system32\VSSVC.exe
2010-04-20 22:06:25 ----A---- C:\Windows\system32\QAGENTRT.DLL
2010-04-20 22:06:25 ----A---- C:\Windows\system32\gdi32.dll
2010-04-20 22:06:24 ----A---- C:\Windows\system32\SLUI.exe
2010-04-20 22:06:24 ----A---- C:\Windows\system32\mfc42u.dll
2010-04-20 22:06:23 ----A---- C:\Windows\system32\eapphost.dll
2010-04-20 22:06:22 ----A---- C:\Windows\system32\sqlsrv32.dll
2010-04-20 22:06:22 ----A---- C:\Windows\system32\msrd2x40.dll
2010-04-20 22:06:20 ----A---- C:\Windows\system32\winresume.exe
2010-04-20 22:06:20 ----A---- C:\Windows\system32\propdefs.dll

killer.
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 90
Registrován: 11 led 2007 22:58

Re: prosim o kontrolu log

#2 Příspěvek od killer. »

pokracovani

2010-04-20 22:06:20 ----A---- C:\Windows\system32\odbc32.dll
2010-04-20 22:06:18 ----A---- C:\Windows\system32\shdocvw.dll
2010-04-20 22:06:16 ----A---- C:\Windows\system32\wevtutil.exe
2010-04-20 22:06:16 ----A---- C:\Windows\system32\dbgeng.dll
2010-04-20 22:06:15 ----A---- C:\Windows\system32\mssitlb.dll
2010-04-20 22:06:13 ----A---- C:\Windows\system32\WsmSvc.dll
2010-04-20 22:06:13 ----A---- C:\Windows\system32\swprv.dll
2010-04-20 22:06:12 ----A---- C:\Windows\system32\mmcndmgr.dll
2010-04-20 22:06:11 ----A---- C:\Windows\system32\usp10.dll
2010-04-20 22:06:09 ----A---- C:\Windows\system32\vds.exe
2010-04-20 22:06:09 ----A---- C:\Windows\system32\drvinst.exe
2010-04-20 22:06:08 ----A---- C:\Windows\system32\netlogon.dll
2010-04-20 22:06:08 ----A---- C:\Windows\system32\msctfp.dll
2010-04-20 22:06:08 ----A---- C:\Windows\system32\fdBthProxy.dll
2010-04-20 22:06:08 ----A---- C:\Windows\system32\devmgr.dll
2010-04-20 22:06:07 ----A---- C:\Windows\system32\msscb.dll
2010-04-20 22:06:07 ----A---- C:\Windows\system32\DevicePairingProxy.dll
2010-04-20 22:06:07 ----A---- C:\Windows\system32\adsldpc.dll
2010-04-20 22:06:06 ----A---- C:\Windows\system32\BFE.DLL
2010-04-20 22:06:05 ----A---- C:\Windows\system32\Wldap32.dll
2010-04-20 22:06:05 ----A---- C:\Windows\system32\wcnwiz.dll
2010-04-20 22:06:05 ----A---- C:\Windows\system32\evr.dll
2010-04-20 22:06:03 ----A---- C:\Windows\system32\WMVSDECD.DLL
2010-04-20 22:06:01 ----A---- C:\Windows\system32\services.exe
2010-04-20 22:06:00 ----A---- C:\Windows\system32\wercon.exe
2010-04-20 22:06:00 ----A---- C:\Windows\system32\comdlg32.dll
2010-04-20 22:05:59 ----A---- C:\Windows\system32\mimefilt.dll
2010-04-20 22:05:59 ----A---- C:\Windows\system32\adtschema.dll
2010-04-20 22:05:58 ----A---- C:\Windows\system32\wcncsvc.dll
2010-04-20 22:05:58 ----A---- C:\Windows\system32\certcli.dll
2010-04-20 22:05:55 ----A---- C:\Windows\system32\msdtcprx.dll
2010-04-20 22:05:54 ----A---- C:\Windows\system32\taskeng.exe
2010-04-20 22:05:54 ----A---- C:\Windows\system32\rtffilt.dll
2010-04-20 22:05:54 ----A---- C:\Windows\system32\reg.exe
2010-04-20 22:05:54 ----A---- C:\Windows\system32\mswdat10.dll
2010-04-20 22:05:54 ----A---- C:\Windows\system32\msjter40.dll
2010-04-20 22:05:54 ----A---- C:\Windows\system32\ipsmsnap.dll
2010-04-20 22:05:53 ----A---- C:\Windows\system32\umpnpmgr.dll
2010-04-20 22:05:53 ----A---- C:\Windows\system32\dnsapi.dll
2010-04-20 22:05:53 ----A---- C:\Windows\system32\certutil.exe
2010-04-20 22:05:52 ----A---- C:\Windows\system32\WMNetMgr.dll
2010-04-20 22:05:52 ----A---- C:\Windows\system32\w32time.dll
2010-04-20 22:05:51 ----A---- C:\Windows\system32\IPSECSVC.DLL
2010-04-20 22:05:50 ----A---- C:\Windows\system32\msshooks.dll
2010-04-20 22:05:50 ----A---- C:\Windows\system32\bcrypt.dll
2010-04-20 22:05:49 ----A---- C:\Windows\system32\msscntrs.dll
2010-04-20 22:05:49 ----A---- C:\Windows\system32\bthserv.dll
2010-04-20 22:05:48 ----A---- C:\Windows\system32\rsaenh.dll
2010-04-20 22:05:47 ----A---- C:\Windows\system32\TsWpfWrp.exe
2010-04-20 22:05:47 ----A---- C:\Windows\system32\msstrc.dll
2010-04-20 22:05:47 ----A---- C:\Windows\system32\msihnd.dll
2010-04-20 22:05:47 ----A---- C:\Windows\system32\MMDevAPI.dll
2010-04-20 22:05:45 ----A---- C:\Windows\system32\netapi32.dll
2010-04-20 22:05:45 ----A---- C:\Windows\system32\inetpp.dll
2010-04-20 22:05:45 ----A---- C:\Windows\system32\inetcomm.dll
2010-04-20 22:05:45 ----A---- C:\Windows\system32\dfshim.dll
2010-04-20 22:05:44 ----A---- C:\Windows\system32\mtxclu.dll
2010-04-20 22:05:44 ----A---- C:\Windows\system32\fundisc.dll
2010-04-20 22:05:44 ----A---- C:\Windows\system32\cryptsvc.dll
2010-04-20 22:05:43 ----A---- C:\Windows\system32\mscories.dll
2010-04-20 22:05:43 ----A---- C:\Windows\system32\hidserv.dll
2010-04-20 22:05:43 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2010-04-20 22:05:42 ----A---- C:\Windows\system32\wmicmiplugin.dll
2010-04-20 22:05:42 ----A---- C:\Windows\system32\termsrv.dll
2010-04-20 22:05:42 ----A---- C:\Windows\system32\profsvc.dll
2010-04-20 22:05:41 ----A---- C:\Windows\system32\imapi.dll
2010-04-20 22:05:40 ----A---- C:\Windows\system32\wdc.dll
2010-04-20 22:05:40 ----A---- C:\Windows\system32\shsvcs.dll
2010-04-20 22:05:40 ----A---- C:\Windows\system32\msiexec.exe
2010-04-20 22:05:40 ----A---- C:\Windows\system32\chsbrkr.dll
2010-04-20 22:05:39 ----A---- C:\Windows\system32\rasmans.dll
2010-04-20 22:05:39 ----A---- C:\Windows\system32\iassdo.dll
2010-04-20 22:05:38 ----A---- C:\Windows\system32\spoolsv.exe
2010-04-20 22:05:38 ----A---- C:\Windows\system32\pnidui.dll
2010-04-20 22:05:38 ----A---- C:\Windows\system32\icardres.dll
2010-04-20 22:05:38 ----A---- C:\Windows\system32\autofmt.exe
2010-04-20 22:05:37 ----A---- C:\Windows\system32\wersvc.dll
2010-04-20 22:05:37 ----A---- C:\Windows\system32\scrrun.dll
2010-04-20 22:05:36 ----A---- C:\Windows\system32\slmgr.vbs
2010-04-20 22:05:36 ----A---- C:\Windows\system32\PSHED.DLL
2010-04-20 22:05:36 ----A---- C:\Windows\system32\pdh.dll
2010-04-20 22:05:36 ----A---- C:\Windows\system32\dhcpcsvc.dll
2010-04-20 22:05:35 ----A---- C:\Windows\system32\CertEnrollUI.dll
2010-04-20 22:05:35 ----A---- C:\Windows\system32\azroles.dll
2010-04-20 22:05:34 ----A---- C:\Windows\system32\pidgenx.dll
2010-04-20 22:05:30 ----A---- C:\Windows\system32\wmpmde.dll
2010-04-20 22:05:30 ----A---- C:\Windows\system32\winlogon.exe
2010-04-20 22:05:29 ----A---- C:\Windows\system32\SyncCenter.dll
2010-04-20 22:05:28 ----A---- C:\Windows\system32\SLUINotify.dll
2010-04-20 22:05:28 ----A---- C:\Windows\system32\msjetoledb40.dll
2010-04-20 22:05:28 ----A---- C:\Windows\system32\comuid.dll
2010-04-20 22:05:27 ----A---- C:\Windows\system32\certmgr.dll
2010-04-20 22:05:26 ----A---- C:\Windows\system32\spp.dll
2010-04-20 22:05:26 ----A---- C:\Windows\system32\sethc.exe
2010-04-20 22:05:26 ----A---- C:\Windows\system32\ncrypt.dll
2010-04-20 22:05:26 ----A---- C:\Windows\system32\kd1394.dll
2010-04-20 22:05:26 ----A---- C:\Windows\system32\iassam.dll
2010-04-20 22:05:25 ----A---- C:\Windows\system32\wisptis.exe
2010-04-20 22:05:25 ----A---- C:\Windows\system32\untfs.dll
2010-04-20 22:05:25 ----A---- C:\Windows\system32\scrobj.dll
2010-04-20 22:05:25 ----A---- C:\Windows\system32\rtutils.dll
2010-04-20 22:05:24 ----A---- C:\Windows\system32\taskcomp.dll
2010-04-20 22:05:24 ----A---- C:\Windows\system32\dwm.exe
2010-04-20 22:05:23 ----A---- C:\Windows\system32\autochk.exe
2010-04-20 22:05:22 ----A---- C:\Windows\system32\printui.dll
2010-04-20 22:05:22 ----A---- C:\Windows\system32\iasnap.dll
2010-04-20 22:05:22 ----A---- C:\Windows\system32\autoconv.exe
2010-04-20 22:05:21 ----A---- C:\Windows\system32\winsrv.dll
2010-04-20 22:05:20 ----A---- C:\Windows\system32\kdcom.dll
2010-04-20 22:05:20 ----A---- C:\Windows\system32\cscript.exe
2010-04-20 22:05:20 ----A---- C:\Windows\system32\basecsp.dll
2010-04-20 22:05:19 ----A---- C:\Windows\system32\wow32.dll
2010-04-20 22:05:19 ----A---- C:\Windows\system32\userenv.dll
2010-04-20 22:05:19 ----A---- C:\Windows\system32\onex.dll
2010-04-20 22:05:19 ----A---- C:\Windows\system32\audiodg.exe
2010-04-20 22:05:18 ----A---- C:\Windows\system32\osk.exe
2010-04-20 22:05:18 ----A---- C:\Windows\system32\mswsock.dll
2010-04-20 22:05:16 ----A---- C:\Windows\system32\kdusb.dll
2010-04-20 22:05:15 ----A---- C:\Windows\system32\winmm.dll
2010-04-20 22:05:15 ----A---- C:\Windows\system32\RelMon.dll
2010-04-20 22:05:15 ----A---- C:\Windows\system32\rdpencom.dll
2010-04-20 22:05:14 ----A---- C:\Windows\system32\WinSCard.dll
2010-04-20 22:05:13 ----A---- C:\Windows\system32\WerFaultSecure.exe
2010-04-20 22:05:13 ----A---- C:\Windows\system32\spcmsg.dll
2010-04-20 22:05:13 ----A---- C:\Windows\system32\offfilt.dll
2010-04-20 22:05:13 ----A---- C:\Windows\system32\msftedit.dll
2010-04-20 22:05:13 ----A---- C:\Windows\system32\dnsrslvr.dll
2010-04-20 22:05:11 ----A---- C:\Windows\system32\Utilman.exe
2010-04-20 22:05:10 ----A---- C:\Windows\system32\wsepno.dll
2010-04-20 22:05:10 ----A---- C:\Windows\system32\WerFault.exe
2010-04-20 22:05:09 ----A---- C:\Windows\system32\stobject.dll
2010-04-20 22:05:09 ----A---- C:\Windows\system32\mfplat.dll
2010-04-20 22:05:09 ----A---- C:\Windows\system32\diskraid.exe
2010-04-20 22:05:09 ----A---- C:\Windows\system32\apphelp.dll
2010-04-20 22:05:08 ----A---- C:\Windows\system32\SndVol.exe
2010-04-20 22:05:08 ----A---- C:\Windows\system32\mcmde.dll
2010-04-20 22:05:07 ----A---- C:\Windows\system32\prnntfy.dll
2010-04-20 22:05:07 ----A---- C:\Windows\system32\msnetobj.dll
2010-04-20 22:05:07 ----A---- C:\Windows\system32\mscms.dll
2010-04-20 22:05:07 ----A---- C:\Windows\system32\adsmsext.dll
2010-04-20 22:05:06 ----A---- C:\Windows\system32\wiaservc.dll
2010-04-20 22:05:06 ----A---- C:\Windows\system32\sysclass.dll
2010-04-20 22:05:05 ----A---- C:\Windows\system32\wscript.exe
2010-04-20 22:05:05 ----A---- C:\Windows\system32\odbccp32.dll
2010-04-20 22:05:05 ----A---- C:\Windows\system32\iasdatastore.dll
2010-04-20 22:05:04 ----A---- C:\Windows\system32\ulib.dll
2010-04-20 22:05:03 ----A---- C:\Windows\system32\dsound.dll
2010-04-20 22:05:02 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2010-04-20 22:05:02 ----A---- C:\Windows\system32\cryptui.dll
2010-04-20 22:05:01 ----A---- C:\Windows\system32\wscntfy.dll
2010-04-20 22:05:01 ----A---- C:\Windows\system32\rastapi.dll
2010-04-20 22:05:01 ----A---- C:\Windows\system32\pnpsetup.dll
2010-04-20 22:05:00 ----A---- C:\Windows\system32\ipsecsnp.dll
2010-04-20 22:05:00 ----A---- C:\Windows\system32\fdProxy.dll
2010-04-20 22:04:59 ----A---- C:\Windows\system32\wlangpui.dll
2010-04-20 22:04:59 ----A---- C:\Windows\system32\gpapi.dll
2010-04-20 22:04:59 ----A---- C:\Windows\system32\diskpart.exe
2010-04-20 22:04:59 ----A---- C:\Windows\system32\brcpl.dll
2010-04-20 22:04:58 ----A---- C:\Windows\system32\wscsvc.dll
2010-04-20 22:04:58 ----A---- C:\Windows\system32\vdsdyn.dll
2010-04-20 22:04:58 ----A---- C:\Windows\system32\iashlpr.dll
2010-04-20 22:04:57 ----A---- C:\Windows\system32\WMVENCOD.DLL
2010-04-20 22:04:57 ----A---- C:\Windows\system32\rasapi32.dll
2010-04-20 22:04:57 ----A---- C:\Windows\system32\logman.exe
2010-04-20 22:04:56 ----A---- C:\Windows\system32\wusa.exe
2010-04-20 22:04:56 ----A---- C:\Windows\system32\regsvc.dll
2010-04-20 22:04:56 ----A---- C:\Windows\system32\ntprint.dll
2010-04-20 22:04:56 ----A---- C:\Windows\system32\mscorier.dll
2010-04-20 22:04:56 ----A---- C:\Windows\system32\iasrad.dll
2010-04-20 22:04:56 ----A---- C:\Windows\system32\findstr.exe
2010-04-20 22:04:55 ----A---- C:\Windows\system32\zipfldr.dll
2010-04-20 22:04:55 ----A---- C:\Windows\system32\wshext.dll
2010-04-20 22:04:54 ----A---- C:\Windows\system32\wpccpl.dll
2010-04-20 22:04:54 ----A---- C:\Windows\system32\netcenter.dll
2010-04-20 22:04:53 ----A---- C:\Windows\system32\rasdlg.dll
2010-04-20 22:04:52 ----A---- C:\Windows\system32\wer.dll
2010-04-20 22:04:52 ----A---- C:\Windows\system32\iassvcs.dll
2010-04-20 22:04:51 ----A---- C:\Windows\system32\wsnmp32.dll
2010-04-20 22:04:51 ----A---- C:\Windows\system32\themecpl.dll
2010-04-20 22:04:49 ----A---- C:\Windows\system32\uxsms.dll
2010-04-20 22:04:49 ----A---- C:\Windows\system32\srvsvc.dll
2010-04-20 22:04:49 ----A---- C:\Windows\system32\mssprxy.dll
2010-04-20 22:04:48 ----A---- C:\Windows\system32\scansetting.dll
2010-04-20 22:04:48 ----A---- C:\Windows\system32\ntmarta.dll
2010-04-20 22:04:47 ----A---- C:\Windows\system32\msutb.dll
2010-04-20 22:04:47 ----A---- C:\Windows\system32\mstlsapi.dll
2010-04-20 22:04:47 ----A---- C:\Windows\system32\iasads.dll
2010-04-20 22:04:46 ----A---- C:\Windows\system32\slcc.dll
2010-04-20 22:04:46 ----A---- C:\Windows\system32\powrprof.dll
2010-04-20 22:04:45 ----A---- C:\Windows\system32\mstsc.exe
2010-04-20 22:04:45 ----A---- C:\Windows\system32\iasacct.dll
2010-04-20 22:04:44 ----A---- C:\Windows\system32\powercpl.dll
2010-04-20 22:04:44 ----A---- C:\Windows\system32\networkmap.dll
2010-04-20 22:04:43 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2010-04-20 22:04:43 ----A---- C:\Windows\system32\authz.dll
2010-04-20 22:04:42 ----A---- C:\Windows\system32\newdev.exe
2010-04-20 22:04:42 ----A---- C:\Windows\system32\connect.dll
2010-04-20 22:04:41 ----A---- C:\Windows\system32\sud.dll
2010-04-20 22:04:41 ----A---- C:\Windows\system32\dot3svc.dll
2010-04-20 22:04:40 ----A---- C:\Windows\system32\systemcpl.dll
2010-04-20 22:04:40 ----A---- C:\Windows\system32\pcaui.dll
2010-04-20 22:04:39 ----A---- C:\Windows\system32\themeui.dll
2010-04-20 22:04:38 ----A---- C:\Windows\system32\samlib.dll
2010-04-20 22:04:38 ----A---- C:\Windows\system32\mmci.dll
2010-04-20 22:04:38 ----A---- C:\Windows\system32\accessibilitycpl.dll
2010-04-20 22:04:37 ----A---- C:\Windows\system32\usercpl.dll
2010-04-20 22:04:36 ----A---- C:\Windows\system32\wlanpref.dll
2010-04-20 22:04:36 ----A---- C:\Windows\system32\qdvd.dll
2010-04-20 22:04:36 ----A---- C:\Windows\system32\autoplay.dll
2010-04-20 22:04:35 ----A---- C:\Windows\system32\rpchttp.dll
2010-04-20 22:04:34 ----A---- C:\Windows\system32\wpcao.dll
2010-04-20 22:04:34 ----A---- C:\Windows\system32\vdsutil.dll
2010-04-20 22:04:34 ----A---- C:\Windows\system32\regapi.dll
2010-04-20 22:04:34 ----A---- C:\Windows\system32\msinfo32.exe
2010-04-20 22:04:33 ----A---- C:\Windows\system32\tapisrv.dll
2010-04-20 22:04:33 ----A---- C:\Windows\system32\scksp.dll
2010-04-20 22:04:32 ----A---- C:\Windows\system32\mpr.dll
2010-04-20 22:04:32 ----A---- C:\Windows\system32\feclient.dll
2010-04-20 22:04:31 ----A---- C:\Windows\system32\scesrv.dll
2010-04-20 22:04:31 ----A---- C:\Windows\system32\psisdecd.dll
2010-04-20 22:04:31 ----A---- C:\Windows\system32\oleprn.dll
2010-04-20 22:04:31 ----A---- C:\Windows\system32\AudioSes.dll
2010-04-20 22:04:30 ----A---- C:\Windows\system32\rekeywiz.exe
2010-04-20 22:04:30 ----A---- C:\Windows\system32\imm32.dll
2010-04-20 22:04:30 ----A---- C:\Windows\system32\Faultrep.dll
2010-04-20 22:04:30 ----A---- C:\Windows\system32\dot3msm.dll
2010-04-20 22:04:29 ----A---- C:\Windows\system32\wscisvif.dll
2010-04-20 22:04:29 ----A---- C:\Windows\system32\sdclt.exe
2010-04-20 22:04:29 ----A---- C:\Windows\system32\iaspolcy.dll
2010-04-20 22:04:29 ----A---- C:\Windows\system32\dpapimig.exe
2010-04-20 22:04:29 ----A---- C:\Windows\system32\DeviceEject.exe
2010-04-20 22:04:28 ----A---- C:\Windows\system32\qedit.dll
2010-04-20 22:04:28 ----A---- C:\Windows\system32\perfdisk.dll
2010-04-20 22:04:28 ----A---- C:\Windows\system32\ncryptui.dll
2010-04-20 22:04:27 ----A---- C:\Windows\system32\scecli.dll
2010-04-20 22:04:27 ----A---- C:\Windows\system32\rasgcw.dll
2010-04-20 22:04:27 ----A---- C:\Windows\system32\pnpui.dll
2010-04-20 22:04:27 ----A---- C:\Windows\system32\hdwwiz.exe
2010-04-20 22:04:27 ----A---- C:\Windows\system32\certreq.exe
2010-04-20 22:04:26 ----A---- C:\Windows\system32\rasplap.dll
2010-04-20 22:04:26 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2010-04-20 22:04:25 ----A---- C:\Windows\system32\TSTheme.exe
2010-04-20 22:04:25 ----A---- C:\Windows\system32\spwinsat.dll
2010-04-20 22:04:25 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2010-04-20 22:04:24 ----A---- C:\Windows\system32\tcpipcfg.dll
2010-04-20 22:04:24 ----A---- C:\Windows\system32\PnPUnattend.exe
2010-04-20 22:04:24 ----A---- C:\Windows\system32\cmmon32.exe
2010-04-20 22:04:23 ----A---- C:\Windows\system32\whealogr.dll
2010-04-20 22:04:23 ----A---- C:\Windows\system32\tcpmon.dll
2010-04-20 22:04:23 ----A---- C:\Windows\system32\fdWSD.dll
2010-04-20 22:04:21 ----A---- C:\Windows\system32\srcore.dll
2010-04-20 22:04:21 ----A---- C:\Windows\system32\SnippingTool.exe
2010-04-20 22:04:21 ----A---- C:\Windows\system32\SCardSvr.dll
2010-04-20 22:04:21 ----A---- C:\Windows\system32\conime.exe
2010-04-20 22:04:21 ----A---- C:\Windows\system32\cmdial32.dll
2010-04-20 22:04:20 ----A---- C:\Windows\system32\raschap.dll
2010-04-20 22:04:20 ----A---- C:\Windows\system32\fontext.dll
2010-04-20 22:04:19 ----A---- C:\Windows\system32\wiaaut.dll
2010-04-20 22:04:19 ----A---- C:\Windows\system32\MSVidCtl.dll
2010-04-20 22:04:18 ----A---- C:\Windows\system32\WMVXENCD.DLL
2010-04-20 22:04:18 ----A---- C:\Windows\system32\wlanui.dll
2010-04-20 22:04:17 ----A---- C:\Windows\system32\shwebsvc.dll
2010-04-20 22:04:17 ----A---- C:\Windows\system32\rasppp.dll
2010-04-20 22:04:17 ----A---- C:\Windows\system32\PnPutil.exe
2010-04-20 22:04:17 ----A---- C:\Windows\system32\dsprop.dll
2010-04-20 22:04:16 ----A---- C:\Windows\system32\dimsroam.dll
2010-04-20 22:04:15 ----A---- C:\Windows\system32\oobefldr.dll
2010-04-20 22:04:14 ----A---- C:\Windows\system32\shsetup.dll
2010-04-20 22:04:13 ----A---- C:\Windows\system32\rasmontr.dll
2010-04-20 22:04:13 ----A---- C:\Windows\system32\modemui.dll
2010-04-20 22:04:12 ----A---- C:\Windows\system32\mscandui.dll
2010-04-20 22:04:11 ----A---- C:\Windows\system32\chtbrkr.dll
2010-04-20 22:04:10 ----A---- C:\Windows\system32\wmdrmsdk.dll
2010-04-20 22:04:10 ----A---- C:\Windows\system32\dataclen.dll
2010-04-20 22:04:09 ----A---- C:\Windows\system32\wlgpclnt.dll
2010-04-20 22:04:09 ----A---- C:\Windows\system32\blackbox.dll
2010-04-20 22:04:08 ----A---- C:\Windows\system32\rdpwsx.dll
2010-04-20 22:04:07 ----A---- C:\Windows\system32\smss.exe
2010-04-20 22:04:07 ----A---- C:\Windows\system32\credui.dll
2010-04-20 22:04:06 ----A---- C:\Windows\system32\WSDMon.dll
2010-04-20 22:04:06 ----A---- C:\Windows\system32\netplwiz.dll
2010-04-20 22:04:05 ----A---- C:\Windows\system32\wmpeffects.dll
2010-04-20 22:04:05 ----A---- C:\Windows\system32\certprop.dll
2010-04-20 22:04:04 ----A---- C:\Windows\system32\networkexplorer.dll
2010-04-20 22:04:03 ----A---- C:\Windows\system32\wpcsvc.dll
2010-04-20 22:04:03 ----A---- C:\Windows\system32\msscp.dll
2010-04-20 22:04:03 ----A---- C:\Windows\system32\logagent.exe
2010-04-20 22:04:03 ----A---- C:\Windows\system32\InkEd.dll
2010-04-20 22:04:03 ----A---- C:\Windows\system32\ifmon.dll
2010-04-20 22:04:03 ----A---- C:\Windows\system32\cipher.exe
2010-04-20 22:04:02 ----A---- C:\Windows\system32\wscapi.dll
2010-04-20 22:04:02 ----A---- C:\Windows\system32\msimtf.dll
2010-04-20 22:04:02 ----A---- C:\Windows\system32\gpresult.exe
2010-04-20 22:04:01 ----A---- C:\Windows\system32\thawbrkr.dll
2010-04-20 22:04:00 ----A---- C:\Windows\system32\softkbd.dll
2010-04-20 22:04:00 ----A---- C:\Windows\system32\sendmail.dll
2010-04-20 22:03:59 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2010-04-20 22:03:58 ----A---- C:\Windows\system32\olepro32.dll
2010-04-20 22:03:58 ----A---- C:\Windows\system32\msctfui.dll
2010-04-20 22:03:57 ----A---- C:\Windows\system32\drmmgrtn.dll
2010-04-20 22:03:57 ----A---- C:\Windows\system32\dmsynth.dll
2010-04-20 22:03:55 ----A---- C:\Windows\system32\puiapi.dll
2010-04-20 22:03:55 ----A---- C:\Windows\system32\input.dll
2010-04-20 22:03:54 ----A---- C:\Windows\system32\ExplorerFrame.dll
2010-04-20 22:03:53 ----A---- C:\Windows\system32\wshbth.dll
2010-04-20 22:03:53 ----A---- C:\Windows\system32\version.dll
2010-04-20 22:03:53 ----A---- C:\Windows\system32\SLLUA.exe
2010-04-20 22:03:53 ----A---- C:\Windows\system32\mprapi.dll
2010-04-20 22:03:52 ----A---- C:\Windows\system32\msisip.dll
2010-04-20 22:03:52 ----A---- C:\Windows\system32\fc.exe
2010-04-20 22:03:50 ----A---- C:\Windows\system32\fdSSDP.dll
2010-04-20 22:03:50 ----A---- C:\Windows\system32\dmusic.dll
2010-04-20 22:03:49 ----A---- C:\Windows\system32\MsCtfMonitor.dll
2010-04-20 22:03:49 ----A---- C:\Windows\system32\cscapi.dll
2010-04-20 22:03:48 ----A---- C:\Windows\system32\msjint40.dll
2010-04-20 22:03:48 ----A---- C:\Windows\system32\l2nacp.dll
2010-04-20 22:03:48 ----A---- C:\Windows\system32\ftp.exe
2010-04-20 22:03:48 ----A---- C:\Windows\system32\eapp3hst.dll
2010-04-20 22:03:47 ----A---- C:\Windows\system32\cscdll.dll
2010-04-20 22:03:46 ----A---- C:\Windows\system32\wsdchngr.dll
2010-04-20 22:03:46 ----A---- C:\Windows\system32\SMBHelperClass.dll
2010-04-20 22:03:45 ----A---- C:\Windows\system32\Storprop.dll
2010-04-20 22:03:45 ----A---- C:\Windows\system32\rasdial.exe
2010-04-20 22:03:45 ----A---- C:\Windows\system32\rasdiag.dll
2010-04-20 22:03:45 ----A---- C:\Windows\system32\bthudtask.exe
2010-04-20 22:03:45 ----A---- C:\Windows\system32\bthci.dll
2010-04-20 22:03:44 ----A---- C:\Windows\system32\fdWCN.dll
2010-04-20 22:03:44 ----A---- C:\Windows\system32\dot3cfg.dll
2010-04-20 22:03:43 ----A---- C:\Windows\system32\tscupgrd.exe
2010-04-20 22:03:43 ----A---- C:\Windows\system32\ipconfig.exe
2010-04-20 22:03:43 ----A---- C:\Windows\system32\CHxReadingStringIME.dll
2010-04-20 22:03:43 ----A---- C:\Windows\system32\eappcfg.dll
2010-04-20 22:03:42 ----A---- C:\Windows\system32\slcinst.dll
2010-04-20 22:03:42 ----A---- C:\Windows\system32\nslookup.exe
2010-04-20 22:03:42 ----A---- C:\Windows\system32\networkitemfactory.dll
2010-04-20 22:03:40 ----A---- C:\Windows\system32\ocsetup.exe
2010-04-20 22:03:40 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2010-04-20 22:03:40 ----A---- C:\Windows\system32\eappgnui.dll
2010-04-20 22:03:39 ----A---- C:\Windows\system32\hbaapi.dll
2010-04-20 22:03:39 ----A---- C:\Windows\system32\fdeploy.dll
2010-04-20 22:03:38 ----A---- C:\Windows\system32\mmcico.dll
2010-04-20 22:03:37 ----A---- C:\Windows\system32\PNPXAssoc.dll
2010-04-20 22:03:36 ----A---- C:\Windows\system32\gpupdate.exe
2010-04-20 22:03:34 ----A---- C:\Windows\system32\csrstub.exe
2010-04-20 22:03:34 ----A---- C:\Windows\system32\cbsra.exe
2010-04-20 22:03:34 ----A---- C:\Windows\system32\bitsigd.dll
2010-04-20 22:03:33 ----A---- C:\Windows\system32\NcdProp.dll
2010-04-20 22:03:33 ----A---- C:\Windows\system32\iscsilog.dll
2010-04-20 22:03:30 ----A---- C:\Windows\system32\vdmdbg.dll
2010-04-20 22:03:29 ----A---- C:\Windows\system32\slwga.dll
2010-04-20 22:03:29 ----A---- C:\Windows\system32\odbcconf.dll
2010-04-20 22:03:29 ----A---- C:\Windows\system32\inetppui.dll
2010-04-20 22:03:28 ----A---- C:\Windows\system32\winrnr.dll
2010-04-20 22:03:28 ----A---- C:\Windows\system32\midimap.dll
2010-04-20 22:03:23 ----A---- C:\Windows\system32\msimsg.dll
2010-04-20 22:03:23 ----A---- C:\Windows\system32\f3ahvoas.dll
2010-04-20 22:01:57 ----A---- C:\Windows\system32\SmiEngine.dll
2010-04-20 22:01:29 ----A---- C:\Windows\system32\wdscore.dll
2010-04-20 22:01:29 ----A---- C:\Windows\system32\PkgMgr.exe
2010-04-20 22:00:08 ----A---- C:\Windows\system32\drvstore.dll
2010-04-20 16:13:24 ----D---- C:\PerfLogs
2010-04-20 14:20:18 ----A---- C:\Windows\system32\vbscript.dll
2010-04-20 14:20:16 ----A---- C:\Windows\system32\jscript.dll
2010-04-20 12:59:21 ----A---- C:\Windows\system32\mstime.dll
2010-04-20 12:59:20 ----A---- C:\Windows\system32\occache.dll
2010-04-20 12:59:19 ----A---- C:\Windows\system32\jsproxy.dll
2010-04-20 12:59:18 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-04-20 12:59:18 ----A---- C:\Windows\system32\msfeeds.dll
2010-04-20 12:59:18 ----A---- C:\Windows\system32\iepeers.dll
2010-04-20 12:59:16 ----A---- C:\Windows\system32\ieui.dll
2010-04-20 12:59:15 ----A---- C:\Windows\system32\iesetup.dll
2010-04-20 12:59:14 ----A---- C:\Windows\system32\wininet.dll
2010-04-20 12:59:14 ----A---- C:\Windows\system32\msfeedssync.exe
2010-04-20 12:59:14 ----A---- C:\Windows\system32\iernonce.dll
2010-04-20 12:59:13 ----A---- C:\Windows\system32\iertutil.dll
2010-04-20 12:59:13 ----A---- C:\Windows\system32\ie4uinit.exe
2010-04-20 12:59:12 ----A---- C:\Windows\system32\iedkcs32.dll
2010-04-20 12:59:11 ----A---- C:\Windows\system32\urlmon.dll
2010-04-20 12:59:11 ----A---- C:\Windows\system32\ieUnatt.exe
2010-04-20 12:59:11 ----A---- C:\Windows\system32\iesysprep.dll
2010-04-20 12:59:09 ----A---- C:\Windows\system32\ieframe.dll
2010-04-20 12:59:08 ----A---- C:\Windows\system32\mshtml.dll
2010-04-20 12:56:07 ----A---- C:\Windows\system32\mshtmled.dll
2010-04-20 12:56:06 ----A---- C:\Windows\system32\msls31.dll
2010-04-20 12:56:06 ----A---- C:\Windows\system32\mshtmler.dll
2010-04-20 12:56:06 ----A---- C:\Windows\system32\icardie.dll
2010-04-20 12:56:06 ----A---- C:\Windows\system32\admparse.dll
2010-04-20 12:56:05 ----A---- C:\Windows\system32\imgutil.dll
2010-04-20 12:56:05 ----A---- C:\Windows\system32\ieakeng.dll
2010-04-20 12:56:05 ----A---- C:\Windows\system32\corpol.dll
2010-04-20 12:56:04 ----A---- C:\Windows\system32\dxtrans.dll
2010-04-20 12:56:04 ----A---- C:\Windows\system32\dxtmsft.dll
2010-04-20 12:56:03 ----A---- C:\Windows\system32\msrating.dll
2010-04-20 12:56:03 ----A---- C:\Windows\system32\licmgr10.dll
2010-04-20 12:56:03 ----A---- C:\Windows\system32\inseng.dll
2010-04-20 12:56:03 ----A---- C:\Windows\system32\ieaksie.dll
2010-04-20 12:56:02 ----A---- C:\Windows\system32\WinFXDocObj.exe
2010-04-20 12:56:02 ----A---- C:\Windows\system32\wextract.exe
2010-04-20 12:56:02 ----A---- C:\Windows\system32\webcheck.dll
2010-04-20 12:56:02 ----A---- C:\Windows\system32\ieakui.dll
2010-04-20 12:56:01 ----A---- C:\Windows\system32\url.dll
2010-04-20 12:56:01 ----A---- C:\Windows\system32\pngfilt.dll
2010-04-20 12:56:01 ----A---- C:\Windows\system32\ieapfltr.dll
2010-04-20 12:56:01 ----A---- C:\Windows\system32\advpack.dll
2010-04-20 12:55:59 ----A---- C:\Windows\system32\mshta.exe
2010-04-20 12:55:59 ----A---- C:\Windows\system32\iexpress.exe
2010-04-20 12:55:58 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2010-04-20 12:55:58 ----A---- C:\Windows\system32\SetDepNx.exe
2010-04-20 12:55:58 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2010-04-20 12:55:58 ----A---- C:\Windows\system32\PDMSetup.exe
2010-04-18 18:30:27 ----D---- C:\ProgramData\UDL
2010-04-18 18:24:57 ----A---- C:\Windows\system32\PICSDK2.dll
2010-04-18 18:24:57 ----A---- C:\Windows\system32\PICSDK.ini
2010-04-18 18:24:57 ----A---- C:\Windows\system32\PICSDK.dll
2010-04-18 18:24:57 ----A---- C:\Windows\system32\PICEntry.dll
2010-04-18 18:24:57 ----A---- C:\Windows\system32\EpPicPrt.dll
2010-04-18 18:24:57 ----A---- C:\Windows\system32\EPPicMgr.dll
2010-04-18 18:19:45 ----D---- C:\ProgramData\EPSON
2010-04-17 19:08:47 ----HD---- C:\ProgramData\CanonBJ
2010-04-17 13:36:52 ----A---- C:\Windows\system32\E_DCINST.DLL
2010-04-17 13:36:50 ----A---- C:\Windows\system32\E_FLBCAE.DLL
2010-04-17 13:36:47 ----A---- C:\Windows\system32\E_FD4BCAE.DLL
2010-04-17 13:34:46 ----D---- C:\Program Files\epson
2010-04-17 13:34:38 ----A---- C:\Windows\system32\eswiaml.dll
2010-04-17 13:34:38 ----A---- C:\Windows\system32\eswia7e.dll
2010-04-17 13:34:38 ----A---- C:\Windows\system32\esint7e.dll
2010-04-17 13:34:23 ----A---- C:\Windows\CDE DX4400DEFGIPS.ini
2010-04-14 14:53:59 ----D---- C:\Users\Zdena\AppData\Roaming\Media Player Classic
2010-04-14 07:47:54 ----A---- C:\Windows\system32\ntoskrnl.exe
2010-04-14 07:47:54 ----A---- C:\Windows\system32\ntkrnlpa.exe
2010-04-14 07:47:11 ----A---- C:\Windows\system32\iphlpsvc.dll
2010-04-14 07:46:07 ----A---- C:\Windows\system32\wintrust.dll
2010-04-14 07:45:58 ----A---- C:\Windows\system32\cabview.dll
2010-04-11 19:07:28 ----D---- C:\Doupe
2010-04-11 18:32:58 ----D---- C:\ProgramData\SugarGames
2010-04-11 18:32:22 ----D---- C:\Program Files\MyPlayCity.com

======List of files/folders modified in the last 1 months======

2010-05-09 16:34:09 ----RD---- C:\Program Files
2010-05-09 16:32:27 ----D---- C:\Windows\Prefetch
2010-05-09 16:25:51 ----D---- C:\Windows\System32
2010-05-09 16:25:51 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-05-09 16:25:44 ----D---- C:\Windows\inf
2010-05-09 16:21:34 ----D---- C:\Windows\Temp
2010-05-09 16:18:39 ----D---- C:\Windows\Minidump
2010-05-09 16:18:28 ----D---- C:\Windows
2010-05-09 15:55:03 ----D---- C:\Users\Zdena\AppData\Roaming\Spyware Terminator
2010-05-09 14:30:45 ----D---- C:\Users\Zdena\AppData\Roaming\ICQ
2010-05-09 14:29:53 ----A---- C:\Windows\system32\acovcnt.exe
2010-05-09 14:09:07 ----SHD---- C:\Windows\Installer
2010-05-09 14:08:52 ----D---- C:\Windows\system32\catroot
2010-05-09 14:08:42 ----D---- C:\Windows\system32\drivers
2010-05-09 14:08:23 ----SHD---- C:\System Volume Information
2010-05-09 14:06:49 ----D---- C:\Windows\winsxs
2010-05-09 14:05:32 ----HD---- C:\ProgramData
2010-05-09 13:56:39 ----D---- C:\ProgramData\ESET
2010-05-08 10:29:10 ----D---- C:\Program Files\The KMPlayer
2010-05-07 21:47:27 ----D---- C:\ProgramData\Spyware Terminator
2010-05-05 22:15:26 ----D---- C:\Windows\system32\WDI
2010-05-04 07:39:56 ----D---- C:\Windows\Debug
2010-05-03 11:39:56 ----D---- C:\Program Files\Spyware Terminator
2010-05-02 12:01:31 ----D---- C:\Program Files\Internet Explorer
2010-05-02 11:59:13 ----D---- C:\Program Files\Common Files
2010-05-02 11:58:52 ----D---- C:\Windows\system32\Tasks
2010-05-01 13:42:09 ----SD---- C:\Users\Zdena\AppData\Roaming\Microsoft
2010-05-01 10:19:12 ----D---- C:\Windows\rescache
2010-05-01 09:54:40 ----D---- C:\Windows\system32\cs-CZ
2010-05-01 09:54:39 ----D---- C:\Windows\system32\wbem
2010-05-01 09:54:37 ----D---- C:\Windows\system32\uk-UA
2010-05-01 09:54:37 ----D---- C:\Windows\system32\pt-PT
2010-05-01 09:54:37 ----D---- C:\Windows\system32\pt-BR
2010-05-01 09:54:37 ----D---- C:\Windows\system32\pl-PL
2010-05-01 09:54:37 ----D---- C:\Windows\system32\ko-KR
2010-05-01 09:54:37 ----D---- C:\Windows\system32\it-IT
2010-05-01 09:54:37 ----D---- C:\Windows\system32\hu-HU
2010-05-01 09:54:37 ----D---- C:\Windows\system32\he-IL
2010-05-01 09:54:37 ----D---- C:\Windows\system32\bg-BG
2010-05-01 09:54:36 ----D---- C:\Windows\system32\zh-TW
2010-05-01 09:54:36 ----D---- C:\Windows\system32\zh-HK
2010-05-01 09:54:36 ----D---- C:\Windows\system32\zh-CN
2010-05-01 09:54:36 ----D---- C:\Windows\system32\tr-TR
2010-05-01 09:54:36 ----D---- C:\Windows\system32\th-TH
2010-05-01 09:54:36 ----D---- C:\Windows\system32\sv-SE
2010-05-01 09:54:36 ----D---- C:\Windows\system32\sr-Latn-CS
2010-05-01 09:54:36 ----D---- C:\Windows\system32\sl-SI
2010-05-01 09:54:36 ----D---- C:\Windows\system32\sk-SK
2010-05-01 09:54:36 ----D---- C:\Windows\system32\ru-RU
2010-05-01 09:54:36 ----D---- C:\Windows\system32\ro-RO
2010-05-01 09:54:36 ----D---- C:\Windows\system32\nl-NL
2010-05-01 09:54:36 ----D---- C:\Windows\system32\nb-NO
2010-05-01 09:54:36 ----D---- C:\Windows\system32\lv-LV
2010-05-01 09:54:36 ----D---- C:\Windows\system32\lt-LT
2010-05-01 09:54:36 ----D---- C:\Windows\system32\ja-JP
2010-05-01 09:54:36 ----D---- C:\Windows\system32\hr-HR
2010-05-01 09:54:36 ----D---- C:\Windows\system32\fr-FR
2010-05-01 09:54:36 ----D---- C:\Windows\system32\fi-FI
2010-05-01 09:54:36 ----D---- C:\Windows\system32\et-EE
2010-05-01 09:54:36 ----D---- C:\Windows\system32\es-ES
2010-05-01 09:54:36 ----D---- C:\Windows\system32\en-US
2010-05-01 09:54:36 ----D---- C:\Windows\system32\el-GR
2010-05-01 09:54:36 ----D---- C:\Windows\system32\de-DE
2010-05-01 09:54:36 ----D---- C:\Windows\system32\da-DK
2010-05-01 09:54:36 ----D---- C:\Windows\system32\ar-SA
2010-04-30 23:54:28 ----D---- C:\Windows\Microsoft.NET
2010-04-30 23:54:15 ----RSD---- C:\Windows\assembly
2010-04-30 23:53:57 ----D---- C:\Windows\system32\catroot2
2010-04-30 23:50:47 ----D---- C:\Windows\AppPatch
2010-04-29 15:22:57 ----SHD---- C:\Boot
2010-04-29 15:16:14 ----D---- C:\Program Files\Windows Mail
2010-04-29 15:16:14 ----D---- C:\Program Files\Windows Calendar
2010-04-29 15:16:14 ----D---- C:\Program Files\Movie Maker
2010-04-29 15:16:12 ----D---- C:\Program Files\Windows Sidebar
2010-04-29 15:16:12 ----D---- C:\Program Files\Windows Media Player
2010-04-29 15:16:12 ----D---- C:\Program Files\Windows Collaboration
2010-04-29 15:16:11 ----D---- C:\Program Files\Windows Photo Gallery
2010-04-29 15:16:11 ----D---- C:\Program Files\Windows Journal
2010-04-29 15:16:11 ----D---- C:\Program Files\Common Files\System
2010-04-29 15:16:08 ----D---- C:\Windows\servicing
2010-04-29 15:16:08 ----D---- C:\Program Files\Windows Defender
2010-04-29 15:16:03 ----D---- C:\Windows\ehome
2010-04-29 15:15:48 ----D---- C:\Windows\system32\XPSViewer
2010-04-29 15:15:48 ----D---- C:\Windows\IME
2010-04-29 15:15:47 ----D---- C:\Windows\system32\oobe
2010-04-29 15:15:47 ----D---- C:\Windows\system32\migration
2010-04-29 15:15:46 ----D---- C:\Windows\system32\AdvancedInstallers
2010-04-29 15:15:45 ----D---- C:\Windows\system32\setup
2010-04-29 15:15:45 ----D---- C:\Windows\system32\cs
2010-04-29 15:15:42 ----D---- C:\Windows\system32\SLUI
2010-04-29 15:15:41 ----D---- C:\Windows\system32\manifeststore
2010-04-29 15:15:38 ----D---- C:\Windows\system32\migwiz
2010-04-29 15:15:08 ----RSD---- C:\Windows\Fonts
2010-04-29 15:15:00 ----D---- C:\Windows\system32\Boot
2010-04-29 15:13:22 ----D---- C:\Windows\system32\RTCOM
2010-04-29 14:23:35 ----D---- C:\Program Files\Mozilla Firefox
2010-04-21 08:27:01 ----D---- C:\Windows\PolicyDefinitions
2010-04-20 19:13:54 ----D---- C:\Windows\Logs
2010-04-20 16:29:11 ----D---- C:\Program Files\WinClamAVShield
2010-04-20 16:26:16 ----ASH---- C:\Program Files\desktop.ini
2010-04-20 16:16:13 ----D---- C:\Windows\MSAgent
2010-04-20 16:16:12 ----D---- C:\Windows\L2Schemas
2010-04-20 16:16:12 ----D---- C:\Windows\DigitalLocker
2010-04-20 16:16:11 ----D---- C:\Windows\system32\com
2010-04-20 16:16:09 ----D---- C:\Windows\system32\sysprep
2010-04-20 16:16:03 ----D---- C:\Windows\system32\ias
2010-04-20 16:13:38 ----D---- C:\Windows\Boot
2010-04-20 13:31:39 ----A---- C:\Windows\system32\ifxcardm.dll
2010-04-20 13:31:36 ----A---- C:\Windows\system32\axaltocm.dll
2010-04-20 13:10:21 ----SD---- C:\Windows\Downloaded Program Files
2010-04-19 19:53:09 ----D---- C:\Windows\LiveKernelReports
2010-04-18 18:37:45 ----HD---- C:\Program Files\InstallShield Installation Information
2010-04-18 18:32:55 ----D---- C:\Program Files\Common Files\InstallShield
2010-04-17 19:16:08 ----D---- C:\ProgramData\Microsoft Help
2010-04-17 13:34:38 ----D---- C:\Windows\twain_32

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2010-05-06 23376]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2010-05-06 164048]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2010-05-06 46672]
R1 SbFw;SbFw; C:\Windows\system32\drivers\SbFw.sys [2008-10-31 270888]
R1 sbhips;Sunbelt HIPS Driver; C:\Windows\system32\drivers\sbhips.sys [2008-06-21 66600]
R1 sp_rsdrv2;Spyware Terminator Driver 2; \??\C:\Windows\system32\drivers\sp_rsdrv2.sys [2010-03-27 142592]
R1 Tosrfcom;Bluetooth RFCOMM; C:\Windows\System32\Drivers\tosrfcom.sys [2005-08-01 64896]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2010-05-06 19024]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2010-05-06 51792]
R2 ghaio;ghaio; \??\C:\Program Files\ASUS\NB Probe\SPM\ghaio.sys [2007-08-03 20936]
R3 Atc002;NDIS Miniport Driver for Atheros L2 Fast Ethernet Controller; C:\Windows\system32\DRIVERS\l260x86.sys [2007-08-17 28672]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2007-07-30 743424]
R3 CmBatt;Ovladač baterie Microsoft ACPI Control Method Battery; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-19 14208]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2007-02-14 1740904]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2007-01-24 5632]
R3 MODEMCSA;Unimodem Streaming Filter Device; C:\Windows\system32\drivers\MODEMCSA.sys [2008-01-19 18432]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATKACPI.sys [2006-12-15 7680]
R3 R300;R300; C:\Windows\system32\DRIVERS\atikmdag.sys [2007-02-02 2385920]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\Windows\System32\Drivers\RootMdm.sys [2008-01-19 8192]
R3 RTSTOR;USB Mass Storage Device; C:\Windows\system32\drivers\RTSTOR.SYS [2007-11-09 57856]
R3 SBFWIMCL;Sunbelt Software Firewall NDIS IM Filter Miniport; C:\Windows\system32\DRIVERS\sbfwim.sys [2008-06-21 65576]
R3 smserial;smserial; C:\Windows\system32\DRIVERS\smserial.sys [2006-11-22 982272]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2007-10-01 1769984]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-12-06 196400]
R3 tosporte;Bluetooth COM Port; C:\Windows\system32\DRIVERS\tosporte.sys [2006-10-10 41600]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-19 83328]
S3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-11 22528]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-19 92160]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2006-11-02 220160]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2006-11-02 29184]
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-11 148992]
S3 tosrfbd;Bluetooth RFBUS; C:\Windows\system32\DRIVERS\tosrfbd.sys [2006-11-30 113792]
S3 tosrfbnp;Bluetooth RFBNEP; C:\Windows\System32\Drivers\tosrfbnp.sys [2006-11-20 36480]
S3 Tosrfhid;Bluetooth RFHID; C:\Windows\system32\DRIVERS\Tosrfhid.sys [2006-10-05 73600]
S3 tosrfnds;Bluetooth Personal Area Network; C:\Windows\system32\DRIVERS\tosrfnds.sys [2005-01-06 18612]
S3 Tosrfusb;Bluetooth USB Controller; C:\Windows\system32\DRIVERS\tosrfusb.sys [2006-10-28 40960]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-19 35328]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-19 134016]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ASLDRService;ASLDR Service; C:\Program Files\ATK Hotkey\ASLDRSrv.exe [2007-02-05 94208]
R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [2007-02-02 565248]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-05-06 40384]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2008-06-09 73728]
R2 SbPF.Launcher;SbPF.Launcher; C:\Program Files\Sunbelt Software\Personal Firewall\SbPFLnch.exe [2008-10-31 95528]
R2 sp_rssrv;Spyware Terminator Realtime Shield Service; C:\Program Files\Spyware Terminator\sp_rsser.exe [2010-04-14 488960]
R2 SPF4;Sunbelt Personal Firewall 4; C:\Program Files\Sunbelt Software\Personal Firewall\SbPFSvc.exe [2008-10-31 1365288]
R2 spmgr;spmgr; C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe [2007-08-03 125496]
R2 TOSHIBA Bluetooth Service;TOSHIBA Bluetooth Service; C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe [2006-10-31 77824]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-05-06 40384]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-05-06 40384]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-19 21504]
S3 getPlusHelper;@C:\Program Files\NOS\bin\getPlus_Helper.dll,-101; C:\Windows\System32\svchost.exe [2008-01-19 21504]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]

-----------------EOF-----------------

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: prosim o kontrolu log

#3 Příspěvek od motji »

Dobrý večer :)

:arrow: Stáhněte na plochu, ukončete všechna aktivní okna a spusťte ComboFix - http://download.bleepingcomputer.com/sUBs/ComboFix.exe


- ComboFix je třeba spustit pod účtem s právy administrátora

- Před použitím vypněte všechny rezidentní bezpečnostní programy - antiviry, firewally, antispywary

- Po spuštění se zobrazí podmínky užití, potvrďte je stiskem tlačítka Ano

- Dále postupujte dle pokynů, během aplikování ComboFixu neklikejte do zobrazujícího se okna :!:

- Po dokončení skenování, trvajícího maximálně 10 minut, by měl program vytvořit log - C:\ComboFix.txt, zkopírujte celý jeho obsah sem
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

killer.
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 90
Registrován: 11 led 2007 22:58

Re: prosim o kontrolu log

#4 Příspěvek od killer. »

Díky za radu,uz se mi to stalo jednou ze mi nesla otevrit stranka a myslim ze jsem to resil zrovna s Vama :) .Opet mi stranku blokoval firewall.

Diky a omlovam se za otravovani :wink: :)

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: prosim o kontrolu log

#5 Příspěvek od motji »

Ale stejně bych si něco ráda v logu ověřila, pár věcí v logu se mi moc nelíbí.
Vidím že jste combofix už použil,ale log asi nemáte, že? Zkuste combofix přejmenovat na cokoliv.com a spustit v nouzovém režimu.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

killer.
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 90
Registrován: 11 led 2007 22:58

Re: prosim o kontrolu log

#6 Příspěvek od killer. »

Tak tady je :-)

ComboFix 10-05-09.04 - Zdena 10.05.2010 8:36.2.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.420.1029.18.1919.1224 [GMT 2:00]
Spuštěný z: c:\users\Zdena\Desktop\ComboFix.exe
AV: ESET Smart Security 4.0 *On-access scanning enabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: ESET personal firewall *enabled* {E5E70D32-0101-4340-86A3-A7B0F1C8FFE0}
SP: ESET Smart Security 4.0 *enabled* (Updated) {E5E70D32-0101-4B98-A4D6-D1D15C3BB448}
SP: Spyware Terminator *disabled* (Updated) {55EE49A8-16BE-4601-BBE6-607B7F7317DE}
SP: Windows Defender *disabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
.

((((((((((((((((((((((((( Soubory vytvořené od 2010-04-10 do 2010-05-10 )))))))))))))))))))))))))))))))
.

2010-05-10 06:57 . 2010-05-10 06:57 -------- d-----w- c:\users\Default\AppData\Local\temp
2010-05-09 20:37 . 2010-05-09 20:37 -------- d-----w- c:\users\Zdena\AppData\Local\AOL
2010-05-09 20:24 . 2010-05-09 20:24 -------- d-----w- c:\program files\ESET
2010-05-09 14:46 . 2010-05-09 14:46 -------- d-----w- c:\users\Zdena\AppData\Roaming\Malwarebytes
2010-05-09 14:45 . 2010-05-09 14:45 -------- d-----w- c:\programdata\Malwarebytes
2010-05-09 14:34 . 2010-05-09 14:34 -------- d-----w- c:\program files\trend micro
2010-05-09 12:08 . 2010-05-09 19:46 -------- d-----w- c:\program files\Sunbelt Software
2010-05-09 12:05 . 2010-05-09 12:05 -------- d-----w- c:\programdata\Alwil Software
2010-05-02 10:00 . 2010-05-02 10:01 -------- d-----w- c:\program files\QuickTime
2010-05-02 10:00 . 2010-05-02 10:00 -------- d-----w- c:\programdata\Apple Computer
2010-05-02 09:59 . 2010-05-02 09:59 -------- d-----w- c:\program files\Common Files\Apple
2010-05-02 09:58 . 2010-05-02 09:58 -------- d-----w- c:\program files\Apple Software Update
2010-05-02 09:58 . 2010-05-02 09:58 -------- d-----w- c:\programdata\Apple
2010-05-01 11:40 . 2010-05-01 11:40 515848 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2010-05-01 07:54 . 2010-05-01 07:54 -------- d-----w- c:\program files\Windows Portable Devices
2010-04-30 21:54 . 2009-09-10 02:00 92672 ----a-w- c:\windows\system32\UIAnimation.dll
2010-04-30 21:54 . 2009-09-10 02:01 3023360 ----a-w- c:\windows\system32\UIRibbon.dll
2010-04-30 21:54 . 2009-09-10 02:00 1164800 ----a-w- c:\windows\system32\UIRibbonRes.dll
2010-04-30 21:52 . 2009-10-01 01:01 60928 ----a-w- c:\windows\system32\PortableDeviceConnectApi.dll
2010-04-30 21:52 . 2009-10-01 01:01 40448 ----a-w- c:\windows\system32\drivers\WpdUsb.sys
2010-04-30 21:52 . 2009-10-01 01:01 61952 ----a-w- c:\windows\system32\WpdMtpUS.dll
2010-04-30 21:52 . 2009-10-01 01:01 33280 ----a-w- c:\windows\system32\WpdConns.dll
2010-04-30 21:52 . 2009-10-01 01:02 2537472 ----a-w- c:\windows\system32\wpdshext.dll
2010-04-30 21:52 . 2009-10-01 01:02 334848 ----a-w- c:\windows\system32\PortableDeviceApi.dll
2010-04-30 21:52 . 2009-10-01 01:02 87552 ----a-w- c:\windows\system32\WPDShServiceObj.dll
2010-04-30 21:52 . 2009-10-01 01:01 546816 ----a-w- c:\windows\system32\wpd_ci.dll
2010-04-30 21:52 . 2009-10-01 01:01 160256 ----a-w- c:\windows\system32\PortableDeviceTypes.dll
2010-04-30 21:52 . 2009-10-01 01:01 350208 ----a-w- c:\windows\system32\WPDSp.dll
2010-04-30 21:52 . 2009-10-01 01:01 196608 ----a-w- c:\windows\system32\PortableDeviceWMDRM.dll
2010-04-30 21:52 . 2009-10-01 01:01 100864 ----a-w- c:\windows\system32\PortableDeviceClassExtension.dll
2010-04-30 21:52 . 2009-10-01 01:01 226816 ----a-w- c:\windows\system32\WpdMtp.dll
2010-04-30 21:51 . 2009-10-08 21:08 555520 ----a-w- c:\windows\system32\UIAutomationCore.dll
2010-04-30 21:51 . 2009-10-08 21:08 234496 ----a-w- c:\windows\system32\oleacc.dll
2010-04-30 21:51 . 2009-10-08 21:07 4096 ----a-w- c:\windows\system32\oleaccrc.dll
2010-04-29 18:17 . 2010-01-06 15:39 1696256 ----a-w- c:\windows\system32\gameux.dll
2010-04-29 18:16 . 2010-01-06 15:38 28672 ----a-w- c:\windows\system32\Apphlpdm.dll
2010-04-29 18:16 . 2010-01-06 13:30 4240384 ----a-w- c:\windows\system32\GameUXLegacyGDFs.dll
2010-04-29 13:15 . 2010-04-29 13:15 -------- d-----w- c:\windows\system32\ca-ES
2010-04-29 13:15 . 2010-04-29 13:15 -------- d-----w- c:\windows\system32\eu-ES
2010-04-29 13:15 . 2010-04-29 13:15 -------- d-----w- c:\windows\system32\vi-VN
2010-04-29 12:01 . 2010-04-29 12:01 -------- d-----w- c:\windows\system32\EventProviders
2010-04-21 17:28 . 2010-04-21 17:28 -------- d-----w- c:\program files\Xilisoft
2010-04-20 22:37 . 2008-05-27 04:59 18904 ----a-w- c:\windows\system32\StructuredQuerySchemaTrivial.bin
2010-04-20 20:07 . 2009-02-18 18:38 619864 ----a-w- c:\windows\system32\icardagt.exe
2010-04-20 20:06 . 2009-04-11 06:28 199680 ----a-w- c:\windows\system32\WebClnt.dll
2010-04-20 20:05 . 2009-04-11 06:28 347648 ----a-w- c:\windows\system32\wbem\wbemess.dll
2010-04-20 20:04 . 2009-04-11 06:28 399360 ----a-w- c:\windows\system32\wlangpui.dll
2010-04-20 20:03 . 2009-04-11 06:28 356864 ----a-w- c:\windows\system32\MediaMetadataHandler.dll
2010-04-20 20:02 . 2009-04-11 06:28 83968 ----a-w- c:\windows\system32\wbem\wmiutils.dll
2010-04-20 20:02 . 2009-04-11 06:28 744448 ----a-w- c:\windows\system32\wbem\wbemcore.dll
2010-04-20 20:02 . 2009-04-11 06:28 30208 ----a-w- c:\windows\system32\wbem\wbemprox.dll
2010-04-20 20:02 . 2009-04-11 06:28 189440 ----a-w- c:\windows\system32\wbem\mofd.dll
2010-04-20 20:02 . 2009-04-11 06:28 265728 ----a-w- c:\windows\system32\wbem\esscli.dll
2010-04-20 20:02 . 2009-04-11 06:28 265728 ----a-w- c:\windows\system32\wbem\repdrvfs.dll
2010-04-20 20:02 . 2009-04-11 06:28 614912 ----a-w- c:\windows\system32\wbem\fastprox.dll
2010-04-20 20:01 . 2009-04-11 06:28 705536 ----a-w- c:\windows\system32\SmiEngine.dll
2010-04-20 20:01 . 2009-04-11 06:28 218624 ----a-w- c:\windows\system32\wdscore.dll
2010-04-20 20:01 . 2009-04-11 06:27 130560 ----a-w- c:\windows\system32\PkgMgr.exe
2010-04-20 20:00 . 2009-04-11 06:28 247808 ----a-w- c:\windows\system32\drvstore.dll
2010-04-20 12:20 . 2010-03-05 14:01 420352 ----a-w- c:\windows\system32\vbscript.dll
2010-04-20 10:55 . 2009-03-08 11:32 169472 ----a-w- c:\windows\system32\iexpress.exe
2010-04-20 10:55 . 2009-03-08 11:31 45568 ----a-w- c:\windows\system32\mshta.exe
2010-04-20 10:55 . 2009-03-08 11:33 109568 ----a-w- c:\windows\system32\PDMSetup.exe
2010-04-20 10:55 . 2009-03-08 11:33 107520 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2010-04-20 10:55 . 2009-03-08 11:33 107008 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2010-04-20 10:55 . 2009-03-08 11:33 103936 ----a-w- c:\windows\system32\SetDepNx.exe
2010-04-18 16:30 . 2010-04-18 16:30 -------- d-----w- c:\programdata\UDL
2010-04-18 16:19 . 2007-01-11 04:02 113664 ----a-w- c:\programdata\EPSON\EPW!3 SSRP\E_S40RP7.EXE
2010-04-18 16:19 . 2010-04-18 16:19 -------- d-----w- c:\programdata\EPSON
2010-04-17 17:08 . 2010-04-17 17:08 -------- d--h--w- c:\programdata\CanonBJ
2010-04-17 17:08 . 2006-11-02 09:46 70144 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\CNBPP3.DLL
2010-04-17 11:36 . 2004-09-10 20:12 49152 ----a-w- c:\windows\system32\E_DCINST.DLL
2010-04-17 11:36 . 2006-12-08 02:04 76800 ----a-w- c:\windows\system32\E_FLBCAE.DLL
2010-04-17 11:36 . 2006-04-19 02:00 62976 ----a-w- c:\windows\system32\E_FD4BCAE.DLL
2010-04-17 11:34 . 2010-04-18 16:29 -------- d-----w- c:\program files\epson
2010-04-17 11:34 . 2006-12-27 22:00 66560 ----a-w- c:\windows\system32\eswia7e.dll
2010-04-17 11:34 . 2006-12-27 22:00 208896 ----a-w- c:\windows\system32\esint7e.dll
2010-04-17 11:34 . 2006-03-09 22:00 3584 ----a-w- c:\windows\system32\eswiaml.dll
2010-04-14 12:53 . 2010-04-14 12:54 -------- d-----w- c:\users\Zdena\AppData\Roaming\Media Player Classic
2010-04-14 05:48 . 2010-02-23 11:10 79360 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2010-04-14 05:48 . 2010-02-23 11:10 212992 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2010-04-14 05:48 . 2010-02-23 11:10 106496 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2010-04-14 05:47 . 2010-02-18 14:07 3600776 ----a-w- c:\windows\system32\ntkrnlpa.exe
2010-04-14 05:47 . 2010-02-18 14:07 3548040 ----a-w- c:\windows\system32\ntoskrnl.exe
2010-04-14 05:47 . 2010-02-18 13:30 200704 ----a-w- c:\windows\system32\iphlpsvc.dll
2010-04-14 05:47 . 2010-02-18 14:07 904576 ----a-w- c:\windows\system32\drivers\tcpip.sys
2010-04-14 05:47 . 2010-02-18 11:28 25088 ----a-w- c:\windows\system32\drivers\tunnel.sys
2010-04-14 05:47 . 2008-01-19 05:55 15360 ----a-w- c:\windows\system32\drivers\TUNMP.SYS
2010-04-14 05:46 . 2009-12-23 11:33 172032 ----a-w- c:\windows\system32\wintrust.dll
2010-04-14 05:45 . 2010-01-13 17:34 98304 ----a-w- c:\windows\system32\cabview.dll
2010-04-11 16:32 . 2010-04-11 16:32 -------- d-----w- c:\programdata\SugarGames
2010-04-11 16:32 . 2010-04-11 20:38 -------- d-----w- c:\program files\MyPlayCity.com

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-05-10 06:23 . 2007-01-08 21:09 602092 ----a-w- c:\windows\system32\perfh005.dat
2010-05-10 06:23 . 2007-01-08 21:09 116204 ----a-w- c:\windows\system32\perfc005.dat
2010-05-10 06:19 . 2010-03-27 18:27 -------- d-----w- c:\users\Zdena\AppData\Roaming\ICQ
2010-05-09 20:51 . 2010-03-27 05:41 12 ----a-w- c:\windows\bthservsdp.dat
2010-05-09 13:55 . 2010-03-27 08:25 -------- d-----w- c:\users\Zdena\AppData\Roaming\Spyware Terminator
2010-05-09 12:29 . 2010-03-27 06:40 45056 ----a-w- c:\windows\system32\acovcnt.exe
2010-05-08 08:29 . 2010-03-27 07:42 -------- d-----w- c:\program files\The KMPlayer
2010-05-07 19:47 . 2010-03-27 08:25 -------- d-----w- c:\programdata\Spyware Terminator
2010-05-03 09:39 . 2010-03-27 08:25 -------- d-----w- c:\program files\Spyware Terminator
2010-05-01 07:54 . 2006-11-02 10:25 665600 ----a-w- c:\windows\inf\drvindex.dat
2010-05-01 07:49 . 2010-05-01 07:49 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdMtpDr_01_07_00.Wdf
2010-05-01 07:49 . 2010-05-01 07:49 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_07_00.Wdf
2010-04-29 13:16 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Calendar
2010-04-29 13:16 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail
2010-04-29 13:16 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Sidebar
2010-04-29 13:16 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Collaboration
2010-04-29 13:16 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Photo Gallery
2010-04-29 13:16 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Journal
2010-04-29 13:16 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Defender
2010-04-21 17:27 . 2010-04-21 17:27 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_00_00.Wdf
2010-04-21 14:47 . 2010-04-21 14:47 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdMtpDr_01_00_00.Wdf
2010-04-20 14:29 . 2010-03-27 08:26 -------- d-----w- c:\program files\WinClamAVShield
2010-04-20 11:31 . 2006-11-02 10:32 101888 ----a-w- c:\windows\system32\ifxcardm.dll
2010-04-20 11:31 . 2006-11-02 10:32 82432 ----a-w- c:\windows\system32\axaltocm.dll
2010-04-18 16:37 . 2010-03-27 05:55 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-04-18 16:32 . 2010-03-27 06:02 -------- d-----w- c:\program files\Common Files\InstallShield
2010-04-17 17:16 . 2010-03-27 07:34 -------- d-----w- c:\programdata\Microsoft Help
2010-04-08 12:50 . 2010-03-27 18:27 -------- d-----w- c:\program files\ICQ7.0
2010-04-08 12:44 . 2010-03-27 07:04 -------- d-----w- c:\program files\CCleaner
2010-04-08 11:35 . 2010-04-08 11:35 499712 ----a-w- c:\windows\system32\kerberos.dll
2010-04-08 11:35 . 2010-04-08 11:35 270848 ----a-w- c:\windows\system32\schannel.dll
2010-04-08 11:35 . 2010-04-08 11:35 293376 ----a-w- c:\windows\system32\browserchoice.exe
2010-04-08 10:52 . 2010-04-08 10:52 -------- d-----w- c:\program files\Common Files\LightScribe
2010-04-08 10:51 . 2010-04-08 10:51 -------- d-----w- c:\program files\CyberLink
2010-04-08 10:50 . 2010-04-08 10:50 53319 ----a-w- c:\programdata\Temp\{5DB1DF0C-AABC-4362-8A6D-CEFDFB036E41}\PostBuild.exe
2010-04-06 10:24 . 2010-03-27 05:46 100432 ----a-w- c:\users\Zdena\AppData\Local\GDIPFONTCACHEV1.DAT
2010-04-01 13:52 . 2010-04-01 13:52 34304 ----a-w- c:\windows\system32\atmlib.dll
2010-04-01 13:52 . 2010-04-01 13:52 289792 ----a-w- c:\windows\system32\atmfd.dll
2010-04-01 13:52 . 2010-04-01 13:52 23552 ----a-w- c:\windows\system32\lpk.dll
2010-04-01 13:52 . 2010-04-01 13:52 156672 ----a-w- c:\windows\system32\t2embed.dll
2010-04-01 13:52 . 2010-04-01 13:52 10240 ----a-w- c:\windows\system32\dciman32.dll
2010-04-01 13:52 . 2010-04-01 13:52 72704 ----a-w- c:\windows\system32\fontsub.dll
2010-04-01 13:47 . 2010-04-01 13:47 61440 ----a-w- c:\windows\system32\winipsec.dll
2010-04-01 13:47 . 2010-04-01 13:47 272896 ----a-w- c:\windows\system32\polstore.dll
2010-04-01 13:44 . 2010-04-01 13:44 98816 ----a-w- c:\windows\system32\drivers\srvnet.sys
2010-04-01 13:44 . 2010-04-01 13:44 302080 ----a-w- c:\windows\system32\drivers\srv.sys
2010-04-01 13:39 . 2010-04-01 13:39 17920 ----a-w- c:\windows\system32\netevent.dll
2010-04-01 13:39 . 2010-04-01 13:39 11264 ----a-w- c:\windows\system32\MRINFO.EXE
2010-04-01 13:39 . 2010-04-01 13:39 9728 ----a-w- c:\windows\system32\TCPSVCS.EXE
2010-04-01 13:39 . 2010-04-01 13:39 8704 ----a-w- c:\windows\system32\HOSTNAME.EXE
2010-04-01 13:39 . 2010-04-01 13:39 105984 ----a-w- c:\windows\system32\netiohlp.dll
2010-04-01 13:39 . 2010-04-01 13:39 27136 ----a-w- c:\windows\system32\NETSTAT.EXE
2010-04-01 13:39 . 2010-04-01 13:39 19968 ----a-w- c:\windows\system32\ARP.EXE
2010-04-01 13:39 . 2010-04-01 13:39 17920 ----a-w- c:\windows\system32\ROUTE.EXE
2010-04-01 13:39 . 2010-04-01 13:39 10240 ----a-w- c:\windows\system32\finger.exe
2010-04-01 13:34 . 2010-04-01 13:34 127488 ----a-w- c:\windows\system32\L2SecHC.dll
2010-04-01 13:34 . 2010-04-01 13:34 68096 ----a-w- c:\windows\system32\wlanhlp.dll
2010-04-01 13:34 . 2010-04-01 13:34 65024 ----a-w- c:\windows\system32\wlanapi.dll
2010-04-01 13:34 . 2010-04-01 13:34 513536 ----a-w- c:\windows\system32\wlansvc.dll
2010-04-01 13:34 . 2010-04-01 13:34 302592 ----a-w- c:\windows\system32\wlansec.dll
2010-04-01 13:34 . 2010-04-01 13:34 293376 ----a-w- c:\windows\system32\wlanmsm.dll
2010-04-01 13:34 . 2010-04-01 13:34 15181 ----a-w- c:\windows\system32\gatherWirelessInfo.vbs
2010-04-01 13:32 . 2010-04-01 13:32 1248768 ----a-w- c:\windows\system32\msxml3.dll
2010-04-01 13:32 . 2010-04-01 13:32 1401856 ----a-w- c:\windows\system32\msxml6.dll
2010-04-01 13:32 . 2010-04-01 13:32 2048 ----a-w- c:\windows\system32\msxml3r.dll
2010-04-01 13:32 . 2010-04-01 13:32 2048 ----a-w- c:\windows\system32\msxml6r.dll
2010-04-01 13:31 . 2010-04-01 13:31 439864 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2010-04-01 13:31 . 2010-04-01 13:31 218624 ----a-w- c:\windows\system32\msv1_0.dll
2010-04-01 13:31 . 2010-04-01 13:31 175104 ----a-w- c:\windows\system32\wdigest.dll
2010-04-01 13:31 . 2010-04-01 13:31 9728 ----a-w- c:\windows\system32\lsass.exe
2010-04-01 13:31 . 2010-04-01 13:31 72704 ----a-w- c:\windows\system32\secur32.dll
2010-04-01 13:31 . 2010-04-01 13:31 1259008 ----a-w- c:\windows\system32\lsasrv.dll
2010-04-01 13:28 . 2010-04-01 13:28 2868224 ----a-w- c:\windows\system32\mf.dll
2010-04-01 13:28 . 2010-04-01 13:28 98816 ----a-w- c:\windows\system32\mfps.dll
2010-04-01 13:28 . 2010-04-01 13:28 53248 ----a-w- c:\windows\system32\rrinstaller.exe
2010-04-01 13:28 . 2010-04-01 13:28 24576 ----a-w- c:\windows\system32\mfpmp.exe
2010-04-01 13:28 . 2010-04-01 13:28 2048 ----a-w- c:\windows\system32\mferror.dll
2010-04-01 13:22 . 2010-04-01 13:22 71680 ----a-w- c:\windows\system32\atl.dll
2010-04-01 13:13 . 2010-04-01 13:13 160256 ----a-w- c:\windows\system32\wkssvc.dll
2010-04-01 13:12 . 2010-04-01 13:12 53248 ----a-w- c:\windows\system32\tsgqec.dll
2010-04-01 13:12 . 2010-04-01 13:12 2066432 ----a-w- c:\windows\system32\mstscax.dll
2010-04-01 13:12 . 2010-04-01 13:12 136192 ----a-w- c:\windows\system32\aaclient.dll
2010-04-01 12:53 . 2010-04-01 12:53 2048 ----a-w- c:\windows\system32\tzres.dll
2010-04-01 12:52 . 2010-04-01 12:52 623616 ----a-w- c:\windows\system32\localspl.dll
2010-04-01 12:28 . 2010-04-01 12:28 6656 ----a-w- c:\windows\system32\kbd106n.dll
2010-04-01 11:29 . 2010-04-01 11:29 37888 ----a-w- c:\windows\system32\printcom.dll
2010-04-01 11:25 . 2010-04-01 11:25 2036736 ----a-w- c:\windows\system32\win32k.sys
2010-04-01 11:20 . 2010-04-01 11:20 14848 ----a-w- c:\windows\system32\wshrm.dll
2010-04-01 11:17 . 2010-04-01 11:17 313344 ----a-w- c:\windows\system32\wmpdxm.dll
2010-04-01 11:12 . 2010-04-01 11:12 332288 ----a-w- c:\windows\system32\msdrm.dll
2010-04-01 11:12 . 2010-04-01 11:12 347136 ----a-w- c:\windows\system32\RMActivate_ssp.exe
2010-04-01 11:12 . 2010-04-01 11:12 152064 ----a-w- c:\windows\system32\secproc_ssp.dll
2010-04-01 11:12 . 2010-04-01 11:12 152576 ----a-w- c:\windows\system32\secproc_ssp_isv.dll
2010-04-01 11:12 . 2010-04-01 11:12 346624 ----a-w- c:\windows\system32\RMActivate_ssp_isv.exe
2010-04-01 11:12 . 2010-04-01 11:12 471552 ----a-w- c:\windows\system32\secproc.dll
2010-04-01 11:12 . 2010-04-01 11:12 518144 ----a-w- c:\windows\system32\RMActivate.exe
2010-04-01 11:12 . 2010-04-01 11:12 526336 ----a-w- c:\windows\system32\RMActivate_isv.exe
2010-04-01 11:12 . 2010-04-01 11:12 471552 ----a-w- c:\windows\system32\secproc_isv.dll
2010-04-01 11:00 . 2010-04-01 11:00 30720 ----a-w- c:\windows\system32\drivers\tcpipreg.sys
2010-04-01 09:48 . 2010-04-01 09:48 41984 ----a-w- c:\windows\system32\netfxperf.dll
.

(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-04-11 1233920]
"SpywareTerminatorUpdate"="c:\program files\Spyware Terminator\SpywareTerminatorUpdate.exe" [2010-03-27 3037696]
"ICQ"="c:\program files\ICQ7.0\ICQ.exe" [2010-03-28 133368]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SpywareTerminator"="c:\program files\Spyware Terminator\SpywareTerminatorShield.exe" [2010-04-14 2176512]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2009-11-16 2054360]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"

[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth Manager.lnk]
path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth Manager.lnk
backup=c:\windows\pss\Bluetooth Manager.lnk.CommonStartup
backupExtension=.CommonStartup

[HKLM\~\startupfolder\C:^Users^Zdena^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^CCC.lnk]
path=c:\users\Zdena\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CCC.lnk
backup=c:\windows\pss\CCC.lnk.Startup
backupExtension=.Startup

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2008-06-12 01:38 34672 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Camera ScreenSaver]
2010-03-27 06:30 37232 ----a-w- c:\windows\ASScrProlog.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
2010-03-27 06:30 33136 ----a-w- c:\windows\ASScrPro.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSTPE]
2006-12-12 14:06 106496 ----a-w- c:\windows\System32\ASUSTPE.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATKMEDIA]
2006-11-02 07:27 61440 ----a-w- c:\program files\ASUS\ATK Media\DMedia.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ehTray.exe]
2008-01-19 07:33 125952 ----a-w- c:\windows\ehome\ehtray.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON Stylus DX4400 Series]
2007-03-01 06:01 180736 ----a-w- c:\windows\System32\spool\drivers\w32x86\3\E_FATICAE.EXE

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON Stylus DX4400 Series (kopie 1)]
2007-03-01 06:01 180736 ----a-w- c:\windows\System32\spool\drivers\w32x86\3\E_FATICAE.EXE

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
2008-10-25 10:44 31072 ----a-w- c:\program files\Microsoft Office\Office12\GrooveMonitor.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
2008-06-09 08:16 2363392 ----a-w- c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PowerForPhone]
2007-06-26 09:10 778240 ----a-w- c:\program files\PowerForPhone\PowerForPhone.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2010-03-17 19:53 421888 ----a-w- c:\program files\QuickTime\QTTask.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
2007-02-15 17:07 4390912 ----a-w- c:\windows\RtHDVCpl.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SMSERIAL]
2007-09-03 13:32 630784 ----a-w- c:\program files\Motorola\SMSERIAL\sm56hlpr.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
2006-11-10 11:35 90112 ----a-w- c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2010-03-27 07:30 149280 ----a-w- c:\program files\Java\jre6\bin\jusched.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
2007-12-06 10:12 1029416 ----a-w- c:\program files\Synaptics\SynTP\SynTPEnh.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Uninstall Adobe Download Manager]
2010-03-22 14:53 68000 ----a-w- c:\program files\NOS\bin\getPlus_Helper.dll

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Defender]
2008-01-19 07:38 1008184 ----a-w- c:\program files\Windows Defender\MSASCui.exe

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"VistaSp2"=hex(b):99,7d,1e,ff,9e,e7,ca,01

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-3075451635-330052210-4076365675-1000]
"EnableNotificationsRef"=dword:00000001

R3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [x]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [2009-11-16 108792]
S1 sp_rsdrv2;Spyware Terminator Driver 2;c:\windows\system32\drivers\sp_rsdrv2.sys [2010-03-27 142592]
S2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [2009-11-16 735960]
S2 epfwwfp;epfwwfp;c:\windows\system32\DRIVERS\epfwwfp.sys [2009-11-16 38240]
S3 Atc002;NDIS Miniport Driver for Atheros L2 Fast Ethernet Controller;c:\windows\system32\DRIVERS\l260x86.sys [2007-08-17 28672]


[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
getPlusHelper REG_MULTI_SZ getPlusHelper
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache

[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2008-06-09 08:14 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
Obsah adresáře 'Naplánované úlohy'

2010-05-10 c:\windows\Tasks\User_Feed_Synchronization-{86640402-383E-4D0E-9B93-CBEAB4C57EAB}.job
- c:\windows\system32\msfeedssync.exe [2010-04-20 04:54]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://seznam.cz/
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: {{7E6A20FB-153F-402c-A84B-1A64E1955D3D} - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748449} - {CC963627-B1DC-40E0-B52A-CF21EE748449} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748450} - {CC963627-B1DC-40E0-B52A-CF21EE748450} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748451} - {CC963627-B1DC-40E0-B52A-CF21EE748451} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748452} - {CC963627-B1DC-40E0-B52A-CF21EE748452} - c:\programdata\LangSoft\WebIE.dll
FF - ProfilePath - c:\users\Zdena\AppData\Roaming\Mozilla\Firefox\Profiles\vn14x47r.default\
FF - prefs.js: browser.startup.homepage - seznam.cz
FF - plugin: c:\program files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll
FF - plugin: c:\program files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll

---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
.

**************************************************************************
skenování skrytých procesů ...

skenování skrytých položek 'Po spuštění' ...

skenování skrytých souborů ...

sken byl úspešně dokončen
skryté soubory:

**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
--------------------- Knihovny navázané na běžící procesy ---------------------

- - - - - - - > 'Explorer.exe'(4504)
c:\program files\ASUS\Asus MultiFrame\HookTitle.dll
.
Celkový čas: 2010-05-10 09:00:07
ComboFix-quarantined-files.txt 2010-05-10 07:00

Před spuštěním: Volných bajtů: 186 099 720 192
Po spuštění: Volných bajtů: 185 549 746 176

- - End Of File - - 5373DDB296B888DB82B31BF4D91611C7

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: prosim o kontrolu log

#7 Příspěvek od motji »

Mohl bych ještě provést test na rootkity?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

killer.
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 90
Registrován: 11 led 2007 22:58

Re: prosim o kontrolu log

#8 Příspěvek od killer. »

no muzu,takze timto programem?? RootRepeal

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: prosim o kontrolu log

#9 Příspěvek od motji »

Pokud ho máte v pc, tak můžete, záložka driver a files.

Ale raději bych gmer, mám ho v podpise.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: prosim o kontrolu log

#10 Příspěvek od motji »

Jak to tu vypadá? :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

killer.
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 90
Registrován: 11 led 2007 22:58

Re: prosim o kontrolu log

#11 Příspěvek od killer. »

Zdravim,po spusteni gmeru sem nechal program pracovat a asi za tri hodky jsem se na nej podival a pocitac na nic nereagoval takze log nemam.Pocitac jsem natvrdo vypnul a znova zapnul a vse funguje tak jak ma,chvilku ho budu testovat a kdyz by byl nejaky problem tak se urcite ozvu. :wink: Diky za vasi ochotu :)

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: prosim o kontrolu log

#12 Příspěvek od motji »

Dobře, aspon uklidíme :)

:arrow: Odinstalujte combofix přes Start - Spustit
- zkopírujte do okénka:

ComboFix /Uninstall

-stiskněte Enter
-To odinstaluje ComboFix a smaže s ním související soubory a složky.


***********


:arrow: Stáhněte T-Cleaner
http://sweb.cz/Marinus/T-Cleaner.exe

-Spusťte,pro potvrzení volby mačkejte klávesu A, Enter
-po použití prográmek vymažte.Pozor,antiviry ho mohou falešně označit za vir



***********


:arrow: Z mého podpisu stahněte Ccleaner
- nainstalujte, při výběru, co se má nainstalovat, dejte pryč fajfku u instalace yahoo toolbaru

Obrázekzáložka čistič
- nechejte v levém sloupečku zatrhnuté vše jak je, klikněte na analyzovat
- po analýze klikněte na Spustit Ccleaner

Obrázekzáložka Registry
- klikněte na hledej problémy
- pak klikněte na opravit vybrané problémy -- udělat zálohu registrů - nemusíte
- kliknete opravit všechny problémy :arrow: ok :arrow: zavřít

Obrázek Záložka Nástroje
- zde můžete odinstalovat programy. Je to důkladnější odinstalace než u přidat/odebrat programy ve Windows.

Ccleaner - čistič doporučuji používat, krásně pročistí pc od dočasných souborů.
Registry pročistí třeba po odinstalaci nějakého programu.


***********



:arrow: Stahněte OTC a použijte
http://oldtimer.geekstogo.com/OTC.exe
-vyčistí tempy a po použitých programech



***********

:arrow: Vložte nový log ze RSIT a řekněte co počítač, jak se chová, už je vše v pořádku?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

killer.
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 90
Registrován: 11 led 2007 22:58

Re: prosim o kontrolu log

#13 Příspěvek od killer. »

Tak tady to je :)

Logfile of random's system information tool 1.07 (written by random/random)
Run by Zdena at 2010-05-13 11:34:03
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 177 GB (74%) free of 238 GB
Total RAM: 1919 MB (61% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:34:29, on 13.5.2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18904)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Program Files\ASUS\ASUS Live Update\ALU.exe
C:\Program Files\ASUS\Asus MultiFrame\MultiFrame.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.Exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe
C:\Program Files\ICQ7.0\ICQ.exe
C:\Windows\System32\spool\drivers\w32x86\3\E_FATICAE.EXE
C:\Windows\System32\mobsync.exe
C:\Users\Zdena\Desktop\RSIT.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Program Files\trend micro\Zdena.exe
C:\Windows\system32\SearchFilterHost.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60446
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_custo ... TbId=60446
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WebTransBHO Class - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\ProgramData\LangSoft\WebIE.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\ProgramData\LangSoft\WebIE.dll
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [SpywareTerminatorUpdate] "C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"
O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ7.0\ICQ.exe" silent loginmode=4
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\ProgramData\LangSoft\WebIE.dll
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files\ATK Hotkey\ASLDRSrv.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: spmgr - Unknown owner - C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe

--
End of file - 6317 bytes

======Scheduled tasks folder======

C:\Windows\tasks\User_Feed_Synchronization-{86640402-383E-4D0E-9B93-CBEAB4C57EAB}.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\ProgramData\LangSoft\WebIE.dll [2010-03-27 520192]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre6\bin\ssv.dll [2010-03-27 321312]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-03-27 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\ProgramData\LangSoft\WebIE.dll [2010-03-27 520192]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SpywareTerminator"=C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe [2010-04-14 2176512]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2009-11-16 2054360]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-11 1233920]
"SpywareTerminatorUpdate"=C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe [2010-03-27 3037696]
"ICQ"=C:\Program Files\ICQ7.0\ICQ.exe [2010-03-28 133368]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Camera ScreenSaver]
C:\Windows\ASScrProlog.exe [2010-03-27 37232]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\ASScrPro.exe [2010-03-27 33136]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSTPE]
C:\Windows\system32\ASUSTPE.exe [2006-12-12 106496]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATKMEDIA]
C:\Program Files\ASUS\ATK Media\DMEDIA.EXE [2006-11-02 61440]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ehTray.exe]
C:\Windows\ehome\ehTray.exe [2008-01-19 125952]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON Stylus DX4400 Series]
C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE [2007-03-01 180736]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON Stylus DX4400 Series (kopie 1)]
C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE [2007-03-01 180736]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2008-06-09 2363392]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PowerForPhone]
C:\Program Files\PowerForPhone\PowerForPhone.exe [2007-06-26 778240]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\QTTask.exe [2010-03-17 421888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Windows\RtHDVCpl.exe [2007-02-15 4390912]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SMSERIAL]
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [2007-09-03 630784]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2006-11-10 90112]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Java\jre6\bin\jusched.exe [2010-03-27 149280]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-12-06 1029416]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Uninstall Adobe Download Manager]
C:\Program Files\NOS\bin\getPlus_Helper.dll [2010-03-22 68000]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Defender]
C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth Manager.lnk]
C:\PROGRA~1\Toshiba\BLUETO~1\TosBtMng.exe [2007-01-18 2752512]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Zdena^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^CCC.lnk]
C:\PROGRA~1\ATITEC~1\ATI.ACE\CORE-S~1\CCC.exe [2006-09-29 49152]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"= []

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLUA"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
"NoDrives"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 months======

2010-05-13 11:34:03 ----D---- C:\rsit
2010-05-12 13:09:14 ----A---- C:\Windows\system32\inetcomm.dll
2010-05-10 09:00:09 ----D---- C:\Windows\temp
2010-05-10 08:58:51 ----SHD---- C:\$RECYCLE.BIN
2010-05-09 22:24:28 ----D---- C:\ProgramData\ESET
2010-05-09 22:24:28 ----D---- C:\Program Files\ESET
2010-05-09 21:29:06 ----D---- C:\Program Files\Mozilla Firefox
2010-05-09 16:46:00 ----D---- C:\Users\Zdena\AppData\Roaming\Malwarebytes
2010-05-09 16:45:49 ----D---- C:\ProgramData\Malwarebytes
2010-05-09 16:34:09 ----D---- C:\Program Files\trend micro
2010-05-09 14:08:32 ----D---- C:\Program Files\Sunbelt Software
2010-05-09 14:05:32 ----D---- C:\ProgramData\Alwil Software
2010-05-03 23:07:55 ----D---- C:\Users\Zdena\AppData\Roaming\WinRAR
2010-05-03 23:07:18 ----D---- C:\Program Files\WinRAR
2010-05-02 12:00:13 ----D---- C:\ProgramData\Apple Computer
2010-05-02 12:00:13 ----D---- C:\Program Files\QuickTime
2010-05-02 11:59:13 ----D---- C:\Program Files\Common Files\Apple
2010-05-02 11:58:48 ----D---- C:\ProgramData\Apple
2010-05-02 11:58:48 ----D---- C:\Program Files\Apple Software Update
2010-05-01 09:54:39 ----D---- C:\Program Files\Windows Portable Devices
2010-04-30 23:54:09 ----A---- C:\Windows\system32\UIAnimation.dll
2010-04-30 23:54:08 ----A---- C:\Windows\system32\UIRibbonRes.dll
2010-04-30 23:54:08 ----A---- C:\Windows\system32\UIRibbon.dll
2010-04-30 23:53:40 ----A---- C:\Windows\system32\WMPhoto.dll
2010-04-30 23:53:40 ----A---- C:\Windows\system32\cdd.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\XpsRasterService.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\XpsPrint.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\WindowsCodecs.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2010-04-30 23:53:39 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\OpcServices.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\dxdiagn.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\dxdiag.exe
2010-04-30 23:53:39 ----A---- C:\Windows\system32\d3d10warp.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\d2d1.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\xpsservices.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\FntCache.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\dxgi.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\DWrite.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\d3d11.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\d3d10level9.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\d3d10core.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\d3d10_1core.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\d3d10_1.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\d3d10.dll
2010-04-30 23:53:01 ----A---- C:\Windows\system32\WPDShextAutoplay.exe
2010-04-30 23:53:01 ----A---- C:\Windows\system32\wpdbusenum.dll
2010-04-30 23:53:01 ----A---- C:\Windows\system32\BthMtpContextHandler.dll
2010-04-30 23:52:57 ----A---- C:\Windows\system32\PortableDeviceConnectApi.dll
2010-04-30 23:52:54 ----A---- C:\Windows\system32\WpdMtpUS.dll
2010-04-30 23:52:54 ----A---- C:\Windows\system32\WpdConns.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\WPDSp.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\wpdshext.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\WpdMtp.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\wpd_ci.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2010-04-30 23:51:46 ----A---- C:\Windows\system32\UIAutomationCore.dll
2010-04-30 23:51:46 ----A---- C:\Windows\system32\oleaccrc.dll
2010-04-30 23:51:46 ----A---- C:\Windows\system32\oleacc.dll
2010-04-29 20:17:00 ----A---- C:\Windows\system32\gameux.dll
2010-04-29 20:16:56 ----A---- C:\Windows\system32\Apphlpdm.dll
2010-04-29 20:16:55 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2010-04-29 15:15:02 ----D---- C:\Windows\system32\eu-ES
2010-04-29 15:15:02 ----D---- C:\Windows\system32\ca-ES
2010-04-29 15:15:00 ----D---- C:\Windows\system32\vi-VN
2010-04-29 14:01:11 ----D---- C:\Windows\system32\EventProviders
2010-04-21 19:28:36 ----D---- C:\Program Files\Xilisoft
2010-04-20 22:08:42 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2010-04-20 22:08:38 ----A---- C:\Windows\system32\SLCExt.dll
2010-04-20 22:08:37 ----A---- C:\Windows\system32\SLsvc.exe
2010-04-20 22:08:30 ----A---- C:\Windows\system32\DevicePairingWizard.exe
2010-04-20 22:08:29 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll
2010-04-20 22:08:26 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2010-04-20 22:08:20 ----A---- C:\Windows\system32\mssrch.dll
2010-04-20 22:08:15 ----A---- C:\Windows\system32\tquery.dll
2010-04-20 22:08:12 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2010-04-20 22:08:09 ----A---- C:\Windows\system32\scavenge.dll
2010-04-20 22:08:07 ----A---- C:\Windows\system32\msi.dll
2010-04-20 22:08:05 ----A---- C:\Windows\system32\imapi2fs.dll
2010-04-20 22:08:03 ----A---- C:\Windows\system32\WscEapPr.dll
2010-04-20 22:08:03 ----A---- C:\Windows\system32\wcnwiz2.dll
2010-04-20 22:08:02 ----A---- C:\Windows\system32\sysmain.dll
2010-04-20 22:07:59 ----A---- C:\Windows\system32\icardagt.exe
2010-04-20 22:07:57 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2010-04-20 22:07:56 ----A---- C:\Windows\system32\EhStorShell.dll
2010-04-20 22:07:54 ----A---- C:\Windows\system32\spreview.exe
2010-04-20 22:07:54 ----A---- C:\Windows\system32\spinstall.exe
2010-04-20 22:07:53 ----A---- C:\Windows\system32\drmv2clt.dll
2010-04-20 22:07:51 ----A---- C:\Windows\system32\spwizui.dll
2010-04-20 22:07:51 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2010-04-20 22:07:49 ----A---- C:\Windows\system32\shell32.dll
2010-04-20 22:07:47 ----A---- C:\Windows\system32\p2psvc.dll
2010-04-20 22:07:46 ----A---- C:\Windows\system32\SearchIndexer.exe
2010-04-20 22:07:45 ----A---- C:\Windows\system32\mssvp.dll
2010-04-20 22:07:43 ----A---- C:\Windows\system32\mscoree.dll
2010-04-20 22:07:42 ----A---- C:\Windows\system32\mssphtb.dll
2010-04-20 22:07:42 ----A---- C:\Windows\system32\MSMPEG2VDEC.DLL
2010-04-20 22:07:41 ----A---- C:\Windows\system32\mssph.dll
2010-04-20 22:07:40 ----A---- C:\Windows\system32\imapi2.dll
2010-04-20 22:07:38 ----A---- C:\Windows\system32\sdohlp.dll
2010-04-20 22:07:37 ----A---- C:\Windows\system32\esent.dll
2010-04-20 22:07:36 ----A---- C:\Windows\system32\IMJP10K.DLL
2010-04-20 22:07:35 ----A---- C:\Windows\system32\DevicePairing.dll
2010-04-20 22:07:34 ----A---- C:\Windows\system32\sperror.dll
2010-04-20 22:07:33 ----A---- C:\Windows\system32\wevtsvc.dll
2010-04-20 22:07:33 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2010-04-20 22:07:33 ----A---- C:\Windows\system32\korwbrkr.dll
2010-04-20 22:07:32 ----A---- C:\Windows\system32\SLC.dll
2010-04-20 22:07:31 ----A---- C:\Windows\system32\msshsq.dll
2010-04-20 22:07:27 ----A---- C:\Windows\system32\msjet40.dll
2010-04-20 22:07:27 ----A---- C:\Windows\system32\MPSSVC.dll
2010-04-20 22:07:25 ----A---- C:\Windows\system32\Query.dll
2010-04-20 22:07:25 ----A---- C:\Windows\system32\qmgr.dll
2010-04-20 22:07:23 ----A---- C:\Windows\system32\msexch40.dll
2010-04-20 22:07:23 ----A---- C:\Windows\system32\diagperf.dll
2010-04-20 22:07:22 ----A---- C:\Windows\system32\P2PGraph.dll
2010-04-20 22:07:22 ----A---- C:\Windows\system32\IasMigReader.exe
2010-04-20 22:07:21 ----A---- C:\Windows\system32\ole32.dll
2010-04-20 22:07:21 ----A---- C:\Windows\system32\ntdll.dll
2010-04-20 22:07:20 ----A---- C:\Windows\system32\winload.exe
2010-04-20 22:07:20 ----A---- C:\Windows\system32\srchadmin.dll
2010-04-20 22:07:20 ----A---- C:\Windows\system32\mblctr.exe
2010-04-20 22:07:19 ----A---- C:\Windows\system32\uDWM.dll
2010-04-20 22:07:19 ----A---- C:\Windows\system32\mmc.exe
2010-04-20 22:07:19 ----A---- C:\Windows\system32\EncDec.dll
2010-04-20 22:07:19 ----A---- C:\Windows\system32\dfsr.exe
2010-04-20 22:07:18 ----A---- C:\Windows\system32\IasMigPlugin.dll
2010-04-20 22:07:17 ----A---- C:\Windows\system32\riched20.dll
2010-04-20 22:07:17 ----A---- C:\Windows\system32\fdBth.dll
2010-04-20 22:07:15 ----A---- C:\Windows\system32\RacEngn.dll
2010-04-20 22:07:15 ----A---- C:\Windows\system32\kernel32.dll
2010-04-20 22:07:14 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2010-04-20 22:07:14 ----A---- C:\Windows\system32\SearchFilterHost.exe
2010-04-20 22:07:14 ----A---- C:\Windows\system32\milcore.dll
2010-04-20 22:07:13 ----A---- C:\Windows\system32\EhStorAPI.dll
2010-04-20 22:07:13 ----A---- C:\Windows\system32\CertEnroll.dll
2010-04-20 22:07:12 ----A---- C:\Windows\system32\spoolss.dll
2010-04-20 22:07:12 ----A---- C:\Windows\system32\schedsvc.dll
2010-04-20 22:07:11 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2010-04-20 22:07:09 ----A---- C:\Windows\system32\AuxiliaryDisplayDriverLib.dll
2010-04-20 22:07:08 ----A---- C:\Windows\system32\msvcp60.dll
2010-04-20 22:07:08 ----A---- C:\Windows\system32\msjtes40.dll
2010-04-20 22:07:08 ----A---- C:\Windows\system32\gpedit.dll
2010-04-20 22:07:07 ----A---- C:\Windows\system32\infocardapi.dll
2010-04-20 22:07:05 ----A---- C:\Windows\system32\WinSAT.exe
2010-04-20 22:07:05 ----A---- C:\Windows\system32\es.dll
2010-04-20 22:07:04 ----A---- C:\Windows\system32\PresentationSettings.exe
2010-04-20 22:07:03 ----A---- C:\Windows\system32\Magnify.exe
2010-04-20 22:07:03 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2010-04-20 22:07:02 ----A---- C:\Windows\system32\mstext40.dll
2010-04-20 22:07:02 ----A---- C:\Windows\system32\advapi32.dll
2010-04-20 22:06:59 ----A---- C:\Windows\system32\WebClnt.dll
2010-04-20 22:06:58 ----A---- C:\Windows\system32\slwmi.dll
2010-04-20 22:06:58 ----A---- C:\Windows\system32\msexcl40.dll
2010-04-20 22:06:57 ----A---- C:\Windows\system32\msxbde40.dll
2010-04-20 22:06:57 ----A---- C:\Windows\system32\comsvcs.dll
2010-04-20 22:06:56 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
2010-04-20 22:06:54 ----A---- C:\Windows\system32\vssapi.dll
2010-04-20 22:06:53 ----A---- C:\Windows\system32\authui.dll
2010-04-20 22:06:51 ----A---- C:\Windows\system32\NetProjW.dll
2010-04-20 22:06:50 ----A---- C:\Windows\system32\PresentationHost.exe
2010-04-20 22:06:50 ----A---- C:\Windows\system32\msrepl40.dll
2010-04-20 22:06:49 ----A---- C:\Windows\system32\propsys.dll
2010-04-20 22:06:49 ----A---- C:\Windows\system32\newdev.dll
2010-04-20 22:06:48 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2010-04-20 22:06:48 ----A---- C:\Windows\system32\iasrecst.dll
2010-04-20 22:06:48 ----A---- C:\Windows\system32\gpsvc.dll
2010-04-20 22:06:48 ----A---- C:\Windows\system32\eudcedit.exe
2010-04-20 22:06:48 ----A---- C:\Windows\system32\crypt32.dll
2010-04-20 22:06:47 ----A---- C:\Windows\system32\rpcss.dll
2010-04-20 22:06:47 ----A---- C:\Windows\explorer.exe
2010-04-20 22:06:46 ----A---- C:\Windows\system32\setupapi.dll
2010-04-20 22:06:45 ----A---- C:\Windows\system32\mspbde40.dll
2010-04-20 22:06:45 ----A---- C:\Windows\system32\d3d9.dll
2010-04-20 22:06:43 ----A---- C:\Windows\system32\msltus40.dll
2010-04-20 22:06:43 ----A---- C:\Windows\system32\davclnt.dll
2010-04-20 22:06:42 ----A---- C:\Windows\system32\shlwapi.dll
2010-04-20 22:06:42 ----A---- C:\Windows\system32\mfc42.dll
2010-04-20 22:06:41 ----A---- C:\Windows\system32\msrd3x40.dll
2010-04-20 22:06:41 ----A---- C:\Windows\system32\EhStorPwdMgr.dll
2010-04-20 22:06:41 ----A---- C:\Windows\system32\EhStorAuthn.dll
2010-04-20 22:06:40 ----A---- C:\Windows\system32\msdtctm.dll
2010-04-20 22:06:39 ----A---- C:\Windows\system32\wevtapi.dll
2010-04-20 22:06:39 ----A---- C:\Windows\system32\photowiz.dll
2010-04-20 22:06:39 ----A---- C:\Windows\system32\nlhtml.dll
2010-04-20 22:06:39 ----A---- C:\Windows\system32\browseui.dll
2010-04-20 22:06:36 ----A---- C:\Windows\system32\user32.dll
2010-04-20 22:06:35 ----A---- C:\Windows\system32\samsrv.dll
2010-04-20 22:06:35 ----A---- C:\Windows\system32\ci.dll
2010-04-20 22:06:34 ----A---- C:\Windows\system32\win32spl.dll
2010-04-20 22:06:33 ----A---- C:\Windows\system32\WcnNetsh.dll
2010-04-20 22:06:33 ----A---- C:\Windows\system32\SLCommDlg.dll
2010-04-20 22:06:32 ----A---- C:\Windows\system32\oleaut32.dll
2010-04-20 22:06:31 ----A---- C:\Windows\system32\IKEEXT.DLL
2010-04-20 22:06:30 ----A---- C:\Windows\system32\netshell.dll
2010-04-20 22:06:30 ----A---- C:\Windows\system32\compcln.exe
2010-04-20 22:06:30 ----A---- C:\Windows\system32\apds.dll
2010-04-20 22:06:28 ----A---- C:\Windows\system32\xmlfilter.dll
2010-04-20 22:06:28 ----A---- C:\Windows\system32\mswstr10.dll
2010-04-20 22:06:28 ----A---- C:\Windows\system32\audiosrv.dll
2010-04-20 22:06:27 ----A---- C:\Windows\system32\msctf.dll
2010-04-20 22:06:27 ----A---- C:\Windows\system32\emdmgmt.dll
2010-04-20 22:06:26 ----A---- C:\Windows\system32\msvcrt.dll
2010-04-20 22:06:25 ----A---- C:\Windows\system32\VSSVC.exe
2010-04-20 22:06:25 ----A---- C:\Windows\system32\QAGENTRT.DLL
2010-04-20 22:06:25 ----A---- C:\Windows\system32\gdi32.dll
2010-04-20 22:06:24 ----A---- C:\Windows\system32\SLUI.exe
2010-04-20 22:06:24 ----A---- C:\Windows\system32\mfc42u.dll
2010-04-20 22:06:23 ----A---- C:\Windows\system32\eapphost.dll
2010-04-20 22:06:22 ----A---- C:\Windows\system32\sqlsrv32.dll
2010-04-20 22:06:22 ----A---- C:\Windows\system32\msrd2x40.dll
2010-04-20 22:06:20 ----A---- C:\Windows\system32\winresume.exe
2010-04-20 22:06:20 ----A---- C:\Windows\system32\propdefs.dll
2010-04-20 22:06:20 ----A---- C:\Windows\system32\odbc32.dll
2010-04-20 22:06:18 ----A---- C:\Windows\system32\shdocvw.dll
2010-04-20 22:06:16 ----A---- C:\Windows\system32\wevtutil.exe
2010-04-20 22:06:16 ----A---- C:\Windows\system32\dbgeng.dll
2010-04-20 22:06:15 ----A---- C:\Windows\system32\mssitlb.dll
2010-04-20 22:06:13 ----A---- C:\Windows\system32\WsmSvc.dll
2010-04-20 22:06:13 ----A---- C:\Windows\system32\swprv.dll
2010-04-20 22:06:12 ----A---- C:\Windows\system32\mmcndmgr.dll
2010-04-20 22:06:11 ----A---- C:\Windows\system32\usp10.dll
2010-04-20 22:06:09 ----A---- C:\Windows\system32\vds.exe
2010-04-20 22:06:09 ----A---- C:\Windows\system32\drvinst.exe
2010-04-20 22:06:08 ----A---- C:\Windows\system32\netlogon.dll
2010-04-20 22:06:08 ----A---- C:\Windows\system32\msctfp.dll
2010-04-20 22:06:08 ----A---- C:\Windows\system32\fdBthProxy.dll
2010-04-20 22:06:08 ----A---- C:\Windows\system32\devmgr.dll
2010-04-20 22:06:07 ----A---- C:\Windows\system32\msscb.dll
2010-04-20 22:06:07 ----A---- C:\Windows\system32\DevicePairingProxy.dll
2010-04-20 22:06:07 ----A---- C:\Windows\system32\adsldpc.dll
2010-04-20 22:06:06 ----A---- C:\Windows\system32\BFE.DLL
2010-04-20 22:06:05 ----A---- C:\Windows\system32\Wldap32.dll
2010-04-20 22:06:05 ----A---- C:\Windows\system32\wcnwiz.dll
2010-04-20 22:06:05 ----A---- C:\Windows\system32\evr.dll
2010-04-20 22:06:03 ----A---- C:\Windows\system32\WMVSDECD.DLL
2010-04-20 22:06:01 ----A---- C:\Windows\system32\services.exe
2010-04-20 22:06:00 ----A---- C:\Windows\system32\wercon.exe
2010-04-20 22:06:00 ----A---- C:\Windows\system32\comdlg32.dll
2010-04-20 22:05:59 ----A---- C:\Windows\system32\mimefilt.dll
2010-04-20 22:05:59 ----A---- C:\Windows\system32\adtschema.dll
2010-04-20 22:05:58 ----A---- C:\Windows\system32\wcncsvc.dll
2010-04-20 22:05:58 ----A---- C:\Windows\system32\certcli.dll
2010-04-20 22:05:55 ----A---- C:\Windows\system32\msdtcprx.dll
2010-04-20 22:05:54 ----A---- C:\Windows\system32\taskeng.exe
2010-04-20 22:05:54 ----A---- C:\Windows\system32\rtffilt.dll
2010-04-20 22:05:54 ----A---- C:\Windows\system32\reg.exe
2010-04-20 22:05:54 ----A---- C:\Windows\system32\mswdat10.dll
2010-04-20 22:05:54 ----A---- C:\Windows\system32\msjter40.dll
2010-04-20 22:05:54 ----A---- C:\Windows\system32\ipsmsnap.dll
2010-04-20 22:05:53 ----A---- C:\Windows\system32\umpnpmgr.dll
2010-04-20 22:05:53 ----A---- C:\Windows\system32\dnsapi.dll
2010-04-20 22:05:53 ----A---- C:\Windows\system32\certutil.exe
2010-04-20 22:05:52 ----A---- C:\Windows\system32\WMNetMgr.dll
2010-04-20 22:05:52 ----A---- C:\Windows\system32\w32time.dll
2010-04-20 22:05:51 ----A---- C:\Windows\system32\IPSECSVC.DLL
2010-04-20 22:05:50 ----A---- C:\Windows\system32\msshooks.dll
2010-04-20 22:05:50 ----A---- C:\Windows\system32\bcrypt.dll
2010-04-20 22:05:49 ----A---- C:\Windows\system32\msscntrs.dll
2010-04-20 22:05:49 ----A---- C:\Windows\system32\bthserv.dll
2010-04-20 22:05:48 ----A---- C:\Windows\system32\rsaenh.dll
2010-04-20 22:05:47 ----A---- C:\Windows\system32\TsWpfWrp.exe
2010-04-20 22:05:47 ----A---- C:\Windows\system32\msstrc.dll
2010-04-20 22:05:47 ----A---- C:\Windows\system32\msihnd.dll
2010-04-20 22:05:47 ----A---- C:\Windows\system32\MMDevAPI.dll
2010-04-20 22:05:45 ----A---- C:\Windows\system32\netapi32.dll
2010-04-20 22:05:45 ----A---- C:\Windows\system32\inetpp.dll
2010-04-20 22:05:45 ----A---- C:\Windows\system32\dfshim.dll
2010-04-20 22:05:44 ----A---- C:\Windows\system32\mtxclu.dll
2010-04-20 22:05:44 ----A---- C:\Windows\system32\fundisc.dll
2010-04-20 22:05:44 ----A---- C:\Windows\system32\cryptsvc.dll
2010-04-20 22:05:43 ----A---- C:\Windows\system32\mscories.dll
2010-04-20 22:05:43 ----A---- C:\Windows\system32\hidserv.dll
2010-04-20 22:05:43 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2010-04-20 22:05:42 ----A---- C:\Windows\system32\wmicmiplugin.dll
2010-04-20 22:05:42 ----A---- C:\Windows\system32\termsrv.dll
2010-04-20 22:05:42 ----A---- C:\Windows\system32\profsvc.dll
2010-04-20 22:05:41 ----A---- C:\Windows\system32\imapi.dll
2010-04-20 22:05:40 ----A---- C:\Windows\system32\wdc.dll
2010-04-20 22:05:40 ----A---- C:\Windows\system32\shsvcs.dll
2010-04-20 22:05:40 ----A---- C:\Windows\system32\msiexec.exe
2010-04-20 22:05:40 ----A---- C:\Windows\system32\chsbrkr.dll
2010-04-20 22:05:39 ----A---- C:\Windows\system32\rasmans.dll
2010-04-20 22:05:39 ----A---- C:\Windows\system32\iassdo.dll
2010-04-20 22:05:38 ----A---- C:\Windows\system32\spoolsv.exe
2010-04-20 22:05:38 ----A---- C:\Windows\system32\pnidui.dll
2010-04-20 22:05:38 ----A---- C:\Windows\system32\icardres.dll
2010-04-20 22:05:38 ----A---- C:\Windows\system32\autofmt.exe
2010-04-20 22:05:37 ----A---- C:\Windows\system32\wersvc.dll
2010-04-20 22:05:37 ----A---- C:\Windows\system32\scrrun.dll
2010-04-20 22:05:36 ----A---- C:\Windows\system32\slmgr.vbs
2010-04-20 22:05:36 ----A---- C:\Windows\system32\PSHED.DLL
2010-04-20 22:05:36 ----A---- C:\Windows\system32\pdh.dll
2010-04-20 22:05:36 ----A---- C:\Windows\system32\dhcpcsvc.dll
2010-04-20 22:05:35 ----A---- C:\Windows\system32\CertEnrollUI.dll
2010-04-20 22:05:35 ----A---- C:\Windows\system32\azroles.dll
2010-04-20 22:05:34 ----A---- C:\Windows\system32\pidgenx.dll
2010-04-20 22:05:30 ----A---- C:\Windows\system32\wmpmde.dll
2010-04-20 22:05:30 ----A---- C:\Windows\system32\winlogon.exe
2010-04-20 22:05:29 ----A---- C:\Windows\system32\SyncCenter.dll
2010-04-20 22:05:28 ----A---- C:\Windows\system32\SLUINotify.dll
2010-04-20 22:05:28 ----A---- C:\Windows\system32\msjetoledb40.dll
2010-04-20 22:05:28 ----A---- C:\Windows\system32\comuid.dll
2010-04-20 22:05:27 ----A---- C:\Windows\system32\certmgr.dll
2010-04-20 22:05:26 ----A---- C:\Windows\system32\spp.dll
2010-04-20 22:05:26 ----A---- C:\Windows\system32\sethc.exe
2010-04-20 22:05:26 ----A---- C:\Windows\system32\ncrypt.dll
2010-04-20 22:05:26 ----A---- C:\Windows\system32\kd1394.dll
2010-04-20 22:05:26 ----A---- C:\Windows\system32\iassam.dll
2010-04-20 22:05:25 ----A---- C:\Windows\system32\wisptis.exe
2010-04-20 22:05:25 ----A---- C:\Windows\system32\untfs.dll
2010-04-20 22:05:25 ----A---- C:\Windows\system32\scrobj.dll
2010-04-20 22:05:25 ----A---- C:\Windows\system32\rtutils.dll
2010-04-20 22:05:24 ----A---- C:\Windows\system32\taskcomp.dll
2010-04-20 22:05:24 ----A---- C:\Windows\system32\dwm.exe
2010-04-20 22:05:23 ----A---- C:\Windows\system32\autochk.exe
2010-04-20 22:05:22 ----A---- C:\Windows\system32\printui.dll
2010-04-20 22:05:22 ----A---- C:\Windows\system32\iasnap.dll
2010-04-20 22:05:22 ----A---- C:\Windows\system32\autoconv.exe
2010-04-20 22:05:21 ----A---- C:\Windows\system32\winsrv.dll
2010-04-20 22:05:20 ----A---- C:\Windows\system32\kdcom.dll
2010-04-20 22:05:20 ----A---- C:\Windows\system32\cscript.exe
2010-04-20 22:05:20 ----A---- C:\Windows\system32\basecsp.dll
2010-04-20 22:05:19 ----A---- C:\Windows\system32\wow32.dll
2010-04-20 22:05:19 ----A---- C:\Windows\system32\userenv.dll
2010-04-20 22:05:19 ----A---- C:\Windows\system32\onex.dll
2010-04-20 22:05:19 ----A---- C:\Windows\system32\audiodg.exe
2010-04-20 22:05:18 ----A---- C:\Windows\system32\osk.exe
2010-04-20 22:05:18 ----A---- C:\Windows\system32\mswsock.dll
2010-04-20 22:05:16 ----A---- C:\Windows\system32\kdusb.dll
2010-04-20 22:05:15 ----A---- C:\Windows\system32\winmm.dll
2010-04-20 22:05:15 ----A---- C:\Windows\system32\RelMon.dll
2010-04-20 22:05:15 ----A---- C:\Windows\system32\rdpencom.dll
2010-04-20 22:05:14 ----A---- C:\Windows\system32\WinSCard.dll
2010-04-20 22:05:13 ----A---- C:\Windows\system32\WerFaultSecure.exe
2010-04-20 22:05:13 ----A---- C:\Windows\system32\spcmsg.dll
2010-04-20 22:05:13 ----A---- C:\Windows\system32\offfilt.dll
2010-04-20 22:05:13 ----A---- C:\Windows\system32\msftedit.dll
2010-04-20 22:05:13 ----A---- C:\Windows\system32\dnsrslvr.dll
2010-04-20 22:05:11 ----A---- C:\Windows\system32\Utilman.exe
2010-04-20 22:05:10 ----A---- C:\Windows\system32\wsepno.dll
2010-04-20 22:05:10 ----A---- C:\Windows\system32\WerFault.exe
2010-04-20 22:05:09 ----A---- C:\Windows\system32\stobject.dll
2010-04-20 22:05:09 ----A---- C:\Windows\system32\mfplat.dll
2010-04-20 22:05:09 ----A---- C:\Windows\system32\diskraid.exe
2010-04-20 22:05:09 ----A---- C:\Windows\system32\apphelp.dll
2010-04-20 22:05:08 ----A---- C:\Windows\system32\SndVol.exe
2010-04-20 22:05:08 ----A---- C:\Windows\system32\mcmde.dll
2010-04-20 22:05:07 ----A---- C:\Windows\system32\prnntfy.dll
2010-04-20 22:05:07 ----A---- C:\Windows\system32\msnetobj.dll
2010-04-20 22:05:07 ----A---- C:\Windows\system32\mscms.dll
2010-04-20 22:05:07 ----A---- C:\Windows\system32\adsmsext.dll
2010-04-20 22:05:06 ----A---- C:\Windows\system32\wiaservc.dll
2010-04-20 22:05:06 ----A---- C:\Windows\system32\sysclass.dll
2010-04-20 22:05:05 ----A---- C:\Windows\system32\wscript.exe
2010-04-20 22:05:05 ----A---- C:\Windows\system32\odbccp32.dll
2010-04-20 22:05:05 ----A---- C:\Windows\system32\iasdatastore.dll
2010-04-20 22:05:04 ----A---- C:\Windows\system32\ulib.dll
2010-04-20 22:05:03 ----A---- C:\Windows\system32\dsound.dll
2010-04-20 22:05:02 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2010-04-20 22:05:02 ----A---- C:\Windows\system32\cryptui.dll
2010-04-20 22:05:01 ----A---- C:\Windows\system32\wscntfy.dll
2010-04-20 22:05:01 ----A---- C:\Windows\system32\rastapi.dll
2010-04-20 22:05:01 ----A---- C:\Windows\system32\pnpsetup.dll
2010-04-20 22:05:00 ----A---- C:\Windows\system32\ipsecsnp.dll
2010-04-20 22:05:00 ----A---- C:\Windows\system32\fdProxy.dll
2010-04-20 22:04:59 ----A---- C:\Windows\system32\wlangpui.dll
2010-04-20 22:04:59 ----A---- C:\Windows\system32\gpapi.dll
2010-04-20 22:04:59 ----A---- C:\Windows\system32\diskpart.exe
2010-04-20 22:04:59 ----A---- C:\Windows\system32\brcpl.dll
2010-04-20 22:04:58 ----A---- C:\Windows\system32\wscsvc.dll
2010-04-20 22:04:58 ----A---- C:\Windows\system32\vdsdyn.dll
2010-04-20 22:04:58 ----A---- C:\Windows\system32\iashlpr.dll
2010-04-20 22:04:57 ----A---- C:\Windows\system32\WMVENCOD.DLL
2010-04-20 22:04:57 ----A---- C:\Windows\system32\rasapi32.dll
2010-04-20 22:04:57 ----A---- C:\Windows\system32\logman.exe
2010-04-20 22:04:56 ----A---- C:\Windows\system32\wusa.exe
2010-04-20 22:04:56 ----A---- C:\Windows\system32\regsvc.dll
2010-04-20 22:04:56 ----A---- C:\Windows\system32\ntprint.dll
2010-04-20 22:04:56 ----A---- C:\Windows\system32\mscorier.dll
2010-04-20 22:04:56 ----A---- C:\Windows\system32\iasrad.dll
2010-04-20 22:04:56 ----A---- C:\Windows\system32\findstr.exe
2010-04-20 22:04:55 ----A---- C:\Windows\system32\zipfldr.dll
2010-04-20 22:04:55 ----A---- C:\Windows\system32\wshext.dll
2010-04-20 22:04:54 ----A---- C:\Windows\system32\wpccpl.dll
2010-04-20 22:04:54 ----A---- C:\Windows\system32\netcenter.dll
2010-04-20 22:04:53 ----A---- C:\Windows\system32\rasdlg.dll

killer.
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 90
Registrován: 11 led 2007 22:58

Re: prosim o kontrolu log

#14 Příspěvek od killer. »

pokracovani:

2010-04-20 22:04:52 ----A---- C:\Windows\system32\wer.dll
2010-04-20 22:04:52 ----A---- C:\Windows\system32\iassvcs.dll
2010-04-20 22:04:51 ----A---- C:\Windows\system32\wsnmp32.dll
2010-04-20 22:04:51 ----A---- C:\Windows\system32\themecpl.dll
2010-04-20 22:04:49 ----A---- C:\Windows\system32\uxsms.dll
2010-04-20 22:04:49 ----A---- C:\Windows\system32\srvsvc.dll
2010-04-20 22:04:49 ----A---- C:\Windows\system32\mssprxy.dll
2010-04-20 22:04:48 ----A---- C:\Windows\system32\scansetting.dll
2010-04-20 22:04:48 ----A---- C:\Windows\system32\ntmarta.dll
2010-04-20 22:04:47 ----A---- C:\Windows\system32\msutb.dll
2010-04-20 22:04:47 ----A---- C:\Windows\system32\mstlsapi.dll
2010-04-20 22:04:47 ----A---- C:\Windows\system32\iasads.dll
2010-04-20 22:04:46 ----A---- C:\Windows\system32\slcc.dll
2010-04-20 22:04:46 ----A---- C:\Windows\system32\powrprof.dll
2010-04-20 22:04:45 ----A---- C:\Windows\system32\mstsc.exe
2010-04-20 22:04:45 ----A---- C:\Windows\system32\iasacct.dll
2010-04-20 22:04:44 ----A---- C:\Windows\system32\powercpl.dll
2010-04-20 22:04:44 ----A---- C:\Windows\system32\networkmap.dll
2010-04-20 22:04:43 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2010-04-20 22:04:43 ----A---- C:\Windows\system32\authz.dll
2010-04-20 22:04:42 ----A---- C:\Windows\system32\newdev.exe
2010-04-20 22:04:42 ----A---- C:\Windows\system32\connect.dll
2010-04-20 22:04:41 ----A---- C:\Windows\system32\sud.dll
2010-04-20 22:04:41 ----A---- C:\Windows\system32\dot3svc.dll
2010-04-20 22:04:40 ----A---- C:\Windows\system32\systemcpl.dll
2010-04-20 22:04:40 ----A---- C:\Windows\system32\pcaui.dll
2010-04-20 22:04:39 ----A---- C:\Windows\system32\themeui.dll
2010-04-20 22:04:38 ----A---- C:\Windows\system32\samlib.dll
2010-04-20 22:04:38 ----A---- C:\Windows\system32\mmci.dll
2010-04-20 22:04:38 ----A---- C:\Windows\system32\accessibilitycpl.dll
2010-04-20 22:04:37 ----A---- C:\Windows\system32\usercpl.dll
2010-04-20 22:04:36 ----A---- C:\Windows\system32\wlanpref.dll
2010-04-20 22:04:36 ----A---- C:\Windows\system32\qdvd.dll
2010-04-20 22:04:36 ----A---- C:\Windows\system32\autoplay.dll
2010-04-20 22:04:35 ----A---- C:\Windows\system32\rpchttp.dll
2010-04-20 22:04:34 ----A---- C:\Windows\system32\wpcao.dll
2010-04-20 22:04:34 ----A---- C:\Windows\system32\vdsutil.dll
2010-04-20 22:04:34 ----A---- C:\Windows\system32\regapi.dll
2010-04-20 22:04:34 ----A---- C:\Windows\system32\msinfo32.exe
2010-04-20 22:04:33 ----A---- C:\Windows\system32\tapisrv.dll
2010-04-20 22:04:33 ----A---- C:\Windows\system32\scksp.dll
2010-04-20 22:04:32 ----A---- C:\Windows\system32\mpr.dll
2010-04-20 22:04:32 ----A---- C:\Windows\system32\feclient.dll
2010-04-20 22:04:31 ----A---- C:\Windows\system32\scesrv.dll
2010-04-20 22:04:31 ----A---- C:\Windows\system32\psisdecd.dll
2010-04-20 22:04:31 ----A---- C:\Windows\system32\oleprn.dll
2010-04-20 22:04:31 ----A---- C:\Windows\system32\AudioSes.dll
2010-04-20 22:04:30 ----A---- C:\Windows\system32\rekeywiz.exe
2010-04-20 22:04:30 ----A---- C:\Windows\system32\imm32.dll
2010-04-20 22:04:30 ----A---- C:\Windows\system32\Faultrep.dll
2010-04-20 22:04:30 ----A---- C:\Windows\system32\dot3msm.dll
2010-04-20 22:04:29 ----A---- C:\Windows\system32\wscisvif.dll
2010-04-20 22:04:29 ----A---- C:\Windows\system32\sdclt.exe
2010-04-20 22:04:29 ----A---- C:\Windows\system32\iaspolcy.dll
2010-04-20 22:04:29 ----A---- C:\Windows\system32\dpapimig.exe
2010-04-20 22:04:29 ----A---- C:\Windows\system32\DeviceEject.exe
2010-04-20 22:04:28 ----A---- C:\Windows\system32\qedit.dll
2010-04-20 22:04:28 ----A---- C:\Windows\system32\perfdisk.dll
2010-04-20 22:04:28 ----A---- C:\Windows\system32\ncryptui.dll
2010-04-20 22:04:27 ----A---- C:\Windows\system32\scecli.dll
2010-04-20 22:04:27 ----A---- C:\Windows\system32\rasgcw.dll
2010-04-20 22:04:27 ----A---- C:\Windows\system32\pnpui.dll
2010-04-20 22:04:27 ----A---- C:\Windows\system32\hdwwiz.exe
2010-04-20 22:04:27 ----A---- C:\Windows\system32\certreq.exe
2010-04-20 22:04:26 ----A---- C:\Windows\system32\rasplap.dll
2010-04-20 22:04:26 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2010-04-20 22:04:25 ----A---- C:\Windows\system32\TSTheme.exe
2010-04-20 22:04:25 ----A---- C:\Windows\system32\spwinsat.dll
2010-04-20 22:04:25 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2010-04-20 22:04:24 ----A---- C:\Windows\system32\tcpipcfg.dll
2010-04-20 22:04:24 ----A---- C:\Windows\system32\PnPUnattend.exe
2010-04-20 22:04:24 ----A---- C:\Windows\system32\cmmon32.exe
2010-04-20 22:04:23 ----A---- C:\Windows\system32\whealogr.dll
2010-04-20 22:04:23 ----A---- C:\Windows\system32\tcpmon.dll
2010-04-20 22:04:23 ----A---- C:\Windows\system32\fdWSD.dll
2010-04-20 22:04:21 ----A---- C:\Windows\system32\srcore.dll
2010-04-20 22:04:21 ----A---- C:\Windows\system32\SnippingTool.exe
2010-04-20 22:04:21 ----A---- C:\Windows\system32\SCardSvr.dll
2010-04-20 22:04:21 ----A---- C:\Windows\system32\conime.exe
2010-04-20 22:04:21 ----A---- C:\Windows\system32\cmdial32.dll
2010-04-20 22:04:20 ----A---- C:\Windows\system32\raschap.dll
2010-04-20 22:04:20 ----A---- C:\Windows\system32\fontext.dll
2010-04-20 22:04:19 ----A---- C:\Windows\system32\wiaaut.dll
2010-04-20 22:04:19 ----A---- C:\Windows\system32\MSVidCtl.dll
2010-04-20 22:04:18 ----A---- C:\Windows\system32\WMVXENCD.DLL
2010-04-20 22:04:18 ----A---- C:\Windows\system32\wlanui.dll
2010-04-20 22:04:17 ----A---- C:\Windows\system32\shwebsvc.dll
2010-04-20 22:04:17 ----A---- C:\Windows\system32\rasppp.dll
2010-04-20 22:04:17 ----A---- C:\Windows\system32\PnPutil.exe
2010-04-20 22:04:17 ----A---- C:\Windows\system32\dsprop.dll
2010-04-20 22:04:16 ----A---- C:\Windows\system32\dimsroam.dll
2010-04-20 22:04:15 ----A---- C:\Windows\system32\oobefldr.dll
2010-04-20 22:04:14 ----A---- C:\Windows\system32\shsetup.dll
2010-04-20 22:04:13 ----A---- C:\Windows\system32\rasmontr.dll
2010-04-20 22:04:13 ----A---- C:\Windows\system32\modemui.dll
2010-04-20 22:04:12 ----A---- C:\Windows\system32\mscandui.dll
2010-04-20 22:04:11 ----A---- C:\Windows\system32\chtbrkr.dll
2010-04-20 22:04:10 ----A---- C:\Windows\system32\wmdrmsdk.dll
2010-04-20 22:04:10 ----A---- C:\Windows\system32\dataclen.dll
2010-04-20 22:04:09 ----A---- C:\Windows\system32\wlgpclnt.dll
2010-04-20 22:04:09 ----A---- C:\Windows\system32\blackbox.dll
2010-04-20 22:04:08 ----A---- C:\Windows\system32\rdpwsx.dll
2010-04-20 22:04:07 ----A---- C:\Windows\system32\smss.exe
2010-04-20 22:04:07 ----A---- C:\Windows\system32\credui.dll
2010-04-20 22:04:06 ----A---- C:\Windows\system32\WSDMon.dll
2010-04-20 22:04:06 ----A---- C:\Windows\system32\netplwiz.dll
2010-04-20 22:04:05 ----A---- C:\Windows\system32\wmpeffects.dll
2010-04-20 22:04:05 ----A---- C:\Windows\system32\certprop.dll
2010-04-20 22:04:04 ----A---- C:\Windows\system32\networkexplorer.dll
2010-04-20 22:04:03 ----A---- C:\Windows\system32\wpcsvc.dll
2010-04-20 22:04:03 ----A---- C:\Windows\system32\msscp.dll
2010-04-20 22:04:03 ----A---- C:\Windows\system32\logagent.exe
2010-04-20 22:04:03 ----A---- C:\Windows\system32\InkEd.dll
2010-04-20 22:04:03 ----A---- C:\Windows\system32\ifmon.dll
2010-04-20 22:04:03 ----A---- C:\Windows\system32\cipher.exe
2010-04-20 22:04:02 ----A---- C:\Windows\system32\wscapi.dll
2010-04-20 22:04:02 ----A---- C:\Windows\system32\msimtf.dll
2010-04-20 22:04:02 ----A---- C:\Windows\system32\gpresult.exe
2010-04-20 22:04:01 ----A---- C:\Windows\system32\thawbrkr.dll
2010-04-20 22:04:00 ----A---- C:\Windows\system32\softkbd.dll
2010-04-20 22:04:00 ----A---- C:\Windows\system32\sendmail.dll
2010-04-20 22:03:59 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2010-04-20 22:03:58 ----A---- C:\Windows\system32\olepro32.dll
2010-04-20 22:03:58 ----A---- C:\Windows\system32\msctfui.dll
2010-04-20 22:03:57 ----A---- C:\Windows\system32\drmmgrtn.dll
2010-04-20 22:03:57 ----A---- C:\Windows\system32\dmsynth.dll
2010-04-20 22:03:55 ----A---- C:\Windows\system32\puiapi.dll
2010-04-20 22:03:55 ----A---- C:\Windows\system32\input.dll
2010-04-20 22:03:54 ----A---- C:\Windows\system32\ExplorerFrame.dll
2010-04-20 22:03:53 ----A---- C:\Windows\system32\wshbth.dll
2010-04-20 22:03:53 ----A---- C:\Windows\system32\version.dll
2010-04-20 22:03:53 ----A---- C:\Windows\system32\SLLUA.exe
2010-04-20 22:03:53 ----A---- C:\Windows\system32\mprapi.dll
2010-04-20 22:03:52 ----A---- C:\Windows\system32\msisip.dll
2010-04-20 22:03:52 ----A---- C:\Windows\system32\fc.exe
2010-04-20 22:03:50 ----A---- C:\Windows\system32\fdSSDP.dll
2010-04-20 22:03:50 ----A---- C:\Windows\system32\dmusic.dll
2010-04-20 22:03:49 ----A---- C:\Windows\system32\MsCtfMonitor.dll
2010-04-20 22:03:49 ----A---- C:\Windows\system32\cscapi.dll
2010-04-20 22:03:48 ----A---- C:\Windows\system32\msjint40.dll
2010-04-20 22:03:48 ----A---- C:\Windows\system32\l2nacp.dll
2010-04-20 22:03:48 ----A---- C:\Windows\system32\ftp.exe
2010-04-20 22:03:48 ----A---- C:\Windows\system32\eapp3hst.dll
2010-04-20 22:03:47 ----A---- C:\Windows\system32\cscdll.dll
2010-04-20 22:03:46 ----A---- C:\Windows\system32\wsdchngr.dll
2010-04-20 22:03:46 ----A---- C:\Windows\system32\SMBHelperClass.dll
2010-04-20 22:03:45 ----A---- C:\Windows\system32\Storprop.dll
2010-04-20 22:03:45 ----A---- C:\Windows\system32\rasdial.exe
2010-04-20 22:03:45 ----A---- C:\Windows\system32\rasdiag.dll
2010-04-20 22:03:45 ----A---- C:\Windows\system32\bthudtask.exe
2010-04-20 22:03:45 ----A---- C:\Windows\system32\bthci.dll
2010-04-20 22:03:44 ----A---- C:\Windows\system32\fdWCN.dll
2010-04-20 22:03:44 ----A---- C:\Windows\system32\dot3cfg.dll
2010-04-20 22:03:43 ----A---- C:\Windows\system32\tscupgrd.exe
2010-04-20 22:03:43 ----A---- C:\Windows\system32\ipconfig.exe
2010-04-20 22:03:43 ----A---- C:\Windows\system32\CHxReadingStringIME.dll
2010-04-20 22:03:43 ----A---- C:\Windows\system32\eappcfg.dll
2010-04-20 22:03:42 ----A---- C:\Windows\system32\slcinst.dll
2010-04-20 22:03:42 ----A---- C:\Windows\system32\nslookup.exe
2010-04-20 22:03:42 ----A---- C:\Windows\system32\networkitemfactory.dll
2010-04-20 22:03:40 ----A---- C:\Windows\system32\ocsetup.exe
2010-04-20 22:03:40 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2010-04-20 22:03:40 ----A---- C:\Windows\system32\eappgnui.dll
2010-04-20 22:03:39 ----A---- C:\Windows\system32\hbaapi.dll
2010-04-20 22:03:39 ----A---- C:\Windows\system32\fdeploy.dll
2010-04-20 22:03:38 ----A---- C:\Windows\system32\mmcico.dll
2010-04-20 22:03:37 ----A---- C:\Windows\system32\PNPXAssoc.dll
2010-04-20 22:03:36 ----A---- C:\Windows\system32\gpupdate.exe
2010-04-20 22:03:34 ----A---- C:\Windows\system32\csrstub.exe
2010-04-20 22:03:34 ----A---- C:\Windows\system32\cbsra.exe
2010-04-20 22:03:34 ----A---- C:\Windows\system32\bitsigd.dll
2010-04-20 22:03:33 ----A---- C:\Windows\system32\NcdProp.dll
2010-04-20 22:03:33 ----A---- C:\Windows\system32\iscsilog.dll
2010-04-20 22:03:30 ----A---- C:\Windows\system32\vdmdbg.dll
2010-04-20 22:03:29 ----A---- C:\Windows\system32\slwga.dll
2010-04-20 22:03:29 ----A---- C:\Windows\system32\odbcconf.dll
2010-04-20 22:03:29 ----A---- C:\Windows\system32\inetppui.dll
2010-04-20 22:03:28 ----A---- C:\Windows\system32\winrnr.dll
2010-04-20 22:03:28 ----A---- C:\Windows\system32\midimap.dll
2010-04-20 22:03:23 ----A---- C:\Windows\system32\msimsg.dll
2010-04-20 22:03:23 ----A---- C:\Windows\system32\f3ahvoas.dll
2010-04-20 22:01:57 ----A---- C:\Windows\system32\SmiEngine.dll
2010-04-20 22:01:29 ----A---- C:\Windows\system32\wdscore.dll
2010-04-20 22:01:29 ----A---- C:\Windows\system32\PkgMgr.exe
2010-04-20 22:00:08 ----A---- C:\Windows\system32\drvstore.dll
2010-04-20 14:20:18 ----A---- C:\Windows\system32\vbscript.dll
2010-04-20 14:20:16 ----A---- C:\Windows\system32\jscript.dll
2010-04-20 12:59:21 ----A---- C:\Windows\system32\mstime.dll
2010-04-20 12:59:20 ----A---- C:\Windows\system32\occache.dll
2010-04-20 12:59:19 ----A---- C:\Windows\system32\jsproxy.dll
2010-04-20 12:59:18 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-04-20 12:59:18 ----A---- C:\Windows\system32\msfeeds.dll
2010-04-20 12:59:18 ----A---- C:\Windows\system32\iepeers.dll
2010-04-20 12:59:16 ----A---- C:\Windows\system32\ieui.dll
2010-04-20 12:59:15 ----A---- C:\Windows\system32\iesetup.dll
2010-04-20 12:59:14 ----A---- C:\Windows\system32\wininet.dll
2010-04-20 12:59:14 ----A---- C:\Windows\system32\msfeedssync.exe
2010-04-20 12:59:14 ----A---- C:\Windows\system32\iernonce.dll
2010-04-20 12:59:13 ----A---- C:\Windows\system32\iertutil.dll
2010-04-20 12:59:13 ----A---- C:\Windows\system32\ie4uinit.exe
2010-04-20 12:59:12 ----A---- C:\Windows\system32\iedkcs32.dll
2010-04-20 12:59:11 ----A---- C:\Windows\system32\urlmon.dll
2010-04-20 12:59:11 ----A---- C:\Windows\system32\ieUnatt.exe
2010-04-20 12:59:11 ----A---- C:\Windows\system32\iesysprep.dll
2010-04-20 12:59:09 ----A---- C:\Windows\system32\ieframe.dll
2010-04-20 12:59:08 ----A---- C:\Windows\system32\mshtml.dll
2010-04-20 12:56:07 ----A---- C:\Windows\system32\mshtmled.dll
2010-04-20 12:56:06 ----A---- C:\Windows\system32\msls31.dll
2010-04-20 12:56:06 ----A---- C:\Windows\system32\mshtmler.dll
2010-04-20 12:56:06 ----A---- C:\Windows\system32\icardie.dll
2010-04-20 12:56:06 ----A---- C:\Windows\system32\admparse.dll
2010-04-20 12:56:05 ----A---- C:\Windows\system32\imgutil.dll
2010-04-20 12:56:05 ----A---- C:\Windows\system32\ieakeng.dll
2010-04-20 12:56:05 ----A---- C:\Windows\system32\corpol.dll
2010-04-20 12:56:04 ----A---- C:\Windows\system32\dxtrans.dll
2010-04-20 12:56:04 ----A---- C:\Windows\system32\dxtmsft.dll
2010-04-20 12:56:03 ----A---- C:\Windows\system32\msrating.dll
2010-04-20 12:56:03 ----A---- C:\Windows\system32\licmgr10.dll
2010-04-20 12:56:03 ----A---- C:\Windows\system32\inseng.dll
2010-04-20 12:56:03 ----A---- C:\Windows\system32\ieaksie.dll
2010-04-20 12:56:02 ----A---- C:\Windows\system32\WinFXDocObj.exe
2010-04-20 12:56:02 ----A---- C:\Windows\system32\wextract.exe
2010-04-20 12:56:02 ----A---- C:\Windows\system32\webcheck.dll
2010-04-20 12:56:02 ----A---- C:\Windows\system32\ieakui.dll
2010-04-20 12:56:01 ----A---- C:\Windows\system32\url.dll
2010-04-20 12:56:01 ----A---- C:\Windows\system32\pngfilt.dll
2010-04-20 12:56:01 ----A---- C:\Windows\system32\ieapfltr.dll
2010-04-20 12:56:01 ----A---- C:\Windows\system32\advpack.dll
2010-04-20 12:55:59 ----A---- C:\Windows\system32\mshta.exe
2010-04-20 12:55:59 ----A---- C:\Windows\system32\iexpress.exe
2010-04-20 12:55:58 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2010-04-20 12:55:58 ----A---- C:\Windows\system32\SetDepNx.exe
2010-04-20 12:55:58 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2010-04-20 12:55:58 ----A---- C:\Windows\system32\PDMSetup.exe
2010-04-18 18:30:27 ----D---- C:\ProgramData\UDL
2010-04-18 18:24:57 ----A---- C:\Windows\system32\PICSDK2.dll
2010-04-18 18:24:57 ----A---- C:\Windows\system32\PICSDK.ini
2010-04-18 18:24:57 ----A---- C:\Windows\system32\PICSDK.dll
2010-04-18 18:24:57 ----A---- C:\Windows\system32\PICEntry.dll
2010-04-18 18:24:57 ----A---- C:\Windows\system32\EpPicPrt.dll
2010-04-18 18:24:57 ----A---- C:\Windows\system32\EPPicMgr.dll
2010-04-18 18:19:45 ----D---- C:\ProgramData\EPSON
2010-04-17 19:08:47 ----HD---- C:\ProgramData\CanonBJ
2010-04-17 13:36:52 ----A---- C:\Windows\system32\E_DCINST.DLL
2010-04-17 13:36:50 ----A---- C:\Windows\system32\E_FLBCAE.DLL
2010-04-17 13:36:47 ----A---- C:\Windows\system32\E_FD4BCAE.DLL
2010-04-17 13:34:46 ----D---- C:\Program Files\epson
2010-04-17 13:34:38 ----A---- C:\Windows\system32\eswiaml.dll
2010-04-17 13:34:38 ----A---- C:\Windows\system32\eswia7e.dll
2010-04-17 13:34:38 ----A---- C:\Windows\system32\esint7e.dll
2010-04-17 13:34:23 ----A---- C:\Windows\CDE DX4400DEFGIPS.ini
2010-04-14 14:53:59 ----D---- C:\Users\Zdena\AppData\Roaming\Media Player Classic
2010-04-14 07:47:54 ----A---- C:\Windows\system32\ntoskrnl.exe
2010-04-14 07:47:54 ----A---- C:\Windows\system32\ntkrnlpa.exe
2010-04-14 07:47:11 ----A---- C:\Windows\system32\iphlpsvc.dll
2010-04-14 07:46:07 ----A---- C:\Windows\system32\wintrust.dll
2010-04-14 07:45:58 ----A---- C:\Windows\system32\cabview.dll

======List of files/folders modified in the last 1 months======

2010-05-13 11:34:20 ----D---- C:\Windows\Prefetch
2010-05-13 11:32:34 ----D---- C:\Windows\Minidump
2010-05-13 11:32:34 ----D---- C:\Windows\Debug
2010-05-13 11:32:34 ----D---- C:\Windows
2010-05-13 11:30:43 ----D---- C:\ProgramData\Spyware Terminator
2010-05-13 11:29:34 ----D---- C:\Users\Zdena\AppData\Roaming\ICQ
2010-05-13 08:21:19 ----D---- C:\Windows\winsxs
2010-05-12 23:36:48 ----D---- C:\Windows\System32
2010-05-12 23:36:48 ----D---- C:\Program Files\Windows Mail
2010-05-12 23:36:29 ----D---- C:\Windows\system32\catroot
2010-05-12 23:35:39 ----SHD---- C:\System Volume Information
2010-05-12 16:31:04 ----D---- C:\Users\Zdena\AppData\Roaming\Spyware Terminator
2010-05-12 13:09:02 ----D---- C:\Windows\system32\catroot2
2010-05-11 15:14:31 ----D---- C:\Windows\inf
2010-05-11 15:14:31 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-05-10 11:15:19 ----D---- C:\Windows\system32\drivers
2010-05-10 08:57:27 ----A---- C:\Windows\system.ini
2010-05-10 08:47:10 ----D---- C:\Windows\AppPatch
2010-05-10 08:47:09 ----D---- C:\Program Files\Common Files
2010-05-09 22:25:47 ----SHD---- C:\Windows\Installer
2010-05-09 22:24:28 ----RD---- C:\Program Files
2010-05-09 22:24:28 ----D---- C:\ProgramData
2010-05-09 22:10:03 ----SD---- C:\Users\Zdena\AppData\Roaming\Microsoft
2010-05-09 22:10:03 ----SD---- C:\ProgramData\Microsoft
2010-05-09 21:29:54 ----D---- C:\Users\Zdena\AppData\Roaming\Mozilla
2010-05-09 20:34:00 ----D---- C:\Windows\system32\WDI
2010-05-09 14:29:53 ----A---- C:\Windows\system32\acovcnt.exe
2010-05-08 10:29:10 ----D---- C:\Program Files\The KMPlayer
2010-05-06 10:36:38 ----N---- C:\Windows\system32\MpSigStub.exe
2010-05-03 11:39:56 ----D---- C:\Program Files\Spyware Terminator
2010-05-02 12:01:31 ----D---- C:\Program Files\Internet Explorer
2010-05-02 11:58:52 ----D---- C:\Windows\system32\Tasks
2010-05-01 10:19:12 ----D---- C:\Windows\rescache
2010-05-01 09:54:40 ----D---- C:\Windows\system32\cs-CZ
2010-05-01 09:54:39 ----D---- C:\Windows\system32\wbem
2010-05-01 09:54:37 ----D---- C:\Windows\system32\uk-UA
2010-05-01 09:54:37 ----D---- C:\Windows\system32\pt-PT
2010-05-01 09:54:37 ----D---- C:\Windows\system32\pt-BR
2010-05-01 09:54:37 ----D---- C:\Windows\system32\pl-PL
2010-05-01 09:54:37 ----D---- C:\Windows\system32\ko-KR
2010-05-01 09:54:37 ----D---- C:\Windows\system32\it-IT
2010-05-01 09:54:37 ----D---- C:\Windows\system32\hu-HU
2010-05-01 09:54:37 ----D---- C:\Windows\system32\he-IL
2010-05-01 09:54:37 ----D---- C:\Windows\system32\bg-BG
2010-05-01 09:54:36 ----D---- C:\Windows\system32\zh-TW
2010-05-01 09:54:36 ----D---- C:\Windows\system32\zh-HK
2010-05-01 09:54:36 ----D---- C:\Windows\system32\zh-CN
2010-05-01 09:54:36 ----D---- C:\Windows\system32\tr-TR
2010-05-01 09:54:36 ----D---- C:\Windows\system32\th-TH
2010-05-01 09:54:36 ----D---- C:\Windows\system32\sv-SE
2010-05-01 09:54:36 ----D---- C:\Windows\system32\sr-Latn-CS
2010-05-01 09:54:36 ----D---- C:\Windows\system32\sl-SI
2010-05-01 09:54:36 ----D---- C:\Windows\system32\sk-SK
2010-05-01 09:54:36 ----D---- C:\Windows\system32\ru-RU
2010-05-01 09:54:36 ----D---- C:\Windows\system32\ro-RO
2010-05-01 09:54:36 ----D---- C:\Windows\system32\nl-NL
2010-05-01 09:54:36 ----D---- C:\Windows\system32\nb-NO
2010-05-01 09:54:36 ----D---- C:\Windows\system32\lv-LV
2010-05-01 09:54:36 ----D---- C:\Windows\system32\lt-LT
2010-05-01 09:54:36 ----D---- C:\Windows\system32\ja-JP
2010-05-01 09:54:36 ----D---- C:\Windows\system32\hr-HR
2010-05-01 09:54:36 ----D---- C:\Windows\system32\fr-FR
2010-05-01 09:54:36 ----D---- C:\Windows\system32\fi-FI
2010-05-01 09:54:36 ----D---- C:\Windows\system32\et-EE
2010-05-01 09:54:36 ----D---- C:\Windows\system32\es-ES
2010-05-01 09:54:36 ----D---- C:\Windows\system32\en-US
2010-05-01 09:54:36 ----D---- C:\Windows\system32\el-GR
2010-05-01 09:54:36 ----D---- C:\Windows\system32\de-DE
2010-05-01 09:54:36 ----D---- C:\Windows\system32\da-DK
2010-05-01 09:54:36 ----D---- C:\Windows\system32\ar-SA
2010-04-30 23:54:28 ----D---- C:\Windows\Microsoft.NET
2010-04-30 23:54:15 ----RSD---- C:\Windows\assembly
2010-04-30 20:51:06 ----A---- C:\Windows\system32\mrt.exe
2010-04-29 15:22:57 ----D---- C:\Boot
2010-04-29 15:16:14 ----D---- C:\Program Files\Windows Calendar
2010-04-29 15:16:14 ----D---- C:\Program Files\Movie Maker
2010-04-29 15:16:12 ----D---- C:\Program Files\Windows Sidebar
2010-04-29 15:16:12 ----D---- C:\Program Files\Windows Media Player
2010-04-29 15:16:12 ----D---- C:\Program Files\Windows Collaboration
2010-04-29 15:16:11 ----D---- C:\Program Files\Windows Photo Gallery
2010-04-29 15:16:11 ----D---- C:\Program Files\Windows Journal
2010-04-29 15:16:11 ----D---- C:\Program Files\Common Files\System
2010-04-29 15:16:08 ----D---- C:\Windows\servicing
2010-04-29 15:16:08 ----D---- C:\Program Files\Windows Defender
2010-04-29 15:16:03 ----D---- C:\Windows\ehome
2010-04-29 15:15:48 ----D---- C:\Windows\system32\XPSViewer
2010-04-29 15:15:48 ----D---- C:\Windows\IME
2010-04-29 15:15:47 ----D---- C:\Windows\system32\oobe
2010-04-29 15:15:47 ----D---- C:\Windows\system32\migration
2010-04-29 15:15:46 ----D---- C:\Windows\system32\AdvancedInstallers
2010-04-29 15:15:45 ----D---- C:\Windows\system32\setup
2010-04-29 15:15:45 ----D---- C:\Windows\system32\cs
2010-04-29 15:15:42 ----D---- C:\Windows\system32\SLUI
2010-04-29 15:15:41 ----D---- C:\Windows\system32\manifeststore
2010-04-29 15:15:38 ----D---- C:\Windows\system32\migwiz
2010-04-29 15:15:08 ----RSD---- C:\Windows\Fonts
2010-04-29 15:15:00 ----D---- C:\Windows\system32\Boot
2010-04-29 15:13:22 ----D---- C:\Windows\system32\RTCOM
2010-04-21 08:27:01 ----D---- C:\Windows\PolicyDefinitions
2010-04-20 19:13:54 ----D---- C:\Windows\Logs
2010-04-20 16:29:11 ----D---- C:\Program Files\WinClamAVShield
2010-04-20 16:26:16 ----ASH---- C:\Program Files\desktop.ini
2010-04-20 16:16:13 ----D---- C:\Windows\MSAgent
2010-04-20 16:16:12 ----D---- C:\Windows\L2Schemas
2010-04-20 16:16:12 ----D---- C:\Windows\DigitalLocker
2010-04-20 16:16:11 ----D---- C:\Windows\system32\com
2010-04-20 16:16:09 ----D---- C:\Windows\system32\sysprep
2010-04-20 16:16:03 ----D---- C:\Windows\system32\ias
2010-04-20 16:13:38 ----D---- C:\Windows\Boot
2010-04-20 13:31:39 ----A---- C:\Windows\system32\ifxcardm.dll
2010-04-20 13:31:36 ----A---- C:\Windows\system32\axaltocm.dll
2010-04-20 13:10:21 ----SD---- C:\Windows\Downloaded Program Files
2010-04-19 19:53:09 ----D---- C:\Windows\LiveKernelReports
2010-04-18 18:37:45 ----HD---- C:\Program Files\InstallShield Installation Information
2010-04-18 18:32:55 ----D---- C:\Program Files\Common Files\InstallShield
2010-04-17 19:16:08 ----D---- C:\ProgramData\Microsoft Help
2010-04-17 13:34:38 ----D---- C:\Windows\twain_32

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2009-11-16 108792]
R1 sp_rsdrv2;Spyware Terminator Driver 2; \??\C:\Windows\system32\drivers\sp_rsdrv2.sys [2010-03-27 142592]
R1 Tosrfcom;Bluetooth RFCOMM; C:\Windows\System32\Drivers\tosrfcom.sys [2005-08-01 64896]
R2 eamon;eamon; C:\Windows\system32\DRIVERS\eamon.sys [2009-11-16 116520]
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2009-11-16 135048]
R2 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2009-11-16 38240]
R2 ghaio;ghaio; \??\C:\Program Files\ASUS\NB Probe\SPM\ghaio.sys [2007-08-03 20936]
R3 Atc002;NDIS Miniport Driver for Atheros L2 Fast Ethernet Controller; C:\Windows\system32\DRIVERS\l260x86.sys [2007-08-17 28672]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2007-07-30 743424]
R3 CmBatt;Ovladač baterie Microsoft ACPI Control Method Battery; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-19 14208]
R3 Epfwndis;Eset Personal Firewall; C:\Windows\system32\DRIVERS\Epfwndis.sys [2009-06-19 33096]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2007-02-14 1740904]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2007-01-24 5632]
R3 MODEMCSA;Unimodem Streaming Filter Device; C:\Windows\system32\drivers\MODEMCSA.sys [2008-01-19 18432]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATKACPI.sys [2006-12-15 7680]
R3 R300;R300; C:\Windows\system32\DRIVERS\atikmdag.sys [2007-02-02 2385920]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\Windows\System32\Drivers\RootMdm.sys [2008-01-19 8192]
R3 RTSTOR;USB Mass Storage Device; C:\Windows\system32\drivers\RTSTOR.SYS [2007-11-09 57856]
R3 smserial;smserial; C:\Windows\system32\DRIVERS\smserial.sys [2006-11-22 982272]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2007-10-01 1769984]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-12-06 196400]
R3 tosporte;Bluetooth COM Port; C:\Windows\system32\DRIVERS\tosporte.sys [2006-10-10 41600]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-19 83328]
S3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-11 22528]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-19 92160]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2006-11-02 220160]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2006-11-02 29184]
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\mbamswissarmy.sys []
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-11 148992]
S3 rootrepeal;rootrepeal; \??\C:\Windows\system32\drivers\rootrepeal.sys []
S3 tosrfbd;Bluetooth RFBUS; C:\Windows\system32\DRIVERS\tosrfbd.sys [2006-11-30 113792]
S3 tosrfbnp;Bluetooth RFBNEP; C:\Windows\System32\Drivers\tosrfbnp.sys [2006-11-20 36480]
S3 Tosrfhid;Bluetooth RFHID; C:\Windows\system32\DRIVERS\Tosrfhid.sys [2006-10-05 73600]
S3 tosrfnds;Bluetooth Personal Area Network; C:\Windows\system32\DRIVERS\tosrfnds.sys [2005-01-06 18612]
S3 Tosrfusb;Bluetooth USB Controller; C:\Windows\system32\DRIVERS\tosrfusb.sys [2006-10-28 40960]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-19 35328]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-19 134016]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ASLDRService;ASLDR Service; C:\Program Files\ATK Hotkey\ASLDRSrv.exe [2007-02-05 94208]
R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [2007-02-02 565248]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2009-11-16 735960]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2008-06-09 73728]
R2 sp_rssrv;Spyware Terminator Realtime Shield Service; C:\Program Files\Spyware Terminator\sp_rsser.exe [2010-04-14 488960]
R2 spmgr;spmgr; C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe [2007-08-03 125496]
R2 TOSHIBA Bluetooth Service;TOSHIBA Bluetooth Service; C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe [2006-10-31 77824]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [2009-11-16 20680]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-19 21504]
S3 getPlusHelper;@C:\Program Files\NOS\bin\getPlus_Helper.dll,-101; C:\Windows\System32\svchost.exe [2008-01-19 21504]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]

-----------------EOF-----------------

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: prosim o kontrolu log

#15 Příspěvek od motji »

:arrow: Otevřete si Poznámkový blok a zkopírujte do něj text

Kód: Vybrat vše

Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"=-

 
-uložte jako (typ: všechny soubory) kde za název souboru zadáte "smazani.reg" bez uvozovek,
klikněte na uložit, pak na soubor standardně 2X klikněte a potvrďte dialogové okno.

Pokud nejsou problémy, je to vše :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Odpovědět