teď jí máte smazanou? zkuste restart jestli se znovu objeví

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
vytvara sam od seba zlozku pc poprosim kontrolu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
- 1danab
- Nováček

- Příspěvky: 1412
- Registrován: 21 říj 2007 13:04
- Bydliště: České Budějovice
- Kontaktovat uživatele:
Re: vytvara sam od seba zlozku pc poprosim kontrolu
snažím se na to přijít proč to tak je
teď jí máte smazanou? zkuste restart jestli se znovu objeví
teď jí máte smazanou? zkuste restart jestli se znovu objeví
Re: vytvara sam od seba zlozku pc poprosim kontrolu
mam ju teraz tam neni ani nebude kym sa nezjavi po case ako ona tri styri dni zmizne a znova tak netusim co to za zlozka blba je 
- 1danab
- Nováček

- Příspěvky: 1412
- Registrován: 21 říj 2007 13:04
- Bydliště: České Budějovice
- Kontaktovat uživatele:
Re: vytvara sam od seba zlozku pc poprosim kontrolu
oki, navrhuji počkat pár dní zda se objeví; pokud ano, dejte vědět do tohoto threadu
pokud ne, zvítězili jsme
Re: vytvara sam od seba zlozku pc poprosim kontrolu
ano par dni preslo. nic nic sa neobjavilo a dneska zrazu zasa pan novy priecinok a neda sa znova vymazat by ma zaujimalo co to sposobuje-
- 1danab
- Nováček

- Příspěvky: 1412
- Registrován: 21 říj 2007 13:04
- Bydliště: České Budějovice
- Kontaktovat uživatele:
Re: vytvara sam od seba zlozku pc poprosim kontrolu
spusťte znovu OTL jako správce
v otevřeném okně stiskněte tlačítko Prohledat, čímž spustíte sken; vyčkejte prosím dokončení skenu (cca 5 minut); poté se vám otevře okno Poznámkového bloku s logem, jehož obsah sem zkopírujte
dále pak
stáhněte rootrepeal zde http://rootrepeal.googlepages.com/RootRepeal.zip
rozbalte, spusťte, postupně přecvakávejte na všechny záložky, na každé z nich klikněte na Scan, počkejte, pak kliknutím na Save Report uložte log a jeho obsah zkopírujte sem ze všech záložek
v otevřeném okně stiskněte tlačítko Prohledat, čímž spustíte sken; vyčkejte prosím dokončení skenu (cca 5 minut); poté se vám otevře okno Poznámkového bloku s logem, jehož obsah sem zkopírujte
dále pak
stáhněte rootrepeal zde http://rootrepeal.googlepages.com/RootRepeal.zip
rozbalte, spusťte, postupně přecvakávejte na všechny záložky, na každé z nich klikněte na Scan, počkejte, pak kliknutím na Save Report uložte log a jeho obsah zkopírujte sem ze všech záložek
Re: vytvara sam od seba zlozku pc poprosim kontrolu
Kód: Vybrat vše
OTL logfile created on: 10. 5. 2010 14:29:19 - Run 3
OTL by OldTimer - Version 3.2.3.0 Folder = F:\otl
64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 0000041b | Country: Slovenská republika | Language: SKY | Date Format: d. M. yyyy
2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 42,00% Memory free
4,00 Gb Paging File | 2,00 Gb Available in Paging File | 62,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 48,83 Gb Total Space | 24,54 Gb Free Space | 50,25% Space Free | Partition Type: NTFS
Drive D: | 107,42 Gb Total Space | 86,03 Gb Free Space | 80,08% Space Free | Partition Type: NTFS
Drive E: | 87,89 Gb Total Space | 83,88 Gb Free Space | 95,43% Space Free | Partition Type: NTFS
Drive F: | 128,47 Gb Total Space | 35,41 Gb Free Space | 27,56% Space Free | Partition Type: NTFS
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Drive O: | 3,73 Gb Total Space | 1,72 Gb Free Space | 46,12% Space Free | Partition Type: NTFS
Computer Name: MATO-PC
Current User Name: Mato
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Include 64bit Scans
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
[color=#E56717]========== Processes (SafeList) ==========[/color]
PRC - [2010/04/26 21:35:42 | 000,563,712 | ---- | M] (OldTimer Tools) -- F:\otl\OTL.exe
PRC - [2010/04/11 19:51:17 | 000,910,296 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2010/04/01 11:16:20 | 000,357,696 | ---- | M] (DT Soft Ltd) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
PRC - [2010/03/28 14:39:17 | 000,133,368 | ---- | M] (ICQ, LLC.) -- C:\Program Files (x86)\ICQ7.0\ICQ.exe
PRC - [2010/02/26 16:14:04 | 000,652,800 | ---- | M] (Nokia) -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
PRC - [2010/02/26 01:21:50 | 000,126,392 | R--- | M] (Symantec Corporation) -- C:\Program Files (x86)\Norton Internet Security\Engine\17.6.0.32\ccsvchst.exe
PRC - [2010/01/27 11:31:51 | 002,326,920 | ---- | M] (Acronis) -- C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe
PRC - [2009/11/11 10:57:36 | 001,451,520 | ---- | M] (Nokia) -- C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe
PRC - [2009/10/27 10:15:02 | 000,120,832 | ---- | M] (Nokia) -- C:\Program Files (x86)\PC Connectivity Solution\Transports\NclRSSrv.exe
PRC - [2009/10/02 15:17:22 | 000,090,112 | ---- | M] (Leadtek Research Inc.) -- C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
PRC - [2009/09/23 14:38:18 | 000,935,208 | ---- | M] (Nero AG) -- C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
PRC - [2009/09/12 17:31:36 | 000,357,384 | ---- | M] (Acronis) -- C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe
PRC - [2009/09/12 17:30:48 | 005,048,488 | ---- | M] (Acronis) -- C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe
PRC - [2009/09/09 08:50:00 | 003,514,112 | ---- | M] (Ghisler Software GmbH) -- C:\Program Files (x86)\totalcmd\TOTALCMD.EXE
PRC - [2009/07/25 06:29:02 | 001,401,096 | ---- | M] (CleanMyPC Software) -- C:\Program Files (x86)\CleanMyPC\Registry Cleaner\RCHelper.exe
PRC - [2009/06/17 13:44:11 | 000,085,160 | ---- | M] (Elaborate Bytes AG) -- C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
PRC - [2009/05/19 11:36:18 | 000,240,512 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
PRC - [2009/03/11 18:22:48 | 002,912,256 | ---- | M] (Leadtek Research Inc.) -- C:\Program Files\WinFast\WFDTV\WFWIZ.exe
PRC - [2008/08/01 14:31:00 | 000,109,056 | ---- | M] (ArcSoft Inc.) -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
PRC - [2007/07/24 12:15:14 | 000,185,632 | ---- | M] (Protexis Inc.) -- c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
PRC - [2004/12/13 04:34:32 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) -- C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
[color=#E56717]========== Modules (SafeList) ==========[/color]
MOD - [2010/04/26 21:35:42 | 000,563,712 | ---- | M] (OldTimer Tools) -- F:\otl\OTL.exe
MOD - [2009/07/14 03:15:07 | 000,486,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\comdlg32.dll
MOD - [2009/07/14 03:03:50 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc\comctl32.dll
[color=#E56717]========== Win32 Services (SafeList) ==========[/color]
SRV:[b]64bit:[/b] - [2010/01/27 13:40:25 | 001,038,088 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe -- (FLEXnet Licensing Service 64)
SRV:[b]64bit:[/b] - [2009/07/14 03:41:59 | 000,229,888 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wwansvc.dll -- (WwanSvc)
SRV:[b]64bit:[/b] - [2009/07/14 03:41:56 | 000,202,240 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wbiosrvc.dll -- (WbioSrvc)
SRV:[b]64bit:[/b] - [2009/07/14 03:41:56 | 000,195,072 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\umrdp.dll -- (UmRdpService)
SRV:[b]64bit:[/b] - [2009/07/14 03:41:56 | 000,163,840 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\umpo.dll -- (Power)
SRV:[b]64bit:[/b] - [2009/07/14 03:41:55 | 000,044,544 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\themeservice.dll -- (Themes)
SRV:[b]64bit:[/b] - [2009/07/14 03:41:54 | 000,065,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\sppuinotify.dll -- (sppuinotify)
SRV:[b]64bit:[/b] - [2009/07/14 03:41:54 | 000,029,184 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\sensrsvc.dll -- (SensrSvc)
SRV:[b]64bit:[/b] - [2009/07/14 03:41:54 | 000,017,920 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\StorSvc.dll -- (StorSvc)
SRV:[b]64bit:[/b] - [2009/07/14 03:41:53 | 001,361,920 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\PeerDistSvc.dll -- (PeerDistSvc)
SRV:[b]64bit:[/b] - [2009/07/14 03:41:53 | 000,327,168 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\pnrpsvc.dll -- (PNRPsvc)
SRV:[b]64bit:[/b] - [2009/07/14 03:41:53 | 000,327,168 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\pnrpsvc.dll -- (p2pimsvc)
SRV:[b]64bit:[/b] - [2009/07/14 03:41:53 | 000,187,904 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\provsvc.dll -- (HomeGroupProvider)
SRV:[b]64bit:[/b] - [2009/07/14 03:41:53 | 000,067,072 | ---- | M] (Microsoft Corporation) [Unknown | Running] -- C:\Windows\SysNative\RpcEpMap.dll -- (RpcEptMapper)
SRV:[b]64bit:[/b] - [2009/07/14 03:41:53 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\pnrpauto.dll -- (PNRPAutoReg)
SRV:[b]64bit:[/b] - [2009/07/14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:[b]64bit:[/b] - [2009/07/14 03:41:18 | 000,231,936 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\ListSvc.dll -- (HomeGroupListener)
SRV:[b]64bit:[/b] - [2009/07/14 03:40:54 | 001,127,936 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\FntCache.dll -- (FontCache)
SRV:[b]64bit:[/b] - [2009/07/14 03:40:28 | 000,314,368 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dhcpcore.dll -- (Dhcp)
SRV:[b]64bit:[/b] - [2009/07/14 03:40:28 | 000,291,328 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\defragsvc.dll -- (defragsvc)
SRV:[b]64bit:[/b] - [2009/07/14 03:40:24 | 000,689,152 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\cscsvc.dll -- (CscService)
SRV:[b]64bit:[/b] - [2009/07/14 03:40:13 | 000,083,968 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\bthserv.dll -- (bthserv)
SRV:[b]64bit:[/b] - [2009/07/14 03:40:10 | 000,100,864 | ---- | M] (Microsoft Corporation) [Unknown | Stopped] -- C:\Windows\SysNative\bdesvc.dll -- (BDESVC)
SRV:[b]64bit:[/b] - [2009/07/14 03:40:05 | 000,114,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AxInstSv.dll -- (AxInstSV)
SRV:[b]64bit:[/b] - [2009/07/14 03:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV:[b]64bit:[/b] - [2009/07/14 03:40:01 | 000,032,256 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appidsvc.dll -- (AppIDSvc)
SRV:[b]64bit:[/b] - [2009/07/14 03:39:51 | 001,503,744 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wbengine.exe -- (wbengine)
SRV:[b]64bit:[/b] - [2009/07/14 03:39:28 | 003,524,608 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\sppsvc.exe -- (sppsvc)
SRV:[b]64bit:[/b] - [2009/07/14 03:39:11 | 000,689,152 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\FXSSVC.exe -- (Fax)
SRV:[b]64bit:[/b] - [2009/03/30 18:19:56 | 002,297,216 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE -- (wlidsvc)
SRV - [2010/02/26 16:14:04 | 000,652,800 | ---- | M] (Nokia) [On_Demand | Running] -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2010/02/26 01:21:50 | 000,126,392 | R--- | M] (Symantec Corporation) [Unknown | Running] -- C:\Program Files (x86)\Norton Internet Security\Engine\17.6.0.32\ccSvcHst.exe -- (NIS)
SRV - [2010/01/27 13:40:19 | 000,655,624 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2010/01/27 11:31:51 | 002,326,920 | ---- | M] (Acronis) [Auto | Running] -- C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe -- (afcdpsrv)
SRV - [2009/10/23 20:14:36 | 000,320,512 | ---- | M] (Solid Documents, LLC) [Auto | Running] -- C:\Program Files (x86)\SolidDocuments\Solid Converter PDF\SCPDFV6\SolidConverterPDFServicex64.exe -- (SCPDFReadSpool)
SRV - [2009/09/23 14:38:18 | 000,935,208 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe -- (Nero BackItUp Scheduler 4.0)
SRV - [2009/09/19 11:42:21 | 000,436,104 | ---- | M] () [Auto | Stopped] -- C:\Program Files (x86)\1264581652\Mato1264581652L.exe -- (.1264581652)
SRV - [2009/09/12 17:32:46 | 000,891,432 | ---- | M] (Acronis) [Auto | Running] -- C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe -- (AcrSch2Svc)
SRV - [2009/08/05 22:48:42 | 000,704,864 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe -- (fsssvc)
SRV - [2009/07/14 05:20:14 | 000,000,000 | ---D | M] [On_Demand | Stopped] -- C:\Windows\Vss -- (VSS)
SRV - [2009/07/14 05:20:14 | 000,000,000 | ---D | M] [Unknown | Stopped] -- C:\Windows\SysWOW64\Msdtc -- (MSDTC)
SRV - [2009/07/14 03:16:12 | 000,165,376 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\provsvc.dll -- (HomeGroupProvider)
SRV - [2009/07/14 03:15:11 | 000,253,440 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\dhcpcore.dll -- (Dhcp)
SRV - [2009/07/13 22:30:11 | 000,061,056 | ---- | M] () [On_Demand | Stopped] -- C:\Windows\SysWOW64\wbem\vds.mof -- (vds)
SRV - [2009/06/10 22:39:58 | 000,089,920 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_64)
SRV - [2009/05/19 11:36:18 | 000,240,512 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe -- (SeaPort)
SRV - [2008/08/01 14:31:00 | 000,109,056 | ---- | M] (ArcSoft Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe -- (ACDaemon)
SRV - [2007/07/24 12:15:14 | 000,185,632 | ---- | M] (Protexis Inc.) [Auto | Running] -- c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe -- (PSI_SVC_2)
SRV - [2004/12/13 04:34:32 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe -- (UleadBurningHelper)
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
DRV:[b]64bit:[/b] - [2010/05/09 18:35:45 | 000,082,816 | ---- | M] (VSO Software) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\pcouffin.sys -- (pcouffin)
DRV:[b]64bit:[/b] - [2010/04/23 06:55:49 | 000,834,544 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\sptd.sys -- (sptd)
DRV:[b]64bit:[/b] - [2010/02/27 04:23:54 | 000,149,552 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\NISx64\1106000.020\ironx64.sys -- (SymIRON)
DRV:[b]64bit:[/b] - [2010/02/27 04:23:21 | 000,505,392 | ---- | M] (Symantec Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\NISx64\1106000.020\srtsp64.sys -- (SRTSP)
DRV:[b]64bit:[/b] - [2010/02/27 04:23:21 | 000,032,304 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\NISx64\1106000.020\srtspx64.sys -- (SRTSPX) Symantec Real Time Storage Protection (PEL)
DRV:[b]64bit:[/b] - [2010/02/26 14:33:40 | 000,009,216 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser_lowerfltx64j.sys -- (UsbserFilt)
DRV:[b]64bit:[/b] - [2010/02/26 14:33:24 | 000,009,216 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser_lowerfltx64.sys -- (upperdev)
DRV:[b]64bit:[/b] - [2010/02/26 14:33:22 | 000,025,088 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ccdcmbox64.sys -- (nmwcdcx64)
DRV:[b]64bit:[/b] - [2010/02/26 14:33:22 | 000,019,456 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ccdcmbx64.sys -- (nmwcdx64)
DRV:[b]64bit:[/b] - [2010/02/26 14:21:22 | 000,173,056 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nmwcdnsux64.sys -- (nmwcdnsux64)
DRV:[b]64bit:[/b] - [2010/02/26 14:21:20 | 000,012,288 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nmwcdnsucx64.sys -- (nmwcdnsucx64)
DRV:[b]64bit:[/b] - [2010/02/26 01:22:52 | 000,615,040 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\NISx64\1106000.020\cchpx64.sys -- (ccHP)
DRV:[b]64bit:[/b] - [2010/02/04 03:40:52 | 000,451,120 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\NISx64\1106000.020\symtdiv.sys -- (SYMTDIv)
DRV:[b]64bit:[/b] - [2010/02/04 03:40:50 | 000,221,232 | ---- | M] (Symantec Corporation) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\NISx64\1106000.020\symefa64.sys -- (SymEFA)
DRV:[b]64bit:[/b] - [2010/01/27 16:38:22 | 000,173,104 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SYMEVENT64x86.SYS -- (SymEvent)
DRV:[b]64bit:[/b] - [2010/01/27 11:31:52 | 000,250,400 | ---- | M] (Acronis) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\afcdp.sys -- (afcdp)
DRV:[b]64bit:[/b] - [2010/01/27 11:31:49 | 001,455,648 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\tdrpm251.sys -- (tdrpman251) Acronis Try&Decide and Restore Points filter (build 251)
DRV:[b]64bit:[/b] - [2010/01/27 11:31:45 | 000,929,312 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\timntr.sys -- (timounter)
DRV:[b]64bit:[/b] - [2010/01/27 11:31:33 | 000,254,496 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\snapman.sys -- (snapman)
DRV:[b]64bit:[/b] - [2009/12/18 00:25:17 | 000,034,472 | ---- | M] (Elaborate Bytes AG) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\ElbyCDIO.sys -- (ElbyCDIO)
DRV:[b]64bit:[/b] - [2009/12/11 12:29:27 | 000,153,160 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\ksecpkg.sys -- (KSecPkg)
DRV:[b]64bit:[/b] - [2009/09/26 08:20:38 | 000,223,448 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\fvevol.sys -- (fvevol)
DRV:[b]64bit:[/b] - [2009/08/30 02:17:18 | 000,433,200 | R--- | M] (Symantec Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\NISx64\1106000.020\symds64.sys -- (SymDS)
DRV:[b]64bit:[/b] - [2009/08/10 11:26:00 | 000,474,496 | ---- | M] (Leadtek Research Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\wfeaglxt.sys -- (WFLR6654) WinFast DTV2000 H Plus (XC4000)
DRV:[b]64bit:[/b] - [2009/08/09 23:25:45 | 000,036,352 | ---- | M] (Elaborate Bytes AG) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VClone.sys -- (VClone)
DRV:[b]64bit:[/b] - [2009/08/05 23:24:16 | 000,061,280 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)
DRV:[b]64bit:[/b] - [2009/07/14 03:52:21 | 000,106,576 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2009/07/14 03:52:21 | 000,028,752 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2009/07/14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2009/07/14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:[b]64bit:[/b] - [2009/07/14 03:48:04 | 000,014,416 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\hwpolicy.sys -- (hwpolicy)
DRV:[b]64bit:[/b] - [2009/07/14 03:47:49 | 000,055,376 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fsdepends.sys -- (FsDepends)
DRV:[b]64bit:[/b] - [2009/07/14 03:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2009/07/14 03:45:56 | 000,022,096 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wimmount.sys -- (WIMMount)
DRV:[b]64bit:[/b] - [2009/07/14 03:45:55 | 000,217,680 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vhdmp.sys -- (vhdmp)
DRV:[b]64bit:[/b] - [2009/07/14 03:45:55 | 000,200,272 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vmbus.sys -- (vmbus)
DRV:[b]64bit:[/b] - [2009/07/14 03:45:55 | 000,046,672 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\vmstorfl.sys -- (storflt)
DRV:[b]64bit:[/b] - [2009/07/14 03:45:55 | 000,036,432 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\vdrvroot.sys -- (vdrvroot)
DRV:[b]64bit:[/b] - [2009/07/14 03:45:55 | 000,034,896 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\storvsc.sys -- (storvsc)
DRV:[b]64bit:[/b] - [2009/07/14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2009/07/14 03:45:46 | 000,214,096 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\rdyboost.sys -- (rdyboost)
DRV:[b]64bit:[/b] - [2009/07/14 03:45:45 | 000,050,768 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\pcw.sys -- (pcw)
DRV:[b]64bit:[/b] - [2009/07/14 03:43:14 | 000,460,504 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\cng.sys -- (CNG)
DRV:[b]64bit:[/b] - [2009/07/14 02:17:46 | 000,024,064 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\rdpbus.sys -- (rdpbus)
DRV:[b]64bit:[/b] - [2009/07/14 02:16:35 | 000,008,192 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\RDPREFMP.sys -- (RDPREFMP)
DRV:[b]64bit:[/b] - [2009/07/14 02:10:24 | 000,060,416 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\agilevpn.sys -- (RasAgileVpn) WAN Miniport (IKEv2)
DRV:[b]64bit:[/b] - [2009/07/14 02:09:26 | 000,012,800 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\wfplwf.sys -- (WfpLwf)
DRV:[b]64bit:[/b] - [2009/07/14 02:08:13 | 000,035,328 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ndiscap.sys -- (NdisCap)
DRV:[b]64bit:[/b] - [2009/07/14 02:07:21 | 000,024,576 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vwifibus.sys -- (vwifibus)
DRV:[b]64bit:[/b] - [2009/07/14 02:07:13 | 000,227,840 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\1394ohci.sys -- (1394ohci)
DRV:[b]64bit:[/b] - [2009/07/14 02:07:00 | 000,350,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HdAudio.sys -- (HdAudAddService)
DRV:[b]64bit:[/b] - [2009/07/14 02:07:00 | 000,184,576 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbvideo.sys -- (usbvideo) USB Video Device (WDM)
DRV:[b]64bit:[/b] - [2009/07/14 02:06:52 | 000,009,728 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\umpass.sys -- (UmPass)
DRV:[b]64bit:[/b] - [2009/07/14 02:06:32 | 000,109,568 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\USBAUDIO.sys -- (usbaudio) USB Audio Driver (WDM)
DRV:[b]64bit:[/b] - [2009/07/14 02:06:32 | 000,032,768 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser.sys -- (usbser)
DRV:[b]64bit:[/b] - [2009/07/14 02:06:28 | 000,040,448 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\winusb.sys -- (WinUsb)
DRV:[b]64bit:[/b] - [2009/07/14 02:06:24 | 000,008,192 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mshidkmdf.sys -- (mshidkmdf)
DRV:[b]64bit:[/b] - [2009/07/14 02:05:37 | 000,112,128 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WUDFPf.sys -- (WudfPf)
DRV:[b]64bit:[/b] - [2009/07/14 02:02:08 | 000,015,360 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\MTConfig.sys -- (MTConfig)
DRV:[b]64bit:[/b] - [2009/07/14 02:00:34 | 000,038,912 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\CompositeBus.sys -- (CompositeBus)
DRV:[b]64bit:[/b] - [2009/07/14 02:00:13 | 000,006,656 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\beep.sys -- (Beep)
DRV:[b]64bit:[/b] - [2009/07/14 01:52:39 | 000,061,440 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\appid.sys -- (AppID)
DRV:[b]64bit:[/b] - [2009/07/14 01:50:17 | 000,029,696 | ---- | M] (Microsoft Corporation) [Kernel | Unknown | Stopped] -- C:\Windows\SysNative\drivers\scfilter.sys -- (scfilter)
DRV:[b]64bit:[/b] - [2009/07/14 01:42:58 | 000,006,656 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vms3cap.sys -- (s3cap)
DRV:[b]64bit:[/b] - [2009/07/14 01:42:44 | 000,021,760 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VMBusHID.sys -- (VMBusHID)
DRV:[b]64bit:[/b] - [2009/07/14 01:37:18 | 000,040,448 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\discache.sys -- (discache)
DRV:[b]64bit:[/b] - [2009/07/14 01:31:06 | 000,026,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hidbatt.sys -- (HidBatt)
DRV:[b]64bit:[/b] - [2009/07/14 01:31:03 | 000,017,664 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\CmBatt.sys -- (CmBatt)
DRV:[b]64bit:[/b] - [2009/07/14 01:27:17 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\acpipmi.sys -- (AcpiPmi)
DRV:[b]64bit:[/b] - [2009/07/14 01:24:27 | 000,514,048 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\csc.sys -- (CSC)
DRV:[b]64bit:[/b] - [2009/07/14 01:19:25 | 000,060,928 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdppm.sys -- (AmdPPM)
DRV:[b]64bit:[/b] - [2009/06/10 22:35:57 | 000,056,832 | ---- | M] (Silicon Integrated Systems Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SiSG664.sys -- (SiSGbeLH)
DRV:[b]64bit:[/b] - [2009/06/10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2009/06/10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2009/06/10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:[b]64bit:[/b] - [2009/06/10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:[b]64bit:[/b] - [2008/08/28 12:44:42 | 000,025,600 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pccsmcfdx64.sys -- (pccsmcfd)
DRV:[b]64bit:[/b] - [2008/06/27 08:51:10 | 000,088,632 | ---- | M] (Adobe Systems, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\adfs.sys -- (adfs)
DRV - [2010/04/29 19:44:04 | 000,678,448 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.0.0.136\Definitions\BASHDefs\20100429.001\BHDrvx64.sys -- (BHDrvx64)
DRV - [2010/04/10 21:14:58 | 001,742,896 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.0.0.136\Definitions\VirusDefs\20100509.019\EX64.SYS -- (NAVEX15)
DRV - [2010/04/10 21:14:58 | 000,116,272 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.0.0.136\Definitions\VirusDefs\20100509.019\ENG64.SYS -- (NAVENG)
DRV - [2010/01/27 16:41:42 | 000,475,696 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys -- (eeCtrl)
DRV - [2010/01/27 16:41:42 | 000,132,656 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys -- (EraserUtilRebootDrv)
DRV - [2010/01/27 10:34:45 | 000,000,000 | ---D | M] [Kernel | System | Running] -- C:\Windows\CSC -- (CSC)
DRV - [2010/01/25 07:41:46 | 000,466,992 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.0.0.136\Definitions\IPSDefs\20100505.001\IDSviA64.sys -- (IDSVia64)
DRV - [2009/09/28 20:20:43 | 000,089,256 | ---- | M] (Elaborate Bytes AG) [Kernel | System | Running] -- C:\Windows\SysWOW64\ElbyCDIO.dll -- (ElbyCDIO)
DRV - [2009/07/14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2009/07/14 03:16:19 | 000,016,896 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\winusb.dll -- (WinUsb)
DRV - [2009/07/14 03:16:02 | 000,014,336 | ---- | M] (Microsoft Corporation) [File_System | System | Running] -- C:\Windows\SysWOW64\netbios.dll -- (NetBIOS)
DRV - [2009/06/10 23:28:14 | 000,001,088 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysWOW64\wbem\mpsdrv.mof -- (mpsdrv)
DRV - [2009/06/10 23:15:18 | 000,003,066 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysWOW64\wbem\tcpip.mof -- (Tcpip)
DRV - [2008/08/14 08:57:42 | 000,074,720 | ---- | M] (Adobe Systems, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysWOW64\drivers\adfs.sys -- (adfs)
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
[color=#E56717]========== Internet Explorer ==========[/color]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 83 2C 93 2F 5E EF CA 01 [binary data]
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = local
[color=#E56717]========== FireFox ==========[/color]
FF - prefs.js..extensions.enabledItems: {BBDA0591-3099-440a-AA10-41764D9DB4DB}:2.0
FF - prefs.js..extensions.enabledItems: {2D3F3651-74B9-4795-BDEC-6DA2F431CB62}:4.5
FF - prefs.js..extensions.enabledItems: {19503e42-ca3c-4c27-b1e2-9cdb2170ee34}:1.2.1.21
FF - HKLM\software\mozilla\Firefox\Extensions\\{BBDA0591-3099-440a-AA10-41764D9DB4DB}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.0.0.136\IPSFFPlgn\ [2010/04/27 18:00:11 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.0.0.136\coFFPlgn\ [2010/04/10 21:59:13 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2010/04/11 19:51:25 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2010/04/14 10:20:10 | 000,000,000 | ---D | M]
[2010/01/27 10:57:31 | 000,000,000 | ---D | M] -- C:\Users\Mato\AppData\Roaming\mozilla\Extensions
[2010/05/09 18:26:59 | 000,000,000 | ---D | M] -- C:\Users\Mato\AppData\Roaming\mozilla\Firefox\Profiles\39drrn2e.default\extensions
[2010/04/26 15:44:13 | 000,000,000 | ---D | M] (FlashGot) -- C:\Users\Mato\AppData\Roaming\mozilla\Firefox\Profiles\39drrn2e.default\extensions\{19503e42-ca3c-4c27-b1e2-9cdb2170ee34}
[2010/01/27 13:18:57 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2003/01/13 17:08:06 | 000,499,712 | ---- | M] (Morgan Multimedia) -- C:\Program Files (x86)\Mozilla Firefox\plugins\npjp2.dll
[2010/04/11 19:51:21 | 000,000,638 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\jyxo-cz.xml
[2010/04/11 19:51:21 | 000,001,687 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\mall-cz.xml
[2010/04/11 19:51:21 | 000,001,367 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\seznam-cz.xml
[2010/04/11 19:51:21 | 000,000,654 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\slunecnice-cz.xml
[2010/04/11 19:51:21 | 000,001,179 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\wikipedia-cz.xml
O1 HOSTS File: ([2010/04/10 23:36:07 | 000,000,902 | R--- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:[b]64bit:[/b] - BHO: (Windows Live Family Safety Browser Helper Class) - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll (Microsoft Corporation)
O2:[b]64bit:[/b] - BHO: (Pomocník pri prihlasovaní v konte Windows Live ID) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
O2 - BHO: (Skype add-on (mastermind)) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O2 - BHO: (Symantec NCO BHO) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\17.6.0.32\coieplg.dll (Symantec Corporation)
O2 - BHO: (Symantec Intrusion Prevention) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\17.6.0.32\ipsbho.dll (Symantec Corporation)
O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation)
O2 - BHO: (Pomocník pri prihlasovaní v konte Windows Live ID) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
O2 - BHO: (Windows Live Toolbar Helper) - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (no name) - - No CLSID value found.
O3 - HKLM\..\Toolbar: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\17.6.0.32\coieplg.dll (Symantec Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\17.6.0.32\coieplg.dll (Symantec Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [Acronis Scheduler2 Service] C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe (Acronis)
O4 - HKLM..\Run: [AdobeCS4ServiceManager] C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [TrueImageMonitor.exe] C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe (Acronis)
O4 - HKLM..\Run: [VirtualCloneDrive] C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe (Elaborate Bytes AG)
O4 - HKLM..\Run: [WinFastDTV] C:\Program Files\WinFast\WFDTV\DTVSchdl.exe (Leadtek Research Inc.)
O4 - HKCU..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKCU..\Run: [ICQ] C:\Program Files (x86)\ICQ7.0\ICQ.exe (ICQ, LLC.)
O4 - HKCU..\Run: [PC Suite Tray] C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe (Nokia)
O4 - HKCU..\Run: [Registry Cleaner Scheduler] C:\Program Files (x86)\CleanMyPC\Registry Cleaner\RCHelper.exe (CleanMyPC Software)
O4 - HKCU..\Run: [WinFast Schedule] C:\Program Files\WinFast\WFDTV\WFWIZ.exe (Leadtek Research Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O9 - Extra Button: Pridať do blogu - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : &Pridať do blogu v programe Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O9 - Extra Button: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files (x86)\ICQ7.0\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files (x86)\ICQ7.0\ICQ.exe (ICQ, LLC.)
O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WLIDNSP.DLL (Microsoft Corporation)
O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WLIDNSP.DLL (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WLIDNSP.DLL (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WLIDNSP.DLL (Microsoft Corporation)
O13 - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15)
O16 - DPF: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O18:[b]64bit:[/b] - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - Reg Error: Key error. File not found
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysWow64\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O30:[b]64bit:[/b] - LSA: Security Packages - (pku2u) - C:\Windows\SysNative\pku2u.dll (Microsoft Corporation)
O30:[b]64bit:[/b] - LSA: Security Packages - (livessp) - C:\Windows\SysNative\livessp.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (pku2u) - C:\Windows\SysWow64\pku2u.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (livessp) - C:\Windows\SysWow64\livessp.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{5c960931-0b1f-11df-bfd8-001e8c13dd74}\Shell - "" = AutoRun
O33 - MountPoints2\{5c960931-0b1f-11df-bfd8-001e8c13dd74}\Shell\AutoRun\command - "" = H:\setup.exe -- File not found
O33 - MountPoints2\{5c960931-0b1f-11df-bfd8-001e8c13dd74}\Shell\dinstall\command - "" = H:\directx\dxsetup.exe -- File not found
O33 - MountPoints2\{5c960b43-0b1f-11df-bfd8-001e8c13dd74}\Shell - "" = AutoRun
O33 - MountPoints2\{5c960b43-0b1f-11df-bfd8-001e8c13dd74}\Shell\AutoRun\command - "" = I:\Autoplay.exe -- File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]Re: vytvara sam od seba zlozku pc poprosim kontrolu
[2010/05/09 18:38:29 | 000,000,000 | ---D | C] -- C:\Users\Mato\Documents\ConvertXToDVD
[2010/05/09 18:35:45 | 000,082,816 | ---- | C] (VSO Software) -- C:\Windows\SysNative\drivers\pcouffin.sys
[2010/05/09 18:35:45 | 000,082,816 | ---- | C] (VSO Software) -- C:\Users\Mato\AppData\Roaming\pcouffin.sys
[2010/05/09 18:35:45 | 000,000,000 | ---D | C] -- C:\Users\Mato\AppData\Roaming\Vso
[2010/05/09 18:35:45 | 000,000,000 | ---D | C] -- C:\Users\Mato\Documents\PcSetup
[2010/05/09 18:35:29 | 000,102,439 | ---- | C] (RealNetworks, Inc.) -- C:\Windows\SysWow64\sipr3260.dll
[2010/05/09 18:35:28 | 000,626,688 | ---- | C] (On2.com) -- C:\Windows\SysWow64\vp7vfw.dll
[2010/05/09 18:35:28 | 000,217,127 | ---- | C] (RealNetworks, Inc.) -- C:\Windows\SysWow64\drv43260.dll
[2010/05/09 18:35:28 | 000,208,935 | ---- | C] (RealNetworks, Inc.) -- C:\Windows\SysWow64\drv33260.dll
[2010/05/09 18:35:28 | 000,176,165 | ---- | C] (RealNetworks, Inc.) -- C:\Windows\SysWow64\drv23260.dll
[2010/05/09 18:35:28 | 000,065,602 | ---- | C] (RealNetworks, Inc.) -- C:\Windows\SysWow64\cook3260.dll
[2010/05/09 18:35:27 | 001,184,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wvc1dmod.dll
[2010/05/09 18:35:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VSO
[2010/05/09 18:19:40 | 000,000,000 | ---D | C] -- C:\Users\Mato\Documents\NeroVision
[2010/05/09 14:06:08 | 000,000,000 | ---D | C] -- C:\Program Files\PlayReady
[2010/05/05 12:27:24 | 000,025,600 | ---- | C] (Nokia) -- C:\Windows\SysNative\drivers\pccsmcfdx64.sys
[2010/05/05 12:27:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PC Connectivity Solution
[2010/05/05 12:20:11 | 000,000,000 | ---D | C] -- C:\Users\Mato\AppData\Roaming\Nokia
[2010/05/05 12:19:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\PCSuite
[2010/05/03 19:40:19 | 000,000,000 | ---D | C] -- C:\Windows\$regcmp$
[2010/05/03 19:34:17 | 000,000,000 | ---D | C] -- C:\Users\Mato\AppData\Roaming\CleanMyPC Software
[2010/05/03 19:34:16 | 000,000,000 | ---D | C] -- C:\ProgramData\TEMP
[2010/05/03 19:33:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\CleanMyPC
[2010/04/29 17:06:51 | 000,000,000 | ---D | C] -- C:\Users\Mato\AppData\Local\WMTools Downloaded Files
[2010/04/29 17:06:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Movie Maker 2.6
[2010/04/28 19:17:47 | 003,879,288 | ---- | C] (Sysinternals - www.sysinternals.com) -- C:\Users\Mato\Desktop\procexp.exe
[2010/04/28 18:49:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Autodesk
[2010/04/28 13:21:47 | 001,446,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2010/04/28 13:21:47 | 000,153,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ksecpkg.sys
[2010/04/28 13:21:45 | 000,223,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\fvevol.sys
[2010/04/26 20:13:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\trend micro
[2010/04/26 20:13:07 | 000,000,000 | ---D | C] -- C:\rsit
[2010/04/24 19:14:07 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2010/04/24 11:06:13 | 000,000,000 | ---D | C] -- C:\Users\Mato\AppData\Local\CrashDumps
[2010/04/23 20:55:25 | 000,000,000 | ---D | C] -- C:\Users\Mato\AppData\Local\ElevatedDiagnostics
[2010/04/23 20:06:06 | 000,000,000 | ---D | C] -- C:\Users\Mato\AppData\Roaming\SolidDocuments
[2010/04/23 20:04:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SolidDocuments
[2010/04/23 20:03:40 | 000,000,000 | ---D | C] -- C:\ProgramData\SolidDocuments
[2010/04/23 20:02:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VeryPDF PDF2Word v3.0
[2010/04/23 06:55:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DAEMON Tools Lite
[2010/04/23 06:54:48 | 000,000,000 | ---D | C] -- C:\Users\Mato\AppData\Roaming\DAEMON Tools Lite
[2010/04/23 06:54:46 | 000,000,000 | ---D | C] -- C:\ProgramData\DAEMON Tools Lite
[2010/04/14 13:43:43 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cabview.dll
[2010/04/14 13:43:42 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cabview.dll
[2010/04/14 13:43:41 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wintrust.dll
[2010/04/14 13:43:41 | 000,172,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wintrust.dll
[2010/04/14 13:43:40 | 005,509,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
[2010/04/14 13:43:39 | 003,954,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe
[2010/04/14 13:43:39 | 003,899,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe
[2010/04/14 13:43:38 | 000,612,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2010/04/14 13:43:38 | 000,427,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vbscript.dll
[2010/04/14 13:42:31 | 000,000,000 | ---D | C] -- C:\ProgramData\PC Suite
[2010/04/14 13:42:23 | 000,000,000 | ---D | C] -- C:\Users\Mato\AppData\Roaming\PC Suite
[2010/04/14 10:56:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Nokia
[2010/04/14 10:55:28 | 000,000,000 | ---D | C] -- C:\Program Files\DIFX
[2010/04/14 10:54:41 | 000,069,120 | ---- | C] (Nokia) -- C:\Windows\SysNative\nmwcdclsx64.dll
[2010/04/14 10:53:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Nokia
[2010/04/14 10:53:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Nokia
[2010/04/14 10:52:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Installations
[2010/04/13 17:20:50 | 000,000,000 | ---D | C] -- C:\Users\Mato\AppData\Local\ACD Systems
[2010/04/13 17:20:12 | 000,000,000 | ---D | C] -- C:\Users\Mato\AppData\Roaming\ACD Systems
[2010/04/13 17:06:23 | 000,000,000 | ---D | C] -- C:\Program Files\HP
[2010/04/13 17:06:18 | 000,127,488 | ---- | C] (Zenographics, Inc.) -- C:\Windows\SysNative\ZSPOOL.DLL
[2010/04/13 17:06:18 | 000,115,200 | ---- | C] (Zenographics, Inc.) -- C:\Windows\SysNative\ZLhp1018.DLL
[2010/04/13 17:06:18 | 000,061,952 | ---- | C] (Zenographics, Inc.) -- C:\Windows\SysNative\ZIMF.DLL
[2010/04/13 17:06:18 | 000,049,664 | ---- | C] (Zenographics, Inc.) -- C:\Windows\SysNative\ZTAG.DLL
[2010/04/11 19:16:03 | 000,000,000 | ---D | C] -- C:\Users\Mato\AppData\Local\MediaMonkey
[2010/04/11 19:16:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MediaMonkey
[2010/04/11 18:15:54 | 000,000,000 | ---D | C] -- C:\ProgramData\NOS
[2010/04/11 16:27:06 | 000,000,000 | ---D | C] -- C:\ProgramData\ArcSoft
[2010/04/11 16:26:58 | 000,245,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\unicows.dll
[2010/04/11 16:26:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\ArcSoft
[2010/04/11 16:26:24 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Ulead Systems
[2010/04/11 16:25:33 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\InstallShield
[2010/04/11 16:25:11 | 000,000,000 | ---D | C] -- C:\Program Files\WinFast
[2010/04/11 16:24:21 | 000,474,496 | ---- | C] (Leadtek Research Inc.) -- C:\Windows\SysNative\drivers\wfeaglxt.sys
[2010/04/11 16:24:21 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\WinFast
[2010/04/11 16:24:18 | 000,000,000 | ---D | C] -- C:\Users\Mato\AppData\Roaming\InstallShield
[2010/04/11 15:40:43 | 000,000,000 | ---D | C] -- C:\Users\Mato\Tracing
[2010/04/11 15:40:42 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\microsoft
[2010/04/11 15:39:12 | 000,061,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\fssfltr.sys
[2010/04/11 15:39:12 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\DRVSTORE
[2010/04/11 15:39:10 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Live
[2010/04/11 15:38:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Sync Framework
[2010/04/11 15:36:35 | 000,000,000 | ---D | C] -- C:\Users\Mato\EurekaLog
[2010/04/11 15:36:01 | 004,398,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_32.dll
[2010/04/11 15:36:01 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_32.dll
[2010/04/11 15:35:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
[2010/04/11 15:34:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Windows Live SkyDrive
[2010/04/11 15:33:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Windows Live
[2010/04/11 15:24:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Windows Live
[2010/04/11 15:21:50 | 000,294,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\browserchoice.exe
[2010/04/11 00:31:46 | 000,000,000 | ---D | C] -- C:\Users\Mato\AppData\Roaming\WinRAR
[2010/04/10 21:25:16 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation
[2010/04/10 21:22:33 | 001,192,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wininet.dll
[2010/04/10 21:22:33 | 001,026,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstime.dll
[2010/04/10 21:22:33 | 000,606,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstime.dll
[2010/04/10 21:22:33 | 000,445,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iedkcs32.dll
[2010/04/10 21:22:32 | 000,977,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wininet.dll
[2010/04/10 21:22:32 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iedkcs32.dll
[2010/04/10 21:22:32 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedsbs.dll
[2010/04/10 21:22:32 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedsbs.dll
[2010/04/10 21:22:29 | 000,424,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc.dll
[2010/04/10 21:22:29 | 000,422,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_isv.dll
[2010/04/10 21:22:29 | 000,369,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc.dll
[2010/04/10 21:22:29 | 000,365,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_isv.dll
[2010/04/10 21:22:29 | 000,357,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_isv.exe
[2010/04/10 21:22:29 | 000,356,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate.exe
[2010/04/10 21:22:29 | 000,305,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_ssp_isv.exe
[2010/04/10 21:22:28 | 000,324,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_isv.exe
[2010/04/10 21:22:28 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate.exe
[2010/04/10 21:22:28 | 000,306,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_ssp.exe
[2010/04/10 21:22:28 | 000,280,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_ssp.exe
[2010/04/10 21:22:28 | 000,277,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_ssp_isv.exe
[2010/04/10 21:22:28 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_ssp_isv.dll
[2010/04/10 21:22:28 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_ssp.dll
[2010/04/10 21:22:28 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_ssp_isv.dll
[2010/04/10 21:22:28 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_ssp.dll
[2010/04/10 21:22:27 | 001,572,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\quartz.dll
[2010/04/10 21:22:27 | 001,328,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\quartz.dll
[2010/04/10 21:22:27 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msvidc32.dll
[2010/04/10 21:22:26 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\avifil32.dll
[2010/04/10 21:22:26 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mciavi32.dll
[2010/04/10 21:22:26 | 000,054,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iyuv_32.dll
[2010/04/10 21:22:26 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msyuv.dll
[2010/04/10 21:22:26 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msrle32.dll
[2010/04/10 21:22:26 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tsbyuv.dll
[2010/04/10 21:22:06 | 000,852,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2010/04/10 21:22:06 | 000,716,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2010/04/10 21:22:04 | 000,960,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\CPFilters.dll
[2010/04/10 21:22:03 | 000,641,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\CPFilters.dll
[2010/04/10 21:22:03 | 000,613,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\psisdecd.dll
[2010/04/10 21:22:03 | 000,552,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdri.dll
[2010/04/10 21:22:03 | 000,465,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\psisdecd.dll
[2010/04/10 21:22:03 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MSNP.ax
[2010/04/10 21:22:03 | 000,204,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSNP.ax
[2010/04/10 21:22:01 | 000,243,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64.dll
[2010/04/10 21:22:01 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setup16.exe
[2010/04/10 21:22:01 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntvdm64.dll
[2010/04/10 21:22:00 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\instnm.exe
[2010/04/10 21:22:00 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wow32.dll
[2010/04/10 21:22:00 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\user.exe
========== Files - Modified Within 30 Days ==========
[2055/09/19 08:29:11 | 000,002,012 | ---- | M] () -- C:\Windows\SysWow64\NAV_75_cltDynam.dat
[2010/05/10 14:38:13 | 002,621,440 | ---- | M] () -- C:\Users\Mato\NTUSER.DAT
[2010/05/10 12:25:29 | 000,606,992 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2010/05/10 12:25:29 | 000,103,370 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2010/05/10 12:25:28 | 000,713,888 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2010/05/10 11:41:55 | 000,018,528 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2010/05/10 11:41:55 | 000,018,528 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2010/05/10 11:34:34 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2010/05/10 11:34:30 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010/05/10 11:34:24 | 1610,014,720 | -HS- | M] () -- C:\hiberfil.sys
[2010/05/09 22:39:22 | 001,388,082 | -H-- | M] () -- C:\Users\Mato\AppData\Local\IconCache.db
[2010/05/09 20:01:30 | 000,001,057 | ---- | M] () -- C:\Users\Mato\AppData\Roaming\vso_ts_preview.xml
[2010/05/09 18:36:51 | 001,099,894 | ---- | M] () -- C:\Windows\SysNative\drivers\NISx64\1106000.020\Cat.DB
[2010/05/09 18:35:45 | 000,099,384 | ---- | M] () -- C:\Users\Mato\AppData\Roaming\inst.exe
[2010/05/09 18:35:45 | 000,082,816 | ---- | M] (VSO Software) -- C:\Windows\SysNative\drivers\pcouffin.sys
[2010/05/09 18:35:45 | 000,082,816 | ---- | M] (VSO Software) -- C:\Users\Mato\AppData\Roaming\pcouffin.sys
[2010/05/09 18:35:45 | 000,007,859 | ---- | M] () -- C:\Users\Mato\AppData\Roaming\pcouffin.cat
[2010/05/09 18:35:45 | 000,001,167 | ---- | M] () -- C:\Users\Mato\AppData\Roaming\pcouffin.inf
[2010/05/09 18:35:40 | 000,001,232 | ---- | M] () -- C:\Users\Mato\Desktop\ConvertXtoDVD 4.lnk
[2010/05/05 12:25:31 | 000,002,130 | ---- | M] () -- C:\Users\Public\Desktop\Nokia Software Updater.lnk
[2010/05/05 12:20:31 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_PCCSWpdDriver_01_07_00.Wdf
[2010/05/05 12:19:36 | 000,002,038 | ---- | M] () -- C:\Users\Public\Desktop\Nokia PC Suite.lnk
[2010/05/03 21:50:26 | 000,524,288 | -HS- | M] () -- C:\Users\Mato\NTUSER.DAT{3ca00100-56c0-11df-be92-001e8c13dd74}.TMContainer00000000000000000002.regtrans-ms
[2010/05/03 21:50:26 | 000,065,536 | -HS- | M] () -- C:\Users\Mato\NTUSER.DAT{3ca00100-56c0-11df-be92-001e8c13dd74}.TM.blf
[2010/05/03 21:50:25 | 000,524,288 | -HS- | M] () -- C:\Users\Mato\NTUSER.DAT{3ca00100-56c0-11df-be92-001e8c13dd74}.TMContainer00000000000000000001.regtrans-ms
[2010/05/03 19:33:27 | 000,001,105 | ---- | M] () -- C:\Users\Mato\Desktop\CleanMyPC - Registry Cleaner.lnk
[2010/04/29 16:57:01 | 000,114,384 | ---- | M] () -- C:\Users\Mato\AppData\Local\GDIPFONTCACHEV1.DAT
[2010/04/23 20:04:16 | 000,002,635 | ---- | M] () -- C:\Users\Public\Desktop\Solid Converter PDF.lnk
[2010/04/23 20:02:56 | 000,001,014 | ---- | M] () -- C:\Users\Mato\Desktop\PDF2Word v3.0.lnk
[2010/04/23 06:55:50 | 000,001,954 | ---- | M] () -- C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
[2010/04/23 06:55:49 | 000,834,544 | ---- | M] () -- C:\Windows\SysNative\drivers\sptd.sys
[2010/04/22 07:20:47 | 003,029,624 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2010/04/21 20:52:29 | 000,000,560 | ---- | M] () -- C:\Users\Public\Desktop\Csm2002.lnk
[2010/04/21 16:06:21 | 000,000,977 | ---- | M] () -- C:\Users\Public\Desktop\MediaMonkey.lnk
[2010/04/15 08:01:04 | 003,879,288 | ---- | M] (Sysinternals - www.sysinternals.com) -- C:\Users\Mato\Desktop\procexp.exe
[2010/04/14 13:39:17 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_ccdcmbx64_01009.Wdf
[2010/04/14 10:48:46 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
[2010/04/14 10:20:11 | 000,002,014 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader 9.lnk
[2010/04/11 18:13:01 | 000,000,600 | ---- | M] () -- C:\Users\Mato\PUTTY.RND
[2010/04/11 16:25:12 | 000,001,545 | ---- | M] () -- C:\Users\Public\Desktop\WinFast PVR2.lnk
[2010/04/11 15:09:12 | 000,002,489 | ---- | M] () -- C:\Users\Public\Desktop\Norton Internet Security.lnk
========== Files Created - No Company Name ==========
[2010/05/09 18:37:32 | 000,001,057 | ---- | C] () -- C:\Users\Mato\AppData\Roaming\vso_ts_preview.xml
[2010/05/09 18:37:10 | 000,000,034 | ---- | C] () -- C:\Users\Mato\AppData\Roaming\pcouffin.log
[2010/05/09 18:35:45 | 000,099,384 | ---- | C] () -- C:\Users\Mato\AppData\Roaming\inst.exe
[2010/05/09 18:35:45 | 000,007,859 | ---- | C] () -- C:\Users\Mato\AppData\Roaming\pcouffin.cat
[2010/05/09 18:35:45 | 000,001,167 | ---- | C] () -- C:\Users\Mato\AppData\Roaming\pcouffin.inf
[2010/05/09 18:35:40 | 000,001,232 | ---- | C] () -- C:\Users\Mato\Desktop\ConvertXtoDVD 4.lnk
[2010/05/05 12:20:31 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_PCCSWpdDriver_01_07_00.Wdf
[2010/05/05 12:19:36 | 000,002,038 | ---- | C] () -- C:\Users\Public\Desktop\Nokia PC Suite.lnk
[2010/05/03 19:49:12 | 000,524,288 | -HS- | C] () -- C:\Users\Mato\NTUSER.DAT{3ca00100-56c0-11df-be92-001e8c13dd74}.TMContainer00000000000000000002.regtrans-ms
[2010/05/03 19:49:12 | 000,524,288 | -HS- | C] () -- C:\Users\Mato\NTUSER.DAT{3ca00100-56c0-11df-be92-001e8c13dd74}.TMContainer00000000000000000001.regtrans-ms
[2010/05/03 19:49:12 | 000,065,536 | -HS- | C] () -- C:\Users\Mato\NTUSER.DAT{3ca00100-56c0-11df-be92-001e8c13dd74}.TM.blf
[2010/05/03 19:33:27 | 000,001,105 | ---- | C] () -- C:\Users\Mato\Desktop\CleanMyPC - Registry Cleaner.lnk
[2010/04/28 19:17:47 | 000,072,268 | ---- | C] () -- C:\Users\Mato\Desktop\procexp.chm
[2010/04/23 20:04:19 | 000,024,576 | ---- | C] () -- C:\Windows\SysNative\solidlocalmon.dll
[2010/04/23 20:04:19 | 000,012,800 | ---- | C] () -- C:\Windows\SysNative\solidlocalui.dll
[2010/04/23 20:04:16 | 000,002,635 | ---- | C] () -- C:\Users\Public\Desktop\Solid Converter PDF.lnk
[2010/04/23 20:02:56 | 000,001,014 | ---- | C] () -- C:\Users\Mato\Desktop\PDF2Word v3.0.lnk
[2010/04/23 06:55:49 | 000,834,544 | ---- | C] () -- C:\Windows\SysNative\drivers\sptd.sys
[2010/04/23 06:55:49 | 000,001,954 | ---- | C] () -- C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
[2010/04/21 20:52:29 | 000,000,560 | ---- | C] () -- C:\Users\Public\Desktop\Csm2002.lnk
[2010/04/14 13:39:17 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_ccdcmbx64_01009.Wdf
[2010/04/14 10:53:50 | 000,002,130 | ---- | C] () -- C:\Users\Public\Desktop\Nokia Software Updater.lnk
[2010/04/14 10:48:46 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
[2010/04/13 17:06:18 | 000,567,808 | ---- | C] () -- C:\Windows\SysNative\ZSHP1018.EXE
[2010/04/13 17:06:17 | 000,128,380 | ---- | C] () -- C:\Windows\SysNative\hp1018.img
[2010/04/13 17:06:17 | 000,010,715 | ---- | C] () -- C:\Windows\SysNative\ZSHP1018.CHM
[2010/04/11 19:16:30 | 000,000,977 | ---- | C] () -- C:\Users\Public\Desktop\MediaMonkey.lnk
[2010/04/11 18:12:36 | 000,000,600 | ---- | C] () -- C:\Users\Mato\PUTTY.RND
[2010/04/11 16:25:25 | 000,000,350 | ---- | C] () -- C:\Windows\SysWow64\AF15IRTBL.bin
[2010/04/11 16:25:12 | 000,001,545 | ---- | C] () -- C:\Users\Public\Desktop\WinFast PVR2.lnk
[2010/01/27 11:07:56 | 000,000,761 | ---- | C] () -- C:\Windows\m3jp2k.ini
[2010/01/27 11:07:56 | 000,000,702 | ---- | C] () -- C:\Windows\mmtvmj.ini
[2010/01/27 11:07:55 | 000,000,714 | ---- | C] () -- C:\Windows\m3jpeg.ini
[2010/01/27 11:07:53 | 000,019,968 | ---- | C] () -- C:\Windows\SysWow64\cpuinf32.dll
[2010/01/27 11:07:52 | 000,152,064 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2010/01/27 11:07:50 | 000,761,856 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2009/07/14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009/07/13 23:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
========== Alternate Data Streams ==========
@Alternate Data Stream - 183 bytes -> C:\ProgramData\TEMP:ECF54A0E
< End of report >[/code]
[2010/05/09 18:35:45 | 000,082,816 | ---- | C] (VSO Software) -- C:\Windows\SysNative\drivers\pcouffin.sys
[2010/05/09 18:35:45 | 000,082,816 | ---- | C] (VSO Software) -- C:\Users\Mato\AppData\Roaming\pcouffin.sys
[2010/05/09 18:35:45 | 000,000,000 | ---D | C] -- C:\Users\Mato\AppData\Roaming\Vso
[2010/05/09 18:35:45 | 000,000,000 | ---D | C] -- C:\Users\Mato\Documents\PcSetup
[2010/05/09 18:35:29 | 000,102,439 | ---- | C] (RealNetworks, Inc.) -- C:\Windows\SysWow64\sipr3260.dll
[2010/05/09 18:35:28 | 000,626,688 | ---- | C] (On2.com) -- C:\Windows\SysWow64\vp7vfw.dll
[2010/05/09 18:35:28 | 000,217,127 | ---- | C] (RealNetworks, Inc.) -- C:\Windows\SysWow64\drv43260.dll
[2010/05/09 18:35:28 | 000,208,935 | ---- | C] (RealNetworks, Inc.) -- C:\Windows\SysWow64\drv33260.dll
[2010/05/09 18:35:28 | 000,176,165 | ---- | C] (RealNetworks, Inc.) -- C:\Windows\SysWow64\drv23260.dll
[2010/05/09 18:35:28 | 000,065,602 | ---- | C] (RealNetworks, Inc.) -- C:\Windows\SysWow64\cook3260.dll
[2010/05/09 18:35:27 | 001,184,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wvc1dmod.dll
[2010/05/09 18:35:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VSO
[2010/05/09 18:19:40 | 000,000,000 | ---D | C] -- C:\Users\Mato\Documents\NeroVision
[2010/05/09 14:06:08 | 000,000,000 | ---D | C] -- C:\Program Files\PlayReady
[2010/05/05 12:27:24 | 000,025,600 | ---- | C] (Nokia) -- C:\Windows\SysNative\drivers\pccsmcfdx64.sys
[2010/05/05 12:27:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PC Connectivity Solution
[2010/05/05 12:20:11 | 000,000,000 | ---D | C] -- C:\Users\Mato\AppData\Roaming\Nokia
[2010/05/05 12:19:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\PCSuite
[2010/05/03 19:40:19 | 000,000,000 | ---D | C] -- C:\Windows\$regcmp$
[2010/05/03 19:34:17 | 000,000,000 | ---D | C] -- C:\Users\Mato\AppData\Roaming\CleanMyPC Software
[2010/05/03 19:34:16 | 000,000,000 | ---D | C] -- C:\ProgramData\TEMP
[2010/05/03 19:33:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\CleanMyPC
[2010/04/29 17:06:51 | 000,000,000 | ---D | C] -- C:\Users\Mato\AppData\Local\WMTools Downloaded Files
[2010/04/29 17:06:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Movie Maker 2.6
[2010/04/28 19:17:47 | 003,879,288 | ---- | C] (Sysinternals - www.sysinternals.com) -- C:\Users\Mato\Desktop\procexp.exe
[2010/04/28 18:49:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Autodesk
[2010/04/28 13:21:47 | 001,446,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2010/04/28 13:21:47 | 000,153,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ksecpkg.sys
[2010/04/28 13:21:45 | 000,223,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\fvevol.sys
[2010/04/26 20:13:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\trend micro
[2010/04/26 20:13:07 | 000,000,000 | ---D | C] -- C:\rsit
[2010/04/24 19:14:07 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2010/04/24 11:06:13 | 000,000,000 | ---D | C] -- C:\Users\Mato\AppData\Local\CrashDumps
[2010/04/23 20:55:25 | 000,000,000 | ---D | C] -- C:\Users\Mato\AppData\Local\ElevatedDiagnostics
[2010/04/23 20:06:06 | 000,000,000 | ---D | C] -- C:\Users\Mato\AppData\Roaming\SolidDocuments
[2010/04/23 20:04:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SolidDocuments
[2010/04/23 20:03:40 | 000,000,000 | ---D | C] -- C:\ProgramData\SolidDocuments
[2010/04/23 20:02:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VeryPDF PDF2Word v3.0
[2010/04/23 06:55:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DAEMON Tools Lite
[2010/04/23 06:54:48 | 000,000,000 | ---D | C] -- C:\Users\Mato\AppData\Roaming\DAEMON Tools Lite
[2010/04/23 06:54:46 | 000,000,000 | ---D | C] -- C:\ProgramData\DAEMON Tools Lite
[2010/04/14 13:43:43 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cabview.dll
[2010/04/14 13:43:42 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cabview.dll
[2010/04/14 13:43:41 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wintrust.dll
[2010/04/14 13:43:41 | 000,172,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wintrust.dll
[2010/04/14 13:43:40 | 005,509,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
[2010/04/14 13:43:39 | 003,954,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe
[2010/04/14 13:43:39 | 003,899,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe
[2010/04/14 13:43:38 | 000,612,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2010/04/14 13:43:38 | 000,427,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vbscript.dll
[2010/04/14 13:42:31 | 000,000,000 | ---D | C] -- C:\ProgramData\PC Suite
[2010/04/14 13:42:23 | 000,000,000 | ---D | C] -- C:\Users\Mato\AppData\Roaming\PC Suite
[2010/04/14 10:56:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Nokia
[2010/04/14 10:55:28 | 000,000,000 | ---D | C] -- C:\Program Files\DIFX
[2010/04/14 10:54:41 | 000,069,120 | ---- | C] (Nokia) -- C:\Windows\SysNative\nmwcdclsx64.dll
[2010/04/14 10:53:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Nokia
[2010/04/14 10:53:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Nokia
[2010/04/14 10:52:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Installations
[2010/04/13 17:20:50 | 000,000,000 | ---D | C] -- C:\Users\Mato\AppData\Local\ACD Systems
[2010/04/13 17:20:12 | 000,000,000 | ---D | C] -- C:\Users\Mato\AppData\Roaming\ACD Systems
[2010/04/13 17:06:23 | 000,000,000 | ---D | C] -- C:\Program Files\HP
[2010/04/13 17:06:18 | 000,127,488 | ---- | C] (Zenographics, Inc.) -- C:\Windows\SysNative\ZSPOOL.DLL
[2010/04/13 17:06:18 | 000,115,200 | ---- | C] (Zenographics, Inc.) -- C:\Windows\SysNative\ZLhp1018.DLL
[2010/04/13 17:06:18 | 000,061,952 | ---- | C] (Zenographics, Inc.) -- C:\Windows\SysNative\ZIMF.DLL
[2010/04/13 17:06:18 | 000,049,664 | ---- | C] (Zenographics, Inc.) -- C:\Windows\SysNative\ZTAG.DLL
[2010/04/11 19:16:03 | 000,000,000 | ---D | C] -- C:\Users\Mato\AppData\Local\MediaMonkey
[2010/04/11 19:16:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MediaMonkey
[2010/04/11 18:15:54 | 000,000,000 | ---D | C] -- C:\ProgramData\NOS
[2010/04/11 16:27:06 | 000,000,000 | ---D | C] -- C:\ProgramData\ArcSoft
[2010/04/11 16:26:58 | 000,245,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\unicows.dll
[2010/04/11 16:26:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\ArcSoft
[2010/04/11 16:26:24 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Ulead Systems
[2010/04/11 16:25:33 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\InstallShield
[2010/04/11 16:25:11 | 000,000,000 | ---D | C] -- C:\Program Files\WinFast
[2010/04/11 16:24:21 | 000,474,496 | ---- | C] (Leadtek Research Inc.) -- C:\Windows\SysNative\drivers\wfeaglxt.sys
[2010/04/11 16:24:21 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\WinFast
[2010/04/11 16:24:18 | 000,000,000 | ---D | C] -- C:\Users\Mato\AppData\Roaming\InstallShield
[2010/04/11 15:40:43 | 000,000,000 | ---D | C] -- C:\Users\Mato\Tracing
[2010/04/11 15:40:42 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\microsoft
[2010/04/11 15:39:12 | 000,061,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\fssfltr.sys
[2010/04/11 15:39:12 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\DRVSTORE
[2010/04/11 15:39:10 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Live
[2010/04/11 15:38:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Sync Framework
[2010/04/11 15:36:35 | 000,000,000 | ---D | C] -- C:\Users\Mato\EurekaLog
[2010/04/11 15:36:01 | 004,398,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_32.dll
[2010/04/11 15:36:01 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_32.dll
[2010/04/11 15:35:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
[2010/04/11 15:34:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Windows Live SkyDrive
[2010/04/11 15:33:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Windows Live
[2010/04/11 15:24:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Windows Live
[2010/04/11 15:21:50 | 000,294,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\browserchoice.exe
[2010/04/11 00:31:46 | 000,000,000 | ---D | C] -- C:\Users\Mato\AppData\Roaming\WinRAR
[2010/04/10 21:25:16 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation
[2010/04/10 21:22:33 | 001,192,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wininet.dll
[2010/04/10 21:22:33 | 001,026,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstime.dll
[2010/04/10 21:22:33 | 000,606,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstime.dll
[2010/04/10 21:22:33 | 000,445,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iedkcs32.dll
[2010/04/10 21:22:32 | 000,977,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wininet.dll
[2010/04/10 21:22:32 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iedkcs32.dll
[2010/04/10 21:22:32 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedsbs.dll
[2010/04/10 21:22:32 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedsbs.dll
[2010/04/10 21:22:29 | 000,424,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc.dll
[2010/04/10 21:22:29 | 000,422,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_isv.dll
[2010/04/10 21:22:29 | 000,369,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc.dll
[2010/04/10 21:22:29 | 000,365,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_isv.dll
[2010/04/10 21:22:29 | 000,357,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_isv.exe
[2010/04/10 21:22:29 | 000,356,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate.exe
[2010/04/10 21:22:29 | 000,305,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_ssp_isv.exe
[2010/04/10 21:22:28 | 000,324,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_isv.exe
[2010/04/10 21:22:28 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate.exe
[2010/04/10 21:22:28 | 000,306,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_ssp.exe
[2010/04/10 21:22:28 | 000,280,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_ssp.exe
[2010/04/10 21:22:28 | 000,277,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_ssp_isv.exe
[2010/04/10 21:22:28 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_ssp_isv.dll
[2010/04/10 21:22:28 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_ssp.dll
[2010/04/10 21:22:28 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_ssp_isv.dll
[2010/04/10 21:22:28 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_ssp.dll
[2010/04/10 21:22:27 | 001,572,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\quartz.dll
[2010/04/10 21:22:27 | 001,328,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\quartz.dll
[2010/04/10 21:22:27 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msvidc32.dll
[2010/04/10 21:22:26 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\avifil32.dll
[2010/04/10 21:22:26 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mciavi32.dll
[2010/04/10 21:22:26 | 000,054,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iyuv_32.dll
[2010/04/10 21:22:26 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msyuv.dll
[2010/04/10 21:22:26 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msrle32.dll
[2010/04/10 21:22:26 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tsbyuv.dll
[2010/04/10 21:22:06 | 000,852,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2010/04/10 21:22:06 | 000,716,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2010/04/10 21:22:04 | 000,960,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\CPFilters.dll
[2010/04/10 21:22:03 | 000,641,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\CPFilters.dll
[2010/04/10 21:22:03 | 000,613,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\psisdecd.dll
[2010/04/10 21:22:03 | 000,552,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdri.dll
[2010/04/10 21:22:03 | 000,465,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\psisdecd.dll
[2010/04/10 21:22:03 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MSNP.ax
[2010/04/10 21:22:03 | 000,204,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSNP.ax
[2010/04/10 21:22:01 | 000,243,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64.dll
[2010/04/10 21:22:01 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setup16.exe
[2010/04/10 21:22:01 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntvdm64.dll
[2010/04/10 21:22:00 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\instnm.exe
[2010/04/10 21:22:00 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wow32.dll
[2010/04/10 21:22:00 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\user.exe
========== Files - Modified Within 30 Days ==========
[2055/09/19 08:29:11 | 000,002,012 | ---- | M] () -- C:\Windows\SysWow64\NAV_75_cltDynam.dat
[2010/05/10 14:38:13 | 002,621,440 | ---- | M] () -- C:\Users\Mato\NTUSER.DAT
[2010/05/10 12:25:29 | 000,606,992 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2010/05/10 12:25:29 | 000,103,370 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2010/05/10 12:25:28 | 000,713,888 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2010/05/10 11:41:55 | 000,018,528 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2010/05/10 11:41:55 | 000,018,528 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2010/05/10 11:34:34 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2010/05/10 11:34:30 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010/05/10 11:34:24 | 1610,014,720 | -HS- | M] () -- C:\hiberfil.sys
[2010/05/09 22:39:22 | 001,388,082 | -H-- | M] () -- C:\Users\Mato\AppData\Local\IconCache.db
[2010/05/09 20:01:30 | 000,001,057 | ---- | M] () -- C:\Users\Mato\AppData\Roaming\vso_ts_preview.xml
[2010/05/09 18:36:51 | 001,099,894 | ---- | M] () -- C:\Windows\SysNative\drivers\NISx64\1106000.020\Cat.DB
[2010/05/09 18:35:45 | 000,099,384 | ---- | M] () -- C:\Users\Mato\AppData\Roaming\inst.exe
[2010/05/09 18:35:45 | 000,082,816 | ---- | M] (VSO Software) -- C:\Windows\SysNative\drivers\pcouffin.sys
[2010/05/09 18:35:45 | 000,082,816 | ---- | M] (VSO Software) -- C:\Users\Mato\AppData\Roaming\pcouffin.sys
[2010/05/09 18:35:45 | 000,007,859 | ---- | M] () -- C:\Users\Mato\AppData\Roaming\pcouffin.cat
[2010/05/09 18:35:45 | 000,001,167 | ---- | M] () -- C:\Users\Mato\AppData\Roaming\pcouffin.inf
[2010/05/09 18:35:40 | 000,001,232 | ---- | M] () -- C:\Users\Mato\Desktop\ConvertXtoDVD 4.lnk
[2010/05/05 12:25:31 | 000,002,130 | ---- | M] () -- C:\Users\Public\Desktop\Nokia Software Updater.lnk
[2010/05/05 12:20:31 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_PCCSWpdDriver_01_07_00.Wdf
[2010/05/05 12:19:36 | 000,002,038 | ---- | M] () -- C:\Users\Public\Desktop\Nokia PC Suite.lnk
[2010/05/03 21:50:26 | 000,524,288 | -HS- | M] () -- C:\Users\Mato\NTUSER.DAT{3ca00100-56c0-11df-be92-001e8c13dd74}.TMContainer00000000000000000002.regtrans-ms
[2010/05/03 21:50:26 | 000,065,536 | -HS- | M] () -- C:\Users\Mato\NTUSER.DAT{3ca00100-56c0-11df-be92-001e8c13dd74}.TM.blf
[2010/05/03 21:50:25 | 000,524,288 | -HS- | M] () -- C:\Users\Mato\NTUSER.DAT{3ca00100-56c0-11df-be92-001e8c13dd74}.TMContainer00000000000000000001.regtrans-ms
[2010/05/03 19:33:27 | 000,001,105 | ---- | M] () -- C:\Users\Mato\Desktop\CleanMyPC - Registry Cleaner.lnk
[2010/04/29 16:57:01 | 000,114,384 | ---- | M] () -- C:\Users\Mato\AppData\Local\GDIPFONTCACHEV1.DAT
[2010/04/23 20:04:16 | 000,002,635 | ---- | M] () -- C:\Users\Public\Desktop\Solid Converter PDF.lnk
[2010/04/23 20:02:56 | 000,001,014 | ---- | M] () -- C:\Users\Mato\Desktop\PDF2Word v3.0.lnk
[2010/04/23 06:55:50 | 000,001,954 | ---- | M] () -- C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
[2010/04/23 06:55:49 | 000,834,544 | ---- | M] () -- C:\Windows\SysNative\drivers\sptd.sys
[2010/04/22 07:20:47 | 003,029,624 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2010/04/21 20:52:29 | 000,000,560 | ---- | M] () -- C:\Users\Public\Desktop\Csm2002.lnk
[2010/04/21 16:06:21 | 000,000,977 | ---- | M] () -- C:\Users\Public\Desktop\MediaMonkey.lnk
[2010/04/15 08:01:04 | 003,879,288 | ---- | M] (Sysinternals - www.sysinternals.com) -- C:\Users\Mato\Desktop\procexp.exe
[2010/04/14 13:39:17 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_ccdcmbx64_01009.Wdf
[2010/04/14 10:48:46 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
[2010/04/14 10:20:11 | 000,002,014 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader 9.lnk
[2010/04/11 18:13:01 | 000,000,600 | ---- | M] () -- C:\Users\Mato\PUTTY.RND
[2010/04/11 16:25:12 | 000,001,545 | ---- | M] () -- C:\Users\Public\Desktop\WinFast PVR2.lnk
[2010/04/11 15:09:12 | 000,002,489 | ---- | M] () -- C:\Users\Public\Desktop\Norton Internet Security.lnk
========== Files Created - No Company Name ==========
[2010/05/09 18:37:32 | 000,001,057 | ---- | C] () -- C:\Users\Mato\AppData\Roaming\vso_ts_preview.xml
[2010/05/09 18:37:10 | 000,000,034 | ---- | C] () -- C:\Users\Mato\AppData\Roaming\pcouffin.log
[2010/05/09 18:35:45 | 000,099,384 | ---- | C] () -- C:\Users\Mato\AppData\Roaming\inst.exe
[2010/05/09 18:35:45 | 000,007,859 | ---- | C] () -- C:\Users\Mato\AppData\Roaming\pcouffin.cat
[2010/05/09 18:35:45 | 000,001,167 | ---- | C] () -- C:\Users\Mato\AppData\Roaming\pcouffin.inf
[2010/05/09 18:35:40 | 000,001,232 | ---- | C] () -- C:\Users\Mato\Desktop\ConvertXtoDVD 4.lnk
[2010/05/05 12:20:31 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_PCCSWpdDriver_01_07_00.Wdf
[2010/05/05 12:19:36 | 000,002,038 | ---- | C] () -- C:\Users\Public\Desktop\Nokia PC Suite.lnk
[2010/05/03 19:49:12 | 000,524,288 | -HS- | C] () -- C:\Users\Mato\NTUSER.DAT{3ca00100-56c0-11df-be92-001e8c13dd74}.TMContainer00000000000000000002.regtrans-ms
[2010/05/03 19:49:12 | 000,524,288 | -HS- | C] () -- C:\Users\Mato\NTUSER.DAT{3ca00100-56c0-11df-be92-001e8c13dd74}.TMContainer00000000000000000001.regtrans-ms
[2010/05/03 19:49:12 | 000,065,536 | -HS- | C] () -- C:\Users\Mato\NTUSER.DAT{3ca00100-56c0-11df-be92-001e8c13dd74}.TM.blf
[2010/05/03 19:33:27 | 000,001,105 | ---- | C] () -- C:\Users\Mato\Desktop\CleanMyPC - Registry Cleaner.lnk
[2010/04/28 19:17:47 | 000,072,268 | ---- | C] () -- C:\Users\Mato\Desktop\procexp.chm
[2010/04/23 20:04:19 | 000,024,576 | ---- | C] () -- C:\Windows\SysNative\solidlocalmon.dll
[2010/04/23 20:04:19 | 000,012,800 | ---- | C] () -- C:\Windows\SysNative\solidlocalui.dll
[2010/04/23 20:04:16 | 000,002,635 | ---- | C] () -- C:\Users\Public\Desktop\Solid Converter PDF.lnk
[2010/04/23 20:02:56 | 000,001,014 | ---- | C] () -- C:\Users\Mato\Desktop\PDF2Word v3.0.lnk
[2010/04/23 06:55:49 | 000,834,544 | ---- | C] () -- C:\Windows\SysNative\drivers\sptd.sys
[2010/04/23 06:55:49 | 000,001,954 | ---- | C] () -- C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
[2010/04/21 20:52:29 | 000,000,560 | ---- | C] () -- C:\Users\Public\Desktop\Csm2002.lnk
[2010/04/14 13:39:17 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_ccdcmbx64_01009.Wdf
[2010/04/14 10:53:50 | 000,002,130 | ---- | C] () -- C:\Users\Public\Desktop\Nokia Software Updater.lnk
[2010/04/14 10:48:46 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
[2010/04/13 17:06:18 | 000,567,808 | ---- | C] () -- C:\Windows\SysNative\ZSHP1018.EXE
[2010/04/13 17:06:17 | 000,128,380 | ---- | C] () -- C:\Windows\SysNative\hp1018.img
[2010/04/13 17:06:17 | 000,010,715 | ---- | C] () -- C:\Windows\SysNative\ZSHP1018.CHM
[2010/04/11 19:16:30 | 000,000,977 | ---- | C] () -- C:\Users\Public\Desktop\MediaMonkey.lnk
[2010/04/11 18:12:36 | 000,000,600 | ---- | C] () -- C:\Users\Mato\PUTTY.RND
[2010/04/11 16:25:25 | 000,000,350 | ---- | C] () -- C:\Windows\SysWow64\AF15IRTBL.bin
[2010/04/11 16:25:12 | 000,001,545 | ---- | C] () -- C:\Users\Public\Desktop\WinFast PVR2.lnk
[2010/01/27 11:07:56 | 000,000,761 | ---- | C] () -- C:\Windows\m3jp2k.ini
[2010/01/27 11:07:56 | 000,000,702 | ---- | C] () -- C:\Windows\mmtvmj.ini
[2010/01/27 11:07:55 | 000,000,714 | ---- | C] () -- C:\Windows\m3jpeg.ini
[2010/01/27 11:07:53 | 000,019,968 | ---- | C] () -- C:\Windows\SysWow64\cpuinf32.dll
[2010/01/27 11:07:52 | 000,152,064 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2010/01/27 11:07:50 | 000,761,856 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2009/07/14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009/07/13 23:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
========== Alternate Data Streams ==========
@Alternate Data Stream - 183 bytes -> C:\ProgramData\TEMP:ECF54A0E
< End of report >[/code]
Re: vytvara sam od seba zlozku pc poprosim kontrolu
a takten rootrepeal ti neotvorim mam 64 bit verziu takze mi napise chybu
- 1danab
- Nováček

- Příspěvky: 1412
- Registrován: 21 říj 2007 13:04
- Bydliště: České Budějovice
- Kontaktovat uživatele:
Re: vytvara sam od seba zlozku pc poprosim kontrolu
nechte zapojený Flash disk a otestujte na VIRUSTOTALu
C:\Program Files (x86)\1264581652\Mato1264581652L.exe
C:\Windows\SysWOW64\wbem\vds.mof
I:\Autoplay.exe
C:\Program Files (x86)\1264581652\Mato1264581652L.exe
C:\Windows\SysWOW64\wbem\vds.mof
I:\Autoplay.exe
Re: vytvara sam od seba zlozku pc poprosim kontrolu
File size: 436104 bytes
MD5 : 925344021104cf537b2a808e78bf297a
SHA1 : f414e34d854f3ad29cc69621881c829437ffa28b
SHA256: 1991c1fc1dce1cafda15e01cdedb589ec83d5f34a8769840c50000a1ca45140e
PEInfo: PE Structure information
( base data )
entrypointaddress.: 0xAF1E0
timedatestamp.....: 0x4951FA17 (Wed Dec 24 10:00:07 2008)
machinetype.......: 0x14C (Intel I386)
( 3 sections )
name viradd virsiz rawdsiz ntrpy md5
UPX0 0x1000 0x6F000 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
UPX1 0x70000 0x40000 0x3F400 7.93 1a7fb60d2616d60ab16c7ebb6f538f25
.rsrc 0xB0000 0x9000 0x8200 4.83 f4ab9425de4010f3fab6eef2db33ac5d
( 16 imports )
> advapi32.dll: AddAce
> comctl32.dll: ImageList_Remove
> comdlg32.dll: GetSaveFileNameW
> gdi32.dll: BitBlt
> kernel32.dll: LoadLibraryA, GetProcAddress, VirtualProtect, VirtualAlloc, VirtualFree, ExitProcess
> mpr.dll: WNetGetConnectionW
> ole32.dll: CoInitialize
> oleaut32.dll: -
> psapi.dll: EnumProcesses
> shell32.dll: DragFinish
> user32.dll: GetDC
> userenv.dll: LoadUserProfileW
> version.dll: VerQueryValueW
> wininet.dll: FtpOpenFileW
> winmm.dll: timeGetTime
> wsock32.dll: -
( 0 exports )
TrID : File type identification
UPX compressed Win32 Executable (43.8%)
Win32 EXE Yoda's Crypter (38.1%)
Win32 Executable Generic (12.2%)
Generic Win/DOS Executable (2.8%)
DOS Executable Generic (2.8%)
ThreatExpert: http://www.threatexpert.com/report.aspx ... 8e78bf297a
ssdeep: 6144:ZlZ/zUMu4pDSxsCMRzf7x3SfS1JAzXBtL76lzUnVEU0lt6+ZxoUUbMA+FV:ZHLUMuiv9RgfSjAzRtyAnV8LdvA+L
sigcheck: publisher....: n/a
copyright....: n/a
product......: n/a
description..: BOX _NTR2010s
original name: n/a
internal name: n/a
file version.: 1.5.0.0
comments.....: n/a
signers......: -
signing date.: -
verified.....: Unsigned
Prevx Info: http://info.prevx.com/aboutprogramtext. ... 00D8939782
PEiD : -
packers (Kaspersky): PE_Patch.UPX, UPX
packers (F-Prot): UPX
RDS : NSRL Reference Data Set
toto je ten program files cize trojan akysi
MD5 : 925344021104cf537b2a808e78bf297a
SHA1 : f414e34d854f3ad29cc69621881c829437ffa28b
SHA256: 1991c1fc1dce1cafda15e01cdedb589ec83d5f34a8769840c50000a1ca45140e
PEInfo: PE Structure information
( base data )
entrypointaddress.: 0xAF1E0
timedatestamp.....: 0x4951FA17 (Wed Dec 24 10:00:07 2008)
machinetype.......: 0x14C (Intel I386)
( 3 sections )
name viradd virsiz rawdsiz ntrpy md5
UPX0 0x1000 0x6F000 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
UPX1 0x70000 0x40000 0x3F400 7.93 1a7fb60d2616d60ab16c7ebb6f538f25
.rsrc 0xB0000 0x9000 0x8200 4.83 f4ab9425de4010f3fab6eef2db33ac5d
( 16 imports )
> advapi32.dll: AddAce
> comctl32.dll: ImageList_Remove
> comdlg32.dll: GetSaveFileNameW
> gdi32.dll: BitBlt
> kernel32.dll: LoadLibraryA, GetProcAddress, VirtualProtect, VirtualAlloc, VirtualFree, ExitProcess
> mpr.dll: WNetGetConnectionW
> ole32.dll: CoInitialize
> oleaut32.dll: -
> psapi.dll: EnumProcesses
> shell32.dll: DragFinish
> user32.dll: GetDC
> userenv.dll: LoadUserProfileW
> version.dll: VerQueryValueW
> wininet.dll: FtpOpenFileW
> winmm.dll: timeGetTime
> wsock32.dll: -
( 0 exports )
TrID : File type identification
UPX compressed Win32 Executable (43.8%)
Win32 EXE Yoda's Crypter (38.1%)
Win32 Executable Generic (12.2%)
Generic Win/DOS Executable (2.8%)
DOS Executable Generic (2.8%)
ThreatExpert: http://www.threatexpert.com/report.aspx ... 8e78bf297a
ssdeep: 6144:ZlZ/zUMu4pDSxsCMRzf7x3SfS1JAzXBtL76lzUnVEU0lt6+ZxoUUbMA+FV:ZHLUMuiv9RgfSjAzRtyAnV8LdvA+L
sigcheck: publisher....: n/a
copyright....: n/a
product......: n/a
description..: BOX _NTR2010s
original name: n/a
internal name: n/a
file version.: 1.5.0.0
comments.....: n/a
signers......: -
signing date.: -
verified.....: Unsigned
Prevx Info: http://info.prevx.com/aboutprogramtext. ... 00D8939782
PEiD : -
packers (Kaspersky): PE_Patch.UPX, UPX
packers (F-Prot): UPX
RDS : NSRL Reference Data Set
toto je ten program files cize trojan akysi
Re: vytvara sam od seba zlozku pc poprosim kontrolu
Antivirus Verze Poslední aktualizace Výsledek
a-squared 4.5.0.50 2010.02.24 -
AhnLab-V3 5.0.0.2 2010.02.24 -
AntiVir 8.2.1.172 2010.02.24 -
Antiy-AVL 2.0.3.7 2010.02.24 -
Authentium 5.2.0.5 2010.02.24 -
Avast 4.8.1351.0 2010.02.24 -
AVG 9.0.0.730 2010.02.24 -
BitDefender 7.2 2010.02.25 -
CAT-QuickHeal 10.00 2010.02.24 -
ClamAV 0.96.0.0-git 2010.02.25 -
Comodo 4053 2010.02.25 -
DrWeb 5.0.1.12222 2010.02.25 -
eSafe 7.0.17.0 2010.02.24 -
eTrust-Vet 35.2.7327 2010.02.24 -
F-Prot 4.5.1.85 2010.02.24 -
F-Secure 9.0.15370.0 2010.02.25 -
Fortinet 4.0.14.0 2010.02.21 -
GData 19 2010.02.25 -
Ikarus T3.1.1.80.0 2010.02.25 -
Jiangmin 13.0.900 2010.02.24 -
K7AntiVirus 7.10.981 2010.02.23 -
Kaspersky 7.0.0.125 2010.02.25 -
McAfee 5902 2010.02.24 -
McAfee+Artemis 5902 2010.02.24 -
McAfee-GW-Edition 6.8.5 2010.02.24 -
Microsoft 1.5502 2010.02.25 -
NOD32 4893 2010.02.24 -
Norman 6.04.08 2010.02.24 -
nProtect 2009.1.8.0 2010.02.24 -
Panda 10.0.2.2 2010.02.24 -
PCTools 7.0.3.5 2010.02.24 -
Prevx 3.0 2010.02.25 -
Rising 22.34.01.03 2010.02.11 -
Sophos 4.50.0 2010.02.25 -
Sunbelt 5698 2010.02.25 -
Symantec 20091.2.0.41 2010.02.25 -
TheHacker 6.5.1.6.209 2010.02.25 -
TrendMicro 9.120.0.1004 2010.02.24 -
VBA32 3.12.12.2 2010.02.24 -
ViRobot 2010.2.24.2200 2010.02.24 -
VirusBuster 5.0.27.0 2010.02.24 -
Rozšiřující informace
File size: 61056 bytes
MD5 : 4959ef1284f9eb9fed8da6963d74cac9
SHA1 : ac72210c49ac16507366063862a50531a6652172
SHA256: be5109a25b4bc4b01d6314be10a15d67b2d43590da4043da7a14073a414d11d5
TrID : File type identification
Text - UTF-16 (LE) encoded (64.4%)
MP3 audio (32.2%)
Lumena CEL bitmap (2.0%)
Corel Photo Paint (1.3%)
ssdeep: 768:/mwLyFW8RCaIyJzpFdp/u2ER4ERImfVlSewdXUR9sLthSnu:60yJzUQeVsl
sigcheck: publisher....: n/a
copyright....: n/a
product......: n/a
description..: n/a
original name: n/a
internal name: n/a
file version.: n/a
comments.....: n/a
signers......: -
signing date.: -
verified.....: Unsigned
PEiD : -
packers (F-Prot): Unicode
RDS : NSRL Reference Data Set
-
a otestovat flash sa mi neda neni tam ten subor
a-squared 4.5.0.50 2010.02.24 -
AhnLab-V3 5.0.0.2 2010.02.24 -
AntiVir 8.2.1.172 2010.02.24 -
Antiy-AVL 2.0.3.7 2010.02.24 -
Authentium 5.2.0.5 2010.02.24 -
Avast 4.8.1351.0 2010.02.24 -
AVG 9.0.0.730 2010.02.24 -
BitDefender 7.2 2010.02.25 -
CAT-QuickHeal 10.00 2010.02.24 -
ClamAV 0.96.0.0-git 2010.02.25 -
Comodo 4053 2010.02.25 -
DrWeb 5.0.1.12222 2010.02.25 -
eSafe 7.0.17.0 2010.02.24 -
eTrust-Vet 35.2.7327 2010.02.24 -
F-Prot 4.5.1.85 2010.02.24 -
F-Secure 9.0.15370.0 2010.02.25 -
Fortinet 4.0.14.0 2010.02.21 -
GData 19 2010.02.25 -
Ikarus T3.1.1.80.0 2010.02.25 -
Jiangmin 13.0.900 2010.02.24 -
K7AntiVirus 7.10.981 2010.02.23 -
Kaspersky 7.0.0.125 2010.02.25 -
McAfee 5902 2010.02.24 -
McAfee+Artemis 5902 2010.02.24 -
McAfee-GW-Edition 6.8.5 2010.02.24 -
Microsoft 1.5502 2010.02.25 -
NOD32 4893 2010.02.24 -
Norman 6.04.08 2010.02.24 -
nProtect 2009.1.8.0 2010.02.24 -
Panda 10.0.2.2 2010.02.24 -
PCTools 7.0.3.5 2010.02.24 -
Prevx 3.0 2010.02.25 -
Rising 22.34.01.03 2010.02.11 -
Sophos 4.50.0 2010.02.25 -
Sunbelt 5698 2010.02.25 -
Symantec 20091.2.0.41 2010.02.25 -
TheHacker 6.5.1.6.209 2010.02.25 -
TrendMicro 9.120.0.1004 2010.02.24 -
VBA32 3.12.12.2 2010.02.24 -
ViRobot 2010.2.24.2200 2010.02.24 -
VirusBuster 5.0.27.0 2010.02.24 -
Rozšiřující informace
File size: 61056 bytes
MD5 : 4959ef1284f9eb9fed8da6963d74cac9
SHA1 : ac72210c49ac16507366063862a50531a6652172
SHA256: be5109a25b4bc4b01d6314be10a15d67b2d43590da4043da7a14073a414d11d5
TrID : File type identification
Text - UTF-16 (LE) encoded (64.4%)
MP3 audio (32.2%)
Lumena CEL bitmap (2.0%)
Corel Photo Paint (1.3%)
ssdeep: 768:/mwLyFW8RCaIyJzpFdp/u2ER4ERImfVlSewdXUR9sLthSnu:60yJzUQeVsl
sigcheck: publisher....: n/a
copyright....: n/a
product......: n/a
description..: n/a
original name: n/a
internal name: n/a
file version.: n/a
comments.....: n/a
signers......: -
signing date.: -
verified.....: Unsigned
PEiD : -
packers (F-Prot): Unicode
RDS : NSRL Reference Data Set
-
a otestovat flash sa mi neda neni tam ten subor
- 1danab
- Nováček

- Příspěvky: 1412
- Registrován: 21 říj 2007 13:04
- Bydliště: České Budějovice
- Kontaktovat uživatele:
Re: vytvara sam od seba zlozku pc poprosim kontrolu
výsledky nejsou kompletní, potřebuju je vidět kompletní
stačí, když mi sem zkopírujete jednotlivé odkazy výsledků
stačí, když mi sem zkopírujete jednotlivé odkazy výsledků
- 1danab
- Nováček

- Příspěvky: 1412
- Registrován: 21 říj 2007 13:04
- Bydliště: České Budějovice
- Kontaktovat uživatele:
Re: vytvara sam od seba zlozku pc poprosim kontrolu
tak tenhle je čistý 
ještě potřebuju ty dva...zkuste to ještě
ještě potřebuju ty dva...zkuste to ještě
Re: vytvara sam od seba zlozku pc poprosim kontrolu
ten jeden ten autoplay neda spravit a momentalne ma nechce ani pustit na virustoal ani cez jeden browser tak som stastny cakam ci sa umudir



Přispějete na provoz fóra?