
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Explorer.exe a Iexplorer.exe stále padají
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Explorer.exe a Iexplorer.exe stále padají
Prosím o kontrolu logu. Zkusil jsem vše co umím,abych našel problém,ale nějak se nedaří zbavit potíží.
Nejhlavněší problémy se projevují,když chci např.otevřít nějaký soubor,nebo přesunout soubor,tak nejčastěji se stává,že vyskočí okno s hláškou že explorer.exe musel být pro potíže z nějakého důvodu ukončen.Pak se vše zavře,zmizí ikony na ploše,včetně hlavní lišty a start. Po pár vteřinách opět vše naběhne a jede dál. Dále dělá potíže IE8,po kliknutí na odkaz se nic neděje,až po několikerém kliknutí najednou pracuje. Občas celý IE8 spadne.
Nevím co s tím,navíc jsem měl podobné potíže už dříve na jiné instalaci win. Teď jsem použil čistou instalaci XP home SP3,ale potíže jsou stejné nejspíš to bude dělat nějaký soft,který používám,ale bohužel nevím který. Zkoušel jsem už všechny možné softy na malware,adware a jinou havět. Každý něco málo našel,ale problém se tím nevyřešil. Už nevím co víc s tím dělat,zde mé znalosti končí,takže za případnou pomoc velice děkuji.
Logfile of random's system information tool 1.08 (written by random/random)
Run by KOCUS at 2010-09-28 22:37:42
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 24 GB (24%) free of 100 GB
Total RAM: 3327 MB (76% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:37:46, on 28.9.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
C:\Program Files\Spyware Doctor\BDT\BDTUpdateService.exe
C:\WINDOWS\RTHDCPL.EXE
C:\PROGRA~1\CACHEM~1\CachemanXP.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\system32\crypserv.exe
C:\Program Files\DU Meter\DUMeterSvc.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\WINDOWS\vsnp2uvc.exe
C:\Program Files\Acronis\TrueImageHome\TimounterMonitor.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\WinTV\TVServer\HauppaugeTVServer.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\system32\qttask.exe
C:\Program Files\DU Meter\DUMeter.exe
C:\Documents and Settings\All Users\Data aplikací\LangSoft\OETRN.EXE
C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
C:\Program Files\WinTV\WinTV7\WinTVTray.exe
C:\Program Files\CyberLink\Shared files\RichVideo.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Acronis\Fomatik\TrueImageTryStartService.exe
C:\Program Files\CyberLink\TV Enhance\Kernel\TV\TVECapSvc.exe
C:\Program Files\CyberLink\TV Enhance\Kernel\TV\TVESched.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\explorer.exe
C:\Documents and Settings\KOCUS\Plocha\RSIT.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\trend micro\KOCUS.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Browser Defender BHO - {2A0F3D1B-0909-4FF4-B272-609CCE6054E7} - C:\Program Files\Spyware Doctor\BDT\PCTBrowserDefender.dll
O2 - BHO: WebTransBHO Class - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: RoboForm - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: Ukazatel S-Rank - {EA837F48-5AD1-443E-AE34-FFE03CBF3099} - C:\Program Files\Seznam.cz\core.2.dll
O3 - Toolbar: WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O3 - Toolbar: PC Tools Browser Guard - {472734EA-242A-422B-ADF8-83D1E48CC825} - C:\Program Files\Spyware Doctor\BDT\PCTBrowserDefender.dll
O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [snp2uvc] C:\WINDOWS\vsnp2uvc.exe
O4 - HKLM\..\Run: [Camera Assistant Software] "C:\Program Files\Camera Assistant Software for AOC\traybar.exe" /start
O4 - HKLM\..\Run: [AcronisTimounterMonitor] C:\Program Files\Acronis\TrueImageHome\TimounterMonitor.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [amd_dc_opt] C:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\WINDOWS\system32\qttask.exe" -atboottime
O4 - HKCU\..\Run: [DU Meter] C:\Program Files\DU Meter\DUMeter.exe
O4 - HKCU\..\Run: [OEXPRESS] C:\Documents and Settings\All Users\Data aplikací\LangSoft\OETRN.EXE
O4 - HKCU\..\Run: [Seznam Postak] "C:\Program Files\Seznam.cz\postak.exe" -s
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" -automount
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: WinTV Recording Status..lnk = C:\Program Files\WinTV\WinTV7\WinTVTray.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MI1933~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Přizpůsobit Menu - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
O8 - Extra context menu item: RF Nástrojová lišta - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O8 - Extra context menu item: Uložit formuláře - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O8 - Extra context menu item: Vyplnit formulář - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MI1933~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MI1933~1\Office12\ONBttnIE.dll
O9 - Extra button: Vyplnit formulář - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra 'Tools' menuitem: Vyplnit formulář - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra button: Uložit - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra 'Tools' menuitem: Uložit formuláře - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: ICQ7.1 - {71BFC818-0CED-42D6-9C87-5142918957EE} - C:\Program Files\ICQ7.1\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.1 - {71BFC818-0CED-42D6-9C87-5142918957EE} - C:\Program Files\ICQ7.1\ICQ.exe
O9 - Extra button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra 'Tools' menuitem: RF Nástrojová lišta - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O9 - Extra button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupda ... 7565407312
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microso ... 7565454500
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
O23 - Service: Browser Defender Update Service - Unknown owner - C:\Program Files\Spyware Doctor\BDT\BDTUpdateService.exe
O23 - Service: CachemanXP (CachemanXPService) - Outertech - C:\PROGRA~1\CACHEM~1\CachemanXP.exe
O23 - Service: Crypkey License - CrypKey (Canada) Ltd. - C:\WINDOWS\SYSTEM32\crypserv.exe
O23 - Service: DU Meter Service (DUMeterSvc) - Hagel Technologies Ltd - C:\Program Files\DU Meter\DUMeterSvc.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: EWA net DB Core - Unknown owner - C:\Program Files\EWA net\database\TransBase EWA\tbmux32.exe (file missing)
O23 - Service: EWA net DB EPC - Unknown owner - C:\Program Files\EWA net\database\TransBase EPC\tbmux32.exe (file missing)
O23 - Service: EWA net DB WIS - Unknown owner - C:\Program Files\EWA net\database\TransBase WIS\tbmux32.exe (file missing)
O23 - Service: EWA net Server - Unknown owner - C:\Program Files\EWA net\server\bin\tomcat.exe (file missing)
O23 - Service: HauppaugeTVServer - Hauppauge Computer Works - C:\Program Files\WinTV\TVServer\HauppaugeTVServer.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Inkjet Printer/Scanner Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - StarWind Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: Acronis Try And Decide Service (TryAndDecideService) - Unknown owner - C:\Program Files\Common Files\Acronis\Fomatik\TrueImageTryStartService.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software - C:\WINDOWS\System32\TuneUpDefragService.exe
O23 - Service: TuneUp Program Statistics Service (TuneUp.ProgramStatisticsSvc) - TuneUp Software - C:\WINDOWS\System32\TUProgSt.exe
O23 - Service: TVEnhance Background Capture Service (TBCS) (TVECapSvc) - Unknown owner - C:\Program Files\CyberLink\TV Enhance\Kernel\TV\TVECapSvc.exe
O23 - Service: TVEnhance Task Scheduler (TTS)) (TVESched) - Unknown owner - C:\Program Files\CyberLink\TV Enhance\Kernel\TV\TVESched.exe
--
End of file - 16412 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\1-Click Maintenance.job
C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{05F65F5A-2317-42EB-85B5-6BE0932AC2A8}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-06-19 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A0F3D1B-0909-4FF4-B272-609CCE6054E7}]
PC Tools Browser Guard BHO - C:\Program Files\Spyware Doctor\BDT\PCTBrowserDefender.dll [2009-10-08 395216]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll [2010-06-26 798771]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll [2009-01-14 92504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{724d43a9-0d85-11d4-9908-00400523e39a}]
C:\Program Files\Siber Systems\AI RoboForm\roboform.dll [2010-06-26 5956424]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08 804136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-05-26 1385864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-08-04 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-08-04 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA837F48-5AD1-443E-AE34-FFE03CBF3099}]
Ukazatel S-Rank - C:\Program Files\Seznam.cz\core.2.dll [2010-03-01 1107608]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll [2010-06-26 798771]
{472734EA-242A-422B-ADF8-83D1E48CC825} - PC Tools Browser Guard - C:\Program Files\Spyware Doctor\BDT\PCTBrowserDefender.dll [2009-10-08 395216]
{724d43a0-0d85-11d4-9908-00400523e39a} - &RoboForm - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll [2010-06-26 5956424]
{855F3B16-6D32-4FE6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2010-01-03 1019128]
{D4027C7F-154A-4066-A1AD-4243D8127440} - Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-05-26 1385864]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2008-12-09 18063872]
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2010-04-03 110696]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2010-04-03 13670504]
"CanonMyPrinter"=C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2007-09-13 1603152]
"snp2uvc"=C:\WINDOWS\vsnp2uvc.exe [2008-09-25 576040]
"Camera Assistant Software"=C:\Program Files\Camera Assistant Software for AOC\traybar.exe [2008-09-25 610376]
"AcronisTimounterMonitor"=C:\Program Files\Acronis\TrueImageHome\TimounterMonitor.exe [2007-10-23 906648]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2009-04-09 2029640]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-06-20 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-06-09 976832]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-05-14 248552]
"amd_dc_opt"=C:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe [2008-07-22 77824]
"QuickTime Task"=C:\WINDOWS\system32\qttask.exe [2010-06-26 98304]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DU Meter"=C:\Program Files\DU Meter\DUMeter.exe [2007-11-13 2585360]
"OEXPRESS"=C:\Documents and Settings\All Users\Data aplikací\LangSoft\OETRN.EXE [2010-06-26 26624]
"Seznam Postak"=C:\Program Files\Seznam.cz\postak.exe [2010-03-01 451224]
"AlcoholAutomount"=C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2009-11-15 33120]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
WinTV Recording Status..lnk - C:\Program Files\WinTV\WinTV7\WinTVTray.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"authentication packages"=msv1_0
relog_ap
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\CyberLink\TV Enhance\TVEnhance.exe"="C:\Program Files\CyberLink\TV Enhance\TVEnhance.exe:*:Enabled:CyberLink TVEnhance"
"C:\Program Files\CyberLink\TV Enhance\TVEService.exe"="C:\Program Files\CyberLink\TV Enhance\TVEService.exe:*:Enabled:CyberLink TVEnhance Resident Program"
"C:\Program Files\CyberLink\PowerDVD9\PowerDVD9.exe"="C:\Program Files\CyberLink\PowerDVD9\PowerDVD9.exe:*:Enabled:CyberLink PowerDVD 9.0"
"C:\Program Files\ICQ7.1\ICQ.exe"="C:\Program Files\ICQ7.1\ICQ.exe:*:Enabled:ICQ7.1"
"C:\Program Files\ICQ7.1\aolload.exe"="C:\Program Files\ICQ7.1\aolload.exe:*:Enabled:aolload.exe"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\Nokia\Nokia Software Updater\nsu_ui_client.exe"="C:\Program Files\Nokia\Nokia Software Updater\nsu_ui_client.exe:*:Enabled:Nokia Software Updater"
"C:\Program Files\Common Files\Nokia\Service Layer\A\nsl_host_process.exe"="C:\Program Files\Common Files\Nokia\Service Layer\A\nsl_host_process.exe:*:Enabled:Nokia Service Layer Host Process "
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\Steam\Steam.exe"="C:\Program Files\Steam\Steam.exe:*:Enabled:Steam"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
"C:\Program Files\CyberLink\TV Enhance\TVEnhance.exe"="C:\Program Files\CyberLink\TV Enhance\TVEnhance.exe:*:Enabled:CyberLink TVEnhance"
"C:\Program Files\CyberLink\TV Enhance\TVEService.exe"="C:\Program Files\CyberLink\TV Enhance\TVEService.exe:*:Enabled:CyberLink TVEnhance Resident Program"
"C:\Program Files\CyberLink\PowerDVD9\PowerDVD9.exe"="C:\Program Files\CyberLink\PowerDVD9\PowerDVD9.exe:*:Enabled:CyberLink PowerDVD 9.0"
"C:\Program Files\ICQ7.1\ICQ.exe"="C:\Program Files\ICQ7.1\ICQ.exe:*:Enabled:ICQ7.1"
"C:\Program Files\ICQ7.1\aolload.exe"="C:\Program Files\ICQ7.1\aolload.exe:*:Enabled:aolload.exe"
======List of files/folders created in the last 1 months======
2010-09-28 20:38:48 ----D---- C:\rsit
2010-09-28 20:38:48 ----D---- C:\Program Files\trend micro
2010-09-24 03:50:37 ----D---- C:\Documents and Settings\KOCUS\Data aplikací\Touchstone
2010-09-24 03:20:52 ----D---- C:\Program Files\Touchstone
2010-09-20 04:26:36 ----D---- C:\Program Files\ReflexiveArcade
2010-09-20 01:48:43 ----D---- C:\Program Files\Steam
2010-09-20 01:41:46 ----D---- C:\Program Files\Alcohol Soft
2010-09-20 01:06:12 ----A---- C:\WINDOWS\IE4 Error Log.txt
2010-09-18 01:21:37 ----SHD---- C:\RECYCLER
2010-09-18 01:10:09 ----A---- C:\ComboFix.txt
2010-09-18 01:03:39 ----A---- C:\Boot.bak
2010-09-18 01:03:33 ----RASHD---- C:\cmdcons
2010-09-18 01:02:18 ----A---- C:\WINDOWS\PEV.exe
2010-09-18 01:02:18 ----A---- C:\WINDOWS\NIRCMD.exe
2010-09-18 01:02:18 ----A---- C:\WINDOWS\MBR.exe
2010-09-18 01:02:17 ----A---- C:\WINDOWS\zip.exe
2010-09-18 01:02:17 ----A---- C:\WINDOWS\SWXCACLS.exe
2010-09-18 01:02:17 ----A---- C:\WINDOWS\SWSC.exe
2010-09-18 01:02:17 ----A---- C:\WINDOWS\SWREG.exe
2010-09-18 01:02:17 ----A---- C:\WINDOWS\sed.exe
2010-09-18 01:02:17 ----A---- C:\WINDOWS\grep.exe
2010-09-18 01:02:05 ----D---- C:\WINDOWS\ERDNT
2010-09-18 01:00:41 ----D---- C:\ComboFix
2010-09-18 01:00:34 ----D---- C:\Qoobox
2010-09-15 15:12:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2259922$
2010-09-15 15:12:42 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2010-09-15 15:12:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$
2010-09-15 15:12:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2121546$
2010-09-15 15:12:12 ----HDC---- C:\WINDOWS\$NtUninstallKB982802$
2010-09-15 15:11:46 ----HDC---- C:\WINDOWS\$NtUninstallKB981322$
2010-09-15 15:07:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2141007$
======List of files/folders modified in the last 1 months======
2010-09-28 22:37:43 ----D---- C:\WINDOWS\Temp
2010-09-28 22:37:19 ----D---- C:\WINDOWS\Prefetch
2010-09-28 21:47:29 ----D---- C:\Program Files\WinRAR
2010-09-28 21:47:29 ----D---- C:\Program Files\Vivid WorkshopData ATI
2010-09-28 21:47:29 ----D---- C:\Program Files\Total Video Converter
2010-09-28 21:04:25 ----D---- C:\WINDOWS\system32\CatRoot2
2010-09-28 21:00:47 ----D---- C:\Documents and Settings\KOCUS\Data aplikací\uTorrent
2010-09-28 20:38:48 ----RD---- C:\Program Files
2010-09-28 19:48:00 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-09-27 18:39:57 ----D---- C:\Program Files\uTorrent
2010-09-24 00:39:19 ----SHD---- C:\WINDOWS\Installer
2010-09-23 00:32:05 ----D---- C:\Documents and Settings\KOCUS\Data aplikací\vlc
2010-09-22 23:16:43 ----D---- C:\WINDOWS
2010-09-20 01:48:30 ----D---- C:\WINDOWS\WinSxS
2010-09-20 01:48:30 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-09-20 01:48:27 ----HD---- C:\WINDOWS\inf
2010-09-20 01:48:27 ----D---- C:\WINDOWS\system32\DirectX
2010-09-20 01:48:15 ----RSD---- C:\WINDOWS\assembly
2010-09-20 01:44:33 ----D---- C:\WINDOWS\system32
2010-09-20 01:43:01 ----D---- C:\WINDOWS\system32\drivers\etc
2010-09-18 01:14:48 ----D---- C:\WINDOWS\Help
2010-09-18 01:09:42 ----SD---- C:\WINDOWS\Tasks
2010-09-18 01:08:43 ----A---- C:\WINDOWS\system.ini
2010-09-18 01:06:00 ----D---- C:\WINDOWS\system32\drivers
2010-09-18 01:06:00 ----D---- C:\WINDOWS\AppPatch
2010-09-18 01:05:58 ----D---- C:\Program Files\Common Files
2010-09-18 01:03:39 ----RASH---- C:\boot.ini
2010-09-18 00:34:35 ----D---- C:\Documents and Settings\KOCUS\Data aplikací\Skype
2010-09-18 00:01:26 ----D---- C:\Documents and Settings\KOCUS\Data aplikací\skypePM
2010-09-17 23:34:48 ----D---- C:\Program Files\Spyware Doctor
2010-09-17 20:59:44 ----D---- C:\WINDOWS\Debug
2010-09-17 20:59:26 ----D---- C:\Program Files\CCleaner
2010-09-15 15:12:46 ----HD---- C:\WINDOWS\$hf_mig$
2010-09-15 15:12:43 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-09-15 15:12:39 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2010-09-15 15:07:33 ----A---- C:\WINDOWS\system32\MRT.exe
2010-08-31 22:39:16 ----SD---- C:\Documents and Settings\KOCUS\Data aplikací\Microsoft
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 nvata;nvata; C:\WINDOWS\system32\DRIVERS\nvata.sys [2006-10-18 105472]
R0 PCTCore;PCTools KDS; C:\WINDOWS\system32\drivers\PCTCore.sys [2009-09-23 207280]
R0 snapman;Acronis Snapshots Manager; C:\WINDOWS\system32\DRIVERS\snapman.sys [2010-06-26 129248]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2010-09-20 697328]
R0 tdrpman;Acronis Try&Decide and Restore Points filter; C:\WINDOWS\system32\DRIVERS\tdrpman.sys [2010-06-26 368736]
R0 timounter;Acronis True Image Backup Archive Explorer; C:\WINDOWS\system32\DRIVERS\timntr.sys [2010-06-26 441760]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2009-07-13 91904]
R1 AmdPPM;Ovladač procesoru HwPState AMD; C:\WINDOWS\system32\DRIVERS\AmdPPM.sys [2007-04-16 33792]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2009-04-09 107256]
R1 epfwtdi;epfwtdi; C:\WINDOWS\system32\DRIVERS\epfwtdi.sys [2009-04-09 55768]
R1 HCW88AUD;Hauppauge WinTV 88x Audio Capture; C:\WINDOWS\system32\drivers\hcw88aud.sys [2009-02-25 13440]
R1 NetworkX;NetworkX; C:\WINDOWS\system32\ckldrv.sys [2008-08-22 21638]
R2 {49DE1C67-83F8-4102-99E0-C16DCC7EEC796};{49DE1C67-83F8-4102-99E0-C16DCC7EEC796}; \??\C:\Program Files\CyberLink\PlayMovie\000.fcl []
R2 {B154377D-700F-42cc-9474-23858FBDF4BD};Power Control [2010/06/26 21:00:47]; \??\C:\Program Files\CyberLink\PowerDVD9\000.fcl []
R2 Aspi32;Aspi32; C:\WINDOWS\system32\drivers\Aspi32.sys [2002-07-17 16877]
R2 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2009-04-09 113960]
R2 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2009-04-09 133000]
R2 tifsfilter;Acronis True Image FS Filter; C:\WINDOWS\system32\DRIVERS\tifsfilt.sys [2010-06-26 44384]
R3 AmdLLD;AMD Low Level Device Driver; C:\WINDOWS\system32\DRIVERS\AmdLLD.sys [2007-06-29 34304]
R3 Epfwndis;Eset Personal Firewall; C:\WINDOWS\system32\DRIVERS\Epfwndis.sys [2009-04-09 33096]
R3 HCW88BDA;Hauppauge WinTV 88x DVB Tuner/Demod; C:\WINDOWS\system32\drivers\hcw88bda.sys [2009-02-25 214656]
R3 HCW88TSE;Hauppauge WinTV 88x MPEG/TS Capture; C:\WINDOWS\system32\drivers\hcw88tse.sys [2009-02-25 320512]
R3 HCW88TUNE;Hauppauge WinTV 88x Tuner; C:\WINDOWS\system32\drivers\hcw88tun.sys [2009-02-25 75904]
R3 hcw88vid;Hauppauge WinTV 88x Video; C:\WINDOWS\system32\drivers\hcw88vid.sys [2009-02-25 396032]
R3 HCW88XBAR;Hauppauge WinTV 88x Crossbar; C:\WINDOWS\system32\drivers\HCW88BAR.sys [2009-02-25 17792]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-14 144384]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2008-12-11 4959232]
R3 MBAMProtector;MBAMProtector; \??\C:\WINDOWS\system32\drivers\mbam.sys []
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2010-04-03 10232128]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2006-11-27 58368]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2006-11-27 19968]
R3 pcouffin;VSO Software pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [2010-06-26 47360]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\WINDOWS\system32\DRIVERS\snp2uvc.sys [2008-09-25 3480488]
R3 usbaudio;Ovladač zvukové karty USB (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-14 60032]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
R3 UVCFTR;UVCFTR; C:\WINDOWS\System32\Drivers\UVCFTR_S.SYS [2008-05-23 22016]
R3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S3 a6256e3j;a6256e3j; C:\WINDOWS\system32\drivers\a6256e3j.sys []
S3 catchme;catchme; \??\C:\DOCUME~1\KOCUS\LOCALS~1\Temp\catchme.sys []
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
S3 MPE;Filtr MPE BDA; C:\WINDOWS\system32\DRIVERS\MPE.sys [2008-04-14 15232]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 nmwcd;Nokia USB Phone Parent; C:\WINDOWS\system32\drivers\ccdcmb.sys [2010-02-26 18176]
S3 nmwcdc;Nokia USB Generic; C:\WINDOWS\system32\drivers\ccdcmbo.sys [2010-02-26 22528]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent; C:\WINDOWS\system32\drivers\nmwcdnsu.sys [2010-02-26 137344]
S3 nmwcdnsuc;Nokia USB Flashing Generic; C:\WINDOWS\system32\drivers\nmwcdnsuc.sys [2010-02-26 8320]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 RTL8023xp;Realtek 10/100/1000 PCI NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys [2006-12-14 85120]
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2008-04-14 20992]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 SONYPVU1;Sony USB Filter Driver (SONYPVU1); C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS [2001-08-17 7552]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 upperdev;upperdev; C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys [2010-02-26 8192]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
S3 usbser;USB Modem Driver; C:\WINDOWS\system32\drivers\usbser.sys [2008-04-14 26112]
S3 UsbserFilt;UsbserFilt; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys [2010-02-26 8192]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2008-04-14 121984]
S3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2009-07-14 444136]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2009-07-13 132224]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AcrSch2Svc;Acronis Scheduler2 Service; C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe [2007-10-23 427288]
R2 Browser Defender Update Service;Browser Defender Update Service; C:\Program Files\Spyware Doctor\BDT\BDTUpdateService.exe [2009-10-08 112592]
R2 CachemanXPService;CachemanXP; C:\PROGRA~1\CACHEM~1\CachemanXP.exe [2009-01-11 355840]
R2 Crypkey License;Crypkey License; C:\WINDOWS\system32\crypserv.exe [2008-05-08 122880]
R2 DUMeterSvc;DU Meter Service; C:\Program Files\DU Meter\DUMeterSvc.exe [2007-10-15 1382672]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2009-04-09 731840]
R2 HauppaugeTVServer;HauppaugeTVServer; C:\Program Files\WinTV\TVServer\HauppaugeTVServer.exe [2009-06-05 434176]
R2 IJPLMSVC;Inkjet Printer/Scanner Extended Survey Program; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [2008-01-22 103808]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-07-17 153376]
R2 MBAMService;MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [2010-04-29 304464]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-09-23 935208]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2010-04-03 154216]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared files\RichVideo.exe [2008-10-23 241734]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-01-14 226656]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]
R2 TryAndDecideService;Acronis Try And Decide Service; C:\Program Files\Common Files\Acronis\Fomatik\TrueImageTryStartService.exe [2007-10-23 495832]
R2 TVECapSvc;TVEnhance Background Capture Service (TBCS); C:\Program Files\CyberLink\TV Enhance\Kernel\TV\TVECapSvc.exe [2008-10-23 364635]
R2 TVESched;TVEnhance Task Scheduler (TTS)); C:\Program Files\CyberLink\TV Enhance\Kernel\TV\TVESched.exe [2008-10-23 172121]
R2 UxTuneUp;TuneUp Theme Extension; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 EWA net DB Core;EWA net DB Core; C:\Program Files\EWA net\database\TransBase EWA\tbmux32.exe []
S2 EWA net DB EPC;EWA net DB EPC; C:\Program Files\EWA net\database\TransBase EPC\tbmux32.exe []
S2 EWA net DB WIS;EWA net DB WIS; C:\Program Files\EWA net\database\TransBase WIS\tbmux32.exe []
S2 EWA net Server;EWA net Server; C:\Program Files\EWA net\server\bin\tomcat.exe []
S2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2010-01-03 246520]
S2 TuneUp.ProgramStatisticsSvc;TuneUp Program Statistics Service; C:\WINDOWS\System32\TUProgSt.exe [2010-06-27 603904]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [2009-04-09 20680]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 sdAuxService;PC Tools Auxiliary Service; C:\Program Files\Spyware Doctor\pctsAuxs.exe [2009-09-23 358600]
S3 sdCoreService;PC Tools Security Service; C:\Program Files\Spyware Doctor\pctsSvc.exe [2009-09-23 1141200]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2010-06-14 615936]
S3 TuneUp.Defrag;TuneUp Drive Defrag Service; C:\WINDOWS\System32\TuneUpDefragService.exe [2010-06-27 360192]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
Nejhlavněší problémy se projevují,když chci např.otevřít nějaký soubor,nebo přesunout soubor,tak nejčastěji se stává,že vyskočí okno s hláškou že explorer.exe musel být pro potíže z nějakého důvodu ukončen.Pak se vše zavře,zmizí ikony na ploše,včetně hlavní lišty a start. Po pár vteřinách opět vše naběhne a jede dál. Dále dělá potíže IE8,po kliknutí na odkaz se nic neděje,až po několikerém kliknutí najednou pracuje. Občas celý IE8 spadne.
Nevím co s tím,navíc jsem měl podobné potíže už dříve na jiné instalaci win. Teď jsem použil čistou instalaci XP home SP3,ale potíže jsou stejné nejspíš to bude dělat nějaký soft,který používám,ale bohužel nevím který. Zkoušel jsem už všechny možné softy na malware,adware a jinou havět. Každý něco málo našel,ale problém se tím nevyřešil. Už nevím co víc s tím dělat,zde mé znalosti končí,takže za případnou pomoc velice děkuji.
Logfile of random's system information tool 1.08 (written by random/random)
Run by KOCUS at 2010-09-28 22:37:42
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 24 GB (24%) free of 100 GB
Total RAM: 3327 MB (76% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:37:46, on 28.9.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
C:\Program Files\Spyware Doctor\BDT\BDTUpdateService.exe
C:\WINDOWS\RTHDCPL.EXE
C:\PROGRA~1\CACHEM~1\CachemanXP.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\system32\crypserv.exe
C:\Program Files\DU Meter\DUMeterSvc.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\WINDOWS\vsnp2uvc.exe
C:\Program Files\Acronis\TrueImageHome\TimounterMonitor.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\WinTV\TVServer\HauppaugeTVServer.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\system32\qttask.exe
C:\Program Files\DU Meter\DUMeter.exe
C:\Documents and Settings\All Users\Data aplikací\LangSoft\OETRN.EXE
C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
C:\Program Files\WinTV\WinTV7\WinTVTray.exe
C:\Program Files\CyberLink\Shared files\RichVideo.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Acronis\Fomatik\TrueImageTryStartService.exe
C:\Program Files\CyberLink\TV Enhance\Kernel\TV\TVECapSvc.exe
C:\Program Files\CyberLink\TV Enhance\Kernel\TV\TVESched.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\explorer.exe
C:\Documents and Settings\KOCUS\Plocha\RSIT.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\trend micro\KOCUS.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Browser Defender BHO - {2A0F3D1B-0909-4FF4-B272-609CCE6054E7} - C:\Program Files\Spyware Doctor\BDT\PCTBrowserDefender.dll
O2 - BHO: WebTransBHO Class - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: RoboForm - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: Ukazatel S-Rank - {EA837F48-5AD1-443E-AE34-FFE03CBF3099} - C:\Program Files\Seznam.cz\core.2.dll
O3 - Toolbar: WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O3 - Toolbar: PC Tools Browser Guard - {472734EA-242A-422B-ADF8-83D1E48CC825} - C:\Program Files\Spyware Doctor\BDT\PCTBrowserDefender.dll
O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [snp2uvc] C:\WINDOWS\vsnp2uvc.exe
O4 - HKLM\..\Run: [Camera Assistant Software] "C:\Program Files\Camera Assistant Software for AOC\traybar.exe" /start
O4 - HKLM\..\Run: [AcronisTimounterMonitor] C:\Program Files\Acronis\TrueImageHome\TimounterMonitor.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [amd_dc_opt] C:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\WINDOWS\system32\qttask.exe" -atboottime
O4 - HKCU\..\Run: [DU Meter] C:\Program Files\DU Meter\DUMeter.exe
O4 - HKCU\..\Run: [OEXPRESS] C:\Documents and Settings\All Users\Data aplikací\LangSoft\OETRN.EXE
O4 - HKCU\..\Run: [Seznam Postak] "C:\Program Files\Seznam.cz\postak.exe" -s
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" -automount
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: WinTV Recording Status..lnk = C:\Program Files\WinTV\WinTV7\WinTVTray.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MI1933~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Přizpůsobit Menu - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
O8 - Extra context menu item: RF Nástrojová lišta - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O8 - Extra context menu item: Uložit formuláře - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O8 - Extra context menu item: Vyplnit formulář - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MI1933~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MI1933~1\Office12\ONBttnIE.dll
O9 - Extra button: Vyplnit formulář - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra 'Tools' menuitem: Vyplnit formulář - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra button: Uložit - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra 'Tools' menuitem: Uložit formuláře - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: ICQ7.1 - {71BFC818-0CED-42D6-9C87-5142918957EE} - C:\Program Files\ICQ7.1\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.1 - {71BFC818-0CED-42D6-9C87-5142918957EE} - C:\Program Files\ICQ7.1\ICQ.exe
O9 - Extra button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra 'Tools' menuitem: RF Nástrojová lišta - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O9 - Extra button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupda ... 7565407312
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microso ... 7565454500
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
O23 - Service: Browser Defender Update Service - Unknown owner - C:\Program Files\Spyware Doctor\BDT\BDTUpdateService.exe
O23 - Service: CachemanXP (CachemanXPService) - Outertech - C:\PROGRA~1\CACHEM~1\CachemanXP.exe
O23 - Service: Crypkey License - CrypKey (Canada) Ltd. - C:\WINDOWS\SYSTEM32\crypserv.exe
O23 - Service: DU Meter Service (DUMeterSvc) - Hagel Technologies Ltd - C:\Program Files\DU Meter\DUMeterSvc.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: EWA net DB Core - Unknown owner - C:\Program Files\EWA net\database\TransBase EWA\tbmux32.exe (file missing)
O23 - Service: EWA net DB EPC - Unknown owner - C:\Program Files\EWA net\database\TransBase EPC\tbmux32.exe (file missing)
O23 - Service: EWA net DB WIS - Unknown owner - C:\Program Files\EWA net\database\TransBase WIS\tbmux32.exe (file missing)
O23 - Service: EWA net Server - Unknown owner - C:\Program Files\EWA net\server\bin\tomcat.exe (file missing)
O23 - Service: HauppaugeTVServer - Hauppauge Computer Works - C:\Program Files\WinTV\TVServer\HauppaugeTVServer.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Inkjet Printer/Scanner Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - StarWind Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: Acronis Try And Decide Service (TryAndDecideService) - Unknown owner - C:\Program Files\Common Files\Acronis\Fomatik\TrueImageTryStartService.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software - C:\WINDOWS\System32\TuneUpDefragService.exe
O23 - Service: TuneUp Program Statistics Service (TuneUp.ProgramStatisticsSvc) - TuneUp Software - C:\WINDOWS\System32\TUProgSt.exe
O23 - Service: TVEnhance Background Capture Service (TBCS) (TVECapSvc) - Unknown owner - C:\Program Files\CyberLink\TV Enhance\Kernel\TV\TVECapSvc.exe
O23 - Service: TVEnhance Task Scheduler (TTS)) (TVESched) - Unknown owner - C:\Program Files\CyberLink\TV Enhance\Kernel\TV\TVESched.exe
--
End of file - 16412 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\1-Click Maintenance.job
C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{05F65F5A-2317-42EB-85B5-6BE0932AC2A8}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-06-19 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A0F3D1B-0909-4FF4-B272-609CCE6054E7}]
PC Tools Browser Guard BHO - C:\Program Files\Spyware Doctor\BDT\PCTBrowserDefender.dll [2009-10-08 395216]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll [2010-06-26 798771]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll [2009-01-14 92504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{724d43a9-0d85-11d4-9908-00400523e39a}]
C:\Program Files\Siber Systems\AI RoboForm\roboform.dll [2010-06-26 5956424]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08 804136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-05-26 1385864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-08-04 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-08-04 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA837F48-5AD1-443E-AE34-FFE03CBF3099}]
Ukazatel S-Rank - C:\Program Files\Seznam.cz\core.2.dll [2010-03-01 1107608]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll [2010-06-26 798771]
{472734EA-242A-422B-ADF8-83D1E48CC825} - PC Tools Browser Guard - C:\Program Files\Spyware Doctor\BDT\PCTBrowserDefender.dll [2009-10-08 395216]
{724d43a0-0d85-11d4-9908-00400523e39a} - &RoboForm - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll [2010-06-26 5956424]
{855F3B16-6D32-4FE6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2010-01-03 1019128]
{D4027C7F-154A-4066-A1AD-4243D8127440} - Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-05-26 1385864]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2008-12-09 18063872]
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2010-04-03 110696]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2010-04-03 13670504]
"CanonMyPrinter"=C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2007-09-13 1603152]
"snp2uvc"=C:\WINDOWS\vsnp2uvc.exe [2008-09-25 576040]
"Camera Assistant Software"=C:\Program Files\Camera Assistant Software for AOC\traybar.exe [2008-09-25 610376]
"AcronisTimounterMonitor"=C:\Program Files\Acronis\TrueImageHome\TimounterMonitor.exe [2007-10-23 906648]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2009-04-09 2029640]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-06-20 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-06-09 976832]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-05-14 248552]
"amd_dc_opt"=C:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe [2008-07-22 77824]
"QuickTime Task"=C:\WINDOWS\system32\qttask.exe [2010-06-26 98304]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DU Meter"=C:\Program Files\DU Meter\DUMeter.exe [2007-11-13 2585360]
"OEXPRESS"=C:\Documents and Settings\All Users\Data aplikací\LangSoft\OETRN.EXE [2010-06-26 26624]
"Seznam Postak"=C:\Program Files\Seznam.cz\postak.exe [2010-03-01 451224]
"AlcoholAutomount"=C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2009-11-15 33120]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
WinTV Recording Status..lnk - C:\Program Files\WinTV\WinTV7\WinTVTray.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"authentication packages"=msv1_0
relog_ap
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\CyberLink\TV Enhance\TVEnhance.exe"="C:\Program Files\CyberLink\TV Enhance\TVEnhance.exe:*:Enabled:CyberLink TVEnhance"
"C:\Program Files\CyberLink\TV Enhance\TVEService.exe"="C:\Program Files\CyberLink\TV Enhance\TVEService.exe:*:Enabled:CyberLink TVEnhance Resident Program"
"C:\Program Files\CyberLink\PowerDVD9\PowerDVD9.exe"="C:\Program Files\CyberLink\PowerDVD9\PowerDVD9.exe:*:Enabled:CyberLink PowerDVD 9.0"
"C:\Program Files\ICQ7.1\ICQ.exe"="C:\Program Files\ICQ7.1\ICQ.exe:*:Enabled:ICQ7.1"
"C:\Program Files\ICQ7.1\aolload.exe"="C:\Program Files\ICQ7.1\aolload.exe:*:Enabled:aolload.exe"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\Nokia\Nokia Software Updater\nsu_ui_client.exe"="C:\Program Files\Nokia\Nokia Software Updater\nsu_ui_client.exe:*:Enabled:Nokia Software Updater"
"C:\Program Files\Common Files\Nokia\Service Layer\A\nsl_host_process.exe"="C:\Program Files\Common Files\Nokia\Service Layer\A\nsl_host_process.exe:*:Enabled:Nokia Service Layer Host Process "
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\Steam\Steam.exe"="C:\Program Files\Steam\Steam.exe:*:Enabled:Steam"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
"C:\Program Files\CyberLink\TV Enhance\TVEnhance.exe"="C:\Program Files\CyberLink\TV Enhance\TVEnhance.exe:*:Enabled:CyberLink TVEnhance"
"C:\Program Files\CyberLink\TV Enhance\TVEService.exe"="C:\Program Files\CyberLink\TV Enhance\TVEService.exe:*:Enabled:CyberLink TVEnhance Resident Program"
"C:\Program Files\CyberLink\PowerDVD9\PowerDVD9.exe"="C:\Program Files\CyberLink\PowerDVD9\PowerDVD9.exe:*:Enabled:CyberLink PowerDVD 9.0"
"C:\Program Files\ICQ7.1\ICQ.exe"="C:\Program Files\ICQ7.1\ICQ.exe:*:Enabled:ICQ7.1"
"C:\Program Files\ICQ7.1\aolload.exe"="C:\Program Files\ICQ7.1\aolload.exe:*:Enabled:aolload.exe"
======List of files/folders created in the last 1 months======
2010-09-28 20:38:48 ----D---- C:\rsit
2010-09-28 20:38:48 ----D---- C:\Program Files\trend micro
2010-09-24 03:50:37 ----D---- C:\Documents and Settings\KOCUS\Data aplikací\Touchstone
2010-09-24 03:20:52 ----D---- C:\Program Files\Touchstone
2010-09-20 04:26:36 ----D---- C:\Program Files\ReflexiveArcade
2010-09-20 01:48:43 ----D---- C:\Program Files\Steam
2010-09-20 01:41:46 ----D---- C:\Program Files\Alcohol Soft
2010-09-20 01:06:12 ----A---- C:\WINDOWS\IE4 Error Log.txt
2010-09-18 01:21:37 ----SHD---- C:\RECYCLER
2010-09-18 01:10:09 ----A---- C:\ComboFix.txt
2010-09-18 01:03:39 ----A---- C:\Boot.bak
2010-09-18 01:03:33 ----RASHD---- C:\cmdcons
2010-09-18 01:02:18 ----A---- C:\WINDOWS\PEV.exe
2010-09-18 01:02:18 ----A---- C:\WINDOWS\NIRCMD.exe
2010-09-18 01:02:18 ----A---- C:\WINDOWS\MBR.exe
2010-09-18 01:02:17 ----A---- C:\WINDOWS\zip.exe
2010-09-18 01:02:17 ----A---- C:\WINDOWS\SWXCACLS.exe
2010-09-18 01:02:17 ----A---- C:\WINDOWS\SWSC.exe
2010-09-18 01:02:17 ----A---- C:\WINDOWS\SWREG.exe
2010-09-18 01:02:17 ----A---- C:\WINDOWS\sed.exe
2010-09-18 01:02:17 ----A---- C:\WINDOWS\grep.exe
2010-09-18 01:02:05 ----D---- C:\WINDOWS\ERDNT
2010-09-18 01:00:41 ----D---- C:\ComboFix
2010-09-18 01:00:34 ----D---- C:\Qoobox
2010-09-15 15:12:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2259922$
2010-09-15 15:12:42 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2010-09-15 15:12:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$
2010-09-15 15:12:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2121546$
2010-09-15 15:12:12 ----HDC---- C:\WINDOWS\$NtUninstallKB982802$
2010-09-15 15:11:46 ----HDC---- C:\WINDOWS\$NtUninstallKB981322$
2010-09-15 15:07:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2141007$
======List of files/folders modified in the last 1 months======
2010-09-28 22:37:43 ----D---- C:\WINDOWS\Temp
2010-09-28 22:37:19 ----D---- C:\WINDOWS\Prefetch
2010-09-28 21:47:29 ----D---- C:\Program Files\WinRAR
2010-09-28 21:47:29 ----D---- C:\Program Files\Vivid WorkshopData ATI
2010-09-28 21:47:29 ----D---- C:\Program Files\Total Video Converter
2010-09-28 21:04:25 ----D---- C:\WINDOWS\system32\CatRoot2
2010-09-28 21:00:47 ----D---- C:\Documents and Settings\KOCUS\Data aplikací\uTorrent
2010-09-28 20:38:48 ----RD---- C:\Program Files
2010-09-28 19:48:00 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-09-27 18:39:57 ----D---- C:\Program Files\uTorrent
2010-09-24 00:39:19 ----SHD---- C:\WINDOWS\Installer
2010-09-23 00:32:05 ----D---- C:\Documents and Settings\KOCUS\Data aplikací\vlc
2010-09-22 23:16:43 ----D---- C:\WINDOWS
2010-09-20 01:48:30 ----D---- C:\WINDOWS\WinSxS
2010-09-20 01:48:30 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-09-20 01:48:27 ----HD---- C:\WINDOWS\inf
2010-09-20 01:48:27 ----D---- C:\WINDOWS\system32\DirectX
2010-09-20 01:48:15 ----RSD---- C:\WINDOWS\assembly
2010-09-20 01:44:33 ----D---- C:\WINDOWS\system32
2010-09-20 01:43:01 ----D---- C:\WINDOWS\system32\drivers\etc
2010-09-18 01:14:48 ----D---- C:\WINDOWS\Help
2010-09-18 01:09:42 ----SD---- C:\WINDOWS\Tasks
2010-09-18 01:08:43 ----A---- C:\WINDOWS\system.ini
2010-09-18 01:06:00 ----D---- C:\WINDOWS\system32\drivers
2010-09-18 01:06:00 ----D---- C:\WINDOWS\AppPatch
2010-09-18 01:05:58 ----D---- C:\Program Files\Common Files
2010-09-18 01:03:39 ----RASH---- C:\boot.ini
2010-09-18 00:34:35 ----D---- C:\Documents and Settings\KOCUS\Data aplikací\Skype
2010-09-18 00:01:26 ----D---- C:\Documents and Settings\KOCUS\Data aplikací\skypePM
2010-09-17 23:34:48 ----D---- C:\Program Files\Spyware Doctor
2010-09-17 20:59:44 ----D---- C:\WINDOWS\Debug
2010-09-17 20:59:26 ----D---- C:\Program Files\CCleaner
2010-09-15 15:12:46 ----HD---- C:\WINDOWS\$hf_mig$
2010-09-15 15:12:43 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-09-15 15:12:39 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2010-09-15 15:07:33 ----A---- C:\WINDOWS\system32\MRT.exe
2010-08-31 22:39:16 ----SD---- C:\Documents and Settings\KOCUS\Data aplikací\Microsoft
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 nvata;nvata; C:\WINDOWS\system32\DRIVERS\nvata.sys [2006-10-18 105472]
R0 PCTCore;PCTools KDS; C:\WINDOWS\system32\drivers\PCTCore.sys [2009-09-23 207280]
R0 snapman;Acronis Snapshots Manager; C:\WINDOWS\system32\DRIVERS\snapman.sys [2010-06-26 129248]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2010-09-20 697328]
R0 tdrpman;Acronis Try&Decide and Restore Points filter; C:\WINDOWS\system32\DRIVERS\tdrpman.sys [2010-06-26 368736]
R0 timounter;Acronis True Image Backup Archive Explorer; C:\WINDOWS\system32\DRIVERS\timntr.sys [2010-06-26 441760]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2009-07-13 91904]
R1 AmdPPM;Ovladač procesoru HwPState AMD; C:\WINDOWS\system32\DRIVERS\AmdPPM.sys [2007-04-16 33792]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2009-04-09 107256]
R1 epfwtdi;epfwtdi; C:\WINDOWS\system32\DRIVERS\epfwtdi.sys [2009-04-09 55768]
R1 HCW88AUD;Hauppauge WinTV 88x Audio Capture; C:\WINDOWS\system32\drivers\hcw88aud.sys [2009-02-25 13440]
R1 NetworkX;NetworkX; C:\WINDOWS\system32\ckldrv.sys [2008-08-22 21638]
R2 {49DE1C67-83F8-4102-99E0-C16DCC7EEC796};{49DE1C67-83F8-4102-99E0-C16DCC7EEC796}; \??\C:\Program Files\CyberLink\PlayMovie\000.fcl []
R2 {B154377D-700F-42cc-9474-23858FBDF4BD};Power Control [2010/06/26 21:00:47]; \??\C:\Program Files\CyberLink\PowerDVD9\000.fcl []
R2 Aspi32;Aspi32; C:\WINDOWS\system32\drivers\Aspi32.sys [2002-07-17 16877]
R2 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2009-04-09 113960]
R2 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2009-04-09 133000]
R2 tifsfilter;Acronis True Image FS Filter; C:\WINDOWS\system32\DRIVERS\tifsfilt.sys [2010-06-26 44384]
R3 AmdLLD;AMD Low Level Device Driver; C:\WINDOWS\system32\DRIVERS\AmdLLD.sys [2007-06-29 34304]
R3 Epfwndis;Eset Personal Firewall; C:\WINDOWS\system32\DRIVERS\Epfwndis.sys [2009-04-09 33096]
R3 HCW88BDA;Hauppauge WinTV 88x DVB Tuner/Demod; C:\WINDOWS\system32\drivers\hcw88bda.sys [2009-02-25 214656]
R3 HCW88TSE;Hauppauge WinTV 88x MPEG/TS Capture; C:\WINDOWS\system32\drivers\hcw88tse.sys [2009-02-25 320512]
R3 HCW88TUNE;Hauppauge WinTV 88x Tuner; C:\WINDOWS\system32\drivers\hcw88tun.sys [2009-02-25 75904]
R3 hcw88vid;Hauppauge WinTV 88x Video; C:\WINDOWS\system32\drivers\hcw88vid.sys [2009-02-25 396032]
R3 HCW88XBAR;Hauppauge WinTV 88x Crossbar; C:\WINDOWS\system32\drivers\HCW88BAR.sys [2009-02-25 17792]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-14 144384]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2008-12-11 4959232]
R3 MBAMProtector;MBAMProtector; \??\C:\WINDOWS\system32\drivers\mbam.sys []
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2010-04-03 10232128]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2006-11-27 58368]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2006-11-27 19968]
R3 pcouffin;VSO Software pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [2010-06-26 47360]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\WINDOWS\system32\DRIVERS\snp2uvc.sys [2008-09-25 3480488]
R3 usbaudio;Ovladač zvukové karty USB (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-14 60032]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
R3 UVCFTR;UVCFTR; C:\WINDOWS\System32\Drivers\UVCFTR_S.SYS [2008-05-23 22016]
R3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S3 a6256e3j;a6256e3j; C:\WINDOWS\system32\drivers\a6256e3j.sys []
S3 catchme;catchme; \??\C:\DOCUME~1\KOCUS\LOCALS~1\Temp\catchme.sys []
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
S3 MPE;Filtr MPE BDA; C:\WINDOWS\system32\DRIVERS\MPE.sys [2008-04-14 15232]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 nmwcd;Nokia USB Phone Parent; C:\WINDOWS\system32\drivers\ccdcmb.sys [2010-02-26 18176]
S3 nmwcdc;Nokia USB Generic; C:\WINDOWS\system32\drivers\ccdcmbo.sys [2010-02-26 22528]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent; C:\WINDOWS\system32\drivers\nmwcdnsu.sys [2010-02-26 137344]
S3 nmwcdnsuc;Nokia USB Flashing Generic; C:\WINDOWS\system32\drivers\nmwcdnsuc.sys [2010-02-26 8320]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 RTL8023xp;Realtek 10/100/1000 PCI NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys [2006-12-14 85120]
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2008-04-14 20992]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 SONYPVU1;Sony USB Filter Driver (SONYPVU1); C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS [2001-08-17 7552]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 upperdev;upperdev; C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys [2010-02-26 8192]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
S3 usbser;USB Modem Driver; C:\WINDOWS\system32\drivers\usbser.sys [2008-04-14 26112]
S3 UsbserFilt;UsbserFilt; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys [2010-02-26 8192]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2008-04-14 121984]
S3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2009-07-14 444136]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2009-07-13 132224]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AcrSch2Svc;Acronis Scheduler2 Service; C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe [2007-10-23 427288]
R2 Browser Defender Update Service;Browser Defender Update Service; C:\Program Files\Spyware Doctor\BDT\BDTUpdateService.exe [2009-10-08 112592]
R2 CachemanXPService;CachemanXP; C:\PROGRA~1\CACHEM~1\CachemanXP.exe [2009-01-11 355840]
R2 Crypkey License;Crypkey License; C:\WINDOWS\system32\crypserv.exe [2008-05-08 122880]
R2 DUMeterSvc;DU Meter Service; C:\Program Files\DU Meter\DUMeterSvc.exe [2007-10-15 1382672]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2009-04-09 731840]
R2 HauppaugeTVServer;HauppaugeTVServer; C:\Program Files\WinTV\TVServer\HauppaugeTVServer.exe [2009-06-05 434176]
R2 IJPLMSVC;Inkjet Printer/Scanner Extended Survey Program; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [2008-01-22 103808]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-07-17 153376]
R2 MBAMService;MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [2010-04-29 304464]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-09-23 935208]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2010-04-03 154216]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared files\RichVideo.exe [2008-10-23 241734]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-01-14 226656]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]
R2 TryAndDecideService;Acronis Try And Decide Service; C:\Program Files\Common Files\Acronis\Fomatik\TrueImageTryStartService.exe [2007-10-23 495832]
R2 TVECapSvc;TVEnhance Background Capture Service (TBCS); C:\Program Files\CyberLink\TV Enhance\Kernel\TV\TVECapSvc.exe [2008-10-23 364635]
R2 TVESched;TVEnhance Task Scheduler (TTS)); C:\Program Files\CyberLink\TV Enhance\Kernel\TV\TVESched.exe [2008-10-23 172121]
R2 UxTuneUp;TuneUp Theme Extension; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 EWA net DB Core;EWA net DB Core; C:\Program Files\EWA net\database\TransBase EWA\tbmux32.exe []
S2 EWA net DB EPC;EWA net DB EPC; C:\Program Files\EWA net\database\TransBase EPC\tbmux32.exe []
S2 EWA net DB WIS;EWA net DB WIS; C:\Program Files\EWA net\database\TransBase WIS\tbmux32.exe []
S2 EWA net Server;EWA net Server; C:\Program Files\EWA net\server\bin\tomcat.exe []
S2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2010-01-03 246520]
S2 TuneUp.ProgramStatisticsSvc;TuneUp Program Statistics Service; C:\WINDOWS\System32\TUProgSt.exe [2010-06-27 603904]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [2009-04-09 20680]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 sdAuxService;PC Tools Auxiliary Service; C:\Program Files\Spyware Doctor\pctsAuxs.exe [2009-09-23 358600]
S3 sdCoreService;PC Tools Security Service; C:\Program Files\Spyware Doctor\pctsSvc.exe [2009-09-23 1141200]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2010-06-14 615936]
S3 TuneUp.Defrag;TuneUp Drive Defrag Service; C:\WINDOWS\System32\TuneUpDefragService.exe [2010-06-27 360192]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 119426
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Explorer.exe a Iexplorer.exe stále padají
Dejte log z ComboFix.
Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe
pote spustte aplikaci pod uctem s administratorskym opravnenim
hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.
v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine aplikace ani nic jineho
behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)
upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode, pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k nezadoucim kolizim s rezidentem antispyware
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Explorer.exe a Iexplorer.exe stále padají
ComboFix 10-09-27.05 - KOCUS 28.09.2010 23:26:45.2.2 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1250.420.1029.18.3327.2851 [GMT 2:00]
Spuštěný z: c:\documents and settings\KOCUS\Plocha\ComboFix.exe
AV: ESET Smart Security 4.0 *On-access scanning disabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: ESET personal firewall *disabled* {E5E70D32-0101-4340-86A3-A7B0F1C8FFE0}
* Rezidentní štít AV je zapnutý
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-08-28 do 2010-09-28 )))))))))))))))))))))))))))))))
.
2010-09-28 18:38 . 2010-09-28 20:38 -------- d-----w- C:\rsit
2010-09-28 18:38 . 2010-09-28 20:37 -------- d-----w- c:\program files\trend micro
2010-09-24 01:20 . 2010-09-24 01:32 -------- d-----w- c:\program files\Touchstone
2010-09-20 02:26 . 2010-09-20 02:26 -------- d-----w- c:\program files\ReflexiveArcade
2010-09-19 23:48 . 2010-09-20 00:19 -------- d-----w- c:\program files\Steam
2010-09-19 23:41 . 2010-09-19 23:41 -------- d-----w- c:\program files\Alcohol Soft
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-09-28 19:47 . 2010-06-26 21:22 -------- d-----w- c:\program files\Total Video Converter
2010-09-28 19:47 . 2008-08-08 16:05 -------- d-----w- c:\program files\Vivid WorkshopData ATI
2010-09-27 16:39 . 2010-06-26 22:41 -------- d-----w- c:\program files\uTorrent
2010-09-19 23:39 . 2010-06-26 18:26 697328 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-09-17 21:34 . 2010-06-26 21:09 -------- d-----w- c:\program files\Spyware Doctor
2010-09-17 18:59 . 2010-06-26 21:58 -------- d-----w- c:\program files\CCleaner
2010-08-27 02:42 . 2010-08-27 02:42 -------- d-----w- c:\program files\DjVuZone
2010-08-26 20:30 . 2010-06-26 14:25 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-08-26 20:30 . 2010-06-26 14:25 -------- d-----w- c:\program files\NVIDIA Corporation
2010-08-26 20:29 . 2010-06-26 14:06 -------- d-----w- c:\program files\AMD
2010-08-26 16:59 . 2010-08-26 16:59 -------- d-----w- c:\program files\Desktop Icon Toy
2010-08-26 04:09 . 2010-08-26 04:09 -------- d-----w- c:\program files\Ask.com
2010-08-26 04:08 . 2010-08-26 04:08 -------- d-----w- c:\program files\FreeTime
2010-08-25 23:24 . 2010-06-26 22:26 -------- d-----w- c:\program files\Common Files\Java
2010-08-25 23:24 . 2010-06-26 22:26 -------- d-----w- c:\program files\Java
2010-08-20 15:02 . 2008-04-14 12:00 82576 ----a-w- c:\windows\system32\perfc005.dat
2010-08-20 15:02 . 2008-04-14 12:00 437888 ----a-w- c:\windows\system32\perfh005.dat
2010-08-17 13:17 . 2008-04-14 12:00 58880 ----a-w- c:\windows\system32\spoolsv.exe
2010-08-05 06:49 . 2010-08-05 06:49 -------- d-----w- c:\program files\Autodesk WHIP!
2010-08-05 06:24 . 2010-08-05 06:24 -------- d-----w- c:\program files\Common Files\Real
2010-08-05 06:24 . 2010-06-26 21:44 -------- d-----w- c:\program files\Common Files\Adobe
2010-08-05 05:28 . 2010-08-05 05:25 -------- d--h--w- c:\program files\Zero G Registry
2010-08-03 14:10 . 2010-06-26 22:27 -------- d-----w- c:\program files\The KMPlayer
2010-07-29 13:12 . 2010-07-20 10:42 397312 ----a-w- c:\windows\esi_kl01.dat
2010-07-22 15:46 . 2008-04-14 12:00 590848 ----a-w- c:\windows\system32\rpcrt4.dll
2010-07-22 06:19 . 2008-05-05 05:25 5632 ----a-w- c:\windows\system32\xpsp4res.dll
2010-07-17 03:00 . 2010-06-26 23:16 423656 ----a-w- c:\windows\system32\deployJava1.dll
2010-07-08 06:59 . 2010-07-08 06:59 664 ----a-w- c:\windows\system32\d3d9caps.dat
.
------- Sigcheck -------
[7] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
[7] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys
[-] 2008-06-20 . CD00787894008369F56153B91FC28847 . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys
[7] 2008-04-14 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys
.
((((((((((((((((((((((((((((( SnapShot@2010-09-17_23.08.43 )))))))))))))))))))))))))))))))))))))))))
.
+ 2007-11-07 00:19 . 2007-11-07 00:19 54272 c:\windows\WinSxS\x86_Microsoft.VC90.OpenMP_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_ecc42bd1\vcomp90.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 62976 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90rus.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 46080 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90kor.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 46592 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90jpn.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 64512 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90ita.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 39936 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90cht.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 38912 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90chs.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 66048 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90fra.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 65024 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90esp.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 65024 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90esn.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 56832 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90enu.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 66560 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90deu.dll
+ 2008-07-29 04:07 . 2008-07-29 04:07 59904 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_405b0943\mfcm90u.dll
+ 2008-07-29 04:07 . 2008-07-29 04:07 59904 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_405b0943\mfcm90.dll
+ 2010-09-28 21:24 . 2010-09-28 21:24 16384 c:\windows\Temp\Perflib_Perfdata_70c.dat
+ 2010-09-28 21:24 . 2010-09-28 21:24 16384 c:\windows\Temp\Perflib_Perfdata_38c.dat
+ 2010-09-19 23:48 . 2010-09-19 23:48 27648 c:\windows\Installer\{048298C9-A4D3-490B-9FF9-AB023A9238F3}\Icon048298C91.exe
+ 2010-09-19 23:48 . 2010-09-19 23:48 12800 c:\windows\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll
- 2008-09-03 22:38 . 2008-09-03 22:38 12800 c:\windows\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll
- 2008-09-03 22:38 . 2008-09-03 22:38 53248 c:\windows\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 53248 c:\windows\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 655872 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_6f74963e\msvcr90.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 572928 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_6f74963e\msvcp90.dll
+ 2008-07-29 01:54 . 2008-07-29 01:54 225280 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_6f74963e\msvcm90.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 161784 c:\windows\WinSxS\x86_Microsoft.VC90.ATL_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_d01483b2\atl90.dll
+ 2010-09-22 21:52 . 2010-09-22 21:52 232912 c:\windows\system32\Macromed\Flash\FlashUtil10k_ActiveX.exe
+ 2010-09-22 21:52 . 2010-09-22 21:52 311760 c:\windows\system32\Macromed\Flash\FlashUtil10k_ActiveX.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 228352 c:\windows\Installer\720f9.msi
+ 2010-09-23 22:39 . 2010-09-23 22:39 195584 c:\windows\Installer\535377d.msi
- 2008-09-03 22:37 . 2008-09-03 22:37 223232 c:\windows\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 223232 c:\windows\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.dll
- 2008-09-03 22:41 . 2008-09-03 22:41 178176 c:\windows\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectSound.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 178176 c:\windows\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectSound.dll
- 2008-09-03 22:40 . 2008-09-03 22:40 364544 c:\windows\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectPlay.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 364544 c:\windows\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectPlay.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 159232 c:\windows\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectInput.dll
- 2008-09-03 22:40 . 2008-09-03 22:40 159232 c:\windows\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectInput.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 145920 c:\windows\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectDraw.dll
- 2008-09-03 22:39 . 2008-09-03 22:39 145920 c:\windows\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectDraw.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2911.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-09-03 22:39 . 2008-09-03 22:39 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2911.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-09-03 22:37 . 2008-09-03 22:37 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2910.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2910.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-09-03 22:36 . 2008-09-03 22:36 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2909.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2909.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2908.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-09-03 22:36 . 2008-09-03 22:36 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2908.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 577024 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2907.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-09-03 22:36 . 2008-09-03 22:36 577024 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2907.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-09-03 22:35 . 2008-09-03 22:35 576000 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2906.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 576000 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2906.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 567296 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-09-03 22:35 . 2008-09-03 22:35 567296 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-09-03 22:34 . 2008-09-03 22:34 563712 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2904.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 563712 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2904.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-09-03 22:39 . 2008-09-03 22:39 473600 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3D.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 473600 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3D.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 3783672 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_405b0943\mfc90u.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 3768312 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_405b0943\mfc90.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 1095680 c:\windows\Installer\720fd.msi
+ 2010-09-19 23:48 . 2010-09-19 23:48 2846720 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-09-03 22:34 . 2008-09-03 22:34 2846720 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-09-03 22:33 . 2008-09-03 22:33 2676224 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 2676224 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
.
-- Snímek resetován k současnému datu --
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{00000000-6E41-4FD3-8538-502F5495E5FC}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2010-05-26 1385864]
[HKEY_CLASSES_ROOT\clsid\{00000000-6e41-4fd3-8538-502f5495e5fc}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
2010-05-26 13:23 1385864 ----a-w- c:\program files\Ask.com\GenericAskToolbar.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2010-05-26 1385864]
[HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2010-05-26 1385864]
[HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DU Meter"="c:\program files\DU Meter\DUMeter.exe" [2007-11-13 2585360]
"OEXPRESS"="c:\documents and settings\All Users\Data aplikací\LangSoft\OETRN.EXE" [2010-06-26 26624]
"Seznam Postak"="c:\program files\Seznam.cz\postak.exe" [2010-03-01 451224]
"AlcoholAutomount"="c:\program files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" [2009-11-15 33120]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"="RTHDCPL.EXE" [2008-12-09 18063872]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2010-04-03 110696]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2010-04-03 13670504]
"CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2007-09-13 1603152]
"snp2uvc"="c:\windows\vsnp2uvc.exe" [2008-09-25 576040]
"Camera Assistant Software"="c:\program files\Camera Assistant Software for AOC\traybar.exe" [2008-09-25 610376]
"AcronisTimounterMonitor"="c:\program files\Acronis\TrueImageHome\TimounterMonitor.exe" [2007-10-23 906648]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2009-04-09 2029640]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-06-20 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-06-09 976832]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-05-14 248552]
"amd_dc_opt"="c:\program files\AMD\Dual-Core Optimizer\amd_dc_opt.exe" [2008-07-22 77824]
"QuickTime Task"="c:\windows\system32\qttask.exe" [2010-06-26 98304]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
WinTV Recording Status..lnk - c:\program files\WinTV\WinTV7\WinTVTray.exe [2010-6-27 98304]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters\persistentroutes]
"195.137.182.212,255.255.255.255,192.168.1.100,1"=""
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
@="Service"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"ctfmon.exe"=c:\windows\system32\ctfmon.exe
"Google Update"="c:\documents and settings\KOCUS\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"PCMAgent"="c:\program files\CyberLink\PowerCinema\PCMAgent.exe"
"PlayMovie"="c:\program files\CyberLink\PlayMovie\PMVService.exe"
"QuickTime Task"="c:\windows\system32\qttask.exe" -atboottime
"TrueImageMonitor.exe"=c:\program files\Acronis\TrueImageHome\TrueImageMonitor.exe
"Acronis Scheduler2 Service"="c:\program files\Common Files\Acronis\Schedule2\schedhlp.exe"
"BDRegion"=c:\program files\Cyberlink\Shared files\brs.exe
"Malwarebytes' Anti-Malware"="c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
"CLMLServer"="c:\program files\CyberLink\PowerCinema\Kernel\CLML\CLMLSvc.exe"
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe"
"NokiaMServer"=c:\program files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup
"TVEService"="c:\program files\CyberLink\TV Enhance\TVEService.exe"
"PDVD9LanguageShortcut"="c:\program files\CyberLink\PowerDVD9\Language\Language.exe"
"RemoteControl9"="c:\program files\CyberLink\PowerDVD9\PDVD9Serv.exe"
"CanonSolutionMenu"=c:\program files\Canon\SolutionMenu\CNSLMAIN.exe /logon
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Opera\\opera.exe"=
"c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Program Files\\CyberLink\\TV Enhance\\TVEnhance.exe"=
"c:\\Program Files\\CyberLink\\TV Enhance\\TVEService.exe"=
"c:\\Program Files\\CyberLink\\PowerDVD9\\PowerDVD9.exe"=
"c:\\Program Files\\ICQ7.1\\ICQ.exe"=
"c:\\Program Files\\ICQ7.1\\aolload.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
"c:\\Program Files\\Nokia\\Nokia Software Updater\\nsu_ui_client.exe"=
"c:\\Program Files\\Common Files\\Nokia\\Service Layer\\A\\nsl_host_process.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\Steam\\Steam.exe"=
R0 PCTCore;PCTools KDS;c:\windows\system32\drivers\PCTCore.sys [26.6.2010 23:09 207280]
R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [9.4.2009 15:18 107256]
R1 HCW88AUD;Hauppauge WinTV 88x Audio Capture;c:\windows\system32\drivers\hcw88aud.sys [26.6.2010 3:59 13440]
R2 {49DE1C67-83F8-4102-99E0-C16DCC7EEC796};{49DE1C67-83F8-4102-99E0-C16DCC7EEC796};c:\program files\CyberLink\PlayMovie\000.fcl [26.6.2010 20:56 61424]
R2 {B154377D-700F-42cc-9474-23858FBDF4BD};Power Control [2010/06/26 21:00];c:\program files\CyberLink\PowerDVD9\000.fcl [28.2.2009 19:40 87536]
R2 Browser Defender Update Service;Browser Defender Update Service;c:\program files\Spyware Doctor\BDT\BDTUpdateService.exe [26.6.2010 23:09 112592]
R2 CachemanXPService;CachemanXP;c:\progra~1\CACHEM~1\CachemanXP.exe [26.6.2010 20:44 355840]
R2 DUMeterSvc;DU Meter Service;c:\program files\DU Meter\DUMeterSvc.exe [26.6.2010 21:46 1382672]
R2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [9.4.2009 15:19 731840]
R2 HauppaugeTVServer;HauppaugeTVServer;c:\program files\WinTV\TVServer\HauppaugeTVServer.exe [27.6.2010 1:41 434176]
R2 ICQ Service;ICQ Service;c:\program files\ICQ6Toolbar\ICQ Service.exe [27.6.2010 0:01 246520]
R2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [26.6.2010 22:11 304464]
R2 TVECapSvc;TVEnhance Background Capture Service (TBCS);c:\program files\CyberLink\TV Enhance\Kernel\TV\TVECapSvc.exe [26.6.2010 20:56 364635]
R2 TVESched;TVEnhance Task Scheduler (TTS));c:\program files\CyberLink\TV Enhance\Kernel\TV\TVESched.exe [26.6.2010 20:56 172121]
R3 HCW88BDA;Hauppauge WinTV 88x DVB Tuner/Demod;c:\windows\system32\drivers\hcw88bda.sys [26.6.2010 3:59 214656]
R3 HCW88TSE;Hauppauge WinTV 88x MPEG/TS Capture;c:\windows\system32\drivers\hcw88tse.sys [26.6.2010 3:59 320512]
R3 HCW88TUNE;Hauppauge WinTV 88x Tuner;c:\windows\system32\drivers\hcw88tun.sys [26.6.2010 3:59 75904]
R3 hcw88vid;Hauppauge WinTV 88x Video;c:\windows\system32\drivers\hcw88vid.sys [26.6.2010 3:59 396032]
R3 HCW88XBAR;Hauppauge WinTV 88x Crossbar;c:\windows\system32\drivers\hcw88bar.sys [26.6.2010 3:59 17792]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [26.6.2010 22:11 20952]
S2 EWA net DB Core;EWA net DB Core;c:\program files\EWA net\database\TransBase EWA\tbmux32.exe --> c:\program files\EWA net\database\TransBase EWA\tbmux32.exe [?]
S2 EWA net DB EPC;EWA net DB EPC;c:\program files\EWA net\database\TransBase EPC\tbmux32.exe --> c:\program files\EWA net\database\TransBase EPC\tbmux32.exe [?]
S2 EWA net DB WIS;EWA net DB WIS;c:\program files\EWA net\database\TransBase WIS\tbmux32.exe --> c:\program files\EWA net\database\TransBase WIS\tbmux32.exe [?]
S2 EWA net Server;EWA net Server;c:\program files\EWA net\server\bin\tomcat.exe --> c:\program files\EWA net\server\bin\tomcat.exe [?]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsu.sys [27.6.2010 1:06 137344]
S3 nmwcdnsuc;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsuc.sys [27.6.2010 1:06 8320]
S3 sdAuxService;PC Tools Auxiliary Service;c:\program files\Spyware Doctor\pctsAuxs.exe [26.6.2010 23:09 358600]
S4 sptd;sptd;c:\windows\system32\drivers\sptd.sys [26.6.2010 20:26 697328]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
Obsah adresáře 'Naplánované úlohy'
2010-09-28 c:\windows\Tasks\1-Click Maintenance.job
- c:\program files\TuneUp Utilities 2009\OneClickStarter.exe [2008-12-11 19:36]
2010-09-28 c:\windows\Tasks\Scheduled Update for Ask Toolbar.job
- c:\program files\Ask.com\UpdateTask.exe [2010-05-26 13:23]
2010-09-28 c:\windows\Tasks\User_Feed_Synchronization-{05F65F5A-2317-42EB-85B5-6BE0932AC2A8}.job
- c:\windows\system32\msfeedssync.exe [2009-03-08 02:31]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MI1933~1\Office12\EXCEL.EXE/3000
IE: Přizpůsobit Menu - file://c:\program files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
IE: RF Nástrojová lišta - file://c:\program files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
IE: Uložit formuláře - file://c:\program files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
IE: Vyplnit formulář - file://c:\program files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
IE: {{71BFC818-0CED-42D6-9C87-5142918957EE} - c:\program files\ICQ7.1\ICQ.exe
IE: {{7E6A20FB-153F-402c-A84B-1A64E1955D3D} - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748449} - {CC963627-B1DC-40E0-B52A-CF21EE748449} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748450} - {CC963627-B1DC-40E0-B52A-CF21EE748450} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748451} - {CC963627-B1DC-40E0-B52A-CF21EE748451} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748452} - {CC963627-B1DC-40E0-B52A-CF21EE748452} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
FF - ProfilePath - c:\documents and settings\KOCUS\Data aplikací\Mozilla\Firefox\Profiles\1aft3vcu.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - prefs.js: keyword.URL - hxxp://websearch.ask.com/redirect?client=ff&src=kw&tb=FF-DL&o=16596&locale=en_US&apn_uid=2A9764C9-3C59-4560-9C21-F89AE5212A73&apn_ptnrs=1A&apn_sauid=74B95F19-057E-4A9F-BB51-A4031BDBF15E&apn_dtid=YYYYYYYYCZ&q=
FF - prefs.js: network.proxy.type - 0
FF - component: c:\documents and settings\KOCUS\Data aplikací\Mozilla\Firefox\Profiles\1aft3vcu.default\extensions\{003D3EDC-99B9-4a34-9C20-60CB94F7E829}\components\nsWebFF15.dll
FF - component: c:\program files\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension\components\FirefoxExtension.dll
FF - component: c:\program files\Nokia\Nokia PC Suite 7\bkmrksync\components\BkMrkExt.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled", false);
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-09-28 23:30
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\DUMeterSvc]
"ImagePath"="c:\program files\DU Meter\DUMeterSvc.exe /startedbyscm:E1F6D4BE-40E33354-DUMeterService"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\{49DE1C67-83F8-4102-99E0-C16DCC7EEC796}]
"ImagePath"="\??\c:\program files\CyberLink\PlayMovie\000.fcl"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\{B154377D-700F-42cc-9474-23858FBDF4BD}]
"ImagePath"="\??\c:\program files\CyberLink\PowerDVD9\000.fcl"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\S-1-5-21-329068152-117609710-725345543-1004\Software\Microsoft\SystemCertificates\AddressBook*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10k_ActiveX.exe,-101"
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10k_ActiveX.exe"
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'lsass.exe'(1204)
c:\windows\system32\relog_ap.dll
.
Celkový čas: 2010-09-28 23:32:07
ComboFix-quarantined-files.txt 2010-09-28 21:32
ComboFix2.txt 2010-09-17 23:10
Před spuštěním: Volných bajtů: 25 021 005 824
Po spuštění: Volných bajtů: 25 137 770 496
- - End Of File - - 809E2E191AB48739836C861250B42310
Microsoft Windows XP Home Edition 5.1.2600.3.1250.420.1029.18.3327.2851 [GMT 2:00]
Spuštěný z: c:\documents and settings\KOCUS\Plocha\ComboFix.exe
AV: ESET Smart Security 4.0 *On-access scanning disabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: ESET personal firewall *disabled* {E5E70D32-0101-4340-86A3-A7B0F1C8FFE0}
* Rezidentní štít AV je zapnutý
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-08-28 do 2010-09-28 )))))))))))))))))))))))))))))))
.
2010-09-28 18:38 . 2010-09-28 20:38 -------- d-----w- C:\rsit
2010-09-28 18:38 . 2010-09-28 20:37 -------- d-----w- c:\program files\trend micro
2010-09-24 01:20 . 2010-09-24 01:32 -------- d-----w- c:\program files\Touchstone
2010-09-20 02:26 . 2010-09-20 02:26 -------- d-----w- c:\program files\ReflexiveArcade
2010-09-19 23:48 . 2010-09-20 00:19 -------- d-----w- c:\program files\Steam
2010-09-19 23:41 . 2010-09-19 23:41 -------- d-----w- c:\program files\Alcohol Soft
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-09-28 19:47 . 2010-06-26 21:22 -------- d-----w- c:\program files\Total Video Converter
2010-09-28 19:47 . 2008-08-08 16:05 -------- d-----w- c:\program files\Vivid WorkshopData ATI
2010-09-27 16:39 . 2010-06-26 22:41 -------- d-----w- c:\program files\uTorrent
2010-09-19 23:39 . 2010-06-26 18:26 697328 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-09-17 21:34 . 2010-06-26 21:09 -------- d-----w- c:\program files\Spyware Doctor
2010-09-17 18:59 . 2010-06-26 21:58 -------- d-----w- c:\program files\CCleaner
2010-08-27 02:42 . 2010-08-27 02:42 -------- d-----w- c:\program files\DjVuZone
2010-08-26 20:30 . 2010-06-26 14:25 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-08-26 20:30 . 2010-06-26 14:25 -------- d-----w- c:\program files\NVIDIA Corporation
2010-08-26 20:29 . 2010-06-26 14:06 -------- d-----w- c:\program files\AMD
2010-08-26 16:59 . 2010-08-26 16:59 -------- d-----w- c:\program files\Desktop Icon Toy
2010-08-26 04:09 . 2010-08-26 04:09 -------- d-----w- c:\program files\Ask.com
2010-08-26 04:08 . 2010-08-26 04:08 -------- d-----w- c:\program files\FreeTime
2010-08-25 23:24 . 2010-06-26 22:26 -------- d-----w- c:\program files\Common Files\Java
2010-08-25 23:24 . 2010-06-26 22:26 -------- d-----w- c:\program files\Java
2010-08-20 15:02 . 2008-04-14 12:00 82576 ----a-w- c:\windows\system32\perfc005.dat
2010-08-20 15:02 . 2008-04-14 12:00 437888 ----a-w- c:\windows\system32\perfh005.dat
2010-08-17 13:17 . 2008-04-14 12:00 58880 ----a-w- c:\windows\system32\spoolsv.exe
2010-08-05 06:49 . 2010-08-05 06:49 -------- d-----w- c:\program files\Autodesk WHIP!
2010-08-05 06:24 . 2010-08-05 06:24 -------- d-----w- c:\program files\Common Files\Real
2010-08-05 06:24 . 2010-06-26 21:44 -------- d-----w- c:\program files\Common Files\Adobe
2010-08-05 05:28 . 2010-08-05 05:25 -------- d--h--w- c:\program files\Zero G Registry
2010-08-03 14:10 . 2010-06-26 22:27 -------- d-----w- c:\program files\The KMPlayer
2010-07-29 13:12 . 2010-07-20 10:42 397312 ----a-w- c:\windows\esi_kl01.dat
2010-07-22 15:46 . 2008-04-14 12:00 590848 ----a-w- c:\windows\system32\rpcrt4.dll
2010-07-22 06:19 . 2008-05-05 05:25 5632 ----a-w- c:\windows\system32\xpsp4res.dll
2010-07-17 03:00 . 2010-06-26 23:16 423656 ----a-w- c:\windows\system32\deployJava1.dll
2010-07-08 06:59 . 2010-07-08 06:59 664 ----a-w- c:\windows\system32\d3d9caps.dat
.
------- Sigcheck -------
[7] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
[7] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys
[-] 2008-06-20 . CD00787894008369F56153B91FC28847 . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys
[7] 2008-04-14 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys
.
((((((((((((((((((((((((((((( SnapShot@2010-09-17_23.08.43 )))))))))))))))))))))))))))))))))))))))))
.
+ 2007-11-07 00:19 . 2007-11-07 00:19 54272 c:\windows\WinSxS\x86_Microsoft.VC90.OpenMP_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_ecc42bd1\vcomp90.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 62976 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90rus.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 46080 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90kor.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 46592 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90jpn.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 64512 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90ita.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 39936 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90cht.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 38912 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90chs.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 66048 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90fra.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 65024 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90esp.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 65024 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90esn.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 56832 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90enu.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 66560 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90deu.dll
+ 2008-07-29 04:07 . 2008-07-29 04:07 59904 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_405b0943\mfcm90u.dll
+ 2008-07-29 04:07 . 2008-07-29 04:07 59904 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_405b0943\mfcm90.dll
+ 2010-09-28 21:24 . 2010-09-28 21:24 16384 c:\windows\Temp\Perflib_Perfdata_70c.dat
+ 2010-09-28 21:24 . 2010-09-28 21:24 16384 c:\windows\Temp\Perflib_Perfdata_38c.dat
+ 2010-09-19 23:48 . 2010-09-19 23:48 27648 c:\windows\Installer\{048298C9-A4D3-490B-9FF9-AB023A9238F3}\Icon048298C91.exe
+ 2010-09-19 23:48 . 2010-09-19 23:48 12800 c:\windows\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll
- 2008-09-03 22:38 . 2008-09-03 22:38 12800 c:\windows\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll
- 2008-09-03 22:38 . 2008-09-03 22:38 53248 c:\windows\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 53248 c:\windows\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 655872 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_6f74963e\msvcr90.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 572928 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_6f74963e\msvcp90.dll
+ 2008-07-29 01:54 . 2008-07-29 01:54 225280 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_6f74963e\msvcm90.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 161784 c:\windows\WinSxS\x86_Microsoft.VC90.ATL_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_d01483b2\atl90.dll
+ 2010-09-22 21:52 . 2010-09-22 21:52 232912 c:\windows\system32\Macromed\Flash\FlashUtil10k_ActiveX.exe
+ 2010-09-22 21:52 . 2010-09-22 21:52 311760 c:\windows\system32\Macromed\Flash\FlashUtil10k_ActiveX.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 228352 c:\windows\Installer\720f9.msi
+ 2010-09-23 22:39 . 2010-09-23 22:39 195584 c:\windows\Installer\535377d.msi
- 2008-09-03 22:37 . 2008-09-03 22:37 223232 c:\windows\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 223232 c:\windows\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.dll
- 2008-09-03 22:41 . 2008-09-03 22:41 178176 c:\windows\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectSound.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 178176 c:\windows\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectSound.dll
- 2008-09-03 22:40 . 2008-09-03 22:40 364544 c:\windows\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectPlay.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 364544 c:\windows\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectPlay.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 159232 c:\windows\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectInput.dll
- 2008-09-03 22:40 . 2008-09-03 22:40 159232 c:\windows\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectInput.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 145920 c:\windows\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectDraw.dll
- 2008-09-03 22:39 . 2008-09-03 22:39 145920 c:\windows\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectDraw.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2911.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-09-03 22:39 . 2008-09-03 22:39 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2911.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-09-03 22:37 . 2008-09-03 22:37 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2910.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2910.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-09-03 22:36 . 2008-09-03 22:36 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2909.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2909.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2908.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-09-03 22:36 . 2008-09-03 22:36 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2908.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 577024 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2907.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-09-03 22:36 . 2008-09-03 22:36 577024 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2907.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-09-03 22:35 . 2008-09-03 22:35 576000 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2906.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 576000 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2906.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 567296 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-09-03 22:35 . 2008-09-03 22:35 567296 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-09-03 22:34 . 2008-09-03 22:34 563712 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2904.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 563712 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2904.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-09-03 22:39 . 2008-09-03 22:39 473600 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3D.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 473600 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3D.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 3783672 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_405b0943\mfc90u.dll
+ 2008-07-29 06:05 . 2008-07-29 06:05 3768312 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_405b0943\mfc90.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 1095680 c:\windows\Installer\720fd.msi
+ 2010-09-19 23:48 . 2010-09-19 23:48 2846720 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-09-03 22:34 . 2008-09-03 22:34 2846720 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2008-09-03 22:33 . 2008-09-03 22:33 2676224 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2010-09-19 23:48 . 2010-09-19 23:48 2676224 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
.
-- Snímek resetován k současnému datu --
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{00000000-6E41-4FD3-8538-502F5495E5FC}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2010-05-26 1385864]
[HKEY_CLASSES_ROOT\clsid\{00000000-6e41-4fd3-8538-502f5495e5fc}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
2010-05-26 13:23 1385864 ----a-w- c:\program files\Ask.com\GenericAskToolbar.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2010-05-26 1385864]
[HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2010-05-26 1385864]
[HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DU Meter"="c:\program files\DU Meter\DUMeter.exe" [2007-11-13 2585360]
"OEXPRESS"="c:\documents and settings\All Users\Data aplikací\LangSoft\OETRN.EXE" [2010-06-26 26624]
"Seznam Postak"="c:\program files\Seznam.cz\postak.exe" [2010-03-01 451224]
"AlcoholAutomount"="c:\program files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" [2009-11-15 33120]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"="RTHDCPL.EXE" [2008-12-09 18063872]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2010-04-03 110696]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2010-04-03 13670504]
"CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2007-09-13 1603152]
"snp2uvc"="c:\windows\vsnp2uvc.exe" [2008-09-25 576040]
"Camera Assistant Software"="c:\program files\Camera Assistant Software for AOC\traybar.exe" [2008-09-25 610376]
"AcronisTimounterMonitor"="c:\program files\Acronis\TrueImageHome\TimounterMonitor.exe" [2007-10-23 906648]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2009-04-09 2029640]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-06-20 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-06-09 976832]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-05-14 248552]
"amd_dc_opt"="c:\program files\AMD\Dual-Core Optimizer\amd_dc_opt.exe" [2008-07-22 77824]
"QuickTime Task"="c:\windows\system32\qttask.exe" [2010-06-26 98304]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
WinTV Recording Status..lnk - c:\program files\WinTV\WinTV7\WinTVTray.exe [2010-6-27 98304]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters\persistentroutes]
"195.137.182.212,255.255.255.255,192.168.1.100,1"=""
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
@="Service"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"ctfmon.exe"=c:\windows\system32\ctfmon.exe
"Google Update"="c:\documents and settings\KOCUS\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"PCMAgent"="c:\program files\CyberLink\PowerCinema\PCMAgent.exe"
"PlayMovie"="c:\program files\CyberLink\PlayMovie\PMVService.exe"
"QuickTime Task"="c:\windows\system32\qttask.exe" -atboottime
"TrueImageMonitor.exe"=c:\program files\Acronis\TrueImageHome\TrueImageMonitor.exe
"Acronis Scheduler2 Service"="c:\program files\Common Files\Acronis\Schedule2\schedhlp.exe"
"BDRegion"=c:\program files\Cyberlink\Shared files\brs.exe
"Malwarebytes' Anti-Malware"="c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
"CLMLServer"="c:\program files\CyberLink\PowerCinema\Kernel\CLML\CLMLSvc.exe"
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe"
"NokiaMServer"=c:\program files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup
"TVEService"="c:\program files\CyberLink\TV Enhance\TVEService.exe"
"PDVD9LanguageShortcut"="c:\program files\CyberLink\PowerDVD9\Language\Language.exe"
"RemoteControl9"="c:\program files\CyberLink\PowerDVD9\PDVD9Serv.exe"
"CanonSolutionMenu"=c:\program files\Canon\SolutionMenu\CNSLMAIN.exe /logon
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Opera\\opera.exe"=
"c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Program Files\\CyberLink\\TV Enhance\\TVEnhance.exe"=
"c:\\Program Files\\CyberLink\\TV Enhance\\TVEService.exe"=
"c:\\Program Files\\CyberLink\\PowerDVD9\\PowerDVD9.exe"=
"c:\\Program Files\\ICQ7.1\\ICQ.exe"=
"c:\\Program Files\\ICQ7.1\\aolload.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
"c:\\Program Files\\Nokia\\Nokia Software Updater\\nsu_ui_client.exe"=
"c:\\Program Files\\Common Files\\Nokia\\Service Layer\\A\\nsl_host_process.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\Steam\\Steam.exe"=
R0 PCTCore;PCTools KDS;c:\windows\system32\drivers\PCTCore.sys [26.6.2010 23:09 207280]
R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [9.4.2009 15:18 107256]
R1 HCW88AUD;Hauppauge WinTV 88x Audio Capture;c:\windows\system32\drivers\hcw88aud.sys [26.6.2010 3:59 13440]
R2 {49DE1C67-83F8-4102-99E0-C16DCC7EEC796};{49DE1C67-83F8-4102-99E0-C16DCC7EEC796};c:\program files\CyberLink\PlayMovie\000.fcl [26.6.2010 20:56 61424]
R2 {B154377D-700F-42cc-9474-23858FBDF4BD};Power Control [2010/06/26 21:00];c:\program files\CyberLink\PowerDVD9\000.fcl [28.2.2009 19:40 87536]
R2 Browser Defender Update Service;Browser Defender Update Service;c:\program files\Spyware Doctor\BDT\BDTUpdateService.exe [26.6.2010 23:09 112592]
R2 CachemanXPService;CachemanXP;c:\progra~1\CACHEM~1\CachemanXP.exe [26.6.2010 20:44 355840]
R2 DUMeterSvc;DU Meter Service;c:\program files\DU Meter\DUMeterSvc.exe [26.6.2010 21:46 1382672]
R2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [9.4.2009 15:19 731840]
R2 HauppaugeTVServer;HauppaugeTVServer;c:\program files\WinTV\TVServer\HauppaugeTVServer.exe [27.6.2010 1:41 434176]
R2 ICQ Service;ICQ Service;c:\program files\ICQ6Toolbar\ICQ Service.exe [27.6.2010 0:01 246520]
R2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [26.6.2010 22:11 304464]
R2 TVECapSvc;TVEnhance Background Capture Service (TBCS);c:\program files\CyberLink\TV Enhance\Kernel\TV\TVECapSvc.exe [26.6.2010 20:56 364635]
R2 TVESched;TVEnhance Task Scheduler (TTS));c:\program files\CyberLink\TV Enhance\Kernel\TV\TVESched.exe [26.6.2010 20:56 172121]
R3 HCW88BDA;Hauppauge WinTV 88x DVB Tuner/Demod;c:\windows\system32\drivers\hcw88bda.sys [26.6.2010 3:59 214656]
R3 HCW88TSE;Hauppauge WinTV 88x MPEG/TS Capture;c:\windows\system32\drivers\hcw88tse.sys [26.6.2010 3:59 320512]
R3 HCW88TUNE;Hauppauge WinTV 88x Tuner;c:\windows\system32\drivers\hcw88tun.sys [26.6.2010 3:59 75904]
R3 hcw88vid;Hauppauge WinTV 88x Video;c:\windows\system32\drivers\hcw88vid.sys [26.6.2010 3:59 396032]
R3 HCW88XBAR;Hauppauge WinTV 88x Crossbar;c:\windows\system32\drivers\hcw88bar.sys [26.6.2010 3:59 17792]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [26.6.2010 22:11 20952]
S2 EWA net DB Core;EWA net DB Core;c:\program files\EWA net\database\TransBase EWA\tbmux32.exe --> c:\program files\EWA net\database\TransBase EWA\tbmux32.exe [?]
S2 EWA net DB EPC;EWA net DB EPC;c:\program files\EWA net\database\TransBase EPC\tbmux32.exe --> c:\program files\EWA net\database\TransBase EPC\tbmux32.exe [?]
S2 EWA net DB WIS;EWA net DB WIS;c:\program files\EWA net\database\TransBase WIS\tbmux32.exe --> c:\program files\EWA net\database\TransBase WIS\tbmux32.exe [?]
S2 EWA net Server;EWA net Server;c:\program files\EWA net\server\bin\tomcat.exe --> c:\program files\EWA net\server\bin\tomcat.exe [?]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsu.sys [27.6.2010 1:06 137344]
S3 nmwcdnsuc;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsuc.sys [27.6.2010 1:06 8320]
S3 sdAuxService;PC Tools Auxiliary Service;c:\program files\Spyware Doctor\pctsAuxs.exe [26.6.2010 23:09 358600]
S4 sptd;sptd;c:\windows\system32\drivers\sptd.sys [26.6.2010 20:26 697328]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
Obsah adresáře 'Naplánované úlohy'
2010-09-28 c:\windows\Tasks\1-Click Maintenance.job
- c:\program files\TuneUp Utilities 2009\OneClickStarter.exe [2008-12-11 19:36]
2010-09-28 c:\windows\Tasks\Scheduled Update for Ask Toolbar.job
- c:\program files\Ask.com\UpdateTask.exe [2010-05-26 13:23]
2010-09-28 c:\windows\Tasks\User_Feed_Synchronization-{05F65F5A-2317-42EB-85B5-6BE0932AC2A8}.job
- c:\windows\system32\msfeedssync.exe [2009-03-08 02:31]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MI1933~1\Office12\EXCEL.EXE/3000
IE: Přizpůsobit Menu - file://c:\program files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
IE: RF Nástrojová lišta - file://c:\program files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
IE: Uložit formuláře - file://c:\program files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
IE: Vyplnit formulář - file://c:\program files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
IE: {{71BFC818-0CED-42D6-9C87-5142918957EE} - c:\program files\ICQ7.1\ICQ.exe
IE: {{7E6A20FB-153F-402c-A84B-1A64E1955D3D} - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748449} - {CC963627-B1DC-40E0-B52A-CF21EE748449} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748450} - {CC963627-B1DC-40E0-B52A-CF21EE748450} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748451} - {CC963627-B1DC-40E0-B52A-CF21EE748451} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748452} - {CC963627-B1DC-40E0-B52A-CF21EE748452} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
FF - ProfilePath - c:\documents and settings\KOCUS\Data aplikací\Mozilla\Firefox\Profiles\1aft3vcu.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - prefs.js: keyword.URL - hxxp://websearch.ask.com/redirect?client=ff&src=kw&tb=FF-DL&o=16596&locale=en_US&apn_uid=2A9764C9-3C59-4560-9C21-F89AE5212A73&apn_ptnrs=1A&apn_sauid=74B95F19-057E-4A9F-BB51-A4031BDBF15E&apn_dtid=YYYYYYYYCZ&q=
FF - prefs.js: network.proxy.type - 0
FF - component: c:\documents and settings\KOCUS\Data aplikací\Mozilla\Firefox\Profiles\1aft3vcu.default\extensions\{003D3EDC-99B9-4a34-9C20-60CB94F7E829}\components\nsWebFF15.dll
FF - component: c:\program files\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension\components\FirefoxExtension.dll
FF - component: c:\program files\Nokia\Nokia PC Suite 7\bkmrksync\components\BkMrkExt.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled", false);
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-09-28 23:30
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\DUMeterSvc]
"ImagePath"="c:\program files\DU Meter\DUMeterSvc.exe /startedbyscm:E1F6D4BE-40E33354-DUMeterService"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\{49DE1C67-83F8-4102-99E0-C16DCC7EEC796}]
"ImagePath"="\??\c:\program files\CyberLink\PlayMovie\000.fcl"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\{B154377D-700F-42cc-9474-23858FBDF4BD}]
"ImagePath"="\??\c:\program files\CyberLink\PowerDVD9\000.fcl"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\S-1-5-21-329068152-117609710-725345543-1004\Software\Microsoft\SystemCertificates\AddressBook*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10k_ActiveX.exe,-101"
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10k_ActiveX.exe"
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'lsass.exe'(1204)
c:\windows\system32\relog_ap.dll
.
Celkový čas: 2010-09-28 23:32:07
ComboFix-quarantined-files.txt 2010-09-28 21:32
ComboFix2.txt 2010-09-17 23:10
Před spuštěním: Volných bajtů: 25 021 005 824
Po spuštění: Volných bajtů: 25 137 770 496
- - End Of File - - 809E2E191AB48739836C861250B42310
Re: Explorer.exe a Iexplorer.exe stále padají
Problémy stále přetrvávají.
Napadlo mě,jestli nemůže být problém se stabilitou windows,ale vzhledem k tomu že byly podobné problémy už u předchozích instalací,které byly každá jiná,tak to bude asi v něčem jiném.
Je zvláštní,že když třeba otevřu nějaký soubor třeba .avi tak se mi ukáže to okno o problému s explorer.exe,ale pokud to okno ignoruji a nekliknu na odeslat,nebo neodesílat zprávu o chybách,tak vše ještě nějakou dobu normálně běží a spadne to až např.při otevření dalšího souboru.
Napadlo mě,jestli nemůže být problém se stabilitou windows,ale vzhledem k tomu že byly podobné problémy už u předchozích instalací,které byly každá jiná,tak to bude asi v něčem jiném.
Je zvláštní,že když třeba otevřu nějaký soubor třeba .avi tak se mi ukáže to okno o problému s explorer.exe,ale pokud to okno ignoruji a nekliknu na odeslat,nebo neodesílat zprávu o chybách,tak vše ještě nějakou dobu normálně běží a spadne to až např.při otevření dalšího souboru.
- Rudy
- Site Admin
- Příspěvky: 119426
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Explorer.exe a Iexplorer.exe stále padají
Zatím vyčistíme. Otevřte poznámkový blok a zkopírujte do něj:

Uložte na plochu jako CFScript.txt. pak jej myší přetáhněte nad ikonu ComboFix a pustte. Cf se spustí a vykoná příkazy ze skriptu.Folder::
c:\program files\Ask.com
Registry::
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{00000000-6E41-4FD3-8538-502F5495E5FC}"=-
[-HKEY_CLASSES_ROOT\clsid\{00000000-6e41-4fd3-8538-502f5495e5fc}]
[-HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"=-
[-HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[-HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[-HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"=-

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Explorer.exe a Iexplorer.exe stále padají
Omlouvám se,že píšu až dnes,ale byl jsem v práci.
Zde je log po tom mazání :
ComboFix 10-10-01.01 - KOCUS 02.10.2010 3:36.3.2 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1250.420.1029.18.3327.2713 [GMT 2:00]
Spuštěný z: c:\documents and settings\KOCUS\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\KOCUS\Plocha\CFScript.txt
AV: ESET Smart Security 4.0 *On-access scanning disabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: ESET personal firewall *disabled* {E5E70D32-0101-4340-86A3-A7B0F1C8FFE0}
* Vytvořen nový Bod Obnovení
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\program files\Ask.com
c:\program files\Ask.com\cobrand.ico
c:\program files\Ask.com\config.xml
c:\program files\Ask.com\favicon.ico
c:\program files\Ask.com\fv_9b6.ico
c:\program files\Ask.com\GenericAskToolbar.dll
c:\program files\Ask.com\mupcfg.xml
c:\program files\Ask.com\SaUpdate.exe
c:\program files\Ask.com\UpdateTask.exe
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-09-02 do 2010-10-02 )))))))))))))))))))))))))))))))
.
2010-09-29 02:25 . 2010-09-29 02:25 -------- d-----w- c:\program files\City Interactive
2010-09-28 18:38 . 2010-09-28 20:38 -------- d-----w- C:\rsit
2010-09-28 18:38 . 2010-09-28 20:37 -------- d-----w- c:\program files\trend micro
2010-09-24 01:20 . 2010-09-24 01:32 -------- d-----w- c:\program files\Touchstone
2010-09-20 02:26 . 2010-09-20 02:26 -------- d-----w- c:\program files\ReflexiveArcade
2010-09-19 23:48 . 2010-09-20 00:19 -------- d-----w- c:\program files\Steam
2010-09-19 23:41 . 2010-09-19 23:41 -------- d-----w- c:\program files\Alcohol Soft
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-09-29 02:31 . 2010-06-26 14:25 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-09-28 19:47 . 2010-06-26 21:22 -------- d-----w- c:\program files\Total Video Converter
2010-09-28 19:47 . 2008-08-08 16:05 -------- d-----w- c:\program files\Vivid WorkshopData ATI
2010-09-27 16:39 . 2010-06-26 22:41 -------- d-----w- c:\program files\uTorrent
2010-09-19 23:39 . 2010-06-26 18:26 697328 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-09-17 21:34 . 2010-06-26 21:09 -------- d-----w- c:\program files\Spyware Doctor
2010-09-17 18:59 . 2010-06-26 21:58 -------- d-----w- c:\program files\CCleaner
2010-08-27 02:42 . 2010-08-27 02:42 -------- d-----w- c:\program files\DjVuZone
2010-08-26 20:30 . 2010-06-26 14:25 -------- d-----w- c:\program files\NVIDIA Corporation
2010-08-26 20:29 . 2010-06-26 14:06 -------- d-----w- c:\program files\AMD
2010-08-26 16:59 . 2010-08-26 16:59 -------- d-----w- c:\program files\Desktop Icon Toy
2010-08-26 04:08 . 2010-08-26 04:08 -------- d-----w- c:\program files\FreeTime
2010-08-25 23:24 . 2010-06-26 22:26 -------- d-----w- c:\program files\Common Files\Java
2010-08-25 23:24 . 2010-06-26 22:26 -------- d-----w- c:\program files\Java
2010-08-20 15:02 . 2008-04-14 12:00 82576 ----a-w- c:\windows\system32\perfc005.dat
2010-08-20 15:02 . 2008-04-14 12:00 437888 ----a-w- c:\windows\system32\perfh005.dat
2010-08-17 13:17 . 2008-04-14 12:00 58880 ----a-w- c:\windows\system32\spoolsv.exe
2010-08-05 06:59 . 2010-08-05 06:59 61440 ----a-w- c:\documents and settings\KOCUS\Data aplikací\Sun\Java\Deployment\SystemCache\6.0\42\4488892a-13b22a42-n\decora-sse.dll
2010-08-05 06:59 . 2010-08-05 06:59 503808 ----a-w- c:\documents and settings\KOCUS\Data aplikací\Sun\Java\Deployment\SystemCache\6.0\4\7ec4bf04-3a4f4b93-n\msvcp71.dll
2010-08-05 06:59 . 2010-08-05 06:59 499712 ----a-w- c:\documents and settings\KOCUS\Data aplikací\Sun\Java\Deployment\SystemCache\6.0\4\7ec4bf04-3a4f4b93-n\jmc.dll
2010-08-05 06:59 . 2010-08-05 06:59 348160 ----a-w- c:\documents and settings\KOCUS\Data aplikací\Sun\Java\Deployment\SystemCache\6.0\4\7ec4bf04-3a4f4b93-n\msvcr71.dll
2010-08-05 06:59 . 2010-08-05 06:59 12800 ----a-w- c:\documents and settings\KOCUS\Data aplikací\Sun\Java\Deployment\SystemCache\6.0\42\4488892a-13b22a42-n\decora-d3d.dll
2010-08-05 06:49 . 2010-08-05 06:49 -------- d-----w- c:\program files\Autodesk WHIP!
2010-08-05 06:24 . 2010-08-05 06:24 -------- d-----w- c:\program files\Common Files\Real
2010-08-05 06:24 . 2010-06-26 21:44 -------- d-----w- c:\program files\Common Files\Adobe
2010-08-05 05:28 . 2010-08-05 05:25 -------- d--h--w- c:\program files\Zero G Registry
2010-08-03 14:10 . 2010-06-26 22:27 -------- d-----w- c:\program files\The KMPlayer
2010-07-29 13:12 . 2010-07-20 10:42 397312 ----a-w- c:\windows\esi_kl01.dat
2010-07-22 15:46 . 2008-04-14 12:00 590848 ----a-w- c:\windows\system32\rpcrt4.dll
2010-07-22 06:19 . 2008-05-05 05:25 5632 ----a-w- c:\windows\system32\xpsp4res.dll
2010-07-17 03:00 . 2010-06-26 23:16 423656 ----a-w- c:\windows\system32\deployJava1.dll
2010-07-08 06:59 . 2010-07-08 06:59 664 ----a-w- c:\windows\system32\d3d9caps.dat
.
------- Sigcheck -------
[7] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
[7] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys
[-] 2008-06-20 . CD00787894008369F56153B91FC28847 . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys
[7] 2008-04-14 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys
.
((((((((((((((((((((((((((((( SnapShot_2010-09-28_21.30.35 )))))))))))))))))))))))))))))))))))))))))
.
+ 2010-10-02 01:29 . 2010-10-02 01:29 16384 c:\windows\Temp\Perflib_Perfdata_808.dat
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DU Meter"="c:\program files\DU Meter\DUMeter.exe" [2007-11-13 2585360]
"OEXPRESS"="c:\documents and settings\All Users\Data aplikací\LangSoft\OETRN.EXE" [2010-06-26 26624]
"Seznam Postak"="c:\program files\Seznam.cz\postak.exe" [2010-03-01 451224]
"AlcoholAutomount"="c:\program files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" [2009-11-15 33120]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"="RTHDCPL.EXE" [2008-12-09 18063872]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2010-04-03 110696]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2010-04-03 13670504]
"CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2007-09-13 1603152]
"snp2uvc"="c:\windows\vsnp2uvc.exe" [2008-09-25 576040]
"Camera Assistant Software"="c:\program files\Camera Assistant Software for AOC\traybar.exe" [2008-09-25 610376]
"AcronisTimounterMonitor"="c:\program files\Acronis\TrueImageHome\TimounterMonitor.exe" [2007-10-23 906648]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2009-04-09 2029640]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-06-20 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-06-09 976832]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-05-14 248552]
"amd_dc_opt"="c:\program files\AMD\Dual-Core Optimizer\amd_dc_opt.exe" [2008-07-22 77824]
"QuickTime Task"="c:\windows\system32\qttask.exe" [2010-06-26 98304]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
WinTV Recording Status..lnk - c:\program files\WinTV\WinTV7\WinTVTray.exe [2010-6-27 98304]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters\persistentroutes]
"195.137.182.212,255.255.255.255,192.168.1.100,1"=""
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
@="Service"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"ctfmon.exe"=c:\windows\system32\ctfmon.exe
"Google Update"="c:\documents and settings\KOCUS\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"PCMAgent"="c:\program files\CyberLink\PowerCinema\PCMAgent.exe"
"PlayMovie"="c:\program files\CyberLink\PlayMovie\PMVService.exe"
"QuickTime Task"="c:\windows\system32\qttask.exe" -atboottime
"TrueImageMonitor.exe"=c:\program files\Acronis\TrueImageHome\TrueImageMonitor.exe
"Acronis Scheduler2 Service"="c:\program files\Common Files\Acronis\Schedule2\schedhlp.exe"
"BDRegion"=c:\program files\Cyberlink\Shared files\brs.exe
"Malwarebytes' Anti-Malware"="c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
"CLMLServer"="c:\program files\CyberLink\PowerCinema\Kernel\CLML\CLMLSvc.exe"
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe"
"NokiaMServer"=c:\program files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup
"TVEService"="c:\program files\CyberLink\TV Enhance\TVEService.exe"
"PDVD9LanguageShortcut"="c:\program files\CyberLink\PowerDVD9\Language\Language.exe"
"RemoteControl9"="c:\program files\CyberLink\PowerDVD9\PDVD9Serv.exe"
"CanonSolutionMenu"=c:\program files\Canon\SolutionMenu\CNSLMAIN.exe /logon
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Opera\\opera.exe"=
"c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Program Files\\CyberLink\\TV Enhance\\TVEnhance.exe"=
"c:\\Program Files\\CyberLink\\TV Enhance\\TVEService.exe"=
"c:\\Program Files\\CyberLink\\PowerDVD9\\PowerDVD9.exe"=
"c:\\Program Files\\ICQ7.1\\ICQ.exe"=
"c:\\Program Files\\ICQ7.1\\aolload.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
"c:\\Program Files\\Nokia\\Nokia Software Updater\\nsu_ui_client.exe"=
"c:\\Program Files\\Common Files\\Nokia\\Service Layer\\A\\nsl_host_process.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\Steam\\Steam.exe"=
R0 PCTCore;PCTools KDS;c:\windows\system32\drivers\PCTCore.sys [26.6.2010 23:09 207280]
R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [9.4.2009 15:18 107256]
R1 HCW88AUD;Hauppauge WinTV 88x Audio Capture;c:\windows\system32\drivers\hcw88aud.sys [26.6.2010 3:59 13440]
R2 {49DE1C67-83F8-4102-99E0-C16DCC7EEC796};{49DE1C67-83F8-4102-99E0-C16DCC7EEC796};c:\program files\CyberLink\PlayMovie\000.fcl [26.6.2010 20:56 61424]
R2 {B154377D-700F-42cc-9474-23858FBDF4BD};Power Control [2010/06/26 21:00];c:\program files\CyberLink\PowerDVD9\000.fcl [28.2.2009 19:40 87536]
R2 Browser Defender Update Service;Browser Defender Update Service;c:\program files\Spyware Doctor\BDT\BDTUpdateService.exe [26.6.2010 23:09 112592]
R2 DUMeterSvc;DU Meter Service;c:\program files\DU Meter\DUMeterSvc.exe [26.6.2010 21:46 1382672]
R2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [9.4.2009 15:19 731840]
R2 HauppaugeTVServer;HauppaugeTVServer;c:\program files\WinTV\TVServer\HauppaugeTVServer.exe [27.6.2010 1:41 434176]
R2 ICQ Service;ICQ Service;c:\program files\ICQ6Toolbar\ICQ Service.exe [27.6.2010 0:01 246520]
R2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [26.6.2010 22:11 304464]
R2 TVECapSvc;TVEnhance Background Capture Service (TBCS);c:\program files\CyberLink\TV Enhance\Kernel\TV\TVECapSvc.exe [26.6.2010 20:56 364635]
R2 TVESched;TVEnhance Task Scheduler (TTS));c:\program files\CyberLink\TV Enhance\Kernel\TV\TVESched.exe [26.6.2010 20:56 172121]
R3 HCW88BDA;Hauppauge WinTV 88x DVB Tuner/Demod;c:\windows\system32\drivers\hcw88bda.sys [26.6.2010 3:59 214656]
R3 HCW88TSE;Hauppauge WinTV 88x MPEG/TS Capture;c:\windows\system32\drivers\hcw88tse.sys [26.6.2010 3:59 320512]
R3 HCW88TUNE;Hauppauge WinTV 88x Tuner;c:\windows\system32\drivers\hcw88tun.sys [26.6.2010 3:59 75904]
R3 hcw88vid;Hauppauge WinTV 88x Video;c:\windows\system32\drivers\hcw88vid.sys [26.6.2010 3:59 396032]
R3 HCW88XBAR;Hauppauge WinTV 88x Crossbar;c:\windows\system32\drivers\hcw88bar.sys [26.6.2010 3:59 17792]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [26.6.2010 22:11 20952]
S2 CachemanXPService;CachemanXP;c:\progra~1\CACHEM~1\CachemanXP.exe [26.6.2010 20:44 355840]
S2 EWA net DB Core;EWA net DB Core;c:\program files\EWA net\database\TransBase EWA\tbmux32.exe --> c:\program files\EWA net\database\TransBase EWA\tbmux32.exe [?]
S2 EWA net DB EPC;EWA net DB EPC;c:\program files\EWA net\database\TransBase EPC\tbmux32.exe --> c:\program files\EWA net\database\TransBase EPC\tbmux32.exe [?]
S2 EWA net DB WIS;EWA net DB WIS;c:\program files\EWA net\database\TransBase WIS\tbmux32.exe --> c:\program files\EWA net\database\TransBase WIS\tbmux32.exe [?]
S2 EWA net Server;EWA net Server;c:\program files\EWA net\server\bin\tomcat.exe --> c:\program files\EWA net\server\bin\tomcat.exe [?]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsu.sys [27.6.2010 1:06 137344]
S3 nmwcdnsuc;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsuc.sys [27.6.2010 1:06 8320]
S3 sdAuxService;PC Tools Auxiliary Service;c:\program files\Spyware Doctor\pctsAuxs.exe [26.6.2010 23:09 358600]
S4 sptd;sptd;c:\windows\system32\drivers\sptd.sys [26.6.2010 20:26 697328]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
Obsah adresáře 'Naplánované úlohy'
2010-10-02 c:\windows\Tasks\1-Click Maintenance.job
- c:\program files\TuneUp Utilities 2009\OneClickStarter.exe [2008-12-11 19:36]
2010-10-02 c:\windows\Tasks\User_Feed_Synchronization-{05F65F5A-2317-42EB-85B5-6BE0932AC2A8}.job
- c:\windows\system32\msfeedssync.exe [2009-03-08 02:31]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MI1933~1\Office12\EXCEL.EXE/3000
IE: Přizpůsobit Menu - file://c:\program files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
IE: RF Nástrojová lišta - file://c:\program files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
IE: Uložit formuláře - file://c:\program files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
IE: Vyplnit formulář - file://c:\program files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
IE: {{71BFC818-0CED-42D6-9C87-5142918957EE} - c:\program files\ICQ7.1\ICQ.exe
IE: {{7E6A20FB-153F-402c-A84B-1A64E1955D3D} - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748449} - {CC963627-B1DC-40E0-B52A-CF21EE748449} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748450} - {CC963627-B1DC-40E0-B52A-CF21EE748450} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748451} - {CC963627-B1DC-40E0-B52A-CF21EE748451} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748452} - {CC963627-B1DC-40E0-B52A-CF21EE748452} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
FF - ProfilePath - c:\documents and settings\KOCUS\Data aplikací\Mozilla\Firefox\Profiles\1aft3vcu.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - prefs.js: keyword.URL - hxxp://websearch.ask.com/redirect?client=ff&src=kw&tb=FF-DL&o=16596&locale=en_US&apn_uid=2A9764C9-3C59-4560-9C21-F89AE5212A73&apn_ptnrs=1A&apn_sauid=74B95F19-057E-4A9F-BB51-A4031BDBF15E&apn_dtid=YYYYYYYYCZ&q=
FF - prefs.js: network.proxy.type - 0
FF - component: c:\documents and settings\KOCUS\Data aplikací\Mozilla\Firefox\Profiles\1aft3vcu.default\extensions\{003D3EDC-99B9-4a34-9C20-60CB94F7E829}\components\nsWebFF15.dll
FF - component: c:\program files\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension\components\FirefoxExtension.dll
FF - component: c:\program files\Nokia\Nokia PC Suite 7\bkmrksync\components\BkMrkExt.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled", false);
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-10-02 03:40
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\DUMeterSvc]
"ImagePath"="c:\program files\DU Meter\DUMeterSvc.exe /startedbyscm:E1F6D4BE-40E33354-DUMeterService"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\{49DE1C67-83F8-4102-99E0-C16DCC7EEC796}]
"ImagePath"="\??\c:\program files\CyberLink\PlayMovie\000.fcl"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\{B154377D-700F-42cc-9474-23858FBDF4BD}]
"ImagePath"="\??\c:\program files\CyberLink\PowerDVD9\000.fcl"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\S-1-5-21-329068152-117609710-725345543-1004\Software\Microsoft\SystemCertificates\AddressBook*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10k_ActiveX.exe,-101"
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10k_ActiveX.exe"
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'lsass.exe'(1164)
c:\windows\system32\relog_ap.dll
.
Celkový čas: 2010-10-02 03:41:37
ComboFix-quarantined-files.txt 2010-10-02 01:41
ComboFix2.txt 2010-09-28 21:32
ComboFix3.txt 2010-09-17 23:10
Před spuštěním: Volných bajtů: 19 308 224 512
Po spuštění: Volných bajtů: 19 305 598 976
- - End Of File - - 31617BE98023488302AE45C1FCDA2F41
Změna žádná,explorer stále padá. Jo a zapoměl jsem napsat ještě jeden simtom,téměř vždy asi tak do 15ti min.po startu PC kompletně zamrzne,bez příčiny a zátěže. Vždy musím provézt tvrdý restart a pak už to neudělá ani po jednom restartu. Zase to udělá třeba až druhý den,když byl PC vyplý.
Zde je log po tom mazání :
ComboFix 10-10-01.01 - KOCUS 02.10.2010 3:36.3.2 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1250.420.1029.18.3327.2713 [GMT 2:00]
Spuštěný z: c:\documents and settings\KOCUS\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\KOCUS\Plocha\CFScript.txt
AV: ESET Smart Security 4.0 *On-access scanning disabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: ESET personal firewall *disabled* {E5E70D32-0101-4340-86A3-A7B0F1C8FFE0}
* Vytvořen nový Bod Obnovení
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\program files\Ask.com
c:\program files\Ask.com\cobrand.ico
c:\program files\Ask.com\config.xml
c:\program files\Ask.com\favicon.ico
c:\program files\Ask.com\fv_9b6.ico
c:\program files\Ask.com\GenericAskToolbar.dll
c:\program files\Ask.com\mupcfg.xml
c:\program files\Ask.com\SaUpdate.exe
c:\program files\Ask.com\UpdateTask.exe
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-09-02 do 2010-10-02 )))))))))))))))))))))))))))))))
.
2010-09-29 02:25 . 2010-09-29 02:25 -------- d-----w- c:\program files\City Interactive
2010-09-28 18:38 . 2010-09-28 20:38 -------- d-----w- C:\rsit
2010-09-28 18:38 . 2010-09-28 20:37 -------- d-----w- c:\program files\trend micro
2010-09-24 01:20 . 2010-09-24 01:32 -------- d-----w- c:\program files\Touchstone
2010-09-20 02:26 . 2010-09-20 02:26 -------- d-----w- c:\program files\ReflexiveArcade
2010-09-19 23:48 . 2010-09-20 00:19 -------- d-----w- c:\program files\Steam
2010-09-19 23:41 . 2010-09-19 23:41 -------- d-----w- c:\program files\Alcohol Soft
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-09-29 02:31 . 2010-06-26 14:25 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-09-28 19:47 . 2010-06-26 21:22 -------- d-----w- c:\program files\Total Video Converter
2010-09-28 19:47 . 2008-08-08 16:05 -------- d-----w- c:\program files\Vivid WorkshopData ATI
2010-09-27 16:39 . 2010-06-26 22:41 -------- d-----w- c:\program files\uTorrent
2010-09-19 23:39 . 2010-06-26 18:26 697328 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-09-17 21:34 . 2010-06-26 21:09 -------- d-----w- c:\program files\Spyware Doctor
2010-09-17 18:59 . 2010-06-26 21:58 -------- d-----w- c:\program files\CCleaner
2010-08-27 02:42 . 2010-08-27 02:42 -------- d-----w- c:\program files\DjVuZone
2010-08-26 20:30 . 2010-06-26 14:25 -------- d-----w- c:\program files\NVIDIA Corporation
2010-08-26 20:29 . 2010-06-26 14:06 -------- d-----w- c:\program files\AMD
2010-08-26 16:59 . 2010-08-26 16:59 -------- d-----w- c:\program files\Desktop Icon Toy
2010-08-26 04:08 . 2010-08-26 04:08 -------- d-----w- c:\program files\FreeTime
2010-08-25 23:24 . 2010-06-26 22:26 -------- d-----w- c:\program files\Common Files\Java
2010-08-25 23:24 . 2010-06-26 22:26 -------- d-----w- c:\program files\Java
2010-08-20 15:02 . 2008-04-14 12:00 82576 ----a-w- c:\windows\system32\perfc005.dat
2010-08-20 15:02 . 2008-04-14 12:00 437888 ----a-w- c:\windows\system32\perfh005.dat
2010-08-17 13:17 . 2008-04-14 12:00 58880 ----a-w- c:\windows\system32\spoolsv.exe
2010-08-05 06:59 . 2010-08-05 06:59 61440 ----a-w- c:\documents and settings\KOCUS\Data aplikací\Sun\Java\Deployment\SystemCache\6.0\42\4488892a-13b22a42-n\decora-sse.dll
2010-08-05 06:59 . 2010-08-05 06:59 503808 ----a-w- c:\documents and settings\KOCUS\Data aplikací\Sun\Java\Deployment\SystemCache\6.0\4\7ec4bf04-3a4f4b93-n\msvcp71.dll
2010-08-05 06:59 . 2010-08-05 06:59 499712 ----a-w- c:\documents and settings\KOCUS\Data aplikací\Sun\Java\Deployment\SystemCache\6.0\4\7ec4bf04-3a4f4b93-n\jmc.dll
2010-08-05 06:59 . 2010-08-05 06:59 348160 ----a-w- c:\documents and settings\KOCUS\Data aplikací\Sun\Java\Deployment\SystemCache\6.0\4\7ec4bf04-3a4f4b93-n\msvcr71.dll
2010-08-05 06:59 . 2010-08-05 06:59 12800 ----a-w- c:\documents and settings\KOCUS\Data aplikací\Sun\Java\Deployment\SystemCache\6.0\42\4488892a-13b22a42-n\decora-d3d.dll
2010-08-05 06:49 . 2010-08-05 06:49 -------- d-----w- c:\program files\Autodesk WHIP!
2010-08-05 06:24 . 2010-08-05 06:24 -------- d-----w- c:\program files\Common Files\Real
2010-08-05 06:24 . 2010-06-26 21:44 -------- d-----w- c:\program files\Common Files\Adobe
2010-08-05 05:28 . 2010-08-05 05:25 -------- d--h--w- c:\program files\Zero G Registry
2010-08-03 14:10 . 2010-06-26 22:27 -------- d-----w- c:\program files\The KMPlayer
2010-07-29 13:12 . 2010-07-20 10:42 397312 ----a-w- c:\windows\esi_kl01.dat
2010-07-22 15:46 . 2008-04-14 12:00 590848 ----a-w- c:\windows\system32\rpcrt4.dll
2010-07-22 06:19 . 2008-05-05 05:25 5632 ----a-w- c:\windows\system32\xpsp4res.dll
2010-07-17 03:00 . 2010-06-26 23:16 423656 ----a-w- c:\windows\system32\deployJava1.dll
2010-07-08 06:59 . 2010-07-08 06:59 664 ----a-w- c:\windows\system32\d3d9caps.dat
.
------- Sigcheck -------
[7] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
[7] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys
[-] 2008-06-20 . CD00787894008369F56153B91FC28847 . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys
[7] 2008-04-14 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys
.
((((((((((((((((((((((((((((( SnapShot_2010-09-28_21.30.35 )))))))))))))))))))))))))))))))))))))))))
.
+ 2010-10-02 01:29 . 2010-10-02 01:29 16384 c:\windows\Temp\Perflib_Perfdata_808.dat
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DU Meter"="c:\program files\DU Meter\DUMeter.exe" [2007-11-13 2585360]
"OEXPRESS"="c:\documents and settings\All Users\Data aplikací\LangSoft\OETRN.EXE" [2010-06-26 26624]
"Seznam Postak"="c:\program files\Seznam.cz\postak.exe" [2010-03-01 451224]
"AlcoholAutomount"="c:\program files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" [2009-11-15 33120]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"="RTHDCPL.EXE" [2008-12-09 18063872]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2010-04-03 110696]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2010-04-03 13670504]
"CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2007-09-13 1603152]
"snp2uvc"="c:\windows\vsnp2uvc.exe" [2008-09-25 576040]
"Camera Assistant Software"="c:\program files\Camera Assistant Software for AOC\traybar.exe" [2008-09-25 610376]
"AcronisTimounterMonitor"="c:\program files\Acronis\TrueImageHome\TimounterMonitor.exe" [2007-10-23 906648]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2009-04-09 2029640]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-06-20 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-06-09 976832]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-05-14 248552]
"amd_dc_opt"="c:\program files\AMD\Dual-Core Optimizer\amd_dc_opt.exe" [2008-07-22 77824]
"QuickTime Task"="c:\windows\system32\qttask.exe" [2010-06-26 98304]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
WinTV Recording Status..lnk - c:\program files\WinTV\WinTV7\WinTVTray.exe [2010-6-27 98304]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters\persistentroutes]
"195.137.182.212,255.255.255.255,192.168.1.100,1"=""
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
@="Service"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"ctfmon.exe"=c:\windows\system32\ctfmon.exe
"Google Update"="c:\documents and settings\KOCUS\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"PCMAgent"="c:\program files\CyberLink\PowerCinema\PCMAgent.exe"
"PlayMovie"="c:\program files\CyberLink\PlayMovie\PMVService.exe"
"QuickTime Task"="c:\windows\system32\qttask.exe" -atboottime
"TrueImageMonitor.exe"=c:\program files\Acronis\TrueImageHome\TrueImageMonitor.exe
"Acronis Scheduler2 Service"="c:\program files\Common Files\Acronis\Schedule2\schedhlp.exe"
"BDRegion"=c:\program files\Cyberlink\Shared files\brs.exe
"Malwarebytes' Anti-Malware"="c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
"CLMLServer"="c:\program files\CyberLink\PowerCinema\Kernel\CLML\CLMLSvc.exe"
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe"
"NokiaMServer"=c:\program files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup
"TVEService"="c:\program files\CyberLink\TV Enhance\TVEService.exe"
"PDVD9LanguageShortcut"="c:\program files\CyberLink\PowerDVD9\Language\Language.exe"
"RemoteControl9"="c:\program files\CyberLink\PowerDVD9\PDVD9Serv.exe"
"CanonSolutionMenu"=c:\program files\Canon\SolutionMenu\CNSLMAIN.exe /logon
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Opera\\opera.exe"=
"c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Program Files\\CyberLink\\TV Enhance\\TVEnhance.exe"=
"c:\\Program Files\\CyberLink\\TV Enhance\\TVEService.exe"=
"c:\\Program Files\\CyberLink\\PowerDVD9\\PowerDVD9.exe"=
"c:\\Program Files\\ICQ7.1\\ICQ.exe"=
"c:\\Program Files\\ICQ7.1\\aolload.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
"c:\\Program Files\\Nokia\\Nokia Software Updater\\nsu_ui_client.exe"=
"c:\\Program Files\\Common Files\\Nokia\\Service Layer\\A\\nsl_host_process.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\Steam\\Steam.exe"=
R0 PCTCore;PCTools KDS;c:\windows\system32\drivers\PCTCore.sys [26.6.2010 23:09 207280]
R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [9.4.2009 15:18 107256]
R1 HCW88AUD;Hauppauge WinTV 88x Audio Capture;c:\windows\system32\drivers\hcw88aud.sys [26.6.2010 3:59 13440]
R2 {49DE1C67-83F8-4102-99E0-C16DCC7EEC796};{49DE1C67-83F8-4102-99E0-C16DCC7EEC796};c:\program files\CyberLink\PlayMovie\000.fcl [26.6.2010 20:56 61424]
R2 {B154377D-700F-42cc-9474-23858FBDF4BD};Power Control [2010/06/26 21:00];c:\program files\CyberLink\PowerDVD9\000.fcl [28.2.2009 19:40 87536]
R2 Browser Defender Update Service;Browser Defender Update Service;c:\program files\Spyware Doctor\BDT\BDTUpdateService.exe [26.6.2010 23:09 112592]
R2 DUMeterSvc;DU Meter Service;c:\program files\DU Meter\DUMeterSvc.exe [26.6.2010 21:46 1382672]
R2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [9.4.2009 15:19 731840]
R2 HauppaugeTVServer;HauppaugeTVServer;c:\program files\WinTV\TVServer\HauppaugeTVServer.exe [27.6.2010 1:41 434176]
R2 ICQ Service;ICQ Service;c:\program files\ICQ6Toolbar\ICQ Service.exe [27.6.2010 0:01 246520]
R2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [26.6.2010 22:11 304464]
R2 TVECapSvc;TVEnhance Background Capture Service (TBCS);c:\program files\CyberLink\TV Enhance\Kernel\TV\TVECapSvc.exe [26.6.2010 20:56 364635]
R2 TVESched;TVEnhance Task Scheduler (TTS));c:\program files\CyberLink\TV Enhance\Kernel\TV\TVESched.exe [26.6.2010 20:56 172121]
R3 HCW88BDA;Hauppauge WinTV 88x DVB Tuner/Demod;c:\windows\system32\drivers\hcw88bda.sys [26.6.2010 3:59 214656]
R3 HCW88TSE;Hauppauge WinTV 88x MPEG/TS Capture;c:\windows\system32\drivers\hcw88tse.sys [26.6.2010 3:59 320512]
R3 HCW88TUNE;Hauppauge WinTV 88x Tuner;c:\windows\system32\drivers\hcw88tun.sys [26.6.2010 3:59 75904]
R3 hcw88vid;Hauppauge WinTV 88x Video;c:\windows\system32\drivers\hcw88vid.sys [26.6.2010 3:59 396032]
R3 HCW88XBAR;Hauppauge WinTV 88x Crossbar;c:\windows\system32\drivers\hcw88bar.sys [26.6.2010 3:59 17792]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [26.6.2010 22:11 20952]
S2 CachemanXPService;CachemanXP;c:\progra~1\CACHEM~1\CachemanXP.exe [26.6.2010 20:44 355840]
S2 EWA net DB Core;EWA net DB Core;c:\program files\EWA net\database\TransBase EWA\tbmux32.exe --> c:\program files\EWA net\database\TransBase EWA\tbmux32.exe [?]
S2 EWA net DB EPC;EWA net DB EPC;c:\program files\EWA net\database\TransBase EPC\tbmux32.exe --> c:\program files\EWA net\database\TransBase EPC\tbmux32.exe [?]
S2 EWA net DB WIS;EWA net DB WIS;c:\program files\EWA net\database\TransBase WIS\tbmux32.exe --> c:\program files\EWA net\database\TransBase WIS\tbmux32.exe [?]
S2 EWA net Server;EWA net Server;c:\program files\EWA net\server\bin\tomcat.exe --> c:\program files\EWA net\server\bin\tomcat.exe [?]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsu.sys [27.6.2010 1:06 137344]
S3 nmwcdnsuc;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsuc.sys [27.6.2010 1:06 8320]
S3 sdAuxService;PC Tools Auxiliary Service;c:\program files\Spyware Doctor\pctsAuxs.exe [26.6.2010 23:09 358600]
S4 sptd;sptd;c:\windows\system32\drivers\sptd.sys [26.6.2010 20:26 697328]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
Obsah adresáře 'Naplánované úlohy'
2010-10-02 c:\windows\Tasks\1-Click Maintenance.job
- c:\program files\TuneUp Utilities 2009\OneClickStarter.exe [2008-12-11 19:36]
2010-10-02 c:\windows\Tasks\User_Feed_Synchronization-{05F65F5A-2317-42EB-85B5-6BE0932AC2A8}.job
- c:\windows\system32\msfeedssync.exe [2009-03-08 02:31]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MI1933~1\Office12\EXCEL.EXE/3000
IE: Přizpůsobit Menu - file://c:\program files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
IE: RF Nástrojová lišta - file://c:\program files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
IE: Uložit formuláře - file://c:\program files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
IE: Vyplnit formulář - file://c:\program files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
IE: {{71BFC818-0CED-42D6-9C87-5142918957EE} - c:\program files\ICQ7.1\ICQ.exe
IE: {{7E6A20FB-153F-402c-A84B-1A64E1955D3D} - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748449} - {CC963627-B1DC-40E0-B52A-CF21EE748449} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748450} - {CC963627-B1DC-40E0-B52A-CF21EE748450} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748451} - {CC963627-B1DC-40E0-B52A-CF21EE748451} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748452} - {CC963627-B1DC-40E0-B52A-CF21EE748452} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
FF - ProfilePath - c:\documents and settings\KOCUS\Data aplikací\Mozilla\Firefox\Profiles\1aft3vcu.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - prefs.js: keyword.URL - hxxp://websearch.ask.com/redirect?client=ff&src=kw&tb=FF-DL&o=16596&locale=en_US&apn_uid=2A9764C9-3C59-4560-9C21-F89AE5212A73&apn_ptnrs=1A&apn_sauid=74B95F19-057E-4A9F-BB51-A4031BDBF15E&apn_dtid=YYYYYYYYCZ&q=
FF - prefs.js: network.proxy.type - 0
FF - component: c:\documents and settings\KOCUS\Data aplikací\Mozilla\Firefox\Profiles\1aft3vcu.default\extensions\{003D3EDC-99B9-4a34-9C20-60CB94F7E829}\components\nsWebFF15.dll
FF - component: c:\program files\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension\components\FirefoxExtension.dll
FF - component: c:\program files\Nokia\Nokia PC Suite 7\bkmrksync\components\BkMrkExt.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled", false);
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-10-02 03:40
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\DUMeterSvc]
"ImagePath"="c:\program files\DU Meter\DUMeterSvc.exe /startedbyscm:E1F6D4BE-40E33354-DUMeterService"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\{49DE1C67-83F8-4102-99E0-C16DCC7EEC796}]
"ImagePath"="\??\c:\program files\CyberLink\PlayMovie\000.fcl"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\{B154377D-700F-42cc-9474-23858FBDF4BD}]
"ImagePath"="\??\c:\program files\CyberLink\PowerDVD9\000.fcl"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\S-1-5-21-329068152-117609710-725345543-1004\Software\Microsoft\SystemCertificates\AddressBook*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10k_ActiveX.exe,-101"
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10k_ActiveX.exe"
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'lsass.exe'(1164)
c:\windows\system32\relog_ap.dll
.
Celkový čas: 2010-10-02 03:41:37
ComboFix-quarantined-files.txt 2010-10-02 01:41
ComboFix2.txt 2010-09-28 21:32
ComboFix3.txt 2010-09-17 23:10
Před spuštěním: Volných bajtů: 19 308 224 512
Po spuštění: Volných bajtů: 19 305 598 976
- - End Of File - - 31617BE98023488302AE45C1FCDA2F41
Změna žádná,explorer stále padá. Jo a zapoměl jsem napsat ještě jeden simtom,téměř vždy asi tak do 15ti min.po startu PC kompletně zamrzne,bez příčiny a zátěže. Vždy musím provézt tvrdý restart a pak už to neudělá ani po jednom restartu. Zase to udělá třeba až druhý den,když byl PC vyplý.
- Rudy
- Site Admin
- Příspěvky: 119426
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Explorer.exe a Iexplorer.exe stále padají
Log již vypadá čistý. Zkuste obnovu systému k datu, kdy korektně fungoval.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Explorer.exe a Iexplorer.exe stále padají
To bohužel asi nebude možné,problémy které popisuji jsou již dlouhou dobu,které se postupem času jen zhoršují. Takže není možné se vrátit k bodu obnovení. A není možné,že problém způsobuje i něco jiného,něž jen nějaká havěť? Akorát si nedovedu představit co,protože tuto instalaci nemám tak dlouho,aby byly registry tak pošramocené,aby vykazovaly takové potíže. Navíc i u předešlých verzí XP jsem měl obdobné potíže. Jediné co mě napadá je,že problémy způsobuje nějaký program,který používám,ale nedokážu určit který. Je nějaká možnost,jestli je problém s integritou průzkumníka a exploreru,aby se dal nějak opravit? I když nechápu,proč by s němi měly být problémy,na registry používám pouze TuneUp.
- Rudy
- Site Admin
- Příspěvky: 119426
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Explorer.exe a Iexplorer.exe stále padají
V tom případě budete muset zkusit opravy systému z instal. CD.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Explorer.exe a Iexplorer.exe stále padají
I to jsem už u předchozích instalací zkoušel,jenže jsem vždy dopadl špatně,nejspíš v tom někde dělám chybu a asi nemám dostatek informací pro tyto úkony. Připadlo mi vždy,že díky aktualizacím byly hodnoty v registrech jiné a proto nakonec nemohla být oprava z botovacího CD provedena a nebo nastal totální kolaps systému. Kdyby jste mi pomohl,poradil přesný postup jak na opravu z instalačního CD,tak bych to zkusil,a nebo alespoň nějaký odkaz,kde to je dostatečně rozepsáno i pro lajky. Díky moc.
Naposledy upravil(a) ELIXIERE dne 02 říj 2010 19:13, celkem upraveno 1 x.
Re: Explorer.exe a Iexplorer.exe stále padají
i když nechápu,proč každá instalace OS v mém případě dopadne takhle. Snažím se udržovat systém v dobrém stavu,používám Ccleaner,TuneUp,pár programů na malware a Adware,samozřejmě defragmentace a základní úkony jsou samozřejmostí,tak proč mi OS vždy ve finále do půl roku kolabuje?
- Rudy
- Site Admin
- Příspěvky: 119426
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Explorer.exe a Iexplorer.exe stále padají
Na tohle je těžká odpověd. Může se jednat od nějaké sw kolize, až po chybu hardwaru.ELIXIERE píše:i když nechápu,proč každá instalace OS v mém případě dopadne takhle. Snažím se udržovat systém v dobrém stavu,používám Ccleaner,TuneUp,pár programů na malware a Adware,samozřejmě defragmentace a základní úkony jsou samozřejmostí,tak proč mi OS vždy ve finále do půl roku kolabuje?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Explorer.exe a Iexplorer.exe stále padají
A nějaká rada na závěr? Jaké jsou možnosti v dalším postupu? Nechci instalovat nový OS,protože o pár měsíců později dojdu opět ke stejnému výsledku. Před chvíli jsem zkoušel opravu z inst.CD,ale hlásí,že je systém v pořádku. Vážně nevím. 

- Rudy
- Site Admin
- Příspěvky: 119426
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Explorer.exe a Iexplorer.exe stále padají
Dejte log z ComboFix.
Budeme mít jistoto, zda problé nezpůsobuje vir. Pak se bude muset otestovat hardware.Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe
pote spustte aplikaci pod uctem s administratorskym opravnenim
hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.
v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine aplikace ani nic jineho
behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)
upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode, pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k nezadoucim kolizim s rezidentem antispyware
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Explorer.exe a Iexplorer.exe stále padají
Zde je ten log,dělal jsem nějaké aktualizace OS,tak je asi proto trochu delší.
ComboFix 10-10-01.07 - KOCUS 02.10.2010 23:13:19.4.2 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1250.420.1029.18.3327.2588 [GMT 2:00]
Spuštěný z: c:\documents and settings\KOCUS\Plocha\ComboFix.exe
AV: ESET Smart Security 4.0 *On-access scanning disabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: ESET personal firewall *disabled* {E5E70D32-0101-4340-86A3-A7B0F1C8FFE0}
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-09-02 do 2010-10-02 )))))))))))))))))))))))))))))))
.
2010-10-02 19:31 . 2010-10-02 19:31 -------- d--h--w- c:\windows\PIF
2010-10-02 16:24 . 2010-10-02 21:05 -------- d-----w- c:\program files\Windows Desktop Search
2010-10-02 16:24 . 2010-10-02 16:24 -------- d-----w- c:\windows\system32\GroupPolicy
2010-10-02 16:10 . 2010-10-02 16:10 232968 ----a-w- c:\windows\system32\nvdrsdb0.bin
2010-10-02 16:10 . 2010-10-02 16:10 1 ----a-w- c:\windows\system32\nvdrssel.bin
2010-10-02 16:10 . 2010-10-02 16:10 232968 ----a-w- c:\windows\system32\nvdrsdb1.bin
2010-09-29 02:25 . 2010-09-29 02:25 -------- d-----w- c:\program files\City Interactive
2010-09-28 18:38 . 2010-09-28 20:38 -------- d-----w- C:\rsit
2010-09-28 18:38 . 2010-09-28 20:37 -------- d-----w- c:\program files\trend micro
2010-09-24 01:20 . 2010-09-24 01:32 -------- d-----w- c:\program files\Touchstone
2010-09-20 02:26 . 2010-09-20 02:26 -------- d-----w- c:\program files\ReflexiveArcade
2010-09-19 23:48 . 2010-09-20 00:19 -------- d-----w- c:\program files\Steam
2010-09-19 23:41 . 2010-09-19 23:41 -------- d-----w- c:\program files\Alcohol Soft
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-10-02 16:24 . 2008-04-14 12:00 518512 ----a-w- c:\windows\system32\perfh005.dat
2010-10-02 16:24 . 2008-04-14 12:00 111028 ----a-w- c:\windows\system32\perfc005.dat
2010-10-02 16:09 . 2010-06-26 14:25 -------- d-----w- c:\program files\NVIDIA Corporation
2010-10-02 16:07 . 2010-06-26 17:17 -------- d-----w- c:\program files\Microsoft.NET
2010-10-02 14:59 . 2010-06-26 17:04 -------- d-----w- c:\program files\Microsoft Silverlight
2010-09-29 02:31 . 2010-06-26 14:25 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-09-28 19:47 . 2010-06-26 21:22 -------- d-----w- c:\program files\Total Video Converter
2010-09-28 19:47 . 2008-08-08 16:05 -------- d-----w- c:\program files\Vivid WorkshopData ATI
2010-09-27 16:39 . 2010-06-26 22:41 -------- d-----w- c:\program files\uTorrent
2010-09-19 23:39 . 2010-06-26 18:26 697328 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-09-17 21:34 . 2010-06-26 21:09 -------- d-----w- c:\program files\Spyware Doctor
2010-09-17 18:59 . 2010-06-26 21:58 -------- d-----w- c:\program files\CCleaner
2010-08-27 02:42 . 2010-08-27 02:42 -------- d-----w- c:\program files\DjVuZone
2010-08-26 20:29 . 2010-06-26 14:06 -------- d-----w- c:\program files\AMD
2010-08-26 16:59 . 2010-08-26 16:59 -------- d-----w- c:\program files\Desktop Icon Toy
2010-08-26 04:08 . 2010-08-26 04:08 -------- d-----w- c:\program files\FreeTime
2010-08-25 23:24 . 2010-06-26 22:26 -------- d-----w- c:\program files\Common Files\Java
2010-08-25 23:24 . 2010-06-26 22:26 -------- d-----w- c:\program files\Java
2010-08-17 13:17 . 2008-04-14 12:00 58880 ----a-w- c:\windows\system32\spoolsv.exe
2010-08-05 06:59 . 2010-08-05 06:59 61440 ----a-w- c:\documents and settings\KOCUS\Data aplikací\Sun\Java\Deployment\SystemCache\6.0\42\4488892a-13b22a42-n\decora-sse.dll
2010-08-05 06:59 . 2010-08-05 06:59 503808 ----a-w- c:\documents and settings\KOCUS\Data aplikací\Sun\Java\Deployment\SystemCache\6.0\4\7ec4bf04-3a4f4b93-n\msvcp71.dll
2010-08-05 06:59 . 2010-08-05 06:59 499712 ----a-w- c:\documents and settings\KOCUS\Data aplikací\Sun\Java\Deployment\SystemCache\6.0\4\7ec4bf04-3a4f4b93-n\jmc.dll
2010-08-05 06:59 . 2010-08-05 06:59 348160 ----a-w- c:\documents and settings\KOCUS\Data aplikací\Sun\Java\Deployment\SystemCache\6.0\4\7ec4bf04-3a4f4b93-n\msvcr71.dll
2010-08-05 06:59 . 2010-08-05 06:59 12800 ----a-w- c:\documents and settings\KOCUS\Data aplikací\Sun\Java\Deployment\SystemCache\6.0\42\4488892a-13b22a42-n\decora-d3d.dll
2010-08-05 06:49 . 2010-08-05 06:49 -------- d-----w- c:\program files\Autodesk WHIP!
2010-08-05 06:24 . 2010-08-05 06:24 -------- d-----w- c:\program files\Common Files\Real
2010-08-05 06:24 . 2010-06-26 21:44 -------- d-----w- c:\program files\Common Files\Adobe
2010-08-05 05:28 . 2010-08-05 05:25 -------- d--h--w- c:\program files\Zero G Registry
2010-07-29 13:12 . 2010-07-20 10:42 397312 ----a-w- c:\windows\esi_kl01.dat
2010-07-22 15:46 . 2008-04-14 12:00 590848 ----a-w- c:\windows\system32\rpcrt4.dll
2010-07-22 06:19 . 2008-05-05 05:25 5632 ----a-w- c:\windows\system32\xpsp4res.dll
2010-07-17 03:00 . 2010-06-26 23:16 423656 ----a-w- c:\windows\system32\deployJava1.dll
2010-07-09 14:24 . 2010-07-09 14:24 81920 ----a-w- c:\windows\system32\nvwddi.dll
2010-07-09 14:24 . 2010-07-09 14:24 277608 ----a-w- c:\windows\system32\nvmccs.dll
2010-07-09 14:24 . 2010-07-09 14:24 110696 ----a-w- c:\windows\system32\nvmctray.dll
2010-07-09 14:24 . 2010-07-09 14:24 155752 ----a-w- c:\windows\system32\nvsvc32.exe
2010-07-09 14:24 . 2010-07-09 14:24 145000 ----a-w- c:\windows\system32\nvcolor.exe
2010-07-09 14:24 . 2010-07-09 14:24 13923432 ----a-w- c:\windows\system32\nvcpl.dll
2010-07-08 06:59 . 2010-07-08 06:59 664 ----a-w- c:\windows\system32\d3d9caps.dat
.
------- Sigcheck -------
[7] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
[7] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys
[-] 2008-06-20 . CD00787894008369F56153B91FC28847 . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys
[7] 2008-04-14 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys
.
((((((((((((((((((((((((((((( SnapShot_2010-09-28_21.30.35 )))))))))))))))))))))))))))))))))))))))))
.
+ 2010-10-02 16:19 . 2010-10-02 16:19 21880 c:\windows\WinSxS\MSIL_Microsoft.Workflow.Compiler_31bf3856ad364e35_4.0.0.0_x-ww_97359ba5\Microsoft.Workflow.Compiler.exe
+ 2010-10-02 21:07 . 2010-10-02 21:07 16384 c:\windows\Temp\Perflib_Perfdata_810.dat
+ 2008-05-26 20:18 . 2008-05-26 20:18 56320 c:\windows\system32\xmlfilter.dll
+ 2008-05-26 20:19 . 2008-05-26 20:19 97792 c:\windows\system32\UncCplExt.dll
- 2008-04-14 12:00 . 2010-04-21 13:28 46080 c:\windows\system32\tzchange.exe
+ 2008-04-14 12:00 . 2010-06-21 14:46 46080 c:\windows\system32\tzchange.exe
+ 2008-05-26 19:59 . 2008-05-26 19:59 18904 c:\windows\system32\structuredqueryschematrivial.bin
+ 2010-06-26 15:19 . 2009-05-12 13:12 26144 c:\windows\system32\spupdsvc.exe
- 2010-06-26 15:19 . 2008-11-07 16:55 26144 c:\windows\system32\spupdsvc.exe
- 2010-06-26 15:25 . 2008-11-07 16:55 16928 c:\windows\system32\spmsg.dll
+ 2010-06-26 15:25 . 2009-05-12 13:12 16928 c:\windows\system32\spmsg.dll
+ 2008-05-26 20:17 . 2008-05-26 20:17 87552 c:\windows\system32\searchfilterhost.exe
+ 2008-05-26 20:18 . 2008-05-26 20:18 38400 c:\windows\system32\rtffilt.dll
+ 2010-10-02 16:09 . 2010-04-03 20:55 61440 c:\windows\system32\ReinstallBackups\0007\DriverFiles\OpenCL.dll
+ 2008-05-26 20:18 . 2008-05-26 20:18 71680 c:\windows\system32\propdefs.dll
+ 2008-04-14 12:00 . 2010-10-02 16:19 87950 c:\windows\system32\perfc009.dat
+ 2010-06-26 14:25 . 2010-07-10 03:38 61440 c:\windows\system32\OpenCL.dll
- 2010-06-26 14:25 . 2010-04-03 20:55 61440 c:\windows\system32\OpenCL.dll
+ 2008-05-26 20:19 . 2008-05-26 20:19 11264 c:\windows\system32\oephRes.dll
+ 2008-04-14 12:00 . 2008-03-07 17:02 98304 c:\windows\system32\nlhtml.dll
- 2008-04-14 12:00 . 2008-04-14 12:00 98304 c:\windows\system32\nlhtml.dll
+ 2008-05-26 20:18 . 2008-05-26 20:18 44032 c:\windows\system32\msstrc.dll
+ 2008-05-26 20:17 . 2008-05-26 20:17 32768 c:\windows\system32\mssprxy.dll
+ 2008-05-26 20:17 . 2008-05-26 20:17 87552 c:\windows\system32\mssitlb.dll
+ 2008-05-26 20:17 . 2008-05-26 20:17 11776 c:\windows\system32\msshooks.dll
+ 2008-05-26 20:17 . 2008-05-26 20:17 60416 c:\windows\system32\msscntrs.dll
+ 2008-05-26 20:17 . 2008-05-26 20:17 34816 c:\windows\system32\msscb.dll
+ 2008-04-14 12:00 . 2008-03-07 17:02 29696 c:\windows\system32\mimefilt.dll
- 2008-04-14 12:00 . 2008-04-14 12:00 29696 c:\windows\system32\mimefilt.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 70472 c:\windows\system32\dxva2.dll
+ 2008-04-14 12:00 . 2008-03-07 17:02 98304 c:\windows\system32\dllcache\nlhtml.dll
- 2008-04-14 12:00 . 2008-04-14 12:00 98304 c:\windows\system32\dllcache\nlhtml.dll
- 2008-04-14 12:00 . 2008-04-14 12:00 29696 c:\windows\system32\dllcache\mimefilt.dll
+ 2008-04-14 12:00 . 2008-03-07 17:02 29696 c:\windows\system32\dllcache\mimefilt.dll
+ 2010-06-26 16:02 . 2010-08-26 11:08 13312 c:\windows\system32\dllcache\iecompat.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 17760 c:\windows\system32\aspnet_counters.dll
+ 2001-07-14 15:32 . 2001-07-14 15:32 69632 c:\windows\setupupd\temp\wsdueng.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 97624 c:\windows\Microsoft.NET\Framework\v4.0.30319\XamlBuildTask.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 87408 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\WindowsFormsIntegration.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 93024 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\UIAutomationTypes.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 35688 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\UIAutomationProvider.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 17784 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\System.Windows.Presentation.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 58240 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\System.Windows.Input.Manipulations.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 67912 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\PenIMC.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 10624 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\cs\WindowsFormsIntegration.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 82792 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\cs\WindowsBase.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 13688 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\cs\UIAutomationTypes.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 10104 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\cs\UIAutomationProvider.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 16272 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\cs\UIAutomationClientsideProviders.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 15224 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\cs\UIAutomationClient.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 11160 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\cs\System.Windows.Input.Manipulations.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 55152 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\cs\System.Speech.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 22384 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\cs\System.Printing.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 33136 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\cs\ReachFramework.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 46464 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\cs\PresentationBuildTasks.resources.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 31576 c:\windows\Microsoft.NET\Framework\v4.0.30319\WMINet_Utils.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 14160 c:\windows\Microsoft.NET\Framework\v4.0.30319\webengine.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 69960 c:\windows\Microsoft.NET\Framework\v4.0.30319\TLBREF.DLL
+ 2010-03-18 14:47 . 2010-03-18 14:47 29544 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Xaml.Hosting.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 70040 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Windows.Forms.DataVisualization.Design.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 24928 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Web.Routing.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 81272 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Web.RegularExpressions.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 33144 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Web.DynamicData.Design.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 93576 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Web.DataVisualization.Design.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 44920 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Web.ApplicationServices.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 24944 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Web.Abstractions.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 28024 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.ServiceModel.WasHosting.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 12168 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.ServiceModel.ServiceMoniker40.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 37240 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.ServiceModel.Channels.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 95592 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Caching.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 64352 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Numerics.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 45952 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.EnterpriseServices.Thunk.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 86888 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Drawing.Design.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 51032 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Device.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 50552 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Data.DataSetExtensions.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 81784 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Configuration.Install.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 81800 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.ComponentModel.DataAnnotations.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 39784 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.AddIn.Contract.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 68952 c:\windows\Microsoft.NET\Framework\v4.0.30319\SMDiagnostics.dll
+ 2010-06-14 22:59 . 2010-06-14 22:59 96088 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ExtendedLP\SetupUtility.exe
+ 2010-03-18 20:16 . 2010-03-18 20:16 78152 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ExtendedLP\Setup.exe
+ 2010-03-18 20:16 . 2010-03-18 20:16 17240 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ExtendedLP\1033\SetupResources.dll
+ 2010-06-15 09:33 . 2010-06-15 09:33 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ExtendedLP\1029\SetupResources.dll
+ 2010-03-18 19:58 . 2010-03-18 19:58 96088 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\SetupUtility.exe
+ 2010-03-18 20:16 . 2010-03-18 20:16 78152 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\Setup.exe
+ 2010-03-18 20:16 . 2010-03-18 20:16 18776 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\3082\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 14168 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\3076\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18776 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\2070\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 14168 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\2052\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 17752 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1055\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 17752 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1053\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1049\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1046\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1045\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 17752 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1044\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 19288 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1043\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 15192 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1042\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 15704 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1041\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1040\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18776 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1038\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 16728 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1037\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18776 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1036\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1035\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 17240 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1033\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 19288 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1032\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18776 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1031\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1030\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1029\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 14168 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1028\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 17240 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1025\SetupResources.dll
+ 2010-06-14 22:59 . 2010-06-14 22:59 96088 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ClientLP\SetupUtility.exe
+ 2010-03-18 20:16 . 2010-03-18 20:16 78152 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ClientLP\Setup.exe
+ 2010-03-18 20:16 . 2010-03-18 20:16 17240 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ClientLP\1033\SetupResources.dll
+ 2010-06-15 09:33 . 2010-06-15 09:33 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ClientLP\1029\SetupResources.dll
+ 2010-03-18 19:58 . 2010-03-18 19:58 96088 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\SetupUtility.exe
+ 2010-03-18 20:16 . 2010-03-18 20:16 78152 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\Setup.exe
+ 2010-03-18 20:16 . 2010-03-18 20:16 18776 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\3082\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 14168 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\3076\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18776 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\2070\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 14168 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\2052\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 17752 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1055\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 17752 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1053\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1049\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1046\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1045\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 17752 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1044\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 19288 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1043\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 15192 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1042\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 15704 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1041\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1040\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18776 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1038\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 16728 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1037\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18776 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1036\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1035\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 17240 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1033\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 19288 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1032\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18776 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1031\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1030\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1029\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 14168 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1028\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 17240 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1025\SetupResources.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 17256 c:\windows\Microsoft.NET\Framework\v4.0.30319\ServiceMonikerSupport.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 13648 c:\windows\Microsoft.NET\Framework\v4.0.30319\SbsNclPerf.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 58192 c:\windows\Microsoft.NET\Framework\v4.0.30319\regtlibv12.exe
+ 2010-03-18 11:16 . 2010-03-18 11:16 32592 c:\windows\Microsoft.NET\Framework\v4.0.30319\RegSvcs.exe
+ 2010-03-18 11:16 . 2010-03-18 11:16 52040 c:\windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
+ 2010-03-18 11:16 . 2010-03-18 11:16 21336 c:\windows\Microsoft.NET\Framework\v4.0.30319\normalization.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 56656 c:\windows\Microsoft.NET\Framework\v4.0.30319\nlssorting.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 27984 c:\windows\Microsoft.NET\Framework\v4.0.30319\MUI\0409\mscorsecr.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 15184 c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsn.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 40784 c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorpe.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 20816 c:\windows\Microsoft.NET\Framework\v4.0.30319\mscoreeis.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 96592 c:\windows\Microsoft.NET\Framework\v4.0.30319\MmcAspExt.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 21880 c:\windows\Microsoft.NET\Framework\v4.0.30319\Microsoft.Workflow.Compiler.exe
+ 2010-03-18 14:47 . 2010-03-18 14:47 40304 c:\windows\Microsoft.NET\Framework\v4.0.30319\Microsoft.VisualC.STLCLR.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 12128 c:\windows\Microsoft.NET\Framework\v4.0.30319\Microsoft.VisualC.Dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 97680 c:\windows\Microsoft.NET\Framework\v4.0.30319\Microsoft.VisualBasic.Compatibility.Data.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 38784 c:\windows\Microsoft.NET\Framework\v4.0.30319\Microsoft.Data.Entity.Build.Tasks.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 67968 c:\windows\Microsoft.NET\Framework\v4.0.30319\Microsoft.Build.Conversion.v4.0.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 36168 c:\windows\Microsoft.NET\Framework\v4.0.30319\jsc.exe
+ 2010-03-18 11:16 . 2010-03-18 11:16 78168 c:\windows\Microsoft.NET\Framework\v4.0.30319\ISymWrapper.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 58200 c:\windows\Microsoft.NET\Framework\v4.0.30319\InstallUtilLib.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 27992 c:\windows\Microsoft.NET\Framework\v4.0.30319\InstallUtil.exe
+ 2010-03-18 11:16 . 2010-03-18 11:16 42312 c:\windows\Microsoft.NET\Framework\v4.0.30319\fusion.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 84296 c:\windows\Microsoft.NET\Framework\v4.0.30319\EdmGen.exe
+ 2010-03-18 11:16 . 2010-03-18 11:16 11592 c:\windows\Microsoft.NET\Framework\v4.0.30319\dfsvc.exe
+ 2010-03-18 11:16 . 2010-03-18 11:16 88904 c:\windows\Microsoft.NET\Framework\v4.0.30319\dfdll.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 60248 c:\windows\Microsoft.NET\Framework\v4.0.30319\DataSvcUtil.exe
+ 2010-03-18 11:16 . 2010-03-18 11:16 31048 c:\windows\Microsoft.NET\Framework\v4.0.30319\cvtres.exe
+ 2010-03-18 11:16 . 2010-03-18 11:16 81248 c:\windows\Microsoft.NET\Framework\v4.0.30319\CustomMarshalers.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 44368 c:\windows\Microsoft.NET\Framework\v4.0.30319\Culture.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 15728 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\XamlBuildTask.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 26984 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\WsatConfig.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 13680 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Xml.Linq.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 60776 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Xaml.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 11640 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Xaml.Hosting.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 91008 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.WorkflowServices.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 36736 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Workflow.Runtime.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 77688 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Web.Services.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 72056 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Web.Mobile.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 42376 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Web.Extensions.Design.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 22392 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Web.Entity.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 19840 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Web.Entity.Design.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 28544 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Web.DynamicData.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 10640 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Web.DynamicData.Design.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 12176 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Web.ApplicationServices.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 22904 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Transactions.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 36224 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.ServiceProcess.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 46976 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.ServiceModel.Web.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 17288 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.ServiceModel.Routing.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 12168 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.ServiceModel.Channels.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 45968 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.ServiceModel.Discovery.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 40848 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.ServiceModel.Activities.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 32144 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.ServiceModel.Activation.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 24432 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Security.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 99208 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.RunTime.Serialization.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 17840 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 26496 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Runtime.Remoting.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 48528 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Runtime.DurableInstancing.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 12672 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Runtime.Caching.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 12144 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Numerics.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 24424 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Net.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 72048 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Messaging.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 19320 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Management.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 16792 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Management.Instrumentation.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 16752 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.IO.Log.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 48016 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.IdentityModel.Selectors.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 50040 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.IdentityModel.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 28552 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.EnterpriseServices.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 12144 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Dynamic.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 20848 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Drawing.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 12160 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Drawing.Design.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 35712 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.DirectoryServices.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 22936 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.DirectoryServices.Protocols.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 30632 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.DirectoryServices.AccountManagement.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 10608 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Device.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 33144 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\system.data.sqlxml.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 88440 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Data.Services.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 18312 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Data.Services.Design.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 44424 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Data.Services.Client.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 49008 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Data.Linq.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 11152 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Data.DataSetExtensions.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 81256 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Core.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 42872 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Configuration.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 23944 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Configuration.Install.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 17824 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.ComponentModel.DataAnnotations.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 29592 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.ComponentModel.Composition.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 23912 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.AddIn.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 16280 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Activities.DurableInstancing.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 16736 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\sysglobl.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 16744 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\SMSvcHost.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 10608 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\SMDiagnostics.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 16224 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\Regasm.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 41312 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\MSBuild.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 10120 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\Microsoft.Workflow.Compiler.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 53632 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\Microsoft.VisualBasic.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 15256 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\Microsoft.VisualBasic.Compatibility.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 14760 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\Microsoft.VisualBasic.Compatibility.Data.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 23952 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\Microsoft.Transactions.Bridge.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 11160 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\Microsoft.Transactions.Bridge.Dtc.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 39800 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\Microsoft.JScript.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 12184 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\Microsoft.Data.Entity.Build.Tasks.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 29040 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\Microsoft.CSharp.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 23440 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\Microsoft.Build.Utilities.v4.0.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 66928 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\Microsoft.Build.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 61824 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\Microsoft.Build.Engine.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 12176 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\Microsoft.Build.Conversion.v4.0.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 13144 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\JSC.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 10088 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\InstallUtil.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 19808 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\EdmGen.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 14696 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\DataSvcUtil.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 11632 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\CustomMarshalers.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 29544 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\ComSvcConfig.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 29024 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\caspol.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 34160 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\aspnet_regsql.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 11640 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\aspnet_regbrowsers.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 84304 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\aspnet_rc.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 14704 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\aspnet_compiler.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 11112 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\AddInUtil.resources.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 95048 c:\windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe
+ 2010-03-18 14:47 . 2010-03-18 14:47 32592 c:\windows\Microsoft.NET\Framework\v4.0.30319\aspnet_wp.exe
+ 2010-03-18 14:47 . 2010-03-18 14:47 35160 c:\windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
+ 2010-03-18 14:47 . 2010-03-18 14:47 30040 c:\windows\Microsoft.NET\Framework\v4.0.30319\aspnet_regiis.exe
+ 2010-03-18 14:47 . 2010-03-18 14:47 19808 c:\windows\Microsoft.NET\Framework\v4.0.30319\aspnet_regbrowsers.exe
+ 2010-03-18 14:47 . 2010-03-18 14:47 78160 c:\windows\Microsoft.NET\Framework\v4.0.30319\aspnet_rc.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 30040 c:\windows\Microsoft.NET\Framework\v4.0.30319\Aspnet_perf.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 14168 c:\windows\Microsoft.NET\Framework\v4.0.30319\aspnet_isapi.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 24408 c:\windows\Microsoft.NET\Framework\v4.0.30319\aspnet_filter.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 30048 c:\windows\Microsoft.NET\Framework\v4.0.30319\aspnet_compiler.exe
+ 2010-03-18 11:16 . 2010-03-18 11:16 29008 c:\windows\Microsoft.NET\Framework\v4.0.30319\AddInUtil.exe
+ 2010-03-18 11:16 . 2010-03-18 11:16 29528 c:\windows\Microsoft.NET\Framework\v4.0.30319\AddInProcess32.exe
+ 2010-03-18 11:16 . 2010-03-18 11:16 29016 c:\windows\Microsoft.NET\Framework\v4.0.30319\AddInProcess.exe
+ 2010-03-18 11:16 . 2010-03-18 11:16 17240 c:\windows\Microsoft.NET\Framework\v4.0.30319\Accessibility.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 11608 c:\windows\Microsoft.NET\Framework\v4.0.30319\1033\FileTrackerUI.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 10064 c:\windows\Microsoft.NET\Framework\v4.0.30319\1033\CvtResUI.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 24400 c:\windows\Microsoft.NET\Framework\v4.0.30319\1033\alinkui.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 27984 c:\windows\Microsoft.NET\Framework\v4.0.30319\1029\mscorsecr.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 12128 c:\windows\Microsoft.NET\Framework\v4.0.30319\1029\mscorees.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 21328 c:\windows\Microsoft.NET\Framework\v4.0.30319\1029\mscoreeis.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 11608 c:\windows\Microsoft.NET\Framework\v4.0.30319\1029\FileTrackerUI.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 10064 c:\windows\Microsoft.NET\Framework\v4.0.30319\1029\CvtResUI.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 25936 c:\windows\Microsoft.NET\Framework\v4.0.30319\1029\alinkui.dll
- 2010-03-23 03:31 . 2010-03-23 03:31 30544 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_wp.exe
+ 2010-09-22 07:43 . 2010-09-22 07:43 30544 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_wp.exe
+ 2010-09-23 13:55 . 2010-09-23 13:55 81920 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Security.dll
- 2010-04-01 09:42 . 2010-04-01 09:42 81920 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Security.dll
- 2010-03-31 12:51 . 2010-03-31 12:51 77824 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsn.dll
+ 2010-09-23 00:26 . 2010-09-23 00:26 77824 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsn.dll
- 2010-03-31 12:51 . 2010-03-31 12:51 86016 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorie.dll
+ 2010-09-23 00:26 . 2010-09-23 00:26 86016 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorie.dll
+ 2010-09-23 00:26 . 2010-09-23 00:26 81920 c:\windows\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
- 2010-03-31 12:51 . 2010-03-31 12:51 81920 c:\windows\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
- 2010-03-31 13:32 . 2010-03-31 13:32 32768 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
+ 2010-09-23 01:17 . 2010-09-23 01:17 32768 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
+ 2010-09-23 01:17 . 2010-09-23 01:17 24576 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_filter.dll
- 2010-03-31 13:32 . 2010-03-31 13:32 24576 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_filter.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 13648 c:\windows\Microsoft.NET\Framework\sbscmp20_mscorlib.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 13648 c:\windows\Microsoft.NET\Framework\sbs_wminet_utils.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 13648 c:\windows\Microsoft.NET\Framework\sbs_system.enterpriseservices.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 13648 c:\windows\Microsoft.NET\Framework\sbs_system.data.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 13648 c:\windows\Microsoft.NET\Framework\sbs_system.configuration.install.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 13648 c:\windows\Microsoft.NET\Framework\sbs_mscorsec.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 13648 c:\windows\Microsoft.NET\Framework\sbs_mscorrc.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 13648 c:\windows\Microsoft.NET\Framework\sbs_mscordbi.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 13648 c:\windows\Microsoft.NET\Framework\sbs_microsoft.jscript.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 13648 c:\windows\Microsoft.NET\Framework\sbs_diasymreader.dll
ComboFix 10-10-01.07 - KOCUS 02.10.2010 23:13:19.4.2 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1250.420.1029.18.3327.2588 [GMT 2:00]
Spuštěný z: c:\documents and settings\KOCUS\Plocha\ComboFix.exe
AV: ESET Smart Security 4.0 *On-access scanning disabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: ESET personal firewall *disabled* {E5E70D32-0101-4340-86A3-A7B0F1C8FFE0}
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-09-02 do 2010-10-02 )))))))))))))))))))))))))))))))
.
2010-10-02 19:31 . 2010-10-02 19:31 -------- d--h--w- c:\windows\PIF
2010-10-02 16:24 . 2010-10-02 21:05 -------- d-----w- c:\program files\Windows Desktop Search
2010-10-02 16:24 . 2010-10-02 16:24 -------- d-----w- c:\windows\system32\GroupPolicy
2010-10-02 16:10 . 2010-10-02 16:10 232968 ----a-w- c:\windows\system32\nvdrsdb0.bin
2010-10-02 16:10 . 2010-10-02 16:10 1 ----a-w- c:\windows\system32\nvdrssel.bin
2010-10-02 16:10 . 2010-10-02 16:10 232968 ----a-w- c:\windows\system32\nvdrsdb1.bin
2010-09-29 02:25 . 2010-09-29 02:25 -------- d-----w- c:\program files\City Interactive
2010-09-28 18:38 . 2010-09-28 20:38 -------- d-----w- C:\rsit
2010-09-28 18:38 . 2010-09-28 20:37 -------- d-----w- c:\program files\trend micro
2010-09-24 01:20 . 2010-09-24 01:32 -------- d-----w- c:\program files\Touchstone
2010-09-20 02:26 . 2010-09-20 02:26 -------- d-----w- c:\program files\ReflexiveArcade
2010-09-19 23:48 . 2010-09-20 00:19 -------- d-----w- c:\program files\Steam
2010-09-19 23:41 . 2010-09-19 23:41 -------- d-----w- c:\program files\Alcohol Soft
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-10-02 16:24 . 2008-04-14 12:00 518512 ----a-w- c:\windows\system32\perfh005.dat
2010-10-02 16:24 . 2008-04-14 12:00 111028 ----a-w- c:\windows\system32\perfc005.dat
2010-10-02 16:09 . 2010-06-26 14:25 -------- d-----w- c:\program files\NVIDIA Corporation
2010-10-02 16:07 . 2010-06-26 17:17 -------- d-----w- c:\program files\Microsoft.NET
2010-10-02 14:59 . 2010-06-26 17:04 -------- d-----w- c:\program files\Microsoft Silverlight
2010-09-29 02:31 . 2010-06-26 14:25 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-09-28 19:47 . 2010-06-26 21:22 -------- d-----w- c:\program files\Total Video Converter
2010-09-28 19:47 . 2008-08-08 16:05 -------- d-----w- c:\program files\Vivid WorkshopData ATI
2010-09-27 16:39 . 2010-06-26 22:41 -------- d-----w- c:\program files\uTorrent
2010-09-19 23:39 . 2010-06-26 18:26 697328 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-09-17 21:34 . 2010-06-26 21:09 -------- d-----w- c:\program files\Spyware Doctor
2010-09-17 18:59 . 2010-06-26 21:58 -------- d-----w- c:\program files\CCleaner
2010-08-27 02:42 . 2010-08-27 02:42 -------- d-----w- c:\program files\DjVuZone
2010-08-26 20:29 . 2010-06-26 14:06 -------- d-----w- c:\program files\AMD
2010-08-26 16:59 . 2010-08-26 16:59 -------- d-----w- c:\program files\Desktop Icon Toy
2010-08-26 04:08 . 2010-08-26 04:08 -------- d-----w- c:\program files\FreeTime
2010-08-25 23:24 . 2010-06-26 22:26 -------- d-----w- c:\program files\Common Files\Java
2010-08-25 23:24 . 2010-06-26 22:26 -------- d-----w- c:\program files\Java
2010-08-17 13:17 . 2008-04-14 12:00 58880 ----a-w- c:\windows\system32\spoolsv.exe
2010-08-05 06:59 . 2010-08-05 06:59 61440 ----a-w- c:\documents and settings\KOCUS\Data aplikací\Sun\Java\Deployment\SystemCache\6.0\42\4488892a-13b22a42-n\decora-sse.dll
2010-08-05 06:59 . 2010-08-05 06:59 503808 ----a-w- c:\documents and settings\KOCUS\Data aplikací\Sun\Java\Deployment\SystemCache\6.0\4\7ec4bf04-3a4f4b93-n\msvcp71.dll
2010-08-05 06:59 . 2010-08-05 06:59 499712 ----a-w- c:\documents and settings\KOCUS\Data aplikací\Sun\Java\Deployment\SystemCache\6.0\4\7ec4bf04-3a4f4b93-n\jmc.dll
2010-08-05 06:59 . 2010-08-05 06:59 348160 ----a-w- c:\documents and settings\KOCUS\Data aplikací\Sun\Java\Deployment\SystemCache\6.0\4\7ec4bf04-3a4f4b93-n\msvcr71.dll
2010-08-05 06:59 . 2010-08-05 06:59 12800 ----a-w- c:\documents and settings\KOCUS\Data aplikací\Sun\Java\Deployment\SystemCache\6.0\42\4488892a-13b22a42-n\decora-d3d.dll
2010-08-05 06:49 . 2010-08-05 06:49 -------- d-----w- c:\program files\Autodesk WHIP!
2010-08-05 06:24 . 2010-08-05 06:24 -------- d-----w- c:\program files\Common Files\Real
2010-08-05 06:24 . 2010-06-26 21:44 -------- d-----w- c:\program files\Common Files\Adobe
2010-08-05 05:28 . 2010-08-05 05:25 -------- d--h--w- c:\program files\Zero G Registry
2010-07-29 13:12 . 2010-07-20 10:42 397312 ----a-w- c:\windows\esi_kl01.dat
2010-07-22 15:46 . 2008-04-14 12:00 590848 ----a-w- c:\windows\system32\rpcrt4.dll
2010-07-22 06:19 . 2008-05-05 05:25 5632 ----a-w- c:\windows\system32\xpsp4res.dll
2010-07-17 03:00 . 2010-06-26 23:16 423656 ----a-w- c:\windows\system32\deployJava1.dll
2010-07-09 14:24 . 2010-07-09 14:24 81920 ----a-w- c:\windows\system32\nvwddi.dll
2010-07-09 14:24 . 2010-07-09 14:24 277608 ----a-w- c:\windows\system32\nvmccs.dll
2010-07-09 14:24 . 2010-07-09 14:24 110696 ----a-w- c:\windows\system32\nvmctray.dll
2010-07-09 14:24 . 2010-07-09 14:24 155752 ----a-w- c:\windows\system32\nvsvc32.exe
2010-07-09 14:24 . 2010-07-09 14:24 145000 ----a-w- c:\windows\system32\nvcolor.exe
2010-07-09 14:24 . 2010-07-09 14:24 13923432 ----a-w- c:\windows\system32\nvcpl.dll
2010-07-08 06:59 . 2010-07-08 06:59 664 ----a-w- c:\windows\system32\d3d9caps.dat
.
------- Sigcheck -------
[7] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
[7] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys
[-] 2008-06-20 . CD00787894008369F56153B91FC28847 . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys
[7] 2008-04-14 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys
.
((((((((((((((((((((((((((((( SnapShot_2010-09-28_21.30.35 )))))))))))))))))))))))))))))))))))))))))
.
+ 2010-10-02 16:19 . 2010-10-02 16:19 21880 c:\windows\WinSxS\MSIL_Microsoft.Workflow.Compiler_31bf3856ad364e35_4.0.0.0_x-ww_97359ba5\Microsoft.Workflow.Compiler.exe
+ 2010-10-02 21:07 . 2010-10-02 21:07 16384 c:\windows\Temp\Perflib_Perfdata_810.dat
+ 2008-05-26 20:18 . 2008-05-26 20:18 56320 c:\windows\system32\xmlfilter.dll
+ 2008-05-26 20:19 . 2008-05-26 20:19 97792 c:\windows\system32\UncCplExt.dll
- 2008-04-14 12:00 . 2010-04-21 13:28 46080 c:\windows\system32\tzchange.exe
+ 2008-04-14 12:00 . 2010-06-21 14:46 46080 c:\windows\system32\tzchange.exe
+ 2008-05-26 19:59 . 2008-05-26 19:59 18904 c:\windows\system32\structuredqueryschematrivial.bin
+ 2010-06-26 15:19 . 2009-05-12 13:12 26144 c:\windows\system32\spupdsvc.exe
- 2010-06-26 15:19 . 2008-11-07 16:55 26144 c:\windows\system32\spupdsvc.exe
- 2010-06-26 15:25 . 2008-11-07 16:55 16928 c:\windows\system32\spmsg.dll
+ 2010-06-26 15:25 . 2009-05-12 13:12 16928 c:\windows\system32\spmsg.dll
+ 2008-05-26 20:17 . 2008-05-26 20:17 87552 c:\windows\system32\searchfilterhost.exe
+ 2008-05-26 20:18 . 2008-05-26 20:18 38400 c:\windows\system32\rtffilt.dll
+ 2010-10-02 16:09 . 2010-04-03 20:55 61440 c:\windows\system32\ReinstallBackups\0007\DriverFiles\OpenCL.dll
+ 2008-05-26 20:18 . 2008-05-26 20:18 71680 c:\windows\system32\propdefs.dll
+ 2008-04-14 12:00 . 2010-10-02 16:19 87950 c:\windows\system32\perfc009.dat
+ 2010-06-26 14:25 . 2010-07-10 03:38 61440 c:\windows\system32\OpenCL.dll
- 2010-06-26 14:25 . 2010-04-03 20:55 61440 c:\windows\system32\OpenCL.dll
+ 2008-05-26 20:19 . 2008-05-26 20:19 11264 c:\windows\system32\oephRes.dll
+ 2008-04-14 12:00 . 2008-03-07 17:02 98304 c:\windows\system32\nlhtml.dll
- 2008-04-14 12:00 . 2008-04-14 12:00 98304 c:\windows\system32\nlhtml.dll
+ 2008-05-26 20:18 . 2008-05-26 20:18 44032 c:\windows\system32\msstrc.dll
+ 2008-05-26 20:17 . 2008-05-26 20:17 32768 c:\windows\system32\mssprxy.dll
+ 2008-05-26 20:17 . 2008-05-26 20:17 87552 c:\windows\system32\mssitlb.dll
+ 2008-05-26 20:17 . 2008-05-26 20:17 11776 c:\windows\system32\msshooks.dll
+ 2008-05-26 20:17 . 2008-05-26 20:17 60416 c:\windows\system32\msscntrs.dll
+ 2008-05-26 20:17 . 2008-05-26 20:17 34816 c:\windows\system32\msscb.dll
+ 2008-04-14 12:00 . 2008-03-07 17:02 29696 c:\windows\system32\mimefilt.dll
- 2008-04-14 12:00 . 2008-04-14 12:00 29696 c:\windows\system32\mimefilt.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 70472 c:\windows\system32\dxva2.dll
+ 2008-04-14 12:00 . 2008-03-07 17:02 98304 c:\windows\system32\dllcache\nlhtml.dll
- 2008-04-14 12:00 . 2008-04-14 12:00 98304 c:\windows\system32\dllcache\nlhtml.dll
- 2008-04-14 12:00 . 2008-04-14 12:00 29696 c:\windows\system32\dllcache\mimefilt.dll
+ 2008-04-14 12:00 . 2008-03-07 17:02 29696 c:\windows\system32\dllcache\mimefilt.dll
+ 2010-06-26 16:02 . 2010-08-26 11:08 13312 c:\windows\system32\dllcache\iecompat.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 17760 c:\windows\system32\aspnet_counters.dll
+ 2001-07-14 15:32 . 2001-07-14 15:32 69632 c:\windows\setupupd\temp\wsdueng.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 97624 c:\windows\Microsoft.NET\Framework\v4.0.30319\XamlBuildTask.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 87408 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\WindowsFormsIntegration.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 93024 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\UIAutomationTypes.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 35688 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\UIAutomationProvider.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 17784 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\System.Windows.Presentation.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 58240 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\System.Windows.Input.Manipulations.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 67912 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\PenIMC.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 10624 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\cs\WindowsFormsIntegration.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 82792 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\cs\WindowsBase.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 13688 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\cs\UIAutomationTypes.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 10104 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\cs\UIAutomationProvider.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 16272 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\cs\UIAutomationClientsideProviders.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 15224 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\cs\UIAutomationClient.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 11160 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\cs\System.Windows.Input.Manipulations.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 55152 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\cs\System.Speech.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 22384 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\cs\System.Printing.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 33136 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\cs\ReachFramework.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 46464 c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\cs\PresentationBuildTasks.resources.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 31576 c:\windows\Microsoft.NET\Framework\v4.0.30319\WMINet_Utils.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 14160 c:\windows\Microsoft.NET\Framework\v4.0.30319\webengine.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 69960 c:\windows\Microsoft.NET\Framework\v4.0.30319\TLBREF.DLL
+ 2010-03-18 14:47 . 2010-03-18 14:47 29544 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Xaml.Hosting.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 70040 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Windows.Forms.DataVisualization.Design.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 24928 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Web.Routing.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 81272 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Web.RegularExpressions.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 33144 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Web.DynamicData.Design.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 93576 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Web.DataVisualization.Design.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 44920 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Web.ApplicationServices.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 24944 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Web.Abstractions.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 28024 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.ServiceModel.WasHosting.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 12168 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.ServiceModel.ServiceMoniker40.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 37240 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.ServiceModel.Channels.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 95592 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Caching.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 64352 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Numerics.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 45952 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.EnterpriseServices.Thunk.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 86888 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Drawing.Design.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 51032 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Device.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 50552 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Data.DataSetExtensions.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 81784 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.Configuration.Install.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 81800 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.ComponentModel.DataAnnotations.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 39784 c:\windows\Microsoft.NET\Framework\v4.0.30319\System.AddIn.Contract.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 68952 c:\windows\Microsoft.NET\Framework\v4.0.30319\SMDiagnostics.dll
+ 2010-06-14 22:59 . 2010-06-14 22:59 96088 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ExtendedLP\SetupUtility.exe
+ 2010-03-18 20:16 . 2010-03-18 20:16 78152 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ExtendedLP\Setup.exe
+ 2010-03-18 20:16 . 2010-03-18 20:16 17240 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ExtendedLP\1033\SetupResources.dll
+ 2010-06-15 09:33 . 2010-06-15 09:33 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ExtendedLP\1029\SetupResources.dll
+ 2010-03-18 19:58 . 2010-03-18 19:58 96088 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\SetupUtility.exe
+ 2010-03-18 20:16 . 2010-03-18 20:16 78152 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\Setup.exe
+ 2010-03-18 20:16 . 2010-03-18 20:16 18776 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\3082\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 14168 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\3076\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18776 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\2070\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 14168 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\2052\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 17752 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1055\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 17752 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1053\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1049\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1046\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1045\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 17752 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1044\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 19288 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1043\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 15192 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1042\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 15704 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1041\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1040\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18776 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1038\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 16728 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1037\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18776 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1036\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1035\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 17240 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1033\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 19288 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1032\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18776 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1031\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1030\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1029\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 14168 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1028\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 17240 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\1025\SetupResources.dll
+ 2010-06-14 22:59 . 2010-06-14 22:59 96088 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ClientLP\SetupUtility.exe
+ 2010-03-18 20:16 . 2010-03-18 20:16 78152 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ClientLP\Setup.exe
+ 2010-03-18 20:16 . 2010-03-18 20:16 17240 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ClientLP\1033\SetupResources.dll
+ 2010-06-15 09:33 . 2010-06-15 09:33 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ClientLP\1029\SetupResources.dll
+ 2010-03-18 19:58 . 2010-03-18 19:58 96088 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\SetupUtility.exe
+ 2010-03-18 20:16 . 2010-03-18 20:16 78152 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\Setup.exe
+ 2010-03-18 20:16 . 2010-03-18 20:16 18776 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\3082\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 14168 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\3076\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18776 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\2070\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 14168 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\2052\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 17752 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1055\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 17752 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1053\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1049\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1046\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1045\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 17752 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1044\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 19288 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1043\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 15192 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1042\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 15704 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1041\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1040\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18776 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1038\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 16728 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1037\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18776 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1036\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1035\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 17240 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1033\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 19288 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1032\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18776 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1031\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1030\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 18264 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1029\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 14168 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1028\SetupResources.dll
+ 2010-03-18 20:16 . 2010-03-18 20:16 17240 c:\windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\1025\SetupResources.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 17256 c:\windows\Microsoft.NET\Framework\v4.0.30319\ServiceMonikerSupport.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 13648 c:\windows\Microsoft.NET\Framework\v4.0.30319\SbsNclPerf.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 58192 c:\windows\Microsoft.NET\Framework\v4.0.30319\regtlibv12.exe
+ 2010-03-18 11:16 . 2010-03-18 11:16 32592 c:\windows\Microsoft.NET\Framework\v4.0.30319\RegSvcs.exe
+ 2010-03-18 11:16 . 2010-03-18 11:16 52040 c:\windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
+ 2010-03-18 11:16 . 2010-03-18 11:16 21336 c:\windows\Microsoft.NET\Framework\v4.0.30319\normalization.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 56656 c:\windows\Microsoft.NET\Framework\v4.0.30319\nlssorting.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 27984 c:\windows\Microsoft.NET\Framework\v4.0.30319\MUI\0409\mscorsecr.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 15184 c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsn.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 40784 c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorpe.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 20816 c:\windows\Microsoft.NET\Framework\v4.0.30319\mscoreeis.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 96592 c:\windows\Microsoft.NET\Framework\v4.0.30319\MmcAspExt.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 21880 c:\windows\Microsoft.NET\Framework\v4.0.30319\Microsoft.Workflow.Compiler.exe
+ 2010-03-18 14:47 . 2010-03-18 14:47 40304 c:\windows\Microsoft.NET\Framework\v4.0.30319\Microsoft.VisualC.STLCLR.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 12128 c:\windows\Microsoft.NET\Framework\v4.0.30319\Microsoft.VisualC.Dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 97680 c:\windows\Microsoft.NET\Framework\v4.0.30319\Microsoft.VisualBasic.Compatibility.Data.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 38784 c:\windows\Microsoft.NET\Framework\v4.0.30319\Microsoft.Data.Entity.Build.Tasks.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 67968 c:\windows\Microsoft.NET\Framework\v4.0.30319\Microsoft.Build.Conversion.v4.0.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 36168 c:\windows\Microsoft.NET\Framework\v4.0.30319\jsc.exe
+ 2010-03-18 11:16 . 2010-03-18 11:16 78168 c:\windows\Microsoft.NET\Framework\v4.0.30319\ISymWrapper.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 58200 c:\windows\Microsoft.NET\Framework\v4.0.30319\InstallUtilLib.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 27992 c:\windows\Microsoft.NET\Framework\v4.0.30319\InstallUtil.exe
+ 2010-03-18 11:16 . 2010-03-18 11:16 42312 c:\windows\Microsoft.NET\Framework\v4.0.30319\fusion.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 84296 c:\windows\Microsoft.NET\Framework\v4.0.30319\EdmGen.exe
+ 2010-03-18 11:16 . 2010-03-18 11:16 11592 c:\windows\Microsoft.NET\Framework\v4.0.30319\dfsvc.exe
+ 2010-03-18 11:16 . 2010-03-18 11:16 88904 c:\windows\Microsoft.NET\Framework\v4.0.30319\dfdll.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 60248 c:\windows\Microsoft.NET\Framework\v4.0.30319\DataSvcUtil.exe
+ 2010-03-18 11:16 . 2010-03-18 11:16 31048 c:\windows\Microsoft.NET\Framework\v4.0.30319\cvtres.exe
+ 2010-03-18 11:16 . 2010-03-18 11:16 81248 c:\windows\Microsoft.NET\Framework\v4.0.30319\CustomMarshalers.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 44368 c:\windows\Microsoft.NET\Framework\v4.0.30319\Culture.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 15728 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\XamlBuildTask.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 26984 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\WsatConfig.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 13680 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Xml.Linq.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 60776 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Xaml.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 11640 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Xaml.Hosting.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 91008 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.WorkflowServices.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 36736 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Workflow.Runtime.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 77688 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Web.Services.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 72056 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Web.Mobile.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 42376 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Web.Extensions.Design.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 22392 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Web.Entity.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 19840 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Web.Entity.Design.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 28544 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Web.DynamicData.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 10640 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Web.DynamicData.Design.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 12176 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Web.ApplicationServices.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 22904 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Transactions.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 36224 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.ServiceProcess.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 46976 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.ServiceModel.Web.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 17288 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.ServiceModel.Routing.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 12168 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.ServiceModel.Channels.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 45968 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.ServiceModel.Discovery.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 40848 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.ServiceModel.Activities.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 32144 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.ServiceModel.Activation.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 24432 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Security.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 99208 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.RunTime.Serialization.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 17840 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 26496 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Runtime.Remoting.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 48528 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Runtime.DurableInstancing.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 12672 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Runtime.Caching.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 12144 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Numerics.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 24424 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Net.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 72048 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Messaging.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 19320 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Management.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 16792 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Management.Instrumentation.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 16752 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.IO.Log.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 48016 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.IdentityModel.Selectors.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 50040 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.IdentityModel.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 28552 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.EnterpriseServices.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 12144 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Dynamic.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 20848 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Drawing.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 12160 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Drawing.Design.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 35712 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.DirectoryServices.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 22936 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.DirectoryServices.Protocols.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 30632 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.DirectoryServices.AccountManagement.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 10608 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Device.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 33144 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\system.data.sqlxml.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 88440 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Data.Services.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 18312 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Data.Services.Design.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 44424 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Data.Services.Client.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 49008 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Data.Linq.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 11152 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Data.DataSetExtensions.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 81256 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Core.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 42872 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Configuration.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 23944 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Configuration.Install.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 17824 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.ComponentModel.DataAnnotations.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 29592 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.ComponentModel.Composition.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 23912 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.AddIn.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 16280 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Activities.DurableInstancing.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 16736 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\sysglobl.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 16744 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\SMSvcHost.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 10608 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\SMDiagnostics.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 16224 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\Regasm.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 41312 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\MSBuild.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 10120 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\Microsoft.Workflow.Compiler.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 53632 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\Microsoft.VisualBasic.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 15256 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\Microsoft.VisualBasic.Compatibility.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 14760 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\Microsoft.VisualBasic.Compatibility.Data.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 23952 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\Microsoft.Transactions.Bridge.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 11160 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\Microsoft.Transactions.Bridge.Dtc.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 39800 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\Microsoft.JScript.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 12184 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\Microsoft.Data.Entity.Build.Tasks.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 29040 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\Microsoft.CSharp.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 23440 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\Microsoft.Build.Utilities.v4.0.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 66928 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\Microsoft.Build.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 61824 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\Microsoft.Build.Engine.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 12176 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\Microsoft.Build.Conversion.v4.0.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 13144 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\JSC.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 10088 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\InstallUtil.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 19808 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\EdmGen.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 14696 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\DataSvcUtil.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 11632 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\CustomMarshalers.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 29544 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\ComSvcConfig.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 29024 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\caspol.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 34160 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\aspnet_regsql.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 11640 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\aspnet_regbrowsers.resources.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 84304 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\aspnet_rc.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 14704 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\aspnet_compiler.resources.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 11112 c:\windows\Microsoft.NET\Framework\v4.0.30319\cs\AddInUtil.resources.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 95048 c:\windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe
+ 2010-03-18 14:47 . 2010-03-18 14:47 32592 c:\windows\Microsoft.NET\Framework\v4.0.30319\aspnet_wp.exe
+ 2010-03-18 14:47 . 2010-03-18 14:47 35160 c:\windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
+ 2010-03-18 14:47 . 2010-03-18 14:47 30040 c:\windows\Microsoft.NET\Framework\v4.0.30319\aspnet_regiis.exe
+ 2010-03-18 14:47 . 2010-03-18 14:47 19808 c:\windows\Microsoft.NET\Framework\v4.0.30319\aspnet_regbrowsers.exe
+ 2010-03-18 14:47 . 2010-03-18 14:47 78160 c:\windows\Microsoft.NET\Framework\v4.0.30319\aspnet_rc.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 30040 c:\windows\Microsoft.NET\Framework\v4.0.30319\Aspnet_perf.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 14168 c:\windows\Microsoft.NET\Framework\v4.0.30319\aspnet_isapi.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 24408 c:\windows\Microsoft.NET\Framework\v4.0.30319\aspnet_filter.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 30048 c:\windows\Microsoft.NET\Framework\v4.0.30319\aspnet_compiler.exe
+ 2010-03-18 11:16 . 2010-03-18 11:16 29008 c:\windows\Microsoft.NET\Framework\v4.0.30319\AddInUtil.exe
+ 2010-03-18 11:16 . 2010-03-18 11:16 29528 c:\windows\Microsoft.NET\Framework\v4.0.30319\AddInProcess32.exe
+ 2010-03-18 11:16 . 2010-03-18 11:16 29016 c:\windows\Microsoft.NET\Framework\v4.0.30319\AddInProcess.exe
+ 2010-03-18 11:16 . 2010-03-18 11:16 17240 c:\windows\Microsoft.NET\Framework\v4.0.30319\Accessibility.dll
+ 2010-03-18 14:47 . 2010-03-18 14:47 11608 c:\windows\Microsoft.NET\Framework\v4.0.30319\1033\FileTrackerUI.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 10064 c:\windows\Microsoft.NET\Framework\v4.0.30319\1033\CvtResUI.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 24400 c:\windows\Microsoft.NET\Framework\v4.0.30319\1033\alinkui.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 27984 c:\windows\Microsoft.NET\Framework\v4.0.30319\1029\mscorsecr.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 12128 c:\windows\Microsoft.NET\Framework\v4.0.30319\1029\mscorees.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 21328 c:\windows\Microsoft.NET\Framework\v4.0.30319\1029\mscoreeis.dll
+ 2010-06-15 01:26 . 2010-06-15 01:26 11608 c:\windows\Microsoft.NET\Framework\v4.0.30319\1029\FileTrackerUI.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 10064 c:\windows\Microsoft.NET\Framework\v4.0.30319\1029\CvtResUI.dll
+ 2010-06-15 00:33 . 2010-06-15 00:33 25936 c:\windows\Microsoft.NET\Framework\v4.0.30319\1029\alinkui.dll
- 2010-03-23 03:31 . 2010-03-23 03:31 30544 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_wp.exe
+ 2010-09-22 07:43 . 2010-09-22 07:43 30544 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_wp.exe
+ 2010-09-23 13:55 . 2010-09-23 13:55 81920 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Security.dll
- 2010-04-01 09:42 . 2010-04-01 09:42 81920 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Security.dll
- 2010-03-31 12:51 . 2010-03-31 12:51 77824 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsn.dll
+ 2010-09-23 00:26 . 2010-09-23 00:26 77824 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsn.dll
- 2010-03-31 12:51 . 2010-03-31 12:51 86016 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorie.dll
+ 2010-09-23 00:26 . 2010-09-23 00:26 86016 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorie.dll
+ 2010-09-23 00:26 . 2010-09-23 00:26 81920 c:\windows\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
- 2010-03-31 12:51 . 2010-03-31 12:51 81920 c:\windows\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
- 2010-03-31 13:32 . 2010-03-31 13:32 32768 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
+ 2010-09-23 01:17 . 2010-09-23 01:17 32768 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
+ 2010-09-23 01:17 . 2010-09-23 01:17 24576 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_filter.dll
- 2010-03-31 13:32 . 2010-03-31 13:32 24576 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_filter.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 13648 c:\windows\Microsoft.NET\Framework\sbscmp20_mscorlib.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 13648 c:\windows\Microsoft.NET\Framework\sbs_wminet_utils.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 13648 c:\windows\Microsoft.NET\Framework\sbs_system.enterpriseservices.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 13648 c:\windows\Microsoft.NET\Framework\sbs_system.data.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 13648 c:\windows\Microsoft.NET\Framework\sbs_system.configuration.install.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 13648 c:\windows\Microsoft.NET\Framework\sbs_mscorsec.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 13648 c:\windows\Microsoft.NET\Framework\sbs_mscorrc.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 13648 c:\windows\Microsoft.NET\Framework\sbs_mscordbi.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 13648 c:\windows\Microsoft.NET\Framework\sbs_microsoft.jscript.dll
+ 2010-03-18 11:16 . 2010-03-18 11:16 13648 c:\windows\Microsoft.NET\Framework\sbs_diasymreader.dll