Logfile of random's system information tool 1.06 (written by random/random)
Run by Dusan at 2010-12-28 17:21:35
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 30 GB (85%) free of 35 GB
Total RAM: 1023 MB (39% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:21:50, on 28.12.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe
C:\PROGRA~1\Fun4IM\Bandoo.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Dusan\Dokumenty\Preberanie\Universal-USB-Installer-1.8.2.0.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Documents and Settings\Dusan\Dokumenty\Preberanie\RSIT.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\trend micro\Dusan.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O1 - Hosts: 64.79.73.154 drghwaweg45j4i6u3q32fg2h.com
O2 - BHO: Searchqu Toolbar - {7FF99715-3016-4381-84CE-E4E4C9673020} - C:\PROGRA~1\WI9130~1\ToolBar\SearchquDx.dll
O2 - BHO: (no name) - {98B89810-9810-98B8-1098-B8981098B898} - c:\windows\system32\alk1f6.dll (file missing)
O2 - BHO: Bandoo IE Plugin - {EB5CEE80-030A-4ED8-8E20-454E9C68380F} - C:\Program Files\Fun4IM\Plugins\IE\ieplugin.dll
O3 - Toolbar: Searchqu Toolbar - {7FF99715-3016-4381-84CE-E4E4C9673020} - C:\PROGRA~1\WI9130~1\ToolBar\SearchquDx.dll
O4 - HKLM\..\Run: [AtiPTA] atiptaxx.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
O4 - HKLM\..\Run: [DATAMNGR] C:\PROGRA~1\WI9130~1\Datamngr\DATAMN~1.EXE
O4 - HKLM\..\Run: [SoundMAX] C:\Program Files\Analog Devices\SoundMAX\Smax4.exe /tray
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe"
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Advanced SystemCare 3] "C:\Program Files\IObit\Advanced SystemCare 3\AWC.exe" /startup
O4 - HKCU\..\Run: [SmartRAM] "C:\Program Files\IObit\Advanced SystemCare 3\Sup_SmartRAM.exe" /m
O4 - HKLM\..\Policies\Explorer\Run: [4ckx] C:\WINDOWS\TEMP\0e9i.exe
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: setup_9.0.0.722_22.02.2010_16-05.lnk = C:\Documents and Settings\Dusan\Plocha\Virus Removal Tool\setup_9.0.0.722_22.02.2010_16-05\startup.exe
O4 - Global Startup: Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe
O9 - Extra button: Web Anti-Virus statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\SCIEPlgn.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O13 - Gopher Prefix:
O20 - AppInit_DLLs: c:\progra~1\wi9130~1\datamngr\datamngr.dll c:\progra~1\kasper~1\kasper~1.0\adialhk.dll c:\progra~1\fun4im\bndhook.dll
O20 - Winlogon Notify: RailNotification - C:\WINDOWS\
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Kaspersky Internet Security 7.0 (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe
O23 - Service: Fun4IM Coordinator - Bandoo Media Inc. - C:\PROGRA~1\Fun4IM\Bandoo.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
--
End of file - 5542 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\User_Feed_Synchronization-{75D9A5B6-22A3-47F4-AA5D-559AC3AA1AD1}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7FF99715-3016-4381-84CE-E4E4C9673020}]
Searchqu Toolbar - C:\PROGRA~1\WI9130~1\ToolBar\SearchquDx.dll [2010-02-10 87488]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{98B89810-9810-98B8-1098-B8981098B898}]
c:\windows\system32\alk1f6.dll [2010-12-27 743424]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EB5CEE80-030A-4ED8-8E20-454E9C68380F}]
BandooIEPlugin Class - C:\Program Files\Fun4IM\Plugins\IE\ieplugin.dll [2010-11-19 2200464]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{7FF99715-3016-4381-84CE-E4E4C9673020} - Searchqu Toolbar - C:\PROGRA~1\WI9130~1\ToolBar\SearchquDx.dll [2010-02-10 87488]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AtiPTA"=C:\WINDOWS\system32\atiptaxx.exe [2006-02-22 372736]
"SoundMAXPnP"=C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe [2004-10-14 1417216]
"DATAMNGR"=C:\PROGRA~1\WI9130~1\Datamngr\DATAMN~1.EXE [2010-11-04 985488]
"SoundMAX"=C:\Program Files\Analog Devices\SoundMAX\Smax4.exe [2004-09-23 888832]
"KernelFaultCheck"=C:\WINDOWS\system32\dumprep 0 -k []
"AVP"=C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe [2007-06-28 218376]
"Malwarebytes' Anti-Malware (reboot)"=C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe [2010-12-20 963976]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"4ckx"=C:\WINDOWS\TEMP\0e9i.exe []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 42496]
"Advanced SystemCare 3"=C:\Program Files\IObit\Advanced SystemCare 3\AWC.exe [2010-12-16 2402512]
"SmartRAM"=C:\Program Files\IObit\Advanced SystemCare 3\Sup_SmartRAM.exe [2010-07-21 198864]
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Windows Search.lnk - C:\Program Files\Windows Desktop Search\WindowsSearch.exe
C:\Documents and Settings\Dusan\Nabídka Start\Programy\Po spuštění
setup_9.0.0.722_22.02.2010_16-05.lnk - C:\Documents and Settings\Dusan\Plocha\Virus Removal Tool\setup_9.0.0.722_22.02.2010_16-05\startup.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="c:\progra~1\wi9130~1\datamngr\datamngr.dll c:\progra~1\kasper~1\kasper~1.0\adialhk.dll c:\progra~1\fun4im\bndhook.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2006-05-03 61440]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\klogon]
C:\WINDOWS\system32\klogon.dll [2007-06-28 206088]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\RailNotification]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2010-01-14 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2010-01-14 133632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"=C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [2010-01-14 304128]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=91
"NoViewContextMenu"=0
"NoRun"=0
"NoFolderOptions"=0
"NoFileAssociate"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
"NoViewContextMenu"=
"NoFileAssociate"=
"NoResolveSearch"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"\??\C:\WINDOWS\system32\winlogon.exe"="\??\C:\WINDOWS\system32\winlogon.exe:*:enabled:@shell32.dll,-1"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\WINDOWS\system32\svchost.exe"="C:\WINDOWS\system32\svchost.exe:*:Enabled:svchost.exe"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
======List of files/folders created in the last 1 months======
2010-12-28 17:21:36 ----D---- C:\Program Files\trend micro
2010-12-28 17:21:35 ----D---- C:\rsit
2010-12-28 16:51:52 ----D---- C:\Documents and Settings\Dusan\Data aplikací\freshgames
2010-12-28 16:51:52 ----D---- C:\Documents and Settings\All Users\Data aplikací\freshgames
2010-12-28 14:15:48 ----D---- C:\Documents and Settings\Dusan\Data aplikací\Malwarebytes
2010-12-28 14:15:42 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2010-12-28 14:15:38 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2010-12-28 13:19:32 ----D---- C:\Documents and Settings\Dusan\Data aplikací\Windows Search
2010-12-28 09:45:02 ----D---- C:\Documents and Settings\Dusan\Data aplikací\searchqutb
2010-12-27 21:34:27 ----D---- C:\WINDOWS\Prefetch
2010-12-27 21:23:43 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2010-12-27 21:16:34 ----A---- C:\WINDOWS\system32\wshirda.dll
2010-12-27 21:16:34 ----A---- C:\WINDOWS\system32\irmon.dll
2010-12-27 21:16:34 ----A---- C:\WINDOWS\system32\irftp.exe
2010-12-27 21:09:56 ----A---- C:\WINDOWS\system32\spxcoins.dll
2010-12-27 21:09:56 ----A---- C:\WINDOWS\system32\irclass.dll
2010-12-27 20:48:57 ----D---- C:\Program Files\Kaspersky Lab
2010-12-27 20:48:57 ----D---- C:\Documents and Settings\All Users\Data aplikací\Kaspersky Lab
2010-12-27 20:48:52 ----SHD---- C:\Config.Msi
2010-12-27 20:48:30 ----D---- C:\kav
2010-12-27 20:42:08 ----D---- C:\Program Files\UltraISO
2010-12-27 20:42:08 ----D---- C:\Program Files\Common Files\EZB Systems
2010-12-27 19:53:50 ----D---- C:\Documents and Settings\All Users\Data aplikací\IObit
2010-12-27 19:33:47 ----D---- C:\Documents and Settings\Dusan\Data aplikací\Bandoo
2010-12-27 19:28:10 ----D---- C:\Documents and Settings\Dusan\Data aplikací\AIMP
2010-12-27 19:24:11 ----D---- C:\WINDOWS\system32\NtmsData
2010-12-27 19:04:18 ----D---- C:\Program Files\IObit
2010-12-27 19:04:18 ----D---- C:\Documents and Settings\Dusan\Data aplikací\IObit
2010-12-27 18:53:04 ----A---- C:\WINDOWS\system32\h323log.txt
2010-12-27 18:51:51 ----RH---- C:\viewDrive.exe
2010-12-27 18:51:50 ----A---- C:\Documents and Settings\Dusan\Data aplikací\taskhost.exe
2010-12-27 18:49:21 ----SHD---- C:\WINDOWS\Installer
2010-12-27 18:49:21 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-12-27 18:49:20 ----D---- C:\Program Files\Common Files\ODBC
2010-12-27 18:49:20 ----A---- C:\WINDOWS\ODBCINST.INI
2010-12-27 18:49:18 ----RD---- C:\Program Files
2010-12-27 18:49:18 ----D---- C:\Program Files\Common Files\SpeechEngines
2010-12-27 18:49:18 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-12-27 18:49:18 ----D---- C:\Program Files\Common Files
2010-12-27 18:49:10 ----D---- C:\WINDOWS\LastGood.Tmp
2010-12-27 18:49:07 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2010-12-27 18:49:07 ----A---- C:\WINDOWS\system32\storprop.dll
2010-12-27 18:49:07 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2010-12-27 18:49:07 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2010-12-27 18:48:55 ----ASH---- C:\Documents and Settings\All Users\Data aplikací\desktop.ini
2010-12-27 18:48:53 ----D---- C:\Documents and Settings\Dusan\Data aplikací\WinRAR
2010-12-27 18:48:41 ----D---- C:\WINDOWS\system32\CatRoot2
2010-12-27 18:48:41 ----D---- C:\WINDOWS\system32\CatRoot
2010-12-27 18:48:36 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-12-27 18:48:19 ----D---- C:\Documents and Settings
2010-12-27 18:42:42 ----D---- C:\Documents and Settings\Dusan\Data aplikací\Macromedia
2010-12-27 18:42:42 ----D---- C:\Documents and Settings\Dusan\Data aplikací\Adobe
2010-12-27 18:35:48 ----D---- C:\Documents and Settings\Dusan\Data aplikací\Mozilla
2010-12-27 18:35:00 ----D---- C:\WINDOWS\Minidump
2010-12-27 18:21:57 ----D---- C:\Program Files\Mozilla Firefox
2010-12-27 18:20:15 ----A---- C:\WINDOWS\system32\alk1F6.tmp
2010-12-27 18:20:15 ----A---- C:\WINDOWS\system32\alk1F6.dll
2010-12-27 18:18:57 ----D---- C:\Documents and Settings\All Users\Data aplikací\Bandoo
2010-12-27 18:18:38 ----D---- C:\Documents and Settings\All Users\Data aplikací\Fun4IM
2010-12-27 18:18:32 ----D---- C:\Program Files\Fun4IM
2010-12-27 18:18:31 ----D---- C:\Program Files\Windows Searchqu Toolbar
2010-12-27 18:17:38 ----A---- C:\WINDOWS\system32\ksuser.dll
2010-12-27 18:17:32 ----A---- C:\WINDOWS\system32\wdmioctl.dll
2010-12-27 18:17:32 ----A---- C:\WINDOWS\system32\SMMedia.dll
2010-12-27 18:17:28 ----D---- C:\Program Files\Analog Devices
2010-12-27 18:17:27 ----A---- C:\WINDOWS\system32\DSndUp.exe
2010-12-27 18:17:23 ----A---- C:\WINDOWS\system32\CleanUp.exe
2010-12-27 18:16:56 ----SHD---- C:\RECYCLER
2010-12-27 18:16:40 ----D---- C:\Program Files\NVIDIA Corporation
2010-12-27 18:16:10 ----D---- C:\Program Files\Intel
2010-12-27 18:15:58 ----A---- C:\WINDOWS\system32\PROUnstl.exe
2010-12-27 18:15:52 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2010-12-27 18:14:21 ----D---- C:\Program Files\WinRAR
2010-12-27 18:14:18 ----N---- C:\WINDOWS\system32\ati2sgag.exe
2010-12-27 18:13:57 ----D---- C:\WINDOWS\LastGood
2010-12-27 18:13:54 ----HD---- C:\Program Files\InstallShield Installation Information
2010-12-27 18:13:48 ----D---- C:\Program Files\Common Files\InstallShield
2010-12-27 18:13:42 ----D---- C:\Program Files\CCleaner
2010-12-27 18:13:38 ----D---- C:\Program Files\MultiRes
2010-12-27 18:13:07 ----A---- C:\WINDOWS\Radeon Omega Drivers v3.8.252 Uninstall.exe
2010-12-27 18:13:06 ----D---- C:\Program Files\Radeon Omega Drivers
2010-12-27 18:12:51 ----D---- C:\Program Files\AIMP2
2010-12-27 18:11:14 ----D---- C:\Documents and Settings\Dusan\Data aplikací\Windows Desktop Search
2010-12-27 18:10:44 ----D---- C:\Documents and Settings\Dusan\Data aplikací\Identities
2010-12-27 18:10:41 ----HD---- C:\Program Files\Uninstall Information
2010-12-27 18:10:34 ----A---- C:\boot.ini
2010-12-27 18:10:27 ----SD---- C:\Documents and Settings\Dusan\Data aplikací\Microsoft
2010-12-27 18:10:27 ----ASH---- C:\Documents and Settings\Dusan\Data aplikací\desktop.ini
2010-12-27 18:09:25 ----SD---- C:\WINDOWS\system32\Microsoft
2010-12-27 18:09:25 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-12-27 18:03:22 ----D---- C:\WINDOWS\system32\xircom
2010-12-27 18:03:22 ----D---- C:\Program Files\xerox
2010-12-27 18:03:22 ----D---- C:\Program Files\microsoft frontpage
2010-12-27 18:02:42 ----N---- C:\WINDOWS\system32\spmsg2.dll
2010-12-27 18:02:41 ----HDC---- C:\WINDOWS\$NtUninstallXPSEPSCLP$
2010-12-27 18:02:16 ----D---- C:\WINDOWS\system32\XPSViewer
2010-12-27 18:02:16 ----D---- C:\WINDOWS\system32\en-US
2010-12-27 18:02:15 ----D---- C:\Program Files\MSBuild
2010-12-27 18:02:11 ----D---- C:\Program Files\Reference Assemblies
2010-12-27 18:02:05 ----N---- C:\WINDOWS\system32\spmsg.dll
2010-12-27 18:02:02 ----A---- C:\WINDOWS\system32\rgb9rast_2.dll
2010-12-27 18:00:28 ----A---- C:\WINDOWS\control.ini
2010-12-27 18:00:28 ----A---- C:\AUTOEXEC.BAT
2010-12-27 17:59:44 ----A---- C:\WINDOWS\system32\mapi32.dll
2010-12-27 17:58:38 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2010-12-27 17:58:31 ----HD---- C:\Program Files\WindowsUpdate
2010-12-27 17:58:26 ----D---- C:\Program Files\Online Services
2010-12-27 17:58:11 ----D---- C:\Program Files\Windows Media Connect 2
2010-12-27 17:58:04 ----D---- C:\WINDOWS\system32\DirectX
2010-12-27 17:58:01 ----A---- C:\WINDOWS\system32\atrace.dll
2010-12-27 17:58:00 ----A---- C:\WINDOWS\system32\desktop.ini
2010-12-27 17:58:00 ----A---- C:\WINDOWS\desktop.ini
2010-12-27 17:57:59 ----D---- C:\Program Files\Common Files\Services
2010-12-27 17:57:59 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2010-12-27 17:57:59 ----A---- C:\WINDOWS\system32\acctres.dll
2010-12-27 17:57:58 ----SD---- C:\WINDOWS\Tasks
2010-12-27 17:57:58 ----D---- C:\Program Files\Common Files\MSSoap
2010-12-27 17:57:58 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2010-12-27 17:57:55 ----D---- C:\WINDOWS\system32\Macromed
2010-12-27 17:57:55 ----D---- C:\WINDOWS\srchasst
2010-12-27 17:57:54 ----A---- C:\WINDOWS\system32\wuweb.dll
2010-12-27 17:57:54 ----A---- C:\WINDOWS\system32\wups.dll
2010-12-27 17:57:54 ----A---- C:\WINDOWS\system32\wucltui.dll
2010-12-27 17:57:54 ----A---- C:\WINDOWS\system32\wuauserv.dll
2010-12-27 17:57:54 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2010-12-27 17:57:54 ----A---- C:\WINDOWS\system32\wuaueng.dll
2010-12-27 17:57:54 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2010-12-27 17:57:54 ----A---- C:\WINDOWS\system32\wuauclt.exe
2010-12-27 17:57:53 ----D---- C:\WINDOWS\system32\bits
2010-12-27 17:57:53 ----A---- C:\WINDOWS\system32\wuapi.dll
2010-12-27 17:57:53 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2010-12-27 17:57:53 ----A---- C:\WINDOWS\system32\qmgr.dll
2010-12-27 17:57:53 ----A---- C:\WINDOWS\system32\bitsprx4.dll
2010-12-27 17:57:53 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2010-12-27 17:57:53 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2010-12-27 17:57:52 ----D---- C:\Program Files\Movie Maker
2010-12-27 17:57:47 ----A---- C:\WINDOWS\system32\safrslv.dll
2010-12-27 17:57:47 ----A---- C:\WINDOWS\system32\safrdm.dll
2010-12-27 17:57:47 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2010-12-27 17:57:47 ----A---- C:\WINDOWS\system32\racpldlg.dll
2010-12-27 17:57:46 ----D---- C:\WINDOWS\system32\Restore
2010-12-27 17:57:46 ----A---- C:\WINDOWS\system32\srsvc.dll
2010-12-27 17:57:46 ----A---- C:\WINDOWS\system32\srrstr.dll
2010-12-27 17:57:46 ----A---- C:\WINDOWS\system32\srclient.dll
2010-12-27 17:57:46 ----A---- C:\WINDOWS\system32\mnmdd.dll
2010-12-27 17:57:46 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2010-12-27 17:57:46 ----A---- C:\WINDOWS\system32\ils.dll
2010-12-27 17:57:46 ----A---- C:\WINDOWS\system32\fltMc.exe
2010-12-27 17:57:46 ----A---- C:\WINDOWS\system32\fltlib.dll
2010-12-27 17:57:45 ----D---- C:\Program Files\NetMeeting
2010-12-27 17:57:45 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2010-12-27 17:57:45 ----A---- C:\WINDOWS\system32\msoert2.dll
2010-12-27 17:57:45 ----A---- C:\WINDOWS\system32\msoeacct.dll
2010-12-27 17:57:45 ----A---- C:\WINDOWS\system32\msconf.dll
2010-12-27 17:57:45 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2010-12-27 17:57:45 ----A---- C:\WINDOWS\system32\inetres.dll
2010-12-27 17:57:45 ----A---- C:\WINDOWS\system32\inetcomm.dll
2010-12-27 17:57:44 ----D---- C:\Program Files\Outlook Express
2010-12-27 17:57:44 ----A---- C:\WINDOWS\system32\schedsvc.dll
2010-12-27 17:57:44 ----A---- C:\WINDOWS\system32\mstinit.exe
2010-12-27 17:57:44 ----A---- C:\WINDOWS\system32\mstask.dll
2010-12-27 17:57:44 ----A---- C:\WINDOWS\system32\isign32.dll
2010-12-27 17:57:44 ----A---- C:\WINDOWS\system32\inetcfg.dll
2010-12-27 17:57:44 ----A---- C:\WINDOWS\system32\icwphbk.dll
2010-12-27 17:57:44 ----A---- C:\WINDOWS\system32\icwdial.dll
2010-12-27 17:57:42 ----D---- C:\Program Files\Common Files\System
2010-12-27 17:57:13 ----D---- C:\Documents and Settings\All Users\Data aplikací\Windows Genuine Advantage
2010-12-27 17:56:35 ----RSD---- C:\WINDOWS\assembly
2010-12-27 17:56:20 ----D---- C:\Program Files\ComPlus Applications
2010-12-27 17:56:18 ----A---- C:\WINDOWS\vbaddin.ini
2010-12-27 17:56:18 ----A---- C:\WINDOWS\vb.ini
2010-12-27 17:56:13 ----D---- C:\WINDOWS\Registration
2010-12-27 17:56:04 ----D---- C:\Program Files\Windows Media Player
2010-12-27 17:55:56 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2010-12-27 17:55:56 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2010-12-27 17:55:56 ----N---- C:\WINDOWS\system32\prntvpt.dll
2010-12-27 17:55:48 ----D---- C:\WINDOWS\BitLockerDiscoveryVolumeContents
2010-12-27 17:55:47 ----D---- C:\WINDOWS\system32\DRM
2010-12-27 17:55:47 ----A---- C:\WINDOWS\system32\SecProc_ssp_isv.dll
2010-12-27 17:55:47 ----A---- C:\WINDOWS\system32\SecProc_ssp.dll
2010-12-27 17:55:47 ----A---- C:\WINDOWS\system32\SecProc_isv.dll
2010-12-27 17:55:47 ----A---- C:\WINDOWS\system32\RmActivate_ssp_isv.exe
2010-12-27 17:55:47 ----A---- C:\WINDOWS\system32\RmActivate_ssp.exe
2010-12-27 17:55:47 ----A---- C:\WINDOWS\system32\RmActivate_isv.exe
2010-12-27 17:55:47 ----A---- C:\WINDOWS\system32\RmActivate.exe
2010-12-27 17:55:46 ----A---- C:\WINDOWS\system32\winUsbCoinstaller.dll
2010-12-27 17:55:46 ----A---- C:\WINDOWS\system32\WgaTray.exe
2010-12-27 17:55:46 ----A---- C:\WINDOWS\system32\WgaLogon.dll
2010-12-27 17:55:46 ----A---- C:\WINDOWS\system32\WdfCoInstaller01007.dll
2010-12-27 17:55:46 ----A---- C:\WINDOWS\system32\SecProc.dll
2010-12-27 17:55:46 ----A---- C:\WINDOWS\system32\msdrm.dll
2010-12-27 17:55:45 ----A---- C:\WINDOWS\system32\WUDFUpdate_01007.dll
2010-12-27 17:55:45 ----A---- C:\WINDOWS\system32\imapi2fs.dll
2010-12-27 17:55:45 ----A---- C:\WINDOWS\system32\imapi2.dll
2010-12-27 17:55:44 ----A---- C:\WINDOWS\system32\UncRes.dll
2010-12-27 17:55:44 ----A---- C:\WINDOWS\system32\UncPH.dll
2010-12-27 17:55:44 ----A---- C:\WINDOWS\system32\UncNE.dll
2010-12-27 17:55:44 ----A---- C:\WINDOWS\system32\UncDMS.dll
2010-12-27 17:55:44 ----A---- C:\WINDOWS\system32\UncCplExt.dll
2010-12-27 17:55:44 ----A---- C:\WINDOWS\system32\oephRes.dll
2010-12-27 17:55:44 ----A---- C:\WINDOWS\system32\oeph.dll
2010-12-27 17:55:41 ----D---- C:\Program Files\Windows Desktop Search
2010-12-27 17:55:40 ----A---- C:\WINDOWS\system32\srchadmin.dll.mui
2010-12-27 17:55:40 ----A---- C:\WINDOWS\system32\propsys.dll.mui
2010-12-27 17:55:39 ----A---- C:\WINDOWS\system32\tquery.dll.mui
2010-12-27 17:55:39 ----A---- C:\WINDOWS\system32\srchadmin.dll