Nový log.
ComboFix 11-03-01.03 - Ostravak 07.03.2011 21:45:42.2.1 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.511.233 [GMT 1:00]
Spuštěný z: c:\documents and settings\Ostravak\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\Ostravak\Plocha\CFScript.txt
AV: F-Secure Profi Antivirus 9.01 *Disabled/Updated* {E7512ED5-4245-4B4D-AF3A-382D3F313F15}
FW: F-Secure Profi Antivirus 9.01 *Enabled* {D4747503-0346-49EB-9262-997542F79BF4}
.
- REŽIM S OMEZENOU FUNKČNOSTÍ -
FILE ::
"c:\windows\Tasks\Scheduled Update for Ask Toolbar.job"
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\ConduitAutoCompleteSearch.js
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\ConduitAutoCompleteSearch.xpt
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\ConduitToolbar.idl
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\ConduitToolbar.js
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\ConduitToolbar.xpt
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\FFExternalAlert.dll
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\FFExternalAlert.xpt
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\RadioWMPCore.dll
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\RadioWMPCore.xpt
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\defaults\default_radio_skin.xml
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\defaults\fbAlert.js
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\chrome.manifest
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\chrome\zynga.jar
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\install.rdf
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\lib\xpcom.js
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\META-INF\manifest.mf
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\META-INF\zigbert.rsa
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\META-INF\zigbert.sf
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\searchplugin\conduit.gif
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\searchplugin\conduit.ico
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\searchplugin\conduit.PNG
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\searchplugin\conduit.src
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\searchplugin\conduit.xml
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\version.txt
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\datastore\cache.sqlite
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\defaults.js.bak
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\defaults\preferences\defaults.js
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome.manifest
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\content\about.js
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\content\about.xul
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\content\cache.js
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\content\constants.js
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\content\core.js
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\content\custom-command-listener.js
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\content\events.js
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\content\feeds.js
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\content\json.js
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\content\lifecycle.js
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\content\listeners.js
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\content\locale.js
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\content\logger.js
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\content\network.js
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\content\observer.js
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\content\options.js
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\content\options.xul
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\content\preferences.js
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\content\prefetch.js
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\content\ss-popup-bindings.xml
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\content\suggestions.js
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\content\update.js
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\content\utilities.js
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\content\webframe-bindings.xml
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\content\webframe-manager.js
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\content\widget-controller.js
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\content\widget-popup.xul
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\content\widgets.js
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\amazon_16x.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\ask_16x16.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\ask_32x32.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\ask_browser_ff_chrome.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\ask_kmp1.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\ask_mail.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\asklogo.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\bg.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\blogs.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\business.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\celebrity.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\close.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\cnn_16x.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\dictionary.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\email_16x.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\facebook_16x.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\games_16x.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\globe_18x.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\gripper.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\highlight_16x.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\highlighter_off.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\highlighter_on.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\chevron.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\icon_history_16x.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\icons_business_16x.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\images.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\labels-de.properties
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\labels-en.properties
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\labels-es.properties
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\labels-fr.properties
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\labels-it.properties
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\labels-nl.properties
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\labels-pt.properties
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\labels-ru.properties
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\links-BR.properties
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\links-DE.properties
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\links-ES.properties
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\links-EU.properties
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\links-FR.properties
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\links-IT.properties
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\links-NL.properties
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\links-RU.properties
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\links-UK.properties
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\links-US.properties
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\logo_32x32.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\magnify_search.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\magnify_search_grey_16x.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\maps.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\news.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\personas.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\preferences.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\ptv.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\search.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\search_ask.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\search_ask_de.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\search_ask_es.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\search_ask_fr.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\search_ask_it.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\search_ask_nl.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\search_ask_pl.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\search_ask_pt.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\search_ask_ru.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\search_cobrand.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\search_current_site.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\search_de.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\search_es.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\search_fr.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\search_grey_73x24.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\search_it.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\search_nl.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\search_pl.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\search_pt.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\search_ru.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\shopping.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\stocks.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\titlebar_bg.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\toolbar.css
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\toolbar.xul
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\weather.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\weather_16x.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\web.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\wordoftheday_16x.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\youtube_16x.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\skin\zoomall.png
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\chrome\temp\ff-config.Mon-18-Oct-2010-16-44-19-GMT\ff-config.zip
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\install.rdf
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\logs\asktb-log-1296670298690.html
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\logs\asktb-log-1296813387250.html
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\logs\asktb-log-1298570066921.html
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\logs\asktb-log-1298572282888.html
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\logs\asktb-log-1299236696171.html
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\logs\asktb-log-1299274421296.html
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\logs\asktb-log-1299275836697.html
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\logs\asktb-log-1299314919466.html
c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\extensions\
toolbar@ask.com\searchplugins\askcom.xml
c:\documents and settings\Ostravak\Data aplikací\PriceGong
c:\documents and settings\Ostravak\Data aplikací\PriceGong\Data\1.xml
c:\documents and settings\Ostravak\Data aplikací\PriceGong\Data\a.xml
c:\documents and settings\Ostravak\Data aplikací\PriceGong\Data\b.xml
c:\documents and settings\Ostravak\Data aplikací\PriceGong\Data\c.xml
c:\documents and settings\Ostravak\Data aplikací\PriceGong\Data\d.xml
c:\documents and settings\Ostravak\Data aplikací\PriceGong\Data\e.xml
c:\documents and settings\Ostravak\Data aplikací\PriceGong\Data\f.xml
c:\documents and settings\Ostravak\Data aplikací\PriceGong\Data\g.xml
c:\documents and settings\Ostravak\Data aplikací\PriceGong\Data\h.xml
c:\documents and settings\Ostravak\Data aplikací\PriceGong\Data\i.xml
c:\documents and settings\Ostravak\Data aplikací\PriceGong\Data\J.xml
c:\documents and settings\Ostravak\Data aplikací\PriceGong\Data\k.xml
c:\documents and settings\Ostravak\Data aplikací\PriceGong\Data\l.xml
c:\documents and settings\Ostravak\Data aplikací\PriceGong\Data\m.xml
c:\documents and settings\Ostravak\Data aplikací\PriceGong\Data\n.xml
c:\documents and settings\Ostravak\Data aplikací\PriceGong\Data\o.xml
c:\documents and settings\Ostravak\Data aplikací\PriceGong\Data\p.xml
c:\documents and settings\Ostravak\Data aplikací\PriceGong\Data\q.xml
c:\documents and settings\Ostravak\Data aplikací\PriceGong\Data\r.xml
c:\documents and settings\Ostravak\Data aplikací\PriceGong\Data\s.xml
c:\documents and settings\Ostravak\Data aplikací\PriceGong\Data\t.xml
c:\documents and settings\Ostravak\Data aplikací\PriceGong\Data\u.xml
c:\documents and settings\Ostravak\Data aplikací\PriceGong\Data\v.xml
c:\documents and settings\Ostravak\Data aplikací\PriceGong\Data\w.xml
c:\documents and settings\Ostravak\Data aplikací\PriceGong\Data\x.xml
c:\documents and settings\Ostravak\Data aplikací\PriceGong\Data\y.xml
c:\documents and settings\Ostravak\Data aplikací\PriceGong\Data\z.xml
c:\program files\Ask.com
c:\program files\Ask.com\cobrand.ico
c:\program files\Ask.com\config.xml
c:\program files\Ask.com\favicon.ico
c:\program files\Ask.com\fv_4d.ico
c:\program files\Ask.com\GenericAskToolbar.dll
c:\program files\Ask.com\mupcfg.xml
c:\program files\Ask.com\SaUpdate.exe
c:\program files\Ask.com\UpdateTask.exe
c:\program files\Mozilla Firefox\extensions\{7AB6D133-2A14-4C11-B3AD-35B1548D38F9}
c:\program files\Mozilla Firefox\extensions\{7AB6D133-2A14-4C11-B3AD-35B1548D38F9}\defaults\preferences\prefs.js
c:\program files\Mozilla Firefox\extensions\{7AB6D133-2A14-4C11-B3AD-35B1548D38F9}\chrome.manifest
c:\program files\Mozilla Firefox\extensions\{7AB6D133-2A14-4C11-B3AD-35B1548D38F9}\chrome\sukoku.jar
c:\program files\Mozilla Firefox\extensions\{7AB6D133-2A14-4C11-B3AD-35B1548D38F9}\install.rdf
c:\windows\Tasks\Scheduled Update for Ask Toolbar.job
c:\windows\regedit.exe . . . je infikován!!
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-02-07 do 2011-03-07 )))))))))))))))))))))))))))))))
.
2011-03-05 07:36 . 2008-04-14 08:52 147968 ------w- c:\windows\regedit.exe
2011-03-04 11:03 . 2011-03-04 11:04 -------- d-----w- C:\rsit
2011-03-04 11:03 . 2011-03-04 11:04 -------- d-----w- c:\program files\trend micro
2011-03-04 10:35 . 2011-03-04 10:44 -------- d---a-w- C:\3590F75ABA9E485486C100C1A9D4FF06Z.Z.Z....Z..ZZ.Z
2011-03-04 10:00 . 2011-03-04 10:01 -------- d-----w- c:\program files\CCleaner
2011-03-04 09:56 . 2011-03-04 09:59 -------- d-----w- c:\program files\RegCleaner
2011-03-04 08:04 . 2011-03-04 08:04 -------- d-sh--w- c:\documents and settings\NetworkService\IETldCache
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-03-07 19:56 . 2010-11-21 18:11 0 -c--a-w- c:\windows\system32\ConduitEngine.tmp
2011-01-21 14:44 . 2004-08-17 13:49 440320 ----a-w- c:\windows\system32\shimgvw.dll
2011-01-07 14:09 . 2004-08-17 13:48 290048 ----a-w- c:\windows\system32\atmfd.dll
2011-01-02 13:51 . 2011-01-02 13:51 138056 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2011-01-02 13:51 . 2011-01-02 13:51 138056 -c--a-w- c:\documents and settings\Ostravak\Data aplikací\PnkBstrK.sys
2011-01-02 13:51 . 2011-01-02 13:51 189248 ----a-w- c:\windows\system32\PnkBstrB.exe
2011-01-02 13:51 . 2011-01-02 13:51 189248 -c--a-w- c:\windows\system32\PnkBstrB.ex0
2011-01-02 13:51 . 2011-01-02 13:51 75136 ----a-w- c:\windows\system32\PnkBstrA.exe
2010-12-31 14:04 . 2004-08-17 13:44 1854976 ----a-w- c:\windows\system32\win32k.sys
2010-12-22 12:34 . 2004-08-17 13:49 301568 ----a-w- c:\windows\system32\kerberos.dll
2010-12-22 07:32 . 2009-11-05 17:25 82120 ----a-w- c:\windows\system32\drivers\fsdfw.sys
2010-12-20 23:52 . 2004-08-17 13:49 916480 ----a-w- c:\windows\system32\wininet.dll
2010-12-20 23:52 . 2004-08-17 13:49 1469440 ----a-w- c:\windows\system32\inetcpl.cpl
2010-12-20 23:52 . 2004-08-17 13:49 43520 ----a-w- c:\windows\system32\licmgr10.dll
2010-12-20 17:25 . 2004-08-17 13:49 729088 ----a-w- c:\windows\system32\lsasrv.dll
2010-12-20 12:55 . 2004-08-17 13:44 385024 ----a-w- c:\windows\system32\html.iec
2010-12-15 12:43 . 2009-11-05 17:26 42664 ----a-w- c:\windows\system32\drivers\fsbts.sys
2010-12-09 15:15 . 2004-08-17 13:48 713216 ----a-w- c:\windows\system32\ntdll.dll
2010-12-09 15:14 . 2004-08-17 13:45 2194944 ----a-w- c:\windows\system32\ntoskrnl.exe
2010-12-09 15:14 . 2004-08-17 15:45 2071552 ----a-w- c:\windows\system32\ntkrnlpa.exe
2010-12-09 14:30 . 2004-08-17 13:49 33280 ----a-w- c:\windows\system32\csrsrv.dll
.
------- Sigcheck -------
[-] 2008-04-13 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\atapi.sys
[-] 2008-04-13 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\drivers\atapi.sys
[-] 2004-08-03 . CDFE4411A69C224BD1D11B2DA92DAC51 . 95360 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\atapi.sys
[-] 2008-04-13 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\asyncmac.sys
[-] 2008-04-13 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\drivers\asyncmac.sys
[-] 2004-08-03 . 02000ABF34AF4C218C35D257024807D6 . 14336 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\asyncmac.sys
[-] 2001-10-25 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\dllcache\beep.sys
[-] 2001-10-25 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\drivers\beep.sys
[-] 2008-04-14 . 1B6162FE7F66B1A71A4B70F941C4AA9B . 24576 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\kbdclass.sys
[-] 2008-04-14 . 1B6162FE7F66B1A71A4B70F941C4AA9B . 24576 . . [5.1.2600.5512] . . c:\windows\system32\drivers\kbdclass.sys
[-] 2004-08-17 . 6F877BF8DC01A550CD666F3BEDB2213C . 24576 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\kbdclass.sys
[-] 2008-04-13 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ndis.sys
[-] 2008-04-13 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ndis.sys
[-] 2004-08-03 . 558635D3AF1C7546D26067D5D9B6959E . 182912 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ndis.sys
[-] 2008-04-13 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ntfs.sys
[-] 2008-04-13 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ntfs.sys
[-] 2004-08-03 . B78BE402C3F63DD55521F73876951CDD . 574592 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ntfs.sys
[-] 2001-10-25 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\dllcache\null.sys
[-] 2001-10-25 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\drivers\null.sys
[-] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3GDR\tcpip.sys
[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys
[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys
[-] 2008-06-20 . 2A5554FC5B1E04E131230E3CE035C3F9 . 360320 . . [5.1.2600.3394] . . c:\windows\$NtServicePackUninstall$\tcpip.sys
[-] 2008-06-20 . 744E57C99232201AE98C49168B918F48 . 360960 . . [5.1.2600.3394] . . c:\windows\$hf_mig$\KB951748\SP2QFE\tcpip.sys
[-] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys
[-] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\tcpip.sys
[-] 2004-08-03 . 9F4B36614A0FC234525BA224957DE55C . 359040 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB951748_0$\tcpip.sys
[-] 2008-04-14 . 249276D3EF1E74B992299CB96099E4D7 . 77824 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\browser.dll
[-] 2008-04-14 . 249276D3EF1E74B992299CB96099E4D7 . 77824 . . [5.1.2600.5512] . . c:\windows\system32\browser.dll
[-] 2004-08-17 . F219E27E88107A50544153898DD8178E . 77312 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\browser.dll
[-] 2008-04-14 . ED0A176354487CEED65B80A7148AB739 . 13312 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\lsass.exe
[-] 2008-04-14 . ED0A176354487CEED65B80A7148AB739 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\lsass.exe
[-] 2004-08-17 . 82A362FE1D4980B71B588D9C10748511 . 13312 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\lsass.exe
[-] 2008-04-14 . 72E1E9E2977BE08BDEEDB6D8FD9D4D40 . 198144 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\netman.dll
[-] 2008-04-14 . 72E1E9E2977BE08BDEEDB6D8FD9D4D40 . 198144 . . [5.1.2600.5512] . . c:\windows\system32\netman.dll
[-] 2004-08-17 . AF342D2781225A8769686E0D47E3123E . 198144 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\netman.dll
[-] 2008-04-14 03:21 . E7B375DFFB68A16659CA66474A280C47 . 806912 . . [2001.12.4414.700] . . c:\windows\ServicePackFiles\i386\comres.dll
[-] 2008-04-14 03:21 . E7B375DFFB68A16659CA66474A280C47 . 806912 . . [2001.12.4414.700] . . c:\windows\system32\comres.dll
[-] 2004-08-17 13:49 . B44F68274AB7B8A54E9AD74AFF0EFAAC . 806912 . . [2001.12.4414.258] . . c:\windows\$NtServicePackUninstall$\comres.dll
[-] 2008-04-14 . 19395D092FD85DDC2D9C7729CF5A2AC8 . 409088 . . [6.7.2600.5512] . . c:\windows\ServicePackFiles\i386\qmgr.dll
[-] 2008-04-14 . 19395D092FD85DDC2D9C7729CF5A2AC8 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\qmgr.dll
[-] 2008-04-14 . 19395D092FD85DDC2D9C7729CF5A2AC8 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\bits\qmgr.dll
[-] 2004-08-17 . E774A26610EC92674273486612C11CFC . 382464 . . [6.6.2600.2180] . . c:\windows\$NtServicePackUninstall$\qmgr.dll
[-] 2009-02-09 . C0BD34A62508BA68F146E22CE45919F9 . 401408 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\rpcss.dll
[-] 2009-02-09 . BE27674D1CBC3214AEC84B4336A38BBF . 401408 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3GDR\rpcss.dll
[-] 2009-02-09 . BE27674D1CBC3214AEC84B4336A38BBF . 401408 . . [5.1.2600.5755] . . c:\windows\system32\rpcss.dll
[-] 2009-02-09 . BE27674D1CBC3214AEC84B4336A38BBF . 401408 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\rpcss.dll
[-] 2009-02-09 . 2B269C916766BDB43404F043B763427D . 399360 . . [5.1.2600.3520] . . c:\windows\$NtServicePackUninstall$\rpcss.dll
[-] 2009-02-09 . BEF7BB41E666EAA34BE7E99C2B107DB8 . 401408 . . [5.1.2600.3520] . . c:\windows\$hf_mig$\KB956572\SP2QFE\rpcss.dll
[-] 2008-04-14 . C868F3AE15CF71A93F2AA3A32856D839 . 399360 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\rpcss.dll
[-] 2008-04-14 . C868F3AE15CF71A93F2AA3A32856D839 . 399360 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\rpcss.dll
[-] 2004-08-17 . C72C15EE57E248C66E57C76CAB086CF2 . 395776 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB956572_0$\rpcss.dll
[-] 2009-02-09 . 9EF697AF07BB8DD82C3B02CA953A95B7 . 111104 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3GDR\services.exe
[-] 2009-02-09 . 9EF697AF07BB8DD82C3B02CA953A95B7 . 111104 . . [5.1.2600.5755] . . c:\windows\system32\services.exe
[-] 2009-02-09 . 9EF697AF07BB8DD82C3B02CA953A95B7 . 111104 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\services.exe
[-] 2009-02-09 . 3D107D45CCFDB266E91D84B52CD7F430 . 111104 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\services.exe
[-] 2009-02-09 . 4F9F7B567970B524F31D9970A23F7C24 . 111104 . . [5.1.2600.3520] . . c:\windows\$NtServicePackUninstall$\services.exe
[-] 2009-02-09 . 33081FED75032291EE0E008D5385E86F . 111104 . . [5.1.2600.3520] . . c:\windows\$hf_mig$\KB956572\SP2QFE\services.exe
[-] 2008-04-14 . F0D2AE69035092BF22DAD6B50FAB85C2 . 108544 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\services.exe
[-] 2008-04-14 . F0D2AE69035092BF22DAD6B50FAB85C2 . 108544 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\services.exe
[-] 2004-08-17 . 6E401E61F952FBBF708AFBECEFAFAE81 . 108544 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB956572_0$\services.exe
[-] 2008-04-14 . CDDB1F8E1AEA356F3AD106F2CF9B7FEA . 507904 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\winlogon.exe
[-] 2008-04-14 . CDDB1F8E1AEA356F3AD106F2CF9B7FEA . 507904 . . [5.1.2600.5512] . . c:\windows\system32\winlogon.exe
[-] 2004-08-17 . 221C29AE1B4CC61D11D8B27DE78B2307 . 502272 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\winlogon.exe
[-] 2008-04-14 . F3AB0933CBD166D271992F411C27CCAF . 62464 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\cryptsvc.dll
[-] 2008-04-14 . F3AB0933CBD166D271992F411C27CCAF . 62464 . . [5.1.2600.5512] . . c:\windows\system32\cryptsvc.dll
[-] 2004-08-17 . 70D2A1756F4B2067658A186C963FCABD . 60416 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\cryptsvc.dll
[-] 2008-07-07 20:32 . 398314DF0B21338C4996B469101750D1 . 253952 . . [2001.12.4414.320] . . c:\windows\$NtServicePackUninstall$\es.dll
[-] 2008-07-07 20:29 . A371F11EF07653591C8DE26AFB13CE7F . 253952 . . [2001.12.4414.706] . . c:\windows\$hf_mig$\KB950974\SP3GDR\es.dll
[-] 2008-07-07 20:29 . A371F11EF07653591C8DE26AFB13CE7F . 253952 . . [2001.12.4414.706] . . c:\windows\system32\es.dll
[-] 2008-07-07 20:29 . A371F11EF07653591C8DE26AFB13CE7F . 253952 . . [2001.12.4414.706] . . c:\windows\system32\dllcache\es.dll
[-] 2008-07-07 20:25 . BE68EA4457E2E5717231CF91BE5448E0 . 253952 . . [2001.12.4414.706] . . c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll
[-] 2008-07-07 20:19 . 3440C414044935B124B5821C0994B37F . 253952 . . [2001.12.4414.320] . . c:\windows\$hf_mig$\KB950974\SP2QFE\es.dll
[-] 2008-04-14 03:21 . 260C69FD67687B0DC062FC3D31655857 . 246272 . . [2001.12.4414.701] . . c:\windows\$NtUninstallKB950974$\es.dll
[-] 2008-04-14 03:21 . 260C69FD67687B0DC062FC3D31655857 . 246272 . . [2001.12.4414.701] . . c:\windows\ServicePackFiles\i386\es.dll
[-] 2004-08-17 13:49 . 972378B907070F64932A87C90A035487 . 243200 . . [2001.12.4414.258] . . c:\windows\$NtUninstallKB950974_0$\es.dll
[-] 2008-04-14 . 6C60CA8AC7470AC01CFD3D24C7283CD1 . 110080 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\imm32.dll
[-] 2008-04-14 . 6C60CA8AC7470AC01CFD3D24C7283CD1 . 110080 . . [5.1.2600.5512] . . c:\windows\system32\imm32.dll
[-] 2004-08-17 . 2413635113361E54B62F0C40E4E4DAE6 . 110080 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\imm32.dll
[-] 2009-03-21 . 9A4D2A6C4B7BD60851553C095CD71AF8 . 984576 . . [5.1.2600.3541] . . c:\windows\$NtServicePackUninstall$\kernel32.dll
[-] 2009-03-21 . 545C653E8FE241CA6200798AA94FE5C7 . 988160 . . [5.1.2600.5781] . . c:\windows\$hf_mig$\KB959426\SP3GDR\kernel32.dll
[-] 2009-03-21 . 545C653E8FE241CA6200798AA94FE5C7 . 988160 . . [5.1.2600.5781] . . c:\windows\system32\kernel32.dll
[-] 2009-03-21 . 545C653E8FE241CA6200798AA94FE5C7 . 988160 . . [5.1.2600.5781] . . c:\windows\system32\dllcache\kernel32.dll
[-] 2009-03-21 . 0D8F61460F84139BBE5E391D8DE18D9A . 990208 . . [5.1.2600.5781] . . c:\windows\$hf_mig$\KB959426\SP3QFE\kernel32.dll
[-] 2009-03-21 . 8D18BA8E854890074B6FB92D7D0C02FA . 987648 . . [5.1.2600.3541] . . c:\windows\$hf_mig$\KB959426\SP2QFE\kernel32.dll
[-] 2008-04-14 . FD91CD95A1C663DF54DD371CC8A234DE . 988160 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB959426$\kernel32.dll
[-] 2008-04-14 . FD91CD95A1C663DF54DD371CC8A234DE . 988160 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\kernel32.dll
[-] 2004-08-17 . 98DA079F61265BC26D4587E280B79F30 . 982016 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB959426_0$\kernel32.dll
[-] 2008-04-14 . 7FDE9FC15765E02B23E1756930165AD1 . 19968 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\linkinfo.dll
[-] 2008-04-14 . 7FDE9FC15765E02B23E1756930165AD1 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\linkinfo.dll
[-] 2004-08-17 . EE1F842DB2AE412136643B0814D770A6 . 18944 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\linkinfo.dll
[-] 2008-04-14 . C66BA7BD13C8FB8BEC4863B88641C763 . 22016 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\lpk.dll
[-] 2008-04-14 . C66BA7BD13C8FB8BEC4863B88641C763 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\lpk.dll
[-] 2004-08-17 . BFE8DC7AAE7CB1C86243D77B340DC304 . 22016 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\lpk.dll
[-] 2008-04-14 . D165DFCB4EA452510E53416F573018BB . 343040 . . [7.0.2600.5512] . . c:\windows\ServicePackFiles\i386\msvcrt.dll
[-] 2008-04-14 . D165DFCB4EA452510E53416F573018BB . 343040 . . [7.0.2600.5512] . . c:\windows\system32\msvcrt.dll
[-] 2008-04-14 . EC8D5E09C6CA5F52858A5EB71F308FDF . 343040 . . [7.0.2600.5512] . . c:\windows\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.5512_x-ww_3fd60d63\msvcrt.dll
[-] 2004-08-17 . 91CC3E4CCDBBF8E224182C76C87E454F . 343040 . . [7.0.2600.2180] . . c:\windows\$NtServicePackUninstall$\msvcrt.dll
[-] 2004-08-17 . AB47015B67531572BE46C0C08222C84C . 343040 . . [7.0.2600.2180] . . c:\windows\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.2180_x-ww_b2505ed9\msvcrt.dll
[-] 2001-10-25 . 4200BE3808F6406DBE45A7B88DAE5035 . 322560 . . [7.0.2600.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.0.0_x-ww_2726e76a\msvcrt.dll
[-] 2008-06-20 . 1289B7611CCD6CB27596AE92CBF03E35 . 247296 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3GDR\mswsock.dll
[-] 2008-06-20 . 1289B7611CCD6CB27596AE92CBF03E35 . 247296 . . [5.1.2600.5625] . . c:\windows\system32\mswsock.dll
[-] 2008-06-20 . 1289B7611CCD6CB27596AE92CBF03E35 . 247296 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\mswsock.dll
[-] 2008-06-20 . B6CEC406351EA5EF131416D5F52D006F . 247296 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\mswsock.dll
[-] 2008-06-20 . A6E79B60AC73241E5721AB6A573D2B24 . 247296 . . [5.1.2600.3394] . . c:\windows\$NtServicePackUninstall$\mswsock.dll
[-] 2008-06-20 . 37BABA5DBD9027837FDC27E5D6EF33E1 . 247296 . . [5.1.2600.3394] . . c:\windows\$hf_mig$\KB951748\SP2QFE\mswsock.dll
[-] 2008-04-14 . AAC97DAB5F8A0573CF10E0EAC42A7724 . 247296 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\mswsock.dll
[-] 2008-04-14 . AAC97DAB5F8A0573CF10E0EAC42A7724 . 247296 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\mswsock.dll
[-] 2004-08-17 . 64C078BD4EFD441C3F159EDC5EA4420A . 247296 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB951748_0$\mswsock.dll
[-] 2008-04-14 . C2ED0E3408F50BBC149D4F0936E67832 . 407040 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\netlogon.dll
[-] 2008-04-14 . C2ED0E3408F50BBC149D4F0936E67832 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\netlogon.dll
[-] 2004-08-17 . 2591CADAEF7D2242039255028E577688 . 407040 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\netlogon.dll
[-] 2008-04-14 . 9FA69781CAA7A1DA981A24F240A61A60 . 17408 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\powrprof.dll
[-] 2008-04-14 . 9FA69781CAA7A1DA981A24F240A61A60 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\powrprof.dll
[-] 2004-08-17 . 134B95A1D8FAFD74A68E4B2116DEFA7D . 17408 . . [6.00.2900.2180] . . c:\windows\$NtServicePackUninstall$\powrprof.dll
[-] 2008-04-14 . 830CE8951C71F361D7D2F38416CC8BC1 . 185856 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\scecli.dll
[-] 2008-04-14 . 830CE8951C71F361D7D2F38416CC8BC1 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\scecli.dll
[-] 2004-08-17 . 07119058D451CB7EA4317BCFDA8599A6 . 184832 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\scecli.dll
[-] 2008-04-14 . 5EE949255BABC0B17C09DDB2E59E3878 . 5120 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\sfc.dll
[-] 2008-04-14 . 5EE949255BABC0B17C09DDB2E59E3878 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\sfc.dll
[-] 2004-08-17 . 6CC2D21488333133AE0C9F44F6051CB7 . 5120 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\sfc.dll
[-] 2008-04-14 . BE4A520E29B6391F49E79CCC52044D93 . 14336 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\svchost.exe
[-] 2008-04-14 . BE4A520E29B6391F49E79CCC52044D93 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\svchost.exe
[-] 2004-08-17 . DFBA2915B0BF58ABB288CD4C9318CB3F . 14336 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\svchost.exe
[-] 2008-04-14 . C2546CD7A398476F9DF5614B2AE160E8 . 249856 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\tapisrv.dll
[-] 2008-04-14 . C2546CD7A398476F9DF5614B2AE160E8 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\tapisrv.dll
[-] 2004-08-17 . 37162D29CD61519E6F5EA0DE99786FF6 . 246272 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\tapisrv.dll
[-] 2008-04-14 . E16E0990967374E76F3E40CACAFD3D53 . 578560 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\user32.dll
[-] 2008-04-14 . E16E0990967374E76F3E40CACAFD3D53 . 578560 . . [5.1.2600.5512] . . c:\windows\system32\user32.dll
[-] 2004-08-17 . 1B4CCC59980DA34E75F20E42B283B027 . 577024 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\user32.dll
[-] 2008-04-14 . 7DC1830F22E7D275B438127B68030239 . 26112 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\userinit.exe
[-] 2008-04-14 . 7DC1830F22E7D275B438127B68030239 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\userinit.exe
[-] 2004-08-17 . 836F7960362FF95C5D49E40B891F2CFC . 24576 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\userinit.exe
[-] 2008-04-14 . 951D473917C51F21496D914CF6E5DDD1 . 82432 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ws2_32.dll
[-] 2008-04-14 . 951D473917C51F21496D914CF6E5DDD1 . 82432 . . [5.1.2600.5512] . . c:\windows\system32\ws2_32.dll
[-] 2004-08-17 . 382E9B87F1282E697C67AF84E34E35E2 . 82944 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ws2_32.dll
[-] 2008-04-14 . 859F7735F199C90403340183A3DDFB78 . 19968 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ws2help.dll
[-] 2008-04-14 . 859F7735F199C90403340183A3DDFB78 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\ws2help.dll
[-] 2004-08-17 . C2B86666FC44B48903AD6016D15A23DF . 19968 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ws2help.dll
[-] 2008-04-14 . 27AFD587C462E280EE046B8CCA3C2CD1 . 1034240 . . [6.00.2900.5512] . . c:\windows\explorer.exe
[-] 2008-04-14 . 27AFD587C462E280EE046B8CCA3C2CD1 . 1034240 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\explorer.exe
[-] 2004-08-17 . 53114D57AB73A406AC7F602227781A99 . 1032704 . . [6.00.2900.2180] . . c:\windows\$NtServicePackUninstall$\explorer.exe
[-] 2008-04-14 . 35B91147124F64AC8081A2EDB9EA4DEE . 171008 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\srsvc.dll
[-] 2008-04-14 . 35B91147124F64AC8081A2EDB9EA4DEE . 171008 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll
[-] 2004-08-17 . 3CD57F31A64D32FDB28918B16D1E6AAC . 170496 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\srsvc.dll
[-] 2008-04-14 . 278A14BEDEF58687EAF8BEC056A78D8B . 13824 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\wscntfy.exe
[-] 2008-04-14 . 278A14BEDEF58687EAF8BEC056A78D8B . 13824 . . [5.1.2600.5512] . . c:\windows\system32\wscntfy.exe
[-] 2004-08-17 . 93F75FF033BAA186D08115D73BFE3D32 . 13824 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\wscntfy.exe
[-] 2008-04-14 . EAA4BB9EDB3FB10CF8979FE65E63658F . 129024 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\xmlprov.dll
[-] 2008-04-14 . EAA4BB9EDB3FB10CF8979FE65E63658F . 129024 . . [5.1.2600.5512] . . c:\windows\system32\xmlprov.dll
[-] 2004-08-17 . 9B835D4C64860B155A1701D5092EC9E4 . 129536 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\xmlprov.dll
[-] 2008-04-14 . 2EE99F67C930931EB404DADCE57E976E . 56320 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\eventlog.dll
[-] 2008-04-14 . 2EE99F67C930931EB404DADCE57E976E . 56320 . . [5.1.2600.5512] . . c:\windows\system32\eventlog.dll
[-] 2004-08-17 . 6EB66066D5C0175320CFEA0A4C74C88F . 55808 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\eventlog.dll
[-] 2008-04-14 . 56A6034E7764E23D9114223EB3523925 . 1571840 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\sfcfiles.dll
[-] 2008-04-14 . 56A6034E7764E23D9114223EB3523925 . 1571840 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll
[-] 2004-08-17 . 5CA2E2BA624D6F2C7A581C91E70394CB . 1548288 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\sfcfiles.dll
[-] 2008-04-14 . A756B8F0F7BAFBA6DFE39F7D169F2519 . 15360 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ctfmon.exe
[-] 2008-04-14 . A756B8F0F7BAFBA6DFE39F7D169F2519 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\ctfmon.exe
[-] 2004-08-17 . A5BAA91475167161DEA02BA3C4CA4F59 . 15360 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ctfmon.exe
[-] 2008-04-14 . B927443008910B412BEC72FC41C1BAD0 . 135168 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\shsvcs.dll
[-] 2008-04-14 . B927443008910B412BEC72FC41C1BAD0 . 135168 . . [6.00.2900.5512] . . c:\windows\system32\shsvcs.dll
[-] 2004-08-17 . 8BA76BD2A943F642F267A296A15776D2 . 134656 . . [6.00.2900.2180] . . c:\windows\$NtServicePackUninstall$\shsvcs.dll
[-] 2008-04-14 . 8F31505484A190D5B22274708799F4EC . 59904 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\regsvc.dll
[-] 2008-04-14 . 8F31505484A190D5B22274708799F4EC . 59904 . . [5.1.2600.5512] . . c:\windows\system32\regsvc.dll
[-] 2004-08-17 . 5B21208FCF8970BB61FE98E19D828714 . 59904 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\regsvc.dll
[-] 2008-04-14 . 3FF232A7731621B8902D81D42418C93C . 192512 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\schedsvc.dll
[-] 2008-04-14 . 3FF232A7731621B8902D81D42418C93C . 192512 . . [5.1.2600.5512] . . c:\windows\system32\schedsvc.dll
[-] 2004-08-17 . 29AC93307C6182DBE336BCA314947F28 . 190976 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\schedsvc.dll
[-] 2008-04-14 . BECD5271DC4E3B7C3D035F790FCBC1E5 . 71680 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ssdpsrv.dll
[-] 2008-04-14 . BECD5271DC4E3B7C3D035F790FCBC1E5 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\ssdpsrv.dll
[-] 2004-08-17 . 88C28F53F53438DAFCD95E99C837C61E . 71680 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ssdpsrv.dll
[-] 2008-04-14 . A75DD6FC3DBEE4FFF5EBC9F2C28BB66E . 295936 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\termsrv.dll
[-] 2008-04-14 . A75DD6FC3DBEE4FFF5EBC9F2C28BB66E . 295936 . . [5.1.2600.5512] . . c:\windows\system32\termsrv.dll
[-] 2004-08-17 . 2F5919F2F6EE7A845893D9C3AA2BC56A . 295936 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\termsrv.dll
[-] 2008-04-14 . ED18ADEE4AA21EB26977260152D7241A . 345088 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\hnetcfg.dll
[-] 2008-04-14 . ED18ADEE4AA21EB26977260152D7241A . 345088 . . [5.1.2600.5512] . . c:\windows\system32\hnetcfg.dll
[-] 2004-08-17 . FAABA83BE47C5B15F620FAA53267A9B8 . 345088 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\hnetcfg.dll
[-] 2008-04-14 . 6B8E7A90E576D4FE308F97C69060A171 . 171008 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\appmgmts.dll
[-] 2008-04-14 . 6B8E7A90E576D4FE308F97C69060A171 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\appmgmts.dll
[-] 2004-08-17 . 421184F91EAE5C6E78E653C6B32AAE84 . 171008 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\appmgmts.dll
[-] 2001-10-25 . AFDFF022A01F0B11C776F0860C3B282F . 11776 . . [5.1.2600.0] . . c:\windows\system32\drivers\acpiec.sys
[-] 2008-04-13 16:39 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\ServicePackFiles\i386\aec.sys
[-] 2008-04-13 16:39 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\drivers\aec.sys
[-] 2004-08-03 20:39 . 841F385C6CFAF66B58FBD898722BB4F0 . 142464 . . [5.1.2601.2078] . . c:\windows\$NtServicePackUninstall$\aec.sys
[-] 2008-04-13 . 08FD04AA961BDC77FB983F328334E3D7 . 42368 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\agp440.sys
[-] 2008-04-13 . 08FD04AA961BDC77FB983F328334E3D7 . 42368 . . [5.1.2600.5512] . . c:\windows\system32\drivers\agp440.sys
[-] 2008-04-13 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ip6fw.sys
[-] 2008-04-13 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ip6fw.sys
[-] 2004-08-03 . 4448006B6BC60E6C027932CFC38D6855 . 29056 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ip6fw.sys
[-] 2008-04-14 . 221CD1C815B8A6B79389C3F5D1018DE8 . 33792 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\msgsvc.dll
[-] 2008-04-14 . 221CD1C815B8A6B79389C3F5D1018DE8 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\msgsvc.dll
[-] 2004-08-17 . 8B2FCBD881879B55BE40B41F12FFC431 . 33792 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\msgsvc.dll
[-] 2008-04-14 03:21 . 6199B2AE3F9DB9CB6DB230471A1DC601 . 52224 . . [9.0.1.56] . . c:\windows\$NtUninstallWMFDist11$\mspmsnsv.dll
[-] 2006-10-18 19:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\system32\mspmsnsv.dll
[-] 2006-10-18 19:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\system32\dllcache\mspmsnsv.dll
[-] 2004-08-17 13:49 . E02E913B3841717A890A644EE167B9A5 . 52224 . . [9.0.1.56] . . c:\windows\$NtServicePackUninstall$\mspmsnsv.dll
[-] 2008-04-14 03:21 . 023DD70573D644F3D9C8B1258A7BFD08 . 435712 . . [5.1.2400.5512] . . c:\windows\ServicePackFiles\i386\ntmssvc.dll
[-] 2008-04-14 03:21 . 023DD70573D644F3D9C8B1258A7BFD08 . 435712 . . [5.1.2400.5512] . . c:\windows\system32\ntmssvc.dll
[-] 2004-08-17 13:49 . D8D2B13BA93AE830B1A637DF571D1195 . 435712 . . [5.1.2400.2180] . . c:\windows\$NtServicePackUninstall$\ntmssvc.dll
[-] 2008-04-14 . 651BD90DCEE5B7BDC74A2EB7C9266F9E . 186368 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\upnphost.dll
[-] 2008-04-14 . 651BD90DCEE5B7BDC74A2EB7C9266F9E . 186368 . . [5.1.2600.5512] . . c:\windows\system32\upnphost.dll
[-] 2004-08-17 . 984FC1518B0D5B31D76F0E63608E0500 . 185344 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\upnphost.dll
[-] 2008-04-14 . 8E009E7AC012823845D5F39A77F4A27F . 367616 . . [5.3.2600.5512] . . c:\windows\ServicePackFiles\i386\dsound.dll
[-] 2008-04-14 . 8E009E7AC012823845D5F39A77F4A27F . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dsound.dll
[-] 2004-08-17 . 8ECC475F5BAD26DB85943F888D62E364 . 367616 . . [5.3.2600.2180] . . c:\windows\$NtServicePackUninstall$\dsound.dll
[-] 2008-04-14 . 3B8AE11A3419DF8239183E94888702FA . 1689088 . . [5.03.2600.5512] . . c:\windows\ServicePackFiles\i386\d3d9.dll
[-] 2008-04-14 . 3B8AE11A3419DF8239183E94888702FA . 1689088 . . [5.03.2600.5512] . . c:\windows\system32\d3d9.dll
[-] 2004-08-17 . A19F5837E52D57DB66D9DB55BFCC7796 . 1689088 . . [5.03.2600.2180] . . c:\windows\$NtServicePackUninstall$\d3d9.dll
[-] 2008-04-14 . EDAD701F01FFD9B5799B8FCF1CF6BDA7 . 279552 . . [5.03.2600.5512] . . c:\windows\ServicePackFiles\i386\ddraw.dll
[-] 2008-04-14 . EDAD701F01FFD9B5799B8FCF1CF6BDA7 . 279552 . . [5.03.2600.5512] . . c:\windows\system32\ddraw.dll
[-] 2004-08-17 . 0F9A5DD4503E82B085D8B1336B961A81 . 266240 . . [5.03.2600.2180] . . c:\windows\$NtServicePackUninstall$\ddraw.dll
[-] 2008-04-14 03:21 . 16C195EBC0A3EC35C48D0C2D9A346BAB . 84992 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\olepro32.dll
[-] 2008-04-14 03:21 . 16C195EBC0A3EC35C48D0C2D9A346BAB . 84992 . . [5.1.2600.5512] . . c:\windows\system32\olepro32.dll
[-] 2004-08-17 13:49 . 33F14F23DFAE4B43CDD4E535CD7C1963 . 83456 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\olepro32.dll
[-] 2008-04-14 . 1682285F7C0934C764A0EBBC568153CA . 39936 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\perfctrs.dll
[-] 2008-04-14 . 1682285F7C0934C764A0EBBC568153CA . 39936 . . [5.1.2600.5512] . . c:\windows\system32\perfctrs.dll
[-] 2004-08-17 . 6C08FF4B76506676617E03C34ECCFB11 . 39936 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\perfctrs.dll
[-] 2008-04-14 . 614F8186BDAB926E3B1D8927A4161B54 . 18944 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\version.dll
[-] 2008-04-14 . 614F8186BDAB926E3B1D8927A4161B54 . 18944 . . [5.1.2600.5512] . . c:\windows\system32\version.dll
[-] 2004-08-17 . E472BDA53A4DCD2142143AF9FD25C99A . 18944 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\version.dll
[-] 2008-04-14 . 35B91147124F64AC8081A2EDB9EA4DEE . 171008 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\srsvc.dll
[-] 2008-04-14 . 35B91147124F64AC8081A2EDB9EA4DEE . 171008 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll
[-] 2004-08-17 . 3CD57F31A64D32FDB28918B16D1E6AAC . 170496 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\srsvc.dll
[-] 2008-04-14 . FA4E1CDBA256787F2149F4AAD07BC91F . 176640 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\w32time.dll
[-] 2008-04-14 . FA4E1CDBA256787F2149F4AAD07BC91F . 176640 . . [5.1.2600.5512] . . c:\windows\system32\w32time.dll
[-] 2004-08-17 . 2CEEBB402187AE56B585701F3D191FB3 . 176128 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\w32time.dll
[-] 2008-04-14 . C1CDD9275F6A115BB0AE1D55D8D27BA6 . 334336 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\wiaservc.dll
[-] 2008-04-14 . C1CDD9275F6A115BB0AE1D55D8D27BA6 . 334336 . . [5.1.2600.5512] . . c:\windows\system32\wiaservc.dll
[-] 2004-08-17 . 0645CCDDDD27F96EEA3534C1DEF736D9 . 333824 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\wiaservc.dll
.
((((((((((((((((((((((((((((( SnapShot@2011-03-05_08.09.26 )))))))))))))))))))))))))))))))))))))))))
.
+ 2011-03-07 20:48 . 2011-03-07 20:48 16384 c:\windows\temp\Perflib_Perfdata_664.dat
- 2010-08-29 08:06 . 2010-07-05 13:13 18296 c:\windows\system32\spmsg.dll
+ 2010-08-29 08:06 . 2010-02-22 14:20 18296 c:\windows\system32\spmsg.dll
+ 2004-08-17 13:49 . 2010-12-20 23:52 66560 c:\windows\system32\mshtmled.dll
- 2004-08-17 13:49 . 2010-11-06 00:23 66560 c:\windows\system32\mshtmled.dll
+ 2009-03-08 02:31 . 2010-12-20 23:52 55296 c:\windows\system32\msfeedsbs.dll
- 2009-03-08 02:31 . 2010-11-06 00:23 55296 c:\windows\system32\msfeedsbs.dll
- 2004-08-17 13:49 . 2010-11-06 00:23 25600 c:\windows\system32\jsproxy.dll
+ 2004-08-17 13:49 . 2010-12-20 23:52 25600 c:\windows\system32\jsproxy.dll
- 2009-06-29 19:35 . 2010-11-06 00:23 12800 c:\windows\system32\dllcache\xpshims.dll
+ 2009-06-29 19:35 . 2010-12-20 23:52 12800 c:\windows\system32\dllcache\xpshims.dll
+ 2004-08-17 13:49 . 2010-12-20 23:52 66560 c:\windows\system32\dllcache\mshtmled.dll
- 2004-08-17 13:49 . 2010-11-06 00:23 66560 c:\windows\system32\dllcache\mshtmled.dll
- 2009-07-29 08:35 . 2010-11-06 00:23 55296 c:\windows\system32\dllcache\msfeedsbs.dll
+ 2009-07-29 08:35 . 2010-12-20 23:52 55296 c:\windows\system32\dllcache\msfeedsbs.dll
+ 2004-08-17 13:49 . 2010-12-20 23:52 43520 c:\windows\system32\dllcache\licmgr10.dll
- 2004-08-17 13:49 . 2010-11-06 00:23 43520 c:\windows\system32\dllcache\licmgr10.dll
+ 2004-08-17 13:49 . 2010-12-20 23:52 25600 c:\windows\system32\dllcache\jsproxy.dll
- 2004-08-17 13:49 . 2010-11-06 00:23 25600 c:\windows\system32\dllcache\jsproxy.dll
- 2009-12-14 07:10 . 2009-12-14 07:10 33280 c:\windows\system32\dllcache\csrsrv.dll
+ 2009-12-14 07:10 . 2010-12-09 14:30 33280 c:\windows\system32\dllcache\csrsrv.dll
+ 2011-03-05 08:58 . 2010-11-06 00:23 12800 c:\windows\ie8updates\KB2482017-IE8\xpshims.dll
+ 2011-03-05 08:58 . 2010-11-06 00:23 66560 c:\windows\ie8updates\KB2482017-IE8\mshtmled.dll
+ 2011-03-05 08:58 . 2010-11-06 00:23 55296 c:\windows\ie8updates\KB2482017-IE8\msfeedsbs.dll
+ 2011-03-05 08:58 . 2010-11-06 00:23 43520 c:\windows\ie8updates\KB2482017-IE8\licmgr10.dll
+ 2011-03-05 08:58 . 2010-11-06 00:23 25600 c:\windows\ie8updates\KB2482017-IE8\jsproxy.dll
- 2004-08-17 13:49 . 2010-11-06 00:23 206848 c:\windows\system32\occache.dll
+ 2004-08-17 13:49 . 2010-12-20 23:52 206848 c:\windows\system32\occache.dll
- 2004-08-17 13:49 . 2010-11-06 00:23 611840 c:\windows\system32\mstime.dll
+ 2004-08-17 13:49 . 2010-12-20 23:52 611840 c:\windows\system32\mstime.dll
- 2009-03-08 02:32 . 2010-11-06 00:23 602112 c:\windows\system32\msfeeds.dll
+ 2009-03-08 02:32 . 2010-12-20 23:52 602112 c:\windows\system32\msfeeds.dll
+ 2004-08-17 13:49 . 2010-12-20 23:52 184320 c:\windows\system32\iepeers.dll
- 2004-08-17 13:49 . 2010-11-06 00:23 184320 c:\windows\system32\iepeers.dll
- 2004-08-17 13:49 . 2010-11-06 00:23 387584 c:\windows\system32\iedkcs32.dll
+ 2004-08-17 13:49 . 2010-12-20 23:52 387584 c:\windows\system32\iedkcs32.dll
- 2004-08-17 13:49 . 2010-11-03 12:26 173568 c:\windows\system32\ie4uinit.exe
+ 2004-08-17 13:49 . 2010-12-20 12:55 173568 c:\windows\system32\ie4uinit.exe
- 2008-05-31 14:48 . 2010-12-16 08:38 118152 c:\windows\system32\FNTCACHE.DAT
+ 2008-05-31 14:48 . 2011-03-07 19:27 118152 c:\windows\system32\FNTCACHE.DAT
- 2004-08-17 13:49 . 2010-11-06 00:23 916480 c:\windows\system32\dllcache\wininet.dll
+ 2004-08-17 13:49 . 2010-12-20 23:52 916480 c:\windows\system32\dllcache\wininet.dll
+ 2011-01-21 14:44 . 2011-01-21 14:44 440320 c:\windows\system32\dllcache\shimgvw.dll
- 2004-08-17 13:49 . 2010-11-06 00:23 206848 c:\windows\system32\dllcache\occache.dll
+ 2004-08-17 13:49 . 2010-12-20 23:52 206848 c:\windows\system32\dllcache\occache.dll
- 2004-08-17 13:49 . 2010-11-06 00:23 611840 c:\windows\system32\dllcache\mstime.dll
+ 2004-08-17 13:49 . 2010-12-20 23:52 611840 c:\windows\system32\dllcache\mstime.dll
- 2009-07-29 08:35 . 2010-11-06 00:23 602112 c:\windows\system32\dllcache\msfeeds.dll
+ 2009-07-29 08:35 . 2010-12-20 23:52 602112 c:\windows\system32\dllcache\msfeeds.dll
- 2009-05-31 15:48 . 2009-06-25 08:27 729088 c:\windows\system32\dllcache\lsasrv.dll
+ 2009-05-31 15:48 . 2010-12-20 17:25 729088 c:\windows\system32\dllcache\lsasrv.dll
+ 2009-06-25 08:27 . 2010-12-22 12:34 301568 c:\windows\system32\dllcache\kerberos.dll
- 2009-06-25 08:27 . 2009-06-25 08:27 301568 c:\windows\system32\dllcache\kerberos.dll
+ 2009-06-29 19:35 . 2010-12-20 23:52 247808 c:\windows\system32\dllcache\ieproxy.dll
- 2009-06-29 19:35 . 2010-11-06 00:23 247808 c:\windows\system32\dllcache\ieproxy.dll
+ 2004-08-17 13:49 . 2010-12-20 23:52 184320 c:\windows\system32\dllcache\iepeers.dll
- 2004-08-17 13:49 . 2010-11-06 00:23 184320 c:\windows\system32\dllcache\iepeers.dll
- 2010-06-10 13:32 . 2010-11-06 00:23 743424 c:\windows\system32\dllcache\iedvtool.dll
+ 2010-06-10 13:32 . 2010-12-20 23:52 743424 c:\windows\system32\dllcache\iedvtool.dll
+ 2004-08-17 13:49 . 2010-12-20 23:52 387584 c:\windows\system32\dllcache\iedkcs32.dll
- 2004-08-17 13:49 . 2010-11-06 00:23 387584 c:\windows\system32\dllcache\iedkcs32.dll
+ 2004-08-17 13:49 . 2010-12-20 12:55 173568 c:\windows\system32\dllcache\ie4uinit.exe
- 2004-08-17 13:49 . 2010-11-03 12:26 173568 c:\windows\system32\dllcache\ie4uinit.exe
- 2010-04-20 05:32 . 2010-10-28 13:09 290048 c:\windows\system32\dllcache\atmfd.dll
+ 2010-04-20 05:32 . 2011-01-07 14:09 290048 c:\windows\system32\dllcache\atmfd.dll
+ 2011-03-05 08:58 . 2010-11-06 00:23 916480 c:\windows\ie8updates\KB2482017-IE8\wininet.dll
+ 2011-03-05 08:59 . 2010-07-05 13:13 391032 c:\windows\ie8updates\KB2482017-IE8\spuninst\updspapi.dll
+ 2011-03-05 08:59 . 2010-07-05 13:13 233848 c:\windows\ie8updates\KB2482017-IE8\spuninst\spuninst.exe
+ 2011-03-05 08:58 . 2010-11-06 00:23 206848 c:\windows\ie8updates\KB2482017-IE8\occache.dll
+ 2011-03-05 08:58 . 2010-11-06 00:23 611840 c:\windows\ie8updates\KB2482017-IE8\mstime.dll
+ 2011-03-05 08:58 . 2010-11-06 00:23 602112 c:\windows\ie8updates\KB2482017-IE8\msfeeds.dll
+ 2011-03-05 08:58 . 2010-11-06 00:23 247808 c:\windows\ie8updates\KB2482017-IE8\ieproxy.dll
+ 2011-03-05 08:58 . 2010-11-06 00:23 184320 c:\windows\ie8updates\KB2482017-IE8\iepeers.dll
+ 2011-03-05 08:58 . 2010-11-06 00:23 743424 c:\windows\ie8updates\KB2482017-IE8\iedvtool.dll
+ 2011-03-05 08:58 . 2010-11-06 00:23 387584 c:\windows\ie8updates\KB2482017-IE8\iedkcs32.dll
+ 2011-03-05 08:58 . 2010-11-03 12:26 173568 c:\windows\ie8updates\KB2482017-IE8\ie4uinit.exe
+ 2004-08-17 13:49 . 2010-12-20 23:52 1210880 c:\windows\system32\urlmon.dll
- 2004-08-17 13:49 . 2010-11-06 00:23 1210880 c:\windows\system32\urlmon.dll
- 2004-08-17 13:49 . 2010-07-27 06:30 8466432 c:\windows\system32\shell32.dll
+ 2004-08-17 13:49 . 2011-01-21 14:44 8466432 c:\windows\system32\shell32.dll
+ 2004-08-17 13:49 . 2010-12-20 23:52 5961216 c:\windows\system32\mshtml.dll
- 2009-03-08 02:32 . 2010-11-06 00:23 1991680 c:\windows\system32\iertutil.dll
+ 2009-03-08 02:32 . 2010-12-20 23:52 1991680 c:\windows\system32\iertutil.dll
+ 2009-02-09 14:07 . 2010-12-31 14:04 1854976 c:\windows\system32\dllcache\win32k.sys
+ 2004-08-17 13:49 . 2010-12-20 23:52 1210880 c:\windows\system32\dllcache\urlmon.dll
- 2004-08-17 13:49 . 2010-11-06 00:23 1210880 c:\windows\system32\dllcache\urlmon.dll
+ 2008-06-17 19:02 . 2011-01-21 14:44 8466432 c:\windows\system32\dllcache\shell32.dll
- 2008-06-17 19:02 . 2010-07-27 06:30 8466432 c:\windows\system32\dllcache\shell32.dll
+ 2004-08-17 13:49 . 2010-12-20 23:52 5961216 c:\windows\system32\dllcache\mshtml.dll
- 2009-06-29 19:35 . 2010-11-06 00:23 1991680 c:\windows\system32\dllcache\iertutil.dll
+ 2009-06-29 19:35 . 2010-12-20 23:52 1991680 c:\windows\system32\dllcache\iertutil.dll
+ 2011-03-05 08:58 . 2010-11-06 00:23 1210880 c:\windows\ie8updates\KB2482017-IE8\urlmon.dll
+ 2011-03-05 08:58 . 2010-11-06 00:23 5959168 c:\windows\ie8updates\KB2482017-IE8\mshtml.dll
+ 2011-03-05 08:58 . 2010-11-06 00:23 1991680 c:\windows\ie8updates\KB2482017-IE8\iertutil.dll
+ 2009-03-08 02:39 . 2010-12-20 10:52 11080704 c:\windows\system32\ieframe.dll
- 2009-03-08 02:39 . 2010-11-06 00:23 11080704 c:\windows\system32\ieframe.dll
- 2009-06-29 19:35 . 2010-11-06 00:23 11080704 c:\windows\system32\dllcache\ieframe.dll
+ 2009-06-29 19:35 . 2010-12-20 10:52 11080704 c:\windows\system32\dllcache\ieframe.dll
+ 2011-03-05 08:58 . 2010-11-06 00:23 11080704 c:\windows\ie8updates\KB2482017-IE8\ieframe.dll
.
-- Snímek resetován k současnému datu --
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
2011-01-13 20:08 3911776 ----a-w- c:\program files\ConduitEngine\ConduitEngin0.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{30F9B915-B755-4826-820B-08FBA6BD249D}"= "c:\program files\ConduitEngine\ConduitEngin0.dll" [2011-01-13 3911776]
[HKEY_CLASSES_ROOT\clsid\{30f9b915-b755-4826-820b-08fba6bd249d}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"="SOUNDMAN.EXE" [2007-04-16 577536]
"F-Secure Manager"="c:\program files\F-Secure\Common\FSM32.EXE" [2009-08-05 199264]
"F-Secure TNB"="c:\program files\F-Secure\FSGUI\TNBUtil.exe" [2009-08-05 2349664]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\ICQ6.5\\ICQ.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\Steam\\Steam.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
R0 fsbts;fsbts;c:\windows\system32\drivers\fsbts.sys [5.11.2009 18:26 42664]
R0 FSFW;F-Secure Firewall Driver;c:\windows\system32\drivers\fsdfw.sys [5.11.2009 18:25 82120]
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [4.6.2009 13:25 685816]
R1 F-Secure HIPS;F-Secure HIPS Driver;c:\program files\F-Secure\HIPS\drivers\fshs.sys [5.11.2009 18:25 68064]
R2 ICQ Service;ICQ Service;c:\program files\ICQ6Toolbar\ICQ Service.exe [31.5.2008 16:07 246520]
R3 F-Secure Gatekeeper;F-Secure Gatekeeper;c:\program files\F-Secure\Anti-Virus\minifilter\fsgk.sys [5.11.2009 18:24 130728]
R3 FSORSPClient;F-Secure ORSP Client;c:\program files\F-Secure\ORSP Client\fsorsp.exe [5.11.2009 18:25 63992]
S2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [26.12.2010 18:02 136176]
S4 F-Secure Filter;F-Secure File System Filter;c:\program files\F-Secure\Anti-Virus\win2k\fsfilter.sys [5.11.2009 18:24 39776]
S4 F-Secure Recognizer;F-Secure File System Recognizer;c:\program files\F-Secure\Anti-Virus\win2k\fsrec.sys [5.11.2009 18:24 25184]
.
Obsah adresáře 'Naplánované úlohy'
2011-03-07 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-12-26 17:01]
2011-03-04 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-12-26 17:01]
2011-03-07 c:\windows\Tasks\User_Feed_Synchronization-{AF5711A5-05BD-4F67-B03B-ADFDA1A2896E}.job
- c:\windows\system32\msfeedssync.exe [2009-03-08 02:31]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://search.conduit.com?SearchSource=10&ctid=CT2475029
uInternet Connection Wizard,ShellNext = iexplore
IE: {{FA9B9510-9FCB-4ca0-818C-5D0987B47C4D} - c:\program files\PokerStars.NET\PokerStarsUpdate.exe
LSP: c:\program files\F-Secure\FSPS\program\FSLSP.DLL
FF - ProfilePath - c:\documents and settings\Ostravak\Data aplikací\Mozilla\Firefox\Profiles\6xxc0bow.default\
FF - prefs.js: browser.startup.homepage - hxxp://
www.seznam.cz/
FF - prefs.js: keyword.URL - hxxp://
www.google.com/search?ie=UTF-8&oe=UTF-8 ... &gfns=1&q=
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: Skype extension for Firefox: {AB2CE124-6272-4b12-94A9-7303C7397BD1} - c:\program files\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
FF - Ext: Java Quick Starter:
jqs@sun.com - c:\program files\Java\jre6\lib\deploy\jqs\ff
FF - Ext: Firefox Synchronisation Extension: {A27F3FEF-1113-4cfb-A032-8E12D7D8EE70} - c:\program files\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension
FF - Ext: MyAshampoo Toolbar: {a1e75a0e-4397-4ba8-bb50-e19fb66890f4} - %profile%\extensions\{a1e75a0e-4397-4ba8-bb50-e19fb66890f4}
FF - Ext: Battlefield Heroes Updater:
battlefieldheroespatcher@ea.com - %profile%\extensions\
battlefieldheroespatcher@ea.com
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
URLSearchHooks-{a1e75a0e-4397-4ba8-bb50-e19fb66890f4} - (no file)
BHO-{a1e75a0e-4397-4ba8-bb50-e19fb66890f4} - (no file)
Toolbar-{a1e75a0e-4397-4ba8-bb50-e19fb66890f4} - (no file)
WebBrowser-{A1E75A0E-4397-4BA8-BB50-E19FB66890F4} - (no file)
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2011-03-07 21:50
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10n_ActiveX.exe,-101"
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10n_ActiveX.exe"
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(720)
c:\program files\F-Secure\FWES\Program\fsdc32.dll
- - - - - - - > 'lsass.exe'(776)
c:\program files\F-Secure\FSPS\program\FSLSP.DLL
c:\program files\F-Secure\FWES\Program\fsdc32.dll
- - - - - - - > 'explorer.exe'(3884)
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
- - - - - - - > 'csrss.exe'(696)
c:\program files\F-Secure\FWES\Program\fsdc32.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\F-Secure\Anti-Virus\fsgk32st.exe
c:\program files\F-Secure\Common\FSMA32.EXE
c:\program files\F-Secure\Anti-Virus\FSGK32.EXE
c:\program files\F-Secure\Common\FSHDLL32.EXE
c:\program files\Java\jre6\bin\jqs.exe
c:\windows\system32\PnkBstrA.exe
c:\windows\system32\PnkBstrB.exe
c:\program files\F-Secure\FWES\Program\fsdfwd.exe
c:\program files\F-Secure\Anti-Virus\fssm32.exe
c:\program files\F-Secure\Anti-Virus\fsav32.exe
c:\windows\system32\wscntfy.exe
c:\windows\SOUNDMAN.EXE
.
**************************************************************************
.
Celkový čas: 2011-03-07 21:55:30 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-03-07 20:55
ComboFix2.txt 2011-03-05 08:14
Před spuštěním: Volných bajtů: 18 483 986 432
Po spuštění: Volných bajtů: 18 872 057 856
- - End Of File - - E228E7F67694F48CFDD558FD13971C0D