
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Modra obrazovka
Moderátor: Moderátoři
- Rudy
- Site Admin
- Příspěvky: 119411
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Modra obrazovka
Může to být i hw problém. Např. gr. karta. Při hrách má vysokou zátěž a může při tom selhávat. Nemáte zač!
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Modra obrazovka
suhlasim ze to moze byt ale to je hra ktoru by som mal zvladat ako nic ale je to na 99% iste ze to je virus alebo nieco s windowsom
, ale to uz je teraz jedno aj tak sa to uz asi neobjavi ale ak je to hardwarovy problem tak hej no uvidime

- Rudy
- Site Admin
- Příspěvky: 119411
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Modra obrazovka
Pokud je to hw problém, objeví se. Dokonce vám to může znemožnit reinstal systému.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Modra obrazovka
preinstalacia prebehla uplne hladko
ja dost dobre poznam svoj pocitac tak viem ze hardware by mal byt na 99% dobry. Jedine sa mi harddisk pokazil ale to davnejsie a uz mam novy takze nemoze byt problem 


- Rudy
- Site Admin
- Příspěvky: 119411
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Modra obrazovka
OK a dík za info! 

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Modra obrazovka
Citim sa ako keby som bol male decko a teraz mi dal niekto riadnu po papuli
. V skratke asi sa obavam ze mate pravdu ze je to hardware...zasa je to naspat a ani mozila ani java mi dobre nefunguju a eset zasa nefunguje a virus to nemoze byt lebo to som sa este nestretol s takym. Podla mna novy HDD je asi vadny alebo co 


- Rudy
- Site Admin
- Příspěvky: 119411
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Modra obrazovka
Stáhněte, nainstalujte a spusťte CrystalDiskInfo: http://www.stahuj.centrum.cz/utility_a_ ... ldiskinfo/ . Přes Úpravy>kopírovat sem dejte log.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Modra obrazovka
Tuna to mate
ale pise ze zdravie = dobre tak uz netusim...dufam ze zakl.doska ide do **** a mozem sa ist vesat
----------------------------------------------------------------------------
CrystalDiskInfo 4.6.2 (C) 2008-2012 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------
OS : Windows XP Home Edition SP3 [5.1 Build 2600] (x86)
Date : 2012/05/26 17:20:50
-- Controller Map ----------------------------------------------------------
+ Standard Dual Channel PCI IDE Controller [ATA]
+ Primary IDE Channel (0)
- HL-DT-ST DVD-RAM GSA-H55N
- Secondary IDE Channel (1)
+ Intel(R) ICH9 2 port Serial ATA Storage Controller 1 - 2921 [ATA]
+ Primary IDE Channel (0)
- WDC WD5000AAKX-001CA0
- Secondary IDE Channel (1)
+ Intel(R) ICH9 2 port Serial ATA Storage Controller 2 - 2926 [ATA]
- Primary IDE Channel (0)
- Secondary IDE Channel (1)
+ ALVQ0IFS IDE Controller [SCSI]
- ERYDCBK G96VCLIV SCSI CdRom Device
-- Disk List ---------------------------------------------------------------
(1) WDC WD5000AAKX-001CA0 : 500.1 GB [0/5/0, pd1]
----------------------------------------------------------------------------
(1) WDC WD5000AAKX-001CA0
----------------------------------------------------------------------------
Model : WDC WD5000AAKX-001CA0
Firmware : 15.01H15
Serial Number : WD-WMAYU8695473
Disk Size : 500.1 GB (8.4/137.4/500.1)
Buffer Size : 16384 KB
Queue Depth : 32
# of Sectors : 976771055
Rotation Rate : Unknown
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ----
Transfer Mode : SATA/600
Power On Hours : 733 hours
Power On Count : 197 count
Temparature : 40 C (104 F)
Health Status : Good
Features : S.M.A.R.T., 48bit LBA, NCQ
APM Level : ----
AAM Level : ----
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 200 200 _51 000000000002 Read Error Rate
03 139 135 _21 000000000FD2 Spin-Up Time
04 100 100 __0 0000000000F2 Start/Stop Count
05 200 200 140 000000000000 Reallocated Sectors Count
07 100 253 __0 000000000000 Seek Error Rate
09 _99 _99 __0 0000000002DD Power-On Hours
0A 100 100 __0 000000000000 Spin Retry Count
0B 100 100 __0 000000000000 Recalibration Retries
0C 100 100 __0 0000000000C5 Power Cycle Count
C0 200 200 __0 000000000016 Power-off Retract Count
C1 200 200 __0 0000000000DB Load/Unload Cycle Count
C2 103 _93 __0 000000000028 Temperature
C4 200 200 __0 000000000000 Reallocation Event Count
C5 200 200 __0 000000000000 Current Pending Sector Count
C6 200 200 __0 000000000000 Uncorrectable Sector Count
C7 200 200 __0 000000000000 UltraDMA CRC Error Count
C8 200 200 __0 000000000000 Write Error Rate
-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 427A 3FFF C837 0010 0000 003F 003F 0000 0000 0000
010: 2020 2020 2057 442D 574D 5538 5538 3639 3534 3733
020: 0000 8000 0032 3135 2E30 3135 3135 5744 4320 5744
030: 3530 3030 4141 4B58 2D30 4341 4341 3020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4001 0000 0000 0007 3FFF 003F 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 170E 170E 0004 0044 0040
080: 01FE 0000 746B 7D61 4123 BC41 BC41 4123 207F 002B
090: 002B 0000 FFFE 0000 0000 0000 0000 0000 0000 0000
100: 57EF 3A38 0000 0000 0000 0000 0000 0000 5001 4EE6
110: 5733 D6A8 0000 0000 0000 0000 0000 0000 0000 4018
120: 4018 0000 0000 0000 0000 0000 0000 0000 0029 0000
130: 0000 0000 0000 16FE 0125 0000 0000 0000 0000 0000
140: 0000 0000 0004 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 3037 3037 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
220: 0000 0000 103E 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 14A5

----------------------------------------------------------------------------
CrystalDiskInfo 4.6.2 (C) 2008-2012 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------
OS : Windows XP Home Edition SP3 [5.1 Build 2600] (x86)
Date : 2012/05/26 17:20:50
-- Controller Map ----------------------------------------------------------
+ Standard Dual Channel PCI IDE Controller [ATA]
+ Primary IDE Channel (0)
- HL-DT-ST DVD-RAM GSA-H55N
- Secondary IDE Channel (1)
+ Intel(R) ICH9 2 port Serial ATA Storage Controller 1 - 2921 [ATA]
+ Primary IDE Channel (0)
- WDC WD5000AAKX-001CA0
- Secondary IDE Channel (1)
+ Intel(R) ICH9 2 port Serial ATA Storage Controller 2 - 2926 [ATA]
- Primary IDE Channel (0)
- Secondary IDE Channel (1)
+ ALVQ0IFS IDE Controller [SCSI]
- ERYDCBK G96VCLIV SCSI CdRom Device
-- Disk List ---------------------------------------------------------------
(1) WDC WD5000AAKX-001CA0 : 500.1 GB [0/5/0, pd1]
----------------------------------------------------------------------------
(1) WDC WD5000AAKX-001CA0
----------------------------------------------------------------------------
Model : WDC WD5000AAKX-001CA0
Firmware : 15.01H15
Serial Number : WD-WMAYU8695473
Disk Size : 500.1 GB (8.4/137.4/500.1)
Buffer Size : 16384 KB
Queue Depth : 32
# of Sectors : 976771055
Rotation Rate : Unknown
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ----
Transfer Mode : SATA/600
Power On Hours : 733 hours
Power On Count : 197 count
Temparature : 40 C (104 F)
Health Status : Good
Features : S.M.A.R.T., 48bit LBA, NCQ
APM Level : ----
AAM Level : ----
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 200 200 _51 000000000002 Read Error Rate
03 139 135 _21 000000000FD2 Spin-Up Time
04 100 100 __0 0000000000F2 Start/Stop Count
05 200 200 140 000000000000 Reallocated Sectors Count
07 100 253 __0 000000000000 Seek Error Rate
09 _99 _99 __0 0000000002DD Power-On Hours
0A 100 100 __0 000000000000 Spin Retry Count
0B 100 100 __0 000000000000 Recalibration Retries
0C 100 100 __0 0000000000C5 Power Cycle Count
C0 200 200 __0 000000000016 Power-off Retract Count
C1 200 200 __0 0000000000DB Load/Unload Cycle Count
C2 103 _93 __0 000000000028 Temperature
C4 200 200 __0 000000000000 Reallocation Event Count
C5 200 200 __0 000000000000 Current Pending Sector Count
C6 200 200 __0 000000000000 Uncorrectable Sector Count
C7 200 200 __0 000000000000 UltraDMA CRC Error Count
C8 200 200 __0 000000000000 Write Error Rate
-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 427A 3FFF C837 0010 0000 003F 003F 0000 0000 0000
010: 2020 2020 2057 442D 574D 5538 5538 3639 3534 3733
020: 0000 8000 0032 3135 2E30 3135 3135 5744 4320 5744
030: 3530 3030 4141 4B58 2D30 4341 4341 3020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4001 0000 0000 0007 3FFF 003F 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 170E 170E 0004 0044 0040
080: 01FE 0000 746B 7D61 4123 BC41 BC41 4123 207F 002B
090: 002B 0000 FFFE 0000 0000 0000 0000 0000 0000 0000
100: 57EF 3A38 0000 0000 0000 0000 0000 0000 5001 4EE6
110: 5733 D6A8 0000 0000 0000 0000 0000 0000 0000 4018
120: 4018 0000 0000 0000 0000 0000 0000 0000 0029 0000
130: 0000 0000 0000 16FE 0125 0000 0000 0000 0000 0000
140: 0000 0000 0004 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 3037 3037 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
220: 0000 0000 103E 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 14A5
Re: Modra obrazovka
Uz som aj volal do firmy ktora sa mi na to pozrie ale sa ma aj ten technik opytal ci to neni zavirene ale ja neviem podla mna asi nie ale zasa som iba C formatoval. Som sice cital ze aj tam byvaju virusi ale ako som vravel nestretol som sa s tym 

- Rudy
- Site Admin
- Příspěvky: 119411
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Modra obrazovka
Ano disk je OK. Můžete ještě zkusit vyměnit datový kabel. Pokud chcete, můžeme zkontrolovat, co vše v PC běží. Dejte log RSIT: http://www.viry.cz/forum/viewtopic.php?f=13&t=105895 .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Modra obrazovka
Tak s hardwarom na dialku asi tazko nieco spravite ale aspon ten software skontrolujete
a nemusi to byt iba HDD to som iba tak povedal
moze to byt aj hocico ine.
Logfile of random's system information tool 1.09 (written by random/random)
Run by Peter at 2012-05-26 17:36:37
Systém Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 86 GB (84%) free of 102 GB
Total RAM: 3582 MB (83% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:36:41, on 26.5.2012
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe
C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\Winamp\winampa.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesApp32.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Documents and Settings\Peter\Desktop\RSIT.exe
C:\Program Files\trend micro\Peter.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://windowsupdate.microsoft.com/
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe
--
End of file - 5110 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\Peter\Application Data\Mozilla\Firefox\Profiles\xs86hqvr.default
prefs.js - "browser.startup.homepage" - "www.google.sk"
"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.2.202.235 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_2_202_235.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.4.1]
"Description"=
"Path"=C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.4.1]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
C:\Program Files\Mozilla Firefox\plugins\
NPOFF12.DLL
C:\Program Files\Mozilla Firefox\searchplugins\
atlas-sk.xml
azet-sk.xml
dunaj-sk.xml
eBay.xml
google.xml
slovnik-sk.xml
wikipedia-sk.xml
zoznam-sk.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-06-06 63912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll [2012-04-04 453504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll [2012-04-04 157576]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-06-06 937920]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2012-03-07 3117344]
"WinampAgent"=C:\Program Files\Winamp\winampa.exe [2011-07-11 74752]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2005-05-03 69632]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2007-09-19 16844800]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-01-17 252296]
"KernelFaultCheck"=C:\WINDOWS\system32\dumprep 0 -k []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2009-10-30 369200]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2012-05-03 17355912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\presentationhost.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2012\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======List of files/folders created in the last 1 month======
2012-05-26 17:36:37 ----D---- C:\rsit
2012-05-26 17:36:37 ----D---- C:\Program Files\trend micro
2012-05-26 17:20:20 ----D---- C:\Program Files\CrystalDiskInfo
2012-05-26 17:07:58 ----D---- C:\WINDOWS\Minidump
2012-05-26 17:03:02 ----D---- C:\Program Files\Common Files\Java
2012-05-26 17:02:51 ----D---- C:\Program Files\Oracle
2012-05-26 17:02:44 ----A---- C:\WINDOWS\system32\javaws.exe
2012-05-26 17:02:42 ----A---- C:\WINDOWS\system32\javaw.exe
2012-05-26 17:02:42 ----A---- C:\WINDOWS\system32\java.exe
2012-05-26 17:02:35 ----D---- C:\Program Files\Java
2012-05-26 16:51:36 ----D---- C:\Documents and Settings\Peter\Application Data\NVIDIA
2012-05-26 16:50:27 ----D---- C:\Documents and Settings\Peter\Application Data\.minecraft
2012-05-26 11:30:12 ----D---- C:\Documents and Settings\Peter\Application Data\Opera
2012-05-26 11:30:07 ----D---- C:\Program Files\Opera
2012-05-26 11:15:02 ----D---- C:\Documents and Settings\Peter\Application Data\Mozilla
2012-05-26 11:15:00 ----D---- C:\Program Files\Mozilla Maintenance Service
2012-05-26 11:11:07 ----D---- C:\Program Files\Common Files\Skype
2012-05-26 00:14:38 ----D---- C:\Documents and Settings\Peter\Application Data\Oracle
2012-05-26 00:07:16 ----AH---- C:\WINDOWS\system32\ezsidmv.dat
2012-05-26 00:07:05 ----D---- C:\Documents and Settings\Peter\Application Data\skypePM
2012-05-26 00:07:03 ----D---- C:\Documents and Settings\All Users\Application Data\Skype Extras
2012-05-25 23:52:22 ----D---- C:\Program Files\Microsoft Works
2012-05-25 23:52:14 ----D---- C:\Program Files\Microsoft Visual Studio
2012-05-25 23:52:14 ----D---- C:\Program Files\Common Files\DESIGNER
2012-05-25 23:50:42 ----D---- C:\WINDOWS\SHELLNEW
2012-05-25 23:50:32 ----D---- C:\Program Files\Microsoft Office
2012-05-25 23:50:31 ----D---- C:\Documents and Settings\All Users\Application Data\Microsoft Help
2012-05-25 23:50:07 ----RHD---- C:\MSOCache
2012-05-25 23:41:22 ----A---- C:\WINDOWS\system32\drivers\sptd.sys
2012-05-25 23:41:17 ----D---- C:\Program Files\DAEMON Tools Lite
2012-05-25 23:40:58 ----D---- C:\Documents and Settings\Peter\Application Data\DAEMON Tools Lite
2012-05-25 23:40:54 ----D---- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Lite
2012-05-25 23:33:35 ----HD---- C:\Documents and Settings\All Users\Application Data\Common Files
2012-05-25 23:28:50 ----A---- C:\WINDOWS\system32\uxtuneup.dll
2012-05-25 23:18:03 ----A---- C:\WINDOWS\system32\TURegOpt.exe
2012-05-25 23:17:56 ----D---- C:\Documents and Settings\Peter\Application Data\TuneUp Software
2012-05-25 23:17:49 ----D---- C:\Program Files\TuneUp Utilities 2012
2012-05-25 23:17:29 ----D---- C:\Documents and Settings\All Users\Application Data\TuneUp Software
2012-05-25 23:17:24 ----SHD---- C:\Documents and Settings\All Users\Application Data\{32364CEA-7855-4A3C-B674-53D8E9B97936}
2012-05-25 23:16:54 ----D---- C:\Program Files\VideoLAN
2012-05-25 23:08:46 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2012-05-25 23:06:51 ----D---- C:\totalcmd
2012-05-25 23:06:51 ----D---- C:\Documents and Settings\Peter\Application Data\GHISLER
2012-05-25 23:04:54 ----D---- C:\Documents and Settings\Peter\Application Data\WinRAR
2012-05-25 23:04:52 ----D---- C:\Program Files\WinRAR
2012-05-25 23:03:25 ----A---- C:\WINDOWS\system32\D3DX9_42.dll
2012-05-25 23:03:24 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2012-05-25 23:01:56 ----N---- C:\WINDOWS\system32\pxinsi64.exe
2012-05-25 23:01:56 ----N---- C:\WINDOWS\system32\pxcpyi64.exe
2012-05-25 23:01:56 ----N---- C:\WINDOWS\system32\pxcpya64.exe
2012-05-25 23:01:56 ----N---- C:\WINDOWS\system32\drivers\PxHelp20.sys
2012-05-25 23:01:56 ----N---- C:\WINDOWS\system32\drivers\cdralw2k.sys
2012-05-25 23:01:56 ----N---- C:\WINDOWS\system32\drivers\cdr4_xp.sys
2012-05-25 23:01:55 ----N---- C:\WINDOWS\system32\vxblock.dll
2012-05-25 23:01:55 ----N---- C:\WINDOWS\system32\pxwma.dll
2012-05-25 23:01:55 ----N---- C:\WINDOWS\system32\pxwave.dll
2012-05-25 23:01:55 ----N---- C:\WINDOWS\system32\pxsfs.dll
2012-05-25 23:01:55 ----N---- C:\WINDOWS\system32\pxmas.dll
2012-05-25 23:01:55 ----N---- C:\WINDOWS\system32\pxinsa64.exe
2012-05-25 23:01:55 ----N---- C:\WINDOWS\system32\pxhpinst.exe
2012-05-25 23:01:55 ----N---- C:\WINDOWS\system32\pxdrv.dll
2012-05-25 23:01:55 ----N---- C:\WINDOWS\system32\pxafs.dll
2012-05-25 23:01:55 ----N---- C:\WINDOWS\system32\px.dll
2012-05-25 23:01:55 ----D---- C:\Program Files\Winamp
2012-05-25 23:01:55 ----D---- C:\Documents and Settings\Peter\Application Data\Winamp
2012-05-25 22:53:38 ----D---- C:\Documents and Settings\Peter\Application Data\Skype
2012-05-25 22:53:24 ----RD---- C:\Program Files\Skype
2012-05-25 22:51:26 ----D---- C:\Program Files\MSXML 4.0
2012-05-25 22:51:11 ----HDC---- C:\WINDOWS\$NtUninstallKB929399$
2012-05-25 22:50:59 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2012-05-25 22:42:47 ----A---- C:\WINDOWS\system32\npdeployJava1.dll
2012-05-25 22:21:34 ----D---- C:\Documents and Settings\All Users\Application Data\Skype
2012-05-25 22:19:09 ----N---- C:\WINDOWS\system32\spmsg.dll
2012-05-25 22:17:20 ----D---- C:\Documents and Settings\All Users\Application Data\PC Suite
2012-05-25 22:17:19 ----D---- C:\Documents and Settings\Peter\Application Data\PC Suite
2012-05-25 22:16:42 ----D---- C:\Program Files\DIFX
2012-05-25 22:16:42 ----A---- C:\WINDOWS\system32\drivers\pccsmcfd.sys
2012-05-25 22:16:38 ----D---- C:\Program Files\PC Connectivity Solution
2012-05-25 22:16:30 ----A---- C:\WINDOWS\system32\nmwcdcls.dll
2012-05-25 22:15:59 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2012-05-25 22:15:43 ----D---- C:\WINDOWS\system32\LogFiles
2012-05-25 22:15:43 ----D---- C:\WINDOWS\system32\drivers\UMDF
2012-05-25 22:15:37 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2012-05-25 22:15:00 ----D---- C:\Program Files\Nokia
2012-05-25 22:15:00 ----D---- C:\Documents and Settings\All Users\Application Data\NokiaInstallerCache
2012-05-25 22:13:55 ----D---- C:\Documents and Settings\All Users\Application Data\Sun
2012-05-25 22:13:43 ----A---- C:\WINDOWS\system32\deployJava1.dll
2012-05-25 22:11:55 ----D---- C:\Documents and Settings\Peter\Application Data\Sun
2012-05-25 22:09:53 ----D---- C:\Program Files\IrfanView
2012-05-25 22:09:46 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2012-05-25 22:06:16 ----D---- C:\Documents and Settings\Peter\Application Data\Macromedia
2012-05-25 22:06:16 ----D---- C:\Documents and Settings\Peter\Application Data\Adobe
2012-05-25 22:05:45 ----D---- C:\Documents and Settings\All Users\Application Data\Mozilla
2012-05-25 22:04:30 ----D---- C:\Program Files\Microsoft.NET
2012-05-25 21:56:43 ----D---- C:\WINDOWS\ie8updates
2012-05-25 21:54:50 ----HDC---- C:\WINDOWS\ie8
2012-05-25 21:50:15 ----A---- C:\WINDOWS\system32\msdbg2.dll
2012-05-25 21:49:20 ----D---- C:\Documents and Settings\Peter\Application Data\ESET
2012-05-25 21:49:12 ----A---- C:\WINDOWS\system32\XAudio2_7.dll
2012-05-25 21:49:12 ----A---- C:\WINDOWS\system32\XAudio2_6.dll
2012-05-25 21:49:12 ----A---- C:\WINDOWS\system32\XAPOFX1_5.dll
2012-05-25 21:49:12 ----A---- C:\WINDOWS\system32\XAPOFX1_4.dll
2012-05-25 21:49:12 ----A---- C:\WINDOWS\system32\xactengine3_7.dll
2012-05-25 21:49:11 ----A---- C:\WINDOWS\system32\xactengine3_6.dll
2012-05-25 21:49:11 ----A---- C:\WINDOWS\system32\X3DAudio1_7.dll
2012-05-25 21:49:10 ----A---- C:\WINDOWS\system32\XAudio2_5.dll
2012-05-25 21:49:10 ----A---- C:\WINDOWS\system32\XAudio2_4.dll
2012-05-25 21:49:10 ----A---- C:\WINDOWS\system32\XAPOFX1_3.dll
2012-05-25 21:49:10 ----A---- C:\WINDOWS\system32\xactengine3_5.dll
2012-05-25 21:49:10 ----A---- C:\WINDOWS\system32\xactengine3_4.dll
2012-05-25 21:49:09 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
2012-05-25 21:49:09 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
2012-05-25 21:49:09 ----A---- C:\WINDOWS\system32\xactengine3_3.dll
2012-05-25 21:49:09 ----A---- C:\WINDOWS\system32\X3DAudio1_6.dll
2012-05-25 21:49:09 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
2012-05-25 21:49:08 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2012-05-25 21:49:08 ----A---- C:\WINDOWS\system32\XAudio2_1.dll
2012-05-25 21:49:08 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2012-05-25 21:49:08 ----A---- C:\WINDOWS\system32\XAPOFX1_0.dll
2012-05-25 21:49:08 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
2012-05-25 21:49:07 ----A---- C:\WINDOWS\system32\XAudio2_0.dll
2012-05-25 21:49:07 ----A---- C:\WINDOWS\system32\xactengine3_1.dll
2012-05-25 21:49:07 ----A---- C:\WINDOWS\system32\xactengine3_0.dll
2012-05-25 21:49:07 ----A---- C:\WINDOWS\system32\X3DAudio1_4.dll
2012-05-25 21:49:06 ----A---- C:\WINDOWS\system32\xactengine2_10.dll
2012-05-25 21:49:06 ----A---- C:\WINDOWS\system32\X3DAudio1_3.dll
2012-05-25 21:49:05 ----A---- C:\WINDOWS\system32\xinput1_3.dll
2012-05-25 21:49:05 ----A---- C:\WINDOWS\system32\xactengine2_9.dll
2012-05-25 21:49:05 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
2012-05-25 21:49:05 ----A---- C:\WINDOWS\system32\X3DAudio1_2.dll
2012-05-25 21:49:03 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
2012-05-25 21:49:03 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
2012-05-25 21:49:02 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
2012-05-25 21:49:01 ----A---- C:\WINDOWS\system32\xinput1_2.dll
2012-05-25 21:49:01 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
2012-05-25 21:49:01 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
2012-05-25 21:49:01 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
2012-05-25 21:49:00 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2012-05-25 21:49:00 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
2012-05-25 21:48:59 ----A---- C:\WINDOWS\system32\xinput9_1_0.dll
2012-05-25 21:48:59 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2012-05-25 21:48:59 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
2012-05-25 21:48:59 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2012-05-25 21:48:59 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
2012-05-25 21:48:59 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
2012-05-25 21:48:59 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
2012-05-25 21:48:23 ----D---- C:\Program Files\ESET
2012-05-25 21:48:23 ----D---- C:\Documents and Settings\All Users\Application Data\ESET
2012-05-25 21:46:26 ----D---- C:\WINDOWS\Logs
2012-05-25 21:46:03 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2012-05-25 21:46:01 ----D---- C:\Program Files\Common Files\Adobe
2012-05-25 21:46:01 ----D---- C:\Program Files\Adobe
2012-05-25 21:45:15 ----SHD---- C:\RECYCLER
2012-05-25 21:44:34 ----D---- C:\Program Files\Mozilla Firefox
2012-05-25 20:04:26 ----HDC---- C:\WINDOWS\$NtUninstallKB2345886$
2012-05-25 20:02:02 ----D---- C:\WINDOWS\system32\winrm
2012-05-25 20:02:02 ----D---- C:\WINDOWS\system32\WindowsPowerShell
2012-05-25 20:02:02 ----D---- C:\WINDOWS\system32\GroupPolicy
2012-05-25 20:02:00 ----HDC---- C:\WINDOWS\$968930Uinstall_KB968930$
2012-05-25 20:01:59 ----D---- C:\WINDOWS\$NtUninstallKB968930$
2012-05-25 19:59:03 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2012-05-25 19:58:02 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2012-05-25 19:43:57 ----HDC---- C:\WINDOWS\$NtUninstallKB2686509$
2012-05-25 19:43:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2659262$
2012-05-25 19:43:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2676562$
2012-05-25 19:43:46 ----HDC---- C:\WINDOWS\$NtUninstallKB2695962$
2012-05-25 19:43:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2675157$
2012-05-25 19:43:25 ----D---- C:\Program Files\NVIDIA Corporation
2012-05-25 19:43:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2653956$
2012-05-25 19:43:04 ----HDC---- C:\WINDOWS\$NtUninstallKB2621440$
2012-05-25 19:43:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2661637$
2012-05-25 19:42:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2646524$
2012-05-25 19:42:53 ----HDC---- C:\WINDOWS\$NtUninstallKB2598479$
2012-05-25 19:42:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2603381$
2012-05-25 19:42:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2585542$
2012-05-25 19:42:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2631813$
2012-05-25 19:42:41 ----HDC---- C:\WINDOWS\$NtUninstallKB2584146$
2012-05-25 19:42:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2633952$
2012-05-25 19:42:35 ----HDC---- C:\WINDOWS\$NtUninstallKB2620712$
2012-05-25 19:42:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2619339$
2012-05-25 19:42:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2618451$
2012-05-25 19:42:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2624667$
2012-05-25 19:42:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2641690$
2012-05-25 19:42:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893-v2$
2012-05-25 19:42:13 ----HDC---- C:\WINDOWS\$NtUninstallKB2564958$
2012-05-25 19:42:11 ----HDC---- C:\WINDOWS\$NtUninstallKB2592799$
2012-05-25 19:42:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2570947$
2012-05-25 19:42:05 ----HDC---- C:\WINDOWS\$NtUninstallKB2536276-v2$
2012-05-25 19:42:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2566454$
2012-05-25 19:41:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2507938$
2012-05-25 19:41:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2544521$
2012-05-25 19:41:54 ----HDC---- C:\WINDOWS\$NtUninstallKB2476490$
2012-05-25 19:41:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2535512$
2012-05-25 19:41:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2492386$
2012-05-25 19:41:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2509553$
2012-05-25 19:41:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2510581$
2012-05-25 19:41:37 ----HDC---- C:\WINDOWS\$NtUninstallKB2507618$
2012-05-25 19:41:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2506212$
2012-05-25 19:41:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2508429$
2012-05-25 19:41:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2485663$
2012-05-25 19:41:23 ----HDC---- C:\WINDOWS\$NtUninstallKB2481109$
2012-05-25 19:41:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2479943$
2012-05-25 19:41:16 ----HDC---- C:\WINDOWS\$NtUninstallKB971029$
2012-05-25 19:41:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2393802$
2012-05-25 19:41:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2478960$
2012-05-25 19:41:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2483185$
2012-05-25 19:40:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2478971$
2012-05-25 19:40:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2419632$
2012-05-25 19:40:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2012-05-25 19:40:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2012-05-25 19:40:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2012-05-25 19:40:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2079403$
2012-05-25 19:40:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2360937$
2012-05-25 19:40:36 ----HDC---- C:\WINDOWS\$NtUninstallKB982132$
2012-05-25 19:40:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2387149$
2012-05-25 19:40:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2378111_WM9$
2012-05-25 19:40:28 ----HDC---- C:\WINDOWS\$NtUninstallKB2296011$
2012-05-25 19:40:25 ----HDC---- C:\WINDOWS\$NtUninstallKB979687$
2012-05-25 19:40:22 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2012-05-25 19:40:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$
2012-05-25 19:40:17 ----HDC---- C:\WINDOWS\$NtUninstallKB981322$
2012-05-25 19:40:14 ----HDC---- C:\WINDOWS\$NtUninstallKB981997$
2012-05-25 19:40:12 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2012-05-25 19:40:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2012-05-25 19:40:07 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2012-05-25 19:40:04 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2012-05-25 19:40:02 ----HDC---- C:\WINDOWS\$NtUninstallKB978695_WM9$
2012-05-25 19:39:59 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2012-05-25 19:39:54 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2012-05-25 19:39:52 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2012-05-25 19:39:49 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2012-05-25 19:39:46 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2012-05-25 19:39:43 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2012-05-25 19:39:39 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2012-05-25 19:39:35 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2012-05-25 19:39:32 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2012-05-25 19:39:28 ----HDC---- C:\WINDOWS\$NtUninstallKB971513$
2012-05-25 19:39:25 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2012-05-25 19:39:21 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2012-05-25 19:39:18 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2012-05-25 19:39:15 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2012-05-25 19:39:12 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2012-05-25 19:39:08 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2012-05-25 19:39:05 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2012-05-25 19:39:02 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2012-05-25 19:38:59 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2012-05-25 19:38:56 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2012-05-25 19:38:53 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2012-05-25 19:38:51 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2012-05-25 19:38:48 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2012-05-25 19:38:46 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2012-05-25 19:38:43 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2012-05-25 19:38:40 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2012-05-25 19:38:37 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2012-05-25 19:38:34 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2012-05-25 19:38:31 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2012-05-25 19:38:28 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2012-05-25 19:36:28 ----D---- C:\WINDOWS\system32\XPSViewer
2012-05-25 19:36:26 ----D---- C:\Program Files\MSBuild
2012-05-25 19:36:22 ----D---- C:\Program Files\Reference Assemblies
2012-05-25 19:36:06 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2012-05-25 19:36:06 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2012-05-25 19:36:06 ----N---- C:\WINDOWS\system32\prntvpt.dll
2012-05-25 19:34:29 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2012-05-25 19:34:26 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2012-05-25 19:34:23 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2012-05-25 19:34:19 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2012-05-25 19:34:14 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2012-05-25 19:34:10 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2012-05-25 19:34:06 ----HDC---- C:\WINDOWS\$NtUninstallbasecsp$
2012-05-25 19:34:04 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2012-05-25 19:34:01 ----HDC---- C:\WINDOWS\$NtUninstallKB954459$
2012-05-25 19:33:58 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2012-05-25 19:33:56 ----D---- C:\WINDOWS\system32\sk-SK
2012-05-25 19:33:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2467659$
2012-05-25 19:33:02 ----D---- C:\WINDOWS\ie7updates
2012-05-25 19:32:54 ----D---- C:\WINDOWS\WBEM
2012-05-25 19:32:06 ----HDC---- C:\WINDOWS\ie7
2012-05-25 19:32:01 ----HDC---- C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$
2012-05-25 19:31:54 ----HDC---- C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$
2012-05-25 19:31:11 ----A---- C:\WINDOWS\system32\MRT.exe
2012-05-25 17:02:43 ----A---- C:\WINDOWS\system32\h323log.txt
2012-05-25 17:01:33 ----A---- C:\WINDOWS\system32\drivers\audstub.sys
2012-05-25 17:01:09 ----A---- C:\WINDOWS\system32\drivers\redbook.sys
2012-05-25 17:00:23 ----A---- C:\WINDOWS\system32\usbui.dll
2012-05-25 16:59:39 ----A---- C:\WINDOWS\imsins.BAK
2012-05-25 16:59:38 ----SHD---- C:\WINDOWS\Installer
2012-05-25 16:59:38 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2012-05-25 16:59:37 ----D---- C:\Program Files\Common Files\ODBC
2012-05-25 16:59:37 ----A---- C:\WINDOWS\ODBCINST.INI
2012-05-25 16:59:34 ----D---- C:\Program Files\Common Files\SpeechEngines
2012-05-25 16:59:33 ----RD---- C:\Program Files
2012-05-25 16:59:33 ----D---- C:\Program Files\Common Files\Microsoft Shared
2012-05-25 16:59:33 ----D---- C:\Program Files\Common Files
2012-05-25 16:59:31 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2012-05-25 16:59:31 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2012-05-25 16:59:31 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2012-05-25 16:59:29 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2012-05-25 16:59:29 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2012-05-25 16:59:29 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2012-05-25 16:59:29 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2012-05-25 16:59:28 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2012-05-25 16:59:28 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2012-05-25 16:59:28 ----RA---- C:\WINDOWS\system32\kbdur.dll
2012-05-25 16:59:28 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2012-05-25 16:59:28 ----RA---- C:\WINDOWS\system32\kbdru.dll
2012-05-25 16:59:28 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2012-05-25 16:59:28 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2012-05-25 16:59:28 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2012-05-25 16:59:26 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2012-05-25 16:59:26 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2012-05-25 16:59:26 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2012-05-25 16:59:26 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2012-05-25 16:59:26 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2012-05-25 16:59:26 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2012-05-25 16:59:26 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2012-05-25 16:59:25 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2012-05-25 16:59:25 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2012-05-25 16:59:25 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2012-05-25 16:59:25 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2012-05-25 16:59:25 ----RA---- C:\WINDOWS\system32\kbdest.dll
2012-05-25 16:59:22 ----RA---- C:\WINDOWS\system32\kbdycl.dll
2012-05-25 16:59:22 ----RA---- C:\WINDOWS\system32\kbdsl1.dll
2012-05-25 16:59:22 ----RA---- C:\WINDOWS\system32\kbdsl.dll
2012-05-25 16:59:22 ----RA---- C:\WINDOWS\system32\kbdro.dll
2012-05-25 16:59:22 ----RA---- C:\WINDOWS\system32\kbdpl1.dll
2012-05-25 16:59:22 ----RA---- C:\WINDOWS\system32\kbdpl.dll
2012-05-25 16:59:22 ----RA---- C:\WINDOWS\system32\kbdhu1.dll
2012-05-25 16:59:22 ----RA---- C:\WINDOWS\system32\kbdhu.dll
2012-05-25 16:59:22 ----RA---- C:\WINDOWS\system32\kbdcz2.dll
2012-05-25 16:59:22 ----RA---- C:\WINDOWS\system32\kbdcz1.dll
2012-05-25 16:59:22 ----RA---- C:\WINDOWS\system32\kbdcz.dll
2012-05-25 16:59:22 ----RA---- C:\WINDOWS\system32\kbdcr.dll
2012-05-25 16:59:22 ----RA---- C:\WINDOWS\system32\KBDAL.DLL
2012-05-25 16:59:20 ----A---- C:\WINDOWS\system32\spxcoins.dll
2012-05-25 16:59:20 ----A---- C:\WINDOWS\system32\irclass.dll
2012-05-25 16:59:20 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2012-05-25 16:59:20 ----A---- C:\WINDOWS\system32\dgsetup.dll
2012-05-25 16:59:20 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2012-05-25 16:59:17 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2012-05-25 16:59:17 ----A---- C:\WINDOWS\TASKMAN.EXE
2012-05-25 16:59:17 ----A---- C:\WINDOWS\system32\drivers\irenum.sys
2012-05-25 16:59:17 ----A---- C:\WINDOWS\system32\batt.dll
2012-05-25 16:59:16 ----A---- C:\WINDOWS\system32\storprop.dll
2012-05-25 16:59:16 ----A---- C:\WINDOWS\notepad.exe
2012-05-25 16:59:11 ----ASH---- C:\Documents and Settings\All Users\Application Data\desktop.ini
2012-05-25 16:58:00 ----RA---- C:\WINDOWS\SET25.tmp
2012-05-25 16:57:29 ----RA---- C:\WINDOWS\SET8.tmp
2012-05-25 16:57:27 ----RA---- C:\WINDOWS\SET4.tmp
2012-05-25 16:57:26 ----RA---- C:\WINDOWS\SET3.tmp
2012-05-25 16:57:21 ----D---- C:\WINDOWS\system32\CatRoot2
2012-05-25 16:57:21 ----D---- C:\WINDOWS\system32\CatRoot
2012-05-25 16:57:16 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2012-05-25 16:56:53 ----A---- C:\WINDOWS\setuplog.txt
2012-05-25 16:56:51 ----D---- C:\Documents and Settings
2012-05-25 16:56:50 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2012-05-25 16:55:57 ----SH---- C:\boot.ini
2012-05-25 16:51:06 ----SHD---- C:\System Volume Information
2012-05-25 16:50:15 ----RSHDC---- C:\WINDOWS\system32\dllcache
2012-05-25 16:50:15 ----RSD---- C:\WINDOWS\Fonts
2012-05-25 16:50:15 ----RD---- C:\WINDOWS\Web
2012-05-25 16:50:15 ----HD---- C:\WINDOWS\inf
2012-05-25 16:50:15 ----D---- C:\WINDOWS\WinSxS
2012-05-25 16:50:15 ----D---- C:\WINDOWS\twain_32
2012-05-25 16:50:15 ----D---- C:\WINDOWS\Temp
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\wins
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\wbem
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\usmt
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\spool
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\ShellExt
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\Setup
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\ras
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\oobe
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\npp
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\mui
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\inetsrv
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\IME
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\icsxml
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\ias
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\export
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\drivers\etc
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\drivers\disdn
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\drivers
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\dhcp
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\config
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\3com_dmi
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\3076
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\2052
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\1054
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\1042
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\1041
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\1037
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\1033
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\1031
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\1028
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\1025
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system
2012-05-25 16:50:15 ----D---- C:\WINDOWS\security
2012-05-25 16:50:15 ----D---- C:\WINDOWS\Resources
2012-05-25 16:50:15 ----D---- C:\WINDOWS\repair
2012-05-25 16:50:15 ----D---- C:\WINDOWS\Provisioning
2012-05-25 16:50:15 ----D---- C:\WINDOWS\pchealth
2012-05-25 16:50:15 ----D---- C:\WINDOWS\PeerNet
2012-05-25 16:50:15 ----D---- C:\WINDOWS\mui
2012-05-25 16:50:15 ----D---- C:\WINDOWS\msapps
2012-05-25 16:50:15 ----D---- C:\WINDOWS\msagent
2012-05-25 16:50:15 ----D---- C:\WINDOWS\Media
2012-05-25 16:50:15 ----D---- C:\WINDOWS\java
2012-05-25 16:50:15 ----D---- C:\WINDOWS\ime
2012-05-25 16:50:15 ----D---- C:\WINDOWS\Help
2012-05-25 16:50:15 ----D---- C:\WINDOWS\Driver Cache
2012-05-25 16:50:15 ----D---- C:\WINDOWS\Debug
2012-05-25 16:50:15 ----D---- C:\WINDOWS\Cursors
2012-05-25 16:50:15 ----D---- C:\WINDOWS\Connection Wizard
2012-05-25 16:50:15 ----D---- C:\WINDOWS\Config
2012-05-25 16:50:15 ----D---- C:\WINDOWS\AppPatch
2012-05-25 16:50:15 ----D---- C:\WINDOWS\addins
2012-05-25 16:50:15 ----D---- C:\WINDOWS
2012-05-25 16:50:15 ----ASH---- C:\pagefile.sys
2012-05-25 16:12:35 ----A---- C:\WINDOWS\system32\WinFXDocObj.exe
2012-05-25 16:12:35 ----A---- C:\WINDOWS\system32\msfeedssync.exe
2012-05-25 16:12:35 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
2012-05-25 16:12:35 ----A---- C:\WINDOWS\system32\msfeeds.dll
2012-05-25 16:12:34 ----A---- C:\WINDOWS\system32\ieui.dll
2012-05-25 16:12:34 ----A---- C:\WINDOWS\system32\ieudinit.exe
2012-05-25 16:12:34 ----A---- C:\WINDOWS\system32\iertutil.dll
2012-05-25 16:12:34 ----A---- C:\WINDOWS\system32\ieframe.dll
2012-05-25 16:12:34 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2012-05-25 16:12:34 ----A---- C:\WINDOWS\system32\ieapfltr.dat
2012-05-25 16:12:34 ----A---- C:\WINDOWS\system32\icardie.dll
2012-05-25 16:12:25 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2012-05-25 16:12:23 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2012-05-25 16:12:20 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2012-05-25 16:12:18 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2012-05-25 16:12:15 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2012-05-25 16:12:12 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2012-05-25 16:12:10 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2012-05-25 16:11:25 ----RSD---- C:\WINDOWS\assembly
2012-05-25 16:11:25 ----D---- C:\WINDOWS\Microsoft.NET
2012-05-25 16:11:24 ----D---- C:\WINDOWS\system32\URTTemp
2012-05-25 15:55:36 ----N---- C:\WINDOWS\system32\browserchoice.exe
2012-05-25 15:51:01 ----A---- C:\WINDOWS\system32\xpsp4res.dll
2012-05-25 15:47:15 ----N---- C:\WINDOWS\system32\iacenc.dll
2012-05-25 15:44:00 ----D---- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
2012-05-25 15:43:55 ----D---- C:\WINDOWS\system32\PreInstall
2012-05-25 15:43:54 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2012-05-25 15:41:56 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2012-05-25 15:41:20 ----D---- C:\WINDOWS\Prefetch
2012-05-25 15:38:40 ----N---- C:\WINDOWS\system32\msxml6r.dll
2012-05-25 15:38:40 ----A---- C:\WINDOWS\system32\msxml6.dll
2012-05-25 15:38:36 ----N---- C:\WINDOWS\system32\ati3d1ag.dll
2012-05-25 15:38:36 ----N---- C:\WINDOWS\system32\ati2dvag.dll
2012-05-25 15:38:36 ----N---- C:\WINDOWS\system32\ati2dvaa.dll
2012-05-25 15:38:36 ----N---- C:\WINDOWS\system32\ati2cqag.dll
2012-05-25 15:38:36 ----N---- C:\WINDOWS\system32\aaclient.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\kbdpash.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\kbdnepr.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\kbdiultn.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\kbdbhc.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\hsfcisp2.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\eapsvc.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\eapqec.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\eappprxy.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\eapphost.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\eappgnui.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\eappcfg.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\eapp3hst.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\eapolqec.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\dot3ui.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\dot3svc.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\dot3msm.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\dot3gpclnt.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\dot3dlg.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\dot3cfg.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\dot3api.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\dimsroam.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\dimsntfy.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\dhcpqec.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\credssp.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\bitsprx4.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\azroles.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\ativvaxx.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\ativtmxx.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\ati3duag.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\windowscodecsext.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\windowscodecs.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\verclsid.exe
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\tzchange.exe
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\tspkg.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\tsgqec.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\slserv.exe
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\slrundll.exe
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\slgen.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\slextspk.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\slcoinst.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\setupn.exe
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\s3gnb.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\rhttpaa.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\rasqec.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\qutil.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\qcliprov.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\qagentrt.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\qagent.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\photometadatahandler.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\onex.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\napstat.exe
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\napmontr.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\napipsec.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\mtxparhd.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\msshavmsg.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\mssha.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\mmcperf.exe
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\mmcfxcommon.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\mmcex.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\mdmxsdk.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\l2gpstore.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\kmsvc.dll
2012-05-25 15:38:33 ----N---- C:\WINDOWS\system32\wmphoto.dll
2012-05-25 15:38:33 ----N---- C:\WINDOWS\system32\wlanapi.dll
2012-05-25 15:38:33 ----N---- C:\WINDOWS\slrundll.exe
2012-05-25 15:38:33 ----D---- C:\WINDOWS\system32\scripting
2012-05-25 15:38:33 ----D---- C:\WINDOWS\system32\en-us
2012-05-25 15:38:33 ----A---- C:\WINDOWS\system32\xmllite.dll
2012-05-25 15:38:32 ----D---- C:\WINDOWS\system32\en
2012-05-25 15:38:32 ----D---- C:\WINDOWS\system32\bits
2012-05-25 15:38:32 ----D---- C:\WINDOWS\l2schemas
2012-05-25 15:38:00 ----D---- C:\WINDOWS\ServicePackFiles
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\ati2mtag.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\ati2mtaa.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\ati1xsxx.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\ati1xbxx.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\ati1tuxx.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\ati1ttxx.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\ati1snxx.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\ati1rvxx.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\ati1raxx.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\ati1pdxx.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\ati1mdxx.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\ati1btxx.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\amdagp.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\alim1541.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\agpcpq.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\agp440.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\adv11nt5.dll
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\adv09nt5.dll
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\adv08nt5.dll
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\adv07nt5.dll
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\adv05nt5.dll
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\adv02nt5.dll
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\adv01nt5.dll
2012-05-25 15:37:02 ----D---- C:\WINDOWS\network diagnostic
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\siint5.dll
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\sffp_mmc.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\s3gnbm.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\rndismpx.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\rfcomm.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\recagent.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\ntmtlfax.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\mutohpen.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\mtxparhm.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\mtlstrm.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\mtlmnt5.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\mdmxsdk.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\ch7xxnt5.dll
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\hsfdpsp2.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\hsfcxts2.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\hsfbs2s2.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\hidir.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\hidbth.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\gagp30kx.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\bthusb.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\bthprint.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\bthport.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\bthpan.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\bthmodem.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\bthenum.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\atv10nt5.dll
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\atv06nt5.dll
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\atv04nt5.dll
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\atv02nt5.dll
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\atv01nt5.dll
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\atinxsxx.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\atinxbxx.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\atintuxx.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\atinttxx.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\atinsnxx.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\atinrvxx.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\atinraxx.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\atinpdxx.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\atinmdxx.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\atinbtxx.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\watv10nt.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\watv06nt.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\wadv11nt.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\wadv09nt.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\wadv08nt.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\wadv07nt.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\wacompen.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\viaagp.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\vchnt5.dll
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\usbvideo.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\usb8023x.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\uagp35.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\smbali.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\slwdmsup.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\slnthal.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\slntamr.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\slnt7554.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\sisagp.sys
2012-05-25 15:36:21 ----A---- C:\WINDOWS\002594_.tmp
2012-05-25 15:35:13 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2012-05-25 15:35:12 ----D---- C:\WINDOWS\EHome
2012-05-25 15:33:05 ----A---- C:\WINDOWS\system32\wpa.bak
2012-05-25 15:31:02 ----A---- C:\WINDOWS\system32\drivers\ar5211.sys
2012-05-25 15:31:02 ----A---- C:\WINDOWS\system32\ar5211.sys
2012-05-25 15:30:48 ----D---- C:\temp
2012-05-25 15:25:16 ----D---- C:\WINDOWS\nview
2012-05-25 15:25:16 ----A---- C:\WINDOWS\system32\nvudisp.exe
2012-05-25 15:24:56 ----A---- C:\WINDOWS\system32\NVUNINST.EXE
2012-05-25 15:21:55 ----A---- C:\WINDOWS\system32\drivers\Rtenicxp.sys
2012-05-25 15:21:46 ----D---- C:\WINDOWS\OPTIONS
2012-05-25 15:21:42 ----D---- C:\Documents and Settings\Peter\Application Data\InstallShield
2012-05-25 15:21:23 ----D---- C:\WINDOWS\system32\Lang
2012-05-25 15:20:27 ----R---- C:\WINDOWS\system32\ChCfg.exe
2012-05-25 15:20:26 ----A---- C:\WINDOWS\system32\drivers\wdmaud.sys
2012-05-25 15:20:26 ----A---- C:\WINDOWS\system32\drivers\splitter.sys
2012-05-25 15:20:25 ----A---- C:\WINDOWS\system32\drivers\dmusic.sys
2012-05-25 15:20:23 ----A---- C:\WINDOWS\system32\drivers\swmidi.sys
2012-05-25 15:20:23 ----A---- C:\WINDOWS\system32\drivers\aec.sys
2012-05-25 15:20:22 ----A---- C:\WINDOWS\system32\drivers\kmixer.sys
2012-05-25 15:20:22 ----A---- C:\WINDOWS\system32\drivers\drmkaud.sys
2012-05-25 15:20:21 ----A---- C:\WINDOWS\system32\drivers\sysaudio.sys
2012-05-25 15:20:21 ----A---- C:\WINDOWS\system32\drivers\mskssrv.sys
2012-05-25 15:20:20 ----A---- C:\WINDOWS\system32\drivers\mspqm.sys
2012-05-25 15:20:20 ----A---- C:\WINDOWS\system32\drivers\mspclock.sys
2012-05-25 15:20:14 ----D---- C:\WINDOWS\system32\RTCOM
2012-05-25 15:20:13 ----A---- C:\WINDOWS\system32\ksuser.dll
2012-05-25 15:20:12 ----A---- C:\WINDOWS\system32\drivers\drmk.sys
2012-05-25 15:20:09 ----R---- C:\WINDOWS\SoundMan.exe
2012-05-25 15:20:09 ----R---- C:\WINDOWS\SkyTel.exe
2012-05-25 15:20:09 ----R---- C:\WINDOWS\RtlUpd.exe
2012-05-25 15:20:07 ----R---- C:\WINDOWS\RTLCPL.exe
2012-05-25 15:20:06 ----R---- C:\WINDOWS\system32\drivers\RtkHDAud.sys
2012-05-25 15:20:03 ----R---- C:\WINDOWS\RTHDCPL.exe
2012-05-25 15:20:03 ----R---- C:\WINDOWS\MicCal.exe
2012-05-25 15:20:01 ----R---- C:\WINDOWS\Alcmtr.exe
2012-05-25 15:20:00 ----R---- C:\WINDOWS\alcwzrd.exe
2012-05-25 15:20:00 ----D---- C:\Program Files\Realtek
2012-05-25 15:19:59 ----HD---- C:\Program Files\InstallShield Installation Information
2012-05-25 15:19:57 ----R---- C:\WINDOWS\RtlExUpd.dll
2012-05-25 15:19:57 ----A---- C:\WINDOWS\HideWin.exe
2012-05-25 15:19:54 ----D---- C:\Program Files\Common Files\InstallShield
2012-05-25 15:19:43 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2012-05-25 15:19:42 ----HDC---- C:\WINDOWS\$NtUninstallKB888111WXPSP2$
2012-05-25 15:17:57 ----D---- C:\WINDOWS\system32\ReinstallBackups
2012-05-25 15:17:55 ----DC---- C:\WINDOWS\system32\DRVSTORE
2012-05-25 15:17:55 ----D---- C:\Program Files\Intel
2012-05-25 15:17:55 ----A---- C:\WINDOWS\system32\CSVer.dll
2012-05-25 15:17:52 ----D---- C:\Intel
2012-05-25 15:17:18 ----A---- C:\WINDOWS\gdrv.sys
2012-05-25 15:12:59 ----D---- C:\WINDOWS\system32\1051
2012-05-25 15:11:10 ----D---- C:\Documents and Settings\Peter\Application Data\Identities
2012-05-25 15:11:09 ----HD---- C:\Program Files\Uninstall Information
2012-05-25 15:11:00 ----SD---- C:\Documents and Settings\Peter\Application Data\Microsoft
2012-05-25 15:11:00 ----ASH---- C:\Documents and Settings\Peter\Application Data\desktop.ini
2012-05-25 15:10:19 ----D---- C:\WINDOWS\SoftwareDistribution
2012-05-25 15:10:17 ----SD---- C:\WINDOWS\system32\Microsoft
2012-05-25 15:10:17 ----A---- C:\WINDOWS\SchedLgU.Txt
2012-05-25 15:09:17 ----AS---- C:\WINDOWS\bootstat.dat
2012-05-25 15:08:07 ----D---- C:\WINDOWS\system32\xircom
2012-05-25 15:08:07 ----D---- C:\Program Files\xerox
2012-05-25 15:08:07 ----D---- C:\Program Files\microsoft frontpage
2012-05-25 15:07:58 ----N---- C:\WINDOWS\system32\xpsp3res.dll
2012-05-25 15:07:58 ----HD---- C:\WINDOWS\$hf_mig$
2012-05-25 15:07:48 ----RASH---- C:\MSDOS.SYS
2012-05-25 15:07:48 ----RASH---- C:\IO.SYS
2012-05-25 15:07:48 ----A---- C:\WINDOWS\control.ini
2012-05-25 15:07:48 ----A---- C:\CONFIG.SYS
2012-05-25 15:07:48 ----A---- C:\AUTOEXEC.BAT
2012-05-25 15:07:42 ----A---- C:\WINDOWS\OEWABLog.txt
2012-05-25 15:07:39 ----A---- C:\WINDOWS\system32\mapi32.dll
2012-05-25 15:07:10 ----SD---- C:\WINDOWS\Downloaded Program Files
2012-05-25 15:07:10 ----RD---- C:\WINDOWS\Offline Web Pages
2012-05-25 15:07:04 ----HD---- C:\Program Files\WindowsUpdate
2012-05-25 15:06:48 ----D---- C:\WINDOWS\system32\DirectX
2012-05-25 15:06:26 ----A---- C:\WINDOWS\system32\atrace.dll
2012-05-25 15:06:22 ----A---- C:\WINDOWS\system32\desktop.ini
2012-05-25 15:06:22 ----A---- C:\WINDOWS\desktop.ini
2012-05-25 15:06:15 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2012-05-25 15:06:14 ----A---- C:\WINDOWS\system32\acctres.dll
2012-05-25 15:06:13 ----D---- C:\Program Files\Common Files\Services
2012-05-25 15:06:10 ----SD---- C:\WINDOWS\Tasks
2012-05-25 15:06:10 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2012-05-25 15:06:09 ----D---- C:\Program Files\Common Files\MSSoap
2012-05-25 15:06:04 ----D---- C:\WINDOWS\srchasst
2012-05-25 15:06:03 ----D---- C:\WINDOWS\system32\Macromed
2012-05-25 15:06:00 ----A---- C:\WINDOWS\system32\wuweb.dll
2012-05-25 15:06:00 ----A---- C:\WINDOWS\system32\wucltui.dll
2012-05-25 15:06:00 ----A---- C:\WINDOWS\system32\wuauserv.dll
2012-05-25 15:06:00 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2012-05-25 15:05:59 ----A---- C:\WINDOWS\system32\wups.dll
2012-05-25 15:05:59 ----A---- C:\WINDOWS\system32\wuaueng.dll
2012-05-25 15:05:59 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2012-05-25 15:05:59 ----A---- C:\WINDOWS\system32\wuauclt.exe
2012-05-25 15:05:59 ----A---- C:\WINDOWS\system32\wuapi.dll
2012-05-25 15:05:59 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2012-05-25 15:05:59 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2012-05-25 15:05:59 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2012-05-25 15:05:58 ----A---- C:\WINDOWS\system32\qmgr.dll
2012-05-25 15:05:54 ----D---- C:\Program Files\Movie Maker
2012-05-25 15:05:49 ----A---- C:\WINDOWS\system32\safrslv.dll
2012-05-25 15:05:49 ----A---- C:\WINDOWS\system32\safrdm.dll
2012-05-25 15:05:49 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2012-05-25 15:05:49 ----A---- C:\WINDOWS\system32\racpldlg.dll
2012-05-25 15:05:45 ----A---- C:\WINDOWS\system32\fltmc.exe
2012-05-25 15:05:45 ----A---- C:\WINDOWS\system32\fltlib.dll
2012-05-25 15:05:45 ----A---- C:\WINDOWS\system32\drivers\fltmgr.sys
2012-05-25 15:05:44 ----D---- C:\WINDOWS\system32\Restore
2012-05-25 15:05:44 ----A---- C:\WINDOWS\system32\srsvc.dll
2012-05-25 15:05:44 ----A---- C:\WINDOWS\system32\srrstr.dll
2012-05-25 15:05:44 ----A---- C:\WINDOWS\system32\srclient.dll
2012-05-25 15:05:44 ----A---- C:\WINDOWS\system32\drivers\sr.sys
2012-05-25 15:05:43 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2012-05-25 15:05:43 ----A---- C:\WINDOWS\system32\msconf.dll
2012-05-25 15:05:43 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2012-05-25 15:05:43 ----A---- C:\WINDOWS\system32\mnmdd.dll
2012-05-25 15:05:43 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2012-05-25 15:05:43 ----A---- C:\WINDOWS\system32\ils.dll
2012-05-25 15:05:39 ----D---- C:\Program Files\NetMeeting
2012-05-25 15:05:39 ----A---- C:\WINDOWS\system32\msoert2.dll
2012-05-25 15:05:39 ----A---- C:\WINDOWS\system32\msoeacct.dll
2012-05-25 15:05:38 ----A---- C:\WINDOWS\system32\inetres.dll
2012-05-25 15:05:38 ----A---- C:\WINDOWS\system32\inetcomm.dll
2012-05-25 15:05:35 ----D---- C:\Program Files\Outlook Express
2012-05-25 15:05:35 ----A---- C:\WINDOWS\system32\schedsvc.dll
2012-05-25 15:05:35 ----A---- C:\WINDOWS\system32\mstinit.exe
2012-05-25 15:05:35 ----A---- C:\WINDOWS\system32\mstask.dll
2012-05-25 15:05:35 ----A---- C:\WINDOWS\system32\icwphbk.dll
2012-05-25 15:05:35 ----A---- C:\WINDOWS\system32\icwdial.dll
2012-05-25 15:05:34 ----A---- C:\WINDOWS\system32\isign32.dll
2012-05-25 15:05:34 ----A---- C:\WINDOWS\system32\inetcfg.dll
2012-05-25 15:05:28 ----D---- C:\Program Files\Common Files\System
2012-05-25 15:05:27 ----D---- C:\Program Files\Internet Explorer
2012-05-25 15:05:26 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2012-05-25 15:05:17 ----D---- C:\Program Files\ComPlus Applications
2012-05-25 15:05:16 ----A---- C:\WINDOWS\vbaddin.ini
2012-05-25 15:05:16 ----A---- C:\WINDOWS\vb.ini
2012-05-25 15:05:12 ----D---- C:\WINDOWS\Registration
2012-05-25 15:04:56 ----D---- C:\Program Files\Online Services
2012-05-25 15:04:55 ----D---- C:\Program Files\Windows Media Player
2012-05-25 15:04:47 ----D---- C:\Program Files\MSN Gaming Zone
2012-05-25 15:04:47 ----A---- C:\WINDOWS\system32\write.exe
2012-05-25 15:04:39 ----A---- C:\WINDOWS\system32\sndvol32.exe
2012-05-25 15:04:39 ----A---- C:\WINDOWS\system32\hticons.dll
2012-05-25 15:04:39 ----A---- C:\WINDOWS\system32\avwav.dll
2012-05-25 15:04:38 ----A---- C:\WINDOWS\system32\winchat.exe
2012-05-25 15:04:38 ----A---- C:\WINDOWS\system32\avtapi.dll
2012-05-25 15:04:38 ----A---- C:\WINDOWS\system32\avmeter.dll
2012-05-25 15:04:31 ----A---- C:\WINDOWS\system32\getuname.dll
2012-05-25 15:04:30 ----A---- C:\WINDOWS\system32\sol.exe
2012-05-25 15:04:30 ----A---- C:\WINDOWS\system32\charmap.exe
2012-05-25 15:04:30 ----A---- C:\WINDOWS\system32\calc.exe
2012-05-25 15:04:29 ----A---- C:\WINDOWS\system32\winmine.exe
2012-05-25 15:04:29 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2012-05-25 15:04:29 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2012-05-25 15:04:29 ----A---- C:\WINDOWS\system32\tslabels.ini
2012-05-25 15:04:29 ----A---- C:\WINDOWS\system32\tskill.exe
2012-05-25 15:04:29 ----A---- C:\WINDOWS\system32\reset.exe
2012-05-25 15:04:29 ----A---- C:\WINDOWS\system32\mshearts.exe
2012-05-25 15:04:29 ----A---- C:\WINDOWS\system32\freecell.exe
2012-05-25 15:04:28 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2012-05-25 15:04:28 ----A---- C:\WINDOWS\system32\tscon.exe
2012-05-25 15:04:28 ----A---- C:\WINDOWS\system32\shadow.exe
2012-05-25 15:04:28 ----A---- C:\WINDOWS\system32\rwinsta.exe
2012-05-25 15:04:28 ----A---- C:\WINDOWS\system32\regini.exe
2012-05-25 15:04:28 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2012-05-25 15:04:28 ----A---- C:\WINDOWS\system32\qwinsta.exe
2012-05-25 15:04:28 ----A---- C:\WINDOWS\system32\qappsrv.exe
2012-05-25 15:04:28 ----A---- C:\WINDOWS\system32\msg.exe
2012-05-25 15:04:28 ----A---- C:\WINDOWS\system32\logoff.exe
2012-05-25 15:04:28 ----A---- C:\WINDOWS\system32\cdmodem.dll
2012-05-25 15:04:27 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2012-05-25 15:04:27 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2012-05-25 15:04:26 ----A---- C:\WINDOWS\system32\stclient.dll
2012-05-25 15:04:26 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2012-05-25 15:04:26 ----A---- C:\WINDOWS\system32\mtxex.dll
2012-05-25 15:04:26 ----A---- C:\WINDOWS\system32\mtxdm.dll
2012-05-25 15:04:26 ----A---- C:\WINDOWS\system32\comsnap.dll
2012-05-25 15:04:26 ----A---- C:\WINDOWS\system32\comrepl.dll
2012-05-25 15:04:26 ----A---- C:\WINDOWS\system32\comaddin.dll
2012-05-25 15:04:21 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2012-05-25 15:04:04 ----D---- C:\Program Files\MSN
2012-05-25 15:04:03 ----A---- C:\WINDOWS\system32\sndrec32.exe
2012-05-25 15:04:03 ----A---- C:\WINDOWS\system32\mplay32.exe
2012-05-25 15:04:03 ----A---- C:\WINDOWS\system32\hypertrm.dll
2012-05-25 15:04:03 ----A---- C:\WINDOWS\system32\accwiz.exe
2012-05-25 15:04:02 ----D---- C:\Program Files\Windows NT
2012-05-25 15:04:02 ----A---- C:\WINDOWS\system32\mspaint.exe
2012-05-25 15:04:02 ----A---- C:\WINDOWS\system32\clipbrd.exe
2012-05-25 15:04:01 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2012-05-25 15:04:01 ----A---- C:\WINDOWS\system32\spider.exe
2012-05-25 15:04:01 ----A---- C:\WINDOWS\system32\drivers\tdtcp.sys
2012-05-25 15:04:01 ----A---- C:\WINDOWS\system32\drivers\tdpipe.sys
2012-05-25 15:04:01 ----A---- C:\WINDOWS\system32\drivers\rdpwd.sys
2012-05-25 15:04:00 ----A---- C:\WINDOWS\system32\sessmgr.exe
2012-05-25 15:04:00 ----A---- C:\WINDOWS\system32\remotepg.dll
2012-05-25 15:04:00 ----A---- C:\WINDOWS\system32\rdshost.exe
2012-05-25 15:04:00 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2012-05-25 15:04:00 ----A---- C:\WINDOWS\system32\rdchost.dll
2012-05-25 15:04:00 ----A---- C:\WINDOWS\system32\mstscax.dll
2012-05-25 15:04:00 ----A---- C:\WINDOWS\system32\mstsc.exe
2012-05-25 15:03:59 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2012-05-25 15:03:59 ----A---- C:\WINDOWS\system32\termsrv.dll
2012-05-25 15:03:59 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2012-05-25 15:03:59 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2012-05-25 15:03:59 ----A---- C:\WINDOWS\system32\rdpclip.exe
2012-05-25 15:03:59 ----A---- C:\WINDOWS\system32\qprocess.exe
2012-05-25 15:03:59 ----A---- C:\WINDOWS\system32\icaapi.dll
2012-05-25 15:03:58 ----D---- C:\WINDOWS\system32\MsDtc
2012-05-25 15:03:58 ----A---- C:\WINDOWS\system32\mtxoci.dll
2012-05-25 15:03:58 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2012-05-25 15:03:58 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2012-05-25 15:03:58 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2012-05-25 15:03:57 ----A---- C:\WINDOWS\system32\xolehlp.dll
2012-05-25 15:03:57 ----A---- C:\WINDOWS\system32\msdtctm.dll
2012-05-25 15:03:57 ----A---- C:\WINDOWS\system32\msdtclog.dll
2012-05-25 15:03:57 ----A---- C:\WINDOWS\system32\msdtc.exe
2012-05-25 15:03:56 ----D---- C:\WINDOWS\system32\Com
2012-05-25 15:03:56 ----A---- C:\WINDOWS\system32\colbact.dll
2012-05-25 15:03:56 ----A---- C:\WINDOWS\system32\clbcatex.dll
2012-05-25 15:03:56 ----A---- C:\WINDOWS\system32\catsrvps.dll
2012-05-25 15:03:55 ----A---- C:\WINDOWS\system32\comsvcs.dll
2012-05-25 15:03:55 ----A---- C:\WINDOWS\system32\catsrvut.dll
2012-05-25 15:03:55 ----A---- C:\WINDOWS\system32\catsrv.dll
2012-05-25 15:03:54 ----A---- C:\WINDOWS\system32\comuid.dll
2012-05-25 15:03:54 ----A---- C:\WINDOWS\system32\clbcatq.dll
2012-05-25 15:03:48 ----A---- C:\WINDOWS\system32\servdeps.dll
2012-05-25 15:03:48 ----A---- C:\WINDOWS\system32\mmfutil.dll
2012-05-25 15:03:48 ----A---- C:\WINDOWS\system32\licwmi.dll
2012-05-25 15:03:48 ----A---- C:\WINDOWS\system32\cmprops.dll
2012-05-25 15:03:45 ----A---- C:\WINDOWS\system32\drivers\rdpdr.sys
2012-05-25 15:03:44 ----A---- C:\WINDOWS\system32\drivers\termdd.sys
======List of files/folders modified in the last 1 month======
2012-05-25 23:50:50 ----A---- C:\WINDOWS\win.ini
2012-05-25 15:14:59 ----A---- C:\WINDOWS\system.ini
2012-05-25 15:07:32 ----ASH---- C:\WINDOWS\fonts\desktop.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2011-03-04 45648]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2012-05-25 691696]
R1 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2012-03-14 160816]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2012-03-14 120152]
R1 epfwtdi;epfwtdi; C:\WINDOWS\system32\DRIVERS\epfwtdi.sys [2012-03-14 61936]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 36352]
R2 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2012-03-14 148504]
R3 AR5211;TP-LINK Wireless Network Adapter Service; C:\WINDOWS\system32\DRIVERS\ar5211.sys [2005-12-21 470048]
R3 Epfwndis;Eset Personal Firewall; C:\WINDOWS\system32\DRIVERS\Epfwndis.sys [2012-03-14 40336]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-09-19 4617728]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2006-02-28 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2012-02-09 13415040]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesDriver32.sys []
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S3 alvq0ifs;alvq0ifs; C:\WINDOWS\system32\drivers\alvq0ifs.sys []
S3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2010-07-06 234392]
S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WDC_SAM;WD SCSI Pass Thru driver; C:\WINDOWS\system32\DRIVERS\wdcsam.sys [2008-05-06 11520]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2012-03-07 913144]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe [2012-04-04 161664]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe [2012-04-05 1529152]
R2 UxTuneUp;TuneUp Theme Extension; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2007-12-04 155716]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-05-03 158856]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-25 257696]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2012-04-21 129976]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2011-10-27 718384]
S3 WinRM;Windows Remote Management (WS-Management); C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S4 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
-----------------EOF-----------------


Logfile of random's system information tool 1.09 (written by random/random)
Run by Peter at 2012-05-26 17:36:37
Systém Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 86 GB (84%) free of 102 GB
Total RAM: 3582 MB (83% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:36:41, on 26.5.2012
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe
C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\Winamp\winampa.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesApp32.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Documents and Settings\Peter\Desktop\RSIT.exe
C:\Program Files\trend micro\Peter.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://windowsupdate.microsoft.com/
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe
--
End of file - 5110 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\Peter\Application Data\Mozilla\Firefox\Profiles\xs86hqvr.default
prefs.js - "browser.startup.homepage" - "www.google.sk"
"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.2.202.235 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_2_202_235.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.4.1]
"Description"=
"Path"=C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.4.1]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
C:\Program Files\Mozilla Firefox\plugins\
NPOFF12.DLL
C:\Program Files\Mozilla Firefox\searchplugins\
atlas-sk.xml
azet-sk.xml
dunaj-sk.xml
eBay.xml
google.xml
slovnik-sk.xml
wikipedia-sk.xml
zoznam-sk.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-06-06 63912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll [2012-04-04 453504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll [2012-04-04 157576]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-06-06 937920]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2012-03-07 3117344]
"WinampAgent"=C:\Program Files\Winamp\winampa.exe [2011-07-11 74752]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2005-05-03 69632]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2007-09-19 16844800]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-01-17 252296]
"KernelFaultCheck"=C:\WINDOWS\system32\dumprep 0 -k []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2009-10-30 369200]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2012-05-03 17355912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\presentationhost.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2012\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======List of files/folders created in the last 1 month======
2012-05-26 17:36:37 ----D---- C:\rsit
2012-05-26 17:36:37 ----D---- C:\Program Files\trend micro
2012-05-26 17:20:20 ----D---- C:\Program Files\CrystalDiskInfo
2012-05-26 17:07:58 ----D---- C:\WINDOWS\Minidump
2012-05-26 17:03:02 ----D---- C:\Program Files\Common Files\Java
2012-05-26 17:02:51 ----D---- C:\Program Files\Oracle
2012-05-26 17:02:44 ----A---- C:\WINDOWS\system32\javaws.exe
2012-05-26 17:02:42 ----A---- C:\WINDOWS\system32\javaw.exe
2012-05-26 17:02:42 ----A---- C:\WINDOWS\system32\java.exe
2012-05-26 17:02:35 ----D---- C:\Program Files\Java
2012-05-26 16:51:36 ----D---- C:\Documents and Settings\Peter\Application Data\NVIDIA
2012-05-26 16:50:27 ----D---- C:\Documents and Settings\Peter\Application Data\.minecraft
2012-05-26 11:30:12 ----D---- C:\Documents and Settings\Peter\Application Data\Opera
2012-05-26 11:30:07 ----D---- C:\Program Files\Opera
2012-05-26 11:15:02 ----D---- C:\Documents and Settings\Peter\Application Data\Mozilla
2012-05-26 11:15:00 ----D---- C:\Program Files\Mozilla Maintenance Service
2012-05-26 11:11:07 ----D---- C:\Program Files\Common Files\Skype
2012-05-26 00:14:38 ----D---- C:\Documents and Settings\Peter\Application Data\Oracle
2012-05-26 00:07:16 ----AH---- C:\WINDOWS\system32\ezsidmv.dat
2012-05-26 00:07:05 ----D---- C:\Documents and Settings\Peter\Application Data\skypePM
2012-05-26 00:07:03 ----D---- C:\Documents and Settings\All Users\Application Data\Skype Extras
2012-05-25 23:52:22 ----D---- C:\Program Files\Microsoft Works
2012-05-25 23:52:14 ----D---- C:\Program Files\Microsoft Visual Studio
2012-05-25 23:52:14 ----D---- C:\Program Files\Common Files\DESIGNER
2012-05-25 23:50:42 ----D---- C:\WINDOWS\SHELLNEW
2012-05-25 23:50:32 ----D---- C:\Program Files\Microsoft Office
2012-05-25 23:50:31 ----D---- C:\Documents and Settings\All Users\Application Data\Microsoft Help
2012-05-25 23:50:07 ----RHD---- C:\MSOCache
2012-05-25 23:41:22 ----A---- C:\WINDOWS\system32\drivers\sptd.sys
2012-05-25 23:41:17 ----D---- C:\Program Files\DAEMON Tools Lite
2012-05-25 23:40:58 ----D---- C:\Documents and Settings\Peter\Application Data\DAEMON Tools Lite
2012-05-25 23:40:54 ----D---- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Lite
2012-05-25 23:33:35 ----HD---- C:\Documents and Settings\All Users\Application Data\Common Files
2012-05-25 23:28:50 ----A---- C:\WINDOWS\system32\uxtuneup.dll
2012-05-25 23:18:03 ----A---- C:\WINDOWS\system32\TURegOpt.exe
2012-05-25 23:17:56 ----D---- C:\Documents and Settings\Peter\Application Data\TuneUp Software
2012-05-25 23:17:49 ----D---- C:\Program Files\TuneUp Utilities 2012
2012-05-25 23:17:29 ----D---- C:\Documents and Settings\All Users\Application Data\TuneUp Software
2012-05-25 23:17:24 ----SHD---- C:\Documents and Settings\All Users\Application Data\{32364CEA-7855-4A3C-B674-53D8E9B97936}
2012-05-25 23:16:54 ----D---- C:\Program Files\VideoLAN
2012-05-25 23:08:46 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2012-05-25 23:06:51 ----D---- C:\totalcmd
2012-05-25 23:06:51 ----D---- C:\Documents and Settings\Peter\Application Data\GHISLER
2012-05-25 23:04:54 ----D---- C:\Documents and Settings\Peter\Application Data\WinRAR
2012-05-25 23:04:52 ----D---- C:\Program Files\WinRAR
2012-05-25 23:03:25 ----A---- C:\WINDOWS\system32\D3DX9_42.dll
2012-05-25 23:03:24 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2012-05-25 23:01:56 ----N---- C:\WINDOWS\system32\pxinsi64.exe
2012-05-25 23:01:56 ----N---- C:\WINDOWS\system32\pxcpyi64.exe
2012-05-25 23:01:56 ----N---- C:\WINDOWS\system32\pxcpya64.exe
2012-05-25 23:01:56 ----N---- C:\WINDOWS\system32\drivers\PxHelp20.sys
2012-05-25 23:01:56 ----N---- C:\WINDOWS\system32\drivers\cdralw2k.sys
2012-05-25 23:01:56 ----N---- C:\WINDOWS\system32\drivers\cdr4_xp.sys
2012-05-25 23:01:55 ----N---- C:\WINDOWS\system32\vxblock.dll
2012-05-25 23:01:55 ----N---- C:\WINDOWS\system32\pxwma.dll
2012-05-25 23:01:55 ----N---- C:\WINDOWS\system32\pxwave.dll
2012-05-25 23:01:55 ----N---- C:\WINDOWS\system32\pxsfs.dll
2012-05-25 23:01:55 ----N---- C:\WINDOWS\system32\pxmas.dll
2012-05-25 23:01:55 ----N---- C:\WINDOWS\system32\pxinsa64.exe
2012-05-25 23:01:55 ----N---- C:\WINDOWS\system32\pxhpinst.exe
2012-05-25 23:01:55 ----N---- C:\WINDOWS\system32\pxdrv.dll
2012-05-25 23:01:55 ----N---- C:\WINDOWS\system32\pxafs.dll
2012-05-25 23:01:55 ----N---- C:\WINDOWS\system32\px.dll
2012-05-25 23:01:55 ----D---- C:\Program Files\Winamp
2012-05-25 23:01:55 ----D---- C:\Documents and Settings\Peter\Application Data\Winamp
2012-05-25 22:53:38 ----D---- C:\Documents and Settings\Peter\Application Data\Skype
2012-05-25 22:53:24 ----RD---- C:\Program Files\Skype
2012-05-25 22:51:26 ----D---- C:\Program Files\MSXML 4.0
2012-05-25 22:51:11 ----HDC---- C:\WINDOWS\$NtUninstallKB929399$
2012-05-25 22:50:59 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2012-05-25 22:42:47 ----A---- C:\WINDOWS\system32\npdeployJava1.dll
2012-05-25 22:21:34 ----D---- C:\Documents and Settings\All Users\Application Data\Skype
2012-05-25 22:19:09 ----N---- C:\WINDOWS\system32\spmsg.dll
2012-05-25 22:17:20 ----D---- C:\Documents and Settings\All Users\Application Data\PC Suite
2012-05-25 22:17:19 ----D---- C:\Documents and Settings\Peter\Application Data\PC Suite
2012-05-25 22:16:42 ----D---- C:\Program Files\DIFX
2012-05-25 22:16:42 ----A---- C:\WINDOWS\system32\drivers\pccsmcfd.sys
2012-05-25 22:16:38 ----D---- C:\Program Files\PC Connectivity Solution
2012-05-25 22:16:30 ----A---- C:\WINDOWS\system32\nmwcdcls.dll
2012-05-25 22:15:59 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2012-05-25 22:15:43 ----D---- C:\WINDOWS\system32\LogFiles
2012-05-25 22:15:43 ----D---- C:\WINDOWS\system32\drivers\UMDF
2012-05-25 22:15:37 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2012-05-25 22:15:00 ----D---- C:\Program Files\Nokia
2012-05-25 22:15:00 ----D---- C:\Documents and Settings\All Users\Application Data\NokiaInstallerCache
2012-05-25 22:13:55 ----D---- C:\Documents and Settings\All Users\Application Data\Sun
2012-05-25 22:13:43 ----A---- C:\WINDOWS\system32\deployJava1.dll
2012-05-25 22:11:55 ----D---- C:\Documents and Settings\Peter\Application Data\Sun
2012-05-25 22:09:53 ----D---- C:\Program Files\IrfanView
2012-05-25 22:09:46 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2012-05-25 22:06:16 ----D---- C:\Documents and Settings\Peter\Application Data\Macromedia
2012-05-25 22:06:16 ----D---- C:\Documents and Settings\Peter\Application Data\Adobe
2012-05-25 22:05:45 ----D---- C:\Documents and Settings\All Users\Application Data\Mozilla
2012-05-25 22:04:30 ----D---- C:\Program Files\Microsoft.NET
2012-05-25 21:56:43 ----D---- C:\WINDOWS\ie8updates
2012-05-25 21:54:50 ----HDC---- C:\WINDOWS\ie8
2012-05-25 21:50:15 ----A---- C:\WINDOWS\system32\msdbg2.dll
2012-05-25 21:49:20 ----D---- C:\Documents and Settings\Peter\Application Data\ESET
2012-05-25 21:49:12 ----A---- C:\WINDOWS\system32\XAudio2_7.dll
2012-05-25 21:49:12 ----A---- C:\WINDOWS\system32\XAudio2_6.dll
2012-05-25 21:49:12 ----A---- C:\WINDOWS\system32\XAPOFX1_5.dll
2012-05-25 21:49:12 ----A---- C:\WINDOWS\system32\XAPOFX1_4.dll
2012-05-25 21:49:12 ----A---- C:\WINDOWS\system32\xactengine3_7.dll
2012-05-25 21:49:11 ----A---- C:\WINDOWS\system32\xactengine3_6.dll
2012-05-25 21:49:11 ----A---- C:\WINDOWS\system32\X3DAudio1_7.dll
2012-05-25 21:49:10 ----A---- C:\WINDOWS\system32\XAudio2_5.dll
2012-05-25 21:49:10 ----A---- C:\WINDOWS\system32\XAudio2_4.dll
2012-05-25 21:49:10 ----A---- C:\WINDOWS\system32\XAPOFX1_3.dll
2012-05-25 21:49:10 ----A---- C:\WINDOWS\system32\xactengine3_5.dll
2012-05-25 21:49:10 ----A---- C:\WINDOWS\system32\xactengine3_4.dll
2012-05-25 21:49:09 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
2012-05-25 21:49:09 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
2012-05-25 21:49:09 ----A---- C:\WINDOWS\system32\xactengine3_3.dll
2012-05-25 21:49:09 ----A---- C:\WINDOWS\system32\X3DAudio1_6.dll
2012-05-25 21:49:09 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
2012-05-25 21:49:08 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2012-05-25 21:49:08 ----A---- C:\WINDOWS\system32\XAudio2_1.dll
2012-05-25 21:49:08 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2012-05-25 21:49:08 ----A---- C:\WINDOWS\system32\XAPOFX1_0.dll
2012-05-25 21:49:08 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
2012-05-25 21:49:07 ----A---- C:\WINDOWS\system32\XAudio2_0.dll
2012-05-25 21:49:07 ----A---- C:\WINDOWS\system32\xactengine3_1.dll
2012-05-25 21:49:07 ----A---- C:\WINDOWS\system32\xactengine3_0.dll
2012-05-25 21:49:07 ----A---- C:\WINDOWS\system32\X3DAudio1_4.dll
2012-05-25 21:49:06 ----A---- C:\WINDOWS\system32\xactengine2_10.dll
2012-05-25 21:49:06 ----A---- C:\WINDOWS\system32\X3DAudio1_3.dll
2012-05-25 21:49:05 ----A---- C:\WINDOWS\system32\xinput1_3.dll
2012-05-25 21:49:05 ----A---- C:\WINDOWS\system32\xactengine2_9.dll
2012-05-25 21:49:05 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
2012-05-25 21:49:05 ----A---- C:\WINDOWS\system32\X3DAudio1_2.dll
2012-05-25 21:49:03 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
2012-05-25 21:49:03 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
2012-05-25 21:49:02 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
2012-05-25 21:49:01 ----A---- C:\WINDOWS\system32\xinput1_2.dll
2012-05-25 21:49:01 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
2012-05-25 21:49:01 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
2012-05-25 21:49:01 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
2012-05-25 21:49:00 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2012-05-25 21:49:00 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
2012-05-25 21:48:59 ----A---- C:\WINDOWS\system32\xinput9_1_0.dll
2012-05-25 21:48:59 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2012-05-25 21:48:59 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
2012-05-25 21:48:59 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2012-05-25 21:48:59 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
2012-05-25 21:48:59 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
2012-05-25 21:48:59 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
2012-05-25 21:48:23 ----D---- C:\Program Files\ESET
2012-05-25 21:48:23 ----D---- C:\Documents and Settings\All Users\Application Data\ESET
2012-05-25 21:46:26 ----D---- C:\WINDOWS\Logs
2012-05-25 21:46:03 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2012-05-25 21:46:01 ----D---- C:\Program Files\Common Files\Adobe
2012-05-25 21:46:01 ----D---- C:\Program Files\Adobe
2012-05-25 21:45:15 ----SHD---- C:\RECYCLER
2012-05-25 21:44:34 ----D---- C:\Program Files\Mozilla Firefox
2012-05-25 20:04:26 ----HDC---- C:\WINDOWS\$NtUninstallKB2345886$
2012-05-25 20:02:02 ----D---- C:\WINDOWS\system32\winrm
2012-05-25 20:02:02 ----D---- C:\WINDOWS\system32\WindowsPowerShell
2012-05-25 20:02:02 ----D---- C:\WINDOWS\system32\GroupPolicy
2012-05-25 20:02:00 ----HDC---- C:\WINDOWS\$968930Uinstall_KB968930$
2012-05-25 20:01:59 ----D---- C:\WINDOWS\$NtUninstallKB968930$
2012-05-25 19:59:03 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2012-05-25 19:58:02 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2012-05-25 19:43:57 ----HDC---- C:\WINDOWS\$NtUninstallKB2686509$
2012-05-25 19:43:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2659262$
2012-05-25 19:43:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2676562$
2012-05-25 19:43:46 ----HDC---- C:\WINDOWS\$NtUninstallKB2695962$
2012-05-25 19:43:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2675157$
2012-05-25 19:43:25 ----D---- C:\Program Files\NVIDIA Corporation
2012-05-25 19:43:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2653956$
2012-05-25 19:43:04 ----HDC---- C:\WINDOWS\$NtUninstallKB2621440$
2012-05-25 19:43:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2661637$
2012-05-25 19:42:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2646524$
2012-05-25 19:42:53 ----HDC---- C:\WINDOWS\$NtUninstallKB2598479$
2012-05-25 19:42:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2603381$
2012-05-25 19:42:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2585542$
2012-05-25 19:42:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2631813$
2012-05-25 19:42:41 ----HDC---- C:\WINDOWS\$NtUninstallKB2584146$
2012-05-25 19:42:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2633952$
2012-05-25 19:42:35 ----HDC---- C:\WINDOWS\$NtUninstallKB2620712$
2012-05-25 19:42:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2619339$
2012-05-25 19:42:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2618451$
2012-05-25 19:42:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2624667$
2012-05-25 19:42:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2641690$
2012-05-25 19:42:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893-v2$
2012-05-25 19:42:13 ----HDC---- C:\WINDOWS\$NtUninstallKB2564958$
2012-05-25 19:42:11 ----HDC---- C:\WINDOWS\$NtUninstallKB2592799$
2012-05-25 19:42:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2570947$
2012-05-25 19:42:05 ----HDC---- C:\WINDOWS\$NtUninstallKB2536276-v2$
2012-05-25 19:42:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2566454$
2012-05-25 19:41:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2507938$
2012-05-25 19:41:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2544521$
2012-05-25 19:41:54 ----HDC---- C:\WINDOWS\$NtUninstallKB2476490$
2012-05-25 19:41:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2535512$
2012-05-25 19:41:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2492386$
2012-05-25 19:41:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2509553$
2012-05-25 19:41:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2510581$
2012-05-25 19:41:37 ----HDC---- C:\WINDOWS\$NtUninstallKB2507618$
2012-05-25 19:41:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2506212$
2012-05-25 19:41:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2508429$
2012-05-25 19:41:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2485663$
2012-05-25 19:41:23 ----HDC---- C:\WINDOWS\$NtUninstallKB2481109$
2012-05-25 19:41:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2479943$
2012-05-25 19:41:16 ----HDC---- C:\WINDOWS\$NtUninstallKB971029$
2012-05-25 19:41:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2393802$
2012-05-25 19:41:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2478960$
2012-05-25 19:41:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2483185$
2012-05-25 19:40:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2478971$
2012-05-25 19:40:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2419632$
2012-05-25 19:40:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2012-05-25 19:40:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2012-05-25 19:40:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2012-05-25 19:40:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2079403$
2012-05-25 19:40:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2360937$
2012-05-25 19:40:36 ----HDC---- C:\WINDOWS\$NtUninstallKB982132$
2012-05-25 19:40:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2387149$
2012-05-25 19:40:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2378111_WM9$
2012-05-25 19:40:28 ----HDC---- C:\WINDOWS\$NtUninstallKB2296011$
2012-05-25 19:40:25 ----HDC---- C:\WINDOWS\$NtUninstallKB979687$
2012-05-25 19:40:22 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2012-05-25 19:40:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$
2012-05-25 19:40:17 ----HDC---- C:\WINDOWS\$NtUninstallKB981322$
2012-05-25 19:40:14 ----HDC---- C:\WINDOWS\$NtUninstallKB981997$
2012-05-25 19:40:12 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2012-05-25 19:40:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2012-05-25 19:40:07 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2012-05-25 19:40:04 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2012-05-25 19:40:02 ----HDC---- C:\WINDOWS\$NtUninstallKB978695_WM9$
2012-05-25 19:39:59 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2012-05-25 19:39:54 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2012-05-25 19:39:52 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2012-05-25 19:39:49 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2012-05-25 19:39:46 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2012-05-25 19:39:43 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2012-05-25 19:39:39 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2012-05-25 19:39:35 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2012-05-25 19:39:32 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2012-05-25 19:39:28 ----HDC---- C:\WINDOWS\$NtUninstallKB971513$
2012-05-25 19:39:25 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2012-05-25 19:39:21 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2012-05-25 19:39:18 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2012-05-25 19:39:15 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2012-05-25 19:39:12 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2012-05-25 19:39:08 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2012-05-25 19:39:05 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2012-05-25 19:39:02 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2012-05-25 19:38:59 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2012-05-25 19:38:56 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2012-05-25 19:38:53 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2012-05-25 19:38:51 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2012-05-25 19:38:48 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2012-05-25 19:38:46 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2012-05-25 19:38:43 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2012-05-25 19:38:40 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2012-05-25 19:38:37 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2012-05-25 19:38:34 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2012-05-25 19:38:31 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2012-05-25 19:38:28 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2012-05-25 19:36:28 ----D---- C:\WINDOWS\system32\XPSViewer
2012-05-25 19:36:26 ----D---- C:\Program Files\MSBuild
2012-05-25 19:36:22 ----D---- C:\Program Files\Reference Assemblies
2012-05-25 19:36:06 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2012-05-25 19:36:06 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2012-05-25 19:36:06 ----N---- C:\WINDOWS\system32\prntvpt.dll
2012-05-25 19:34:29 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2012-05-25 19:34:26 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2012-05-25 19:34:23 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2012-05-25 19:34:19 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2012-05-25 19:34:14 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2012-05-25 19:34:10 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2012-05-25 19:34:06 ----HDC---- C:\WINDOWS\$NtUninstallbasecsp$
2012-05-25 19:34:04 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2012-05-25 19:34:01 ----HDC---- C:\WINDOWS\$NtUninstallKB954459$
2012-05-25 19:33:58 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2012-05-25 19:33:56 ----D---- C:\WINDOWS\system32\sk-SK
2012-05-25 19:33:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2467659$
2012-05-25 19:33:02 ----D---- C:\WINDOWS\ie7updates
2012-05-25 19:32:54 ----D---- C:\WINDOWS\WBEM
2012-05-25 19:32:06 ----HDC---- C:\WINDOWS\ie7
2012-05-25 19:32:01 ----HDC---- C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$
2012-05-25 19:31:54 ----HDC---- C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$
2012-05-25 19:31:11 ----A---- C:\WINDOWS\system32\MRT.exe
2012-05-25 17:02:43 ----A---- C:\WINDOWS\system32\h323log.txt
2012-05-25 17:01:33 ----A---- C:\WINDOWS\system32\drivers\audstub.sys
2012-05-25 17:01:09 ----A---- C:\WINDOWS\system32\drivers\redbook.sys
2012-05-25 17:00:23 ----A---- C:\WINDOWS\system32\usbui.dll
2012-05-25 16:59:39 ----A---- C:\WINDOWS\imsins.BAK
2012-05-25 16:59:38 ----SHD---- C:\WINDOWS\Installer
2012-05-25 16:59:38 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2012-05-25 16:59:37 ----D---- C:\Program Files\Common Files\ODBC
2012-05-25 16:59:37 ----A---- C:\WINDOWS\ODBCINST.INI
2012-05-25 16:59:34 ----D---- C:\Program Files\Common Files\SpeechEngines
2012-05-25 16:59:33 ----RD---- C:\Program Files
2012-05-25 16:59:33 ----D---- C:\Program Files\Common Files\Microsoft Shared
2012-05-25 16:59:33 ----D---- C:\Program Files\Common Files
2012-05-25 16:59:31 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2012-05-25 16:59:31 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2012-05-25 16:59:31 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2012-05-25 16:59:29 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2012-05-25 16:59:29 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2012-05-25 16:59:29 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2012-05-25 16:59:29 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2012-05-25 16:59:28 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2012-05-25 16:59:28 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2012-05-25 16:59:28 ----RA---- C:\WINDOWS\system32\kbdur.dll
2012-05-25 16:59:28 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2012-05-25 16:59:28 ----RA---- C:\WINDOWS\system32\kbdru.dll
2012-05-25 16:59:28 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2012-05-25 16:59:28 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2012-05-25 16:59:28 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2012-05-25 16:59:26 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2012-05-25 16:59:26 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2012-05-25 16:59:26 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2012-05-25 16:59:26 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2012-05-25 16:59:26 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2012-05-25 16:59:26 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2012-05-25 16:59:26 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2012-05-25 16:59:25 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2012-05-25 16:59:25 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2012-05-25 16:59:25 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2012-05-25 16:59:25 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2012-05-25 16:59:25 ----RA---- C:\WINDOWS\system32\kbdest.dll
2012-05-25 16:59:22 ----RA---- C:\WINDOWS\system32\kbdycl.dll
2012-05-25 16:59:22 ----RA---- C:\WINDOWS\system32\kbdsl1.dll
2012-05-25 16:59:22 ----RA---- C:\WINDOWS\system32\kbdsl.dll
2012-05-25 16:59:22 ----RA---- C:\WINDOWS\system32\kbdro.dll
2012-05-25 16:59:22 ----RA---- C:\WINDOWS\system32\kbdpl1.dll
2012-05-25 16:59:22 ----RA---- C:\WINDOWS\system32\kbdpl.dll
2012-05-25 16:59:22 ----RA---- C:\WINDOWS\system32\kbdhu1.dll
2012-05-25 16:59:22 ----RA---- C:\WINDOWS\system32\kbdhu.dll
2012-05-25 16:59:22 ----RA---- C:\WINDOWS\system32\kbdcz2.dll
2012-05-25 16:59:22 ----RA---- C:\WINDOWS\system32\kbdcz1.dll
2012-05-25 16:59:22 ----RA---- C:\WINDOWS\system32\kbdcz.dll
2012-05-25 16:59:22 ----RA---- C:\WINDOWS\system32\kbdcr.dll
2012-05-25 16:59:22 ----RA---- C:\WINDOWS\system32\KBDAL.DLL
2012-05-25 16:59:20 ----A---- C:\WINDOWS\system32\spxcoins.dll
2012-05-25 16:59:20 ----A---- C:\WINDOWS\system32\irclass.dll
2012-05-25 16:59:20 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2012-05-25 16:59:20 ----A---- C:\WINDOWS\system32\dgsetup.dll
2012-05-25 16:59:20 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2012-05-25 16:59:17 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2012-05-25 16:59:17 ----A---- C:\WINDOWS\TASKMAN.EXE
2012-05-25 16:59:17 ----A---- C:\WINDOWS\system32\drivers\irenum.sys
2012-05-25 16:59:17 ----A---- C:\WINDOWS\system32\batt.dll
2012-05-25 16:59:16 ----A---- C:\WINDOWS\system32\storprop.dll
2012-05-25 16:59:16 ----A---- C:\WINDOWS\notepad.exe
2012-05-25 16:59:11 ----ASH---- C:\Documents and Settings\All Users\Application Data\desktop.ini
2012-05-25 16:58:00 ----RA---- C:\WINDOWS\SET25.tmp
2012-05-25 16:57:29 ----RA---- C:\WINDOWS\SET8.tmp
2012-05-25 16:57:27 ----RA---- C:\WINDOWS\SET4.tmp
2012-05-25 16:57:26 ----RA---- C:\WINDOWS\SET3.tmp
2012-05-25 16:57:21 ----D---- C:\WINDOWS\system32\CatRoot2
2012-05-25 16:57:21 ----D---- C:\WINDOWS\system32\CatRoot
2012-05-25 16:57:16 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2012-05-25 16:56:53 ----A---- C:\WINDOWS\setuplog.txt
2012-05-25 16:56:51 ----D---- C:\Documents and Settings
2012-05-25 16:56:50 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2012-05-25 16:55:57 ----SH---- C:\boot.ini
2012-05-25 16:51:06 ----SHD---- C:\System Volume Information
2012-05-25 16:50:15 ----RSHDC---- C:\WINDOWS\system32\dllcache
2012-05-25 16:50:15 ----RSD---- C:\WINDOWS\Fonts
2012-05-25 16:50:15 ----RD---- C:\WINDOWS\Web
2012-05-25 16:50:15 ----HD---- C:\WINDOWS\inf
2012-05-25 16:50:15 ----D---- C:\WINDOWS\WinSxS
2012-05-25 16:50:15 ----D---- C:\WINDOWS\twain_32
2012-05-25 16:50:15 ----D---- C:\WINDOWS\Temp
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\wins
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\wbem
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\usmt
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\spool
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\ShellExt
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\Setup
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\ras
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\oobe
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\npp
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\mui
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\inetsrv
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\IME
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\icsxml
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\ias
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\export
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\drivers\etc
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\drivers\disdn
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\drivers
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\dhcp
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\config
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\3com_dmi
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\3076
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\2052
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\1054
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\1042
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\1041
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\1037
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\1033
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\1031
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\1028
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32\1025
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system32
2012-05-25 16:50:15 ----D---- C:\WINDOWS\system
2012-05-25 16:50:15 ----D---- C:\WINDOWS\security
2012-05-25 16:50:15 ----D---- C:\WINDOWS\Resources
2012-05-25 16:50:15 ----D---- C:\WINDOWS\repair
2012-05-25 16:50:15 ----D---- C:\WINDOWS\Provisioning
2012-05-25 16:50:15 ----D---- C:\WINDOWS\pchealth
2012-05-25 16:50:15 ----D---- C:\WINDOWS\PeerNet
2012-05-25 16:50:15 ----D---- C:\WINDOWS\mui
2012-05-25 16:50:15 ----D---- C:\WINDOWS\msapps
2012-05-25 16:50:15 ----D---- C:\WINDOWS\msagent
2012-05-25 16:50:15 ----D---- C:\WINDOWS\Media
2012-05-25 16:50:15 ----D---- C:\WINDOWS\java
2012-05-25 16:50:15 ----D---- C:\WINDOWS\ime
2012-05-25 16:50:15 ----D---- C:\WINDOWS\Help
2012-05-25 16:50:15 ----D---- C:\WINDOWS\Driver Cache
2012-05-25 16:50:15 ----D---- C:\WINDOWS\Debug
2012-05-25 16:50:15 ----D---- C:\WINDOWS\Cursors
2012-05-25 16:50:15 ----D---- C:\WINDOWS\Connection Wizard
2012-05-25 16:50:15 ----D---- C:\WINDOWS\Config
2012-05-25 16:50:15 ----D---- C:\WINDOWS\AppPatch
2012-05-25 16:50:15 ----D---- C:\WINDOWS\addins
2012-05-25 16:50:15 ----D---- C:\WINDOWS
2012-05-25 16:50:15 ----ASH---- C:\pagefile.sys
2012-05-25 16:12:35 ----A---- C:\WINDOWS\system32\WinFXDocObj.exe
2012-05-25 16:12:35 ----A---- C:\WINDOWS\system32\msfeedssync.exe
2012-05-25 16:12:35 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
2012-05-25 16:12:35 ----A---- C:\WINDOWS\system32\msfeeds.dll
2012-05-25 16:12:34 ----A---- C:\WINDOWS\system32\ieui.dll
2012-05-25 16:12:34 ----A---- C:\WINDOWS\system32\ieudinit.exe
2012-05-25 16:12:34 ----A---- C:\WINDOWS\system32\iertutil.dll
2012-05-25 16:12:34 ----A---- C:\WINDOWS\system32\ieframe.dll
2012-05-25 16:12:34 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2012-05-25 16:12:34 ----A---- C:\WINDOWS\system32\ieapfltr.dat
2012-05-25 16:12:34 ----A---- C:\WINDOWS\system32\icardie.dll
2012-05-25 16:12:25 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2012-05-25 16:12:23 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2012-05-25 16:12:20 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2012-05-25 16:12:18 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2012-05-25 16:12:15 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2012-05-25 16:12:12 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2012-05-25 16:12:10 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2012-05-25 16:11:25 ----RSD---- C:\WINDOWS\assembly
2012-05-25 16:11:25 ----D---- C:\WINDOWS\Microsoft.NET
2012-05-25 16:11:24 ----D---- C:\WINDOWS\system32\URTTemp
2012-05-25 15:55:36 ----N---- C:\WINDOWS\system32\browserchoice.exe
2012-05-25 15:51:01 ----A---- C:\WINDOWS\system32\xpsp4res.dll
2012-05-25 15:47:15 ----N---- C:\WINDOWS\system32\iacenc.dll
2012-05-25 15:44:00 ----D---- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
2012-05-25 15:43:55 ----D---- C:\WINDOWS\system32\PreInstall
2012-05-25 15:43:54 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2012-05-25 15:41:56 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2012-05-25 15:41:20 ----D---- C:\WINDOWS\Prefetch
2012-05-25 15:38:40 ----N---- C:\WINDOWS\system32\msxml6r.dll
2012-05-25 15:38:40 ----A---- C:\WINDOWS\system32\msxml6.dll
2012-05-25 15:38:36 ----N---- C:\WINDOWS\system32\ati3d1ag.dll
2012-05-25 15:38:36 ----N---- C:\WINDOWS\system32\ati2dvag.dll
2012-05-25 15:38:36 ----N---- C:\WINDOWS\system32\ati2dvaa.dll
2012-05-25 15:38:36 ----N---- C:\WINDOWS\system32\ati2cqag.dll
2012-05-25 15:38:36 ----N---- C:\WINDOWS\system32\aaclient.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\kbdpash.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\kbdnepr.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\kbdiultn.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\kbdbhc.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\hsfcisp2.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\eapsvc.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\eapqec.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\eappprxy.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\eapphost.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\eappgnui.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\eappcfg.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\eapp3hst.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\eapolqec.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\dot3ui.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\dot3svc.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\dot3msm.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\dot3gpclnt.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\dot3dlg.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\dot3cfg.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\dot3api.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\dimsroam.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\dimsntfy.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\dhcpqec.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\credssp.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\bitsprx4.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\azroles.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\ativvaxx.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\ativtmxx.dll
2012-05-25 15:38:35 ----N---- C:\WINDOWS\system32\ati3duag.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\windowscodecsext.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\windowscodecs.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\verclsid.exe
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\tzchange.exe
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\tspkg.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\tsgqec.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\slserv.exe
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\slrundll.exe
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\slgen.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\slextspk.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\slcoinst.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\setupn.exe
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\s3gnb.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\rhttpaa.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\rasqec.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\qutil.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\qcliprov.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\qagentrt.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\qagent.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\photometadatahandler.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\onex.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\napstat.exe
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\napmontr.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\napipsec.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\mtxparhd.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\msshavmsg.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\mssha.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\mmcperf.exe
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\mmcfxcommon.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\mmcex.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\mdmxsdk.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\l2gpstore.dll
2012-05-25 15:38:34 ----N---- C:\WINDOWS\system32\kmsvc.dll
2012-05-25 15:38:33 ----N---- C:\WINDOWS\system32\wmphoto.dll
2012-05-25 15:38:33 ----N---- C:\WINDOWS\system32\wlanapi.dll
2012-05-25 15:38:33 ----N---- C:\WINDOWS\slrundll.exe
2012-05-25 15:38:33 ----D---- C:\WINDOWS\system32\scripting
2012-05-25 15:38:33 ----D---- C:\WINDOWS\system32\en-us
2012-05-25 15:38:33 ----A---- C:\WINDOWS\system32\xmllite.dll
2012-05-25 15:38:32 ----D---- C:\WINDOWS\system32\en
2012-05-25 15:38:32 ----D---- C:\WINDOWS\system32\bits
2012-05-25 15:38:32 ----D---- C:\WINDOWS\l2schemas
2012-05-25 15:38:00 ----D---- C:\WINDOWS\ServicePackFiles
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\ati2mtag.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\ati2mtaa.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\ati1xsxx.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\ati1xbxx.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\ati1tuxx.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\ati1ttxx.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\ati1snxx.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\ati1rvxx.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\ati1raxx.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\ati1pdxx.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\ati1mdxx.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\ati1btxx.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\amdagp.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\alim1541.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\agpcpq.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\agp440.sys
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\adv11nt5.dll
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\adv09nt5.dll
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\adv08nt5.dll
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\adv07nt5.dll
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\adv05nt5.dll
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\adv02nt5.dll
2012-05-25 15:37:02 ----N---- C:\WINDOWS\system32\drivers\adv01nt5.dll
2012-05-25 15:37:02 ----D---- C:\WINDOWS\network diagnostic
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\siint5.dll
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\sffp_mmc.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\s3gnbm.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\rndismpx.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\rfcomm.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\recagent.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\ntmtlfax.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\mutohpen.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\mtxparhm.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\mtlstrm.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\mtlmnt5.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\mdmxsdk.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\ch7xxnt5.dll
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\hsfdpsp2.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\hsfcxts2.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\hsfbs2s2.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\hidir.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\hidbth.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\gagp30kx.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\bthusb.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\bthprint.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\bthport.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\bthpan.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\bthmodem.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\bthenum.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\atv10nt5.dll
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\atv06nt5.dll
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\atv04nt5.dll
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\atv02nt5.dll
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\atv01nt5.dll
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\atinxsxx.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\atinxbxx.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\atintuxx.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\atinttxx.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\atinsnxx.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\atinrvxx.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\atinraxx.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\atinpdxx.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\atinmdxx.sys
2012-05-25 15:37:01 ----N---- C:\WINDOWS\system32\drivers\atinbtxx.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\watv10nt.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\watv06nt.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\wadv11nt.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\wadv09nt.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\wadv08nt.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\wadv07nt.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\wacompen.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\viaagp.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\vchnt5.dll
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\usbvideo.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\usb8023x.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\uagp35.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\smbali.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\slwdmsup.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\slnthal.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\slntamr.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\slnt7554.sys
2012-05-25 15:37:00 ----N---- C:\WINDOWS\system32\drivers\sisagp.sys
2012-05-25 15:36:21 ----A---- C:\WINDOWS\002594_.tmp
2012-05-25 15:35:13 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2012-05-25 15:35:12 ----D---- C:\WINDOWS\EHome
2012-05-25 15:33:05 ----A---- C:\WINDOWS\system32\wpa.bak
2012-05-25 15:31:02 ----A---- C:\WINDOWS\system32\drivers\ar5211.sys
2012-05-25 15:31:02 ----A---- C:\WINDOWS\system32\ar5211.sys
2012-05-25 15:30:48 ----D---- C:\temp
2012-05-25 15:25:16 ----D---- C:\WINDOWS\nview
2012-05-25 15:25:16 ----A---- C:\WINDOWS\system32\nvudisp.exe
2012-05-25 15:24:56 ----A---- C:\WINDOWS\system32\NVUNINST.EXE
2012-05-25 15:21:55 ----A---- C:\WINDOWS\system32\drivers\Rtenicxp.sys
2012-05-25 15:21:46 ----D---- C:\WINDOWS\OPTIONS
2012-05-25 15:21:42 ----D---- C:\Documents and Settings\Peter\Application Data\InstallShield
2012-05-25 15:21:23 ----D---- C:\WINDOWS\system32\Lang
2012-05-25 15:20:27 ----R---- C:\WINDOWS\system32\ChCfg.exe
2012-05-25 15:20:26 ----A---- C:\WINDOWS\system32\drivers\wdmaud.sys
2012-05-25 15:20:26 ----A---- C:\WINDOWS\system32\drivers\splitter.sys
2012-05-25 15:20:25 ----A---- C:\WINDOWS\system32\drivers\dmusic.sys
2012-05-25 15:20:23 ----A---- C:\WINDOWS\system32\drivers\swmidi.sys
2012-05-25 15:20:23 ----A---- C:\WINDOWS\system32\drivers\aec.sys
2012-05-25 15:20:22 ----A---- C:\WINDOWS\system32\drivers\kmixer.sys
2012-05-25 15:20:22 ----A---- C:\WINDOWS\system32\drivers\drmkaud.sys
2012-05-25 15:20:21 ----A---- C:\WINDOWS\system32\drivers\sysaudio.sys
2012-05-25 15:20:21 ----A---- C:\WINDOWS\system32\drivers\mskssrv.sys
2012-05-25 15:20:20 ----A---- C:\WINDOWS\system32\drivers\mspqm.sys
2012-05-25 15:20:20 ----A---- C:\WINDOWS\system32\drivers\mspclock.sys
2012-05-25 15:20:14 ----D---- C:\WINDOWS\system32\RTCOM
2012-05-25 15:20:13 ----A---- C:\WINDOWS\system32\ksuser.dll
2012-05-25 15:20:12 ----A---- C:\WINDOWS\system32\drivers\drmk.sys
2012-05-25 15:20:09 ----R---- C:\WINDOWS\SoundMan.exe
2012-05-25 15:20:09 ----R---- C:\WINDOWS\SkyTel.exe
2012-05-25 15:20:09 ----R---- C:\WINDOWS\RtlUpd.exe
2012-05-25 15:20:07 ----R---- C:\WINDOWS\RTLCPL.exe
2012-05-25 15:20:06 ----R---- C:\WINDOWS\system32\drivers\RtkHDAud.sys
2012-05-25 15:20:03 ----R---- C:\WINDOWS\RTHDCPL.exe
2012-05-25 15:20:03 ----R---- C:\WINDOWS\MicCal.exe
2012-05-25 15:20:01 ----R---- C:\WINDOWS\Alcmtr.exe
2012-05-25 15:20:00 ----R---- C:\WINDOWS\alcwzrd.exe
2012-05-25 15:20:00 ----D---- C:\Program Files\Realtek
2012-05-25 15:19:59 ----HD---- C:\Program Files\InstallShield Installation Information
2012-05-25 15:19:57 ----R---- C:\WINDOWS\RtlExUpd.dll
2012-05-25 15:19:57 ----A---- C:\WINDOWS\HideWin.exe
2012-05-25 15:19:54 ----D---- C:\Program Files\Common Files\InstallShield
2012-05-25 15:19:43 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2012-05-25 15:19:42 ----HDC---- C:\WINDOWS\$NtUninstallKB888111WXPSP2$
2012-05-25 15:17:57 ----D---- C:\WINDOWS\system32\ReinstallBackups
2012-05-25 15:17:55 ----DC---- C:\WINDOWS\system32\DRVSTORE
2012-05-25 15:17:55 ----D---- C:\Program Files\Intel
2012-05-25 15:17:55 ----A---- C:\WINDOWS\system32\CSVer.dll
2012-05-25 15:17:52 ----D---- C:\Intel
2012-05-25 15:17:18 ----A---- C:\WINDOWS\gdrv.sys
2012-05-25 15:12:59 ----D---- C:\WINDOWS\system32\1051
2012-05-25 15:11:10 ----D---- C:\Documents and Settings\Peter\Application Data\Identities
2012-05-25 15:11:09 ----HD---- C:\Program Files\Uninstall Information
2012-05-25 15:11:00 ----SD---- C:\Documents and Settings\Peter\Application Data\Microsoft
2012-05-25 15:11:00 ----ASH---- C:\Documents and Settings\Peter\Application Data\desktop.ini
2012-05-25 15:10:19 ----D---- C:\WINDOWS\SoftwareDistribution
2012-05-25 15:10:17 ----SD---- C:\WINDOWS\system32\Microsoft
2012-05-25 15:10:17 ----A---- C:\WINDOWS\SchedLgU.Txt
2012-05-25 15:09:17 ----AS---- C:\WINDOWS\bootstat.dat
2012-05-25 15:08:07 ----D---- C:\WINDOWS\system32\xircom
2012-05-25 15:08:07 ----D---- C:\Program Files\xerox
2012-05-25 15:08:07 ----D---- C:\Program Files\microsoft frontpage
2012-05-25 15:07:58 ----N---- C:\WINDOWS\system32\xpsp3res.dll
2012-05-25 15:07:58 ----HD---- C:\WINDOWS\$hf_mig$
2012-05-25 15:07:48 ----RASH---- C:\MSDOS.SYS
2012-05-25 15:07:48 ----RASH---- C:\IO.SYS
2012-05-25 15:07:48 ----A---- C:\WINDOWS\control.ini
2012-05-25 15:07:48 ----A---- C:\CONFIG.SYS
2012-05-25 15:07:48 ----A---- C:\AUTOEXEC.BAT
2012-05-25 15:07:42 ----A---- C:\WINDOWS\OEWABLog.txt
2012-05-25 15:07:39 ----A---- C:\WINDOWS\system32\mapi32.dll
2012-05-25 15:07:10 ----SD---- C:\WINDOWS\Downloaded Program Files
2012-05-25 15:07:10 ----RD---- C:\WINDOWS\Offline Web Pages
2012-05-25 15:07:04 ----HD---- C:\Program Files\WindowsUpdate
2012-05-25 15:06:48 ----D---- C:\WINDOWS\system32\DirectX
2012-05-25 15:06:26 ----A---- C:\WINDOWS\system32\atrace.dll
2012-05-25 15:06:22 ----A---- C:\WINDOWS\system32\desktop.ini
2012-05-25 15:06:22 ----A---- C:\WINDOWS\desktop.ini
2012-05-25 15:06:15 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2012-05-25 15:06:14 ----A---- C:\WINDOWS\system32\acctres.dll
2012-05-25 15:06:13 ----D---- C:\Program Files\Common Files\Services
2012-05-25 15:06:10 ----SD---- C:\WINDOWS\Tasks
2012-05-25 15:06:10 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2012-05-25 15:06:09 ----D---- C:\Program Files\Common Files\MSSoap
2012-05-25 15:06:04 ----D---- C:\WINDOWS\srchasst
2012-05-25 15:06:03 ----D---- C:\WINDOWS\system32\Macromed
2012-05-25 15:06:00 ----A---- C:\WINDOWS\system32\wuweb.dll
2012-05-25 15:06:00 ----A---- C:\WINDOWS\system32\wucltui.dll
2012-05-25 15:06:00 ----A---- C:\WINDOWS\system32\wuauserv.dll
2012-05-25 15:06:00 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2012-05-25 15:05:59 ----A---- C:\WINDOWS\system32\wups.dll
2012-05-25 15:05:59 ----A---- C:\WINDOWS\system32\wuaueng.dll
2012-05-25 15:05:59 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2012-05-25 15:05:59 ----A---- C:\WINDOWS\system32\wuauclt.exe
2012-05-25 15:05:59 ----A---- C:\WINDOWS\system32\wuapi.dll
2012-05-25 15:05:59 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2012-05-25 15:05:59 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2012-05-25 15:05:59 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2012-05-25 15:05:58 ----A---- C:\WINDOWS\system32\qmgr.dll
2012-05-25 15:05:54 ----D---- C:\Program Files\Movie Maker
2012-05-25 15:05:49 ----A---- C:\WINDOWS\system32\safrslv.dll
2012-05-25 15:05:49 ----A---- C:\WINDOWS\system32\safrdm.dll
2012-05-25 15:05:49 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2012-05-25 15:05:49 ----A---- C:\WINDOWS\system32\racpldlg.dll
2012-05-25 15:05:45 ----A---- C:\WINDOWS\system32\fltmc.exe
2012-05-25 15:05:45 ----A---- C:\WINDOWS\system32\fltlib.dll
2012-05-25 15:05:45 ----A---- C:\WINDOWS\system32\drivers\fltmgr.sys
2012-05-25 15:05:44 ----D---- C:\WINDOWS\system32\Restore
2012-05-25 15:05:44 ----A---- C:\WINDOWS\system32\srsvc.dll
2012-05-25 15:05:44 ----A---- C:\WINDOWS\system32\srrstr.dll
2012-05-25 15:05:44 ----A---- C:\WINDOWS\system32\srclient.dll
2012-05-25 15:05:44 ----A---- C:\WINDOWS\system32\drivers\sr.sys
2012-05-25 15:05:43 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2012-05-25 15:05:43 ----A---- C:\WINDOWS\system32\msconf.dll
2012-05-25 15:05:43 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2012-05-25 15:05:43 ----A---- C:\WINDOWS\system32\mnmdd.dll
2012-05-25 15:05:43 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2012-05-25 15:05:43 ----A---- C:\WINDOWS\system32\ils.dll
2012-05-25 15:05:39 ----D---- C:\Program Files\NetMeeting
2012-05-25 15:05:39 ----A---- C:\WINDOWS\system32\msoert2.dll
2012-05-25 15:05:39 ----A---- C:\WINDOWS\system32\msoeacct.dll
2012-05-25 15:05:38 ----A---- C:\WINDOWS\system32\inetres.dll
2012-05-25 15:05:38 ----A---- C:\WINDOWS\system32\inetcomm.dll
2012-05-25 15:05:35 ----D---- C:\Program Files\Outlook Express
2012-05-25 15:05:35 ----A---- C:\WINDOWS\system32\schedsvc.dll
2012-05-25 15:05:35 ----A---- C:\WINDOWS\system32\mstinit.exe
2012-05-25 15:05:35 ----A---- C:\WINDOWS\system32\mstask.dll
2012-05-25 15:05:35 ----A---- C:\WINDOWS\system32\icwphbk.dll
2012-05-25 15:05:35 ----A---- C:\WINDOWS\system32\icwdial.dll
2012-05-25 15:05:34 ----A---- C:\WINDOWS\system32\isign32.dll
2012-05-25 15:05:34 ----A---- C:\WINDOWS\system32\inetcfg.dll
2012-05-25 15:05:28 ----D---- C:\Program Files\Common Files\System
2012-05-25 15:05:27 ----D---- C:\Program Files\Internet Explorer
2012-05-25 15:05:26 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2012-05-25 15:05:17 ----D---- C:\Program Files\ComPlus Applications
2012-05-25 15:05:16 ----A---- C:\WINDOWS\vbaddin.ini
2012-05-25 15:05:16 ----A---- C:\WINDOWS\vb.ini
2012-05-25 15:05:12 ----D---- C:\WINDOWS\Registration
2012-05-25 15:04:56 ----D---- C:\Program Files\Online Services
2012-05-25 15:04:55 ----D---- C:\Program Files\Windows Media Player
2012-05-25 15:04:47 ----D---- C:\Program Files\MSN Gaming Zone
2012-05-25 15:04:47 ----A---- C:\WINDOWS\system32\write.exe
2012-05-25 15:04:39 ----A---- C:\WINDOWS\system32\sndvol32.exe
2012-05-25 15:04:39 ----A---- C:\WINDOWS\system32\hticons.dll
2012-05-25 15:04:39 ----A---- C:\WINDOWS\system32\avwav.dll
2012-05-25 15:04:38 ----A---- C:\WINDOWS\system32\winchat.exe
2012-05-25 15:04:38 ----A---- C:\WINDOWS\system32\avtapi.dll
2012-05-25 15:04:38 ----A---- C:\WINDOWS\system32\avmeter.dll
2012-05-25 15:04:31 ----A---- C:\WINDOWS\system32\getuname.dll
2012-05-25 15:04:30 ----A---- C:\WINDOWS\system32\sol.exe
2012-05-25 15:04:30 ----A---- C:\WINDOWS\system32\charmap.exe
2012-05-25 15:04:30 ----A---- C:\WINDOWS\system32\calc.exe
2012-05-25 15:04:29 ----A---- C:\WINDOWS\system32\winmine.exe
2012-05-25 15:04:29 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2012-05-25 15:04:29 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2012-05-25 15:04:29 ----A---- C:\WINDOWS\system32\tslabels.ini
2012-05-25 15:04:29 ----A---- C:\WINDOWS\system32\tskill.exe
2012-05-25 15:04:29 ----A---- C:\WINDOWS\system32\reset.exe
2012-05-25 15:04:29 ----A---- C:\WINDOWS\system32\mshearts.exe
2012-05-25 15:04:29 ----A---- C:\WINDOWS\system32\freecell.exe
2012-05-25 15:04:28 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2012-05-25 15:04:28 ----A---- C:\WINDOWS\system32\tscon.exe
2012-05-25 15:04:28 ----A---- C:\WINDOWS\system32\shadow.exe
2012-05-25 15:04:28 ----A---- C:\WINDOWS\system32\rwinsta.exe
2012-05-25 15:04:28 ----A---- C:\WINDOWS\system32\regini.exe
2012-05-25 15:04:28 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2012-05-25 15:04:28 ----A---- C:\WINDOWS\system32\qwinsta.exe
2012-05-25 15:04:28 ----A---- C:\WINDOWS\system32\qappsrv.exe
2012-05-25 15:04:28 ----A---- C:\WINDOWS\system32\msg.exe
2012-05-25 15:04:28 ----A---- C:\WINDOWS\system32\logoff.exe
2012-05-25 15:04:28 ----A---- C:\WINDOWS\system32\cdmodem.dll
2012-05-25 15:04:27 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2012-05-25 15:04:27 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2012-05-25 15:04:26 ----A---- C:\WINDOWS\system32\stclient.dll
2012-05-25 15:04:26 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2012-05-25 15:04:26 ----A---- C:\WINDOWS\system32\mtxex.dll
2012-05-25 15:04:26 ----A---- C:\WINDOWS\system32\mtxdm.dll
2012-05-25 15:04:26 ----A---- C:\WINDOWS\system32\comsnap.dll
2012-05-25 15:04:26 ----A---- C:\WINDOWS\system32\comrepl.dll
2012-05-25 15:04:26 ----A---- C:\WINDOWS\system32\comaddin.dll
2012-05-25 15:04:21 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2012-05-25 15:04:04 ----D---- C:\Program Files\MSN
2012-05-25 15:04:03 ----A---- C:\WINDOWS\system32\sndrec32.exe
2012-05-25 15:04:03 ----A---- C:\WINDOWS\system32\mplay32.exe
2012-05-25 15:04:03 ----A---- C:\WINDOWS\system32\hypertrm.dll
2012-05-25 15:04:03 ----A---- C:\WINDOWS\system32\accwiz.exe
2012-05-25 15:04:02 ----D---- C:\Program Files\Windows NT
2012-05-25 15:04:02 ----A---- C:\WINDOWS\system32\mspaint.exe
2012-05-25 15:04:02 ----A---- C:\WINDOWS\system32\clipbrd.exe
2012-05-25 15:04:01 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2012-05-25 15:04:01 ----A---- C:\WINDOWS\system32\spider.exe
2012-05-25 15:04:01 ----A---- C:\WINDOWS\system32\drivers\tdtcp.sys
2012-05-25 15:04:01 ----A---- C:\WINDOWS\system32\drivers\tdpipe.sys
2012-05-25 15:04:01 ----A---- C:\WINDOWS\system32\drivers\rdpwd.sys
2012-05-25 15:04:00 ----A---- C:\WINDOWS\system32\sessmgr.exe
2012-05-25 15:04:00 ----A---- C:\WINDOWS\system32\remotepg.dll
2012-05-25 15:04:00 ----A---- C:\WINDOWS\system32\rdshost.exe
2012-05-25 15:04:00 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2012-05-25 15:04:00 ----A---- C:\WINDOWS\system32\rdchost.dll
2012-05-25 15:04:00 ----A---- C:\WINDOWS\system32\mstscax.dll
2012-05-25 15:04:00 ----A---- C:\WINDOWS\system32\mstsc.exe
2012-05-25 15:03:59 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2012-05-25 15:03:59 ----A---- C:\WINDOWS\system32\termsrv.dll
2012-05-25 15:03:59 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2012-05-25 15:03:59 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2012-05-25 15:03:59 ----A---- C:\WINDOWS\system32\rdpclip.exe
2012-05-25 15:03:59 ----A---- C:\WINDOWS\system32\qprocess.exe
2012-05-25 15:03:59 ----A---- C:\WINDOWS\system32\icaapi.dll
2012-05-25 15:03:58 ----D---- C:\WINDOWS\system32\MsDtc
2012-05-25 15:03:58 ----A---- C:\WINDOWS\system32\mtxoci.dll
2012-05-25 15:03:58 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2012-05-25 15:03:58 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2012-05-25 15:03:58 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2012-05-25 15:03:57 ----A---- C:\WINDOWS\system32\xolehlp.dll
2012-05-25 15:03:57 ----A---- C:\WINDOWS\system32\msdtctm.dll
2012-05-25 15:03:57 ----A---- C:\WINDOWS\system32\msdtclog.dll
2012-05-25 15:03:57 ----A---- C:\WINDOWS\system32\msdtc.exe
2012-05-25 15:03:56 ----D---- C:\WINDOWS\system32\Com
2012-05-25 15:03:56 ----A---- C:\WINDOWS\system32\colbact.dll
2012-05-25 15:03:56 ----A---- C:\WINDOWS\system32\clbcatex.dll
2012-05-25 15:03:56 ----A---- C:\WINDOWS\system32\catsrvps.dll
2012-05-25 15:03:55 ----A---- C:\WINDOWS\system32\comsvcs.dll
2012-05-25 15:03:55 ----A---- C:\WINDOWS\system32\catsrvut.dll
2012-05-25 15:03:55 ----A---- C:\WINDOWS\system32\catsrv.dll
2012-05-25 15:03:54 ----A---- C:\WINDOWS\system32\comuid.dll
2012-05-25 15:03:54 ----A---- C:\WINDOWS\system32\clbcatq.dll
2012-05-25 15:03:48 ----A---- C:\WINDOWS\system32\servdeps.dll
2012-05-25 15:03:48 ----A---- C:\WINDOWS\system32\mmfutil.dll
2012-05-25 15:03:48 ----A---- C:\WINDOWS\system32\licwmi.dll
2012-05-25 15:03:48 ----A---- C:\WINDOWS\system32\cmprops.dll
2012-05-25 15:03:45 ----A---- C:\WINDOWS\system32\drivers\rdpdr.sys
2012-05-25 15:03:44 ----A---- C:\WINDOWS\system32\drivers\termdd.sys
======List of files/folders modified in the last 1 month======
2012-05-25 23:50:50 ----A---- C:\WINDOWS\win.ini
2012-05-25 15:14:59 ----A---- C:\WINDOWS\system.ini
2012-05-25 15:07:32 ----ASH---- C:\WINDOWS\fonts\desktop.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2011-03-04 45648]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2012-05-25 691696]
R1 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2012-03-14 160816]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2012-03-14 120152]
R1 epfwtdi;epfwtdi; C:\WINDOWS\system32\DRIVERS\epfwtdi.sys [2012-03-14 61936]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 36352]
R2 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2012-03-14 148504]
R3 AR5211;TP-LINK Wireless Network Adapter Service; C:\WINDOWS\system32\DRIVERS\ar5211.sys [2005-12-21 470048]
R3 Epfwndis;Eset Personal Firewall; C:\WINDOWS\system32\DRIVERS\Epfwndis.sys [2012-03-14 40336]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-09-19 4617728]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2006-02-28 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2012-02-09 13415040]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesDriver32.sys []
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S3 alvq0ifs;alvq0ifs; C:\WINDOWS\system32\drivers\alvq0ifs.sys []
S3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2010-07-06 234392]
S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WDC_SAM;WD SCSI Pass Thru driver; C:\WINDOWS\system32\DRIVERS\wdcsam.sys [2008-05-06 11520]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2012-03-07 913144]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe [2012-04-04 161664]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe [2012-04-05 1529152]
R2 UxTuneUp;TuneUp Theme Extension; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2007-12-04 155716]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-05-03 158856]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-25 257696]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2012-04-21 129976]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2011-10-27 718384]
S3 WinRM;Windows Remote Management (WS-Management); C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S4 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 119411
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Modra obrazovka
Ještě poprosím o log ComboFix.
Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe
pote spustte aplikaci pod uctem s administratorskym opravnenim
hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.
v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se
jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine
aplikace ani nic jineho
behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)
upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode,
pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k
nezadoucim kolizim s rezidentem antispyware
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Modra obrazovka
no bola to fuska lebo som dostal pocas toho asi 3x modru obrazovku ale nakoniec to mam 
ComboFix 12-05-26.02 - Peter 26.05.2012 22:25:49.2.2 - x86
Systém Microsoft Windows XP Home Edition 5.1.2600.3.1250.421.1033.18.3582.3057 [GMT 2:00]
Running from: c:\documents and settings\Peter\Desktop\ComboFix.exe
AV: ESET Smart Security 5.2 *Enabled/Outdated* {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: ESET personal firewall *Enabled* {E5E70D32-0101-4340-86A3-A7B0F1C8FFE0}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
---- Previous Run -------
.
c:\windows\COM+.log
c:\windows\system32\dllcache\dlimport.exe
c:\windows\system32\MUI\041b\tourstart.exe
.
Infected copy of c:\windows\system32\accwiz.exe was found and disinfected
Restored copy from - c:\windows\ServicePackFiles\i386\accwiz.exe
.
Infected copy of c:\windows\system32\mmc.exe was found and disinfected
Restored copy from - c:\windows\ServicePackFiles\i386\mmc.exe
.
.
((((((((((((((((((((((((( Files Created from 2012-04-26 to 2012-05-26 )))))))))))))))))))))))))))))))
.
.
2012-05-26 15:36 . 2012-05-26 15:36 -------- d-----w- C:\rsit
2012-05-25 21:50 . 2012-05-25 21:50 -------- d-----r- C:\MSOCache
2012-05-25 21:06 . 2012-05-25 21:07 -------- d-----w- C:\totalcmd
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-04-11 13:14 . 2006-02-28 12:00 2148352 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-04-11 13:12 . 2006-02-28 12:00 1862272 ----a-w- c:\windows\system32\win32k.sys
2012-04-11 12:35 . 2004-08-03 22:59 2026496 ----a-w- c:\windows\system32\ntkrnlpa.exe
2012-03-14 06:40 . 2012-03-14 06:40 61936 ----a-w- c:\windows\system32\drivers\epfwtdi.sys
2012-03-14 06:40 . 2012-03-14 06:40 40336 ----a-w- c:\windows\system32\drivers\epfwndis.sys
2012-03-14 06:40 . 2012-03-14 06:40 148504 ----a-w- c:\windows\system32\drivers\epfw.sys
2012-03-14 06:40 . 2012-03-14 06:40 160816 ----a-w- c:\windows\system32\drivers\eamon.sys
2012-03-14 06:40 . 2012-03-14 06:40 120152 ----a-w- c:\windows\system32\drivers\ehdrv.sys
2012-03-01 11:01 . 2006-02-28 12:00 916992 ----a-w- c:\windows\system32\wininet.dll
2012-03-01 11:01 . 2006-02-28 12:00 43520 ------w- c:\windows\system32\licmgr10.dll
2012-03-01 11:01 . 2006-02-28 12:00 1469440 ------w- c:\windows\system32\inetcpl.cpl
2012-02-29 14:10 . 2006-02-28 12:00 177664 ----a-w- c:\windows\system32\wintrust.dll
2012-02-29 14:10 . 2006-02-28 12:00 148480 ----a-w- c:\windows\system32\imagehlp.dll
2012-02-29 12:17 . 2006-02-28 12:00 385024 ------w- c:\windows\system32\html.iec
2012-04-21 01:18 . 2012-05-26 09:15 97208 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2009-10-30 369200]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2012-05-03 17355912]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2011-06-06 937920]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2012-03-07 3117344]
"WinampAgent"="c:\program files\Winamp\winampa.exe" [2011-07-11 74752]
"RTHDCPL"="RTHDCPL.EXE" [2007-09-19 16844800]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2012-01-17 252296]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\Opera\\opera.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"5985:TCP"= 5985:TCP:*:Disabled:Windows Remote Management
.
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [25.5.2012 23:41 691696]
R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [14.3.2012 8:40 120152]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [18.3.2010 13:16 130384]
R2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [7.3.2012 15:40 913144]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe [5.4.2012 13:08 1529152]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\TuneUp Utilities 2012\TuneUpUtilitiesDriver32.sys [31.10.2011 15:00 10064]
S2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [3.5.2012 8:31 158856]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [25.5.2012 22:09 257696]
S3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files\Mozilla Maintenance Service\maintenanceservice.exe [26.5.2012 11:15 129976]
S3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\drivers\wdcsam.sys [6.5.2008 16:06 11520]
S3 WinRM;Windows Remote Management (WS-Management);c:\windows\system32\svchost.exe -k WINRM [28.2.2006 14:00 14336]
S4 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [18.3.2010 13:16 753504]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
WINRM REG_MULTI_SZ WINRM
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
Contents of the 'Scheduled Tasks' folder
.
2012-05-26 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-25 20:09]
.
.
------- Supplementary Scan -------
.
IE: E&xportovať do programu Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.1.1
FF - ProfilePath - c:\documents and settings\Peter\Application Data\Mozilla\Firefox\Profiles\xs86hqvr.default\
FF - prefs.js: browser.startup.homepage - www.google.sk
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-05-26 22:32
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'explorer.exe'(3832)
c:\windows\system32\WININET.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Other Running Processes ------------------------
.
c:\program files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe
c:\windows\RTHDCPL.EXE
c:\program files\TuneUp Utilities 2012\TuneUpUtilitiesApp32.exe
c:\windows\system32\wscntfy.exe
.
**************************************************************************
.
Completion time: 2012-05-26 22:33:42 - machine was rebooted
ComboFix-quarantined-files.txt 2012-05-26 20:33
.
Pre-Run: 90 791 636 992 bytes free
Post-Run: 10 adresárov, 90 773 487 616 voľných bajtov
.
- - End Of File - - 1A4534CB3F73B8CC2C226C80A60E9747

ComboFix 12-05-26.02 - Peter 26.05.2012 22:25:49.2.2 - x86
Systém Microsoft Windows XP Home Edition 5.1.2600.3.1250.421.1033.18.3582.3057 [GMT 2:00]
Running from: c:\documents and settings\Peter\Desktop\ComboFix.exe
AV: ESET Smart Security 5.2 *Enabled/Outdated* {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: ESET personal firewall *Enabled* {E5E70D32-0101-4340-86A3-A7B0F1C8FFE0}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
---- Previous Run -------
.
c:\windows\COM+.log
c:\windows\system32\dllcache\dlimport.exe
c:\windows\system32\MUI\041b\tourstart.exe
.
Infected copy of c:\windows\system32\accwiz.exe was found and disinfected
Restored copy from - c:\windows\ServicePackFiles\i386\accwiz.exe
.
Infected copy of c:\windows\system32\mmc.exe was found and disinfected
Restored copy from - c:\windows\ServicePackFiles\i386\mmc.exe
.
.
((((((((((((((((((((((((( Files Created from 2012-04-26 to 2012-05-26 )))))))))))))))))))))))))))))))
.
.
2012-05-26 15:36 . 2012-05-26 15:36 -------- d-----w- C:\rsit
2012-05-25 21:50 . 2012-05-25 21:50 -------- d-----r- C:\MSOCache
2012-05-25 21:06 . 2012-05-25 21:07 -------- d-----w- C:\totalcmd
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-04-11 13:14 . 2006-02-28 12:00 2148352 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-04-11 13:12 . 2006-02-28 12:00 1862272 ----a-w- c:\windows\system32\win32k.sys
2012-04-11 12:35 . 2004-08-03 22:59 2026496 ----a-w- c:\windows\system32\ntkrnlpa.exe
2012-03-14 06:40 . 2012-03-14 06:40 61936 ----a-w- c:\windows\system32\drivers\epfwtdi.sys
2012-03-14 06:40 . 2012-03-14 06:40 40336 ----a-w- c:\windows\system32\drivers\epfwndis.sys
2012-03-14 06:40 . 2012-03-14 06:40 148504 ----a-w- c:\windows\system32\drivers\epfw.sys
2012-03-14 06:40 . 2012-03-14 06:40 160816 ----a-w- c:\windows\system32\drivers\eamon.sys
2012-03-14 06:40 . 2012-03-14 06:40 120152 ----a-w- c:\windows\system32\drivers\ehdrv.sys
2012-03-01 11:01 . 2006-02-28 12:00 916992 ----a-w- c:\windows\system32\wininet.dll
2012-03-01 11:01 . 2006-02-28 12:00 43520 ------w- c:\windows\system32\licmgr10.dll
2012-03-01 11:01 . 2006-02-28 12:00 1469440 ------w- c:\windows\system32\inetcpl.cpl
2012-02-29 14:10 . 2006-02-28 12:00 177664 ----a-w- c:\windows\system32\wintrust.dll
2012-02-29 14:10 . 2006-02-28 12:00 148480 ----a-w- c:\windows\system32\imagehlp.dll
2012-02-29 12:17 . 2006-02-28 12:00 385024 ------w- c:\windows\system32\html.iec
2012-04-21 01:18 . 2012-05-26 09:15 97208 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2009-10-30 369200]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2012-05-03 17355912]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2011-06-06 937920]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2012-03-07 3117344]
"WinampAgent"="c:\program files\Winamp\winampa.exe" [2011-07-11 74752]
"RTHDCPL"="RTHDCPL.EXE" [2007-09-19 16844800]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2012-01-17 252296]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\Opera\\opera.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"5985:TCP"= 5985:TCP:*:Disabled:Windows Remote Management
.
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [25.5.2012 23:41 691696]
R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [14.3.2012 8:40 120152]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [18.3.2010 13:16 130384]
R2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [7.3.2012 15:40 913144]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe [5.4.2012 13:08 1529152]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\TuneUp Utilities 2012\TuneUpUtilitiesDriver32.sys [31.10.2011 15:00 10064]
S2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [3.5.2012 8:31 158856]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [25.5.2012 22:09 257696]
S3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files\Mozilla Maintenance Service\maintenanceservice.exe [26.5.2012 11:15 129976]
S3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\drivers\wdcsam.sys [6.5.2008 16:06 11520]
S3 WinRM;Windows Remote Management (WS-Management);c:\windows\system32\svchost.exe -k WINRM [28.2.2006 14:00 14336]
S4 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [18.3.2010 13:16 753504]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
WINRM REG_MULTI_SZ WINRM
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
Contents of the 'Scheduled Tasks' folder
.
2012-05-26 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-25 20:09]
.
.
------- Supplementary Scan -------
.
IE: E&xportovať do programu Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.1.1
FF - ProfilePath - c:\documents and settings\Peter\Application Data\Mozilla\Firefox\Profiles\xs86hqvr.default\
FF - prefs.js: browser.startup.homepage - www.google.sk
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-05-26 22:32
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'explorer.exe'(3832)
c:\windows\system32\WININET.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Other Running Processes ------------------------
.
c:\program files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe
c:\windows\RTHDCPL.EXE
c:\program files\TuneUp Utilities 2012\TuneUpUtilitiesApp32.exe
c:\windows\system32\wscntfy.exe
.
**************************************************************************
.
Completion time: 2012-05-26 22:33:42 - machine was rebooted
ComboFix-quarantined-files.txt 2012-05-26 20:33
.
Pre-Run: 90 791 636 992 bytes free
Post-Run: 10 adresárov, 90 773 487 616 voľných bajtov
.
- - End Of File - - 1A4534CB3F73B8CC2C226C80A60E9747
- Rudy
- Site Admin
- Příspěvky: 119411
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Modra obrazovka
Tak přece něco. 3 položky CF smazal a 2 nahradil ze zálohy. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Modra obrazovka
tak neviem zatial som iba teraz prisiel za pc a zatial iba mam furt problem s mozilou lebo sa nemozem nikde pripojit furt ma nieco s certifikatmi...a ako je mozne ze som mal virus ked C som sformatoval. Zeby v D-cku bol? 
Ok berem spat uz sme tak kde aj predtym zasa to robi

Ok berem spat uz sme tak kde aj predtym zasa to robi
