Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosim o preventivnu kontrolu

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosim o preventivnu kontrolu

#16 Příspěvek od Márty84 »

No, hned je to lepsi :D


:!: Jestli bude Avast rvat, ze to chce otevrit v sandboxu, nedovolte to! Vyberte moznost Otevrit normalne
:arrow: Stahnete OTM http://oldtimer.geekstogo.com/OTM.exe a ulozte nejlepe na plochu.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Do leveho okna zkopirujte tento skript (vcetne te dvojtecky pred slovem commands)

Kód: Vybrat vše

:commands
[EMPTYTEMP]
[EMPTYFLASH]
[RESETHOSTS]
[Purity]

:services
AdobeARMservice
AdobeFlashPlayerUpdateSvc
NOD32FiXTemDono

:files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-3725892672-3043224248-1115301474-1000Core.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-3725892672-3043224248-1115301474-1000UA.job
C:\Program Files\Mozilla Firefox\searchplugins\bing.xml

:reg
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=-
"avast5"=-
"Adobe ARM"=-
"SunJavaUpdateSched"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Facebook Update"=-
"WMPNSCFG"=-
"Skype"=-
Kliknete na MoveIt a nechte program pracovat. Pri otazce na restart souhlaste.
Po restartu sem dejte log, ktery na vas vyskoci, nebo bude zde C:\_OTM\MovedFiles\xxxxxxxx_xxxxxx (misto tech x budou cisla, predstavujici datum a cas spusteni)
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

stelinka
Návštěvník
Návštěvník
Příspěvky: 125
Registrován: 06 dub 2013 10:27

Re: Prosim o preventivnu kontrolu

#17 Příspěvek od stelinka »

All processes killed
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Public
->Temp folder emptied: 0 bytes

User: Viera
->Temp folder emptied: 1218351857 bytes
->Temporary Internet Files folder emptied: 320329363 bytes
->Java cache emptied: 16897640 bytes
->FireFox cache emptied: 151431100 bytes
->Google Chrome cache emptied: 0 bytes
->Flash cache emptied: 2529986940 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 12646609570 bytes
%systemroot%\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 34784 bytes
%systemroot%\system32\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment folder emptied: 666 bytes
RecycleBin emptied: 620871891 bytes

Total Files Cleaned = 16 694,00 mb


[EMPTYFLASH]

User: All Users

User: Default

User: Default User

User: Public

User: Viera
->Flash cache emptied: 492 bytes

Total Flash Files Cleaned = 0,00 mb

C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
========== SERVICES/DRIVERS ==========
Service AdobeARMservice stopped successfully!
Service AdobeARMservice deleted successfully!
Service AdobeFlashPlayerUpdateSvc stopped successfully!
Service AdobeFlashPlayerUpdateSvc deleted successfully!
Service NOD32FiXTemDono stopped successfully!
Service NOD32FiXTemDono deleted successfully!
========== FILES ==========
File/Folder C:\Windows\system32\*.tmp.dll not found.
File/Folder C:\Windows\system32\SET*.tmp not found.
File/Folder C:\Windows\*.tmp not found.
C:\Windows\tasks\Adobe Flash Player Updater.job moved successfully.
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-3725892672-3043224248-1115301474-1000Core.job moved successfully.
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-3725892672-3043224248-1115301474-1000UA.job moved successfully.
C:\Program Files\Mozilla Firefox\searchplugins\bing.xml moved successfully.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Windows Defender deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\avast5 not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Facebook Update deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\WMPNSCFG deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Skype deleted successfully.

OTM by OldTimer - Version 3.1.21.0 log created on 04062013_173646

Files moved on Reboot...
File move failed. C:\Windows\temp\_avast_\Webshlock.txt scheduled to be moved on reboot.

Registry entries deleted on Reboot...

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosim o preventivnu kontrolu

#18 Příspěvek od Márty84 »

16GB smeti je pryc :roll:


:!: Vsechny tyto programy - vcetne pripadne instalace - spoustejte jako spravce (kliknete na ne pravym mysidlem a zvolte - Spustit jako spravce)

:arrow:
vyosek píše: :arrow: T-Cleaner http://vyosek.ic.cz/pro_usery/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry mohou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: Stahnete OTC http://oldtimer.geekstogo.com/OTC.exe , ulozte a spustte.
Kliknete na napis CleanUp a pote OK - Po uklidu dojde k restartu pc.

:arrow: Stahnete TFC http://oldtimer.geekstogo.com/TFC.exe , ulozte a spustte
Kliknete na START a pote OK - Po uklidu dojde k restartu pc.
Po pouziti muzete programek smazat

:arrow: Stahnete Ccleaner http://www.stahuj.centrum.cz/utility_a_ ... /ccleaner/ a spustte.
Pri instalaci pozor na toolbar (ci jine doplnky), jestli vam nabidne jeho instalaci, tak zruste zatrzitko.
Po spusteni se ocitnete ve funkci Cistic. Vlevo je spousta zatrzitek. Pozor dejte hlavne na kos, pokud nechate zatrzene, vzdy ho vysype.
Dale, podle toho jak je nastaven, smaze vsechna hesla ulozena na netu!!! Takze jestli mate nastavene, at si pocitac hesla pamatuje (coz neni pro bezpecnost dobre), budete je muset pak napsat znova rucne (napr mail, facebook, ruzna fora atd.)
Kliknete na Analyzovat a az dokonci analyzu, kliknete na Spustit Cleaner.
Potom kliknete vlevo na funkci Registry
Kliknete na Hledej problemy, kdyz najde, kliknete na Opravit problemy. Nabidne Vam zalohu, tu udelejte a ulozte ji tak, at ji v pripade potreby najdete.
Funkce Nastroje umoznuje odinstalovani programu. Je dukladnejsi nez samotny windows!

:arrow: Defragmentujte disk(y)
Stahnete program Defraggler http://www.stahuj.centrum.cz/utility_a_ ... efraggler/
Pri instalaci opet pozor na toolbar
Po nainstalovani program spustte a kliknete na Analyzovat, po analyze kliknete na Defragmentovat a programek odvede svou praci.




:arrow: Pak dejte novy log z RSIT a napiste, jak je na tom pc.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

stelinka
Návštěvník
Návštěvník
Příspěvky: 125
Registrován: 06 dub 2013 10:27

Re: Prosim o preventivnu kontrolu

#19 Příspěvek od stelinka »

Tak az teraz to skoncilo. Ta defragmentacia sa mi zdala nekonecna :?:
Pocitac sa tvari OK.

tu je log Logfile of random's system information tool 1.09 (written by random/random)
Run by Viera at 2013-04-07 00:24:27
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 60 GB (63%) free of 95 GB
Total RAM: 1916 MB (46% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 0:24:35, on 7. 4. 2013
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.19088)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\SiS VGA Utilities\SiSTray.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Windows\System32\mobsync.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe
C:\Windows\system32\taskeng.exe
C:\Users\Viera\AppData\Local\Facebook\Update\FacebookUpdate.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\NOTEPAD.EXE
C:\Users\Viera\Desktop\RSIT.exe
C:\Program Files\trend micro\Viera.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://go.microsoft.com/fwlink/?linkid=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.facebook.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - Default URLSearchHook is missing
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [SiSTray] %ProgramFiles%\SiS VGA Utilities\SiSTray.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [Skytel] Skytel.exe
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files\ICQ7.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files\ICQ7.5\ICQ.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe

--
End of file - 3321 bytes

=========Mozilla firefox=========

ProfilePath - C:\Users\Viera\AppData\Roaming\Mozilla\Firefox\Profiles\j5a98b64.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "https://www.google.sk/"
prefs.js - "extensions.enabledItems" - "{c0c9a2c7-2e5c-4447-bc53-97718bc91e1b}:4.1, {e4a8a97b-f2ed-450b-b12d-ee082ba24781}:0.9.3, {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}:6.0.17, {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20, {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, {20a82645-c095-46ed-80e3-08825760534b}:1.2.1, {AB2CE124-6272-4b12-94A9-7303C7397BD1}:4.2.0.5198, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.5.19"

"{20a82645-c095-46ed-80e3-08825760534b}"=C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.6.602.180 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_11_6_602_180.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\system32\Adobe\Director\np32dsw_1168638.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.17.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.17.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@parallelgraphics.com/Cortona]
"Description"=Cortona VRML Plugin
"Path"=C:\Program Files\Common Files\ParallelGraphics\Cortona\npCortona.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{AB2CE124-6272-4b12-94A9-7303C7397BD1}
{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}

C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
npCortona.xpt

C:\Program Files\Mozilla Firefox\plugins\
exeImagine.IMD
np-mswmp.dll
npCortona.dll
npImagine.dll
npkimi.dll
NPOFF12.DLL
nppdf32.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
QuickTimePlugin.class
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

C:\Program Files\Mozilla Firefox\searchplugins\
amazondotcom.xml
eBay.xml
google.xml
twitter.xml
wikipedia.xml
yahoo.xml

C:\Users\Viera\AppData\Roaming\Mozilla\Firefox\Profiles\j5a98b64.default\extensions\
{20a82645-c095-46ed-80e3-08825760534b}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-12-18 66280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-03-13 461216]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-03-07 1224568]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-03-13 170912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-03-07 1224568]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SiSTray"=C:\Program Files\SiS VGA Utilities\SiSTray.exe [2007-08-24 552960]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-11-14 4706304]
"Skytel"=C:\Windows\Skytel.exe [2007-10-11 1826816]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2013-03-07 4767304]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=0
"NoDriveTypeAutoRun"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=0
"NoDriveTypeAutoRun"=0
"BindDirectlyToPropertySetStorage"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"VIDC.DIVX"=divx.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.lameacm"=lameACM.acm
"VIDC.FFDS"=ff_vfw.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2013-04-07 00:13:08 ----D---- C:\rsit
2013-04-06 17:20:45 ----A---- C:\Windows\system32\drivers\aswFsBlk.sys
2013-04-06 17:20:44 ----A---- C:\Windows\system32\drivers\aswSP.sys
2013-04-06 17:20:40 ----A---- C:\Windows\system32\drivers\aswRdr.sys
2013-04-06 17:20:39 ----A---- C:\Windows\system32\drivers\aswTdi.sys
2013-04-06 17:20:38 ----A---- C:\Windows\system32\drivers\aswSnx.sys
2013-04-06 17:20:37 ----A---- C:\Windows\system32\drivers\aswVmm.sys
2013-04-06 17:20:36 ----A---- C:\Windows\system32\drivers\aswRvrt.sys
2013-04-06 17:20:35 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2013-04-06 17:20:35 ----A---- C:\Windows\system32\aswBoot.exe
2013-04-06 17:18:53 ----A---- C:\Windows\avastSS.scr
2013-04-06 17:18:13 ----D---- C:\Program Files\AVAST Software
2013-04-06 15:56:24 ----A---- C:\Windows\DeleteOnReboot.bat
2013-04-06 13:28:44 ----D---- C:\Users\Viera\AppData\Roaming\Malwarebytes
2013-04-06 13:28:44 ----A---- C:\Windows\system32\drivers\mbamswissarmy.sys
2013-04-06 13:28:25 ----D---- C:\ProgramData\Malwarebytes
2013-04-06 12:47:51 ----D---- C:\Windows\system32\eu-ES
2013-04-06 12:47:51 ----D---- C:\Windows\system32\ca-ES
2013-04-06 12:47:49 ----D---- C:\Windows\system32\vi-VN
2013-04-06 12:37:32 ----D---- C:\Windows\system32\SPReview
2013-04-06 12:22:27 ----A---- C:\Windows\system32\scavenge.dll
2013-04-06 12:22:09 ----A---- C:\Windows\system32\compcln.exe
2013-04-06 12:14:38 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2013-04-06 12:14:38 ----A---- C:\Windows\system32\SearchIndexer.exe
2013-04-06 12:14:38 ----A---- C:\Windows\system32\SearchFilterHost.exe
2013-04-06 12:14:38 ----A---- C:\Windows\system32\sdohlp.dll
2013-04-06 12:14:38 ----A---- C:\Windows\system32\rtffilt.dll
2013-04-06 12:14:38 ----A---- C:\Windows\system32\rsaenh.dll
2013-04-06 12:14:37 ----A---- C:\Windows\system32\samlib.dll
2013-04-06 12:14:37 ----A---- C:\Windows\system32\rpchttp.dll
2013-04-06 12:14:37 ----A---- C:\Windows\system32\rpcss.dll
2013-04-06 12:14:37 ----A---- C:\Windows\system32\riched20.dll
2013-04-06 12:14:37 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2013-04-06 12:14:37 ----A---- C:\Windows\system32\drivers\rmcast.sys
2013-04-06 12:14:36 ----A---- C:\Windows\system32\scrrun.dll
2013-04-06 12:14:36 ----A---- C:\Windows\system32\scansetting.dll
2013-04-06 12:14:35 ----A---- C:\Windows\system32\scksp.dll
2013-04-06 12:14:35 ----A---- C:\Windows\system32\SCardSvr.dll
2013-04-06 12:14:35 ----A---- C:\Windows\system32\samsrv.dll
2013-04-06 12:14:34 ----A---- C:\Windows\system32\scrobj.dll
2013-04-06 12:14:34 ----A---- C:\Windows\system32\scesrv.dll
2013-04-06 12:14:34 ----A---- C:\Windows\system32\scecli.dll
2013-04-06 12:14:31 ----A---- C:\Windows\system32\perfdisk.dll
2013-04-06 12:14:31 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2013-04-06 12:14:31 ----A---- C:\Windows\system32\pdh.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\PNPXAssoc.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\PnPutil.exe
2013-04-06 12:14:30 ----A---- C:\Windows\system32\PnPUnattend.exe
2013-04-06 12:14:30 ----A---- C:\Windows\system32\pnpui.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\pnidui.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\pcaui.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\p2psvc.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\P2PGraph.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\drivers\pciidex.sys
2013-04-06 12:14:30 ----A---- C:\Windows\system32\drivers\pciide.sys
2013-04-06 12:14:30 ----A---- C:\Windows\system32\drivers\pci.sys
2013-04-06 12:14:30 ----A---- C:\Windows\system32\drivers\partmgr.sys
2013-04-06 12:14:30 ----A---- C:\Windows\system32\drivers\pacer.sys
2013-04-06 12:14:29 ----A---- C:\Windows\system32\powercpl.dll
2013-04-06 12:14:29 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2013-04-06 12:14:29 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2013-04-06 12:14:29 ----A---- C:\Windows\system32\pnpsetup.dll
2013-04-06 12:14:29 ----A---- C:\Windows\system32\pidgenx.dll
2013-04-06 12:14:29 ----A---- C:\Windows\system32\photowiz.dll
2013-04-06 12:14:29 ----A---- C:\Windows\system32\drivers\portcls.sys
2013-04-06 12:14:28 ----A---- C:\Windows\system32\PkgMgr.exe
2013-04-06 12:14:28 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2013-04-06 12:14:28 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2013-04-06 12:14:28 ----A---- C:\Windows\system32\nslookup.exe
2013-04-06 12:14:28 ----A---- C:\Windows\system32\drivers\npfs.sys
2013-04-06 12:14:27 ----A---- C:\Windows\system32\drivers\ntfs.sys
2013-04-06 12:14:26 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2013-04-06 12:14:25 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2013-04-06 12:14:25 ----A---- C:\Windows\system32\nlhtml.dll
2013-04-06 12:14:24 ----A---- C:\Windows\system32\offfilt.dll
2013-04-06 12:14:23 ----A---- C:\Windows\system32\osk.exe
2013-04-06 12:14:23 ----A---- C:\Windows\system32\oobefldr.dll
2013-04-06 12:14:23 ----A---- C:\Windows\system32\onex.dll
2013-04-06 12:14:23 ----A---- C:\Windows\system32\olepro32.dll
2013-04-06 12:14:23 ----A---- C:\Windows\system32\oleprn.dll
2013-04-06 12:14:23 ----A---- C:\Windows\system32\odbccp32.dll
2013-04-06 12:14:23 ----A---- C:\Windows\system32\odbcconf.dll
2013-04-06 12:14:22 ----A---- C:\Windows\system32\ocsetup.exe
2013-04-06 12:14:22 ----A---- C:\Windows\system32\ntprint.dll
2013-04-06 12:14:22 ----A---- C:\Windows\system32\ntmarta.dll
2013-04-06 12:14:22 ----A---- C:\Windows\system32\drivers\nwifi.sys
2013-04-06 12:14:21 ----A---- C:\Windows\system32\rasmontr.dll
2013-04-06 12:14:21 ----A---- C:\Windows\system32\rasmans.dll
2013-04-06 12:14:21 ----A---- C:\Windows\system32\rasgcw.dll
2013-04-06 12:14:21 ----A---- C:\Windows\system32\rasdlg.dll
2013-04-06 12:14:21 ----A---- C:\Windows\system32\rasdial.exe
2013-04-06 12:14:21 ----A---- C:\Windows\system32\rasdiag.dll
2013-04-06 12:14:21 ----A---- C:\Windows\system32\rasapi32.dll
2013-04-06 12:14:20 ----A---- C:\Windows\system32\rastapi.dll
2013-04-06 12:14:20 ----A---- C:\Windows\system32\rasppp.dll
2013-04-06 12:14:20 ----A---- C:\Windows\system32\rasplap.dll
2013-04-06 12:14:20 ----A---- C:\Windows\system32\raschap.dll
2013-04-06 12:14:20 ----A---- C:\Windows\system32\Query.dll
2013-04-06 12:14:20 ----A---- C:\Windows\system32\drivers\rassstp.sys
2013-04-06 12:14:20 ----A---- C:\Windows\system32\drivers\raspppoe.sys
2013-04-06 12:14:19 ----A---- C:\Windows\system32\RelMon.dll
2013-04-06 12:14:19 ----A---- C:\Windows\system32\rekeywiz.exe
2013-04-06 12:14:19 ----A---- C:\Windows\system32\regsvc.dll
2013-04-06 12:14:19 ----A---- C:\Windows\system32\RacEngn.dll
2013-04-06 12:14:19 ----A---- C:\Windows\system32\qmgr.dll
2013-04-06 12:14:19 ----A---- C:\Windows\system32\qedit.dll
2013-04-06 12:14:18 ----A---- C:\Windows\system32\reg.exe
2013-04-06 12:14:18 ----A---- C:\Windows\system32\rdpencom.dll
2013-04-06 12:14:18 ----A---- C:\Windows\system32\drivers\rdbss.sys
2013-04-06 12:14:17 ----A---- C:\Windows\system32\regapi.dll
2013-04-06 12:14:17 ----A---- C:\Windows\system32\rdpwsx.dll
2013-04-06 12:14:17 ----A---- C:\Windows\system32\PresentationSettings.exe
2013-04-06 12:14:17 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2013-04-06 12:14:17 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2013-04-06 12:14:16 ----A---- C:\Windows\system32\prnntfy.dll
2013-04-06 12:14:16 ----A---- C:\Windows\system32\printui.dll
2013-04-06 12:14:16 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2013-04-06 12:14:16 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2013-04-06 12:14:15 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-04-06 12:14:15 ----A---- C:\Windows\system32\powrprof.dll
2013-04-06 12:14:14 ----A---- C:\Windows\system32\qdvd.dll
2013-04-06 12:14:14 ----A---- C:\Windows\system32\QAGENTRT.DLL
2013-04-06 12:14:14 ----A---- C:\Windows\system32\puiapi.dll
2013-04-06 12:14:13 ----A---- C:\Windows\system32\propsys.dll
2013-04-06 12:14:13 ----A---- C:\Windows\system32\propdefs.dll
2013-04-06 12:14:13 ----A---- C:\Windows\system32\profsvc.dll
2013-04-06 12:14:12 ----A---- C:\Windows\system32\psisdecd.dll
2013-04-06 12:14:12 ----A---- C:\Windows\system32\PSHED.DLL
2013-04-06 12:14:08 ----A---- C:\Windows\system32\sendmail.dll
2013-04-06 12:14:07 ----A---- C:\Windows\system32\shdocvw.dll
2013-04-06 12:14:06 ----A---- C:\Windows\system32\sethc.exe
2013-04-06 12:14:06 ----A---- C:\Windows\system32\services.exe
2013-04-06 12:14:05 ----A---- C:\Windows\system32\setupapi.dll
2013-04-06 12:13:56 ----A---- C:\Windows\system32\eapphost.dll
2013-04-06 12:13:56 ----A---- C:\Windows\system32\eappgnui.dll
2013-04-06 12:13:56 ----A---- C:\Windows\system32\drivers\ecache.sys
2013-04-06 12:13:53 ----A---- C:\Windows\system32\eappcfg.dll
2013-04-06 12:13:53 ----A---- C:\Windows\system32\eapp3hst.dll
2013-04-06 12:13:52 ----A---- C:\Windows\system32\EhStorAPI.dll
2013-04-06 12:13:52 ----A---- C:\Windows\system32\dsprop.dll
2013-04-06 12:13:52 ----A---- C:\Windows\system32\drivers\Dumpata.sys
2013-04-06 12:13:51 ----A---- C:\Windows\system32\ExplorerFrame.dll
2013-04-06 12:13:51 ----A---- C:\Windows\system32\evr.dll
2013-04-06 12:13:51 ----A---- C:\Windows\system32\eudcedit.exe
2013-04-06 12:13:51 ----A---- C:\Windows\system32\dwm.exe
2013-04-06 12:13:51 ----A---- C:\Windows\system32\dsound.dll
2013-04-06 12:13:51 ----A---- C:\Windows\system32\drivers\exfat.sys
2013-04-06 12:13:51 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2013-04-06 12:13:51 ----A---- C:\Windows\system32\drivers\dxg.sys
2013-04-06 12:13:51 ----A---- C:\Windows\explorer.exe
2013-04-06 12:13:50 ----A---- C:\Windows\system32\esent.dll
2013-04-06 12:13:49 ----A---- C:\Windows\system32\f3ahvoas.dll
2013-04-06 12:13:48 ----A---- C:\Windows\system32\es.dll
2013-04-06 12:13:48 ----A---- C:\Windows\system32\emdmgmt.dll
2013-04-06 12:13:48 ----A---- C:\Windows\system32\EhStorShell.dll
2013-04-06 12:13:48 ----A---- C:\Windows\system32\EhStorPwdMgr.dll
2013-04-06 12:13:48 ----A---- C:\Windows\system32\EhStorAuthn.dll
2013-04-06 12:13:47 ----A---- C:\Windows\system32\dimsroam.dll
2013-04-06 12:13:47 ----A---- C:\Windows\system32\diagperf.dll
2013-04-06 12:13:47 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2013-04-06 12:13:46 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2013-04-06 12:13:46 ----A---- C:\Windows\system32\drivers\disk.sys
2013-04-06 12:13:46 ----A---- C:\Windows\system32\diskraid.exe
2013-04-06 12:13:46 ----A---- C:\Windows\system32\diskpart.exe
2013-04-06 12:13:45 ----A---- C:\Windows\system32\dfsr.exe
2013-04-06 12:13:45 ----A---- C:\Windows\system32\devmgr.dll
2013-04-06 12:13:44 ----A---- C:\Windows\system32\dhcpcsvc.dll
2013-04-06 12:13:42 ----A---- C:\Windows\system32\dpapimig.exe
2013-04-06 12:13:42 ----A---- C:\Windows\system32\dot3svc.dll
2013-04-06 12:13:42 ----A---- C:\Windows\system32\dot3msm.dll
2013-04-06 12:13:42 ----A---- C:\Windows\system32\dot3cfg.dll
2013-04-06 12:13:41 ----A---- C:\Windows\system32\drvstore.dll
2013-04-06 12:13:39 ----A---- C:\Windows\system32\drvinst.exe
2013-04-06 12:13:39 ----A---- C:\Windows\system32\drmv2clt.dll
2013-04-06 12:13:39 ----A---- C:\Windows\system32\drmmgrtn.dll
2013-04-06 12:13:38 ----A---- C:\Windows\system32\dmusic.dll
2013-04-06 12:13:38 ----A---- C:\Windows\system32\dmsynth.dll
2013-04-06 12:13:37 ----A---- C:\Windows\system32\hbaapi.dll
2013-04-06 12:13:37 ----A---- C:\Windows\system32\gpresult.exe
2013-04-06 12:13:37 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2013-04-06 12:13:36 ----A---- C:\Windows\system32\gpsvc.dll
2013-04-06 12:13:35 ----A---- C:\Windows\system32\iasnap.dll
2013-04-06 12:13:35 ----A---- C:\Windows\system32\IasMigReader.exe
2013-04-06 12:13:35 ----A---- C:\Windows\system32\IasMigPlugin.dll
2013-04-06 12:13:35 ----A---- C:\Windows\system32\iashlpr.dll
2013-04-06 12:13:35 ----A---- C:\Windows\system32\iasdatastore.dll
2013-04-06 12:13:35 ----A---- C:\Windows\system32\iasads.dll
2013-04-06 12:13:35 ----A---- C:\Windows\system32\iasacct.dll
2013-04-06 12:13:35 ----A---- C:\Windows\system32\gpupdate.exe
2013-04-06 12:13:34 ----A---- C:\Windows\system32\hidserv.dll
2013-04-06 12:13:34 ----A---- C:\Windows\system32\hdwwiz.exe
2013-04-06 12:13:34 ----A---- C:\Windows\system32\drivers\hidusb.sys
2013-04-06 12:13:34 ----A---- C:\Windows\system32\drivers\hidclass.sys
2013-04-06 12:13:33 ----A---- C:\Windows\system32\gpapi.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\gdi32.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fontext.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\findstr.exe
2013-04-06 12:13:33 ----A---- C:\Windows\system32\feclient.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fdWSD.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fdWCN.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fdSSDP.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fdProxy.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fdeploy.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fdBthProxy.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fdBth.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fc.exe
2013-04-06 12:13:33 ----A---- C:\Windows\system32\Faultrep.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2013-04-06 12:13:33 ----A---- C:\Windows\system32\drivers\fastfat.sys
2013-04-06 12:13:31 ----A---- C:\Windows\system32\gpedit.dll
2013-04-06 12:13:30 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2013-04-06 12:13:30 ----A---- C:\Windows\system32\fundisc.dll
2013-04-06 12:13:30 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll
2013-04-06 12:13:30 ----A---- C:\Windows\system32\ftp.exe
2013-04-06 12:13:29 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2013-04-06 12:13:29 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2013-04-06 12:13:29 ----A---- C:\Windows\system32\drivers\ataport.sys
2013-04-06 12:13:29 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2013-04-06 12:13:29 ----A---- C:\Windows\system32\AuxiliaryDisplayDriverLib.dll
2013-04-06 12:13:29 ----A---- C:\Windows\system32\autochk.exe
2013-04-06 12:13:29 ----A---- C:\Windows\system32\authz.dll
2013-04-06 12:13:29 ----A---- C:\Windows\system32\authui.dll
2013-04-06 12:13:29 ----A---- C:\Windows\system32\audiosrv.dll
2013-04-06 12:13:29 ----A---- C:\Windows\system32\AudioSes.dll
2013-04-06 12:13:29 ----A---- C:\Windows\system32\audiodg.exe
2013-04-06 12:13:28 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2013-04-06 12:13:28 ----A---- C:\Windows\system32\autoplay.dll
2013-04-06 12:13:28 ----A---- C:\Windows\system32\autofmt.exe
2013-04-06 12:13:28 ----A---- C:\Windows\system32\autoconv.exe
2013-04-06 12:13:27 ----A---- C:\Windows\system32\drivers\atapi.sys
2013-04-06 12:13:27 ----A---- C:\Windows\system32\brcpl.dll
2013-04-06 12:13:26 ----A---- C:\Windows\system32\drivers\bridge.sys
2013-04-06 12:13:26 ----A---- C:\Windows\system32\bthci.dll
2013-04-06 12:13:26 ----A---- C:\Windows\system32\browseui.dll
2013-04-06 12:13:26 ----A---- C:\Windows\system32\blackbox.dll
2013-04-06 12:13:26 ----A---- C:\Windows\system32\bitsigd.dll
2013-04-06 12:13:26 ----A---- C:\Windows\system32\BFE.DLL
2013-04-06 12:13:26 ----A---- C:\Windows\system32\bcrypt.dll
2013-04-06 12:13:26 ----A---- C:\Windows\system32\basecsp.dll
2013-04-06 12:13:26 ----A---- C:\Windows\system32\azroles.dll
2013-04-06 12:13:25 ----A---- C:\Windows\system32\drivers\acpi.sys
2013-04-06 12:13:25 ----A---- C:\Windows\system32\accessibilitycpl.dll
2013-04-06 12:13:23 ----A---- C:\Windows\system32\apphelp.dll
2013-04-06 12:13:23 ----A---- C:\Windows\system32\apds.dll
2013-04-06 12:13:22 ----A---- C:\Windows\system32\adsmsext.dll
2013-04-06 12:13:22 ----A---- C:\Windows\system32\adsldpc.dll
2013-04-06 12:13:21 ----A---- C:\Windows\system32\advapi32.dll
2013-04-06 12:13:21 ----A---- C:\Windows\system32\adtschema.dll
2013-04-06 12:13:20 ----A---- C:\Windows\system32\drivers\crashdmp.sys
2013-04-06 12:13:20 ----A---- C:\Windows\system32\crypt32.dll
2013-04-06 12:13:20 ----A---- C:\Windows\system32\credui.dll
2013-04-06 12:13:20 ----A---- C:\Windows\system32\conime.exe
2013-04-06 12:13:20 ----A---- C:\Windows\system32\comuid.dll
2013-04-06 12:13:20 ----A---- C:\Windows\system32\comsvcs.dll
2013-04-06 12:13:19 ----A---- C:\Windows\system32\connect.dll
2013-04-06 12:13:19 ----A---- C:\Windows\system32\cmdial32.dll
2013-04-06 12:13:18 ----A---- C:\Windows\system32\comdlg32.dll
2013-04-06 12:13:18 ----A---- C:\Windows\system32\cmmon32.exe
2013-04-06 12:13:17 ----A---- C:\Windows\system32\DevicePairingWizard.exe
2013-04-06 12:13:17 ----A---- C:\Windows\system32\DevicePairingProxy.dll
2013-04-06 12:13:17 ----A---- C:\Windows\system32\DevicePairing.dll
2013-04-06 12:13:17 ----A---- C:\Windows\system32\DeviceEject.exe
2013-04-06 12:13:17 ----A---- C:\Windows\system32\dbgeng.dll
2013-04-06 12:13:17 ----A---- C:\Windows\system32\davclnt.dll
2013-04-06 12:13:17 ----A---- C:\Windows\system32\dataclen.dll
2013-04-06 12:13:17 ----A---- C:\Windows\system32\d3d9.dll
2013-04-06 12:13:16 ----A---- C:\Windows\system32\cscdll.dll
2013-04-06 12:13:16 ----A---- C:\Windows\system32\cscapi.dll
2013-04-06 12:13:15 ----A---- C:\Windows\system32\csrstub.exe
2013-04-06 12:13:15 ----A---- C:\Windows\system32\cscript.exe
2013-04-06 12:13:15 ----A---- C:\Windows\system32\cryptui.dll
2013-04-06 12:13:15 ----A---- C:\Windows\system32\cryptsvc.dll
2013-04-06 12:13:14 ----A---- C:\Windows\system32\drivers\cdrom.sys
2013-04-06 12:13:14 ----A---- C:\Windows\system32\certmgr.dll
2013-04-06 12:13:14 ----A---- C:\Windows\system32\CertEnrollUI.dll
2013-04-06 12:13:14 ----A---- C:\Windows\system32\CertEnroll.dll
2013-04-06 12:13:14 ----A---- C:\Windows\system32\certcli.dll
2013-04-06 12:13:14 ----A---- C:\Windows\system32\cdd.dll
2013-04-06 12:13:13 ----A---- C:\Windows\system32\cbsra.exe
2013-04-06 12:13:13 ----A---- C:\Windows\system32\bthudtask.exe
2013-04-06 12:13:13 ----A---- C:\Windows\system32\bthserv.dll
2013-04-06 12:13:12 ----A---- C:\Windows\system32\CHxReadingStringIME.dll
2013-04-06 12:13:12 ----A---- C:\Windows\system32\chtbrkr.dll
2013-04-06 12:13:12 ----A---- C:\Windows\system32\chsbrkr.dll
2013-04-06 12:13:12 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2013-04-06 12:13:12 ----A---- C:\Windows\system32\clfs.sys
2013-04-06 12:13:12 ----A---- C:\Windows\system32\cipher.exe
2013-04-06 12:13:12 ----A---- C:\Windows\system32\ci.dll
2013-04-06 12:13:11 ----A---- C:\Windows\system32\certutil.exe
2013-04-06 12:13:11 ----A---- C:\Windows\system32\certreq.exe
2013-04-06 12:13:11 ----A---- C:\Windows\system32\certprop.dll
2013-04-06 12:13:10 ----A---- C:\Windows\system32\msihnd.dll
2013-04-06 12:13:10 ----A---- C:\Windows\system32\msiexec.exe
2013-04-06 12:13:10 ----A---- C:\Windows\system32\msi.dll
2013-04-06 12:13:10 ----A---- C:\Windows\system32\msftedit.dll
2013-04-06 12:13:10 ----A---- C:\Windows\system32\msexch40.dll
2013-04-06 12:13:10 ----A---- C:\Windows\system32\msexcl40.dll
2013-04-06 12:13:10 ----A---- C:\Windows\system32\msdtctm.dll
2013-04-06 12:13:09 ----A---- C:\Windows\system32\msimsg.dll
2013-04-06 12:13:09 ----A---- C:\Windows\system32\msdtcprx.dll
2013-04-06 12:13:09 ----A---- C:\Windows\system32\msctfui.dll
2013-04-06 12:13:09 ----A---- C:\Windows\system32\msctfp.dll
2013-04-06 12:13:09 ----A---- C:\Windows\system32\MsCtfMonitor.dll
2013-04-06 12:13:09 ----A---- C:\Windows\system32\msctf.dll
2013-04-06 12:13:09 ----A---- C:\Windows\system32\MPSSVC.dll
2013-04-06 12:13:08 ----A---- C:\Windows\system32\mprapi.dll
2013-04-06 12:13:08 ----A---- C:\Windows\system32\mpr.dll
2013-04-06 12:13:08 ----A---- C:\Windows\system32\modemui.dll
2013-04-06 12:13:08 ----A---- C:\Windows\system32\MMDevAPI.dll
2013-04-06 12:13:07 ----A---- C:\Windows\system32\mscories.dll
2013-04-06 12:13:07 ----A---- C:\Windows\system32\mscorier.dll
2013-04-06 12:13:07 ----A---- C:\Windows\system32\mscms.dll
2013-04-06 12:13:07 ----A---- C:\Windows\system32\mscandui.dll
2013-04-06 12:13:06 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2013-04-06 12:13:05 ----A---- C:\Windows\system32\netapi32.dll
2013-04-06 12:13:04 ----A---- C:\Windows\system32\NetProjW.dll
2013-04-06 12:13:04 ----A---- C:\Windows\system32\netplwiz.dll
2013-04-06 12:13:04 ----A---- C:\Windows\system32\netlogon.dll
2013-04-06 12:13:04 ----A---- C:\Windows\system32\netcenter.dll
2013-04-06 12:13:04 ----A---- C:\Windows\system32\ncryptui.dll
2013-04-06 12:13:04 ----A---- C:\Windows\system32\ncrypt.dll
2013-04-06 12:13:04 ----A---- C:\Windows\system32\drivers\netio.sys
2013-04-06 12:13:04 ----A---- C:\Windows\system32\drivers\netbt.sys
2013-04-06 12:13:04 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2013-04-06 12:13:04 ----A---- C:\Windows\system32\drivers\ndis.sys
2013-04-06 12:13:03 ----A---- C:\Windows\system32\NcdProp.dll
2013-04-06 12:13:03 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2013-04-06 12:13:03 ----A---- C:\Windows\system32\mtxclu.dll
2013-04-06 12:13:03 ----A---- C:\Windows\system32\drivers\mup.sys
2013-04-06 12:13:01 ----A---- C:\Windows\system32\newdev.exe
2013-04-06 12:13:01 ----A---- C:\Windows\system32\newdev.dll
2013-04-06 12:13:01 ----A---- C:\Windows\system32\networkmap.dll
2013-04-06 12:13:01 ----A---- C:\Windows\system32\networkitemfactory.dll
2013-04-06 12:13:01 ----A---- C:\Windows\system32\networkexplorer.dll
2013-04-06 12:13:01 ----A---- C:\Windows\system32\netshell.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msscntrs.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msscb.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msrepl40.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msrd3x40.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msrd2x40.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\mspbde40.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msnetobj.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\MSMPEG2VDEC.DLL
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msltus40.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msimtf.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\drivers\msrpc.sys
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msvcp60.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msutb.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msjtes40.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msjter40.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msjint40.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msjetoledb40.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msjet40.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msisip.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msinfo32.exe
2013-04-06 12:12:59 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2013-04-06 12:12:58 ----A---- C:\Windows\system32\msxbde40.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mswstr10.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mswsock.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mswdat10.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\MSVidCtl.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\msvcrt.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mstlsapi.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mssvp.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\msstrc.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mssrch.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mssprxy.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mssphtb.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mssph.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mssitlb.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\msshsq.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\msshooks.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\msscp.dll
2013-04-06 12:12:57 ----A---- C:\Windows\system32\mstext40.dll
2013-04-06 12:12:57 ----A---- C:\Windows\system32\InkEd.dll
2013-04-06 12:12:57 ----A---- C:\Windows\system32\infocardapi.dll
2013-04-06 12:12:57 ----A---- C:\Windows\system32\inetppui.dll
2013-04-06 12:12:57 ----A---- C:\Windows\system32\inetpp.dll
2013-04-06 12:12:55 ----A---- C:\Windows\system32\iscsilog.dll
2013-04-06 12:12:55 ----A---- C:\Windows\system32\ipsmsnap.dll
2013-04-06 12:12:55 ----A---- C:\Windows\system32\IPSECSVC.DLL
2013-04-06 12:12:55 ----A---- C:\Windows\system32\imm32.dll
2013-04-06 12:12:54 ----A---- C:\Windows\system32\ipsecsnp.dll
2013-04-06 12:12:54 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2013-04-06 12:12:54 ----A---- C:\Windows\system32\ipconfig.exe
2013-04-06 12:12:54 ----A---- C:\Windows\system32\input.dll
2013-04-06 12:12:53 ----A---- C:\Windows\system32\ifmon.dll
2013-04-06 12:12:53 ----A---- C:\Windows\system32\icardres.dll
2013-04-06 12:12:53 ----A---- C:\Windows\system32\icardagt.exe
2013-04-06 12:12:53 ----A---- C:\Windows\system32\iassvcs.dll
2013-04-06 12:12:53 ----A---- C:\Windows\system32\iassdo.dll
2013-04-06 12:12:52 ----A---- C:\Windows\system32\IMJP10K.DLL
2013-04-06 12:12:52 ----A---- C:\Windows\system32\imapi.dll
2013-04-06 12:12:52 ----A---- C:\Windows\system32\iassam.dll
2013-04-06 12:12:52 ----A---- C:\Windows\system32\iasrecst.dll
2013-04-06 12:12:52 ----A---- C:\Windows\system32\iasrad.dll
2013-04-06 12:12:52 ----A---- C:\Windows\system32\iaspolcy.dll
2013-04-06 12:12:51 ----A---- C:\Windows\system32\imapi2fs.dll
2013-04-06 12:12:51 ----A---- C:\Windows\system32\imapi2.dll
2013-04-06 12:12:51 ----A---- C:\Windows\system32\IKEEXT.DLL
2013-04-06 12:12:48 ----A---- C:\Windows\system32\mfplat.dll
2013-04-06 12:12:47 ----A---- C:\Windows\system32\mimefilt.dll
2013-04-06 12:12:47 ----A---- C:\Windows\system32\milcore.dll
2013-04-06 12:12:46 ----A---- C:\Windows\system32\mmcndmgr.dll
2013-04-06 12:12:46 ----A---- C:\Windows\system32\mmcico.dll
2013-04-06 12:12:46 ----A---- C:\Windows\system32\mmci.dll
2013-04-06 12:12:46 ----A---- C:\Windows\system32\midimap.dll
2013-04-06 12:12:45 ----A---- C:\Windows\system32\mmc.exe
2013-04-06 12:12:43 ----A---- C:\Windows\system32\drivers\ks.sys
2013-04-06 12:12:40 ----A---- C:\Windows\system32\l2nacp.dll
2013-04-06 12:12:40 ----A---- C:\Windows\system32\korwbrkr.dll
2013-04-06 12:12:40 ----A---- C:\Windows\system32\kd1394.dll
2013-04-06 12:12:40 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2013-04-06 12:12:39 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2013-04-06 12:12:39 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2013-04-06 12:12:39 ----A---- C:\Windows\system32\mcmde.dll
2013-04-06 12:12:39 ----A---- C:\Windows\system32\mblctr.exe
2013-04-06 12:12:39 ----A---- C:\Windows\system32\kdusb.dll
2013-04-06 12:12:39 ----A---- C:\Windows\system32\kdcom.dll
2013-04-06 12:12:38 ----A---- C:\Windows\system32\Magnify.exe
2013-04-06 12:12:38 ----A---- C:\Windows\system32\logman.exe
2013-04-06 12:12:38 ----A---- C:\Windows\system32\logagent.exe
2013-04-06 12:12:37 ----A---- C:\Windows\system32\shsetup.dll
2013-04-06 12:12:36 ----A---- C:\Windows\system32\wercon.exe
2013-04-06 12:12:36 ----A---- C:\Windows\system32\wer.dll
2013-04-06 12:12:36 ----A---- C:\Windows\system32\WebClnt.dll
2013-04-06 12:12:36 ----A---- C:\Windows\system32\wdscore.dll
2013-04-06 12:12:35 ----A---- C:\Windows\system32\wdc.dll
2013-04-06 12:12:34 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2013-04-06 12:12:34 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-04-06 12:12:32 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
2013-04-06 12:12:31 ----A---- C:\Windows\system32\wevtutil.exe
2013-04-06 12:12:30 ----A---- C:\Windows\system32\whealogr.dll
2013-04-06 12:12:30 ----A---- C:\Windows\system32\wevtsvc.dll
2013-04-06 12:12:29 ----A---- C:\Windows\system32\wevtapi.dll
2013-04-06 12:12:29 ----A---- C:\Windows\system32\wersvc.dll
2013-04-06 12:12:29 ----A---- C:\Windows\system32\WerFaultSecure.exe
2013-04-06 12:12:29 ----A---- C:\Windows\system32\WerFault.exe
2013-04-06 12:12:27 ----A---- C:\Windows\system32\win32spl.dll
2013-04-06 12:12:26 ----A---- C:\Windows\system32\wiaservc.dll
2013-04-06 12:12:26 ----A---- C:\Windows\system32\wiaaut.dll
2013-04-06 12:12:26 ----A---- C:\Windows\system32\version.dll
2013-04-06 12:12:26 ----A---- C:\Windows\system32\vds.exe
2013-04-06 12:12:26 ----A---- C:\Windows\system32\vdmdbg.dll
2013-04-06 12:12:25 ----A---- C:\Windows\system32\vdsutil.dll
2013-04-06 12:12:25 ----A---- C:\Windows\system32\vdsdyn.dll
2013-04-06 12:12:24 ----A---- C:\Windows\system32\uxsms.dll
2013-04-06 12:12:24 ----A---- C:\Windows\system32\Utilman.exe
2013-04-06 12:12:24 ----A---- C:\Windows\system32\user32.dll
2013-04-06 12:12:24 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2013-04-06 12:12:24 ----A---- C:\Windows\system32\drivers\usbport.sys
2013-04-06 12:12:24 ----A---- C:\Windows\system32\drivers\usbohci.sys
2013-04-06 12:12:22 ----A---- C:\Windows\system32\userenv.dll
2013-04-06 12:12:22 ----A---- C:\Windows\system32\usercpl.dll
2013-04-06 12:12:20 ----A---- C:\Windows\system32\wcncsvc.dll
2013-04-06 12:12:20 ----A---- C:\Windows\system32\drivers\watchdog.sys
2013-04-06 12:12:19 ----A---- C:\Windows\system32\wcnwiz2.dll
2013-04-06 12:12:19 ----A---- C:\Windows\system32\wcnwiz.dll
2013-04-06 12:12:19 ----A---- C:\Windows\system32\WcnNetsh.dll
2013-04-06 12:12:18 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2013-04-06 12:12:17 ----A---- C:\Windows\system32\w32time.dll
2013-04-06 12:12:17 ----A---- C:\Windows\system32\VSSVC.exe
2013-04-06 12:12:16 ----A---- C:\Windows\system32\vssapi.dll
2013-04-06 12:12:16 ----A---- C:\Windows\system32\drivers\volsnap.sys
2013-04-06 12:12:15 ----A---- C:\Windows\system32\wscisvif.dll
2013-04-06 12:12:15 ----A---- C:\Windows\system32\WscEapPr.dll
2013-04-06 12:12:15 ----A---- C:\Windows\system32\wscapi.dll
2013-04-06 12:12:14 ----A---- C:\Windows\system32\WSDMon.dll
2013-04-06 12:12:14 ----A---- C:\Windows\system32\wsdchngr.dll
2013-04-06 12:12:14 ----A---- C:\Windows\system32\wscsvc.dll
2013-04-06 12:12:14 ----A---- C:\Windows\system32\wscript.exe
2013-04-06 12:12:14 ----A---- C:\Windows\system32\wscntfy.dll
2013-04-06 12:12:14 ----A---- C:\Windows\system32\wow32.dll
2013-04-06 12:12:14 ----A---- C:\Windows\system32\WMVXENCD.DLL
2013-04-06 12:12:14 ----A---- C:\Windows\system32\WMVSDECD.DLL
2013-04-06 12:12:14 ----A---- C:\Windows\system32\WMVENCOD.DLL
2013-04-06 12:12:13 ----A---- C:\Windows\system32\xmlfilter.dll
2013-04-06 12:12:13 ----A---- C:\Windows\system32\wusa.exe
2013-04-06 12:12:13 ----A---- C:\Windows\system32\wpcsvc.dll
2013-04-06 12:12:13 ----A---- C:\Windows\system32\wpccpl.dll
2013-04-06 12:12:13 ----A---- C:\Windows\system32\wpcao.dll
2013-04-06 12:12:12 ----A---- C:\Windows\system32\wshext.dll
2013-04-06 12:12:12 ----A---- C:\Windows\system32\wshbth.dll
2013-04-06 12:12:12 ----A---- C:\Windows\system32\wsepno.dll
2013-04-06 12:12:11 ----A---- C:\Windows\system32\wsnmp32.dll
2013-04-06 12:12:11 ----A---- C:\Windows\system32\wlgpclnt.dll
2013-04-06 12:12:11 ----A---- C:\Windows\system32\Wldap32.dll
2013-04-06 12:12:11 ----A---- C:\Windows\system32\wlanui.dll
2013-04-06 12:12:11 ----A---- C:\Windows\system32\wlanpref.dll
2013-04-06 12:12:11 ----A---- C:\Windows\system32\wlangpui.dll
2013-04-06 12:12:11 ----A---- C:\Windows\system32\wisptis.exe
2013-04-06 12:12:10 ----A---- C:\Windows\system32\WinSCard.dll
2013-04-06 12:12:10 ----A---- C:\Windows\system32\WinSAT.exe
2013-04-06 12:12:10 ----A---- C:\Windows\system32\winrnr.dll
2013-04-06 12:12:10 ----A---- C:\Windows\system32\winresume.exe
2013-04-06 12:12:10 ----A---- C:\Windows\system32\winmm.dll
2013-04-06 12:12:10 ----A---- C:\Windows\system32\winlogon.exe
2013-04-06 12:12:10 ----A---- C:\Windows\system32\winload.exe
2013-04-06 12:12:09 ----A---- C:\Windows\system32\WMPhoto.dll
2013-04-06 12:12:09 ----A---- C:\Windows\system32\wmpeffects.dll
2013-04-06 12:12:09 ----A---- C:\Windows\system32\WMNetMgr.dll
2013-04-06 12:12:08 ----A---- C:\Windows\system32\wmdrmsdk.dll
2013-04-06 12:12:07 ----A---- C:\Windows\system32\drivers\Storport.sys
2013-04-06 12:11:57 ----A---- C:\Windows\system32\Storprop.dll
2013-04-06 12:11:57 ----A---- C:\Windows\system32\stobject.dll
2013-04-06 12:11:57 ----A---- C:\Windows\system32\drivers\stream.sys
2013-04-06 12:11:56 ----A---- C:\Windows\system32\sud.dll
2013-04-06 12:11:55 ----A---- C:\Windows\system32\srchadmin.dll
2013-04-06 12:11:55 ----A---- C:\Windows\system32\srcore.dll
2013-04-06 12:11:54 ----A---- C:\Windows\system32\sysmain.dll
2013-04-06 12:11:54 ----A---- C:\Windows\system32\swprv.dll
2013-04-06 12:11:53 ----A---- C:\Windows\system32\sysclass.dll
2013-04-06 12:11:53 ----A---- C:\Windows\system32\SyncCenter.dll
2013-04-06 12:11:53 ----A---- C:\Windows\system32\smss.exe
2013-04-06 12:11:53 ----A---- C:\Windows\system32\SMBHelperClass.dll
2013-04-06 12:11:53 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2013-04-06 12:11:53 ----A---- C:\Windows\system32\slwmi.dll
2013-04-06 12:11:53 ----A---- C:\Windows\system32\drivers\smb.sys
2013-04-06 12:11:52 ----A---- C:\Windows\system32\spp.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\spoolss.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\spinstall.exe
2013-04-06 12:11:52 ----A---- C:\Windows\system32\spcmsg.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SmiEngine.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\slwga.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SLUINotify.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SLUI.exe
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SLsvc.exe
2013-04-06 12:11:52 ----A---- C:\Windows\system32\slmgr.vbs
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SLLUA.exe
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SLCommDlg.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\slcinst.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SLCExt.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\slcc.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SLC.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\shwebsvc.dll
2013-04-06 12:11:51 ----A---- C:\Windows\system32\TSTheme.exe
2013-04-06 12:11:51 ----A---- C:\Windows\system32\sqlsrv32.dll
2013-04-06 12:11:51 ----A---- C:\Windows\system32\spwizui.dll
2013-04-06 12:11:51 ----A---- C:\Windows\system32\spwinsat.dll
2013-04-06 12:11:51 ----A---- C:\Windows\system32\spreview.exe
2013-04-06 12:11:51 ----A---- C:\Windows\system32\sperror.dll
2013-04-06 12:11:51 ----A---- C:\Windows\system32\softkbd.dll
2013-04-06 12:11:51 ----A---- C:\Windows\system32\SnippingTool.exe
2013-04-06 12:11:51 ----A---- C:\Windows\system32\SndVol.exe
2013-04-06 12:11:51 ----A---- C:\Windows\system32\drivers\spsys.sys
2013-04-06 12:11:50 ----A---- C:\Windows\system32\TsWpfWrp.exe
2013-04-06 12:11:49 ----A---- C:\Windows\system32\drivers\udfs.sys
2013-04-06 12:11:48 ----A---- C:\Windows\system32\zipfldr.dll
2013-04-06 12:11:48 ----A---- C:\Windows\system32\untfs.dll
2013-04-06 12:11:48 ----A---- C:\Windows\system32\drivers\usbhub.sys
2013-04-06 12:11:48 ----A---- C:\Windows\system32\drivers\usbehci.sys
2013-04-06 12:11:48 ----A---- C:\Windows\system32\drivers\USBCAMD.sys
2013-04-06 12:11:48 ----A---- C:\Windows\system32\drivers\usb8023.sys
2013-04-06 12:11:47 ----A---- C:\Windows\system32\ulib.dll
2013-04-06 12:11:47 ----A---- C:\Windows\system32\uDWM.dll
2013-04-06 12:11:47 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2013-04-06 12:11:46 ----A---- C:\Windows\system32\umpnpmgr.dll
2013-04-06 12:11:46 ----A---- C:\Windows\system32\systemcpl.dll
2013-04-06 12:11:42 ----A---- C:\Windows\system32\tquery.dll
2013-04-06 12:11:41 ----A---- C:\Windows\system32\tcpmon.dll
2013-04-06 12:11:41 ----A---- C:\Windows\system32\tcpipcfg.dll
2013-04-06 12:11:40 ----A---- C:\Windows\system32\tapisrv.dll
2013-04-06 12:11:39 ----A---- C:\Windows\system32\termsrv.dll
2013-04-06 12:11:38 ----A---- C:\Windows\system32\themeui.dll
2013-04-06 12:11:38 ----A---- C:\Windows\system32\themecpl.dll
2013-04-06 12:11:38 ----A---- C:\Windows\system32\thawbrkr.dll
2013-04-06 12:11:38 ----A---- C:\Windows\system32\drivers\tdx.sys
2013-04-06 12:11:36 ----A---- C:\Windows\system32\drivers\termdd.sys
2013-03-13 06:19:05 ----A---- C:\Windows\system32\javaws.exe
2013-03-13 06:18:06 ----A---- C:\Windows\system32\WindowsAccessBridge.dll
2013-03-13 06:18:06 ----A---- C:\Windows\system32\javaw.exe
2013-03-13 06:18:06 ----A---- C:\Windows\system32\java.exe

======List of files/folders modified in the last 1 month======

2013-04-07 00:24:34 ----D---- C:\Program Files\trend micro
2013-04-07 00:24:25 ----D---- C:\Windows\temp
2013-04-07 00:24:04 ----D---- C:\Windows\Prefetch
2013-04-06 21:58:59 ----SHD---- C:\System Volume Information
2013-04-06 20:35:27 ----D---- C:\Windows\System32
2013-04-06 20:35:27 ----D---- C:\Windows\inf
2013-04-06 20:35:27 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-04-06 20:28:16 ----D---- C:\Program Files\Defraggler
2013-04-06 20:23:24 ----D---- C:\Windows\Panther
2013-04-06 20:23:24 ----D---- C:\Windows\ModemLogs
2013-04-06 20:23:24 ----D---- C:\Windows\Debug
2013-04-06 20:23:24 ----D---- C:\Windows
2013-04-06 20:20:36 ----D---- C:\Windows\system32\Tasks
2013-04-06 20:20:31 ----D---- C:\Program Files\CCleaner
2013-04-06 20:05:46 ----D---- C:\Windows\Minidump
2013-04-06 18:14:27 ----D---- C:\Windows\Tasks
2013-04-06 18:14:12 ----D---- C:\Windows\system32\drivers\etc
2013-04-06 17:36:47 ----D---- C:\Users\Viera\AppData\Roaming\Skype
2013-04-06 17:20:45 ----D---- C:\Windows\system32\drivers
2013-04-06 17:20:25 ----SHD---- C:\Windows\Installer
2013-04-06 17:20:23 ----D---- C:\Windows\winsxs
2013-04-06 17:18:13 ----RD---- C:\Program Files
2013-04-06 17:18:13 ----D---- C:\ProgramData\Alwil Software
2013-04-06 17:17:20 ----D---- C:\Users\Viera\AppData\Roaming\skypePM
2013-04-06 15:56:23 ----D---- C:\Program Files\SweetIM
2013-04-06 15:56:22 ----D---- C:\ProgramData
2013-04-06 15:56:21 ----D---- C:\ProgramData\ICQ
2013-04-06 15:52:03 ----D---- C:\Windows\Logs
2013-04-06 14:28:11 ----D---- C:\Windows\Microsoft.NET
2013-04-06 14:27:49 ----RSD---- C:\Windows\assembly
2013-04-06 13:10:42 ----D---- C:\Windows\rescache
2013-04-06 12:58:04 ----D---- C:\Windows\system32\catroot
2013-04-06 12:57:59 ----SHD---- C:\Boot
2013-04-06 12:49:50 ----D---- C:\Program Files\Windows Calendar
2013-04-06 12:49:50 ----D---- C:\Program Files\Movie Maker
2013-04-06 12:49:44 ----D---- C:\Program Files\Windows Sidebar
2013-04-06 12:49:44 ----D---- C:\Program Files\Windows Mail
2013-04-06 12:49:44 ----D---- C:\Program Files\Internet Explorer
2013-04-06 12:49:43 ----D---- C:\Program Files\Windows Photo Gallery
2013-04-06 12:49:43 ----D---- C:\Program Files\Windows Media Player
2013-04-06 12:49:43 ----D---- C:\Program Files\Windows Journal
2013-04-06 12:49:43 ----D---- C:\Program Files\Windows Collaboration
2013-04-06 12:49:38 ----D---- C:\Program Files\Common Files\System
2013-04-06 12:49:31 ----D---- C:\Windows\servicing
2013-04-06 12:49:31 ----D---- C:\Program Files\Windows Defender
2013-04-06 12:49:29 ----D---- C:\Windows\ehome
2013-04-06 12:49:11 ----D---- C:\Windows\IME
2013-04-06 12:49:10 ----D---- C:\Windows\system32\XPSViewer
2013-04-06 12:49:10 ----D---- C:\Windows\system32\lv-LV
2013-04-06 12:49:10 ----D---- C:\Windows\system32\hr-HR
2013-04-06 12:49:10 ----D---- C:\Windows\system32\et-EE
2013-04-06 12:49:10 ----D---- C:\Windows\system32\da-DK
2013-04-06 12:49:09 ----D---- C:\Windows\system32\sk-SK
2013-04-06 12:49:08 ----D---- C:\Windows\system32\ko-KR
2013-04-06 12:49:08 ----D---- C:\Windows\system32\en-US
2013-04-06 12:49:07 ----D---- C:\Windows\system32\it-IT
2013-04-06 12:49:07 ----D---- C:\Windows\system32\el-GR
2013-04-06 12:49:07 ----D---- C:\Windows\system32\de-DE
2013-04-06 12:49:06 ----D---- C:\Windows\system32\oobe
2013-04-06 12:49:06 ----D---- C:\Windows\system32\migration
2013-04-06 12:49:02 ----D---- C:\Windows\system32\sv-SE
2013-04-06 12:49:02 ----D---- C:\Windows\system32\ru-RU
2013-04-06 12:49:02 ----D---- C:\Windows\system32\fr-FR
2013-04-06 12:49:02 ----D---- C:\Windows\system32\AdvancedInstallers
2013-04-06 12:49:01 ----D---- C:\Windows\system32\SLUI
2013-04-06 12:49:01 ----D---- C:\Windows\system32\setup
2013-04-06 12:49:01 ----D---- C:\Windows\system32\pt-PT
2013-04-06 12:49:01 ----D---- C:\Windows\system32\hu-HU
2013-04-06 12:49:01 ----D---- C:\Windows\system32\he-IL
2013-04-06 12:49:01 ----D---- C:\Windows\system32\fi-FI
2013-04-06 12:49:01 ----D---- C:\Windows\system32\cs-CZ
2013-04-06 12:49:00 ----D---- C:\Windows\system32\zh-TW
2013-04-06 12:49:00 ----D---- C:\Windows\system32\zh-CN
2013-04-06 12:49:00 ----D---- C:\Windows\system32\uk-UA
2013-04-06 12:49:00 ----D---- C:\Windows\system32\sr-Latn-CS
2013-04-06 12:49:00 ----D---- C:\Windows\system32\sl-SI
2013-04-06 12:49:00 ----D---- C:\Windows\system32\ro-RO
2013-04-06 12:49:00 ----D---- C:\Windows\system32\pl-PL
2013-04-06 12:49:00 ----D---- C:\Windows\system32\manifeststore
2013-04-06 12:49:00 ----D---- C:\Windows\system32\ja-JP
2013-04-06 12:49:00 ----D---- C:\Windows\system32\es-ES
2013-04-06 12:49:00 ----D---- C:\Windows\system32\en
2013-04-06 12:49:00 ----D---- C:\Windows\system32\bg-BG
2013-04-06 12:48:58 ----D---- C:\Windows\system32\th-TH
2013-04-06 12:48:58 ----D---- C:\Windows\system32\drivers\sk-SK
2013-04-06 12:48:58 ----D---- C:\Windows\system32\drivers\en-US
2013-04-06 12:48:57 ----D---- C:\Windows\system32\tr-TR
2013-04-06 12:48:56 ----D---- C:\Windows\system32\wbem
2013-04-06 12:48:55 ----D---- C:\Windows\system32\nl-NL
2013-04-06 12:48:55 ----D---- C:\Windows\system32\nb-NO
2013-04-06 12:48:55 ----D---- C:\Windows\system32\lt-LT
2013-04-06 12:48:55 ----D---- C:\Windows\system32\ar-SA
2013-04-06 12:48:54 ----D---- C:\Windows\system32\migwiz
2013-04-06 12:48:53 ----D---- C:\Windows\system32\pt-BR
2013-04-06 12:47:59 ----RSD---- C:\Windows\Fonts
2013-04-06 12:47:58 ----D---- C:\Windows\AppPatch
2013-04-06 12:47:49 ----D---- C:\Windows\system32\Boot
2013-04-06 12:45:57 ----D---- C:\Windows\system32\drivers\UMDF
2013-04-06 12:45:18 ----D---- C:\Windows\system32\RTCOM
2013-04-06 12:33:13 ----A---- C:\Windows\fonts\GlobalUserInterface.CompositeFont
2013-04-06 11:49:38 ----D---- C:\Program Files\Common Files
2013-04-05 14:06:06 ----D---- C:\Windows\system32\catroot2
2013-03-14 00:20:49 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2013-03-13 06:17:15 ----A---- C:\Windows\system32\npdeployJava1.dll
2013-03-13 06:17:14 ----A---- C:\Windows\system32\deployJava1.dll
2013-03-13 06:17:02 ----D---- C:\Program Files\Java
2013-03-13 06:03:06 ----D---- C:\Program Files\Mozilla Maintenance Service
2013-03-13 00:06:15 ----D---- C:\Program Files\Mozilla Firefox
2013-03-12 01:10:56 ----N---- C:\Windows\system32\MpSigStub.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2013-03-07 49248]
R1 AswRdr;aswRdr; C:\Windows\system32\drivers\AswRdr.sys [2013-03-07 49760]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2013-03-07 765736]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2013-03-07 368176]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2013-03-07 62376]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2013-03-07 29816]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2013-03-07 66336]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2007-11-14 2016920]
R3 RTL8187B;Realtek RTL8187B Wireless 802.11b/g 54Mbps USB 2.0 Network Adapter; C:\Windows\system32\DRIVERS\RTL8187B.sys [2010-03-31 350720]
R3 SiS6350;SiS6350; C:\Windows\system32\DRIVERS\SISGRKMD.sys [2007-08-24 452096]
R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSGB6.sys [2008-05-02 48128]
R3 usbvideo;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
S3 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2013-03-07 164736]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\Windows\system32\DRIVERS\ewusbmdm.sys [2008-03-17 101632]
S3 KMWDFILTER;HIDUASDesc; C:\Windows\system32\DRIVERS\KMWDFILTER.sys [2008-10-09 17408]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\mbamswissarmy.sys [2013-04-06 40776]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-03-07 45248]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-03-13 115608]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]

-----------------EOF-----------------

stelinka
Návštěvník
Návštěvník
Příspěvky: 125
Registrován: 06 dub 2013 10:27

Re: Prosim o preventivnu kontrolu

#20 Příspěvek od stelinka »

Navyse som trocha precistila C aj plochu lebo tam toho bolo neurekom :)

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosim o preventivnu kontrolu

#21 Příspěvek od Márty84 »

Jo jo, defragmentace trva :D

I log se tvari OK. Takze myslim, ze dalsi skeny nejsou potreba a mame hotovo. Nebo si chcete jeste pohrat? :lol:
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

stelinka
Návštěvník
Návštěvník
Příspěvky: 125
Registrován: 06 dub 2013 10:27

Re: Prosim o preventivnu kontrolu

#22 Příspěvek od stelinka »

Tak dufam ze je to v poriadku a dakujem pekne. niezeby sa mi nechcelo este hrat, ale ak je to OK tak :thumbsup: Dakujem velmi pekne za pomoc :)

stelinka
Návštěvník
Návštěvník
Příspěvky: 125
Registrován: 06 dub 2013 10:27

Re: Prosim o preventivnu kontrolu

#23 Příspěvek od stelinka »

este som na jednu vec rano zabudla. Ked som vcera presuvala nejake subory tak awast mi vyhodil toto
Přílohy
virus.jpg
virus.jpg (30.29 KiB) Zobrazeno 677 x

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosim o preventivnu kontrolu

#24 Příspěvek od Márty84 »

stelinka píše:este som na jednu vec rano zabudla. Ked som vcera presuvala nejake subory tak awast mi vyhodil toto
Nelibil se mu nejaky soubor, ale zastavil to, cili by nemel byt zadny problem. Jestli ten soubor znate a potrebujete (bylo to ve slozce doskoly), muzete ho otestovat na virustotal a jotti http://forum.viry.cz/viewtopic.php?f=29&t=5846 Mohlo jit o falesny poplach.


Nemate vubec zac :)

Mejte se a treba zase nekdy :bye:

:closed:
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Zamčeno