Stránka 2 z 2

Re: Preventivku prosím

Napsal: 31 srp 2013 11:12
od kuntakinte
Logfile of random's system information tool 1.09 (written by random/random)
Run by Brat at 2013-08-31 12:11:24
Systém Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 106 GB (81%) free of 131 GB
Total RAM: 2046 MB (52% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:11:36, on 31.8.2013
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Online Armor\OAcat.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Online Armor\oasrv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
C:\Program Files\Google\Update\1.3.21.153\GoogleCrashHandler.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Online Armor\OAui.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Online Armor\OAhlp.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Winamp\winamp.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Documents and Settings\Brat\Application Data\uTorrent\uTorrent.exe
C:\Documents and Settings\Brat\Desktop\RSIT.exe
C:\Program Files\trend micro\Brat.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [@OnlineArmor GUI] "C:\Program Files\Online Armor\OAui.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [MP10_EnsureFileVer] C:\WINDOWS\inf\unregmp2.exe /EnsureFileVersions
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Online Armor Helper Service (OAcat) - Unknown owner - C:\Program Files\Online Armor\OAcat.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: Online Armor (SvcOnlineArmor) - Unknown owner - C:\Program Files\Online Armor\oasrv.exe

--
End of file - 6195 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\Brat\Application Data\Mozilla\Firefox\Profiles\0va9y2x9.default

prefs.js - "browser.startup.homepage" - "www.google.com"
prefs.js - "extensions.enabledItems" - "{972ce4c6-7e08-4474-a285-3208198ce6fd}:3.0.4"

"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.94 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_8_800_94.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@canon.com/EPPEX]
"Description"=Canon Easy-PhotoPrint EX
"Path"=C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nullsoft.com/winampDetector;version=1]
"Description"=Winamp Detector
"Path"=C:\Program Files\Winamp Detect\npwachk.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.0.8]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2008-01-21 61440]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2013-03-12 20143688]
"AlcWzrd"=C:\WINDOWS\ALCWZRD.EXE [2010-11-03 2815592]
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2013-08-20 347192]
"@OnlineArmor GUI"=C:\Program Files\Online Armor\OAui.exe [2012-10-02 2415104]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"MP10_EnsureFileVer"=C:\WINDOWS\inf\unregmp2.exe [2008-04-14 208896]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BDRegion]
C:\Program Files\Cyberlink\Shared Files\brs.exe [2009-02-28 75048]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonMyPrinter]
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2011-04-07 2565520]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenuEx]
C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE [2011-03-28 1611160]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PDVD9LanguageShortcut]
C:\Program Files\CyberLink\PowerDVD9\Language\Language.exe [2008-10-13 50472]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl9]
C:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exe [2009-02-16 87336]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Philips SA52XX Device Manager.lnk]
C:\PROGRA~1\Philips\SA52XX~1\SA52XX~1.EXE [2009-01-16 1384448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2012-11-16 192512]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{4F07DA45-8170-4859-9B5F-037EF2970034}"=C:\PROGRA~1\ONLINE~2\oaevent.dll [2012-10-02 366440]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Winamp\winamp.exe"="C:\Program Files\Winamp\winamp.exe:*:Enabled:Winamp"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Documents and Settings\Brat\Application Data\uTorrent\uTorrent.exe"="C:\Documents and Settings\Brat\Application Data\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Winamp\winamp.exe"="C:\Program Files\Winamp\winamp.exe:*:Enabled:Winamp"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"VIDC.ACDV"=ACDV.dll

======List of files/folders created in the last 1 month======

2013-08-30 20:17:32 ----D---- C:\Documents and Settings\Brat\Application Data\vlc
2013-08-28 22:53:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2834904-v2_WM11$
2013-08-27 15:56:28 ----D---- C:\AdwCleaner
2013-08-26 16:26:09 ----D---- C:\Documents and Settings\Brat\Application Data\Malwarebytes
2013-08-26 16:25:57 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2013-08-26 13:24:59 ----HD---- C:\Documents and Settings\All Users\Application Data\CanonIJEPPEX
2013-08-21 19:31:35 ----D---- C:\Program Files\trend micro
2013-08-21 19:31:34 ----D---- C:\rsit
2013-08-21 00:03:04 ----HDC---- C:\WINDOWS\$NtUninstallKB2834904_WM11$
2013-08-21 00:02:38 ----HDC---- C:\WINDOWS\$NtUninstallKB929399$
2013-08-20 19:34:52 ----D---- C:\Documents and Settings\Brat\Application Data\PlaneShift
2013-08-20 19:34:52 ----D---- C:\Documents and Settings\Brat\Application Data\CrystalSpace
2013-08-20 19:34:52 ----D---- C:\Documents and Settings\Brat\Application Data\CrystalApp
2013-08-20 19:34:11 ----D---- C:\Program Files\OpenAL
2013-08-20 19:34:11 ----A---- C:\WINDOWS\system32\wrap_oal.dll
2013-08-20 19:34:11 ----A---- C:\WINDOWS\system32\OpenAL32.dll
2013-08-20 19:32:19 ----D---- C:\Program Files\PlaneShift
2013-08-20 14:26:35 ----D---- C:\Documents and Settings\All Users\Application Data\CanonIJ
2013-08-20 14:25:30 ----HD---- C:\Documents and Settings\All Users\Application Data\CanonIJScan
2013-08-19 23:54:07 ----N---- C:\WINDOWS\system32\spmsg.dll
2013-08-19 19:28:52 ----D---- C:\Documents and Settings\Brat\Application Data\Sony Corporation
2013-08-19 19:28:30 ----D---- C:\Program Files\Common Files\Sony Shared
2013-08-19 19:26:10 ----D---- C:\WINDOWS\SxsCaPendDel
2013-08-19 19:24:47 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2013-08-19 19:24:22 ----D---- C:\WINDOWS\system32\LogFiles
2013-08-19 19:24:22 ----D---- C:\WINDOWS\system32\drivers\UMDF
2013-08-19 19:24:15 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2013-08-17 11:39:25 ----D---- C:\Program Files\Mozilla Firefox
2013-08-15 18:13:03 ----D---- C:\Program Files\NVIDIA Corporation
2013-08-15 17:53:01 ----A---- C:\WINDOWS\system32\XAudio2_7.dll
2013-08-15 17:53:01 ----A---- C:\WINDOWS\system32\XAPOFX1_5.dll
2013-08-15 17:53:01 ----A---- C:\WINDOWS\system32\xactengine3_7.dll
2013-08-15 17:53:00 ----A---- C:\WINDOWS\system32\d3dcsx_43.dll
2013-08-15 17:53:00 ----A---- C:\WINDOWS\system32\D3DCompiler_43.dll
2013-08-15 17:52:59 ----A---- C:\WINDOWS\system32\D3DX9_43.dll
2013-08-15 17:52:59 ----A---- C:\WINDOWS\system32\d3dx11_43.dll
2013-08-15 17:52:59 ----A---- C:\WINDOWS\system32\d3dx10_43.dll
2013-08-15 17:45:28 ----D---- C:\Program Files\2K Games
2013-08-15 16:32:15 ----D---- C:\Program Files\Common Files\3DO Shared
2013-08-15 16:32:15 ----D---- C:\Program Files\3DO
2013-08-15 16:32:01 ----A---- C:\WINDOWS\IsUninst.exe
2013-08-15 16:23:14 ----A---- C:\WINDOWS\system32\XAudio2_6.dll
2013-08-15 16:23:14 ----A---- C:\WINDOWS\system32\XAPOFX1_4.dll
2013-08-15 16:23:14 ----A---- C:\WINDOWS\system32\xactengine3_6.dll
2013-08-15 16:23:14 ----A---- C:\WINDOWS\system32\X3DAudio1_7.dll
2013-08-15 16:23:13 ----A---- C:\WINDOWS\system32\XAudio2_5.dll
2013-08-15 16:23:13 ----A---- C:\WINDOWS\system32\xactengine3_5.dll
2013-08-15 16:23:12 ----A---- C:\WINDOWS\system32\d3dx11_42.dll
2013-08-15 16:23:12 ----A---- C:\WINDOWS\system32\d3dcsx_42.dll
2013-08-15 16:23:12 ----A---- C:\WINDOWS\system32\D3DCompiler_42.dll
2013-08-15 16:23:11 ----A---- C:\WINDOWS\system32\d3dx10_42.dll
2013-08-15 16:23:10 ----A---- C:\WINDOWS\system32\XAudio2_4.dll
2013-08-15 16:23:10 ----A---- C:\WINDOWS\system32\XAPOFX1_3.dll
2013-08-15 16:23:10 ----A---- C:\WINDOWS\system32\D3DX9_41.dll
2013-08-15 16:23:10 ----A---- C:\WINDOWS\system32\d3dx10_41.dll
2013-08-15 16:23:10 ----A---- C:\WINDOWS\system32\D3DCompiler_41.dll
2013-08-15 16:23:09 ----A---- C:\WINDOWS\system32\xactengine3_4.dll
2013-08-15 16:23:09 ----A---- C:\WINDOWS\system32\X3DAudio1_6.dll
2013-08-15 16:23:08 ----A---- C:\WINDOWS\system32\D3DX9_40.dll
2013-08-15 16:23:08 ----A---- C:\WINDOWS\system32\d3dx10_40.dll
2013-08-15 16:23:08 ----A---- C:\WINDOWS\system32\D3DCompiler_40.dll
2013-08-15 16:23:07 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
2013-08-15 16:23:07 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
2013-08-15 16:23:07 ----A---- C:\WINDOWS\system32\xactengine3_3.dll
2013-08-15 16:23:06 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2013-08-15 16:23:06 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2013-08-15 16:23:06 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
2013-08-15 16:23:05 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
2013-08-15 16:23:05 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2013-08-15 16:23:05 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2013-08-15 16:23:05 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2013-08-15 16:23:04 ----A---- C:\WINDOWS\system32\XAudio2_1.dll
2013-08-15 16:23:04 ----A---- C:\WINDOWS\system32\XAPOFX1_0.dll
2013-08-15 16:23:04 ----A---- C:\WINDOWS\system32\xactengine3_1.dll
2013-08-15 16:23:04 ----A---- C:\WINDOWS\system32\X3DAudio1_4.dll
2013-08-15 16:23:03 ----A---- C:\WINDOWS\system32\D3DX9_38.dll
2013-08-15 16:23:03 ----A---- C:\WINDOWS\system32\d3dx10_38.dll
2013-08-15 16:23:03 ----A---- C:\WINDOWS\system32\D3DCompiler_38.dll
2013-08-15 16:23:02 ----A---- C:\WINDOWS\system32\XAudio2_0.dll
2013-08-15 16:23:02 ----A---- C:\WINDOWS\system32\xactengine3_0.dll
2013-08-15 16:23:02 ----A---- C:\WINDOWS\system32\X3DAudio1_3.dll
2013-08-15 16:23:01 ----A---- C:\WINDOWS\system32\D3DX9_37.dll
2013-08-15 16:23:01 ----A---- C:\WINDOWS\system32\d3dx10_37.dll
2013-08-15 16:23:01 ----A---- C:\WINDOWS\system32\D3DCompiler_37.dll
2013-08-15 16:23:00 ----A---- C:\WINDOWS\system32\xactengine2_10.dll
2013-08-15 16:22:59 ----A---- C:\WINDOWS\system32\xactengine2_9.dll
2013-08-15 16:22:59 ----A---- C:\WINDOWS\system32\d3dx9_36.dll
2013-08-15 16:22:59 ----A---- C:\WINDOWS\system32\d3dx10_36.dll
2013-08-15 16:22:59 ----A---- C:\WINDOWS\system32\D3DCompiler_36.dll
2013-08-15 16:22:58 ----A---- C:\WINDOWS\system32\d3dx9_35.dll
2013-08-15 16:22:58 ----A---- C:\WINDOWS\system32\d3dx10_35.dll
2013-08-15 16:22:58 ----A---- C:\WINDOWS\system32\D3DCompiler_35.dll
2013-08-15 16:22:57 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
2013-08-15 16:22:57 ----A---- C:\WINDOWS\system32\X3DAudio1_2.dll
2013-08-15 16:22:56 ----A---- C:\WINDOWS\system32\xinput1_3.dll
2013-08-15 16:22:56 ----A---- C:\WINDOWS\system32\d3dx9_34.dll
2013-08-15 16:22:56 ----A---- C:\WINDOWS\system32\d3dx10_34.dll
2013-08-15 16:22:56 ----A---- C:\WINDOWS\system32\D3DCompiler_34.dll
2013-08-15 16:22:55 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
2013-08-15 16:22:54 ----A---- C:\WINDOWS\system32\d3dx10_33.dll
2013-08-15 16:22:54 ----A---- C:\WINDOWS\system32\D3DCompiler_33.dll
2013-08-15 16:22:53 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
2013-08-15 16:22:53 ----A---- C:\WINDOWS\system32\d3dx9_33.dll
2013-08-15 16:22:52 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
2013-08-15 16:22:52 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
2013-08-15 16:22:52 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
2013-08-15 16:22:52 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2013-08-15 16:22:51 ----A---- C:\WINDOWS\system32\xinput1_2.dll
2013-08-15 16:22:51 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
2013-08-15 16:22:50 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2013-08-15 16:22:50 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
2013-08-15 16:22:49 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2013-08-15 16:22:41 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2013-08-15 16:22:40 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
2013-08-15 16:22:40 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2013-08-15 16:22:40 ----A---- C:\WINDOWS\system32\d3dx9_29.dll
2013-08-15 16:22:40 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2013-08-15 16:22:39 ----A---- C:\WINDOWS\system32\xinput9_1_0.dll
2013-08-15 16:22:39 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2013-08-15 16:22:38 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
2013-08-15 16:22:38 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
2013-08-15 16:22:37 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
2013-08-15 16:12:25 ----D---- C:\Program Files\The Elder Scrolls V Skyrim
2013-08-15 13:29:42 ----D---- C:\WINDOWS\system32\MRT
2013-08-15 13:29:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2850869$
2013-08-15 13:29:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2859537$
2013-08-15 13:29:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2863058$
2013-08-15 13:29:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2849470$
2013-08-13 21:06:43 ----D---- C:\WINDOWS\system32\NtmsData
2013-08-13 16:48:48 ----D---- C:\Documents and Settings\Brat\Application Data\ACD Systems
2013-08-08 22:01:59 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2013-08-08 01:02:51 ----D---- C:\WINDOWS\system32\XPSViewer
2013-08-08 01:02:44 ----D---- C:\Program Files\Reference Assemblies
2013-08-08 01:02:19 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2013-08-08 01:02:19 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2013-08-08 01:02:19 ----N---- C:\WINDOWS\system32\prntvpt.dll
2013-08-07 02:47:59 ----A---- C:\WINDOWS\system32\RTNUninst32.dll
2013-08-07 02:47:59 ----A---- C:\WINDOWS\system32\RtNicProp32.dll
2013-08-07 02:47:59 ----A---- C:\WINDOWS\system32\drivers\Rtenicxp.sys
2013-08-07 02:47:54 ----D---- C:\Program Files\Realtek
2013-08-07 02:42:47 ----D---- C:\Intel
2013-08-07 02:42:43 ----HD---- C:\Program Files\InstallShield Installation Information
2013-08-07 02:42:43 ----D---- C:\Program Files\Intel
2013-08-07 02:42:42 ----D---- C:\Documents and Settings\Brat\Application Data\InstallShield
2013-08-07 02:40:36 ----A---- C:\WINDOWS\system32\drivers\usbstor.sys
2013-08-07 02:16:12 ----D---- C:\Documents and Settings\Brat\Application Data\Identities
2013-08-07 02:16:11 ----HD---- C:\Program Files\Uninstall Information
2013-08-07 02:16:01 ----SD---- C:\Documents and Settings\Brat\Application Data\Microsoft
2013-08-07 02:16:01 ----ASH---- C:\Documents and Settings\Brat\Application Data\desktop.ini
2013-08-07 02:12:45 ----D---- C:\WINDOWS\SoftwareDistribution
2013-08-07 02:12:43 ----SD---- C:\WINDOWS\system32\Microsoft
2013-08-07 02:12:43 ----A---- C:\WINDOWS\SchedLgU.Txt
2013-08-07 02:11:36 ----AS---- C:\WINDOWS\bootstat.dat
2013-08-07 02:10:34 ----D---- C:\WINDOWS\system32\xircom
2013-08-07 02:10:34 ----D---- C:\Program Files\xerox
2013-08-07 02:10:34 ----D---- C:\Program Files\microsoft frontpage
2013-08-07 02:10:25 ----N---- C:\WINDOWS\system32\xpsp3res.dll
2013-08-07 02:10:25 ----HD---- C:\WINDOWS\$hf_mig$
2013-08-07 02:10:14 ----RASH---- C:\MSDOS.SYS
2013-08-07 02:10:14 ----RASH---- C:\IO.SYS
2013-08-07 02:10:14 ----A---- C:\WINDOWS\control.ini
2013-08-07 02:10:14 ----A---- C:\CONFIG.SYS
2013-08-07 02:10:14 ----A---- C:\AUTOEXEC.BAT
2013-08-07 02:10:03 ----A---- C:\WINDOWS\system32\mapi32.dll
2013-08-07 02:09:30 ----SD---- C:\WINDOWS\Downloaded Program Files
2013-08-07 02:09:30 ----RD---- C:\WINDOWS\Offline Web Pages
2013-08-07 02:09:23 ----HD---- C:\Program Files\WindowsUpdate
2013-08-07 02:09:07 ----D---- C:\WINDOWS\system32\DirectX
2013-08-07 02:08:51 ----A---- C:\WINDOWS\system32\atrace.dll
2013-08-07 02:08:49 ----A---- C:\WINDOWS\system32\desktop.ini
2013-08-07 02:08:49 ----A---- C:\WINDOWS\desktop.ini
2013-08-07 02:08:43 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2013-08-07 02:08:42 ----A---- C:\WINDOWS\system32\acctres.dll
2013-08-07 02:08:41 ----D---- C:\Program Files\Common Files\Services
2013-08-07 02:08:39 ----SD---- C:\WINDOWS\Tasks
2013-08-07 02:08:39 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2013-08-07 02:08:38 ----D---- C:\Program Files\Common Files\MSSoap
2013-08-07 02:08:35 ----D---- C:\WINDOWS\system32\Macromed
2013-08-07 02:08:35 ----D---- C:\WINDOWS\srchasst
2013-08-07 02:08:32 ----A---- C:\WINDOWS\system32\wuweb.dll
2013-08-07 02:08:32 ----A---- C:\WINDOWS\system32\wups.dll
2013-08-07 02:08:32 ----A---- C:\WINDOWS\system32\wucltui.dll
2013-08-07 02:08:32 ----A---- C:\WINDOWS\system32\wuauserv.dll
2013-08-07 02:08:32 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2013-08-07 02:08:32 ----A---- C:\WINDOWS\system32\wuaueng.dll
2013-08-07 02:08:32 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2013-08-07 02:08:32 ----A---- C:\WINDOWS\system32\wuauclt.exe
2013-08-07 02:08:32 ----A---- C:\WINDOWS\system32\wuapi.dll
2013-08-07 02:08:32 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2013-08-07 02:08:32 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2013-08-07 02:08:31 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2013-08-07 02:08:31 ----A---- C:\WINDOWS\system32\qmgr.dll
2013-08-07 02:08:29 ----D---- C:\Program Files\Movie Maker
2013-08-07 02:08:25 ----A---- C:\WINDOWS\system32\safrslv.dll
2013-08-07 02:08:25 ----A---- C:\WINDOWS\system32\safrdm.dll
2013-08-07 02:08:25 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2013-08-07 02:08:25 ----A---- C:\WINDOWS\system32\racpldlg.dll
2013-08-07 02:08:23 ----D---- C:\WINDOWS\system32\Restore
2013-08-07 02:08:23 ----A---- C:\WINDOWS\system32\srsvc.dll
2013-08-07 02:08:23 ----A---- C:\WINDOWS\system32\srrstr.dll
2013-08-07 02:08:23 ----A---- C:\WINDOWS\system32\srclient.dll
2013-08-07 02:08:23 ----A---- C:\WINDOWS\system32\fltmc.exe
2013-08-07 02:08:23 ----A---- C:\WINDOWS\system32\fltlib.dll
2013-08-07 02:08:23 ----A---- C:\WINDOWS\system32\drivers\sr.sys
2013-08-07 02:08:23 ----A---- C:\WINDOWS\system32\drivers\fltmgr.sys
2013-08-07 02:08:22 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2013-08-07 02:08:22 ----A---- C:\WINDOWS\system32\msconf.dll
2013-08-07 02:08:22 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2013-08-07 02:08:22 ----A---- C:\WINDOWS\system32\mnmdd.dll
2013-08-07 02:08:22 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2013-08-07 02:08:22 ----A---- C:\WINDOWS\system32\ils.dll
2013-08-07 02:08:19 ----D---- C:\Program Files\NetMeeting
2013-08-07 02:08:19 ----A---- C:\WINDOWS\system32\msoert2.dll
2013-08-07 02:08:19 ----A---- C:\WINDOWS\system32\msoeacct.dll
2013-08-07 02:08:19 ----A---- C:\WINDOWS\system32\inetres.dll
2013-08-07 02:08:18 ----A---- C:\WINDOWS\system32\inetcomm.dll
2013-08-07 02:08:17 ----D---- C:\Program Files\Outlook Express
2013-08-07 02:08:17 ----A---- C:\WINDOWS\system32\schedsvc.dll
2013-08-07 02:08:17 ----A---- C:\WINDOWS\system32\mstinit.exe
2013-08-07 02:08:17 ----A---- C:\WINDOWS\system32\mstask.dll
2013-08-07 02:08:17 ----A---- C:\WINDOWS\system32\isign32.dll
2013-08-07 02:08:17 ----A---- C:\WINDOWS\system32\icwphbk.dll
2013-08-07 02:08:17 ----A---- C:\WINDOWS\system32\icwdial.dll
2013-08-07 02:08:16 ----A---- C:\WINDOWS\system32\inetcfg.dll
2013-08-07 02:08:12 ----D---- C:\Program Files\Common Files\System
2013-08-07 02:08:09 ----D---- C:\Program Files\Internet Explorer
2013-08-07 02:08:07 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2013-08-07 02:07:59 ----D---- C:\Program Files\ComPlus Applications
2013-08-07 02:07:57 ----A---- C:\WINDOWS\vbaddin.ini
2013-08-07 02:07:57 ----A---- C:\WINDOWS\vb.ini
2013-08-07 02:07:54 ----D---- C:\WINDOWS\Registration
2013-08-07 02:07:35 ----D---- C:\Program Files\Windows Media Player
2013-08-07 02:07:35 ----D---- C:\Program Files\Online Services
2013-08-07 02:07:30 ----D---- C:\Program Files\Messenger
2013-08-07 02:07:27 ----D---- C:\Program Files\MSN Gaming Zone
2013-08-07 02:07:27 ----A---- C:\WINDOWS\system32\write.exe
2013-08-07 02:07:19 ----A---- C:\WINDOWS\system32\winchat.exe
2013-08-07 02:07:19 ----A---- C:\WINDOWS\system32\sndvol32.exe
2013-08-07 02:07:19 ----A---- C:\WINDOWS\system32\hticons.dll
2013-08-07 02:07:19 ----A---- C:\WINDOWS\system32\avwav.dll
2013-08-07 02:07:19 ----A---- C:\WINDOWS\system32\avtapi.dll
2013-08-07 02:07:19 ----A---- C:\WINDOWS\system32\avmeter.dll
2013-08-07 02:07:13 ----A---- C:\WINDOWS\system32\getuname.dll
2013-08-07 02:07:12 ----A---- C:\WINDOWS\system32\winmine.exe
2013-08-07 02:07:12 ----A---- C:\WINDOWS\system32\sol.exe
2013-08-07 02:07:12 ----A---- C:\WINDOWS\system32\charmap.exe
2013-08-07 02:07:12 ----A---- C:\WINDOWS\system32\calc.exe
2013-08-07 02:07:11 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2013-08-07 02:07:11 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2013-08-07 02:07:11 ----A---- C:\WINDOWS\system32\tslabels.ini
2013-08-07 02:07:11 ----A---- C:\WINDOWS\system32\tskill.exe
2013-08-07 02:07:11 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2013-08-07 02:07:11 ----A---- C:\WINDOWS\system32\tscon.exe
2013-08-07 02:07:11 ----A---- C:\WINDOWS\system32\shadow.exe
2013-08-07 02:07:11 ----A---- C:\WINDOWS\system32\rwinsta.exe
2013-08-07 02:07:11 ----A---- C:\WINDOWS\system32\reset.exe
2013-08-07 02:07:11 ----A---- C:\WINDOWS\system32\regini.exe
2013-08-07 02:07:11 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2013-08-07 02:07:11 ----A---- C:\WINDOWS\system32\mshearts.exe
2013-08-07 02:07:11 ----A---- C:\WINDOWS\system32\freecell.exe
2013-08-07 02:07:10 ----A---- C:\WINDOWS\system32\qwinsta.exe
2013-08-07 02:07:10 ----A---- C:\WINDOWS\system32\qappsrv.exe
2013-08-07 02:07:10 ----A---- C:\WINDOWS\system32\msg.exe
2013-08-07 02:07:10 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2013-08-07 02:07:10 ----A---- C:\WINDOWS\system32\logoff.exe
2013-08-07 02:07:10 ----A---- C:\WINDOWS\system32\cdmodem.dll
2013-08-07 02:07:09 ----A---- C:\WINDOWS\system32\stclient.dll
2013-08-07 02:07:09 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2013-08-07 02:07:09 ----A---- C:\WINDOWS\system32\mtxex.dll
2013-08-07 02:07:09 ----A---- C:\WINDOWS\system32\mtxdm.dll
2013-08-07 02:07:09 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2013-08-07 02:07:09 ----A---- C:\WINDOWS\system32\comsnap.dll
2013-08-07 02:07:09 ----A---- C:\WINDOWS\system32\comrepl.dll
2013-08-07 02:07:09 ----A---- C:\WINDOWS\system32\comaddin.dll
2013-08-07 02:07:04 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2013-08-07 02:06:58 ----D---- C:\Program Files\MSN
2013-08-07 02:06:57 ----A---- C:\WINDOWS\system32\sndrec32.exe
2013-08-07 02:06:57 ----A---- C:\WINDOWS\system32\accwiz.exe
2013-08-07 02:06:56 ----D---- C:\Program Files\Windows NT
2013-08-07 02:06:56 ----A---- C:\WINDOWS\system32\mspaint.exe
2013-08-07 02:06:56 ----A---- C:\WINDOWS\system32\mplay32.exe
2013-08-07 02:06:56 ----A---- C:\WINDOWS\system32\hypertrm.dll
2013-08-07 02:06:56 ----A---- C:\WINDOWS\system32\clipbrd.exe
2013-08-07 02:06:55 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2013-08-07 02:06:55 ----A---- C:\WINDOWS\system32\spider.exe
2013-08-07 02:06:55 ----A---- C:\WINDOWS\system32\remotepg.dll
2013-08-07 02:06:55 ----A---- C:\WINDOWS\system32\rdshost.exe
2013-08-07 02:06:55 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2013-08-07 02:06:55 ----A---- C:\WINDOWS\system32\mstscax.dll
2013-08-07 02:06:55 ----A---- C:\WINDOWS\system32\mstsc.exe
2013-08-07 02:06:55 ----A---- C:\WINDOWS\system32\drivers\tdtcp.sys
2013-08-07 02:06:55 ----A---- C:\WINDOWS\system32\drivers\tdpipe.sys
2013-08-07 02:06:55 ----A---- C:\WINDOWS\system32\drivers\rdpwd.sys
2013-08-07 02:06:54 ----D---- C:\WINDOWS\system32\MsDtc
2013-08-07 02:06:54 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2013-08-07 02:06:54 ----A---- C:\WINDOWS\system32\termsrv.dll
2013-08-07 02:06:54 ----A---- C:\WINDOWS\system32\sessmgr.exe
2013-08-07 02:06:54 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2013-08-07 02:06:54 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2013-08-07 02:06:54 ----A---- C:\WINDOWS\system32\rdpclip.exe
2013-08-07 02:06:54 ----A---- C:\WINDOWS\system32\rdchost.dll
2013-08-07 02:06:54 ----A---- C:\WINDOWS\system32\qprocess.exe
2013-08-07 02:06:54 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2013-08-07 02:06:54 ----A---- C:\WINDOWS\system32\icaapi.dll
2013-08-07 02:06:54 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2013-08-07 02:06:53 ----A---- C:\WINDOWS\system32\mtxoci.dll
2013-08-07 02:06:53 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2013-08-07 02:06:52 ----A---- C:\WINDOWS\system32\xolehlp.dll
2013-08-07 02:06:52 ----A---- C:\WINDOWS\system32\msdtctm.dll
2013-08-07 02:06:52 ----A---- C:\WINDOWS\system32\msdtclog.dll
2013-08-07 02:06:52 ----A---- C:\WINDOWS\system32\msdtc.exe
2013-08-07 02:06:51 ----D---- C:\WINDOWS\system32\Com
2013-08-07 02:06:51 ----A---- C:\WINDOWS\system32\comuid.dll
2013-08-07 02:06:51 ----A---- C:\WINDOWS\system32\comsvcs.dll
2013-08-07 02:06:51 ----A---- C:\WINDOWS\system32\colbact.dll
2013-08-07 02:06:51 ----A---- C:\WINDOWS\system32\clbcatex.dll
2013-08-07 02:06:51 ----A---- C:\WINDOWS\system32\catsrvut.dll
2013-08-07 02:06:51 ----A---- C:\WINDOWS\system32\catsrvps.dll
2013-08-07 02:06:51 ----A---- C:\WINDOWS\system32\catsrv.dll
2013-08-07 02:06:50 ----A---- C:\WINDOWS\system32\clbcatq.dll
2013-08-07 02:06:47 ----A---- C:\WINDOWS\system32\servdeps.dll
2013-08-07 02:06:47 ----A---- C:\WINDOWS\system32\mmfutil.dll
2013-08-07 02:06:46 ----A---- C:\WINDOWS\system32\licwmi.dll
2013-08-07 02:06:46 ----A---- C:\WINDOWS\system32\cmprops.dll
2013-08-07 02:06:43 ----A---- C:\WINDOWS\system32\drivers\termdd.sys
2013-08-07 02:06:43 ----A---- C:\WINDOWS\system32\drivers\rdpdr.sys
2013-08-07 00:13:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2345886$
2013-08-07 00:13:43 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2013-08-07 00:13:29 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2013-08-07 00:13:04 ----HDC---- C:\WINDOWS\$NtUninstallKB2834903_WM10L$
2013-08-06 22:17:00 ----D---- C:\Documents and Settings\Brat\Application Data\Skype
2013-08-06 22:16:52 ----RD---- C:\Program Files\Skype
2013-08-06 22:16:52 ----D---- C:\Program Files\Common Files\Skype
2013-08-06 22:16:30 ----D---- C:\Documents and Settings\All Users\Application Data\Skype
2013-08-06 22:11:38 ----D---- C:\Documents and Settings\Brat\Application Data\uTorrent
2013-08-06 22:10:10 ----D---- C:\Documents and Settings\Brat\Application Data\Google
2013-08-06 22:07:34 ----D---- C:\Program Files\Google
2013-08-06 22:06:05 ----D---- C:\Program Files\Webteh
2013-08-06 22:06:05 ----D---- C:\Documents and Settings\Brat\Application Data\BSplayer Pro
2013-08-06 22:06:05 ----D---- C:\Documents and Settings\Brat\Application Data\BSplayer
2013-08-06 22:04:14 ----D---- C:\Program Files\VideoLAN
2013-08-06 22:00:54 ----D---- C:\Program Files\Boxoft Free PDF To JPG Converter (freeware)
2013-08-06 22:00:05 ----D---- C:\Program Files\mp3DirectCut
2013-08-06 21:59:11 ----D---- C:\Program Files\Philips
2013-08-06 21:56:28 ----D---- C:\Program Files\Adobe
2013-08-06 21:56:18 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2013-08-06 21:54:40 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2013-08-06 21:54:14 ----D---- C:\Documents and Settings\Brat\Application Data\xrecode2
2013-08-06 21:54:12 ----D---- C:\Program Files\xrecode II
2013-08-06 21:53:58 ----D---- C:\Documents and Settings\Brat\Application Data\ZipGenius
2013-08-06 21:53:40 ----D---- C:\Program Files\SpeedFan
2013-08-06 21:52:59 ----D---- C:\Program Files\CCleaner
2013-08-06 21:50:31 ----A---- C:\WINDOWS\system32\msonpmon.dll
2013-08-06 21:49:37 ----D---- C:\Program Files\Microsoft Works
2013-08-06 21:49:29 ----D---- C:\Program Files\MSBuild
2013-08-06 21:49:15 ----D---- C:\Program Files\Microsoft Visual Studio
2013-08-06 21:49:15 ----D---- C:\Program Files\Common Files\DESIGNER
2013-08-06 21:48:47 ----D---- C:\Program Files\Microsoft.NET
2013-08-06 21:47:28 ----D---- C:\Program Files\Microsoft Visual Studio 8
2013-08-06 21:46:55 ----D---- C:\WINDOWS\SHELLNEW
2013-08-06 21:46:34 ----D---- C:\Program Files\Microsoft Office
2013-08-06 21:46:33 ----D---- C:\Documents and Settings\All Users\Application Data\Microsoft Help
2013-08-06 21:46:08 ----RHD---- C:\MSOCache
2013-08-06 21:43:34 ----D---- C:\Documents and Settings\Brat\Application Data\CyberLink
2013-08-06 21:43:16 ----D---- C:\Documents and Settings\All Users\Application Data\CyberLink
2013-08-06 21:43:09 ----D---- C:\Program Files\Common Files\CyberLink
2013-08-06 21:42:44 ----D---- C:\Program Files\CyberLink
2013-08-06 21:42:31 ----A---- C:\WINDOWS\system32\msxml3a.dll
2013-08-06 21:42:31 ----A---- C:\WINDOWS\system32\msvcr71.dll
2013-08-06 21:42:31 ----A---- C:\WINDOWS\system32\msvcp71.dll
2013-08-06 21:42:22 ----D---- C:\Documents and Settings\All Users\Application Data\Temp
2013-08-06 21:41:33 ----D---- C:\Documents and Settings\All Users\Application Data\ACD Systems
2013-08-06 21:41:28 ----D---- C:\Program Files\Common Files\ACD Systems
2013-08-06 21:41:28 ----D---- C:\Program Files\ACD Systems
2013-08-06 21:38:23 ----D---- C:\Documents and Settings\Brat\Application Data\OnlineArmor
2013-08-06 21:38:23 ----D---- C:\Documents and Settings\All Users\Application Data\OnlineArmor
2013-08-06 21:38:05 ----A---- C:\WINDOWS\system32\drivers\OAnet.sys
2013-08-06 21:38:05 ----A---- C:\WINDOWS\system32\drivers\OAmon.sys
2013-08-06 21:38:05 ----A---- C:\WINDOWS\system32\drivers\oahlp32.sys
2013-08-06 21:38:05 ----A---- C:\WINDOWS\system32\drivers\OADriver.sys
2013-08-06 21:38:01 ----D---- C:\Program Files\Online Armor
2013-08-06 21:37:11 ----D---- C:\Program Files\ZipGenius 6
2013-08-06 21:33:05 ----D---- C:\Program Files\Alcohol Soft
2013-08-06 21:29:54 ----A---- C:\WINDOWS\system32\drivers\sptd.sys
2013-08-06 21:27:51 ----D---- C:\Documents and Settings\Brat\Application Data\Ashampoo
2013-08-06 21:27:41 ----D---- C:\Documents and Settings\All Users\Application Data\Ashampoo
2013-08-06 21:27:38 ----D---- C:\Program Files\Ashampoo
2013-08-06 21:25:48 ----D---- C:\totalcmd
2013-08-06 21:25:48 ----A---- C:\WINDOWS\wincmd.ini
2013-08-06 21:25:48 ----A---- C:\WINDOWS\UC.PIF
2013-08-06 21:25:48 ----A---- C:\WINDOWS\RAR.PIF
2013-08-06 21:25:48 ----A---- C:\WINDOWS\PKZIP.PIF
2013-08-06 21:25:48 ----A---- C:\WINDOWS\PKUNZIP.PIF
2013-08-06 21:25:48 ----A---- C:\WINDOWS\NOCLOSE.PIF
2013-08-06 21:25:48 ----A---- C:\WINDOWS\LHA.PIF
2013-08-06 21:25:48 ----A---- C:\WINDOWS\ARJ.PIF
2013-08-06 21:14:41 ----A---- C:\WINDOWS\system32\D3DX9_42.dll
2013-08-06 21:14:41 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2013-08-06 21:14:38 ----D---- C:\WINDOWS\Logs
2013-08-06 21:14:36 ----D---- C:\Program Files\Winamp Detect
2013-08-06 21:14:21 ----D---- C:\WINDOWS\RegisteredPackages
2013-08-06 21:14:03 ----D---- C:\Documents and Settings\Brat\Application Data\Avira
2013-08-06 21:14:02 ----N---- C:\WINDOWS\system32\pxinsi64.exe
2013-08-06 21:14:02 ----N---- C:\WINDOWS\system32\pxinsa64.exe
2013-08-06 21:14:02 ----N---- C:\WINDOWS\system32\pxhpinst.exe
2013-08-06 21:14:02 ----N---- C:\WINDOWS\system32\pxcpyi64.exe
2013-08-06 21:14:02 ----N---- C:\WINDOWS\system32\pxcpya64.exe
2013-08-06 21:14:02 ----N---- C:\WINDOWS\system32\pxafs.dll
2013-08-06 21:14:02 ----N---- C:\WINDOWS\system32\drivers\PxHelp20.sys
2013-08-06 21:14:02 ----N---- C:\WINDOWS\system32\drivers\cdralw2k.sys
2013-08-06 21:14:02 ----N---- C:\WINDOWS\system32\drivers\cdr4_xp.sys
2013-08-06 21:14:01 ----N---- C:\WINDOWS\system32\vxblock.dll
2013-08-06 21:14:01 ----N---- C:\WINDOWS\system32\pxwma.dll
2013-08-06 21:14:01 ----N---- C:\WINDOWS\system32\pxwave.dll
2013-08-06 21:14:01 ----N---- C:\WINDOWS\system32\pxsfs.dll
2013-08-06 21:14:01 ----N---- C:\WINDOWS\system32\pxmas.dll
2013-08-06 21:14:01 ----N---- C:\WINDOWS\system32\pxdrv.dll
2013-08-06 21:14:01 ----N---- C:\WINDOWS\system32\px.dll
2013-08-06 21:13:53 ----D---- C:\Program Files\Winamp
2013-08-06 21:13:53 ----D---- C:\Documents and Settings\Brat\Application Data\Winamp
2013-08-06 21:09:45 ----D---- C:\WINDOWS\pss
2013-08-06 21:08:53 ----D---- C:\WINDOWS\system32\Lang
2013-08-06 21:07:19 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2013-08-06 21:07:11 ----HDC---- C:\WINDOWS\$NtUninstallKB2661254-v2$
2013-08-06 21:04:33 ----A---- C:\WINDOWS\system32\drivers\ssmdrv.sys
2013-08-06 21:04:32 ----A---- C:\WINDOWS\system32\drivers\avkmgr.sys
2013-08-06 21:04:32 ----A---- C:\WINDOWS\system32\drivers\avipbb.sys
2013-08-06 21:04:31 ----D---- C:\Program Files\Avira
2013-08-06 21:04:31 ----D---- C:\Documents and Settings\All Users\Application Data\Avira
2013-08-06 21:04:31 ----A---- C:\WINDOWS\system32\drivers\avgntflt.sys
2013-08-06 20:55:21 ----HD---- C:\Documents and Settings\All Users\Application Data\CanonIJSolutionMenuEX
2013-08-06 20:55:21 ----HD---- C:\Documents and Settings\All Users\Application Data\CanonIJEPPEX2
2013-08-06 20:55:21 ----HD---- C:\Documents and Settings\All Users\Application Data\CanonEPP
2013-08-06 20:55:20 ----HD---- C:\Documents and Settings\All Users\Application Data\CanonIJMyPrinter
2013-08-06 20:55:20 ----D---- C:\Documents and Settings\Brat\Application Data\Canon
2013-08-06 20:55:05 ----D---- C:\Documents and Settings\All Users\Application Data\CanonIJPLM
2013-08-06 20:54:24 ----A---- C:\WINDOWS\system32\drivers\usbscan.sys
2013-08-06 20:54:24 ----A---- C:\WINDOWS\system32\CNHMCA.dll
2013-08-06 20:54:24 ----A---- C:\WINDOWS\system32\CNC_ATU.dll
2013-08-06 20:54:24 ----A---- C:\WINDOWS\system32\CNC_ATL.dll
2013-08-06 20:54:24 ----A---- C:\WINDOWS\system32\CNC_ATI.dll
2013-08-06 20:54:24 ----A---- C:\WINDOWS\system32\CNC_ATC.dll
2013-08-06 20:53:53 ----D---- C:\Program Files\Common Files\CANON
2013-08-06 20:53:44 ----D---- C:\Documents and Settings\All Users\Application Data\CanonIJWSpt
2013-08-06 20:50:58 ----HD---- C:\Documents and Settings\All Users\Application Data\CanonBJ
2013-08-06 20:50:52 ----A---- C:\WINDOWS\system32\CNMLMAT.DLL
2013-08-06 20:50:50 ----HD---- C:\WINDOWS\system32\CanonIJ Uninstaller Information
2013-08-06 20:50:47 ----A---- C:\WINDOWS\system32\CNC_ATO.dll
2013-08-06 20:50:45 ----A---- C:\WINDOWS\system32\CNMIUAT.DLL
2013-08-06 20:50:38 ----HD---- C:\Program Files\CanonBJ
2013-08-06 20:50:28 ----D---- C:\WINDOWS\system32\STRING
2013-08-06 20:50:28 ----A---- C:\WINDOWS\system32\CNMNPUI.DLL
2013-08-06 20:50:28 ----A---- C:\WINDOWS\system32\CNMNPPM.DLL
2013-08-06 20:49:52 ----A---- C:\WINDOWS\system32\drivers\usbprint.sys
2013-08-06 20:49:44 ----A---- C:\WINDOWS\system32\drivers\usbccgp.sys
2013-08-06 20:49:15 ----D---- C:\Program Files\Canon
2013-08-06 20:48:08 ----A---- C:\WINDOWS\system32\unrar.dll
2013-08-06 20:48:05 ----D---- C:\Program Files\K-Lite Codec Pack
2013-08-06 20:41:01 ----D---- C:\WINDOWS\system32\RTCOM
2013-08-06 20:40:55 ----A---- C:\WINDOWS\vncutil.exe
2013-08-06 20:40:55 ----A---- C:\WINDOWS\system32\drivers\RtkHDAud.sys
2013-08-06 20:40:55 ----A---- C:\WINDOWS\SOUNDMAN.EXE
2013-08-06 20:40:55 ----A---- C:\WINDOWS\SkyTel.exe
2013-08-06 20:40:55 ----A---- C:\WINDOWS\RtlUpd.exe
2013-08-06 20:40:55 ----A---- C:\WINDOWS\RTLCPL.EXE
2013-08-06 20:40:54 ----A---- C:\WINDOWS\system32\RtkCoLDRXP.dll
2013-08-06 20:40:54 ----A---- C:\WINDOWS\system32\RtkCoInstIIXP.dll
2013-08-06 20:40:54 ----A---- C:\WINDOWS\system32\drivers\RTAIODAT.DAT
2013-08-06 20:40:54 ----A---- C:\WINDOWS\system32\drivers\Monfilt.sys
2013-08-06 20:40:54 ----A---- C:\WINDOWS\RtkAudioService.exe
2013-08-06 20:40:54 ----A---- C:\WINDOWS\RTHDCPL.EXE
2013-08-06 20:40:54 ----A---- C:\WINDOWS\MicCal.exe
2013-08-06 20:40:53 ----A---- C:\WINDOWS\system32\drivers\Ambfilt.sys
2013-08-06 20:40:53 ----A---- C:\WINDOWS\ALCWZRD.EXE
2013-08-06 20:40:53 ----A---- C:\WINDOWS\ALCMTR.EXE
2013-08-06 20:40:44 ----A---- C:\WINDOWS\RtlExUpd.dll
2013-08-06 20:34:37 ----D---- C:\Documents and Settings\Brat\Application Data\Adobe
2013-08-06 20:34:13 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2013-08-06 19:36:37 ----A---- C:\WINDOWS\system32\drivers\AtihdXP3.sys
2013-08-06 19:36:14 ----A---- C:\WINDOWS\system32\ativvamv.dll
2013-08-06 19:36:14 ----A---- C:\WINDOWS\system32\atioglxx.dll
2013-08-06 19:36:14 ----A---- C:\WINDOWS\system32\atimpc32.dll
2013-08-06 19:36:14 ----A---- C:\WINDOWS\system32\atibtmon.exe
2013-08-06 19:36:14 ----A---- C:\WINDOWS\system32\atiapfxx.exe
2013-08-06 19:36:13 ----DC---- C:\WINDOWS\system32\DRVSTORE
2013-08-06 19:35:44 ----D---- C:\Program Files\ATI
2013-08-06 19:35:02 ----D---- C:\AMD
2013-08-06 19:31:48 ----D---- C:\Documents and Settings\Brat\Application Data\Macromedia
2013-08-06 19:30:35 ----D---- C:\Documents and Settings\Brat\Application Data\ATI
2013-08-06 19:30:35 ----D---- C:\Documents and Settings\All Users\Application Data\ATI
2013-08-06 19:26:25 ----D---- C:\Program Files\Common Files\ATI Technologies
2013-08-06 19:25:10 ----RSD---- C:\WINDOWS\assembly
2013-08-06 19:24:56 ----D---- C:\WINDOWS\Microsoft.NET
2013-08-06 19:24:22 ----A---- C:\WINDOWS\system32\drivers\splitter.sys
2013-08-06 19:24:20 ----A---- C:\WINDOWS\system32\drivers\wdmaud.sys
2013-08-06 19:24:19 ----A---- C:\WINDOWS\system32\drivers\DMusic.sys
2013-08-06 19:24:18 ----A---- C:\WINDOWS\system32\drivers\swmidi.sys
2013-08-06 19:24:16 ----A---- C:\WINDOWS\system32\drivers\aec.sys
2013-08-06 19:24:15 ----A---- C:\WINDOWS\system32\drivers\kmixer.sys
2013-08-06 19:24:14 ----A---- C:\WINDOWS\system32\drivers\drmkaud.sys
2013-08-06 19:24:13 ----A---- C:\WINDOWS\system32\drivers\sysaudio.sys
2013-08-06 19:24:12 ----A---- C:\WINDOWS\system32\drivers\MSKSSRV.sys
2013-08-06 19:24:11 ----A---- C:\WINDOWS\system32\drivers\MSPQM.sys
2013-08-06 19:24:09 ----A---- C:\WINDOWS\system32\drivers\MSPCLOCK.sys
2013-08-06 19:24:08 ----RA---- C:\WINDOWS\system32\drivers\AtiHdmi.sys
2013-08-06 19:24:07 ----A---- C:\WINDOWS\system32\ksuser.dll
2013-08-06 19:24:07 ----A---- C:\WINDOWS\system32\drivers\portcls.sys
2013-08-06 19:24:07 ----A---- C:\WINDOWS\system32\drivers\drmk.sys
2013-08-06 19:23:50 ----N---- C:\WINDOWS\system32\ati2sgag.exe
2013-08-06 19:23:48 ----A---- C:\WINDOWS\system32\atiiiexx.dll
2013-08-06 19:23:47 ----A---- C:\WINDOWS\system32\ATIDEMGX.dll
2013-08-06 19:23:46 ----A---- C:\WINDOWS\system32\ativva6x.dat
2013-08-06 19:23:45 ----A---- C:\WINDOWS\system32\ativva5x.dat
2013-08-06 19:23:44 ----RA---- C:\WINDOWS\system32\ativvaxx.dat
2013-08-06 19:23:44 ----A---- C:\WINDOWS\system32\atiicdxx.dat
2013-08-06 19:23:31 ----D---- C:\Program Files\ATI Technologies
2013-08-06 19:23:02 ----D---- C:\Program Files\Common Files\InstallShield
2013-08-06 19:18:39 ----A---- C:\WINDOWS\system32\MRT.exe
2013-08-06 19:18:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2850851$
2013-08-06 19:18:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2845187$
2013-08-06 19:18:15 ----HDC---- C:\WINDOWS\$NtUninstallKB2803821_WM9$
2013-08-06 19:18:14 ----HDC---- C:\WINDOWS\$NtUninstallKB2834886$
2013-08-06 19:18:10 ----HDC---- C:\WINDOWS\$NtUninstallKB2839229$
2013-08-06 19:18:07 ----HDC---- C:\WINDOWS\$NtUninstallKB2820197$
2013-08-06 19:18:03 ----HDC---- C:\WINDOWS\$NtUninstallKB2813345$
2013-08-06 19:18:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2820917$
2013-08-06 19:17:57 ----HDC---- C:\WINDOWS\$NtUninstallKB2807986$
2013-08-06 19:17:54 ----HDC---- C:\WINDOWS\$NtUninstallKB2780091$
2013-08-06 19:17:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2802968$
2013-08-06 19:17:48 ----HDC---- C:\WINDOWS\$NtUninstallKB2757638$
2013-08-06 19:17:45 ----HDC---- C:\WINDOWS\$NtUninstallKB2753842-v2$
2013-08-06 19:17:42 ----HDC---- C:\WINDOWS\$NtUninstallKB2779562$
2013-08-06 19:17:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2770660$
2013-08-06 19:17:37 ----HDC---- C:\WINDOWS\$NtUninstallKB2758857$
2013-08-06 19:17:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2727528$
2013-08-06 19:17:31 ----HDC---- C:\WINDOWS\$NtUninstallKB2705219-v2$
2013-08-06 19:17:28 ----HDC---- C:\WINDOWS\$NtUninstallKB2723135-v2$
2013-08-06 19:17:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2749655$
2013-08-06 19:17:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2712808$
2013-08-06 19:17:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2698365$
2013-08-06 19:17:15 ----HDC---- C:\WINDOWS\$NtUninstallKB2719985$
2013-08-06 19:17:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2655992$
2013-08-06 19:17:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2691442$
2013-08-06 19:17:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2686509$
2013-08-06 19:17:04 ----HDC---- C:\WINDOWS\$NtUninstallKB2659262$
2013-08-06 19:16:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2676562$
2013-08-06 19:16:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2653956$
2013-08-06 19:16:53 ----HDC---- C:\WINDOWS\$NtUninstallKB2661637$
2013-08-06 19:16:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2598479$
2013-08-06 19:16:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2603381$
2013-08-06 19:16:45 ----HDC---- C:\WINDOWS\$NtUninstallKB2585542$
2013-08-06 19:16:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2631813$
2013-08-06 19:16:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2584146$
2013-08-06 19:16:35 ----HDC---- C:\WINDOWS\$NtUninstallKB2620712$
2013-08-06 19:16:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2619339$
2013-08-06 19:16:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2618451$
2013-08-06 19:16:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2624667$
2013-08-06 19:16:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893-v2$
2013-08-06 19:16:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2564958$
2013-08-06 19:16:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2592799$
2013-08-06 19:16:15 ----HDC---- C:\WINDOWS\$NtUninstallKB2570947$
2013-08-06 19:16:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2536276-v2$
2013-08-06 19:16:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2566454$
2013-08-06 19:16:07 ----HDC---- C:\WINDOWS\$NtUninstallKB2507938$
2013-08-06 19:16:04 ----HDC---- C:\WINDOWS\$NtUninstallKB2535512$
2013-08-06 19:16:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2509553$
2013-08-06 19:15:57 ----D---- C:\WINDOWS\ie8updates
2013-08-06 19:15:54 ----HDC---- C:\WINDOWS\$NtUninstallKB2506212$
2013-08-06 19:15:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2508429$
2013-08-06 19:15:48 ----HDC---- C:\WINDOWS\$NtUninstallKB2485663$
2013-08-06 19:15:45 ----HDC---- C:\WINDOWS\$NtUninstallKB2481109$
2013-08-06 19:15:42 ----HDC---- C:\WINDOWS\$NtUninstallKB2479943$
2013-08-06 19:15:38 ----HDC---- C:\WINDOWS\$NtUninstallKB971029$
2013-08-06 19:15:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2393802$
2013-08-06 19:15:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2478960$
2013-08-06 19:15:26 ----HDC---- C:\WINDOWS\$NtUninstallKB2483185$
2013-08-06 19:15:23 ----HDC---- C:\WINDOWS\$NtUninstallKB2478971$
2013-08-06 19:15:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2419632$
2013-08-06 19:15:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2013-08-06 19:15:14 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2013-08-06 19:15:11 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2013-08-06 19:15:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2360937$
2013-08-06 19:15:06 ----HDC---- C:\WINDOWS\$NtUninstallKB982132$
2013-08-06 19:15:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2387149$
2013-08-06 19:14:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2378111_WM9$
2013-08-06 19:14:57 ----HDC---- C:\WINDOWS\$NtUninstallKB2296011$
2013-08-06 19:14:54 ----HDC---- C:\WINDOWS\$NtUninstallKB979687$
2013-08-06 19:14:52 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2013-08-06 19:14:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$
2013-08-06 19:14:46 ----HDC---- C:\WINDOWS\$NtUninstallKB981322$
2013-08-06 19:14:43 ----HDC---- C:\WINDOWS\$NtUninstallKB981997$
2013-08-06 19:14:41 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2013-08-06 19:14:39 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2013-08-06 19:14:36 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2013-08-06 19:14:33 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2013-08-06 19:14:31 ----HDC---- C:\WINDOWS\$NtUninstallKB978695_WM9$
2013-08-06 19:14:28 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2013-08-06 19:14:24 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2013-08-06 19:14:22 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2013-08-06 19:14:20 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2013-08-06 19:14:17 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2013-08-06 19:14:14 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2013-08-06 19:14:11 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2013-08-06 19:14:09 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2013-08-06 19:14:06 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2013-08-06 19:14:03 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2013-08-06 19:14:00 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2013-08-06 19:13:57 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2013-08-06 19:13:54 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2013-08-06 19:13:52 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2013-08-06 19:13:48 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2013-08-06 19:13:46 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2013-08-06 19:13:43 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2013-08-06 19:13:41 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2013-08-06 19:13:38 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2013-08-06 19:13:36 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2013-08-06 19:13:34 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2013-08-06 19:13:31 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2013-08-06 19:13:29 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2013-08-06 19:13:26 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2013-08-06 19:13:23 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2013-08-06 19:13:21 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2013-08-06 19:13:17 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2013-08-06 19:13:14 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2013-08-06 19:13:12 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2013-08-06 19:13:08 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2013-08-06 19:13:02 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2013-08-06 19:12:58 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2013-08-06 19:12:56 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2013-08-06 19:12:53 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2013-08-06 19:12:50 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2013-08-06 19:12:47 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2013-08-06 19:12:45 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2013-08-06 19:12:42 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2013-08-06 19:12:39 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2013-08-06 19:12:36 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2013-08-06 19:09:51 ----N---- C:\WINDOWS\system32\iacenc.dll
2013-08-06 19:06:27 ----N---- C:\WINDOWS\system32\browserchoice.exe
2013-08-06 19:05:36 ----A---- C:\WINDOWS\system32\h323log.txt
2013-08-06 19:03:52 ----A---- C:\WINDOWS\system32\xpsp4res.dll
2013-08-06 19:01:37 ----D---- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
2013-08-06 19:01:30 ----D---- C:\WINDOWS\system32\PreInstall
2013-08-06 19:01:29 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2013-08-06 19:01:19 ----A---- C:\WINDOWS\system32\drivers\audstub.sys
2013-08-06 19:00:50 ----A---- C:\WINDOWS\system32\drivers\redbook.sys
2013-08-06 19:00:19 ----A---- C:\WINDOWS\system32\drivers\enum1394.sys
2013-08-06 19:00:01 ----A---- C:\WINDOWS\system32\usbui.dll
2013-08-06 18:59:13 ----SHD---- C:\WINDOWS\Installer
2013-08-06 18:59:13 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2013-08-06 18:59:12 ----D---- C:\Program Files\Common Files\ODBC
2013-08-06 18:59:12 ----A---- C:\WINDOWS\ODBCINST.INI
2013-08-06 18:59:10 ----RD---- C:\Program Files
2013-08-06 18:59:10 ----D---- C:\Program Files\Common Files\SpeechEngines
2013-08-06 18:59:10 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-08-06 18:59:10 ----D---- C:\Program Files\Common Files
2013-08-06 18:59:08 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2013-08-06 18:59:08 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2013-08-06 18:59:08 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2013-08-06 18:59:06 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2013-08-06 18:59:06 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2013-08-06 18:59:06 ----RA---- C:\WINDOWS\system32\kbdur.dll
2013-08-06 18:59:06 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2013-08-06 18:59:06 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2013-08-06 18:59:06 ----RA---- C:\WINDOWS\system32\kbdru.dll
2013-08-06 18:59:06 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2013-08-06 18:59:06 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2013-08-06 18:59:06 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2013-08-06 18:59:06 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2013-08-06 18:59:06 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2013-08-06 18:59:06 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2013-08-06 18:59:04 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2013-08-06 18:59:04 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2013-08-06 18:59:04 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2013-08-06 18:59:04 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2013-08-06 18:59:04 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2013-08-06 18:59:04 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2013-08-06 18:59:04 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2013-08-06 18:59:03 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2013-08-06 18:59:03 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2013-08-06 18:59:03 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2013-08-06 18:59:03 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2013-08-06 18:59:03 ----RA---- C:\WINDOWS\system32\kbdest.dll
2013-08-06 18:59:01 ----RA---- C:\WINDOWS\system32\kbdycl.dll
2013-08-06 18:59:01 ----RA---- C:\WINDOWS\system32\kbdsl1.dll
2013-08-06 18:59:01 ----RA---- C:\WINDOWS\system32\kbdsl.dll
2013-08-06 18:59:01 ----RA---- C:\WINDOWS\system32\kbdro.dll
2013-08-06 18:59:01 ----RA---- C:\WINDOWS\system32\kbdpl1.dll
2013-08-06 18:59:01 ----RA---- C:\WINDOWS\system32\kbdpl.dll
2013-08-06 18:59:01 ----RA---- C:\WINDOWS\system32\kbdhu1.dll
2013-08-06 18:59:01 ----RA---- C:\WINDOWS\system32\kbdhu.dll
2013-08-06 18:59:01 ----RA---- C:\WINDOWS\system32\kbdcz2.dll
2013-08-06 18:59:01 ----RA---- C:\WINDOWS\system32\kbdcz1.dll
2013-08-06 18:59:01 ----RA---- C:\WINDOWS\system32\kbdcz.dll
2013-08-06 18:59:01 ----RA---- C:\WINDOWS\system32\kbdcr.dll
2013-08-06 18:59:01 ----RA---- C:\WINDOWS\system32\KBDAL.DLL
2013-08-06 18:59:00 ----A---- C:\WINDOWS\system32\irclass.dll
2013-08-06 18:58:59 ----A---- C:\WINDOWS\system32\spxcoins.dll
2013-08-06 18:58:59 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2013-08-06 18:58:59 ----A---- C:\WINDOWS\system32\dgsetup.dll
2013-08-06 18:58:59 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2013-08-06 18:58:57 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2013-08-06 18:58:57 ----A---- C:\WINDOWS\TASKMAN.EXE
2013-08-06 18:58:57 ----A---- C:\WINDOWS\system32\drivers\irenum.sys
2013-08-06 18:58:57 ----A---- C:\WINDOWS\system32\batt.dll
2013-08-06 18:58:54 ----A---- C:\WINDOWS\notepad.exe
2013-08-06 18:58:53 ----A---- C:\WINDOWS\system32\storprop.dll
2013-08-06 18:58:48 ----ASH---- C:\Documents and Settings\All Users\Application Data\desktop.ini
2013-08-06 18:58:14 ----A---- C:\WINDOWS\system32\wups2.dll
2013-08-06 18:58:13 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2013-08-06 18:57:00 ----D---- C:\WINDOWS\system32\CatRoot2
2013-08-06 18:57:00 ----D---- C:\WINDOWS\system32\CatRoot
2013-08-06 18:56:54 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2013-08-06 18:56:35 ----D---- C:\Documents and Settings
2013-08-06 18:56:34 ----SHD---- C:\System Volume Information
2013-08-06 18:56:34 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2013-08-06 18:55:30 ----SH---- C:\boot.ini
2013-08-06 18:54:49 ----D---- C:\WINDOWS\WBEM
2013-08-06 18:54:07 ----HDC---- C:\WINDOWS\ie8
2013-08-06 18:54:07 ----D---- C:\WINDOWS\system32\sk-SK
2013-08-06 18:53:51 ----N---- C:\WINDOWS\system32\WinFXDocObj.exe
2013-08-06 18:53:51 ----A---- C:\WINDOWS\system32\normaliz.dll
2013-08-06 18:53:51 ----A---- C:\WINDOWS\system32\nlsdl.dll
2013-08-06 18:53:51 ----A---- C:\WINDOWS\system32\msdbg2.dll
2013-08-06 18:53:51 ----A---- C:\WINDOWS\system32\ieudinit.exe
2013-08-06 18:53:51 ----A---- C:\WINDOWS\system32\idndl.dll
2013-08-06 18:53:49 ----N---- C:\WINDOWS\system32\msfeedssync.exe
2013-08-06 18:53:49 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
2013-08-06 18:53:49 ----A---- C:\WINDOWS\system32\msfeeds.dll
2013-08-06 18:53:48 ----N---- C:\WINDOWS\system32\ieui.dll
2013-08-06 18:53:47 ----A---- C:\WINDOWS\system32\iertutil.dll
2013-08-06 18:53:47 ----A---- C:\WINDOWS\system32\ieframe.dll
2013-08-06 18:53:46 ----N---- C:\WINDOWS\system32\ieapfltr.dll
2013-08-06 18:53:46 ----N---- C:\WINDOWS\system32\ieapfltr.dat
2013-08-06 18:53:46 ----N---- C:\WINDOWS\system32\icardie.dll
2013-08-06 18:51:28 ----D---- C:\WINDOWS\Prefetch
2013-08-06 18:51:08 ----RSHDC---- C:\WINDOWS\system32\dllcache
2013-08-06 18:51:08 ----RSD---- C:\WINDOWS\Fonts
2013-08-06 18:51:08 ----RD---- C:\WINDOWS\Web
2013-08-06 18:51:08 ----HD---- C:\WINDOWS\inf
2013-08-06 18:51:08 ----D---- C:\WINDOWS\WinSxS
2013-08-06 18:51:08 ----D---- C:\WINDOWS\twain_32
2013-08-06 18:51:08 ----D---- C:\WINDOWS\Temp
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\wins
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\wbem
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\usmt
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\spool
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\ShellExt
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\Setup
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\ras
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\oobe
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\npp
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\mui
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\inetsrv
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\IME
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\icsxml
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\ias
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\export
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\drivers\etc
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\drivers\disdn
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\drivers
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\dhcp
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\config
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\3com_dmi
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\3076
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\2052
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\1054
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\1042
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\1041
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\1037
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\1033
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\1031
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\1028
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32\1025
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system32
2013-08-06 18:51:08 ----D---- C:\WINDOWS\system
2013-08-06 18:51:08 ----D---- C:\WINDOWS\security
2013-08-06 18:51:08 ----D---- C:\WINDOWS\Resources
2013-08-06 18:51:08 ----D---- C:\WINDOWS\repair
2013-08-06 18:51:08 ----D---- C:\WINDOWS\Provisioning
2013-08-06 18:51:08 ----D---- C:\WINDOWS\pchealth
2013-08-06 18:51:08 ----D---- C:\WINDOWS\PeerNet
2013-08-06 18:51:08 ----D---- C:\WINDOWS\mui
2013-08-06 18:51:08 ----D---- C:\WINDOWS\msapps
2013-08-06 18:51:08 ----D---- C:\WINDOWS\msagent
2013-08-06 18:51:08 ----D---- C:\WINDOWS\Media
2013-08-06 18:51:08 ----D---- C:\WINDOWS\java
2013-08-06 18:51:08 ----D---- C:\WINDOWS\ime
2013-08-06 18:51:08 ----D---- C:\WINDOWS\Help
2013-08-06 18:51:08 ----D---- C:\WINDOWS\Driver Cache
2013-08-06 18:51:08 ----D---- C:\WINDOWS\Debug
2013-08-06 18:51:08 ----D---- C:\WINDOWS\Cursors
2013-08-06 18:51:08 ----D---- C:\WINDOWS\Connection Wizard
2013-08-06 18:51:08 ----D---- C:\WINDOWS\Config
2013-08-06 18:51:08 ----D---- C:\WINDOWS\AppPatch
2013-08-06 18:51:08 ----D---- C:\WINDOWS\addins
2013-08-06 18:51:08 ----D---- C:\WINDOWS
2013-08-06 18:51:08 ----ASH---- C:\pagefile.sys
2013-08-06 18:48:37 ----N---- C:\WINDOWS\system32\msxml6r.dll
2013-08-06 18:48:37 ----A---- C:\WINDOWS\system32\msxml6.dll
2013-08-06 18:48:31 ----N---- C:\WINDOWS\system32\hsfcisp2.dll
2013-08-06 18:48:31 ----N---- C:\WINDOWS\system32\eapsvc.dll
2013-08-06 18:48:31 ----N---- C:\WINDOWS\system32\eapqec.dll
2013-08-06 18:48:31 ----N---- C:\WINDOWS\system32\eappprxy.dll
2013-08-06 18:48:31 ----N---- C:\WINDOWS\system32\eapphost.dll
2013-08-06 18:48:31 ----N---- C:\WINDOWS\system32\eappgnui.dll
2013-08-06 18:48:31 ----N---- C:\WINDOWS\system32\eappcfg.dll
2013-08-06 18:48:31 ----N---- C:\WINDOWS\system32\eapp3hst.dll
2013-08-06 18:48:31 ----N---- C:\WINDOWS\system32\eapolqec.dll
2013-08-06 18:48:31 ----N---- C:\WINDOWS\system32\dot3ui.dll
2013-08-06 18:48:31 ----N---- C:\WINDOWS\system32\dot3svc.dll
2013-08-06 18:48:31 ----N---- C:\WINDOWS\system32\dot3msm.dll
2013-08-06 18:48:31 ----N---- C:\WINDOWS\system32\dot3gpclnt.dll
2013-08-06 18:48:31 ----N---- C:\WINDOWS\system32\dot3dlg.dll
2013-08-06 18:48:31 ----N---- C:\WINDOWS\system32\dot3cfg.dll
2013-08-06 18:48:31 ----N---- C:\WINDOWS\system32\dot3api.dll
2013-08-06 18:48:31 ----N---- C:\WINDOWS\system32\dimsroam.dll
2013-08-06 18:48:31 ----N---- C:\WINDOWS\system32\dimsntfy.dll
2013-08-06 18:48:31 ----N---- C:\WINDOWS\system32\dhcpqec.dll
2013-08-06 18:48:31 ----N---- C:\WINDOWS\system32\credssp.dll
2013-08-06 18:48:31 ----N---- C:\WINDOWS\system32\bitsprx4.dll
2013-08-06 18:48:31 ----N---- C:\WINDOWS\system32\azroles.dll
2013-08-06 18:48:31 ----N---- C:\WINDOWS\system32\ativtmxx.dll
2013-08-06 18:48:31 ----N---- C:\WINDOWS\system32\ati3d1ag.dll
2013-08-06 18:48:31 ----N---- C:\WINDOWS\system32\ati2dvaa.dll
2013-08-06 18:48:31 ----N---- C:\WINDOWS\system32\aaclient.dll
2013-08-06 18:48:31 ----A---- C:\WINDOWS\system32\ativvaxx.dll
2013-08-06 18:48:31 ----A---- C:\WINDOWS\system32\ati3duag.dll
2013-08-06 18:48:31 ----A---- C:\WINDOWS\system32\ati2dvag.dll
2013-08-06 18:48:31 ----A---- C:\WINDOWS\system32\ati2cqag.dll
2013-08-06 18:48:30 ----N---- C:\WINDOWS\system32\napstat.exe
2013-08-06 18:48:30 ----N---- C:\WINDOWS\system32\napmontr.dll
2013-08-06 18:48:30 ----N---- C:\WINDOWS\system32\napipsec.dll
2013-08-06 18:48:30 ----N---- C:\WINDOWS\system32\mtxparhd.dll
2013-08-06 18:48:30 ----N---- C:\WINDOWS\system32\msshavmsg.dll
2013-08-06 18:48:30 ----N---- C:\WINDOWS\system32\mssha.dll
2013-08-06 18:48:30 ----N---- C:\WINDOWS\system32\mmcperf.exe
2013-08-06 18:48:30 ----N---- C:\WINDOWS\system32\mmcfxcommon.dll
2013-08-06 18:48:30 ----N---- C:\WINDOWS\system32\mmcex.dll
2013-08-06 18:48:30 ----N---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2013-08-06 18:48:30 ----N---- C:\WINDOWS\system32\mdmxsdk.dll
2013-08-06 18:48:30 ----N---- C:\WINDOWS\system32\l2gpstore.dll
2013-08-06 18:48:30 ----N---- C:\WINDOWS\system32\kmsvc.dll
2013-08-06 18:48:30 ----N---- C:\WINDOWS\system32\kbdpash.dll
2013-08-06 18:48:30 ----N---- C:\WINDOWS\system32\kbdnepr.dll
2013-08-06 18:48:30 ----N---- C:\WINDOWS\system32\kbdiultn.dll
2013-08-06 18:48:30 ----N---- C:\WINDOWS\system32\kbdbhc.dll
2013-08-06 18:48:29 ----N---- C:\WINDOWS\system32\wmphoto.dll
2013-08-06 18:48:29 ----N---- C:\WINDOWS\system32\wlanapi.dll
2013-08-06 18:48:29 ----N---- C:\WINDOWS\system32\windowscodecsext.dll
2013-08-06 18:48:29 ----N---- C:\WINDOWS\system32\windowscodecs.dll
2013-08-06 18:48:29 ----N---- C:\WINDOWS\system32\verclsid.exe
2013-08-06 18:48:29 ----N---- C:\WINDOWS\system32\tzchange.exe
2013-08-06 18:48:29 ----N---- C:\WINDOWS\system32\tspkg.dll
2013-08-06 18:48:29 ----N---- C:\WINDOWS\system32\tsgqec.dll
2013-08-06 18:48:29 ----N---- C:\WINDOWS\system32\slserv.exe
2013-08-06 18:48:29 ----N---- C:\WINDOWS\system32\slrundll.exe
2013-08-06 18:48:29 ----N---- C:\WINDOWS\system32\slgen.dll
2013-08-06 18:48:29 ----N---- C:\WINDOWS\system32\slextspk.dll
2013-08-06 18:48:29 ----N---- C:\WINDOWS\system32\slcoinst.dll
2013-08-06 18:48:29 ----N---- C:\WINDOWS\system32\setupn.exe
2013-08-06 18:48:29 ----N---- C:\WINDOWS\system32\s3gnb.dll
2013-08-06 18:48:29 ----N---- C:\WINDOWS\system32\rhttpaa.dll
2013-08-06 18:48:29 ----N---- C:\WINDOWS\system32\rasqec.dll
2013-08-06 18:48:29 ----N---- C:\WINDOWS\system32\qutil.dll
2013-08-06 18:48:29 ----N---- C:\WINDOWS\system32\qcliprov.dll
2013-08-06 18:48:29 ----N---- C:\WINDOWS\system32\qagentrt.dll
2013-08-06 18:48:29 ----N---- C:\WINDOWS\system32\qagent.dll
2013-08-06 18:48:29 ----N---- C:\WINDOWS\system32\photometadatahandler.dll
2013-08-06 18:48:29 ----N---- C:\WINDOWS\system32\onex.dll
2013-08-06 18:48:29 ----N---- C:\WINDOWS\system32\nv4_disp.dll
2013-08-06 18:48:28 ----N---- C:\WINDOWS\slrundll.exe
2013-08-06 18:48:28 ----D---- C:\WINDOWS\system32\scripting
2013-08-06 18:48:28 ----D---- C:\WINDOWS\system32\en-us
2013-08-06 18:48:28 ----D---- C:\WINDOWS\l2schemas
2013-08-06 18:48:28 ----A---- C:\WINDOWS\system32\xmllite.dll
2013-08-06 18:48:27 ----D---- C:\WINDOWS\system32\en
2013-08-06 18:48:27 ----D---- C:\WINDOWS\system32\bits
2013-08-06 18:47:21 ----D---- C:\WINDOWS\ServicePackFiles
2013-08-06 18:46:07 ----N---- C:\WINDOWS\system32\drivers\adv07nt5.dll
2013-08-06 18:46:07 ----N---- C:\WINDOWS\system32\drivers\adv05nt5.dll
2013-08-06 18:46:07 ----N---- C:\WINDOWS\system32\drivers\adv02nt5.dll
2013-08-06 18:46:07 ----N---- C:\WINDOWS\system32\drivers\adv01nt5.dll
2013-08-06 18:46:07 ----D---- C:\WINDOWS\network diagnostic
2013-08-06 18:46:06 ----N---- C:\WINDOWS\system32\drivers\atinxsxx.sys
2013-08-06 18:46:06 ----N---- C:\WINDOWS\system32\drivers\atinxbxx.sys
2013-08-06 18:46:06 ----N---- C:\WINDOWS\system32\drivers\atintuxx.sys
2013-08-06 18:46:06 ----N---- C:\WINDOWS\system32\drivers\atinttxx.sys
2013-08-06 18:46:06 ----N---- C:\WINDOWS\system32\drivers\atinsnxx.sys
2013-08-06 18:46:06 ----N---- C:\WINDOWS\system32\drivers\atinrvxx.sys
2013-08-06 18:46:06 ----N---- C:\WINDOWS\system32\drivers\atinraxx.sys
2013-08-06 18:46:06 ----N---- C:\WINDOWS\system32\drivers\atinpdxx.sys
2013-08-06 18:46:06 ----N---- C:\WINDOWS\system32\drivers\atinmdxx.sys
2013-08-06 18:46:06 ----N---- C:\WINDOWS\system32\drivers\atinbtxx.sys
2013-08-06 18:46:06 ----N---- C:\WINDOWS\system32\drivers\ati2mtaa.sys
2013-08-06 18:46:06 ----N---- C:\WINDOWS\system32\drivers\ati1xsxx.sys
2013-08-06 18:46:06 ----N---- C:\WINDOWS\system32\drivers\ati1xbxx.sys
2013-08-06 18:46:06 ----N---- C:\WINDOWS\system32\drivers\ati1tuxx.sys
2013-08-06 18:46:06 ----N---- C:\WINDOWS\system32\drivers\ati1ttxx.sys
2013-08-06 18:46:06 ----N---- C:\WINDOWS\system32\drivers\ati1snxx.sys
2013-08-06 18:46:06 ----N---- C:\WINDOWS\system32\drivers\ati1rvxx.sys
2013-08-06 18:46:06 ----N---- C:\WINDOWS\system32\drivers\ati1raxx.sys
2013-08-06 18:46:06 ----N---- C:\WINDOWS\system32\drivers\ati1pdxx.sys
2013-08-06 18:46:06 ----N---- C:\WINDOWS\system32\drivers\ati1mdxx.sys
2013-08-06 18:46:06 ----N---- C:\WINDOWS\system32\drivers\ati1btxx.sys
2013-08-06 18:46:06 ----N---- C:\WINDOWS\system32\drivers\amdagp.sys
2013-08-06 18:46:06 ----N---- C:\WINDOWS\system32\drivers\alim1541.sys
2013-08-06 18:46:06 ----N---- C:\WINDOWS\system32\drivers\agpcpq.sys
2013-08-06 18:46:06 ----N---- C:\WINDOWS\system32\drivers\agp440.sys
2013-08-06 18:46:06 ----N---- C:\WINDOWS\system32\drivers\adv11nt5.dll
2013-08-06 18:46:06 ----N---- C:\WINDOWS\system32\drivers\adv09nt5.dll
2013-08-06 18:46:06 ----N---- C:\WINDOWS\system32\drivers\adv08nt5.dll
2013-08-06 18:46:06 ----A---- C:\WINDOWS\system32\drivers\ati2mtag.sys
2013-08-06 18:46:05 ----N---- C:\WINDOWS\system32\drivers\ch7xxnt5.dll
2013-08-06 18:46:05 ----N---- C:\WINDOWS\system32\drivers\hsfdpsp2.sys
2013-08-06 18:46:05 ----N---- C:\WINDOWS\system32\drivers\hsfcxts2.sys
2013-08-06 18:46:05 ----N---- C:\WINDOWS\system32\drivers\hsfbs2s2.sys
2013-08-06 18:46:05 ----N---- C:\WINDOWS\system32\drivers\hidir.sys
2013-08-06 18:46:05 ----N---- C:\WINDOWS\system32\drivers\hidbth.sys
2013-08-06 18:46:05 ----N---- C:\WINDOWS\system32\drivers\hdaudbus.sys
2013-08-06 18:46:05 ----N---- C:\WINDOWS\system32\drivers\gagp30kx.sys
2013-08-06 18:46:05 ----N---- C:\WINDOWS\system32\drivers\bthusb.sys
2013-08-06 18:46:05 ----N---- C:\WINDOWS\system32\drivers\bthprint.sys
2013-08-06 18:46:05 ----N---- C:\WINDOWS\system32\drivers\bthport.sys
2013-08-06 18:46:05 ----N---- C:\WINDOWS\system32\drivers\bthpan.sys
2013-08-06 18:46:05 ----N---- C:\WINDOWS\system32\drivers\bthmodem.sys
2013-08-06 18:46:05 ----N---- C:\WINDOWS\system32\drivers\bthenum.sys
2013-08-06 18:46:05 ----N---- C:\WINDOWS\system32\drivers\atv10nt5.dll
2013-08-06 18:46:05 ----N---- C:\WINDOWS\system32\drivers\atv06nt5.dll
2013-08-06 18:46:05 ----N---- C:\WINDOWS\system32\drivers\atv04nt5.dll
2013-08-06 18:46:05 ----N---- C:\WINDOWS\system32\drivers\atv02nt5.dll
2013-08-06 18:46:05 ----N---- C:\WINDOWS\system32\drivers\atv01nt5.dll
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\watv10nt.sys
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\watv06nt.sys
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\wadv11nt.sys
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\wadv09nt.sys
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\wadv08nt.sys
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\wadv07nt.sys
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\wacompen.sys
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\viaagp.sys
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\vchnt5.dll
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\usbvideo.sys
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\usb8023x.sys
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\uagp35.sys
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\smbali.sys
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\slwdmsup.sys
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\slnthal.sys
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\slntamr.sys
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\slnt7554.sys
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\sisagp.sys
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\siint5.dll
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\sffp_mmc.sys
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\s3gnbm.sys
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\rndismpx.sys
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\rfcomm.sys
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\recagent.sys
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\nv4_mini.sys
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\ntmtlfax.sys
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\mutohpen.sys
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\mtxparhm.sys
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\mtlstrm.sys
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\mtlmnt5.sys
2013-08-06 18:46:04 ----N---- C:\WINDOWS\system32\drivers\mdmxsdk.sys
2013-08-06 18:45:16 ----D---- C:\WINDOWS\system32\ReinstallBackups
2013-08-06 18:45:12 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2013-08-06 18:44:10 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2013-08-06 18:44:10 ----D---- C:\WINDOWS\EHome
2013-08-06 18:20:04 ----D---- C:\Program Files\Common Files\Adobe
2013-08-06 18:17:35 ----D---- C:\WINDOWS\system32\1051
2013-08-06 18:13:24 ----SHD---- C:\RECYCLER
2013-08-06 18:12:47 ----D---- C:\Program Files\Mozilla Maintenance Service
2013-08-06 18:12:47 ----D---- C:\Documents and Settings\All Users\Application Data\Mozilla
2013-08-06 18:11:29 ----A---- C:\WINDOWS\nsreg.dat
2013-08-06 18:11:28 ----D---- C:\Documents and Settings\Brat\Application Data\Mozilla
2013-08-06 17:55:49 ----A---- C:\WINDOWS\system32\wpa.bak

======List of files/folders modified in the last 1 month======

2013-08-07 02:09:56 ----ASH---- C:\WINDOWS\fonts\desktop.ini
2013-08-06 22:26:50 ----A---- C:\WINDOWS\win.ini
2013-08-06 22:26:50 ----A---- C:\WINDOWS\system.ini
2013-08-03 14:18:38 ----N---- C:\WINDOWS\system32\wmvdecod.dll

Re: Preventivku prosím

Napsal: 31 srp 2013 11:12
od kuntakinte
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 giveio;giveio; C:\WINDOWS\system32\giveio.sys [1996-04-03 5248]
R0 ohci1394;Texas Instruments OHCI Compliant IEEE 1394 Host Controller; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-14 61696]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2011-03-04 45648]
R0 speedfan;speedfan; C:\WINDOWS\system32\speedfan.sys [2006-09-24 5248]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2013-08-06 685816]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2013-08-20 136672]
R1 avkmgr;avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [2013-03-06 37352]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 36352]
R1 OADevice;OADriver; \??\C:\WINDOWS\system32\drivers\OADriver.sys []
R1 oahlpXX;Online Armor helper driver; \??\C:\WINDOWS\system32\drivers\oahlp32.sys []
R1 OAmon;OAmon; \??\C:\WINDOWS\system32\drivers\OAmon.sys []
R1 OAnet;OAnet; \??\C:\WINDOWS\system32\drivers\OAnet.sys []
R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2012-08-27 28520]
R2 {B154377D-700F-42cc-9474-23858FBDF4BD};Power Control [2013/08/06 21:43:15]; \??\C:\Program Files\CyberLink\PowerDVD9\000.fcl []
R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2013-08-20 88840]
R3 Arp1394;1394 ARP Client Protocol; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-14 60800]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2012-11-16 7874560]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdXP3.sys [2012-05-14 103040]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2013-03-29 5444680]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2006-02-28 12160]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-14 61824]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2011-12-09 327400]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S3 a05t8h7d;a05t8h7d; C:\WINDOWS\system32\drivers\a05t8h7d.sys []
S3 Ambfilt;Ambfilt; C:\WINDOWS\system32\drivers\Ambfilt.sys [2009-11-18 1691480]
S3 AtiHdmiService;ATI Function Driver for HDMI Service; C:\WINDOWS\system32\drivers\AtiHdmi.sys [2008-05-21 93696]
S3 Monfilt;Monfilt; C:\WINDOWS\system32\drivers\Monfilt.sys [2009-11-18 1395800]
S3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
S3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 usbscan;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WpdUsb;WpdUsb; C:\WINDOWS\System32\Drivers\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AntiVirService;Avira Real-Time Protection; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2013-08-20 108088]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2013-08-20 84024]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2012-11-16 643072]
R2 IJPLMSVC;Canon Inkjet Printer/Scanner/Fax Extended Survey Program; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [2011-02-07 138192]
R2 OAcat;Online Armor Helper Service; C:\Program Files\Online Armor\OAcat.exe [2012-10-02 216072]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2007-05-28 275968]
R2 SvcOnlineArmor;Online Armor; C:\Program Files\Online Armor\oasrv.exe [2012-10-02 4463864]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2008-06-02 593920]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-08-06 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-07-25 162672]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-08-06 116648]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-08-17 117656]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S4 AntiVirWebService;Avira Web Protection; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [2013-08-20 815160]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Re: Preventivku prosím

Napsal: 31 srp 2013 15:08
od Márty84
:arrow: Stahnete OTL http://oldtimer.geekstogo.com/OTL.exe , ulozte na plochu a spustte.
Oznacte polozky (dejte tam zatrzitka) Pro všechny uživatele, Kontrola na havěť "LOP" a Kontrola na havěť "Purity"
Do spodniho okna vlozte nasledujici text

Kód: Vybrat vše

CREATERESTOREPOINT

netsvcs
drivers32
savembr:0

/md5start
adp3132.sys
AGP440.sys
ahcix86.sys
ahcix86s.sys
atapi.sys
autochk.exe
cdrom.sys
cngaudit.dll
cryptsvc.dll
eNetHook.dll
eventlog.dll
explorer.exe
hal.dll
Changer.sys
iaStor.sys
iastorv.sys
IdeChnDr.sys
isapnp.sys
JakNDis.sys
KR10N.sys
logevent.dll
lsass.exe
mv61xx.sys
ndis.sys
netlogon.dll
ntelogon.dll
nvata.sys
nvatabus.sys
nvgts.sys
nvraid.sys
nvrd32.sys
nvstor.sys
nvstor32.sys
scecli.dll
sceclt.dll
smss.exe
svchost.exe
symmpi.sys
tcpip.sys
userinit.exe
vaxscsi.sys
viamraid.sys
viasraid.sys
ViPrt.sys
winlogon.exe
ws2_32.dll
/md5stop

%systemroot%*.* /U /s
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
%SYSTEMDRIVE%\*.exe

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c

type c:\boot.ini >> test.txt /c
%SystemDrive%\PhysicalMBR.bin /md5

*crack* /s
*keygen* /s
*AntiWPA* /s
*loader* /s
*minodlogin* /s
*tnod* /s
*AutoKMS* /s
*activator* /s
*serial* /s
*w7lxe* /s
Kliknete na Prohledat
Po skenu se vytvori dva logy (OTL.Txt a Extras.txt), oba sem vlozte (kdyz budou dlouhe, rozdelte je do vice prispevku).

Re: Preventivku prosím

Napsal: 01 zář 2013 14:47
od kuntakinte
OTL logfile created on: 1.9.2013 14:11:56 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\Brat\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 0000041B | Country: Slovakia | Language: SKY | Date Format: d.M.yyyy

2,00 Gb Total Physical Memory | 1,15 Gb Available Physical Memory | 57,79% Memory free
3,85 Gb Paging File | 2,85 Gb Available in Paging File | 74,19% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 127,87 Gb Total Space | 102,46 Gb Free Space | 80,13% Space Free | Partition Type: NTFS
Drive D: | 67,44 Gb Total Space | 55,92 Gb Free Space | 82,92% Space Free | Partition Type: NTFS
Drive E: | 503,33 Gb Total Space | 119,17 Gb Free Space | 23,68% Space Free | Partition Type: NTFS

Computer Name: BRAT-432547A02E | User Name: Brat | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2013.09.01 14:09:17 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Brat\Desktop\OTL.exe
PRC - [2013.08.20 10:56:15 | 000,084,024 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe
PRC - [2013.08.20 10:55:52 | 000,076,856 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
PRC - [2013.08.20 10:55:48 | 000,108,088 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe
PRC - [2013.08.20 10:55:47 | 000,347,192 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
PRC - [2013.08.14 19:55:20 | 000,276,376 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2013.08.06 22:07:34 | 000,217,992 | ---- | M] (Google Inc.) -- C:\Program Files\Google\Update\1.3.21.153\GoogleCrashHandler.exe
PRC - [2012.10.02 15:02:10 | 004,463,864 | ---- | M] (Emsisoft GmbH) -- C:\Program Files\Online Armor\oasrv.exe
PRC - [2012.10.02 15:02:10 | 002,415,104 | ---- | M] (Emsisoft GmbH) -- C:\Program Files\Online Armor\oaui.exe
PRC - [2012.10.02 15:02:06 | 001,248,144 | ---- | M] (Emsisoft GmbH) -- C:\Program Files\Online Armor\oahlp.exe
PRC - [2012.10.02 15:02:04 | 000,216,072 | ---- | M] (Emsisoft GmbH) -- C:\Program Files\Online Armor\oacat.exe
PRC - [2011.02.07 09:56:11 | 000,138,192 | ---- | M] () -- C:\Program Files\Canon\IJPLM\ijplmsvc.exe
PRC - [2008.04.14 05:42:20 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2007.05.28 18:57:54 | 000,275,968 | ---- | M] (Rocket Division Software) -- C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe


========== Modules (No Company Name) ==========

MOD - [2013.08.15 13:47:13 | 011,816,960 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web\972dcf9830a64e9802aaca3a83cae24b\System.Web.ni.dll
MOD - [2013.08.15 13:30:29 | 005,462,016 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\f93600ac836b9140e1df13bb0f6bfccf\System.Xml.ni.dll
MOD - [2013.08.15 13:30:24 | 012,434,432 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\a12a09aaa2c560a808dea7eaba5040c1\System.Windows.Forms.ni.dll
MOD - [2013.08.15 13:30:13 | 001,593,344 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing\3b34cb206ab0cec687c3730b14cdff57\System.Drawing.ni.dll
MOD - [2013.08.15 13:29:06 | 007,977,984 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\10df39542df7d48462451fc39bce8418\System.ni.dll
MOD - [2013.08.15 13:28:21 | 000,303,104 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
MOD - [2013.08.14 19:55:37 | 003,551,640 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll
MOD - [2013.08.08 22:27:04 | 000,025,600 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Accessibility\8f799a4688381624de3cfb1edbccb163\Accessibility.ni.dll
MOD - [2013.08.08 22:08:59 | 011,497,984 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\b14359470744c840c59fbe4e58034fd6\mscorlib.ni.dll
MOD - [2013.08.06 20:34:13 | 016,166,280 | ---- | M] () -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_8_800_94.dll
MOD - [2013.08.06 19:28:27 | 000,266,240 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.Graphics.Runtime\2.0.3075.38702__90ba9c70f846762e\CLI.Caste.Graphics.Runtime.dll
MOD - [2013.08.06 19:28:13 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.Hotkeys.Shared\2.0.3036.27945__90ba9c70f846762e\AEM.Plugin.Hotkeys.Shared.dll
MOD - [2013.08.06 19:28:13 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Actions.CCAA.Shared\2.0.3036.27937__90ba9c70f846762e\AEM.Actions.CCAA.Shared.dll
MOD - [2013.08.06 19:28:13 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.WinMessages.Shared\2.0.3036.27963__90ba9c70f846762e\AEM.Plugin.WinMessages.Shared.dll
MOD - [2013.08.06 19:28:12 | 000,053,248 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Foundation\2.0.3036.27933__90ba9c70f846762e\CLI.Foundation.dll
MOD - [2013.08.06 19:28:12 | 000,053,248 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.Graphics.Shared\2.0.3036.27946__90ba9c70f846762e\CLI.Caste.Graphics.Shared.dll
MOD - [2013.08.06 19:28:12 | 000,045,056 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\DEM.Graphics.I0601\2.0.2573.17685__90ba9c70f846762e\DEM.Graphics.I0601.dll
MOD - [2013.08.06 19:28:12 | 000,032,768 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\LOG.Foundation\2.0.3036.27930__90ba9c70f846762e\LOG.Foundation.dll
MOD - [2013.08.06 19:28:12 | 000,028,672 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\NEWAEM.Foundation\2.0.3036.27933__90ba9c70f846762e\NEWAEM.Foundation.dll
MOD - [2013.08.06 19:28:12 | 000,028,672 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Foundation.XManifest\2.0.3036.28032__90ba9c70f846762e\CLI.Foundation.XManifest.dll
MOD - [2013.08.06 19:28:12 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\DEM.OS.I0602\2.0.3036.27964__90ba9c70f846762e\DEM.OS.I0602.dll
MOD - [2013.08.06 19:28:12 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Wizard.Shared\2.0.3036.27948__90ba9c70f846762e\CLI.Component.Wizard.Shared.dll
MOD - [2013.08.06 19:28:12 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Dashboard.Shared\2.0.3036.27945__90ba9c70f846762e\CLI.Component.Dashboard.Shared.dll
MOD - [2013.08.06 19:28:12 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Client.Shared\2.0.3036.27940__90ba9c70f846762e\CLI.Component.Client.Shared.dll
MOD - [2013.08.06 19:28:12 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\MOM.Foundation\2.0.3036.27960__90ba9c70f846762e\MOM.Foundation.dll
MOD - [2013.08.06 19:28:12 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\DEM.OS\2.0.3036.27964__90ba9c70f846762e\DEM.OS.dll
MOD - [2013.08.06 19:28:12 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\DEM.Graphics\2.0.3036.27964__90ba9c70f846762e\DEM.Graphics.dll
MOD - [2013.08.06 19:28:12 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\DEM.Foundation\2.0.2573.17684__90ba9c70f846762e\DEM.Foundation.dll
MOD - [2013.08.06 19:28:12 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Runtime.Shared\2.0.3036.27944__90ba9c70f846762e\CLI.Component.Runtime.Shared.dll
MOD - [2013.08.06 19:28:12 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.GD.Shared\2.0.3036.27993__90ba9c70f846762e\AEM.Plugin.GD.Shared.dll
MOD - [2013.08.06 19:28:12 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.DPPE.Shared\2.0.3036.27993__90ba9c70f846762e\AEM.Plugin.DPPE.Shared.dll
MOD - [2013.08.06 19:28:11 | 000,024,576 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\ACE.Graphics.DisplaysManager.Shared\2.0.2573.17685__90ba9c70f846762e\ACE.Graphics.DisplaysManager.Shared.dll
MOD - [2013.08.06 19:28:11 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Server.Shared\2.0.3036.27944__90ba9c70f846762e\AEM.Server.Shared.dll
MOD - [2013.08.06 19:28:07 | 000,102,400 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\MOM.Implementation\2.0.3075.39003__90ba9c70f846762e\MOM.Implementation.dll
MOD - [2013.08.06 19:28:07 | 000,061,440 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\LOG.Foundation.Implementation\2.0.3075.39000__90ba9c70f846762e\LOG.Foundation.Implementation.dll
MOD - [2013.08.06 19:28:07 | 000,045,056 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.Source.Kit.Server\2.0.3075.39039__90ba9c70f846762e\AEM.Plugin.Source.Kit.Server.dll
MOD - [2013.08.06 19:28:07 | 000,040,960 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Foundation.Private\2.0.3036.27937__90ba9c70f846762e\CLI.Foundation.Private.dll
MOD - [2013.08.06 19:28:07 | 000,032,768 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\LOG.Foundation.Private\2.0.3036.27941__90ba9c70f846762e\LOG.Foundation.Private.dll
MOD - [2013.08.06 19:28:07 | 000,024,576 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Wizard.Shared.Private\2.0.3036.27962__90ba9c70f846762e\CLI.Component.Wizard.Shared.Private.dll
MOD - [2013.08.06 19:28:07 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\LOG.Foundation.Implementation.Private\2.0.3036.27961__90ba9c70f846762e\LOG.Foundation.Implementation.Private.dll
MOD - [2013.08.06 19:28:07 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\LOCALIZATION.Foundation.Private\2.0.3036.27941__90ba9c70f846762e\LOCALIZATION.Foundation.Private.dll
MOD - [2013.08.06 19:28:07 | 000,014,848 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AxInterop.WBOCXLib\1.0.0.0__90ba9c70f846762e\AxInterop.WBOCXLib.dll
MOD - [2013.08.06 19:28:07 | 000,013,312 | ---- | M] () -- C:\WINDOWS\assembly\GAC\Interop.WBOCXLib\1.0.0.0__90ba9c70f846762e\Interop.WBOCXLib.dll
MOD - [2013.08.06 19:28:07 | 000,011,264 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\LOCALIZATION.Foundation.Implementation\2.0.3075.39054__90ba9c70f846762e\LOCALIZATION.Foundation.Implementation.dll
MOD - [2013.08.06 19:28:06 | 000,991,232 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Dashboard\2.0.3075.38710__90ba9c70f846762e\CLI.Component.Dashboard.dll
MOD - [2013.08.06 19:28:06 | 000,417,792 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Systemtray\2.0.3075.38993__90ba9c70f846762e\CLI.Component.Systemtray.dll
MOD - [2013.08.06 19:28:06 | 000,397,312 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Wizard\2.0.3075.38732__90ba9c70f846762e\CLI.Component.Wizard.dll
MOD - [2013.08.06 19:28:06 | 000,069,632 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\ATIDEMOS\2.0.3075.38694__90ba9c70f846762e\ATIDEMOS.dll
MOD - [2013.08.06 19:28:06 | 000,053,248 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.SkinFactory\2.0.3075.38696__90ba9c70f846762e\CLI.Component.SkinFactory.dll
MOD - [2013.08.06 19:28:06 | 000,053,248 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Runtime\2.0.3075.38693__90ba9c70f846762e\CLI.Component.Runtime.dll
MOD - [2013.08.06 19:28:06 | 000,045,056 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Runtime.Shared.Private\2.0.3036.27962__90ba9c70f846762e\CLI.Component.Runtime.Shared.Private.dll
MOD - [2013.08.06 19:28:06 | 000,045,056 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Server\2.0.3075.38691__90ba9c70f846762e\AEM.Server.dll
MOD - [2013.08.06 19:28:06 | 000,040,960 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Client.Shared.Private\2.0.3036.27949__90ba9c70f846762e\CLI.Component.Client.Shared.Private.dll
MOD - [2013.08.06 19:28:06 | 000,032,768 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\ATICCCom\2.0.0.0__90ba9c70f846762e\ATICCCom.dll
MOD - [2013.08.06 19:28:06 | 000,028,672 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CCC.Implementation\2.0.3075.39002__90ba9c70f846762e\CCC.Implementation.dll
MOD - [2013.08.06 19:28:06 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Dashboard.Shared.Private\2.0.3036.27959__90ba9c70f846762e\CLI.Component.Dashboard.Shared.Private.dll
MOD - [2013.07.18 08:03:25 | 000,394,824 | ---- | M] () -- C:\Program Files\Avira\AntiVir Desktop\sqlite3.dll
MOD - [2013.01.02 08:49:10 | 001,292,288 | ---- | M] () -- C:\WINDOWS\system32\quartz.dll
MOD - [2011.02.07 09:56:11 | 000,138,192 | ---- | M] () -- C:\Program Files\Canon\IJPLM\ijplmsvc.exe


========== Services (SafeList) ==========

SRV - File not found [Disabled | Stopped] -- %SystemRoot%\System32\hidserv.dll -- (HidServ)
SRV - File not found [On_Demand | Stopped] -- %SystemRoot%\System32\appmgmts.dll -- (AppMgmt)
SRV - [2013.08.20 10:56:15 | 000,084,024 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2013.08.20 10:55:54 | 000,815,160 | ---- | M] (Avira Operations GmbH & Co. KG) [Disabled | Stopped] -- C:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe -- (AntiVirWebService)
SRV - [2013.08.20 10:55:48 | 000,108,088 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2013.08.17 11:39:30 | 000,117,656 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013.07.25 08:52:52 | 000,162,672 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2012.10.02 15:02:10 | 004,463,864 | ---- | M] (Emsisoft GmbH) [Auto | Running] -- C:\Program Files\Online Armor\oasrv.exe -- (SvcOnlineArmor)
SRV - [2012.10.02 15:02:04 | 000,216,072 | ---- | M] (Emsisoft GmbH) [Auto | Running] -- C:\Program Files\Online Armor\oacat.exe -- (OAcat)
SRV - [2011.02.07 09:56:11 | 000,138,192 | ---- | M] () [Auto | Running] -- C:\Program Files\Canon\IJPLM\ijplmsvc.exe -- (IJPLMSVC)
SRV - [2007.05.28 18:57:54 | 000,275,968 | ---- | M] (Rocket Division Software) [Auto | Running] -- C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe -- (StarWindServiceAE)


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - File not found [Kernel | On_Demand | Unknown] -- -- (abu0cgl9)
DRV - [2013.08.20 10:56:17 | 000,136,672 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb)
DRV - [2013.08.20 10:56:17 | 000,088,840 | ---- | M] (Avira Operations GmbH & Co. KG) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\avgntflt.sys -- (avgntflt)
DRV - [2013.08.06 21:29:54 | 000,685,816 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sptd.sys -- (sptd)
DRV - [2013.03.29 21:42:40 | 005,444,680 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService)
DRV - [2013.03.06 16:13:53 | 000,037,352 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avkmgr.sys -- (avkmgr)
DRV - [2012.11.16 23:04:28 | 007,874,560 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2012.10.02 15:03:04 | 000,044,992 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\oahlp32.sys -- (oahlpXX)
DRV - [2012.10.02 15:02:34 | 000,031,920 | ---- | M] (Emsisoft) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\OAnet.sys -- (OAnet)
DRV - [2012.10.02 15:02:34 | 000,027,648 | ---- | M] (Emsisoft) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\OAmon.sys -- (OAmon)
DRV - [2012.10.02 15:02:32 | 000,208,320 | ---- | M] () [File_System | System | Running] -- C:\WINDOWS\system32\drivers\OADriver.sys -- (OADevice)
DRV - [2012.08.27 15:50:24 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv)
DRV - [2012.05.14 08:12:12 | 000,103,040 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AtihdXP3.sys -- (AtiHDAudioService)
DRV - [2011.12.09 00:09:16 | 000,327,400 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp)
DRV - [2009.11.18 07:17:00 | 001,395,800 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Monfilt.sys -- (Monfilt)
DRV - [2009.11.18 07:16:00 | 001,691,480 | ---- | M] (Creative) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Ambfilt.sys -- (Ambfilt)
DRV - [2009.02.28 19:40:18 | 000,087,536 | ---- | M] (CyberLink Corp.) [2013/08/06 21:43:15] [Kernel | Auto | Running] -- C:\Program Files\CyberLink\PowerDVD9\000.fcl -- ({B154377D-700F-42cc-9474-23858FBDF4BD})
DRV - [2008.05.21 01:53:36 | 000,093,696 | R--- | M] (ATI Research Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\AtiHdmi.sys -- (AtiHdmiService)
DRV - [2006.09.24 15:28:46 | 000,005,248 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Boot | Running] -- C:\WINDOWS\system32\speedfan.sys -- (speedfan)
DRV - [1996.04.03 21:33:26 | 000,005,248 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\giveio.sys -- (giveio)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-21-1935655697-1770027372-839522115-1004\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-1935655697-1770027372-839522115-1004\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={ ... orm=IE8SRC
IE - HKU\S-1-5-21-1935655697-1770027372-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.startup.homepage: "www.google.com"
FF - prefs.js..extensions.enabledAddons: onair_FM%40marek.chrenko.net:3.9.2
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:23.0.1
FF - user.js - File not found

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_8_800_94.dll ()
FF - HKLM\Software\MozillaPlugins\@canon.com/EPPEX: C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nullsoft.com/winampDetector;version=1: C:\Program Files\Winamp Detect\npwachk.dll (Nullsoft, Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.8: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 23.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 23.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins

[2013.08.06 18:11:28 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Brat\Application Data\Mozilla\Extensions
[2013.08.07 13:33:17 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Brat\Application Data\Mozilla\Firefox\Profiles\0va9y2x9.default\extensions
[2013.08.07 13:33:17 | 000,047,225 | ---- | M] () (No name found) -- C:\Documents and Settings\Brat\Application Data\Mozilla\Firefox\Profiles\0va9y2x9.default\extensions\onair_FM@marek.chrenko.net.xpi
[2013.08.06 21:48:15 | 000,824,302 | ---- | M] () (No name found) -- C:\Documents and Settings\Brat\Application Data\Mozilla\Firefox\Profiles\0va9y2x9.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2013.08.31 16:13:23 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\browser\extensions
[2013.08.31 16:13:23 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter}
CHR - Extension: Docs = C:\Documents and Settings\Brat\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.0.0.6_0\
CHR - Extension: Disk Google = C:\Documents and Settings\Brat\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.2_0\
CHR - Extension: YouTube = C:\Documents and Settings\Brat\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: H\u013Eada\u0165 v Google = C:\Documents and Settings\Brat\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: Gmail = C:\Documents and Settings\Brat\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

O1 HOSTS File: ([2006.02.28 14:00:00 | 000,000,734 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O4 - HKLM..\Run: [@OnlineArmor GUI] C:\Program Files\Online Armor\OAui.exe (Emsisoft GmbH)
O4 - HKLM..\Run: [AlcWzrd] C:\WINDOWS\ALCWZRD.EXE (RealTek Semicoductor Corp.)
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
O4 - HKLM..\Run: [MP10_EnsureFileVer] C:\WINDOWS\inf\unregmp2.exe (Microsoft Corporation)
O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1935655697-1770027372-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000018 - C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://windowsupdate.microsoft.com/wind ... 5804162551 (WUWebControl Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 195.34.133.21 212.186.211.21
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3E6BFFAD-D04F-41F0-B3B4-7347E9EFB281}: DhcpNameServer = 195.34.133.21 212.186.211.21
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O24 - Desktop WallPaper: C:\Documents and Settings\Brat\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Brat\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O28 - HKLM ShellExecuteHooks: {4F07DA45-8170-4859-9B5F-037EF2970034} - C:\Program Files\Online Armor\oaevent.dll (Emsisoft GmbH)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2013.08.07 02:10:14 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2008.11.03 12:21:02 | 000,000,000 | ---D | M] - E:\Auto route 2005 -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

NetSvcs: 6to4 - File not found
NetSvcs: AppMgmt - %SystemRoot%\System32\appmgmts.dll File not found
NetSvcs: HidServ - %SystemRoot%\System32\hidserv.dll File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found

Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: VIDC.ACDV - ACDV.dll File not found
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin

========== Files/Folders - Created Within 30 Days ==========

[2013.09.01 14:09:17 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Brat\Desktop\OTL.exe
[2013.09.01 11:23:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\My Documents\Downloads
[2013.08.31 16:12:24 | 000,281,776 | ---- | C] (Mozilla) -- C:\Documents and Settings\Brat\Desktop\Firefox Setup Stub 23.0.1.exe
[2013.08.31 13:47:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Desktop\Fink - Wheels Turn Beneath My Fett
[2013.08.30 20:17:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Application Data\vlc
[2013.08.29 11:20:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Desktop\RK_Quarantine
[2013.08.27 15:56:28 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2013.08.26 16:26:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Application Data\Malwarebytes
[2013.08.26 16:25:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2013.08.26 16:20:50 | 010,285,040 | ---- | C] (Malwarebytes Corporation ) -- C:\Documents and Settings\Brat\Desktop\mbam-setup-1.75.0.1300.exe
[2013.08.26 13:24:59 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Application Data\CanonIJEPPEX
[2013.08.26 13:24:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Local Settings\Application Data\Canon Easy-PhotoPrint EX
[2013.08.21 19:55:05 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Brat\Recent
[2013.08.21 19:32:14 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Brat\My Documents\My Videos
[2013.08.21 19:32:14 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents\My Videos
[2013.08.21 19:32:14 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Brat\Start Menu\Programs\Administrative Tools
[2013.08.21 19:31:35 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2013.08.21 19:31:34 | 000,000,000 | ---D | C] -- C:\rsit
[2013.08.21 19:30:56 | 000,688,992 | R--- | C] (Swearware) -- C:\Documents and Settings\Brat\Desktop\dds.exe
[2013.08.20 19:34:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Application Data\PlaneShift
[2013.08.20 19:34:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Application Data\CrystalSpace
[2013.08.20 19:34:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Application Data\CrystalApp
[2013.08.20 19:34:11 | 000,444,952 | ---- | C] (Creative Labs) -- C:\WINDOWS\System32\wrap_oal.dll
[2013.08.20 19:34:11 | 000,109,080 | ---- | C] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\WINDOWS\System32\OpenAL32.dll
[2013.08.20 19:34:11 | 000,000,000 | ---D | C] -- C:\Program Files\OpenAL
[2013.08.20 19:32:19 | 000,000,000 | ---D | C] -- C:\Program Files\PlaneShift
[2013.08.20 14:26:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\CanonIJ
[2013.08.20 14:25:30 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Application Data\CanonIJScan
[2013.08.19 23:54:07 | 000,016,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spmsg.dll
[2013.08.19 19:28:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Application Data\Sony Corporation
[2013.08.19 19:28:30 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Sony Shared
[2013.08.19 19:26:10 | 000,000,000 | ---D | C] -- C:\WINDOWS\SxsCaPendDel
[2013.08.19 19:24:22 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\UMDF
[2013.08.19 19:24:22 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\LogFiles
[2013.08.17 11:39:25 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2013.08.15 18:13:03 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation
[2013.08.15 18:07:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\2K Games
[2013.08.15 17:56:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Local Settings\Application Data\2K Games
[2013.08.15 17:53:01 | 000,527,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAudio2_7.dll
[2013.08.15 17:53:01 | 000,239,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine3_7.dll
[2013.08.15 17:53:01 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAPOFX1_5.dll
[2013.08.15 17:53:00 | 002,106,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_43.dll
[2013.08.15 17:53:00 | 001,868,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dcsx_43.dll
[2013.08.15 17:52:59 | 001,998,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DX9_43.dll
[2013.08.15 17:52:59 | 000,470,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_43.dll
[2013.08.15 17:52:59 | 000,248,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx11_43.dll
[2013.08.15 17:45:28 | 000,000,000 | ---D | C] -- C:\Program Files\2K Games
[2013.08.15 16:32:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\3DO
[2013.08.15 16:32:15 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\3DO Shared
[2013.08.15 16:32:15 | 000,000,000 | ---D | C] -- C:\Program Files\3DO
[2013.08.15 16:32:01 | 000,306,688 | ---- | C] (InstallShield Software Corporation) -- C:\WINDOWS\IsUninst.exe
[2013.08.15 16:25:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Local Settings\Application Data\Skyrim
[2013.08.15 16:25:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\My Documents\My Games
[2013.08.15 16:23:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Razor 1911
[2013.08.15 16:23:14 | 000,528,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAudio2_6.dll
[2013.08.15 16:23:14 | 000,238,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine3_6.dll
[2013.08.15 16:23:14 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAPOFX1_4.dll
[2013.08.15 16:23:14 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\X3DAudio1_7.dll
[2013.08.15 16:23:13 | 000,515,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAudio2_5.dll
[2013.08.15 16:23:13 | 000,238,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine3_5.dll
[2013.08.15 16:23:12 | 005,501,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dcsx_42.dll
[2013.08.15 16:23:12 | 001,974,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_42.dll
[2013.08.15 16:23:12 | 000,235,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx11_42.dll
[2013.08.15 16:23:11 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_42.dll
[2013.08.15 16:23:10 | 004,178,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DX9_41.dll
[2013.08.15 16:23:10 | 001,846,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_41.dll
[2013.08.15 16:23:10 | 000,517,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAudio2_4.dll
[2013.08.15 16:23:10 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_41.dll
[2013.08.15 16:23:10 | 000,069,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAPOFX1_3.dll
[2013.08.15 16:23:09 | 000,235,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine3_4.dll
[2013.08.15 16:23:09 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\X3DAudio1_6.dll
[2013.08.15 16:23:08 | 004,379,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DX9_40.dll
[2013.08.15 16:23:08 | 002,036,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_40.dll
[2013.08.15 16:23:08 | 000,452,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_40.dll
[2013.08.15 16:23:07 | 000,514,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAudio2_3.dll
[2013.08.15 16:23:07 | 000,235,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine3_3.dll
[2013.08.15 16:23:07 | 000,070,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAPOFX1_2.dll
[2013.08.15 16:23:06 | 000,509,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAudio2_2.dll
[2013.08.15 16:23:06 | 000,068,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAPOFX1_1.dll
[2013.08.15 16:23:06 | 000,023,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\X3DAudio1_5.dll
[2013.08.15 16:23:05 | 003,851,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DX9_39.dll
[2013.08.15 16:23:05 | 001,493,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_39.dll
[2013.08.15 16:23:05 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_39.dll
[2013.08.15 16:23:05 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine3_2.dll
[2013.08.15 16:23:04 | 000,507,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAudio2_1.dll
[2013.08.15 16:23:04 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine3_1.dll
[2013.08.15 16:23:04 | 000,065,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAPOFX1_0.dll
[2013.08.15 16:23:04 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\X3DAudio1_4.dll
[2013.08.15 16:23:03 | 003,850,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DX9_38.dll
[2013.08.15 16:23:03 | 001,491,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_38.dll
[2013.08.15 16:23:03 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_38.dll
[2013.08.15 16:23:02 | 000,479,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAudio2_0.dll
[2013.08.15 16:23:02 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine3_0.dll
[2013.08.15 16:23:02 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\X3DAudio1_3.dll
[2013.08.15 16:23:01 | 003,786,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DX9_37.dll
[2013.08.15 16:23:01 | 001,420,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_37.dll
[2013.08.15 16:23:01 | 000,462,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_37.dll
[2013.08.15 16:23:00 | 000,267,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_10.dll
[2013.08.15 16:22:59 | 003,734,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_36.dll
[2013.08.15 16:22:59 | 001,374,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_36.dll
[2013.08.15 16:22:59 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_36.dll
[2013.08.15 16:22:59 | 000,267,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_9.dll
[2013.08.15 16:22:58 | 003,727,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_35.dll
[2013.08.15 16:22:58 | 001,358,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_35.dll
[2013.08.15 16:22:58 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_35.dll
[2013.08.15 16:22:57 | 000,266,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_8.dll
[2013.08.15 16:22:57 | 000,017,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\X3DAudio1_2.dll
[2013.08.15 16:22:56 | 003,497,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_34.dll
[2013.08.15 16:22:56 | 001,124,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_34.dll
[2013.08.15 16:22:56 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_34.dll
[2013.08.15 16:22:56 | 000,081,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xinput1_3.dll
[2013.08.15 16:22:55 | 000,261,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_7.dll
[2013.08.15 16:22:54 | 001,123,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_33.dll
[2013.08.15 16:22:54 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_33.dll
[2013.08.15 16:22:53 | 003,495,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_33.dll
[2013.08.15 16:22:53 | 000,255,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_6.dll
[2013.08.15 16:22:52 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_32.dll
[2013.08.15 16:22:52 | 000,251,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_5.dll
[2013.08.15 16:22:52 | 000,237,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_4.dll
[2013.08.15 16:22:52 | 000,015,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\x3daudio1_1.dll
[2013.08.15 16:22:51 | 000,236,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_3.dll
[2013.08.15 16:22:51 | 000,062,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xinput1_2.dll
[2013.08.15 16:22:50 | 000,230,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_2.dll
[2013.08.15 16:22:50 | 000,062,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xinput1_1.dll
[2013.08.15 16:22:49 | 000,229,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_1.dll
[2013.08.15 16:22:41 | 002,388,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_30.dll
[2013.08.15 16:22:40 | 002,332,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_29.dll
[2013.08.15 16:22:40 | 002,323,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_28.dll
[2013.08.15 16:22:40 | 000,230,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_0.dll
[2013.08.15 16:22:40 | 000,014,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\x3daudio1_0.dll
[2013.08.15 16:22:39 | 002,319,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_27.dll
[2013.08.15 16:22:39 | 000,061,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xinput9_1_0.dll
[2013.08.15 16:22:38 | 002,337,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_25.dll
[2013.08.15 16:22:38 | 002,297,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_26.dll
[2013.08.15 16:22:37 | 002,222,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_24.dll
[2013.08.15 16:12:25 | 000,000,000 | ---D | C] -- C:\Program Files\The Elder Scrolls V Skyrim
[2013.08.15 13:29:42 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\MRT
[2013.08.13 21:06:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\NtmsData
[2013.08.13 16:48:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Local Settings\Application Data\ACD Systems
[2013.08.13 16:48:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Application Data\ACD Systems
[2013.08.11 15:37:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Local Settings\Application Data\CyberLink
[2013.08.08 01:02:51 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\XPSViewer
[2013.08.08 01:02:44 | 000,000,000 | ---D | C] -- C:\Program Files\Reference Assemblies
[2013.08.08 01:02:19 | 001,676,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xpssvcs.dll
[2013.08.08 01:02:19 | 001,676,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\xpssvcs.dll
[2013.08.08 01:02:19 | 000,597,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\printfilterpipelinesvc.exe
[2013.08.08 01:02:19 | 000,575,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\xpsshhdr.dll
[2013.08.08 01:02:19 | 000,117,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\prntvpt.dll
[2013.08.08 01:02:19 | 000,089,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\filterpipelineprintproc.dll
[2013.08.07 13:43:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Local Settings\Application Data\GHISLER
[2013.08.07 02:47:59 | 000,327,400 | ---- | C] (Realtek Semiconductor Corporation ) -- C:\WINDOWS\System32\drivers\Rtenicxp.sys
[2013.08.07 02:47:59 | 000,102,416 | ---- | C] (Realtek Semiconductor Corporation) -- C:\WINDOWS\System32\RTNUninst32.dll
[2013.08.07 02:47:59 | 000,080,488 | ---- | C] (Realtek Semiconductor Corporation) -- C:\WINDOWS\System32\RtNicProp32.dll
[2013.08.07 02:47:54 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek
[2013.08.07 02:42:47 | 000,000,000 | ---D | C] -- C:\Intel
[2013.08.07 02:42:43 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information
[2013.08.07 02:42:43 | 000,000,000 | ---D | C] -- C:\Program Files\Intel
[2013.08.07 02:42:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Application Data\InstallShield
[2013.08.07 02:16:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Application Data\Identities
[2013.08.07 02:16:11 | 000,000,000 | -H-D | C] -- C:\Program Files\Uninstall Information
[2013.08.07 02:16:09 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Brat\My Documents\My Pictures
[2013.08.07 02:16:09 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Brat\My Documents\My Music
[2013.08.07 02:16:01 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Brat\Application Data\Microsoft
[2013.08.07 02:16:01 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Brat\SendTo
[2013.08.07 02:16:01 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Brat\Application Data
[2013.08.07 02:16:01 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Brat\Start Menu\Programs\Startup
[2013.08.07 02:16:01 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Brat\Start Menu
[2013.08.07 02:16:01 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Brat\My Documents
[2013.08.07 02:16:01 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Brat\Favorites
[2013.08.07 02:16:01 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Brat\Start Menu\Programs\Accessories
[2013.08.07 02:16:01 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Brat\Cookies
[2013.08.07 02:16:01 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Brat\Templates
[2013.08.07 02:16:01 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Brat\PrintHood
[2013.08.07 02:16:01 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Brat\NetHood
[2013.08.07 02:16:01 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Brat\Local Settings
[2013.08.07 02:16:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Local Settings\Application Data\Microsoft
[2013.08.07 02:16:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Desktop
[2013.08.07 02:12:45 | 000,000,000 | ---D | C] -- C:\WINDOWS\SoftwareDistribution
[2013.08.07 02:12:43 | 000,000,000 | --SD | C] -- C:\WINDOWS\System32\Microsoft
[2013.08.07 02:12:43 | 000,000,000 | --SD | C] -- C:\Documents and Settings\LocalService\Application Data\Microsoft
[2013.08.07 02:12:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft
[2013.08.07 02:12:29 | 000,000,000 | --SD | C] -- C:\Documents and Settings\NetworkService\Application Data\Microsoft
[2013.08.07 02:12:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft
[2013.08.07 02:11:30 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winzm.ime
[2013.08.07 02:11:30 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winsp.ime
[2013.08.07 02:11:30 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winpy.ime
[2013.08.07 02:11:30 | 000,079,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winar30.ime
[2013.08.07 02:11:30 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wingb.ime
[2013.08.07 02:11:30 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winime.ime
[2013.08.07 02:11:29 | 000,086,073 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\voicesub.dll
[2013.08.07 02:11:29 | 000,048,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\w32.dll
[2013.08.07 02:11:29 | 000,041,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\weitekp9.dll
[2013.08.07 02:11:29 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\weitekp9.sys
[2013.08.07 02:11:28 | 000,426,041 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\voicepad.dll
[2013.08.07 02:11:28 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\uniime.dll
[2013.08.07 02:11:28 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\unicdime.ime
[2013.08.07 02:11:28 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tsprof.exe
[2013.08.07 02:11:27 | 000,571,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tintlgnt.ime
[2013.08.07 02:11:27 | 000,455,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tintsetp.exe
[2013.08.07 02:11:27 | 000,185,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\thawbrkr.dll
[2013.08.07 02:11:27 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tintlphr.exe
[2013.08.07 02:11:27 | 000,021,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdipx.sys
[2013.08.07 02:11:27 | 000,019,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdspx.sys
[2013.08.07 02:11:27 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tmigrate.dll
[2013.08.07 02:11:26 | 000,101,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\srusbusd.dll
[2013.08.07 02:11:26 | 000,013,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdasync.sys
[2013.08.07 02:11:25 | 000,143,422 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\softkey.dll
[2013.08.07 02:11:25 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpstup.dll
[2013.08.07 02:11:25 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_snprfdll.dll
[2013.08.07 02:11:24 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smierrsm.dll
[2013.08.07 02:11:24 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_smtpctrs.dll
[2013.08.07 02:11:24 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smimsgif.dll
[2013.08.07 02:11:24 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smierrsy.dll
[2013.08.07 02:11:23 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm9aw.dll
[2013.08.07 02:11:23 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smb6w.dll
[2013.08.07 02:11:23 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sma3w.dll
[2013.08.07 02:11:23 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm87w.dll
[2013.08.07 02:11:23 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm81w.dll
[2013.08.07 02:11:23 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm8cw.dll
[2013.08.07 02:11:23 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm93w.dll
[2013.08.07 02:11:23 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm92w.dll
[2013.08.07 02:11:23 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm90w.dll
[2013.08.07 02:11:23 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm8dw.dll
[2013.08.07 02:11:23 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm8aw.dll
[2013.08.07 02:11:23 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm89w.dll
[2013.08.07 02:11:23 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm59w.dll
[2013.08.07 02:11:23 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\simptcp.dll
[2013.08.07 02:11:22 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_scripto.dll
[2013.08.07 02:11:22 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_seos.dll
[2013.08.07 02:11:21 | 000,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia330.dll
[2013.08.07 02:11:21 | 000,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia001.dll
[2013.08.07 02:11:21 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\romanime.ime
[2013.08.07 02:11:20 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\quick.ime
[2013.08.07 02:11:20 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_regtrace.exe
[2013.08.07 02:11:20 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\quser.exe
[2013.08.07 02:11:20 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\register.exe
[2013.08.07 02:11:19 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmxviceo.dll
[2013.08.07 02:11:19 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmigrate.dll
[2013.08.07 02:11:19 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmxmcro.dll
[2013.08.07 02:11:19 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\query.exe
[2013.08.07 02:11:19 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmxgl.dll
[2013.08.07 02:11:18 | 000,482,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pintlgnt.ime
[2013.08.07 02:11:18 | 000,079,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\phon.ime
[2013.08.07 02:11:18 | 000,070,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pintlphr.exe
[2013.08.07 02:11:18 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pintlcsd.dll
[2013.08.07 02:11:18 | 000,036,927 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\padrs411.dll
[2013.08.07 02:11:18 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\padrs404.dll
[2013.08.07 02:11:18 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\padrs804.dll
[2013.08.07 02:11:18 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\padrs412.dll
[2013.08.07 02:11:17 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_ntfsdrv.dll
[2013.08.07 02:11:15 | 000,229,439 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\multibox.dll
[2013.08.07 02:11:14 | 001,875,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msir3jp.lex
[2013.08.07 02:11:14 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msir3jp.dll
[2013.08.07 02:11:12 | 000,092,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mga.sys
[2013.08.07 02:11:12 | 000,092,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mga.dll
[2013.08.07 02:11:11 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_mailmsg.dll
[2013.08.07 02:11:10 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\korwbrkr.dll
[2013.08.07 02:11:10 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth3.dll
[2013.08.07 02:11:10 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth2.dll
[2013.08.07 02:11:10 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdvntc.dll
[2013.08.07 02:11:10 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdusa.dll
[2013.08.07 02:11:10 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdurdu.dll
[2013.08.07 02:11:10 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth1.dll
[2013.08.07 02:11:10 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth0.dll
[2013.08.07 02:11:09 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdnecat.dll
[2013.08.07 02:11:09 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdnecnt.dll
[2013.08.07 02:11:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdnec95.dll
[2013.08.07 02:11:09 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinpun.dll
[2013.08.07 02:11:09 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdsyr2.dll
[2013.08.07 02:11:09 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdsyr1.dll
[2013.08.07 02:11:09 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdintel.dll
[2013.08.07 02:11:09 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdintam.dll
[2013.08.07 02:11:09 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinmar.dll
[2013.08.07 02:11:09 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinkan.dll
[2013.08.07 02:11:09 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinhin.dll
[2013.08.07 02:11:09 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinguj.dll
[2013.08.07 02:11:09 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdindev.dll
[2013.08.07 02:11:09 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdheb.dll
[2013.08.07 02:11:08 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\jupiw.dll
[2013.08.07 02:11:08 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbd101a.dll
[2013.08.07 02:11:08 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdfa.dll
[2013.08.07 02:11:08 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbddiv2.dll
[2013.08.07 02:11:08 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbddiv1.dll
[2013.08.07 02:11:08 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbda3.dll
[2013.08.07 02:11:08 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbda2.dll
[2013.08.07 02:11:08 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbda1.dll
[2013.08.07 02:11:08 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdgeo.dll
[2013.08.07 02:11:08 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdarmw.dll
[2013.08.07 02:11:08 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdarme.dll
[2013.08.07 02:11:07 | 000,471,102 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imskdic.dll
[2013.08.07 02:11:07 | 000,315,455 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imskf.dll
[2013.08.07 02:11:07 | 000,274,489 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjputyc.dll
[2013.08.07 02:11:07 | 000,102,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imlang.dll
[2013.08.07 02:11:07 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imkrinst.exe
[2013.08.07 02:11:06 | 000,716,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpcus.dll
[2013.08.07 02:11:06 | 000,307,257 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpdct.exe
[2013.08.07 02:11:06 | 000,262,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjputy.exe
[2013.08.07 02:11:06 | 000,233,527 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjprw.exe
[2013.08.07 02:11:06 | 000,208,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpmig.exe
[2013.08.07 02:11:06 | 000,155,705 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpdsvr.exe
[2013.08.07 02:11:06 | 000,081,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpdct.dll
[2013.08.07 02:11:06 | 000,057,398 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpdadm.exe
[2013.08.07 02:11:06 | 000,045,109 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpuex.exe
[2013.08.07 02:11:05 | 000,811,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjp81k.dll
[2013.08.07 02:11:05 | 000,368,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpcic.dll
[2013.08.07 02:11:05 | 000,340,023 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjp81.ime
[2013.08.07 02:11:05 | 000,311,359 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imepadsv.exe
[2013.08.07 02:11:05 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imekrcic.dll
[2013.08.07 02:11:05 | 000,102,463 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imepadsm.dll
[2013.08.07 02:11:05 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imekr61.ime
[2013.08.07 02:11:05 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imekrmbx.dll
[2013.08.07 02:11:05 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imekrmig.exe
[2013.08.07 02:11:02 | 010,129,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hwxkor.dll
[2013.08.07 02:10:57 | 010,096,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hwxcht.dll
[2013.08.07 02:10:56 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hanjadic.dll
[2013.08.07 02:10:56 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxssend.exe
[2013.08.07 02:10:55 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsclntr.dll
[2013.08.07 02:10:55 | 000,111,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxscfgwz.dll
[2013.08.07 02:10:55 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsroute.dll
[2013.08.07 02:10:55 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ftlx041e.dll
[2013.08.07 02:10:54 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_fcachdll.dll
[2013.08.07 02:10:54 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\flattemp.exe
[2013.08.07 02:10:53 | 000,514,587 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\edb500.dll
[2013.08.07 02:10:53 | 000,057,856 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esuimgd.dll
[2013.08.07 02:10:53 | 000,045,056 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esunid.dll
[2013.08.07 02:10:53 | 000,031,744 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esucmd.dll
[2013.08.07 02:10:53 | 000,025,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\et4000.sys
[2013.08.07 02:10:51 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dayi.ime
[2013.08.07 02:10:50 | 000,480,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cintsetp.exe
[2013.08.07 02:10:50 | 000,198,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cintime.dll
[2013.08.07 02:10:50 | 000,057,399 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cplexe.exe
[2013.08.07 02:10:50 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cintlgnt.ime
[2013.08.07 02:10:50 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cprofile.exe
[2013.08.07 02:10:49 | 001,677,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chsbrkr.dll
[2013.08.07 02:10:49 | 000,838,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chtbrkr.dll
[2013.08.07 02:10:49 | 000,097,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chtmbx.dll
[2013.08.07 02:10:49 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chtskdic.dll
[2013.08.07 02:10:49 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chgusr.exe
[2013.08.07 02:10:48 | 000,078,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chajei.ime
[2013.08.07 02:10:48 | 000,054,528 | ---- | C] (Philips Semiconductors GmbH) -- C:\WINDOWS\System32\dllcache\cap7146.sys
[2013.08.07 02:10:48 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chgport.exe
[2013.08.07 02:10:48 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chglogon.exe
[2013.08.07 02:10:48 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\c_iscii.dll
[2013.08.07 02:10:48 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\change.exe
[2013.08.07 02:10:47 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\c_is2022.dll
[2013.08.07 02:10:43 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_aqadmin.dll
[2013.08.07 02:10:42 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_adsiisex.dll

Re: Preventivku prosím

Napsal: 01 zář 2013 14:48
od kuntakinte
[2013.08.07 02:10:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\xircom
[2013.08.07 02:10:34 | 000,000,000 | ---D | C] -- C:\Program Files\xerox
[2013.08.07 02:10:34 | 000,000,000 | ---D | C] -- C:\Program Files\microsoft frontpage
[2013.08.07 02:10:25 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$hf_mig$
[2013.08.07 02:10:03 | 000,112,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mapi32.dll
[2013.08.07 02:09:36 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\DRM
[2013.08.07 02:09:30 | 000,000,000 | --SD | C] -- C:\WINDOWS\Downloaded Program Files
[2013.08.07 02:09:30 | 000,000,000 | R--D | C] -- C:\WINDOWS\Offline Web Pages
[2013.08.07 02:09:23 | 000,000,000 | -H-D | C] -- C:\Program Files\WindowsUpdate
[2013.08.07 02:09:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DirectX
[2013.08.07 02:08:51 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\atrace.dll
[2013.08.07 02:08:51 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\atrace.dll
[2013.08.07 02:08:50 | 000,099,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\helphost.exe
[2013.08.07 02:08:50 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\notiflag.exe
[2013.08.07 02:08:50 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\brpinfo.dll
[2013.08.07 02:08:50 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hcappres.dll
[2013.08.07 02:08:43 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\srdiag.exe
[2013.08.07 02:08:43 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\nmevtmsg.dll
[2013.08.07 02:08:43 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nmevtmsg.dll
[2013.08.07 02:08:42 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\acctres.dll
[2013.08.07 02:08:42 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\acctres.dll
[2013.08.07 02:08:42 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msinfo32.exe
[2013.08.07 02:08:42 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wb32.exe
[2013.08.07 02:08:42 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cb32.exe
[2013.08.07 02:08:41 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Services
[2013.08.07 02:08:39 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icwtutor.exe
[2013.08.07 02:08:39 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icwres.dll
[2013.08.07 02:08:39 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\trialoc.dll
[2013.08.07 02:08:39 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\isignup.exe
[2013.08.07 02:08:39 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\icfgnt5.dll
[2013.08.07 02:08:39 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icfgnt5.dll
[2013.08.07 02:08:39 | 000,000,000 | --SD | C] -- C:\WINDOWS\Tasks
[2013.08.07 02:08:38 | 000,235,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mssoap1.dll
[2013.08.07 02:08:38 | 000,093,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieinfo5.ocx
[2013.08.07 02:08:38 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wisc10.dll
[2013.08.07 02:08:38 | 000,023,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mssoapr.dll
[2013.08.07 02:08:38 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\MSSoap
[2013.08.07 02:08:35 | 000,000,000 | ---D | C] -- C:\WINDOWS\srchasst
[2013.08.07 02:08:35 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Macromed
[2013.08.07 02:08:34 | 000,774,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\setup_wm.exe
[2013.08.07 02:08:34 | 000,368,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mpvis.dll
[2013.08.07 02:08:34 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmpns.dll
[2013.08.07 02:08:34 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmpband.dll
[2013.08.07 02:08:34 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\custsat.dll
[2013.08.07 02:08:33 | 000,786,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\migrate.exe
[2013.08.07 02:08:33 | 000,364,544 | ---- | C] (Microsoft Corporation (written by Digital Renaissance Inc.)) -- C:\WINDOWS\System32\dllcache\npdsplay.dll
[2013.08.07 02:08:33 | 000,226,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\npdrmv2.dll
[2013.08.07 02:08:33 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmplayer.exe
[2013.08.07 02:08:33 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\npwmsdrm.dll
[2013.08.07 02:08:33 | 000,004,639 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mplayer2.exe
[2013.08.07 02:08:32 | 001,933,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wuaueng.dll
[2013.08.07 02:08:32 | 000,577,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wuapi.dll
[2013.08.07 02:08:32 | 000,577,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wuapi.dll
[2013.08.07 02:08:32 | 000,329,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wucltui.dll
[2013.08.07 02:08:32 | 000,329,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wucltui.dll
[2013.08.07 02:08:32 | 000,219,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wuaucpl.cpl
[2013.08.07 02:08:32 | 000,210,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wuweb.dll
[2013.08.07 02:08:32 | 000,183,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wuaueng1.dll
[2013.08.07 02:08:32 | 000,165,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wuauclt1.exe
[2013.08.07 02:08:32 | 000,053,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wuauclt.exe
[2013.08.07 02:08:32 | 000,035,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wups.dll
[2013.08.07 02:08:32 | 000,035,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wups.dll
[2013.08.07 02:08:32 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\bitsprx2.dll
[2013.08.07 02:08:32 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\bitsprx3.dll
[2013.08.07 02:08:31 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qmgrprxy.dll
[2013.08.07 02:08:29 | 000,000,000 | ---D | C] -- C:\Program Files\Movie Maker
[2013.08.07 02:08:25 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\safrslv.dll
[2013.08.07 02:08:25 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\safrcdlg.dll
[2013.08.07 02:08:25 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\racpldlg.dll
[2013.08.07 02:08:25 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\safrdm.dll
[2013.08.07 02:08:23 | 000,239,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\srrstr.dll
[2013.08.07 02:08:23 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\fltmc.exe
[2013.08.07 02:08:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Restore
[2013.08.07 02:08:22 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ils.dll
[2013.08.07 02:08:22 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msconf.dll
[2013.08.07 02:08:22 | 000,034,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mnmdd.dll
[2013.08.07 02:08:22 | 000,032,768 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\isrdbg32.dll
[2013.08.07 02:08:22 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\nmmkcert.dll
[2013.08.07 02:08:19 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msoeacct.dll
[2013.08.07 02:08:19 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msoert2.dll
[2013.08.07 02:08:19 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\inetres.dll
[2013.08.07 02:08:19 | 000,000,000 | ---D | C] -- C:\Program Files\NetMeeting
[2013.08.07 02:08:17 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\isign32.dll
[2013.08.07 02:08:17 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\icwdial.dll
[2013.08.07 02:08:17 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\icwphbk.dll
[2013.08.07 02:08:17 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mstinit.exe
[2013.08.07 02:08:17 | 000,000,000 | ---D | C] -- C:\Program Files\Outlook Express
[2013.08.07 02:08:16 | 000,274,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\inetcfg.dll
[2013.08.07 02:08:12 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\System
[2013.08.07 02:08:09 | 000,000,000 | ---D | C] -- C:\Program Files\Internet Explorer
[2013.08.07 02:08:08 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents\My Pictures
[2013.08.07 02:07:59 | 000,000,000 | ---D | C] -- C:\Program Files\ComPlus Applications
[2013.08.07 02:07:54 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Administrative Tools
[2013.08.07 02:07:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\Registration
[2013.08.07 02:07:35 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents\My Music
[2013.08.07 02:07:35 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Games
[2013.08.07 02:07:35 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Media Player
[2013.08.07 02:07:35 | 000,000,000 | ---D | C] -- C:\Program Files\Online Services
[2013.08.07 02:07:30 | 001,817,687 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\bckgres.dll
[2013.08.07 02:07:30 | 000,753,236 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rvseres.dll
[2013.08.07 02:07:30 | 000,082,501 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\bckg.dll
[2013.08.07 02:07:30 | 000,048,706 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rvse.dll
[2013.08.07 02:07:30 | 000,042,577 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\bckgzm.exe
[2013.08.07 02:07:30 | 000,042,574 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rvsezm.exe
[2013.08.07 02:07:30 | 000,000,000 | ---D | C] -- C:\Program Files\Messenger
[2013.08.07 02:07:29 | 002,178,131 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shvlres.dll
[2013.08.07 02:07:29 | 001,175,635 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hrtzres.dll
[2013.08.07 02:07:29 | 000,780,885 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chkrres.dll
[2013.08.07 02:07:29 | 000,066,113 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shvl.dll
[2013.08.07 02:07:29 | 000,057,409 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hrtz.dll
[2013.08.07 02:07:29 | 000,042,575 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chkrzm.exe
[2013.08.07 02:07:29 | 000,042,573 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shvlzm.exe
[2013.08.07 02:07:29 | 000,042,573 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hrtzzm.exe
[2013.08.07 02:07:29 | 000,040,515 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chkr.dll
[2013.08.07 02:07:29 | 000,032,339 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\uniansi.dll
[2013.08.07 02:07:29 | 000,013,894 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\zonelibm.dll
[2013.08.07 02:07:29 | 000,004,677 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\zeeverm.dll
[2013.08.07 02:07:28 | 001,039,955 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cmnresm.dll
[2013.08.07 02:07:28 | 000,217,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cmnclim.dll
[2013.08.07 02:07:28 | 000,113,222 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\zoneclim.dll
[2013.08.07 02:07:28 | 000,041,029 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\zcorem.dll
[2013.08.07 02:07:27 | 000,036,937 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\zclientm.exe
[2013.08.07 02:07:27 | 000,029,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\znetm.dll
[2013.08.07 02:07:27 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\write.exe
[2013.08.07 02:07:27 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\write.exe
[2013.08.07 02:07:27 | 000,000,000 | ---D | C] -- C:\Program Files\MSN Gaming Zone
[2013.08.07 02:07:19 | 000,227,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\avtapi.dll
[2013.08.07 02:07:19 | 000,227,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\avtapi.dll
[2013.08.07 02:07:19 | 000,138,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\sndvol32.exe
[2013.08.07 02:07:19 | 000,138,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sndvol32.exe
[2013.08.07 02:07:19 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\avwav.dll
[2013.08.07 02:07:19 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\avwav.dll
[2013.08.07 02:07:19 | 000,044,544 | ---- | C] (Hilgraeve, Inc.) -- C:\WINDOWS\System32\hticons.dll
[2013.08.07 02:07:19 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\winchat.exe
[2013.08.07 02:07:19 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winchat.exe
[2013.08.07 02:07:19 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\avmeter.dll
[2013.08.07 02:07:19 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\avmeter.dll
[2013.08.07 02:07:19 | 000,013,312 | ---- | C] (Hilgraeve, Inc.) -- C:\WINDOWS\System32\dllcache\htrn_jis.dll
[2013.08.07 02:07:13 | 000,605,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\getuname.dll
[2013.08.07 02:07:13 | 000,605,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\getuname.dll
[2013.08.07 02:07:12 | 000,119,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\winmine.exe
[2013.08.07 02:07:12 | 000,119,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winmine.exe
[2013.08.07 02:07:12 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\calc.exe
[2013.08.07 02:07:12 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\calc.exe
[2013.08.07 02:07:12 | 000,080,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\charmap.exe
[2013.08.07 02:07:12 | 000,080,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\charmap.exe
[2013.08.07 02:07:12 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\sol.exe
[2013.08.07 02:07:12 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sol.exe
[2013.08.07 02:07:11 | 000,126,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mshearts.exe
[2013.08.07 02:07:11 | 000,126,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mshearts.exe
[2013.08.07 02:07:11 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\freecell.exe
[2013.08.07 02:07:11 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\freecell.exe
[2013.08.07 02:07:11 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\regini.exe
[2013.08.07 02:07:11 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\regini.exe
[2013.08.07 02:07:11 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tsshutdn.exe
[2013.08.07 02:07:11 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tsshutdn.exe
[2013.08.07 02:07:11 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tskill.exe
[2013.08.07 02:07:11 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tskill.exe
[2013.08.07 02:07:11 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rwinsta.exe
[2013.08.07 02:07:11 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rwinsta.exe
[2013.08.07 02:07:11 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tsdiscon.exe
[2013.08.07 02:07:11 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tsdiscon.exe
[2013.08.07 02:07:11 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tscon.exe
[2013.08.07 02:07:11 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tscon.exe
[2013.08.07 02:07:11 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\shadow.exe
[2013.08.07 02:07:11 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shadow.exe
[2013.08.07 02:07:11 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\reset.exe
[2013.08.07 02:07:11 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\reset.exe
[2013.08.07 02:07:11 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdpcfgex.dll
[2013.08.07 02:07:11 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rdpcfgex.dll
[2013.08.07 02:07:10 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qwinsta.exe
[2013.08.07 02:07:10 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\qwinsta.exe
[2013.08.07 02:07:10 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msg.exe
[2013.08.07 02:07:10 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msg.exe
[2013.08.07 02:07:10 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mtsadmin.tlb
[2013.08.07 02:07:10 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qappsrv.exe
[2013.08.07 02:07:10 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\qappsrv.exe
[2013.08.07 02:07:10 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cdmodem.dll
[2013.08.07 02:07:10 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\cdmodem.dll
[2013.08.07 02:07:10 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\logoff.exe
[2013.08.07 02:07:10 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\logoff.exe
[2013.08.07 02:07:09 | 000,167,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\comsnap.dll
[2013.08.07 02:07:09 | 000,097,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\comrepl.dll
[2013.08.07 02:07:09 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\stclient.dll
[2013.08.07 02:07:09 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mtxlegih.dll
[2013.08.07 02:07:09 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mtxdm.dll
[2013.08.07 02:07:09 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\comaddin.dll
[2013.08.07 02:07:09 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dcomcnfg.exe
[2013.08.07 02:07:09 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mtxex.dll
[2013.08.07 02:07:08 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmi2xml.dll
[2013.08.07 02:07:06 | 000,075,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmipicmp.dll
[2013.08.07 02:07:06 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmimsg.dll
[2013.08.07 02:07:06 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmitimep.dll
[2013.08.07 02:07:05 | 000,273,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msiprov.dll
[2013.08.07 02:07:05 | 000,120,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dsprov.dll
[2013.08.07 02:07:05 | 000,116,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\updprov.dll
[2013.08.07 02:07:05 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tmplprov.dll
[2013.08.07 02:07:05 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemdisp.tlb
[2013.08.07 02:07:05 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\trnsprov.dll
[2013.08.07 02:07:05 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fwdprov.dll
[2013.08.07 02:07:05 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smtpcons.dll
[2013.08.07 02:07:05 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemads.tlb
[2013.08.07 02:07:05 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\unsecapp.exe
[2013.08.07 02:07:05 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winmgmtr.dll
[2013.08.07 02:07:05 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winmgmt.exe
[2013.08.07 02:07:05 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemads.dll
[2013.08.07 02:06:58 | 000,000,000 | ---D | C] -- C:\Program Files\MSN
[2013.08.07 02:06:57 | 000,184,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\accwiz.exe
[2013.08.07 02:06:57 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\sndrec32.exe
[2013.08.07 02:06:57 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\access.cpl
[2013.08.07 02:06:56 | 000,347,136 | ---- | C] (Hilgraeve, Inc.) -- C:\WINDOWS\System32\hypertrm.dll
[2013.08.07 02:06:56 | 000,343,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mspaint.exe
[2013.08.07 02:06:56 | 000,123,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mplay32.exe
[2013.08.07 02:06:56 | 000,123,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mplay32.exe
[2013.08.07 02:06:56 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\clipbrd.exe
[2013.08.07 02:06:56 | 000,000,000 | ---D | C] -- C:\Program Files\Windows NT
[2013.08.07 02:06:55 | 000,655,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mstscax.dll
[2013.08.07 02:06:55 | 000,538,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spider.exe
[2013.08.07 02:06:55 | 000,407,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mstsc.exe
[2013.08.07 02:06:55 | 000,093,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tscfgwmi.dll
[2013.08.07 02:06:55 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdshost.exe
[2013.08.07 02:06:55 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdsaddin.exe
[2013.08.07 02:06:54 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msdtcuiu.dll
[2013.08.07 02:06:54 | 000,147,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdchost.dll
[2013.08.07 02:06:54 | 000,087,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdpwsx.dll
[2013.08.07 02:06:54 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdpclip.exe
[2013.08.07 02:06:54 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tscupgrd.exe
[2013.08.07 02:06:54 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tscupgrd.exe
[2013.08.07 02:06:54 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\cfgbkend.dll
[2013.08.07 02:06:54 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdpsnd.dll
[2013.08.07 02:06:54 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qprocess.exe
[2013.08.07 02:06:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\MsDtc
[2013.08.07 02:06:53 | 000,428,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msdtcprx.dll
[2013.08.07 02:06:52 | 000,956,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msdtctm.dll
[2013.08.07 02:06:52 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msdtclog.dll
[2013.08.07 02:06:52 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xolehlp.dll
[2013.08.07 02:06:51 | 000,539,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\comuid.dll
[2013.08.07 02:06:51 | 000,110,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\clbcatex.dll
[2013.08.07 02:06:51 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\catsrvps.dll
[2013.08.07 02:06:51 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Com
[2013.08.07 02:06:47 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\servdeps.dll
[2013.08.07 02:06:47 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mmfutil.dll
[2013.08.07 02:06:46 | 000,185,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\cmprops.dll
[2013.08.07 02:06:46 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\licwmi.dll
[2013.08.07 02:06:09 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Accessories
[2013.08.06 22:29:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Desktop\Registry
[2013.08.06 22:17:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Application Data\Skype
[2013.08.06 22:16:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Skype
[2013.08.06 22:16:52 | 000,000,000 | R--D | C] -- C:\Program Files\Skype
[2013.08.06 22:16:52 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Skype
[2013.08.06 22:16:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Skype
[2013.08.06 22:11:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Application Data\uTorrent
[2013.08.06 22:10:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Application Data\Google
[2013.08.06 22:10:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Google Earth
[2013.08.06 22:08:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Google Chrome
[2013.08.06 22:07:34 | 000,000,000 | ---D | C] -- C:\Program Files\Google
[2013.08.06 22:07:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Local Settings\Application Data\Google
[2013.08.06 22:06:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Start Menu\Programs\BS.Player
[2013.08.06 22:06:05 | 000,000,000 | ---D | C] -- C:\Program Files\Webteh
[2013.08.06 22:06:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Application Data\BSplayer Pro
[2013.08.06 22:06:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Application Data\BSplayer
[2013.08.06 22:04:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\VideoLAN
[2013.08.06 22:04:14 | 000,000,000 | ---D | C] -- C:\Program Files\VideoLAN
[2013.08.06 22:00:54 | 000,000,000 | ---D | C] -- C:\Program Files\Boxoft Free PDF To JPG Converter (freeware)
[2013.08.06 22:00:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Boxoft Free PDF To JPG Converter (freeware)
[2013.08.06 22:00:05 | 000,000,000 | ---D | C] -- C:\Program Files\mp3DirectCut
[2013.08.06 21:59:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Philips Digital Audio Player
[2013.08.06 21:59:11 | 000,000,000 | ---D | C] -- C:\Program Files\Philips
[2013.08.06 21:56:28 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe
[2013.08.06 21:56:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Adobe
[2013.08.06 21:55:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Local Settings\Application Data\Adobe
[2013.08.06 21:54:40 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Wise Installation Wizard
[2013.08.06 21:54:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Application Data\xrecode2
[2013.08.06 21:54:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\xrecode II
[2013.08.06 21:54:12 | 000,000,000 | ---D | C] -- C:\Program Files\xrecode II
[2013.08.06 21:53:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Application Data\ZipGenius
[2013.08.06 21:53:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Start Menu\Programs\SpeedFan
[2013.08.06 21:53:40 | 000,000,000 | ---D | C] -- C:\Program Files\SpeedFan
[2013.08.06 21:53:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\CCleaner
[2013.08.06 21:52:59 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2013.08.06 21:50:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Microsoft Office
[2013.08.06 21:50:31 | 000,032,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msonpmon.dll
[2013.08.06 21:49:37 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Works
[2013.08.06 21:49:29 | 000,000,000 | ---D | C] -- C:\Program Files\MSBuild
[2013.08.06 21:49:15 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio
[2013.08.06 21:49:15 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER
[2013.08.06 21:48:47 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET
[2013.08.06 21:47:28 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio 8
[2013.08.06 21:46:55 | 000,000,000 | ---D | C] -- C:\WINDOWS\SHELLNEW
[2013.08.06 21:46:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Local Settings\Application Data\Microsoft Help
[2013.08.06 21:46:34 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office
[2013.08.06 21:46:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Microsoft Help
[2013.08.06 21:46:08 | 000,000,000 | RH-D | C] -- C:\MSOCache
[2013.08.06 21:44:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Local Settings\Application Data\PowerDVDCox
[2013.08.06 21:44:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Local Settings\Application Data\PowerDVDCinema
[2013.08.06 21:43:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\My Documents\CyberLink
[2013.08.06 21:43:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Application Data\CyberLink
[2013.08.06 21:43:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\CyberLink
[2013.08.06 21:43:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Start Menu\Programs\CyberLink PowerDVD 9
[2013.08.06 21:43:09 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\CyberLink
[2013.08.06 21:42:44 | 000,000,000 | ---D | C] -- C:\Program Files\CyberLink
[2013.08.06 21:42:31 | 000,029,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msxml3a.dll
[2013.08.06 21:42:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Temp
[2013.08.06 21:41:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\ACD Systems
[2013.08.06 21:41:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\ACD Systems
[2013.08.06 21:41:28 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ACD Systems
[2013.08.06 21:41:28 | 000,000,000 | ---D | C] -- C:\Program Files\ACD Systems
[2013.08.06 21:40:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Local Settings\Application Data\Downloaded Installations
[2013.08.06 21:38:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Application Data\OnlineArmor
[2013.08.06 21:38:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\OnlineArmor
[2013.08.06 21:38:05 | 000,031,920 | ---- | C] (Emsisoft) -- C:\WINDOWS\System32\drivers\OAnet.sys
[2013.08.06 21:38:05 | 000,027,648 | ---- | C] (Emsisoft) -- C:\WINDOWS\System32\drivers\OAmon.sys
[2013.08.06 21:38:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Online Armor
[2013.08.06 21:38:01 | 000,000,000 | ---D | C] -- C:\Program Files\Online Armor
[2013.08.06 21:37:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\ZipGenius 6
[2013.08.06 21:37:11 | 000,000,000 | ---D | C] -- C:\Program Files\ZipGenius 6
[2013.08.06 21:33:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Alcohol 120%
[2013.08.06 21:33:05 | 000,000,000 | ---D | C] -- C:\Program Files\Alcohol Soft
[2013.08.06 21:27:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Application Data\Ashampoo
[2013.08.06 21:27:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Local Settings\Application Data\ashampoo
[2013.08.06 21:27:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Ashampoo
[2013.08.06 21:27:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Ashampoo
[2013.08.06 21:27:38 | 000,000,000 | ---D | C] -- C:\Program Files\Ashampoo
[2013.08.06 21:25:48 | 000,000,000 | ---D | C] -- C:\totalcmd
[2013.08.06 21:25:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Total Commander
[2013.08.06 21:14:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Winamp
[2013.08.06 21:14:41 | 002,414,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_31.dll
[2013.08.06 21:14:41 | 001,892,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DX9_42.dll
[2013.08.06 21:14:38 | 000,000,000 | ---D | C] -- C:\WINDOWS\Logs
[2013.08.06 21:14:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Start Menu\Programs\Winamp Detector Plug-in
[2013.08.06 21:14:36 | 000,000,000 | ---D | C] -- C:\Program Files\Winamp Detect
[2013.08.06 21:14:21 | 000,000,000 | ---D | C] -- C:\WINDOWS\RegisteredPackages
[2013.08.06 21:14:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Application Data\Avira
[2013.08.06 21:14:02 | 000,133,616 | ---- | C] (Sonic Solutions) -- C:\WINDOWS\System32\pxafs.dll
[2013.08.06 21:14:02 | 000,126,448 | ---- | C] (Sonic Solutions) -- C:\WINDOWS\System32\pxinsi64.exe
[2013.08.06 21:14:02 | 000,123,888 | ---- | C] (Sonic Solutions) -- C:\WINDOWS\System32\pxcpyi64.exe
[2013.08.06 21:14:02 | 000,072,176 | ---- | C] (Sonic Solutions) -- C:\WINDOWS\System32\pxhpinst.exe
[2013.08.06 21:14:02 | 000,068,592 | ---- | C] (Sonic Solutions) -- C:\WINDOWS\System32\pxinsa64.exe
[2013.08.06 21:14:02 | 000,068,080 | ---- | C] (Sonic Solutions) -- C:\WINDOWS\System32\pxcpya64.exe
[2013.08.06 21:14:02 | 000,009,200 | ---- | C] (Sonic Solutions) -- C:\WINDOWS\System32\drivers\cdralw2k.sys
[2013.08.06 21:14:02 | 000,009,072 | ---- | C] (Sonic Solutions) -- C:\WINDOWS\System32\drivers\cdr4_xp.sys
[2013.08.06 21:14:01 | 002,095,600 | ---- | C] (Sonic Solutions) -- C:\WINDOWS\System32\pxsfs.dll
[2013.08.06 21:14:01 | 000,698,864 | ---- | C] (Sonic Solutions) -- C:\WINDOWS\System32\px.dll
[2013.08.06 21:14:01 | 000,571,888 | ---- | C] (Sonic Solutions) -- C:\WINDOWS\System32\pxdrv.dll
[2013.08.06 21:14:01 | 000,440,816 | ---- | C] (Sonic Solutions) -- C:\WINDOWS\System32\pxwave.dll
[2013.08.06 21:14:01 | 000,219,632 | ---- | C] (Sonic Solutions) -- C:\WINDOWS\System32\pxmas.dll
[2013.08.06 21:14:01 | 000,100,848 | ---- | C] (Sonic Solutions) -- C:\WINDOWS\System32\vxblock.dll
[2013.08.06 21:14:01 | 000,059,888 | ---- | C] (Sonic Solutions) -- C:\WINDOWS\System32\pxwma.dll
[2013.08.06 21:13:53 | 000,000,000 | ---D | C] -- C:\Program Files\Winamp
[2013.08.06 21:13:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Application Data\Winamp
[2013.08.06 21:09:45 | 000,000,000 | ---D | C] -- C:\WINDOWS\pss
[2013.08.06 21:08:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Lang
[2013.08.06 21:04:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Avira
[2013.08.06 21:04:33 | 000,028,520 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\ssmdrv.sys
[2013.08.06 21:04:32 | 000,136,672 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\WINDOWS\System32\drivers\avipbb.sys
[2013.08.06 21:04:32 | 000,037,352 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\WINDOWS\System32\drivers\avkmgr.sys
[2013.08.06 21:04:31 | 000,088,840 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\WINDOWS\System32\drivers\avgntflt.sys
[2013.08.06 21:04:31 | 000,000,000 | ---D | C] -- C:\Program Files\Avira
[2013.08.06 21:04:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Avira
[2013.08.06 20:55:21 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Application Data\CanonIJSolutionMenuEX
[2013.08.06 20:55:21 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Application Data\CanonIJEPPEX2
[2013.08.06 20:55:21 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Application Data\CanonEPP
[2013.08.06 20:55:20 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Application Data\CanonIJMyPrinter
[2013.08.06 20:55:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Application Data\Canon
[2013.08.06 20:55:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\CanonIJPLM
[2013.08.06 20:54:24 | 000,323,584 | ---- | C] (CANON INC.) -- C:\WINDOWS\System32\CNC_ATL.dll
[2013.08.06 20:54:24 | 000,286,720 | ---- | C] (CANON INC.) -- C:\WINDOWS\System32\CNC_ATC.dll
[2013.08.06 20:54:24 | 000,114,688 | ---- | C] (CANON INC.) -- C:\WINDOWS\System32\CNC_ATU.dll
[2013.08.06 20:54:24 | 000,114,688 | ---- | C] (CANON INC.) -- C:\WINDOWS\System32\CNC_ATI.dll
[2013.08.06 20:54:24 | 000,015,872 | ---- | C] (CANON INC.) -- C:\WINDOWS\System32\CNHMCA.dll
[2013.08.06 20:54:24 | 000,015,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\usbscan.sys
[2013.08.06 20:54:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Registrácia používateľa produktu Canon MG5300 series
[2013.08.06 20:53:53 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\CANON
[2013.08.06 20:53:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\CanonIJWSpt
[2013.08.06 20:52:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Canon Utilities
[2013.08.06 20:51:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Canon MG5300 series Manual
[2013.08.06 20:50:58 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Application Data\CanonBJ
[2013.08.06 20:50:52 | 000,310,272 | ---- | C] (CANON INC.) -- C:\WINDOWS\System32\CNMLMAT.DLL
[2013.08.06 20:50:50 | 000,000,000 | -H-D | C] -- C:\WINDOWS\System32\CanonIJ Uninstaller Information
[2013.08.06 20:50:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Canon MG5300 series
[2013.08.06 20:50:47 | 000,090,112 | ---- | C] (Canon Inc.) -- C:\WINDOWS\System32\CNC_ATO.dll
[2013.08.06 20:50:45 | 000,184,320 | ---- | C] (CANON INC.) -- C:\WINDOWS\System32\CNMIUAT.DLL
[2013.08.06 20:50:38 | 000,000,000 | -H-D | C] -- C:\Program Files\CanonBJ
[2013.08.06 20:50:28 | 000,363,008 | ---- | C] (CANON INC.) -- C:\WINDOWS\System32\CNMNPPM.DLL
[2013.08.06 20:50:28 | 000,035,328 | ---- | C] (CANON INC.) -- C:\WINDOWS\System32\CNMNPUI.DLL
[2013.08.06 20:50:28 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\STRING
[2013.08.06 20:49:52 | 000,025,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\usbprint.sys
[2013.08.06 20:49:44 | 000,032,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\usbccgp.sys
[2013.08.06 20:49:15 | 000,000,000 | ---D | C] -- C:\Program Files\Canon
[2013.08.06 20:48:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\K-Lite Codec Pack
[2013.08.06 20:48:05 | 000,000,000 | ---D | C] -- C:\Program Files\K-Lite Codec Pack
[2013.08.06 20:41:01 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\RTCOM
[2013.08.06 20:40:55 | 009,721,960 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RTLCPL.EXE
[2013.08.06 20:40:55 | 005,444,680 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\drivers\RtkHDAud.sys
[2013.08.06 20:40:55 | 001,522,320 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RtlUpd.exe
[2013.08.06 20:40:55 | 000,891,976 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\RTSndMgr.CPL
[2013.08.06 20:40:55 | 000,359,016 | ---- | C] (Realtek Semiconductor Crop.) -- C:\WINDOWS\vncutil.exe
[2013.08.06 20:40:55 | 000,084,584 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\SOUNDMAN.EXE
[2013.08.06 20:40:54 | 002,180,712 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\MicCal.exe
[2013.08.06 20:40:54 | 001,395,800 | ---- | C] (Creative Technology Ltd.) -- C:\WINDOWS\System32\drivers\Monfilt.sys
[2013.08.06 20:40:54 | 000,129,640 | ---- | C] (Realtek Semiconductor) -- C:\WINDOWS\RtkAudioService.exe
[2013.08.06 20:40:54 | 000,079,432 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\RtkCoInstIIXP.dll
[2013.08.06 20:40:54 | 000,011,368 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\RtkCoLDRXP.dll
[2013.08.06 20:40:53 | 002,815,592 | ---- | C] (RealTek Semicoductor Corp.) -- C:\WINDOWS\ALCWZRD.EXE
[2013.08.06 20:40:53 | 001,691,480 | ---- | C] (Creative) -- C:\WINDOWS\System32\drivers\Ambfilt.sys
[2013.08.06 20:40:53 | 000,285,288 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\ALSNDMGR.CPL
[2013.08.06 20:40:53 | 000,064,104 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\ALCMTR.EXE
[2013.08.06 20:40:44 | 002,079,816 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RtlExUpd.dll
[2013.08.06 20:34:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Application Data\Adobe
[2013.08.06 20:34:13 | 000,692,104 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe
[2013.08.06 20:34:13 | 000,071,048 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2013.08.06 19:36:37 | 000,103,040 | ---- | C] (Advanced Micro Devices) -- C:\WINDOWS\System32\drivers\AtihdXP3.sys
[2013.08.06 19:36:14 | 019,603,456 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\WINDOWS\System32\atioglxx.dll
[2013.08.06 19:36:14 | 000,938,368 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\WINDOWS\System32\ativvamv.dll
[2013.08.06 19:36:14 | 000,159,744 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\WINDOWS\System32\atiapfxx.exe
[2013.08.06 19:36:14 | 000,118,784 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\WINDOWS\System32\atibtmon.exe
[2013.08.06 19:36:14 | 000,065,024 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\WINDOWS\System32\atimpc32.dll
[2013.08.06 19:36:13 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DRVSTORE
[2013.08.06 19:35:44 | 000,000,000 | ---D | C] -- C:\Program Files\ATI
[2013.08.06 19:35:02 | 000,000,000 | ---D | C] -- C:\AMD
[2013.08.06 19:31:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Application Data\Macromedia
[2013.08.06 19:30:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Local Settings\Application Data\ATI
[2013.08.06 19:30:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Application Data\ATI
[2013.08.06 19:30:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\ATI
[2013.08.06 19:26:25 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ATI Technologies
[2013.08.06 19:25:10 | 000,000,000 | R-SD | C] -- C:\WINDOWS\assembly
[2013.08.06 19:24:56 | 000,000,000 | ---D | C] -- C:\WINDOWS\Microsoft.NET
[2013.08.06 19:24:22 | 000,006,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\splitter.sys
[2013.08.06 19:24:20 | 000,083,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wdmaud.sys
[2013.08.06 19:24:19 | 000,052,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dmusic.sys
[2013.08.06 19:24:18 | 000,056,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\swmidi.sys
[2013.08.06 19:24:16 | 000,142,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\aec.sys
[2013.08.06 19:24:15 | 000,172,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kmixer.sys
[2013.08.06 19:24:14 | 000,002,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\drmkaud.sys
[2013.08.06 19:24:13 | 000,060,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sysaudio.sys
[2013.08.06 19:24:12 | 000,007,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mskssrv.sys
[2013.08.06 19:24:11 | 000,004,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mspqm.sys
[2013.08.06 19:24:09 | 000,005,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mspclock.sys
[2013.08.06 19:24:08 | 000,093,696 | R--- | C] (ATI Research Inc.) -- C:\WINDOWS\System32\drivers\AtiHdmi.sys
[2013.08.06 19:24:07 | 000,146,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\portcls.sys
[2013.08.06 19:24:07 | 000,146,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\portcls.sys
[2013.08.06 19:24:07 | 000,129,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ksproxy.ax
[2013.08.06 19:24:07 | 000,129,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ksproxy.ax
[2013.08.06 19:24:07 | 000,060,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\drmk.sys
[2013.08.06 19:24:07 | 000,060,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\drmk.sys
[2013.08.06 19:24:07 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ksuser.dll
[2013.08.06 19:24:07 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ksuser.dll
[2013.08.06 19:23:48 | 000,307,200 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\atiiiexx.dll
[2013.08.06 19:23:47 | 000,442,368 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\WINDOWS\System32\ATIDEMGX.dll
[2013.08.06 19:23:31 | 000,000,000 | ---D | C] -- C:\Program Files\ATI Technologies
[2013.08.06 19:23:02 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield
[2013.08.06 19:22:27 | 000,471,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\aclayers.dll
[2013.08.06 19:15:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\ie8updates
[2013.08.06 19:12:06 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeedsbs.dll
[2013.08.06 19:12:05 | 000,743,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iedvtool.dll
[2013.08.06 19:12:05 | 000,630,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeeds.dll
[2013.08.06 19:12:04 | 011,113,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieframe.dll
[2013.08.06 19:12:04 | 002,005,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iertutil.dll
[2013.08.06 19:12:04 | 000,522,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\jsdbgui.dll
[2013.08.06 19:11:26 | 000,012,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\usb8023x.sys
[2013.08.06 19:11:26 | 000,012,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\usb8023.sys
[2013.08.06 19:11:07 | 000,290,560 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\dllcache\atmfd.dll
[2013.08.06 19:10:43 | 000,139,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rdpwd.sys
[2013.08.06 19:08:58 | 000,456,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mrxsmb.sys
[2013.08.06 19:08:56 | 000,010,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ndistapi.sys
[2013.08.06 19:08:49 | 000,105,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mup.sys
[2013.08.06 19:07:44 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ndproxy.sys
[2013.08.06 19:07:38 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wab.exe
[2013.08.06 19:07:36 | 000,590,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rpcrt4.dll
[2013.08.06 19:07:28 | 000,978,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mfc42.dll
[2013.08.06 19:07:28 | 000,953,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mfc40u.dll
[2013.08.06 19:07:18 | 000,617,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\comctl32.dll
[2013.08.06 19:06:58 | 003,558,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\moviemk.exe
[2013.08.06 19:06:45 | 000,744,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\helpsvc.exe
[2013.08.06 19:06:27 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\browserchoice.exe
[2013.08.06 19:05:42 | 000,119,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\t2embed.dll
[2013.08.06 19:05:42 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fontsub.dll
[2013.08.06 19:03:59 | 000,730,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\lsasrv.dll
[2013.08.06 19:03:58 | 002,193,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntoskrnl.exe
[2013.08.06 19:03:58 | 002,149,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntkrnlmp.exe
[2013.08.06 19:03:58 | 002,028,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntkrpamp.exe
[2013.08.06 19:03:43 | 000,331,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msadce.dll
[2013.08.06 19:03:21 | 000,272,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\bthport.sys
[2013.08.06 19:03:19 | 000,203,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rmcast.sys
[2013.08.06 19:01:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
[2013.08.06 19:01:30 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\PreInstall
[2013.08.06 19:00:19 | 000,006,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\enum1394.sys
[2013.08.06 19:00:01 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\usbui.dll
[2013.08.06 18:59:13 | 000,000,000 | -HSD | C] -- C:\WINDOWS\Installer
[2013.08.06 18:59:12 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ODBC
[2013.08.06 18:59:11 | 000,774,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\spttseng.dll
[2013.08.06 18:59:11 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\spcommon.dll
[2013.08.06 18:59:11 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\spcplui.dll
[2013.08.06 18:59:10 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sapisvr.exe
[2013.08.06 18:59:10 | 000,000,000 | R--D | C] -- C:\Program Files
[2013.08.06 18:59:10 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SpeechEngines
[2013.08.06 18:59:10 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Microsoft Shared
[2013.08.06 18:59:10 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files
[2013.08.06 18:59:08 | 000,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdtuq.dll
[2013.08.06 18:59:08 | 000,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdtuf.dll
[2013.08.06 18:59:08 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdtuq.dll
[2013.08.06 18:59:08 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdtuf.dll
[2013.08.06 18:59:08 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdazel.dll
[2013.08.06 18:59:08 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdazel.dll
[2013.08.06 18:59:06 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdycc.dll
[2013.08.06 18:59:06 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbduzb.dll
[2013.08.06 18:59:06 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdur.dll
[2013.08.06 18:59:06 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdtat.dll
[2013.08.06 18:59:06 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdru1.dll
[2013.08.06 18:59:06 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdru.dll
[2013.08.06 18:59:06 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdmon.dll
[2013.08.06 18:59:06 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdkyr.dll
[2013.08.06 18:59:06 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdkaz.dll
[2013.08.06 18:59:06 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdbu.dll
[2013.08.06 18:59:06 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdblr.dll
[2013.08.06 18:59:06 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdaze.dll
[2013.08.06 18:59:06 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdycc.dll
[2013.08.06 18:59:06 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbduzb.dll
[2013.08.06 18:59:06 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdur.dll
[2013.08.06 18:59:06 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdtat.dll
[2013.08.06 18:59:06 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdru1.dll
[2013.08.06 18:59:06 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdru.dll
[2013.08.06 18:59:06 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdmon.dll
[2013.08.06 18:59:06 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdkyr.dll
[2013.08.06 18:59:06 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdkaz.dll
[2013.08.06 18:59:06 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdbu.dll
[2013.08.06 18:59:06 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdblr.dll
[2013.08.06 18:59:06 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdaze.dll
[2013.08.06 18:59:04 | 000,008,192 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhept.dll
[2013.08.06 18:59:04 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhept.dll
[2013.08.06 18:59:04 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhela3.dll
[2013.08.06 18:59:04 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhela3.dll
[2013.08.06 18:59:04 | 000,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhela2.dll
[2013.08.06 18:59:04 | 000,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdgkl.dll
[2013.08.06 18:59:04 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhela2.dll
[2013.08.06 18:59:04 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdgkl.dll
[2013.08.06 18:59:04 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhe319.dll
[2013.08.06 18:59:04 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhe220.dll
[2013.08.06 18:59:04 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhe.dll
[2013.08.06 18:59:04 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhe319.dll
[2013.08.06 18:59:04 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhe220.dll
[2013.08.06 18:59:04 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhe.dll
[2013.08.06 18:59:03 | 000,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdlv1.dll
[2013.08.06 18:59:03 | 000,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdlv.dll
[2013.08.06 18:59:03 | 000,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdest.dll
[2013.08.06 18:59:03 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdlv1.dll
[2013.08.06 18:59:03 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdlv.dll
[2013.08.06 18:59:03 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdest.dll
[2013.08.06 18:59:03 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdlt1.dll
[2013.08.06 18:59:03 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdlt.dll
[2013.08.06 18:59:03 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdlt1.dll
[2013.08.06 18:59:03 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdlt.dll
[2013.08.06 18:59:01 | 000,007,168 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdcz.dll
[2013.08.06 18:59:01 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdcz.dll
[2013.08.06 18:59:01 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdycl.dll
[2013.08.06 18:59:01 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdsl1.dll
[2013.08.06 18:59:01 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdsl.dll
[2013.08.06 18:59:01 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdpl.dll
[2013.08.06 18:59:01 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhu.dll
[2013.08.06 18:59:01 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdcz2.dll
[2013.08.06 18:59:01 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdcz1.dll
[2013.08.06 18:59:01 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdcr.dll
[2013.08.06 18:59:01 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\KBDAL.DLL
[2013.08.06 18:59:01 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdycl.dll
[2013.08.06 18:59:01 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdsl1.dll
[2013.08.06 18:59:01 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdsl.dll
[2013.08.06 18:59:01 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdpl.dll
[2013.08.06 18:59:01 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhu.dll
[2013.08.06 18:59:01 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdcz2.dll
[2013.08.06 18:59:01 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdcz1.dll
[2013.08.06 18:59:01 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdcr.dll
[2013.08.06 18:59:01 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdal.dll
[2013.08.06 18:59:01 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdro.dll
[2013.08.06 18:59:01 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdpl1.dll
[2013.08.06 18:59:01 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhu1.dll
[2013.08.06 18:59:01 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdro.dll
[2013.08.06 18:59:01 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdpl1.dll
[2013.08.06 18:59:01 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhu1.dll
[2013.08.06 18:59:00 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\irclass.dll
[2013.08.06 18:59:00 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\irclass.dll
[2013.08.06 18:58:59 | 000,176,157 | ---- | C] (Digi International, Inc.) -- C:\WINDOWS\System32\dllcache\dgrpsetu.dll
[2013.08.06 18:58:59 | 000,176,157 | ---- | C] (Digi International, Inc.) -- C:\WINDOWS\System32\dgrpsetu.dll
[2013.08.06 18:58:59 | 000,103,424 | ---- | C] (Equinox Systems Inc.) -- C:\WINDOWS\System32\EqnClass.Dll
[2013.08.06 18:58:59 | 000,103,424 | ---- | C] (Equinox Systems Inc.) -- C:\WINDOWS\System32\dllcache\eqnclass.dll
[2013.08.06 18:58:59 | 000,085,020 | ---- | C] (Digi International) -- C:\WINDOWS\System32\dllcache\dgsetup.dll
[2013.08.06 18:58:59 | 000,085,020 | ---- | C] (Digi International) -- C:\WINDOWS\System32\dgsetup.dll
[2013.08.06 18:58:59 | 000,024,661 | ---- | C] (Perle Systems Ltd.) -- C:\WINDOWS\System32\spxcoins.dll
[2013.08.06 18:58:59 | 000,024,661 | ---- | C] (Perle Systems Ltd.) -- C:\WINDOWS\System32\dllcache\spxcoins.dll
[2013.08.06 18:58:59 | 000,019,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\TAPI.DLL
[2013.08.06 18:58:59 | 000,013,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\WFWNET.DRV
[2013.08.06 18:58:59 | 000,009,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\VER.DLL
[2013.08.06 18:58:59 | 000,004,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\TIMER.DRV
[2013.08.06 18:58:59 | 000,003,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\SYSTEM.DRV
[2013.08.06 18:58:59 | 000,002,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\VGA.DRV
[2013.08.06 18:58:59 | 000,001,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\SOUND.DRV
[2013.08.06 18:58:58 | 000,126,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MSVIDEO.DLL
[2013.08.06 18:58:58 | 000,109,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\AVIFILE.DLL
[2013.08.06 18:58:58 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\OLECLI.DLL
[2013.08.06 18:58:58 | 000,073,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MCIAVI.DRV
[2013.08.06 18:58:58 | 000,032,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\COMMDLG.DLL
[2013.08.06 18:58:58 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MCIWAVE.DRV
[2013.08.06 18:58:58 | 000,025,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MCISEQ.DRV
[2013.08.06 18:58:58 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\OLESVR.DLL
[2013.08.06 18:58:58 | 000,009,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\LZEXPAND.DLL
[2013.08.06 18:58:58 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\SHELL.DLL
[2013.08.06 18:58:58 | 000,002,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MOUSE.DRV
[2013.08.06 18:58:58 | 000,002,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\KEYBOARD.DRV
[2013.08.06 18:58:58 | 000,001,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MMTASK.TSK
[2013.08.06 18:58:57 | 000,069,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\AVICAP.DLL
[2013.08.06 18:58:57 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\TASKMAN.EXE
[2013.08.06 18:58:57 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\taskman.exe
[2013.08.06 18:58:57 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\batt.dll
[2013.08.06 18:58:55 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\winspool.drv
[2013.08.06 18:58:55 | 000,068,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MMSYSTEM.DLL
[2013.08.06 18:58:53 | 000,074,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\storprop.dll
[2013.08.06 18:58:48 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup
[2013.08.06 18:58:48 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu
[2013.08.06 18:58:48 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents
[2013.08.06 18:58:48 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Templates
[2013.08.06 18:58:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Favorites
[2013.08.06 18:58:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Desktop
[2013.08.06 18:58:14 | 000,045,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wups2.dll
[2013.08.06 18:58:14 | 000,022,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wucltui.dll.mui
[2013.08.06 18:58:13 | 000,015,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wuapi.dll.mui
[2013.08.06 18:58:13 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\SoftwareDistribution
[2013.08.06 18:57:37 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Brat\PrivacIE
[2013.08.06 18:57:00 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot2
[2013.08.06 18:57:00 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot
[2013.08.06 18:56:54 | 000,000,000 | --SD | C] -- C:\Documents and Settings\All Users\Application Data\Microsoft
[2013.08.06 18:56:54 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\All Users\Application Data
[2013.08.06 18:56:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings
[2013.08.06 18:56:34 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[2013.08.06 18:56:20 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Brat\IETldCache
[2013.08.06 18:54:49 | 000,000,000 | ---D | C] -- C:\WINDOWS\WBEM
[2013.08.06 18:54:07 | 000,000,000 | -H-D | C] -- C:\WINDOWS\ie8
[2013.08.06 18:54:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\sk-SK

Re: Preventivku prosím

Napsal: 01 zář 2013 14:49
od kuntakinte
[2013.08.06 18:53:51 | 001,215,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\urlmon.dll
[2013.08.06 18:53:51 | 000,920,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wininet.dll
[2013.08.06 18:53:51 | 000,759,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\vgx.dll
[2013.08.06 18:53:51 | 000,420,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\vbscript.dll
[2013.08.06 18:53:51 | 000,265,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msdbg2.dll
[2013.08.06 18:53:51 | 000,236,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\webcheck.dll
[2013.08.06 18:53:51 | 000,208,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\WinFXDocObj.exe
[2013.08.06 18:53:51 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\url.dll
[2013.08.06 18:53:51 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdc.ocx
[2013.08.06 18:53:51 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ieudinit.exe
[2013.08.06 18:53:51 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\idndl.dll
[2013.08.06 18:53:51 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\nlsdl.dll
[2013.08.06 18:53:50 | 006,017,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mshtml.dll
[2013.08.06 18:53:50 | 001,638,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mshtml.tlb
[2013.08.06 18:53:50 | 000,611,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mstime.dll
[2013.08.06 18:53:50 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\occache.dll
[2013.08.06 18:53:50 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msrating.dll
[2013.08.06 18:53:50 | 000,134,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sqmapi.dll
[2013.08.06 18:53:50 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mshtmled.dll
[2013.08.06 18:53:50 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msrating.dll.mui
[2013.08.06 18:53:50 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mshtmler.dll
[2013.08.06 18:53:50 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pngfilt.dll
[2013.08.06 18:53:49 | 000,630,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msfeeds.dll
[2013.08.06 18:53:49 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msfeedsbs.dll
[2013.08.06 18:53:49 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mshta.exe
[2013.08.06 18:53:49 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\licmgr10.dll
[2013.08.06 18:53:49 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\jsproxy.dll
[2013.08.06 18:53:49 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msfeedssync.exe
[2013.08.06 18:53:48 | 001,469,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetcpl.cpl
[2013.08.06 18:53:48 | 000,726,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\jscript.dll
[2013.08.06 18:53:48 | 000,638,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iexplore.exe
[2013.08.06 18:53:48 | 000,164,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ieui.dll
[2013.08.06 18:53:48 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inseng.dll
[2013.08.06 18:53:48 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iesetup.dll
[2013.08.06 18:53:48 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imgutil.dll
[2013.08.06 18:53:47 | 000,387,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iedkcs32.dll
[2013.08.06 18:53:47 | 000,184,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iepeers.dll
[2013.08.06 18:53:47 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\iedkcs32.dll.mui
[2013.08.06 18:53:47 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iernonce.dll
[2013.08.06 18:53:46 | 003,698,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ieapfltr.dat
[2013.08.06 18:53:46 | 000,445,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ieapfltr.dll
[2013.08.06 18:53:46 | 000,348,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dxtmsft.dll
[2013.08.06 18:53:46 | 000,229,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieaksie.dll
[2013.08.06 18:53:46 | 000,216,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dxtrans.dll
[2013.08.06 18:53:46 | 000,174,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ie4uinit.exe
[2013.08.06 18:53:46 | 000,128,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\advpack.dll
[2013.08.06 18:53:46 | 000,125,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieakeng.dll
[2013.08.06 18:53:46 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\admparse.dll
[2013.08.06 18:53:46 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hmmapi.dll
[2013.08.06 18:53:46 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\corpol.dll
[2013.08.06 18:53:46 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ie4uinit.exe.mui
[2013.08.06 18:51:28 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch
[2013.08.06 18:51:08 | 000,000,000 | R-SD | C] -- C:\WINDOWS\Fonts
[2013.08.06 18:51:08 | 000,000,000 | RHSD | C] -- C:\WINDOWS\System32\dllcache
[2013.08.06 18:51:08 | 000,000,000 | R--D | C] -- C:\WINDOWS\Web
[2013.08.06 18:51:08 | 000,000,000 | -H-D | C] -- C:\WINDOWS\inf
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\WinSxS
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wins
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wbem
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\usmt
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\twain_32
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\Temp
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\system32
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\system
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\spool
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ShellExt
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Setup
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\security
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\Resources
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\repair
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ras
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\Provisioning
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\pchealth
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\PeerNet
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\oobe
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\npp
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\mui
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\mui
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\msapps
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\msagent
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\Media
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\java
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\inetsrv
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\IME
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\ime
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\icsxml
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ias
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\Help
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\export
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\etc
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\Driver Cache
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\disdn
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\dhcp
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\Debug
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cursors
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\Connection Wizard
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\config
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\Config
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\AppPatch
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\addins
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3com_dmi
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3076
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\2052
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1054
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1042
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1041
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1037
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1033
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1031
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1028
[2013.08.06 18:51:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1025
[2013.08.06 18:48:37 | 001,371,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msxml6.dll
[2013.08.06 18:48:37 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msxml6r.dll
[2013.08.06 18:48:37 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msxml6r.dll
[2013.08.06 18:48:35 | 000,294,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msaud32.acm
[2013.08.06 18:48:35 | 000,086,016 | ---- | C] (Sipro Lab Telecom Inc.) -- C:\WINDOWS\System32\dllcache\sl_anet.acm
[2013.08.06 18:48:34 | 000,290,816 | ---- | C] (Fraunhofer Institut Integrierte Schaltungen IIS) -- C:\WINDOWS\System32\dllcache\l3codeca.acm
[2013.08.06 18:48:31 | 005,336,448 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\WINDOWS\System32\ati3duag.dll
[2013.08.06 18:48:31 | 003,586,816 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\WINDOWS\System32\ativvaxx.dll
[2013.08.06 18:48:31 | 003,500,352 | ---- | C] (ATI Technologies Inc. ) -- C:\WINDOWS\System32\dllcache\ati3duag.dll
[2013.08.06 18:48:31 | 002,120,832 | ---- | C] (ATI Technologies Inc. ) -- C:\WINDOWS\System32\dllcache\ativvaxx.dll
[2013.08.06 18:48:31 | 000,909,312 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\ati2cqag.dll
[2013.08.06 18:48:31 | 000,870,784 | ---- | C] (ATI Technologies Inc. ) -- C:\WINDOWS\System32\ati3d1ag.dll
[2013.08.06 18:48:31 | 000,650,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dot3ui.dll
[2013.08.06 18:48:31 | 000,557,056 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\dllcache\ati2cqag.dll
[2013.08.06 18:48:31 | 000,377,984 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\ati2dvaa.dll
[2013.08.06 18:48:31 | 000,306,688 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\dllcache\ati2dvag.dll
[2013.08.06 18:48:31 | 000,306,176 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\ati2dvag.dll
[2013.08.06 18:48:31 | 000,233,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\azroles.dll
[2013.08.06 18:48:31 | 000,184,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\eapp3hst.dll
[2013.08.06 18:48:31 | 000,180,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\eapphost.dll
[2013.08.06 18:48:31 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\aaclient.dll
[2013.08.06 18:48:31 | 000,094,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\eappgnui.dll
[2013.08.06 18:48:31 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\eapqec.dll
[2013.08.06 18:48:31 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dot3cfg.dll
[2013.08.06 18:48:31 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dot3msm.dll
[2013.08.06 18:48:31 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dhcpqec.dll
[2013.08.06 18:48:31 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dot3gpclnt.dll
[2013.08.06 18:48:31 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dimsroam.dll
[2013.08.06 18:48:31 | 000,032,768 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\ativtmxx.dll
[2013.08.06 18:48:31 | 000,032,285 | ---- | C] (Conexant Systems, Inc.) -- C:\WINDOWS\System32\hsfcisp2.dll
[2013.08.06 18:48:31 | 000,023,040 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\ativmvxx.ax
[2013.08.06 18:48:31 | 000,009,728 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\ativdaxx.ax
[2013.08.06 18:48:31 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\bitsprx4.dll
[2013.08.06 18:48:30 | 001,737,856 | ---- | C] (Matrox Graphics Inc.) -- C:\WINDOWS\System32\mtxparhd.dll
[2013.08.06 18:48:30 | 000,397,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mmcex.dll
[2013.08.06 18:48:30 | 000,193,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\napmontr.dll
[2013.08.06 18:48:30 | 000,184,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\microsoft.managementconsole.dll
[2013.08.06 18:48:30 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\napstat.exe
[2013.08.06 18:48:30 | 000,155,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mssha.dll
[2013.08.06 18:48:30 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mmcfxcommon.dll
[2013.08.06 18:48:30 | 000,086,016 | ---- | C] (Conexant) -- C:\WINDOWS\System32\mdmxsdk.dll
[2013.08.06 18:48:30 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msshavmsg.dll
[2013.08.06 18:48:30 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\l2gpstore.dll
[2013.08.06 18:48:30 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mmcperf.exe
[2013.08.06 18:48:30 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\napipsec.dll
[2013.08.06 18:48:30 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdpash.dll
[2013.08.06 18:48:30 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdnepr.dll
[2013.08.06 18:48:30 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdiultn.dll
[2013.08.06 18:48:30 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdbhc.dll
[2013.08.06 18:48:29 | 004,274,816 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nv4_disp.dll
[2013.08.06 18:48:29 | 000,412,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\photometadatahandler.dll
[2013.08.06 18:48:29 | 000,397,056 | ---- | C] (S3 Graphics, Inc.) -- C:\WINDOWS\System32\s3gnb.dll
[2013.08.06 18:48:29 | 000,346,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\windowscodecsext.dll
[2013.08.06 18:48:29 | 000,290,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rhttpaa.dll
[2013.08.06 18:48:29 | 000,286,792 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\slextspk.dll
[2013.08.06 18:48:29 | 000,276,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wmphoto.dll
[2013.08.06 18:48:29 | 000,188,508 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\slgen.dll
[2013.08.06 18:48:29 | 000,150,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qagent.dll
[2013.08.06 18:48:29 | 000,073,832 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\slcoinst.dll
[2013.08.06 18:48:29 | 000,073,796 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\slserv.exe
[2013.08.06 18:48:29 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wlanapi.dll
[2013.08.06 18:48:29 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qcliprov.dll
[2013.08.06 18:48:29 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tsgqec.dll
[2013.08.06 18:48:29 | 000,032,866 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\slrundll.exe
[2013.08.06 18:48:29 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\setupn.exe
[2013.08.06 18:48:29 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\vidcap.ax
[2013.08.06 18:48:29 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\verclsid.exe
[2013.08.06 18:48:28 | 000,032,866 | ---- | C] (Smart Link) -- C:\WINDOWS\slrundll.exe
[2013.08.06 18:48:28 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\scripting
[2013.08.06 18:48:28 | 000,000,000 | ---D | C] -- C:\WINDOWS\l2schemas
[2013.08.06 18:48:28 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en-us
[2013.08.06 18:48:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en
[2013.08.06 18:48:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\bits
[2013.08.06 18:47:21 | 000,000,000 | ---D | C] -- C:\WINDOWS\ServicePackFiles
[2013.08.06 18:47:10 | 000,294,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dlimport.exe
[2013.08.06 18:46:07 | 000,004,255 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\adv01nt5.dll
[2013.08.06 18:46:07 | 000,003,967 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\adv02nt5.dll
[2013.08.06 18:46:07 | 000,003,647 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\adv07nt5.dll
[2013.08.06 18:46:07 | 000,003,615 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\adv05nt5.dll
[2013.08.06 18:46:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\network diagnostic
[2013.08.06 18:46:06 | 007,874,560 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati2mtag.sys
[2013.08.06 18:46:06 | 007,874,560 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\dllcache\ati2mtag.sys
[2013.08.06 18:46:06 | 000,327,040 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati2mtaa.sys
[2013.08.06 18:46:06 | 000,104,960 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinrvxx.sys
[2013.08.06 18:46:06 | 000,073,216 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atintuxx.sys
[2013.08.06 18:46:06 | 000,063,663 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1rvxx.sys
[2013.08.06 18:46:06 | 000,063,488 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinxsxx.sys
[2013.08.06 18:46:06 | 000,057,856 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinbtxx.sys
[2013.08.06 18:46:06 | 000,056,623 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1btxx.sys
[2013.08.06 18:46:06 | 000,052,224 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinraxx.sys
[2013.08.06 18:46:06 | 000,036,463 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1tuxx.sys
[2013.08.06 18:46:06 | 000,034,735 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1xsxx.sys
[2013.08.06 18:46:06 | 000,031,744 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinxbxx.sys
[2013.08.06 18:46:06 | 000,030,671 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1raxx.sys
[2013.08.06 18:46:06 | 000,029,455 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1xbxx.sys
[2013.08.06 18:46:06 | 000,028,672 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinsnxx.sys
[2013.08.06 18:46:06 | 000,026,367 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1snxx.sys
[2013.08.06 18:46:06 | 000,021,343 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1ttxx.sys
[2013.08.06 18:46:06 | 000,014,336 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinpdxx.sys
[2013.08.06 18:46:06 | 000,013,824 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinttxx.sys
[2013.08.06 18:46:06 | 000,013,824 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinmdxx.sys
[2013.08.06 18:46:06 | 000,012,047 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1pdxx.sys
[2013.08.06 18:46:06 | 000,011,615 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1mdxx.sys
[2013.08.06 18:46:06 | 000,003,775 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\adv11nt5.dll
[2013.08.06 18:46:06 | 000,003,711 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\adv09nt5.dll
[2013.08.06 18:46:06 | 000,003,135 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\adv08nt5.dll
[2013.08.06 18:46:05 | 000,036,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\bthprint.sys
[2013.08.06 18:46:05 | 000,025,471 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\atv04nt5.dll
[2013.08.06 18:46:05 | 000,021,183 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\atv01nt5.dll
[2013.08.06 18:46:05 | 000,017,279 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\atv10nt5.dll
[2013.08.06 18:46:05 | 000,015,423 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\ch7xxnt5.dll
[2013.08.06 18:46:05 | 000,014,143 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\atv06nt5.dll
[2013.08.06 18:46:05 | 000,011,359 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\atv02nt5.dll
[2013.08.06 18:46:04 | 001,309,184 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\mtlstrm.sys
[2013.08.06 18:46:04 | 000,452,736 | ---- | C] (Matrox Graphics Inc.) -- C:\WINDOWS\System32\drivers\mtxparhm.sys
[2013.08.06 18:46:04 | 000,404,990 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\slntamr.sys
[2013.08.06 18:46:04 | 000,180,360 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\ntmtlfax.sys
[2013.08.06 18:46:04 | 000,166,912 | ---- | C] (S3 Graphics, Inc.) -- C:\WINDOWS\System32\drivers\s3gnbm.sys
[2013.08.06 18:46:04 | 000,129,535 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\slnt7554.sys
[2013.08.06 18:46:04 | 000,126,686 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\mtlmnt5.sys
[2013.08.06 18:46:04 | 000,095,424 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\slnthal.sys
[2013.08.06 18:46:04 | 000,030,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\rndismpx.sys
[2013.08.06 18:46:04 | 000,025,471 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\watv10nt.sys
[2013.08.06 18:46:04 | 000,022,271 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\watv06nt.sys
[2013.08.06 18:46:04 | 000,013,776 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\recagent.sys
[2013.08.06 18:46:04 | 000,013,240 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\slwdmsup.sys
[2013.08.06 18:46:04 | 000,012,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\mutohpen.sys
[2013.08.06 18:46:04 | 000,011,935 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\wadv11nt.sys
[2013.08.06 18:46:04 | 000,011,871 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\wadv09nt.sys
[2013.08.06 18:46:04 | 000,011,807 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\wadv07nt.sys
[2013.08.06 18:46:04 | 000,011,325 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\vchnt5.dll
[2013.08.06 18:46:04 | 000,011,295 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\wadv08nt.sys
[2013.08.06 18:46:04 | 000,005,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\smbali.sys
[2013.08.06 18:46:04 | 000,003,901 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\siint5.dll
[2013.08.06 18:45:16 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ReinstallBackups
[2013.08.06 18:45:12 | 000,026,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spupdsvc.exe
[2013.08.06 18:44:10 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstall$
[2013.08.06 18:44:10 | 000,000,000 | ---D | C] -- C:\WINDOWS\EHome
[2013.08.06 18:20:04 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2013.08.06 18:17:35 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1051
[2013.08.06 18:13:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\My Documents\Preberanie
[2013.08.06 18:13:24 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2013.08.06 18:12:47 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Maintenance Service
[2013.08.06 18:12:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Mozilla
[2013.08.06 18:11:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Local Settings\Application Data\Mozilla
[2013.08.06 18:11:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Brat\Application Data\Mozilla
[2013.08.06 18:11:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Mozilla Firefox
[2013.08.06 17:48:53 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Brat\UserData
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2013.09.01 14:20:59 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2013.09.01 14:12:00 | 000,000,920 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2013.09.01 14:09:17 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Brat\Desktop\OTL.exe
[2013.09.01 11:24:51 | 000,000,257 | ---- | M] () -- C:\Documents and Settings\Brat\Application Data\mainhst.zgh
[2013.09.01 11:23:57 | 000,495,022 | ---- | M] () -- C:\Documents and Settings\Brat\Desktop\V000008.zip
[2013.09.01 11:20:57 | 000,000,916 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2013.09.01 11:20:51 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2013.08.31 18:11:22 | 001,936,416 | ---- | M] () -- C:\Documents and Settings\Brat\Desktop\FILE0088.JPG
[2013.08.31 16:13:31 | 000,000,742 | ---- | M] () -- C:\Documents and Settings\Brat\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2013.08.31 16:13:24 | 000,000,724 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Mozilla Firefox.lnk
[2013.08.31 16:12:25 | 000,281,776 | ---- | M] (Mozilla) -- C:\Documents and Settings\Brat\Desktop\Firefox Setup Stub 23.0.1.exe
[2013.08.31 16:11:40 | 000,020,329 | ---- | M] () -- C:\Documents and Settings\Brat\Desktop\bookmarks-2013-08-31.json
[2013.08.31 13:46:49 | 000,003,024 | ---- | M] () -- C:\WINDOWS\wincmd.ini
[2013.08.31 13:29:53 | 190,906,883 | ---- | M] () -- C:\Documents and Settings\Brat\Desktop\5ZxYhVXBBm67Zy0X7irBZJ3Ccu-gFPHccicFmb3Q8x0.rar
[2013.08.30 20:17:13 | 000,001,813 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Google Chrome.lnk
[2013.08.30 19:27:31 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2013.08.29 11:19:53 | 000,913,408 | ---- | M] () -- C:\Documents and Settings\Brat\Desktop\RogueKiller.exe
[2013.08.27 15:56:11 | 000,994,642 | ---- | M] () -- C:\Documents and Settings\Brat\Desktop\adwcleaner.exe
[2013.08.26 16:20:51 | 010,285,040 | ---- | M] (Malwarebytes Corporation ) -- C:\Documents and Settings\Brat\Desktop\mbam-setup-1.75.0.1300.exe
[2013.08.24 12:08:32 | 000,154,589 | ---- | M] () -- C:\Documents and Settings\Brat\Desktop\Orange_doklad_FR_20130820_CN0037010592_16494111875.zip
[2013.08.21 19:30:57 | 000,688,992 | R--- | M] (Swearware) -- C:\Documents and Settings\Brat\Desktop\dds.exe
[2013.08.21 19:30:43 | 000,781,383 | ---- | M] () -- C:\Documents and Settings\Brat\Desktop\RSIT.exe
[2013.08.21 17:28:00 | 000,892,993 | ---- | M] () -- C:\Documents and Settings\Brat\Desktop\system_casne_identifikace.pdf
[2013.08.20 19:34:11 | 000,444,952 | ---- | M] (Creative Labs) -- C:\WINDOWS\System32\wrap_oal.dll
[2013.08.20 19:34:11 | 000,109,080 | ---- | M] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\WINDOWS\System32\OpenAL32.dll
[2013.08.20 11:32:41 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\UMDF\Msft_User_WpdMtpDr_01_00_00.Wdf
[2013.08.20 10:56:17 | 000,136,672 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\WINDOWS\System32\drivers\avipbb.sys
[2013.08.20 10:56:17 | 000,088,840 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\WINDOWS\System32\drivers\avgntflt.sys
[2013.08.19 19:25:05 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx
[2013.08.19 19:24:24 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\UMDF\MsftWdf_user_01_00_00.Wdf
[2013.08.15 18:07:14 | 000,001,720 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Mafia II.lnk
[2013.08.15 16:32:53 | 000,001,640 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Heroes of Might and Magic III Complete.lnk
[2013.08.15 16:31:26 | 000,000,838 | ---- | M] () -- C:\Documents and Settings\Brat\Desktop\Skyrim.lnk
[2013.08.15 13:28:36 | 000,426,628 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2013.08.15 13:28:36 | 000,065,638 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2013.08.08 07:45:50 | 000,267,800 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2013.08.07 13:55:07 | 000,000,365 | ---- | M] () -- C:\Documents and Settings\Brat\Desktop\E Documents.lnk
[2013.08.07 13:54:32 | 000,000,422 | ---- | M] () -- C:\Documents and Settings\Brat\Desktop\Zila.lnk
[2013.08.07 02:16:18 | 000,000,079 | ---- | M] () -- C:\Documents and Settings\Brat\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf
[2013.08.07 02:11:36 | 000,000,261 | ---- | M] () -- C:\WINDOWS\System32\$winnt$.inf
[2013.08.07 02:10:14 | 000,002,577 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2013.08.07 02:10:14 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2013.08.07 02:10:14 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2013.08.07 02:10:14 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2013.08.07 02:10:14 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
[2013.08.07 02:10:11 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb
[2013.08.07 02:10:11 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb
[2013.08.07 02:10:03 | 000,004,161 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI
[2013.08.07 02:08:07 | 000,021,640 | ---- | M] () -- C:\WINDOWS\System32\emptyregdb.dat
[2013.08.06 22:26:50 | 000,000,211 | -HS- | M] () -- C:\boot.ini
[2013.08.06 22:25:02 | 000,001,831 | ---- | M] () -- C:\Documents and Settings\Brat\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2013.08.06 22:16:53 | 000,001,878 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Skype.lnk
[2013.08.06 22:12:13 | 000,000,825 | ---- | M] () -- C:\Documents and Settings\Brat\Desktop\µTorrent.lnk
[2013.08.06 22:10:05 | 000,001,915 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Google Earth.lnk
[2013.08.06 22:06:47 | 000,000,793 | ---- | M] () -- C:\Documents and Settings\Brat\Application Data\Microsoft\Internet Explorer\Quick Launch\BS.Player FREE.lnk
[2013.08.06 22:06:47 | 000,000,775 | ---- | M] () -- C:\Documents and Settings\Brat\Desktop\BS.Player FREE.lnk
[2013.08.06 22:04:33 | 000,000,719 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\VLC media player.lnk
[2013.08.06 22:00:54 | 000,000,927 | ---- | M] () -- C:\Documents and Settings\Brat\Desktop\FlashFlippingBook PDF To JPG.lnk
[2013.08.06 22:00:06 | 000,000,730 | ---- | M] () -- C:\Documents and Settings\Brat\Desktop\mp3DirectCut.lnk
[2013.08.06 21:59:22 | 000,001,865 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Philips SA52XX Device Manager.lnk
[2013.08.06 21:56:32 | 000,001,734 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Adobe Reader XI.lnk
[2013.08.06 21:54:14 | 000,000,696 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\xrecode II.lnk
[2013.08.06 21:53:55 | 000,000,428 | ---- | M] () -- C:\WINDOWS\zipgenius.xml
[2013.08.06 21:53:41 | 000,000,682 | ---- | M] () -- C:\Documents and Settings\Brat\Desktop\SpeedFan.lnk
[2013.08.06 21:53:40 | 000,000,045 | ---- | M] () -- C:\WINDOWS\System32\initdebug.nfo
[2013.08.06 21:53:00 | 000,000,682 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\CCleaner.lnk
[2013.08.06 21:43:13 | 000,001,749 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\CyberLink PowerDVD 9.lnk
[2013.08.06 21:42:18 | 000,029,480 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msxml3a.dll
[2013.08.06 21:41:38 | 000,002,072 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\ACDSee Photo Manager 12.lnk
[2013.08.06 21:37:13 | 000,000,776 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\ZipGenius 6.lnk
[2013.08.06 21:33:07 | 000,000,833 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Alcohol 120%.lnk
[2013.08.06 21:27:41 | 000,000,970 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Ashampoo Burning Studio 6 FREE.lnk
[2013.08.06 21:25:49 | 000,000,548 | ---- | M] () -- C:\Documents and Settings\Brat\Desktop\Total Commander.lnk
[2013.08.06 21:14:42 | 000,000,654 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Winamp.lnk
[2013.08.06 21:08:54 | 000,940,794 | ---- | M] () -- C:\WINDOWS\System32\LoopyMusic.wav
[2013.08.06 21:08:54 | 000,146,650 | ---- | M] () -- C:\WINDOWS\System32\BuzzingBee.wav
[2013.08.06 21:04:42 | 000,001,707 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Avira Control Center.lnk
[2013.08.06 20:53:45 | 000,001,716 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Canon Solution Menu EX.lnk
[2013.08.06 20:51:54 | 000,001,969 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Canon MG5300 series Príručka on-screen manual.lnk
[2013.08.06 20:34:13 | 000,692,104 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe
[2013.08.06 20:34:13 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2013.08.06 20:32:20 | 000,000,775 | ---- | M] () -- C:\Documents and Settings\Brat\Desktop\Odkaz na everest.lnk
[2013.08.06 19:30:19 | 000,000,000 | ---- | M] () -- C:\WINDOWS\ativpsrm.bin
[2013.08.06 18:56:23 | 000,000,815 | ---- | M] () -- C:\Documents and Settings\Brat\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2013.08.06 18:45:55 | 000,250,048 | RHS- | M] () -- C:\ntldr
[2013.08.06 18:11:29 | 000,000,000 | ---- | M] () -- C:\WINDOWS\nsreg.dat
[2013.08.06 17:55:49 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.bak
[2013.08.03 14:18:38 | 001,543,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wmvdecod.dll
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files Created - No Company Name ==========

[2013.09.01 14:20:59 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2013.09.01 11:23:56 | 000,495,022 | ---- | C] () -- C:\Documents and Settings\Brat\Desktop\V000008.zip
[2013.08.31 18:11:22 | 001,936,416 | ---- | C] () -- C:\Documents and Settings\Brat\Desktop\FILE0088.JPG
[2013.08.31 16:11:40 | 000,020,329 | ---- | C] () -- C:\Documents and Settings\Brat\Desktop\bookmarks-2013-08-31.json
[2013.08.31 12:27:46 | 190,906,883 | ---- | C] () -- C:\Documents and Settings\Brat\Desktop\5ZxYhVXBBm67Zy0X7irBZJ3Ccu-gFPHccicFmb3Q8x0.rar
[2013.08.29 11:19:53 | 000,913,408 | ---- | C] () -- C:\Documents and Settings\Brat\Desktop\RogueKiller.exe
[2013.08.27 15:56:11 | 000,994,642 | ---- | C] () -- C:\Documents and Settings\Brat\Desktop\adwcleaner.exe
[2013.08.24 12:08:32 | 000,154,589 | ---- | C] () -- C:\Documents and Settings\Brat\Desktop\Orange_doklad_FR_20130820_CN0037010592_16494111875.zip
[2013.08.21 19:30:43 | 000,781,383 | ---- | C] () -- C:\Documents and Settings\Brat\Desktop\RSIT.exe
[2013.08.21 17:27:59 | 000,892,993 | ---- | C] () -- C:\Documents and Settings\Brat\Desktop\system_casne_identifikace.pdf
[2013.08.20 11:32:41 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\UMDF\Msft_User_WpdMtpDr_01_00_00.Wdf
[2013.08.19 19:24:24 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\UMDF\MsftWdf_user_01_00_00.Wdf
[2013.08.15 18:07:14 | 000,001,720 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Mafia II.lnk
[2013.08.15 16:32:53 | 000,001,640 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Heroes of Might and Magic III Complete.lnk
[2013.08.15 16:31:26 | 000,000,838 | ---- | C] () -- C:\Documents and Settings\Brat\Desktop\Skyrim.lnk
[2013.08.07 13:55:07 | 000,000,365 | ---- | C] () -- C:\Documents and Settings\Brat\Desktop\E Documents.lnk
[2013.08.07 13:54:32 | 000,000,422 | ---- | C] () -- C:\Documents and Settings\Brat\Desktop\Zila.lnk
[2013.08.07 02:16:18 | 000,000,079 | ---- | C] () -- C:\Documents and Settings\Brat\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf
[2013.08.07 02:16:13 | 000,000,738 | ---- | C] () -- C:\Documents and Settings\Brat\Start Menu\Programs\Outlook Express.lnk
[2013.08.07 02:16:11 | 000,000,815 | ---- | C] () -- C:\Documents and Settings\Brat\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2013.08.07 02:16:11 | 000,000,803 | ---- | C] () -- C:\Documents and Settings\Brat\Start Menu\Programs\Internet Explorer.lnk
[2013.08.07 02:16:01 | 000,001,599 | ---- | C] () -- C:\Documents and Settings\Brat\Start Menu\Programs\Remote Assistance.lnk
[2013.08.07 02:16:01 | 000,000,792 | ---- | C] () -- C:\Documents and Settings\Brat\Start Menu\Programs\Windows Media Player.lnk
[2013.08.07 02:11:36 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2013.08.07 02:11:18 | 000,175,104 | ---- | C] () -- C:\WINDOWS\System32\dllcache\pintlcsa.dll
[2013.08.07 02:11:10 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\korwbrkr.lex
[2013.08.07 02:11:07 | 000,059,392 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imscinst.exe
[2013.08.07 02:11:06 | 000,196,665 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imjpinst.exe
[2013.08.07 02:11:05 | 000,134,339 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imekr.lex
[2013.08.07 02:10:59 | 013,463,552 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hwxjpn.dll
[2013.08.07 02:10:56 | 000,108,827 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hanja.lex
[2013.08.07 02:10:49 | 000,173,568 | ---- | C] () -- C:\WINDOWS\System32\dllcache\chtskf.dll
[2013.08.07 02:10:14 | 000,002,577 | ---- | C] () -- C:\WINDOWS\System32\CONFIG.NT
[2013.08.07 02:10:14 | 000,000,000 | RHS- | C] () -- C:\MSDOS.SYS
[2013.08.07 02:10:14 | 000,000,000 | RHS- | C] () -- C:\IO.SYS
[2013.08.07 02:10:14 | 000,000,000 | ---- | C] () -- C:\CONFIG.SYS
[2013.08.07 02:10:14 | 000,000,000 | ---- | C] () -- C:\AUTOEXEC.BAT
[2013.08.07 02:10:11 | 000,023,392 | ---- | C] () -- C:\WINDOWS\System32\nscompat.tlb
[2013.08.07 02:10:11 | 000,016,832 | ---- | C] () -- C:\WINDOWS\System32\amcompat.tlb
[2013.08.07 02:10:10 | 000,316,640 | ---- | C] () -- C:\WINDOWS\WMSysPr9.prx
[2013.08.07 02:09:22 | 000,000,786 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Windows Movie Maker.lnk
[2013.08.07 02:09:13 | 004,399,505 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nls302en.lex
[2013.08.07 02:08:49 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt256.bmp
[2013.08.07 02:08:49 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt.bmp
[2013.08.07 02:08:43 | 000,000,984 | ---- | C] () -- C:\WINDOWS\System32\dllcache\srframe.mmf
[2013.08.07 02:08:07 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2013.08.07 02:07:35 | 000,001,986 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\MSN.lnk
[2013.08.07 02:07:35 | 000,000,609 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Windows Messenger.lnk
[2013.08.07 02:07:14 | 000,065,954 | ---- | C] () -- C:\WINDOWS\Prairie Wind.bmp
[2013.08.07 02:07:14 | 000,065,832 | ---- | C] () -- C:\WINDOWS\Santa Fe Stucco.bmp
[2013.08.07 02:07:14 | 000,026,680 | ---- | C] () -- C:\WINDOWS\River Sumida.bmp
[2013.08.07 02:07:14 | 000,026,582 | ---- | C] () -- C:\WINDOWS\Greenstone.bmp
[2013.08.07 02:07:14 | 000,017,362 | ---- | C] () -- C:\WINDOWS\Rhododendron.bmp
[2013.08.07 02:07:14 | 000,017,336 | ---- | C] () -- C:\WINDOWS\Gone Fishing.bmp
[2013.08.07 02:07:14 | 000,017,062 | ---- | C] () -- C:\WINDOWS\Coffee Bean.bmp
[2013.08.07 02:07:14 | 000,016,730 | ---- | C] () -- C:\WINDOWS\FeatherTexture.bmp
[2013.08.07 02:07:14 | 000,009,522 | ---- | C] () -- C:\WINDOWS\Zapotec.bmp
[2013.08.07 02:07:13 | 000,065,978 | ---- | C] () -- C:\WINDOWS\Soap Bubbles.bmp
[2013.08.07 02:07:13 | 000,001,272 | ---- | C] () -- C:\WINDOWS\Blue Lace 16.bmp
[2013.08.07 02:07:11 | 000,003,286 | ---- | C] () -- C:\WINDOWS\System32\tslabels.h
[2013.08.07 02:07:11 | 000,001,161 | ---- | C] () -- C:\WINDOWS\System32\usrlogon.cmd
[2013.08.07 02:07:10 | 000,000,768 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.h
[2013.08.07 02:07:04 | 000,063,488 | ---- | C] () -- C:\WINDOWS\System32\wmimgmt.msc
[2013.08.06 22:16:53 | 000,001,878 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Skype.lnk
[2013.08.06 22:12:13 | 000,000,825 | ---- | C] () -- C:\Documents and Settings\Brat\Desktop\µTorrent.lnk
[2013.08.06 22:10:05 | 000,001,915 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Google Earth.lnk
[2013.08.06 22:08:13 | 000,001,831 | ---- | C] () -- C:\Documents and Settings\Brat\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2013.08.06 22:08:13 | 000,001,813 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Google Chrome.lnk
[2013.08.06 22:07:37 | 000,000,920 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2013.08.06 22:07:37 | 000,000,916 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2013.08.06 22:06:47 | 000,000,793 | ---- | C] () -- C:\Documents and Settings\Brat\Application Data\Microsoft\Internet Explorer\Quick Launch\BS.Player FREE.lnk
[2013.08.06 22:06:47 | 000,000,775 | ---- | C] () -- C:\Documents and Settings\Brat\Desktop\BS.Player FREE.lnk
[2013.08.06 22:04:33 | 000,000,719 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\VLC media player.lnk
[2013.08.06 22:00:54 | 000,000,927 | ---- | C] () -- C:\Documents and Settings\Brat\Desktop\FlashFlippingBook PDF To JPG.lnk
[2013.08.06 22:00:06 | 000,000,730 | ---- | C] () -- C:\Documents and Settings\Brat\Desktop\mp3DirectCut.lnk
[2013.08.06 21:59:22 | 000,001,865 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Philips SA52XX Device Manager.lnk
[2013.08.06 21:56:32 | 000,002,347 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Adobe Reader XI.lnk
[2013.08.06 21:56:32 | 000,001,734 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Adobe Reader XI.lnk
[2013.08.06 21:54:14 | 000,000,696 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\xrecode II.lnk
[2013.08.06 21:54:01 | 000,000,257 | ---- | C] () -- C:\Documents and Settings\Brat\Application Data\mainhst.zgh
[2013.08.06 21:53:41 | 000,000,682 | ---- | C] () -- C:\Documents and Settings\Brat\Desktop\SpeedFan.lnk
[2013.08.06 21:53:39 | 000,000,045 | ---- | C] () -- C:\WINDOWS\System32\initdebug.nfo
[2013.08.06 21:53:00 | 000,000,682 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\CCleaner.lnk
[2013.08.06 21:43:13 | 000,001,749 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\CyberLink PowerDVD 9.lnk
[2013.08.06 21:41:38 | 000,002,072 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\ACDSee Photo Manager 12.lnk
[2013.08.06 21:40:23 | 000,000,428 | ---- | C] () -- C:\WINDOWS\zipgenius.xml
[2013.08.06 21:38:05 | 000,208,320 | ---- | C] () -- C:\WINDOWS\System32\drivers\OADriver.sys
[2013.08.06 21:38:05 | 000,044,992 | ---- | C] () -- C:\WINDOWS\System32\drivers\oahlp32.sys
[2013.08.06 21:37:13 | 000,000,776 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\ZipGenius 6.lnk
[2013.08.06 21:33:07 | 000,000,833 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Alcohol 120%.lnk
[2013.08.06 21:27:41 | 000,000,970 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Ashampoo Burning Studio 6 FREE.lnk
[2013.08.06 21:25:49 | 000,000,548 | ---- | C] () -- C:\Documents and Settings\Brat\Desktop\Total Commander.lnk
[2013.08.06 21:25:48 | 000,003,024 | ---- | C] () -- C:\WINDOWS\wincmd.ini
[2013.08.06 21:25:48 | 000,000,545 | ---- | C] () -- C:\WINDOWS\UC.PIF
[2013.08.06 21:25:48 | 000,000,545 | ---- | C] () -- C:\WINDOWS\RAR.PIF
[2013.08.06 21:25:48 | 000,000,545 | ---- | C] () -- C:\WINDOWS\PKZIP.PIF
[2013.08.06 21:25:48 | 000,000,545 | ---- | C] () -- C:\WINDOWS\PKUNZIP.PIF
[2013.08.06 21:25:48 | 000,000,545 | ---- | C] () -- C:\WINDOWS\NOCLOSE.PIF
[2013.08.06 21:25:48 | 000,000,545 | ---- | C] () -- C:\WINDOWS\LHA.PIF
[2013.08.06 21:25:48 | 000,000,545 | ---- | C] () -- C:\WINDOWS\ARJ.PIF
[2013.08.06 21:14:42 | 000,000,654 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Winamp.lnk
[2013.08.06 21:08:54 | 000,940,794 | ---- | C] () -- C:\WINDOWS\System32\LoopyMusic.wav
[2013.08.06 21:08:54 | 000,146,650 | ---- | C] () -- C:\WINDOWS\System32\BuzzingBee.wav
[2013.08.06 21:04:42 | 000,001,707 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Avira Control Center.lnk
[2013.08.06 20:54:24 | 000,068,096 | ---- | C] () -- C:\WINDOWS\System32\CNC1754D.TBL
[2013.08.06 20:53:45 | 000,001,716 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Canon Solution Menu EX.lnk
[2013.08.06 20:51:54 | 000,001,969 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Canon MG5300 series Príručka on-screen manual.lnk
[2013.08.06 20:48:08 | 000,178,688 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2013.08.06 20:40:54 | 000,025,816 | ---- | C] () -- C:\WINDOWS\System32\drivers\RTAIODAT.DAT
[2013.08.06 20:32:20 | 000,000,775 | ---- | C] () -- C:\Documents and Settings\Brat\Desktop\Odkaz na everest.lnk
[2013.08.06 19:36:14 | 002,852,480 | ---- | C] () -- C:\WINDOWS\System32\ativvaxx.cap
[2013.08.06 19:36:14 | 000,246,000 | ---- | C] () -- C:\WINDOWS\System32\atiapfxx.blb
[2013.08.06 19:30:19 | 000,000,000 | ---- | C] () -- C:\WINDOWS\ativpsrm.bin
[2013.08.06 19:23:50 | 000,593,920 | ---- | C] () -- C:\WINDOWS\System32\ati2sgag.exe
[2013.08.06 19:23:48 | 000,038,177 | ---- | C] () -- C:\WINDOWS\atiogl.xml
[2013.08.06 19:23:47 | 000,007,167 | R--- | C] () -- C:\WINDOWS\System32\atifglpf.xml
[2013.08.06 19:23:46 | 000,887,724 | ---- | C] () -- C:\WINDOWS\System32\ativva6x.dat
[2013.08.06 19:23:45 | 000,000,003 | ---- | C] () -- C:\WINDOWS\System32\ativva5x.dat
[2013.08.06 19:23:44 | 003,107,788 | R--- | C] () -- C:\WINDOWS\System32\ativvaxx.dat
[2013.08.06 19:23:44 | 000,618,823 | ---- | C] () -- C:\WINDOWS\System32\atiicdxx.dat
[2013.08.06 19:09:51 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll
[2013.08.06 19:09:51 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\dllcache\iacenc.dll
[2013.08.06 18:59:12 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2013.08.06 18:59:11 | 001,685,606 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.spd
[2013.08.06 18:59:11 | 000,605,050 | ---- | C] () -- C:\WINDOWS\System32\dllcache\r1033tts.lxa
[2013.08.06 18:59:11 | 000,000,888 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.sdf
[2013.08.06 18:59:10 | 000,643,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ltts1033.lxa
[2013.08.06 18:58:57 | 000,001,688 | ---- | C] () -- C:\WINDOWS\System32\AUTOEXEC.NT
[2013.08.06 18:57:08 | 001,042,903 | ---- | C] () -- C:\WINDOWS\System32\dllcache\SP2.CAT
[2013.08.06 18:57:08 | 000,797,189 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5IIS.CAT
[2013.08.06 18:57:08 | 000,399,645 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MAPIMIG.CAT
[2013.08.06 18:57:08 | 000,037,484 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MW770.CAT
[2013.08.06 18:57:08 | 000,013,472 | ---- | C] () -- C:\WINDOWS\System32\dllcache\HPCRDP.CAT
[2013.08.06 18:57:08 | 000,008,574 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IASNT4.CAT
[2013.08.06 18:57:08 | 000,007,382 | ---- | C] () -- C:\WINDOWS\System32\dllcache\OEMBIOS.CAT
[2013.08.06 18:57:08 | 000,007,334 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmerrenu.cat
[2013.08.06 18:56:34 | 000,267,800 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2013.08.06 18:55:30 | 000,000,211 | -HS- | C] () -- C:\boot.ini
[2013.08.06 18:55:27 | 000,000,261 | ---- | C] () -- C:\WINDOWS\System32\$winnt$.inf
[2013.08.06 18:53:51 | 000,008,370 | ---- | C] () -- C:\WINDOWS\System32\IE8Eula.rtf
[2013.08.06 18:53:51 | 000,001,988 | ---- | C] () -- C:\WINDOWS\System32\ticrf.rat
[2013.08.06 18:53:46 | 000,008,798 | ---- | C] () -- C:\WINDOWS\System32\icrav03.rat
[2013.08.06 18:48:36 | 000,613,334 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.chm
[2013.08.06 18:48:36 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud7.wav
[2013.08.06 18:48:36 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud9.wav
[2013.08.06 18:48:36 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud8.wav
[2013.08.06 18:48:36 | 000,067,374 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.adm
[2013.08.06 18:48:36 | 000,023,195 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplay.chm
[2013.08.06 18:48:36 | 000,010,457 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.hta
[2013.08.06 18:48:36 | 000,001,771 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.css
[2013.08.06 18:48:36 | 000,000,855 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpocm.inf
[2013.08.06 18:48:36 | 000,000,420 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmploc.js
[2013.08.06 18:48:35 | 000,572,557 | ---- | C] () -- C:\WINDOWS\System32\dllcache\rtuner.wmv
[2013.08.06 18:48:35 | 000,375,519 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nuskin.wmv
[2013.08.06 18:48:35 | 000,354,468 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud1.wav
[2013.08.06 18:48:35 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud6.wav
[2013.08.06 18:48:35 | 000,300,969 | ---- | C] () -- C:\WINDOWS\System32\dllcache\viz.wmv
[2013.08.06 18:48:35 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud3.wav
[2013.08.06 18:48:35 | 000,086,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud5.wav
[2013.08.06 18:48:35 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud4.wav
[2013.08.06 18:48:35 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud2.wav
[2013.08.06 18:48:35 | 000,077,307 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plyr_err.chm
[2013.08.06 18:48:35 | 000,066,725 | ---- | C] () -- C:\WINDOWS\System32\dllcache\revert.wmz
[2013.08.06 18:48:35 | 000,029,070 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmp.inf
[2013.08.06 18:48:35 | 000,023,829 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tourbg.gif
[2013.08.06 18:48:35 | 000,022,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npds.zip
[2013.08.06 18:48:35 | 000,018,286 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.inf
[2013.08.06 18:48:35 | 000,017,489 | ---- | C] () -- C:\WINDOWS\System32\dllcache\videobg.gif
[2013.08.06 18:48:35 | 000,017,272 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmdm.inf
[2013.08.06 18:48:35 | 000,008,677 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm7.gif
[2013.08.06 18:48:35 | 000,007,892 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm9.gif
[2013.08.06 18:48:35 | 000,007,636 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm2.gif
[2013.08.06 18:48:35 | 000,007,369 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm4.gif
[2013.08.06 18:48:35 | 000,006,769 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmfsdk.inf
[2013.08.06 18:48:35 | 000,006,241 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm3.gif
[2013.08.06 18:48:35 | 000,006,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm6.gif
[2013.08.06 18:48:35 | 000,005,789 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm1.gif
[2013.08.06 18:48:35 | 000,005,290 | ---- | C] () -- C:\WINDOWS\System32\dllcache\vidsamp.gif
[2013.08.06 18:48:35 | 000,004,193 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm8.gif
[2013.08.06 18:48:35 | 000,003,187 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tour.js
[2013.08.06 18:48:35 | 000,002,778 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogoh.gif
[2013.08.06 18:48:35 | 000,002,545 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogo.gif
[2013.08.06 18:48:35 | 000,002,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm5.gif
[2013.08.06 18:48:35 | 000,002,469 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplay.gif
[2013.08.06 18:48:35 | 000,002,450 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpause.gif
[2013.08.06 18:48:35 | 000,002,375 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplayh.gif
[2013.08.06 18:48:35 | 000,002,371 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpauseh.gif
[2013.08.06 18:48:35 | 000,001,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst6.wpl
[2013.08.06 18:48:35 | 000,001,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst5.wpl
[2013.08.06 18:48:35 | 000,001,474 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst3.wpl
[2013.08.06 18:48:35 | 000,001,451 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst12.wpl
[2013.08.06 18:48:35 | 000,001,448 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst4.wpl
[2013.08.06 18:48:35 | 000,001,398 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taon.gif
[2013.08.06 18:48:35 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taonh.gif
[2013.08.06 18:48:35 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoff.gif
[2013.08.06 18:48:35 | 000,001,367 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoffh.gif
[2013.08.06 18:48:35 | 000,001,250 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst1.wpl
[2013.08.06 18:48:35 | 000,001,148 | ---- | C] () -- C:\WINDOWS\System32\dllcache\snd.htm
[2013.08.06 18:48:35 | 000,001,049 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst2.wpl
[2013.08.06 18:48:35 | 000,001,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst7.wpl
[2013.08.06 18:48:35 | 000,001,036 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst8.wpl
[2013.08.06 18:48:35 | 000,000,908 | ---- | C] () -- C:\WINDOWS\System32\dllcache\skins.inf
[2013.08.06 18:48:35 | 000,000,789 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst11.wpl
[2013.08.06 18:48:35 | 000,000,787 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst10.wpl
[2013.08.06 18:48:35 | 000,000,784 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst9.wpl
[2013.08.06 18:48:35 | 000,000,783 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst13.wpl
[2013.08.06 18:48:35 | 000,000,775 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst14.wpl
[2013.08.06 18:48:35 | 000,000,733 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst15.wpl
[2013.08.06 18:48:35 | 000,000,403 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npdrmv2.zip
[2013.08.06 18:48:34 | 000,457,607 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mdlib.wmv
[2013.08.06 18:48:34 | 000,381,425 | ---- | C] () -- C:\WINDOWS\System32\dllcache\copycd.wmv
[2013.08.06 18:48:34 | 000,184,959 | ---- | C] () -- C:\WINDOWS\System32\dllcache\compact.wmz
[2013.08.06 18:48:34 | 000,009,585 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.css
[2013.08.06 18:48:34 | 000,008,298 | ---- | C] () -- C:\WINDOWS\System32\dllcache\contents.htm
[2013.08.06 18:48:34 | 000,006,878 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.js
[2013.08.06 18:48:34 | 000,005,971 | ---- | C] () -- C:\WINDOWS\System32\dllcache\events.js
[2013.08.06 18:48:34 | 000,000,999 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bktrh.gif
[2013.08.06 18:48:34 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnth.gif
[2013.08.06 18:48:34 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnt.gif
[2013.08.06 18:48:34 | 000,000,772 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cntd.gif
[2013.08.06 18:48:34 | 000,000,760 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapph.gif
[2013.08.06 18:48:34 | 000,000,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapp.gif
[2013.08.06 18:46:06 | 000,064,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\ativmc20.cod
[2013.08.06 18:46:05 | 000,129,045 | ---- | C] () -- C:\WINDOWS\System32\drivers\cxthsfs2.cty
[2013.08.06 18:46:04 | 000,067,866 | ---- | C] () -- C:\WINDOWS\System32\drivers\netwlan5.img
[2013.08.06 18:12:48 | 000,000,730 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Mozilla Firefox.lnk
[2013.08.06 18:11:29 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2013.08.06 18:11:24 | 000,000,742 | ---- | C] () -- C:\Documents and Settings\Brat\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2013.08.06 18:11:24 | 000,000,724 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Mozilla Firefox.lnk
[2013.08.06 17:55:49 | 000,013,646 | ---- | C] () -- C:\WINDOWS\System32\wpa.bak

========== ZeroAccess Check ==========

[2013.08.06 19:25:10 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shdocvw.dll -- [2008.04.14 05:42:06 | 001,499,136 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = C:\WINDOWS\system32\wbem\fastprox.dll -- [2009.02.09 14:10:48 | 000,473,600 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2008.04.14 05:42:10 | 000,273,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

========== LOP Check ==========

[2013.08.06 21:41:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ACD Systems
[2013.08.06 21:27:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Ashampoo
[2013.08.06 20:50:59 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\CanonBJ
[2013.08.06 20:55:21 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\CanonEPP
[2013.08.20 14:26:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\CanonIJ
[2013.08.26 13:24:59 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\CanonIJEPPEX
[2013.08.06 20:55:21 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\CanonIJEPPEX2
[2013.08.06 20:55:20 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\CanonIJMyPrinter
[2013.08.26 13:45:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\CanonIJPLM
[2013.08.20 14:25:30 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\CanonIJScan
[2013.08.06 20:55:21 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\CanonIJSolutionMenuEX
[2013.08.06 20:53:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\CanonIJWSpt
[2013.08.06 22:27:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\OnlineArmor
[2013.08.06 21:42:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Temp
[2013.08.13 16:48:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\ACD Systems
[2013.08.06 21:27:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\Ashampoo
[2013.08.07 22:27:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\BSplayer
[2013.08.06 22:06:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\BSplayer Pro
[2013.08.20 14:25:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\Canon
[2013.08.20 19:36:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\CrystalApp
[2013.08.20 19:34:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\CrystalSpace
[2013.08.06 21:38:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\OnlineArmor
[2013.08.20 21:00:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\PlaneShift
[2013.09.01 00:14:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\uTorrent
[2013.08.11 16:24:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\xrecode2
[2013.08.06 21:54:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\ZipGenius

Re: Preventivku prosím

Napsal: 01 zář 2013 14:49
od kuntakinte
========== Purity Check ==========



========== Custom Scans ==========

< >
[2013.08.06 22:07:37 | 000,000,916 | ---- | C] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
[2013.08.06 22:07:37 | 000,000,920 | ---- | C] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
[2013.08.07 02:08:39 | 000,000,065 | RH-- | C] () -- C:\WINDOWS\Tasks\desktop.ini
[2013.08.07 02:12:44 | 000,000,006 | -H-- | C] () -- C:\WINDOWS\Tasks\SA.DAT

< >

< MD5 for: AGP440.SYS >
[2006.02.28 14:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:AGP440.sys
[2008.04.14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys
[2008.04.14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:AGP440.sys
[2008.04.14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008.04.14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys

< MD5 for: ATAPI.SYS >
[2006.02.28 14:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2008.04.14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008.04.14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008.04.14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008.04.14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2006.02.28 14:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys

< MD5 for: AUTOCHK.EXE >
[2008.04.14 05:42:14 | 000,588,800 | ---- | M] (Microsoft Corporation) MD5=23043C91A0F9DFB4B9E9F87B680863B4 -- C:\WINDOWS\ServicePackFiles\i386\autochk.exe
[2008.04.14 05:42:14 | 000,588,800 | ---- | M] (Microsoft Corporation) MD5=23043C91A0F9DFB4B9E9F87B680863B4 -- C:\WINDOWS\system32\autochk.exe
[2006.02.28 14:00:00 | 000,588,800 | ---- | M] (Microsoft Corporation) MD5=B3415B9D6026F65E43089ABED096C38C -- C:\WINDOWS\$NtServicePackUninstall$\autochk.exe

< MD5 for: CDROM.SYS >
[2006.02.28 14:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys
[2008.04.14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2008.04.14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys
[2008.04.14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys
[2008.04.14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys
[2006.02.28 14:00:00 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys

< MD5 for: CRYPTSVC.DLL >
[2006.02.28 14:00:00 | 000,060,416 | ---- | M] (Microsoft Corporation) MD5=10654F9DDCEA9C46CFB77554231BE73B -- C:\WINDOWS\$NtServicePackUninstall$\cryptsvc.dll
[2008.04.14 05:41:52 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=3D4E199942E29207970E04315D02AD3B -- C:\WINDOWS\ServicePackFiles\i386\cryptsvc.dll
[2008.04.14 05:41:52 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=3D4E199942E29207970E04315D02AD3B -- C:\WINDOWS\system32\cryptsvc.dll

< MD5 for: EVENTLOG.DLL >
[2008.04.14 05:41:54 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008.04.14 05:41:54 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- C:\WINDOWS\system32\eventlog.dll
[2006.02.28 14:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=82B24CB70E5944E6E34662205A2A5B78 -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll

< MD5 for: EXPLORER.EXE >
[2008.04.14 05:42:20 | 001,033,728 | ---- | M] (Microsoft Corporation) MD5=12896823FB95BFB3DC9B46BCAEDC9923 -- C:\WINDOWS\explorer.exe
[2008.04.14 05:42:20 | 001,033,728 | ---- | M] (Microsoft Corporation) MD5=12896823FB95BFB3DC9B46BCAEDC9923 -- C:\WINDOWS\ServicePackFiles\i386\explorer.exe
[2006.02.28 14:00:00 | 001,032,192 | ---- | M] (Microsoft Corporation) MD5=A0732187050030AE399B241436565E64 -- C:\WINDOWS\$NtServicePackUninstall$\explorer.exe

< MD5 for: HAL.DLL >
[2006.02.28 14:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:hal.dll
[2008.04.14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:hal.dll
[2008.04.14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:hal.dll
[2008.04.14 00:01:30 | 000,134,400 | ---- | M] (Microsoft Corporation) MD5=4329EE7D502C9113EBA0F9570392F5EE -- C:\WINDOWS\system32\HAL.DLL
[2008.04.14 00:01:34 | 000,105,344 | ---- | M] (Microsoft Corporation) MD5=6DB1E72AD3B372DFC451B7F54BA08AA7 -- C:\WINDOWS\ServicePackFiles\i386\hal.dll
[2006.02.28 14:00:00 | 000,134,400 | ---- | M] (Microsoft Corporation) MD5=DFCE51FD96909D1B97D4A1A72D060D77 -- C:\WINDOWS\$NtServicePackUninstall$\hal.dll

< MD5 for: CHANGER.SYS >
[2006.02.28 14:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:Changer.sys
[2008.04.14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:Changer.sys
[2008.04.14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:Changer.sys
[2008.04.14 00:11:00 | 000,008,192 | ---- | M] (Microsoft Corporation) MD5=2A5815CA6FFF24B688C01F828B96819C -- C:\WINDOWS\ServicePackFiles\i386\changer.sys

< MD5 for: ISAPNP.SYS >
[2008.04.14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:isapnp.sys
[2008.04.14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:isapnp.sys
[2008.04.14 00:06:42 | 000,037,248 | ---- | M] (Microsoft Corporation) MD5=05A299EC56E52649B1CF2FC52D20F2D7 -- C:\WINDOWS\ServicePackFiles\i386\isapnp.sys
[2008.04.14 00:06:42 | 000,037,248 | ---- | M] (Microsoft Corporation) MD5=05A299EC56E52649B1CF2FC52D20F2D7 -- C:\WINDOWS\system32\drivers\isapnp.sys
[2006.02.28 14:00:00 | 000,035,840 | ---- | M] (Microsoft Corporation) MD5=E504F706CCB699C2596E9A3DA1596E87 -- C:\WINDOWS\$NtServicePackUninstall$\isapnp.sys

< MD5 for: LSASS.EXE >
[2006.02.28 14:00:00 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=84885F9B82F4D55C6146EBF6065D75D2 -- C:\WINDOWS\$NtServicePackUninstall$\lsass.exe
[2008.04.14 05:42:26 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=BF2466B3E18E970D8A976FB95FC1CA85 -- C:\WINDOWS\ServicePackFiles\i386\lsass.exe
[2008.04.14 05:42:26 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=BF2466B3E18E970D8A976FB95FC1CA85 -- C:\WINDOWS\system32\lsass.exe

< MD5 for: NDIS.SYS >
[2008.04.14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ServicePackFiles\i386\ndis.sys
[2008.04.14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys
[2006.02.28 14:00:00 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- C:\WINDOWS\$NtServicePackUninstall$\ndis.sys

< MD5 for: NETLOGON.DLL >
[2008.04.14 05:42:02 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINDOWS\ServicePackFiles\i386\netlogon.dll
[2008.04.14 05:42:02 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINDOWS\system32\netlogon.dll
[2006.02.28 14:00:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=96353FCECBA774BB8DA74A1C6507015A -- C:\WINDOWS\$NtServicePackUninstall$\netlogon.dll

< MD5 for: SCECLI.DLL >
[2006.02.28 14:00:00 | 000,180,224 | ---- | M] (Microsoft Corporation) MD5=0F78E27F563F2AAF74B91A49E2ABF19A -- C:\WINDOWS\$NtServicePackUninstall$\scecli.dll
[2008.04.14 05:42:06 | 000,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:\WINDOWS\ServicePackFiles\i386\scecli.dll
[2008.04.14 05:42:06 | 000,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:\WINDOWS\system32\scecli.dll

< MD5 for: SMSS.EXE >
[2008.04.14 05:42:38 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=5F816C1F539266D2D4C78694239DA0B5 -- C:\WINDOWS\ServicePackFiles\i386\smss.exe
[2008.04.14 05:42:38 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=5F816C1F539266D2D4C78694239DA0B5 -- C:\WINDOWS\system32\smss.exe
[2006.02.28 14:00:00 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=BD7FB0957C716F1A60333AEE04DE2178 -- C:\WINDOWS\$NtServicePackUninstall$\smss.exe

< MD5 for: SVCHOST.EXE >
[2008.04.14 05:42:38 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=27C6D03BCDB8CFEB96B716F3D8BE3E18 -- C:\WINDOWS\ServicePackFiles\i386\svchost.exe
[2008.04.14 05:42:38 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=27C6D03BCDB8CFEB96B716F3D8BE3E18 -- C:\WINDOWS\system32\svchost.exe
[2006.02.28 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=8F078AE4ED187AAABC0A305146DE6716 -- C:\WINDOWS\$NtServicePackUninstall$\svchost.exe

< MD5 for: TCPIP.SYS >
[2008.04.14 00:50:18 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS\$NtUninstallKB2509553$\tcpip.sys
[2008.04.14 00:50:18 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS\ServicePackFiles\i386\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\dllcache\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\drivers\tcpip.sys
[2006.02.28 14:00:00 | 000,359,040 | ---- | M] (Microsoft Corporation) MD5=9F4B36614A0FC234525BA224957DE55C -- C:\WINDOWS\$NtServicePackUninstall$\tcpip.sys
[2008.06.20 13:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\tcpip.sys

< MD5 for: USERINIT.EXE >
[2006.02.28 14:00:00 | 000,024,576 | ---- | M] (Microsoft Corporation) MD5=39B1FFB03C2296323832ACBAE50D2AFF -- C:\WINDOWS\$NtServicePackUninstall$\userinit.exe
[2008.04.14 05:42:40 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=A93AEE1928A9D7CE3E16D24EC7380F89 -- C:\WINDOWS\ServicePackFiles\i386\userinit.exe
[2008.04.14 05:42:40 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=A93AEE1928A9D7CE3E16D24EC7380F89 -- C:\WINDOWS\system32\userinit.exe

< MD5 for: WINLOGON.EXE >
[2006.02.28 14:00:00 | 000,502,272 | ---- | M] (Microsoft Corporation) MD5=01C3346C241652F43AED8E2149881BFE -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
[2008.04.14 05:42:40 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=ED0EF0A136DEC83DF69F04118870003E -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008.04.14 05:42:40 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=ED0EF0A136DEC83DF69F04118870003E -- C:\WINDOWS\system32\winlogon.exe

< MD5 for: WS2_32.DLL >
[2008.04.14 05:42:12 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=2CCC474EB85CEAA3E1FA1726580A3E5A -- C:\WINDOWS\ServicePackFiles\i386\ws2_32.dll
[2008.04.14 05:42:12 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=2CCC474EB85CEAA3E1FA1726580A3E5A -- C:\WINDOWS\system32\ws2_32.dll
[2006.02.28 14:00:00 | 000,082,944 | ---- | M] (Microsoft Corporation) MD5=2ED0B7F12A60F90092081C50FA0EC2B2 -- C:\WINDOWS\$NtServicePackUninstall$\ws2_32.dll

< >

< %systemroot%*.* /U /s >
[15 C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
[2 C:\WINDOWS\system32\config\systemprofile\Local Settings\Temp\*.tmp files -> C:\WINDOWS\system32\config\systemprofile\Local Settings\Temp\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >
[2013.08.06 21:41:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ACD Systems
[2013.08.11 15:33:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Adobe
[2013.08.06 21:27:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Ashampoo
[2013.08.06 19:30:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ATI
[2013.08.06 21:04:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Avira
[2013.08.06 20:50:59 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\CanonBJ
[2013.08.06 20:55:21 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\CanonEPP
[2013.08.20 14:26:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\CanonIJ
[2013.08.26 13:24:59 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\CanonIJEPPEX
[2013.08.06 20:55:21 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\CanonIJEPPEX2
[2013.08.06 20:55:20 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\CanonIJMyPrinter
[2013.08.26 13:45:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\CanonIJPLM
[2013.08.20 14:25:30 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\CanonIJScan
[2013.08.06 20:55:21 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\CanonIJSolutionMenuEX
[2013.08.06 20:53:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\CanonIJWSpt
[2013.08.06 21:43:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\CyberLink
[2013.08.26 16:25:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2013.08.20 11:32:41 | 000,000,000 | --SD | M] -- C:\Documents and Settings\All Users\Application Data\Microsoft
[2013.08.06 21:51:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Microsoft Help
[2013.08.06 18:12:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Mozilla
[2013.08.06 22:27:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\OnlineArmor
[2013.08.06 22:16:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Skype
[2013.08.06 21:42:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Temp
[2013.08.06 19:01:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage

< %ALLUSERSPROFILE%\Application Data\*.exe /s >
[2012.09.24 05:46:27 | 000,364,224 | ---- | M] (Adobe Systems Incorporated) -- C:\Documents and Settings\All Users\Application Data\Adobe\Setup\{AC76BA86-7AD7-1029-7B44-AB0000000001}\setup.exe
[2013.08.20 10:55:33 | 000,599,608 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Documents and Settings\All Users\Application Data\Avira\AntiVir Desktop\TEMP\SELFUPDATE\update.exe
[2013.08.20 10:55:34 | 000,044,600 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Documents and Settings\All Users\Application Data\Avira\AntiVir Desktop\TEMP\SELFUPDATE\updrgui.exe
[2013.08.06 21:42:18 | 000,053,319 | ---- | M] ( ) -- C:\Documents and Settings\All Users\Application Data\Temp\{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}\PostBuild.exe

< %APPDATA%\*. >
[2013.08.13 16:48:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\ACD Systems
[2013.08.07 13:53:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\Adobe
[2013.08.06 21:27:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\Ashampoo
[2013.08.06 19:30:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\ATI
[2013.08.06 21:14:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\Avira
[2013.08.07 22:27:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\BSplayer
[2013.08.06 22:06:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\BSplayer Pro
[2013.08.20 14:25:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\Canon
[2013.08.20 19:36:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\CrystalApp
[2013.08.20 19:34:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\CrystalSpace
[2013.08.06 21:44:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\CyberLink
[2013.08.06 22:10:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\Google
[2013.08.07 02:16:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\Identities
[2013.08.07 02:42:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\InstallShield
[2013.08.06 19:31:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\Macromedia
[2013.08.26 16:26:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\Malwarebytes
[2013.08.19 19:54:32 | 000,000,000 | --SD | M] -- C:\Documents and Settings\Brat\Application Data\Microsoft
[2013.08.06 18:11:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\Mozilla
[2013.08.06 21:38:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\OnlineArmor
[2013.08.20 21:00:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\PlaneShift
[2013.08.06 22:17:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\Skype
[2013.08.19 19:28:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\Sony Corporation
[2013.09.01 00:14:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\uTorrent
[2013.08.30 20:18:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\vlc
[2013.08.22 00:04:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\Winamp
[2013.08.11 16:24:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\xrecode2
[2013.08.06 21:54:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Brat\Application Data\ZipGenius

< %APPDATA%\*.exe /s >
[2009.08.11 21:21:26 | 000,087,552 | ---- | M] () -- C:\Documents and Settings\Brat\Application Data\BSplayer\AC3 Filter\ac3config.exe
[2009.08.11 21:21:30 | 000,090,112 | ---- | M] () -- C:\Documents and Settings\Brat\Application Data\BSplayer\AC3 Filter\spdif_test.exe
[2010.03.22 14:52:04 | 000,697,690 | ---- | M] () -- C:\Documents and Settings\Brat\Application Data\BSplayer\AC3 Filter\unins000.exe
[2012.10.11 09:01:20 | 001,175,371 | ---- | M] () -- C:\Documents and Settings\Brat\Application Data\BSplayer\FFDShow\unins000.exe
[2010.08.14 10:42:54 | 000,113,152 | ---- | M] () -- C:\Documents and Settings\Brat\Application Data\BSplayer\Haali media splitter\dsmux.exe
[2010.08.14 10:45:10 | 000,358,400 | ---- | M] () -- C:\Documents and Settings\Brat\Application Data\BSplayer\Haali media splitter\gdsmux.exe
[2010.08.14 10:42:06 | 000,137,728 | ---- | M] () -- C:\Documents and Settings\Brat\Application Data\BSplayer\Haali media splitter\mkv2vfr.exe
[2010.09.30 15:30:22 | 000,042,305 | ---- | M] () -- C:\Documents and Settings\Brat\Application Data\BSplayer\Haali media splitter\uninstall.exe
[2013.08.06 19:26:26 | 000,009,158 | R--- | M] () -- C:\Documents and Settings\Brat\Application Data\Microsoft\Installer\{89DE67AD-08B8-4699-A55D-CA5C0AF82BF3}\ARPPRODUCTICON.exe
[2013.08.06 22:12:18 | 000,888,152 | ---- | M] (BitTorrent Inc.) -- C:\Documents and Settings\Brat\Application Data\uTorrent\uTorrent.exe
[2013.08.06 22:12:13 | 001,130,576 | ---- | M] (BitTorrent Inc.) -- C:\Documents and Settings\Brat\Application Data\uTorrent\updates\3.3.1_29988.exe
[2013.08.06 22:12:18 | 000,888,152 | ---- | M] (BitTorrent Inc.) -- C:\Documents and Settings\Brat\Application Data\uTorrent\updates\3.3.1_30003.exe
[2013.08.15 13:40:12 | 000,888,152 | ---- | M] (BitTorrent Inc.) -- C:\Documents and Settings\Brat\Application Data\uTorrent\updates\3.3.1_30017.exe

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

< %systemroot%\Tasks\*.job /lockedfiles >

< %systemroot%\system32\drivers\*.sys /lockedfiles >
[2013.08.06 21:29:54 | 000,685,816 | ---- | M] () Unable to obtain MD5 -- C:\WINDOWS\system32\drivers\sptd.sys

< %systemroot%\System32\config\*.sav >
[2013.08.06 18:55:30 | 000,094,208 | ---- | M] () -- C:\WINDOWS\System32\config\default.sav
[2013.08.06 18:55:30 | 000,634,880 | ---- | M] () -- C:\WINDOWS\System32\config\software.sav
[2013.08.06 18:55:30 | 000,913,408 | ---- | M] () -- C:\WINDOWS\System32\config\system.sav

< %systemroot%\system32\*.dll /lockedfiles >
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

< %systemroot%\system32\drivers\*.sys /3 >

< %systemroot%\system32\*.* /3 >
[2013.08.30 19:27:31 | 000,013,646 | ---- | M] () -- C:\WINDOWS\system32\wpa.dbl
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< >

< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"CTFMON.EXE" = C:\WINDOWS\system32\ctfmon.exe -- [2008.04.14 05:42:18 | 000,015,360 | ---- | M] (Microsoft Corporation)

< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WUAUSERV
IMAGEPATH REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k netsvcs

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\BITS
IMAGEPATH REG_EXPAND_SZ %SystemRoot%\system32\svchost.exe -k netsvcs

< >

< type c:\boot.ini >> test.txt /c >
[boot loader]
timeout=30
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Home Edition" /noexecute=optin /fastdetect

< %SystemDrive%\PhysicalMBR.bin /md5 >
[2013.09.01 14:20:59 | 000,000,512 | ---- | M] () MD5=B422F561B367D6BCDCF403AE423E2969 -- C:\PhysicalMBR.bin

< >

< *crack* /s >

< *keygen* /s >

< *AntiWPA* /s >

< *loader* /s >
[2013.06.19 15:59:00 | 000,072,638 | ---- | M] () -- \Documents and Settings\All Users\Application Data\Skype\Apps\login\images\loader.gif
[2013.06.19 15:59:00 | 000,003,032 | ---- | M] () -- \Documents and Settings\All Users\Application Data\Skype\Apps\login\images\loader.png
[2013.06.19 15:59:00 | 000,009,772 | ---- | M] () -- \Documents and Settings\All Users\Application Data\Skype\Apps\login\images\retina\loader@2x.png
[2010.08.24 10:53:04 | 000,071,008 | ---- | M] () -- \Program Files\2K Games\Mafia II\pc\PhysXLoader.dll
[2010.04.09 14:22:12 | 001,612,256 | ---- | M] () -- \Program Files\ACD Systems\ACDSee\12.0\PlugIns\CX_Ftpuploader.apl
[2009.02.06 12:09:18 | 000,042,739 | ---- | M] () -- \Program Files\ACD Systems\ACDSee\12.0\PlugIns\CX_Ftpuploader.chm
[2013.08.20 10:55:54 | 000,053,304 | ---- | M] () -- \Program Files\Avira\AntiVir Desktop\avwebloader.dll
[2013.08.20 10:55:54 | 000,233,016 | ---- | M] () -- \Program Files\Avira\AntiVir Desktop\avwebloader.exe
[2013.08.20 10:55:57 | 001,741,368 | ---- | M] () -- \Program Files\Avira\AntiVir Desktop\avwebloadergui.dll
[2006.10.26 13:40:34 | 000,057,344 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VS7DEBUG\coloader.dll
[2006.10.26 13:40:34 | 000,005,120 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VS7DEBUG\coloader.tlb
[2009.02.28 22:12:40 | 000,010,789 | ---- | M] () -- \Program Files\CyberLink\PowerDVD9\PowerDVD Cinema\mm\MediaCtrl\ImageLoader.kc
[2009.02.28 22:12:44 | 000,003,500 | ---- | M] () -- \Program Files\CyberLink\PowerDVD9\PowerDVD Cinema\widget\langloader.kc
[2009.02.28 22:12:44 | 000,012,803 | ---- | M] () -- \Program Files\CyberLink\PowerDVD9\PowerDVD Cinema\widget\layoutloader.kc
[2009.05.31 03:21:00 | 000,071,008 | ---- | M] () -- \Program Files\NVIDIA Corporation\PhysX\Common\PhysXLoader.dll
[2006.02.28 14:00:00 | 000,035,840 | ---- | M] () -- \WINDOWS\$NtServicePackUninstall$\dmloader.dll
[2013.08.06 21:49:32 | 000,082,784 | ---- | M] () -- \WINDOWS\assembly\GAC\IALoader\1.7.6223.0__31bf3856ad364e35\IALoader.dll
[2008.04.14 05:41:54 | 000,035,840 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\dmloader.dll
[2008.04.14 00:01:44 | 000,230,400 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\osloader.exe
[2008.04.14 00:01:46 | 000,278,016 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\osloader.ntd
[2008.04.14 05:41:54 | 000,035,840 | ---- | M] () -- \WINDOWS\system32\dmloader.dll
[1 \WINDOWS\system32\*.tmp files -> \WINDOWS\system32\*.tmp -> ]

< *minodlogin* /s >

< *tnod* /s >

< *AutoKMS* /s >

< *activator* /s >

< *serial* /s >
[2012.09.27 00:12:26 | 000,970,752 | ---- | M] () -- \Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2006.02.28 14:00:00 | 000,064,896 | ---- | M] () -- \WINDOWS\$NtServicePackUninstall$\serial.sys
[2013.08.15 13:28:20 | 000,131,072 | ---- | M] () -- \WINDOWS\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2013.08.08 22:04:53 | 000,970,752 | ---- | M] () -- \WINDOWS\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2013.08.15 13:46:57 | 000,311,296 | ---- | M] () -- \WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\a95e0af6fa5d2e8ffd5e0091f6513271\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2013.08.08 22:26:38 | 002,345,472 | ---- | M] () -- \WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\afbff0c4df2ddd1e111f9e594279cb19\System.Runtime.Serialization.ni.dll
[2013.08.15 13:34:55 | 002,345,472 | ---- | M] () -- \WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\ba6670610621b25b1608e457ba0ef305\System.Runtime.Serialization.ni.dll
[2013.08.08 22:28:06 | 000,311,296 | ---- | M] () -- \WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\c04d26ec14782eaa84e7c157133bc9fa\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2008.07.25 11:17:00 | 000,131,072 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2012.09.27 00:12:26 | 000,970,752 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2003.08.01 12:54:06 | 000,005,632 | ---- | M] () -- \WINDOWS\mui\FALLBACK\041b\serialui.dll.mui
[2008.04.14 00:10:22 | 000,028,288 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\grserial.sys
[2008.04.14 00:45:46 | 000,064,512 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\serial.sys
[2006.02.28 14:00:00 | 000,053,520 | ---- | M] () -- \WINDOWS\system32\dpserial.dll
[2006.02.28 14:00:00 | 000,014,336 | ---- | M] () -- \WINDOWS\system32\serialui.dll
[1 \WINDOWS\system32\*.tmp files -> \WINDOWS\system32\*.tmp -> ]
[2006.02.28 14:00:00 | 000,053,520 | ---- | M] () -- \WINDOWS\system32\dllcache\dpserial.dll
[2006.02.28 14:00:00 | 000,014,336 | ---- | M] () -- \WINDOWS\system32\dllcache\serialui.dll
[2008.04.14 00:45:46 | 000,064,512 | ---- | M] () -- \WINDOWS\system32\drivers\serial.sys

< *w7lxe* /s >

========== Files - Unicode (All) ==========
[2013.09.01 11:22:10 | 095,178,560 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\㠘喬;
[2013.09.01 11:22:10 | 095,178,560 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\㠘喬;
[2013.08.23 10:27:03 | 099,862,753 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\ዝ撐喬;
[2013.08.23 10:27:03 | 099,862,753 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\ዝ撐喬;

< End of report >

Re: Preventivku prosím

Napsal: 01 zář 2013 14:50
od kuntakinte
OTL Extras logfile created on: 1.9.2013 14:11:56 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\Brat\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 0000041B | Country: Slovakia | Language: SKY | Date Format: d.M.yyyy

2,00 Gb Total Physical Memory | 1,15 Gb Available Physical Memory | 57,79% Memory free
3,85 Gb Paging File | 2,85 Gb Available in Paging File | 74,19% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 127,87 Gb Total Space | 102,46 Gb Free Space | 80,13% Space Free | Partition Type: NTFS
Drive D: | 67,44 Gb Total Space | 55,92 Gb Free Space | 82,92% Space Free | Partition Type: NTFS
Drive E: | 503,33 Gb Total Space | 119,17 Gb Free Space | 23,68% Space Free | Partition Type: NTFS

Computer Name: BRAT-432547A02E | User Name: Brat | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*

[HKEY_USERS\S-1-5-21-1935655697-1770027372-839522115-1004\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [ACDSee Photo Manager 12.Manage] -- "C:\Program Files\ACD Systems\ACDSee\12.0\ACDSeeQV12.exe" "%1" (ACD Systems International Inc.)
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
"C:\Program Files\Winamp\winamp.exe" = C:\Program Files\Winamp\winamp.exe:*:Enabled:Winamp -- (Nullsoft, Inc.)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
"C:\Program Files\Winamp\winamp.exe" = C:\Program Files\Winamp\winamp.exe:*:Enabled:Winamp -- (Nullsoft, Inc.)
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE" = C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook -- (Microsoft Corporation)
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE" = C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove -- (Microsoft Corporation)
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE" = C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote -- (Microsoft Corporation)
"C:\Documents and Settings\Brat\Application Data\uTorrent\uTorrent.exe" = C:\Documents and Settings\Brat\Application Data\uTorrent\uTorrent.exe:*:Enabled:µTorrent -- (BitTorrent Inc.)
"C:\Program Files\Skype\Phone\Skype.exe" = C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype -- (Skype Technologies S.A.)


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{03E494A7-F504-DA41-3079-9E2FB36736BC}" = CCC Help English
"{04A94422-A264-81D4-D65E-87276F5B402D}" = Catalyst Control Center Localization Italian
"{055EE59D-217B-43A7-ABFF-507B966405D8}" = ATI Catalyst Control Center
"{0E73A14F-23FD-E1B8-ED38-108ECFA08440}" = Catalyst Control Center Localization Portuguese
"{10721C8A-8288-98DC-5322-6561C1FBCEFD}" = CCC Help Chinese Standard
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5300_series" = Canon MG5300 series MP Drivers
"{14BC810B-5907-B9C3-B2F4-12D5EEA253F4}" = Catalyst Control Center Graphics Previews Common
"{1E71BCE7-5A58-BC8A-791F-7505851E0F77}" = CCC Help Finnish
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{23655B51-F898-DC12-A2A1-3348D875F659}" = CCC Help Czech
"{25611B0A-54C2-69B9-723D-668201C22CD4}" = ccc-core-static
"{27F38AC0-298C-F7E2-F3AE-F7D12BBBE9D5}" = CCC Help Chinese Traditional
"{2E2E3707-873D-69AE-F7CD-ABDF2A8ADC7C}" = CCC Help Japanese
"{30B695C3-C7B0-69E1-197B-409587BC1FD7}" = CCC Help Norwegian
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{36CDA33B-909B-4719-97D1-C4B99309BDC7}" = ATI Parental Control & Encoder
"{399B10AC-4E84-20F8-5913-82526B16F561}" = Catalyst Control Center Graphics Light
"{3DDE5D5A-E667-349B-3D67-EC46F4559CA2}" = CCC Help Thai
"{3EC34F85-AF61-5B18-42D6-306B6B80E92E}" = Catalyst Control Center Localization Swedish
"{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}" = NVIDIA PhysX
"{4250CCCA-E916-2A8D-1728-0059007732A9}" = CCC Help Russian
"{428D44EE-A9C7-8FB7-7825-07D95B147541}" = CCC Help Spanish
"{4B494547-1410-C77E-B6F0-86F394ABAF94}" = CCC Help Hungarian
"{4D7E8B72-AEA2-8493-F5F3-DA10E2EE2D22}" = Catalyst Control Center Localization Chinese Traditional
"{4DAE1F80-ECD3-3F50-2D03-3061061DBCA5}" = CCC Help Korean
"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.7
"{4FBC7CC9-BF92-6E6C-09EA-AEA5F6A0D4AF}" = CCC Help Czech
"{5375EB06-E8E0-B2E8-E1B5-4EDC5D0A0DC0}" = CCC Help Swedish
"{55663DF0-3559-AE1E-0B9E-ED5353914B5D}" = CCC Help Japanese
"{59F83B00-970D-511C-D9DE-52B233780020}" = CCC Help Portuguese
"{5DA6F06A-B389-407B-BF8C-1548767914D8}" = ATI Problem Report Wizard
"{6294CE03-1A16-4610-891E-FDAF9A585A54}" = SA52xx Device Manager
"{64ACFE24-FB82-84A6-9FB8-B90539752E5B}" = Catalyst Control Center Localization German
"{677E934A-07CD-AA1A-2D16-BE2FA04F2955}" = CCC Help English
"{67D9647A-6211-0EE0-38C1-20696FC45BA7}" = CCC Help Norwegian
"{6895B14D-FE34-502A-CF35-4BD7573F65B4}" = Catalyst Control Center InstallProxy
"{68DD4EAE-C5E4-1E34-F991-B99ABA6DC8E3}" = Catalyst Control Center Graphics Full New
"{69E8BEA4-6E98-68CA-8C1A-8448DB9F4AD6}" = CCC Help Turkish
"{6A993CF8-9F86-59D0-89CD-C720B4C53086}" = CCC Help Italian
"{6ACE51D9-0C91-FF14-93B7-235D6E8BD4DC}" = CCC Help Hungarian
"{7E6C16AE-58EC-F03C-1E22-C13AF3824808}" = CCC Help Portuguese
"{7F4C1C17-C647-3CE0-4426-F368132A66A6}" = CCC Help Turkish
"{81946C2A-5269-A6F5-4566-A9F253007A7E}" = Catalyst Control Center Localization Turkish
"{836F070A-0E66-4597-5129-4EA44F54576F}" = CCC Help Danish
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{8615E5FC-8906-AACF-5A1A-FB65046F647B}" = CCC Help Swedish
"{8959A774-3FB3-B315-ACDF-4B7B70F5A169}" = Catalyst Control Center Core Implementation
"{89DE67AD-08B8-4699-A55D-CA5C0AF82BF3}" = ATI AVIVO Codecs
"{90120000-0010-0405-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (Czech) 12
"{90120000-0015-0405-0000-0000000FF1CE}" = Microsoft Office Access MUI (Czech) 2007
"{90120000-0016-0405-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Czech) 2007
"{90120000-0018-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Czech) 2007
"{90120000-0019-0405-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Czech) 2007
"{90120000-001A-0405-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Czech) 2007
"{90120000-001B-0405-0000-0000000FF1CE}" = Microsoft Office Word MUI (Czech) 2007
"{90120000-001F-0405-0000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2007
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-041B-0000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2007
"{90120000-002C-0405-0000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0044-0405-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Czech) 2007
"{90120000-006E-0405-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2007
"{90120000-00A1-0405-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Czech) 2007
"{90120000-00BA-0405-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Czech) 2007
"{906B417C-6F6C-2A5A-DB5E-5C7499941C58}" = CCC Help Spanish
"{91B33C97-3ED1-03EA-A67B-244AA4D7B559}_is1" = Ashampoo Burning Studio 6 FREE v.6.84
"{91E9B920-0BA0-8020-496A-622AF456337F}" = AMD Catalyst Install Manager
"{93CB830F-517E-1695-C61B-2A1AA105CD78}" = Catalyst Control Center Localization French
"{93F6FB3E-5134-B63B-0771-D5B928EA4AD9}" = Catalyst Control Center Localization All
"{95DCA618-9717-BBD3-B438-A5A9B1EB30C8}" = CCC Help German
"{96AD3B61-EAE2-11E2-9E72-B8AC6F98CCE3}" = Google Earth
"{984880C1-7AC7-5267-A7D9-AEC19C932950}" = Catalyst Control Center Graphics Full Existing
"{9A3F8688-4F15-B77D-73A1-B0363517D1B1}" = Catalyst Control Center Localization Danish
"{9B1BFDE6-3B65-FB41-BC54-353227EE742A}" = CCC Help Italian
"{9FD43D69-2E42-0526-D65B-6C6B8FA6A2F6}" = Catalyst Control Center Graphics Previews Common
"{A0793FD9-9505-BF02-FF47-83C984DC814B}" = Catalyst Control Center Localization Chinese Standard
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A32A0DF0-6650-6503-293D-64AAF212CBF8}" = Catalyst Control Center Localization Japanese
"{A44D0AC2-0891-5AB9-EE23-3EF3339BC2FE}" = Catalyst Control Center Localization Russian
"{A477AB54-7C38-A981-9820-551B8A8E216C}" = CCC Help German
"{A54BEBF5-D7F9-2B34-6475-FB07780C80CA}" = Catalyst Control Center Localization Polish
"{A5CBD7C5-CF16-443F-A4F2-3503C9DE311B}" = ACDSee Photo Manager 12
"{A8280D9A-D6A4-1E52-E85F-99E3BB19CEEA}" = Catalyst Control Center Localization Czech
"{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}" = CyberLink PowerDVD 9
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9308032-8E26-12DC-8D1C-52DB78753660}" = CCC Help Chinese Traditional
"{A960DA53-C5C4-37A4-3671-C0236BF41E99}" = CCC Help Chinese Standard
"{AC76BA86-7AD7-1029-7B44-AB0000000001}" = Adobe Reader XI (11.0.03) - Czech
"{AFE83615-88BE-47F6-B3E4-A3FEF8B7B57F}_is1" = xrecode II 1.0.0.198
"{B0D2BC40-119B-AD18-E697-E6073DD6D149}" = ccc-utility
"{B2C78A98-20EA-D90A-69E3-B15587D51588}" = CCC Help Thai
"{B59DA9F5-3630-FFF1-C47C-B2CA172CF876}" = CCC Help Polish
"{B737CA01-BC17-6F51-FEDD-84FDCA78B13B}" = ccc-utility
"{B84AE471-81DD-D81F-CD20-B3464877E525}" = Skins
"{BBFEA1AF-ECCE-1114-2EC8-AC304AB6B753}" = Catalyst Control Center Localization Hungarian
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C397AE7E-CFA4-9D60-880D-D0BA7CF3F596}" = CCC Help Finnish
"{C9BED750-1211-4480-B1A5-718A3BE15525}" = REALTEK GbE & FE Ethernet PCI-E NIC Driver
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D20100AC-608D-1A4C-372E-75009E7C168E}" = CCC Help Danish
"{D801FEB6-53DF-CE1C-67E2-A977E43A7E8F}" = CCC Help Russian
"{DAA29BAD-1C06-E8E0-CFE6-557F818C7AF7}" = CCC Help Dutch
"{DB7EBA4A-44AF-DF22-EBA7-6BF4E011E319}" = CCC Help French
"{DBB18C43-FE45-36DF-D171-E209B79A76F3}" = Catalyst Control Center Localization Dutch
"{E1BCF465-85F4-C303-944E-9E416977C560}" = CCC Help Korean
"{E2F0AF23-FE2F-4222-9A43-55E63CC41EF1}" = Catalyst Control Center - Branding
"{E3AEC354-AD4C-51D3-E345-CEE6CA8A9C3A}" = Catalyst Control Center Localization Greek
"{E48F2277-3BA3-A179-F0B5-37DE6BD9390B}" = CCC Help Polish
"{EA024A36-5934-05B8-550B-60DA131B90C4}" = CCC Help Greek
"{EA5D6A8A-56FD-3732-AECF-5A4876A0B93A}" = CCC Help Greek
"{EC3B598C-1151-4191-B5B4-A9072ADE6259}_is1" = ZipGenius 6.3
"{EE5AC826-8731-6406-9947-D0420143A7BD}" = ccc-core-preinstall
"{EEB193CE-2B04-B568-29FF-FAFA34BB3F19}" = Catalyst Control Center Localization Spanish
"{EF0A8C24-E239-45D5-492D-D5895518ACB3}" = Catalyst Control Center Localization Thai
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F4521DC3-AED8-AEB6-9823-B90FB5AAF4B6}" = CCC Help Dutch
"{F88183B1-BD65-F87C-855F-BB7D1AA3AEA2}" = Catalyst Control Center Localization Norwegian
"{FC70949F-1417-A3F5-8E84-EBF5ACB93B58}" = Catalyst Control Center Localization Korean
"{FCC1A1DB-F3BC-3CAF-FCB1-B191167BAEA4}" = CCC Help French
"{FE22679C-7CE4-8633-CE7F-8122B52C52CF}" = Catalyst Control Center Localization Finnish
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Avira AntiVir Desktop" = Avira Free Antivirus
"Boxoft Free PDF To JPG Converter (freeware)_is1" = Boxoft Free PDF To JPG Converter (freeware)
"BSPlayerf" = BS.Player FREE
"Canon MG5300 series On-screen Manual" = Canon MG5300 series On-screen Manual
"CANONIJPLM100" = Canon Inkjet Printer/Scanner/Fax Extended Survey Program
"CanonMyPrinter" = Canon My Printer
"CanonSolutionMenuEX" = Canon Solution Menu EX
"CCleaner" = CCleaner
"Easy-PhotoPrint EX" = Canon Easy-PhotoPrint EX
"ENTERPRISE" = Microsoft Office Enterprise 2007
"Google Chrome" = Google Chrome
"Heroes of Might and Magic® III" = Heroes of Might and Magic® III Complete
"ie8" = Windows Internet Explorer 8
"InstallShield_{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}" = CyberLink PowerDVD 9
"KLiteCodecPack_is1" = K-Lite Codec Pack 9.9.5 (Full)
"Mafia II_is1" = Mafia II
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox 23.0.1 (x86 en-US)" = Mozilla Firefox 23.0.1 (x86 en-US)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"MP Navigator EX 5.0" = Canon MP Navigator EX 5.0
"OnlineArmor_is1" = Online Armor 6.0
"OpenAL" = OpenAL
"Registrácia používateľa produktu Canon MG5300 series" = Registrácia používateľa produktu Canon MG5300 series
"SpeedFan" = SpeedFan (remove only)
"Totalcmd" = Total Commander (Remove or Repair)
"VLC media player" = VLC media player 2.0.8
"Winamp" = Winamp
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows XP Service Pack" = Windows XP Service Pack 3
"WMFDist11" = Windows Media Format 11 runtime
"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-1935655697-1770027372-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"uTorrent" = µTorrent
"Winamp Detect" = Winamp Detector Plug-in

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 7.8.2013 5:29:40 | Computer Name = BRAT-432547A02E | Source = MsiInstaller | ID = 1023
Description = Produkt: Microsoft .NET Framework 2.0 Service Pack 2 - Aktualizáciu
.NET Framework CRT sa nepodarilo nainštalovať. Kód chyby 1603. Ďalšie informácie
sú uvedené v súbore denníka C:\WINDOWS\TEMP\dd_NET_Framework20_Setup4FFB.txt.

Error - 7.8.2013 5:29:40 | Computer Name = BRAT-432547A02E | Source = MsiInstaller | ID = 1023
Description = Produkt: Microsoft .NET Framework 2.0 Service Pack 2 - Aktualizáciu
.NET Framework PreXP sa nepodarilo nainštalovať. Kód chyby 1603. Ďalšie informácie
sú uvedené v súbore denníka C:\WINDOWS\TEMP\dd_NET_Framework20_Setup4FFB.txt.

Error - 7.8.2013 5:29:40 | Computer Name = BRAT-432547A02E | Source = MsiInstaller | ID = 1023
Description = Produkt: Microsoft .NET Framework 2.0 Service Pack 2 - Aktualizáciu
Dr. Watson sa nepodarilo nainštalovať. Kód chyby 1603. Ďalšie informácie sú uvedené
v súbore denníka C:\WINDOWS\TEMP\dd_NET_Framework20_Setup4FFB.txt.

Error - 7.8.2013 5:29:40 | Computer Name = BRAT-432547A02E | Source = MsiInstaller | ID = 1023
Description = Produkt: Microsoft .NET Framework 2.0 Service Pack 2 - Aktualizáciu
.NET Framework 1 sa nepodarilo nainštalovať. Kód chyby 1603. Ďalšie informácie
sú uvedené v súbore denníka C:\WINDOWS\TEMP\dd_NET_Framework20_Setup4FFB.txt.

Error - 7.8.2013 5:29:40 | Computer Name = BRAT-432547A02E | Source = MsiInstaller | ID = 1023
Description = Produkt: Microsoft .NET Framework 2.0 Service Pack 2 - Aktualizáciu
.NET Framework 2 sa nepodarilo nainštalovať. Kód chyby 1603. Ďalšie informácie
sú uvedené v súbore denníka C:\WINDOWS\TEMP\dd_NET_Framework20_Setup4FFB.txt.

Error - 7.8.2013 5:29:40 | Computer Name = BRAT-432547A02E | Source = MsiInstaller | ID = 1023
Description = Produkt: Microsoft .NET Framework 2.0 Service Pack 2 - Aktualizáciu
.NET Framework ASP .NET sa nepodarilo nainštalovať. Kód chyby 1603. Ďalšie informácie
sú uvedené v súbore denníka C:\WINDOWS\TEMP\dd_NET_Framework20_Setup4FFB.txt.

Error - 7.8.2013 5:29:40 | Computer Name = BRAT-432547A02E | Source = MsiInstaller | ID = 1023
Description = Produkt: Microsoft .NET Framework 2.0 Service Pack 2 - Aktualizáciu
.NET Framework WinForms sa nepodarilo nainštalovať. Kód chyby 1603. Ďalšie informácie
sú uvedené v súbore denníka C:\WINDOWS\TEMP\dd_NET_Framework20_Setup4FFB.txt.

Error - 13.8.2013 15:41:41 | Computer Name = BRAT-432547A02E | Source = Application Hang | ID = 1002
Description = Zablokovaná aplikácia winamp.exe, verzia 5.6.5.3438, zablokovaný modul
hungapp, verzia 0.0.0.0, adresa zablokovania 0x00000000.

Error - 20.8.2013 14:42:58 | Computer Name = BRAT-432547A02E | Source = Application Hang | ID = 1002
Description = Zablokovaná aplikácia psclient.exe, verzia 0.5.9.10, zablokovaný modul
hungapp, verzia 0.0.0.0, adresa zablokovania 0x00000000.

Error - 20.8.2013 14:59:54 | Computer Name = BRAT-432547A02E | Source = Application Error | ID = 1000
Description = Zlyhanie aplikácie psclient.exe, verzia 0.5.9.10, zlyhanie modulu
psclient.exe, verzia 0.5.9.10, adresa zlyhania 0x00620157.

[ System Events ]
Error - 6.8.2013 14:55:20 | Computer Name = BRAT-432547A02E | Source = SideBySide | ID = 16842811
Description = Resolve Partial Assembly zlyhal Microsoft.VC80.MFCLOC. Chybové hlásenie
odkazu: Zostava určená odkazom nie je v počítači nainštalovaná. .

Error - 6.8.2013 14:55:20 | Computer Name = BRAT-432547A02E | Source = SideBySide | ID = 16842811
Description = Generate Activation Context zlyhal C:\Program Files\Canon\Solution
Menu EX\MFC80U.DLL. Chybové hlásenie odkazu: Operácia sa úspešne dokončila. .

Error - 6.8.2013 15:08:47 | Computer Name = BRAT-432547A02E | Source = SideBySide | ID = 16842784
Description = Závislá zostava Microsoft.VC80.MFCLOC sa nenašla a posledná chyba
bola Zostava určená odkazom nie je v počítači nainštalovaná. .

Error - 6.8.2013 15:08:47 | Computer Name = BRAT-432547A02E | Source = SideBySide | ID = 16842811
Description = Resolve Partial Assembly zlyhal Microsoft.VC80.MFCLOC. Chybové hlásenie
odkazu: Zostava určená odkazom nie je v počítači nainštalovaná. .

Error - 6.8.2013 15:08:47 | Computer Name = BRAT-432547A02E | Source = SideBySide | ID = 16842811
Description = Generate Activation Context zlyhal C:\Program Files\Canon\Solution
Menu EX\MFC80U.DLL. Chybové hlásenie odkazu: Operácia sa úspešne dokončila. .

Error - 6.8.2013 15:08:48 | Computer Name = BRAT-432547A02E | Source = SideBySide | ID = 16842784
Description = Závislá zostava Microsoft.VC80.MFCLOC sa nenašla a posledná chyba
bola Zostava určená odkazom nie je v počítači nainštalovaná. .

Error - 6.8.2013 15:08:48 | Computer Name = BRAT-432547A02E | Source = SideBySide | ID = 16842811
Description = Resolve Partial Assembly zlyhal Microsoft.VC80.MFCLOC. Chybové hlásenie
odkazu: Zostava určená odkazom nie je v počítači nainštalovaná. .

Error - 6.8.2013 15:08:48 | Computer Name = BRAT-432547A02E | Source = SideBySide | ID = 16842811
Description = Generate Activation Context zlyhal C:\Program Files\Canon\Solution
Menu EX\MFC80U.DLL. Chybové hlásenie odkazu: Operácia sa úspešne dokončila. .

Error - 7.8.2013 5:29:58 | Computer Name = BRAT-432547A02E | Source = Windows Update Agent | ID = 20
Description = Installation Failure: Windows failed to install the following update
with error 0x80070643: Microsoft .NET Framework 3.5 Service Pack 1 and .NET Framework
3.5 Family Update for .NET versions 2.0 through 3.5 (KB951847) x86.

Error - 21.8.2013 16:11:28 | Computer Name = BRAT-432547A02E | Source = Dhcp | ID = 1002
Description = Server DHCP 192.168.100.1 odmietol prenájom 89.173.128.74 adresy IP
pre
sieťovú kartu so sieťovou adresou 001FD0221F5B (server DHCP odoslal hlásenie DHCPNACK).


< End of report >

Re: Preventivku prosím

Napsal: 01 zář 2013 15:02
od Márty84
:???: Tyhle slozky znate?

========== Files - Unicode (All) ==========
[2013.09.01 11:22:10 | 095,178,560 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\㠘喬;
[2013.09.01 11:22:10 | 095,178,560 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\㠘喬;
[2013.08.23 10:27:03 | 099,862,753 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\ዝ撐喬;
[2013.08.23 10:27:03 | 099,862,753 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\ዝ撐喬;




:!: Vypnete antivir, at nebrani programu v praci!
:arrow: Znovu spustte OTL
Do spodniho okna vlozte nasledujici text (vcetne te dvojtecky pred slovem commands)

Kód: Vybrat vše

:commands
[EMPTYTEMP]
[EMPTYFLASH]
[Purity]
[CreateRestorePoint]

:services
gupdate
SkypeUpdate
gupdatem

:files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

:otl
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\S-1-5-21-1935655697-1770027372-839522115-1004\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src=IE-SearchBox&Form=IE8SRC
[15 C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
[2 C:\WINDOWS\system32\config\systemprofile\Local Settings\Temp\*.tmp files -> C:\WINDOWS\system32\config\systemprofile\Local Settings\Temp\*.tmp -> ]

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=-
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BDRegion]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PDVD9LanguageShortcut]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl9]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Philips SA52XX Device Manager.lnk]
Kliknete na Opravit a nechte program pracovat. Pri otazce na restart souhlaste.
Po restartu se objevi novy log, ten sem dejte.

Re: Preventivku prosím

Napsal: 01 zář 2013 15:33
od kuntakinte
Ne, ty složky neznám, ale měl bych asi říct že to může být taky proto, že v těhle věcech nejsem moc "doma" :) Proč? Je na nich něco špatně (krom těch divných znaků připomínajících ázijskou kulturu)?

Tady je log:

All processes killed
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Brat
->Temp folder emptied: 7393911 bytes
->Temporary Internet Files folder emptied: 2752328 bytes
->FireFox cache emptied: 410844530 bytes
->Google Chrome cache emptied: 0 bytes
->Flash cache emptied: 15262 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33237 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 2577 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 4888187 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 282973063 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 132890941 bytes

Total Files Cleaned = 803,00 mb


[EMPTYFLASH]

User: All Users

User: Brat
->Flash cache emptied: 0 bytes

User: Default User

User: LocalService

User: NetworkService

Total Flash Files Cleaned = 0,00 mb

Restore point Set: OTL Restore Point
========== SERVICES/DRIVERS ==========
Service gupdate stopped successfully!
Service gupdate deleted successfully!
Service SkypeUpdate stopped successfully!
Service SkypeUpdate deleted successfully!
Service gupdatem stopped successfully!
Service gupdatem deleted successfully!
========== FILES ==========
File/Folder C:\WINDOWS\system32\*.tmp.dll not found.
File/Folder C:\WINDOWS\system32\SET*.tmp not found.
File/Folder C:\WINDOWS\*.tmp not found.
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job moved successfully.
========== OTL ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_USERS\S-1-5-21-1935655697-1770027372-839522115-1004\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP176.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP222.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP25B.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP270.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP34B.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP34C.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP37B.tmp\PresentationCFFRasterizer.dll deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP37B.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP3D.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP426.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP54C.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP626.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP85E.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP951.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP970.tmp\System.dll deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP970.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP9AB.tmp folder deleted successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BDRegion\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PDVD9LanguageShortcut\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl9\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Philips SA52XX Device Manager.lnk\ deleted successfully.

OTL by OldTimer - Version 3.2.69.0 log created on 09012013_162627

Files\Folders moved on Reboot...

PendingFileRenameOperations files...

Registry entries deleted on Reboot...

Re: Preventivku prosím

Napsal: 02 zář 2013 03:03
od Márty84
kuntakinte píše:Je na nich něco špatně (krom těch divných znaků připomínajících ázijskou kulturu)?
Prave ty znaky jsou divne. Ale nemusi to nic znamenat :)


:arrow:
vyosek píše: :arrow: T-Cleaner http://tharifas.sweb.cz/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry mohou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: Stahnete OTC http://oldtimer.geekstogo.com/OTC.exe , ulozte a spustte.
Kliknete na napis CleanUp a pote OK - Po uklidu dojde k restartu pc.

:arrow: Stahnete TFC http://oldtimer.geekstogo.com/TFC.exe , ulozte a spustte
Kliknete na START a pote OK - Po uklidu dojde k restartu pc.
Po pouziti muzete programek smazat

:arrow: Stahnete Ccleaner http://www.stahuj.centrum.cz/utility_a_ ... /ccleaner/ a spustte.
Pri instalaci pozor na toolbar (ci jine doplnky), jestli vam nabidne jeho instalaci, tak zruste zatrzitko.
Po spusteni se ocitnete ve funkci Cistic. Vlevo je spousta zatrzitek. Pozor dejte hlavne na kos, pokud nechate zatrzene, vzdy ho vysype.
Dale, podle toho jak je nastaven, smaze vsechna hesla ulozena na netu!!! Takze jestli mate nastavene, at si pocitac hesla pamatuje (coz neni pro bezpecnost dobre), budete je muset pak napsat znova rucne (napr mail, facebook, ruzna fora atd.)
Kliknete na Analyzovat a az dokonci analyzu, kliknete na Spustit Cleaner.
Potom kliknete vlevo na funkci Registry
Kliknete na Hledej problemy, kdyz najde, kliknete na Opravit problemy. Nabidne Vam zalohu, tu udelejte a ulozte ji tak, at ji v pripade potreby najdete.
Funkce Nastroje umoznuje odinstalovani programu. Je dukladnejsi nez samotny windows!

:arrow: Defragmentujte disk(y)
Stahnete program Defraggler http://www.stahuj.centrum.cz/utility_a_ ... efraggler/
Pri instalaci opet pozor na toolbar
Po nainstalovani program spustte a kliknete na Analyzovat, po analyze kliknete na Defragmentovat a programek odvede svou praci.




:arrow: Pak napiste, jak je na tom pc.

Re: Preventivku prosím

Napsal: 04 zář 2013 21:49
od kuntakinte
Hotovo. No PC šlape zatím řekl bych bez problémů, děkuju moc za čas a ochotu :)

Re: Preventivku prosím

Napsal: 05 zář 2013 06:03
od Márty84
Vyborne, to je dobre.

Nemate zac! :)

Mejte se a treba zase nekdy :bye:

:closed: