Stránka 1 z 1

Kontrola logu

Napsal: 24 dub 2010 13:12
od a600
Zdravím, dnes jsem nově zformátoval systém, všechno znovu nainstaloval a nastavil, podíval jsem se do procesů a zase mě tam z ničeho nic vyskakujou procesy net.exe a k tomu cmd.exe, přitom žádný příkazový řádek nemám spuštěný, začalo mě to takhle blbnout včera, tak sem šel do formátu, abych to měl všechno z krku a nic.

Logfile of random's system information tool 1.06 (written by random/random)
Run by Home at 2010-04-24 14:06:55
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 12 GB (61%) free of 20 GB
Total RAM: 255 MB (18% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 14:06:57, on 24.4.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\csrcs.exe
C:\Program Files\Opera\opera.exe
C:\Documents and Settings\Home\Dokumenty\RSIT.exe
C:\WINDOWS\system32\cmd.exe
C:\WINDOWS\system32\net.exe
C:\Documents and Settings\Home\Dokumenty\Home.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
F2 - REG:system.ini: Shell=Explorer.exe csrcs.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKLM\..\Policies\Explorer\Run: [csrcs] C:\WINDOWS\system32\csrcs.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupda ... 2094591063
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microso ... 2102911166
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll

--
End of file - 4106 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-04-24 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-04-24 79648]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IMJPMIG8.1"=C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE [2008-04-13 208952]
"PHIME2002ASync"=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2008-04-13 455168]
"PHIME2002A"=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2008-04-13 455168]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"csrcs"=C:\WINDOWS\system32\csrcs.exe [2008-04-14 792252]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\Yaho's Miranda IM\miranda32.exe"="C:\Program Files\Yaho's Miranda IM\miranda32.exe:*:Enabled:Miranda IM"
"C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{5124ae81-4f89-11df-b7b2-000476113975}]
shell\AutoRun\command - F:\ytzcmu.exe
shell\open\command - F:\ytzcmu.exe


======List of files/folders created in the last 1 months======

2010-04-24 14:02:43 ----D---- C:\rsit
2010-04-24 13:35:00 ----D---- C:\WINDOWS\pss
2010-04-24 13:10:55 ----D---- C:\Documents and Settings\Home\Data aplikací\Canneverbe Limited
2010-04-24 13:10:42 ----D---- C:\Documents and Settings\All Users\Data aplikací\Canneverbe Limited
2010-04-24 13:09:47 ----D---- C:\Program Files\MP3Recorder
2010-04-24 13:09:24 ----D---- C:\Program Files\Defraggler
2010-04-24 13:07:06 ----D---- C:\Program Files\Microsoft Silverlight
2010-04-24 12:57:00 ----D---- C:\Program Files\uTorrent
2010-04-24 12:56:25 ----D---- C:\Documents and Settings\Home\Data aplikací\uTorrent
2010-04-24 12:51:42 ----D---- C:\Documents and Settings\Home\Data aplikací\Adobe
2010-04-24 12:50:36 ----D---- C:\Documents and Settings\Home\Data aplikací\Macromedia
2010-04-24 12:44:54 ----D---- C:\Documents and Settings\Home\Data aplikací\Opera
2010-04-24 12:41:09 ----D---- C:\Program Files\CDBurnerXP
2010-04-24 12:40:25 ----D---- C:\Documents and Settings\All Users\Data aplikací\Sun
2010-04-24 12:40:22 ----D---- C:\Program Files\Common Files\Java
2010-04-24 12:39:51 ----A---- C:\WINDOWS\system32\javaws.exe
2010-04-24 12:39:51 ----A---- C:\WINDOWS\system32\javaw.exe
2010-04-24 12:39:51 ----A---- C:\WINDOWS\system32\java.exe
2010-04-24 12:39:51 ----A---- C:\WINDOWS\system32\deployJava1.dll
2010-04-24 12:39:06 ----D---- C:\Program Files\Java
2010-04-24 12:38:40 ----D---- C:\Documents and Settings\Home\Data aplikací\Sun
2010-04-24 12:36:18 ----A---- C:\WINDOWS\system32\unrar.dll
2010-04-24 12:36:18 ----A---- C:\WINDOWS\avisplitter.ini
2010-04-24 12:36:16 ----A---- C:\WINDOWS\system32\yv12vfw.dll
2010-04-24 12:36:16 ----A---- C:\WINDOWS\system32\xvidvfw.dll
2010-04-24 12:36:16 ----A---- C:\WINDOWS\system32\xvidcore.dll
2010-04-24 12:36:13 ----A---- C:\WINDOWS\system32\ff_vfw.dll.manifest
2010-04-24 12:36:13 ----A---- C:\WINDOWS\system32\ff_vfw.dll
2010-04-24 12:36:11 ----D---- C:\Program Files\Codecs
2010-04-24 12:16:07 ----D---- C:\Documents and Settings\Home\Data aplikací\WinRAR
2010-04-24 12:13:45 ----D---- C:\Program Files\Opera
2010-04-24 12:10:54 ----D---- C:\Program Files\Yaho's Miranda IM
2010-04-24 12:09:44 ----D---- C:\Program Files\IrfanView
2010-04-24 12:08:00 ----D---- C:\Program Files\WinRAR
2010-04-24 11:29:32 ----A---- C:\WINDOWS\system32\msonpmon.dll
2010-04-24 11:26:35 ----D---- C:\Program Files\Microsoft Works
2010-04-24 11:25:38 ----D---- C:\Program Files\Microsoft Visual Studio
2010-04-24 11:25:37 ----D---- C:\Program Files\Common Files\DESIGNER
2010-04-24 11:24:15 ----D---- C:\Program Files\Microsoft.NET
2010-04-24 11:20:00 ----D---- C:\Program Files\Microsoft Visual Studio 8
2010-04-24 11:18:22 ----D---- C:\WINDOWS\SHELLNEW
2010-04-24 11:17:45 ----D---- C:\Program Files\Microsoft Office
2010-04-24 11:17:44 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2010-04-24 11:17:15 ----RHD---- C:\MSOCache
2010-04-24 11:07:24 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2010-04-24 11:02:36 ----A---- C:\WINDOWS\system32\h323log.txt
2010-04-24 11:00:59 ----A---- C:\WINDOWS\system32\uniime.dll
2010-04-24 11:00:49 ----A---- C:\WINDOWS\system32\kbdlk41j.dll
2010-04-24 11:00:49 ----A---- C:\WINDOWS\system32\kbdlk41a.dll
2010-04-24 11:00:49 ----A---- C:\WINDOWS\system32\f3ahvoas.dll
2010-04-24 11:00:49 ----A---- C:\WINDOWS\system32\c_g18030.dll
2010-04-24 11:00:48 ----A---- C:\WINDOWS\system32\kbdibm02.dll
2010-04-24 11:00:48 ----A---- C:\WINDOWS\system32\kbdax2.dll
2010-04-24 11:00:48 ----A---- C:\WINDOWS\system32\kbd106n.dll
2010-04-24 11:00:48 ----A---- C:\WINDOWS\system32\kbd101.dll
2010-04-24 11:00:48 ----A---- C:\WINDOWS\system32\imjp81k.dll
2010-04-24 11:00:42 ----A---- C:\WINDOWS\system32\chtbrkr.dll
2010-04-24 11:00:42 ----A---- C:\WINDOWS\system32\chsbrkr.dll
2010-04-24 11:00:41 ----A---- C:\WINDOWS\system32\msir3jp.dll
2010-04-24 11:00:41 ----A---- C:\WINDOWS\system32\korwbrkr.dll
2010-04-24 11:00:26 ----A---- C:\WINDOWS\system32\kbd101a.dll
2010-04-24 11:00:16 ----A---- C:\WINDOWS\system32\kbdnecNT.dll
2010-04-24 11:00:16 ----A---- C:\WINDOWS\system32\kbdnecAT.dll
2010-04-24 11:00:16 ----A---- C:\WINDOWS\system32\kbdnec95.dll
2010-04-24 10:59:57 ----A---- C:\WINDOWS\system32\c_is2022.dll
2010-04-24 10:59:55 ----A---- C:\WINDOWS\system32\kbdkor.dll
2010-04-24 10:59:55 ----A---- C:\WINDOWS\system32\kbdjpn.dll
2010-04-24 10:59:55 ----A---- C:\WINDOWS\system32\kbd106.dll
2010-04-24 10:59:55 ----A---- C:\WINDOWS\system32\kbd103.dll
2010-04-24 10:59:55 ----A---- C:\WINDOWS\system32\kbd101c.dll
2010-04-24 10:59:54 ----A---- C:\WINDOWS\system32\Thawbrkr.dll
2010-04-24 10:59:54 ----A---- C:\WINDOWS\system32\kbd101b.dll
2010-04-24 10:59:53 ----RA---- C:\WINDOWS\system32\kbdvntc.dll
2010-04-24 10:59:53 ----RA---- C:\WINDOWS\system32\kbdintel.dll
2010-04-24 10:59:53 ----RA---- C:\WINDOWS\system32\kbdintam.dll
2010-04-24 10:59:53 ----RA---- C:\WINDOWS\system32\kbdinpun.dll
2010-04-24 10:59:53 ----RA---- C:\WINDOWS\system32\kbdinmar.dll
2010-04-24 10:59:53 ----RA---- C:\WINDOWS\system32\kbdinkan.dll
2010-04-24 10:59:53 ----RA---- C:\WINDOWS\system32\kbdinhin.dll
2010-04-24 10:59:53 ----RA---- C:\WINDOWS\system32\kbdinguj.dll
2010-04-24 10:59:53 ----RA---- C:\WINDOWS\system32\kbdindev.dll
2010-04-24 10:59:53 ----RA---- C:\WINDOWS\system32\kbdgeo.dll
2010-04-24 10:59:53 ----RA---- C:\WINDOWS\system32\kbdarmw.dll
2010-04-24 10:59:53 ----RA---- C:\WINDOWS\system32\kbdarme.dll
2010-04-24 10:59:53 ----A---- C:\WINDOWS\system32\c_iscii.dll
2010-04-24 10:59:51 ----RA---- C:\WINDOWS\system32\kbdurdu.dll
2010-04-24 10:59:51 ----RA---- C:\WINDOWS\system32\kbdsyr2.dll
2010-04-24 10:59:51 ----RA---- C:\WINDOWS\system32\kbdsyr1.dll
2010-04-24 10:59:51 ----RA---- C:\WINDOWS\system32\kbddiv2.dll
2010-04-24 10:59:51 ----RA---- C:\WINDOWS\system32\kbddiv1.dll
2010-04-24 10:59:50 ----RA---- C:\WINDOWS\system32\kbdfa.dll
2010-04-24 10:59:50 ----RA---- C:\WINDOWS\system32\kbda3.dll
2010-04-24 10:59:50 ----RA---- C:\WINDOWS\system32\kbda2.dll
2010-04-24 10:59:50 ----RA---- C:\WINDOWS\system32\kbda1.dll
2010-04-24 10:59:50 ----A---- C:\WINDOWS\system32\kbdusa.dll
2010-04-24 10:59:47 ----RA---- C:\WINDOWS\system32\kbdheb.dll
2010-04-24 10:59:43 ----RA---- C:\WINDOWS\system32\kbdth3.dll
2010-04-24 10:59:43 ----RA---- C:\WINDOWS\system32\kbdth2.dll
2010-04-24 10:59:43 ----RA---- C:\WINDOWS\system32\kbdth1.dll
2010-04-24 10:59:43 ----RA---- C:\WINDOWS\system32\kbdth0.dll
2010-04-24 10:59:43 ----A---- C:\WINDOWS\system32\ftlx041e.dll
2010-04-24 10:54:42 ----SHD---- C:\RECYCLER
2010-04-24 10:54:18 ----A---- C:\WINDOWS\system32\nv4_disp.dll
2010-04-24 10:53:44 ----A---- C:\WINDOWS\system32\usbui.dll
2010-04-24 10:53:21 ----A---- C:\WINDOWS\system32\ksuser.dll
2010-04-24 10:52:18 ----N---- C:\WINDOWS\system32\spmsg2.dll
2010-04-24 10:52:16 ----HDC---- C:\WINDOWS\$NtUninstallXPSEPSCLP$
2010-04-24 10:51:45 ----A---- C:\WINDOWS\imsins.BAK
2010-04-24 10:51:41 ----SHD---- C:\WINDOWS\Installer
2010-04-24 10:51:41 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-04-24 10:51:40 ----D---- C:\Program Files\Common Files\ODBC
2010-04-24 10:51:40 ----A---- C:\WINDOWS\ODBCINST.INI
2010-04-24 10:51:36 ----RD---- C:\Program Files
2010-04-24 10:51:36 ----D---- C:\Program Files\Common Files\SpeechEngines
2010-04-24 10:51:36 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-04-24 10:51:36 ----D---- C:\Program Files\Common Files
2010-04-24 10:51:31 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2010-04-24 10:51:31 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2010-04-24 10:51:31 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2010-04-24 10:51:30 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2010-04-24 10:51:29 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2010-04-24 10:51:29 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2010-04-24 10:51:29 ----RA---- C:\WINDOWS\system32\kbdur.dll
2010-04-24 10:51:29 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2010-04-24 10:51:29 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2010-04-24 10:51:29 ----RA---- C:\WINDOWS\system32\kbdru.dll
2010-04-24 10:51:29 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2010-04-24 10:51:29 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2010-04-24 10:51:29 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2010-04-24 10:51:29 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2010-04-24 10:51:29 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2010-04-24 10:51:27 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2010-04-24 10:51:27 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2010-04-24 10:51:27 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2010-04-24 10:51:27 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2010-04-24 10:51:27 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2010-04-24 10:51:27 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2010-04-24 10:51:27 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2010-04-24 10:51:25 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2010-04-24 10:51:25 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2010-04-24 10:51:25 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2010-04-24 10:51:25 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2010-04-24 10:51:25 ----RA---- C:\WINDOWS\system32\kbdest.dll
2010-04-24 10:51:21 ----A---- C:\WINDOWS\system32\kbdsl1.dll
2010-04-24 10:51:21 ----A---- C:\WINDOWS\system32\kbdsl.dll
2010-04-24 10:51:21 ----A---- C:\WINDOWS\system32\kbdro.dll
2010-04-24 10:51:21 ----A---- C:\WINDOWS\system32\kbdpl1.dll
2010-04-24 10:51:21 ----A---- C:\WINDOWS\system32\kbdpl.dll
2010-04-24 10:51:21 ----A---- C:\WINDOWS\system32\kbdhu1.dll
2010-04-24 10:51:21 ----A---- C:\WINDOWS\system32\kbdhu.dll
2010-04-24 10:51:21 ----A---- C:\WINDOWS\system32\kbdcr.dll
2010-04-24 10:51:20 ----A---- C:\WINDOWS\system32\kbdycl.dll
2010-04-24 10:51:20 ----A---- C:\WINDOWS\system32\KBDAL.DLL
2010-04-24 10:51:19 ----A---- C:\WINDOWS\system32\irclass.dll
2010-04-24 10:51:19 ----A---- C:\WINDOWS\system32\dgsetup.dll
2010-04-24 10:51:19 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2010-04-24 10:51:18 ----A---- C:\WINDOWS\system32\spxcoins.dll
2010-04-24 10:51:18 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2010-04-24 10:51:16 ----A---- C:\WINDOWS\TASKMAN.EXE
2010-04-24 10:51:15 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2010-04-24 10:51:15 ----A---- C:\WINDOWS\system32\batt.dll
2010-04-24 10:51:14 ----A---- C:\WINDOWS\NOTEPAD.EXE
2010-04-24 10:51:13 ----A---- C:\WINDOWS\system32\storprop.dll
2010-04-24 10:51:02 ----ASH---- C:\Documents and Settings\All Users\Data aplikací\desktop.ini
2010-04-24 10:50:56 ----RA---- C:\WINDOWS\SET8.tmp
2010-04-24 10:50:53 ----RA---- C:\WINDOWS\SET4.tmp
2010-04-24 10:50:51 ----RA---- C:\WINDOWS\SET3.tmp
2010-04-24 10:50:45 ----D---- C:\WINDOWS\system32\CatRoot2
2010-04-24 10:50:45 ----D---- C:\WINDOWS\system32\CatRoot
2010-04-24 10:50:39 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-04-24 10:50:24 ----A---- C:\WINDOWS\setuplog.txt
2010-04-24 10:50:19 ----SHD---- C:\System Volume Information
2010-04-24 10:50:19 ----D---- C:\Documents and Settings
2010-04-24 10:49:18 ----SH---- C:\boot.ini
2010-04-24 10:49:10 ----D---- C:\WINDOWS\system32\XPSViewer
2010-04-24 10:49:04 ----D---- C:\Program Files\MSBuild
2010-04-24 10:49:02 ----D---- C:\WINDOWS\system32\en-US
2010-04-24 10:48:55 ----D---- C:\Program Files\Reference Assemblies
2010-04-24 10:48:17 ----N---- C:\WINDOWS\system32\prntvpt.dll
2010-04-24 10:48:16 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2010-04-24 10:48:16 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2010-04-24 10:48:15 ----D---- C:\5b0b76e27af69730c0eafeba
2010-04-24 10:47:03 ----RSD---- C:\WINDOWS\assembly
2010-04-24 10:46:21 ----D---- C:\WINDOWS\Microsoft.NET
2010-04-24 10:44:57 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-04-24 10:44:57 ----RSD---- C:\WINDOWS\Fonts
2010-04-24 10:44:57 ----RD---- C:\WINDOWS\Web
2010-04-24 10:44:57 ----HD---- C:\WINDOWS\inf
2010-04-24 10:44:57 ----D---- C:\WINDOWS\WinSxS
2010-04-24 10:44:57 ----D---- C:\WINDOWS\twain_32
2010-04-24 10:44:57 ----D---- C:\WINDOWS\Temp
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\wins
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\wbem
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\usmt
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\spool
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\ShellExt
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\Setup
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\ras
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\oobe
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\npp
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\mui
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\inetsrv
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\IME
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\icsxml
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\ias
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\export
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\drivers
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\dhcp
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\cs-cz
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\cs
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\config
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\3com_dmi
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\3076
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\2052
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\1054
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\1042
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\1041
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\1037
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\1033
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\1031
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\1029
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\1028
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\1025
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system
2010-04-24 10:44:57 ----D---- C:\WINDOWS\security
2010-04-24 10:44:57 ----D---- C:\WINDOWS\Resources
2010-04-24 10:44:57 ----D---- C:\WINDOWS\repair
2010-04-24 10:44:57 ----D---- C:\WINDOWS\Provisioning
2010-04-24 10:44:57 ----D---- C:\WINDOWS\pchealth
2010-04-24 10:44:57 ----D---- C:\WINDOWS\PeerNet
2010-04-24 10:44:57 ----D---- C:\WINDOWS\Network Diagnostic
2010-04-24 10:44:57 ----D---- C:\WINDOWS\mui
2010-04-24 10:44:57 ----D---- C:\WINDOWS\msapps
2010-04-24 10:44:57 ----D---- C:\WINDOWS\msagent
2010-04-24 10:44:57 ----D---- C:\WINDOWS\Media
2010-04-24 10:44:57 ----D---- C:\WINDOWS\L2Schemas
2010-04-24 10:44:57 ----D---- C:\WINDOWS\java
2010-04-24 10:44:57 ----D---- C:\WINDOWS\ime
2010-04-24 10:44:57 ----D---- C:\WINDOWS\Help
2010-04-24 10:44:57 ----D---- C:\WINDOWS\ehome
2010-04-24 10:44:57 ----D---- C:\WINDOWS\Driver Cache
2010-04-24 10:44:57 ----D---- C:\WINDOWS\Debug
2010-04-24 10:44:57 ----D---- C:\WINDOWS\Cursors
2010-04-24 10:44:57 ----D---- C:\WINDOWS\Connection Wizard
2010-04-24 10:44:57 ----D---- C:\WINDOWS\Config
2010-04-24 10:44:57 ----D---- C:\WINDOWS\AppPatch
2010-04-24 10:44:57 ----D---- C:\WINDOWS\addins
2010-04-24 10:44:57 ----D---- C:\WINDOWS
2010-04-24 10:37:45 ----HD---- C:\WINDOWS\system32\GroupPolicy
2010-04-24 10:32:38 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2010-04-24 10:32:28 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2010-04-24 10:23:02 ----HDC---- C:\WINDOWS\$NtUninstallKB978601$
2010-04-24 10:21:38 ----A---- C:\WINDOWS\system32\MRT.exe
2010-04-24 10:21:27 ----HDC---- C:\WINDOWS\$NtUninstallKB979683$
2010-04-24 10:21:18 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2010-04-24 10:21:12 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2010-04-24 10:20:59 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2010-04-24 10:20:53 ----HDC---- C:\WINDOWS\$NtUninstallKB980232$
2010-04-24 10:20:15 ----HDC---- C:\WINDOWS\$NtUninstallKB975561$
2010-04-24 10:20:07 ----HDC---- C:\WINDOWS\$NtUninstallKB979306$
2010-04-24 10:19:56 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2010-04-24 10:19:49 ----HDC---- C:\WINDOWS\$NtUninstallKB971468$
2010-04-24 10:19:43 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2010-04-24 10:19:35 ----HDC---- C:\WINDOWS\$NtUninstallKB978262$
2010-04-24 10:19:28 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2010-04-24 10:19:20 ----HDC---- C:\WINDOWS\$NtUninstallKB978037$
2010-04-24 10:19:14 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2010-04-24 10:19:07 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-04-24 10:19:00 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-04-24 10:18:51 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-04-24 10:18:45 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-04-24 10:18:39 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-04-24 10:18:32 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2010-04-24 10:18:25 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2010-04-24 10:18:18 ----HDC---- C:\WINDOWS\$NtUninstallKB969947$
2010-04-24 10:18:11 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-04-24 10:18:04 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-04-24 10:17:57 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-04-24 10:17:50 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2010-04-24 10:17:44 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-04-24 10:17:38 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-04-24 10:17:32 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2010-04-24 10:17:26 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2010-04-24 10:17:21 ----HDC---- C:\WINDOWS\$NtUninstallKB968816_WM9$
2010-04-24 10:17:16 ----D---- C:\WINDOWS\ie8updates
2010-04-24 10:17:09 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-04-24 10:17:03 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2010-04-24 10:16:56 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2010-04-24 10:16:50 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2010-04-24 10:16:44 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2010-04-24 10:16:38 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2010-04-24 10:16:31 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2010-04-24 10:16:24 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2010-04-24 10:16:14 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2010-04-24 10:16:07 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2010-04-24 10:16:01 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2010-04-24 10:15:54 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2010-04-24 10:15:47 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2010-04-24 10:15:40 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2010-04-24 10:15:26 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2010-04-24 10:15:16 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2010-04-24 10:04:18 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2010-04-24 10:04:01 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2010-04-24 10:03:52 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2010-04-24 10:03:43 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2010-04-24 10:03:32 ----HDC---- C:\WINDOWS\$NtUninstallKB954459$
2010-04-24 10:03:21 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2010-04-24 10:03:12 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2010-04-24 10:03:04 ----HDC---- C:\WINDOWS\$NtUninstallKB954154_WM11$
2010-04-24 10:02:57 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2010-04-24 10:02:48 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2010-04-24 10:02:40 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2010-04-24 10:02:32 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2010-04-24 10:02:23 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2010-04-24 10:02:09 ----HDC---- C:\WINDOWS\$NtUninstallKB929399$
2010-04-24 10:02:00 ----HDC---- C:\WINDOWS\$NtUninstallKB939683$
2010-04-24 10:01:49 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2010-04-24 10:01:42 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2010-04-24 10:01:35 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2010-04-24 10:01:30 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2010-04-24 10:01:24 ----HDC---- C:\WINDOWS\$NtUninstallKB950760$
2010-04-24 10:01:02 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2010-04-24 09:38:53 ----D---- C:\WINDOWS\system32\PreInstall
2010-04-24 09:38:51 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2010-04-24 09:38:51 ----HD---- C:\WINDOWS\$hf_mig$
2010-04-24 09:36:59 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2010-04-24 09:36:59 ----A---- C:\WINDOWS\system32\wups2.dll
2010-04-24 09:36:59 ----A---- C:\WINDOWS\system32\wucltui.dll.mui
2010-04-24 09:36:59 ----A---- C:\WINDOWS\system32\wuaueng.dll.mui
2010-04-24 09:36:59 ----A---- C:\WINDOWS\system32\wuapi.dll.mui
2010-04-24 09:30:56 ----N---- C:\WINDOWS\system32\spmsg.dll
2010-04-24 09:30:52 ----HDC---- C:\WINDOWS\$NtUninstallMSCompPackV1$
2010-04-24 09:30:29 ----D---- C:\Program Files\Windows Media Connect 2
2010-04-24 09:30:15 ----HDC---- C:\WINDOWS\$NtUninstallwmp11$
2010-04-24 09:29:20 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2010-04-24 09:28:56 ----D---- C:\WINDOWS\system32\LogFiles
2010-04-24 09:28:48 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2010-04-24 09:28:20 ----D---- C:\Documents and Settings\All Users\Data aplikací\Windows Genuine Advantage
2010-04-24 09:24:33 ----D---- C:\WINDOWS\WBEM
2010-04-24 09:24:12 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2010-04-24 09:23:27 ----HDC---- C:\WINDOWS\ie8
2010-04-24 09:18:22 ----D---- C:\Documents and Settings\Home\Data aplikací\Identities
2010-04-24 09:18:20 ----HD---- C:\Program Files\Uninstall Information
2010-04-24 09:18:14 ----ASH---- C:\Documents and Settings\Home\Data aplikací\desktop.ini
2010-04-24 09:18:13 ----SD---- C:\Documents and Settings\Home\Data aplikací\Microsoft
2010-04-24 09:16:49 ----D---- C:\WINDOWS\SoftwareDistribution
2010-04-24 09:16:48 ----D---- C:\WINDOWS\Prefetch
2010-04-24 09:16:47 ----SD---- C:\WINDOWS\system32\Microsoft
2010-04-24 09:16:47 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-04-24 09:11:43 ----D---- C:\WINDOWS\system32\xircom
2010-04-24 09:11:43 ----D---- C:\Program Files\xerox
2010-04-24 09:11:43 ----D---- C:\Program Files\microsoft frontpage
2010-04-24 09:10:57 ----A---- C:\WINDOWS\control.ini
2010-04-24 09:10:57 ----A---- C:\AUTOEXEC.BAT
2010-04-24 09:10:39 ----A---- C:\WINDOWS\OEWABLog.txt
2010-04-24 09:10:33 ----A---- C:\WINDOWS\system32\mapi32.dll
2010-04-24 09:09:05 ----SD---- C:\WINDOWS\Downloaded Program Files
2010-04-24 09:09:05 ----RD---- C:\WINDOWS\Offline Web Pages
2010-04-24 09:09:05 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2010-04-24 09:08:55 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2010-04-24 09:08:48 ----HD---- C:\Program Files\WindowsUpdate
2010-04-24 09:08:42 ----D---- C:\Program Files\Online Services
2010-04-24 09:08:18 ----D---- C:\WINDOWS\system32\DirectX
2010-04-24 09:08:11 ----A---- C:\WINDOWS\system32\atrace.dll
2010-04-24 09:08:09 ----A---- C:\WINDOWS\system32\desktop.ini
2010-04-24 09:08:09 ----A---- C:\WINDOWS\desktop.ini
2010-04-24 09:08:01 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2010-04-24 09:07:59 ----D---- C:\Program Files\Common Files\Services
2010-04-24 09:07:59 ----A---- C:\WINDOWS\system32\acctres.dll
2010-04-24 09:07:56 ----SD---- C:\WINDOWS\Tasks
2010-04-24 09:07:56 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2010-04-24 09:07:54 ----D---- C:\Program Files\Common Files\MSSoap
2010-04-24 09:07:50 ----D---- C:\WINDOWS\srchasst
2010-04-24 09:07:49 ----D---- C:\WINDOWS\system32\Macromed
2010-04-24 09:07:46 ----A---- C:\WINDOWS\system32\wuweb.dll
2010-04-24 09:07:46 ----A---- C:\WINDOWS\system32\wucltui.dll
2010-04-24 09:07:46 ----A---- C:\WINDOWS\system32\wuauserv.dll
2010-04-24 09:07:46 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2010-04-24 09:07:45 ----A---- C:\WINDOWS\system32\wups.dll
2010-04-24 09:07:45 ----A---- C:\WINDOWS\system32\wuaueng.dll
2010-04-24 09:07:45 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2010-04-24 09:07:45 ----A---- C:\WINDOWS\system32\wuauclt.exe
2010-04-24 09:07:45 ----A---- C:\WINDOWS\system32\wuapi.dll
2010-04-24 09:07:45 ----A---- C:\WINDOWS\system32\bitsprx4.dll
2010-04-24 09:07:45 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2010-04-24 09:07:45 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2010-04-24 09:07:44 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2010-04-24 09:07:44 ----A---- C:\WINDOWS\system32\qmgr.dll
2010-04-24 09:07:40 ----D---- C:\Program Files\Movie Maker
2010-04-24 09:07:20 ----A---- C:\WINDOWS\system32\safrslv.dll
2010-04-24 09:07:20 ----A---- C:\WINDOWS\system32\safrdm.dll
2010-04-24 09:07:19 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2010-04-24 09:07:19 ----A---- C:\WINDOWS\system32\racpldlg.dll
2010-04-24 09:07:16 ----A---- C:\WINDOWS\system32\fltMc.exe
2010-04-24 09:07:16 ----A---- C:\WINDOWS\system32\fltlib.dll
2010-04-24 09:07:15 ----D---- C:\WINDOWS\system32\Restore
2010-04-24 09:07:15 ----A---- C:\WINDOWS\system32\srsvc.dll
2010-04-24 09:07:15 ----A---- C:\WINDOWS\system32\srrstr.dll
2010-04-24 09:07:15 ----A---- C:\WINDOWS\system32\srclient.dll
2010-04-24 09:07:14 ----A---- C:\WINDOWS\system32\mnmdd.dll
2010-04-24 09:07:14 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2010-04-24 09:07:14 ----A---- C:\WINDOWS\system32\ils.dll
2010-04-24 09:07:13 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2010-04-24 09:07:13 ----A---- C:\WINDOWS\system32\msconf.dll
2010-04-24 09:07:13 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2010-04-24 09:07:10 ----D---- C:\Program Files\NetMeeting
2010-04-24 09:07:10 ----A---- C:\WINDOWS\system32\msoert2.dll
2010-04-24 09:07:10 ----A---- C:\WINDOWS\system32\msoeacct.dll
2010-04-24 09:07:09 ----A---- C:\WINDOWS\system32\inetres.dll
2010-04-24 09:07:09 ----A---- C:\WINDOWS\system32\inetcomm.dll
2010-04-24 09:07:07 ----D---- C:\Program Files\Outlook Express
2010-04-24 09:07:07 ----A---- C:\WINDOWS\system32\schedsvc.dll
2010-04-24 09:07:07 ----A---- C:\WINDOWS\system32\mstinit.exe
2010-04-24 09:07:07 ----A---- C:\WINDOWS\system32\mstask.dll
2010-04-24 09:07:06 ----A---- C:\WINDOWS\system32\isign32.dll
2010-04-24 09:07:06 ----A---- C:\WINDOWS\system32\inetcfg.dll
2010-04-24 09:07:06 ----A---- C:\WINDOWS\system32\icwphbk.dll
2010-04-24 09:07:06 ----A---- C:\WINDOWS\system32\icwdial.dll
2010-04-24 09:07:00 ----D---- C:\Program Files\Common Files\System
2010-04-24 09:06:55 ----D---- C:\Program Files\Internet Explorer
2010-04-24 09:05:44 ----D---- C:\Program Files\ComPlus Applications
2010-04-24 09:05:42 ----A---- C:\WINDOWS\vbaddin.ini
2010-04-24 09:05:42 ----A---- C:\WINDOWS\vb.ini
2010-04-24 09:05:36 ----D---- C:\WINDOWS\Registration
2010-04-24 09:05:26 ----D---- C:\Program Files\Windows Media Player
2010-04-24 09:05:17 ----D---- C:\Program Files\Messenger
2010-04-24 09:05:12 ----D---- C:\Program Files\MSN Gaming Zone
2010-04-24 09:05:12 ----A---- C:\WINDOWS\system32\write.exe
2010-04-24 09:05:01 ----A---- C:\WINDOWS\system32\sndvol32.exe
2010-04-24 09:05:01 ----A---- C:\WINDOWS\system32\hticons.dll
2010-04-24 09:05:01 ----A---- C:\WINDOWS\system32\avwav.dll
2010-04-24 09:05:01 ----A---- C:\WINDOWS\system32\avtapi.dll
2010-04-24 09:05:01 ----A---- C:\WINDOWS\system32\avmeter.dll
2010-04-24 09:05:00 ----A---- C:\WINDOWS\system32\winchat.exe
2010-04-24 09:04:53 ----A---- C:\WINDOWS\system32\getuname.dll
2010-04-24 09:04:52 ----A---- C:\WINDOWS\system32\charmap.exe
2010-04-24 09:04:52 ----A---- C:\WINDOWS\system32\calc.exe
2010-04-24 09:04:51 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2010-04-24 09:04:51 ----A---- C:\WINDOWS\system32\reset.exe
2010-04-24 09:04:50 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2010-04-24 09:04:50 ----A---- C:\WINDOWS\system32\tslabels.ini
2010-04-24 09:04:50 ----A---- C:\WINDOWS\system32\tskill.exe
2010-04-24 09:04:50 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2010-04-24 09:04:50 ----A---- C:\WINDOWS\system32\tscon.exe
2010-04-24 09:04:50 ----A---- C:\WINDOWS\system32\shadow.exe
2010-04-24 09:04:50 ----A---- C:\WINDOWS\system32\rwinsta.exe
2010-04-24 09:04:50 ----A---- C:\WINDOWS\system32\regini.exe
2010-04-24 09:04:50 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2010-04-24 09:04:50 ----A---- C:\WINDOWS\system32\qwinsta.exe
2010-04-24 09:04:50 ----A---- C:\WINDOWS\system32\qappsrv.exe
2010-04-24 09:04:50 ----A---- C:\WINDOWS\system32\msg.exe
2010-04-24 09:04:49 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2010-04-24 09:04:49 ----A---- C:\WINDOWS\system32\logoff.exe
2010-04-24 09:04:49 ----A---- C:\WINDOWS\system32\cdmodem.dll
2010-04-24 09:04:42 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2010-04-24 09:04:41 ----A---- C:\WINDOWS\system32\sndrec32.exe
2010-04-24 09:04:41 ----A---- C:\WINDOWS\system32\accwiz.exe
2010-04-24 09:04:40 ----D---- C:\Program Files\Windows NT
2010-04-24 09:04:40 ----A---- C:\WINDOWS\system32\mspaint.exe
2010-04-24 09:04:40 ----A---- C:\WINDOWS\system32\mplay32.exe
2010-04-24 09:04:40 ----A---- C:\WINDOWS\system32\hypertrm.dll
2010-04-24 09:04:39 ----A---- C:\WINDOWS\system32\clipbrd.exe
2010-04-24 09:04:38 ----A---- C:\WINDOWS\system32\tsgqec.dll
2010-04-24 09:04:38 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2010-04-24 09:04:38 ----A---- C:\WINDOWS\system32\rhttpaa.dll
2010-04-24 09:04:37 ----A---- C:\WINDOWS\system32\mstscax.dll
2010-04-24 09:04:37 ----A---- C:\WINDOWS\system32\aaclient.dll
2010-04-24 09:04:36 ----A---- C:\WINDOWS\system32\termsrv.dll
2010-04-24 09:04:36 ----A---- C:\WINDOWS\system32\sessmgr.exe
2010-04-24 09:04:36 ----A---- C:\WINDOWS\system32\remotepg.dll
2010-04-24 09:04:36 ----A---- C:\WINDOWS\system32\rdshost.exe
2010-04-24 09:04:36 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2010-04-24 09:04:36 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2010-04-24 09:04:36 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2010-04-24 09:04:36 ----A---- C:\WINDOWS\system32\rdchost.dll
2010-04-24 09:04:36 ----A---- C:\WINDOWS\system32\mstsc.exe
2010-04-24 09:04:35 ----D---- C:\WINDOWS\system32\MsDtc
2010-04-24 09:04:35 ----A---- C:\WINDOWS\system32\rdpclip.exe
2010-04-24 09:04:35 ----A---- C:\WINDOWS\system32\qprocess.exe
2010-04-24 09:04:35 ----A---- C:\WINDOWS\system32\mtxoci.dll
2010-04-24 09:04:35 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2010-04-24 09:04:35 ----A---- C:\WINDOWS\system32\icaapi.dll
2010-04-24 09:04:35 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2010-04-24 09:04:34 ----A---- C:\WINDOWS\system32\xolehlp.dll
2010-04-24 09:04:34 ----A---- C:\WINDOWS\system32\msdtctm.dll
2010-04-24 09:04:34 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2010-04-24 09:04:34 ----A---- C:\WINDOWS\system32\msdtclog.dll
2010-04-24 09:04:34 ----A---- C:\WINDOWS\system32\msdtc.exe
2010-04-24 09:04:33 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2010-04-24 09:04:33 ----A---- C:\WINDOWS\system32\mtxex.dll
2010-04-24 09:04:33 ----A---- C:\WINDOWS\system32\mtxdm.dll
2010-04-24 09:04:33 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2010-04-24 09:04:32 ----D---- C:\WINDOWS\system32\Com
2010-04-24 09:04:32 ----A---- C:\WINDOWS\system32\stclient.dll
2010-04-24 09:04:32 ----A---- C:\WINDOWS\system32\comrepl.dll
2010-04-24 09:04:32 ----A---- C:\WINDOWS\system32\comaddin.dll
2010-04-24 09:04:32 ----A---- C:\WINDOWS\system32\colbact.dll
2010-04-24 09:04:32 ----A---- C:\WINDOWS\system32\clbcatex.dll
2010-04-24 09:04:32 ----A---- C:\WINDOWS\system32\catsrvps.dll
2010-04-24 09:04:31 ----A---- C:\WINDOWS\system32\comuid.dll
2010-04-24 09:04:31 ----A---- C:\WINDOWS\system32\comsvcs.dll
2010-04-24 09:04:31 ----A---- C:\WINDOWS\system32\comsnap.dll
2010-04-24 09:04:31 ----A---- C:\WINDOWS\system32\clbcatq.dll
2010-04-24 09:04:31 ----A---- C:\WINDOWS\system32\catsrvut.dll
2010-04-24 09:04:31 ----A---- C:\WINDOWS\system32\catsrv.dll
2010-04-24 09:04:24 ----A---- C:\WINDOWS\system32\servdeps.dll
2010-04-24 09:04:24 ----A---- C:\WINDOWS\system32\mmfutil.dll
2010-04-24 09:04:24 ----A---- C:\WINDOWS\system32\licwmi.dll
2010-04-24 09:04:24 ----A---- C:\WINDOWS\system32\cmprops.dll

======List of files/folders modified in the last 1 months======

2010-04-24 13:35:15 ----A---- C:\WINDOWS\win.ini
2010-04-24 13:35:15 ----A---- C:\WINDOWS\system.ini

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 P3;Ovladač procesoru Intel PentiumIII; C:\WINDOWS\system32\DRIVERS\p3.sys [2008-04-14 46592]
R3 ac97intc;Služba instalace zvukového ovladače Intel(r) (WDM); C:\WINDOWS\system32\drivers\ac97intc.sys [2001-08-17 96256]
R3 EL90XBC;3Com EtherLink XL 90XB/C Adapter Driver; C:\WINDOWS\system32\DRIVERS\el90xbc5.sys [2001-08-17 66591]
R3 ms_mpu401;Microsoft MPU-401 MIDI UART Driver; C:\WINDOWS\system32\drivers\msmpu401.sys [2001-08-18 2944]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2008-04-14 1897408]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-14 59520]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S3 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys [2009-11-12 7168]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 sr;Ovladač filtru Obnovy systému; C:\WINDOWS\system32\DRIVERS\sr.sys [2008-04-14 73344]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 idsvc;Služba Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S4 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-04-24 153376]
S4 NetTcpPortSharing;Služba sdílení portů Net.Tcp; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S4 NMSAccess;NMSAccess; C:\Program Files\CDBurnerXP\NMSAccessU.exe [2010-03-04 71096]
S4 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]

-----------------EOF-----------------

Re: Kontrola logu

Napsal: 24 dub 2010 13:30
od a600
to je flash paměť, ale nevím, že bych tam něco takového někdy měl, to bude asi ono, tyjo, vůbec nevím jak se to tam mohlo dostat, co teď s tím? v googlu to moc věcí nenachází

Re: Kontrola logu

Napsal: 24 dub 2010 13:36
od a600
asi to bude něco většího, se mi včera třeba instalovaly samy programy, nějaké internetové přehrávače a podobně,...

Re: Kontrola logu

Napsal: 24 dub 2010 13:58
od a600
All processes killed
========== PROCESSES ==========
Process csrcs.exe killed successfully!
No active process named cmd.exe was found!
No active process named net.exe was found!
========== REGISTRY ==========
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\"Shell"|"explorer.exe" /E : value set successfully!
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\\csrcs deleted successfully.
Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{5124ae81-4f89-11df-b7b2-000476113975}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5124ae81-4f89-11df-b7b2-000476113975}\ not found.
========== FILES ==========
C:\WINDOWS\system32\csrcs.exe moved successfully.
F:\ytzcmu.exe moved successfully.
File/Folder C:\ytzcmu.exe not found.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: Home
->Temp folder emptied: 77439867 bytes
->Temporary Internet Files folder emptied: 10342615 bytes
->Java cache emptied: 0 bytes
->Flash cache emptied: 1958169 bytes

User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 2351732 bytes
%systemroot%\System32 .tmp files removed: 2504 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 483 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 88,00 mb


OTM by OldTimer - Version 3.1.10.2 log created on 04242010_145219

Files moved on Reboot...

Registry entries deleted on Reboot...

Re: Kontrola logu

Napsal: 24 dub 2010 14:37
od a600
už nic nevyskakuje, děkuju moc za pomoc, av si stáhnu a projdu to pozdějc :)

Re: Kontrola logu

Napsal: 24 dub 2010 20:22
od a600
tak jsem to kompletně projel Avirou a nic to nenašlo, tady je jinak aktuální log, jěště jednou moc děkuju :)

Logfile of random's system information tool 1.06 (written by random/random)
Run by Home at 2010-04-24 21:19:36
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 12 GB (60%) free of 20 GB
Total RAM: 255 MB (17% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:19:56, on 24.4.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Opera\opera.exe
C:\Documents and Settings\Home\Dokumenty\RSIT.exe
C:\Program Files\trend micro\Home.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupda ... 2094591063
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microso ... 2102911166
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe

--
End of file - 4416 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-04-24 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-04-24 79648]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IMJPMIG8.1"=C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE [2008-04-13 208952]
"PHIME2002ASync"=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2008-04-13 455168]
"PHIME2002A"=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2008-04-13 455168]
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2010-03-02 282792]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSSE]
c:\Program Files\Microsoft Security Essentials\msseces.exe -hide -runkey []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\Yaho's Miranda IM\miranda32.exe"="C:\Program Files\Yaho's Miranda IM\miranda32.exe:*:Enabled:Miranda IM"
"C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

======List of files/folders created in the last 1 months======

2010-04-24 21:19:40 ----D---- C:\Program Files\trend micro
2010-04-24 21:19:36 ----D---- C:\rsit
2010-04-24 18:11:22 ----D---- C:\Documents and Settings\Home\Data aplikací\Avira
2010-04-24 17:35:08 ----D---- C:\Program Files\Avira
2010-04-24 17:35:08 ----D---- C:\Documents and Settings\All Users\Data aplikací\Avira
2010-04-24 17:13:57 ----SHD---- C:\Config.Msi
2010-04-24 15:26:06 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2010-04-24 15:09:21 ----A---- C:\WINDOWS\system32\mucltui.dll.mui
2010-04-24 15:09:21 ----A---- C:\WINDOWS\system32\mucltui.dll
2010-04-24 13:35:00 ----D---- C:\WINDOWS\pss
2010-04-24 13:10:55 ----D---- C:\Documents and Settings\Home\Data aplikací\Canneverbe Limited
2010-04-24 13:10:42 ----D---- C:\Documents and Settings\All Users\Data aplikací\Canneverbe Limited
2010-04-24 13:09:47 ----D---- C:\Program Files\MP3Recorder
2010-04-24 13:09:24 ----D---- C:\Program Files\Defraggler
2010-04-24 13:07:06 ----D---- C:\Program Files\Microsoft Silverlight
2010-04-24 12:57:00 ----D---- C:\Program Files\uTorrent
2010-04-24 12:56:25 ----D---- C:\Documents and Settings\Home\Data aplikací\uTorrent
2010-04-24 12:51:42 ----D---- C:\Documents and Settings\Home\Data aplikací\Adobe
2010-04-24 12:50:36 ----D---- C:\Documents and Settings\Home\Data aplikací\Macromedia
2010-04-24 12:44:54 ----D---- C:\Documents and Settings\Home\Data aplikací\Opera
2010-04-24 12:41:09 ----D---- C:\Program Files\CDBurnerXP
2010-04-24 12:40:25 ----D---- C:\Documents and Settings\All Users\Data aplikací\Sun
2010-04-24 12:40:22 ----D---- C:\Program Files\Common Files\Java
2010-04-24 12:39:51 ----A---- C:\WINDOWS\system32\javaws.exe
2010-04-24 12:39:51 ----A---- C:\WINDOWS\system32\javaw.exe
2010-04-24 12:39:51 ----A---- C:\WINDOWS\system32\java.exe
2010-04-24 12:39:51 ----A---- C:\WINDOWS\system32\deployJava1.dll
2010-04-24 12:39:06 ----D---- C:\Program Files\Java
2010-04-24 12:38:40 ----D---- C:\Documents and Settings\Home\Data aplikací\Sun
2010-04-24 12:36:18 ----A---- C:\WINDOWS\system32\unrar.dll
2010-04-24 12:36:18 ----A---- C:\WINDOWS\avisplitter.ini
2010-04-24 12:36:16 ----A---- C:\WINDOWS\system32\yv12vfw.dll
2010-04-24 12:36:16 ----A---- C:\WINDOWS\system32\xvidvfw.dll
2010-04-24 12:36:16 ----A---- C:\WINDOWS\system32\xvidcore.dll
2010-04-24 12:36:13 ----A---- C:\WINDOWS\system32\ff_vfw.dll.manifest
2010-04-24 12:36:13 ----A---- C:\WINDOWS\system32\ff_vfw.dll
2010-04-24 12:36:11 ----D---- C:\Program Files\Codecs
2010-04-24 12:16:07 ----D---- C:\Documents and Settings\Home\Data aplikací\WinRAR
2010-04-24 12:13:45 ----D---- C:\Program Files\Opera
2010-04-24 12:10:54 ----D---- C:\Program Files\Yaho's Miranda IM
2010-04-24 12:09:44 ----D---- C:\Program Files\IrfanView
2010-04-24 12:08:00 ----D---- C:\Program Files\WinRAR
2010-04-24 11:29:32 ----A---- C:\WINDOWS\system32\msonpmon.dll
2010-04-24 11:26:35 ----D---- C:\Program Files\Microsoft Works
2010-04-24 11:25:38 ----D---- C:\Program Files\Microsoft Visual Studio
2010-04-24 11:25:37 ----D---- C:\Program Files\Common Files\DESIGNER
2010-04-24 11:24:15 ----D---- C:\Program Files\Microsoft.NET
2010-04-24 11:20:00 ----D---- C:\Program Files\Microsoft Visual Studio 8
2010-04-24 11:18:22 ----D---- C:\WINDOWS\SHELLNEW
2010-04-24 11:17:45 ----D---- C:\Program Files\Microsoft Office
2010-04-24 11:17:44 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2010-04-24 11:17:15 ----RHD---- C:\MSOCache
2010-04-24 11:07:24 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2010-04-24 11:02:36 ----A---- C:\WINDOWS\system32\h323log.txt
2010-04-24 11:00:59 ----A---- C:\WINDOWS\system32\uniime.dll
2010-04-24 11:00:49 ----A---- C:\WINDOWS\system32\kbdlk41j.dll
2010-04-24 11:00:49 ----A---- C:\WINDOWS\system32\kbdlk41a.dll
2010-04-24 11:00:49 ----A---- C:\WINDOWS\system32\f3ahvoas.dll
2010-04-24 11:00:49 ----A---- C:\WINDOWS\system32\c_g18030.dll
2010-04-24 11:00:48 ----A---- C:\WINDOWS\system32\kbdibm02.dll
2010-04-24 11:00:48 ----A---- C:\WINDOWS\system32\kbdax2.dll
2010-04-24 11:00:48 ----A---- C:\WINDOWS\system32\kbd106n.dll
2010-04-24 11:00:48 ----A---- C:\WINDOWS\system32\kbd101.dll
2010-04-24 11:00:48 ----A---- C:\WINDOWS\system32\imjp81k.dll
2010-04-24 11:00:42 ----A---- C:\WINDOWS\system32\chtbrkr.dll
2010-04-24 11:00:42 ----A---- C:\WINDOWS\system32\chsbrkr.dll
2010-04-24 11:00:41 ----A---- C:\WINDOWS\system32\msir3jp.dll
2010-04-24 11:00:41 ----A---- C:\WINDOWS\system32\korwbrkr.dll
2010-04-24 11:00:26 ----A---- C:\WINDOWS\system32\kbd101a.dll
2010-04-24 11:00:16 ----A---- C:\WINDOWS\system32\kbdnecNT.dll
2010-04-24 11:00:16 ----A---- C:\WINDOWS\system32\kbdnecAT.dll
2010-04-24 11:00:16 ----A---- C:\WINDOWS\system32\kbdnec95.dll
2010-04-24 10:59:57 ----A---- C:\WINDOWS\system32\c_is2022.dll
2010-04-24 10:59:55 ----A---- C:\WINDOWS\system32\kbdkor.dll
2010-04-24 10:59:55 ----A---- C:\WINDOWS\system32\kbdjpn.dll
2010-04-24 10:59:55 ----A---- C:\WINDOWS\system32\kbd106.dll
2010-04-24 10:59:55 ----A---- C:\WINDOWS\system32\kbd103.dll
2010-04-24 10:59:55 ----A---- C:\WINDOWS\system32\kbd101c.dll
2010-04-24 10:59:54 ----A---- C:\WINDOWS\system32\Thawbrkr.dll
2010-04-24 10:59:54 ----A---- C:\WINDOWS\system32\kbd101b.dll
2010-04-24 10:59:53 ----RA---- C:\WINDOWS\system32\kbdvntc.dll
2010-04-24 10:59:53 ----RA---- C:\WINDOWS\system32\kbdintel.dll
2010-04-24 10:59:53 ----RA---- C:\WINDOWS\system32\kbdintam.dll
2010-04-24 10:59:53 ----RA---- C:\WINDOWS\system32\kbdinpun.dll
2010-04-24 10:59:53 ----RA---- C:\WINDOWS\system32\kbdinmar.dll
2010-04-24 10:59:53 ----RA---- C:\WINDOWS\system32\kbdinkan.dll
2010-04-24 10:59:53 ----RA---- C:\WINDOWS\system32\kbdinhin.dll
2010-04-24 10:59:53 ----RA---- C:\WINDOWS\system32\kbdinguj.dll
2010-04-24 10:59:53 ----RA---- C:\WINDOWS\system32\kbdindev.dll
2010-04-24 10:59:53 ----RA---- C:\WINDOWS\system32\kbdgeo.dll
2010-04-24 10:59:53 ----RA---- C:\WINDOWS\system32\kbdarmw.dll
2010-04-24 10:59:53 ----RA---- C:\WINDOWS\system32\kbdarme.dll
2010-04-24 10:59:53 ----A---- C:\WINDOWS\system32\c_iscii.dll
2010-04-24 10:59:51 ----RA---- C:\WINDOWS\system32\kbdurdu.dll
2010-04-24 10:59:51 ----RA---- C:\WINDOWS\system32\kbdsyr2.dll
2010-04-24 10:59:51 ----RA---- C:\WINDOWS\system32\kbdsyr1.dll
2010-04-24 10:59:51 ----RA---- C:\WINDOWS\system32\kbddiv2.dll
2010-04-24 10:59:51 ----RA---- C:\WINDOWS\system32\kbddiv1.dll
2010-04-24 10:59:50 ----RA---- C:\WINDOWS\system32\kbdfa.dll
2010-04-24 10:59:50 ----RA---- C:\WINDOWS\system32\kbda3.dll
2010-04-24 10:59:50 ----RA---- C:\WINDOWS\system32\kbda2.dll
2010-04-24 10:59:50 ----RA---- C:\WINDOWS\system32\kbda1.dll
2010-04-24 10:59:50 ----A---- C:\WINDOWS\system32\kbdusa.dll
2010-04-24 10:59:47 ----RA---- C:\WINDOWS\system32\kbdheb.dll
2010-04-24 10:59:43 ----RA---- C:\WINDOWS\system32\kbdth3.dll
2010-04-24 10:59:43 ----RA---- C:\WINDOWS\system32\kbdth2.dll
2010-04-24 10:59:43 ----RA---- C:\WINDOWS\system32\kbdth1.dll
2010-04-24 10:59:43 ----RA---- C:\WINDOWS\system32\kbdth0.dll
2010-04-24 10:59:43 ----A---- C:\WINDOWS\system32\ftlx041e.dll
2010-04-24 10:54:42 ----SHD---- C:\RECYCLER
2010-04-24 10:54:18 ----A---- C:\WINDOWS\system32\nv4_disp.dll
2010-04-24 10:53:44 ----A---- C:\WINDOWS\system32\usbui.dll
2010-04-24 10:53:21 ----A---- C:\WINDOWS\system32\ksuser.dll
2010-04-24 10:52:18 ----N---- C:\WINDOWS\system32\spmsg2.dll
2010-04-24 10:52:16 ----HDC---- C:\WINDOWS\$NtUninstallXPSEPSCLP$
2010-04-24 10:51:45 ----A---- C:\WINDOWS\imsins.BAK
2010-04-24 10:51:41 ----SHD---- C:\WINDOWS\Installer
2010-04-24 10:51:41 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-04-24 10:51:40 ----D---- C:\Program Files\Common Files\ODBC
2010-04-24 10:51:40 ----A---- C:\WINDOWS\ODBCINST.INI
2010-04-24 10:51:36 ----RD---- C:\Program Files
2010-04-24 10:51:36 ----D---- C:\Program Files\Common Files\SpeechEngines
2010-04-24 10:51:36 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-04-24 10:51:36 ----D---- C:\Program Files\Common Files
2010-04-24 10:51:31 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2010-04-24 10:51:31 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2010-04-24 10:51:31 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2010-04-24 10:51:30 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2010-04-24 10:51:29 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2010-04-24 10:51:29 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2010-04-24 10:51:29 ----RA---- C:\WINDOWS\system32\kbdur.dll
2010-04-24 10:51:29 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2010-04-24 10:51:29 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2010-04-24 10:51:29 ----RA---- C:\WINDOWS\system32\kbdru.dll
2010-04-24 10:51:29 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2010-04-24 10:51:29 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2010-04-24 10:51:29 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2010-04-24 10:51:29 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2010-04-24 10:51:29 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2010-04-24 10:51:27 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2010-04-24 10:51:27 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2010-04-24 10:51:27 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2010-04-24 10:51:27 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2010-04-24 10:51:27 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2010-04-24 10:51:27 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2010-04-24 10:51:27 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2010-04-24 10:51:25 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2010-04-24 10:51:25 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2010-04-24 10:51:25 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2010-04-24 10:51:25 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2010-04-24 10:51:25 ----RA---- C:\WINDOWS\system32\kbdest.dll
2010-04-24 10:51:21 ----A---- C:\WINDOWS\system32\kbdsl1.dll
2010-04-24 10:51:21 ----A---- C:\WINDOWS\system32\kbdsl.dll
2010-04-24 10:51:21 ----A---- C:\WINDOWS\system32\kbdro.dll
2010-04-24 10:51:21 ----A---- C:\WINDOWS\system32\kbdpl1.dll
2010-04-24 10:51:21 ----A---- C:\WINDOWS\system32\kbdpl.dll
2010-04-24 10:51:21 ----A---- C:\WINDOWS\system32\kbdhu1.dll
2010-04-24 10:51:21 ----A---- C:\WINDOWS\system32\kbdhu.dll
2010-04-24 10:51:21 ----A---- C:\WINDOWS\system32\kbdcr.dll
2010-04-24 10:51:20 ----A---- C:\WINDOWS\system32\kbdycl.dll
2010-04-24 10:51:20 ----A---- C:\WINDOWS\system32\KBDAL.DLL
2010-04-24 10:51:19 ----A---- C:\WINDOWS\system32\irclass.dll
2010-04-24 10:51:19 ----A---- C:\WINDOWS\system32\dgsetup.dll
2010-04-24 10:51:19 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2010-04-24 10:51:18 ----A---- C:\WINDOWS\system32\spxcoins.dll
2010-04-24 10:51:18 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2010-04-24 10:51:16 ----A---- C:\WINDOWS\TASKMAN.EXE
2010-04-24 10:51:15 ----A---- C:\WINDOWS\system32\batt.dll
2010-04-24 10:51:14 ----A---- C:\WINDOWS\NOTEPAD.EXE
2010-04-24 10:51:13 ----A---- C:\WINDOWS\system32\storprop.dll
2010-04-24 10:51:02 ----ASH---- C:\Documents and Settings\All Users\Data aplikací\desktop.ini
2010-04-24 10:50:45 ----D---- C:\WINDOWS\system32\CatRoot2
2010-04-24 10:50:45 ----D---- C:\WINDOWS\system32\CatRoot
2010-04-24 10:50:39 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-04-24 10:50:24 ----A---- C:\WINDOWS\setuplog.txt
2010-04-24 10:50:19 ----SHD---- C:\System Volume Information
2010-04-24 10:50:19 ----D---- C:\Documents and Settings
2010-04-24 10:49:18 ----SH---- C:\boot.ini
2010-04-24 10:49:10 ----D---- C:\WINDOWS\system32\XPSViewer
2010-04-24 10:49:04 ----D---- C:\Program Files\MSBuild
2010-04-24 10:49:02 ----D---- C:\WINDOWS\system32\en-US
2010-04-24 10:48:55 ----D---- C:\Program Files\Reference Assemblies
2010-04-24 10:48:17 ----N---- C:\WINDOWS\system32\prntvpt.dll
2010-04-24 10:48:16 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2010-04-24 10:48:16 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2010-04-24 10:48:15 ----D---- C:\5b0b76e27af69730c0eafeba
2010-04-24 10:47:03 ----RSD---- C:\WINDOWS\assembly
2010-04-24 10:46:21 ----D---- C:\WINDOWS\Microsoft.NET
2010-04-24 10:44:57 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-04-24 10:44:57 ----RSD---- C:\WINDOWS\Fonts
2010-04-24 10:44:57 ----RD---- C:\WINDOWS\Web
2010-04-24 10:44:57 ----HD---- C:\WINDOWS\inf
2010-04-24 10:44:57 ----D---- C:\WINDOWS\WinSxS
2010-04-24 10:44:57 ----D---- C:\WINDOWS\twain_32
2010-04-24 10:44:57 ----D---- C:\WINDOWS\Temp
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\wins
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\wbem
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\usmt
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\spool
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\ShellExt
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\Setup
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\ras
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\oobe
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\npp
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\mui
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\inetsrv
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\IME
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\icsxml
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\ias
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\export
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\drivers
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\dhcp
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\cs-cz
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\cs
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\config
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\3com_dmi
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\3076
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\2052
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\1054
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\1042
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\1041
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\1037
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\1033
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\1031
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\1029
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\1028
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32\1025
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system32
2010-04-24 10:44:57 ----D---- C:\WINDOWS\system
2010-04-24 10:44:57 ----D---- C:\WINDOWS\security
2010-04-24 10:44:57 ----D---- C:\WINDOWS\Resources
2010-04-24 10:44:57 ----D---- C:\WINDOWS\repair
2010-04-24 10:44:57 ----D---- C:\WINDOWS\Provisioning
2010-04-24 10:44:57 ----D---- C:\WINDOWS\pchealth
2010-04-24 10:44:57 ----D---- C:\WINDOWS\PeerNet
2010-04-24 10:44:57 ----D---- C:\WINDOWS\Network Diagnostic
2010-04-24 10:44:57 ----D---- C:\WINDOWS\mui
2010-04-24 10:44:57 ----D---- C:\WINDOWS\msapps
2010-04-24 10:44:57 ----D---- C:\WINDOWS\msagent
2010-04-24 10:44:57 ----D---- C:\WINDOWS\Media
2010-04-24 10:44:57 ----D---- C:\WINDOWS\L2Schemas
2010-04-24 10:44:57 ----D---- C:\WINDOWS\java
2010-04-24 10:44:57 ----D---- C:\WINDOWS\ime
2010-04-24 10:44:57 ----D---- C:\WINDOWS\Help
2010-04-24 10:44:57 ----D---- C:\WINDOWS\ehome
2010-04-24 10:44:57 ----D---- C:\WINDOWS\Driver Cache
2010-04-24 10:44:57 ----D---- C:\WINDOWS\Debug
2010-04-24 10:44:57 ----D---- C:\WINDOWS\Cursors
2010-04-24 10:44:57 ----D---- C:\WINDOWS\Connection Wizard
2010-04-24 10:44:57 ----D---- C:\WINDOWS\Config
2010-04-24 10:44:57 ----D---- C:\WINDOWS\AppPatch
2010-04-24 10:44:57 ----D---- C:\WINDOWS\addins
2010-04-24 10:44:57 ----D---- C:\WINDOWS
2010-04-24 10:37:45 ----HD---- C:\WINDOWS\system32\GroupPolicy
2010-04-24 10:32:38 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2010-04-24 10:32:28 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2010-04-24 10:23:02 ----HDC---- C:\WINDOWS\$NtUninstallKB978601$
2010-04-24 10:21:38 ----A---- C:\WINDOWS\system32\MRT.exe
2010-04-24 10:21:27 ----HDC---- C:\WINDOWS\$NtUninstallKB979683$
2010-04-24 10:21:18 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2010-04-24 10:21:12 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2010-04-24 10:20:59 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2010-04-24 10:20:53 ----HDC---- C:\WINDOWS\$NtUninstallKB980232$
2010-04-24 10:20:15 ----HDC---- C:\WINDOWS\$NtUninstallKB975561$
2010-04-24 10:20:07 ----HDC---- C:\WINDOWS\$NtUninstallKB979306$
2010-04-24 10:19:56 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2010-04-24 10:19:49 ----HDC---- C:\WINDOWS\$NtUninstallKB971468$
2010-04-24 10:19:43 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2010-04-24 10:19:35 ----HDC---- C:\WINDOWS\$NtUninstallKB978262$
2010-04-24 10:19:28 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2010-04-24 10:19:20 ----HDC---- C:\WINDOWS\$NtUninstallKB978037$
2010-04-24 10:19:14 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2010-04-24 10:19:07 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-04-24 10:19:00 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-04-24 10:18:51 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-04-24 10:18:45 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-04-24 10:18:39 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-04-24 10:18:32 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2010-04-24 10:18:25 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2010-04-24 10:18:18 ----HDC---- C:\WINDOWS\$NtUninstallKB969947$
2010-04-24 10:18:11 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-04-24 10:18:04 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-04-24 10:17:57 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-04-24 10:17:50 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2010-04-24 10:17:44 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-04-24 10:17:38 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-04-24 10:17:32 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2010-04-24 10:17:26 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2010-04-24 10:17:21 ----HDC---- C:\WINDOWS\$NtUninstallKB968816_WM9$
2010-04-24 10:17:16 ----D---- C:\WINDOWS\ie8updates
2010-04-24 10:17:09 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-04-24 10:17:03 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2010-04-24 10:16:56 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2010-04-24 10:16:50 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2010-04-24 10:16:44 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2010-04-24 10:16:38 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2010-04-24 10:16:31 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2010-04-24 10:16:24 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2010-04-24 10:16:14 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2010-04-24 10:16:07 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2010-04-24 10:16:01 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2010-04-24 10:15:54 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2010-04-24 10:15:47 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2010-04-24 10:15:40 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2010-04-24 10:15:26 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2010-04-24 10:15:16 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2010-04-24 10:04:18 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2010-04-24 10:04:01 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2010-04-24 10:03:52 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2010-04-24 10:03:43 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2010-04-24 10:03:32 ----HDC---- C:\WINDOWS\$NtUninstallKB954459$
2010-04-24 10:03:21 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2010-04-24 10:03:12 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2010-04-24 10:03:04 ----HDC---- C:\WINDOWS\$NtUninstallKB954154_WM11$
2010-04-24 10:02:57 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2010-04-24 10:02:48 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2010-04-24 10:02:40 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2010-04-24 10:02:32 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2010-04-24 10:02:23 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2010-04-24 10:02:09 ----HDC---- C:\WINDOWS\$NtUninstallKB929399$
2010-04-24 10:02:00 ----HDC---- C:\WINDOWS\$NtUninstallKB939683$
2010-04-24 10:01:49 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2010-04-24 10:01:42 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2010-04-24 10:01:35 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2010-04-24 10:01:30 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2010-04-24 10:01:24 ----HDC---- C:\WINDOWS\$NtUninstallKB950760$
2010-04-24 10:01:02 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2010-04-24 09:38:53 ----D---- C:\WINDOWS\system32\PreInstall
2010-04-24 09:38:51 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2010-04-24 09:38:51 ----HD---- C:\WINDOWS\$hf_mig$
2010-04-24 09:36:59 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2010-04-24 09:36:59 ----A---- C:\WINDOWS\system32\wups2.dll
2010-04-24 09:36:59 ----A---- C:\WINDOWS\system32\wucltui.dll.mui
2010-04-24 09:36:59 ----A---- C:\WINDOWS\system32\wuaueng.dll.mui
2010-04-24 09:36:59 ----A---- C:\WINDOWS\system32\wuapi.dll.mui
2010-04-24 09:30:56 ----N---- C:\WINDOWS\system32\spmsg.dll
2010-04-24 09:30:52 ----HDC---- C:\WINDOWS\$NtUninstallMSCompPackV1$
2010-04-24 09:30:29 ----D---- C:\Program Files\Windows Media Connect 2
2010-04-24 09:30:15 ----HDC---- C:\WINDOWS\$NtUninstallwmp11$
2010-04-24 09:29:20 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2010-04-24 09:28:56 ----D---- C:\WINDOWS\system32\LogFiles
2010-04-24 09:28:48 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2010-04-24 09:28:20 ----D---- C:\Documents and Settings\All Users\Data aplikací\Windows Genuine Advantage
2010-04-24 09:24:33 ----D---- C:\WINDOWS\WBEM
2010-04-24 09:24:12 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2010-04-24 09:23:27 ----HDC---- C:\WINDOWS\ie8
2010-04-24 09:18:22 ----D---- C:\Documents and Settings\Home\Data aplikací\Identities
2010-04-24 09:18:20 ----HD---- C:\Program Files\Uninstall Information
2010-04-24 09:18:14 ----ASH---- C:\Documents and Settings\Home\Data aplikací\desktop.ini
2010-04-24 09:18:13 ----SD---- C:\Documents and Settings\Home\Data aplikací\Microsoft
2010-04-24 09:16:49 ----D---- C:\WINDOWS\SoftwareDistribution
2010-04-24 09:16:48 ----D---- C:\WINDOWS\Prefetch
2010-04-24 09:16:47 ----SD---- C:\WINDOWS\system32\Microsoft
2010-04-24 09:16:47 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-04-24 09:11:43 ----D---- C:\WINDOWS\system32\xircom
2010-04-24 09:11:43 ----D---- C:\Program Files\xerox
2010-04-24 09:11:43 ----D---- C:\Program Files\microsoft frontpage
2010-04-24 09:10:57 ----A---- C:\WINDOWS\control.ini
2010-04-24 09:10:57 ----A---- C:\AUTOEXEC.BAT
2010-04-24 09:10:39 ----A---- C:\WINDOWS\OEWABLog.txt
2010-04-24 09:10:33 ----A---- C:\WINDOWS\system32\mapi32.dll
2010-04-24 09:09:05 ----SD---- C:\WINDOWS\Downloaded Program Files
2010-04-24 09:09:05 ----RD---- C:\WINDOWS\Offline Web Pages
2010-04-24 09:09:05 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2010-04-24 09:08:55 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2010-04-24 09:08:48 ----HD---- C:\Program Files\WindowsUpdate
2010-04-24 09:08:42 ----D---- C:\Program Files\Online Services
2010-04-24 09:08:18 ----D---- C:\WINDOWS\system32\DirectX
2010-04-24 09:08:11 ----A---- C:\WINDOWS\system32\atrace.dll
2010-04-24 09:08:09 ----A---- C:\WINDOWS\system32\desktop.ini
2010-04-24 09:08:09 ----A---- C:\WINDOWS\desktop.ini
2010-04-24 09:08:01 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2010-04-24 09:07:59 ----D---- C:\Program Files\Common Files\Services
2010-04-24 09:07:59 ----A---- C:\WINDOWS\system32\acctres.dll
2010-04-24 09:07:56 ----SD---- C:\WINDOWS\Tasks
2010-04-24 09:07:56 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2010-04-24 09:07:54 ----D---- C:\Program Files\Common Files\MSSoap
2010-04-24 09:07:50 ----D---- C:\WINDOWS\srchasst
2010-04-24 09:07:49 ----D---- C:\WINDOWS\system32\Macromed
2010-04-24 09:07:46 ----A---- C:\WINDOWS\system32\wuweb.dll
2010-04-24 09:07:46 ----A---- C:\WINDOWS\system32\wucltui.dll
2010-04-24 09:07:46 ----A---- C:\WINDOWS\system32\wuauserv.dll
2010-04-24 09:07:46 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2010-04-24 09:07:45 ----A---- C:\WINDOWS\system32\wups.dll
2010-04-24 09:07:45 ----A---- C:\WINDOWS\system32\wuaueng.dll
2010-04-24 09:07:45 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2010-04-24 09:07:45 ----A---- C:\WINDOWS\system32\wuauclt.exe
2010-04-24 09:07:45 ----A---- C:\WINDOWS\system32\wuapi.dll
2010-04-24 09:07:45 ----A---- C:\WINDOWS\system32\bitsprx4.dll
2010-04-24 09:07:45 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2010-04-24 09:07:45 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2010-04-24 09:07:44 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2010-04-24 09:07:44 ----A---- C:\WINDOWS\system32\qmgr.dll
2010-04-24 09:07:40 ----D---- C:\Program Files\Movie Maker
2010-04-24 09:07:20 ----A---- C:\WINDOWS\system32\safrslv.dll
2010-04-24 09:07:20 ----A---- C:\WINDOWS\system32\safrdm.dll
2010-04-24 09:07:19 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2010-04-24 09:07:19 ----A---- C:\WINDOWS\system32\racpldlg.dll
2010-04-24 09:07:16 ----A---- C:\WINDOWS\system32\fltMc.exe
2010-04-24 09:07:16 ----A---- C:\WINDOWS\system32\fltlib.dll
2010-04-24 09:07:15 ----D---- C:\WINDOWS\system32\Restore
2010-04-24 09:07:15 ----A---- C:\WINDOWS\system32\srsvc.dll
2010-04-24 09:07:15 ----A---- C:\WINDOWS\system32\srrstr.dll
2010-04-24 09:07:15 ----A---- C:\WINDOWS\system32\srclient.dll
2010-04-24 09:07:14 ----A---- C:\WINDOWS\system32\mnmdd.dll
2010-04-24 09:07:14 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2010-04-24 09:07:14 ----A---- C:\WINDOWS\system32\ils.dll
2010-04-24 09:07:13 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2010-04-24 09:07:13 ----A---- C:\WINDOWS\system32\msconf.dll
2010-04-24 09:07:13 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2010-04-24 09:07:10 ----D---- C:\Program Files\NetMeeting
2010-04-24 09:07:10 ----A---- C:\WINDOWS\system32\msoert2.dll
2010-04-24 09:07:10 ----A---- C:\WINDOWS\system32\msoeacct.dll
2010-04-24 09:07:09 ----A---- C:\WINDOWS\system32\inetres.dll
2010-04-24 09:07:09 ----A---- C:\WINDOWS\system32\inetcomm.dll
2010-04-24 09:07:07 ----D---- C:\Program Files\Outlook Express
2010-04-24 09:07:07 ----A---- C:\WINDOWS\system32\schedsvc.dll
2010-04-24 09:07:07 ----A---- C:\WINDOWS\system32\mstinit.exe
2010-04-24 09:07:07 ----A---- C:\WINDOWS\system32\mstask.dll
2010-04-24 09:07:06 ----A---- C:\WINDOWS\system32\isign32.dll
2010-04-24 09:07:06 ----A---- C:\WINDOWS\system32\inetcfg.dll
2010-04-24 09:07:06 ----A---- C:\WINDOWS\system32\icwphbk.dll
2010-04-24 09:07:06 ----A---- C:\WINDOWS\system32\icwdial.dll
2010-04-24 09:07:00 ----D---- C:\Program Files\Common Files\System
2010-04-24 09:06:55 ----D---- C:\Program Files\Internet Explorer
2010-04-24 09:05:44 ----D---- C:\Program Files\ComPlus Applications
2010-04-24 09:05:42 ----A---- C:\WINDOWS\vbaddin.ini
2010-04-24 09:05:42 ----A---- C:\WINDOWS\vb.ini
2010-04-24 09:05:36 ----D---- C:\WINDOWS\Registration
2010-04-24 09:05:26 ----D---- C:\Program Files\Windows Media Player
2010-04-24 09:05:17 ----D---- C:\Program Files\Messenger
2010-04-24 09:05:12 ----D---- C:\Program Files\MSN Gaming Zone
2010-04-24 09:05:12 ----A---- C:\WINDOWS\system32\write.exe
2010-04-24 09:05:01 ----A---- C:\WINDOWS\system32\sndvol32.exe
2010-04-24 09:05:01 ----A---- C:\WINDOWS\system32\hticons.dll
2010-04-24 09:05:01 ----A---- C:\WINDOWS\system32\avwav.dll
2010-04-24 09:05:01 ----A---- C:\WINDOWS\system32\avtapi.dll
2010-04-24 09:05:01 ----A---- C:\WINDOWS\system32\avmeter.dll
2010-04-24 09:05:00 ----A---- C:\WINDOWS\system32\winchat.exe
2010-04-24 09:04:53 ----A---- C:\WINDOWS\system32\getuname.dll
2010-04-24 09:04:52 ----A---- C:\WINDOWS\system32\charmap.exe
2010-04-24 09:04:52 ----A---- C:\WINDOWS\system32\calc.exe
2010-04-24 09:04:51 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2010-04-24 09:04:51 ----A---- C:\WINDOWS\system32\reset.exe
2010-04-24 09:04:50 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2010-04-24 09:04:50 ----A---- C:\WINDOWS\system32\tslabels.ini
2010-04-24 09:04:50 ----A---- C:\WINDOWS\system32\tskill.exe
2010-04-24 09:04:50 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2010-04-24 09:04:50 ----A---- C:\WINDOWS\system32\tscon.exe
2010-04-24 09:04:50 ----A---- C:\WINDOWS\system32\shadow.exe
2010-04-24 09:04:50 ----A---- C:\WINDOWS\system32\rwinsta.exe
2010-04-24 09:04:50 ----A---- C:\WINDOWS\system32\regini.exe
2010-04-24 09:04:50 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2010-04-24 09:04:50 ----A---- C:\WINDOWS\system32\qwinsta.exe
2010-04-24 09:04:50 ----A---- C:\WINDOWS\system32\qappsrv.exe
2010-04-24 09:04:50 ----A---- C:\WINDOWS\system32\msg.exe
2010-04-24 09:04:49 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2010-04-24 09:04:49 ----A---- C:\WINDOWS\system32\logoff.exe
2010-04-24 09:04:49 ----A---- C:\WINDOWS\system32\cdmodem.dll
2010-04-24 09:04:42 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2010-04-24 09:04:41 ----A---- C:\WINDOWS\system32\sndrec32.exe
2010-04-24 09:04:41 ----A---- C:\WINDOWS\system32\accwiz.exe
2010-04-24 09:04:40 ----D---- C:\Program Files\Windows NT
2010-04-24 09:04:40 ----A---- C:\WINDOWS\system32\mspaint.exe
2010-04-24 09:04:40 ----A---- C:\WINDOWS\system32\mplay32.exe
2010-04-24 09:04:40 ----A---- C:\WINDOWS\system32\hypertrm.dll
2010-04-24 09:04:39 ----A---- C:\WINDOWS\system32\clipbrd.exe
2010-04-24 09:04:38 ----A---- C:\WINDOWS\system32\tsgqec.dll
2010-04-24 09:04:38 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2010-04-24 09:04:38 ----A---- C:\WINDOWS\system32\rhttpaa.dll
2010-04-24 09:04:37 ----A---- C:\WINDOWS\system32\mstscax.dll
2010-04-24 09:04:37 ----A---- C:\WINDOWS\system32\aaclient.dll
2010-04-24 09:04:36 ----A---- C:\WINDOWS\system32\termsrv.dll
2010-04-24 09:04:36 ----A---- C:\WINDOWS\system32\sessmgr.exe
2010-04-24 09:04:36 ----A---- C:\WINDOWS\system32\remotepg.dll
2010-04-24 09:04:36 ----A---- C:\WINDOWS\system32\rdshost.exe
2010-04-24 09:04:36 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2010-04-24 09:04:36 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2010-04-24 09:04:36 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2010-04-24 09:04:36 ----A---- C:\WINDOWS\system32\rdchost.dll
2010-04-24 09:04:36 ----A---- C:\WINDOWS\system32\mstsc.exe
2010-04-24 09:04:35 ----D---- C:\WINDOWS\system32\MsDtc
2010-04-24 09:04:35 ----A---- C:\WINDOWS\system32\rdpclip.exe
2010-04-24 09:04:35 ----A---- C:\WINDOWS\system32\qprocess.exe
2010-04-24 09:04:35 ----A---- C:\WINDOWS\system32\mtxoci.dll
2010-04-24 09:04:35 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2010-04-24 09:04:35 ----A---- C:\WINDOWS\system32\icaapi.dll
2010-04-24 09:04:35 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2010-04-24 09:04:34 ----A---- C:\WINDOWS\system32\xolehlp.dll
2010-04-24 09:04:34 ----A---- C:\WINDOWS\system32\msdtctm.dll
2010-04-24 09:04:34 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2010-04-24 09:04:34 ----A---- C:\WINDOWS\system32\msdtclog.dll
2010-04-24 09:04:34 ----A---- C:\WINDOWS\system32\msdtc.exe
2010-04-24 09:04:33 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2010-04-24 09:04:33 ----A---- C:\WINDOWS\system32\mtxex.dll
2010-04-24 09:04:33 ----A---- C:\WINDOWS\system32\mtxdm.dll
2010-04-24 09:04:33 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2010-04-24 09:04:32 ----D---- C:\WINDOWS\system32\Com
2010-04-24 09:04:32 ----A---- C:\WINDOWS\system32\stclient.dll
2010-04-24 09:04:32 ----A---- C:\WINDOWS\system32\comrepl.dll
2010-04-24 09:04:32 ----A---- C:\WINDOWS\system32\comaddin.dll
2010-04-24 09:04:32 ----A---- C:\WINDOWS\system32\colbact.dll
2010-04-24 09:04:32 ----A---- C:\WINDOWS\system32\clbcatex.dll
2010-04-24 09:04:32 ----A---- C:\WINDOWS\system32\catsrvps.dll
2010-04-24 09:04:31 ----A---- C:\WINDOWS\system32\comuid.dll
2010-04-24 09:04:31 ----A---- C:\WINDOWS\system32\comsvcs.dll
2010-04-24 09:04:31 ----A---- C:\WINDOWS\system32\comsnap.dll
2010-04-24 09:04:31 ----A---- C:\WINDOWS\system32\clbcatq.dll
2010-04-24 09:04:31 ----A---- C:\WINDOWS\system32\catsrvut.dll
2010-04-24 09:04:31 ----A---- C:\WINDOWS\system32\catsrv.dll
2010-04-24 09:04:24 ----A---- C:\WINDOWS\system32\servdeps.dll
2010-04-24 09:04:24 ----A---- C:\WINDOWS\system32\mmfutil.dll
2010-04-24 09:04:24 ----A---- C:\WINDOWS\system32\licwmi.dll
2010-04-24 09:04:24 ----A---- C:\WINDOWS\system32\cmprops.dll

======List of files/folders modified in the last 1 months======

2010-04-24 15:38:22 ----A---- C:\WINDOWS\win.ini
2010-04-24 15:38:22 ----A---- C:\WINDOWS\system.ini

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir Desktop\avgio.sys []
R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2010-03-01 124784]
R1 P3;Ovladač procesoru Intel PentiumIII; C:\WINDOWS\system32\DRIVERS\p3.sys [2008-04-14 46592]
R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2010-02-16 60936]
R3 ac97intc;Služba instalace zvukového ovladače Intel(r) (WDM); C:\WINDOWS\system32\drivers\ac97intc.sys [2001-08-17 96256]
R3 EL90XBC;3Com EtherLink XL 90XB/C Adapter Driver; C:\WINDOWS\system32\DRIVERS\el90xbc5.sys [2001-08-17 66591]
R3 ms_mpu401;Microsoft MPU-401 MIDI UART Driver; C:\WINDOWS\system32\drivers\msmpu401.sys [2001-08-18 2944]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2008-04-14 1897408]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-14 59520]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2009-05-11 28520]
S3 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys [2009-11-12 7168]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 sr;Ovladač filtru Obnovy systému; C:\WINDOWS\system32\DRIVERS\sr.sys [2008-04-14 73344]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AntiVirService;Avira AntiVir Guard; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2010-04-01 267432]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2010-02-24 135336]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 idsvc;Služba Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S4 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-04-24 153376]
S4 NetTcpPortSharing;Služba sdílení portů Net.Tcp; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S4 NMSAccess;NMSAccess; C:\Program Files\CDBurnerXP\NMSAccessU.exe [2010-03-04 71096]
S4 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]

-----------------EOF-----------------