prosim o kontrolu log
Napsal: 09 kvě 2010 15:36
Prosim o kontrolu logu,seka se prohlizec.Diky
Logfile of random's system information tool 1.07 (written by random/random)
Run by Zdena at 2010-05-09 16:34:09
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 177 GB (74%) free of 238 GB
Total RAM: 1919 MB (68% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:34:18, on 9.5.2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18904)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\ASUS\ASUS Live Update\ALU.exe
C:\Program Files\ASUS\Asus MultiFrame\MultiFrame.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.Exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\ICQ7.0\ICQ.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Sunbelt Software\Personal Firewall\SbPFCl.exe
C:\Windows\System32\mobsync.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Users\Zdena\Desktop\RSIT.exe
C:\Program Files\trend micro\Zdena.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.crawler.com/search/dispatche ... tbid=60446
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60446
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_custo ... TbId=60446
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60446
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://dnl.crawler.com/support/sa_custo ... TbId=60446
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WebTransBHO Class - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\ProgramData\LangSoft\WebIE.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\ProgramData\LangSoft\WebIE.dll
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [SpywareTerminatorUpdate] "C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"
O4 - HKCU\..\Run: [EPSON Stylus DX4400 Series] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE /FU "C:\Users\Zdena\AppData\Local\Temp\E_SDB61.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ7.0\ICQ.exe" silent loginmode=4
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\ProgramData\LangSoft\WebIE.dll
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files\ATK Hotkey\ASLDRSrv.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: SbPF.Launcher - Sunbelt Software, Inc. - C:\Program Files\Sunbelt Software\Personal Firewall\SbPFLnch.exe
O23 - Service: Sunbelt Personal Firewall 4 (SPF4) - Sunbelt Software, Inc. - C:\Program Files\Sunbelt Software\Personal Firewall\SbPFSvc.exe
O23 - Service: spmgr - Unknown owner - C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
--
End of file - 7721 bytes
======Scheduled tasks folder======
C:\Windows\tasks\User_Feed_Synchronization-{86640402-383E-4D0E-9B93-CBEAB4C57EAB}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\ProgramData\LangSoft\WebIE.dll [2010-03-27 520192]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre6\bin\ssv.dll [2010-03-27 321312]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-03-27 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\ProgramData\LangSoft\WebIE.dll [2010-03-27 520192]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SpywareTerminator"=C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe [2010-04-14 2176512]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-02-15 4390912]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2010-03-17 421888]
"avast5"=C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe [2010-05-06 2815192]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-11 1233920]
""= []
"SpywareTerminatorUpdate"=C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe [2010-03-27 3037696]
"EPSON Stylus DX4400 Series"=C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE [2007-03-01 180736]
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-19 125952]
"ICQ"=C:\Program Files\ICQ7.0\ICQ.exe [2010-03-28 133368]
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Camera ScreenSaver]
C:\Windows\ASScrProlog.exe [2010-03-27 37232]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\ASScrPro.exe [2010-03-27 33136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSTPE]
C:\Windows\system32\ASUSTPE.exe [2006-12-12 106496]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATKMEDIA]
C:\Program Files\ASUS\ATK Media\DMEDIA.EXE [2006-11-02 61440]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON Stylus DX4400 Series]
C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE [2007-03-01 180736]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON Stylus DX4400 Series (kopie 1)]
C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE [2007-03-01 180736]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2008-06-09 2363392]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PowerForPhone]
C:\Program Files\PowerForPhone\PowerForPhone.exe [2007-06-26 778240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Windows\RtHDVCpl.exe [2007-02-15 4390912]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SMSERIAL]
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [2007-09-03 630784]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2006-11-10 90112]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Java\jre6\bin\jusched.exe [2010-03-27 149280]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-12-06 1029416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Uninstall Adobe Download Manager]
C:\Program Files\NOS\bin\getPlus_Helper.dll [2010-03-22 68000]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Defender]
C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth Manager.lnk]
C:\PROGRA~1\Toshiba\BLUETO~1\TosBtMng.exe [2007-01-18 2752512]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Zdena^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^CCC.lnk]
C:\PROGRA~1\ATITEC~1\ATI.ACE\CORE-S~1\CCC.exe [2006-09-29 49152]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLUA"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2010-05-09 16:34:09 ----D---- C:\rsit
2010-05-09 16:34:09 ----D---- C:\Program Files\trend micro
2010-05-09 16:15:43 ----A---- C:\Windows\zip.exe
2010-05-09 16:15:43 ----A---- C:\Windows\SWSC.exe
2010-05-09 16:15:43 ----A---- C:\Windows\SWREG.exe
2010-05-09 16:15:43 ----A---- C:\Windows\sed.exe
2010-05-09 16:15:43 ----A---- C:\Windows\PEV.exe
2010-05-09 16:15:43 ----A---- C:\Windows\NIRCMD.exe
2010-05-09 16:15:43 ----A---- C:\Windows\MBR.exe
2010-05-09 16:15:43 ----A---- C:\Windows\grep.exe
2010-05-09 16:15:29 ----D---- C:\Windows\ERDNT
2010-05-09 16:14:58 ----D---- C:\Qoobox
2010-05-09 16:14:40 ----A---- C:\Windows\SWXCACLS.exe
2010-05-09 14:08:32 ----D---- C:\Program Files\Sunbelt Software
2010-05-09 14:05:46 ----A---- C:\Windows\system32\aswBoot.exe
2010-05-09 14:05:32 ----D---- C:\ProgramData\Alwil Software
2010-05-09 14:05:32 ----D---- C:\Program Files\Alwil Software
2010-05-03 23:07:55 ----D---- C:\Users\Zdena\AppData\Roaming\WinRAR
2010-05-03 23:07:18 ----D---- C:\Program Files\WinRAR
2010-05-02 12:00:13 ----D---- C:\ProgramData\Apple Computer
2010-05-02 12:00:13 ----D---- C:\Program Files\QuickTime
2010-05-02 11:59:13 ----D---- C:\Program Files\Common Files\Apple
2010-05-02 11:58:48 ----D---- C:\ProgramData\Apple
2010-05-02 11:58:48 ----D---- C:\Program Files\Apple Software Update
2010-05-01 09:54:39 ----D---- C:\Program Files\Windows Portable Devices
2010-04-30 23:54:09 ----A---- C:\Windows\system32\UIAnimation.dll
2010-04-30 23:54:08 ----A---- C:\Windows\system32\UIRibbonRes.dll
2010-04-30 23:54:08 ----A---- C:\Windows\system32\UIRibbon.dll
2010-04-30 23:53:40 ----A---- C:\Windows\system32\WMPhoto.dll
2010-04-30 23:53:40 ----A---- C:\Windows\system32\cdd.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\XpsRasterService.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\XpsPrint.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\WindowsCodecs.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2010-04-30 23:53:39 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\OpcServices.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\dxdiagn.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\dxdiag.exe
2010-04-30 23:53:39 ----A---- C:\Windows\system32\d3d10warp.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\d2d1.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\xpsservices.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\FntCache.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\dxgi.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\DWrite.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\d3d11.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\d3d10level9.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\d3d10core.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\d3d10_1core.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\d3d10_1.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\d3d10.dll
2010-04-30 23:53:01 ----A---- C:\Windows\system32\WPDShextAutoplay.exe
2010-04-30 23:53:01 ----A---- C:\Windows\system32\wpdbusenum.dll
2010-04-30 23:53:01 ----A---- C:\Windows\system32\BthMtpContextHandler.dll
2010-04-30 23:52:57 ----A---- C:\Windows\system32\PortableDeviceConnectApi.dll
2010-04-30 23:52:54 ----A---- C:\Windows\system32\WpdMtpUS.dll
2010-04-30 23:52:54 ----A---- C:\Windows\system32\WpdConns.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\WPDSp.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\wpdshext.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\WpdMtp.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\wpd_ci.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2010-04-30 23:51:46 ----A---- C:\Windows\system32\UIAutomationCore.dll
2010-04-30 23:51:46 ----A---- C:\Windows\system32\oleaccrc.dll
2010-04-30 23:51:46 ----A---- C:\Windows\system32\oleacc.dll
2010-04-29 20:17:00 ----A---- C:\Windows\system32\gameux.dll
2010-04-29 20:16:56 ----A---- C:\Windows\system32\Apphlpdm.dll
2010-04-29 20:16:55 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2010-04-29 15:15:02 ----D---- C:\Windows\system32\eu-ES
2010-04-29 15:15:02 ----D---- C:\Windows\system32\ca-ES
2010-04-29 15:15:00 ----D---- C:\Windows\system32\vi-VN
2010-04-29 14:01:11 ----D---- C:\Windows\system32\EventProviders
2010-04-21 19:28:36 ----D---- C:\Program Files\Xilisoft
2010-04-20 22:08:42 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2010-04-20 22:08:38 ----A---- C:\Windows\system32\SLCExt.dll
2010-04-20 22:08:37 ----A---- C:\Windows\system32\SLsvc.exe
2010-04-20 22:08:30 ----A---- C:\Windows\system32\DevicePairingWizard.exe
2010-04-20 22:08:29 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll
2010-04-20 22:08:26 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2010-04-20 22:08:20 ----A---- C:\Windows\system32\mssrch.dll
2010-04-20 22:08:15 ----A---- C:\Windows\system32\tquery.dll
2010-04-20 22:08:12 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2010-04-20 22:08:09 ----A---- C:\Windows\system32\scavenge.dll
2010-04-20 22:08:07 ----A---- C:\Windows\system32\msi.dll
2010-04-20 22:08:05 ----A---- C:\Windows\system32\imapi2fs.dll
2010-04-20 22:08:03 ----A---- C:\Windows\system32\WscEapPr.dll
2010-04-20 22:08:03 ----A---- C:\Windows\system32\wcnwiz2.dll
2010-04-20 22:08:02 ----A---- C:\Windows\system32\sysmain.dll
2010-04-20 22:07:59 ----A---- C:\Windows\system32\icardagt.exe
2010-04-20 22:07:57 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2010-04-20 22:07:56 ----A---- C:\Windows\system32\EhStorShell.dll
2010-04-20 22:07:54 ----A---- C:\Windows\system32\spreview.exe
2010-04-20 22:07:54 ----A---- C:\Windows\system32\spinstall.exe
2010-04-20 22:07:53 ----A---- C:\Windows\system32\drmv2clt.dll
2010-04-20 22:07:51 ----A---- C:\Windows\system32\spwizui.dll
2010-04-20 22:07:51 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2010-04-20 22:07:49 ----A---- C:\Windows\system32\shell32.dll
2010-04-20 22:07:47 ----A---- C:\Windows\system32\p2psvc.dll
2010-04-20 22:07:46 ----A---- C:\Windows\system32\SearchIndexer.exe
2010-04-20 22:07:45 ----A---- C:\Windows\system32\mssvp.dll
2010-04-20 22:07:43 ----A---- C:\Windows\system32\mscoree.dll
2010-04-20 22:07:42 ----A---- C:\Windows\system32\mssphtb.dll
2010-04-20 22:07:42 ----A---- C:\Windows\system32\MSMPEG2VDEC.DLL
2010-04-20 22:07:41 ----A---- C:\Windows\system32\mssph.dll
2010-04-20 22:07:40 ----A---- C:\Windows\system32\imapi2.dll
2010-04-20 22:07:38 ----A---- C:\Windows\system32\sdohlp.dll
2010-04-20 22:07:37 ----A---- C:\Windows\system32\esent.dll
2010-04-20 22:07:36 ----A---- C:\Windows\system32\IMJP10K.DLL
2010-04-20 22:07:35 ----A---- C:\Windows\system32\DevicePairing.dll
2010-04-20 22:07:34 ----A---- C:\Windows\system32\sperror.dll
2010-04-20 22:07:33 ----A---- C:\Windows\system32\wevtsvc.dll
2010-04-20 22:07:33 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2010-04-20 22:07:33 ----A---- C:\Windows\system32\korwbrkr.dll
2010-04-20 22:07:32 ----A---- C:\Windows\system32\SLC.dll
2010-04-20 22:07:31 ----A---- C:\Windows\system32\msshsq.dll
2010-04-20 22:07:27 ----A---- C:\Windows\system32\msjet40.dll
2010-04-20 22:07:27 ----A---- C:\Windows\system32\MPSSVC.dll
2010-04-20 22:07:25 ----A---- C:\Windows\system32\Query.dll
2010-04-20 22:07:25 ----A---- C:\Windows\system32\qmgr.dll
2010-04-20 22:07:23 ----A---- C:\Windows\system32\msexch40.dll
2010-04-20 22:07:23 ----A---- C:\Windows\system32\diagperf.dll
2010-04-20 22:07:22 ----A---- C:\Windows\system32\P2PGraph.dll
2010-04-20 22:07:22 ----A---- C:\Windows\system32\IasMigReader.exe
2010-04-20 22:07:21 ----A---- C:\Windows\system32\ole32.dll
2010-04-20 22:07:21 ----A---- C:\Windows\system32\ntdll.dll
2010-04-20 22:07:20 ----A---- C:\Windows\system32\winload.exe
2010-04-20 22:07:20 ----A---- C:\Windows\system32\srchadmin.dll
2010-04-20 22:07:20 ----A---- C:\Windows\system32\mblctr.exe
2010-04-20 22:07:19 ----A---- C:\Windows\system32\uDWM.dll
2010-04-20 22:07:19 ----A---- C:\Windows\system32\mmc.exe
2010-04-20 22:07:19 ----A---- C:\Windows\system32\EncDec.dll
2010-04-20 22:07:19 ----A---- C:\Windows\system32\dfsr.exe
2010-04-20 22:07:18 ----A---- C:\Windows\system32\IasMigPlugin.dll
2010-04-20 22:07:17 ----A---- C:\Windows\system32\riched20.dll
2010-04-20 22:07:17 ----A---- C:\Windows\system32\fdBth.dll
2010-04-20 22:07:15 ----A---- C:\Windows\system32\RacEngn.dll
2010-04-20 22:07:15 ----A---- C:\Windows\system32\kernel32.dll
2010-04-20 22:07:14 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2010-04-20 22:07:14 ----A---- C:\Windows\system32\SearchFilterHost.exe
2010-04-20 22:07:14 ----A---- C:\Windows\system32\milcore.dll
2010-04-20 22:07:13 ----A---- C:\Windows\system32\EhStorAPI.dll
2010-04-20 22:07:13 ----A---- C:\Windows\system32\CertEnroll.dll
2010-04-20 22:07:12 ----A---- C:\Windows\system32\spoolss.dll
2010-04-20 22:07:12 ----A---- C:\Windows\system32\schedsvc.dll
2010-04-20 22:07:11 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2010-04-20 22:07:09 ----A---- C:\Windows\system32\AuxiliaryDisplayDriverLib.dll
2010-04-20 22:07:08 ----A---- C:\Windows\system32\msvcp60.dll
2010-04-20 22:07:08 ----A---- C:\Windows\system32\msjtes40.dll
2010-04-20 22:07:08 ----A---- C:\Windows\system32\gpedit.dll
2010-04-20 22:07:07 ----A---- C:\Windows\system32\infocardapi.dll
2010-04-20 22:07:05 ----A---- C:\Windows\system32\WinSAT.exe
2010-04-20 22:07:05 ----A---- C:\Windows\system32\es.dll
2010-04-20 22:07:04 ----A---- C:\Windows\system32\PresentationSettings.exe
2010-04-20 22:07:03 ----A---- C:\Windows\system32\Magnify.exe
2010-04-20 22:07:03 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2010-04-20 22:07:02 ----A---- C:\Windows\system32\mstext40.dll
2010-04-20 22:07:02 ----A---- C:\Windows\system32\advapi32.dll
2010-04-20 22:06:59 ----A---- C:\Windows\system32\WebClnt.dll
2010-04-20 22:06:58 ----A---- C:\Windows\system32\slwmi.dll
2010-04-20 22:06:58 ----A---- C:\Windows\system32\msexcl40.dll
2010-04-20 22:06:57 ----A---- C:\Windows\system32\msxbde40.dll
2010-04-20 22:06:57 ----A---- C:\Windows\system32\comsvcs.dll
2010-04-20 22:06:56 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
2010-04-20 22:06:54 ----A---- C:\Windows\system32\vssapi.dll
2010-04-20 22:06:53 ----A---- C:\Windows\system32\authui.dll
2010-04-20 22:06:51 ----A---- C:\Windows\system32\NetProjW.dll
2010-04-20 22:06:50 ----A---- C:\Windows\system32\PresentationHost.exe
2010-04-20 22:06:50 ----A---- C:\Windows\system32\msrepl40.dll
2010-04-20 22:06:49 ----A---- C:\Windows\system32\propsys.dll
2010-04-20 22:06:49 ----A---- C:\Windows\system32\newdev.dll
2010-04-20 22:06:48 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2010-04-20 22:06:48 ----A---- C:\Windows\system32\iasrecst.dll
2010-04-20 22:06:48 ----A---- C:\Windows\system32\gpsvc.dll
2010-04-20 22:06:48 ----A---- C:\Windows\system32\eudcedit.exe
2010-04-20 22:06:48 ----A---- C:\Windows\system32\crypt32.dll
2010-04-20 22:06:47 ----A---- C:\Windows\system32\rpcss.dll
2010-04-20 22:06:47 ----A---- C:\Windows\explorer.exe
2010-04-20 22:06:46 ----A---- C:\Windows\system32\setupapi.dll
2010-04-20 22:06:45 ----A---- C:\Windows\system32\mspbde40.dll
2010-04-20 22:06:45 ----A---- C:\Windows\system32\d3d9.dll
2010-04-20 22:06:43 ----A---- C:\Windows\system32\msltus40.dll
2010-04-20 22:06:43 ----A---- C:\Windows\system32\davclnt.dll
2010-04-20 22:06:42 ----A---- C:\Windows\system32\shlwapi.dll
2010-04-20 22:06:42 ----A---- C:\Windows\system32\mfc42.dll
2010-04-20 22:06:41 ----A---- C:\Windows\system32\msrd3x40.dll
2010-04-20 22:06:41 ----A---- C:\Windows\system32\EhStorPwdMgr.dll
2010-04-20 22:06:41 ----A---- C:\Windows\system32\EhStorAuthn.dll
2010-04-20 22:06:40 ----A---- C:\Windows\system32\msdtctm.dll
2010-04-20 22:06:39 ----A---- C:\Windows\system32\wevtapi.dll
2010-04-20 22:06:39 ----A---- C:\Windows\system32\photowiz.dll
2010-04-20 22:06:39 ----A---- C:\Windows\system32\nlhtml.dll
2010-04-20 22:06:39 ----A---- C:\Windows\system32\browseui.dll
2010-04-20 22:06:36 ----A---- C:\Windows\system32\user32.dll
2010-04-20 22:06:35 ----A---- C:\Windows\system32\samsrv.dll
2010-04-20 22:06:35 ----A---- C:\Windows\system32\ci.dll
2010-04-20 22:06:34 ----A---- C:\Windows\system32\win32spl.dll
2010-04-20 22:06:33 ----A---- C:\Windows\system32\WcnNetsh.dll
2010-04-20 22:06:33 ----A---- C:\Windows\system32\SLCommDlg.dll
2010-04-20 22:06:32 ----A---- C:\Windows\system32\oleaut32.dll
2010-04-20 22:06:31 ----A---- C:\Windows\system32\IKEEXT.DLL
2010-04-20 22:06:30 ----A---- C:\Windows\system32\netshell.dll
2010-04-20 22:06:30 ----A---- C:\Windows\system32\compcln.exe
2010-04-20 22:06:30 ----A---- C:\Windows\system32\apds.dll
2010-04-20 22:06:28 ----A---- C:\Windows\system32\xmlfilter.dll
2010-04-20 22:06:28 ----A---- C:\Windows\system32\mswstr10.dll
2010-04-20 22:06:28 ----A---- C:\Windows\system32\audiosrv.dll
2010-04-20 22:06:27 ----A---- C:\Windows\system32\msctf.dll
2010-04-20 22:06:27 ----A---- C:\Windows\system32\emdmgmt.dll
2010-04-20 22:06:26 ----A---- C:\Windows\system32\msvcrt.dll
2010-04-20 22:06:25 ----A---- C:\Windows\system32\VSSVC.exe
2010-04-20 22:06:25 ----A---- C:\Windows\system32\QAGENTRT.DLL
2010-04-20 22:06:25 ----A---- C:\Windows\system32\gdi32.dll
2010-04-20 22:06:24 ----A---- C:\Windows\system32\SLUI.exe
2010-04-20 22:06:24 ----A---- C:\Windows\system32\mfc42u.dll
2010-04-20 22:06:23 ----A---- C:\Windows\system32\eapphost.dll
2010-04-20 22:06:22 ----A---- C:\Windows\system32\sqlsrv32.dll
2010-04-20 22:06:22 ----A---- C:\Windows\system32\msrd2x40.dll
2010-04-20 22:06:20 ----A---- C:\Windows\system32\winresume.exe
2010-04-20 22:06:20 ----A---- C:\Windows\system32\propdefs.dll
Logfile of random's system information tool 1.07 (written by random/random)
Run by Zdena at 2010-05-09 16:34:09
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 177 GB (74%) free of 238 GB
Total RAM: 1919 MB (68% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:34:18, on 9.5.2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18904)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\ASUS\ASUS Live Update\ALU.exe
C:\Program Files\ASUS\Asus MultiFrame\MultiFrame.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.Exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\ICQ7.0\ICQ.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Sunbelt Software\Personal Firewall\SbPFCl.exe
C:\Windows\System32\mobsync.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Users\Zdena\Desktop\RSIT.exe
C:\Program Files\trend micro\Zdena.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.crawler.com/search/dispatche ... tbid=60446
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60446
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_custo ... TbId=60446
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60446
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://dnl.crawler.com/support/sa_custo ... TbId=60446
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WebTransBHO Class - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\ProgramData\LangSoft\WebIE.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\ProgramData\LangSoft\WebIE.dll
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [SpywareTerminatorUpdate] "C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"
O4 - HKCU\..\Run: [EPSON Stylus DX4400 Series] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE /FU "C:\Users\Zdena\AppData\Local\Temp\E_SDB61.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ7.0\ICQ.exe" silent loginmode=4
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\ProgramData\LangSoft\WebIE.dll
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files\ATK Hotkey\ASLDRSrv.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: SbPF.Launcher - Sunbelt Software, Inc. - C:\Program Files\Sunbelt Software\Personal Firewall\SbPFLnch.exe
O23 - Service: Sunbelt Personal Firewall 4 (SPF4) - Sunbelt Software, Inc. - C:\Program Files\Sunbelt Software\Personal Firewall\SbPFSvc.exe
O23 - Service: spmgr - Unknown owner - C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
--
End of file - 7721 bytes
======Scheduled tasks folder======
C:\Windows\tasks\User_Feed_Synchronization-{86640402-383E-4D0E-9B93-CBEAB4C57EAB}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\ProgramData\LangSoft\WebIE.dll [2010-03-27 520192]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre6\bin\ssv.dll [2010-03-27 321312]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-03-27 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\ProgramData\LangSoft\WebIE.dll [2010-03-27 520192]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SpywareTerminator"=C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe [2010-04-14 2176512]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-02-15 4390912]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2010-03-17 421888]
"avast5"=C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe [2010-05-06 2815192]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-11 1233920]
""= []
"SpywareTerminatorUpdate"=C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe [2010-03-27 3037696]
"EPSON Stylus DX4400 Series"=C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE [2007-03-01 180736]
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-19 125952]
"ICQ"=C:\Program Files\ICQ7.0\ICQ.exe [2010-03-28 133368]
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
""= []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Camera ScreenSaver]
C:\Windows\ASScrProlog.exe [2010-03-27 37232]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\ASScrPro.exe [2010-03-27 33136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSTPE]
C:\Windows\system32\ASUSTPE.exe [2006-12-12 106496]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATKMEDIA]
C:\Program Files\ASUS\ATK Media\DMEDIA.EXE [2006-11-02 61440]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON Stylus DX4400 Series]
C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE [2007-03-01 180736]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON Stylus DX4400 Series (kopie 1)]
C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE [2007-03-01 180736]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2008-06-09 2363392]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PowerForPhone]
C:\Program Files\PowerForPhone\PowerForPhone.exe [2007-06-26 778240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Windows\RtHDVCpl.exe [2007-02-15 4390912]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SMSERIAL]
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [2007-09-03 630784]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2006-11-10 90112]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Java\jre6\bin\jusched.exe [2010-03-27 149280]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-12-06 1029416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Uninstall Adobe Download Manager]
C:\Program Files\NOS\bin\getPlus_Helper.dll [2010-03-22 68000]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Defender]
C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth Manager.lnk]
C:\PROGRA~1\Toshiba\BLUETO~1\TosBtMng.exe [2007-01-18 2752512]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Zdena^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^CCC.lnk]
C:\PROGRA~1\ATITEC~1\ATI.ACE\CORE-S~1\CCC.exe [2006-09-29 49152]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLUA"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2010-05-09 16:34:09 ----D---- C:\rsit
2010-05-09 16:34:09 ----D---- C:\Program Files\trend micro
2010-05-09 16:15:43 ----A---- C:\Windows\zip.exe
2010-05-09 16:15:43 ----A---- C:\Windows\SWSC.exe
2010-05-09 16:15:43 ----A---- C:\Windows\SWREG.exe
2010-05-09 16:15:43 ----A---- C:\Windows\sed.exe
2010-05-09 16:15:43 ----A---- C:\Windows\PEV.exe
2010-05-09 16:15:43 ----A---- C:\Windows\NIRCMD.exe
2010-05-09 16:15:43 ----A---- C:\Windows\MBR.exe
2010-05-09 16:15:43 ----A---- C:\Windows\grep.exe
2010-05-09 16:15:29 ----D---- C:\Windows\ERDNT
2010-05-09 16:14:58 ----D---- C:\Qoobox
2010-05-09 16:14:40 ----A---- C:\Windows\SWXCACLS.exe
2010-05-09 14:08:32 ----D---- C:\Program Files\Sunbelt Software
2010-05-09 14:05:46 ----A---- C:\Windows\system32\aswBoot.exe
2010-05-09 14:05:32 ----D---- C:\ProgramData\Alwil Software
2010-05-09 14:05:32 ----D---- C:\Program Files\Alwil Software
2010-05-03 23:07:55 ----D---- C:\Users\Zdena\AppData\Roaming\WinRAR
2010-05-03 23:07:18 ----D---- C:\Program Files\WinRAR
2010-05-02 12:00:13 ----D---- C:\ProgramData\Apple Computer
2010-05-02 12:00:13 ----D---- C:\Program Files\QuickTime
2010-05-02 11:59:13 ----D---- C:\Program Files\Common Files\Apple
2010-05-02 11:58:48 ----D---- C:\ProgramData\Apple
2010-05-02 11:58:48 ----D---- C:\Program Files\Apple Software Update
2010-05-01 09:54:39 ----D---- C:\Program Files\Windows Portable Devices
2010-04-30 23:54:09 ----A---- C:\Windows\system32\UIAnimation.dll
2010-04-30 23:54:08 ----A---- C:\Windows\system32\UIRibbonRes.dll
2010-04-30 23:54:08 ----A---- C:\Windows\system32\UIRibbon.dll
2010-04-30 23:53:40 ----A---- C:\Windows\system32\WMPhoto.dll
2010-04-30 23:53:40 ----A---- C:\Windows\system32\cdd.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\XpsRasterService.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\XpsPrint.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\WindowsCodecs.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2010-04-30 23:53:39 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\OpcServices.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\dxdiagn.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\dxdiag.exe
2010-04-30 23:53:39 ----A---- C:\Windows\system32\d3d10warp.dll
2010-04-30 23:53:39 ----A---- C:\Windows\system32\d2d1.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\xpsservices.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\FntCache.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\dxgi.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\DWrite.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\d3d11.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\d3d10level9.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\d3d10core.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\d3d10_1core.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\d3d10_1.dll
2010-04-30 23:53:38 ----A---- C:\Windows\system32\d3d10.dll
2010-04-30 23:53:01 ----A---- C:\Windows\system32\WPDShextAutoplay.exe
2010-04-30 23:53:01 ----A---- C:\Windows\system32\wpdbusenum.dll
2010-04-30 23:53:01 ----A---- C:\Windows\system32\BthMtpContextHandler.dll
2010-04-30 23:52:57 ----A---- C:\Windows\system32\PortableDeviceConnectApi.dll
2010-04-30 23:52:54 ----A---- C:\Windows\system32\WpdMtpUS.dll
2010-04-30 23:52:54 ----A---- C:\Windows\system32\WpdConns.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\WPDSp.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\wpdshext.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\WpdMtp.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\wpd_ci.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2010-04-30 23:52:53 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2010-04-30 23:51:46 ----A---- C:\Windows\system32\UIAutomationCore.dll
2010-04-30 23:51:46 ----A---- C:\Windows\system32\oleaccrc.dll
2010-04-30 23:51:46 ----A---- C:\Windows\system32\oleacc.dll
2010-04-29 20:17:00 ----A---- C:\Windows\system32\gameux.dll
2010-04-29 20:16:56 ----A---- C:\Windows\system32\Apphlpdm.dll
2010-04-29 20:16:55 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2010-04-29 15:15:02 ----D---- C:\Windows\system32\eu-ES
2010-04-29 15:15:02 ----D---- C:\Windows\system32\ca-ES
2010-04-29 15:15:00 ----D---- C:\Windows\system32\vi-VN
2010-04-29 14:01:11 ----D---- C:\Windows\system32\EventProviders
2010-04-21 19:28:36 ----D---- C:\Program Files\Xilisoft
2010-04-20 22:08:42 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2010-04-20 22:08:38 ----A---- C:\Windows\system32\SLCExt.dll
2010-04-20 22:08:37 ----A---- C:\Windows\system32\SLsvc.exe
2010-04-20 22:08:30 ----A---- C:\Windows\system32\DevicePairingWizard.exe
2010-04-20 22:08:29 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll
2010-04-20 22:08:26 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2010-04-20 22:08:20 ----A---- C:\Windows\system32\mssrch.dll
2010-04-20 22:08:15 ----A---- C:\Windows\system32\tquery.dll
2010-04-20 22:08:12 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2010-04-20 22:08:09 ----A---- C:\Windows\system32\scavenge.dll
2010-04-20 22:08:07 ----A---- C:\Windows\system32\msi.dll
2010-04-20 22:08:05 ----A---- C:\Windows\system32\imapi2fs.dll
2010-04-20 22:08:03 ----A---- C:\Windows\system32\WscEapPr.dll
2010-04-20 22:08:03 ----A---- C:\Windows\system32\wcnwiz2.dll
2010-04-20 22:08:02 ----A---- C:\Windows\system32\sysmain.dll
2010-04-20 22:07:59 ----A---- C:\Windows\system32\icardagt.exe
2010-04-20 22:07:57 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2010-04-20 22:07:56 ----A---- C:\Windows\system32\EhStorShell.dll
2010-04-20 22:07:54 ----A---- C:\Windows\system32\spreview.exe
2010-04-20 22:07:54 ----A---- C:\Windows\system32\spinstall.exe
2010-04-20 22:07:53 ----A---- C:\Windows\system32\drmv2clt.dll
2010-04-20 22:07:51 ----A---- C:\Windows\system32\spwizui.dll
2010-04-20 22:07:51 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2010-04-20 22:07:49 ----A---- C:\Windows\system32\shell32.dll
2010-04-20 22:07:47 ----A---- C:\Windows\system32\p2psvc.dll
2010-04-20 22:07:46 ----A---- C:\Windows\system32\SearchIndexer.exe
2010-04-20 22:07:45 ----A---- C:\Windows\system32\mssvp.dll
2010-04-20 22:07:43 ----A---- C:\Windows\system32\mscoree.dll
2010-04-20 22:07:42 ----A---- C:\Windows\system32\mssphtb.dll
2010-04-20 22:07:42 ----A---- C:\Windows\system32\MSMPEG2VDEC.DLL
2010-04-20 22:07:41 ----A---- C:\Windows\system32\mssph.dll
2010-04-20 22:07:40 ----A---- C:\Windows\system32\imapi2.dll
2010-04-20 22:07:38 ----A---- C:\Windows\system32\sdohlp.dll
2010-04-20 22:07:37 ----A---- C:\Windows\system32\esent.dll
2010-04-20 22:07:36 ----A---- C:\Windows\system32\IMJP10K.DLL
2010-04-20 22:07:35 ----A---- C:\Windows\system32\DevicePairing.dll
2010-04-20 22:07:34 ----A---- C:\Windows\system32\sperror.dll
2010-04-20 22:07:33 ----A---- C:\Windows\system32\wevtsvc.dll
2010-04-20 22:07:33 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2010-04-20 22:07:33 ----A---- C:\Windows\system32\korwbrkr.dll
2010-04-20 22:07:32 ----A---- C:\Windows\system32\SLC.dll
2010-04-20 22:07:31 ----A---- C:\Windows\system32\msshsq.dll
2010-04-20 22:07:27 ----A---- C:\Windows\system32\msjet40.dll
2010-04-20 22:07:27 ----A---- C:\Windows\system32\MPSSVC.dll
2010-04-20 22:07:25 ----A---- C:\Windows\system32\Query.dll
2010-04-20 22:07:25 ----A---- C:\Windows\system32\qmgr.dll
2010-04-20 22:07:23 ----A---- C:\Windows\system32\msexch40.dll
2010-04-20 22:07:23 ----A---- C:\Windows\system32\diagperf.dll
2010-04-20 22:07:22 ----A---- C:\Windows\system32\P2PGraph.dll
2010-04-20 22:07:22 ----A---- C:\Windows\system32\IasMigReader.exe
2010-04-20 22:07:21 ----A---- C:\Windows\system32\ole32.dll
2010-04-20 22:07:21 ----A---- C:\Windows\system32\ntdll.dll
2010-04-20 22:07:20 ----A---- C:\Windows\system32\winload.exe
2010-04-20 22:07:20 ----A---- C:\Windows\system32\srchadmin.dll
2010-04-20 22:07:20 ----A---- C:\Windows\system32\mblctr.exe
2010-04-20 22:07:19 ----A---- C:\Windows\system32\uDWM.dll
2010-04-20 22:07:19 ----A---- C:\Windows\system32\mmc.exe
2010-04-20 22:07:19 ----A---- C:\Windows\system32\EncDec.dll
2010-04-20 22:07:19 ----A---- C:\Windows\system32\dfsr.exe
2010-04-20 22:07:18 ----A---- C:\Windows\system32\IasMigPlugin.dll
2010-04-20 22:07:17 ----A---- C:\Windows\system32\riched20.dll
2010-04-20 22:07:17 ----A---- C:\Windows\system32\fdBth.dll
2010-04-20 22:07:15 ----A---- C:\Windows\system32\RacEngn.dll
2010-04-20 22:07:15 ----A---- C:\Windows\system32\kernel32.dll
2010-04-20 22:07:14 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2010-04-20 22:07:14 ----A---- C:\Windows\system32\SearchFilterHost.exe
2010-04-20 22:07:14 ----A---- C:\Windows\system32\milcore.dll
2010-04-20 22:07:13 ----A---- C:\Windows\system32\EhStorAPI.dll
2010-04-20 22:07:13 ----A---- C:\Windows\system32\CertEnroll.dll
2010-04-20 22:07:12 ----A---- C:\Windows\system32\spoolss.dll
2010-04-20 22:07:12 ----A---- C:\Windows\system32\schedsvc.dll
2010-04-20 22:07:11 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2010-04-20 22:07:09 ----A---- C:\Windows\system32\AuxiliaryDisplayDriverLib.dll
2010-04-20 22:07:08 ----A---- C:\Windows\system32\msvcp60.dll
2010-04-20 22:07:08 ----A---- C:\Windows\system32\msjtes40.dll
2010-04-20 22:07:08 ----A---- C:\Windows\system32\gpedit.dll
2010-04-20 22:07:07 ----A---- C:\Windows\system32\infocardapi.dll
2010-04-20 22:07:05 ----A---- C:\Windows\system32\WinSAT.exe
2010-04-20 22:07:05 ----A---- C:\Windows\system32\es.dll
2010-04-20 22:07:04 ----A---- C:\Windows\system32\PresentationSettings.exe
2010-04-20 22:07:03 ----A---- C:\Windows\system32\Magnify.exe
2010-04-20 22:07:03 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2010-04-20 22:07:02 ----A---- C:\Windows\system32\mstext40.dll
2010-04-20 22:07:02 ----A---- C:\Windows\system32\advapi32.dll
2010-04-20 22:06:59 ----A---- C:\Windows\system32\WebClnt.dll
2010-04-20 22:06:58 ----A---- C:\Windows\system32\slwmi.dll
2010-04-20 22:06:58 ----A---- C:\Windows\system32\msexcl40.dll
2010-04-20 22:06:57 ----A---- C:\Windows\system32\msxbde40.dll
2010-04-20 22:06:57 ----A---- C:\Windows\system32\comsvcs.dll
2010-04-20 22:06:56 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
2010-04-20 22:06:54 ----A---- C:\Windows\system32\vssapi.dll
2010-04-20 22:06:53 ----A---- C:\Windows\system32\authui.dll
2010-04-20 22:06:51 ----A---- C:\Windows\system32\NetProjW.dll
2010-04-20 22:06:50 ----A---- C:\Windows\system32\PresentationHost.exe
2010-04-20 22:06:50 ----A---- C:\Windows\system32\msrepl40.dll
2010-04-20 22:06:49 ----A---- C:\Windows\system32\propsys.dll
2010-04-20 22:06:49 ----A---- C:\Windows\system32\newdev.dll
2010-04-20 22:06:48 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2010-04-20 22:06:48 ----A---- C:\Windows\system32\iasrecst.dll
2010-04-20 22:06:48 ----A---- C:\Windows\system32\gpsvc.dll
2010-04-20 22:06:48 ----A---- C:\Windows\system32\eudcedit.exe
2010-04-20 22:06:48 ----A---- C:\Windows\system32\crypt32.dll
2010-04-20 22:06:47 ----A---- C:\Windows\system32\rpcss.dll
2010-04-20 22:06:47 ----A---- C:\Windows\explorer.exe
2010-04-20 22:06:46 ----A---- C:\Windows\system32\setupapi.dll
2010-04-20 22:06:45 ----A---- C:\Windows\system32\mspbde40.dll
2010-04-20 22:06:45 ----A---- C:\Windows\system32\d3d9.dll
2010-04-20 22:06:43 ----A---- C:\Windows\system32\msltus40.dll
2010-04-20 22:06:43 ----A---- C:\Windows\system32\davclnt.dll
2010-04-20 22:06:42 ----A---- C:\Windows\system32\shlwapi.dll
2010-04-20 22:06:42 ----A---- C:\Windows\system32\mfc42.dll
2010-04-20 22:06:41 ----A---- C:\Windows\system32\msrd3x40.dll
2010-04-20 22:06:41 ----A---- C:\Windows\system32\EhStorPwdMgr.dll
2010-04-20 22:06:41 ----A---- C:\Windows\system32\EhStorAuthn.dll
2010-04-20 22:06:40 ----A---- C:\Windows\system32\msdtctm.dll
2010-04-20 22:06:39 ----A---- C:\Windows\system32\wevtapi.dll
2010-04-20 22:06:39 ----A---- C:\Windows\system32\photowiz.dll
2010-04-20 22:06:39 ----A---- C:\Windows\system32\nlhtml.dll
2010-04-20 22:06:39 ----A---- C:\Windows\system32\browseui.dll
2010-04-20 22:06:36 ----A---- C:\Windows\system32\user32.dll
2010-04-20 22:06:35 ----A---- C:\Windows\system32\samsrv.dll
2010-04-20 22:06:35 ----A---- C:\Windows\system32\ci.dll
2010-04-20 22:06:34 ----A---- C:\Windows\system32\win32spl.dll
2010-04-20 22:06:33 ----A---- C:\Windows\system32\WcnNetsh.dll
2010-04-20 22:06:33 ----A---- C:\Windows\system32\SLCommDlg.dll
2010-04-20 22:06:32 ----A---- C:\Windows\system32\oleaut32.dll
2010-04-20 22:06:31 ----A---- C:\Windows\system32\IKEEXT.DLL
2010-04-20 22:06:30 ----A---- C:\Windows\system32\netshell.dll
2010-04-20 22:06:30 ----A---- C:\Windows\system32\compcln.exe
2010-04-20 22:06:30 ----A---- C:\Windows\system32\apds.dll
2010-04-20 22:06:28 ----A---- C:\Windows\system32\xmlfilter.dll
2010-04-20 22:06:28 ----A---- C:\Windows\system32\mswstr10.dll
2010-04-20 22:06:28 ----A---- C:\Windows\system32\audiosrv.dll
2010-04-20 22:06:27 ----A---- C:\Windows\system32\msctf.dll
2010-04-20 22:06:27 ----A---- C:\Windows\system32\emdmgmt.dll
2010-04-20 22:06:26 ----A---- C:\Windows\system32\msvcrt.dll
2010-04-20 22:06:25 ----A---- C:\Windows\system32\VSSVC.exe
2010-04-20 22:06:25 ----A---- C:\Windows\system32\QAGENTRT.DLL
2010-04-20 22:06:25 ----A---- C:\Windows\system32\gdi32.dll
2010-04-20 22:06:24 ----A---- C:\Windows\system32\SLUI.exe
2010-04-20 22:06:24 ----A---- C:\Windows\system32\mfc42u.dll
2010-04-20 22:06:23 ----A---- C:\Windows\system32\eapphost.dll
2010-04-20 22:06:22 ----A---- C:\Windows\system32\sqlsrv32.dll
2010-04-20 22:06:22 ----A---- C:\Windows\system32\msrd2x40.dll
2010-04-20 22:06:20 ----A---- C:\Windows\system32\winresume.exe
2010-04-20 22:06:20 ----A---- C:\Windows\system32\propdefs.dll