Detekovan GASF, TR/Agent.18081, TR/PSW.Fignotok.B.11,
Napsal: 22 srp 2010 11:32
Zdravim Stopzilla detekovala GASF
AVira: TR/Agent.18081, TR/PSW.Fignotok.B.11, BDS/Hupigon.Gen
Zkuste prosim poradit, diky.
Log z Trend Micro HijackThis v2.0.4 je too long, takze ho vkladam na dvakrat
Janek
Logfile of random's system information tool 1.08 (written by random/random)
Run by Janek at 2010-08-22 12:24:43
Microsoft Windows XP Professional Service Pack 3
System drive C: has 4 GB (18%) free of 20 GB
Total RAM: 1022 MB (39% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:24:47, on 22.8.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\iS3\Anti-Spyware\SZServer.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Rainlendar2\Rainlendar2.exe
C:\WINDOWS\system32\devldr32.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
C:\Documents and Settings\Janek\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Janek\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Janek\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\STOPzilla!\STOPzilla.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
C:\Program Files\Avira\AntiVir Desktop\avcenter.exe
C:\Documents and Settings\Janek\My Documents\Downloads\RSIT.exe
C:\Program Files\trend micro\Janek.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: STOPzilla Browser Helper Object - {E3215F20-3212-11D6-9F8B-00D0B743919D} - C:\Program Files\STOPzilla!\SZIEBHO.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb04.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Janek\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Rainlendar2] C:\Program Files\Rainlendar2\Rainlendar2.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O9 - Extra button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: STOPzilla Service (szserver) - iS3, Inc. - C:\Program Files\Common Files\iS3\Anti-Spyware\SZServer.exe
--
End of file - 5469 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1614895754-1770027372-682003330-1004Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1614895754-1770027372-682003330-1004UA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-06-19 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08 804136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-08-07 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E3215F20-3212-11D6-9F8B-00D0B743919D}]
STOPzilla Browser Helper Object - C:\Program Files\STOPzilla!\SZIEBHO.dll [2010-05-17 247232]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-08-07 79648]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-05-14 248552]
"HPDJ Taskbar Utility"=C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb04.exe [2001-11-19 196608]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-06-20 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-06-09 976832]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2005-02-24 5537792]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"Google Update"=C:\Documents and Settings\Janek\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2010-08-07 136176]
"Rainlendar2"=C:\Program Files\Rainlendar2\Rainlendar2.exe [2010-07-11 2199040]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe"="C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe:*:Enabled:Nokia Ovi Suite 2"
"C:\Program Files\Common Files\Nokia\Service Layer\A\nsl_host_process.exe"="C:\Program Files\Common Files\Nokia\Service Layer\A\nsl_host_process.exe:*:Enabled:Nokia Service Layer Host Process "
"C:\Program Files\Nokia\Nokia Software Updater\nsu_ui_client.exe"="C:\Program Files\Nokia\Nokia Software Updater\nsu_ui_client.exe:*:Enabled:Nokia Software Updater"
"C:\Program Files\Java\jre6\launch4j-tmp\frd.exe"="C:\Program Files\Java\jre6\launch4j-tmp\frd.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
======List of files/folders created in the last 1 months======
2010-08-22 12:16:13 ----D---- C:\Program Files\trend micro
2010-08-22 12:16:12 ----D---- C:\rsit
2010-08-22 12:15:26 ----D---- C:\WINDOWS\LastGood
2010-08-22 10:23:50 ----D---- C:\Documents and Settings\Janek\Application Data\Malwarebytes
2010-08-22 10:23:43 ----A---- C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2010-08-22 10:23:42 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2010-08-22 10:23:42 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2010-08-22 10:23:41 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2010-08-22 08:45:05 ----D---- C:\Documents and Settings\All Users\Application Data\SITEguard
2010-08-22 08:44:13 ----D---- C:\Program Files\STOPzilla!
2010-08-22 08:44:12 ----D---- C:\Program Files\Common Files\iS3
2010-08-22 08:44:11 ----D---- C:\Documents and Settings\All Users\Application Data\STOPzilla!
2010-08-21 23:28:02 ----D---- C:\Documents and Settings\Janek\Application Data\StarDict
2010-08-21 11:36:01 ----D---- C:\Program Files\StarDict
2010-08-21 11:35:47 ----D---- C:\Program Files\Common Files\GTK
2010-08-20 15:05:33 ----A---- C:\WINDOWS\system32\CoreAAC-uninstall.exe
2010-08-16 08:31:33 ----D---- C:\Documents and Settings\Janek\Application Data\Thinstall
2010-08-15 12:32:18 ----D---- C:\Documents and Settings\All Users\Application Data\WinZip
2010-08-15 12:32:14 ----D---- C:\Program Files\WinZip
2010-08-14 09:19:31 ----D---- C:\Program Files\PhotoFiltre
2010-08-14 09:09:29 ----D---- C:\WINDOWS\Sun
2010-08-13 16:55:25 ----D---- C:\Program Files\rajce
2010-08-11 22:15:33 ----D---- C:\Documents and Settings\All Users\Application Data\nView_Profiles
2010-08-11 05:09:03 ----D---- C:\Documents and Settings\Janek\Application Data\Avira
2010-08-09 21:32:18 ----D---- C:\Documents and Settings\Janek\Application Data\Help
2010-08-08 23:49:54 ----D---- C:\Documents and Settings\Janek\Application Data\skypePM
2010-08-08 23:41:06 ----D---- C:\Documents and Settings\Janek\Application Data\Skype
2010-08-08 22:22:13 ----D---- C:\Program Files\Common Files\Skype
2010-08-08 22:22:10 ----RD---- C:\Program Files\Skype
2010-08-08 22:22:07 ----D---- C:\Documents and Settings\All Users\Application Data\Skype
2010-08-08 14:07:06 ----D---- C:\Program Files\Vypinac
2010-08-08 14:01:36 ----D---- C:\Documents and Settings\Janek\Application Data\VitySoft
2010-08-08 14:01:29 ----D---- C:\Program Files\FreeRapid-0.83u1
2010-08-08 13:51:43 ----D---- C:\Documents and Settings\Janek\Application Data\OpenOffice.org
2010-08-08 13:37:41 ----D---- C:\Program Files\OpenOffice.org 3
2010-08-08 13:23:34 ----D---- C:\Program Files\Cell Phone Manager
2010-08-08 13:10:30 ----D---- C:\WINDOWS\system32\appmgmt
2010-08-08 13:03:32 ----D---- C:\Documents and Settings\All Users\Application Data\Nokia
2010-08-08 13:01:50 ----N---- C:\WINDOWS\system32\spmsg.dll
2010-08-08 13:01:43 ----HDC---- C:\WINDOWS\$NtUninstallWudf01009$
2010-08-08 12:46:46 ----D---- C:\Program Files\PC Connectivity Solution
2010-08-08 12:46:30 ----A---- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys
2010-08-08 12:46:29 ----A---- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys
2010-08-08 12:46:28 ----A---- C:\WINDOWS\system32\nmwcdcocls.dll
2010-08-08 12:46:28 ----A---- C:\WINDOWS\system32\drivers\ccdcmbo.sys
2010-08-08 12:46:28 ----A---- C:\WINDOWS\system32\drivers\ccdcmb.sys
2010-08-08 12:46:27 ----A---- C:\WINDOWS\system32\wdfcoinstaller01009.dll
2010-08-08 12:45:44 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2010-08-08 12:45:14 ----D---- C:\WINDOWS\system32\LogFiles
2010-08-08 12:45:14 ----D---- C:\WINDOWS\system32\drivers\UMDF
2010-08-08 12:45:06 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2010-08-08 12:37:05 ----D---- C:\Documents and Settings\All Users\Application Data\NokiaInstallerCache
2010-08-08 12:31:10 ----A---- C:\WINDOWS\system32\drivers\usbser.sys
2010-08-08 12:30:30 ----D---- C:\Documents and Settings\Janek\Application Data\PC Suite
2010-08-08 12:30:30 ----D---- C:\Documents and Settings\Janek\Application Data\Nokia
2010-08-08 12:30:28 ----D---- C:\Documents and Settings\All Users\Application Data\PC Suite
2010-08-08 12:14:50 ----D---- C:\Program Files\Common Files\PCSuite
2010-08-08 12:14:44 ----D---- C:\Program Files\Common Files\Nokia
2010-08-08 12:14:38 ----D---- C:\Program Files\DIFX
2010-08-08 12:14:36 ----A---- C:\WINDOWS\system32\drivers\pccsmcfd.sys
2010-08-08 12:14:21 ----N---- C:\WINDOWS\system32\spmsgXP_2k3.dll
2010-08-08 12:14:17 ----HDC---- C:\WINDOWS\$NtUninstallWdf01009$
2010-08-08 12:09:04 ----D---- C:\Program Files\Nokia
2010-08-08 12:09:04 ----A---- C:\WINDOWS\system32\nmwcdcls.dll
2010-08-08 11:53:25 ----D---- C:\Documents and Settings\All Users\Application Data\Installations
2010-08-08 10:12:42 ----D---- C:\Documents and Settings\Janek\Application Data\esmska
2010-08-08 10:12:41 ----HD---- C:\Program Files\InstallJammer Registry
2010-08-08 10:12:31 ----D---- C:\Program Files\Esmska
2010-08-08 10:08:26 ----D---- C:\WINDOWS\Prefetch
2010-08-08 02:44:11 ----HDC---- C:\WINDOWS\$NtUninstallKB980232$
2010-08-08 02:44:03 ----HDC---- C:\WINDOWS\$NtUninstallKB980218$
2010-08-08 02:43:52 ----HDC---- C:\WINDOWS\$NtUninstallKB979683$
2010-08-08 02:43:43 ----HDC---- C:\WINDOWS\$NtUninstallKB979559$
2010-08-08 02:43:35 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2010-08-08 02:43:27 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2010-08-08 02:43:20 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2010-08-08 02:43:11 ----HDC---- C:\WINDOWS\$NtUninstallKB978601$
2010-08-08 02:43:01 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2010-08-08 02:42:53 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2010-08-08 02:42:44 ----HDC---- C:\WINDOWS\$NtUninstallKB978037$
2010-08-08 02:42:34 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2010-08-08 02:42:23 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2010-08-08 02:42:14 ----HDC---- C:\WINDOWS\$NtUninstallKB975562$
2010-08-08 02:42:05 ----HDC---- C:\WINDOWS\$NtUninstallKB975561$
2010-08-08 02:41:55 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2010-08-08 02:41:46 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-08-08 02:41:37 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2010-08-08 02:41:28 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-08-08 02:41:20 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-08-08 02:41:11 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-08-08 02:41:02 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-08-08 02:40:52 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2010-08-08 02:40:44 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2010-08-08 02:40:36 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2010-08-08 02:40:28 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2010-08-08 02:40:20 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-08-08 02:40:12 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2010-08-08 02:40:04 ----HDC---- C:\WINDOWS\$NtUninstallKB971468$
2010-08-08 02:39:54 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2010-08-08 02:39:46 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-08-08 02:39:35 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-08-08 02:39:25 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2010-08-08 02:39:14 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2010-08-08 02:39:05 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2010-08-08 02:38:55 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2010-08-08 02:38:46 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2010-08-08 02:38:37 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2010-08-08 02:38:27 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2010-08-08 02:38:19 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-08-08 02:38:09 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2010-08-08 02:38:00 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2010-08-08 02:37:44 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2010-08-08 02:37:32 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-08-08 02:37:21 ----HDC---- C:\WINDOWS\$NtUninstallKB973687_1$
2010-08-08 02:37:13 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2010-08-08 02:37:03 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2010-08-08 02:36:54 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2010-08-08 02:36:43 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2010-08-08 02:36:33 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2010-08-08 02:36:24 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2010-08-08 02:36:12 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2010-08-08 02:36:05 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2010-08-08 02:35:54 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2010-08-08 02:35:44 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2010-08-08 02:35:35 ----HDC---- C:\WINDOWS\$NtUninstallKB915800-v4$
2010-08-08 02:35:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2010-08-08 02:31:23 ----D---- C:\WINDOWS\system32\scripting
2010-08-08 02:31:23 ----D---- C:\WINDOWS\l2schemas
2010-08-08 02:31:22 ----D---- C:\WINDOWS\system32\en
2010-08-08 02:31:22 ----D---- C:\WINDOWS\system32\bits
2010-08-08 02:26:38 ----D---- C:\WINDOWS\network diagnostic
2010-08-08 02:20:36 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2010-08-08 00:19:52 ----HDC---- C:\WINDOWS\$NtUninstallKB980218_0$
2010-08-08 00:19:41 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2_0$
2010-08-08 00:19:28 ----HDC---- C:\WINDOWS\$NtUninstallKB952954_0$
2010-08-08 00:19:06 ----HDC---- C:\WINDOWS\$NtUninstallKB959426_0$
2010-08-08 00:18:49 ----HDC---- C:\WINDOWS\$NtUninstallKB946648_0$
2010-08-08 00:18:33 ----HDC---- C:\WINDOWS\$NtUninstallKB956803_0$
2010-08-08 00:18:13 ----HDC---- C:\WINDOWS\$NtUninstallKB960859_0$
2010-08-08 00:17:59 ----HDC---- C:\WINDOWS\$NtUninstallKB971468_0$
2010-08-08 00:17:25 ----HDC---- C:\WINDOWS\$NtUninstallKB979683_0$
2010-08-08 00:17:03 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2010-08-08 00:16:53 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2010-08-08 00:16:40 ----HDC---- C:\WINDOWS\$NtUninstallKB980195$
2010-08-08 00:16:28 ----HDC---- C:\WINDOWS\$NtUninstallKB980232_0$
2010-08-08 00:16:10 ----HDC---- C:\WINDOWS\$NtUninstallKB981350$
2010-08-08 00:15:47 ----HDC---- C:\WINDOWS\$NtUninstallKB955759_0$
2010-08-08 00:15:21 ----HDC---- C:\WINDOWS\$NtUninstallKB974318_0$
2010-08-08 00:15:06 ----HDC---- C:\WINDOWS\$NtUninstallKB969059_0$
2010-08-08 00:14:53 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593_0$
2010-08-08 00:14:40 ----HDC---- C:\WINDOWS\$NtUninstallKB950974_0$
2010-08-08 00:14:27 ----HDC---- C:\WINDOWS\$NtUninstallKB978037_0$
2010-08-08 00:14:13 ----HDC---- C:\WINDOWS\$NtUninstallKB975713_0$
2010-08-08 00:14:01 ----HDC---- C:\WINDOWS\$NtUninstallKB971657_0$
2010-08-08 00:13:47 ----HDC---- C:\WINDOWS\$NtUninstallKB978338_0$
2010-08-08 00:13:35 ----HDC---- C:\WINDOWS\$NtUninstallKB960225_0$
2010-08-08 00:13:23 ----HDC---- C:\WINDOWS\$NtUninstallKB972270_0$
2010-08-08 00:10:06 ----N---- C:\WINDOWS\system32\MRT.exe
2010-08-08 00:09:49 ----HDC---- C:\WINDOWS\$NtUninstallKB974112_0$
2010-08-08 00:08:53 ----HDC---- C:\WINDOWS\$NtUninstallKB956572_0$
2010-08-08 00:08:29 ----HDC---- C:\WINDOWS\$NtUninstallKB956844_0$
2010-08-08 00:08:18 ----HDC---- C:\WINDOWS\$NtUninstallKB961501_0$
2010-08-08 00:08:10 ----HDC---- C:\WINDOWS\$NtUninstallKB975561_0$
2010-08-08 00:08:03 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2010-08-08 00:07:58 ----HDC---- C:\WINDOWS\$NtUninstallKB973869_0$
2010-08-08 00:07:51 ----HDC---- C:\WINDOWS\$NtUninstallKB975025_0$
2010-08-08 00:07:43 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9L$
2010-08-08 00:07:35 ----HDC---- C:\WINDOWS\$NtUninstallKB952004_0$
2010-08-08 00:07:27 ----HDC---- C:\WINDOWS\$NtUninstallKB974571_0$
2010-08-08 00:07:19 ----HDC---- C:\WINDOWS\$NtUninstallKB975560_0$
2010-08-08 00:07:10 ----HDC---- C:\WINDOWS\$NtUninstallKB973507_0$
2010-08-08 00:07:03 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2010-08-08 00:06:55 ----HDC---- C:\WINDOWS\$NtUninstallKB973687_0$
2010-08-08 00:06:48 ----HDC---- C:\WINDOWS\$NtUninstallKB950762_0$
2010-08-08 00:06:39 ----HDC---- C:\WINDOWS\$NtUninstallKB981793$
2010-08-08 00:06:34 ----HDC---- C:\WINDOWS\$NtUninstallKB978601_0$
2010-08-08 00:06:26 ----HDC---- C:\WINDOWS\$NtUninstallKB979559_0$
2010-08-08 00:06:20 ----HDC---- C:\WINDOWS\$NtUninstallKB952287_0$
2010-08-08 00:06:12 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-08-08 00:05:59 ----HDC---- C:\WINDOWS\$NtUninstallKB967715_0$
2010-08-08 00:05:52 ----HDC---- C:\WINDOWS\$NtUninstallKB950760$
2010-08-08 00:05:46 ----HDC---- C:\WINDOWS\$NtUninstallKB974392_0$
2010-08-08 00:05:37 ----HDC---- C:\WINDOWS\$NtUninstallKB977914_0$
2010-08-08 00:05:20 ----HDC---- C:\WINDOWS\$NtUninstallKB951748_0$
2010-08-08 00:05:12 ----HDC---- C:\WINDOWS\$NtUninstallKB971961$
2010-08-08 00:05:02 ----HDC---- C:\WINDOWS\$NtUninstallKB978542_0$
2010-08-08 00:04:54 ----HDC---- C:\WINDOWS\$NtUninstallKB970238_0$
2010-08-08 00:04:46 ----HDC---- C:\WINDOWS\$NtUninstallKB979309_0$
2010-08-08 00:04:38 ----HDC---- C:\WINDOWS\$NtUninstallKB978695_WM9$
2010-08-08 00:04:32 ----HDC---- C:\WINDOWS\$NtUninstallKB979482_0$
2010-08-08 00:04:26 ----HDC---- C:\WINDOWS\$NtUninstallKB978706_0$
2010-08-08 00:04:16 ----D---- C:\WINDOWS\ServicePackFiles
2010-08-08 00:04:14 ----HDC---- C:\WINDOWS\$NtUninstallKB958470$
2010-08-08 00:04:05 ----HDC---- C:\WINDOWS\$NtUninstallKB960803_0$
2010-08-08 00:03:55 ----HDC---- C:\WINDOWS\$NtUninstallKB973815_0$
2010-08-08 00:02:29 ----HDC---- C:\WINDOWS\$NtUninstallKB975562_0$
2010-08-08 00:02:16 ----HDC---- C:\WINDOWS\$NtUninstallKB971032$
2010-08-08 00:02:08 ----HDC---- C:\WINDOWS\$NtUninstallKB958644_0$
2010-08-08 00:02:02 ----HDC---- C:\WINDOWS\$NtUninstallKB955069_0$
2010-08-08 00:01:54 ----HDC---- C:\WINDOWS\$NtUninstallKB956802_0$
2010-08-08 00:01:43 ----HDC---- C:\WINDOWS\$NtUninstallKB944338-v2$
2010-08-08 00:01:35 ----HDC---- C:\WINDOWS\$NtUninstallKB923561_0$
2010-08-08 00:01:28 ----HDC---- C:\WINDOWS\$NtUninstallKB975467_0$
2010-08-08 00:01:18 ----HDC---- C:\WINDOWS\$NtUninstallKB968389_0$
2010-08-07 23:59:40 ----D---- C:\WINDOWS\system32\NtmsData
2010-08-07 23:55:35 ----N---- C:\WINDOWS\system32\drivers\watv10nt.sys
2010-08-07 23:55:35 ----N---- C:\WINDOWS\system32\drivers\watv06nt.sys
2010-08-07 23:55:35 ----N---- C:\WINDOWS\system32\drivers\wadv11nt.sys
2010-08-07 23:55:35 ----N---- C:\WINDOWS\system32\drivers\wadv09nt.sys
2010-08-07 23:55:35 ----N---- C:\WINDOWS\system32\drivers\wadv08nt.sys
2010-08-07 23:55:35 ----N---- C:\WINDOWS\system32\drivers\wadv07nt.sys
2010-08-07 23:55:33 ----N---- C:\WINDOWS\system32\drivers\slwdmsup.sys
2010-08-07 23:55:33 ----N---- C:\WINDOWS\system32\drivers\slnthal.sys
2010-08-07 23:55:33 ----N---- C:\WINDOWS\system32\drivers\slntamr.sys
2010-08-07 23:55:33 ----N---- C:\WINDOWS\system32\drivers\slnt7554.sys
2010-08-07 23:55:32 ----N---- C:\WINDOWS\system32\drivers\s3gnbm.sys
2010-08-07 23:55:32 ----N---- C:\WINDOWS\system32\drivers\recagent.sys
2010-08-07 23:55:31 ----N---- C:\WINDOWS\system32\drivers\ntmtlfax.sys
2010-08-07 23:55:29 ----N---- C:\WINDOWS\system32\drivers\mtxparhm.sys
2010-08-07 23:55:29 ----N---- C:\WINDOWS\system32\drivers\mtlstrm.sys
2010-08-07 23:55:29 ----N---- C:\WINDOWS\system32\drivers\mtlmnt5.sys
2010-08-07 23:55:27 ----N---- C:\WINDOWS\system32\drivers\mdmxsdk.sys
2010-08-07 23:55:25 ----N---- C:\WINDOWS\system32\drivers\hsfdpsp2.sys
2010-08-07 23:55:25 ----N---- C:\WINDOWS\system32\drivers\hsfcxts2.sys
2010-08-07 23:55:25 ----N---- C:\WINDOWS\system32\drivers\hsfbs2s2.sys
2010-08-07 23:54:19 ----N---- C:\WINDOWS\system32\drivers\atinxsxx.sys
2010-08-07 23:54:19 ----N---- C:\WINDOWS\system32\drivers\atinxbxx.sys
2010-08-07 23:54:19 ----N---- C:\WINDOWS\system32\drivers\atintuxx.sys
2010-08-07 23:54:19 ----N---- C:\WINDOWS\system32\drivers\atinttxx.sys
2010-08-07 23:54:19 ----N---- C:\WINDOWS\system32\drivers\atinsnxx.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\atinrvxx.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\atinraxx.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\atinpdxx.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\atinmdxx.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\atinbtxx.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\ati2mtag.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\ati2mtaa.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\ati1xsxx.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\ati1xbxx.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\ati1tuxx.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\ati1ttxx.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\ati1snxx.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\ati1rvxx.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\ati1raxx.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\ati1pdxx.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\ati1mdxx.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\ati1btxx.sys
2010-08-07 23:42:11 ----N---- C:\WINDOWS\system32\drivers\bthport.sys
2010-08-07 23:40:04 ----N---- C:\WINDOWS\system32\tzchange.exe
2010-08-07 23:37:47 ----N---- C:\WINDOWS\system32\xpsp4res.dll
2010-08-07 23:37:47 ----N---- C:\WINDOWS\system32\xpsp3res.dll
2010-08-07 23:30:57 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
2010-08-07 23:30:35 ----D---- C:\WINDOWS\system32\PreInstall
2010-08-07 23:30:34 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2010-08-07 23:25:45 ----N---- C:\WINDOWS\system32\h323log.txt
2010-08-07 23:22:04 ----A---- C:\WINDOWS\system32\drivers\kmixer.sys
2010-08-07 23:22:02 ----A---- C:\WINDOWS\system32\drivers\splitter.sys
2010-08-07 23:22:01 ----A---- C:\WINDOWS\system32\drivers\aec.sys
2010-08-07 23:21:57 ----A---- C:\WINDOWS\system32\drivers\swmidi.sys
2010-08-07 23:21:56 ----A---- C:\WINDOWS\system32\drivers\dmusic.sys
2010-08-07 23:21:54 ----A---- C:\WINDOWS\system32\drivers\mskssrv.sys
2010-08-07 23:21:53 ----A---- C:\WINDOWS\system32\drivers\drmkaud.sys
2010-08-07 23:21:52 ----A---- C:\WINDOWS\system32\drivers\mspqm.sys
2010-08-07 23:21:51 ----A---- C:\WINDOWS\system32\drivers\mspclock.sys
2010-08-07 23:21:49 ----A---- C:\WINDOWS\system32\drivers\wdmaud.sys
2010-08-07 23:21:48 ----A---- C:\WINDOWS\system32\drivers\sysaudio.sys
2010-08-07 23:21:44 ----A---- C:\WINDOWS\system32\drivers\audstub.sys
2010-08-07 23:21:20 ----A---- C:\WINDOWS\system32\drivers\redbook.sys
2010-08-07 23:20:51 ----N---- C:\WINDOWS\system32\sfman32.dll
2010-08-07 23:20:51 ----A---- C:\WINDOWS\system32\drivers\sfmanm.sys
2010-08-07 23:20:49 ----A---- C:\WINDOWS\system32\sblfx.dll
2010-08-07 23:20:49 ----A---- C:\WINDOWS\system32\drivers\emu10k1m.sys
2010-08-07 23:20:49 ----A---- C:\WINDOWS\system32\devldr32.exe
AVira: TR/Agent.18081, TR/PSW.Fignotok.B.11, BDS/Hupigon.Gen
Zkuste prosim poradit, diky.
Log z Trend Micro HijackThis v2.0.4 je too long, takze ho vkladam na dvakrat
Janek
Logfile of random's system information tool 1.08 (written by random/random)
Run by Janek at 2010-08-22 12:24:43
Microsoft Windows XP Professional Service Pack 3
System drive C: has 4 GB (18%) free of 20 GB
Total RAM: 1022 MB (39% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:24:47, on 22.8.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\iS3\Anti-Spyware\SZServer.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Rainlendar2\Rainlendar2.exe
C:\WINDOWS\system32\devldr32.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
C:\Documents and Settings\Janek\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Janek\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Janek\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\STOPzilla!\STOPzilla.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
C:\Program Files\Avira\AntiVir Desktop\avcenter.exe
C:\Documents and Settings\Janek\My Documents\Downloads\RSIT.exe
C:\Program Files\trend micro\Janek.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: STOPzilla Browser Helper Object - {E3215F20-3212-11D6-9F8B-00D0B743919D} - C:\Program Files\STOPzilla!\SZIEBHO.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb04.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Janek\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Rainlendar2] C:\Program Files\Rainlendar2\Rainlendar2.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O9 - Extra button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: STOPzilla Service (szserver) - iS3, Inc. - C:\Program Files\Common Files\iS3\Anti-Spyware\SZServer.exe
--
End of file - 5469 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1614895754-1770027372-682003330-1004Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1614895754-1770027372-682003330-1004UA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-06-19 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08 804136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-08-07 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E3215F20-3212-11D6-9F8B-00D0B743919D}]
STOPzilla Browser Helper Object - C:\Program Files\STOPzilla!\SZIEBHO.dll [2010-05-17 247232]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-08-07 79648]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-05-14 248552]
"HPDJ Taskbar Utility"=C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb04.exe [2001-11-19 196608]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-06-20 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-06-09 976832]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2005-02-24 5537792]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"Google Update"=C:\Documents and Settings\Janek\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2010-08-07 136176]
"Rainlendar2"=C:\Program Files\Rainlendar2\Rainlendar2.exe [2010-07-11 2199040]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe"="C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe:*:Enabled:Nokia Ovi Suite 2"
"C:\Program Files\Common Files\Nokia\Service Layer\A\nsl_host_process.exe"="C:\Program Files\Common Files\Nokia\Service Layer\A\nsl_host_process.exe:*:Enabled:Nokia Service Layer Host Process "
"C:\Program Files\Nokia\Nokia Software Updater\nsu_ui_client.exe"="C:\Program Files\Nokia\Nokia Software Updater\nsu_ui_client.exe:*:Enabled:Nokia Software Updater"
"C:\Program Files\Java\jre6\launch4j-tmp\frd.exe"="C:\Program Files\Java\jre6\launch4j-tmp\frd.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
======List of files/folders created in the last 1 months======
2010-08-22 12:16:13 ----D---- C:\Program Files\trend micro
2010-08-22 12:16:12 ----D---- C:\rsit
2010-08-22 12:15:26 ----D---- C:\WINDOWS\LastGood
2010-08-22 10:23:50 ----D---- C:\Documents and Settings\Janek\Application Data\Malwarebytes
2010-08-22 10:23:43 ----A---- C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2010-08-22 10:23:42 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2010-08-22 10:23:42 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2010-08-22 10:23:41 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2010-08-22 08:45:05 ----D---- C:\Documents and Settings\All Users\Application Data\SITEguard
2010-08-22 08:44:13 ----D---- C:\Program Files\STOPzilla!
2010-08-22 08:44:12 ----D---- C:\Program Files\Common Files\iS3
2010-08-22 08:44:11 ----D---- C:\Documents and Settings\All Users\Application Data\STOPzilla!
2010-08-21 23:28:02 ----D---- C:\Documents and Settings\Janek\Application Data\StarDict
2010-08-21 11:36:01 ----D---- C:\Program Files\StarDict
2010-08-21 11:35:47 ----D---- C:\Program Files\Common Files\GTK
2010-08-20 15:05:33 ----A---- C:\WINDOWS\system32\CoreAAC-uninstall.exe
2010-08-16 08:31:33 ----D---- C:\Documents and Settings\Janek\Application Data\Thinstall
2010-08-15 12:32:18 ----D---- C:\Documents and Settings\All Users\Application Data\WinZip
2010-08-15 12:32:14 ----D---- C:\Program Files\WinZip
2010-08-14 09:19:31 ----D---- C:\Program Files\PhotoFiltre
2010-08-14 09:09:29 ----D---- C:\WINDOWS\Sun
2010-08-13 16:55:25 ----D---- C:\Program Files\rajce
2010-08-11 22:15:33 ----D---- C:\Documents and Settings\All Users\Application Data\nView_Profiles
2010-08-11 05:09:03 ----D---- C:\Documents and Settings\Janek\Application Data\Avira
2010-08-09 21:32:18 ----D---- C:\Documents and Settings\Janek\Application Data\Help
2010-08-08 23:49:54 ----D---- C:\Documents and Settings\Janek\Application Data\skypePM
2010-08-08 23:41:06 ----D---- C:\Documents and Settings\Janek\Application Data\Skype
2010-08-08 22:22:13 ----D---- C:\Program Files\Common Files\Skype
2010-08-08 22:22:10 ----RD---- C:\Program Files\Skype
2010-08-08 22:22:07 ----D---- C:\Documents and Settings\All Users\Application Data\Skype
2010-08-08 14:07:06 ----D---- C:\Program Files\Vypinac
2010-08-08 14:01:36 ----D---- C:\Documents and Settings\Janek\Application Data\VitySoft
2010-08-08 14:01:29 ----D---- C:\Program Files\FreeRapid-0.83u1
2010-08-08 13:51:43 ----D---- C:\Documents and Settings\Janek\Application Data\OpenOffice.org
2010-08-08 13:37:41 ----D---- C:\Program Files\OpenOffice.org 3
2010-08-08 13:23:34 ----D---- C:\Program Files\Cell Phone Manager
2010-08-08 13:10:30 ----D---- C:\WINDOWS\system32\appmgmt
2010-08-08 13:03:32 ----D---- C:\Documents and Settings\All Users\Application Data\Nokia
2010-08-08 13:01:50 ----N---- C:\WINDOWS\system32\spmsg.dll
2010-08-08 13:01:43 ----HDC---- C:\WINDOWS\$NtUninstallWudf01009$
2010-08-08 12:46:46 ----D---- C:\Program Files\PC Connectivity Solution
2010-08-08 12:46:30 ----A---- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys
2010-08-08 12:46:29 ----A---- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys
2010-08-08 12:46:28 ----A---- C:\WINDOWS\system32\nmwcdcocls.dll
2010-08-08 12:46:28 ----A---- C:\WINDOWS\system32\drivers\ccdcmbo.sys
2010-08-08 12:46:28 ----A---- C:\WINDOWS\system32\drivers\ccdcmb.sys
2010-08-08 12:46:27 ----A---- C:\WINDOWS\system32\wdfcoinstaller01009.dll
2010-08-08 12:45:44 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2010-08-08 12:45:14 ----D---- C:\WINDOWS\system32\LogFiles
2010-08-08 12:45:14 ----D---- C:\WINDOWS\system32\drivers\UMDF
2010-08-08 12:45:06 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2010-08-08 12:37:05 ----D---- C:\Documents and Settings\All Users\Application Data\NokiaInstallerCache
2010-08-08 12:31:10 ----A---- C:\WINDOWS\system32\drivers\usbser.sys
2010-08-08 12:30:30 ----D---- C:\Documents and Settings\Janek\Application Data\PC Suite
2010-08-08 12:30:30 ----D---- C:\Documents and Settings\Janek\Application Data\Nokia
2010-08-08 12:30:28 ----D---- C:\Documents and Settings\All Users\Application Data\PC Suite
2010-08-08 12:14:50 ----D---- C:\Program Files\Common Files\PCSuite
2010-08-08 12:14:44 ----D---- C:\Program Files\Common Files\Nokia
2010-08-08 12:14:38 ----D---- C:\Program Files\DIFX
2010-08-08 12:14:36 ----A---- C:\WINDOWS\system32\drivers\pccsmcfd.sys
2010-08-08 12:14:21 ----N---- C:\WINDOWS\system32\spmsgXP_2k3.dll
2010-08-08 12:14:17 ----HDC---- C:\WINDOWS\$NtUninstallWdf01009$
2010-08-08 12:09:04 ----D---- C:\Program Files\Nokia
2010-08-08 12:09:04 ----A---- C:\WINDOWS\system32\nmwcdcls.dll
2010-08-08 11:53:25 ----D---- C:\Documents and Settings\All Users\Application Data\Installations
2010-08-08 10:12:42 ----D---- C:\Documents and Settings\Janek\Application Data\esmska
2010-08-08 10:12:41 ----HD---- C:\Program Files\InstallJammer Registry
2010-08-08 10:12:31 ----D---- C:\Program Files\Esmska
2010-08-08 10:08:26 ----D---- C:\WINDOWS\Prefetch
2010-08-08 02:44:11 ----HDC---- C:\WINDOWS\$NtUninstallKB980232$
2010-08-08 02:44:03 ----HDC---- C:\WINDOWS\$NtUninstallKB980218$
2010-08-08 02:43:52 ----HDC---- C:\WINDOWS\$NtUninstallKB979683$
2010-08-08 02:43:43 ----HDC---- C:\WINDOWS\$NtUninstallKB979559$
2010-08-08 02:43:35 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2010-08-08 02:43:27 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2010-08-08 02:43:20 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2010-08-08 02:43:11 ----HDC---- C:\WINDOWS\$NtUninstallKB978601$
2010-08-08 02:43:01 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2010-08-08 02:42:53 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2010-08-08 02:42:44 ----HDC---- C:\WINDOWS\$NtUninstallKB978037$
2010-08-08 02:42:34 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2010-08-08 02:42:23 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2010-08-08 02:42:14 ----HDC---- C:\WINDOWS\$NtUninstallKB975562$
2010-08-08 02:42:05 ----HDC---- C:\WINDOWS\$NtUninstallKB975561$
2010-08-08 02:41:55 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2010-08-08 02:41:46 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-08-08 02:41:37 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2010-08-08 02:41:28 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-08-08 02:41:20 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-08-08 02:41:11 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-08-08 02:41:02 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-08-08 02:40:52 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2010-08-08 02:40:44 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2010-08-08 02:40:36 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2010-08-08 02:40:28 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2010-08-08 02:40:20 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-08-08 02:40:12 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2010-08-08 02:40:04 ----HDC---- C:\WINDOWS\$NtUninstallKB971468$
2010-08-08 02:39:54 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2010-08-08 02:39:46 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-08-08 02:39:35 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-08-08 02:39:25 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2010-08-08 02:39:14 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2010-08-08 02:39:05 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2010-08-08 02:38:55 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2010-08-08 02:38:46 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2010-08-08 02:38:37 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2010-08-08 02:38:27 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2010-08-08 02:38:19 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-08-08 02:38:09 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2010-08-08 02:38:00 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2010-08-08 02:37:44 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2010-08-08 02:37:32 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-08-08 02:37:21 ----HDC---- C:\WINDOWS\$NtUninstallKB973687_1$
2010-08-08 02:37:13 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2010-08-08 02:37:03 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2010-08-08 02:36:54 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2010-08-08 02:36:43 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2010-08-08 02:36:33 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2010-08-08 02:36:24 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2010-08-08 02:36:12 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2010-08-08 02:36:05 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2010-08-08 02:35:54 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2010-08-08 02:35:44 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2010-08-08 02:35:35 ----HDC---- C:\WINDOWS\$NtUninstallKB915800-v4$
2010-08-08 02:35:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2010-08-08 02:31:23 ----D---- C:\WINDOWS\system32\scripting
2010-08-08 02:31:23 ----D---- C:\WINDOWS\l2schemas
2010-08-08 02:31:22 ----D---- C:\WINDOWS\system32\en
2010-08-08 02:31:22 ----D---- C:\WINDOWS\system32\bits
2010-08-08 02:26:38 ----D---- C:\WINDOWS\network diagnostic
2010-08-08 02:20:36 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2010-08-08 00:19:52 ----HDC---- C:\WINDOWS\$NtUninstallKB980218_0$
2010-08-08 00:19:41 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2_0$
2010-08-08 00:19:28 ----HDC---- C:\WINDOWS\$NtUninstallKB952954_0$
2010-08-08 00:19:06 ----HDC---- C:\WINDOWS\$NtUninstallKB959426_0$
2010-08-08 00:18:49 ----HDC---- C:\WINDOWS\$NtUninstallKB946648_0$
2010-08-08 00:18:33 ----HDC---- C:\WINDOWS\$NtUninstallKB956803_0$
2010-08-08 00:18:13 ----HDC---- C:\WINDOWS\$NtUninstallKB960859_0$
2010-08-08 00:17:59 ----HDC---- C:\WINDOWS\$NtUninstallKB971468_0$
2010-08-08 00:17:25 ----HDC---- C:\WINDOWS\$NtUninstallKB979683_0$
2010-08-08 00:17:03 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2010-08-08 00:16:53 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2010-08-08 00:16:40 ----HDC---- C:\WINDOWS\$NtUninstallKB980195$
2010-08-08 00:16:28 ----HDC---- C:\WINDOWS\$NtUninstallKB980232_0$
2010-08-08 00:16:10 ----HDC---- C:\WINDOWS\$NtUninstallKB981350$
2010-08-08 00:15:47 ----HDC---- C:\WINDOWS\$NtUninstallKB955759_0$
2010-08-08 00:15:21 ----HDC---- C:\WINDOWS\$NtUninstallKB974318_0$
2010-08-08 00:15:06 ----HDC---- C:\WINDOWS\$NtUninstallKB969059_0$
2010-08-08 00:14:53 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593_0$
2010-08-08 00:14:40 ----HDC---- C:\WINDOWS\$NtUninstallKB950974_0$
2010-08-08 00:14:27 ----HDC---- C:\WINDOWS\$NtUninstallKB978037_0$
2010-08-08 00:14:13 ----HDC---- C:\WINDOWS\$NtUninstallKB975713_0$
2010-08-08 00:14:01 ----HDC---- C:\WINDOWS\$NtUninstallKB971657_0$
2010-08-08 00:13:47 ----HDC---- C:\WINDOWS\$NtUninstallKB978338_0$
2010-08-08 00:13:35 ----HDC---- C:\WINDOWS\$NtUninstallKB960225_0$
2010-08-08 00:13:23 ----HDC---- C:\WINDOWS\$NtUninstallKB972270_0$
2010-08-08 00:10:06 ----N---- C:\WINDOWS\system32\MRT.exe
2010-08-08 00:09:49 ----HDC---- C:\WINDOWS\$NtUninstallKB974112_0$
2010-08-08 00:08:53 ----HDC---- C:\WINDOWS\$NtUninstallKB956572_0$
2010-08-08 00:08:29 ----HDC---- C:\WINDOWS\$NtUninstallKB956844_0$
2010-08-08 00:08:18 ----HDC---- C:\WINDOWS\$NtUninstallKB961501_0$
2010-08-08 00:08:10 ----HDC---- C:\WINDOWS\$NtUninstallKB975561_0$
2010-08-08 00:08:03 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2010-08-08 00:07:58 ----HDC---- C:\WINDOWS\$NtUninstallKB973869_0$
2010-08-08 00:07:51 ----HDC---- C:\WINDOWS\$NtUninstallKB975025_0$
2010-08-08 00:07:43 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9L$
2010-08-08 00:07:35 ----HDC---- C:\WINDOWS\$NtUninstallKB952004_0$
2010-08-08 00:07:27 ----HDC---- C:\WINDOWS\$NtUninstallKB974571_0$
2010-08-08 00:07:19 ----HDC---- C:\WINDOWS\$NtUninstallKB975560_0$
2010-08-08 00:07:10 ----HDC---- C:\WINDOWS\$NtUninstallKB973507_0$
2010-08-08 00:07:03 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2010-08-08 00:06:55 ----HDC---- C:\WINDOWS\$NtUninstallKB973687_0$
2010-08-08 00:06:48 ----HDC---- C:\WINDOWS\$NtUninstallKB950762_0$
2010-08-08 00:06:39 ----HDC---- C:\WINDOWS\$NtUninstallKB981793$
2010-08-08 00:06:34 ----HDC---- C:\WINDOWS\$NtUninstallKB978601_0$
2010-08-08 00:06:26 ----HDC---- C:\WINDOWS\$NtUninstallKB979559_0$
2010-08-08 00:06:20 ----HDC---- C:\WINDOWS\$NtUninstallKB952287_0$
2010-08-08 00:06:12 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-08-08 00:05:59 ----HDC---- C:\WINDOWS\$NtUninstallKB967715_0$
2010-08-08 00:05:52 ----HDC---- C:\WINDOWS\$NtUninstallKB950760$
2010-08-08 00:05:46 ----HDC---- C:\WINDOWS\$NtUninstallKB974392_0$
2010-08-08 00:05:37 ----HDC---- C:\WINDOWS\$NtUninstallKB977914_0$
2010-08-08 00:05:20 ----HDC---- C:\WINDOWS\$NtUninstallKB951748_0$
2010-08-08 00:05:12 ----HDC---- C:\WINDOWS\$NtUninstallKB971961$
2010-08-08 00:05:02 ----HDC---- C:\WINDOWS\$NtUninstallKB978542_0$
2010-08-08 00:04:54 ----HDC---- C:\WINDOWS\$NtUninstallKB970238_0$
2010-08-08 00:04:46 ----HDC---- C:\WINDOWS\$NtUninstallKB979309_0$
2010-08-08 00:04:38 ----HDC---- C:\WINDOWS\$NtUninstallKB978695_WM9$
2010-08-08 00:04:32 ----HDC---- C:\WINDOWS\$NtUninstallKB979482_0$
2010-08-08 00:04:26 ----HDC---- C:\WINDOWS\$NtUninstallKB978706_0$
2010-08-08 00:04:16 ----D---- C:\WINDOWS\ServicePackFiles
2010-08-08 00:04:14 ----HDC---- C:\WINDOWS\$NtUninstallKB958470$
2010-08-08 00:04:05 ----HDC---- C:\WINDOWS\$NtUninstallKB960803_0$
2010-08-08 00:03:55 ----HDC---- C:\WINDOWS\$NtUninstallKB973815_0$
2010-08-08 00:02:29 ----HDC---- C:\WINDOWS\$NtUninstallKB975562_0$
2010-08-08 00:02:16 ----HDC---- C:\WINDOWS\$NtUninstallKB971032$
2010-08-08 00:02:08 ----HDC---- C:\WINDOWS\$NtUninstallKB958644_0$
2010-08-08 00:02:02 ----HDC---- C:\WINDOWS\$NtUninstallKB955069_0$
2010-08-08 00:01:54 ----HDC---- C:\WINDOWS\$NtUninstallKB956802_0$
2010-08-08 00:01:43 ----HDC---- C:\WINDOWS\$NtUninstallKB944338-v2$
2010-08-08 00:01:35 ----HDC---- C:\WINDOWS\$NtUninstallKB923561_0$
2010-08-08 00:01:28 ----HDC---- C:\WINDOWS\$NtUninstallKB975467_0$
2010-08-08 00:01:18 ----HDC---- C:\WINDOWS\$NtUninstallKB968389_0$
2010-08-07 23:59:40 ----D---- C:\WINDOWS\system32\NtmsData
2010-08-07 23:55:35 ----N---- C:\WINDOWS\system32\drivers\watv10nt.sys
2010-08-07 23:55:35 ----N---- C:\WINDOWS\system32\drivers\watv06nt.sys
2010-08-07 23:55:35 ----N---- C:\WINDOWS\system32\drivers\wadv11nt.sys
2010-08-07 23:55:35 ----N---- C:\WINDOWS\system32\drivers\wadv09nt.sys
2010-08-07 23:55:35 ----N---- C:\WINDOWS\system32\drivers\wadv08nt.sys
2010-08-07 23:55:35 ----N---- C:\WINDOWS\system32\drivers\wadv07nt.sys
2010-08-07 23:55:33 ----N---- C:\WINDOWS\system32\drivers\slwdmsup.sys
2010-08-07 23:55:33 ----N---- C:\WINDOWS\system32\drivers\slnthal.sys
2010-08-07 23:55:33 ----N---- C:\WINDOWS\system32\drivers\slntamr.sys
2010-08-07 23:55:33 ----N---- C:\WINDOWS\system32\drivers\slnt7554.sys
2010-08-07 23:55:32 ----N---- C:\WINDOWS\system32\drivers\s3gnbm.sys
2010-08-07 23:55:32 ----N---- C:\WINDOWS\system32\drivers\recagent.sys
2010-08-07 23:55:31 ----N---- C:\WINDOWS\system32\drivers\ntmtlfax.sys
2010-08-07 23:55:29 ----N---- C:\WINDOWS\system32\drivers\mtxparhm.sys
2010-08-07 23:55:29 ----N---- C:\WINDOWS\system32\drivers\mtlstrm.sys
2010-08-07 23:55:29 ----N---- C:\WINDOWS\system32\drivers\mtlmnt5.sys
2010-08-07 23:55:27 ----N---- C:\WINDOWS\system32\drivers\mdmxsdk.sys
2010-08-07 23:55:25 ----N---- C:\WINDOWS\system32\drivers\hsfdpsp2.sys
2010-08-07 23:55:25 ----N---- C:\WINDOWS\system32\drivers\hsfcxts2.sys
2010-08-07 23:55:25 ----N---- C:\WINDOWS\system32\drivers\hsfbs2s2.sys
2010-08-07 23:54:19 ----N---- C:\WINDOWS\system32\drivers\atinxsxx.sys
2010-08-07 23:54:19 ----N---- C:\WINDOWS\system32\drivers\atinxbxx.sys
2010-08-07 23:54:19 ----N---- C:\WINDOWS\system32\drivers\atintuxx.sys
2010-08-07 23:54:19 ----N---- C:\WINDOWS\system32\drivers\atinttxx.sys
2010-08-07 23:54:19 ----N---- C:\WINDOWS\system32\drivers\atinsnxx.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\atinrvxx.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\atinraxx.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\atinpdxx.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\atinmdxx.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\atinbtxx.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\ati2mtag.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\ati2mtaa.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\ati1xsxx.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\ati1xbxx.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\ati1tuxx.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\ati1ttxx.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\ati1snxx.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\ati1rvxx.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\ati1raxx.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\ati1pdxx.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\ati1mdxx.sys
2010-08-07 23:54:18 ----N---- C:\WINDOWS\system32\drivers\ati1btxx.sys
2010-08-07 23:42:11 ----N---- C:\WINDOWS\system32\drivers\bthport.sys
2010-08-07 23:40:04 ----N---- C:\WINDOWS\system32\tzchange.exe
2010-08-07 23:37:47 ----N---- C:\WINDOWS\system32\xpsp4res.dll
2010-08-07 23:37:47 ----N---- C:\WINDOWS\system32\xpsp3res.dll
2010-08-07 23:30:57 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
2010-08-07 23:30:35 ----D---- C:\WINDOWS\system32\PreInstall
2010-08-07 23:30:34 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2010-08-07 23:25:45 ----N---- C:\WINDOWS\system32\h323log.txt
2010-08-07 23:22:04 ----A---- C:\WINDOWS\system32\drivers\kmixer.sys
2010-08-07 23:22:02 ----A---- C:\WINDOWS\system32\drivers\splitter.sys
2010-08-07 23:22:01 ----A---- C:\WINDOWS\system32\drivers\aec.sys
2010-08-07 23:21:57 ----A---- C:\WINDOWS\system32\drivers\swmidi.sys
2010-08-07 23:21:56 ----A---- C:\WINDOWS\system32\drivers\dmusic.sys
2010-08-07 23:21:54 ----A---- C:\WINDOWS\system32\drivers\mskssrv.sys
2010-08-07 23:21:53 ----A---- C:\WINDOWS\system32\drivers\drmkaud.sys
2010-08-07 23:21:52 ----A---- C:\WINDOWS\system32\drivers\mspqm.sys
2010-08-07 23:21:51 ----A---- C:\WINDOWS\system32\drivers\mspclock.sys
2010-08-07 23:21:49 ----A---- C:\WINDOWS\system32\drivers\wdmaud.sys
2010-08-07 23:21:48 ----A---- C:\WINDOWS\system32\drivers\sysaudio.sys
2010-08-07 23:21:44 ----A---- C:\WINDOWS\system32\drivers\audstub.sys
2010-08-07 23:21:20 ----A---- C:\WINDOWS\system32\drivers\redbook.sys
2010-08-07 23:20:51 ----N---- C:\WINDOWS\system32\sfman32.dll
2010-08-07 23:20:51 ----A---- C:\WINDOWS\system32\drivers\sfmanm.sys
2010-08-07 23:20:49 ----A---- C:\WINDOWS\system32\sblfx.dll
2010-08-07 23:20:49 ----A---- C:\WINDOWS\system32\drivers\emu10k1m.sys
2010-08-07 23:20:49 ----A---- C:\WINDOWS\system32\devldr32.exe