Stránka 1 z 7

Nod hlasí červy...prosím o pomoc

Napsal: 16 lis 2010 10:55
od Duhen
Zdravím , tak zase problémek.Nod hlásí červy a zastavení a šupnutí do karantény po zapnutí počítače znova dokola.
Win32/Peerfrag.FL čer
Win32/Kryptik.HOU trojský kůň
Win32/Kryptik.HMA trojský kůň
Win32/Perfrag.FLčerv...............něco s icq
při zasunutí flešky mi to požralo soubory a nebo to hlasí NOD INF/autorun
už mi to napadlo i druhý PC de jsem fixoval laasse.exe nevím přesně

Projel jsem už combofixe, mbamem, ccleaner hijack, ale stále to otravuje. :(
Stále se tak děje po spuštění PC, nodem to nahážu do karantény a po dalším spuštění, nebo i zasunutí flešky to zase naskakuje.

Asi pěknej marast


Logfile of random's system information tool 1.08 (written by random/random)
Run by Andrea at 2010-11-16 10:45:46
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 3 GB (20%) free of 16 GB
Total RAM: 895 MB (49% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:45:52, on 16.11.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\ATK0100\HControl.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\sm56hlpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe
C:\Program Files\Wireless Console 2\wcourier.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Eset\nod32kui.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
C:\Program Files\Eset\nod32krn.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\tosOBEX.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\tosBtProc.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\ATK0100\ATKOSD.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRd32.exe
C:\Documents and Settings\Andrea\Plocha\RSIT.exe
C:\Program Files\trend micro\Andrea.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - {855F3B16-6D32-4fe6-8A56-BBB695989046} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O4 - HKLM\..\Run: [HControl] C:\WINDOWS\ATK0100\HControl.exe
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SMSERIAL] sm56hlpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Power_Gear] C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe 1
O4 - HKLM\..\Run: [Wireless Console 2] C:\Program Files\Wireless Console 2\wcourier.exe
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Bluetooth Manager.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupda ... 9837765500
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/pub/s ... wflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe

--
End of file - 6466 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\AppleSoftwareUpdate.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2005-09-24 63136]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll [2009-01-26 1879896]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HControl"=C:\WINDOWS\ATK0100\HControl.exe [2006-02-23 106496]
"ATIPTA"=C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe [2006-03-08 344064]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2006-05-04 16206848]
"SMSERIAL"=C:\WINDOWS\sm56hlpr.exe [2006-01-20 544768]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2005-10-21 761945]
"Power_Gear"=C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe [2006-03-14 90112]
"Wireless Console 2"=C:\Program Files\Wireless Console 2\wcourier.exe [2005-10-17 987136]
"ISUSPM Startup"=C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe [2005-02-17 221184]
"ISUSScheduler"=C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2005-02-17 81920]
"nod32kui"=C:\Program Files\Eset\nod32kui.exe [2005-12-13 917504]
"RemoteControl"=C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [2005-01-12 32768]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2007-04-27 282624]
"DAEMON Tools"=C:\Program Files\DAEMON Tools\daemon.exe [2006-11-12 157592]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"NBJ"=C:\Program Files\Ahead\Nero BackItUp\NBJ.exe [2005-10-11 1961984]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files\Skype\Phone\Skype.exe [2006-12-18 25365032]

C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Bluetooth Manager.lnk - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng1.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2006-03-08 61440]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"D:\HryCounter Strike 1.6\hl.exe"="D:\HryCounter Strike 1.6\hl.exe:*:Enabled:Half-Life Launcher"
"C:\WINDOWS\system32\dplaysvr.exe"="C:\WINDOWS\system32\dplaysvr.exe:*:Enabled:Microsoft DirectPlay Helper"
"D:\Stahování z NETU\bulanci.exe"="D:\Stahování z NETU\bulanci.exe:*:Enabled:bulanci"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"D:\Hry\lfs W\LFS.exe"="D:\Hry\lfs W\LFS.exe:*:Enabled:LFS"
"D:\Hry\hamachi\hamachi.exe"="D:\Hry\hamachi\hamachi.exe:*:Enabled:Hamachi Client"
"C:\Program Files\QIP\qip.exe"="C:\Program Files\QIP\qip.exe:*:Enabled:Quiet Internet Pager"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Documents and Settings\Andrea\Dokumenty\pokoje\P17535732.JPG-www.facebook.exe"="C:\WINDOWS\nvsvc32.exe:*:Enabled:NVIDIA driver monitor"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

======List of files/folders created in the last 1 months======

2010-11-16 10:44:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2387149$
2010-11-16 10:44:18 ----HDC---- C:\WINDOWS\$NtUninstallKB982214$
2010-11-16 10:43:45 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2010-11-16 10:42:51 ----D---- C:\WINDOWS\LastGood
2010-11-16 10:35:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2259922$
2010-11-16 10:30:46 ----HDC---- C:\WINDOWS\$NtUninstallKB980195$
2010-11-16 10:26:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2296011$
2010-11-16 10:21:40 ----HDC---- C:\WINDOWS\$NtUninstallKB980232$
2010-11-16 10:17:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2010-11-16 10:12:36 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2010-11-16 10:09:30 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-11-16 10:04:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2378111_WM9$
2010-11-16 10:01:30 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-11-16 09:56:55 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-11-16 09:52:22 ----HDC---- C:\WINDOWS\$NtUninstallKB981349$
2010-11-16 09:47:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2010-11-16 09:39:29 ----D---- C:\Program Files\trend micro
2010-11-16 09:39:18 ----D---- C:\rsit
2010-11-16 09:25:59 ----D---- C:\WINDOWS\ie8updates
2010-11-16 09:05:59 ----D---- C:\WINDOWS\WBEM
2010-11-16 08:54:25 ----HDC---- C:\WINDOWS\ie8
2010-11-15 18:46:10 ----HDC---- C:\WINDOWS\$NtUninstallKB978037$
2010-11-15 18:46:02 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2010-11-15 18:45:53 ----HDC---- C:\WINDOWS\$NtUninstallKB982132$
2010-11-15 18:45:46 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2010-11-15 18:44:56 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2010-11-15 18:44:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2360131$
2010-11-15 18:44:30 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2010-11-15 18:44:24 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-11-15 18:44:14 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-11-15 18:44:07 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$
2010-11-15 18:43:59 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-11-15 18:43:47 ----HDC---- C:\WINDOWS\$NtUninstallKB981852$
2010-11-15 18:43:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2079403$
2010-11-15 18:37:12 ----HDC---- C:\WINDOWS\$NtUninstallKB979687$
2010-11-15 18:36:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2121546$
2010-11-15 18:36:41 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2010-11-15 18:34:18 ----SHD---- C:\Config.Msi
2010-11-15 18:32:55 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-11-15 18:32:47 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2010-11-15 18:32:22 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2010-11-15 18:29:12 ----HDC---- C:\WINDOWS\$NtUninstallKB978601$
2010-11-15 18:29:03 ----HDC---- C:\WINDOWS\$NtUninstallKB980436$
2010-11-15 18:28:55 ----HDC---- C:\WINDOWS\$NtUninstallKB981322$
2010-11-15 18:28:48 ----HDC---- C:\WINDOWS\$NtUninstallKB978695_WM9$
2010-11-15 18:28:39 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-11-15 18:28:32 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-11-15 18:28:20 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2010-11-15 18:28:02 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2010-11-15 18:27:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2286198$
2010-11-15 18:27:43 ----HDC---- C:\WINDOWS\$NtUninstallKB981957$
2010-11-15 18:27:36 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2010-11-15 18:27:27 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2010-11-15 18:27:20 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2010-11-15 18:27:07 ----HDC---- C:\WINDOWS\$NtUninstallKB981997$
2010-11-15 18:26:54 ----HDC---- C:\WINDOWS\$NtUninstallKB975562$
2010-11-15 18:20:37 ----HDC---- C:\WINDOWS\$NtUninstallKB2158563$
2010-11-15 18:20:31 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2010-11-15 18:20:23 ----HDC---- C:\WINDOWS\$NtUninstallKB971961$
2010-11-15 18:20:15 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-11-15 18:20:07 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-11-15 18:20:01 ----A---- C:\WINDOWS\imsins.BAK
2010-11-15 18:19:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2360937$
2010-11-15 17:55:45 ----A---- C:\WINDOWS\system32\SET1E4.tmp
2010-11-15 17:27:12 ----N---- C:\WINDOWS\system32\browserchoice.exe
2010-11-15 17:21:21 ----RSH---- C:\Documents and Settings\Andrea\Data aplikací\juzjf.exe
2010-11-15 17:16:19 ----A---- C:\WINDOWS\system32\wuapi.dll.mui
2010-11-15 15:49:59 ----A---- C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2010-11-15 15:49:58 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2010-11-15 15:49:57 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2010-11-15 15:48:52 ----SHD---- C:\RECYCLER
2010-11-15 15:43:45 ----D---- C:\WINDOWS\temp
2010-11-15 15:29:15 ----A---- C:\WINDOWS\zip.exe
2010-11-15 15:29:15 ----A---- C:\WINDOWS\SWREG.exe
2010-11-15 15:29:15 ----A---- C:\WINDOWS\PEV.exe
2010-11-15 15:29:15 ----A---- C:\WINDOWS\NIRCMD.exe
2010-11-15 15:29:15 ----A---- C:\WINDOWS\MBR.exe
2010-11-15 15:29:15 ----A---- C:\WINDOWS\grep.exe
2010-11-15 15:29:14 ----A---- C:\WINDOWS\SWXCACLS.exe
2010-11-15 15:29:14 ----A---- C:\WINDOWS\SWSC.exe
2010-11-15 15:29:14 ----A---- C:\WINDOWS\sed.exe
2010-11-15 15:26:39 ----D---- C:\WINDOWS\ERDNT
2010-11-15 15:26:28 ----A---- C:\WINDOWS\system32\CF14444.exe
2010-11-15 15:26:20 ----D---- C:\Qoobox

======List of files/folders modified in the last 1 months======

2010-11-16 10:44:45 ----D---- C:\WINDOWS\system32
2010-11-16 10:44:44 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-11-16 10:44:40 ----HD---- C:\WINDOWS\inf
2010-11-16 10:44:39 ----D---- C:\WINDOWS
2010-11-16 10:44:37 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-11-16 10:44:32 ----HD---- C:\WINDOWS\$hf_mig$
2010-11-16 10:44:22 ----D---- C:\WINDOWS\system32\drivers
2010-11-16 10:43:45 ----D---- C:\WINDOWS\WinSxS
2010-11-16 10:42:09 ----D---- C:\WINDOWS\SoftwareDistribution
2010-11-16 10:40:25 ----D---- C:\WINDOWS\system32\CatRoot2
2010-11-16 10:39:49 ----D---- C:\WINDOWS\AppPatch
2010-11-16 10:39:48 ----D---- C:\WINDOWS\system32\cs-cz
2010-11-16 10:39:48 ----D---- C:\WINDOWS\Help
2010-11-16 10:39:48 ----D---- C:\Program Files\Internet Explorer
2010-11-16 10:38:52 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-11-16 10:37:17 ----A---- C:\WINDOWS\wincmd.ini
2010-11-16 09:39:29 ----RD---- C:\Program Files
2010-11-16 09:18:19 ----D---- C:\WINDOWS\system32\config
2010-11-16 09:05:17 ----D---- C:\WINDOWS\Media
2010-11-15 18:50:37 ----D---- C:\WINDOWS\Microsoft.NET
2010-11-15 18:50:35 ----RSD---- C:\WINDOWS\assembly
2010-11-15 18:45:40 ----D---- C:\WINDOWS\system32\CatRoot
2010-11-15 18:41:43 ----D---- C:\WINDOWS\Debug
2010-11-15 18:41:31 ----SHD---- C:\WINDOWS\Installer
2010-11-15 18:28:05 ----D---- C:\Program Files\Outlook Express
2010-11-15 18:27:11 ----D---- C:\Program Files\Movie Maker
2010-11-15 17:31:13 ----D---- C:\Program Files\DreamCom
2010-11-15 17:21:21 ----D---- C:\WINDOWS\Prefetch
2010-11-15 17:16:12 ----SD---- C:\WINDOWS\Downloaded Program Files
2010-11-15 17:11:31 ----D---- C:\WINDOWS\Config
2010-11-15 17:10:46 ----D---- C:\Program Files\DAEMON Tools
2010-11-15 15:49:08 ----D---- C:\Documents and Settings\All Users\Data aplikací\Spybot - Search & Destroy
2010-11-15 15:48:52 ----D---- C:\WINDOWS\Minidump
2010-11-15 15:44:31 ----D---- C:\Program Files\Mozilla Firefox
2010-11-15 15:41:38 ----A---- C:\WINDOWS\system.ini
2010-11-15 15:41:26 ----D---- C:\WINDOWS\system32\drivers\etc
2010-11-15 15:39:18 ----D---- C:\Program Files\Common Files
2010-11-03 18:10:32 ----D---- C:\Program Files\ESET
2010-11-02 16:47:16 ----A---- C:\WINDOWS\system32\MRT.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2006-08-25 36528]
R0 risdptsk;risdptsk; C:\WINDOWS\System32\DRIVERS\risdptsk.sys [2005-07-14 27904]
R0 sfdrv01a;StarForce Protection Environment Driver (version 1.x.a); C:\WINDOWS\System32\drivers\sfdrv01a.sys [2006-07-05 63352]
R0 sfhlp02;StarForce Protection Helper Driver (version 2.x); C:\WINDOWS\System32\drivers\sfhlp02.sys [2006-06-14 13680]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2006-12-26 639224]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\System32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 oreans32;oreans32; \??\C:\WINDOWS\system32\drivers\oreans32.sys []
R1 Tosrfcom;Bluetooth RFCOMM from TOSHIBA; C:\WINDOWS\System32\Drivers\tosrfcom.sys [2005-08-01 64896]
R1 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2002-09-23 12032]
R2 AMON;AMON; \??\C:\WINDOWS\System32\drivers\amon.sys []
R2 irda;Protokol IrDA; C:\WINDOWS\System32\DRIVERS\irda.sys [2008-04-13 88192]
R3 ASNDIS5;ASNDIS5 Protocol Driver; \??\C:\WINDOWS\System32\ASNDIS5.SYS []
R3 ati2mtag;ati2mtag; C:\WINDOWS\System32\DRIVERS\ati2mtag.sys [2006-03-08 1506816]
R3 BCM43XX;ASUS 802.11 ovladač síťového adaptéru; C:\WINDOWS\System32\DRIVERS\bcmwl5.sys [2005-02-11 371712]
R3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2009-05-09 25280]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\System32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2006-05-04 4271616]
R3 irsir;Microsoft Serial Infrared Driver; C:\WINDOWS\System32\DRIVERS\irsir.sys [2001-08-17 18688]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2002-09-23 12160]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\WINDOWS\System32\DRIVERS\ATKACPI.sys [2005-02-17 5632]
R3 pfc;Padus ASPI Shell; C:\WINDOWS\system32\drivers\pfc.sys [2006-12-26 10368]
R3 Rasirda;WAN Miniport (IrDA); C:\WINDOWS\System32\DRIVERS\rasirda.sys [2001-08-17 19584]
R3 rimsptsk;rimsptsk; C:\WINDOWS\System32\DRIVERS\rimsptsk.sys [2005-07-12 51328]
R3 RTL8023xp;Realtek 10/100/1000 NIC Family all in one NDIS XP Driver; C:\WINDOWS\System32\DRIVERS\Rtnicxp.sys [2006-01-18 80512]
R3 smserial;smserial; C:\WINDOWS\System32\DRIVERS\smserial.sys [2006-01-20 862340]
R3 SynMini;USB2.0 1.3M WebCam; C:\WINDOWS\System32\Drivers\SynMini.sys [2006-07-03 1056512]
R3 SynScan;USB2.0 1.3M WebCam Still Image; C:\WINDOWS\System32\Drivers\SynScan.sys [2006-06-30 8064]
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\System32\DRIVERS\SynTP.sys [2005-10-21 191936]
R3 tosporte;Bluetooth Port Driver from Toshiba; C:\WINDOWS\System32\DRIVERS\tosporte.sys [2005-11-24 47104]
R3 Tosrfbd;Bluetooth RFBUS from TOSHIBA; C:\WINDOWS\System32\Drivers\tosrfbd.sys [2006-02-02 108928]
R3 Tosrfbnp;Bluetooth RFBNEP from TOSHIBA; C:\WINDOWS\System32\Drivers\tosrfbnp.sys [2005-12-14 37632]
R3 Tosrfhid;Bluetooth RFHID from TOSHIBA; C:\WINDOWS\System32\DRIVERS\Tosrfhid.sys [2006-02-08 62848]
R3 tosrfnds;Bluetooth Personal Area Network from TOSHIBA; C:\WINDOWS\System32\DRIVERS\tosrfnds.sys [2005-01-06 18612]
R3 Tosrfusb;Bluetooth USB Controller; C:\WINDOWS\System32\Drivers\tosrfusb.sys [2006-02-24 40192]
S2 rszzakyr;rszzakyr; \??\C:\WINDOWS\system32\drivers\rszzakyr.sys []
S3 a4onox0k;a4onox0k; C:\WINDOWS\system32\drivers\a4onox0k.sys []
S3 catchme;catchme; \??\C:\DOCUME~1\Andrea\LOCALS~1\Temp\catchme.sys []
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\System32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 QV2KUX;Casio Digital Camera; C:\WINDOWS\System32\DRIVERS\qv2kux.sys [2001-08-17 3328]
S3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2002-09-23 5888]
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\System32\DRIVERS\RTL8139.SYS [2004-08-03 20992]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\System32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\System32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 tap0901;TAP-Win32 Adapter V9; C:\WINDOWS\system32\DRIVERS\tap0901.sys [2009-07-22 28592]
S3 toshidpt;TOSHIBA Bluetooth HID port driver; C:\WINDOWS\system32\drivers\Toshidpt.sys [2005-07-11 3712]
S3 TosRfSnd;Bluetooth Audio Device (WDM) from TOSHIBA; C:\WINDOWS\system32\drivers\TosRfSnd.sys [2005-11-11 52864]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\System32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\System32\Ati2evxx.exe [2006-03-08 405504]
R2 Irmon;Sledování infračerveného přenosu; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 NOD32krn;NOD32 Kernel Service; C:\Program Files\Eset\nod32krn.exe [2006-12-26 495616]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\System32\wdfmgr.exe [2005-01-28 38912]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Re: Nod hlasí červy...prosím o pomoc

Napsal: 16 lis 2010 11:26
od motji
Hezké dopoledne :)
Můžu poprosit o log z combofixu, když už ho máte? Už tam něoc vidím, pak vše pomažeme :) .
Doporučuji ten druhý počítač odpojit od sítě, at se stále neinfikují dokola, pak ho také vyčistíme.

Re: Nod hlasí červy...prosím o pomoc

Napsal: 16 lis 2010 11:58
od Duhen
Zdravím motji, doufal jsem , že se mě ujmete :D

Combofix jsem prováděl včera, smazal sám asi tři záležitosti a pak jsem začistil, protože jsem myslel , že to bude dobré.
Dávám tedy log momentální během kterého na mě skákaly okna NODU s hláškama.
WIN32/Otlard.A trojský kůň
WIN32/Peerfrag.FL červ
Tato skutečnost byla zjištěna na nově vytvořeném souboru aplikací: C:\WINDOWS\explorer.exe. Soubor byl přesunut do karantény. Můžete zavřít toto okno.
varianta infiltrace WIN32/Kryptik.HMA trojký kůň

No stále dokola opruzují :?:

Re: Nod hlasí červy...prosím o pomoc

Napsal: 16 lis 2010 12:00
od Duhen
ComboFix 10-11-14.04 - Andrea 16.11.2010 11:40:20.3.1 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.895.479 [GMT 1:00]
Spuštěný z: c:\documents and settings\Andrea\Plocha\ComboFix.exe
AV: Eset NOD32 Antivirus 2.50 *On-access scanning enabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
* Rezidentní štít AV je zapnutý


VAROVÁNÍ - NA TOMTO POČÍTAČI NENÍ NAINSTALOVÁNA KONZOLA PRO ZOTAVENÍ !!
.

((((((((((((((((((((((((( Soubory vytvořené od 2010-10-16 do 2010-11-16 )))))))))))))))))))))))))))))))
.

2010-11-16 09:49 . 2010-11-16 09:49 -------- d-----w- C:\BJPrinter
2010-11-16 09:42 . 2010-11-16 09:42 -------- d-sh--w- c:\documents and settings\Andrea\IECompatCache
2010-11-16 09:41 . 2010-11-16 09:41 -------- d-sh--w- c:\documents and settings\Andrea\PrivacIE
2010-11-16 09:40 . 2010-11-16 09:40 -------- d-sh--w- c:\documents and settings\Andrea\IETldCache
2010-11-16 08:39 . 2010-11-16 09:45 -------- d-----w- c:\program files\trend micro
2010-11-16 08:39 . 2010-11-16 08:41 -------- d-----w- C:\rsit
2010-11-16 08:30 . 2010-08-26 11:08 13312 -c----w- c:\windows\system32\dllcache\iecompat.dll
2010-11-16 08:22 . 2010-09-10 05:52 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2010-11-16 08:22 . 2010-09-10 05:52 602112 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2010-11-16 08:22 . 2010-09-10 05:52 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2010-11-16 08:22 . 2010-09-10 05:52 1986560 -c----w- c:\windows\system32\dllcache\iertutil.dll
2010-11-16 08:22 . 2010-09-10 05:52 247808 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2010-11-16 08:22 . 2010-09-10 05:52 11080192 -c----w- c:\windows\system32\dllcache\ieframe.dll
2010-11-16 08:22 . 2010-09-10 05:52 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll
2010-11-16 07:54 . 2010-11-16 08:02 -------- dc-h--w- c:\windows\ie8
2010-11-15 16:55 . 2010-09-18 06:53 953856 -c----w- c:\windows\system32\dllcache\mfc40u.dll
2010-11-15 16:55 . 2010-09-18 06:53 974848 -c----w- c:\windows\system32\dllcache\mfc42.dll
2010-11-15 16:53 . 2010-08-23 16:12 617472 -c----w- c:\windows\system32\dllcache\comctl32.dll
2010-11-15 16:47 . 2009-11-21 16:03 471552 -c----w- c:\windows\system32\dllcache\aclayers.dll
2010-11-15 16:47 . 2009-06-21 21:48 153088 -c----w- c:\windows\system32\dllcache\triedit.dll
2010-11-15 16:46 . 2010-06-14 14:31 744448 -c----w- c:\windows\system32\dllcache\helpsvc.exe
2010-11-15 16:27 . 2010-02-12 10:03 293376 ------w- c:\windows\system32\browserchoice.exe
2010-11-15 16:26 . 2010-06-18 13:36 3558912 -c----w- c:\windows\system32\dllcache\moviemk.exe
2010-11-15 16:21 . 2010-11-12 22:33 91136 --sh--r- c:\documents and settings\Andrea\Data aplikací\juzjf.exe
2010-11-15 16:16 . 2009-08-06 18:24 15072 ----a-w- c:\windows\system32\wuapi.dll.mui
2010-11-15 14:49 . 2010-04-29 14:39 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-11-15 14:49 . 2010-04-29 14:39 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-11-15 14:49 . 2010-11-15 14:50 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-11-15 14:26 . 2010-11-15 14:26 390144 ----a-w- c:\windows\system32\CF14444.exe

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-09-18 11:23 . 2002-09-23 12:00 974848 ----a-w- c:\windows\system32\mfc42u.dll
2010-09-18 06:53 . 2002-09-23 12:00 974848 ----a-w- c:\windows\system32\mfc42.dll
2010-09-18 06:53 . 2002-09-23 12:00 954368 ----a-w- c:\windows\system32\mfc40.dll
2010-09-18 06:53 . 2002-09-23 12:00 953856 ----a-w- c:\windows\system32\mfc40u.dll
2010-09-10 05:52 . 2006-06-23 12:27 916480 ----a-w- c:\windows\system32\wininet.dll
2010-09-10 05:52 . 2002-09-23 12:00 43520 ------w- c:\windows\system32\licmgr10.dll
2010-09-10 05:52 . 2002-09-23 12:00 1469440 ------w- c:\windows\system32\inetcpl.cpl
2010-09-01 11:52 . 2002-09-23 12:00 285824 ----a-w- c:\windows\system32\atmfd.dll
2010-09-01 07:57 . 2002-09-23 12:00 1852800 ----a-w- c:\windows\system32\win32k.sys
2010-08-27 08:03 . 2002-09-23 12:00 119808 ----a-w- c:\windows\system32\t2embed.dll
2010-08-23 16:12 . 2002-09-23 12:00 617472 ----a-w- c:\windows\system32\comctl32.dll
.

((((((((((((((((((((((((((((( SnapShot@2010-11-15_14.41.35 )))))))))))))))))))))))))))))))))))))))))
.
+ 2006-12-25 18:33 . 2009-08-06 18:24 44768 c:\windows\system32\wups2.dll
+ 2006-12-25 18:33 . 2009-08-06 18:24 35552 c:\windows\system32\wups.dll
+ 2006-12-26 00:27 . 2009-08-06 18:24 53472 c:\windows\system32\wuauclt.exe
+ 2002-09-23 12:00 . 2009-06-25 08:27 54272 c:\windows\system32\wdigest.dll
+ 2008-07-14 11:09 . 2010-06-21 14:46 46080 c:\windows\system32\tzchange.exe
- 2008-07-14 11:09 . 2009-07-14 11:03 46080 c:\windows\system32\tzchange.exe
+ 2006-12-26 00:44 . 2009-01-07 17:20 26144 c:\windows\system32\spupdsvc.exe
+ 2005-06-10 23:55 . 2010-08-17 13:17 58880 c:\windows\system32\spoolsv.exe
+ 2006-12-25 18:38 . 2009-01-07 17:20 17952 c:\windows\system32\spmsg.dll
+ 2010-11-15 16:16 . 2009-08-06 18:24 44768 c:\windows\system32\SoftwareDistribution\Setup\ServiceStartup\wups2.dll\7.4.7600.226\wups2.dll
+ 2010-11-15 16:17 . 2009-08-06 18:24 35552 c:\windows\system32\SoftwareDistribution\Setup\ServiceStartup\wups.dll\7.4.7600.226\wups.dll
+ 2002-09-23 12:00 . 2009-06-25 08:27 56832 c:\windows\system32\secur32.dll
- 2002-09-23 12:00 . 2009-02-03 19:58 56832 c:\windows\system32\secur32.dll
+ 2002-09-23 12:00 . 2009-10-12 13:40 79872 c:\windows\system32\raschap.dll
- 2002-09-23 12:00 . 2008-04-14 06:51 79872 c:\windows\system32\raschap.dll
+ 2010-03-30 23:16 . 2010-03-30 23:16 99176 c:\windows\system32\PresentationHostProxy.dll
+ 2002-09-23 12:00 . 2009-03-08 03:31 46592 c:\windows\system32\pngfilt.dll
- 2002-09-23 12:00 . 2010-11-15 12:54 71786 c:\windows\system32\perfc009.dat
+ 2002-09-23 12:00 . 2010-11-16 10:16 71786 c:\windows\system32\perfc009.dat
- 2002-09-23 12:00 . 2010-11-15 12:54 83330 c:\windows\system32\perfc005.dat
+ 2002-09-23 12:00 . 2010-11-16 10:16 83330 c:\windows\system32\perfc005.dat
- 2006-06-29 07:05 . 2006-06-29 07:05 23552 c:\windows\system32\normaliz.dll
+ 2006-06-29 07:05 . 2009-01-07 17:20 23552 c:\windows\system32\normaliz.dll
- 2006-06-28 16:59 . 2006-06-28 16:59 24576 c:\windows\system32\nlsdl.dll
+ 2006-06-28 16:59 . 2009-01-07 17:20 24576 c:\windows\system32\nlsdl.dll
+ 2009-11-07 00:07 . 2009-11-07 00:07 49488 c:\windows\system32\netfxperf.dll
+ 2009-11-07 00:07 . 2009-11-07 00:07 11600 c:\windows\system32\mui\0409\mscorees.dll
+ 2006-12-26 14:54 . 2009-11-27 17:14 17920 c:\windows\system32\msyuv.dll
+ 2002-09-23 12:00 . 2009-11-27 16:09 28672 c:\windows\system32\msvidc32.dll
+ 2002-09-23 12:00 . 2009-11-27 16:09 11264 c:\windows\system32\msrle32.dll
- 2002-09-23 12:00 . 2008-04-14 06:51 11264 c:\windows\system32\msrle32.dll
+ 2002-09-23 12:00 . 2009-03-08 03:31 48128 c:\windows\system32\mshtmler.dll
+ 2002-09-23 12:00 . 2010-09-10 05:52 66560 c:\windows\system32\mshtmled.dll
+ 2002-09-23 12:00 . 2009-03-08 03:31 45568 c:\windows\system32\mshta.exe
+ 2009-03-08 03:31 . 2009-03-08 03:31 13312 c:\windows\system32\msfeedssync.exe
+ 2009-03-08 03:31 . 2010-09-10 05:52 55296 c:\windows\system32\msfeedsbs.dll
+ 2002-09-23 12:00 . 2009-09-04 21:05 58880 c:\windows\system32\msasn1.dll
+ 2002-09-23 12:00 . 2010-09-10 05:52 25600 c:\windows\system32\jsproxy.dll
+ 2006-12-26 00:51 . 2009-11-27 16:09 48128 c:\windows\system32\iyuv_32.dll
+ 2002-09-23 12:00 . 2009-03-08 03:32 94720 c:\windows\system32\inseng.dll
+ 2002-09-23 12:00 . 2009-03-08 03:31 34816 c:\windows\system32\imgutil.dll
+ 2009-03-08 03:32 . 2009-03-08 03:32 36864 c:\windows\system32\ieudinit.exe
+ 2002-09-23 12:00 . 2009-03-08 03:32 71680 c:\windows\system32\iesetup.dll
+ 2002-09-23 12:00 . 2009-03-08 03:32 55808 c:\windows\system32\iernonce.dll
- 2006-06-29 07:05 . 2006-06-29 07:05 26112 c:\windows\system32\idndl.dll
+ 2006-06-29 07:05 . 2009-01-07 17:20 26112 c:\windows\system32\idndl.dll
- 2002-09-23 12:00 . 2008-04-14 06:51 80384 c:\windows\system32\iccvid.dll
+ 2002-09-23 12:00 . 2010-06-17 14:03 80384 c:\windows\system32\iccvid.dll
+ 2009-03-08 03:31 . 2009-03-08 03:31 59904 c:\windows\system32\icardie.dll
+ 2002-09-23 12:00 . 2009-10-15 16:32 81920 c:\windows\system32\fontsub.dll
- 2002-09-23 12:00 . 2009-07-29 04:36 81920 c:\windows\system32\fontsub.dll
+ 2002-09-23 12:00 . 2009-06-24 11:18 92928 c:\windows\system32\drivers\ksecdd.sys
+ 2006-12-25 18:33 . 2009-08-06 18:24 35552 c:\windows\system32\dllcache\wups.dll
+ 2006-12-26 00:27 . 2009-08-06 18:24 53472 c:\windows\system32\dllcache\wuauclt.exe
+ 2009-06-25 08:27 . 2009-06-25 08:27 54272 c:\windows\system32\dllcache\wdigest.dll
+ 2010-08-17 13:17 . 2010-08-17 13:17 58880 c:\windows\system32\dllcache\spoolsv.exe
+ 2009-08-26 13:43 . 2009-06-25 08:27 56832 c:\windows\system32\dllcache\secur32.dll
- 2009-08-26 13:43 . 2009-02-03 19:58 56832 c:\windows\system32\dllcache\secur32.dll
+ 2009-10-12 13:40 . 2009-10-12 13:40 79872 c:\windows\system32\dllcache\raschap.dll
+ 2009-03-08 03:31 . 2009-03-08 03:31 46592 c:\windows\system32\dllcache\pngfilt.dll
+ 2009-11-27 17:14 . 2009-11-27 17:14 17920 c:\windows\system32\dllcache\msyuv.dll
+ 2002-09-23 12:00 . 2009-11-27 16:09 28672 c:\windows\system32\dllcache\msvidc32.dll
+ 2009-11-27 16:09 . 2009-11-27 16:09 11264 c:\windows\system32\dllcache\msrle32.dll
+ 2009-03-08 03:31 . 2009-03-08 03:31 48128 c:\windows\system32\dllcache\mshtmler.dll
+ 2010-09-09 14:23 . 2010-09-10 05:52 66560 c:\windows\system32\dllcache\mshtmled.dll
+ 2009-03-08 03:31 . 2009-03-08 03:31 45568 c:\windows\system32\dllcache\mshta.exe
+ 2009-09-04 21:05 . 2009-09-04 21:05 58880 c:\windows\system32\dllcache\msasn1.dll
+ 2009-03-08 03:34 . 2010-09-10 05:52 43520 c:\windows\system32\dllcache\licmgr10.dll
+ 2009-06-24 11:18 . 2009-06-24 11:18 92928 c:\windows\system32\dllcache\ksecdd.sys
+ 2009-03-08 03:33 . 2010-09-10 05:52 25600 c:\windows\system32\dllcache\jsproxy.dll
+ 2009-11-27 16:09 . 2009-11-27 16:09 48128 c:\windows\system32\dllcache\iyuv_32.dll
+ 2009-03-08 03:32 . 2009-03-08 03:32 94720 c:\windows\system32\dllcache\inseng.dll
+ 2009-03-08 03:31 . 2009-03-08 03:31 34816 c:\windows\system32\dllcache\imgutil.dll
+ 2009-03-08 03:32 . 2009-03-08 03:32 71680 c:\windows\system32\dllcache\iesetup.dll
+ 2009-03-08 03:32 . 2009-03-08 03:32 55808 c:\windows\system32\dllcache\iernonce.dll
+ 2009-03-08 03:24 . 2009-03-08 03:24 68608 c:\windows\system32\dllcache\hmmapi.dll
+ 2009-07-29 04:36 . 2009-10-15 16:32 81920 c:\windows\system32\dllcache\fontsub.dll
- 2009-07-29 04:36 . 2009-07-29 04:36 81920 c:\windows\system32\dllcache\fontsub.dll
+ 2009-12-14 07:10 . 2009-12-14 07:10 33280 c:\windows\system32\dllcache\csrsrv.dll
+ 2009-03-08 03:33 . 2009-03-08 03:33 18944 c:\windows\system32\dllcache\corpol.dll
+ 2002-09-23 12:00 . 2009-08-06 18:24 96480 c:\windows\system32\dllcache\cdm.dll
+ 2010-01-13 14:02 . 2010-01-13 14:02 86016 c:\windows\system32\dllcache\cabview.dll
- 2009-06-10 14:15 . 2009-06-10 14:15 84992 c:\windows\system32\dllcache\avifil32.dll
+ 2009-06-10 14:15 . 2009-11-27 16:09 84992 c:\windows\system32\dllcache\avifil32.dll
+ 2010-03-05 14:42 . 2010-03-05 14:42 65536 c:\windows\system32\dllcache\asycfilt.dll
+ 2009-03-08 03:32 . 2009-03-08 03:32 72704 c:\windows\system32\dllcache\admparse.dll
+ 2002-09-23 12:00 . 2009-12-14 07:10 33280 c:\windows\system32\csrsrv.dll
+ 2002-09-23 12:00 . 2009-03-08 03:33 18944 c:\windows\system32\corpol.dll
+ 2002-09-23 12:00 . 2009-08-06 18:24 96480 c:\windows\system32\cdm.dll
+ 2002-09-23 12:00 . 2010-01-13 14:02 86016 c:\windows\system32\cabview.dll
+ 2002-09-23 12:00 . 2009-11-27 16:09 84992 c:\windows\system32\avifil32.dll
- 2002-09-23 12:00 . 2009-06-10 14:15 84992 c:\windows\system32\avifil32.dll
+ 2002-09-23 12:00 . 2010-03-05 14:42 65536 c:\windows\system32\asycfilt.dll
+ 2002-09-23 12:00 . 2009-03-08 03:32 72704 c:\windows\system32\admparse.dll
- 2008-07-29 17:16 . 2008-07-29 17:16 32768 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.ServiceModel.WasHosting.dll
+ 2010-04-07 22:48 . 2010-04-07 22:48 32768 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.ServiceModel.WasHosting.dll
+ 2009-11-07 00:07 . 2009-11-07 00:07 13648 c:\windows\Microsoft.NET\Framework\v2.0.50727\sbscmp20_mscorlib.dll
+ 2010-09-22 08:43 . 2010-09-22 08:43 30544 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_wp.exe
+ 2009-11-07 00:07 . 2009-11-07 00:07 13648 c:\windows\Microsoft.NET\Framework\SharedReg12.dll
+ 2009-11-07 00:07 . 2009-11-07 00:07 13648 c:\windows\Microsoft.NET\Framework\sbscmp20_perfcounter.dll
+ 2009-11-07 00:07 . 2009-11-07 00:07 13648 c:\windows\Microsoft.NET\Framework\sbscmp20_mscorwks.dll
+ 2009-11-07 00:07 . 2009-11-07 00:07 13648 c:\windows\Microsoft.NET\Framework\sbscmp10.dll
+ 2009-11-07 00:07 . 2009-11-07 00:07 13664 c:\windows\Microsoft.NET\Framework\sbs_wminet_utils.dll
+ 2009-11-07 00:07 . 2009-11-07 00:07 13688 c:\windows\Microsoft.NET\Framework\sbs_system.enterpriseservices.dll
+ 2009-11-07 00:07 . 2009-11-07 00:07 13664 c:\windows\Microsoft.NET\Framework\sbs_system.data.dll
+ 2009-11-07 00:07 . 2009-11-07 00:07 13696 c:\windows\Microsoft.NET\Framework\sbs_system.configuration.install.dll
+ 2009-11-07 00:07 . 2009-11-07 00:07 13656 c:\windows\Microsoft.NET\Framework\sbs_mscorsec.dll
+ 2009-11-07 00:07 . 2009-11-07 00:07 13656 c:\windows\Microsoft.NET\Framework\sbs_mscorrc.dll
+ 2009-11-07 00:07 . 2009-11-07 00:07 13656 c:\windows\Microsoft.NET\Framework\sbs_mscordbi.dll
+ 2009-11-07 00:07 . 2009-11-07 00:07 13672 c:\windows\Microsoft.NET\Framework\sbs_microsoft.jscript.dll
+ 2009-11-07 00:07 . 2009-11-07 00:07 13664 c:\windows\Microsoft.NET\Framework\sbs_diasymreader.dll
+ 2009-11-07 00:07 . 2009-11-07 00:07 86864 c:\windows\Microsoft.NET\Framework\NETFXSBS10.exe
+ 2010-11-16 08:26 . 2009-03-08 03:33 12288 c:\windows\ie8updates\KB982381-IE8\xpshims.dll
+ 2010-11-16 08:26 . 2009-03-08 03:31 55296 c:\windows\ie8updates\KB982381-IE8\msfeedsbs.dll
+ 2010-11-16 08:26 . 2009-03-08 03:33 25600 c:\windows\ie8updates\KB982381-IE8\jsproxy.dll
+ 2010-11-16 08:38 . 2010-05-06 10:35 12800 c:\windows\ie8updates\KB2360131-IE8\xpshims.dll
+ 2010-11-16 08:38 . 2009-03-08 03:31 66560 c:\windows\ie8updates\KB2360131-IE8\mshtmled.dll
+ 2010-11-16 08:38 . 2010-05-06 10:35 55296 c:\windows\ie8updates\KB2360131-IE8\msfeedsbs.dll
+ 2010-11-16 08:38 . 2009-03-08 03:34 43008 c:\windows\ie8updates\KB2360131-IE8\licmgr10.dll
+ 2010-11-16 08:38 . 2010-05-06 10:35 25600 c:\windows\ie8updates\KB2360131-IE8\jsproxy.dll
+ 2010-11-16 07:56 . 2008-04-14 06:52 37888 c:\windows\ie8\url.dll
+ 2010-11-16 08:03 . 2009-03-08 15:57 58448 c:\windows\ie8\spuninst\iecustom.dll
+ 2010-11-16 07:56 . 2008-04-14 06:51 39424 c:\windows\ie8\pngfilt.dll
+ 2010-11-16 07:56 . 2008-04-14 06:51 96768 c:\windows\ie8\occache.dll
+ 2010-11-16 07:56 . 2008-04-14 05:42 56832 c:\windows\ie8\mshtmler.dll
+ 2010-11-16 07:56 . 2008-04-14 06:52 29184 c:\windows\ie8\mshta.exe
+ 2010-11-16 07:56 . 2008-04-14 06:51 22016 c:\windows\ie8\licmgr10.dll
+ 2010-11-16 07:56 . 2008-04-14 06:51 15872 c:\windows\ie8\jsproxy.dll
+ 2010-11-16 07:56 . 2008-04-14 06:51 96768 c:\windows\ie8\inseng.dll
+ 2010-11-16 07:55 . 2008-04-14 06:51 35840 c:\windows\ie8\imgutil.dll
+ 2010-11-16 07:55 . 2008-04-14 06:52 93184 c:\windows\ie8\iexplore.exe
+ 2010-11-16 07:55 . 2008-04-14 06:51 62976 c:\windows\ie8\iesetup.dll
+ 2010-11-16 07:55 . 2008-04-14 06:51 48128 c:\windows\ie8\iernonce.dll
+ 2010-11-16 07:55 . 2010-09-09 14:23 81920 c:\windows\ie8\ieencode.dll
+ 2010-11-16 07:55 . 2008-04-14 06:52 34304 c:\windows\ie8\ie4uinit.exe
+ 2010-11-16 07:55 . 2008-04-14 06:51 38912 c:\windows\ie8\hmmapi.dll
+ 2010-11-16 07:55 . 2008-04-14 06:51 35328 c:\windows\ie8\corpol.dll
+ 2010-11-16 07:55 . 2008-04-14 06:51 61440 c:\windows\ie8\admparse.dll
+ 2009-11-27 17:14 . 2009-11-27 17:14 17920 c:\windows\Driver Cache\i386\msyuv.dll
+ 2009-11-27 16:09 . 2009-11-27 16:09 48128 c:\windows\Driver Cache\i386\iyuv_32.dll
+ 2010-11-15 17:46 . 2010-11-15 17:46 60928 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationProvider\5ec9dec678303ebff0ef018edb5ec595\UIAutomationProvider.ni.dll
+ 2010-11-15 17:50 . 2010-11-15 17:50 37888 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Pres#\46ef15b88ef577de4882c519329fc5d2\System.Windows.Presentation.ni.dll
+ 2010-11-15 17:50 . 2010-11-15 17:50 36864 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\70ee6267f7bad40e8707d402277770c3\System.Web.DynamicData.Design.ni.dll
+ 2010-11-15 17:48 . 2010-11-15 17:48 94208 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ComponentMod#\2b5ff2c6358c483eb1439b99badb54fd\System.ComponentModel.DataAnnotations.ni.dll
+ 2010-11-15 17:48 . 2010-11-15 17:48 82944 c:\windows\assembly\NativeImages_v2.0.50727_32\System.AddIn.Contra#\6125ff5a4fcd93d70a246cbff3005d42\System.AddIn.Contract.ni.dll
+ 2010-11-15 17:42 . 2010-11-15 17:42 47104 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFontCac#\de26af01222270c121788161496fcfe7\PresentationFontCache.ni.exe
+ 2010-11-15 17:38 . 2010-11-15 17:38 39424 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCFFRast#\bfb89ce9799bcfb90bde99702d542e3f\PresentationCFFRasterizer.ni.dll
+ 2010-11-15 17:41 . 2010-11-15 17:41 39424 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCFFRast#\3c5adeedb70e6e052a6556c6ab9b6918\PresentationCFFRasterizer.ni.dll
+ 2010-11-15 17:49 . 2010-11-15 17:49 55296 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Vsa\5e5176efbfeb803b7f217525beec6844\Microsoft.Vsa.ni.dll
+ 2010-11-15 17:48 . 2010-11-15 17:48 74752 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\e1d4e0b1f112000ab33bbaf88bd9ed99\Microsoft.Build.Framework.ni.dll
+ 2010-11-15 17:48 . 2010-11-15 17:48 65024 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\4200cf5b7f247ec1b997808c6d1ba7d1\Microsoft.Build.Framework.ni.dll
+ 2010-11-15 17:48 . 2010-11-15 17:48 14336 c:\windows\assembly\NativeImages_v2.0.50727_32\dfsvc\50b7fc7f36c76313cbb434b10923e4e9\dfsvc.ni.exe
+ 2010-11-15 17:48 . 2010-11-15 17:48 25600 c:\windows\assembly\NativeImages_v2.0.50727_32\Accessibility\5ffa548547613dbc5a92f2c5b7cad196\Accessibility.ni.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 77824 c:\windows\assembly\GAC_MSIL\System.Web.RegularExpressions\2.0.0.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 77824 c:\windows\assembly\GAC_MSIL\System.Web.RegularExpressions\2.0.0.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
+ 2010-11-15 17:26 . 2010-11-15 17:26 32768 c:\windows\assembly\GAC_MSIL\System.ServiceModel.WasHosting\3.0.0.0__b77a5c561934e089\System.ServiceModel.WasHosting.dll
- 2009-08-26 14:14 . 2009-08-26 14:14 32768 c:\windows\assembly\GAC_MSIL\System.ServiceModel.WasHosting\3.0.0.0__b77a5c561934e089\System.ServiceModel.WasHosting.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 81920 c:\windows\assembly\GAC_MSIL\System.Drawing.Design\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 81920 c:\windows\assembly\GAC_MSIL\System.Drawing.Design\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 81920 c:\windows\assembly\GAC_MSIL\System.Configuration.Install\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 81920 c:\windows\assembly\GAC_MSIL\System.Configuration.Install\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 32768 c:\windows\assembly\GAC_MSIL\Microsoft.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 32768 c:\windows\assembly\GAC_MSIL\Microsoft.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 12800 c:\windows\assembly\GAC_MSIL\Microsoft.Vsa.Vb.CodeDOMProcessor\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 12800 c:\windows\assembly\GAC_MSIL\Microsoft.Vsa.Vb.CodeDOMProcessor\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 28672 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 28672 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 77824 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Utilities\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 77824 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Utilities\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 36864 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Framework\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 36864 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Framework\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 77824 c:\windows\assembly\GAC_MSIL\IEHost\2.0.0.0__b03f5f7f11d50a3a\IEHost.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 77824 c:\windows\assembly\GAC_MSIL\IEHost\2.0.0.0__b03f5f7f11d50a3a\IEHost.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 13312 c:\windows\assembly\GAC_MSIL\cscompmgd\8.0.0.0__b03f5f7f11d50a3a\cscompmgd.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 13312 c:\windows\assembly\GAC_MSIL\cscompmgd\8.0.0.0__b03f5f7f11d50a3a\cscompmgd.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 10752 c:\windows\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 10752 c:\windows\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 72192 c:\windows\assembly\GAC_32\ISymWrapper\2.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 72192 c:\windows\assembly\GAC_32\ISymWrapper\2.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 69120 c:\windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 69120 c:\windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
+ 2010-11-15 17:20 . 2008-07-08 12:59 26488 c:\windows\$hf_mig$\KB968389\update\spcustom.dll
+ 2010-11-15 17:20 . 2008-07-08 12:59 18296 c:\windows\$hf_mig$\KB968389\spmsg.dll
+ 2009-06-25 08:42 . 2009-06-25 08:42 54272 c:\windows\$hf_mig$\KB968389\SP3QFE\wdigest.dll
+ 2009-06-25 08:42 . 2009-06-25 08:42 56832 c:\windows\$hf_mig$\KB968389\SP3QFE\secur32.dll
+ 2009-06-24 10:28 . 2009-06-24 10:28 92928 c:\windows\$hf_mig$\KB968389\SP3QFE\ksecdd.sys
- 2009-08-26 14:17 . 2009-08-26 14:17 8192 c:\windows\WinSxS\MSIL_IEExecRemote_b03f5f7f11d50a3a_2.0.0.0_x-ww_6e57c34e\IEExecRemote.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 8192 c:\windows\WinSxS\MSIL_IEExecRemote_b03f5f7f11d50a3a_2.0.0.0_x-ww_6e57c34e\IEExecRemote.dll
+ 2008-05-05 05:25 . 2010-08-13 17:44 5632 c:\windows\system32\xpsp4res.dll
+ 2006-12-26 00:51 . 2009-11-27 16:09 8704 c:\windows\system32\tsbyuv.dll
+ 2006-12-26 00:51 . 2009-11-27 16:09 8704 c:\windows\system32\dllcache\tsbyuv.dll
+ 2010-11-16 08:32 . 2009-03-08 03:35 2048 c:\windows\ie8updates\KB2362765-IE8\iecompat.dll
+ 2009-11-27 16:09 . 2009-11-27 16:09 8704 c:\windows\Driver Cache\i386\tsbyuv.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 7168 c:\windows\assembly\GAC_MSIL\Microsoft_VsaVb\8.0.0.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 7168 c:\windows\assembly\GAC_MSIL\Microsoft_VsaVb\8.0.0.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 5632 c:\windows\assembly\GAC_MSIL\Microsoft.VisualC\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
- 2009-08-26 14:17 . 2009-08-26 14:17 5632 c:\windows\assembly\GAC_MSIL\Microsoft.VisualC\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
- 2009-08-26 14:17 . 2009-08-26 14:17 6656 c:\windows\assembly\GAC_MSIL\IIEHost\2.0.0.0__b03f5f7f11d50a3a\IIEHost.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 6656 c:\windows\assembly\GAC_MSIL\IIEHost\2.0.0.0__b03f5f7f11d50a3a\IIEHost.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 8192 c:\windows\assembly\GAC_MSIL\IEExecRemote\2.0.0.0__b03f5f7f11d50a3a\IEExecRemote.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 8192 c:\windows\assembly\GAC_MSIL\IEExecRemote\2.0.0.0__b03f5f7f11d50a3a\IEExecRemote.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 113664 c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.Wrapper.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 113664 c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.Wrapper.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 258048 c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 258048 c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.dll
+ 2009-03-16 14:27 . 2009-01-07 17:21 121856 c:\windows\system32\xmllite.dll
- 2009-03-16 14:27 . 2008-04-14 06:52 121856 c:\windows\system32\xmllite.dll
+ 2005-05-26 03:19 . 2009-08-06 18:23 209624 c:\windows\system32\wuweb.dll
+ 2006-12-25 18:33 . 2009-08-06 18:24 327896 c:\windows\system32\wucltui.dll
+ 2006-12-25 18:33 . 2009-08-06 18:23 575704 c:\windows\system32\wuapi.dll
+ 2005-01-28 12:44 . 2009-04-10 00:01 413032 c:\windows\system32\wmspdmod.dll
+ 2002-09-23 12:00 . 2009-12-24 07:04 177664 c:\windows\system32\wintrust.dll
- 2002-09-23 12:00 . 2008-04-14 06:52 293376 c:\windows\system32\winsrv.dll
+ 2002-09-23 12:00 . 2010-06-18 17:47 293376 c:\windows\system32\winsrv.dll
+ 2009-03-08 03:34 . 2009-03-08 03:34 208384 c:\windows\system32\WinFXDocObj.exe
+ 2002-09-23 12:00 . 2009-03-08 03:34 236544 c:\windows\system32\webcheck.dll
+ 2002-09-23 12:00 . 2009-03-08 03:33 420352 c:\windows\system32\vbscript.dll
- 2002-09-23 12:00 . 2008-04-14 06:52 406016 c:\windows\system32\usp10.dll
+ 2002-09-23 12:00 . 2010-04-16 15:38 406016 c:\windows\system32\usp10.dll
+ 2002-09-23 12:00 . 2009-03-08 03:34 105984 c:\windows\system32\url.dll
+ 2002-09-23 12:00 . 2009-08-26 08:02 247326 c:\windows\system32\strmdll.dll
- 2002-09-23 12:00 . 2008-10-03 10:04 247326 c:\windows\system32\strmdll.dll
+ 2010-11-15 16:17 . 2009-08-06 18:23 575704 c:\windows\system32\SoftwareDistribution\Setup\ServiceStartup\wuapi.dll\7.4.7600.226\wuapi.dll
+ 2002-09-23 12:00 . 2010-06-30 12:33 149504 c:\windows\system32\schannel.dll
- 2005-09-01 02:32 . 2008-04-14 06:51 474112 c:\windows\system32\shlwapi.dll
+ 2005-09-01 02:32 . 2009-12-08 09:25 474112 c:\windows\system32\shlwapi.dll
+ 2004-03-06 02:20 . 2010-08-16 08:45 590848 c:\windows\system32\rpcrt4.dll
+ 2002-09-23 12:00 . 2009-10-12 13:40 150016 c:\windows\system32\rastls.dll
+ 2010-03-30 23:10 . 2010-03-30 23:10 295264 c:\windows\system32\PresentationHost.exe
- 2002-09-23 12:00 . 2010-11-15 12:54 441660 c:\windows\system32\perfh009.dat
+ 2002-09-23 12:00 . 2010-11-16 10:16 441660 c:\windows\system32\perfh009.dat
+ 2002-09-23 12:00 . 2010-11-16 10:16 438414 c:\windows\system32\perfh005.dat
- 2002-09-23 12:00 . 2010-11-15 12:54 438414 c:\windows\system32\perfh005.dat
+ 2002-09-23 12:00 . 2010-09-10 05:52 206848 c:\windows\system32\occache.dll
+ 2006-05-14 09:27 . 2009-10-13 10:34 271360 c:\windows\system32\oakley.dll
- 2006-05-14 09:27 . 2008-04-14 06:51 271360 c:\windows\system32\oakley.dll
+ 2002-09-23 12:00 . 2009-09-11 14:19 136192 c:\windows\system32\msv1_0.dll
+ 2002-09-23 12:00 . 2010-09-10 05:52 611840 c:\windows\system32\mstime.dll
+ 2002-09-23 12:00 . 2009-03-08 03:34 193536 c:\windows\system32\msrating.dll
+ 2006-12-26 00:27 . 2009-12-17 07:42 343552 c:\windows\system32\mspaint.exe
- 2006-12-26 00:27 . 2008-04-14 06:52 343552 c:\windows\system32\mspaint.exe
+ 2002-09-23 12:00 . 2009-03-08 03:22 156160 c:\windows\system32\msls31.dll
+ 2009-03-08 03:32 . 2010-09-10 05:52 602112 c:\windows\system32\msfeeds.dll
+ 2009-01-07 17:20 . 2009-01-07 17:20 265720 c:\windows\system32\msdbg2.dll
+ 2009-11-07 00:07 . 2009-11-07 00:07 297808 c:\windows\system32\mscoree.dll
+ 2006-12-26 14:22 . 2010-04-05 10:54 384512 c:\windows\system32\mp4sdmod.dll
- 2006-12-26 14:22 . 2004-08-17 14:49 384512 c:\windows\system32\mp4sdmod.dll
+ 2002-09-23 12:00 . 2009-06-25 08:27 729088 c:\windows\system32\lsasrv.dll
+ 2005-06-15 17:52 . 2009-06-25 08:27 301568 c:\windows\system32\kerberos.dll
+ 2002-09-23 12:00 . 2009-03-08 03:33 726528 c:\windows\system32\jscript.dll
+ 2006-12-26 00:29 . 2010-01-29 15:01 691712 c:\windows\system32\inetcomm.dll
- 2006-12-26 00:29 . 2008-04-11 19:06 691712 c:\windows\system32\inetcomm.dll
+ 2009-03-08 03:22 . 2009-03-08 03:22 164352 c:\windows\system32\ieui.dll
+ 2002-09-23 12:00 . 2010-09-10 05:52 184320 c:\windows\system32\iepeers.dll
+ 2002-09-23 12:00 . 2010-09-10 05:52 387584 c:\windows\system32\iedkcs32.dll
+ 2009-03-08 03:11 . 2009-03-08 03:11 445952 c:\windows\system32\ieapfltr.dll
+ 2002-09-23 12:00 . 2009-03-08 03:32 163840 c:\windows\system32\ieakui.dll
+ 2002-09-23 12:00 . 2009-03-08 03:33 229376 c:\windows\system32\ieaksie.dll
+ 2002-09-23 12:00 . 2009-03-08 03:33 125952 c:\windows\system32\ieakeng.dll
+ 2002-09-23 12:00 . 2010-08-26 12:22 173056 c:\windows\system32\ie4uinit.exe
- 2006-12-26 01:20 . 2009-12-05 17:25 121336 c:\windows\system32\FNTCACHE.DAT
+ 2006-12-26 01:20 . 2010-11-16 10:11 121336 c:\windows\system32\FNTCACHE.DAT
+ 2002-09-23 12:00 . 2009-03-08 03:31 216064 c:\windows\system32\dxtrans.dll
+ 2002-09-23 12:00 . 2009-03-08 03:31 348160 c:\windows\system32\dxtmsft.dll
+ 2002-09-23 12:00 . 2010-02-11 12:02 226880 c:\windows\system32\drivers\tcpip6.sys
+ 2002-09-23 12:00 . 2010-06-21 15:27 354304 c:\windows\system32\drivers\srv.sys
+ 2002-09-23 12:00 . 2010-02-24 13:11 455680 c:\windows\system32\drivers\mrxsmb.sys
+ 2005-05-26 03:19 . 2009-08-06 18:23 209624 c:\windows\system32\dllcache\wuweb.dll
+ 2006-12-25 18:33 . 2009-08-06 18:24 327896 c:\windows\system32\dllcache\wucltui.dll
+ 2006-12-25 18:33 . 2009-08-06 18:23 575704 c:\windows\system32\dllcache\wuapi.dll
+ 2009-08-26 12:14 . 2010-07-16 11:58 219136 c:\windows\system32\dllcache\wordpad.exe
+ 2009-04-10 00:01 . 2009-04-10 00:01 413032 c:\windows\system32\dllcache\wmspdmod.dll
+ 2009-12-24 07:04 . 2009-12-24 07:04 177664 c:\windows\system32\dllcache\wintrust.dll
+ 2010-06-18 17:47 . 2010-06-18 17:47 293376 c:\windows\system32\dllcache\winsrv.dll
+ 2008-08-20 05:10 . 2010-09-10 05:52 916480 c:\windows\system32\dllcache\wininet.dll
+ 2009-03-08 03:34 . 2009-03-08 03:34 236544 c:\windows\system32\dllcache\webcheck.dll
+ 2009-03-08 03:33 . 2009-03-08 03:33 759296 c:\windows\system32\dllcache\VGX.dll
+ 2008-05-09 10:56 . 2009-03-08 03:33 420352 c:\windows\system32\dllcache\vbscript.dll
+ 2010-04-16 15:38 . 2010-04-16 15:38 406016 c:\windows\system32\dllcache\usp10.dll
+ 2009-03-08 03:34 . 2009-03-08 03:34 105984 c:\windows\system32\dllcache\url.dll
+ 2008-06-20 11:08 . 2010-02-11 12:02 226880 c:\windows\system32\dllcache\tcpip6.sys
+ 2009-07-29 04:36 . 2010-08-27 08:03 119808 c:\windows\system32\dllcache\t2embed.dll
- 2009-07-29 04:36 . 2009-07-29 04:36 119808 c:\windows\system32\dllcache\t2embed.dll
- 2008-12-12 10:21 . 2008-10-03 10:04 247326 c:\windows\system32\dllcache\strmdll.dll
+ 2008-12-12 10:21 . 2009-08-26 08:02 247326 c:\windows\system32\dllcache\strmdll.dll
+ 2008-12-08 20:22 . 2010-06-21 15:27 354304 c:\windows\system32\dllcache\srv.sys
+ 2009-01-07 17:20 . 2009-01-07 17:20 134144 c:\windows\system32\dllcache\sqmapi.dll
+ 2008-12-05 06:57 . 2010-06-30 12:33 149504 c:\windows\system32\dllcache\schannel.dll
+ 2009-12-08 09:25 . 2009-12-08 09:25 474112 c:\windows\system32\dllcache\shlwapi.dll
+ 2009-04-15 14:54 . 2010-08-16 08:45 590848 c:\windows\system32\dllcache\rpcrt4.dll
+ 2009-10-12 13:40 . 2009-10-12 13:40 150016 c:\windows\system32\dllcache\rastls.dll
+ 2009-03-08 03:34 . 2010-09-10 05:52 206848 c:\windows\system32\dllcache\occache.dll
+ 2009-10-13 10:34 . 2009-10-13 10:34 271360 c:\windows\system32\dllcache\oakley.dll
+ 2009-06-25 08:27 . 2009-09-11 14:19 136192 c:\windows\system32\dllcache\msv1_0.dll
+ 2009-03-08 03:32 . 2010-09-10 05:52 611840 c:\windows\system32\dllcache\mstime.dll
+ 2009-03-08 03:34 . 2009-03-08 03:34 193536 c:\windows\system32\dllcache\msrating.dll
+ 2009-12-17 07:42 . 2009-12-17 07:42 343552 c:\windows\system32\dllcache\mspaint.exe
+ 2002-09-23 12:00 . 2009-03-08 03:22 156160 c:\windows\system32\dllcache\msls31.dll
+ 2008-12-08 20:25 . 2010-02-24 13:11 455680 c:\windows\system32\dllcache\mrxsmb.sys
+ 2010-04-05 10:54 . 2010-04-05 10:54 384512 c:\windows\system32\dllcache\mp4sdmod.dll
+ 2006-10-14 08:13 . 2010-09-18 11:23 974848 c:\windows\system32\dllcache\mfc42u.dll
+ 2002-09-23 12:00 . 2010-09-18 06:53 954368 c:\windows\system32\dllcache\mfc40.dll
+ 2009-08-26 12:16 . 2009-06-25 08:27 729088 c:\windows\system32\dllcache\lsasrv.dll
+ 2009-06-25 08:27 . 2009-06-25 08:27 301568 c:\windows\system32\dllcache\kerberos.dll
+ 2008-05-09 10:56 . 2009-03-08 03:33 726528 c:\windows\system32\dllcache\jscript.dll
+ 2008-12-08 20:17 . 2010-01-29 15:01 691712 c:\windows\system32\dllcache\inetcomm.dll
- 2008-12-08 20:17 . 2008-04-11 19:06 691712 c:\windows\system32\dllcache\inetcomm.dll
+ 2009-03-08 13:09 . 2009-03-08 13:09 638816 c:\windows\system32\dllcache\iexplore.exe
+ 2010-09-09 14:23 . 2010-09-10 05:52 184320 c:\windows\system32\dllcache\iepeers.dll
+ 2009-03-08 13:09 . 2010-09-10 05:52 387584 c:\windows\system32\dllcache\iedkcs32.dll
+ 2002-09-23 12:00 . 2009-03-08 03:32 163840 c:\windows\system32\dllcache\ieakui.dll
+ 2009-03-08 03:33 . 2009-03-08 03:33 229376 c:\windows\system32\dllcache\ieaksie.dll
+ 2009-03-08 03:33 . 2009-03-08 03:33 125952 c:\windows\system32\dllcache\ieakeng.dll
+ 2009-03-08 03:32 . 2010-08-26 12:22 173056 c:\windows\system32\dllcache\ie4uinit.exe
+ 2009-03-08 03:31 . 2009-03-08 03:31 216064 c:\windows\system32\dllcache\dxtrans.dll
+ 2009-03-08 03:31 . 2009-03-08 03:31 348160 c:\windows\system32\dllcache\dxtmsft.dll
+ 2010-09-01 11:52 . 2010-09-01 11:52 285824 c:\windows\system32\dllcache\atmfd.dll
+ 2009-03-08 03:32 . 2009-03-08 03:32 128512 c:\windows\system32\dllcache\advpack.dll
+ 2010-02-12 04:35 . 2010-02-12 04:35 100864 c:\windows\system32\dllcache\6to4svc.dll
+ 2002-09-23 12:00 . 2009-03-08 03:32 128512 c:\windows\system32\advpack.dll
+ 2006-08-16 12:16 . 2010-02-12 04:35 100864 c:\windows\system32\6to4svc.dll

Re: Nod hlasí červy...prosím o pomoc

Napsal: 16 lis 2010 12:01
od Duhen
+ 2006-12-26 00:29 . 2010-06-14 14:31 744448 c:\windows\PCHealth\HelpCtr\Binaries\helpsvc.exe
- 2006-12-26 00:29 . 2008-04-14 06:52 744448 c:\windows\PCHealth\HelpCtr\Binaries\helpsvc.exe
+ 2010-03-30 23:16 . 2010-03-30 23:16 130408 c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationHostDLL.dll
+ 2010-04-07 22:48 . 2010-04-07 22:48 970752 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
+ 2010-04-07 22:48 . 2010-04-07 22:48 110592 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMdiagnostics.dll
- 2008-07-29 17:16 . 2008-07-29 17:16 110592 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMdiagnostics.dll
+ 2010-09-22 08:43 . 2010-09-22 08:43 435024 c:\windows\Microsoft.NET\Framework\v2.0.50727\webengine.dll
- 2008-07-25 09:17 . 2008-07-25 09:17 258048 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Security.dll
+ 2010-02-09 11:22 . 2010-02-09 11:22 258048 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Security.dll
+ 2010-05-11 05:40 . 2010-05-11 05:40 388936 c:\windows\Microsoft.NET\Framework\v2.0.50727\SOS.dll
+ 2010-05-11 05:40 . 2010-05-11 05:40 989016 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dll
+ 2010-09-23 20:02 . 2010-09-23 20:02 798208 c:\windows\Installer\3f7041.msp
+ 2009-03-20 10:48 . 2009-03-20 10:48 183808 c:\windows\Installer\3f7011.msp
+ 2010-02-24 23:14 . 2010-02-24 23:14 543232 c:\windows\Installer\3f6fd4.msp
+ 2010-11-16 08:26 . 2009-03-08 03:34 914944 c:\windows\ie8updates\KB982381-IE8\wininet.dll
+ 2010-11-16 08:26 . 2010-02-22 14:21 391032 c:\windows\ie8updates\KB982381-IE8\spuninst\updspapi.dll
+ 2010-11-16 08:26 . 2008-07-08 12:59 233848 c:\windows\ie8updates\KB982381-IE8\spuninst\spuninst.exe
+ 2010-11-16 08:26 . 2009-03-08 03:34 109568 c:\windows\ie8updates\KB982381-IE8\occache.dll
+ 2010-11-16 08:26 . 2009-03-08 03:32 611840 c:\windows\ie8updates\KB982381-IE8\mstime.dll
+ 2010-11-16 08:26 . 2009-03-08 03:32 594432 c:\windows\ie8updates\KB982381-IE8\msfeeds.dll
+ 2010-11-16 08:26 . 2009-03-08 03:33 246784 c:\windows\ie8updates\KB982381-IE8\ieproxy.dll
+ 2010-11-16 08:26 . 2009-03-08 03:31 183808 c:\windows\ie8updates\KB982381-IE8\iepeers.dll
+ 2010-11-16 08:26 . 2009-03-08 03:35 742912 c:\windows\ie8updates\KB982381-IE8\iedvtool.dll
+ 2010-11-16 08:26 . 2009-03-08 13:09 391536 c:\windows\ie8updates\KB982381-IE8\iedkcs32.dll
+ 2010-11-16 08:26 . 2009-03-08 03:32 173056 c:\windows\ie8updates\KB982381-IE8\ie4uinit.exe
+ 2010-11-16 08:32 . 2010-02-22 14:21 391032 c:\windows\ie8updates\KB2362765-IE8\spuninst\updspapi.dll
+ 2010-11-16 08:32 . 2010-02-22 14:20 233848 c:\windows\ie8updates\KB2362765-IE8\spuninst\spuninst.exe
+ 2010-11-16 08:38 . 2010-05-06 10:35 916480 c:\windows\ie8updates\KB2360131-IE8\wininet.dll
+ 2010-11-16 08:38 . 2010-07-05 13:13 391032 c:\windows\ie8updates\KB2360131-IE8\spuninst\updspapi.dll
+ 2010-11-16 08:38 . 2010-02-22 14:20 233848 c:\windows\ie8updates\KB2360131-IE8\spuninst\spuninst.exe
+ 2010-11-16 08:38 . 2010-05-06 10:35 206848 c:\windows\ie8updates\KB2360131-IE8\occache.dll
+ 2010-11-16 08:38 . 2010-05-06 10:35 611840 c:\windows\ie8updates\KB2360131-IE8\mstime.dll
+ 2010-11-16 08:38 . 2010-05-06 10:35 599040 c:\windows\ie8updates\KB2360131-IE8\msfeeds.dll
+ 2010-11-16 08:38 . 2010-05-06 10:35 247808 c:\windows\ie8updates\KB2360131-IE8\ieproxy.dll
+ 2010-11-16 08:38 . 2010-05-06 10:35 184320 c:\windows\ie8updates\KB2360131-IE8\iepeers.dll
+ 2010-11-16 08:38 . 2010-05-06 10:35 743424 c:\windows\ie8updates\KB2360131-IE8\iedvtool.dll
+ 2010-11-16 08:38 . 2010-05-06 10:35 387584 c:\windows\ie8updates\KB2360131-IE8\iedkcs32.dll
+ 2010-11-16 08:38 . 2010-05-05 13:30 173056 c:\windows\ie8updates\KB2360131-IE8\ie4uinit.exe
+ 2010-11-16 07:55 . 2010-09-09 14:23 668160 c:\windows\ie8\wininet.dll
+ 2010-11-16 07:56 . 2008-04-14 06:52 278528 c:\windows\ie8\webcheck.dll
+ 2010-11-16 07:55 . 2008-04-14 06:52 851968 c:\windows\ie8\vgx.dll
+ 2010-11-16 07:55 . 2008-05-09 10:56 430080 c:\windows\ie8\vbscript.dll
+ 2010-11-16 07:55 . 2010-09-09 14:23 627200 c:\windows\ie8\urlmon.dll
+ 2010-11-16 08:03 . 2009-01-07 17:20 390688 c:\windows\ie8\spuninst\updspapi.dll
+ 2010-11-16 08:03 . 2009-01-07 17:20 234016 c:\windows\ie8\spuninst\spuninst.exe
+ 2010-11-16 07:56 . 2008-04-14 06:51 532480 c:\windows\ie8\mstime.dll
+ 2010-11-16 07:56 . 2008-04-14 06:51 146432 c:\windows\ie8\msrating.dll
+ 2010-11-16 07:55 . 2002-09-23 12:00 146432 c:\windows\ie8\msls31.dll
+ 2010-11-16 07:55 . 2010-09-09 14:23 449024 c:\windows\ie8\mshtmled.dll
+ 2010-11-16 07:55 . 2009-08-13 15:24 512000 c:\windows\ie8\jscript.dll
+ 2010-11-16 07:55 . 2010-09-09 14:23 251904 c:\windows\ie8\iepeers.dll
+ 2010-11-16 07:55 . 2008-04-14 06:51 323584 c:\windows\ie8\iedkcs32.dll
+ 2010-11-16 07:55 . 2002-09-23 12:00 225280 c:\windows\ie8\ieakui.dll
+ 2010-11-16 07:55 . 2008-04-14 06:51 219136 c:\windows\ie8\ieaksie.dll
+ 2010-11-16 07:55 . 2008-04-14 06:51 143360 c:\windows\ie8\ieakeng.dll
+ 2010-11-16 07:55 . 2008-04-14 06:51 205312 c:\windows\ie8\dxtrans.dll
+ 2010-11-16 07:55 . 2008-04-14 06:51 357888 c:\windows\ie8\dxtmsft.dll
+ 2010-11-16 07:55 . 2008-04-14 06:51 100352 c:\windows\ie8\advpack.dll
+ 2008-12-08 20:25 . 2010-02-24 13:11 455680 c:\windows\Driver Cache\i386\mrxsmb.sys
+ 2010-11-15 17:48 . 2010-11-15 17:48 321536 c:\windows\assembly\NativeImages_v2.0.50727_32\WsatConfig\a16b8bcca59515281688ec856c034698\WsatConfig.ni.exe
+ 2010-11-15 17:46 . 2010-11-15 17:46 240128 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsFormsIntegra#\672c4d8e3c33e309c1ed90fa4cb85aba\WindowsFormsIntegration.ni.dll
+ 2010-11-15 17:46 . 2010-11-15 17:46 187904 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationTypes\cd91a32f4e36ccb2981c72c0d333e928\UIAutomationTypes.ni.dll
+ 2010-11-15 17:46 . 2010-11-15 17:46 447488 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClient\9df760fdf8071c7b0de78f39de365e6a\UIAutomationClient.ni.dll
+ 2010-11-15 17:50 . 2010-11-15 17:50 400896 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml.Linq\ff53d5b5249a2841ee196294429f51cf\System.Xml.Linq.ni.dll
+ 2010-11-15 17:50 . 2010-11-15 17:50 129536 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Routing\7f9a1ae146571025fd49914b5c71a39b\System.Web.Routing.ni.dll
+ 2010-11-15 17:50 . 2010-11-15 17:50 202240 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.RegularE#\d0ae809162b55e2fa958739177476af8\System.Web.RegularExpressions.ni.dll
+ 2010-11-15 17:50 . 2010-11-15 17:50 859648 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\b1646e54b708b9824f4193f87eb00c0e\System.Web.Extensions.Design.ni.dll
+ 2010-11-15 17:50 . 2010-11-15 17:50 328704 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity\504a93e73da77c502ecf98bfdfc1485e\System.Web.Entity.ni.dll
+ 2010-11-15 17:50 . 2010-11-15 17:50 301056 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity.D#\f22334fbd9497d79448fffef515ae0cc\System.Web.Entity.Design.ni.dll
+ 2010-11-15 17:50 . 2010-11-15 17:50 547328 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\af5452305588da228a74e30324681d20\System.Web.DynamicData.ni.dll
+ 2010-11-15 17:50 . 2010-11-15 17:50 141312 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Abstract#\9d9bca1a8993c427984aa1bc9c165a33\System.Web.Abstractions.ni.dll
+ 2010-11-15 17:49 . 2010-11-15 17:49 627200 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Transactions\26d5bf1f7e700c2c19aa9b1da5519b24\System.Transactions.ni.dll
+ 2010-11-15 17:49 . 2010-11-15 17:49 212992 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\8b000cc703c9d95593b516bf2c2ec316\System.ServiceProcess.ni.dll
+ 2010-11-15 17:48 . 2010-11-15 17:48 679936 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Security\75e331a5d731d8e207be07adc06dec23\System.Security.ni.dll
+ 2010-11-15 17:49 . 2010-11-15 17:49 311296 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\dd7497aa089340600c8c5af8ab421ff7\System.Runtime.Serialization.Formatters.Soap.ni.dll
+ 2010-11-15 17:49 . 2010-11-15 17:49 621056 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Net\2a080994f308f347b0497bb8804861cf\System.Net.ni.dll
+ 2010-11-15 17:49 . 2010-11-15 17:49 998400 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management\bc1cf48ba7dc00f45d0e949c49ab677a\System.Management.ni.dll
+ 2010-11-15 17:49 . 2010-11-15 17:49 330752 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management.I#\904fda53006680a67f917ab638be0305\System.Management.Instrumentation.ni.dll
+ 2010-11-15 17:47 . 2010-11-15 17:47 381440 c:\windows\assembly\NativeImages_v2.0.50727_32\System.IO.Log\4490976887e2e5a3b594041edbdf5064\System.IO.Log.ni.dll
+ 2010-11-15 17:48 . 2010-11-15 17:48 212992 c:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityMode#\77b9f6f6671aaaeb84c6907d467e792c\System.IdentityModel.Selectors.ni.dll
+ 2010-11-15 17:49 . 2010-11-15 17:49 280064 c:\windows\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\15724a7517f939c9b300f341fb5620b8\System.EnterpriseServices.Wrapper.dll
+ 2010-11-15 17:49 . 2010-11-15 17:49 627712 c:\windows\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\15724a7517f939c9b300f341fb5620b8\System.EnterpriseServices.ni.dll
+ 2010-11-15 17:45 . 2010-11-15 17:45 208384 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing.Desi#\90199b4aa63b1b9c8ed0c3de16eec824\System.Drawing.Design.ni.dll
+ 2010-11-15 17:49 . 2010-11-15 17:49 881152 c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\849e98c9f428a12cb581320a23f69dbd\System.DirectoryServices.AccountManagement.ni.dll
+ 2010-11-15 17:49 . 2010-11-15 17:49 455680 c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\7a823a4f61cf8c86aad02559f8fed07b\System.DirectoryServices.Protocols.ni.dll
+ 2010-11-15 17:49 . 2010-11-15 17:49 354816 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\ad95820d2e29e8d55c0d8a838214c6e5\System.Data.Services.Design.ni.dll
+ 2010-11-15 17:49 . 2010-11-15 17:49 939008 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\617acb0d900bdde947ec79f7b5ccc183\System.Data.Services.Client.ni.dll
+ 2010-11-15 17:49 . 2010-11-15 17:49 756736 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity.#\165bd290e518b9397ca55192985fdee3\System.Data.Entity.Design.ni.dll
+ 2010-11-15 17:48 . 2010-11-15 17:48 135680 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.DataSet#\41345e34f26854fc1878eae3e4d5d4a5\System.Data.DataSetExtensions.ni.dll
+ 2010-11-15 17:48 . 2010-11-15 17:48 971264 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\ab688d0f9f333ba117832726bfb589c1\System.Configuration.ni.dll
+ 2010-11-15 17:49 . 2010-11-15 17:49 141312 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuratio#\b48677ab9aa7a6830785f67b8478b4da\System.Configuration.Install.ni.dll
+ 2010-11-15 17:48 . 2010-11-15 17:48 633856 c:\windows\assembly\NativeImages_v2.0.50727_32\System.AddIn\93a0958d5557e2b380647af0171ad354\System.AddIn.ni.dll
+ 2010-11-15 17:48 . 2010-11-15 17:48 366080 c:\windows\assembly\NativeImages_v2.0.50727_32\SMSvcHost\d0758f84e927e3f0a15a6cde1b96d835\SMSvcHost.ni.exe
+ 2010-11-15 17:48 . 2010-11-15 17:48 256000 c:\windows\assembly\NativeImages_v2.0.50727_32\SMDiagnostics\8043a108e3bb2d3dcc84b547b8085e99\SMDiagnostics.ni.dll
+ 2010-11-15 17:48 . 2010-11-15 17:48 320512 c:\windows\assembly\NativeImages_v2.0.50727_32\ServiceModelReg\72d3aacfca2e1ce835c210f5a1decb36\ServiceModelReg.ni.exe
+ 2010-11-15 17:43 . 2010-11-15 17:43 368128 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\e7e7321956e6822b1bf3691c35c842f6\PresentationFramework.Aero.ni.dll
+ 2010-11-15 17:43 . 2010-11-15 17:43 258048 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\a14488afff027f0f2985e659449097f5\PresentationFramework.Royale.ni.dll
+ 2010-11-15 17:43 . 2010-11-15 17:43 224768 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\787e60c5dd562cb45887080095d2a3b7\PresentationFramework.Classic.ni.dll
+ 2010-11-15 17:43 . 2010-11-15 17:43 539648 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\2313ccc125dcb6a9800048ec1c51ec12\PresentationFramework.Luna.ni.dll
+ 2010-11-15 17:48 . 2010-11-15 17:48 133632 c:\windows\assembly\NativeImages_v2.0.50727_32\MSBuild\5db9c32d9f352162e6da220ca463db0d\MSBuild.ni.exe
+ 2010-11-15 17:48 . 2010-11-15 17:48 386560 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\fcf975f74bd134d8e0fa8f37c5bc6a8c\Microsoft.Transactions.Bridge.Dtc.ni.dll
+ 2010-11-15 17:48 . 2010-11-15 17:48 144384 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\d6b9038136600fbfbbbd7460dc19da19\Microsoft.Build.Utilities.ni.dll
+ 2010-11-15 17:48 . 2010-11-15 17:48 175104 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\585cc7218599e7806521d0e737ba5ffb\Microsoft.Build.Utilities.v3.5.ni.dll
+ 2010-11-15 17:48 . 2010-11-15 17:48 839680 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\3057ec53731286e69e389d103c32fa41\Microsoft.Build.Engine.ni.dll
+ 2010-11-15 17:48 . 2010-11-15 17:48 222720 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Con#\914e338ac6e92714f3e32ae5d89bf03b\Microsoft.Build.Conversion.v3.5.ni.dll
+ 2010-11-15 17:48 . 2010-11-15 17:48 220672 c:\windows\assembly\NativeImages_v2.0.50727_32\CustomMarshalers\12ae6f3635448471fc9f7d8bfe39c67d\CustomMarshalers.ni.dll
+ 2010-11-15 17:48 . 2010-11-15 17:48 410112 c:\windows\assembly\NativeImages_v2.0.50727_32\ComSvcConfig\daca3c9ad6d867d3fec70d14b4f20cf3\ComSvcConfig.ni.exe
+ 2010-11-15 17:48 . 2010-11-15 17:48 842240 c:\windows\assembly\NativeImages_v2.0.50727_32\AspNetMMCExt\af4a3ae6d5c1cafa57002beb487b8d7a\AspNetMMCExt.ni.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 839680 c:\windows\assembly\GAC_MSIL\System.Web.Services\2.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 839680 c:\windows\assembly\GAC_MSIL\System.Web.Services\2.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 835584 c:\windows\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 835584 c:\windows\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 114688 c:\windows\assembly\GAC_MSIL\System.ServiceProcess\2.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 114688 c:\windows\assembly\GAC_MSIL\System.ServiceProcess\2.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 258048 c:\windows\assembly\GAC_MSIL\System.Security\2.0.0.0__b03f5f7f11d50a3a\System.Security.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 258048 c:\windows\assembly\GAC_MSIL\System.Security\2.0.0.0__b03f5f7f11d50a3a\System.Security.dll
+ 2010-11-15 17:26 . 2010-11-15 17:26 970752 c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 131072 c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 131072 c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 303104 c:\windows\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 303104 c:\windows\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 258048 c:\windows\assembly\GAC_MSIL\System.Messaging\2.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 258048 c:\windows\assembly\GAC_MSIL\System.Messaging\2.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 372736 c:\windows\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 372736 c:\windows\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
+ 2010-11-15 17:26 . 2010-11-15 17:26 438272 c:\windows\assembly\GAC_MSIL\System.IdentityModel\3.0.0.0__b77a5c561934e089\System.IdentityModel.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 626688 c:\windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 626688 c:\windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 401408 c:\windows\assembly\GAC_MSIL\System.DirectoryServices\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 401408 c:\windows\assembly\GAC_MSIL\System.DirectoryServices\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 188416 c:\windows\assembly\GAC_MSIL\System.DirectoryServices.Protocols\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 188416 c:\windows\assembly\GAC_MSIL\System.DirectoryServices.Protocols\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 970752 c:\windows\assembly\GAC_MSIL\System.Deployment\2.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 970752 c:\windows\assembly\GAC_MSIL\System.Deployment\2.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 745472 c:\windows\assembly\GAC_MSIL\System.Data.SqlXml\2.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 745472 c:\windows\assembly\GAC_MSIL\System.Data.SqlXml\2.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 425984 c:\windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 425984 c:\windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 110592 c:\windows\assembly\GAC_MSIL\sysglobl\2.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 110592 c:\windows\assembly\GAC_MSIL\sysglobl\2.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
- 2009-08-26 14:13 . 2009-08-26 14:13 110592 c:\windows\assembly\GAC_MSIL\SMDiagnostics\3.0.0.0__b77a5c561934e089\SMdiagnostics.dll
+ 2010-11-15 17:26 . 2010-11-15 17:26 110592 c:\windows\assembly\GAC_MSIL\SMDiagnostics\3.0.0.0__b77a5c561934e089\SMdiagnostics.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 659456 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 659456 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 372736 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 372736 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 110592 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 110592 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 749568 c:\windows\assembly\GAC_MSIL\Microsoft.JScript\8.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 749568 c:\windows\assembly\GAC_MSIL\Microsoft.JScript\8.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 655360 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Tasks\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Tasks.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 655360 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Tasks\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Tasks.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 348160 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Engine\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Engine.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 348160 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Engine\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Engine.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 507904 c:\windows\assembly\GAC_MSIL\AspNetMMCExt\2.0.0.0__b03f5f7f11d50a3a\AspNetMMCExt.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 507904 c:\windows\assembly\GAC_MSIL\AspNetMMCExt\2.0.0.0__b03f5f7f11d50a3a\AspNetMMCExt.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 261632 c:\windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 261632 c:\windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 113664 c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 113664 c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 258048 c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 258048 c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 486400 c:\windows\assembly\GAC_32\System.Data.OracleClient\2.0.0.0__b77a5c561934e089\System.Data.OracleClient.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 486400 c:\windows\assembly\GAC_32\System.Data.OracleClient\2.0.0.0__b77a5c561934e089\System.Data.OracleClient.dll
+ 2002-09-23 12:00 . 2009-11-21 16:03 471552 c:\windows\AppPatch\aclayers.dll
+ 2010-11-15 17:20 . 2009-05-26 11:40 391032 c:\windows\$hf_mig$\KB968389\update\updspapi.dll
+ 2010-11-15 17:20 . 2009-05-26 11:40 759160 c:\windows\$hf_mig$\KB968389\update\update.exe
+ 2010-11-15 17:20 . 2008-07-08 12:59 233848 c:\windows\$hf_mig$\KB968389\spuninst.exe
+ 2009-06-25 08:42 . 2009-06-25 08:42 147456 c:\windows\$hf_mig$\KB968389\SP3QFE\schannel.dll
+ 2009-06-25 08:42 . 2009-06-25 08:42 136704 c:\windows\$hf_mig$\KB968389\SP3QFE\msv1_0.dll
+ 2009-06-26 09:42 . 2009-06-26 09:42 729088 c:\windows\$hf_mig$\KB968389\SP3QFE\lsasrv.dll
+ 2009-06-25 08:42 . 2009-06-25 08:42 301568 c:\windows\$hf_mig$\KB968389\SP3QFE\kerberos.dll
+ 2010-11-15 16:55 . 2009-08-13 13:56 1748992 c:\windows\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6001.22319_x-ww_f0b4c2df\GdiPlus.dll
+ 2010-11-15 16:53 . 2010-08-23 16:12 1054208 c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
+ 2006-12-26 00:27 . 2009-08-06 18:23 1929952 c:\windows\system32\wuaueng.dll
+ 2005-01-28 12:44 . 2010-04-03 05:39 2377576 c:\windows\system32\WMVCore.dll
+ 2004-08-10 23:41 . 2010-08-25 06:23 5541888 c:\windows\system32\wmp.dll
+ 2006-08-31 06:55 . 2010-09-10 05:52 1210880 c:\windows\system32\urlmon.dll
+ 2006-07-13 13:52 . 2010-07-27 06:30 8466432 c:\windows\system32\shell32.dll
+ 2006-09-04 06:25 . 2010-09-09 14:23 1510912 c:\windows\system32\shdocvw.dll
- 2002-09-23 12:00 . 2008-04-14 06:51 1437696 c:\windows\system32\query.dll
+ 2002-09-23 12:00 . 2009-07-17 16:17 1437696 c:\windows\system32\query.dll
+ 2006-12-26 14:54 . 2010-02-05 18:27 1294336 c:\windows\system32\quartz.dll
+ 2005-07-26 04:38 . 2010-07-16 12:00 1287680 c:\windows\system32\ole32.dll
+ 2002-09-23 12:00 . 2010-04-28 18:15 2192128 c:\windows\system32\ntoskrnl.exe
+ 2002-09-20 17:12 . 2010-04-28 05:45 2068992 c:\windows\system32\ntkrnlpa.exe
+ 2006-09-13 05:10 . 2010-06-14 07:43 1172480 c:\windows\system32\msxml3.dll
+ 2006-06-30 09:51 . 2010-09-10 05:52 5957120 c:\windows\system32\mshtml.dll
+ 2009-03-08 03:32 . 2010-09-10 05:52 1986560 c:\windows\system32\iertutil.dll
+ 2009-02-06 20:07 . 2009-02-06 20:07 3698584 c:\windows\system32\ieapfltr.dat
+ 2006-12-26 00:27 . 2009-08-06 18:23 1929952 c:\windows\system32\dllcache\wuaueng.dll
+ 2005-01-28 12:44 . 2010-04-03 05:39 2377576 c:\windows\system32\dllcache\WMVCore.dll
+ 2009-07-13 08:08 . 2010-08-25 06:23 5541888 c:\windows\system32\dllcache\wmp.dll
+ 2008-12-08 20:25 . 2010-09-01 07:57 1852800 c:\windows\system32\dllcache\win32k.sys
+ 2008-08-20 05:10 . 2010-09-10 05:52 1210880 c:\windows\system32\dllcache\urlmon.dll
+ 2008-06-17 19:02 . 2010-07-27 06:30 8466432 c:\windows\system32\dllcache\shell32.dll
+ 2008-08-20 05:10 . 2010-09-09 14:23 1510912 c:\windows\system32\dllcache\shdocvw.dll
+ 2009-07-17 16:17 . 2009-07-17 16:17 1437696 c:\windows\system32\dllcache\query.dll
+ 2008-05-07 05:12 . 2010-02-05 18:27 1294336 c:\windows\system32\dllcache\quartz.dll
+ 2010-07-16 12:00 . 2010-07-16 12:00 1287680 c:\windows\system32\dllcache\ole32.dll
+ 2008-12-08 20:19 . 2010-04-28 18:15 2192128 c:\windows\system32\dllcache\ntoskrnl.exe
+ 2008-12-08 20:19 . 2010-04-28 05:45 2026496 c:\windows\system32\dllcache\ntkrpamp.exe
+ 2008-12-08 20:19 . 2010-04-28 05:45 2068992 c:\windows\system32\dllcache\ntkrnlpa.exe
+ 2008-12-08 20:19 . 2010-04-28 05:45 2148352 c:\windows\system32\dllcache\ntkrnlmp.exe
+ 2002-09-23 12:00 . 2010-06-14 07:43 1172480 c:\windows\system32\dllcache\msxml3.dll
+ 2009-08-26 12:15 . 2010-01-29 15:01 1315328 c:\windows\system32\dllcache\msoe.dll
- 2009-08-26 12:15 . 2009-07-10 13:28 1315328 c:\windows\system32\dllcache\msoe.dll
+ 2008-08-20 05:10 . 2010-09-10 05:52 5957120 c:\windows\system32\dllcache\mshtml.dll
+ 2010-09-09 14:23 . 2010-09-09 14:23 1025024 c:\windows\system32\dllcache\browseui.dll
+ 2009-11-07 00:06 . 2009-11-07 00:06 1130824 c:\windows\system32\dfshim.dll
- 2006-09-04 06:25 . 2008-04-14 06:51 1025024 c:\windows\system32\browseui.dll
+ 2006-09-04 06:25 . 2010-09-09 14:23 1025024 c:\windows\system32\browseui.dll
+ 2010-04-07 22:48 . 2010-04-07 22:48 5967872 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.ServiceModel.dll
- 2008-11-25 02:59 . 2008-11-25 02:59 5242880 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Web.dll
+ 2010-09-22 08:44 . 2010-09-22 08:44 5242880 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Web.dll
+ 2010-03-23 04:32 . 2010-03-23 04:32 3182592 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.dll
+ 2010-05-11 05:40 . 2010-05-11 05:40 5812560 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
+ 2010-05-11 05:40 . 2010-05-11 05:40 4550656 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorlib.dll
+ 2009-11-08 23:25 . 2009-11-08 23:25 1935360 c:\windows\Installer\3f702c.msp
+ 2010-09-23 06:39 . 2010-09-23 06:39 4265472 c:\windows\Installer\3f6ffb.msp
+ 2010-04-11 21:17 . 2010-04-11 21:17 2607104 c:\windows\Installer\3f6fe1.msp
+ 2010-04-11 21:17 . 2010-04-11 21:17 4210688 c:\windows\Installer\3f6fe0.msp
+ 2010-11-16 08:26 . 2009-03-08 03:34 1206784 c:\windows\ie8updates\KB982381-IE8\urlmon.dll
+ 2010-11-16 08:26 . 2009-03-08 03:41 5937152 c:\windows\ie8updates\KB982381-IE8\mshtml.dll
+ 2010-11-16 08:26 . 2009-03-08 03:32 1985024 c:\windows\ie8updates\KB982381-IE8\iertutil.dll
+ 2010-11-16 08:38 . 2010-05-06 10:35 1209344 c:\windows\ie8updates\KB2360131-IE8\urlmon.dll
+ 2010-11-16 08:38 . 2010-05-06 10:35 5950976 c:\windows\ie8updates\KB2360131-IE8\mshtml.dll
+ 2010-11-16 08:38 . 2010-05-06 10:35 1985536 c:\windows\ie8updates\KB2360131-IE8\iertutil.dll
+ 2010-11-16 07:55 . 2010-09-09 14:23 3094528 c:\windows\ie8\mshtml.dll
+ 2008-12-08 20:19 . 2010-04-28 18:15 2192128 c:\windows\Driver Cache\i386\ntoskrnl.exe
+ 2008-12-08 20:19 . 2010-04-28 05:45 2026496 c:\windows\Driver Cache\i386\ntkrpamp.exe
+ 2008-12-08 20:19 . 2010-04-28 05:45 2068992 c:\windows\Driver Cache\i386\ntkrnlpa.exe
+ 2008-12-08 20:19 . 2010-04-28 05:45 2148352 c:\windows\Driver Cache\i386\ntkrnlmp.exe
+ 2010-11-15 17:41 . 2010-11-15 17:41 3325440 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\cec7ecb8eac09dd630d180ce87d23b80\WindowsBase.ni.dll
+ 2010-11-15 17:41 . 2010-11-15 17:41 3313664 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\3b743d968b43ce8025fccd58c251e4c4\WindowsBase.ni.dll
+ 2010-11-15 17:46 . 2010-11-15 17:46 1049600 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClients#\b7f6e7b265f9aae807ddc4284563e550\UIAutomationClientsideProviders.ni.dll
+ 2010-11-15 17:26 . 2010-11-15 17:26 7676928 c:\windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP793.tmp\System.dll
+ 2010-11-15 17:37 . 2010-11-15 17:37 7949824 c:\windows\assembly\NativeImages_v2.0.50727_32\System\08ffa4d388d5f007869aa7651c458e7c\System.ni.dll
+ 2010-11-15 17:45 . 2010-11-15 17:45 5450752 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml\a6dbe24cbfe3ab6b318ed3095cc572d8\System.Xml.ni.dll
+ 2010-11-15 17:50 . 2010-11-15 17:50 1356288 c:\windows\assembly\NativeImages_v2.0.50727_32\System.WorkflowServ#\bec60fe2e934a6284224ab45b0e981e2\System.WorkflowServices.ni.dll
+ 2010-11-15 17:50 . 2010-11-15 17:50 1908224 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Run#\09da139c48e2f5e76994a5c0f2e5b19e\System.Workflow.Runtime.ni.dll
+ 2010-11-15 17:50 . 2010-11-15 17:50 4514304 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Com#\6809417da74ff937e18b3034f1eac2f2\System.Workflow.ComponentModel.ni.dll
+ 2010-11-15 17:50 . 2010-11-15 17:50 2992640 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Act#\6c91ee82035d30efa8893e7b0396bbb0\System.Workflow.Activities.ni.dll
+ 2010-11-15 17:50 . 2010-11-15 17:50 1840640 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Services\181254ba0cb690decedb950fd26d7bea\System.Web.Services.ni.dll
+ 2010-11-15 17:50 . 2010-11-15 17:50 2209280 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Mobile\4200f716e9a41cb91d17516ba864e586\System.Web.Mobile.ni.dll
+ 2010-11-15 17:50 . 2010-11-15 17:50 2405376 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\da367bc2ecf2c9c5b4f858b6dba9e2ea\System.Web.Extensions.ni.dll
+ 2010-11-15 17:45 . 2010-11-15 17:45 1917952 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Speech\5eb08849d17b272ed2a393420cb0305b\System.Speech.ni.dll
+ 2010-11-15 17:49 . 2010-11-15 17:49 1706496 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel#\8e34e273d036b7468fc4e951a1fde437\System.ServiceModel.Web.ni.dll
+ 2010-11-15 17:47 . 2010-11-15 17:47 2345472 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\8061a0f5c1c2ee0549e19224352f67fa\System.Runtime.Serialization.ni.dll
+ 2010-11-15 17:45 . 2010-11-15 17:45 1035776 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Printing\99767d4df92b83fdfb06012512722ec1\System.Printing.ni.dll
+ 2010-11-15 17:47 . 2010-11-15 17:47 1070080 c:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityModel\095bb4f033374647b6d66c51f16bb886\System.IdentityModel.ni.dll
+ 2010-11-15 17:45 . 2010-11-15 17:45 1587200 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\dcc0244092fe52e6885b50be25ef3b31\System.Drawing.ni.dll
+ 2010-11-15 17:49 . 2010-11-15 17:49 1116672 c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\d20b7e58607ddb1ded9b687627ae8c21\System.DirectoryServices.ni.dll
+ 2010-11-15 17:49 . 2010-11-15 17:49 1801216 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Deployment\daa33674d4250e38a24b70180d209ac8\System.Deployment.ni.dll
+ 2010-11-15 17:44 . 2010-11-15 17:44 6616576 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data\f04ef00e652a8655a717639e8aeb7b63\System.Data.ni.dll
+ 2010-11-15 17:48 . 2010-11-15 17:48 2510336 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.SqlXml\f0470c2be4e6bb1dadbeed43e4e8af5c\System.Data.SqlXml.ni.dll
+ 2010-11-15 17:49 . 2010-11-15 17:49 1328128 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Services\b8c9267d87b7358e1a5f00bf1572c313\System.Data.Services.ni.dll
+ 2010-11-15 17:44 . 2010-11-15 17:44 2516480 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Linq\c18c236a09e715138daec2e25be205bb\System.Data.Linq.ni.dll
+ 2010-11-15 17:49 . 2010-11-15 17:49 9924096 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity\6ce886492d9b6a34555be3f328682ec2\System.Data.Entity.ni.dll
+ 2010-11-15 17:44 . 2010-11-15 17:44 2295296 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Core\faeda674832135a080bc73eda51813ff\System.Core.ni.dll
+ 2010-11-15 17:43 . 2010-11-15 17:43 2128896 c:\windows\assembly\NativeImages_v2.0.50727_32\ReachFramework\3e85c3d63ce3c3f37061aa626feb2a52\ReachFramework.ni.dll
+ 2010-11-15 17:43 . 2010-11-15 17:43 1657856 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationUI\bf67db30179ff6e8cb1bdbaa290d122e\PresentationUI.ni.dll
+ 2010-11-15 17:38 . 2010-11-15 17:38 1451008 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationBuildTa#\835786d8a0caabae09ad440f6e3abfc6\PresentationBuildTasks.ni.dll
+ 2010-11-15 17:48 . 2010-11-15 17:48 1712128 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\a27783547338dbebf84101a685ba641b\Microsoft.VisualBasic.ni.dll
+ 2010-11-15 17:48 . 2010-11-15 17:48 1093120 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\773d7bf69a9a0c0556aa41f53e75ab05\Microsoft.Transactions.Bridge.ni.dll
+ 2010-11-15 17:49 . 2010-11-15 17:49 2332160 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.JScript\16ff33f07efdb9da2a18e27585c604be\Microsoft.JScript.ni.dll
+ 2010-11-15 17:48 . 2010-11-15 17:48 1620992 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\d0fb91b296616a1a844bf265947018ee\Microsoft.Build.Tasks.ni.dll
+ 2010-11-15 17:48 . 2010-11-15 17:48 1966080 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\892e993c8df1c75081113131dc429c15\Microsoft.Build.Tasks.v3.5.ni.dll
+ 2010-11-15 17:48 . 2010-11-15 17:48 1888768 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\d0beebd2c9045158cdcd4bd5987b717b\Microsoft.Build.Engine.ni.dll
+ 2010-11-15 17:41 . 2010-11-15 17:41 1249280 c:\windows\assembly\GAC_MSIL\WindowsBase\3.0.0.0__31bf3856ad364e35\WindowsBase.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 3182592 c:\windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 2048000 c:\windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.XML.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 2048000 c:\windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.XML.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 5025792 c:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 5025792 c:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
- 2009-08-26 14:18 . 2009-08-26 14:18 1277952 c:\windows\assembly\GAC_MSIL\System.Web.Extensions\3.5.0.0__31bf3856ad364e35\System.Web.Extensions.dll
+ 2010-11-15 17:41 . 2010-11-15 17:41 1277952 c:\windows\assembly\GAC_MSIL\System.Web.Extensions\3.5.0.0__31bf3856ad364e35\System.Web.Extensions.dll
+ 2010-11-15 17:26 . 2010-11-15 17:26 5967872 c:\windows\assembly\GAC_MSIL\System.ServiceModel\3.0.0.0__b77a5c561934e089\System.ServiceModel.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 5062656 c:\windows\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 5062656 c:\windows\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
+ 2010-11-15 17:40 . 2010-11-15 17:40 5279744 c:\windows\assembly\GAC_MSIL\PresentationFramework\3.0.0.0__31bf3856ad364e35\PresentationFramework.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 5242880 c:\windows\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\System.Web.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 5242880 c:\windows\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\System.Web.dll
- 2009-08-26 14:17 . 2009-08-26 14:17 2933248 c:\windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 2933248 c:\windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
+ 2010-11-15 17:40 . 2010-11-15 17:40 4210688 c:\windows\assembly\GAC_32\PresentationCore\3.0.0.0__31bf3856ad364e35\PresentationCore.dll
- 2009-08-26 14:14 . 2009-08-26 14:14 4210688 c:\windows\assembly\GAC_32\PresentationCore\3.0.0.0__31bf3856ad364e35\PresentationCore.dll
+ 2010-11-15 17:39 . 2010-11-15 17:39 4550656 c:\windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
+ 2006-12-26 14:39 . 2010-11-02 15:47 35758536 c:\windows\system32\MRT.exe
+ 2009-03-08 03:39 . 2010-09-10 05:52 11080192 c:\windows\system32\ieframe.dll
+ 2010-03-31 00:23 . 2010-03-31 00:23 15638528 c:\windows\Installer\3f7039.msp
+ 2010-05-19 12:08 . 2010-05-19 12:08 11408896 c:\windows\Installer\3f7006.msp
+ 2010-04-11 21:17 . 2010-04-11 21:17 14599680 c:\windows\Installer\3f6ff0.msp
+ 2010-11-16 08:26 . 2009-03-08 03:39 11063808 c:\windows\ie8updates\KB982381-IE8\ieframe.dll
+ 2010-11-16 08:38 . 2010-05-06 10:35 11076096 c:\windows\ie8updates\KB2360131-IE8\ieframe.dll
+ 2010-11-15 17:45 . 2010-11-15 17:45 12430848 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\439c466b60614915587c5273eaf0ca7f\System.Windows.Forms.ni.dll
+ 2010-11-15 17:50 . 2010-11-15 17:50 11800576 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web\41f436dae3c8146752d06130f7331527\System.Web.ni.dll
+ 2010-11-15 17:48 . 2010-11-15 17:48 17403904 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel\52ca772b93f517fc8fe53d0a240642b3\System.ServiceModel.ni.dll
+ 2010-11-15 17:44 . 2010-11-15 17:45 10683392 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Design\fdc42078fd10e4dc8b05087900c63977\System.Design.ni.dll
+ 2010-11-15 17:43 . 2010-11-15 17:43 14328320 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\a632f3ef85ffd35341b383eed577cb93\PresentationFramework.ni.dll
+ 2010-11-15 17:42 . 2010-11-15 17:42 12215808 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\f00db8db51f5707c7fe52c0683dc6136\PresentationCore.ni.dll
+ 2010-11-15 17:36 . 2010-11-15 17:36 11490816 c:\windows\assembly\NativeImages_v2.0.50727_32\mscorlib\7bffd7ff2009f421fe5d229927588496\mscorlib.ni.dll
.
-- Snímek resetován k současnému datu --
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NBJ"="c:\program files\Ahead\Nero BackItUp\NBJ.exe" [2005-10-11 1961984]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"HControl"="c:\windows\ATK0100\HControl.exe" [2006-02-23 106496]
"ATIPTA"="c:\program files\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2006-03-08 344064]
"RTHDCPL"="RTHDCPL.EXE" [2006-05-04 16206848]
"SMSERIAL"="sm56hlpr.exe" [2006-01-20 544768]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2005-10-21 761945]
"Power_Gear"="c:\program files\ASUS\Power4 Gear\BatteryLife.exe" [2006-03-14 90112]
"Wireless Console 2"="c:\program files\Wireless Console 2\wcourier.exe" [2005-10-17 987136]
"ISUSPM Startup"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe" [2005-02-17 221184]
"ISUSScheduler"="c:\program files\Common Files\InstallShield\UpdateService\issch.exe" [2005-02-17 81920]
"nod32kui"="c:\program files\Eset\nod32kui.exe" [2005-12-13 917504]
"RemoteControl"="c:\program files\CyberLink\PowerDVD\PDVDServ.exe" [2005-01-12 32768]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2007-04-27 282624]
"DAEMON Tools"="c:\program files\DAEMON Tools\daemon.exe" [2006-11-12 157592]
"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2008-04-14 15360]

c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Bluetooth Manager.lnk - c:\program files\Toshiba\Bluetooth Toshiba Stack\TosBtMng1.exe [2005-6-16 49152]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon]
"Taskman"="c:\documents and settings\Andrea\Data aplikací\juzjf.exe"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
2006-12-18 16:32 25365032 ----a-w- c:\program files\Skype\Phone\Skype.exe

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"d:\\HryCounter Strike 1.6\\hl.exe"=
"c:\\WINDOWS\\system32\\dplaysvr.exe"=
"d:\\Stahování z NETU\\bulanci.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\ICQ6.5\\ICQ.exe"=
"d:\\Hry\\lfs W\\LFS.exe"=
"d:\\Hry\\hamachi\\hamachi.exe"=
"c:\\Program Files\\QIP\\qip.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=

R0 sfdrv01a;StarForce Protection Environment Driver (version 1.x.a);c:\windows\system32\drivers\sfdrv01a.sys [5.7.2006 13:46 63352]
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [26.12.2006 16:27 639224]
R1 oreans32;oreans32;c:\windows\system32\drivers\oreans32.sys [12.10.2009 14:49 33824]
R3 SynMini;USB2.0 1.3M WebCam;c:\windows\system32\drivers\SynMini.sys [26.12.2006 1:51 1056512]
R3 SynScan;USB2.0 1.3M WebCam Still Image;c:\windows\system32\drivers\SynScan.sys [26.12.2006 1:51 8064]
S2 rszzakyr;rszzakyr;\??\c:\windows\system32\drivers\rszzakyr.sys --> c:\windows\system32\drivers\rszzakyr.sys [?]
.
Obsah adresáře 'Naplánované úlohy'

2010-11-10 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2007-01-10 13:42]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
LSP: imon.dll
DPF: DirectAnimation Java Classes - file://c:\windows\Java\classes\dajava.cab
DPF: Microsoft XML Parser for Java - file://c:\windows\Java\classes\xmldso.cab
FF - ProfilePath - c:\documents and settings\Andrea\Data aplikací\Mozilla\Firefox\Profiles\rx1o9dfy.default\
FF - prefs.js: browser.search.selectedEngine - Ask
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - prefs.js: keyword.URL - hxxp://www.google.com/search?ie=UTF-8&oe=UTF-8 ... &gfns=1&q=
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-11-16 11:44
Windows 5.1.2600 Service Pack 3 NTFS

skenování skrytých procesů ...

skenování skrytých položek 'Po spuštění' ...

skenování skrytých souborů ...

sken byl úspešně dokončen
skryté soubory: 0

**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Reinstall\:őwjY*]
"DisplayName"="???\17?\11\09"
"DeviceDesc"="???\17?\11\09"
"ProviderName"="???\11?\16?\11??"
"MFG"="???????"
"ReinstallString"=".10.1000.5"
"DeviceInstanceIds"=multi:"d:\\smbus\\smbus\\smbusati.inf\00"
.
--------------------- Knihovny navázané na běžící procesy ---------------------

- - - - - - - > 'winlogon.exe'(1160)
c:\windows\system32\Ati2evxx.dll

- - - - - - - > 'lsass.exe'(1216)
c:\windows\system32\imon.dll
c:\program files\Eset\pr_imon.dll

- - - - - - - > 'explorer.exe'(3496)
c:\windows\system32\imon.dll
c:\program files\Eset\pr_imon.dll
c:\windows\system32\webcheck.dll
.
Celkový čas: 2010-11-16 11:46:47
ComboFix-quarantined-files.txt 2010-11-16 10:46

Před spuštěním: 3 231 678 464
Po spuštění: 3 213 680 640

Current=1 Default=1 Failed=0 LastKnownGood=4 Sets=1,2,3,4
- - End Of File - - 107611ABD0928A05980C0BF61C73EC58

Re: Nod hlasí červy...prosím o pomoc

Napsal: 16 lis 2010 12:03
od Duhen
Nechtělo mě to pustit kvůli velkému počtu znaků, tak jsem log vložil na půl



Pomooooc :)

Re: Nod hlasí červy...prosím o pomoc

Napsal: 16 lis 2010 17:27
od motji
Taky jsem si Vás vzala, když jsem Vás zahlédla :D

:arrow: Pokud nemáte, přesuňte Combofix na plochu
-otevřete si Poznámkový blok
-Do něj zkopírujte text z tohoto okénka

Kód: Vybrat vše


Regnull::
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Reinstall\:őwjY*]

Driver::
rszzakyr
oreans32

Collect::
c:\windows\system32\drivers\rszzakyr.sys
c:\windows\system32\drivers\oreans32.sys
C:\Documents and Settings\Andrea\Data aplikací\juzjf.exe

-uložte Vámi vytvořený TXT soubor jako CFScript.txt na plochu
-po uložení uchopte vámi vytvořený skript levým myšítkem a -přesuňte ho nad ikonu Combofixu, kde ho upustíte:

Obrázek



:arrow: Zapojte do pc všechny usb klíče, flashky...co používáte

Použijte USB fix
http://www.viry.cz/forum/viewtopic.php?f=24&t=102308


:!: Před stažením vypněte rezidentní štít antiviru, má na Usbfix falešnou detekci
-spusťte
-klikněte na volbu deletion , potvrdte enter
- po skenu sem vložte log , pokud na Vás nevyskočí, najdete ho C:\UsbFix.txt


-po aplikaci na Vás vypadne další log,vložte ho sem

Upozornění : může se stát, že po aplikaci skriptu a restartu Windows nenaběhnou, v tom případě znovu restartujte a přitom mačkejte F8, pak zvolte Poslední známou funkční konfiguraci

Re: Nod hlasí červy...prosím o pomoc

Napsal: 17 lis 2010 10:15
od Duhen
############################## | UsbFix 7.014 | [Deletion]

User: Andrea (Administrator) # ASUS [ ]
Updated 24/06/10 by El Desaparecido / C_XX
Started at 10:03:50 | 17/11/2010
Website: http://pagesperso-orange.fr/NosTools/index.html
Contact: FindyKill.Contact@gmail.com

CPU: Intel(R) Celeron(R) M CPU 440 @ 1.86GHz
Systém Microsoft Windows XP Professional (5.1.2600 32-Bit) # Service Pack 3
Internet Explorer 8.0.6001.18702

Windows Firewall: Enabled
Antivirus: Eset NOD32 Antivirus 2.50 2.50 [Enabled | Updated]
RAM -> 895 Mb
C:\ (%systemdrive%) -> Fixed drive # 16 Gb (3 Mb free - 19%) [] # NTFS
D:\ -> Fixed drive # 78 Gb (39 Mb free - 50%) [Nový svazek] # NTFS
E:\ -> CD-ROM
F:\ -> Removable drive # 4 Gb (458 Mb free - 12%) [PKBACK# 001] # FAT32
G:\ -> CD-ROM
H:\ -> CD-ROM
I:\ -> Removable drive # 4 Gb (4 Mb free - 100%) [NOVÝ SVAZEK] # FAT

################## | Files # Infected Folders |

Not deleted ! F:\Autorun.inf
Not deleted ! G:\Autorun.inf
Not deleted ! H:\Autorun.inf
Not deleted ! I:\Autorun.inf
Not deleted ! F:\Autorun.Vinf

################## | Registry |

Deleted ! HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System|DisableRegistryTools
Deleted ! HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|NoDrives
Deleted ! HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|NoDrives

################## | Mountpoints2 |


################## | Listing |

[16/11/2010 - 10:49:48 | D ] C:\BJPrinter
[16/03/2009 - 16:00:05 | RASH | 211] C:\boot.ini
[23/09/2002 - 13:00:00 | RASH | 4952] C:\Bootfont.bin
[21/07/2007 - 11:22:26 | D ] C:\CanonMP
[17/11/2010 - 09:49:09 | A | 1192] C:\CF-Submit.htm
[17/11/2010 - 09:59:02 | A | 11088] C:\ComboFix.txt
[15/11/2010 - 18:41:31 | D ] C:\Config.Msi
[26/12/2006 - 01:32:30 | AS | 0] C:\CONFIG.SYS
[26/12/2006 - 01:36:50 | D ] C:\Documents and Settings
[26/12/2006 - 01:32:30 | RASH | 0] C:\IO.SYS
[26/12/2006 - 01:32:30 | RASH | 0] C:\MSDOS.SYS
[30/12/2006 - 14:31:37 | RASH | 47564] C:\NTDETECT.COM
[26/08/2009 - 13:48:57 | RASH | 250576] C:\ntldr
[17/11/2010 - 09:54:51 | ASH | 1409286144] C:\pagefile.sys
[16/11/2010 - 09:39:29 | RD ] C:\Program Files
[17/11/2010 - 09:59:51 | D ] C:\Qoobox
[17/11/2010 - 10:04:51 | SHD ] C:\RECYCLER
[26/08/2009 - 10:54:22 | D ] C:\RECYCLER(2)
[16/11/2010 - 09:41:00 | D ] C:\rsit
[26/08/2009 - 15:01:10 | SHD ] C:\System Volume Information
[15/11/2010 - 17:25:53 | H | 45562] C:\treeinfo.wc
[17/11/2010 - 10:04:51 | D ] C:\UsbFix
[17/11/2010 - 10:04:55 | A | 1378] C:\UsbFix.txt
[17/11/2010 - 09:59:50 | D ] C:\WINDOWS
[26/08/2009 - 15:13:44 | D ] D:\90f8ee435c2e215640
[31/08/2009 - 20:50:22 | D ] D:\David
[30/09/2010 - 19:10:55 | D ] D:\filmy
[02/07/2010 - 18:50:05 | D ] D:\Fotky
[26/12/2006 - 18:59:28 | D ] D:\GH
[16/06/2010 - 18:59:51 | D ] D:\Hry
[17/10/2009 - 18:08:12 | D ] D:\HryCounter Strike 1.6
[30/08/2009 - 19:41:13 | D ] D:\ke GTA
[26/02/2010 - 22:20:34 | D ] D:\Live For Speed S2 alpha z+keygen+program na vyrovnání volantu
[26/12/2006 - 15:06:03 | RD ] D:\MSOCache
[23/11/2009 - 18:55:07 | D ] D:\nejaky fotky
[03/06/2009 - 20:36:11 | D ] D:\Nová složka
[17/11/2010 - 10:04:51 | SHD ] D:\RECYCLER
[18/10/2008 - 19:04:29 | D ] D:\Stahování z NETU
[26/08/2009 - 15:04:40 | SHD ] D:\System Volume Information
[16/03/2009 - 15:42:43 | H | 6116] D:\treeinfo.wc
[26/08/2009 - 14:02:38 | D ] D:\zaloha
[28/08/2009 - 14:38:48 | RSHD ] F:\!!!!! Programy Hokna !!!!
[28/08/2009 - 14:50:44 | RSHD ] F:\..!!!!!..PŘENOS..!!!!
[22/11/2006 - 09:00:00 | A | 1047248] F:\TOTALCMD.EXE
[14/07/2010 - 16:01:38 | RSHD ] F:\XXXXXX
[26/06/2007 - 10:50:46 | A | 4608] F:\Commander.exe
[18/07/2010 - 14:57:56 | A | 2976650] F:\DSC_2661.JPG
[28/08/2009 - 14:57:54 | RSHD ] F:\H
[28/08/2009 - 14:57:58 | RSHD ] F:\JA
[11/08/2010 - 15:55:08 | AD ] F:\EEE-PC_Shrinker
[16/11/2010 - 10:11:38 | N | 257] F:\autorun.inf
[16/11/2010 - 09:36:48 | RSHD ] F:\TTHDHGC
[28/08/2009 - 14:59:52 | RSHD ] F:\QIP 8090
[28/08/2009 - 15:03:48 | RSHD ] F:\Stahovače
[28/08/2009 - 15:03:54 | RSHD ] F:\Total Commander
[28/08/2009 - 15:04:24 | RSHD ] F:\TOTALCMD
[28/08/2009 - 15:04:34 | RSHD ] F:\Trinicom
[28/08/2009 - 15:04:36 | RSHD ] F:\TXT . Word . Exel . PDF. WWW
[28/08/2009 - 15:04:40 | RSHD ] F:\Záloha router
[20/02/2009 - 14:19:08 | A | 21504] F:\ČESTNÉ PROHLÁŠENÍ SAAB.doc
[29/06/2010 - 13:42:20 | RSHD ] F:\stuhleck09
[12/08/2010 - 09:51:14 | RSHD ] F:\Květen 2010 9500
[18/07/2010 - 14:53:44 | A | 232441] F:\DSC_2662.jpg
[18/07/2010 - 14:57:46 | A | 154254] F:\DSC_2667.jpg
[27/09/2010 - 15:45:48 | A | 126173] F:\NERO.8.3.X.X.KEYGEN.rar
[15/09/2006 - 14:45:32 | A | 2865156] F:\Muscl_e.mpg
[05/05/2010 - 15:48:10 | RSHD ] F:\Recycled
[30/12/2009 - 14:14:14 | SHD ] F:\FOUND.000
[27/08/2010 - 09:12:18 | RSHD ] F:\ZonPhotStudioProfess125Keygen
[01/09/2010 - 15:06:40 | RSHD ] F:\IncrediMail2.v.6.14.Build.4697_DMZ
[12/11/2010 - 23:33:24 | RSH | 91136] F:\yam.exe
[16/11/2010 - 09:40:26 | RSHD ] F:\38501921
[16/11/2010 - 09:44:08 | RS | 1257] F:\komples.lnk
[14/12/2009 - 00:31:02 | A | 3410517] F:\Oceanis_Change_Background_W7.exe
[16/11/2010 - 09:40:40 | RS | 1354] F:\!!!!! Programy Hokna !!!!s.lnk
[16/11/2010 - 09:48:48 | A | 1334] F:\..!!!!!..PRˇENOS..!!!!s.lnk
[16/11/2010 - 09:41:08 | RS | 1257] F:\XXXXXXs.lnk
[16/11/2010 - 09:41:20 | RS | 1226] F:\Hs.lnk
[16/11/2010 - 09:41:32 | RS | 1233] F:\JAs.lnk
[16/11/2010 - 09:41:44 | RS | 1269] F:\QIP 8090s.lnk
[16/11/2010 - 09:42:02 | A | 1274] F:\Stahovacˇes.lnk
[16/11/2010 - 09:42:14 | RS | 1304] F:\Total Commanders.lnk
[16/11/2010 - 09:42:26 | RS | 1269] F:\TOTALCMDs.lnk
[16/11/2010 - 09:42:38 | RS | 1269] F:\Trinicoms.lnk
[16/11/2010 - 09:42:48 | RS | 1369] F:\TXT . Word . Exel . PDF. WWWs.lnk
[16/11/2010 - 09:43:04 | A | 1306] F:\Za´loha routers.lnk
[16/11/2010 - 09:43:14 | RS | 1279] F:\stuhleck09s.lnk
[14/07/2010 - 11:30:02 | RSHD ] F:\komple
[19/09/2009 - 11:54:18 | A | 42132] F:\vdálené připojení trini.jpg
[16/11/2010 - 09:43:34 | A | 1321] F:\Kveˇten 2010 9500s.lnk
[16/11/2010 - 09:43:44 | RS | 1374] F:\ZonPhotStudioProfess125Keygens.lnk
[16/11/2010 - 09:43:56 | RS | 1399] F:\IncrediMail2.v.6.14.Build.4697_DMZs.lnk
[16/11/2010 - 10:10:14 | N | 257] F:\Autorun.Vinf
[07/07/2009 - 09:08:57 | R | 51] G:\Autorun.inf
[23/09/2009 - 16:53:27 | RD ] G:\Bonus
[23/09/2009 - 16:53:33 | RD ] G:\DirectX
[23/09/2009 - 16:53:34 | RD ] G:\Text
[21/09/2009 - 11:48:46 | R | 4214325] G:\Theme.mp3
[23/09/2009 - 16:53:34 | RD ] G:\Visaci
[23/09/2009 - 16:53:38 | RD ] G:\Zamek
[23/09/2009 - 16:53:38 | RD ] G:\Zetor
[23/09/2009 - 14:11:01 | R | 433110] G:\ZetorHistorie.pdf
[23/09/2009 - 16:53:09 | RD ] G:\autorun
[23/09/2009 - 17:04:33 | R | 1774269] G:\autorun.exe
[19/09/2009 - 23:00:00 | R | 266240] G:\cdstart.exe
[12/08/2002 - 21:00:00 | R | 1792] G:\click.wav
[23/09/2009 - 13:53:52 | R | 6527] G:\ctime.txt
[23/09/2009 - 16:53:30 | RD ] G:\data
[21/09/2009 - 11:59:48 | R | 230156] G:\done.bmp
[21/09/2009 - 11:58:48 | R | 330176] G:\install.bmp
[26/03/2009 - 10:44:12 | R | 43574864] G:\kaspersky.exe
[01/10/2008 - 16:13:16 | R | 2119796] G:\motor.wav
[23/09/2009 - 16:53:34 | RD ] G:\sdk
[23/09/2009 - 16:57:49 | R | 109274073] G:\setup-1.bin
[23/09/2009 - 16:57:50 | R | 739343] G:\setup.exe
[12/02/2007 - 20:53:42 | R | 277] H:\autorun.inf
[13/02/2007 - 02:33:37 | R | 1110016] H:\LaunchU3.exe
[13/02/2007 - 03:23:09 | R | 4558081] H:\LaunchPad.zip
[16/11/2010 - 09:52:04 | A | 20480] I:\Win32.doc
[12/11/2010 - 23:33:24 | RSH | 91136] I:\yam.exe
[16/11/2010 - 10:57:24 | N | 518] I:\autorun.inf

################## | Vaccin |

C:\Autorun.inf -> Folder created by UsbFix (El Desaparecido & C_XX)
D:\Autorun.inf -> Folder created by UsbFix (El Desaparecido & C_XX)
F:\Autorun.inf -> Folder created by UsbFix (El Desaparecido & C_XX)
I:\Autorun.inf -> Folder created by UsbFix (El Desaparecido & C_XX)

################## | Upload |

Please send the file: C:\UsbFix_Upload_Me_ASUS.zip
http://chiquitine.changelog.fr/Sample/Upload.php
Thank you for your contribution.

################## | E.O.F |

Re: Nod hlasí červy...prosím o pomoc

Napsal: 17 lis 2010 10:37
od Duhen
Po posledním CFScriptu zatím nevyskakují okna NODU s červama
vWin32/Peerfrag.FL čer
Win32/Kryptik.HOU trojský kůň
Win32/Kryptik.HMA trojský kůň
atd...

Re: Nod hlasí červy...prosím o pomoc

Napsal: 17 lis 2010 10:37
od motji
tohle znáte?
F:\XXXXXXs.lnk
F:\Hs.lnk
F:\JAs.lnk
F:\XXXXXX
F:\H
F:\JA
F:\TTHDHGC
F:\yam.exe


A můžete si tyto soubory otevřít v textáku a vložit mi sem, co je v nich?
F:\Autorun.Vinf
G:\Autorun.inf

Re: Nod hlasí červy...prosím o pomoc

Napsal: 17 lis 2010 11:06
od Duhen
Ano znám:
F:\XXXXXX
F:\H
F:\JA
Nevím a mohu zmazat:
F:\TTHDHGC
F:\Hs.lnk
F:\JAs.lnk
F:\XXXXXXs.lnk
F:\yam.exe

F:\Autorun.VinfHned když jsem ho chtěl editovat , tak na mě vyskočilo okno NOD s červem Autorun HF cosi a tak jsem dal smazat a už tam Autorun.Vinf není

V G:\Autorun.inf je
NUL.Usbfix a když ho chci otevřít , tak hláška nesprávná funkce...asi je to něco k tomu usb fix

Re: Nod hlasí červy...prosím o pomoc

Napsal: 17 lis 2010 11:15
od motji
Připojte flešky k pc, smažu to přes combofix :) . Ten autorun.inf bude ochraná složka USB fixu.

:arrow: Pokud nemáte, přesuňte Combofix na plochu
-otevřete si Poznámkový blok
-Do něj zkopírujte text z tohoto okénka

Kód: Vybrat vše


Collect::
F:\Hs.lnk
F:\JAs.lnk
F:\XXXXXXs.lnk
F:\yam.exe
I:\yam.exe
F:\Recycled
F:\autorun.inf
F:\ZonPhotStudioProfess125Keygens.lnk
F:\NERO.8.3.X.X.KEYGEN.rar

Folder::
F:\ZonPhotStudioProfess125Keygen
F:\TTHDHGC
C:\RECYCLER(2)
D:\RECYCLER
C:\RECYCLER
-uložte Vámi vytvořený TXT soubor jako CFScript.txt na plochu
-po uložení uchopte vámi vytvořený skript levým myšítkem a -přesuňte ho nad ikonu Combofixu, kde ho upustíte:

Obrázek


-po aplikaci na Vás vypadne další log,vložte ho sem

Upozornění : může se stát, že po aplikaci skriptu a restartu Windows nenaběhnou, v tom případě znovu restartujte a přitom mačkejte F8, pak zvolte Poslední známou funkční konfiguraci


A pak napište, jak to vypadá

Re: Nod hlasí červy...prosím o pomoc

Napsal: 17 lis 2010 11:45
od Duhen
zdáse vše ok

ComboFix 10-11-14.04 - Andrea 17.11.2010 11:36:19.5.1 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.895.459 [GMT 1:00]
Spuštěný z: c:\documents and settings\Andrea\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\Andrea\Plocha\CFScript.txt.txt
AV: Eset NOD32 Antivirus 2.50 *On-access scanning enabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
* Rezidentní štít AV je zapnutý


VAROVÁNÍ - NA TOMTO POČÍTAČI NENÍ NAINSTALOVÁNA KONZOLA PRO ZOTAVENÍ !!

file zipped: F:\Hs.lnk
file zipped: F:\JAs.lnk
file zipped: F:\NERO.8.3.X.X.KEYGEN.rar
file zipped: F:\XXXXXXs.lnk
file zipped: F:\yam.exe
file zipped: F:\ZonPhotStudioProfess125Keygens.lnk
.

((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\RECYCLER
C:\RECYCLER(2)
c:\recycler(2)\S-1-5-21-343818398-602609370-725345543-1003(2)\INFO2
D:\RECYCLER
F:\Hs.lnk
F:\JAs.lnk
F:\NERO.8.3.X.X.KEYGEN.rar
F:\TTHDHGC
f:\tthdhgc\DFG-2352-66235-2352322-634621321-6662355\364855.exe
f:\tthdhgc\DFG-2352-66235-2352322-634621321-6662355\Desktop.ini
F:\XXXXXXs.lnk
F:\yam.exe
F:\ZonPhotStudioProfess125Keygen
f:\zonphotstudioprofess125keygen\keygen.exe
f:\zonphotstudioprofess125keygen\keygen.rar
f:\zonphotstudioprofess125keygen\zps12_cz.exe
F:\ZonPhotStudioProfess125Keygens.lnk

.
((((((((((((((((((((((((( Soubory vytvořené od 2010-10-17 do 2010-11-17 )))))))))))))))))))))))))))))))
.

2010-11-17 09:03 . 2010-11-17 09:24 -------- d-----w- C:\UsbFix
2010-11-16 09:49 . 2010-11-16 09:49 -------- d-----w- C:\BJPrinter
2010-11-16 09:42 . 2010-11-16 09:42 -------- d-sh--w- c:\documents and settings\Andrea\IECompatCache
2010-11-16 09:41 . 2010-11-16 09:41 -------- d-sh--w- c:\documents and settings\Andrea\PrivacIE
2010-11-16 09:40 . 2010-11-16 09:40 -------- d-sh--w- c:\documents and settings\Andrea\IETldCache
2010-11-16 08:39 . 2010-11-16 09:45 -------- d-----w- c:\program files\trend micro
2010-11-16 08:39 . 2010-11-16 08:41 -------- d-----w- C:\rsit
2010-11-16 08:30 . 2010-08-26 11:08 13312 -c----w- c:\windows\system32\dllcache\iecompat.dll
2010-11-16 08:22 . 2010-09-10 05:52 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2010-11-16 08:22 . 2010-09-10 05:52 602112 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2010-11-16 08:22 . 2010-09-10 05:52 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2010-11-16 08:22 . 2010-09-10 05:52 1986560 -c----w- c:\windows\system32\dllcache\iertutil.dll
2010-11-16 08:22 . 2010-09-10 05:52 247808 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2010-11-16 08:22 . 2010-09-10 05:52 11080192 -c----w- c:\windows\system32\dllcache\ieframe.dll
2010-11-16 08:22 . 2010-09-10 05:52 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll
2010-11-16 07:54 . 2010-11-16 08:02 -------- dc-h--w- c:\windows\ie8
2010-11-15 16:55 . 2010-09-18 06:53 953856 -c----w- c:\windows\system32\dllcache\mfc40u.dll
2010-11-15 16:55 . 2010-09-18 06:53 974848 -c----w- c:\windows\system32\dllcache\mfc42.dll
2010-11-15 16:53 . 2010-08-23 16:12 617472 -c----w- c:\windows\system32\dllcache\comctl32.dll
2010-11-15 16:47 . 2009-11-21 16:03 471552 -c----w- c:\windows\system32\dllcache\aclayers.dll
2010-11-15 16:47 . 2009-06-21 21:48 153088 -c----w- c:\windows\system32\dllcache\triedit.dll
2010-11-15 16:46 . 2010-06-14 14:31 744448 -c----w- c:\windows\system32\dllcache\helpsvc.exe
2010-11-15 16:27 . 2010-02-12 10:03 293376 ------w- c:\windows\system32\browserchoice.exe
2010-11-15 16:26 . 2010-06-18 13:36 3558912 -c----w- c:\windows\system32\dllcache\moviemk.exe
2010-11-15 16:21 . 2010-11-12 22:33 91136 --sh--r- c:\documents and settings\Andrea\Data aplikací\juzjf.exe
2010-11-15 16:16 . 2009-08-06 18:24 15072 ----a-w- c:\windows\system32\wuapi.dll.mui
2010-11-15 14:49 . 2010-04-29 14:39 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-11-15 14:49 . 2010-04-29 14:39 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-11-15 14:49 . 2010-11-15 14:50 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-11-15 14:26 . 2010-11-15 14:26 390144 ----a-w- c:\windows\system32\CF14444.exe

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-11-17 09:24 . 2010-11-17 09:05 4137 ----a-w- C:\UsbFix_Upload_Me_ASUS.zip
2010-09-18 11:23 . 2002-09-23 12:00 974848 ----a-w- c:\windows\system32\mfc42u.dll
2010-09-18 06:53 . 2002-09-23 12:00 974848 ----a-w- c:\windows\system32\mfc42.dll
2010-09-18 06:53 . 2002-09-23 12:00 954368 ----a-w- c:\windows\system32\mfc40.dll
2010-09-18 06:53 . 2002-09-23 12:00 953856 ----a-w- c:\windows\system32\mfc40u.dll
2010-09-10 05:52 . 2006-06-23 12:27 916480 ----a-w- c:\windows\system32\wininet.dll
2010-09-10 05:52 . 2002-09-23 12:00 43520 ------w- c:\windows\system32\licmgr10.dll
2010-09-10 05:52 . 2002-09-23 12:00 1469440 ------w- c:\windows\system32\inetcpl.cpl
2010-09-01 11:52 . 2002-09-23 12:00 285824 ----a-w- c:\windows\system32\atmfd.dll
2010-09-01 07:57 . 2002-09-23 12:00 1852800 ----a-w- c:\windows\system32\win32k.sys
2010-08-27 08:03 . 2002-09-23 12:00 119808 ----a-w- c:\windows\system32\t2embed.dll
2010-08-27 05:54 . 2002-09-23 12:00 99840 ----a-w- c:\windows\system32\srvsvc.dll
2010-08-27 01:43 . 2008-05-05 05:25 5632 ----a-w- c:\windows\system32\xpsp4res.dll
2010-08-26 13:39 . 2002-09-23 12:00 357248 ----a-w- c:\windows\system32\drivers\srv.sys
2010-08-23 16:12 . 2002-09-23 12:00 617472 ----a-w- c:\windows\system32\comctl32.dll
.

((((((((((((((((((((((((((((( SnapShot_2010-11-16_10.44.53 )))))))))))))))))))))))))))))))))))))))))
.
+ 2006-12-30 13:39 . 2009-10-21 05:40 75776 c:\windows\system32\strmfilt.dll
- 2006-12-30 13:39 . 2008-04-14 06:52 75776 c:\windows\system32\strmfilt.dll
+ 2002-09-23 12:00 . 2010-11-17 09:37 71786 c:\windows\system32\perfc009.dat
- 2002-09-23 12:00 . 2010-11-16 10:16 71786 c:\windows\system32\perfc009.dat
+ 2002-09-23 12:00 . 2010-11-17 09:37 83330 c:\windows\system32\perfc005.dat
- 2002-09-23 12:00 . 2010-11-16 10:16 83330 c:\windows\system32\perfc005.dat
+ 2006-12-30 13:39 . 2009-10-21 05:40 25088 c:\windows\system32\httpapi.dll
+ 2009-10-21 05:40 . 2009-10-21 05:40 75776 c:\windows\system32\dllcache\strmfilt.dll
+ 2010-08-27 05:54 . 2010-08-27 05:54 99840 c:\windows\system32\dllcache\srvsvc.dll
+ 2009-10-21 05:40 . 2009-10-21 05:40 25088 c:\windows\system32\dllcache\httpapi.dll
+ 2006-12-25 18:35 . 2009-08-25 09:19 354816 c:\windows\system32\winhttp.dll
- 2002-09-23 12:00 . 2009-03-08 03:33 420352 c:\windows\system32\vbscript.dll
+ 2002-09-23 12:00 . 2010-03-10 06:17 420352 c:\windows\system32\vbscript.dll
- 2002-09-23 12:00 . 2010-11-16 10:16 441660 c:\windows\system32\perfh009.dat
+ 2002-09-23 12:00 . 2010-11-17 09:37 441660 c:\windows\system32\perfh009.dat
- 2002-09-23 12:00 . 2010-11-16 10:16 438414 c:\windows\system32\perfh005.dat
+ 2002-09-23 12:00 . 2010-11-17 09:37 438414 c:\windows\system32\perfh005.dat
- 2002-09-23 12:00 . 2009-03-08 03:33 726528 c:\windows\system32\jscript.dll
+ 2002-09-23 12:00 . 2009-12-09 05:55 726528 c:\windows\system32\jscript.dll
+ 2006-12-26 00:29 . 2010-06-09 07:45 692736 c:\windows\system32\inetcomm.dll
+ 2006-12-30 13:39 . 2009-10-20 16:20 265728 c:\windows\system32\drivers\http.sys
+ 2008-12-16 12:32 . 2009-08-25 09:19 354816 c:\windows\system32\dllcache\winhttp.dll
- 2008-05-09 10:56 . 2009-03-08 03:33 420352 c:\windows\system32\dllcache\vbscript.dll
+ 2008-05-09 10:56 . 2010-03-10 06:17 420352 c:\windows\system32\dllcache\vbscript.dll
+ 2008-12-08 20:22 . 2010-08-26 13:39 357248 c:\windows\system32\dllcache\srv.sys
- 2008-05-09 10:56 . 2009-03-08 03:33 726528 c:\windows\system32\dllcache\jscript.dll
+ 2008-05-09 10:56 . 2009-12-09 05:55 726528 c:\windows\system32\dllcache\jscript.dll
+ 2008-12-08 20:17 . 2010-06-09 07:45 692736 c:\windows\system32\dllcache\inetcomm.dll
+ 2009-10-20 16:20 . 2009-10-20 16:20 265728 c:\windows\system32\dllcache\http.sys
+ 2010-11-17 09:31 . 2009-03-08 03:33 420352 c:\windows\ie8updates\KB981332-IE8\vbscript.dll
+ 2010-11-17 09:31 . 2009-05-26 11:40 391032 c:\windows\ie8updates\KB981332-IE8\spuninst\updspapi.dll
+ 2010-11-17 09:31 . 2009-05-26 11:40 233848 c:\windows\ie8updates\KB981332-IE8\spuninst\spuninst.exe
+ 2010-11-17 09:31 . 2008-07-08 12:59 391032 c:\windows\ie8updates\KB976662-IE8\spuninst\updspapi.dll
+ 2010-11-17 09:31 . 2008-07-08 12:59 233848 c:\windows\ie8updates\KB976662-IE8\spuninst\spuninst.exe
+ 2010-11-17 09:31 . 2009-06-22 06:48 726528 c:\windows\ie8updates\KB976662-IE8\jscript.dll
+ 2010-11-17 09:30 . 2008-07-08 12:59 391032 c:\windows\ie8updates\KB971961-IE8\spuninst\updspapi.dll
+ 2010-11-17 09:30 . 2008-07-08 12:59 233848 c:\windows\ie8updates\KB971961-IE8\spuninst\spuninst.exe
+ 2010-11-17 09:30 . 2009-03-08 03:33 726528 c:\windows\ie8updates\KB971961-IE8\jscript.dll
+ 2009-10-20 16:20 . 2009-10-20 16:20 265728 c:\windows\Driver Cache\i386\http.sys
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NBJ"="c:\program files\Ahead\Nero BackItUp\NBJ.exe" [2005-10-11 1961984]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"HControl"="c:\windows\ATK0100\HControl.exe" [2006-02-23 106496]
"ATIPTA"="c:\program files\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2006-03-08 344064]
"RTHDCPL"="RTHDCPL.EXE" [2006-05-04 16206848]
"SMSERIAL"="sm56hlpr.exe" [2006-01-20 544768]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2005-10-21 761945]
"Power_Gear"="c:\program files\ASUS\Power4 Gear\BatteryLife.exe" [2006-03-14 90112]
"Wireless Console 2"="c:\program files\Wireless Console 2\wcourier.exe" [2005-10-17 987136]
"ISUSPM Startup"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe" [2005-02-17 221184]
"ISUSScheduler"="c:\program files\Common Files\InstallShield\UpdateService\issch.exe" [2005-02-17 81920]
"nod32kui"="c:\program files\Eset\nod32kui.exe" [2005-12-13 917504]
"RemoteControl"="c:\program files\CyberLink\PowerDVD\PDVDServ.exe" [2005-01-12 32768]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2007-04-27 282624]
"DAEMON Tools"="c:\program files\DAEMON Tools\daemon.exe" [2006-11-12 157592]
"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2008-04-14 15360]

c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Bluetooth Manager.lnk - c:\program files\Toshiba\Bluetooth Toshiba Stack\TosBtMng1.exe [2005-6-16 49152]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
2006-12-18 16:32 25365032 ----a-w- c:\program files\Skype\Phone\Skype.exe

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"d:\\HryCounter Strike 1.6\\hl.exe"=
"c:\\WINDOWS\\system32\\dplaysvr.exe"=
"d:\\Stahování z NETU\\bulanci.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\ICQ6.5\\ICQ.exe"=
"d:\\Hry\\lfs W\\LFS.exe"=
"d:\\Hry\\hamachi\\hamachi.exe"=
"c:\\Program Files\\QIP\\qip.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=

R0 sfdrv01a;StarForce Protection Environment Driver (version 1.x.a);c:\windows\system32\drivers\sfdrv01a.sys [5.7.2006 13:46 63352]
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [26.12.2006 16:27 639224]
R3 SynMini;USB2.0 1.3M WebCam;c:\windows\system32\drivers\SynMini.sys [26.12.2006 1:51 1056512]
R3 SynScan;USB2.0 1.3M WebCam Still Image;c:\windows\system32\drivers\SynScan.sys [26.12.2006 1:51 8064]
.
Obsah adresáře 'Naplánované úlohy'

2010-11-10 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2007-01-10 13:42]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
LSP: imon.dll
DPF: DirectAnimation Java Classes - file://c:\windows\Java\classes\dajava.cab
DPF: Microsoft XML Parser for Java - file://c:\windows\Java\classes\xmldso.cab
FF - ProfilePath - c:\documents and settings\Andrea\Data aplikací\Mozilla\Firefox\Profiles\rx1o9dfy.default\
FF - prefs.js: browser.search.selectedEngine - Ask
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - prefs.js: keyword.URL - hxxp://www.google.com/search?ie=UTF-8&oe=UTF-8 ... &gfns=1&q=
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-11-17 11:41
Windows 5.1.2600 Service Pack 3 NTFS

skenování skrytých procesů ...

skenování skrytých položek 'Po spuštění' ...

skenování skrytých souborů ...

sken byl úspešně dokončen
skryté soubory: 0

**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Reinstall\:őwjY*]
"DisplayName"="???\17?\11\09"
"DeviceDesc"="???\17?\11\09"
"ProviderName"="???\11?\16?\11??"
"MFG"="???????"
"ReinstallString"=".10.1000.5"
"DeviceInstanceIds"=multi:"d:\\smbus\\smbus\\smbusati.inf\00"
.
--------------------- Knihovny navázané na běžící procesy ---------------------

- - - - - - - > 'winlogon.exe'(1160)
c:\windows\system32\Ati2evxx.dll

- - - - - - - > 'lsass.exe'(1216)
c:\windows\system32\imon.dll
c:\program files\Eset\pr_imon.dll
.
Celkový čas: 2010-11-17 11:43:00
ComboFix-quarantined-files.txt 2010-11-17 10:42
ComboFix2.txt 2010-11-17 08:59
ComboFix3.txt 2010-11-16 10:46

Před spuštěním: 3 187 183 616
Po spuštění: 3 173 920 768

Current=1 Default=1 Failed=0 LastKnownGood=4 Sets=1,2,3,4
- - End Of File - - 075E905B3059607434CF2E48157D1749

Re: Nod hlasí červy...prosím o pomoc

Napsal: 17 lis 2010 11:47
od motji
Jednotka I je co? Tam byl také vir, nevidím ho, že by se smazal :o

:arrow: Odinstalujte combofix přes Start - Spustit
- zkopírujte do okénka:

ComboFix /Uninstall

-stiskněte Enter
-To odinstaluje ComboFix a smaže s ním související soubory a složky.


***********


:arrow: Stáhněte T-Cleaner
http://sweb.cz/Marinus/T-Cleaner.exe

-Spusťte,pro potvrzení volby mačkejte klávesu A, Enter
-po použití prográmek vymažte.Pozor,antiviry ho mohou falešně označit za vir



***********


:arrow: Z mého podpisu stahněte Ccleaner
- nainstalujte, při výběru, co se má nainstalovat, dejte pryč fajfku u instalace yahoo toolbaru

Obrázekzáložka čistič
- nechejte v levém sloupečku zatrhnuté vše jak je, klikněte na analyzovat
- po analýze klikněte na Spustit Ccleaner

Obrázekzáložka Registry
- klikněte na hledej problémy
- pak klikněte na opravit vybrané problémy -- udělat zálohu registrů - nemusíte
- kliknete opravit všechny problémy :arrow: ok :arrow: zavřít

Obrázek Záložka Nástroje
- zde můžete odinstalovat programy. Je to důkladnější odinstalace než u přidat/odebrat programy ve Windows.

Ccleaner - čistič doporučuji používat, krásně pročistí pc od dočasných souborů.
Registry pročistí třeba po odinstalaci nějakého programu.


***********



:arrow: Stahněte OTC a použijte
http://oldtimer.geekstogo.com/OTC.exe
-vyčistí tempy a po použitých programech



***********

:arrow: Vložte nový log ze RSIT a řekněte co počítač, jak se chová, už je vše v pořádku?


A pokud by se Vám chtělo, můžete ještě pc proskenovat Avptoolem, viz můj podpis. To už je na Vás, je to hrozný louda, ale důkladný :) .

Re: Nod hlasí červy...prosím o pomoc

Napsal: 17 lis 2010 11:56
od Duhen
Jednotka I je co? Tam byl také vir, nevidím ho, že by se smazal.

To je v pohodě , jak jsem připojoval a vytahoval flešky, tak se jednou ta 4GB zapsala pod I, ale potom byla F a je to smazané.

Jdu dočisťovat a pak dám log rsit.