Asi rootkit
Napsal: 27 lis 2010 17:28
Combofix mi pořád hlásí, že našel přitomnost rootkitu, ale nedokáže ho odstranit ani na 3. pokus. Mám čerstvě nainstalovanej win XP. Antivir (avast) jsem nainstaloval pár min po prvním připojení k internetu a teď jsem ho odinstaloval s podezřením, že je napadenej virem - hlasil, že je combofix zavirovanej a po spuštění win 2 min. nefungoval a odinstalování trvalo mnohem dýl něž by mělo. Všechno je cca 2 min. po spuštění takový zabržděný... Zatím jsem nainstaloval jen samý ověřený programy, tak nechápu jak se sem ten rootkit dostal.
Děkuju za rady
Tog z RSIT:
Logfile of random's system information tool 1.08 (written by random/random)
Run by Admin at 2010-11-27 17:19:00
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 213 GB (96%) free of 221 GB
Total RAM: 510 MB (34% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:19:01, on 27.11.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\notepad.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Documents and Settings\Admin\Dokumenty\Stažené soubory\RSIT.exe
C:\Program Files\trend micro\Admin.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
--
End of file - 2715 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-20 932288]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-09-23 35760]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTFMON.EXE]
C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\QTTask.exe [2010-09-08 421888]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMan]
C:\WINDOWS\SOUNDMAN.EXE [2005-06-20 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-05-14 248552]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"WMPNetworkSvc"=3
"ose"=3
"NMSAccess"=2
"JavaQuickStarterService"=2
"idsvc"=3
"ATI Smart"=2
"Ati HotKey Poller"=2
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2010-02-11 155648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ICQ7.2\ICQ.exe"="C:\Program Files\ICQ7.2\ICQ.exe:*:Enabled:ICQ7.2"
"C:\Program Files\ICQ7.2\aolload.exe"="C:\Program Files\ICQ7.2\aolload.exe:*:Enabled:aolload.exe"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ICQ7.2\ICQ.exe"="C:\Program Files\ICQ7.2\ICQ.exe:*:Enabled:ICQ7.2"
"C:\Program Files\ICQ7.2\aolload.exe"="C:\Program Files\ICQ7.2\aolload.exe:*:Enabled:aolload.exe"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
======List of files/folders created in the last 1 months======
2010-11-27 17:18:21 ----D---- C:\rsit
2010-11-27 17:18:21 ----D---- C:\Program Files\trend micro
2010-11-27 17:14:27 ----D---- C:\WINDOWS\temp
2010-11-27 17:14:26 ----A---- C:\ComboFix.txt
2010-11-27 17:01:52 ----D---- C:\Qoobox
2010-11-27 16:45:35 ----A---- C:\WINDOWS\ntbtlog.txt
2010-11-27 15:52:57 ----D---- C:\Program Files\Unlocker
2010-11-27 15:35:59 ----A---- C:\WINDOWS\zip.exe
2010-11-27 15:35:59 ----A---- C:\WINDOWS\SWXCACLS.exe
2010-11-27 15:35:59 ----A---- C:\WINDOWS\SWSC.exe
2010-11-27 15:35:59 ----A---- C:\WINDOWS\SWREG.exe
2010-11-27 15:35:59 ----A---- C:\WINDOWS\sed.exe
2010-11-27 15:35:59 ----A---- C:\WINDOWS\PEV.exe
2010-11-27 15:35:59 ----A---- C:\WINDOWS\NIRCMD.exe
2010-11-27 15:35:59 ----A---- C:\WINDOWS\MBR.exe
2010-11-27 15:35:59 ----A---- C:\WINDOWS\grep.exe
2010-11-27 15:35:55 ----D---- C:\WINDOWS\ERDNT
2010-11-27 14:10:17 ----A---- C:\WINDOWS\system32\mucltui.dll.mui
2010-11-27 14:10:16 ----A---- C:\WINDOWS\system32\mucltui.dll
2010-11-27 13:59:49 ----D---- C:\WINDOWS\system32\XPSViewer
2010-11-27 13:59:46 ----D---- C:\Program Files\MSBuild
2010-11-27 13:59:36 ----D---- C:\Program Files\Reference Assemblies
2010-11-27 13:59:01 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2010-11-27 13:59:01 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2010-11-27 13:59:01 ----N---- C:\WINDOWS\system32\prntvpt.dll
2010-11-27 13:46:16 ----D---- C:\WINDOWS\ie8updates
2010-11-27 13:30:13 ----D---- C:\WINDOWS\pss
2010-11-27 13:13:37 ----D---- C:\WINDOWS\WBEM
2010-11-27 13:12:02 ----HDC---- C:\WINDOWS\ie8
2010-11-27 13:03:57 ----N---- C:\WINDOWS\system32\spmsg.dll
2010-11-27 13:03:46 ----A---- C:\WINDOWS\system32\wmpns.dll
2010-11-27 13:03:40 ----D---- C:\Program Files\Windows Media Connect 2
2010-11-27 13:02:44 ----D---- C:\WINDOWS\system32\LogFiles
2010-11-27 13:02:44 ----D---- C:\WINDOWS\system32\drivers\UMDF
2010-11-27 13:01:29 ----D---- C:\WINDOWS\system32\URTTEMP
2010-11-27 12:58:31 ----D---- C:\Documents and Settings\Admin\Data aplikací\Canneverbe Limited
2010-11-27 12:57:04 ----D---- C:\Program Files\CDBurnerXP
2010-11-27 12:57:04 ----D---- C:\Documents and Settings\All Users\Data aplikací\Canneverbe Limited
2010-11-27 12:48:43 ----D---- C:\Documents and Settings\All Users\Data aplikací\Windows Genuine Advantage
2010-11-26 18:29:10 ----RSD---- C:\WINDOWS\assembly
2010-11-26 18:28:41 ----D---- C:\WINDOWS\system32\en-US
2010-11-26 18:28:36 ----D---- C:\Program Files\Microsoft.NET
2010-11-26 18:28:34 ----D---- C:\WINDOWS\Microsoft.NET
2010-11-26 18:27:39 ----D---- C:\Documents and Settings\All Users\Data aplikací\Sun
2010-11-26 18:27:38 ----D---- C:\Program Files\Common Files\Java
2010-11-26 18:27:26 ----A---- C:\WINDOWS\system32\javaws.exe
2010-11-26 18:27:26 ----A---- C:\WINDOWS\system32\javaw.exe
2010-11-26 18:27:26 ----A---- C:\WINDOWS\system32\java.exe
2010-11-26 18:27:26 ----A---- C:\WINDOWS\system32\deployJava1.dll
2010-11-26 18:27:12 ----D---- C:\Program Files\Java
2010-11-26 18:27:07 ----D---- C:\Documents and Settings\Admin\Data aplikací\Sun
2010-11-26 18:26:34 ----D---- C:\Program Files\Common Files\Skype
2010-11-26 18:26:30 ----RD---- C:\Program Files\Skype
2010-11-26 18:26:30 ----D---- C:\Documents and Settings\Admin\Data aplikací\Skype
2010-11-26 18:26:17 ----A---- C:\WINDOWS\ODBC.INI
2010-11-26 18:26:13 ----A---- C:\WINDOWS\system32\mdimon.dll
2010-11-26 18:25:30 ----D---- C:\Program Files\Common Files\DESIGNER
2010-11-26 18:25:17 ----D---- C:\WINDOWS\SHELLNEW
2010-11-26 18:25:16 ----D---- C:\Program Files\Microsoft Office
2010-11-26 18:19:55 ----D---- C:\WINDOWS\Prefetch
2010-11-26 18:17:54 ----A---- C:\WINDOWS\system32\h323log.txt
2010-11-26 18:16:28 ----D---- C:\WINDOWS\system32\CatRoot_bak
2010-11-26 18:16:23 ----A---- C:\WINDOWS\system32\drivers\audstub.sys
2010-11-26 18:15:57 ----A---- C:\WINDOWS\system32\drivers\redbook.sys
2010-11-26 18:15:07 ----A---- C:\WINDOWS\system32\usbui.dll
2010-11-26 18:14:57 ----A---- C:\WINDOWS\system32\drivers\gagp30kx.sys
2010-11-26 18:13:57 ----SHD---- C:\WINDOWS\Installer
2010-11-26 18:13:57 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-11-26 18:13:56 ----D---- C:\Program Files\Common Files\ODBC
2010-11-26 18:13:56 ----A---- C:\WINDOWS\ODBCINST.INI
2010-11-26 18:13:53 ----D---- C:\Program Files\Common Files\SpeechEngines
2010-11-26 18:13:52 ----RD---- C:\Program Files
2010-11-26 18:13:52 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-11-26 18:13:52 ----D---- C:\Program Files\Common Files
2010-11-26 18:13:48 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2010-11-26 18:13:48 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2010-11-26 18:13:48 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2010-11-26 18:13:46 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2010-11-26 18:13:46 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2010-11-26 18:13:46 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2010-11-26 18:13:46 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2010-11-26 18:13:46 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2010-11-26 18:13:45 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2010-11-26 18:13:45 ----RA---- C:\WINDOWS\system32\kbdur.dll
2010-11-26 18:13:45 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2010-11-26 18:13:45 ----RA---- C:\WINDOWS\system32\kbdru.dll
2010-11-26 18:13:45 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2010-11-26 18:13:45 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2010-11-26 18:13:45 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2010-11-26 18:13:42 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2010-11-26 18:13:42 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2010-11-26 18:13:42 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2010-11-26 18:13:42 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2010-11-26 18:13:42 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2010-11-26 18:13:42 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2010-11-26 18:13:42 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2010-11-26 18:13:40 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2010-11-26 18:13:40 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2010-11-26 18:13:40 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2010-11-26 18:13:40 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2010-11-26 18:13:40 ----RA---- C:\WINDOWS\system32\kbdest.dll
2010-11-26 18:13:36 ----A---- C:\WINDOWS\system32\kbdsl1.dll
2010-11-26 18:13:36 ----A---- C:\WINDOWS\system32\kbdsl.dll
2010-11-26 18:13:36 ----A---- C:\WINDOWS\system32\kbdro.dll
2010-11-26 18:13:36 ----A---- C:\WINDOWS\system32\kbdpl.dll
2010-11-26 18:13:35 ----A---- C:\WINDOWS\system32\kbdycl.dll
2010-11-26 18:13:35 ----A---- C:\WINDOWS\system32\kbdpl1.dll
2010-11-26 18:13:35 ----A---- C:\WINDOWS\system32\kbdhu1.dll
2010-11-26 18:13:35 ----A---- C:\WINDOWS\system32\kbdhu.dll
2010-11-26 18:13:35 ----A---- C:\WINDOWS\system32\kbdcr.dll
2010-11-26 18:13:35 ----A---- C:\WINDOWS\system32\KBDAL.DLL
2010-11-26 18:13:34 ----A---- C:\WINDOWS\system32\irclass.dll
2010-11-26 18:13:34 ----A---- C:\WINDOWS\system32\dgsetup.dll
2010-11-26 18:13:34 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2010-11-26 18:13:33 ----A---- C:\WINDOWS\system32\spxcoins.dll
2010-11-26 18:13:33 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2010-11-26 18:13:30 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2010-11-26 18:13:30 ----A---- C:\WINDOWS\TASKMAN.EXE
2010-11-26 18:13:30 ----A---- C:\WINDOWS\system32\drivers\irenum.sys
2010-11-26 18:13:30 ----A---- C:\WINDOWS\system32\batt.dll
2010-11-26 18:13:29 ----A---- C:\WINDOWS\notepad.exe
2010-11-26 18:13:28 ----A---- C:\WINDOWS\system32\storprop.dll
2010-11-26 18:13:20 ----ASH---- C:\Documents and Settings\All Users\Data aplikací\desktop.ini
2010-11-26 18:13:19 ----RA---- C:\WINDOWS\SET21.tmp
2010-11-26 18:13:16 ----RA---- C:\WINDOWS\SET8.tmp
2010-11-26 18:13:13 ----RA---- C:\WINDOWS\SET4.tmp
2010-11-26 18:13:12 ----RA---- C:\WINDOWS\SET3.tmp
2010-11-26 18:13:06 ----D---- C:\WINDOWS\system32\CatRoot2
2010-11-26 18:13:06 ----D---- C:\WINDOWS\system32\CatRoot
2010-11-26 18:13:00 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-11-26 18:12:31 ----SHD---- C:\System Volume Information
2010-11-26 18:12:31 ----D---- C:\Documents and Settings
2010-11-26 18:11:10 ----D---- C:\Documents and Settings\All Users\Data aplikací\Skype
2010-11-26 18:10:37 ----SH---- C:\boot.ini
2010-11-26 18:08:59 ----N---- C:\WINDOWS\system32\msxml6r.dll
2010-11-26 18:08:59 ----A---- C:\WINDOWS\system32\msxml6.dll
2010-11-26 18:08:26 ----N---- C:\WINDOWS\system32\ati2dvaa.dll
2010-11-26 18:08:26 ----N---- C:\WINDOWS\system32\aaclient.dll
2010-11-26 18:08:25 ----N---- C:\WINDOWS\system32\ativtmxx.dll
2010-11-26 18:08:25 ----N---- C:\WINDOWS\system32\ati3d1ag.dll
2010-11-26 18:08:24 ----N---- C:\WINDOWS\system32\dimsntfy.dll
2010-11-26 18:08:24 ----N---- C:\WINDOWS\system32\dhcpqec.dll
2010-11-26 18:08:24 ----N---- C:\WINDOWS\system32\credssp.dll
2010-11-26 18:08:24 ----N---- C:\WINDOWS\system32\bitsprx4.dll
2010-11-26 18:08:24 ----N---- C:\WINDOWS\system32\azroles.dll
2010-11-26 18:08:23 ----N---- C:\WINDOWS\system32\dot3ui.dll
2010-11-26 18:08:23 ----N---- C:\WINDOWS\system32\dot3svc.dll
2010-11-26 18:08:23 ----N---- C:\WINDOWS\system32\dot3msm.dll
2010-11-26 18:08:23 ----N---- C:\WINDOWS\system32\dot3gpclnt.dll
2010-11-26 18:08:23 ----N---- C:\WINDOWS\system32\dot3dlg.dll
2010-11-26 18:08:23 ----N---- C:\WINDOWS\system32\dot3cfg.dll
2010-11-26 18:08:23 ----N---- C:\WINDOWS\system32\dot3api.dll
2010-11-26 18:08:23 ----N---- C:\WINDOWS\system32\dimsroam.dll
2010-11-26 18:08:22 ----N---- C:\WINDOWS\system32\eapsvc.dll
2010-11-26 18:08:22 ----N---- C:\WINDOWS\system32\eapqec.dll
2010-11-26 18:08:22 ----N---- C:\WINDOWS\system32\eappprxy.dll
2010-11-26 18:08:22 ----N---- C:\WINDOWS\system32\eapphost.dll
2010-11-26 18:08:22 ----N---- C:\WINDOWS\system32\eappgnui.dll
2010-11-26 18:08:22 ----N---- C:\WINDOWS\system32\eappcfg.dll
2010-11-26 18:08:22 ----N---- C:\WINDOWS\system32\eapp3hst.dll
2010-11-26 18:08:22 ----N---- C:\WINDOWS\system32\eapolqec.dll
2010-11-26 18:08:21 ----N---- C:\WINDOWS\system32\hsfcisp2.dll
2010-11-26 18:08:18 ----N---- C:\WINDOWS\system32\kbdbhc.dll
2010-11-26 18:08:17 ----N---- C:\WINDOWS\system32\l2gpstore.dll
2010-11-26 18:08:17 ----N---- C:\WINDOWS\system32\kmsvc.dll
2010-11-26 18:08:17 ----N---- C:\WINDOWS\system32\kbdpash.dll
2010-11-26 18:08:17 ----N---- C:\WINDOWS\system32\kbdnepr.dll
2010-11-26 18:08:17 ----N---- C:\WINDOWS\system32\kbdiultn.dll
2010-11-26 18:08:16 ----N---- C:\WINDOWS\system32\mmcex.dll
2010-11-26 18:08:16 ----N---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2010-11-26 18:08:16 ----N---- C:\WINDOWS\system32\mdmxsdk.dll
2010-11-26 18:08:15 ----N---- C:\WINDOWS\system32\msshavmsg.dll
2010-11-26 18:08:15 ----N---- C:\WINDOWS\system32\mssha.dll
2010-11-26 18:08:15 ----N---- C:\WINDOWS\system32\mmcperf.exe
2010-11-26 18:08:15 ----N---- C:\WINDOWS\system32\mmcfxcommon.dll
2010-11-26 18:08:14 ----N---- C:\WINDOWS\system32\napstat.exe
2010-11-26 18:08:14 ----N---- C:\WINDOWS\system32\napmontr.dll
2010-11-26 18:08:14 ----N---- C:\WINDOWS\system32\napipsec.dll
2010-11-26 18:08:14 ----N---- C:\WINDOWS\system32\mtxparhd.dll
2010-11-26 18:08:13 ----N---- C:\WINDOWS\system32\qagent.dll
2010-11-26 18:08:13 ----N---- C:\WINDOWS\system32\photometadatahandler.dll
2010-11-26 18:08:13 ----N---- C:\WINDOWS\system32\onex.dll
2010-11-26 18:08:13 ----N---- C:\WINDOWS\system32\nv4_disp.dll
2010-11-26 18:08:12 ----N---- C:\WINDOWS\system32\slserv.exe
2010-11-26 18:08:12 ----N---- C:\WINDOWS\system32\slrundll.exe
2010-11-26 18:08:12 ----N---- C:\WINDOWS\system32\slgen.dll
2010-11-26 18:08:12 ----N---- C:\WINDOWS\system32\slextspk.dll
2010-11-26 18:08:12 ----N---- C:\WINDOWS\system32\slcoinst.dll
2010-11-26 18:08:12 ----N---- C:\WINDOWS\system32\setupn.exe
2010-11-26 18:08:12 ----N---- C:\WINDOWS\system32\s3gnb.dll
2010-11-26 18:08:12 ----N---- C:\WINDOWS\system32\rhttpaa.dll
2010-11-26 18:08:12 ----N---- C:\WINDOWS\system32\rasqec.dll
2010-11-26 18:08:12 ----N---- C:\WINDOWS\system32\qutil.dll
2010-11-26 18:08:12 ----N---- C:\WINDOWS\system32\qcliprov.dll
2010-11-26 18:08:12 ----N---- C:\WINDOWS\system32\qagentrt.dll
2010-11-26 18:08:10 ----N---- C:\WINDOWS\system32\tsgqec.dll
2010-11-26 18:08:09 ----N---- C:\WINDOWS\system32\windowscodecsext.dll
2010-11-26 18:08:09 ----N---- C:\WINDOWS\system32\windowscodecs.dll
2010-11-26 18:08:09 ----N---- C:\WINDOWS\system32\verclsid.exe
2010-11-26 18:08:09 ----N---- C:\WINDOWS\system32\tzchange.exe
2010-11-26 18:08:09 ----N---- C:\WINDOWS\system32\tspkg.dll
2010-11-26 18:08:08 ----N---- C:\WINDOWS\system32\wmphoto.dll
2010-11-26 18:08:08 ----N---- C:\WINDOWS\system32\wlanapi.dll
2010-11-26 18:08:05 ----N---- C:\WINDOWS\slrundll.exe
2010-11-26 18:08:05 ----A---- C:\WINDOWS\system32\xmllite.dll
2010-11-26 18:08:03 ----D---- C:\WINDOWS\system32\cs-cz
2010-11-26 18:08:00 ----D---- C:\WINDOWS\l2schemas
2010-11-26 18:07:57 ----D---- C:\WINDOWS\system32\cs
2010-11-26 18:07:56 ----D---- C:\WINDOWS\system32\bits
2010-11-26 18:04:25 ----D---- C:\WINDOWS\ServicePackFiles
2010-11-26 18:03:48 ----D---- C:\Program Files\QuickTime
2010-11-26 18:03:47 ----D---- C:\Documents and Settings\All Users\Data aplikací\Apple Computer
2010-11-26 18:03:14 ----D---- C:\Program Files\Common Files\Apple
2010-11-26 18:02:58 ----D---- C:\Program Files\Apple Software Update
2010-11-26 18:02:58 ----D---- C:\Documents and Settings\All Users\Data aplikací\Apple
2010-11-26 18:02:47 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-11-26 18:02:47 ----RSD---- C:\WINDOWS\Fonts
2010-11-26 18:02:47 ----RD---- C:\WINDOWS\Web
2010-11-26 18:02:47 ----HD---- C:\WINDOWS\inf
2010-11-26 18:02:47 ----D---- C:\WINDOWS\WinSxS
2010-11-26 18:02:47 ----D---- C:\WINDOWS\twain_32
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\wins
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\wbem
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\usmt
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\spool
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\ShellExt
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\Setup
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\ras
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\oobe
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\npp
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\mui
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\inetsrv
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\IME
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\icsxml
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\ias
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\export
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\drivers\etc
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\drivers\disdn
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\drivers
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\dhcp
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\config
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\3com_dmi
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\3076
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\2052
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\1054
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\1042
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\1041
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\1037
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\1033
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\1031
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\1029
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\1028
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\1025
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system
2010-11-26 18:02:47 ----D---- C:\WINDOWS\security
2010-11-26 18:02:47 ----D---- C:\WINDOWS\Resources
2010-11-26 18:02:47 ----D---- C:\WINDOWS\repair
2010-11-26 18:02:47 ----D---- C:\WINDOWS\Provisioning
2010-11-26 18:02:47 ----D---- C:\WINDOWS\pchealth
2010-11-26 18:02:47 ----D---- C:\WINDOWS\PeerNet
2010-11-26 18:02:47 ----D---- C:\WINDOWS\mui
2010-11-26 18:02:47 ----D---- C:\WINDOWS\msapps
2010-11-26 18:02:47 ----D---- C:\WINDOWS\msagent
2010-11-26 18:02:47 ----D---- C:\WINDOWS\Media
2010-11-26 18:02:47 ----D---- C:\WINDOWS\java
2010-11-26 18:02:47 ----D---- C:\WINDOWS\ime
2010-11-26 18:02:47 ----D---- C:\WINDOWS\Help
2010-11-26 18:02:47 ----D---- C:\WINDOWS\Driver Cache
2010-11-26 18:02:47 ----D---- C:\WINDOWS\Debug
2010-11-26 18:02:47 ----D---- C:\WINDOWS\Cursors
2010-11-26 18:02:47 ----D---- C:\WINDOWS\Connection Wizard
2010-11-26 18:02:47 ----D---- C:\WINDOWS\Config
2010-11-26 18:02:47 ----D---- C:\WINDOWS\AppPatch
2010-11-26 18:02:47 ----D---- C:\WINDOWS\addins
2010-11-26 18:02:47 ----D---- C:\WINDOWS
2010-11-26 18:02:46 ----ASH---- C:\pagefile.sys
2010-11-26 18:01:55 ----D---- C:\Program Files\Microsoft Silverlight
2010-11-26 18:00:43 ----A---- C:\WINDOWS\system32\unrar.dll
2010-11-26 18:00:42 ----A---- C:\WINDOWS\avisplitter.ini
2010-11-26 18:00:40 ----A---- C:\WINDOWS\system32\yv12vfw.dll
2010-11-26 18:00:40 ----A---- C:\WINDOWS\system32\xvidvfw.dll
2010-11-26 18:00:40 ----A---- C:\WINDOWS\system32\xvidcore.dll
2010-11-26 18:00:40 ----A---- C:\WINDOWS\system32\ff_vfw.dll.manifest
2010-11-26 18:00:40 ----A---- C:\WINDOWS\system32\ff_vfw.dll
2010-11-26 18:00:38 ----D---- C:\Program Files\K-Lite Codec Pack
2010-11-26 17:59:00 ----N---- C:\WINDOWS\system32\drivers\adv02nt5.dll
2010-11-26 17:59:00 ----N---- C:\WINDOWS\system32\drivers\adv01nt5.dll
2010-11-26 17:59:00 ----D---- C:\WINDOWS\network diagnostic
2010-11-26 17:58:59 ----N---- C:\WINDOWS\system32\drivers\amdagp.sys
2010-11-26 17:58:59 ----N---- C:\WINDOWS\system32\drivers\alim1541.sys
2010-11-26 17:58:59 ----N---- C:\WINDOWS\system32\drivers\agpcpq.sys
2010-11-26 17:58:59 ----N---- C:\WINDOWS\system32\drivers\agp440.sys
2010-11-26 17:58:59 ----N---- C:\WINDOWS\system32\drivers\adv11nt5.dll
2010-11-26 17:58:59 ----N---- C:\WINDOWS\system32\drivers\adv09nt5.dll
2010-11-26 17:58:59 ----N---- C:\WINDOWS\system32\drivers\adv08nt5.dll
2010-11-26 17:58:59 ----N---- C:\WINDOWS\system32\drivers\adv07nt5.dll
2010-11-26 17:58:59 ----N---- C:\WINDOWS\system32\drivers\adv05nt5.dll
2010-11-26 17:58:58 ----N---- C:\WINDOWS\system32\drivers\atinmdxx.sys
2010-11-26 17:58:58 ----N---- C:\WINDOWS\system32\drivers\atinbtxx.sys
2010-11-26 17:58:58 ----N---- C:\WINDOWS\system32\drivers\ati2mtaa.sys
2010-11-26 17:58:58 ----N---- C:\WINDOWS\system32\drivers\ati1xsxx.sys
2010-11-26 17:58:58 ----N---- C:\WINDOWS\system32\drivers\ati1xbxx.sys
2010-11-26 17:58:58 ----N---- C:\WINDOWS\system32\drivers\ati1tuxx.sys
2010-11-26 17:58:58 ----N---- C:\WINDOWS\system32\drivers\ati1ttxx.sys
2010-11-26 17:58:58 ----N---- C:\WINDOWS\system32\drivers\ati1snxx.sys
2010-11-26 17:58:58 ----N---- C:\WINDOWS\system32\drivers\ati1rvxx.sys
2010-11-26 17:58:58 ----N---- C:\WINDOWS\system32\drivers\ati1raxx.sys
2010-11-26 17:58:58 ----N---- C:\WINDOWS\system32\drivers\ati1pdxx.sys
2010-11-26 17:58:58 ----N---- C:\WINDOWS\system32\drivers\ati1mdxx.sys
2010-11-26 17:58:58 ----N---- C:\WINDOWS\system32\drivers\ati1btxx.sys
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\bthprint.sys
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\bthport.sys
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\bthpan.sys
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\bthmodem.sys
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\bthenum.sys
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\atv10nt5.dll
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\atv06nt5.dll
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\atv04nt5.dll
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\atv02nt5.dll
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\atv01nt5.dll
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\atinxsxx.sys
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\atinxbxx.sys
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\atintuxx.sys
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\atinttxx.sys
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\atinsnxx.sys
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\atinrvxx.sys
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\atinraxx.sys
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\atinpdxx.sys
2010-11-26 17:58:56 ----N---- C:\WINDOWS\system32\drivers\ch7xxnt5.dll
2010-11-26 17:58:56 ----N---- C:\WINDOWS\system32\drivers\bthusb.sys
2010-11-26 17:58:55 ----N---- C:\WINDOWS\system32\drivers\hsfcxts2.sys
2010-11-26 17:58:55 ----N---- C:\WINDOWS\system32\drivers\hsfbs2s2.sys
2010-11-26 17:58:55 ----N---- C:\WINDOWS\system32\drivers\hidir.sys
2010-11-26 17:58:55 ----N---- C:\WINDOWS\system32\drivers\hidbth.sys
2010-11-26 17:58:55 ----N---- C:\WINDOWS\system32\drivers\hdaudbus.sys
2010-11-26 17:58:54 ----N---- C:\WINDOWS\system32\drivers\hsfdpsp2.sys
2010-11-26 17:58:52 ----N---- C:\WINDOWS\system32\drivers\ntmtlfax.sys
2010-11-26 17:58:52 ----N---- C:\WINDOWS\system32\drivers\mutohpen.sys
2010-11-26 17:58:52 ----N---- C:\WINDOWS\system32\drivers\mtxparhm.sys
2010-11-26 17:58:52 ----N---- C:\WINDOWS\system32\drivers\mtlstrm.sys
2010-11-26 17:58:52 ----N---- C:\WINDOWS\system32\drivers\mtlmnt5.sys
2010-11-26 17:58:52 ----N---- C:\WINDOWS\system32\drivers\mdmxsdk.sys
2010-11-26 17:58:51 ----N---- C:\WINDOWS\system32\drivers\slnt7554.sys
2010-11-26 17:58:51 ----N---- C:\WINDOWS\system32\drivers\sisagp.sys
2010-11-26 17:58:51 ----N---- C:\WINDOWS\system32\drivers\siint5.dll
2010-11-26 17:58:51 ----N---- C:\WINDOWS\system32\drivers\sffp_mmc.sys
2010-11-26 17:58:51 ----N---- C:\WINDOWS\system32\drivers\s3gnbm.sys
2010-11-26 17:58:51 ----N---- C:\WINDOWS\system32\drivers\rndismpx.sys
2010-11-26 17:58:51 ----N---- C:\WINDOWS\system32\drivers\rfcomm.sys
2010-11-26 17:58:51 ----N---- C:\WINDOWS\system32\drivers\recagent.sys
2010-11-26 17:58:51 ----N---- C:\WINDOWS\system32\drivers\nv4_mini.sys
2010-11-26 17:58:50 ----N---- C:\WINDOWS\system32\drivers\watv06nt.sys
2010-11-26 17:58:50 ----N---- C:\WINDOWS\system32\drivers\wadv11nt.sys
2010-11-26 17:58:50 ----N---- C:\WINDOWS\system32\drivers\wadv09nt.sys
2010-11-26 17:58:50 ----N---- C:\WINDOWS\system32\drivers\wadv08nt.sys
2010-11-26 17:58:50 ----N---- C:\WINDOWS\system32\drivers\wadv07nt.sys
2010-11-26 17:58:50 ----N---- C:\WINDOWS\system32\drivers\wacompen.sys
2010-11-26 17:58:50 ----N---- C:\WINDOWS\system32\drivers\viaagp.sys
2010-11-26 17:58:50 ----N---- C:\WINDOWS\system32\drivers\vchnt5.dll
2010-11-26 17:58:50 ----N---- C:\WINDOWS\system32\drivers\usbvideo.sys
2010-11-26 17:58:50 ----N---- C:\WINDOWS\system32\drivers\usb8023x.sys
2010-11-26 17:58:50 ----N---- C:\WINDOWS\system32\drivers\uagp35.sys
2010-11-26 17:58:50 ----N---- C:\WINDOWS\system32\drivers\smbali.sys
2010-11-26 17:58:50 ----N---- C:\WINDOWS\system32\drivers\slwdmsup.sys
2010-11-26 17:58:50 ----N---- C:\WINDOWS\system32\drivers\slnthal.sys
2010-11-26 17:58:50 ----N---- C:\WINDOWS\system32\drivers\slntamr.sys
2010-11-26 17:58:49 ----N---- C:\WINDOWS\system32\drivers\watv10nt.sys
2010-11-26 17:58:06 ----D---- C:\Documents and Settings\Admin\Data aplikací\ICQ
2010-11-26 17:57:41 ----D---- C:\Program Files\ICQ7.2
2010-11-26 17:55:26 ----A---- C:\WINDOWS\002564_.tmp
2010-11-26 17:51:57 ----A---- C:\WINDOWS\system32\drivers\sptd.sys
2010-11-26 17:51:30 ----D---- C:\Documents and Settings\Admin\Data aplikací\DAEMON Tools Lite
2010-11-26 17:51:28 ----D---- C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Lite
2010-11-26 17:51:14 ----D---- C:\WINDOWS\EHome
2010-11-26 17:50:10 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2010-11-26 17:49:36 ----D---- C:\Program Files\Common Files\Adobe
2010-11-26 17:49:36 ----D---- C:\Program Files\Adobe
2010-11-26 17:49:27 ----D---- C:\Documents and Settings\Admin\Data aplikací\Macromedia
2010-11-26 17:49:27 ----D---- C:\Documents and Settings\Admin\Data aplikací\Adobe
2010-11-26 17:45:08 ----D---- C:\Program Files\Alwil Software
2010-11-26 17:45:08 ----D---- C:\Documents and Settings\All Users\Data aplikací\Alwil Software
2010-11-26 17:43:35 ----A---- C:\WINDOWS\system32\wpa.bak
2010-11-26 17:41:25 ----N---- C:\WINDOWS\system32\ati2sgag.exe
2010-11-26 17:40:14 ----D---- C:\Program Files\ATI Technologies
2010-11-26 17:38:58 ----D---- C:\Program Files\CCleaner
2010-11-26 17:37:51 ----D---- C:\WINDOWS\system32\PreInstall
2010-11-26 17:37:51 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2010-11-26 17:36:37 ----D---- C:\Documents and Settings\Admin\Data aplikací\Mozilla
2010-11-26 17:36:32 ----D---- C:\Program Files\Mozilla Firefox
2010-11-26 17:34:15 ----D---- C:\Program Files\AMD
2010-11-26 17:34:15 ----A---- C:\WINDOWS\system32\drivers\AmdK8.sys
2010-11-26 17:33:41 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2010-11-26 17:32:37 ----D---- C:\Program Files\Marvell
2010-11-26 17:32:00 ----A---- C:\WINDOWS\system32\drivers\splitter.sys
2010-11-26 17:31:58 ----A---- C:\WINDOWS\system32\drivers\wdmaud.sys
2010-11-26 17:31:57 ----A---- C:\WINDOWS\system32\drivers\dmusic.sys
2010-11-26 17:31:52 ----A---- C:\WINDOWS\system32\drivers\swmidi.sys
2010-11-26 17:31:51 ----A---- C:\WINDOWS\system32\drivers\aec.sys
2010-11-26 17:31:50 ----A---- C:\WINDOWS\system32\drivers\kmixer.sys
2010-11-26 17:31:49 ----A---- C:\WINDOWS\system32\drivers\drmkaud.sys
2010-11-26 17:31:48 ----A---- C:\WINDOWS\system32\drivers\sysaudio.sys
2010-11-26 17:31:46 ----A---- C:\WINDOWS\system32\drivers\mskssrv.sys
2010-11-26 17:31:45 ----A---- C:\WINDOWS\system32\drivers\mspqm.sys
2010-11-26 17:31:43 ----A---- C:\WINDOWS\system32\drivers\mspclock.sys
2010-11-26 17:31:38 ----A---- C:\WINDOWS\system32\ksuser.dll
2010-11-26 17:31:38 ----A---- C:\WINDOWS\system32\drivers\portcls.sys
2010-11-26 17:31:37 ----A---- C:\WINDOWS\system32\drivers\drmk.sys
2010-11-26 17:31:35 ----RA---- C:\WINDOWS\avrack.ini
2010-11-26 17:31:35 ----D---- C:\Program Files\Realtek Sound Manager
2010-11-26 17:31:35 ----D---- C:\Program Files\AvRack
2010-11-26 17:31:34 ----D---- C:\Program Files\Realtek AC97
2010-11-26 17:31:32 ----RA---- C:\WINDOWS\system32\RTLCPL.EXE
2010-11-26 17:31:32 ----RA---- C:\WINDOWS\system32\RTLCPAPI.dll
2010-11-26 17:31:32 ----RA---- C:\WINDOWS\system32\ChCfg.exe
2010-11-26 17:31:32 ----RA---- C:\WINDOWS\system32\drivers\ALCXWDM.SYS
2010-11-26 17:31:32 ----RA---- C:\WINDOWS\SOUNDMAN.EXE
2010-11-26 17:31:31 ----RA---- C:\WINDOWS\alcupd.exe
2010-11-26 17:31:31 ----RA---- C:\WINDOWS\alcrmv.exe
2010-11-26 17:31:31 ----HD---- C:\Program Files\InstallShield Installation Information
2010-11-26 17:31:22 ----D---- C:\Program Files\Common Files\InstallShield
2010-11-26 17:30:53 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-11-26 17:30:42 ----A---- C:\WINDOWS\IsUninst.exe
2010-11-26 17:30:20 ----A---- C:\WINDOWS\system32\drivers\ASACPI.sys
2010-11-26 17:30:19 ----D---- C:\Documents and Settings\Admin\Data aplikací\WinRAR
2010-11-26 17:29:47 ----D---- C:\Program Files\WinRAR
2010-11-26 17:28:59 ----D---- C:\Documents and Settings\Admin\Data aplikací\Identities
2010-11-26 17:28:59 ----A---- C:\WINDOWS\system32\drivers\usbstor.sys
2010-11-26 17:28:57 ----HD---- C:\Program Files\Uninstall Information
2010-11-26 17:28:52 ----ASH---- C:\Documents and Settings\Admin\Data aplikací\desktop.ini
2010-11-26 17:28:51 ----SD---- C:\Documents and Settings\Admin\Data aplikací\Microsoft
2010-11-26 17:28:09 ----D---- C:\WINDOWS\SoftwareDistribution
2010-11-26 17:28:08 ----SD---- C:\WINDOWS\system32\Microsoft
2010-11-26 17:28:08 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-11-26 17:25:22 ----D---- C:\WINDOWS\system32\xircom
2010-11-26 17:25:22 ----D---- C:\Program Files\xerox
2010-11-26 17:25:22 ----D---- C:\Program Files\microsoft frontpage
2010-11-26 17:25:05 ----RASH---- C:\MSDOS.SYS
2010-11-26 17:25:05 ----RASH---- C:\IO.SYS
2010-11-26 17:25:05 ----A---- C:\WINDOWS\control.ini
2010-11-26 17:25:05 ----A---- C:\CONFIG.SYS
2010-11-26 17:25:05 ----A---- C:\AUTOEXEC.BAT
2010-11-26 17:24:47 ----A---- C:\WINDOWS\system32\mapi32.dll
2010-11-26 17:24:09 ----SD---- C:\WINDOWS\Downloaded Program Files
2010-11-26 17:24:09 ----RD---- C:\WINDOWS\Offline Web Pages
2010-11-26 17:24:09 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2010-11-26 17:24:04 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2010-11-26 17:24:01 ----HD---- C:\Program Files\WindowsUpdate
2010-11-26 17:23:56 ----D---- C:\Program Files\Online Services
2010-11-26 17:23:32 ----D---- C:\WINDOWS\system32\DirectX
2010-11-26 17:22:54 ----A---- C:\WINDOWS\system32\atrace.dll
2010-11-26 17:22:49 ----A---- C:\WINDOWS\system32\desktop.ini
2010-11-26 17:22:49 ----A---- C:\WINDOWS\desktop.ini
2010-11-26 17:22:35 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2010-11-26 17:22:34 ----A---- C:\WINDOWS\system32\acctres.dll
2010-11-26 17:22:33 ----D---- C:\Program Files\Common Files\Services
2010-11-26 17:22:27 ----SD---- C:\WINDOWS\Tasks
2010-11-26 17:22:27 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2010-11-26 17:22:25 ----D---- C:\Program Files\Common Files\MSSoap
2010-11-26 17:22:16 ----D---- C:\WINDOWS\srchasst
2010-11-26 17:22:14 ----D---- C:\WINDOWS\system32\Macromed
2010-11-26 17:22:09 ----A---- C:\WINDOWS\system32\wuweb.dll
2010-11-26 17:22:09 ----A---- C:\WINDOWS\system32\wucltui.dll
2010-11-26 17:22:09 ----A---- C:\WINDOWS\system32\wuauserv.dll
2010-11-26 17:22:08 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2010-11-26 17:22:08 ----A---- C:\WINDOWS\system32\wuaueng.dll
2010-11-26 17:22:07 ----A---- C:\WINDOWS\system32\wups.dll
2010-11-26 17:22:07 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2010-11-26 17:22:07 ----A---- C:\WINDOWS\system32\wuauclt.exe
2010-11-26 17:22:07 ----A---- C:\WINDOWS\system32\wuapi.dll
2010-11-26 17:22:06 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2010-11-26 17:22:06 ----A---- C:\WINDOWS\system32\qmgr.dll
2010-11-26 17:22:06 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2010-11-26 17:22:06 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2010-11-26 17:21:58 ----D---- C:\Program Files\Movie Maker
2010-11-26 17:21:51 ----A---- C:\WINDOWS\system32\safrslv.dll
2010-11-26 17:21:51 ----A---- C:\WINDOWS\system32\safrdm.dll
2010-11-26 17:21:51 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2010-11-26 17:21:51 ----A---- C:\WINDOWS\system32\racpldlg.dll
2010-11-26 17:21:44 ----A---- C:\WINDOWS\system32\fltmc.exe
2010-11-26 17:21:44 ----A---- C:\WINDOWS\system32\fltlib.dll
2010-11-26 17:21:43 ----A---- C:\WINDOWS\system32\drivers\fltmgr.sys
2010-11-26 17:21:42 ----D---- C:\WINDOWS\system32\Restore
2010-11-26 17:21:42 ----A---- C:\WINDOWS\system32\srsvc.dll
2010-11-26 17:21:42 ----A---- C:\WINDOWS\system32\srrstr.dll
2010-11-26 17:21:42 ----A---- C:\WINDOWS\system32\srclient.dll
2010-11-26 17:21:42 ----A---- C:\WINDOWS\system32\drivers\sr.sys
2010-11-26 17:21:41 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2010-11-26 17:21:41 ----A---- C:\WINDOWS\system32\ils.dll
2010-11-26 17:21:40 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2010-11-26 17:21:40 ----A---- C:\WINDOWS\system32\msconf.dll
2010-11-26 17:21:40 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2010-11-26 17:21:40 ----A---- C:\WINDOWS\system32\mnmdd.dll
2010-11-26 17:21:34 ----D---- C:\Program Files\NetMeeting
2010-11-26 17:21:34 ----A---- C:\WINDOWS\system32\msoert2.dll
2010-11-26 17:21:34 ----A---- C:\WINDOWS\system32\msoeacct.dll
2010-11-26 17:21:31 ----A---- C:\WINDOWS\system32\inetres.dll
2010-11-26 17:21:30 ----A---- C:\WINDOWS\system32\inetcomm.dll
2010-11-26 17:21:26 ----D---- C:\Program Files\Outlook Express
2010-11-26 17:21:26 ----A---- C:\WINDOWS\system32\schedsvc.dll
2010-11-26 17:21:26 ----A---- C:\WINDOWS\system32\mstinit.exe
2010-11-26 17:21:26 ----A---- C:\WINDOWS\system32\mstask.dll
2010-11-26 17:21:25 ----A---- C:\WINDOWS\system32\icwphbk.dll
2010-11-26 17:21:25 ----A---- C:\WINDOWS\system32\icwdial.dll
2010-11-26 17:21:24 ----A---- C:\WINDOWS\system32\isign32.dll
2010-11-26 17:21:24 ----A---- C:\WINDOWS\system32\inetcfg.dll
2010-11-26 17:21:12 ----D---- C:\Program Files\Common Files\System
2010-11-26 17:21:10 ----D---- C:\Program Files\Internet Explorer
2010-11-26 17:20:57 ----D---- C:\Program Files\ComPlus Applications
2010-11-26 17:20:54 ----A---- C:\WINDOWS\vbaddin.ini
2010-11-26 17:20:54 ----A---- C:\WINDOWS\vb.ini
2010-11-26 17:20:49 ----D---- C:\WINDOWS\Registration
2010-11-26 17:20:22 ----D---- C:\Program Files\Windows Media Player
2010-11-26 17:20:16 ----D---- C:\Program Files\Messenger
2010-11-26 17:20:09 ----D---- C:\Program Files\MSN Gaming Zone
2010-11-26 17:20:09 ----A---- C:\WINDOWS\system32\write.exe
2010-11-26 17:19:54 ----A---- C:\WINDOWS\system32\sndvol32.exe
2010-11-26 17:19:54 ----A---- C:\WINDOWS\system32\hticons.dll
2010-11-26 17:19:53 ----A---- C:\WINDOWS\system32\avwav.dll
2010-11-26 17:19:53 ----A---- C:\WINDOWS\system32\avtapi.dll
2010-11-26 17:19:53 ----A---- C:\WINDOWS\system32\avmeter.dll
2010-11-26 17:19:52 ----A---- C:\WINDOWS\system32\winchat.exe
2010-11-26 17:19:39 ----A---- C:\WINDOWS\system32\getuname.dll
2010-11-26 17:19:38 ----A---- C:\WINDOWS\system32\charmap.exe
2010-11-26 17:19:38 ----A---- C:\WINDOWS\system32\calc.exe
2010-11-26 17:19:37 ----A---- C:\WINDOWS\system32\winmine.exe
2010-11-26 17:19:37 ----A---- C:\WINDOWS\system32\sol.exe
2010-11-26 17:19:36 ----A---- C:\WINDOWS\system32\mshearts.exe
2010-11-26 17:19:36 ----A---- C:\WINDOWS\system32\freecell.exe
2010-11-26 17:19:35 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2010-11-26 17:19:35 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2010-11-26 17:19:35 ----A---- C:\WINDOWS\system32\tslabels.ini
2010-11-26 17:19:35 ----A---- C:\WINDOWS\system32\tskill.exe
2010-11-26 17:19:35 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2010-11-26 17:19:35 ----A---- C:\WINDOWS\system32\tscon.exe
2010-11-26 17:19:35 ----A---- C:\WINDOWS\system32\shadow.exe
2010-11-26 17:19:35 ----A---- C:\WINDOWS\system32\reset.exe
2010-11-26 17:19:34 ----A---- C:\WINDOWS\system32\rwinsta.exe
2010-11-26 17:19:34 ----A---- C:\WINDOWS\system32\regini.exe
2010-11-26 17:19:34 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2010-11-26 17:19:34 ----A---- C:\WINDOWS\system32\qwinsta.exe
2010-11-26 17:19:34 ----A---- C:\WINDOWS\system32\qappsrv.exe
2010-11-26 17:19:34 ----A---- C:\WINDOWS\system32\msg.exe
2010-11-26 17:19:34 ----A---- C:\WINDOWS\system32\logoff.exe
2010-11-26 17:19:33 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2010-11-26 17:19:33 ----A---- C:\WINDOWS\system32\cdmodem.dll
2010-11-26 17:19:32 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2010-11-26 17:19:31 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2010-11-26 17:19:31 ----A---- C:\WINDOWS\system32\mtxex.dll
2010-11-26 17:19:31 ----A---- C:\WINDOWS\system32\mtxdm.dll
2010-11-26 17:19:31 ----A---- C:\WINDOWS\system32\comaddin.dll
2010-11-26 17:19:30 ----A---- C:\WINDOWS\system32\stclient.dll
2010-11-26 17:19:30 ----A---- C:\WINDOWS\system32\comsnap.dll
2010-11-26 17:19:30 ----A---- C:\WINDOWS\system32\comrepl.dll
2010-11-26 17:19:22 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2010-11-26 17:19:20 ----A---- C:\WINDOWS\system32\accwiz.exe
2010-11-26 17:19:19 ----A---- C:\WINDOWS\system32\sndrec32.exe
2010-11-26 17:19:19 ----A---- C:\WINDOWS\system32\mplay32.exe
2010-11-26 17:19:19 ----A---- C:\WINDOWS\system32\hypertrm.dll
2010-11-26 17:19:17 ----D---- C:\Program Files\Windows NT
2010-11-26 17:19:17 ----A---- C:\WINDOWS\system32\mspaint.exe
2010-11-26 17:19:17 ----A---- C:\WINDOWS\system32\clipbrd.exe
2010-11-26 17:19:16 ----A---- C:\WINDOWS\system32\spider.exe
2010-11-26 17:19:16 ----A---- C:\WINDOWS\system32\drivers\tdtcp.sys
2010-11-26 17:19:16 ----A---- C:\WINDOWS\system32\drivers\tdpipe.sys
2010-11-26 17:19:15 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2010-11-26 17:19:15 ----A---- C:\WINDOWS\system32\drivers\rdpwd.sys
2010-11-26 17:19:14 ----A---- C:\WINDOWS\system32\sessmgr.exe
2010-11-26 17:19:14 ----A---- C:\WINDOWS\system32\remotepg.dll
2010-11-26 17:19:14 ----A---- C:\WINDOWS\system32\rdshost.exe
2010-11-26 17:19:14 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2010-11-26 17:19:14 ----A---- C:\WINDOWS\system32\mstscax.dll
2010-11-26 17:19:14 ----A---- C:\WINDOWS\system32\mstsc.exe
2010-11-26 17:19:13 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2010-11-26 17:19:13 ----A---- C:\WINDOWS\system32\termsrv.dll
2010-11-26 17:19:13 ----A---- C:\WINDOWS\system32\rdchost.dll
2010-11-26 17:19:12 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2010-11-26 17:19:12 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2010-11-26 17:19:12 ----A---- C:\WINDOWS\system32\rdpclip.exe
2010-11-26 17:19:12 ----A---- C:\WINDOWS\system32\qprocess.exe
2010-11-26 17:19:12 ----A---- C:\WINDOWS\system32\icaapi.dll
2010-11-26 17:19:12 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2010-11-26 17:19:10 ----D---- C:\WINDOWS\system32\MsDtc
2010-11-26 17:19:10 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2010-11-26 17:19:09 ----A---- C:\WINDOWS\system32\xolehlp.dll
2010-11-26 17:19:09 ----A---- C:\WINDOWS\system32\mtxoci.dll
2010-11-26 17:19:09 ----A---- C:\WINDOWS\system32\msdtctm.dll
2010-11-26 17:19:09 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2010-11-26 17:19:08 ----A---- C:\WINDOWS\system32\msdtclog.dll
2010-11-26 17:19:08 ----A---- C:\WINDOWS\system32\msdtc.exe
2010-11-26 17:19:07 ----D---- C:\WINDOWS\system32\Com
2010-11-26 17:19:07 ----A---- C:\WINDOWS\system32\colbact.dll
2010-11-26 17:19:07 ----A---- C:\WINDOWS\system32\clbcatex.dll
2010-11-26 17:19:07 ----A---- C:\WINDOWS\system32\catsrvut.dll
2010-11-26 17:19:07 ----A---- C:\WINDOWS\system32\catsrvps.dll
2010-11-26 17:19:07 ----A---- C:\WINDOWS\system32\catsrv.dll
2010-11-26 17:19:06 ----A---- C:\WINDOWS\system32\comuid.dll
2010-11-26 17:19:06 ----A---- C:\WINDOWS\system32\comsvcs.dll
2010-11-26 17:19:05 ----A---- C:\WINDOWS\system32\clbcatq.dll
2010-11-26 17:18:59 ----A---- C:\WINDOWS\system32\servdeps.dll
2010-11-26 17:18:59 ----A---- C:\WINDOWS\system32\mmfutil.dll
2010-11-26 17:18:59 ----A---- C:\WINDOWS\system32\licwmi.dll
2010-11-26 17:18:59 ----A---- C:\WINDOWS\system32\cmprops.dll
2010-11-26 17:18:55 ----A---- C:\WINDOWS\system32\drivers\termdd.sys
2010-11-26 17:18:55 ----A---- C:\WINDOWS\system32\drivers\rdpdr.sys
======List of files/folders modified in the last 1 months======
2010-11-27 17:13:00 ----A---- C:\WINDOWS\system.ini
2010-11-27 17:03:32 ----A---- C:\WINDOWS\win.ini
2010-11-26 17:24:40 ----ASH---- C:\WINDOWS\fonts\desktop.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 gagp30kx;Filtr Microsoft Generic AGPv3.0 pro procesorovou platformu K8; C:\WINDOWS\system32\DRIVERS\gagp30kx.sys [2008-04-14 46464]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2010-11-26 691696]
R1 AmdK8;Ovladač procesoru AMD; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2005-03-09 42496]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2005-06-20 2324480]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2010-02-11 3565056]
R3 catchme;catchme; \??\C:\DOCUME~1\Admin\LOCALS~1\Temp\catchme.sys []
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2006-03-02 12160]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
R3 yukonwxp;NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller; C:\WINDOWS\system32\DRIVERS\yk51x86.sys [2004-06-16 180480]
S3 mbr;mbr; \??\C:\DOCUME~1\Admin\LOCALS~1\Temp\mbr.sys []
S3 pwnoqfob;pwnoqfob; \??\C:\DOCUME~1\Admin\LOCALS~1\Temp\pwnoqfob.sys []
S3 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys []
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2010-02-11 602112]
S4 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2010-02-10 593920]
S4 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S4 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-11-26 153376]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S4 NMSAccess;NMSAccess; C:\Program Files\CDBurnerXP\NMSAccessU.exe [2010-03-04 71096]
S4 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S4 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
-----------------EOF-----------------
Děkuju za rady
Tog z RSIT:
Logfile of random's system information tool 1.08 (written by random/random)
Run by Admin at 2010-11-27 17:19:00
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 213 GB (96%) free of 221 GB
Total RAM: 510 MB (34% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:19:01, on 27.11.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\notepad.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Documents and Settings\Admin\Dokumenty\Stažené soubory\RSIT.exe
C:\Program Files\trend micro\Admin.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
--
End of file - 2715 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-20 932288]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-09-23 35760]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTFMON.EXE]
C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\QTTask.exe [2010-09-08 421888]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMan]
C:\WINDOWS\SOUNDMAN.EXE [2005-06-20 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-05-14 248552]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"WMPNetworkSvc"=3
"ose"=3
"NMSAccess"=2
"JavaQuickStarterService"=2
"idsvc"=3
"ATI Smart"=2
"Ati HotKey Poller"=2
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2010-02-11 155648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ICQ7.2\ICQ.exe"="C:\Program Files\ICQ7.2\ICQ.exe:*:Enabled:ICQ7.2"
"C:\Program Files\ICQ7.2\aolload.exe"="C:\Program Files\ICQ7.2\aolload.exe:*:Enabled:aolload.exe"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ICQ7.2\ICQ.exe"="C:\Program Files\ICQ7.2\ICQ.exe:*:Enabled:ICQ7.2"
"C:\Program Files\ICQ7.2\aolload.exe"="C:\Program Files\ICQ7.2\aolload.exe:*:Enabled:aolload.exe"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
======List of files/folders created in the last 1 months======
2010-11-27 17:18:21 ----D---- C:\rsit
2010-11-27 17:18:21 ----D---- C:\Program Files\trend micro
2010-11-27 17:14:27 ----D---- C:\WINDOWS\temp
2010-11-27 17:14:26 ----A---- C:\ComboFix.txt
2010-11-27 17:01:52 ----D---- C:\Qoobox
2010-11-27 16:45:35 ----A---- C:\WINDOWS\ntbtlog.txt
2010-11-27 15:52:57 ----D---- C:\Program Files\Unlocker
2010-11-27 15:35:59 ----A---- C:\WINDOWS\zip.exe
2010-11-27 15:35:59 ----A---- C:\WINDOWS\SWXCACLS.exe
2010-11-27 15:35:59 ----A---- C:\WINDOWS\SWSC.exe
2010-11-27 15:35:59 ----A---- C:\WINDOWS\SWREG.exe
2010-11-27 15:35:59 ----A---- C:\WINDOWS\sed.exe
2010-11-27 15:35:59 ----A---- C:\WINDOWS\PEV.exe
2010-11-27 15:35:59 ----A---- C:\WINDOWS\NIRCMD.exe
2010-11-27 15:35:59 ----A---- C:\WINDOWS\MBR.exe
2010-11-27 15:35:59 ----A---- C:\WINDOWS\grep.exe
2010-11-27 15:35:55 ----D---- C:\WINDOWS\ERDNT
2010-11-27 14:10:17 ----A---- C:\WINDOWS\system32\mucltui.dll.mui
2010-11-27 14:10:16 ----A---- C:\WINDOWS\system32\mucltui.dll
2010-11-27 13:59:49 ----D---- C:\WINDOWS\system32\XPSViewer
2010-11-27 13:59:46 ----D---- C:\Program Files\MSBuild
2010-11-27 13:59:36 ----D---- C:\Program Files\Reference Assemblies
2010-11-27 13:59:01 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2010-11-27 13:59:01 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2010-11-27 13:59:01 ----N---- C:\WINDOWS\system32\prntvpt.dll
2010-11-27 13:46:16 ----D---- C:\WINDOWS\ie8updates
2010-11-27 13:30:13 ----D---- C:\WINDOWS\pss
2010-11-27 13:13:37 ----D---- C:\WINDOWS\WBEM
2010-11-27 13:12:02 ----HDC---- C:\WINDOWS\ie8
2010-11-27 13:03:57 ----N---- C:\WINDOWS\system32\spmsg.dll
2010-11-27 13:03:46 ----A---- C:\WINDOWS\system32\wmpns.dll
2010-11-27 13:03:40 ----D---- C:\Program Files\Windows Media Connect 2
2010-11-27 13:02:44 ----D---- C:\WINDOWS\system32\LogFiles
2010-11-27 13:02:44 ----D---- C:\WINDOWS\system32\drivers\UMDF
2010-11-27 13:01:29 ----D---- C:\WINDOWS\system32\URTTEMP
2010-11-27 12:58:31 ----D---- C:\Documents and Settings\Admin\Data aplikací\Canneverbe Limited
2010-11-27 12:57:04 ----D---- C:\Program Files\CDBurnerXP
2010-11-27 12:57:04 ----D---- C:\Documents and Settings\All Users\Data aplikací\Canneverbe Limited
2010-11-27 12:48:43 ----D---- C:\Documents and Settings\All Users\Data aplikací\Windows Genuine Advantage
2010-11-26 18:29:10 ----RSD---- C:\WINDOWS\assembly
2010-11-26 18:28:41 ----D---- C:\WINDOWS\system32\en-US
2010-11-26 18:28:36 ----D---- C:\Program Files\Microsoft.NET
2010-11-26 18:28:34 ----D---- C:\WINDOWS\Microsoft.NET
2010-11-26 18:27:39 ----D---- C:\Documents and Settings\All Users\Data aplikací\Sun
2010-11-26 18:27:38 ----D---- C:\Program Files\Common Files\Java
2010-11-26 18:27:26 ----A---- C:\WINDOWS\system32\javaws.exe
2010-11-26 18:27:26 ----A---- C:\WINDOWS\system32\javaw.exe
2010-11-26 18:27:26 ----A---- C:\WINDOWS\system32\java.exe
2010-11-26 18:27:26 ----A---- C:\WINDOWS\system32\deployJava1.dll
2010-11-26 18:27:12 ----D---- C:\Program Files\Java
2010-11-26 18:27:07 ----D---- C:\Documents and Settings\Admin\Data aplikací\Sun
2010-11-26 18:26:34 ----D---- C:\Program Files\Common Files\Skype
2010-11-26 18:26:30 ----RD---- C:\Program Files\Skype
2010-11-26 18:26:30 ----D---- C:\Documents and Settings\Admin\Data aplikací\Skype
2010-11-26 18:26:17 ----A---- C:\WINDOWS\ODBC.INI
2010-11-26 18:26:13 ----A---- C:\WINDOWS\system32\mdimon.dll
2010-11-26 18:25:30 ----D---- C:\Program Files\Common Files\DESIGNER
2010-11-26 18:25:17 ----D---- C:\WINDOWS\SHELLNEW
2010-11-26 18:25:16 ----D---- C:\Program Files\Microsoft Office
2010-11-26 18:19:55 ----D---- C:\WINDOWS\Prefetch
2010-11-26 18:17:54 ----A---- C:\WINDOWS\system32\h323log.txt
2010-11-26 18:16:28 ----D---- C:\WINDOWS\system32\CatRoot_bak
2010-11-26 18:16:23 ----A---- C:\WINDOWS\system32\drivers\audstub.sys
2010-11-26 18:15:57 ----A---- C:\WINDOWS\system32\drivers\redbook.sys
2010-11-26 18:15:07 ----A---- C:\WINDOWS\system32\usbui.dll
2010-11-26 18:14:57 ----A---- C:\WINDOWS\system32\drivers\gagp30kx.sys
2010-11-26 18:13:57 ----SHD---- C:\WINDOWS\Installer
2010-11-26 18:13:57 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-11-26 18:13:56 ----D---- C:\Program Files\Common Files\ODBC
2010-11-26 18:13:56 ----A---- C:\WINDOWS\ODBCINST.INI
2010-11-26 18:13:53 ----D---- C:\Program Files\Common Files\SpeechEngines
2010-11-26 18:13:52 ----RD---- C:\Program Files
2010-11-26 18:13:52 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-11-26 18:13:52 ----D---- C:\Program Files\Common Files
2010-11-26 18:13:48 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2010-11-26 18:13:48 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2010-11-26 18:13:48 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2010-11-26 18:13:46 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2010-11-26 18:13:46 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2010-11-26 18:13:46 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2010-11-26 18:13:46 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2010-11-26 18:13:46 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2010-11-26 18:13:45 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2010-11-26 18:13:45 ----RA---- C:\WINDOWS\system32\kbdur.dll
2010-11-26 18:13:45 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2010-11-26 18:13:45 ----RA---- C:\WINDOWS\system32\kbdru.dll
2010-11-26 18:13:45 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2010-11-26 18:13:45 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2010-11-26 18:13:45 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2010-11-26 18:13:42 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2010-11-26 18:13:42 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2010-11-26 18:13:42 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2010-11-26 18:13:42 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2010-11-26 18:13:42 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2010-11-26 18:13:42 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2010-11-26 18:13:42 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2010-11-26 18:13:40 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2010-11-26 18:13:40 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2010-11-26 18:13:40 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2010-11-26 18:13:40 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2010-11-26 18:13:40 ----RA---- C:\WINDOWS\system32\kbdest.dll
2010-11-26 18:13:36 ----A---- C:\WINDOWS\system32\kbdsl1.dll
2010-11-26 18:13:36 ----A---- C:\WINDOWS\system32\kbdsl.dll
2010-11-26 18:13:36 ----A---- C:\WINDOWS\system32\kbdro.dll
2010-11-26 18:13:36 ----A---- C:\WINDOWS\system32\kbdpl.dll
2010-11-26 18:13:35 ----A---- C:\WINDOWS\system32\kbdycl.dll
2010-11-26 18:13:35 ----A---- C:\WINDOWS\system32\kbdpl1.dll
2010-11-26 18:13:35 ----A---- C:\WINDOWS\system32\kbdhu1.dll
2010-11-26 18:13:35 ----A---- C:\WINDOWS\system32\kbdhu.dll
2010-11-26 18:13:35 ----A---- C:\WINDOWS\system32\kbdcr.dll
2010-11-26 18:13:35 ----A---- C:\WINDOWS\system32\KBDAL.DLL
2010-11-26 18:13:34 ----A---- C:\WINDOWS\system32\irclass.dll
2010-11-26 18:13:34 ----A---- C:\WINDOWS\system32\dgsetup.dll
2010-11-26 18:13:34 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2010-11-26 18:13:33 ----A---- C:\WINDOWS\system32\spxcoins.dll
2010-11-26 18:13:33 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2010-11-26 18:13:30 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2010-11-26 18:13:30 ----A---- C:\WINDOWS\TASKMAN.EXE
2010-11-26 18:13:30 ----A---- C:\WINDOWS\system32\drivers\irenum.sys
2010-11-26 18:13:30 ----A---- C:\WINDOWS\system32\batt.dll
2010-11-26 18:13:29 ----A---- C:\WINDOWS\notepad.exe
2010-11-26 18:13:28 ----A---- C:\WINDOWS\system32\storprop.dll
2010-11-26 18:13:20 ----ASH---- C:\Documents and Settings\All Users\Data aplikací\desktop.ini
2010-11-26 18:13:19 ----RA---- C:\WINDOWS\SET21.tmp
2010-11-26 18:13:16 ----RA---- C:\WINDOWS\SET8.tmp
2010-11-26 18:13:13 ----RA---- C:\WINDOWS\SET4.tmp
2010-11-26 18:13:12 ----RA---- C:\WINDOWS\SET3.tmp
2010-11-26 18:13:06 ----D---- C:\WINDOWS\system32\CatRoot2
2010-11-26 18:13:06 ----D---- C:\WINDOWS\system32\CatRoot
2010-11-26 18:13:00 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-11-26 18:12:31 ----SHD---- C:\System Volume Information
2010-11-26 18:12:31 ----D---- C:\Documents and Settings
2010-11-26 18:11:10 ----D---- C:\Documents and Settings\All Users\Data aplikací\Skype
2010-11-26 18:10:37 ----SH---- C:\boot.ini
2010-11-26 18:08:59 ----N---- C:\WINDOWS\system32\msxml6r.dll
2010-11-26 18:08:59 ----A---- C:\WINDOWS\system32\msxml6.dll
2010-11-26 18:08:26 ----N---- C:\WINDOWS\system32\ati2dvaa.dll
2010-11-26 18:08:26 ----N---- C:\WINDOWS\system32\aaclient.dll
2010-11-26 18:08:25 ----N---- C:\WINDOWS\system32\ativtmxx.dll
2010-11-26 18:08:25 ----N---- C:\WINDOWS\system32\ati3d1ag.dll
2010-11-26 18:08:24 ----N---- C:\WINDOWS\system32\dimsntfy.dll
2010-11-26 18:08:24 ----N---- C:\WINDOWS\system32\dhcpqec.dll
2010-11-26 18:08:24 ----N---- C:\WINDOWS\system32\credssp.dll
2010-11-26 18:08:24 ----N---- C:\WINDOWS\system32\bitsprx4.dll
2010-11-26 18:08:24 ----N---- C:\WINDOWS\system32\azroles.dll
2010-11-26 18:08:23 ----N---- C:\WINDOWS\system32\dot3ui.dll
2010-11-26 18:08:23 ----N---- C:\WINDOWS\system32\dot3svc.dll
2010-11-26 18:08:23 ----N---- C:\WINDOWS\system32\dot3msm.dll
2010-11-26 18:08:23 ----N---- C:\WINDOWS\system32\dot3gpclnt.dll
2010-11-26 18:08:23 ----N---- C:\WINDOWS\system32\dot3dlg.dll
2010-11-26 18:08:23 ----N---- C:\WINDOWS\system32\dot3cfg.dll
2010-11-26 18:08:23 ----N---- C:\WINDOWS\system32\dot3api.dll
2010-11-26 18:08:23 ----N---- C:\WINDOWS\system32\dimsroam.dll
2010-11-26 18:08:22 ----N---- C:\WINDOWS\system32\eapsvc.dll
2010-11-26 18:08:22 ----N---- C:\WINDOWS\system32\eapqec.dll
2010-11-26 18:08:22 ----N---- C:\WINDOWS\system32\eappprxy.dll
2010-11-26 18:08:22 ----N---- C:\WINDOWS\system32\eapphost.dll
2010-11-26 18:08:22 ----N---- C:\WINDOWS\system32\eappgnui.dll
2010-11-26 18:08:22 ----N---- C:\WINDOWS\system32\eappcfg.dll
2010-11-26 18:08:22 ----N---- C:\WINDOWS\system32\eapp3hst.dll
2010-11-26 18:08:22 ----N---- C:\WINDOWS\system32\eapolqec.dll
2010-11-26 18:08:21 ----N---- C:\WINDOWS\system32\hsfcisp2.dll
2010-11-26 18:08:18 ----N---- C:\WINDOWS\system32\kbdbhc.dll
2010-11-26 18:08:17 ----N---- C:\WINDOWS\system32\l2gpstore.dll
2010-11-26 18:08:17 ----N---- C:\WINDOWS\system32\kmsvc.dll
2010-11-26 18:08:17 ----N---- C:\WINDOWS\system32\kbdpash.dll
2010-11-26 18:08:17 ----N---- C:\WINDOWS\system32\kbdnepr.dll
2010-11-26 18:08:17 ----N---- C:\WINDOWS\system32\kbdiultn.dll
2010-11-26 18:08:16 ----N---- C:\WINDOWS\system32\mmcex.dll
2010-11-26 18:08:16 ----N---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2010-11-26 18:08:16 ----N---- C:\WINDOWS\system32\mdmxsdk.dll
2010-11-26 18:08:15 ----N---- C:\WINDOWS\system32\msshavmsg.dll
2010-11-26 18:08:15 ----N---- C:\WINDOWS\system32\mssha.dll
2010-11-26 18:08:15 ----N---- C:\WINDOWS\system32\mmcperf.exe
2010-11-26 18:08:15 ----N---- C:\WINDOWS\system32\mmcfxcommon.dll
2010-11-26 18:08:14 ----N---- C:\WINDOWS\system32\napstat.exe
2010-11-26 18:08:14 ----N---- C:\WINDOWS\system32\napmontr.dll
2010-11-26 18:08:14 ----N---- C:\WINDOWS\system32\napipsec.dll
2010-11-26 18:08:14 ----N---- C:\WINDOWS\system32\mtxparhd.dll
2010-11-26 18:08:13 ----N---- C:\WINDOWS\system32\qagent.dll
2010-11-26 18:08:13 ----N---- C:\WINDOWS\system32\photometadatahandler.dll
2010-11-26 18:08:13 ----N---- C:\WINDOWS\system32\onex.dll
2010-11-26 18:08:13 ----N---- C:\WINDOWS\system32\nv4_disp.dll
2010-11-26 18:08:12 ----N---- C:\WINDOWS\system32\slserv.exe
2010-11-26 18:08:12 ----N---- C:\WINDOWS\system32\slrundll.exe
2010-11-26 18:08:12 ----N---- C:\WINDOWS\system32\slgen.dll
2010-11-26 18:08:12 ----N---- C:\WINDOWS\system32\slextspk.dll
2010-11-26 18:08:12 ----N---- C:\WINDOWS\system32\slcoinst.dll
2010-11-26 18:08:12 ----N---- C:\WINDOWS\system32\setupn.exe
2010-11-26 18:08:12 ----N---- C:\WINDOWS\system32\s3gnb.dll
2010-11-26 18:08:12 ----N---- C:\WINDOWS\system32\rhttpaa.dll
2010-11-26 18:08:12 ----N---- C:\WINDOWS\system32\rasqec.dll
2010-11-26 18:08:12 ----N---- C:\WINDOWS\system32\qutil.dll
2010-11-26 18:08:12 ----N---- C:\WINDOWS\system32\qcliprov.dll
2010-11-26 18:08:12 ----N---- C:\WINDOWS\system32\qagentrt.dll
2010-11-26 18:08:10 ----N---- C:\WINDOWS\system32\tsgqec.dll
2010-11-26 18:08:09 ----N---- C:\WINDOWS\system32\windowscodecsext.dll
2010-11-26 18:08:09 ----N---- C:\WINDOWS\system32\windowscodecs.dll
2010-11-26 18:08:09 ----N---- C:\WINDOWS\system32\verclsid.exe
2010-11-26 18:08:09 ----N---- C:\WINDOWS\system32\tzchange.exe
2010-11-26 18:08:09 ----N---- C:\WINDOWS\system32\tspkg.dll
2010-11-26 18:08:08 ----N---- C:\WINDOWS\system32\wmphoto.dll
2010-11-26 18:08:08 ----N---- C:\WINDOWS\system32\wlanapi.dll
2010-11-26 18:08:05 ----N---- C:\WINDOWS\slrundll.exe
2010-11-26 18:08:05 ----A---- C:\WINDOWS\system32\xmllite.dll
2010-11-26 18:08:03 ----D---- C:\WINDOWS\system32\cs-cz
2010-11-26 18:08:00 ----D---- C:\WINDOWS\l2schemas
2010-11-26 18:07:57 ----D---- C:\WINDOWS\system32\cs
2010-11-26 18:07:56 ----D---- C:\WINDOWS\system32\bits
2010-11-26 18:04:25 ----D---- C:\WINDOWS\ServicePackFiles
2010-11-26 18:03:48 ----D---- C:\Program Files\QuickTime
2010-11-26 18:03:47 ----D---- C:\Documents and Settings\All Users\Data aplikací\Apple Computer
2010-11-26 18:03:14 ----D---- C:\Program Files\Common Files\Apple
2010-11-26 18:02:58 ----D---- C:\Program Files\Apple Software Update
2010-11-26 18:02:58 ----D---- C:\Documents and Settings\All Users\Data aplikací\Apple
2010-11-26 18:02:47 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-11-26 18:02:47 ----RSD---- C:\WINDOWS\Fonts
2010-11-26 18:02:47 ----RD---- C:\WINDOWS\Web
2010-11-26 18:02:47 ----HD---- C:\WINDOWS\inf
2010-11-26 18:02:47 ----D---- C:\WINDOWS\WinSxS
2010-11-26 18:02:47 ----D---- C:\WINDOWS\twain_32
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\wins
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\wbem
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\usmt
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\spool
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\ShellExt
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\Setup
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\ras
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\oobe
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\npp
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\mui
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\inetsrv
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\IME
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\icsxml
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\ias
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\export
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\drivers\etc
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\drivers\disdn
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\drivers
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\dhcp
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\config
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\3com_dmi
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\3076
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\2052
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\1054
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\1042
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\1041
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\1037
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\1033
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\1031
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\1029
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\1028
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32\1025
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system32
2010-11-26 18:02:47 ----D---- C:\WINDOWS\system
2010-11-26 18:02:47 ----D---- C:\WINDOWS\security
2010-11-26 18:02:47 ----D---- C:\WINDOWS\Resources
2010-11-26 18:02:47 ----D---- C:\WINDOWS\repair
2010-11-26 18:02:47 ----D---- C:\WINDOWS\Provisioning
2010-11-26 18:02:47 ----D---- C:\WINDOWS\pchealth
2010-11-26 18:02:47 ----D---- C:\WINDOWS\PeerNet
2010-11-26 18:02:47 ----D---- C:\WINDOWS\mui
2010-11-26 18:02:47 ----D---- C:\WINDOWS\msapps
2010-11-26 18:02:47 ----D---- C:\WINDOWS\msagent
2010-11-26 18:02:47 ----D---- C:\WINDOWS\Media
2010-11-26 18:02:47 ----D---- C:\WINDOWS\java
2010-11-26 18:02:47 ----D---- C:\WINDOWS\ime
2010-11-26 18:02:47 ----D---- C:\WINDOWS\Help
2010-11-26 18:02:47 ----D---- C:\WINDOWS\Driver Cache
2010-11-26 18:02:47 ----D---- C:\WINDOWS\Debug
2010-11-26 18:02:47 ----D---- C:\WINDOWS\Cursors
2010-11-26 18:02:47 ----D---- C:\WINDOWS\Connection Wizard
2010-11-26 18:02:47 ----D---- C:\WINDOWS\Config
2010-11-26 18:02:47 ----D---- C:\WINDOWS\AppPatch
2010-11-26 18:02:47 ----D---- C:\WINDOWS\addins
2010-11-26 18:02:47 ----D---- C:\WINDOWS
2010-11-26 18:02:46 ----ASH---- C:\pagefile.sys
2010-11-26 18:01:55 ----D---- C:\Program Files\Microsoft Silverlight
2010-11-26 18:00:43 ----A---- C:\WINDOWS\system32\unrar.dll
2010-11-26 18:00:42 ----A---- C:\WINDOWS\avisplitter.ini
2010-11-26 18:00:40 ----A---- C:\WINDOWS\system32\yv12vfw.dll
2010-11-26 18:00:40 ----A---- C:\WINDOWS\system32\xvidvfw.dll
2010-11-26 18:00:40 ----A---- C:\WINDOWS\system32\xvidcore.dll
2010-11-26 18:00:40 ----A---- C:\WINDOWS\system32\ff_vfw.dll.manifest
2010-11-26 18:00:40 ----A---- C:\WINDOWS\system32\ff_vfw.dll
2010-11-26 18:00:38 ----D---- C:\Program Files\K-Lite Codec Pack
2010-11-26 17:59:00 ----N---- C:\WINDOWS\system32\drivers\adv02nt5.dll
2010-11-26 17:59:00 ----N---- C:\WINDOWS\system32\drivers\adv01nt5.dll
2010-11-26 17:59:00 ----D---- C:\WINDOWS\network diagnostic
2010-11-26 17:58:59 ----N---- C:\WINDOWS\system32\drivers\amdagp.sys
2010-11-26 17:58:59 ----N---- C:\WINDOWS\system32\drivers\alim1541.sys
2010-11-26 17:58:59 ----N---- C:\WINDOWS\system32\drivers\agpcpq.sys
2010-11-26 17:58:59 ----N---- C:\WINDOWS\system32\drivers\agp440.sys
2010-11-26 17:58:59 ----N---- C:\WINDOWS\system32\drivers\adv11nt5.dll
2010-11-26 17:58:59 ----N---- C:\WINDOWS\system32\drivers\adv09nt5.dll
2010-11-26 17:58:59 ----N---- C:\WINDOWS\system32\drivers\adv08nt5.dll
2010-11-26 17:58:59 ----N---- C:\WINDOWS\system32\drivers\adv07nt5.dll
2010-11-26 17:58:59 ----N---- C:\WINDOWS\system32\drivers\adv05nt5.dll
2010-11-26 17:58:58 ----N---- C:\WINDOWS\system32\drivers\atinmdxx.sys
2010-11-26 17:58:58 ----N---- C:\WINDOWS\system32\drivers\atinbtxx.sys
2010-11-26 17:58:58 ----N---- C:\WINDOWS\system32\drivers\ati2mtaa.sys
2010-11-26 17:58:58 ----N---- C:\WINDOWS\system32\drivers\ati1xsxx.sys
2010-11-26 17:58:58 ----N---- C:\WINDOWS\system32\drivers\ati1xbxx.sys
2010-11-26 17:58:58 ----N---- C:\WINDOWS\system32\drivers\ati1tuxx.sys
2010-11-26 17:58:58 ----N---- C:\WINDOWS\system32\drivers\ati1ttxx.sys
2010-11-26 17:58:58 ----N---- C:\WINDOWS\system32\drivers\ati1snxx.sys
2010-11-26 17:58:58 ----N---- C:\WINDOWS\system32\drivers\ati1rvxx.sys
2010-11-26 17:58:58 ----N---- C:\WINDOWS\system32\drivers\ati1raxx.sys
2010-11-26 17:58:58 ----N---- C:\WINDOWS\system32\drivers\ati1pdxx.sys
2010-11-26 17:58:58 ----N---- C:\WINDOWS\system32\drivers\ati1mdxx.sys
2010-11-26 17:58:58 ----N---- C:\WINDOWS\system32\drivers\ati1btxx.sys
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\bthprint.sys
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\bthport.sys
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\bthpan.sys
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\bthmodem.sys
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\bthenum.sys
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\atv10nt5.dll
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\atv06nt5.dll
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\atv04nt5.dll
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\atv02nt5.dll
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\atv01nt5.dll
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\atinxsxx.sys
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\atinxbxx.sys
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\atintuxx.sys
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\atinttxx.sys
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\atinsnxx.sys
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\atinrvxx.sys
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\atinraxx.sys
2010-11-26 17:58:57 ----N---- C:\WINDOWS\system32\drivers\atinpdxx.sys
2010-11-26 17:58:56 ----N---- C:\WINDOWS\system32\drivers\ch7xxnt5.dll
2010-11-26 17:58:56 ----N---- C:\WINDOWS\system32\drivers\bthusb.sys
2010-11-26 17:58:55 ----N---- C:\WINDOWS\system32\drivers\hsfcxts2.sys
2010-11-26 17:58:55 ----N---- C:\WINDOWS\system32\drivers\hsfbs2s2.sys
2010-11-26 17:58:55 ----N---- C:\WINDOWS\system32\drivers\hidir.sys
2010-11-26 17:58:55 ----N---- C:\WINDOWS\system32\drivers\hidbth.sys
2010-11-26 17:58:55 ----N---- C:\WINDOWS\system32\drivers\hdaudbus.sys
2010-11-26 17:58:54 ----N---- C:\WINDOWS\system32\drivers\hsfdpsp2.sys
2010-11-26 17:58:52 ----N---- C:\WINDOWS\system32\drivers\ntmtlfax.sys
2010-11-26 17:58:52 ----N---- C:\WINDOWS\system32\drivers\mutohpen.sys
2010-11-26 17:58:52 ----N---- C:\WINDOWS\system32\drivers\mtxparhm.sys
2010-11-26 17:58:52 ----N---- C:\WINDOWS\system32\drivers\mtlstrm.sys
2010-11-26 17:58:52 ----N---- C:\WINDOWS\system32\drivers\mtlmnt5.sys
2010-11-26 17:58:52 ----N---- C:\WINDOWS\system32\drivers\mdmxsdk.sys
2010-11-26 17:58:51 ----N---- C:\WINDOWS\system32\drivers\slnt7554.sys
2010-11-26 17:58:51 ----N---- C:\WINDOWS\system32\drivers\sisagp.sys
2010-11-26 17:58:51 ----N---- C:\WINDOWS\system32\drivers\siint5.dll
2010-11-26 17:58:51 ----N---- C:\WINDOWS\system32\drivers\sffp_mmc.sys
2010-11-26 17:58:51 ----N---- C:\WINDOWS\system32\drivers\s3gnbm.sys
2010-11-26 17:58:51 ----N---- C:\WINDOWS\system32\drivers\rndismpx.sys
2010-11-26 17:58:51 ----N---- C:\WINDOWS\system32\drivers\rfcomm.sys
2010-11-26 17:58:51 ----N---- C:\WINDOWS\system32\drivers\recagent.sys
2010-11-26 17:58:51 ----N---- C:\WINDOWS\system32\drivers\nv4_mini.sys
2010-11-26 17:58:50 ----N---- C:\WINDOWS\system32\drivers\watv06nt.sys
2010-11-26 17:58:50 ----N---- C:\WINDOWS\system32\drivers\wadv11nt.sys
2010-11-26 17:58:50 ----N---- C:\WINDOWS\system32\drivers\wadv09nt.sys
2010-11-26 17:58:50 ----N---- C:\WINDOWS\system32\drivers\wadv08nt.sys
2010-11-26 17:58:50 ----N---- C:\WINDOWS\system32\drivers\wadv07nt.sys
2010-11-26 17:58:50 ----N---- C:\WINDOWS\system32\drivers\wacompen.sys
2010-11-26 17:58:50 ----N---- C:\WINDOWS\system32\drivers\viaagp.sys
2010-11-26 17:58:50 ----N---- C:\WINDOWS\system32\drivers\vchnt5.dll
2010-11-26 17:58:50 ----N---- C:\WINDOWS\system32\drivers\usbvideo.sys
2010-11-26 17:58:50 ----N---- C:\WINDOWS\system32\drivers\usb8023x.sys
2010-11-26 17:58:50 ----N---- C:\WINDOWS\system32\drivers\uagp35.sys
2010-11-26 17:58:50 ----N---- C:\WINDOWS\system32\drivers\smbali.sys
2010-11-26 17:58:50 ----N---- C:\WINDOWS\system32\drivers\slwdmsup.sys
2010-11-26 17:58:50 ----N---- C:\WINDOWS\system32\drivers\slnthal.sys
2010-11-26 17:58:50 ----N---- C:\WINDOWS\system32\drivers\slntamr.sys
2010-11-26 17:58:49 ----N---- C:\WINDOWS\system32\drivers\watv10nt.sys
2010-11-26 17:58:06 ----D---- C:\Documents and Settings\Admin\Data aplikací\ICQ
2010-11-26 17:57:41 ----D---- C:\Program Files\ICQ7.2
2010-11-26 17:55:26 ----A---- C:\WINDOWS\002564_.tmp
2010-11-26 17:51:57 ----A---- C:\WINDOWS\system32\drivers\sptd.sys
2010-11-26 17:51:30 ----D---- C:\Documents and Settings\Admin\Data aplikací\DAEMON Tools Lite
2010-11-26 17:51:28 ----D---- C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Lite
2010-11-26 17:51:14 ----D---- C:\WINDOWS\EHome
2010-11-26 17:50:10 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2010-11-26 17:49:36 ----D---- C:\Program Files\Common Files\Adobe
2010-11-26 17:49:36 ----D---- C:\Program Files\Adobe
2010-11-26 17:49:27 ----D---- C:\Documents and Settings\Admin\Data aplikací\Macromedia
2010-11-26 17:49:27 ----D---- C:\Documents and Settings\Admin\Data aplikací\Adobe
2010-11-26 17:45:08 ----D---- C:\Program Files\Alwil Software
2010-11-26 17:45:08 ----D---- C:\Documents and Settings\All Users\Data aplikací\Alwil Software
2010-11-26 17:43:35 ----A---- C:\WINDOWS\system32\wpa.bak
2010-11-26 17:41:25 ----N---- C:\WINDOWS\system32\ati2sgag.exe
2010-11-26 17:40:14 ----D---- C:\Program Files\ATI Technologies
2010-11-26 17:38:58 ----D---- C:\Program Files\CCleaner
2010-11-26 17:37:51 ----D---- C:\WINDOWS\system32\PreInstall
2010-11-26 17:37:51 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2010-11-26 17:36:37 ----D---- C:\Documents and Settings\Admin\Data aplikací\Mozilla
2010-11-26 17:36:32 ----D---- C:\Program Files\Mozilla Firefox
2010-11-26 17:34:15 ----D---- C:\Program Files\AMD
2010-11-26 17:34:15 ----A---- C:\WINDOWS\system32\drivers\AmdK8.sys
2010-11-26 17:33:41 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2010-11-26 17:32:37 ----D---- C:\Program Files\Marvell
2010-11-26 17:32:00 ----A---- C:\WINDOWS\system32\drivers\splitter.sys
2010-11-26 17:31:58 ----A---- C:\WINDOWS\system32\drivers\wdmaud.sys
2010-11-26 17:31:57 ----A---- C:\WINDOWS\system32\drivers\dmusic.sys
2010-11-26 17:31:52 ----A---- C:\WINDOWS\system32\drivers\swmidi.sys
2010-11-26 17:31:51 ----A---- C:\WINDOWS\system32\drivers\aec.sys
2010-11-26 17:31:50 ----A---- C:\WINDOWS\system32\drivers\kmixer.sys
2010-11-26 17:31:49 ----A---- C:\WINDOWS\system32\drivers\drmkaud.sys
2010-11-26 17:31:48 ----A---- C:\WINDOWS\system32\drivers\sysaudio.sys
2010-11-26 17:31:46 ----A---- C:\WINDOWS\system32\drivers\mskssrv.sys
2010-11-26 17:31:45 ----A---- C:\WINDOWS\system32\drivers\mspqm.sys
2010-11-26 17:31:43 ----A---- C:\WINDOWS\system32\drivers\mspclock.sys
2010-11-26 17:31:38 ----A---- C:\WINDOWS\system32\ksuser.dll
2010-11-26 17:31:38 ----A---- C:\WINDOWS\system32\drivers\portcls.sys
2010-11-26 17:31:37 ----A---- C:\WINDOWS\system32\drivers\drmk.sys
2010-11-26 17:31:35 ----RA---- C:\WINDOWS\avrack.ini
2010-11-26 17:31:35 ----D---- C:\Program Files\Realtek Sound Manager
2010-11-26 17:31:35 ----D---- C:\Program Files\AvRack
2010-11-26 17:31:34 ----D---- C:\Program Files\Realtek AC97
2010-11-26 17:31:32 ----RA---- C:\WINDOWS\system32\RTLCPL.EXE
2010-11-26 17:31:32 ----RA---- C:\WINDOWS\system32\RTLCPAPI.dll
2010-11-26 17:31:32 ----RA---- C:\WINDOWS\system32\ChCfg.exe
2010-11-26 17:31:32 ----RA---- C:\WINDOWS\system32\drivers\ALCXWDM.SYS
2010-11-26 17:31:32 ----RA---- C:\WINDOWS\SOUNDMAN.EXE
2010-11-26 17:31:31 ----RA---- C:\WINDOWS\alcupd.exe
2010-11-26 17:31:31 ----RA---- C:\WINDOWS\alcrmv.exe
2010-11-26 17:31:31 ----HD---- C:\Program Files\InstallShield Installation Information
2010-11-26 17:31:22 ----D---- C:\Program Files\Common Files\InstallShield
2010-11-26 17:30:53 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-11-26 17:30:42 ----A---- C:\WINDOWS\IsUninst.exe
2010-11-26 17:30:20 ----A---- C:\WINDOWS\system32\drivers\ASACPI.sys
2010-11-26 17:30:19 ----D---- C:\Documents and Settings\Admin\Data aplikací\WinRAR
2010-11-26 17:29:47 ----D---- C:\Program Files\WinRAR
2010-11-26 17:28:59 ----D---- C:\Documents and Settings\Admin\Data aplikací\Identities
2010-11-26 17:28:59 ----A---- C:\WINDOWS\system32\drivers\usbstor.sys
2010-11-26 17:28:57 ----HD---- C:\Program Files\Uninstall Information
2010-11-26 17:28:52 ----ASH---- C:\Documents and Settings\Admin\Data aplikací\desktop.ini
2010-11-26 17:28:51 ----SD---- C:\Documents and Settings\Admin\Data aplikací\Microsoft
2010-11-26 17:28:09 ----D---- C:\WINDOWS\SoftwareDistribution
2010-11-26 17:28:08 ----SD---- C:\WINDOWS\system32\Microsoft
2010-11-26 17:28:08 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-11-26 17:25:22 ----D---- C:\WINDOWS\system32\xircom
2010-11-26 17:25:22 ----D---- C:\Program Files\xerox
2010-11-26 17:25:22 ----D---- C:\Program Files\microsoft frontpage
2010-11-26 17:25:05 ----RASH---- C:\MSDOS.SYS
2010-11-26 17:25:05 ----RASH---- C:\IO.SYS
2010-11-26 17:25:05 ----A---- C:\WINDOWS\control.ini
2010-11-26 17:25:05 ----A---- C:\CONFIG.SYS
2010-11-26 17:25:05 ----A---- C:\AUTOEXEC.BAT
2010-11-26 17:24:47 ----A---- C:\WINDOWS\system32\mapi32.dll
2010-11-26 17:24:09 ----SD---- C:\WINDOWS\Downloaded Program Files
2010-11-26 17:24:09 ----RD---- C:\WINDOWS\Offline Web Pages
2010-11-26 17:24:09 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2010-11-26 17:24:04 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2010-11-26 17:24:01 ----HD---- C:\Program Files\WindowsUpdate
2010-11-26 17:23:56 ----D---- C:\Program Files\Online Services
2010-11-26 17:23:32 ----D---- C:\WINDOWS\system32\DirectX
2010-11-26 17:22:54 ----A---- C:\WINDOWS\system32\atrace.dll
2010-11-26 17:22:49 ----A---- C:\WINDOWS\system32\desktop.ini
2010-11-26 17:22:49 ----A---- C:\WINDOWS\desktop.ini
2010-11-26 17:22:35 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2010-11-26 17:22:34 ----A---- C:\WINDOWS\system32\acctres.dll
2010-11-26 17:22:33 ----D---- C:\Program Files\Common Files\Services
2010-11-26 17:22:27 ----SD---- C:\WINDOWS\Tasks
2010-11-26 17:22:27 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2010-11-26 17:22:25 ----D---- C:\Program Files\Common Files\MSSoap
2010-11-26 17:22:16 ----D---- C:\WINDOWS\srchasst
2010-11-26 17:22:14 ----D---- C:\WINDOWS\system32\Macromed
2010-11-26 17:22:09 ----A---- C:\WINDOWS\system32\wuweb.dll
2010-11-26 17:22:09 ----A---- C:\WINDOWS\system32\wucltui.dll
2010-11-26 17:22:09 ----A---- C:\WINDOWS\system32\wuauserv.dll
2010-11-26 17:22:08 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2010-11-26 17:22:08 ----A---- C:\WINDOWS\system32\wuaueng.dll
2010-11-26 17:22:07 ----A---- C:\WINDOWS\system32\wups.dll
2010-11-26 17:22:07 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2010-11-26 17:22:07 ----A---- C:\WINDOWS\system32\wuauclt.exe
2010-11-26 17:22:07 ----A---- C:\WINDOWS\system32\wuapi.dll
2010-11-26 17:22:06 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2010-11-26 17:22:06 ----A---- C:\WINDOWS\system32\qmgr.dll
2010-11-26 17:22:06 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2010-11-26 17:22:06 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2010-11-26 17:21:58 ----D---- C:\Program Files\Movie Maker
2010-11-26 17:21:51 ----A---- C:\WINDOWS\system32\safrslv.dll
2010-11-26 17:21:51 ----A---- C:\WINDOWS\system32\safrdm.dll
2010-11-26 17:21:51 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2010-11-26 17:21:51 ----A---- C:\WINDOWS\system32\racpldlg.dll
2010-11-26 17:21:44 ----A---- C:\WINDOWS\system32\fltmc.exe
2010-11-26 17:21:44 ----A---- C:\WINDOWS\system32\fltlib.dll
2010-11-26 17:21:43 ----A---- C:\WINDOWS\system32\drivers\fltmgr.sys
2010-11-26 17:21:42 ----D---- C:\WINDOWS\system32\Restore
2010-11-26 17:21:42 ----A---- C:\WINDOWS\system32\srsvc.dll
2010-11-26 17:21:42 ----A---- C:\WINDOWS\system32\srrstr.dll
2010-11-26 17:21:42 ----A---- C:\WINDOWS\system32\srclient.dll
2010-11-26 17:21:42 ----A---- C:\WINDOWS\system32\drivers\sr.sys
2010-11-26 17:21:41 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2010-11-26 17:21:41 ----A---- C:\WINDOWS\system32\ils.dll
2010-11-26 17:21:40 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2010-11-26 17:21:40 ----A---- C:\WINDOWS\system32\msconf.dll
2010-11-26 17:21:40 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2010-11-26 17:21:40 ----A---- C:\WINDOWS\system32\mnmdd.dll
2010-11-26 17:21:34 ----D---- C:\Program Files\NetMeeting
2010-11-26 17:21:34 ----A---- C:\WINDOWS\system32\msoert2.dll
2010-11-26 17:21:34 ----A---- C:\WINDOWS\system32\msoeacct.dll
2010-11-26 17:21:31 ----A---- C:\WINDOWS\system32\inetres.dll
2010-11-26 17:21:30 ----A---- C:\WINDOWS\system32\inetcomm.dll
2010-11-26 17:21:26 ----D---- C:\Program Files\Outlook Express
2010-11-26 17:21:26 ----A---- C:\WINDOWS\system32\schedsvc.dll
2010-11-26 17:21:26 ----A---- C:\WINDOWS\system32\mstinit.exe
2010-11-26 17:21:26 ----A---- C:\WINDOWS\system32\mstask.dll
2010-11-26 17:21:25 ----A---- C:\WINDOWS\system32\icwphbk.dll
2010-11-26 17:21:25 ----A---- C:\WINDOWS\system32\icwdial.dll
2010-11-26 17:21:24 ----A---- C:\WINDOWS\system32\isign32.dll
2010-11-26 17:21:24 ----A---- C:\WINDOWS\system32\inetcfg.dll
2010-11-26 17:21:12 ----D---- C:\Program Files\Common Files\System
2010-11-26 17:21:10 ----D---- C:\Program Files\Internet Explorer
2010-11-26 17:20:57 ----D---- C:\Program Files\ComPlus Applications
2010-11-26 17:20:54 ----A---- C:\WINDOWS\vbaddin.ini
2010-11-26 17:20:54 ----A---- C:\WINDOWS\vb.ini
2010-11-26 17:20:49 ----D---- C:\WINDOWS\Registration
2010-11-26 17:20:22 ----D---- C:\Program Files\Windows Media Player
2010-11-26 17:20:16 ----D---- C:\Program Files\Messenger
2010-11-26 17:20:09 ----D---- C:\Program Files\MSN Gaming Zone
2010-11-26 17:20:09 ----A---- C:\WINDOWS\system32\write.exe
2010-11-26 17:19:54 ----A---- C:\WINDOWS\system32\sndvol32.exe
2010-11-26 17:19:54 ----A---- C:\WINDOWS\system32\hticons.dll
2010-11-26 17:19:53 ----A---- C:\WINDOWS\system32\avwav.dll
2010-11-26 17:19:53 ----A---- C:\WINDOWS\system32\avtapi.dll
2010-11-26 17:19:53 ----A---- C:\WINDOWS\system32\avmeter.dll
2010-11-26 17:19:52 ----A---- C:\WINDOWS\system32\winchat.exe
2010-11-26 17:19:39 ----A---- C:\WINDOWS\system32\getuname.dll
2010-11-26 17:19:38 ----A---- C:\WINDOWS\system32\charmap.exe
2010-11-26 17:19:38 ----A---- C:\WINDOWS\system32\calc.exe
2010-11-26 17:19:37 ----A---- C:\WINDOWS\system32\winmine.exe
2010-11-26 17:19:37 ----A---- C:\WINDOWS\system32\sol.exe
2010-11-26 17:19:36 ----A---- C:\WINDOWS\system32\mshearts.exe
2010-11-26 17:19:36 ----A---- C:\WINDOWS\system32\freecell.exe
2010-11-26 17:19:35 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2010-11-26 17:19:35 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2010-11-26 17:19:35 ----A---- C:\WINDOWS\system32\tslabels.ini
2010-11-26 17:19:35 ----A---- C:\WINDOWS\system32\tskill.exe
2010-11-26 17:19:35 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2010-11-26 17:19:35 ----A---- C:\WINDOWS\system32\tscon.exe
2010-11-26 17:19:35 ----A---- C:\WINDOWS\system32\shadow.exe
2010-11-26 17:19:35 ----A---- C:\WINDOWS\system32\reset.exe
2010-11-26 17:19:34 ----A---- C:\WINDOWS\system32\rwinsta.exe
2010-11-26 17:19:34 ----A---- C:\WINDOWS\system32\regini.exe
2010-11-26 17:19:34 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2010-11-26 17:19:34 ----A---- C:\WINDOWS\system32\qwinsta.exe
2010-11-26 17:19:34 ----A---- C:\WINDOWS\system32\qappsrv.exe
2010-11-26 17:19:34 ----A---- C:\WINDOWS\system32\msg.exe
2010-11-26 17:19:34 ----A---- C:\WINDOWS\system32\logoff.exe
2010-11-26 17:19:33 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2010-11-26 17:19:33 ----A---- C:\WINDOWS\system32\cdmodem.dll
2010-11-26 17:19:32 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2010-11-26 17:19:31 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2010-11-26 17:19:31 ----A---- C:\WINDOWS\system32\mtxex.dll
2010-11-26 17:19:31 ----A---- C:\WINDOWS\system32\mtxdm.dll
2010-11-26 17:19:31 ----A---- C:\WINDOWS\system32\comaddin.dll
2010-11-26 17:19:30 ----A---- C:\WINDOWS\system32\stclient.dll
2010-11-26 17:19:30 ----A---- C:\WINDOWS\system32\comsnap.dll
2010-11-26 17:19:30 ----A---- C:\WINDOWS\system32\comrepl.dll
2010-11-26 17:19:22 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2010-11-26 17:19:20 ----A---- C:\WINDOWS\system32\accwiz.exe
2010-11-26 17:19:19 ----A---- C:\WINDOWS\system32\sndrec32.exe
2010-11-26 17:19:19 ----A---- C:\WINDOWS\system32\mplay32.exe
2010-11-26 17:19:19 ----A---- C:\WINDOWS\system32\hypertrm.dll
2010-11-26 17:19:17 ----D---- C:\Program Files\Windows NT
2010-11-26 17:19:17 ----A---- C:\WINDOWS\system32\mspaint.exe
2010-11-26 17:19:17 ----A---- C:\WINDOWS\system32\clipbrd.exe
2010-11-26 17:19:16 ----A---- C:\WINDOWS\system32\spider.exe
2010-11-26 17:19:16 ----A---- C:\WINDOWS\system32\drivers\tdtcp.sys
2010-11-26 17:19:16 ----A---- C:\WINDOWS\system32\drivers\tdpipe.sys
2010-11-26 17:19:15 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2010-11-26 17:19:15 ----A---- C:\WINDOWS\system32\drivers\rdpwd.sys
2010-11-26 17:19:14 ----A---- C:\WINDOWS\system32\sessmgr.exe
2010-11-26 17:19:14 ----A---- C:\WINDOWS\system32\remotepg.dll
2010-11-26 17:19:14 ----A---- C:\WINDOWS\system32\rdshost.exe
2010-11-26 17:19:14 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2010-11-26 17:19:14 ----A---- C:\WINDOWS\system32\mstscax.dll
2010-11-26 17:19:14 ----A---- C:\WINDOWS\system32\mstsc.exe
2010-11-26 17:19:13 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2010-11-26 17:19:13 ----A---- C:\WINDOWS\system32\termsrv.dll
2010-11-26 17:19:13 ----A---- C:\WINDOWS\system32\rdchost.dll
2010-11-26 17:19:12 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2010-11-26 17:19:12 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2010-11-26 17:19:12 ----A---- C:\WINDOWS\system32\rdpclip.exe
2010-11-26 17:19:12 ----A---- C:\WINDOWS\system32\qprocess.exe
2010-11-26 17:19:12 ----A---- C:\WINDOWS\system32\icaapi.dll
2010-11-26 17:19:12 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2010-11-26 17:19:10 ----D---- C:\WINDOWS\system32\MsDtc
2010-11-26 17:19:10 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2010-11-26 17:19:09 ----A---- C:\WINDOWS\system32\xolehlp.dll
2010-11-26 17:19:09 ----A---- C:\WINDOWS\system32\mtxoci.dll
2010-11-26 17:19:09 ----A---- C:\WINDOWS\system32\msdtctm.dll
2010-11-26 17:19:09 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2010-11-26 17:19:08 ----A---- C:\WINDOWS\system32\msdtclog.dll
2010-11-26 17:19:08 ----A---- C:\WINDOWS\system32\msdtc.exe
2010-11-26 17:19:07 ----D---- C:\WINDOWS\system32\Com
2010-11-26 17:19:07 ----A---- C:\WINDOWS\system32\colbact.dll
2010-11-26 17:19:07 ----A---- C:\WINDOWS\system32\clbcatex.dll
2010-11-26 17:19:07 ----A---- C:\WINDOWS\system32\catsrvut.dll
2010-11-26 17:19:07 ----A---- C:\WINDOWS\system32\catsrvps.dll
2010-11-26 17:19:07 ----A---- C:\WINDOWS\system32\catsrv.dll
2010-11-26 17:19:06 ----A---- C:\WINDOWS\system32\comuid.dll
2010-11-26 17:19:06 ----A---- C:\WINDOWS\system32\comsvcs.dll
2010-11-26 17:19:05 ----A---- C:\WINDOWS\system32\clbcatq.dll
2010-11-26 17:18:59 ----A---- C:\WINDOWS\system32\servdeps.dll
2010-11-26 17:18:59 ----A---- C:\WINDOWS\system32\mmfutil.dll
2010-11-26 17:18:59 ----A---- C:\WINDOWS\system32\licwmi.dll
2010-11-26 17:18:59 ----A---- C:\WINDOWS\system32\cmprops.dll
2010-11-26 17:18:55 ----A---- C:\WINDOWS\system32\drivers\termdd.sys
2010-11-26 17:18:55 ----A---- C:\WINDOWS\system32\drivers\rdpdr.sys
======List of files/folders modified in the last 1 months======
2010-11-27 17:13:00 ----A---- C:\WINDOWS\system.ini
2010-11-27 17:03:32 ----A---- C:\WINDOWS\win.ini
2010-11-26 17:24:40 ----ASH---- C:\WINDOWS\fonts\desktop.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 gagp30kx;Filtr Microsoft Generic AGPv3.0 pro procesorovou platformu K8; C:\WINDOWS\system32\DRIVERS\gagp30kx.sys [2008-04-14 46464]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2010-11-26 691696]
R1 AmdK8;Ovladač procesoru AMD; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2005-03-09 42496]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2005-06-20 2324480]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2010-02-11 3565056]
R3 catchme;catchme; \??\C:\DOCUME~1\Admin\LOCALS~1\Temp\catchme.sys []
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2006-03-02 12160]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
R3 yukonwxp;NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller; C:\WINDOWS\system32\DRIVERS\yk51x86.sys [2004-06-16 180480]
S3 mbr;mbr; \??\C:\DOCUME~1\Admin\LOCALS~1\Temp\mbr.sys []
S3 pwnoqfob;pwnoqfob; \??\C:\DOCUME~1\Admin\LOCALS~1\Temp\pwnoqfob.sys []
S3 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys []
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2010-02-11 602112]
S4 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2010-02-10 593920]
S4 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S4 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-11-26 153376]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S4 NMSAccess;NMSAccess; C:\Program Files\CDBurnerXP\NMSAccessU.exe [2010-03-04 71096]
S4 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S4 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
-----------------EOF-----------------