prevence
Napsal: 15 úno 2011 16:27
Logfile of random's system information tool 1.08 (written by random/random)
Run by Eko at 2011-02-15 16:23:38
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 125 GB (82%) free of 153 GB
Total RAM: 3036 MB (60% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:23:49, on 15.2.2011
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.19019)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe
C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe
C:\Program Files\ASUS\ATK Media\DMedia.exe
C:\Windows\AsScrPro.exe
C:\Program files\P4G\BatteryLife.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Elantech\ETDCtrl.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Adobe\Reader 9.0\Reader\reader_sl.exe
C:\Program Files\SRS Labs\SRS Premium Sound\SRSPremiumSoundBig_Small.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Users\Eko\Desktop\rsit\RSIT.exe
C:\Program Files\trend micro\Eko.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\ievkbd.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Bing Bar BHO - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll
O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll
O3 - Toolbar: @C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll,-100 - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll
O4 - HKLM\..\Run: [AmIcoSinglun] C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files\ASUS\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [ASUS Screen Saver Protector] C:\Windows\AsScrPro.exe
O4 - HKLM\..\Run: [ETDWare] C:\Program Files\Elantech\ETDCtrl.exe
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [lxbkbmgr.exe] "C:\Program Files\Lexmark X1100 Series\lxbkbmgr.exe"
O4 - HKCU\..\Run: [SRS Premium Sound] "C:\Program Files\SRS Labs\SRS Premium Sound\SRSPremiumSoundBig_Small.exe" /hideme
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O8 - Extra context menu item: Přidat do Anti-Banner - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\ie_banner_deny.htm
O9 - Extra button: &Virtuální klávesnice - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll
O9 - Extra button: K&ontrola adres URL - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - http://download.eset.com/special/eos/OnlineScanner.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O17 - HKLM\System\CS1\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O17 - HKLM\System\CS2\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O17 - HKLM\System\CS3\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O17 - HKLM\System\CS4\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O17 - HKLM\System\CS5\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O17 - HKLM\System\CS6\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O17 - HKLM\System\CS7\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O17 - HKLM\System\CS8\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O17 - HKLM\System\CS9\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O17 - HKLM\System\CS10\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O17 - HKLM\System\CS11\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O17 - HKLM\System\CS12\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O17 - HKLM\System\CS13\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O17 - HKLM\System\CS14\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O17 - HKLM\System\CS15\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll,C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Služba Kaspersky Anti-Virus (AVP) - Kaspersky Lab ZAO - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe
O23 - Service: lxbk_device - - C:\Windows\system32\lxbkcoms.exe
--
End of file - 7493 bytes
======Scheduled tasks folder======
C:\Windows\tasks\User_Feed_Synchronization-{EDC97B2D-90BB-4F6C-8EB4-70AE85A8BA84}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C}]
IEVkbdBHO Class - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\ievkbd.dll [2010-10-05 68280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2010-09-22 191792]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar BHO - C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll [2010-09-22 612616]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E33CF602-D945-461A-83F0-819F76A199F8}]
FilterBHO Class - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll [2010-10-05 191160]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8dcb7100-df86-4384-8842-8fa844297b3f} - @C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll,-100 - C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll [2010-09-22 612616]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AmIcoSinglun"=C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe [2008-09-30 237568]
"ATKOSD2"=C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe [2009-03-04 8392704]
"ATKMEDIA"=C:\Program Files\ASUS\ATK Media\DMedia.exe [2008-12-29 159744]
"ASUS Screen Saver Protector"=C:\Windows\AsScrPro.exe [2009-07-27 3054136]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2009-03-06 424352]
"AVP"=C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe [2010-11-02 365336]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2010-08-25 136216]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2010-08-25 171032]
"Persistence"=C:\Windows\system32\igfxpers.exe [2010-08-25 170520]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2011-01-31 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-20 932288]
"lxbkbmgr.exe"=C:\Program Files\Lexmark X1100 Series\lxbkbmgr.exe [2008-02-28 74408]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"SRS Premium Sound"=C:\Program Files\SRS Labs\SRS Premium Sound\SRSPremiumSoundBig_Small.exe [2009-03-20 3261688]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll,C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2010-08-25 228864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\klogon]
C:\Windows\system32\klogon.dll [2010-10-05 228024]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=255
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0
"NoDriveTypeAutoRun"=255
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2011-02-15 16:23:38 ----D---- C:\rsit
2011-02-15 16:23:38 ----D---- C:\Program Files\trend micro
2011-02-15 10:08:07 ----AD---- C:\Kaspersky Rescue Disk 10.0
2011-02-14 20:27:54 ----A---- C:\Windows\system32\rpcnetp.dll
2011-02-14 20:26:40 ----A---- C:\Windows\system32\rpcnetp.exe
2011-02-14 09:57:46 ----A---- C:\Windows\Lexstat.ini
2011-02-14 09:56:36 ----D---- C:\Program Files\Lexmark X1100 Series
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkutil.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkusb1.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkserv.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkprox.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkpplc.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkpmui.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbklmpm.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkjswr.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\LXBKinst.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkinsr.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkinsb.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkins.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkinpa.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkih.exe
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkiesc.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\LXBKhcp.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkhbn3.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkgf.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkcur.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkcu.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkcoms.exe
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkcomm.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkcomc.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkcfg.exe
2011-02-14 09:56:24 ----A---- C:\Windows\system32\LXBKcfg.dll
2011-02-14 09:56:00 ----D---- C:\drivers
2011-02-14 08:59:47 ----D---- C:\Users\Eko\AppData\Roaming\Windows Live Writer
2011-02-14 08:27:52 ----D---- C:\ProgramData\Fighters
2011-02-14 08:27:27 ----D---- C:\Program Files\Fighters
2011-02-14 07:45:28 ----D---- C:\Program Files\Common Files\Adobe
2011-02-13 20:18:48 ----D---- C:\Users\Eko\AppData\Roaming\Malwarebytes
2011-02-13 20:18:43 ----D---- C:\ProgramData\Malwarebytes
2011-02-13 20:18:43 ----A---- C:\Windows\system32\drivers\mbamswissarmy.sys
2011-02-13 20:18:39 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2011-02-13 20:18:39 ----A---- C:\Windows\system32\drivers\mbam.sys
2011-02-13 17:44:28 ----D---- C:\Program Files\Adobe
2011-02-13 16:17:24 ----SHD---- C:\System Volume Information
2011-02-13 16:16:58 ----A---- C:\Pass.txt
2011-02-13 15:18:29 ----ASH---- C:\hiberfil.sys
2011-02-13 15:18:27 ----ASH---- C:\pagefile.sys
2011-02-13 14:43:54 ----D---- C:\Windows\PCHEALTH
2011-02-13 14:43:04 ----D---- C:\Program Files\Microsoft
2011-02-13 14:43:01 ----D---- C:\Program Files\MSN Toolbar
2011-02-13 14:42:55 ----D---- C:\Program Files\Bing Bar Installer
2011-02-13 14:40:23 ----A---- C:\Windows\system32\webservices.dll
2011-02-13 14:22:47 ----D---- C:\Program Files\Windows Portable Devices
2011-02-13 13:51:12 ----A---- C:\Windows\system32\UIAnimation.dll
2011-02-13 13:51:11 ----A---- C:\Windows\system32\UIRibbonRes.dll
2011-02-13 13:51:11 ----A---- C:\Windows\system32\UIRibbon.dll
2011-02-13 13:49:30 ----A---- C:\Windows\system32\WMPhoto.dll
2011-02-13 13:49:28 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2011-02-13 13:49:28 ----A---- C:\Windows\system32\WindowsCodecs.dll
2011-02-13 13:49:28 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2011-02-13 13:49:28 ----A---- C:\Windows\system32\dxdiagn.dll
2011-02-13 13:49:28 ----A---- C:\Windows\system32\dxdiag.exe
2011-02-13 13:49:28 ----A---- C:\Windows\system32\d3d11.dll
2011-02-13 13:47:58 ----A---- C:\Windows\system32\WPDShextAutoplay.exe
2011-02-13 13:47:57 ----A---- C:\Windows\system32\wpdbusenum.dll
2011-02-13 13:47:57 ----A---- C:\Windows\system32\BthMtpContextHandler.dll
2011-02-13 13:47:51 ----A---- C:\Windows\system32\PortableDeviceConnectApi.dll
2011-02-13 13:47:50 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2011-02-13 13:47:50 ----A---- C:\Windows\system32\wpdshext.dll
2011-02-13 13:47:50 ----A---- C:\Windows\system32\wpd_ci.dll
2011-02-13 13:47:50 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll
2011-02-13 13:47:50 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2011-02-13 13:47:50 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2011-02-13 13:47:50 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2011-02-13 13:47:49 ----A---- C:\Windows\system32\WPDSp.dll
2011-02-13 13:45:53 ----A---- C:\Windows\system32\oleaccrc.dll
2011-02-13 13:45:51 ----A---- C:\Windows\system32\UIAutomationCore.dll
2011-02-13 13:45:51 ----A---- C:\Windows\system32\oleacc.dll
2011-02-13 13:42:13 ----A---- C:\Windows\system32\FntCache.dll
2011-02-13 13:42:13 ----A---- C:\Windows\system32\DWrite.dll
2011-02-13 13:42:13 ----A---- C:\Windows\system32\d3d10warp.dll
2011-02-13 13:42:12 ----A---- C:\Windows\system32\MFH264Dec.dll
2011-02-13 13:42:12 ----A---- C:\Windows\system32\d3d10_1.dll
2011-02-13 13:42:12 ----A---- C:\Windows\system32\d3d10.dll
2011-02-13 13:42:12 ----A---- C:\Windows\system32\d2d1.dll
2011-02-13 13:42:11 ----A---- C:\Windows\system32\XpsRasterService.dll
2011-02-13 13:42:11 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2011-02-13 13:42:11 ----A---- C:\Windows\system32\dxgi.dll
2011-02-13 13:42:11 ----A---- C:\Windows\system32\d3d10level9.dll
2011-02-13 13:42:11 ----A---- C:\Windows\system32\d3d10core.dll
2011-02-13 13:42:11 ----A---- C:\Windows\system32\d3d10_1core.dll
2011-02-13 13:42:10 ----A---- C:\Windows\system32\xpsservices.dll
2011-02-13 13:42:10 ----A---- C:\Windows\system32\XpsPrint.dll
2011-02-13 13:42:10 ----A---- C:\Windows\system32\OpcServices.dll
2011-02-13 13:42:10 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2011-02-13 13:42:09 ----A---- C:\Windows\system32\mfreadwrite.dll
2011-02-13 13:42:09 ----A---- C:\Windows\system32\mfmp4src.dll
2011-02-13 13:42:09 ----A---- C:\Windows\system32\MFHEAACdec.dll
2011-02-13 13:42:08 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2011-02-13 13:42:08 ----A---- C:\Windows\system32\mf.dll
2011-02-13 13:42:08 ----A---- C:\Windows\system32\cdd.dll
2011-02-13 13:42:07 ----A---- C:\Windows\system32\stobject.dll
2011-02-13 13:42:07 ----A---- C:\Windows\system32\shdocvw.dll
2011-02-13 13:42:07 ----A---- C:\Windows\system32\mfplat.dll
2011-02-13 13:42:03 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2011-02-13 13:42:03 ----A---- C:\Windows\system32\mfps.dll
2011-02-13 13:37:37 ----A---- C:\Windows\system32\msshsq.dll
2011-02-13 13:13:33 ----D---- C:\Program Files\Microsoft.NET
2011-02-13 12:57:56 ----D---- C:\Windows\system32\eu-ES
2011-02-13 12:57:56 ----D---- C:\Windows\system32\ca-ES
2011-02-13 12:57:54 ----D---- C:\Windows\system32\vi-VN
2011-02-13 12:30:00 ----D---- C:\Windows\system32\EventProviders
2011-02-13 12:28:33 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2011-02-13 12:28:30 ----A---- C:\Windows\system32\SLsvc.exe
2011-02-13 12:28:30 ----A---- C:\Windows\system32\SLCExt.dll
2011-02-13 12:28:29 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll
2011-02-13 12:28:29 ----A---- C:\Windows\system32\DevicePairingWizard.exe
2011-02-13 12:28:28 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2011-02-13 12:28:26 ----A---- C:\Windows\system32\mssrch.dll
2011-02-13 12:28:25 ----A---- C:\Windows\system32\tquery.dll
2011-02-13 12:28:25 ----A---- C:\Windows\system32\drivers\spsys.sys
2011-02-13 12:28:24 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2011-02-13 12:28:24 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2011-02-13 12:28:23 ----A---- C:\Windows\system32\scavenge.dll
2011-02-13 12:28:23 ----A---- C:\Windows\system32\msi.dll
2011-02-13 12:28:22 ----A---- C:\Windows\system32\WscEapPr.dll
2011-02-13 12:28:22 ----A---- C:\Windows\system32\imapi2fs.dll
2011-02-13 12:28:21 ----A---- C:\Windows\system32\wcnwiz2.dll
2011-02-13 12:28:21 ----A---- C:\Windows\system32\sysmain.dll
2011-02-13 12:28:21 ----A---- C:\Windows\system32\icardagt.exe
2011-02-13 12:28:20 ----A---- C:\Windows\system32\spreview.exe
2011-02-13 12:28:20 ----A---- C:\Windows\system32\spinstall.exe
2011-02-13 12:28:20 ----A---- C:\Windows\system32\EhStorShell.dll
2011-02-13 12:28:20 ----A---- C:\Windows\system32\drmv2clt.dll
2011-02-13 12:28:20 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2011-02-13 12:28:19 ----A---- C:\Windows\system32\spwizui.dll
2011-02-13 12:28:19 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2011-02-13 12:28:18 ----A---- C:\Windows\system32\SearchIndexer.exe
2011-02-13 12:28:18 ----A---- C:\Windows\system32\p2psvc.dll
2011-02-13 12:28:18 ----A---- C:\Windows\system32\mssvp.dll
2011-02-13 12:28:17 ----A---- C:\Windows\system32\mssphtb.dll
2011-02-13 12:28:17 ----A---- C:\Windows\system32\mssph.dll
2011-02-13 12:28:17 ----A---- C:\Windows\system32\MSMPEG2VDEC.DLL
2011-02-13 12:28:16 ----A---- C:\Windows\system32\imapi2.dll
2011-02-13 12:28:15 ----A---- C:\Windows\system32\sdohlp.dll
2011-02-13 12:28:14 ----A---- C:\Windows\system32\sperror.dll
2011-02-13 12:28:14 ----A---- C:\Windows\system32\IMJP10K.DLL
2011-02-13 12:28:14 ----A---- C:\Windows\system32\esent.dll
2011-02-13 12:28:14 ----A---- C:\Windows\system32\DevicePairing.dll
2011-02-13 12:28:13 ----A---- C:\Windows\system32\wevtsvc.dll
2011-02-13 12:28:13 ----A---- C:\Windows\system32\SLC.dll
2011-02-13 12:28:13 ----A---- C:\Windows\system32\korwbrkr.dll
2011-02-13 12:28:12 ----A---- C:\Windows\system32\msjet40.dll
2011-02-13 12:28:12 ----A---- C:\Windows\system32\MPSSVC.dll
2011-02-13 12:28:11 ----A---- C:\Windows\system32\Query.dll
2011-02-13 12:28:11 ----A---- C:\Windows\system32\qmgr.dll
2011-02-13 12:28:10 ----A---- C:\Windows\system32\srchadmin.dll
2011-02-13 12:28:10 ----A---- C:\Windows\system32\P2PGraph.dll
2011-02-13 12:28:10 ----A---- C:\Windows\system32\msexch40.dll
2011-02-13 12:28:10 ----A---- C:\Windows\system32\IasMigReader.exe
2011-02-13 12:28:10 ----A---- C:\Windows\system32\diagperf.dll
2011-02-13 12:28:09 ----A---- C:\Windows\system32\winload.exe
2011-02-13 12:28:09 ----A---- C:\Windows\system32\uDWM.dll
2011-02-13 12:28:09 ----A---- C:\Windows\system32\mmc.exe
2011-02-13 12:28:09 ----A---- C:\Windows\system32\mblctr.exe
2011-02-13 12:28:09 ----A---- C:\Windows\system32\IasMigPlugin.dll
2011-02-13 12:28:09 ----A---- C:\Windows\system32\EncDec.dll
2011-02-13 12:28:09 ----A---- C:\Windows\system32\dfsr.exe
2011-02-13 12:28:08 ----A---- C:\Windows\system32\riched20.dll
2011-02-13 12:28:08 ----A---- C:\Windows\system32\RacEngn.dll
2011-02-13 12:28:08 ----A---- C:\Windows\system32\fdBth.dll
2011-02-13 12:28:07 ----A---- C:\Windows\system32\spoolss.dll
2011-02-13 12:28:07 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2011-02-13 12:28:07 ----A---- C:\Windows\system32\SearchFilterHost.exe
2011-02-13 12:28:07 ----A---- C:\Windows\system32\milcore.dll
2011-02-13 12:28:07 ----A---- C:\Windows\system32\kernel32.dll
2011-02-13 12:28:07 ----A---- C:\Windows\system32\EhStorAPI.dll
2011-02-13 12:28:07 ----A---- C:\Windows\system32\CertEnroll.dll
2011-02-13 12:28:06 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2011-02-13 12:28:06 ----A---- C:\Windows\system32\msvcp60.dll
2011-02-13 12:28:06 ----A---- C:\Windows\system32\msjtes40.dll
2011-02-13 12:28:06 ----A---- C:\Windows\system32\infocardapi.dll
2011-02-13 12:28:06 ----A---- C:\Windows\system32\gpedit.dll
2011-02-13 12:28:06 ----A---- C:\Windows\system32\AuxiliaryDisplayDriverLib.dll
2011-02-13 12:28:05 ----A---- C:\Windows\system32\WinSAT.exe
2011-02-13 12:28:04 ----A---- C:\Windows\system32\PresentationSettings.exe
2011-02-13 12:28:04 ----A---- C:\Windows\system32\mstext40.dll
2011-02-13 12:28:04 ----A---- C:\Windows\system32\Magnify.exe
2011-02-13 12:28:04 ----A---- C:\Windows\system32\es.dll
2011-02-13 12:28:04 ----A---- C:\Windows\system32\drivers\ntfs.sys
2011-02-13 12:28:04 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2011-02-13 12:28:04 ----A---- C:\Windows\system32\advapi32.dll
2011-02-13 12:28:03 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
2011-02-13 12:28:03 ----A---- C:\Windows\system32\WebClnt.dll
2011-02-13 12:28:03 ----A---- C:\Windows\system32\slwmi.dll
2011-02-13 12:28:03 ----A---- C:\Windows\system32\msxbde40.dll
2011-02-13 12:28:03 ----A---- C:\Windows\system32\msexcl40.dll
2011-02-13 12:28:03 ----A---- C:\Windows\system32\comsvcs.dll
2011-02-13 12:28:02 ----A---- C:\Windows\system32\vssapi.dll
2011-02-13 12:28:02 ----A---- C:\Windows\system32\NetProjW.dll
2011-02-13 12:28:02 ----A---- C:\Windows\system32\msrepl40.dll
2011-02-13 12:28:02 ----A---- C:\Windows\system32\authui.dll
2011-02-13 12:28:01 ----A---- C:\Windows\system32\propsys.dll
2011-02-13 12:28:01 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2011-02-13 12:28:01 ----A---- C:\Windows\system32\newdev.dll
2011-02-13 12:28:01 ----A---- C:\Windows\system32\iasrecst.dll
2011-02-13 12:28:01 ----A---- C:\Windows\system32\gpsvc.dll
2011-02-13 12:28:01 ----A---- C:\Windows\system32\eudcedit.exe
2011-02-13 12:28:01 ----A---- C:\Windows\system32\crypt32.dll
2011-02-13 12:28:01 ----A---- C:\Windows\explorer.exe
2011-02-13 12:28:00 ----A---- C:\Windows\system32\setupapi.dll
2011-02-13 12:28:00 ----A---- C:\Windows\system32\rpcss.dll
2011-02-13 12:28:00 ----A---- C:\Windows\system32\mspbde40.dll
2011-02-13 12:28:00 ----A---- C:\Windows\system32\msltus40.dll
2011-02-13 12:28:00 ----A---- C:\Windows\system32\davclnt.dll
2011-02-13 12:28:00 ----A---- C:\Windows\system32\d3d9.dll
2011-02-13 12:27:59 ----A---- C:\Windows\system32\wevtapi.dll
2011-02-13 12:27:59 ----A---- C:\Windows\system32\photowiz.dll
2011-02-13 12:27:59 ----A---- C:\Windows\system32\nlhtml.dll
2011-02-13 12:27:59 ----A---- C:\Windows\system32\msrd3x40.dll
2011-02-13 12:27:59 ----A---- C:\Windows\system32\msdtctm.dll
2011-02-13 12:27:59 ----A---- C:\Windows\system32\mfc42.dll
2011-02-13 12:27:59 ----A---- C:\Windows\system32\EhStorPwdMgr.dll
2011-02-13 12:27:59 ----A---- C:\Windows\system32\EhStorAuthn.dll
2011-02-13 12:27:59 ----A---- C:\Windows\system32\browseui.dll
2011-02-13 12:27:58 ----A---- C:\Windows\system32\user32.dll
2011-02-13 12:27:57 ----A---- C:\Windows\system32\win32spl.dll
2011-02-13 12:27:57 ----A---- C:\Windows\system32\WcnNetsh.dll
2011-02-13 12:27:57 ----A---- C:\Windows\system32\SLCommDlg.dll
2011-02-13 12:27:57 ----A---- C:\Windows\system32\samsrv.dll
2011-02-13 12:27:57 ----A---- C:\Windows\system32\oleaut32.dll
2011-02-13 12:27:57 ----A---- C:\Windows\system32\ci.dll
2011-02-13 12:27:56 ----A---- C:\Windows\system32\xmlfilter.dll
2011-02-13 12:27:56 ----A---- C:\Windows\system32\netshell.dll
2011-02-13 12:27:56 ----A---- C:\Windows\system32\mswstr10.dll
2011-02-13 12:27:56 ----A---- C:\Windows\system32\IKEEXT.DLL
2011-02-13 12:27:56 ----A---- C:\Windows\system32\drivers\rdbss.sys
2011-02-13 12:27:56 ----A---- C:\Windows\system32\compcln.exe
2011-02-13 12:27:56 ----A---- C:\Windows\system32\audiosrv.dll
2011-02-13 12:27:56 ----A---- C:\Windows\system32\apds.dll
2011-02-13 12:27:55 ----A---- C:\Windows\system32\VSSVC.exe
2011-02-13 12:27:55 ----A---- C:\Windows\system32\QAGENTRT.DLL
2011-02-13 12:27:55 ----A---- C:\Windows\system32\msvcrt.dll
2011-02-13 12:27:55 ----A---- C:\Windows\system32\msctf.dll
2011-02-13 12:27:55 ----A---- C:\Windows\system32\iphlpsvc.dll
2011-02-13 12:27:55 ----A---- C:\Windows\system32\gdi32.dll
2011-02-13 12:27:55 ----A---- C:\Windows\system32\emdmgmt.dll
2011-02-13 12:27:55 ----A---- C:\Windows\system32\drivers\netio.sys
2011-02-13 12:27:55 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2011-02-13 12:27:54 ----A---- C:\Windows\system32\sqlsrv32.dll
2011-02-13 12:27:54 ----A---- C:\Windows\system32\SLUI.exe
2011-02-13 12:27:54 ----A---- C:\Windows\system32\propdefs.dll
2011-02-13 12:27:54 ----A---- C:\Windows\system32\msrd2x40.dll
2011-02-13 12:27:54 ----A---- C:\Windows\system32\mfc42u.dll
2011-02-13 12:27:54 ----A---- C:\Windows\system32\eapphost.dll
2011-02-13 12:27:54 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2011-02-13 12:27:53 ----A---- C:\Windows\system32\winresume.exe
2011-02-13 12:27:53 ----A---- C:\Windows\system32\wevtutil.exe
2011-02-13 12:27:53 ----A---- C:\Windows\system32\mssitlb.dll
2011-02-13 12:27:53 ----A---- C:\Windows\system32\drivers\usbhub.sys
2011-02-13 12:27:53 ----A---- C:\Windows\system32\dbgeng.dll
2011-02-13 12:27:52 ----A---- C:\Windows\system32\swprv.dll
2011-02-13 12:27:52 ----A---- C:\Windows\system32\mmcndmgr.dll
2011-02-13 12:27:51 ----A---- C:\Windows\system32\WMVSDECD.DLL
2011-02-13 12:27:51 ----A---- C:\Windows\system32\Wldap32.dll
2011-02-13 12:27:51 ----A---- C:\Windows\system32\wcnwiz.dll
2011-02-13 12:27:51 ----A---- C:\Windows\system32\vds.exe
2011-02-13 12:27:51 ----A---- C:\Windows\system32\netlogon.dll
2011-02-13 12:27:51 ----A---- C:\Windows\system32\msscb.dll
2011-02-13 12:27:51 ----A---- C:\Windows\system32\msctfp.dll
2011-02-13 12:27:51 ----A---- C:\Windows\system32\fdBthProxy.dll
2011-02-13 12:27:51 ----A---- C:\Windows\system32\evr.dll
2011-02-13 12:27:51 ----A---- C:\Windows\system32\drvinst.exe
2011-02-13 12:27:51 ----A---- C:\Windows\system32\devmgr.dll
2011-02-13 12:27:51 ----A---- C:\Windows\system32\DevicePairingProxy.dll
2011-02-13 12:27:51 ----A---- C:\Windows\system32\BFE.DLL
2011-02-13 12:27:51 ----A---- C:\Windows\system32\adsldpc.dll
2011-02-13 12:27:50 ----A---- C:\Windows\system32\wercon.exe
2011-02-13 12:27:50 ----A---- C:\Windows\system32\wcncsvc.dll
2011-02-13 12:27:50 ----A---- C:\Windows\system32\services.exe
2011-02-13 12:27:50 ----A---- C:\Windows\system32\mimefilt.dll
2011-02-13 12:27:50 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2011-02-13 12:27:50 ----A---- C:\Windows\system32\comdlg32.dll
2011-02-13 12:27:50 ----A---- C:\Windows\system32\adtschema.dll
2011-02-13 12:27:49 ----A---- C:\Windows\system32\WMNetMgr.dll
2011-02-13 12:27:49 ----A---- C:\Windows\system32\umpnpmgr.dll
2011-02-13 12:27:49 ----A---- C:\Windows\system32\rtffilt.dll
2011-02-13 12:27:49 ----A---- C:\Windows\system32\reg.exe
2011-02-13 12:27:49 ----A---- C:\Windows\system32\mswdat10.dll
2011-02-13 12:27:49 ----A---- C:\Windows\system32\msjter40.dll
2011-02-13 12:27:49 ----A---- C:\Windows\system32\msdtcprx.dll
2011-02-13 12:27:49 ----A---- C:\Windows\system32\ipsmsnap.dll
2011-02-13 12:27:49 ----A---- C:\Windows\system32\dnsapi.dll
2011-02-13 12:27:49 ----A---- C:\Windows\system32\certutil.exe
2011-02-13 12:27:49 ----A---- C:\Windows\system32\certcli.dll
2011-02-13 12:27:48 ----A---- C:\Windows\system32\w32time.dll
2011-02-13 12:27:48 ----A---- C:\Windows\system32\TsWpfWrp.exe
2011-02-13 12:27:48 ----A---- C:\Windows\system32\rsaenh.dll
2011-02-13 12:27:48 ----A---- C:\Windows\system32\msstrc.dll
2011-02-13 12:27:48 ----A---- C:\Windows\system32\msshooks.dll
2011-02-13 12:27:48 ----A---- C:\Windows\system32\msscntrs.dll
2011-02-13 12:27:48 ----A---- C:\Windows\system32\msihnd.dll
2011-02-13 12:27:48 ----A---- C:\Windows\system32\MMDevAPI.dll
2011-02-13 12:27:48 ----A---- C:\Windows\system32\IPSECSVC.DLL
2011-02-13 12:27:48 ----A---- C:\Windows\system32\drivers\usbport.sys
2011-02-13 12:27:48 ----A---- C:\Windows\system32\drivers\ndis.sys
2011-02-13 12:27:48 ----A---- C:\Windows\system32\bthserv.dll
2011-02-13 12:27:48 ----A---- C:\Windows\system32\bcrypt.dll
2011-02-13 12:27:47 ----A---- C:\Windows\system32\netapi32.dll
2011-02-13 12:27:47 ----A---- C:\Windows\system32\mtxclu.dll
2011-02-13 12:27:47 ----A---- C:\Windows\system32\mscories.dll
2011-02-13 12:27:47 ----A---- C:\Windows\system32\inetpp.dll
2011-02-13 12:27:47 ----A---- C:\Windows\system32\hidserv.dll
2011-02-13 12:27:47 ----A---- C:\Windows\system32\fundisc.dll
2011-02-13 12:27:47 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2011-02-13 12:27:47 ----A---- C:\Windows\system32\cryptsvc.dll
2011-02-13 12:27:46 ----A---- C:\Windows\system32\wdc.dll
2011-02-13 12:27:46 ----A---- C:\Windows\system32\termsrv.dll
2011-02-13 12:27:46 ----A---- C:\Windows\system32\profsvc.dll
2011-02-13 12:27:46 ----A---- C:\Windows\system32\msiexec.exe
2011-02-13 12:27:46 ----A---- C:\Windows\system32\imapi.dll
2011-02-13 12:27:46 ----A---- C:\Windows\system32\chsbrkr.dll
2011-02-13 12:27:46 ----A---- C:\Windows\system32\drivers\pci.sys
2011-02-13 12:27:46 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2011-02-13 12:27:45 ----A---- C:\Windows\system32\wersvc.dll
2011-02-13 12:27:45 ----A---- C:\Windows\system32\slmgr.vbs
2011-02-13 12:27:45 ----A---- C:\Windows\system32\scrrun.dll
2011-02-13 12:27:45 ----A---- C:\Windows\system32\rasmans.dll
2011-02-13 12:27:45 ----A---- C:\Windows\system32\PSHED.DLL
2011-02-13 12:27:45 ----A---- C:\Windows\system32\pnidui.dll
2011-02-13 12:27:45 ----A---- C:\Windows\system32\pdh.dll
2011-02-13 12:27:45 ----A---- C:\Windows\system32\icardres.dll
2011-02-13 12:27:45 ----A---- C:\Windows\system32\iassdo.dll
2011-02-13 12:27:45 ----A---- C:\Windows\system32\drivers\termdd.sys
2011-02-13 12:27:45 ----A---- C:\Windows\system32\drivers\Storport.sys
2011-02-13 12:27:45 ----A---- C:\Windows\system32\drivers\crashdmp.sys
2011-02-13 12:27:45 ----A---- C:\Windows\system32\drivers\ataport.sys
2011-02-13 12:27:45 ----A---- C:\Windows\system32\drivers\acpi.sys
2011-02-13 12:27:45 ----A---- C:\Windows\system32\clfs.sys
2011-02-13 12:27:45 ----A---- C:\Windows\system32\autofmt.exe
2011-02-13 12:27:44 ----A---- C:\Windows\system32\winlogon.exe
2011-02-13 12:27:44 ----A---- C:\Windows\system32\SyncCenter.dll
2011-02-13 12:27:44 ----A---- C:\Windows\system32\pidgenx.dll
2011-02-13 12:27:44 ----A---- C:\Windows\system32\drivers\partmgr.sys
2011-02-13 12:27:44 ----A---- C:\Windows\system32\dhcpcsvc.dll
2011-02-13 12:27:44 ----A---- C:\Windows\system32\CertEnrollUI.dll
2011-02-13 12:27:44 ----A---- C:\Windows\system32\azroles.dll
2011-02-13 12:27:43 ----A---- C:\Windows\system32\SLUINotify.dll
2011-02-13 12:27:43 ----A---- C:\Windows\system32\msjetoledb40.dll
2011-02-13 12:27:43 ----A---- C:\Windows\system32\drivers\mup.sys
2011-02-13 12:27:43 ----A---- C:\Windows\system32\comuid.dll
2011-02-13 12:27:43 ----A---- C:\Windows\system32\certmgr.dll
2011-02-13 12:27:42 ----A---- C:\Windows\system32\wisptis.exe
2011-02-13 12:27:42 ----A---- C:\Windows\system32\untfs.dll
2011-02-13 12:27:42 ----A---- C:\Windows\system32\spp.dll
2011-02-13 12:27:42 ----A---- C:\Windows\system32\sethc.exe
2011-02-13 12:27:42 ----A---- C:\Windows\system32\scrobj.dll
2011-02-13 12:27:42 ----A---- C:\Windows\system32\ncrypt.dll
2011-02-13 12:27:42 ----A---- C:\Windows\system32\kd1394.dll
2011-02-13 12:27:42 ----A---- C:\Windows\system32\iassam.dll
2011-02-13 12:27:42 ----A---- C:\Windows\system32\dwm.exe
2011-02-13 12:27:42 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2011-02-13 12:27:42 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2011-02-13 12:27:42 ----A---- C:\Windows\system32\drivers\disk.sys
2011-02-13 12:27:42 ----A---- C:\Windows\system32\autochk.exe
2011-02-13 12:27:41 ----A---- C:\Windows\system32\wow32.dll
2011-02-13 12:27:41 ----A---- C:\Windows\system32\winsrv.dll
2011-02-13 12:27:41 ----A---- C:\Windows\system32\userenv.dll
2011-02-13 12:27:41 ----A---- C:\Windows\system32\printui.dll
2011-02-13 12:27:41 ----A---- C:\Windows\system32\onex.dll
2011-02-13 12:27:41 ----A---- C:\Windows\system32\kdcom.dll
2011-02-13 12:27:41 ----A---- C:\Windows\system32\iasnap.dll
2011-02-13 12:27:41 ----A---- C:\Windows\system32\drivers\volsnap.sys
2011-02-13 12:27:41 ----A---- C:\Windows\system32\drivers\msrpc.sys
2011-02-13 12:27:41 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2011-02-13 12:27:41 ----A---- C:\Windows\system32\drivers\ecache.sys
2011-02-13 12:27:41 ----A---- C:\Windows\system32\drivers\Dumpata.sys
2011-02-13 12:27:41 ----A---- C:\Windows\system32\cscript.exe
2011-02-13 12:27:41 ----A---- C:\Windows\system32\basecsp.dll
2011-02-13 12:27:41 ----A---- C:\Windows\system32\autoconv.exe
2011-02-13 12:27:41 ----A---- C:\Windows\system32\audiodg.exe
2011-02-13 12:27:40 ----A---- C:\Windows\system32\WinSCard.dll
2011-02-13 12:27:40 ----A---- C:\Windows\system32\winmm.dll
2011-02-13 12:27:40 ----A---- C:\Windows\system32\WerFaultSecure.exe
2011-02-13 12:27:40 ----A---- C:\Windows\system32\spcmsg.dll
2011-02-13 12:27:40 ----A---- C:\Windows\system32\RelMon.dll
2011-02-13 12:27:40 ----A---- C:\Windows\system32\rdpencom.dll
2011-02-13 12:27:40 ----A---- C:\Windows\system32\osk.exe
2011-02-13 12:27:40 ----A---- C:\Windows\system32\offfilt.dll
2011-02-13 12:27:40 ----A---- C:\Windows\system32\mswsock.dll
2011-02-13 12:27:40 ----A---- C:\Windows\system32\msftedit.dll
2011-02-13 12:27:40 ----A---- C:\Windows\system32\kdusb.dll
2011-02-13 12:27:40 ----A---- C:\Windows\system32\drivers\netbt.sys
2011-02-13 12:27:40 ----A---- C:\Windows\system32\drivers\atapi.sys
2011-02-13 12:27:39 ----A---- C:\Windows\system32\wsepno.dll
2011-02-13 12:27:39 ----A---- C:\Windows\system32\WerFault.exe
2011-02-13 12:27:39 ----A---- C:\Windows\system32\Utilman.exe
2011-02-13 12:27:39 ----A---- C:\Windows\system32\SndVol.exe
2011-02-13 12:27:39 ----A---- C:\Windows\system32\dnsrslvr.dll
2011-02-13 12:27:39 ----A---- C:\Windows\system32\diskraid.exe
2011-02-13 12:27:39 ----A---- C:\Windows\system32\apphelp.dll
2011-02-13 12:27:38 ----A---- C:\Windows\system32\wscript.exe
2011-02-13 12:27:38 ----A---- C:\Windows\system32\wiaservc.dll
2011-02-13 12:27:38 ----A---- C:\Windows\system32\ulib.dll
2011-02-13 12:27:38 ----A---- C:\Windows\system32\sysclass.dll
2011-02-13 12:27:38 ----A---- C:\Windows\system32\prnntfy.dll
2011-02-13 12:27:38 ----A---- C:\Windows\system32\odbccp32.dll
2011-02-13 12:27:38 ----A---- C:\Windows\system32\msnetobj.dll
2011-02-13 12:27:38 ----A---- C:\Windows\system32\mscms.dll
2011-02-13 12:27:38 ----A---- C:\Windows\system32\mcmde.dll
2011-02-13 12:27:38 ----A---- C:\Windows\system32\iasdatastore.dll
2011-02-13 12:27:38 ----A---- C:\Windows\system32\dsound.dll
2011-02-13 12:27:38 ----A---- C:\Windows\system32\adsmsext.dll
2011-02-13 12:27:37 ----A---- C:\Windows\system32\wscsvc.dll
2011-02-13 12:27:37 ----A---- C:\Windows\system32\wscntfy.dll
2011-02-13 12:27:37 ----A---- C:\Windows\system32\WMVENCOD.DLL
2011-02-13 12:27:37 ----A---- C:\Windows\system32\wlangpui.dll
2011-02-13 12:27:37 ----A---- C:\Windows\system32\vdsdyn.dll
2011-02-13 12:27:37 ----A---- C:\Windows\system32\rastapi.dll
2011-02-13 12:27:37 ----A---- C:\Windows\system32\pnpsetup.dll
2011-02-13 12:27:37 ----A---- C:\Windows\system32\logman.exe
2011-02-13 12:27:37 ----A---- C:\Windows\system32\ipsecsnp.dll
2011-02-13 12:27:37 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2011-02-13 12:27:37 ----A---- C:\Windows\system32\iashlpr.dll
2011-02-13 12:27:37 ----A---- C:\Windows\system32\gpapi.dll
2011-02-13 12:27:37 ----A---- C:\Windows\system32\fdProxy.dll
2011-02-13 12:27:37 ----A---- C:\Windows\system32\diskpart.exe
2011-02-13 12:27:37 ----A---- C:\Windows\system32\cryptui.dll
2011-02-13 12:27:37 ----A---- C:\Windows\system32\brcpl.dll
2011-02-13 12:27:36 ----A---- C:\Windows\system32\zipfldr.dll
2011-02-13 12:27:36 ----A---- C:\Windows\system32\wusa.exe
2011-02-13 12:27:36 ----A---- C:\Windows\system32\wshext.dll
2011-02-13 12:27:36 ----A---- C:\Windows\system32\wpccpl.dll
2011-02-13 12:27:36 ----A---- C:\Windows\system32\regsvc.dll
2011-02-13 12:27:36 ----A---- C:\Windows\system32\rasapi32.dll
2011-02-13 12:27:36 ----A---- C:\Windows\system32\ntprint.dll
2011-02-13 12:27:36 ----A---- C:\Windows\system32\netcenter.dll
2011-02-13 12:27:36 ----A---- C:\Windows\system32\mscorier.dll
2011-02-13 12:27:36 ----A---- C:\Windows\system32\iasrad.dll
2011-02-13 12:27:36 ----A---- C:\Windows\system32\findstr.exe
2011-02-13 12:27:35 ----A---- C:\Windows\system32\wsnmp32.dll
2011-02-13 12:27:35 ----A---- C:\Windows\system32\wer.dll
2011-02-13 12:27:35 ----A---- C:\Windows\system32\uxsms.dll
2011-02-13 12:27:35 ----A---- C:\Windows\system32\themecpl.dll
2011-02-13 12:27:35 ----A---- C:\Windows\system32\slcc.dll
2011-02-13 12:27:35 ----A---- C:\Windows\system32\scansetting.dll
2011-02-13 12:27:35 ----A---- C:\Windows\system32\rasdlg.dll
2011-02-13 12:27:35 ----A---- C:\Windows\system32\ntmarta.dll
2011-02-13 12:27:35 ----A---- C:\Windows\system32\msutb.dll
Run by Eko at 2011-02-15 16:23:38
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 125 GB (82%) free of 153 GB
Total RAM: 3036 MB (60% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:23:49, on 15.2.2011
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.19019)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe
C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe
C:\Program Files\ASUS\ATK Media\DMedia.exe
C:\Windows\AsScrPro.exe
C:\Program files\P4G\BatteryLife.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Elantech\ETDCtrl.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Adobe\Reader 9.0\Reader\reader_sl.exe
C:\Program Files\SRS Labs\SRS Premium Sound\SRSPremiumSoundBig_Small.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Users\Eko\Desktop\rsit\RSIT.exe
C:\Program Files\trend micro\Eko.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\ievkbd.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Bing Bar BHO - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll
O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll
O3 - Toolbar: @C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll,-100 - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll
O4 - HKLM\..\Run: [AmIcoSinglun] C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files\ASUS\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [ASUS Screen Saver Protector] C:\Windows\AsScrPro.exe
O4 - HKLM\..\Run: [ETDWare] C:\Program Files\Elantech\ETDCtrl.exe
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [lxbkbmgr.exe] "C:\Program Files\Lexmark X1100 Series\lxbkbmgr.exe"
O4 - HKCU\..\Run: [SRS Premium Sound] "C:\Program Files\SRS Labs\SRS Premium Sound\SRSPremiumSoundBig_Small.exe" /hideme
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O8 - Extra context menu item: Přidat do Anti-Banner - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\ie_banner_deny.htm
O9 - Extra button: &Virtuální klávesnice - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll
O9 - Extra button: K&ontrola adres URL - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - http://download.eset.com/special/eos/OnlineScanner.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O17 - HKLM\System\CS1\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O17 - HKLM\System\CS2\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O17 - HKLM\System\CS3\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O17 - HKLM\System\CS4\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O17 - HKLM\System\CS5\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O17 - HKLM\System\CS6\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O17 - HKLM\System\CS7\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O17 - HKLM\System\CS8\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O17 - HKLM\System\CS9\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O17 - HKLM\System\CS10\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O17 - HKLM\System\CS11\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O17 - HKLM\System\CS12\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O17 - HKLM\System\CS13\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O17 - HKLM\System\CS14\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O17 - HKLM\System\CS15\Services\Tcpip\..\{2AB2B1E8-3755-4CF2-B1C3-CA23498F81B2}: NameServer = 195.146.100.100,195.146.100.5
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll,C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Služba Kaspersky Anti-Virus (AVP) - Kaspersky Lab ZAO - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe
O23 - Service: lxbk_device - - C:\Windows\system32\lxbkcoms.exe
--
End of file - 7493 bytes
======Scheduled tasks folder======
C:\Windows\tasks\User_Feed_Synchronization-{EDC97B2D-90BB-4F6C-8EB4-70AE85A8BA84}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C}]
IEVkbdBHO Class - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\ievkbd.dll [2010-10-05 68280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2010-09-22 191792]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar BHO - C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll [2010-09-22 612616]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E33CF602-D945-461A-83F0-819F76A199F8}]
FilterBHO Class - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll [2010-10-05 191160]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8dcb7100-df86-4384-8842-8fa844297b3f} - @C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll,-100 - C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll [2010-09-22 612616]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AmIcoSinglun"=C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe [2008-09-30 237568]
"ATKOSD2"=C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe [2009-03-04 8392704]
"ATKMEDIA"=C:\Program Files\ASUS\ATK Media\DMedia.exe [2008-12-29 159744]
"ASUS Screen Saver Protector"=C:\Windows\AsScrPro.exe [2009-07-27 3054136]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2009-03-06 424352]
"AVP"=C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe [2010-11-02 365336]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2010-08-25 136216]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2010-08-25 171032]
"Persistence"=C:\Windows\system32\igfxpers.exe [2010-08-25 170520]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2011-01-31 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-20 932288]
"lxbkbmgr.exe"=C:\Program Files\Lexmark X1100 Series\lxbkbmgr.exe [2008-02-28 74408]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"SRS Premium Sound"=C:\Program Files\SRS Labs\SRS Premium Sound\SRSPremiumSoundBig_Small.exe [2009-03-20 3261688]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll,C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2010-08-25 228864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\klogon]
C:\Windows\system32\klogon.dll [2010-10-05 228024]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=255
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0
"NoDriveTypeAutoRun"=255
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2011-02-15 16:23:38 ----D---- C:\rsit
2011-02-15 16:23:38 ----D---- C:\Program Files\trend micro
2011-02-15 10:08:07 ----AD---- C:\Kaspersky Rescue Disk 10.0
2011-02-14 20:27:54 ----A---- C:\Windows\system32\rpcnetp.dll
2011-02-14 20:26:40 ----A---- C:\Windows\system32\rpcnetp.exe
2011-02-14 09:57:46 ----A---- C:\Windows\Lexstat.ini
2011-02-14 09:56:36 ----D---- C:\Program Files\Lexmark X1100 Series
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkutil.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkusb1.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkserv.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkprox.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkpplc.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkpmui.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbklmpm.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkjswr.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\LXBKinst.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkinsr.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkinsb.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkins.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkinpa.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkih.exe
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkiesc.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\LXBKhcp.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkhbn3.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkgf.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkcur.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkcu.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkcoms.exe
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkcomm.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkcomc.dll
2011-02-14 09:56:24 ----A---- C:\Windows\system32\lxbkcfg.exe
2011-02-14 09:56:24 ----A---- C:\Windows\system32\LXBKcfg.dll
2011-02-14 09:56:00 ----D---- C:\drivers
2011-02-14 08:59:47 ----D---- C:\Users\Eko\AppData\Roaming\Windows Live Writer
2011-02-14 08:27:52 ----D---- C:\ProgramData\Fighters
2011-02-14 08:27:27 ----D---- C:\Program Files\Fighters
2011-02-14 07:45:28 ----D---- C:\Program Files\Common Files\Adobe
2011-02-13 20:18:48 ----D---- C:\Users\Eko\AppData\Roaming\Malwarebytes
2011-02-13 20:18:43 ----D---- C:\ProgramData\Malwarebytes
2011-02-13 20:18:43 ----A---- C:\Windows\system32\drivers\mbamswissarmy.sys
2011-02-13 20:18:39 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2011-02-13 20:18:39 ----A---- C:\Windows\system32\drivers\mbam.sys
2011-02-13 17:44:28 ----D---- C:\Program Files\Adobe
2011-02-13 16:17:24 ----SHD---- C:\System Volume Information
2011-02-13 16:16:58 ----A---- C:\Pass.txt
2011-02-13 15:18:29 ----ASH---- C:\hiberfil.sys
2011-02-13 15:18:27 ----ASH---- C:\pagefile.sys
2011-02-13 14:43:54 ----D---- C:\Windows\PCHEALTH
2011-02-13 14:43:04 ----D---- C:\Program Files\Microsoft
2011-02-13 14:43:01 ----D---- C:\Program Files\MSN Toolbar
2011-02-13 14:42:55 ----D---- C:\Program Files\Bing Bar Installer
2011-02-13 14:40:23 ----A---- C:\Windows\system32\webservices.dll
2011-02-13 14:22:47 ----D---- C:\Program Files\Windows Portable Devices
2011-02-13 13:51:12 ----A---- C:\Windows\system32\UIAnimation.dll
2011-02-13 13:51:11 ----A---- C:\Windows\system32\UIRibbonRes.dll
2011-02-13 13:51:11 ----A---- C:\Windows\system32\UIRibbon.dll
2011-02-13 13:49:30 ----A---- C:\Windows\system32\WMPhoto.dll
2011-02-13 13:49:28 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2011-02-13 13:49:28 ----A---- C:\Windows\system32\WindowsCodecs.dll
2011-02-13 13:49:28 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2011-02-13 13:49:28 ----A---- C:\Windows\system32\dxdiagn.dll
2011-02-13 13:49:28 ----A---- C:\Windows\system32\dxdiag.exe
2011-02-13 13:49:28 ----A---- C:\Windows\system32\d3d11.dll
2011-02-13 13:47:58 ----A---- C:\Windows\system32\WPDShextAutoplay.exe
2011-02-13 13:47:57 ----A---- C:\Windows\system32\wpdbusenum.dll
2011-02-13 13:47:57 ----A---- C:\Windows\system32\BthMtpContextHandler.dll
2011-02-13 13:47:51 ----A---- C:\Windows\system32\PortableDeviceConnectApi.dll
2011-02-13 13:47:50 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2011-02-13 13:47:50 ----A---- C:\Windows\system32\wpdshext.dll
2011-02-13 13:47:50 ----A---- C:\Windows\system32\wpd_ci.dll
2011-02-13 13:47:50 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll
2011-02-13 13:47:50 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2011-02-13 13:47:50 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2011-02-13 13:47:50 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2011-02-13 13:47:49 ----A---- C:\Windows\system32\WPDSp.dll
2011-02-13 13:45:53 ----A---- C:\Windows\system32\oleaccrc.dll
2011-02-13 13:45:51 ----A---- C:\Windows\system32\UIAutomationCore.dll
2011-02-13 13:45:51 ----A---- C:\Windows\system32\oleacc.dll
2011-02-13 13:42:13 ----A---- C:\Windows\system32\FntCache.dll
2011-02-13 13:42:13 ----A---- C:\Windows\system32\DWrite.dll
2011-02-13 13:42:13 ----A---- C:\Windows\system32\d3d10warp.dll
2011-02-13 13:42:12 ----A---- C:\Windows\system32\MFH264Dec.dll
2011-02-13 13:42:12 ----A---- C:\Windows\system32\d3d10_1.dll
2011-02-13 13:42:12 ----A---- C:\Windows\system32\d3d10.dll
2011-02-13 13:42:12 ----A---- C:\Windows\system32\d2d1.dll
2011-02-13 13:42:11 ----A---- C:\Windows\system32\XpsRasterService.dll
2011-02-13 13:42:11 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2011-02-13 13:42:11 ----A---- C:\Windows\system32\dxgi.dll
2011-02-13 13:42:11 ----A---- C:\Windows\system32\d3d10level9.dll
2011-02-13 13:42:11 ----A---- C:\Windows\system32\d3d10core.dll
2011-02-13 13:42:11 ----A---- C:\Windows\system32\d3d10_1core.dll
2011-02-13 13:42:10 ----A---- C:\Windows\system32\xpsservices.dll
2011-02-13 13:42:10 ----A---- C:\Windows\system32\XpsPrint.dll
2011-02-13 13:42:10 ----A---- C:\Windows\system32\OpcServices.dll
2011-02-13 13:42:10 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2011-02-13 13:42:09 ----A---- C:\Windows\system32\mfreadwrite.dll
2011-02-13 13:42:09 ----A---- C:\Windows\system32\mfmp4src.dll
2011-02-13 13:42:09 ----A---- C:\Windows\system32\MFHEAACdec.dll
2011-02-13 13:42:08 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2011-02-13 13:42:08 ----A---- C:\Windows\system32\mf.dll
2011-02-13 13:42:08 ----A---- C:\Windows\system32\cdd.dll
2011-02-13 13:42:07 ----A---- C:\Windows\system32\stobject.dll
2011-02-13 13:42:07 ----A---- C:\Windows\system32\shdocvw.dll
2011-02-13 13:42:07 ----A---- C:\Windows\system32\mfplat.dll
2011-02-13 13:42:03 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2011-02-13 13:42:03 ----A---- C:\Windows\system32\mfps.dll
2011-02-13 13:37:37 ----A---- C:\Windows\system32\msshsq.dll
2011-02-13 13:13:33 ----D---- C:\Program Files\Microsoft.NET
2011-02-13 12:57:56 ----D---- C:\Windows\system32\eu-ES
2011-02-13 12:57:56 ----D---- C:\Windows\system32\ca-ES
2011-02-13 12:57:54 ----D---- C:\Windows\system32\vi-VN
2011-02-13 12:30:00 ----D---- C:\Windows\system32\EventProviders
2011-02-13 12:28:33 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2011-02-13 12:28:30 ----A---- C:\Windows\system32\SLsvc.exe
2011-02-13 12:28:30 ----A---- C:\Windows\system32\SLCExt.dll
2011-02-13 12:28:29 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll
2011-02-13 12:28:29 ----A---- C:\Windows\system32\DevicePairingWizard.exe
2011-02-13 12:28:28 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2011-02-13 12:28:26 ----A---- C:\Windows\system32\mssrch.dll
2011-02-13 12:28:25 ----A---- C:\Windows\system32\tquery.dll
2011-02-13 12:28:25 ----A---- C:\Windows\system32\drivers\spsys.sys
2011-02-13 12:28:24 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2011-02-13 12:28:24 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2011-02-13 12:28:23 ----A---- C:\Windows\system32\scavenge.dll
2011-02-13 12:28:23 ----A---- C:\Windows\system32\msi.dll
2011-02-13 12:28:22 ----A---- C:\Windows\system32\WscEapPr.dll
2011-02-13 12:28:22 ----A---- C:\Windows\system32\imapi2fs.dll
2011-02-13 12:28:21 ----A---- C:\Windows\system32\wcnwiz2.dll
2011-02-13 12:28:21 ----A---- C:\Windows\system32\sysmain.dll
2011-02-13 12:28:21 ----A---- C:\Windows\system32\icardagt.exe
2011-02-13 12:28:20 ----A---- C:\Windows\system32\spreview.exe
2011-02-13 12:28:20 ----A---- C:\Windows\system32\spinstall.exe
2011-02-13 12:28:20 ----A---- C:\Windows\system32\EhStorShell.dll
2011-02-13 12:28:20 ----A---- C:\Windows\system32\drmv2clt.dll
2011-02-13 12:28:20 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2011-02-13 12:28:19 ----A---- C:\Windows\system32\spwizui.dll
2011-02-13 12:28:19 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2011-02-13 12:28:18 ----A---- C:\Windows\system32\SearchIndexer.exe
2011-02-13 12:28:18 ----A---- C:\Windows\system32\p2psvc.dll
2011-02-13 12:28:18 ----A---- C:\Windows\system32\mssvp.dll
2011-02-13 12:28:17 ----A---- C:\Windows\system32\mssphtb.dll
2011-02-13 12:28:17 ----A---- C:\Windows\system32\mssph.dll
2011-02-13 12:28:17 ----A---- C:\Windows\system32\MSMPEG2VDEC.DLL
2011-02-13 12:28:16 ----A---- C:\Windows\system32\imapi2.dll
2011-02-13 12:28:15 ----A---- C:\Windows\system32\sdohlp.dll
2011-02-13 12:28:14 ----A---- C:\Windows\system32\sperror.dll
2011-02-13 12:28:14 ----A---- C:\Windows\system32\IMJP10K.DLL
2011-02-13 12:28:14 ----A---- C:\Windows\system32\esent.dll
2011-02-13 12:28:14 ----A---- C:\Windows\system32\DevicePairing.dll
2011-02-13 12:28:13 ----A---- C:\Windows\system32\wevtsvc.dll
2011-02-13 12:28:13 ----A---- C:\Windows\system32\SLC.dll
2011-02-13 12:28:13 ----A---- C:\Windows\system32\korwbrkr.dll
2011-02-13 12:28:12 ----A---- C:\Windows\system32\msjet40.dll
2011-02-13 12:28:12 ----A---- C:\Windows\system32\MPSSVC.dll
2011-02-13 12:28:11 ----A---- C:\Windows\system32\Query.dll
2011-02-13 12:28:11 ----A---- C:\Windows\system32\qmgr.dll
2011-02-13 12:28:10 ----A---- C:\Windows\system32\srchadmin.dll
2011-02-13 12:28:10 ----A---- C:\Windows\system32\P2PGraph.dll
2011-02-13 12:28:10 ----A---- C:\Windows\system32\msexch40.dll
2011-02-13 12:28:10 ----A---- C:\Windows\system32\IasMigReader.exe
2011-02-13 12:28:10 ----A---- C:\Windows\system32\diagperf.dll
2011-02-13 12:28:09 ----A---- C:\Windows\system32\winload.exe
2011-02-13 12:28:09 ----A---- C:\Windows\system32\uDWM.dll
2011-02-13 12:28:09 ----A---- C:\Windows\system32\mmc.exe
2011-02-13 12:28:09 ----A---- C:\Windows\system32\mblctr.exe
2011-02-13 12:28:09 ----A---- C:\Windows\system32\IasMigPlugin.dll
2011-02-13 12:28:09 ----A---- C:\Windows\system32\EncDec.dll
2011-02-13 12:28:09 ----A---- C:\Windows\system32\dfsr.exe
2011-02-13 12:28:08 ----A---- C:\Windows\system32\riched20.dll
2011-02-13 12:28:08 ----A---- C:\Windows\system32\RacEngn.dll
2011-02-13 12:28:08 ----A---- C:\Windows\system32\fdBth.dll
2011-02-13 12:28:07 ----A---- C:\Windows\system32\spoolss.dll
2011-02-13 12:28:07 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2011-02-13 12:28:07 ----A---- C:\Windows\system32\SearchFilterHost.exe
2011-02-13 12:28:07 ----A---- C:\Windows\system32\milcore.dll
2011-02-13 12:28:07 ----A---- C:\Windows\system32\kernel32.dll
2011-02-13 12:28:07 ----A---- C:\Windows\system32\EhStorAPI.dll
2011-02-13 12:28:07 ----A---- C:\Windows\system32\CertEnroll.dll
2011-02-13 12:28:06 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2011-02-13 12:28:06 ----A---- C:\Windows\system32\msvcp60.dll
2011-02-13 12:28:06 ----A---- C:\Windows\system32\msjtes40.dll
2011-02-13 12:28:06 ----A---- C:\Windows\system32\infocardapi.dll
2011-02-13 12:28:06 ----A---- C:\Windows\system32\gpedit.dll
2011-02-13 12:28:06 ----A---- C:\Windows\system32\AuxiliaryDisplayDriverLib.dll
2011-02-13 12:28:05 ----A---- C:\Windows\system32\WinSAT.exe
2011-02-13 12:28:04 ----A---- C:\Windows\system32\PresentationSettings.exe
2011-02-13 12:28:04 ----A---- C:\Windows\system32\mstext40.dll
2011-02-13 12:28:04 ----A---- C:\Windows\system32\Magnify.exe
2011-02-13 12:28:04 ----A---- C:\Windows\system32\es.dll
2011-02-13 12:28:04 ----A---- C:\Windows\system32\drivers\ntfs.sys
2011-02-13 12:28:04 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2011-02-13 12:28:04 ----A---- C:\Windows\system32\advapi32.dll
2011-02-13 12:28:03 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
2011-02-13 12:28:03 ----A---- C:\Windows\system32\WebClnt.dll
2011-02-13 12:28:03 ----A---- C:\Windows\system32\slwmi.dll
2011-02-13 12:28:03 ----A---- C:\Windows\system32\msxbde40.dll
2011-02-13 12:28:03 ----A---- C:\Windows\system32\msexcl40.dll
2011-02-13 12:28:03 ----A---- C:\Windows\system32\comsvcs.dll
2011-02-13 12:28:02 ----A---- C:\Windows\system32\vssapi.dll
2011-02-13 12:28:02 ----A---- C:\Windows\system32\NetProjW.dll
2011-02-13 12:28:02 ----A---- C:\Windows\system32\msrepl40.dll
2011-02-13 12:28:02 ----A---- C:\Windows\system32\authui.dll
2011-02-13 12:28:01 ----A---- C:\Windows\system32\propsys.dll
2011-02-13 12:28:01 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2011-02-13 12:28:01 ----A---- C:\Windows\system32\newdev.dll
2011-02-13 12:28:01 ----A---- C:\Windows\system32\iasrecst.dll
2011-02-13 12:28:01 ----A---- C:\Windows\system32\gpsvc.dll
2011-02-13 12:28:01 ----A---- C:\Windows\system32\eudcedit.exe
2011-02-13 12:28:01 ----A---- C:\Windows\system32\crypt32.dll
2011-02-13 12:28:01 ----A---- C:\Windows\explorer.exe
2011-02-13 12:28:00 ----A---- C:\Windows\system32\setupapi.dll
2011-02-13 12:28:00 ----A---- C:\Windows\system32\rpcss.dll
2011-02-13 12:28:00 ----A---- C:\Windows\system32\mspbde40.dll
2011-02-13 12:28:00 ----A---- C:\Windows\system32\msltus40.dll
2011-02-13 12:28:00 ----A---- C:\Windows\system32\davclnt.dll
2011-02-13 12:28:00 ----A---- C:\Windows\system32\d3d9.dll
2011-02-13 12:27:59 ----A---- C:\Windows\system32\wevtapi.dll
2011-02-13 12:27:59 ----A---- C:\Windows\system32\photowiz.dll
2011-02-13 12:27:59 ----A---- C:\Windows\system32\nlhtml.dll
2011-02-13 12:27:59 ----A---- C:\Windows\system32\msrd3x40.dll
2011-02-13 12:27:59 ----A---- C:\Windows\system32\msdtctm.dll
2011-02-13 12:27:59 ----A---- C:\Windows\system32\mfc42.dll
2011-02-13 12:27:59 ----A---- C:\Windows\system32\EhStorPwdMgr.dll
2011-02-13 12:27:59 ----A---- C:\Windows\system32\EhStorAuthn.dll
2011-02-13 12:27:59 ----A---- C:\Windows\system32\browseui.dll
2011-02-13 12:27:58 ----A---- C:\Windows\system32\user32.dll
2011-02-13 12:27:57 ----A---- C:\Windows\system32\win32spl.dll
2011-02-13 12:27:57 ----A---- C:\Windows\system32\WcnNetsh.dll
2011-02-13 12:27:57 ----A---- C:\Windows\system32\SLCommDlg.dll
2011-02-13 12:27:57 ----A---- C:\Windows\system32\samsrv.dll
2011-02-13 12:27:57 ----A---- C:\Windows\system32\oleaut32.dll
2011-02-13 12:27:57 ----A---- C:\Windows\system32\ci.dll
2011-02-13 12:27:56 ----A---- C:\Windows\system32\xmlfilter.dll
2011-02-13 12:27:56 ----A---- C:\Windows\system32\netshell.dll
2011-02-13 12:27:56 ----A---- C:\Windows\system32\mswstr10.dll
2011-02-13 12:27:56 ----A---- C:\Windows\system32\IKEEXT.DLL
2011-02-13 12:27:56 ----A---- C:\Windows\system32\drivers\rdbss.sys
2011-02-13 12:27:56 ----A---- C:\Windows\system32\compcln.exe
2011-02-13 12:27:56 ----A---- C:\Windows\system32\audiosrv.dll
2011-02-13 12:27:56 ----A---- C:\Windows\system32\apds.dll
2011-02-13 12:27:55 ----A---- C:\Windows\system32\VSSVC.exe
2011-02-13 12:27:55 ----A---- C:\Windows\system32\QAGENTRT.DLL
2011-02-13 12:27:55 ----A---- C:\Windows\system32\msvcrt.dll
2011-02-13 12:27:55 ----A---- C:\Windows\system32\msctf.dll
2011-02-13 12:27:55 ----A---- C:\Windows\system32\iphlpsvc.dll
2011-02-13 12:27:55 ----A---- C:\Windows\system32\gdi32.dll
2011-02-13 12:27:55 ----A---- C:\Windows\system32\emdmgmt.dll
2011-02-13 12:27:55 ----A---- C:\Windows\system32\drivers\netio.sys
2011-02-13 12:27:55 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2011-02-13 12:27:54 ----A---- C:\Windows\system32\sqlsrv32.dll
2011-02-13 12:27:54 ----A---- C:\Windows\system32\SLUI.exe
2011-02-13 12:27:54 ----A---- C:\Windows\system32\propdefs.dll
2011-02-13 12:27:54 ----A---- C:\Windows\system32\msrd2x40.dll
2011-02-13 12:27:54 ----A---- C:\Windows\system32\mfc42u.dll
2011-02-13 12:27:54 ----A---- C:\Windows\system32\eapphost.dll
2011-02-13 12:27:54 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2011-02-13 12:27:53 ----A---- C:\Windows\system32\winresume.exe
2011-02-13 12:27:53 ----A---- C:\Windows\system32\wevtutil.exe
2011-02-13 12:27:53 ----A---- C:\Windows\system32\mssitlb.dll
2011-02-13 12:27:53 ----A---- C:\Windows\system32\drivers\usbhub.sys
2011-02-13 12:27:53 ----A---- C:\Windows\system32\dbgeng.dll
2011-02-13 12:27:52 ----A---- C:\Windows\system32\swprv.dll
2011-02-13 12:27:52 ----A---- C:\Windows\system32\mmcndmgr.dll
2011-02-13 12:27:51 ----A---- C:\Windows\system32\WMVSDECD.DLL
2011-02-13 12:27:51 ----A---- C:\Windows\system32\Wldap32.dll
2011-02-13 12:27:51 ----A---- C:\Windows\system32\wcnwiz.dll
2011-02-13 12:27:51 ----A---- C:\Windows\system32\vds.exe
2011-02-13 12:27:51 ----A---- C:\Windows\system32\netlogon.dll
2011-02-13 12:27:51 ----A---- C:\Windows\system32\msscb.dll
2011-02-13 12:27:51 ----A---- C:\Windows\system32\msctfp.dll
2011-02-13 12:27:51 ----A---- C:\Windows\system32\fdBthProxy.dll
2011-02-13 12:27:51 ----A---- C:\Windows\system32\evr.dll
2011-02-13 12:27:51 ----A---- C:\Windows\system32\drvinst.exe
2011-02-13 12:27:51 ----A---- C:\Windows\system32\devmgr.dll
2011-02-13 12:27:51 ----A---- C:\Windows\system32\DevicePairingProxy.dll
2011-02-13 12:27:51 ----A---- C:\Windows\system32\BFE.DLL
2011-02-13 12:27:51 ----A---- C:\Windows\system32\adsldpc.dll
2011-02-13 12:27:50 ----A---- C:\Windows\system32\wercon.exe
2011-02-13 12:27:50 ----A---- C:\Windows\system32\wcncsvc.dll
2011-02-13 12:27:50 ----A---- C:\Windows\system32\services.exe
2011-02-13 12:27:50 ----A---- C:\Windows\system32\mimefilt.dll
2011-02-13 12:27:50 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2011-02-13 12:27:50 ----A---- C:\Windows\system32\comdlg32.dll
2011-02-13 12:27:50 ----A---- C:\Windows\system32\adtschema.dll
2011-02-13 12:27:49 ----A---- C:\Windows\system32\WMNetMgr.dll
2011-02-13 12:27:49 ----A---- C:\Windows\system32\umpnpmgr.dll
2011-02-13 12:27:49 ----A---- C:\Windows\system32\rtffilt.dll
2011-02-13 12:27:49 ----A---- C:\Windows\system32\reg.exe
2011-02-13 12:27:49 ----A---- C:\Windows\system32\mswdat10.dll
2011-02-13 12:27:49 ----A---- C:\Windows\system32\msjter40.dll
2011-02-13 12:27:49 ----A---- C:\Windows\system32\msdtcprx.dll
2011-02-13 12:27:49 ----A---- C:\Windows\system32\ipsmsnap.dll
2011-02-13 12:27:49 ----A---- C:\Windows\system32\dnsapi.dll
2011-02-13 12:27:49 ----A---- C:\Windows\system32\certutil.exe
2011-02-13 12:27:49 ----A---- C:\Windows\system32\certcli.dll
2011-02-13 12:27:48 ----A---- C:\Windows\system32\w32time.dll
2011-02-13 12:27:48 ----A---- C:\Windows\system32\TsWpfWrp.exe
2011-02-13 12:27:48 ----A---- C:\Windows\system32\rsaenh.dll
2011-02-13 12:27:48 ----A---- C:\Windows\system32\msstrc.dll
2011-02-13 12:27:48 ----A---- C:\Windows\system32\msshooks.dll
2011-02-13 12:27:48 ----A---- C:\Windows\system32\msscntrs.dll
2011-02-13 12:27:48 ----A---- C:\Windows\system32\msihnd.dll
2011-02-13 12:27:48 ----A---- C:\Windows\system32\MMDevAPI.dll
2011-02-13 12:27:48 ----A---- C:\Windows\system32\IPSECSVC.DLL
2011-02-13 12:27:48 ----A---- C:\Windows\system32\drivers\usbport.sys
2011-02-13 12:27:48 ----A---- C:\Windows\system32\drivers\ndis.sys
2011-02-13 12:27:48 ----A---- C:\Windows\system32\bthserv.dll
2011-02-13 12:27:48 ----A---- C:\Windows\system32\bcrypt.dll
2011-02-13 12:27:47 ----A---- C:\Windows\system32\netapi32.dll
2011-02-13 12:27:47 ----A---- C:\Windows\system32\mtxclu.dll
2011-02-13 12:27:47 ----A---- C:\Windows\system32\mscories.dll
2011-02-13 12:27:47 ----A---- C:\Windows\system32\inetpp.dll
2011-02-13 12:27:47 ----A---- C:\Windows\system32\hidserv.dll
2011-02-13 12:27:47 ----A---- C:\Windows\system32\fundisc.dll
2011-02-13 12:27:47 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2011-02-13 12:27:47 ----A---- C:\Windows\system32\cryptsvc.dll
2011-02-13 12:27:46 ----A---- C:\Windows\system32\wdc.dll
2011-02-13 12:27:46 ----A---- C:\Windows\system32\termsrv.dll
2011-02-13 12:27:46 ----A---- C:\Windows\system32\profsvc.dll
2011-02-13 12:27:46 ----A---- C:\Windows\system32\msiexec.exe
2011-02-13 12:27:46 ----A---- C:\Windows\system32\imapi.dll
2011-02-13 12:27:46 ----A---- C:\Windows\system32\chsbrkr.dll
2011-02-13 12:27:46 ----A---- C:\Windows\system32\drivers\pci.sys
2011-02-13 12:27:46 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2011-02-13 12:27:45 ----A---- C:\Windows\system32\wersvc.dll
2011-02-13 12:27:45 ----A---- C:\Windows\system32\slmgr.vbs
2011-02-13 12:27:45 ----A---- C:\Windows\system32\scrrun.dll
2011-02-13 12:27:45 ----A---- C:\Windows\system32\rasmans.dll
2011-02-13 12:27:45 ----A---- C:\Windows\system32\PSHED.DLL
2011-02-13 12:27:45 ----A---- C:\Windows\system32\pnidui.dll
2011-02-13 12:27:45 ----A---- C:\Windows\system32\pdh.dll
2011-02-13 12:27:45 ----A---- C:\Windows\system32\icardres.dll
2011-02-13 12:27:45 ----A---- C:\Windows\system32\iassdo.dll
2011-02-13 12:27:45 ----A---- C:\Windows\system32\drivers\termdd.sys
2011-02-13 12:27:45 ----A---- C:\Windows\system32\drivers\Storport.sys
2011-02-13 12:27:45 ----A---- C:\Windows\system32\drivers\crashdmp.sys
2011-02-13 12:27:45 ----A---- C:\Windows\system32\drivers\ataport.sys
2011-02-13 12:27:45 ----A---- C:\Windows\system32\drivers\acpi.sys
2011-02-13 12:27:45 ----A---- C:\Windows\system32\clfs.sys
2011-02-13 12:27:45 ----A---- C:\Windows\system32\autofmt.exe
2011-02-13 12:27:44 ----A---- C:\Windows\system32\winlogon.exe
2011-02-13 12:27:44 ----A---- C:\Windows\system32\SyncCenter.dll
2011-02-13 12:27:44 ----A---- C:\Windows\system32\pidgenx.dll
2011-02-13 12:27:44 ----A---- C:\Windows\system32\drivers\partmgr.sys
2011-02-13 12:27:44 ----A---- C:\Windows\system32\dhcpcsvc.dll
2011-02-13 12:27:44 ----A---- C:\Windows\system32\CertEnrollUI.dll
2011-02-13 12:27:44 ----A---- C:\Windows\system32\azroles.dll
2011-02-13 12:27:43 ----A---- C:\Windows\system32\SLUINotify.dll
2011-02-13 12:27:43 ----A---- C:\Windows\system32\msjetoledb40.dll
2011-02-13 12:27:43 ----A---- C:\Windows\system32\drivers\mup.sys
2011-02-13 12:27:43 ----A---- C:\Windows\system32\comuid.dll
2011-02-13 12:27:43 ----A---- C:\Windows\system32\certmgr.dll
2011-02-13 12:27:42 ----A---- C:\Windows\system32\wisptis.exe
2011-02-13 12:27:42 ----A---- C:\Windows\system32\untfs.dll
2011-02-13 12:27:42 ----A---- C:\Windows\system32\spp.dll
2011-02-13 12:27:42 ----A---- C:\Windows\system32\sethc.exe
2011-02-13 12:27:42 ----A---- C:\Windows\system32\scrobj.dll
2011-02-13 12:27:42 ----A---- C:\Windows\system32\ncrypt.dll
2011-02-13 12:27:42 ----A---- C:\Windows\system32\kd1394.dll
2011-02-13 12:27:42 ----A---- C:\Windows\system32\iassam.dll
2011-02-13 12:27:42 ----A---- C:\Windows\system32\dwm.exe
2011-02-13 12:27:42 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2011-02-13 12:27:42 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2011-02-13 12:27:42 ----A---- C:\Windows\system32\drivers\disk.sys
2011-02-13 12:27:42 ----A---- C:\Windows\system32\autochk.exe
2011-02-13 12:27:41 ----A---- C:\Windows\system32\wow32.dll
2011-02-13 12:27:41 ----A---- C:\Windows\system32\winsrv.dll
2011-02-13 12:27:41 ----A---- C:\Windows\system32\userenv.dll
2011-02-13 12:27:41 ----A---- C:\Windows\system32\printui.dll
2011-02-13 12:27:41 ----A---- C:\Windows\system32\onex.dll
2011-02-13 12:27:41 ----A---- C:\Windows\system32\kdcom.dll
2011-02-13 12:27:41 ----A---- C:\Windows\system32\iasnap.dll
2011-02-13 12:27:41 ----A---- C:\Windows\system32\drivers\volsnap.sys
2011-02-13 12:27:41 ----A---- C:\Windows\system32\drivers\msrpc.sys
2011-02-13 12:27:41 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2011-02-13 12:27:41 ----A---- C:\Windows\system32\drivers\ecache.sys
2011-02-13 12:27:41 ----A---- C:\Windows\system32\drivers\Dumpata.sys
2011-02-13 12:27:41 ----A---- C:\Windows\system32\cscript.exe
2011-02-13 12:27:41 ----A---- C:\Windows\system32\basecsp.dll
2011-02-13 12:27:41 ----A---- C:\Windows\system32\autoconv.exe
2011-02-13 12:27:41 ----A---- C:\Windows\system32\audiodg.exe
2011-02-13 12:27:40 ----A---- C:\Windows\system32\WinSCard.dll
2011-02-13 12:27:40 ----A---- C:\Windows\system32\winmm.dll
2011-02-13 12:27:40 ----A---- C:\Windows\system32\WerFaultSecure.exe
2011-02-13 12:27:40 ----A---- C:\Windows\system32\spcmsg.dll
2011-02-13 12:27:40 ----A---- C:\Windows\system32\RelMon.dll
2011-02-13 12:27:40 ----A---- C:\Windows\system32\rdpencom.dll
2011-02-13 12:27:40 ----A---- C:\Windows\system32\osk.exe
2011-02-13 12:27:40 ----A---- C:\Windows\system32\offfilt.dll
2011-02-13 12:27:40 ----A---- C:\Windows\system32\mswsock.dll
2011-02-13 12:27:40 ----A---- C:\Windows\system32\msftedit.dll
2011-02-13 12:27:40 ----A---- C:\Windows\system32\kdusb.dll
2011-02-13 12:27:40 ----A---- C:\Windows\system32\drivers\netbt.sys
2011-02-13 12:27:40 ----A---- C:\Windows\system32\drivers\atapi.sys
2011-02-13 12:27:39 ----A---- C:\Windows\system32\wsepno.dll
2011-02-13 12:27:39 ----A---- C:\Windows\system32\WerFault.exe
2011-02-13 12:27:39 ----A---- C:\Windows\system32\Utilman.exe
2011-02-13 12:27:39 ----A---- C:\Windows\system32\SndVol.exe
2011-02-13 12:27:39 ----A---- C:\Windows\system32\dnsrslvr.dll
2011-02-13 12:27:39 ----A---- C:\Windows\system32\diskraid.exe
2011-02-13 12:27:39 ----A---- C:\Windows\system32\apphelp.dll
2011-02-13 12:27:38 ----A---- C:\Windows\system32\wscript.exe
2011-02-13 12:27:38 ----A---- C:\Windows\system32\wiaservc.dll
2011-02-13 12:27:38 ----A---- C:\Windows\system32\ulib.dll
2011-02-13 12:27:38 ----A---- C:\Windows\system32\sysclass.dll
2011-02-13 12:27:38 ----A---- C:\Windows\system32\prnntfy.dll
2011-02-13 12:27:38 ----A---- C:\Windows\system32\odbccp32.dll
2011-02-13 12:27:38 ----A---- C:\Windows\system32\msnetobj.dll
2011-02-13 12:27:38 ----A---- C:\Windows\system32\mscms.dll
2011-02-13 12:27:38 ----A---- C:\Windows\system32\mcmde.dll
2011-02-13 12:27:38 ----A---- C:\Windows\system32\iasdatastore.dll
2011-02-13 12:27:38 ----A---- C:\Windows\system32\dsound.dll
2011-02-13 12:27:38 ----A---- C:\Windows\system32\adsmsext.dll
2011-02-13 12:27:37 ----A---- C:\Windows\system32\wscsvc.dll
2011-02-13 12:27:37 ----A---- C:\Windows\system32\wscntfy.dll
2011-02-13 12:27:37 ----A---- C:\Windows\system32\WMVENCOD.DLL
2011-02-13 12:27:37 ----A---- C:\Windows\system32\wlangpui.dll
2011-02-13 12:27:37 ----A---- C:\Windows\system32\vdsdyn.dll
2011-02-13 12:27:37 ----A---- C:\Windows\system32\rastapi.dll
2011-02-13 12:27:37 ----A---- C:\Windows\system32\pnpsetup.dll
2011-02-13 12:27:37 ----A---- C:\Windows\system32\logman.exe
2011-02-13 12:27:37 ----A---- C:\Windows\system32\ipsecsnp.dll
2011-02-13 12:27:37 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2011-02-13 12:27:37 ----A---- C:\Windows\system32\iashlpr.dll
2011-02-13 12:27:37 ----A---- C:\Windows\system32\gpapi.dll
2011-02-13 12:27:37 ----A---- C:\Windows\system32\fdProxy.dll
2011-02-13 12:27:37 ----A---- C:\Windows\system32\diskpart.exe
2011-02-13 12:27:37 ----A---- C:\Windows\system32\cryptui.dll
2011-02-13 12:27:37 ----A---- C:\Windows\system32\brcpl.dll
2011-02-13 12:27:36 ----A---- C:\Windows\system32\zipfldr.dll
2011-02-13 12:27:36 ----A---- C:\Windows\system32\wusa.exe
2011-02-13 12:27:36 ----A---- C:\Windows\system32\wshext.dll
2011-02-13 12:27:36 ----A---- C:\Windows\system32\wpccpl.dll
2011-02-13 12:27:36 ----A---- C:\Windows\system32\regsvc.dll
2011-02-13 12:27:36 ----A---- C:\Windows\system32\rasapi32.dll
2011-02-13 12:27:36 ----A---- C:\Windows\system32\ntprint.dll
2011-02-13 12:27:36 ----A---- C:\Windows\system32\netcenter.dll
2011-02-13 12:27:36 ----A---- C:\Windows\system32\mscorier.dll
2011-02-13 12:27:36 ----A---- C:\Windows\system32\iasrad.dll
2011-02-13 12:27:36 ----A---- C:\Windows\system32\findstr.exe
2011-02-13 12:27:35 ----A---- C:\Windows\system32\wsnmp32.dll
2011-02-13 12:27:35 ----A---- C:\Windows\system32\wer.dll
2011-02-13 12:27:35 ----A---- C:\Windows\system32\uxsms.dll
2011-02-13 12:27:35 ----A---- C:\Windows\system32\themecpl.dll
2011-02-13 12:27:35 ----A---- C:\Windows\system32\slcc.dll
2011-02-13 12:27:35 ----A---- C:\Windows\system32\scansetting.dll
2011-02-13 12:27:35 ----A---- C:\Windows\system32\rasdlg.dll
2011-02-13 12:27:35 ----A---- C:\Windows\system32\ntmarta.dll
2011-02-13 12:27:35 ----A---- C:\Windows\system32\msutb.dll