ComboFix 11-02-27.01 - Kuba 27.02.2011 22:16:24.9.1 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.510.299 [GMT 1:00]
Spuštěný z: c:\documents and settings\Kuba\Plocha\ComboFix.exe
AV: avast! Antivirus *Disabled/Outdated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-01-27 do 2011-02-27 )))))))))))))))))))))))))))))))
.
2011-02-27 20:41 . 2011-02-27 20:48 -------- d---a-w- C:\Kaspersky Rescue Disk 10.0
2011-02-27 20:34 . 2010-12-20 17:09 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-02-27 20:34 . 2010-12-20 17:08 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-02-20 21:01 . 2011-02-27 19:11 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Spybot - Search & Destroy
2011-02-20 21:01 . 2011-02-20 21:07 -------- d-----w- c:\program files\Spybot - Search & Destroy
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-01-21 14:44 . 2001-10-25 12:00 440320 ----a-w- c:\windows\system32\shimgvw.dll
2011-01-07 14:09 . 2001-10-25 12:00 290048 ----a-w- c:\windows\system32\atmfd.dll
2010-12-31 14:04 . 2001-10-25 12:00 1854976 ----a-w- c:\windows\system32\win32k.sys
2010-12-22 12:34 . 2001-10-25 12:00 301568 ----a-w- c:\windows\system32\kerberos.dll
2010-12-20 23:52 . 2001-10-25 12:00 916480 ----a-w- c:\windows\system32\wininet.dll
2010-12-20 23:52 . 2001-10-25 12:00 43520 ----a-w- c:\windows\system32\licmgr10.dll
2010-12-20 23:52 . 2001-10-25 12:00 1469440 ------w- c:\windows\system32\inetcpl.cpl
2010-12-20 17:25 . 2001-10-25 12:00 729088 ----a-w- c:\windows\system32\lsasrv.dll
2010-12-20 12:55 . 2010-04-13 18:54 385024 ----a-w- c:\windows\system32\html.iec
2010-12-09 15:15 . 2001-10-25 12:00 713216 ----a-w- c:\windows\system32\ntdll.dll
2010-12-09 15:14 . 2001-10-25 12:00 2194944 ----a-w- c:\windows\system32\ntoskrnl.exe
2010-12-09 15:14 . 2001-10-24 11:46 2071552 ----a-w- c:\windows\system32\ntkrnlpa.exe
2010-12-09 14:30 . 2001-10-25 12:00 33280 ----a-w- c:\windows\system32\csrsrv.dll
.
((((((((((((((((((((((((((((( SnapShot@2010-11-14_07.37.43 )))))))))))))))))))))))))))))))))))))))))
.
+ 2006-09-28 17:56 . 2006-09-28 17:56 55808 c:\windows\system32\WudfSvc.dll
+ 2006-09-28 19:13 . 2006-09-28 19:13 95344 c:\windows\system32\WUDFCoinstaller.dll
+ 2006-11-02 10:51 . 2006-11-02 10:51 39936 c:\windows\system32\wpdshextres.dll
+ 2006-10-18 19:00 . 2006-10-18 19:00 17408 c:\windows\system32\wpdshextautoplay.exe
+ 2006-10-18 20:47 . 2006-10-18 20:47 63488 c:\windows\system32\wpdmtpus.dll
+ 2006-10-18 20:47 . 2006-10-18 20:47 35840 c:\windows\system32\wpdconns.dll
+ 2001-10-25 12:00 . 2006-10-18 20:47 37376 c:\windows\system32\wmdmps.dll
+ 2001-10-25 12:00 . 2006-10-18 20:47 33792 c:\windows\system32\wmdmlog.dll
+ 2010-05-02 11:18 . 2010-11-03 13:12 46080 c:\windows\system32\tzchange.exe
- 2010-05-02 11:18 . 2010-06-21 14:46 46080 c:\windows\system32\tzchange.exe
+ 2010-04-13 18:48 . 2008-11-07 17:55 26144 c:\windows\system32\spupdsvc.exe
- 2010-04-13 18:48 . 2009-01-07 16:20 26144 c:\windows\system32\spupdsvc.exe
+ 2010-06-06 17:53 . 2008-11-07 17:55 16928 c:\windows\system32\spmsgXP_2k3.dll
+ 2010-12-25 08:56 . 2010-02-22 14:20 18296 c:\windows\system32\spmsg.dll
+ 2005-10-14 10:56 . 2002-10-04 22:04 45056 c:\windows\system32\ogg.dll
+ 2010-06-06 17:45 . 2010-02-26 13:32 92672 c:\windows\system32\nmwcdcls.dll
+ 2010-04-13 18:54 . 2006-10-18 20:47 27136 c:\windows\system32\mspmsnsv.dll
+ 2001-10-25 12:00 . 2010-12-20 23:52 66560 c:\windows\system32\mshtmled.dll
- 2001-10-25 12:00 . 2010-09-10 05:52 66560 c:\windows\system32\mshtmled.dll
- 2009-03-08 02:31 . 2010-09-10 05:52 55296 c:\windows\system32\msfeedsbs.dll
+ 2009-03-08 02:31 . 2010-12-20 23:52 55296 c:\windows\system32\msfeedsbs.dll
+ 2001-10-25 12:00 . 2006-10-18 20:47 11264 c:\windows\system32\LAPRXY.dll
+ 2001-10-25 12:00 . 2010-12-20 23:52 25600 c:\windows\system32\jsproxy.dll
- 2001-10-25 12:00 . 2010-09-10 05:52 25600 c:\windows\system32\jsproxy.dll
+ 2010-04-13 18:29 . 2010-11-18 18:15 81920 c:\windows\system32\isign32.dll
- 2010-04-13 18:29 . 2008-04-14 03:21 81920 c:\windows\system32\isign32.dll
- 2010-06-06 17:46 . 2008-08-26 07:26 18816 c:\windows\system32\DRVSTORE\pccsmcfd_A3B3916E5D8138F59EE218321B27B044D3B18294\pccsmcfd.sys
+ 2010-12-23 18:55 . 2008-08-26 09:26 18816 c:\windows\system32\DRVSTORE\pccsmcfd_A3B3916E5D8138F59EE218321B27B044D3B18294\pccsmcfd.sys
+ 2010-12-23 18:54 . 2010-02-26 13:32 22528 c:\windows\system32\DRVSTORE\ccdcmbo_58B426A32D058B9C0B1148770AD4070D84CE094D\ccdcmbo.sys
+ 2010-12-23 18:54 . 2010-02-26 13:32 92672 c:\windows\system32\DRVSTORE\ccdcmb_58B426A32D058B9C0B1148770AD4070D84CE094D\nmwcdcls.dll
+ 2010-12-23 18:54 . 2010-02-26 13:32 18176 c:\windows\system32\DRVSTORE\ccdcmb_58B426A32D058B9C0B1148770AD4070D84CE094D\ccdcmb.sys
+ 2006-09-28 18:00 . 2006-09-28 18:00 82944 c:\windows\system32\drivers\WudfRd.sys
+ 2006-09-28 17:55 . 2006-09-28 17:55 77568 c:\windows\system32\drivers\WudfPf.sys
+ 2006-10-18 19:00 . 2006-10-18 19:00 38528 c:\windows\system32\drivers\wpdusb.sys
+ 2008-03-27 14:27 . 2009-07-14 09:35 37608 c:\windows\system32\drivers\wdfldr.sys
+ 2010-12-23 18:55 . 2008-08-26 09:26 18816 c:\windows\system32\drivers\pccsmcfd.sys
- 2010-06-06 17:46 . 2008-08-26 07:26 18816 c:\windows\system32\drivers\pccsmcfd.sys
+ 2001-10-25 12:00 . 2010-11-02 15:17 40960 c:\windows\system32\drivers\ndproxy.sys
+ 2010-12-23 18:54 . 2010-02-26 13:32 22528 c:\windows\system32\drivers\ccdcmbo.sys
+ 2010-12-23 18:54 . 2010-02-26 13:32 18176 c:\windows\system32\drivers\ccdcmb.sys
+ 2010-07-31 19:16 . 2010-12-20 23:52 12800 c:\windows\system32\dllcache\xpshims.dll
- 2010-07-31 19:16 . 2010-09-10 05:52 12800 c:\windows\system32\dllcache\xpshims.dll
+ 2010-06-06 18:15 . 2006-10-18 20:47 37376 c:\windows\system32\dllcache\wmdmps.dll
+ 2010-06-06 18:15 . 2006-10-18 20:47 33792 c:\windows\system32\dllcache\wmdmlog.dll
+ 2010-12-15 18:44 . 2010-10-11 14:59 45568 c:\windows\system32\dllcache\wab.exe
+ 2010-12-15 18:46 . 2010-11-02 15:17 40960 c:\windows\system32\dllcache\ndproxy.sys
+ 2010-06-06 18:13 . 2006-10-18 20:47 27136 c:\windows\system32\dllcache\mspmsnsv.dll
- 2010-02-26 06:12 . 2010-09-10 05:52 66560 c:\windows\system32\dllcache\mshtmled.dll
+ 2010-02-26 06:12 . 2010-12-20 23:52 66560 c:\windows\system32\dllcache\mshtmled.dll
+ 2010-07-31 19:16 . 2010-12-20 23:52 55296 c:\windows\system32\dllcache\msfeedsbs.dll
- 2010-07-31 19:16 . 2010-09-10 05:52 55296 c:\windows\system32\dllcache\msfeedsbs.dll
- 2009-03-08 02:34 . 2010-09-10 05:52 43520 c:\windows\system32\dllcache\licmgr10.dll
+ 2009-03-08 02:34 . 2010-12-20 23:52 43520 c:\windows\system32\dllcache\licmgr10.dll
+ 2010-06-06 18:11 . 2006-10-18 20:47 11264 c:\windows\system32\dllcache\LAPRXY.dll
- 2010-02-26 06:12 . 2010-09-10 05:52 25600 c:\windows\system32\dllcache\jsproxy.dll
+ 2010-02-26 06:12 . 2010-12-20 23:52 25600 c:\windows\system32\dllcache\jsproxy.dll
+ 2010-11-18 18:15 . 2010-11-18 18:15 81920 c:\windows\system32\dllcache\isign32.dll
+ 2009-12-14 07:10 . 2010-12-09 14:30 33280 c:\windows\system32\dllcache\csrsrv.dll
- 2009-12-14 07:10 . 2009-12-14 07:10 33280 c:\windows\system32\dllcache\csrsrv.dll
+ 2010-12-23 18:52 . 2010-12-23 18:52 78336 c:\windows\Installer\1e9fc1c3.msi
+ 2010-12-23 18:57 . 2010-12-23 18:57 10134 c:\windows\Installer\{EE5B5B24-EEFC-4C8B-BF8B-256D705BAD89}\ARPPRODUCTICON.exe
+ 2010-12-23 18:55 . 2010-12-23 18:55 24255 c:\windows\Installer\{8112C6B3-91E1-4560-8AB9-876DADFA37C5}\ARPPRODUCTICON.exe
+ 2010-12-23 18:56 . 2010-12-23 18:56 10134 c:\windows\Installer\{749A1EDD-16C2-4C63-B013-D38F0F953973}\ARPPRODUCTICON.exe
+ 2010-12-23 18:55 . 2010-12-23 18:55 10134 c:\windows\Installer\{45DF6D99-666D-41FA-8D62-0E183B6240F3}\ARPPRODUCTICON.exe
+ 2011-02-10 17:40 . 2010-11-06 00:23 12800 c:\windows\ie8updates\KB2482017-IE8\xpshims.dll
+ 2011-02-10 17:40 . 2010-11-06 00:23 66560 c:\windows\ie8updates\KB2482017-IE8\mshtmled.dll
+ 2011-02-10 17:40 . 2010-11-06 00:23 55296 c:\windows\ie8updates\KB2482017-IE8\msfeedsbs.dll
+ 2011-02-10 17:40 . 2010-11-06 00:23 43520 c:\windows\ie8updates\KB2482017-IE8\licmgr10.dll
+ 2011-02-10 17:40 . 2010-11-06 00:23 25600 c:\windows\ie8updates\KB2482017-IE8\jsproxy.dll
+ 2010-12-16 17:40 . 2010-09-10 05:52 12800 c:\windows\ie8updates\KB2416400-IE8\xpshims.dll
+ 2010-12-16 17:40 . 2010-09-10 05:52 66560 c:\windows\ie8updates\KB2416400-IE8\mshtmled.dll
+ 2010-12-16 17:40 . 2010-09-10 05:52 55296 c:\windows\ie8updates\KB2416400-IE8\msfeedsbs.dll
+ 2010-12-16 17:40 . 2010-09-10 05:52 43520 c:\windows\ie8updates\KB2416400-IE8\licmgr10.dll
+ 2010-12-16 17:40 . 2010-09-10 05:52 25600 c:\windows\ie8updates\KB2416400-IE8\jsproxy.dll
+ 2010-12-16 17:38 . 2010-02-22 14:20 26488 c:\windows\$hf_mig$\KB2467659\update\spcustom.dll
+ 2010-12-16 17:38 . 2010-02-22 14:20 18296 c:\windows\$hf_mig$\KB2467659\spmsg.dll
+ 2010-12-16 17:42 . 2010-02-22 14:20 26488 c:\windows\$hf_mig$\KB2443105\update\spcustom.dll
+ 2010-12-16 17:42 . 2010-02-22 14:20 18296 c:\windows\$hf_mig$\KB2443105\spmsg.dll
+ 2010-11-18 18:15 . 2010-11-18 18:15 81920 c:\windows\$hf_mig$\KB2443105\SP3QFE\isign32.dll
+ 2010-12-16 17:39 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB2440591\update\spcustom.dll
+ 2010-12-16 17:39 . 2009-05-26 11:40 18296 c:\windows\$hf_mig$\KB2440591\spmsg.dll
+ 2010-12-15 18:46 . 2010-11-03 05:55 40960 c:\windows\$hf_mig$\KB2440591\SP3QFE\ndproxy.sys
+ 2010-12-16 17:39 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB2436673\update\spcustom.dll
+ 2010-12-16 17:39 . 2009-05-26 11:40 18296 c:\windows\$hf_mig$\KB2436673\spmsg.dll
+ 2010-12-16 17:34 . 2010-02-22 14:20 26488 c:\windows\$hf_mig$\KB2423089\update\spcustom.dll
+ 2010-12-16 17:34 . 2010-02-22 14:20 18296 c:\windows\$hf_mig$\KB2423089\spmsg.dll
+ 2010-12-15 18:44 . 2010-10-11 14:55 45568 c:\windows\$hf_mig$\KB2423089\SP3QFE\wab.exe
+ 2011-01-12 16:29 . 2010-02-22 14:20 26488 c:\windows\$hf_mig$\KB2419632\update\spcustom.dll
+ 2011-01-12 16:29 . 2010-02-22 14:20 18296 c:\windows\$hf_mig$\KB2419632\spmsg.dll
+ 2010-12-16 17:40 . 2010-02-22 14:20 26488 c:\windows\$hf_mig$\KB2416400-IE8\update\spcustom.dll
+ 2010-12-16 17:40 . 2010-02-22 14:20 18296 c:\windows\$hf_mig$\KB2416400-IE8\spmsg.dll
+ 2010-12-15 18:49 . 2010-11-06 00:24 12800 c:\windows\$hf_mig$\KB2416400-IE8\SP3QFE\xpshims.dll
+ 2010-12-15 18:49 . 2010-11-06 00:24 66560 c:\windows\$hf_mig$\KB2416400-IE8\SP3QFE\mshtmled.dll
+ 2010-12-15 18:49 . 2010-11-06 00:24 55296 c:\windows\$hf_mig$\KB2416400-IE8\SP3QFE\msfeedsbs.dll
+ 2010-12-15 18:49 . 2010-11-06 00:24 43520 c:\windows\$hf_mig$\KB2416400-IE8\SP3QFE\licmgr10.dll
+ 2010-12-15 18:49 . 2010-11-06 00:24 25600 c:\windows\$hf_mig$\KB2416400-IE8\SP3QFE\jsproxy.dll
+ 2010-12-16 17:42 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB2296199\update\spcustom.dll
+ 2010-12-16 17:42 . 2009-05-26 11:40 18296 c:\windows\$hf_mig$\KB2296199\spmsg.dll
+ 2010-04-13 18:54 . 2006-10-18 20:47 4096 c:\windows\system32\wmvdmoe2.dll
+ 2001-10-25 12:00 . 2006-10-18 20:47 4096 c:\windows\system32\wmvdmod.dll
+ 2006-10-18 20:47 . 2006-10-18 20:47 4096 c:\windows\system32\WMVADVE.DLL
+ 2006-10-18 20:47 . 2006-10-18 20:47 4096 c:\windows\system32\WMVADVD.dll
+ 2010-04-13 18:54 . 2006-10-18 20:47 4096 c:\windows\system32\wmsdmoe2.dll
+ 2001-10-25 12:00 . 2006-10-18 20:47 4096 c:\windows\system32\wmsdmod.dll
+ 2006-10-18 20:58 . 2006-10-18 20:58 8704 c:\windows\system32\wdfmgr.exe
+ 2006-10-18 20:47 . 2006-10-18 20:47 4096 c:\windows\system32\wdfapi.dll
+ 2006-10-18 20:58 . 2006-10-18 20:58 8704 c:\windows\system32\uwdf.exe
+ 2001-10-25 12:00 . 2006-10-18 20:47 4096 c:\windows\system32\MPG4DMOD.dll
+ 2010-04-13 18:54 . 2006-10-18 20:47 4096 c:\windows\system32\MP4SDMOD.dll
+ 2010-04-13 18:54 . 2006-10-18 20:47 4096 c:\windows\system32\MP43DMOD.dll
+ 2010-12-23 18:54 . 2010-02-26 13:21 8320 c:\windows\system32\DRVSTORE\nmwcdnsuc_58B426A32D058B9C0B1148770AD4070D84CE094D\nmwcdnsuc.sys
+ 2010-12-23 18:54 . 2010-02-26 13:32 8192 c:\windows\system32\DRVSTORE\ccdcmbm_58B426A32D058B9C0B1148770AD4070D84CE094D\usbser_lowerflt.sys
+ 2010-12-23 18:54 . 2010-02-26 13:32 8192 c:\windows\system32\DRVSTORE\ccdcmbcj_58B426A32D058B9C0B1148770AD4070D84CE094D\usbser_lowerfltj.sys
+ 2010-12-23 18:54 . 2010-02-26 13:32 8192 c:\windows\system32\drivers\usbser_lowerfltj.sys
+ 2010-12-23 18:54 . 2010-02-26 13:32 8192 c:\windows\system32\drivers\usbser_lowerflt.sys
+ 2010-06-06 18:15 . 2006-10-18 20:47 4096 c:\windows\system32\dllcache\wmvdmoe2.dll
+ 2010-06-06 18:15 . 2006-10-18 20:47 4096 c:\windows\system32\dllcache\wmvdmod.dll
+ 2010-06-06 18:15 . 2006-10-18 20:47 4096 c:\windows\system32\dllcache\wmsdmoe2.dll
+ 2010-06-06 18:15 . 2006-10-18 20:47 4096 c:\windows\system32\dllcache\wmsdmod.dll
+ 2010-06-06 18:11 . 2006-10-18 20:47 4096 c:\windows\system32\dllcache\MPG4DMOD.dll
+ 2010-06-06 18:11 . 2006-10-18 20:47 4096 c:\windows\system32\dllcache\MP4SDMOD.dll
+ 2010-06-06 18:11 . 2006-10-18 20:47 4096 c:\windows\system32\dllcache\MP43DMOD.dll
+ 2010-12-23 18:54 . 2010-12-23 18:54 3262 c:\windows\Installer\{F1FDAA01-988C-423F-AC12-0D8F333943FD}\ARPPRODUCTICON.exe
+ 2005-10-14 10:56 . 2005-12-30 19:10 761856 c:\windows\system32\xvidcore.dll
+ 2005-10-14 10:56 . 2004-02-10 10:15 344064 c:\windows\system32\xvid.dll
+ 2006-09-28 17:56 . 2006-09-28 17:56 316416 c:\windows\system32\WUDFx.dll
+ 2006-09-28 17:56 . 2006-09-28 17:56 165376 c:\windows\system32\WudfPlatform.dll
+ 2006-09-28 17:56 . 2006-09-28 17:56 146432 c:\windows\system32\WudfHost.exe
+ 2006-10-18 20:47 . 2006-10-18 20:47 356352 c:\windows\system32\wpdsp.dll
+ 2006-10-18 20:47 . 2006-10-18 20:47 133632 c:\windows\system32\WPDShServiceObj.dll
+ 2006-10-18 20:47 . 2006-10-18 20:47 154624 c:\windows\system32\wpdmtp.dll
+ 2006-10-18 20:47 . 2006-10-18 20:47 629760 c:\windows\system32\wpd_ci.dll
+ 2006-10-18 20:47 . 2006-10-18 20:47 656896 c:\windows\system32\WMVXENCD.dll
+ 2006-10-18 20:47 . 2006-10-18 20:47 767488 c:\windows\system32\WMVSENCD.dll
+ 2010-04-13 18:54 . 2009-04-01 22:02 604160 c:\windows\system32\wmspdmod.dll
+ 2001-10-25 12:00 . 2008-06-18 04:03 938496 c:\windows\system32\WMNetmgr.dll
+ 2010-04-13 18:54 . 2006-10-18 20:47 157184 c:\windows\system32\wmidx.dll
+ 2006-10-18 20:47 . 2006-10-18 20:47 535040 c:\windows\system32\wmdrmsdk.dll
+ 2006-10-18 20:47 . 2006-10-18 20:47 348672 c:\windows\system32\wmdrmnet.dll
+ 2006-10-18 20:47 . 2006-10-18 20:47 429056 c:\windows\system32\wmdrmdev.dll
+ 2001-10-25 12:00 . 2007-10-25 08:28 222720 c:\windows\system32\wmasf.dll
+ 2001-10-25 12:00 . 2006-10-18 20:47 757248 c:\windows\system32\WMADMOD.dll
+ 2005-10-14 10:56 . 2002-10-04 22:04 921600 c:\windows\system32\VorbisEnc.dll
+ 2005-10-14 10:56 . 2002-10-04 22:04 188416 c:\windows\system32\vorbis.dll
+ 2005-10-14 10:56 . 2003-04-29 09:13 155136 c:\windows\system32\unrar.dll
+ 2001-10-25 12:00 . 2006-10-18 20:47 211456 c:\windows\system32\qasf.dll
+ 2006-10-18 20:47 . 2006-10-18 20:47 199168 c:\windows\system32\PortableDeviceWMDRM.dll
+ 2006-10-18 20:47 . 2006-10-18 20:47 132096 c:\windows\system32\PortableDeviceWiaCompat.dll
+ 2006-10-18 20:47 . 2006-10-18 20:47 166912 c:\windows\system32\PortableDeviceTypes.dll
+ 2006-10-18 20:47 . 2006-10-18 20:47 101888 c:\windows\system32\PortableDeviceClassExtension.dll
+ 2006-10-18 20:47 . 2006-10-18 20:47 284160 c:\windows\system32\PortableDeviceApi.dll
+ 2005-10-14 10:56 . 2002-10-06 17:42 237568 c:\windows\system32\OggDS.dll
+ 2001-10-25 12:00 . 2010-11-09 14:52 249856 c:\windows\system32\odbc32.dll
- 2001-10-25 12:00 . 2008-04-14 03:21 249856 c:\windows\system32\odbc32.dll
- 2001-10-25 12:00 . 2010-09-10 05:52 206848 c:\windows\system32\occache.dll
+ 2001-10-25 12:00 . 2010-12-20 23:52 206848 c:\windows\system32\occache.dll
+ 2010-12-23 18:54 . 2010-02-26 13:32 662016 c:\windows\system32\nmwcdcocls.dll
+ 2001-10-25 12:00 . 2006-10-18 20:47 321536 c:\windows\system32\mswmdm.dll
- 2001-10-25 12:00 . 2010-09-10 05:52 611840 c:\windows\system32\mstime.dll
+ 2001-10-25 12:00 . 2010-12-20 23:52 611840 c:\windows\system32\mstime.dll
+ 2001-10-25 12:00 . 2006-12-04 15:21 414720 c:\windows\system32\msscp.dll
+ 2001-10-25 12:00 . 2006-10-18 20:47 175616 c:\windows\system32\mspmsp.dll
+ 2001-10-25 12:00 . 2006-10-18 20:47 179712 c:\windows\system32\msnetobj.dll
- 2009-03-08 02:32 . 2010-09-10 05:52 602112 c:\windows\system32\msfeeds.dll
+ 2009-03-08 02:32 . 2010-12-20 23:52 602112 c:\windows\system32\msfeeds.dll
+ 2006-10-18 20:47 . 2006-10-18 20:47 259072 c:\windows\system32\MPG4DECD.dll
+ 2006-10-18 20:47 . 2010-03-30 11:24 317440 c:\windows\system32\mp4sdecd.dll
+ 2006-10-18 20:47 . 2006-10-18 20:47 259072 c:\windows\system32\MP43DECD.dll
+ 2006-10-18 20:47 . 2006-10-18 20:47 212992 c:\windows\system32\MFPLAT.dll
+ 2011-02-27 20:53 . 2011-02-27 20:53 234656 c:\windows\system32\Macromed\Flash\FlashUtil10m_Plugin.exe
+ 2001-10-25 12:00 . 2008-06-18 00:09 100864 c:\windows\system32\logagent.exe
- 2001-10-25 12:00 . 2010-09-10 05:52 184320 c:\windows\system32\iepeers.dll
+ 2001-10-25 12:00 . 2010-12-20 23:52 184320 c:\windows\system32\iepeers.dll
- 2001-10-25 12:00 . 2010-09-10 05:52 387584 c:\windows\system32\iedkcs32.dll
+ 2001-10-25 12:00 . 2010-12-20 23:52 387584 c:\windows\system32\iedkcs32.dll
+ 2001-10-25 12:00 . 2010-12-20 12:55 173568 c:\windows\system32\ie4uinit.exe
+ 2010-04-13 20:19 . 2011-02-10 17:46 112584 c:\windows\system32\FNTCACHE.DAT
- 2010-04-13 20:19 . 2010-10-15 18:07 112584 c:\windows\system32\FNTCACHE.DAT
+ 2010-12-23 18:55 . 2010-04-14 10:40 590848 c:\windows\system32\DRVSTORE\pccswpddri_8FC79B5C76B12B345CB05ADB7D73AF7091A57405\PCCSWpdDriver.dll
+ 2010-12-23 18:54 . 2010-02-26 13:21 137344 c:\windows\system32\DRVSTORE\nmwcdnsu_58B426A32D058B9C0B1148770AD4070D84CE094D\nmwcdnsu.sys
+ 2010-12-23 18:54 . 2010-02-26 13:32 662016 c:\windows\system32\DRVSTORE\ccdcmb_58B426A32D058B9C0B1148770AD4070D84CE094D\nmwcdcocls.dll
+ 2001-10-25 12:00 . 2006-10-18 20:47 991744 c:\windows\system32\drmv2clt.dll
+ 2006-10-18 19:00 . 2006-10-18 19:00 249856 c:\windows\system32\drmupgds.exe
+ 2008-03-27 14:27 . 2009-07-14 09:35 444136 c:\windows\system32\drivers\wdf01000.sys
+ 2006-10-18 20:47 . 2006-10-18 20:47 671232 c:\windows\system32\drivers\UMDF\wpdmtpdr.dll
+ 2010-05-13 13:54 . 2009-04-01 22:02 604160 c:\windows\system32\dllcache\wmspdmod.dll
+ 2008-06-10 16:18 . 2008-06-18 04:03 938496 c:\windows\system32\dllcache\WMNetmgr.dll
+ 2010-06-06 18:15 . 2006-10-18 20:47 157184 c:\windows\system32\dllcache\wmidx.dll
+ 2010-06-06 18:15 . 2007-10-25 08:28 222720 c:\windows\system32\dllcache\wmasf.dll
+ 2010-06-06 18:15 . 2006-10-18 20:47 757248 c:\windows\system32\dllcache\WMADMOD.dll
- 2010-02-26 06:12 . 2010-09-10 05:52 916480 c:\windows\system32\dllcache\wininet.dll
+ 2010-02-26 06:12 . 2010-12-20 23:52 916480 c:\windows\system32\dllcache\wininet.dll
+ 2011-01-21 14:44 . 2011-01-21 14:44 440320 c:\windows\system32\dllcache\shimgvw.dll
+ 2010-11-09 14:52 . 2010-11-09 14:52 249856 c:\windows\system32\dllcache\odbc32.dll
- 2009-03-08 02:34 . 2010-09-10 05:52 206848 c:\windows\system32\dllcache\occache.dll
+ 2009-03-08 02:34 . 2010-12-20 23:52 206848 c:\windows\system32\dllcache\occache.dll
+ 2010-04-27 15:50 . 2010-12-09 15:15 713216 c:\windows\system32\dllcache\ntdll.dll
+ 2010-06-06 18:13 . 2006-10-18 20:47 321536 c:\windows\system32\dllcache\mswmdm.dll
+ 2010-02-26 06:12 . 2010-12-20 23:52 611840 c:\windows\system32\dllcache\mstime.dll
- 2010-02-26 06:12 . 2010-09-10 05:52 611840 c:\windows\system32\dllcache\mstime.dll
+ 2010-06-06 18:13 . 2006-12-04 15:21 414720 c:\windows\system32\dllcache\msscp.dll
+ 2010-06-06 18:13 . 2006-10-18 20:47 175616 c:\windows\system32\dllcache\mspmsp.dll
+ 2010-06-06 18:13 . 2006-10-18 20:47 179712 c:\windows\system32\dllcache\msnetobj.dll
+ 2010-11-09 14:52 . 2010-11-09 14:52 102400 c:\windows\system32\dllcache\msjro.dll
- 2010-07-31 19:16 . 2010-09-10 05:52 602112 c:\windows\system32\dllcache\msfeeds.dll
+ 2010-07-31 19:16 . 2010-12-20 23:52 602112 c:\windows\system32\dllcache\msfeeds.dll
+ 2010-11-09 14:52 . 2010-11-09 14:52 200704 c:\windows\system32\dllcache\msadox.dll
+ 2010-11-09 14:52 . 2010-11-09 14:52 180224 c:\windows\system32\dllcache\msadomd.dll
+ 2010-11-09 14:52 . 2010-11-09 14:52 536576 c:\windows\system32\dllcache\msado15.dll
+ 2010-11-09 14:52 . 2010-11-09 14:52 143360 c:\windows\system32\dllcache\msadco.dll
+ 2010-03-30 11:24 . 2010-03-30 11:24 317440 c:\windows\system32\dllcache\mp4sdecd.dll
- 2010-04-27 15:50 . 2009-06-25 08:27 729088 c:\windows\system32\dllcache\lsasrv.dll
+ 2010-04-27 15:50 . 2010-12-20 17:25 729088 c:\windows\system32\dllcache\lsasrv.dll
+ 2008-06-09 23:31 . 2008-06-18 00:09 100864 c:\windows\system32\dllcache\logagent.exe
- 2009-06-25 08:27 . 2009-06-25 08:27 301568 c:\windows\system32\dllcache\kerberos.dll
+ 2009-06-25 08:27 . 2010-12-22 12:34 301568 c:\windows\system32\dllcache\kerberos.dll
- 2010-07-31 19:16 . 2010-09-10 05:52 247808 c:\windows\system32\dllcache\ieproxy.dll
+ 2010-07-31 19:16 . 2010-12-20 23:52 247808 c:\windows\system32\dllcache\ieproxy.dll
- 2010-02-26 06:12 . 2010-09-10 05:52 184320 c:\windows\system32\dllcache\iepeers.dll
+ 2010-02-26 06:12 . 2010-12-20 23:52 184320 c:\windows\system32\dllcache\iepeers.dll
+ 2010-07-31 19:16 . 2010-12-20 23:52 743424 c:\windows\system32\dllcache\iedvtool.dll
- 2010-07-31 19:16 . 2010-09-10 05:52 743424 c:\windows\system32\dllcache\iedvtool.dll
+ 2009-03-08 12:09 . 2010-12-20 23:52 387584 c:\windows\system32\dllcache\iedkcs32.dll
- 2009-03-08 12:09 . 2010-09-10 05:52 387584 c:\windows\system32\dllcache\iedkcs32.dll
+ 2009-03-08 02:32 . 2010-12-20 12:55 173568 c:\windows\system32\dllcache\ie4uinit.exe
+ 2010-06-06 18:10 . 2006-10-18 20:47 991744 c:\windows\system32\dllcache\drmv2clt.dll
+ 2010-06-06 18:10 . 2006-10-18 20:47 229376 c:\windows\system32\dllcache\cewmdm.dll
+ 2010-06-06 18:10 . 2006-10-18 20:47 542720 c:\windows\system32\dllcache\blackbox.dll
+ 2010-04-20 05:48 . 2011-01-07 14:09 290048 c:\windows\system32\dllcache\atmfd.dll
+ 2005-10-14 10:56 . 2005-11-23 04:00 778240 c:\windows\system32\DivXsm.exe
+ 2005-12-19 06:23 . 2005-12-07 17:05 663552 c:\windows\system32\divx_xx11.dll
+ 2005-12-19 06:23 . 2005-12-07 17:05 679936 c:\windows\system32\divx_xx0c.dll
+ 2005-12-19 06:23 . 2005-12-07 17:05 679936 c:\windows\system32\divx_xx07.dll
+ 2001-10-25 12:00 . 2006-10-18 20:47 229376 c:\windows\system32\cewmdm.dll
+ 2001-10-25 12:00 . 2006-10-18 20:47 542720 c:\windows\system32\blackbox.dll
+ 2006-10-18 20:47 . 2006-10-18 20:47 276992 c:\windows\system32\audiodev.dll
+ 2010-11-20 12:10 . 2010-11-20 12:09 737280 c:\windows\iun6002.exe
+ 2010-12-23 19:01 . 2010-12-23 19:01 855040 c:\windows\Installer\1e9fc240.msi
+ 2010-12-23 18:57 . 2010-12-23 18:57 610304 c:\windows\Installer\1e9fc239.msi
+ 2010-12-23 18:55 . 2010-12-23 18:55 466944 c:\windows\Installer\1e9fc21b.msi
+ 2010-12-23 18:55 . 2010-12-23 18:55 495616 c:\windows\Installer\1e9fc215.msi
+ 2010-12-23 18:54 . 2010-12-23 18:54 331776 c:\windows\Installer\1e9fc1df.msi
+ 2010-12-23 19:01 . 2010-12-23 19:01 287934 c:\windows\Installer\{B8B4446F-87E1-4423-A47A-16832C24A199}\ARPPRODUCTICON.exe
+ 2011-02-10 17:40 . 2010-11-06 00:23 916480 c:\windows\ie8updates\KB2482017-IE8\wininet.dll
+ 2011-02-10 17:40 . 2010-07-05 13:13 391032 c:\windows\ie8updates\KB2482017-IE8\spuninst\updspapi.dll
+ 2011-02-10 17:40 . 2010-07-05 13:13 233848 c:\windows\ie8updates\KB2482017-IE8\spuninst\spuninst.exe
+ 2011-02-10 17:40 . 2010-11-06 00:23 206848 c:\windows\ie8updates\KB2482017-IE8\occache.dll
+ 2011-02-10 17:40 . 2010-11-06 00:23 611840 c:\windows\ie8updates\KB2482017-IE8\mstime.dll
+ 2011-02-10 17:40 . 2010-11-06 00:23 602112 c:\windows\ie8updates\KB2482017-IE8\msfeeds.dll
+ 2011-02-10 17:40 . 2010-11-06 00:23 247808 c:\windows\ie8updates\KB2482017-IE8\ieproxy.dll
+ 2011-02-10 17:40 . 2010-11-06 00:23 184320 c:\windows\ie8updates\KB2482017-IE8\iepeers.dll
+ 2011-02-10 17:40 . 2010-11-06 00:23 743424 c:\windows\ie8updates\KB2482017-IE8\iedvtool.dll
+ 2011-02-10 17:40 . 2010-11-06 00:23 387584 c:\windows\ie8updates\KB2482017-IE8\iedkcs32.dll
+ 2011-02-10 17:40 . 2010-11-03 12:26 173568 c:\windows\ie8updates\KB2482017-IE8\ie4uinit.exe
+ 2010-12-16 17:40 . 2010-09-10 05:52 916480 c:\windows\ie8updates\KB2416400-IE8\wininet.dll
+ 2010-12-16 17:40 . 2010-07-05 13:13 391032 c:\windows\ie8updates\KB2416400-IE8\spuninst\updspapi.dll
+ 2010-12-16 17:40 . 2010-02-22 14:20 233848 c:\windows\ie8updates\KB2416400-IE8\spuninst\spuninst.exe
+ 2010-12-16 17:40 . 2010-09-10 05:52 206848 c:\windows\ie8updates\KB2416400-IE8\occache.dll
+ 2010-12-16 17:40 . 2010-09-10 05:52 611840 c:\windows\ie8updates\KB2416400-IE8\mstime.dll
+ 2010-12-16 17:40 . 2010-09-10 05:52 602112 c:\windows\ie8updates\KB2416400-IE8\msfeeds.dll
+ 2010-12-16 17:40 . 2010-09-10 05:52 247808 c:\windows\ie8updates\KB2416400-IE8\ieproxy.dll
+ 2010-12-16 17:40 . 2010-09-10 05:52 184320 c:\windows\ie8updates\KB2416400-IE8\iepeers.dll
+ 2010-12-16 17:40 . 2010-09-10 05:52 743424 c:\windows\ie8updates\KB2416400-IE8\iedvtool.dll
+ 2010-12-16 17:40 . 2010-09-10 05:52 387584 c:\windows\ie8updates\KB2416400-IE8\iedkcs32.dll
+ 2010-12-16 17:40 . 2010-08-26 12:22 173056 c:\windows\ie8updates\KB2416400-IE8\ie4uinit.exe
+ 2010-12-16 17:38 . 2010-02-22 14:21 391032 c:\windows\$hf_mig$\KB2467659\update\updspapi.dll
+ 2010-12-16 17:38 . 2010-02-22 14:20 759160 c:\windows\$hf_mig$\KB2467659\update\update.exe
+ 2010-12-16 17:38 . 2010-02-22 14:20 233848 c:\windows\$hf_mig$\KB2467659\spuninst.exe
+ 2010-12-16 17:42 . 2010-02-22 14:21 391032 c:\windows\$hf_mig$\KB2443105\update\updspapi.dll
+ 2010-12-16 17:42 . 2010-02-22 14:21 759160 c:\windows\$hf_mig$\KB2443105\update\update.exe
+ 2010-12-16 17:42 . 2010-02-22 14:20 233848 c:\windows\$hf_mig$\KB2443105\spuninst.exe
+ 2010-12-16 17:39 . 2009-05-26 11:40 391032 c:\windows\$hf_mig$\KB2440591\update\updspapi.dll
+ 2010-12-16 17:39 . 2009-05-26 11:40 759160 c:\windows\$hf_mig$\KB2440591\update\update.exe
+ 2010-12-16 17:39 . 2009-05-26 11:40 233848 c:\windows\$hf_mig$\KB2440591\spuninst.exe
+ 2010-12-16 17:39 . 2009-05-26 11:40 391032 c:\windows\$hf_mig$\KB2436673\update\updspapi.dll
+ 2010-12-16 17:39 . 2009-05-26 11:40 759160 c:\windows\$hf_mig$\KB2436673\update\update.exe
+ 2010-12-16 17:39 . 2009-05-26 11:40 233848 c:\windows\$hf_mig$\KB2436673\spuninst.exe
+ 2010-12-16 17:34 . 2010-02-22 14:21 391032 c:\windows\$hf_mig$\KB2423089\update\updspapi.dll
+ 2010-12-16 17:34 . 2010-02-22 14:20 759160 c:\windows\$hf_mig$\KB2423089\update\update.exe
+ 2010-12-16 17:34 . 2010-02-22 14:20 233848 c:\windows\$hf_mig$\KB2423089\spuninst.exe
+ 2011-01-12 16:29 . 2010-02-22 14:21 391032 c:\windows\$hf_mig$\KB2419632\update\updspapi.dll
+ 2011-01-12 16:29 . 2010-02-22 14:21 759160 c:\windows\$hf_mig$\KB2419632\update\update.exe
+ 2011-01-12 16:29 . 2010-02-22 14:20 233848 c:\windows\$hf_mig$\KB2419632\spuninst.exe
+ 2010-11-09 14:51 . 2010-11-09 14:51 253952 c:\windows\$hf_mig$\KB2419632\SP3QFE\odbc32.dll
+ 2010-11-09 14:51 . 2010-11-09 14:51 102400 c:\windows\$hf_mig$\KB2419632\SP3QFE\msjro.dll
+ 2010-11-09 14:51 . 2010-11-09 14:51 200704 c:\windows\$hf_mig$\KB2419632\SP3QFE\msadox.dll
+ 2010-11-09 14:51 . 2010-11-09 14:51 180224 c:\windows\$hf_mig$\KB2419632\SP3QFE\msadomd.dll
+ 2010-11-09 14:51 . 2010-11-09 14:51 565248 c:\windows\$hf_mig$\KB2419632\SP3QFE\msado15.dll
+ 2010-11-09 14:51 . 2010-11-09 14:51 143360 c:\windows\$hf_mig$\KB2419632\SP3QFE\msadco.dll
+ 2010-12-16 17:40 . 2010-07-05 13:13 391032 c:\windows\$hf_mig$\KB2416400-IE8\update\updspapi.dll
+ 2010-12-16 17:40 . 2010-07-05 13:13 759160 c:\windows\$hf_mig$\KB2416400-IE8\update\update.exe
+ 2010-12-16 17:40 . 2010-02-22 14:20 233848 c:\windows\$hf_mig$\KB2416400-IE8\spuninst.exe
+ 2010-12-15 18:49 . 2010-11-06 00:24 919552 c:\windows\$hf_mig$\KB2416400-IE8\SP3QFE\wininet.dll
+ 2010-12-15 18:49 . 2010-11-06 00:24 206848 c:\windows\$hf_mig$\KB2416400-IE8\SP3QFE\occache.dll
+ 2010-12-15 18:49 . 2010-11-06 00:24 611840 c:\windows\$hf_mig$\KB2416400-IE8\SP3QFE\mstime.dll
+ 2010-12-15 18:49 . 2010-11-06 00:24 602112 c:\windows\$hf_mig$\KB2416400-IE8\SP3QFE\msfeeds.dll
+ 2010-12-15 18:49 . 2010-11-06 00:24 247808 c:\windows\$hf_mig$\KB2416400-IE8\SP3QFE\ieproxy.dll
+ 2010-12-15 18:49 . 2010-11-06 00:24 184320 c:\windows\$hf_mig$\KB2416400-IE8\SP3QFE\iepeers.dll
+ 2010-12-15 18:49 . 2010-11-06 00:24 743424 c:\windows\$hf_mig$\KB2416400-IE8\SP3QFE\iedvtool.dll
+ 2010-12-15 18:49 . 2010-11-06 00:24 387584 c:\windows\$hf_mig$\KB2416400-IE8\SP3QFE\iedkcs32.dll
+ 2010-12-15 18:49 . 2010-11-03 12:01 173568 c:\windows\$hf_mig$\KB2416400-IE8\SP3QFE\ie4uinit.exe
+ 2010-12-16 17:42 . 2009-05-26 11:40 391032 c:\windows\$hf_mig$\KB2296199\update\updspapi.dll
+ 2010-12-16 17:42 . 2009-05-26 11:40 759160 c:\windows\$hf_mig$\KB2296199\update\update.exe
+ 2010-12-16 17:42 . 2009-05-26 11:40 233848 c:\windows\$hf_mig$\KB2296199\spuninst.exe
+ 2010-10-28 13:05 . 2010-10-28 13:05 290048 c:\windows\$hf_mig$\KB2296199\SP3QFE\atmfd.dll
+ 2006-10-18 20:47 . 2006-10-18 20:47 2603008 c:\windows\system32\WpdShext.dll
+ 2006-10-18 20:47 . 2006-10-18 20:47 1382912 c:\windows\system32\WMVSDECD.dll
+ 2006-10-18 20:47 . 2006-10-18 20:47 1574912 c:\windows\system32\WMVENCOD.dll
+ 2006-10-18 20:47 . 2006-10-18 20:47 1543680 c:\windows\system32\WMVDECOD.dll
+ 2001-10-25 12:00 . 2010-04-06 03:52 2462720 c:\windows\system32\WMVCore.dll
+ 2010-04-13 18:54 . 2006-10-18 20:47 1329152 c:\windows\system32\WMSPDMOE.dll
+ 2001-10-25 12:00 . 2006-10-18 20:47 1117696 c:\windows\system32\WMADMOE.dll
+ 2010-12-23 18:54 . 2010-02-26 13:19 1461992 c:\windows\system32\wdfcoinstaller01009.dll
+ 2001-10-25 12:00 . 2010-12-20 23:52 1210880 c:\windows\system32\urlmon.dll
- 2001-10-25 12:00 . 2010-09-10 05:52 1210880 c:\windows\system32\urlmon.dll
+ 2001-10-25 12:00 . 2011-01-21 14:44 8466432 c:\windows\system32\shell32.dll
- 2001-10-25 12:00 . 2010-07-27 06:30 8466432 c:\windows\system32\shell32.dll
+ 2005-10-14 10:56 . 2005-08-09 22:12 3596288 c:\windows\system32\qt-dx331.dll
+ 2001-10-25 12:00 . 2010-12-20 23:52 5961216 c:\windows\system32\mshtml.dll
+ 2010-01-27 01:07 . 2011-02-27 20:53 6053536 c:\windows\system32\Macromed\Flash\NPSWF32.dll
+ 2009-03-08 02:32 . 2010-12-20 23:52 1991680 c:\windows\system32\iertutil.dll
+ 2010-12-23 18:55 . 2010-04-14 09:26 1837296 c:\windows\system32\DRVSTORE\pccswpddri_8FC79B5C76B12B345CB05ADB7D73AF7091A57405\WUDFUpdate_01009.dll
+ 2010-12-23 18:54 . 2010-02-26 13:19 1461992 c:\windows\system32\DRVSTORE\ccdcmb_58B426A32D058B9C0B1148770AD4070D84CE094D\wdfcoinstaller01009.dll
+ 2008-11-07 16:32 . 2010-04-06 03:52 2462720 c:\windows\system32\dllcache\WMVCore.dll
+ 2010-06-06 18:15 . 2006-10-18 20:47 1329152 c:\windows\system32\dllcache\WMSPDMOE.dll
+ 2010-06-06 18:15 . 2006-10-18 20:47 1117696 c:\windows\system32\dllcache\WMADMOE.dll
+ 2009-08-14 15:15 . 2010-12-31 14:04 1854976 c:\windows\system32\dllcache\win32k.sys
+ 2010-02-26 06:12 . 2010-12-20 23:52 1210880 c:\windows\system32\dllcache\urlmon.dll
- 2010-02-26 06:12 . 2010-09-10 05:52 1210880 c:\windows\system32\dllcache\urlmon.dll
+ 2008-06-17 19:02 . 2011-01-21 14:44 8466432 c:\windows\system32\dllcache\shell32.dll
- 2008-06-17 19:02 . 2010-07-27 06:30 8466432 c:\windows\system32\dllcache\shell32.dll
+ 2010-04-27 15:50 . 2010-12-09 15:14 2194944 c:\windows\system32\dllcache\ntoskrnl.exe
+ 2010-04-27 15:49 . 2010-12-09 15:14 2029056 c:\windows\system32\dllcache\ntkrpamp.exe
+ 2009-02-10 17:09 . 2010-12-09 15:14 2071552 c:\windows\system32\dllcache\ntkrnlpa.exe
+ 2010-04-27 15:49 . 2010-12-09 15:14 2150912 c:\windows\system32\dllcache\ntkrnlmp.exe
+ 2010-02-26 06:12 . 2010-12-20 23:52 5961216 c:\windows\system32\dllcache\mshtml.dll
+ 2010-07-31 19:16 . 2010-12-20 23:52 1991680 c:\windows\system32\dllcache\iertutil.dll
+ 2010-12-23 18:56 . 2010-12-23 18:56 3786240 c:\windows\Installer\1e9fc233.msi
+ 2011-02-10 17:40 . 2010-11-06 00:23 1210880 c:\windows\ie8updates\KB2482017-IE8\urlmon.dll
+ 2011-02-10 17:40 . 2010-11-06 00:23 5959168 c:\windows\ie8updates\KB2482017-IE8\mshtml.dll
+ 2011-02-10 17:40 . 2010-11-06 00:23 1991680 c:\windows\ie8updates\KB2482017-IE8\iertutil.dll
+ 2010-12-16 17:40 . 2010-09-10 05:52 1210880 c:\windows\ie8updates\KB2416400-IE8\urlmon.dll
+ 2010-12-16 17:40 . 2010-09-10 05:52 5957120 c:\windows\ie8updates\KB2416400-IE8\mshtml.dll
+ 2010-12-16 17:40 . 2010-09-10 05:52 1986560 c:\windows\ie8updates\KB2416400-IE8\iertutil.dll
+ 2010-04-27 15:50 . 2010-12-09 15:14 2194944 c:\windows\Driver Cache\i386\ntoskrnl.exe
+ 2010-04-27 15:49 . 2010-12-09 15:14 2029056 c:\windows\Driver Cache\i386\ntkrpamp.exe
+ 2009-02-10 17:09 . 2010-12-09 15:14 2071552 c:\windows\Driver Cache\i386\ntkrnlpa.exe
+ 2010-04-27 15:49 . 2010-12-09 15:14 2150912 c:\windows\Driver Cache\i386\ntkrnlmp.exe
+ 2010-10-21 19:04 . 2010-10-21 19:04 2827728 c:\windows\Downloaded Program Files\FP_AX_CAB_INSTALLER.exe
+ 2010-10-26 14:04 . 2010-10-26 14:04 1862272 c:\windows\$hf_mig$\KB2436673\SP3QFE\win32k.sys
+ 2010-12-15 18:49 . 2010-11-06 00:24 1211904 c:\windows\$hf_mig$\KB2416400-IE8\SP3QFE\urlmon.dll
+ 2010-12-15 18:49 . 2010-11-06 00:24 5960704 c:\windows\$hf_mig$\KB2416400-IE8\SP3QFE\mshtml.dll
+ 2010-12-15 18:49 . 2010-11-06 00:24 1992192 c:\windows\$hf_mig$\KB2416400-IE8\SP3QFE\iertutil.dll
+ 2010-06-10 20:37 . 2011-02-10 17:41 37443528 c:\windows\system32\MRT.exe
+ 2009-03-08 02:39 . 2010-12-20 10:52 11080704 c:\windows\system32\ieframe.dll
+ 2010-07-31 19:16 . 2010-12-20 10:52 11080704 c:\windows\system32\dllcache\ieframe.dll
+ 2011-02-10 17:40 . 2010-11-06 00:23 11080704 c:\windows\ie8updates\KB2482017-IE8\ieframe.dll
+ 2010-12-16 17:40 . 2010-09-10 05:52 11080192 c:\windows\ie8updates\KB2416400-IE8\ieframe.dll
+ 2010-11-06 04:54 . 2010-11-06 04:54 11082752 c:\windows\$hf_mig$\KB2416400-IE8\SP3QFE\ieframe.dll
.
-- Snímek resetován k současnému datu --
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"EPM-DM"="c:\acer\epm\epm-dm.exe" [2005-03-28 188416]
"ePowerManagement"="c:\acer\ePM\ePM.exe" [2005-03-24 2880512]
"avast5"="c:\progra~1\ALWILS~1\Avast5\avastUI.exe" [2010-06-28 2837864]
"SpywareTerminator"="c:\program files\Spyware Terminator\SpywareTerminatorShield.exe" [2010-04-13 2176512]
"IntelWireless"="c:\program files\Intel\Wireless\Bin\ifrmewrk.exe" [2004-10-15 385024]
"EOUApp"="c:\program files\Intel\Wireless\Bin\EOUWiz.exe" [2004-10-15 356352]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\IntelWireless]
2004-10-15 09:27 110592 ----a-w- c:\program files\Intel\Wireless\Bin\LgNotify.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^AVerQuick.lnk]
path=c:\documents and settings\All Users\Nabídka Start\Programy\Po spuštění\AVerQuick.lnk
backup=c:\windows\pss\AVerQuick.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^Microsoft Office.lnk]
path=c:\documents and settings\All Users\Nabídka Start\Programy\Po spuštění\Microsoft Office.lnk
backup=c:\windows\pss\Microsoft Office.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^Kuba^Nabídka Start^Programy^Po spuštění^1ciy1kp.exe]
path=c:\documents and settings\Kuba\Nabídka Start\Programy\Po spuštění\1ciy1kp.exe
backup=c:\windows\pss\1ciy1kp.exeStartup
[HKLM\~\startupfolder\C:^Documents and Settings^Kuba^Nabídka Start^Programy^Po spuštění^60hc0je.exe]
path=c:\documents and settings\Kuba\Nabídka Start\Programy\Po spuštění\60hc0je.exe
backup=c:\windows\pss\60hc0je.exeStartup
[HKLM\~\startupfolder\C:^Documents and Settings^Kuba^Nabídka Start^Programy^Po spuštění^70pfl66.exe]
path=c:\documents and settings\Kuba\Nabídka Start\Programy\Po spuštění\70pfl66.exe
backup=c:\windows\pss\70pfl66.exeStartup
[HKLM\~\startupfolder\C:^Documents and Settings^Kuba^Nabídka Start^Programy^Po spuštění^cyytkkfwwr.exe]
path=c:\documents and settings\Kuba\Nabídka Start\Programy\Po spuštění\cyytkkfwwr.exe
backup=c:\windows\pss\cyytkkfwwr.exeStartup
[HKLM\~\startupfolder\C:^Documents and Settings^Kuba^Nabídka Start^Programy^Po spuštění^e1awwriidu.exe]
path=c:\documents and settings\Kuba\Nabídka Start\Programy\Po spuštění\e1awwriidu.exe
backup=c:\windows\pss\e1awwriidu.exeStartup
[HKLM\~\startupfolder\C:^Documents and Settings^Kuba^Nabídka Start^Programy^Po spuštění^ee6qq6cc6.exe]
path=c:\documents and settings\Kuba\Nabídka Start\Programy\Po spuštění\ee6qq6cc6.exe
backup=c:\windows\pss\ee6qq6cc6.exeStartup
[HKLM\~\startupfolder\C:^Documents and Settings^Kuba^Nabídka Start^Programy^Po spuštění^g1cyytkk.exe]
path=c:\documents and settings\Kuba\Nabídka Start\Programy\Po spuštění\g1cyytkk.exe
backup=c:\windows\pss\g1cyytkk.exeStartup
[HKLM\~\startupfolder\C:^Documents and Settings^Kuba^Nabídka Start^Programy^Po spuštění^lbcxd870.exe]
path=c:\documents and settings\Kuba\Nabídka Start\Programy\Po spuštění\lbcxd870.exe
backup=c:\windows\pss\lbcxd870.exeStartup
[HKLM\~\startupfolder\C:^Documents and Settings^Kuba^Nabídka Start^Programy^Po spuštění^siojzavl.exe]
path=c:\documents and settings\Kuba\Nabídka Start\Programy\Po spuštění\siojzavl.exe
backup=c:\windows\pss\siojzavl.exeStartup
[HKLM\~\startupfolder\C:^Documents and Settings^Kuba^Nabídka Start^Programy^Po spuštění^vb5rniy1.exe]
path=c:\documents and settings\Kuba\Nabídka Start\Programy\Po spuštění\vb5rniy1.exe
backup=c:\windows\pss\vb5rniy1.exeStartup
[HKLM\~\startupfolder\C:^Documents and Settings^Kuba^Nabídka Start^Programy^Po spuštění^vvrhhdttpff.exe]
path=c:\documents and settings\Kuba\Nabídka Start\Programy\Po spuštění\vvrhhdttpff.exe
backup=c:\windows\pss\vvrhhdttpff.exeStartup
[HKLM\~\startupfolder\C:^Documents and Settings^Kuba^Nabídka Start^Programy^Po spuštění^vwrhidtu.exe]
path=c:\documents and settings\Kuba\Nabídka Start\Programy\Po spuštění\vwrhidtu.exe
backup=c:\windows\pss\vwrhidtu.exeStartup
[HKLM\~\startupfolder\C:^Documents and Settings^Kuba^Nabídka Start^Programy^Po spuštění^w1soojaavm.exe]
path=c:\documents and settings\Kuba\Nabídka Start\Programy\Po spuštění\w1soojaavm.exe
backup=c:\windows\pss\w1soojaavm.exeStartup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaMServer]
c:\program files\Common Files\Nokia\MPlatform\NokiaMServer [X]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\acerWireless]
2004-06-09 09:15 417792 ----a-w- c:\program files\acer\Wireless\Utility\wlanutil.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ACU]
2005-01-31 06:05 253952 ----a-w- c:\program files\Atheros\ACU.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2010-09-21 18:37 932288 ----a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2009-12-21 23:57 35760 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATIPTA]
2005-04-28 19:05 344064 ----a-w- c:\program files\ATI Technologies\ATI Control Panel\atiptaxx.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTFMON.EXE]
2008-04-14 03:22 15360 ----a-w- c:\windows\system32\ctfmon.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EOUApp]
2004-10-15 09:31 356352 ----a-w- c:\program files\Intel\Wireless\Bin\EOUWiz.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ICQ]
2011-01-05 08:18 133432 ----a-w- c:\program files\ICQ7.1\ICQ.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IntelWireless]
2004-10-15 09:27 385024 ----a-w- c:\program files\Intel\Wireless\Bin\iFrmewrk.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LManager]
2005-09-05 09:43 319488 ----a-w- c:\program files\Launch Manager\QtZgAcer.EXE
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes' Anti-Malware]
2010-12-20 17:08 443728 ----a-w- c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSConfig]
2008-04-14 03:22 171008 ----a-w- c:\windows\PCHEALTH\HELPCTR\Binaries\msconfig.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
2008-04-14 03:22 1695232 ------w- c:\program files\Messenger\msmsgs.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaOviSuite2]
2010-09-02 09:26 672632 ----a-w- c:\program files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PC Suite Tray]
2009-11-11 08:57 1451520 ----a-w- c:\program files\Nokia\Nokia PC Suite 7\PCSuite.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\pdfFactory Pro Dispatcher v3]
2009-03-24 10:45 606208 ----a-w- c:\windows\system32\spool\drivers\w32x86\3\fppdis3a.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpybotSD TeaTimer]
2009-03-05 15:07 2260480 --sha-r- c:\program files\Spybot - Search & Destroy\TeaTimer.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpywareTerminatorUpdate]
2010-04-13 20:02 3037696 ----a-w- c:\program files\Spyware Terminator\SpywareTerminatorUpdate.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"ServiceLayer"=3 (0x3)
"S24EventMonitor"=2 (0x2)
"PnkBstrB"=2 (0x2)
"PnkBstrA"=2 (0x2)
"OwnershipProtocol"=2 (0x2)
"gupdate"=2 (0x2)
"EvtEng"=2 (0x2)
"avast! Mail Scanner"=3 (0x3)
"Ati HotKey Poller"=2 (0x2)
"ACS"=2 (0x2)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"c:\\Program Files\\Spyware Terminator\\SpywareTerminatorUpdate.exe"=
"c:\\Program Files\\ICQ7.1\\ICQ.exe"=
"c:\\Program Files\\ICQ7.1\\aolload.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Google\\Google Earth\\client\\googleearth.exe"=
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [13.4.2010 20:43 165456]
R1 sp_rsdrv2;Spyware Terminator Driver 2;c:\windows\system32\drivers\sp_rsdrv2.sys [13.4.2010 21:02 142592]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [13.4.2010 20:43 17744]
S3 AVerHybrid;AVerMedia Hybrid Tuner (NTSC/PAL/SECAM/DVB-T/FM);c:\windows\system32\drivers\averhbtv.sys [14.4.2010 21:05 302848]
S4 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [13.4.2010 21:12 136176]
.
Obsah adresáře 'Naplánované úlohy'
2011-02-27 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-04-13 20:11]
2011-02-27 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-04-13 20:11]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://
www.crawler.com/homepage.aspx?tbid=60446
uInternet Settings,ProxyServer = http=127.0.0.1:53455
IE: Crawler Search - tbr:iemenu
IE: {{71BFC818-0CED-42D6-9C87-5142918957EE} - c:\program files\ICQ7.1\ICQ.exe
FF - ProfilePath - c:\documents and settings\Kuba\Data aplikací\Mozilla\Firefox\Profiles\6un76x5m.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://
www.centrum.cz/
FF - prefs.js: keyword.URL - hxxp://
www.crawler.com/search/dispatcher.aspx? ... 60446&qkw=
FF - prefs.js: network.proxy.type - 4
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: Battlefield Heroes Updater:
battlefieldheroespatcher@ea.com - %profile%\extensions\
battlefieldheroespatcher@ea.com
FF - Ext: Google Toolbar for Firefox: {3112ca9c-de6d-4884-a869-9855de68056c} - %profile%\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
FF - Ext: Crawler Toolbar: {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - c:\program files\Crawler\firefox
FF - Ext: Firefox Synchronisation Extension: {A27F3FEF-1113-4cfb-A032-8E12D7D8EE70} - c:\program files\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
MSConfigStartUp-FlashPlayerUpdate - c:\windows\system32\Macromed\Flash\NPSWF32_FlashUtil.exe
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2011-02-27 22:21
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\S-1-5-21-602162358-1547161642-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{AAF5C051-4D4A-C0AC-1299-F96ABDD814D7}*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(968)
c:\windows\system32\Ati2evxx.dll
c:\program files\Intel\Wireless\Bin\LgNotify.dll
- - - - - - - > 'explorer.exe'(2112)
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
Celkový čas: 2011-02-27 22:24:16
ComboFix-quarantined-files.txt 2011-02-27 21:24
ComboFix2.txt 2010-12-12 22:19
ComboFix3.txt 2010-11-14 16:56
ComboFix4.txt 2010-11-14 12:21
ComboFix5.txt 2011-02-27 21:15
Před spuštěním: Volných bajtů: 24 850 182 144
Po spuštění: Volných bajtů: 24 831 049 728
- - End Of File - - A1EE223CDE1B41BCDC9BC175A6040BEA