Stránka 1 z 1

Win32 Heur

Napsal: 14 bře 2011 19:33
od jiri123
Zdravicko, avg mi nasel virsu Win32 Heur v jednom spoustecim souboru k hre...podotikam, ze tu hru mam nainstalovanou uz vice jak rok a kupodivu legalne....s pce zadne problemy nejsou, ale prikladam log (cast 1)

Logfile of random's system information tool 1.07 (written by random/random)
Run by JM at 2011-03-14 19:30:26
Microsoft Windows 7 Home Premium Service Pack 2
System drive C: has 24 GB (8%) free of 291 GB
Total RAM: 3950 MB (54% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:30:29, on 14.3.2011
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v8.00 (8.00.7601.17514)
Boot mode: Normal

Running processes:
C:\Program Files\Sony\VAIO Care\VCSpt.exe
C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\SONY\ISB Utility\ISBMgr.exe
C:\Program Files (x86)\SONY\PMB\PMBVolumeWatcher.exe
C:\Program Files (x86)\SONY\Marketing Tools\MarketingTools.exe
C:\Program Files (x86)\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files (x86)\Common Files\Nokia\MPlatform\NokiaMServer.exe
C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe
C:\Program Files (x86)\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe
C:\totalcmd\TOTALCMD.EXE
C:\Program Files\Sony\VAIO Care\listener.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Internet Explorer\IELowutil.exe
C:\Program Files (x86)\QIP\qip.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files (x86)\AVG\AVG9\avgtray.exe
C:\Users\JM\Desktop\Programy\RSIT.exe
C:\Program Files (x86)\trend micro\JM.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: QIPBHO Class - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Users\JM\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG9\avgssie.dll
O2 - BHO: QipLI - {6B5863A0-C43F-4C0A-982B-CC0E9125783F} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: QIPBHO - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Users\JM\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [ISBMgr.exe] "C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe"
O4 - HKLM\..\Run: [PMBVolumeWatcher] C:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe
O4 - HKLM\..\Run: [MarketingTools] C:\Program Files (x86)\Sony\Marketing Tools\MarketingTools.exe
O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~2\AVG\AVG9\avgtray.exe
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files (x86)\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [NokiaMServer] C:\Program Files (x86)\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup
O4 - HKLM\..\Run: [NokiaMusic FastStart] "C:\Program Files (x86)\Nokia\Ovi Player\NokiaOviPlayer.exe" /command:faststart
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe" -osboot
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKCU\..\Run: [ISUSPM Startup] "C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe" -startup
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office10\EXCEL.EXE/3000
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files (x86)\ICQ7.2\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files (x86)\ICQ7.2\ICQ.exe
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Add to Evernote - {E0B8C461-F8FB-49b4-8373-FE32E92528A6} - C:\Program Files (x86)\Evernote\Evernote3.5\enbar.dll
O9 - Extra 'Tools' menuitem: Add to Evernote - {E0B8C461-F8FB-49b4-8373-FE32E92528A6} - C:\Program Files (x86)\Evernote\Evernote3.5\enbar.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG9\avgpp.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~2\Google\GOOGLE~1\GO36F4~1.DLL
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AVG Free E-mail Scanner (avg9emc) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG9\avgemc.exe
O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG9\avgwdsvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Desktop Manager 5.9.1005.12335 (GoogleDesktopManager-051210-111108) - Google - C:\Program Files (x86)\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PMBDeviceInfoProvider - Sony Corporation - C:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Roxio UPnP Renderer 10 - Sonic Solutions - C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe
O23 - Service: Roxio Upnp Server 10 - Sonic Solutions - C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: VAIO Care Performance Service (SampleCollector) - Sony Corporation - C:\Program Files\Sony\VAIO Care\VCPerfService.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: VAIO Media plus Content Importer (SOHCImp) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe
O23 - Service: VAIO Media plus Database Manager (SOHDBSvr) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDBSvr.exe
O23 - Service: VAIO Media plus Digital Media Server (SOHDms) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
O23 - Service: VAIO Media plus Device Searcher (SOHDs) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
O23 - Service: VAIO Media plus Playlist Manager (SOHPlMgr) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHPlMgr.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: STATISTICA Version Manager - Unknown owner - C:\Program Files (x86)\StatSoft\STATISTICA Version Manager\rgSTr.exe
O23 - Service: CamMonitor (uCamMonitor) - ArcSoft, Inc. - C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: VAIO Entertainment TV Device Arbitration Service - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzHardwareResourceManager\VzHardwareResourceManager\VzHardwareResourceManager.exe
O23 - Service: VAIO Event Service - Sony Corporation - C:\Program Files (x86)\SONY\VAIO Event Service\VESMgr.exe
O23 - Service: VAIO Power Management - Sony Corporation - C:\Program Files\Sony\VAIO Power Management\SPMService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: VAIO Content Folder Watcher (VCFw) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe
O23 - Service: VAIO Content Metadata Intelligent Analyzing Manager (VcmIAlzMgr) - Sony Corporation - C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe
O23 - Service: VAIO Content Metadata Intelligent Network Service Manager (VcmINSMgr) - Sony Corporation - C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe
O23 - Service: VAIO Content Metadata XML Interface (VcmXmlIfHelper) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: VSNService - Sony Corporation - C:\Program Files\Sony\VAIO Smart Network\VSNService.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: VUAgent - Sony Corporation - C:\Program Files\Sony\VAIO Update 5\VUAgent.exe
O23 - Service: VAIO Entertainment Database Service (VzCdbSvc) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 15363 bytes

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll [2011-03-11 381656]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files (x86)\AVG\AVG9\avgssie.dll [2010-11-24 1623392]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6B5863A0-C43F-4C0A-982B-CC0E9125783F}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}]
QIPBHO Class - C:\Users\JM\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll [2009-07-14 150768]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Plug-In - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-11-22 1242504]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2010-08-04 41760]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2009-11-21 284696]
"ISBMgr.exe"=C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe [2009-08-26 320880]
"PMBVolumeWatcher"=C:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe [2009-10-24 597792]
"MarketingTools"=C:\Program Files (x86)\Sony\Marketing Tools\MarketingTools.exe [2010-02-19 26624]
"AVG9_TRAY"=C:\PROGRA~2\AVG\AVG9\avgtray.exe [2011-03-14 2071904]
"Google Desktop Search"=C:\Program Files (x86)\Google\Google Desktop Search\GoogleDesktop.exe [2010-06-17 30192]
"NokiaMServer"=C:\Program Files (x86)\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup []
"NokiaMusic FastStart"=C:\Program Files (x86)\Nokia\Ovi Player\NokiaOviPlayer.exe [2010-03-04 2192672]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2010-05-14 248552]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2011-01-31 35760]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-20 932288]
"QuickTime Task"=C:\Program Files (x86)\QuickTime\QTTask.exe [2010-09-08 421888]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-09-20 102400]
"TkBellExe"=C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe [2011-03-11 273544]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"PC Suite Tray"=C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [2010-05-14 1479680]
"ISUSPM Startup"=C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe [2005-08-11 249856]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2011-01-26 15026056]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files (x86)\WIDCOMM\Bluetooth Software\BTTray.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="C:\PROGRA~2\Google\GOOGLE~1\GO36F4~1.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\VESWinlogon]
C:\Windows\system32\VESWinlogon.dll [2009-12-01 98304]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppInfo]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BFE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\bowser]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dfsc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dot3Svc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Eaphost]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EFS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\IKEEXT]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\KeyIso]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcmscsvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MpfService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSDrv]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb10]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb20]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NativeWifiP]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ndiscap]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\netprofm]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NlaSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Nsi]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nsiproxy.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NTDS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PolicyAgent]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Power]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ProfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdbss]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdpencdd.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcEptMapper]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sacsvr]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCardSvr]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SWPRV]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TabletInputService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TBS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TrustedInstaller]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VaultSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vmms]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgr.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgrx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wlansvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=
"NoActiveDesktopChanges"=
"ForceActiveDesktopOn"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{0b282c50-cbd9-11df-a8b8-5442490997b7}]
shell\AutoRun\command - G:\Launcher.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{86190fbc-60c1-11df-9a63-5442490997b7}]
shell\AutoRun\command - G:\Launcher.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{c39d653f-610f-11df-a4df-5442490997b7}]
shell\AutoRun\command - G:\Launcher.exe

Re: Win32 Heur

Napsal: 14 bře 2011 19:33
od jiri123
======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2011-03-14 18:53:37 ----HD---- C:\ProgramData\Common Files
2011-03-11 20:56:39 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2011-03-11 18:07:30 ----D---- C:\Program Files (x86)\Common Files\xing shared
2011-03-11 18:07:18 ----A---- C:\Windows\SysWOW64\rmoc3260.dll
2011-03-11 18:07:13 ----A---- C:\Windows\SysWOW64\pndx5032.dll
2011-03-11 18:07:13 ----A---- C:\Windows\SysWOW64\pndx5016.dll
2011-03-11 18:07:12 ----A---- C:\Windows\SysWOW64\pncrt.dll
2011-03-11 18:07:07 ----D---- C:\Program Files (x86)\Real
2011-03-11 18:07:05 ----D---- C:\ProgramData\Real
2011-03-11 18:07:03 ----D---- C:\Users\JM\AppData\Roaming\Real
2011-03-11 12:21:04 ----D---- C:\ProgramData\Rapidshare Search Tool
2011-03-11 12:21:04 ----D---- C:\Program Files (x86)\MP Software
2011-03-09 21:23:44 ----D---- C:\5a02b512072d5956158619
2011-03-09 08:34:28 ----A---- C:\Windows\SysWOW64\DWrite.dll
2011-03-09 08:34:27 ----A---- C:\Windows\SysWOW64\d2d1.dll
2011-03-09 08:34:26 ----A---- C:\Windows\SysWOW64\CPFilters.dll
2011-03-09 08:34:25 ----A---- C:\Windows\SysWOW64\sbe.dll
2011-03-09 08:34:25 ----A---- C:\Windows\SysWOW64\EncDec.dll
2011-03-06 10:34:19 ----D---- C:\Program Files (x86)\Common Files\Skype
2011-03-05 10:43:50 ----AD---- C:\ProgramData\TEMP
2011-03-05 10:42:48 ----D---- C:\Program Files (x86)\Common Files\YDP
2011-03-05 10:42:47 ----D---- C:\Users\JM\AppData\Roaming\langmaster.sz
2011-02-26 14:52:37 ----D---- C:\Users\JM\AppData\Roaming\Softinterface, Inc
2011-02-26 14:52:30 ----A---- C:\Windows\SysWOW64\tx13_wnd.dll
2011-02-26 14:52:30 ----A---- C:\Windows\SysWOW64\tx13_tls.dll
2011-02-26 14:52:30 ----A---- C:\Windows\SysWOW64\tx13_rtf.dll
2011-02-26 14:52:30 ----A---- C:\Windows\SysWOW64\tx13_pdf.dll
2011-02-26 14:52:30 ----A---- C:\Windows\SysWOW64\tx13_obj.dll
2011-02-26 14:52:30 ----A---- C:\Windows\SysWOW64\tx13_ic.ini
2011-02-26 14:52:30 ----A---- C:\Windows\SysWOW64\tx13_ic.dll
2011-02-26 14:52:30 ----A---- C:\Windows\SysWOW64\tx13_htm.dll
2011-02-26 14:52:30 ----A---- C:\Windows\SysWOW64\tx13_doc.dll
2011-02-26 14:52:30 ----A---- C:\Windows\SysWOW64\tx13_css.dll
2011-02-26 14:52:30 ----A---- C:\Windows\SysWOW64\tx13.dll
2011-02-26 14:52:30 ----A---- C:\Windows\SysWOW64\SARzilla.dll
2011-02-26 14:52:30 ----A---- C:\Windows\SysWOW64\RegisterExe.exe
2011-02-26 14:52:30 ----A---- C:\Windows\SysWOW64\DVM.dll
2011-02-26 14:52:30 ----A---- C:\Windows\SysWOW64\C-XLS.dll
2011-02-26 14:52:30 ----A---- C:\Windows\SysWOW64\CSVSpecialProcessing.dll
2011-02-26 14:52:29 ----D---- C:\Program Files (x86)\Softinterface, Inc
2011-02-26 13:56:35 ----D---- C:\Users\JM\AppData\Roaming\gtk-2.0
2011-02-26 13:55:37 ----D---- C:\Program Files (x86)\gretl
2011-02-26 13:51:32 ----D---- C:\Users\JM\AppData\Roaming\gretl
2011-02-23 18:28:46 ----A---- C:\Windows\SysWOW64\dfshim.dll
2011-02-23 18:28:37 ----A---- C:\Windows\SysWOW64\mstscax.dll
2011-02-23 18:28:35 ----A---- C:\Windows\SysWOW64\d3d10warp.dll
2011-02-23 18:28:34 ----A---- C:\Windows\SysWOW64\mfc40u.dll
2011-02-23 18:28:34 ----A---- C:\Windows\SysWOW64\mfc40.dll
2011-02-23 18:28:27 ----A---- C:\Windows\SysWOW64\shell32.dll
2011-02-23 18:28:27 ----A---- C:\Windows\SysWOW64\secproc_isv.dll
2011-02-23 18:28:26 ----A---- C:\Windows\SysWOW64\RMActivate_isv.exe
2011-02-23 18:28:25 ----A---- C:\Windows\SysWOW64\secproc.dll
2011-02-23 18:28:25 ----A---- C:\Windows\SysWOW64\RMActivate.exe
2011-02-23 18:28:25 ----A---- C:\Windows\SysWOW64\ieframe.dll
2011-02-23 18:28:23 ----A---- C:\Windows\SysWOW64\mscoree.dll
2011-02-23 18:28:22 ----A---- C:\Windows\SysWOW64\mf.dll
2011-02-23 18:28:21 ----A---- C:\Windows\SysWOW64\ntkrnlpa.exe
2011-02-23 18:28:21 ----A---- C:\Windows\SysWOW64\iertutil.dll
2011-02-23 18:28:21 ----A---- C:\Windows\SysWOW64\CertEnroll.dll
2011-02-23 18:28:20 ----A---- C:\Windows\SysWOW64\wmp.dll
2011-02-23 18:28:20 ----A---- C:\Windows\SysWOW64\mssrch.dll
2011-02-23 18:28:20 ----A---- C:\Windows\explorer.exe
2011-02-23 18:28:19 ----A---- C:\Windows\SysWOW64\PresentationHostProxy.dll
2011-02-23 18:28:19 ----A---- C:\Windows\SysWOW64\PresentationHost.exe
2011-02-23 18:28:19 ----A---- C:\Windows\SysWOW64\esent.dll
2011-02-23 18:28:18 ----A---- C:\Windows\SysWOW64\ntoskrnl.exe
2011-02-23 18:28:17 ----A---- C:\Windows\SysWOW64\tquery.dll
2011-02-23 18:28:16 ----A---- C:\Windows\SysWOW64\RacEngn.dll
2011-02-23 18:28:15 ----A---- C:\Windows\SysWOW64\AuthFWSnapin.dll
2011-02-23 18:28:12 ----A---- C:\Windows\SysWOW64\wininet.dll
2011-02-23 18:28:11 ----A---- C:\Windows\SysWOW64\ole32.dll
2011-02-23 18:28:11 ----A---- C:\Windows\SysWOW64\ExplorerFrame.dll
2011-02-23 18:28:10 ----A---- C:\Windows\SysWOW64\urlmon.dll
2011-02-23 18:28:09 ----A---- C:\Windows\SysWOW64\vssapi.dll
2011-02-23 18:28:09 ----A---- C:\Windows\SysWOW64\SearchFolder.dll
2011-02-23 18:28:09 ----A---- C:\Windows\SysWOW64\d3d9.dll
2011-02-23 18:28:08 ----A---- C:\Windows\SysWOW64\taskschd.dll
2011-02-23 18:28:08 ----A---- C:\Windows\SysWOW64\explorer.exe
2011-02-23 18:28:07 ----A---- C:\Windows\SysWOW64\mstsc.exe
2011-02-23 18:28:07 ----A---- C:\Windows\SysWOW64\crypt32.dll
2011-02-23 18:28:06 ----A---- C:\Windows\SysWOW64\wer.dll
2011-02-23 18:28:06 ----A---- C:\Windows\SysWOW64\ntdll.dll
2011-02-23 18:28:05 ----A---- C:\Windows\SysWOW64\msxml6.dll
2011-02-23 18:28:05 ----A---- C:\Windows\SysWOW64\dwmcore.dll
2011-02-23 18:28:05 ----A---- C:\Windows\SysWOW64\certcli.dll
2011-02-23 18:28:04 ----A---- C:\Windows\SysWOW64\odbc32.dll
2011-02-23 18:28:03 ----A---- C:\Windows\SysWOW64\tcpmonui.dll
2011-02-23 18:28:03 ----A---- C:\Windows\SysWOW64\quartz.dll
2011-02-23 18:28:03 ----A---- C:\Windows\SysWOW64\mstime.dll
2011-02-23 18:28:02 ----A---- C:\Windows\SysWOW64\TSWorkspace.dll
2011-02-23 18:28:02 ----A---- C:\Windows\SysWOW64\tsmf.dll
2011-02-23 18:28:02 ----A---- C:\Windows\SysWOW64\msfeeds.dll
2011-02-23 18:28:02 ----A---- C:\Windows\SysWOW64\iedkcs32.dll
2011-02-23 18:28:02 ----A---- C:\Windows\SysWOW64\dot3api.dll
2011-02-23 18:28:01 ----A---- C:\Windows\SysWOW64\winhttp.dll
2011-02-23 18:28:01 ----A---- C:\Windows\SysWOW64\setupapi.dll
2011-02-23 18:28:01 ----A---- C:\Windows\SysWOW64\MSVidCtl.dll
2011-02-23 18:28:01 ----A---- C:\Windows\SysWOW64\dbgeng.dll
2011-02-23 18:28:01 ----A---- C:\Windows\SysWOW64\apphelp.dll
2011-02-23 18:28:00 ----A---- C:\Windows\SysWOW64\netlogon.dll
2011-02-23 18:27:59 ----A---- C:\Windows\SysWOW64\WMVDECOD.DLL
2011-02-23 18:27:59 ----A---- C:\Windows\SysWOW64\WindowsCodecs.dll
2011-02-23 18:27:59 ----A---- C:\Windows\SysWOW64\webio.dll
2011-02-23 18:27:59 ----A---- C:\Windows\SysWOW64\netcfgx.dll
2011-02-23 18:27:59 ----A---- C:\Windows\SysWOW64\d3d11.dll
2011-02-23 18:27:58 ----A---- C:\Windows\SysWOW64\WsmSvc.dll
2011-02-23 18:27:58 ----A---- C:\Windows\SysWOW64\upnp.dll
2011-02-23 18:27:58 ----A---- C:\Windows\SysWOW64\Query.dll
2011-02-23 18:27:58 ----A---- C:\Windows\SysWOW64\advapi32.dll
2011-02-23 18:27:57 ----A---- C:\Windows\SysWOW64\schannel.dll
2011-02-23 18:27:57 ----A---- C:\Windows\SysWOW64\netfxperf.dll
2011-02-23 18:27:57 ----A---- C:\Windows\SysWOW64\mmcndmgr.dll
2011-02-23 18:27:57 ----A---- C:\Windows\SysWOW64\DShowRdpFilter.dll
2011-02-23 18:27:56 ----A---- C:\Windows\SysWOW64\msv1_0.dll
2011-02-23 18:27:56 ----A---- C:\Windows\SysWOW64\msdrm.dll
2011-02-23 18:27:56 ----A---- C:\Windows\SysWOW64\imapi2fs.dll
2011-02-23 18:27:56 ----A---- C:\Windows\SysWOW64\authui.dll
2011-02-23 18:27:55 ----A---- C:\Windows\SysWOW64\usp10.dll
2011-02-23 18:27:55 ----A---- C:\Windows\SysWOW64\shlwapi.dll
2011-02-23 18:27:55 ----A---- C:\Windows\SysWOW64\SessEnv.dll
2011-02-23 18:27:55 ----A---- C:\Windows\SysWOW64\PortableDeviceApi.dll
2011-02-23 18:27:55 ----A---- C:\Windows\SysWOW64\mcbuilder.exe
2011-02-23 18:27:54 ----A---- C:\Windows\SysWOW64\userenv.dll
2011-02-23 18:27:54 ----A---- C:\Windows\SysWOW64\kernel32.dll
2011-02-23 18:27:54 ----A---- C:\Windows\SysWOW64\certmgr.dll
2011-02-23 18:27:53 ----A---- C:\Windows\SysWOW64\xpsservices.dll
2011-02-23 18:27:53 ----A---- C:\Windows\SysWOW64\WebClnt.dll
2011-02-23 18:27:53 ----A---- C:\Windows\SysWOW64\d3d10_1core.dll
2011-02-23 18:27:53 ----A---- C:\Windows\SysWOW64\comdlg32.dll
2011-02-23 18:27:52 ----A---- C:\Windows\SysWOW64\cmd.exe
2011-02-23 18:27:51 ----A---- C:\Windows\SysWOW64\dnsapi.dll
2011-02-23 18:27:50 ----A---- C:\Windows\SysWOW64\Wldap32.dll
2011-02-23 18:27:50 ----A---- C:\Windows\SysWOW64\win32spl.dll
2011-02-23 18:27:50 ----A---- C:\Windows\SysWOW64\propsys.dll
2011-02-23 18:27:50 ----A---- C:\Windows\SysWOW64\mfds.dll
2011-02-23 18:27:50 ----A---- C:\Windows\SysWOW64\framedynos.dll
2011-02-23 18:27:49 ----A---- C:\Windows\SysWOW64\user32.dll
2011-02-23 18:27:49 ----A---- C:\Windows\SysWOW64\ncsi.dll
2011-02-23 18:27:48 ----A---- C:\Windows\SysWOW64\azroles.dll
2011-02-23 18:27:47 ----A---- C:\Windows\SysWOW64\themeui.dll
2011-02-23 18:27:47 ----A---- C:\Windows\SysWOW64\taskeng.exe
2011-02-23 18:27:47 ----A---- C:\Windows\SysWOW64\spp.dll
2011-02-23 18:27:47 ----A---- C:\Windows\SysWOW64\mswsock.dll
2011-02-23 18:27:47 ----A---- C:\Windows\SysWOW64\inetcomm.dll
2011-02-23 18:27:47 ----A---- C:\Windows\SysWOW64\dhcpcore.dll
2011-02-23 18:27:47 ----A---- C:\Windows\SysWOW64\credui.dll
2011-02-23 18:27:47 ----A---- C:\Windows\splwow64.exe
2011-02-23 18:27:45 ----A---- C:\Windows\SysWOW64\wintrust.dll
2011-02-23 18:27:45 ----A---- C:\Windows\SysWOW64\taskcomp.dll
2011-02-23 18:27:45 ----A---- C:\Windows\SysWOW64\NaturalLanguage6.dll
2011-02-23 18:27:45 ----A---- C:\Windows\SysWOW64\msxml3.dll
2011-02-23 18:27:45 ----A---- C:\Windows\SysWOW64\mfreadwrite.dll
2011-02-23 18:27:45 ----A---- C:\Windows\SysWOW64\dxgi.dll
2011-02-23 18:27:45 ----A---- C:\Windows\SysWOW64\dbghelp.dll
2011-02-23 18:27:45 ----A---- C:\Windows\SysWOW64\basecsp.dll
2011-02-23 18:27:44 ----A---- C:\Windows\SysWOW64\WinSATAPI.dll
2011-02-23 18:27:44 ----A---- C:\Windows\SysWOW64\evr.dll
2011-02-23 18:27:44 ----A---- C:\Windows\SysWOW64\calc.exe
2011-02-23 18:27:43 ----A---- C:\Windows\SysWOW64\UIRibbon.dll
2011-02-23 18:27:43 ----A---- C:\Windows\SysWOW64\sqlsrv32.dll
2011-02-23 18:27:42 ----A---- C:\Windows\SysWOW64\ws2_32.dll
2011-02-23 18:27:42 ----A---- C:\Windows\SysWOW64\sxs.dll
2011-02-23 18:27:42 ----A---- C:\Windows\SysWOW64\stobject.dll
2011-02-23 18:27:42 ----A---- C:\Windows\SysWOW64\netshell.dll
2011-02-23 18:27:42 ----A---- C:\Windows\SysWOW64\ie4uinit.exe
2011-02-23 18:27:42 ----A---- C:\Windows\SysWOW64\cryptsvc.dll
2011-02-23 18:27:41 ----A---- C:\Windows\SysWOW64\prncache.dll
2011-02-23 18:27:41 ----A---- C:\Windows\SysWOW64\gdi32.dll
2011-02-23 18:27:41 ----A---- C:\Windows\SysWOW64\comctl32.dll
2011-02-23 18:27:39 ----A---- C:\Windows\SysWOW64\WSDApi.dll
2011-02-23 18:27:39 ----A---- C:\Windows\SysWOW64\wmpeffects.dll
2011-02-23 18:27:39 ----A---- C:\Windows\SysWOW64\rpchttp.dll
2011-02-23 18:27:39 ----A---- C:\Windows\SysWOW64\printui.dll
2011-02-23 18:27:39 ----A---- C:\Windows\SysWOW64\net1.exe
2011-02-23 18:27:39 ----A---- C:\Windows\SysWOW64\msi.dll
2011-02-23 18:27:38 ----A---- C:\Windows\SysWOW64\scansetting.dll
2011-02-23 18:27:38 ----A---- C:\Windows\SysWOW64\mfc42u.dll
2011-02-23 18:27:37 ----A---- C:\Windows\SysWOW64\WMVCORE.DLL
2011-02-23 18:27:37 ----A---- C:\Windows\SysWOW64\wlangpui.dll
2011-02-23 18:27:37 ----A---- C:\Windows\SysWOW64\MMDevAPI.dll
2011-02-23 18:27:37 ----A---- C:\Windows\SysWOW64\davclnt.dll
2011-02-23 18:27:37 ----A---- C:\Windows\SysWOW64\aaclient.dll
2011-02-23 18:27:36 ----A---- C:\Windows\SysWOW64\QSHVHOST.DLL
2011-02-23 18:27:35 ----A---- C:\Windows\SysWOW64\wpdshext.dll
2011-02-23 18:27:35 ----A---- C:\Windows\SysWOW64\webservices.dll
2011-02-23 18:27:35 ----A---- C:\Windows\SysWOW64\t2embed.dll
2011-02-23 18:27:35 ----A---- C:\Windows\SysWOW64\SyncCenter.dll
2011-02-23 18:27:35 ----A---- C:\Windows\SysWOW64\pnidui.dll
2011-02-23 18:27:35 ----A---- C:\Windows\SysWOW64\netdiagfx.dll
2011-02-23 18:27:35 ----A---- C:\Windows\SysWOW64\fde.dll
2011-02-23 18:27:34 ----A---- C:\Windows\SysWOW64\wuapi.dll
2011-02-23 18:27:34 ----A---- C:\Windows\SysWOW64\wscapi.dll
2011-02-23 18:27:34 ----A---- C:\Windows\SysWOW64\WinSCard.dll
2011-02-23 18:27:34 ----A---- C:\Windows\SysWOW64\pla.dll
2011-02-23 18:27:34 ----A---- C:\Windows\SysWOW64\msasn1.dll
2011-02-23 18:27:33 ----A---- C:\Windows\SysWOW64\winsta.dll
2011-02-23 18:27:33 ----A---- C:\Windows\SysWOW64\rdpcore.dll
2011-02-23 18:27:33 ----A---- C:\Windows\SysWOW64\MSMPEG2ENC.DLL
2011-02-23 18:27:32 ----A---- C:\Windows\SysWOW64\iepeers.dll
2011-02-23 18:27:30 ----A---- C:\Windows\SysWOW64\ntshrui.dll
2011-02-23 18:27:30 ----A---- C:\Windows\SysWOW64\imapi2.dll
2011-02-23 18:27:30 ----A---- C:\Windows\SysWOW64\gameux.dll
2011-02-23 18:27:30 ----A---- C:\Windows\SysWOW64\DXPTaskRingtone.dll
2011-02-23 18:27:29 ----A---- C:\Windows\SysWOW64\WMPEncEn.dll
2011-02-23 18:27:29 ----A---- C:\Windows\SysWOW64\winmm.dll
2011-02-23 18:27:29 ----A---- C:\Windows\SysWOW64\shsvcs.dll
2011-02-23 18:27:29 ----A---- C:\Windows\SysWOW64\onex.dll
2011-02-23 18:27:29 ----A---- C:\Windows\SysWOW64\mssvp.dll
2011-02-23 18:27:28 ----A---- C:\Windows\SysWOW64\samcli.dll
2011-02-23 18:27:28 ----A---- C:\Windows\SysWOW64\proquota.exe
2011-02-23 18:27:28 ----A---- C:\Windows\SysWOW64\netiohlp.dll
2011-02-23 18:27:28 ----A---- C:\Windows\SysWOW64\IPHLPAPI.DLL
2011-02-23 18:27:28 ----A---- C:\Windows\SysWOW64\hbaapi.dll
2011-02-23 18:27:28 ----A---- C:\Windows\SysWOW64\autochk.exe
2011-02-23 18:27:28 ----A---- C:\Windows\SysWOW64\autofmt.exe
2011-02-23 18:27:27 ----A---- C:\Windows\SysWOW64\thumbcache.dll
2011-02-23 18:27:27 ----A---- C:\Windows\SysWOW64\tcpipcfg.dll
2011-02-23 18:27:27 ----A---- C:\Windows\SysWOW64\srchadmin.dll
2011-02-23 18:27:27 ----A---- C:\Windows\SysWOW64\schtasks.exe
2011-02-23 18:27:27 ----A---- C:\Windows\SysWOW64\regapi.dll
2011-02-23 18:27:27 ----A---- C:\Windows\SysWOW64\powercpl.dll
2011-02-23 18:27:27 ----A---- C:\Windows\SysWOW64\msutb.dll
2011-02-23 18:27:27 ----A---- C:\Windows\SysWOW64\msinfo32.exe
2011-02-23 18:27:27 ----A---- C:\Windows\SysWOW64\mimefilt.dll
2011-02-23 18:27:27 ----A---- C:\Windows\SysWOW64\ipsmsnap.dll
2011-02-23 18:27:27 ----A---- C:\Windows\SysWOW64\eapphost.dll
2011-02-23 18:27:27 ----A---- C:\Windows\SysWOW64\autoconv.exe
2011-02-23 18:27:27 ----A---- C:\Windows\SysWOW64\AudioSes.dll
2011-02-23 18:27:26 ----A---- C:\Windows\SysWOW64\wcncsvc.dll
2011-02-23 18:27:26 ----A---- C:\Windows\SysWOW64\QAGENT.DLL
2011-02-23 18:27:26 ----A---- C:\Windows\SysWOW64\msihnd.dll
2011-02-23 18:27:26 ----A---- C:\Windows\SysWOW64\mscorier.dll
2011-02-23 18:27:26 ----A---- C:\Windows\SysWOW64\framedyn.dll
2011-02-23 18:27:26 ----A---- C:\Windows\SysWOW64\AuxiliaryDisplayCpl.dll
2011-02-23 18:27:25 ----A---- C:\Windows\SysWOW64\wdc.dll
2011-02-23 18:27:25 ----A---- C:\Windows\SysWOW64\StructuredQuery.dll
2011-02-23 18:27:25 ----A---- C:\Windows\SysWOW64\scesrv.dll
2011-02-23 18:27:25 ----A---- C:\Windows\SysWOW64\netid.dll
2011-02-23 18:27:25 ----A---- C:\Windows\SysWOW64\actxprxy.dll
2011-02-23 18:27:24 ----A---- C:\Windows\SysWOW64\Vault.dll
2011-02-23 18:27:24 ----A---- C:\Windows\SysWOW64\untfs.dll
2011-02-23 18:27:24 ----A---- C:\Windows\SysWOW64\rastls.dll
2011-02-23 18:27:24 ----A---- C:\Windows\SysWOW64\oleaut32.dll
2011-02-23 18:27:24 ----A---- C:\Windows\SysWOW64\nci.dll
2011-02-23 18:27:23 ----A---- C:\Windows\SysWOW64\WMNetMgr.dll
2011-02-23 18:27:23 ----A---- C:\Windows\SysWOW64\wlanpref.dll
2011-02-23 18:27:23 ----A---- C:\Windows\SysWOW64\RpcRtRemote.dll
2011-02-23 18:27:23 ----A---- C:\Windows\SysWOW64\Robocopy.exe
2011-02-23 18:27:23 ----A---- C:\Windows\SysWOW64\licmgr10.dll
2011-02-23 18:27:22 ----A---- C:\Windows\SysWOW64\taskmgr.exe
2011-02-23 18:27:22 ----A---- C:\Windows\SysWOW64\mtxclu.dll
2011-02-23 18:27:22 ----A---- C:\Windows\SysWOW64\DxpTaskSync.dll
2011-02-23 18:27:22 ----A---- C:\Windows\SysWOW64\Display.dll
2011-02-23 18:27:21 ----A---- C:\Windows\SysWOW64\XpsRasterService.dll
2011-02-23 18:27:21 ----A---- C:\Windows\SysWOW64\userinit.exe
2011-02-23 18:27:21 ----A---- C:\Windows\SysWOW64\termmgr.dll
2011-02-23 18:27:21 ----A---- C:\Windows\SysWOW64\puiobj.dll
2011-02-23 18:27:21 ----A---- C:\Windows\SysWOW64\mssphtb.dll
2011-02-23 18:27:21 ----A---- C:\Windows\SysWOW64\eudcedit.exe
2011-02-23 18:27:20 ----A---- C:\Windows\SysWOW64\wiadefui.dll
2011-02-23 18:27:20 ----A---- C:\Windows\SysWOW64\sppcomapi.dll
2011-02-23 18:27:20 ----A---- C:\Windows\SysWOW64\shsetup.dll
2011-02-23 18:27:20 ----A---- C:\Windows\SysWOW64\rasppp.dll
2011-02-23 18:27:20 ----A---- C:\Windows\SysWOW64\logoncli.dll
2011-02-23 18:27:20 ----A---- C:\Windows\SysWOW64\cabview.dll
2011-02-23 18:27:19 ----A---- C:\Windows\SysWOW64\themecpl.dll
2011-02-23 18:27:19 ----A---- C:\Windows\SysWOW64\SensorsCpl.dll
2011-02-23 18:27:19 ----A---- C:\Windows\SysWOW64\FirewallControlPanel.dll
2011-02-23 18:27:18 ----A---- C:\Windows\SysWOW64\hgcpl.dll
2011-02-23 18:27:18 ----A---- C:\Windows\SysWOW64\FWPUCLNT.DLL
2011-02-23 18:27:18 ----A---- C:\Windows\SysWOW64\dnscmmc.dll
2011-02-23 18:27:17 ----A---- C:\Windows\SysWOW64\tapisrv.dll
2011-02-23 18:27:17 ----A---- C:\Windows\SysWOW64\scecli.dll
2011-02-23 18:27:17 ----A---- C:\Windows\SysWOW64\mscories.dll
2011-02-23 18:27:17 ----A---- C:\Windows\SysWOW64\mscms.dll
2011-02-23 18:27:17 ----A---- C:\Windows\SysWOW64\mprddm.dll
2011-02-23 18:27:17 ----A---- C:\Windows\SysWOW64\localsec.dll
2011-02-23 18:27:17 ----A---- C:\Windows\SysWOW64\fontext.dll
2011-02-23 18:27:16 ----A---- C:\Windows\SysWOW64\wlanui.dll
2011-02-23 18:27:16 ----A---- C:\Windows\SysWOW64\VAN.dll
2011-02-23 18:27:16 ----A---- C:\Windows\SysWOW64\usercpl.dll
2011-02-23 18:27:16 ----A---- C:\Windows\SysWOW64\SndVolSSO.dll
2011-02-23 18:27:16 ----A---- C:\Windows\SysWOW64\qedit.dll
2011-02-23 18:27:16 ----A---- C:\Windows\SysWOW64\PerfCenterCPL.dll
2011-02-23 18:27:16 ----A---- C:\Windows\SysWOW64\iasacct.dll
2011-02-23 18:27:15 ----A---- C:\Windows\SysWOW64\w32tm.exe
2011-02-23 18:27:15 ----A---- C:\Windows\SysWOW64\SndVol.exe
2011-02-23 18:27:15 ----A---- C:\Windows\SysWOW64\qdvd.dll
2011-02-23 18:27:15 ----A---- C:\Windows\SysWOW64\prntvpt.dll
2011-02-23 18:27:15 ----A---- C:\Windows\SysWOW64\netcenter.dll
2011-02-23 18:27:15 ----A---- C:\Windows\SysWOW64\batmeter.dll
2011-02-23 18:27:14 ----A---- C:\Windows\SysWOW64\zipfldr.dll
2011-02-23 18:27:14 ----A---- C:\Windows\SysWOW64\spwizeng.dll
2011-02-23 18:27:14 ----A---- C:\Windows\SysWOW64\fdeploy.dll
2011-02-23 18:27:14 ----A---- C:\Windows\SysWOW64\azroleui.dll
2011-02-23 18:27:14 ----A---- C:\Windows\SysWOW64\accessibilitycpl.dll
2011-02-23 18:27:13 ----A---- C:\Windows\SysWOW64\networkmap.dll
2011-02-23 18:27:13 ----A---- C:\Windows\SysWOW64\netjoin.dll
2011-02-23 18:27:13 ----A---- C:\Windows\SysWOW64\MSAC3ENC.DLL
2011-02-23 18:27:13 ----A---- C:\Windows\SysWOW64\Faultrep.dll
2011-02-23 18:27:13 ----A---- C:\Windows\SysWOW64\cryptui.dll
2011-02-23 18:27:13 ----A---- C:\Windows\SysWOW64\adsldp.dll
2011-02-23 18:27:12 ----A---- C:\Windows\SysWOW64\wusa.exe
2011-02-23 18:27:12 ----A---- C:\Windows\SysWOW64\prnfldr.dll
2011-02-23 18:27:12 ----A---- C:\Windows\SysWOW64\OnLineIDCpl.dll
2011-02-23 18:27:12 ----A---- C:\Windows\SysWOW64\MCEWMDRMNDBootstrap.dll
2011-02-23 18:27:12 ----A---- C:\Windows\SysWOW64\cfgmgr32.dll
2011-02-23 18:27:11 ----A---- C:\Windows\SysWOW64\sud.dll
2011-02-23 18:27:11 ----A---- C:\Windows\SysWOW64\photowiz.dll
2011-02-23 18:27:11 ----A---- C:\Windows\SysWOW64\msieftp.dll
2011-02-23 18:27:11 ----A---- C:\Windows\SysWOW64\MediaMetadataHandler.dll
2011-02-23 18:27:11 ----A---- C:\Windows\SysWOW64\iprtrmgr.dll
2011-02-23 18:27:11 ----A---- C:\Windows\SysWOW64\iasrad.dll
2011-02-23 18:27:11 ----A---- C:\Windows\SysWOW64\credssp.dll
2011-02-23 18:27:11 ----A---- C:\Windows\SysWOW64\ActionCenter.dll
2011-02-23 18:27:10 ----A---- C:\Windows\SysWOW64\sisbkup.dll
2011-02-23 18:27:10 ----A---- C:\Windows\SysWOW64\shwebsvc.dll
2011-02-23 18:27:10 ----A---- C:\Windows\SysWOW64\ifsutil.dll
2011-02-23 18:27:10 ----A---- C:\Windows\SysWOW64\ieUnatt.exe
2011-02-23 18:27:10 ----A---- C:\Windows\SysWOW64\ftp.exe
2011-02-23 18:27:10 ----A---- C:\Windows\SysWOW64\dot3cfg.dll
2011-02-23 18:27:10 ----A---- C:\Windows\SysWOW64\defaultlocationcpl.dll
2011-02-23 18:27:09 ----A---- C:\Windows\SysWOW64\syncui.dll
2011-02-23 18:27:09 ----A---- C:\Windows\SysWOW64\odbcjt32.dll
2011-02-23 18:27:09 ----A---- C:\Windows\SysWOW64\iesysprep.dll
2011-02-23 18:27:09 ----A---- C:\Windows\SysWOW64\efscore.dll
2011-02-23 18:27:09 ----A---- C:\Windows\SysWOW64\autoplay.dll
2011-02-23 18:27:09 ----A---- C:\Windows\SysWOW64\ActionCenterCPL.dll
2011-02-23 18:27:08 ----A---- C:\Windows\SysWOW64\wmpmde.dll
2011-02-23 18:27:08 ----A---- C:\Windows\SysWOW64\systemcpl.dll
2011-02-23 18:27:08 ----A---- C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2011-02-23 18:27:08 ----A---- C:\Windows\SysWOW64\sethc.exe
2011-02-23 18:27:08 ----A---- C:\Windows\SysWOW64\rtutils.dll
2011-02-23 18:27:08 ----A---- C:\Windows\SysWOW64\OobeFldr.dll
2011-02-23 18:27:08 ----A---- C:\Windows\SysWOW64\ntprint.dll
2011-02-23 18:27:08 ----A---- C:\Windows\SysWOW64\ntlanman.dll
2011-02-23 18:27:08 ----A---- C:\Windows\SysWOW64\nshwfp.dll
2011-02-23 18:27:08 ----A---- C:\Windows\SysWOW64\dskquoui.dll
2011-02-23 18:27:08 ----A---- C:\Windows\SysWOW64\DeviceCenter.dll
2011-02-23 18:27:07 ----A---- C:\Windows\SysWOW64\wmpsrcwp.dll
2011-02-23 18:27:07 ----A---- C:\Windows\SysWOW64\riched20.dll
2011-02-23 18:27:07 ----A---- C:\Windows\SysWOW64\netplwiz.dll
2011-02-23 18:27:07 ----A---- C:\Windows\SysWOW64\NAPHLPR.DLL
2011-02-23 18:27:07 ----A---- C:\Windows\SysWOW64\migisol.dll
2011-02-23 18:27:07 ----A---- C:\Windows\SysWOW64\fms.dll
2011-02-23 18:27:07 ----A---- C:\Windows\SysWOW64\blackbox.dll
2011-02-23 18:27:07 ----A---- C:\Windows\SysWOW64\activeds.dll
2011-02-23 18:27:06 ----A---- C:\Windows\SysWOW64\wuwebv.dll
2011-02-23 18:27:06 ----A---- C:\Windows\SysWOW64\wlanmsm.dll
2011-02-23 18:27:06 ----A---- C:\Windows\SysWOW64\wavemsp.dll
2011-02-23 18:27:06 ----A---- C:\Windows\SysWOW64\ReAgent.dll
2011-02-23 18:27:06 ----A---- C:\Windows\SysWOW64\nshipsec.dll
2011-02-23 18:27:06 ----A---- C:\Windows\SysWOW64\nlaapi.dll
2011-02-23 18:27:06 ----A---- C:\Windows\SysWOW64\msftedit.dll
2011-02-23 18:27:06 ----A---- C:\Windows\SysWOW64\isoburn.exe
2011-02-23 18:27:06 ----A---- C:\Windows\SysWOW64\httpapi.dll
2011-02-23 18:27:06 ----A---- C:\Windows\SysWOW64\cdosys.dll
2011-02-23 18:27:06 ----A---- C:\Windows\SysWOW64\asycfilt.dll
2011-02-23 18:27:05 ----A---- C:\Windows\SysWOW64\wvc.dll
2011-02-23 18:27:05 ----A---- C:\Windows\SysWOW64\wtsapi32.dll
2011-02-23 18:27:05 ----A---- C:\Windows\SysWOW64\wimgapi.dll
2011-02-23 18:27:05 ----A---- C:\Windows\SysWOW64\tzutil.exe
2011-02-23 18:27:05 ----A---- C:\Windows\SysWOW64\provsvc.dll
2011-02-23 18:27:05 ----A---- C:\Windows\SysWOW64\ocsetup.exe
2011-02-23 18:27:05 ----A---- C:\Windows\SysWOW64\KernelBase.dll
2011-02-23 18:27:05 ----A---- C:\Windows\SysWOW64\dsuiext.dll
2011-02-23 18:27:05 ----A---- C:\Windows\SysWOW64\dot3ui.dll
2011-02-23 18:27:05 ----A---- C:\Windows\SysWOW64\dfrgui.exe
2011-02-23 18:27:04 ----A---- C:\Windows\twain_32.dll
2011-02-23 18:27:04 ----A---- C:\Windows\SysWOW64\webcheck.dll
2011-02-23 18:27:04 ----A---- C:\Windows\SysWOW64\twext.dll
2011-02-23 18:27:04 ----A---- C:\Windows\SysWOW64\shdocvw.dll
2011-02-23 18:27:04 ----A---- C:\Windows\SysWOW64\qcap.dll
2011-02-23 18:27:04 ----A---- C:\Windows\SysWOW64\mstask.dll
2011-02-23 18:27:03 ----A---- C:\Windows\SysWOW64\uxlib.dll
2011-02-23 18:27:03 ----A---- C:\Windows\SysWOW64\slwga.dll
2011-02-23 18:27:03 ----A---- C:\Windows\SysWOW64\setupugc.exe
2011-02-23 18:27:03 ----A---- C:\Windows\SysWOW64\qasf.dll
2011-02-23 18:27:03 ----A---- C:\Windows\SysWOW64\occache.dll
2011-02-23 18:27:03 ----A---- C:\Windows\SysWOW64\msrating.dll
2011-02-23 18:27:03 ----A---- C:\Windows\SysWOW64\msfeedsbs.dll
2011-02-23 18:27:02 ----A---- C:\Windows\SysWOW64\wmdrmsdk.dll
2011-02-23 18:27:02 ----A---- C:\Windows\SysWOW64\nslookup.exe
2011-02-23 18:27:02 ----A---- C:\Windows\SysWOW64\msvfw32.dll
2011-02-23 18:27:02 ----A---- C:\Windows\SysWOW64\mciavi32.dll
2011-02-23 18:27:02 ----A---- C:\Windows\SysWOW64\imgutil.dll
2011-02-23 18:27:02 ----A---- C:\Windows\SysWOW64\DevicePairingFolder.dll
2011-02-23 18:27:02 ----A---- C:\Windows\SysWOW64\clusapi.dll
2011-02-23 18:27:02 ----A---- C:\Windows\SysWOW64\audiodev.dll
2011-02-23 18:27:01 ----A---- C:\Windows\SysWOW64\WPDShServiceObj.dll
2011-02-23 18:27:01 ----A---- C:\Windows\SysWOW64\wimserv.exe
2011-02-23 18:27:01 ----A---- C:\Windows\SysWOW64\TSpkg.dll
2011-02-23 18:27:01 ----A---- C:\Windows\SysWOW64\rpcrt4.dll
2011-02-23 18:27:01 ----A---- C:\Windows\SysWOW64\remotepg.dll
2011-02-23 18:27:01 ----A---- C:\Windows\SysWOW64\rdpencom.dll
2011-02-23 18:27:01 ----A---- C:\Windows\SysWOW64\raschap.dll
2011-02-23 18:27:01 ----A---- C:\Windows\SysWOW64\perfmon.exe
2011-02-23 18:27:01 ----A---- C:\Windows\SysWOW64\msscp.dll
2011-02-23 18:27:01 ----A---- C:\Windows\SysWOW64\diskraid.exe
2011-02-23 18:27:01 ----A---- C:\Windows\SysWOW64\acppage.dll
2011-02-23 18:27:01 ----A---- C:\Windows\bfsvc.exe
2011-02-23 18:27:00 ----A---- C:\Windows\SysWOW64\UserAccountControlSettings.dll
2011-02-23 18:27:00 ----A---- C:\Windows\SysWOW64\QUTIL.DLL
2011-02-23 18:27:00 ----A---- C:\Windows\SysWOW64\olepro32.dll
2011-02-23 18:27:00 ----A---- C:\Windows\SysWOW64\odbccp32.dll
2011-02-23 18:27:00 ----A---- C:\Windows\SysWOW64\ocsetapi.dll
2011-02-23 18:27:00 ----A---- C:\Windows\SysWOW64\networkexplorer.dll
2011-02-23 18:27:00 ----A---- C:\Windows\SysWOW64\NAPCRYPT.DLL
2011-02-23 18:27:00 ----A---- C:\Windows\SysWOW64\input.dll
2011-02-23 18:27:00 ----A---- C:\Windows\SysWOW64\drmmgrtn.dll
2011-02-23 18:26:59 ----A---- C:\Windows\SysWOW64\wpdwcn.dll
2011-02-23 18:26:59 ----A---- C:\Windows\SysWOW64\wmpdxm.dll
2011-02-23 18:26:59 ----A---- C:\Windows\SysWOW64\vpnikeapi.dll
2011-02-23 18:26:59 ----A---- C:\Windows\SysWOW64\vdsbas.dll
2011-02-23 18:26:59 ----A---- C:\Windows\SysWOW64\runonce.exe
2011-02-23 18:26:59 ----A---- C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2011-02-23 18:26:59 ----A---- C:\Windows\SysWOW64\onexui.dll
2011-02-23 18:26:59 ----A---- C:\Windows\SysWOW64\logagent.exe
2011-02-23 18:26:59 ----A---- C:\Windows\SysWOW64\iTVData.dll
2011-02-23 18:26:59 ----A---- C:\Windows\SysWOW64\inseng.dll
2011-02-23 18:26:59 ----A---- C:\Windows\SysWOW64\dxdiagn.dll
2011-02-23 18:26:58 ----A---- C:\Windows\SysWOW64\msvidc32.dll
2011-02-23 18:26:58 ----A---- C:\Windows\SysWOW64\msiexec.exe
2011-02-23 18:26:58 ----A---- C:\Windows\SysWOW64\MFPlay.dll
2011-02-23 18:26:58 ----A---- C:\Windows\SysWOW64\eapp3hst.dll
2011-02-23 18:26:58 ----A---- C:\Windows\SysWOW64\d3d10level9.dll
2011-02-23 18:26:57 ----A---- C:\Windows\SysWOW64\wudriver.dll
2011-02-23 18:26:57 ----A---- C:\Windows\SysWOW64\wmpshell.dll
2011-02-23 18:26:57 ----A---- C:\Windows\SysWOW64\wmdrmdev.dll
2011-02-23 18:26:57 ----A---- C:\Windows\SysWOW64\unimdmat.dll
2011-02-23 18:26:57 ----A---- C:\Windows\SysWOW64\sqlcese30.dll
2011-02-23 18:26:57 ----A---- C:\Windows\SysWOW64\shacct.dll
2011-02-23 18:26:57 ----A---- C:\Windows\SysWOW64\rdpd3d.dll
2011-02-23 18:26:57 ----A---- C:\Windows\SysWOW64\lsmproxy.dll
2011-02-23 18:26:57 ----A---- C:\Windows\SysWOW64\iscsium.dll
2011-02-23 18:26:57 ----A---- C:\Windows\SysWOW64\bitsadmin.exe
2011-02-23 18:26:56 ----A---- C:\Windows\SysWOW64\WPDSp.dll
2011-02-23 18:26:56 ----A---- C:\Windows\SysWOW64\tsgqec.dll
2011-02-23 18:26:56 ----A---- C:\Windows\SysWOW64\srvcli.dll
2011-02-23 18:26:56 ----A---- C:\Windows\SysWOW64\QSVRMGMT.DLL
2011-02-23 18:26:56 ----A---- C:\Windows\SysWOW64\PortableDeviceSyncProvider.dll
2011-02-23 18:26:56 ----A---- C:\Windows\SysWOW64\PortableDeviceStatus.dll
2011-02-23 18:26:56 ----A---- C:\Windows\SysWOW64\pdh.dll
2011-02-23 18:26:56 ----A---- C:\Windows\SysWOW64\OpcServices.dll
2011-02-23 18:26:56 ----A---- C:\Windows\SysWOW64\olethk32.dll
2011-02-23 18:26:56 ----A---- C:\Windows\SysWOW64\odbctrac.dll
2011-02-23 18:26:56 ----A---- C:\Windows\SysWOW64\ncryptui.dll
2011-02-23 18:26:56 ----A---- C:\Windows\SysWOW64\mprapi.dll
2011-02-23 18:26:56 ----A---- C:\Windows\SysWOW64\logman.exe
2011-02-23 18:26:56 ----A---- C:\Windows\SysWOW64\cscapi.dll
2011-02-23 18:26:55 ----A---- C:\Windows\SysWOW64\WMPhoto.dll
2011-02-23 18:26:55 ----A---- C:\Windows\SysWOW64\WMADMOD.DLL
2011-02-23 18:26:55 ----A---- C:\Windows\SysWOW64\wiavideo.dll
2011-02-23 18:26:55 ----A---- C:\Windows\SysWOW64\utildll.dll
2011-02-23 18:26:55 ----A---- C:\Windows\SysWOW64\takeown.exe
2011-02-23 18:26:55 ----A---- C:\Windows\SysWOW64\mshtmled.dll
2011-02-23 18:26:55 ----A---- C:\Windows\SysWOW64\mapistub.dll
2011-02-23 18:26:55 ----A---- C:\Windows\SysWOW64\mapi32.dll
2011-02-23 18:26:55 ----A---- C:\Windows\SysWOW64\fphc.dll
2011-02-23 18:26:55 ----A---- C:\Windows\SysWOW64\dot3msm.dll
2011-02-23 18:26:55 ----A---- C:\Windows\SysWOW64\avifil32.dll
2011-02-23 18:26:54 ----A---- C:\Windows\SysWOW64\WMVSDECD.DLL
2011-02-23 18:26:54 ----A---- C:\Windows\SysWOW64\wmdrmnet.dll
2011-02-23 18:26:54 ----A---- C:\Windows\SysWOW64\sqmapi.dll
2011-02-23 18:26:54 ----A---- C:\Windows\SysWOW64\sppinst.dll
2011-02-23 18:26:54 ----A---- C:\Windows\SysWOW64\qdv.dll
2011-02-23 18:26:54 ----A---- C:\Windows\SysWOW64\msyuv.dll
2011-02-23 18:26:54 ----A---- C:\Windows\SysWOW64\msnetobj.dll
2011-02-23 18:26:54 ----A---- C:\Windows\SysWOW64\iyuv_32.dll
2011-02-23 18:26:54 ----A---- C:\Windows\SysWOW64\imagehlp.dll
2011-02-23 18:26:54 ----A---- C:\Windows\SysWOW64\EhStorAPI.dll
2011-02-23 18:26:53 ----A---- C:\Windows\SysWOW64\wsnmp32.dll
2011-02-23 18:26:53 ----A---- C:\Windows\SysWOW64\WMSPDMOD.DLL
2011-02-23 18:26:53 ----A---- C:\Windows\SysWOW64\vfwwdm32.dll
2011-02-23 18:26:53 ----A---- C:\Windows\SysWOW64\tsbyuv.dll
2011-02-23 18:26:53 ----A---- C:\Windows\SysWOW64\sspicli.dll
2011-02-23 18:26:53 ----A---- C:\Windows\SysWOW64\setupcln.dll
2011-02-23 18:26:53 ----A---- C:\Windows\SysWOW64\QCLIPROV.DLL
2011-02-23 18:26:53 ----A---- C:\Windows\SysWOW64\pdhui.dll
2011-02-23 18:26:53 ----A---- C:\Windows\SysWOW64\MuiUnattend.exe
2011-02-23 18:26:53 ----A---- C:\Windows\SysWOW64\msrle32.dll
2011-02-23 18:26:53 ----A---- C:\Windows\SysWOW64\msorcl32.dll
2011-02-23 18:26:53 ----A---- C:\Windows\SysWOW64\iasrecst.dll
2011-02-23 18:26:53 ----A---- C:\Windows\SysWOW64\cmstp.exe
2011-02-23 18:26:53 ----A---- C:\Windows\SysWOW64\cca.dll
2011-02-23 18:26:53 ----A---- C:\Windows\SysWOW64\AzSqlExt.dll
2011-02-23 18:26:52 ----A---- C:\Windows\SysWOW64\wkscli.dll
2011-02-23 18:26:52 ----A---- C:\Windows\SysWOW64\syssetup.dll
2011-02-23 18:26:52 ----A---- C:\Windows\SysWOW64\spbcd.dll
2011-02-23 18:26:52 ----A---- C:\Windows\SysWOW64\secproc_ssp_isv.dll
2011-02-23 18:26:52 ----A---- C:\Windows\SysWOW64\secproc_ssp.dll
2011-02-23 18:26:52 ----A---- C:\Windows\SysWOW64\resutils.dll
2011-02-23 18:26:52 ----A---- C:\Windows\SysWOW64\relog.exe
2011-02-23 18:26:52 ----A---- C:\Windows\SysWOW64\rastapi.dll
2011-02-23 18:26:52 ----A---- C:\Windows\SysWOW64\netiougc.exe
2011-02-23 18:26:52 ----A---- C:\Windows\SysWOW64\netbtugc.exe
2011-02-23 18:26:52 ----A---- C:\Windows\SysWOW64\mydocs.dll
2011-02-23 18:26:52 ----A---- C:\Windows\SysWOW64\itircl.dll
2011-02-23 18:26:52 ----A---- C:\Windows\SysWOW64\iscsicli.exe
2011-02-23 18:26:52 ----A---- C:\Windows\SysWOW64\diskpart.exe
2011-02-23 18:26:52 ----A---- C:\Windows\SysWOW64\CertPolEng.dll
2011-02-23 18:26:52 ----A---- C:\Windows\SysWOW64\amstream.dll
2011-02-23 18:26:51 ----A---- C:\Windows\SysWOW64\wuapp.exe
2011-02-23 18:26:51 ----A---- C:\Windows\SysWOW64\wmpps.dll
2011-02-23 18:26:51 ----A---- C:\Windows\SysWOW64\WerFaultSecure.exe
2011-02-23 18:26:51 ----A---- C:\Windows\SysWOW64\tlscsp.dll
2011-02-23 18:26:51 ----A---- C:\Windows\SysWOW64\secur32.dll
2011-02-23 18:26:51 ----A---- C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2011-02-23 18:26:51 ----A---- C:\Windows\SysWOW64\RMActivate_ssp.exe
2011-02-23 18:26:51 ----A---- C:\Windows\SysWOW64\ReAgentc.exe
2011-02-23 18:26:51 ----A---- C:\Windows\SysWOW64\netutils.dll
2011-02-23 18:26:51 ----A---- C:\Windows\SysWOW64\mobsync.exe
2011-02-23 18:26:51 ----A---- C:\Windows\SysWOW64\mciqtz32.dll
2011-02-23 18:26:51 ----A---- C:\Windows\SysWOW64\findstr.exe
2011-02-23 18:26:51 ----A---- C:\Windows\SysWOW64\eappgnui.dll
2011-02-23 18:26:51 ----A---- C:\Windows\SysWOW64\dnscacheugc.exe
2011-02-23 18:26:50 ----A---- C:\Windows\SysWOW64\unlodctr.exe
2011-02-23 18:26:50 ----A---- C:\Windows\SysWOW64\sppc.dll
2011-02-23 18:26:50 ----A---- C:\Windows\SysWOW64\spopk.dll
2011-02-23 18:26:50 ----A---- C:\Windows\SysWOW64\shimgvw.dll
2011-02-23 18:26:50 ----A---- C:\Windows\SysWOW64\prevhost.exe
2011-02-23 18:26:50 ----A---- C:\Windows\SysWOW64\netapi32.dll
2011-02-23 18:26:50 ----A---- C:\Windows\SysWOW64\muifontsetup.dll
2011-02-23 18:26:50 ----A---- C:\Windows\SysWOW64\msdmo.dll
2011-02-23 18:26:50 ----A---- C:\Windows\SysWOW64\luainstall.dll
2011-02-23 18:26:50 ----A---- C:\Windows\SysWOW64\iccvid.dll
2011-02-23 18:26:50 ----A---- C:\Windows\SysWOW64\cabinet.dll
2011-02-23 18:26:49 ----A---- C:\Windows\SysWOW64\wups.dll
2011-02-23 18:26:49 ----A---- C:\Windows\SysWOW64\UIRibbonRes.dll
2011-02-23 18:26:49 ----A---- C:\Windows\SysWOW64\rdprefdrvapi.dll
2011-02-23 18:26:49 ----A---- C:\Windows\SysWOW64\odbcconf.dll
2011-02-23 18:26:49 ----A---- C:\Windows\SysWOW64\inetmib1.dll
2011-02-23 18:26:49 ----A---- C:\Windows\SysWOW64\browcli.dll
2011-02-23 18:26:48 ----A---- C:\Windows\SysWOW64\TRAPI.dll
2011-02-23 18:26:48 ----A---- C:\Windows\SysWOW64\perfts.dll
2011-02-23 18:26:48 ----A---- C:\Windows\SysWOW64\msfeedssync.exe
2011-02-23 18:26:48 ----A---- C:\Windows\SysWOW64\imm32.dll
2011-02-23 18:26:48 ----A---- C:\Windows\SysWOW64\elsTrans.dll
2011-02-23 18:26:48 ----A---- C:\Windows\SysWOW64\bitsperf.dll
2011-02-23 18:26:47 ----A---- C:\Windows\SysWOW64\wshbth.dll
2011-02-23 18:26:47 ----A---- C:\Windows\SysWOW64\sscore.dll
2011-02-23 18:26:47 ----A---- C:\Windows\SysWOW64\schedcli.dll
2011-02-23 18:26:47 ----A---- C:\Windows\SysWOW64\napdsnap.dll
2011-02-23 18:26:47 ----A---- C:\Windows\SysWOW64\dsauth.dll
2011-02-23 18:26:47 ----A---- C:\Windows\SysWOW64\cscdll.dll
2011-02-23 18:26:46 ----A---- C:\Windows\SysWOW64\wsdchngr.dll
2011-02-23 18:26:46 ----A---- C:\Windows\SysWOW64\shgina.dll
2011-02-23 18:26:46 ----A---- C:\Windows\SysWOW64\riched32.dll
2011-02-23 18:26:44 ----A---- C:\Windows\SysWOW64\wshirda.dll
2011-02-23 18:26:43 ----A---- C:\Windows\SysWOW64\spwmp.dll
2011-02-23 18:26:43 ----A---- C:\Windows\SysWOW64\browseui.dll
2011-02-23 18:26:42 ----A---- C:\Windows\SysWOW64\shunimpl.dll
2011-02-23 18:26:42 ----A---- C:\Windows\SysWOW64\KBDTUQ.DLL
2011-02-23 18:26:42 ----A---- C:\Windows\SysWOW64\KBDTUF.DLL
2011-02-23 18:26:42 ----A---- C:\Windows\SysWOW64\KBDSG.DLL
2011-02-23 18:26:42 ----A---- C:\Windows\SysWOW64\kbdlk41a.dll
2011-02-23 18:26:42 ----A---- C:\Windows\SysWOW64\KBDGR1.DLL
2011-02-23 18:26:42 ----A---- C:\Windows\SysWOW64\KBDGKL.DLL
2011-02-23 18:26:42 ----A---- C:\Windows\SysWOW64\dxmasf.dll
2011-02-23 18:26:42 ----A---- C:\Windows\SysWOW64\C_ISCII.DLL
2011-02-23 18:26:41 ----A---- C:\Windows\SysWOW64\wmploc.DLL
2011-02-23 18:26:41 ----A---- C:\Windows\SysWOW64\tzres.dll
2011-02-23 18:26:41 ----A---- C:\Windows\SysWOW64\KBDUS.DLL
2011-02-23 18:26:41 ----A---- C:\Windows\SysWOW64\KBDUGHR1.DLL
2011-02-23 18:26:41 ----A---- C:\Windows\SysWOW64\KBDTURME.DLL
2011-02-23 18:26:41 ----A---- C:\Windows\SysWOW64\KBDTAJIK.DLL
2011-02-23 18:26:41 ----A---- C:\Windows\SysWOW64\KBDSF.DLL
2011-02-23 18:26:41 ----A---- C:\Windows\SysWOW64\KBDPO.DLL
2011-02-23 18:26:41 ----A---- C:\Windows\SysWOW64\KBDNEPR.DLL
2011-02-23 18:26:41 ----A---- C:\Windows\SysWOW64\KBDMON.DLL
2011-02-23 18:26:41 ----A---- C:\Windows\SysWOW64\KBDMAORI.DLL
2011-02-23 18:26:41 ----A---- C:\Windows\SysWOW64\KBDLT1.DLL
2011-02-23 18:26:41 ----A---- C:\Windows\SysWOW64\KBDINTEL.DLL
2011-02-23 18:26:41 ----A---- C:\Windows\SysWOW64\KBDINTAM.DLL
2011-02-23 18:26:41 ----A---- C:\Windows\SysWOW64\KBDINORI.DLL
2011-02-23 18:26:41 ----A---- C:\Windows\SysWOW64\KBDINMAR.DLL
2011-02-23 18:26:41 ----A---- C:\Windows\SysWOW64\KBDINKAN.DLL
2011-02-23 18:26:41 ----A---- C:\Windows\SysWOW64\KBDINHIN.DLL
2011-02-23 18:26:41 ----A---- C:\Windows\SysWOW64\KBDINBEN.DLL
2011-02-23 18:26:41 ----A---- C:\Windows\SysWOW64\KBDGEO.DLL
2011-02-23 18:26:41 ----A---- C:\Windows\SysWOW64\KBDCZ1.DLL
2011-02-23 18:26:41 ----A---- C:\Windows\SysWOW64\KBDBULG.DLL
2011-02-23 18:26:41 ----A---- C:\Windows\SysWOW64\KBDBLR.DLL
2011-02-23 18:26:41 ----A---- C:\Windows\SysWOW64\KBDBASH.DLL
2011-02-23 18:26:41 ----A---- C:\Windows\SysWOW64\dpnaddr.dll
2011-02-23 18:26:40 ----A---- C:\Windows\SysWOW64\spwizres.dll
2011-02-23 18:26:40 ----A---- C:\Windows\SysWOW64\pifmgr.dll
2011-02-23 18:26:40 ----A---- C:\Windows\SysWOW64\nlsbres.dll
2011-02-23 18:26:24 ----A---- C:\Windows\SysWOW64\wdscore.dll
2011-02-23 18:26:24 ----A---- C:\Windows\SysWOW64\PkgMgr.exe
2011-02-23 18:26:18 ----A---- C:\Windows\SysWOW64\drvstore.dll
2011-02-23 18:26:18 ----A---- C:\Windows\SysWOW64\dpx.dll
2011-02-23 18:26:17 ----A---- C:\Windows\SysWOW64\wbemcomn.dll
2011-02-23 18:23:15 ----A---- C:\Windows\SysWOW64\d3d10_1.dll
2011-02-23 09:06:17 ----A---- C:\Windows\SysWOW64\XpsPrint.dll
2011-02-23 09:06:17 ----A---- C:\Windows\SysWOW64\XpsGdiConverter.dll
2011-02-15 10:09:44 ----D---- C:\Windows\Minidump

======List of files/folders modified in the last 1 months======

2011-03-14 19:30:29 ----D---- C:\Program Files (x86)\trend micro
2011-03-14 19:28:08 ----D---- C:\Windows\System32
2011-03-14 19:28:08 ----D---- C:\Windows\inf
2011-03-14 19:26:24 ----D---- C:\Users\JM\AppData\Roaming\Skype
2011-03-14 18:53:59 ----D---- C:\Windows\Temp
2011-03-14 18:53:41 ----D---- C:\Windows\Prefetch
2011-03-14 18:53:37 ----HD---- C:\ProgramData
2011-03-14 18:53:26 ----SHD---- C:\System Volume Information
2011-03-14 16:26:13 ----D---- C:\Users\JM\AppData\Roaming\skypePM
2011-03-14 16:25:38 ----A---- C:\Windows\SysWOW64\log.txt
2011-03-14 16:25:26 ----D---- C:\Windows
2011-03-11 20:56:40 ----SHD---- C:\Windows\Installer
2011-03-11 20:56:39 ----RD---- C:\Program Files (x86)
2011-03-11 18:07:30 ----D---- C:\Program Files (x86)\Common Files
2011-03-11 18:07:18 ----D---- C:\Windows\SysWOW64
2011-03-11 18:07:10 ----A---- C:\Windows\SysWOW64\msvcp71.dll
2011-03-10 14:45:40 ----D---- C:\Program Files (x86)\Adobe
2011-03-10 14:44:09 ----D---- C:\Program Files (x86)\Common Files\Adobe
2011-03-10 14:44:08 ----D---- C:\ProgramData\Adobe
2011-03-09 22:09:59 ----D---- C:\Windows\debug
2011-03-09 22:08:40 ----D---- C:\Windows\winsxs
2011-03-05 21:42:19 ----D---- C:\Program Files (x86)\Mozilla Firefox
2011-03-05 15:56:31 ----D---- C:\Users\JM\AppData\Roaming\ICQ
2011-03-05 15:44:52 ----D---- C:\Program Files (x86)\QIP 2010
2011-03-05 12:30:39 ----D---- C:\Users\JM\AppData\Roaming\uTorrent
2011-02-25 10:23:04 ----D---- C:\Windows\rescache
2011-02-23 19:14:43 ----D---- C:\Windows\Microsoft.NET
2011-02-23 19:14:13 ----RSD---- C:\Windows\assembly
2011-02-23 18:49:36 ----D---- C:\Program Files (x86)\Windows Sidebar
2011-02-23 18:49:36 ----D---- C:\Program Files (x86)\Windows Mail
2011-02-23 18:49:33 ----D---- C:\Program Files (x86)\Windows Portable Devices
2011-02-23 18:49:33 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2011-02-23 18:49:33 ----D---- C:\Program Files (x86)\Windows Media Player
2011-02-23 18:49:33 ----D---- C:\Program Files (x86)\Internet Explorer
2011-02-23 18:49:29 ----D---- C:\Windows\servicing
2011-02-23 18:49:29 ----D---- C:\Windows\ehome
2011-02-23 18:49:20 ----D---- C:\Windows\SysWOW64\Setup
2011-02-23 18:49:20 ----D---- C:\Windows\SysWOW64\oobe
2011-02-23 18:49:20 ----D---- C:\Windows\SysWOW64\migration
2011-02-23 18:49:20 ----D---- C:\Windows\SysWOW64\da-DK
2011-02-23 18:49:20 ----D---- C:\Windows\SysWOW64\cs-CZ
2011-02-23 18:49:20 ----D---- C:\Windows\SysWOW64\cs
2011-02-23 18:49:20 ----D---- C:\Windows\SysWOW64\AdvancedInstallers
2011-02-23 18:49:19 ----D---- C:\Windows\SysWOW64\wbem
2011-02-23 18:49:19 ----D---- C:\Windows\SysWOW64\sppui
2011-02-23 18:49:19 ----D---- C:\Windows\SysWOW64\migwiz
2011-02-23 18:49:19 ----D---- C:\Windows\SysWOW64\manifeststore
2011-02-23 18:49:19 ----D---- C:\Windows\SysWOW64\es-ES
2011-02-23 18:49:19 ----D---- C:\Windows\SysWOW64\Dism
2011-02-23 18:49:02 ----D---- C:\Windows\PolicyDefinitions
2011-02-23 18:48:34 ----RSD---- C:\Windows\Fonts
2011-02-23 18:48:33 ----D---- C:\Windows\AppPatch
2011-02-23 18:39:06 ----A---- C:\Windows\SysWOW64\msclmd.dll

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 AvgLdx64;AVG Free AVI Loader Driver x64; C:\Windows\System32\Drivers\avgldx64.sys []
R1 AvgMfx64;AVG Free On-access Scanner Minifilter Driver x64; C:\Windows\System32\Drivers\avgmfx64.sys []
R1 AvgTdiA;AVG Free Network Redirector x64; C:\Windows\System32\Drivers\avgtdia.sys []
R1 blbdrive;blbdrive; C:\Windows\system32\drivers\blbdrive.sys []
R1 DfsC;@%systemroot%\system32\drivers\dfsc.sys,-101; C:\Windows\System32\Drivers\dfsc.sys []
R1 discache;@%systemroot%\system32\drivers\discache.sys,-102; C:\Windows\System32\drivers\discache.sys []
R1 nsiproxy;@%SystemRoot%\system32\drivers\nsiproxy.sys,-2; C:\Windows\system32\drivers\nsiproxy.sys []
R1 RDPENCDD;@%systemroot%\system32\drivers\RDPENCDD.sys,-101; C:\Windows\system32\drivers\rdpencdd.sys []
R1 RDPREFMP;@%systemroot%\system32\drivers\RdpRefMp.sys,-101; C:\Windows\system32\drivers\rdprefmp.sys []
R1 tdx;@%SystemRoot%\system32\tcpipcfg.dll,-50004; C:\Windows\system32\DRIVERS\tdx.sys []
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys []
R1 Wanarpv6;@%systemroot%\system32\rascfg.dll,-32012; C:\Windows\system32\DRIVERS\wanarp.sys []
R1 WfpLwf;WFP Lightweight Filter; C:\Windows\system32\DRIVERS\wfplwf.sys []
R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys []
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys []
R2 lltdio;Link-Layer Topology Discovery Mapper I/O Driver; C:\Windows\system32\DRIVERS\lltdio.sys []
R2 luafv;@%systemroot%\system32\drivers\luafv.sys,-100; C:\Windows\system32\drivers\luafv.sys []
R2 PEAUTH;PEAUTH; C:\Windows\system32\drivers\peauth.sys []
R2 rimspci;rimspci; C:\Windows\system32\drivers\rimssne64.sys []
R2 risdsnpe;risdsnpe; C:\Windows\system32\drivers\risdsne64.sys []
R2 rspndr;Link-Layer Topology Discovery Responder; C:\Windows\system32\DRIVERS\rspndr.sys []
R2 tcpipreg;TCP/IP Registry Compatibility; C:\Windows\System32\drivers\tcpipreg.sys []
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys []
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys []
R3 ApfiltrService;Alps Pointing-device Filter Driver; C:\Windows\system32\drivers\Apfiltr.sys []
R3 ArcSoftKsUFilter;ArcSoft Magic-I Visual Effect; C:\Windows\system32\DRIVERS\ArcSoftKsUFilter.sys []
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys []
R3 bowser;@%systemroot%\system32\browser.dll,-102; C:\Windows\system32\DRIVERS\bowser.sys []
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\drivers\CmBatt.sys []
R3 CompositeBus;Ovladač rozpoznávacího modulu složené sběrnice; C:\Windows\system32\drivers\CompositeBus.sys []
R3 DXGKrnl;LDDM Graphics Subsystem; C:\Windows\System32\drivers\dxgkrnl.sys []
R3 HDAudBus;Ovladač sběrnice Microsoft UAA pro zvuk High Definition Audio; C:\Windows\system32\drivers\HDAudBus.sys []
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys []
R3 HidUsb;Ovladač třídy standardu HID Microsoft; C:\Windows\system32\drivers\hidusb.sys []
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys []
R3 intelppm;Intel Processor Driver; C:\Windows\system32\drivers\intelppm.sys []
R3 ksthunk;Kernel Streaming Thunks; C:\Windows\system32\drivers\ksthunk.sys []
R3 monitor;Služba ovladače funkce třídy monitorů Microsoft; C:\Windows\system32\DRIVERS\monitor.sys []
R3 mouhid;Ovladač myši standardu HID; C:\Windows\system32\DRIVERS\mouhid.sys []
R3 mpsdrv;@%SystemRoot%\system32\FirewallAPI.dll,-23092; C:\Windows\System32\drivers\mpsdrv.sys []
R3 mrxsmb10;@%systemroot%\system32\wkssvc.dll,-1004; C:\Windows\system32\DRIVERS\mrxsmb10.sys []
R3 mrxsmb20;@%systemroot%\system32\wkssvc.dll,-1006; C:\Windows\system32\DRIVERS\mrxsmb20.sys []
R3 NativeWifiP;NativeWiFi Filter; C:\Windows\system32\DRIVERS\nwifi.sys []
R3 RasAgileVpn;WAN Miniport (IKEv2); C:\Windows\system32\DRIVERS\AgileVpn.sys []
R3 RasSstp;@%systemroot%\system32\sstpsvc.dll,-202; C:\Windows\system32\DRIVERS\rassstp.sys []
R3 RTHDMIAzAudService;Service for HDMI; C:\Windows\system32\drivers\RtHDMIVX.sys []
R3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys []
R3 SFEP;Sony Firmware Extension Parser; C:\Windows\system32\drivers\SFEP.sys []
R3 srv2;@%systemroot%\system32\srvsvc.dll,-104; C:\Windows\System32\DRIVERS\srv2.sys []
R3 srvnet;srvnet; C:\Windows\System32\DRIVERS\srvnet.sys []
R3 tunnel;Microsoft Tunnel Miniport Adapter Driver; C:\Windows\system32\DRIVERS\tunnel.sys []
R3 umbus;Ovladač sběrnice UMBus Enumerator; C:\Windows\system32\drivers\umbus.sys []
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\Windows\system32\drivers\usbccgp.sys []
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\Windows\system32\drivers\usbehci.sys []
R3 usbhub;Ovladač standardního rozbočovače USB; C:\Windows\system32\drivers\usbhub.sys []
R3 usbvideo;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys []
R3 vwifibus;Virtual WiFi Bus Driver; C:\Windows\system32\DRIVERS\vwifibus.sys []
S3 1394ohci;Hostitelský řadič pro rozhraní OHCI standardu 1394; C:\Windows\system32\drivers\1394ohci.sys []
S3 AcpiPmi;Ovladač měřiče napájení standardu ACPI; C:\Windows\system32\drivers\acpipmi.sys []
S3 adp94xx;adp94xx; C:\Windows\system32\drivers\adp94xx.sys []
S3 adpahci;adpahci; C:\Windows\system32\drivers\adpahci.sys []
S3 adpu320;adpu320; C:\Windows\system32\drivers\adpu320.sys []
S3 adusbser;AnyDATA USB Device for Legacy Serial Communication; C:\Windows\system32\DRIVERS\adusbser.sys []
S3 AF15BDA;AF9015 BDA Device; C:\Windows\system32\DRIVERS\AF15BDA.sys []
S3 agp440;Filtr Intel sběrnice AGP; C:\Windows\system32\drivers\agp440.sys []
S3 amdide;amdide; C:\Windows\system32\drivers\amdide.sys []
S3 AmdK8;AMD K8 Processor Driver; C:\Windows\system32\drivers\amdk8.sys []
S3 AmdPPM;AMD Processor Driver; C:\Windows\system32\drivers\amdppm.sys []
S3 amdsata;amdsata; C:\Windows\system32\drivers\amdsata.sys []
S3 amdsbs;amdsbs; C:\Windows\system32\drivers\amdsbs.sys []
S3 AppID;@%systemroot%\system32\appidsvc.dll,-102; C:\Windows\system32\drivers\appid.sys []
S3 arc;arc; C:\Windows\system32\drivers\arc.sys []
S3 arcsas;arcsas; C:\Windows\system32\drivers\arcsas.sys []
S3 atapi;Kanál IDE; C:\Windows\system32\drivers\atapi.sys []
S3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys []
S3 Axtmvflt;Axesstel USB Filter Service; C:\Windows\system32\DRIVERS\Axtmvflt.sys []
S3 Axtmvmdm;Axesstel USB Modem; C:\Windows\system32\DRIVERS\Axtmvmdm.sys []
S3 Axtmvprt;Axesstel Diagnostic Port; C:\Windows\System32\Drivers\Axtmvprt.sys []
S3 b06bdrv;Broadcom NetXtreme II VBD; C:\Windows\system32\drivers\bxvbda.sys []
S3 b57nd60a;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60a.sys []
S3 BrFiltLo;Brother USB Mass-Storage Lower Filter Driver; C:\Windows\system32\drivers\BrFiltLo.sys []
S3 BrFiltUp;Brother USB Mass-Storage Upper Filter Driver; C:\Windows\system32\drivers\BrFiltUp.sys []
S3 Brserid;Brother MFC Serial Port Interface Driver (WDM); C:\Windows\System32\Drivers\Brserid.sys []
S3 BrSerWdm;Brother WDM Serial driver; C:\Windows\System32\Drivers\BrSerWdm.sys []
S3 BrUsbMdm;Brother MFC USB Fax Only Modem; C:\Windows\System32\Drivers\BrUsbMdm.sys []
S3 BrUsbSer;Brother MFC USB Serial WDM Driver; C:\Windows\System32\Drivers\BrUsbSer.sys []
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys []
S3 BTHMODEM;Bluetooth Serial Communications Driver; C:\Windows\system32\drivers\bthmodem.sys []
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys []
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys []
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys []
S3 btusbflt;Bluetooth USB Filter; C:\Windows\system32\drivers\btusbflt.sys []
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys []
S3 btwavdt;Bluetooth AVDT; C:\Windows\system32\drivers\btwavdt.sys []
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys []
S3 btwrchid;btwrchid; C:\Windows\system32\drivers\btwrchid.sys []
S3 circlass;Consumer IR Devices; C:\Windows\system32\drivers\circlass.sys []
S3 ebdrv;Broadcom NetXtreme II 10 GigE VBD; C:\Windows\system32\drivers\evbda.sys []
S3 elxstor;elxstor; C:\Windows\system32\drivers\elxstor.sys []
S3 ErrDev;Ovladače chybového zařízení hardwaru Microsoft; C:\Windows\system32\drivers\errdev.sys []
S3 exfat;exFAT File System Driver; C:\Windows\SysWOW64\drivers\exfat.sys []
S3 Filetrace;@%SystemRoot%\system32\drivers\filetrace.sys,-10001; C:\Windows\system32\drivers\filetrace.sys []
S3 FsDepends;@%SystemRoot%\system32\drivers\fsdepends.sys,-10001; C:\Windows\System32\drivers\FsDepends.sys []
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys []
S3 gagp30kx;Microsoft Generic AGPv3.0 Filter for K8 Processor Platforms; C:\Windows\system32\drivers\gagp30kx.sys []
S3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys []
S3 hcw85cir;Hauppauge Consumer Infrared Receiver; C:\Windows\system32\drivers\hcw85cir.sys []
S3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys []
S3 HidBatt;HID UPS Battery Driver; C:\Windows\system32\drivers\HidBatt.sys []
S3 HidBth;Microsoft Bluetooth HID Miniport; C:\Windows\system32\drivers\hidbth.sys []
S3 HidIr;Microsoft Infrared HID Driver; C:\Windows\system32\drivers\hidir.sys []
S3 HpSAMD;HpSAMD; C:\Windows\system32\drivers\HpSAMD.sys []
S3 iaStorV;Řadič Intel diskového pole RAID – Windows 7; C:\Windows\system32\drivers\iaStorV.sys []
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys []
S3 iirsp;iirsp; C:\Windows\system32\drivers\iirsp.sys []
S3 Impcd;Impcd; C:\Windows\system32\drivers\Impcd.sys []
S3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys []
S3 intelide;intelide; C:\Windows\system32\drivers\intelide.sys []
S3 IPMIDRV;IPMIDRV; C:\Windows\system32\drivers\IPMIDrv.sys []
S3 isapnp;isapnp; C:\Windows\system32\drivers\isapnp.sys []
S3 iScsiPrt;Ovladač iScsiPort; C:\Windows\system32\drivers\msiscsi.sys []
S3 kbdhid;Ovladač klávesnice standardu HID; C:\Windows\system32\drivers\kbdhid.sys []
S3 LSI_FC;LSI_FC; C:\Windows\system32\drivers\lsi_fc.sys []
S3 LSI_SAS;LSI_SAS; C:\Windows\system32\drivers\lsi_sas.sys []
S3 LSI_SAS2;LSI_SAS2; C:\Windows\system32\drivers\lsi_sas2.sys []
S3 LSI_SCSI;LSI_SCSI; C:\Windows\system32\drivers\lsi_scsi.sys []
S3 megasas;megasas; C:\Windows\system32\drivers\megasas.sys []
S3 MegaSR;MegaSR; C:\Windows\system32\drivers\MegaSR.sys []
S3 mpio;Ovladač sběrnice Microsoft Multi-Path; C:\Windows\system32\drivers\mpio.sys []
S3 msahci;msahci; C:\Windows\system32\drivers\msahci.sys []
S3 msdsm;Specifický modul zařízení Microsoft Multi-Path; C:\Windows\system32\drivers\msdsm.sys []
S3 mshidkmdf;@%SystemRoot%\system32\drivers\mshidkmdf.sys,-100; C:\Windows\System32\drivers\mshidkmdf.sys []
S3 MsRPC;MsRPC; C:\Windows\SysWOW64\drivers\MsRPC.sys []
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys []
S3 MTConfig;Microsoft Input Configuration Driver; C:\Windows\system32\drivers\MTConfig.sys []
S3 NdisCap;NDIS Capture LightWeight Filter; C:\Windows\system32\DRIVERS\ndiscap.sys []
S3 nfrd960;nfrd960; C:\Windows\system32\drivers\nfrd960.sys []
S3 nmwcdcx64;Nokia USB Generic; C:\Windows\system32\drivers\ccdcmbox64.sys []
S3 nmwcdx64;Nokia USB Phone Parent; C:\Windows\system32\drivers\ccdcmbx64.sys []
S3 nv_agp;Filtr sběrnice NVIDIA nForce AGP; C:\Windows\system32\drivers\nv_agp.sys []
S3 nvraid;nvraid; C:\Windows\system32\drivers\nvraid.sys []
S3 nvstor;nvstor; C:\Windows\system32\drivers\nvstor.sys []
S3 ohci1394;Hostitelský řadič pro rozhraní OHCI standardu 1394 (zastaralé); C:\Windows\system32\drivers\ohci1394.sys []
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys []
S3 ql2300;ql2300; C:\Windows\system32\drivers\ql2300.sys []
S3 ql40xx;ql40xx; C:\Windows\system32\drivers\ql40xx.sys []
S3 QWAVEdrv;@%SystemRoot%\system32\drivers\qwavedrv.sys,-1; C:\Windows\system32\drivers\qwavedrv.sys []
S3 rdpbus;Remote Desktop Device Redirector Bus Driver; C:\Windows\system32\drivers\rdpbus.sys []
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys []
S3 sbp2port;Ovladač sběrnice pro přenos dat zařízení podporujícího protokol SBP-2; C:\Windows\system32\drivers\sbp2port.sys []
S3 scfilter;@%SystemRoot%\System32\drivers\scfilter.sys,-11; C:\Windows\System32\DRIVERS\scfilter.sys []
S3 sermouse;Serial Mouse Driver; C:\Windows\system32\drivers\sermouse.sys []
S3 sffdisk;Ovladač třídy úložiště SFF; C:\Windows\system32\drivers\sffdisk.sys []
S3 sffp_mmc;Ovladač protokolu úložiště SFF pro konzolu MMC; C:\Windows\system32\drivers\sffp_mmc.sys []
S3 sffp_sd;Ovladač protokolu úložiště SFF pro paměť sběrnici SDBus; C:\Windows\system32\drivers\sffp_sd.sys []
S3 SiSRaid2;SiSRaid2; C:\Windows\system32\drivers\SiSRaid2.sys []
S3 SiSRaid4;SiSRaid4; C:\Windows\system32\drivers\sisraid4.sys []
S3 Smb;@%SystemRoot%\system32\tcpipcfg.dll,-50005; C:\Windows\system32\DRIVERS\smb.sys []
S3 stexstor;stexstor; C:\Windows\system32\drivers\stexstor.sys []
S3 TCPIP6;Microsoft IPv6 Protocol Driver; C:\Windows\system32\DRIVERS\tcpip.sys []
S3 tssecsrv;@%SystemRoot%\System32\DRIVERS\tssecsrv.sys,-101; C:\Windows\System32\DRIVERS\tssecsrv.sys []
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys []
S3 TVICHW64;TVICHW64; \??\C:\Windows\system32\DRIVERS\TVICHW64.SYS []
S3 uagp35;Microsoft AGPv3.5 Filter; C:\Windows\system32\drivers\uagp35.sys []
S3 uliagpkx;Filtr sběrnice Uli AGP; C:\Windows\system32\drivers\uliagpkx.sys []
S3 UmPass;Microsoft UMPass Driver; C:\Windows\system32\drivers\umpass.sys []
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys []
S3 usbcir;Infračervený přijímač eHome (USBCIR); C:\Windows\system32\drivers\usbcir.sys []
S3 usbohci;Microsoft USB Open Host Controller Miniport Driver; C:\Windows\system32\drivers\usbohci.sys []
S3 usbprint;Microsoft USB PRINTER Class; C:\Windows\system32\drivers\usbprint.sys []
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys []
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltx64j.sys []
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\Windows\system32\drivers\USBSTOR.SYS []
S3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\Windows\system32\drivers\usbuhci.sys []
S3 vga;vga; C:\Windows\system32\DRIVERS\vgapnp.sys []
S3 vhdmp;vhdmp; C:\Windows\system32\drivers\vhdmp.sys []
S3 vsmraid;vsmraid; C:\Windows\system32\drivers\vsmraid.sys []
S3 WacomPen;Wacom Serial Pen HID Driver; C:\Windows\system32\drivers\wacompen.sys []
S3 Wd;Wd; C:\Windows\system32\drivers\wd.sys []
S3 WIMMount;WIMMount; C:\Windows\system32\drivers\wimmount.sys [2009-07-14 19008]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys []
S3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys []
S4 crcdisk;Crcdisk Filter Driver; C:\Windows\system32\drivers\crcdisk.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe []
R2 AudioEndpointBuilder;@%SystemRoot%\system32\audiosrv.dll,-204; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 avg9emc;AVG Free E-mail Scanner; C:\Program Files (x86)\AVG\AVG9\avgemc.exe [2010-07-20 921952]
R2 avg9wd;AVG Free WatchDog; C:\Program Files (x86)\AVG\AVG9\avgwdsvc.exe [2010-07-17 308136]
R2 BFE;@%SystemRoot%\system32\bfe.dll,-1001; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2009-09-04 873248]
R2 DPS;@%systemroot%\system32\dps.dll,-500; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 EFS;@%SystemRoot%\system32\efssvc.dll,-100; C:\Windows\System32\lsass.exe []
R2 FDResPub;@%systemroot%\system32\fdrespub.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 gpsvc;@gpapi.dll,-112; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2009-11-21 13336]
R2 IKEEXT;@%SystemRoot%\system32\ikeext.dll,-501; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 iphlpsvc;@%SystemRoot%\system32\iphlpsvc.dll,-500; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2009-12-14 268824]
R2 MMCSS;@%systemroot%\system32\mmcss.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 MpsSvc;@%SystemRoot%\system32\FirewallAPI.dll,-23090; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 NlaSvc;@%SystemRoot%\System32\nlasvc.dll,-1; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 nsi;@%SystemRoot%\system32\nsisvc.dll,-200; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 PcaSvc;@%SystemRoot%\system32\pcasvc.dll,-1; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 PMBDeviceInfoProvider;PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe [2009-10-24 360224]
R2 Power;@%SystemRoot%\system32\umpo.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 ProfSvc;@%systemroot%\system32\profsvc.dll,-300; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 RpcEptMapper;@%windir%\system32\RpcEpMap.dll,-1001; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 SampleCollector;VAIO Care Performance Service; C:\Program Files\Sony\VAIO Care\VCPerfService.exe [2010-08-12 257936]
R2 STATISTICA Version Manager;STATISTICA Version Manager; C:\Program Files (x86)\StatSoft\STATISTICA Version Manager\rgSTr.exe [2008-02-21 18944]
R2 SysMain;@%SystemRoot%\system32\sysmain.dll,-1000; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 uCamMonitor;CamMonitor; C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [2008-09-18 104960]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-12-14 2320920]
R2 UxSms;@%SystemRoot%\system32\dwm.exe,-2000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 VAIO Event Service;VAIO Event Service; C:\Program Files (x86)\SONY\VAIO Event Service\VESMgr.exe [2010-05-28 205168]
R2 VCFw;VAIO Content Folder Watcher; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [2009-09-14 642416]
R2 VcmIAlzMgr;VAIO Content Metadata Intelligent Analyzing Manager; C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe [2010-02-19 529776]
R2 VSNService;VSNService; C:\Program Files\Sony\VAIO Smart Network\VSNService.exe [2010-08-11 845312]
R2 VzCdbSvc;VAIO Entertainment Database Service; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe [2009-09-14 206336]
R2 Wlansvc;@%SystemRoot%\System32\wlansvc.dll,-257; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 WMPNetworkSvc;@%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101; C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe []
R3 AeLookupSvc;@%SystemRoot%\system32\aelupsvc.dll,-1; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 Appinfo;@%systemroot%\system32\appinfo.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 ehRecvr;@%SystemRoot%\ehome\ehrecvr.exe,-101; C:\Windows\ehome\ehRecvr.exe [2010-11-20 696832]
R3 fdPHost;@%systemroot%\system32\fdPHost.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 KeyIso;@keyiso.dll,-100; C:\Windows\system32\lsass.exe []
R3 netprofm;@%SystemRoot%\system32\netprofm.dll,-202; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 SDRSVC;@%SystemRoot%\system32\sdrsvc.dll,-107; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2010-06-14 615936]
R3 SstpSvc;@%SystemRoot%\system32\sstpsvc.dll,-200; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 VAIO Power Management;VAIO Power Management; C:\Program Files\Sony\VAIO Power Management\SPMService.exe [2009-11-30 571248]
R3 VUAgent;VUAgent; C:\Program Files\Sony\VAIO Update 5\VUAgent.exe [2010-04-09 1223024]
R3 WdiServiceHost;@%systemroot%\system32\wdi.dll,-502; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 WdiSystemHost;@%systemroot%\system32\wdi.dll,-500; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 WinHttpAutoProxySvc;@%SystemRoot%\system32\winhttp.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-02-19 133104]
S2 Roxio Upnp Server 10;Roxio Upnp Server 10; C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe [2009-08-31 362992]
S2 sppsvc;@%SystemRoot%\system32\sppsvc.exe,-101; C:\Windows\system32\sppsvc.exe []
S3 ACDaemon;ArcSoft Connect Daemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
S3 AppIDSvc;@%systemroot%\system32\appidsvc.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 AxInstSV;@%SystemRoot%\system32\AxInstSV.dll,-103; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 BDESVC;@%SystemRoot%\system32\bdesvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 bthserv;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 CertPropSvc;@%SystemRoot%\System32\certprop.dll,-11; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 defragsvc;@%SystemRoot%\system32\defragsvc.dll,-101; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 ehSched;@%SystemRoot%\ehome\ehsched.exe,-101; C:\Windows\ehome\ehsched.exe [2009-07-14 127488]
S3 Fax;@%systemroot%\system32\fxsresm.dll,-118; C:\Windows\system32\fxssvc.exe []
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2010-11-05 42856]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2009-08-05 704864]
S3 GoogleDesktopManager-051210-111108;Google Desktop Manager 5.9.1005.12335; C:\Program Files (x86)\Google\Google Desktop Search\GoogleDesktop.exe [2010-06-17 30192]
S3 HomeGroupListener;@%SystemRoot%\System32\ListSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 HomeGroupProvider;@%SystemRoot%\System32\provsvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 idsvc;@%systemroot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8193; C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe [2010-11-05 856400]
S3 IPBusEnum;@%systemroot%\system32\IPBusEnum.dll,-102; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 KtmRm;@comres.dll,-2946; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 lltdsvc;@%SystemRoot%\system32\lltdres.dll,-1; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 MSiSCSI;@%SystemRoot%\system32\iscsidsc.dll,-5000; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2007-08-24 443776]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 p2pimsvc;@%SystemRoot%\system32\pnrpsvc.dll,-8004; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 p2psvc;@%SystemRoot%\system32\p2psvc.dll,-8006; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 PerfHost;@%systemroot%\sysWow64\perfhost.exe,-2; C:\Windows\SysWow64\perfhost.exe [2009-07-14 20992]
S3 pla;@%systemroot%\system32\pla.dll,-500; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 PNRPAutoReg;@%SystemRoot%\system32\pnrpauto.dll,-8002; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 PNRPsvc;@%SystemRoot%\system32\pnrpsvc.dll,-8000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 QWAVE;@%SystemRoot%\system32\qwave.dll,-1; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 Roxio UPnP Renderer 10;Roxio UPnP Renderer 10; C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe [2009-08-31 313840]
S3 SCPolicySvc;@%SystemRoot%\System32\certprop.dll,-13; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 SensrSvc;@%SystemRoot%\System32\sensrsvc.dll,-1000; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 SessionEnv;@%SystemRoot%\System32\SessEnv.dll,-1026; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 SNMPTRAP;@%SystemRoot%\system32\snmptrap.exe,-3; C:\Windows\System32\snmptrap.exe []
S3 SOHCImp;VAIO Media plus Content Importer; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe [2009-10-15 120104]
S3 SOHDBSvr;VAIO Media plus Database Manager; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDBSvr.exe [2009-10-15 70952]
S3 SOHDms;VAIO Media plus Digital Media Server; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe [2009-10-15 427304]
S3 SOHDs;VAIO Media plus Device Searcher; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe [2009-10-15 75048]
S3 SOHPlMgr;VAIO Media plus Playlist Manager; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHPlMgr.exe [2009-10-15 91432]
S3 sppuinotify;@%SystemRoot%\system32\sppuinotify.dll,-103; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 TabletInputService;@%SystemRoot%\system32\TabSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 TBS;@%SystemRoot%\system32\tbssvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 THREADORDER;@%systemroot%\system32\mmcss.dll,-102; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 TrustedInstaller;@%SystemRoot%\servicing\TrustedInstaller.exe,-100; C:\Windows\servicing\TrustedInstaller.exe [2010-11-20 194048]
S3 UI0Detect;@%SystemRoot%\system32\ui0detect.exe,-101; C:\Windows\system32\UI0Detect.exe []
S3 VAIO Entertainment TV Device Arbitration Service;VAIO Entertainment TV Device Arbitration Service; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzHardwareResourceManager\VzHardwareResourceManager\VzHardwareResourceManager.exe [2009-09-14 69632]
S3 VaultSvc;@%SystemRoot%\system32\vaultsvc.dll,-1003; C:\Windows\system32\lsass.exe []
S3 VcmINSMgr;VAIO Content Metadata Intelligent Network Service Manager; C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe [2009-09-01 361840]
S3 VcmXmlIfHelper;VAIO Content Metadata XML Interface; C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe [2010-02-19 115568]
S3 vds;@%SystemRoot%\system32\vds.exe,-100; C:\Windows\System32\vds.exe []
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe []
S3 wbengine;@%systemroot%\system32\wbengine.exe,-104; C:\Windows\system32\wbengine.exe []
S3 WbioSrvc;@%systemroot%\system32\wbiosrvc.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 wcncsvc;@%SystemRoot%\system32\wcncsvc.dll,-3; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WcsPlugInService;@%SystemRoot%\system32\WcsPlugInService.dll,-200; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 Wecsvc;@%SystemRoot%\system32\wecsvc.dll,-200; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 wercplsupport;@%SystemRoot%\System32\wercplsupport.dll,-101; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WerSvc;@%SystemRoot%\System32\wersvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WinDefend;@%ProgramFiles%\Windows Defender\MsMpRes.dll,-103; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WinRM;@%Systemroot%\system32\wsmsvc.dll,-101; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S4 clr_optimization_v2.0.50727_32;Microsoft .NET Framework NGEN v2.0.50727_X86; C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2009-06-10 66384]
S4 clr_optimization_v2.0.50727_64;Microsoft .NET Framework NGEN v2.0.50727_X64; C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe [2009-06-10 89920]
S4 Mcx2Svc;@%SystemRoot%\ehome\ehres.dll,-15501; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpPortSharing;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8201; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

Re: Win32 Heur

Napsal: 14 bře 2011 21:20
od motji
Dobrý večer :)

Ten soubor prosím otestujte na www.virustotal.com

:arrow: Stahněte z mého podpisu AVPTOOl http://www.viry.cz/forum/viewtopic.php?f=29&t=58179

-Podle návodu nainstalujte a proveďte sken
-co najde nechejte léčit, mazat
-sken může trvat několik hodin
-vložte zde log z výsledky

Re: Win32 Heur

Napsal: 14 bře 2011 21:30
od jiri123
V logu z RSIT nic neni?...respektive jak aktulani je hrozba..nejak ted nemam cas, tak se k tomu testu dostanu asi az ve stredu...tak jestli mam spechat nebo ne....

Re: Win32 Heur

Napsal: 14 bře 2011 21:42
od motji
Nevidím tam nic :) . AVPTOOL můžete spustit i přes noc.
Aspon tu instalačku, pokud není moc velká, otestujte na virustotalu, ať víme co to bylo zač (asi ji budete muset vytáhnout z karanteny AVG)

Re: Win32 Heur

Napsal: 14 bře 2011 21:45
od jiri123
No to sem prave chtel napsat...ma 32mega..takze mi ji to nechce vzit (a navic sem ted pripojeny pres mobilni net, takze uplod by stejne trval nekolik let :D )...v tu stredu to vse poresim...tak snad do te doby notas vydrzi :)

Re: Win32 Heur

Napsal: 14 bře 2011 21:53
od motji
Tak to fakt ne :D .
Pak tam pusťte ten AVPtool. Kdyby začal pc nějak trochu víc zlobit, spustte ho hned.