Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

nejde spustit centrum zabezpeceni, security essentials

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
majaaa
Návštěvník
Návštěvník
Příspěvky: 27
Registrován: 14 kvě 2011 08:49

nejde spustit centrum zabezpeceni, security essentials

#1 Příspěvek od majaaa »

hezky den,
jsem lehce bezradna, pravdepodobne me nejaky skodic napadl pocitac, nelze mi pusstit centrum zabezpeceni ani nove nainstalovany microsoft security essentials, pokusila jsme se podle navodu dostag k logu z
Logfile of random's system information tool 1.08 (written by random/random)
Run by maruska at 2011-05-14 09:45:17
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 172 GB (40%) free of 432 GB
Total RAM: 3959 MB (47% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:46:13, on 14.5.2011
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v8.00 (8.00.7601.17514)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeySupport.exe
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Users\maruska\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Program Files (x86)\ICQ7.2\ICQ.exe
C:\ProgramData\Badoo\Badoo Desktop\1.4.0.925\Badoo.Desktop.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\USB Camera\VM331_STI.EXE
C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe
C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe
C:\Program Files (x86)\Winamp\winampa.exe
C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Lenovo\Bluetooth Software\BluetoothHeadsetProxy.exe
C:\Users\maruska\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Common Files\McNeel Shared\License Manager\RhinoLM.exe
C:\Users\maruska\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe
C:\Users\maruska\AppData\Local\Google\Chrome\Application\chrome.exe
C:\windows\SysWOW64\rundll32.exe
C:\Users\maruska\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\maruska\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\maruska\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\maruska\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\maruska\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\maruska.exe
C:\Users\maruska\Downloads\setup_av_free.exe
C:\Users\maruska\AppData\Local\Temp\_av_sfx.tm~a04936\avast.setup

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource= ... =CT2786678
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files (x86)\BS_Player\prxtbBS_0.dll
R3 - URLSearchHook: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files (x86)\uTorrentBar\tbuTor.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\prxConduitEngine.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dll
O2 - BHO: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files (x86)\uTorrentBar\tbuTor.dll
O2 - BHO: Bing Bar BHO - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: BS Player - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files (x86)\BS_Player\prxtbBS_0.dll
O3 - Toolbar: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files (x86)\BS_Player\prxtbBS_0.dll
O3 - Toolbar: @C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll,-100 - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files (x86)\uTorrentBar\tbuTor.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [331BigDog] C:\Program Files (x86)\USB Camera\VM331_STI.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [VeriFaceManager] C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe
O4 - HKLM\..\Run: [UCam_Menu] "C:\Program Files (x86)\Lenovo\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\YouCam" UpdateWithCreateOnce "Software\CyberLink\YouCam\3.0"
O4 - HKLM\..\Run: [YouCam Mirror Tray icon] "C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe" /s
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKLM\..\Run: [AdobeCS4ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files (x86)\Winamp\winampa.exe"
O4 - HKLM\..\Run: [Adobe Acrobat Speed Launcher] "C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe"
O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKCU\..\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Users\maruska\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Total CMA Pack] C:\Program Files (x86)\Total CMA Pack\Total CMA Pack.exe
O4 - HKCU\..\Run: [ICQ] "C:\Program Files (x86)\ICQ7.2\ICQ.exe" silent loginmode=4
O4 - HKCU\..\Run: [Badoo Desktop] "C:\ProgramData\Badoo\Badoo Desktop\1.4.0.925\Badoo.Desktop.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [R8388QA8U8] C:\Users\maruska\AppData\Local\Temp\Kmr.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: Append Link Target to Existing PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Append to Existing PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert Link Target to Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O8 - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_E11712C84EA7E12B.dll/cmsidewiki.html
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files (x86)\ICQ7.2\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files (x86)\ICQ7.2\ICQ.exe
O9 - Extra button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Odeslat do zařízení Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Odeslat do zařízení &Bluetooth... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AST Service (astcc) - Nalpeiron Ltd. - C:\windows\system32\astsrv.exe
O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files (x86)\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: Autodesk Network Licensing Service - Autodesk, Inc. - C:\Program Files (x86)\Common Files\Autodesk Shared\Service\AdskNetSrv.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: FLEXnet Licensing Service 64 - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: IGRS - Lenovo Group Limited - C:\Program Files (x86)\Lenovo\ReadyComm\common\IGRS.exe
O23 - Service: InstallShield Licensing Service - Macrovision - C:\Program Files (x86)\Common Files\InstallShield Shared\Service\InstallShield Licensing Service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Lenovo ReadyComm AppSvc - Lenovo Group Limited - C:\Program Files\Lenovo\ReadyComm\AppSvc.exe
O23 - Service: Lenovo ReadyComm ConnSvc - Lenovo Group Limited - C:\Program Files\Lenovo\ReadyComm\ConnSvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McNeel Update (64-bit) (McNeelUpdates64) - Robert McNeel & Associates - C:\Program Files\Rhinoceros 5.0 WIP (64-bit)\System\RhinoVersionCheckSvc64.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Nalpeiron X64 Service (nlscc) - Unknown owner - C:\windows\system32\nlsInterface.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 18192 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
winlogon.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\nvvsvc.exe
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe"
C:\windows\system32\nvvsvc.exe -session -first
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
taskeng.exe {3EDC84EC-091B-4626-BD89-E5A58A339583}
C:\windows\system32\rundll32.exe "C:\windows\SysWOW64\MFC71JPNK.dll",OARRJG
C:\windows\system32\rundll32.exe "C:\windows\SysWOW64\MFC71JPNK.dll",OARRJG
C:\windows\SysWOW64\astsrv.exe
"C:\Program Files (x86)\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe"
"C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\Rhinoceros 5.0 WIP (64-bit)\System\RhinoVersionCheckSvc64.exe"
C:\windows\system32\nlsInterface.exe
"C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe"
"C:\windows\system32\Dwm.exe"
"taskhost.exe"
C:\windows\Explorer.EXE
"c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe"
"c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 2416
C:\windows\system32\svchost.exe -k bthsvcs
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeyStudio.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeySupport.exe"
"C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
"C:\Users\maruska\AppData\Local\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\ICQ7.2\ICQ.exe" silent loginmode=4
"C:\ProgramData\Badoo\Badoo Desktop\1.4.0.925\Badoo.Desktop.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
"C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe"
C:\windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\USB Camera\VM331_STI.EXE"
"C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe"
"C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe" /s
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Winamp\winampa.exe"
"C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files\Lenovo\Bluetooth Software\BtStackServer.exe" -Embedding
"C:\Program Files\Lenovo\Bluetooth Software\BluetoothHeadsetProxy.exe"
"C:\Program Files\Rhinoceros 5.0 WIP (64-bit)\System\Rhino.exe"
"C:\Users\maruska\AppData\Local\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Common Files\McNeel Shared\License Manager\RhinoLM.exe" -Embedding
"C:\Users\maruska\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsDisabled/DnsImpact/max_750ms_queue_prefetch/DnsParallelism/parallel_20/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_5/Prefetch/ContentPrefetchDisabled/ProxyConnectionImpact/proxy_connections_32/SSLFalseStart/FalseStart_disabled/SpdyCwnd/cwnd16/SpdyImpact/npn_with_spdy/ --channel=4172.05983780.649810965 /prefetch:3
"C:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe" /SILENT
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\windows\system32\wuauclt.exe"
C:\windows\system32\svchost.exe -k SDRSVC
"C:\Users\maruska\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=CacheSize/CacheSizeGroup_6/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsDisabled/DnsImpact/max_750ms_queue_prefetch/DnsParallelism/parallel_20/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_5/Prefetch/ContentPrefetchDisabled/ProxyConnectionImpact/proxy_connections_32/SSLFalseStart/FalseStart_disabled/SpdyCwnd/cwnd16/SpdyImpact/npn_with_spdy/ --channel=4172.059DEC00.117972071 /prefetch:3
C:\windows\system32\rundll32.exe "C:\Users\maruska\AppData\Local\Google\Chrome\APPLIC~1\110696~1.68\gcswf32.dll",BrokerMain browser=chrome
"C:\Users\maruska\AppData\Local\Google\Chrome\Application\chrome.exe" --type=plugin --plugin-path="C:\Users\maruska\AppData\Local\Google\Chrome\Application\11.0.696.68\gcswf32.dll" --lang=cs --plugin-data-dir="C:\Users\maruska\AppData\Local\Google\Chrome\User Data\Default" --channel=4172.062A8800.1385085736 /prefetch:4 --flash-broker=4464
taskmgr.exe /3
"C:\Program Files\Adobe\Adobe Photoshop CS4 (64 Bit)\Photoshop.exe"
"C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe"
"C:\Users\maruska\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=CacheSize/CacheSizeGroup_6/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsDisabled/DnsImpact/max_750ms_queue_prefetch/DnsParallelism/parallel_20/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_5/Prefetch/ContentPrefetchDisabled/ProxyConnectionImpact/proxy_connections_32/SSLFalseStart/FalseStart_disabled/SpdyCwnd/cwnd16/SpdyImpact/npn_with_spdy/ --channel=4172.03E68000.483143354 /prefetch:3
"C:\Users\maruska\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=CacheSize/CacheSizeGroup_6/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsDisabled/DnsImpact/max_750ms_queue_prefetch/DnsParallelism/parallel_20/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_5/Prefetch/ContentPrefetchDisabled/ProxyConnectionImpact/proxy_connections_32/SSLFalseStart/FalseStart_disabled/SpdyCwnd/cwnd16/SpdyImpact/npn_with_spdy/ --channel=4172.07FA3480.265414868 /prefetch:3
"C:\Users\maruska\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=CacheSize/CacheSizeGroup_6/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsDisabled/DnsImpact/max_750ms_queue_prefetch/DnsParallelism/parallel_20/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_5/Prefetch/ContentPrefetchDisabled/ProxyConnectionImpact/proxy_connections_32/SSLFalseStart/FalseStart_disabled/SpdyCwnd/cwnd16/SpdyImpact/npn_with_spdy/ --channel=4172.09442600.1955876672 /prefetch:3
taskeng.exe {94650044-8B24-4B00-9F77-4B36F6DEE1CB}
taskeng.exe {57F3DFCA-7C58-4CEC-825F-971FFAA991FA}
"C:\Users\maruska\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=CacheSize/CacheSizeGroup_6/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsDisabled/DnsImpact/max_750ms_queue_prefetch/DnsParallelism/parallel_20/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_5/Prefetch/ContentPrefetchDisabled/ProxyConnectionImpact/proxy_connections_32/SSLFalseStart/FalseStart_disabled/SpdyCwnd/cwnd16/SpdyImpact/npn_with_spdy/ --channel=4172.09446000.710463167 /prefetch:3
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
"C:\Users\maruska\Downloads\RSITx64.exe"
C:\windows\system32\wbem\wmiprvse.exe
"C:\Users\maruska\Downloads\setup_av_free.exe"
"C:\Users\maruska\AppData\Local\Temp\_av_sfx.tm~a04936\avast.setup" /sfx /sfxstorage "C:\Users\maruska\AppData\Local\Temp\_av_sfx.tm~a04936" /brandcode "A" /srcpath "C:\Users\maruska\DOWNLO~1" /sfxname "setup_av_free"
C:\windows\system32\vssvc.exe
C:\windows\System32\svchost.exe -k swprv

======Scheduled tasks folder======

C:\windows\tasks\GoogleUpdateTaskMachineCore.job
C:\windows\tasks\GoogleUpdateTaskMachineUA.job
C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-2436841599-1447322966-693437398-1004Core.job
C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-2436841599-1447322966-693437398-1004UA.job
C:\windows\tasks\ZJNWUWY.job
C:\windows\tasks\{810401E2-DDE0-454e-B0E2-AA89C9E5967C}.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2011-03-07 400560]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.6.6209.1142\swg64.dll [2011-03-07 335928]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
Conduit Engine - C:\Program Files (x86)\ConduitEngine\prxConduitEngine.dll [2011-01-17 175912]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2010-09-22 191792]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení ke službě Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll [2010-11-10 393600]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2011-03-07 298160]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe PDF Conversion Toolbar Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11 345480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08 804136]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dll [2011-03-07 848952]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}]
uTorrentBar Toolbar - C:\Program Files (x86)\uTorrentBar\tbuTor.dll [2010-12-09 3911776]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar BHO - C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll [2010-09-22 612616]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2011-02-09 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
SmartSelect Class - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11 345480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
BS Player Toolbar - C:\Program Files (x86)\BS_Player\prxtbBS_0.dll [2011-01-17 175912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2011-03-07 400560]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - BS Player Toolbar - C:\Program Files (x86)\BS_Player\prxtbBS_0.dll [2011-01-17 175912]
{8dcb7100-df86-4384-8842-8fa844297b3f} - @C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll,-100 - C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll [2010-09-22 612616]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11 345480]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2011-03-07 298160]
{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - uTorrentBar Toolbar - C:\Program Files (x86)\uTorrentBar\tbuTor.dll [2010-12-09 3911776]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [2010-03-22 521272]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2010-03-29 2598280]
"OnekeyStudio"=C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeyStudio.exe [2009-12-19 776608]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\utility.exe [2009-12-17 4367808]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2009-12-17 6988736]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2010-11-30 1436224]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"swg"=C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2010-09-29 39408]
"Google Update"=C:\Users\maruska\AppData\Local\Google\Update\GoogleUpdate.exe [2010-09-29 136176]
"Total CMA Pack"=C:\Program Files (x86)\Total CMA Pack\Total CMA Pack.exe [2009-09-01 43255]
"AdobeBridge"= []
"ICQ"=C:\Program Files (x86)\ICQ7.2\ICQ.exe [2011-01-05 133432]
"Badoo Desktop"=C:\ProgramData\Badoo\Badoo Desktop\1.4.0.925\Badoo.Desktop.exe [2011-05-06 1013760]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2011-04-18 15146376]
"R8388QA8U8"=C:\Users\maruska\AppData\Local\Temp\Kmr.exe []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2009-12-23 284696]
"331BigDog"=C:\Program Files (x86)\USB Camera\VM331_STI.EXE [2010-01-15 536576]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-12-03 35184]
"VeriFaceManager"=C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe [2010-06-07 3122528]
"UCam_Menu"=C:\Program Files (x86)\Lenovo\YouCam\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"YouCam Mirror Tray icon"=C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe [2009-12-22 167008]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2008-12-04 218408]
"avast5"=C:\Program Files\Alwil Software\Avast5\avastUI.exe /nogui []
"AdobeCS4ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [2008-08-14 611712]
"WinampAgent"=C:\Program Files (x86)\Winamp\winampa.exe [2010-07-12 74752]
"Adobe Acrobat Speed Launcher"=C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe [2008-06-12 37232]
""= []
"Acrobat Assistant 8.0"=C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe [2008-06-11 640376]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2010-10-29 249064]
"QuickTime Task"=C:\Program Files (x86)\QuickTime\QTTask.exe [2009-05-26 413696]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - C:\windows\system32\notepad.exe "%1"
.scr - install -
.scr - config -

======List of files/folders created in the last 1 months======

2011-05-14 09:46:12 ----A---- C:\windows\SYSWOW64\aswBoot.exe
2011-05-14 09:46:04 ----D---- C:\ProgramData\AVAST Software
2011-05-14 09:46:04 ----D---- C:\Program Files\AVAST Software
2011-05-14 09:45:20 ----D---- C:\Program Files\trend micro
2011-05-14 09:45:17 ----D---- C:\rsit
2011-05-14 09:22:18 ----D---- C:\Program Files (x86)\Microsoft Security Client
2011-05-14 09:21:57 ----D---- C:\Program Files\Microsoft Security Client
2011-05-14 09:19:37 ----A---- C:\windows\system32\aswBoot.exe
2011-05-11 09:28:17 ----D---- C:\Users\maruska\AppData\Roaming\RegGenie
2011-05-11 08:07:24 ----A---- C:\windows\RegGenieOnUninstall.exe
2011-05-11 08:07:22 ----D---- C:\Program Files (x86)\RegGenie
2011-05-11 08:02:55 ----A---- C:\windows\system32\ntoskrnl.exe
2011-05-11 08:02:50 ----A---- C:\windows\SYSWOW64\ntkrnlpa.exe
2011-05-11 08:02:49 ----A---- C:\windows\SYSWOW64\ntoskrnl.exe
2011-05-11 08:02:48 ----A---- C:\windows\system32\drivers\usbuhci.sys
2011-05-11 08:02:48 ----A---- C:\windows\system32\drivers\usbport.sys
2011-05-11 08:02:48 ----A---- C:\windows\system32\drivers\usbohci.sys
2011-05-11 08:02:48 ----A---- C:\windows\system32\drivers\usbhub.sys
2011-05-11 08:02:48 ----A---- C:\windows\system32\drivers\usbehci.sys
2011-05-11 08:02:48 ----A---- C:\windows\system32\drivers\usbd.sys
2011-05-11 08:02:48 ----A---- C:\windows\system32\drivers\usbccgp.sys
2011-05-10 10:35:14 ----RASH---- C:\windows\SYSWOW64\MFC71JPNK.dll
2011-05-09 22:55:45 ----D---- C:\ProgramData\Skype Extras
2011-05-07 17:50:06 ----D---- C:\ProgramData\Badoo
2011-05-06 09:59:35 ----D---- C:\windows\system32\SPReview
2011-05-06 09:58:48 ----D---- C:\windows\system32\EventProviders
2011-05-06 09:54:44 ----A---- C:\windows\system32\netfxperf.dll
2011-05-06 09:54:44 ----A---- C:\windows\system32\dfshim.dll
2011-05-06 09:54:33 ----A---- C:\windows\SYSWOW64\dfshim.dll
2011-05-06 09:54:26 ----A---- C:\windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2011-05-06 09:54:26 ----A---- C:\windows\system32\mstscax.dll
2011-05-06 09:54:26 ----A---- C:\windows\system32\drivers\TsUsbFlt.sys
2011-05-06 09:54:26 ----A---- C:\windows\system32\d3d10warp.dll
2011-05-06 09:54:22 ----A---- C:\windows\SYSWOW64\mstscax.dll
2011-05-06 09:54:19 ----A---- C:\windows\SYSWOW64\mfc40u.dll
2011-05-06 09:54:19 ----A---- C:\windows\SYSWOW64\mfc40.dll
2011-05-06 09:54:19 ----A---- C:\windows\SYSWOW64\d3d10warp.dll
2011-05-06 09:54:19 ----A---- C:\windows\system32\sysmain.dll
2011-05-06 09:54:18 ----A---- C:\windows\system32\shell32.dll
2011-05-06 09:54:18 ----A---- C:\windows\system32\drivers\tcpip.sys
2011-05-06 09:54:16 ----A---- C:\windows\system32\MSVidCtl.dll
2011-05-06 09:54:15 ----A---- C:\windows\system32\wmp.dll
2011-05-06 09:54:15 ----A---- C:\windows\system32\tquery.dll
2011-05-06 09:54:13 ----A---- C:\windows\system32\ntdll.dll
2011-05-06 09:54:13 ----A---- C:\windows\system32\mssrch.dll
2011-05-06 09:54:13 ----A---- C:\windows\system32\mscoree.dll
2011-05-06 09:54:13 ----A---- C:\windows\system32\mmcndmgr.dll
2011-05-06 09:54:12 ----A---- C:\windows\system32\secproc_isv.dll
2011-05-06 09:54:12 ----A---- C:\windows\system32\mf.dll
2011-05-06 09:54:11 ----A---- C:\windows\SYSWOW64\shell32.dll
2011-05-06 09:54:11 ----A---- C:\windows\SYSWOW64\secproc_isv.dll
2011-05-06 09:54:11 ----A---- C:\windows\system32\xpsservices.dll
2011-05-06 09:54:11 ----A---- C:\windows\system32\secproc.dll
2011-05-06 09:54:11 ----A---- C:\windows\system32\RMActivate_isv.exe
2011-05-06 09:54:11 ----A---- C:\windows\system32\RMActivate.exe
2011-05-06 09:54:10 ----A---- C:\windows\SYSWOW64\RMActivate_isv.exe
2011-05-06 09:54:09 ----A---- C:\windows\SYSWOW64\secproc.dll
2011-05-06 09:54:09 ----A---- C:\windows\system32\rpcrt4.dll
2011-05-06 09:54:08 ----A---- C:\windows\SYSWOW64\RMActivate.exe
2011-05-06 09:54:08 ----A---- C:\windows\system32\schedsvc.dll
2011-05-06 09:54:08 ----A---- C:\windows\system32\ole32.dll
2011-05-06 09:54:07 ----A---- C:\windows\SYSWOW64\mscoree.dll
2011-05-06 09:54:07 ----A---- C:\windows\system32\spwizui.dll
2011-05-06 09:54:07 ----A---- C:\windows\system32\iertutil.dll
2011-05-06 09:54:06 ----A---- C:\windows\system32\taskschd.dll
2011-05-06 09:54:06 ----A---- C:\windows\system32\RacEngn.dll
2011-05-06 09:54:05 ----A---- C:\windows\SYSWOW64\mf.dll
2011-05-06 09:54:05 ----A---- C:\windows\system32\wevtsvc.dll
2011-05-06 09:54:05 ----A---- C:\windows\system32\ExplorerFrame.dll
2011-05-06 09:54:05 ----A---- C:\windows\system32\diagperf.dll
2011-05-06 09:54:04 ----A---- C:\windows\system32\vssapi.dll
2011-05-06 09:54:04 ----A---- C:\windows\system32\msxml3.dll
2011-05-06 09:54:03 ----A---- C:\windows\SYSWOW64\mssrch.dll
2011-05-06 09:54:03 ----A---- C:\windows\SYSWOW64\iertutil.dll
2011-05-06 09:54:03 ----A---- C:\windows\SYSWOW64\CertEnroll.dll
2011-05-06 09:54:03 ----A---- C:\windows\system32\UIRibbon.dll
2011-05-06 09:54:03 ----A---- C:\windows\system32\NaturalLanguage6.dll
2011-05-06 09:54:03 ----A---- C:\windows\system32\mcupdate_GenuineIntel.dll
2011-05-06 09:54:03 ----A---- C:\windows\system32\drivers\msiscsi.sys
2011-05-06 09:54:02 ----A---- C:\windows\SYSWOW64\wmp.dll
2011-05-06 09:54:00 ----A---- C:\windows\SYSWOW64\PresentationHostProxy.dll
2011-05-06 09:54:00 ----A---- C:\windows\SYSWOW64\PresentationHost.exe
2011-05-06 09:54:00 ----A---- C:\windows\system32\WsmSvc.dll
2011-05-06 09:54:00 ----A---- C:\windows\system32\WMVCORE.DLL
2011-05-06 09:54:00 ----A---- C:\windows\system32\PresentationHostProxy.dll
2011-05-06 09:54:00 ----A---- C:\windows\system32\PresentationHost.exe
2011-05-06 09:53:59 ----A---- C:\windows\system32\WinSAT.exe
2011-05-06 09:53:59 ----A---- C:\windows\system32\spreview.exe
2011-05-06 09:53:59 ----A---- C:\windows\system32\spinstall.exe
2011-05-06 09:53:59 ----A---- C:\windows\system32\rdpdd.dll
2011-05-06 09:53:59 ----A---- C:\windows\system32\MPSSVC.dll
2011-05-06 09:53:59 ----A---- C:\windows\system32\CertEnroll.dll
2011-05-06 09:53:58 ----A---- C:\windows\SYSWOW64\tquery.dll
2011-05-06 09:53:58 ----A---- C:\windows\system32\WMVDECOD.DLL
2011-05-06 09:53:57 ----A---- C:\windows\SYSWOW64\RacEngn.dll
2011-05-06 09:53:57 ----A---- C:\windows\system32\msxml6.dll
2011-05-06 09:53:57 ----A---- C:\windows\system32\IKEEXT.DLL
2011-05-06 09:53:57 ----A---- C:\windows\system32\d3d9.dll
2011-05-06 09:53:56 ----A---- C:\windows\system32\SearchFolder.dll
2011-05-06 09:53:55 ----A---- C:\windows\SYSWOW64\AuthFWSnapin.dll
2011-05-06 09:53:55 ----A---- C:\windows\system32\VSSVC.exe
2011-05-06 09:53:55 ----A---- C:\windows\system32\kernel32.dll
2011-05-06 09:53:55 ----A---- C:\windows\system32\gpsvc.dll
2011-05-06 09:53:55 ----A---- C:\windows\system32\AuthFWSnapin.dll
2011-05-06 09:53:54 ----A---- C:\windows\system32\mstime.dll
2011-05-06 09:53:54 ----A---- C:\windows\system32\dwmcore.dll
2011-05-06 09:53:54 ----A---- C:\windows\system32\drivers\http.sys
2011-05-06 09:53:54 ----A---- C:\windows\system32\dbgeng.dll
2011-05-06 09:53:53 ----A---- C:\windows\system32\drivers\ndis.sys
2011-05-06 09:53:53 ----A---- C:\windows\system32\crypt32.dll
2011-05-06 09:53:52 ----A---- C:\windows\SYSWOW64\ExplorerFrame.dll
2011-05-06 09:53:51 ----A---- C:\windows\SYSWOW64\ole32.dll
2011-05-06 09:53:51 ----A---- C:\windows\system32\TSWorkspace.dll
2011-05-06 09:53:51 ----A---- C:\windows\system32\schannel.dll
2011-05-06 09:53:51 ----A---- C:\windows\system32\qmgr.dll
2011-05-06 09:53:51 ----A---- C:\windows\system32\lsasrv.dll
2011-05-06 09:53:51 ----A---- C:\windows\system32\KernelBase.dll
2011-05-06 09:53:51 ----A---- C:\windows\system32\drivers\afd.sys
2011-05-06 09:53:51 ----A---- C:\windows\system32\audiosrv.dll
2011-05-06 09:53:51 ----A---- C:\windows\system32\actxprxy.dll
2011-05-06 09:53:50 ----A---- C:\windows\system32\termsrv.dll
2011-05-06 09:53:50 ----A---- C:\windows\system32\mstsc.exe
2011-05-06 09:53:49 ----A---- C:\windows\system32\sqmapi.dll
2011-05-06 09:53:49 ----A---- C:\windows\system32\netlogon.dll
2011-05-06 09:53:49 ----A---- C:\windows\system32\imapi2fs.dll
2011-05-06 09:53:48 ----A---- C:\windows\SYSWOW64\vssapi.dll
2011-05-06 09:53:48 ----A---- C:\windows\SYSWOW64\SearchFolder.dll
2011-05-06 09:53:48 ----A---- C:\windows\SYSWOW64\d3d9.dll
2011-05-06 09:53:48 ----A---- C:\windows\system32\winhttp.dll
2011-05-06 09:53:48 ----A---- C:\windows\system32\QAGENTRT.DLL
2011-05-06 09:53:48 ----A---- C:\windows\system32\propsys.dll
2011-05-06 09:53:48 ----A---- C:\windows\system32\msv1_0.dll
2011-05-06 09:53:48 ----A---- C:\windows\system32\d3d11.dll
2011-05-06 09:53:47 ----A---- C:\windows\SYSWOW64\taskschd.dll
2011-05-06 09:53:47 ----A---- C:\windows\system32\wbengine.exe
2011-05-06 09:53:47 ----A---- C:\windows\system32\setupapi.dll
2011-05-06 09:53:47 ----A---- C:\windows\system32\rpcss.dll
2011-05-06 09:53:46 ----A---- C:\windows\SYSWOW64\crypt32.dll
2011-05-06 09:53:46 ----A---- C:\windows\system32\werconcpl.dll
2011-05-06 09:53:46 ----A---- C:\windows\system32\taskeng.exe
2011-05-06 09:53:46 ----A---- C:\windows\system32\odbc32.dll
2011-05-06 09:53:46 ----A---- C:\windows\system32\msfeeds.dll
2011-05-06 09:53:46 ----A---- C:\windows\system32\authui.dll
2011-05-06 09:53:45 ----A---- C:\windows\SYSWOW64\mstsc.exe
2011-05-06 09:53:45 ----A---- C:\windows\system32\WSDApi.dll
2011-05-06 09:53:45 ----A---- C:\windows\system32\user32.dll
2011-05-06 09:53:45 ----A---- C:\windows\system32\oleaut32.dll
2011-05-06 09:53:45 ----A---- C:\windows\system32\drivers\netio.sys
2011-05-06 09:53:45 ----A---- C:\windows\system32\dhcpcore.dll
2011-05-06 09:53:45 ----A---- C:\windows\system32\certmgr.dll
2011-05-06 09:53:44 ----A---- C:\windows\SYSWOW64\wer.dll
2011-05-06 09:53:44 ----A---- C:\windows\SYSWOW64\ntdll.dll
2011-05-06 09:53:44 ----A---- C:\windows\SYSWOW64\certcli.dll
2011-05-06 09:53:44 ----A---- C:\windows\system32\webio.dll
2011-05-06 09:53:44 ----A---- C:\windows\system32\scavengeui.dll
2011-05-06 09:53:44 ----A---- C:\windows\system32\drivers\tdx.sys
2011-05-06 09:53:44 ----A---- C:\windows\system32\drivers\netbt.sys
2011-05-06 09:53:43 ----A---- C:\windows\SYSWOW64\msxml6.dll
2011-05-06 09:53:43 ----A---- C:\windows\SYSWOW64\dwmcore.dll
2011-05-06 09:53:43 ----A---- C:\windows\system32\tsmf.dll
2011-05-06 09:53:43 ----A---- C:\windows\system32\shlwapi.dll
2011-05-06 09:53:43 ----A---- C:\windows\system32\PortableDeviceApi.dll
2011-05-06 09:53:43 ----A---- C:\windows\system32\ncsi.dll
2011-05-06 09:53:43 ----A---- C:\windows\system32\msdrm.dll
2011-05-06 09:53:43 ----A---- C:\windows\system32\localspl.dll
2011-05-06 09:53:42 ----A---- C:\windows\SYSWOW64\odbc32.dll
2011-05-06 09:53:42 ----A---- C:\windows\system32\umpnpmgr.dll
2011-05-06 09:53:42 ----A---- C:\windows\system32\netshell.dll
2011-05-06 09:53:42 ----A---- C:\windows\system32\msdtctm.dll
2011-05-06 09:53:42 ----A---- C:\windows\system32\framedynos.dll
2011-05-06 09:53:42 ----A---- C:\windows\system32\drivers\cng.sys
2011-05-06 09:53:41 ----A---- C:\windows\SYSWOW64\tcpmonui.dll
2011-05-06 09:53:41 ----A---- C:\windows\SYSWOW64\quartz.dll
2011-05-06 09:53:41 ----A---- C:\windows\SYSWOW64\mstime.dll
2011-05-06 09:53:41 ----A---- C:\windows\system32\ws2_32.dll
2011-05-06 09:53:41 ----A---- C:\windows\system32\winlogon.exe
2011-05-06 09:53:41 ----A---- C:\windows\system32\usp10.dll
2011-05-06 09:53:41 ----A---- C:\windows\system32\quartz.dll
2011-05-06 09:53:41 ----A---- C:\windows\system32\nlasvc.dll
2011-05-06 09:53:41 ----A---- C:\windows\system32\netcfgx.dll
2011-05-06 09:53:41 ----A---- C:\windows\system32\lsm.exe
2011-05-06 09:53:41 ----A---- C:\windows\system32\dxgi.dll
2011-05-06 09:53:41 ----A---- C:\windows\system32\comdlg32.dll
2011-05-06 09:53:40 ----A---- C:\windows\SYSWOW64\TSWorkspace.dll
2011-05-06 09:53:40 ----A---- C:\windows\SYSWOW64\tsmf.dll
2011-05-06 09:53:40 ----A---- C:\windows\SYSWOW64\dot3api.dll
2011-05-06 09:53:40 ----A---- C:\windows\system32\wmpps.dll
2011-05-06 09:53:40 ----A---- C:\windows\system32\Query.dll
2011-05-06 09:53:40 ----A---- C:\windows\system32\mswsock.dll
2011-05-06 09:53:40 ----A---- C:\windows\system32\drivers\rdpwd.sys
2011-05-06 09:53:40 ----A---- C:\windows\system32\d3d10_1core.dll
2011-05-06 09:53:40 ----A---- C:\windows\system32\apphelp.dll
2011-05-06 09:53:39 ----A---- C:\windows\SYSWOW64\winhttp.dll
2011-05-06 09:53:39 ----A---- C:\windows\SYSWOW64\setupapi.dll
2011-05-06 09:53:39 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2011-05-06 09:53:39 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2011-05-06 09:53:39 ----A---- C:\windows\system32\wpdshext.dll
2011-05-06 09:53:39 ----A---- C:\windows\system32\QAGENT.DLL
2011-05-06 09:53:39 ----A---- C:\windows\system32\drivers\dxgkrnl.sys
2011-05-06 09:53:39 ----A---- C:\windows\system32\BFE.DLL
2011-05-06 09:53:39 ----A---- C:\windows\system32\azroles.dll
2011-05-06 09:53:38 ----A---- C:\windows\SYSWOW64\apphelp.dll
2011-05-06 09:53:38 ----A---- C:\windows\system32\Vault.dll
2011-05-06 09:53:38 ----A---- C:\windows\system32\samsrv.dll
2011-05-06 09:53:38 ----A---- C:\windows\system32\DShowRdpFilter.dll
2011-05-06 09:53:38 ----A---- C:\windows\system32\cmd.exe
2011-05-06 09:53:37 ----A---- C:\windows\SYSWOW64\MSVidCtl.dll
2011-05-06 09:53:37 ----A---- C:\windows\system32\lpksetup.exe
2011-05-06 09:53:36 ----A---- C:\windows\SYSWOW64\dbgeng.dll
2011-05-06 09:53:36 ----A---- C:\windows\system32\win32spl.dll
2011-05-06 09:53:36 ----A---- C:\windows\system32\mssvp.dll
2011-05-06 09:53:35 ----A---- C:\windows\SYSWOW64\WindowsCodecs.dll
2011-05-06 09:53:35 ----A---- C:\windows\SYSWOW64\netlogon.dll
2011-05-06 09:53:35 ----A---- C:\windows\SYSWOW64\netcfgx.dll
2011-05-06 09:53:35 ----A---- C:\windows\SYSWOW64\d3d11.dll
2011-05-06 09:53:34 ----A---- C:\windows\SYSWOW64\WMVDECOD.DLL
2011-05-06 09:53:34 ----A---- C:\windows\SYSWOW64\webio.dll
2011-05-06 09:53:34 ----A---- C:\windows\SYSWOW64\Query.dll
2011-05-06 09:53:34 ----A---- C:\windows\system32\Wldap32.dll
2011-05-06 09:53:34 ----A---- C:\windows\system32\WindowsCodecs.dll
2011-05-06 09:53:34 ----A---- C:\windows\system32\WebClnt.dll
2011-05-06 09:53:34 ----A---- C:\windows\system32\sxs.dll
2011-05-06 09:53:34 ----A---- C:\windows\system32\drivers\vhdmp.sys
2011-05-06 09:53:33 ----A---- C:\windows\SYSWOW64\WsmSvc.dll
2011-05-06 09:53:33 ----A---- C:\windows\SYSWOW64\upnp.dll
2011-05-06 09:53:33 ----A---- C:\windows\SYSWOW64\schannel.dll
2011-05-06 09:53:33 ----A---- C:\windows\SYSWOW64\DShowRdpFilter.dll
2011-05-06 09:53:33 ----A---- C:\windows\SYSWOW64\advapi32.dll
2011-05-06 09:53:33 ----A---- C:\windows\system32\taskcomp.dll
2011-05-06 09:53:33 ----A---- C:\windows\system32\pnidui.dll
2011-05-06 09:53:33 ----A---- C:\windows\system32\mfds.dll
2011-05-06 09:53:33 ----A---- C:\windows\system32\mcbuilder.exe
2011-05-06 09:53:33 ----A---- C:\windows\system32\ipsmsnap.dll
2011-05-06 09:53:33 ----A---- C:\windows\system32\hgprint.dll
2011-05-06 09:53:32 ----A---- C:\windows\SYSWOW64\netfxperf.dll
2011-05-06 09:53:32 ----A---- C:\windows\SYSWOW64\msv1_0.dll
2011-05-06 09:53:32 ----A---- C:\windows\SYSWOW64\mmcndmgr.dll
2011-05-06 09:53:32 ----A---- C:\windows\SYSWOW64\imapi2fs.dll
2011-05-06 09:53:32 ----A---- C:\windows\system32\wuaueng.dll
2011-05-06 09:53:32 ----A---- C:\windows\system32\webservices.dll
2011-05-06 09:53:32 ----A---- C:\windows\system32\SessEnv.dll
2011-05-06 09:53:31 ----A---- C:\windows\SYSWOW64\SessEnv.dll
2011-05-06 09:53:31 ----A---- C:\windows\SYSWOW64\PortableDeviceApi.dll
2011-05-06 09:53:31 ----A---- C:\windows\SYSWOW64\msdrm.dll
2011-05-06 09:53:31 ----A---- C:\windows\SYSWOW64\authui.dll
2011-05-06 09:53:31 ----A---- C:\windows\system32\winsta.dll
2011-05-06 09:53:31 ----A---- C:\windows\system32\sqlsrv32.dll
2011-05-06 09:53:31 ----A---- C:\windows\system32\spoolsv.exe
2011-05-06 09:53:31 ----A---- C:\windows\system32\iepeers.dll
2011-05-06 09:53:31 ----A---- C:\windows\system32\fveapi.dll
2011-05-06 09:53:31 ----A---- C:\windows\system32\dot3api.dll
2011-05-06 09:53:30 ----A---- C:\windows\SYSWOW64\usp10.dll
2011-05-06 09:53:30 ----A---- C:\windows\SYSWOW64\shlwapi.dll
2011-05-06 09:53:30 ----A---- C:\windows\SYSWOW64\mcbuilder.exe
2011-05-06 09:53:30 ----A---- C:\windows\system32\prncache.dll
2011-05-06 09:53:30 ----A---- C:\windows\system32\gdi32.dll
2011-05-06 09:53:30 ----A---- C:\windows\system32\drivers\volsnap.sys
2011-05-06 09:53:30 ----A---- C:\windows\system32\drivers\msrpc.sys
2011-05-06 09:53:29 ----A---- C:\windows\SYSWOW64\userenv.dll
2011-05-06 09:53:29 ----A---- C:\windows\SYSWOW64\certmgr.dll
2011-05-06 09:53:29 ----A---- C:\windows\system32\wuapi.dll
2011-05-06 09:53:29 ----A---- C:\windows\system32\WMNetMgr.dll
2011-05-06 09:53:29 ----A---- C:\windows\system32\wlanpref.dll
2011-05-06 09:53:29 ----A---- C:\windows\system32\vpnike.dll
2011-05-06 09:53:29 ----A---- C:\windows\system32\schtasks.exe
2011-05-06 09:53:29 ----A---- C:\windows\system32\mcmde.dll
2011-05-06 09:53:28 ----A---- C:\windows\SYSWOW64\xpsservices.dll
2011-05-06 09:53:28 ----A---- C:\windows\SYSWOW64\WebClnt.dll
2011-05-06 09:53:28 ----A---- C:\windows\SYSWOW64\kernel32.dll
2011-05-06 09:53:28 ----A---- C:\windows\SYSWOW64\d3d10_1core.dll
2011-05-06 09:53:28 ----A---- C:\windows\system32\wintrust.dll
2011-05-06 09:53:28 ----A---- C:\windows\system32\userenv.dll
2011-05-06 09:53:28 ----A---- C:\windows\system32\photowiz.dll
2011-05-06 09:53:28 ----A---- C:\windows\system32\evr.dll
2011-05-06 09:53:28 ----A---- C:\windows\system32\drivers\rdbss.sys
2011-05-06 09:53:28 ----A---- C:\windows\system32\drivers\1394ohci.sys
2011-05-06 09:53:27 ----A---- C:\windows\SYSWOW64\comdlg32.dll
2011-05-06 09:53:27 ----A---- C:\windows\system32\wmpmde.dll
2011-05-06 09:53:27 ----A---- C:\windows\system32\sppobjs.dll
2011-05-06 09:53:27 ----A---- C:\windows\system32\IPSECSVC.DLL
2011-05-06 09:53:27 ----A---- C:\windows\system32\FXSSVC.exe
2011-05-06 09:53:27 ----A---- C:\windows\system32\framedyn.dll
2011-05-06 09:53:27 ----A---- C:\windows\system32\AudioSes.dll
2011-05-06 09:53:27 ----A---- C:\windows\system32\aepdu.dll
2011-05-06 09:53:26 ----A---- C:\windows\SYSWOW64\cmd.exe
2011-05-06 09:53:26 ----A---- C:\windows\system32\WMPEncEn.dll
2011-05-06 09:53:26 ----A---- C:\windows\system32\wmpeffects.dll
2011-05-06 09:53:26 ----A---- C:\windows\system32\SyncCenter.dll
2011-05-06 09:53:26 ----A---- C:\windows\system32\srvsvc.dll
2011-05-06 09:53:26 ----A---- C:\windows\system32\mfreadwrite.dll
2011-05-06 09:53:25 ----A---- C:\windows\SYSWOW64\win32spl.dll
2011-05-06 09:53:25 ----A---- C:\windows\SYSWOW64\propsys.dll
2011-05-06 09:53:25 ----A---- C:\windows\SYSWOW64\framedynos.dll
2011-05-06 09:53:25 ----A---- C:\windows\system32\shsvcs.dll
2011-05-06 09:53:25 ----A---- C:\windows\system32\fde.dll
2011-05-06 09:53:25 ----A---- C:\windows\system32\aeinv.dll
2011-05-06 09:53:24 ----A---- C:\windows\SYSWOW64\Wldap32.dll
2011-05-06 09:53:24 ----A---- C:\windows\SYSWOW64\mfds.dll
2011-05-06 09:53:24 ----A---- C:\windows\system32\WinSATAPI.dll
2011-05-06 09:53:24 ----A---- C:\windows\system32\stobject.dll
2011-05-06 09:53:24 ----A---- C:\windows\system32\netdiagfx.dll
2011-05-06 09:53:24 ----A---- C:\windows\system32\localsec.dll
2011-05-06 09:53:24 ----A---- C:\windows\system32\imapi2.dll
2011-05-06 09:53:24 ----A---- C:\windows\system32\credui.dll
2011-05-06 09:53:24 ----A---- C:\windows\system32\cdd.dll
2011-05-06 09:53:24 ----A---- C:\windows\system32\bcryptprimitives.dll
2011-05-06 09:53:23 ----A---- C:\windows\SYSWOW64\user32.dll
2011-05-06 09:53:23 ----A---- C:\windows\system32\tcpipcfg.dll
2011-05-06 09:53:23 ----A---- C:\windows\system32\QSHVHOST.DLL
2011-05-06 09:53:23 ----A---- C:\windows\system32\netid.dll
2011-05-06 09:53:23 ----A---- C:\windows\system32\iphlpsvc.dll
2011-05-06 09:53:23 ----A---- C:\windows\system32\inetpp.dll
2011-05-06 09:53:23 ----A---- C:\windows\system32\drivers\udfs.sys
2011-05-06 09:53:23 ----A---- C:\windows\system32\drivers\fltMgr.sys
2011-05-06 09:53:23 ----A---- C:\windows\system32\davclnt.dll
2011-05-06 09:53:22 ----A---- C:\windows\SYSWOW64\ncsi.dll
2011-05-06 09:53:22 ----A---- C:\windows\SYSWOW64\azroles.dll
2011-05-06 09:53:22 ----A---- C:\windows\system32\spp.dll
2011-05-06 09:53:22 ----A---- C:\windows\system32\profsvc.dll
2011-05-06 09:53:22 ----A---- C:\windows\system32\msinfo32.exe
2011-05-06 09:53:22 ----A---- C:\windows\system32\gameux.dll
2011-05-06 09:53:22 ----A---- C:\windows\system32\biocpl.dll
2011-05-06 09:53:21 ----A---- C:\windows\SYSWOW64\themeui.dll
2011-05-06 09:53:21 ----A---- C:\windows\SYSWOW64\taskeng.exe
2011-05-06 09:53:21 ----A---- C:\windows\SYSWOW64\spp.dll
2011-05-06 09:53:21 ----A---- C:\windows\SYSWOW64\mswsock.dll
2011-05-06 09:53:21 ----A---- C:\windows\SYSWOW64\dhcpcore.dll
2011-05-06 09:53:21 ----A---- C:\windows\SYSWOW64\credui.dll
2011-05-06 09:53:21 ----A---- C:\windows\system32\scansetting.dll
2011-05-06 09:53:21 ----A---- C:\windows\system32\printui.dll
2011-05-06 09:53:21 ----A---- C:\windows\system32\pla.dll
2011-05-06 09:53:21 ----A---- C:\windows\system32\mspbda.dll
2011-05-06 09:53:21 ----A---- C:\windows\system32\conhost.exe
2011-05-06 09:53:21 ----A---- C:\windows\splwow64.exe
2011-05-06 09:53:20 ----A---- C:\windows\SYSWOW64\wintrust.dll
2011-05-06 09:53:20 ----A---- C:\windows\system32\wusa.exe
2011-05-06 09:53:20 ----A---- C:\windows\system32\wiaservc.dll
2011-05-06 09:53:20 ----A---- C:\windows\system32\vds.exe
2011-05-06 09:53:20 ----A---- C:\windows\system32\msdri.dll
2011-05-06 09:53:20 ----A---- C:\windows\system32\IPHLPAPI.DLL
2011-05-06 09:53:20 ----A---- C:\windows\system32\drivers\pci.sys
2011-05-06 09:53:20 ----A---- C:\windows\system32\aitagent.exe
2011-05-06 09:53:19 ----A---- C:\windows\SYSWOW64\NaturalLanguage6.dll
2011-05-06 09:53:19 ----A---- C:\windows\SYSWOW64\msxml3.dll
2011-05-06 09:53:19 ----A---- C:\windows\SYSWOW64\mfreadwrite.dll
2011-05-06 09:53:19 ----A---- C:\windows\SYSWOW64\dxgi.dll
2011-05-06 09:53:19 ----A---- C:\windows\SYSWOW64\dbghelp.dll
2011-05-06 09:53:19 ----A---- C:\windows\SYSWOW64\basecsp.dll
2011-05-06 09:53:19 ----A---- C:\windows\system32\XpsRasterService.dll
2011-05-06 09:53:19 ----A---- C:\windows\system32\wisptis.exe
2011-05-06 09:53:19 ----A---- C:\windows\system32\rpchttp.dll
2011-05-06 09:53:19 ----A---- C:\windows\system32\msi.dll
2011-05-06 09:53:19 ----A---- C:\windows\system32\mscms.dll
2011-05-06 09:53:19 ----A---- C:\windows\system32\FirewallControlPanel.dll
2011-05-06 09:53:19 ----A---- C:\windows\system32\drivers\rasl2tp.sys
2011-05-06 09:53:19 ----A---- C:\windows\system32\cryptsvc.dll
2011-05-06 09:53:18 ----A---- C:\windows\SYSWOW64\WinSATAPI.dll
2011-05-06 09:53:18 ----A---- C:\windows\SYSWOW64\taskcomp.dll
2011-05-06 09:53:18 ----A---- C:\windows\SYSWOW64\evr.dll
2011-05-06 09:53:18 ----A---- C:\windows\system32\sppwinob.dll
2011-05-06 09:53:18 ----A---- C:\windows\system32\ocsetup.exe
2011-05-06 09:53:18 ----A---- C:\windows\system32\drivers\mrxdav.sys
2011-05-06 09:53:17 ----A---- C:\windows\SYSWOW64\calc.exe
2011-05-06 09:53:17 ----A---- C:\windows\system32\wpdbusenum.dll
2011-05-06 09:53:17 ----A---- C:\windows\system32\rdpcore.dll
2011-05-06 09:53:17 ----A---- C:\windows\system32\ocsetapi.dll
2011-05-06 09:53:17 ----A---- C:\windows\system32\eapp3hst.dll
2011-05-06 09:53:17 ----A---- C:\windows\system32\DXP.dll
2011-05-06 09:53:17 ----A---- C:\windows\system32\drivers\volmgr.sys
2011-05-06 09:53:17 ----A---- C:\windows\system32\ci.dll
2011-05-06 09:53:17 ----A---- C:\windows\system32\cfgmgr32.dll
2011-05-06 09:53:16 ----A---- C:\windows\SYSWOW64\sqlsrv32.dll
2011-05-06 09:53:16 ----A---- C:\windows\system32\wcncsvc.dll
2011-05-06 09:53:16 ----A---- C:\windows\system32\upnp.dll
2011-05-06 09:53:16 ----A---- C:\windows\system32\Robocopy.exe
2011-05-06 09:53:16 ----A---- C:\windows\system32\ntshrui.dll
2011-05-06 09:53:16 ----A---- C:\windows\system32\mprapi.dll
2011-05-06 09:53:16 ----A---- C:\windows\system32\eapphost.dll
2011-05-06 09:53:16 ----A---- C:\windows\system32\drivers\msdsm.sys
2011-05-06 09:53:15 ----A---- C:\windows\SYSWOW64\ws2_32.dll
2011-05-06 09:53:15 ----A---- C:\windows\SYSWOW64\UIRibbon.dll
2011-05-06 09:53:15 ----A---- C:\windows\SYSWOW64\sxs.dll
2011-05-06 09:53:15 ----A---- C:\windows\SYSWOW64\netshell.dll
2011-05-06 09:53:15 ----A---- C:\windows\SYSWOW64\ie4uinit.exe
2011-05-06 09:53:15 ----A---- C:\windows\SYSWOW64\cryptsvc.dll
2011-05-06 09:53:15 ----A---- C:\windows\system32\thumbcache.dll
2011-05-06 09:53:15 ----A---- C:\windows\system32\t2embed.dll
2011-05-06 09:53:15 ----A---- C:\windows\system32\hal.dll
2011-05-06 09:53:15 ----A---- C:\windows\system32\drivers\HpSAMD.sys
2011-05-06 09:53:14 ----A---- C:\windows\SYSWOW64\stobject.dll
2011-05-06 09:53:14 ----A---- C:\windows\SYSWOW64\gdi32.dll
2011-05-06 09:53:14 ----A---- C:\windows\SYSWOW64\comctl32.dll
2011-05-06 09:53:14 ----A---- C:\windows\system32\scecli.dll
2011-05-06 09:53:14 ----A---- C:\windows\system32\PerfCenterCPL.dll
2011-05-06 09:53:14 ----A---- C:\windows\system32\MSMPEG2ENC.DLL
2011-05-06 09:53:14 ----A---- C:\windows\system32\DxpTaskSync.dll
2011-05-06 09:53:14 ----A---- C:\windows\system32\dwmredir.dll
2011-05-06 09:53:14 ----A---- C:\windows\system32\drivers\ksecdd.sys
2011-05-06 09:53:14 ----A---- C:\windows\system32\drivers\fvevol.sys
2011-05-06 09:53:13 ----A---- C:\windows\SYSWOW64\wmpeffects.dll
2011-05-06 09:53:13 ----A---- C:\windows\SYSWOW64\prncache.dll
2011-05-06 09:53:13 ----A---- C:\windows\SYSWOW64\printui.dll
2011-05-06 09:53:13 ----A---- C:\windows\SYSWOW64\msi.dll
2011-05-06 09:53:13 ----A---- C:\windows\system32\themeui.dll
2011-05-06 09:53:13 ----A---- C:\windows\system32\sspicli.dll
2011-05-06 09:53:13 ----A---- C:\windows\system32\puiobj.dll
2011-05-06 09:53:13 ----A---- C:\windows\system32\onex.dll
2011-05-06 09:53:13 ----A---- C:\windows\system32\nlaapi.dll
2011-05-06 09:53:13 ----A---- C:\windows\system32\msasn1.dll
2011-05-06 09:53:13 ----A---- C:\windows\system32\iasrad.dll
2011-05-06 09:53:13 ----A---- C:\windows\system32\DXPTaskRingtone.dll
2011-05-06 09:53:13 ----A---- C:\windows\system32\drivers\ipfltdrv.sys
2011-05-06 09:53:13 ----A---- C:\windows\system32\drivers\Classpnp.sys
2011-05-06 09:53:12 ----A---- C:\windows\SYSWOW64\WSDApi.dll
2011-05-06 09:53:12 ----A---- C:\windows\SYSWOW64\rpchttp.dll
2011-05-06 09:53:12 ----A---- C:\windows\SYSWOW64\net1.exe
2011-05-06 09:53:12 ----A---- C:\windows\system32\wow64.dll
2011-05-06 09:53:12 ----A---- C:\windows\system32\iedkcs32.dll
2011-05-06 09:53:12 ----A---- C:\windows\system32\aaclient.dll
2011-05-06 09:53:11 ----A---- C:\windows\SYSWOW64\scansetting.dll
2011-05-06 09:53:11 ----A---- C:\windows\system32\wlangpui.dll
2011-05-06 09:53:11 ----A---- C:\windows\system32\wdc.dll
2011-05-06 09:53:11 ----A---- C:\windows\system32\scesrv.dll
2011-05-06 09:53:11 ----A---- C:\windows\system32\rasmans.dll
2011-05-06 09:53:10 ----A---- C:\windows\system32\wiadefui.dll
2011-05-06 09:53:10 ----A---- C:\windows\system32\VAN.dll
2011-05-06 09:53:10 ----A---- C:\windows\system32\StructuredQuery.dll
2011-05-06 09:53:10 ----A---- C:\windows\system32\sdengin2.dll
2011-05-06 09:53:10 ----A---- C:\windows\system32\msftedit.dll
2011-05-06 09:53:10 ----A---- C:\windows\system32\dskquoui.dll
2011-05-06 09:53:09 ----A---- C:\windows\SYSWOW64\WMVCORE.DLL
2011-05-06 09:53:09 ----A---- C:\windows\SYSWOW64\wlangpui.dll
2011-05-06 09:53:09 ----A---- C:\windows\SYSWOW64\QSHVHOST.DLL
2011-05-06 09:53:09 ----A---- C:\windows\SYSWOW64\MMDevAPI.dll
2011-05-06 09:53:09 ----A---- C:\windows\SYSWOW64\davclnt.dll
2011-05-06 09:53:09 ----A---- C:\windows\SYSWOW64\aaclient.dll
2011-05-06 09:53:09 ----A---- C:\windows\system32\wucltux.dll
2011-05-06 09:53:09 ----A---- C:\windows\system32\wscapi.dll
2011-05-06 09:53:09 ----A---- C:\windows\system32\SndVol.exe
2011-05-06 09:53:09 ----A---- C:\windows\system32\samcli.dll
2011-05-06 09:53:09 ----A---- C:\windows\system32\regapi.dll
2011-05-06 09:53:09 ----A---- C:\windows\system32\QUTIL.DLL
2011-05-06 09:53:09 ----A---- C:\windows\system32\netcenter.dll
2011-05-06 09:53:09 ----A---- C:\windows\system32\iasacct.dll
2011-05-06 09:53:09 ----A---- C:\windows\system32\drivers\termdd.sys
2011-05-06 09:53:09 ----A---- C:\windows\system32\drivers\partmgr.sys
2011-05-06 09:53:09 ----A---- C:\windows\system32\drivers\ndiswan.sys
2011-05-06 09:53:09 ----A---- C:\windows\system32\consent.exe
2011-05-06 09:53:08 ----A---- C:\windows\SYSWOW64\wpdshext.dll
2011-05-06 09:53:08 ----A---- C:\windows\SYSWOW64\webservices.dll
2011-05-06 09:53:08 ----A---- C:\windows\SYSWOW64\t2embed.dll
2011-05-06 09:53:08 ----A---- C:\windows\SYSWOW64\pnidui.dll
2011-05-06 09:53:08 ----A---- C:\windows\SYSWOW64\fde.dll
2011-05-06 09:53:08 ----A---- C:\windows\system32\WUDFSvc.dll
2011-05-06 09:53:08 ----A---- C:\windows\system32\TabSvc.dll
2011-05-06 09:53:08 ----A---- C:\windows\system32\srchadmin.dll
2011-05-06 09:53:08 ----A---- C:\windows\system32\setupcl.exe
2011-05-06 09:53:08 ----A---- C:\windows\system32\drivers\msahci.sys
2011-05-06 09:53:07 ----A---- C:\windows\SYSWOW64\wuapi.dll
2011-05-06 09:53:07 ----A---- C:\windows\SYSWOW64\wscapi.dll
2011-05-06 09:53:07 ----A---- C:\windows\SYSWOW64\SyncCenter.dll
2011-05-06 09:53:07 ----A---- C:\windows\SYSWOW64\netdiagfx.dll
2011-05-06 09:53:07 ----A---- C:\windows\system32\wksprt.exe
2011-05-06 09:53:07 ----A---- C:\windows\system32\taskhost.exe
2011-05-06 09:53:07 ----A---- C:\windows\system32\rastls.dll
2011-05-06 09:53:07 ----A---- C:\windows\system32\drivers\acpi.sys
2011-05-06 09:53:06 ----A---- C:\windows\SYSWOW64\WinSCard.dll
2011-05-06 09:53:06 ----A---- C:\windows\SYSWOW64\pla.dll
2011-05-06 09:53:06 ----A---- C:\windows\SYSWOW64\msasn1.dll
2011-05-06 09:53:06 ----A---- C:\windows\system32\tapisrv.dll
2011-05-06 09:53:06 ----A---- C:\windows\system32\netiohlp.dll
2011-05-06 09:53:06 ----A---- C:\windows\system32\msconfig.exe
2011-05-06 09:53:06 ----A---- C:\windows\system32\mimefilt.dll
2011-05-06 09:53:06 ----A---- C:\windows\system32\ListSvc.dll
2011-05-06 09:53:06 ----A---- C:\windows\system32\hgcpl.dll

majaaa
Návštěvník
Návštěvník
Příspěvky: 27
Registrován: 14 kvě 2011 08:49

Re: nejde spustit centrum zabezpeceni, security essentials

#2 Příspěvek od majaaa »

2011-05-06 09:53:06 ----A---- C:\windows\system32\drivers\raspptp.sys
2011-05-06 09:53:05 ----A---- C:\windows\SYSWOW64\winsta.dll
2011-05-06 09:53:05 ----A---- C:\windows\SYSWOW64\rdpcore.dll
2011-05-06 09:53:05 ----A---- C:\windows\SYSWOW64\MSMPEG2ENC.DLL
2011-05-06 09:53:05 ----A---- C:\windows\system32\lsmproxy.dll
2011-05-06 09:53:05 ----A---- C:\windows\system32\fdeploy.dll
2011-05-06 09:53:05 ----A---- C:\windows\system32\drivers\sbp2port.sys
2011-05-06 09:53:05 ----A---- C:\windows\system32\drivers\ks.sys
2011-05-06 09:53:05 ----A---- C:\windows\system32\clusapi.dll
2011-05-06 09:53:05 ----A---- C:\windows\system32\basecsp.dll
2011-05-06 09:53:05 ----A---- C:\windows\system32\AuxiliaryDisplayCpl.dll
2011-05-06 09:53:04 ----A---- C:\windows\SYSWOW64\ntshrui.dll
2011-05-06 09:53:04 ----A---- C:\windows\SYSWOW64\imapi2.dll
2011-05-06 09:53:04 ----A---- C:\windows\SYSWOW64\iepeers.dll
2011-05-06 09:53:04 ----A---- C:\windows\system32\TsUsbGDCoInstaller.dll
2011-05-06 09:53:04 ----A---- C:\windows\system32\riched20.dll
2011-05-06 09:53:04 ----A---- C:\windows\system32\mtxclu.dll
2011-05-06 09:53:04 ----A---- C:\windows\system32\drivers\Diskdump.sys
2011-05-06 09:53:03 ----A---- C:\windows\SYSWOW64\gameux.dll
2011-05-06 09:53:03 ----A---- C:\windows\SYSWOW64\DXPTaskRingtone.dll
2011-05-06 09:53:03 ----A---- C:\windows\system32\RpcRtRemote.dll
2011-05-06 09:53:03 ----A---- C:\windows\system32\powercpl.dll
2011-05-06 09:53:03 ----A---- C:\windows\system32\logoncli.dll
2011-05-06 09:53:03 ----A---- C:\windows\system32\drivers\ksecpkg.sys
2011-05-06 09:53:03 ----A---- C:\windows\system32\dnscmmc.dll
2011-05-06 09:53:02 ----A---- C:\windows\SYSWOW64\WMPEncEn.dll
2011-05-06 09:53:02 ----A---- C:\windows\SYSWOW64\winmm.dll
2011-05-06 09:53:02 ----A---- C:\windows\SYSWOW64\shsvcs.dll
2011-05-06 09:53:02 ----A---- C:\windows\SYSWOW64\onex.dll
2011-05-06 09:53:02 ----A---- C:\windows\SYSWOW64\mssvp.dll
2011-05-06 09:53:02 ----A---- C:\windows\system32\themecpl.dll
2011-05-06 09:53:02 ----A---- C:\windows\system32\sharemediacpl.dll
2011-05-06 09:53:02 ----A---- C:\windows\system32\SensorsCpl.dll
2011-05-06 09:53:02 ----A---- C:\windows\system32\nci.dll
2011-05-06 09:53:02 ----A---- C:\windows\system32\eudcedit.exe
2011-05-06 09:53:01 ----A---- C:\windows\SYSWOW64\samcli.dll
2011-05-06 09:53:01 ----A---- C:\windows\SYSWOW64\netiohlp.dll
2011-05-06 09:53:01 ----A---- C:\windows\SYSWOW64\IPHLPAPI.DLL
2011-05-06 09:53:01 ----A---- C:\windows\SYSWOW64\hbaapi.dll
2011-05-06 09:53:01 ----A---- C:\windows\SYSWOW64\autochk.exe
2011-05-06 09:53:01 ----A---- C:\windows\SYSWOW64\autofmt.exe
2011-05-06 09:53:01 ----A---- C:\windows\system32\wkssvc.dll
2011-05-06 09:53:01 ----A---- C:\windows\system32\vpnikeapi.dll
2011-05-06 09:53:01 ----A---- C:\windows\system32\netjoin.dll
2011-05-06 09:53:01 ----A---- C:\windows\system32\Narrator.exe
2011-05-06 09:53:01 ----A---- C:\windows\system32\licmgr10.dll
2011-05-06 09:53:01 ----A---- C:\windows\system32\Faultrep.dll
2011-05-06 09:53:00 ----A---- C:\windows\SYSWOW64\thumbcache.dll
2011-05-06 09:53:00 ----A---- C:\windows\SYSWOW64\regapi.dll
2011-05-06 09:53:00 ----A---- C:\windows\SYSWOW64\proquota.exe
2011-05-06 09:53:00 ----A---- C:\windows\SYSWOW64\msutb.dll
2011-05-06 09:53:00 ----A---- C:\windows\SYSWOW64\msinfo32.exe
2011-05-06 09:53:00 ----A---- C:\windows\SYSWOW64\mimefilt.dll
2011-05-06 09:53:00 ----A---- C:\windows\SYSWOW64\ipsmsnap.dll
2011-05-06 09:53:00 ----A---- C:\windows\SYSWOW64\autoconv.exe
2011-05-06 09:53:00 ----A---- C:\windows\SYSWOW64\AudioSes.dll
2011-05-06 09:53:00 ----A---- C:\windows\system32\sppcomapi.dll
2011-05-06 09:53:00 ----A---- C:\windows\system32\comctl32.dll
2011-05-06 09:53:00 ----A---- C:\windows\system32\cabview.dll
2011-05-06 09:53:00 ----A---- C:\windows\system32\autochk.exe
2011-05-06 09:53:00 ----A---- C:\windows\system32\autofmt.exe
2011-05-06 09:53:00 ----A---- C:\windows\system32\autoconv.exe
2011-05-06 09:52:59 ----A---- C:\windows\SYSWOW64\wcncsvc.dll
2011-05-06 09:52:59 ----A---- C:\windows\SYSWOW64\tcpipcfg.dll
2011-05-06 09:52:59 ----A---- C:\windows\SYSWOW64\srchadmin.dll
2011-05-06 09:52:59 ----A---- C:\windows\SYSWOW64\schtasks.exe
2011-05-06 09:52:59 ----A---- C:\windows\SYSWOW64\powercpl.dll
2011-05-06 09:52:59 ----A---- C:\windows\SYSWOW64\msihnd.dll
2011-05-06 09:52:59 ----A---- C:\windows\SYSWOW64\framedyn.dll
2011-05-06 09:52:59 ----A---- C:\windows\SYSWOW64\eapphost.dll
2011-05-06 09:52:59 ----A---- C:\windows\system32\wwanconn.dll
2011-05-06 09:52:59 ----A---- C:\windows\system32\wpd_ci.dll
2011-05-06 09:52:59 ----A---- C:\windows\system32\wlanui.dll
2011-05-06 09:52:59 ----A---- C:\windows\system32\shsetup.dll
2011-05-06 09:52:59 ----A---- C:\windows\system32\sdclt.exe
2011-05-06 09:52:59 ----A---- C:\windows\system32\prntvpt.dll
2011-05-06 09:52:59 ----A---- C:\windows\system32\nshipsec.dll
2011-05-06 09:52:59 ----A---- C:\windows\system32\fms.dll
2011-05-06 09:52:59 ----A---- C:\windows\system32\drivers\wanarp.sys
2011-05-06 09:52:59 ----A---- C:\windows\system32\bcdsrv.dll
2011-05-06 09:52:59 ----A---- C:\windows\system32\audiodg.exe
2011-05-06 09:52:58 ----A---- C:\windows\SYSWOW64\QAGENT.DLL
2011-05-06 09:52:58 ----A---- C:\windows\SYSWOW64\mscorier.dll
2011-05-06 09:52:58 ----A---- C:\windows\SYSWOW64\AuxiliaryDisplayCpl.dll
2011-05-06 09:52:58 ----A---- C:\windows\system32\mscorier.dll
2011-05-06 09:52:58 ----A---- C:\windows\system32\fontext.dll
2011-05-06 09:52:58 ----A---- C:\windows\system32\drivers\volmgrx.sys
2011-05-06 09:52:58 ----A---- C:\windows\system32\drivers\usbvideo.sys
2011-05-06 09:52:58 ----A---- C:\windows\system32\drivers\scsiport.sys
2011-05-06 09:52:58 ----A---- C:\windows\system32\drivers\BTHUSB.SYS
2011-05-06 09:52:58 ----A---- C:\windows\system32\drivers\bthport.sys
2011-05-06 09:52:58 ----A---- C:\windows\system32\dps.dll
2011-05-06 09:52:57 ----A---- C:\windows\SYSWOW64\wdc.dll
2011-05-06 09:52:57 ----A---- C:\windows\SYSWOW64\StructuredQuery.dll
2011-05-06 09:52:57 ----A---- C:\windows\SYSWOW64\netid.dll
2011-05-06 09:52:57 ----A---- C:\windows\SYSWOW64\actxprxy.dll
2011-05-06 09:52:57 ----A---- C:\windows\system32\qedit.dll
2011-05-06 09:52:57 ----A---- C:\windows\system32\mprddm.dll
2011-05-06 09:52:57 ----A---- C:\windows\system32\mblctr.exe
2011-05-06 09:52:57 ----A---- C:\windows\system32\drivers\hidclass.sys
2011-05-06 09:52:57 ----A---- C:\windows\system32\Display.dll
2011-05-06 09:52:57 ----A---- C:\windows\system32\credssp.dll
2011-05-06 09:52:57 ----A---- C:\windows\system32\batmeter.dll
2011-05-06 09:52:57 ----A---- C:\windows\system32\AxInstSv.dll
2011-05-06 09:52:56 ----A---- C:\windows\SYSWOW64\WMNetMgr.dll
2011-05-06 09:52:56 ----A---- C:\windows\SYSWOW64\wlanpref.dll
2011-05-06 09:52:56 ----A---- C:\windows\SYSWOW64\Vault.dll
2011-05-06 09:52:56 ----A---- C:\windows\SYSWOW64\untfs.dll
2011-05-06 09:52:56 ----A---- C:\windows\SYSWOW64\scesrv.dll
2011-05-06 09:52:56 ----A---- C:\windows\SYSWOW64\RpcRtRemote.dll
2011-05-06 09:52:56 ----A---- C:\windows\SYSWOW64\rastls.dll
2011-05-06 09:52:56 ----A---- C:\windows\SYSWOW64\oleaut32.dll
2011-05-06 09:52:56 ----A---- C:\windows\SYSWOW64\nci.dll
2011-05-06 09:52:56 ----A---- C:\windows\SYSWOW64\licmgr10.dll
2011-05-06 09:52:56 ----A---- C:\windows\system32\wmpsrcwp.dll
2011-05-06 09:52:56 ----A---- C:\windows\system32\rtutils.dll
2011-05-06 09:52:56 ----A---- C:\windows\system32\DiagCpl.dll
2011-05-06 09:52:55 ----A---- C:\windows\SYSWOW64\Robocopy.exe
2011-05-06 09:52:55 ----A---- C:\windows\system32\wpccpl.dll
2011-05-06 09:52:55 ----A---- C:\windows\system32\usercpl.dll
2011-05-06 09:52:55 ----A---- C:\windows\system32\sppsvc.exe
2011-05-06 09:52:55 ----A---- C:\windows\system32\provsvc.dll
2011-05-06 09:52:55 ----A---- C:\windows\system32\MCEWMDRMNDBootstrap.dll
2011-05-06 09:52:55 ----A---- C:\windows\system32\bootres.dll
2011-05-06 09:52:54 ----A---- C:\windows\SYSWOW64\taskmgr.exe
2011-05-06 09:52:54 ----A---- C:\windows\SYSWOW64\mtxclu.dll
2011-05-06 09:52:54 ----A---- C:\windows\SYSWOW64\DxpTaskSync.dll
2011-05-06 09:52:54 ----A---- C:\windows\SYSWOW64\Display.dll
2011-05-06 09:52:54 ----A---- C:\windows\system32\SndVolSSO.dll
2011-05-06 09:52:54 ----A---- C:\windows\system32\rasppp.dll
2011-05-06 09:52:54 ----A---- C:\windows\system32\dxdiagn.dll
2011-05-06 09:52:54 ----A---- C:\windows\system32\drivers\rdyboost.sys
2011-05-06 09:52:54 ----A---- C:\windows\system32\dot3cfg.dll
2011-05-06 09:52:53 ----A---- C:\windows\SYSWOW64\XpsRasterService.dll
2011-05-06 09:52:53 ----A---- C:\windows\SYSWOW64\userinit.exe
2011-05-06 09:52:53 ----A---- C:\windows\SYSWOW64\termmgr.dll
2011-05-06 09:52:53 ----A---- C:\windows\SYSWOW64\puiobj.dll
2011-05-06 09:52:53 ----A---- C:\windows\SYSWOW64\mssphtb.dll
2011-05-06 09:52:53 ----A---- C:\windows\SYSWOW64\eudcedit.exe
2011-05-06 09:52:53 ----A---- C:\windows\system32\taskmgr.exe
2011-05-06 09:52:53 ----A---- C:\windows\system32\shdocvw.dll
2011-05-06 09:52:53 ----A---- C:\windows\system32\proquota.exe
2011-05-06 09:52:53 ----A---- C:\windows\system32\prnfldr.dll
2011-05-06 09:52:53 ----A---- C:\windows\system32\pdh.dll
2011-05-06 09:52:53 ----A---- C:\windows\system32\hbaapi.dll
2011-05-06 09:52:53 ----A---- C:\windows\system32\drivers\mountmgr.sys
2011-05-06 09:52:52 ----A---- C:\windows\SYSWOW64\wiadefui.dll
2011-05-06 09:52:52 ----A---- C:\windows\SYSWOW64\sppcomapi.dll
2011-05-06 09:52:52 ----A---- C:\windows\SYSWOW64\shsetup.dll
2011-05-06 09:52:52 ----A---- C:\windows\SYSWOW64\rasppp.dll
2011-05-06 09:52:52 ----A---- C:\windows\SYSWOW64\logoncli.dll
2011-05-06 09:52:52 ----A---- C:\windows\SYSWOW64\cabview.dll
2011-05-06 09:52:52 ----A---- C:\windows\system32\WPDShServiceObj.dll
2011-05-06 09:52:52 ----A---- C:\windows\system32\userinit.exe
2011-05-06 09:52:52 ----A---- C:\windows\system32\untfs.dll
2011-05-06 09:52:52 ----A---- C:\windows\system32\rdpcorekmts.dll
2011-05-06 09:52:52 ----A---- C:\windows\system32\MSAC3ENC.DLL
2011-05-06 09:52:52 ----A---- C:\windows\system32\drivers\ataport.sys
2011-05-06 09:52:52 ----A---- C:\windows\system32\accessibilitycpl.dll
2011-05-06 09:52:51 ----A---- C:\windows\SYSWOW64\themecpl.dll
2011-05-06 09:52:51 ----A---- C:\windows\SYSWOW64\SensorsCpl.dll
2011-05-06 09:52:51 ----A---- C:\windows\SYSWOW64\FWPUCLNT.DLL
2011-05-06 09:52:51 ----A---- C:\windows\SYSWOW64\FirewallControlPanel.dll
2011-05-06 09:52:51 ----A---- C:\windows\system32\webcheck.dll
2011-05-06 09:52:51 ----A---- C:\windows\system32\slui.exe
2011-05-06 09:52:50 ----A---- C:\windows\SYSWOW64\hgcpl.dll
2011-05-06 09:52:50 ----A---- C:\windows\SYSWOW64\dnscmmc.dll
2011-05-06 09:52:50 ----A---- C:\windows\system32\zipfldr.dll
2011-05-06 09:52:50 ----A---- C:\windows\system32\msieftp.dll
2011-05-06 09:52:50 ----A---- C:\windows\system32\defaultlocationcpl.dll
2011-05-06 09:52:49 ----A---- C:\windows\SYSWOW64\tapisrv.dll
2011-05-06 09:52:49 ----A---- C:\windows\SYSWOW64\scecli.dll
2011-05-06 09:52:49 ----A---- C:\windows\SYSWOW64\mscories.dll
2011-05-06 09:52:49 ----A---- C:\windows\SYSWOW64\mscms.dll
2011-05-06 09:52:49 ----A---- C:\windows\SYSWOW64\mprddm.dll
2011-05-06 09:52:49 ----A---- C:\windows\SYSWOW64\localsec.dll
2011-05-06 09:52:49 ----A---- C:\windows\SYSWOW64\iasacct.dll
2011-05-06 09:52:49 ----A---- C:\windows\SYSWOW64\fontext.dll
2011-05-06 09:52:49 ----A---- C:\windows\system32\sud.dll
2011-05-06 09:52:49 ----A---- C:\windows\system32\networkmap.dll
2011-05-06 09:52:49 ----A---- C:\windows\system32\drivers\tssecsrv.sys
2011-05-06 09:52:49 ----A---- C:\windows\system32\dot3svc.dll
2011-05-06 09:52:49 ----A---- C:\windows\system32\DeviceCenter.dll
2011-05-06 09:52:48 ----A---- C:\windows\system32\taskbarcpl.dll
2011-05-06 09:52:48 ----A---- C:\windows\system32\OnLineIDCpl.dll
2011-05-06 09:52:48 ----A---- C:\windows\system32\cryptui.dll
2011-05-06 09:52:47 ----A---- C:\windows\SYSWOW64\wlanui.dll
2011-05-06 09:52:47 ----A---- C:\windows\SYSWOW64\VAN.dll
2011-05-06 09:52:47 ----A---- C:\windows\SYSWOW64\usercpl.dll
2011-05-06 09:52:47 ----A---- C:\windows\SYSWOW64\SndVolSSO.dll
2011-05-06 09:52:47 ----A---- C:\windows\SYSWOW64\SndVol.exe
2011-05-06 09:52:47 ----A---- C:\windows\SYSWOW64\qedit.dll
2011-05-06 09:52:47 ----A---- C:\windows\SYSWOW64\qdvd.dll
2011-05-06 09:52:47 ----A---- C:\windows\SYSWOW64\prntvpt.dll
2011-05-06 09:52:47 ----A---- C:\windows\SYSWOW64\PerfCenterCPL.dll
2011-05-06 09:52:47 ----A---- C:\windows\SYSWOW64\netcenter.dll
2011-05-06 09:52:47 ----A---- C:\windows\SYSWOW64\batmeter.dll
2011-05-06 09:52:47 ----A---- C:\windows\system32\twext.dll
2011-05-06 09:52:47 ----A---- C:\windows\system32\srcore.dll
2011-05-06 09:52:47 ----A---- C:\windows\system32\rdpwsx.dll
2011-05-06 09:52:47 ----A---- C:\windows\system32\qdvd.dll
2011-05-06 09:52:47 ----A---- C:\windows\system32\OobeFldr.dll
2011-05-06 09:52:47 ----A---- C:\windows\system32\bcdedit.exe
2011-05-06 09:52:47 ----A---- C:\windows\system32\ActionCenter.dll
2011-05-06 09:52:46 ----A---- C:\windows\SYSWOW64\w32tm.exe
2011-05-06 09:52:46 ----A---- C:\windows\SYSWOW64\spwizeng.dll
2011-05-06 09:52:46 ----A---- C:\windows\SYSWOW64\azroleui.dll
2011-05-06 09:52:46 ----A---- C:\windows\SYSWOW64\accessibilitycpl.dll
2011-05-06 09:52:46 ----A---- C:\windows\system32\uxlib.dll
2011-05-06 09:52:46 ----A---- C:\windows\system32\tzutil.exe
2011-05-06 09:52:46 ----A---- C:\windows\system32\sisbkup.dll
2011-05-06 09:52:46 ----A---- C:\windows\system32\recovery.dll
2011-05-06 09:52:46 ----A---- C:\windows\system32\MediaMetadataHandler.dll
2011-05-06 09:52:46 ----A---- C:\windows\system32\isoburn.exe
2011-05-06 09:52:46 ----A---- C:\windows\system32\efscore.dll
2011-05-06 09:52:46 ----A---- C:\windows\system32\dsuiext.dll
2011-05-06 09:52:46 ----A---- C:\windows\system32\drivers\hwpolicy.sys
2011-05-06 09:52:46 ----A---- C:\windows\system32\drivers\FWPKCLNT.SYS
2011-05-06 09:52:46 ----A---- C:\windows\system32\cca.dll
2011-05-06 09:52:46 ----A---- C:\windows\system32\azroleui.dll
2011-05-06 09:52:46 ----A---- C:\windows\system32\asycfilt.dll
2011-05-06 09:52:45 ----A---- C:\windows\SYSWOW64\zipfldr.dll
2011-05-06 09:52:45 ----A---- C:\windows\SYSWOW64\netjoin.dll
2011-05-06 09:52:45 ----A---- C:\windows\SYSWOW64\MSAC3ENC.DLL
2011-05-06 09:52:45 ----A---- C:\windows\SYSWOW64\fdeploy.dll
2011-05-06 09:52:45 ----A---- C:\windows\SYSWOW64\cryptui.dll
2011-05-06 09:52:45 ----A---- C:\windows\SYSWOW64\adsldp.dll
2011-05-06 09:52:45 ----A---- C:\windows\system32\systemcpl.dll
2011-05-06 09:52:45 ----A---- C:\windows\system32\syncui.dll
2011-05-06 09:52:45 ----A---- C:\windows\system32\shwebsvc.dll
2011-05-06 09:52:45 ----A---- C:\windows\system32\sdcpl.dll
2011-05-06 09:52:45 ----A---- C:\windows\system32\recdisc.exe
2011-05-06 09:52:45 ----A---- C:\windows\system32\netplwiz.dll
2011-05-06 09:52:45 ----A---- C:\windows\system32\httpapi.dll
2011-05-06 09:52:45 ----A---- C:\windows\system32\drivers\mpio.sys
2011-05-06 09:52:45 ----A---- C:\windows\system32\autoplay.dll
2011-05-06 09:52:44 ----A---- C:\windows\SYSWOW64\wusa.exe
2011-05-06 09:52:44 ----A---- C:\windows\SYSWOW64\networkmap.dll
2011-05-06 09:52:44 ----A---- C:\windows\SYSWOW64\MCEWMDRMNDBootstrap.dll
2011-05-06 09:52:44 ----A---- C:\windows\SYSWOW64\Faultrep.dll
2011-05-06 09:52:44 ----A---- C:\windows\SYSWOW64\cfgmgr32.dll
2011-05-06 09:52:44 ----A---- C:\windows\system32\wlanmsm.dll
2011-05-06 09:52:44 ----A---- C:\windows\system32\sysclass.dll
2011-05-06 09:52:44 ----A---- C:\windows\system32\sspisrv.dll
2011-05-06 09:52:44 ----A---- C:\windows\system32\sdrsvc.dll
2011-05-06 09:52:44 ----A---- C:\windows\system32\ncryptui.dll
2011-05-06 09:52:44 ----A---- C:\windows\system32\msvidc32.dll
2011-05-06 09:52:44 ----A---- C:\windows\system32\certcli.dll
2011-05-06 09:52:44 ----A---- C:\windows\system32\AuxiliaryDisplayServices.dll
2011-05-06 09:52:44 ----A---- C:\windows\system32\appinfo.dll
2011-05-06 09:52:44 ----A---- C:\windows\system32\ActionCenterCPL.dll
2011-05-06 09:52:43 ----A---- C:\windows\SYSWOW64\sud.dll
2011-05-06 09:52:43 ----A---- C:\windows\SYSWOW64\prnfldr.dll
2011-05-06 09:52:43 ----A---- C:\windows\SYSWOW64\photowiz.dll
2011-05-06 09:52:43 ----A---- C:\windows\SYSWOW64\OnLineIDCpl.dll
2011-05-06 09:52:43 ----A---- C:\windows\SYSWOW64\msieftp.dll
2011-05-06 09:52:43 ----A---- C:\windows\SYSWOW64\MediaMetadataHandler.dll
2011-05-06 09:52:43 ----A---- C:\windows\SYSWOW64\credssp.dll
2011-05-06 09:52:43 ----A---- C:\windows\SYSWOW64\ActionCenter.dll
2011-05-06 09:52:43 ----A---- C:\windows\system32\vdsutil.dll
2011-05-06 09:52:43 ----A---- C:\windows\system32\termmgr.dll
2011-05-06 09:52:43 ----A---- C:\windows\system32\spwizeng.dll
2011-05-06 09:52:43 ----A---- C:\windows\system32\msscp.dll
2011-05-06 09:52:43 ----A---- C:\windows\system32\mshtmled.dll
2011-05-06 09:52:43 ----A---- C:\windows\system32\msfeedsbs.dll
2011-05-06 09:52:43 ----A---- C:\windows\system32\MFPlay.dll
2011-05-06 09:52:42 ----A---- C:\windows\SYSWOW64\sisbkup.dll
2011-05-06 09:52:42 ----A---- C:\windows\SYSWOW64\iprtrmgr.dll
2011-05-06 09:52:42 ----A---- C:\windows\SYSWOW64\ifsutil.dll
2011-05-06 09:52:42 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2011-05-06 09:52:42 ----A---- C:\windows\SYSWOW64\iasrad.dll
2011-05-06 09:52:42 ----A---- C:\windows\SYSWOW64\ftp.exe
2011-05-06 09:52:42 ----A---- C:\windows\SYSWOW64\dot3cfg.dll
2011-05-06 09:52:42 ----A---- C:\windows\SYSWOW64\defaultlocationcpl.dll
2011-05-06 09:52:42 ----A---- C:\windows\system32\tsgqec.dll
2011-05-06 09:52:42 ----A---- C:\windows\system32\sqlcese30.dll
2011-05-06 09:52:42 ----A---- C:\windows\system32\SmartcardCredentialProvider.dll
2011-05-06 09:52:42 ----A---- C:\windows\system32\sethc.exe
2011-05-06 09:52:42 ----A---- C:\windows\system32\rstrui.exe
2011-05-06 09:52:42 ----A---- C:\windows\system32\ReAgent.dll
2011-05-06 09:52:42 ----A---- C:\windows\system32\odbccp32.dll
2011-05-06 09:52:42 ----A---- C:\windows\system32\ntlanman.dll
2011-05-06 09:52:41 ----A---- C:\windows\SYSWOW64\syncui.dll
2011-05-06 09:52:41 ----A---- C:\windows\SYSWOW64\shwebsvc.dll
2011-05-06 09:52:41 ----A---- C:\windows\SYSWOW64\odbcjt32.dll
2011-05-06 09:52:41 ----A---- C:\windows\SYSWOW64\iesysprep.dll
2011-05-06 09:52:41 ----A---- C:\windows\SYSWOW64\efscore.dll
2011-05-06 09:52:41 ----A---- C:\windows\SYSWOW64\autoplay.dll
2011-05-06 09:52:41 ----A---- C:\windows\SYSWOW64\ActionCenterCPL.dll
2011-05-06 09:52:41 ----A---- C:\windows\system32\wwanprotdim.dll
2011-05-06 09:52:41 ----A---- C:\windows\system32\wmdrmsdk.dll
2011-05-06 09:52:41 ----A---- C:\windows\system32\UserAccountControlSettings.dll
2011-05-06 09:52:41 ----A---- C:\windows\system32\slwga.dll
2011-05-06 09:52:41 ----A---- C:\windows\system32\secur32.dll
2011-05-06 09:52:41 ----A---- C:\windows\system32\rdpd3d.dll
2011-05-06 09:52:41 ----A---- C:\windows\system32\odbctrac.dll
2011-05-06 09:52:41 ----A---- C:\windows\system32\iyuv_32.dll
2011-05-06 09:52:41 ----A---- C:\windows\system32\iTVData.dll
2011-05-06 09:52:41 ----A---- C:\windows\system32\iprtrmgr.dll
2011-05-06 09:52:41 ----A---- C:\windows\system32\drivers\ndproxy.sys
2011-05-06 09:52:40 ----A---- C:\windows\SYSWOW64\wmpmde.dll
2011-05-06 09:52:40 ----A---- C:\windows\SYSWOW64\systemcpl.dll
2011-05-06 09:52:40 ----A---- C:\windows\SYSWOW64\rtutils.dll
2011-05-06 09:52:40 ----A---- C:\windows\SYSWOW64\OobeFldr.dll
2011-05-06 09:52:40 ----A---- C:\windows\SYSWOW64\ntprint.dll
2011-05-06 09:52:40 ----A---- C:\windows\SYSWOW64\ntlanman.dll
2011-05-06 09:52:40 ----A---- C:\windows\SYSWOW64\dskquoui.dll
2011-05-06 09:52:40 ----A---- C:\windows\SYSWOW64\DeviceCenter.dll
2011-05-06 09:52:40 ----A---- C:\windows\system32\wavemsp.dll
2011-05-06 09:52:40 ----A---- C:\windows\system32\srvcli.dll
2011-05-06 09:52:40 ----A---- C:\windows\system32\ntprint.dll
2011-05-06 09:52:40 ----A---- C:\windows\system32\nslookup.exe
2011-05-06 09:52:40 ----A---- C:\windows\system32\NAPHLPR.DLL
2011-05-06 09:52:40 ----A---- C:\windows\system32\msiexec.exe
2011-05-06 09:52:40 ----A---- C:\windows\system32\drmmgrtn.dll
2011-05-06 09:52:40 ----A---- C:\windows\system32\DevicePairingFolder.dll
2011-05-06 09:52:40 ----A---- C:\windows\system32\acppage.dll
2011-05-06 09:52:39 ----A---- C:\windows\SYSWOW64\wmpsrcwp.dll
2011-05-06 09:52:39 ----A---- C:\windows\SYSWOW64\SmartcardCredentialProvider.dll
2011-05-06 09:52:39 ----A---- C:\windows\SYSWOW64\sethc.exe
2011-05-06 09:52:39 ----A---- C:\windows\SYSWOW64\riched20.dll
2011-05-06 09:52:39 ----A---- C:\windows\SYSWOW64\nshwfp.dll
2011-05-06 09:52:39 ----A---- C:\windows\SYSWOW64\netplwiz.dll
2011-05-06 09:52:39 ----A---- C:\windows\SYSWOW64\NAPHLPR.DLL
2011-05-06 09:52:39 ----A---- C:\windows\SYSWOW64\migisol.dll
2011-05-06 09:52:39 ----A---- C:\windows\SYSWOW64\fms.dll
2011-05-06 09:52:39 ----A---- C:\windows\SYSWOW64\blackbox.dll
2011-05-06 09:52:39 ----A---- C:\windows\SYSWOW64\activeds.dll
2011-05-06 09:52:39 ----A---- C:\windows\system32\TSpkg.dll
2011-05-06 09:52:39 ----A---- C:\windows\system32\srrstr.dll
2011-05-06 09:52:39 ----A---- C:\windows\system32\sppnp.dll
2011-05-06 09:52:39 ----A---- C:\windows\system32\fsquirt.exe
2011-05-06 09:52:39 ----A---- C:\windows\system32\certprop.dll
2011-05-06 09:52:39 ----A---- C:\windows\system32\bcdboot.exe
2011-05-06 09:52:38 ----A---- C:\windows\SYSWOW64\nshipsec.dll
2011-05-06 09:52:38 ----A---- C:\windows\SYSWOW64\nlaapi.dll
2011-05-06 09:52:38 ----A---- C:\windows\SYSWOW64\httpapi.dll
2011-05-06 09:52:38 ----A---- C:\windows\SYSWOW64\cdosys.dll
2011-05-06 09:52:38 ----A---- C:\windows\SYSWOW64\asycfilt.dll
2011-05-06 09:52:38 ----A---- C:\windows\system32\wkscli.dll
2011-05-06 09:52:38 ----A---- C:\windows\system32\remotepg.dll
2011-05-06 09:52:38 ----A---- C:\windows\system32\networkexplorer.dll
2011-05-06 09:52:38 ----A---- C:\windows\system32\dfrgui.exe
2011-05-06 09:52:38 ----A---- C:\windows\system32\cdosys.dll
2011-05-06 09:52:38 ----A---- C:\windows\system32\cabinet.dll
2011-05-06 09:52:37 ----A---- C:\windows\SYSWOW64\wuwebv.dll
2011-05-06 09:52:37 ----A---- C:\windows\SYSWOW64\wlanmsm.dll
2011-05-06 09:52:37 ----A---- C:\windows\SYSWOW64\wavemsp.dll
2011-05-06 09:52:37 ----A---- C:\windows\SYSWOW64\ReAgent.dll
2011-05-06 09:52:37 ----A---- C:\windows\SYSWOW64\provsvc.dll
2011-05-06 09:52:37 ----A---- C:\windows\SYSWOW64\msftedit.dll
2011-05-06 09:52:37 ----A---- C:\windows\SYSWOW64\isoburn.exe
2011-05-06 09:52:37 ----A---- C:\windows\SYSWOW64\dot3ui.dll
2011-05-06 09:52:37 ----A---- C:\windows\SYSWOW64\dfrgui.exe
2011-05-06 09:52:37 ----A---- C:\windows\system32\wuwebv.dll
2011-05-06 09:52:37 ----A---- C:\windows\system32\wsnmp32.dll
2011-05-06 09:52:37 ----A---- C:\windows\system32\wmpdxm.dll
2011-05-06 09:52:37 ----A---- C:\windows\system32\WinSCard.dll
2011-05-06 09:52:37 ----A---- C:\windows\system32\net1.exe
2011-05-06 09:52:37 ----A---- C:\windows\system32\ftp.exe
2011-05-06 09:52:36 ----A---- C:\windows\SYSWOW64\tzutil.exe
2011-05-06 09:52:36 ----A---- C:\windows\SYSWOW64\ocsetup.exe
2011-05-06 09:52:36 ----A---- C:\windows\SYSWOW64\KernelBase.dll
2011-05-06 09:52:36 ----A---- C:\windows\SYSWOW64\dsuiext.dll
2011-05-06 09:52:36 ----A---- C:\windows\system32\wvc.dll
2011-05-06 09:52:36 ----A---- C:\windows\system32\wsqmcons.exe
2011-05-06 09:52:36 ----A---- C:\windows\system32\wmdrmdev.dll
2011-05-06 09:52:36 ----A---- C:\windows\system32\WerFaultSecure.exe
2011-05-06 09:52:36 ----A---- C:\windows\system32\blackbox.dll
2011-05-06 09:52:35 ----A---- C:\windows\SYSWOW64\wtsapi32.dll
2011-05-06 09:52:34 ----A---- C:\windows\SYSWOW64\wvc.dll
2011-05-06 09:52:34 ----A---- C:\windows\SYSWOW64\wimgapi.dll
2011-05-06 09:52:34 ----A---- C:\windows\SYSWOW64\twext.dll
2011-05-06 09:52:34 ----A---- C:\windows\SYSWOW64\mstask.dll
2011-05-06 09:52:34 ----A---- C:\windows\system32\msyuv.dll
2011-05-06 09:52:34 ----A---- C:\windows\system32\mfps.dll
2011-05-06 09:52:33 ----A---- C:\windows\twain_32.dll
2011-05-06 09:52:33 ----A---- C:\windows\SYSWOW64\webcheck.dll
2011-05-06 09:52:33 ----A---- C:\windows\SYSWOW64\shdocvw.dll
2011-05-06 09:52:33 ----A---- C:\windows\SYSWOW64\setupugc.exe
2011-05-06 09:52:33 ----A---- C:\windows\SYSWOW64\qcap.dll
2011-05-06 09:52:33 ----A---- C:\windows\SYSWOW64\qasf.dll
2011-05-06 09:52:33 ----A---- C:\windows\SYSWOW64\occache.dll
2011-05-06 09:52:33 ----A---- C:\windows\SYSWOW64\msfeedsbs.dll
2011-05-06 09:52:33 ----A---- C:\windows\system32\WUDFPlatform.dll
2011-05-06 09:52:33 ----A---- C:\windows\system32\unimdmat.dll
2011-05-06 09:52:33 ----A---- C:\windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2011-05-06 09:52:33 ----A---- C:\windows\system32\OpcServices.dll
2011-05-06 09:52:33 ----A---- C:\windows\system32\msrle32.dll
2011-05-06 09:52:33 ----A---- C:\windows\system32\mapistub.dll
2011-05-06 09:52:33 ----A---- C:\windows\system32\mapi32.dll
2011-05-06 09:52:33 ----A---- C:\windows\system32\iscsium.dll
2011-05-06 09:52:33 ----A---- C:\windows\system32\drivers\dxgmms1.sys
2011-05-06 09:52:32 ----A---- C:\windows\SYSWOW64\uxlib.dll
2011-05-06 09:52:32 ----A---- C:\windows\SYSWOW64\slwga.dll
2011-05-06 09:52:32 ----A---- C:\windows\SYSWOW64\msvfw32.dll
2011-05-06 09:52:32 ----A---- C:\windows\SYSWOW64\msrating.dll
2011-05-06 09:52:32 ----A---- C:\windows\SYSWOW64\mciavi32.dll
2011-05-06 09:52:32 ----A---- C:\windows\SYSWOW64\imgutil.dll
2011-05-06 09:52:32 ----A---- C:\windows\SYSWOW64\audiodev.dll
2011-05-06 09:52:32 ----A---- C:\windows\system32\tsbyuv.dll
2011-05-06 09:52:32 ----A---- C:\windows\system32\seclogon.dll
2011-05-06 09:52:32 ----A---- C:\windows\system32\ifsutil.dll
2011-05-06 09:52:32 ----A---- C:\windows\system32\drivers\umbus.sys
2011-05-06 09:52:32 ----A---- C:\windows\system32\diskraid.exe
2011-05-06 09:52:31 ----A---- C:\windows\SYSWOW64\WPDShServiceObj.dll
2011-05-06 09:52:31 ----A---- C:\windows\SYSWOW64\wmdrmsdk.dll
2011-05-06 09:52:31 ----A---- C:\windows\SYSWOW64\wimserv.exe
2011-05-06 09:52:31 ----A---- C:\windows\SYSWOW64\rpcrt4.dll
2011-05-06 09:52:31 ----A---- C:\windows\SYSWOW64\nslookup.exe
2011-05-06 09:52:31 ----A---- C:\windows\SYSWOW64\msscp.dll
2011-05-06 09:52:31 ----A---- C:\windows\SYSWOW64\diskraid.exe
2011-05-06 09:52:31 ----A---- C:\windows\SYSWOW64\DevicePairingFolder.dll
2011-05-06 09:52:31 ----A---- C:\windows\SYSWOW64\clusapi.dll
2011-05-06 09:52:31 ----A---- C:\windows\system32\wmpshell.dll
2011-05-06 09:52:31 ----A---- C:\windows\system32\WindowsAnytimeUpgradeResults.exe
2011-05-06 09:52:31 ----A---- C:\windows\system32\rdpencom.dll
2011-05-06 09:52:31 ----A---- C:\windows\system32\perfmon.exe
2011-05-06 09:52:31 ----A---- C:\windows\system32\netutils.dll
2011-05-06 09:52:31 ----A---- C:\windows\system32\muifontsetup.dll
2011-05-06 09:52:31 ----A---- C:\windows\system32\d3d10level9.dll
2011-05-06 09:52:31 ----A---- C:\windows\system32\AzSqlExt.dll
2011-05-06 09:52:30 ----A---- C:\windows\SYSWOW64\TSpkg.dll
2011-05-06 09:52:30 ----A---- C:\windows\SYSWOW64\remotepg.dll
2011-05-06 09:52:30 ----A---- C:\windows\SYSWOW64\rdpencom.dll
2011-05-06 09:52:30 ----A---- C:\windows\SYSWOW64\raschap.dll
2011-05-06 09:52:30 ----A---- C:\windows\SYSWOW64\perfmon.exe
2011-05-06 09:52:30 ----A---- C:\windows\SYSWOW64\drmmgrtn.dll
2011-05-06 09:52:30 ----A---- C:\windows\SYSWOW64\acppage.dll
2011-05-06 09:52:30 ----A---- C:\windows\system32\umb.dll
2011-05-06 09:52:30 ----A---- C:\windows\system32\tlscsp.dll
2011-05-06 09:52:30 ----A---- C:\windows\system32\runonce.exe
2011-05-06 09:52:30 ----A---- C:\windows\system32\raschap.dll
2011-05-06 09:52:30 ----A---- C:\windows\system32\qasf.dll
2011-05-06 09:52:30 ----A---- C:\windows\system32\NAPCRYPT.DLL
2011-05-06 09:52:30 ----A---- C:\windows\system32\inseng.dll
2011-05-06 09:52:30 ----A---- C:\windows\system32\FXSAPI.dll
2011-05-06 09:52:30 ----A---- C:\windows\system32\dbghelp.dll
2011-05-06 09:52:30 ----A---- C:\windows\system32\browser.dll
2011-05-06 09:52:30 ----A---- C:\windows\system32\ActionQueue.dll
2011-05-06 09:52:30 ----A---- C:\windows\bfsvc.exe
2011-05-06 09:52:29 ----A---- C:\windows\SYSWOW64\wmpdxm.dll
2011-05-06 09:52:29 ----A---- C:\windows\SYSWOW64\vpnikeapi.dll
2011-05-06 09:52:29 ----A---- C:\windows\SYSWOW64\UserAccountControlSettings.dll
2011-05-06 09:52:29 ----A---- C:\windows\SYSWOW64\QUTIL.DLL
2011-05-06 09:52:29 ----A---- C:\windows\SYSWOW64\olepro32.dll
2011-05-06 09:52:29 ----A---- C:\windows\SYSWOW64\odbccp32.dll
2011-05-06 09:52:29 ----A---- C:\windows\SYSWOW64\ocsetapi.dll
2011-05-06 09:52:29 ----A---- C:\windows\SYSWOW64\networkexplorer.dll
2011-05-06 09:52:29 ----A---- C:\windows\SYSWOW64\NAPCRYPT.DLL
2011-05-06 09:52:29 ----A---- C:\windows\SYSWOW64\input.dll
2011-05-06 09:52:29 ----A---- C:\windows\system32\wpdwcn.dll
2011-05-06 09:52:29 ----A---- C:\windows\system32\WMVSDECD.DLL
2011-05-06 09:52:29 ----A---- C:\windows\system32\WMADMOD.DLL
2011-05-06 09:52:29 ----A---- C:\windows\system32\wiavideo.dll
2011-05-06 09:52:29 ----A---- C:\windows\system32\vdsbas.dll
2011-05-06 09:52:29 ----A---- C:\windows\system32\syssetup.dll
2011-05-06 09:52:29 ----A---- C:\windows\system32\PrintIsolationProxy.dll
2011-05-06 09:52:29 ----A---- C:\windows\system32\MdSched.exe
2011-05-06 09:52:28 ----A---- C:\windows\SYSWOW64\wpdwcn.dll
2011-05-06 09:52:28 ----A---- C:\windows\SYSWOW64\vdsbas.dll
2011-05-06 09:52:28 ----A---- C:\windows\SYSWOW64\runonce.exe
2011-05-06 09:52:28 ----A---- C:\windows\SYSWOW64\RegisterIEPKEYs.exe
2011-05-06 09:52:28 ----A---- C:\windows\SYSWOW64\onexui.dll
2011-05-06 09:52:28 ----A---- C:\windows\SYSWOW64\logagent.exe
2011-05-06 09:52:28 ----A---- C:\windows\SYSWOW64\iTVData.dll
2011-05-06 09:52:28 ----A---- C:\windows\SYSWOW64\inseng.dll
2011-05-06 09:52:28 ----A---- C:\windows\SYSWOW64\dxdiagn.dll
2011-05-06 09:52:28 ----A---- C:\windows\system32\nltest.exe
2011-05-06 09:52:28 ----A---- C:\windows\system32\mstask.dll
2011-05-06 09:52:28 ----A---- C:\windows\system32\Mcx2Svc.dll
2011-05-06 09:52:28 ----A---- C:\windows\system32\drivers\tcpipreg.sys
2011-05-06 09:52:28 ----A---- C:\windows\system32\drivers\rmcast.sys
2011-05-06 09:52:27 ----A---- C:\windows\SYSWOW64\wmdrmdev.dll
2011-05-06 09:52:27 ----A---- C:\windows\SYSWOW64\shacct.dll
2011-05-06 09:52:27 ----A---- C:\windows\SYSWOW64\msvidc32.dll
2011-05-06 09:52:27 ----A---- C:\windows\SYSWOW64\msiexec.exe
2011-05-06 09:52:27 ----A---- C:\windows\SYSWOW64\MFPlay.dll
2011-05-06 09:52:27 ----A---- C:\windows\SYSWOW64\eapp3hst.dll
2011-05-06 09:52:27 ----A---- C:\windows\SYSWOW64\d3d10level9.dll
2011-05-06 09:52:27 ----A---- C:\windows\system32\wmdrmnet.dll
2011-05-06 09:52:27 ----A---- C:\windows\system32\vss_ps.dll
2011-05-06 09:52:27 ----A---- C:\windows\system32\tabcal.exe
2011-05-06 09:52:27 ----A---- C:\windows\system32\shacct.dll
2011-05-06 09:52:27 ----A---- C:\windows\system32\QSVRMGMT.DLL
2011-05-06 09:52:27 ----A---- C:\windows\system32\drivers\USBAUDIO.sys
2011-05-06 09:52:27 ----A---- C:\windows\system32\cscapi.dll
2011-05-06 09:52:27 ----A---- C:\windows\system32\bitsadmin.exe
2011-05-06 09:52:26 ----A---- C:\windows\SYSWOW64\wudriver.dll
2011-05-06 09:52:26 ----A---- C:\windows\SYSWOW64\wmpshell.dll
2011-05-06 09:52:26 ----A---- C:\windows\SYSWOW64\unimdmat.dll
2011-05-06 09:52:26 ----A---- C:\windows\SYSWOW64\sqlcese30.dll
2011-05-06 09:52:26 ----A---- C:\windows\SYSWOW64\rdpd3d.dll
2011-05-06 09:52:26 ----A---- C:\windows\SYSWOW64\mprapi.dll
2011-05-06 09:52:26 ----A---- C:\windows\SYSWOW64\lsmproxy.dll
2011-05-06 09:52:26 ----A---- C:\windows\SYSWOW64\iscsium.dll
2011-05-06 09:52:26 ----A---- C:\windows\SYSWOW64\bitsadmin.exe
2011-05-06 09:52:26 ----A---- C:\windows\system32\wudriver.dll
2011-05-06 09:52:26 ----A---- C:\windows\system32\WPDSp.dll
2011-05-06 09:52:26 ----A---- C:\windows\system32\WMSPDMOD.DLL
2011-05-06 09:52:26 ----A---- C:\windows\system32\secproc_ssp_isv.dll
2011-05-06 09:52:26 ----A---- C:\windows\system32\secproc_ssp.dll
2011-05-06 09:52:26 ----A---- C:\windows\system32\qdv.dll
2011-05-06 09:52:26 ----A---- C:\windows\system32\qcap.dll
2011-05-06 09:52:26 ----A---- C:\windows\system32\PortableDeviceSyncProvider.dll
2011-05-06 09:52:26 ----A---- C:\windows\system32\mssphtb.dll
2011-05-06 09:52:26 ----A---- C:\windows\system32\msnetobj.dll
2011-05-06 09:52:26 ----A---- C:\windows\system32\logman.exe
2011-05-06 09:52:25 ----A---- C:\windows\SYSWOW64\WPDSp.dll
2011-05-06 09:52:25 ----A---- C:\windows\SYSWOW64\tsgqec.dll
2011-05-06 09:52:25 ----A---- C:\windows\SYSWOW64\srvcli.dll
2011-05-06 09:52:25 ----A---- C:\windows\SYSWOW64\QSVRMGMT.DLL
2011-05-06 09:52:25 ----A---- C:\windows\SYSWOW64\PortableDeviceSyncProvider.dll
2011-05-06 09:52:25 ----A---- C:\windows\SYSWOW64\PortableDeviceStatus.dll
2011-05-06 09:52:25 ----A---- C:\windows\SYSWOW64\pdh.dll
2011-05-06 09:52:25 ----A---- C:\windows\SYSWOW64\OpcServices.dll
2011-05-06 09:52:25 ----A---- C:\windows\SYSWOW64\olethk32.dll
2011-05-06 09:52:25 ----A---- C:\windows\SYSWOW64\odbctrac.dll
2011-05-06 09:52:25 ----A---- C:\windows\SYSWOW64\ncryptui.dll
2011-05-06 09:52:25 ----A---- C:\windows\SYSWOW64\logman.exe
2011-05-06 09:52:25 ----A---- C:\windows\SYSWOW64\cscapi.dll
2011-05-06 09:52:25 ----A---- C:\windows\system32\takeown.exe
2011-05-06 09:52:25 ----A---- C:\windows\system32\spbcd.dll
2011-05-06 09:52:25 ----A---- C:\windows\system32\RegisterIEPKEYs.exe
2011-05-06 09:52:25 ----A---- C:\windows\system32\PortableDeviceStatus.dll
2011-05-06 09:52:25 ----A---- C:\windows\system32\PnPUnattend.exe
2011-05-06 09:52:25 ----A---- C:\windows\system32\fphc.dll
2011-05-06 09:52:25 ----A---- C:\windows\system32\drivers\ndisuio.sys
2011-05-06 09:52:25 ----A---- C:\windows\system32\dot3ui.dll
2011-05-06 09:52:24 ----A---- C:\windows\SYSWOW64\WMPhoto.dll
2011-05-06 09:52:24 ----A---- C:\windows\SYSWOW64\WMADMOD.DLL
2011-05-06 09:52:24 ----A---- C:\windows\SYSWOW64\wiavideo.dll
2011-05-06 09:52:24 ----A---- C:\windows\SYSWOW64\utildll.dll
2011-05-06 09:52:24 ----A---- C:\windows\SYSWOW64\takeown.exe
2011-05-06 09:52:24 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2011-05-06 09:52:24 ----A---- C:\windows\SYSWOW64\mapistub.dll
2011-05-06 09:52:24 ----A---- C:\windows\SYSWOW64\mapi32.dll
2011-05-06 09:52:24 ----A---- C:\windows\SYSWOW64\iyuv_32.dll
2011-05-06 09:52:24 ----A---- C:\windows\SYSWOW64\fphc.dll
2011-05-06 09:52:24 ----A---- C:\windows\SYSWOW64\dot3msm.dll
2011-05-06 09:52:24 ----A---- C:\windows\SYSWOW64\avifil32.dll
2011-05-06 09:52:24 ----A---- C:\windows\system32\WMPhoto.dll
2011-05-06 09:52:24 ----A---- C:\windows\system32\vfwwdm32.dll
2011-05-06 09:52:24 ----A---- C:\windows\system32\EhStorAPI.dll
2011-05-06 09:52:24 ----A---- C:\windows\system32\amstream.dll
2011-05-06 09:52:23 ----A---- C:\windows\SYSWOW64\WMVSDECD.DLL
2011-05-06 09:52:23 ----A---- C:\windows\SYSWOW64\wmdrmnet.dll
2011-05-06 09:52:23 ----A---- C:\windows\SYSWOW64\sqmapi.dll
2011-05-06 09:52:23 ----A---- C:\windows\SYSWOW64\sppinst.dll
2011-05-06 09:52:23 ----A---- C:\windows\SYSWOW64\qdv.dll
2011-05-06 09:52:23 ----A---- C:\windows\SYSWOW64\msnetobj.dll
2011-05-06 09:52:23 ----A---- C:\windows\SYSWOW64\imagehlp.dll
2011-05-06 09:52:23 ----A---- C:\windows\SYSWOW64\EhStorAPI.dll
2011-05-06 09:52:23 ----A---- C:\windows\system32\WUDFx.dll
2011-05-06 09:52:23 ----A---- C:\windows\system32\WUDFHost.exe
2011-05-06 09:52:23 ----A---- C:\windows\system32\WavDest.dll
2011-05-06 09:52:23 ----A---- C:\windows\system32\shimgvw.dll
2011-05-06 09:52:23 ----A---- C:\windows\system32\QCLIPROV.DLL
2011-05-06 09:52:23 ----A---- C:\windows\system32\nrpsrv.dll
2011-05-06 09:52:23 ----A---- C:\windows\system32\netapi32.dll
2011-05-06 09:52:23 ----A---- C:\windows\system32\iasrecst.dll
2011-05-06 09:52:23 ----A---- C:\windows\system32\HotStartUserAgent.dll
2011-05-06 09:52:23 ----A---- C:\windows\system32\djoin.exe
2011-05-06 09:52:23 ----A---- C:\windows\system32\cmstp.exe
2011-05-06 09:52:23 ----A---- C:\windows\system32\CertPolEng.dll
2011-05-06 09:52:22 ----A---- C:\windows\SYSWOW64\wsnmp32.dll
2011-05-06 09:52:22 ----A---- C:\windows\SYSWOW64\WMSPDMOD.DLL
2011-05-06 09:52:22 ----A---- C:\windows\SYSWOW64\vfwwdm32.dll
2011-05-06 09:52:22 ----A---- C:\windows\SYSWOW64\sspicli.dll
2011-05-06 09:52:22 ----A---- C:\windows\SYSWOW64\setupcln.dll
2011-05-06 09:52:22 ----A---- C:\windows\SYSWOW64\QCLIPROV.DLL
2011-05-06 09:52:22 ----A---- C:\windows\SYSWOW64\pdhui.dll
2011-05-06 09:52:22 ----A---- C:\windows\SYSWOW64\MuiUnattend.exe
2011-05-06 09:52:22 ----A---- C:\windows\SYSWOW64\msyuv.dll
2011-05-06 09:52:22 ----A---- C:\windows\SYSWOW64\msrle32.dll
2011-05-06 09:52:22 ----A---- C:\windows\SYSWOW64\cmstp.exe
2011-05-06 09:52:22 ----A---- C:\windows\SYSWOW64\cca.dll
2011-05-06 09:52:22 ----A---- C:\windows\system32\wuauclt.exe
2011-05-06 09:52:22 ----A---- C:\windows\system32\sscore.dll
2011-05-06 09:52:22 ----A---- C:\windows\system32\relog.exe
2011-05-06 09:52:22 ----A---- C:\windows\system32\mydocs.dll
2011-05-06 09:52:22 ----A---- C:\windows\system32\MultiDigiMon.exe
2011-05-06 09:52:22 ----A---- C:\windows\system32\KMSVC.DLL
2011-05-06 09:52:22 ----A---- C:\windows\system32\fdProxy.dll
2011-05-06 09:52:22 ----A---- C:\windows\system32\drivers\pacer.sys
2011-05-06 09:52:21 ----A---- C:\windows\SYSWOW64\wkscli.dll
2011-05-06 09:52:21 ----A---- C:\windows\SYSWOW64\tsbyuv.dll
2011-05-06 09:52:21 ----A---- C:\windows\SYSWOW64\spbcd.dll
2011-05-06 09:52:21 ----A---- C:\windows\SYSWOW64\relog.exe
2011-05-06 09:52:21 ----A---- C:\windows\SYSWOW64\netiougc.exe
2011-05-06 09:52:21 ----A---- C:\windows\SYSWOW64\mydocs.dll
2011-05-06 09:52:21 ----A---- C:\windows\SYSWOW64\msorcl32.dll
2011-05-06 09:52:21 ----A---- C:\windows\SYSWOW64\iscsicli.exe
2011-05-06 09:52:21 ----A---- C:\windows\SYSWOW64\iasrecst.dll
2011-05-06 09:52:21 ----A---- C:\windows\SYSWOW64\diskpart.exe
2011-05-06 09:52:21 ----A---- C:\windows\SYSWOW64\AzSqlExt.dll
2011-05-06 09:52:21 ----A---- C:\windows\SYSWOW64\amstream.dll
2011-05-06 09:52:21 ----A---- C:\windows\system32\RMActivate_ssp_isv.exe
2011-05-06 09:52:21 ----A---- C:\windows\system32\RMActivate_ssp.exe
2011-05-06 09:52:21 ----A---- C:\windows\system32\msdmo.dll
2011-05-06 09:52:21 ----A---- C:\windows\system32\mobsync.exe
2011-05-06 09:52:21 ----A---- C:\windows\system32\itircl.dll
2011-05-06 09:52:21 ----A---- C:\windows\system32\iscsicli.exe
2011-05-06 09:52:21 ----A---- C:\windows\system32\dot3msm.dll
2011-05-06 09:52:21 ----A---- C:\windows\system32\diskpart.exe
2011-05-06 09:52:21 ----A---- C:\windows\system32\BWUnpairElevated.dll
2011-05-06 09:52:21 ----A---- C:\windows\system32\browcli.dll
2011-05-06 09:52:20 ----A---- C:\windows\SYSWOW64\wuapp.exe
2011-05-06 09:52:20 ----A---- C:\windows\SYSWOW64\wmpps.dll
2011-05-06 09:52:20 ----A---- C:\windows\SYSWOW64\WerFaultSecure.exe
2011-05-06 09:52:20 ----A---- C:\windows\SYSWOW64\tlscsp.dll
2011-05-06 09:52:20 ----A---- C:\windows\SYSWOW64\syssetup.dll
2011-05-06 09:52:20 ----A---- C:\windows\SYSWOW64\secur32.dll
2011-05-06 09:52:20 ----A---- C:\windows\SYSWOW64\secproc_ssp_isv.dll
2011-05-06 09:52:20 ----A---- C:\windows\SYSWOW64\secproc_ssp.dll
2011-05-06 09:52:20 ----A---- C:\windows\SYSWOW64\RMActivate_ssp_isv.exe
2011-05-06 09:52:20 ----A---- C:\windows\SYSWOW64\resutils.dll
2011-05-06 09:52:20 ----A---- C:\windows\SYSWOW64\ReAgentc.exe
2011-05-06 09:52:20 ----A---- C:\windows\SYSWOW64\rastapi.dll
2011-05-06 09:52:20 ----A---- C:\windows\SYSWOW64\netbtugc.exe
2011-05-06 09:52:20 ----A---- C:\windows\SYSWOW64\itircl.dll
2011-05-06 09:52:20 ----A---- C:\windows\SYSWOW64\eappgnui.dll
2011-05-06 09:52:20 ----A---- C:\windows\SYSWOW64\CertPolEng.dll
2011-05-06 09:52:20 ----A---- C:\windows\system32\wuapp.exe
2011-05-06 09:52:20 ----A---- C:\windows\system32\mciqtz32.dll
2011-05-06 09:52:20 ----A---- C:\windows\system32\imagehlp.dll
2011-05-06 09:52:20 ----A---- C:\windows\system32\choice.exe
2011-05-06 09:52:20 ----A---- C:\windows\system32\FXSTIFF.dll
2011-05-06 09:52:20 ----A---- C:\windows\system32\findstr.exe
2011-05-06 09:52:20 ----A---- C:\windows\system32\eappgnui.dll
2011-05-06 09:52:19 ----A---- C:\windows\SYSWOW64\RMActivate_ssp.exe
2011-05-06 09:52:19 ----A---- C:\windows\SYSWOW64\netutils.dll
2011-05-06 09:52:19 ----A---- C:\windows\SYSWOW64\netapi32.dll
2011-05-06 09:52:19 ----A---- C:\windows\SYSWOW64\muifontsetup.dll
2011-05-06 09:52:19 ----A---- C:\windows\SYSWOW64\mobsync.exe
2011-05-06 09:52:19 ----A---- C:\windows\SYSWOW64\mciqtz32.dll
2011-05-06 09:52:19 ----A---- C:\windows\SYSWOW64\iccvid.dll
2011-05-06 09:52:19 ----A---- C:\windows\SYSWOW64\findstr.exe
2011-05-06 09:52:19 ----A---- C:\windows\SYSWOW64\cabinet.dll
2011-05-06 09:52:19 ----A---- C:\windows\system32\wdiasqmmodule.dll
2011-05-06 09:52:19 ----A---- C:\windows\system32\sppc.dll
2011-05-06 09:52:19 ----A---- C:\windows\system32\schedcli.dll
2011-05-06 09:52:19 ----A---- C:\windows\system32\repair-bde.exe
2011-05-06 09:52:19 ----A---- C:\windows\system32\onexui.dll
2011-05-06 09:52:19 ----A---- C:\windows\system32\manage-bde.exe
2011-05-06 09:52:19 ----A---- C:\windows\system32\luainstall.dll
2011-05-06 09:52:19 ----A---- C:\windows\system32\inetmib1.dll
2011-05-06 09:52:19 ----A---- C:\windows\system32\drivers\tunnel.sys
2011-05-06 09:52:19 ----A---- C:\windows\system32\drivers\dfsc.sys
2011-05-06 09:52:18 ----A---- C:\windows\SYSWOW64\unlodctr.exe
2011-05-06 09:52:18 ----A---- C:\windows\SYSWOW64\sppc.dll
2011-05-06 09:52:18 ----A---- C:\windows\SYSWOW64\spopk.dll
2011-05-06 09:52:18 ----A---- C:\windows\SYSWOW64\shimgvw.dll
2011-05-06 09:52:18 ----A---- C:\windows\SYSWOW64\rdprefdrvapi.dll
2011-05-06 09:52:18 ----A---- C:\windows\SYSWOW64\msdmo.dll
2011-05-06 09:52:18 ----A---- C:\windows\SYSWOW64\luainstall.dll
2011-05-06 09:52:18 ----A---- C:\windows\SYSWOW64\inetmib1.dll
2011-05-06 09:52:18 ----A---- C:\windows\system32\WUDFCoinstaller.dll
2011-05-06 09:52:18 ----A---- C:\windows\system32\spopk.dll
2011-05-06 09:52:18 ----A---- C:\windows\system32\RDPENCDD.dll
2011-05-06 09:52:18 ----A---- C:\windows\system32\profprov.dll
2011-05-06 09:52:18 ----A---- C:\windows\system32\odbcconf.dll
2011-05-06 09:52:18 ----A---- C:\windows\system32\fixmapi.exe
2011-05-06 09:52:17 ----A---- C:\windows\SYSWOW64\wups.dll
2011-05-06 09:52:17 ----A---- C:\windows\SYSWOW64\UIRibbonRes.dll
2011-05-06 09:52:17 ----A---- C:\windows\SYSWOW64\perfts.dll
2011-05-06 09:52:17 ----A---- C:\windows\SYSWOW64\odbcconf.dll
2011-05-06 09:52:17 ----A---- C:\windows\SYSWOW64\browcli.dll
2011-05-06 09:52:17 ----A---- C:\windows\system32\wshbth.dll
2011-05-06 09:52:17 ----A---- C:\windows\system32\UIRibbonRes.dll
2011-05-06 09:52:17 ----A---- C:\windows\system32\TRAPI.dll
2011-05-06 09:52:17 ----A---- C:\windows\system32\msfeedssync.exe
2011-05-06 09:52:17 ----A---- C:\windows\system32\FXSMON.dll
2011-05-06 09:52:17 ----A---- C:\windows\system32\elsTrans.dll
2011-05-06 09:52:17 ----A---- C:\windows\system32\drivers\tdi.sys
2011-05-06 09:52:16 ----A---- C:\windows\SYSWOW64\imm32.dll
2011-05-06 09:52:16 ----A---- C:\windows\system32\rdprefdrvapi.dll
2011-05-06 09:52:16 ----A---- C:\windows\system32\napdsnap.dll
2011-05-06 09:52:16 ----A---- C:\windows\system32\LogonUI.exe
2011-05-06 09:52:16 ----A---- C:\windows\system32\dsauth.dll
2011-05-06 09:52:15 ----A---- C:\windows\SYSWOW64\wshbth.dll
2011-05-06 09:52:15 ----A---- C:\windows\SYSWOW64\TRAPI.dll
2011-05-06 09:52:15 ----A---- C:\windows\SYSWOW64\schedcli.dll
2011-05-06 09:52:15 ----A---- C:\windows\SYSWOW64\napdsnap.dll
2011-05-06 09:52:15 ----A---- C:\windows\SYSWOW64\msfeedssync.exe
2011-05-06 09:52:15 ----A---- C:\windows\SYSWOW64\elsTrans.dll
2011-05-06 09:52:15 ----A---- C:\windows\SYSWOW64\dsauth.dll
2011-05-06 09:52:15 ----A---- C:\windows\SYSWOW64\cscdll.dll
2011-05-06 09:52:15 ----A---- C:\windows\SYSWOW64\bitsperf.dll
2011-05-06 09:52:15 ----A---- C:\windows\system32\wups2.dll
2011-05-06 09:52:15 ----A---- C:\windows\system32\FXSUNATD.exe
2011-05-06 09:52:15 ----A---- C:\windows\system32\drivers\usbrpm.sys
2011-05-06 09:52:15 ----A---- C:\windows\system32\drivers\acpipmi.sys
2011-05-06 09:52:15 ----A---- C:\windows\system32\cscdll.dll
2011-05-06 09:52:15 ----A---- C:\windows\system32\bitsperf.dll
2011-05-06 09:52:14 ----A---- C:\windows\SYSWOW64\sscore.dll
2011-05-06 09:52:14 ----A---- C:\windows\system32\wups.dll
2011-05-06 09:52:14 ----A---- C:\windows\system32\wsdchngr.dll
2011-05-06 09:52:13 ----A---- C:\windows\SYSWOW64\wsdchngr.dll
2011-05-06 09:52:13 ----A---- C:\windows\SYSWOW64\shgina.dll
2011-05-06 09:52:13 ----A---- C:\windows\SYSWOW64\riched32.dll
2011-05-06 09:52:13 ----A---- C:\windows\system32\wshirda.dll
2011-05-06 09:52:13 ----A---- C:\windows\system32\wow64win.dll
2011-05-06 09:52:13 ----A---- C:\windows\system32\wow64cpu.dll
2011-05-06 09:52:13 ----A---- C:\windows\system32\shgina.dll
2011-05-06 09:52:13 ----A---- C:\windows\system32\drivers\USBCAMD2.sys
2011-05-06 09:52:13 ----A---- C:\windows\system32\drivers\CompositeBus.sys
2011-05-06 09:52:12 ----A---- C:\windows\SYSWOW64\wshirda.dll
2011-05-06 09:52:12 ----A---- C:\windows\system32\riched32.dll
2011-05-06 09:52:12 ----A---- C:\windows\system32\rdpcfgex.dll
2011-05-06 09:52:12 ----A---- C:\windows\system32\drivers\kbdhid.sys
2011-05-06 09:52:12 ----A---- C:\windows\system32\drivers\hidusb.sys
2011-05-06 09:52:12 ----A---- C:\windows\system32\drivers\appid.sys
2011-05-06 09:52:11 ----A---- C:\windows\SYSWOW64\spwmp.dll
2011-05-06 09:52:11 ----A---- C:\windows\SYSWOW64\browseui.dll
2011-05-06 09:52:11 ----A---- C:\windows\system32\spwmp.dll
2011-05-06 09:52:11 ----A---- C:\windows\system32\drivers\IPMIDrv.sys
2011-05-06 09:52:11 ----A---- C:\windows\system32\C_ISCII.DLL
2011-05-06 09:52:11 ----A---- C:\windows\system32\browseui.dll
2011-05-06 09:52:10 ----AH---- C:\windows\system32\api-ms-win-core-ums-l1-1-0.dll
2011-05-06 09:52:10 ----A---- C:\windows\SYSWOW64\wmploc.DLL
2011-05-06 09:52:10 ----A---- C:\windows\SYSWOW64\shunimpl.dll
2011-05-06 09:52:10 ----A---- C:\windows\SYSWOW64\KBDTUQ.DLL
2011-05-06 09:52:10 ----A---- C:\windows\SYSWOW64\KBDTUF.DLL
2011-05-06 09:52:10 ----A---- C:\windows\SYSWOW64\KBDSG.DLL
2011-05-06 09:52:10 ----A---- C:\windows\SYSWOW64\kbdlk41a.dll
2011-05-06 09:52:10 ----A---- C:\windows\SYSWOW64\KBDGR1.DLL
2011-05-06 09:52:10 ----A---- C:\windows\SYSWOW64\KBDGKL.DLL
2011-05-06 09:52:10 ----A---- C:\windows\SYSWOW64\dxmasf.dll
2011-05-06 09:52:10 ----A---- C:\windows\SYSWOW64\C_ISCII.DLL
2011-05-06 09:52:10 ----A---- C:\windows\system32\shunimpl.dll
2011-05-06 09:52:10 ----A---- C:\windows\system32\KBDTUQ.DLL
2011-05-06 09:52:10 ----A---- C:\windows\system32\KBDTUF.DLL
2011-05-06 09:52:10 ----A---- C:\windows\system32\KBDSG.DLL
2011-05-06 09:52:10 ----A---- C:\windows\system32\KBDSF.DLL
2011-05-06 09:52:10 ----A---- C:\windows\system32\KBDPO.DLL
2011-05-06 09:52:10 ----A---- C:\windows\system32\KBDNEPR.DLL
2011-05-06 09:52:10 ----A---- C:\windows\system32\kbdlk41a.dll
2011-05-06 09:52:10 ----A---- C:\windows\system32\KBDINTAM.DLL
2011-05-06 09:52:10 ----A---- C:\windows\system32\KBDINBEN.DLL
2011-05-06 09:52:10 ----A---- C:\windows\system32\KBDGR1.DLL
2011-05-06 09:52:10 ----A---- C:\windows\system32\KBDGKL.DLL
2011-05-06 09:52:10 ----A---- C:\windows\system32\dxmasf.dll
2011-05-06 09:52:10 ----A---- C:\windows\system32\drivers\WUDFRd.sys
2011-05-06 09:52:10 ----A---- C:\windows\system32\drivers\WUDFPf.sys
2011-05-06 09:52:10 ----A---- C:\windows\system32\drivers\sffp_sd.sys
2011-05-06 09:52:10 ----A---- C:\windows\system32\drivers\scfilter.sys
2011-05-06 09:52:10 ----A---- C:\windows\system32\drivers\HdAudio.sys
2011-05-06 09:52:10 ----A---- C:\windows\system32\drivers\hdaudbus.sys
2011-05-06 09:52:10 ----A---- C:\windows\system32\drivers\cdrom.sys
2011-05-06 09:52:09 ----A---- C:\windows\SYSWOW64\tzres.dll
2011-05-06 09:52:09 ----A---- C:\windows\SYSWOW64\KBDUS.DLL
2011-05-06 09:52:09 ----A---- C:\windows\SYSWOW64\KBDUGHR1.DLL
2011-05-06 09:52:09 ----A---- C:\windows\SYSWOW64\KBDTURME.DLL
2011-05-06 09:52:09 ----A---- C:\windows\SYSWOW64\KBDTAJIK.DLL
2011-05-06 09:52:09 ----A---- C:\windows\SYSWOW64\KBDSF.DLL
2011-05-06 09:52:09 ----A---- C:\windows\SYSWOW64\KBDPO.DLL
2011-05-06 09:52:09 ----A---- C:\windows\SYSWOW64\KBDNEPR.DLL
2011-05-06 09:52:09 ----A---- C:\windows\SYSWOW64\KBDMON.DLL
2011-05-06 09:52:09 ----A---- C:\windows\SYSWOW64\KBDMAORI.DLL
2011-05-06 09:52:09 ----A---- C:\windows\SYSWOW64\KBDLT1.DLL
2011-05-06 09:52:09 ----A---- C:\windows\SYSWOW64\KBDINTEL.DLL
2011-05-06 09:52:09 ----A---- C:\windows\SYSWOW64\KBDINTAM.DLL
2011-05-06 09:52:09 ----A---- C:\windows\SYSWOW64\KBDINORI.DLL
2011-05-06 09:52:09 ----A---- C:\windows\SYSWOW64\KBDINMAR.DLL
2011-05-06 09:52:09 ----A---- C:\windows\SYSWOW64\KBDINKAN.DLL
2011-05-06 09:52:09 ----A---- C:\windows\SYSWOW64\KBDINHIN.DLL
2011-05-06 09:52:09 ----A---- C:\windows\SYSWOW64\KBDINBEN.DLL
2011-05-06 09:52:09 ----A---- C:\windows\SYSWOW64\KBDGEO.DLL
2011-05-06 09:52:09 ----A---- C:\windows\SYSWOW64\KBDCZ1.DLL
2011-05-06 09:52:09 ----A---- C:\windows\SYSWOW64\KBDBULG.DLL
2011-05-06 09:52:09 ----A---- C:\windows\SYSWOW64\KBDBLR.DLL
2011-05-06 09:52:09 ----A---- C:\windows\SYSWOW64\KBDBASH.DLL
2011-05-06 09:52:09 ----A---- C:\windows\system32\wmploc.DLL
2011-05-06 09:52:09 ----A---- C:\windows\system32\tzres.dll
2011-05-06 09:52:09 ----A---- C:\windows\system32\KBDUS.DLL
2011-05-06 09:52:09 ----A---- C:\windows\system32\KBDUGHR1.DLL
2011-05-06 09:52:09 ----A---- C:\windows\system32\KBDTURME.DLL
2011-05-06 09:52:09 ----A---- C:\windows\system32\KBDTAJIK.DLL
2011-05-06 09:52:09 ----A---- C:\windows\system32\KBDMON.DLL
2011-05-06 09:52:09 ----A---- C:\windows\system32\KBDMAORI.DLL
2011-05-06 09:52:09 ----A---- C:\windows\system32\KBDLT1.DLL
2011-05-06 09:52:09 ----A---- C:\windows\system32\KBDINTEL.DLL
2011-05-06 09:52:09 ----A---- C:\windows\system32\KBDINORI.DLL
2011-05-06 09:52:09 ----A---- C:\windows\system32\KBDINMAR.DLL
2011-05-06 09:52:09 ----A---- C:\windows\system32\KBDINKAN.DLL
2011-05-06 09:52:09 ----A---- C:\windows\system32\KBDINHIN.DLL
2011-05-06 09:52:09 ----A---- C:\windows\system32\KBDGEO.DLL
2011-05-06 09:52:09 ----A---- C:\windows\system32\KBDCZ1.DLL
2011-05-06 09:52:09 ----A---- C:\windows\system32\KBDBULG.DLL
2011-05-06 09:52:09 ----A---- C:\windows\system32\KBDBLR.DLL
2011-05-06 09:52:09 ----A---- C:\windows\system32\KBDBASH.DLL
2011-05-06 09:52:08 ----A---- C:\windows\SYSWOW64\spwizres.dll
2011-05-06 09:52:08 ----A---- C:\windows\SYSWOW64\pifmgr.dll
2011-05-06 09:52:08 ----A---- C:\windows\SYSWOW64\nlsbres.dll
2011-05-06 09:52:08 ----A---- C:\windows\SYSWOW64\dpnaddr.dll
2011-05-06 09:52:08 ----A---- C:\windows\system32\spwizres.dll
2011-05-06 09:52:08 ----A---- C:\windows\system32\pifmgr.dll
2011-05-06 09:52:08 ----A---- C:\windows\system32\nlsbres.dll
2011-05-06 09:52:08 ----A---- C:\windows\system32\dpnaddr.dll
2011-05-06 09:52:08 ----A---- C:\windows\system32\BlbEvents.dll
2011-05-06 09:51:47 ----A---- C:\windows\SYSWOW64\wdscore.dll
2011-05-06 09:51:47 ----A---- C:\windows\SYSWOW64\PkgMgr.exe
2011-05-06 09:51:33 ----A---- C:\windows\SYSWOW64\drvstore.dll
2011-05-06 09:51:33 ----A---- C:\windows\SYSWOW64\dpx.dll
2011-05-06 09:51:29 ----A---- C:\windows\SYSWOW64\wbemcomn.dll
2011-05-06 09:48:17 ----A---- C:\windows\system32\wmicmiplugin.dll
2011-05-06 09:48:17 ----A---- C:\windows\system32\wbemcomn.dll
2011-05-06 09:48:09 ----A---- C:\windows\system32\SmiEngine.dll
2011-05-06 09:48:06 ----A---- C:\windows\system32\PkgMgr.exe
2011-05-06 09:47:13 ----A---- C:\windows\system32\drvstore.dll
2011-05-06 09:47:13 ----A---- C:\windows\system32\dpx.dll
2011-05-05 16:16:53 ----D---- C:\windows\CheckSur
2011-05-05 15:48:27 ----D---- C:\ProgramData\Windows Genuine Advantage
2011-04-30 12:59:56 ----D---- C:\Users\maruska\AppData\Roaming\vlc
2011-04-30 12:59:28 ----D---- C:\Program Files (x86)\VideoLAN
2011-04-29 21:50:33 ----D---- C:\Program Files (x86)\uTorrentBar
2011-04-29 21:50:31 ----D---- C:\extensions
2011-04-29 21:50:23 ----D---- C:\Program Files (x86)\uTorrent
2011-04-27 19:39:42 ----A---- C:\windows\explorer.exe
2011-04-27 19:39:41 ----A---- C:\windows\SYSWOW64\explorer.exe
2011-04-27 19:39:40 ----A---- C:\windows\SYSWOW64\XpsPrint.dll
2011-04-27 19:39:40 ----A---- C:\windows\system32\XpsPrint.dll
2011-04-27 19:39:05 ----A---- C:\windows\system32\drivers\ntfs.sys
2011-04-27 19:39:04 ----A---- C:\windows\SYSWOW64\esent.dll
2011-04-27 19:39:04 ----A---- C:\windows\system32\esent.dll
2011-04-27 19:39:03 ----A---- C:\windows\system32\drivers\nvstor.sys
2011-04-27 19:39:03 ----A---- C:\windows\system32\drivers\nvraid.sys
2011-04-27 19:39:03 ----A---- C:\windows\system32\drivers\amdsata.sys
2011-04-27 19:39:02 ----A---- C:\windows\system32\drivers\storport.sys
2011-04-27 19:38:53 ----A---- C:\windows\system32\fsutil.exe
2011-04-27 19:38:53 ----A---- C:\windows\system32\drivers\USBSTOR.SYS
2011-04-27 19:38:53 ----A---- C:\windows\system32\drivers\iaStorV.sys
2011-04-27 19:38:53 ----A---- C:\windows\system32\drivers\amdxata.sys
2011-04-27 19:38:52 ----A---- C:\windows\SYSWOW64\fsutil.exe
2011-04-27 19:38:43 ----A---- C:\windows\SYSWOW64\prevhost.exe
2011-04-27 19:38:43 ----A---- C:\windows\system32\prevhost.exe
2011-04-22 10:15:16 ----D---- C:\Users\maruska\AppData\Roaming\ArcSyncConfig
2011-04-21 12:03:48 ----D---- C:\Users\maruska\AppData\Roaming\DAEMON Tools Lite
2011-04-21 12:03:48 ----D---- C:\ProgramData\DAEMON Tools Lite

======List of files/folders modified in the last 1 months======

2011-05-14 09:46:12 ----D---- C:\windows\SysWOW64
2011-05-14 09:46:12 ----AD---- C:\Windows
2011-05-14 09:46:04 ----RD---- C:\Program Files
2011-05-14 09:46:04 ----HD---- C:\ProgramData
2011-05-14 09:46:01 ----SHD---- C:\System Volume Information
2011-05-14 09:45:21 ----D---- C:\windows\Temp
2011-05-14 09:43:16 ----D---- C:\windows\system32\config
2011-05-14 09:31:35 ----D---- C:\Users\maruska\AppData\Roaming\Skype
2011-05-14 09:30:52 ----D---- C:\Users\maruska\AppData\Roaming\ICQ
2011-05-14 09:29:41 ----D---- C:\ProgramData\VeriFace
2011-05-14 09:29:07 ----D---- C:\ProgramData\NVIDIA
2011-05-14 09:28:59 ----A---- C:\windows\SYSWOW64\log.txt
2011-05-14 09:28:36 ----D---- C:\Program Files\Alwil Software
2011-05-14 09:22:40 ----SHD---- C:\windows\Installer
2011-05-14 09:22:23 ----D---- C:\windows\inf
2011-05-14 09:22:23 ----A---- C:\windows\SYSWOW64\PerfStringBackup.INI
2011-05-14 09:22:21 ----D---- C:\windows\system32\drivers
2011-05-14 09:22:21 ----D---- C:\windows\system32\catroot
2011-05-14 09:22:18 ----SD---- C:\ProgramData\Microsoft
2011-05-14 09:22:18 ----RD---- C:\Program Files (x86)
2011-05-14 09:19:37 ----D---- C:\windows\System32
2011-05-14 08:05:52 ----D---- C:\Users\maruska\AppData\Roaming\skypePM
2011-05-14 00:08:18 ----D---- C:\Users\maruska\AppData\Roaming\DC++
2011-05-13 22:49:29 ----D---- C:\windows\system32\catroot2
2011-05-12 17:30:54 ----D---- C:\windows\winsxs
2011-05-12 16:52:46 ----D---- C:\windows\system32\DriverStore
2011-05-12 09:59:14 ----A---- C:\windows\system32\PerfStringBackup.INI
2011-05-11 18:52:34 ----D---- C:\ProgramData\Microsoft Help
2011-05-11 18:52:08 ----D---- C:\windows\debug
2011-05-11 18:52:06 ----A---- C:\windows\system32\MRT.exe
2011-05-11 12:38:32 ----D---- C:\windows\Tasks
2011-05-11 12:38:32 ----D---- C:\windows\system32\Tasks
2011-05-11 09:32:41 ----D---- C:\Users\maruska\AppData\Roaming\Winamp
2011-05-11 09:32:33 ----D---- C:\Users\maruska\AppData\Roaming\uTorrent
2011-05-11 09:32:24 ----D---- C:\windows\Minidump
2011-05-10 08:37:42 ----D---- C:\windows\Prefetch
2011-05-09 22:55:14 ----RD---- C:\Program Files (x86)\Skype
2011-05-09 22:55:14 ----D---- C:\Program Files (x86)\Common Files
2011-05-09 22:55:07 ----D---- C:\ProgramData\Skype
2011-05-08 11:22:20 ----D---- C:\windows\Microsoft.NET
2011-05-08 11:21:32 ----RSD---- C:\windows\assembly
2011-05-07 14:44:00 ----D---- C:\windows\rescache
2011-05-07 07:45:39 ----D---- C:\windows\AppPatch
2011-05-06 10:40:21 ----D---- C:\Program Files (x86)\Windows Sidebar
2011-05-06 10:40:21 ----D---- C:\Program Files (x86)\Windows Mail
2011-05-06 10:40:20 ----D---- C:\Program Files (x86)\Windows Portable Devices
2011-05-06 10:40:20 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2011-05-06 10:40:20 ----D---- C:\Program Files (x86)\Windows Media Player
2011-05-06 10:40:20 ----D---- C:\Program Files (x86)\Internet Explorer
2011-05-06 10:40:16 ----D---- C:\Program Files\Windows Sidebar
2011-05-06 10:40:16 ----D---- C:\Program Files\Windows Mail
2011-05-06 10:40:13 ----D---- C:\Program Files\Windows Portable Devices
2011-05-06 10:40:13 ----D---- C:\Program Files\Internet Explorer
2011-05-06 10:40:13 ----D---- C:\Program Files\DVD Maker
2011-05-06 10:40:12 ----D---- C:\Program Files\Windows Photo Viewer
2011-05-06 10:40:12 ----D---- C:\Program Files\Windows Media Player
2011-05-06 10:40:12 ----D---- C:\Program Files\Windows Journal
2011-05-06 10:40:07 ----D---- C:\Program Files\Windows Defender
2011-05-06 10:40:06 ----D---- C:\windows\servicing
2011-05-06 10:40:06 ----D---- C:\windows\ehome
2011-05-06 10:39:47 ----D---- C:\windows\SYSWOW64\oobe
2011-05-06 10:39:47 ----D---- C:\windows\SYSWOW64\migration
2011-05-06 10:39:47 ----D---- C:\windows\SYSWOW64\da-DK
2011-05-06 10:39:46 ----D---- C:\windows\SYSWOW64\Setup
2011-05-06 10:39:46 ----D---- C:\windows\SYSWOW64\cs
2011-05-06 10:39:46 ----D---- C:\windows\SYSWOW64\AdvancedInstallers
2011-05-06 10:39:45 ----D---- C:\windows\SYSWOW64\cs-CZ
2011-05-06 10:39:43 ----D---- C:\windows\SYSWOW64\manifeststore
2011-05-06 10:39:42 ----D---- C:\windows\SYSWOW64\wbem
2011-05-06 10:39:42 ----D---- C:\windows\SYSWOW64\sppui
2011-05-06 10:39:42 ----D---- C:\windows\SYSWOW64\es-ES
2011-05-06 10:39:40 ----D---- C:\windows\SYSWOW64\migwiz
2011-05-06 10:39:40 ----D---- C:\windows\SYSWOW64\Dism
2011-05-06 10:38:56 ----D---- C:\windows\system32\en-US
2011-05-06 10:38:56 ----D---- C:\windows\system32\da-DK
2011-05-06 10:38:56 ----D---- C:\windows\PolicyDefinitions
2011-05-06 10:38:55 ----D---- C:\windows\system32\oobe
2011-05-06 10:38:55 ----D---- C:\windows\system32\migration
2011-05-06 10:38:54 ----D---- C:\windows\system32\Setup
2011-05-06 10:38:54 ----D---- C:\windows\system32\cs
2011-05-06 10:38:54 ----D---- C:\windows\system32\AdvancedInstallers
2011-05-06 10:38:51 ----D---- C:\windows\system32\cs-CZ
2011-05-06 10:38:47 ----D---- C:\windows\system32\sppui
2011-05-06 10:38:47 ----D---- C:\windows\system32\manifeststore
2011-05-06 10:38:47 ----D---- C:\windows\system32\es-ES
2011-05-06 10:38:45 ----D---- C:\windows\system32\drivers\cs-CZ
2011-05-06 10:38:43 ----D---- C:\windows\system32\wbem
2011-05-06 10:38:42 ----D---- C:\windows\system32\migwiz
2011-05-06 10:38:41 ----D---- C:\windows\system32\Dism
2011-05-06 10:37:43 ----RSD---- C:\windows\Fonts
2011-05-06 10:36:03 ----D---- C:\windows\system32\Boot
2011-05-06 10:32:04 ----A---- C:\windows\SYSWOW64\msclmd.dll
2011-05-06 10:32:03 ----A---- C:\windows\system32\msclmd.dll
2011-05-06 10:22:47 ----D---- C:\windows\SYSWOW64\en-US
2011-05-06 10:08:13 ----D---- C:\windows\Logs
2011-05-05 10:02:45 ----D---- C:\Program Files\Rhinoceros 5.0 WIP (64-bit)
2011-05-04 14:26:36 ----D---- C:\pdf995
2011-05-02 13:21:30 ----D---- C:\__MP3
2011-04-23 09:25:58 ----D---- C:\windows\system32\NDF
2011-04-22 07:56:14 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2011-04-21 08:15:44 ----A---- C:\windows\SYSWOW64\pdf995mon64.dll
2011-04-17 12:22:34 ----D---- C:\Program Files (x86)\ICQ7.2
2011-04-15 09:20:18 ----D---- C:\windows\system32\wdi

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2009-12-17 538136]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 sptd;sptd; C:\windows\System32\Drivers\sptd.sys [2011-04-21 513080]
R1 MpFilter;Microsoft Malware Protection Driver; C:\windows\system32\DRIVERS\MpFilter.sys [2010-10-24 188928]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 adfs;adfs; C:\windows\system32\drivers\adfs.sys [2008-06-27 88632]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\windows\system32\DRIVERS\AcpiVpc.sys [2009-10-19 28176]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\windows\system32\DRIVERS\athrx.sys [2009-11-06 1550848]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2010-11-20 80384]
R3 btusbflt;Bluetooth USB Filter; C:\windows\system32\drivers\btusbflt.sys [2009-07-01 52264]
R3 btwaudio;Bluetooth Audio Device Service; C:\windows\system32\drivers\btwaudio.sys [2009-07-01 98344]
R3 btwavdt;Bluetooth AVDT; C:\windows\system32\DRIVERS\btwavdt.sys [2009-07-01 132648]
R3 btwl2cap;Bluetooth L2CAP Service; C:\windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 35104]
R3 btwrchid;btwrchid; C:\windows\system32\DRIVERS\btwrchid.sys [2009-07-01 21160]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\windows\system32\drivers\CHDRT64.sys [2010-01-18 717368]
R3 ETD;ELAN PS/2 Port Input Device; C:\windows\system32\DRIVERS\ETD.sys [2010-03-26 162304]
R3 HECIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 Impcd;Impcd; C:\windows\system32\DRIVERS\Impcd.sys [2010-02-26 158976]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\windows\system32\drivers\nvhda64v.sys [2010-09-07 155752]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 vm331avs;Digital Camera 1; C:\windows\System32\Drivers\vm331avs.sys [2010-03-18 215168]
R3 wdmirror;wdmirror; C:\windows\system32\DRIVERS\WDMirror.sys [2009-07-16 11280]
S3 Bridge0;Bridge0; C:\windows\system32\drivers\WDBridge.sys [2009-07-16 79376]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2010-11-20 552448]
S3 fssfltr;FssFltr; C:\windows\system32\DRIVERS\fssfltr.sys [2010-09-23 48488]
S3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2009-06-10 6108416]
S3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\windows\system32\DRIVERS\k57nd60a.sys [2009-06-10 270848]
S3 MpNWMon;Microsoft Malware Protection Network Driver; C:\windows\system32\DRIVERS\MpNWMon.sys [2010-10-24 40832]
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit; C:\windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]
S3 NisDrv;Microsoft Network Inspection System; C:\windows\system32\DRIVERS\NisDrvWFP.sys [2010-10-24 72064]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUStor.sys [2010-03-12 242720]
S3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys [2009-08-20 239616]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\windows\System32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 WimFltr;WimFltr; C:\windows\system32\DRIVERS\wimfltr.sys [2008-08-06 151656]
S3 wsvd;wsvd; C:\windows\system32\DRIVERS\wsvd.sys [2009-07-21 121840]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 astcc;AST Service; C:\windows\syswow64\astsrv.exe [2010-11-01 57344]
R2 BcmSqlStartupSvc;Business Contact Manager SQL Server Startup Service; C:\Program Files (x86)\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe [2008-01-11 30312]
R2 btwdins;Bluetooth Service; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [2009-08-11 864032]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2009-12-23 13336]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2009-12-09 268824]
R2 McNeelUpdates64;McNeel Update (64-bit); C:\Program Files\Rhinoceros 5.0 WIP (64-bit)\System\RhinoVersionCheckSvc64.exe [2011-05-03 95232]
R2 nlscc;Nalpeiron X64 Service; C:\windows\system32\nlsInterface.exe [2010-11-01 72192]
R2 nvsvc;NVIDIA Display Driver Service; C:\windows\system32\nvvsvc.exe [2010-10-16 989800]
R2 SeaPort;SeaPort; C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2010-09-22 249136]
R2 SQLBrowser;SQL Server Browser; c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2010-12-10 238944]
R2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2010-12-10 153440]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2010-10-16 369256]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-12-09 2320920]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 2286976]
R3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2010-10-01 1038088]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-09-29 136176]
S2 ReadyComm.DirectRouter;ReadyComm.DirectRouter; C:\windows\System32\IgrsSvcs.exe -k IgrsSvcs []
S3 Autodesk Licensing Service;Autodesk Licensing Service; C:\Program Files (x86)\Common Files\Autodesk Shared\Service\AdskScSrv.exe [2010-10-03 85096]
S3 Autodesk Network Licensing Service;Autodesk Network Licensing Service; C:\Program Files (x86)\Common Files\Autodesk Shared\Service\AdskNetSrv.exe [2006-08-11 902760]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-09-30 655624]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2010-09-23 1493352]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-09-29 136176]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-09-29 182768]
S3 IGRS;IGRS; C:\Program Files (x86)\Lenovo\ReadyComm\common\IGRS.exe [2009-07-14 38152]
S3 InstallShield Licensing Service;InstallShield Licensing Service; C:\Program Files (x86)\Common Files\InstallShield Shared\Service\InstallShield Licensing Service.exe [2010-10-25 78536]
S3 Lenovo ReadyComm AppSvc;Lenovo ReadyComm AppSvc; C:\Program Files\Lenovo\ReadyComm\AppSvc.exe [2009-08-14 509192]
S3 Lenovo ReadyComm ConnSvc;Lenovo ReadyComm ConnSvc; C:\Program Files\Lenovo\ReadyComm\ConnSvc.exe [2009-09-22 579400]
S3 MSSQL$MSSMLBIZ;SQL Server (MSSMLBIZ); c:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2010-12-10 29293408]
S3 NisSrv;@c:\Program Files\Microsoft Security Client\Antimalware\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe [2010-11-11 282616]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PS_MDP;ReadyComm Presentation Space Helper Service; C:\windows\System32\IgrsSvcs.exe -k IgrsSvcs []
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2010-09-30 1255736]
S4 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [2010-11-11 12784]
S4 MSSQLServerADHelper;SQL Server Active Directory Helper; c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2010-12-10 44384]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]

-----------------EOF-----------------

diky moc za pomoc marie

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: nejde spustit centrum zabezpeceni, security essentials

#3 Příspěvek od vyosek »

Zdravim a pekny den preji :)

:arrow: No mate tam celou zoo i s babkou pokladni :arcisit:

:arrow: Ten antivir od microsoftu dejte do pryc - nechte tam jen Avast - vice antiviru je spise na skodu = perou se mezi sebou

:arrow: Prihlaste se do nouzoveho rezimu (restart PC, mackat F8, zvolit Stav nouze s praci v siti)

:arrow: Stahnete RKill http://download.bleepingcomputer.com/grinler/rkill.com PROSIM CTETE DUKLADNE NAVOD - TATO UTILITA MA VELKOU SCHOPNOST MAZAT A JE NUTNE JI APLIKOVAT JEN NA DOPORUCENI, JINAK VAM MUZE JIT SYSTEM DO KYTEK
:arrow: Stahnete a ulozte na plochu Combofix http://download.bleepingcomputer.com/sUBs/ComboFix.exe
  • Vypnete vsechny rezidentni bezpecnostní programy - firewally, antiviry, antispywary apod.
  • Pokud mate Win XP spustte pod uctem Spravce\Administratora
  • Pokud mate Win Vista ci Win 7, kliknete na Combofix pravym a dejte Run As Administrator ci Spustit jako spravce
  • Ihned po startu se zobrazi stranka s licencnim ujednanim, pokracujte kliknutim na Ano
  • Pokud Vam CF nabidne instalaci Konzoly pro zotaveni, tak souhlaste
  • Dale postupujte dle pokynu, behem scanu nechte PC naprosto v klidu - nespoustejte zadne aplikace a neklikejte do zobrazujiciho se okna
  • Scan by mel trvat cca 10 min, ale pokud bude PC hodne zaneseno, muze se cas prodlouzit
  • Po dokonceni skenu a pripadnem restartu CF zobrazi log, pripadne jej najdete zde C:\ComboFix.txt, jeho obsah sem vlozte
  • Detailni postup vc. obrazku mate zde http://www.bleepingcomputer.com/combofi ... t-combofix
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

majaaa
Návštěvník
Návštěvník
Příspěvky: 27
Registrován: 14 kvě 2011 08:49

Re: nejde spustit centrum zabezpeceni, security essentials

#4 Příspěvek od majaaa »

diky, pripada mi to jak napsane v jine reci, ale postupovat podle kroku bych mohla zvladnout, radeji jsem si diplomku hodila vedle na disk a pokusim se to nezkazit m.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: nejde spustit centrum zabezpeceni, security essentials

#5 Příspěvek od vyosek »

Kdyby byl nejaky problem ci dotaz, tak napiste a zkusim lepe vysvetlit...
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

majaaa
Návštěvník
Návštěvník
Příspěvky: 27
Registrován: 14 kvě 2011 08:49

Re: nejde spustit centrum zabezpeceni, security essentials

#6 Příspěvek od majaaa »

poznam nejak ze se ten nouzovy rezim zapl? mam pocit ze je ten pocitac tak rychly ze ikdyz mackam F8 jako blazen tak ta stranka nez se startuje windows je tam tak kratce ze v nem nejsem

majaaa
Návštěvník
Návštěvník
Příspěvky: 27
Registrován: 14 kvě 2011 08:49

Re: nejde spustit centrum zabezpeceni, security essentials

#7 Příspěvek od majaaa »

tak nouzovy rezim beru zpet, uz se to povedlo a poznat to jde dost .-)

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: nejde spustit centrum zabezpeceni, security essentials

#8 Příspěvek od vyosek »

:) Tak ted vzhuru do likvidace haveti
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

majaaa
Návštěvník
Návštěvník
Příspěvky: 27
Registrován: 14 kvě 2011 08:49

Re: nejde spustit centrum zabezpeceni, security essentials

#9 Příspěvek od majaaa »

presto ze jsme vypla vsechny stity avast na hodinu tak mi ten program hlasi ze antivirus avast je stale aktivni, ale combo fix bude pokracovat ev sve cinnosti a v nabidce je pouze ok

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: nejde spustit centrum zabezpeceni, security essentials

#10 Příspěvek od vyosek »

Dejte OK a nechte jej makat :wink:

Me se zda z logu ze je i ten Avast nejaky poskozeny, takze jej na zaver radeji preinstalujem :turned:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

majaaa
Návštěvník
Návštěvník
Příspěvky: 27
Registrován: 14 kvě 2011 08:49

Re: nejde spustit centrum zabezpeceni, security essentials

#11 Příspěvek od majaaa »

ComboFix 11-05-13.02 - maruska 14.05.2011 11:32:16.1.4 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.3959.2708 [GMT 2:00]
Spuštěný z: c:\users\maruska\Desktop\ComboFix.exe
AV: avast! Antivirus *Enabled/Updated* {C37D8F93-0602-E43C-40AA-47DAD597F308}
SP: avast! Antivirus *Enabled/Updated* {781C6E77-2038-EBB2-7A1A-7CA8AE10B9B5}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files (x86)\RegGenie
c:\program files (x86)\RegGenie\Backups\40674.3935457986
c:\program files (x86)\RegGenie\RegGenie.ini
c:\programdata\Microsoft\Network\Downloader\qmgr0.dat
c:\programdata\Microsoft\Network\Downloader\qmgr1.dat
c:\windows\RegGenieOnUninstall.exe
c:\windows\s.bat
.
----- BITS: Možné infikované stránky -----
.
hxxp://files.na.mcneel.com
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-04-14 do 2011-05-14 )))))))))))))))))))))))))))))))
.
.
2011-05-14 09:45 . 2011-05-14 09:45 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-05-14 07:46 . 2011-05-10 11:59 22360 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2011-05-14 07:46 . 2011-05-10 12:04 287576 ----a-w- c:\windows\system32\drivers\aswSP.sys
2011-05-14 07:46 . 2011-05-10 11:59 31064 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2011-05-14 07:46 . 2011-05-10 12:02 53592 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2011-05-14 07:46 . 2011-05-10 12:04 600920 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2011-05-14 07:46 . 2011-05-10 11:59 64344 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2011-05-14 07:46 . 2011-05-10 12:10 40112 ----a-w- c:\windows\avastSS.scr
2011-05-14 07:46 . 2011-05-10 12:10 199304 ----a-w- c:\windows\SysWow64\aswBoot.exe
2011-05-14 07:46 . 2011-05-14 07:46 -------- d-----w- c:\programdata\AVAST Software
2011-05-14 07:46 . 2011-05-14 07:46 -------- d-----w- c:\program files\AVAST Software
2011-05-14 07:45 . 2011-05-14 07:46 -------- d-----w- c:\program files\trend micro
2011-05-14 07:45 . 2011-05-14 07:46 -------- d-----w- C:\rsit
2011-05-14 07:19 . 2011-05-10 12:10 253888 ----a-w- c:\windows\system32\aswBoot.exe
2011-05-14 05:56 . 2011-04-09 06:58 142336 ----a-w- c:\windows\system32\poqexec.exe
2011-05-14 05:56 . 2011-04-09 05:56 123904 ----a-w- c:\windows\SysWow64\poqexec.exe
2011-05-11 07:28 . 2011-05-11 07:28 -------- d-----w- c:\users\maruska\AppData\Roaming\RegGenie
2011-05-11 06:02 . 2011-04-09 07:02 5562240 ----a-w- c:\windows\system32\ntoskrnl.exe
2011-05-11 06:02 . 2011-04-09 06:02 3967872 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe
2011-05-11 06:02 . 2011-04-09 06:02 3912576 ----a-w- c:\windows\SysWow64\ntoskrnl.exe
2011-05-11 06:02 . 2011-03-25 03:29 343040 ----a-w- c:\windows\system32\drivers\usbhub.sys
2011-05-11 06:02 . 2011-03-25 03:29 98816 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2011-05-11 06:02 . 2011-03-25 03:29 325120 ----a-w- c:\windows\system32\drivers\usbport.sys
2011-05-11 06:02 . 2011-03-25 03:29 52736 ----a-w- c:\windows\system32\drivers\usbehci.sys
2011-05-11 06:02 . 2011-03-25 03:29 25600 ----a-w- c:\windows\system32\drivers\usbohci.sys
2011-05-11 06:02 . 2011-03-25 03:29 30720 ----a-w- c:\windows\system32\drivers\usbuhci.sys
2011-05-11 06:02 . 2011-03-25 03:28 7936 ----a-w- c:\windows\system32\drivers\usbd.sys
2011-05-10 08:35 . 2011-05-10 08:35 90112 --sha-r- c:\windows\SysWow64\MFC71JPNK.dll
2011-05-10 06:37 . 2011-04-11 08:21 8802128 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{E8912D66-11CC-4FFD-9E88-776848B63876}\mpengine.dll
2011-05-09 20:55 . 2011-05-12 22:07 -------- d-----w- c:\programdata\Skype Extras
2011-05-09 20:55 . 2011-05-09 20:55 -------- d-----w- c:\program files (x86)\Common Files\Skype
2011-05-07 15:50 . 2011-05-07 15:50 -------- d-----w- c:\programdata\Badoo
2011-05-06 07:59 . 2011-05-06 07:59 -------- d-----w- c:\windows\system32\SPReview
2011-05-06 07:58 . 2011-05-06 07:58 -------- d-----w- c:\windows\system32\EventProviders
2011-05-06 07:53 . 2010-11-20 13:26 828416 ----a-w- c:\windows\system32\MPSSVC.dll
2011-05-06 07:52 . 2010-11-20 13:27 222720 ----a-w- c:\windows\system32\wwanconn.dll
2011-05-06 07:51 . 2010-11-20 13:32 4608 ----a-w- c:\windows\system32\drivers\cs-CZ\kbdclass.sys.mui
2011-05-06 07:51 . 2010-11-20 13:31 3072 ----a-w- c:\windows\system32\drivers\cs-CZ\GAGP30KX.SYS.mui
2011-05-06 07:51 . 2010-11-20 12:21 189952 ----a-w- c:\windows\SysWow64\wdscore.dll
2011-05-06 07:51 . 2010-11-20 12:17 209920 ----a-w- c:\windows\SysWow64\PkgMgr.exe
2011-05-06 07:51 . 2010-11-20 12:18 323072 ----a-w- c:\windows\SysWow64\drvstore.dll
2011-05-06 07:51 . 2010-11-20 12:18 257024 ----a-w- c:\windows\SysWow64\dpx.dll
2011-05-06 07:51 . 2010-11-20 12:21 363008 ----a-w- c:\windows\SysWow64\wbemcomn.dll
2011-05-06 07:51 . 2010-11-20 12:19 606208 ----a-w- c:\windows\SysWow64\wbem\fastprox.dll
2011-05-06 07:48 . 2010-11-20 13:27 524288 ----a-w- c:\windows\system32\wmicmiplugin.dll
2011-05-06 07:48 . 2010-11-20 13:27 529408 ----a-w- c:\windows\system32\wbemcomn.dll
2011-05-06 07:48 . 2010-11-20 13:27 1225216 ----a-w- c:\windows\system32\wbem\wbemcore.dll
2011-05-06 07:48 . 2010-11-20 13:27 933376 ----a-w- c:\windows\system32\SmiEngine.dll
2011-05-06 07:48 . 2010-11-20 13:25 199168 ----a-w- c:\windows\system32\PkgMgr.exe
2011-05-06 07:47 . 2010-11-20 13:26 422912 ----a-w- c:\windows\system32\drvstore.dll
2011-05-06 07:47 . 2010-11-20 13:26 399872 ----a-w- c:\windows\system32\dpx.dll
2011-05-05 14:16 . 2011-05-05 14:16 -------- d-----w- c:\windows\CheckSur
2011-05-05 08:05 . 2011-05-05 08:05 -------- d-----w- c:\users\maruska\AppData\Local\Robert_McNeel_&_Associate
2011-04-30 10:59 . 2011-05-06 17:34 -------- d-----w- c:\users\maruska\AppData\Roaming\vlc
2011-04-30 10:59 . 2011-04-30 10:59 -------- d-----w- c:\program files (x86)\VideoLAN
2011-04-29 19:50 . 2011-04-29 19:50 -------- d-----w- C:\extensions
2011-04-29 19:50 . 2011-04-29 19:50 -------- d-----w- c:\program files (x86)\uTorrent
2011-04-27 17:39 . 2011-02-25 06:19 2871808 ----a-w- c:\windows\explorer.exe
2011-04-27 17:39 . 2011-02-25 05:30 2616320 ----a-w- c:\windows\SysWow64\explorer.exe
2011-04-27 17:39 . 2011-03-12 12:08 1465344 ----a-w- c:\windows\system32\XpsPrint.dll
2011-04-27 17:39 . 2011-03-12 11:23 870912 ----a-w- c:\windows\SysWow64\XpsPrint.dll
2011-04-27 17:39 . 2011-03-11 06:41 1659776 ----a-w- c:\windows\system32\drivers\ntfs.sys
2011-04-27 17:39 . 2011-03-11 06:33 2565632 ----a-w- c:\windows\system32\esent.dll
2011-04-27 17:39 . 2011-03-11 05:33 1699328 ----a-w- c:\windows\SysWow64\esent.dll
2011-04-27 17:39 . 2011-03-11 06:41 166272 ----a-w- c:\windows\system32\drivers\nvstor.sys
2011-04-27 17:39 . 2011-03-11 06:41 148352 ----a-w- c:\windows\system32\drivers\nvraid.sys
2011-04-27 17:39 . 2011-03-11 06:41 107904 ----a-w- c:\windows\system32\drivers\amdsata.sys
2011-04-27 17:39 . 2011-03-11 06:41 189824 ----a-w- c:\windows\system32\drivers\storport.sys
2011-04-27 17:38 . 2011-03-11 06:41 410496 ----a-w- c:\windows\system32\drivers\iaStorV.sys
2011-04-27 17:38 . 2011-03-11 06:41 27008 ----a-w- c:\windows\system32\drivers\amdxata.sys
2011-04-27 17:38 . 2011-03-11 06:30 96768 ----a-w- c:\windows\system32\fsutil.exe
2011-04-27 17:38 . 2011-03-11 05:31 74240 ----a-w- c:\windows\SysWow64\fsutil.exe
2011-04-27 17:38 . 2011-02-18 10:51 31232 ----a-w- c:\windows\system32\prevhost.exe
2011-04-27 17:38 . 2011-02-18 05:39 31232 ----a-w- c:\windows\SysWow64\prevhost.exe
2011-04-25 21:51 . 2011-04-25 21:51 -------- d-----w- c:\users\maruska\AppData\Local\Apple Computer
2011-04-22 08:15 . 2011-04-22 08:15 -------- d-----w- c:\users\maruska\AppData\Roaming\ArcSyncConfig
2011-04-22 08:15 . 2011-04-22 08:15 -------- d-----w- c:\users\maruska\My Others
2011-04-21 10:03 . 2011-04-21 10:03 -------- d-----w- c:\programdata\DAEMON Tools Lite
2011-04-21 10:03 . 2011-04-21 10:03 -------- d-----w- c:\users\maruska\AppData\Roaming\DAEMON Tools Lite
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-05-06 08:32 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2011-05-06 08:32 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2011-04-21 06:15 . 2011-01-04 19:36 47616 ----a-w- c:\windows\SysWow64\pdf995mon64.dll
2011-04-02 11:46 . 2011-04-02 11:46 0 ----a-w- c:\windows\SysWow64\ConduitEngine.tmp
2011-03-12 13:19 . 2010-06-24 09:33 18328 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2011-03-11 06:34 . 2011-04-13 17:14 1359872 ----a-w- c:\windows\system32\mfc42u.dll
2011-03-11 06:34 . 2011-04-13 17:14 1395712 ----a-w- c:\windows\system32\mfc42.dll
2011-03-11 05:33 . 2011-04-13 17:14 1137664 ----a-w- c:\windows\SysWow64\mfc42.dll
2011-03-11 05:33 . 2011-04-13 17:14 1164288 ----a-w- c:\windows\SysWow64\mfc42u.dll
2011-03-08 06:29 . 2011-04-13 17:13 976896 ----a-w- c:\windows\system32\inetcomm.dll
2011-03-08 05:28 . 2011-04-13 17:13 741376 ----a-w- c:\windows\SysWow64\inetcomm.dll
2011-03-07 06:31 . 2011-04-13 17:14 1188864 ----a-w- c:\windows\system32\wininet.dll
2011-03-07 05:33 . 2011-04-13 17:14 981504 ----a-w- c:\windows\SysWow64\wininet.dll
2011-03-07 04:24 . 2011-04-13 17:13 1638912 ----a-w- c:\windows\system32\mshtml.tlb
2011-03-07 03:52 . 2011-04-13 17:13 1638912 ----a-w- c:\windows\SysWow64\mshtml.tlb
2011-03-04 06:19 . 2011-04-27 17:39 135168 ----a-w- c:\windows\apppatch\AppPatch64\AcXtrnal.dll
2011-03-04 06:19 . 2011-04-27 17:39 350208 ----a-w- c:\windows\apppatch\AppPatch64\AcLayers.dll
2011-03-03 06:24 . 2011-04-13 17:13 183296 ----a-w- c:\windows\system32\dnsrslvr.dll
2011-03-03 06:21 . 2011-04-13 17:13 30208 ----a-w- c:\windows\system32\dnscacheugc.exe
2011-03-03 05:36 . 2011-04-13 17:13 28672 ----a-w- c:\windows\SysWow64\dnscacheugc.exe
2011-03-03 03:52 . 2011-04-13 17:14 3135488 ----a-w- c:\windows\system32\win32k.sys
2011-02-24 06:15 . 2011-04-13 17:15 476160 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2011-02-24 05:38 . 2011-04-13 17:15 288256 ----a-w- c:\windows\SysWow64\XpsGdiConverter.dll
2011-02-23 04:56 . 2011-04-13 17:13 158208 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2011-02-23 04:56 . 2011-04-13 17:14 467456 ----a-w- c:\windows\system32\drivers\srv.sys
2011-02-23 04:56 . 2011-04-13 17:14 411648 ----a-w- c:\windows\system32\drivers\srv2.sys
2011-02-23 04:55 . 2011-04-13 17:14 167936 ----a-w- c:\windows\system32\drivers\srvnet.sys
2011-02-23 04:55 . 2011-04-13 17:13 287744 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2011-02-23 04:55 . 2011-04-13 17:13 128000 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2011-02-23 04:55 . 2011-04-13 17:13 90624 ----a-w- c:\windows\system32\drivers\bowser.sys
2011-02-19 12:05 . 2011-03-09 08:52 1139200 ----a-w- c:\windows\system32\FntCache.dll
2011-02-19 12:04 . 2011-03-09 08:52 1544192 ----a-w- c:\windows\system32\DWrite.dll
2011-02-19 12:04 . 2011-03-09 08:52 902656 ----a-w- c:\windows\system32\d2d1.dll
2011-02-19 12:03 . 2011-04-13 17:14 46080 ----a-w- c:\windows\system32\atmlib.dll
2011-02-19 09:00 . 2011-04-13 17:14 367616 ----a-w- c:\windows\system32\atmfd.dll
2011-02-19 06:30 . 2011-03-09 08:52 1076736 ----a-w- c:\windows\SysWow64\DWrite.dll
2011-02-19 06:30 . 2011-03-09 08:52 739840 ----a-w- c:\windows\SysWow64\d2d1.dll
2011-02-19 06:30 . 2011-04-13 17:14 34304 ----a-w- c:\windows\SysWow64\atmlib.dll
2011-02-19 04:34 . 2011-04-13 17:14 294912 ----a-w- c:\windows\SysWow64\atmfd.dll
2011-02-18 10:56 . 2011-04-13 17:15 613376 ----a-w- c:\windows\system32\vbscript.dll
2011-02-18 05:43 . 2011-04-13 17:15 428032 ----a-w- c:\windows\SysWow64\vbscript.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}"= "c:\program files (x86)\BS_Player\prxtbBS_0.dll" [2011-01-17 175912]
"{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}"= "c:\program files (x86)\uTorrentBar\tbuTor.dll" [2010-12-09 3911776]
.
[HKEY_CLASSES_ROOT\clsid\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
.
[HKEY_CLASSES_ROOT\clsid\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}]
.
[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
2011-01-17 14:54 175912 ----a-w- c:\program files (x86)\ConduitEngine\prxConduitEngine.dll
.
[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}]
2010-12-09 11:51 3911776 ----a-w- c:\program files (x86)\uTorrentBar\tbuTor.dll
.
[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
2011-01-17 14:54 175912 ----a-w- c:\program files (x86)\BS_Player\prxtbBS_0.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
"{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}"= "c:\program files (x86)\BS_Player\prxtbBS_0.dll" [2011-01-17 175912]
"{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}"= "c:\program files (x86)\uTorrentBar\tbuTor.dll" [2010-12-09 3911776]
.
[HKEY_CLASSES_ROOT\clsid\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
.
[HKEY_CLASSES_ROOT\clsid\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"swg"="c:\program files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2010-09-29 39408]
"Total CMA Pack"="c:\program files (x86)\Total CMA Pack\Total CMA Pack.exe" [2009-09-01 43255]
"ICQ"="c:\program files (x86)\ICQ7.2\ICQ.exe" [2011-01-05 133432]
"Badoo Desktop"="c:\programdata\Badoo\Badoo Desktop\1.4.0.925\Badoo.Desktop.exe" [2011-05-06 1013760]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2011-04-18 15146376]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2009-12-23 284696]
"331BigDog"="c:\program files (x86)\USB Camera\VM331_STI.EXE" [2010-01-15 536576]
"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2008-12-03 35184]
"VeriFaceManager"="c:\program files (x86)\Lenovo\VeriFace\PManage.exe" [2010-06-07 3122528]
"UCam_Menu"="c:\program files (x86)\Lenovo\YouCam\MUITransfer\MUIStartMenu.exe" [2009-05-19 222504]
"YouCam Mirror Tray icon"="c:\program files (x86)\Lenovo\YouCam\YouCamTray.exe" [2009-12-22 167008]
"UpdateP2GShortCut"="c:\program files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" [2008-12-03 218408]
"AdobeCS4ServiceManager"="c:\program files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" [2008-08-14 611712]
"WinampAgent"="c:\program files (x86)\Winamp\winampa.exe" [2010-07-12 74752]
"Adobe Acrobat Speed Launcher"="c:\program files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe" [2008-06-12 37232]
"Acrobat Assistant 8.0"="c:\program files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe" [2008-06-11 640376]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2010-10-29 249064]
"QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2009-05-26 413696]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2011-05-10 3459712]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - c:\program files\Lenovo\Bluetooth Software\BTTray.exe [2009-8-11 1080608]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 gupdate;Služba Google Update (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-09-29 136176]
R3 Bridge0;Bridge0;c:\windows\system32\drivers\WDBridge.sys [x]
R3 btusbflt;Bluetooth USB Filter;c:\windows\system32\drivers\btusbflt.sys [x]
R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [x]
R3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64;c:\program files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2010-10-01 1038088]
R3 gupdatem;Služba Google Update (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-09-29 136176]
R3 IGRS;IGRS;c:\program files (x86)\Lenovo\ReadyComm\common\IGRS.exe [2009-07-14 38152]
R3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60a.sys [x]
R3 Lenovo ReadyComm AppSvc;Lenovo ReadyComm AppSvc;c:\program files\Lenovo\ReadyComm\AppSvc.exe [2009-08-14 509192]
R3 Lenovo ReadyComm ConnSvc;Lenovo ReadyComm ConnSvc;c:\program files\Lenovo\ReadyComm\ConnSvc.exe [2009-09-22 579400]
R3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;c:\windows\system32\DRIVERS\netw5v64.sys [x]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys [x]
R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
R3 wsvd;wsvd;c:\windows\system32\DRIVERS\wsvd.sys [x]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]
S0 sptd;sptd;c:\windows\\SystemRoot\System32\Drivers\sptd.sys [x]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [x]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2009-12-23 13336]
S2 McNeelUpdates64;McNeel Update (64-bit);c:\program files\Rhinoceros 5.0 WIP (64-bit)\System\RhinoVersionCheckSvc64.exe [2011-05-03 95232]
S2 nlscc;Nalpeiron X64 Service;c:\windows\system32\nlsInterface.exe [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2010-10-16 369256]
S2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-12-09 2320920]
S3 ACPIVPC;Lenovo Virtual Power Controller Driver;c:\windows\system32\DRIVERS\AcpiVpc.sys [x]
S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys [x]
S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [x]
S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [x]
S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda64v.sys [x]
S3 vm331avs;Digital Camera 1;c:\windows\system32\Drivers\vm331avs.sys [x]
S3 wdmirror;wdmirror;c:\windows\system32\DRIVERS\WDMirror.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]
IgrsSvcs REG_MULTI_SZ ReadyComm.DirectRouter PS_MDP
.
Obsah adresáře 'Naplánované úlohy'
.
2011-05-14 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-09-29 21:30]
.
2011-05-14 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-09-29 21:30]
.
2011-05-13 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2436841599-1447322966-693437398-1004Core.job
- c:\users\maruska\AppData\Local\Google\Update\GoogleUpdate.exe [2010-09-30 21:30]
.
2011-05-14 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2436841599-1447322966-693437398-1004UA.job
- c:\users\maruska\AppData\Local\Google\Update\GoogleUpdate.exe [2010-09-30 21:30]
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2011-05-10 12:10 134384 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\VeriFace Enc]
@="{771C7324-DA80-49D3-8017-753B0AF60951}"
[HKEY_CLASSES_ROOT\CLSID\{771C7324-DA80-49D3-8017-753B0AF60951}]
2010-06-07 18:57 1502720 ----a-w- c:\windows\System32\IcnOvrly.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"cAudioFilterAgent"="c:\program files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe" [2010-03-22 521272]
"OnekeyStudio"="c:\program files (x86)\Lenovo\Onekey Theater\OnekeyStudio.exe" [2009-12-19 776608]
"EnergyUtility"="c:\program files (x86)\Lenovo\Energy Management\utility.exe" [2009-12-17 4367808]
"Energy Management"="c:\program files (x86)\Lenovo\Energy Management\Energy Management.exe" [2009-12-17 6988736]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x0
.
------- Doplňkový sken -------
.
uStart Page = hxxp://search.conduit.com?SearchSource=10&ctid=CT2786678
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: Append Link Target to Existing PDF - c:\program files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Append to Existing PDF - c:\program files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert Link Target to Adobe PDF - c:\program files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Convert to Adobe PDF - c:\program files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
IE: E&xport to Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: Odeslat obrázek do zařízení &Bluetooth... - c:\program files\Lenovo\Bluetooth Software\btsendto_ie_ctx.htm
IE: Odeslat stránku do zařízení &Bluetooth... - c:\program files\Lenovo\Bluetooth Software\btsendto_ie.htm
IE: WikiKomentáře Google... - c:\program files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_E11712C84EA7E12B.dll/cmsidewiki.html
Trusted Zone: mojebanka.cz
Trusted Zone: mojebanka.cz
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Toolbar-Locked - (no file)
Wow6432Node-HKCU-Run-AdobeBridge - (no file)
Toolbar-Locked - (no file)
WebBrowser-{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5} - (no file)
HKLM-Run-ETDWare - c:\program files (x86)\Elantech\ETDCtrl.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10k_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10k_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash10k.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash10k.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash10k.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash10k.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee]
"SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2011-05-14 12:01:41
ComboFix-quarantined-files.txt 2011-05-14 10:01
.
Před spuštěním: Volných bajtů: 178 941 640 704
Po spuštění: Volných bajtů: 180 158 275 584
.
- - End Of File - - 63591706D2FB243DE1338DCA10DC9F12

majaaa
Návštěvník
Návštěvník
Příspěvky: 27
Registrován: 14 kvě 2011 08:49

Re: nejde spustit centrum zabezpeceni, security essentials

#12 Příspěvek od majaaa »

tak z toho programku tohle vypadlo

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: nejde spustit centrum zabezpeceni, security essentials

#13 Příspěvek od vyosek »

Tohle potrebuji, tak prosim o chvili strpeni nez napisi dalsi postup :wink:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

majaaa
Návštěvník
Návštěvník
Příspěvky: 27
Registrován: 14 kvě 2011 08:49

Re: nejde spustit centrum zabezpeceni, security essentials

#14 Příspěvek od majaaa »

moc diky a ja doufala ze ted uz je chudak vyleceny a ne ze ho to teprve ceka

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: nejde spustit centrum zabezpeceni, security essentials

#15 Příspěvek od vyosek »

:arrow: Vyleceny je tak na pul, jeste to musime poladit :wink:

:arrow: Pokud nemate, tak presunte Combofix na plochu
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    KillAll::
    
    Folder::
    C:\Program Files (x86)\uTorrentBar
    C:\Users\maruska\AppData\Roaming\RegGenie
    
    File::
    C:\Program Files (x86)\BS_Player\prxtbBS_0.dll
    C:\windows\tasks\GoogleUpdateTaskMachineCore.job
    C:\windows\tasks\GoogleUpdateTaskMachineUA.job
    C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-2436841599-1447322966-693437398-1004Core.job
    C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-2436841599-1447322966-693437398-1004UA.job
    C:\windows\tasks\ZJNWUWY.job
    C:\windows\tasks\{810401E2-DDE0-454e-B0E2-AA89C9E5967C}.job
    C:\windows\RegGenieOnUninstall.exe
    
    Registry::
    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
    "{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}"=-
    "{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}"=-
    [-HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}]
    [-HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
    "{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}"=-
    "{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}"=-
    [-HKEY_CLASSES_ROOT\clsid\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
    [-HKEY_CLASSES_ROOT\clsid\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}]
    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "swg"=-
    "ICQ"=-
    "Skype"=-
    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
    "Adobe Reader Speed Launcher"=-
    "AdobeCS4ServiceManager"="c:\program files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" [2008-08-14 611712]
    "WinampAgent"=-
    "Adobe Acrobat Speed Launcher"=-
    "Acrobat Assistant 8.0"=-
    "SunJavaUpdateSched"=-
    "QuickTime Task"=-
    
    Driver::
    gupdate
    gupdatem
    
    DDS::
    uStart Page = hxxp://search.conduit.com?SearchSource= ... =CT2786678
    
    RegLock::
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
    [HKEY_LOCAL_MACHINE\SOFTWARE\McAfee]
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
    
    Reboot::
  • Ulozte vytvoreny TXT jako CFScript.txt
  • Pretahnete vytvoreny CFScript.txt nad Combofix a pustte (viz obrazek nize)
    Obrázek
  • Po aplikaci skriptu (a pripadnem restartu) na Vas vypadne log, jeho obsah sem vlozte
:arrow: Muze se stat, ze po aplikaci skriptu nenabehnou windows, v tomto pripade restartuje PC a mackejte F8 a zvolte Posledni znamou konfiguraci
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Odpovědět