Děkuji. Tady to je:
RKill se nepodařilo instalovat (aspoň to napsalo takovou hlášku), podruhé už nešel spustit.
This log file is located at C:\rkill.log.
Please post this only if requested to by the person helping you.
Otherwise you can close this log when you wish.
Rkill was run on 17.07.2011 at 19:43:23.
Operating System: Microsoft Windows XP
Processes terminated by Rkill or while it was running:
\\.\globalroot\Device\svchost.exe\svchost.exe
Rkill completed on 17.07.2011 at 19:43:23.
Rkill completed on 17.07.2011 at 19:43:30.
exeHelper:
Ok Loading BitDefender Engines
State 0
Sleeping 3 seconds...
Ok Loading BitDefender Engines
State 0
Sleeping 3 seconds...
Found so far : 0x0 files/regs
Searching for Downadup file ....
- System folder
Found so far : 0x0 files/regs
Searching for Downadup file ....
- System folder
- Temporary folder
- Program Files
- Application Data
Found so far : 0x0 files/regs
No Traces of Downadup Worm were found
A tady je log z RSIT:
Logfile of random's system information tool 1.09 (written by random/random)
Run by Administrator at 2011-07-17 19:26:20
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 59 GB (39%) free of 153 GB
Total RAM: 2046 MB (54% free)
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-814357175-3262550480-3581846099-500.job
C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-814357175-3262550480-3581846099-500.job
C:\WINDOWS\tasks\{22116563-108C-42c0-A7CE-60161B75E508}.job
C:\WINDOWS\tasks\{810401E2-DDE0-454e-B0E2-AA89C9E5967C}.job
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\Administrator\Data aplikací\Mozilla\Firefox\Profiles\tch9cdwa.default
prefs.js - "extensions.enabledItems" - "{20a82645-c095-46ed-80e3-08825760534b}:1.1, {AB2CE124-6272-4b12-94A9-7303C7397BD1}:4.2.0.5198,
jqs@sun.com:1.0, {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20, {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21, {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {195A3098-0BD5-4e90-AE22-BA1C540AFD1E}:2.9.2,
engine@conduit.com:3.2.3.3, {88c7f2aa-f93f-432c-8f0e-b7d85967a527}:3.2.3.3, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, {ABDE892B-13A8-4d1b-88E6-365A6E755758}:14.0.3, {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}:6.0.26, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.18"
prefs.js - "keyword.URL" - "
http://search.avg.com/route/?d=4b2016a8 ... &lng=cs&q="
"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"{ABDE892B-13A8-4d1b-88E6-365A6E755758}"=C:\Documents and Settings\All Users\Data aplikací\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext
"
jqs@sun.com"=C:\Program Files\Java\jre6\lib\deploy\jqs\ff
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files\Google\Picasa3\npPicasa3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.0.60310.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=12.0.1.647]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=c:\program files\real\realplayer\Netscape6\nppl3260.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprjplug;version=12.0.1.647]
"Description"=RealJukebox Netscape Plugin
"Path"=c:\program files\real\realplayer\Netscape6\nprjplug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=12.0.1.652]
"Description"=RealNetworks(tm) RealPlayer Chrome Background Extension Plug-In
"Path"=C:\Documents and Settings\All Users\Data aplikací\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprphtml5videoshim;version=12.0.1.652]
"Description"=RealPlayer(tm) HTML5VideoShim Plug-In
"Path"=C:\Documents and Settings\All Users\Data aplikací\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=12.0.1.647]
"Description"=12.0.1.647
"Path"=c:\program files\real\realplayer\Netscape6\nprpjplug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=1.0.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll
C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{AB2CE124-6272-4b12-94A9-7303C7397BD1}
{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
C:\Program Files\Mozilla Firefox\components\
browser.xpt
browserdirprovider.dll
brwsrcmp.dll
components.list
FeedConverter.js
FeedProcessor.js
FeedWriter.js
fuelApplication.js
GPSDGeolocationProvider.js
jsconsole-clhandler.js
NetworkGeolocationProvider.js
nppl3260.xpt
nsAddonRepository.js
nsBadCertHandler.js
nsBlocklistService.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsContentDispatchChooser.js
nsContentPrefService.js
nsDefaultCLH.js
nsDownloadManagerUI.js
nsExtensionManager.js
nsFormAutoComplete.js
nsHandlerService.js
nsHelperAppDlg.js
nsINIProcessor.js
nsjsrealplayerplugin.xpt
nsLivemarkService.js
nsLoginInfo.js
nsLoginManager.js
nsLoginManagerPrompter.js
nsMicrosummaryService.js
nsPlacesAutoComplete.js
nsPlacesDBFlush.js
nsPlacesTransactionsService.js
nsPrivateBrowsingService.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsTaggingService.js
nsTryToClose.js
nsUpdateService.js
nsUpdateServiceStub.js
nsUpdateTimerManager.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsURLFormatter.js
nsWebHandlerApp.js
pluginGlue.js
storage-Legacy.js
storage-mozStorage.js
txEXSLTRegExFunctions.js
WebContentConverter.js
C:\Program Files\Mozilla Firefox\plugins\
npdeployJava1.dll
npnul32.dll
nppdf32.dll
nppl3260.dll
nprjplug.dll
nprpjplug.dll
C:\Program Files\Mozilla Firefox\searchplugins\
avg_igeared.xml
google.xml
jyxo-cz.xml
mall-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
C:\Documents and Settings\Administrator\Data aplikací\Mozilla\Firefox\Profiles\tch9cdwa.default\extensions\
engine@conduit.com
{195A3098-0BD5-4e90-AE22-BA1C540AFD1E}
{20a82645-c095-46ed-80e3-08825760534b}
{88c7f2aa-f93f-432c-8f0e-b7d85967a527}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\Documents and Settings\All Users\Data aplikací\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll [2011-07-05 386264]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
Conduit Engine - C:\Program Files\ConduitEngine\ConduitEngin0.dll [2011-01-09 3911776]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{88c7f2aa-f93f-432c-8f0e-b7d85967a527}]
BitTorrentBar Toolbar - C:\Program Files\BitTorrentBar\tbBit1.dll [2011-01-09 3911776]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-06-30 42272]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-06-30 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CCC7A320-B3CA-4199-B1A6-9F516DD69829}
{88c7f2aa-f93f-432c-8f0e-b7d85967a527} - BitTorrentBar Toolbar - C:\Program Files\BitTorrentBar\tbBit1.dll [2011-01-09 3911776]
{30F9B915-B755-4826-820B-08FBA6BD249D} - Conduit Engine - C:\Program Files\ConduitEngine\ConduitEngin0.dll [2011-01-09 3911776]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SetRefresh"=C:\Program Files\Compaq\SetRefresh\SetRefresh.exe [2003-11-20 525824]
"SpywareTerminator"=C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe [2009-09-29 1783808]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2009-07-21 61440]
"WinFastDTV"=C:\Program Files\WinFast\WFDTV\DTVSchdl.exe [2006-07-11 69632]
"WinFast Schedule"=C:\Program Files\WinFast\WFTVFM\WFWIZ.exe [2006-07-07 348160]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2011-01-31 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-21 932288]
"602PC SUITE PDF Saver"=C:\Program Files\Common Files\soft602\pdfSaver.exe [2005-08-31 49152]
"TkBellExe"=C:\program files\real\realplayer\update\realsched.exe [2011-07-05 273544]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-04-08 254696]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"AvgUninstallURL"=cmd.exe /c start
http://www.avg.cz/cz.special-uninstalla ... er=9.0.894 []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2010-04-06 26102056]
"BitTorrent"=C:\Program Files\BitTorrent\BitTorrent.exe [2011-04-30 400760]
"SoftAuto.exe"=C:\Program Files\Creative\Software Update 3\SoftAuto.exe [2008-08-13 405504]
"pdfSaver3"=c:\Program Files\PDF\pdfSaver\pdfSaver3.exe [2004-05-19 385024]
"8DDYX0ZBPZ"=C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Awr.exe [2011-07-16 241152]
"ASUS SmartDoctor"=C:\Program Files\ASUS\SmartDoctor\SmartDoctor.exe /start []
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Adobe Gamma Loader.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
BDARemote.lnk - C:\Program Files\USB TV\EM28XX\BDARemote.exe
WDDMStatus.lnk - C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe
WDSmartWare.lnk - C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe
C:\Documents and Settings\Administrator\Nabídka Start\Programy\Po spuštění
OpenOffice.org 3.2.lnk - C:\Program Files\OpenOffice.org 3\program\quickstart.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2009-07-21 155648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"authentication packages"=msv1_0
nwprovau
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Mozilla Firefox\firefox.exe"="C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox"
"C:\Program Files\Real\RealPlayer\realplay.exe"="C:\Program Files\Real\RealPlayer\realplay.exe:*:Enabled:RealPlayer"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\DC++\DCPlusPlus.exe"="C:\Program Files\DC++\DCPlusPlus.exe:*:Enabled:DC++"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\SAS\SAS Learning Edition 4.1\sas.exe"="C:\Program Files\SAS\SAS Learning Edition 4.1\sas.exe:*:Enabled:SAS 9.1 for Windows"
"C:\Program Files\Java\jre6\bin\java.exe"="C:\Program Files\Java\jre6\bin\java.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Program Files\Google\Google Earth\plugin\geplugin.exe"="C:\Program Files\Google\Google Earth\plugin\geplugin.exe:*:Enabled:Google Earth"
"C:\Program Files\BitTorrent\BitTorrent.exe"="C:\Program Files\BitTorrent\BitTorrent.exe:*:Enabled:BitTorrent"
"C:\Documents and Settings\Administrator\Dokumenty\Stažené soubory\SweetImSetup.exe"="C:\Documents and Settings\Administrator\Dokumenty\Stažené soubory\SweetImSetup.exe:*:Enabled:SweetIM Installer"
"C:\Documents and Settings\Administrator\Local Settings\Temp\SweetIMReinstall\SweetImSetup.exe"="C:\Documents and Settings\Administrator\Local Settings\Temp\SweetIMReinstall\SweetImSetup.exe:*:Enabled:SweetIM Installer"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\VideoLAN\VLC\vlc.exe"="C:\Program Files\VideoLAN\VLC\vlc.exe:*:Enabled:VLC media player"
"J:\wow\WoW-x.x.x.x-4.0.0.12911-Downloader.exe"="J:\wow\WoW-x.x.x.x-4.0.0.12911-Downloader.exe:*:Enabled:Blizzard Downloader"
"C:\Program Files\Real\RealUpgrade\realupgrade.exe"="C:\Program Files\Real\RealUpgrade\realupgrade.exe:*:Disabled:RealUpgrade Launcher"
"C:\Program Files\Internet Explorer\iexplore.exe"="C:\Program Files\Internet Explorer\iexplore.exe:*:Enabled:Internet Explorer"
"C:\Program Files\Windows Doctor\WindowsDoctor.exe"="C:\Program Files\Windows Doctor\WindowsDoctor.exe:*:Enabled:Windows Doctor"
"C:\Documents and Settings\Administrator\Local Settings\Temp\Awr.exe"="C:\Documents and Settings\Administrator\Local Settings\Temp\Awr.exe:*:Enabled:Microjy setup "
"C:\Program Files\Mozilla Firefox\plugin-container.exe"="C:\Program Files\Mozilla Firefox\plugin-container.exe:*:Enabled:Plugin Container for Firefox"
"C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe"="C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe:*:Enabled:WD SmartWare"
"C:\WINDOWS\Axusaa.exe"="C:\WINDOWS\Axusaa.exe:*:Enabled:wMicroN setup H"
"C:\Program Files\Google\Update\GoogleUpdate.exe"="C:\Program Files\Google\Update\GoogleUpdate.exe:*:Enabled:Instalační program Google"
"C:\Program Files\Common Files\Java\Java Update\jusched.exe"="C:\Program Files\Common Files\Java\Java Update\jusched.exe:*:Enabled:Java(TM) Update Scheduler"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"vidc.asv2"=asusasv2.dll
"MSVideo8"=VfWWDM32.dll
"vidc.ffds"=ffdshow.ax
"msacm.ac3filter"=ac3filter.acm
"VIDC.ACDV"=ACDV.dll
"wave2"=wdmaud.drv
"vidc.tscc"=tsccvid.dll
======List of files/folders created in the last 1 month======
2011-07-17 19:26:20 ----D---- C:\rsit
2011-07-17 19:26:20 ----D---- C:\Program Files\trend micro
2011-07-17 19:18:05 ----D---- C:\Program Files\Ultimate Process Manager
2011-07-16 14:24:33 ----D---- C:\Documents and Settings\All Users\Data aplikací\MicroWorld
2011-07-16 13:59:23 ----D---- C:\Program Files\Best Spyware Scanner
2011-07-16 13:51:23 ----D---- C:\Program Files\ESET
2011-07-16 13:51:23 ----D---- C:\Documents and Settings\All Users\Data aplikací\ESET
2011-07-16 12:10:14 ----A---- C:\WINDOWS\Axusaa.exe
2011-07-16 12:09:59 ----A---- C:\WINDOWS\system32\sshnas21.dll
2011-07-16 12:08:16 ----A---- C:\WINDOWS\system32\drivers\1210921679.sys
2011-07-15 19:40:47 ----A---- C:\WINDOWS\system32\javaws.exe
2011-07-15 19:40:47 ----A---- C:\WINDOWS\system32\javaw.exe
2011-07-15 19:40:47 ----A---- C:\WINDOWS\system32\java.exe
2011-07-13 20:22:57 ----HDC---- C:\WINDOWS\$NtUninstallKB2507938$
2011-07-13 20:19:43 ----HDC---- C:\WINDOWS\$NtUninstallKB2555917$
2011-07-05 08:43:51 ----D---- C:\Program Files\Common Files\xing shared
2011-07-05 08:43:26 ----A---- C:\WINDOWS\system32\rmoc3260.dll
2011-07-05 08:42:56 ----A---- C:\WINDOWS\system32\pndx5032.dll
2011-07-05 08:42:56 ----A---- C:\WINDOWS\system32\pndx5016.dll
2011-06-29 09:48:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2541763$
2011-06-27 08:51:33 ----A---- C:\WINDOWS\system32\PerfStringBackup.TMP
2011-06-25 02:03:59 ----D---- C:\fotky
2011-06-18 03:01:15 ----HDC---- C:\WINDOWS\$NtUninstallKB2476490$
2011-06-18 03:01:10 ----HDC---- C:\WINDOWS\$NtUninstallKB2503665$
2011-06-18 03:01:05 ----HDC---- C:\WINDOWS\$NtUninstallKB2535512$
2011-06-18 03:00:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2536276$
2011-06-18 03:00:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893$
======List of files/folders modified in the last 1 month======
2011-07-17 19:26:20 ----RD---- C:\Program Files
2011-07-17 19:22:48 ----D---- C:\Documents and Settings\Administrator\Data aplikací\BitTorrent
2011-07-17 19:18:44 ----D---- C:\Documents and Settings\All Users\Data aplikací\Easybits GO
2011-07-17 19:18:37 ----D---- C:\WINDOWS\system32\CatRoot2
2011-07-17 19:18:21 ----SD---- C:\WINDOWS\Tasks
2011-07-17 19:11:20 ----D---- C:\Documents and Settings\Administrator\Data aplikací\Adobe
2011-07-17 19:03:32 ----D---- C:\WINDOWS\system32\config
2011-07-17 19:03:14 ----D---- C:\Documents and Settings\Administrator\Data aplikací\Skype
2011-07-17 19:01:47 ----D---- C:\WINDOWS\Temp
2011-07-17 18:59:35 ----D---- C:\WINDOWS\system32\drivers
2011-07-17 18:59:00 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-07-17 18:36:15 ----ASH---- C:\boot.ini
2011-07-17 18:36:15 ----A---- C:\WINDOWS\win.ini
2011-07-17 18:36:15 ----A---- C:\WINDOWS\system.ini
2011-07-17 18:02:19 ----D---- C:\WINDOWS\system32\CatRoot
2011-07-17 17:56:28 ----D---- C:\WINDOWS\system32\wbem
2011-07-17 17:56:27 ----D---- C:\WINDOWS\Registration
2011-07-17 17:56:14 ----SHD---- C:\WINDOWS\Installer
2011-07-17 17:56:10 ----SHD---- C:\Config.Msi
2011-07-17 17:56:09 ----D---- C:\WINDOWS
2011-07-17 17:48:10 ----D---- C:\Documents and Settings\Administrator\Data aplikací\go
2011-07-17 17:45:47 ----HD---- C:\WINDOWS\inf
2011-07-16 14:31:42 ----D---- C:\WINDOWS\system32
2011-07-16 14:24:35 ----D---- C:\Program Files\Common Files
2011-07-16 14:15:03 ----D---- C:\Documents and Settings\Administrator\Data aplikací\PriceGong
2011-07-16 13:42:23 ----D---- C:\Program Files\Spyware Terminator
2011-07-16 13:35:19 ----D---- C:\Program Files\Spybot - Search & Destroy
2011-07-16 13:34:20 ----D---- C:\Documents and Settings\All Users\Data aplikací\Spybot - Search & Destroy
2011-07-16 13:27:26 ----D---- C:\Documents and Settings\Administrator\Data aplikací\Spyware Terminator
2011-07-16 13:22:00 ----D---- C:\Documents and Settings\All Users\Data aplikací\avg9
2011-07-16 13:16:17 ----D---- C:\Program Files\Windows Doctor
2011-07-16 12:39:54 ----RSHD---- C:\WINDOWS\system32\dllcache
2011-07-16 11:37:39 ----D---- C:\Program Files\Fillets
2011-07-16 11:03:08 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2011-07-15 23:13:13 ----D---- C:\Program Files\Cyklotrasy
2011-07-15 19:41:17 ----D---- C:\WINDOWS\Prefetch
2011-07-15 19:41:16 ----D---- C:\Program Files\Common Files\Java
2011-07-15 19:40:42 ----D---- C:\Program Files\Java
2011-07-14 23:46:03 ----D---- C:\Program Files\Google
2011-07-13 20:19:54 ----A---- C:\WINDOWS\system32\MRT.exe
2011-07-13 20:19:49 ----A---- C:\WINDOWS\imsins.BAK
2011-07-13 08:47:20 ----HD---- C:\WINDOWS\$hf_mig$
2011-07-11 01:57:39 ----A---- C:\WINDOWS\system32\Dvbpws.dll
2011-07-10 23:56:19 ----D---- C:\Documents and Settings\Administrator\Data aplikací\vlc
2011-07-10 20:10:39 ----AD---- C:\Documents and Settings\All Users\Data aplikací\TEMP
2011-07-07 20:55:22 ----D---- C:\Documents and Settings\All Users\Data aplikací\Spyware Terminator
2011-07-05 08:44:50 ----D---- C:\Documents and Settings\All Users\Data aplikací\Real
2011-07-05 08:44:49 ----D---- C:\Documents and Settings\Administrator\Data aplikací\Real
2011-07-05 08:43:57 ----D---- C:\Program Files\Real
2011-07-05 08:42:55 ----A---- C:\WINDOWS\system32\pncrt.dll
2011-07-05 08:42:41 ----D---- C:\Program Files\Common Files\Real
2011-06-30 18:17:43 ----D---- C:\Documents and Settings\Administrator\Data aplikací\dvdcss
2011-06-28 19:39:03 ----D---- C:\WINDOWS\Microsoft.NET
2011-06-28 19:38:59 ----RSD---- C:\WINDOWS\assembly
2011-06-27 08:51:35 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-06-27 08:51:05 ----D---- C:\WINDOWS\WinSxS
2011-06-23 19:17:23 ----D---- C:\Program Files\Mozilla Firefox
2011-06-18 03:03:49 ----D---- C:\WINDOWS\system32\cs-cz
2011-06-18 03:03:49 ----D---- C:\Program Files\Internet Explorer