Vir z Facebooku
Napsal: 20 črc 2011 15:55
Dobrý den,
podle toho, co tu čtu jsem byl další z řady napálených a proto se obracím s žádostí o pomoc... Jsem absolutní zelenáč, ale stalo se mi přesně to, co tu popisují všichni ostatní. Zprávy v angličtině, video, flash player a pak bum a bylo to zavirovaný...
Pokud jsem pochopil, tady je můj log z RSIT... Pomůžete mi prosím?
Logfile of random's system information tool 1.09 (written by random/random)
Run by Administrator at 2011-07-20 16:46:32
Systém Microsoft Windows XP Professional
System drive C: has 17 GB (90%) free of 19 GB
Total RAM: 511 MB (64% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:46:40, on 20.7.2011
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\smsc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\host.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\System32\devldr32.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Administrator\Plocha\RSIT.exe
C:\WINDOWS\System32\wbem\wmiprvse.exe
C:\Program Files\trend micro\Administrator.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O3 - Toolbar: &Rádio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [Windows Update] host.exe
O4 - HKLM\..\RunServices: [Windows Update] host.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll
O23 - Service: Local Service - Unknown owner - C:\WINDOWS\wuaucpl.exe
O23 - Service: Print Spooler Monitor (PrtSmanm) - Unknown owner - C:\WINDOWS\system32\smsc.exe
O23 - Service: Windows Hosts Controller - Unknown owner - C:\WINDOWS\Fonts\unwise_.exe
--
End of file - 2479 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E718888-423F-11D2-876E-00A0C9082467} - &Rádio - C:\WINDOWS\System32\msdxm.ocx [2001-10-25 846364]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Update"=C:\WINDOWS\system32\host.exe [2011-07-20 259072]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\System32\ctfmon.exe [2001-10-25 20480]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2001-08-02 1085469]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UploadMgr]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"\??\C:\WINDOWS\system32\winlogon.exe"="\??\C:\WINDOWS\system32\winlogon.exe:*:enabled:@shell32.dll,-1"
"unwise_.exe"="unwise_.exe:*:Enabled:SYSTEM"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=ctwdm32.dll
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\System32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\System32\l3codeca.acm
======List of files/folders created in the last 1 month======
2011-07-20 17:53:20 ----A---- C:\WINDOWS\System32\h323log.txt
2011-07-20 17:49:35 ----A---- C:\WINDOWS\System32\drivers\splitter.sys
2011-07-20 17:49:34 ----A---- C:\WINDOWS\System32\drivers\drmkaud.sys
2011-07-20 17:49:32 ----A---- C:\WINDOWS\System32\drivers\MSPQM.sys
2011-07-20 17:49:31 ----A---- C:\WINDOWS\System32\drivers\aec.sys
2011-07-20 17:49:29 ----A---- C:\WINDOWS\System32\drivers\swmidi.sys
2011-07-20 17:49:28 ----A---- C:\WINDOWS\System32\drivers\wdmaud.sys
2011-07-20 17:49:26 ----A---- C:\WINDOWS\System32\drivers\DMusic.sys
2011-07-20 17:49:25 ----A---- C:\WINDOWS\System32\drivers\MSKSSRV.sys
2011-07-20 17:49:24 ----A---- C:\WINDOWS\System32\drivers\kmixer.sys
2011-07-20 17:49:22 ----A---- C:\WINDOWS\System32\drivers\MSPCLOCK.sys
2011-07-20 17:49:21 ----A---- C:\WINDOWS\System32\drivers\sysaudio.sys
2011-07-20 17:49:16 ----A---- C:\WINDOWS\System32\drivers\audstub.sys
2011-07-20 17:48:54 ----A---- C:\WINDOWS\System32\drivers\redbook.sys
2011-07-20 17:48:22 ----A---- C:\WINDOWS\System32\drivers\el90xnd5.sys
2011-07-20 17:48:18 ----A---- C:\WINDOWS\System32\sfman32.dll
2011-07-20 17:48:18 ----A---- C:\WINDOWS\System32\sblfx.dll
2011-07-20 17:48:18 ----A---- C:\WINDOWS\System32\ksuser.dll
2011-07-20 17:48:18 ----A---- C:\WINDOWS\System32\drivers\sfmanm.sys
2011-07-20 17:48:18 ----A---- C:\WINDOWS\System32\drivers\portcls.sys
2011-07-20 17:48:18 ----A---- C:\WINDOWS\System32\drivers\emu10k1m.sys
2011-07-20 17:48:18 ----A---- C:\WINDOWS\System32\drivers\drmk.sys
2011-07-20 17:48:18 ----A---- C:\WINDOWS\System32\drivers\ctlfacem.sys
2011-07-20 17:48:18 ----A---- C:\WINDOWS\System32\devldr32.exe
2011-07-20 17:48:18 ----A---- C:\WINDOWS\System32\devcon32.dll
2011-07-20 17:48:18 ----A---- C:\WINDOWS\System32\ctwdm32.dll
2011-07-20 17:48:16 ----A---- C:\WINDOWS\System32\drivers\gameenum.sys
2011-07-20 17:48:15 ----A---- C:\WINDOWS\System32\drivers\ctljystk.sys
2011-07-20 17:48:05 ----A---- C:\WINDOWS\System32\usbui.dll
2011-07-20 17:46:54 ----D---- C:\Program Files\Common Files\ODBC
2011-07-20 17:46:54 ----A---- C:\WINDOWS\System32\PerfStringBackup.INI
2011-07-20 17:46:54 ----A---- C:\WINDOWS\ODBCINST.INI
2011-07-20 17:46:51 ----D---- C:\Program Files\Common Files\SpeechEngines
2011-07-20 17:46:50 ----RD---- C:\Program Files
2011-07-20 17:46:50 ----D---- C:\Program Files\Common Files\Microsoft Shared
2011-07-20 17:46:50 ----D---- C:\Program Files\Common Files
2011-07-20 17:46:47 ----RA---- C:\WINDOWS\System32\kbdtuq.dll
2011-07-20 17:46:47 ----RA---- C:\WINDOWS\System32\kbdtuf.dll
2011-07-20 17:46:47 ----RA---- C:\WINDOWS\System32\kbdazel.dll
2011-07-20 17:46:45 ----RA---- C:\WINDOWS\System32\kbdycc.dll
2011-07-20 17:46:45 ----RA---- C:\WINDOWS\System32\kbduzb.dll
2011-07-20 17:46:45 ----RA---- C:\WINDOWS\System32\kbdur.dll
2011-07-20 17:46:45 ----RA---- C:\WINDOWS\System32\kbdtat.dll
2011-07-20 17:46:45 ----RA---- C:\WINDOWS\System32\kbdru1.dll
2011-07-20 17:46:45 ----RA---- C:\WINDOWS\System32\kbdru.dll
2011-07-20 17:46:45 ----RA---- C:\WINDOWS\System32\kbdmon.dll
2011-07-20 17:46:45 ----RA---- C:\WINDOWS\System32\kbdkyr.dll
2011-07-20 17:46:45 ----RA---- C:\WINDOWS\System32\kbdkaz.dll
2011-07-20 17:46:45 ----RA---- C:\WINDOWS\System32\kbdaze.dll
2011-07-20 17:46:44 ----RA---- C:\WINDOWS\System32\kbdbu.dll
2011-07-20 17:46:44 ----RA---- C:\WINDOWS\System32\kbdblr.dll
2011-07-20 17:46:42 ----RA---- C:\WINDOWS\System32\kbdhept.dll
2011-07-20 17:46:42 ----RA---- C:\WINDOWS\System32\kbdhela3.dll
2011-07-20 17:46:42 ----RA---- C:\WINDOWS\System32\kbdhela2.dll
2011-07-20 17:46:42 ----RA---- C:\WINDOWS\System32\kbdhe319.dll
2011-07-20 17:46:42 ----RA---- C:\WINDOWS\System32\kbdhe220.dll
2011-07-20 17:46:42 ----RA---- C:\WINDOWS\System32\kbdhe.dll
2011-07-20 17:46:42 ----RA---- C:\WINDOWS\System32\kbdgkl.dll
2011-07-20 17:46:40 ----RA---- C:\WINDOWS\System32\kbdlv1.dll
2011-07-20 17:46:40 ----RA---- C:\WINDOWS\System32\kbdlv.dll
2011-07-20 17:46:40 ----RA---- C:\WINDOWS\System32\kbdlt1.dll
2011-07-20 17:46:40 ----RA---- C:\WINDOWS\System32\kbdlt.dll
2011-07-20 17:46:40 ----RA---- C:\WINDOWS\System32\kbdest.dll
2011-07-20 17:46:37 ----A---- C:\WINDOWS\System32\kbdsl1.dll
2011-07-20 17:46:36 ----A---- C:\WINDOWS\System32\kbdycl.dll
2011-07-20 17:46:36 ----A---- C:\WINDOWS\System32\kbdsl.dll
2011-07-20 17:46:36 ----A---- C:\WINDOWS\System32\kbdro.dll
2011-07-20 17:46:36 ----A---- C:\WINDOWS\System32\kbdpl1.dll
2011-07-20 17:46:36 ----A---- C:\WINDOWS\System32\kbdpl.dll
2011-07-20 17:46:36 ----A---- C:\WINDOWS\System32\kbdhu1.dll
2011-07-20 17:46:36 ----A---- C:\WINDOWS\System32\kbdhu.dll
2011-07-20 17:46:36 ----A---- C:\WINDOWS\System32\kbdcr.dll
2011-07-20 17:46:36 ----A---- C:\WINDOWS\System32\KBDAL.DLL
2011-07-20 17:46:35 ----A---- C:\WINDOWS\System32\spxcoins.dll
2011-07-20 17:46:35 ----A---- C:\WINDOWS\System32\irclass.dll
2011-07-20 17:46:35 ----A---- C:\WINDOWS\System32\drivers\irenum.sys
2011-07-20 17:46:35 ----A---- C:\WINDOWS\System32\dgsetup.dll
2011-07-20 17:46:35 ----A---- C:\WINDOWS\System32\dgrpsetu.dll
2011-07-20 17:46:34 ----A---- C:\WINDOWS\System32\EqnClass.Dll
2011-07-20 17:46:34 ----A---- C:\WINDOWS\System32\batt.dll
2011-07-20 17:46:32 ----A---- C:\WINDOWS\TASKMAN.EXE
2011-07-20 17:46:32 ----A---- C:\WINDOWS\NOTEPAD.EXE
2011-07-20 17:46:31 ----N---- C:\WINDOWS\System32\CONFIG.TMP
2011-07-20 17:46:31 ----A---- C:\WINDOWS\System32\storprop.dll
2011-07-20 17:46:23 ----ASH---- C:\Documents and Settings\All Users\Data aplikací\desktop.ini
2011-07-20 17:46:19 ----RA---- C:\WINDOWS\SET7.tmp
2011-07-20 17:46:17 ----RA---- C:\WINDOWS\SET3.tmp
2011-07-20 17:46:11 ----D---- C:\WINDOWS\System32\CatRoot2
2011-07-20 17:46:11 ----D---- C:\WINDOWS\System32\CatRoot
2011-07-20 17:46:05 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2011-07-20 17:45:55 ----A---- C:\WINDOWS\setuplog.txt
2011-07-20 17:45:50 ----D---- C:\Documents and Settings
2011-07-20 17:45:49 ----A---- C:\WINDOWS\System32\FNTCACHE.DAT
2011-07-20 17:45:05 ----SH---- C:\boot.ini
2011-07-20 17:41:45 ----RSHDC---- C:\WINDOWS\System32\dllcache
2011-07-20 17:41:45 ----RSD---- C:\WINDOWS\Fonts
2011-07-20 17:41:45 ----RD---- C:\WINDOWS\Web
2011-07-20 17:41:45 ----HD---- C:\WINDOWS\inf
2011-07-20 17:41:45 ----D---- C:\WINDOWS\WinSxS
2011-07-20 17:41:45 ----D---- C:\WINDOWS\twain_32
2011-07-20 17:41:45 ----D---- C:\WINDOWS\Temp
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\wins
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\wbem
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\usmt
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\spool
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\ShellExt
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\Setup
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\ras
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\oobe
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\npp
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\mui
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\inetsrv
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\IME
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\icsxml
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\ias
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\export
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\drivers\etc
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\drivers\disdn
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\drivers
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\dhcp
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\config
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\3com_dmi
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\3076
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\2052
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\1054
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\1042
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\1041
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\1037
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\1033
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\1031
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\1029
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\1028
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\1025
2011-07-20 17:41:45 ----D---- C:\WINDOWS\system32
2011-07-20 17:41:45 ----D---- C:\WINDOWS\system
2011-07-20 17:41:45 ----D---- C:\WINDOWS\security
2011-07-20 17:41:45 ----D---- C:\WINDOWS\Resources
2011-07-20 17:41:45 ----D---- C:\WINDOWS\repair
2011-07-20 17:41:45 ----D---- C:\WINDOWS\mui
2011-07-20 17:41:45 ----D---- C:\WINDOWS\msapps
2011-07-20 17:41:45 ----D---- C:\WINDOWS\msagent
2011-07-20 17:41:45 ----D---- C:\WINDOWS\Media
2011-07-20 17:41:45 ----D---- C:\WINDOWS\java
2011-07-20 17:41:45 ----D---- C:\WINDOWS\ime
2011-07-20 17:41:45 ----D---- C:\WINDOWS\Help
2011-07-20 17:41:45 ----D---- C:\WINDOWS\Driver Cache
2011-07-20 17:41:45 ----D---- C:\WINDOWS\Debug
2011-07-20 17:41:45 ----D---- C:\WINDOWS\Cursors
2011-07-20 17:41:45 ----D---- C:\WINDOWS\Connection Wizard
2011-07-20 17:41:45 ----D---- C:\WINDOWS\Config
2011-07-20 17:41:45 ----D---- C:\WINDOWS\AppPatch
2011-07-20 17:41:45 ----D---- C:\WINDOWS\addins
2011-07-20 17:41:45 ----D---- C:\WINDOWS
2011-07-20 17:41:45 ----ASH---- C:\pagefile.sys
2011-07-20 16:46:32 ----D---- C:\rsit
2011-07-20 16:46:32 ----D---- C:\Program Files\trend micro
2011-07-20 16:24:16 ----SHD---- C:\WINDOWS\Installer
2011-07-20 16:24:13 ----D---- C:\Documents and Settings\Administrator\Data aplikací\Identities
2011-07-20 16:24:06 ----HD---- C:\Program Files\Uninstall Information
2011-07-20 16:23:59 ----SD---- C:\Documents and Settings\Administrator\Data aplikací\Microsoft
2011-07-20 16:23:59 ----ASH---- C:\Documents and Settings\Administrator\Data aplikací\desktop.ini
2011-07-20 16:21:45 ----RSH---- C:\WINDOWS\wuaucpl.exe
2011-07-20 16:12:28 ----RSH---- C:\WINDOWS\fonts\unwise_.exe
2011-07-20 16:11:07 ----A---- C:\WINDOWS\System32\lpdd.exe
2011-07-20 16:10:39 ----R---- C:\WINDOWS\System32\smsc.exe
2011-07-20 16:10:34 ----RSH---- C:\WINDOWS\System32\host.exe
2011-07-20 16:06:56 ----SHD---- C:\System Volume Information
2011-07-20 16:06:48 ----D---- C:\WINDOWS\Prefetch
2011-07-20 16:06:48 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-07-20 16:03:08 ----AS---- C:\WINDOWS\bootstat.dat
2011-07-20 16:00:22 ----D---- C:\WINDOWS\System32\xircom
2011-07-20 16:00:22 ----D---- C:\Program Files\xerox
2011-07-20 16:00:22 ----D---- C:\Program Files\microsoft frontpage
2011-07-20 15:59:53 ----RASH---- C:\MSDOS.SYS
2011-07-20 15:59:53 ----RASH---- C:\IO.SYS
2011-07-20 15:59:53 ----A---- C:\WINDOWS\control.ini
2011-07-20 15:59:53 ----A---- C:\CONFIG.SYS
2011-07-20 15:59:53 ----A---- C:\AUTOEXEC.BAT
2011-07-20 15:59:44 ----A---- C:\WINDOWS\OEWABLog.txt
2011-07-20 15:59:40 ----A---- C:\WINDOWS\System32\mapi32.dll
2011-07-20 15:58:32 ----RD---- C:\WINDOWS\Offline Web Pages
2011-07-20 15:58:31 ----SD---- C:\WINDOWS\Downloaded Program Files
2011-07-20 15:58:03 ----D---- C:\WINDOWS\srchasst
2011-07-20 15:57:53 ----D---- C:\WINDOWS\System32\Macromed
2011-07-20 15:57:53 ----D---- C:\WINDOWS\System32\DirectX
2011-07-20 15:57:41 ----A---- C:\WINDOWS\System32\qmgrprxy.dll
2011-07-20 15:57:41 ----A---- C:\WINDOWS\System32\qmgr.dll
2011-07-20 15:57:40 ----D---- C:\Program Files\Movie Maker
2011-07-20 15:57:21 ----A---- C:\WINDOWS\System32\safrslv.dll
2011-07-20 15:57:21 ----A---- C:\WINDOWS\System32\safrdm.dll
2011-07-20 15:57:21 ----A---- C:\WINDOWS\System32\safrcdlg.dll
2011-07-20 15:57:20 ----A---- C:\WINDOWS\System32\racpldlg.dll
2011-07-20 15:57:20 ----A---- C:\WINDOWS\System32\atrace.dll
2011-07-20 15:57:16 ----A---- C:\WINDOWS\System32\desktop.ini
2011-07-20 15:57:16 ----A---- C:\WINDOWS\desktop.ini
2011-07-20 15:57:09 ----D---- C:\WINDOWS\System32\Restore
2011-07-20 15:57:09 ----A---- C:\WINDOWS\System32\srsvc.dll
2011-07-20 15:57:09 ----A---- C:\WINDOWS\System32\srrstr.dll
2011-07-20 15:57:09 ----A---- C:\WINDOWS\System32\srclient.dll
2011-07-20 15:57:09 ----A---- C:\WINDOWS\System32\drivers\sr.sys
2011-07-20 15:57:08 ----D---- C:\Program Files\Windows Media Player
2011-07-20 15:57:08 ----A---- C:\WINDOWS\System32\ils.dll
2011-07-20 15:57:07 ----A---- C:\WINDOWS\System32\nmmkcert.dll
2011-07-20 15:57:07 ----A---- C:\WINDOWS\System32\nmevtmsg.dll
2011-07-20 15:57:07 ----A---- C:\WINDOWS\System32\msconf.dll
2011-07-20 15:57:07 ----A---- C:\WINDOWS\System32\mnmsrvc.exe
2011-07-20 15:57:07 ----A---- C:\WINDOWS\System32\mnmdd.dll
2011-07-20 15:57:07 ----A---- C:\WINDOWS\System32\isrdbg32.dll
2011-07-20 15:57:03 ----D---- C:\WINDOWS\PCHEALTH
2011-07-20 15:57:03 ----D---- C:\Program Files\NetMeeting
2011-07-20 15:57:03 ----A---- C:\WINDOWS\System32\msoert2.dll
2011-07-20 15:57:03 ----A---- C:\WINDOWS\System32\msoeacct.dll
2011-07-20 15:57:03 ----A---- C:\WINDOWS\System32\acctres.dll
2011-07-20 15:57:02 ----D---- C:\Program Files\Common Files\Services
2011-07-20 15:57:01 ----A---- C:\WINDOWS\System32\inetres.dll
2011-07-20 15:57:01 ----A---- C:\WINDOWS\System32\inetcomm.dll
2011-07-20 15:56:56 ----SD---- C:\WINDOWS\Tasks
2011-07-20 15:56:56 ----D---- C:\Program Files\Outlook Express
2011-07-20 15:56:56 ----A---- C:\WINDOWS\System32\schedsvc.dll
2011-07-20 15:56:56 ----A---- C:\WINDOWS\System32\mstinit.exe
2011-07-20 15:56:56 ----A---- C:\WINDOWS\System32\mstask.dll
2011-07-20 15:56:55 ----A---- C:\WINDOWS\System32\isign32.dll
2011-07-20 15:56:55 ----A---- C:\WINDOWS\System32\inetcfg.dll
2011-07-20 15:56:55 ----A---- C:\WINDOWS\System32\icwphbk.dll
2011-07-20 15:56:55 ----A---- C:\WINDOWS\System32\icwdial.dll
2011-07-20 15:56:55 ----A---- C:\WINDOWS\System32\icfgnt5.dll
2011-07-20 15:56:53 ----D---- C:\Program Files\Common Files\MSSoap
2011-07-20 15:56:48 ----D---- C:\Program Files\Common Files\System
2011-07-20 15:56:45 ----D---- C:\Program Files\Internet Explorer
2011-07-20 15:56:08 ----A---- C:\WINDOWS\System32\emptyregdb.dat
2011-07-20 15:56:07 ----A---- C:\WINDOWS\System32\asr_pxyhdp.exe
2011-07-20 15:55:56 ----D---- C:\Program Files\ComPlus Applications
2011-07-20 15:55:55 ----A---- C:\WINDOWS\vbaddin.ini
2011-07-20 15:55:55 ----A---- C:\WINDOWS\vb.ini
2011-07-20 15:55:50 ----D---- C:\WINDOWS\Registration
2011-07-20 15:55:42 ----HD---- C:\Program Files\WindowsUpdate
2011-07-20 15:55:42 ----D---- C:\Program Files\Online Services
2011-07-20 15:55:35 ----D---- C:\Program Files\Messenger
2011-07-20 15:55:29 ----D---- C:\Program Files\MSN
2011-07-20 15:55:26 ----D---- C:\Program Files\MSN Gaming Zone
2011-07-20 15:55:26 ----A---- C:\WINDOWS\System32\write.exe
2011-07-20 15:55:15 ----A---- C:\WINDOWS\System32\accwiz.exe
2011-07-20 15:55:14 ----A---- C:\WINDOWS\System32\sndvol32.exe
2011-07-20 15:55:14 ----A---- C:\WINDOWS\System32\sndrec32.exe
2011-07-20 15:55:14 ----A---- C:\WINDOWS\System32\mplay32.exe
2011-07-20 15:55:14 ----A---- C:\WINDOWS\System32\hypertrm.dll
2011-07-20 15:55:14 ----A---- C:\WINDOWS\System32\hticons.dll
2011-07-20 15:55:14 ----A---- C:\WINDOWS\System32\avwav.dll
2011-07-20 15:55:14 ----A---- C:\WINDOWS\System32\avmeter.dll
2011-07-20 15:55:13 ----D---- C:\Program Files\Windows NT
2011-07-20 15:55:13 ----A---- C:\WINDOWS\System32\winchat.exe
2011-07-20 15:55:13 ----A---- C:\WINDOWS\System32\avtapi.dll
2011-07-20 15:55:11 ----A---- C:\WINDOWS\System32\mspaint.exe
2011-07-20 15:55:06 ----A---- C:\WINDOWS\System32\clipbrd.exe
2011-07-20 15:55:05 ----A---- C:\WINDOWS\System32\getuname.dll
2011-07-20 15:55:04 ----A---- C:\WINDOWS\System32\spider.exe
2011-07-20 15:55:04 ----A---- C:\WINDOWS\System32\sol.exe
2011-07-20 15:55:04 ----A---- C:\WINDOWS\System32\charmap.exe
2011-07-20 15:55:04 ----A---- C:\WINDOWS\System32\calc.exe
2011-07-20 15:55:03 ----A---- C:\WINDOWS\System32\wuaueng.dll
2011-07-20 15:55:03 ----A---- C:\WINDOWS\System32\wuauclt.exe
2011-07-20 15:55:03 ----A---- C:\WINDOWS\System32\winmine.exe
2011-07-20 15:55:03 ----A---- C:\WINDOWS\System32\mshearts.exe
2011-07-20 15:55:03 ----A---- C:\WINDOWS\System32\freecell.exe
2011-07-20 15:55:02 ----A---- C:\WINDOWS\System32\wuauserv.dll
2011-07-20 15:55:02 ----A---- C:\WINDOWS\System32\tscfgwmi.dll
2011-07-20 15:55:02 ----A---- C:\WINDOWS\System32\mstscax.dll
2011-07-20 15:55:02 ----A---- C:\WINDOWS\System32\mstsc.exe
2011-07-20 15:55:02 ----A---- C:\WINDOWS\System32\drivers\tdtcp.sys
2011-07-20 15:55:02 ----A---- C:\WINDOWS\System32\drivers\tdpipe.sys
2011-07-20 15:55:02 ----A---- C:\WINDOWS\System32\drivers\rdpwd.sys
2011-07-20 15:55:01 ----A---- C:\WINDOWS\System32\usrlogon.cmd
2011-07-20 15:55:01 ----A---- C:\WINDOWS\System32\tsshutdn.exe
2011-07-20 15:55:01 ----A---- C:\WINDOWS\System32\tslabels.ini
2011-07-20 15:55:01 ----A---- C:\WINDOWS\System32\tskill.exe
2011-07-20 15:55:01 ----A---- C:\WINDOWS\System32\tscupgrd.exe
2011-07-20 15:55:01 ----A---- C:\WINDOWS\System32\sessmgr.exe
2011-07-20 15:55:01 ----A---- C:\WINDOWS\System32\reset.exe
2011-07-20 15:55:01 ----A---- C:\WINDOWS\System32\remotepg.dll
2011-07-20 15:55:01 ----A---- C:\WINDOWS\System32\rdshost.exe
2011-07-20 15:55:01 ----A---- C:\WINDOWS\System32\rdsaddin.exe
2011-07-20 15:55:01 ----A---- C:\WINDOWS\System32\rdchost.dll
2011-07-20 15:55:00 ----A---- C:\WINDOWS\System32\tsdiscon.exe
2011-07-20 15:55:00 ----A---- C:\WINDOWS\System32\tscon.exe
2011-07-20 15:55:00 ----A---- C:\WINDOWS\System32\termsrv.dll
2011-07-20 15:55:00 ----A---- C:\WINDOWS\System32\shadow.exe
2011-07-20 15:55:00 ----A---- C:\WINDOWS\System32\rwinsta.exe
2011-07-20 15:55:00 ----A---- C:\WINDOWS\System32\regini.exe
2011-07-20 15:55:00 ----A---- C:\WINDOWS\System32\rdpwsx.dll
2011-07-20 15:55:00 ----A---- C:\WINDOWS\System32\rdpsnd.dll
2011-07-20 15:55:00 ----A---- C:\WINDOWS\System32\rdpclip.exe
2011-07-20 15:55:00 ----A---- C:\WINDOWS\System32\rdpcfgex.dll
2011-07-20 15:55:00 ----A---- C:\WINDOWS\System32\qwinsta.exe
2011-07-20 15:55:00 ----A---- C:\WINDOWS\System32\qprocess.exe
2011-07-20 15:54:59 ----D---- C:\WINDOWS\System32\MsDtc
2011-07-20 15:54:59 ----A---- C:\WINDOWS\System32\qappsrv.exe
2011-07-20 15:54:59 ----A---- C:\WINDOWS\System32\mtxoci.dll
2011-07-20 15:54:59 ----A---- C:\WINDOWS\System32\msg.exe
2011-07-20 15:54:59 ----A---- C:\WINDOWS\System32\msdtcuiu.dll
2011-07-20 15:54:59 ----A---- C:\WINDOWS\System32\logoff.exe
2011-07-20 15:54:59 ----A---- C:\WINDOWS\System32\icaapi.dll
2011-07-20 15:54:59 ----A---- C:\WINDOWS\System32\cfgbkend.dll
2011-07-20 15:54:59 ----A---- C:\WINDOWS\System32\cdmodem.dll
2011-07-20 15:54:58 ----A---- C:\WINDOWS\System32\xolehlp.dll
2011-07-20 15:54:58 ----A---- C:\WINDOWS\System32\msdtctm.dll
2011-07-20 15:54:58 ----A---- C:\WINDOWS\System32\msdtcprx.dll
2011-07-20 15:54:58 ----A---- C:\WINDOWS\System32\msdtcprf.ini
2011-07-20 15:54:58 ----A---- C:\WINDOWS\System32\msdtclog.dll
2011-07-20 15:54:58 ----A---- C:\WINDOWS\System32\msdtc.exe
2011-07-20 15:54:57 ----A---- C:\WINDOWS\System32\dcomcnfg.exe
2011-07-20 15:54:56 ----D---- C:\WINDOWS\System32\Com
2011-07-20 15:54:56 ----A---- C:\WINDOWS\System32\stclient.dll
2011-07-20 15:54:56 ----A---- C:\WINDOWS\System32\mtxlegih.dll
2011-07-20 15:54:56 ----A---- C:\WINDOWS\System32\mtxex.dll
2011-07-20 15:54:56 ----A---- C:\WINDOWS\System32\mtxdm.dll
2011-07-20 15:54:56 ----A---- C:\WINDOWS\System32\comrepl.dll
2011-07-20 15:54:56 ----A---- C:\WINDOWS\System32\comaddin.dll
2011-07-20 15:54:56 ----A---- C:\WINDOWS\System32\colbact.dll
2011-07-20 15:54:56 ----A---- C:\WINDOWS\System32\clbcatex.dll
2011-07-20 15:54:56 ----A---- C:\WINDOWS\System32\catsrvps.dll
2011-07-20 15:54:55 ----A---- C:\WINDOWS\System32\comuid.dll
2011-07-20 15:54:55 ----A---- C:\WINDOWS\System32\comsvcs.dll
2011-07-20 15:54:55 ----A---- C:\WINDOWS\System32\comsnap.dll
2011-07-20 15:54:55 ----A---- C:\WINDOWS\System32\catsrvut.dll
2011-07-20 15:54:55 ----A---- C:\WINDOWS\System32\catsrv.dll
2011-07-20 15:54:54 ----A---- C:\WINDOWS\System32\clbcatq.dll
2011-07-20 15:54:43 ----A---- C:\WINDOWS\System32\wmimgmt.msc
2011-07-20 15:54:43 ----A---- C:\WINDOWS\System32\servdeps.dll
2011-07-20 15:54:43 ----A---- C:\WINDOWS\System32\mmfutil.dll
2011-07-20 15:54:43 ----A---- C:\WINDOWS\System32\licwmi.dll
2011-07-20 15:54:43 ----A---- C:\WINDOWS\System32\cmprops.dll
2011-07-20 15:54:41 ----A---- C:\WINDOWS\System32\drivers\termdd.sys
2011-07-20 15:54:41 ----A---- C:\WINDOWS\System32\drivers\rdpdr.sys
======List of files/folders modified in the last 1 month======
2011-07-20 17:46:49 ----A---- C:\WINDOWS\system.ini
2011-07-20 15:59:53 ----A---- C:\WINDOWS\win.ini
2011-07-20 15:59:23 ----ASH---- C:\WINDOWS\fonts\desktop.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R3 ctljystk;Game port pro zařízení Creative SB Live!; C:\WINDOWS\System32\DRIVERS\ctljystk.sys [2001-08-17 3712]
R3 EL90X;3Com EtherLink XL 90X Adapter Driver; C:\WINDOWS\System32\DRIVERS\el90xnd5.sys [2001-10-24 153631]
R3 emu10k;Creative SB Live! (WDM); C:\WINDOWS\system32\drivers\emu10k1m.sys [2001-08-17 283904]
R3 emu10k1;Creative Interface Manager Driver (WDM); C:\WINDOWS\system32\drivers\ctlfacem.sys [2001-08-17 6912]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2001-10-25 9600]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 sfman;Creative SoundFont Manager Driver (WDM); C:\WINDOWS\system32\drivers\sfmanm.sys [2001-08-17 36480]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2001-10-25 18944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Local Service;Local Service; C:\WINDOWS\wuaucpl.exe [2011-07-20 869376]
R2 PrtSmanm;Print Spooler Monitor; C:\WINDOWS\system32\smsc.exe [2011-07-20 57871]
R2 Windows Hosts Controller;Windows Hosts Controller; C:\WINDOWS\Fonts\unwise_.exe [2011-07-20 172415]
-----------------EOF-----------------
podle toho, co tu čtu jsem byl další z řady napálených a proto se obracím s žádostí o pomoc... Jsem absolutní zelenáč, ale stalo se mi přesně to, co tu popisují všichni ostatní. Zprávy v angličtině, video, flash player a pak bum a bylo to zavirovaný...
Pokud jsem pochopil, tady je můj log z RSIT... Pomůžete mi prosím?
Logfile of random's system information tool 1.09 (written by random/random)
Run by Administrator at 2011-07-20 16:46:32
Systém Microsoft Windows XP Professional
System drive C: has 17 GB (90%) free of 19 GB
Total RAM: 511 MB (64% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:46:40, on 20.7.2011
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\smsc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\host.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\System32\devldr32.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Administrator\Plocha\RSIT.exe
C:\WINDOWS\System32\wbem\wmiprvse.exe
C:\Program Files\trend micro\Administrator.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O3 - Toolbar: &Rádio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [Windows Update] host.exe
O4 - HKLM\..\RunServices: [Windows Update] host.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll
O23 - Service: Local Service - Unknown owner - C:\WINDOWS\wuaucpl.exe
O23 - Service: Print Spooler Monitor (PrtSmanm) - Unknown owner - C:\WINDOWS\system32\smsc.exe
O23 - Service: Windows Hosts Controller - Unknown owner - C:\WINDOWS\Fonts\unwise_.exe
--
End of file - 2479 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E718888-423F-11D2-876E-00A0C9082467} - &Rádio - C:\WINDOWS\System32\msdxm.ocx [2001-10-25 846364]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Update"=C:\WINDOWS\system32\host.exe [2011-07-20 259072]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\System32\ctfmon.exe [2001-10-25 20480]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2001-08-02 1085469]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UploadMgr]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"\??\C:\WINDOWS\system32\winlogon.exe"="\??\C:\WINDOWS\system32\winlogon.exe:*:enabled:@shell32.dll,-1"
"unwise_.exe"="unwise_.exe:*:Enabled:SYSTEM"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=ctwdm32.dll
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\System32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\System32\l3codeca.acm
======List of files/folders created in the last 1 month======
2011-07-20 17:53:20 ----A---- C:\WINDOWS\System32\h323log.txt
2011-07-20 17:49:35 ----A---- C:\WINDOWS\System32\drivers\splitter.sys
2011-07-20 17:49:34 ----A---- C:\WINDOWS\System32\drivers\drmkaud.sys
2011-07-20 17:49:32 ----A---- C:\WINDOWS\System32\drivers\MSPQM.sys
2011-07-20 17:49:31 ----A---- C:\WINDOWS\System32\drivers\aec.sys
2011-07-20 17:49:29 ----A---- C:\WINDOWS\System32\drivers\swmidi.sys
2011-07-20 17:49:28 ----A---- C:\WINDOWS\System32\drivers\wdmaud.sys
2011-07-20 17:49:26 ----A---- C:\WINDOWS\System32\drivers\DMusic.sys
2011-07-20 17:49:25 ----A---- C:\WINDOWS\System32\drivers\MSKSSRV.sys
2011-07-20 17:49:24 ----A---- C:\WINDOWS\System32\drivers\kmixer.sys
2011-07-20 17:49:22 ----A---- C:\WINDOWS\System32\drivers\MSPCLOCK.sys
2011-07-20 17:49:21 ----A---- C:\WINDOWS\System32\drivers\sysaudio.sys
2011-07-20 17:49:16 ----A---- C:\WINDOWS\System32\drivers\audstub.sys
2011-07-20 17:48:54 ----A---- C:\WINDOWS\System32\drivers\redbook.sys
2011-07-20 17:48:22 ----A---- C:\WINDOWS\System32\drivers\el90xnd5.sys
2011-07-20 17:48:18 ----A---- C:\WINDOWS\System32\sfman32.dll
2011-07-20 17:48:18 ----A---- C:\WINDOWS\System32\sblfx.dll
2011-07-20 17:48:18 ----A---- C:\WINDOWS\System32\ksuser.dll
2011-07-20 17:48:18 ----A---- C:\WINDOWS\System32\drivers\sfmanm.sys
2011-07-20 17:48:18 ----A---- C:\WINDOWS\System32\drivers\portcls.sys
2011-07-20 17:48:18 ----A---- C:\WINDOWS\System32\drivers\emu10k1m.sys
2011-07-20 17:48:18 ----A---- C:\WINDOWS\System32\drivers\drmk.sys
2011-07-20 17:48:18 ----A---- C:\WINDOWS\System32\drivers\ctlfacem.sys
2011-07-20 17:48:18 ----A---- C:\WINDOWS\System32\devldr32.exe
2011-07-20 17:48:18 ----A---- C:\WINDOWS\System32\devcon32.dll
2011-07-20 17:48:18 ----A---- C:\WINDOWS\System32\ctwdm32.dll
2011-07-20 17:48:16 ----A---- C:\WINDOWS\System32\drivers\gameenum.sys
2011-07-20 17:48:15 ----A---- C:\WINDOWS\System32\drivers\ctljystk.sys
2011-07-20 17:48:05 ----A---- C:\WINDOWS\System32\usbui.dll
2011-07-20 17:46:54 ----D---- C:\Program Files\Common Files\ODBC
2011-07-20 17:46:54 ----A---- C:\WINDOWS\System32\PerfStringBackup.INI
2011-07-20 17:46:54 ----A---- C:\WINDOWS\ODBCINST.INI
2011-07-20 17:46:51 ----D---- C:\Program Files\Common Files\SpeechEngines
2011-07-20 17:46:50 ----RD---- C:\Program Files
2011-07-20 17:46:50 ----D---- C:\Program Files\Common Files\Microsoft Shared
2011-07-20 17:46:50 ----D---- C:\Program Files\Common Files
2011-07-20 17:46:47 ----RA---- C:\WINDOWS\System32\kbdtuq.dll
2011-07-20 17:46:47 ----RA---- C:\WINDOWS\System32\kbdtuf.dll
2011-07-20 17:46:47 ----RA---- C:\WINDOWS\System32\kbdazel.dll
2011-07-20 17:46:45 ----RA---- C:\WINDOWS\System32\kbdycc.dll
2011-07-20 17:46:45 ----RA---- C:\WINDOWS\System32\kbduzb.dll
2011-07-20 17:46:45 ----RA---- C:\WINDOWS\System32\kbdur.dll
2011-07-20 17:46:45 ----RA---- C:\WINDOWS\System32\kbdtat.dll
2011-07-20 17:46:45 ----RA---- C:\WINDOWS\System32\kbdru1.dll
2011-07-20 17:46:45 ----RA---- C:\WINDOWS\System32\kbdru.dll
2011-07-20 17:46:45 ----RA---- C:\WINDOWS\System32\kbdmon.dll
2011-07-20 17:46:45 ----RA---- C:\WINDOWS\System32\kbdkyr.dll
2011-07-20 17:46:45 ----RA---- C:\WINDOWS\System32\kbdkaz.dll
2011-07-20 17:46:45 ----RA---- C:\WINDOWS\System32\kbdaze.dll
2011-07-20 17:46:44 ----RA---- C:\WINDOWS\System32\kbdbu.dll
2011-07-20 17:46:44 ----RA---- C:\WINDOWS\System32\kbdblr.dll
2011-07-20 17:46:42 ----RA---- C:\WINDOWS\System32\kbdhept.dll
2011-07-20 17:46:42 ----RA---- C:\WINDOWS\System32\kbdhela3.dll
2011-07-20 17:46:42 ----RA---- C:\WINDOWS\System32\kbdhela2.dll
2011-07-20 17:46:42 ----RA---- C:\WINDOWS\System32\kbdhe319.dll
2011-07-20 17:46:42 ----RA---- C:\WINDOWS\System32\kbdhe220.dll
2011-07-20 17:46:42 ----RA---- C:\WINDOWS\System32\kbdhe.dll
2011-07-20 17:46:42 ----RA---- C:\WINDOWS\System32\kbdgkl.dll
2011-07-20 17:46:40 ----RA---- C:\WINDOWS\System32\kbdlv1.dll
2011-07-20 17:46:40 ----RA---- C:\WINDOWS\System32\kbdlv.dll
2011-07-20 17:46:40 ----RA---- C:\WINDOWS\System32\kbdlt1.dll
2011-07-20 17:46:40 ----RA---- C:\WINDOWS\System32\kbdlt.dll
2011-07-20 17:46:40 ----RA---- C:\WINDOWS\System32\kbdest.dll
2011-07-20 17:46:37 ----A---- C:\WINDOWS\System32\kbdsl1.dll
2011-07-20 17:46:36 ----A---- C:\WINDOWS\System32\kbdycl.dll
2011-07-20 17:46:36 ----A---- C:\WINDOWS\System32\kbdsl.dll
2011-07-20 17:46:36 ----A---- C:\WINDOWS\System32\kbdro.dll
2011-07-20 17:46:36 ----A---- C:\WINDOWS\System32\kbdpl1.dll
2011-07-20 17:46:36 ----A---- C:\WINDOWS\System32\kbdpl.dll
2011-07-20 17:46:36 ----A---- C:\WINDOWS\System32\kbdhu1.dll
2011-07-20 17:46:36 ----A---- C:\WINDOWS\System32\kbdhu.dll
2011-07-20 17:46:36 ----A---- C:\WINDOWS\System32\kbdcr.dll
2011-07-20 17:46:36 ----A---- C:\WINDOWS\System32\KBDAL.DLL
2011-07-20 17:46:35 ----A---- C:\WINDOWS\System32\spxcoins.dll
2011-07-20 17:46:35 ----A---- C:\WINDOWS\System32\irclass.dll
2011-07-20 17:46:35 ----A---- C:\WINDOWS\System32\drivers\irenum.sys
2011-07-20 17:46:35 ----A---- C:\WINDOWS\System32\dgsetup.dll
2011-07-20 17:46:35 ----A---- C:\WINDOWS\System32\dgrpsetu.dll
2011-07-20 17:46:34 ----A---- C:\WINDOWS\System32\EqnClass.Dll
2011-07-20 17:46:34 ----A---- C:\WINDOWS\System32\batt.dll
2011-07-20 17:46:32 ----A---- C:\WINDOWS\TASKMAN.EXE
2011-07-20 17:46:32 ----A---- C:\WINDOWS\NOTEPAD.EXE
2011-07-20 17:46:31 ----N---- C:\WINDOWS\System32\CONFIG.TMP
2011-07-20 17:46:31 ----A---- C:\WINDOWS\System32\storprop.dll
2011-07-20 17:46:23 ----ASH---- C:\Documents and Settings\All Users\Data aplikací\desktop.ini
2011-07-20 17:46:19 ----RA---- C:\WINDOWS\SET7.tmp
2011-07-20 17:46:17 ----RA---- C:\WINDOWS\SET3.tmp
2011-07-20 17:46:11 ----D---- C:\WINDOWS\System32\CatRoot2
2011-07-20 17:46:11 ----D---- C:\WINDOWS\System32\CatRoot
2011-07-20 17:46:05 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2011-07-20 17:45:55 ----A---- C:\WINDOWS\setuplog.txt
2011-07-20 17:45:50 ----D---- C:\Documents and Settings
2011-07-20 17:45:49 ----A---- C:\WINDOWS\System32\FNTCACHE.DAT
2011-07-20 17:45:05 ----SH---- C:\boot.ini
2011-07-20 17:41:45 ----RSHDC---- C:\WINDOWS\System32\dllcache
2011-07-20 17:41:45 ----RSD---- C:\WINDOWS\Fonts
2011-07-20 17:41:45 ----RD---- C:\WINDOWS\Web
2011-07-20 17:41:45 ----HD---- C:\WINDOWS\inf
2011-07-20 17:41:45 ----D---- C:\WINDOWS\WinSxS
2011-07-20 17:41:45 ----D---- C:\WINDOWS\twain_32
2011-07-20 17:41:45 ----D---- C:\WINDOWS\Temp
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\wins
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\wbem
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\usmt
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\spool
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\ShellExt
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\Setup
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\ras
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\oobe
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\npp
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\mui
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\inetsrv
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\IME
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\icsxml
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\ias
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\export
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\drivers\etc
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\drivers\disdn
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\drivers
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\dhcp
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\config
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\3com_dmi
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\3076
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\2052
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\1054
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\1042
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\1041
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\1037
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\1033
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\1031
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\1029
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\1028
2011-07-20 17:41:45 ----D---- C:\WINDOWS\System32\1025
2011-07-20 17:41:45 ----D---- C:\WINDOWS\system32
2011-07-20 17:41:45 ----D---- C:\WINDOWS\system
2011-07-20 17:41:45 ----D---- C:\WINDOWS\security
2011-07-20 17:41:45 ----D---- C:\WINDOWS\Resources
2011-07-20 17:41:45 ----D---- C:\WINDOWS\repair
2011-07-20 17:41:45 ----D---- C:\WINDOWS\mui
2011-07-20 17:41:45 ----D---- C:\WINDOWS\msapps
2011-07-20 17:41:45 ----D---- C:\WINDOWS\msagent
2011-07-20 17:41:45 ----D---- C:\WINDOWS\Media
2011-07-20 17:41:45 ----D---- C:\WINDOWS\java
2011-07-20 17:41:45 ----D---- C:\WINDOWS\ime
2011-07-20 17:41:45 ----D---- C:\WINDOWS\Help
2011-07-20 17:41:45 ----D---- C:\WINDOWS\Driver Cache
2011-07-20 17:41:45 ----D---- C:\WINDOWS\Debug
2011-07-20 17:41:45 ----D---- C:\WINDOWS\Cursors
2011-07-20 17:41:45 ----D---- C:\WINDOWS\Connection Wizard
2011-07-20 17:41:45 ----D---- C:\WINDOWS\Config
2011-07-20 17:41:45 ----D---- C:\WINDOWS\AppPatch
2011-07-20 17:41:45 ----D---- C:\WINDOWS\addins
2011-07-20 17:41:45 ----D---- C:\WINDOWS
2011-07-20 17:41:45 ----ASH---- C:\pagefile.sys
2011-07-20 16:46:32 ----D---- C:\rsit
2011-07-20 16:46:32 ----D---- C:\Program Files\trend micro
2011-07-20 16:24:16 ----SHD---- C:\WINDOWS\Installer
2011-07-20 16:24:13 ----D---- C:\Documents and Settings\Administrator\Data aplikací\Identities
2011-07-20 16:24:06 ----HD---- C:\Program Files\Uninstall Information
2011-07-20 16:23:59 ----SD---- C:\Documents and Settings\Administrator\Data aplikací\Microsoft
2011-07-20 16:23:59 ----ASH---- C:\Documents and Settings\Administrator\Data aplikací\desktop.ini
2011-07-20 16:21:45 ----RSH---- C:\WINDOWS\wuaucpl.exe
2011-07-20 16:12:28 ----RSH---- C:\WINDOWS\fonts\unwise_.exe
2011-07-20 16:11:07 ----A---- C:\WINDOWS\System32\lpdd.exe
2011-07-20 16:10:39 ----R---- C:\WINDOWS\System32\smsc.exe
2011-07-20 16:10:34 ----RSH---- C:\WINDOWS\System32\host.exe
2011-07-20 16:06:56 ----SHD---- C:\System Volume Information
2011-07-20 16:06:48 ----D---- C:\WINDOWS\Prefetch
2011-07-20 16:06:48 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-07-20 16:03:08 ----AS---- C:\WINDOWS\bootstat.dat
2011-07-20 16:00:22 ----D---- C:\WINDOWS\System32\xircom
2011-07-20 16:00:22 ----D---- C:\Program Files\xerox
2011-07-20 16:00:22 ----D---- C:\Program Files\microsoft frontpage
2011-07-20 15:59:53 ----RASH---- C:\MSDOS.SYS
2011-07-20 15:59:53 ----RASH---- C:\IO.SYS
2011-07-20 15:59:53 ----A---- C:\WINDOWS\control.ini
2011-07-20 15:59:53 ----A---- C:\CONFIG.SYS
2011-07-20 15:59:53 ----A---- C:\AUTOEXEC.BAT
2011-07-20 15:59:44 ----A---- C:\WINDOWS\OEWABLog.txt
2011-07-20 15:59:40 ----A---- C:\WINDOWS\System32\mapi32.dll
2011-07-20 15:58:32 ----RD---- C:\WINDOWS\Offline Web Pages
2011-07-20 15:58:31 ----SD---- C:\WINDOWS\Downloaded Program Files
2011-07-20 15:58:03 ----D---- C:\WINDOWS\srchasst
2011-07-20 15:57:53 ----D---- C:\WINDOWS\System32\Macromed
2011-07-20 15:57:53 ----D---- C:\WINDOWS\System32\DirectX
2011-07-20 15:57:41 ----A---- C:\WINDOWS\System32\qmgrprxy.dll
2011-07-20 15:57:41 ----A---- C:\WINDOWS\System32\qmgr.dll
2011-07-20 15:57:40 ----D---- C:\Program Files\Movie Maker
2011-07-20 15:57:21 ----A---- C:\WINDOWS\System32\safrslv.dll
2011-07-20 15:57:21 ----A---- C:\WINDOWS\System32\safrdm.dll
2011-07-20 15:57:21 ----A---- C:\WINDOWS\System32\safrcdlg.dll
2011-07-20 15:57:20 ----A---- C:\WINDOWS\System32\racpldlg.dll
2011-07-20 15:57:20 ----A---- C:\WINDOWS\System32\atrace.dll
2011-07-20 15:57:16 ----A---- C:\WINDOWS\System32\desktop.ini
2011-07-20 15:57:16 ----A---- C:\WINDOWS\desktop.ini
2011-07-20 15:57:09 ----D---- C:\WINDOWS\System32\Restore
2011-07-20 15:57:09 ----A---- C:\WINDOWS\System32\srsvc.dll
2011-07-20 15:57:09 ----A---- C:\WINDOWS\System32\srrstr.dll
2011-07-20 15:57:09 ----A---- C:\WINDOWS\System32\srclient.dll
2011-07-20 15:57:09 ----A---- C:\WINDOWS\System32\drivers\sr.sys
2011-07-20 15:57:08 ----D---- C:\Program Files\Windows Media Player
2011-07-20 15:57:08 ----A---- C:\WINDOWS\System32\ils.dll
2011-07-20 15:57:07 ----A---- C:\WINDOWS\System32\nmmkcert.dll
2011-07-20 15:57:07 ----A---- C:\WINDOWS\System32\nmevtmsg.dll
2011-07-20 15:57:07 ----A---- C:\WINDOWS\System32\msconf.dll
2011-07-20 15:57:07 ----A---- C:\WINDOWS\System32\mnmsrvc.exe
2011-07-20 15:57:07 ----A---- C:\WINDOWS\System32\mnmdd.dll
2011-07-20 15:57:07 ----A---- C:\WINDOWS\System32\isrdbg32.dll
2011-07-20 15:57:03 ----D---- C:\WINDOWS\PCHEALTH
2011-07-20 15:57:03 ----D---- C:\Program Files\NetMeeting
2011-07-20 15:57:03 ----A---- C:\WINDOWS\System32\msoert2.dll
2011-07-20 15:57:03 ----A---- C:\WINDOWS\System32\msoeacct.dll
2011-07-20 15:57:03 ----A---- C:\WINDOWS\System32\acctres.dll
2011-07-20 15:57:02 ----D---- C:\Program Files\Common Files\Services
2011-07-20 15:57:01 ----A---- C:\WINDOWS\System32\inetres.dll
2011-07-20 15:57:01 ----A---- C:\WINDOWS\System32\inetcomm.dll
2011-07-20 15:56:56 ----SD---- C:\WINDOWS\Tasks
2011-07-20 15:56:56 ----D---- C:\Program Files\Outlook Express
2011-07-20 15:56:56 ----A---- C:\WINDOWS\System32\schedsvc.dll
2011-07-20 15:56:56 ----A---- C:\WINDOWS\System32\mstinit.exe
2011-07-20 15:56:56 ----A---- C:\WINDOWS\System32\mstask.dll
2011-07-20 15:56:55 ----A---- C:\WINDOWS\System32\isign32.dll
2011-07-20 15:56:55 ----A---- C:\WINDOWS\System32\inetcfg.dll
2011-07-20 15:56:55 ----A---- C:\WINDOWS\System32\icwphbk.dll
2011-07-20 15:56:55 ----A---- C:\WINDOWS\System32\icwdial.dll
2011-07-20 15:56:55 ----A---- C:\WINDOWS\System32\icfgnt5.dll
2011-07-20 15:56:53 ----D---- C:\Program Files\Common Files\MSSoap
2011-07-20 15:56:48 ----D---- C:\Program Files\Common Files\System
2011-07-20 15:56:45 ----D---- C:\Program Files\Internet Explorer
2011-07-20 15:56:08 ----A---- C:\WINDOWS\System32\emptyregdb.dat
2011-07-20 15:56:07 ----A---- C:\WINDOWS\System32\asr_pxyhdp.exe
2011-07-20 15:55:56 ----D---- C:\Program Files\ComPlus Applications
2011-07-20 15:55:55 ----A---- C:\WINDOWS\vbaddin.ini
2011-07-20 15:55:55 ----A---- C:\WINDOWS\vb.ini
2011-07-20 15:55:50 ----D---- C:\WINDOWS\Registration
2011-07-20 15:55:42 ----HD---- C:\Program Files\WindowsUpdate
2011-07-20 15:55:42 ----D---- C:\Program Files\Online Services
2011-07-20 15:55:35 ----D---- C:\Program Files\Messenger
2011-07-20 15:55:29 ----D---- C:\Program Files\MSN
2011-07-20 15:55:26 ----D---- C:\Program Files\MSN Gaming Zone
2011-07-20 15:55:26 ----A---- C:\WINDOWS\System32\write.exe
2011-07-20 15:55:15 ----A---- C:\WINDOWS\System32\accwiz.exe
2011-07-20 15:55:14 ----A---- C:\WINDOWS\System32\sndvol32.exe
2011-07-20 15:55:14 ----A---- C:\WINDOWS\System32\sndrec32.exe
2011-07-20 15:55:14 ----A---- C:\WINDOWS\System32\mplay32.exe
2011-07-20 15:55:14 ----A---- C:\WINDOWS\System32\hypertrm.dll
2011-07-20 15:55:14 ----A---- C:\WINDOWS\System32\hticons.dll
2011-07-20 15:55:14 ----A---- C:\WINDOWS\System32\avwav.dll
2011-07-20 15:55:14 ----A---- C:\WINDOWS\System32\avmeter.dll
2011-07-20 15:55:13 ----D---- C:\Program Files\Windows NT
2011-07-20 15:55:13 ----A---- C:\WINDOWS\System32\winchat.exe
2011-07-20 15:55:13 ----A---- C:\WINDOWS\System32\avtapi.dll
2011-07-20 15:55:11 ----A---- C:\WINDOWS\System32\mspaint.exe
2011-07-20 15:55:06 ----A---- C:\WINDOWS\System32\clipbrd.exe
2011-07-20 15:55:05 ----A---- C:\WINDOWS\System32\getuname.dll
2011-07-20 15:55:04 ----A---- C:\WINDOWS\System32\spider.exe
2011-07-20 15:55:04 ----A---- C:\WINDOWS\System32\sol.exe
2011-07-20 15:55:04 ----A---- C:\WINDOWS\System32\charmap.exe
2011-07-20 15:55:04 ----A---- C:\WINDOWS\System32\calc.exe
2011-07-20 15:55:03 ----A---- C:\WINDOWS\System32\wuaueng.dll
2011-07-20 15:55:03 ----A---- C:\WINDOWS\System32\wuauclt.exe
2011-07-20 15:55:03 ----A---- C:\WINDOWS\System32\winmine.exe
2011-07-20 15:55:03 ----A---- C:\WINDOWS\System32\mshearts.exe
2011-07-20 15:55:03 ----A---- C:\WINDOWS\System32\freecell.exe
2011-07-20 15:55:02 ----A---- C:\WINDOWS\System32\wuauserv.dll
2011-07-20 15:55:02 ----A---- C:\WINDOWS\System32\tscfgwmi.dll
2011-07-20 15:55:02 ----A---- C:\WINDOWS\System32\mstscax.dll
2011-07-20 15:55:02 ----A---- C:\WINDOWS\System32\mstsc.exe
2011-07-20 15:55:02 ----A---- C:\WINDOWS\System32\drivers\tdtcp.sys
2011-07-20 15:55:02 ----A---- C:\WINDOWS\System32\drivers\tdpipe.sys
2011-07-20 15:55:02 ----A---- C:\WINDOWS\System32\drivers\rdpwd.sys
2011-07-20 15:55:01 ----A---- C:\WINDOWS\System32\usrlogon.cmd
2011-07-20 15:55:01 ----A---- C:\WINDOWS\System32\tsshutdn.exe
2011-07-20 15:55:01 ----A---- C:\WINDOWS\System32\tslabels.ini
2011-07-20 15:55:01 ----A---- C:\WINDOWS\System32\tskill.exe
2011-07-20 15:55:01 ----A---- C:\WINDOWS\System32\tscupgrd.exe
2011-07-20 15:55:01 ----A---- C:\WINDOWS\System32\sessmgr.exe
2011-07-20 15:55:01 ----A---- C:\WINDOWS\System32\reset.exe
2011-07-20 15:55:01 ----A---- C:\WINDOWS\System32\remotepg.dll
2011-07-20 15:55:01 ----A---- C:\WINDOWS\System32\rdshost.exe
2011-07-20 15:55:01 ----A---- C:\WINDOWS\System32\rdsaddin.exe
2011-07-20 15:55:01 ----A---- C:\WINDOWS\System32\rdchost.dll
2011-07-20 15:55:00 ----A---- C:\WINDOWS\System32\tsdiscon.exe
2011-07-20 15:55:00 ----A---- C:\WINDOWS\System32\tscon.exe
2011-07-20 15:55:00 ----A---- C:\WINDOWS\System32\termsrv.dll
2011-07-20 15:55:00 ----A---- C:\WINDOWS\System32\shadow.exe
2011-07-20 15:55:00 ----A---- C:\WINDOWS\System32\rwinsta.exe
2011-07-20 15:55:00 ----A---- C:\WINDOWS\System32\regini.exe
2011-07-20 15:55:00 ----A---- C:\WINDOWS\System32\rdpwsx.dll
2011-07-20 15:55:00 ----A---- C:\WINDOWS\System32\rdpsnd.dll
2011-07-20 15:55:00 ----A---- C:\WINDOWS\System32\rdpclip.exe
2011-07-20 15:55:00 ----A---- C:\WINDOWS\System32\rdpcfgex.dll
2011-07-20 15:55:00 ----A---- C:\WINDOWS\System32\qwinsta.exe
2011-07-20 15:55:00 ----A---- C:\WINDOWS\System32\qprocess.exe
2011-07-20 15:54:59 ----D---- C:\WINDOWS\System32\MsDtc
2011-07-20 15:54:59 ----A---- C:\WINDOWS\System32\qappsrv.exe
2011-07-20 15:54:59 ----A---- C:\WINDOWS\System32\mtxoci.dll
2011-07-20 15:54:59 ----A---- C:\WINDOWS\System32\msg.exe
2011-07-20 15:54:59 ----A---- C:\WINDOWS\System32\msdtcuiu.dll
2011-07-20 15:54:59 ----A---- C:\WINDOWS\System32\logoff.exe
2011-07-20 15:54:59 ----A---- C:\WINDOWS\System32\icaapi.dll
2011-07-20 15:54:59 ----A---- C:\WINDOWS\System32\cfgbkend.dll
2011-07-20 15:54:59 ----A---- C:\WINDOWS\System32\cdmodem.dll
2011-07-20 15:54:58 ----A---- C:\WINDOWS\System32\xolehlp.dll
2011-07-20 15:54:58 ----A---- C:\WINDOWS\System32\msdtctm.dll
2011-07-20 15:54:58 ----A---- C:\WINDOWS\System32\msdtcprx.dll
2011-07-20 15:54:58 ----A---- C:\WINDOWS\System32\msdtcprf.ini
2011-07-20 15:54:58 ----A---- C:\WINDOWS\System32\msdtclog.dll
2011-07-20 15:54:58 ----A---- C:\WINDOWS\System32\msdtc.exe
2011-07-20 15:54:57 ----A---- C:\WINDOWS\System32\dcomcnfg.exe
2011-07-20 15:54:56 ----D---- C:\WINDOWS\System32\Com
2011-07-20 15:54:56 ----A---- C:\WINDOWS\System32\stclient.dll
2011-07-20 15:54:56 ----A---- C:\WINDOWS\System32\mtxlegih.dll
2011-07-20 15:54:56 ----A---- C:\WINDOWS\System32\mtxex.dll
2011-07-20 15:54:56 ----A---- C:\WINDOWS\System32\mtxdm.dll
2011-07-20 15:54:56 ----A---- C:\WINDOWS\System32\comrepl.dll
2011-07-20 15:54:56 ----A---- C:\WINDOWS\System32\comaddin.dll
2011-07-20 15:54:56 ----A---- C:\WINDOWS\System32\colbact.dll
2011-07-20 15:54:56 ----A---- C:\WINDOWS\System32\clbcatex.dll
2011-07-20 15:54:56 ----A---- C:\WINDOWS\System32\catsrvps.dll
2011-07-20 15:54:55 ----A---- C:\WINDOWS\System32\comuid.dll
2011-07-20 15:54:55 ----A---- C:\WINDOWS\System32\comsvcs.dll
2011-07-20 15:54:55 ----A---- C:\WINDOWS\System32\comsnap.dll
2011-07-20 15:54:55 ----A---- C:\WINDOWS\System32\catsrvut.dll
2011-07-20 15:54:55 ----A---- C:\WINDOWS\System32\catsrv.dll
2011-07-20 15:54:54 ----A---- C:\WINDOWS\System32\clbcatq.dll
2011-07-20 15:54:43 ----A---- C:\WINDOWS\System32\wmimgmt.msc
2011-07-20 15:54:43 ----A---- C:\WINDOWS\System32\servdeps.dll
2011-07-20 15:54:43 ----A---- C:\WINDOWS\System32\mmfutil.dll
2011-07-20 15:54:43 ----A---- C:\WINDOWS\System32\licwmi.dll
2011-07-20 15:54:43 ----A---- C:\WINDOWS\System32\cmprops.dll
2011-07-20 15:54:41 ----A---- C:\WINDOWS\System32\drivers\termdd.sys
2011-07-20 15:54:41 ----A---- C:\WINDOWS\System32\drivers\rdpdr.sys
======List of files/folders modified in the last 1 month======
2011-07-20 17:46:49 ----A---- C:\WINDOWS\system.ini
2011-07-20 15:59:53 ----A---- C:\WINDOWS\win.ini
2011-07-20 15:59:23 ----ASH---- C:\WINDOWS\fonts\desktop.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R3 ctljystk;Game port pro zařízení Creative SB Live!; C:\WINDOWS\System32\DRIVERS\ctljystk.sys [2001-08-17 3712]
R3 EL90X;3Com EtherLink XL 90X Adapter Driver; C:\WINDOWS\System32\DRIVERS\el90xnd5.sys [2001-10-24 153631]
R3 emu10k;Creative SB Live! (WDM); C:\WINDOWS\system32\drivers\emu10k1m.sys [2001-08-17 283904]
R3 emu10k1;Creative Interface Manager Driver (WDM); C:\WINDOWS\system32\drivers\ctlfacem.sys [2001-08-17 6912]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2001-10-25 9600]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 sfman;Creative SoundFont Manager Driver (WDM); C:\WINDOWS\system32\drivers\sfmanm.sys [2001-08-17 36480]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2001-10-25 18944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Local Service;Local Service; C:\WINDOWS\wuaucpl.exe [2011-07-20 869376]
R2 PrtSmanm;Print Spooler Monitor; C:\WINDOWS\system32\smsc.exe [2011-07-20 57871]
R2 Windows Hosts Controller;Windows Hosts Controller; C:\WINDOWS\Fonts\unwise_.exe [2011-07-20 172415]
-----------------EOF-----------------