Stránka 1 z 1

Restarty PC + nefunkční antiviry

Napsal: 29 srp 2011 19:59
od Michal Z.
Dobrý den,
potřeboval bych pomoci. Jsem na PC, na kterém jsou "nainstalovány" tři antiviry, bohužel ani jeden z nich nepracuje ač to hlásí - hláška vypadá identicky u všech. Docházelo k soustavným restartům po cca 3 minutách chodu systému, teď to již nedělá. Prosím o pomoc. Skenuji i přes MBAM, jen to chvíli trvá. Předem děkuji za pomoc.

Michal

Logfile of random's system information tool 1.09 (written by random/random)
Run by Kostkova at 2011-08-29 20:43:00
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 16 GB (16%) free of 100 GB
Total RAM: 2047 MB (61% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:43:30, on 29.8.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\windows\System32\smss.exe
C:\windows\system32\winlogon.exe
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\windows\system32\svchost.exe
C:\windows\System32\svchost.exe
C:\windows\system32\svchost.exe
C:\Program Files\CheckPoint\SecuRemote\bin\SR_Service.exe
C:\windows\system32\spoolsv.exe
C:\windows\Explorer.EXE
C:\windows\system32\RUNDLL32.EXE
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\windows\update.tray-14-0\svchost.exe
C:\windows\update.tray-9-0\svchost.exe
C:\windows\update.tray-15-0\svchost.exe
C:\windows\update.tray-7-0\svchost.exe
C:\WINDOWS\l1rezerv.exe
C:\windows\system32\ctfmon.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\RALINK\Common\RaUI.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
C:\windows\system32\taskmgr.exe
C:\WINDOWS\update.5.0\svchost.exe
C:\WINDOWS\update.5.0\svchost.exe
C:\WINDOWS\sysdriver32.exe
C:\windows\system32\svchost.exe
C:\windows\update.1\svchost.exe
C:\windows\System32\svchost.exe
C:\WINDOWS\update.tray-7-0-lnk\svchost.exe
C:\WINDOWS\ufa\ufa.exe
C:\windows\update.3\svchost.exe
C:\Documents and Settings\Kostkova\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kostkova\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kostkova\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kostkova\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
C:\Documents and Settings\Kostkova\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kostkova\Dokumenty\Downloads\RSIT.exe
C:\Program Files\trend micro\Kostkova.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://search.qip.ru
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.inbox.com/homepage.aspx?tbid=80093&lng=cs
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:51455
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: QIPBHO Class - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Documents and Settings\Kostkova\Data aplikací\Microsoft\Internet Explorer\qipsearchbar.dll
R3 - URLSearchHook: Inbox Toolbar - {D3D233D5-9F6D-436C-B6C7-E63F77503B30} - C:\PROGRA~1\INBOXT~1\Inbox.dll
R3 - URLSearchHook: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_1.dll
O2 - BHO: ShopperReports - {100EB1FD-D03E-47fd-81F3-EE91287F9465} - C:\Program Files\ShopperReports3\bin\3.0.517.0\ShopperReports.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - (no file)
O2 - BHO: QIPBHO - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Documents and Settings\Kostkova\Data aplikací\Microsoft\Internet Explorer\qipsearchbar.dll
O2 - BHO: BHO_HelloWorld.BHO - {aa6aa15d-feb4-3c0d-b711-8abb63f3f406} - mscoree.dll (file missing)
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Inbox Toolbar - {D3D233D5-9F6D-436C-B6C7-E63F77503B30} - C:\PROGRA~1\INBOXT~1\Inbox.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: Ukazatel S-Rank - {EA837F48-5AD1-443E-AE34-FFE03CBF3099} - C:\Program Files\Seznam.cz\listicka.dll
O2 - BHO: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_1.dll
O3 - Toolbar: (no name) - {D5D47440-0750-463D-BAEF-A47D02414806} - (no file)
O3 - Toolbar: &Inbox Toolbar - {D7E97865-918F-41E4-9CD0-25AB1C574CE8} - C:\PROGRA~1\INBOXT~1\Inbox.dll
O3 - Toolbar: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_1.dll
O3 - Toolbar: (no name) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - (no file)
O4 - HKLM\..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nView\nwiz.exe /install
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [NokiaMServer] C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup
O4 - HKLM\..\Run: [NokiaMusic FastStart] "C:\Program Files\Nokia\Ovi Player\NokiaOviPlayer.exe" /command:faststart
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [ClickPotatoLiteSA] "C:\Program Files\ClickPotatoLite\bin\11.0.16.0\ClickPotatoLiteSA.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [wxpdrv] C:\windows\services32.exe
O4 - HKLM\..\Run: [tray_ico0] C:\windows\update.tray-14-0\svchost.exe
O4 - HKLM\..\Run: [tray_ico1] C:\windows\update.tray-9-0\svchost.exe
O4 - HKLM\..\Run: [tray_ico2] C:\windows\update.tray-15-0\svchost.exe
O4 - HKLM\..\Run: [tray_ico3] C:\windows\update.tray-7-0\svchost.exe
O4 - HKLM\..\Run: [4489024.exe] "C:\DOCUME~1\Kostkova\LOCALS~1\Temp\4489024.exe"
O4 - HKLM\..\Run: [sysdriver32.exe] "C:\windows\sysdriver32.exe" rezerv
O4 - HKLM\..\Run: [sysdriver32_.exe] "C:\windows\sysdriver32_.exe" rezerv
O4 - HKLM\..\Run: [1477017.exe] "C:\WINDOWS\TEMP\1477017.exe"
O4 - HKLM\..\Run: [3585573.exe] "C:\WINDOWS\TEMP\3585573.exe"
O4 - HKLM\..\Run: [systemup] "C:\WINDOWS\systemup.exe" stand
O4 - HKLM\..\Run: [l1rezerv.exe] "C:\WINDOWS\l1rezerv.exe"
O4 - HKLM\..\Run: [w_distrib.exe] "C:\windows\update.3\svchost.exe" stand
O4 - HKLM\..\Run: [1275512-loader2.exe] "C:\DOCUME~1\Kostkova\LOCALS~1\Temp\1275512-loader2.exe"
O4 - HKLM\..\Run: [1034483.exe] "C:\windows\TEMP\1034483.exe"
O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [CTFMON.EXE] C:\windows\system32\ctfmon.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Steam] "D:\games\css source\steam.exe" -silent
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Kostkova\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\RunOnce: [WiseStubReboot] MSIEXEC /quiet SKIP_PPU_DRIVER_INSTALL=1 /I "C:\Program Files\Common Files\Wise Installation Wizard\WISC5C1C0F0D62F4DBF81D4D7EF397C228B_9_09_0814.MSI" TRANSFORMS="C:\Program Files\Common Files\Wise Installation Wizard\WISC5C1C0F0D62F4DBF81D4D7EF397C228B_9_09_0814.MST" WISE_SETUP_EXE_PATH="c:\nvidia\displaydriver\190.62\english\PhysX_9.09.0814_SystemSoftware.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: McAfee Security Scan.lnk = ?
O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files\RALINK\Common\RaUI.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
O9 - Extra button: Nastavení Lištičky ... - {0E46D7B6-887D-4F81-B4CA-FCC92AF73610} - C:\Program Files\Seznam.cz\listicka.dll
O9 - Extra 'Tools' menuitem: Nastavení Lištičky ... - {0E46D7B6-887D-4F81-B4CA-FCC92AF73610} - C:\Program Files\Seznam.cz\listicka.dll
O9 - Extra button: Zvýrazňovač slov Lištičky - {4E6D6F90-31CA-4878-A7A3-1CD50F115A69} - C:\Program Files\Seznam.cz\listicka.dll
O9 - Extra 'Tools' menuitem: Zvýrazňovač slov Lištičky - {4E6D6F90-31CA-4878-A7A3-1CD50F115A69} - C:\Program Files\Seznam.cz\listicka.dll
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: ClickPotato - {B58926D6-CFB0-45d2-9C28-4B5A0F0368AE} - C:\Program Files\ClickPotatoLite\bin\11.0.16.0\ClickPotatoLiteSABHO.dll
O9 - Extra button: ShopperReports - Compare product prices - {C5428486-50A0-4a02-9D20-520B59A9F9B2} - C:\Program Files\ShopperReports3\bin\3.0.517.0\ShopperReports.dll
O9 - Extra button: ShopperReports - Compare travel rates - {C5428486-50A0-4a02-9D20-520B59A9F9B3} - C:\Program Files\ShopperReports3\bin\3.0.517.0\ShopperReports.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\windows\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\windows\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: QIP 2005 - {1EF681F7-A04B-4D6D-9012-A307CCA55610} - D:\Nová složka\QIP\qip.exe (file missing) (HKCU)
O18 - Protocol: inbox - {37540F19-DD4C-478B-B2DF-C19281BCAF27} - C:\PROGRA~1\INBOXT~1\Inbox.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\windows\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\windows\system32\browseui.dll
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: ResultBar Service - Unknown owner - C:\Documents and Settings\All Users\Data aplikací\ResultBar\resultbar179.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: srvbtc1 - Unknown owner - C:\windows\update.4.1\2261.exe
O23 - Service: srvbtcclient - Unknown owner - C:\WINDOWS\update.5.0\svchost.exe
O23 - Service: srvpele - Unknown owner - C:\windows\update.8.1\svchost.exe
O23 - Service: srvsysdriver32 - Unknown owner - C:\WINDOWS\sysdriver32.exe
O23 - Service: Check Point SecuRemote Service (SR_Service) - Check Point Software Technologies - C:\Program Files\CheckPoint\SecuRemote\bin\SR_Service.exe
O23 - Service: Check Point SecuRemote WatchDog (SR_WatchDog) - Check Point Software Technologies - C:\Program Files\CheckPoint\SecuRemote\bin\SR_WatchDog.exe
O23 - Service: wxpdrivers - Unknown owner - C:\windows\update.1\svchost.exe

--
End of file - 13824 bytes

======Scheduled tasks folder======

C:\windows\tasks\GoogleUpdateTaskMachineCore.job
C:\windows\tasks\GoogleUpdateTaskMachineUA.job
C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-436374069-1580436667-839522115-1004Core.job
C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-436374069-1580436667-839522115-1004UA.job

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\Kostkova\Data aplikací\Mozilla\Firefox\Profiles\s102qj25.default

prefs.js - "browser.startup.homepage" - "http://www.google.com/"
prefs.js - "keyword.URL" - "http://www.resultbar.com/?tmp=nemo_resu ... &keywords="

"bkmrksync@nokia.com"=C:\Program Files\Nokia\Nokia PC Suite 7\bkmrksync\
"FFToolbar@bitdefender.com"=C:\Program Files\BitDefender\BitDefender 2010\bdaphffext\
"{A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}"=C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension\
"{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"jqs@sun.com"=C:\Program Files\Java\jre6\lib\deploy\jqs\ff
"ShopperReports@ShopperReports.com"=C:\Program Files\ShopperReports3\bin\3.0.517.0\firefox\firefoxtoolbar\extensions
"ClickPotatoLite@ClickPotatoLite.com"=C:\Program Files\ClickPotatoLite\bin\11.0.16.0\firefox\extensions
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files\Google\Picasa3\npPicasa3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.65\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.65\npGoogleUpdate3.dll

C:\Program Files\Mozilla Firefox\extensions\
{34EFA911-B536-4C08-BECE-CD5E55C875B0}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}

C:\Program Files\Mozilla Firefox\components\
bdaphff.ini
binary.manifest
browsercomps.dll
FFComm.dll
IBDFirefox.xpt

C:\Program Files\Mozilla Firefox\plugins\
npclntax_ClickPotatoLiteSA.dll
npdeployJava1.dll
nppdf32.dll

C:\Program Files\Mozilla Firefox\searchplugins\
Cetrumcz_igeared.xml
crawlersrch.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Documents and Settings\Kostkova\Data aplikací\Mozilla\Firefox\Profiles\s102qj25.default\extensions\
engine@conduit.com
inboxcomtoolbar@inbox.com
piclens@cooliris.com
staged
{20a82645-c095-46ed-80e3-08825760534b}
{ea614400-e918-4741-9a97-7a972ff7c30b}
{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}

C:\Documents and Settings\Kostkova\Data aplikací\Mozilla\Firefox\Profiles\s102qj25.default\searchplugins\
conduit.xml
inbox-hledat.xml
inbox-hledn.xml
qipsearch.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{100EB1FD-D03E-47fd-81F3-EE91287F9465}]
ShopperReports - C:\Program Files\ShopperReports3\bin\3.0.517.0\ShopperReports.dll [2010-10-28 1118208]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}]
QIPBHO Class - C:\Documents and Settings\Kostkova\Data aplikací\Microsoft\Internet Explorer\qipsearchbar.dll [2009-07-14 150768]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{aa6aa15d-feb4-3c0d-b711-8abb63f3f406}]
BHO_HelloWorld.BHO - C:\windows\system32\mscoree.dll [2009-11-07 297808]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Plug-In - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-04-15 1164680]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D3D233D5-9F6D-436C-B6C7-E63F77503B30}]
Inbox Toolbar - C:\PROGRA~1\INBOXT~1\Inbox.dll [2010-06-17 848376]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-08-31 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-08-31 79648]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA837F48-5AD1-443E-AE34-FFE03CBF3099}]
Lištička - C:\Program Files\Seznam.cz\listicka.dll [2010-05-05 1736472]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
BS Player Toolbar - C:\Program Files\BS_Player\tbBS_1.dll [2010-10-22 2735200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{D5D47440-0750-463D-BAEF-A47D02414806}
{D7E97865-918F-41E4-9CD0-25AB1C574CE8} - &Inbox Toolbar - C:\PROGRA~1\INBOXT~1\Inbox.dll [2010-06-17 848376]
{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - BS Player Toolbar - C:\Program Files\BS_Player\tbBS_1.dll [2010-10-22 2735200]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"nwiz"=C:\Program Files\NVIDIA Corporation\nView\nwiz.exe [2009-08-12 1657376]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2009-08-17 13877248]
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2009-08-17 86016]
"RTHDCPL"=C:\windows\RTHDCPL.EXE [2009-07-02 18665472]
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2007-03-01 153136]
"NokiaMServer"=C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup []
"NokiaMusic FastStart"=C:\Program Files\Nokia\Ovi Player\NokiaOviPlayer.exe [2010-03-04 2192672]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-09-23 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-21 932288]
"ClickPotatoLiteSA"=C:\Program Files\ClickPotatoLite\bin\11.0.16.0\ClickPotatoLiteSA.exe [2011-08-16 784896]
"KernelFaultCheck"=C:\windows\system32\dumprep 0 -k []
"wxpdrv"=C:\windows\services32.exe [2011-07-19 1147392]
"tray_ico"= []
"tray_ico0"=C:\windows\update.tray-14-0\svchost.exe [2011-07-19 1147392]
"tray_ico1"=C:\windows\update.tray-9-0\svchost.exe [2011-07-19 1147392]
"tray_ico2"=C:\windows\update.tray-15-0\svchost.exe [2011-07-19 1147392]
"tray_ico3"=C:\windows\update.tray-7-0\svchost.exe [2011-07-19 1147392]
"tray_ico4"= []
"4489024.exe"=C:\DOCUME~1\Kostkova\LOCALS~1\Temp\4489024.exe [2011-07-19 232960]
"sysdriver32.exe"=C:\windows\sysdriver32.exe [2011-07-25 256000]
"sysdriver32_.exe"=C:\windows\sysdriver32_.exe [2011-07-25 256000]
"1477017.exe"=C:\WINDOWS\TEMP\1477017.exe [2011-07-19 232960]
"3585573.exe"=C:\WINDOWS\TEMP\3585573.exe [2011-07-19 483328]
"systemup"=C:\WINDOWS\systemup.exe [2011-07-19 114176]
"l1rezerv.exe"=C:\WINDOWS\l1rezerv.exe [2011-07-23 232960]
"w_distrib.exe"=C:\windows\update.3\svchost.exe [2011-08-29 273920]
"1275512-loader2.exe"=C:\DOCUME~1\Kostkova\LOCALS~1\Temp\1275512-loader2.exe [2011-07-22 249344]
"1034483.exe"=C:\windows\TEMP\1034483.exe [2011-07-28 256000]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Malwarebytes' Anti-Malware"=C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2011-07-06 449584]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\windows\system32\ctfmon.exe [2008-04-14 15360]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2009-10-30 369200]
"Steam"=D:\games\css source\steam.exe [2011-08-02 1242448]
""= []
"PC Suite Tray"=C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe [2009-06-25 1414144]
"Google Update"=C:\Documents and Settings\Kostkova\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [2011-06-03 136176]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"WiseStubReboot"=MSIEXEC /quiet SKIP_PPU_DRIVER_INSTALL=1 /I C:\Program Files\Common Files\Wise Installation Wizard\WISC5C1C0F0D62F4DBF81D4D7EF397C228B_9_09_0814.MSI TRANSFORMS=C:\Program Files\Common Files\Wise Installation Wizard\WISC5C1C0F0D62F4DBF81D4D7EF397C228B_9_09_0814.MST WISE_SETUP_EXE_PATH=c:\nvidia\displaydriver\190.62\english\PhysX_9.09.0814_SystemSoftware.exe []

C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
McAfee Security Scan.lnk - C:\Program Files\McAfee Security Scan\1.0.150\SSScheduler.exe
Ralink Wireless Utility.lnk - C:\Program Files\RALINK\Common\RaUI.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ckpNotify]
C:\windows\system32\ckpNotify.dll [2005-06-19 24669]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\wxpdrivers]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\wxpdrivers]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLUA"=0
"EnableSecureUIAPaths"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\CheckPoint\SecuRemote\bin\SR_Service.exe"="C:\Program Files\CheckPoint\SecuRemote\bin\SR_Service.exe:*:Enabled:VPN-1 SecuRemote/SecureClient service"
"C:\Program Files\CheckPoint\SecuRemote\bin\SR_GUI.exe"="C:\Program Files\CheckPoint\SecuRemote\bin\SR_GUI.exe:*:Enabled:VPN-1 SecuRemote/SecureClient application"
"C:\Program Files\CheckPoint\SecuRemote\bin\scc.exe"="C:\Program Files\CheckPoint\SecuRemote\bin\scc.exe:*:Enabled:VPN-1 SecuRemote/SecureClient command line"
"C:\Program Files\CheckPoint\SecuRemote\bin\SR_SDS.exe"="C:\Program Files\CheckPoint\SecuRemote\bin\SR_SDS.exe:*:Enabled:VPN-1 SecuRemote/SecureClient SDS agent"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\uTorrent\utorrent.exe"="C:\Program Files\uTorrent\utorrent.exe:*:Enabled:µTorrent"
"C:\Documents and Settings\Kostkova\Plocha\utorrent.exe"="C:\Documents and Settings\Kostkova\Plocha\utorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\Nero\Nero 7\Nero ShowTime\ShowTime.exe"="C:\Program Files\Nero\Nero 7\Nero ShowTime\ShowTime.exe:*:Enabled:Nero ShowTime"
"D:\Nová složka\uTorrent\utorrent.exe"="D:\Nová složka\uTorrent\utorrent.exe:*:Enabled:µTorrent"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\QIP\qip.exe"="C:\Program Files\QIP\qip.exe:*:Enabled:Quiet Internet Pager"
"C:\Program Files\Hamachi\hamachi.exe"="C:\Program Files\Hamachi\hamachi.exe:*:Enabled:Hamachi Client"
"D:\Nová složka\QIP\qip.exe"="D:\Nová složka\QIP\qip.exe:*:Enabled:Quiet Internet Pager"
"D:\games\CSS source\Steam.exe"="D:\games\CSS source\Steam.exe:*:Enabled:Steam"
"C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\WINDOWS\system32\rundll32.exe"="C:\WINDOWS\system32\rundll32.exe:*:Enabled:Run a DLL as an App"
"C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe"="C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe:*:Disabled:Nokia Ovi Suite 2"
"C:\Program Files\Common Files\Nokia\Service Layer\A\nsl_host_process.exe"="C:\Program Files\Common Files\Nokia\Service Layer\A\nsl_host_process.exe:*:Enabled:Nokia Service Layer Host Process "
"C:\Program Files\Google\Google Earth\plugin\geplugin.exe"="C:\Program Files\Google\Google Earth\plugin\geplugin.exe:*:Enabled:Google Earth"
"D:\QIP\qip.exe"="D:\QIP\qip.exe:*:Enabled:Quiet Internet Pager"
"C:\WINDOWS\system32\PnkBstrA.exe"="C:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA"
"C:\WINDOWS\system32\PnkBstrB.exe"="C:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB"
"D:\games\Assassins Creed 2+crack,emulator,cestina\Assassins Creed 2 full crack\Emulator\server.exe"="D:\games\Assassins Creed 2+crack,emulator,cestina\Assassins Creed 2 full crack\Emulator\server.exe:*:Enabled:server"
"C:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe"="C:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe:*:Enabled:Ubisoft Game Launcher"
"C:\Program Files\Electronic Arts\Crytek\Crysis 2\bin32\Crysis2.exe"="C:\Program Files\Electronic Arts\Crytek\Crysis 2\bin32\Crysis2.exe:*:Disabled:Crysis2"
"C:\Documents and Settings\Kostkova\Dokumenty\Downloads\Flash-Player.exe"="C:\Documents and Settings\Kostkova\Dokumenty\Downloads\Flash-Player.exe:*:Enabled:C:\Documents and Settings\Kostkova\Dokumenty\Downloads\Flash-Player.exe"
"C:\WINDOWS\update.1\svchost.exe"="C:\windows\update.1\svchost.exe:*:Enabled:C:\windows\update.1\svchost.exe"
"C:\WINDOWS\update.tray-9-0\svchost.exe"="C:\WINDOWS\update.tray-9-0\svchost.exe:*:Enabled:C:\WINDOWS\update.tray-9-0\svchost.exe"
"C:\WINDOWS\update.2\svchost.exe"="C:\WINDOWS\update.2\svchost.exe:*:Enabled:C:\WINDOWS\update.2\svchost.exe"
"C:\WINDOWS\update.3\svchost.exe"="C:\windows\update.3\svchost.exe:*:Enabled:C:\windows\update.3\svchost.exe"
"C:\WINDOWS\services32.exe"="C:\WINDOWS\services32.exe:*:Enabled:C:\WINDOWS\services32.exe"
"D:\games\Age of Empires 1\Empires.exe"="D:\games\Age of Empires 1\Empires.exe:*:Disabled:Age of Empires"
"D:\games\CSS source\SteamApps\rogan112\half-life 2 deathmatch\hl2.exe"="D:\games\CSS source\SteamApps\rogan112\half-life 2 deathmatch\hl2.exe:*:Disabled:hl2"
"D:\games\CSS source\SteamApps\neknupa\team fortress 2\hl2.exe"="D:\games\CSS source\SteamApps\neknupa\team fortress 2\hl2.exe:*:Disabled:hl2"
"C:\Program Files\Counter-Strike Source\hl2.exe"="C:\Program Files\Counter-Strike Source\hl2.exe:*:Disabled:hl2"
"D:\games\totalwar\mediavel\Medieval_TW.exe"="D:\games\totalwar\mediavel\Medieval_TW.exe:*:Disabled:Medieval_TW"
"D:\games\CSS source\SteamApps\rogan112\counter-strike source\hl2.exe"="D:\games\CSS source\SteamApps\rogan112\counter-strike source\hl2.exe:*:Enabled:Counter-Strike: Source"
"C:\Program Files\LucasArts\SWKotOR\launcher.exe"="C:\Program Files\LucasArts\SWKotOR\launcher.exe:*:Enabled: Star Wars Knights of the Old Republic"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\Ubisoft\Assassin's Creed II\AssassinsCreedIIGame.exe"="C:\Program Files\Ubisoft\Assassin's Creed II\AssassinsCreedIIGame.exe:*:Disabled:Assassin's Creed II"
"C:\Program Files\Ubisoft\Assassin's Creed II\AssassinsCreedII.exe"="C:\Program Files\Ubisoft\Assassin's Creed II\AssassinsCreedII.exe:*:Disabled:Assassin's Creed II Update"
"C:\Program Files\Ubisoft\Assassin's Creed II\UPlayBrowser.exe"="C:\Program Files\Ubisoft\Assassin's Creed II\UPlayBrowser.exe:*:Disabled:Assassin's Creed II Uplay"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\CheckPoint\SecuRemote\bin\SR_Service.exe"="C:\Program Files\CheckPoint\SecuRemote\bin\SR_Service.exe:*:Enabled:VPN-1 SecuRemote/SecureClient service"
"C:\Program Files\CheckPoint\SecuRemote\bin\SR_GUI.exe"="C:\Program Files\CheckPoint\SecuRemote\bin\SR_GUI.exe:*:Enabled:VPN-1 SecuRemote/SecureClient application"
"C:\Program Files\CheckPoint\SecuRemote\bin\scc.exe"="C:\Program Files\CheckPoint\SecuRemote\bin\scc.exe:*:Enabled:VPN-1 SecuRemote/SecureClient command line"
"C:\Program Files\CheckPoint\SecuRemote\bin\SR_SDS.exe"="C:\Program Files\CheckPoint\SecuRemote\bin\SR_SDS.exe:*:Enabled:VPN-1 SecuRemote/SecureClient SDS agent"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"vidc.XVID"=xvidvfw.dll

======List of files/folders created in the last 1 month======

2011-08-29 20:43:05 ----D---- C:\Program Files\trend micro
2011-08-29 20:43:00 ----D---- C:\rsit
2011-08-29 20:26:48 ----D---- C:\Documents and Settings\Kostkova\Data aplikací\Malwarebytes
2011-08-29 20:26:01 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2011-08-29 20:26:01 ----A---- C:\windows\system32\drivers\mbamswissarmy.sys
2011-08-29 20:25:58 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2011-08-29 20:25:58 ----A---- C:\windows\system32\drivers\mbam.sys
2011-08-29 20:10:16 ----D---- C:\Program Files\CCleaner
2011-08-29 20:00:21 ----HD---- C:\windows\update.tray-7-0-lnk
2011-08-29 20:00:21 ----HD---- C:\windows\update.tray-7-0
2011-08-29 19:57:59 ----A---- C:\windows\system32\drivers\aswSP.sys
2011-08-29 19:57:59 ----A---- C:\windows\system32\drivers\aswFsBlk.sys
2011-08-29 19:57:58 ----A---- C:\windows\system32\drivers\aswTdi.sys
2011-08-29 19:57:58 ----A---- C:\windows\system32\drivers\aswSnx.sys
2011-08-29 19:57:58 ----A---- C:\windows\system32\drivers\aswRdr.sys
2011-08-29 19:57:58 ----A---- C:\windows\system32\drivers\aswmon2.sys
2011-08-29 19:57:58 ----A---- C:\windows\system32\drivers\aswmon.sys
2011-08-29 19:57:58 ----A---- C:\windows\system32\drivers\aavmker4.sys
2011-08-29 19:57:47 ----A---- C:\windows\system32\aswBoot.exe
2011-08-29 19:57:47 ----A---- C:\windows\avastSS.scr
2011-08-29 19:49:14 ----A---- C:\windows\ntbtlog.txt
2011-08-29 19:29:13 ----D---- C:\054c6b8912c5e8f051f911162bb2
2011-08-29 10:45:20 ----HD---- C:\windows\update.8.1
2011-08-11 17:03:55 ----HDC---- C:\windows\$NtUninstallKB2567680$
2011-08-11 17:03:24 ----HDC---- C:\windows\$NtUninstallKB2536276-v2$
2011-08-11 17:03:19 ----HDC---- C:\windows\$NtUninstallKB2570222$
2011-08-11 17:03:16 ----A---- C:\windows\system32\MRT.INI
2011-08-11 16:55:27 ----HDC---- C:\windows\$NtUninstallKB2566454$
2011-08-11 16:55:21 ----HDC---- C:\windows\$NtUninstallKB2562937$
2011-08-09 19:50:43 ----D---- C:\Documents and Settings\All Users\Data aplikací\Skype Extras
2011-08-09 19:50:18 ----D---- C:\Program Files\Common Files\Skype
2011-08-05 07:29:26 ----N---- C:\Documents and Settings\Kostkova\Data aplikací\dwmu.exe

======List of files/folders modified in the last 1 month======

2011-08-29 20:43:27 ----D---- C:\windows\Temp
2011-08-29 20:43:05 ----RD---- C:\Program Files
2011-08-29 20:42:57 ----D---- C:\windows\Prefetch
2011-08-29 20:26:01 ----D---- C:\windows\system32\drivers
2011-08-29 20:15:52 ----A---- C:\windows\w_distrib_iplist.txt
2011-08-29 20:15:30 ----D---- C:\windows\Minidump
2011-08-29 20:05:19 ----A---- C:\windows\iplist.txt
2011-08-29 20:02:40 ----A---- C:\windows\btc_client_iplist.txt
2011-08-29 20:01:33 ----D---- C:\windows\av_ico
2011-08-29 20:00:21 ----D---- C:\WINDOWS
2011-08-29 19:58:40 ----D---- C:\windows\system32\drivers\etc
2011-08-29 19:58:40 ----A---- C:\windows\SchedLgU.Txt
2011-08-29 19:58:06 ----A---- C:\windows\winlog-ids.txt
2011-08-29 19:58:06 ----A---- C:\windows\winlog-dirs.txt
2011-08-29 19:57:54 ----SHD---- C:\windows\Installer
2011-08-29 19:57:54 ----D---- C:\windows\WinSxS
2011-08-29 19:57:47 ----D---- C:\windows\system32
2011-08-29 19:47:56 ----A---- C:\windows\btc_iplist.txt
2011-08-29 19:29:57 ----D---- C:\windows\system32\CatRoot2
2011-08-29 19:29:56 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2011-08-29 19:00:11 ----D---- C:\Program Files\Mozilla Firefox
2011-08-29 15:36:29 ----SHD---- C:\System Volume Information
2011-08-29 15:36:29 ----D---- C:\windows\system32\Restore
2011-08-29 10:54:28 ----HD---- C:\windows\update.4.1
2011-08-29 10:38:03 ----A---- C:\windows\ddh_iplist.txt
2011-08-29 10:22:10 ----D---- C:\Documents and Settings\All Users\Data aplikací\ClickPotatoLiteSA
2011-08-12 11:59:22 ----D---- C:\windows\Microsoft.NET
2011-08-12 11:59:15 ----RSD---- C:\windows\assembly
2011-08-11 17:05:51 ----A---- C:\windows\system32\PerfStringBackup.INI
2011-08-11 17:03:57 ----HD---- C:\windows\inf
2011-08-11 17:03:56 ----RSHDC---- C:\windows\system32\dllcache
2011-08-11 17:03:50 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2011-08-11 17:03:26 ----A---- C:\windows\imsins.BAK
2011-08-11 17:03:23 ----HD---- C:\windows\$hf_mig$
2011-08-11 17:03:16 ----D---- C:\Program Files\Windows NT
2011-08-11 16:55:53 ----A---- C:\windows\system32\MRT.exe
2011-08-11 16:55:45 ----D---- C:\Program Files\Internet Explorer
2011-08-10 00:01:39 ----D---- C:\Documents and Settings\Kostkova\Data aplikací\Skype
2011-08-10 00:00:52 ----D---- C:\Documents and Settings\Kostkova\Data aplikací\skypePM
2011-08-09 19:50:32 ----RD---- C:\Program Files\Skype
2011-08-09 19:50:18 ----D---- C:\Program Files\Common Files
2011-08-09 19:50:16 ----D---- C:\Documents and Settings\All Users\Data aplikací\Skype
2011-08-08 15:22:24 ----SD---- C:\Documents and Settings\Kostkova\Data aplikací\Microsoft
2011-08-06 14:20:30 ----A---- C:\windows\NeroDigital.ini

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 nvata;nvata; C:\windows\system32\DRIVERS\nvata.sys [2006-08-14 105344]
R0 sptd;sptd; C:\windows\System32\Drivers\sptd.sys [2010-01-25 691696]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\windows\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\windows\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 MpFilter;Microsoft Malware Protection Driver; C:\windows\system32\DRIVERS\MpFilter.sys [2011-04-18 165648]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.5.3.0; C:\windows\system32\DRIVERS\AegisP.sys [2009-08-26 21419]
R2 CP_OMDRV;Check Point Office Mode Module; C:\windows\System32\drivers\omdrv.sys [2005-06-19 36400]
R2 VNASC;Check Point Virtual Network Adapter - SecureClient; C:\windows\system32\DRIVERS\vnasc.sys [2005-06-19 109072]
R2 VPN-1;VPN-1 Module; C:\windows\System32\drivers\vpn.sys [2005-06-19 671408]
R3 FW1;SecuRemote Miniport; C:\windows\system32\DRIVERS\fw.sys [2005-06-19 2234320]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\windows\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Ovladač třídy standardu HID; C:\windows\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\windows\system32\drivers\RtkHDAud.sys [2009-07-06 5788672]
R3 nv;nv; C:\windows\system32\DRIVERS\nv4_mini.sys [2009-08-17 7729568]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\windows\system32\DRIVERS\NVENETFD.sys [2006-07-11 57856]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\windows\system32\DRIVERS\nvnetbus.sys [2006-07-11 20480]
R3 RT61;Ralink RT61 Wireless Driver; C:\windows\system32\DRIVERS\RT61.sys [2007-07-28 483968]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\windows\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbprint;Třída USB Printer; C:\windows\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
R4 MBAMSwissArmy;MBAMSwissArmy; \??\C:\windows\system32\drivers\mbamswissarmy.sys []
S3 aejroobk;aejroobk; C:\windows\system32\drivers\aejroobk.sys []
S3 Ambfilt;Ambfilt; C:\windows\system32\drivers\Ambfilt.sys [2008-08-05 1684736]
S3 Bridge;Most MAC; C:\windows\system32\DRIVERS\bridge.sys [2008-04-13 71552]
S3 BridgeMP;Miniport mostu MAC; C:\windows\system32\DRIVERS\bridge.sys [2008-04-13 71552]
S3 hamachi;Hamachi Network Interface; C:\windows\system32\DRIVERS\hamachi.sys [2009-09-23 26176]
S3 jfdcd;jfdcd; \??\C:\DOCUME~1\Kostkova\LOCALS~1\Temp\jfdcd.sys []
S3 Monfilt;Monfilt; C:\windows\system32\drivers\Monfilt.sys [2006-01-04 1389056]
S3 mouhid;Ovladač myši standardu HID; C:\windows\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
S3 nmwcd;Nokia USB Phone Parent; C:\windows\system32\drivers\ccdcmb.sys [2010-02-26 18176]
S3 nmwcdc;Nokia USB Generic; C:\windows\system32\drivers\ccdcmbo.sys [2010-02-26 22528]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\windows\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 upperdev;upperdev; C:\windows\system32\DRIVERS\usbser_lowerflt.sys [2010-02-26 8192]
S3 usbscan;Ovladač skeneru USB; C:\windows\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 usbser;USB Modem Driver; C:\windows\system32\drivers\usbser.sys [2008-04-13 26112]
S3 UsbserFilt;UsbserFilt; C:\windows\system32\DRIVERS\usbser_lowerfltj.sys [2010-02-26 8192]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\windows\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 Wdf01000;Wdf01000; C:\windows\system32\DRIVERS\Wdf01000.sys [2009-07-14 444136]
S3 WpdUsb;WpdUsb; C:\windows\System32\Drivers\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\windows\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [2006-10-26 335872]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2009-08-17 168004]
R2 SR_Service;Check Point SecuRemote Service; C:\Program Files\CheckPoint\SecuRemote\bin\SR_Service.exe [2005-06-19 106590]
R2 srvbtcclient;srvbtcclient; C:\WINDOWS\update.5.0\svchost.exe [2011-08-21 355840]
R2 srvsysdriver32;srvsysdriver32; C:\WINDOWS\sysdriver32.exe [2011-07-25 256000]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\windows\system32\svchost.exe [2008-04-14 14336]
R2 wxpdrivers;wxpdrivers; C:\windows\update.1\svchost.exe [2011-07-19 1147392]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-01-31 135664]
S2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-08-31 153376]
S2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2010-12-26 66872]
S2 ResultBar Service;ResultBar Service; C:\Documents and Settings\All Users\Data aplikací\ResultBar\resultbar179.exe [2011-07-17 26112]
S2 SR_WatchDog;Check Point SecuRemote WatchDog; C:\Program Files\CheckPoint\SecuRemote\bin\SR_WatchDog.exe [2005-06-19 36959]
S2 srvbtc1;srvbtc1; C:\windows\update.4.1\2261.exe [2011-08-29 364032]
S2 srvpele;srvpele; C:\windows\update.8.1\svchost.exe [2011-08-29 337408]
S3 aspnet_state;Stavová služba ASP.NET; C:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-01-31 135664]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-12-21 182768]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;Služba Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-06-29 800040]
S3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2007-06-27 279848]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2010-06-14 615936]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S4 NetTcpPortSharing;Služba sdílení portů Net.Tcp; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Re: Restarty PC + nefunkční antiviry

Napsal: 29 srp 2011 20:02
od Danstahr
Dobrý večer :welcome:,

tady tomu říkáme "Facebook virus". Předem v MBAMu nic nemažte a po dojetí sem vložte jeho log.

Re: Restarty PC + nefunkční antiviry

Napsal: 29 srp 2011 20:28
od Michal Z.
Já si to myslel, takže log je hotový. A tady je:

Malwarebytes' Anti-Malware
www.malwarebytes.org

Verze databáze:

Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702

29.8.2011 21:23:10
mbam-log-2011-08-29 (21-22-49).txt

Typ: Úplná kontrola (C:\|)
Kontrolované objekty: 278272
Uplynulý čas: 43 minut, 12 sekund

Infikované procesy v paměti: 11
Infikované moduly v paměti: 0
Infikované klíče v registru: 137
Infikované hodnoty v registru: 17
Infikované datové položky v registru: 3
Infikované složky: 37
Infikované soubory: 103

Infikované procesy v paměti:
c:\WINDOWS\update.tray-14-0\svchost.exe (Trojan.Dropper) -> 996 -> No action taken.
c:\WINDOWS\update.tray-9-0\svchost.exe (Trojan.Dropper) -> 1108 -> No action taken.
c:\WINDOWS\update.tray-15-0\svchost.exe (Trojan.Dropper) -> 1664 -> No action taken.
c:\WINDOWS\update.tray-7-0\svchost.exe (Trojan.Dropper) -> 944 -> No action taken.
c:\WINDOWS\update.1\svchost.exe (Trojan.Dropper) -> 2636 -> No action taken.
c:\WINDOWS\update.tray-7-0-lnk\svchost.exe (Trojan.Dropper) -> 928 -> No action taken.
c:\WINDOWS\l1rezerv.exe (Trojan.Agent) -> 1808 -> No action taken.
c:\WINDOWS\sysdriver32.exe (Trojan.Delf) -> 1680 -> No action taken.
c:\WINDOWS\update.5.0\svchost.exe (Trojan.Downloader) -> 3500 -> No action taken.
c:\WINDOWS\update.5.0\svchost.exe (Trojan.Downloader) -> 3960 -> No action taken.
c:\WINDOWS\update.3\svchost.exe (Trojan.Agent) -> 3912 -> No action taken.

Infikované moduly v paměti:
(Žádné škodlivé položky nebyly zjištěny)

Infikované klíče v registru:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wxpdrivers (Trojan.Dropper) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ResultBar Service (Adware.Agent.ZGen) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\srvbtc1 (Trojan.Agent) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{100EB1FD-D03E-47fd-81F3-EE91287F9465} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{E343EDFC-1E6C-4cb5-AA29-E9C922641C80} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{D8560AC2-21B5-4C1A-BDD4-BD12BC83B082} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.RprtCtrl.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.RprtCtrl (Adware.ShopperReports) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{100EB1FD-D03E-47FD-81F3-EE91287F9465} (Adware.ShopperReports) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{100EB1FD-D03E-47FD-81F3-EE91287F9465} (Adware.ShopperReports) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{100EB1FD-D03E-47FD-81F3-EE91287F9465} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\AppID\{0D82ACD6-A652-4496-A298-2BDE705F4227} (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\AppID\{11C27351-716B-4052-9361-E3B0A3F8221C} (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\AppID\{7025E484-D4B0-441a-9F0B-69063BD679CE} (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\AppID\{8258B35C-05B8-4c0e-9525-9BCCC70F8F2D} (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\AppID\{A89256AD-EC17-4a83-BEF5-4B8BC4F39306} (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{09325003-167C-483d-A4BA-8B3122ABB432} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{F1A1892C-2A6C-4817-98B4-FF81443CBA20} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{E25DA6D6-C365-46CF-ABAF-DC5893135D7A} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.HbGuru.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.HbGuru (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{1602F07D-8BF3-4c08-BDD6-DDDB1C48AEDC} (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{C55CA95C-324B-451C-B2D2-6E895AA75FEC} (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{30B15818-E110-4527-9C05-46ACE5A3460D} (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\ClickPotatoLiteAX.info.1 (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\ClickPotatoLiteAX.info (Adware.ClickPotato) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1602F07D-8BF3-4C08-BDD6-DDDB1C48AEDC} (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{20EA9658-6BC3-4599-A87D-6371FE9295FC} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.HbAx.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.HbAx (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{2721A8E5-BFDB-4562-9912-9E0531CA616C} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{5FE0CEAE-CB69-40AF-A323-40F94257DACB} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{65A16874-2ED0-460E-A547-5FE2EC3A13A7} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.MozillaPSExecuter.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.MozillaPSExecuter (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{396CFC12-932D-496b-A0A8-5D7201E105E1} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{573F4ABB-A1A2-44ED-9BA9-A8DAD40AAC46} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{71E02280-5212-45C3-B174-4D5A35DA254F} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.MozillaNvgtnTrpr.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.MozillaNvgtnTrpr (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{60DA826C-B1C6-4358-BDEC-4837CED45470} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.KOPFF.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.KOPFF (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{6DD76B7B-6423-4df0-9A07-84A6CAD973A0} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.Dwnldr.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.Dwnldr (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{74C22317-5B90-471f-9AD2-FEC049870A16} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.Scopes.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.Scopes (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{7A3D6D17-9DD5-4C60-8076-D1784DABAF8C} (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{814BAA91-DC22-4350-87D6-0C86E93F7F08} (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{419EDA30-6DFF-432C-B534-E15D899ABEE4} (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\MenuButtonIE.ButtonIE.1 (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\MenuButtonIE.ButtonIE (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{7F6CFB6A-9227-4bb8-B941-F2B067E76F51} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.TriggerImmidiateOrRandomTS.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.TriggerImmidiateOrRandomTS (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{A16AD1E9-F69A-45af-9462-B1C286708842} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.IEButtonA.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.IEButtonA (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{A7CDDCDC-BEEB-4685-A062-978F5E07CEEE} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.HbInfoBand.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.HbInfoBand (Adware.ShopperReports) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{A7CDDCDC-BEEB-4685-A062-978F5E07CEEE} (Adware.ShopperReports) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{A7CDDCDC-BEEB-4685-A062-978F5E07CEEE} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{AB0EE208-DF60-4fa7-A617-C4269760033E} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.Reporter.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.Reporter (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{AC6D819E-AA8F-4418-A3BB-D165C1B18BB5} (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\ClickPotatoLiteAX.UserProfiles.1 (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\ClickPotatoLiteAX.UserProfiles (Adware.ClickPotato) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{AC6D819E-AA8F-4418-A3BB-D165C1B18BB5} (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{C1089F63-7AFC-4538-B0EB-BEA0F4225A57} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.Stock.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.Stock (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{C9CCBB35-D123-4a31-AFFC-9B2933132116} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.IEButton.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.IEButton (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{CC7BD6F1-565C-47ce-A5BB-9C935E77B59D} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{02AED140-2B62-4B49-8B3B-179020CC39B9} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{17BF1E05-C0E8-413C-BD1F-A481EEA3B8E9} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.CntntDic.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.CntntDic (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{CFC16189-8A92-4a29-A940-60248385F426} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.CntntDisp.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.CntntDisp (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{DEE758B4-C3FB-4a5b-9939-848B9C77A2FB} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{E12AEAB6-7D12-4c07-8E36-5892EFB4DAFB} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.TriggerImmidiate.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.TriggerImmidiate (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{E2F2C137-A782-4fb5-81AF-086156F5EB0A} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.AsyncReporter.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.AsyncReporter (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{F1D06C9F-51F0-4476-BEDE-5DDF91BE304E} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.ReportData.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.ReportData (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{F3A32DF2-7413-4fb1-B575-1AC920A17B76} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.TriggerOnceInDay.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.TriggerOnceInDay (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\Typelib\{ACC62306-9A63-4864-BD2F-C8825D2D7EA6} (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{21BA420E-161C-413A-B21E-4E42AE1F4226} (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\Typelib\{CDCA70D8-C6A6-49EE-9BED-7429D6C477A2} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{8AD9AD05-36BE-4E40-BA62-5422EB0D02FB} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\Typelib\{D136987F-E1C4-4CCC-A220-893DF03EC5DF} (Adware.ShopperReports) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{B58926D6-CFB0-45D2-9C28-4B5A0F0368AE} (Adware.ClickPotato) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{B58926D6-CFB0-45D2-9C28-4B5A0F0368AE} (Adware.ClickPotato) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{B58926D6-CFB0-45D2-9C28-4B5A0F0368AE} (Adware.ClickPotato) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C5428486-50A0-4A02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{C5428486-50A0-4A02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C5428486-50A0-4A02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{C5428486-50A0-4A02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A078F691-9C07-4AF2-BF43-35E79EECF8B7} (Adware.Softomate) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{69725738-CD68-4f36-8D02-8C43722EE5DA} (Adware.Hotbar) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{89F88394-3828-4d03-A0CF-8203604C3DA6} (Adware.Hotbar) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D4233F04-1789-483c-A137-731E8F113DD5} (Adware.Hotbar) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\INSTALL.EXE (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ClickPotatoLiteSA (Adware.ClickPotato) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Profile Stylez (Trojan.FakeAlert) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ShopperReportsSA (Adware.ShopperReports) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\srvsysdriver32 (Trojan.Delf) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\srvbtcclient (Trojan.Downloader) -> No action taken.
HKEY_CLASSES_ROOT\AppID\BRNstIE.DLL (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\AppID\CmndFF.DLL (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\AppID\MenuButtonIE.DLL (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\AppID\mozillaps.dll (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\AppID\Pltfrm.DLL (Adware.ClickPotato) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\ShopperReports3 (Adware.ShopperReports) -> No action taken.
HKEY_CURRENT_USER\Software\ClickPotatoLite (Adware.ClickPotato) -> No action taken.
HKEY_CURRENT_USER\Software\clickpotatolitesa (Adware.ClickPotato) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\ClickPotatoLite (Adware.ClickPotato) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\ResultBar (Adware.ResultBar) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\ShopperReports3 (Adware.ShopperReports) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ResultBar (Adware.ResultBar) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\wxpdrivers (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\wxpdrivers (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_RESULTBAR_SERVICE (Adware.ResultBar) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SRVSYSDRIVER32 (Trojan.Agent) -> No action taken.

Infikované hodnoty v registru:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\tray_ico0 (Trojan.Dropper) -> Value: tray_ico0 -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\tray_ico1 (Trojan.Dropper) -> Value: tray_ico1 -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\tray_ico2 (Trojan.Dropper) -> Value: tray_ico2 -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\tray_ico3 (Trojan.Dropper) -> Value: tray_ico3 -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ClickPotatoLiteSA (Adware.ClickPotato) -> Value: ClickPotatoLiteSA -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\wxpdrv (Trojan.Dropper) -> Value: wxpdrv -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\systemup (Trojan.Agent) -> Value: systemup -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\l1rezerv.exe (Trojan.Agent) -> Value: l1rezerv.exe -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sysdriver32.exe (Trojan.Delf) -> Value: sysdriver32.exe -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sysdriver32_.exe (Trojan.Delf) -> Value: sysdriver32_.exe -> No action taken.
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyServer (PUM.Bad.Proxy) -> Value: ProxyServer -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform\ShopperReports 3.0.517.0 (Adware.HotBar) -> Value: ShopperReports 3.0.517.0 -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform\SRS_IT_E879057EBC7654543EAD90 (Malware.Trace) -> Value: SRS_IT_E879057EBC7654543EAD90 -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\w_distrib.exe (Trojan.Agent) -> Value: w_distrib.exe -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\extensions\ShopperReports@ShopperReports.com (ShopperReports) -> Value: ShopperReports@ShopperReports.com -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\extensions\ClickPotatoLite@ClickPotatoLite.com (Adware.ClickPotato) -> Value: ClickPotatoLite@ClickPotatoLite.com -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wxpDrivers\ImagePath (Trojan.Agent) -> Value: ImagePath -> No action taken.

Infikované datové položky v registru:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.

Infikované složky:
c:\documents and settings\all users\data aplikací\2aca5cc3-0f83-453d-a079-1076fe1a8b65 (Adware.Seekmo) -> No action taken.
c:\documents and settings\all users\data aplikací\clickpotatolitesa (Adware.ClickPotato) -> No action taken.
c:\documents and settings\Kostkova\data aplikací\clickpotatolite (Adware.ClickPotato) -> No action taken.
c:\documents and settings\all users\data aplikací\resultbar (Adware.ResultBar) -> No action taken.
c:\documents and settings\Kostkova\data aplikací\shopperreports3 (Adware.ShopperReports) -> No action taken.
c:\documents and settings\Kostkova\data aplikací\shopperreports3\Firefox (Adware.ShopperReports) -> No action taken.
c:\documents and settings\Kostkova\data aplikací\shopperreports3\Firefox\cs (Adware.ShopperReports) -> No action taken.
c:\documents and settings\Kostkova\data aplikací\shopperreports3\Firefox\cs\db (Adware.ShopperReports) -> No action taken.
c:\documents and settings\Kostkova\data aplikací\shopperreports3\Firefox\cs\dwld (Adware.ShopperReports) -> No action taken.
c:\documents and settings\Kostkova\data aplikací\shopperreports3\Firefox\cs\report (Adware.ShopperReports) -> No action taken.
c:\documents and settings\Kostkova\data aplikací\shopperreports3\Firefox\cs\res1 (Adware.ShopperReports) -> No action taken.
c:\documents and settings\Kostkova\data aplikací\shopperreports3\IE (Adware.ShopperReports) -> No action taken.
c:\documents and settings\Kostkova\data aplikací\shopperreports3\IE\cs (Adware.ShopperReports) -> No action taken.
c:\documents and settings\Kostkova\data aplikací\shopperreports3\IE\cs\db (Adware.ShopperReports) -> No action taken.
c:\documents and settings\Kostkova\data aplikací\shopperreports3\IE\cs\dwld (Adware.ShopperReports) -> No action taken.
c:\documents and settings\Kostkova\data aplikací\shopperreports3\IE\cs\report (Adware.ShopperReports) -> No action taken.
c:\program files\clickpotatolite (Adware.ClickPotato) -> No action taken.
c:\program files\clickpotatolite\bin (Adware.ClickPotato) -> No action taken.
c:\program files\clickpotatolite\bin\11.0.16.0 (Adware.ClickPotato) -> No action taken.
c:\program files\clickpotatolite\bin\11.0.16.0\firefox (Adware.ClickPotato) -> No action taken.
c:\program files\clickpotatolite\bin\11.0.16.0\firefox\extensions (Adware.ClickPotato) -> No action taken.
c:\program files\clickpotatolite\bin\11.0.16.0\firefox\extensions\plugins (Adware.ClickPotato) -> No action taken.
c:\program files\mozilla firefox\extensions\{34efa911-b536-4c08-bece-cd5e55c875b0} (Adware.ResultBar) -> No action taken.
c:\program files\mozilla firefox\extensions\{34efa911-b536-4c08-bece-cd5e55c875b0}\chrome (Adware.ResultBar) -> No action taken.
c:\program files\mozilla firefox\extensions\{34efa911-b536-4c08-bece-cd5e55c875b0}\defaults (Adware.ResultBar) -> No action taken.
c:\program files\mozilla firefox\extensions\{34efa911-b536-4c08-bece-cd5e55c875b0}\defaults\preferences (Adware.ResultBar) -> No action taken.
c:\program files\resultbar (Adware.ResultBar) -> No action taken.
c:\program files\shopperreports3 (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.517.0 (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.517.0\firefox (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.517.0\firefox\firefoxtoolbar (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.517.0\firefox\firefoxtoolbar\extensions (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.517.0\firefox\firefoxtoolbar\extensions\chrome (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.517.0\firefox\firefoxtoolbar\extensions\components (Adware.ShopperReports) -> No action taken.
c:\documents and settings\all users\nabídka start\Programy\clickpotato (Adware.ClickPotato) -> No action taken.
c:\documents and settings\all users\nabídka start\Programy\shopperreports (Adware.ShopperReports) -> No action taken.

Infikované soubory:
c:\WINDOWS\update.tray-14-0\svchost.exe (Trojan.Dropper) -> No action taken.
c:\WINDOWS\update.tray-9-0\svchost.exe (Trojan.Dropper) -> No action taken.
c:\WINDOWS\update.tray-15-0\svchost.exe (Trojan.Dropper) -> No action taken.
c:\WINDOWS\update.tray-7-0\svchost.exe (Trojan.Dropper) -> No action taken.
c:\WINDOWS\update.1\svchost.exe (Trojan.Dropper) -> No action taken.
c:\WINDOWS\update.tray-7-0-lnk\svchost.exe (Trojan.Dropper) -> No action taken.
c:\program files\clickpotatolite\bin\11.0.16.0\clickpotatolitesa.exe (Adware.ClickPotato) -> No action taken.
c:\WINDOWS\services32.exe (Trojan.Dropper) -> No action taken.
c:\WINDOWS\systemup.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\all users\data aplikací\resultbar\resultbar179.exe (Adware.Agent.ZGen) -> No action taken.
c:\WINDOWS\update.4.1\2261.exe (Trojan.Agent) -> No action taken.
c:\program files\shopperreports3\bin\3.0.517.0\shopperreports.dll (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.517.0\Pltfrm.dll (Adware.ShopperReports) -> No action taken.
c:\program files\clickpotatolite\bin\11.0.16.0\clickpotatolitesaax.dll (Adware.ClickPotato) -> No action taken.
c:\program files\shopperreports3\bin\3.0.517.0\mozillaps.dll (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.517.0\CmndFF.dll (Adware.ShopperReports) -> No action taken.
c:\program files\clickpotatolite\bin\11.0.16.0\clickpotatolitesabho.dll (Adware.ClickPotato) -> No action taken.
c:\program files\shopperreports3\bin\3.0.517.0\cntntcntr.dll (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.517.0\BRNstIE.dll (Adware.ShopperReports) -> No action taken.
c:\documents and settings\all users\data aplikací\resultbar\resultbar113.exe (Adware.ResultBar) -> No action taken.
c:\documents and settings\Kostkova\dokumenty\downloads\flash-player (1).exe (Trojan.Dropper) -> No action taken.
c:\documents and settings\Kostkova\dokumenty\downloads\flash-player.exe (Trojan.Dropper) -> No action taken.
c:\documents and settings\Kostkova\local settings\Temp\install.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Kostkova\local settings\Temp\btc_server.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Kostkova\local settings\Temp\myrar.exe (Trojan.Dropper) -> No action taken.
c:\program files\clickpotatolite\bin\11.0.16.0\clickpotatoliteuninstaller.exe (Adware.ClickPotato) -> No action taken.
c:\program files\clickpotatolite\bin\11.0.16.0\firefox\extensions\plugins\npclntax_clickpotatolitesa.dll (Adware.ClickPotato) -> No action taken.
c:\program files\profilestylez\profilestylez_uninstall.exe (Trojan.FakeAlert) -> No action taken.
c:\program files\mozilla firefox\plugins\npclntax_clickpotatolitesa.dll (Adware.ClickPotato) -> No action taken.
c:\program files\resultbar\resultbar.exe (Adware.Agent.ZGen) -> No action taken.
c:\program files\shopperreports3\bin\3.0.517.0\shopperreportsuninstaller.exe (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.517.0\firefox\firefoxtoolbar\extensions\components\BRNstFF.dll (Adware.ShopperReports) -> No action taken.
c:\program files\Ubisoft\ubisoft game launcher\ubiorbitapi_r2.dll (Trojan.Agent.CK) -> No action taken.
c:\RECYCLER\s-1-5-21-436374069-1580436667-839522115-1004\Dc910.exe (Trojan.FakeAlert) -> No action taken.
c:\system volume information\_restore{801ab7d1-a98e-4699-91e1-3c9e8faf37b8}\RP647\A0157122.exe (Trojan.Dropper) -> No action taken.
c:\system volume information\_restore{801ab7d1-a98e-4699-91e1-3c9e8faf37b8}\RP647\A0157123.exe (Trojan.Dropper) -> No action taken.
c:\system volume information\_restore{801ab7d1-a98e-4699-91e1-3c9e8faf37b8}\RP647\A0157124.exe (Trojan.Dropper) -> No action taken.
c:\system volume information\_restore{801ab7d1-a98e-4699-91e1-3c9e8faf37b8}\RP647\A0157125.exe (Trojan.Dropper) -> No action taken.
c:\system volume information\_restore{801ab7d1-a98e-4699-91e1-3c9e8faf37b8}\RP647\A0157126.exe (Trojan.Dropper) -> No action taken.
c:\system volume information\_restore{801ab7d1-a98e-4699-91e1-3c9e8faf37b8}\RP647\A0157157.exe (Trojan.Dropper) -> No action taken.
c:\system volume information\_restore{801ab7d1-a98e-4699-91e1-3c9e8faf37b8}\RP647\A0157158.exe (Trojan.Dropper) -> No action taken.
c:\system volume information\_restore{801ab7d1-a98e-4699-91e1-3c9e8faf37b8}\RP647\A0157159.exe (Trojan.Dropper) -> No action taken.
c:\system volume information\_restore{801ab7d1-a98e-4699-91e1-3c9e8faf37b8}\RP647\A0157160.exe (Trojan.Dropper) -> No action taken.
c:\system volume information\_restore{801ab7d1-a98e-4699-91e1-3c9e8faf37b8}\RP647\A0157161.exe (Trojan.Dropper) -> No action taken.
c:\system volume information\_restore{801ab7d1-a98e-4699-91e1-3c9e8faf37b8}\RP647\A0157162.exe (Trojan.Dropper) -> No action taken.
c:\system volume information\_restore{801ab7d1-a98e-4699-91e1-3c9e8faf37b8}\RP647\A0157127.exe (Trojan.Dropper) -> No action taken.
c:\system volume information\_restore{801ab7d1-a98e-4699-91e1-3c9e8faf37b8}\RP648\A0157222.exe (Trojan.Dropper) -> No action taken.
c:\system volume information\_restore{801ab7d1-a98e-4699-91e1-3c9e8faf37b8}\RP648\A0157223.exe (Trojan.Dropper) -> No action taken.
c:\system volume information\_restore{801ab7d1-a98e-4699-91e1-3c9e8faf37b8}\RP648\A0157224.exe (Trojan.Dropper) -> No action taken.
c:\system volume information\_restore{801ab7d1-a98e-4699-91e1-3c9e8faf37b8}\RP648\A0157225.exe (Trojan.Dropper) -> No action taken.
c:\system volume information\_restore{801ab7d1-a98e-4699-91e1-3c9e8faf37b8}\RP648\A0157226.exe (Trojan.Dropper) -> No action taken.
c:\system volume information\_restore{801ab7d1-a98e-4699-91e1-3c9e8faf37b8}\RP648\A0157227.exe (Trojan.Dropper) -> No action taken.
c:\WINDOWS\Temp\myrar.exe (Trojan.Dropper) -> No action taken.
c:\WINDOWS\Temp\btc_server.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\Temp\2142859.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\update.4.1\svchost.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\update.tray-14-0-lnk\svchost.exe (Trojan.Dropper) -> No action taken.
c:\WINDOWS\update.tray-15-0-lnk\svchost.exe (Trojan.Dropper) -> No action taken.
c:\WINDOWS\update.tray-9-0-lnk\svchost.exe (Trojan.Dropper) -> No action taken.
c:\WINDOWS\l1rezerv.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\sysdriver32.exe (Trojan.Delf) -> No action taken.
c:\WINDOWS\sysdriver32_.exe (Trojan.Delf) -> No action taken.
c:\WINDOWS\update.2\svchost.exe (Backdoor.Agent) -> No action taken.
c:\WINDOWS\update.5.0\svchost.exe (Trojan.Downloader) -> No action taken.
c:\WINDOWS\update.3\svchost.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\all users\data aplikací\clickpotatolitesa\clickpotatolitesa.dat (Adware.ClickPotato) -> No action taken.
c:\documents and settings\all users\data aplikací\clickpotatolitesa\clickpotatolitesaabout.mht (Adware.ClickPotato) -> No action taken.
c:\documents and settings\all users\data aplikací\clickpotatolitesa\clickpotatolitesaau.dat (Adware.ClickPotato) -> No action taken.
c:\documents and settings\all users\data aplikací\clickpotatolitesa\clickpotatolitesaeula.mht (Adware.ClickPotato) -> No action taken.
c:\documents and settings\all users\data aplikací\clickpotatolitesa\clickpotatolitesa_kyf.dat (Adware.ClickPotato) -> No action taken.
c:\documents and settings\all users\data aplikací\resultbar\resultbar121.exe (Adware.ResultBar) -> No action taken.
c:\documents and settings\Kostkova\data aplikací\shopperreports3\Firefox\cs\Config.xml (Adware.ShopperReports) -> No action taken.
c:\documents and settings\Kostkova\data aplikací\shopperreports3\Firefox\cs\db\Aliases.dbs (Adware.ShopperReports) -> No action taken.
c:\documents and settings\Kostkova\data aplikací\shopperreports3\Firefox\cs\db\Sites.dbs (Adware.ShopperReports) -> No action taken.
c:\documents and settings\Kostkova\data aplikací\shopperreports3\Firefox\cs\dwld\whitelist.xip (Adware.ShopperReports) -> No action taken.
c:\documents and settings\Kostkova\data aplikací\shopperreports3\Firefox\cs\report\aggr_storage.xml (Adware.ShopperReports) -> No action taken.
c:\documents and settings\Kostkova\data aplikací\shopperreports3\Firefox\cs\report\send_storage.xml (Adware.ShopperReports) -> No action taken.
c:\documents and settings\Kostkova\data aplikací\shopperreports3\Firefox\cs\res1\whitelist.dbs (Adware.ShopperReports) -> No action taken.
c:\documents and settings\Kostkova\data aplikací\shopperreports3\IE\cs\Config.xml (Adware.ShopperReports) -> No action taken.
c:\documents and settings\Kostkova\data aplikací\shopperreports3\IE\cs\db\Aliases.dbs (Adware.ShopperReports) -> No action taken.
c:\documents and settings\Kostkova\data aplikací\shopperreports3\IE\cs\report\aggr_storage.xml (Adware.ShopperReports) -> No action taken.
c:\documents and settings\Kostkova\data aplikací\shopperreports3\IE\cs\report\send_storage.xml (Adware.ShopperReports) -> No action taken.
c:\program files\clickpotatolite\bin\11.0.16.0\clickpotatolitesacb.exe (Adware.ClickPotato) -> No action taken.
c:\program files\clickpotatolite\bin\11.0.16.0\clickpotatolitesahook.dll (Adware.ClickPotato) -> No action taken.
c:\program files\clickpotatolite\bin\11.0.16.0\copyright.txt (Adware.ClickPotato) -> No action taken.
c:\program files\clickpotatolite\bin\11.0.16.0\firefox\extensions\install.rdf (Adware.ClickPotato) -> No action taken.
c:\program files\mozilla firefox\extensions\{34efa911-b536-4c08-bece-cd5e55c875b0}\chrome.manifest (Adware.ResultBar) -> No action taken.
c:\program files\mozilla firefox\extensions\{34efa911-b536-4c08-bece-cd5e55c875b0}\install.rdf (Adware.ResultBar) -> No action taken.
c:\program files\mozilla firefox\extensions\{34efa911-b536-4c08-bece-cd5e55c875b0}\chrome\resultbar.jar (Adware.ResultBar) -> No action taken.
c:\program files\mozilla firefox\extensions\{34efa911-b536-4c08-bece-cd5e55c875b0}\defaults\preferences\prefs.js (Adware.ResultBar) -> No action taken.
c:\program files\resultbar\resultbar.dll (Adware.ResultBar) -> No action taken.
c:\program files\resultbar\uninstall.exe (Adware.ResultBar) -> No action taken.
c:\program files\shopperreports3\bin\3.0.517.0\link.ico (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.517.0\firefox\firefoxtoolbar\extensions\chrome.manifest (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.517.0\firefox\firefoxtoolbar\extensions\install.rdf (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.517.0\firefox\firefoxtoolbar\extensions\chrome\firefoxtoolbar.jar (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.517.0\firefox\firefoxtoolbar\extensions\components\BRNstFF.xpt (Adware.ShopperReports) -> No action taken.
c:\documents and settings\all users\nabídka start\Programy\clickpotato\About Us.lnk (Adware.ClickPotato) -> No action taken.
c:\documents and settings\all users\nabídka start\Programy\clickpotato\clickpotato customer support.lnk (Adware.ClickPotato) -> No action taken.
c:\documents and settings\all users\nabídka start\Programy\clickpotato\clickpotato uninstall instructions.lnk (Adware.ClickPotato) -> No action taken.
c:\documents and settings\all users\nabídka start\Programy\shopperreports\About Us.lnk (Adware.ShopperReports) -> No action taken.
c:\documents and settings\all users\nabídka start\Programy\shopperreports\customer support.lnk (Adware.ShopperReports) -> No action taken.
c:\documents and settings\all users\nabídka start\Programy\shopperreports\shopperreports uninstall instructions.lnk (Adware.ShopperReports) -> No action taken.

Re: Restarty PC + nefunkční antiviry

Napsal: 29 srp 2011 20:34
od Danstahr
:arrow: Nalezenou infekci nechte MBAMem smazat.

:!: Pozor! Tato utilita má velkou schopnost mazat a její použití je určeno výhradně členům týmu tohoto fóra. Svévolné použití může vést ke zboření a reinstalaci systému :!:

:arrow: Stáhněte ComboFix a uložte jej na Plochu.

:arrow: Vypněte všechny rezidentní štíty antivirů a všechny programy běžící na pozadí.
:arrow: Spusťte ComboFix s administrátorským oprávněním.
:arrow: Potvrďte licenční podmínky a případně i instalaci konzoly pro zotavení
:arrow: Během skenu nechte počítač naprosto v klidu.
:arrow: Sken trvá zhruba 15 minut, ale doba se může lišit v závislosti na stavu systému
:arrow: Po dokončení skenu se zobrazí log (pokud by se neotevřel, lze jej nalézt na systémovém disku jako ComboFix.txt), obsah logu vložte sem
:arrow: :!: ComboFixu si do dalšího pokynu nevšímejte :!:

Re: Restarty PC + nefunkční antiviry

Napsal: 29 srp 2011 21:06
od Michal Z.
ComboFix je hotový. Tady je log, jen nevím proč zde napsáno varování, že není konzola pro zotavení, když jsem potvrzoval její instalaci.

ComboFix 11-08-29.03 - Kostkova 29.08.2011 21:47:41.1.2 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1250.420.1029.18.2047.1536 [GMT 2:00]
Spuštěný z: c:\documents and settings\Kostkova\Plocha\ComboFix.exe
.
VAROVÁNÍ - NA TOMTO POČÍTAČI NENÍ NAINSTALOVÁNA KONZOLA PRO ZOTAVENÍ !!
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\docume~1\Kostkova\LOCALS~1\Temp\4489024.exe
c:\documents and settings\Kostkova\Data aplikací\dwmu.exe
c:\documents and settings\Kostkova\WINDOWS
C:\Microsoft
c:\program files\Internet Explorer\conhost.exe
c:\windows\btc_client_iplist.txt
c:\windows\ddh_iplist.txt
c:\windows\front_ip_list.txt
c:\windows\gbot111.exe
c:\windows\geoiplist
c:\windows\geoiplist.rar
c:\windows\iecheck_iplist.txt
c:\windows\info1
c:\windows\iplist.txt
c:\windows\loader2.exe_ok
c:\windows\phoenix
c:\windows\phoenix.rar
c:\windows\phoenix\kernels\phatk\__init__.py
c:\windows\phoenix\kernels\phatk\__init__.pyc
c:\windows\phoenix\kernels\phatk\BFIPatcher.py
c:\windows\phoenix\kernels\phatk\kernel.cl
c:\windows\phoenix\kernels\poclbm\__init__.py
c:\windows\phoenix\kernels\poclbm\__init__.pyc
c:\windows\phoenix\kernels\poclbm\BFIPatcher.py
c:\windows\phoenix\kernels\poclbm\kernel.cl
c:\windows\phoenix\phoenix.exe
c:\windows\proc_list1.log
c:\windows\rpcminer
c:\windows\rpcminer.rar
c:\windows\rpcminer\bitcoinminercuda_10.cubin
c:\windows\rpcminer\bitcoinminercuda_11.cubin
c:\windows\rpcminer\bitcoinminercuda_20.cubin
c:\windows\rpcminer\bitcoinmineropencl.cl
c:\windows\rpcminer\cudart32_32_16.dll
c:\windows\rpcminer\curllib.dll
c:\windows\rpcminer\libeay32.dll
c:\windows\rpcminer\libsasl.dll
c:\windows\rpcminer\openldap.dll
c:\windows\rpcminer\rpcminer-4way.exe
c:\windows\rpcminer\rpcminer-cpu.exe
c:\windows\rpcminer\rpcminer-cuda.exe
c:\windows\rpcminer\rpcminer-opencl.exe
c:\windows\rpcminer\ssleay32.dll
c:\windows\system32\drivers\etc\HSTS~1
c:\windows\TEMP\1477017.exe
c:\windows\ufa.rar
c:\windows\update.1
c:\windows\update.2
c:\windows\update.3
c:\windows\update.4.1
c:\windows\update.5.0
c:\windows\w_distrib_iplist.txt
c:\windows\winlog-dirs.txt
c:\windows\winlog-ids.txt
c:\windows\winsetupapi.log
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_SRVBTCCLIENT
-------\Legacy_WXPDRIVERS
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-07-28 do 2011-08-29 )))))))))))))))))))))))))))))))
.
.
2011-08-29 18:43 . 2011-08-29 18:43 -------- d-----w- c:\program files\trend micro
2011-08-29 18:43 . 2011-08-29 18:43 -------- d-----w- C:\rsit
2011-08-29 18:26 . 2011-08-29 18:26 -------- d-----w- c:\documents and settings\Kostkova\Data aplikací\Malwarebytes
2011-08-29 18:26 . 2011-08-29 18:26 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Malwarebytes
2011-08-29 18:26 . 2011-07-06 17:52 41272 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-08-29 18:25 . 2011-08-29 19:23 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-08-29 18:25 . 2011-07-06 17:52 22712 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-08-29 18:10 . 2011-08-29 18:10 -------- d-----w- c:\program files\CCleaner
2011-08-29 18:00 . 2011-08-29 19:37 -------- d--h--w- c:\windows\update.tray-7-0
2011-08-29 18:00 . 2011-08-29 19:37 -------- d--h--w- c:\windows\update.tray-7-0-lnk
2011-08-29 17:57 . 2011-07-04 11:36 309848 ----a-w- c:\windows\system32\drivers\aswSP.sys
2011-08-29 17:57 . 2011-07-04 11:32 19544 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2011-08-29 17:57 . 2011-07-04 11:36 441176 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2011-08-29 17:57 . 2011-07-04 11:35 43608 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2011-08-29 17:57 . 2011-07-04 11:35 102616 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2011-08-29 17:57 . 2011-07-04 11:35 96344 ----a-w- c:\windows\system32\drivers\aswmon.sys
2011-08-29 17:57 . 2011-07-04 11:32 25432 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2011-08-29 17:57 . 2011-07-04 11:32 30808 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2011-08-29 17:57 . 2011-07-04 11:43 40112 ----a-w- c:\windows\avastSS.scr
2011-08-29 17:57 . 2011-07-04 11:43 199304 ----a-w- c:\windows\system32\aswBoot.exe
2011-08-29 17:29 . 2011-08-29 17:30 -------- d-----w- C:\054c6b8912c5e8f051f911162bb2
2011-08-29 08:45 . 2011-08-29 08:45 -------- d--h--w- c:\windows\update.8.1
2011-08-11 09:29 . 2011-06-24 14:10 139656 -c----w- c:\windows\system32\dllcache\rdpwd.sys
2011-08-11 09:29 . 2011-07-08 14:02 10496 -c----w- c:\windows\system32\dllcache\ndistapi.sys
2011-08-09 17:50 . 2011-08-09 17:51 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Skype Extras
2011-08-09 17:50 . 2011-08-09 17:50 -------- d-----w- c:\program files\Common Files\Skype
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-07-22 16:14 . 2011-07-22 16:13 1507840 ----a-w- c:\windows\bitcoind.exe
2011-07-19 15:58 . 2011-07-19 15:58 246272 ----a-w- c:\windows\unrar.exe
2011-07-15 13:29 . 2006-03-02 12:00 456320 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2011-07-08 14:02 . 2006-03-02 12:00 10496 ----a-w- c:\windows\system32\drivers\ndistapi.sys
2011-06-24 14:10 . 2009-08-25 11:16 139656 ----a-w- c:\windows\system32\drivers\rdpwd.sys
2011-06-23 18:31 . 2006-03-02 12:00 916480 ----a-w- c:\windows\system32\wininet.dll
2011-06-23 18:31 . 2006-03-02 12:00 43520 ------w- c:\windows\system32\licmgr10.dll
2011-06-23 18:31 . 2006-03-02 12:00 1469440 ------w- c:\windows\system32\inetcpl.cpl
2011-06-23 12:05 . 2006-03-02 12:00 385024 ----a-w- c:\windows\system32\html.iec
2011-06-20 17:44 . 2006-03-02 12:00 293376 ----a-w- c:\windows\system32\winsrv.dll
2011-06-06 11:35 . 2006-03-02 12:00 1858944 ----a-w- c:\windows\system32\win32k.sys
2011-07-09 11:43 . 2011-04-28 08:19 142296 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
2009-10-19 17:59 . 2010-01-30 17:27 47104 ----a-w- c:\program files\mozilla firefox\components\FFComm.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}"= "c:\program files\BS_Player\tbBS_1.dll" [2010-10-22 2735200]
.
[HKEY_CLASSES_ROOT\clsid\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
2010-10-22 09:05 2735200 ----a-w- c:\program files\BS_Player\tbBS_1.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}"= "c:\program files\BS_Player\tbBS_1.dll" [2010-10-22 2735200]
.
[HKEY_CLASSES_ROOT\clsid\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}"= "c:\program files\BS_Player\tbBS_1.dll" [2010-10-22 2735200]
.
[HKEY_CLASSES_ROOT\clsid\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2009-10-30 369200]
"Steam"="d:\games\css source\steam.exe" [2011-08-02 1242448]
"PC Suite Tray"="c:\program files\Nokia\Nokia PC Suite 7\PCSuite.exe" [2009-06-25 1414144]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NokiaMServer"="c:\program files\Common Files\Nokia\MPlatform\NokiaMServer" [X]
"nwiz"="c:\program files\NVIDIA Corporation\nView\nwiz.exe" [2009-08-12 1657376]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-08-17 13877248]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2009-08-17 86016]
"RTHDCPL"="RTHDCPL.EXE" [2009-07-02 18665472]
"NeroFilterCheck"="c:\program files\Common Files\Ahead\Lib\NeroCheck.exe" [2007-03-01 153136]
"NokiaMusic FastStart"="c:\program files\Nokia\Ovi Player\NokiaOviPlayer.exe" [2010-03-04 2192672]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-02-18 248040]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-09-23 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-09-20 932288]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
McAfee Security Scan.lnk - c:\program files\McAfee Security Scan\1.0.150\SSScheduler.exe [N/A]
Ralink Wireless Utility.lnk - c:\program files\RALINK\Common\RaUI.exe [2009-8-26 675840]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableSecureUIAPaths"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\ckpNotify]
2005-06-19 11:01 24669 ----a-w- c:\windows\system32\ckpNotify.dll
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"FirewallOverride"=dword:00000001
"DisableThumbnailCache"=dword:00000001
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\CheckPoint\\SecuRemote\\bin\\SR_Service.exe"=
"c:\\Program Files\\CheckPoint\\SecuRemote\\bin\\SR_GUI.exe"=
"c:\\Program Files\\CheckPoint\\SecuRemote\\bin\\scc.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\uTorrent\\utorrent.exe"=
"c:\\Program Files\\Nero\\Nero 7\\Nero ShowTime\\ShowTime.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"d:\\games\\CSS source\\Steam.exe"=
"c:\\WINDOWS\\system32\\dpvsetup.exe"=
"c:\\Program Files\\Nokia\\Nokia Ovi Suite\\NokiaOviSuite.exe"=
"c:\\Program Files\\Common Files\\Nokia\\Service Layer\\A\\nsl_host_process.exe"=
"c:\\Program Files\\Google\\Google Earth\\plugin\\geplugin.exe"=
"d:\\QIP\\qip.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"c:\\Program Files\\Ubisoft\\Ubisoft Game Launcher\\UbisoftGameLauncher.exe"=
"d:\\games\\CSS source\\SteamApps\\rogan112\\half-life 2 deathmatch\\hl2.exe"=
"c:\\Program Files\\Counter-Strike Source\\hl2.exe"=
"d:\\games\\CSS source\\SteamApps\\rogan112\\counter-strike source\\hl2.exe"=
"c:\\Program Files\\LucasArts\\SWKotOR\\launcher.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\Ubisoft\\Assassin's Creed II\\AssassinsCreedIIGame.exe"=
"c:\\Program Files\\Ubisoft\\Assassin's Creed II\\AssassinsCreedII.exe"=
"c:\\Program Files\\Ubisoft\\Assassin's Creed II\\UPlayBrowser.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"3389:TCP"= 3389:TCP:@xpsp2res.dll,-22009
.
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [25.1.2010 17:44 691696]
R2 CP_OMDRV;Check Point Office Mode Module;c:\windows\system32\drivers\omdrv.sys [25.8.2009 16:11 36400]
R2 VNASC;Check Point Virtual Network Adapter - SecureClient;c:\windows\system32\drivers\vnasc.sys [25.8.2009 16:11 109072]
R2 VPN-1;VPN-1 Module;c:\windows\system32\drivers\vpn.sys [25.8.2009 16:11 671408]
R3 FW1;SecuRemote Miniport;c:\windows\system32\drivers\fw.sys [25.8.2009 16:13 2234320]
S2 gupdate;Služba Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [31.1.2010 13:43 135664]
S2 srvpele;srvpele;c:\windows\update.8.1\svchost.exe srv --> c:\windows\update.8.1\svchost.exe srv [?]
S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [25.8.2009 13:33 1684736]
S3 gupdatem;Služba Google Update (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [31.1.2010 13:43 135664]
S3 jfdcd;jfdcd;\??\c:\docume~1\Kostkova\LOCALS~1\Temp\jfdcd.sys --> c:\docume~1\Kostkova\LOCALS~1\Temp\jfdcd.sys [?]
S3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [29.8.2011 20:26 41272]
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - BITS
*NewlyCreated* - WUAUSERV
.
Obsah adresáře 'Naplánované úlohy'
.
2011-08-29 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-01-31 11:43]
.
2011-08-29 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-01-31 11:43]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.inbox.com/homepage.aspx?tbid=80093&lng=cs
uDefault_Search_URL = hxxp://www.google.com/ie
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: WikiKomentáře Google... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
IE: {{0E46D7B6-887D-4F81-B4CA-FCC92AF73610} - {0E46D7B6-887D-4F81-B4CA-FCC92AF73610} - c:\program files\Seznam.cz\listicka.dll
TCP: DhcpNameServer = 192.168.2.1
FF - ProfilePath - c:\documents and settings\Kostkova\Data aplikací\Mozilla\Firefox\Profiles\s102qj25.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/
FF - prefs.js: keyword.URL - hxxp://www.resultbar.com/?tmp=nemo_results_rem ... &keywords=
FF - prefs.js: network.proxy.http - 127.0.0.1
FF - prefs.js: network.proxy.http_port - 51455
FF - prefs.js: network.proxy.type - 0
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
ShellIconOverlayIdentifiers-{472083B0-C522-11CF-8763-00608CC02F24} - (no file)
HKLM-Run-tray_ico - (no file)
HKLM-Run-tray_ico4 - (no file)
SafeBoot-MsMpSvc
AddRemove-QIP 2005 - d:\nová složka\QIP\unins000.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-08-29 21:55
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'explorer.exe'(3048)
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\program files\Nokia\Nokia PC Suite 7\PhoneBrowser.dll
c:\program files\Nokia\Nokia PC Suite 7\NGSCM.DLL
c:\program files\Nokia\Nokia PC Suite 7\Lang\PhoneBrowser_cze.nlr
c:\program files\Nokia\Nokia PC Suite 7\Resource\PhoneBrowser_Nokia.ngr
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\nvsvc32.exe
c:\program files\CheckPoint\SecuRemote\bin\SR_Service.exe
c:\program files\CheckPoint\SecuRemote\bin\SR_WatchDog.exe
c:\program files\CheckPoint\SecuRemote\bin\SR_GUI.Exe
c:\windows\system32\RUNDLL32.EXE
c:\windows\RTHDCPL.EXE
c:\program files\Common Files\Nokia\MPlatform\NokiaMServer.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
c:\windows\system32\PnkBstrA.exe
c:\program files\PC Connectivity Solution\ServiceLayer.exe
c:\program files\PC Connectivity Solution\Transports\NclUSBSrv.exe
c:\program files\PC Connectivity Solution\Transports\NclRSSrv.exe
.
**************************************************************************
.
Celkový čas: 2011-08-29 21:58:28 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-08-29 19:58
.
Před spuštěním: Volných bajtů: 20 464 832 512
Po spuštění: Volných bajtů: 20 713 791 488
.
- - End Of File - - 72DD715B6FBD8E40147A3710D8ABE391

Re: Restarty PC + nefunkční antiviry

Napsal: 29 srp 2011 22:27
od Danstahr
:arrow: Otevřete Poznámkový blok, vložte do něj následující text a uložte soubor na Plochu jako CFScript.txt. Pak soubor přetáhněte na ikonu ComboFixu (viz obrázek). Po restartu se otevře log, ten sem vložte.

Obrázek

Kód: Vybrat vše

killall::

collect::
c:\windows\bitcoind.exe
c:\docume~1\Kostkova\LOCALS~1\Temp\jfdcd.sys

file::
c:\windows\unrar.exe
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job

folder::
c:\windows\update.tray-7-0
c:\windows\update.tray-7-0-lnk
C:\054c6b8912c5e8f051f911162bb2
c:\windows\update.8.1


registry::
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}"=-

[-HKEY_CLASSES_ROOT\clsid\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]

[-HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}"=-

[-HKEY_CLASSES_ROOT\clsid\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}"=-

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=-
"PC Suite Tray"=-

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvMediaCenter"=-
"NeroFilterCheck"=-
"NokiaMusic FastStart"=-
"SunJavaUpdateSched"=-
"Adobe Reader Speed Launcher"=-
"Adobe ARM"=-

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableSecureUIAPaths"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"FirewallOverride"=dword:00000000
"DisableThumbnailCache"=dword:00000000

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"c:\\Program Files\\uTorrent\\utorrent.exe"=-

driver::
gupdate
gupdatem
srvpele
jfdcd

DDS::
uStart Page = hxxp://www.inbox.com/homepage.aspx?tbid=80093&lng=cs

Firefox::
FF - ProfilePath - c:\documents and settings\Kostkova\Data aplikací\Mozilla\Firefox\Profiles\s102qj25.default\
FF - prefs.js: keyword.URL - hxxp://www.resultbar.com/?tmp=nemo_resu ... &keywords=
FF - prefs.js: network.proxy.http - 127.0.0.1
FF - prefs.js: network.proxy.http_port - 51455
FF - prefs.js: network.proxy.type - 0

reboot::

Re: Restarty PC + nefunkční antiviry

Napsal: 30 srp 2011 18:44
od Michal Z.
Dobrý den, konečně se mi povedlo dostat na internet. Tady je log. Nevejde se do jednoho postu, tak jich bude víc.

ComboFix 11-08-29.03 - Kostkova 30.08.2011 18:40:39.2.2 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1250.420.1029.18.2047.1506 [GMT 2:00]
Spuštěný z: c:\documents and settings\Kostkova\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\Kostkova\Plocha\CFScript.txt
AV: avast! Antivirus *Enabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
AV: Microsoft Security Essentials *Enabled/Updated* {EDB4FA23-53B8-4AFA-8C5D-99752CCA7095}
.
VAROVÁNÍ - NA TOMTO POČÍTAČI NENÍ NAINSTALOVÁNA KONZOLA PRO ZOTAVENÍ !!
.
FILE ::
"c:\windows\Tasks\GoogleUpdateTaskMachineCore.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA.job"
"c:\windows\unrar.exe"
.
file zipped: c:\windows\bitcoind.exe
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\054c6b8912c5e8f051f911162bb2
c:\054c6b8912c5e8f051f911162bb2\compappscontent.dll
c:\054c6b8912c5e8f051f911162bb2\cs-cz\amhelp.chm
c:\054c6b8912c5e8f051f911162bb2\cs-cz\epploc.cab
c:\054c6b8912c5e8f051f911162bb2\cs-cz\epploc_x86.msi
c:\054c6b8912c5e8f051f911162bb2\cs-cz\eula.rtf
c:\054c6b8912c5e8f051f911162bb2\cs-cz\setupres.dll.mui
c:\054c6b8912c5e8f051f911162bb2\cs-cz\x86\amloc-cs-cz.msi
c:\054c6b8912c5e8f051f911162bb2\en-us\amhelp.chm
c:\054c6b8912c5e8f051f911162bb2\en-us\epploc.cab
c:\054c6b8912c5e8f051f911162bb2\en-us\epploc_x86.msi
c:\054c6b8912c5e8f051f911162bb2\en-us\eula.rtf
c:\054c6b8912c5e8f051f911162bb2\en-us\setupres.dll.mui
c:\054c6b8912c5e8f051f911162bb2\epplauncher.exe
c:\054c6b8912c5e8f051f911162bb2\eppmanifest.dll
c:\054c6b8912c5e8f051f911162bb2\setup.ini
c:\054c6b8912c5e8f051f911162bb2\setupres.dll
c:\054c6b8912c5e8f051f911162bb2\x86\dw20shared.msi
c:\054c6b8912c5e8f051f911162bb2\x86\epp.msi
c:\054c6b8912c5e8f051f911162bb2\x86\legitlib.dll
c:\054c6b8912c5e8f051f911162bb2\x86\mp_ambits.msi
c:\054c6b8912c5e8f051f911162bb2\x86\setup.exe
c:\054c6b8912c5e8f051f911162bb2\x86\sqmapi.dll
c:\054c6b8912c5e8f051f911162bb2\x86\windows6.0-kb981889-v2.msu
c:\054c6b8912c5e8f051f911162bb2\x86\windows6.1-kb981889.msu
c:\documents and settings\Kostkova\dl.exe
c:\windows\bitcoind.exe
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
c:\windows\unrar.exe
c:\windows\update.8.1
c:\windows\update.8.1\svchost.exe
c:\windows\update.tray-7-0-lnk
c:\windows\update.tray-7-0
d:\games\css source\steam.exe
.
Nakažená kopie c:\windows\hh.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0158954.exe
.
Nakažená kopie c:\windows\notepad.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159031.exe
.
Nakažená kopie c:\windows\regedit.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159040.exe
.
Nakažená kopie c:\windows\slrundll.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159306.exe
.
Nakažená kopie c:\windows\TASKMAN.EXE byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159818.EXE
.
Nakažená kopie c:\windows\twunk_32.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159819.exe
.
Nakažená kopie c:\windows\winhlp32.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159829.exe
.
Nakažená kopie c:\windows\Help\Tours\mmTour\tour.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0158953.exe
.
Nakažená kopie c:\windows\inf\unregmp2.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0158979.exe
.
Nakažená kopie c:\windows\msagent\agentsvr.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159028.exe
.
Nakažená kopie c:\windows\pchealth\helpctr\binaries\helpctr.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159032.exe
.
Nakažená kopie c:\windows\pchealth\helpctr\binaries\HelpHost.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159033.exe
.
Nakažená kopie c:\windows\pchealth\helpctr\binaries\helpsvc.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159034.exe
.
Nakažená kopie c:\windows\pchealth\helpctr\binaries\hscupd.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159035.exe
.
Nakažená kopie c:\windows\pchealth\helpctr\binaries\msconfig.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159036.exe
.
Nakažená kopie c:\windows\pchealth\helpctr\binaries\notiflag.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159037.exe
.
Nakažená kopie c:\windows\pchealth\UploadLB\Binaries\uploadm.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159038.exe
.
Nakažená kopie c:\windows\system32\accwiz.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159311.exe
.
Nakažená kopie c:\windows\system32\actmovie.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159312.exe
.
Nakažená kopie c:\windows\system32\ahui.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159313.exe
.
Nakažená kopie c:\windows\system32\arp.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159314.exe
.
Nakažená kopie c:\windows\system32\at.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159316.exe
.
Nakažená kopie c:\windows\system32\atmadm.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159317.exe
.
Nakažená kopie c:\windows\system32\attrib.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159318.exe
.
Nakažená kopie c:\windows\system32\auditusr.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159319.exe
.
Nakažená kopie c:\windows\system32\autochk.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159320.exe
.
Nakažená kopie c:\windows\system32\autoconv.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159321.exe
.
Nakažená kopie c:\windows\system32\autofmt.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159322.exe
.
Nakažená kopie c:\windows\system32\autolfn.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159323.exe
.
Nakažená kopie c:\windows\system32\blastcln.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159324.exe
.
Nakažená kopie c:\windows\system32\bootok.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159325.exe
.
Nakažená kopie c:\windows\system32\bootvrfy.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159326.exe
.
Nakažená kopie c:\windows\system32\cacls.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159328.exe
.
Nakažená kopie c:\windows\system32\calc.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159329.exe
.
Nakažená kopie c:\windows\system32\charmap.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159330.exe
.
Nakažená kopie c:\windows\system32\chkdsk.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159331.exe
.
Nakažená kopie c:\windows\system32\chkntfs.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159332.exe
.
Nakažená kopie c:\windows\system32\cidaemon.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159333.exe
.
Nakažená kopie c:\windows\system32\cisvc.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159334.exe
.
Nakažená kopie c:\windows\system32\ckcnv.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159335.exe
.
Nakažená kopie c:\windows\system32\cleanmgr.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159336.exe
.
Nakažená kopie c:\windows\system32\clipbrd.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159338.exe
.
Nakažená kopie c:\windows\system32\clipsrv.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159339.exe
.
Nakažená kopie c:\windows\system32\cmd.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159340.exe
.
Nakažená kopie c:\windows\system32\cmdl32.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159341.exe
.
Nakažená kopie c:\windows\system32\cmmon32.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159342.exe
.
Nakažená kopie c:\windows\system32\cmstp.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159343.exe
.
Nakažená kopie c:\windows\system32\comp.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159346.exe
.
Nakažená kopie c:\windows\system32\compact.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159347.exe
.
Nakažená kopie c:\windows\system32\conime.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159348.exe
.
Nakažená kopie c:\windows\system32\control.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159349.exe
.
Nakažená kopie c:\windows\system32\convert.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159350.exe
.
Nakažená kopie c:\windows\system32\cscript.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159351.exe
.
Nakažená kopie c:\windows\system32\ctfmon.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159352.exe
.
Nakažená kopie c:\windows\system32\dcomcnfg.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159353.exe
.
Nakažená kopie c:\windows\system32\ddeshare.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159354.exe
.
Nakažená kopie c:\windows\system32\defrag.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159355.exe
.
Nakažená kopie c:\windows\system32\dfrgfat.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159356.exe
.
Nakažená kopie c:\windows\system32\dfrgntfs.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159357.exe
.
Nakažená kopie c:\windows\system32\diantz.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159358.exe
.
Nakažená kopie c:\windows\system32\diskpart.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159359.exe
.
Nakažená kopie c:\windows\system32\diskperf.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159360.exe
.
Nakažená kopie c:\windows\system32\dllhost.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159558.exe
.
Nakažená kopie c:\windows\system32\dllhst3g.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159559.exe
.
Nakažená kopie c:\windows\system32\dmadmin.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159560.exe
.
Nakažená kopie c:\windows\system32\dmremote.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159561.exe
.
Nakažená kopie c:\windows\system32\doskey.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159562.exe
.
Nakažená kopie c:\windows\system32\dplaysvr.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159563.exe
.
Nakažená kopie c:\windows\system32\dpnsvr.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159564.exe
.
Nakažená kopie c:\windows\system32\dpvsetup.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159565.exe
.
Nakažená kopie c:\windows\system32\drwtsn32.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159567.exe
.
Nakažená kopie c:\windows\system32\dumprep.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159568.exe
.
Nakažená kopie c:\windows\system32\dvdplay.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159569.exe
.
Nakažená kopie c:\windows\system32\dvdupgrd.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159570.exe
.
Nakažená kopie c:\windows\system32\dwwin.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159571.exe
.
Nakažená kopie c:\windows\system32\dxdiag.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159572.exe
.
Nakažená kopie c:\windows\system32\esentutl.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159574.exe
.
Nakažená kopie c:\windows\system32\eudcedit.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159575.exe
.
Nakažená kopie c:\windows\system32\eventvwr.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159576.exe
.
Nakažená kopie c:\windows\system32\expand.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159577.exe
.
Nakažená kopie c:\windows\system32\extrac32.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159578.exe
.
Nakažená kopie c:\windows\system32\fc.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159580.exe
.
Nakažená kopie c:\windows\system32\find.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159581.exe
.
Nakažená kopie c:\windows\system32\findstr.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159582.exe
.
Nakažená kopie c:\windows\system32\finger.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159583.exe
.
Nakažená kopie c:\windows\system32\fixmapi.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159584.exe
.
Nakažená kopie c:\windows\system32\fltmc.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159585.exe
.
Nakažená kopie c:\windows\system32\fontview.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159586.exe
.
Nakažená kopie c:\windows\system32\forcedos.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159587.exe
.
Nakažená kopie c:\windows\system32\freecell.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159588.exe
.
Nakažená kopie c:\windows\system32\fsquirt.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159589.exe
.
Nakažená kopie c:\windows\system32\fsutil.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159590.exe
.
Nakažená kopie c:\windows\system32\ftp.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159591.exe
.
Nakažená kopie c:\windows\system32\grpconv.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159592.exe
.
Nakažená kopie c:\windows\system32\help.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159594.exe
.
Nakažená kopie c:\windows\system32\hostname.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159595.exe
.
Nakažená kopie c:\windows\system32\ie4uinit.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159597.exe
.
Nakažená kopie c:\windows\system32\iexpress.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159599.exe
.
Nakažená kopie c:\windows\system32\imapi.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159600.exe
.
Nakažená kopie c:\windows\system32\ipconfig.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159601.exe
.
Nakažená kopie c:\windows\system32\ipsec6.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159602.exe
.
Nakažená kopie c:\windows\system32\ipv6.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159603.exe
.
Nakažená kopie c:\windows\system32\ipxroute.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159604.exe
.
Nakažená kopie c:\windows\system32\label.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159608.exe
.
Nakažená kopie c:\windows\system32\lights.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159609.exe
.
Nakažená kopie c:\windows\system32\lnkstub.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159610.exe
.
Nakažená kopie c:\windows\system32\locator.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159611.exe
.
Nakažená kopie c:\windows\system32\lodctr.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159612.exe
.
Nakažená kopie c:\windows\system32\logagent.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159613.exe
.
Nakažená kopie c:\windows\system32\logman.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159614.exe
.
Nakažená kopie c:\windows\system32\logoff.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159615.exe
.
Nakažená kopie c:\windows\system32\logonui.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159616.exe
.
Nakažená kopie c:\windows\system32\lpq.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159617.exe
.
Nakažená kopie c:\windows\system32\lpr.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159618.exe
.
Nakažená kopie c:\windows\system32\magnify.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159622.exe
.
Nakažená kopie c:\windows\system32\makecab.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159623.exe
.
Nakažená kopie c:\windows\system32\mmc.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159625.exe
.
Nakažená kopie c:\windows\system32\mmcperf.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159626.exe
.
Nakažená kopie c:\windows\system32\mnmsrvc.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159627.exe
.
Nakažená kopie c:\windows\system32\mobsync.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159628.exe
.
Nakažená kopie c:\windows\system32\mountvol.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159629.exe
.
Nakažená kopie c:\windows\system32\mplay32.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159630.exe
.
Nakažená kopie c:\windows\system32\mpnotify.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159631.exe
.
Nakažená kopie c:\windows\system32\mrinfo.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159632.exe
.
Nakažená kopie c:\windows\system32\msdtc.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159634.exe
.
Nakažená kopie c:\windows\system32\msg.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159636.exe
.
Nakažená kopie c:\windows\system32\mshearts.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159637.exe
.
Nakažená kopie c:\windows\system32\mshta.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159638.exe
.
Nakažená kopie c:\windows\system32\msiexec.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159639.exe
.
Nakažená kopie c:\windows\system32\mspaint.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159640.exe
.
Nakažená kopie c:\windows\system32\msswchx.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159641.exe
.
Nakažená kopie c:\windows\system32\mstinit.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159642.exe
.
Nakažená kopie c:\windows\system32\mstsc.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159643.exe
.
Nakažená kopie c:\windows\system32\napstat.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159644.exe
.
Nakažená kopie c:\windows\system32\narrator.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159645.exe
.
Nakažená kopie c:\windows\system32\nbtstat.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159646.exe
.
Nakažená kopie c:\windows\system32\nddeapir.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159647.exe
.
Nakažená kopie c:\windows\system32\net.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159648.exe
.
Nakažená kopie c:\windows\system32\net1.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159649.exe
.
Nakažená kopie c:\windows\system32\netdde.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159650.exe
.
Nakažená kopie c:\windows\system32\netsetup.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159651.exe
.
Nakažená kopie c:\windows\system32\netsh.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159652.exe
.
Nakažená kopie c:\windows\system32\netstat.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159653.exe
.
Nakažená kopie c:\windows\system32\nslookup.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159656.exe
.
Nakažená kopie c:\windows\system32\ntkrnlpa.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0158246.exe
.
Nakažená kopie c:\windows\system32\ntsd.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159658.exe
.
Nakažená kopie c:\windows\system32\ntvdm.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159659.exe
.
Nakažená kopie c:\windows\system32\odbcad32.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159666.exe
.
Nakažená kopie c:\windows\system32\odbcconf.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159667.exe
.
Nakažená kopie c:\windows\system32\osk.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159670.exe
.
Nakažená kopie c:\windows\system32\osuninst.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159671.exe
.
Nakažená kopie c:\windows\system32\packager.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159672.exe
.
Nakažená kopie c:\windows\system32\pathping.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159673.exe
.
Nakažená kopie c:\windows\system32\pentnt.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159675.exe
.
Nakažená kopie c:\windows\system32\perfmon.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159676.exe
.
Nakažená kopie c:\windows\system32\ping.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159677.exe
.
Nakažená kopie c:\windows\system32\ping6.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159678.exe
.
Nakažená kopie c:\windows\system32\powercfg.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159680.exe
.
Nakažená kopie c:\windows\system32\print.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159682.exe
.
Nakažená kopie c:\windows\system32\progman.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159683.exe
.
Nakažená kopie c:\windows\system32\proquota.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159684.exe
.
Nakažená kopie c:\windows\system32\proxycfg.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159685.exe
.
Nakažená kopie c:\windows\system32\qappsrv.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159686.exe
.
Nakažená kopie c:\windows\system32\qprocess.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159687.exe
.
Nakažená kopie c:\windows\system32\qwinsta.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159688.exe
.
Nakažená kopie c:\windows\system32\rasautou.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159689.exe
.
Nakažená kopie c:\windows\system32\rasdial.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159690.exe
.
Nakažená kopie c:\windows\system32\rasphone.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159691.exe
.
Nakažená kopie c:\windows\system32\rcimlby.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159692.exe
.
Nakažená kopie c:\windows\system32\rcp.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159693.exe
.
Nakažená kopie c:\windows\system32\rdpclip.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159694.exe
.
Nakažená kopie c:\windows\system32\rdsaddin.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159695.exe
.
Nakažená kopie c:\windows\system32\rdshost.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159696.exe
.
Nakažená kopie c:\windows\system32\recover.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159697.exe
.
Nakažená kopie c:\windows\system32\reg.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159698.exe
.
Nakažená kopie c:\windows\system32\regedt32.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159699.exe
.
Nakažená kopie c:\windows\system32\regini.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159700.exe
.
Nakažená kopie c:\windows\system32\regsvr32.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159701.exe
.
Nakažená kopie c:\windows\system32\regwiz.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159702.exe
.
Nakažená kopie c:\windows\system32\replace.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159703.exe
.
Nakažená kopie c:\windows\system32\reset.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159704.exe
.
Nakažená kopie c:\windows\system32\rexec.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159707.exe
.
Nakažená kopie c:\windows\system32\route.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159708.exe
.
Nakažená kopie c:\windows\system32\routemon.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159709.exe
.
Nakažená kopie c:\windows\system32\rsh.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159710.exe
.
Nakažená kopie c:\windows\system32\rsm.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159711.exe
.
Nakažená kopie c:\windows\system32\rsmsink.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159712.exe
.
Nakažená kopie c:\windows\system32\rsmui.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159713.exe
.
Nakažená kopie c:\windows\system32\rsvp.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159714.exe
.
Nakažená kopie c:\windows\system32\rtcshare.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159715.exe
.
Nakažená kopie c:\windows\system32\runas.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159716.exe
.
Nakažená kopie c:\windows\system32\runonce.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159717.exe
.
Nakažená kopie c:\windows\system32\rwinsta.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159718.exe
.
Nakažená kopie c:\windows\system32\savedump.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159719.exe
.
Nakažená kopie c:\windows\system32\sc.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159720.exe
.
Nakažená kopie c:\windows\system32\scardsvr.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159721.exe
.
Nakažená kopie c:\windows\system32\sdbinst.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159722.exe
.
Nakažená kopie c:\windows\system32\sessmgr.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159723.exe
.
Nakažená kopie c:\windows\system32\sethc.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159724.exe
.
Nakažená kopie c:\windows\system32\setup.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\windows\Installer\$PatchCache$\Managed\00002109110000000000000000F01FEC\12.0.4518\SETUP.EXE
.
Nakažená kopie c:\windows\system32\setupn.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159726.exe
.
Nakažená kopie c:\windows\system32\sfc.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159727.exe
.
Nakažená kopie c:\windows\system32\shadow.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159728.exe
.
Nakažená kopie c:\windows\system32\shmgrate.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159729.exe
.
Nakažená kopie c:\windows\system32\shrpubw.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159730.exe
.
Nakažená kopie c:\windows\system32\shutdown.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159731.exe
.
Nakažená kopie c:\windows\system32\sigverif.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159732.exe
.
Nakažená kopie c:\windows\system32\skeys.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159733.exe
.
Nakažená kopie c:\windows\system32\slserv.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159735.exe
.
Nakažená kopie c:\windows\system32\smbinst.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159736.exe
.
Nakažená kopie c:\windows\system32\smlogsvc.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159737.exe
.
Nakažená kopie c:\windows\system32\sndrec32.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159738.exe
.
Nakažená kopie c:\windows\system32\sndvol32.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159739.exe
.
Nakažená kopie c:\windows\system32\sol.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159740.exe
.
Nakažená kopie c:\windows\system32\sort.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159741.exe
.
Nakažená kopie c:\windows\system32\spider.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159743.exe
.
Nakažená kopie c:\windows\system32\spnpinst.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159744.exe
.
Nakažená kopie c:\windows\system32\sprestrt.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159746.exe
.
Nakažená kopie c:\windows\system32\stimon.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159749.exe
.
Nakažená kopie c:\windows\system32\subst.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159750.exe
.
Nakažená kopie c:\windows\system32\syncapp.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159751.exe
.
Nakažená kopie c:\windows\system32\syskey.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159752.exe
.
Nakažená kopie c:\windows\system32\sysocmgr.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159753.exe
.
Nakažená kopie c:\windows\system32\systray.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159754.exe
.
Nakažená kopie c:\windows\system32\taskmgr.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159756.exe
.
Nakažená kopie c:\windows\system32\tcmsetup.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159757.exe
.
Nakažená kopie c:\windows\system32\tcpsvcs.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159758.exe
.
Nakažená kopie c:\windows\system32\telnet.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159759.exe
.
Nakažená kopie c:\windows\system32\tftp.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159760.exe
.
Nakažená kopie c:\windows\system32\tourstart.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159761.exe
.
Nakažená kopie c:\windows\system32\tracert.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159762.exe
.
Nakažená kopie c:\windows\system32\tracert6.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159763.exe
.
Nakažená kopie c:\windows\system32\tscon.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159764.exe
.
Nakažená kopie c:\windows\system32\tsdiscon.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159766.exe
.
Nakažená kopie c:\windows\system32\tskill.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159767.exe
.
Nakažená kopie c:\windows\system32\tsshutdn.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159768.exe
.
Nakažená kopie c:\windows\system32\unlodctr.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159771.exe
.
Nakažená kopie c:\windows\system32\upnpcont.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159772.exe
.
Nakažená kopie c:\windows\system32\ups.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159773.exe
.
Nakažená kopie c:\windows\system32\userinit.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159774.exe
.
Nakažená kopie c:\windows\system32\usrmlnka.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159779.exe
.
Nakažená kopie c:\windows\system32\usrprbda.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159780.exe
.
Nakažená kopie c:\windows\system32\usrshuta.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159781.exe
.
Nakažená kopie c:\windows\system32\utilman.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159782.exe

Re: Restarty PC + nefunkční antiviry

Napsal: 30 srp 2011 18:54
od Michal Z.
Nakažená kopie c:\windows\system32\verifier.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159785.exe
.
Nakažená kopie c:\windows\system32\vssadmin.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159786.exe
.
Nakažená kopie c:\windows\system32\vssvc.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159787.exe
.
Nakažená kopie c:\windows\system32\w32tm.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159788.exe
.
Nakažená kopie c:\windows\system32\wextract.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159797.exe
.
Nakažená kopie c:\windows\system32\wiaacmgr.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159798.exe
.
Nakažená kopie c:\windows\system32\winchat.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159799.exe
.
Nakažená kopie c:\windows\system32\winmine.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159802.exe
.
Nakažená kopie c:\windows\system32\winmsd.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159803.exe
.
Nakažená kopie c:\windows\system32\winver.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159804.exe
.
Nakažená kopie c:\windows\system32\wpabaln.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159806.exe
.
Nakažená kopie c:\windows\system32\wpnpinst.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159808.exe
.
Nakažená kopie c:\windows\system32\write.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159809.exe
.
Nakažená kopie c:\windows\system32\wscntfy.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159810.exe
.
Nakažená kopie c:\windows\system32\wscript.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159811.exe
.
Nakažená kopie c:\windows\system32\wuauclt.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159812.exe
.
Nakažená kopie c:\windows\system32\wuauclt1.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159813.exe
.
Nakažená kopie c:\windows\system32\wupdmgr.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159815.exe
.
Nakažená kopie c:\windows\system32\xcopy.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159816.exe
.
Nakažená kopie c:\windows\system32\Com\comrepl.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159344.exe
.
Nakažená kopie c:\windows\system32\Com\comrereg.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159345.exe
.
Nakažená kopie c:\windows\system32\npp\nppagent.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159655.exe
.
Nakažená kopie c:\windows\system32\oobe\msoobe.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159668.exe
.
Nakažená kopie c:\windows\system32\oobe\oobebaln.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159669.exe
.
Nakažená kopie c:\windows\system32\Restore\rstrui.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159705.exe
.
Nakažená kopie c:\windows\system32\Restore\srdiag.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159706.exe
.
Nakažená kopie c:\windows\system32\usmt\migload.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159775.exe
.
Nakažená kopie c:\windows\system32\usmt\migwiz.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159776.exe
.
Nakažená kopie c:\windows\system32\usmt\migwiza.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159777.exe
.
Nakažená kopie c:\windows\system32\wbem\mofcomp.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159789.exe
.
Nakažená kopie c:\windows\system32\wbem\scrcons.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159790.exe
.
Nakažená kopie c:\windows\system32\wbem\unsecapp.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159791.exe
.
Nakažená kopie c:\windows\system32\wbem\wbemtest.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159792.exe
.
Nakažená kopie c:\windows\system32\wbem\winmgmt.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159793.exe
.
Nakažená kopie c:\windows\system32\wbem\wmiadap.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159794.exe
.
Nakažená kopie c:\windows\system32\wbem\wmiapsrv.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\system volume information\_restore{801AB7D1-A98E-4699-91E1-3C9E8FAF37B8}\RP649\A0159795.exe
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_GUPDATE
-------\Legacy_JFDCD
-------\Legacy_SRVPELE
-------\Service_gupdate
-------\Service_gupdatem
-------\Service_jfdcd
-------\Service_srvpele
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-07-28 do 2011-08-30 )))))))))))))))))))))))))))))))
.
.
2011-08-29 18:43 . 2011-08-29 18:43 -------- d-----w- c:\program files\trend micro
2011-08-29 18:43 . 2011-08-29 18:43 -------- d-----w- C:\rsit
2011-08-29 18:26 . 2011-08-29 18:26 -------- d-----w- c:\documents and settings\Kostkova\Data aplikací\Malwarebytes
2011-08-29 18:26 . 2011-08-29 18:26 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Malwarebytes
2011-08-29 18:26 . 2011-07-06 17:52 41272 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-08-29 18:25 . 2011-08-29 19:23 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-08-29 18:25 . 2011-07-06 17:52 22712 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-08-29 18:10 . 2011-08-29 18:10 -------- d-----w- c:\program files\CCleaner
2011-08-29 17:57 . 2011-07-04 11:36 309848 ----a-w- c:\windows\system32\drivers\aswSP.sys
2011-08-29 17:57 . 2011-07-04 11:32 19544 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2011-08-29 17:57 . 2011-07-04 11:36 441176 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2011-08-29 17:57 . 2011-07-04 11:35 43608 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2011-08-29 17:57 . 2011-07-04 11:35 102616 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2011-08-29 17:57 . 2011-07-04 11:35 96344 ----a-w- c:\windows\system32\drivers\aswmon.sys
2011-08-29 17:57 . 2011-07-04 11:32 25432 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2011-08-29 17:57 . 2011-07-04 11:32 30808 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2011-08-29 17:57 . 2011-08-30 06:09 193024 ----a-w- c:\windows\system32\aswBoot.exe
2011-08-29 17:57 . 2011-07-04 11:43 40112 ----a-w- c:\windows\avastSS.scr
2011-08-11 09:29 . 2011-06-24 14:10 139656 -c----w- c:\windows\system32\dllcache\rdpwd.sys
2011-08-11 09:29 . 2011-07-08 14:02 10496 -c----w- c:\windows\system32\dllcache\ndistapi.sys
2011-08-09 17:50 . 2011-08-09 17:51 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Skype Extras
2011-08-09 17:50 . 2011-08-09 17:50 -------- d-----w- c:\program files\Common Files\Skype
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-08-30 06:11 . 2009-08-25 11:33 294912 -c--a-w- c:\windows\vncutil.exe
2011-08-30 06:11 . 2007-06-26 12:12 970752 ----a-w- c:\windows\UNNeroVision.exe
2011-08-30 06:11 . 2007-04-23 14:42 970752 ----a-w- c:\windows\UNRecode.exe
2011-08-30 06:11 . 2007-02-28 14:41 970752 ----a-w- c:\windows\UNNeroShowTime.exe
2011-08-30 06:11 . 2009-09-01 03:08 520192 ----a-w- c:\windows\UN32.EXE
2011-08-30 06:11 . 2007-06-27 17:05 970752 ----a-w- c:\windows\UNNeroMediaHome.exe
2011-08-30 06:11 . 2007-03-20 19:22 970752 ----a-w- c:\windows\UNNeroBackItUp.exe
2011-08-30 06:11 . 2006-09-28 16:56 150528 ----a-w- c:\windows\system32\WudfHost.exe
2011-08-30 06:11 . 2006-10-18 18:00 20992 ----a-w- c:\windows\system32\wpdshextautoplay.exe
2011-08-30 06:11 . 2006-10-26 11:45 296960 ----a-w- c:\windows\system32\WISPTIS.EXE
2011-08-30 06:11 . 2006-03-02 12:00 11776 ----a-w- c:\windows\system32\winhlp32.exe
2011-08-30 06:11 . 2004-08-10 23:45 12288 ----a-w- c:\windows\system32\wdfmgr.exe
2011-08-30 06:11 . 2008-04-14 03:22 32768 ----a-w- c:\windows\system32\verclsid.exe
2011-08-30 06:11 . 2004-08-10 23:45 12288 ----a-w- c:\windows\system32\uwdf.exe
2011-08-30 06:11 . 2009-08-25 11:16 48128 ----a-w- c:\windows\system32\tscupgrd.exe
2011-08-30 06:11 . 2008-07-29 19:10 20480 ----a-w- c:\windows\system32\TsWpfWrp.exe
2011-08-30 06:11 . 2006-03-02 12:00 18944 ----a-w- c:\windows\system32\taskman.exe
2011-08-30 06:11 . 2009-08-25 11:33 20992 ----a-w- c:\windows\system32\spupdsvc.exe
2011-08-30 06:11 . 2008-04-14 03:22 25088 ----a-w- c:\windows\system32\spupdwxp.exe
2011-08-30 06:11 . 2010-07-28 11:55 601088 -c--a-w- c:\windows\system32\Spool\prtprocs\w32x86\printfilterpipelinesvc.exe
2011-08-30 06:11 . 2008-04-14 03:22 11776 ----a-w- c:\windows\system32\spdwnwxp.exe
2011-08-30 06:11 . 2008-04-14 03:22 36864 ----a-w- c:\windows\system32\slrundll.exe
2011-08-30 06:11 . 2010-03-30 22:10 292864 ----a-w- c:\windows\system32\PresentationHost.exe
2011-08-30 06:11 . 2010-12-26 14:18 676864 ----a-w- c:\windows\system32\pbsvc.exe
2011-08-30 06:11 . 2010-12-26 14:18 1187840 ----a-w- c:\windows\system32\PnkBstrB.exe
2011-08-30 06:10 . 2009-08-25 11:28 483328 ----a-w- c:\windows\system32\nvudisp.exe
2011-08-30 06:10 . 2009-08-25 11:26 212992 ----a-w- c:\windows\system32\nvuide.exe
2011-08-30 06:10 . 2009-08-25 11:26 212992 ----a-w- c:\windows\system32\nvunrm.exe
2011-08-30 06:10 . 2009-08-25 11:26 483328 ----a-w- c:\windows\system32\NVUNINST.EXE
2011-08-30 06:10 . 2009-08-17 01:04 2170880 ----a-w- c:\windows\system32\nvcplui.exe
2011-08-30 06:10 . 2009-08-17 01:03 147456 ----a-w- c:\windows\system32\nvcolor.exe
2011-08-30 06:10 . 2006-03-02 12:00 73216 ----a-w- c:\windows\system32\notepad.exe
2011-08-30 06:10 . 2006-03-02 12:00 55808 ----a-w- c:\windows\system32\migpwd.exe
2011-08-30 06:10 . 2008-07-29 17:24 616448 ----a-w- c:\windows\system32\icardagt.exe
2011-08-30 06:10 . 2005-01-07 15:07 65536 ----a-w- c:\windows\system32\HdAShCut.exe
2011-08-30 06:10 . 2008-04-14 03:22 25088 ----a-w- c:\windows\system32\faxpatch.exe
2011-08-30 06:10 . 2010-02-24 00:22 50176 ----a-w- c:\windows\system32\dxdllreg.exe
2011-08-30 06:10 . 2006-10-18 18:00 253440 ----a-w- c:\windows\system32\drmupgds.exe
2011-08-30 06:09 . 2006-03-02 12:00 24576 ----a-w- c:\windows\system32\cliconfg.exe
2011-08-30 06:09 . 2010-04-20 20:43 296960 ----a-w- c:\windows\system32\browserchoice.exe
2011-08-30 06:09 . 2009-08-25 11:33 81920 -c--a-w- c:\windows\SOUNDMAN.EXE
2011-08-30 06:09 . 2009-08-25 11:33 1830912 -c--a-w- c:\windows\SkyTel.exe
2011-08-30 06:08 . 2009-08-25 11:33 9720832 -c--a-w- c:\windows\RTLCPL.EXE
2011-08-30 06:08 . 2009-08-25 11:33 1486848 -c--a-w- c:\windows\RtlUpd.exe
2011-08-30 06:08 . 2009-08-25 11:33 126976 -c--a-w- c:\windows\RtkAudioService.exe
2011-08-30 06:08 . 2009-08-25 11:33 2172928 -c--a-w- c:\windows\MicCal.exe
2011-08-30 06:07 . 2010-05-09 09:29 310272 ----a-w- c:\windows\IsUninst.exe
2011-08-30 06:05 . 2009-08-25 11:33 61440 -c--a-w- c:\windows\ALCMTR.EXE
2011-08-30 06:05 . 2009-08-25 11:33 2814976 -c--a-w- c:\windows\ALCWZRD.EXE
2011-07-15 13:29 . 2006-03-02 12:00 456320 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2011-07-08 14:02 . 2006-03-02 12:00 10496 ----a-w- c:\windows\system32\drivers\ndistapi.sys
2011-06-24 14:10 . 2009-08-25 11:16 139656 ----a-w- c:\windows\system32\drivers\rdpwd.sys
2011-06-23 18:31 . 2006-03-02 12:00 916480 ----a-w- c:\windows\system32\wininet.dll
2011-06-23 18:31 . 2006-03-02 12:00 43520 ------w- c:\windows\system32\licmgr10.dll
2011-06-23 18:31 . 2006-03-02 12:00 1469440 ------w- c:\windows\system32\inetcpl.cpl
2011-06-23 12:05 . 2006-03-02 12:00 385024 ----a-w- c:\windows\system32\html.iec
2011-06-20 17:44 . 2006-03-02 12:00 293376 ----a-w- c:\windows\system32\winsrv.dll
2011-06-06 11:35 . 2006-03-02 12:00 1858944 ----a-w- c:\windows\system32\win32k.sys
2011-07-09 11:43 . 2011-04-28 08:19 142296 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
2009-10-19 17:59 . 2010-01-30 17:27 47104 ----a-w- c:\program files\mozilla firefox\components\FFComm.dll
.
.
------- Sigcheck -------
Note: Unsigned files aren't necessarily malware.
.
[-] 2011-08-30 . B7D3C4A5CE3B5F714BF05EFD3EC455A9 . 636416 . . [8.00.6001.18702] . . c:\windows\system32\dllcache\iexplore.exe
[-] 2011-08-30 . 0143820D85136BE35285095061C4FB8B . 96768 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\iexplore.exe
[-] 2011-08-30 . 0143820D85136BE35285095061C4FB8B . 96768 . . [6.00.2900.5512] . . c:\windows\ie8\iexplore.exe
[-] 2011-08-30 . B7D3C4A5CE3B5F714BF05EFD3EC455A9 . 636416 . . [8.00.6001.18702] . . c:\windows\ERDNT\cache\iexplore.exe
[-] 2011-08-30 . E058F28D6B3AB9A41719E4D6413D534D . 96768 . . [6.00.2900.2180] . . c:\windows\$NtServicePackUninstall$\iexplore.exe
.
[-] 2011-08-30 06:06 . 86B74160E851E24BAF69DCB0D942658D . 921600 . . [5.0] . . c:\windows\ERDNT\cache\firefox.exe
.
((((((((((((((((((((((((((((( SnapShot@2011-08-29_19.54.43 )))))))))))))))))))))))))))))))))))))))))
.
+ 2011-08-30 16:54 . 2011-08-30 16:54 16384 c:\windows\temp\Perflib_Perfdata_234.dat
+ 2008-10-22 09:47 . 2011-08-30 06:11 49664 c:\windows\system32\tzchange.exe
+ 2009-03-08 03:31 . 2011-08-30 06:10 16896 c:\windows\system32\msfeedssync.exe
+ 2009-12-01 15:31 . 2011-08-30 06:10 82432 c:\windows\system32\Macromed\Flash\uninstall_plugin.exe
+ 2009-08-25 13:33 . 2011-08-30 06:10 82432 c:\windows\system32\Macromed\Flash\uninstall_activeX.exe
+ 2009-03-08 03:32 . 2011-08-30 06:10 40960 c:\windows\system32\ieudinit.exe
+ 2009-08-25 11:16 . 2011-08-30 06:10 40448 c:\windows\system32\dllcache\zclientm.exe
+ 2009-08-25 11:18 . 2011-08-30 06:10 67584 c:\windows\system32\dllcache\wmplayer.exe
+ 2006-03-02 12:00 . 2011-08-30 06:10 11776 c:\windows\system32\dllcache\winhstb.exe
+ 2009-08-25 11:18 . 2011-08-30 06:10 16384 c:\windows\system32\dllcache\wb32.exe
+ 2010-12-15 13:50 . 2011-08-30 06:10 49152 c:\windows\system32\dllcache\wab.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 17920 c:\windows\system32\dllcache\tsprof.exe
+ 2009-08-25 11:16 . 2011-08-30 06:10 48128 c:\windows\system32\dllcache\tscupgrd.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 47616 c:\windows\system32\dllcache\tintlphr.exe
+ 2010-08-17 13:17 . 2011-08-30 06:10 62464 c:\windows\system32\dllcache\spoolsv.exe
+ 2009-08-25 11:17 . 2011-08-30 06:10 46080 c:\windows\system32\dllcache\shvlzm.exe
+ 2009-08-25 13:08 . 2011-08-30 06:10 40960 c:\windows\system32\dllcache\sapisvr.exe
+ 2009-08-25 11:17 . 2011-08-30 06:10 46080 c:\windows\system32\dllcache\rvsezm.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 18432 c:\windows\system32\dllcache\register.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 20480 c:\windows\system32\dllcache\quser.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 13312 c:\windows\system32\dllcache\query.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 74240 c:\windows\system32\dllcache\pintlphr.exe
+ 2009-08-25 11:18 . 2011-08-30 06:10 44544 c:\windows\system32\dllcache\msinfo32.exe
+ 2006-03-02 12:00 . 2011-08-30 06:10 38400 c:\windows\system32\dllcache\migisol.exe
+ 2009-08-25 11:18 . 2011-08-30 06:10 20480 c:\windows\system32\dllcache\isignup.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 71168 c:\windows\system32\dllcache\imscinst.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 63488 c:\windows\system32\dllcache\imkrinst.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 49152 c:\windows\system32\dllcache\imjpuex.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 61440 c:\windows\system32\dllcache\imjpdadm.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 47616 c:\windows\system32\dllcache\imekrmig.exe
+ 2009-08-25 11:18 . 2011-08-30 06:10 73728 c:\windows\system32\dllcache\icwtutor.exe
- 2009-08-25 11:18 . 2006-03-02 12:00 73728 c:\windows\system32\dllcache\icwtutor.exe
+ 2009-08-25 11:17 . 2011-08-30 06:10 46080 c:\windows\system32\dllcache\chkrzm.exe
+ 2009-08-25 11:20 . 2011-08-30 06:10 18432 c:\windows\system32\dllcache\chgusr.exe
+ 2009-08-25 11:20 . 2011-08-30 06:10 19456 c:\windows\system32\dllcache\chgport.exe
+ 2009-08-25 11:20 . 2011-08-30 06:10 17408 c:\windows\system32\dllcache\chglogon.exe
+ 2009-08-25 11:20 . 2011-08-30 06:10 13312 c:\windows\system32\dllcache\change.exe
+ 2009-08-25 11:17 . 2011-08-30 06:10 46080 c:\windows\system32\dllcache\hrtzzm.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 15360 c:\windows\system32\dllcache\fxssend.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 18432 c:\windows\system32\dllcache\flattemp.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 26624 c:\windows\system32\dllcache\EXCH_regtrace.exe
+ 2010-02-24 00:22 . 2011-08-30 06:10 84480 c:\windows\system32\dllcache\dpvsetup.exe
+ 2010-02-24 00:22 . 2011-08-30 06:10 20992 c:\windows\system32\dllcache\dpnsvr.exe
+ 2010-02-24 00:22 . 2011-08-30 06:10 32256 c:\windows\system32\dllcache\dplaysvr.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 23040 c:\windows\system32\dllcache\cprofile.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 61440 c:\windows\system32\dllcache\cplexe.exe
+ 2009-08-25 11:18 . 2011-08-30 06:10 16384 c:\windows\system32\dllcache\cb32.exe
+ 2009-08-25 11:17 . 2011-08-30 06:10 46080 c:\windows\system32\dllcache\bckgzm.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 34816 c:\windows\ServicePackFiles\i386\xcopy.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 17408 c:\windows\ServicePackFiles\i386\wscntfy.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 15360 c:\windows\ServicePackFiles\i386\wpnpinst.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 35840 c:\windows\ServicePackFiles\i386\wpabaln.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 68608 c:\windows\ServicePackFiles\i386\wextract.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 33792 c:\windows\ServicePackFiles\i386\wabmig.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 49664 c:\windows\ServicePackFiles\i386\wab.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 32768 c:\windows\ServicePackFiles\i386\verclsid.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 53760 c:\windows\ServicePackFiles\i386\utilman.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 29696 c:\windows\ServicePackFiles\i386\userinit.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 22528 c:\windows\ServicePackFiles\i386\ups.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 20480 c:\windows\ServicePackFiles\i386\upnpcont.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 64000 c:\windows\ServicePackFiles\i386\tzchange.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 16896 c:\windows\ServicePackFiles\i386\tracert.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 86528 c:\windows\ServicePackFiles\i386\tp4mon.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 81408 c:\windows\ServicePackFiles\i386\telnet.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 32768 c:\windows\ServicePackFiles\i386\tcptest.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 17920 c:\windows\ServicePackFiles\i386\svchost.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 69632 c:\windows\ServicePackFiles\i386\stub_fpsrvwin.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 20480 c:\windows\ServicePackFiles\i386\stub_fpsrvadm.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 18432 c:\windows\ServicePackFiles\i386\stimon.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 25088 c:\windows\ServicePackFiles\i386\spupdwxp.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 61440 c:\windows\ServicePackFiles\i386\spoolsv.exe
+ 2009-08-30 13:22 . 2011-08-30 06:09 15360 c:\windows\ServicePackFiles\i386\spnpinst.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 11776 c:\windows\ServicePackFiles\i386\spdwnwxp.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 29184 c:\windows\ServicePackFiles\i386\sort.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 12800 c:\windows\ServicePackFiles\i386\snmptrap.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 36352 c:\windows\ServicePackFiles\i386\snmp.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 54784 c:\windows\ServicePackFiles\i386\smss.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 93696 c:\windows\ServicePackFiles\i386\smlogsvc.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 11776 c:\windows\ServicePackFiles\i386\smbinst.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 77824 c:\windows\ServicePackFiles\i386\slserv.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 36864 c:\windows\ServicePackFiles\i386\slrundll.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 30208 c:\windows\ServicePackFiles\i386\skeys.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 74240 c:\windows\ServicePackFiles\i386\sigverif.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 23552 c:\windows\ServicePackFiles\i386\shutdown.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 20480 c:\windows\ServicePackFiles\i386\shtml.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 81408 c:\windows\ServicePackFiles\i386\shrpubw.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 48640 c:\windows\ServicePackFiles\i386\shmgrate.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 36864 c:\windows\ServicePackFiles\i386\setupn.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 77312 c:\windows\ServicePackFiles\i386\setup50.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 26624 c:\windows\ServicePackFiles\i386\setup.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 36352 c:\windows\ServicePackFiles\i386\sethc.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 81408 c:\windows\ServicePackFiles\i386\sdbinst.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 40448 c:\windows\ServicePackFiles\i386\scrcons.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 16896 c:\windows\ServicePackFiles\i386\savedump.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 17920 c:\windows\ServicePackFiles\i386\runonce.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 36864 c:\windows\ServicePackFiles\i386\rundll32.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 80896 c:\windows\ServicePackFiles\i386\rtcshare.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 18944 c:\windows\ServicePackFiles\i386\rsh.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 17920 c:\windows\ServicePackFiles\i386\rexec.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 15872 c:\windows\ServicePackFiles\i386\regsvr32.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 58880 c:\windows\ServicePackFiles\i386\reg.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 70656 c:\windows\ServicePackFiles\i386\rdshost.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 17408 c:\windows\ServicePackFiles\i386\rdsaddin.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 67072 c:\windows\ServicePackFiles\i386\rdpclip.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 26112 c:\windows\ServicePackFiles\i386\rcp.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 39424 c:\windows\ServicePackFiles\i386\rcimlby.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 60416 c:\windows\ServicePackFiles\i386\rasphone.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 24064 c:\windows\ServicePackFiles\i386\qprocess.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 13312 c:\windows\ServicePackFiles\i386\proxycfg.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 54272 c:\windows\ServicePackFiles\i386\proquota.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 52736 c:\windows\ServicePackFiles\i386\powercfg.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 22528 c:\windows\ServicePackFiles\i386\ping.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 19456 c:\windows\ServicePackFiles\i386\perfmon.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 61952 c:\windows\ServicePackFiles\i386\packager.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 55296 c:\windows\ServicePackFiles\i386\oobebaln.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 64000 c:\windows\ServicePackFiles\i386\oemig50.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 73728 c:\windows\ServicePackFiles\i386\odbcconf.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 36864 c:\windows\ServicePackFiles\i386\odbcad32.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 82944 c:\windows\ServicePackFiles\i386\nslookup.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 18944 c:\windows\ServicePackFiles\i386\nppagent.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 73216 c:\windows\ServicePackFiles\i386\notepad.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 40960 c:\windows\ServicePackFiles\i386\netstat.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 89600 c:\windows\ServicePackFiles\i386\netsh.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 46592 c:\windows\ServicePackFiles\i386\net.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 58368 c:\windows\ServicePackFiles\i386\narrator.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 15872 c:\windows\ServicePackFiles\i386\mstinit.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 32768 c:\windows\ServicePackFiles\i386\msoobe.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 44544 c:\windows\ServicePackFiles\i386\msiregmv.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 64512 c:\windows\ServicePackFiles\i386\msimn.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 82432 c:\windows\ServicePackFiles\i386\msiexec.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 33280 c:\windows\ServicePackFiles\i386\mshta.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 20480 c:\windows\ServicePackFiles\i386\mofcomp.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 36864 c:\windows\ServicePackFiles\i386\mnmsrvc.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 37376 c:\windows\ServicePackFiles\i386\mmcperf.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 11264 c:\windows\ServicePackFiles\i386\migregdb.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 61440 c:\windows\ServicePackFiles\i386\makecab.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 76800 c:\windows\ServicePackFiles\i386\magnify.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 16896 c:\windows\ServicePackFiles\i386\lsass.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 64000 c:\windows\ServicePackFiles\i386\logman.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 79360 c:\windows\ServicePackFiles\i386\locator.exe
+ 2009-08-30 13:21 . 2011-08-30 06:09 47616 c:\windows\ServicePackFiles\i386\lang\tintlphr.exe
+ 2008-04-13 16:43 . 2011-08-30 06:09 74240 c:\windows\ServicePackFiles\i386\lang\pintlphr.exe
+ 2009-08-30 13:21 . 2011-08-30 06:09 71168 c:\windows\ServicePackFiles\i386\lang\imscinst.exe
+ 2009-08-30 13:21 . 2011-08-30 06:09 61440 c:\windows\ServicePackFiles\i386\lang\cplexe.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 27648 c:\windows\ServicePackFiles\i386\ipxroute.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 57344 c:\windows\ServicePackFiles\i386\ipv6.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 60416 c:\windows\ServicePackFiles\i386\ipconfig.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 24576 c:\windows\ServicePackFiles\i386\inetwiz.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 22016 c:\windows\ServicePackFiles\i386\iedw.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 37888 c:\windows\ServicePackFiles\i386\ie4uinit.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 28672 c:\windows\ServicePackFiles\i386\icwrmind.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 90112 c:\windows\ServicePackFiles\i386\icwconn2.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 22528 c:\windows\ServicePackFiles\i386\hscupd.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 14336 c:\windows\ServicePackFiles\i386\hh.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 18944 c:\windows\ServicePackFiles\i386\help.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 43008 c:\windows\ServicePackFiles\i386\grpconv.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 48128 c:\windows\ServicePackFiles\i386\ftp.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 32768 c:\windows\ServicePackFiles\i386\fpsrvadm.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 24576 c:\windows\ServicePackFiles\i386\fpremadm.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 28672 c:\windows\ServicePackFiles\i386\fpadmcgi.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 18432 c:\windows\ServicePackFiles\i386\fp98sadm.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 11264 c:\windows\ServicePackFiles\i386\forcedos.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 25088 c:\windows\ServicePackFiles\i386\fontview.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 27136 c:\windows\ServicePackFiles\i386\fltmc.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 31232 c:\windows\ServicePackFiles\i386\findstr.exe

Re: Restarty PC + nefunkční antiviry

Napsal: 30 srp 2011 18:57
od Michal Z.
+ 2008-04-14 03:22 . 2011-08-30 06:09 25088 c:\windows\ServicePackFiles\i386\faxpatch.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 27648 c:\windows\ServicePackFiles\i386\extrac32.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 95744 c:\windows\ServicePackFiles\i386\evntwin.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 29184 c:\windows\ServicePackFiles\i386\evntcmd.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 21504 c:\windows\ServicePackFiles\i386\dvdupgrd.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 14336 c:\windows\ServicePackFiles\i386\dumprep.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 87040 c:\windows\ServicePackFiles\i386\dpvsetup.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 22016 c:\windows\ServicePackFiles\i386\dpnsvr.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 33792 c:\windows\ServicePackFiles\i386\dplaysvr.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 19456 c:\windows\ServicePackFiles\i386\dmremote.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 91136 c:\windows\ServicePackFiles\i386\diantz.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 86528 c:\windows\ServicePackFiles\i386\dfrgfat.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 28672 c:\windows\ServicePackFiles\i386\defrag.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 35328 c:\windows\ServicePackFiles\i386\ddeshare.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 18944 c:\windows\ServicePackFiles\i386\ctfmon.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 31232 c:\windows\ServicePackFiles\i386\conime.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 13312 c:\windows\ServicePackFiles\i386\comrepl.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 67072 c:\windows\ServicePackFiles\i386\cmstp.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 43008 c:\windows\ServicePackFiles\i386\cmmon32.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 29184 c:\windows\ServicePackFiles\i386\cmdl32.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 37376 c:\windows\ServicePackFiles\i386\clipsrv.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 24576 c:\windows\ServicePackFiles\i386\cliconfg.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 68096 c:\windows\ServicePackFiles\i386\cleanmgr.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 24064 c:\windows\ServicePackFiles\i386\cacls.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 75776 c:\windows\ServicePackFiles\i386\blastcln.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 14848 c:\windows\ServicePackFiles\i386\autolfn.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 20480 c:\windows\ServicePackFiles\i386\author.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 18432 c:\windows\ServicePackFiles\i386\auditusr.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 16384 c:\windows\ServicePackFiles\i386\attrib.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 14848 c:\windows\ServicePackFiles\i386\atmadm.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 28672 c:\windows\ServicePackFiles\i386\at.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 48128 c:\windows\ServicePackFiles\i386\alg.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 20480 c:\windows\ServicePackFiles\i386\admin.exe
+ 2009-10-24 13:27 . 2011-08-30 06:08 43008 c:\windows\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\wdfmgr.exe
+ 2009-10-24 13:27 . 2011-08-30 06:08 50688 c:\windows\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\uwdf.exe
+ 2010-02-24 00:22 . 2011-08-30 06:08 50176 c:\windows\RegisteredPackages\{44BBA855-CC51-11CF-AAFA-00AA00B6015C}\dxdllreg.exe
+ 2010-02-24 00:22 . 2011-08-30 06:08 84480 c:\windows\RegisteredPackages\{44BBA855-CC51-11CF-AAFA-00AA00B6015C}\dpvsetup.exe
+ 2010-02-24 00:22 . 2011-08-30 06:08 20992 c:\windows\RegisteredPackages\{44BBA855-CC51-11CF-AAFA-00AA00B6015C}\dpnsvr.exe
+ 2010-02-24 00:22 . 2011-08-30 06:08 32256 c:\windows\RegisteredPackages\{44BBA855-CC51-11CF-AAFA-00AA00B6015C}\dplaysvr.exe
+ 2008-07-29 21:40 . 2011-08-30 06:08 81920 c:\windows\Microsoft.NET\Framework\v3.5\MSBuild.exe
+ 2008-07-29 16:47 . 2011-08-30 06:08 91648 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\DeleteTemp.exe
+ 2008-09-26 03:07 . 2011-08-30 06:08 91648 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - csy\DeleteTemp.exe
+ 2008-07-29 21:40 . 2011-08-30 06:08 86016 c:\windows\Microsoft.NET\Framework\v3.5\EdmGen.exe
+ 2008-07-29 21:40 . 2011-08-30 06:08 69632 c:\windows\Microsoft.NET\Framework\v3.5\DataSvcUtil.exe
+ 2008-09-26 15:43 . 2011-08-30 06:08 36864 c:\windows\Microsoft.NET\Framework\v3.5\cs\MSBuild.resources.exe
+ 2008-07-29 21:40 . 2011-08-30 06:08 32768 c:\windows\Microsoft.NET\Framework\v3.5\AddInUtil.exe
+ 2008-07-29 21:40 . 2011-08-30 06:08 32768 c:\windows\Microsoft.NET\Framework\v3.5\AddInProcess32.exe
+ 2008-07-29 21:40 . 2011-08-30 06:08 32768 c:\windows\Microsoft.NET\Framework\v3.5\AddInProcess.exe
+ 2008-07-29 19:10 . 2011-08-30 06:08 36864 c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
+ 2008-07-29 17:32 . 2011-08-30 06:08 11776 c:\windows\Microsoft.NET\Framework\v3.0\Windows Workflow Foundation\PerformanceCounterInstaller.exe
+ 2008-07-25 09:17 . 2011-08-30 06:08 56832 c:\windows\Microsoft.NET\Framework\v2.0.50727\regtlibv12.exe
- 2008-07-25 09:17 . 2008-07-25 09:17 32768 c:\windows\Microsoft.NET\Framework\v2.0.50727\RegSvcs.exe
+ 2008-07-25 09:17 . 2011-08-30 06:08 32768 c:\windows\Microsoft.NET\Framework\v2.0.50727\RegSvcs.exe
- 2008-07-25 09:17 . 2008-07-25 09:17 53248 c:\windows\Microsoft.NET\Framework\v2.0.50727\RegAsm.exe
+ 2008-07-25 09:17 . 2011-08-30 06:08 53248 c:\windows\Microsoft.NET\Framework\v2.0.50727\RegAsm.exe
+ 2008-07-25 09:17 . 2011-08-30 06:08 95232 c:\windows\Microsoft.NET\Framework\v2.0.50727\ngen.exe
+ 2008-07-25 09:17 . 2011-08-30 06:08 64000 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
+ 2008-07-25 09:16 . 2011-08-30 06:08 69632 c:\windows\Microsoft.NET\Framework\v2.0.50727\MSBuild.exe
- 2008-07-25 09:16 . 2008-07-25 09:16 69632 c:\windows\Microsoft.NET\Framework\v2.0.50727\MSBuild.exe
- 2008-07-25 09:16 . 2008-07-25 09:16 40960 c:\windows\Microsoft.NET\Framework\v2.0.50727\jsc.exe
+ 2008-07-25 09:16 . 2011-08-30 06:08 40960 c:\windows\Microsoft.NET\Framework\v2.0.50727\jsc.exe
- 2008-07-25 09:17 . 2008-07-25 09:17 28672 c:\windows\Microsoft.NET\Framework\v2.0.50727\InstallUtil.exe
+ 2008-07-25 09:17 . 2011-08-30 06:08 28672 c:\windows\Microsoft.NET\Framework\v2.0.50727\InstallUtil.exe
+ 2008-07-25 09:17 . 2011-08-30 06:08 13312 c:\windows\Microsoft.NET\Framework\v2.0.50727\IEExec.exe
+ 2008-07-25 09:16 . 2011-08-30 06:08 29696 c:\windows\Microsoft.NET\Framework\v2.0.50727\cvtres.exe
+ 2008-07-25 09:16 . 2011-08-30 06:08 74752 c:\windows\Microsoft.NET\Framework\v2.0.50727\csc.exe
+ 2010-09-22 07:43 . 2011-08-30 06:08 28160 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_wp.exe
+ 2008-07-25 09:16 . 2011-08-30 06:08 28672 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
+ 2008-07-25 09:16 . 2011-08-30 06:08 27648 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regiis.exe
+ 2008-07-25 09:16 . 2011-08-30 06:08 24576 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regbrowsers.exe
- 2008-07-25 09:16 . 2008-07-25 09:16 24576 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regbrowsers.exe
- 2008-07-25 09:16 . 2008-07-25 09:16 36864 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_compiler.exe
+ 2008-07-25 09:16 . 2011-08-30 06:08 36864 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_compiler.exe
+ 2008-07-25 09:17 . 2011-08-30 06:08 53248 c:\windows\Microsoft.NET\Framework\v2.0.50727\AppLaunch.exe
+ 2009-11-06 23:07 . 2011-08-30 06:08 84480 c:\windows\Microsoft.NET\Framework\NETFXSBS10.exe
+ 2010-11-03 05:47 . 2011-08-30 06:06 33280 c:\windows\ie8\mshta.exe
+ 2010-11-03 05:47 . 2011-08-30 06:06 37888 c:\windows\ie8\ie4uinit.exe
+ 2009-07-17 18:12 . 2011-08-30 06:06 82432 c:\windows\Downloaded Program Files\FP_AX_CAB_INSTALLER.exe
+ 2011-08-12 09:27 . 2011-08-30 06:06 50688 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFontCac#\40ee65aacd9d7472cd6f8dddbfca604b\PresentationFontCache.ni.exe
+ 2011-07-09 10:56 . 2011-08-30 06:06 17920 c:\windows\assembly\NativeImages_v2.0.50727_32\dfsvc\c40d3caad8bff3c52db7e7562286406a\dfsvc.ni.exe
+ 2010-07-28 11:56 . 2011-08-30 06:06 36864 c:\windows\assembly\GAC_MSIL\PresentationFontCache\3.0.0.0__31bf3856ad364e35\PresentationFontCache.exe
+ 2010-07-28 09:16 . 2011-08-30 06:05 77824 c:\windows\$NtUninstallwmp11$\wmplayer.exe
+ 2010-07-28 09:15 . 2011-08-30 06:05 43008 c:\windows\$NtUninstallWMFDist11$\wdfmgr.exe
+ 2010-07-28 09:15 . 2011-08-30 06:05 50688 c:\windows\$NtUninstallWMFDist11$\uwdf.exe
+ 2010-05-27 04:14 . 2011-08-30 06:05 49664 c:\windows\$NtUninstallKB981793$\tzchange.exe
+ 2010-02-25 01:03 . 2011-08-30 06:05 49664 c:\windows\$NtUninstallKB979306$\tzchange.exe
+ 2009-11-26 01:41 . 2011-08-30 06:05 49664 c:\windows\$NtUninstallKB976098-v2$\tzchange.exe
+ 2009-10-14 22:08 . 2011-08-30 06:05 22016 c:\windows\$NtUninstallKB974455_0$\iedw.exe
+ 2009-08-26 09:06 . 2011-08-30 06:05 22016 c:\windows\$NtUninstallKB972260_0$\iedw.exe
+ 2009-08-26 22:04 . 2011-08-30 06:05 66560 c:\windows\$NtUninstallKB970653-v3$\tzchange.exe
+ 2009-08-26 09:06 . 2011-08-30 06:05 80896 c:\windows\$NtUninstallKB960859_0$\telnet.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 81408 c:\windows\$NtUninstallKB960859$\telnet.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 34816 c:\windows\$NtUninstallKB956572_0$\sc.exe
+ 2009-11-29 16:54 . 2011-08-30 06:05 38912 c:\windows\$NtUninstallKB956572$\sc.exe
+ 2010-12-15 22:11 . 2011-08-30 06:04 49664 c:\windows\$NtUninstallKB2443685$\tzchange.exe
+ 2010-12-15 22:04 . 2011-08-30 06:04 49664 c:\windows\$NtUninstallKB2423089$\wab.exe
+ 2010-09-17 20:58 . 2011-08-30 06:04 61440 c:\windows\$NtUninstallKB2347290$\spoolsv.exe
+ 2010-09-30 05:03 . 2011-08-30 06:04 49664 c:\windows\$NtUninstallKB2158563$\tzchange.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 34816 c:\windows\$NtServicePackUninstall$\xcopy.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 17408 c:\windows\$NtServicePackUninstall$\wscntfy.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 36352 c:\windows\$NtServicePackUninstall$\wpnpinst.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 35840 c:\windows\$NtServicePackUninstall$\wpabaln.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 77824 c:\windows\$NtServicePackUninstall$\wmplayer.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 68608 c:\windows\$NtServicePackUninstall$\wextract.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 33792 c:\windows\$NtServicePackUninstall$\wabmig.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 49664 c:\windows\$NtServicePackUninstall$\wab.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 53760 c:\windows\$NtServicePackUninstall$\utilman.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 28160 c:\windows\$NtServicePackUninstall$\userinit.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 22528 c:\windows\$NtServicePackUninstall$\ups.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 20480 c:\windows\$NtServicePackUninstall$\upnpcont.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 16896 c:\windows\$NtServicePackUninstall$\tracert.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 81920 c:\windows\$NtServicePackUninstall$\telnet.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 32768 c:\windows\$NtServicePackUninstall$\tcptest.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 17920 c:\windows\$NtServicePackUninstall$\svchost.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 18432 c:\windows\$NtServicePackUninstall$\stimon.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 61440 c:\windows\$NtServicePackUninstall$\spoolsv.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 15360 c:\windows\$NtServicePackUninstall$\spnpinst.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 28160 c:\windows\$NtServicePackUninstall$\sort.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 12800 c:\windows\$NtServicePackUninstall$\snmptrap.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 35840 c:\windows\$NtServicePackUninstall$\snmp.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 54784 c:\windows\$NtServicePackUninstall$\smss.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 93696 c:\windows\$NtServicePackUninstall$\smlogsvc.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 11776 c:\windows\$NtServicePackUninstall$\smbinst.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 30208 c:\windows\$NtServicePackUninstall$\skeys.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 74240 c:\windows\$NtServicePackUninstall$\sigverif.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 23552 c:\windows\$NtServicePackUninstall$\shutdown.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 20480 c:\windows\$NtServicePackUninstall$\shtml.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 81408 c:\windows\$NtServicePackUninstall$\shrpubw.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 46080 c:\windows\$NtServicePackUninstall$\shmgrate.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 77312 c:\windows\$NtServicePackUninstall$\setup50.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 26624 c:\windows\$NtServicePackUninstall$\setup.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 36352 c:\windows\$NtServicePackUninstall$\sethc.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 81408 c:\windows\$NtServicePackUninstall$\sdbinst.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 40448 c:\windows\$NtServicePackUninstall$\scrcons.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 16896 c:\windows\$NtServicePackUninstall$\savedump.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 17920 c:\windows\$NtServicePackUninstall$\runonce.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 36864 c:\windows\$NtServicePackUninstall$\rundll32.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 80896 c:\windows\$NtServicePackUninstall$\rtcshare.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 18944 c:\windows\$NtServicePackUninstall$\rsh.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 17920 c:\windows\$NtServicePackUninstall$\rexec.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 15872 c:\windows\$NtServicePackUninstall$\regsvr32.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 58880 c:\windows\$NtServicePackUninstall$\reg.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 70656 c:\windows\$NtServicePackUninstall$\rdshost.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 17408 c:\windows\$NtServicePackUninstall$\rdsaddin.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 66560 c:\windows\$NtServicePackUninstall$\rdpclip.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 26112 c:\windows\$NtServicePackUninstall$\rcp.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 39424 c:\windows\$NtServicePackUninstall$\rcimlby.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 60416 c:\windows\$NtServicePackUninstall$\rasphone.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 24064 c:\windows\$NtServicePackUninstall$\qprocess.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 13312 c:\windows\$NtServicePackUninstall$\proxycfg.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 54272 c:\windows\$NtServicePackUninstall$\proquota.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 52736 c:\windows\$NtServicePackUninstall$\powercfg.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 73728 c:\windows\$NtServicePackUninstall$\pintlphr.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 22528 c:\windows\$NtServicePackUninstall$\ping.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 19456 c:\windows\$NtServicePackUninstall$\perfmon.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 61952 c:\windows\$NtServicePackUninstall$\packager.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 55296 c:\windows\$NtServicePackUninstall$\oobebaln.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 64000 c:\windows\$NtServicePackUninstall$\oemig50.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 73728 c:\windows\$NtServicePackUninstall$\odbcconf.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 36864 c:\windows\$NtServicePackUninstall$\odbcad32.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 82944 c:\windows\$NtServicePackUninstall$\nslookup.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 18944 c:\windows\$NtServicePackUninstall$\nppagent.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 73216 c:\windows\$NtServicePackUninstall$\notepad.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 40960 c:\windows\$NtServicePackUninstall$\netstat.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 89600 c:\windows\$NtServicePackUninstall$\netsh.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 46592 c:\windows\$NtServicePackUninstall$\net.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 58368 c:\windows\$NtServicePackUninstall$\narrator.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 15872 c:\windows\$NtServicePackUninstall$\mstinit.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 31744 c:\windows\$NtServicePackUninstall$\msoobe.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 44544 c:\windows\$NtServicePackUninstall$\msiregmv.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 64512 c:\windows\$NtServicePackUninstall$\msimn.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 82944 c:\windows\$NtServicePackUninstall$\msiexec.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 33280 c:\windows\$NtServicePackUninstall$\mshta.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 20480 c:\windows\$NtServicePackUninstall$\mofcomp.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 36864 c:\windows\$NtServicePackUninstall$\mnmsrvc.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 11264 c:\windows\$NtServicePackUninstall$\migregdb.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 89600 c:\windows\$NtServicePackUninstall$\makecab.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 76800 c:\windows\$NtServicePackUninstall$\magnify.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 16896 c:\windows\$NtServicePackUninstall$\lsass.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 64000 c:\windows\$NtServicePackUninstall$\logman.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 79360 c:\windows\$NtServicePackUninstall$\locator.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 27648 c:\windows\$NtServicePackUninstall$\ipxroute.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 57344 c:\windows\$NtServicePackUninstall$\ipv6.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 60416 c:\windows\$NtServicePackUninstall$\ipconfig.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 24576 c:\windows\$NtServicePackUninstall$\inetwiz.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 96768 c:\windows\$NtServicePackUninstall$\iexplore.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 22016 c:\windows\$NtServicePackUninstall$\iedw.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 37888 c:\windows\$NtServicePackUninstall$\ie4uinit.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 28672 c:\windows\$NtServicePackUninstall$\icwrmind.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 90112 c:\windows\$NtServicePackUninstall$\icwconn2.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 22528 c:\windows\$NtServicePackUninstall$\hscupd.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 14336 c:\windows\$NtServicePackUninstall$\hh.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 18432 c:\windows\$NtServicePackUninstall$\help.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 43008 c:\windows\$NtServicePackUninstall$\grpconv.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 48128 c:\windows\$NtServicePackUninstall$\ftp.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 24576 c:\windows\$NtServicePackUninstall$\fpremadm.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 28672 c:\windows\$NtServicePackUninstall$\fpadmcgi.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 17920 c:\windows\$NtServicePackUninstall$\fp98sadm.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 10752 c:\windows\$NtServicePackUninstall$\forcedos.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 25088 c:\windows\$NtServicePackUninstall$\fontview.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 26624 c:\windows\$NtServicePackUninstall$\fltmc.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 31232 c:\windows\$NtServicePackUninstall$\findstr.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 49152 c:\windows\$NtServicePackUninstall$\extrac32.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 95744 c:\windows\$NtServicePackUninstall$\evntwin.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 29184 c:\windows\$NtServicePackUninstall$\evntcmd.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 21504 c:\windows\$NtServicePackUninstall$\dvdupgrd.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 14336 c:\windows\$NtServicePackUninstall$\dumprep.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 87040 c:\windows\$NtServicePackUninstall$\dpvsetup.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 22016 c:\windows\$NtServicePackUninstall$\dpnsvr.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 33792 c:\windows\$NtServicePackUninstall$\dplaysvr.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 19456 c:\windows\$NtServicePackUninstall$\dmremote.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 89600 c:\windows\$NtServicePackUninstall$\diantz.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 86016 c:\windows\$NtServicePackUninstall$\dfrgfat.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 28672 c:\windows\$NtServicePackUninstall$\defrag.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 35328 c:\windows\$NtServicePackUninstall$\ddeshare.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 18944 c:\windows\$NtServicePackUninstall$\ctfmon.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 31232 c:\windows\$NtServicePackUninstall$\conime.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 13312 c:\windows\$NtServicePackUninstall$\comrepl.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 67072 c:\windows\$NtServicePackUninstall$\cmstp.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 43008 c:\windows\$NtServicePackUninstall$\cmmon32.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 50688 c:\windows\$NtServicePackUninstall$\cmdl32.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 37376 c:\windows\$NtServicePackUninstall$\clipsrv.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 24576 c:\windows\$NtServicePackUninstall$\cliconfg.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 68096 c:\windows\$NtServicePackUninstall$\cleanmgr.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 22528 c:\windows\$NtServicePackUninstall$\cacls.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 75264 c:\windows\$NtServicePackUninstall$\blastcln.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 14848 c:\windows\$NtServicePackUninstall$\autolfn.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 20480 c:\windows\$NtServicePackUninstall$\author.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 18432 c:\windows\$NtServicePackUninstall$\auditusr.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 15360 c:\windows\$NtServicePackUninstall$\attrib.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 14848 c:\windows\$NtServicePackUninstall$\atmadm.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 28672 c:\windows\$NtServicePackUninstall$\at.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 48128 c:\windows\$NtServicePackUninstall$\alg.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 20480 c:\windows\$NtServicePackUninstall$\admin.exe
+ 2009-08-25 11:29 . 2011-08-30 06:04 80896 c:\windows\$MSI31Uninstall_KB893803v2$\msiexec.exe
+ 2009-09-18 09:46 . 2011-08-30 06:03 22016 c:\windows\$hf_mig$\KB974455\SP2QFE\iedw.exe
+ 2009-06-22 11:40 . 2011-08-30 06:03 22016 c:\windows\$hf_mig$\KB972260\SP2QFE\iedw.exe
+ 2009-06-15 11:14 . 2011-08-30 06:03 85504 c:\windows\$hf_mig$\KB960859\SP3QFE\tlntsess.exe
+ 2009-06-15 11:14 . 2011-08-30 06:03 81920 c:\windows\$hf_mig$\KB960859\SP3QFE\telnet.exe
+ 2009-06-15 10:45 . 2011-08-30 06:03 85504 c:\windows\$hf_mig$\KB960859\SP3GDR\tlntsess.exe
+ 2009-06-15 10:45 . 2011-08-30 06:03 81920 c:\windows\$hf_mig$\KB960859\SP3GDR\telnet.exe
+ 2009-06-15 12:09 . 2011-08-30 06:03 85504 c:\windows\$hf_mig$\KB960859\SP2QFE\tlntsess.exe
+ 2009-06-15 12:09 . 2011-08-30 06:03 81920 c:\windows\$hf_mig$\KB960859\SP2QFE\telnet.exe
+ 2009-08-26 01:01 . 2011-08-30 06:03 38912 c:\windows\$hf_mig$\KB956572\SP3QFE\sc.exe
+ 2009-08-26 01:01 . 2011-08-30 06:03 38912 c:\windows\$hf_mig$\KB956572\SP3GDR\sc.exe
+ 2009-08-26 01:01 . 2011-08-30 06:03 38912 c:\windows\$hf_mig$\KB956572\SP2QFE\sc.exe
+ 2008-10-23 10:17 . 2011-08-30 06:03 66560 c:\windows\$hf_mig$\KB955839\SP3QFE\tzchange.exe
+ 2008-10-23 10:06 . 2011-08-30 06:03 66560 c:\windows\$hf_mig$\KB955839\SP3GDR\tzchange.exe
+ 2008-10-22 09:47 . 2011-08-30 06:03 66560 c:\windows\$hf_mig$\KB955839\SP2QFE\tzchange.exe
+ 2009-08-25 16:50 . 2011-08-30 06:03 19968 c:\windows\$hf_mig$\KB898461\spupdsvc.exe
+ 2010-12-15 13:50 . 2011-08-30 06:02 49152 c:\windows\$hf_mig$\KB2423089\SP3QFE\wab.exe
+ 2010-08-17 13:19 . 2011-08-30 06:02 62464 c:\windows\$hf_mig$\KB2347290\SP3QFE\spoolsv.exe
+ 2009-08-25 11:18 . 2011-08-30 06:10 8192 c:\windows\system32\dllcache\mplayer2.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 9216 c:\windows\ServicePackFiles\i386\winver.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 8192 c:\windows\ServicePackFiles\i386\nddeapir.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 9728 c:\windows\ServicePackFiles\i386\msdtc.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 9216 c:\windows\ServicePackFiles\i386\dllhost.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 9728 c:\windows\ServicePackFiles\i386\dcomcnfg.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 9728 c:\windows\ServicePackFiles\i386\csrss.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 9728 c:\windows\ServicePackFiles\i386\comrereg.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 9728 c:\windows\ServicePackFiles\i386\cisvc.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 8192 c:\windows\ServicePackFiles\i386\actmovie.exe
+ 2008-07-25 09:16 . 2011-08-30 06:08 8704 c:\windows\Microsoft.NET\Framework\v2.0.50727\dfsvc.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 9216 c:\windows\$NtServicePackUninstall$\winver.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 8192 c:\windows\$NtServicePackUninstall$\nddeapir.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 9728 c:\windows\$NtServicePackUninstall$\msdtc.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 8192 c:\windows\$NtServicePackUninstall$\mplayer2.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 9216 c:\windows\$NtServicePackUninstall$\dllhost.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 8704 c:\windows\$NtServicePackUninstall$\dcomcnfg.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 9728 c:\windows\$NtServicePackUninstall$\csrss.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 8704 c:\windows\$NtServicePackUninstall$\comrereg.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 9728 c:\windows\$NtServicePackUninstall$\cisvc.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 8192 c:\windows\$NtServicePackUninstall$\actmovie.exe
+ 2011-07-19 15:58 . 2011-08-30 06:11 747520 c:\windows\ufa\ufa.exe
+ 2008-07-29 19:26 . 2011-08-30 06:11 295936 c:\windows\system32\XPSViewer\XPSViewer.exe
+ 2009-03-08 03:34 . 2011-08-30 06:11 211968 c:\windows\system32\WinFXDocObj.exe
+ 2006-03-02 12:00 . 2011-08-30 06:11 239104 c:\windows\system32\usmt\migwiz_a.exe
+ 2006-03-02 12:00 . 2006-10-26 18:06 439600 c:\windows\system32\setup.exe
+ 2009-07-18 03:21 . 2011-08-30 06:10 255488 c:\windows\system32\Macromed\Flash\NPSWF32_FlashUtil.exe
+ 2010-08-31 10:00 . 2011-08-30 06:10 151552 c:\windows\system32\javaws.exe
+ 2010-08-31 10:00 . 2011-08-30 06:10 143360 c:\windows\system32\javaw.exe
+ 2010-08-31 10:00 . 2011-08-30 06:10 143360 c:\windows\system32\java.exe
+ 2009-08-26 01:00 . 2011-08-30 06:10 223232 c:\windows\system32\dllcache\wordpad.exe
+ 2009-08-26 01:01 . 2011-08-30 06:10 231936 c:\windows\system32\dllcache\wmiprvse.exe
+ 2006-03-02 12:00 . 2011-08-30 06:10 380928 c:\windows\system32\dllcache\tourP.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 458752 c:\windows\system32\dllcache\tintsetp.exe
+ 2009-08-26 01:01 . 2011-08-30 06:10 114688 c:\windows\system32\dllcache\services.exe
+ 2010-07-28 11:55 . 2011-08-30 06:10 601088 c:\windows\system32\dllcache\printfilterpipelinesvc.exe
+ 2009-08-25 11:16 . 2011-08-30 06:10 409088 c:\windows\system32\dllcache\mstsc.exe
+ 2006-03-02 12:00 . 2011-08-30 06:10 239104 c:\windows\system32\dllcache\migwiz_a.exe
+ 2009-08-25 11:18 . 2011-08-30 06:10 790528 c:\windows\system32\dllcache\migrate.exe
+ 2011-01-27 11:57 . 2011-08-30 06:10 681472 c:\windows\system32\dllcache\lhmstsc.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 266240 c:\windows\system32\dllcache\imjputy.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 237568 c:\windows\system32\dllcache\imjprw.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 212992 c:\windows\system32\dllcache\imjpmig.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 208896 c:\windows\system32\dllcache\imjpinst.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 159744 c:\windows\system32\dllcache\imjpdsvr.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 311296 c:\windows\system32\dllcache\imjpdct.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 311296 c:\windows\system32\dllcache\imepadsv.exe
+ 2010-02-24 00:22 . 2011-08-30 06:10 978944 c:\windows\system32\dllcache\dxdiag.exe
+ 2008-04-14 03:22 . 2011-08-30 06:10 299008 c:\windows\system32\dllcache\dlimport.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 483840 c:\windows\system32\dllcache\cintsetp.exe
+ 2008-04-13 18:53 . 2011-08-30 06:09 561664 c:\windows\ServicePackFiles\i386\xpnetdg.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 170496 c:\windows\ServicePackFiles\i386\wuauclt1.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 114688 c:\windows\ServicePackFiles\i386\wuauclt.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 159744 c:\windows\ServicePackFiles\i386\wscript.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 219648 c:\windows\ServicePackFiles\i386\wordpad.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 222208 c:\windows\ServicePackFiles\i386\wmiprvse.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 130048 c:\windows\ServicePackFiles\i386\wmiapsrv.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 200704 c:\windows\ServicePackFiles\i386\wmiadap.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 511488 c:\windows\ServicePackFiles\i386\winlogon.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 287232 c:\windows\ServicePackFiles\i386\winhlp32.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 437248 c:\windows\ServicePackFiles\i386\wiaacmgr.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 121344 c:\windows\ServicePackFiles\i386\wbemtest.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 294400 c:\windows\ServicePackFiles\i386\vssvc.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 154624 c:\windows\ServicePackFiles\i386\uploadm.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 350720 c:\windows\ServicePackFiles\i386\tourstrt.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 141312 c:\windows\ServicePackFiles\i386\taskmgr.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 110080 c:\windows\ServicePackFiles\i386\sysocmgr.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 542208 c:\windows\ServicePackFiles\i386\spider.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 135168 c:\windows\ServicePackFiles\i386\sndrec32.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 240640 c:\windows\ServicePackFiles\i386\smi2smir.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 145408 c:\windows\ServicePackFiles\i386\sessmgr.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 112640 c:\windows\ServicePackFiles\i386\services.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 101376 c:\windows\ServicePackFiles\i386\scardsvr.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 386048 c:\windows\ServicePackFiles\i386\rstrui.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 151552 c:\windows\ServicePackFiles\i386\regedit.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 113152 c:\windows\ServicePackFiles\i386\progman.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 285696 c:\windows\ServicePackFiles\i386\pinball.exe
+ 2008-04-13 18:31 . 2011-08-30 06:09 234496 c:\windows\ServicePackFiles\i386\osloader.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 219648 c:\windows\ServicePackFiles\i386\osk.exe
+ 2008-04-13 18:32 . 2011-08-30 06:09 170496 c:\windows\ServicePackFiles\i386\oschoice.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 424448 c:\windows\ServicePackFiles\i386\ntvdm.exe
+ 2008-04-14 03:27 . 2011-08-30 06:09 335872 c:\windows\ServicePackFiles\i386\netsetup.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 115712 c:\windows\ServicePackFiles\i386\netdde.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 129024 c:\windows\ServicePackFiles\i386\net1.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 180224 c:\windows\ServicePackFiles\i386\napstat.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 123392 c:\windows\ServicePackFiles\i386\mtstocom.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 347136 c:\windows\ServicePackFiles\i386\mspaint.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 174592 c:\windows\ServicePackFiles\i386\msconfig.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 127488 c:\windows\ServicePackFiles\i386\mplay32.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 147456 c:\windows\ServicePackFiles\i386\mobsync.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 244736 c:\windows\ServicePackFiles\i386\migwiza.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 248320 c:\windows\ServicePackFiles\i386\migwiz.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 108032 c:\windows\ServicePackFiles\i386\migload.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 518656 c:\windows\ServicePackFiles\i386\logonui.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 681472 c:\windows\ServicePackFiles\i386\lhmstsc.exe
+ 2009-08-30 13:21 . 2011-08-30 06:09 458752 c:\windows\ServicePackFiles\i386\lang\tintsetp.exe
+ 2009-08-30 13:21 . 2011-08-30 06:09 266240 c:\windows\ServicePackFiles\i386\lang\imjputy.exe
+ 2009-08-30 13:21 . 2011-08-30 06:09 237568 c:\windows\ServicePackFiles\i386\lang\imjprw.exe
+ 2009-08-30 13:21 . 2011-08-30 06:09 212992 c:\windows\ServicePackFiles\i386\lang\imjpmig.exe
+ 2009-08-30 13:21 . 2011-08-30 06:09 208896 c:\windows\ServicePackFiles\i386\lang\imjpinst.exe
+ 2009-08-30 13:21 . 2011-08-30 06:09 159744 c:\windows\ServicePackFiles\i386\lang\imjpdsvr.exe
+ 2009-08-30 13:21 . 2011-08-30 06:09 311296 c:\windows\ServicePackFiles\i386\lang\imjpdct.exe
+ 2009-08-30 13:21 . 2011-08-30 06:09 483840 c:\windows\ServicePackFiles\i386\lang\cintsetp.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 155648 c:\windows\ServicePackFiles\i386\irftp.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 154112 c:\windows\ServicePackFiles\i386\imapi.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 118272 c:\windows\ServicePackFiles\i386\iexpress.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 219136 c:\windows\ServicePackFiles\i386\icwconn1.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 748032 c:\windows\ServicePackFiles\i386\helpsvc.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 772608 c:\windows\ServicePackFiles\i386\helpctr.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 271872 c:\windows\ServicePackFiles\i386\fxssvc.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 235520 c:\windows\ServicePackFiles\i386\fxscover.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 146944 c:\windows\ServicePackFiles\i386\fxsclnt.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 196608 c:\windows\ServicePackFiles\i386\fsquirt.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 192512 c:\windows\ServicePackFiles\i386\fpcount.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 113152 c:\windows\ServicePackFiles\i386\fp98swin.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 197632 c:\windows\ServicePackFiles\i386\eudcedit.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 184320 c:\windows\ServicePackFiles\i386\dwwin.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 228864 c:\windows\ServicePackFiles\i386\dmadmin.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 167936 c:\windows\ServicePackFiles\i386\diskpart.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 546816 c:\windows\ServicePackFiles\i386\dialer.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 109056 c:\windows\ServicePackFiles\i386\dfrgntfs.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 139264 c:\windows\ServicePackFiles\i386\cscript.exe
- 2008-04-14 03:22 . 2008-04-14 03:22 139264 c:\windows\ServicePackFiles\i386\cscript.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 393728 c:\windows\ServicePackFiles\i386\cmd.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 107008 c:\windows\ServicePackFiles\i386\clipbrd.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 192512 c:\windows\ServicePackFiles\i386\cfgwiz.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 604672 c:\windows\ServicePackFiles\i386\autochk.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 596992 c:\windows\ServicePackFiles\i386\autofmt.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 618496 c:\windows\ServicePackFiles\i386\autoconv.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 102400 c:\windows\ServicePackFiles\i386\ahui.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 260096 c:\windows\ServicePackFiles\i386\agentsvr.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 189440 c:\windows\ServicePackFiles\i386\accwiz.exe
+ 2009-10-24 13:27 . 2011-08-30 06:08 100864 c:\windows\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\logagent.exe
+ 2009-10-24 13:27 . 2011-08-30 06:08 108032 c:\windows\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}$BACKUP$\System\logagent.exe
+ 2010-02-24 00:22 . 2011-08-30 06:08 978944 c:\windows\RegisteredPackages\{44BBA855-CC51-11CF-AAFA-00AA00B6015C}\dxdiag.exe
+ 2008-04-13 18:53 . 2011-08-30 06:08 561664 c:\windows\network diagnostic\xpnetdiag.exe
+ 2008-07-29 21:40 . 2011-08-30 06:08 190976 c:\windows\Microsoft.NET\Framework\v3.5\WFServicesReg.exe
+ 2008-07-29 16:47 . 2011-08-30 06:08 263680 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
+ 2008-09-26 03:07 . 2011-08-30 06:08 263680 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - csy\setup.exe
+ 2008-09-26 08:21 . 2011-08-30 06:08 177664 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - csy\RebootStub.exe
+ 2008-07-29 17:16 . 2011-08-30 06:08 143360 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\WsatConfig.exe
+ 2008-07-29 17:16 . 2011-08-30 06:08 122880 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
+ 2008-07-29 17:16 . 2011-08-30 06:08 147456 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelReg.exe
+ 2008-07-29 17:24 . 2011-08-30 06:08 872448 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
+ 2008-07-29 17:16 . 2011-08-30 06:08 159744 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ComSvcConfig.exe
+ 2008-07-25 09:17 . 2011-08-30 06:08 225280 c:\windows\Microsoft.NET\Framework\v2.0.50727\ilasm.exe
+ 2008-07-25 09:17 . 2011-08-30 06:08 106496 c:\windows\Microsoft.NET\Framework\v2.0.50727\CasPol.exe
- 2008-07-25 09:17 . 2008-07-25 09:17 106496 c:\windows\Microsoft.NET\Framework\v2.0.50727\CasPol.exe
- 2008-07-25 09:16 . 2008-07-25 09:16 106496 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regsql.exe
+ 2008-07-25 09:16 . 2011-08-30 06:08 106496 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regsql.exe
+ 2010-11-03 05:48 . 2011-08-30 06:07 227840 c:\windows\ie8updates\KB982381-IE8\spuninst\spuninst.exe
+ 2010-11-03 05:48 . 2011-08-30 06:07 176640 c:\windows\ie8updates\KB982381-IE8\ie4uinit.exe
+ 2010-11-03 22:46 . 2011-08-30 06:07 227840 c:\windows\ie8updates\KB981332-IE8\spuninst\spuninst.exe
+ 2010-11-03 22:46 . 2011-08-30 06:07 227840 c:\windows\ie8updates\KB976662-IE8\spuninst\spuninst.exe
+ 2010-11-03 22:46 . 2011-08-30 06:07 227840 c:\windows\ie8updates\KB971961-IE8\spuninst\spuninst.exe
+ 2011-08-11 14:55 . 2011-08-30 06:07 227840 c:\windows\ie8updates\KB2559049-IE8\spuninst\spuninst.exe
+ 2011-08-11 14:55 . 2011-08-30 06:07 177152 c:\windows\ie8updates\KB2559049-IE8\ie4uinit.exe
+ 2011-06-27 04:19 . 2011-08-30 06:07 227840 c:\windows\ie8updates\KB2544521-IE8\spuninst\spuninst.exe
+ 2011-06-27 04:19 . 2011-08-30 06:07 227840 c:\windows\ie8updates\KB2530548-IE8\spuninst\spuninst.exe
+ 2011-06-27 04:19 . 2011-08-30 06:07 177152 c:\windows\ie8updates\KB2530548-IE8\ie4uinit.exe
+ 2011-04-14 01:00 . 2011-08-30 06:07 227840 c:\windows\ie8updates\KB2510531-IE8\spuninst\spuninst.exe
+ 2011-04-14 01:07 . 2011-08-30 06:07 227840 c:\windows\ie8updates\KB2497640-IE8\spuninst\spuninst.exe
+ 2011-04-14 01:07 . 2011-08-30 06:07 177152 c:\windows\ie8updates\KB2497640-IE8\ie4uinit.exe
+ 2011-02-09 22:05 . 2011-08-30 06:07 227840 c:\windows\ie8updates\KB2482017-IE8\spuninst\spuninst.exe
+ 2011-02-09 22:04 . 2011-08-30 06:07 177152 c:\windows\ie8updates\KB2482017-IE8\ie4uinit.exe
+ 2010-12-15 22:11 . 2011-08-30 06:07 227840 c:\windows\ie8updates\KB2416400-IE8\spuninst\spuninst.exe
+ 2010-12-15 22:11 . 2011-08-30 06:07 176640 c:\windows\ie8updates\KB2416400-IE8\ie4uinit.exe
+ 2010-11-03 05:48 . 2011-08-30 06:07 227840 c:\windows\ie8updates\KB2362765-IE8\spuninst\spuninst.exe
+ 2010-11-03 05:49 . 2011-08-30 06:07 227840 c:\windows\ie8updates\KB2360131-IE8\spuninst\spuninst.exe
+ 2010-11-03 05:49 . 2011-08-30 06:07 176640 c:\windows\ie8updates\KB2360131-IE8\ie4uinit.exe
+ 2010-11-03 05:48 . 2011-08-30 06:07 228352 c:\windows\ie8\spuninst\spuninst.exe
+ 2011-08-12 09:56 . 2011-08-30 06:06 325632 c:\windows\assembly\NativeImages_v2.0.50727_32\WsatConfig\cc14c69205b984edba1db26fd5e421ac\WsatConfig.ni.exe
+ 2011-08-12 09:56 . 2011-08-30 06:06 370176 c:\windows\assembly\NativeImages_v2.0.50727_32\SMSvcHost\896e42071939e038008b0bbbfed1213c\SMSvcHost.ni.exe
+ 2011-08-12 09:56 . 2011-08-30 06:06 324096 c:\windows\assembly\NativeImages_v2.0.50727_32\ServiceModelReg\a5aa977dd575a6beb3a416bd480b98a7\ServiceModelReg.ni.exe
+ 2011-08-12 09:56 . 2011-08-30 06:06 137216 c:\windows\assembly\NativeImages_v2.0.50727_32\MSBuild\2d89c7b72bc8e527b26d5b6f3b931012\MSBuild.ni.exe
+ 2011-08-12 09:56 . 2011-08-30 06:06 413696 c:\windows\assembly\NativeImages_v2.0.50727_32\ComSvcConfig\fe9a21b94803f74697bb42b9d1fdea5b\ComSvcConfig.ni.exe
+ 2010-07-28 11:57 . 2011-08-30 06:05 209920 c:\windows\$NtUninstallXPSEPSCLP$\spuninst\spuninst.exe
+ 2010-07-28 09:15 . 2011-08-30 06:05 218112 c:\windows\$NtUninstallWudf01000$\spuninst\spuninst.exe
+ 2010-07-28 09:16 . 2011-08-30 06:05 212992 c:\windows\$NtUninstallwmp11$\unregmp2.exe
+ 2010-07-28 09:16 . 2011-08-30 06:05 209920 c:\windows\$NtUninstallwmp11$\spuninst\spuninst.exe
+ 2010-07-28 09:16 . 2011-08-30 06:05 778240 c:\windows\$NtUninstallwmp11$\setup_wm.exe
+ 2010-07-28 09:15 . 2011-08-30 06:05 823296 c:\windows\$NtUninstallWMFDist11$\wmsetsdk.exe
+ 2010-07-28 09:15 . 2011-08-30 06:05 209920 c:\windows\$NtUninstallWMFDist11$\spuninst\spuninst.exe
+ 2010-07-28 09:15 . 2011-08-30 06:05 100864 c:\windows\$NtUninstallWMFDist11$\logagent.exe
+ 2010-07-28 20:11 . 2011-08-30 06:05 225792 c:\windows\$NtUninstallWdf01009$\spuninst\spuninst.exe
+ 2009-09-26 08:33 . 2011-08-30 06:05 218112 c:\windows\$NtUninstallWdf01007$\spuninst\spuninst.exe
+ 2009-09-26 08:23 . 2011-08-30 06:05 218112 c:\windows\$NtUninstallWdf01005$\spuninst\spuninst.exe
+ 2010-07-28 09:16 . 2011-08-30 06:05 218112 c:\windows\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe
+ 2010-09-17 20:58 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB982802$\spuninst\spuninst.exe
+ 2010-08-12 22:01 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB982665$\spuninst\spuninst.exe
+ 2010-06-13 10:54 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB982381$\spuninst\spuninst.exe
+ 2010-08-12 22:09 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB982214$\spuninst\spuninst.exe
+ 2010-10-15 08:14 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB982132$\spuninst\spuninst.exe
+ 2010-08-12 22:02 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB981997$\spuninst\spuninst.exe
+ 2010-10-15 08:07 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB981957$\spuninst\spuninst.exe
+ 2010-08-12 22:09 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB981852$\spuninst\spuninst.exe
+ 2010-05-27 04:14 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB981793$\spuninst\spuninst.exe
+ 2010-04-15 07:29 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB981349$\spuninst\spuninst.exe
+ 2010-09-17 20:58 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB981322$\spuninst\spuninst.exe
+ 2010-08-12 22:07 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB980436$\spuninst\spuninst.exe
+ 2010-04-15 07:31 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB980232$\spuninst\spuninst.exe
+ 2010-06-13 10:57 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB980218$\spuninst\spuninst.exe
+ 2010-06-13 10:57 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB980195$\spuninst\spuninst.exe
+ 2010-03-31 23:11 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB980182$\spuninst\spuninst.exe
+ 2010-10-15 08:13 . 2011-08-30 06:05 220672 c:\windows\$NtUninstallKB979687$\wordpad.exe
+ 2010-10-15 08:13 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB979687$\spuninst\spuninst.exe
+ 2010-04-15 07:31 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB979683$\spuninst\spuninst.exe
+ 2010-06-13 10:57 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB979559$\spuninst\spuninst.exe
+ 2010-06-13 10:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB979482$\spuninst\spuninst.exe
+ 2010-04-15 07:31 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB979402_WM9$\spuninst\spuninst.exe
+ 2010-04-15 07:29 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB979309$\spuninst\spuninst.exe
+ 2010-02-25 01:03 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB979306$\spuninst\spuninst.exe
+ 2010-02-10 23:07 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB978706$\spuninst\spuninst.exe
+ 2010-02-10 23:07 . 2011-08-30 06:05 347136 c:\windows\$NtUninstallKB978706$\mspaint.exe
+ 2010-06-13 10:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB978695_WM9$\spuninst\spuninst.exe
+ 2010-04-15 07:29 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB978601$\spuninst\spuninst.exe
+ 2010-05-12 20:20 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB978542$\spuninst\spuninst.exe
+ 2010-04-15 07:29 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB978338$\spuninst\spuninst.exe
+ 2010-02-10 23:09 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB978262$\spuninst\spuninst.exe
+ 2010-02-10 23:07 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB978251$\spuninst\spuninst.exe
+ 2010-01-22 22:32 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB978207$\spuninst\spuninst.exe
+ 2010-02-10 23:07 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB978037$\spuninst\spuninst.exe
+ 2010-02-10 23:07 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB977914$\spuninst\spuninst.exe
+ 2010-04-15 07:29 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB977816$\spuninst\spuninst.exe
+ 2010-02-10 23:07 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB977165$\spuninst\spuninst.exe
+ 2009-11-04 23:09 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB976749_0$\spuninst\spuninst.exe
+ 2009-11-29 16:57 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB976749$\spuninst\spuninst.exe
+ 2009-12-09 22:21 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB976325$\spuninst\spuninst.exe
+ 2009-11-26 01:41 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB976098-v2$\spuninst\spuninst.exe
+ 2010-02-10 23:07 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB975713$\spuninst\spuninst.exe
+ 2010-06-13 10:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB975562$\spuninst\spuninst.exe
+ 2010-03-10 08:57 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB975561$\spuninst\spuninst.exe
+ 2010-02-10 23:07 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB975560$\spuninst\spuninst.exe
+ 2010-09-17 20:58 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB975558_WM8$\spuninst\spuninst.exe
+ 2009-10-14 22:08 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB975467_0$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB975467$\spuninst\spuninst.exe
+ 2009-10-14 22:08 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB975025_0$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB975025$\spuninst\spuninst.exe
+ 2009-10-14 22:08 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB974571_0$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB974571$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB974455_1$\spuninst\spuninst.exe
+ 2009-10-14 22:08 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB974455_0$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB974455$\spuninst\spuninst.exe
+ 2009-12-09 22:21 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB974392$\spuninst\spuninst.exe
+ 2009-12-09 22:21 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB974318$\spuninst\spuninst.exe
+ 2009-11-29 16:54 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB974112_1$\spuninst\spuninst.exe
+ 2009-10-14 22:08 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB974112_0$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB974112$\spuninst\spuninst.exe
+ 2009-12-09 22:21 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973904$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973869_0$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973869$\spuninst\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973815_0$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973815$\spuninst\spuninst.exe
+ 2009-11-29 16:54 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973687_1$\spuninst\spuninst.exe
+ 2009-11-26 01:41 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973687_0$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973687$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973540_WM9L$\spuninst\spuninst.exe
+ 2009-11-30 22:53 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973540_WM9$\spuninst\spuninst.exe
+ 2009-10-14 22:08 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973525$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973507_0$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973507$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973354_0$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973354$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973346$\spuninst\spuninst.exe
+ 2010-01-14 01:02 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB972270$\spuninst\spuninst.exe
+ 2009-08-26 09:06 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB972260_0$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB972260$\spuninst\spuninst.exe
+ 2009-11-30 22:53 . 2011-08-30 06:05 716800 c:\windows\$NtUninstallKB971961$\update.exe
+ 2009-09-09 20:46 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB971961$\spuninst\spuninst.exe
+ 2009-11-30 22:53 . 2011-08-30 06:05 212480 c:\windows\$NtUninstallKB971961$\spuninst.exe
+ 2009-12-09 22:21 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB971737$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB971657_0$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB971657$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB971633_0$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB971633$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB971557_0$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB971557$\spuninst\spuninst.exe
+ 2009-10-14 22:08 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB971486_0$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB971486$\spuninst\spuninst.exe
+ 2010-02-10 23:09 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB971468$\spuninst\spuninst.exe
+ 2011-03-16 06:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB971029$\spuninst\spuninst.exe
+ 2009-08-26 22:04 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB970653-v3$\spuninst\spuninst.exe
+ 2009-12-09 22:21 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB970430$\spuninst\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB970238_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB970238$\spuninst\spuninst.exe
+ 2009-11-12 22:33 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB969947_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB969947$\spuninst\spuninst.exe
+ 2009-10-14 22:08 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB969059_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB969059$\spuninst\spuninst.exe
+ 2009-09-09 20:46 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB968816_WM9$\spuninst\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB968537_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB968537$\spuninst\spuninst.exe
+ 2009-08-26 22:04 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB968389_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB968389$\spuninst\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB967715_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB967715$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB961501_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB961501$\spuninst\spuninst.exe
+ 2009-08-26 22:04 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB961371-v2_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB961371-v2$\spuninst\spuninst.exe
+ 2010-07-28 22:50 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB961118$\spuninst\spuninst.exe
+ 2009-08-26 09:06 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB960859_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB960859$\spuninst\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB960803_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB960803$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB960225_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB960225$\spuninst\spuninst.exe
+ 2009-08-26 09:06 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB959426_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB959426$\spuninst\spuninst.exe
+ 2009-10-14 22:08 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB958869$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB958687_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB958687$\spuninst\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB958644_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB958644$\spuninst\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:05 212480 c:\windows\$NtUninstallKB958470$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB957097_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB957097$\spuninst\spuninst.exe
+ 2009-09-09 20:47 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB956844_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB956844$\spuninst\spuninst.exe
+ 2009-08-26 09:06 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB956803_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB956803$\spuninst\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB956802_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB956802$\spuninst\spuninst.exe
+ 2009-11-30 22:53 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB956744$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 222208 c:\windows\$NtUninstallKB956572_0$\wmiprvse.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB956572_0$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 112128 c:\windows\$NtUninstallKB956572_0$\services.exe
+ 2009-11-29 16:54 . 2011-08-30 06:05 222208 c:\windows\$NtUninstallKB956572$\wmiprvse.exe

Re: Restarty PC + nefunkční antiviry

Napsal: 30 srp 2011 18:58
od Michal Z.
+ 2008-04-14 03:22 . 2011-08-30 06:09 25088 c:\windows\ServicePackFiles\i386\faxpatch.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 27648 c:\windows\ServicePackFiles\i386\extrac32.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 95744 c:\windows\ServicePackFiles\i386\evntwin.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 29184 c:\windows\ServicePackFiles\i386\evntcmd.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 21504 c:\windows\ServicePackFiles\i386\dvdupgrd.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 14336 c:\windows\ServicePackFiles\i386\dumprep.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 87040 c:\windows\ServicePackFiles\i386\dpvsetup.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 22016 c:\windows\ServicePackFiles\i386\dpnsvr.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 33792 c:\windows\ServicePackFiles\i386\dplaysvr.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 19456 c:\windows\ServicePackFiles\i386\dmremote.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 91136 c:\windows\ServicePackFiles\i386\diantz.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 86528 c:\windows\ServicePackFiles\i386\dfrgfat.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 28672 c:\windows\ServicePackFiles\i386\defrag.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 35328 c:\windows\ServicePackFiles\i386\ddeshare.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 18944 c:\windows\ServicePackFiles\i386\ctfmon.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 31232 c:\windows\ServicePackFiles\i386\conime.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 13312 c:\windows\ServicePackFiles\i386\comrepl.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 67072 c:\windows\ServicePackFiles\i386\cmstp.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 43008 c:\windows\ServicePackFiles\i386\cmmon32.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 29184 c:\windows\ServicePackFiles\i386\cmdl32.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 37376 c:\windows\ServicePackFiles\i386\clipsrv.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 24576 c:\windows\ServicePackFiles\i386\cliconfg.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 68096 c:\windows\ServicePackFiles\i386\cleanmgr.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 24064 c:\windows\ServicePackFiles\i386\cacls.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 75776 c:\windows\ServicePackFiles\i386\blastcln.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 14848 c:\windows\ServicePackFiles\i386\autolfn.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 20480 c:\windows\ServicePackFiles\i386\author.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 18432 c:\windows\ServicePackFiles\i386\auditusr.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 16384 c:\windows\ServicePackFiles\i386\attrib.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 14848 c:\windows\ServicePackFiles\i386\atmadm.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 28672 c:\windows\ServicePackFiles\i386\at.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 48128 c:\windows\ServicePackFiles\i386\alg.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 20480 c:\windows\ServicePackFiles\i386\admin.exe
+ 2009-10-24 13:27 . 2011-08-30 06:08 43008 c:\windows\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\wdfmgr.exe
+ 2009-10-24 13:27 . 2011-08-30 06:08 50688 c:\windows\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\uwdf.exe
+ 2010-02-24 00:22 . 2011-08-30 06:08 50176 c:\windows\RegisteredPackages\{44BBA855-CC51-11CF-AAFA-00AA00B6015C}\dxdllreg.exe
+ 2010-02-24 00:22 . 2011-08-30 06:08 84480 c:\windows\RegisteredPackages\{44BBA855-CC51-11CF-AAFA-00AA00B6015C}\dpvsetup.exe
+ 2010-02-24 00:22 . 2011-08-30 06:08 20992 c:\windows\RegisteredPackages\{44BBA855-CC51-11CF-AAFA-00AA00B6015C}\dpnsvr.exe
+ 2010-02-24 00:22 . 2011-08-30 06:08 32256 c:\windows\RegisteredPackages\{44BBA855-CC51-11CF-AAFA-00AA00B6015C}\dplaysvr.exe
+ 2008-07-29 21:40 . 2011-08-30 06:08 81920 c:\windows\Microsoft.NET\Framework\v3.5\MSBuild.exe
+ 2008-07-29 16:47 . 2011-08-30 06:08 91648 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\DeleteTemp.exe
+ 2008-09-26 03:07 . 2011-08-30 06:08 91648 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - csy\DeleteTemp.exe
+ 2008-07-29 21:40 . 2011-08-30 06:08 86016 c:\windows\Microsoft.NET\Framework\v3.5\EdmGen.exe
+ 2008-07-29 21:40 . 2011-08-30 06:08 69632 c:\windows\Microsoft.NET\Framework\v3.5\DataSvcUtil.exe
+ 2008-09-26 15:43 . 2011-08-30 06:08 36864 c:\windows\Microsoft.NET\Framework\v3.5\cs\MSBuild.resources.exe
+ 2008-07-29 21:40 . 2011-08-30 06:08 32768 c:\windows\Microsoft.NET\Framework\v3.5\AddInUtil.exe
+ 2008-07-29 21:40 . 2011-08-30 06:08 32768 c:\windows\Microsoft.NET\Framework\v3.5\AddInProcess32.exe
+ 2008-07-29 21:40 . 2011-08-30 06:08 32768 c:\windows\Microsoft.NET\Framework\v3.5\AddInProcess.exe
+ 2008-07-29 19:10 . 2011-08-30 06:08 36864 c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
+ 2008-07-29 17:32 . 2011-08-30 06:08 11776 c:\windows\Microsoft.NET\Framework\v3.0\Windows Workflow Foundation\PerformanceCounterInstaller.exe
+ 2008-07-25 09:17 . 2011-08-30 06:08 56832 c:\windows\Microsoft.NET\Framework\v2.0.50727\regtlibv12.exe
- 2008-07-25 09:17 . 2008-07-25 09:17 32768 c:\windows\Microsoft.NET\Framework\v2.0.50727\RegSvcs.exe
+ 2008-07-25 09:17 . 2011-08-30 06:08 32768 c:\windows\Microsoft.NET\Framework\v2.0.50727\RegSvcs.exe
- 2008-07-25 09:17 . 2008-07-25 09:17 53248 c:\windows\Microsoft.NET\Framework\v2.0.50727\RegAsm.exe
+ 2008-07-25 09:17 . 2011-08-30 06:08 53248 c:\windows\Microsoft.NET\Framework\v2.0.50727\RegAsm.exe
+ 2008-07-25 09:17 . 2011-08-30 06:08 95232 c:\windows\Microsoft.NET\Framework\v2.0.50727\ngen.exe
+ 2008-07-25 09:17 . 2011-08-30 06:08 64000 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
+ 2008-07-25 09:16 . 2011-08-30 06:08 69632 c:\windows\Microsoft.NET\Framework\v2.0.50727\MSBuild.exe
- 2008-07-25 09:16 . 2008-07-25 09:16 69632 c:\windows\Microsoft.NET\Framework\v2.0.50727\MSBuild.exe
- 2008-07-25 09:16 . 2008-07-25 09:16 40960 c:\windows\Microsoft.NET\Framework\v2.0.50727\jsc.exe
+ 2008-07-25 09:16 . 2011-08-30 06:08 40960 c:\windows\Microsoft.NET\Framework\v2.0.50727\jsc.exe
- 2008-07-25 09:17 . 2008-07-25 09:17 28672 c:\windows\Microsoft.NET\Framework\v2.0.50727\InstallUtil.exe
+ 2008-07-25 09:17 . 2011-08-30 06:08 28672 c:\windows\Microsoft.NET\Framework\v2.0.50727\InstallUtil.exe
+ 2008-07-25 09:17 . 2011-08-30 06:08 13312 c:\windows\Microsoft.NET\Framework\v2.0.50727\IEExec.exe
+ 2008-07-25 09:16 . 2011-08-30 06:08 29696 c:\windows\Microsoft.NET\Framework\v2.0.50727\cvtres.exe
+ 2008-07-25 09:16 . 2011-08-30 06:08 74752 c:\windows\Microsoft.NET\Framework\v2.0.50727\csc.exe
+ 2010-09-22 07:43 . 2011-08-30 06:08 28160 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_wp.exe
+ 2008-07-25 09:16 . 2011-08-30 06:08 28672 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
+ 2008-07-25 09:16 . 2011-08-30 06:08 27648 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regiis.exe
+ 2008-07-25 09:16 . 2011-08-30 06:08 24576 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regbrowsers.exe
- 2008-07-25 09:16 . 2008-07-25 09:16 24576 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regbrowsers.exe
- 2008-07-25 09:16 . 2008-07-25 09:16 36864 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_compiler.exe
+ 2008-07-25 09:16 . 2011-08-30 06:08 36864 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_compiler.exe
+ 2008-07-25 09:17 . 2011-08-30 06:08 53248 c:\windows\Microsoft.NET\Framework\v2.0.50727\AppLaunch.exe
+ 2009-11-06 23:07 . 2011-08-30 06:08 84480 c:\windows\Microsoft.NET\Framework\NETFXSBS10.exe
+ 2010-11-03 05:47 . 2011-08-30 06:06 33280 c:\windows\ie8\mshta.exe
+ 2010-11-03 05:47 . 2011-08-30 06:06 37888 c:\windows\ie8\ie4uinit.exe
+ 2009-07-17 18:12 . 2011-08-30 06:06 82432 c:\windows\Downloaded Program Files\FP_AX_CAB_INSTALLER.exe
+ 2011-08-12 09:27 . 2011-08-30 06:06 50688 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFontCac#\40ee65aacd9d7472cd6f8dddbfca604b\PresentationFontCache.ni.exe
+ 2011-07-09 10:56 . 2011-08-30 06:06 17920 c:\windows\assembly\NativeImages_v2.0.50727_32\dfsvc\c40d3caad8bff3c52db7e7562286406a\dfsvc.ni.exe
+ 2010-07-28 11:56 . 2011-08-30 06:06 36864 c:\windows\assembly\GAC_MSIL\PresentationFontCache\3.0.0.0__31bf3856ad364e35\PresentationFontCache.exe
+ 2010-07-28 09:16 . 2011-08-30 06:05 77824 c:\windows\$NtUninstallwmp11$\wmplayer.exe
+ 2010-07-28 09:15 . 2011-08-30 06:05 43008 c:\windows\$NtUninstallWMFDist11$\wdfmgr.exe
+ 2010-07-28 09:15 . 2011-08-30 06:05 50688 c:\windows\$NtUninstallWMFDist11$\uwdf.exe
+ 2010-05-27 04:14 . 2011-08-30 06:05 49664 c:\windows\$NtUninstallKB981793$\tzchange.exe
+ 2010-02-25 01:03 . 2011-08-30 06:05 49664 c:\windows\$NtUninstallKB979306$\tzchange.exe
+ 2009-11-26 01:41 . 2011-08-30 06:05 49664 c:\windows\$NtUninstallKB976098-v2$\tzchange.exe
+ 2009-10-14 22:08 . 2011-08-30 06:05 22016 c:\windows\$NtUninstallKB974455_0$\iedw.exe
+ 2009-08-26 09:06 . 2011-08-30 06:05 22016 c:\windows\$NtUninstallKB972260_0$\iedw.exe
+ 2009-08-26 22:04 . 2011-08-30 06:05 66560 c:\windows\$NtUninstallKB970653-v3$\tzchange.exe
+ 2009-08-26 09:06 . 2011-08-30 06:05 80896 c:\windows\$NtUninstallKB960859_0$\telnet.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 81408 c:\windows\$NtUninstallKB960859$\telnet.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 34816 c:\windows\$NtUninstallKB956572_0$\sc.exe
+ 2009-11-29 16:54 . 2011-08-30 06:05 38912 c:\windows\$NtUninstallKB956572$\sc.exe
+ 2010-12-15 22:11 . 2011-08-30 06:04 49664 c:\windows\$NtUninstallKB2443685$\tzchange.exe
+ 2010-12-15 22:04 . 2011-08-30 06:04 49664 c:\windows\$NtUninstallKB2423089$\wab.exe
+ 2010-09-17 20:58 . 2011-08-30 06:04 61440 c:\windows\$NtUninstallKB2347290$\spoolsv.exe
+ 2010-09-30 05:03 . 2011-08-30 06:04 49664 c:\windows\$NtUninstallKB2158563$\tzchange.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 34816 c:\windows\$NtServicePackUninstall$\xcopy.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 17408 c:\windows\$NtServicePackUninstall$\wscntfy.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 36352 c:\windows\$NtServicePackUninstall$\wpnpinst.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 35840 c:\windows\$NtServicePackUninstall$\wpabaln.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 77824 c:\windows\$NtServicePackUninstall$\wmplayer.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 68608 c:\windows\$NtServicePackUninstall$\wextract.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 33792 c:\windows\$NtServicePackUninstall$\wabmig.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 49664 c:\windows\$NtServicePackUninstall$\wab.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 53760 c:\windows\$NtServicePackUninstall$\utilman.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 28160 c:\windows\$NtServicePackUninstall$\userinit.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 22528 c:\windows\$NtServicePackUninstall$\ups.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 20480 c:\windows\$NtServicePackUninstall$\upnpcont.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 16896 c:\windows\$NtServicePackUninstall$\tracert.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 81920 c:\windows\$NtServicePackUninstall$\telnet.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 32768 c:\windows\$NtServicePackUninstall$\tcptest.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 17920 c:\windows\$NtServicePackUninstall$\svchost.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 18432 c:\windows\$NtServicePackUninstall$\stimon.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 61440 c:\windows\$NtServicePackUninstall$\spoolsv.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 15360 c:\windows\$NtServicePackUninstall$\spnpinst.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 28160 c:\windows\$NtServicePackUninstall$\sort.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 12800 c:\windows\$NtServicePackUninstall$\snmptrap.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 35840 c:\windows\$NtServicePackUninstall$\snmp.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 54784 c:\windows\$NtServicePackUninstall$\smss.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 93696 c:\windows\$NtServicePackUninstall$\smlogsvc.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 11776 c:\windows\$NtServicePackUninstall$\smbinst.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 30208 c:\windows\$NtServicePackUninstall$\skeys.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 74240 c:\windows\$NtServicePackUninstall$\sigverif.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 23552 c:\windows\$NtServicePackUninstall$\shutdown.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 20480 c:\windows\$NtServicePackUninstall$\shtml.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 81408 c:\windows\$NtServicePackUninstall$\shrpubw.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 46080 c:\windows\$NtServicePackUninstall$\shmgrate.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 77312 c:\windows\$NtServicePackUninstall$\setup50.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 26624 c:\windows\$NtServicePackUninstall$\setup.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 36352 c:\windows\$NtServicePackUninstall$\sethc.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 81408 c:\windows\$NtServicePackUninstall$\sdbinst.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 40448 c:\windows\$NtServicePackUninstall$\scrcons.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 16896 c:\windows\$NtServicePackUninstall$\savedump.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 17920 c:\windows\$NtServicePackUninstall$\runonce.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 36864 c:\windows\$NtServicePackUninstall$\rundll32.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 80896 c:\windows\$NtServicePackUninstall$\rtcshare.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 18944 c:\windows\$NtServicePackUninstall$\rsh.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 17920 c:\windows\$NtServicePackUninstall$\rexec.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 15872 c:\windows\$NtServicePackUninstall$\regsvr32.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 58880 c:\windows\$NtServicePackUninstall$\reg.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 70656 c:\windows\$NtServicePackUninstall$\rdshost.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 17408 c:\windows\$NtServicePackUninstall$\rdsaddin.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 66560 c:\windows\$NtServicePackUninstall$\rdpclip.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 26112 c:\windows\$NtServicePackUninstall$\rcp.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 39424 c:\windows\$NtServicePackUninstall$\rcimlby.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 60416 c:\windows\$NtServicePackUninstall$\rasphone.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 24064 c:\windows\$NtServicePackUninstall$\qprocess.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 13312 c:\windows\$NtServicePackUninstall$\proxycfg.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 54272 c:\windows\$NtServicePackUninstall$\proquota.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 52736 c:\windows\$NtServicePackUninstall$\powercfg.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 73728 c:\windows\$NtServicePackUninstall$\pintlphr.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 22528 c:\windows\$NtServicePackUninstall$\ping.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 19456 c:\windows\$NtServicePackUninstall$\perfmon.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 61952 c:\windows\$NtServicePackUninstall$\packager.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 55296 c:\windows\$NtServicePackUninstall$\oobebaln.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 64000 c:\windows\$NtServicePackUninstall$\oemig50.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 73728 c:\windows\$NtServicePackUninstall$\odbcconf.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 36864 c:\windows\$NtServicePackUninstall$\odbcad32.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 82944 c:\windows\$NtServicePackUninstall$\nslookup.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 18944 c:\windows\$NtServicePackUninstall$\nppagent.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 73216 c:\windows\$NtServicePackUninstall$\notepad.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 40960 c:\windows\$NtServicePackUninstall$\netstat.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 89600 c:\windows\$NtServicePackUninstall$\netsh.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 46592 c:\windows\$NtServicePackUninstall$\net.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 58368 c:\windows\$NtServicePackUninstall$\narrator.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 15872 c:\windows\$NtServicePackUninstall$\mstinit.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 31744 c:\windows\$NtServicePackUninstall$\msoobe.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 44544 c:\windows\$NtServicePackUninstall$\msiregmv.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 64512 c:\windows\$NtServicePackUninstall$\msimn.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 82944 c:\windows\$NtServicePackUninstall$\msiexec.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 33280 c:\windows\$NtServicePackUninstall$\mshta.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 20480 c:\windows\$NtServicePackUninstall$\mofcomp.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 36864 c:\windows\$NtServicePackUninstall$\mnmsrvc.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 11264 c:\windows\$NtServicePackUninstall$\migregdb.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 89600 c:\windows\$NtServicePackUninstall$\makecab.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 76800 c:\windows\$NtServicePackUninstall$\magnify.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 16896 c:\windows\$NtServicePackUninstall$\lsass.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 64000 c:\windows\$NtServicePackUninstall$\logman.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 79360 c:\windows\$NtServicePackUninstall$\locator.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 27648 c:\windows\$NtServicePackUninstall$\ipxroute.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 57344 c:\windows\$NtServicePackUninstall$\ipv6.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 60416 c:\windows\$NtServicePackUninstall$\ipconfig.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 24576 c:\windows\$NtServicePackUninstall$\inetwiz.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 96768 c:\windows\$NtServicePackUninstall$\iexplore.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 22016 c:\windows\$NtServicePackUninstall$\iedw.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 37888 c:\windows\$NtServicePackUninstall$\ie4uinit.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 28672 c:\windows\$NtServicePackUninstall$\icwrmind.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 90112 c:\windows\$NtServicePackUninstall$\icwconn2.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 22528 c:\windows\$NtServicePackUninstall$\hscupd.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 14336 c:\windows\$NtServicePackUninstall$\hh.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 18432 c:\windows\$NtServicePackUninstall$\help.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 43008 c:\windows\$NtServicePackUninstall$\grpconv.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 48128 c:\windows\$NtServicePackUninstall$\ftp.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 24576 c:\windows\$NtServicePackUninstall$\fpremadm.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 28672 c:\windows\$NtServicePackUninstall$\fpadmcgi.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 17920 c:\windows\$NtServicePackUninstall$\fp98sadm.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 10752 c:\windows\$NtServicePackUninstall$\forcedos.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 25088 c:\windows\$NtServicePackUninstall$\fontview.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 26624 c:\windows\$NtServicePackUninstall$\fltmc.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 31232 c:\windows\$NtServicePackUninstall$\findstr.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 49152 c:\windows\$NtServicePackUninstall$\extrac32.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 95744 c:\windows\$NtServicePackUninstall$\evntwin.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 29184 c:\windows\$NtServicePackUninstall$\evntcmd.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 21504 c:\windows\$NtServicePackUninstall$\dvdupgrd.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 14336 c:\windows\$NtServicePackUninstall$\dumprep.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 87040 c:\windows\$NtServicePackUninstall$\dpvsetup.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 22016 c:\windows\$NtServicePackUninstall$\dpnsvr.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 33792 c:\windows\$NtServicePackUninstall$\dplaysvr.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 19456 c:\windows\$NtServicePackUninstall$\dmremote.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 89600 c:\windows\$NtServicePackUninstall$\diantz.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 86016 c:\windows\$NtServicePackUninstall$\dfrgfat.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 28672 c:\windows\$NtServicePackUninstall$\defrag.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 35328 c:\windows\$NtServicePackUninstall$\ddeshare.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 18944 c:\windows\$NtServicePackUninstall$\ctfmon.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 31232 c:\windows\$NtServicePackUninstall$\conime.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 13312 c:\windows\$NtServicePackUninstall$\comrepl.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 67072 c:\windows\$NtServicePackUninstall$\cmstp.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 43008 c:\windows\$NtServicePackUninstall$\cmmon32.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 50688 c:\windows\$NtServicePackUninstall$\cmdl32.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 37376 c:\windows\$NtServicePackUninstall$\clipsrv.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 24576 c:\windows\$NtServicePackUninstall$\cliconfg.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 68096 c:\windows\$NtServicePackUninstall$\cleanmgr.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 22528 c:\windows\$NtServicePackUninstall$\cacls.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 75264 c:\windows\$NtServicePackUninstall$\blastcln.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 14848 c:\windows\$NtServicePackUninstall$\autolfn.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 20480 c:\windows\$NtServicePackUninstall$\author.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 18432 c:\windows\$NtServicePackUninstall$\auditusr.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 15360 c:\windows\$NtServicePackUninstall$\attrib.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 14848 c:\windows\$NtServicePackUninstall$\atmadm.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 28672 c:\windows\$NtServicePackUninstall$\at.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 48128 c:\windows\$NtServicePackUninstall$\alg.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 20480 c:\windows\$NtServicePackUninstall$\admin.exe
+ 2009-08-25 11:29 . 2011-08-30 06:04 80896 c:\windows\$MSI31Uninstall_KB893803v2$\msiexec.exe
+ 2009-09-18 09:46 . 2011-08-30 06:03 22016 c:\windows\$hf_mig$\KB974455\SP2QFE\iedw.exe
+ 2009-06-22 11:40 . 2011-08-30 06:03 22016 c:\windows\$hf_mig$\KB972260\SP2QFE\iedw.exe
+ 2009-06-15 11:14 . 2011-08-30 06:03 85504 c:\windows\$hf_mig$\KB960859\SP3QFE\tlntsess.exe
+ 2009-06-15 11:14 . 2011-08-30 06:03 81920 c:\windows\$hf_mig$\KB960859\SP3QFE\telnet.exe
+ 2009-06-15 10:45 . 2011-08-30 06:03 85504 c:\windows\$hf_mig$\KB960859\SP3GDR\tlntsess.exe
+ 2009-06-15 10:45 . 2011-08-30 06:03 81920 c:\windows\$hf_mig$\KB960859\SP3GDR\telnet.exe
+ 2009-06-15 12:09 . 2011-08-30 06:03 85504 c:\windows\$hf_mig$\KB960859\SP2QFE\tlntsess.exe
+ 2009-06-15 12:09 . 2011-08-30 06:03 81920 c:\windows\$hf_mig$\KB960859\SP2QFE\telnet.exe
+ 2009-08-26 01:01 . 2011-08-30 06:03 38912 c:\windows\$hf_mig$\KB956572\SP3QFE\sc.exe
+ 2009-08-26 01:01 . 2011-08-30 06:03 38912 c:\windows\$hf_mig$\KB956572\SP3GDR\sc.exe
+ 2009-08-26 01:01 . 2011-08-30 06:03 38912 c:\windows\$hf_mig$\KB956572\SP2QFE\sc.exe
+ 2008-10-23 10:17 . 2011-08-30 06:03 66560 c:\windows\$hf_mig$\KB955839\SP3QFE\tzchange.exe
+ 2008-10-23 10:06 . 2011-08-30 06:03 66560 c:\windows\$hf_mig$\KB955839\SP3GDR\tzchange.exe
+ 2008-10-22 09:47 . 2011-08-30 06:03 66560 c:\windows\$hf_mig$\KB955839\SP2QFE\tzchange.exe
+ 2009-08-25 16:50 . 2011-08-30 06:03 19968 c:\windows\$hf_mig$\KB898461\spupdsvc.exe
+ 2010-12-15 13:50 . 2011-08-30 06:02 49152 c:\windows\$hf_mig$\KB2423089\SP3QFE\wab.exe
+ 2010-08-17 13:19 . 2011-08-30 06:02 62464 c:\windows\$hf_mig$\KB2347290\SP3QFE\spoolsv.exe
+ 2009-08-25 11:18 . 2011-08-30 06:10 8192 c:\windows\system32\dllcache\mplayer2.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 9216 c:\windows\ServicePackFiles\i386\winver.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 8192 c:\windows\ServicePackFiles\i386\nddeapir.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 9728 c:\windows\ServicePackFiles\i386\msdtc.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 9216 c:\windows\ServicePackFiles\i386\dllhost.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 9728 c:\windows\ServicePackFiles\i386\dcomcnfg.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 9728 c:\windows\ServicePackFiles\i386\csrss.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 9728 c:\windows\ServicePackFiles\i386\comrereg.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 9728 c:\windows\ServicePackFiles\i386\cisvc.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 8192 c:\windows\ServicePackFiles\i386\actmovie.exe
+ 2008-07-25 09:16 . 2011-08-30 06:08 8704 c:\windows\Microsoft.NET\Framework\v2.0.50727\dfsvc.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 9216 c:\windows\$NtServicePackUninstall$\winver.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 8192 c:\windows\$NtServicePackUninstall$\nddeapir.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 9728 c:\windows\$NtServicePackUninstall$\msdtc.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 8192 c:\windows\$NtServicePackUninstall$\mplayer2.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 9216 c:\windows\$NtServicePackUninstall$\dllhost.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 8704 c:\windows\$NtServicePackUninstall$\dcomcnfg.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 9728 c:\windows\$NtServicePackUninstall$\csrss.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 8704 c:\windows\$NtServicePackUninstall$\comrereg.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 9728 c:\windows\$NtServicePackUninstall$\cisvc.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 8192 c:\windows\$NtServicePackUninstall$\actmovie.exe
+ 2011-07-19 15:58 . 2011-08-30 06:11 747520 c:\windows\ufa\ufa.exe
+ 2008-07-29 19:26 . 2011-08-30 06:11 295936 c:\windows\system32\XPSViewer\XPSViewer.exe
+ 2009-03-08 03:34 . 2011-08-30 06:11 211968 c:\windows\system32\WinFXDocObj.exe
+ 2006-03-02 12:00 . 2011-08-30 06:11 239104 c:\windows\system32\usmt\migwiz_a.exe
+ 2006-03-02 12:00 . 2006-10-26 18:06 439600 c:\windows\system32\setup.exe
+ 2009-07-18 03:21 . 2011-08-30 06:10 255488 c:\windows\system32\Macromed\Flash\NPSWF32_FlashUtil.exe
+ 2010-08-31 10:00 . 2011-08-30 06:10 151552 c:\windows\system32\javaws.exe
+ 2010-08-31 10:00 . 2011-08-30 06:10 143360 c:\windows\system32\javaw.exe
+ 2010-08-31 10:00 . 2011-08-30 06:10 143360 c:\windows\system32\java.exe
+ 2009-08-26 01:00 . 2011-08-30 06:10 223232 c:\windows\system32\dllcache\wordpad.exe
+ 2009-08-26 01:01 . 2011-08-30 06:10 231936 c:\windows\system32\dllcache\wmiprvse.exe
+ 2006-03-02 12:00 . 2011-08-30 06:10 380928 c:\windows\system32\dllcache\tourP.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 458752 c:\windows\system32\dllcache\tintsetp.exe
+ 2009-08-26 01:01 . 2011-08-30 06:10 114688 c:\windows\system32\dllcache\services.exe
+ 2010-07-28 11:55 . 2011-08-30 06:10 601088 c:\windows\system32\dllcache\printfilterpipelinesvc.exe
+ 2009-08-25 11:16 . 2011-08-30 06:10 409088 c:\windows\system32\dllcache\mstsc.exe
+ 2006-03-02 12:00 . 2011-08-30 06:10 239104 c:\windows\system32\dllcache\migwiz_a.exe
+ 2009-08-25 11:18 . 2011-08-30 06:10 790528 c:\windows\system32\dllcache\migrate.exe
+ 2011-01-27 11:57 . 2011-08-30 06:10 681472 c:\windows\system32\dllcache\lhmstsc.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 266240 c:\windows\system32\dllcache\imjputy.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 237568 c:\windows\system32\dllcache\imjprw.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 212992 c:\windows\system32\dllcache\imjpmig.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 208896 c:\windows\system32\dllcache\imjpinst.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 159744 c:\windows\system32\dllcache\imjpdsvr.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 311296 c:\windows\system32\dllcache\imjpdct.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 311296 c:\windows\system32\dllcache\imepadsv.exe
+ 2010-02-24 00:22 . 2011-08-30 06:10 978944 c:\windows\system32\dllcache\dxdiag.exe
+ 2008-04-14 03:22 . 2011-08-30 06:10 299008 c:\windows\system32\dllcache\dlimport.exe
+ 2009-08-25 11:21 . 2011-08-30 06:10 483840 c:\windows\system32\dllcache\cintsetp.exe
+ 2008-04-13 18:53 . 2011-08-30 06:09 561664 c:\windows\ServicePackFiles\i386\xpnetdg.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 170496 c:\windows\ServicePackFiles\i386\wuauclt1.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 114688 c:\windows\ServicePackFiles\i386\wuauclt.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 159744 c:\windows\ServicePackFiles\i386\wscript.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 219648 c:\windows\ServicePackFiles\i386\wordpad.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 222208 c:\windows\ServicePackFiles\i386\wmiprvse.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 130048 c:\windows\ServicePackFiles\i386\wmiapsrv.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 200704 c:\windows\ServicePackFiles\i386\wmiadap.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 511488 c:\windows\ServicePackFiles\i386\winlogon.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 287232 c:\windows\ServicePackFiles\i386\winhlp32.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 437248 c:\windows\ServicePackFiles\i386\wiaacmgr.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 121344 c:\windows\ServicePackFiles\i386\wbemtest.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 294400 c:\windows\ServicePackFiles\i386\vssvc.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 154624 c:\windows\ServicePackFiles\i386\uploadm.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 350720 c:\windows\ServicePackFiles\i386\tourstrt.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 141312 c:\windows\ServicePackFiles\i386\taskmgr.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 110080 c:\windows\ServicePackFiles\i386\sysocmgr.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 542208 c:\windows\ServicePackFiles\i386\spider.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 135168 c:\windows\ServicePackFiles\i386\sndrec32.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 240640 c:\windows\ServicePackFiles\i386\smi2smir.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 145408 c:\windows\ServicePackFiles\i386\sessmgr.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 112640 c:\windows\ServicePackFiles\i386\services.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 101376 c:\windows\ServicePackFiles\i386\scardsvr.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 386048 c:\windows\ServicePackFiles\i386\rstrui.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 151552 c:\windows\ServicePackFiles\i386\regedit.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 113152 c:\windows\ServicePackFiles\i386\progman.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 285696 c:\windows\ServicePackFiles\i386\pinball.exe
+ 2008-04-13 18:31 . 2011-08-30 06:09 234496 c:\windows\ServicePackFiles\i386\osloader.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 219648 c:\windows\ServicePackFiles\i386\osk.exe
+ 2008-04-13 18:32 . 2011-08-30 06:09 170496 c:\windows\ServicePackFiles\i386\oschoice.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 424448 c:\windows\ServicePackFiles\i386\ntvdm.exe
+ 2008-04-14 03:27 . 2011-08-30 06:09 335872 c:\windows\ServicePackFiles\i386\netsetup.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 115712 c:\windows\ServicePackFiles\i386\netdde.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 129024 c:\windows\ServicePackFiles\i386\net1.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 180224 c:\windows\ServicePackFiles\i386\napstat.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 123392 c:\windows\ServicePackFiles\i386\mtstocom.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 347136 c:\windows\ServicePackFiles\i386\mspaint.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 174592 c:\windows\ServicePackFiles\i386\msconfig.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 127488 c:\windows\ServicePackFiles\i386\mplay32.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 147456 c:\windows\ServicePackFiles\i386\mobsync.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 244736 c:\windows\ServicePackFiles\i386\migwiza.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 248320 c:\windows\ServicePackFiles\i386\migwiz.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 108032 c:\windows\ServicePackFiles\i386\migload.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 518656 c:\windows\ServicePackFiles\i386\logonui.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 681472 c:\windows\ServicePackFiles\i386\lhmstsc.exe
+ 2009-08-30 13:21 . 2011-08-30 06:09 458752 c:\windows\ServicePackFiles\i386\lang\tintsetp.exe
+ 2009-08-30 13:21 . 2011-08-30 06:09 266240 c:\windows\ServicePackFiles\i386\lang\imjputy.exe
+ 2009-08-30 13:21 . 2011-08-30 06:09 237568 c:\windows\ServicePackFiles\i386\lang\imjprw.exe
+ 2009-08-30 13:21 . 2011-08-30 06:09 212992 c:\windows\ServicePackFiles\i386\lang\imjpmig.exe
+ 2009-08-30 13:21 . 2011-08-30 06:09 208896 c:\windows\ServicePackFiles\i386\lang\imjpinst.exe
+ 2009-08-30 13:21 . 2011-08-30 06:09 159744 c:\windows\ServicePackFiles\i386\lang\imjpdsvr.exe
+ 2009-08-30 13:21 . 2011-08-30 06:09 311296 c:\windows\ServicePackFiles\i386\lang\imjpdct.exe
+ 2009-08-30 13:21 . 2011-08-30 06:09 483840 c:\windows\ServicePackFiles\i386\lang\cintsetp.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 155648 c:\windows\ServicePackFiles\i386\irftp.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 154112 c:\windows\ServicePackFiles\i386\imapi.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 118272 c:\windows\ServicePackFiles\i386\iexpress.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 219136 c:\windows\ServicePackFiles\i386\icwconn1.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 748032 c:\windows\ServicePackFiles\i386\helpsvc.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 772608 c:\windows\ServicePackFiles\i386\helpctr.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 271872 c:\windows\ServicePackFiles\i386\fxssvc.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 235520 c:\windows\ServicePackFiles\i386\fxscover.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 146944 c:\windows\ServicePackFiles\i386\fxsclnt.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 196608 c:\windows\ServicePackFiles\i386\fsquirt.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 192512 c:\windows\ServicePackFiles\i386\fpcount.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 113152 c:\windows\ServicePackFiles\i386\fp98swin.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 197632 c:\windows\ServicePackFiles\i386\eudcedit.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 184320 c:\windows\ServicePackFiles\i386\dwwin.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 228864 c:\windows\ServicePackFiles\i386\dmadmin.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 167936 c:\windows\ServicePackFiles\i386\diskpart.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 546816 c:\windows\ServicePackFiles\i386\dialer.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 109056 c:\windows\ServicePackFiles\i386\dfrgntfs.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 139264 c:\windows\ServicePackFiles\i386\cscript.exe
- 2008-04-14 03:22 . 2008-04-14 03:22 139264 c:\windows\ServicePackFiles\i386\cscript.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 393728 c:\windows\ServicePackFiles\i386\cmd.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 107008 c:\windows\ServicePackFiles\i386\clipbrd.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 192512 c:\windows\ServicePackFiles\i386\cfgwiz.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 604672 c:\windows\ServicePackFiles\i386\autochk.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 596992 c:\windows\ServicePackFiles\i386\autofmt.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 618496 c:\windows\ServicePackFiles\i386\autoconv.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 102400 c:\windows\ServicePackFiles\i386\ahui.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 260096 c:\windows\ServicePackFiles\i386\agentsvr.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 189440 c:\windows\ServicePackFiles\i386\accwiz.exe
+ 2009-10-24 13:27 . 2011-08-30 06:08 100864 c:\windows\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\logagent.exe
+ 2009-10-24 13:27 . 2011-08-30 06:08 108032 c:\windows\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}$BACKUP$\System\logagent.exe
+ 2010-02-24 00:22 . 2011-08-30 06:08 978944 c:\windows\RegisteredPackages\{44BBA855-CC51-11CF-AAFA-00AA00B6015C}\dxdiag.exe
+ 2008-04-13 18:53 . 2011-08-30 06:08 561664 c:\windows\network diagnostic\xpnetdiag.exe
+ 2008-07-29 21:40 . 2011-08-30 06:08 190976 c:\windows\Microsoft.NET\Framework\v3.5\WFServicesReg.exe
+ 2008-07-29 16:47 . 2011-08-30 06:08 263680 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
+ 2008-09-26 03:07 . 2011-08-30 06:08 263680 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - csy\setup.exe
+ 2008-09-26 08:21 . 2011-08-30 06:08 177664 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - csy\RebootStub.exe
+ 2008-07-29 17:16 . 2011-08-30 06:08 143360 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\WsatConfig.exe
+ 2008-07-29 17:16 . 2011-08-30 06:08 122880 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
+ 2008-07-29 17:16 . 2011-08-30 06:08 147456 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelReg.exe
+ 2008-07-29 17:24 . 2011-08-30 06:08 872448 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
+ 2008-07-29 17:16 . 2011-08-30 06:08 159744 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ComSvcConfig.exe
+ 2008-07-25 09:17 . 2011-08-30 06:08 225280 c:\windows\Microsoft.NET\Framework\v2.0.50727\ilasm.exe
+ 2008-07-25 09:17 . 2011-08-30 06:08 106496 c:\windows\Microsoft.NET\Framework\v2.0.50727\CasPol.exe
- 2008-07-25 09:17 . 2008-07-25 09:17 106496 c:\windows\Microsoft.NET\Framework\v2.0.50727\CasPol.exe
- 2008-07-25 09:16 . 2008-07-25 09:16 106496 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regsql.exe
+ 2008-07-25 09:16 . 2011-08-30 06:08 106496 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regsql.exe
+ 2010-11-03 05:48 . 2011-08-30 06:07 227840 c:\windows\ie8updates\KB982381-IE8\spuninst\spuninst.exe
+ 2010-11-03 05:48 . 2011-08-30 06:07 176640 c:\windows\ie8updates\KB982381-IE8\ie4uinit.exe
+ 2010-11-03 22:46 . 2011-08-30 06:07 227840 c:\windows\ie8updates\KB981332-IE8\spuninst\spuninst.exe
+ 2010-11-03 22:46 . 2011-08-30 06:07 227840 c:\windows\ie8updates\KB976662-IE8\spuninst\spuninst.exe
+ 2010-11-03 22:46 . 2011-08-30 06:07 227840 c:\windows\ie8updates\KB971961-IE8\spuninst\spuninst.exe
+ 2011-08-11 14:55 . 2011-08-30 06:07 227840 c:\windows\ie8updates\KB2559049-IE8\spuninst\spuninst.exe
+ 2011-08-11 14:55 . 2011-08-30 06:07 177152 c:\windows\ie8updates\KB2559049-IE8\ie4uinit.exe
+ 2011-06-27 04:19 . 2011-08-30 06:07 227840 c:\windows\ie8updates\KB2544521-IE8\spuninst\spuninst.exe
+ 2011-06-27 04:19 . 2011-08-30 06:07 227840 c:\windows\ie8updates\KB2530548-IE8\spuninst\spuninst.exe
+ 2011-06-27 04:19 . 2011-08-30 06:07 177152 c:\windows\ie8updates\KB2530548-IE8\ie4uinit.exe
+ 2011-04-14 01:00 . 2011-08-30 06:07 227840 c:\windows\ie8updates\KB2510531-IE8\spuninst\spuninst.exe
+ 2011-04-14 01:07 . 2011-08-30 06:07 227840 c:\windows\ie8updates\KB2497640-IE8\spuninst\spuninst.exe
+ 2011-04-14 01:07 . 2011-08-30 06:07 177152 c:\windows\ie8updates\KB2497640-IE8\ie4uinit.exe
+ 2011-02-09 22:05 . 2011-08-30 06:07 227840 c:\windows\ie8updates\KB2482017-IE8\spuninst\spuninst.exe
+ 2011-02-09 22:04 . 2011-08-30 06:07 177152 c:\windows\ie8updates\KB2482017-IE8\ie4uinit.exe
+ 2010-12-15 22:11 . 2011-08-30 06:07 227840 c:\windows\ie8updates\KB2416400-IE8\spuninst\spuninst.exe
+ 2010-12-15 22:11 . 2011-08-30 06:07 176640 c:\windows\ie8updates\KB2416400-IE8\ie4uinit.exe
+ 2010-11-03 05:48 . 2011-08-30 06:07 227840 c:\windows\ie8updates\KB2362765-IE8\spuninst\spuninst.exe
+ 2010-11-03 05:49 . 2011-08-30 06:07 227840 c:\windows\ie8updates\KB2360131-IE8\spuninst\spuninst.exe
+ 2010-11-03 05:49 . 2011-08-30 06:07 176640 c:\windows\ie8updates\KB2360131-IE8\ie4uinit.exe
+ 2010-11-03 05:48 . 2011-08-30 06:07 228352 c:\windows\ie8\spuninst\spuninst.exe
+ 2011-08-12 09:56 . 2011-08-30 06:06 325632 c:\windows\assembly\NativeImages_v2.0.50727_32\WsatConfig\cc14c69205b984edba1db26fd5e421ac\WsatConfig.ni.exe
+ 2011-08-12 09:56 . 2011-08-30 06:06 370176 c:\windows\assembly\NativeImages_v2.0.50727_32\SMSvcHost\896e42071939e038008b0bbbfed1213c\SMSvcHost.ni.exe
+ 2011-08-12 09:56 . 2011-08-30 06:06 324096 c:\windows\assembly\NativeImages_v2.0.50727_32\ServiceModelReg\a5aa977dd575a6beb3a416bd480b98a7\ServiceModelReg.ni.exe
+ 2011-08-12 09:56 . 2011-08-30 06:06 137216 c:\windows\assembly\NativeImages_v2.0.50727_32\MSBuild\2d89c7b72bc8e527b26d5b6f3b931012\MSBuild.ni.exe
+ 2011-08-12 09:56 . 2011-08-30 06:06 413696 c:\windows\assembly\NativeImages_v2.0.50727_32\ComSvcConfig\fe9a21b94803f74697bb42b9d1fdea5b\ComSvcConfig.ni.exe
+ 2010-07-28 11:57 . 2011-08-30 06:05 209920 c:\windows\$NtUninstallXPSEPSCLP$\spuninst\spuninst.exe
+ 2010-07-28 09:15 . 2011-08-30 06:05 218112 c:\windows\$NtUninstallWudf01000$\spuninst\spuninst.exe
+ 2010-07-28 09:16 . 2011-08-30 06:05 212992 c:\windows\$NtUninstallwmp11$\unregmp2.exe
+ 2010-07-28 09:16 . 2011-08-30 06:05 209920 c:\windows\$NtUninstallwmp11$\spuninst\spuninst.exe
+ 2010-07-28 09:16 . 2011-08-30 06:05 778240 c:\windows\$NtUninstallwmp11$\setup_wm.exe
+ 2010-07-28 09:15 . 2011-08-30 06:05 823296 c:\windows\$NtUninstallWMFDist11$\wmsetsdk.exe
+ 2010-07-28 09:15 . 2011-08-30 06:05 209920 c:\windows\$NtUninstallWMFDist11$\spuninst\spuninst.exe
+ 2010-07-28 09:15 . 2011-08-30 06:05 100864 c:\windows\$NtUninstallWMFDist11$\logagent.exe
+ 2010-07-28 20:11 . 2011-08-30 06:05 225792 c:\windows\$NtUninstallWdf01009$\spuninst\spuninst.exe
+ 2009-09-26 08:33 . 2011-08-30 06:05 218112 c:\windows\$NtUninstallWdf01007$\spuninst\spuninst.exe
+ 2009-09-26 08:23 . 2011-08-30 06:05 218112 c:\windows\$NtUninstallWdf01005$\spuninst\spuninst.exe
+ 2010-07-28 09:16 . 2011-08-30 06:05 218112 c:\windows\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe
+ 2010-09-17 20:58 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB982802$\spuninst\spuninst.exe
+ 2010-08-12 22:01 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB982665$\spuninst\spuninst.exe
+ 2010-06-13 10:54 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB982381$\spuninst\spuninst.exe
+ 2010-08-12 22:09 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB982214$\spuninst\spuninst.exe
+ 2010-10-15 08:14 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB982132$\spuninst\spuninst.exe
+ 2010-08-12 22:02 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB981997$\spuninst\spuninst.exe
+ 2010-10-15 08:07 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB981957$\spuninst\spuninst.exe
+ 2010-08-12 22:09 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB981852$\spuninst\spuninst.exe
+ 2010-05-27 04:14 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB981793$\spuninst\spuninst.exe
+ 2010-04-15 07:29 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB981349$\spuninst\spuninst.exe
+ 2010-09-17 20:58 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB981322$\spuninst\spuninst.exe
+ 2010-08-12 22:07 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB980436$\spuninst\spuninst.exe
+ 2010-04-15 07:31 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB980232$\spuninst\spuninst.exe
+ 2010-06-13 10:57 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB980218$\spuninst\spuninst.exe
+ 2010-06-13 10:57 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB980195$\spuninst\spuninst.exe
+ 2010-03-31 23:11 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB980182$\spuninst\spuninst.exe
+ 2010-10-15 08:13 . 2011-08-30 06:05 220672 c:\windows\$NtUninstallKB979687$\wordpad.exe
+ 2010-10-15 08:13 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB979687$\spuninst\spuninst.exe
+ 2010-04-15 07:31 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB979683$\spuninst\spuninst.exe
+ 2010-06-13 10:57 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB979559$\spuninst\spuninst.exe
+ 2010-06-13 10:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB979482$\spuninst\spuninst.exe
+ 2010-04-15 07:31 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB979402_WM9$\spuninst\spuninst.exe
+ 2010-04-15 07:29 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB979309$\spuninst\spuninst.exe
+ 2010-02-25 01:03 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB979306$\spuninst\spuninst.exe
+ 2010-02-10 23:07 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB978706$\spuninst\spuninst.exe
+ 2010-02-10 23:07 . 2011-08-30 06:05 347136 c:\windows\$NtUninstallKB978706$\mspaint.exe
+ 2010-06-13 10:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB978695_WM9$\spuninst\spuninst.exe
+ 2010-04-15 07:29 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB978601$\spuninst\spuninst.exe
+ 2010-05-12 20:20 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB978542$\spuninst\spuninst.exe
+ 2010-04-15 07:29 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB978338$\spuninst\spuninst.exe
+ 2010-02-10 23:09 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB978262$\spuninst\spuninst.exe
+ 2010-02-10 23:07 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB978251$\spuninst\spuninst.exe
+ 2010-01-22 22:32 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB978207$\spuninst\spuninst.exe
+ 2010-02-10 23:07 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB978037$\spuninst\spuninst.exe
+ 2010-02-10 23:07 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB977914$\spuninst\spuninst.exe
+ 2010-04-15 07:29 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB977816$\spuninst\spuninst.exe
+ 2010-02-10 23:07 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB977165$\spuninst\spuninst.exe
+ 2009-11-04 23:09 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB976749_0$\spuninst\spuninst.exe
+ 2009-11-29 16:57 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB976749$\spuninst\spuninst.exe
+ 2009-12-09 22:21 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB976325$\spuninst\spuninst.exe
+ 2009-11-26 01:41 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB976098-v2$\spuninst\spuninst.exe
+ 2010-02-10 23:07 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB975713$\spuninst\spuninst.exe
+ 2010-06-13 10:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB975562$\spuninst\spuninst.exe
+ 2010-03-10 08:57 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB975561$\spuninst\spuninst.exe
+ 2010-02-10 23:07 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB975560$\spuninst\spuninst.exe
+ 2010-09-17 20:58 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB975558_WM8$\spuninst\spuninst.exe
+ 2009-10-14 22:08 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB975467_0$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB975467$\spuninst\spuninst.exe
+ 2009-10-14 22:08 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB975025_0$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB975025$\spuninst\spuninst.exe
+ 2009-10-14 22:08 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB974571_0$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB974571$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB974455_1$\spuninst\spuninst.exe
+ 2009-10-14 22:08 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB974455_0$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB974455$\spuninst\spuninst.exe
+ 2009-12-09 22:21 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB974392$\spuninst\spuninst.exe
+ 2009-12-09 22:21 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB974318$\spuninst\spuninst.exe
+ 2009-11-29 16:54 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB974112_1$\spuninst\spuninst.exe
+ 2009-10-14 22:08 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB974112_0$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB974112$\spuninst\spuninst.exe
+ 2009-12-09 22:21 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973904$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973869_0$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973869$\spuninst\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973815_0$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973815$\spuninst\spuninst.exe
+ 2009-11-29 16:54 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973687_1$\spuninst\spuninst.exe
+ 2009-11-26 01:41 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973687_0$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973687$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973540_WM9L$\spuninst\spuninst.exe
+ 2009-11-30 22:53 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973540_WM9$\spuninst\spuninst.exe
+ 2009-10-14 22:08 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973525$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973507_0$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973507$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973354_0$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973354$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB973346$\spuninst\spuninst.exe
+ 2010-01-14 01:02 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB972270$\spuninst\spuninst.exe
+ 2009-08-26 09:06 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB972260_0$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB972260$\spuninst\spuninst.exe
+ 2009-11-30 22:53 . 2011-08-30 06:05 716800 c:\windows\$NtUninstallKB971961$\update.exe
+ 2009-09-09 20:46 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB971961$\spuninst\spuninst.exe
+ 2009-11-30 22:53 . 2011-08-30 06:05 212480 c:\windows\$NtUninstallKB971961$\spuninst.exe
+ 2009-12-09 22:21 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB971737$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB971657_0$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB971657$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB971633_0$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB971633$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB971557_0$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB971557$\spuninst\spuninst.exe
+ 2009-10-14 22:08 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB971486_0$\spuninst\spuninst.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB971486$\spuninst\spuninst.exe
+ 2010-02-10 23:09 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB971468$\spuninst\spuninst.exe
+ 2011-03-16 06:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB971029$\spuninst\spuninst.exe
+ 2009-08-26 22:04 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB970653-v3$\spuninst\spuninst.exe
+ 2009-12-09 22:21 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB970430$\spuninst\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB970238_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB970238$\spuninst\spuninst.exe
+ 2009-11-12 22:33 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB969947_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB969947$\spuninst\spuninst.exe
+ 2009-10-14 22:08 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB969059_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB969059$\spuninst\spuninst.exe
+ 2009-09-09 20:46 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB968816_WM9$\spuninst\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB968537_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB968537$\spuninst\spuninst.exe
+ 2009-08-26 22:04 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB968389_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB968389$\spuninst\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB967715_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB967715$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB961501_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB961501$\spuninst\spuninst.exe
+ 2009-08-26 22:04 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB961371-v2_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB961371-v2$\spuninst\spuninst.exe
+ 2010-07-28 22:50 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB961118$\spuninst\spuninst.exe
+ 2009-08-26 09:06 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB960859_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB960859$\spuninst\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB960803_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB960803$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB960225_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB960225$\spuninst\spuninst.exe
+ 2009-08-26 09:06 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB959426_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB959426$\spuninst\spuninst.exe
+ 2009-10-14 22:08 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB958869$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB958687_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB958687$\spuninst\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB958644_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB958644$\spuninst\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:05 212480 c:\windows\$NtUninstallKB958470$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB957097_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB957097$\spuninst\spuninst.exe
+ 2009-09-09 20:47 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB956844_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB956844$\spuninst\spuninst.exe
+ 2009-08-26 09:06 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB956803_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB956803$\spuninst\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB956802_0$\spuninst\spuninst.exe
+ 2009-11-29 16:55 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB956802$\spuninst\spuninst.exe
+ 2009-11-30 22:53 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB956744$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 222208 c:\windows\$NtUninstallKB956572_0$\wmiprvse.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB956572_0$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 112128 c:\windows\$NtUninstallKB956572_0$\services.exe
+ 2009-11-29 16:54 . 2011-08-30 06:05 222208 c:\windows\$NtUninstallKB956572$\wmiprvse.exe

Re: Restarty PC + nefunkční antiviry

Napsal: 30 srp 2011 18:59
od Michal Z.
+ 2009-11-29 16:54 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB956572$\spuninst\spuninst.exe
+ 2009-11-29 16:54 . 2011-08-30 06:05 112640 c:\windows\$NtUninstallKB956572$\services.exe
+ 2009-08-26 09:06 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB955839$\spuninst\spuninst.exe
+ 2010-01-14 01:02 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB955759$\spuninst\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB955069_0$\spuninst\spuninst.exe
+ 2009-11-29 16:54 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB955069$\spuninst\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB954600_0$\spuninst\spuninst.exe
+ 2009-11-29 16:54 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB954600$\spuninst\spuninst.exe
+ 2009-10-14 22:08 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB954155_WM9$\spuninst\spuninst.exe
+ 2010-07-28 22:41 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe
+ 2009-08-26 09:06 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB952954_0$\spuninst\spuninst.exe
+ 2009-11-29 16:54 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB952954$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB952287_0$\spuninst\spuninst.exe
+ 2009-11-29 16:54 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB952287$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 108032 c:\windows\$NtUninstallKB952069_WM9$\logagent.exe
+ 2010-10-06 06:10 . 2011-08-30 06:05 218112 c:\windows\$NtUninstallKB952011$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB952004_0$\spuninst\spuninst.exe
+ 2009-11-29 16:54 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB952004$\spuninst\spuninst.exe
+ 2009-11-30 22:53 . 2011-08-30 06:05 159744 c:\windows\$NtUninstallKB951978$\wscript.exe
+ 2009-11-30 22:53 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB951978$\spuninst\spuninst.exe
+ 2009-11-30 22:53 . 2011-08-30 06:05 139264 c:\windows\$NtUninstallKB951978$\cscript.exe
- 2009-11-30 22:53 . 2008-04-14 03:22 139264 c:\windows\$NtUninstallKB951978$\cscript.exe
+ 2009-08-26 09:04 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB951748_0$\spuninst\spuninst.exe
+ 2009-11-29 16:54 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB951748$\spuninst\spuninst.exe
+ 2009-08-26 09:06 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB951376-v2_0$\spuninst\spuninst.exe
+ 2009-11-29 16:54 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB951376-v2$\spuninst\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB951066_0$\spuninst\spuninst.exe
+ 2009-11-29 16:54 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB951066$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB950974_0$\spuninst\spuninst.exe
+ 2009-11-29 16:54 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB950974$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB950762_0$\spuninst\spuninst.exe
+ 2009-11-29 16:54 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB950762$\spuninst\spuninst.exe
+ 2009-08-26 09:06 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB946648_0$\spuninst\spuninst.exe
+ 2009-11-29 16:54 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB946648$\spuninst\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:05 212480 c:\windows\$NtUninstallKB944338-v2$\spuninst\spuninst.exe
+ 2009-10-25 22:44 . 2011-08-30 06:05 212480 c:\windows\$NtUninstallKB941569$\spuninst\spuninst.exe
+ 2010-07-28 22:45 . 2011-08-30 06:05 320000 c:\windows\$NtUninstallKB939683$\unregmp2.exe
+ 2010-07-28 22:45 . 2011-08-30 06:05 212480 c:\windows\$NtUninstallKB939683$\spuninst\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB938464-v2_0$\spuninst\spuninst.exe
+ 2009-11-29 16:54 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB938464-v2$\spuninst\spuninst.exe
+ 2009-08-26 09:06 . 2011-08-30 06:05 212480 c:\windows\$NtUninstallKB935448$\spuninst\spuninst.exe
+ 2010-07-28 22:45 . 2011-08-30 06:05 209920 c:\windows\$NtUninstallKB929399$\spuninst\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:05 219648 c:\windows\$NtUninstallKB923561_0$\wordpad.exe
+ 2009-08-26 09:04 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB923561_0$\spuninst\spuninst.exe
+ 2009-11-29 16:54 . 2011-08-30 06:05 219648 c:\windows\$NtUninstallKB923561$\wordpad.exe
+ 2009-11-29 16:54 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB923561$\spuninst\spuninst.exe
+ 2009-08-26 01:00 . 2011-08-30 06:05 208384 c:\windows\$NtUninstallKB898461$\spuninst\spuninst.exe
+ 2009-08-25 11:33 . 2011-08-30 06:05 206336 c:\windows\$NtUninstallKB888111WXPSP2$\spuninst\spuninst.exe
+ 2011-07-13 20:20 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB2555917$\spuninst\spuninst.exe
+ 2011-06-27 04:19 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB2544893$\spuninst\spuninst.exe
+ 2011-06-29 05:59 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB2541763$\spuninst\spuninst.exe
+ 2011-06-27 04:20 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB2536276$\spuninst\spuninst.exe
+ 2011-06-27 04:20 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB2535512$\spuninst\spuninst.exe
+ 2011-03-24 06:49 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB2524375$\spuninst\spuninst.exe
+ 2011-04-14 01:06 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB2511455$\spuninst\spuninst.exe
+ 2011-04-14 01:00 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB2509553$\spuninst\spuninst.exe
+ 2011-04-14 01:06 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB2508429$\spuninst\spuninst.exe
+ 2011-04-14 01:06 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB2508272$\spuninst\spuninst.exe
+ 2011-07-13 20:25 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB2507938$\spuninst\spuninst.exe
+ 2011-04-14 01:06 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB2507618$\spuninst\spuninst.exe
+ 2011-04-14 01:07 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB2506223$\spuninst\spuninst.exe
+ 2011-04-14 01:06 . 2011-08-30 06:05 227840 c:\windows\$NtUninstallKB2506212$\spuninst\spuninst.exe
+ 2011-06-27 04:20 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2503665$\spuninst\spuninst.exe
+ 2011-04-14 01:06 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2503658$\spuninst\spuninst.exe
+ 2011-04-14 01:07 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2485663$\spuninst\spuninst.exe
+ 2011-02-09 22:10 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2485376$\spuninst\spuninst.exe
+ 2011-02-09 22:10 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2483185$\spuninst\spuninst.exe
+ 2011-03-10 15:32 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2481109$\spuninst\spuninst.exe
+ 2011-03-10 15:32 . 2011-08-30 06:04 681472 c:\windows\$NtUninstallKB2481109$\mstsc.exe
+ 2011-03-10 15:37 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2479943$\spuninst\spuninst.exe
+ 2011-02-09 22:10 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2479628$\spuninst\spuninst.exe
+ 2011-02-09 22:10 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2478971$\spuninst\spuninst.exe
+ 2011-02-09 22:04 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2478960$\spuninst\spuninst.exe
+ 2011-02-09 22:04 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2476687$\spuninst\spuninst.exe
+ 2011-06-27 04:20 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2476490$\spuninst\spuninst.exe
+ 2010-12-15 22:10 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2467659$\spuninst\spuninst.exe
+ 2010-12-15 22:11 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2443685$\spuninst\spuninst.exe
+ 2010-12-15 22:11 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2443105$\spuninst\spuninst.exe
+ 2010-12-15 22:11 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2440591$\spuninst\spuninst.exe
+ 2010-12-15 22:11 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2436673$\spuninst\spuninst.exe
+ 2010-12-15 22:04 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2423089$\spuninst\spuninst.exe
+ 2011-01-11 21:54 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2419632$\spuninst\spuninst.exe
+ 2011-04-14 01:07 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2412687$\spuninst\spuninst.exe
+ 2011-02-09 22:04 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2393802$\spuninst\spuninst.exe
+ 2010-10-15 08:14 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2387149$\spuninst\spuninst.exe
+ 2010-10-15 08:14 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2378111_WM9$\spuninst\spuninst.exe
+ 2010-10-15 08:07 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2360937$\spuninst\spuninst.exe
+ 2010-10-15 08:14 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2360131$\spuninst\spuninst.exe
+ 2010-09-17 20:58 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2347290$\spuninst\spuninst.exe
+ 2010-10-15 08:14 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2345886$\spuninst\spuninst.exe
+ 2010-12-15 22:11 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2296199$\spuninst\spuninst.exe
+ 2010-10-15 08:14 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2296011$\spuninst\spuninst.exe
+ 2010-08-03 07:16 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2286198$\spuninst\spuninst.exe
+ 2010-10-15 08:14 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2279986$\spuninst\spuninst.exe
+ 2010-09-17 20:59 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2259922$\spuninst\spuninst.exe
+ 2010-07-14 21:48 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2229593$\spuninst\spuninst.exe
+ 2010-07-14 21:48 . 2011-08-30 06:04 748032 c:\windows\$NtUninstallKB2229593$\helpsvc.exe
+ 2010-08-12 22:09 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2183461$\spuninst\spuninst.exe
+ 2010-08-12 22:07 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2160329$\spuninst\spuninst.exe
+ 2010-09-30 05:03 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2158563$\spuninst\spuninst.exe
+ 2010-09-17 20:53 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2141007$\spuninst\spuninst.exe
+ 2010-09-17 20:58 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2121546$\spuninst\spuninst.exe
+ 2010-08-12 22:09 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2115168$\spuninst\spuninst.exe
+ 2010-08-12 22:09 . 2011-08-30 06:04 227840 c:\windows\$NtUninstallKB2079403$\spuninst\spuninst.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 170496 c:\windows\$NtServicePackUninstall$\wuauclt1.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 118784 c:\windows\$NtServicePackUninstall$\wscript.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 220672 c:\windows\$NtServicePackUninstall$\wordpad.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 231936 c:\windows\$NtServicePackUninstall$\wmiprvse.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 130048 c:\windows\$NtServicePackUninstall$\wmiapsrv.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 200704 c:\windows\$NtServicePackUninstall$\wmiadap.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 505856 c:\windows\$NtServicePackUninstall$\winlogon.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 287232 c:\windows\$NtServicePackUninstall$\winhlp32.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 437248 c:\windows\$NtServicePackUninstall$\wiaacmgr.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 121344 c:\windows\$NtServicePackUninstall$\wbemtest.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 294400 c:\windows\$NtServicePackUninstall$\vssvc.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 154624 c:\windows\$NtServicePackUninstall$\uploadm.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 212992 c:\windows\$NtServicePackUninstall$\unregmp2.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 350720 c:\windows\$NtServicePackUninstall$\tourstrt.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 350720 c:\windows\$NtServicePackUninstall$\tourstart.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 141312 c:\windows\$NtServicePackUninstall$\taskmgr.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 110080 c:\windows\$NtServicePackUninstall$\sysocmgr.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 227840 c:\windows\$NtServicePackUninstall$\spuninst\spuninst.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 542208 c:\windows\$NtServicePackUninstall$\spider.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 135168 c:\windows\$NtServicePackUninstall$\sndrec32.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 240640 c:\windows\$NtServicePackUninstall$\smi2smir.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 778240 c:\windows\$NtServicePackUninstall$\setup_wm.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 144896 c:\windows\$NtServicePackUninstall$\sessmgr.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 114688 c:\windows\$NtServicePackUninstall$\services.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 101376 c:\windows\$NtServicePackUninstall$\scardsvr.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 386048 c:\windows\$NtServicePackUninstall$\rstrui.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 151552 c:\windows\$NtServicePackUninstall$\regedit.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 113152 c:\windows\$NtServicePackUninstall$\progman.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 285696 c:\windows\$NtServicePackUninstall$\pinball.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 219648 c:\windows\$NtServicePackUninstall$\osk.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 423424 c:\windows\$NtServicePackUninstall$\ntvdm.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 335872 c:\windows\$NtServicePackUninstall$\netsetup.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 115712 c:\windows\$NtServicePackUninstall$\netdde.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 129024 c:\windows\$NtServicePackUninstall$\net1.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 114688 c:\windows\$NtServicePackUninstall$\mtstocom.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 409088 c:\windows\$NtServicePackUninstall$\mstsc.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 347136 c:\windows\$NtServicePackUninstall$\mspaint.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 162816 c:\windows\$NtServicePackUninstall$\msconfig.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 127488 c:\windows\$NtServicePackUninstall$\mplay32.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 147456 c:\windows\$NtServicePackUninstall$\mobsync.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 819200 c:\windows\$NtServicePackUninstall$\mmc.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 243200 c:\windows\$NtServicePackUninstall$\migwiz.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 790528 c:\windows\$NtServicePackUninstall$\migrate.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 107520 c:\windows\$NtServicePackUninstall$\migload.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 518656 c:\windows\$NtServicePackUninstall$\logonui.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 153600 c:\windows\$NtServicePackUninstall$\imapi.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 118272 c:\windows\$NtServicePackUninstall$\iexpress.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 219136 c:\windows\$NtServicePackUninstall$\icwconn1.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 747520 c:\windows\$NtServicePackUninstall$\helpsvc.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 772096 c:\windows\$NtServicePackUninstall$\helpctr.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 271872 c:\windows\$NtServicePackUninstall$\fxssvc.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 235520 c:\windows\$NtServicePackUninstall$\fxscover.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 146944 c:\windows\$NtServicePackUninstall$\fxsclnt.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 196608 c:\windows\$NtServicePackUninstall$\fsquirt.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 192512 c:\windows\$NtServicePackUninstall$\fpcount.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 112640 c:\windows\$NtServicePackUninstall$\fp98swin.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 197632 c:\windows\$NtServicePackUninstall$\eudcedit.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 184320 c:\windows\$NtServicePackUninstall$\dwwin.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 228864 c:\windows\$NtServicePackUninstall$\dmadmin.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 167936 c:\windows\$NtServicePackUninstall$\diskpart.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 546816 c:\windows\$NtServicePackUninstall$\dialer.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 108544 c:\windows\$NtServicePackUninstall$\dfrgntfs.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 102400 c:\windows\$NtServicePackUninstall$\cscript.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 393216 c:\windows\$NtServicePackUninstall$\cmd.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 107008 c:\windows\$NtServicePackUninstall$\clipbrd.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 192512 c:\windows\$NtServicePackUninstall$\cfgwiz.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 604672 c:\windows\$NtServicePackUninstall$\autochk.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 596992 c:\windows\$NtServicePackUninstall$\autofmt.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 618496 c:\windows\$NtServicePackUninstall$\autoconv.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 102400 c:\windows\$NtServicePackUninstall$\ahui.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 260096 c:\windows\$NtServicePackUninstall$\agentsvr.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 188928 c:\windows\$NtServicePackUninstall$\accwiz.exe
+ 2009-08-25 11:29 . 2011-08-30 06:04 208384 c:\windows\$MSI31Uninstall_KB893803v2$\spuninst\spuninst.exe
+ 2010-09-17 20:58 . 2011-08-30 06:04 753664 c:\windows\$hf_mig$\KB982802\update\update.exe
+ 2010-09-17 20:58 . 2011-08-30 06:04 227840 c:\windows\$hf_mig$\KB982802\spuninst.exe
+ 2010-08-12 22:01 . 2011-08-30 06:04 753664 c:\windows\$hf_mig$\KB982665\update\update.exe
+ 2010-08-12 22:01 . 2011-08-30 06:04 227840 c:\windows\$hf_mig$\KB982665\spuninst.exe
+ 2010-06-13 10:54 . 2011-08-30 06:04 753664 c:\windows\$hf_mig$\KB982381\update\update.exe
+ 2010-06-13 10:54 . 2011-08-30 06:04 227840 c:\windows\$hf_mig$\KB982381\spuninst.exe
+ 2010-11-03 05:48 . 2011-08-30 06:04 753664 c:\windows\$hf_mig$\KB982381-IE8\update\update.exe
+ 2010-11-03 05:48 . 2011-08-30 06:04 227840 c:\windows\$hf_mig$\KB982381-IE8\spuninst.exe
+ 2010-11-03 05:41 . 2011-08-30 06:04 176640 c:\windows\$hf_mig$\KB982381-IE8\SP3QFE\ie4uinit.exe
+ 2010-08-12 22:09 . 2011-08-30 06:04 753664 c:\windows\$hf_mig$\KB982214\update\update.exe
+ 2010-08-12 22:09 . 2011-08-30 06:04 227840 c:\windows\$hf_mig$\KB982214\spuninst.exe
+ 2010-10-15 08:14 . 2011-08-30 06:04 753664 c:\windows\$hf_mig$\KB982132\update\update.exe
+ 2010-10-15 08:14 . 2011-08-30 06:04 227840 c:\windows\$hf_mig$\KB982132\spuninst.exe
+ 2010-08-12 22:02 . 2011-08-30 06:04 753664 c:\windows\$hf_mig$\KB981997\update\update.exe
+ 2010-08-12 22:02 . 2011-08-30 06:04 227840 c:\windows\$hf_mig$\KB981997\spuninst.exe
+ 2010-10-15 08:07 . 2011-08-30 06:04 753664 c:\windows\$hf_mig$\KB981957\update\update.exe
+ 2010-10-15 08:07 . 2011-08-30 06:04 227840 c:\windows\$hf_mig$\KB981957\spuninst.exe
+ 2010-08-12 22:09 . 2011-08-30 06:04 753664 c:\windows\$hf_mig$\KB981852\update\update.exe
+ 2010-08-12 22:09 . 2011-08-30 06:04 227840 c:\windows\$hf_mig$\KB981852\spuninst.exe
+ 2010-04-15 07:29 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB981349\update\update.exe
+ 2010-04-15 07:29 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB981349\spuninst.exe
+ 2010-11-03 22:46 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB981332-IE8\update\update.exe
+ 2010-11-03 22:46 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB981332-IE8\spuninst.exe
+ 2010-09-17 20:58 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB981322\update\update.exe
+ 2010-09-17 20:58 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB981322\spuninst.exe
+ 2010-08-12 22:07 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB980436\update\update.exe
+ 2010-08-12 22:07 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB980436\spuninst.exe
+ 2010-04-15 07:31 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB980232\update\update.exe
+ 2010-04-15 07:31 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB980232\spuninst.exe
+ 2010-06-13 10:57 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB980218\update\update.exe
+ 2010-06-13 10:57 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB980218\spuninst.exe
+ 2010-06-13 10:57 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB980195\update\update.exe
+ 2010-06-13 10:57 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB980195\spuninst.exe
+ 2010-03-31 23:11 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB980182\update\update.exe
+ 2010-03-31 23:11 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB980182\spuninst.exe
+ 2010-10-15 08:13 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB979687\update\update.exe
+ 2010-10-15 08:13 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB979687\spuninst.exe
+ 2010-07-16 11:56 . 2011-08-30 06:03 223232 c:\windows\$hf_mig$\KB979687\SP3QFE\wordpad.exe
+ 2010-04-15 07:31 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB979683\update\update.exe
+ 2010-04-15 07:31 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB979683\spuninst.exe
+ 2010-06-13 10:57 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB979559\update\update.exe
+ 2010-06-13 10:57 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB979559\spuninst.exe
+ 2010-06-13 10:55 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB979482\update\update.exe
+ 2010-06-13 10:55 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB979482\spuninst.exe
+ 2010-04-15 07:29 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB979309\update\update.exe
+ 2010-04-15 07:29 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB979309\spuninst.exe
+ 2010-02-10 23:07 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB978706\update\update.exe
+ 2010-02-10 23:07 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB978706\spuninst.exe
+ 2009-12-17 07:39 . 2011-08-30 06:03 347136 c:\windows\$hf_mig$\KB978706\SP3QFE\mspaint.exe
+ 2010-04-15 07:29 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB978601\update\update.exe
+ 2010-04-15 07:29 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB978601\spuninst.exe
+ 2010-05-12 20:20 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB978542\update\update.exe
+ 2010-05-12 20:20 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB978542\spuninst.exe
+ 2010-04-15 07:29 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB978338\update\update.exe
+ 2010-04-15 07:29 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB978338\spuninst.exe
+ 2010-02-10 23:09 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB978262\update\update.exe
+ 2010-02-10 23:09 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB978262\spuninst.exe
+ 2010-02-10 23:07 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB978251\update\update.exe
+ 2010-02-10 23:07 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB978251\spuninst.exe
+ 2010-01-22 22:32 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB978207\update\update.exe
+ 2010-01-22 22:32 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB978207\spuninst.exe
+ 2010-02-10 23:07 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB978037\update\update.exe
+ 2010-02-10 23:07 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB978037\spuninst.exe
+ 2010-02-10 23:07 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB977914\update\update.exe
+ 2010-02-10 23:07 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB977914\spuninst.exe
+ 2010-04-15 07:29 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB977816\update\update.exe
+ 2010-04-15 07:29 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB977816\spuninst.exe
+ 2010-02-10 23:07 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB977165\update\update.exe
+ 2010-02-10 23:07 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB977165\spuninst.exe
+ 2009-11-04 23:09 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB976749\update\update.exe
+ 2009-11-04 23:09 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB976749\spuninst.exe
+ 2010-11-03 22:46 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB976662-IE8\update\update.exe
+ 2010-11-03 22:46 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB976662-IE8\spuninst.exe
+ 2009-12-09 22:21 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB976325\update\update.exe
+ 2009-12-09 22:21 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB976325\spuninst.exe
+ 2010-02-10 23:07 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB975713\update\update.exe
+ 2010-02-10 23:07 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB975713\spuninst.exe
+ 2010-06-13 10:55 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB975562\update\update.exe
+ 2010-06-13 10:55 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB975562\spuninst.exe
+ 2010-03-10 08:57 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB975561\update\update.exe
+ 2010-03-10 08:57 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB975561\spuninst.exe
+ 2010-02-10 23:07 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB975560\update\update.exe
+ 2010-02-10 23:07 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB975560\spuninst.exe
+ 2009-10-14 22:08 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB975467\update\update.exe
+ 2009-10-14 22:08 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB975467\spuninst.exe
+ 2009-10-14 22:08 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB975025\update\update.exe
+ 2009-10-14 22:08 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB975025\spuninst.exe
+ 2009-10-14 22:08 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB974571\update\update.exe
+ 2009-10-14 22:08 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB974571\spuninst.exe
+ 2009-10-14 22:08 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB974455\update\update.exe
+ 2009-10-14 22:08 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB974455\spuninst.exe
+ 2009-12-09 22:21 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB974392\update\update.exe
+ 2009-12-09 22:21 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB974392\spuninst.exe
+ 2009-12-09 22:21 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB974318\update\update.exe
+ 2009-12-09 22:21 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB974318\spuninst.exe
+ 2009-10-14 22:08 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB974112\update\update.exe
+ 2009-10-14 22:08 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB974112\spuninst.exe
+ 2009-12-09 22:21 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB973904\update\update.exe
+ 2009-12-09 22:21 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB973904\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB973869\update\update.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB973869\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB973815\update\update.exe
+ 2009-08-26 09:04 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB973815\spuninst.exe
+ 2009-11-26 01:41 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB973687\update\update.exe
+ 2009-11-26 01:41 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB973687\spuninst.exe
+ 2009-10-14 22:08 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB973525\update\update.exe
+ 2009-10-14 22:08 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB973525\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB973507\update\update.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB973507\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB973354\update\update.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB973354\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB973346\update\update.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB973346\spuninst.exe
+ 2010-01-14 01:02 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB972270\update\update.exe
+ 2010-01-14 01:02 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB972270\spuninst.exe
+ 2009-08-26 09:06 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB972260\update\update.exe
+ 2009-08-26 09:06 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB972260\spuninst.exe
+ 2009-09-09 20:46 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB971961\update\update.exe
+ 2009-09-09 20:46 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB971961\spuninst.exe
+ 2010-11-03 22:46 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB971961-IE8\update\update.exe
+ 2010-11-03 22:46 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB971961-IE8\spuninst.exe
+ 2009-12-09 22:21 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB971737\update\update.exe
+ 2009-12-09 22:21 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB971737\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB971657\update\update.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB971657\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB971633\update\update.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB971633\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB971557\update\update.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB971557\spuninst.exe
+ 2009-10-14 22:08 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB971486\update\update.exe
+ 2009-10-14 22:08 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB971486\spuninst.exe
+ 2010-02-10 23:09 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB971468\update\update.exe
+ 2010-02-10 23:09 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB971468\spuninst.exe
+ 2011-03-16 06:55 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB971029\update\update.exe
+ 2011-03-16 06:55 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB971029\spuninst.exe
+ 2009-12-09 22:21 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB970430\update\update.exe
+ 2009-12-09 22:21 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB970430\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB970238\update\update.exe
+ 2009-08-26 09:04 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB970238\spuninst.exe
+ 2009-11-12 22:33 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB969947\update\update.exe
+ 2009-11-12 22:33 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB969947\spuninst.exe
+ 2009-10-14 22:08 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB969059\update\update.exe
+ 2009-10-14 22:08 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB969059\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB968537\update\update.exe
+ 2009-08-26 09:04 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB968537\spuninst.exe
+ 2009-08-26 22:04 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB968389\update\update.exe
+ 2009-08-26 22:04 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB968389\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB967715\update\update.exe
+ 2009-08-26 09:04 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB967715\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB961501\update\update.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB961501\spuninst.exe
+ 2009-08-26 22:04 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB961371-v2\update\update.exe
+ 2009-08-26 22:04 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB961371-v2\spuninst.exe
+ 2009-08-26 09:06 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB960859\update\update.exe
+ 2009-08-26 09:06 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB960859\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB960803\update\update.exe
+ 2009-08-26 09:04 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB960803\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB960225\update\update.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB960225\spuninst.exe
+ 2009-08-26 09:06 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB959426\update\update.exe
+ 2009-08-26 09:06 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB959426\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB958687\update\update.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB958687\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB958644\update\update.exe
+ 2009-08-26 09:04 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB958644\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:03 716800 c:\windows\$hf_mig$\KB958470\update\update.exe
+ 2009-08-26 09:04 . 2011-08-30 06:03 212480 c:\windows\$hf_mig$\KB958470\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB957097\update\update.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB957097\spuninst.exe
+ 2009-09-09 20:47 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB956844\update\update.exe
+ 2009-09-09 20:47 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB956844\spuninst.exe
+ 2009-08-26 09:06 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB956803\update\update.exe
+ 2009-08-26 09:06 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB956803\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB956802\update\update.exe
+ 2009-08-26 09:04 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB956802\spuninst.exe
+ 2009-11-30 22:53 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB956744\update\update.exe
+ 2009-11-30 22:53 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB956744\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB956572\update\update.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB956572\spuninst.exe
+ 2009-08-26 01:01 . 2011-08-30 06:03 231936 c:\windows\$hf_mig$\KB956572\SP3QFE\wmiprvse.exe
+ 2009-08-26 01:01 . 2011-08-30 06:03 114688 c:\windows\$hf_mig$\KB956572\SP3QFE\services.exe
+ 2009-08-26 01:01 . 2011-08-30 06:03 231936 c:\windows\$hf_mig$\KB956572\SP3GDR\wmiprvse.exe
+ 2009-08-26 01:01 . 2011-08-30 06:03 114688 c:\windows\$hf_mig$\KB956572\SP3GDR\services.exe
+ 2009-08-26 01:01 . 2011-08-30 06:03 231936 c:\windows\$hf_mig$\KB956572\SP2QFE\wmiprvse.exe
+ 2009-08-26 01:01 . 2011-08-30 06:03 114688 c:\windows\$hf_mig$\KB956572\SP2QFE\services.exe
+ 2009-08-26 09:06 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB955839\update\update.exe
+ 2009-08-26 09:06 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB955839\spuninst.exe
+ 2010-01-14 01:02 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB955759\update\update.exe
+ 2010-01-14 01:02 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB955759\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB955069\update\update.exe
+ 2009-08-26 09:04 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB955069\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB954600\update\update.exe
+ 2009-08-26 09:04 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB954600\spuninst.exe
+ 2009-08-26 09:06 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB952954\update\update.exe
+ 2009-08-26 09:06 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB952954\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB952287\update\update.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB952287\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB952004\update\update.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB952004\spuninst.exe
+ 2009-11-30 22:53 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB951978\update\update.exe
+ 2009-11-30 22:53 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB951978\spuninst.exe
+ 2008-05-08 11:24 . 2011-08-30 06:03 159744 c:\windows\$hf_mig$\KB951978\SP3QFE\wscript.exe
- 2008-05-07 09:07 . 2008-05-07 09:07 135168 c:\windows\$hf_mig$\KB951978\SP3QFE\cscript.exe
+ 2008-05-07 09:07 . 2011-08-30 06:03 135168 c:\windows\$hf_mig$\KB951978\SP3QFE\cscript.exe
+ 2009-08-26 09:04 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB951748\update\update.exe
+ 2009-08-26 09:04 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB951748\spuninst.exe
+ 2009-08-26 09:06 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB951376-v2\update\update.exe
+ 2009-08-26 09:06 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB951376-v2\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB951066\update\update.exe
+ 2009-08-26 09:04 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB951066\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB950974\update\update.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB950974\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB950762\update\update.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB950762\spuninst.exe
+ 2009-08-26 09:06 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB946648\update\update.exe
+ 2009-08-26 09:06 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB946648\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:03 716800 c:\windows\$hf_mig$\KB944338-v2\update\update.exe
+ 2009-08-26 09:04 . 2011-08-30 06:03 212480 c:\windows\$hf_mig$\KB944338-v2\spuninst.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB938464-v2\update\update.exe
+ 2009-08-26 09:05 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB938464-v2\spuninst.exe
+ 2009-08-26 09:06 . 2011-08-30 06:03 716800 c:\windows\$hf_mig$\KB935448\update\update.exe
+ 2009-08-26 09:06 . 2011-08-30 06:03 212480 c:\windows\$hf_mig$\KB935448\spuninst.exe
+ 2009-08-26 09:04 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB923561\update\update.exe
+ 2009-08-26 09:04 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB923561\spuninst.exe
+ 2009-08-26 01:00 . 2011-08-30 06:03 220672 c:\windows\$hf_mig$\KB923561\SP3QFE\wordpad.exe
+ 2009-08-26 01:00 . 2011-08-30 06:03 220672 c:\windows\$hf_mig$\KB923561\SP3GDR\wordpad.exe
+ 2009-08-26 01:00 . 2011-08-30 06:03 220672 c:\windows\$hf_mig$\KB923561\SP2QFE\wordpad.exe
+ 2009-08-25 11:20 . 2011-08-30 06:03 716800 c:\windows\$hf_mig$\KB911164\update\update.exe
+ 2009-08-25 11:20 . 2011-08-30 06:03 212480 c:\windows\$hf_mig$\KB911164\spuninst.exe
+ 2009-08-26 01:00 . 2011-08-30 06:03 718848 c:\windows\$hf_mig$\KB898461\update\update.exe
+ 2009-08-26 01:00 . 2011-08-30 06:03 208384 c:\windows\$hf_mig$\KB898461\spuninst.exe
+ 2011-07-13 20:20 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB2555917\update\update.exe
+ 2011-07-13 20:20 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB2555917\spuninst.exe
+ 2011-06-27 04:19 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB2544893\update\update.exe
+ 2011-06-27 04:19 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB2544893\spuninst.exe
+ 2011-06-27 04:19 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB2544521-IE8\update\update.exe
+ 2011-06-27 04:19 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB2544521-IE8\spuninst.exe
+ 2011-06-29 05:59 . 2011-08-30 06:03 753664 c:\windows\$hf_mig$\KB2541763\update\update.exe
+ 2011-06-29 05:59 . 2011-08-30 06:03 227840 c:\windows\$hf_mig$\KB2541763\spuninst.exe
+ 2011-06-27 04:20 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2536276\update\update.exe
+ 2011-06-27 04:20 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2536276\spuninst.exe
+ 2011-06-27 04:20 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2535512\update\update.exe
+ 2011-06-27 04:20 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2535512\spuninst.exe
+ 2011-06-27 04:19 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2530548-IE8\update\update.exe
+ 2011-06-27 04:19 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2530548-IE8\spuninst.exe
+ 2011-06-19 19:04 . 2011-08-30 06:02 177152 c:\windows\$hf_mig$\KB2530548-IE8\SP3QFE\ie4uinit.exe
+ 2011-03-24 06:49 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2524375\update\update.exe
+ 2011-03-24 06:49 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2524375\spuninst.exe
+ 2011-04-14 01:06 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2511455\update\update.exe
+ 2011-04-14 01:06 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2511455\spuninst.exe
+ 2011-04-14 01:00 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2510531-IE8\update\update.exe
+ 2011-04-14 01:00 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2510531-IE8\spuninst.exe
+ 2011-04-14 01:00 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2509553\update\update.exe
+ 2011-04-14 01:00 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2509553\spuninst.exe
+ 2011-04-14 01:06 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2508429\update\update.exe
+ 2011-04-14 01:06 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2508429\spuninst.exe
+ 2011-04-14 01:06 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2508272\update\update.exe
+ 2011-04-14 01:06 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2508272\spuninst.exe
+ 2011-07-13 20:25 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2507938\update\update.exe
+ 2011-07-13 20:25 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2507938\spuninst.exe
+ 2011-04-14 01:06 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2507618\update\update.exe
+ 2011-04-14 01:06 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2507618\spuninst.exe
+ 2011-04-14 01:07 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2506223\update\update.exe
+ 2011-04-14 01:07 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2506223\spuninst.exe
+ 2011-04-14 01:06 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2506212\update\update.exe
+ 2011-04-14 01:06 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2506212\spuninst.exe
+ 2011-06-27 04:20 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2503665\update\update.exe
+ 2011-06-27 04:20 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2503665\spuninst.exe
+ 2011-04-14 01:06 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2503658\update\update.exe
+ 2011-04-14 01:06 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2503658\spuninst.exe
+ 2011-04-14 01:07 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2497640-IE8\update\update.exe
+ 2011-04-14 01:07 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2497640-IE8\spuninst.exe
+ 2011-04-13 22:43 . 2011-08-30 06:02 177152 c:\windows\$hf_mig$\KB2497640-IE8\SP3QFE\ie4uinit.exe
+ 2011-04-14 01:07 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2485663\update\update.exe
+ 2011-04-14 01:07 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2485663\spuninst.exe
+ 2011-02-09 22:10 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2485376\update\update.exe
+ 2011-02-09 22:10 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2485376\spuninst.exe
+ 2011-02-09 22:10 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2483185\update\update.exe
+ 2011-02-09 22:10 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2483185\spuninst.exe
+ 2011-02-09 22:05 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2482017-IE8\update\update.exe
+ 2011-02-09 22:05 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2482017-IE8\spuninst.exe
+ 2011-02-09 10:08 . 2011-08-30 06:02 177152 c:\windows\$hf_mig$\KB2482017-IE8\SP3QFE\ie4uinit.exe
+ 2011-03-10 15:32 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2481109\update\update.exe
+ 2011-03-10 15:32 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2481109\spuninst.exe
+ 2011-01-27 11:41 . 2011-08-30 06:02 681472 c:\windows\$hf_mig$\KB2481109\SP3QFE\lhmstsc.exe
+ 2011-03-10 15:37 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2479943\update\update.exe
+ 2011-03-10 15:37 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2479943\spuninst.exe
+ 2011-02-09 22:10 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2479628\update\update.exe
+ 2011-02-09 22:10 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2479628\spuninst.exe
+ 2011-02-09 22:10 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2478971\update\update.exe
+ 2011-02-09 22:10 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2478971\spuninst.exe
+ 2011-02-09 22:04 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2478960\update\update.exe
+ 2011-02-09 22:04 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2478960\spuninst.exe
+ 2011-02-09 22:04 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2476687\update\update.exe
+ 2011-02-09 22:04 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2476687\spuninst.exe
+ 2011-06-27 04:20 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2476490\update\update.exe
+ 2011-06-27 04:20 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2476490\spuninst.exe
+ 2010-12-15 22:10 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2467659\update\update.exe
+ 2010-12-15 22:10 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2467659\spuninst.exe
+ 2010-12-15 22:11 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2443105\update\update.exe
+ 2010-12-15 22:11 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2443105\spuninst.exe
+ 2010-12-15 22:11 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2440591\update\update.exe
+ 2010-12-15 22:11 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2440591\spuninst.exe
+ 2010-12-15 22:11 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2436673\update\update.exe
+ 2010-12-15 22:11 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2436673\spuninst.exe
+ 2010-12-15 22:04 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2423089\update\update.exe
+ 2010-12-15 22:04 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2423089\spuninst.exe
+ 2011-01-11 21:54 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2419632\update\update.exe
+ 2011-01-11 21:54 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2419632\spuninst.exe
+ 2010-12-15 22:11 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2416400-IE8\update\update.exe
+ 2010-12-15 22:11 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2416400-IE8\spuninst.exe
+ 2010-12-15 13:50 . 2011-08-30 06:02 177152 c:\windows\$hf_mig$\KB2416400-IE8\SP3QFE\ie4uinit.exe
+ 2011-02-09 22:04 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2393802\update\update.exe
+ 2011-02-09 22:04 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2393802\spuninst.exe
+ 2010-10-15 08:14 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2387149\update\update.exe
+ 2010-10-15 08:14 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2387149\spuninst.exe
+ 2010-11-03 05:48 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2362765-IE8\update\update.exe
+ 2010-11-03 05:48 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2362765-IE8\spuninst.exe
+ 2010-10-15 08:07 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2360937\update\update.exe
+ 2010-10-15 08:07 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2360937\spuninst.exe
+ 2010-10-15 08:14 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2360131\update\update.exe
+ 2010-10-15 08:14 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2360131\spuninst.exe
+ 2010-11-03 05:49 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2360131-IE8\update\update.exe
+ 2010-11-03 05:49 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2360131-IE8\spuninst.exe
+ 2010-11-03 05:41 . 2011-08-30 06:02 176640 c:\windows\$hf_mig$\KB2360131-IE8\SP3QFE\ie4uinit.exe
+ 2010-09-17 20:58 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2347290\update\update.exe
+ 2010-09-17 20:58 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2347290\spuninst.exe
+ 2010-10-15 08:14 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2345886\update\update.exe
+ 2010-10-15 08:14 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2345886\spuninst.exe
+ 2010-12-15 22:11 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2296199\update\update.exe
+ 2010-12-15 22:11 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2296199\spuninst.exe
+ 2010-08-03 07:16 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2286198\update\update.exe
+ 2010-08-03 07:16 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2286198\spuninst.exe
+ 2010-10-15 08:14 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2279986\update\update.exe
+ 2010-10-15 08:14 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2279986\spuninst.exe
+ 2010-09-17 20:59 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2259922\update\update.exe
+ 2010-09-17 20:59 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2259922\spuninst.exe
+ 2010-07-14 21:48 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2229593\update\update.exe
+ 2010-07-14 21:48 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2229593\spuninst.exe
+ 2010-07-14 14:04 . 2011-08-30 06:02 748032 c:\windows\$hf_mig$\KB2229593\SP3QFE\helpsvc.exe
+ 2010-08-12 22:09 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2183461\update\update.exe
+ 2010-08-12 22:09 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2183461\spuninst.exe
+ 2010-08-12 22:07 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2160329\update\update.exe
+ 2010-08-12 22:07 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2160329\spuninst.exe
+ 2010-09-17 20:53 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2141007\update\update.exe
+ 2010-09-17 20:53 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2141007\spuninst.exe
+ 2010-09-17 20:58 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2121546\update\update.exe
+ 2010-09-17 20:58 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2121546\spuninst.exe
+ 2010-08-12 22:09 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2115168\update\update.exe
+ 2010-08-12 22:09 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2115168\spuninst.exe
+ 2010-08-12 22:09 . 2011-08-30 06:02 753664 c:\windows\$hf_mig$\KB2079403\update\update.exe
+ 2010-08-12 22:09 . 2011-08-30 06:02 227840 c:\windows\$hf_mig$\KB2079403\spuninst.exe
+ 2004-08-17 15:45 . 2010-12-09 15:14 2029056 c:\windows\system32\ntkrnlpa.exe
- 2004-08-17 15:45 . 2010-12-09 15:14 2029056 c:\windows\system32\ntkrnlpa.exe
+ 2009-08-25 11:18 . 2011-08-30 06:10 1678336 c:\windows\system32\dllcache\setup_wm.exe
+ 2009-08-26 01:01 . 2011-08-30 06:10 2033152 c:\windows\system32\dllcache\ntkrpamp.exe
+ 2009-02-10 17:09 . 2011-08-30 06:10 2075136 c:\windows\system32\dllcache\ntkrnlpa.exe
+ 2009-08-26 01:01 . 2011-08-30 06:10 2155008 c:\windows\system32\dllcache\ntkrnlmp.exe
+ 2010-03-10 00:44 . 2011-08-30 06:10 3562496 c:\windows\system32\dllcache\moviemk.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 1698816 c:\windows\ServicePackFiles\ServicePackCache\i386\msmsgs.exe
+ 2008-04-14 02:36 . 2011-08-30 06:09 2030080 c:\windows\ServicePackFiles\i386\ntkrpamp.exe
+ 2008-04-14 02:36 . 2011-08-30 06:09 2071680 c:\windows\ServicePackFiles\i386\ntkrnlpa.exe
+ 2008-04-14 02:36 . 2011-08-30 06:09 2150912 c:\windows\ServicePackFiles\i386\ntkrnlmp.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 1698816 c:\windows\ServicePackFiles\i386\msmsgs.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 3562496 c:\windows\ServicePackFiles\i386\moviemk.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 1418752 c:\windows\ServicePackFiles\i386\mmc.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 1037824 c:\windows\ServicePackFiles\i386\explorer.exe
+ 2008-04-14 03:22 . 2011-08-30 06:09 1302528 c:\windows\ServicePackFiles\i386\dxdiag.exe
+ 2008-04-14 03:22 . 2011-08-30 06:08 1036288 c:\windows\ServicePackFiles\i386\conf.exe
+ 2008-07-29 21:40 . 2011-08-30 06:08 1715200 c:\windows\Microsoft.NET\Framework\v3.5\vbc.exe
+ 2008-07-29 21:40 . 2011-08-30 06:08 1542656 c:\windows\Microsoft.NET\Framework\v3.5\csc.exe
+ 2008-07-25 09:17 . 2011-08-30 06:08 1166848 c:\windows\Microsoft.NET\Framework\v2.0.50727\vbc.exe
+ 2009-08-26 01:01 . 2011-08-30 06:06 2033152 c:\windows\Driver Cache\i386\ntkrpamp.exe
+ 2009-02-10 17:09 . 2011-08-30 06:06 2075136 c:\windows\Driver Cache\i386\ntkrnlpa.exe
+ 2009-08-26 01:01 . 2011-08-30 06:06 2155008 c:\windows\Driver Cache\i386\ntkrnlmp.exe
+ 2010-08-12 22:02 . 2011-08-30 06:05 3562496 c:\windows\$NtUninstallKB981997$\moviemk.exe
+ 2010-08-12 22:09 . 2011-08-30 06:05 2030592 c:\windows\$NtUninstallKB981852$\ntkrpamp.exe
+ 2010-08-12 22:09 . 2011-08-30 06:05 2030592 c:\windows\$NtUninstallKB981852$\ntkrnlpa.exe
+ 2010-08-12 22:09 . 2011-08-30 06:05 2151936 c:\windows\$NtUninstallKB981852$\ntkrnlmp.exe
+ 2010-04-15 07:31 . 2011-08-30 06:05 2030080 c:\windows\$NtUninstallKB979683$\ntkrpamp.exe
+ 2010-04-15 07:31 . 2011-08-30 06:05 2030080 c:\windows\$NtUninstallKB979683$\ntkrnlpa.exe
+ 2010-04-15 07:31 . 2011-08-30 06:05 2150912 c:\windows\$NtUninstallKB979683$\ntkrnlmp.exe
+ 2010-02-10 23:07 . 2011-08-30 06:05 2030080 c:\windows\$NtUninstallKB977165$\ntkrpamp.exe
+ 2010-02-10 23:07 . 2011-08-30 06:05 2030080 c:\windows\$NtUninstallKB977165$\ntkrnlpa.exe
+ 2010-02-10 23:07 . 2011-08-30 06:05 2150912 c:\windows\$NtUninstallKB977165$\ntkrnlmp.exe
+ 2010-03-10 08:57 . 2011-08-30 06:05 3562496 c:\windows\$NtUninstallKB975561$\moviemk.exe
+ 2009-10-14 22:08 . 2011-08-30 06:05 2021376 c:\windows\$NtUninstallKB971486_0$\ntkrpamp.exe
+ 2009-10-14 22:08 . 2011-08-30 06:05 2021376 c:\windows\$NtUninstallKB971486_0$\ntkrnlpa.exe
+ 2009-10-14 22:08 . 2011-08-30 06:05 2141696 c:\windows\$NtUninstallKB971486_0$\ntkrnlmp.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 2030080 c:\windows\$NtUninstallKB971486$\ntkrpamp.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 2030080 c:\windows\$NtUninstallKB971486$\ntkrnlpa.exe
+ 2009-11-29 16:56 . 2011-08-30 06:05 2150912 c:\windows\$NtUninstallKB971486$\ntkrnlmp.exe
+ 2009-08-26 09:05 . 2011-08-30 06:05 2020864 c:\windows\$NtUninstallKB956572_0$\ntkrnlpa.exe
+ 2009-11-29 16:54 . 2011-08-30 06:05 2030080 c:\windows\$NtUninstallKB956572$\ntkrnlpa.exe
+ 2011-02-09 22:04 . 2011-08-30 06:04 2030592 c:\windows\$NtUninstallKB2393802$\ntkrpamp.exe
+ 2011-02-09 22:04 . 2011-08-30 06:04 2030592 c:\windows\$NtUninstallKB2393802$\ntkrnlpa.exe
+ 2011-02-09 22:04 . 2011-08-30 06:04 2151936 c:\windows\$NtUninstallKB2393802$\ntkrnlmp.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 2021376 c:\windows\$NtServicePackUninstall$\ntkrpamp.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 2021376 c:\windows\$NtServicePackUninstall$\ntkrnlpa.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 2141696 c:\windows\$NtServicePackUninstall$\ntkrnlmp.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 1671168 c:\windows\$NtServicePackUninstall$\msmsgs.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 3558912 c:\windows\$NtServicePackUninstall$\moviemk.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 1036288 c:\windows\$NtServicePackUninstall$\explorer.exe
+ 2009-11-29 16:49 . 2011-08-30 06:04 1302528 c:\windows\$NtServicePackUninstall$\dxdiag.exe
+ 2009-11-29 16:50 . 2011-08-30 06:04 1036288 c:\windows\$NtServicePackUninstall$\conf.exe
+ 2010-08-12 05:37 . 2011-08-30 06:04 3562496 c:\windows\$hf_mig$\KB981997\SP3QFE\moviemk.exe
+ 2010-08-12 05:37 . 2011-08-30 06:04 2030592 c:\windows\$hf_mig$\KB981852\SP3QFE\ntkrpamp.exe
+ 2010-04-28 21:19 . 2011-08-30 06:04 2072704 c:\windows\$hf_mig$\KB981852\SP3QFE\ntkrnlpa.exe
+ 2010-08-12 05:37 . 2011-08-30 06:04 2151936 c:\windows\$hf_mig$\KB981852\SP3QFE\ntkrnlmp.exe
+ 2010-04-14 06:43 . 2011-08-30 06:03 2030592 c:\windows\$hf_mig$\KB979683\SP3QFE\ntkrpamp.exe
+ 2010-04-14 06:43 . 2011-08-30 06:03 2072704 c:\windows\$hf_mig$\KB979683\SP3QFE\ntkrnlpa.exe
+ 2010-04-14 06:43 . 2011-08-30 06:03 2151936 c:\windows\$hf_mig$\KB979683\SP3QFE\ntkrnlmp.exe
+ 2010-02-10 13:36 . 2011-08-30 06:03 2030080 c:\windows\$hf_mig$\KB977165\SP3QFE\ntkrpamp.exe
+ 2009-12-09 14:33 . 2011-08-30 06:03 2072064 c:\windows\$hf_mig$\KB977165\SP3QFE\ntkrnlpa.exe
+ 2010-02-10 13:36 . 2011-08-30 06:03 2150912 c:\windows\$hf_mig$\KB977165\SP3QFE\ntkrnlmp.exe
+ 2010-03-10 00:44 . 2011-08-30 06:03 3562496 c:\windows\$hf_mig$\KB975561\SP3QFE\moviemk.exe
+ 2009-10-14 11:52 . 2011-08-30 06:03 2030080 c:\windows\$hf_mig$\KB971486\SP3QFE\ntkrpamp.exe
+ 2009-08-04 20:53 . 2011-08-30 06:03 2072064 c:\windows\$hf_mig$\KB971486\SP3QFE\ntkrnlpa.exe
+ 2009-10-14 11:52 . 2011-08-30 06:03 2150912 c:\windows\$hf_mig$\KB971486\SP3QFE\ntkrnlmp.exe
+ 2009-10-14 11:52 . 2011-08-30 06:03 2030080 c:\windows\$hf_mig$\KB971486\SP3GDR\ntkrpamp.exe
+ 2009-10-14 11:52 . 2011-08-30 06:03 2071936 c:\windows\$hf_mig$\KB971486\SP3GDR\ntkrnlpa.exe
+ 2009-10-14 11:52 . 2011-08-30 06:03 2150912 c:\windows\$hf_mig$\KB971486\SP3GDR\ntkrnlmp.exe
+ 2009-10-14 11:52 . 2011-08-30 06:03 2026496 c:\windows\$hf_mig$\KB971486\SP2QFE\ntkrpamp.exe
+ 2009-10-14 11:52 . 2011-08-30 06:03 2068736 c:\windows\$hf_mig$\KB971486\SP2QFE\ntkrnlpa.exe
+ 2009-10-14 11:52 . 2011-08-30 06:03 2148352 c:\windows\$hf_mig$\KB971486\SP2QFE\ntkrnlmp.exe
+ 2009-08-26 01:01 . 2011-08-30 06:03 2030080 c:\windows\$hf_mig$\KB956572\SP3QFE\ntkrpamp.exe
+ 2009-08-26 01:01 . 2011-08-30 06:03 2072064 c:\windows\$hf_mig$\KB956572\SP3QFE\ntkrnlpa.exe
+ 2009-08-26 01:01 . 2011-08-30 06:03 2150912 c:\windows\$hf_mig$\KB956572\SP3QFE\ntkrnlmp.exe
+ 2009-08-26 01:01 . 2011-08-30 06:03 2030080 c:\windows\$hf_mig$\KB956572\SP3GDR\ntkrpamp.exe
+ 2009-02-10 17:09 . 2011-08-30 06:03 2071936 c:\windows\$hf_mig$\KB956572\SP3GDR\ntkrnlpa.exe
+ 2009-08-26 01:01 . 2011-08-30 06:03 2150912 c:\windows\$hf_mig$\KB956572\SP3GDR\ntkrnlmp.exe
+ 2009-08-26 01:01 . 2011-08-30 06:03 2026496 c:\windows\$hf_mig$\KB956572\SP2QFE\ntkrpamp.exe
+ 2009-08-26 01:01 . 2011-08-30 06:03 2068736 c:\windows\$hf_mig$\KB956572\SP2QFE\ntkrnlpa.exe
+ 2009-08-26 01:01 . 2011-08-30 06:03 2148352 c:\windows\$hf_mig$\KB956572\SP2QFE\ntkrnlmp.exe
+ 2011-02-09 10:08 . 2011-08-30 06:02 2033152 c:\windows\$hf_mig$\KB2393802\SP3QFE\ntkrpamp.exe
+ 2010-12-09 19:44 . 2011-08-30 06:02 2075136 c:\windows\$hf_mig$\KB2393802\SP3QFE\ntkrnlpa.exe
+ 2011-02-09 10:08 . 2011-08-30 06:02 2155008 c:\windows\$hf_mig$\KB2393802\SP3QFE\ntkrnlmp.exe
+ 2009-11-29 16:12 . 2011-08-30 06:10 52388352 c:\windows\system32\MRT.exe
.
-- Snímek resetován k současnému datu --
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NokiaMServer"="c:\program files\Common Files\Nokia\MPlatform\NokiaMServer" [X]
"nwiz"="c:\program files\NVIDIA Corporation\nView\nwiz.exe" [2011-08-30 1654784]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-08-17 13877248]
"RTHDCPL"="RTHDCPL.EXE" [2009-07-02 18665472]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
McAfee Security Scan.lnk - c:\program files\McAfee Security Scan\1.0.150\SSScheduler.exe [N/A]
Ralink Wireless Utility.lnk - c:\program files\RALINK\Common\RaUI.exe [2009-8-26 675840]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\ckpNotify]
2005-06-19 11:01 24669 ----a-w- c:\windows\system32\ckpNotify.dll
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\CheckPoint\\SecuRemote\\bin\\SR_Service.exe"=
"c:\\Program Files\\CheckPoint\\SecuRemote\\bin\\SR_GUI.exe"=
"c:\\Program Files\\CheckPoint\\SecuRemote\\bin\\scc.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Nero\\Nero 7\\Nero ShowTime\\ShowTime.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\WINDOWS\\system32\\dpvsetup.exe"=
"c:\\Program Files\\Nokia\\Nokia Ovi Suite\\NokiaOviSuite.exe"=
"c:\\Program Files\\Common Files\\Nokia\\Service Layer\\A\\nsl_host_process.exe"=
"c:\\Program Files\\Google\\Google Earth\\plugin\\geplugin.exe"=
"d:\\QIP\\qip.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"c:\\Program Files\\Ubisoft\\Ubisoft Game Launcher\\UbisoftGameLauncher.exe"=
"d:\\games\\CSS source\\SteamApps\\rogan112\\half-life 2 deathmatch\\hl2.exe"=
"c:\\Program Files\\Counter-Strike Source\\hl2.exe"=
"d:\\games\\CSS source\\SteamApps\\rogan112\\counter-strike source\\hl2.exe"=
"c:\\Program Files\\LucasArts\\SWKotOR\\launcher.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\Ubisoft\\Assassin's Creed II\\AssassinsCreedIIGame.exe"=
"c:\\Program Files\\Ubisoft\\Assassin's Creed II\\AssassinsCreedII.exe"=
"c:\\Program Files\\Ubisoft\\Assassin's Creed II\\UPlayBrowser.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"3389:TCP"= 3389:TCP:@xpsp2res.dll,-22009
.
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [25.1.2010 17:44 691696]
R2 CP_OMDRV;Check Point Office Mode Module;c:\windows\system32\drivers\omdrv.sys [25.8.2009 16:11 36400]
R2 VNASC;Check Point Virtual Network Adapter - SecureClient;c:\windows\system32\drivers\vnasc.sys [25.8.2009 16:11 109072]
R2 VPN-1;VPN-1 Module;c:\windows\system32\drivers\vpn.sys [25.8.2009 16:11 671408]
R3 FW1;SecuRemote Miniport;c:\windows\system32\drivers\fw.sys [25.8.2009 16:13 2234320]
S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [25.8.2009 13:33 1684736]
S3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [29.8.2011 20:26 41272]
.
.
------- Doplňkový sken -------
.
uDefault_Search_URL = hxxp://www.google.com/ie
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: WikiKomentáře Google... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
IE: {{0E46D7B6-887D-4F81-B4CA-FCC92AF73610} - {0E46D7B6-887D-4F81-B4CA-FCC92AF73610} - c:\program files\Seznam.cz\listicka.dll
TCP: DhcpNameServer = 192.168.2.1
FF - ProfilePath - c:\documents and settings\Kostkova\Data aplikací\Mozilla\Firefox\Profiles\s102qj25.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
HKCU-Run-Steam - d:\games\css source\steam.exe
AddRemove-Steam App 240 - d:\games\CSS source\steam.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-08-30 18:55
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'explorer.exe'(3552)
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\program files\Nokia\Nokia PC Suite 7\PhoneBrowser.dll
c:\program files\Nokia\Nokia PC Suite 7\NGSCM.DLL
c:\program files\Nokia\Nokia PC Suite 7\Lang\PhoneBrowser_cze.nlr
c:\program files\Nokia\Nokia PC Suite 7\Resource\PhoneBrowser_Nokia.ngr
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\nvsvc32.exe
c:\program files\CheckPoint\SecuRemote\bin\SR_Service.exe
c:\program files\CheckPoint\SecuRemote\bin\SR_WatchDog.exe
c:\program files\CheckPoint\SecuRemote\bin\SR_GUI.Exe
c:\windows\RTHDCPL.EXE
c:\program files\Common Files\Nokia\MPlatform\NokiaMServer.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
c:\windows\system32\PnkBstrA.exe
.
**************************************************************************
.
Celkový čas: 2011-08-30 18:58:07 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-08-30 16:58
ComboFix2.txt 2011-08-29 19:58
.
Před spuštěním: Volných bajtů: 19 997 175 808
Po spuštění: Volných bajtů: 20 443 074 560
.
- - End Of File - - 525B7250A9E8797E12D230689F62F3B9

Re: Restarty PC + nefunkční antiviry

Napsal: 01 zář 2011 20:55
od motji
Dobrý večer, záskok za kolegu :) .
Jak to ted vypadá s počítačem? Můžete prosím stahnout nový combofix a udělat sken?

Re: Restarty PC + nefunkční antiviry

Napsal: 02 zář 2011 10:32
od Michal Z.
Dobrý den,
s počítačem to bohužel vypadá hůře, s počítačem jsme nic nedělali až do chvíle, kdy sousedka vyhodila omylem pojistky v bytě s tímto PC, od té chvíle nenaběhnou windows, obnovení poslední známé konfigurace nefunguje - oboje jen černá obrazovka s kurzorem. Nouzový režim ovšem funguje. Je nějaká možnost obnovy (bez nutnosti přeinstalace apod.) přes tento režim? Děkuji za břebrání po kolegovi, snad to dotáhneme do zdárného konce :)

Michal

Re: Restarty PC + nefunkční antiviry

Napsal: 02 zář 2011 12:15
od motji
Předtím šel pc i v běžném režimu, nebo jen v nouzovém?
Poprosím o nový log ze rsitu.