Stránka 1 z 2

Kontrola logu

Napsal: 03 říj 2011 15:34
od Y0G1
Logfile of random's system information tool 1.09 (written by random/random)
Run by Haligy at 2011-10-03 16:22:15
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 67 GB (87%) free of 76 GB
Total RAM: 1023 MB (52% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:33:03, on 3.10.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Documents and Settings\Haligy\Desktop\DotaToolKit.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\explorer.exe
C:\Programy\QIP\qip.exe
C:\Documents and Settings\Haligy\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Haligy\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Haligy\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Haligy\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Haligy\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Haligy\My Documents\Downloads\RSIT.exe
C:\Program Files\trend micro\Haligy.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource= ... =CT1750559
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R3 - URLSearchHook: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O3 - Toolbar: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: DotaToolKit.lnk = C:\Documents and Settings\Haligy\Desktop\DotaToolKit.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} (System Requirements Lab) - http://www.nvidia.com/content/DriverDow ... ab_nvd.cab
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe

--
End of file - 5086 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-06-06 63912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
Conduit Engine - C:\Program Files\ConduitEngine\ConduitEngine.dll [2010-11-29 3908192]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-09-21 42272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-09-21 79648]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
BS Player Toolbar - C:\Program Files\BS_Player\tbBS_P.dll [2010-11-29 3908192]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - BS Player Toolbar - C:\Program Files\BS_Player\tbBS_P.dll [2010-11-29 3908192]
{30F9B915-B755-4826-820B-08FBA6BD249D} - Conduit Engine - C:\Program Files\ConduitEngine\ConduitEngine.dll [2010-11-29 3908192]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2011-04-21 281768]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2011-08-03 13892200]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-06-06 937920]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
C:\WINDOWS\system32\NvCpl.dll [2011-08-03 13892200]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
NvMCTray.dll,NvTaskbarInit -login []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
C:\Program Files\NVIDIA Corporation\nView\nwiz.exe [2011-07-05 1632360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMan]
C:\WINDOWS\SOUNDMAN.EXE [2005-05-17 77824]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
C:\Programy\Steam\Steam.exe [2011-09-23 1242448]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-06-09 254696]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UserFaultCheck]
C:\WINDOWS\system32\dumprep 0 -u []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
C:\Programy\Winamp\winampa.exe [2011-07-11 74752]

C:\Documents and Settings\Haligy\Start Menu\Programs\Startup
DotaToolKit.lnk - C:\Documents and Settings\Haligy\Desktop\DotaToolKit.exe

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe"="C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe:*:Enabled:Daemonu.exe"
"C:\Programy\Winamp\winamp.exe"="C:\Programy\Winamp\winamp.exe:*:Enabled:Winamp"
"C:\Programy\Steam\Steam.exe"="C:\Programy\Steam\Steam.exe:*:Enabled:Steam"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Hry\Warcraft III\Frozen Throne.exe"="C:\Hry\Warcraft III\Frozen Throne.exe:*:Enabled:Warcraft III - The Frozen Throne"
"C:\Program Files\DotAlicious Gaming Client\client.exe"="C:\Program Files\DotAlicious Gaming Client\client.exe:*:Enabled:client"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.l3acm"=C:\WINDOWS\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"msacm.l3fhg"=mp3fhg.acm
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=xvidvfw.dll
"msacm.ac3acm"=ac3acm.acm
"VIDC.FFDS"=ff_vfw.dll

======List of files/folders created in the last 1 month======

2011-10-03 16:22:16 ----D---- C:\Program Files\trend micro
2011-10-03 16:22:15 ----D---- C:\rsit
2011-10-03 16:17:06 ----SHD---- C:\RECYCLER
2011-10-03 16:13:29 ----A---- C:\ComboFix.txt
2011-10-03 15:46:59 ----A---- C:\Boot.bak
2011-10-03 15:46:53 ----RASHD---- C:\cmdcons
2011-10-03 15:44:15 ----A---- C:\WINDOWS\zip.exe
2011-10-03 15:44:15 ----A---- C:\WINDOWS\SWXCACLS.exe
2011-10-03 15:44:15 ----A---- C:\WINDOWS\SWSC.exe
2011-10-03 15:44:15 ----A---- C:\WINDOWS\SWREG.exe
2011-10-03 15:44:15 ----A---- C:\WINDOWS\sed.exe
2011-10-03 15:44:15 ----A---- C:\WINDOWS\PEV.exe
2011-10-03 15:44:15 ----A---- C:\WINDOWS\NIRCMD.exe
2011-10-03 15:44:15 ----A---- C:\WINDOWS\MBR.exe
2011-10-03 15:44:15 ----A---- C:\WINDOWS\grep.exe
2011-10-03 15:44:08 ----D---- C:\WINDOWS\ERDNT
2011-10-03 15:44:06 ----D---- C:\ComboFix
2011-10-03 15:43:41 ----D---- C:\Qoobox
2011-10-02 21:42:22 ----D---- C:\Documents and Settings\Haligy\Application Data\Darer
2011-09-30 10:13:01 ----D---- C:\WINDOWS\system32\NtmsData
2011-09-30 10:11:48 ----D---- C:\Documents and Settings\Haligy\Application Data\Avira
2011-09-29 22:19:05 ----D---- C:\Documents and Settings\Haligy\Application Data\QuickScan
2011-09-29 21:59:41 ----A---- C:\WINDOWS\system32\drivers\TrufosAlt.sys
2011-09-29 21:49:32 ----A---- C:\WINDOWS\system32\drivers\ssmdrv.sys
2011-09-29 21:49:28 ----A---- C:\WINDOWS\system32\drivers\avipbb.sys
2011-09-29 21:49:28 ----A---- C:\WINDOWS\system32\drivers\avgntmgr.sys
2011-09-29 21:49:28 ----A---- C:\WINDOWS\system32\drivers\avgntflt.sys
2011-09-29 21:49:28 ----A---- C:\WINDOWS\system32\drivers\avgntdd.sys
2011-09-29 21:49:27 ----D---- C:\Program Files\Avira
2011-09-29 21:49:27 ----D---- C:\Documents and Settings\All Users\Application Data\Avira
2011-09-29 18:50:02 ----D---- C:\Program Files\DotAlicious Gaming Client
2011-09-24 17:14:45 ----D---- C:\Documents and Settings\Haligy\Application Data\vlc
2011-09-24 17:14:19 ----D---- C:\Program Files\VideoLAN
2011-09-24 13:50:03 ----D---- C:\Documents and Settings\Haligy\Application Data\Skype
2011-09-24 13:49:57 ----RD---- C:\Program Files\Skype
2011-09-24 13:49:53 ----D---- C:\Documents and Settings\All Users\Application Data\Skype
2011-09-24 13:40:07 ----D---- C:\Documents and Settings\Haligy\Application Data\Ventrilo
2011-09-23 10:05:43 ----D---- C:\Program Files\Common Files\Steam
2011-09-23 08:22:03 ----D---- C:\Program Files\Common Files\Adobe
2011-09-23 08:21:16 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2011-09-22 18:18:33 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2011-09-21 19:23:51 ----A---- C:\WINDOWS\War3Unin.pif
2011-09-21 19:23:51 ----A---- C:\WINDOWS\War3Unin.exe
2011-09-21 19:23:51 ----A---- C:\WINDOWS\War3Unin.dat
2011-09-21 19:05:47 ----D---- C:\Documents and Settings\Haligy\Application Data\WinRAR
2011-09-21 18:48:20 ----A---- C:\WINDOWS\system32\h323log.txt
2011-09-21 18:46:22 ----A---- C:\WINDOWS\system32\wmpns.dll
2011-09-21 18:46:00 ----A---- C:\WINDOWS\system32\drivers\audstub.sys
2011-09-21 18:45:43 ----A---- C:\WINDOWS\system32\drivers\redbook.sys
2011-09-21 18:45:27 ----A---- C:\WINDOWS\system32\drivers\gameenum.sys
2011-09-21 18:45:04 ----A---- C:\WINDOWS\system32\usbui.dll
2011-09-21 18:44:12 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-09-21 18:44:11 ----D---- C:\Program Files\Common Files\ODBC
2011-09-21 18:44:11 ----A---- C:\WINDOWS\ODBCINST.INI
2011-09-21 18:44:08 ----D---- C:\Program Files\Common Files\SpeechEngines
2011-09-21 18:44:08 ----D---- C:\Program Files\Common Files\Microsoft Shared
2011-09-21 18:44:07 ----RD---- C:\Program Files
2011-09-21 18:44:07 ----D---- C:\Program Files\Common Files
2011-09-21 18:44:05 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2011-09-21 18:44:05 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2011-09-21 18:44:05 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2011-09-21 18:44:04 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2011-09-21 18:44:04 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2011-09-21 18:44:04 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2011-09-21 18:44:04 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2011-09-21 18:44:03 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2011-09-21 18:44:03 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2011-09-21 18:44:03 ----RA---- C:\WINDOWS\system32\kbdur.dll
2011-09-21 18:44:03 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2011-09-21 18:44:03 ----RA---- C:\WINDOWS\system32\kbdru.dll
2011-09-21 18:44:03 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2011-09-21 18:44:03 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2011-09-21 18:44:03 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2011-09-21 18:44:01 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2011-09-21 18:44:01 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2011-09-21 18:44:01 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2011-09-21 18:44:01 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2011-09-21 18:44:01 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2011-09-21 18:44:01 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2011-09-21 18:44:01 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2011-09-21 18:44:00 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2011-09-21 18:44:00 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2011-09-21 18:44:00 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2011-09-21 18:44:00 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2011-09-21 18:44:00 ----RA---- C:\WINDOWS\system32\kbdest.dll
2011-09-21 18:43:58 ----RA---- C:\WINDOWS\system32\kbdycl.dll
2011-09-21 18:43:58 ----RA---- C:\WINDOWS\system32\kbdsl1.dll
2011-09-21 18:43:58 ----RA---- C:\WINDOWS\system32\kbdsl.dll
2011-09-21 18:43:58 ----RA---- C:\WINDOWS\system32\kbdro.dll
2011-09-21 18:43:58 ----RA---- C:\WINDOWS\system32\kbdpl1.dll
2011-09-21 18:43:58 ----RA---- C:\WINDOWS\system32\kbdpl.dll
2011-09-21 18:43:58 ----RA---- C:\WINDOWS\system32\kbdhu1.dll
2011-09-21 18:43:58 ----RA---- C:\WINDOWS\system32\kbdhu.dll
2011-09-21 18:43:58 ----RA---- C:\WINDOWS\system32\kbdcz2.dll
2011-09-21 18:43:58 ----RA---- C:\WINDOWS\system32\kbdcz1.dll
2011-09-21 18:43:58 ----RA---- C:\WINDOWS\system32\kbdcz.dll
2011-09-21 18:43:58 ----RA---- C:\WINDOWS\system32\kbdcr.dll
2011-09-21 18:43:58 ----RA---- C:\WINDOWS\system32\KBDAL.DLL
2011-09-21 18:43:56 ----A---- C:\WINDOWS\system32\irclass.dll
2011-09-21 18:43:56 ----A---- C:\WINDOWS\system32\drivers\irenum.sys
2011-09-21 18:43:55 ----A---- C:\WINDOWS\system32\spxcoins.dll
2011-09-21 18:43:55 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2011-09-21 18:43:55 ----A---- C:\WINDOWS\system32\dgsetup.dll
2011-09-21 18:43:55 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2011-09-21 18:43:53 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2011-09-21 18:43:53 ----A---- C:\WINDOWS\TASKMAN.EXE
2011-09-21 18:43:53 ----A---- C:\WINDOWS\system32\batt.dll
2011-09-21 18:43:53 ----A---- C:\WINDOWS\notepad.exe
2011-09-21 18:43:52 ----A---- C:\WINDOWS\system32\storprop.dll
2011-09-21 18:43:45 ----ASH---- C:\Documents and Settings\All Users\Application Data\desktop.ini
2011-09-21 18:43:41 ----RA---- C:\WINDOWS\SETA.tmp
2011-09-21 18:43:37 ----RA---- C:\WINDOWS\SET3.tmp
2011-09-21 18:43:31 ----D---- C:\WINDOWS\system32\CatRoot2
2011-09-21 18:43:31 ----D---- C:\WINDOWS\system32\CatRoot
2011-09-21 18:43:26 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2011-09-21 18:43:05 ----D---- C:\Documents and Settings
2011-09-21 18:43:04 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2011-09-21 18:42:09 ----RASH---- C:\boot.ini
2011-09-21 18:40:43 ----A---- C:\WINDOWS\system32\WMErrSKY.dll
2011-09-21 18:40:42 ----D---- C:\WINDOWS\system32\1051
2011-09-21 18:37:48 ----D---- C:\Program Files\Defraggler
2011-09-21 18:37:37 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-09-21 18:37:37 ----RSD---- C:\WINDOWS\Fonts
2011-09-21 18:37:37 ----RD---- C:\WINDOWS\Web
2011-09-21 18:37:37 ----HD---- C:\WINDOWS\inf
2011-09-21 18:37:37 ----D---- C:\WINDOWS\WinSxS
2011-09-21 18:37:37 ----D---- C:\WINDOWS\twain_32
2011-09-21 18:37:37 ----D---- C:\WINDOWS\Temp
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\wins
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\wbem
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\usmt
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\spool
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\ShellExt
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\Setup
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\ras
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\oobe
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\npp
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\mui
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\inetsrv
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\IME
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\icsxml
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\ias
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\export
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\drivers\etc
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\drivers\disdn
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\drivers
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\dhcp
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\config
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\3com_dmi
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\3076
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\2052
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\1054
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\1042
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\1041
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\1037
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\1033
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\1031
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\1028
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32\1025
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system32
2011-09-21 18:37:37 ----D---- C:\WINDOWS\system
2011-09-21 18:37:37 ----D---- C:\WINDOWS\security
2011-09-21 18:37:37 ----D---- C:\WINDOWS\Resources
2011-09-21 18:37:37 ----D---- C:\WINDOWS\repair
2011-09-21 18:37:37 ----D---- C:\WINDOWS\mui
2011-09-21 18:37:37 ----D---- C:\WINDOWS\msapps
2011-09-21 18:37:37 ----D---- C:\WINDOWS\msagent
2011-09-21 18:37:37 ----D---- C:\WINDOWS\Media
2011-09-21 18:37:37 ----D---- C:\WINDOWS\java
2011-09-21 18:37:37 ----D---- C:\WINDOWS\ime
2011-09-21 18:37:37 ----D---- C:\WINDOWS\Help
2011-09-21 18:37:37 ----D---- C:\WINDOWS\Driver Cache
2011-09-21 18:37:37 ----D---- C:\WINDOWS\Debug
2011-09-21 18:37:37 ----D---- C:\WINDOWS\Cursors
2011-09-21 18:37:37 ----D---- C:\WINDOWS\Connection Wizard
2011-09-21 18:37:37 ----D---- C:\WINDOWS\Config
2011-09-21 18:37:37 ----D---- C:\WINDOWS\AppPatch
2011-09-21 18:37:37 ----D---- C:\WINDOWS\addins
2011-09-21 18:37:37 ----D---- C:\WINDOWS
2011-09-21 18:37:37 ----ASH---- C:\pagefile.sys
2011-09-21 18:34:22 ----D---- C:\Program Files\CCleaner
2011-09-21 18:32:42 ----A---- C:\WINDOWS\system32\unrar.dll
2011-09-21 18:32:40 ----A---- C:\WINDOWS\avisplitter.ini
2011-09-21 18:32:39 ----A---- C:\WINDOWS\system32\xvidvfw.dll
2011-09-21 18:32:39 ----A---- C:\WINDOWS\system32\xvidcore.dll
2011-09-21 18:32:38 ----A---- C:\WINDOWS\system32\ff_vfw.dll
2011-09-21 18:32:35 ----D---- C:\Program Files\K-Lite Codec Pack
2011-09-21 18:32:02 ----D---- C:\Program Files\Conduit
2011-09-21 18:32:00 ----D---- C:\Program Files\ConduitEngine
2011-09-21 18:31:58 ----D---- C:\Program Files\BS_Player
2011-09-21 18:31:52 ----D---- C:\Documents and Settings\Haligy\Application Data\BSplayer Pro
2011-09-21 18:31:52 ----D---- C:\Documents and Settings\Haligy\Application Data\BSplayer
2011-09-21 18:30:54 ----A---- C:\WINDOWS\system32\D3DX9_42.dll
2011-09-21 18:30:53 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2011-09-21 18:30:41 ----D---- C:\WINDOWS\Logs
2011-09-21 18:30:00 ----D---- C:\WINDOWS\RegisteredPackages
2011-09-21 18:29:42 ----N---- C:\WINDOWS\system32\pxwma.dll
2011-09-21 18:29:42 ----N---- C:\WINDOWS\system32\pxsfs.dll
2011-09-21 18:29:42 ----N---- C:\WINDOWS\system32\pxinsi64.exe
2011-09-21 18:29:42 ----N---- C:\WINDOWS\system32\pxinsa64.exe
2011-09-21 18:29:42 ----N---- C:\WINDOWS\system32\pxhpinst.exe
2011-09-21 18:29:42 ----N---- C:\WINDOWS\system32\pxdrv.dll
2011-09-21 18:29:42 ----N---- C:\WINDOWS\system32\pxcpyi64.exe
2011-09-21 18:29:42 ----N---- C:\WINDOWS\system32\pxcpya64.exe
2011-09-21 18:29:42 ----N---- C:\WINDOWS\system32\pxafs.dll
2011-09-21 18:29:42 ----N---- C:\WINDOWS\system32\drivers\PxHelp20.sys
2011-09-21 18:29:42 ----N---- C:\WINDOWS\system32\drivers\cdralw2k.sys
2011-09-21 18:29:42 ----N---- C:\WINDOWS\system32\drivers\cdr4_xp.sys
2011-09-21 18:29:41 ----N---- C:\WINDOWS\system32\vxblock.dll
2011-09-21 18:29:41 ----N---- C:\WINDOWS\system32\pxwave.dll
2011-09-21 18:29:41 ----N---- C:\WINDOWS\system32\pxmas.dll
2011-09-21 18:29:41 ----N---- C:\WINDOWS\system32\px.dll
2011-09-21 18:29:41 ----D---- C:\Documents and Settings\Haligy\Application Data\Winamp
2011-09-21 18:21:36 ----D---- C:\Documents and Settings\Haligy\Application Data\Macromedia
2011-09-21 18:21:36 ----D---- C:\Documents and Settings\Haligy\Application Data\Adobe
2011-09-21 18:20:22 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2011-09-21 18:17:35 ----D---- C:\Documents and Settings\All Users\Application Data\Sun
2011-09-21 18:17:34 ----D---- C:\Program Files\Common Files\Java
2011-09-21 18:17:24 ----A---- C:\WINDOWS\system32\javaws.exe
2011-09-21 18:17:24 ----A---- C:\WINDOWS\system32\javaw.exe
2011-09-21 18:17:24 ----A---- C:\WINDOWS\system32\java.exe
2011-09-21 18:17:24 ----A---- C:\WINDOWS\system32\deployJava1.dll
2011-09-21 18:17:07 ----D---- C:\Program Files\Java
2011-09-21 18:16:07 ----D---- C:\Documents and Settings\Haligy\Application Data\Sun
2011-09-21 18:12:49 ----D---- C:\Documents and Settings\All Users\Application Data\NVIDIA Corporation
2011-09-21 18:12:45 ----D---- C:\Documents and Settings\All Users\Application Data\NVIDIA
2011-09-21 18:12:36 ----A---- C:\WINDOWS\system32\easyupdatusapiu.dll
2011-09-21 18:09:40 ----D---- C:\WINDOWS\SoftwareDistribution
2011-09-21 18:09:37 ----D---- C:\WINDOWS\Prefetch
2011-09-21 18:04:41 ----N---- C:\WINDOWS\system32\msxml6r.dll
2011-09-21 18:04:41 ----N---- C:\WINDOWS\system32\msxml6.dll
2011-09-21 18:04:35 ----A---- C:\WINDOWS\system32\wmvdmoe2.dll
2011-09-21 18:04:35 ----A---- C:\WINDOWS\system32\wmspdmoe.dll
2011-09-21 18:04:35 ----A---- C:\WINDOWS\system32\wmspdmod.dll
2011-09-21 18:04:35 ----A---- C:\WINDOWS\system32\wmsdmoe2.dll
2011-09-21 18:04:34 ----N---- C:\WINDOWS\system32\wmpdxm.dll
2011-09-21 18:04:34 ----N---- C:\WINDOWS\system32\wmpasf.dll
2011-09-21 18:04:34 ----N---- C:\WINDOWS\system32\wmp.dll
2011-09-21 18:04:34 ----N---- C:\WINDOWS\system32\wmerror.dll
2011-09-21 18:04:34 ----A---- C:\WINDOWS\system32\wmidx.dll
2011-09-21 18:04:33 ----N---- C:\WINDOWS\system32\mp4sdmod.dll
2011-09-21 18:04:33 ----N---- C:\WINDOWS\system32\mp43dmod.dll
2011-09-21 18:04:33 ----A---- C:\WINDOWS\system32\MsPMSNSv.dll
2011-09-21 18:04:29 ----N---- C:\WINDOWS\system32\drivers\irbus.sys
2011-09-21 18:04:29 ----N---- C:\WINDOWS\system32\comsdupd.exe
2011-09-21 18:04:27 ----N---- C:\WINDOWS\system32\bthci.dll
2011-09-21 18:04:27 ----N---- C:\WINDOWS\system32\blastcln.exe
2011-09-21 18:04:27 ----N---- C:\WINDOWS\system32\bitsprx4.dll
2011-09-21 18:04:27 ----N---- C:\WINDOWS\system32\bitsprx3.dll
2011-09-21 18:04:27 ----N---- C:\WINDOWS\system32\bitsprx2.dll
2011-09-21 18:04:27 ----N---- C:\WINDOWS\system32\azroles.dll
2011-09-21 18:04:27 ----N---- C:\WINDOWS\system32\auditusr.exe
2011-09-21 18:04:27 ----N---- C:\WINDOWS\system32\ativvaxx.dll
2011-09-21 18:04:27 ----N---- C:\WINDOWS\system32\ativtmxx.dll
2011-09-21 18:04:27 ----N---- C:\WINDOWS\system32\ati3duag.dll
2011-09-21 18:04:27 ----N---- C:\WINDOWS\system32\ati3d1ag.dll
2011-09-21 18:04:27 ----N---- C:\WINDOWS\system32\ati2dvag.dll
2011-09-21 18:04:27 ----N---- C:\WINDOWS\system32\ati2dvaa.dll
2011-09-21 18:04:27 ----N---- C:\WINDOWS\system32\ati2cqag.dll
2011-09-21 18:04:27 ----N---- C:\WINDOWS\system32\aaclient.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\l2gpstore.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\kmsvc.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\kbdukx.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\kbdsmsno.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\kbdsmsfi.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\kbdpash.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\kbdno1.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\kbdnepr.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\kbdmlt48.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\kbdmlt47.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\kbdmaori.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\kbdiultn.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\kbdinmal.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\kbdinben.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\kbdinbe1.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\kbdfi1.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\kbdbhc.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\ir50_qcx.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\ir50_qc.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\ir50_32.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\ir41_qcx.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\ir41_qc.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\ieencode.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\httpapi.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\hsfcisp2.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\fwcfg.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\fsquirt.exe
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\fltmc.exe
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\fltlib.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\extmgr.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\eapsvc.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\eapqec.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\eappprxy.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\eapphost.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\eappgnui.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\eappcfg.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\eapp3hst.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\eapolqec.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\dxdiagn.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\dot3ui.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\dot3svc.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\dot3msm.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\dot3gpclnt.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\dot3dlg.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\dot3cfg.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\dot3api.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\dimsroam.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\dimsntfy.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\dhcpqec.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\d3d9.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\credssp.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\cmsetacl.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\btpanui.dll
2011-09-21 18:04:26 ----N---- C:\WINDOWS\system32\bthserv.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\w3ssl.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\verclsid.exe
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\tzchange.exe
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\twext.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\tspkg.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\tsgqec.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\strmfilt.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\smbinst.exe
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\slserv.exe
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\slrundll.exe
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\slgen.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\slextspk.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\slcoinst.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\setupn.exe
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\sdhcinst.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\s3gnb.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\rhttpaa.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\rasqec.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\qutil.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\qcliprov.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\qagentrt.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\qagent.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\powercfg.exe
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\pnrpnsp.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\photometadatahandler.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\p2psvc.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\p2pnetsh.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\p2pgraph.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\p2pgasvc.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\p2p.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\onex.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\napstat.exe
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\napmontr.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\napipsec.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\mtxparhd.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\msshavmsg.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\mssha.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\msdadiag.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\mmcperf.exe
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\mmcfxcommon.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\mmcex.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2011-09-21 18:04:25 ----N---- C:\WINDOWS\system32\mdmxsdk.dll
2011-09-21 18:04:24 ----N---- C:\WINDOWS\system32\wuaueng1.dll
2011-09-21 18:04:24 ----N---- C:\WINDOWS\system32\wuauclt1.exe
2011-09-21 18:04:24 ----N---- C:\WINDOWS\system32\wshbth.dll
2011-09-21 18:04:24 ----N---- C:\WINDOWS\system32\wscsvc.dll
2011-09-21 18:04:24 ----N---- C:\WINDOWS\system32\wscntfy.exe
2011-09-21 18:04:24 ----N---- C:\WINDOWS\system32\wmphoto.dll
2011-09-21 18:04:24 ----N---- C:\WINDOWS\system32\wlanapi.dll
2011-09-21 18:04:24 ----N---- C:\WINDOWS\system32\winshfhc.dll
2011-09-21 18:04:24 ----N---- C:\WINDOWS\system32\windowscodecsext.dll
2011-09-21 18:04:24 ----N---- C:\WINDOWS\system32\windowscodecs.dll
2011-09-21 18:04:24 ----A---- C:\WINDOWS\system32\wuapi.dll
2011-09-21 18:04:23 ----N---- C:\WINDOWS\system32\xpsp3res.dll
2011-09-21 18:04:23 ----N---- C:\WINDOWS\system32\xpob2res.dll
2011-09-21 18:04:23 ----N---- C:\WINDOWS\system32\xmlprovi.dll
2011-09-21 18:04:23 ----N---- C:\WINDOWS\system32\xmlprov.dll
2011-09-21 18:04:23 ----N---- C:\WINDOWS\system32\xmllite.dll
2011-09-21 18:04:23 ----N---- C:\WINDOWS\slrundll.exe
2011-09-21 18:04:23 ----D---- C:\WINDOWS\system32\scripting
2011-09-21 18:04:23 ----D---- C:\WINDOWS\system32\en-us
2011-09-21 18:04:23 ----D---- C:\WINDOWS\provisioning
2011-09-21 18:04:23 ----A---- C:\WINDOWS\system32\wuweb.dll
2011-09-21 18:04:23 ----A---- C:\WINDOWS\system32\wups.dll
2011-09-21 18:04:23 ----A---- C:\WINDOWS\system32\wucltui.dll
2011-09-21 18:04:22 ----D---- C:\WINDOWS\l2schemas
2011-09-21 18:04:21 ----D---- C:\WINDOWS\system32\en
2011-09-21 18:04:21 ----D---- C:\WINDOWS\system32\bits
2011-09-21 18:04:21 ----D---- C:\WINDOWS\peernet
2011-09-21 18:02:57 ----D---- C:\WINDOWS\ServicePackFiles
2011-09-21 18:01:03 ----N---- C:\WINDOWS\system32\drivers\amdagp.sys
2011-09-21 18:01:03 ----N---- C:\WINDOWS\system32\drivers\alim1541.sys
2011-09-21 18:01:03 ----N---- C:\WINDOWS\system32\drivers\agpcpq.sys
2011-09-21 18:01:03 ----N---- C:\WINDOWS\system32\drivers\agp440.sys
2011-09-21 18:01:03 ----N---- C:\WINDOWS\system32\drivers\adv11nt5.dll
2011-09-21 18:01:03 ----N---- C:\WINDOWS\system32\drivers\adv09nt5.dll
2011-09-21 18:01:03 ----N---- C:\WINDOWS\system32\drivers\adv08nt5.dll
2011-09-21 18:01:03 ----N---- C:\WINDOWS\system32\drivers\adv07nt5.dll
2011-09-21 18:01:03 ----N---- C:\WINDOWS\system32\drivers\adv05nt5.dll
2011-09-21 18:01:03 ----N---- C:\WINDOWS\system32\drivers\adv02nt5.dll
2011-09-21 18:01:03 ----N---- C:\WINDOWS\system32\drivers\adv01nt5.dll
2011-09-21 18:01:03 ----D---- C:\WINDOWS\network diagnostic
2011-09-21 18:01:02 ----N---- C:\WINDOWS\system32\drivers\ati2mtaa.sys
2011-09-21 18:01:02 ----N---- C:\WINDOWS\system32\drivers\ati1xsxx.sys
2011-09-21 18:01:02 ----N---- C:\WINDOWS\system32\drivers\ati1xbxx.sys
2011-09-21 18:01:02 ----N---- C:\WINDOWS\system32\drivers\ati1tuxx.sys
2011-09-21 18:01:02 ----N---- C:\WINDOWS\system32\drivers\ati1ttxx.sys
2011-09-21 18:01:02 ----N---- C:\WINDOWS\system32\drivers\ati1snxx.sys
2011-09-21 18:01:02 ----N---- C:\WINDOWS\system32\drivers\ati1rvxx.sys
2011-09-21 18:01:02 ----N---- C:\WINDOWS\system32\drivers\ati1raxx.sys
2011-09-21 18:01:02 ----N---- C:\WINDOWS\system32\drivers\ati1pdxx.sys
2011-09-21 18:01:02 ----N---- C:\WINDOWS\system32\drivers\ati1mdxx.sys
2011-09-21 18:01:02 ----N---- C:\WINDOWS\system32\drivers\ati1btxx.sys
2011-09-21 18:01:01 ----N---- C:\WINDOWS\system32\drivers\bthmodem.sys
2011-09-21 18:01:01 ----N---- C:\WINDOWS\system32\drivers\bthenum.sys
2011-09-21 18:01:01 ----N---- C:\WINDOWS\system32\drivers\atv10nt5.dll
2011-09-21 18:01:01 ----N---- C:\WINDOWS\system32\drivers\atv06nt5.dll
2011-09-21 18:01:01 ----N---- C:\WINDOWS\system32\drivers\atv04nt5.dll
2011-09-21 18:01:01 ----N---- C:\WINDOWS\system32\drivers\atv02nt5.dll
2011-09-21 18:01:01 ----N---- C:\WINDOWS\system32\drivers\atv01nt5.dll
2011-09-21 18:01:01 ----N---- C:\WINDOWS\system32\drivers\atinxsxx.sys
2011-09-21 18:01:01 ----N---- C:\WINDOWS\system32\drivers\atinxbxx.sys
2011-09-21 18:01:01 ----N---- C:\WINDOWS\system32\drivers\atintuxx.sys
2011-09-21 18:01:01 ----N---- C:\WINDOWS\system32\drivers\atinttxx.sys
2011-09-21 18:01:01 ----N---- C:\WINDOWS\system32\drivers\atinsnxx.sys
2011-09-21 18:01:01 ----N---- C:\WINDOWS\system32\drivers\atinrvxx.sys
2011-09-21 18:01:01 ----N---- C:\WINDOWS\system32\drivers\atinraxx.sys
2011-09-21 18:01:01 ----N---- C:\WINDOWS\system32\drivers\atinpdxx.sys
2011-09-21 18:01:01 ----N---- C:\WINDOWS\system32\drivers\atinmdxx.sys
2011-09-21 18:01:01 ----N---- C:\WINDOWS\system32\drivers\atinbtxx.sys
2011-09-21 18:01:01 ----N---- C:\WINDOWS\system32\drivers\ati2mtag.sys
2011-09-21 18:01:00 ----N---- C:\WINDOWS\system32\drivers\mtxparhm.sys
2011-09-21 18:01:00 ----N---- C:\WINDOWS\system32\drivers\mtlstrm.sys
2011-09-21 18:01:00 ----N---- C:\WINDOWS\system32\drivers\mtlmnt5.sys
2011-09-21 18:01:00 ----N---- C:\WINDOWS\system32\drivers\mssmbios.sys
2011-09-21 18:01:00 ----N---- C:\WINDOWS\system32\drivers\mdmxsdk.sys
2011-09-21 18:01:00 ----N---- C:\WINDOWS\system32\drivers\ip6fw.sys
2011-09-21 18:01:00 ----N---- C:\WINDOWS\system32\drivers\intelppm.sys
2011-09-21 18:01:00 ----N---- C:\WINDOWS\system32\drivers\ch7xxnt5.dll
2011-09-21 18:01:00 ----N---- C:\WINDOWS\system32\drivers\http.sys
2011-09-21 18:01:00 ----N---- C:\WINDOWS\system32\drivers\hsfdpsp2.sys
2011-09-21 18:01:00 ----N---- C:\WINDOWS\system32\drivers\hsfcxts2.sys
2011-09-21 18:01:00 ----N---- C:\WINDOWS\system32\drivers\hsfbs2s2.sys
2011-09-21 18:01:00 ----N---- C:\WINDOWS\system32\drivers\hidir.sys
2011-09-21 18:01:00 ----N---- C:\WINDOWS\system32\drivers\hidbth.sys
2011-09-21 18:01:00 ----N---- C:\WINDOWS\system32\drivers\hdaudbus.sys
2011-09-21 18:01:00 ----N---- C:\WINDOWS\system32\drivers\gagp30kx.sys
2011-09-21 18:01:00 ----N---- C:\WINDOWS\system32\drivers\fltmgr.sys
2011-09-21 18:01:00 ----N---- C:\WINDOWS\system32\drivers\bthusb.sys
2011-09-21 18:01:00 ----N---- C:\WINDOWS\system32\drivers\bthprint.sys
2011-09-21 18:01:00 ----N---- C:\WINDOWS\system32\drivers\bthport.sys
2011-09-21 18:01:00 ----N---- C:\WINDOWS\system32\drivers\bthpan.sys
2011-09-21 18:00:59 ----N---- C:\WINDOWS\system32\drivers\watv10nt.sys
2011-09-21 18:00:59 ----N---- C:\WINDOWS\system32\drivers\watv06nt.sys
2011-09-21 18:00:59 ----N---- C:\WINDOWS\system32\drivers\wadv11nt.sys
2011-09-21 18:00:59 ----N---- C:\WINDOWS\system32\drivers\wadv09nt.sys
2011-09-21 18:00:59 ----N---- C:\WINDOWS\system32\drivers\wadv08nt.sys
2011-09-21 18:00:59 ----N---- C:\WINDOWS\system32\drivers\wadv07nt.sys
2011-09-21 18:00:59 ----N---- C:\WINDOWS\system32\drivers\wacompen.sys
2011-09-21 18:00:59 ----N---- C:\WINDOWS\system32\drivers\viaagp.sys
2011-09-21 18:00:59 ----N---- C:\WINDOWS\system32\drivers\vchnt5.dll
2011-09-21 18:00:59 ----N---- C:\WINDOWS\system32\drivers\usbvideo.sys
2011-09-21 18:00:59 ----N---- C:\WINDOWS\system32\drivers\usb8023x.sys
2011-09-21 18:00:59 ----N---- C:\WINDOWS\system32\drivers\uagp35.sys
2011-09-21 18:00:59 ----N---- C:\WINDOWS\system32\drivers\smbali.sys
2011-09-21 18:00:59 ----N---- C:\WINDOWS\system32\drivers\slwdmsup.sys
2011-09-21 18:00:59 ----N---- C:\WINDOWS\system32\drivers\slnthal.sys
2011-09-21 18:00:59 ----N---- C:\WINDOWS\system32\drivers\slntamr.sys
2011-09-21 18:00:59 ----N---- C:\WINDOWS\system32\drivers\slnt7554.sys
2011-09-21 18:00:59 ----N---- C:\WINDOWS\system32\drivers\sisagp.sys
2011-09-21 18:00:59 ----N---- C:\WINDOWS\system32\drivers\siint5.dll
2011-09-21 18:00:59 ----N---- C:\WINDOWS\system32\drivers\sffp_sd.sys
2011-09-21 18:00:59 ----N---- C:\WINDOWS\system32\drivers\sffp_mmc.sys
2011-09-21 18:00:59 ----N---- C:\WINDOWS\system32\drivers\sffdisk.sys
2011-09-21 18:00:59 ----N---- C:\WINDOWS\system32\drivers\sdbus.sys
2011-09-21 18:00:59 ----N---- C:\WINDOWS\system32\drivers\s3gnbm.sys
2011-09-21 18:00:59 ----N---- C:\WINDOWS\system32\drivers\rndismpx.sys
2011-09-21 18:00:59 ----N---- C:\WINDOWS\system32\drivers\rfcomm.sys
2011-09-21 18:00:59 ----N---- C:\WINDOWS\system32\drivers\recagent.sys
2011-09-21 18:00:59 ----N---- C:\WINDOWS\system32\drivers\ntmtlfax.sys
2011-09-21 18:00:59 ----N---- C:\WINDOWS\system32\drivers\mutohpen.sys
2011-09-21 18:00:58 ----N---- C:\WINDOWS\system32\xpsp2res.dll
2011-09-21 17:59:55 ----N---- C:\WINDOWS\system32\spmsg.dll
2011-09-21 17:59:52 ----A---- C:\WINDOWS\002613_.tmp
2011-09-21 17:59:36 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2011-09-21 17:57:38 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2011-09-21 17:57:37 ----D---- C:\WINDOWS\EHome
2011-09-21 17:47:09 ----A---- C:\WINDOWS\system32\OpenCL.dll
2011-09-21 17:47:09 ----A---- C:\WINDOWS\system32\nvoglnt.dll
2011-09-21 17:47:09 ----A---- C:\WINDOWS\system32\nvgenco32.dll
2011-09-21 17:47:09 ----A---- C:\WINDOWS\system32\nvdispco32.dll
2011-09-21 17:47:08 ----A---- C:\WINDOWS\system32\nvcuvid.dll
2011-09-21 17:47:08 ----A---- C:\WINDOWS\system32\nvcuvenc.dll
2011-09-21 17:47:08 ----A---- C:\WINDOWS\system32\nvcuda.dll
2011-09-21 17:47:08 ----A---- C:\WINDOWS\system32\nvcompiler.dll
2011-09-21 17:47:08 ----A---- C:\WINDOWS\system32\drivers\nv4_mini.sys
2011-09-21 17:40:26 ----D---- C:\WINDOWS\nview
2011-09-21 17:40:26 ----A---- C:\WINDOWS\system32\nvudisp.exe
2011-09-21 17:33:31 ----A---- C:\WINDOWS\system32\d3d8caps.dat
2011-09-21 17:33:29 ----D---- C:\Program Files\SystemRequirementsLab
2011-09-21 17:24:04 ----D---- C:\Program Files\NVIDIA Corporation
2011-09-21 17:23:45 ----D---- C:\NVIDIA
2011-09-21 17:16:31 ----RA---- C:\WINDOWS\system32\fdco1.dll
2011-09-21 17:16:30 ----RA---- C:\WINDOWS\system32\drivers\NVENETFD.sys
2011-09-21 17:16:27 ----A---- C:\WINDOWS\system32\nvunrm.exe
2011-09-21 17:16:26 ----RA---- C:\WINDOWS\system32\nvconrm.dll
2011-09-21 17:16:26 ----RA---- C:\WINDOWS\system32\drivers\nvsnpu.sys
2011-09-21 17:16:26 ----RA---- C:\WINDOWS\system32\drivers\nvnrm.sys
2011-09-21 17:16:26 ----RA---- C:\WINDOWS\system32\drivers\nvnetbus.sys
2011-09-21 17:16:26 ----RA---- C:\WINDOWS\system32\bdco1.dll
2011-09-21 17:16:25 ----A---- C:\WINDOWS\system32\nvusmb.exe
2011-09-21 17:16:25 ----A---- C:\WINDOWS\system32\NVUNINST.EXE
2011-09-21 17:16:21 ----RA---- C:\WINDOWS\system32\NVCOG.DLL
2011-09-21 17:16:21 ----RA---- C:\WINDOWS\system32\drivers\nv_agp.SYS
2011-09-21 17:16:21 ----A---- C:\WINDOWS\system32\nvugart.exe
2011-09-21 17:09:46 ----D---- C:\Hry
2011-09-21 17:09:43 ----D---- C:\Programy
2011-09-21 17:05:06 ----A---- C:\WINDOWS\system32\drivers\splitter.sys
2011-09-21 17:05:04 ----A---- C:\WINDOWS\system32\drivers\wdmaud.sys
2011-09-21 17:05:02 ----A---- C:\WINDOWS\system32\drivers\swmidi.sys
2011-09-21 17:05:02 ----A---- C:\WINDOWS\system32\drivers\dmusic.sys
2011-09-21 17:05:00 ----A---- C:\WINDOWS\system32\drivers\aec.sys
2011-09-21 17:04:59 ----A---- C:\WINDOWS\system32\drivers\kmixer.sys
2011-09-21 17:04:58 ----A---- C:\WINDOWS\system32\drivers\drmkaud.sys
2011-09-21 17:04:57 ----A---- C:\WINDOWS\system32\drivers\sysaudio.sys
2011-09-21 17:04:44 ----A---- C:\WINDOWS\system32\drivers\mspqm.sys
2011-09-21 17:04:44 ----A---- C:\WINDOWS\system32\drivers\mskssrv.sys
2011-09-21 17:04:43 ----A---- C:\WINDOWS\system32\drivers\mspclock.sys
2011-09-21 17:04:40 ----RA---- C:\WINDOWS\system32\RTLCPAPI.dll
2011-09-21 17:04:38 ----RA---- C:\WINDOWS\system32\RTLCPL.EXE
2011-09-21 17:04:33 ----RA---- C:\WINDOWS\system32\drivers\ALCXWDM.SYS
2011-09-21 17:04:33 ----RA---- C:\WINDOWS\SOUNDMAN.EXE
2011-09-21 17:04:33 ----A---- C:\WINDOWS\system32\drivers\portcls.sys
2011-09-21 17:04:33 ----A---- C:\WINDOWS\system32\drivers\ks.sys
2011-09-21 17:04:33 ----A---- C:\WINDOWS\system32\drivers\drmk.sys
2011-09-21 17:04:32 ----A---- C:\WINDOWS\system32\drivers\stream.sys
2011-09-21 17:04:31 ----A---- C:\WINDOWS\system32\ksuser.dll
2011-09-21 17:04:27 ----D---- C:\Program Files\Realtek Sound Manager
2011-09-21 17:04:22 ----R---- C:\WINDOWS\avrack.ini
2011-09-21 17:04:22 ----D---- C:\Program Files\AvRack
2011-09-21 17:04:16 ----R---- C:\WINDOWS\system32\ChCfg.exe
2011-09-21 17:03:54 ----R---- C:\WINDOWS\alcupd.exe
2011-09-21 17:03:53 ----R---- C:\WINDOWS\system32\drivers\alcxinit.dat
2011-09-21 17:03:53 ----R---- C:\WINDOWS\alcrmv.exe
2011-09-21 17:01:33 ----SD---- C:\WINDOWS\system32\Microsoft
2011-09-21 17:01:26 ----D---- C:\WINDOWS\system32\ReinstallBackups
2011-09-21 17:01:24 ----HD---- C:\Program Files\InstallShield Installation Information
2011-09-21 17:01:24 ----D---- C:\Program Files\AMD
2011-09-21 17:01:24 ----A---- C:\WINDOWS\system32\drivers\AmdK8.sys
2011-09-21 17:01:00 ----D---- C:\Program Files\Common Files\InstallShield
2011-09-21 17:00:47 ----A---- C:\WINDOWS\Ascd_tmp.ini
2011-09-21 17:00:46 ----A---- C:\WINDOWS\system32\drivers\ASUSHWIO.SYS
2011-09-21 16:58:36 ----SHD---- C:\WINDOWS\Installer
2011-09-21 16:58:33 ----D---- C:\Documents and Settings\Haligy\Application Data\Identities
2011-09-21 16:58:29 ----HD---- C:\Program Files\Uninstall Information
2011-09-21 16:58:25 ----ASH---- C:\Documents and Settings\Haligy\Application Data\desktop.ini
2011-09-21 16:58:24 ----SD---- C:\Documents and Settings\Haligy\Application Data\Microsoft
2011-09-21 16:57:51 ----SHD---- C:\System Volume Information
2011-09-21 16:57:50 ----N---- C:\WINDOWS\SchedLgU.Txt
2011-09-21 16:55:52 ----AS---- C:\WINDOWS\bootstat.dat
2011-09-21 16:53:50 ----D---- C:\WINDOWS\system32\xircom
2011-09-21 16:53:50 ----D---- C:\Program Files\xerox
2011-09-21 16:53:50 ----D---- C:\Program Files\microsoft frontpage
2011-09-21 16:53:33 ----RASH---- C:\MSDOS.SYS
2011-09-21 16:53:33 ----RASH---- C:\IO.SYS
2011-09-21 16:53:33 ----A---- C:\WINDOWS\control.ini
2011-09-21 16:53:33 ----A---- C:\CONFIG.SYS
2011-09-21 16:53:33 ----A---- C:\AUTOEXEC.BAT
2011-09-21 16:53:19 ----A---- C:\WINDOWS\system32\mapi32.dll
2011-09-21 16:52:34 ----RD---- C:\WINDOWS\Offline Web Pages
2011-09-21 16:52:33 ----SD---- C:\WINDOWS\Downloaded Program Files
2011-09-21 16:52:07 ----D---- C:\WINDOWS\system32\DirectX
2011-09-21 16:51:38 ----A---- C:\WINDOWS\system32\safrslv.dll
2011-09-21 16:51:38 ----A---- C:\WINDOWS\system32\safrdm.dll
2011-09-21 16:51:38 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2011-09-21 16:51:38 ----A---- C:\WINDOWS\system32\racpldlg.dll
2011-09-21 16:51:38 ----A---- C:\WINDOWS\system32\atrace.dll
2011-09-21 16:51:35 ----A---- C:\WINDOWS\system32\desktop.ini
2011-09-21 16:51:35 ----A---- C:\WINDOWS\desktop.ini
2011-09-21 16:51:27 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2011-09-21 16:51:27 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2011-09-21 16:51:27 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2011-09-21 16:51:26 ----A---- C:\WINDOWS\system32\acctres.dll
2011-09-21 16:51:25 ----D---- C:\Program Files\Common Files\Services
2011-09-21 16:51:24 ----A---- C:\WINDOWS\system32\inetres.dll
2011-09-21 16:51:20 ----SD---- C:\WINDOWS\Tasks
2011-09-21 16:51:20 ----A---- C:\WINDOWS\system32\isign32.dll
2011-09-21 16:51:20 ----A---- C:\WINDOWS\system32\inetcfg.dll
2011-09-21 16:51:20 ----A---- C:\WINDOWS\system32\icwphbk.dll
2011-09-21 16:51:20 ----A---- C:\WINDOWS\system32\icwdial.dll
2011-09-21 16:51:19 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2011-09-21 16:51:17 ----D---- C:\Program Files\Common Files\MSSoap
2011-09-21 16:51:12 ----D---- C:\WINDOWS\srchasst
2011-09-21 16:51:11 ----D---- C:\WINDOWS\system32\Macromed
2011-09-21 16:51:10 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2011-09-21 16:51:10 ----A---- C:\WINDOWS\system32\qmgr.dll
2011-09-21 16:51:09 ----D---- C:\Program Files\Movie Maker
2011-09-21 16:51:04 ----D---- C:\WINDOWS\system32\Restore
2011-09-21 16:51:04 ----D---- C:\WINDOWS\PCHealth
2011-09-21 16:51:04 ----A---- C:\WINDOWS\system32\srsvc.dll
2011-09-21 16:51:04 ----A---- C:\WINDOWS\system32\srrstr.dll
2011-09-21 16:51:04 ----A---- C:\WINDOWS\system32\srclient.dll
2011-09-21 16:51:04 ----A---- C:\WINDOWS\system32\drivers\sr.sys
2011-09-21 16:51:03 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2011-09-21 16:51:03 ----A---- C:\WINDOWS\system32\msconf.dll
2011-09-21 16:51:03 ----A---- C:\WINDOWS\system32\mnmdd.dll
2011-09-21 16:51:03 ----A---- C:\WINDOWS\system32\ils.dll
2011-09-21 16:51:00 ----D---- C:\Program Files\NetMeeting
2011-09-21 16:51:00 ----A---- C:\WINDOWS\system32\msoert2.dll
2011-09-21 16:51:00 ----A---- C:\WINDOWS\system32\msoeacct.dll
2011-09-21 16:50:59 ----A---- C:\WINDOWS\system32\inetcomm.dll
2011-09-21 16:50:58 ----D---- C:\Program Files\Outlook Express
2011-09-21 16:50:58 ----A---- C:\WINDOWS\system32\schedsvc.dll
2011-09-21 16:50:58 ----A---- C:\WINDOWS\system32\mstinit.exe
2011-09-21 16:50:58 ----A---- C:\WINDOWS\system32\mstask.dll
2011-09-21 16:50:51 ----D---- C:\Program Files\Internet Explorer
2011-09-21 16:50:51 ----D---- C:\Program Files\Common Files\System
2011-09-21 16:50:30 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2011-09-21 16:50:21 ----D---- C:\Program Files\ComPlus Applications
2011-09-21 16:50:20 ----A---- C:\WINDOWS\vbaddin.ini
2011-09-21 16:50:20 ----A---- C:\WINDOWS\vb.ini
2011-09-21 16:50:16 ----D---- C:\WINDOWS\Registration
2011-09-21 16:50:09 ----HD---- C:\Program Files\WindowsUpdate
2011-09-21 16:50:09 ----D---- C:\Program Files\Windows Media Player
2011-09-21 16:50:09 ----D---- C:\Program Files\Online Services
2011-09-21 16:50:03 ----D---- C:\Program Files\Messenger
2011-09-21 16:49:58 ----D---- C:\Program Files\MSN Gaming Zone
2011-09-21 16:49:58 ----A---- C:\WINDOWS\system32\write.exe
2011-09-21 16:49:50 ----A---- C:\WINDOWS\system32\accwiz.exe
2011-09-21 16:49:49 ----A---- C:\WINDOWS\system32\sndvol32.exe
2011-09-21 16:49:49 ----A---- C:\WINDOWS\system32\sndrec32.exe
2011-09-21 16:49:49 ----A---- C:\WINDOWS\system32\hypertrm.dll
2011-09-21 16:49:49 ----A---- C:\WINDOWS\system32\hticons.dll
2011-09-21 16:49:49 ----A---- C:\WINDOWS\system32\avwav.dll
2011-09-21 16:49:48 ----A---- C:\WINDOWS\system32\winchat.exe
2011-09-21 16:49:48 ----A---- C:\WINDOWS\system32\avtapi.dll
2011-09-21 16:49:48 ----A---- C:\WINDOWS\system32\avmeter.dll
2011-09-21 16:49:41 ----A---- C:\WINDOWS\system32\charmap.exe
2011-09-21 16:49:41 ----A---- C:\WINDOWS\system32\getuname.dll
2011-09-21 16:49:40 ----A---- C:\WINDOWS\system32\winmine.exe
2011-09-21 16:49:40 ----A---- C:\WINDOWS\system32\sol.exe
2011-09-21 16:49:40 ----A---- C:\WINDOWS\system32\mshearts.exe
2011-09-21 16:49:40 ----A---- C:\WINDOWS\system32\calc.exe
2011-09-21 16:49:39 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2011-09-21 16:49:39 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2011-09-21 16:49:39 ----A---- C:\WINDOWS\system32\tslabels.ini
2011-09-21 16:49:39 ----A---- C:\WINDOWS\system32\tskill.exe
2011-09-21 16:49:39 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2011-09-21 16:49:39 ----A---- C:\WINDOWS\system32\tscon.exe
2011-09-21 16:49:39 ----A---- C:\WINDOWS\system32\reset.exe
2011-09-21 16:49:39 ----A---- C:\WINDOWS\system32\rdshost.exe
2011-09-21 16:49:39 ----A---- C:\WINDOWS\system32\freecell.exe
2011-09-21 16:49:39 ----A---- C:\WINDOWS\system32\drivers\tdtcp.sys
2011-09-21 16:49:39 ----A---- C:\WINDOWS\system32\drivers\tdpipe.sys
2011-09-21 16:49:38 ----A---- C:\WINDOWS\system32\shadow.exe
2011-09-21 16:49:38 ----A---- C:\WINDOWS\system32\rwinsta.exe
2011-09-21 16:49:38 ----A---- C:\WINDOWS\system32\regini.exe
2011-09-21 16:49:38 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2011-09-21 16:49:38 ----A---- C:\WINDOWS\system32\qwinsta.exe
2011-09-21 16:49:38 ----A---- C:\WINDOWS\system32\qprocess.exe
2011-09-21 16:49:38 ----A---- C:\WINDOWS\system32\qappsrv.exe
2011-09-21 16:49:38 ----A---- C:\WINDOWS\system32\msg.exe
2011-09-21 16:49:38 ----A---- C:\WINDOWS\system32\logoff.exe
2011-09-21 16:49:38 ----A---- C:\WINDOWS\system32\cdmodem.dll
2011-09-21 16:49:37 ----A---- C:\WINDOWS\system32\xolehlp.dll
2011-09-21 16:49:37 ----A---- C:\WINDOWS\system32\mtxoci.dll
2011-09-21 16:49:37 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2011-09-21 16:49:37 ----A---- C:\WINDOWS\system32\msdtctm.dll
2011-09-21 16:49:37 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2011-09-21 16:49:37 ----A---- C:\WINDOWS\system32\msdtclog.dll
2011-09-21 16:49:37 ----A---- C:\WINDOWS\system32\msdtc.exe
2011-09-21 16:49:35 ----A---- C:\WINDOWS\system32\stclient.dll
2011-09-21 16:49:35 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2011-09-21 16:49:35 ----A---- C:\WINDOWS\system32\mtxex.dll
2011-09-21 16:49:35 ----A---- C:\WINDOWS\system32\mtxdm.dll
2011-09-21 16:49:35 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2011-09-21 16:49:35 ----A---- C:\WINDOWS\system32\comrepl.dll
2011-09-21 16:49:35 ----A---- C:\WINDOWS\system32\comaddin.dll
2011-09-21 16:49:35 ----A---- C:\WINDOWS\system32\colbact.dll
2011-09-21 16:49:35 ----A---- C:\WINDOWS\system32\clbcatex.dll
2011-09-21 16:49:35 ----A---- C:\WINDOWS\system32\catsrvps.dll
2011-09-21 16:49:34 ----A---- C:\WINDOWS\system32\comuid.dll
2011-09-21 16:49:34 ----A---- C:\WINDOWS\system32\comsnap.dll
2011-09-21 16:49:34 ----A---- C:\WINDOWS\system32\clbcatq.dll
2011-09-21 16:49:34 ----A---- C:\WINDOWS\system32\catsrv.dll
2011-09-21 16:49:22 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2011-09-21 16:49:22 ----A---- C:\WINDOWS\system32\servdeps.dll
2011-09-21 16:49:22 ----A---- C:\WINDOWS\system32\mmfutil.dll
2011-09-21 16:49:22 ----A---- C:\WINDOWS\system32\cmprops.dll
2011-09-21 16:49:16 ----D---- C:\Program Files\Windows NT
2011-09-21 16:49:16 ----D---- C:\Program Files\MSN
2011-09-21 16:49:16 ----A---- C:\WINDOWS\system32\mspaint.exe
2011-09-21 16:49:16 ----A---- C:\WINDOWS\system32\mplay32.exe
2011-09-21 16:49:16 ----A---- C:\WINDOWS\system32\clipbrd.exe
2011-09-21 16:49:15 ----A---- C:\WINDOWS\system32\wuauserv.dll
2011-09-21 16:49:15 ----A---- C:\WINDOWS\system32\wuaueng.dll
2011-09-21 16:49:15 ----A---- C:\WINDOWS\system32\wuauclt.exe
2011-09-21 16:49:15 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2011-09-21 16:49:15 ----A---- C:\WINDOWS\system32\spider.exe
2011-09-21 16:49:15 ----A---- C:\WINDOWS\system32\drivers\rdpwd.sys
2011-09-21 16:49:14 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2011-09-21 16:49:14 ----A---- C:\WINDOWS\system32\sessmgr.exe
2011-09-21 16:49:14 ----A---- C:\WINDOWS\system32\remotepg.dll
2011-09-21 16:49:14 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2011-09-21 16:49:14 ----A---- C:\WINDOWS\system32\rdchost.dll
2011-09-21 16:49:14 ----A---- C:\WINDOWS\system32\mstscax.dll
2011-09-21 16:49:14 ----A---- C:\WINDOWS\system32\mstsc.exe
2011-09-21 16:49:13 ----D---- C:\WINDOWS\system32\MsDtc
2011-09-21 16:49:13 ----A---- C:\WINDOWS\system32\termsrv.dll
2011-09-21 16:49:13 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2011-09-21 16:49:13 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2011-09-21 16:49:13 ----A---- C:\WINDOWS\system32\rdpclip.exe
2011-09-21 16:49:13 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2011-09-21 16:49:13 ----A---- C:\WINDOWS\system32\icaapi.dll
2011-09-21 16:49:13 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2011-09-21 16:49:12 ----D---- C:\WINDOWS\system32\Com
2011-09-21 16:49:12 ----A---- C:\WINDOWS\system32\comsvcs.dll
2011-09-21 16:49:12 ----A---- C:\WINDOWS\system32\catsrvut.dll
2011-09-21 16:49:09 ----A---- C:\WINDOWS\system32\licwmi.dll
2011-09-21 16:49:04 ----A---- C:\WINDOWS\system32\drivers\termdd.sys
2011-09-21 16:49:04 ----A---- C:\WINDOWS\system32\drivers\rdpdr.sys

======List of files/folders modified in the last 1 month======

2011-10-03 16:10:22 ----A---- C:\WINDOWS\system.ini
2011-09-21 18:10:32 ----A---- C:\WINDOWS\win.ini
2011-09-21 18:00:47 ----RASH---- C:\NTDETECT.COM
2011-09-21 16:53:10 ----ASH---- C:\WINDOWS\fonts\desktop.ini

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 nv_agp;NVIDIA nForce AGP Bus Filter; C:\WINDOWS\System32\DRIVERS\nv_agp.sys [2004-04-02 21760]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2011-03-04 45648]
R1 AmdK8;AMD Processor Driver; C:\WINDOWS\System32\DRIVERS\AmdK8.sys [2005-03-09 36352]
R1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir Desktop\avgio.sys []
R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2011-07-21 138192]
R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2010-06-17 28520]
R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2011-07-21 66616]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2005-05-18 2319680]
R3 hidusb;Microsoft HID Class Driver; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2001-08-23 12160]
R3 nv;nv; C:\WINDOWS\System32\DRIVERS\nv4_mini.sys [2011-08-03 12542592]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\System32\DRIVERS\NVENETFD.sys [2004-05-17 33280]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\System32\DRIVERS\nvnetbus.sys [2004-05-17 12928]
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 mbr;mbr; \??\C:\DOCUME~1\Haligy\LOCALS~1\Temp\mbr.sys []
S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AntiVirService;Avira AntiVir Guard; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2011-07-21 269480]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2011-04-21 136360]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2011-09-21 153376]
R2 NVSvc;NVIDIA Driver Helper Service; C:\WINDOWS\system32\nvsvc32.exe [2011-08-03 146024]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-08-03 2255464]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2005-01-28 38912]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2011-03-16 407336]

-----------------EOF-----------------



dakujem pekne

Re: Kontrola logu

Napsal: 03 říj 2011 17:13
od Rudy
Dvouklikem na soubor: C:\Program Files\trend micro\Haligy.exe spusťte HijackThis. Klikněte na "Do a system scan only". Po skončení skienu vlevo ve čtverečku v okně HijackThis zaškrtněte´:
R3 - URLSearchHook: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O2 - BHO: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
a klikněte na >Fix checked<. restartujte PC a po restartu smažte soubor C:\Program Files\BS_Player\tbBS_P.dll . Jinak čisto.

Re: Kontrola logu

Napsal: 03 říj 2011 21:17
od Y0G1
zdravim udelal sem to jak ste chteli


a klikněte na >Fix checked<. restartujte PC a po restartu smažte soubor C:\Program Files\BS_Player\tbBS_P.dll . Jinak čisto.

ale tenhle soubor tam neni :wink:

Re: Kontrola logu

Napsal: 03 říj 2011 21:49
od Rudy
Pak je to OK. Jinak je vše čisté. Máte nějaký problém?

Re: Kontrola logu

Napsal: 03 říj 2011 22:40
od Y0G1
zatim ne muzete klidne zavrit :)


dakujem peknee :idea: :worship:

Re: Kontrola logu

Napsal: 04 říj 2011 08:55
od Y0G1
prosim vas pekne moj pocitac je stary asi 7 rokov je to dlha doba to viem , ale zaujimalo by ma ci je mozne aktualizovat ovladace na zakl.dosku dost sa obavam aby som nieco nepokaslal a ani neviem ci sa na moju zakl.ovladace este robia alebo je nejaky novsi aky som mal k pc originalne cd vopred dakujem za odpoved

Re: Kontrola logu

Napsal: 04 říj 2011 17:06
od Rudy
Y0G1 píše:prosim vas pekne moj pocitac je stary asi 7 rokov je to dlha doba to viem , ale zaujimalo by ma ci je mozne aktualizovat ovladace na zakl.dosku dost sa obavam aby som nieco nepokaslal a ani neviem ci sa na moju zakl.ovladace este robia alebo je nejaky novsi aky som mal k pc originalne cd vopred dakujem za odpoved
Zjistěte si na webu výrobce MB, zda existuje novější verze pro váš MB a oper. systém. V případě, že ano, lze přeinstalovat bez nebezpečí, že nastane nějaký problém.

Re: Kontrola logu

Napsal: 04 říj 2011 18:21
od Y0G1
rozumim ja sa na to kuknem a dam sem este vediet :)


edit tak vdaka everestu som zistil aku mam zakl.dosku stiahoél som s asrocku nejaky ovladac ale neviem ci je lepsi alebo starsi

co sa tyka aktualizacie biosu asi neodporucate

Re: Kontrola logu

Napsal: 04 říj 2011 19:04
od Rudy
Reflash biosu je rizková operace. Pokud s ní nemáte zkušenosti a současný bios funguje správně, nepouštějte se do toho.

Re: Kontrola logu

Napsal: 04 říj 2011 19:39
od Y0G1
ok a update procesoru? uz semneco nasel ale ty stare veci to je fakt tezke najit :( muze to i procesoru pomoct at pracuje lepe :)?

Re: Kontrola logu

Napsal: 04 říj 2011 20:09
od Rudy
Y0G1 píše:ok a update procesoru? uz semneco nasel ale ty stare veci to je fakt tezke najit :( muze to i procesoru pomoct at pracuje lepe :)?

Re: Kontrola logu

Napsal: 04 říj 2011 20:10
od Rudy
Rudy píše:
Y0G1 píše:ok a update procesoru? uz semneco nasel ale ty stare veci to je fakt tezke najit :( muze to i procesoru pomoct at pracuje lepe :)?
Musíte si najít specifikaci desky. Tam najdete všechny procesory, které jsou podporovány.

Re: Kontrola logu

Napsal: 04 říj 2011 20:57
od Y0G1
to sem uz nasel ale pak sem nasel na svoje amd ovladac a stahl sem ho a zatim vse slape jak ma :) ale nevim zda to byl posledni protoze pres origo cd nejde updatnut tyhle veci :?:

Re: Kontrola logu

Napsal: 04 říj 2011 21:34
od Rudy
Ovladače zákl desky jsou obvykle vydávány jako celek. Stačí tedy stáhnout si ty poslední z webu výrobce a nainstalovat.

Re: Kontrola logu

Napsal: 07 říj 2011 09:50
od Y0G1
mozete mi este skontrolovat cez combo fix prosim ?



ComboFix 11-10-07.02 - Haligy 07.10.2011 10:42:49.2.1 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.421.1033.18.1023.606 [GMT 2:00]
Running from: c:\documents and settings\Haligy\Desktop\ComboFix.exe
AV: AntiVir Desktop *Disabled/Outdated* {AD166499-45F9-482A-A743-FDD3350758C7}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\messenger\msmsgsin.exe
.
.
((((((((((((((((((((((((( Files Created from 2011-09-07 to 2011-10-07 )))))))))))))))))))))))))))))))
.
.
2011-10-04 17:53 . 2011-10-04 17:53 -------- d-----w- C:\NV35163508.TMP
2011-10-03 14:22 . 2011-10-03 14:33 -------- d-----w- C:\rsit
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-08-03 11:49 . 2006-11-17 15:29 54272 ----a-w- c:\windows\system32\nvwddi.dll
2011-08-03 11:49 . 2006-11-17 15:29 4210816 ----a-w- c:\windows\system32\nv4_disp.dll
2011-08-03 11:49 . 2006-11-17 15:29 2404864 ----a-w- c:\windows\system32\nvapi.dll
2011-08-03 11:49 . 2006-11-17 15:29 146024 ----a-w- c:\windows\system32\nvsvc32.exe
2011-08-03 11:49 . 2006-11-17 15:29 145000 ----a-w- c:\windows\system32\nvcolor.exe
2011-08-03 11:49 . 2006-11-17 15:29 13892200 ----a-w- c:\windows\system32\nvcpl.dll
2011-08-03 11:49 . 2006-11-17 15:29 111208 ----a-w- c:\windows\system32\nvmctray.dll
.
.
((((((((((((((((((((((((((((( SnapShot@2011-10-03_14.10.21 )))))))))))))))))))))))))))))))))))))))))
.
+ 2011-10-07 08:12 . 2011-10-07 08:12 16384 c:\windows\Temp\Perflib_Perfdata_7c8.dat
+ 2011-10-04 18:29 . 2005-03-09 12:53 36352 c:\windows\system32\ReinstallBackups\0006\DriverFiles\AmdK8.sys
+ 2011-10-04 18:12 . 2005-05-17 16:48 77824 c:\windows\system32\ReinstallBackups\0005\DriverFiles\SOUNDMAN.EXE
+ 2011-10-04 18:12 . 2008-04-14 03:42 23552 c:\windows\system32\ReinstallBackups\0005\DriverFiles\i386\wdmaud.drv
+ 2011-10-04 18:12 . 2008-04-13 22:15 49408 c:\windows\system32\ReinstallBackups\0005\DriverFiles\i386\stream.sys
+ 2011-10-04 18:12 . 2008-04-13 22:15 60160 c:\windows\system32\ReinstallBackups\0005\DriverFiles\i386\drmk.sys
+ 2011-10-04 17:53 . 2004-05-17 06:00 56960 c:\windows\system32\ReinstallBackups\0004\DriverFiles\nvnrm.sys
+ 2011-10-04 17:53 . 2004-05-17 06:00 12928 c:\windows\system32\ReinstallBackups\0004\DriverFiles\nvnetbus.sys
+ 2011-10-04 17:53 . 2004-05-10 00:53 32256 c:\windows\system32\ReinstallBackups\0004\DriverFiles\nvconrm.dll
+ 2011-10-04 17:53 . 2004-04-02 07:40 32256 c:\windows\system32\ReinstallBackups\0002\DriverFiles\NVCOG.DLL
+ 2011-10-04 17:53 . 2004-04-02 07:40 21760 c:\windows\system32\ReinstallBackups\0002\DriverFiles\nv_agp.SYS
+ 2001-08-23 12:00 . 2011-10-04 18:34 40128 c:\windows\system32\perfc009.dat
+ 2011-09-21 15:04 . 2005-05-18 11:38 40960 c:\windows\system32\ChCfg.exe
- 2011-09-21 15:04 . 2005-05-18 05:38 40960 c:\windows\system32\ChCfg.exe
+ 2011-10-07 08:12 . 2011-10-07 08:12 93480 c:\windows\system32\FNTCACHE.DAT
+ 2011-09-21 15:16 . 2004-05-17 12:00 56960 c:\windows\system32\drivers\nvnrm.sys
- 2011-09-21 15:16 . 2004-05-17 06:00 56960 c:\windows\system32\drivers\nvnrm.sys
- 2011-09-21 15:16 . 2004-05-17 06:00 12928 c:\windows\system32\drivers\nvnetbus.sys
+ 2011-09-21 15:16 . 2004-05-17 12:00 12928 c:\windows\system32\drivers\nvnetbus.sys
+ 2011-09-21 15:16 . 2004-04-02 13:40 21760 c:\windows\system32\drivers\nv_agp.SYS
- 2011-09-21 15:16 . 2004-04-02 07:40 21760 c:\windows\system32\drivers\nv_agp.SYS
+ 2011-10-07 08:16 . 2011-08-31 15:00 22216 c:\windows\system32\drivers\mbam.sys
+ 2009-03-18 15:35 . 2009-03-18 15:35 26176 c:\windows\system32\drivers\hamachi.sys
+ 2011-09-21 15:01 . 2003-09-02 14:46 35328 c:\windows\system32\drivers\AmdK8.sys
+ 2011-09-21 15:04 . 2008-04-13 22:15 49408 c:\windows\system32\dllcache\stream.sys
+ 2011-09-21 15:04 . 2008-04-13 22:15 60160 c:\windows\system32\dllcache\drmk.sys
+ 2011-09-21 15:04 . 2005-05-17 16:48 77824 c:\windows\SOUNDMAN.EXE
- 2011-09-21 15:04 . 2005-05-17 10:48 77824 c:\windows\SOUNDMAN.EXE
+ 2011-10-04 18:12 . 2008-04-14 03:41 4096 c:\windows\system32\ReinstallBackups\0005\DriverFiles\i386\ksuser.dll
+ 2011-10-04 17:53 . 2004-05-17 05:48 8192 c:\windows\system32\ReinstallBackups\0004\DriverFiles\bdco1.dll
+ 2011-09-21 15:04 . 2008-04-14 03:41 4096 c:\windows\system32\dllcache\ksuser.dll
- 2011-09-21 15:04 . 2004-09-07 06:23 156672 c:\windows\system32\RTLCPAPI.dll
+ 2011-09-21 15:04 . 2004-09-07 12:23 156672 c:\windows\system32\RTLCPAPI.dll
+ 2011-10-04 18:12 . 2004-09-07 12:23 156672 c:\windows\system32\ReinstallBackups\0005\DriverFiles\RTLCPAPI.dll
+ 2011-10-04 18:12 . 2008-04-13 22:49 146048 c:\windows\system32\ReinstallBackups\0005\DriverFiles\i386\portcls.sys
+ 2011-10-04 18:12 . 2008-04-13 22:46 141056 c:\windows\system32\ReinstallBackups\0005\DriverFiles\i386\ks.sys
+ 2011-10-04 17:53 . 2004-05-17 06:00 191232 c:\windows\system32\ReinstallBackups\0004\DriverFiles\nvsnpu.sys
+ 2001-08-23 12:00 . 2011-10-04 18:34 311740 c:\windows\system32\perfh009.dat
+ 2011-09-21 15:16 . 2004-06-24 16:57 172032 c:\windows\system32\nvusmb.exe
+ 2011-09-21 15:16 . 2004-05-17 12:00 191232 c:\windows\system32\drivers\nvsnpu.sys
- 2011-09-21 15:16 . 2004-05-17 06:00 191232 c:\windows\system32\drivers\nvsnpu.sys
+ 2011-09-21 15:04 . 2008-04-13 22:49 146048 c:\windows\system32\dllcache\portcls.sys
+ 2011-09-21 15:04 . 2008-04-13 22:46 141056 c:\windows\system32\dllcache\ks.sys
+ 2011-09-21 15:03 . 2005-02-03 13:13 294912 c:\windows\alcupd.exe
- 2011-09-21 15:03 . 2005-02-03 07:13 294912 c:\windows\alcupd.exe
+ 2011-09-21 15:03 . 2005-03-02 18:21 200704 c:\windows\alcrmv.exe
- 2011-09-21 15:03 . 2005-03-02 12:21 200704 c:\windows\alcrmv.exe
- 2011-09-21 15:04 . 2005-05-18 07:15 9389568 c:\windows\system32\RTLCPL.EXE
+ 2011-09-21 15:04 . 2005-05-18 13:15 9389568 c:\windows\system32\RTLCPL.EXE
+ 2011-10-04 18:12 . 2005-05-18 13:15 9389568 c:\windows\system32\ReinstallBackups\0005\DriverFiles\RTLCPL.EXE
+ 2011-10-04 18:12 . 2005-05-18 15:50 2319680 c:\windows\system32\ReinstallBackups\0005\DriverFiles\ALCXWDM.SYS
- 2011-09-21 15:04 . 2005-05-18 09:50 2319680 c:\windows\system32\drivers\ALCXWDM.SYS
+ 2011-09-21 15:04 . 2005-05-18 15:50 2319680 c:\windows\system32\drivers\ALCXWDM.SYS
+ 2011-10-04 18:29 . 2011-10-04 18:29 1657856 c:\windows\Installer\e9401.msi
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
2010-11-29 13:26 3908192 ----a-w- c:\program files\ConduitEngine\ConduitEngine.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{30F9B915-B755-4826-820B-08FBA6BD249D}"= "c:\program files\ConduitEngine\ConduitEngine.dll" [2010-11-29 3908192]
.
[HKEY_CLASSES_ROOT\clsid\{30f9b915-b755-4826-820b-08fba6bd249d}]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2011-04-21 281768]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2011-08-03 13892200]
"Malwarebytes' Anti-Malware"="c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe" [2011-08-31 449608]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"Malwarebytes' Anti-Malware"="c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe" [2011-08-31 449608]
.
c:\documents and settings\Haligy\Start Menu\Programs\Startup\
DotaToolKit.lnk - c:\documents and settings\Haligy\Desktop\DotaToolKit.exe [2011-9-21 891078]
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UserFaultCheck]
c:\windows\system32\dumprep 0 -u [X]
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2011-06-06 10:55 937920 ----a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
2008-04-14 03:42 15360 ----a-w- c:\windows\system32\ctfmon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
2011-08-03 11:49 13892200 ----a-w- c:\windows\system32\nvcpl.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
2011-08-03 11:49 111208 ----a-w- c:\windows\system32\nvmctray.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
2011-07-05 08:08 1632360 ----a-w- c:\program files\NVIDIA Corporation\nView\nwiz.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMan]
2005-05-17 16:48 77824 ----a-w- c:\windows\SOUNDMAN.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
2011-09-23 08:05 1242448 ----a-w- c:\programy\Steam\Steam.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2011-06-09 11:06 254696 ----a-w- c:\program files\Common Files\Java\Java Update\jusched.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
2011-07-11 21:47 74752 ----a-w- c:\programy\Winamp\winampa.exe
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\NVIDIA Corporation\\NVIDIA Updatus\\daemonu.exe"=
"c:\\Programy\\Winamp\\winamp.exe"=
"c:\\Programy\\Steam\\Steam.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Hry\\Warcraft III\\Frozen Throne.exe"=
"c:\\Program Files\\DotAlicious Gaming Client\\DotAlicious.exe"=
.
R2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [29.9.2011 21:49 136360]
R2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [7.10.2011 10:16 366152]
R2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [21.9.2011 18:12 2255464]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [7.10.2011 10:16 22216]
.
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - IPFILTERDRIVER
*NewlyCreated* - MBAMPROTECTOR
*NewlyCreated* - MBAMSERVICE
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://eu.ask.com/?l=dis&o=102866&gct=hp
TCP: DhcpNameServer = 195.12.128.1 195.72.0.3
DPF: DirectAnimation Java Classes - file://c:\windows\Java\classes\dajava.cab
DPF: Microsoft XML Parser for Java - file://c:\windows\Java\classes\xmldso.cab
.
- - - - ORPHANS REMOVED - - - -
.
Toolbar-{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - (no file)
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-10-07 10:46
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
Completion time: 2011-10-07 10:48:21
ComboFix-quarantined-files.txt 2011-10-07 08:48
.
Pre-Run: 71 821 737 984 bytes free
Post-Run: 10 adresárov, 71 811 649 536 voľných bajtov
.
- - End Of File - - A1CCC9AAD3FBC399C5C7A1272435E0CE