Stránka 1 z 1

Neznáma aplikácia a PDF súbor v menu Štart (win888)

Napsal: 12 kvě 2012 18:33
od Saxbeet
Zdravím, dnes som si všimol že v mojom menu Štart pribudla nová ikona programu a PDF súboru s názvom Win888. PDF súbor som sa pokúšal otvoriť, no Adobe mi hlásil chybu programu, aplikácie samotnej som sa radšej nedotkol :) Chem Vás preto poprosiť o pomoc s odstránením tejto hávede z PC.

Tu je RSIT log za 1 mesiac:

Logfile of random's system information tool 1.09 (written by random/random)
Run by Trial at 2012-05-12 19:15:17
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 28 GB (53%) free of 52 GB
Total RAM: 1015 MB (26% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:19:21, on 12. 5. 2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskhost.exe
C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesApp32.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Windows\system32\DllHost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\Macromed\Flash\FlashUtil32_11_2_202_235_ActiveX.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Trial\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4BPZ8420\RSIT.exe
C:\Program Files\trend micro\Trial.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Acronis OS Selector Reinstall Service (AcronisOSSReinstallSvc) - Unknown owner - C:\Program Files\Common Files\Acronis\Acronis Disk Director\oss_reinstall_svc.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe

--
End of file - 3953 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-06-06 63912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre6\bin\ssv.dll [2012-04-30 325408]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2012-04-30 42272]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2009-09-23 173592]
"Persistence"=C:\Windows\system32\igfxpers.exe [2009-09-23 150552]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2011-09-22 3080264]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-06-06 937920]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray]
C:\Windows\system32\igfxtray.exe [2009-09-23 141848]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar]
C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1174016]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-01-18 254696]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2009-09-23 218112]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2012-05-12 19:15:22 ----D---- C:\Program Files\trend micro
2012-05-12 19:15:17 ----D---- C:\rsit
2012-05-12 18:46:45 ----ASH---- C:\pagefile.sys
2012-05-12 18:31:22 ----A---- C:\Windows\system32\AutoPartNt.exe
2012-05-12 18:31:18 ----D---- C:\ProgramData\Acronis
2012-05-12 18:06:27 ----A---- C:\Windows\system32\drivers\snapman.sys
2012-05-12 18:06:01 ----D---- C:\Program Files\Acronis
2012-05-12 18:05:59 ----D---- C:\Program Files\Common Files\Acronis
2012-05-12 17:52:15 ----D---- C:\Program Files\Acronis Disk Director Suite 10 build 2160
2012-05-10 11:54:12 ----A---- C:\Windows\system32\drivers\tcpip.sys
2012-05-10 11:53:48 ----D---- C:\Program Files\uTorrent
2012-05-10 11:52:34 ----D---- C:\Users\Trial\AppData\Roaming\uTorrent
2012-05-10 11:49:34 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-05-10 11:49:30 ----A---- C:\Windows\system32\ntkrnlpa.exe
2012-05-10 11:49:28 ----A---- C:\Windows\system32\win32k.sys
2012-05-10 11:48:09 ----A---- C:\Windows\system32\DWrite.dll
2012-05-10 11:46:58 ----A---- C:\Windows\system32\drivers\partmgr.sys
2012-05-09 09:01:14 ----D---- C:\Program Files\CCleaner
2012-05-06 19:14:49 ----D---- C:\Program Files\Common Files\Adobe
2012-05-06 19:14:49 ----D---- C:\Program Files\Adobe
2012-05-06 19:12:34 ----D---- C:\ProgramData\Adobe
2012-05-03 20:30:02 ----A---- C:\Windows\system32\drivers\VBoxDrv.sys
2012-05-03 20:28:35 ----DC---- C:\Windows\system32\DRVSTORE
2012-05-03 20:28:35 ----A---- C:\Windows\system32\drivers\VBoxUSBMon.sys
2012-05-03 20:28:01 ----D---- C:\Program Files\Oracle
2012-05-03 20:01:27 ----D---- C:\Users\Trial\AppData\Roaming\Mozilla
2012-05-03 20:01:21 ----D---- C:\Users\Trial\AppData\Roaming\CometNetwork
2012-05-03 20:00:52 ----D---- C:\Program Files\CometBird
2012-05-03 11:41:34 ----D---- C:\FPC
2012-05-02 10:20:38 ----N---- C:\Windows\system32\MpSigStub.exe
2012-04-30 11:29:48 ----D---- C:\Users\Trial\AppData\Roaming\.minecraft
2012-04-30 11:29:46 ----D---- C:\ProgramData\Sun
2012-04-30 11:29:43 ----D---- C:\Program Files\Common Files\Java
2012-04-30 11:29:16 ----A---- C:\Windows\system32\deployJava1.dll
2012-04-30 11:29:15 ----A---- C:\Windows\system32\javaws.exe
2012-04-30 11:29:15 ----A---- C:\Windows\system32\javaw.exe
2012-04-30 11:29:15 ----A---- C:\Windows\system32\java.exe
2012-04-30 11:28:28 ----D---- C:\Program Files\Java
2012-04-30 09:34:45 ----D---- C:\Program Files\Lavalys
2012-04-29 22:43:31 ----D---- C:\Program Files\Microsoft Silverlight
2012-04-29 21:56:51 ----A---- C:\Windows\system32\FntCache.dll
2012-04-29 21:56:48 ----A---- C:\Windows\system32\d2d1.dll
2012-04-29 20:57:40 ----D---- C:\Program Files\Microsoft.NET
2012-04-29 20:35:55 ----A---- C:\Windows\system32\TURegOpt.exe
2012-04-29 20:35:54 ----A---- C:\Windows\system32\authuitu.dll
2012-04-29 20:35:01 ----D---- C:\Users\Trial\AppData\Roaming\TuneUp Software
2012-04-29 20:34:33 ----D---- C:\Program Files\TuneUp Utilities 2012
2012-04-29 20:33:16 ----D---- C:\ProgramData\TuneUp Software
2012-04-29 20:33:05 ----SHD---- C:\ProgramData\{32364CEA-7855-4A3C-B674-53D8E9B97936}
2012-04-29 20:33:05 ----HD---- C:\ProgramData\Common Files
2012-04-29 19:48:47 ----D---- C:\Windows\sk-SK
2012-04-29 19:48:39 ----D---- C:\Windows\system32\drivers\sk-SK
2012-04-29 18:11:33 ----A---- C:\Windows\system32\mshtmled.dll
2012-04-29 18:11:30 ----A---- C:\Windows\system32\iertutil.dll
2012-04-29 18:11:27 ----A---- C:\Windows\system32\jscript.dll
2012-04-29 18:11:26 ----A---- C:\Windows\system32\jscript9.dll
2012-04-29 18:11:17 ----A---- C:\Windows\system32\jsproxy.dll
2012-04-29 18:11:16 ----A---- C:\Windows\system32\wininet.dll
2012-04-29 18:11:12 ----A---- C:\Windows\system32\url.dll
2012-04-29 18:11:09 ----A---- C:\Windows\system32\ieui.dll
2012-04-29 18:10:57 ----A---- C:\Windows\system32\urlmon.dll
2012-04-29 18:10:37 ----A---- C:\Windows\system32\ieframe.dll
2012-04-29 18:10:26 ----A---- C:\Windows\system32\mshtml.dll
2012-04-29 11:47:58 ----A---- C:\Windows\system32\drivers\usbehci.sys
2012-04-29 11:47:53 ----A---- C:\Windows\system32\drivers\usbport.sys
2012-04-29 11:47:52 ----A---- C:\Windows\system32\drivers\usbhub.sys
2012-04-29 11:47:50 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2012-04-29 11:47:48 ----A---- C:\Windows\system32\drivers\usbd.sys
2012-04-29 11:47:48 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2012-04-29 11:47:07 ----A---- C:\Windows\system32\esent.dll
2012-04-29 11:47:05 ----A---- C:\Windows\system32\drivers\ntfs.sys
2012-04-29 11:47:03 ----A---- C:\Windows\system32\drivers\storport.sys
2012-04-29 11:47:01 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2012-04-29 11:46:58 ----A---- C:\Windows\system32\drivers\amdsata.sys
2012-04-29 11:46:57 ----A---- C:\Windows\system32\drivers\nvstor.sys
2012-04-29 11:46:55 ----A---- C:\Windows\system32\drivers\nvraid.sys
2012-04-29 11:46:54 ----A---- C:\Windows\system32\drivers\amdxata.sys
2012-04-29 11:46:53 ----A---- C:\Windows\system32\fsutil.exe
2012-04-29 11:46:50 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2012-04-29 11:39:37 ----A---- C:\Windows\system32\tquery.dll
2012-04-29 11:39:36 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2012-04-29 11:39:36 ----A---- C:\Windows\system32\SearchIndexer.exe
2012-04-29 11:39:36 ----A---- C:\Windows\system32\SearchFilterHost.exe
2012-04-29 11:39:35 ----A---- C:\Windows\system32\mssvp.dll
2012-04-29 11:39:34 ----A---- C:\Windows\system32\mssrch.dll
2012-04-29 11:39:34 ----A---- C:\Windows\system32\mssphtb.dll
2012-04-29 11:39:34 ----A---- C:\Windows\system32\mssph.dll
2012-04-29 11:39:34 ----A---- C:\Windows\system32\msscntrs.dll
2012-04-29 11:26:33 ----D---- C:\Windows\system32\Wat
2012-04-29 10:17:11 ----A---- C:\Windows\system32\MRT.exe
2012-04-29 10:14:10 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2012-04-29 10:14:09 ----A---- C:\Windows\system32\wmi.dll
2012-04-29 10:14:09 ----A---- C:\Windows\system32\wintrust.dll
2012-04-29 10:14:09 ----A---- C:\Windows\system32\imagehlp.dll
2012-04-29 10:10:26 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2012-04-29 10:10:26 ----A---- C:\Windows\system32\msls31.dll
2012-04-29 10:10:25 ----A---- C:\Windows\system32\msrating.dll
2012-04-29 10:10:25 ----A---- C:\Windows\system32\msfeedssync.exe
2012-04-29 10:10:25 ----A---- C:\Windows\system32\msfeedsbs.dll
2012-04-29 10:10:24 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2012-04-29 10:10:24 ----A---- C:\Windows\system32\mshtmler.dll
2012-04-29 10:10:24 ----A---- C:\Windows\system32\iesysprep.dll
2012-04-29 10:10:24 ----A---- C:\Windows\system32\ieakeng.dll
2012-04-29 10:10:24 ----A---- C:\Windows\system32\IEAdvpack.dll
2012-04-29 10:10:22 ----A---- C:\Windows\system32\ieapfltr.dat
2012-04-29 10:10:22 ----A---- C:\Windows\system32\dxtrans.dll
2012-04-29 10:10:22 ----A---- C:\Windows\system32\dxtmsft.dll
2012-04-29 10:10:21 ----A---- C:\Windows\system32\iesetup.dll
2012-04-29 10:10:21 ----A---- C:\Windows\system32\iernonce.dll
2012-04-29 10:10:21 ----A---- C:\Windows\system32\iedkcs32.dll
2012-04-29 10:10:21 ----A---- C:\Windows\system32\ieapfltr.dll
2012-04-29 10:10:21 ----A---- C:\Windows\system32\ie4uinit.exe
2012-04-29 10:10:21 ----A---- C:\Windows\system32\icardie.dll
2012-04-29 10:10:20 ----A---- C:\Windows\system32\webcheck.dll
2012-04-29 10:10:19 ----A---- C:\Windows\system32\licmgr10.dll
2012-04-29 10:10:19 ----A---- C:\Windows\system32\inseng.dll
2012-04-29 10:10:18 ----A---- C:\Windows\system32\wextract.exe
2012-04-29 10:10:18 ----A---- C:\Windows\system32\vbscript.dll
2012-04-29 10:10:18 ----A---- C:\Windows\system32\msfeeds.dll
2012-04-29 10:10:18 ----A---- C:\Windows\system32\iexpress.exe
2012-04-29 10:10:17 ----A---- C:\Windows\system32\pngfilt.dll
2012-04-29 10:10:17 ----A---- C:\Windows\system32\occache.dll
2012-04-29 10:10:17 ----A---- C:\Windows\system32\mshta.exe
2012-04-29 10:10:17 ----A---- C:\Windows\system32\imgutil.dll
2012-04-29 10:10:17 ----A---- C:\Windows\system32\ieUnatt.exe
2012-04-29 10:10:17 ----A---- C:\Windows\system32\iepeers.dll
2012-04-29 10:10:17 ----A---- C:\Windows\system32\ieakui.dll
2012-04-29 10:10:17 ----A---- C:\Windows\system32\ieaksie.dll
2012-04-29 10:10:17 ----A---- C:\Windows\system32\admparse.dll
2012-04-28 23:20:04 ----A---- C:\Windows\system32\rdpcorekmts.dll
2012-04-28 23:20:03 ----A---- C:\Windows\system32\rdpwsx.dll
2012-04-28 23:01:27 ----D---- C:\Windows\system32\SPReview
2012-04-28 22:37:07 ----D---- C:\Windows\Panther
2012-04-28 21:34:29 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2012-04-28 21:34:28 ----A---- C:\Windows\system32\mprddm.dll
2012-04-28 21:34:28 ----A---- C:\Windows\system32\LogonUI.exe
2012-04-28 21:34:28 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2012-04-28 21:34:27 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2012-04-28 21:34:27 ----A---- C:\Windows\system32\MdSched.exe
2012-04-28 21:34:27 ----A---- C:\Windows\system32\lsmproxy.dll
2012-04-28 21:34:27 ----A---- C:\Windows\system32\lpksetup.exe
2012-04-28 21:34:27 ----A---- C:\Windows\system32\KMSVC.DLL
2012-04-28 21:34:27 ----A---- C:\Windows\system32\KBDUS.DLL
2012-04-28 21:34:27 ----A---- C:\Windows\system32\KBDPO.DLL
2012-04-28 21:34:27 ----A---- C:\Windows\system32\KBDINTEL.DLL
2012-04-28 21:34:27 ----A---- C:\Windows\system32\KBDINBEN.DLL
2012-04-28 21:34:27 ----A---- C:\Windows\system32\KBDBULG.DLL
2012-04-28 21:34:27 ----A---- C:\Windows\system32\drivers\ks.sys
2012-04-28 21:34:26 ----A---- C:\Windows\system32\Mcx2Svc.dll
2012-04-28 21:34:25 ----A---- C:\Windows\system32\mciavi32.dll
2012-04-28 21:34:25 ----A---- C:\Windows\system32\mcbuilder.exe
2012-04-28 21:34:25 ----A---- C:\Windows\system32\mblctr.exe
2012-04-28 21:34:25 ----A---- C:\Windows\system32\mapistub.dll
2012-04-28 21:34:25 ----A---- C:\Windows\system32\mapi32.dll
2012-04-28 21:34:24 ----A---- C:\Windows\system32\netiougc.exe
2012-04-28 21:34:24 ----A---- C:\Windows\system32\netcfgx.dll
2012-04-28 21:34:24 ----A---- C:\Windows\system32\ncryptui.dll
2012-04-28 21:34:24 ----A---- C:\Windows\system32\mcmde.dll
2012-04-28 21:34:24 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2012-04-28 21:34:23 ----A---- C:\Windows\system32\netiohlp.dll
2012-04-28 21:34:23 ----A---- C:\Windows\system32\Mystify.scr
2012-04-28 21:34:23 ----A---- C:\Windows\system32\msvidc32.dll
2012-04-28 21:34:23 ----A---- C:\Windows\system32\msvfw32.dll
2012-04-28 21:34:23 ----A---- C:\Windows\system32\drivers\netio.sys
2012-04-28 21:34:22 ----A---- C:\Windows\system32\olepro32.dll
2012-04-28 21:34:22 ----A---- C:\Windows\system32\odbc32.dll
2012-04-28 21:34:22 ----A---- C:\Windows\system32\ntlanman.dll
2012-04-28 21:34:22 ----A---- C:\Windows\system32\msxml3.dll
2012-04-28 21:34:21 ----A---- C:\Windows\system32\nlsbres.dll
2012-04-28 21:34:21 ----A---- C:\Windows\system32\mscoree.dll
2012-04-28 21:34:21 ----A---- C:\Windows\system32\msconfig.exe
2012-04-28 21:34:21 ----A---- C:\Windows\system32\drivers\msahci.sys
2012-04-28 21:34:20 ----A---- C:\Windows\system32\mscories.dll
2012-04-28 21:34:20 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2012-04-28 21:34:19 ----A---- C:\Windows\system32\mstask.dll
2012-04-28 21:34:19 ----A---- C:\Windows\system32\msrle32.dll
2012-04-28 21:34:18 ----A---- C:\Windows\system32\msdri.dll
2012-04-28 21:34:18 ----A---- C:\Windows\system32\cryptui.dll
2012-04-28 21:34:17 ----A---- C:\Windows\system32\consent.exe
2012-04-28 21:34:17 ----A---- C:\Windows\system32\certcli.dll
2012-04-28 21:34:17 ----A---- C:\Windows\system32\C_ISCII.DLL
2012-04-28 21:34:17 ----A---- C:\Windows\system32\bootres.dll
2012-04-28 21:34:17 ----A---- C:\Windows\system32\biocpl.dll
2012-04-28 21:34:16 ----A---- C:\Windows\system32\Display.dll
2012-04-28 21:34:15 ----A---- C:\Windows\system32\dfshim.dll
2012-04-28 21:34:15 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2012-04-28 21:34:15 ----A---- C:\Windows\system32\davclnt.dll
2012-04-28 21:34:15 ----A---- C:\Windows\system32\d3d9.dll
2012-04-28 21:34:15 ----A---- C:\Windows\system32\d3d11.dll
2012-04-28 21:34:15 ----A---- C:\Windows\system32\d3d10level9.dll
2012-04-28 21:34:15 ----A---- C:\Windows\system32\adsldp.dll
2012-04-28 21:34:14 ----A---- C:\Windows\system32\drivers\acpi.sys
2012-04-28 21:34:14 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2012-04-28 21:34:14 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2012-04-28 21:34:14 ----A---- C:\Windows\system32\asycfilt.dll
2012-04-28 21:34:14 ----A---- C:\Windows\system32\activeds.dll
2012-04-28 21:34:14 ----A---- C:\Windows\system32\acppage.dll
2012-04-28 21:34:13 ----A---- C:\Windows\system32\drivers\ataport.sys
2012-04-28 21:34:13 ----A---- C:\Windows\system32\basecsp.dll
2012-04-28 21:34:13 ----A---- C:\Windows\system32\AxInstSv.dll
2012-04-28 21:34:13 ----A---- C:\Windows\system32\avifil32.dll
2012-04-28 21:34:13 ----A---- C:\Windows\system32\authui.dll
2012-04-28 21:34:13 ----A---- C:\Windows\system32\appinfo.dll
2012-04-28 21:34:13 ----A---- C:\Windows\system32\advapi32.dll
2012-04-28 21:34:12 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2012-04-28 21:34:12 ----A---- C:\Windows\system32\iasrecst.dll
2012-04-28 21:34:12 ----A---- C:\Windows\system32\httpapi.dll
2012-04-28 21:34:12 ----A---- C:\Windows\system32\halmacpi.dll
2012-04-28 21:34:12 ----A---- C:\Windows\system32\halacpi.dll
2012-04-28 21:34:12 ----A---- C:\Windows\system32\hal.dll
2012-04-28 21:34:11 ----A---- C:\Windows\system32\iphlpsvc.dll
2012-04-28 21:34:11 ----A---- C:\Windows\system32\imapi2.dll
2012-04-28 21:34:11 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2012-04-28 21:34:10 ----A---- C:\Windows\system32\ExplorerFrame.dll
2012-04-28 21:34:10 ----A---- C:\Windows\system32\evr.dll
2012-04-28 21:34:10 ----A---- C:\Windows\system32\dxgi.dll
2012-04-28 21:34:09 ----A---- C:\Windows\system32\FXSSVC.exe
2012-04-28 21:34:09 ----A---- C:\Windows\system32\FXSMON.dll
2012-04-28 21:34:09 ----A---- C:\Windows\system32\fveapi.dll
2012-04-28 21:34:09 ----A---- C:\Windows\system32\eudcedit.exe
2012-04-28 21:34:09 ----A---- C:\Windows\system32\dskquoui.dll
2012-04-28 21:34:09 ----A---- C:\Windows\system32\dsauth.dll
2012-04-28 21:34:09 ----A---- C:\Windows\system32\dps.dll
2012-04-28 21:34:08 ----A---- C:\Windows\system32\onex.dll
2012-04-28 21:34:08 ----A---- C:\Windows\system32\framedynos.dll
2012-04-28 21:34:08 ----A---- C:\Windows\system32\framedyn.dll
2012-04-28 21:34:08 ----A---- C:\Windows\system32\fms.dll
2012-04-28 21:34:07 ----A---- C:\Windows\system32\tcpipcfg.dll
2012-04-28 21:34:07 ----A---- C:\Windows\system32\tapisrv.dll
2012-04-28 21:34:07 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2012-04-28 21:34:07 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2012-04-28 21:34:06 ----A---- C:\Windows\twain_32.dll
2012-04-28 21:34:06 ----A---- C:\Windows\system32\twext.dll
2012-04-28 21:34:06 ----A---- C:\Windows\system32\themecpl.dll
2012-04-28 21:34:06 ----A---- C:\Windows\system32\spp.dll
2012-04-28 21:34:05 ----A---- C:\Windows\system32\spwizeng.dll
2012-04-28 21:34:05 ----A---- C:\Windows\system32\sppobjs.dll
2012-04-28 21:34:05 ----A---- C:\Windows\system32\sppnp.dll
2012-04-28 21:34:05 ----A---- C:\Windows\system32\spoolsv.exe
2012-04-28 21:34:05 ----A---- C:\Windows\system32\spbcd.dll
2012-04-28 21:34:05 ----A---- C:\Windows\system32\shlwapi.dll
2012-04-28 21:34:05 ----A---- C:\Windows\system32\shacct.dll
2012-04-28 21:34:04 ----A---- C:\Windows\system32\StructuredQuery.dll
2012-04-28 21:34:04 ----A---- C:\Windows\system32\sqlsrv32.dll
2012-04-28 21:34:03 ----A---- C:\Windows\system32\wksprt.exe
2012-04-28 21:34:03 ----A---- C:\Windows\system32\winhttp.dll
2012-04-28 21:34:03 ----A---- C:\Windows\system32\sscore.dll
2012-04-28 21:34:03 ----A---- C:\Windows\system32\srvsvc.dll
2012-04-28 21:34:03 ----A---- C:\Windows\system32\srrstr.dll
2012-04-28 21:34:03 ----A---- C:\Windows\system32\spwizres.dll
2012-04-28 21:34:02 ----A---- C:\Windows\system32\wmicmiplugin.dll
2012-04-28 21:34:02 ----A---- C:\Windows\system32\wlangpui.dll
2012-04-28 21:34:02 ----A---- C:\Windows\system32\wimserv.exe
2012-04-28 21:34:02 ----A---- C:\Windows\system32\wimgapi.dll
2012-04-28 21:34:02 ----A---- C:\Windows\system32\wiadefui.dll
2012-04-28 21:34:01 ----A---- C:\Windows\system32\XpsRasterService.dll
2012-04-28 21:34:01 ----A---- C:\Windows\system32\wvc.dll
2012-04-28 21:34:01 ----A---- C:\Windows\system32\wuwebv.dll
2012-04-28 21:34:01 ----A---- C:\Windows\system32\wuapp.exe
2012-04-28 21:34:01 ----A---- C:\Windows\system32\wtsapi32.dll
2012-04-28 21:34:01 ----A---- C:\Windows\system32\wsqmcons.exe
2012-04-28 21:34:01 ----A---- C:\Windows\system32\wscapi.dll
2012-04-28 21:34:01 ----A---- C:\Windows\system32\WPDSp.dll
2012-04-28 21:34:01 ----A---- C:\Windows\system32\wpd_ci.dll
2012-04-28 21:34:01 ----A---- C:\Windows\system32\wmpps.dll
2012-04-28 21:34:00 ----A---- C:\Windows\system32\VAN.dll
2012-04-28 21:34:00 ----A---- C:\Windows\system32\uxlib.dll
2012-04-28 21:34:00 ----A---- C:\Windows\system32\utildll.dll
2012-04-28 21:34:00 ----A---- C:\Windows\system32\usp10.dll
2012-04-28 21:34:00 ----A---- C:\Windows\system32\untfs.dll
2012-04-28 21:34:00 ----A---- C:\Windows\system32\unlodctr.exe
2012-04-28 21:34:00 ----A---- C:\Windows\system32\unattend.dll
2012-04-28 21:34:00 ----A---- C:\Windows\system32\umpo.dll
2012-04-28 21:34:00 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2012-04-28 21:33:58 ----A---- C:\Windows\system32\wdc.dll
2012-04-28 21:33:58 ----A---- C:\Windows\system32\WavDest.dll
2012-04-28 21:33:58 ----A---- C:\Windows\system32\drivers\wanarp.sys
2012-04-28 21:33:57 ----A---- C:\Windows\system32\Vault.dll
2012-04-28 21:33:54 ----A---- C:\Windows\system32\RDPENCDD.dll
2012-04-28 21:33:54 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2012-04-28 21:33:54 ----A---- C:\Windows\system32\QSHVHOST.DLL
2012-04-28 21:33:54 ----A---- C:\Windows\system32\QAGENTRT.DLL
2012-04-28 21:33:53 ----A---- C:\Windows\system32\rpcss.dll
2012-04-28 21:33:53 ----A---- C:\Windows\system32\raschap.dll
2012-04-28 21:33:53 ----A---- C:\Windows\system32\RacEngn.dll
2012-04-28 21:33:53 ----A---- C:\Windows\system32\QCLIPROV.DLL
2012-04-28 21:33:52 ----A---- C:\Windows\system32\samcli.dll
2012-04-28 21:33:52 ----A---- C:\Windows\system32\Robocopy.exe
2012-04-28 21:33:52 ----A---- C:\Windows\system32\RMActivate.exe
2012-04-28 21:33:52 ----A---- C:\Windows\system32\remotepg.dll
2012-04-28 21:33:52 ----A---- C:\Windows\system32\recovery.dll
2012-04-28 21:33:52 ----A---- C:\Windows\system32\ReAgent.dll
2012-04-28 21:33:52 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2012-04-28 21:33:51 ----A---- C:\Windows\system32\pifmgr.dll
2012-04-28 21:33:51 ----A---- C:\Windows\system32\perfts.dll
2012-04-28 21:33:51 ----A---- C:\Windows\system32\perfmon.exe
2012-04-28 21:33:51 ----A---- C:\Windows\system32\pdhui.dll
2012-04-28 21:33:51 ----A---- C:\Windows\system32\onexui.dll
2012-04-28 21:33:50 ----A---- C:\Windows\system32\proquota.exe
2012-04-28 21:33:50 ----A---- C:\Windows\system32\propsys.dll
2012-04-28 21:33:49 ----A---- C:\Windows\system32\QAGENT.DLL
2012-04-28 21:33:48 ----A---- C:\Windows\system32\setupcl.exe
2012-04-28 21:33:48 ----A---- C:\Windows\system32\prnfldr.dll
2012-04-28 21:33:48 ----A---- C:\Windows\system32\PrintIsolationProxy.dll
2012-04-28 21:33:48 ----A---- C:\Windows\system32\drivers\sffp_sd.sys
2012-04-28 21:33:47 ----A---- C:\Windows\system32\schtasks.exe
2012-04-28 21:33:47 ----A---- C:\Windows\system32\secproc.dll
2012-04-28 21:33:47 ----A---- C:\Windows\system32\scecli.dll
2012-04-28 21:33:47 ----A---- C:\Windows\system32\scansetting.dll
2012-04-28 21:33:47 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2012-04-28 21:33:46 ----A---- C:\Windows\system32\msasn1.dll
2012-04-28 21:33:46 ----A---- C:\Windows\system32\mfreadwrite.dll
2012-04-28 21:33:46 ----A---- C:\Windows\system32\MFPlay.dll
2012-04-28 21:33:46 ----A---- C:\Windows\system32\mfc40.dll
2012-04-28 21:33:44 ----A---- C:\Windows\system32\mobsync.exe
2012-04-28 21:33:44 ----A---- C:\Windows\system32\MMDevAPI.dll
2012-04-28 21:33:44 ----A---- C:\Windows\system32\mmcndmgr.dll
2012-04-28 21:33:44 ----A---- C:\Windows\system32\KBDTUQ.DLL
2012-04-28 21:33:44 ----A---- C:\Windows\system32\KBDTUF.DLL
2012-04-28 21:33:43 ----A---- C:\Windows\system32\ListSvc.dll
2012-04-28 21:33:43 ----A---- C:\Windows\system32\itircl.dll
2012-04-28 21:33:42 ----A---- C:\Windows\system32\KBDNEPR.DLL
2012-04-28 21:33:42 ----A---- C:\Windows\system32\KBDBLR.DLL
2012-04-28 21:33:42 ----A---- C:\Windows\system32\KBDBASH.DLL
2012-04-28 21:33:42 ----A---- C:\Windows\system32\iprtrmgr.dll
2012-04-28 21:33:41 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2012-04-28 21:33:40 ----A---- C:\Windows\system32\ntprint.dll
2012-04-28 21:33:40 ----A---- C:\Windows\system32\mciqtz32.dll
2012-04-28 21:33:40 ----A---- C:\Windows\system32\lsm.exe
2012-04-28 21:33:40 ----A---- C:\Windows\system32\logman.exe
2012-04-28 21:33:40 ----A---- C:\Windows\system32\logagent.exe
2012-04-28 21:33:40 ----A---- C:\Windows\system32\localsec.dll
2012-04-28 21:33:35 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2012-04-28 21:33:35 ----A---- C:\Windows\system32\msscp.dll
2012-04-28 21:33:34 ----A---- C:\Windows\system32\MuiUnattend.exe
2012-04-28 21:33:34 ----A---- C:\Windows\system32\muifontsetup.dll
2012-04-28 21:33:34 ----A---- C:\Windows\system32\mtxclu.dll
2012-04-28 21:33:33 ----A---- C:\Windows\system32\nslookup.exe
2012-04-28 21:33:33 ----A---- C:\Windows\system32\nshipsec.dll
2012-04-28 21:33:33 ----A---- C:\Windows\system32\nlasvc.dll
2012-04-28 21:33:33 ----A---- C:\Windows\system32\nlaapi.dll
2012-04-28 21:33:33 ----A---- C:\Windows\system32\netutils.dll
2012-04-28 21:33:33 ----A---- C:\Windows\system32\netplwiz.dll
2012-04-28 21:33:33 ----A---- C:\Windows\system32\netid.dll
2012-04-28 21:33:33 ----A---- C:\Windows\system32\msnetobj.dll
2012-04-28 21:33:33 ----A---- C:\Windows\system32\msihnd.dll
2012-04-28 21:33:33 ----A---- C:\Windows\system32\msi.dll
2012-04-28 21:33:33 ----A---- C:\Windows\system32\msdtctm.dll
2012-04-28 21:33:31 ----A---- C:\Windows\system32\netapi32.dll
2012-04-28 21:33:31 ----A---- C:\Windows\system32\ncsi.dll
2012-04-28 21:33:31 ----A---- C:\Windows\system32\Narrator.exe
2012-04-28 21:33:31 ----A---- C:\Windows\system32\NAPHLPR.DLL
2012-04-28 21:33:31 ----A---- C:\Windows\system32\mydocs.dll
2012-04-28 21:33:31 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2012-04-28 21:33:30 ----A---- C:\Windows\system32\drivers\ndis.sys
2012-04-28 21:33:30 ----A---- C:\Windows\system32\comdlg32.dll
2012-04-28 21:33:29 ----A---- C:\Windows\system32\credui.dll
2012-04-28 21:33:28 ----A---- C:\Windows\system32\crypt32.dll
2012-04-28 21:33:27 ----A---- C:\Windows\system32\cmstp.exe
2012-04-28 21:33:25 ----A---- C:\Windows\system32\diskpart.exe
2012-04-28 21:33:25 ----A---- C:\Windows\system32\dhcpcore.dll
2012-04-28 21:33:24 ----A---- C:\Windows\system32\d3d10warp.dll
2012-04-28 21:33:24 ----A---- C:\Windows\system32\cryptsvc.dll
2012-04-28 21:33:21 ----A---- C:\Windows\system32\bitsadmin.exe
2012-04-28 21:33:21 ----A---- C:\Windows\system32\bcdsrv.dll
2012-04-28 21:33:21 ----A---- C:\Windows\system32\bcdboot.exe
2012-04-28 21:33:21 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2012-04-28 21:33:20 ----A---- C:\Windows\system32\bcdedit.exe
2012-04-28 21:33:19 ----A---- C:\Windows\system32\apphelp.dll
2012-04-28 21:33:19 ----A---- C:\Windows\system32\amstream.dll
2012-04-28 21:33:19 ----A---- C:\Windows\system32\accessibilitycpl.dll
2012-04-28 21:33:18 ----A---- C:\Windows\system32\certprop.dll
2012-04-28 21:33:18 ----A---- C:\Windows\system32\CertEnroll.dll
2012-04-28 21:33:18 ----A---- C:\Windows\system32\browcli.dll
2012-04-28 21:33:17 ----A---- C:\Windows\system32\Bubbles.scr
2012-04-28 21:33:17 ----A---- C:\Windows\system32\blackbox.dll
2012-04-28 21:33:16 ----A---- C:\Windows\system32\gameux.dll
2012-04-28 21:33:15 ----A---- C:\Windows\system32\fontext.dll
2012-04-28 21:33:15 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2012-04-28 21:33:14 ----A---- C:\Windows\system32\imapi2fs.dll
2012-04-28 21:33:14 ----A---- C:\Windows\system32\fphc.dll
2012-04-28 21:33:13 ----A---- C:\Windows\system32\input.dll
2012-04-28 21:33:13 ----A---- C:\Windows\system32\imm32.dll
2012-04-28 21:33:13 ----A---- C:\Windows\system32\iasrad.dll
2012-04-28 21:33:12 ----A---- C:\Windows\system32\iasacct.dll
2012-04-28 21:33:10 ----A---- C:\Windows\system32\efscore.dll
2012-04-28 21:33:10 ----A---- C:\Windows\system32\dxdiagn.dll
2012-04-28 21:33:10 ----A---- C:\Windows\system32\dwmredir.dll
2012-04-28 21:33:10 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2012-04-28 21:33:10 ----A---- C:\Windows\system32\dosx.exe
2012-04-28 21:33:09 ----A---- C:\Windows\system32\drmmgrtn.dll
2012-04-28 21:33:09 ----A---- C:\Windows\system32\dot3ui.dll
2012-04-28 21:33:05 ----A---- C:\Windows\system32\taskschd.dll
2012-04-28 21:33:05 ----A---- C:\Windows\system32\TabSvc.dll
2012-04-28 21:33:04 ----A---- C:\Windows\system32\themeui.dll
2012-04-28 21:33:04 ----A---- C:\Windows\system32\systemcpl.dll
2012-04-28 21:33:03 ----A---- C:\Windows\system32\umb.dll
2012-04-28 21:33:03 ----A---- C:\Windows\system32\tzutil.exe
2012-04-28 21:33:03 ----A---- C:\Windows\system32\tsmf.dll
2012-04-28 21:33:02 ----A---- C:\Windows\system32\TRAPI.dll
2012-04-28 21:33:02 ----A---- C:\Windows\system32\sxs.dll
2012-04-28 21:33:02 ----A---- C:\Windows\system32\sud.dll
2012-04-28 21:33:01 ----A---- C:\Windows\system32\SyncCenter.dll
2012-04-28 21:33:00 ----A---- C:\Windows\system32\sysmain.dll
2012-04-28 21:33:00 ----A---- C:\Windows\system32\srvcli.dll
2012-04-28 21:32:59 ----A---- C:\Windows\system32\ssText3d.scr
2012-04-28 21:32:57 ----A---- C:\Windows\system32\WMPhoto.dll
2012-04-28 21:32:55 ----A---- C:\Windows\system32\WMVDECOD.DLL
2012-04-28 21:32:53 ----A---- C:\Windows\system32\wmpsrcwp.dll
2012-04-28 21:32:51 ----A---- C:\Windows\system32\wisptis.exe
2012-04-28 21:32:51 ----A---- C:\Windows\system32\WinSAT.exe
2012-04-28 21:32:51 ----A---- C:\Windows\system32\WFS.exe
2012-04-28 21:32:50 ----A---- C:\Windows\system32\WMADMOD.DLL
2012-04-28 21:32:49 ----A---- C:\Windows\system32\wwanprotdim.dll
2012-04-28 21:32:49 ----A---- C:\Windows\system32\WUDFx.dll
2012-04-28 21:32:49 ----A---- C:\Windows\system32\WUDFSvc.dll
2012-04-28 21:32:49 ----A---- C:\Windows\system32\WUDFPlatform.dll
2012-04-28 21:32:49 ----A---- C:\Windows\system32\WUDFHost.exe
2012-04-28 21:32:49 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2012-04-28 21:32:49 ----A---- C:\Windows\system32\WSDApi.dll
2012-04-28 21:32:49 ----A---- C:\Windows\system32\wmdrmsdk.dll
2012-04-28 21:32:49 ----A---- C:\Windows\system32\Wldap32.dll
2012-04-28 21:32:49 ----A---- C:\Windows\system32\wkssvc.dll
2012-04-28 21:32:49 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2012-04-28 21:32:49 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2012-04-28 21:32:48 ----A---- C:\Windows\system32\wshbth.dll
2012-04-28 21:32:48 ----A---- C:\Windows\system32\ws2_32.dll
2012-04-28 21:32:48 ----A---- C:\Windows\system32\wpdbusenum.dll
2012-04-28 21:32:48 ----A---- C:\Windows\system32\drivers\usbrpm.sys
2012-04-28 21:32:46 ----A---- C:\Windows\system32\vssapi.dll
2012-04-28 21:32:46 ----A---- C:\Windows\system32\vpnike.dll
2012-04-28 21:32:46 ----A---- C:\Windows\system32\usercpl.dll
2012-04-28 21:32:46 ----A---- C:\Windows\system32\upnp.dll
2012-04-28 21:32:46 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2012-04-28 21:32:46 ----A---- C:\Windows\system32\drivers\USBCAMD.sys
2012-04-28 21:32:44 ----A---- C:\Windows\system32\werconcpl.dll
2012-04-28 21:32:44 ----A---- C:\Windows\system32\vdsutil.dll
2012-04-28 21:32:43 ----A---- C:\Windows\system32\vds.exe
2012-04-28 21:32:43 ----A---- C:\Windows\system32\rdpcfgex.dll
2012-04-28 21:32:43 ----A---- C:\Windows\system32\rastls.dll
2012-04-28 21:32:43 ----A---- C:\Windows\system32\drivers\volsnap.sys
2012-04-28 21:32:43 ----A---- C:\Windows\system32\drivers\RDPCDD.sys
2012-04-28 21:32:42 ----A---- C:\Windows\system32\riched32.dll
2012-04-28 21:32:42 ----A---- C:\Windows\system32\riched20.dll
2012-04-28 21:32:42 ----A---- C:\Windows\system32\relog.exe
2012-04-28 21:32:41 ----A---- C:\Windows\system32\recdisc.exe
2012-04-28 21:32:41 ----A---- C:\Windows\system32\printui.dll
2012-04-28 21:32:41 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2012-04-28 21:32:41 ----A---- C:\Windows\system32\PresentationHost.exe
2012-04-28 21:32:40 ----A---- C:\Windows\system32\provsvc.dll
2012-04-28 21:32:40 ----A---- C:\Windows\system32\prncache.dll
2012-04-28 21:32:40 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2012-04-28 21:32:39 ----A---- C:\Windows\system32\powercpl.dll
2012-04-28 21:32:39 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll
2012-04-28 21:32:39 ----A---- C:\Windows\system32\PortableDeviceStatus.dll
2012-04-28 21:32:39 ----A---- C:\Windows\system32\PkgMgr.exe
2012-04-28 21:32:37 ----A---- C:\Windows\system32\qdv.dll
2012-04-28 21:32:37 ----A---- C:\Windows\system32\qcap.dll
2012-04-28 21:32:37 ----A---- C:\Windows\system32\puiobj.dll
2012-04-28 21:32:36 ----A---- C:\Windows\system32\spreview.exe
2012-04-28 21:32:36 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2012-04-28 21:32:36 ----A---- C:\Windows\system32\shunimpl.dll
2012-04-28 21:32:36 ----A---- C:\Windows\system32\shsvcs.dll
2012-04-28 21:32:35 ----A---- C:\Windows\system32\srchadmin.dll
2012-04-28 21:32:35 ----A---- C:\Windows\system32\sqlcese30.dll
2012-04-28 21:32:35 ----A---- C:\Windows\system32\spwizui.dll
2012-04-28 21:32:35 ----A---- C:\Windows\system32\sppwinob.dll
2012-04-28 21:32:35 ----A---- C:\Windows\system32\sppc.dll
2012-04-28 21:32:35 ----A---- C:\Windows\system32\spinstall.exe
2012-04-28 21:32:32 ----A---- C:\Windows\system32\sppinst.dll
2012-04-28 21:32:31 ----A---- C:\Windows\system32\schedcli.dll
2012-04-28 21:32:31 ----A---- C:\Windows\system32\samsrv.dll
2012-04-28 21:32:31 ----A---- C:\Windows\system32\drivers\scfilter.sys
2012-04-28 21:32:30 ----A---- C:\Windows\system32\schedsvc.dll
2012-04-28 21:32:30 ----A---- C:\Windows\system32\SearchFolder.dll
2012-04-28 21:32:29 ----A---- C:\Windows\system32\shsetup.dll
2012-04-28 21:32:29 ----A---- C:\Windows\system32\shimgvw.dll
2012-04-28 21:32:29 ----A---- C:\Windows\system32\setupcln.dll
2012-04-28 21:32:29 ----A---- C:\Windows\system32\setupapi.dll
2012-04-28 21:32:28 ----A---- C:\Windows\system32\setupugc.exe
2012-04-28 21:32:26 ----A---- C:\Windows\system32\mfc40u.dll
2012-04-28 21:32:26 ----A---- C:\Windows\system32\logoncli.dll
2012-04-28 21:32:18 ----A---- C:\Windows\system32\mprapi.dll
2012-04-28 21:32:18 ----A---- C:\Windows\system32\mimefilt.dll
2012-04-28 21:32:18 ----A---- C:\Windows\system32\drivers\mpio.sys
2012-04-28 21:32:17 ----A---- C:\Windows\system32\MPSSVC.dll
2012-04-28 21:32:16 ----A---- C:\Windows\system32\KBDUGHR1.DLL
2012-04-28 21:32:16 ----A---- C:\Windows\system32\KBDTAJIK.DLL
2012-04-28 21:32:16 ----A---- C:\Windows\system32\IPSECSVC.DLL
2012-04-28 21:32:16 ----A---- C:\Windows\system32\ifsutil.dll
2012-04-28 21:32:15 ----A---- C:\Windows\system32\localspl.dll
2012-04-28 21:32:15 ----A---- C:\Windows\system32\KBDMON.DLL
2012-04-28 21:32:15 ----A---- C:\Windows\system32\KBDMAORI.DLL
2012-04-28 21:32:15 ----A---- C:\Windows\system32\KBDINORI.DLL
2012-04-28 21:32:15 ----A---- C:\Windows\system32\KBDGR1.DLL
2012-04-28 21:32:15 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2012-04-28 21:32:14 ----A---- C:\Windows\system32\OobeFldr.dll
2012-04-28 21:32:14 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2012-04-28 21:32:14 ----A---- C:\Windows\system32\ocsetup.exe
2012-04-28 21:32:14 ----A---- C:\Windows\system32\ocsetapi.dll
2012-04-28 21:32:13 ----A---- C:\Windows\system32\netjoin.dll
2012-04-28 21:32:12 ----A---- C:\Windows\system32\rastapi.dll
2012-04-28 21:32:12 ----A---- C:\Windows\system32\rasppp.dll
2012-04-28 21:32:12 ----A---- C:\Windows\system32\qmgr.dll
2012-04-28 21:32:12 ----A---- C:\Windows\system32\qasf.dll
2012-04-28 21:32:12 ----A---- C:\Windows\system32\pla.dll
2012-04-28 21:32:12 ----A---- C:\Windows\system32\pdh.dll
2012-04-28 21:32:12 ----A---- C:\Windows\system32\networkmap.dll
2012-04-28 21:32:12 ----A---- C:\Windows\system32\networkexplorer.dll
2012-04-28 21:32:12 ----A---- C:\Windows\system32\drivers\rdbss.sys
2012-04-28 21:32:11 ----A---- C:\Windows\system32\msiexec.exe
2012-04-28 21:32:11 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2012-04-28 21:32:10 ----A---- C:\Windows\system32\netcfg.exe
2012-04-28 21:32:10 ----A---- C:\Windows\system32\nci.dll
2012-04-28 21:32:10 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2012-04-28 21:32:10 ----A---- C:\Windows\system32\mspbda.dll
2012-04-28 21:32:10 ----A---- C:\Windows\system32\msdrm.dll
2012-04-28 21:32:10 ----A---- C:\Windows\system32\mscorier.dll
2012-04-28 21:32:10 ----A---- C:\Windows\system32\drivers\msdsm.sys
2012-04-28 21:32:09 ----A---- C:\Windows\system32\netfxperf.dll
2012-04-28 21:32:09 ----A---- C:\Windows\system32\msv1_0.dll
2012-04-28 21:32:09 ----A---- C:\Windows\system32\mstscax.dll
2012-04-28 21:32:09 ----A---- C:\Windows\system32\mstsc.exe
2012-04-28 21:32:09 ----A---- C:\Windows\system32\drivers\ndisuio.sys
2012-04-28 21:32:08 ----A---- C:\Windows\system32\MultiDigiMon.exe
2012-04-28 21:32:08 ----A---- C:\Windows\system32\msxml6.dll
2012-04-28 21:32:08 ----A---- C:\Windows\system32\cscapi.dll
2012-04-28 21:32:08 ----A---- C:\Windows\system32\comctl32.dll
2012-04-28 21:32:08 ----A---- C:\Windows\system32\clusapi.dll
2012-04-28 21:32:08 ----A---- C:\Windows\system32\ci.dll
2012-04-28 21:32:08 ----A---- C:\Windows\system32\cfgmgr32.dll
2012-04-28 21:32:08 ----A---- C:\Windows\system32\certmgr.dll
2012-04-28 21:32:08 ----A---- C:\Windows\system32\cdosys.dll
2012-04-28 21:32:08 ----A---- C:\Windows\system32\cdd.dll
2012-04-28 21:32:08 ----A---- C:\Windows\system32\cabview.dll
2012-04-28 21:32:07 ----A---- C:\Windows\system32\BlbEvents.dll
2012-04-28 21:32:06 ----A---- C:\Windows\system32\drivers\dfsc.sys
2012-04-28 21:32:06 ----A---- C:\Windows\system32\DiagCpl.dll
2012-04-28 21:32:06 ----A---- C:\Windows\system32\dfrgui.exe
2012-04-28 21:32:06 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2012-04-28 21:32:06 ----A---- C:\Windows\system32\dbgeng.dll
2012-04-28 21:32:06 ----A---- C:\Windows\system32\d3d10_1core.dll
2012-04-28 21:32:05 ----A---- C:\Windows\system32\drivers\appid.sys
2012-04-28 21:32:05 ----A---- C:\Windows\system32\DeviceCenter.dll
2012-04-28 21:32:05 ----A---- C:\Windows\system32\dbghelp.dll
2012-04-28 21:32:05 ----A---- C:\Windows\system32\cscdll.dll
2012-04-28 21:32:04 ----A---- C:\Windows\system32\audiodev.dll
2012-04-28 21:32:04 ----A---- C:\Windows\system32\aitagent.exe
2012-04-28 21:32:04 ----A---- C:\Windows\system32\ActionQueue.dll
2012-04-28 21:32:04 ----A---- C:\Windows\system32\aaclient.dll
2012-04-28 21:32:03 ----A---- C:\Windows\system32\bitsperf.dll
2012-04-28 21:32:03 ----A---- C:\Windows\system32\batmeter.dll
2012-04-28 21:32:03 ----A---- C:\Windows\system32\basesrv.dll
2012-04-28 21:32:03 ----A---- C:\Windows\system32\AzSqlExt.dll
2012-04-28 21:32:03 ----A---- C:\Windows\bfsvc.exe
2012-04-28 21:32:02 ----A---- C:\Windows\system32\azroles.dll
2012-04-28 21:32:02 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2012-04-28 21:32:02 ----A---- C:\Windows\system32\autoplay.dll
2012-04-28 21:32:02 ----A---- C:\Windows\system32\autochk.exe
2012-04-28 21:32:02 ----A---- C:\Windows\system32\autofmt.exe
2012-04-28 21:32:01 ----A---- C:\Windows\system32\icaapi.dll
2012-04-28 21:32:01 ----A---- C:\Windows\system32\fde.dll
2012-04-28 21:32:01 ----A---- C:\Windows\system32\Faultrep.dll
2012-04-28 21:32:01 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2012-04-28 21:32:00 ----A---- C:\Windows\system32\drivers\http.sys
2012-04-28 21:31:59 ----A---- C:\Windows\system32\iccvid.dll
2012-04-28 21:31:58 ----A---- C:\Windows\system32\gdi32.dll
2012-04-28 21:31:57 ----A---- C:\Windows\system32\FXSTIFF.dll
2012-04-28 21:31:57 ----A---- C:\Windows\system32\drivers\fvevol.sys
2012-04-28 21:31:56 ----A---- C:\Windows\system32\hgprint.dll
2012-04-28 21:31:56 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2012-04-28 21:31:55 ----A---- C:\Windows\system32\drvstore.dll
2012-04-28 21:31:54 ----A---- C:\Windows\system32\dot3cfg.dll
2012-04-28 21:31:54 ----A---- C:\Windows\system32\diskraid.exe
2012-04-28 21:31:53 ----A---- C:\Windows\system32\elsTrans.dll
2012-04-28 21:31:51 ----A---- C:\Windows\system32\UIRibbonRes.dll
2012-04-28 21:31:51 ----A---- C:\Windows\system32\rdpd3d.dll
2012-04-28 21:31:51 ----A---- C:\Windows\system32\DxpTaskSync.dll
2012-04-28 21:31:51 ----A---- C:\Windows\system32\dxmasf.dll
2012-04-28 21:31:51 ----A---- C:\Windows\system32\dsuiext.dll
2012-04-28 21:31:51 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2012-04-28 21:31:50 ----A---- C:\Windows\system32\UIRibbon.dll
2012-04-28 21:31:50 ----A---- C:\Windows\system32\TSWorkspace.dll
2012-04-28 21:31:50 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2012-04-28 21:31:50 ----A---- C:\Windows\system32\drivers\umbus.sys
2012-04-28 21:31:49 ----A---- C:\Windows\system32\vaultsvc.dll
2012-04-28 21:31:49 ----A---- C:\Windows\system32\userinit.exe
2012-04-28 21:31:49 ----A---- C:\Windows\system32\user32.dll
2012-04-28 21:31:49 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2012-04-28 21:31:49 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2012-04-28 21:31:49 ----A---- C:\Windows\system32\tsgqec.dll
2012-04-28 21:31:49 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2012-04-28 21:31:45 ----A---- C:\Windows\system32\tlscsp.dll
2012-04-28 21:31:45 ----A---- C:\Windows\system32\drivers\tdx.sys
2012-04-28 21:31:44 ----A---- C:\Windows\system32\taskhost.exe
2012-04-28 21:31:44 ----A---- C:\Windows\system32\tabcal.exe
2012-04-28 21:31:44 ----A---- C:\Windows\system32\t2embed.dll
2012-04-28 21:31:44 ----A---- C:\Windows\system32\drivers\tdi.sys
2012-04-28 21:31:43 ----A---- C:\Windows\system32\wlanui.dll
2012-04-28 21:31:43 ----A---- C:\Windows\system32\taskeng.exe
2012-04-28 21:31:40 ----A---- C:\Windows\system32\wmp.dll
2012-04-28 21:31:39 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2012-04-28 21:31:36 ----A---- C:\Windows\system32\wmploc.DLL
2012-04-28 21:31:35 ----A---- C:\Windows\system32\wudriver.dll
2012-04-28 21:31:35 ----A---- C:\Windows\system32\wlanpref.dll
2012-04-28 21:31:35 ----A---- C:\Windows\system32\WinSATAPI.dll
2012-04-28 21:31:35 ----A---- C:\Windows\system32\winmm.dll
2012-04-28 21:31:34 ----A---- C:\Windows\system32\zipfldr.dll
2012-04-28 21:31:34 ----A---- C:\Windows\system32\xpsservices.dll
2012-04-28 21:31:34 ----A---- C:\Windows\system32\wwanconn.dll
2012-04-28 21:31:34 ----A---- C:\Windows\system32\wups.dll
2012-04-28 21:31:34 ----A---- C:\Windows\system32\wucltux.dll
2012-04-28 21:31:34 ----A---- C:\Windows\system32\wuapi.dll
2012-04-28 21:31:34 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2012-04-28 21:31:34 ----A---- C:\Windows\system32\wpdshext.dll
2012-04-28 21:31:34 ----A---- C:\Windows\system32\WMVCORE.DLL
2012-04-28 21:31:33 ----A---- C:\Windows\system32\wsnmp32.dll
2012-04-28 21:31:33 ----A---- C:\Windows\system32\wpdwcn.dll
2012-04-28 21:31:33 ----A---- C:\Windows\system32\WMVSDECD.DLL
2012-04-28 21:31:33 ----A---- C:\Windows\system32\wdiasqmmodule.dll
2012-04-28 21:31:33 ----A---- C:\Windows\system32\wbengine.exe
2012-04-28 21:31:33 ----A---- C:\Windows\system32\wbemcomn.dll
2012-04-28 21:31:32 ----A---- C:\Windows\system32\wdscore.dll
2012-04-28 21:31:32 ----A---- C:\Windows\system32\VSSVC.exe
2012-04-28 21:31:31 ----A---- C:\Windows\system32\vpnikeapi.dll
2012-04-28 21:31:30 ----A---- C:\Windows\system32\winlogon.exe
2012-04-28 21:31:30 ----A---- C:\Windows\system32\wiavideo.dll
2012-04-28 21:31:30 ----A---- C:\Windows\system32\wiaservc.dll
2012-04-28 21:31:30 ----A---- C:\Windows\system32\wiarpc.dll
2012-04-28 21:31:30 ----A---- C:\Windows\system32\wevtsvc.dll
2012-04-28 21:31:30 ----A---- C:\Windows\system32\WerFaultSecure.exe
2012-04-28 21:31:30 ----A---- C:\Windows\system32\wer.dll
2012-04-28 21:31:29 ----A---- C:\Windows\system32\Ribbons.scr
2012-04-28 21:31:29 ----A---- C:\Windows\system32\repair-bde.exe
2012-04-28 21:31:28 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2012-04-28 21:31:28 ----A---- C:\Windows\system32\resutils.dll
2012-04-28 21:31:28 ----A---- C:\Windows\system32\RelPost.exe
2012-04-28 21:31:28 ----A---- C:\Windows\system32\regapi.dll
2012-04-28 21:31:28 ----A---- C:\Windows\system32\rdprefdrvapi.dll
2012-04-28 21:31:28 ----A---- C:\Windows\system32\RDPREFDD.dll
2012-04-28 21:31:28 ----A---- C:\Windows\system32\rdpencom.dll
2012-04-28 21:31:23 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2012-04-28 21:31:23 ----A---- C:\Windows\system32\secproc_ssp.dll
2012-04-28 21:31:23 ----A---- C:\Windows\system32\rpchttp.dll
2012-04-28 21:31:23 ----A---- C:\Windows\system32\rpcrt4.dll
2012-04-28 21:31:23 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2012-04-28 21:31:23 ----A---- C:\Windows\system32\drivers\scsiport.sys
2012-04-28 21:31:22 ----A---- C:\Windows\system32\runonce.exe
2012-04-28 21:31:22 ----A---- C:\Windows\system32\rtutils.dll
2012-04-28 21:31:21 ----A---- C:\Windows\system32\spopk.dll
2012-04-28 21:31:21 ----A---- C:\Windows\system32\slwga.dll
2012-04-28 21:31:21 ----A---- C:\Windows\system32\sisbkup.dll
2012-04-28 21:31:21 ----A---- C:\Windows\system32\shwebsvc.dll
2012-04-28 21:31:20 ----A---- C:\Windows\system32\syssetup.dll
2012-04-28 21:31:20 ----A---- C:\Windows\system32\syncui.dll
2012-04-28 21:31:19 ----A---- C:\Windows\system32\spwmp.dll
2012-04-28 21:31:19 ----A---- C:\Windows\system32\shdocvw.dll
2012-04-28 21:31:17 ----A---- C:\Windows\system32\SessEnv.dll
2012-04-28 21:31:17 ----A---- C:\Windows\system32\secproc_isv.dll
2012-04-28 21:31:16 ----A---- C:\Windows\system32\sdrsvc.dll
2012-04-28 21:31:16 ----A---- C:\Windows\system32\sdengin2.dll
2012-04-28 21:31:16 ----A---- C:\Windows\system32\sdcpl.dll
2012-04-28 21:31:16 ----A---- C:\Windows\system32\sdclt.exe
2012-04-28 21:31:16 ----A---- C:\Windows\system32\scesrv.dll
2012-04-28 21:31:16 ----A---- C:\Windows\system32\scavengeui.dll
2012-04-28 21:31:15 ----A---- C:\Windows\system32\rdpdd.dll
2012-04-28 21:31:15 ----A---- C:\Windows\system32\rasmans.dll
2012-04-28 21:31:14 ----A---- C:\Windows\system32\rstrui.exe
2012-04-28 21:31:14 ----A---- C:\Windows\system32\ReAgentc.exe
2012-04-28 21:31:14 ----A---- C:\Windows\system32\QUTIL.DLL
2012-04-28 21:31:14 ----A---- C:\Windows\system32\Query.dll
2012-04-28 21:31:14 ----A---- C:\Windows\system32\qedit.dll
2012-04-28 21:31:13 ----A---- C:\Windows\system32\RpcRtRemote.dll
2012-04-28 21:31:13 ----A---- C:\Windows\system32\RMActivate_isv.exe
2012-04-28 21:31:13 ----A---- C:\Windows\system32\drivers\rmcast.sys
2012-04-28 21:31:12 ----A---- C:\Windows\system32\msyuv.dll
2012-04-28 21:31:12 ----A---- C:\Windows\system32\mswsock.dll
2012-04-28 21:31:12 ----A---- C:\Windows\system32\msinfo32.exe
2012-04-28 21:31:12 ----A---- C:\Windows\system32\msieftp.dll
2012-04-28 21:31:12 ----A---- C:\Windows\system32\msftedit.dll
2012-04-28 21:31:12 ----A---- C:\Windows\system32\msdmo.dll
2012-04-28 21:31:12 ----A---- C:\Windows\system32\mscms.dll
2012-04-28 21:31:11 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2012-04-28 21:31:11 ----A---- C:\Windows\system32\napdsnap.dll
2012-04-28 21:31:11 ----A---- C:\Windows\system32\MSVidCtl.dll
2012-04-28 21:31:11 ----A---- C:\Windows\system32\msutb.dll
2012-04-28 21:31:11 ----A---- C:\Windows\system32\msorcl32.dll
2012-04-28 21:31:11 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2012-04-28 21:31:09 ----A---- C:\Windows\system32\photowiz.dll
2012-04-28 21:31:09 ----A---- C:\Windows\system32\migisol.dll
2012-04-28 21:31:08 ----A---- C:\Windows\system32\profsvc.dll
2012-04-28 21:31:08 ----A---- C:\Windows\system32\profprov.dll
2012-04-28 21:31:08 ----A---- C:\Windows\system32\prntvpt.dll
2012-04-28 21:31:08 ----A---- C:\Windows\system32\pnidui.dll
2012-04-28 21:31:08 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2012-04-28 21:31:08 ----A---- C:\Windows\system32\OpcServices.dll
2012-04-28 21:31:08 ----A---- C:\Windows\system32\olethk32.dll
2012-04-28 21:31:08 ----A---- C:\Windows\system32\ole32.dll
2012-04-28 21:31:08 ----A---- C:\Windows\system32\drivers\pci.sys
2012-04-28 21:31:07 ----A---- C:\Windows\system32\PnPUnattend.exe
2012-04-28 21:31:06 ----A---- C:\Windows\system32\netshell.dll
2012-04-28 21:31:06 ----A---- C:\Windows\system32\netdiagfx.dll
2012-04-28 21:31:06 ----A---- C:\Windows\system32\netbtugc.exe
2012-04-28 21:31:06 ----A---- C:\Windows\system32\net1.exe
2012-04-28 21:31:06 ----A---- C:\Windows\system32\drivers\netbt.sys
2012-04-28 21:31:05 ----A---- C:\Windows\system32\odbcconf.dll
2012-04-28 21:31:05 ----A---- C:\Windows\system32\netlogon.dll
2012-04-28 21:31:05 ----A---- C:\Windows\system32\netcenter.dll
2012-04-28 21:31:04 ----A---- C:\Windows\system32\nshwfp.dll
2012-04-28 21:31:04 ----A---- C:\Windows\system32\nrpsrv.dll
2012-04-28 21:31:04 ----A---- C:\Windows\system32\nltest.exe
2012-04-28 21:31:03 ----A---- C:\Windows\system32\w32tm.exe
2012-04-28 21:31:03 ----A---- C:\Windows\system32\vfwwdm32.dll
2012-04-28 21:31:03 ----A---- C:\Windows\system32\vdsbas.dll
2012-04-28 21:31:03 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2012-04-28 21:31:02 ----A---- C:\Windows\system32\wcncsvc.dll
2012-04-28 21:31:02 ----A---- C:\Windows\system32\wavemsp.dll
2012-04-28 21:31:02 ----A---- C:\Windows\system32\TSpkg.dll
2012-04-28 21:31:02 ----A---- C:\Windows\system32\tsbyuv.dll
2012-04-28 21:31:02 ----A---- C:\Windows\system32\drivers\volmgr.sys
2012-04-28 21:31:01 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2012-04-28 21:31:00 ----A---- C:\Windows\system32\userenv.dll
2012-04-28 21:31:00 ----A---- C:\Windows\system32\unimdmat.dll
2012-04-28 21:31:00 ----A---- C:\Windows\system32\drivers\udfs.sys
2012-04-28 21:31:00 ----A---- C:\Windows\system32\drivers\tunnel.sys
2012-04-28 21:30:59 ----A---- C:\Windows\system32\wshirda.dll
2012-04-28 21:30:59 ----A---- C:\Windows\system32\wsdchngr.dll
2012-04-28 21:30:59 ----A---- C:\Windows\system32\wpccpl.dll
2012-04-28 21:30:59 ----A---- C:\Windows\system32\wmpshell.dll
2012-04-28 21:30:59 ----A---- C:\Windows\system32\wmpmde.dll
2012-04-28 21:30:59 ----A---- C:\Windows\system32\WMPEncEn.dll
2012-04-28 21:30:59 ----A---- C:\Windows\system32\wmpeffects.dll
2012-04-28 21:30:59 ----A---- C:\Windows\system32\WMNetMgr.dll
2012-04-28 21:30:58 ----A---- C:\Windows\system32\wusa.exe
2012-04-28 21:30:58 ----A---- C:\Windows\system32\wups2.dll
2012-04-28 21:30:58 ----A---- C:\Windows\system32\wuaueng.dll
2012-04-28 21:30:58 ----A---- C:\Windows\system32\wuauclt.exe
2012-04-28 21:30:58 ----A---- C:\Windows\system32\WsmSvc.dll
2012-04-28 21:30:58 ----A---- C:\Windows\system32\wmpdxm.dll
2012-04-28 21:30:57 ----A---- C:\Windows\system32\winload.exe
2012-04-28 21:30:57 ----A---- C:\Windows\system32\WindowsCodecs.dll
2012-04-28 21:30:57 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2012-04-28 21:30:56 ----A---- C:\Windows\system32\WindowsAnytimeUpgrade.exe
2012-04-28 21:30:56 ----A---- C:\Windows\system32\win32spl.dll
2012-04-28 21:30:56 ----A---- C:\Windows\system32\webservices.dll
2012-04-28 21:30:56 ----A---- C:\Windows\system32\WebClnt.dll
2012-04-28 21:30:55 ----A---- C:\Windows\system32\wmdrmnet.dll
2012-04-28 21:30:55 ----A---- C:\Windows\system32\wmdrmdev.dll
2012-04-28 21:30:55 ----A---- C:\Windows\system32\wlanmsm.dll
2012-04-28 21:30:55 ----A---- C:\Windows\system32\wkscli.dll
2012-04-28 21:30:55 ----A---- C:\Windows\system32\winsta.dll
2012-04-28 21:30:55 ----A---- C:\Windows\system32\WinSCard.dll
2012-04-28 21:30:55 ----A---- C:\Windows\system32\winresume.exe
2012-04-28 21:30:54 ----A---- C:\Windows\system32\SndVolSSO.dll
2012-04-28 21:30:54 ----A---- C:\Windows\system32\SndVol.exe
2012-04-28 21:30:54 ----A---- C:\Windows\system32\SmiEngine.dll
2012-04-28 21:30:54 ----A---- C:\Windows\system32\slui.exe
2012-04-28 21:30:53 ----A---- C:\Windows\system32\shgina.dll
2012-04-28 21:30:53 ----A---- C:\Windows\system32\sharemediacpl.dll
2012-04-28 21:30:52 ----A---- C:\Windows\system32\stobject.dll
2012-04-28 21:30:52 ----A---- C:\Windows\system32\srcore.dll
2012-04-28 21:30:52 ----A---- C:\Windows\system32\sqmapi.dll
2012-04-28 21:30:51 ----A---- C:\Windows\system32\sppcomapi.dll
2012-04-28 21:30:50 ----A---- C:\Windows\system32\sppuinotify.dll
2012-04-28 21:30:50 ----A---- C:\Windows\system32\sppsvc.exe
2012-04-28 21:30:50 ----A---- C:\Windows\system32\setbcdlocale.dll
2012-04-28 21:30:50 ----A---- C:\Windows\system32\SensorsCpl.dll
2012-04-28 21:30:49 ----A---- C:\Windows\system32\sethc.exe
2012-04-28 21:30:48 ----A---- C:\Windows\system32\takeown.exe
2012-04-28 21:30:47 ----A---- C:\Windows\system32\thumbcache.dll
2012-04-28 21:30:47 ----A---- C:\Windows\system32\termmgr.dll
2012-04-28 21:30:46 ----A---- C:\Windows\system32\termsrv.dll
2012-04-28 21:30:46 ----A---- C:\Windows\system32\taskmgr.exe
2012-04-28 21:30:46 ----A---- C:\Windows\system32\taskcomp.dll
2012-04-28 21:30:46 ----A---- C:\Windows\system32\taskbarcpl.dll
2012-04-28 21:30:46 ----A---- C:\Windows\system32\drivers\termdd.sys
2012-04-28 21:30:45 ----A---- C:\Windows\system32\sysclass.dll
2012-04-28 21:30:42 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2012-04-28 21:30:42 ----A---- C:\Windows\system32\hgcpl.dll
2012-04-28 21:30:42 ----A---- C:\Windows\system32\hbaapi.dll
2012-04-28 21:30:42 ----A---- C:\Windows\system32\gpsvc.dll
2012-04-28 21:30:42 ----A---- C:\Windows\system32\drivers\hidusb.sys
2012-04-28 21:30:42 ----A---- C:\Windows\system32\drivers\hidclass.sys
2012-04-28 21:30:41 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2012-04-28 21:30:40 ----A---- C:\Windows\system32\IKEEXT.DLL
2012-04-28 21:30:39 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2012-04-28 21:30:39 ----A---- C:\Windows\system32\findstr.exe
2012-04-28 21:30:39 ----A---- C:\Windows\system32\fdeploy.dll
2012-04-28 21:30:39 ----A---- C:\Windows\system32\EhStorAPI.dll
2012-04-28 21:30:38 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2012-04-28 21:30:38 ----A---- C:\Windows\system32\ftp.exe
2012-04-28 21:30:37 ----A---- C:\Windows\system32\mfds.dll
2012-04-28 21:30:37 ----A---- C:\Windows\system32\luainstall.dll
2012-04-28 21:30:37 ----A---- C:\Windows\system32\KBDTURME.DLL
2012-04-28 21:30:37 ----A---- C:\Windows\system32\KBDSG.DLL
2012-04-28 21:30:37 ----A---- C:\Windows\system32\KBDSF.DLL
2012-04-28 21:30:37 ----A---- C:\Windows\system32\KBDLT1.DLL
2012-04-28 21:30:37 ----A---- C:\Windows\system32\kbdlk41a.dll
2012-04-28 21:30:36 ----A---- C:\Windows\system32\mf.dll
2012-04-28 21:30:36 ----A---- C:\Windows\system32\manage-bde.exe
2012-04-28 21:30:35 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2012-04-28 21:30:34 ----A---- C:\Windows\system32\inetpp.dll
2012-04-28 21:30:34 ----A---- C:\Windows\system32\inetmib1.dll
2012-04-28 21:30:33 ----A---- C:\Windows\system32\iscsicli.exe
2012-04-28 21:30:33 ----A---- C:\Windows\system32\ipsmsnap.dll
2012-04-28 21:30:32 ----A---- C:\Windows\system32\KBDINTAM.DLL
2012-04-28 21:30:32 ----A---- C:\Windows\system32\KBDINMAR.DLL
2012-04-28 21:30:32 ----A---- C:\Windows\system32\KBDINKAN.DLL
2012-04-28 21:30:32 ----A---- C:\Windows\system32\KBDINHIN.DLL
2012-04-28 21:30:32 ----A---- C:\Windows\system32\KBDGKL.DLL
2012-04-28 21:30:32 ----A---- C:\Windows\system32\KBDGEO.DLL
2012-04-28 21:30:32 ----A---- C:\Windows\system32\KBDCZ1.DLL
2012-04-28 21:30:32 ----A---- C:\Windows\system32\isoburn.exe
2012-04-28 21:30:31 ----A---- C:\Windows\system32\iTVData.dll
2012-04-28 21:30:31 ----A---- C:\Windows\system32\iscsium.dll
2012-04-28 21:30:30 ----A---- C:\Windows\system32\iyuv_32.dll
2012-04-28 21:30:30 ----A---- C:\Windows\system32\cabinet.dll
2012-04-28 21:30:30 ----A---- C:\Windows\system32\browseui.dll
2012-04-28 21:30:30 ----A---- C:\Windows\system32\browser.dll
2012-04-28 21:30:30 ----A---- C:\Windows\system32\BFE.DLL
2012-04-28 21:30:30 ----A---- C:\Windows\system32\azroleui.dll
2012-04-28 21:30:30 ----A---- C:\Windows\system32\autoconv.exe
2012-04-28 21:30:29 ----A---- C:\Windows\system32\cmd.exe
2012-04-28 21:30:29 ----A---- C:\Windows\system32\CertPolEng.dll
2012-04-28 21:30:29 ----A---- C:\Windows\system32\cca.dll
2012-04-28 21:30:29 ----A---- C:\Windows\system32\audiosrv.dll
2012-04-28 21:30:29 ----A---- C:\Windows\system32\AudioSes.dll
2012-04-28 21:30:29 ----A---- C:\Windows\system32\audiodg.exe
2012-04-28 21:30:28 ----A---- C:\Windows\system32\calc.exe
2012-04-28 21:30:27 ----A---- C:\Windows\system32\drivers\cdrom.sys
2012-04-28 21:30:27 ----A---- C:\Windows\system32\aeinv.dll
2012-04-28 21:30:27 ----A---- C:\Windows\system32\actxprxy.dll
2012-04-28 21:30:27 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2012-04-28 21:30:27 ----A---- C:\Windows\system32\ActionCenter.dll
2012-04-28 21:30:26 ----A---- C:\Windows\system32\drivers\acpipmi.sys
2012-04-28 21:30:24 ----A---- C:\Windows\system32\aepdu.dll
2012-04-28 21:30:23 ----A---- C:\Windows\system32\dpx.dll
2012-04-28 21:30:23 ----A---- C:\Windows\system32\dpnaddr.dll
2012-04-28 21:30:23 ----A---- C:\Windows\system32\dot3svc.dll
2012-04-28 21:30:23 ----A---- C:\Windows\system32\dot3msm.dll
2012-04-28 21:30:23 ----A---- C:\Windows\system32\dot3api.dll
2012-04-28 21:30:23 ----A---- C:\Windows\system32\djoin.exe
2012-04-28 21:30:22 ----A---- C:\Windows\system32\dnscmmc.dll
2012-04-28 21:30:21 ----A---- C:\Windows\system32\eapphost.dll
2012-04-28 21:30:21 ----A---- C:\Windows\system32\eappgnui.dll
2012-04-28 21:30:21 ----A---- C:\Windows\system32\dwmcore.dll
2012-04-28 21:30:20 ----A---- C:\Windows\system32\eapp3hst.dll
2012-04-28 21:30:20 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2012-04-28 21:30:19 ----A---- C:\Windows\system32\DXP.dll
2012-04-28 21:30:19 ----A---- C:\Windows\system32\credssp.dll
2012-04-28 21:30:18 ----A---- C:\Windows\system32\drivers\CompositeBus.sys
2012-04-28 21:30:18 ----A---- C:\Windows\system32\diagperf.dll
2012-04-28 21:24:03 ----A---- C:\Windows\system32\inetcomm.dll
2012-04-28 21:23:45 ----A---- C:\Windows\system32\kernel32.dll
2012-04-28 21:23:44 ----A---- C:\Windows\system32\KernelBase.dll
2012-04-28 21:23:40 ----A---- C:\Windows\system32\conhost.exe
2012-04-28 21:23:39 ----A---- C:\Windows\system32\winsrv.dll
2012-04-28 21:23:38 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2012-04-28 21:23:38 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2012-04-28 21:23:37 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2012-04-28 21:23:37 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2012-04-28 21:23:37 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2012-04-28 21:23:37 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2012-04-28 21:23:37 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2012-04-28 21:23:36 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2012-04-28 21:23:36 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-04-28 21:23:36 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2012-04-28 21:23:36 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2012-04-28 21:23:36 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2012-04-28 21:23:35 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2012-04-28 21:23:35 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2012-04-28 21:23:35 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2012-04-28 21:23:35 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2012-04-28 21:23:35 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2012-04-28 21:23:34 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2012-04-28 21:23:34 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2012-04-28 21:23:34 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2012-04-28 21:23:34 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2012-04-28 21:23:34 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2012-04-28 21:23:33 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2012-04-28 21:23:33 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2012-04-28 21:23:33 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2012-04-28 21:23:32 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2012-04-28 21:23:32 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2012-04-28 21:23:32 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2012-04-28 21:23:26 ----D---- C:\Windows\system32\EventProviders
2012-04-28 21:22:55 ----A---- C:\Windows\system32\CPFilters.dll
2012-04-28 21:22:51 ----A---- C:\Windows\system32\sbe.dll
2012-04-28 21:20:49 ----A---- C:\Windows\system32\odbcjt32.dll
2012-04-28 21:20:47 ----A---- C:\Windows\system32\odbccp32.dll
2012-04-28 21:20:46 ----A---- C:\Windows\system32\odbccr32.dll
2012-04-28 21:20:45 ----A---- C:\Windows\system32\odbccu32.dll
2012-04-28 21:20:41 ----A---- C:\Windows\system32\odbctrac.dll
2012-04-28 21:17:26 ----D---- C:\Users\Trial\AppData\Roaming\Skype
2012-04-28 21:17:25 ----A---- C:\Windows\system32\quartz.dll
2012-04-28 21:17:21 ----A---- C:\Windows\system32\qdvd.dll
2012-04-28 21:15:37 ----D---- C:\Program Files\Common Files\Skype
2012-04-28 21:15:27 ----RD---- C:\Program Files\Skype
2012-04-28 21:15:27 ----A---- C:\Windows\explorer.exe
2012-04-28 21:15:10 ----A---- C:\Windows\system32\d3d10_1.dll
2012-04-28 21:14:54 ----A---- C:\Windows\system32\FXSCOVER.exe
2012-04-28 21:14:44 ----D---- C:\ProgramData\Skype
2012-04-28 21:14:17 ----A---- C:\Windows\system32\packager.dll
2012-04-28 21:13:38 ----A---- C:\Windows\system32\XpsPrint.dll
2012-04-28 21:13:32 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2012-04-28 21:13:25 ----A---- C:\Windows\system32\EncDec.dll
2012-04-28 21:12:20 ----A---- C:\Windows\system32\tzres.dll
2012-04-28 21:10:04 ----A---- C:\Windows\system32\msvcrt.dll
2012-04-28 21:09:56 ----A---- C:\Windows\system32\csrsrv.dll
2012-04-28 21:06:45 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2012-04-28 21:06:44 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2012-04-28 21:06:44 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2012-04-28 21:06:32 ----A---- C:\Windows\system32\ntdll.dll
2012-04-28 16:01:50 ----A---- C:\Windows\system32\drivers\srv2.sys
2012-04-28 16:01:49 ----A---- C:\Windows\system32\drivers\srv.sys
2012-04-28 16:01:48 ----A---- C:\Windows\system32\drivers\srvnet.sys
2012-04-28 16:00:54 ----A---- C:\Windows\system32\drivers\afd.sys
2012-04-28 15:59:58 ----A---- C:\Windows\system32\prevhost.exe
2012-04-28 15:59:02 ----A---- C:\Windows\system32\oleaut32.dll
2012-04-28 15:59:02 ----A---- C:\Windows\system32\oleacc.dll
2012-04-28 15:58:54 ----A---- C:\Windows\system32\dnsapi.dll
2012-04-28 15:58:53 ----A---- C:\Windows\system32\dnsrslvr.dll
2012-04-28 15:58:52 ----A---- C:\Windows\system32\dnscacheugc.exe
2012-04-28 15:58:48 ----A---- C:\Windows\system32\umpnpmgr.dll
2012-04-28 15:58:33 ----A---- C:\Windows\system32\kerberos.dll
2012-04-28 15:46:37 ----A---- C:\Windows\system32\lsasrv.dll
2012-04-28 15:46:36 ----A---- C:\Windows\system32\schannel.dll
2012-04-28 15:46:35 ----A---- C:\Windows\system32\webio.dll
2012-04-28 15:46:33 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2012-04-28 15:46:32 ----A---- C:\Windows\system32\drivers\cng.sys
2012-04-28 15:46:31 ----A---- C:\Windows\system32\sspicli.dll
2012-04-28 15:46:30 ----A---- C:\Windows\system32\sspisrv.dll
2012-04-28 15:46:30 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2012-04-28 15:46:29 ----A---- C:\Windows\system32\lsass.exe
2012-04-28 15:46:28 ----A---- C:\Windows\system32\secur32.dll
2012-04-28 15:31:55 ----A---- C:\Windows\system32\psisdecd.dll
2012-04-28 15:29:39 ----A---- C:\Windows\system32\shell32.dll
2012-04-28 15:29:10 ----A---- C:\Windows\system32\ntshrui.dll
2012-04-28 15:28:59 ----A---- C:\Windows\system32\atmfd.dll
2012-04-28 15:28:58 ----A---- C:\Windows\system32\fontsub.dll
2012-04-28 15:28:58 ----A---- C:\Windows\system32\atmlib.dll
2012-04-28 15:28:34 ----A---- C:\Windows\system32\xmllite.dll
2012-04-28 15:27:14 ----D---- C:\Users\Trial\AppData\Roaming\WinRAR
2012-04-28 15:25:26 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2012-04-28 15:24:55 ----A---- C:\Windows\system32\mfc42.dll
2012-04-28 15:24:51 ----D---- C:\Program Files\WinRAR
2012-04-28 15:24:49 ----A---- C:\Windows\system32\mfc42u.dll
2012-04-28 15:24:21 ----A---- C:\Windows\system32\drivers\bowser.sys
2012-04-28 15:23:52 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2012-04-28 15:23:04 ----A---- C:\Windows\system32\poqexec.exe
2012-04-28 13:40:22 ----D---- C:\Users\Trial\AppData\Roaming\ESET
2012-04-28 13:33:28 ----D---- C:\ProgramData\ESET
2012-04-28 13:33:28 ----D---- C:\Program Files\ESET
2012-04-28 13:29:17 ----SHD---- C:\Windows\Installer
2012-04-28 13:27:41 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-04-28 13:26:54 ----D---- C:\Users\Trial\AppData\Roaming\Macromedia
2012-04-28 13:26:09 ----D---- C:\Users\Trial\AppData\Roaming\Adobe
2012-04-28 13:25:53 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2012-04-28 13:25:43 ----D---- C:\Windows\system32\Macromed
2012-04-28 13:16:20 ----D---- C:\Windows\Minidump
2012-04-28 13:04:45 ----D---- C:\Windows\system32\x64
2012-04-28 13:04:45 ----A---- C:\Windows\system32\igxpun.exe
2012-04-28 12:57:00 ----A---- C:\Windows\system32\rdrmemptylst.exe
2012-04-28 12:56:55 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2012-04-28 12:56:54 ----A---- C:\Windows\system32\rdpcore.dll
2012-04-28 12:56:53 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2012-04-28 12:56:52 ----A---- C:\Windows\system32\drivers\tdpipe.sys
2012-04-28 12:48:30 ----D---- C:\Users\Trial\AppData\Roaming\Identities
2012-04-28 12:48:04 ----SD---- C:\Users\Trial\AppData\Roaming\Microsoft
2012-04-28 12:48:04 ----D---- C:\Users\Trial\AppData\Roaming\Media Center Programs
2012-04-28 12:47:39 ----SHD---- C:\Recovery
2012-04-28 12:41:12 ----D---- C:\Windows\SoftwareDistribution
2012-04-28 12:38:59 ----D---- C:\Windows\Prefetch
2012-04-28 12:37:53 ----ASH---- C:\hiberfil.sys
2012-04-27 22:09:20 ----SHD---- C:\RECYCLER
2012-04-27 20:57:21 ----SHD---- C:\System Volume Information

======List of files/folders modified in the last 1 month======

2012-05-12 19:18:43 ----D---- C:\Windows\Temp
2012-05-12 19:15:22 ----RD---- C:\Program Files
2012-05-12 19:01:50 ----D---- C:\Windows\Microsoft.NET
2012-05-12 18:49:23 ----D---- C:\Windows\system32\config
2012-05-12 18:46:40 ----D---- C:\Windows\System32
2012-05-12 18:31:18 ----HD---- C:\ProgramData
2012-05-12 18:26:13 ----RSD---- C:\Windows\assembly
2012-05-12 18:06:28 ----D---- C:\Windows\system32\drivers
2012-05-12 18:05:59 ----HD---- C:\Program Files\Common Files
2012-05-12 17:52:41 ----D---- C:\Windows
2012-05-11 21:24:13 ----D---- C:\Windows\system32\LogFiles
2012-05-11 20:36:39 ----D---- C:\Windows\inf
2012-05-10 20:42:07 ----D---- C:\Windows\winsxs
2012-05-10 20:41:58 ----D---- C:\Windows\system32\catroot2
2012-05-10 20:39:22 ----HD---- C:\Program Files\Windows Journal
2012-05-10 12:00:31 ----D---- C:\Windows\debug
2012-05-10 11:51:40 ----D---- C:\Windows\system32\catroot
2012-05-09 09:03:02 ----D---- C:\Windows\Logs
2012-05-07 11:46:23 ----D---- C:\Windows\system32\NDF
2012-05-03 20:30:25 ----D---- C:\Windows\system32\DriverStore
2012-04-29 22:44:41 ----SD---- C:\ProgramData\Microsoft
2012-04-29 22:28:14 ----HD---- C:\Program Files\Internet Explorer
2012-04-29 22:28:13 ----D---- C:\Windows\system32\sk-SK
2012-04-29 20:57:50 ----D---- C:\Windows\system32\en-US
2012-04-29 19:48:50 ----HD---- C:\Program Files\Windows Sidebar
2012-04-29 19:48:49 ----HD---- C:\Program Files\Windows Mail
2012-04-29 19:48:49 ----HD---- C:\Program Files\DVD Maker
2012-04-29 19:48:48 ----HD---- C:\Program Files\Windows Photo Viewer
2012-04-29 19:48:48 ----HD---- C:\Program Files\Windows Media Player
2012-04-29 19:48:48 ----D---- C:\Program Files\Common Files\System
2012-04-29 19:48:47 ----HD---- C:\Program Files\Windows Defender
2012-04-29 19:48:47 ----D---- C:\Windows\system32\migwiz
2012-04-29 19:48:47 ----D---- C:\Windows\servicing
2012-04-29 19:48:47 ----D---- C:\Windows\PolicyDefinitions
2012-04-29 19:48:47 ----D---- C:\Windows\ehome
2012-04-29 19:48:46 ----D---- C:\Windows\system32\sysprep
2012-04-29 19:48:46 ----D---- C:\Windows\system32\oobe
2012-04-29 19:48:39 ----D---- C:\Windows\system32\WCN
2012-04-29 19:48:38 ----D---- C:\Windows\system32\wbem
2012-04-29 19:13:22 ----D---- C:\Windows\system32\migration
2012-04-29 19:13:21 ----RSD---- C:\Windows\Fonts
2012-04-29 18:03:18 ----D---- C:\Windows\system32\wdi
2012-04-29 11:26:49 ----D---- C:\Windows\AppPatch
2012-04-28 23:07:29 ----HD---- C:\Program Files\Windows Portable Devices
2012-04-28 23:07:15 ----D---- C:\Windows\system32\da-DK
2012-04-28 23:07:10 ----D---- C:\Windows\system32\Setup
2012-04-28 23:07:10 ----D---- C:\Windows\system32\manifeststore
2012-04-28 23:07:10 ----D---- C:\Windows\system32\en
2012-04-28 23:07:10 ----D---- C:\Windows\system32\cs-CZ
2012-04-28 23:07:10 ----D---- C:\Windows\system32\AdvancedInstallers
2012-04-28 23:07:09 ----D---- C:\Windows\system32\sppui
2012-04-28 23:07:09 ----D---- C:\Windows\system32\es-ES
2012-04-28 23:07:08 ----D---- C:\Windows\system32\drivers\en-US
2012-04-28 23:07:06 ----D---- C:\Windows\system32\Dism
2012-04-28 23:06:14 ----D---- C:\Windows\system32\Boot
2012-04-28 22:37:50 ----A---- C:\Windows\system32\msclmd.dll
2012-04-28 13:25:57 ----D---- C:\Windows\system32\Tasks
2012-04-28 13:25:56 ----D---- C:\Windows\Tasks
2012-04-28 12:57:15 ----D---- C:\Windows\system32\restore
2012-04-28 12:54:18 ----D---- C:\Windows\system32\CodeIntegrity
2012-04-28 12:48:21 ----SHD---- C:\$Recycle.Bin
2012-04-28 12:48:01 ----RD---- C:\Users
2012-04-28 12:47:39 ----D---- C:\Windows\system32\Recovery
2012-04-28 12:46:37 ----D---- C:\Windows\rescache
2012-04-28 12:40:52 ----D---- C:\Windows\system32\drivers\UMDF

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2011-08-04 50624]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 snapman;Acronis Snapshots Manager; C:\Windows\system32\DRIVERS\snapman.sys [2012-05-12 114048]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2011-08-04 118104]
R1 EpfwLWF;Epfw NDIS LightWeight Filter; C:\Windows\system32\DRIVERS\EpfwLWF.sys [2011-08-04 33656]
R1 VBoxDrv;VirtualBox Service; C:\Windows\system32\DRIVERS\VBoxDrv.sys [2012-04-12 158512]
R1 VBoxUSBMon;VirtualBox USB Monitor Driver; C:\Windows\system32\DRIVERS\VBoxUSBMon.sys [2012-04-12 91952]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2011-08-09 163424]
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2011-08-04 147480]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2009-09-23 4808192]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2011-06-10 394856]
R3 RTL8187Se;Realtek RTL8187SE Wireless LAN PCIE Network Adapter; C:\Windows\system32\DRIVERS\RTL8187Se.sys [2009-07-14 359424]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesDriver32.sys [2012-03-29 10064]
R3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter; C:\Windows\system32\DRIVERS\VBoxNetAdp.sys [2012-04-12 104752]
R3 VBoxNetFlt;VirtualBox Bridged Networking Service; C:\Windows\system32\DRIVERS\VBoxNetFlt.sys [2012-04-12 116016]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2011-09-22 974944]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe [2012-04-05 1529152]
S2 AcronisOSSReinstallSvc;Acronis OS Selector Reinstall Service; C:\Program Files\Common Files\Acronis\Acronis Disk Director\oss_reinstall_svc.exe [2007-02-22 2217416]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-04-05 158856]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-06 257696]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-04-29 1343400]

-----------------EOF-----------------

Re: Neznáma aplikácia a PDF súbor v menu Štart (win888)

Napsal: 12 kvě 2012 18:43
od Rudy
Také zdravím!
Poprosím o log ComboFix.
Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe

pote spustte aplikaci pod uctem s administratorskym opravnenim

hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.

v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se

jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine

aplikace ani nic jineho

behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)

upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode,

pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k

nezadoucim kolizim s rezidentem antispyware

Re: Neznáma aplikácia a PDF súbor v menu Štart (win888)

Napsal: 12 kvě 2012 19:35
od Saxbeet
Ospravedlňujem sa že log posielam až hodinu od Vašej odpovede, ComboFix mi na pár minút zamrzol pri tvorbe bodu obnovy, a keďže mám 1 GB RAM, aj priebeh skenu trval trochu dlhšie.

Tu je log z ComboFixu:

ComboFix 12-05-12.01 - Trial . 05. 2012 20:14:09.1.2 - x86
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.421.1051.18.1015.417 [GMT 2:00]
Running from: c:\users\Trial\Downloads\ComboFix.exe
AV: ESET Smart Security 5.0 *Disabled/Updated* {77DEAFED-8149-104B-25A1-21771CA47CD1}
FW: ESET personal firewall *Disabled* {4FE52EC8-CB26-1113-0EFE-8842E2773BAA}
SP: ESET Smart Security 5.0 *Disabled/Updated* {CCBF4E09-A773-1FC5-1F11-1A056723366C}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Created a new restore point
.
.
((((((((((((((((((((((((( Files Created from 2012-04-12 to 2012-05-12 )))))))))))))))))))))))))))))))
.
.
2012-05-12 18:27 . 2012-05-12 18:27 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-05-12 17:15 . 2012-05-12 17:19 -------- d-----w- c:\program files\trend micro
2012-05-12 17:15 . 2012-05-12 17:19 -------- d-----w- C:\rsit
2012-05-12 16:31 . 2012-05-12 16:42 1392304 ----a-w- c:\windows\system32\AutoPartNt.exe
2012-05-12 16:06 . 2012-05-12 16:06 114048 ----a-w- c:\windows\system32\drivers\snapman.sys
2012-05-12 16:06 . 2012-05-12 18:12 56200 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{CCD47A3A-BB2C-4AED-8383-00D4D1496D6B}\offreg.dll
2012-05-12 16:06 . 2012-05-12 16:06 -------- d-----w- c:\program files\Acronis
2012-05-12 16:05 . 2012-05-12 16:06 -------- d-----w- c:\program files\Common Files\Acronis
2012-05-12 15:52 . 2012-05-12 15:52 -------- d-----w- c:\program files\Acronis Disk Director Suite 10 build 2160
2012-05-11 18:36 . 2012-05-11 18:36 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-2\Markup.dll
2012-05-11 18:36 . 2012-05-11 18:36 458064 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight-2\SpotlightResources.dll
2012-05-11 18:35 . 2012-04-18 01:06 6734704 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{CCD47A3A-BB2C-4AED-8383-00D4D1496D6B}\mpengine.dll
2012-05-10 09:54 . 2012-03-30 10:23 1291632 ----a-w- c:\windows\system32\drivers\tcpip.sys
2012-05-10 09:53 . 2012-05-10 09:53 -------- d-----w- c:\program files\uTorrent
2012-05-10 09:51 . 2012-03-31 04:29 936960 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\journal.dll
2012-05-10 09:50 . 2012-03-31 04:30 1221632 ----a-w- c:\program files\Windows Journal\NBDoc.DLL
2012-05-10 09:50 . 2012-03-31 04:29 989184 ----a-w- c:\program files\Windows Journal\JNTFiltr.dll
2012-05-10 09:50 . 2012-03-31 04:29 969216 ----a-w- c:\program files\Windows Journal\JNWDRV.dll
2012-05-10 09:49 . 2012-03-31 04:39 3913072 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-05-10 09:49 . 2012-03-31 04:39 3968368 ----a-w- c:\windows\system32\ntkrnlpa.exe
2012-05-10 09:49 . 2012-03-31 02:36 2343424 ----a-w- c:\windows\system32\win32k.sys
2012-05-10 09:48 . 2012-03-03 05:31 1077248 ----a-w- c:\windows\system32\DWrite.dll
2012-05-10 09:46 . 2012-03-17 07:27 56176 ----a-w- c:\windows\system32\drivers\partmgr.sys
2012-05-09 07:01 . 2012-05-09 07:01 -------- d-----w- c:\program files\CCleaner
2012-05-06 17:14 . 2012-05-06 17:15 -------- d-----w- c:\program files\Common Files\Adobe
2012-05-03 18:30 . 2012-04-12 16:21 158512 ----a-w- c:\windows\system32\drivers\VBoxDrv.sys
2012-05-03 18:28 . 2012-05-03 18:30 -------- dc----w- c:\windows\system32\DRVSTORE
2012-05-03 18:28 . 2012-04-12 16:21 91952 ----a-w- c:\windows\system32\drivers\VBoxUSBMon.sys
2012-05-03 18:28 . 2012-05-03 18:28 -------- d-----w- c:\program files\Oracle
2012-05-03 18:00 . 2012-05-03 18:00 -------- d-----w- c:\program files\CometBird
2012-05-03 09:41 . 2012-05-11 18:50 -------- d-----w- C:\FPC
2012-05-02 08:20 . 2012-02-23 08:18 237072 ------w- c:\windows\system32\MpSigStub.exe
2012-04-30 09:29 . 2012-04-30 09:29 -------- d-----w- c:\program files\Common Files\Java
2012-04-30 09:29 . 2012-04-30 09:28 472808 ----a-w- c:\windows\system32\deployJava1.dll
2012-04-30 09:28 . 2012-04-30 09:28 -------- d-----w- c:\program files\Java
2012-04-30 07:34 . 2012-04-30 07:34 -------- d-----w- c:\program files\Lavalys
2012-04-29 20:43 . 2012-05-10 09:56 -------- d-----w- c:\program files\Microsoft Silverlight
2012-04-29 19:56 . 2011-02-19 06:30 805376 ----a-w- c:\windows\system32\FntCache.dll
2012-04-29 19:56 . 2011-02-19 06:30 739840 ----a-w- c:\windows\system32\d2d1.dll
2012-04-29 18:57 . 2012-04-29 18:57 -------- d-----w- c:\program files\Microsoft.NET
2012-04-29 18:35 . 2012-04-05 11:08 31552 ----a-w- c:\windows\system32\TURegOpt.exe
2012-04-29 18:35 . 2012-04-05 11:08 21312 ----a-w- c:\windows\system32\authuitu.dll
2012-04-29 18:34 . 2012-04-29 18:35 -------- d-----w- c:\program files\TuneUp Utilities 2012
2012-04-29 18:33 . 2012-04-29 18:36 -------- d-----w- c:\programdata\TuneUp Software
2012-04-29 18:33 . 2012-04-29 18:33 -------- d-sh--w- c:\programdata\{32364CEA-7855-4A3C-B674-53D8E9B97936}
2012-04-29 18:33 . 2012-04-29 18:33 -------- d--h--w- c:\programdata\Common Files
2012-04-29 17:48 . 2012-04-29 17:48 -------- d-----w- c:\windows\sk-SK
2012-04-29 17:48 . 2012-04-29 17:48 -------- d-----w- c:\windows\system32\drivers\sk-SK
2012-04-29 17:48 . 2012-04-29 20:28 -------- d-----w- c:\windows\system32\wbem\sk-SK
2012-04-29 16:11 . 2012-02-28 01:03 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2012-04-29 16:11 . 2012-02-28 01:58 141112 ----a-w- c:\program files\Internet Explorer\sqmapi.dll
2012-04-29 16:11 . 2012-02-28 01:18 1799168 ----a-w- c:\windows\system32\jscript9.dll
2012-04-29 16:11 . 2012-02-28 01:08 194048 ----a-w- c:\program files\Internet Explorer\IEShims.dll
2012-04-29 16:11 . 2012-02-28 01:11 1127424 ----a-w- c:\windows\system32\wininet.dll
2012-04-29 16:10 . 2012-02-28 01:13 678912 ----a-w- c:\program files\Internet Explorer\iedvtool.dll
2012-04-29 16:10 . 2012-02-28 01:11 1427456 ----a-w- c:\windows\system32\inetcpl.cpl
2012-04-29 09:47 . 2011-03-25 02:57 43008 ----a-w- c:\windows\system32\drivers\usbehci.sys
2012-04-29 09:47 . 2011-03-25 02:58 284672 ----a-w- c:\windows\system32\drivers\usbport.sys
2012-04-29 09:47 . 2011-03-25 02:58 258560 ----a-w- c:\windows\system32\drivers\usbhub.sys
2012-04-29 09:47 . 2011-03-25 02:57 24064 ----a-w- c:\windows\system32\drivers\usbuhci.sys
2012-04-29 09:47 . 2011-03-25 02:58 75776 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2012-04-29 09:47 . 2011-03-25 02:57 5888 ----a-w- c:\windows\system32\drivers\usbd.sys
2012-04-29 09:47 . 2011-03-11 05:33 1699328 ----a-w- c:\windows\system32\esent.dll
2012-04-29 09:47 . 2011-03-11 05:39 1211264 ----a-w- c:\windows\system32\drivers\ntfs.sys
2012-04-29 09:47 . 2011-03-11 05:39 148864 ----a-w- c:\windows\system32\drivers\storport.sys
2012-04-29 09:47 . 2011-03-11 05:38 332160 ----a-w- c:\windows\system32\drivers\iaStorV.sys
2012-04-29 09:46 . 2011-03-11 05:38 80256 ----a-w- c:\windows\system32\drivers\amdsata.sys
2012-04-29 09:46 . 2011-03-11 05:39 143744 ----a-w- c:\windows\system32\drivers\nvstor.sys
2012-04-29 09:46 . 2011-03-11 05:39 117120 ----a-w- c:\windows\system32\drivers\nvraid.sys
2012-04-29 09:46 . 2011-03-11 05:38 22400 ----a-w- c:\windows\system32\drivers\amdxata.sys
2012-04-29 09:46 . 2011-03-11 05:31 74240 ----a-w- c:\windows\system32\fsutil.exe
2012-04-29 09:39 . 2011-05-04 04:34 1549312 ----a-w- c:\windows\system32\tquery.dll
2012-04-29 09:39 . 2011-05-04 04:28 86528 ----a-w- c:\windows\system32\SearchFilterHost.exe
2012-04-29 09:39 . 2011-05-04 04:28 427520 ----a-w- c:\windows\system32\SearchIndexer.exe
2012-04-29 09:39 . 2011-05-04 04:28 164352 ----a-w- c:\windows\system32\SearchProtocolHost.exe
2012-04-29 09:39 . 2011-05-04 04:32 666624 ----a-w- c:\windows\system32\mssvp.dll
2012-04-29 09:39 . 2011-05-04 04:32 337408 ----a-w- c:\windows\system32\mssph.dll
2012-04-29 09:39 . 2011-05-04 04:32 197120 ----a-w- c:\windows\system32\mssphtb.dll
2012-04-29 09:39 . 2011-05-04 04:32 1401344 ----a-w- c:\windows\system32\mssrch.dll
2012-04-29 09:39 . 2011-05-04 04:32 59392 ----a-w- c:\windows\system32\msscntrs.dll
2012-04-29 09:26 . 2012-04-29 09:26 -------- d-----w- c:\windows\system32\Wat
2012-04-29 08:14 . 2012-03-01 05:46 19824 ----a-w- c:\windows\system32\drivers\fs_rec.sys
2012-04-29 08:14 . 2012-03-01 05:37 172544 ----a-w- c:\windows\system32\wintrust.dll
2012-04-29 08:14 . 2012-03-01 05:33 159232 ----a-w- c:\windows\system32\imagehlp.dll
2012-04-29 08:14 . 2012-03-01 05:29 5120 ----a-w- c:\windows\system32\wmi.dll
2012-04-28 21:20 . 2012-01-25 05:32 129536 ----a-w- c:\windows\system32\rdpcorekmts.dll
2012-04-28 21:20 . 2012-01-25 05:32 58880 ----a-w- c:\windows\system32\rdpwsx.dll
2012-04-28 21:01 . 2012-04-28 21:01 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\Markup.dll
2012-04-28 21:01 . 2012-04-28 21:01 -------- d-----w- c:\windows\system32\SPReview
2012-04-28 21:01 . 2012-04-28 21:01 458064 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2012-04-28 20:37 . 2012-05-09 07:03 -------- d-----w- c:\windows\Panther
2012-04-28 19:33 . 2010-11-20 02:21 46592 ----a-w- c:\windows\system32\WavDest.dll
2012-04-28 19:32 . 2010-11-20 02:16 293888 ----a-w- c:\windows\system32\ssText3d.scr
2012-04-28 19:31 . 2010-11-20 02:19 82944 ----a-w- c:\windows\system32\iccvid.dll
2012-04-28 19:30 . 2010-11-20 02:21 21504 ----a-w- c:\windows\system32\wsdchngr.dll
2012-04-28 19:24 . 2011-05-03 04:30 741376 ----a-w- c:\windows\system32\inetcomm.dll
2012-04-28 19:22 . 2010-12-23 05:54 642048 ----a-w- c:\windows\system32\CPFilters.dll
2012-04-28 19:22 . 2010-12-23 05:54 850944 ----a-w- c:\windows\system32\sbe.dll
2012-04-28 19:22 . 2010-12-23 05:50 199680 ----a-w- c:\windows\system32\mpg2splt.ax
2012-04-28 19:20 . 2011-06-15 08:55 319488 ----a-w- c:\windows\system32\odbcjt32.dll
2012-04-28 19:20 . 2011-06-15 08:55 122880 ----a-w- c:\windows\system32\odbccp32.dll
2012-04-28 19:20 . 2011-06-15 08:55 81920 ----a-w- c:\windows\system32\odbccr32.dll
2012-04-28 19:20 . 2011-06-15 08:55 86016 ----a-w- c:\windows\system32\odbccu32.dll
2012-04-28 19:20 . 2011-06-15 08:54 94208 ----a-w- c:\program files\Common Files\System\Ole DB\msdaosp.dll
2012-04-28 19:20 . 2011-06-15 08:55 163840 ----a-w- c:\windows\system32\odbctrac.dll
2012-04-28 19:17 . 2011-10-26 04:32 1328128 ----a-w- c:\windows\system32\quartz.dll
2012-04-28 19:17 . 2011-10-26 04:32 514560 ----a-w- c:\windows\system32\qdvd.dll
2012-04-28 19:15 . 2012-04-28 19:15 -------- d-----w- c:\program files\Common Files\Skype
2012-04-28 19:15 . 2012-04-28 19:15 -------- d-----r- c:\program files\Skype
2012-04-28 19:15 . 2011-02-25 05:30 2616320 ----a-w- c:\windows\explorer.exe
2012-04-28 19:15 . 2011-01-17 05:47 161792 ----a-w- c:\windows\system32\d3d10_1.dll
2012-04-28 19:14 . 2011-02-12 05:35 191488 ----a-w- c:\windows\system32\FXSCOVER.exe
2012-04-28 19:14 . 2012-04-28 19:15 -------- d-----w- c:\programdata\Skype
2012-04-28 19:14 . 2011-11-19 14:01 67072 ----a-w- c:\windows\system32\packager.dll
2012-04-28 19:13 . 2011-03-12 11:23 870912 ----a-w- c:\windows\system32\XpsPrint.dll
2012-04-28 19:13 . 2011-02-24 05:38 288256 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2012-04-28 19:13 . 2011-10-15 05:38 534528 ----a-w- c:\windows\system32\EncDec.dll
2012-04-28 19:12 . 2011-11-05 04:26 2048 ----a-w- c:\windows\system32\tzres.dll
2012-04-28 19:10 . 2011-12-16 07:52 690688 ----a-w- c:\windows\system32\msvcrt.dll
2012-04-28 19:09 . 2011-10-26 04:28 38912 ----a-w- c:\windows\system32\csrsrv.dll
2012-04-28 19:09 . 2011-10-01 04:37 708608 ----a-w- c:\program files\Common Files\System\wab32.dll
2012-04-28 19:06 . 2011-07-09 02:30 223744 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2012-04-28 19:06 . 2011-04-27 02:17 96768 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2012-04-28 19:06 . 2011-04-27 02:17 123904 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2012-04-28 19:06 . 2011-11-17 05:38 1288472 ----a-w- c:\windows\system32\ntdll.dll
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-04-29 17:47 . 2012-04-29 17:47 2560 ----a-w- c:\windows\system32\drivers\sk-SK\serscan.sys.mui
2012-04-29 17:47 . 2012-04-29 17:47 7680 ----a-w- c:\windows\system32\drivers\sk-SK\bthport.sys.mui
2012-04-29 17:47 . 2012-04-29 17:47 3584 ----a-w- c:\windows\system32\drivers\sk-SK\portcls.sys.mui
2012-04-29 17:47 . 2012-04-29 17:47 3072 ----a-w- c:\windows\system32\drivers\sk-SK\hidbth.sys.mui
2012-04-29 17:47 . 2012-04-29 17:47 3072 ----a-w- c:\windows\system32\drivers\sk-SK\ataport.sys.mui
2012-04-29 17:47 . 2012-04-29 17:47 2560 ----a-w- c:\windows\system32\drivers\sk-SK\BTHUSB.SYS.mui
2012-04-29 17:47 . 2012-04-29 17:47 2048 ----a-w- c:\windows\system32\drivers\sk-SK\bthenum.sys.mui
2012-04-29 17:47 . 2012-04-29 17:47 2048 ----a-w- c:\windows\system32\drivers\sk-SK\amdide.sys.mui
2012-04-29 17:46 . 2012-04-29 17:46 2560 ----a-w- c:\windows\system32\drivers\sk-SK\scfilter.sys.mui
2012-04-29 17:46 . 2012-04-29 17:46 47616 ----a-w- c:\windows\system32\drivers\sk-SK\tcpip.sys.mui
2012-04-29 08:10 . 2012-04-29 08:10 203776 ----a-w- c:\windows\system32\webcheck.dll
2012-04-28 20:37 . 2009-07-14 02:05 152576 ----a-w- c:\windows\system32\msclmd.dll
2012-04-12 16:21 . 2012-04-12 16:21 104752 ----a-w- c:\windows\system32\drivers\VBoxNetAdp.sys
2012-04-12 16:21 . 2012-04-12 16:21 116016 ----a-w- c:\windows\system32\drivers\VBoxNetFlt.sys
2012-04-12 16:21 . 2012-04-12 16:21 135472 ----a-w- c:\windows\system32\VBoxNetFltNobj.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2009-09-23 173592]
"Persistence"="c:\windows\system32\igfxpers.exe" [2009-09-23 150552]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2011-09-22 3080264]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2011-06-06 10:55 937920 ----a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray]
2009-09-23 17:30 141848 ----a-w- c:\windows\System32\igfxtray.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar]
2010-11-20 02:17 1174016 ----a-w- c:\program files\Windows Sidebar\sidebar.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2012-01-18 12:02 254696 ----a-w- c:\program files\Common Files\Java\Java Update\jusched.exe
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [2012-04-05 158856]
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-06 257696]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R3 WatAdminSvc;Služba Windows Activation Technologies;c:\windows\system32\Wat\WatAdminSvc.exe [2012-04-29 1343400]
S0 epfwwfp;epfwwfp;c:\windows\system32\DRIVERS\epfwwfp.sys [2011-08-04 50624]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [2011-08-04 118104]
S1 EpfwLWF;Epfw NDIS LightWeight Filter;c:\windows\system32\DRIVERS\EpfwLWF.sys [2011-08-04 33656]
S1 VBoxDrv;VirtualBox Service;c:\windows\system32\DRIVERS\VBoxDrv.sys [2012-04-12 158512]
S1 VBoxUSBMon;VirtualBox USB Monitor Driver;c:\windows\system32\DRIVERS\VBoxUSBMon.sys [2012-04-12 91952]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-13 48128]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952]
S2 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys [2011-08-09 163424]
S2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [2011-09-22 974944]
S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe [2012-04-05 1529152]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [2011-06-10 394856]
S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\TuneUp Utilities 2012\TuneUpUtilitiesDriver32.sys [2012-03-29 10064]
S3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter;c:\windows\system32\DRIVERS\VBoxNetAdp.sys [2012-04-12 104752]
S3 VBoxNetFlt;VirtualBox Bridged Networking Service;c:\windows\system32\DRIVERS\VBoxNetFlt.sys [2012-04-12 116016]
.
.
Contents of the 'Scheduled Tasks' folder
.
2012-05-12 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-28 08:44]
.
.
------- Supplementary Scan -------
.
TCP: DhcpNameServer = 192.168.1.1
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Completion time: 2012-05-12 20:32:03
ComboFix-quarantined-files.txt 2012-05-12 18:32
.
Pre-Run: 26 908 434 432 bytes free
Post-Run: 26 838 851 584 bytes free
.
- - End Of File - - 46A38808D9C805F58E41E9E33FE94F4D

Re: Neznáma aplikácia a PDF súbor v menu Štart (win888)

Napsal: 12 kvě 2012 19:44
od Rudy
CF nenašel vůbec nic. Zkuste ten soubor odebrat. Myslím, že patří nejspíše nějaké hře.

Re: Neznáma aplikácia a PDF súbor v menu Štart (win888)

Napsal: 12 kvě 2012 20:10
od Saxbeet
Súbor som zmazal a zatiaľ sa do Štartu nevrátil, no na internete som čítal, že je spojený s určitým malwarom a po odobraní sa zvykne vrátiť späť, preto som sa chcel radšej informovať, či je to tak aj v mojom prípade. Ďakujem Vám za pomoc! :)

Re: Neznáma aplikácia a PDF súbor v menu Štart (win888)

Napsal: 12 kvě 2012 20:25
od Rudy
Nic nebezpečného jsem nenanšel. Tak to snad bude OK. Nemáte zač!