Stránka 1 z 1

Preventivky

Napsal: 10 čer 2012 15:48
od Rolandman
Prosim o kontrolu logu,dekuji



info.txt logfile of random's system information tool 1.09 2012-06-10 16:40:19

======Uninstall list======

-->MsiExec /X{9530AE42-DAE1-4619-9594-B23487285D17}
µTorrent-->"D:\Programy\torrent\uTorrent.exe" /UNINSTALL
Adobe Flash Player 11 Plugin 64-bit-->C:\Windows\system32\Macromed\Flash\FlashUtil64_11_1_102_Plugin.exe -maintain plugin
Adobe Reader X (10.1.3) - Czech-->MsiExec.exe /I{AC76BA86-7AD7-1029-7B44-AA1000000001}
AMD Accelerated Video Transcoding-->MsiExec.exe /X{3987279A-3504-2916-D063-741B910F0747}
AMD APP SDK Runtime-->MsiExec.exe /I{503F672D-6C84-448A-8F8F-4BC35AC83441}
AMD Catalyst Install Manager-->msiexec /q/x{5831C6D6-309D-DBB5-14F7-FEE57086CEE7} REBOOT=ReallySuppress
AMD Drag and Drop Transcoding-->MsiExec.exe /X{B69A7CBA-9139-7ACB-7564-4CD5D8C36E26}
AMD Media Foundation Decoders-->MsiExec.exe /X{63CE6C32-1EB3-4C51-89FC-9FD96A661A9C}
Audacity 1.3.13 (Unicode)-->"D:\Programy\Audacity 1.3 Beta (Unicode)\unins000.exe"
avast! Free Antivirus-->D:\Programy\avast\aswRunDll.exe "D:\Programy\avast\Setup\setiface.dll" RunSetup
Babylon toolbar on IE-->"C:\Program Files (x86)\BabylonToolbar\BabylonToolbar\1.5.3.17\uninstall.exe"
BabylonObjectInstaller-->MsiExec.exe /I{83AA2913-C123-4146-85BD-AD8F93971D39}
Battlefield 3™-->"C:\Program Files (x86)\Common Files\EAInstaller\Battlefield 3\Cleanup.exe" uninstall_game -autologging
Battlelog Web Plugins-->C:\Program Files (x86)\Battlelog Web Plugins\uninstall.exe
Catalyst Control Center - Branding-->MsiExec.exe /I{03D4C700-2BFE-43E0-A0B4-9512B43C5B9F}
CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
CPUID CPU-Z 1.60.1-->"D:\Programy\CPU-Z\unins000.exe"
DAEMON Tools Lite-->D:\Programy\DAEMON Tools Lite\uninst.exe
Dark Sector-->"D:\Hry\Dark Sector\unins000.exe"
Defraggler-->"C:\Program Files\Defraggler\uninst.exe"
Dirt Showdown v1.0-->"D:\Hry\Dirt Showdown\unins001.exe"
ESN Sonar-->C:\Program Files (x86)\Battlelog Web Plugins\Sonar\esnsonar_uninstall.exe
FFmpeg v0.6.2 for Audacity-->"D:\Programy\Audacity 1.3 Beta (Unicode)\unins001.exe"
FormatFactory 2.70-->D:\Programy\FormatFactory\uninst.exe
Garena Classic 2011-->D:\Programy\Garena\Garena Classic\uninst.exe
League of Legends-->"C:\Program Files (x86)\InstallShield Installation Information\{92606477-9366-4D3B-8AE3-6BE4B29727AB}\setup.exe" -runfromtemp -l0x0409 -removeonly
Max Payne 3-->\"C:\Program Files (x86)\InstallShield Installation Information\{1AA94747-3BF6-4237-9E1A-7B3067738FE1}\setup.exe\" -runfromtemp -l0x0409 -removeonly
Microsoft .NET Framework 4.5 Beta-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\\Setup.exe /repair /x86 /x64
Microsoft .NET Framework 4.5 Beta-->MsiExec.exe /X{795AE7FA-334A-3348-A358-6F56377B8639}
Microsoft Games for Windows - LIVE Redistributable-->MsiExec.exe /X{F2508213-9989-4E85-A078-72BE483917EF}
Microsoft Games for Windows Marketplace-->MsiExec.exe /X{4CB0307C-565E-4441-86BE-0DF2E4FB828C}
Microsoft Office Professional Edition 2003-->MsiExec.exe /I{90110405-6000-11D3-8CFE-0150048383C9}
Microsoft Visual C++ 2005 Redistributable (x64)-->MsiExec.exe /X{071c9b48-7c32-4621-a0ac-3f809523288f}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17-->MsiExec.exe /X{8220EEFE-38CD-377E-8595-13398D740ACE}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161-->MsiExec.exe /X{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022-->MsiExec.exe /X{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161-->MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319-->MsiExec.exe /X{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319-->MsiExec.exe /X{196BB40D-1578-3D01-B289-BEFC77A11A1E}
Mozilla Firefox 8.0 (x86 cs)-->C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
NVIDIA PhysX-->MsiExec.exe /X{9530AE42-DAE1-4619-9594-B23487285D17}
OpenAL-->"C:\Program Files (x86)\OpenAL\OpenALwEAX.exe" /U
Origin-->D:\Programy\Origin\OriginUninstall.exe
Pando Media Booster-->C:\Program Files (x86)\Pando Networks\Media Booster\uninst.exe
PunkBuster Services-->D:\Hry\Origin\Battlefield 3\pbsvc.exe -u
Rapture3D 2.4.11 Game-->"D:\Hry\Dirt Showdown\BRS\unins000.exe"
Skype™ 5.9-->MsiExec.exe /X{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}
uTorrentBar Toolbar-->C:\Program Files (x86)\uTorrentBar\uninstall.exe toolbar
VLC media player 1.1.11-->D:\Programy\VLC\uninstall.exe
Warcraft III-->C:\Windows\War3Unin.exe C:\Windows\War3Unin.dat
Windows Live ID Sign-in Assistant-->MsiExec.exe /X{9B48B0AC-C813-4174-9042-476A887592C7}
Windows Media Player Firefox Plugin-->MsiExec.exe /I{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}
WinRAR 4.01 (32-bit)-->D:\Programy\Winrar\uninstall.exe
Zaklínač - Rozšířená edice-->C:\Program Files (x86)\InstallShield Installation Information\{86ACE727-A4F2-4B28-A37D-254D9CC03156}\setup.exe -runfromtemp -l0x0005 -removeonly

======Hosts File======

213.239.204.183 tera-europe.com
213.239.204.183 www.tera-europe.com
213.239.204.183 account.tera-europe.com
213.239.204.183 www.account.tera-europe.com

======System event log======

Computer Name: Jakub-PC
Event Code: 6
Message: Filtr systému souborů aswMonFlt (verze 6.0, ‎2011‎-‎11‎-‎28T18:52:10.000000000Z) byl úspěšně načten a zaregistrován ve Správci filtrů.
Record Number: 40920
Source Name: Microsoft-Windows-FilterManager
Time Written: 20120125103721.874018-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM

Computer Name: Jakub-PC
Event Code: 6
Message: Filtr systému souborů luafv (verze 6.1, ‎2009‎-‎07‎-‎14T00:26:13.000000000Z) byl úspěšně načten a zaregistrován ve Správci filtrů.
Record Number: 40919
Source Name: Microsoft-Windows-FilterManager
Time Written: 20120125103721.874018-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM

Computer Name: Jakub-PC
Event Code: 7036
Message: Stav služby Power byl změněn na: running
Record Number: 40918
Source Name: Service Control Manager
Time Written: 20120125103721.858418-000
Event Type: Informace
User:

Computer Name: Jakub-PC
Event Code: 20010
Message: Došlo ke změně jednoho nebo více podsystémů služby Plug and Play.

Povolený instalační podsystém služby PlugPlay: 'true'
Povolený podsystém mezipaměti služby PlugPlay: 'true'

Record Number: 40917
Source Name: Microsoft-Windows-UserPnp
Time Written: 20120125103721.780418-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM

Computer Name: Jakub-PC
Event Code: 7036
Message: Stav služby Plug and Play byl změněn na: running
Record Number: 40916
Source Name: Service Control Manager
Time Written: 20120125103721.780418-000
Event Type: Informace
User:

=====Application event log=====

Computer Name: 37L4247E29-32
Event Code: 1001
Message: Chybný blok , typ 0
Název události: PnPDriverNotFound
Reakce: Not available
ID souboru CAB: 0

Podpis problému:
P1: x64
P2: ACPI\ATK0110
P3:
P4:
P5:
P6:
P7:
P8:
P9:
P10:

Připojené soubory:
C:\Windows\Temp\DMIB05A.tmp.log.xml

Tyto soubory mohou být k dispozici zde:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_7b90e53f6497da36d01d2c8167badd7549330a6_cab_0785b0a8

Symbol analýzy:
Opětovné hledání řešení: 0
ID hlášení: 0cd85165-1409-11e1-a52e-f3ff6e71170d
Stav hlášení: 6
Record Number: 5
Source Name: Windows Error Reporting
Time Written: 20111121062131.000000-000
Event Type: Informace
User:

Computer Name: 37L4247E29-32
Event Code: 5617
Message: Windows Management Instrumentation Service subsystems initialized successfully
Record Number: 4
Source Name: Microsoft-Windows-WMI
Time Written: 20111121062031.000000-000
Event Type: Informace
User:

Computer Name: 37L4247E29-32
Event Code: 5615
Message: Windows Management Instrumentation Service started sucessfully
Record Number: 3
Source Name: Microsoft-Windows-WMI
Time Written: 20111121062028.000000-000
Event Type: Informace
User:

Computer Name: 37L4247E29-32
Event Code: 1531
Message: Služba Profil uživatele byla úspěšně spuštěna.


Record Number: 2
Source Name: Microsoft-Windows-User Profiles Service
Time Written: 20111121062025.039676-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM

Computer Name: 37L4247E29-32
Event Code: 4625
Message: Subsystém EventSystem zabraňuje vytváření duplicitních záznamů v protokolu událostí po dobu 86400 sekund. Tuto dobu lze změnit pomocí hodnoty REG_DWORD s názvem SuppressDuplicateDuration v následujícím klíči registru: HKLM\Software\Microsoft\EventSystem\EventLog.
Record Number: 1
Source Name: Microsoft-Windows-EventSystem
Time Written: 20111121062025.000000-000
Event Type: Informace
User:

=====Security event log=====

Computer Name: Jakub-PC
Event Code: 4907
Message: Nastavení auditu objektu se změnila.

Předmět:
ID zabezpečení: S-1-5-18
Název účtu: JAKUB-PC$
Doména účtu: WORKGROUP
ID přihlášení: 0x3e7

Objekt:
Server objektu: Security
Typ objektu: File
Název objektu: C:\Windows\Help\mui\0405\snmp.CHM
ID popisovače: 0x14

Informace o procesu:
ID procesu: 0xbd4
Název procesu: C:\Windows\System32\poqexec.exe

Nastavení auditu:
Původní popisovač zabezpečení:
Nový popisovač zabezpečení: S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)
Record Number: 544
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20111121073153.796232-000
Event Type: Úspěšný audit
User:

Computer Name: Jakub-PC
Event Code: 4907
Message: Nastavení auditu objektu se změnila.

Předmět:
ID zabezpečení: S-1-5-18
Název účtu: JAKUB-PC$
Doména účtu: WORKGROUP
ID přihlášení: 0x3e7

Objekt:
Server objektu: Security
Typ objektu: File
Název objektu: C:\Windows\Help\mui\0405\certmgr.CHM
ID popisovače: 0x14

Informace o procesu:
ID procesu: 0xbd4
Název procesu: C:\Windows\System32\poqexec.exe

Nastavení auditu:
Původní popisovač zabezpečení:
Nový popisovač zabezpečení: S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)
Record Number: 543
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20111121073153.796232-000
Event Type: Úspěšný audit
User:

Computer Name: Jakub-PC
Event Code: 4907
Message: Nastavení auditu objektu se změnila.

Předmět:
ID zabezpečení: S-1-5-18
Název účtu: JAKUB-PC$
Doména účtu: WORKGROUP
ID přihlášení: 0x3e7

Objekt:
Server objektu: Security
Typ objektu: File
Název objektu: C:\Windows\Help\mui\0405\sqlsodbc.chm
ID popisovače: 0x14

Informace o procesu:
ID procesu: 0xbd4
Název procesu: C:\Windows\System32\poqexec.exe

Nastavení auditu:
Původní popisovač zabezpečení:
Nový popisovač zabezpečení: S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)
Record Number: 542
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20111121073153.796232-000
Event Type: Úspěšný audit
User:

Computer Name: Jakub-PC
Event Code: 4907
Message: Nastavení auditu objektu se změnila.

Předmět:
ID zabezpečení: S-1-5-18
Název účtu: JAKUB-PC$
Doména účtu: WORKGROUP
ID přihlášení: 0x3e7

Objekt:
Server objektu: Security
Typ objektu: File
Název objektu: C:\Windows\Help\mui\0405\eventviewer.CHM
ID popisovače: 0x14

Informace o procesu:
ID procesu: 0xbd4
Název procesu: C:\Windows\System32\poqexec.exe

Nastavení auditu:
Původní popisovač zabezpečení:
Nový popisovač zabezpečení: S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)
Record Number: 541
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20111121073153.796232-000
Event Type: Úspěšný audit
User:

Computer Name: Jakub-PC
Event Code: 4907
Message: Nastavení auditu objektu se změnila.

Předmět:
ID zabezpečení: S-1-5-18
Název účtu: JAKUB-PC$
Doména účtu: WORKGROUP
ID přihlášení: 0x3e7

Objekt:
Server objektu: Security
Typ objektu: File
Název objektu: C:\Windows\Help\mui\0405\diskmgt.CHM
ID popisovače: 0x14

Informace o procesu:
ID procesu: 0xbd4
Název procesu: C:\Windows\System32\poqexec.exe

Nastavení auditu:
Původní popisovač zabezpečení:
Nový popisovač zabezpečení: S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)
Record Number: 540
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20111121073153.780632-000
Event Type: Úspěšný audit
User:

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"Path"=C:\Program Files (x86)\AMD APP\bin\x86_64;C:\Program Files (x86)\AMD APP\bin\x86;%CommonProgramFiles%\Microsoft Shared\Windows Live;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PROCESSOR_ARCHITECTURE"=AMD64
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"USERNAME"=SYSTEM
"windir"=%SystemRoot%
"PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\
"NUMBER_OF_PROCESSORS"=2
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=Intel64 Family 6 Model 23 Stepping 10, GenuineIntel
"PROCESSOR_REVISION"=170a
"AMDAPPSDKROOT"=C:\Program Files (x86)\AMD APP\

-----------------EOF-----------------

Re: Preventivky

Napsal: 11 čer 2012 07:21
od Rudy
Tento log je zhlediska kontroly na malware k ničemu. RSIT dává 2 logy a já potřebuji vidět ten druhý.

Re: Preventivky

Napsal: 12 čer 2012 15:59
od Rolandman
Tak snad to ted bude ten spravny :) ale musim to rozdelit na dve zpravy,je to moc velke

Logfile of random's system information tool 1.09 (written by random/random)
Run by Jakub at 2012-06-12 16:54:40
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 14 GB (31%) free of 45 GB
Total RAM: 4095 MB (67% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:55:23, on 12.6.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal

Running processes:
D:\Programy\avast\AvastUI.exe
D:\Programy\torrent\utorrent.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files\trend micro\Jakub.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.babylon.com/?affID=112555 ... 248c5a342f
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files (x86)\uTorrentBar\prxtbuTor.dll
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: 213.239.204.183 tera-europe.com
O1 - Hosts: 213.239.204.183 www.tera-europe.com
O1 - Hosts: 213.239.204.183 account.tera-europe.com
O1 - Hosts: 213.239.204.183 www.account.tera-europe.com
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Babylon toolbar helper - {2EECD738-5844-4a99-B4B6-146BF802613B} - C:\Program Files (x86)\BabylonToolbar\BabylonToolbar\1.5.3.17\bh\BabylonToolbar.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - D:\Programy\avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: uTorrentBar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files (x86)\uTorrentBar\prxtbuTor.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - D:\Programy\avast\aswWebRepIE.dll
O3 - Toolbar: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files (x86)\uTorrentBar\prxtbuTor.dll
O3 - Toolbar: Babylon Toolbar - {98889811-442D-49dd-99D7-DC866BE87DBC} - C:\Program Files (x86)\BabylonToolbar\BabylonToolbar\1.5.3.17\BabylonToolbarTlbr.dll
O4 - HKLM\..\Run: [avast] "D:\Programy\avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [DAEMON Tools Lite] "D:\Programy\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://D:\Programy\office\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\Programy\office\OFFICE11\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - D:\Programy\avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 7592 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
atieclxx
"D:\Programy\avast\AvastSvc.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"D:\Programy\avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"taskhost.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\SysWOW64\PnkBstrA.exe
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
C:\Windows\system32\SearchIndexer.exe /Embedding
WLIDSvcM.exe 2588
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Windows\system32\wuauclt.exe"
"D:\Programy\torrent\utorrent.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=2884.7a2f4e0.581290223 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll" Mozilla.Firefox.8.0 -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.jar" 2884 "\\.\pipe\gecko-crash-server-pipe.2884" plugin
"C:\Users\Jakub\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\Profiles\qmrvp7hg.default

prefs.js - "browser.startup.homepage" - "www.seznam.cz"
prefs.js - "keyword.URL" - "http://search.babylon.com/?affID=112555 ... c5a342f&q="

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn.me/esnsonar,version=0.70.4]
"Description"=ESN Sonar browser plugin
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=1.122.0]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\1.122.0\npesnlaunch.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_1_102.dll

C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll

C:\Program Files (x86)\Mozilla Firefox\plugins\
np-mswmp.dll
NPOFFICE.DLL
nppdf32.dll
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

C:\Program Files (x86)\Mozilla Firefox\searchplugins\
babylon.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\Profiles\qmrvp7hg.default\extensions\
fastdial@telega.phpnet.us
{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! WebRep - D:\Programy\avast\aswWebRepIE64.dll [2011-11-28 963064]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-04-04 63912]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2EECD738-5844-4a99-B4B6-146BF802613B}]
Babylon toolbar helper - C:\Program Files (x86)\BabylonToolbar\BabylonToolbar\1.5.3.17\bh\BabylonToolbar.dll [2011-08-14 270960]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - D:\Programy\avast\aswWebRepIE.dll [2011-11-28 809040]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}]
uTorrentBar Toolbar - C:\Program Files (x86)\uTorrentBar\prxtbuTor.dll [2011-05-09 176936]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! WebRep - D:\Programy\avast\aswWebRepIE64.dll [2011-11-28 963064]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - D:\Programy\avast\aswWebRepIE.dll [2011-11-28 809040]
{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - uTorrentBar Toolbar - C:\Program Files (x86)\uTorrentBar\prxtbuTor.dll [2011-05-09 176936]
{98889811-442D-49dd-99D7-DC866BE87DBC} - Babylon Toolbar - C:\Program Files (x86)\BabylonToolbar\BabylonToolbar\1.5.3.17\BabylonToolbarTlbr.dll [2011-08-14 237680]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=D:\Programy\DAEMON Tools Lite\DTLite.exe [2011-11-10 3514176]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"avast"=D:\Programy\avast\avastUI.exe [2011-11-28 3744552]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-03 843712]
"AMD AVT"=Cmd.exe /c start AMD Accelerated Video Transcoding device initialization /min C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe aml []
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2012-04-06 641664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2012-06-10 16:40:13 ----D---- C:\Program Files\trend micro
2012-06-10 16:40:12 ----D---- C:\rsit
2012-06-10 14:05:03 ----D---- C:\Program Files (x86)\Battlelog Web Plugins
2012-06-10 14:02:56 ----D---- C:\ProgramData\EA Logs
2012-06-10 13:49:11 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2012-06-10 13:49:06 ----A---- C:\Windows\SYSWOW64\PnkBstrA.exe
2012-06-10 12:58:38 ----D---- C:\Program Files (x86)\Origin Games
2012-06-10 12:58:10 ----D---- C:\Users\Jakub\AppData\Roaming\Origin
2012-06-09 23:24:20 ----D---- C:\Users\Jakub\AppData\Roaming\Skype
2012-06-09 23:24:04 ----RD---- C:\Program Files (x86)\Skype
2012-06-09 23:23:58 ----D---- C:\ProgramData\Skype
2012-06-09 17:36:01 ----D---- C:\ProgramData\Codemasters
2012-06-09 17:35:47 ----D---- C:\Program Files (x86)\OpenAL
2012-06-09 17:35:47 ----A---- C:\Windows\SYSWOW64\wrap_oal.dll
2012-06-09 17:35:47 ----A---- C:\Windows\system32\wrap_oal.dll
2012-06-09 17:35:47 ----A---- C:\Windows\system32\OpenAL32.dll
2012-06-09 17:35:12 ----A---- C:\Windows\SYSWOW64\OpenAL32.dll
2012-06-09 17:35:11 ----A---- C:\Windows\SYSWOW64\rapture3d_oal.dll
2012-06-09 17:35:11 ----A---- C:\Windows\SYSWOW64\mkl_blueripple.dll
2012-06-09 17:30:25 ----D---- C:\Windows\SYSWOW64\directx
2012-06-09 17:13:57 ----D---- C:\Windows\DD1865F0AD7340FBB23E1822E02396FF.TMP
2012-06-07 17:14:21 ----D---- C:\ProgramData\Battle.net
2012-06-03 18:11:59 ----D---- C:\Users\Jakub\AppData\Roaming\LolClient2
2012-06-03 18:11:02 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2012-06-03 18:11:02 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2012-06-03 18:11:00 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2012-06-03 15:56:36 ----D---- C:\ProgramData\PMB Files
2012-06-03 15:56:31 ----D---- C:\Program Files (x86)\Pando Networks
2012-05-28 06:12:20 ----D---- C:\ProgramData\ATI
2012-05-28 06:12:18 ----D---- C:\Program Files (x86)\AMD APP
2012-05-23 18:34:17 ----D---- C:\Windows\system32\SPReview
2012-05-23 18:33:31 ----D---- C:\Windows\system32\EventProviders
2012-05-23 18:30:03 ----A---- C:\Windows\system32\netfxperf.dll
2012-05-23 18:30:03 ----A---- C:\Windows\system32\dfshim.dll
2012-05-23 18:29:57 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2012-05-23 18:29:54 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2012-05-23 18:29:54 ----A---- C:\Windows\system32\mstscax.dll
2012-05-23 18:29:54 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2012-05-23 18:29:54 ----A---- C:\Windows\system32\d3d10warp.dll
2012-05-23 18:29:52 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2012-05-23 18:29:49 ----A---- C:\Windows\SYSWOW64\mfc40u.dll
2012-05-23 18:29:49 ----A---- C:\Windows\SYSWOW64\mfc40.dll
2012-05-23 18:29:49 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2012-05-23 18:29:49 ----A---- C:\Windows\system32\tssrvlic.dll
2012-05-23 18:29:49 ----A---- C:\Windows\system32\sysmain.dll
2012-05-23 18:29:49 ----A---- C:\Windows\system32\RDVGHelper.exe
2012-05-23 18:29:48 ----A---- C:\Windows\SYSWOW64\pmcsnap.dll
2012-05-23 18:29:47 ----A---- C:\Windows\system32\MSVidCtl.dll
2012-05-23 18:29:46 ----A---- C:\Windows\system32\wmp.dll
2012-05-23 18:29:46 ----A---- C:\Windows\system32\mscoree.dll
2012-05-23 18:29:45 ----A---- C:\Windows\system32\secproc_isv.dll
2012-05-23 18:29:45 ----A---- C:\Windows\system32\mmcndmgr.dll
2012-05-23 18:29:45 ----A---- C:\Windows\system32\mf.dll
2012-05-23 18:29:44 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2012-05-23 18:29:44 ----A---- C:\Windows\system32\xpsservices.dll
2012-05-23 18:29:44 ----A---- C:\Windows\system32\secproc.dll
2012-05-23 18:29:44 ----A---- C:\Windows\system32\RMActivate_isv.exe
2012-05-23 18:29:44 ----A---- C:\Windows\system32\RMActivate.exe
2012-05-23 18:29:43 ----A---- C:\Windows\SYSWOW64\secproc.dll
2012-05-23 18:29:43 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2012-05-23 18:29:43 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2012-05-23 18:29:43 ----A---- C:\Windows\SYSWOW64\PushPrinterConnections.exe
2012-05-23 18:29:43 ----A---- C:\Windows\SYSWOW64\ppcsnap.dll
2012-05-23 18:29:43 ----A---- C:\Windows\system32\rpcrt4.dll
2012-05-23 18:29:42 ----A---- C:\Windows\system32\spwizui.dll
2012-05-23 18:29:42 ----A---- C:\Windows\system32\schedsvc.dll
2012-05-23 18:29:42 ----A---- C:\Windows\system32\ole32.dll
2012-05-23 18:29:41 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2012-05-23 18:29:41 ----A---- C:\Windows\system32\taskschd.dll
2012-05-23 18:29:40 ----A---- C:\Windows\SYSWOW64\mf.dll
2012-05-23 18:29:40 ----A---- C:\Windows\system32\wevtsvc.dll
2012-05-23 18:29:40 ----A---- C:\Windows\system32\vssapi.dll
2012-05-23 18:29:40 ----A---- C:\Windows\system32\RacEngn.dll
2012-05-23 18:29:40 ----A---- C:\Windows\system32\msxml3.dll
2012-05-23 18:29:40 ----A---- C:\Windows\system32\ExplorerFrame.dll
2012-05-23 18:29:40 ----A---- C:\Windows\system32\diagperf.dll
2012-05-23 18:29:39 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2012-05-23 18:29:39 ----A---- C:\Windows\system32\UIRibbon.dll
2012-05-23 18:29:39 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2012-05-23 18:29:39 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2012-05-23 18:29:39 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2012-05-23 18:29:38 ----A---- C:\Windows\SYSWOW64\wmp.dll
2012-05-23 18:29:37 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2012-05-23 18:29:37 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2012-05-23 18:29:37 ----A---- C:\Windows\system32\WsmSvc.dll
2012-05-23 18:29:37 ----A---- C:\Windows\system32\WMVCORE.DLL
2012-05-23 18:29:37 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2012-05-23 18:29:36 ----A---- C:\Windows\system32\WinSAT.exe
2012-05-23 18:29:36 ----A---- C:\Windows\system32\spreview.exe
2012-05-23 18:29:36 ----A---- C:\Windows\system32\spinstall.exe
2012-05-23 18:29:36 ----A---- C:\Windows\system32\rdpdd.dll
2012-05-23 18:29:36 ----A---- C:\Windows\system32\PresentationHost.exe
2012-05-23 18:29:36 ----A---- C:\Windows\system32\MPSSVC.dll
2012-05-23 18:29:36 ----A---- C:\Windows\system32\CertEnroll.dll
2012-05-23 18:29:35 ----A---- C:\Windows\system32\WMVDECOD.DLL
2012-05-23 18:29:35 ----A---- C:\Windows\system32\d3d9.dll
2012-05-23 18:29:34 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2012-05-23 18:29:34 ----A---- C:\Windows\SYSWOW64\AuthFWSnapin.dll
2012-05-23 18:29:34 ----A---- C:\Windows\system32\SearchFolder.dll
2012-05-23 18:29:34 ----A---- C:\Windows\system32\msxml6.dll
2012-05-23 18:29:34 ----A---- C:\Windows\system32\IKEEXT.DLL
2012-05-23 18:29:34 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2012-05-23 18:29:33 ----A---- C:\Windows\system32\VSSVC.exe
2012-05-23 18:29:33 ----A---- C:\Windows\system32\gpsvc.dll
2012-05-23 18:29:33 ----A---- C:\Windows\system32\dwmcore.dll
2012-05-23 18:29:33 ----A---- C:\Windows\system32\dbgeng.dll
2012-05-23 18:29:32 ----A---- C:\Windows\SYSWOW64\rdvgumd32.dll
2012-05-23 18:29:32 ----A---- C:\Windows\system32\drivers\ndis.sys
2012-05-23 18:29:32 ----A---- C:\Windows\system32\drivers\http.sys
2012-05-23 18:29:32 ----A---- C:\Windows\system32\crypt32.dll
2012-05-23 18:29:31 ----A---- C:\Windows\SYSWOW64\ole32.dll
2012-05-23 18:29:31 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2012-05-23 18:29:31 ----A---- C:\Windows\system32\actxprxy.dll
2012-05-23 18:29:30 ----A---- C:\Windows\system32\TSWorkspace.dll
2012-05-23 18:29:30 ----A---- C:\Windows\system32\termsrv.dll
2012-05-23 18:29:30 ----A---- C:\Windows\system32\qmgr.dll
2012-05-23 18:29:30 ----A---- C:\Windows\system32\mstsc.exe
2012-05-23 18:29:30 ----A---- C:\Windows\system32\gpprefcl.dll
2012-05-23 18:29:30 ----A---- C:\Windows\system32\audiosrv.dll
2012-05-23 18:29:29 ----A---- C:\Windows\SYSWOW64\vssapi.dll
2012-05-23 18:29:29 ----A---- C:\Windows\system32\winhttp.dll
2012-05-23 18:29:29 ----A---- C:\Windows\system32\netlogon.dll
2012-05-23 18:29:29 ----A---- C:\Windows\system32\imapi2fs.dll
2012-05-23 18:29:29 ----A---- C:\Windows\system32\d3d11.dll
2012-05-23 18:29:28 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2012-05-23 18:29:28 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2012-05-23 18:29:28 ----A---- C:\Windows\SYSWOW64\d3d9.dll
2012-05-23 18:29:28 ----A---- C:\Windows\system32\wbengine.exe
2012-05-23 18:29:28 ----A---- C:\Windows\system32\setupapi.dll
2012-05-23 18:29:28 ----A---- C:\Windows\system32\rpcss.dll
2012-05-23 18:29:28 ----A---- C:\Windows\system32\QAGENTRT.DLL
2012-05-23 18:29:28 ----A---- C:\Windows\system32\PushPrinterConnections.exe
2012-05-23 18:29:28 ----A---- C:\Windows\system32\propsys.dll
2012-05-23 18:29:28 ----A---- C:\Windows\system32\msv1_0.dll
2012-05-23 18:29:27 ----A---- C:\Windows\system32\werconcpl.dll
2012-05-23 18:29:27 ----A---- C:\Windows\system32\authui.dll
2012-05-23 18:29:26 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2012-05-23 18:29:26 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2012-05-23 18:29:26 ----A---- C:\Windows\system32\WSDApi.dll
2012-05-23 18:29:26 ----A---- C:\Windows\system32\user32.dll
2012-05-23 18:29:26 ----A---- C:\Windows\system32\taskeng.exe
2012-05-23 18:29:26 ----A---- C:\Windows\system32\odbc32.dll
2012-05-23 18:29:26 ----A---- C:\Windows\system32\drivers\netio.sys
2012-05-23 18:29:26 ----A---- C:\Windows\system32\dhcpcore.dll
2012-05-23 18:29:25 ----A---- C:\Windows\SYSWOW64\wer.dll
2012-05-23 18:29:25 ----A---- C:\Windows\SYSWOW64\certcli.dll
2012-05-23 18:29:25 ----A---- C:\Windows\system32\umrdp.dll
2012-05-23 18:29:25 ----A---- C:\Windows\system32\scavengeui.dll
2012-05-23 18:29:25 ----A---- C:\Windows\system32\LSCSHostPolicy.dll
2012-05-23 18:29:25 ----A---- C:\Windows\system32\drivers\tdx.sys
2012-05-23 18:29:25 ----A---- C:\Windows\system32\drivers\netbt.sys
2012-05-23 18:29:25 ----A---- C:\Windows\system32\certmgr.dll
2012-05-23 18:29:24 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2012-05-23 18:29:24 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2012-05-23 18:29:24 ----A---- C:\Windows\system32\tsmf.dll
2012-05-23 18:29:24 ----A---- C:\Windows\system32\shlwapi.dll
2012-05-23 18:29:24 ----A---- C:\Windows\system32\rdpshell.exe
2012-05-23 18:29:24 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2012-05-23 18:29:24 ----A---- C:\Windows\system32\netshell.dll
2012-05-23 18:29:24 ----A---- C:\Windows\system32\ncsi.dll
2012-05-23 18:29:24 ----A---- C:\Windows\system32\msdtctm.dll
2012-05-23 18:29:24 ----A---- C:\Windows\system32\msdrm.dll
2012-05-23 18:29:24 ----A---- C:\Windows\system32\localspl.dll
2012-05-23 18:29:24 ----A---- C:\Windows\system32\framedynos.dll
2012-05-23 18:29:23 ----A---- C:\Windows\SYSWOW64\tcpmonui.dll
2012-05-23 18:29:23 ----A---- C:\Windows\SYSWOW64\odbc32.dll
2012-05-23 18:29:23 ----A---- C:\Windows\system32\ws2_32.dll
2012-05-23 18:29:23 ----A---- C:\Windows\system32\wmicmiplugin.dll
2012-05-23 18:29:23 ----A---- C:\Windows\system32\winlogon.exe
2012-05-23 18:29:23 ----A---- C:\Windows\system32\usp10.dll
2012-05-23 18:29:23 ----A---- C:\Windows\system32\netcfgx.dll
2012-05-23 18:29:23 ----A---- C:\Windows\system32\appmgr.dll
2012-05-23 18:29:22 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2012-05-23 18:29:22 ----A---- C:\Windows\system32\wmpps.dll
2012-05-23 18:29:22 ----A---- C:\Windows\system32\Query.dll
2012-05-23 18:29:22 ----A---- C:\Windows\system32\nlasvc.dll
2012-05-23 18:29:22 ----A---- C:\Windows\system32\mswsock.dll
2012-05-23 18:29:22 ----A---- C:\Windows\system32\lsm.exe
2012-05-23 18:29:22 ----A---- C:\Windows\system32\dxgi.dll
2012-05-23 18:29:22 ----A---- C:\Windows\system32\drivers\csc.sys
2012-05-23 18:29:22 ----A---- C:\Windows\system32\comdlg32.dll
2012-05-23 18:29:22 ----A---- C:\Windows\system32\apphelp.dll
2012-05-23 18:29:21 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2012-05-23 18:29:21 ----A---- C:\Windows\SYSWOW64\tsmf.dll
2012-05-23 18:29:21 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2012-05-23 18:29:21 ----A---- C:\Windows\SYSWOW64\dot3api.dll
2012-05-23 18:29:21 ----A---- C:\Windows\system32\wpdshext.dll
2012-05-23 18:29:21 ----A---- C:\Windows\system32\QAGENT.DLL
2012-05-23 18:29:21 ----A---- C:\Windows\system32\drvstore.dll
2012-05-23 18:29:21 ----A---- C:\Windows\system32\BFE.DLL
2012-05-23 18:29:21 ----A---- C:\Windows\system32\azroles.dll
2012-05-23 18:29:20 ----A---- C:\Windows\SYSWOW64\netlogon.dll
2012-05-23 18:29:20 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2012-05-23 18:29:20 ----A---- C:\Windows\SYSWOW64\dbgeng.dll
2012-05-23 18:29:20 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2012-05-23 18:29:20 ----A---- C:\Windows\system32\win32spl.dll
2012-05-23 18:29:20 ----A---- C:\Windows\system32\Vault.dll
2012-05-23 18:29:20 ----A---- C:\Windows\system32\samsrv.dll
2012-05-23 18:29:20 ----A---- C:\Windows\system32\lpksetup.exe
2012-05-23 18:29:20 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2012-05-23 18:29:20 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2012-05-23 18:29:20 ----A---- C:\Windows\system32\cmd.exe
2012-05-23 18:29:19 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2012-05-23 18:29:19 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2012-05-23 18:29:19 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2012-05-23 18:29:19 ----A---- C:\Windows\system32\rdpclip.exe
2012-05-23 18:29:19 ----A---- C:\Windows\system32\cscsvc.dll
2012-05-23 18:29:18 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2012-05-23 18:29:18 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2012-05-23 18:29:18 ----A---- C:\Windows\SYSWOW64\Query.dll
2012-05-23 18:29:18 ----A---- C:\Windows\SYSWOW64\gpprefcl.dll
2012-05-23 18:29:18 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2012-05-23 18:29:18 ----A---- C:\Windows\system32\Wldap32.dll
2012-05-23 18:29:18 ----A---- C:\Windows\system32\WindowsCodecs.dll
2012-05-23 18:29:18 ----A---- C:\Windows\system32\WebClnt.dll
2012-05-23 18:29:18 ----A---- C:\Windows\system32\taskcomp.dll
2012-05-23 18:29:18 ----A---- C:\Windows\system32\sxs.dll
2012-05-23 18:29:18 ----A---- C:\Windows\system32\mfds.dll
2012-05-23 18:29:18 ----A---- C:\Windows\system32\mcbuilder.exe
2012-05-23 18:29:18 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2012-05-23 18:29:18 ----A---- C:\Windows\system32\cscobj.dll
2012-05-23 18:29:17 ----A---- C:\Windows\SYSWOW64\upnp.dll
2012-05-23 18:29:17 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2012-05-23 18:29:17 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2012-05-23 18:29:17 ----A---- C:\Windows\SYSWOW64\mmcndmgr.dll
2012-05-23 18:29:17 ----A---- C:\Windows\SYSWOW64\DShowRdpFilter.dll
2012-05-23 18:29:17 ----A---- C:\Windows\system32\wuaueng.dll
2012-05-23 18:29:17 ----A---- C:\Windows\system32\webservices.dll
2012-05-23 18:29:17 ----A---- C:\Windows\system32\SessEnv.dll
2012-05-23 18:29:17 ----A---- C:\Windows\system32\rdpendp.dll
2012-05-23 18:29:17 ----A---- C:\Windows\system32\pnidui.dll
2012-05-23 18:29:17 ----A---- C:\Windows\system32\ipsmsnap.dll
2012-05-23 18:29:17 ----A---- C:\Windows\system32\hgprint.dll
2012-05-23 18:29:16 ----A---- C:\Windows\SYSWOW64\usp10.dll
2012-05-23 18:29:16 ----A---- C:\Windows\SYSWOW64\shlwapi.dll
2012-05-23 18:29:16 ----A---- C:\Windows\SYSWOW64\SessEnv.dll
2012-05-23 18:29:16 ----A---- C:\Windows\SYSWOW64\PortableDeviceApi.dll
2012-05-23 18:29:16 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2012-05-23 18:29:16 ----A---- C:\Windows\SYSWOW64\imapi2fs.dll
2012-05-23 18:29:16 ----A---- C:\Windows\SYSWOW64\authui.dll
2012-05-23 18:29:16 ----A---- C:\Windows\system32\winsta.dll
2012-05-23 18:29:16 ----A---- C:\Windows\system32\sqlsrv32.dll
2012-05-23 18:29:16 ----A---- C:\Windows\system32\spoolsv.exe
2012-05-23 18:29:16 ----A---- C:\Windows\system32\fveapi.dll
2012-05-23 18:29:16 ----A---- C:\Windows\system32\dot3api.dll
2012-05-23 18:29:15 ----A---- C:\Windows\SYSWOW64\mcbuilder.exe
2012-05-23 18:29:15 ----A---- C:\Windows\SYSWOW64\certmgr.dll
2012-05-23 18:29:15 ----A---- C:\Windows\system32\WMNetMgr.dll
2012-05-23 18:29:15 ----A---- C:\Windows\system32\wlanpref.dll
2012-05-23 18:29:15 ----A---- C:\Windows\system32\schtasks.exe
2012-05-23 18:29:15 ----A---- C:\Windows\system32\prncache.dll
2012-05-23 18:29:15 ----A---- C:\Windows\system32\mcmde.dll
2012-05-23 18:29:15 ----A---- C:\Windows\system32\gdi32.dll
2012-05-23 18:29:15 ----A---- C:\Windows\system32\drivers\volsnap.sys
2012-05-23 18:29:15 ----A---- C:\Windows\system32\drivers\msrpc.sys
2012-05-23 18:29:14 ----A---- C:\Windows\SYSWOW64\xpsservices.dll
2012-05-23 18:29:14 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2012-05-23 18:29:14 ----A---- C:\Windows\SYSWOW64\userenv.dll
2012-05-23 18:29:14 ----A---- C:\Windows\SYSWOW64\drvstore.dll
2012-05-23 18:29:14 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2012-05-23 18:29:14 ----A---- C:\Windows\system32\wuapi.dll
2012-05-23 18:29:14 ----A---- C:\Windows\system32\vpnike.dll
2012-05-23 18:29:14 ----A---- C:\Windows\system32\userenv.dll
2012-05-23 18:29:14 ----A---- C:\Windows\system32\tspubwmi.dll
2012-05-23 18:29:14 ----A---- C:\Windows\system32\photowiz.dll
2012-05-23 18:29:14 ----A---- C:\Windows\system32\evr.dll
2012-05-23 18:29:14 ----A---- C:\Windows\system32\drivers\rdbss.sys
2012-05-23 18:29:14 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2012-05-23 18:29:11 ----A---- C:\Windows\SYSWOW64\cmd.exe
2012-05-23 18:29:11 ----A---- C:\Windows\system32\wmpmde.dll
2012-05-23 18:29:11 ----A---- C:\Windows\system32\sppobjs.dll
2012-05-23 18:29:11 ----A---- C:\Windows\system32\IPSECSVC.DLL
2012-05-23 18:29:11 ----A---- C:\Windows\system32\FXSSVC.exe
2012-05-23 18:29:11 ----A---- C:\Windows\system32\framedyn.dll
2012-05-23 18:29:11 ----A---- C:\Windows\system32\AudioSes.dll
2012-05-23 18:29:11 ----A---- C:\Windows\system32\aepdu.dll
2012-05-23 18:29:10 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2012-05-23 18:29:10 ----A---- C:\Windows\SYSWOW64\framedynos.dll
2012-05-23 18:29:10 ----A---- C:\Windows\system32\WMPEncEn.dll
2012-05-23 18:29:10 ----A---- C:\Windows\system32\wmpeffects.dll
2012-05-23 18:29:10 ----A---- C:\Windows\system32\vmicsvc.exe
2012-05-23 18:29:10 ----A---- C:\Windows\system32\tscfgwmi.dll
2012-05-23 18:29:10 ----A---- C:\Windows\system32\SyncCenter.dll
2012-05-23 18:29:10 ----A---- C:\Windows\system32\srvsvc.dll
2012-05-23 18:29:10 ----A---- C:\Windows\system32\shsvcs.dll
2012-05-23 18:29:10 ----A---- C:\Windows\system32\rdpinit.exe
2012-05-23 18:29:10 ----A---- C:\Windows\system32\mfreadwrite.dll
2012-05-23 18:29:10 ----A---- C:\Windows\system32\fde.dll
2012-05-23 18:29:10 ----A---- C:\Windows\system32\aeinv.dll
2012-05-23 18:29:09 ----A---- C:\Windows\SYSWOW64\Wldap32.dll
2012-05-23 18:29:09 ----A---- C:\Windows\SYSWOW64\user32.dll
2012-05-23 18:29:09 ----A---- C:\Windows\SYSWOW64\rdpendp.dll
2012-05-23 18:29:09 ----A---- C:\Windows\SYSWOW64\propsys.dll
2012-05-23 18:29:09 ----A---- C:\Windows\SYSWOW64\mfds.dll
2012-05-23 18:29:09 ----A---- C:\Windows\system32\WinSATAPI.dll
2012-05-23 18:29:09 ----A---- C:\Windows\system32\stobject.dll
2012-05-23 18:29:09 ----A---- C:\Windows\system32\netdiagfx.dll
2012-05-23 18:29:09 ----A---- C:\Windows\system32\localsec.dll
2012-05-23 18:29:09 ----A---- C:\Windows\system32\iphlpsvc.dll
2012-05-23 18:29:09 ----A---- C:\Windows\system32\imapi2.dll
2012-05-23 18:29:09 ----A---- C:\Windows\system32\drivers\vmbus.sys
2012-05-23 18:29:09 ----A---- C:\Windows\system32\drivers\udfs.sys
2012-05-23 18:29:09 ----A---- C:\Windows\system32\credui.dll
2012-05-23 18:29:09 ----A---- C:\Windows\system32\cdd.dll
2012-05-23 18:29:09 ----A---- C:\Windows\system32\bcryptprimitives.dll
2012-05-23 18:29:08 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2012-05-23 18:29:08 ----A---- C:\Windows\SYSWOW64\azroles.dll
2012-05-23 18:29:08 ----A---- C:\Windows\SYSWOW64\appmgr.dll
2012-05-23 18:29:08 ----A---- C:\Windows\system32\tcpipcfg.dll
2012-05-23 18:29:08 ----A---- C:\Windows\system32\spp.dll
2012-05-23 18:29:08 ----A---- C:\Windows\system32\QSHVHOST.DLL
2012-05-23 18:29:08 ----A---- C:\Windows\system32\netid.dll
2012-05-23 18:29:08 ----A---- C:\Windows\system32\inetpp.dll
2012-05-23 18:29:08 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2012-05-23 18:29:08 ----A---- C:\Windows\system32\davclnt.dll
2012-05-23 18:29:08 ----A---- C:\Windows\system32\cscui.dll
2012-05-23 18:29:08 ----A---- C:\Windows\system32\biocpl.dll
2012-05-23 18:29:07 ----A---- C:\Windows\SYSWOW64\themeui.dll
2012-05-23 18:29:07 ----A---- C:\Windows\SYSWOW64\credui.dll
2012-05-23 18:29:07 ----A---- C:\Windows\system32\scansetting.dll
2012-05-23 18:29:07 ----A---- C:\Windows\system32\profsvc.dll
2012-05-23 18:29:07 ----A---- C:\Windows\system32\printui.dll
2012-05-23 18:29:07 ----A---- C:\Windows\system32\pla.dll
2012-05-23 18:29:07 ----A---- C:\Windows\system32\mspbda.dll
2012-05-23 18:29:07 ----A---- C:\Windows\system32\msinfo32.exe
2012-05-23 18:29:07 ----A---- C:\Windows\system32\gameux.dll
2012-05-23 18:29:07 ----A---- C:\Windows\splwow64.exe
2012-05-23 18:29:06 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2012-05-23 18:29:06 ----A---- C:\Windows\SYSWOW64\spp.dll
2012-05-23 18:29:06 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2012-05-23 18:29:06 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll
2012-05-23 18:29:06 ----A---- C:\Windows\SYSWOW64\basecsp.dll
2012-05-23 18:29:06 ----A---- C:\Windows\system32\wusa.exe
2012-05-23 18:29:06 ----A---- C:\Windows\system32\wiaservc.dll
2012-05-23 18:29:06 ----A---- C:\Windows\system32\vds.exe
2012-05-23 18:29:06 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2012-05-23 18:29:06 ----A---- C:\Windows\system32\msdri.dll
2012-05-23 18:29:06 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2012-05-23 18:29:06 ----A---- C:\Windows\system32\drivers\pci.sys
2012-05-23 18:29:06 ----A---- C:\Windows\system32\cryptsvc.dll
2012-05-23 18:29:06 ----A---- C:\Windows\system32\aitagent.exe
2012-05-23 18:29:06 ----A---- C:\Windows\system32\AdmTmpl.dll
2012-05-23 18:29:05 ----A---- C:\Windows\SYSWOW64\NaturalLanguage6.dll
2012-05-23 18:29:05 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2012-05-23 18:29:05 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2012-05-23 18:29:05 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2012-05-23 18:29:05 ----A---- C:\Windows\SYSWOW64\dbghelp.dll
2012-05-23 18:29:05 ----A---- C:\Windows\system32\XpsRasterService.dll
2012-05-23 18:29:05 ----A---- C:\Windows\system32\wisptis.exe
2012-05-23 18:29:05 ----A---- C:\Windows\system32\rpchttp.dll
2012-05-23 18:29:05 ----A---- C:\Windows\system32\PkgMgr.exe
2012-05-23 18:29:05 ----A---- C:\Windows\system32\msi.dll
2012-05-23 18:29:05 ----A---- C:\Windows\system32\mscms.dll
2012-05-23 18:29:05 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2012-05-23 18:29:05 ----A---- C:\Windows\system32\drivers\rasl2tp.sys
2012-05-23 18:29:04 ----A---- C:\Windows\SYSWOW64\WinSATAPI.dll
2012-05-23 18:29:04 ----A---- C:\Windows\SYSWOW64\taskcomp.dll
2012-05-23 18:29:04 ----A---- C:\Windows\SYSWOW64\evr.dll
2012-05-23 18:29:04 ----A---- C:\Windows\SYSWOW64\calc.exe
2012-05-23 18:29:04 ----A---- C:\Windows\system32\sppwinob.dll
2012-05-23 18:29:04 ----A---- C:\Windows\system32\ocsetup.exe
2012-05-23 18:29:04 ----A---- C:\Windows\system32\ocsetapi.dll
2012-05-23 18:29:04 ----A---- C:\Windows\system32\DXP.dll
2012-05-23 18:29:04 ----A---- C:\Windows\system32\drivers\volmgr.sys
2012-05-23 18:29:04 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2012-05-23 18:29:03 ----A---- C:\Windows\SYSWOW64\sqlsrv32.dll
2012-05-23 18:29:03 ----A---- C:\Windows\system32\wpdbusenum.dll
2012-05-23 18:29:03 ----A---- C:\Windows\system32\wcncsvc.dll
2012-05-23 18:29:03 ----A---- C:\Windows\system32\upnp.dll
2012-05-23 18:29:03 ----A---- C:\Windows\system32\Robocopy.exe
2012-05-23 18:29:03 ----A---- C:\Windows\system32\mprapi.dll
2012-05-23 18:29:03 ----A---- C:\Windows\system32\eapphost.dll
2012-05-23 18:29:03 ----A---- C:\Windows\system32\eapp3hst.dll
2012-05-23 18:29:03 ----A---- C:\Windows\system32\drivers\msdsm.sys
2012-05-23 18:29:03 ----A---- C:\Windows\system32\ci.dll
2012-05-23 18:29:02 ----A---- C:\Windows\SYSWOW64\ws2_32.dll
2012-05-23 18:29:02 ----A---- C:\Windows\SYSWOW64\UIRibbon.dll
2012-05-23 18:29:02 ----A---- C:\Windows\SYSWOW64\sxs.dll
2012-05-23 18:29:02 ----A---- C:\Windows\SYSWOW64\stobject.dll
2012-05-23 18:29:02 ----A---- C:\Windows\SYSWOW64\netshell.dll
2012-05-23 18:29:02 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2012-05-23 18:29:02 ----A---- C:\Windows\system32\thumbcache.dll
2012-05-23 18:29:02 ----A---- C:\Windows\system32\t2embed.dll
2012-05-23 18:29:02 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2012-05-23 18:29:02 ----A---- C:\Windows\system32\hal.dll
2012-05-23 18:29:02 ----A---- C:\Windows\system32\DxpTaskSync.dll
2012-05-23 18:29:02 ----A---- C:\Windows\system32\drivers\HpSAMD.sys
2012-05-23 18:29:02 ----A---- C:\Windows\system32\drivers\fvevol.sys
2012-05-23 18:29:01 ----A---- C:\Windows\SYSWOW64\prncache.dll
2012-05-23 18:29:01 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2012-05-23 18:29:01 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2012-05-23 18:29:01 ----A---- C:\Windows\system32\scecli.dll
2012-05-23 18:29:01 ----A---- C:\Windows\system32\puiobj.dll
2012-05-23 18:29:01 ----A---- C:\Windows\system32\nlaapi.dll
2012-05-23 18:29:01 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2012-05-23 18:29:01 ----A---- C:\Windows\system32\msasn1.dll
2012-05-23 18:29:01 ----A---- C:\Windows\system32\iasrad.dll
2012-05-23 18:29:01 ----A---- C:\Windows\system32\dwmredir.dll
2012-05-23 18:29:01 ----A---- C:\Windows\system32\drivers\ipfltdrv.sys
2012-05-23 18:29:01 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2012-05-23 18:29:00 ----A---- C:\Windows\SYSWOW64\WSDApi.dll
2012-05-23 18:29:00 ----A---- C:\Windows\SYSWOW64\wmpeffects.dll
2012-05-23 18:29:00 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2012-05-23 18:29:00 ----A---- C:\Windows\SYSWOW64\printui.dll
2012-05-23 18:29:00 ----A---- C:\Windows\SYSWOW64\net1.exe
2012-05-23 18:29:00 ----A---- C:\Windows\SYSWOW64\msi.dll
2012-05-23 18:29:00 ----A---- C:\Windows\system32\themeui.dll
2012-05-23 18:29:00 ----A---- C:\Windows\system32\scrptadm.dll
2012-05-23 18:29:00 ----A---- C:\Windows\system32\onex.dll
2012-05-23 18:29:00 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2012-05-23 18:29:00 ----A---- C:\Windows\system32\aaclient.dll
2012-05-23 18:28:59 ----A---- C:\Windows\SYSWOW64\scansetting.dll
2012-05-23 18:28:59 ----A---- C:\Windows\system32\wdc.dll
2012-05-23 18:28:58 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2012-05-23 18:28:58 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2012-05-23 18:28:58 ----A---- C:\Windows\system32\wlangpui.dll
2012-05-23 18:28:58 ----A---- C:\Windows\system32\wiadefui.dll
2012-05-23 18:28:58 ----A---- C:\Windows\system32\VAN.dll
2012-05-23 18:28:58 ----A---- C:\Windows\system32\StructuredQuery.dll
2012-05-23 18:28:58 ----A---- C:\Windows\system32\sdengin2.dll
2012-05-23 18:28:58 ----A---- C:\Windows\system32\scesrv.dll
2012-05-23 18:28:58 ----A---- C:\Windows\system32\samcli.dll
2012-05-23 18:28:58 ----A---- C:\Windows\system32\rasmans.dll
2012-05-23 18:28:58 ----A---- C:\Windows\system32\netcenter.dll
2012-05-23 18:28:58 ----A---- C:\Windows\system32\msftedit.dll
2012-05-23 18:28:58 ----A---- C:\Windows\system32\dskquoui.dll
2012-05-23 18:28:57 ----A---- C:\Windows\SYSWOW64\WMVCORE.DLL
2012-05-23 18:28:57 ----A---- C:\Windows\SYSWOW64\wlangpui.dll
2012-05-23 18:28:57 ----A---- C:\Windows\SYSWOW64\QSHVHOST.DLL
2012-05-23 18:28:57 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2012-05-23 18:28:57 ----A---- C:\Windows\system32\wucltux.dll
2012-05-23 18:28:57 ----A---- C:\Windows\system32\wscapi.dll
2012-05-23 18:28:57 ----A---- C:\Windows\system32\SndVol.exe
2012-05-23 18:28:57 ----A---- C:\Windows\system32\regapi.dll
2012-05-23 18:28:57 ----A---- C:\Windows\system32\QUTIL.DLL
2012-05-23 18:28:57 ----A---- C:\Windows\system32\iasacct.dll
2012-05-23 18:28:57 ----A---- C:\Windows\system32\drivers\termdd.sys
2012-05-23 18:28:57 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2012-05-23 18:28:57 ----A---- C:\Windows\system32\consent.exe
2012-05-23 18:28:56 ----A---- C:\Windows\SYSWOW64\wpdshext.dll
2012-05-23 18:28:56 ----A---- C:\Windows\SYSWOW64\webservices.dll
2012-05-23 18:28:56 ----A---- C:\Windows\SYSWOW64\t2embed.dll
2012-05-23 18:28:56 ----A---- C:\Windows\SYSWOW64\SyncCenter.dll
2012-05-23 18:28:56 ----A---- C:\Windows\SYSWOW64\scrptadm.dll
2012-05-23 18:28:56 ----A---- C:\Windows\SYSWOW64\pnidui.dll
2012-05-23 18:28:56 ----A---- C:\Windows\SYSWOW64\netdiagfx.dll
2012-05-23 18:28:56 ----A---- C:\Windows\SYSWOW64\fde.dll
2012-05-23 18:28:56 ----A---- C:\Windows\system32\WUDFSvc.dll
2012-05-23 18:28:56 ----A---- C:\Windows\system32\wksprt.exe
2012-05-23 18:28:56 ----A---- C:\Windows\system32\taskhost.exe
2012-05-23 18:28:56 ----A---- C:\Windows\system32\TabSvc.dll
2012-05-23 18:28:56 ----A---- C:\Windows\system32\srchadmin.dll
2012-05-23 18:28:56 ----A---- C:\Windows\system32\setupcl.exe
2012-05-23 18:28:56 ----A---- C:\Windows\system32\rastls.dll
2012-05-23 18:28:56 ----A---- C:\Windows\system32\drivers\msahci.sys
2012-05-23 18:28:55 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2012-05-23 18:28:55 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2012-05-23 18:28:55 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2012-05-23 18:28:55 ----A---- C:\Windows\SYSWOW64\cscobj.dll
2012-05-23 18:28:55 ----A---- C:\Windows\system32\tapisrv.dll
2012-05-23 18:28:55 ----A---- C:\Windows\system32\netiohlp.dll
2012-05-23 18:28:55 ----A---- C:\Windows\system32\msconfig.exe
2012-05-23 18:28:55 ----A---- C:\Windows\system32\mimefilt.dll
2012-05-23 18:28:55 ----A---- C:\Windows\system32\ListSvc.dll
2012-05-23 18:28:55 ----A---- C:\Windows\system32\drivers\raspptp.sys
2012-05-23 18:28:55 ----A---- C:\Windows\system32\drivers\acpi.sys
2012-05-23 18:28:54 ----A---- C:\Windows\SYSWOW64\winsta.dll
2012-05-23 18:28:54 ----A---- C:\Windows\SYSWOW64\pla.dll
2012-05-23 18:28:54 ----A---- C:\Windows\SYSWOW64\MSMPEG2ENC.DLL
2012-05-23 18:28:54 ----A---- C:\Windows\SYSWOW64\msasn1.dll
2012-05-23 18:28:54 ----A---- C:\Windows\system32\lsmproxy.dll
2012-05-23 18:28:54 ----A---- C:\Windows\system32\hgcpl.dll
2012-05-23 18:28:54 ----A---- C:\Windows\system32\fdeploy.dll
2012-05-23 18:28:54 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2012-05-23 18:28:54 ----A---- C:\Windows\system32\drivers\ks.sys
2012-05-23 18:28:54 ----A---- C:\Windows\system32\clusapi.dll
2012-05-23 18:28:54 ----A---- C:\Windows\system32\basecsp.dll
2012-05-23 18:28:54 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2012-05-23 18:28:53 ----A---- C:\Windows\SYSWOW64\imapi2.dll
2012-05-23 18:28:53 ----A---- C:\Windows\SYSWOW64\DXPTaskRingtone.dll
2012-05-23 18:28:53 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2012-05-23 18:28:53 ----A---- C:\Windows\system32\riched20.dll
2012-05-23 18:28:53 ----A---- C:\Windows\system32\mtxclu.dll
2012-05-23 18:28:52 ----A---- C:\Windows\SYSWOW64\WMPEncEn.dll
2012-05-23 18:28:52 ----A---- C:\Windows\SYSWOW64\onex.dll
2012-05-23 18:28:52 ----A---- C:\Windows\SYSWOW64\gameux.dll
2012-05-23 18:28:52 ----A---- C:\Windows\system32\sharemediacpl.dll
2012-05-23 18:28:52 ----A---- C:\Windows\system32\RpcRtRemote.dll
2012-05-23 18:28:52 ----A---- C:\Windows\system32\powercpl.dll
2012-05-23 18:28:52 ----A---- C:\Windows\system32\logoncli.dll
2012-05-23 18:28:52 ----A---- C:\Windows\system32\dnscmmc.dll
2012-05-23 18:28:51 ----A---- C:\Windows\SYSWOW64\winmm.dll
2012-05-23 18:28:51 ----A---- C:\Windows\SYSWOW64\shsvcs.dll
2012-05-23 18:28:51 ----A---- C:\Windows\SYSWOW64\netiohlp.dll
2012-05-23 18:28:51 ----A---- C:\Windows\SYSWOW64\hbaapi.dll
2012-05-23 18:28:51 ----A---- C:\Windows\SYSWOW64\autochk.exe
2012-05-23 18:28:51 ----A---- C:\Windows\SYSWOW64\autofmt.exe
2012-05-23 18:28:51 ----A---- C:\Windows\system32\themecpl.dll
2012-05-23 18:28:51 ----A---- C:\Windows\system32\SensorsCpl.dll
2012-05-23 18:28:51 ----A---- C:\Windows\system32\netjoin.dll
2012-05-23 18:28:51 ----A---- C:\Windows\system32\nci.dll
2012-05-23 18:28:51 ----A---- C:\Windows\system32\Narrator.exe
2012-05-23 18:28:51 ----A---- C:\Windows\system32\Faultrep.dll
2012-05-23 18:28:51 ----A---- C:\Windows\system32\eudcedit.exe
2012-05-23 18:28:50 ----A---- C:\Windows\SYSWOW64\thumbcache.dll
2012-05-23 18:28:50 ----A---- C:\Windows\SYSWOW64\samcli.dll
2012-05-23 18:28:50 ----A---- C:\Windows\SYSWOW64\regapi.dll
2012-05-23 18:28:50 ----A---- C:\Windows\SYSWOW64\proquota.exe
2012-05-23 18:28:50 ----A---- C:\Windows\SYSWOW64\msutb.dll
2012-05-23 18:28:50 ----A---- C:\Windows\SYSWOW64\msinfo32.exe
2012-05-23 18:28:50 ----A---- C:\Windows\SYSWOW64\mimefilt.dll
2012-05-23 18:28:50 ----A---- C:\Windows\SYSWOW64\ipsmsnap.dll
2012-05-23 18:28:50 ----A---- C:\Windows\SYSWOW64\IPHLPAPI.DLL
2012-05-23 18:28:50 ----A---- C:\Windows\SYSWOW64\autoconv.exe
2012-05-23 18:28:50 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2012-05-23 18:28:50 ----A---- C:\Windows\system32\wkssvc.dll
2012-05-23 18:28:50 ----A---- C:\Windows\system32\vpnikeapi.dll
2012-05-23 18:28:50 ----A---- C:\Windows\system32\sppcomapi.dll
2012-05-23 18:28:50 ----A---- C:\Windows\system32\comctl32.dll
2012-05-23 18:28:50 ----A---- C:\Windows\system32\cabview.dll
2012-05-23 18:28:50 ----A---- C:\Windows\system32\autochk.exe
2012-05-23 18:28:50 ----A---- C:\Windows\system32\autofmt.exe
2012-05-23 18:28:49 ----A---- C:\Windows\SYSWOW64\tcpipcfg.dll
2012-05-23 18:28:49 ----A---- C:\Windows\SYSWOW64\srchadmin.dll
2012-05-23 18:28:49 ----A---- C:\Windows\SYSWOW64\schtasks.exe
2012-05-23 18:28:49 ----A---- C:\Windows\SYSWOW64\powercpl.dll
2012-05-23 18:28:49 ----A---- C:\Windows\SYSWOW64\framedyn.dll
2012-05-23 18:28:49 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2012-05-23 18:28:49 ----A---- C:\Windows\system32\wpd_ci.dll
2012-05-23 18:28:49 ----A---- C:\Windows\system32\shsetup.dll
2012-05-23 18:28:49 ----A---- C:\Windows\system32\nshipsec.dll
2012-05-23 18:28:49 ----A---- C:\Windows\system32\fms.dll
2012-05-23 18:28:49 ----A---- C:\Windows\system32\bcdsrv.dll
2012-05-23 18:28:49 ----A---- C:\Windows\system32\autoconv.exe
2012-05-23 18:28:49 ----A---- C:\Windows\system32\audiodg.exe
2012-05-23 18:28:48 ----A---- C:\Windows\SYSWOW64\wcncsvc.dll
2012-05-23 18:28:48 ----A---- C:\Windows\SYSWOW64\QAGENT.DLL
2012-05-23 18:28:48 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2012-05-23 18:28:48 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2012-05-23 18:28:48 ----A---- C:\Windows\SYSWOW64\AuxiliaryDisplayCpl.dll
2012-05-23 18:28:48 ----A---- C:\Windows\system32\wwanconn.dll
2012-05-23 18:28:48 ----A---- C:\Windows\system32\wlanui.dll
2012-05-23 18:28:48 ----A---- C:\Windows\system32\SmiEngine.dll
2012-05-23 18:28:48 ----A---- C:\Windows\system32\sdclt.exe
2012-05-23 18:28:48 ----A---- C:\Windows\system32\rdpsign.exe
2012-05-23 18:28:48 ----A---- C:\Windows\system32\prntvpt.dll
2012-05-23 18:28:48 ----A---- C:\Windows\system32\mscorier.dll
2012-05-23 18:28:48 ----A---- C:\Windows\system32\fontext.dll
2012-05-23 18:28:48 ----A---- C:\Windows\system32\drivers\wanarp.sys
2012-05-23 18:28:48 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2012-05-23 18:28:48 ----A---- C:\Windows\system32\drivers\scsiport.sys
2012-05-23 18:28:48 ----A---- C:\Windows\system32\dps.dll
2012-05-23 18:28:47 ----A---- C:\Windows\SYSWOW64\wdc.dll
2012-05-23 18:28:47 ----A---- C:\Windows\SYSWOW64\netid.dll
2012-05-23 18:28:47 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2012-05-23 18:28:47 ----A---- C:\Windows\system32\qedit.dll
2012-05-23 18:28:47 ----A---- C:\Windows\system32\mprddm.dll
2012-05-23 18:28:47 ----A---- C:\Windows\system32\mblctr.exe
2012-05-23 18:28:47 ----A---- C:\Windows\system32\drivers\hidclass.sys
2012-05-23 18:28:47 ----A---- C:\Windows\system32\Display.dll
2012-05-23 18:28:47 ----A---- C:\Windows\system32\credssp.dll
2012-05-23 18:28:47 ----A---- C:\Windows\system32\batmeter.dll
2012-05-23 18:28:47 ----A---- C:\Windows\system32\AxInstSv.dll
2012-05-23 18:28:46 ----A---- C:\Windows\SYSWOW64\WMNetMgr.dll
2012-05-23 18:28:46 ----A---- C:\Windows\SYSWOW64\wlanpref.dll
2012-05-23 18:28:46 ----A---- C:\Windows\SYSWOW64\Vault.dll
2012-05-23 18:28:46 ----A---- C:\Windows\SYSWOW64\untfs.dll
2012-05-23 18:28:46 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2012-05-23 18:28:46 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2012-05-23 18:28:46 ----A---- C:\Windows\SYSWOW64\RpcRtRemote.dll
2012-05-23 18:28:46 ----A---- C:\Windows\SYSWOW64\rastls.dll
2012-05-23 18:28:46 ----A---- C:\Windows\SYSWOW64\nci.dll
2012-05-23 18:28:46 ----A---- C:\Windows\system32\wmpsrcwp.dll
2012-05-23 18:28:46 ----A---- C:\Windows\system32\usercpl.dll
2012-05-23 18:28:46 ----A---- C:\Windows\system32\rtutils.dll
2012-05-23 18:28:46 ----A---- C:\Windows\system32\DiagCpl.dll
2012-05-23 18:28:45 ----A---- C:\Windows\SYSWOW64\Robocopy.exe
2012-05-23 18:28:45 ----A---- C:\Windows\system32\provsvc.dll
2012-05-23 18:28:45 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2012-05-23 18:28:45 ----A---- C:\Windows\system32\bootres.dll
2012-05-23 18:28:44 ----A---- C:\Windows\SYSWOW64\taskmgr.exe
2012-05-23 18:28:44 ----A---- C:\Windows\SYSWOW64\mtxclu.dll
2012-05-23 18:28:44 ----A---- C:\Windows\SYSWOW64\DxpTaskSync.dll
2012-05-23 18:28:44 ----A---- C:\Windows\SYSWOW64\Display.dll
2012-05-23 18:28:44 ----A---- C:\Windows\system32\wpccpl.dll
2012-05-23 18:28:44 ----A---- C:\Windows\system32\sppsvc.exe
2012-05-23 18:28:44 ----A---- C:\Windows\system32\SndVolSSO.dll
2012-05-23 18:28:44 ----A---- C:\Windows\system32\rasppp.dll
2012-05-23 18:28:44 ----A---- C:\Windows\system32\drivers\winhv.sys
2012-05-23 18:28:44 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2012-05-23 18:28:44 ----A---- C:\Windows\system32\dot3cfg.dll
2012-05-23 18:28:43 ----A---- C:\Windows\SYSWOW64\XpsRasterService.dll
2012-05-23 18:28:43 ----A---- C:\Windows\SYSWOW64\userinit.exe
2012-05-23 18:28:43 ----A---- C:\Windows\SYSWOW64\termmgr.dll
2012-05-23 18:28:43 ----A---- C:\Windows\SYSWOW64\puiobj.dll
2012-05-23 18:28:43 ----A---- C:\Windows\system32\taskmgr.exe
2012-05-23 18:28:43 ----A---- C:\Windows\system32\shdocvw.dll
2012-05-23 18:28:43 ----A---- C:\Windows\system32\prnfldr.dll
2012-05-23 18:28:43 ----A---- C:\Windows\system32\hbaapi.dll
2012-05-23 18:28:43 ----A---- C:\Windows\system32\dxdiagn.dll
2012-05-23 18:28:43 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2012-05-23 18:28:42 ----A---- C:\Windows\SYSWOW64\wiadefui.dll
2012-05-23 18:28:42 ----A---- C:\Windows\SYSWOW64\sppcomapi.dll
2012-05-23 18:28:42 ----A---- C:\Windows\SYSWOW64\shsetup.dll
2012-05-23 18:28:42 ----A---- C:\Windows\SYSWOW64\rasppp.dll
2012-05-23 18:28:42 ----A---- C:\Windows\SYSWOW64\logoncli.dll
2012-05-23 18:28:42 ----A---- C:\Windows\SYSWOW64\eudcedit.exe
2012-05-23 18:28:42 ----A---- C:\Windows\SYSWOW64\cabview.dll
2012-05-23 18:28:42 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2012-05-23 18:28:42 ----A---- C:\Windows\system32\untfs.dll
2012-05-23 18:28:42 ----A---- C:\Windows\system32\proquota.exe
2012-05-23 18:28:42 ----A---- C:\Windows\system32\pdh.dll
2012-05-23 18:28:42 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2012-05-23 18:28:42 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2012-05-23 18:28:42 ----A---- C:\Windows\system32\drivers\ataport.sys
2012-05-23 18:28:41 ----A---- C:\Windows\SYSWOW64\themecpl.dll
2012-05-23 18:28:41 ----A---- C:\Windows\SYSWOW64\SensorsCpl.dll
2012-05-23 18:28:41 ----A---- C:\Windows\SYSWOW64\FirewallControlPanel.dll
2012-05-23 18:28:41 ----A---- C:\Windows\system32\userinit.exe
2012-05-23 18:28:41 ----A---- C:\Windows\system32\accessibilitycpl.dll
2012-05-23 18:28:40 ----A---- C:\Windows\SYSWOW64\PhotoScreensaver.scr
2012-05-23 18:28:40 ----A---- C:\Windows\SYSWOW64\hgcpl.dll
2012-05-23 18:28:40 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2012-05-23 18:28:40 ----A---- C:\Windows\SYSWOW64\dnscmmc.dll
2012-05-23 18:28:40 ----A---- C:\Windows\system32\zipfldr.dll
2012-05-23 18:28:40 ----A---- C:\Windows\system32\slui.exe
2012-05-23 18:28:40 ----A---- C:\Windows\system32\msieftp.dll
2012-05-23 18:28:40 ----A---- C:\Windows\system32\drivers\storvsc.sys
2012-05-23 18:28:40 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2012-05-23 18:28:39 ----A---- C:\Windows\SYSWOW64\tapisrv.dll
2012-05-23 18:28:39 ----A---- C:\Windows\SYSWOW64\scecli.dll
2012-05-23 18:28:39 ----A---- C:\Windows\SYSWOW64\mscories.dll
2012-05-23 18:28:39 ----A---- C:\Windows\SYSWOW64\mscms.dll
2012-05-23 18:28:39 ----A---- C:\Windows\SYSWOW64\localsec.dll
2012-05-23 18:28:39 ----A---- C:\Windows\SYSWOW64\fontext.dll
2012-05-23 18:28:39 ----A---- C:\Windows\system32\sud.dll
2012-05-23 18:28:39 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2012-05-23 18:28:39 ----A---- C:\Windows\system32\DeviceCenter.dll
2012-05-23 18:28:38 ----A---- C:\Windows\SYSWOW64\wlanui.dll
2012-05-23 18:28:38 ----A---- C:\Windows\SYSWOW64\usercpl.dll
2012-05-23 18:28:38 ----A---- C:\Windows\SYSWOW64\SndVolSSO.dll
2012-05-23 18:28:38 ----A---- C:\Windows\SYSWOW64\qedit.dll
2012-05-23 18:28:38 ----A---- C:\Windows\SYSWOW64\PerfCenterCPL.dll
2012-05-23 18:28:38 ----A---- C:\Windows\SYSWOW64\mprddm.dll
2012-05-23 18:28:38 ----A---- C:\Windows\SYSWOW64\iasacct.dll
2012-05-23 18:28:38 ----A---- C:\Windows\system32\twext.dll
2012-05-23 18:28:38 ----A---- C:\Windows\system32\taskbarcpl.dll
2012-05-23 18:28:38 ----A---- C:\Windows\system32\srcore.dll
2012-05-23 18:28:38 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2012-05-23 18:28:38 ----A---- C:\Windows\system32\networkmap.dll
2012-05-23 18:28:38 ----A---- C:\Windows\system32\dot3svc.dll
2012-05-23 18:28:38 ----A---- C:\Windows\system32\cryptui.dll
2012-05-23 18:28:38 ----A---- C:\Windows\system32\ActionCenter.dll
2012-05-23 18:28:37 ----A---- C:\Windows\SYSWOW64\w32tm.exe
2012-05-23 18:28:37 ----A---- C:\Windows\SYSWOW64\VAN.dll
2012-05-23 18:28:37 ----A---- C:\Windows\SYSWOW64\SndVol.exe
2012-05-23 18:28:37 ----A---- C:\Windows\SYSWOW64\prntvpt.dll
2012-05-23 18:28:37 ----A---- C:\Windows\SYSWOW64\netcenter.dll
2012-05-23 18:28:37 ----A---- C:\Windows\SYSWOW64\batmeter.dll
2012-05-23 18:28:37 ----A---- C:\Windows\system32\uxlib.dll
2012-05-23 18:28:37 ----A---- C:\Windows\system32\recovery.dll
2012-05-23 18:28:37 ----A---- C:\Windows\system32\OobeFldr.dll
2012-05-23 18:28:37 ----A---- C:\Windows\system32\bcdedit.exe
2012-05-23 18:28:37 ----A---- C:\Windows\system32\azroleui.dll
2012-05-23 18:28:36 ----A---- C:\Windows\SYSWOW64\zipfldr.dll
2012-05-23 18:28:36 ----A---- C:\Windows\SYSWOW64\spwizeng.dll
2012-05-23 18:28:36 ----A---- C:\Windows\SYSWOW64\fdeploy.dll
2012-05-23 18:28:36 ----A---- C:\Windows\SYSWOW64\azroleui.dll
2012-05-23 18:28:36 ----A---- C:\Windows\SYSWOW64\accessibilitycpl.dll
2012-05-23 18:28:36 ----A---- C:\Windows\system32\tzutil.exe
2012-05-23 18:28:36 ----A---- C:\Windows\system32\syncui.dll
2012-05-23 18:28:36 ----A---- C:\Windows\system32\sisbkup.dll
2012-05-23 18:28:36 ----A---- C:\Windows\system32\sdcpl.dll
2012-05-23 18:28:36 ----A---- C:\Windows\system32\recdisc.exe
2012-05-23 18:28:36 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2012-05-23 18:28:36 ----A---- C:\Windows\system32\isoburn.exe
2012-05-23 18:28:36 ----A---- C:\Windows\system32\httpapi.dll
2012-05-23 18:28:36 ----A---- C:\Windows\system32\efscore.dll
2012-05-23 18:28:36 ----A---- C:\Windows\system32\dsuiext.dll
2012-05-23 18:28:36 ----A---- C:\Windows\system32\cca.dll
2012-05-23 18:28:36 ----A---- C:\Windows\system32\asycfilt.dll
2012-05-23 18:28:35 ----A---- C:\Windows\SYSWOW64\netjoin.dll
2012-05-23 18:28:35 ----A---- C:\Windows\SYSWOW64\MSAC3ENC.DLL
2012-05-23 18:28:35 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2012-05-23 18:28:35 ----A---- C:\Windows\SYSWOW64\adsldp.dll
2012-05-23 18:28:35 ----A---- C:\Windows\system32\systemcpl.dll
2012-05-23 18:28:35 ----A---- C:\Windows\system32\sysclass.dll
2012-05-23 18:28:35 ----A---- C:\Windows\system32\shwebsvc.dll
2012-05-23 18:28:35 ----A---- C:\Windows\system32\netplwiz.dll
2012-05-23 18:28:35 ----A---- C:\Windows\system32\ncryptui.dll
2012-05-23 18:28:35 ----A---- C:\Windows\system32\fvecpl.dll
2012-05-23 18:28:35 ----A---- C:\Windows\system32\drivers\rdpdr.sys
2012-05-23 18:28:35 ----A---- C:\Windows\system32\drivers\mpio.sys
2012-05-23 18:28:35 ----A---- C:\Windows\system32\certcli.dll
2012-05-23 18:28:35 ----A---- C:\Windows\system32\autoplay.dll
2012-05-23 18:28:35 ----A---- C:\Windows\system32\appinfo.dll
2012-05-23 18:28:34 ----A---- C:\Windows\SYSWOW64\wusa.exe
2012-05-23 18:28:34 ----A---- C:\Windows\SYSWOW64\networkmap.dll
2012-05-23 18:28:34 ----A---- C:\Windows\SYSWOW64\MCEWMDRMNDBootstrap.dll
2012-05-23 18:28:34 ----A---- C:\Windows\SYSWOW64\Faultrep.dll
2012-05-23 18:28:34 ----A---- C:\Windows\system32\wlanmsm.dll
2012-05-23 18:28:34 ----A---- C:\Windows\system32\sdrsvc.dll
2012-05-23 18:28:34 ----A---- C:\Windows\system32\msvidc32.dll
2012-05-23 18:28:34 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2012-05-23 18:28:34 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2012-05-23 18:28:32 ----A---- C:\Windows\SYSWOW64\prnfldr.dll
2012-05-23 18:28:32 ----A---- C:\Windows\SYSWOW64\OnLineIDCpl.dll
2012-05-23 18:28:32 ----A---- C:\Windows\system32\spwizeng.dll
2012-05-23 18:28:31 ----A---- C:\Windows\SYSWOW64\sud.dll
2012-05-23 18:28:31 ----A---- C:\Windows\SYSWOW64\photowiz.dll
2012-05-23 18:28:31 ----A---- C:\Windows\SYSWOW64\msieftp.dll

Re: Preventivky

Napsal: 12 čer 2012 16:00
od Rolandman
2012-05-23 18:28:31 ----A---- C:\Windows\SYSWOW64\MediaMetadataHandler.dll
2012-05-23 18:28:31 ----A---- C:\Windows\SYSWOW64\credssp.dll
2012-05-23 18:28:31 ----A---- C:\Windows\SYSWOW64\ActionCenter.dll
2012-05-23 18:28:31 ----A---- C:\Windows\system32\vdsutil.dll
2012-05-23 18:28:31 ----A---- C:\Windows\system32\termmgr.dll
2012-05-23 18:28:31 ----A---- C:\Windows\system32\MFPlay.dll
2012-05-23 18:28:30 ----A---- C:\Windows\SYSWOW64\iprtrmgr.dll
2012-05-23 18:28:30 ----A---- C:\Windows\SYSWOW64\iasrad.dll
2012-05-23 18:28:30 ----A---- C:\Windows\SYSWOW64\ftp.exe
2012-05-23 18:28:30 ----A---- C:\Windows\SYSWOW64\dot3cfg.dll
2012-05-23 18:28:30 ----A---- C:\Windows\SYSWOW64\defaultlocationcpl.dll
2012-05-23 18:28:30 ----A---- C:\Windows\system32\tsgqec.dll
2012-05-23 18:28:30 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2012-05-23 18:28:30 ----A---- C:\Windows\system32\sethc.exe
2012-05-23 18:28:30 ----A---- C:\Windows\system32\rstrui.exe
2012-05-23 18:28:30 ----A---- C:\Windows\system32\ReAgent.dll
2012-05-23 18:28:30 ----A---- C:\Windows\system32\ntlanman.dll
2012-05-23 18:28:30 ----A---- C:\Windows\system32\msscp.dll
2012-05-23 18:28:29 ----A---- C:\Windows\SYSWOW64\sisbkup.dll
2012-05-23 18:28:29 ----A---- C:\Windows\SYSWOW64\shwebsvc.dll
2012-05-23 18:28:29 ----A---- C:\Windows\SYSWOW64\ifsutil.dll
2012-05-23 18:28:29 ----A---- C:\Windows\SYSWOW64\efscore.dll
2012-05-23 18:28:29 ----A---- C:\Windows\SYSWOW64\ActionCenterCPL.dll
2012-05-23 18:28:29 ----A---- C:\Windows\system32\wwanprotdim.dll
2012-05-23 18:28:29 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2012-05-23 18:28:29 ----A---- C:\Windows\system32\ssText3d.scr
2012-05-23 18:28:29 ----A---- C:\Windows\system32\sqlcese30.dll
2012-05-23 18:28:29 ----A---- C:\Windows\system32\rdpd3d.dll
2012-05-23 18:28:29 ----A---- C:\Windows\system32\iTVData.dll
2012-05-23 18:28:29 ----A---- C:\Windows\system32\iprtrmgr.dll
2012-05-23 18:28:29 ----A---- C:\Windows\system32\drivers\vmstorfl.sys
2012-05-23 18:28:29 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2012-05-23 18:28:28 ----A---- C:\Windows\SYSWOW64\wmpmde.dll
2012-05-23 18:28:28 ----A---- C:\Windows\SYSWOW64\syncui.dll
2012-05-23 18:28:28 ----A---- C:\Windows\SYSWOW64\rtutils.dll
2012-05-23 18:28:28 ----A---- C:\Windows\SYSWOW64\ntlanman.dll
2012-05-23 18:28:28 ----A---- C:\Windows\SYSWOW64\dskquoui.dll
2012-05-23 18:28:28 ----A---- C:\Windows\SYSWOW64\DeviceCenter.dll
2012-05-23 18:28:28 ----A---- C:\Windows\SYSWOW64\autoplay.dll
2012-05-23 18:28:28 ----A---- C:\Windows\system32\wmdrmsdk.dll
2012-05-23 18:28:28 ----A---- C:\Windows\system32\srvcli.dll
2012-05-23 18:28:28 ----A---- C:\Windows\system32\slwga.dll
2012-05-23 18:28:28 ----A---- C:\Windows\system32\msiexec.exe
2012-05-23 18:28:28 ----A---- C:\Windows\system32\iyuv_32.dll
2012-05-23 18:28:28 ----A---- C:\Windows\system32\drmmgrtn.dll
2012-05-23 18:28:27 ----A---- C:\Windows\SYSWOW64\systemcpl.dll
2012-05-23 18:28:27 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2012-05-23 18:28:27 ----A---- C:\Windows\SYSWOW64\OobeFldr.dll
2012-05-23 18:28:27 ----A---- C:\Windows\SYSWOW64\ntprint.dll
2012-05-23 18:28:27 ----A---- C:\Windows\system32\wavemsp.dll
2012-05-23 18:28:27 ----A---- C:\Windows\system32\ntprint.dll
2012-05-23 18:28:27 ----A---- C:\Windows\system32\nslookup.exe
2012-05-23 18:28:27 ----A---- C:\Windows\system32\NAPHLPR.DLL
2012-05-23 18:28:27 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2012-05-23 18:28:27 ----A---- C:\Windows\system32\acppage.dll
2012-05-23 18:28:26 ----A---- C:\Windows\SYSWOW64\wmpsrcwp.dll
2012-05-23 18:28:26 ----A---- C:\Windows\SYSWOW64\sethc.exe
2012-05-23 18:28:26 ----A---- C:\Windows\SYSWOW64\riched20.dll
2012-05-23 18:28:26 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2012-05-23 18:28:26 ----A---- C:\Windows\SYSWOW64\netplwiz.dll
2012-05-23 18:28:26 ----A---- C:\Windows\SYSWOW64\NAPHLPR.DLL
2012-05-23 18:28:26 ----A---- C:\Windows\SYSWOW64\migisol.dll
2012-05-23 18:28:26 ----A---- C:\Windows\SYSWOW64\fms.dll
2012-05-23 18:28:26 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2012-05-23 18:28:26 ----A---- C:\Windows\SYSWOW64\activeds.dll
2012-05-23 18:28:26 ----A---- C:\Windows\system32\TSpkg.dll
2012-05-23 18:28:26 ----A---- C:\Windows\system32\srrstr.dll
2012-05-23 18:28:26 ----A---- C:\Windows\system32\sppnp.dll
2012-05-23 18:28:26 ----A---- C:\Windows\system32\certprop.dll
2012-05-23 18:28:26 ----A---- C:\Windows\system32\bcdboot.exe
2012-05-23 18:28:25 ----A---- C:\Windows\SYSWOW64\httpapi.dll
2012-05-23 18:28:25 ----A---- C:\Windows\SYSWOW64\dpx.dll
2012-05-23 18:28:25 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2012-05-23 18:28:25 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2012-05-23 18:28:25 ----A---- C:\Windows\system32\wkscli.dll
2012-05-23 18:28:25 ----A---- C:\Windows\system32\remotepg.dll
2012-05-23 18:28:25 ----A---- C:\Windows\system32\PresentationSettings.exe
2012-05-23 18:28:25 ----A---- C:\Windows\system32\networkexplorer.dll
2012-05-23 18:28:25 ----A---- C:\Windows\system32\cabinet.dll
2012-05-23 18:28:24 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2012-05-23 18:28:24 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll
2012-05-23 18:28:24 ----A---- C:\Windows\SYSWOW64\wavemsp.dll
2012-05-23 18:28:24 ----A---- C:\Windows\SYSWOW64\ReAgent.dll
2012-05-23 18:28:24 ----A---- C:\Windows\SYSWOW64\provsvc.dll
2012-05-23 18:28:24 ----A---- C:\Windows\SYSWOW64\nshipsec.dll
2012-05-23 18:28:24 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2012-05-23 18:28:24 ----A---- C:\Windows\SYSWOW64\msftedit.dll
2012-05-23 18:28:24 ----A---- C:\Windows\SYSWOW64\isoburn.exe
2012-05-23 18:28:24 ----A---- C:\Windows\SYSWOW64\dot3ui.dll
2012-05-23 18:28:24 ----A---- C:\Windows\system32\wuwebv.dll
2012-05-23 18:28:24 ----A---- C:\Windows\system32\wsnmp32.dll
2012-05-23 18:28:24 ----A---- C:\Windows\system32\wmpdxm.dll
2012-05-23 18:28:24 ----A---- C:\Windows\system32\WinSCard.dll
2012-05-23 18:28:24 ----A---- C:\Windows\system32\net1.exe
2012-05-23 18:28:24 ----A---- C:\Windows\system32\ftp.exe
2012-05-23 18:28:24 ----A---- C:\Windows\system32\dfrgui.exe
2012-05-23 18:28:24 ----A---- C:\Windows\system32\cdosys.dll
2012-05-23 18:28:23 ----A---- C:\Windows\SYSWOW64\wvc.dll
2012-05-23 18:28:23 ----A---- C:\Windows\SYSWOW64\wtsapi32.dll
2012-05-23 18:28:23 ----A---- C:\Windows\SYSWOW64\wimgapi.dll
2012-05-23 18:28:23 ----A---- C:\Windows\SYSWOW64\tzutil.exe
2012-05-23 18:28:23 ----A---- C:\Windows\SYSWOW64\ocsetup.exe
2012-05-23 18:28:23 ----A---- C:\Windows\SYSWOW64\dsuiext.dll
2012-05-23 18:28:23 ----A---- C:\Windows\SYSWOW64\dfrgui.exe
2012-05-23 18:28:23 ----A---- C:\Windows\SYSWOW64\AdmTmpl.dll
2012-05-23 18:28:23 ----A---- C:\Windows\system32\wvc.dll
2012-05-23 18:28:23 ----A---- C:\Windows\system32\wsqmcons.exe
2012-05-23 18:28:23 ----A---- C:\Windows\system32\wmdrmdev.dll
2012-05-23 18:28:23 ----A---- C:\Windows\system32\WerFaultSecure.exe
2012-05-23 18:28:23 ----A---- C:\Windows\system32\mfps.dll
2012-05-23 18:28:23 ----A---- C:\Windows\system32\blackbox.dll
2012-05-23 18:28:22 ----A---- C:\Windows\twain_32.dll
2012-05-23 18:28:22 ----A---- C:\Windows\SYSWOW64\twext.dll
2012-05-23 18:28:22 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2012-05-23 18:28:22 ----A---- C:\Windows\SYSWOW64\setupugc.exe
2012-05-23 18:28:22 ----A---- C:\Windows\SYSWOW64\qcap.dll
2012-05-23 18:28:22 ----A---- C:\Windows\SYSWOW64\PkgMgr.exe
2012-05-23 18:28:22 ----A---- C:\Windows\SYSWOW64\mstask.dll
2012-05-23 18:28:22 ----A---- C:\Windows\system32\WUDFPlatform.dll
2012-05-23 18:28:22 ----A---- C:\Windows\system32\unimdmat.dll
2012-05-23 18:28:22 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2012-05-23 18:28:22 ----A---- C:\Windows\system32\OpcServices.dll
2012-05-23 18:28:22 ----A---- C:\Windows\system32\msyuv.dll
2012-05-23 18:28:22 ----A---- C:\Windows\system32\msrle32.dll
2012-05-23 18:28:22 ----A---- C:\Windows\system32\mapistub.dll
2012-05-23 18:28:22 ----A---- C:\Windows\system32\mapi32.dll
2012-05-23 18:28:22 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2012-05-23 18:28:22 ----A---- C:\Windows\system32\Bubbles.scr
2012-05-23 18:28:21 ----A---- C:\Windows\SYSWOW64\qasf.dll
2012-05-23 18:28:21 ----A---- C:\Windows\system32\iscsium.dll
2012-05-23 18:28:21 ----A---- C:\Windows\system32\diskraid.exe
2012-05-23 18:28:20 ----A---- C:\Windows\SYSWOW64\uxlib.dll
2012-05-23 18:28:20 ----A---- C:\Windows\SYSWOW64\ssText3d.scr
2012-05-23 18:28:20 ----A---- C:\Windows\SYSWOW64\slwga.dll
2012-05-23 18:28:20 ----A---- C:\Windows\SYSWOW64\nslookup.exe
2012-05-23 18:28:20 ----A---- C:\Windows\SYSWOW64\msvfw32.dll
2012-05-23 18:28:20 ----A---- C:\Windows\SYSWOW64\mciavi32.dll
2012-05-23 18:28:20 ----A---- C:\Windows\SYSWOW64\audiodev.dll
2012-05-23 18:28:20 ----A---- C:\Windows\system32\tsbyuv.dll
2012-05-23 18:28:20 ----A---- C:\Windows\system32\seclogon.dll
2012-05-23 18:28:20 ----A---- C:\Windows\system32\Ribbons.scr
2012-05-23 18:28:20 ----A---- C:\Windows\system32\Mystify.scr
2012-05-23 18:28:20 ----A---- C:\Windows\system32\muifontsetup.dll
2012-05-23 18:28:20 ----A---- C:\Windows\system32\ifsutil.dll
2012-05-23 18:28:20 ----A---- C:\Windows\system32\drivers\umbus.sys
2012-05-23 18:28:19 ----A---- C:\Windows\SYSWOW64\WPDShServiceObj.dll
2012-05-23 18:28:19 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2012-05-23 18:28:19 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2012-05-23 18:28:19 ----A---- C:\Windows\SYSWOW64\msscp.dll
2012-05-23 18:28:19 ----A---- C:\Windows\SYSWOW64\DevicePairingFolder.dll
2012-05-23 18:28:19 ----A---- C:\Windows\SYSWOW64\clusapi.dll
2012-05-23 18:28:19 ----A---- C:\Windows\system32\wmpshell.dll
2012-05-23 18:28:19 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2012-05-23 18:28:19 ----A---- C:\Windows\system32\rdpencom.dll
2012-05-23 18:28:19 ----A---- C:\Windows\system32\perfmon.exe
2012-05-23 18:28:19 ----A---- C:\Windows\system32\d3d10level9.dll
2012-05-23 18:28:18 ----A---- C:\Windows\SYSWOW64\wimserv.exe
2012-05-23 18:28:18 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2012-05-23 18:28:18 ----A---- C:\Windows\SYSWOW64\remotepg.dll
2012-05-23 18:28:18 ----A---- C:\Windows\SYSWOW64\rdpencom.dll
2012-05-23 18:28:18 ----A---- C:\Windows\SYSWOW64\perfmon.exe
2012-05-23 18:28:18 ----A---- C:\Windows\SYSWOW64\diskraid.exe
2012-05-23 18:28:18 ----A---- C:\Windows\SYSWOW64\acppage.dll
2012-05-23 18:28:18 ----A---- C:\Windows\system32\umb.dll
2012-05-23 18:28:18 ----A---- C:\Windows\system32\tlscsp.dll
2012-05-23 18:28:18 ----A---- C:\Windows\system32\runonce.exe
2012-05-23 18:28:18 ----A---- C:\Windows\system32\qasf.dll
2012-05-23 18:28:18 ----A---- C:\Windows\system32\netutils.dll
2012-05-23 18:28:18 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2012-05-23 18:28:18 ----A---- C:\Windows\system32\FXSAPI.dll
2012-05-23 18:28:18 ----A---- C:\Windows\system32\dbghelp.dll
2012-05-23 18:28:18 ----A---- C:\Windows\system32\browser.dll
2012-05-23 18:28:18 ----A---- C:\Windows\system32\AzSqlExt.dll
2012-05-23 18:28:18 ----A---- C:\Windows\system32\ActionQueue.dll
2012-05-23 18:28:17 ----A---- C:\Windows\SYSWOW64\UserAccountControlSettings.dll
2012-05-23 18:28:17 ----A---- C:\Windows\SYSWOW64\raschap.dll
2012-05-23 18:28:17 ----A---- C:\Windows\SYSWOW64\QUTIL.DLL
2012-05-23 18:28:17 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2012-05-23 18:28:17 ----A---- C:\Windows\SYSWOW64\ocsetapi.dll
2012-05-23 18:28:17 ----A---- C:\Windows\SYSWOW64\networkexplorer.dll
2012-05-23 18:28:17 ----A---- C:\Windows\SYSWOW64\NAPCRYPT.DLL
2012-05-23 18:28:17 ----A---- C:\Windows\SYSWOW64\input.dll
2012-05-23 18:28:17 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2012-05-23 18:28:17 ----A---- C:\Windows\system32\wpdwcn.dll
2012-05-23 18:28:17 ----A---- C:\Windows\system32\WMADMOD.DLL
2012-05-23 18:28:17 ----A---- C:\Windows\system32\wiavideo.dll
2012-05-23 18:28:17 ----A---- C:\Windows\system32\syssetup.dll
2012-05-23 18:28:17 ----A---- C:\Windows\system32\raschap.dll
2012-05-23 18:28:17 ----A---- C:\Windows\system32\MdSched.exe
2012-05-23 18:28:17 ----A---- C:\Windows\bfsvc.exe
2012-05-23 18:28:16 ----A---- C:\Windows\SYSWOW64\wpdwcn.dll
2012-05-23 18:28:16 ----A---- C:\Windows\SYSWOW64\wmpdxm.dll
2012-05-23 18:28:16 ----A---- C:\Windows\SYSWOW64\vpnikeapi.dll
2012-05-23 18:28:16 ----A---- C:\Windows\SYSWOW64\vdsbas.dll
2012-05-23 18:28:16 ----A---- C:\Windows\SYSWOW64\runonce.exe
2012-05-23 18:28:16 ----A---- C:\Windows\SYSWOW64\onexui.dll
2012-05-23 18:28:16 ----A---- C:\Windows\SYSWOW64\logagent.exe
2012-05-23 18:28:16 ----A---- C:\Windows\SYSWOW64\iTVData.dll
2012-05-23 18:28:16 ----A---- C:\Windows\SYSWOW64\dxdiagn.dll
2012-05-23 18:28:16 ----A---- C:\Windows\system32\WMVSDECD.DLL
2012-05-23 18:28:16 ----A---- C:\Windows\system32\vdsbas.dll
2012-05-23 18:28:16 ----A---- C:\Windows\system32\PrintIsolationProxy.dll
2012-05-23 18:28:16 ----A---- C:\Windows\system32\nltest.exe
2012-05-23 18:28:16 ----A---- C:\Windows\system32\mstask.dll
2012-05-23 18:28:16 ----A---- C:\Windows\system32\Mcx2Svc.dll
2012-05-23 18:28:16 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2012-05-23 18:28:16 ----A---- C:\Windows\system32\drivers\rmcast.sys
2012-05-23 18:28:16 ----A---- C:\Windows\system32\bitsadmin.exe
2012-05-23 18:28:15 ----A---- C:\Windows\SYSWOW64\msvidc32.dll
2012-05-23 18:28:15 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2012-05-23 18:28:15 ----A---- C:\Windows\SYSWOW64\MFPlay.dll
2012-05-23 18:28:15 ----A---- C:\Windows\SYSWOW64\eapp3hst.dll
2012-05-23 18:28:15 ----A---- C:\Windows\system32\vss_ps.dll
2012-05-23 18:28:15 ----A---- C:\Windows\system32\tabcal.exe
2012-05-23 18:28:15 ----A---- C:\Windows\system32\shacct.dll
2012-05-23 18:28:15 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2012-05-23 18:28:15 ----A---- C:\Windows\system32\cscapi.dll
2012-05-23 18:28:14 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2012-05-23 18:28:14 ----A---- C:\Windows\SYSWOW64\wmpshell.dll
2012-05-23 18:28:14 ----A---- C:\Windows\SYSWOW64\wmdrmdev.dll
2012-05-23 18:28:14 ----A---- C:\Windows\SYSWOW64\unimdmat.dll
2012-05-23 18:28:14 ----A---- C:\Windows\SYSWOW64\shacct.dll
2012-05-23 18:28:14 ----A---- C:\Windows\SYSWOW64\lsmproxy.dll
2012-05-23 18:28:14 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2012-05-23 18:28:14 ----A---- C:\Windows\SYSWOW64\bitsadmin.exe
2012-05-23 18:28:14 ----A---- C:\Windows\system32\wudriver.dll
2012-05-23 18:28:14 ----A---- C:\Windows\system32\WPDSp.dll
2012-05-23 18:28:14 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2012-05-23 18:28:14 ----A---- C:\Windows\system32\wmdrmnet.dll
2012-05-23 18:28:14 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2012-05-23 18:28:14 ----A---- C:\Windows\system32\qcap.dll
2012-05-23 18:28:14 ----A---- C:\Windows\system32\msnetobj.dll
2012-05-23 18:28:14 ----A---- C:\Windows\system32\logman.exe
2012-05-23 18:28:14 ----A---- C:\Windows\system32\CscMig.dll
2012-05-23 18:28:13 ----A---- C:\Windows\SYSWOW64\WPDSp.dll
2012-05-23 18:28:13 ----A---- C:\Windows\SYSWOW64\srvcli.dll
2012-05-23 18:28:13 ----A---- C:\Windows\SYSWOW64\sqlcese30.dll
2012-05-23 18:28:13 ----A---- C:\Windows\SYSWOW64\rdpd3d.dll
2012-05-23 18:28:13 ----A---- C:\Windows\SYSWOW64\PortableDeviceSyncProvider.dll
2012-05-23 18:28:13 ----A---- C:\Windows\SYSWOW64\pdh.dll
2012-05-23 18:28:13 ----A---- C:\Windows\SYSWOW64\OpcServices.dll
2012-05-23 18:28:13 ----A---- C:\Windows\SYSWOW64\ncryptui.dll
2012-05-23 18:28:13 ----A---- C:\Windows\SYSWOW64\mprapi.dll
2012-05-23 18:28:13 ----A---- C:\Windows\SYSWOW64\logman.exe
2012-05-23 18:28:13 ----A---- C:\Windows\SYSWOW64\iscsium.dll
2012-05-23 18:28:13 ----A---- C:\Windows\SYSWOW64\cscapi.dll
2012-05-23 18:28:13 ----A---- C:\Windows\SYSWOW64\Bubbles.scr
2012-05-23 18:28:13 ----A---- C:\Windows\system32\vmictimeprovider.dll
2012-05-23 18:28:13 ----A---- C:\Windows\system32\spbcd.dll
2012-05-23 18:28:13 ----A---- C:\Windows\system32\secproc_ssp.dll
2012-05-23 18:28:13 ----A---- C:\Windows\system32\qdv.dll
2012-05-23 18:28:13 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll
2012-05-23 18:28:13 ----A---- C:\Windows\system32\PortableDeviceStatus.dll
2012-05-23 18:28:12 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2012-05-23 18:28:12 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2012-05-23 18:28:12 ----A---- C:\Windows\SYSWOW64\Ribbons.scr
2012-05-23 18:28:12 ----A---- C:\Windows\SYSWOW64\QSVRMGMT.DLL
2012-05-23 18:28:12 ----A---- C:\Windows\SYSWOW64\PortableDeviceStatus.dll
2012-05-23 18:28:12 ----A---- C:\Windows\SYSWOW64\olethk32.dll
2012-05-23 18:28:12 ----A---- C:\Windows\SYSWOW64\Mystify.scr
2012-05-23 18:28:12 ----A---- C:\Windows\SYSWOW64\mapistub.dll
2012-05-23 18:28:12 ----A---- C:\Windows\SYSWOW64\mapi32.dll
2012-05-23 18:28:12 ----A---- C:\Windows\system32\takeown.exe
2012-05-23 18:28:12 ----A---- C:\Windows\system32\PnPUnattend.exe
2012-05-23 18:28:12 ----A---- C:\Windows\system32\fphc.dll
2012-05-23 18:28:12 ----A---- C:\Windows\system32\drivers\ndisuio.sys
2012-05-23 18:28:12 ----A---- C:\Windows\system32\dot3ui.dll
2012-05-23 18:28:11 ----A---- C:\Windows\SYSWOW64\WMVSDECD.DLL
2012-05-23 18:28:11 ----A---- C:\Windows\SYSWOW64\WMADMOD.DLL
2012-05-23 18:28:11 ----A---- C:\Windows\SYSWOW64\wiavideo.dll
2012-05-23 18:28:11 ----A---- C:\Windows\SYSWOW64\utildll.dll
2012-05-23 18:28:11 ----A---- C:\Windows\SYSWOW64\takeown.exe
2012-05-23 18:28:11 ----A---- C:\Windows\SYSWOW64\iyuv_32.dll
2012-05-23 18:28:11 ----A---- C:\Windows\SYSWOW64\fphc.dll
2012-05-23 18:28:11 ----A---- C:\Windows\SYSWOW64\dot3msm.dll
2012-05-23 18:28:11 ----A---- C:\Windows\SYSWOW64\avifil32.dll
2012-05-23 18:28:11 ----A---- C:\Windows\system32\WMPhoto.dll
2012-05-23 18:28:11 ----A---- C:\Windows\system32\vfwwdm32.dll
2012-05-23 18:28:11 ----A---- C:\Windows\system32\EhStorAPI.dll
2012-05-23 18:28:11 ----A---- C:\Windows\system32\amstream.dll
2012-05-23 18:28:10 ----A---- C:\Windows\SYSWOW64\wmdrmnet.dll
2012-05-23 18:28:10 ----A---- C:\Windows\SYSWOW64\sppinst.dll
2012-05-23 18:28:10 ----A---- C:\Windows\SYSWOW64\qdv.dll
2012-05-23 18:28:10 ----A---- C:\Windows\SYSWOW64\msyuv.dll
2012-05-23 18:28:10 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2012-05-23 18:28:10 ----A---- C:\Windows\SYSWOW64\EhStorAPI.dll
2012-05-23 18:28:10 ----A---- C:\Windows\system32\WUDFx.dll
2012-05-23 18:28:10 ----A---- C:\Windows\system32\WUDFHost.exe
2012-05-23 18:28:10 ----A---- C:\Windows\system32\WavDest.dll
2012-05-23 18:28:10 ----A---- C:\Windows\system32\shimgvw.dll
2012-05-23 18:28:10 ----A---- C:\Windows\system32\QCLIPROV.DLL
2012-05-23 18:28:10 ----A---- C:\Windows\system32\nrpsrv.dll
2012-05-23 18:28:10 ----A---- C:\Windows\system32\netapi32.dll
2012-05-23 18:28:10 ----A---- C:\Windows\system32\iasrecst.dll
2012-05-23 18:28:10 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2012-05-23 18:28:10 ----A---- C:\Windows\system32\djoin.exe
2012-05-23 18:28:10 ----A---- C:\Windows\system32\cmstp.exe
2012-05-23 18:28:10 ----A---- C:\Windows\system32\CertPolEng.dll
2012-05-23 18:28:09 ----A---- C:\Windows\SYSWOW64\wsnmp32.dll
2012-05-23 18:28:09 ----A---- C:\Windows\SYSWOW64\WMSPDMOD.DLL
2012-05-23 18:28:09 ----A---- C:\Windows\SYSWOW64\vfwwdm32.dll
2012-05-23 18:28:09 ----A---- C:\Windows\SYSWOW64\setupcln.dll
2012-05-23 18:28:09 ----A---- C:\Windows\SYSWOW64\QCLIPROV.DLL
2012-05-23 18:28:09 ----A---- C:\Windows\SYSWOW64\pdhui.dll
2012-05-23 18:28:09 ----A---- C:\Windows\SYSWOW64\MuiUnattend.exe
2012-05-23 18:28:09 ----A---- C:\Windows\SYSWOW64\msrle32.dll
2012-05-23 18:28:09 ----A---- C:\Windows\SYSWOW64\cmstp.exe
2012-05-23 18:28:09 ----A---- C:\Windows\SYSWOW64\cca.dll
2012-05-23 18:28:09 ----A---- C:\Windows\system32\MultiDigiMon.exe
2012-05-23 18:28:09 ----A---- C:\Windows\system32\KMSVC.DLL
2012-05-23 18:28:09 ----A---- C:\Windows\system32\fdProxy.dll
2012-05-23 18:28:09 ----A---- C:\Windows\system32\drivers\pacer.sys
2012-05-23 18:28:08 ----A---- C:\Windows\SYSWOW64\wkscli.dll
2012-05-23 18:28:08 ----A---- C:\Windows\SYSWOW64\tsbyuv.dll
2012-05-23 18:28:08 ----A---- C:\Windows\SYSWOW64\spbcd.dll
2012-05-23 18:28:08 ----A---- C:\Windows\SYSWOW64\relog.exe
2012-05-23 18:28:08 ----A---- C:\Windows\SYSWOW64\netiougc.exe
2012-05-23 18:28:08 ----A---- C:\Windows\SYSWOW64\mydocs.dll
2012-05-23 18:28:08 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2012-05-23 18:28:08 ----A---- C:\Windows\SYSWOW64\iscsicli.exe
2012-05-23 18:28:08 ----A---- C:\Windows\SYSWOW64\iasrecst.dll
2012-05-23 18:28:08 ----A---- C:\Windows\SYSWOW64\AzSqlExt.dll
2012-05-23 18:28:08 ----A---- C:\Windows\SYSWOW64\amstream.dll
2012-05-23 18:28:08 ----A---- C:\Windows\system32\wuauclt.exe
2012-05-23 18:28:08 ----A---- C:\Windows\system32\sscore.dll
2012-05-23 18:28:08 ----A---- C:\Windows\system32\relog.exe
2012-05-23 18:28:08 ----A---- C:\Windows\system32\mydocs.dll
2012-05-23 18:28:08 ----A---- C:\Windows\system32\msdmo.dll
2012-05-23 18:28:08 ----A---- C:\Windows\system32\mobsync.exe
2012-05-23 18:28:08 ----A---- C:\Windows\system32\itircl.dll
2012-05-23 18:28:08 ----A---- C:\Windows\system32\iscsicli.exe
2012-05-23 18:28:08 ----A---- C:\Windows\system32\dot3msm.dll
2012-05-23 18:28:08 ----A---- C:\Windows\system32\diskpart.exe
2012-05-23 18:28:08 ----A---- C:\Windows\system32\BWUnpairElevated.dll
2012-05-23 18:28:08 ----A---- C:\Windows\system32\BdeHdCfg.exe
2012-05-23 18:28:07 ----A---- C:\Windows\SYSWOW64\wmpps.dll
2012-05-23 18:28:07 ----A---- C:\Windows\SYSWOW64\syssetup.dll
2012-05-23 18:28:07 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll
2012-05-23 18:28:07 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll
2012-05-23 18:28:07 ----A---- C:\Windows\SYSWOW64\resutils.dll
2012-05-23 18:28:07 ----A---- C:\Windows\SYSWOW64\rastapi.dll
2012-05-23 18:28:07 ----A---- C:\Windows\SYSWOW64\netbtugc.exe
2012-05-23 18:28:07 ----A---- C:\Windows\SYSWOW64\itircl.dll
2012-05-23 18:28:07 ----A---- C:\Windows\SYSWOW64\diskpart.exe
2012-05-23 18:28:07 ----A---- C:\Windows\SYSWOW64\CertPolEng.dll
2012-05-23 18:28:07 ----A---- C:\Windows\system32\wuapp.exe
2012-05-23 18:28:07 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2012-05-23 18:28:07 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2012-05-23 18:28:07 ----A---- C:\Windows\system32\qprocess.exe
2012-05-23 18:28:07 ----A---- C:\Windows\system32\FXSTIFF.dll
2012-05-23 18:28:07 ----A---- C:\Windows\system32\browcli.dll
2012-05-23 18:28:06 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2012-05-23 18:28:06 ----A---- C:\Windows\SYSWOW64\WerFaultSecure.exe
2012-05-23 18:28:06 ----A---- C:\Windows\SYSWOW64\tlscsp.dll
2012-05-23 18:28:06 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe
2012-05-23 18:28:06 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe
2012-05-23 18:28:06 ----A---- C:\Windows\SYSWOW64\ReAgentc.exe
2012-05-23 18:28:06 ----A---- C:\Windows\SYSWOW64\netutils.dll
2012-05-23 18:28:06 ----A---- C:\Windows\SYSWOW64\mobsync.exe
2012-05-23 18:28:06 ----A---- C:\Windows\SYSWOW64\mciqtz32.dll
2012-05-23 18:28:06 ----A---- C:\Windows\SYSWOW64\findstr.exe
2012-05-23 18:28:06 ----A---- C:\Windows\SYSWOW64\eappgnui.dll
2012-05-23 18:28:06 ----A---- C:\Windows\system32\sppc.dll
2012-05-23 18:28:06 ----A---- C:\Windows\system32\onexui.dll
2012-05-23 18:28:06 ----A---- C:\Windows\system32\mciqtz32.dll
2012-05-23 18:28:06 ----A---- C:\Windows\system32\luainstall.dll
2012-05-23 18:28:06 ----A---- C:\Windows\system32\choice.exe
2012-05-23 18:28:06 ----A---- C:\Windows\system32\chglogon.exe
2012-05-23 18:28:06 ----A---- C:\Windows\system32\findstr.exe
2012-05-23 18:28:06 ----A---- C:\Windows\system32\eappgnui.dll
2012-05-23 18:28:06 ----A---- C:\Windows\system32\drivers\tunnel.sys
2012-05-23 18:28:05 ----A---- C:\Windows\SYSWOW64\sppc.dll
2012-05-23 18:28:05 ----A---- C:\Windows\SYSWOW64\spopk.dll
2012-05-23 18:28:05 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2012-05-23 18:28:05 ----A---- C:\Windows\SYSWOW64\muifontsetup.dll
2012-05-23 18:28:05 ----A---- C:\Windows\SYSWOW64\iccvid.dll
2012-05-23 18:28:05 ----A---- C:\Windows\SYSWOW64\cabinet.dll
2012-05-23 18:28:05 ----A---- C:\Windows\system32\wdiasqmmodule.dll
2012-05-23 18:28:05 ----A---- C:\Windows\system32\spopk.dll
2012-05-23 18:28:05 ----A---- C:\Windows\system32\schedcli.dll
2012-05-23 18:28:05 ----A---- C:\Windows\system32\repair-bde.exe
2012-05-23 18:28:05 ----A---- C:\Windows\system32\qappsrv.exe
2012-05-23 18:28:05 ----A---- C:\Windows\system32\manage-bde.exe
2012-05-23 18:28:05 ----A---- C:\Windows\system32\inetmib1.dll
2012-05-23 18:28:05 ----A---- C:\Windows\system32\drivers\dfsc.sys
2012-05-23 18:28:04 ----A---- C:\Windows\SYSWOW64\unlodctr.exe
2012-05-23 18:28:04 ----A---- C:\Windows\SYSWOW64\shimgvw.dll
2012-05-23 18:28:04 ----A---- C:\Windows\SYSWOW64\rdprefdrvapi.dll
2012-05-23 18:28:04 ----A---- C:\Windows\SYSWOW64\msdmo.dll
2012-05-23 18:28:04 ----A---- C:\Windows\SYSWOW64\luainstall.dll
2012-05-23 18:28:04 ----A---- C:\Windows\SYSWOW64\inetmib1.dll
2012-05-23 18:28:04 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2012-05-23 18:28:04 ----A---- C:\Windows\system32\vmstorfltres.dll
2012-05-23 18:28:04 ----A---- C:\Windows\system32\vmicres.dll
2012-05-23 18:28:04 ----A---- C:\Windows\system32\tskill.exe
2012-05-23 18:28:04 ----A---- C:\Windows\system32\tsdiscon.exe
2012-05-23 18:28:04 ----A---- C:\Windows\system32\tscon.exe
2012-05-23 18:28:04 ----A---- C:\Windows\system32\rwinsta.exe
2012-05-23 18:28:04 ----A---- C:\Windows\system32\RDPENCDD.dll
2012-05-23 18:28:04 ----A---- C:\Windows\system32\profprov.dll
2012-05-23 18:28:04 ----A---- C:\Windows\system32\odbcconf.dll
2012-05-23 18:28:04 ----A---- C:\Windows\system32\logoff.exe
2012-05-23 18:28:04 ----A---- C:\Windows\system32\chgusr.exe
2012-05-23 18:28:04 ----A---- C:\Windows\system32\chgport.exe
2012-05-23 18:28:04 ----A---- C:\Windows\system32\fixmapi.exe
2012-05-23 18:28:03 ----A---- C:\Windows\SYSWOW64\wups.dll
2012-05-23 18:28:03 ----A---- C:\Windows\SYSWOW64\UIRibbonRes.dll
2012-05-23 18:28:03 ----A---- C:\Windows\SYSWOW64\odbcconf.dll
2012-05-23 18:28:03 ----A---- C:\Windows\SYSWOW64\browcli.dll
2012-05-23 18:28:03 ----A---- C:\Windows\system32\vmbusres.dll
2012-05-23 18:28:03 ----A---- C:\Windows\system32\UIRibbonRes.dll
2012-05-23 18:28:03 ----A---- C:\Windows\system32\TRAPI.dll
2012-05-23 18:28:03 ----A---- C:\Windows\system32\shadow.exe
2012-05-23 18:28:03 ----A---- C:\Windows\system32\FXSMON.dll
2012-05-23 18:28:03 ----A---- C:\Windows\system32\elsTrans.dll
2012-05-23 18:28:03 ----A---- C:\Windows\system32\drivers\tdi.sys
2012-05-23 18:28:02 ----A---- C:\Windows\SYSWOW64\perfts.dll
2012-05-23 18:28:02 ----A---- C:\Windows\SYSWOW64\imm32.dll
2012-05-23 18:28:02 ----A---- C:\Windows\system32\wshbth.dll
2012-05-23 18:28:02 ----A---- C:\Windows\system32\reset.exe
2012-05-23 18:28:02 ----A---- C:\Windows\system32\query.exe
2012-05-23 18:28:02 ----A---- C:\Windows\system32\napdsnap.dll
2012-05-23 18:28:02 ----A---- C:\Windows\system32\LogonUI.exe
2012-05-23 18:28:02 ----A---- C:\Windows\system32\change.exe
2012-05-23 18:28:02 ----A---- C:\Windows\system32\dsauth.dll
2012-05-23 18:28:01 ----A---- C:\Windows\SYSWOW64\elsTrans.dll
2012-05-23 18:28:01 ----A---- C:\Windows\system32\rdprefdrvapi.dll
2012-05-23 18:28:01 ----A---- C:\Windows\system32\FXSUNATD.exe
2012-05-23 18:28:00 ----A---- C:\Windows\SYSWOW64\wshbth.dll
2012-05-23 18:28:00 ----A---- C:\Windows\SYSWOW64\TRAPI.dll
2012-05-23 18:28:00 ----A---- C:\Windows\SYSWOW64\schedcli.dll
2012-05-23 18:28:00 ----A---- C:\Windows\SYSWOW64\napdsnap.dll
2012-05-23 18:28:00 ----A---- C:\Windows\SYSWOW64\dsauth.dll
2012-05-23 18:28:00 ----A---- C:\Windows\SYSWOW64\cscdll.dll
2012-05-23 18:28:00 ----A---- C:\Windows\SYSWOW64\bitsperf.dll
2012-05-23 18:28:00 ----A---- C:\Windows\system32\drivers\usbrpm.sys
2012-05-23 18:28:00 ----A---- C:\Windows\system32\drivers\acpipmi.sys
2012-05-23 18:28:00 ----A---- C:\Windows\system32\cscdll.dll
2012-05-23 18:28:00 ----A---- C:\Windows\system32\bitsperf.dll
2012-05-23 18:27:59 ----A---- C:\Windows\SYSWOW64\sscore.dll
2012-05-23 18:27:59 ----A---- C:\Windows\system32\wups2.dll
2012-05-23 18:27:59 ----A---- C:\Windows\system32\wups.dll
2012-05-23 18:27:59 ----A---- C:\Windows\system32\wsdchngr.dll
2012-05-23 18:27:59 ----A---- C:\Windows\system32\shgina.dll
2012-05-23 18:27:58 ----A---- C:\Windows\SYSWOW64\wsdchngr.dll
2012-05-23 18:27:58 ----A---- C:\Windows\SYSWOW64\shgina.dll
2012-05-23 18:27:58 ----A---- C:\Windows\SYSWOW64\riched32.dll
2012-05-23 18:27:58 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2012-05-23 18:27:57 ----A---- C:\Windows\system32\wshirda.dll
2012-05-23 18:27:57 ----A---- C:\Windows\system32\drivers\hidusb.sys
2012-05-23 18:27:57 ----A---- C:\Windows\system32\drivers\CompositeBus.sys
2012-05-23 18:27:57 ----A---- C:\Windows\system32\drivers\appid.sys
2012-05-23 18:27:56 ----A---- C:\Windows\SYSWOW64\wshirda.dll
2012-05-23 18:27:56 ----A---- C:\Windows\system32\vmbuspipe.dll
2012-05-23 18:27:56 ----A---- C:\Windows\system32\riched32.dll
2012-05-23 18:27:56 ----A---- C:\Windows\system32\rdpcfgex.dll
2012-05-23 18:27:56 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2012-05-23 18:27:55 ----A---- C:\Windows\system32\VmbusCoinstaller.dll
2012-05-23 18:27:55 ----A---- C:\Windows\system32\spwmp.dll
2012-05-23 18:27:55 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2012-05-23 18:27:55 ----A---- C:\Windows\system32\C_ISCII.DLL
2012-05-23 18:27:55 ----A---- C:\Windows\system32\browseui.dll
2012-05-23 18:27:54 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2012-05-23 18:27:54 ----A---- C:\Windows\SYSWOW64\browseui.dll
2012-05-23 18:27:54 ----A---- C:\Windows\system32\VmdCoinstall.dll
2012-05-23 18:27:54 ----A---- C:\Windows\system32\IcCoinstall.dll
2012-05-23 18:27:54 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2012-05-23 18:27:54 ----A---- C:\Windows\system32\drivers\cdrom.sys
2012-05-23 18:27:53 ----AH---- C:\Windows\system32\api-ms-win-core-ums-l1-1-0.dll
2012-05-23 18:27:53 ----A---- C:\Windows\SYSWOW64\shunimpl.dll
2012-05-23 18:27:53 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2012-05-23 18:27:53 ----A---- C:\Windows\SYSWOW64\C_ISCII.DLL
2012-05-23 18:27:53 ----A---- C:\Windows\system32\shunimpl.dll
2012-05-23 18:27:53 ----A---- C:\Windows\system32\dxmasf.dll
2012-05-23 18:27:53 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2012-05-23 18:27:53 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2012-05-23 18:27:53 ----A---- C:\Windows\system32\drivers\sffp_sd.sys
2012-05-23 18:27:53 ----A---- C:\Windows\system32\drivers\scfilter.sys
2012-05-23 18:27:53 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2012-05-23 18:27:52 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\SYSWOW64\KBDTUQ.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\SYSWOW64\KBDTUF.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\SYSWOW64\KBDSG.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\SYSWOW64\kbdlk41a.dll
2012-05-23 18:27:52 ----A---- C:\Windows\SYSWOW64\KBDGR1.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\SYSWOW64\KBDGKL.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\system32\wmploc.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\system32\KBDTUQ.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\system32\KBDTUF.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\system32\KBDSG.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\system32\KBDSF.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\system32\KBDPO.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\system32\KBDNEPR.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\system32\kbdlk41a.dll
2012-05-23 18:27:52 ----A---- C:\Windows\system32\KBDINTAM.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\system32\KBDINBEN.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\system32\KBDGR1.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\system32\KBDGKL.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDUS.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDUGHR1.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDTURME.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDTAJIK.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDSF.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDPO.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDNEPR.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDMON.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDMAORI.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDLT1.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDINTEL.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDINTAM.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDINORI.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDINMAR.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDINKAN.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDINHIN.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDINBEN.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDGEO.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDCZ1.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDBULG.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDBLR.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\system32\KBDUS.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\system32\KBDUGHR1.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\system32\KBDTURME.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\system32\KBDTAJIK.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\system32\KBDMON.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\system32\KBDMAORI.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\system32\KBDLT1.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\system32\KBDINTEL.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\system32\KBDGEO.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\system32\KBDCZ1.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\system32\KBDBULG.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\system32\KBDBLR.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\system32\KBDBASH.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\system32\drivers\vms3cap.sys
2012-05-23 18:27:50 ----A---- C:\Windows\SYSWOW64\spwizres.dll
2012-05-23 18:27:50 ----A---- C:\Windows\SYSWOW64\pifmgr.dll
2012-05-23 18:27:50 ----A---- C:\Windows\SYSWOW64\nlsbres.dll
2012-05-23 18:27:50 ----A---- C:\Windows\SYSWOW64\dpnaddr.dll
2012-05-23 18:27:50 ----A---- C:\Windows\system32\spwizres.dll
2012-05-23 18:27:50 ----A---- C:\Windows\system32\pifmgr.dll
2012-05-23 18:27:50 ----A---- C:\Windows\system32\nlsbres.dll
2012-05-23 18:27:50 ----A---- C:\Windows\system32\KBDINORI.DLL
2012-05-23 18:27:50 ----A---- C:\Windows\system32\KBDINMAR.DLL
2012-05-23 18:27:50 ----A---- C:\Windows\system32\KBDINKAN.DLL
2012-05-23 18:27:50 ----A---- C:\Windows\system32\KBDINHIN.DLL
2012-05-23 18:27:50 ----A---- C:\Windows\system32\drivers\VMBusHID.sys
2012-05-23 18:27:50 ----A---- C:\Windows\system32\dpnaddr.dll
2012-05-23 18:27:50 ----A---- C:\Windows\system32\BlbEvents.dll
2012-05-23 18:27:23 ----A---- C:\Windows\SYSWOW64\wdscore.dll
2012-05-23 18:27:23 ----A---- C:\Windows\system32\dpx.dll
2012-05-23 18:27:15 ----A---- C:\Windows\SYSWOW64\sqmapi.dll
2012-05-23 18:27:14 ----A---- C:\Windows\SYSWOW64\printmanagement.msc
2012-05-23 18:26:59 ----A---- C:\Windows\SYSWOW64\wbemcomn.dll
2012-05-23 18:26:23 ----A---- C:\Windows\system32\wbemcomn.dll
2012-05-23 18:26:21 ----A---- C:\Windows\system32\sqmapi.dll
2012-05-23 18:24:50 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-05-23 18:24:49 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2012-05-23 18:24:48 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2012-05-23 18:24:47 ----A---- C:\Windows\system32\win32k.sys
2012-05-23 18:24:45 ----A---- C:\Windows\system32\drivers\partmgr.sys
2012-05-23 18:24:38 ----A---- C:\Windows\system32\DWrite.dll
2012-05-23 18:24:37 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2012-05-23 18:12:26 ----A---- C:\Windows\system32\drivers\tcpip.sys
2012-05-22 14:06:27 ----D---- C:\ProgramData\TERA
2012-05-22 14:04:46 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2012-05-22 13:57:11 ----D---- C:\Users\Jakub\AppData\Roaming\BabylonToolbar
2012-05-22 13:57:09 ----D---- C:\Program Files (x86)\BabylonToolbar
2012-05-22 13:57:09 ----A---- C:\user.js
2012-05-22 13:57:01 ----D---- C:\Users\Jakub\AppData\Roaming\Babylon
2012-05-22 13:57:01 ----D---- C:\ProgramData\Babylon
2012-05-22 13:56:58 ----D---- C:\Users\Jakub\AppData\Roaming\YourFileDownloader
2012-05-22 13:56:58 ----D---- C:\Program Files (x86)\YourFileDownloader
2012-05-13 17:46:16 ----SHD---- C:\Windows\ftpcache
2012-05-13 17:45:01 ----A---- C:\Windows\game.ini

======List of files/folders modified in the last 1 month======

2012-06-12 16:55:23 ----D---- C:\Windows\Prefetch
2012-06-12 16:55:20 ----D---- C:\Windows\Temp
2012-06-12 16:54:09 ----D---- C:\Users\Jakub\AppData\Roaming\uTorrent
2012-06-12 16:44:16 ----D---- C:\Windows\System32
2012-06-12 16:44:16 ----D---- C:\Windows\inf
2012-06-12 16:44:16 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-06-12 16:40:00 ----D---- C:\Windows\system32\config
2012-06-11 17:11:22 ----D---- C:\Windows\system32\catroot
2012-06-11 16:11:14 ----D---- C:\Windows\SysWOW64
2012-06-11 14:44:27 ----SHD---- C:\System Volume Information
2012-06-11 06:01:25 ----SHD---- C:\Windows\Installer
2012-06-10 19:08:52 ----D---- C:\Users\Jakub\AppData\Roaming\vlc
2012-06-10 16:40:13 ----RD---- C:\Program Files
2012-06-10 16:37:24 ----D---- C:\Windows
2012-06-10 15:02:27 ----D---- C:\Users\Jakub\AppData\Roaming\DAEMON Tools Lite
2012-06-10 15:02:23 ----D---- C:\Windows\Logs
2012-06-10 14:05:03 ----RD---- C:\Program Files (x86)
2012-06-10 14:02:59 ----D---- C:\ProgramData\Electronic Arts
2012-06-10 14:02:57 ----D---- C:\ProgramData\Origin
2012-06-10 14:02:56 ----HD---- C:\ProgramData
2012-06-10 13:49:54 ----D---- C:\Program Files (x86)\Common Files
2012-06-10 13:49:06 ----D---- C:\Windows\system32\LogFiles
2012-06-10 13:48:32 ----RSD---- C:\Windows\assembly
2012-06-09 17:35:27 ----D---- C:\Windows\winsxs
2012-06-09 07:30:37 ----SD---- C:\Users\Jakub\AppData\Roaming\Microsoft
2012-06-03 18:08:24 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2012-06-02 22:37:09 ----D---- C:\Windows\system32\catroot2
2012-05-29 10:59:20 ----D---- C:\Users\Jakub\AppData\Roaming\Audacity
2012-05-28 06:12:01 ----D---- C:\Program Files\ATI Technologies
2012-05-28 06:10:36 ----D---- C:\Windows\system32\drivers
2012-05-28 06:10:35 ----D---- C:\Windows\system32\DriverStore
2012-05-25 18:42:49 ----D---- C:\Windows\rescache
2012-05-24 20:07:34 ----D---- C:\Windows\debug
2012-05-24 18:11:38 ----D---- C:\Windows\Microsoft.NET
2012-05-23 18:48:30 ----D---- C:\Program Files (x86)\Windows Sidebar
2012-05-23 18:48:30 ----D---- C:\Program Files (x86)\Windows Portable Devices
2012-05-23 18:48:30 ----D---- C:\Program Files (x86)\Windows Media Player
2012-05-23 18:48:30 ----D---- C:\Program Files (x86)\Windows Mail
2012-05-23 18:48:29 ----D---- C:\Program Files\Windows Sidebar
2012-05-23 18:48:29 ----D---- C:\Program Files\Windows Portable Devices
2012-05-23 18:48:29 ----D---- C:\Program Files\Windows Photo Viewer
2012-05-23 18:48:29 ----D---- C:\Program Files\Windows Media Player
2012-05-23 18:48:29 ----D---- C:\Program Files\Windows Mail
2012-05-23 18:48:29 ----D---- C:\Program Files\Windows Journal
2012-05-23 18:48:29 ----D---- C:\Program Files\DVD Maker
2012-05-23 18:48:29 ----D---- C:\Program Files\Common Files\System
2012-05-23 18:48:29 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2012-05-23 18:48:28 ----D---- C:\Windows\servicing
2012-05-23 18:48:28 ----D---- C:\Windows\ehome
2012-05-23 18:48:28 ----D---- C:\Program Files\Windows Defender
2012-05-23 18:48:22 ----SHD---- C:\Windows\BitLockerDiscoveryVolumeContents
2012-05-23 18:48:22 ----D---- C:\Windows\SYSWOW64\Setup
2012-05-23 18:48:22 ----D---- C:\Windows\SYSWOW64\oobe
2012-05-23 18:48:22 ----D---- C:\Windows\SYSWOW64\migration
2012-05-23 18:48:22 ----D---- C:\Windows\SYSWOW64\en-US
2012-05-23 18:48:22 ----D---- C:\Windows\SYSWOW64\da-DK
2012-05-23 18:48:22 ----D---- C:\Windows\SYSWOW64\cs
2012-05-23 18:48:22 ----D---- C:\Windows\SYSWOW64\AdvancedInstallers
2012-05-23 18:48:21 ----D---- C:\Windows\SYSWOW64\wbem
2012-05-23 18:48:21 ----D---- C:\Windows\SYSWOW64\sppui
2012-05-23 18:48:21 ----D---- C:\Windows\SYSWOW64\migwiz
2012-05-23 18:48:21 ----D---- C:\Windows\SYSWOW64\manifeststore
2012-05-23 18:48:21 ----D---- C:\Windows\SYSWOW64\es-ES
2012-05-23 18:48:21 ----D---- C:\Windows\SYSWOW64\en
2012-05-23 18:48:21 ----D---- C:\Windows\SYSWOW64\Dism
2012-05-23 18:48:21 ----D---- C:\Windows\SYSWOW64\cs-CZ
2012-05-23 18:48:13 ----D---- C:\Windows\system32\da-DK
2012-05-23 18:48:13 ----D---- C:\Windows\PolicyDefinitions
2012-05-23 18:48:12 ----D---- C:\Windows\system32\sppui
2012-05-23 18:48:12 ----D---- C:\Windows\system32\Setup
2012-05-23 18:48:12 ----D---- C:\Windows\system32\oobe
2012-05-23 18:48:12 ----D---- C:\Windows\system32\migration
2012-05-23 18:48:12 ----D---- C:\Windows\system32\manifeststore
2012-05-23 18:48:12 ----D---- C:\Windows\system32\es-ES
2012-05-23 18:48:12 ----D---- C:\Windows\system32\en-US
2012-05-23 18:48:12 ----D---- C:\Windows\system32\cs-CZ
2012-05-23 18:48:12 ----D---- C:\Windows\system32\cs
2012-05-23 18:48:12 ----D---- C:\Windows\system32\AdvancedInstallers
2012-05-23 18:48:11 ----D---- C:\Windows\system32\wbem
2012-05-23 18:48:11 ----D---- C:\Windows\system32\migwiz
2012-05-23 18:48:11 ----D---- C:\Windows\system32\drivers\UMDF
2012-05-23 18:48:11 ----D---- C:\Windows\system32\drivers\en-US
2012-05-23 18:48:11 ----D---- C:\Windows\system32\drivers\cs-CZ
2012-05-23 18:48:11 ----D---- C:\Windows\system32\Dism
2012-05-23 18:48:02 ----RSD---- C:\Windows\Fonts
2012-05-23 18:48:02 ----D---- C:\Windows\AppPatch
2012-05-23 18:48:00 ----D---- C:\Windows\system32\wdi
2012-05-23 18:47:51 ----D---- C:\Windows\system32\Boot
2012-05-23 18:45:30 ----A---- C:\Windows\SYSWOW64\msclmd.dll
2012-05-23 18:45:30 ----A---- C:\Windows\system32\msclmd.dll
2012-05-23 18:37:04 ----A---- C:\Windows\system32\MRT.exe
2012-05-22 14:03:45 ----D---- C:\Program Files (x86)\Microsoft.NET
2012-05-20 18:15:33 ----D---- C:\Users\Jakub\AppData\Roaming\dvdcss

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2011-11-28 42328]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2011-11-28 591192]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2011-11-28 304472]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2011-11-28 58712]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2011-11-21 279616]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2011-11-28 24408]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2011-11-28 66904]
R2 cpuz135;cpuz135; \??\C:\Windows\system32\drivers\cpuz135_x64.sys [2012-03-09 23816]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2012-04-06 11174400]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2012-04-06 343040]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2012-02-23 95760]
R3 L1E;NDIS Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1E62x64.sys [2009-08-23 56320]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2005-03-29 8192]
S3 GGSAFERDriver;GGSAFER Driver; \??\D:\Programy\Garena\Garena Classic\safedrv.sys []
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 20992]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-01-03 63928]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2012-04-06 236544]
R2 avast! Antivirus;avast! Antivirus; D:\Programy\avast\AvastSvc.exe [2011-11-28 44768]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2012-06-10 76888]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 2291568]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-01-30 103992]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-01-30 123960]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-06-05 160944]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2012-01-30 51272]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-01-30 141376]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-01-30 141376]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-01-30 141376]

-----------------EOF-----------------

Re: Preventivky

Napsal: 12 čer 2012 16:31
od Rudy
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Program Files (x86)\uTorrentBar
C:\Program Files (x86)\BabylonToolbar

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2EECD738-5844-4a99-B4B6-146BF802613B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
"{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}"=-
"{98889811-442D-49dd-99D7-DC866BE87DBC}"=-

:commands
[Purity]
[Emptytemp]
[Emptyflash]
[Resethosts]
a klikněte na >MoveIt!<. Před skenem vypněte Avast a po skenu restartujte PC.

Re: Preventivky

Napsal: 14 čer 2012 14:52
od Rolandman
Ok ale nevim kde to ulozilo log jestli nejaky existuje

Re: Preventivky

Napsal: 14 čer 2012 17:02
od Rudy
Dejte nový log RSIT. Z toho poznáme, zda OTM mazal.

Re: Preventivky

Napsal: 14 čer 2012 18:59
od Rolandman
Tak tady to je pane doktore

Logfile of random's system information tool 1.09 (written by random/random)
Run by Jakub at 2012-06-14 19:58:19
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 14 GB (32%) free of 45 GB
Total RAM: 4095 MB (70% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:58:21, on 14.6.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal

Running processes:
D:\Programy\avast\AvastUI.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files\trend micro\Jakub.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.babylon.com/?affID=112555 ... 248c5a342f
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - (no file)
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - D:\Programy\avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - D:\Programy\avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [avast] "D:\Programy\avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [DAEMON Tools Lite] "D:\Programy\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://D:\Programy\office\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\Programy\office\OFFICE11\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - D:\Programy\avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 6805 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
"D:\Programy\avast\AvastSvc.exe"
atieclxx
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\SysWOW64\PnkBstrA.exe
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"taskhost.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
WLIDSvcM.exe 1220
"D:\Programy\avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Windows\system32\wuauclt.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=2296.1228e990.1777340189 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll" Mozilla.Firefox.8.0 -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.jar" 2296 "\\.\pipe\gecko-crash-server-pipe.2296" plugin
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Jakub\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\Profiles\qmrvp7hg.default

prefs.js - "browser.startup.homepage" - "www.seznam.cz"
prefs.js - "keyword.URL" - "http://search.babylon.com/?affID=112555 ... c5a342f&q="

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn.me/esnsonar,version=0.70.4]
"Description"=ESN Sonar browser plugin
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=1.122.0]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\1.122.0\npesnlaunch.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_1_102.dll

C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll

C:\Program Files (x86)\Mozilla Firefox\plugins\
np-mswmp.dll
NPOFFICE.DLL
nppdf32.dll
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

C:\Program Files (x86)\Mozilla Firefox\searchplugins\
babylon.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\Profiles\qmrvp7hg.default\extensions\
fastdial@telega.phpnet.us
{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! WebRep - D:\Programy\avast\aswWebRepIE64.dll [2012-03-07 1211776]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-04-04 63912]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - D:\Programy\avast\aswWebRepIE.dll [2012-03-07 1003704]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! WebRep - D:\Programy\avast\aswWebRepIE64.dll [2012-03-07 1211776]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - D:\Programy\avast\aswWebRepIE.dll [2012-03-07 1003704]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=D:\Programy\DAEMON Tools Lite\DTLite.exe [2011-11-10 3514176]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"avast"=D:\Programy\avast\avastUI.exe [2012-03-07 4241512]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-03 843712]
"AMD AVT"=Cmd.exe /c start AMD Accelerated Video Transcoding device initialization /min C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe aml []
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2012-04-06 641664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2012-06-14 15:47:11 ----D---- C:\_OTM
2012-06-14 15:38:11 ----A---- C:\Windows\system32\drivers\aswRdr2.sys
2012-06-10 16:40:13 ----D---- C:\Program Files\trend micro
2012-06-10 16:40:12 ----D---- C:\rsit
2012-06-10 14:05:03 ----D---- C:\Program Files (x86)\Battlelog Web Plugins
2012-06-10 14:02:56 ----D---- C:\ProgramData\EA Logs
2012-06-10 13:49:11 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2012-06-10 13:49:06 ----A---- C:\Windows\SYSWOW64\PnkBstrA.exe
2012-06-10 12:58:38 ----D---- C:\Program Files (x86)\Origin Games
2012-06-10 12:58:10 ----D---- C:\Users\Jakub\AppData\Roaming\Origin
2012-06-09 23:24:20 ----D---- C:\Users\Jakub\AppData\Roaming\Skype
2012-06-09 23:24:04 ----RD---- C:\Program Files (x86)\Skype
2012-06-09 23:23:58 ----D---- C:\ProgramData\Skype
2012-06-09 17:36:01 ----D---- C:\ProgramData\Codemasters
2012-06-09 17:35:47 ----D---- C:\Program Files (x86)\OpenAL
2012-06-09 17:35:47 ----A---- C:\Windows\SYSWOW64\wrap_oal.dll
2012-06-09 17:35:47 ----A---- C:\Windows\system32\wrap_oal.dll
2012-06-09 17:35:47 ----A---- C:\Windows\system32\OpenAL32.dll
2012-06-09 17:35:12 ----A---- C:\Windows\SYSWOW64\OpenAL32.dll
2012-06-09 17:35:11 ----A---- C:\Windows\SYSWOW64\rapture3d_oal.dll
2012-06-09 17:35:11 ----A---- C:\Windows\SYSWOW64\mkl_blueripple.dll
2012-06-09 17:30:25 ----D---- C:\Windows\SYSWOW64\directx
2012-06-07 17:14:21 ----D---- C:\ProgramData\Battle.net
2012-06-03 18:11:59 ----D---- C:\Users\Jakub\AppData\Roaming\LolClient2
2012-06-03 18:11:02 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2012-06-03 18:11:02 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2012-06-03 18:11:00 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2012-06-03 15:56:36 ----D---- C:\ProgramData\PMB Files
2012-06-03 15:56:31 ----D---- C:\Program Files (x86)\Pando Networks
2012-05-28 06:12:20 ----D---- C:\ProgramData\ATI
2012-05-28 06:12:18 ----D---- C:\Program Files (x86)\AMD APP
2012-05-23 18:34:17 ----D---- C:\Windows\system32\SPReview
2012-05-23 18:33:31 ----D---- C:\Windows\system32\EventProviders
2012-05-23 18:30:03 ----A---- C:\Windows\system32\netfxperf.dll
2012-05-23 18:30:03 ----A---- C:\Windows\system32\dfshim.dll
2012-05-23 18:29:57 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2012-05-23 18:29:54 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2012-05-23 18:29:54 ----A---- C:\Windows\system32\mstscax.dll
2012-05-23 18:29:54 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2012-05-23 18:29:54 ----A---- C:\Windows\system32\d3d10warp.dll
2012-05-23 18:29:52 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2012-05-23 18:29:49 ----A---- C:\Windows\SYSWOW64\mfc40u.dll
2012-05-23 18:29:49 ----A---- C:\Windows\SYSWOW64\mfc40.dll
2012-05-23 18:29:49 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2012-05-23 18:29:49 ----A---- C:\Windows\system32\tssrvlic.dll
2012-05-23 18:29:49 ----A---- C:\Windows\system32\sysmain.dll
2012-05-23 18:29:49 ----A---- C:\Windows\system32\RDVGHelper.exe
2012-05-23 18:29:48 ----A---- C:\Windows\SYSWOW64\pmcsnap.dll
2012-05-23 18:29:47 ----A---- C:\Windows\system32\MSVidCtl.dll
2012-05-23 18:29:46 ----A---- C:\Windows\system32\wmp.dll
2012-05-23 18:29:46 ----A---- C:\Windows\system32\mscoree.dll
2012-05-23 18:29:45 ----A---- C:\Windows\system32\secproc_isv.dll
2012-05-23 18:29:45 ----A---- C:\Windows\system32\mmcndmgr.dll
2012-05-23 18:29:45 ----A---- C:\Windows\system32\mf.dll
2012-05-23 18:29:44 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2012-05-23 18:29:44 ----A---- C:\Windows\system32\xpsservices.dll
2012-05-23 18:29:44 ----A---- C:\Windows\system32\secproc.dll
2012-05-23 18:29:44 ----A---- C:\Windows\system32\RMActivate_isv.exe
2012-05-23 18:29:44 ----A---- C:\Windows\system32\RMActivate.exe
2012-05-23 18:29:43 ----A---- C:\Windows\SYSWOW64\secproc.dll
2012-05-23 18:29:43 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2012-05-23 18:29:43 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2012-05-23 18:29:43 ----A---- C:\Windows\SYSWOW64\PushPrinterConnections.exe
2012-05-23 18:29:43 ----A---- C:\Windows\SYSWOW64\ppcsnap.dll
2012-05-23 18:29:43 ----A---- C:\Windows\system32\rpcrt4.dll
2012-05-23 18:29:42 ----A---- C:\Windows\system32\spwizui.dll
2012-05-23 18:29:42 ----A---- C:\Windows\system32\schedsvc.dll
2012-05-23 18:29:42 ----A---- C:\Windows\system32\ole32.dll
2012-05-23 18:29:41 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2012-05-23 18:29:41 ----A---- C:\Windows\system32\taskschd.dll
2012-05-23 18:29:40 ----A---- C:\Windows\SYSWOW64\mf.dll
2012-05-23 18:29:40 ----A---- C:\Windows\system32\wevtsvc.dll
2012-05-23 18:29:40 ----A---- C:\Windows\system32\vssapi.dll
2012-05-23 18:29:40 ----A---- C:\Windows\system32\RacEngn.dll
2012-05-23 18:29:40 ----A---- C:\Windows\system32\msxml3.dll
2012-05-23 18:29:40 ----A---- C:\Windows\system32\ExplorerFrame.dll
2012-05-23 18:29:40 ----A---- C:\Windows\system32\diagperf.dll
2012-05-23 18:29:39 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2012-05-23 18:29:39 ----A---- C:\Windows\system32\UIRibbon.dll
2012-05-23 18:29:39 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2012-05-23 18:29:39 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2012-05-23 18:29:39 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2012-05-23 18:29:38 ----A---- C:\Windows\SYSWOW64\wmp.dll
2012-05-23 18:29:37 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2012-05-23 18:29:37 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2012-05-23 18:29:37 ----A---- C:\Windows\system32\WsmSvc.dll
2012-05-23 18:29:37 ----A---- C:\Windows\system32\WMVCORE.DLL
2012-05-23 18:29:37 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2012-05-23 18:29:36 ----A---- C:\Windows\system32\WinSAT.exe
2012-05-23 18:29:36 ----A---- C:\Windows\system32\spreview.exe
2012-05-23 18:29:36 ----A---- C:\Windows\system32\spinstall.exe
2012-05-23 18:29:36 ----A---- C:\Windows\system32\rdpdd.dll
2012-05-23 18:29:36 ----A---- C:\Windows\system32\PresentationHost.exe
2012-05-23 18:29:36 ----A---- C:\Windows\system32\MPSSVC.dll
2012-05-23 18:29:36 ----A---- C:\Windows\system32\CertEnroll.dll
2012-05-23 18:29:35 ----A---- C:\Windows\system32\WMVDECOD.DLL
2012-05-23 18:29:35 ----A---- C:\Windows\system32\d3d9.dll
2012-05-23 18:29:34 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2012-05-23 18:29:34 ----A---- C:\Windows\SYSWOW64\AuthFWSnapin.dll
2012-05-23 18:29:34 ----A---- C:\Windows\system32\SearchFolder.dll
2012-05-23 18:29:34 ----A---- C:\Windows\system32\msxml6.dll
2012-05-23 18:29:34 ----A---- C:\Windows\system32\IKEEXT.DLL
2012-05-23 18:29:34 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2012-05-23 18:29:33 ----A---- C:\Windows\system32\VSSVC.exe
2012-05-23 18:29:33 ----A---- C:\Windows\system32\gpsvc.dll
2012-05-23 18:29:33 ----A---- C:\Windows\system32\dwmcore.dll
2012-05-23 18:29:33 ----A---- C:\Windows\system32\dbgeng.dll
2012-05-23 18:29:32 ----A---- C:\Windows\SYSWOW64\rdvgumd32.dll
2012-05-23 18:29:32 ----A---- C:\Windows\system32\drivers\ndis.sys
2012-05-23 18:29:32 ----A---- C:\Windows\system32\drivers\http.sys
2012-05-23 18:29:32 ----A---- C:\Windows\system32\crypt32.dll
2012-05-23 18:29:31 ----A---- C:\Windows\SYSWOW64\ole32.dll
2012-05-23 18:29:31 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2012-05-23 18:29:31 ----A---- C:\Windows\system32\actxprxy.dll
2012-05-23 18:29:30 ----A---- C:\Windows\system32\TSWorkspace.dll
2012-05-23 18:29:30 ----A---- C:\Windows\system32\termsrv.dll
2012-05-23 18:29:30 ----A---- C:\Windows\system32\qmgr.dll
2012-05-23 18:29:30 ----A---- C:\Windows\system32\mstsc.exe
2012-05-23 18:29:30 ----A---- C:\Windows\system32\gpprefcl.dll
2012-05-23 18:29:30 ----A---- C:\Windows\system32\audiosrv.dll
2012-05-23 18:29:29 ----A---- C:\Windows\SYSWOW64\vssapi.dll
2012-05-23 18:29:29 ----A---- C:\Windows\system32\winhttp.dll
2012-05-23 18:29:29 ----A---- C:\Windows\system32\netlogon.dll
2012-05-23 18:29:29 ----A---- C:\Windows\system32\imapi2fs.dll
2012-05-23 18:29:29 ----A---- C:\Windows\system32\d3d11.dll
2012-05-23 18:29:28 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2012-05-23 18:29:28 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2012-05-23 18:29:28 ----A---- C:\Windows\SYSWOW64\d3d9.dll
2012-05-23 18:29:28 ----A---- C:\Windows\system32\wbengine.exe
2012-05-23 18:29:28 ----A---- C:\Windows\system32\setupapi.dll
2012-05-23 18:29:28 ----A---- C:\Windows\system32\rpcss.dll
2012-05-23 18:29:28 ----A---- C:\Windows\system32\QAGENTRT.DLL
2012-05-23 18:29:28 ----A---- C:\Windows\system32\PushPrinterConnections.exe
2012-05-23 18:29:28 ----A---- C:\Windows\system32\propsys.dll
2012-05-23 18:29:28 ----A---- C:\Windows\system32\msv1_0.dll
2012-05-23 18:29:27 ----A---- C:\Windows\system32\werconcpl.dll
2012-05-23 18:29:27 ----A---- C:\Windows\system32\authui.dll
2012-05-23 18:29:26 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2012-05-23 18:29:26 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2012-05-23 18:29:26 ----A---- C:\Windows\system32\WSDApi.dll
2012-05-23 18:29:26 ----A---- C:\Windows\system32\user32.dll
2012-05-23 18:29:26 ----A---- C:\Windows\system32\taskeng.exe
2012-05-23 18:29:26 ----A---- C:\Windows\system32\odbc32.dll
2012-05-23 18:29:26 ----A---- C:\Windows\system32\drivers\netio.sys
2012-05-23 18:29:26 ----A---- C:\Windows\system32\dhcpcore.dll
2012-05-23 18:29:25 ----A---- C:\Windows\SYSWOW64\wer.dll
2012-05-23 18:29:25 ----A---- C:\Windows\SYSWOW64\certcli.dll
2012-05-23 18:29:25 ----A---- C:\Windows\system32\umrdp.dll
2012-05-23 18:29:25 ----A---- C:\Windows\system32\scavengeui.dll
2012-05-23 18:29:25 ----A---- C:\Windows\system32\LSCSHostPolicy.dll
2012-05-23 18:29:25 ----A---- C:\Windows\system32\drivers\tdx.sys
2012-05-23 18:29:25 ----A---- C:\Windows\system32\drivers\netbt.sys
2012-05-23 18:29:25 ----A---- C:\Windows\system32\certmgr.dll
2012-05-23 18:29:24 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2012-05-23 18:29:24 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2012-05-23 18:29:24 ----A---- C:\Windows\system32\tsmf.dll
2012-05-23 18:29:24 ----A---- C:\Windows\system32\shlwapi.dll
2012-05-23 18:29:24 ----A---- C:\Windows\system32\rdpshell.exe
2012-05-23 18:29:24 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2012-05-23 18:29:24 ----A---- C:\Windows\system32\netshell.dll
2012-05-23 18:29:24 ----A---- C:\Windows\system32\ncsi.dll
2012-05-23 18:29:24 ----A---- C:\Windows\system32\msdtctm.dll
2012-05-23 18:29:24 ----A---- C:\Windows\system32\msdrm.dll
2012-05-23 18:29:24 ----A---- C:\Windows\system32\localspl.dll
2012-05-23 18:29:24 ----A---- C:\Windows\system32\framedynos.dll
2012-05-23 18:29:23 ----A---- C:\Windows\SYSWOW64\tcpmonui.dll
2012-05-23 18:29:23 ----A---- C:\Windows\SYSWOW64\odbc32.dll
2012-05-23 18:29:23 ----A---- C:\Windows\system32\ws2_32.dll
2012-05-23 18:29:23 ----A---- C:\Windows\system32\wmicmiplugin.dll
2012-05-23 18:29:23 ----A---- C:\Windows\system32\winlogon.exe
2012-05-23 18:29:23 ----A---- C:\Windows\system32\usp10.dll
2012-05-23 18:29:23 ----A---- C:\Windows\system32\netcfgx.dll
2012-05-23 18:29:23 ----A---- C:\Windows\system32\appmgr.dll
2012-05-23 18:29:22 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2012-05-23 18:29:22 ----A---- C:\Windows\system32\wmpps.dll
2012-05-23 18:29:22 ----A---- C:\Windows\system32\Query.dll
2012-05-23 18:29:22 ----A---- C:\Windows\system32\nlasvc.dll
2012-05-23 18:29:22 ----A---- C:\Windows\system32\mswsock.dll
2012-05-23 18:29:22 ----A---- C:\Windows\system32\lsm.exe
2012-05-23 18:29:22 ----A---- C:\Windows\system32\dxgi.dll
2012-05-23 18:29:22 ----A---- C:\Windows\system32\drivers\csc.sys
2012-05-23 18:29:22 ----A---- C:\Windows\system32\comdlg32.dll
2012-05-23 18:29:22 ----A---- C:\Windows\system32\apphelp.dll
2012-05-23 18:29:21 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2012-05-23 18:29:21 ----A---- C:\Windows\SYSWOW64\tsmf.dll
2012-05-23 18:29:21 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2012-05-23 18:29:21 ----A---- C:\Windows\SYSWOW64\dot3api.dll
2012-05-23 18:29:21 ----A---- C:\Windows\system32\wpdshext.dll
2012-05-23 18:29:21 ----A---- C:\Windows\system32\QAGENT.DLL
2012-05-23 18:29:21 ----A---- C:\Windows\system32\drvstore.dll
2012-05-23 18:29:21 ----A---- C:\Windows\system32\BFE.DLL
2012-05-23 18:29:21 ----A---- C:\Windows\system32\azroles.dll
2012-05-23 18:29:20 ----A---- C:\Windows\SYSWOW64\netlogon.dll
2012-05-23 18:29:20 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2012-05-23 18:29:20 ----A---- C:\Windows\SYSWOW64\dbgeng.dll
2012-05-23 18:29:20 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2012-05-23 18:29:20 ----A---- C:\Windows\system32\win32spl.dll
2012-05-23 18:29:20 ----A---- C:\Windows\system32\Vault.dll
2012-05-23 18:29:20 ----A---- C:\Windows\system32\samsrv.dll
2012-05-23 18:29:20 ----A---- C:\Windows\system32\lpksetup.exe
2012-05-23 18:29:20 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2012-05-23 18:29:20 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2012-05-23 18:29:20 ----A---- C:\Windows\system32\cmd.exe
2012-05-23 18:29:19 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2012-05-23 18:29:19 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2012-05-23 18:29:19 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2012-05-23 18:29:19 ----A---- C:\Windows\system32\rdpclip.exe
2012-05-23 18:29:19 ----A---- C:\Windows\system32\cscsvc.dll
2012-05-23 18:29:18 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2012-05-23 18:29:18 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2012-05-23 18:29:18 ----A---- C:\Windows\SYSWOW64\Query.dll
2012-05-23 18:29:18 ----A---- C:\Windows\SYSWOW64\gpprefcl.dll
2012-05-23 18:29:18 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2012-05-23 18:29:18 ----A---- C:\Windows\system32\Wldap32.dll
2012-05-23 18:29:18 ----A---- C:\Windows\system32\WindowsCodecs.dll
2012-05-23 18:29:18 ----A---- C:\Windows\system32\WebClnt.dll
2012-05-23 18:29:18 ----A---- C:\Windows\system32\taskcomp.dll
2012-05-23 18:29:18 ----A---- C:\Windows\system32\sxs.dll
2012-05-23 18:29:18 ----A---- C:\Windows\system32\mfds.dll
2012-05-23 18:29:18 ----A---- C:\Windows\system32\mcbuilder.exe
2012-05-23 18:29:18 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2012-05-23 18:29:18 ----A---- C:\Windows\system32\cscobj.dll
2012-05-23 18:29:17 ----A---- C:\Windows\SYSWOW64\upnp.dll
2012-05-23 18:29:17 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2012-05-23 18:29:17 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2012-05-23 18:29:17 ----A---- C:\Windows\SYSWOW64\mmcndmgr.dll
2012-05-23 18:29:17 ----A---- C:\Windows\SYSWOW64\DShowRdpFilter.dll
2012-05-23 18:29:17 ----A---- C:\Windows\system32\wuaueng.dll
2012-05-23 18:29:17 ----A---- C:\Windows\system32\webservices.dll
2012-05-23 18:29:17 ----A---- C:\Windows\system32\SessEnv.dll
2012-05-23 18:29:17 ----A---- C:\Windows\system32\rdpendp.dll
2012-05-23 18:29:17 ----A---- C:\Windows\system32\pnidui.dll
2012-05-23 18:29:17 ----A---- C:\Windows\system32\ipsmsnap.dll
2012-05-23 18:29:17 ----A---- C:\Windows\system32\hgprint.dll
2012-05-23 18:29:16 ----A---- C:\Windows\SYSWOW64\usp10.dll
2012-05-23 18:29:16 ----A---- C:\Windows\SYSWOW64\shlwapi.dll
2012-05-23 18:29:16 ----A---- C:\Windows\SYSWOW64\SessEnv.dll
2012-05-23 18:29:16 ----A---- C:\Windows\SYSWOW64\PortableDeviceApi.dll
2012-05-23 18:29:16 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2012-05-23 18:29:16 ----A---- C:\Windows\SYSWOW64\imapi2fs.dll
2012-05-23 18:29:16 ----A---- C:\Windows\SYSWOW64\authui.dll
2012-05-23 18:29:16 ----A---- C:\Windows\system32\winsta.dll
2012-05-23 18:29:16 ----A---- C:\Windows\system32\sqlsrv32.dll
2012-05-23 18:29:16 ----A---- C:\Windows\system32\spoolsv.exe
2012-05-23 18:29:16 ----A---- C:\Windows\system32\fveapi.dll
2012-05-23 18:29:16 ----A---- C:\Windows\system32\dot3api.dll
2012-05-23 18:29:15 ----A---- C:\Windows\SYSWOW64\mcbuilder.exe
2012-05-23 18:29:15 ----A---- C:\Windows\SYSWOW64\certmgr.dll
2012-05-23 18:29:15 ----A---- C:\Windows\system32\WMNetMgr.dll
2012-05-23 18:29:15 ----A---- C:\Windows\system32\wlanpref.dll
2012-05-23 18:29:15 ----A---- C:\Windows\system32\schtasks.exe
2012-05-23 18:29:15 ----A---- C:\Windows\system32\prncache.dll
2012-05-23 18:29:15 ----A---- C:\Windows\system32\mcmde.dll
2012-05-23 18:29:15 ----A---- C:\Windows\system32\gdi32.dll
2012-05-23 18:29:15 ----A---- C:\Windows\system32\drivers\volsnap.sys
2012-05-23 18:29:15 ----A---- C:\Windows\system32\drivers\msrpc.sys
2012-05-23 18:29:14 ----A---- C:\Windows\SYSWOW64\xpsservices.dll
2012-05-23 18:29:14 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2012-05-23 18:29:14 ----A---- C:\Windows\SYSWOW64\userenv.dll
2012-05-23 18:29:14 ----A---- C:\Windows\SYSWOW64\drvstore.dll
2012-05-23 18:29:14 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2012-05-23 18:29:14 ----A---- C:\Windows\system32\wuapi.dll
2012-05-23 18:29:14 ----A---- C:\Windows\system32\vpnike.dll
2012-05-23 18:29:14 ----A---- C:\Windows\system32\userenv.dll
2012-05-23 18:29:14 ----A---- C:\Windows\system32\tspubwmi.dll
2012-05-23 18:29:14 ----A---- C:\Windows\system32\photowiz.dll
2012-05-23 18:29:14 ----A---- C:\Windows\system32\evr.dll
2012-05-23 18:29:14 ----A---- C:\Windows\system32\drivers\rdbss.sys
2012-05-23 18:29:14 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2012-05-23 18:29:11 ----A---- C:\Windows\SYSWOW64\cmd.exe
2012-05-23 18:29:11 ----A---- C:\Windows\system32\wmpmde.dll
2012-05-23 18:29:11 ----A---- C:\Windows\system32\sppobjs.dll
2012-05-23 18:29:11 ----A---- C:\Windows\system32\IPSECSVC.DLL
2012-05-23 18:29:11 ----A---- C:\Windows\system32\FXSSVC.exe
2012-05-23 18:29:11 ----A---- C:\Windows\system32\framedyn.dll
2012-05-23 18:29:11 ----A---- C:\Windows\system32\AudioSes.dll
2012-05-23 18:29:11 ----A---- C:\Windows\system32\aepdu.dll
2012-05-23 18:29:10 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2012-05-23 18:29:10 ----A---- C:\Windows\SYSWOW64\framedynos.dll
2012-05-23 18:29:10 ----A---- C:\Windows\system32\WMPEncEn.dll
2012-05-23 18:29:10 ----A---- C:\Windows\system32\wmpeffects.dll
2012-05-23 18:29:10 ----A---- C:\Windows\system32\vmicsvc.exe
2012-05-23 18:29:10 ----A---- C:\Windows\system32\tscfgwmi.dll
2012-05-23 18:29:10 ----A---- C:\Windows\system32\SyncCenter.dll
2012-05-23 18:29:10 ----A---- C:\Windows\system32\srvsvc.dll
2012-05-23 18:29:10 ----A---- C:\Windows\system32\shsvcs.dll
2012-05-23 18:29:10 ----A---- C:\Windows\system32\rdpinit.exe
2012-05-23 18:29:10 ----A---- C:\Windows\system32\mfreadwrite.dll
2012-05-23 18:29:10 ----A---- C:\Windows\system32\fde.dll
2012-05-23 18:29:10 ----A---- C:\Windows\system32\aeinv.dll
2012-05-23 18:29:09 ----A---- C:\Windows\SYSWOW64\Wldap32.dll
2012-05-23 18:29:09 ----A---- C:\Windows\SYSWOW64\user32.dll
2012-05-23 18:29:09 ----A---- C:\Windows\SYSWOW64\rdpendp.dll
2012-05-23 18:29:09 ----A---- C:\Windows\SYSWOW64\propsys.dll
2012-05-23 18:29:09 ----A---- C:\Windows\SYSWOW64\mfds.dll
2012-05-23 18:29:09 ----A---- C:\Windows\system32\WinSATAPI.dll
2012-05-23 18:29:09 ----A---- C:\Windows\system32\stobject.dll
2012-05-23 18:29:09 ----A---- C:\Windows\system32\netdiagfx.dll
2012-05-23 18:29:09 ----A---- C:\Windows\system32\localsec.dll
2012-05-23 18:29:09 ----A---- C:\Windows\system32\iphlpsvc.dll
2012-05-23 18:29:09 ----A---- C:\Windows\system32\imapi2.dll
2012-05-23 18:29:09 ----A---- C:\Windows\system32\drivers\vmbus.sys
2012-05-23 18:29:09 ----A---- C:\Windows\system32\drivers\udfs.sys
2012-05-23 18:29:09 ----A---- C:\Windows\system32\credui.dll
2012-05-23 18:29:09 ----A---- C:\Windows\system32\cdd.dll
2012-05-23 18:29:09 ----A---- C:\Windows\system32\bcryptprimitives.dll
2012-05-23 18:29:08 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2012-05-23 18:29:08 ----A---- C:\Windows\SYSWOW64\azroles.dll
2012-05-23 18:29:08 ----A---- C:\Windows\SYSWOW64\appmgr.dll
2012-05-23 18:29:08 ----A---- C:\Windows\system32\tcpipcfg.dll
2012-05-23 18:29:08 ----A---- C:\Windows\system32\spp.dll
2012-05-23 18:29:08 ----A---- C:\Windows\system32\QSHVHOST.DLL
2012-05-23 18:29:08 ----A---- C:\Windows\system32\netid.dll
2012-05-23 18:29:08 ----A---- C:\Windows\system32\inetpp.dll
2012-05-23 18:29:08 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2012-05-23 18:29:08 ----A---- C:\Windows\system32\davclnt.dll
2012-05-23 18:29:08 ----A---- C:\Windows\system32\cscui.dll
2012-05-23 18:29:08 ----A---- C:\Windows\system32\biocpl.dll
2012-05-23 18:29:07 ----A---- C:\Windows\SYSWOW64\themeui.dll
2012-05-23 18:29:07 ----A---- C:\Windows\SYSWOW64\credui.dll
2012-05-23 18:29:07 ----A---- C:\Windows\system32\scansetting.dll
2012-05-23 18:29:07 ----A---- C:\Windows\system32\profsvc.dll
2012-05-23 18:29:07 ----A---- C:\Windows\system32\printui.dll
2012-05-23 18:29:07 ----A---- C:\Windows\system32\pla.dll
2012-05-23 18:29:07 ----A---- C:\Windows\system32\mspbda.dll
2012-05-23 18:29:07 ----A---- C:\Windows\system32\msinfo32.exe
2012-05-23 18:29:07 ----A---- C:\Windows\system32\gameux.dll
2012-05-23 18:29:07 ----A---- C:\Windows\splwow64.exe
2012-05-23 18:29:06 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2012-05-23 18:29:06 ----A---- C:\Windows\SYSWOW64\spp.dll
2012-05-23 18:29:06 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2012-05-23 18:29:06 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll
2012-05-23 18:29:06 ----A---- C:\Windows\SYSWOW64\basecsp.dll
2012-05-23 18:29:06 ----A---- C:\Windows\system32\wusa.exe
2012-05-23 18:29:06 ----A---- C:\Windows\system32\wiaservc.dll
2012-05-23 18:29:06 ----A---- C:\Windows\system32\vds.exe
2012-05-23 18:29:06 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2012-05-23 18:29:06 ----A---- C:\Windows\system32\msdri.dll
2012-05-23 18:29:06 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2012-05-23 18:29:06 ----A---- C:\Windows\system32\drivers\pci.sys
2012-05-23 18:29:06 ----A---- C:\Windows\system32\cryptsvc.dll
2012-05-23 18:29:06 ----A---- C:\Windows\system32\aitagent.exe
2012-05-23 18:29:06 ----A---- C:\Windows\system32\AdmTmpl.dll
2012-05-23 18:29:05 ----A---- C:\Windows\SYSWOW64\NaturalLanguage6.dll
2012-05-23 18:29:05 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2012-05-23 18:29:05 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2012-05-23 18:29:05 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2012-05-23 18:29:05 ----A---- C:\Windows\SYSWOW64\dbghelp.dll
2012-05-23 18:29:05 ----A---- C:\Windows\system32\XpsRasterService.dll
2012-05-23 18:29:05 ----A---- C:\Windows\system32\wisptis.exe
2012-05-23 18:29:05 ----A---- C:\Windows\system32\rpchttp.dll
2012-05-23 18:29:05 ----A---- C:\Windows\system32\PkgMgr.exe
2012-05-23 18:29:05 ----A---- C:\Windows\system32\msi.dll
2012-05-23 18:29:05 ----A---- C:\Windows\system32\mscms.dll
2012-05-23 18:29:05 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2012-05-23 18:29:05 ----A---- C:\Windows\system32\drivers\rasl2tp.sys
2012-05-23 18:29:04 ----A---- C:\Windows\SYSWOW64\WinSATAPI.dll
2012-05-23 18:29:04 ----A---- C:\Windows\SYSWOW64\taskcomp.dll
2012-05-23 18:29:04 ----A---- C:\Windows\SYSWOW64\evr.dll
2012-05-23 18:29:04 ----A---- C:\Windows\SYSWOW64\calc.exe
2012-05-23 18:29:04 ----A---- C:\Windows\system32\sppwinob.dll
2012-05-23 18:29:04 ----A---- C:\Windows\system32\ocsetup.exe
2012-05-23 18:29:04 ----A---- C:\Windows\system32\ocsetapi.dll
2012-05-23 18:29:04 ----A---- C:\Windows\system32\DXP.dll
2012-05-23 18:29:04 ----A---- C:\Windows\system32\drivers\volmgr.sys
2012-05-23 18:29:04 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2012-05-23 18:29:03 ----A---- C:\Windows\SYSWOW64\sqlsrv32.dll
2012-05-23 18:29:03 ----A---- C:\Windows\system32\wpdbusenum.dll
2012-05-23 18:29:03 ----A---- C:\Windows\system32\wcncsvc.dll
2012-05-23 18:29:03 ----A---- C:\Windows\system32\upnp.dll
2012-05-23 18:29:03 ----A---- C:\Windows\system32\Robocopy.exe
2012-05-23 18:29:03 ----A---- C:\Windows\system32\mprapi.dll
2012-05-23 18:29:03 ----A---- C:\Windows\system32\eapphost.dll
2012-05-23 18:29:03 ----A---- C:\Windows\system32\eapp3hst.dll
2012-05-23 18:29:03 ----A---- C:\Windows\system32\drivers\msdsm.sys
2012-05-23 18:29:03 ----A---- C:\Windows\system32\ci.dll
2012-05-23 18:29:02 ----A---- C:\Windows\SYSWOW64\ws2_32.dll
2012-05-23 18:29:02 ----A---- C:\Windows\SYSWOW64\UIRibbon.dll
2012-05-23 18:29:02 ----A---- C:\Windows\SYSWOW64\sxs.dll
2012-05-23 18:29:02 ----A---- C:\Windows\SYSWOW64\stobject.dll
2012-05-23 18:29:02 ----A---- C:\Windows\SYSWOW64\netshell.dll
2012-05-23 18:29:02 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2012-05-23 18:29:02 ----A---- C:\Windows\system32\thumbcache.dll
2012-05-23 18:29:02 ----A---- C:\Windows\system32\t2embed.dll
2012-05-23 18:29:02 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2012-05-23 18:29:02 ----A---- C:\Windows\system32\hal.dll
2012-05-23 18:29:02 ----A---- C:\Windows\system32\DxpTaskSync.dll
2012-05-23 18:29:02 ----A---- C:\Windows\system32\drivers\HpSAMD.sys
2012-05-23 18:29:02 ----A---- C:\Windows\system32\drivers\fvevol.sys
2012-05-23 18:29:01 ----A---- C:\Windows\SYSWOW64\prncache.dll
2012-05-23 18:29:01 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2012-05-23 18:29:01 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2012-05-23 18:29:01 ----A---- C:\Windows\system32\scecli.dll
2012-05-23 18:29:01 ----A---- C:\Windows\system32\puiobj.dll
2012-05-23 18:29:01 ----A---- C:\Windows\system32\nlaapi.dll
2012-05-23 18:29:01 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL

Re: Preventivky

Napsal: 14 čer 2012 19:00
od Rolandman
2012-05-23 18:29:01 ----A---- C:\Windows\system32\msasn1.dll
2012-05-23 18:29:01 ----A---- C:\Windows\system32\iasrad.dll
2012-05-23 18:29:01 ----A---- C:\Windows\system32\dwmredir.dll
2012-05-23 18:29:01 ----A---- C:\Windows\system32\drivers\ipfltdrv.sys
2012-05-23 18:29:01 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2012-05-23 18:29:00 ----A---- C:\Windows\SYSWOW64\WSDApi.dll
2012-05-23 18:29:00 ----A---- C:\Windows\SYSWOW64\wmpeffects.dll
2012-05-23 18:29:00 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2012-05-23 18:29:00 ----A---- C:\Windows\SYSWOW64\printui.dll
2012-05-23 18:29:00 ----A---- C:\Windows\SYSWOW64\net1.exe
2012-05-23 18:29:00 ----A---- C:\Windows\SYSWOW64\msi.dll
2012-05-23 18:29:00 ----A---- C:\Windows\system32\themeui.dll
2012-05-23 18:29:00 ----A---- C:\Windows\system32\scrptadm.dll
2012-05-23 18:29:00 ----A---- C:\Windows\system32\onex.dll
2012-05-23 18:29:00 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2012-05-23 18:29:00 ----A---- C:\Windows\system32\aaclient.dll
2012-05-23 18:28:59 ----A---- C:\Windows\SYSWOW64\scansetting.dll
2012-05-23 18:28:59 ----A---- C:\Windows\system32\wdc.dll
2012-05-23 18:28:58 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2012-05-23 18:28:58 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2012-05-23 18:28:58 ----A---- C:\Windows\system32\wlangpui.dll
2012-05-23 18:28:58 ----A---- C:\Windows\system32\wiadefui.dll
2012-05-23 18:28:58 ----A---- C:\Windows\system32\VAN.dll
2012-05-23 18:28:58 ----A---- C:\Windows\system32\StructuredQuery.dll
2012-05-23 18:28:58 ----A---- C:\Windows\system32\sdengin2.dll
2012-05-23 18:28:58 ----A---- C:\Windows\system32\scesrv.dll
2012-05-23 18:28:58 ----A---- C:\Windows\system32\samcli.dll
2012-05-23 18:28:58 ----A---- C:\Windows\system32\rasmans.dll
2012-05-23 18:28:58 ----A---- C:\Windows\system32\netcenter.dll
2012-05-23 18:28:58 ----A---- C:\Windows\system32\msftedit.dll
2012-05-23 18:28:58 ----A---- C:\Windows\system32\dskquoui.dll
2012-05-23 18:28:57 ----A---- C:\Windows\SYSWOW64\WMVCORE.DLL
2012-05-23 18:28:57 ----A---- C:\Windows\SYSWOW64\wlangpui.dll
2012-05-23 18:28:57 ----A---- C:\Windows\SYSWOW64\QSHVHOST.DLL
2012-05-23 18:28:57 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2012-05-23 18:28:57 ----A---- C:\Windows\system32\wucltux.dll
2012-05-23 18:28:57 ----A---- C:\Windows\system32\wscapi.dll
2012-05-23 18:28:57 ----A---- C:\Windows\system32\SndVol.exe
2012-05-23 18:28:57 ----A---- C:\Windows\system32\regapi.dll
2012-05-23 18:28:57 ----A---- C:\Windows\system32\QUTIL.DLL
2012-05-23 18:28:57 ----A---- C:\Windows\system32\iasacct.dll
2012-05-23 18:28:57 ----A---- C:\Windows\system32\drivers\termdd.sys
2012-05-23 18:28:57 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2012-05-23 18:28:57 ----A---- C:\Windows\system32\consent.exe
2012-05-23 18:28:56 ----A---- C:\Windows\SYSWOW64\wpdshext.dll
2012-05-23 18:28:56 ----A---- C:\Windows\SYSWOW64\webservices.dll
2012-05-23 18:28:56 ----A---- C:\Windows\SYSWOW64\t2embed.dll
2012-05-23 18:28:56 ----A---- C:\Windows\SYSWOW64\SyncCenter.dll
2012-05-23 18:28:56 ----A---- C:\Windows\SYSWOW64\scrptadm.dll
2012-05-23 18:28:56 ----A---- C:\Windows\SYSWOW64\pnidui.dll
2012-05-23 18:28:56 ----A---- C:\Windows\SYSWOW64\netdiagfx.dll
2012-05-23 18:28:56 ----A---- C:\Windows\SYSWOW64\fde.dll
2012-05-23 18:28:56 ----A---- C:\Windows\system32\WUDFSvc.dll
2012-05-23 18:28:56 ----A---- C:\Windows\system32\wksprt.exe
2012-05-23 18:28:56 ----A---- C:\Windows\system32\taskhost.exe
2012-05-23 18:28:56 ----A---- C:\Windows\system32\TabSvc.dll
2012-05-23 18:28:56 ----A---- C:\Windows\system32\srchadmin.dll
2012-05-23 18:28:56 ----A---- C:\Windows\system32\setupcl.exe
2012-05-23 18:28:56 ----A---- C:\Windows\system32\rastls.dll
2012-05-23 18:28:56 ----A---- C:\Windows\system32\drivers\msahci.sys
2012-05-23 18:28:55 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2012-05-23 18:28:55 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2012-05-23 18:28:55 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2012-05-23 18:28:55 ----A---- C:\Windows\SYSWOW64\cscobj.dll
2012-05-23 18:28:55 ----A---- C:\Windows\system32\tapisrv.dll
2012-05-23 18:28:55 ----A---- C:\Windows\system32\netiohlp.dll
2012-05-23 18:28:55 ----A---- C:\Windows\system32\msconfig.exe
2012-05-23 18:28:55 ----A---- C:\Windows\system32\mimefilt.dll
2012-05-23 18:28:55 ----A---- C:\Windows\system32\ListSvc.dll
2012-05-23 18:28:55 ----A---- C:\Windows\system32\drivers\raspptp.sys
2012-05-23 18:28:55 ----A---- C:\Windows\system32\drivers\acpi.sys
2012-05-23 18:28:54 ----A---- C:\Windows\SYSWOW64\winsta.dll
2012-05-23 18:28:54 ----A---- C:\Windows\SYSWOW64\pla.dll
2012-05-23 18:28:54 ----A---- C:\Windows\SYSWOW64\MSMPEG2ENC.DLL
2012-05-23 18:28:54 ----A---- C:\Windows\SYSWOW64\msasn1.dll
2012-05-23 18:28:54 ----A---- C:\Windows\system32\lsmproxy.dll
2012-05-23 18:28:54 ----A---- C:\Windows\system32\hgcpl.dll
2012-05-23 18:28:54 ----A---- C:\Windows\system32\fdeploy.dll
2012-05-23 18:28:54 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2012-05-23 18:28:54 ----A---- C:\Windows\system32\drivers\ks.sys
2012-05-23 18:28:54 ----A---- C:\Windows\system32\clusapi.dll
2012-05-23 18:28:54 ----A---- C:\Windows\system32\basecsp.dll
2012-05-23 18:28:54 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2012-05-23 18:28:53 ----A---- C:\Windows\SYSWOW64\imapi2.dll
2012-05-23 18:28:53 ----A---- C:\Windows\SYSWOW64\DXPTaskRingtone.dll
2012-05-23 18:28:53 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2012-05-23 18:28:53 ----A---- C:\Windows\system32\riched20.dll
2012-05-23 18:28:53 ----A---- C:\Windows\system32\mtxclu.dll
2012-05-23 18:28:52 ----A---- C:\Windows\SYSWOW64\WMPEncEn.dll
2012-05-23 18:28:52 ----A---- C:\Windows\SYSWOW64\onex.dll
2012-05-23 18:28:52 ----A---- C:\Windows\SYSWOW64\gameux.dll
2012-05-23 18:28:52 ----A---- C:\Windows\system32\sharemediacpl.dll
2012-05-23 18:28:52 ----A---- C:\Windows\system32\RpcRtRemote.dll
2012-05-23 18:28:52 ----A---- C:\Windows\system32\powercpl.dll
2012-05-23 18:28:52 ----A---- C:\Windows\system32\logoncli.dll
2012-05-23 18:28:52 ----A---- C:\Windows\system32\dnscmmc.dll
2012-05-23 18:28:51 ----A---- C:\Windows\SYSWOW64\winmm.dll
2012-05-23 18:28:51 ----A---- C:\Windows\SYSWOW64\shsvcs.dll
2012-05-23 18:28:51 ----A---- C:\Windows\SYSWOW64\netiohlp.dll
2012-05-23 18:28:51 ----A---- C:\Windows\SYSWOW64\hbaapi.dll
2012-05-23 18:28:51 ----A---- C:\Windows\SYSWOW64\autochk.exe
2012-05-23 18:28:51 ----A---- C:\Windows\SYSWOW64\autofmt.exe
2012-05-23 18:28:51 ----A---- C:\Windows\system32\themecpl.dll
2012-05-23 18:28:51 ----A---- C:\Windows\system32\SensorsCpl.dll
2012-05-23 18:28:51 ----A---- C:\Windows\system32\netjoin.dll
2012-05-23 18:28:51 ----A---- C:\Windows\system32\nci.dll
2012-05-23 18:28:51 ----A---- C:\Windows\system32\Narrator.exe
2012-05-23 18:28:51 ----A---- C:\Windows\system32\Faultrep.dll
2012-05-23 18:28:51 ----A---- C:\Windows\system32\eudcedit.exe
2012-05-23 18:28:50 ----A---- C:\Windows\SYSWOW64\thumbcache.dll
2012-05-23 18:28:50 ----A---- C:\Windows\SYSWOW64\samcli.dll
2012-05-23 18:28:50 ----A---- C:\Windows\SYSWOW64\regapi.dll
2012-05-23 18:28:50 ----A---- C:\Windows\SYSWOW64\proquota.exe
2012-05-23 18:28:50 ----A---- C:\Windows\SYSWOW64\msutb.dll
2012-05-23 18:28:50 ----A---- C:\Windows\SYSWOW64\msinfo32.exe
2012-05-23 18:28:50 ----A---- C:\Windows\SYSWOW64\mimefilt.dll
2012-05-23 18:28:50 ----A---- C:\Windows\SYSWOW64\ipsmsnap.dll
2012-05-23 18:28:50 ----A---- C:\Windows\SYSWOW64\IPHLPAPI.DLL
2012-05-23 18:28:50 ----A---- C:\Windows\SYSWOW64\autoconv.exe
2012-05-23 18:28:50 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2012-05-23 18:28:50 ----A---- C:\Windows\system32\wkssvc.dll
2012-05-23 18:28:50 ----A---- C:\Windows\system32\vpnikeapi.dll
2012-05-23 18:28:50 ----A---- C:\Windows\system32\sppcomapi.dll
2012-05-23 18:28:50 ----A---- C:\Windows\system32\comctl32.dll
2012-05-23 18:28:50 ----A---- C:\Windows\system32\cabview.dll
2012-05-23 18:28:50 ----A---- C:\Windows\system32\autochk.exe
2012-05-23 18:28:50 ----A---- C:\Windows\system32\autofmt.exe
2012-05-23 18:28:49 ----A---- C:\Windows\SYSWOW64\tcpipcfg.dll
2012-05-23 18:28:49 ----A---- C:\Windows\SYSWOW64\srchadmin.dll
2012-05-23 18:28:49 ----A---- C:\Windows\SYSWOW64\schtasks.exe
2012-05-23 18:28:49 ----A---- C:\Windows\SYSWOW64\powercpl.dll
2012-05-23 18:28:49 ----A---- C:\Windows\SYSWOW64\framedyn.dll
2012-05-23 18:28:49 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2012-05-23 18:28:49 ----A---- C:\Windows\system32\wpd_ci.dll
2012-05-23 18:28:49 ----A---- C:\Windows\system32\shsetup.dll
2012-05-23 18:28:49 ----A---- C:\Windows\system32\nshipsec.dll
2012-05-23 18:28:49 ----A---- C:\Windows\system32\fms.dll
2012-05-23 18:28:49 ----A---- C:\Windows\system32\bcdsrv.dll
2012-05-23 18:28:49 ----A---- C:\Windows\system32\autoconv.exe
2012-05-23 18:28:49 ----A---- C:\Windows\system32\audiodg.exe
2012-05-23 18:28:48 ----A---- C:\Windows\SYSWOW64\wcncsvc.dll
2012-05-23 18:28:48 ----A---- C:\Windows\SYSWOW64\QAGENT.DLL
2012-05-23 18:28:48 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2012-05-23 18:28:48 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2012-05-23 18:28:48 ----A---- C:\Windows\SYSWOW64\AuxiliaryDisplayCpl.dll
2012-05-23 18:28:48 ----A---- C:\Windows\system32\wwanconn.dll
2012-05-23 18:28:48 ----A---- C:\Windows\system32\wlanui.dll
2012-05-23 18:28:48 ----A---- C:\Windows\system32\SmiEngine.dll
2012-05-23 18:28:48 ----A---- C:\Windows\system32\sdclt.exe
2012-05-23 18:28:48 ----A---- C:\Windows\system32\rdpsign.exe
2012-05-23 18:28:48 ----A---- C:\Windows\system32\prntvpt.dll
2012-05-23 18:28:48 ----A---- C:\Windows\system32\mscorier.dll
2012-05-23 18:28:48 ----A---- C:\Windows\system32\fontext.dll
2012-05-23 18:28:48 ----A---- C:\Windows\system32\drivers\wanarp.sys
2012-05-23 18:28:48 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2012-05-23 18:28:48 ----A---- C:\Windows\system32\drivers\scsiport.sys
2012-05-23 18:28:48 ----A---- C:\Windows\system32\dps.dll
2012-05-23 18:28:47 ----A---- C:\Windows\SYSWOW64\wdc.dll
2012-05-23 18:28:47 ----A---- C:\Windows\SYSWOW64\netid.dll
2012-05-23 18:28:47 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2012-05-23 18:28:47 ----A---- C:\Windows\system32\qedit.dll
2012-05-23 18:28:47 ----A---- C:\Windows\system32\mprddm.dll
2012-05-23 18:28:47 ----A---- C:\Windows\system32\mblctr.exe
2012-05-23 18:28:47 ----A---- C:\Windows\system32\drivers\hidclass.sys
2012-05-23 18:28:47 ----A---- C:\Windows\system32\Display.dll
2012-05-23 18:28:47 ----A---- C:\Windows\system32\credssp.dll
2012-05-23 18:28:47 ----A---- C:\Windows\system32\batmeter.dll
2012-05-23 18:28:47 ----A---- C:\Windows\system32\AxInstSv.dll
2012-05-23 18:28:46 ----A---- C:\Windows\SYSWOW64\WMNetMgr.dll
2012-05-23 18:28:46 ----A---- C:\Windows\SYSWOW64\wlanpref.dll
2012-05-23 18:28:46 ----A---- C:\Windows\SYSWOW64\Vault.dll
2012-05-23 18:28:46 ----A---- C:\Windows\SYSWOW64\untfs.dll
2012-05-23 18:28:46 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2012-05-23 18:28:46 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2012-05-23 18:28:46 ----A---- C:\Windows\SYSWOW64\RpcRtRemote.dll
2012-05-23 18:28:46 ----A---- C:\Windows\SYSWOW64\rastls.dll
2012-05-23 18:28:46 ----A---- C:\Windows\SYSWOW64\nci.dll
2012-05-23 18:28:46 ----A---- C:\Windows\system32\wmpsrcwp.dll
2012-05-23 18:28:46 ----A---- C:\Windows\system32\usercpl.dll
2012-05-23 18:28:46 ----A---- C:\Windows\system32\rtutils.dll
2012-05-23 18:28:46 ----A---- C:\Windows\system32\DiagCpl.dll
2012-05-23 18:28:45 ----A---- C:\Windows\SYSWOW64\Robocopy.exe
2012-05-23 18:28:45 ----A---- C:\Windows\system32\provsvc.dll
2012-05-23 18:28:45 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2012-05-23 18:28:45 ----A---- C:\Windows\system32\bootres.dll
2012-05-23 18:28:44 ----A---- C:\Windows\SYSWOW64\taskmgr.exe
2012-05-23 18:28:44 ----A---- C:\Windows\SYSWOW64\mtxclu.dll
2012-05-23 18:28:44 ----A---- C:\Windows\SYSWOW64\DxpTaskSync.dll
2012-05-23 18:28:44 ----A---- C:\Windows\SYSWOW64\Display.dll
2012-05-23 18:28:44 ----A---- C:\Windows\system32\wpccpl.dll
2012-05-23 18:28:44 ----A---- C:\Windows\system32\sppsvc.exe
2012-05-23 18:28:44 ----A---- C:\Windows\system32\SndVolSSO.dll
2012-05-23 18:28:44 ----A---- C:\Windows\system32\rasppp.dll
2012-05-23 18:28:44 ----A---- C:\Windows\system32\drivers\winhv.sys
2012-05-23 18:28:44 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2012-05-23 18:28:44 ----A---- C:\Windows\system32\dot3cfg.dll
2012-05-23 18:28:43 ----A---- C:\Windows\SYSWOW64\XpsRasterService.dll
2012-05-23 18:28:43 ----A---- C:\Windows\SYSWOW64\userinit.exe
2012-05-23 18:28:43 ----A---- C:\Windows\SYSWOW64\termmgr.dll
2012-05-23 18:28:43 ----A---- C:\Windows\SYSWOW64\puiobj.dll
2012-05-23 18:28:43 ----A---- C:\Windows\system32\taskmgr.exe
2012-05-23 18:28:43 ----A---- C:\Windows\system32\shdocvw.dll
2012-05-23 18:28:43 ----A---- C:\Windows\system32\prnfldr.dll
2012-05-23 18:28:43 ----A---- C:\Windows\system32\hbaapi.dll
2012-05-23 18:28:43 ----A---- C:\Windows\system32\dxdiagn.dll
2012-05-23 18:28:43 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2012-05-23 18:28:42 ----A---- C:\Windows\SYSWOW64\wiadefui.dll
2012-05-23 18:28:42 ----A---- C:\Windows\SYSWOW64\sppcomapi.dll
2012-05-23 18:28:42 ----A---- C:\Windows\SYSWOW64\shsetup.dll
2012-05-23 18:28:42 ----A---- C:\Windows\SYSWOW64\rasppp.dll
2012-05-23 18:28:42 ----A---- C:\Windows\SYSWOW64\logoncli.dll
2012-05-23 18:28:42 ----A---- C:\Windows\SYSWOW64\eudcedit.exe
2012-05-23 18:28:42 ----A---- C:\Windows\SYSWOW64\cabview.dll
2012-05-23 18:28:42 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2012-05-23 18:28:42 ----A---- C:\Windows\system32\untfs.dll
2012-05-23 18:28:42 ----A---- C:\Windows\system32\proquota.exe
2012-05-23 18:28:42 ----A---- C:\Windows\system32\pdh.dll
2012-05-23 18:28:42 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2012-05-23 18:28:42 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2012-05-23 18:28:42 ----A---- C:\Windows\system32\drivers\ataport.sys
2012-05-23 18:28:41 ----A---- C:\Windows\SYSWOW64\themecpl.dll
2012-05-23 18:28:41 ----A---- C:\Windows\SYSWOW64\SensorsCpl.dll
2012-05-23 18:28:41 ----A---- C:\Windows\SYSWOW64\FirewallControlPanel.dll
2012-05-23 18:28:41 ----A---- C:\Windows\system32\userinit.exe
2012-05-23 18:28:41 ----A---- C:\Windows\system32\accessibilitycpl.dll
2012-05-23 18:28:40 ----A---- C:\Windows\SYSWOW64\PhotoScreensaver.scr
2012-05-23 18:28:40 ----A---- C:\Windows\SYSWOW64\hgcpl.dll
2012-05-23 18:28:40 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2012-05-23 18:28:40 ----A---- C:\Windows\SYSWOW64\dnscmmc.dll
2012-05-23 18:28:40 ----A---- C:\Windows\system32\zipfldr.dll
2012-05-23 18:28:40 ----A---- C:\Windows\system32\slui.exe
2012-05-23 18:28:40 ----A---- C:\Windows\system32\msieftp.dll
2012-05-23 18:28:40 ----A---- C:\Windows\system32\drivers\storvsc.sys
2012-05-23 18:28:40 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2012-05-23 18:28:39 ----A---- C:\Windows\SYSWOW64\tapisrv.dll
2012-05-23 18:28:39 ----A---- C:\Windows\SYSWOW64\scecli.dll
2012-05-23 18:28:39 ----A---- C:\Windows\SYSWOW64\mscories.dll
2012-05-23 18:28:39 ----A---- C:\Windows\SYSWOW64\mscms.dll
2012-05-23 18:28:39 ----A---- C:\Windows\SYSWOW64\localsec.dll
2012-05-23 18:28:39 ----A---- C:\Windows\SYSWOW64\fontext.dll
2012-05-23 18:28:39 ----A---- C:\Windows\system32\sud.dll
2012-05-23 18:28:39 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2012-05-23 18:28:39 ----A---- C:\Windows\system32\DeviceCenter.dll
2012-05-23 18:28:38 ----A---- C:\Windows\SYSWOW64\wlanui.dll
2012-05-23 18:28:38 ----A---- C:\Windows\SYSWOW64\usercpl.dll
2012-05-23 18:28:38 ----A---- C:\Windows\SYSWOW64\SndVolSSO.dll
2012-05-23 18:28:38 ----A---- C:\Windows\SYSWOW64\qedit.dll
2012-05-23 18:28:38 ----A---- C:\Windows\SYSWOW64\PerfCenterCPL.dll
2012-05-23 18:28:38 ----A---- C:\Windows\SYSWOW64\mprddm.dll
2012-05-23 18:28:38 ----A---- C:\Windows\SYSWOW64\iasacct.dll
2012-05-23 18:28:38 ----A---- C:\Windows\system32\twext.dll
2012-05-23 18:28:38 ----A---- C:\Windows\system32\taskbarcpl.dll
2012-05-23 18:28:38 ----A---- C:\Windows\system32\srcore.dll
2012-05-23 18:28:38 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2012-05-23 18:28:38 ----A---- C:\Windows\system32\networkmap.dll
2012-05-23 18:28:38 ----A---- C:\Windows\system32\dot3svc.dll
2012-05-23 18:28:38 ----A---- C:\Windows\system32\cryptui.dll
2012-05-23 18:28:38 ----A---- C:\Windows\system32\ActionCenter.dll
2012-05-23 18:28:37 ----A---- C:\Windows\SYSWOW64\w32tm.exe
2012-05-23 18:28:37 ----A---- C:\Windows\SYSWOW64\VAN.dll
2012-05-23 18:28:37 ----A---- C:\Windows\SYSWOW64\SndVol.exe
2012-05-23 18:28:37 ----A---- C:\Windows\SYSWOW64\prntvpt.dll
2012-05-23 18:28:37 ----A---- C:\Windows\SYSWOW64\netcenter.dll
2012-05-23 18:28:37 ----A---- C:\Windows\SYSWOW64\batmeter.dll
2012-05-23 18:28:37 ----A---- C:\Windows\system32\uxlib.dll
2012-05-23 18:28:37 ----A---- C:\Windows\system32\recovery.dll
2012-05-23 18:28:37 ----A---- C:\Windows\system32\OobeFldr.dll
2012-05-23 18:28:37 ----A---- C:\Windows\system32\bcdedit.exe
2012-05-23 18:28:37 ----A---- C:\Windows\system32\azroleui.dll
2012-05-23 18:28:36 ----A---- C:\Windows\SYSWOW64\zipfldr.dll
2012-05-23 18:28:36 ----A---- C:\Windows\SYSWOW64\spwizeng.dll
2012-05-23 18:28:36 ----A---- C:\Windows\SYSWOW64\fdeploy.dll
2012-05-23 18:28:36 ----A---- C:\Windows\SYSWOW64\azroleui.dll
2012-05-23 18:28:36 ----A---- C:\Windows\SYSWOW64\accessibilitycpl.dll
2012-05-23 18:28:36 ----A---- C:\Windows\system32\tzutil.exe
2012-05-23 18:28:36 ----A---- C:\Windows\system32\syncui.dll
2012-05-23 18:28:36 ----A---- C:\Windows\system32\sisbkup.dll
2012-05-23 18:28:36 ----A---- C:\Windows\system32\sdcpl.dll
2012-05-23 18:28:36 ----A---- C:\Windows\system32\recdisc.exe
2012-05-23 18:28:36 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2012-05-23 18:28:36 ----A---- C:\Windows\system32\isoburn.exe
2012-05-23 18:28:36 ----A---- C:\Windows\system32\httpapi.dll
2012-05-23 18:28:36 ----A---- C:\Windows\system32\efscore.dll
2012-05-23 18:28:36 ----A---- C:\Windows\system32\dsuiext.dll
2012-05-23 18:28:36 ----A---- C:\Windows\system32\cca.dll
2012-05-23 18:28:36 ----A---- C:\Windows\system32\asycfilt.dll
2012-05-23 18:28:35 ----A---- C:\Windows\SYSWOW64\netjoin.dll
2012-05-23 18:28:35 ----A---- C:\Windows\SYSWOW64\MSAC3ENC.DLL
2012-05-23 18:28:35 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2012-05-23 18:28:35 ----A---- C:\Windows\SYSWOW64\adsldp.dll
2012-05-23 18:28:35 ----A---- C:\Windows\system32\systemcpl.dll
2012-05-23 18:28:35 ----A---- C:\Windows\system32\sysclass.dll
2012-05-23 18:28:35 ----A---- C:\Windows\system32\shwebsvc.dll
2012-05-23 18:28:35 ----A---- C:\Windows\system32\netplwiz.dll
2012-05-23 18:28:35 ----A---- C:\Windows\system32\ncryptui.dll
2012-05-23 18:28:35 ----A---- C:\Windows\system32\fvecpl.dll
2012-05-23 18:28:35 ----A---- C:\Windows\system32\drivers\rdpdr.sys
2012-05-23 18:28:35 ----A---- C:\Windows\system32\drivers\mpio.sys
2012-05-23 18:28:35 ----A---- C:\Windows\system32\certcli.dll
2012-05-23 18:28:35 ----A---- C:\Windows\system32\autoplay.dll
2012-05-23 18:28:35 ----A---- C:\Windows\system32\appinfo.dll
2012-05-23 18:28:34 ----A---- C:\Windows\SYSWOW64\wusa.exe
2012-05-23 18:28:34 ----A---- C:\Windows\SYSWOW64\networkmap.dll
2012-05-23 18:28:34 ----A---- C:\Windows\SYSWOW64\MCEWMDRMNDBootstrap.dll
2012-05-23 18:28:34 ----A---- C:\Windows\SYSWOW64\Faultrep.dll
2012-05-23 18:28:34 ----A---- C:\Windows\system32\wlanmsm.dll
2012-05-23 18:28:34 ----A---- C:\Windows\system32\sdrsvc.dll
2012-05-23 18:28:34 ----A---- C:\Windows\system32\msvidc32.dll
2012-05-23 18:28:34 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2012-05-23 18:28:34 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2012-05-23 18:28:32 ----A---- C:\Windows\SYSWOW64\prnfldr.dll
2012-05-23 18:28:32 ----A---- C:\Windows\SYSWOW64\OnLineIDCpl.dll
2012-05-23 18:28:32 ----A---- C:\Windows\system32\spwizeng.dll
2012-05-23 18:28:31 ----A---- C:\Windows\SYSWOW64\sud.dll
2012-05-23 18:28:31 ----A---- C:\Windows\SYSWOW64\photowiz.dll
2012-05-23 18:28:31 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2012-05-23 18:28:31 ----A---- C:\Windows\SYSWOW64\MediaMetadataHandler.dll
2012-05-23 18:28:31 ----A---- C:\Windows\SYSWOW64\credssp.dll
2012-05-23 18:28:31 ----A---- C:\Windows\SYSWOW64\ActionCenter.dll
2012-05-23 18:28:31 ----A---- C:\Windows\system32\vdsutil.dll
2012-05-23 18:28:31 ----A---- C:\Windows\system32\termmgr.dll
2012-05-23 18:28:31 ----A---- C:\Windows\system32\MFPlay.dll
2012-05-23 18:28:30 ----A---- C:\Windows\SYSWOW64\iprtrmgr.dll
2012-05-23 18:28:30 ----A---- C:\Windows\SYSWOW64\iasrad.dll
2012-05-23 18:28:30 ----A---- C:\Windows\SYSWOW64\ftp.exe
2012-05-23 18:28:30 ----A---- C:\Windows\SYSWOW64\dot3cfg.dll
2012-05-23 18:28:30 ----A---- C:\Windows\SYSWOW64\defaultlocationcpl.dll
2012-05-23 18:28:30 ----A---- C:\Windows\system32\tsgqec.dll
2012-05-23 18:28:30 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2012-05-23 18:28:30 ----A---- C:\Windows\system32\sethc.exe
2012-05-23 18:28:30 ----A---- C:\Windows\system32\rstrui.exe
2012-05-23 18:28:30 ----A---- C:\Windows\system32\ReAgent.dll
2012-05-23 18:28:30 ----A---- C:\Windows\system32\ntlanman.dll
2012-05-23 18:28:30 ----A---- C:\Windows\system32\msscp.dll
2012-05-23 18:28:29 ----A---- C:\Windows\SYSWOW64\sisbkup.dll
2012-05-23 18:28:29 ----A---- C:\Windows\SYSWOW64\shwebsvc.dll
2012-05-23 18:28:29 ----A---- C:\Windows\SYSWOW64\ifsutil.dll
2012-05-23 18:28:29 ----A---- C:\Windows\SYSWOW64\efscore.dll
2012-05-23 18:28:29 ----A---- C:\Windows\SYSWOW64\ActionCenterCPL.dll
2012-05-23 18:28:29 ----A---- C:\Windows\system32\wwanprotdim.dll
2012-05-23 18:28:29 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2012-05-23 18:28:29 ----A---- C:\Windows\system32\ssText3d.scr
2012-05-23 18:28:29 ----A---- C:\Windows\system32\sqlcese30.dll
2012-05-23 18:28:29 ----A---- C:\Windows\system32\rdpd3d.dll
2012-05-23 18:28:29 ----A---- C:\Windows\system32\iTVData.dll
2012-05-23 18:28:29 ----A---- C:\Windows\system32\iprtrmgr.dll
2012-05-23 18:28:29 ----A---- C:\Windows\system32\drivers\vmstorfl.sys
2012-05-23 18:28:29 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2012-05-23 18:28:28 ----A---- C:\Windows\SYSWOW64\wmpmde.dll
2012-05-23 18:28:28 ----A---- C:\Windows\SYSWOW64\syncui.dll
2012-05-23 18:28:28 ----A---- C:\Windows\SYSWOW64\rtutils.dll
2012-05-23 18:28:28 ----A---- C:\Windows\SYSWOW64\ntlanman.dll
2012-05-23 18:28:28 ----A---- C:\Windows\SYSWOW64\dskquoui.dll
2012-05-23 18:28:28 ----A---- C:\Windows\SYSWOW64\DeviceCenter.dll
2012-05-23 18:28:28 ----A---- C:\Windows\SYSWOW64\autoplay.dll
2012-05-23 18:28:28 ----A---- C:\Windows\system32\wmdrmsdk.dll
2012-05-23 18:28:28 ----A---- C:\Windows\system32\srvcli.dll
2012-05-23 18:28:28 ----A---- C:\Windows\system32\slwga.dll
2012-05-23 18:28:28 ----A---- C:\Windows\system32\msiexec.exe
2012-05-23 18:28:28 ----A---- C:\Windows\system32\iyuv_32.dll
2012-05-23 18:28:28 ----A---- C:\Windows\system32\drmmgrtn.dll
2012-05-23 18:28:27 ----A---- C:\Windows\SYSWOW64\systemcpl.dll
2012-05-23 18:28:27 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2012-05-23 18:28:27 ----A---- C:\Windows\SYSWOW64\OobeFldr.dll
2012-05-23 18:28:27 ----A---- C:\Windows\SYSWOW64\ntprint.dll
2012-05-23 18:28:27 ----A---- C:\Windows\system32\wavemsp.dll
2012-05-23 18:28:27 ----A---- C:\Windows\system32\ntprint.dll
2012-05-23 18:28:27 ----A---- C:\Windows\system32\nslookup.exe
2012-05-23 18:28:27 ----A---- C:\Windows\system32\NAPHLPR.DLL
2012-05-23 18:28:27 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2012-05-23 18:28:27 ----A---- C:\Windows\system32\acppage.dll
2012-05-23 18:28:26 ----A---- C:\Windows\SYSWOW64\wmpsrcwp.dll
2012-05-23 18:28:26 ----A---- C:\Windows\SYSWOW64\sethc.exe
2012-05-23 18:28:26 ----A---- C:\Windows\SYSWOW64\riched20.dll
2012-05-23 18:28:26 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2012-05-23 18:28:26 ----A---- C:\Windows\SYSWOW64\netplwiz.dll
2012-05-23 18:28:26 ----A---- C:\Windows\SYSWOW64\NAPHLPR.DLL
2012-05-23 18:28:26 ----A---- C:\Windows\SYSWOW64\migisol.dll
2012-05-23 18:28:26 ----A---- C:\Windows\SYSWOW64\fms.dll
2012-05-23 18:28:26 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2012-05-23 18:28:26 ----A---- C:\Windows\SYSWOW64\activeds.dll
2012-05-23 18:28:26 ----A---- C:\Windows\system32\TSpkg.dll
2012-05-23 18:28:26 ----A---- C:\Windows\system32\srrstr.dll
2012-05-23 18:28:26 ----A---- C:\Windows\system32\sppnp.dll
2012-05-23 18:28:26 ----A---- C:\Windows\system32\certprop.dll
2012-05-23 18:28:26 ----A---- C:\Windows\system32\bcdboot.exe
2012-05-23 18:28:25 ----A---- C:\Windows\SYSWOW64\httpapi.dll
2012-05-23 18:28:25 ----A---- C:\Windows\SYSWOW64\dpx.dll
2012-05-23 18:28:25 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2012-05-23 18:28:25 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2012-05-23 18:28:25 ----A---- C:\Windows\system32\wkscli.dll
2012-05-23 18:28:25 ----A---- C:\Windows\system32\remotepg.dll
2012-05-23 18:28:25 ----A---- C:\Windows\system32\PresentationSettings.exe
2012-05-23 18:28:25 ----A---- C:\Windows\system32\networkexplorer.dll
2012-05-23 18:28:25 ----A---- C:\Windows\system32\cabinet.dll
2012-05-23 18:28:24 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2012-05-23 18:28:24 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll
2012-05-23 18:28:24 ----A---- C:\Windows\SYSWOW64\wavemsp.dll
2012-05-23 18:28:24 ----A---- C:\Windows\SYSWOW64\ReAgent.dll
2012-05-23 18:28:24 ----A---- C:\Windows\SYSWOW64\provsvc.dll
2012-05-23 18:28:24 ----A---- C:\Windows\SYSWOW64\nshipsec.dll
2012-05-23 18:28:24 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2012-05-23 18:28:24 ----A---- C:\Windows\SYSWOW64\msftedit.dll
2012-05-23 18:28:24 ----A---- C:\Windows\SYSWOW64\isoburn.exe
2012-05-23 18:28:24 ----A---- C:\Windows\SYSWOW64\dot3ui.dll
2012-05-23 18:28:24 ----A---- C:\Windows\system32\wuwebv.dll
2012-05-23 18:28:24 ----A---- C:\Windows\system32\wsnmp32.dll
2012-05-23 18:28:24 ----A---- C:\Windows\system32\wmpdxm.dll
2012-05-23 18:28:24 ----A---- C:\Windows\system32\WinSCard.dll
2012-05-23 18:28:24 ----A---- C:\Windows\system32\net1.exe
2012-05-23 18:28:24 ----A---- C:\Windows\system32\ftp.exe
2012-05-23 18:28:24 ----A---- C:\Windows\system32\dfrgui.exe
2012-05-23 18:28:24 ----A---- C:\Windows\system32\cdosys.dll
2012-05-23 18:28:23 ----A---- C:\Windows\SYSWOW64\wvc.dll
2012-05-23 18:28:23 ----A---- C:\Windows\SYSWOW64\wtsapi32.dll
2012-05-23 18:28:23 ----A---- C:\Windows\SYSWOW64\wimgapi.dll
2012-05-23 18:28:23 ----A---- C:\Windows\SYSWOW64\tzutil.exe
2012-05-23 18:28:23 ----A---- C:\Windows\SYSWOW64\ocsetup.exe
2012-05-23 18:28:23 ----A---- C:\Windows\SYSWOW64\dsuiext.dll
2012-05-23 18:28:23 ----A---- C:\Windows\SYSWOW64\dfrgui.exe
2012-05-23 18:28:23 ----A---- C:\Windows\SYSWOW64\AdmTmpl.dll
2012-05-23 18:28:23 ----A---- C:\Windows\system32\wvc.dll
2012-05-23 18:28:23 ----A---- C:\Windows\system32\wsqmcons.exe
2012-05-23 18:28:23 ----A---- C:\Windows\system32\wmdrmdev.dll
2012-05-23 18:28:23 ----A---- C:\Windows\system32\WerFaultSecure.exe
2012-05-23 18:28:23 ----A---- C:\Windows\system32\mfps.dll
2012-05-23 18:28:23 ----A---- C:\Windows\system32\blackbox.dll
2012-05-23 18:28:22 ----A---- C:\Windows\twain_32.dll
2012-05-23 18:28:22 ----A---- C:\Windows\SYSWOW64\twext.dll
2012-05-23 18:28:22 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2012-05-23 18:28:22 ----A---- C:\Windows\SYSWOW64\setupugc.exe
2012-05-23 18:28:22 ----A---- C:\Windows\SYSWOW64\qcap.dll
2012-05-23 18:28:22 ----A---- C:\Windows\SYSWOW64\PkgMgr.exe
2012-05-23 18:28:22 ----A---- C:\Windows\SYSWOW64\mstask.dll
2012-05-23 18:28:22 ----A---- C:\Windows\system32\WUDFPlatform.dll
2012-05-23 18:28:22 ----A---- C:\Windows\system32\unimdmat.dll
2012-05-23 18:28:22 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2012-05-23 18:28:22 ----A---- C:\Windows\system32\OpcServices.dll
2012-05-23 18:28:22 ----A---- C:\Windows\system32\msyuv.dll
2012-05-23 18:28:22 ----A---- C:\Windows\system32\msrle32.dll
2012-05-23 18:28:22 ----A---- C:\Windows\system32\mapistub.dll
2012-05-23 18:28:22 ----A---- C:\Windows\system32\mapi32.dll
2012-05-23 18:28:22 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2012-05-23 18:28:22 ----A---- C:\Windows\system32\Bubbles.scr
2012-05-23 18:28:21 ----A---- C:\Windows\SYSWOW64\qasf.dll
2012-05-23 18:28:21 ----A---- C:\Windows\system32\iscsium.dll
2012-05-23 18:28:21 ----A---- C:\Windows\system32\diskraid.exe
2012-05-23 18:28:20 ----A---- C:\Windows\SYSWOW64\uxlib.dll
2012-05-23 18:28:20 ----A---- C:\Windows\SYSWOW64\ssText3d.scr
2012-05-23 18:28:20 ----A---- C:\Windows\SYSWOW64\slwga.dll
2012-05-23 18:28:20 ----A---- C:\Windows\SYSWOW64\nslookup.exe
2012-05-23 18:28:20 ----A---- C:\Windows\SYSWOW64\msvfw32.dll
2012-05-23 18:28:20 ----A---- C:\Windows\SYSWOW64\mciavi32.dll
2012-05-23 18:28:20 ----A---- C:\Windows\SYSWOW64\audiodev.dll
2012-05-23 18:28:20 ----A---- C:\Windows\system32\tsbyuv.dll
2012-05-23 18:28:20 ----A---- C:\Windows\system32\seclogon.dll
2012-05-23 18:28:20 ----A---- C:\Windows\system32\Ribbons.scr
2012-05-23 18:28:20 ----A---- C:\Windows\system32\Mystify.scr
2012-05-23 18:28:20 ----A---- C:\Windows\system32\muifontsetup.dll
2012-05-23 18:28:20 ----A---- C:\Windows\system32\ifsutil.dll
2012-05-23 18:28:20 ----A---- C:\Windows\system32\drivers\umbus.sys
2012-05-23 18:28:19 ----A---- C:\Windows\SYSWOW64\WPDShServiceObj.dll
2012-05-23 18:28:19 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2012-05-23 18:28:19 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2012-05-23 18:28:19 ----A---- C:\Windows\SYSWOW64\msscp.dll
2012-05-23 18:28:19 ----A---- C:\Windows\SYSWOW64\DevicePairingFolder.dll
2012-05-23 18:28:19 ----A---- C:\Windows\SYSWOW64\clusapi.dll
2012-05-23 18:28:19 ----A---- C:\Windows\system32\wmpshell.dll
2012-05-23 18:28:19 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2012-05-23 18:28:19 ----A---- C:\Windows\system32\rdpencom.dll
2012-05-23 18:28:19 ----A---- C:\Windows\system32\perfmon.exe
2012-05-23 18:28:19 ----A---- C:\Windows\system32\d3d10level9.dll
2012-05-23 18:28:18 ----A---- C:\Windows\SYSWOW64\wimserv.exe
2012-05-23 18:28:18 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2012-05-23 18:28:18 ----A---- C:\Windows\SYSWOW64\remotepg.dll
2012-05-23 18:28:18 ----A---- C:\Windows\SYSWOW64\rdpencom.dll
2012-05-23 18:28:18 ----A---- C:\Windows\SYSWOW64\perfmon.exe
2012-05-23 18:28:18 ----A---- C:\Windows\SYSWOW64\diskraid.exe
2012-05-23 18:28:18 ----A---- C:\Windows\SYSWOW64\acppage.dll
2012-05-23 18:28:18 ----A---- C:\Windows\system32\umb.dll
2012-05-23 18:28:18 ----A---- C:\Windows\system32\tlscsp.dll
2012-05-23 18:28:18 ----A---- C:\Windows\system32\runonce.exe
2012-05-23 18:28:18 ----A---- C:\Windows\system32\qasf.dll
2012-05-23 18:28:18 ----A---- C:\Windows\system32\netutils.dll
2012-05-23 18:28:18 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2012-05-23 18:28:18 ----A---- C:\Windows\system32\FXSAPI.dll
2012-05-23 18:28:18 ----A---- C:\Windows\system32\dbghelp.dll
2012-05-23 18:28:18 ----A---- C:\Windows\system32\browser.dll
2012-05-23 18:28:18 ----A---- C:\Windows\system32\AzSqlExt.dll
2012-05-23 18:28:18 ----A---- C:\Windows\system32\ActionQueue.dll
2012-05-23 18:28:17 ----A---- C:\Windows\SYSWOW64\UserAccountControlSettings.dll
2012-05-23 18:28:17 ----A---- C:\Windows\SYSWOW64\raschap.dll
2012-05-23 18:28:17 ----A---- C:\Windows\SYSWOW64\QUTIL.DLL
2012-05-23 18:28:17 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2012-05-23 18:28:17 ----A---- C:\Windows\SYSWOW64\ocsetapi.dll
2012-05-23 18:28:17 ----A---- C:\Windows\SYSWOW64\networkexplorer.dll
2012-05-23 18:28:17 ----A---- C:\Windows\SYSWOW64\NAPCRYPT.DLL
2012-05-23 18:28:17 ----A---- C:\Windows\SYSWOW64\input.dll
2012-05-23 18:28:17 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2012-05-23 18:28:17 ----A---- C:\Windows\system32\wpdwcn.dll
2012-05-23 18:28:17 ----A---- C:\Windows\system32\WMADMOD.DLL
2012-05-23 18:28:17 ----A---- C:\Windows\system32\wiavideo.dll
2012-05-23 18:28:17 ----A---- C:\Windows\system32\syssetup.dll
2012-05-23 18:28:17 ----A---- C:\Windows\system32\raschap.dll
2012-05-23 18:28:17 ----A---- C:\Windows\system32\MdSched.exe
2012-05-23 18:28:17 ----A---- C:\Windows\bfsvc.exe
2012-05-23 18:28:16 ----A---- C:\Windows\SYSWOW64\wpdwcn.dll
2012-05-23 18:28:16 ----A---- C:\Windows\SYSWOW64\wmpdxm.dll
2012-05-23 18:28:16 ----A---- C:\Windows\SYSWOW64\vpnikeapi.dll
2012-05-23 18:28:16 ----A---- C:\Windows\SYSWOW64\vdsbas.dll
2012-05-23 18:28:16 ----A---- C:\Windows\SYSWOW64\runonce.exe
2012-05-23 18:28:16 ----A---- C:\Windows\SYSWOW64\onexui.dll
2012-05-23 18:28:16 ----A---- C:\Windows\SYSWOW64\logagent.exe
2012-05-23 18:28:16 ----A---- C:\Windows\SYSWOW64\iTVData.dll
2012-05-23 18:28:16 ----A---- C:\Windows\SYSWOW64\dxdiagn.dll
2012-05-23 18:28:16 ----A---- C:\Windows\system32\WMVSDECD.DLL
2012-05-23 18:28:16 ----A---- C:\Windows\system32\vdsbas.dll
2012-05-23 18:28:16 ----A---- C:\Windows\system32\PrintIsolationProxy.dll
2012-05-23 18:28:16 ----A---- C:\Windows\system32\nltest.exe
2012-05-23 18:28:16 ----A---- C:\Windows\system32\mstask.dll
2012-05-23 18:28:16 ----A---- C:\Windows\system32\Mcx2Svc.dll
2012-05-23 18:28:16 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2012-05-23 18:28:16 ----A---- C:\Windows\system32\drivers\rmcast.sys
2012-05-23 18:28:16 ----A---- C:\Windows\system32\bitsadmin.exe
2012-05-23 18:28:15 ----A---- C:\Windows\SYSWOW64\msvidc32.dll
2012-05-23 18:28:15 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2012-05-23 18:28:15 ----A---- C:\Windows\SYSWOW64\MFPlay.dll
2012-05-23 18:28:15 ----A---- C:\Windows\SYSWOW64\eapp3hst.dll
2012-05-23 18:28:15 ----A---- C:\Windows\system32\vss_ps.dll
2012-05-23 18:28:15 ----A---- C:\Windows\system32\tabcal.exe
2012-05-23 18:28:15 ----A---- C:\Windows\system32\shacct.dll
2012-05-23 18:28:15 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2012-05-23 18:28:15 ----A---- C:\Windows\system32\cscapi.dll
2012-05-23 18:28:14 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2012-05-23 18:28:14 ----A---- C:\Windows\SYSWOW64\wmpshell.dll
2012-05-23 18:28:14 ----A---- C:\Windows\SYSWOW64\wmdrmdev.dll
2012-05-23 18:28:14 ----A---- C:\Windows\SYSWOW64\unimdmat.dll
2012-05-23 18:28:14 ----A---- C:\Windows\SYSWOW64\shacct.dll
2012-05-23 18:28:14 ----A---- C:\Windows\SYSWOW64\lsmproxy.dll
2012-05-23 18:28:14 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2012-05-23 18:28:14 ----A---- C:\Windows\SYSWOW64\bitsadmin.exe
2012-05-23 18:28:14 ----A---- C:\Windows\system32\wudriver.dll
2012-05-23 18:28:14 ----A---- C:\Windows\system32\WPDSp.dll
2012-05-23 18:28:14 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2012-05-23 18:28:14 ----A---- C:\Windows\system32\wmdrmnet.dll
2012-05-23 18:28:14 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2012-05-23 18:28:14 ----A---- C:\Windows\system32\qcap.dll
2012-05-23 18:28:14 ----A---- C:\Windows\system32\msnetobj.dll
2012-05-23 18:28:14 ----A---- C:\Windows\system32\logman.exe
2012-05-23 18:28:14 ----A---- C:\Windows\system32\CscMig.dll
2012-05-23 18:28:13 ----A---- C:\Windows\SYSWOW64\WPDSp.dll
2012-05-23 18:28:13 ----A---- C:\Windows\SYSWOW64\srvcli.dll
2012-05-23 18:28:13 ----A---- C:\Windows\SYSWOW64\sqlcese30.dll
2012-05-23 18:28:13 ----A---- C:\Windows\SYSWOW64\rdpd3d.dll
2012-05-23 18:28:13 ----A---- C:\Windows\SYSWOW64\PortableDeviceSyncProvider.dll
2012-05-23 18:28:13 ----A---- C:\Windows\SYSWOW64\pdh.dll
2012-05-23 18:28:13 ----A---- C:\Windows\SYSWOW64\OpcServices.dll
2012-05-23 18:28:13 ----A---- C:\Windows\SYSWOW64\ncryptui.dll
2012-05-23 18:28:13 ----A---- C:\Windows\SYSWOW64\mprapi.dll
2012-05-23 18:28:13 ----A---- C:\Windows\SYSWOW64\logman.exe
2012-05-23 18:28:13 ----A---- C:\Windows\SYSWOW64\iscsium.dll
2012-05-23 18:28:13 ----A---- C:\Windows\SYSWOW64\cscapi.dll
2012-05-23 18:28:13 ----A---- C:\Windows\SYSWOW64\Bubbles.scr
2012-05-23 18:28:13 ----A---- C:\Windows\system32\vmictimeprovider.dll
2012-05-23 18:28:13 ----A---- C:\Windows\system32\spbcd.dll
2012-05-23 18:28:13 ----A---- C:\Windows\system32\secproc_ssp.dll
2012-05-23 18:28:13 ----A---- C:\Windows\system32\qdv.dll
2012-05-23 18:28:13 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll
2012-05-23 18:28:13 ----A---- C:\Windows\system32\PortableDeviceStatus.dll
2012-05-23 18:28:12 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2012-05-23 18:28:12 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2012-05-23 18:28:12 ----A---- C:\Windows\SYSWOW64\Ribbons.scr
2012-05-23 18:28:12 ----A---- C:\Windows\SYSWOW64\QSVRMGMT.DLL
2012-05-23 18:28:12 ----A---- C:\Windows\SYSWOW64\PortableDeviceStatus.dll
2012-05-23 18:28:12 ----A---- C:\Windows\SYSWOW64\olethk32.dll
2012-05-23 18:28:12 ----A---- C:\Windows\SYSWOW64\Mystify.scr
2012-05-23 18:28:12 ----A---- C:\Windows\SYSWOW64\mapistub.dll
2012-05-23 18:28:12 ----A---- C:\Windows\SYSWOW64\mapi32.dll
2012-05-23 18:28:12 ----A---- C:\Windows\system32\takeown.exe
2012-05-23 18:28:12 ----A---- C:\Windows\system32\PnPUnattend.exe
2012-05-23 18:28:12 ----A---- C:\Windows\system32\fphc.dll
2012-05-23 18:28:12 ----A---- C:\Windows\system32\drivers\ndisuio.sys
2012-05-23 18:28:12 ----A---- C:\Windows\system32\dot3ui.dll
2012-05-23 18:28:11 ----A---- C:\Windows\SYSWOW64\WMVSDECD.DLL
2012-05-23 18:28:11 ----A---- C:\Windows\SYSWOW64\WMADMOD.DLL
2012-05-23 18:28:11 ----A---- C:\Windows\SYSWOW64\wiavideo.dll
2012-05-23 18:28:11 ----A---- C:\Windows\SYSWOW64\utildll.dll
2012-05-23 18:28:11 ----A---- C:\Windows\SYSWOW64\takeown.exe
2012-05-23 18:28:11 ----A---- C:\Windows\SYSWOW64\iyuv_32.dll
2012-05-23 18:28:11 ----A---- C:\Windows\SYSWOW64\fphc.dll
2012-05-23 18:28:11 ----A---- C:\Windows\SYSWOW64\dot3msm.dll
2012-05-23 18:28:11 ----A---- C:\Windows\SYSWOW64\avifil32.dll
2012-05-23 18:28:11 ----A---- C:\Windows\system32\WMPhoto.dll
2012-05-23 18:28:11 ----A---- C:\Windows\system32\vfwwdm32.dll
2012-05-23 18:28:11 ----A---- C:\Windows\system32\EhStorAPI.dll
2012-05-23 18:28:11 ----A---- C:\Windows\system32\amstream.dll
2012-05-23 18:28:10 ----A---- C:\Windows\SYSWOW64\wmdrmnet.dll
2012-05-23 18:28:10 ----A---- C:\Windows\SYSWOW64\sppinst.dll
2012-05-23 18:28:10 ----A---- C:\Windows\SYSWOW64\qdv.dll
2012-05-23 18:28:10 ----A---- C:\Windows\SYSWOW64\msyuv.dll
2012-05-23 18:28:10 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2012-05-23 18:28:10 ----A---- C:\Windows\SYSWOW64\EhStorAPI.dll
2012-05-23 18:28:10 ----A---- C:\Windows\system32\WUDFx.dll
2012-05-23 18:28:10 ----A---- C:\Windows\system32\WUDFHost.exe
2012-05-23 18:28:10 ----A---- C:\Windows\system32\WavDest.dll
2012-05-23 18:28:10 ----A---- C:\Windows\system32\shimgvw.dll
2012-05-23 18:28:10 ----A---- C:\Windows\system32\QCLIPROV.DLL
2012-05-23 18:28:10 ----A---- C:\Windows\system32\nrpsrv.dll
2012-05-23 18:28:10 ----A---- C:\Windows\system32\netapi32.dll
2012-05-23 18:28:10 ----A---- C:\Windows\system32\iasrecst.dll
2012-05-23 18:28:10 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2012-05-23 18:28:10 ----A---- C:\Windows\system32\djoin.exe
2012-05-23 18:28:10 ----A---- C:\Windows\system32\cmstp.exe
2012-05-23 18:28:10 ----A---- C:\Windows\system32\CertPolEng.dll
2012-05-23 18:28:09 ----A---- C:\Windows\SYSWOW64\wsnmp32.dll
2012-05-23 18:28:09 ----A---- C:\Windows\SYSWOW64\WMSPDMOD.DLL
2012-05-23 18:28:09 ----A---- C:\Windows\SYSWOW64\vfwwdm32.dll
2012-05-23 18:28:09 ----A---- C:\Windows\SYSWOW64\setupcln.dll
2012-05-23 18:28:09 ----A---- C:\Windows\SYSWOW64\QCLIPROV.DLL
2012-05-23 18:28:09 ----A---- C:\Windows\SYSWOW64\pdhui.dll
2012-05-23 18:28:09 ----A---- C:\Windows\SYSWOW64\MuiUnattend.exe
2012-05-23 18:28:09 ----A---- C:\Windows\SYSWOW64\msrle32.dll
2012-05-23 18:28:09 ----A---- C:\Windows\SYSWOW64\cmstp.exe
2012-05-23 18:28:09 ----A---- C:\Windows\SYSWOW64\cca.dll
2012-05-23 18:28:09 ----A---- C:\Windows\system32\MultiDigiMon.exe
2012-05-23 18:28:09 ----A---- C:\Windows\system32\KMSVC.DLL
2012-05-23 18:28:09 ----A---- C:\Windows\system32\fdProxy.dll
2012-05-23 18:28:09 ----A---- C:\Windows\system32\drivers\pacer.sys
2012-05-23 18:28:08 ----A---- C:\Windows\SYSWOW64\wkscli.dll
2012-05-23 18:28:08 ----A---- C:\Windows\SYSWOW64\tsbyuv.dll
2012-05-23 18:28:08 ----A---- C:\Windows\SYSWOW64\spbcd.dll
2012-05-23 18:28:08 ----A---- C:\Windows\SYSWOW64\relog.exe
2012-05-23 18:28:08 ----A---- C:\Windows\SYSWOW64\netiougc.exe
2012-05-23 18:28:08 ----A---- C:\Windows\SYSWOW64\mydocs.dll
2012-05-23 18:28:08 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2012-05-23 18:28:08 ----A---- C:\Windows\SYSWOW64\iscsicli.exe
2012-05-23 18:28:08 ----A---- C:\Windows\SYSWOW64\iasrecst.dll
2012-05-23 18:28:08 ----A---- C:\Windows\SYSWOW64\AzSqlExt.dll
2012-05-23 18:28:08 ----A---- C:\Windows\SYSWOW64\amstream.dll
2012-05-23 18:28:08 ----A---- C:\Windows\system32\wuauclt.exe
2012-05-23 18:28:08 ----A---- C:\Windows\system32\sscore.dll
2012-05-23 18:28:08 ----A---- C:\Windows\system32\relog.exe
2012-05-23 18:28:08 ----A---- C:\Windows\system32\mydocs.dll
2012-05-23 18:28:08 ----A---- C:\Windows\system32\msdmo.dll
2012-05-23 18:28:08 ----A---- C:\Windows\system32\mobsync.exe
2012-05-23 18:28:08 ----A---- C:\Windows\system32\itircl.dll
2012-05-23 18:28:08 ----A---- C:\Windows\system32\iscsicli.exe
2012-05-23 18:28:08 ----A---- C:\Windows\system32\dot3msm.dll
2012-05-23 18:28:08 ----A---- C:\Windows\system32\diskpart.exe
2012-05-23 18:28:08 ----A---- C:\Windows\system32\BWUnpairElevated.dll
2012-05-23 18:28:08 ----A---- C:\Windows\system32\BdeHdCfg.exe
2012-05-23 18:28:07 ----A---- C:\Windows\SYSWOW64\wmpps.dll
2012-05-23 18:28:07 ----A---- C:\Windows\SYSWOW64\syssetup.dll
2012-05-23 18:28:07 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll
2012-05-23 18:28:07 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll
2012-05-23 18:28:07 ----A---- C:\Windows\SYSWOW64\resutils.dll
2012-05-23 18:28:07 ----A---- C:\Windows\SYSWOW64\rastapi.dll
2012-05-23 18:28:07 ----A---- C:\Windows\SYSWOW64\netbtugc.exe
2012-05-23 18:28:07 ----A---- C:\Windows\SYSWOW64\itircl.dll
2012-05-23 18:28:07 ----A---- C:\Windows\SYSWOW64\diskpart.exe
2012-05-23 18:28:07 ----A---- C:\Windows\SYSWOW64\CertPolEng.dll
2012-05-23 18:28:07 ----A---- C:\Windows\system32\wuapp.exe
2012-05-23 18:28:07 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2012-05-23 18:28:07 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2012-05-23 18:28:07 ----A---- C:\Windows\system32\qprocess.exe
2012-05-23 18:28:07 ----A---- C:\Windows\system32\FXSTIFF.dll
2012-05-23 18:28:07 ----A---- C:\Windows\system32\browcli.dll
2012-05-23 18:28:06 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2012-05-23 18:28:06 ----A---- C:\Windows\SYSWOW64\WerFaultSecure.exe
2012-05-23 18:28:06 ----A---- C:\Windows\SYSWOW64\tlscsp.dll
2012-05-23 18:28:06 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe
2012-05-23 18:28:06 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe
2012-05-23 18:28:06 ----A---- C:\Windows\SYSWOW64\ReAgentc.exe
2012-05-23 18:28:06 ----A---- C:\Windows\SYSWOW64\netutils.dll
2012-05-23 18:28:06 ----A---- C:\Windows\SYSWOW64\mobsync.exe
2012-05-23 18:28:06 ----A---- C:\Windows\SYSWOW64\mciqtz32.dll
2012-05-23 18:28:06 ----A---- C:\Windows\SYSWOW64\findstr.exe
2012-05-23 18:28:06 ----A---- C:\Windows\SYSWOW64\eappgnui.dll
2012-05-23 18:28:06 ----A---- C:\Windows\system32\sppc.dll
2012-05-23 18:28:06 ----A---- C:\Windows\system32\onexui.dll
2012-05-23 18:28:06 ----A---- C:\Windows\system32\mciqtz32.dll
2012-05-23 18:28:06 ----A---- C:\Windows\system32\luainstall.dll
2012-05-23 18:28:06 ----A---- C:\Windows\system32\choice.exe
2012-05-23 18:28:06 ----A---- C:\Windows\system32\chglogon.exe
2012-05-23 18:28:06 ----A---- C:\Windows\system32\findstr.exe
2012-05-23 18:28:06 ----A---- C:\Windows\system32\eappgnui.dll
2012-05-23 18:28:06 ----A---- C:\Windows\system32\drivers\tunnel.sys
2012-05-23 18:28:05 ----A---- C:\Windows\SYSWOW64\sppc.dll
2012-05-23 18:28:05 ----A---- C:\Windows\SYSWOW64\spopk.dll
2012-05-23 18:28:05 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2012-05-23 18:28:05 ----A---- C:\Windows\SYSWOW64\muifontsetup.dll
2012-05-23 18:28:05 ----A---- C:\Windows\SYSWOW64\iccvid.dll
2012-05-23 18:28:05 ----A---- C:\Windows\SYSWOW64\cabinet.dll
2012-05-23 18:28:05 ----A---- C:\Windows\system32\wdiasqmmodule.dll
2012-05-23 18:28:05 ----A---- C:\Windows\system32\spopk.dll
2012-05-23 18:28:05 ----A---- C:\Windows\system32\schedcli.dll
2012-05-23 18:28:05 ----A---- C:\Windows\system32\repair-bde.exe
2012-05-23 18:28:05 ----A---- C:\Windows\system32\qappsrv.exe
2012-05-23 18:28:05 ----A---- C:\Windows\system32\manage-bde.exe
2012-05-23 18:28:05 ----A---- C:\Windows\system32\inetmib1.dll
2012-05-23 18:28:05 ----A---- C:\Windows\system32\drivers\dfsc.sys
2012-05-23 18:28:04 ----A---- C:\Windows\SYSWOW64\unlodctr.exe
2012-05-23 18:28:04 ----A---- C:\Windows\SYSWOW64\shimgvw.dll
2012-05-23 18:28:04 ----A---- C:\Windows\SYSWOW64\rdprefdrvapi.dll
2012-05-23 18:28:04 ----A---- C:\Windows\SYSWOW64\msdmo.dll
2012-05-23 18:28:04 ----A---- C:\Windows\SYSWOW64\luainstall.dll
2012-05-23 18:28:04 ----A---- C:\Windows\SYSWOW64\inetmib1.dll
2012-05-23 18:28:04 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2012-05-23 18:28:04 ----A---- C:\Windows\system32\vmstorfltres.dll
2012-05-23 18:28:04 ----A---- C:\Windows\system32\vmicres.dll
2012-05-23 18:28:04 ----A---- C:\Windows\system32\tskill.exe
2012-05-23 18:28:04 ----A---- C:\Windows\system32\tsdiscon.exe
2012-05-23 18:28:04 ----A---- C:\Windows\system32\tscon.exe
2012-05-23 18:28:04 ----A---- C:\Windows\system32\rwinsta.exe
2012-05-23 18:28:04 ----A---- C:\Windows\system32\RDPENCDD.dll
2012-05-23 18:28:04 ----A---- C:\Windows\system32\profprov.dll
2012-05-23 18:28:04 ----A---- C:\Windows\system32\odbcconf.dll
2012-05-23 18:28:04 ----A---- C:\Windows\system32\logoff.exe
2012-05-23 18:28:04 ----A---- C:\Windows\system32\chgusr.exe
2012-05-23 18:28:04 ----A---- C:\Windows\system32\chgport.exe
2012-05-23 18:28:04 ----A---- C:\Windows\system32\fixmapi.exe
2012-05-23 18:28:03 ----A---- C:\Windows\SYSWOW64\wups.dll
2012-05-23 18:28:03 ----A---- C:\Windows\SYSWOW64\UIRibbonRes.dll
2012-05-23 18:28:03 ----A---- C:\Windows\SYSWOW64\odbcconf.dll
2012-05-23 18:28:03 ----A---- C:\Windows\SYSWOW64\browcli.dll
2012-05-23 18:28:03 ----A---- C:\Windows\system32\vmbusres.dll
2012-05-23 18:28:03 ----A---- C:\Windows\system32\UIRibbonRes.dll
2012-05-23 18:28:03 ----A---- C:\Windows\system32\TRAPI.dll
2012-05-23 18:28:03 ----A---- C:\Windows\system32\shadow.exe
2012-05-23 18:28:03 ----A---- C:\Windows\system32\FXSMON.dll
2012-05-23 18:28:03 ----A---- C:\Windows\system32\elsTrans.dll
2012-05-23 18:28:03 ----A---- C:\Windows\system32\drivers\tdi.sys
2012-05-23 18:28:02 ----A---- C:\Windows\SYSWOW64\perfts.dll
2012-05-23 18:28:02 ----A---- C:\Windows\SYSWOW64\imm32.dll
2012-05-23 18:28:02 ----A---- C:\Windows\system32\wshbth.dll
2012-05-23 18:28:02 ----A---- C:\Windows\system32\reset.exe
2012-05-23 18:28:02 ----A---- C:\Windows\system32\query.exe
2012-05-23 18:28:02 ----A---- C:\Windows\system32\napdsnap.dll
2012-05-23 18:28:02 ----A---- C:\Windows\system32\LogonUI.exe
2012-05-23 18:28:02 ----A---- C:\Windows\system32\change.exe
2012-05-23 18:28:02 ----A---- C:\Windows\system32\dsauth.dll
2012-05-23 18:28:01 ----A---- C:\Windows\SYSWOW64\elsTrans.dll
2012-05-23 18:28:01 ----A---- C:\Windows\system32\rdprefdrvapi.dll
2012-05-23 18:28:01 ----A---- C:\Windows\system32\FXSUNATD.exe
2012-05-23 18:28:00 ----A---- C:\Windows\SYSWOW64\wshbth.dll
2012-05-23 18:28:00 ----A---- C:\Windows\SYSWOW64\TRAPI.dll
2012-05-23 18:28:00 ----A---- C:\Windows\SYSWOW64\schedcli.dll
2012-05-23 18:28:00 ----A---- C:\Windows\SYSWOW64\napdsnap.dll
2012-05-23 18:28:00 ----A---- C:\Windows\SYSWOW64\dsauth.dll
2012-05-23 18:28:00 ----A---- C:\Windows\SYSWOW64\cscdll.dll
2012-05-23 18:28:00 ----A---- C:\Windows\SYSWOW64\bitsperf.dll
2012-05-23 18:28:00 ----A---- C:\Windows\system32\drivers\usbrpm.sys
2012-05-23 18:28:00 ----A---- C:\Windows\system32\drivers\acpipmi.sys
2012-05-23 18:28:00 ----A---- C:\Windows\system32\cscdll.dll
2012-05-23 18:28:00 ----A---- C:\Windows\system32\bitsperf.dll
2012-05-23 18:27:59 ----A---- C:\Windows\SYSWOW64\sscore.dll
2012-05-23 18:27:59 ----A---- C:\Windows\system32\wups2.dll
2012-05-23 18:27:59 ----A---- C:\Windows\system32\wups.dll
2012-05-23 18:27:59 ----A---- C:\Windows\system32\wsdchngr.dll
2012-05-23 18:27:59 ----A---- C:\Windows\system32\shgina.dll
2012-05-23 18:27:58 ----A---- C:\Windows\SYSWOW64\wsdchngr.dll
2012-05-23 18:27:58 ----A---- C:\Windows\SYSWOW64\shgina.dll
2012-05-23 18:27:58 ----A---- C:\Windows\SYSWOW64\riched32.dll
2012-05-23 18:27:58 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2012-05-23 18:27:57 ----A---- C:\Windows\system32\wshirda.dll
2012-05-23 18:27:57 ----A---- C:\Windows\system32\drivers\hidusb.sys
2012-05-23 18:27:57 ----A---- C:\Windows\system32\drivers\CompositeBus.sys
2012-05-23 18:27:57 ----A---- C:\Windows\system32\drivers\appid.sys
2012-05-23 18:27:56 ----A---- C:\Windows\SYSWOW64\wshirda.dll
2012-05-23 18:27:56 ----A---- C:\Windows\system32\vmbuspipe.dll
2012-05-23 18:27:56 ----A---- C:\Windows\system32\riched32.dll
2012-05-23 18:27:56 ----A---- C:\Windows\system32\rdpcfgex.dll
2012-05-23 18:27:56 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2012-05-23 18:27:55 ----A---- C:\Windows\system32\VmbusCoinstaller.dll
2012-05-23 18:27:55 ----A---- C:\Windows\system32\spwmp.dll
2012-05-23 18:27:55 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2012-05-23 18:27:55 ----A---- C:\Windows\system32\C_ISCII.DLL
2012-05-23 18:27:55 ----A---- C:\Windows\system32\browseui.dll
2012-05-23 18:27:54 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2012-05-23 18:27:54 ----A---- C:\Windows\SYSWOW64\browseui.dll
2012-05-23 18:27:54 ----A---- C:\Windows\system32\VmdCoinstall.dll
2012-05-23 18:27:54 ----A---- C:\Windows\system32\IcCoinstall.dll
2012-05-23 18:27:54 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2012-05-23 18:27:54 ----A---- C:\Windows\system32\drivers\cdrom.sys
2012-05-23 18:27:53 ----AH---- C:\Windows\system32\api-ms-win-core-ums-l1-1-0.dll
2012-05-23 18:27:53 ----A---- C:\Windows\SYSWOW64\shunimpl.dll
2012-05-23 18:27:53 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2012-05-23 18:27:53 ----A---- C:\Windows\SYSWOW64\C_ISCII.DLL
2012-05-23 18:27:53 ----A---- C:\Windows\system32\shunimpl.dll
2012-05-23 18:27:53 ----A---- C:\Windows\system32\dxmasf.dll
2012-05-23 18:27:53 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2012-05-23 18:27:53 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2012-05-23 18:27:53 ----A---- C:\Windows\system32\drivers\sffp_sd.sys
2012-05-23 18:27:53 ----A---- C:\Windows\system32\drivers\scfilter.sys
2012-05-23 18:27:53 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2012-05-23 18:27:52 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\SYSWOW64\KBDTUQ.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\SYSWOW64\KBDTUF.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\SYSWOW64\KBDSG.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\SYSWOW64\kbdlk41a.dll
2012-05-23 18:27:52 ----A---- C:\Windows\SYSWOW64\KBDGR1.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\SYSWOW64\KBDGKL.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\system32\wmploc.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\system32\KBDTUQ.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\system32\KBDTUF.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\system32\KBDSG.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\system32\KBDSF.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\system32\KBDPO.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\system32\KBDNEPR.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\system32\kbdlk41a.dll
2012-05-23 18:27:52 ----A---- C:\Windows\system32\KBDINTAM.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\system32\KBDINBEN.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\system32\KBDGR1.DLL
2012-05-23 18:27:52 ----A---- C:\Windows\system32\KBDGKL.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDUS.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDUGHR1.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDTURME.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDTAJIK.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDSF.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDPO.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDNEPR.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDMON.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDMAORI.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDLT1.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDINTEL.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDINTAM.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDINORI.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDINMAR.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDINKAN.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDINHIN.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDINBEN.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDGEO.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDCZ1.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDBULG.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDBLR.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\system32\KBDUS.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\system32\KBDUGHR1.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\system32\KBDTURME.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\system32\KBDTAJIK.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\system32\KBDMON.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\system32\KBDMAORI.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\system32\KBDLT1.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\system32\KBDINTEL.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\system32\KBDGEO.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\system32\KBDCZ1.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\system32\KBDBULG.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\system32\KBDBLR.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\system32\KBDBASH.DLL
2012-05-23 18:27:51 ----A---- C:\Windows\system32\drivers\vms3cap.sys
2012-05-23 18:27:50 ----A---- C:\Windows\SYSWOW64\spwizres.dll
2012-05-23 18:27:50 ----A---- C:\Windows\SYSWOW64\pifmgr.dll
2012-05-23 18:27:50 ----A---- C:\Windows\SYSWOW64\nlsbres.dll
2012-05-23 18:27:50 ----A---- C:\Windows\SYSWOW64\dpnaddr.dll
2012-05-23 18:27:50 ----A---- C:\Windows\system32\spwizres.dll
2012-05-23 18:27:50 ----A---- C:\Windows\system32\pifmgr.dll
2012-05-23 18:27:50 ----A---- C:\Windows\system32\nlsbres.dll
2012-05-23 18:27:50 ----A---- C:\Windows\system32\KBDINORI.DLL
2012-05-23 18:27:50 ----A---- C:\Windows\system32\KBDINMAR.DLL
2012-05-23 18:27:50 ----A---- C:\Windows\system32\KBDINKAN.DLL
2012-05-23 18:27:50 ----A---- C:\Windows\system32\KBDINHIN.DLL
2012-05-23 18:27:50 ----A---- C:\Windows\system32\drivers\VMBusHID.sys
2012-05-23 18:27:50 ----A---- C:\Windows\system32\dpnaddr.dll
2012-05-23 18:27:50 ----A---- C:\Windows\system32\BlbEvents.dll
2012-05-23 18:27:23 ----A---- C:\Windows\SYSWOW64\wdscore.dll
2012-05-23 18:27:23 ----A---- C:\Windows\system32\dpx.dll
2012-05-23 18:27:15 ----A---- C:\Windows\SYSWOW64\sqmapi.dll
2012-05-23 18:27:14 ----A---- C:\Windows\SYSWOW64\printmanagement.msc
2012-05-23 18:26:59 ----A---- C:\Windows\SYSWOW64\wbemcomn.dll
2012-05-23 18:26:23 ----A---- C:\Windows\system32\wbemcomn.dll
2012-05-23 18:26:21 ----A---- C:\Windows\system32\sqmapi.dll
2012-05-23 18:24:50 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-05-23 18:24:49 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2012-05-23 18:24:48 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2012-05-23 18:24:47 ----A---- C:\Windows\system32\win32k.sys
2012-05-23 18:24:45 ----A---- C:\Windows\system32\drivers\partmgr.sys
2012-05-23 18:24:38 ----A---- C:\Windows\system32\DWrite.dll
2012-05-23 18:24:37 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2012-05-23 18:12:26 ----A---- C:\Windows\system32\drivers\tcpip.sys
2012-05-22 14:06:27 ----D---- C:\ProgramData\TERA
2012-05-22 14:04:46 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2012-05-22 13:57:11 ----D---- C:\Users\Jakub\AppData\Roaming\BabylonToolbar
2012-05-22 13:57:09 ----A---- C:\user.js
2012-05-22 13:57:01 ----D---- C:\Users\Jakub\AppData\Roaming\Babylon
2012-05-22 13:57:01 ----D---- C:\ProgramData\Babylon
2012-05-22 13:56:58 ----D---- C:\Users\Jakub\AppData\Roaming\YourFileDownloader
2012-05-22 13:56:58 ----D---- C:\Program Files (x86)\YourFileDownloader

======List of files/folders modified in the last 1 month======

2012-06-14 19:58:16 ----D---- C:\Windows\Temp
2012-06-14 19:45:10 ----D---- C:\Windows\System32
2012-06-14 19:45:10 ----D---- C:\Windows\inf
2012-06-14 19:45:10 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-06-14 19:40:53 ----D---- C:\Windows\system32\config
2012-06-14 17:07:34 ----D---- C:\Windows\Prefetch
2012-06-14 15:54:54 ----D---- C:\Windows\SysWOW64
2012-06-14 15:48:04 ----D---- C:\Windows\system32\drivers\etc
2012-06-14 15:48:04 ----D---- C:\Windows
2012-06-14 15:47:11 ----RD---- C:\Program Files (x86)
2012-06-14 15:38:11 ----D---- C:\Windows\system32\drivers
2012-06-14 15:26:47 ----D---- C:\Users\Jakub\AppData\Roaming\uTorrent
2012-06-12 19:45:35 ----D---- C:\Users\Jakub\AppData\Roaming\Audacity
2012-06-11 17:11:22 ----D---- C:\Windows\system32\catroot
2012-06-11 14:44:27 ----SHD---- C:\System Volume Information
2012-06-11 06:01:25 ----SHD---- C:\Windows\Installer
2012-06-10 19:08:52 ----D---- C:\Users\Jakub\AppData\Roaming\vlc
2012-06-10 16:40:13 ----RD---- C:\Program Files
2012-06-10 15:02:27 ----D---- C:\Users\Jakub\AppData\Roaming\DAEMON Tools Lite
2012-06-10 15:02:23 ----D---- C:\Windows\Logs
2012-06-10 14:02:59 ----D---- C:\ProgramData\Electronic Arts
2012-06-10 14:02:57 ----D---- C:\ProgramData\Origin
2012-06-10 14:02:56 ----HD---- C:\ProgramData
2012-06-10 13:49:54 ----D---- C:\Program Files (x86)\Common Files
2012-06-10 13:49:06 ----D---- C:\Windows\system32\LogFiles
2012-06-10 13:48:32 ----RSD---- C:\Windows\assembly
2012-06-09 17:35:27 ----D---- C:\Windows\winsxs
2012-06-09 07:30:37 ----SD---- C:\Users\Jakub\AppData\Roaming\Microsoft
2012-06-03 18:08:24 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2012-06-02 22:37:09 ----D---- C:\Windows\system32\catroot2
2012-05-28 06:12:01 ----D---- C:\Program Files\ATI Technologies
2012-05-28 06:10:35 ----D---- C:\Windows\system32\DriverStore
2012-05-25 18:42:49 ----D---- C:\Windows\rescache
2012-05-24 20:07:34 ----D---- C:\Windows\debug
2012-05-24 18:11:38 ----D---- C:\Windows\Microsoft.NET
2012-05-23 18:48:30 ----D---- C:\Program Files (x86)\Windows Sidebar
2012-05-23 18:48:30 ----D---- C:\Program Files (x86)\Windows Portable Devices
2012-05-23 18:48:30 ----D---- C:\Program Files (x86)\Windows Media Player
2012-05-23 18:48:30 ----D---- C:\Program Files (x86)\Windows Mail
2012-05-23 18:48:29 ----D---- C:\Program Files\Windows Sidebar
2012-05-23 18:48:29 ----D---- C:\Program Files\Windows Portable Devices
2012-05-23 18:48:29 ----D---- C:\Program Files\Windows Photo Viewer
2012-05-23 18:48:29 ----D---- C:\Program Files\Windows Media Player
2012-05-23 18:48:29 ----D---- C:\Program Files\Windows Mail
2012-05-23 18:48:29 ----D---- C:\Program Files\Windows Journal
2012-05-23 18:48:29 ----D---- C:\Program Files\DVD Maker
2012-05-23 18:48:29 ----D---- C:\Program Files\Common Files\System
2012-05-23 18:48:29 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2012-05-23 18:48:28 ----D---- C:\Windows\servicing
2012-05-23 18:48:28 ----D---- C:\Windows\ehome
2012-05-23 18:48:28 ----D---- C:\Program Files\Windows Defender
2012-05-23 18:48:22 ----SHD---- C:\Windows\BitLockerDiscoveryVolumeContents
2012-05-23 18:48:22 ----D---- C:\Windows\SYSWOW64\Setup
2012-05-23 18:48:22 ----D---- C:\Windows\SYSWOW64\oobe
2012-05-23 18:48:22 ----D---- C:\Windows\SYSWOW64\migration
2012-05-23 18:48:22 ----D---- C:\Windows\SYSWOW64\en-US
2012-05-23 18:48:22 ----D---- C:\Windows\SYSWOW64\da-DK
2012-05-23 18:48:22 ----D---- C:\Windows\SYSWOW64\cs
2012-05-23 18:48:22 ----D---- C:\Windows\SYSWOW64\AdvancedInstallers
2012-05-23 18:48:21 ----D---- C:\Windows\SYSWOW64\wbem
2012-05-23 18:48:21 ----D---- C:\Windows\SYSWOW64\sppui
2012-05-23 18:48:21 ----D---- C:\Windows\SYSWOW64\migwiz
2012-05-23 18:48:21 ----D---- C:\Windows\SYSWOW64\manifeststore
2012-05-23 18:48:21 ----D---- C:\Windows\SYSWOW64\es-ES
2012-05-23 18:48:21 ----D---- C:\Windows\SYSWOW64\en
2012-05-23 18:48:21 ----D---- C:\Windows\SYSWOW64\Dism
2012-05-23 18:48:21 ----D---- C:\Windows\SYSWOW64\cs-CZ
2012-05-23 18:48:13 ----D---- C:\Windows\system32\da-DK
2012-05-23 18:48:13 ----D---- C:\Windows\PolicyDefinitions
2012-05-23 18:48:12 ----D---- C:\Windows\system32\sppui
2012-05-23 18:48:12 ----D---- C:\Windows\system32\Setup
2012-05-23 18:48:12 ----D---- C:\Windows\system32\oobe
2012-05-23 18:48:12 ----D---- C:\Windows\system32\migration
2012-05-23 18:48:12 ----D---- C:\Windows\system32\manifeststore
2012-05-23 18:48:12 ----D---- C:\Windows\system32\es-ES
2012-05-23 18:48:12 ----D---- C:\Windows\system32\en-US
2012-05-23 18:48:12 ----D---- C:\Windows\system32\cs-CZ
2012-05-23 18:48:12 ----D---- C:\Windows\system32\cs
2012-05-23 18:48:12 ----D---- C:\Windows\system32\AdvancedInstallers
2012-05-23 18:48:11 ----D---- C:\Windows\system32\wbem
2012-05-23 18:48:11 ----D---- C:\Windows\system32\migwiz
2012-05-23 18:48:11 ----D---- C:\Windows\system32\drivers\UMDF
2012-05-23 18:48:11 ----D---- C:\Windows\system32\drivers\en-US
2012-05-23 18:48:11 ----D---- C:\Windows\system32\drivers\cs-CZ
2012-05-23 18:48:11 ----D---- C:\Windows\system32\Dism
2012-05-23 18:48:02 ----RSD---- C:\Windows\Fonts
2012-05-23 18:48:02 ----D---- C:\Windows\AppPatch
2012-05-23 18:48:00 ----D---- C:\Windows\system32\wdi
2012-05-23 18:47:51 ----D---- C:\Windows\system32\Boot
2012-05-23 18:45:30 ----A---- C:\Windows\SYSWOW64\msclmd.dll
2012-05-23 18:45:30 ----A---- C:\Windows\system32\msclmd.dll
2012-05-23 18:37:04 ----A---- C:\Windows\system32\MRT.exe
2012-05-22 14:03:45 ----D---- C:\Program Files (x86)\Microsoft.NET
2012-05-20 18:15:33 ----D---- C:\Users\Jakub\AppData\Roaming\dvdcss

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2012-03-07 53080]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2012-03-07 819032]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2012-03-07 337240]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2012-03-07 59224]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2011-11-21 279616]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2012-03-07 24408]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2012-03-07 69976]
R2 cpuz135;cpuz135; \??\C:\Windows\system32\drivers\cpuz135_x64.sys [2012-03-09 23816]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2012-04-06 11174400]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2012-04-06 343040]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2012-02-23 95760]
R3 L1E;NDIS Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1E62x64.sys [2009-08-23 56320]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2005-03-29 8192]
S3 GGSAFERDriver;GGSAFER Driver; \??\D:\Programy\Garena\Garena Classic\safedrv.sys []
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 20992]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-01-03 63928]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2012-04-06 236544]
R2 avast! Antivirus;avast! Antivirus; D:\Programy\avast\AvastSvc.exe [2012-03-07 44768]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2012-06-10 76888]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 2291568]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-01-30 103992]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-01-30 123960]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-06-05 160944]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2012-01-30 51272]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-01-30 141376]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-01-30 141376]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-01-30 141376]

-----------------EOF-----------------

Re: Preventivky

Napsal: 14 čer 2012 19:03
od Rudy
Smazáno, ještě odstraníme zbytky. Dvouklikem na soubor C:\Program Files\trend micro\Jakub.exe spusťte HijackThis. Klikněte na "Do a system scan only" a v otevřeném okně vlevo ve čtverečcích zaškrtněte:
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.babylon.com/?affID=112555 ... 248c5a342f
R3 - URLSearchHook: (no name) - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - (no file)
Klikněte na >FixChecked< a restartujte PC.

Re: Preventivky

Napsal: 15 čer 2012 18:31
od Rolandman
Hotovo,mám opět poslat log z RSIT ?

Re: Preventivky

Napsal: 15 čer 2012 19:15
od Rudy
Není třeba, Šlo jen o zbytky.

Re: Preventivky

Napsal: 15 čer 2012 19:43
od Rolandman
Tak tedy děkuji za pomoc :thumbsup:

Re: Preventivky

Napsal: 15 čer 2012 20:16
od Rudy
Nemáte zač!