Stránka 1 z 1

poradite mI???

Napsal: 01 zář 2012 04:47
od freelavina
Ahoj.chtela bych vas poprosit o kontrolu logu,eset mi vcera nasel 13 infiltraci a asi to jeste nebude vsechno..... :(



Logfile of random's system information tool 1.09 (written by random/random)
Run by ferda at 2012-09-01 05:39:03
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 144 GB (91%) free of 157 GB
Total RAM: 1791 MB (51% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 5:39:11, on 1.9.2012
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\Program Files\IObit\Advanced SystemCare 5\ASCService.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\Program Files\Kaspersky Lab\Kaspersky Security Scan 2.0\kss.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe
C:\Program Files\Common Files\Acronis\Fomatik\TrueImageTryStartService.exe
C:\Program Files\Acronis\TrueImageHome\TimounterMonitor.exe
C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Kaspersky Lab\Kaspersky Security Scan 2.0\kss.exe
C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesApp32.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe
C:\Program Files\TuneUp Utilities 2012\OneClick.exe
C:\Program Files\TuneUp Utilities 2012\TUDefragBackend32.exe
C:\Program Files\ESET\ESET Smart Security\SysInspector.exe
C:\Program Files\AVG\AVG PC Tuneup\BoostSpeed.exe
C:\Program Files\AVG\AVG PC Tuneup\registrydefrag.exe
C:\Documents and Settings\ferda\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\ferda\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\ferda\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\ferda\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\ferda\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\WINDOWS\regedit.exe
C:\Documents and Settings\ferda\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\ferda\Plocha\RSIT.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\trend micro\ferda.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://update.microsoft.com/microsoftup ... aspx?ln=cs
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [TrueImageMonitor.exe] C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe
O4 - HKLM\..\Run: [AcronisTimounterMonitor] C:\Program Files\Acronis\TrueImageHome\TimounterMonitor.exe
O4 - HKLM\..\Run: [Acronis Scheduler2 Service] "C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\ferda\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files\Stardock\ObjectDockPlus2\ObjectDock.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 6416426500
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
O23 - Service: Advanced SystemCare Service 5 (AdvancedSystemCareService5) - IObit - C:\Program Files\IObit\Advanced SystemCare 5\ASCService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: Kaspersky Security Scan Service (KSS) - Kaspersky Lab ZAO - C:\Program Files\Kaspersky Lab\Kaspersky Security Scan 2.0\kss.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: Performance Service (nTuneService) - NVIDIA - C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files\Sony\Sony PC Companion\PCCService.exe
O23 - Service: Acronis Try And Decide Service (TryAndDecideService) - Unknown owner - C:\Program Files\Common Files\Acronis\Fomatik\TrueImageTryStartService.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe

--
End of file - 7358 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1644491937-1284227242-725345543-1003Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1644491937-1284227242-725345543-1003UA.job
C:\WINDOWS\tasks\SmartDefrag_Schedule.job

======Registry dump======

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2012-03-07 3117344]
"TrueImageMonitor.exe"=C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe [2007-10-23 2615624]
"AcronisTimounterMonitor"=C:\Program Files\Acronis\TrueImageHome\TimounterMonitor.exe [2007-10-23 906648]
"Acronis Scheduler2 Service"=C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe [2007-10-23 140568]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"Google Update"=C:\Documents and Settings\ferda\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [2012-08-31 116648]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMan]
C:\WINDOWS\SOUNDMAN.EXE [2007-04-16 577536]

C:\Documents and Settings\ferda\Nabídka Start\Programy\Po spuštění
Stardock ObjectDock.lnk - C:\Program Files\Stardock\ObjectDockPlus2\ObjectDock.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2009-09-30 155648]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"authentication packages"=msv1_0
relog_ap

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=255

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=255

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\WINDOWS\system32\sessmgr.exe"="C:\WINDOWS\system32\sessmgr.exe:*:Disabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv

======List of files/folders created in the last 1 month======

2012-09-01 05:39:03 ----D---- C:\rsit
2012-09-01 05:39:03 ----D---- C:\Program Files\trend micro
2012-08-31 23:51:22 ----HDC---- C:\WINDOWS\$NtUninstallKB929399$
2012-08-31 23:50:58 ----D---- C:\Program Files\Common Files\LightScribe
2012-08-31 23:49:03 ----D---- C:\Program Files\Nero
2012-08-31 23:49:03 ----D---- C:\Program Files\Common Files\Ahead
2012-08-31 23:49:03 ----D---- C:\Documents and Settings\All Users\Data aplikací\Nero
2012-08-31 23:38:59 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2012-08-31 23:38:58 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2012-08-31 23:32:24 ----D---- C:\Program Files\CyberLink
2012-08-31 23:29:57 ----D---- C:\Program Files\Kaspersky Lab
2012-08-31 23:29:57 ----D---- C:\Documents and Settings\All Users\Data aplikací\Kaspersky Lab
2012-08-31 23:24:56 ----D---- C:\Documents and Settings\ferda\Data aplikací\Acronis
2012-08-31 23:19:47 ----N---- C:\WINDOWS\system32\spmsg.dll
2012-08-31 23:15:37 ----D---- C:\Documents and Settings\All Users\Data aplikací\Acronis
2012-08-31 23:15:25 ----A---- C:\WINDOWS\system32\drivers\timntr.sys
2012-08-31 23:15:25 ----A---- C:\WINDOWS\system32\drivers\tifsfilt.sys
2012-08-31 23:15:17 ----A---- C:\WINDOWS\system32\drivers\snapman.sys
2012-08-31 23:14:55 ----A---- C:\WINDOWS\system32\drivers\tdrpman.sys
2012-08-31 23:14:17 ----D---- C:\Program Files\Common Files\Acronis
2012-08-31 23:14:17 ----D---- C:\Program Files\Acronis
2012-08-31 23:09:39 ----DC---- C:\WINDOWS\system32\DRVSTORE
2012-08-31 23:07:58 ----D---- C:\Program Files\Sony
2012-08-31 23:07:58 ----D---- C:\Documents and Settings\All Users\Data aplikací\Sony
2012-08-31 23:04:18 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2012-08-31 23:03:04 ----D---- C:\WINDOWS\system32\LogFiles
2012-08-31 23:03:04 ----D---- C:\WINDOWS\system32\drivers\UMDF
2012-08-31 23:02:26 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2012-08-31 22:45:47 ----A---- C:\WINDOWS\imsins.BAK
2012-08-31 22:43:49 ----HD---- C:\WINDOWS\PIF
2012-08-31 22:04:22 ----A---- C:\WINDOWS\system32\SmartDefragBootTime.exe
2012-08-31 22:02:50 ----A---- C:\WINDOWS\system32\drivers\SmartDefragDriver.sys
2012-08-31 21:59:18 ----D---- C:\Program Files\Lavalys
2012-08-31 21:20:34 ----D---- C:\Documents and Settings\ferda\Data aplikací\Stardock
2012-08-31 21:16:09 ----HDC---- C:\Documents and Settings\All Users\Data aplikací\{0F4A7EFE-5950-4389-BF36-1E625D72456B}
2012-08-31 21:16:04 ----D---- C:\Program Files\Common Files\Stardock
2012-08-31 21:16:04 ----D---- C:\Documents and Settings\All Users\Data aplikací\Stardock
2012-08-31 21:15:57 ----D---- C:\Program Files\Stardock
2012-08-31 19:24:30 ----A---- C:\WINDOWS\system32\mucltui.dll
2012-08-31 19:12:09 ----D---- C:\WINDOWS\system32\WindowsPowerShell
2012-08-31 19:12:06 ----D---- C:\WINDOWS\system32\winrm
2012-08-31 19:12:06 ----D---- C:\WINDOWS\system32\GroupPolicy
2012-08-31 19:11:58 ----HDC---- C:\WINDOWS\$968930Uinstall_KB968930$
2012-08-31 19:05:41 ----HDC---- C:\WINDOWS\$NtUninstallbasecsp$
2012-08-31 18:59:18 ----A---- C:\WINDOWS\system32\RegistryDefragBootTime.exe
2012-08-31 18:52:15 ----D---- C:\Documents and Settings\ferda\Data aplikací\AVG
2012-08-31 18:50:31 ----AD---- C:\Documents and Settings\All Users\Data aplikací\TEMP
2012-08-31 18:50:12 ----D---- C:\Program Files\AVG
2012-08-31 18:23:13 ----SHD---- C:\Config.Msi
2012-08-31 17:41:45 ----D---- C:\WINDOWS\system32\XPSViewer
2012-08-31 17:41:34 ----D---- C:\Program Files\MSBuild
2012-08-31 17:41:10 ----D---- C:\WINDOWS\system32\en-US
2012-08-31 17:40:39 ----D---- C:\Program Files\Reference Assemblies
2012-08-31 17:38:38 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2012-08-31 17:38:38 ----N---- C:\WINDOWS\system32\prntvpt.dll
2012-08-31 17:38:37 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2012-08-31 17:38:35 ----D---- C:\d0e4a17a905b12b6cf
2012-08-31 16:42:12 ----D---- C:\Documents and Settings\All Users\Data aplikací\IObit
2012-08-31 16:41:56 ----D---- C:\Documents and Settings\ferda\Data aplikací\IObit
2012-08-31 16:41:49 ----D---- C:\Program Files\IObit
2012-08-31 16:34:08 ----D---- C:\Documents and Settings\All Users\Data aplikací\Windows Genuine Advantage
2012-08-31 16:31:35 ----D---- C:\Documents and Settings\ferda\Data aplikací\Mozilla
2012-08-31 16:31:22 ----D---- C:\Program Files\Mozilla Maintenance Service
2012-08-31 16:31:22 ----D---- C:\Documents and Settings\All Users\Data aplikací\Mozilla
2012-08-31 16:31:19 ----D---- C:\Program Files\Mozilla Firefox
2012-08-31 16:29:34 ----A---- C:\WINDOWS\system32\MRT.exe
2012-08-31 16:27:55 ----D---- C:\Documents and Settings\ferda\Data aplikací\ATI
2012-08-31 16:27:55 ----D---- C:\Documents and Settings\All Users\Data aplikací\ATI
2012-08-31 16:13:11 ----D---- C:\WINDOWS\ie8updates
2012-08-31 16:04:42 ----N---- C:\WINDOWS\system32\browserchoice.exe
2012-08-31 15:59:47 ----N---- C:\WINDOWS\system32\iacenc.dll
2012-08-31 15:59:09 ----N---- C:\WINDOWS\system32\ati2sgag.exe
2012-08-31 15:59:05 ----D---- C:\WINDOWS\system32\PreInstall
2012-08-31 15:58:46 ----D---- C:\Program Files\ATI Technologies
2012-08-31 15:57:56 ----D---- C:\ATI
2012-08-31 15:55:07 ----D---- C:\Program Files\CCleaner
2012-08-31 15:36:20 ----A---- C:\WINDOWS\system32\D3DX9_42.dll
2012-08-31 15:36:18 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2012-08-31 15:36:13 ----D---- C:\WINDOWS\Logs
2012-08-31 15:36:10 ----D---- C:\Program Files\Winamp Detect
2012-08-31 15:35:42 ----D---- C:\WINDOWS\RegisteredPackages
2012-08-31 15:35:16 ----N---- C:\WINDOWS\system32\vxblock.dll
2012-08-31 15:35:16 ----N---- C:\WINDOWS\system32\pxwma.dll
2012-08-31 15:35:16 ----N---- C:\WINDOWS\system32\pxwave.dll
2012-08-31 15:35:16 ----N---- C:\WINDOWS\system32\pxsfs.dll
2012-08-31 15:35:16 ----N---- C:\WINDOWS\system32\pxmas.dll
2012-08-31 15:35:16 ----N---- C:\WINDOWS\system32\pxinsi64.exe
2012-08-31 15:35:16 ----N---- C:\WINDOWS\system32\pxinsa64.exe
2012-08-31 15:35:16 ----N---- C:\WINDOWS\system32\pxhpinst.exe
2012-08-31 15:35:16 ----N---- C:\WINDOWS\system32\pxdrv.dll
2012-08-31 15:35:16 ----N---- C:\WINDOWS\system32\pxcpyi64.exe
2012-08-31 15:35:16 ----N---- C:\WINDOWS\system32\pxcpya64.exe
2012-08-31 15:35:16 ----N---- C:\WINDOWS\system32\pxafs.dll
2012-08-31 15:35:16 ----N---- C:\WINDOWS\system32\px.dll
2012-08-31 15:35:16 ----N---- C:\WINDOWS\system32\drivers\PxHelp20.sys
2012-08-31 15:35:16 ----N---- C:\WINDOWS\system32\drivers\cdralw2k.sys
2012-08-31 15:35:16 ----N---- C:\WINDOWS\system32\drivers\cdr4_xp.sys
2012-08-31 15:35:11 ----D---- C:\Program Files\Winamp
2012-08-31 15:35:11 ----D---- C:\Documents and Settings\ferda\Data aplikací\Winamp
2012-08-31 15:34:24 ----D---- C:\Documents and Settings\ferda\Data aplikací\WinRAR
2012-08-31 15:34:19 ----D---- C:\Program Files\WinRAR
2012-08-31 15:33:34 ----A---- C:\WINDOWS\system32\wups2.dll
2012-08-31 15:33:19 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2012-08-31 15:24:54 ----D---- C:\WINDOWS\WBEM
2012-08-31 15:24:34 ----HDC---- C:\WINDOWS\ie8
2012-08-31 15:14:37 ----D---- C:\WINDOWS\Prefetch
2012-08-31 15:06:02 ----N---- C:\WINDOWS\system32\msxml6r.dll
2012-08-31 15:06:01 ----N---- C:\WINDOWS\system32\msxml6.dll
2012-08-31 15:05:54 ----N---- C:\WINDOWS\system32\smtpapi.dll
2012-08-31 15:05:54 ----N---- C:\WINDOWS\system32\rwnh.dll
2012-08-31 15:05:54 ----N---- C:\WINDOWS\system32\drivers\irbus.sys
2012-08-31 15:05:54 ----N---- C:\WINDOWS\system32\comsdupd.exe
2012-08-31 15:05:53 ----N---- C:\WINDOWS\system32\ati3d1ag.dll
2012-08-31 15:05:53 ----N---- C:\WINDOWS\system32\ati2dvaa.dll
2012-08-31 15:05:53 ----N---- C:\WINDOWS\system32\aaclient.dll
2012-08-31 15:05:53 ----A---- C:\WINDOWS\system32\ati2dvag.dll
2012-08-31 15:05:53 ----A---- C:\WINDOWS\system32\ati2cqag.dll
2012-08-31 15:05:52 ----N---- C:\WINDOWS\system32\eapsvc.dll
2012-08-31 15:05:52 ----N---- C:\WINDOWS\system32\eapqec.dll
2012-08-31 15:05:52 ----N---- C:\WINDOWS\system32\eappprxy.dll
2012-08-31 15:05:52 ----N---- C:\WINDOWS\system32\eapphost.dll
2012-08-31 15:05:52 ----N---- C:\WINDOWS\system32\eappgnui.dll
2012-08-31 15:05:52 ----N---- C:\WINDOWS\system32\eappcfg.dll
2012-08-31 15:05:52 ----N---- C:\WINDOWS\system32\eapp3hst.dll
2012-08-31 15:05:52 ----N---- C:\WINDOWS\system32\eapolqec.dll
2012-08-31 15:05:52 ----N---- C:\WINDOWS\system32\dot3ui.dll
2012-08-31 15:05:52 ----N---- C:\WINDOWS\system32\dot3svc.dll
2012-08-31 15:05:52 ----N---- C:\WINDOWS\system32\dot3msm.dll
2012-08-31 15:05:52 ----N---- C:\WINDOWS\system32\dot3gpclnt.dll
2012-08-31 15:05:52 ----N---- C:\WINDOWS\system32\dot3dlg.dll
2012-08-31 15:05:52 ----N---- C:\WINDOWS\system32\dot3cfg.dll
2012-08-31 15:05:52 ----N---- C:\WINDOWS\system32\dot3api.dll
2012-08-31 15:05:52 ----N---- C:\WINDOWS\system32\dimsroam.dll
2012-08-31 15:05:52 ----N---- C:\WINDOWS\system32\dimsntfy.dll
2012-08-31 15:05:52 ----N---- C:\WINDOWS\system32\dhcpqec.dll
2012-08-31 15:05:52 ----N---- C:\WINDOWS\system32\credssp.dll
2012-08-31 15:05:52 ----N---- C:\WINDOWS\system32\bitsprx4.dll
2012-08-31 15:05:52 ----N---- C:\WINDOWS\system32\azroles.dll
2012-08-31 15:05:52 ----N---- C:\WINDOWS\system32\ativtmxx.dll
2012-08-31 15:05:52 ----A---- C:\WINDOWS\system32\ativvaxx.dll
2012-08-31 15:05:52 ----A---- C:\WINDOWS\system32\ati3duag.dll
2012-08-31 15:05:51 ----N---- C:\WINDOWS\system32\mmcperf.exe
2012-08-31 15:05:51 ----N---- C:\WINDOWS\system32\mmcfxcommon.dll
2012-08-31 15:05:51 ----N---- C:\WINDOWS\system32\mmcex.dll
2012-08-31 15:05:51 ----N---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2012-08-31 15:05:51 ----N---- C:\WINDOWS\system32\mdmxsdk.dll
2012-08-31 15:05:51 ----N---- C:\WINDOWS\system32\l2gpstore.dll
2012-08-31 15:05:51 ----N---- C:\WINDOWS\system32\kmsvc.dll
2012-08-31 15:05:51 ----N---- C:\WINDOWS\system32\kbdpash.dll
2012-08-31 15:05:51 ----N---- C:\WINDOWS\system32\kbdnepr.dll
2012-08-31 15:05:51 ----N---- C:\WINDOWS\system32\kbdiultn.dll
2012-08-31 15:05:51 ----N---- C:\WINDOWS\system32\kbdbhc.dll
2012-08-31 15:05:51 ----N---- C:\WINDOWS\system32\hsfcisp2.dll
2012-08-31 15:05:50 ----N---- C:\WINDOWS\system32\slcoinst.dll
2012-08-31 15:05:50 ----N---- C:\WINDOWS\system32\setupn.exe
2012-08-31 15:05:50 ----N---- C:\WINDOWS\system32\s3gnb.dll
2012-08-31 15:05:50 ----N---- C:\WINDOWS\system32\rhttpaa.dll
2012-08-31 15:05:50 ----N---- C:\WINDOWS\system32\rasqec.dll
2012-08-31 15:05:50 ----N---- C:\WINDOWS\system32\qutil.dll
2012-08-31 15:05:50 ----N---- C:\WINDOWS\system32\qcliprov.dll
2012-08-31 15:05:50 ----N---- C:\WINDOWS\system32\qagentrt.dll
2012-08-31 15:05:50 ----N---- C:\WINDOWS\system32\qagent.dll
2012-08-31 15:05:50 ----N---- C:\WINDOWS\system32\photometadatahandler.dll
2012-08-31 15:05:50 ----N---- C:\WINDOWS\system32\onex.dll
2012-08-31 15:05:50 ----N---- C:\WINDOWS\system32\nv4_disp.dll
2012-08-31 15:05:50 ----N---- C:\WINDOWS\system32\napstat.exe
2012-08-31 15:05:50 ----N---- C:\WINDOWS\system32\napmontr.dll
2012-08-31 15:05:50 ----N---- C:\WINDOWS\system32\napipsec.dll
2012-08-31 15:05:50 ----N---- C:\WINDOWS\system32\mtxparhd.dll
2012-08-31 15:05:50 ----N---- C:\WINDOWS\system32\msshavmsg.dll
2012-08-31 15:05:50 ----N---- C:\WINDOWS\system32\mssha.dll
2012-08-31 15:05:49 ----N---- C:\WINDOWS\system32\windowscodecs.dll
2012-08-31 15:05:49 ----N---- C:\WINDOWS\system32\verclsid.exe
2012-08-31 15:05:49 ----N---- C:\WINDOWS\system32\tzchange.exe
2012-08-31 15:05:49 ----N---- C:\WINDOWS\system32\tspkg.dll
2012-08-31 15:05:49 ----N---- C:\WINDOWS\system32\tsgqec.dll
2012-08-31 15:05:49 ----N---- C:\WINDOWS\system32\slserv.exe
2012-08-31 15:05:49 ----N---- C:\WINDOWS\system32\slrundll.exe
2012-08-31 15:05:49 ----N---- C:\WINDOWS\system32\slgen.dll
2012-08-31 15:05:49 ----N---- C:\WINDOWS\system32\slextspk.dll
2012-08-31 15:05:48 ----N---- C:\WINDOWS\system32\wmphoto.dll
2012-08-31 15:05:48 ----N---- C:\WINDOWS\system32\wlanapi.dll
2012-08-31 15:05:48 ----N---- C:\WINDOWS\system32\windowscodecsext.dll
2012-08-31 15:05:48 ----N---- C:\WINDOWS\slrundll.exe
2012-08-31 15:05:48 ----D---- C:\WINDOWS\system32\cs-cz
2012-08-31 15:05:48 ----A---- C:\WINDOWS\system32\xmllite.dll
2012-08-31 15:05:47 ----D---- C:\WINDOWS\system32\cs
2012-08-31 15:05:47 ----D---- C:\WINDOWS\system32\bits
2012-08-31 15:05:47 ----D---- C:\WINDOWS\l2schemas
2012-08-31 15:03:45 ----D---- C:\WINDOWS\ServicePackFiles
2012-08-31 15:02:08 ----N---- C:\WINDOWS\system32\drivers\alim1541.sys
2012-08-31 15:02:08 ----N---- C:\WINDOWS\system32\drivers\agpcpq.sys
2012-08-31 15:02:08 ----N---- C:\WINDOWS\system32\drivers\agp440.sys
2012-08-31 15:02:08 ----N---- C:\WINDOWS\system32\drivers\adv11nt5.dll
2012-08-31 15:02:08 ----N---- C:\WINDOWS\system32\drivers\adv09nt5.dll
2012-08-31 15:02:08 ----N---- C:\WINDOWS\system32\drivers\adv08nt5.dll
2012-08-31 15:02:08 ----N---- C:\WINDOWS\system32\drivers\adv07nt5.dll
2012-08-31 15:02:08 ----N---- C:\WINDOWS\system32\drivers\adv05nt5.dll
2012-08-31 15:02:08 ----N---- C:\WINDOWS\system32\drivers\adv02nt5.dll
2012-08-31 15:02:08 ----N---- C:\WINDOWS\system32\drivers\adv01nt5.dll
2012-08-31 15:02:08 ----D---- C:\WINDOWS\network diagnostic
2012-08-31 15:02:07 ----N---- C:\WINDOWS\system32\drivers\ati2mtaa.sys
2012-08-31 15:02:07 ----N---- C:\WINDOWS\system32\drivers\ati1xsxx.sys
2012-08-31 15:02:07 ----N---- C:\WINDOWS\system32\drivers\ati1xbxx.sys
2012-08-31 15:02:07 ----N---- C:\WINDOWS\system32\drivers\ati1tuxx.sys
2012-08-31 15:02:07 ----N---- C:\WINDOWS\system32\drivers\ati1ttxx.sys
2012-08-31 15:02:07 ----N---- C:\WINDOWS\system32\drivers\ati1snxx.sys
2012-08-31 15:02:07 ----N---- C:\WINDOWS\system32\drivers\ati1rvxx.sys
2012-08-31 15:02:07 ----N---- C:\WINDOWS\system32\drivers\ati1raxx.sys
2012-08-31 15:02:07 ----N---- C:\WINDOWS\system32\drivers\ati1pdxx.sys
2012-08-31 15:02:07 ----N---- C:\WINDOWS\system32\drivers\ati1mdxx.sys
2012-08-31 15:02:07 ----N---- C:\WINDOWS\system32\drivers\ati1btxx.sys
2012-08-31 15:02:07 ----N---- C:\WINDOWS\system32\drivers\amdagp.sys
2012-08-31 15:02:07 ----A---- C:\WINDOWS\system32\drivers\ati2mtag.sys
2012-08-31 15:02:06 ----N---- C:\WINDOWS\system32\drivers\atv04nt5.dll
2012-08-31 15:02:06 ----N---- C:\WINDOWS\system32\drivers\atv02nt5.dll
2012-08-31 15:02:06 ----N---- C:\WINDOWS\system32\drivers\atv01nt5.dll
2012-08-31 15:02:06 ----N---- C:\WINDOWS\system32\drivers\atinxsxx.sys
2012-08-31 15:02:06 ----N---- C:\WINDOWS\system32\drivers\atinxbxx.sys
2012-08-31 15:02:06 ----N---- C:\WINDOWS\system32\drivers\atintuxx.sys
2012-08-31 15:02:06 ----N---- C:\WINDOWS\system32\drivers\atinttxx.sys
2012-08-31 15:02:06 ----N---- C:\WINDOWS\system32\drivers\atinsnxx.sys
2012-08-31 15:02:06 ----N---- C:\WINDOWS\system32\drivers\atinrvxx.sys
2012-08-31 15:02:06 ----N---- C:\WINDOWS\system32\drivers\atinraxx.sys
2012-08-31 15:02:06 ----N---- C:\WINDOWS\system32\drivers\atinpdxx.sys
2012-08-31 15:02:06 ----N---- C:\WINDOWS\system32\drivers\atinmdxx.sys
2012-08-31 15:02:06 ----N---- C:\WINDOWS\system32\drivers\atinbtxx.sys
2012-08-31 15:02:05 ----N---- C:\WINDOWS\system32\drivers\ch7xxnt5.dll
2012-08-31 15:02:05 ----N---- C:\WINDOWS\system32\drivers\hdaudbus.sys
2012-08-31 15:02:05 ----N---- C:\WINDOWS\system32\drivers\gagp30kx.sys
2012-08-31 15:02:05 ----N---- C:\WINDOWS\system32\drivers\bthusb.sys
2012-08-31 15:02:05 ----N---- C:\WINDOWS\system32\drivers\bthprint.sys
2012-08-31 15:02:05 ----N---- C:\WINDOWS\system32\drivers\bthport.sys
2012-08-31 15:02:05 ----N---- C:\WINDOWS\system32\drivers\bthpan.sys
2012-08-31 15:02:05 ----N---- C:\WINDOWS\system32\drivers\bthmodem.sys
2012-08-31 15:02:05 ----N---- C:\WINDOWS\system32\drivers\bthenum.sys
2012-08-31 15:02:05 ----N---- C:\WINDOWS\system32\drivers\atv10nt5.dll
2012-08-31 15:02:05 ----N---- C:\WINDOWS\system32\drivers\atv06nt5.dll
2012-08-31 15:02:04 ----N---- C:\WINDOWS\system32\drivers\mtlmnt5.sys
2012-08-31 15:02:04 ----N---- C:\WINDOWS\system32\drivers\mdmxsdk.sys
2012-08-31 15:02:04 ----N---- C:\WINDOWS\system32\drivers\hsfdpsp2.sys
2012-08-31 15:02:04 ----N---- C:\WINDOWS\system32\drivers\hsfcxts2.sys
2012-08-31 15:02:04 ----N---- C:\WINDOWS\system32\drivers\hsfbs2s2.sys
2012-08-31 15:02:04 ----N---- C:\WINDOWS\system32\drivers\hidir.sys
2012-08-31 15:02:04 ----N---- C:\WINDOWS\system32\drivers\hidbth.sys
2012-08-31 15:02:03 ----N---- C:\WINDOWS\system32\drivers\rndismpx.sys
2012-08-31 15:02:03 ----N---- C:\WINDOWS\system32\drivers\rfcomm.sys
2012-08-31 15:02:03 ----N---- C:\WINDOWS\system32\drivers\recagent.sys
2012-08-31 15:02:03 ----N---- C:\WINDOWS\system32\drivers\nv4_mini.sys
2012-08-31 15:02:03 ----N---- C:\WINDOWS\system32\drivers\ntmtlfax.sys
2012-08-31 15:02:03 ----N---- C:\WINDOWS\system32\drivers\mutohpen.sys
2012-08-31 15:02:03 ----N---- C:\WINDOWS\system32\drivers\mtxparhm.sys
2012-08-31 15:02:03 ----N---- C:\WINDOWS\system32\drivers\mtlstrm.sys
2012-08-31 15:02:02 ----N---- C:\WINDOWS\system32\drivers\uagp35.sys
2012-08-31 15:02:02 ----N---- C:\WINDOWS\system32\drivers\smbali.sys
2012-08-31 15:02:02 ----N---- C:\WINDOWS\system32\drivers\slwdmsup.sys
2012-08-31 15:02:02 ----N---- C:\WINDOWS\system32\drivers\slnthal.sys
2012-08-31 15:02:02 ----N---- C:\WINDOWS\system32\drivers\slntamr.sys
2012-08-31 15:02:02 ----N---- C:\WINDOWS\system32\drivers\slnt7554.sys
2012-08-31 15:02:02 ----N---- C:\WINDOWS\system32\drivers\sisagp.sys
2012-08-31 15:02:02 ----N---- C:\WINDOWS\system32\drivers\siint5.dll
2012-08-31 15:02:02 ----N---- C:\WINDOWS\system32\drivers\sffp_mmc.sys
2012-08-31 15:02:02 ----N---- C:\WINDOWS\system32\drivers\s3gnbm.sys
2012-08-31 15:02:01 ----N---- C:\WINDOWS\system32\drivers\watv06nt.sys
2012-08-31 15:02:01 ----N---- C:\WINDOWS\system32\drivers\wadv11nt.sys
2012-08-31 15:02:01 ----N---- C:\WINDOWS\system32\drivers\wadv09nt.sys
2012-08-31 15:02:01 ----N---- C:\WINDOWS\system32\drivers\wadv08nt.sys
2012-08-31 15:02:01 ----N---- C:\WINDOWS\system32\drivers\wadv07nt.sys
2012-08-31 15:02:01 ----N---- C:\WINDOWS\system32\drivers\wacompen.sys
2012-08-31 15:02:01 ----N---- C:\WINDOWS\system32\drivers\viaagp.sys
2012-08-31 15:02:01 ----N---- C:\WINDOWS\system32\drivers\vchnt5.dll
2012-08-31 15:02:01 ----N---- C:\WINDOWS\system32\drivers\usbvideo.sys
2012-08-31 15:02:01 ----N---- C:\WINDOWS\system32\drivers\usb8023x.sys
2012-08-31 15:02:00 ----N---- C:\WINDOWS\system32\drivers\watv10nt.sys
2012-08-31 15:00:53 ----A---- C:\WINDOWS\002702_.tmp
2012-08-31 15:00:41 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2012-08-31 14:59:39 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2012-08-31 14:44:06 ----A---- C:\WINDOWS\system32\d3d9caps.dat
2012-08-31 14:35:32 ----D---- C:\WINDOWS\setup.pss
2012-08-31 14:35:17 ----D---- C:\WINDOWS\setupupd
2012-08-31 14:29:36 ----D---- C:\Documents and Settings\ferda\Data aplikací\ESET
2012-08-31 14:28:20 ----D---- C:\Program Files\ESET
2012-08-31 14:28:20 ----D---- C:\Documents and Settings\All Users\Data aplikací\ESET
2012-08-31 14:23:54 ----RA---- C:\WINDOWS\system32\fdco1.dll
2012-08-31 14:23:54 ----RA---- C:\WINDOWS\system32\drivers\NVENETFD.sys
2012-08-31 14:23:53 ----RA---- C:\WINDOWS\system32\nvconrm.dll
2012-08-31 14:23:53 ----A---- C:\WINDOWS\system32\nvunrm.exe
2012-08-31 14:23:52 ----RA---- C:\WINDOWS\system32\drivers\nvnrm.sys
2012-08-31 14:23:52 ----RA---- C:\WINDOWS\system32\drivers\nvnetbus.sys
2012-08-31 14:23:52 ----RA---- C:\WINDOWS\system32\bdco1.dll
2012-08-31 14:23:49 ----RA---- C:\WINDOWS\system32\nvusmb.exe
2012-08-31 14:23:49 ----RA---- C:\WINDOWS\system32\NVCOSMB.DLL
2012-08-31 14:03:33 ----A---- C:\WINDOWS\system32\ChCfg.exe
2012-08-31 14:03:30 ----A---- C:\WINDOWS\system32\drivers\splitter.sys
2012-08-31 14:03:29 ----A---- C:\WINDOWS\system32\drivers\wdmaud.sys
2012-08-31 14:03:28 ----A---- C:\WINDOWS\system32\drivers\dmusic.sys
2012-08-31 14:03:24 ----A---- C:\WINDOWS\system32\drivers\swmidi.sys
2012-08-31 14:03:23 ----A---- C:\WINDOWS\system32\drivers\kmixer.sys
2012-08-31 14:03:23 ----A---- C:\WINDOWS\system32\drivers\aec.sys
2012-08-31 14:03:22 ----A---- C:\WINDOWS\system32\drivers\sysaudio.sys
2012-08-31 14:03:22 ----A---- C:\WINDOWS\system32\drivers\drmkaud.sys
2012-08-31 14:03:21 ----A---- C:\WINDOWS\system32\drivers\mskssrv.sys
2012-08-31 14:03:20 ----A---- C:\WINDOWS\system32\drivers\mspqm.sys
2012-08-31 14:03:19 ----A---- C:\WINDOWS\system32\drivers\mspclock.sys
2012-08-31 14:03:16 ----RA---- C:\WINDOWS\system32\drivers\alcxwdm.sys
2012-08-31 14:03:15 ----A---- C:\WINDOWS\system32\ksuser.dll
2012-08-31 14:03:15 ----A---- C:\WINDOWS\system32\drivers\portcls.sys
2012-08-31 14:03:15 ----A---- C:\WINDOWS\system32\drivers\drmk.sys
2012-08-31 14:03:09 ----D---- C:\Program Files\Realtek AC97
2012-08-31 14:03:09 ----A---- C:\WINDOWS\system32\RTLCPL.exe
2012-08-31 14:03:07 ----A---- C:\WINDOWS\system32\RtlCPAPI.dll
2012-08-31 14:03:07 ----A---- C:\WINDOWS\soundman.exe
2012-08-31 14:03:07 ----A---- C:\WINDOWS\alcupd.exe
2012-08-31 14:03:06 ----HD---- C:\Program Files\InstallShield Installation Information
2012-08-31 14:03:06 ----A---- C:\WINDOWS\Alcrmv.exe
2012-08-31 13:37:50 ----SHD---- C:\RECYCLER
2012-08-31 13:27:23 ----N---- C:\WINDOWS\system32\nvuide.exe
2012-08-31 13:26:52 ----D---- C:\Program Files\Common Files\InstallShield
2012-08-31 13:24:17 ----D---- C:\Program Files\NVIDIA Corporation
2012-08-31 13:23:44 ----D---- C:\NVIDIA
2012-08-31 13:20:54 ----D---- C:\MyDrivers
2012-08-31 13:20:11 ----A---- C:\WINDOWS\system32\wpa.bak
2012-08-31 13:16:00 ----A---- C:\WINDOWS\system32\h323log.txt
2012-08-31 13:12:14 ----A---- C:\WINDOWS\system32\drivers\audstub.sys
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\NvRCoZht.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\NvRCoZhc.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\NvRCoTr.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\NvRCoTh.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\NvRCoSv.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\NvRCoSl.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\NvRCoSk.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\NvRCoRu.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\NvRCoPtb.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\NvRCoPt.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\NvRCoPl.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\NvRCoNo.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\NvRCoNl.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\NvRCoKo.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\NvRCoJa.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\NvRCoIt.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\NvRCoHu.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\NvRCoHe.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\NvRCoFr.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\NvRCoFi.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\NvRCoEsm.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\NvRCoEs.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\NvRCoENU.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\NvRCoEng.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\NvRCoEl.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\NvRCoDe.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\NvRCoDa.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\NvRCoCs.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\NvRCoAr.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\nvraiins.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\nvraidco.dll
2012-08-31 13:12:08 ----RA---- C:\WINDOWS\system32\drivers\nvgts.sys
2012-08-31 13:12:07 ----D---- C:\WINDOWS\system32\ReinstallBackups
2012-08-31 13:11:54 ----RA---- C:\WINDOWS\system32\fdco1ins.dll
2012-08-31 13:11:50 ----RA---- C:\WINDOWS\system32\bdco1ins.dll
2012-08-31 13:11:30 ----A---- C:\WINDOWS\system32\NVUNINST.EXE
2012-08-31 13:11:29 ----A---- C:\WINDOWS\system32\drivers\redbook.sys
2012-08-31 13:10:46 ----A---- C:\WINDOWS\system32\usbui.dll
2012-08-31 13:09:42 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2012-08-31 13:09:41 ----SHD---- C:\WINDOWS\Installer
2012-08-31 13:09:41 ----D---- C:\Program Files\Common Files\ODBC
2012-08-31 13:09:41 ----A---- C:\WINDOWS\ODBCINST.INI
2012-08-31 13:09:38 ----D---- C:\Program Files\Common Files\SpeechEngines
2012-08-31 13:09:38 ----D---- C:\Program Files\Common Files\Microsoft Shared
2012-08-31 13:09:37 ----RD---- C:\Program Files
2012-08-31 13:09:37 ----D---- C:\Program Files\Common Files
2012-08-31 13:09:35 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2012-08-31 13:09:35 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2012-08-31 13:09:35 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2012-08-31 13:09:33 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2012-08-31 13:09:33 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2012-08-31 13:09:33 ----RA---- C:\WINDOWS\system32\kbdur.dll
2012-08-31 13:09:33 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2012-08-31 13:09:33 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2012-08-31 13:09:33 ----RA---- C:\WINDOWS\system32\kbdru.dll
2012-08-31 13:09:33 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2012-08-31 13:09:33 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2012-08-31 13:09:33 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2012-08-31 13:09:33 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2012-08-31 13:09:33 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2012-08-31 13:09:33 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2012-08-31 13:09:31 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2012-08-31 13:09:31 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2012-08-31 13:09:31 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2012-08-31 13:09:31 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2012-08-31 13:09:31 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2012-08-31 13:09:31 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2012-08-31 13:09:31 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2012-08-31 13:09:30 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2012-08-31 13:09:30 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2012-08-31 13:09:30 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2012-08-31 13:09:30 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2012-08-31 13:09:30 ----RA---- C:\WINDOWS\system32\kbdest.dll
2012-08-31 13:09:27 ----A---- C:\WINDOWS\system32\kbdsl1.dll
2012-08-31 13:09:27 ----A---- C:\WINDOWS\system32\kbdsl.dll
2012-08-31 13:09:27 ----A---- C:\WINDOWS\system32\kbdro.dll
2012-08-31 13:09:27 ----A---- C:\WINDOWS\system32\kbdpl1.dll
2012-08-31 13:09:27 ----A---- C:\WINDOWS\system32\kbdpl.dll
2012-08-31 13:09:27 ----A---- C:\WINDOWS\system32\kbdhu1.dll
2012-08-31 13:09:27 ----A---- C:\WINDOWS\system32\kbdhu.dll
2012-08-31 13:09:26 ----A---- C:\WINDOWS\system32\kbdycl.dll
2012-08-31 13:09:26 ----A---- C:\WINDOWS\system32\kbdcr.dll
2012-08-31 13:09:26 ----A---- C:\WINDOWS\system32\KBDAL.DLL
2012-08-31 13:09:26 ----A---- C:\WINDOWS\system32\irclass.dll
2012-08-31 13:09:26 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2012-08-31 13:09:25 ----A---- C:\WINDOWS\system32\spxcoins.dll
2012-08-31 13:09:25 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2012-08-31 13:09:25 ----A---- C:\WINDOWS\system32\dgsetup.dll
2012-08-31 13:09:23 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2012-08-31 13:09:23 ----A---- C:\WINDOWS\TASKMAN.EXE
2012-08-31 13:09:23 ----A---- C:\WINDOWS\system32\drivers\irenum.sys
2012-08-31 13:09:23 ----A---- C:\WINDOWS\system32\batt.dll
2012-08-31 13:09:23 ----A---- C:\WINDOWS\notepad.exe
2012-08-31 13:09:22 ----A---- C:\WINDOWS\system32\storprop.dll
2012-08-31 13:09:15 ----ASH---- C:\Documents and Settings\All Users\Data aplikací\desktop.ini
2012-08-31 13:09:14 ----RA---- C:\WINDOWS\SET25.tmp
2012-08-31 13:09:12 ----RA---- C:\WINDOWS\SET8.tmp
2012-08-31 13:09:10 ----RA---- C:\WINDOWS\SET4.tmp
2012-08-31 13:09:09 ----RA---- C:\WINDOWS\SET3.tmp
2012-08-31 13:09:04 ----D---- C:\WINDOWS\system32\CatRoot2
2012-08-31 13:09:04 ----D---- C:\WINDOWS\system32\CatRoot
2012-08-31 13:08:58 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2012-08-31 13:08:50 ----A---- C:\WINDOWS\system32\devcon_x64.exe
2012-08-31 13:08:36 ----SHD---- C:\System Volume Information
2012-08-31 13:08:36 ----D---- C:\Documents and Settings
2012-08-31 13:08:36 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2012-08-31 13:07:52 ----A---- C:\WINDOWS\UPGRADE.TXT
2012-08-31 13:07:40 ----SH---- C:\boot.ini
2012-08-31 13:04:04 ----RSD---- C:\WINDOWS\assembly
2012-08-31 13:04:04 ----D---- C:\WINDOWS\Microsoft.NET
2012-08-31 13:04:03 ----D---- C:\WINDOWS\system32\URTTemp
2012-08-31 13:01:04 ----RSHDC---- C:\WINDOWS\system32\dllcache
2012-08-31 13:01:04 ----RSD---- C:\WINDOWS\Fonts
2012-08-31 13:01:04 ----RD---- C:\WINDOWS\Web
2012-08-31 13:01:04 ----HD---- C:\WINDOWS\inf
2012-08-31 13:01:04 ----D---- C:\WINDOWS\WinSxS
2012-08-31 13:01:04 ----D---- C:\WINDOWS\twain_32
2012-08-31 13:01:04 ----D---- C:\WINDOWS\Temp
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\wins
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\wbem
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\usmt
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\spool
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\ShellExt
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\Setup
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\ras
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\oobe
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\npp
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\mui
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\inetsrv
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\IME
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\icsxml
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\ias
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\export
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\drivers\etc
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\drivers\disdn
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\drivers
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\dhcp
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\config
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\3com_dmi
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\3076
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\2052
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\1054
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\1042
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\1041
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\1037
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\1033
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\1031
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\1029
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\1028
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32\1025
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system32
2012-08-31 13:01:04 ----D---- C:\WINDOWS\system
2012-08-31 13:01:04 ----D---- C:\WINDOWS\security
2012-08-31 13:01:04 ----D---- C:\WINDOWS\Resources
2012-08-31 13:01:04 ----D---- C:\WINDOWS\repair
2012-08-31 13:01:04 ----D---- C:\WINDOWS\Provisioning
2012-08-31 13:01:04 ----D---- C:\WINDOWS\pchealth
2012-08-31 13:01:04 ----D---- C:\WINDOWS\PeerNet
2012-08-31 13:01:04 ----D---- C:\WINDOWS\mui
2012-08-31 13:01:04 ----D---- C:\WINDOWS\msapps
2012-08-31 13:01:04 ----D---- C:\WINDOWS\msagent
2012-08-31 13:01:04 ----D---- C:\WINDOWS\Media
2012-08-31 13:01:04 ----D---- C:\WINDOWS\java
2012-08-31 13:01:04 ----D---- C:\WINDOWS\ime
2012-08-31 13:01:04 ----D---- C:\WINDOWS\Help
2012-08-31 13:01:04 ----D---- C:\WINDOWS\ehome
2012-08-31 13:01:04 ----D---- C:\WINDOWS\Driver Cache
2012-08-31 13:01:04 ----D---- C:\WINDOWS\Debug
2012-08-31 13:01:04 ----D---- C:\WINDOWS\Cursors
2012-08-31 13:01:04 ----D---- C:\WINDOWS\Connection Wizard
2012-08-31 13:01:04 ----D---- C:\WINDOWS\Config
2012-08-31 13:01:04 ----D---- C:\WINDOWS\AppPatch
2012-08-31 13:01:04 ----D---- C:\WINDOWS\addins
2012-08-31 13:01:04 ----D---- C:\WINDOWS
2012-08-31 13:01:04 ----ASH---- C:\pagefile.sys
2012-08-31 12:55:08 ----A---- C:\WINDOWS\system32\TURegOpt.exe
2012-08-31 12:55:02 ----D---- C:\Documents and Settings\ferda\Data aplikací\TuneUp Software
2012-08-31 12:54:55 ----D---- C:\Program Files\TuneUp Utilities 2012
2012-08-31 12:54:46 ----D---- C:\Documents and Settings\All Users\Data aplikací\TuneUp Software
2012-08-31 12:54:34 ----SHD---- C:\Documents and Settings\All Users\Data aplikací\{32364CEA-7855-4A3C-B674-53D8E9B97936}
2012-08-31 12:54:34 ----HD---- C:\Documents and Settings\All Users\Data aplikací\Common Files
2012-08-31 12:40:08 ----D---- C:\Documents and Settings\ferda\Data aplikací\Identities
2012-08-31 12:40:07 ----HD---- C:\Program Files\Uninstall Information
2012-08-31 12:40:01 ----ASH---- C:\Documents and Settings\ferda\Data aplikací\desktop.ini
2012-08-31 12:40:00 ----SD---- C:\Documents and Settings\ferda\Data aplikací\Microsoft
2012-08-31 11:24:15 ----D---- C:\WINDOWS\SoftwareDistribution
2012-08-31 11:24:14 ----SD---- C:\WINDOWS\system32\Microsoft
2012-08-31 11:24:14 ----A---- C:\WINDOWS\SchedLgU.Txt
2012-08-31 11:23:01 ----AS---- C:\WINDOWS\bootstat.dat
2012-08-31 11:21:14 ----D---- C:\WINDOWS\system32\xircom
2012-08-31 11:21:14 ----D---- C:\Program Files\xerox
2012-08-31 11:21:14 ----D---- C:\Program Files\microsoft frontpage
2012-08-31 11:21:01 ----HD---- C:\WINDOWS\$hf_mig$
2012-08-31 11:20:47 ----RASH---- C:\MSDOS.SYS
2012-08-31 11:20:47 ----RASH---- C:\IO.SYS
2012-08-31 11:20:47 ----A---- C:\WINDOWS\control.ini
2012-08-31 11:20:47 ----A---- C:\CONFIG.SYS
2012-08-31 11:20:47 ----A---- C:\AUTOEXEC.BAT
2012-08-31 11:20:30 ----A---- C:\WINDOWS\system32\mapi32.dll
2012-08-31 11:19:47 ----SD---- C:\WINDOWS\Downloaded Program Files
2012-08-31 11:19:47 ----RD---- C:\WINDOWS\Offline Web Pages
2012-08-31 11:19:38 ----HD---- C:\Program Files\WindowsUpdate
2012-08-31 11:19:35 ----D---- C:\Program Files\Online Services
2012-08-31 11:19:22 ----D---- C:\WINDOWS\system32\DirectX
2012-08-31 11:19:04 ----A---- C:\WINDOWS\system32\atrace.dll
2012-08-31 11:19:02 ----A---- C:\WINDOWS\system32\desktop.ini
2012-08-31 11:19:01 ----A---- C:\WINDOWS\desktop.ini
2012-08-31 11:18:56 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2012-08-31 11:18:54 ----D---- C:\Program Files\Common Files\Services
2012-08-31 11:18:54 ----A---- C:\WINDOWS\system32\acctres.dll
2012-08-31 11:18:52 ----SD---- C:\WINDOWS\Tasks
2012-08-31 11:18:52 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2012-08-31 11:18:51 ----D---- C:\Program Files\Common Files\MSSoap
2012-08-31 11:18:47 ----D---- C:\WINDOWS\srchasst
2012-08-31 11:18:46 ----D---- C:\WINDOWS\system32\Macromed
2012-08-31 11:18:44 ----A---- C:\WINDOWS\system32\wuweb.dll
2012-08-31 11:18:44 ----A---- C:\WINDOWS\system32\wucltui.dll
2012-08-31 11:18:44 ----A---- C:\WINDOWS\system32\wuauserv.dll
2012-08-31 11:18:44 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2012-08-31 11:18:43 ----A---- C:\WINDOWS\system32\wups.dll
2012-08-31 11:18:43 ----A---- C:\WINDOWS\system32\wuaueng.dll
2012-08-31 11:18:43 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2012-08-31 11:18:43 ----A---- C:\WINDOWS\system32\wuauclt.exe
2012-08-31 11:18:43 ----A---- C:\WINDOWS\system32\wuapi.dll
2012-08-31 11:18:43 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2012-08-31 11:18:43 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2012-08-31 11:18:43 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2012-08-31 11:18:42 ----A---- C:\WINDOWS\system32\qmgr.dll
2012-08-31 11:18:39 ----D---- C:\Program Files\Movie Maker
2012-08-31 11:18:36 ----A---- C:\WINDOWS\system32\safrslv.dll
2012-08-31 11:18:36 ----A---- C:\WINDOWS\system32\safrdm.dll
2012-08-31 11:18:36 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2012-08-31 11:18:36 ----A---- C:\WINDOWS\system32\racpldlg.dll
2012-08-31 11:18:32 ----D---- C:\WINDOWS\system32\Restore
2012-08-31 11:18:32 ----A---- C:\WINDOWS\system32\srsvc.dll
2012-08-31 11:18:32 ----A---- C:\WINDOWS\system32\srrstr.dll
2012-08-31 11:18:32 ----A---- C:\WINDOWS\system32\fltmc.exe
2012-08-31 11:18:32 ----A---- C:\WINDOWS\system32\fltlib.dll
2012-08-31 11:18:32 ----A---- C:\WINDOWS\system32\drivers\fltmgr.sys
2012-08-31 11:18:31 ----A---- C:\WINDOWS\system32\srclient.dll
2012-08-31 11:18:31 ----A---- C:\WINDOWS\system32\mnmdd.dll
2012-08-31 11:18:31 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2012-08-31 11:18:31 ----A---- C:\WINDOWS\system32\ils.dll
2012-08-31 11:18:31 ----A---- C:\WINDOWS\system32\drivers\sr.sys
2012-08-31 11:18:30 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2012-08-31 11:18:30 ----A---- C:\WINDOWS\system32\msconf.dll
2012-08-31 11:18:30 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2012-08-31 11:18:28 ----D---- C:\Program Files\NetMeeting
2012-08-31 11:18:28 ----A---- C:\WINDOWS\system32\msoert2.dll
2012-08-31 11:18:28 ----A---- C:\WINDOWS\system32\msoeacct.dll
2012-08-31 11:18:27 ----A---- C:\WINDOWS\system32\inetres.dll
2012-08-31 11:18:27 ----A---- C:\WINDOWS\system32\inetcomm.dll
2012-08-31 11:18:25 ----D---- C:\Program Files\Outlook Express
2012-08-31 11:18:25 ----A---- C:\WINDOWS\system32\schedsvc.dll
2012-08-31 11:18:24 ----A---- C:\WINDOWS\system32\mstinit.exe
2012-08-31 11:18:24 ----A---- C:\WINDOWS\system32\mstask.dll
2012-08-31 11:18:24 ----A---- C:\WINDOWS\system32\isign32.dll
2012-08-31 11:18:24 ----A---- C:\WINDOWS\system32\inetcfg.dll
2012-08-31 11:18:24 ----A---- C:\WINDOWS\system32\icwphbk.dll
2012-08-31 11:18:24 ----A---- C:\WINDOWS\system32\icwdial.dll
2012-08-31 11:18:19 ----D---- C:\Program Files\Common Files\System
2012-08-31 11:18:18 ----D---- C:\Program Files\Internet Explorer
2012-08-31 11:17:55 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2012-08-31 11:17:47 ----D---- C:\Program Files\ComPlus Applications
2012-08-31 11:17:45 ----A---- C:\WINDOWS\vbaddin.ini
2012-08-31 11:17:45 ----A---- C:\WINDOWS\vb.ini
2012-08-31 11:17:41 ----D---- C:\WINDOWS\Registration
2012-08-31 11:17:35 ----D---- C:\Program Files\Windows Media Player
2012-08-31 11:17:30 ----D---- C:\Program Files\Messenger
2012-08-31 11:17:27 ----D---- C:\Program Files\MSN Gaming Zone
2012-08-31 11:17:27 ----A---- C:\WINDOWS\system32\write.exe
2012-08-31 11:17:20 ----A---- C:\WINDOWS\system32\sndvol32.exe
2012-08-31 11:17:20 ----A---- C:\WINDOWS\system32\hticons.dll
2012-08-31 11:17:20 ----A---- C:\WINDOWS\system32\avwav.dll
2012-08-31 11:17:20 ----A---- C:\WINDOWS\system32\avtapi.dll
2012-08-31 11:17:20 ----A---- C:\WINDOWS\system32\avmeter.dll
2012-08-31 11:17:19 ----A---- C:\WINDOWS\system32\winchat.exe
2012-08-31 11:17:13 ----A---- C:\WINDOWS\system32\charmap.exe
2012-08-31 11:17:13 ----A---- C:\WINDOWS\system32\getuname.dll
2012-08-31 11:17:13 ----A---- C:\WINDOWS\system32\calc.exe
2012-08-31 11:17:12 ----A---- C:\WINDOWS\system32\winmine.exe
2012-08-31 11:17:12 ----A---- C:\WINDOWS\system32\sol.exe
2012-08-31 11:17:12 ----A---- C:\WINDOWS\system32\reset.exe
2012-08-31 11:17:12 ----A---- C:\WINDOWS\system32\mshearts.exe
2012-08-31 11:17:12 ----A---- C:\WINDOWS\system32\freecell.exe
2012-08-31 11:17:11 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2012-08-31 11:17:11 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2012-08-31 11:17:11 ----A---- C:\WINDOWS\system32\tslabels.ini
2012-08-31 11:17:11 ----A---- C:\WINDOWS\system32\tskill.exe
2012-08-31 11:17:11 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2012-08-31 11:17:11 ----A---- C:\WINDOWS\system32\tscon.exe
2012-08-31 11:17:11 ----A---- C:\WINDOWS\system32\shadow.exe
2012-08-31 11:17:11 ----A---- C:\WINDOWS\system32\rwinsta.exe
2012-08-31 11:17:11 ----A---- C:\WINDOWS\system32\regini.exe
2012-08-31 11:17:11 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2012-08-31 11:17:11 ----A---- C:\WINDOWS\system32\qwinsta.exe
2012-08-31 11:17:11 ----A---- C:\WINDOWS\system32\qappsrv.exe
2012-08-31 11:17:11 ----A---- C:\WINDOWS\system32\msg.exe
2012-08-31 11:17:11 ----A---- C:\WINDOWS\system32\logoff.exe
2012-08-31 11:17:10 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2012-08-31 11:17:10 ----A---- C:\WINDOWS\system32\mtxex.dll
2012-08-31 11:17:10 ----A---- C:\WINDOWS\system32\mtxdm.dll
2012-08-31 11:17:10 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2012-08-31 11:17:10 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2012-08-31 11:17:10 ----A---- C:\WINDOWS\system32\cdmodem.dll
2012-08-31 11:17:09 ----A---- C:\WINDOWS\system32\stclient.dll
2012-08-31 11:17:09 ----A---- C:\WINDOWS\system32\comsnap.dll
2012-08-31 11:17:09 ----A---- C:\WINDOWS\system32\comrepl.dll
2012-08-31 11:17:09 ----A---- C:\WINDOWS\system32\comaddin.dll
2012-08-31 11:17:05 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2012-08-31 11:17:04 ----A---- C:\WINDOWS\system32\sndrec32.exe
2012-08-31 11:17:04 ----A---- C:\WINDOWS\system32\mplay32.exe
2012-08-31 11:17:04 ----A---- C:\WINDOWS\system32\accwiz.exe
2012-08-31 11:17:03 ----D---- C:\Program Files\Windows NT
2012-08-31 11:17:03 ----A---- C:\WINDOWS\system32\mspaint.exe
2012-08-31 11:17:03 ----A---- C:\WINDOWS\system32\hypertrm.dll
2012-08-31 11:17:03 ----A---- C:\WINDOWS\system32\clipbrd.exe
2012-08-31 11:17:02 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2012-08-31 11:17:02 ----A---- C:\WINDOWS\system32\spider.exe
2012-08-31 11:17:02 ----A---- C:\WINDOWS\system32\mstscax.dll
2012-08-31 11:17:02 ----A---- C:\WINDOWS\system32\mstsc.exe
2012-08-31 11:17:02 ----A---- C:\WINDOWS\system32\drivers\tdtcp.sys
2012-08-31 11:17:02 ----A---- C:\WINDOWS\system32\drivers\tdpipe.sys
2012-08-31 11:17:02 ----A---- C:\WINDOWS\system32\drivers\rdpwd.sys
2012-08-31 11:17:01 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2012-08-31 11:17:01 ----A---- C:\WINDOWS\system32\termsrv.dll
2012-08-31 11:17:01 ----A---- C:\WINDOWS\system32\sessmgr.exe
2012-08-31 11:17:01 ----A---- C:\WINDOWS\system32\remotepg.dll
2012-08-31 11:17:01 ----A---- C:\WINDOWS\system32\rdshost.exe
2012-08-31 11:17:01 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2012-08-31 11:17:01 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2012-08-31 11:17:01 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2012-08-31 11:17:01 ----A---- C:\WINDOWS\system32\rdpclip.exe
2012-08-31 11:17:01 ----A---- C:\WINDOWS\system32\rdchost.dll
2012-08-31 11:17:01 ----A---- C:\WINDOWS\system32\qprocess.exe
2012-08-31 11:17:00 ----D---- C:\WINDOWS\system32\MsDtc
2012-08-31 11:17:00 ----A---- C:\WINDOWS\system32\mtxoci.dll
2012-08-31 11:17:00 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2012-08-31 11:17:00 ----A---- C:\WINDOWS\system32\msdtctm.dll
2012-08-31 11:17:00 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2012-08-31 11:17:00 ----A---- C:\WINDOWS\system32\icaapi.dll
2012-08-31 11:17:00 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2012-08-31 11:16:59 ----A---- C:\WINDOWS\system32\xolehlp.dll
2012-08-31 11:16:59 ----A---- C:\WINDOWS\system32\msdtclog.dll
2012-08-31 11:16:59 ----A---- C:\WINDOWS\system32\msdtc.exe
2012-08-31 11:16:58 ----D---- C:\WINDOWS\system32\Com
2012-08-31 11:16:58 ----A---- C:\WINDOWS\system32\colbact.dll
2012-08-31 11:16:58 ----A---- C:\WINDOWS\system32\clbcatex.dll
2012-08-31 11:16:58 ----A---- C:\WINDOWS\system32\catsrvut.dll
2012-08-31 11:16:58 ----A---- C:\WINDOWS\system32\catsrvps.dll
2012-08-31 11:16:58 ----A---- C:\WINDOWS\system32\catsrv.dll
2012-08-31 11:16:57 ----A---- C:\WINDOWS\system32\comuid.dll
2012-08-31 11:16:57 ----A---- C:\WINDOWS\system32\comsvcs.dll
2012-08-31 11:16:57 ----A---- C:\WINDOWS\system32\clbcatq.dll
2012-08-31 11:16:52 ----A---- C:\WINDOWS\system32\servdeps.dll
2012-08-31 11:16:52 ----A---- C:\WINDOWS\system32\mmfutil.dll
2012-08-31 11:16:51 ----A---- C:\WINDOWS\system32\licwmi.dll
2012-08-31 11:16:51 ----A---- C:\WINDOWS\system32\cmprops.dll
2012-08-31 11:16:47 ----A---- C:\WINDOWS\system32\drivers\termdd.sys
2012-08-31 11:16:47 ----A---- C:\WINDOWS\system32\drivers\rdpdr.sys

======List of files/folders modified in the last 1 month======

2012-08-31 13:09:37 ----A---- C:\WINDOWS\system.ini
2012-08-31 11:20:47 ----A---- C:\WINDOWS\win.ini
2012-08-31 11:20:20 ----ASH---- C:\WINDOWS\fonts\desktop.ini

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 nvata;nvata; C:\WINDOWS\system32\DRIVERS\nvata.sys [2006-04-24 100736]
R0 nvgts;nvgts; C:\WINDOWS\system32\DRIVERS\nvgts.sys [2008-11-12 145952]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2011-03-04 45648]
R0 SmartDefragDriver;SmartDefragDriver; C:\WINDOWS\System32\Drivers\SmartDefragDriver.sys [2010-11-26 14776]
R0 snapman;Acronis Snapshots Manager; C:\WINDOWS\system32\DRIVERS\snapman.sys [2012-08-31 129248]
R0 tdrpman;Acronis Try&Decide and Restore Points filter; C:\WINDOWS\system32\DRIVERS\tdrpman.sys [2012-08-31 368736]
R0 timounter;Acronis True Image Backup Archive Explorer; C:\WINDOWS\system32\DRIVERS\timntr.sys [2012-08-31 441760]
R1 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2012-03-14 160816]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2012-03-14 120152]
R1 epfwtdi;epfwtdi; C:\WINDOWS\system32\DRIVERS\epfwtdi.sys [2012-03-14 61936]
R2 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2012-03-14 148504]
R2 tifsfilter;Acronis True Image FS Filter; C:\WINDOWS\system32\DRIVERS\tifsfilt.sys [2012-08-31 44384]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2008-09-24 4122368]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2009-09-30 3565056]
R3 Epfwndis;Eset Personal Firewall; C:\WINDOWS\system32\DRIVERS\Epfwndis.sys [2012-03-14 40336]
R3 NVENETFD;NVIDIA nForce 10/100/1000 Mbps Ethernet ; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2008-08-01 54784]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2008-08-01 22016]
R3 nvoclock;NVIDIA Enthusiasts Platform KDM; C:\WINDOWS\system32\DRIVERS\nvoclock.sys [2009-09-15 38248]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesDriver32.sys []
R3 usbstor;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AcrSch2Svc;Acronis Scheduler2 Service; C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe [2007-10-23 427288]
R2 AdvancedSystemCareService5;Advanced SystemCare Service 5; C:\Program Files\IObit\Advanced SystemCare 5\ASCService.exe [2012-05-26 913792]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2009-09-30 602112]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2012-03-07 913144]
R2 KSS;Kaspersky Security Scan Service; C:\Program Files\Kaspersky Lab\Kaspersky Security Scan 2.0\kss.exe [2012-04-25 202296]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2008-07-30 73728]
R2 nTuneService;Performance Service; C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe [2011-09-19 192832]
R2 TryAndDecideService;Acronis Try And Decide Service; C:\Program Files\Common Files\Acronis\Fomatik\TrueImageTryStartService.exe [2007-10-23 495832]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe [2012-05-29 1528672]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2009-09-29 593920]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2012-08-25 114144]
S3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2008-01-22 275752]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [2012-01-18 155320]
S3 WinRM;Windows Remote Management (WS-Management); C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Re: poradite mI???

Napsal: 01 zář 2012 10:56
od Rudy
Zdravím!
Udělejte kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.

Re: poradite mI???

Napsal: 01 zář 2012 16:30
od freelavina
neco to naslo ...,mam tu ty logy dva ....

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware) 1.62.0.1300
www.malwarebytes.org

Verze databáze: v2012.09.01.04

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
ferda :: FRANTISE-AF522D [administrátor]

Ochrana: Povolena

1.9.2012 16:40:11
mbam-log-2012-09-01 (16-40-11).txt

Typ: Úplná kontrola (C:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 211932
Uplynulý čas: 40 minut, 23 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 2
HKCR\scrfile\shell\open\command| (Broken.OpenCommand) -> Špatný: (NOTEPAD.EXE "%1") Dobrý: ("%1" /S) -> Umístnění do karantény a opravení se zdařilo.
HKCR\regfile\shell\open\command| (Broken.OpenCommand) -> Špatný: (NOTEPAD.EXE "%1") Dobrý: (regedit.exe "%1") -> Umístnění do karantény a opravení se zdařilo.

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)

(konec)

Re: poradite mI???

Napsal: 01 zář 2012 16:31
od freelavina
2012/09/01 16:37:38 +0200 FRANTISE-AF522D ferda MESSAGE Starting protection
2012/09/01 16:37:48 +0200 FRANTISE-AF522D ferda MESSAGE Protection started successfully
2012/09/01 16:37:51 +0200 FRANTISE-AF522D ferda MESSAGE Starting IP protection
2012/09/01 16:38:16 +0200 FRANTISE-AF522D ferda MESSAGE IP Protection started successfully
2012/09/01 16:38:41 +0200 FRANTISE-AF522D ferda MESSAGE Starting database refresh
2012/09/01 16:38:41 +0200 FRANTISE-AF522D ferda MESSAGE Stopping IP protection
2012/09/01 16:38:41 +0200 FRANTISE-AF522D ferda MESSAGE IP Protection stopped
2012/09/01 16:38:52 +0200 FRANTISE-AF522D ferda MESSAGE Database refreshed successfully
2012/09/01 16:38:52 +0200 FRANTISE-AF522D ferda MESSAGE Starting IP protection
2012/09/01 16:39:33 +0200 FRANTISE-AF522D ferda MESSAGE IP Protection started successfully
2012/09/01 16:40:45 +0200 FRANTISE-AF522D ferda IP-BLOCK 85.159.233.9 (Type: outgoing)
2012/09/01 16:40:47 +0200 FRANTISE-AF522D ferda IP-BLOCK 85.159.233.9 (Type: outgoing)
2012/09/01 16:40:54 +0200 FRANTISE-AF522D ferda IP-BLOCK 85.159.233.9 (Type: outgoing)
2012/09/01 16:40:57 +0200 FRANTISE-AF522D ferda IP-BLOCK 85.159.233.9 (Type: outgoing)
2012/09/01 16:41:00 +0200 FRANTISE-AF522D ferda IP-BLOCK 85.159.233.9 (Type: outgoing)
2012/09/01 16:41:06 +0200 FRANTISE-AF522D ferda IP-BLOCK 85.159.233.9 (Type: outgoing)
2012/09/01 16:41:18 +0200 FRANTISE-AF522D ferda IP-BLOCK 85.159.233.9 (Type: outgoing)
2012/09/01 16:41:18 +0200 FRANTISE-AF522D ferda IP-BLOCK 46.17.97.192 (Type: outgoing)
2012/09/01 16:41:21 +0200 FRANTISE-AF522D ferda IP-BLOCK 85.159.233.9 (Type: outgoing)
2012/09/01 16:41:21 +0200 FRANTISE-AF522D ferda IP-BLOCK 46.17.97.192 (Type: outgoing)
2012/09/01 16:41:27 +0200 FRANTISE-AF522D ferda IP-BLOCK 85.159.233.9 (Type: outgoing)
2012/09/01 16:41:27 +0200 FRANTISE-AF522D ferda IP-BLOCK 46.17.97.192 (Type: outgoing)
2012/09/01 16:41:29 +0200 FRANTISE-AF522D ferda MESSAGE Stopping IP protection
2012/09/01 16:41:29 +0200 FRANTISE-AF522D ferda MESSAGE IP Protection stopped

Re: poradite mI???

Napsal: 01 zář 2012 16:53
od Rudy
MBAM něco smazal. To ostatní vyadá OK. Kde je tedy problém?

Re: poradite mI???

Napsal: 01 zář 2012 18:08
od freelavina
eset mi porad hlasi Detekováno zneužití skrytého kanálu v ICMP paketu ,tak nevim

Re: poradite mI???

Napsal: 01 zář 2012 18:41
od Rudy
Je tam nějaká IP adresa?

Re: poradite mI???

Napsal: 24 zář 2012 00:18
od motji
Jak to tu vypadá? :)