Prosím o preventivní kontrolu
Napsal: 13 říj 2012 17:29
Dobrý den,
prosím Vás o preventivní kontrolu logu.
Díky moc
Logfile of random's system information tool 1.09 (written by random/random)
Run by doma at 2012-10-13 18:20:34
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 13 GB (30%) free of 45 GB
Total RAM: 2046 MB (55% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:22:05, on 13.10.2012
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16450)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Programy\Ochrana PC\COMODO\COMODO Internet Security\cfp.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\system32\conime.exe
C:\Programy\Ochrana PC\RSIT\RSIT.exe
C:\Users\doma\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\doma\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\doma\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\doma\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\doma\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\doma\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\doma\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\doma.exe
C:\Users\doma\AppData\Local\Google\Chrome\Application\chrome.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programy\Java\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Programy\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programy\Java\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Programy\Ochrana PC\COMODO\COMODO Internet Security\cfp.exe" -h
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Programy\MICROS~1\Office14\EXCEL.EXE/3000
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\Windows\system32\guard32.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Programy\Ochrana PC\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
--
End of file - 4679 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3530636788-987171459-3397260818-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3530636788-987171459-3397260818-1000UA.job
=========Mozilla firefox=========
ProfilePath - C:\Users\doma\AppData\Roaming\Mozilla\Firefox\Profiles\08ns24fu.default
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
"{20a82645-c095-46ed-80e3-08825760534b}"=C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.7.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.7.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Programy\Java\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\Programy\MICROS~1\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Programy\MICROS~1\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.65\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.65\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
C:\Programy\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Programy\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
C:\Programy\Mozilla Firefox\plugins\
NPOFF12.DLL
nppdf32.dll
npwachk.dll
C:\Programy\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-06-06 63912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Programy\Java\bin\ssv.dll [2012-10-11 449512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-08-21 1227224]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\Programy\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Programy\Java\bin\jp2ssv.dll [2012-10-11 157672]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-08-21 1227224]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"COMODO Internet Security"=C:\Programy\Ochrana PC\COMODO\COMODO Internet Security\cfp.exe [2012-03-11 6749512]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2012-08-21 4282728]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" C:\Windows\system32\guard32.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLUA"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2012-10-13 18:21:08 ----D---- C:\Program Files\trend micro
2012-10-13 18:20:34 ----D---- C:\rsit
2012-10-13 11:37:09 ----D---- C:\Program Files\Common Files\DESIGNER
2012-10-13 11:36:52 ----D---- C:\Windows\PCHEALTH
2012-10-13 11:34:40 ----D---- C:\Program Files\Microsoft Analysis Services
2012-10-13 11:33:59 ----D---- C:\ProgramData\Microsoft Help
2012-10-13 10:52:59 ----A---- C:\Windows\system32\XpsPrint.dll
2012-10-13 10:52:56 ----A---- C:\Windows\system32\DWrite.dll
2012-10-13 10:52:56 ----A---- C:\Windows\system32\d3d10warp.dll
2012-10-13 10:52:56 ----A---- C:\Windows\system32\d3d10_1core.dll
2012-10-13 10:52:55 ----A---- C:\Windows\system32\d3d10_1.dll
2012-10-13 10:52:55 ----A---- C:\Windows\system32\d2d1.dll
2012-10-13 08:28:38 ----D---- C:\Program Files\Microsoft.NET
2012-10-13 08:19:13 ----D---- C:\Program Files\Windows Portable Devices
2012-10-13 07:38:01 ----A---- C:\Windows\system32\UIAnimation.dll
2012-10-13 07:37:59 ----A---- C:\Windows\system32\UIRibbonRes.dll
2012-10-13 07:37:58 ----A---- C:\Windows\system32\UIRibbon.dll
2012-10-13 07:36:25 ----A---- C:\Windows\system32\WPDShextAutoplay.exe
2012-10-13 07:36:25 ----A---- C:\Windows\system32\BthMtpContextHandler.dll
2012-10-13 07:36:24 ----A---- C:\Windows\system32\wpdbusenum.dll
2012-10-13 07:36:18 ----A---- C:\Windows\system32\PortableDeviceConnectApi.dll
2012-10-13 07:36:11 ----A---- C:\Windows\system32\WPDSp.dll
2012-10-13 07:36:11 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2012-10-13 07:36:11 ----A---- C:\Windows\system32\wpdshext.dll
2012-10-13 07:36:11 ----A---- C:\Windows\system32\wpd_ci.dll
2012-10-13 07:36:11 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll
2012-10-13 07:36:11 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2012-10-13 07:36:11 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2012-10-13 07:36:11 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2012-10-13 07:31:12 ----A---- C:\Windows\system32\wmi.dll
2012-10-13 07:31:11 ----A---- C:\Windows\system32\imagehlp.dll
2012-10-13 07:31:11 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2012-10-13 07:18:33 ----A---- C:\Windows\system32\wininet.dll
2012-10-13 07:18:33 ----A---- C:\Windows\system32\urlmon.dll
2012-10-13 07:18:33 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2012-10-13 07:18:33 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2012-10-13 07:18:33 ----A---- C:\Windows\system32\msrating.dll
2012-10-13 07:18:33 ----A---- C:\Windows\system32\msls31.dll
2012-10-13 07:18:33 ----A---- C:\Windows\system32\mshtmler.dll
2012-10-13 07:18:33 ----A---- C:\Windows\system32\jsproxy.dll
2012-10-13 07:18:33 ----A---- C:\Windows\system32\ieui.dll
2012-10-13 07:18:33 ----A---- C:\Windows\system32\iesysprep.dll
2012-10-13 07:18:33 ----A---- C:\Windows\system32\iertutil.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\wextract.exe
2012-10-13 07:18:32 ----A---- C:\Windows\system32\webcheck.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\vbscript.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\url.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\mshtmled.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\mshtml.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\msfeeds.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\licmgr10.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\inseng.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\iexpress.exe
2012-10-13 07:18:32 ----A---- C:\Windows\system32\iesetup.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\iernonce.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\ieframe.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\iedkcs32.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\ieapfltr.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\ieapfltr.dat
2012-10-13 07:18:32 ----A---- C:\Windows\system32\ie4uinit.exe
2012-10-13 07:18:32 ----A---- C:\Windows\system32\icardie.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\dxtrans.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\dxtmsft.dll
2012-10-13 07:18:31 ----A---- C:\Windows\system32\pngfilt.dll
2012-10-13 07:18:31 ----A---- C:\Windows\system32\occache.dll
2012-10-13 07:18:31 ----A---- C:\Windows\system32\mshta.exe
2012-10-13 07:18:31 ----A---- C:\Windows\system32\msfeedssync.exe
2012-10-13 07:18:31 ----A---- C:\Windows\system32\msfeedsbs.dll
2012-10-13 07:18:31 ----A---- C:\Windows\system32\jscript9.dll
2012-10-13 07:18:31 ----A---- C:\Windows\system32\jscript.dll
2012-10-13 07:18:31 ----A---- C:\Windows\system32\imgutil.dll
2012-10-13 07:18:31 ----A---- C:\Windows\system32\ieUnatt.exe
2012-10-13 07:18:31 ----A---- C:\Windows\system32\iepeers.dll
2012-10-13 07:18:31 ----A---- C:\Windows\system32\ieakui.dll
2012-10-13 07:18:31 ----A---- C:\Windows\system32\ieaksie.dll
2012-10-13 07:18:31 ----A---- C:\Windows\system32\ieakeng.dll
2012-10-13 07:18:31 ----A---- C:\Windows\system32\IEAdvpack.dll
2012-10-13 07:18:31 ----A---- C:\Windows\system32\advpack.dll
2012-10-13 07:18:31 ----A---- C:\Windows\system32\admparse.dll
2012-10-13 07:17:47 ----A---- C:\Windows\system32\stobject.dll
2012-10-13 07:17:47 ----A---- C:\Windows\system32\shdocvw.dll
2012-10-13 07:17:47 ----A---- C:\Windows\system32\mfreadwrite.dll
2012-10-13 07:17:47 ----A---- C:\Windows\system32\mfps.dll
2012-10-13 07:17:47 ----A---- C:\Windows\system32\mfplat.dll
2012-10-13 07:17:47 ----A---- C:\Windows\system32\mfmp4src.dll
2012-10-13 07:17:47 ----A---- C:\Windows\system32\MFHEAACdec.dll
2012-10-13 07:17:47 ----A---- C:\Windows\system32\MFH264Dec.dll
2012-10-13 07:17:47 ----A---- C:\Windows\system32\mf.dll
2012-10-13 07:17:46 ----A---- C:\Windows\system32\XpsRasterService.dll
2012-10-13 07:17:46 ----A---- C:\Windows\system32\d3d10level9.dll
2012-10-13 07:17:45 ----A---- C:\Windows\system32\xpsservices.dll
2012-10-13 07:17:45 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2012-10-13 07:17:45 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2012-10-13 07:17:45 ----A---- C:\Windows\system32\OpcServices.dll
2012-10-13 07:17:45 ----A---- C:\Windows\system32\dxgi.dll
2012-10-13 07:17:45 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2012-10-13 07:17:45 ----A---- C:\Windows\system32\d3d10core.dll
2012-10-13 07:17:45 ----A---- C:\Windows\system32\d3d10.dll
2012-10-13 07:17:45 ----A---- C:\Windows\system32\cdd.dll
2012-10-13 07:17:07 ----A---- C:\Windows\system32\WMPhoto.dll
2012-10-13 07:17:07 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2012-10-13 07:17:07 ----A---- C:\Windows\system32\WindowsCodecs.dll
2012-10-13 07:17:07 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2012-10-13 07:17:07 ----A---- C:\Windows\system32\dxdiagn.dll
2012-10-13 07:17:07 ----A---- C:\Windows\system32\dxdiag.exe
2012-10-13 07:17:07 ----A---- C:\Windows\system32\d3d11.dll
2012-10-13 07:14:30 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2012-10-13 07:14:30 ----A---- C:\Windows\system32\PresentationHost.exe
2012-10-13 07:14:30 ----A---- C:\Windows\system32\netfxperf.dll
2012-10-13 07:14:30 ----A---- C:\Windows\system32\mscoree.dll
2012-10-13 07:14:30 ----A---- C:\Windows\system32\dfshim.dll
2012-10-13 07:07:54 ----D---- C:\Windows\system32\WindowsPowerShell
2012-10-13 07:06:11 ----A---- C:\Windows\system32\winrsmgr.dll
2012-10-13 07:05:47 ----A---- C:\Windows\system32\wsmprovhost.exe
2012-10-13 07:05:47 ----A---- C:\Windows\system32\winrshost.exe
2012-10-13 07:05:47 ----A---- C:\Windows\system32\winrs.exe
2012-10-13 07:05:45 ----A---- C:\Windows\system32\wsmplpxy.dll
2012-10-13 07:05:45 ----A---- C:\Windows\system32\winrssrv.dll
2012-10-13 07:05:43 ----A---- C:\Windows\system32\wecutil.exe
2012-10-13 07:05:43 ----A---- C:\Windows\system32\wecapi.dll
2012-10-13 07:05:42 ----A---- C:\Windows\system32\WsmRes.dll
2012-10-13 07:05:42 ----A---- C:\Windows\system32\wevtfwd.dll
2012-10-13 07:05:42 ----A---- C:\Windows\system32\wecsvc.dll
2012-10-13 07:05:41 ----A---- C:\Windows\system32\pwrshplugin.dll
2012-10-13 07:05:36 ----A---- C:\Windows\system32\winrm.vbs
2012-10-13 07:05:34 ----A---- C:\Windows\system32\WsmWmiPl.dll
2012-10-13 07:05:34 ----A---- C:\Windows\system32\WsmAuto.dll
2012-10-13 07:05:33 ----A---- C:\Windows\system32\WsmSvc.dll
2012-10-13 07:05:33 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
2012-10-13 07:05:33 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
2012-10-13 07:05:33 ----A---- C:\Windows\system32\winrscmd.dll
2012-10-13 06:54:07 ----A---- C:\Windows\system32\FntCache.dll
2012-10-13 06:53:52 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2012-10-13 05:48:28 ----A---- C:\Windows\system32\odbc32.dll
2012-10-13 05:44:31 ----A---- C:\Windows\system32\consent.exe
2012-10-13 05:39:20 ----A---- C:\Windows\system32\gameux.dll
2012-10-13 05:39:02 ----A---- C:\Windows\system32\Apphlpdm.dll
2012-10-13 05:38:52 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2012-10-13 05:22:53 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2012-10-13 05:22:50 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2012-10-13 05:22:47 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2012-10-13 05:10:55 ----A---- C:\Windows\system32\mfc40.dll
2012-10-13 05:10:49 ----A---- C:\Windows\system32\mfc40u.dll
2012-10-13 05:01:10 ----A---- C:\Windows\system32\srvsvc.dll
2012-10-13 05:00:40 ----A---- C:\Windows\system32\netevent.dll
2012-10-13 04:49:50 ----A---- C:\Windows\system32\drivers\srv.sys
2012-10-13 04:48:17 ----A---- C:\Windows\system32\drivers\partmgr.sys
2012-10-13 04:46:34 ----A---- C:\Windows\system32\ole32.dll
2012-10-13 04:44:44 ----A---- C:\Windows\system32\psisdecd.dll
2012-10-13 04:43:33 ----A---- C:\Windows\system32\shell32.dll
2012-10-13 04:35:14 ----A---- C:\Windows\system32\localspl.dll
2012-10-13 04:28:16 ----A---- C:\Windows\system32\mfc42u.dll
2012-10-13 04:28:11 ----A---- C:\Windows\system32\mfc42.dll
2012-10-13 04:15:44 ----A---- C:\Windows\system32\wmpmde.dll
2012-10-13 04:12:23 ----A---- C:\Windows\system32\sbe.dll
2012-10-13 04:12:18 ----A---- C:\Windows\system32\sbeio.dll
2012-10-13 04:01:47 ----A---- C:\Windows\system32\wmp.dll
2012-10-13 04:01:19 ----A---- C:\Windows\system32\wmploc.DLL
2012-10-13 03:49:24 ----A---- C:\Windows\system32\dnsapi.dll
2012-10-13 03:49:20 ----A---- C:\Windows\system32\dnsrslvr.dll
2012-10-13 03:49:18 ----A---- C:\Windows\system32\dnscacheugc.exe
2012-10-13 03:48:03 ----A---- C:\Windows\system32\MP4SDECD.DLL
2012-10-13 03:47:04 ----A---- C:\Windows\system32\t2embed.dll
2012-10-13 03:45:45 ----A---- C:\Windows\system32\shlwapi.dll
2012-10-13 03:37:39 ----A---- C:\Windows\system32\oleaccrc.dll
2012-10-13 03:37:38 ----A---- C:\Windows\system32\UIAutomationCore.dll
2012-10-13 03:37:37 ----A---- C:\Windows\system32\oleacc.dll
2012-10-13 03:37:34 ----A---- C:\Windows\system32\oleaut32.dll
2012-10-13 03:28:42 ----A---- C:\Windows\system32\ntdll.dll
2012-10-13 03:27:48 ----A---- C:\Windows\system32\drivers\tcpip.sys
2012-10-13 03:25:33 ----A---- C:\Windows\system32\drivers\dfsc.sys
2012-10-13 03:24:19 ----A---- C:\Windows\system32\drivers\afd.sys
2012-10-13 03:23:20 ----A---- C:\Windows\system32\sdclt.exe
2012-10-13 03:22:32 ----A---- C:\Windows\system32\winmm.dll
2012-10-13 03:22:30 ----A---- C:\Windows\system32\mciseq.dll
2012-10-13 03:20:47 ----A---- C:\Windows\system32\msvcrt.dll
2012-10-13 03:20:07 ----A---- C:\Windows\system32\netapi32.dll
2012-10-13 03:13:35 ----A---- C:\Windows\system32\drivers\bowser.sys
2012-10-13 03:12:18 ----A---- C:\Windows\system32\drivers\srv2.sys
2012-10-13 03:12:16 ----A---- C:\Windows\system32\drivers\srvnet.sys
2012-10-13 03:10:09 ----A---- C:\Windows\system32\usp10.dll
2012-10-13 03:08:40 ----A---- C:\Windows\system32\schedsvc.dll
2012-10-13 03:08:37 ----A---- C:\Windows\system32\taskschd.dll
2012-10-13 03:08:31 ----A---- C:\Windows\system32\wmicmiplugin.dll
2012-10-13 03:08:29 ----A---- C:\Windows\system32\taskeng.exe
2012-10-13 03:08:28 ----A---- C:\Windows\system32\taskcomp.dll
2012-10-13 03:06:30 ----A---- C:\Windows\system32\wintrust.dll
2012-10-13 03:03:28 ----A---- C:\Windows\system32\shsvcs.dll
2012-10-13 03:00:02 ----A---- C:\Windows\system32\spoolsv.exe
2012-10-13 02:59:08 ----A---- C:\Windows\system32\atmfd.dll
2012-10-13 02:59:05 ----A---- C:\Windows\system32\fontsub.dll
2012-10-13 02:59:02 ----A---- C:\Windows\system32\atmlib.dll
2012-10-13 02:57:16 ----A---- C:\Windows\system32\msxml3.dll
2012-10-13 02:57:15 ----A---- C:\Windows\system32\msxml6.dll
2012-10-13 02:56:44 ----A---- C:\Windows\system32\win32k.sys
2012-10-13 02:56:16 ----A---- C:\Windows\system32\iccvid.dll
2012-10-13 02:55:37 ----A---- C:\Windows\system32\asycfilt.dll
2012-10-13 02:54:24 ----A---- C:\Windows\system32\packager.dll
2012-10-13 02:50:59 ----A---- C:\Windows\system32\tzres.dll
2012-10-13 02:47:43 ----A---- C:\Windows\system32\EncDec.dll
2012-10-13 02:47:14 ----A---- C:\Windows\system32\rtutils.dll
2012-10-13 02:44:30 ----A---- C:\Windows\system32\crypt32.dll
2012-10-13 02:44:29 ----A---- C:\Windows\system32\cryptsvc.dll
2012-10-13 02:44:29 ----A---- C:\Windows\system32\cryptnet.dll
2012-10-13 02:41:41 ----A---- C:\Windows\system32\quartz.dll
2012-10-13 02:41:40 ----A---- C:\Windows\system32\qdvd.dll
2012-10-13 02:41:18 ----A---- C:\Windows\system32\csrsrv.dll
2012-10-13 02:38:03 ----A---- C:\Windows\system32\winsrv.dll
2012-10-13 02:37:35 ----A---- C:\Windows\system32\winhttp.dll
2012-10-13 02:37:07 ----A---- C:\Windows\system32\inetcomm.dll
2012-10-13 02:07:21 ----A---- C:\Windows\system32\kernel32.dll
2012-10-13 02:07:07 ----A---- C:\Windows\system32\mstscax.dll
2012-10-13 02:07:06 ----A---- C:\Windows\system32\mstsc.exe
2012-10-13 02:06:57 ----A---- C:\Windows\system32\xmllite.dll
2012-10-13 02:06:48 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2012-10-13 02:06:13 ----A---- C:\Windows\system32\comctl32.dll
2012-10-13 02:05:46 ----A---- C:\Windows\system32\schannel.dll
2012-10-13 02:05:45 ----A---- C:\Windows\system32\lsasrv.dll
2012-10-13 02:05:45 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2012-10-13 02:05:44 ----A---- C:\Windows\system32\secur32.dll
2012-10-13 02:05:44 ----A---- C:\Windows\system32\ncrypt.dll
2012-10-13 02:05:44 ----A---- C:\Windows\system32\lsass.exe
2012-10-13 02:05:28 ----A---- C:\Windows\system32\msshsq.dll
2012-10-13 02:05:18 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-10-13 02:05:18 ----A---- C:\Windows\system32\ntkrnlpa.exe
2012-10-13 02:03:21 ----A---- C:\Windows\system32\rdpencom.dll
2012-10-13 01:48:05 ----A---- C:\Windows\system32\wups2.dll
2012-10-13 01:48:05 ----A---- C:\Windows\system32\wucltux.dll
2012-10-13 01:48:05 ----A---- C:\Windows\system32\wuaueng.dll
2012-10-13 01:48:05 ----A---- C:\Windows\system32\wuauclt.exe
2012-10-13 01:47:40 ----A---- C:\Windows\system32\wups.dll
2012-10-13 01:47:40 ----A---- C:\Windows\system32\wudriver.dll
2012-10-13 01:47:40 ----A---- C:\Windows\system32\wuapi.dll
2012-10-13 01:47:29 ----A---- C:\Windows\system32\wuwebv.dll
2012-10-13 01:47:28 ----A---- C:\Windows\system32\wuapp.exe
2012-10-13 01:39:08 ----D---- C:\Windows\system32\vi-VN
2012-10-13 01:39:08 ----D---- C:\Windows\system32\eu-ES
2012-10-13 01:39:08 ----D---- C:\Windows\system32\ca-ES
2012-10-13 01:35:36 ----D---- C:\Windows\system32\SPReview
2012-10-13 01:18:04 ----A---- C:\Windows\system32\scavenge.dll
2012-10-13 01:17:35 ----A---- C:\Windows\system32\compcln.exe
2012-10-13 01:04:01 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2012-10-13 01:04:01 ----A---- C:\Windows\system32\SearchIndexer.exe
2012-10-13 01:04:01 ----A---- C:\Windows\system32\SearchFilterHost.exe
2012-10-13 01:04:00 ----A---- C:\Windows\system32\sdohlp.dll
2012-10-13 01:03:59 ----A---- C:\Windows\system32\samlib.dll
2012-10-13 01:03:59 ----A---- C:\Windows\system32\rtffilt.dll
2012-10-13 01:03:59 ----A---- C:\Windows\system32\rsaenh.dll
2012-10-13 01:03:58 ----A---- C:\Windows\system32\rpchttp.dll
2012-10-13 01:03:58 ----A---- C:\Windows\system32\rpcss.dll
2012-10-13 01:03:58 ----A---- C:\Windows\system32\riched20.dll
2012-10-13 01:03:58 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2012-10-13 01:03:58 ----A---- C:\Windows\system32\drivers\rmcast.sys
2012-10-13 01:03:57 ----A---- C:\Windows\system32\scrrun.dll
2012-10-13 01:03:57 ----A---- C:\Windows\system32\scansetting.dll
2012-10-13 01:03:56 ----A---- C:\Windows\system32\scrobj.dll
2012-10-13 01:03:56 ----A---- C:\Windows\system32\scksp.dll
2012-10-13 01:03:56 ----A---- C:\Windows\system32\scecli.dll
2012-10-13 01:03:56 ----A---- C:\Windows\system32\SCardSvr.dll
2012-10-13 01:03:56 ----A---- C:\Windows\system32\samsrv.dll
2012-10-13 01:03:55 ----A---- C:\Windows\system32\scesrv.dll
2012-10-13 01:03:54 ----A---- C:\Windows\system32\pdh.dll
2012-10-13 01:03:53 ----A---- C:\Windows\system32\perfdisk.dll
2012-10-13 01:03:53 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2012-10-13 01:03:53 ----A---- C:\Windows\system32\pcaui.dll
2012-10-13 01:03:53 ----A---- C:\Windows\system32\p2psvc.dll
2012-10-13 01:03:53 ----A---- C:\Windows\system32\P2PGraph.dll
2012-10-13 01:03:53 ----A---- C:\Windows\system32\drivers\pci.sys
2012-10-13 01:03:53 ----A---- C:\Windows\system32\drivers\pacer.sys
2012-10-13 01:03:52 ----A---- C:\Windows\system32\PNPXAssoc.dll
2012-10-13 01:03:52 ----A---- C:\Windows\system32\PnPutil.exe
2012-10-13 01:03:52 ----A---- C:\Windows\system32\PnPUnattend.exe
2012-10-13 01:03:52 ----A---- C:\Windows\system32\pnpui.dll
2012-10-13 01:03:52 ----A---- C:\Windows\system32\pnpsetup.dll
2012-10-13 01:03:52 ----A---- C:\Windows\system32\pnidui.dll
2012-10-13 01:03:52 ----A---- C:\Windows\system32\drivers\pciidex.sys
2012-10-13 01:03:52 ----A---- C:\Windows\system32\drivers\pciide.sys
2012-10-13 01:03:51 ----A---- C:\Windows\system32\powercpl.dll
2012-10-13 01:03:51 ----A---- C:\Windows\system32\photowiz.dll
2012-10-13 01:03:51 ----A---- C:\Windows\system32\drivers\portcls.sys
2012-10-13 01:03:50 ----A---- C:\Windows\system32\PkgMgr.exe
2012-10-13 01:03:50 ----A---- C:\Windows\system32\pidgenx.dll
2012-10-13 01:03:50 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2012-10-13 01:03:50 ----A---- C:\Windows\system32\nslookup.exe
2012-10-13 01:03:50 ----A---- C:\Windows\system32\drivers\npfs.sys
2012-10-13 01:03:49 ----A---- C:\Windows\system32\drivers\ntfs.sys
2012-10-13 01:03:47 ----A---- C:\Windows\system32\offfilt.dll
2012-10-13 01:03:47 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2012-10-13 01:03:47 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2012-10-13 01:03:47 ----A---- C:\Windows\system32\nlhtml.dll
2012-10-13 01:03:47 ----A---- C:\Windows\system32\drivers\ohci1394.sys
2012-10-13 01:03:46 ----A---- C:\Windows\system32\osk.exe
2012-10-13 01:03:46 ----A---- C:\Windows\system32\oobefldr.dll
2012-10-13 01:03:46 ----A---- C:\Windows\system32\onex.dll
2012-10-13 01:03:46 ----A---- C:\Windows\system32\olepro32.dll
2012-10-13 01:03:46 ----A---- C:\Windows\system32\oleprn.dll
2012-10-13 01:03:46 ----A---- C:\Windows\system32\odbccp32.dll
2012-10-13 01:03:46 ----A---- C:\Windows\system32\odbcconf.dll
2012-10-13 01:03:45 ----A---- C:\Windows\system32\ocsetup.exe
2012-10-13 01:03:45 ----A---- C:\Windows\system32\ntprint.dll
2012-10-13 01:03:45 ----A---- C:\Windows\system32\ntmarta.dll
2012-10-13 01:03:45 ----A---- C:\Windows\system32\drivers\nwifi.sys
2012-10-13 01:03:44 ----A---- C:\Windows\system32\rasmontr.dll
2012-10-13 01:03:44 ----A---- C:\Windows\system32\rasmans.dll
2012-10-13 01:03:44 ----A---- C:\Windows\system32\rasgcw.dll
2012-10-13 01:03:44 ----A---- C:\Windows\system32\rasdlg.dll
2012-10-13 01:03:44 ----A---- C:\Windows\system32\rasdial.exe
2012-10-13 01:03:44 ----A---- C:\Windows\system32\rasapi32.dll
2012-10-13 01:03:43 ----A---- C:\Windows\system32\rastapi.dll
2012-10-13 01:03:43 ----A---- C:\Windows\system32\rasppp.dll
2012-10-13 01:03:43 ----A---- C:\Windows\system32\rasplap.dll
2012-10-13 01:03:43 ----A---- C:\Windows\system32\raschap.dll
2012-10-13 01:03:43 ----A---- C:\Windows\system32\rasdiag.dll
2012-10-13 01:03:43 ----A---- C:\Windows\system32\Query.dll
2012-10-13 01:03:43 ----A---- C:\Windows\system32\drivers\rassstp.sys
2012-10-13 01:03:43 ----A---- C:\Windows\system32\drivers\raspppoe.sys
2012-10-13 01:03:42 ----A---- C:\Windows\system32\qedit.dll
2012-10-13 01:03:41 ----A---- C:\Windows\system32\RelMon.dll
2012-10-13 01:03:41 ----A---- C:\Windows\system32\rekeywiz.exe
2012-10-13 01:03:41 ----A---- C:\Windows\system32\regsvc.dll
2012-10-13 01:03:41 ----A---- C:\Windows\system32\RacEngn.dll
2012-10-13 01:03:41 ----A---- C:\Windows\system32\qmgr.dll
2012-10-13 01:03:40 ----A---- C:\Windows\system32\regapi.dll
2012-10-13 01:03:40 ----A---- C:\Windows\system32\reg.exe
2012-10-13 01:03:40 ----A---- C:\Windows\system32\drivers\rdbss.sys
2012-10-13 01:03:39 ----A---- C:\Windows\system32\rdpwsx.dll
2012-10-13 01:03:39 ----A---- C:\Windows\system32\prnntfy.dll
2012-10-13 01:03:39 ----A---- C:\Windows\system32\printui.dll
2012-10-13 01:03:39 ----A---- C:\Windows\system32\PresentationSettings.exe
2012-10-13 01:03:39 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2012-10-13 01:03:38 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2012-10-13 01:03:38 ----A---- C:\Windows\system32\powrprof.dll
prosím Vás o preventivní kontrolu logu.
Díky moc
Logfile of random's system information tool 1.09 (written by random/random)
Run by doma at 2012-10-13 18:20:34
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 13 GB (30%) free of 45 GB
Total RAM: 2046 MB (55% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:22:05, on 13.10.2012
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16450)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Programy\Ochrana PC\COMODO\COMODO Internet Security\cfp.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\system32\conime.exe
C:\Programy\Ochrana PC\RSIT\RSIT.exe
C:\Users\doma\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\doma\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\doma\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\doma\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\doma\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\doma\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\doma\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\doma.exe
C:\Users\doma\AppData\Local\Google\Chrome\Application\chrome.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programy\Java\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Programy\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programy\Java\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Programy\Ochrana PC\COMODO\COMODO Internet Security\cfp.exe" -h
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Programy\MICROS~1\Office14\EXCEL.EXE/3000
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\Windows\system32\guard32.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Programy\Ochrana PC\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
--
End of file - 4679 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3530636788-987171459-3397260818-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3530636788-987171459-3397260818-1000UA.job
=========Mozilla firefox=========
ProfilePath - C:\Users\doma\AppData\Roaming\Mozilla\Firefox\Profiles\08ns24fu.default
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
"{20a82645-c095-46ed-80e3-08825760534b}"=C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.7.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.7.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Programy\Java\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\Programy\MICROS~1\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Programy\MICROS~1\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.65\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.65\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
C:\Programy\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Programy\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
C:\Programy\Mozilla Firefox\plugins\
NPOFF12.DLL
nppdf32.dll
npwachk.dll
C:\Programy\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-06-06 63912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Programy\Java\bin\ssv.dll [2012-10-11 449512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-08-21 1227224]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\Programy\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Programy\Java\bin\jp2ssv.dll [2012-10-11 157672]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-08-21 1227224]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"COMODO Internet Security"=C:\Programy\Ochrana PC\COMODO\COMODO Internet Security\cfp.exe [2012-03-11 6749512]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2012-08-21 4282728]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" C:\Windows\system32\guard32.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLUA"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2012-10-13 18:21:08 ----D---- C:\Program Files\trend micro
2012-10-13 18:20:34 ----D---- C:\rsit
2012-10-13 11:37:09 ----D---- C:\Program Files\Common Files\DESIGNER
2012-10-13 11:36:52 ----D---- C:\Windows\PCHEALTH
2012-10-13 11:34:40 ----D---- C:\Program Files\Microsoft Analysis Services
2012-10-13 11:33:59 ----D---- C:\ProgramData\Microsoft Help
2012-10-13 10:52:59 ----A---- C:\Windows\system32\XpsPrint.dll
2012-10-13 10:52:56 ----A---- C:\Windows\system32\DWrite.dll
2012-10-13 10:52:56 ----A---- C:\Windows\system32\d3d10warp.dll
2012-10-13 10:52:56 ----A---- C:\Windows\system32\d3d10_1core.dll
2012-10-13 10:52:55 ----A---- C:\Windows\system32\d3d10_1.dll
2012-10-13 10:52:55 ----A---- C:\Windows\system32\d2d1.dll
2012-10-13 08:28:38 ----D---- C:\Program Files\Microsoft.NET
2012-10-13 08:19:13 ----D---- C:\Program Files\Windows Portable Devices
2012-10-13 07:38:01 ----A---- C:\Windows\system32\UIAnimation.dll
2012-10-13 07:37:59 ----A---- C:\Windows\system32\UIRibbonRes.dll
2012-10-13 07:37:58 ----A---- C:\Windows\system32\UIRibbon.dll
2012-10-13 07:36:25 ----A---- C:\Windows\system32\WPDShextAutoplay.exe
2012-10-13 07:36:25 ----A---- C:\Windows\system32\BthMtpContextHandler.dll
2012-10-13 07:36:24 ----A---- C:\Windows\system32\wpdbusenum.dll
2012-10-13 07:36:18 ----A---- C:\Windows\system32\PortableDeviceConnectApi.dll
2012-10-13 07:36:11 ----A---- C:\Windows\system32\WPDSp.dll
2012-10-13 07:36:11 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2012-10-13 07:36:11 ----A---- C:\Windows\system32\wpdshext.dll
2012-10-13 07:36:11 ----A---- C:\Windows\system32\wpd_ci.dll
2012-10-13 07:36:11 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll
2012-10-13 07:36:11 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2012-10-13 07:36:11 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2012-10-13 07:36:11 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2012-10-13 07:31:12 ----A---- C:\Windows\system32\wmi.dll
2012-10-13 07:31:11 ----A---- C:\Windows\system32\imagehlp.dll
2012-10-13 07:31:11 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2012-10-13 07:18:33 ----A---- C:\Windows\system32\wininet.dll
2012-10-13 07:18:33 ----A---- C:\Windows\system32\urlmon.dll
2012-10-13 07:18:33 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2012-10-13 07:18:33 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2012-10-13 07:18:33 ----A---- C:\Windows\system32\msrating.dll
2012-10-13 07:18:33 ----A---- C:\Windows\system32\msls31.dll
2012-10-13 07:18:33 ----A---- C:\Windows\system32\mshtmler.dll
2012-10-13 07:18:33 ----A---- C:\Windows\system32\jsproxy.dll
2012-10-13 07:18:33 ----A---- C:\Windows\system32\ieui.dll
2012-10-13 07:18:33 ----A---- C:\Windows\system32\iesysprep.dll
2012-10-13 07:18:33 ----A---- C:\Windows\system32\iertutil.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\wextract.exe
2012-10-13 07:18:32 ----A---- C:\Windows\system32\webcheck.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\vbscript.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\url.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\mshtmled.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\mshtml.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\msfeeds.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\licmgr10.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\inseng.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\iexpress.exe
2012-10-13 07:18:32 ----A---- C:\Windows\system32\iesetup.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\iernonce.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\ieframe.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\iedkcs32.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\ieapfltr.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\ieapfltr.dat
2012-10-13 07:18:32 ----A---- C:\Windows\system32\ie4uinit.exe
2012-10-13 07:18:32 ----A---- C:\Windows\system32\icardie.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\dxtrans.dll
2012-10-13 07:18:32 ----A---- C:\Windows\system32\dxtmsft.dll
2012-10-13 07:18:31 ----A---- C:\Windows\system32\pngfilt.dll
2012-10-13 07:18:31 ----A---- C:\Windows\system32\occache.dll
2012-10-13 07:18:31 ----A---- C:\Windows\system32\mshta.exe
2012-10-13 07:18:31 ----A---- C:\Windows\system32\msfeedssync.exe
2012-10-13 07:18:31 ----A---- C:\Windows\system32\msfeedsbs.dll
2012-10-13 07:18:31 ----A---- C:\Windows\system32\jscript9.dll
2012-10-13 07:18:31 ----A---- C:\Windows\system32\jscript.dll
2012-10-13 07:18:31 ----A---- C:\Windows\system32\imgutil.dll
2012-10-13 07:18:31 ----A---- C:\Windows\system32\ieUnatt.exe
2012-10-13 07:18:31 ----A---- C:\Windows\system32\iepeers.dll
2012-10-13 07:18:31 ----A---- C:\Windows\system32\ieakui.dll
2012-10-13 07:18:31 ----A---- C:\Windows\system32\ieaksie.dll
2012-10-13 07:18:31 ----A---- C:\Windows\system32\ieakeng.dll
2012-10-13 07:18:31 ----A---- C:\Windows\system32\IEAdvpack.dll
2012-10-13 07:18:31 ----A---- C:\Windows\system32\advpack.dll
2012-10-13 07:18:31 ----A---- C:\Windows\system32\admparse.dll
2012-10-13 07:17:47 ----A---- C:\Windows\system32\stobject.dll
2012-10-13 07:17:47 ----A---- C:\Windows\system32\shdocvw.dll
2012-10-13 07:17:47 ----A---- C:\Windows\system32\mfreadwrite.dll
2012-10-13 07:17:47 ----A---- C:\Windows\system32\mfps.dll
2012-10-13 07:17:47 ----A---- C:\Windows\system32\mfplat.dll
2012-10-13 07:17:47 ----A---- C:\Windows\system32\mfmp4src.dll
2012-10-13 07:17:47 ----A---- C:\Windows\system32\MFHEAACdec.dll
2012-10-13 07:17:47 ----A---- C:\Windows\system32\MFH264Dec.dll
2012-10-13 07:17:47 ----A---- C:\Windows\system32\mf.dll
2012-10-13 07:17:46 ----A---- C:\Windows\system32\XpsRasterService.dll
2012-10-13 07:17:46 ----A---- C:\Windows\system32\d3d10level9.dll
2012-10-13 07:17:45 ----A---- C:\Windows\system32\xpsservices.dll
2012-10-13 07:17:45 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2012-10-13 07:17:45 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2012-10-13 07:17:45 ----A---- C:\Windows\system32\OpcServices.dll
2012-10-13 07:17:45 ----A---- C:\Windows\system32\dxgi.dll
2012-10-13 07:17:45 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2012-10-13 07:17:45 ----A---- C:\Windows\system32\d3d10core.dll
2012-10-13 07:17:45 ----A---- C:\Windows\system32\d3d10.dll
2012-10-13 07:17:45 ----A---- C:\Windows\system32\cdd.dll
2012-10-13 07:17:07 ----A---- C:\Windows\system32\WMPhoto.dll
2012-10-13 07:17:07 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2012-10-13 07:17:07 ----A---- C:\Windows\system32\WindowsCodecs.dll
2012-10-13 07:17:07 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2012-10-13 07:17:07 ----A---- C:\Windows\system32\dxdiagn.dll
2012-10-13 07:17:07 ----A---- C:\Windows\system32\dxdiag.exe
2012-10-13 07:17:07 ----A---- C:\Windows\system32\d3d11.dll
2012-10-13 07:14:30 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2012-10-13 07:14:30 ----A---- C:\Windows\system32\PresentationHost.exe
2012-10-13 07:14:30 ----A---- C:\Windows\system32\netfxperf.dll
2012-10-13 07:14:30 ----A---- C:\Windows\system32\mscoree.dll
2012-10-13 07:14:30 ----A---- C:\Windows\system32\dfshim.dll
2012-10-13 07:07:54 ----D---- C:\Windows\system32\WindowsPowerShell
2012-10-13 07:06:11 ----A---- C:\Windows\system32\winrsmgr.dll
2012-10-13 07:05:47 ----A---- C:\Windows\system32\wsmprovhost.exe
2012-10-13 07:05:47 ----A---- C:\Windows\system32\winrshost.exe
2012-10-13 07:05:47 ----A---- C:\Windows\system32\winrs.exe
2012-10-13 07:05:45 ----A---- C:\Windows\system32\wsmplpxy.dll
2012-10-13 07:05:45 ----A---- C:\Windows\system32\winrssrv.dll
2012-10-13 07:05:43 ----A---- C:\Windows\system32\wecutil.exe
2012-10-13 07:05:43 ----A---- C:\Windows\system32\wecapi.dll
2012-10-13 07:05:42 ----A---- C:\Windows\system32\WsmRes.dll
2012-10-13 07:05:42 ----A---- C:\Windows\system32\wevtfwd.dll
2012-10-13 07:05:42 ----A---- C:\Windows\system32\wecsvc.dll
2012-10-13 07:05:41 ----A---- C:\Windows\system32\pwrshplugin.dll
2012-10-13 07:05:36 ----A---- C:\Windows\system32\winrm.vbs
2012-10-13 07:05:34 ----A---- C:\Windows\system32\WsmWmiPl.dll
2012-10-13 07:05:34 ----A---- C:\Windows\system32\WsmAuto.dll
2012-10-13 07:05:33 ----A---- C:\Windows\system32\WsmSvc.dll
2012-10-13 07:05:33 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
2012-10-13 07:05:33 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
2012-10-13 07:05:33 ----A---- C:\Windows\system32\winrscmd.dll
2012-10-13 06:54:07 ----A---- C:\Windows\system32\FntCache.dll
2012-10-13 06:53:52 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2012-10-13 05:48:28 ----A---- C:\Windows\system32\odbc32.dll
2012-10-13 05:44:31 ----A---- C:\Windows\system32\consent.exe
2012-10-13 05:39:20 ----A---- C:\Windows\system32\gameux.dll
2012-10-13 05:39:02 ----A---- C:\Windows\system32\Apphlpdm.dll
2012-10-13 05:38:52 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2012-10-13 05:22:53 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2012-10-13 05:22:50 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2012-10-13 05:22:47 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2012-10-13 05:10:55 ----A---- C:\Windows\system32\mfc40.dll
2012-10-13 05:10:49 ----A---- C:\Windows\system32\mfc40u.dll
2012-10-13 05:01:10 ----A---- C:\Windows\system32\srvsvc.dll
2012-10-13 05:00:40 ----A---- C:\Windows\system32\netevent.dll
2012-10-13 04:49:50 ----A---- C:\Windows\system32\drivers\srv.sys
2012-10-13 04:48:17 ----A---- C:\Windows\system32\drivers\partmgr.sys
2012-10-13 04:46:34 ----A---- C:\Windows\system32\ole32.dll
2012-10-13 04:44:44 ----A---- C:\Windows\system32\psisdecd.dll
2012-10-13 04:43:33 ----A---- C:\Windows\system32\shell32.dll
2012-10-13 04:35:14 ----A---- C:\Windows\system32\localspl.dll
2012-10-13 04:28:16 ----A---- C:\Windows\system32\mfc42u.dll
2012-10-13 04:28:11 ----A---- C:\Windows\system32\mfc42.dll
2012-10-13 04:15:44 ----A---- C:\Windows\system32\wmpmde.dll
2012-10-13 04:12:23 ----A---- C:\Windows\system32\sbe.dll
2012-10-13 04:12:18 ----A---- C:\Windows\system32\sbeio.dll
2012-10-13 04:01:47 ----A---- C:\Windows\system32\wmp.dll
2012-10-13 04:01:19 ----A---- C:\Windows\system32\wmploc.DLL
2012-10-13 03:49:24 ----A---- C:\Windows\system32\dnsapi.dll
2012-10-13 03:49:20 ----A---- C:\Windows\system32\dnsrslvr.dll
2012-10-13 03:49:18 ----A---- C:\Windows\system32\dnscacheugc.exe
2012-10-13 03:48:03 ----A---- C:\Windows\system32\MP4SDECD.DLL
2012-10-13 03:47:04 ----A---- C:\Windows\system32\t2embed.dll
2012-10-13 03:45:45 ----A---- C:\Windows\system32\shlwapi.dll
2012-10-13 03:37:39 ----A---- C:\Windows\system32\oleaccrc.dll
2012-10-13 03:37:38 ----A---- C:\Windows\system32\UIAutomationCore.dll
2012-10-13 03:37:37 ----A---- C:\Windows\system32\oleacc.dll
2012-10-13 03:37:34 ----A---- C:\Windows\system32\oleaut32.dll
2012-10-13 03:28:42 ----A---- C:\Windows\system32\ntdll.dll
2012-10-13 03:27:48 ----A---- C:\Windows\system32\drivers\tcpip.sys
2012-10-13 03:25:33 ----A---- C:\Windows\system32\drivers\dfsc.sys
2012-10-13 03:24:19 ----A---- C:\Windows\system32\drivers\afd.sys
2012-10-13 03:23:20 ----A---- C:\Windows\system32\sdclt.exe
2012-10-13 03:22:32 ----A---- C:\Windows\system32\winmm.dll
2012-10-13 03:22:30 ----A---- C:\Windows\system32\mciseq.dll
2012-10-13 03:20:47 ----A---- C:\Windows\system32\msvcrt.dll
2012-10-13 03:20:07 ----A---- C:\Windows\system32\netapi32.dll
2012-10-13 03:13:35 ----A---- C:\Windows\system32\drivers\bowser.sys
2012-10-13 03:12:18 ----A---- C:\Windows\system32\drivers\srv2.sys
2012-10-13 03:12:16 ----A---- C:\Windows\system32\drivers\srvnet.sys
2012-10-13 03:10:09 ----A---- C:\Windows\system32\usp10.dll
2012-10-13 03:08:40 ----A---- C:\Windows\system32\schedsvc.dll
2012-10-13 03:08:37 ----A---- C:\Windows\system32\taskschd.dll
2012-10-13 03:08:31 ----A---- C:\Windows\system32\wmicmiplugin.dll
2012-10-13 03:08:29 ----A---- C:\Windows\system32\taskeng.exe
2012-10-13 03:08:28 ----A---- C:\Windows\system32\taskcomp.dll
2012-10-13 03:06:30 ----A---- C:\Windows\system32\wintrust.dll
2012-10-13 03:03:28 ----A---- C:\Windows\system32\shsvcs.dll
2012-10-13 03:00:02 ----A---- C:\Windows\system32\spoolsv.exe
2012-10-13 02:59:08 ----A---- C:\Windows\system32\atmfd.dll
2012-10-13 02:59:05 ----A---- C:\Windows\system32\fontsub.dll
2012-10-13 02:59:02 ----A---- C:\Windows\system32\atmlib.dll
2012-10-13 02:57:16 ----A---- C:\Windows\system32\msxml3.dll
2012-10-13 02:57:15 ----A---- C:\Windows\system32\msxml6.dll
2012-10-13 02:56:44 ----A---- C:\Windows\system32\win32k.sys
2012-10-13 02:56:16 ----A---- C:\Windows\system32\iccvid.dll
2012-10-13 02:55:37 ----A---- C:\Windows\system32\asycfilt.dll
2012-10-13 02:54:24 ----A---- C:\Windows\system32\packager.dll
2012-10-13 02:50:59 ----A---- C:\Windows\system32\tzres.dll
2012-10-13 02:47:43 ----A---- C:\Windows\system32\EncDec.dll
2012-10-13 02:47:14 ----A---- C:\Windows\system32\rtutils.dll
2012-10-13 02:44:30 ----A---- C:\Windows\system32\crypt32.dll
2012-10-13 02:44:29 ----A---- C:\Windows\system32\cryptsvc.dll
2012-10-13 02:44:29 ----A---- C:\Windows\system32\cryptnet.dll
2012-10-13 02:41:41 ----A---- C:\Windows\system32\quartz.dll
2012-10-13 02:41:40 ----A---- C:\Windows\system32\qdvd.dll
2012-10-13 02:41:18 ----A---- C:\Windows\system32\csrsrv.dll
2012-10-13 02:38:03 ----A---- C:\Windows\system32\winsrv.dll
2012-10-13 02:37:35 ----A---- C:\Windows\system32\winhttp.dll
2012-10-13 02:37:07 ----A---- C:\Windows\system32\inetcomm.dll
2012-10-13 02:07:21 ----A---- C:\Windows\system32\kernel32.dll
2012-10-13 02:07:07 ----A---- C:\Windows\system32\mstscax.dll
2012-10-13 02:07:06 ----A---- C:\Windows\system32\mstsc.exe
2012-10-13 02:06:57 ----A---- C:\Windows\system32\xmllite.dll
2012-10-13 02:06:48 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2012-10-13 02:06:13 ----A---- C:\Windows\system32\comctl32.dll
2012-10-13 02:05:46 ----A---- C:\Windows\system32\schannel.dll
2012-10-13 02:05:45 ----A---- C:\Windows\system32\lsasrv.dll
2012-10-13 02:05:45 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2012-10-13 02:05:44 ----A---- C:\Windows\system32\secur32.dll
2012-10-13 02:05:44 ----A---- C:\Windows\system32\ncrypt.dll
2012-10-13 02:05:44 ----A---- C:\Windows\system32\lsass.exe
2012-10-13 02:05:28 ----A---- C:\Windows\system32\msshsq.dll
2012-10-13 02:05:18 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-10-13 02:05:18 ----A---- C:\Windows\system32\ntkrnlpa.exe
2012-10-13 02:03:21 ----A---- C:\Windows\system32\rdpencom.dll
2012-10-13 01:48:05 ----A---- C:\Windows\system32\wups2.dll
2012-10-13 01:48:05 ----A---- C:\Windows\system32\wucltux.dll
2012-10-13 01:48:05 ----A---- C:\Windows\system32\wuaueng.dll
2012-10-13 01:48:05 ----A---- C:\Windows\system32\wuauclt.exe
2012-10-13 01:47:40 ----A---- C:\Windows\system32\wups.dll
2012-10-13 01:47:40 ----A---- C:\Windows\system32\wudriver.dll
2012-10-13 01:47:40 ----A---- C:\Windows\system32\wuapi.dll
2012-10-13 01:47:29 ----A---- C:\Windows\system32\wuwebv.dll
2012-10-13 01:47:28 ----A---- C:\Windows\system32\wuapp.exe
2012-10-13 01:39:08 ----D---- C:\Windows\system32\vi-VN
2012-10-13 01:39:08 ----D---- C:\Windows\system32\eu-ES
2012-10-13 01:39:08 ----D---- C:\Windows\system32\ca-ES
2012-10-13 01:35:36 ----D---- C:\Windows\system32\SPReview
2012-10-13 01:18:04 ----A---- C:\Windows\system32\scavenge.dll
2012-10-13 01:17:35 ----A---- C:\Windows\system32\compcln.exe
2012-10-13 01:04:01 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2012-10-13 01:04:01 ----A---- C:\Windows\system32\SearchIndexer.exe
2012-10-13 01:04:01 ----A---- C:\Windows\system32\SearchFilterHost.exe
2012-10-13 01:04:00 ----A---- C:\Windows\system32\sdohlp.dll
2012-10-13 01:03:59 ----A---- C:\Windows\system32\samlib.dll
2012-10-13 01:03:59 ----A---- C:\Windows\system32\rtffilt.dll
2012-10-13 01:03:59 ----A---- C:\Windows\system32\rsaenh.dll
2012-10-13 01:03:58 ----A---- C:\Windows\system32\rpchttp.dll
2012-10-13 01:03:58 ----A---- C:\Windows\system32\rpcss.dll
2012-10-13 01:03:58 ----A---- C:\Windows\system32\riched20.dll
2012-10-13 01:03:58 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2012-10-13 01:03:58 ----A---- C:\Windows\system32\drivers\rmcast.sys
2012-10-13 01:03:57 ----A---- C:\Windows\system32\scrrun.dll
2012-10-13 01:03:57 ----A---- C:\Windows\system32\scansetting.dll
2012-10-13 01:03:56 ----A---- C:\Windows\system32\scrobj.dll
2012-10-13 01:03:56 ----A---- C:\Windows\system32\scksp.dll
2012-10-13 01:03:56 ----A---- C:\Windows\system32\scecli.dll
2012-10-13 01:03:56 ----A---- C:\Windows\system32\SCardSvr.dll
2012-10-13 01:03:56 ----A---- C:\Windows\system32\samsrv.dll
2012-10-13 01:03:55 ----A---- C:\Windows\system32\scesrv.dll
2012-10-13 01:03:54 ----A---- C:\Windows\system32\pdh.dll
2012-10-13 01:03:53 ----A---- C:\Windows\system32\perfdisk.dll
2012-10-13 01:03:53 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2012-10-13 01:03:53 ----A---- C:\Windows\system32\pcaui.dll
2012-10-13 01:03:53 ----A---- C:\Windows\system32\p2psvc.dll
2012-10-13 01:03:53 ----A---- C:\Windows\system32\P2PGraph.dll
2012-10-13 01:03:53 ----A---- C:\Windows\system32\drivers\pci.sys
2012-10-13 01:03:53 ----A---- C:\Windows\system32\drivers\pacer.sys
2012-10-13 01:03:52 ----A---- C:\Windows\system32\PNPXAssoc.dll
2012-10-13 01:03:52 ----A---- C:\Windows\system32\PnPutil.exe
2012-10-13 01:03:52 ----A---- C:\Windows\system32\PnPUnattend.exe
2012-10-13 01:03:52 ----A---- C:\Windows\system32\pnpui.dll
2012-10-13 01:03:52 ----A---- C:\Windows\system32\pnpsetup.dll
2012-10-13 01:03:52 ----A---- C:\Windows\system32\pnidui.dll
2012-10-13 01:03:52 ----A---- C:\Windows\system32\drivers\pciidex.sys
2012-10-13 01:03:52 ----A---- C:\Windows\system32\drivers\pciide.sys
2012-10-13 01:03:51 ----A---- C:\Windows\system32\powercpl.dll
2012-10-13 01:03:51 ----A---- C:\Windows\system32\photowiz.dll
2012-10-13 01:03:51 ----A---- C:\Windows\system32\drivers\portcls.sys
2012-10-13 01:03:50 ----A---- C:\Windows\system32\PkgMgr.exe
2012-10-13 01:03:50 ----A---- C:\Windows\system32\pidgenx.dll
2012-10-13 01:03:50 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2012-10-13 01:03:50 ----A---- C:\Windows\system32\nslookup.exe
2012-10-13 01:03:50 ----A---- C:\Windows\system32\drivers\npfs.sys
2012-10-13 01:03:49 ----A---- C:\Windows\system32\drivers\ntfs.sys
2012-10-13 01:03:47 ----A---- C:\Windows\system32\offfilt.dll
2012-10-13 01:03:47 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2012-10-13 01:03:47 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2012-10-13 01:03:47 ----A---- C:\Windows\system32\nlhtml.dll
2012-10-13 01:03:47 ----A---- C:\Windows\system32\drivers\ohci1394.sys
2012-10-13 01:03:46 ----A---- C:\Windows\system32\osk.exe
2012-10-13 01:03:46 ----A---- C:\Windows\system32\oobefldr.dll
2012-10-13 01:03:46 ----A---- C:\Windows\system32\onex.dll
2012-10-13 01:03:46 ----A---- C:\Windows\system32\olepro32.dll
2012-10-13 01:03:46 ----A---- C:\Windows\system32\oleprn.dll
2012-10-13 01:03:46 ----A---- C:\Windows\system32\odbccp32.dll
2012-10-13 01:03:46 ----A---- C:\Windows\system32\odbcconf.dll
2012-10-13 01:03:45 ----A---- C:\Windows\system32\ocsetup.exe
2012-10-13 01:03:45 ----A---- C:\Windows\system32\ntprint.dll
2012-10-13 01:03:45 ----A---- C:\Windows\system32\ntmarta.dll
2012-10-13 01:03:45 ----A---- C:\Windows\system32\drivers\nwifi.sys
2012-10-13 01:03:44 ----A---- C:\Windows\system32\rasmontr.dll
2012-10-13 01:03:44 ----A---- C:\Windows\system32\rasmans.dll
2012-10-13 01:03:44 ----A---- C:\Windows\system32\rasgcw.dll
2012-10-13 01:03:44 ----A---- C:\Windows\system32\rasdlg.dll
2012-10-13 01:03:44 ----A---- C:\Windows\system32\rasdial.exe
2012-10-13 01:03:44 ----A---- C:\Windows\system32\rasapi32.dll
2012-10-13 01:03:43 ----A---- C:\Windows\system32\rastapi.dll
2012-10-13 01:03:43 ----A---- C:\Windows\system32\rasppp.dll
2012-10-13 01:03:43 ----A---- C:\Windows\system32\rasplap.dll
2012-10-13 01:03:43 ----A---- C:\Windows\system32\raschap.dll
2012-10-13 01:03:43 ----A---- C:\Windows\system32\rasdiag.dll
2012-10-13 01:03:43 ----A---- C:\Windows\system32\Query.dll
2012-10-13 01:03:43 ----A---- C:\Windows\system32\drivers\rassstp.sys
2012-10-13 01:03:43 ----A---- C:\Windows\system32\drivers\raspppoe.sys
2012-10-13 01:03:42 ----A---- C:\Windows\system32\qedit.dll
2012-10-13 01:03:41 ----A---- C:\Windows\system32\RelMon.dll
2012-10-13 01:03:41 ----A---- C:\Windows\system32\rekeywiz.exe
2012-10-13 01:03:41 ----A---- C:\Windows\system32\regsvc.dll
2012-10-13 01:03:41 ----A---- C:\Windows\system32\RacEngn.dll
2012-10-13 01:03:41 ----A---- C:\Windows\system32\qmgr.dll
2012-10-13 01:03:40 ----A---- C:\Windows\system32\regapi.dll
2012-10-13 01:03:40 ----A---- C:\Windows\system32\reg.exe
2012-10-13 01:03:40 ----A---- C:\Windows\system32\drivers\rdbss.sys
2012-10-13 01:03:39 ----A---- C:\Windows\system32\rdpwsx.dll
2012-10-13 01:03:39 ----A---- C:\Windows\system32\prnntfy.dll
2012-10-13 01:03:39 ----A---- C:\Windows\system32\printui.dll
2012-10-13 01:03:39 ----A---- C:\Windows\system32\PresentationSettings.exe
2012-10-13 01:03:39 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2012-10-13 01:03:38 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2012-10-13 01:03:38 ----A---- C:\Windows\system32\powrprof.dll