virus dwm.exe (2020) Win32/Spy.Zbot.AAO Trojský kôň
Napsal: 25 lis 2012 09:41
Dobrý deň do počítača sa mi dostal nejký šmejd a ja neviem čo sním, prosím vas o pomoc
do počítača sa mi dostal po prihlásení na Facebook dwm.exe (2020) Win32/Spy.Zbot.AAO Trojský kôň
Log s DDS:
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 9.0.8112.16455 BrowserJavaVersion: 10.9.2
Run by Admin at 9:26:57 on 2012-11-25
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.421.1051.18.3069.1659 [GMT 1:00]
.
AV: ESET NOD32 Antivirus 6.0 *Enabled/Updated* {77DEAFED-8149-104B-25A1-21771CA47CD1}
SP: ESET NOD32 Antivirus 6.0 *Enabled/Updated* {CCBF4E09-A773-1FC5-1F11-1A056723366C}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Program Files\IObit\Advanced SystemCare 6\ASCService.exe
C:\Windows\system32\Ati2evxx.exe
C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_805f33de\STacSV.exe
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\Hpservice.exe
C:\Windows\system32\Ati2evxx.exe
C:\Windows\system32\vfsFPService.exe
C:\Windows\system32\WLANExt.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\DigitalPersona\Bin\DpHostW.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
C:\Program Files\DigitalPersona\Bin\DpAgent.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_805f33de\aestsrv.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\IDT\WDM\sttray.exe
C:\Program Files\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_32server.exe
C:\Program Files\SMINST\BLService.exe
C:\Program Files\CyberLink\Shared files\RichVideo.exe
C:\Program Files\Hewlett-Packard\Media\TV\Kernel\TV\TVCapSvc.exe
C:\Program Files\Hewlett-Packard\Media\TV\Kernel\TV\TVSched.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files\IObit\Advanced SystemCare 6\ASCTray.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Windows\servicing\TrustedInstaller.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
C:\Program Files\Hewlett-Packard\HP wireless Assistant\WiFiMsg.EXE
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\conime.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=sk_sk&c=91&bd=Pavilion&pf=cnnb
uDefault_Page_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=sk_sk&c=91&bd=Pavilion&pf=cnnb
mStart Page = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=sk_sk&c=91&bd=Pavilion&pf=cnnb
mDefault_Page_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=sk_sk&c=91&bd=Pavilion&pf=cnnb
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre7\bin\ssv.dll
BHO: {7E853D72-626A-48EC-A868-BA8D5E23E045} - <orphaned>
BHO: Advanced SystemCare Browser Protection: {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - c:\program files\iobit\advanced systemcare 6\browerprotect\ASCPlugin_Protection.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre7\bin\jp2ssv.dll
uRun: [LightScribe Control Panel] c:\program files\common files\lightscribe\LightScribeControlPanel.exe -hidden
uRun: [uTorrent] "c:\program files\utorrent\uTorrent.exe" /MINIMIZED
uRun: [Advanced SystemCare 6] "c:\program files\iobit\advanced systemcare 6\ASCTray.exe" /AutoStart
uRun: [Skype] "c:\program files\skype\phone\Skype.exe" /minimized /regrun
uRun: [DAEMON Tools Lite] "c:\program files\daemon tools lite\DTLite.exe" -autorun
uRun: [AdobeBridge] <no file>
mRun: [StartCCC] "c:\program files\ati technologies\ati.ace\core-static\CLIStart.exe" MSRun
mRun: [SynTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe
mRun: [CLMLServer for HP TouchSmart] "c:\program files\hewlett-packard\touchsmart\media\kernel\clml\CLMLSvc.exe"
mRun: [UCam_Menu] "c:\program files\hewlett-packard\media\webcam\muitransfer\muistartmenu.exe" "c:\program files\hewlett-packard\media\webcam" update "software\hewlett-packard\media\Webcam"
mRun: [UpdateLBPShortCut] "c:\program files\cyberlink\labelprint\muitransfer\muistartmenu.exe" "c:\program files\cyberlink\labelprint" updatewithcreateonce "software\cyberlink\labelprint\2.5"
mRun: [UpdatePSTShortCut] "c:\program files\cyberlink\dvd suite\muitransfer\muistartmenu.exe" "c:\program files\cyberlink\dvd suite" updatewithcreateonce "software\cyberlink\PowerStarter"
mRun: [DpAgent] c:\program files\digitalpersona\bin\dpagent.exe
mRun: [Windows Defender] c:\program files\windows defender\MSASCui.exe -hide
mRun: [QlbCtrl.exe] c:\program files\hewlett-packard\hp quick launch buttons\QlbCtrl.exe /Start
mRun: [UpdateP2GoShortCut] "c:\program files\cyberlink\power2go\muitransfer\muistartmenu.exe" "c:\program files\cyberlink\power2go" updatewithcreateonce "software\cyberlink\power2go\6.0"
mRun: [UpdatePDIRShortCut] "c:\program files\cyberlink\powerdirector\muitransfer\muistartmenu.exe" "c:\program files\cyberlink\powerdirector" updatewithcreateonce "software\cyberlink\powerdirector\7.0"
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [HP Health Check Scheduler] c:\program files\hewlett-packard\hp health check\HPHC_Scheduler.exe
mRun: [HP Software Update] c:\program files\hp\hp software update\HPWuSchd2.exe
mRun: [hpWirelessAssistant] c:\program files\hewlett-packard\hp wireless assistant\HPWAMain.exe
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [SysTrayApp] c:\program files\idt\wdm\sttray.exe
mRun: [AdobeAAMUpdater-1.0] "c:\program files\common files\adobe\oobe\pdapp\uwa\UpdaterStartupUtility.exe"
mRun: [AdobeCS6ServiceManager] "c:\program files\common files\adobe\cs6servicemanager\CS6ServiceManager.exe" -launchedbylogin
mRun: [SwitchBoard] c:\program files\common files\adobe\switchboard\SwitchBoard.exe
mRun: [egui] "c:\program files\eset\eset nod32 antivirus\egui.exe" /hide /waitservice
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\blueto~1.lnk - c:\program files\widcomm\bluetooth software\BTTray.exe
mPolicies-Explorer: BindDirectlyToPropertySetStorage = dword:0
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: Send image to &Bluetooth Device... - c:\program files\widcomm\bluetooth software\btsendto_ie_ctx.htm
IE: Send page to &Bluetooth Device... - c:\program files\widcomm\bluetooth software\btsendto_ie.htm
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBC} - c:\program files\java\jre7\bin\jp2iexp.dll
IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\program files\widcomm\bluetooth software\btsendto_ie.htm
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
TCP: NameServer = 192.168.2.1
TCP: Interfaces\{3EB28724-06DA-4B57-8661-AF46C61CF4AA} : DHCPNameServer = 192.168.2.1
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
LSA: Notification Packages = scecli DPPWDFLT
LSA: Security Packages = kerberos msv1_0 schannel wdigest tspkg
mASetup: {10880D85-AAD9-4558-ABDC-2AB1552D831F} - "c:\program files\common files\lightscribe\LSRunOnce.exe"
.
============= SERVICES / DRIVERS ===============
.
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\drivers\dtsoftbus01.sys [2012-11-4 242240]
R1 eamonm;eamonm;c:\windows\system32\drivers\eamonm.sys [2012-10-8 170656]
R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [2012-10-8 121216]
R2 epfwwfpr;epfwwfpr;c:\windows\system32\drivers\epfwwfpr.sys [2012-10-8 104712]
R3 enecir;ENE CIR Receiver;c:\windows\system32\drivers\enecir.sys [2008-9-4 54784]
S3 DrvAgent32;DrvAgent32;c:\windows\system32\drivers\DrvAgent32.sys [2012-11-3 23456]
S3 JMCR;JMCR;c:\windows\system32\drivers\jmcr.sys [2008-8-7 97536]
.
=============== Created Last 30 ================
.
2012-11-24 14:08:26 -------- d-----w- c:\users\admin\appdata\local\ESET
2012-11-24 14:08:03 -------- d-----w- c:\users\admin\appdata\roaming\Wacyq
2012-11-24 14:08:03 -------- d-----w- c:\users\admin\appdata\roaming\Obahmu
2012-11-24 14:08:03 -------- d-----w- c:\users\admin\appdata\roaming\Elfab
2012-11-23 18:58:23 6812136 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{84e6a803-9186-41b8-b790-c41a6470db91}\mpengine.dll
2012-11-21 10:18:16 -------- d-----w- c:\programdata\boost_interprocess
2012-11-21 10:05:18 -------- d-----w- c:\users\admin\appdata\local\Autodesk
2012-11-21 10:00:54 -------- d-----w- c:\program files\common files\Macrovision Shared
2012-11-21 09:52:21 -------- d-----w- c:\program files\Autodesk
2012-11-21 09:47:06 -------- d-----w- c:\program files\common files\Autodesk Shared
2012-11-21 09:46:40 452440 ----a-w- c:\windows\system32\d3dx10_40.dll
2012-11-21 09:46:40 2036576 ----a-w- c:\windows\system32\D3DCompiler_40.dll
2012-11-21 09:46:38 4379984 ----a-w- c:\windows\system32\D3DX9_40.dll
2012-11-21 09:34:28 -------- d-----w- c:\users\admin\appdata\roaming\Autodesk
2012-11-21 08:42:46 -------- d-----w- c:\users\admin\appdata\local\TSR Workshop
2012-11-21 08:42:08 -------- d-----w- c:\users\admin\appdata\local\Ibibi_HB
2012-11-21 08:42:06 -------- d-----w- c:\users\admin\appdata\roaming\TSRWorkshop
2012-11-21 08:41:28 -------- d-----w- c:\program files\The Sims Resource
2012-11-21 08:39:08 -------- d-----w- c:\users\admin\appdata\roaming\The Sims Resource
2012-11-19 12:52:09 445008 ----a-w- c:\windows\system32\drivers\Wdf01000.sys
2012-11-19 12:52:09 38480 ----a-w- c:\windows\system32\drivers\WdfLdr.sys
2012-11-18 14:39:55 6812136 ----a-w- c:\programdata\microsoft\windows defender\definition updates\backup\mpengine.dll
2012-11-18 14:39:41 237072 ------w- c:\windows\system32\MpSigStub.exe
2012-11-18 12:41:51 -------- d-----w- c:\program files\ESET
2012-11-15 14:38:38 -------- d-----w- c:\program files\Mad Scientist Productions
2012-11-14 09:52:57 75776 ----a-w- c:\windows\system32\synceng.dll
2012-11-14 09:52:18 2047488 ----a-w- c:\windows\system32\win32k.sys
2012-11-07 14:15:37 -------- d-----w- c:\programdata\EA Core
2012-11-07 14:06:51 -------- d-----w- c:\programdata\Origin
2012-11-07 09:29:48 -------- d-----w- c:\users\admin\appdata\roaming\Origin
2012-11-07 09:29:46 -------- d-----w- c:\programdata\Electronic Arts
2012-11-07 09:29:25 -------- d-----w- c:\program files\Origin
2012-11-07 09:13:39 -------- d-----w- c:\program files\Microsoft WSE
2012-11-06 17:00:20 -------- d-sh--w- C:\found.001
2012-11-06 16:50:01 -------- d-sh--w- C:\found.000
2012-11-06 08:18:19 -------- d-----w- c:\users\admin\appdata\roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
2012-11-06 08:15:05 -------- d-----w- c:\programdata\regid.1986-12.com.adobe
2012-11-06 08:12:30 -------- d-----w- c:\programdata\ALM
2012-11-06 07:51:41 -------- d-----w- c:\users\admin\appdata\local\Adobe
2012-11-05 15:23:05 876032 ----a-w- c:\windows\system32\XpsPrint.dll
2012-11-05 15:22:58 219648 ----a-w- c:\windows\system32\d3d10_1core.dll
2012-11-05 15:22:58 1172480 ----a-w- c:\windows\system32\d3d10warp.dll
2012-11-05 15:22:58 1069056 ----a-w- c:\windows\system32\DWrite.dll
2012-11-05 15:22:57 683008 ----a-w- c:\windows\system32\d2d1.dll
2012-11-05 15:22:57 160768 ----a-w- c:\windows\system32\d3d10_1.dll
2012-11-05 15:19:50 69632 ----a-w- c:\windows\system32\Mpeg2Data.ax
2012-11-05 15:19:50 57856 ----a-w- c:\windows\system32\MSDvbNP.ax
2012-11-05 15:19:50 293376 ----a-w- c:\windows\system32\psisdecd.dll
2012-11-05 15:19:50 217088 ----a-w- c:\windows\system32\psisrndr.ax
2012-11-05 15:19:40 189952 ----a-w- c:\windows\system32\winmm.dll
2012-11-05 15:19:38 23552 ----a-w- c:\windows\system32\mciseq.dll
2012-11-05 15:19:08 623616 ----a-w- c:\windows\system32\localspl.dll
2012-11-05 15:17:59 429056 ----a-w- c:\windows\system32\EncDec.dll
2012-11-05 15:17:53 53120 ----a-w- c:\windows\system32\drivers\partmgr.sys
2012-11-05 07:38:37 -------- d-----w- c:\program files\Windows Portable Devices
2012-11-05 07:38:36 -------- d-----w- c:\windows\system32\drivers\umdf\sk-SK
2012-11-04 23:15:27 92672 ----a-w- c:\windows\system32\UIAnimation.dll
2012-11-04 23:15:25 3023360 ----a-w- c:\windows\system32\UIRibbon.dll
2012-11-04 23:15:25 1164800 ----a-w- c:\windows\system32\UIRibbonRes.dll
2012-11-04 23:12:59 839168 ----a-w- c:\windows\system32\drivers\umdf\WpdMtpDr.dll
2012-11-04 23:03:47 5120 ----a-w- c:\windows\system32\wmi.dll
2012-11-04 23:03:47 157696 ----a-w- c:\windows\system32\imagehlp.dll
2012-11-04 23:03:47 12800 ----a-w- c:\windows\system32\drivers\fs_rec.sys
2012-11-04 22:52:44 979456 ----a-w- c:\windows\system32\MFH264Dec.dll
2012-11-04 22:51:26 369664 ----a-w- c:\windows\system32\WMPhoto.dll
2012-11-04 22:51:26 252928 ----a-w- c:\windows\system32\dxdiag.exe
2012-11-04 22:51:26 195584 ----a-w- c:\windows\system32\dxdiagn.dll
2012-11-04 22:51:25 974848 ----a-w- c:\windows\system32\WindowsCodecs.dll
2012-11-04 22:51:25 519680 ----a-w- c:\windows\system32\d3d11.dll
2012-11-04 22:51:25 321024 ----a-w- c:\windows\system32\PhotoMetadataHandler.dll
2012-11-04 22:51:25 189440 ----a-w- c:\windows\system32\WindowsCodecsExt.dll
2012-11-04 08:41:05 -------- d-----w- c:\users\admin\appdata\roaming\2K Sports
2012-11-04 08:14:59 443752 ----a-w- c:\windows\system32\d3dx10_34.dll
2012-11-04 08:09:57 -------- d--h--w- c:\windows\msdownld.tmp
2012-11-04 08:09:12 -------- d-----w- c:\windows\system32\directx
2012-11-04 08:04:17 -------- d-----w- c:\users\admin\appdata\roaming\YourFileDownloader
2012-11-03 23:54:51 470880 ----a-w- c:\windows\system32\d3dx10_43.dll
2012-11-03 23:54:51 248672 ----a-w- c:\windows\system32\d3dx11_43.dll
2012-11-03 23:54:51 2106216 ----a-w- c:\windows\system32\D3DCompiler_43.dll
2012-11-03 23:54:51 1998168 ----a-w- c:\windows\system32\D3DX9_43.dll
2012-11-03 23:30:15 -------- d-----w- c:\program files\2K Sports
2012-11-03 23:25:30 242240 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2012-11-03 23:25:23 -------- d-----w- c:\users\admin\appdata\roaming\DAEMON Tools Lite
2012-11-03 23:25:20 -------- d-----w- c:\program files\DAEMON Tools Lite
2012-11-03 23:24:48 -------- d-----w- c:\programdata\DAEMON Tools Lite
2012-11-03 20:55:34 23456 ----a-w- c:\windows\system32\drivers\DrvAgent32.sys
2012-11-03 20:55:34 -------- d-----w- c:\users\admin\appdata\local\eSupport.com
2012-11-03 15:27:29 1205064 ----a-w- c:\windows\system32\ntdll.dll
2012-11-03 15:25:48 905600 ----a-w- c:\windows\system32\drivers\tcpip.sys
2012-11-03 15:25:43 1404928 ----a-w- c:\program files\common files\microsoft shared\ink\InkObj.dll
2012-11-03 15:25:43 1218048 ----a-w- c:\program files\windows journal\NBDoc.DLL
2012-11-03 15:25:42 964608 ----a-w- c:\program files\windows journal\JNWDRV.dll
2012-11-03 15:25:41 983040 ----a-w- c:\program files\windows journal\JNTFiltr.dll
2012-11-03 15:25:41 936960 ----a-w- c:\program files\common files\microsoft shared\ink\journal.dll
2012-11-03 15:25:41 47104 ----a-w- c:\program files\windows journal\PDIALOG.exe
2012-11-03 15:25:12 797696 ----a-w- c:\windows\system32\FntCache.dll
2012-11-03 15:25:11 288768 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2012-11-03 15:24:55 66560 ----a-w- c:\windows\system32\packager.dll
2012-11-03 15:24:49 376320 ----a-w- c:\windows\system32\winsrv.dll
2012-11-03 15:24:47 680448 ----a-w- c:\windows\system32\msvcrt.dll
2012-11-03 15:24:29 985088 ----a-w- c:\windows\system32\crypt32.dll
2012-11-03 15:24:29 133120 ----a-w- c:\windows\system32\cryptsvc.dll
2012-11-03 15:24:28 98304 ----a-w- c:\windows\system32\cryptnet.dll
2012-11-03 15:24:01 172544 ----a-w- c:\windows\system32\wintrust.dll
2012-11-03 15:23:54 708608 ----a-w- c:\program files\common files\system\ado\msado15.dll
2012-11-03 15:23:50 49152 ----a-w- c:\windows\system32\csrsrv.dll
2012-11-03 15:23:46 1314816 ----a-w- c:\windows\system32\quartz.dll
2012-11-03 15:23:45 497152 ----a-w- c:\windows\system32\qdvd.dll
2012-11-03 15:23:31 2048 ----a-w- c:\windows\system32\tzres.dll
2012-11-03 15:23:10 377344 ----a-w- c:\windows\system32\winhttp.dll
2012-11-03 15:22:48 2409784 ----a-w- c:\program files\windows mail\OESpamFilter.dat
2012-11-03 15:22:28 555520 ----a-w- c:\windows\system32\UIAutomationCore.dll
2012-11-03 15:22:28 4096 ----a-w- c:\windows\system32\oleaccrc.dll
2012-11-03 15:22:27 563712 ----a-w- c:\windows\system32\oleaut32.dll
2012-11-03 15:22:27 238080 ----a-w- c:\windows\system32\oleacc.dll
2012-11-03 15:21:58 1401856 ----a-w- c:\windows\system32\msxml6.dll
2012-11-03 15:21:58 1248768 ----a-w- c:\windows\system32\msxml3.dll
2012-11-03 15:21:43 180736 ----a-w- c:\windows\system32\drivers\rdpwd.sys
2012-11-03 15:21:35 707584 ----a-w- c:\program files\common files\system\wab32.dll
2012-11-03 15:19:48 440704 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2012-11-03 15:19:48 278528 ----a-w- c:\windows\system32\schannel.dll
2012-11-03 15:19:47 1259008 ----a-w- c:\windows\system32\lsasrv.dll
2012-11-03 15:19:46 9728 ----a-w- c:\windows\system32\lsass.exe
2012-11-03 15:19:46 72704 ----a-w- c:\windows\system32\secur32.dll
2012-11-03 15:19:46 204288 ----a-w- c:\windows\system32\ncrypt.dll
2012-11-03 15:19:43 231424 ----a-w- c:\windows\system32\msshsq.dll
2012-11-03 15:19:37 3602816 ----a-w- c:\windows\system32\ntkrnlpa.exe
2012-11-03 15:19:37 3550080 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-11-03 14:47:50 613376 ----a-w- c:\windows\system32\rdpencom.dll
2012-11-03 14:11:02 99176 ----a-w- c:\windows\system32\PresentationHostProxy.dll
2012-11-03 14:11:02 295264 ----a-w- c:\windows\system32\PresentationHost.exe
2012-11-03 14:11:01 49472 ----a-w- c:\windows\system32\netfxperf.dll
2012-11-03 14:11:01 297808 ----a-w- c:\windows\system32\mscoree.dll
2012-11-03 14:11:01 1130824 ----a-w- c:\windows\system32\dfshim.dll
2012-11-03 13:51:09 2422272 ----a-w- c:\windows\system32\wucltux.dll
2012-11-03 13:50:11 88576 ----a-w- c:\windows\system32\wudriver.dll
2012-11-03 13:49:36 33792 ----a-w- c:\windows\system32\wuapp.exe
2012-11-03 13:49:36 171904 ----a-w- c:\windows\system32\wuwebv.dll
2012-11-03 09:52:19 -------- d-----w- c:\program files\SystemRequirementsLab
2012-11-03 09:52:14 -------- d-----w- c:\users\admin\SystemRequirementsLab
2012-11-03 09:46:42 821736 ----a-w- c:\windows\system32\npDeployJava1.dll
2012-11-03 09:46:42 746984 ----a-w- c:\windows\system32\deployJava1.dll
2012-11-03 09:46:08 93672 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2012-11-03 09:17:22 -------- d-----w- c:\windows\system32\vi-VN
2012-11-03 09:17:22 -------- d-----w- c:\windows\system32\eu-ES
2012-11-03 09:17:22 -------- d-----w- c:\windows\system32\ca-ES
2012-11-03 08:51:24 -------- d-----w- c:\windows\system32\EventProviders
2012-11-03 08:39:45 -------- d-----w- c:\users\admin\appdata\local\Macromedia
2012-11-03 08:39:03 73656 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-11-03 08:39:03 696760 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-11-02 23:45:24 -------- d-----w- c:\users\admin\appdata\local\Symantec
2012-11-02 23:01:34 -------- d-----w- c:\users\admin\appdata\local\AMD
2012-11-02 22:12:29 -------- d-----w- c:\programdata\AMD
2012-11-02 22:09:15 12240896 ----a-w- c:\windows\system32\NlsLexicons0007.dll
2012-11-02 22:09:06 1081344 ----a-w- c:\windows\system32\SLCExt.dll
2012-11-02 22:09:05 3408896 ----a-w- c:\windows\system32\SLsvc.exe
2012-11-02 22:09:03 65536 ----a-w- c:\windows\system32\DevicePairingWizard.exe
2012-11-02 22:09:03 2134528 ----a-w- c:\windows\system32\FunctionDiscoveryFolder.dll
2012-11-02 22:07:59 190464 ----a-w- c:\windows\system32\sperror.dll
2012-11-02 22:06:58 582144 ----a-w- c:\windows\system32\SLCommDlg.dll
2012-11-02 22:05:59 610304 ----a-w- c:\program files\common files\microsoft shared\dao\dao360.dll
2012-11-02 22:04:59 190424 ----a-w- c:\windows\system32\drivers\fltMgr.sys
2012-11-02 22:03:59 1224192 ----a-w- c:\windows\system32\sud.dll
2012-11-02 22:02:56 72192 ----a-w- c:\windows\system32\drivers\pacer.sys
2012-11-02 22:01:59 31744 ----a-w- c:\windows\system32\cscapi.dll
2012-11-02 21:59:19 83968 ----a-w- c:\windows\system32\wbem\wmiutils.dll
2012-11-02 21:59:19 744448 ----a-w- c:\windows\system32\wbem\wbemcore.dll
2012-11-02 21:59:19 30208 ----a-w- c:\windows\system32\wbem\wbemprox.dll
2012-11-02 21:59:19 265728 ----a-w- c:\windows\system32\wbem\repdrvfs.dll
2012-11-02 21:59:19 265728 ----a-w- c:\windows\system32\wbem\esscli.dll
2012-11-02 21:59:19 189440 ----a-w- c:\windows\system32\wbem\mofd.dll
2012-11-02 21:59:18 614912 ----a-w- c:\windows\system32\wbem\fastprox.dll
2012-11-02 21:58:56 705536 ----a-w- c:\windows\system32\SmiEngine.dll
2012-11-02 21:58:20 218624 ----a-w- c:\windows\system32\wdscore.dll
2012-11-02 21:58:20 130560 ----a-w- c:\windows\system32\PkgMgr.exe
2012-11-02 21:56:27 247808 ----a-w- c:\windows\system32\drvstore.dll
2012-11-02 21:53:48 -------- d-----w- C:\AMD
2012-11-02 21:14:14 -------- d-----w- c:\program files\VideoLAN
2012-11-02 21:10:21 17920 ----a-w- c:\windows\system32\netevent.dll
2012-11-02 21:10:20 125952 ----a-w- c:\windows\system32\srvsvc.dll
2012-11-02 21:05:48 22912 ----a-w- c:\windows\system32\RegistryDefragBootTime.exe
2012-11-02 19:45:07 -------- d-----r- c:\program files\Skype
2012-11-02 19:23:54 -------- d-----w- c:\programdata\IObit
2012-11-02 19:23:48 -------- d-----w- c:\users\admin\appdata\roaming\IObit
2012-11-02 19:23:41 -------- d-----w- c:\program files\IObit
2012-11-02 19:15:45 -------- d-----w- C:\System Recovery Files
2012-11-02 14:45:39 -------- d-----w- c:\users\admin\appdata\local\Google
2012-11-02 13:10:55 293376 ----a-w- c:\windows\system32\browserchoice.exe
2012-11-02 13:07:13 507904 ----a-w- c:\windows\system32\drivers\bthport.sys
2012-11-02 13:07:13 30208 ----a-w- c:\windows\system32\drivers\BTHUSB.SYS
2012-11-02 13:07:13 23040 ----a-w- c:\windows\system32\drivers\bthenum.sys
2012-11-02 13:07:13 196608 ----a-w- c:\windows\system32\fsquirt.exe
2012-11-02 13:05:11 216064 ----a-w- c:\windows\system32\lagarith.dll
2012-11-02 13:05:10 650752 ----a-w- c:\windows\system32\xvidcore.dll
2012-11-02 13:05:10 243200 ----a-w- c:\windows\system32\xvidvfw.dll
2012-11-02 13:05:07 178688 ----a-w- c:\windows\system32\unrar.dll
2012-11-02 13:05:07 151552 ----a-w- c:\windows\system32\ac3acm.acm
2012-11-02 13:05:04 85504 ----a-w- c:\windows\system32\ff_vfw.dll
2012-11-02 13:05:01 -------- d-----w- c:\program files\K-Lite Codec Pack
2012-11-02 13:04:15 24064 ----a-w- c:\windows\system32\nshhttp.dll
2012-11-02 13:04:12 411648 ----a-w- c:\windows\system32\drivers\http.sys
2012-11-02 13:04:11 30720 ----a-w- c:\windows\system32\httpapi.dll
2012-11-02 13:02:44 -------- d-----w- c:\program files\MSXML 4.0
2012-11-02 13:00:02 2048 ----a-w- c:\windows\system32\winrsmgr.dll
2012-11-02 12:55:11 1162240 ----a-w- c:\windows\system32\mfc42u.dll
2012-11-02 12:55:11 1136640 ----a-w- c:\windows\system32\mfc42.dll
2012-11-02 12:54:49 105984 ----a-w- c:\windows\system32\netiohlp.dll
2012-11-02 12:54:47 27136 ----a-w- c:\windows\system32\NETSTAT.EXE
2012-11-02 12:54:46 9728 ----a-w- c:\windows\system32\TCPSVCS.EXE
2012-11-02 12:54:46 8704 ----a-w- c:\windows\system32\HOSTNAME.EXE
2012-11-02 12:54:46 19968 ----a-w- c:\windows\system32\ARP.EXE
2012-11-02 12:54:46 11264 ----a-w- c:\windows\system32\MRINFO.EXE
2012-11-02 12:54:46 10240 ----a-w- c:\windows\system32\finger.exe
2012-11-02 12:54:45 17920 ----a-w- c:\windows\system32\ROUTE.EXE
2012-11-02 12:53:37 499712 ----a-w- c:\windows\system32\kerberos.dll
2012-11-02 12:53:37 175104 ----a-w- c:\windows\system32\wdigest.dll
2012-11-02 12:52:16 1696256 ----a-w- c:\windows\system32\gameux.dll
2012-11-02 12:52:15 28672 ----a-w- c:\windows\system32\Apphlpdm.dll
2012-11-02 12:52:14 4240384 ----a-w- c:\windows\system32\GameUXLegacyGDFs.dll
2012-11-02 12:52:05 526336 ----a-w- c:\windows\system32\RMActivate_isv.exe
2012-11-02 12:52:05 518144 ----a-w- c:\windows\system32\RMActivate.exe
2012-11-02 12:52:03 471552 ----a-w- c:\windows\system32\secproc_isv.dll
2012-11-02 12:52:03 471552 ----a-w- c:\windows\system32\secproc.dll
2012-11-02 12:52:03 347136 ----a-w- c:\windows\system32\RMActivate_ssp.exe
2012-11-02 12:52:02 346624 ----a-w- c:\windows\system32\RMActivate_ssp_isv.exe
2012-11-02 12:52:02 332288 ----a-w- c:\windows\system32\msdrm.dll
2012-11-02 12:52:01 152576 ----a-w- c:\windows\system32\secproc_ssp_isv.dll
2012-11-02 12:52:01 152064 ----a-w- c:\windows\system32\secproc_ssp.dll
2012-11-02 12:51:40 25088 ----a-w- c:\windows\system32\drivers\tunnel.sys
2012-11-02 12:51:40 200704 ----a-w- c:\windows\system32\iphlpsvc.dll
2012-11-02 12:51:28 305152 ----a-w- c:\windows\system32\drivers\srv.sys
2012-11-02 12:51:06 168960 ----a-w- c:\program files\windows media player\wmplayer.exe
2012-11-02 12:51:06 107520 ----a-w- c:\program files\windows media player\wmpshare.exe
2012-11-02 12:51:06 107520 ----a-w- c:\program files\windows media player\wmpconfig.exe
2012-11-02 12:51:05 8147456 ----a-w- c:\windows\system32\wmploc.DLL
2012-11-02 12:51:05 7680 ----a-w- c:\windows\system32\spwmp.dll
2012-11-02 12:51:05 4096 ----a-w- c:\windows\system32\msdxm.ocx
2012-11-02 12:51:05 4096 ----a-w- c:\windows\system32\dxmasf.dll
2012-11-02 12:50:27 69632 ----a-w- c:\windows\system32\drivers\bowser.sys
2012-11-02 12:50:17 53248 ----a-w- c:\windows\system32\rrinstaller.exe
2012-11-02 12:50:17 24576 ----a-w- c:\windows\system32\mfpmp.exe
2012-11-02 12:50:17 2048 ----a-w- c:\windows\system32\mferror.dll
2012-11-02 12:50:09 218624 ----a-w- c:\windows\system32\msv1_0.dll
2012-11-02 12:48:54 601600 ----a-w- c:\windows\system32\schedsvc.dll
2012-11-02 12:48:53 352768 ----a-w- c:\windows\system32\taskschd.dll
2012-11-02 12:48:53 345600 ----a-w- c:\windows\system32\wmicmiplugin.dll
2012-11-02 12:48:52 270336 ----a-w- c:\windows\system32\taskcomp.dll
2012-11-02 12:48:52 171520 ----a-w- c:\windows\system32\taskeng.exe
2012-11-02 12:48:00 1616384 ----a-w- c:\program files\windows mail\msoe.dll
2012-11-02 12:47:54 954752 ----a-w- c:\windows\system32\mfc40.dll
2012-11-02 12:47:53 954288 ----a-w- c:\windows\system32\mfc40u.dll
2012-11-02 12:47:00 86528 ----a-w- c:\windows\system32\dnsrslvr.dll
2012-11-02 12:47:00 25088 ----a-w- c:\windows\system32\dnscacheugc.exe
2012-11-02 12:46:55 292864 ----a-w- c:\windows\system32\atmfd.dll
2012-11-02 12:46:54 72704 ----a-w- c:\windows\system32\fontsub.dll
2012-11-02 12:46:54 34304 ----a-w- c:\windows\system32\atmlib.dll
2012-11-02 12:46:54 23552 ----a-w- c:\windows\system32\lpk.dll
2012-11-02 12:46:54 10240 ----a-w- c:\windows\system32\dciman32.dll
2012-11-02 12:45:40 79872 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2012-11-02 12:45:40 214016 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2012-11-02 12:45:39 106496 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2012-11-02 12:45:19 30720 ----a-w- c:\windows\system32\drivers\tcpipreg.sys
2012-11-02 12:45:13 128000 ----a-w- c:\windows\system32\spoolsv.exe
2012-11-02 12:45:09 2067968 ----a-w- c:\windows\system32\mstscax.dll
2012-11-02 12:45:08 677888 ----a-w- c:\windows\system32\mstsc.exe
2012-11-02 12:45:08 63488 ----a-w- c:\windows\system32\tscupgrd.exe
2012-11-02 12:45:08 53248 ----a-w- c:\windows\system32\tsgqec.dll
2012-11-02 12:45:08 136192 ----a-w- c:\windows\system32\aaclient.dll
2012-11-02 12:45:03 1316864 ----a-w- c:\windows\system32\ole32.dll
2012-11-02 12:45:02 339968 ----a-w- c:\program files\windows nt\accessories\wordpad.exe
2012-11-02 12:44:50 10926592 ----a-w- c:\program files\movie maker\MOVIEMK.dll
2012-11-02 12:44:47 23040 ----a-w- c:\program files\movie maker\WMM2EXT.dll
2012-11-02 12:44:47 195072 ----a-w- c:\program files\movie maker\WMM2AE.dll
2012-11-02 12:44:46 150016 ----a-w- c:\program files\movie maker\MOVIEMK.exe
2012-11-02 12:44:30 322560 ----a-w- c:\windows\system32\sbe.dll
2012-11-02 12:44:30 177664 ----a-w- c:\windows\system32\mpg2splt.ax
2012-11-02 12:44:30 153088 ----a-w- c:\windows\system32\sbeio.dll
2012-11-02 12:44:22 531968 ----a-w- c:\windows\system32\comctl32.dll
2012-11-02 12:44:17 784896 ----a-w- c:\windows\system32\rpcrt4.dll
2012-11-02 12:44:12 160256 ----a-w- c:\windows\system32\wkssvc.dll
2012-11-02 12:43:57 243712 ----a-w- c:\windows\system32\rastls.dll
2012-11-02 12:43:42 146432 ----a-w- c:\windows\system32\drivers\srv2.sys
2012-11-02 12:43:42 102400 ----a-w- c:\windows\system32\drivers\srvnet.sys
2012-11-02 12:43:39 66048 ----a-w- c:\program files\windows mail\wabmig.exe
2012-11-02 12:43:39 515584 ----a-w- c:\program files\windows mail\wab.exe
2012-11-02 12:43:39 33280 ----a-w- c:\program files\windows mail\wabfind.dll
2012-11-02 12:43:31 1169408 ----a-w- c:\windows\system32\sdclt.exe
2012-11-02 12:43:22 71680 ----a-w- c:\windows\system32\atl.dll
2012-11-02 12:43:14 355328 ----a-w- c:\windows\system32\WSDApi.dll
2012-11-02 12:43:09 62464 ----a-w- c:\windows\system32\l3codeca.acm
2012-11-02 12:43:09 220672 ----a-w- c:\windows\system32\l3codecp.acm
2012-11-02 12:43:02 273408 ----a-w- c:\windows\system32\drivers\afd.sys
2012-11-02 12:42:56 739328 ----a-w- c:\windows\system32\inetcomm.dll
2012-11-02 12:42:52 81920 ----a-w- c:\windows\system32\iccvid.dll
2012-11-02 12:42:41 81920 ----a-w- c:\windows\system32\consent.exe
2012-11-02 12:42:25 75264 ----a-w- c:\windows\system32\drivers\dfsc.sys
2012-11-02 12:42:18 502272 ----a-w- c:\windows\system32\usp10.dll
2012-11-02 12:42:12 157184 ----a-w- c:\windows\system32\t2embed.dll
2012-11-02 12:42:05 714240 ----a-w- c:\windows\system32\timedate.cpl
2012-11-02 12:41:55 36864 ----a-w- c:\windows\system32\rtutils.dll
2012-11-02 12:41:39 67072 ----a-w- c:\windows\system32\asycfilt.dll
2012-11-02 12:41:12 60928 ----a-w- c:\windows\system32\msasn1.dll
2012-11-02 12:41:07 98304 ----a-w- c:\windows\system32\cabview.dll
2012-11-02 12:41:04 867328 ----a-w- c:\windows\system32\wmpmde.dll
2012-11-02 12:40:59 317952 ----a-w- c:\windows\system32\MP4SDECD.DLL
2012-11-02 12:40:48 31744 ----a-w- c:\windows\system32\msvidc32.dll
2012-11-02 12:40:48 13312 ----a-w- c:\windows\system32\msrle32.dll
2012-11-02 12:40:48 12288 ----a-w- c:\windows\system32\tsbyuv.dll
2012-11-02 12:40:47 91136 ----a-w- c:\windows\system32\avifil32.dll
2012-11-02 12:40:47 82944 ----a-w- c:\windows\system32\mciavi32.dll
2012-11-02 12:40:47 50176 ----a-w- c:\windows\system32\iyuv_32.dll
2012-11-02 12:40:47 22528 ----a-w- c:\windows\system32\msyuv.dll
2012-11-02 12:40:46 123904 ----a-w- c:\windows\system32\msvfw32.dll
2012-11-02 12:40:23 604672 ----a-w- c:\windows\system32\WMSPDMOD.DLL
2012-11-02 12:39:48 -------- d-----w- c:\program files\Guitar Pro 6
2012-11-02 12:20:49 -------- d-----w- c:\program files\uTorrent
2012-11-02 12:19:11 -------- d-----w- c:\users\admin\appdata\roaming\uTorrent
2012-11-02 12:17:18 1418752 ----a-w- c:\program files\windows media player\setup_wm.exe
2012-11-02 12:17:16 310784 ----a-w- c:\windows\system32\unregmp2.exe
2012-11-02 11:50:40 -------- d-----w- c:\users\admin\appdata\roaming\Macrovision
2012-11-02 11:46:13 -------- d-----w- c:\users\admin\Bluetooth Software
2012-11-02 11:46:09 -------- d-----w- c:\users\admin\appdata\roaming\DigitalPersona
2012-11-02 11:46:09 -------- d-----w- c:\users\admin\appdata\local\DigitalPersona
2012-11-02 11:46:05 -------- d-----w- c:\users\admin\appdata\local\ATI
2012-11-02 11:46:01 -------- d-----w- c:\users\admin\appdata\local\Hewlett-Packard
2012-11-02 11:45:31 -------- d-----w- c:\users\admin\appdata\local\VirtualStore
2012-11-02 11:38:11 -------- d-----w- c:\windows\PCHEALTH
2012-11-02 11:38:11 -------- d-----w- c:\program files\MSN Messenger
2012-11-02 11:34:59 -------- d-sh--we c:\programdata\Plocha
2012-11-02 11:34:59 -------- d-sh--we c:\programdata\Oblíbené položky
2012-11-02 11:34:59 -------- d-sh--we c:\programdata\Šablony
2012-11-02 11:34:59 -------- d-sh--we c:\programdata\Nabídka Start
2012-11-02 11:34:59 -------- d-sh--we c:\programdata\Dokumenty
2012-11-02 11:34:59 -------- d-sh--we c:\programdata\Data aplikací
2012-11-02 10:13:02 -------- d-sh--w- C:\$RECYCLE.BIN
2012-11-02 10:07:27 -------- d-----w- c:\windows\system32\tr
2012-11-02 10:07:27 -------- d-----w- c:\windows\system32\ru
2012-11-02 10:07:26 -------- d-----w- c:\windows\system32\ko
2012-11-02 10:07:25 -------- d-----w- c:\windows\system32\ja
2012-11-02 10:07:25 -------- d-----w- c:\windows\system32\it
2012-11-02 10:07:25 -------- d-----w- c:\windows\system32\fr
2012-11-02 10:07:25 -------- d-----w- c:\windows\system32\es
2012-11-02 10:07:24 -------- d-----w- c:\windows\system32\de
2012-11-02 10:07:23 -------- d-----w- c:\windows\DPDrv
2012-11-02 10:07:20 -------- d-----w- c:\program files\DigitalPersona
2012-11-02 09:46:33 0 ----a-w- c:\windows\ativpsrm.bin
2012-11-02 09:43:59 81960 ----a-w- c:\windows\system32\drivers\btwavdt.sys
2012-11-02 09:43:59 16168 ----a-w- c:\windows\system32\drivers\btwrchid.sys
2012-11-02 09:43:58 80424 ----a-w- c:\windows\system32\drivers\btwaudio.sys
2012-11-02 09:43:52 233472 ----a-w- c:\windows\system32\BtwRSupport.dll
2012-11-02 09:43:45 -------- d-----w- c:\windows\system32\es-MX
2012-11-02 09:43:45 -------- d-----w- c:\windows\system32\es-AR
2012-11-02 09:43:43 -------- d-----w- c:\program files\WIDCOMM
2012-11-02 09:43:03 22072 ----a-w- c:\windows\system32\drivers\usbfilter.sys
2012-11-02 09:43:01 -------- d-----w- c:\program files\AMD
2012-11-02 09:42:47 -------- d-----w- c:\windows\system32\HPMDP
2012-11-02 09:41:47 516096 ----a-w- c:\windows\system32\S64CPA.exe
2012-11-02 09:41:47 -------- d-----w- c:\windows\system32\nn-NO
2012-11-02 09:41:46 53248 ----a-w- c:\windows\system32\athihvui.dll
2012-11-02 09:41:46 393216 ----a-w- c:\windows\system32\athihvs.dll
2012-11-02 09:41:33 -------- d-----w- c:\program files\Atheros
2012-11-02 09:41:30 -------- d-----w- c:\program files\Cisco
2012-11-02 09:41:26 -------- d-----w- c:\programdata\Atheros
2012-11-02 09:40:21 9728 ----a-w- c:\windows\system32\RtNicProp32.dll
2012-11-02 09:40:21 124928 ----a-w- c:\windows\system32\drivers\Rtlh86.sys
2012-11-02 09:40:19 -------- d-----w- c:\program files\Realtek
2012-11-02 09:39:51 53248 ----a-w- c:\windows\system32\aestaren.dll
2012-11-02 09:39:51 376832 ----a-w- c:\windows\system32\aestecap.dll
2012-11-02 09:39:51 133632 ----a-w- c:\windows\system32\aestacap.dll
2012-11-02 09:39:50 73728 ----a-w- c:\windows\system32\AESTCom.dll
2012-11-02 09:39:50 532480 ----a-w- c:\windows\system32\idtmini1.exe
2012-11-02 09:39:50 446556 ----a-w- c:\windows\sttray.exe
2012-11-02 09:39:50 2875392 ----a-w- c:\windows\system32\stlang.dll
2012-11-02 09:39:50 10641500 ----a-w- c:\windows\system32\idtcpl.cpl
2012-11-02 09:39:39 -------- d-----w- c:\windows\system32\SRSLabs
2012-11-02 09:38:41 168960 ----a-w- c:\windows\system32\staco.dll
2012-11-02 09:38:10 389120 ----a-w- c:\windows\system32\drivers\stwrt.sys
2012-11-02 09:38:09 404480 ----a-w- c:\windows\system32\stcplx.dll
2012-11-02 09:38:08 671744 ----a-w- c:\windows\system32\stapo.dll
2012-11-02 09:38:08 427008 ----a-w- c:\windows\system32\stapi32.dll
2012-11-02 09:37:42 -------- d-----w- c:\program files\IDT
2012-11-02 09:37:33 125 ----a-w- c:\windows\xUninstall.bat
2012-11-02 09:36:58 110080 ----a-w- c:\windows\system32\JmCrIcon.dll
2012-11-02 09:36:58 -------- d-----w- c:\windows\JMCR_DIR
2012-11-02 09:36:20 -------- d-----w- c:\program files\Validity Sensors, Inc
2012-11-02 09:35:46 -------- d-----w- c:\program files\Synaptics
2012-11-02 09:31:43 -------- d-----w- c:\program files\ATI
2012-11-02 09:31:40 -------- d-----w- c:\program files\ATI Technologies
.
==================== Find3M ====================
.
2012-11-04 22:52:44 357376 ----a-w- c:\windows\system32\MFHEAACdec.dll
2012-11-04 22:51:27 4096 ----a-w- c:\windows\system32\drivers\cs-cz\dxgkrnl.sys.mui
2012-11-04 22:51:26 4096 ----a-w- c:\windows\system32\drivers\sk-sk\dxgkrnl.sys.mui
2012-11-02 21:08:09 40960 ----a-w- c:\windows\system32\drivers\cs-cz\http.sys.mui
2012-11-02 21:08:09 36864 ----a-w- c:\windows\system32\drivers\en-us\http.sys.mui
2012-11-02 14:19:45 588472 ----a-w- c:\windows\system32\ezsvc7x.dll
2012-10-08 07:56:24 1800704 ----a-w- c:\windows\system32\jscript9.dll
2012-10-08 07:48:03 1129472 ----a-w- c:\windows\system32\wininet.dll
2012-10-08 07:47:44 1427968 ----a-w- c:\windows\system32\inetcpl.cpl
2012-10-08 07:44:05 142848 ----a-w- c:\windows\system32\ieUnatt.exe
2012-10-08 07:43:21 420864 ----a-w- c:\windows\system32\vbscript.dll
2012-10-08 07:40:56 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2012-10-08 07:21:08 121216 ----a-w- c:\windows\system32\drivers\ehdrv.sys
2012-10-08 07:21:08 104712 ----a-w- c:\windows\system32\drivers\epfwwfpr.sys
2012-10-08 07:21:06 170656 ----a-w- c:\windows\system32\drivers\eamonm.sys
.
============= FINISH: 9:30:41,52 ===============

do počítača sa mi dostal po prihlásení na Facebook dwm.exe (2020) Win32/Spy.Zbot.AAO Trojský kôň
Log s DDS:
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 9.0.8112.16455 BrowserJavaVersion: 10.9.2
Run by Admin at 9:26:57 on 2012-11-25
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.421.1051.18.3069.1659 [GMT 1:00]
.
AV: ESET NOD32 Antivirus 6.0 *Enabled/Updated* {77DEAFED-8149-104B-25A1-21771CA47CD1}
SP: ESET NOD32 Antivirus 6.0 *Enabled/Updated* {CCBF4E09-A773-1FC5-1F11-1A056723366C}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Program Files\IObit\Advanced SystemCare 6\ASCService.exe
C:\Windows\system32\Ati2evxx.exe
C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_805f33de\STacSV.exe
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\Hpservice.exe
C:\Windows\system32\Ati2evxx.exe
C:\Windows\system32\vfsFPService.exe
C:\Windows\system32\WLANExt.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\DigitalPersona\Bin\DpHostW.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
C:\Program Files\DigitalPersona\Bin\DpAgent.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_805f33de\aestsrv.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\IDT\WDM\sttray.exe
C:\Program Files\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_32server.exe
C:\Program Files\SMINST\BLService.exe
C:\Program Files\CyberLink\Shared files\RichVideo.exe
C:\Program Files\Hewlett-Packard\Media\TV\Kernel\TV\TVCapSvc.exe
C:\Program Files\Hewlett-Packard\Media\TV\Kernel\TV\TVSched.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files\IObit\Advanced SystemCare 6\ASCTray.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Windows\servicing\TrustedInstaller.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
C:\Program Files\Hewlett-Packard\HP wireless Assistant\WiFiMsg.EXE
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\conime.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=sk_sk&c=91&bd=Pavilion&pf=cnnb
uDefault_Page_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=sk_sk&c=91&bd=Pavilion&pf=cnnb
mStart Page = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=sk_sk&c=91&bd=Pavilion&pf=cnnb
mDefault_Page_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=sk_sk&c=91&bd=Pavilion&pf=cnnb
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre7\bin\ssv.dll
BHO: {7E853D72-626A-48EC-A868-BA8D5E23E045} - <orphaned>
BHO: Advanced SystemCare Browser Protection: {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - c:\program files\iobit\advanced systemcare 6\browerprotect\ASCPlugin_Protection.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre7\bin\jp2ssv.dll
uRun: [LightScribe Control Panel] c:\program files\common files\lightscribe\LightScribeControlPanel.exe -hidden
uRun: [uTorrent] "c:\program files\utorrent\uTorrent.exe" /MINIMIZED
uRun: [Advanced SystemCare 6] "c:\program files\iobit\advanced systemcare 6\ASCTray.exe" /AutoStart
uRun: [Skype] "c:\program files\skype\phone\Skype.exe" /minimized /regrun
uRun: [DAEMON Tools Lite] "c:\program files\daemon tools lite\DTLite.exe" -autorun
uRun: [AdobeBridge] <no file>
mRun: [StartCCC] "c:\program files\ati technologies\ati.ace\core-static\CLIStart.exe" MSRun
mRun: [SynTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe
mRun: [CLMLServer for HP TouchSmart] "c:\program files\hewlett-packard\touchsmart\media\kernel\clml\CLMLSvc.exe"
mRun: [UCam_Menu] "c:\program files\hewlett-packard\media\webcam\muitransfer\muistartmenu.exe" "c:\program files\hewlett-packard\media\webcam" update "software\hewlett-packard\media\Webcam"
mRun: [UpdateLBPShortCut] "c:\program files\cyberlink\labelprint\muitransfer\muistartmenu.exe" "c:\program files\cyberlink\labelprint" updatewithcreateonce "software\cyberlink\labelprint\2.5"
mRun: [UpdatePSTShortCut] "c:\program files\cyberlink\dvd suite\muitransfer\muistartmenu.exe" "c:\program files\cyberlink\dvd suite" updatewithcreateonce "software\cyberlink\PowerStarter"
mRun: [DpAgent] c:\program files\digitalpersona\bin\dpagent.exe
mRun: [Windows Defender] c:\program files\windows defender\MSASCui.exe -hide
mRun: [QlbCtrl.exe] c:\program files\hewlett-packard\hp quick launch buttons\QlbCtrl.exe /Start
mRun: [UpdateP2GoShortCut] "c:\program files\cyberlink\power2go\muitransfer\muistartmenu.exe" "c:\program files\cyberlink\power2go" updatewithcreateonce "software\cyberlink\power2go\6.0"
mRun: [UpdatePDIRShortCut] "c:\program files\cyberlink\powerdirector\muitransfer\muistartmenu.exe" "c:\program files\cyberlink\powerdirector" updatewithcreateonce "software\cyberlink\powerdirector\7.0"
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [HP Health Check Scheduler] c:\program files\hewlett-packard\hp health check\HPHC_Scheduler.exe
mRun: [HP Software Update] c:\program files\hp\hp software update\HPWuSchd2.exe
mRun: [hpWirelessAssistant] c:\program files\hewlett-packard\hp wireless assistant\HPWAMain.exe
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [SysTrayApp] c:\program files\idt\wdm\sttray.exe
mRun: [AdobeAAMUpdater-1.0] "c:\program files\common files\adobe\oobe\pdapp\uwa\UpdaterStartupUtility.exe"
mRun: [AdobeCS6ServiceManager] "c:\program files\common files\adobe\cs6servicemanager\CS6ServiceManager.exe" -launchedbylogin
mRun: [SwitchBoard] c:\program files\common files\adobe\switchboard\SwitchBoard.exe
mRun: [egui] "c:\program files\eset\eset nod32 antivirus\egui.exe" /hide /waitservice
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\blueto~1.lnk - c:\program files\widcomm\bluetooth software\BTTray.exe
mPolicies-Explorer: BindDirectlyToPropertySetStorage = dword:0
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: Send image to &Bluetooth Device... - c:\program files\widcomm\bluetooth software\btsendto_ie_ctx.htm
IE: Send page to &Bluetooth Device... - c:\program files\widcomm\bluetooth software\btsendto_ie.htm
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBC} - c:\program files\java\jre7\bin\jp2iexp.dll
IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\program files\widcomm\bluetooth software\btsendto_ie.htm
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
TCP: NameServer = 192.168.2.1
TCP: Interfaces\{3EB28724-06DA-4B57-8661-AF46C61CF4AA} : DHCPNameServer = 192.168.2.1
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
LSA: Notification Packages = scecli DPPWDFLT
LSA: Security Packages = kerberos msv1_0 schannel wdigest tspkg
mASetup: {10880D85-AAD9-4558-ABDC-2AB1552D831F} - "c:\program files\common files\lightscribe\LSRunOnce.exe"
.
============= SERVICES / DRIVERS ===============
.
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\drivers\dtsoftbus01.sys [2012-11-4 242240]
R1 eamonm;eamonm;c:\windows\system32\drivers\eamonm.sys [2012-10-8 170656]
R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [2012-10-8 121216]
R2 epfwwfpr;epfwwfpr;c:\windows\system32\drivers\epfwwfpr.sys [2012-10-8 104712]
R3 enecir;ENE CIR Receiver;c:\windows\system32\drivers\enecir.sys [2008-9-4 54784]
S3 DrvAgent32;DrvAgent32;c:\windows\system32\drivers\DrvAgent32.sys [2012-11-3 23456]
S3 JMCR;JMCR;c:\windows\system32\drivers\jmcr.sys [2008-8-7 97536]
.
=============== Created Last 30 ================
.
2012-11-24 14:08:26 -------- d-----w- c:\users\admin\appdata\local\ESET
2012-11-24 14:08:03 -------- d-----w- c:\users\admin\appdata\roaming\Wacyq
2012-11-24 14:08:03 -------- d-----w- c:\users\admin\appdata\roaming\Obahmu
2012-11-24 14:08:03 -------- d-----w- c:\users\admin\appdata\roaming\Elfab
2012-11-23 18:58:23 6812136 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{84e6a803-9186-41b8-b790-c41a6470db91}\mpengine.dll
2012-11-21 10:18:16 -------- d-----w- c:\programdata\boost_interprocess
2012-11-21 10:05:18 -------- d-----w- c:\users\admin\appdata\local\Autodesk
2012-11-21 10:00:54 -------- d-----w- c:\program files\common files\Macrovision Shared
2012-11-21 09:52:21 -------- d-----w- c:\program files\Autodesk
2012-11-21 09:47:06 -------- d-----w- c:\program files\common files\Autodesk Shared
2012-11-21 09:46:40 452440 ----a-w- c:\windows\system32\d3dx10_40.dll
2012-11-21 09:46:40 2036576 ----a-w- c:\windows\system32\D3DCompiler_40.dll
2012-11-21 09:46:38 4379984 ----a-w- c:\windows\system32\D3DX9_40.dll
2012-11-21 09:34:28 -------- d-----w- c:\users\admin\appdata\roaming\Autodesk
2012-11-21 08:42:46 -------- d-----w- c:\users\admin\appdata\local\TSR Workshop
2012-11-21 08:42:08 -------- d-----w- c:\users\admin\appdata\local\Ibibi_HB
2012-11-21 08:42:06 -------- d-----w- c:\users\admin\appdata\roaming\TSRWorkshop
2012-11-21 08:41:28 -------- d-----w- c:\program files\The Sims Resource
2012-11-21 08:39:08 -------- d-----w- c:\users\admin\appdata\roaming\The Sims Resource
2012-11-19 12:52:09 445008 ----a-w- c:\windows\system32\drivers\Wdf01000.sys
2012-11-19 12:52:09 38480 ----a-w- c:\windows\system32\drivers\WdfLdr.sys
2012-11-18 14:39:55 6812136 ----a-w- c:\programdata\microsoft\windows defender\definition updates\backup\mpengine.dll
2012-11-18 14:39:41 237072 ------w- c:\windows\system32\MpSigStub.exe
2012-11-18 12:41:51 -------- d-----w- c:\program files\ESET
2012-11-15 14:38:38 -------- d-----w- c:\program files\Mad Scientist Productions
2012-11-14 09:52:57 75776 ----a-w- c:\windows\system32\synceng.dll
2012-11-14 09:52:18 2047488 ----a-w- c:\windows\system32\win32k.sys
2012-11-07 14:15:37 -------- d-----w- c:\programdata\EA Core
2012-11-07 14:06:51 -------- d-----w- c:\programdata\Origin
2012-11-07 09:29:48 -------- d-----w- c:\users\admin\appdata\roaming\Origin
2012-11-07 09:29:46 -------- d-----w- c:\programdata\Electronic Arts
2012-11-07 09:29:25 -------- d-----w- c:\program files\Origin
2012-11-07 09:13:39 -------- d-----w- c:\program files\Microsoft WSE
2012-11-06 17:00:20 -------- d-sh--w- C:\found.001
2012-11-06 16:50:01 -------- d-sh--w- C:\found.000
2012-11-06 08:18:19 -------- d-----w- c:\users\admin\appdata\roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
2012-11-06 08:15:05 -------- d-----w- c:\programdata\regid.1986-12.com.adobe
2012-11-06 08:12:30 -------- d-----w- c:\programdata\ALM
2012-11-06 07:51:41 -------- d-----w- c:\users\admin\appdata\local\Adobe
2012-11-05 15:23:05 876032 ----a-w- c:\windows\system32\XpsPrint.dll
2012-11-05 15:22:58 219648 ----a-w- c:\windows\system32\d3d10_1core.dll
2012-11-05 15:22:58 1172480 ----a-w- c:\windows\system32\d3d10warp.dll
2012-11-05 15:22:58 1069056 ----a-w- c:\windows\system32\DWrite.dll
2012-11-05 15:22:57 683008 ----a-w- c:\windows\system32\d2d1.dll
2012-11-05 15:22:57 160768 ----a-w- c:\windows\system32\d3d10_1.dll
2012-11-05 15:19:50 69632 ----a-w- c:\windows\system32\Mpeg2Data.ax
2012-11-05 15:19:50 57856 ----a-w- c:\windows\system32\MSDvbNP.ax
2012-11-05 15:19:50 293376 ----a-w- c:\windows\system32\psisdecd.dll
2012-11-05 15:19:50 217088 ----a-w- c:\windows\system32\psisrndr.ax
2012-11-05 15:19:40 189952 ----a-w- c:\windows\system32\winmm.dll
2012-11-05 15:19:38 23552 ----a-w- c:\windows\system32\mciseq.dll
2012-11-05 15:19:08 623616 ----a-w- c:\windows\system32\localspl.dll
2012-11-05 15:17:59 429056 ----a-w- c:\windows\system32\EncDec.dll
2012-11-05 15:17:53 53120 ----a-w- c:\windows\system32\drivers\partmgr.sys
2012-11-05 07:38:37 -------- d-----w- c:\program files\Windows Portable Devices
2012-11-05 07:38:36 -------- d-----w- c:\windows\system32\drivers\umdf\sk-SK
2012-11-04 23:15:27 92672 ----a-w- c:\windows\system32\UIAnimation.dll
2012-11-04 23:15:25 3023360 ----a-w- c:\windows\system32\UIRibbon.dll
2012-11-04 23:15:25 1164800 ----a-w- c:\windows\system32\UIRibbonRes.dll
2012-11-04 23:12:59 839168 ----a-w- c:\windows\system32\drivers\umdf\WpdMtpDr.dll
2012-11-04 23:03:47 5120 ----a-w- c:\windows\system32\wmi.dll
2012-11-04 23:03:47 157696 ----a-w- c:\windows\system32\imagehlp.dll
2012-11-04 23:03:47 12800 ----a-w- c:\windows\system32\drivers\fs_rec.sys
2012-11-04 22:52:44 979456 ----a-w- c:\windows\system32\MFH264Dec.dll
2012-11-04 22:51:26 369664 ----a-w- c:\windows\system32\WMPhoto.dll
2012-11-04 22:51:26 252928 ----a-w- c:\windows\system32\dxdiag.exe
2012-11-04 22:51:26 195584 ----a-w- c:\windows\system32\dxdiagn.dll
2012-11-04 22:51:25 974848 ----a-w- c:\windows\system32\WindowsCodecs.dll
2012-11-04 22:51:25 519680 ----a-w- c:\windows\system32\d3d11.dll
2012-11-04 22:51:25 321024 ----a-w- c:\windows\system32\PhotoMetadataHandler.dll
2012-11-04 22:51:25 189440 ----a-w- c:\windows\system32\WindowsCodecsExt.dll
2012-11-04 08:41:05 -------- d-----w- c:\users\admin\appdata\roaming\2K Sports
2012-11-04 08:14:59 443752 ----a-w- c:\windows\system32\d3dx10_34.dll
2012-11-04 08:09:57 -------- d--h--w- c:\windows\msdownld.tmp
2012-11-04 08:09:12 -------- d-----w- c:\windows\system32\directx
2012-11-04 08:04:17 -------- d-----w- c:\users\admin\appdata\roaming\YourFileDownloader
2012-11-03 23:54:51 470880 ----a-w- c:\windows\system32\d3dx10_43.dll
2012-11-03 23:54:51 248672 ----a-w- c:\windows\system32\d3dx11_43.dll
2012-11-03 23:54:51 2106216 ----a-w- c:\windows\system32\D3DCompiler_43.dll
2012-11-03 23:54:51 1998168 ----a-w- c:\windows\system32\D3DX9_43.dll
2012-11-03 23:30:15 -------- d-----w- c:\program files\2K Sports
2012-11-03 23:25:30 242240 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2012-11-03 23:25:23 -------- d-----w- c:\users\admin\appdata\roaming\DAEMON Tools Lite
2012-11-03 23:25:20 -------- d-----w- c:\program files\DAEMON Tools Lite
2012-11-03 23:24:48 -------- d-----w- c:\programdata\DAEMON Tools Lite
2012-11-03 20:55:34 23456 ----a-w- c:\windows\system32\drivers\DrvAgent32.sys
2012-11-03 20:55:34 -------- d-----w- c:\users\admin\appdata\local\eSupport.com
2012-11-03 15:27:29 1205064 ----a-w- c:\windows\system32\ntdll.dll
2012-11-03 15:25:48 905600 ----a-w- c:\windows\system32\drivers\tcpip.sys
2012-11-03 15:25:43 1404928 ----a-w- c:\program files\common files\microsoft shared\ink\InkObj.dll
2012-11-03 15:25:43 1218048 ----a-w- c:\program files\windows journal\NBDoc.DLL
2012-11-03 15:25:42 964608 ----a-w- c:\program files\windows journal\JNWDRV.dll
2012-11-03 15:25:41 983040 ----a-w- c:\program files\windows journal\JNTFiltr.dll
2012-11-03 15:25:41 936960 ----a-w- c:\program files\common files\microsoft shared\ink\journal.dll
2012-11-03 15:25:41 47104 ----a-w- c:\program files\windows journal\PDIALOG.exe
2012-11-03 15:25:12 797696 ----a-w- c:\windows\system32\FntCache.dll
2012-11-03 15:25:11 288768 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2012-11-03 15:24:55 66560 ----a-w- c:\windows\system32\packager.dll
2012-11-03 15:24:49 376320 ----a-w- c:\windows\system32\winsrv.dll
2012-11-03 15:24:47 680448 ----a-w- c:\windows\system32\msvcrt.dll
2012-11-03 15:24:29 985088 ----a-w- c:\windows\system32\crypt32.dll
2012-11-03 15:24:29 133120 ----a-w- c:\windows\system32\cryptsvc.dll
2012-11-03 15:24:28 98304 ----a-w- c:\windows\system32\cryptnet.dll
2012-11-03 15:24:01 172544 ----a-w- c:\windows\system32\wintrust.dll
2012-11-03 15:23:54 708608 ----a-w- c:\program files\common files\system\ado\msado15.dll
2012-11-03 15:23:50 49152 ----a-w- c:\windows\system32\csrsrv.dll
2012-11-03 15:23:46 1314816 ----a-w- c:\windows\system32\quartz.dll
2012-11-03 15:23:45 497152 ----a-w- c:\windows\system32\qdvd.dll
2012-11-03 15:23:31 2048 ----a-w- c:\windows\system32\tzres.dll
2012-11-03 15:23:10 377344 ----a-w- c:\windows\system32\winhttp.dll
2012-11-03 15:22:48 2409784 ----a-w- c:\program files\windows mail\OESpamFilter.dat
2012-11-03 15:22:28 555520 ----a-w- c:\windows\system32\UIAutomationCore.dll
2012-11-03 15:22:28 4096 ----a-w- c:\windows\system32\oleaccrc.dll
2012-11-03 15:22:27 563712 ----a-w- c:\windows\system32\oleaut32.dll
2012-11-03 15:22:27 238080 ----a-w- c:\windows\system32\oleacc.dll
2012-11-03 15:21:58 1401856 ----a-w- c:\windows\system32\msxml6.dll
2012-11-03 15:21:58 1248768 ----a-w- c:\windows\system32\msxml3.dll
2012-11-03 15:21:43 180736 ----a-w- c:\windows\system32\drivers\rdpwd.sys
2012-11-03 15:21:35 707584 ----a-w- c:\program files\common files\system\wab32.dll
2012-11-03 15:19:48 440704 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2012-11-03 15:19:48 278528 ----a-w- c:\windows\system32\schannel.dll
2012-11-03 15:19:47 1259008 ----a-w- c:\windows\system32\lsasrv.dll
2012-11-03 15:19:46 9728 ----a-w- c:\windows\system32\lsass.exe
2012-11-03 15:19:46 72704 ----a-w- c:\windows\system32\secur32.dll
2012-11-03 15:19:46 204288 ----a-w- c:\windows\system32\ncrypt.dll
2012-11-03 15:19:43 231424 ----a-w- c:\windows\system32\msshsq.dll
2012-11-03 15:19:37 3602816 ----a-w- c:\windows\system32\ntkrnlpa.exe
2012-11-03 15:19:37 3550080 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-11-03 14:47:50 613376 ----a-w- c:\windows\system32\rdpencom.dll
2012-11-03 14:11:02 99176 ----a-w- c:\windows\system32\PresentationHostProxy.dll
2012-11-03 14:11:02 295264 ----a-w- c:\windows\system32\PresentationHost.exe
2012-11-03 14:11:01 49472 ----a-w- c:\windows\system32\netfxperf.dll
2012-11-03 14:11:01 297808 ----a-w- c:\windows\system32\mscoree.dll
2012-11-03 14:11:01 1130824 ----a-w- c:\windows\system32\dfshim.dll
2012-11-03 13:51:09 2422272 ----a-w- c:\windows\system32\wucltux.dll
2012-11-03 13:50:11 88576 ----a-w- c:\windows\system32\wudriver.dll
2012-11-03 13:49:36 33792 ----a-w- c:\windows\system32\wuapp.exe
2012-11-03 13:49:36 171904 ----a-w- c:\windows\system32\wuwebv.dll
2012-11-03 09:52:19 -------- d-----w- c:\program files\SystemRequirementsLab
2012-11-03 09:52:14 -------- d-----w- c:\users\admin\SystemRequirementsLab
2012-11-03 09:46:42 821736 ----a-w- c:\windows\system32\npDeployJava1.dll
2012-11-03 09:46:42 746984 ----a-w- c:\windows\system32\deployJava1.dll
2012-11-03 09:46:08 93672 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2012-11-03 09:17:22 -------- d-----w- c:\windows\system32\vi-VN
2012-11-03 09:17:22 -------- d-----w- c:\windows\system32\eu-ES
2012-11-03 09:17:22 -------- d-----w- c:\windows\system32\ca-ES
2012-11-03 08:51:24 -------- d-----w- c:\windows\system32\EventProviders
2012-11-03 08:39:45 -------- d-----w- c:\users\admin\appdata\local\Macromedia
2012-11-03 08:39:03 73656 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-11-03 08:39:03 696760 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-11-02 23:45:24 -------- d-----w- c:\users\admin\appdata\local\Symantec
2012-11-02 23:01:34 -------- d-----w- c:\users\admin\appdata\local\AMD
2012-11-02 22:12:29 -------- d-----w- c:\programdata\AMD
2012-11-02 22:09:15 12240896 ----a-w- c:\windows\system32\NlsLexicons0007.dll
2012-11-02 22:09:06 1081344 ----a-w- c:\windows\system32\SLCExt.dll
2012-11-02 22:09:05 3408896 ----a-w- c:\windows\system32\SLsvc.exe
2012-11-02 22:09:03 65536 ----a-w- c:\windows\system32\DevicePairingWizard.exe
2012-11-02 22:09:03 2134528 ----a-w- c:\windows\system32\FunctionDiscoveryFolder.dll
2012-11-02 22:07:59 190464 ----a-w- c:\windows\system32\sperror.dll
2012-11-02 22:06:58 582144 ----a-w- c:\windows\system32\SLCommDlg.dll
2012-11-02 22:05:59 610304 ----a-w- c:\program files\common files\microsoft shared\dao\dao360.dll
2012-11-02 22:04:59 190424 ----a-w- c:\windows\system32\drivers\fltMgr.sys
2012-11-02 22:03:59 1224192 ----a-w- c:\windows\system32\sud.dll
2012-11-02 22:02:56 72192 ----a-w- c:\windows\system32\drivers\pacer.sys
2012-11-02 22:01:59 31744 ----a-w- c:\windows\system32\cscapi.dll
2012-11-02 21:59:19 83968 ----a-w- c:\windows\system32\wbem\wmiutils.dll
2012-11-02 21:59:19 744448 ----a-w- c:\windows\system32\wbem\wbemcore.dll
2012-11-02 21:59:19 30208 ----a-w- c:\windows\system32\wbem\wbemprox.dll
2012-11-02 21:59:19 265728 ----a-w- c:\windows\system32\wbem\repdrvfs.dll
2012-11-02 21:59:19 265728 ----a-w- c:\windows\system32\wbem\esscli.dll
2012-11-02 21:59:19 189440 ----a-w- c:\windows\system32\wbem\mofd.dll
2012-11-02 21:59:18 614912 ----a-w- c:\windows\system32\wbem\fastprox.dll
2012-11-02 21:58:56 705536 ----a-w- c:\windows\system32\SmiEngine.dll
2012-11-02 21:58:20 218624 ----a-w- c:\windows\system32\wdscore.dll
2012-11-02 21:58:20 130560 ----a-w- c:\windows\system32\PkgMgr.exe
2012-11-02 21:56:27 247808 ----a-w- c:\windows\system32\drvstore.dll
2012-11-02 21:53:48 -------- d-----w- C:\AMD
2012-11-02 21:14:14 -------- d-----w- c:\program files\VideoLAN
2012-11-02 21:10:21 17920 ----a-w- c:\windows\system32\netevent.dll
2012-11-02 21:10:20 125952 ----a-w- c:\windows\system32\srvsvc.dll
2012-11-02 21:05:48 22912 ----a-w- c:\windows\system32\RegistryDefragBootTime.exe
2012-11-02 19:45:07 -------- d-----r- c:\program files\Skype
2012-11-02 19:23:54 -------- d-----w- c:\programdata\IObit
2012-11-02 19:23:48 -------- d-----w- c:\users\admin\appdata\roaming\IObit
2012-11-02 19:23:41 -------- d-----w- c:\program files\IObit
2012-11-02 19:15:45 -------- d-----w- C:\System Recovery Files
2012-11-02 14:45:39 -------- d-----w- c:\users\admin\appdata\local\Google
2012-11-02 13:10:55 293376 ----a-w- c:\windows\system32\browserchoice.exe
2012-11-02 13:07:13 507904 ----a-w- c:\windows\system32\drivers\bthport.sys
2012-11-02 13:07:13 30208 ----a-w- c:\windows\system32\drivers\BTHUSB.SYS
2012-11-02 13:07:13 23040 ----a-w- c:\windows\system32\drivers\bthenum.sys
2012-11-02 13:07:13 196608 ----a-w- c:\windows\system32\fsquirt.exe
2012-11-02 13:05:11 216064 ----a-w- c:\windows\system32\lagarith.dll
2012-11-02 13:05:10 650752 ----a-w- c:\windows\system32\xvidcore.dll
2012-11-02 13:05:10 243200 ----a-w- c:\windows\system32\xvidvfw.dll
2012-11-02 13:05:07 178688 ----a-w- c:\windows\system32\unrar.dll
2012-11-02 13:05:07 151552 ----a-w- c:\windows\system32\ac3acm.acm
2012-11-02 13:05:04 85504 ----a-w- c:\windows\system32\ff_vfw.dll
2012-11-02 13:05:01 -------- d-----w- c:\program files\K-Lite Codec Pack
2012-11-02 13:04:15 24064 ----a-w- c:\windows\system32\nshhttp.dll
2012-11-02 13:04:12 411648 ----a-w- c:\windows\system32\drivers\http.sys
2012-11-02 13:04:11 30720 ----a-w- c:\windows\system32\httpapi.dll
2012-11-02 13:02:44 -------- d-----w- c:\program files\MSXML 4.0
2012-11-02 13:00:02 2048 ----a-w- c:\windows\system32\winrsmgr.dll
2012-11-02 12:55:11 1162240 ----a-w- c:\windows\system32\mfc42u.dll
2012-11-02 12:55:11 1136640 ----a-w- c:\windows\system32\mfc42.dll
2012-11-02 12:54:49 105984 ----a-w- c:\windows\system32\netiohlp.dll
2012-11-02 12:54:47 27136 ----a-w- c:\windows\system32\NETSTAT.EXE
2012-11-02 12:54:46 9728 ----a-w- c:\windows\system32\TCPSVCS.EXE
2012-11-02 12:54:46 8704 ----a-w- c:\windows\system32\HOSTNAME.EXE
2012-11-02 12:54:46 19968 ----a-w- c:\windows\system32\ARP.EXE
2012-11-02 12:54:46 11264 ----a-w- c:\windows\system32\MRINFO.EXE
2012-11-02 12:54:46 10240 ----a-w- c:\windows\system32\finger.exe
2012-11-02 12:54:45 17920 ----a-w- c:\windows\system32\ROUTE.EXE
2012-11-02 12:53:37 499712 ----a-w- c:\windows\system32\kerberos.dll
2012-11-02 12:53:37 175104 ----a-w- c:\windows\system32\wdigest.dll
2012-11-02 12:52:16 1696256 ----a-w- c:\windows\system32\gameux.dll
2012-11-02 12:52:15 28672 ----a-w- c:\windows\system32\Apphlpdm.dll
2012-11-02 12:52:14 4240384 ----a-w- c:\windows\system32\GameUXLegacyGDFs.dll
2012-11-02 12:52:05 526336 ----a-w- c:\windows\system32\RMActivate_isv.exe
2012-11-02 12:52:05 518144 ----a-w- c:\windows\system32\RMActivate.exe
2012-11-02 12:52:03 471552 ----a-w- c:\windows\system32\secproc_isv.dll
2012-11-02 12:52:03 471552 ----a-w- c:\windows\system32\secproc.dll
2012-11-02 12:52:03 347136 ----a-w- c:\windows\system32\RMActivate_ssp.exe
2012-11-02 12:52:02 346624 ----a-w- c:\windows\system32\RMActivate_ssp_isv.exe
2012-11-02 12:52:02 332288 ----a-w- c:\windows\system32\msdrm.dll
2012-11-02 12:52:01 152576 ----a-w- c:\windows\system32\secproc_ssp_isv.dll
2012-11-02 12:52:01 152064 ----a-w- c:\windows\system32\secproc_ssp.dll
2012-11-02 12:51:40 25088 ----a-w- c:\windows\system32\drivers\tunnel.sys
2012-11-02 12:51:40 200704 ----a-w- c:\windows\system32\iphlpsvc.dll
2012-11-02 12:51:28 305152 ----a-w- c:\windows\system32\drivers\srv.sys
2012-11-02 12:51:06 168960 ----a-w- c:\program files\windows media player\wmplayer.exe
2012-11-02 12:51:06 107520 ----a-w- c:\program files\windows media player\wmpshare.exe
2012-11-02 12:51:06 107520 ----a-w- c:\program files\windows media player\wmpconfig.exe
2012-11-02 12:51:05 8147456 ----a-w- c:\windows\system32\wmploc.DLL
2012-11-02 12:51:05 7680 ----a-w- c:\windows\system32\spwmp.dll
2012-11-02 12:51:05 4096 ----a-w- c:\windows\system32\msdxm.ocx
2012-11-02 12:51:05 4096 ----a-w- c:\windows\system32\dxmasf.dll
2012-11-02 12:50:27 69632 ----a-w- c:\windows\system32\drivers\bowser.sys
2012-11-02 12:50:17 53248 ----a-w- c:\windows\system32\rrinstaller.exe
2012-11-02 12:50:17 24576 ----a-w- c:\windows\system32\mfpmp.exe
2012-11-02 12:50:17 2048 ----a-w- c:\windows\system32\mferror.dll
2012-11-02 12:50:09 218624 ----a-w- c:\windows\system32\msv1_0.dll
2012-11-02 12:48:54 601600 ----a-w- c:\windows\system32\schedsvc.dll
2012-11-02 12:48:53 352768 ----a-w- c:\windows\system32\taskschd.dll
2012-11-02 12:48:53 345600 ----a-w- c:\windows\system32\wmicmiplugin.dll
2012-11-02 12:48:52 270336 ----a-w- c:\windows\system32\taskcomp.dll
2012-11-02 12:48:52 171520 ----a-w- c:\windows\system32\taskeng.exe
2012-11-02 12:48:00 1616384 ----a-w- c:\program files\windows mail\msoe.dll
2012-11-02 12:47:54 954752 ----a-w- c:\windows\system32\mfc40.dll
2012-11-02 12:47:53 954288 ----a-w- c:\windows\system32\mfc40u.dll
2012-11-02 12:47:00 86528 ----a-w- c:\windows\system32\dnsrslvr.dll
2012-11-02 12:47:00 25088 ----a-w- c:\windows\system32\dnscacheugc.exe
2012-11-02 12:46:55 292864 ----a-w- c:\windows\system32\atmfd.dll
2012-11-02 12:46:54 72704 ----a-w- c:\windows\system32\fontsub.dll
2012-11-02 12:46:54 34304 ----a-w- c:\windows\system32\atmlib.dll
2012-11-02 12:46:54 23552 ----a-w- c:\windows\system32\lpk.dll
2012-11-02 12:46:54 10240 ----a-w- c:\windows\system32\dciman32.dll
2012-11-02 12:45:40 79872 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2012-11-02 12:45:40 214016 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2012-11-02 12:45:39 106496 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2012-11-02 12:45:19 30720 ----a-w- c:\windows\system32\drivers\tcpipreg.sys
2012-11-02 12:45:13 128000 ----a-w- c:\windows\system32\spoolsv.exe
2012-11-02 12:45:09 2067968 ----a-w- c:\windows\system32\mstscax.dll
2012-11-02 12:45:08 677888 ----a-w- c:\windows\system32\mstsc.exe
2012-11-02 12:45:08 63488 ----a-w- c:\windows\system32\tscupgrd.exe
2012-11-02 12:45:08 53248 ----a-w- c:\windows\system32\tsgqec.dll
2012-11-02 12:45:08 136192 ----a-w- c:\windows\system32\aaclient.dll
2012-11-02 12:45:03 1316864 ----a-w- c:\windows\system32\ole32.dll
2012-11-02 12:45:02 339968 ----a-w- c:\program files\windows nt\accessories\wordpad.exe
2012-11-02 12:44:50 10926592 ----a-w- c:\program files\movie maker\MOVIEMK.dll
2012-11-02 12:44:47 23040 ----a-w- c:\program files\movie maker\WMM2EXT.dll
2012-11-02 12:44:47 195072 ----a-w- c:\program files\movie maker\WMM2AE.dll
2012-11-02 12:44:46 150016 ----a-w- c:\program files\movie maker\MOVIEMK.exe
2012-11-02 12:44:30 322560 ----a-w- c:\windows\system32\sbe.dll
2012-11-02 12:44:30 177664 ----a-w- c:\windows\system32\mpg2splt.ax
2012-11-02 12:44:30 153088 ----a-w- c:\windows\system32\sbeio.dll
2012-11-02 12:44:22 531968 ----a-w- c:\windows\system32\comctl32.dll
2012-11-02 12:44:17 784896 ----a-w- c:\windows\system32\rpcrt4.dll
2012-11-02 12:44:12 160256 ----a-w- c:\windows\system32\wkssvc.dll
2012-11-02 12:43:57 243712 ----a-w- c:\windows\system32\rastls.dll
2012-11-02 12:43:42 146432 ----a-w- c:\windows\system32\drivers\srv2.sys
2012-11-02 12:43:42 102400 ----a-w- c:\windows\system32\drivers\srvnet.sys
2012-11-02 12:43:39 66048 ----a-w- c:\program files\windows mail\wabmig.exe
2012-11-02 12:43:39 515584 ----a-w- c:\program files\windows mail\wab.exe
2012-11-02 12:43:39 33280 ----a-w- c:\program files\windows mail\wabfind.dll
2012-11-02 12:43:31 1169408 ----a-w- c:\windows\system32\sdclt.exe
2012-11-02 12:43:22 71680 ----a-w- c:\windows\system32\atl.dll
2012-11-02 12:43:14 355328 ----a-w- c:\windows\system32\WSDApi.dll
2012-11-02 12:43:09 62464 ----a-w- c:\windows\system32\l3codeca.acm
2012-11-02 12:43:09 220672 ----a-w- c:\windows\system32\l3codecp.acm
2012-11-02 12:43:02 273408 ----a-w- c:\windows\system32\drivers\afd.sys
2012-11-02 12:42:56 739328 ----a-w- c:\windows\system32\inetcomm.dll
2012-11-02 12:42:52 81920 ----a-w- c:\windows\system32\iccvid.dll
2012-11-02 12:42:41 81920 ----a-w- c:\windows\system32\consent.exe
2012-11-02 12:42:25 75264 ----a-w- c:\windows\system32\drivers\dfsc.sys
2012-11-02 12:42:18 502272 ----a-w- c:\windows\system32\usp10.dll
2012-11-02 12:42:12 157184 ----a-w- c:\windows\system32\t2embed.dll
2012-11-02 12:42:05 714240 ----a-w- c:\windows\system32\timedate.cpl
2012-11-02 12:41:55 36864 ----a-w- c:\windows\system32\rtutils.dll
2012-11-02 12:41:39 67072 ----a-w- c:\windows\system32\asycfilt.dll
2012-11-02 12:41:12 60928 ----a-w- c:\windows\system32\msasn1.dll
2012-11-02 12:41:07 98304 ----a-w- c:\windows\system32\cabview.dll
2012-11-02 12:41:04 867328 ----a-w- c:\windows\system32\wmpmde.dll
2012-11-02 12:40:59 317952 ----a-w- c:\windows\system32\MP4SDECD.DLL
2012-11-02 12:40:48 31744 ----a-w- c:\windows\system32\msvidc32.dll
2012-11-02 12:40:48 13312 ----a-w- c:\windows\system32\msrle32.dll
2012-11-02 12:40:48 12288 ----a-w- c:\windows\system32\tsbyuv.dll
2012-11-02 12:40:47 91136 ----a-w- c:\windows\system32\avifil32.dll
2012-11-02 12:40:47 82944 ----a-w- c:\windows\system32\mciavi32.dll
2012-11-02 12:40:47 50176 ----a-w- c:\windows\system32\iyuv_32.dll
2012-11-02 12:40:47 22528 ----a-w- c:\windows\system32\msyuv.dll
2012-11-02 12:40:46 123904 ----a-w- c:\windows\system32\msvfw32.dll
2012-11-02 12:40:23 604672 ----a-w- c:\windows\system32\WMSPDMOD.DLL
2012-11-02 12:39:48 -------- d-----w- c:\program files\Guitar Pro 6
2012-11-02 12:20:49 -------- d-----w- c:\program files\uTorrent
2012-11-02 12:19:11 -------- d-----w- c:\users\admin\appdata\roaming\uTorrent
2012-11-02 12:17:18 1418752 ----a-w- c:\program files\windows media player\setup_wm.exe
2012-11-02 12:17:16 310784 ----a-w- c:\windows\system32\unregmp2.exe
2012-11-02 11:50:40 -------- d-----w- c:\users\admin\appdata\roaming\Macrovision
2012-11-02 11:46:13 -------- d-----w- c:\users\admin\Bluetooth Software
2012-11-02 11:46:09 -------- d-----w- c:\users\admin\appdata\roaming\DigitalPersona
2012-11-02 11:46:09 -------- d-----w- c:\users\admin\appdata\local\DigitalPersona
2012-11-02 11:46:05 -------- d-----w- c:\users\admin\appdata\local\ATI
2012-11-02 11:46:01 -------- d-----w- c:\users\admin\appdata\local\Hewlett-Packard
2012-11-02 11:45:31 -------- d-----w- c:\users\admin\appdata\local\VirtualStore
2012-11-02 11:38:11 -------- d-----w- c:\windows\PCHEALTH
2012-11-02 11:38:11 -------- d-----w- c:\program files\MSN Messenger
2012-11-02 11:34:59 -------- d-sh--we c:\programdata\Plocha
2012-11-02 11:34:59 -------- d-sh--we c:\programdata\Oblíbené položky
2012-11-02 11:34:59 -------- d-sh--we c:\programdata\Šablony
2012-11-02 11:34:59 -------- d-sh--we c:\programdata\Nabídka Start
2012-11-02 11:34:59 -------- d-sh--we c:\programdata\Dokumenty
2012-11-02 11:34:59 -------- d-sh--we c:\programdata\Data aplikací
2012-11-02 10:13:02 -------- d-sh--w- C:\$RECYCLE.BIN
2012-11-02 10:07:27 -------- d-----w- c:\windows\system32\tr
2012-11-02 10:07:27 -------- d-----w- c:\windows\system32\ru
2012-11-02 10:07:26 -------- d-----w- c:\windows\system32\ko
2012-11-02 10:07:25 -------- d-----w- c:\windows\system32\ja
2012-11-02 10:07:25 -------- d-----w- c:\windows\system32\it
2012-11-02 10:07:25 -------- d-----w- c:\windows\system32\fr
2012-11-02 10:07:25 -------- d-----w- c:\windows\system32\es
2012-11-02 10:07:24 -------- d-----w- c:\windows\system32\de
2012-11-02 10:07:23 -------- d-----w- c:\windows\DPDrv
2012-11-02 10:07:20 -------- d-----w- c:\program files\DigitalPersona
2012-11-02 09:46:33 0 ----a-w- c:\windows\ativpsrm.bin
2012-11-02 09:43:59 81960 ----a-w- c:\windows\system32\drivers\btwavdt.sys
2012-11-02 09:43:59 16168 ----a-w- c:\windows\system32\drivers\btwrchid.sys
2012-11-02 09:43:58 80424 ----a-w- c:\windows\system32\drivers\btwaudio.sys
2012-11-02 09:43:52 233472 ----a-w- c:\windows\system32\BtwRSupport.dll
2012-11-02 09:43:45 -------- d-----w- c:\windows\system32\es-MX
2012-11-02 09:43:45 -------- d-----w- c:\windows\system32\es-AR
2012-11-02 09:43:43 -------- d-----w- c:\program files\WIDCOMM
2012-11-02 09:43:03 22072 ----a-w- c:\windows\system32\drivers\usbfilter.sys
2012-11-02 09:43:01 -------- d-----w- c:\program files\AMD
2012-11-02 09:42:47 -------- d-----w- c:\windows\system32\HPMDP
2012-11-02 09:41:47 516096 ----a-w- c:\windows\system32\S64CPA.exe
2012-11-02 09:41:47 -------- d-----w- c:\windows\system32\nn-NO
2012-11-02 09:41:46 53248 ----a-w- c:\windows\system32\athihvui.dll
2012-11-02 09:41:46 393216 ----a-w- c:\windows\system32\athihvs.dll
2012-11-02 09:41:33 -------- d-----w- c:\program files\Atheros
2012-11-02 09:41:30 -------- d-----w- c:\program files\Cisco
2012-11-02 09:41:26 -------- d-----w- c:\programdata\Atheros
2012-11-02 09:40:21 9728 ----a-w- c:\windows\system32\RtNicProp32.dll
2012-11-02 09:40:21 124928 ----a-w- c:\windows\system32\drivers\Rtlh86.sys
2012-11-02 09:40:19 -------- d-----w- c:\program files\Realtek
2012-11-02 09:39:51 53248 ----a-w- c:\windows\system32\aestaren.dll
2012-11-02 09:39:51 376832 ----a-w- c:\windows\system32\aestecap.dll
2012-11-02 09:39:51 133632 ----a-w- c:\windows\system32\aestacap.dll
2012-11-02 09:39:50 73728 ----a-w- c:\windows\system32\AESTCom.dll
2012-11-02 09:39:50 532480 ----a-w- c:\windows\system32\idtmini1.exe
2012-11-02 09:39:50 446556 ----a-w- c:\windows\sttray.exe
2012-11-02 09:39:50 2875392 ----a-w- c:\windows\system32\stlang.dll
2012-11-02 09:39:50 10641500 ----a-w- c:\windows\system32\idtcpl.cpl
2012-11-02 09:39:39 -------- d-----w- c:\windows\system32\SRSLabs
2012-11-02 09:38:41 168960 ----a-w- c:\windows\system32\staco.dll
2012-11-02 09:38:10 389120 ----a-w- c:\windows\system32\drivers\stwrt.sys
2012-11-02 09:38:09 404480 ----a-w- c:\windows\system32\stcplx.dll
2012-11-02 09:38:08 671744 ----a-w- c:\windows\system32\stapo.dll
2012-11-02 09:38:08 427008 ----a-w- c:\windows\system32\stapi32.dll
2012-11-02 09:37:42 -------- d-----w- c:\program files\IDT
2012-11-02 09:37:33 125 ----a-w- c:\windows\xUninstall.bat
2012-11-02 09:36:58 110080 ----a-w- c:\windows\system32\JmCrIcon.dll
2012-11-02 09:36:58 -------- d-----w- c:\windows\JMCR_DIR
2012-11-02 09:36:20 -------- d-----w- c:\program files\Validity Sensors, Inc
2012-11-02 09:35:46 -------- d-----w- c:\program files\Synaptics
2012-11-02 09:31:43 -------- d-----w- c:\program files\ATI
2012-11-02 09:31:40 -------- d-----w- c:\program files\ATI Technologies
.
==================== Find3M ====================
.
2012-11-04 22:52:44 357376 ----a-w- c:\windows\system32\MFHEAACdec.dll
2012-11-04 22:51:27 4096 ----a-w- c:\windows\system32\drivers\cs-cz\dxgkrnl.sys.mui
2012-11-04 22:51:26 4096 ----a-w- c:\windows\system32\drivers\sk-sk\dxgkrnl.sys.mui
2012-11-02 21:08:09 40960 ----a-w- c:\windows\system32\drivers\cs-cz\http.sys.mui
2012-11-02 21:08:09 36864 ----a-w- c:\windows\system32\drivers\en-us\http.sys.mui
2012-11-02 14:19:45 588472 ----a-w- c:\windows\system32\ezsvc7x.dll
2012-10-08 07:56:24 1800704 ----a-w- c:\windows\system32\jscript9.dll
2012-10-08 07:48:03 1129472 ----a-w- c:\windows\system32\wininet.dll
2012-10-08 07:47:44 1427968 ----a-w- c:\windows\system32\inetcpl.cpl
2012-10-08 07:44:05 142848 ----a-w- c:\windows\system32\ieUnatt.exe
2012-10-08 07:43:21 420864 ----a-w- c:\windows\system32\vbscript.dll
2012-10-08 07:40:56 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2012-10-08 07:21:08 121216 ----a-w- c:\windows\system32\drivers\ehdrv.sys
2012-10-08 07:21:08 104712 ----a-w- c:\windows\system32\drivers\epfwwfpr.sys
2012-10-08 07:21:06 170656 ----a-w- c:\windows\system32\drivers\eamonm.sys
.
============= FINISH: 9:30:41,52 ===============