Zúfalosť s RECYCLER na USB
Napsal: 13 led 2013 17:11
Ahoj Chalani, potreboval by som pomôcť.
Jedná sa o problém s adresárom RECYCLER na USB klúčik mi vždy nakopíruje aj po čerstvom formátovaní USB klúčika na FAT32 adresár RECYCLER a súbor autorun.inf v ktorom sú nejaké znaky. V adresári RECYCLER s náchádza podadresár //S-6-2-84-6840813581-5077771576-562635426-3233 a v ňom *.exe súbor. Prikladám aj Screen z obrazovky. Podotýkam že mám v XP prof. vypnutú funkciu automatického spustenia na všetkých jednotkách. + upravený register.
Po tvrdom vymazaní adresára RECYCLER sa po chvíli znova objaví podadresár s dlhým názvom a v ňom EXE súbor. Dokonca je to horšie pretože potom ako to pomažem sa vytvorí 10 ďalších adresárov s tým istým súborom vo vnútri.
Som už z toho jeleň sakra.
[IMG=http://img338.imageshack.us/img338/5624/kuk1custom.jpg][/IMG]
Uploaded with ImageShack.us
Prikladám LOG z RSIT:
Logfile of random's system information tool 1.09 (written by random/random)
Run by Administrator at 2013-01-13 16:51:14
Microsoft Windows XP Professional Service Pack 3
System drive C: has 24 GB (67%) free of 36 GB
Total RAM: 3319 MB (88% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:51:24, on 13. 1. 2013
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\Program Files\USB Safely Remove\USBSRService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\System32\DLA\DLACTRLW.EXE
C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe
C:\Program Files\Vista Drive Icon\DrvIcon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\USB Safely Remove\USBSafelyRemove.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\TurboNote\tbnote.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\mqsvc.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\WINDOWS\system32\mqtgsvc.exe
C:\PROGRA~1\hpq\Shared\HPQTOA~1.EXE
C:\Documents and Settings\Administrator\Desktop\RSIT.exe
C:\Program Files\trend micro\Administrator.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://go.microsoft.com/fwlink/?linkid=54896
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer
F2 - REG:system.ini: UserInit=c:\windows\system32\userinit.exe,,c:\program files\microsoft\desktoplayer.exe
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [MsmqIntCert] regsvr32 /s mqrt.dll
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\HPQ\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [DLA] C:\WINDOWS\System32\DLA\DLACTRLW.EXE
O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe
O4 - HKLM\..\Run: [DrvIcon] C:\Program Files\Vista Drive Icon\DrvIcon.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [USB Safely Remove] C:\Program Files\USB Safely Remove\USBSafelyRemove.exe /startup
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: TurboNote.lnk = C:\Program Files\TurboNote\tbnote.exe
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Send To &Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.hp.com
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 6629351531
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/pub/s ... wflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: AddFiltr - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\AddFiltr.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: USB Safely Remove Assistant (USBSafelyRemoveService) - Unknown owner - C:\Program Files\USB Safely Remove\USBSRService.exe
--
End of file - 7404 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5CA3D70E-1895-11CF-8E15-001234567890}]
DriveLetterAccess - C:\WINDOWS\System32\DLA\DLASHX_W.DLL [2005-08-31 110652]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre6\bin\ssv.dll [2012-12-27 329712]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2012-12-27 59376]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2012-12-27 79856]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"MsmqIntCert"=regsvr32 /s mqrt.dll []
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2006-03-03 761948]
"QlbCtrl"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2013-01-01 188416]
"Cpqset"=C:\Program Files\HPQ\Default Settings\cpqset.exe [2006-01-26 172094]
"SoundMAXPnP"=C:\Program Files\Analog Devices\Core\smax4pnp.exe [2013-01-01 983040]
"AGRSMMSG"=C:\WINDOWS\AGRSMMSG.exe [2005-12-12 88203]
"igfxtray"=C:\WINDOWS\system32\igfxtray.exe [2006-03-23 94208]
"igfxhkcmd"=C:\WINDOWS\system32\hkcmd.exe [2006-03-23 77824]
"igfxpers"=C:\WINDOWS\system32\igfxpers.exe [2006-03-23 118784]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-09-17 254896]
"DLA"=C:\WINDOWS\System32\DLA\DLACTRLW.EXE [2005-08-31 122940]
"hpWirelessAssistant"=C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe [2013-01-01 512000]
"DrvIcon"=C:\Program Files\Vista Drive Icon\DrvIcon.exe [2008-04-13 49152]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"USB Safely Remove"=C:\Program Files\USB Safely Remove\USBSafelyRemove.exe [2013-01-09 3903488]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"wuauserv"=2
"wscsvc"=2
"W32Time"=2
"VSS"=3
"TlntSvr"=3
"srservice"=2
"SkypeUpdate"=2
"SCardSvr"=2
"RemoteRegistry"=2
"ERSvc"=2
C:\Documents and Settings\All Users\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
TurboNote.lnk - C:\Program Files\TurboNote\tbnote.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2006-03-23 139264]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=3
"Nocmd"=0
"NoDriveTypeAutoRun"=0
"NoAutoUpdate"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=3
"NoDriveTypeAutoRun"=0
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\WINDOWS\system32\mqsvc.exe"="C:\WINDOWS\system32\mqsvc.exe:*:Enabled:Message Queuing"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\TurboNote\tbnote.exe"="C:\Program Files\TurboNote\tbnote.exe:*:Enabled:TurboNote v3.4"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\IncrediMail\bin\IncMail.exe"="C:\Program Files\IncrediMail\bin\IncMail.exe:*:Enabled:IncrediMail"
"C:\Program Files\IncrediMail\bin\ImApp.exe"="C:\Program Files\IncrediMail\bin\ImApp.exe:*:Enabled:IncrediMail"
"C:\Program Files\IncrediMail\bin\ImpCnt.exe"="C:\Program Files\IncrediMail\bin\ImpCnt.exe:*:Enabled:IncrediMail"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\WINDOWS\system32\mqsvc.exe"="C:\WINDOWS\system32\mqsvc.exe:*:Enabled:Message Queuing"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
======List of files/folders created in the last 1 month======
2013-01-13 16:51:15 ----D---- C:\Program Files\trend micro
2013-01-13 16:51:14 ----D---- C:\rsit
2013-01-09 08:49:51 ----D---- C:\Documents and Settings\Administrator\Application Data\USBSafelyRemove
2013-01-09 08:49:16 ----D---- C:\Documents and Settings\All Users\Application Data\USBSRService
2013-01-09 08:49:15 ----D---- C:\Program Files\USB Safely Remove
2013-01-03 21:55:34 ----D---- C:\Program Files\Common Files\Designer
2013-01-03 21:55:05 ----D---- C:\WINDOWS\ShellNew
2013-01-03 21:55:01 ----D---- C:\Program Files\Microsoft Office
2013-01-03 20:51:49 ----N---- C:\WINDOWS\system32\pxinsa64.exe
2013-01-03 20:51:49 ----N---- C:\WINDOWS\system32\pxhpinst.exe
2013-01-03 20:51:49 ----N---- C:\WINDOWS\system32\pxcpya64.exe
2013-01-03 20:51:49 ----N---- C:\WINDOWS\system32\pxafs.dll
2013-01-03 20:51:49 ----N---- C:\WINDOWS\system32\drivers\cdralw2k.sys
2013-01-03 20:51:49 ----N---- C:\WINDOWS\system32\drivers\cdr4_xp.sys
2013-01-03 20:51:45 ----D---- C:\Program Files\Winamp
2013-01-02 21:10:47 ----RASHD---- C:\Autorun.inf
2013-01-02 20:11:01 ----D---- C:\Documents and Settings\Administrator\Application Data\IrfanView
2013-01-01 19:31:54 ----SHD---- C:\RECYCLER
2013-01-01 19:27:48 ----N---- C:\MSDOS.SYS
2013-01-01 19:27:48 ----N---- C:\IO.SYS
2013-01-01 19:14:23 ----D---- C:\WINDOWS\temp
2013-01-01 19:09:35 ----A---- C:\WINDOWS\zip.exe
2013-01-01 19:09:35 ----A---- C:\WINDOWS\SWXCACLS.exe
2013-01-01 19:09:35 ----A---- C:\WINDOWS\SWSC.exe
2013-01-01 19:09:35 ----A---- C:\WINDOWS\SWREG.exe
2013-01-01 19:09:35 ----A---- C:\WINDOWS\sed.exe
2013-01-01 19:09:35 ----A---- C:\WINDOWS\PEV.exe
2013-01-01 19:09:35 ----A---- C:\WINDOWS\NIRCMD.exe
2013-01-01 19:09:35 ----A---- C:\WINDOWS\MBR.exe
2013-01-01 19:09:35 ----A---- C:\WINDOWS\grep.exe
2013-01-01 19:08:27 ----SHD---- C:\WINDOWS\CSC
2013-01-01 19:03:48 ----A---- C:\WINDOWS\SchedLgU.Txt
2013-01-01 18:52:52 ----D---- C:\Qoobox
2013-01-01 17:40:58 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2012-12-31 02:56:30 ----D---- C:\Documents and Settings\Administrator\Application Data\Malwarebytes
2012-12-31 02:56:09 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2012-12-31 01:24:12 ----D---- C:\WINDOWS\ERDNT
2012-12-31 01:21:59 ----D---- C:\Program Files\ERUNT
2012-12-28 13:15:08 ----A---- C:\WINDOWS\system32\drivers\MSTEE.sys
2012-12-28 13:15:07 ----A---- C:\WINDOWS\system32\drivers\NdisIP.sys
2012-12-28 13:15:06 ----A---- C:\WINDOWS\system32\drivers\StreamIP.sys
2012-12-28 13:15:05 ----A---- C:\WINDOWS\system32\drivers\SLIP.sys
2012-12-28 13:15:03 ----A---- C:\WINDOWS\system32\drivers\WSTCODEC.SYS
2012-12-28 13:15:02 ----A---- C:\WINDOWS\system32\drivers\NABTSFEC.sys
2012-12-28 13:15:01 ----A---- C:\WINDOWS\system32\drivers\CCDECODE.sys
2012-12-28 13:14:54 ----A---- C:\WINDOWS\system32\drivers\USBAUDIO.sys
2012-12-28 13:14:47 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2012-12-28 10:25:29 ----D---- C:\Documents and Settings\All Users\Application Data\IM
2012-12-28 10:24:04 ----D---- C:\Program Files\IncrediMail
2012-12-28 10:24:04 ----D---- C:\Documents and Settings\All Users\Application Data\IncrediMail
2012-12-28 09:33:15 ----D---- C:\WINDOWS\system32\Adobe
2012-12-28 09:32:49 ----D---- C:\Documents and Settings\Administrator\Application Data\Skype
2012-12-28 09:32:39 ----RD---- C:\Program Files\Skype
2012-12-28 09:32:39 ----D---- C:\Program Files\Common Files\Skype
2012-12-28 09:32:39 ----D---- C:\Documents and Settings\All Users\Application Data\Skype
2012-12-28 01:37:33 ----ASH---- C:\pagefile.sys
2012-12-28 01:17:39 ----D---- C:\WINDOWS\pss
2012-12-28 00:37:30 ----D---- C:\Documents and Settings\Administrator\Application Data\Macromedia
2012-12-28 00:37:30 ----D---- C:\Documents and Settings\Administrator\Application Data\Adobe
2012-12-28 00:37:01 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2012-12-27 23:58:15 ----A---- C:\WINDOWS\system32\SYSDRV.DAT
2012-12-27 23:57:41 ----D---- C:\WINDOWS\i386
2012-12-27 21:49:38 ----D---- C:\WINDOWS\system32\appmgmt
2012-12-27 21:44:03 ----D---- C:\Program Files\MSECache
2012-12-27 21:43:35 ----A---- C:\WINDOWS\ODBC.INI
2012-12-27 21:43:13 ----D---- C:\Program Files\Vista Drive Icon
2012-12-27 21:11:29 ----D---- C:\Program Files\FoxitReaderPortable
2012-12-27 21:08:48 ----D---- C:\WINDOWS\Downloaded Installations
2012-12-27 21:04:52 ----D---- C:\Program Files\The KMPlayer
2012-12-27 21:03:14 ----D---- C:\Program Files\CCleaner
2012-12-27 21:00:01 ----A---- C:\WINDOWS\system32\drivers\sptd.sys
2012-12-27 20:59:40 ----D---- C:\Program Files\DAEMON Tools Lite
2012-12-27 20:59:10 ----D---- C:\Documents and Settings\Administrator\Application Data\DAEMON Tools Lite
2012-12-27 20:59:06 ----D---- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Lite
2012-12-27 20:53:03 ----D---- C:\Program Files\IrfanView
2012-12-27 20:47:34 ----A---- C:\WINDOWS\system32\drivers\revoflt.sys
2012-12-27 20:47:32 ----D---- C:\Program Files\VS Revo Group
2012-12-27 20:46:51 ----D---- C:\Program Files\Microsoft
2012-12-27 20:43:23 ----D---- C:\Program Files\TurboNote
2012-12-27 20:31:41 ----D---- C:\Documents and Settings\Administrator\Application Data\InterVideo
2012-12-27 20:27:27 ----D---- C:\totalcmd
2012-12-27 20:27:27 ----A---- C:\WINDOWS\UC.PIF
2012-12-27 20:27:27 ----A---- C:\WINDOWS\RAR.PIF
2012-12-27 20:27:27 ----A---- C:\WINDOWS\NOCLOSE.PIF
2012-12-27 20:27:27 ----A---- C:\WINDOWS\LHA.PIF
2012-12-27 20:27:27 ----A---- C:\WINDOWS\ARJ.PIF
2012-12-27 20:26:21 ----D---- C:\Documents and Settings\Administrator\Application Data\Opera
2012-12-27 20:26:15 ----D---- C:\Program Files\Opera
2012-12-27 20:18:21 ----D---- C:\Documents and Settings\Administrator\Application Data\ElevatedDiagnostics
2012-12-27 20:17:19 ----D---- C:\WINDOWS\system32\windowspowershell
2012-12-27 20:17:14 ----HDC---- C:\WINDOWS\$NtUninstallKB926139-v2$
2012-12-27 20:14:14 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2012-12-27 20:03:51 ----D---- C:\WINDOWS\system32\XPSViewer
2012-12-27 20:03:48 ----D---- C:\Program Files\MSBuild
2012-12-27 20:03:43 ----D---- C:\Program Files\Reference Assemblies
2012-12-27 20:03:12 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2012-12-27 20:03:12 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2012-12-27 20:03:12 ----N---- C:\WINDOWS\system32\prntvpt.dll
2012-12-27 20:03:12 ----D---- C:\5c45a96bfe28effcb33afbb687
2012-12-27 19:56:22 ----A---- C:\Program Files\MicrosoftFixit.IEAddon.exe
2012-12-27 19:48:13 ----HDC---- C:\WINDOWS\$NtUninstallKB2753842-v2$
2012-12-27 19:46:58 ----A---- C:\WINDOWS\system32\MRT.exe
2012-12-27 19:46:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2779562$
2012-12-27 19:46:31 ----HDC---- C:\WINDOWS\$NtUninstallKB2770660$
2012-12-27 19:46:26 ----HDC---- C:\WINDOWS\$NtUninstallKB2779030$
2012-12-27 19:46:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2758857$
2012-12-27 19:46:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2727528$
2012-12-27 19:45:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2705219-v2$
2012-12-27 19:45:48 ----HDC---- C:\WINDOWS\$NtUninstallKB2723135-v2$
2012-12-27 19:45:45 ----HDC---- C:\WINDOWS\$NtUninstallKB2661254-v2$
2012-12-27 19:45:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2724197$
2012-12-27 19:45:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2749655$
2012-12-27 19:45:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2736233$
2012-12-27 19:45:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2712808$
2012-12-27 19:45:21 ----HDC---- C:\WINDOWS\$NtUninstallKB2698365$
2012-12-27 19:45:16 ----HDC---- C:\WINDOWS\$NtUninstallKB2719985$
2012-12-27 19:45:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2655992$
2012-12-27 19:45:04 ----HDC---- C:\WINDOWS\$NtUninstallKB2691442$
2012-12-27 19:44:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2686509$
2012-12-27 19:44:41 ----HDC---- C:\WINDOWS\$NtUninstallKB2659262$
2012-12-27 19:44:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2676562$
2012-12-27 19:44:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2653956$
2012-12-27 19:44:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2661637$
2012-12-27 19:44:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2646524$
2012-12-27 19:44:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2598479$
2012-12-27 19:44:15 ----HDC---- C:\WINDOWS\$NtUninstallKB2603381$
2012-12-27 19:44:11 ----HDC---- C:\WINDOWS\$NtUninstallKB2585542$
2012-12-27 19:44:07 ----HDC---- C:\WINDOWS\$NtUninstallKB2631813$
2012-12-27 19:44:04 ----HDC---- C:\WINDOWS\$NtUninstallKB2584146$
2012-12-27 19:44:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2620712$
2012-12-27 19:43:57 ----HDC---- C:\WINDOWS\$NtUninstallKB2619339$
2012-12-27 19:43:53 ----HDC---- C:\WINDOWS\$NtUninstallKB2618451$
2012-12-27 19:43:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2624667$
2012-12-27 19:43:46 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893-v2$
2012-12-27 19:43:42 ----HDC---- C:\WINDOWS\$NtUninstallKB2564958$
2012-12-27 19:43:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2592799$
2012-12-27 19:43:36 ----HDC---- C:\WINDOWS\$NtUninstallKB2570947$
2012-12-27 19:43:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2536276-v2$
2012-12-27 19:43:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2566454$
2012-12-27 19:43:26 ----HDC---- C:\WINDOWS\$NtUninstallKB2507938$
2012-12-27 19:43:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2476490$
2012-12-27 19:43:15 ----HDC---- C:\WINDOWS\$NtUninstallKB2535512$
2012-12-27 19:43:10 ----HDC---- C:\WINDOWS\$NtUninstallKB2509553$
2012-12-27 19:43:06 ----D---- C:\WINDOWS\ie8updates
2012-12-27 19:43:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2506212$
2012-12-27 19:42:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2508429$
2012-12-27 19:42:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2485663$
2012-12-27 19:42:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2481109$
2012-12-27 19:42:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2479943$
2012-12-27 19:42:43 ----HDC---- C:\WINDOWS\$NtUninstallKB971029$
2012-12-27 19:42:36 ----HDC---- C:\WINDOWS\$NtUninstallKB2393802$
2012-12-27 19:42:31 ----HDC---- C:\WINDOWS\$NtUninstallKB2478960$
2012-12-27 19:42:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2483185$
2012-12-27 19:42:21 ----HDC---- C:\WINDOWS\$NtUninstallKB2478971$
2012-12-27 19:42:16 ----HDC---- C:\WINDOWS\$NtUninstallKB2419632$
2012-12-27 19:42:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2012-12-27 19:42:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2012-12-27 19:42:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2012-12-27 19:42:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2360937$
2012-12-27 19:41:59 ----HDC---- C:\WINDOWS\$NtUninstallKB982132$
2012-12-27 19:41:54 ----HDC---- C:\WINDOWS\$NtUninstallKB2387149$
2012-12-27 19:41:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2378111_WM9$
2012-12-27 19:41:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2296011$
2012-12-27 19:41:43 ----HDC---- C:\WINDOWS\$NtUninstallKB979687$
2012-12-27 19:41:40 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2012-12-27 19:41:37 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$
2012-12-27 19:41:34 ----HDC---- C:\WINDOWS\$NtUninstallKB981322$
2012-12-27 19:41:30 ----HDC---- C:\WINDOWS\$NtUninstallKB981997$
2012-12-27 19:41:26 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2012-12-27 19:41:23 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2012-12-27 19:41:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2012-12-27 19:41:16 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2012-12-27 19:41:12 ----HDC---- C:\WINDOWS\$NtUninstallKB978695_WM9$
2012-12-27 19:41:08 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2012-12-27 19:41:02 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2012-12-27 19:40:59 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2012-12-27 19:40:55 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2012-12-27 19:40:52 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2012-12-27 19:40:48 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2012-12-27 19:40:42 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2012-12-27 19:40:37 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2012-12-27 19:40:34 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2012-12-27 19:40:30 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2012-12-27 19:40:26 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2012-12-27 19:40:23 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2012-12-27 19:40:18 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2012-12-27 19:40:15 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2012-12-27 19:40:11 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2012-12-27 19:40:07 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2012-12-27 19:40:04 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2012-12-27 19:40:00 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2012-12-27 19:39:57 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2012-12-27 19:39:54 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2012-12-27 19:39:51 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2012-12-27 19:39:47 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2012-12-27 19:39:44 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2012-12-27 19:39:40 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2012-12-27 19:39:37 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2012-12-27 19:39:33 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2012-12-27 19:39:30 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2012-12-27 19:39:25 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2012-12-27 19:39:21 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2012-12-27 19:39:17 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2012-12-27 19:39:13 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2012-12-27 19:39:04 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2012-12-27 19:38:59 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2012-12-27 19:37:04 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2012-12-27 19:37:01 ----HDC---- C:\WINDOWS\$NtUninstallKB923723$
2012-12-27 19:36:57 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2012-12-27 19:36:54 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2012-12-27 19:36:50 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2012-12-27 19:36:47 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2012-12-27 19:36:43 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2012-12-27 19:36:39 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2012-12-27 19:36:36 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2012-12-27 19:36:28 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2012-12-27 19:32:43 ----N---- C:\WINDOWS\system32\iacenc.dll
2012-12-27 19:29:17 ----N---- C:\WINDOWS\system32\browserchoice.exe
2012-12-27 19:26:27 ----A---- C:\WINDOWS\system32\xpsp4res.dll
2012-12-27 19:16:10 ----D---- C:\WINDOWS\system32\PreInstall
2012-12-27 19:16:08 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2012-12-27 19:13:06 ----A---- C:\WINDOWS\system32\wups2.dll
2012-12-27 19:13:04 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2012-12-27 19:07:20 ----D---- C:\WINDOWS\WBEM
2012-12-27 19:06:55 ----HDC---- C:\WINDOWS\ie8
2012-12-27 19:06:55 ----D---- C:\WINDOWS\system32\sk-SK
2012-12-27 19:06:04 ----N---- C:\WINDOWS\system32\WinFXDocObj.exe
2012-12-27 19:06:04 ----A---- C:\WINDOWS\system32\normaliz.dll
2012-12-27 19:06:04 ----A---- C:\WINDOWS\system32\nlsdl.dll
2012-12-27 19:06:04 ----A---- C:\WINDOWS\system32\msdbg2.dll
2012-12-27 19:06:04 ----A---- C:\WINDOWS\system32\ieudinit.exe
2012-12-27 19:06:04 ----A---- C:\WINDOWS\system32\idndl.dll
2012-12-27 19:06:02 ----N---- C:\WINDOWS\system32\msfeedssync.exe
2012-12-27 19:06:02 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
2012-12-27 19:06:02 ----A---- C:\WINDOWS\system32\msfeeds.dll
2012-12-27 19:06:01 ----N---- C:\WINDOWS\system32\ieui.dll
2012-12-27 19:06:01 ----A---- C:\WINDOWS\system32\iertutil.dll
2012-12-27 19:06:00 ----A---- C:\WINDOWS\system32\ieframe.dll
2012-12-27 19:05:58 ----N---- C:\WINDOWS\system32\ieapfltr.dll
2012-12-27 19:05:58 ----N---- C:\WINDOWS\system32\ieapfltr.dat
2012-12-27 19:05:58 ----N---- C:\WINDOWS\system32\icardie.dll
2012-12-27 18:59:04 ----D---- C:\WINDOWS\Prefetch
2012-12-27 18:54:31 ----N---- C:\WINDOWS\system32\msxml6r.dll
2012-12-27 18:54:31 ----A---- C:\WINDOWS\system32\msxml6.dll
2012-12-27 18:54:28 ----N---- C:\WINDOWS\system32\smtpapi.dll
2012-12-27 18:54:28 ----N---- C:\WINDOWS\system32\rwnh.dll
2012-12-27 18:54:28 ----N---- C:\WINDOWS\system32\drivers\irbus.sys
2012-12-27 18:54:28 ----N---- C:\WINDOWS\system32\comsdupd.exe
2012-12-27 18:54:27 ----N---- C:\WINDOWS\system32\ati2dvag.dll
2012-12-27 18:54:27 ----N---- C:\WINDOWS\system32\ati2dvaa.dll
2012-12-27 18:54:27 ----N---- C:\WINDOWS\system32\ati2cqag.dll
2012-12-27 18:54:27 ----N---- C:\WINDOWS\system32\aaclient.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\hsfcisp2.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\eapsvc.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\eapqec.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\eappprxy.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\eapphost.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\eappgnui.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\eappcfg.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\eapp3hst.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\eapolqec.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\dot3ui.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\dot3svc.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\dot3msm.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\dot3gpclnt.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\dot3dlg.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\dot3cfg.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\dot3api.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\dimsroam.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\dimsntfy.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\dhcpqec.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\credssp.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\bitsprx4.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\azroles.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\ativvaxx.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\ativtmxx.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\ati3duag.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\ati3d1ag.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\onex.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\nv4_disp.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\napstat.exe
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\napmontr.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\napipsec.dll
2012-12-27 18:54:25 ----N---- C:\WINDOC:\Program Files\IncrediMail\bin\ImpCnt.exeWS\system32\mtxparhd.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\msshavmsg.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\mssha.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\mmcperf.exe
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\mmcfxcommon.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\mmcex.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\mdmxsdk.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\l2gpstore.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\kmsvc.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\kbdpash.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\kbdnepr.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\kbdiultn.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\kbdbhc.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\wmphoto.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\wlanapi.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\windowscodecsext.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\windowscodecs.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\verclsid.exe
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\tzchange.exe
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\tspkg.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\tsgqec.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\slserv.exe
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\slrundll.exe
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\slgen.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\slextspk.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\slcoinst.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\setupn.exe
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\s3gnb.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\rhttpaa.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\rasqec.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\qutil.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\qcliprov.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\qagentrt.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\qagent.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\photometadatahandler.dll
2012-12-27 18:54:23 ----N---- C:\WINDOWS\slrundll.exe
2012-12-27 18:54:23 ----D---- C:\WINDOWS\system32\scripting
2012-12-27 18:54:23 ----D---- C:\WINDOWS\system32\en-us
2012-12-27 18:54:23 ----D---- C:\WINDOWS\l2schemas
2012-12-27 18:54:23 ----A---- C:\WINDOWS\system32\xmllite.dll
2012-12-27 18:54:22 ----D---- C:\WINDOWS\system32\en
2012-12-27 18:54:22 ----D---- C:\WINDOWS\system32\bits
2012-12-27 18:53:32 ----D---- C:\WINDOWS\ServicePackFiles
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\bthusb.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\bthprint.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\bthport.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\bthpan.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\bthmodem.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\bthenum.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\atv10nt5.dll
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\atv06nt5.dll
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\atv04nt5.dll
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\atv02nt5.dll
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\atv01nt5.dll
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\atinxsxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\atinxbxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\atintuxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\atinttxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\atinsnxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\atinrvxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\atinraxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\atinpdxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\atinmdxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\atinbtxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\ati2mtag.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\ati2mtaa.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\ati1xsxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\ati1xbxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\ati1tuxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\ati1ttxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\ati1snxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\ati1rvxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\ati1raxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\ati1pdxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\ati1mdxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\ati1btxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\amdagp.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\alim1541.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\agpcpq.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\agp440.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\adv11nt5.dll
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\adv09nt5.dll
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\adv08nt5.dll
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\adv07nt5.dll
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\adv05nt5.dll
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\adv02nt5.dll
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\adv01nt5.dll
2012-12-27 18:52:59 ----D---- C:\WINDOWS\network diagnostic
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\s3gnbm.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\rndismpx.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\rfcomm.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\recagent.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\nv4_mini.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\ntmtlfax.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\mutohpen.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\mtxparhm.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\mtlstrm.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\mtlmnt5.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\mdmxsdk.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\ch7xxnt5.dll
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\hsfdpsp2.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\hsfcxts2.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\hsfbs2s2.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\hidir.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\hidbth.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\gagp30kx.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\watv10nt.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\watv06nt.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\wadv11nt.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\wadv09nt.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\wadv08nt.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\wadv07nt.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\wacompen.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\viaagp.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\vchnt5.dll
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\usbvideo.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\usb8023x.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\uagp35.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\smbali.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\slwdmsup.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\slnthal.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\slntamr.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\slnt7554.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\sisagp.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\siint5.dll
2012-12-27 18:51:23 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2012-12-27 18:40:39 ----D---- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
2012-12-27 18:26:48 ----D---- C:\Documents and Settings\All Users\Application Data\Sun
2012-12-27 18:26:37 ----A---- C:\WINDOWS\system32\npdeployJava1.dll
2012-12-27 18:26:37 ----A---- C:\WINDOWS\system32\deployJava1.dll
2012-12-27 18:26:17 ----D---- C:\Documents and Settings\All Users\Application Data\McAfee
2012-12-27 18:25:42 ----D---- C:\Documents and Settings\Administrator\Application Data\Sun
2012-12-27 18:15:17 ----A---- C:\WINDOWS\system32\igfxres.dll
2012-12-27 18:03:42 ----D---- C:\Program Files\Intel
2012-12-27 18:02:54 ----A---- C:\WINDOWS\system32\wmpns.dll
2012-12-27 18:01:56 ----D---- C:\Program Files\Windows Media Connect
2012-12-27 18:01:39 ----D---- C:\Documents and Settings\All Users\Application Data\InstallShield
2012-12-27 18:00:50 ----D---- C:\Program Files\Common Files\TiVo Shared
2012-12-27 18:00:28 ----D---- C:\Program Files\Common Files\SureThing Shared
2012-12-27 18:00:25 ----D---- C:\WINDOWS\system32\DLA
2012-12-27 18:00:25 ----A---- C:\WINDOWS\system32\drivers\DRVNDDM.SYS
2012-12-27 18:00:25 ----A---- C:\WINDOWS\system32\drivers\DRVMCDB.SYS
2012-12-27 18:00:25 ----A---- C:\WINDOWS\system32\drivers\DLARTL_N.SYS
2012-12-27 18:00:25 ----A---- C:\WINDOWS\system32\drivers\DLACDBHM.SYS
2012-12-27 18:00:25 ----A---- C:\WINDOWS\system32\DLAAPI_W.DLL
2012-12-27 18:00:25 ----A---- C:\WINDOWS\DLA.EXE
2012-12-27 18:00:01 ----D---- C:\Program Files\Sonic
2012-12-27 18:00:00 ----D---- C:\Program Files\Common Files\Sonic Shared
2012-12-27 17:59:16 ----D---- C:\Program Files\Common Files\LightScribe
2012-12-27 17:59:00 ----D---- C:\WINDOWS\Hewlett-Packard
2012-12-27 17:57:10 ----A---- C:\WINDOWS\system32\javaws.exe
2012-12-27 17:57:10 ----A---- C:\WINDOWS\system32\javaw.exe
2012-12-27 17:57:10 ----A---- C:\WINDOWS\system32\java.exe
2012-12-27 17:56:44 ----D---- C:\Program Files\Java
2012-12-27 17:56:42 ----D---- C:\Program Files\Common Files\Java
2012-12-27 17:51:00 ----N---- C:\WINDOWS\biwlandrvxpver.dll
2012-12-27 17:50:18 ----N---- C:\WINDOWS\HPNICVersion.dll
2012-12-27 17:50:07 ----D---- C:\Program Files\Broadcom
2012-12-27 17:49:21 ----N---- C:\WINDOWS\system32\agrsmdel.exe
2012-12-27 17:49:21 ----N---- C:\WINDOWS\HPModemVersion.dll
2012-12-27 17:49:17 ----D---- C:\WINDOWS\Options
2012-12-27 17:36:39 ----HD---- C:\WINDOWS\system32\GroupPolicy
2012-12-27 17:36:27 ----A---- C:\WINDOWS\system32\hidserv.dll
2012-12-27 17:36:15 ----A---- C:\WINDOWS\system32\drivers\usbccgp.sys
2012-12-27 17:28:26 ----A---- C:\WINDOWS\system32\drivers\mouhid.sys
2012-12-27 17:28:24 ----A---- C:\WINDOWS\system32\drivers\hidusb.sys
2012-12-27 17:24:48 ----D---- C:\Program Files\WIDCOMM
2012-12-27 17:24:04 ----D---- C:\WINDOWS\tiinst
2012-12-27 17:22:15 ----D---- C:\Program Files\Program Shortcuts
======List of files/folders modified in the last 1 month======
2013-01-13 16:51:15 ----D---- C:\Program Files
2013-01-13 16:49:19 ----D---- C:\WINDOWS\system32
2013-01-13 16:49:19 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2013-01-13 16:44:53 ----D---- C:\WINDOWS
2013-01-13 11:09:47 ----D---- C:\WINDOWS\system32\CatRoot2
2013-01-13 11:09:34 ----SHD---- C:\System Volume Information
2013-01-13 11:09:34 ----D---- C:\WINDOWS\system32\Restore
2013-01-13 10:59:43 ----D---- C:\WINDOWS\system32\config
2013-01-13 10:56:05 ----SHD---- C:\WINDOWS\Installer
2013-01-13 10:56:05 ----SD---- C:\WINDOWS\Downloaded Program Files
2013-01-13 10:56:05 ----D---- C:\Program Files\Common Files\InstallShield
2013-01-10 23:35:02 ----RSHD---- C:\WINDOWS\system32\dllcache
2013-01-10 23:34:57 ----D---- C:\WINDOWS\system32\drivers
2013-01-03 22:00:05 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-01-03 21:57:38 ----SD---- C:\Documents and Settings\Administrator\Application Data\Microsoft
2013-01-03 21:55:34 ----D---- C:\Program Files\Common Files
2013-01-03 21:52:38 ----D---- C:\WINDOWS\system
2013-01-03 21:47:35 ----D---- C:\WINDOWS\SoftwareDistribution
2013-01-03 21:46:21 ----N---- C:\boot.ini
2013-01-03 21:46:21 ----A---- C:\WINDOWS\win.ini
2013-01-03 21:46:21 ----A---- C:\WINDOWS\system.ini
2013-01-03 21:39:04 ----HD---- C:\Program Files\InstallShield Installation Information
2013-01-03 21:38:21 ----SD---- C:\WINDOWS\Tasks
2013-01-03 21:37:46 ----D---- C:\Program Files\Hewlett-Packard
2013-01-02 21:09:18 ----D---- C:\Program Files\Internet Explorer
2013-01-02 16:07:50 ----HD---- C:\WINDOWS\inf
2013-01-01 19:15:11 ----D---- C:\WINDOWS\system32\drivers\etc
2013-01-01 19:12:52 ----D---- C:\WINDOWS\AppPatch
2013-01-01 19:12:02 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2013-01-01 19:06:21 ----D---- C:\Program Files\Outlook Express
2013-01-01 17:40:54 ----HD---- C:\WINDOWS\$hf_mig$
2012-12-31 03:06:34 ----D---- C:\Program Files\Windows Media Player
2012-12-31 03:06:01 ----D---- C:\Program Files\Movie Maker
2012-12-28 10:34:08 ----D---- C:\WINDOWS\SMINST
2012-12-28 10:24:11 ----RSD---- C:\WINDOWS\Fonts
2012-12-28 09:33:18 ----D---- C:\WINDOWS\WinSxS
2012-12-28 01:39:34 ----D---- C:\WINDOWS\Debug
2012-12-28 00:12:58 ----RSD---- C:\WINDOWS\assembly
2012-12-28 00:12:41 ----D---- C:\WINDOWS\Microsoft.NET
2012-12-27 23:57:36 ----RD---- C:\WINDOWS\Web
2012-12-27 23:57:36 ----D---- C:\WINDOWS\twain_32
2012-12-27 23:57:26 ----D---- C:\WINDOWS\system32\ReinstallBackups
2012-12-27 23:57:26 ----D---- C:\WINDOWS\system32\ras
2012-12-27 23:57:15 ----D---- C:\WINDOWS\system32\mui
2012-12-27 23:57:14 ----D---- C:\WINDOWS\system32\msmq
2012-12-27 23:57:12 ----D---- C:\WINDOWS\system32\MsDtc
2012-12-27 23:57:11 ----D---- C:\WINDOWS\system32\Macromed
2012-12-27 23:57:11 ----D---- C:\WINDOWS\system32\IME
2012-12-27 23:57:11 ----D---- C:\WINDOWS\system32\icsxml
2012-12-27 23:57:11 ----D---- C:\WINDOWS\system32\ias
2012-12-27 23:57:05 ----D---- C:\WINDOWS\system32\DirectX
2012-12-27 23:57:01 ----D---- C:\WINDOWS\system32\1060
2012-12-27 23:57:01 ----D---- C:\WINDOWS\system32\1051
2012-12-27 23:57:01 ----D---- C:\WINDOWS\system32\1033
2012-12-27 23:55:56 ----D---- C:\WINDOWS\Resources
2012-12-27 23:55:56 ----D---- C:\WINDOWS\repair
2012-12-27 23:55:49 ----D---- C:\WINDOWS\RegisteredPackages
2012-12-27 23:55:48 ----D---- C:\WINDOWS\Provisioning
2012-12-27 23:55:23 ----RD---- C:\WINDOWS\Offline Web Pages
2012-12-27 23:55:23 ----D---- C:\WINDOWS\pchealth
2012-12-27 23:54:48 ----D---- C:\WINDOWS\msapps
2012-12-27 23:54:37 ----D---- C:\WINDOWS\java
2012-12-27 23:53:36 ----D---- C:\WINDOWS\Cursors
2012-12-27 23:53:25 ----HD---- C:\WINDOWS\$NtUninstallKB896256$
2012-12-27 23:53:24 ----HD---- C:\WINDOWS\$NtUninstallKB912919$
2012-12-27 23:53:24 ----HD---- C:\WINDOWS\$NtUninstallKB896358$
2012-12-27 23:53:24 ----HD---- C:\WINDOWS\$NtUninstallKB892559$
2012-12-27 23:53:24 ----HD---- C:\WINDOWS\$NtUninstallKB888239$
2012-12-27 23:53:24 ----HD---- C:\WINDOWS\$NtUninstallKB888111WXPSP2$
2012-12-27 23:53:24 ----HD---- C:\WINDOWS\$NtUninstallKB885855$
2012-12-27 23:53:24 ----HD---- C:\WINDOWS\$NtUninstallKB883667$
2012-12-27 23:53:23 ----HD---- C:\WINDOWS\$NtUninstallKB908519$
2012-12-27 23:53:23 ----HD---- C:\WINDOWS\$NtUninstallKB896727$
2012-12-27 23:53:22 ----HD---- C:\WINDOWS\$NtUninstallKB913446$
2012-12-27 23:53:22 ----HD---- C:\WINDOWS\$NtUninstallKB912436$
2012-12-27 23:53:22 ----HD---- C:\WINDOWS\$NtUninstallKB911927$
2012-12-27 23:53:22 ----HD---- C:\WINDOWS\$NtUninstallKB904706$
2012-12-27 23:53:22 ----HD---- C:\WINDOWS\$NtUninstallKB889673$
2012-12-27 23:53:22 ----HD---- C:\WINDOWS\$NtUninstallKB885884$
2012-12-27 23:53:22 ----HD---- C:\WINDOWS\$NtUninstallKB885464$
2012-12-27 23:53:22 ----HD---- C:\WINDOWS\$NtUninstallKB884575$
2012-12-27 23:53:21 ----HD---- C:\WINDOWS\$NtUninstallKB915326$
2012-12-27 23:53:21 ----HD---- C:\WINDOWS\$NtUninstallKB911565$
2012-12-27 23:53:21 ----HD---- C:\WINDOWS\$NtUninstallKB896423$
2012-12-27 23:53:21 ----HD---- C:\WINDOWS\$NtUninstallKB893066$
2012-12-27 23:53:21 ----HD---- C:\WINDOWS\$NtUninstallKB887472$
2012-12-27 23:53:21 ----HD---- C:\WINDOWS\$NtUninstallKB886185$
2012-12-27 23:53:20 ----HD---- C:\WINDOWS\$NtUninstallKB918005$
2012-12-27 23:53:20 ----HD---- C:\WINDOWS\$NtUninstallKB901214$
2012-12-27 23:53:20 ----HD---- C:\WINDOWS\$NtUninstallKB891781$
2012-12-27 23:53:20 ----HD---- C:\WINDOWS\$NtUninstallKB888402$
2012-12-27 23:53:20 ----HD---- C:\WINDOWS\$NtUninstallKB873333$
2012-12-27 23:53:19 ----HD---- C:\WINDOWS\$NtUninstallKB909095$
2012-12-27 23:53:18 ----HD---- C:\WINDOWS\$NtUninstallKB911564$
2012-12-27 23:53:18 ----HD---- C:\WINDOWS\$NtUninstallKB896422$
2012-12-27 23:53:18 ----HD---- C:\WINDOWS\$NtUninstallKB896243$
2012-12-27 23:53:18 ----HD---- C:\WINDOWS\$NtUninstallKB888113$
2012-12-27 23:53:17 ----HD---- C:\WINDOWS\$NtUninstallKB903235$
2012-12-27 23:53:17 ----HD---- C:\WINDOWS\$NtUninstallKB901190$
2012-12-27 23:53:17 ----HD---- C:\WINDOWS\$NtUninstallKB894391$
2012-12-27 23:53:17 ----HD---- C:\WINDOWS\$NtUninstallKB885250$
2012-12-27 23:53:05 ----D---- C:\Program Files\xerox
2012-12-27 23:53:00 ----D---- C:\Program Files\Synaptics
2012-12-27 23:52:59 ----D---- C:\Program Files\Online Services
2012-12-27 23:52:58 ----D---- C:\Program Files\MSN Gaming Zone
2012-12-27 23:52:56 ----D---- C:\Program Files\MSN
2012-12-27 23:52:55 ----D---- C:\Program Files\microsoft frontpage
2012-12-27 23:52:43 ----D---- C:\Program Files\Fingerprint Sensor
2012-12-27 23:52:42 ----D---- C:\Program Files\Common Files\SpeechEngines
2012-12-27 23:52:42 ----D---- C:\Program Files\Common Files\Services
2012-12-27 23:52:42 ----D---- C:\Program Files\Common Files\ODBC
2012-12-27 23:52:42 ----D---- C:\Program Files\Common Files\MSSoap
2012-12-27 23:52:39 ----D---- C:\Program Files\Analog Devices
2012-12-27 23:52:25 ----D---- C:\I386
2012-12-27 23:49:40 ----D---- C:\Documents and Settings\All Users\Application Data\SBSI
2012-12-27 23:49:34 ----D---- C:\Documents and Settings\Administrator\Application Data\Identities
2012-12-27 23:49:32 ----D---- C:\Documents and Settings
2012-12-27 21:42:31 ----D---- C:\WINDOWS\Help
2012-12-27 20:03:28 ----D---- C:\WINDOWS\system32\spool
2012-12-27 19:52:19 ----D---- C:\WINDOWS\system32\wbem
2012-12-27 19:36:48 ----D---- C:\Program Files\Messenger
2012-12-27 19:07:15 ----D---- C:\WINDOWS\Media
2012-12-27 18:58:41 ----D---- C:\WINDOWS\system32\Setup
2012-12-27 18:58:08 ----D---- C:\WINDOWS\security
2012-12-27 18:57:26 ----D---- C:\WINDOWS\system32\CatRoot
2012-12-27 18:54:28 ----D---- C:\WINDOWS\system32\inetsrv
2012-12-27 18:54:28 ----D---- C:\WINDOWS\ime
2012-12-27 18:54:23 ----D---- C:\WINDOWS\system32\usmt
2012-12-27 18:54:22 ----D---- C:\WINDOWS\PeerNet
2012-12-27 18:53:29 ----D---- C:\WINDOWS\system32\npp
2012-12-27 18:53:29 ----D---- C:\WINDOWS\mui
2012-12-27 18:53:28 ----D---- C:\WINDOWS\srchasst
2012-12-27 18:53:28 ----D---- C:\WINDOWS\msagent
2012-12-27 18:53:28 ----D---- C:\Program Files\NetMeeting
2012-12-27 18:53:27 ----D---- C:\WINDOWS\system32\Com
2012-12-27 18:53:27 ----D---- C:\Program Files\Windows NT
2012-12-27 18:53:26 ----D---- C:\Program Files\Common Files\System
2012-12-27 18:53:23 ----D---- C:\WINDOWS\system32\oobe
2012-12-27 18:51:23 ----D---- C:\WINDOWS\ehome
2012-12-27 18:01:48 ----D---- C:\Program Files\HPQ
2012-12-27 17:58:48 ----D---- C:\WINDOWS\Registration
2012-12-27 17:50:48 ----D---- C:\SwSetup
2012-12-27 17:50:31 ----D---- C:\System.sav
2012-12-27 17:49:21 ----D---- C:\WINDOWS\Driver Cache
2012-12-27 17:24:53 ----SD---- C:\WINDOWS\system32\Microsoft
2012-12-16 13:23:59 ----A---- C:\WINDOWS\system32\atmfd.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 DRVMCDB;DRVMCDB; C:\WINDOWS\System32\Drivers\DRVMCDB.SYS [2005-08-30 88752]
R0 iaStor;Intel AHCI Controller; C:\WINDOWS\System32\DRIVERS\iaStor.sys [2005-10-12 874240]
R0 ohci1394;Texas Instruments OHCI Compliant IEEE 1394 Host Controller; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-14 61696]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2007-03-08 43528]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2012-12-27 691696]
R1 DLACDBHM;DLACDBHM; C:\WINDOWS\System32\Drivers\DLACDBHM.SYS [2005-08-25 5628]
R1 DLARTL_N;DLARTL_N; C:\WINDOWS\System32\Drivers\DLARTL_N.SYS [2005-08-25 22684]
R1 eabfiltr;eabfiltr; C:\WINDOWS\system32\DRIVERS\eabfiltr.sys [2005-09-19 7808]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 36352]
R1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2008-04-14 8832]
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2004-08-04 12032]
R2 DLABOIOM;DLABOIOM; C:\WINDOWS\System32\DLA\DLABOIOM.SYS [2005-08-31 25628]
R2 DLADResN;DLADResN; C:\WINDOWS\System32\DLA\DLADResN.SYS [2005-08-31 2496]
R2 DLAIFS_M;DLAIFS_M; C:\WINDOWS\System32\DLA\DLAIFS_M.SYS [2005-08-31 86524]
R2 DLAOPIOM;DLAOPIOM; C:\WINDOWS\System32\DLA\DLAOPIOM.SYS [2005-08-31 14684]
R2 DLAPoolM;DLAPoolM; C:\WINDOWS\System32\DLA\DLAPoolM.SYS [2005-08-31 6364]
R2 DLAUDF_M;DLAUDF_M; C:\WINDOWS\System32\DLA\DLAUDF_M.SYS [2005-08-31 87036]
R2 DLAUDFAM;DLAUDFAM; C:\WINDOWS\System32\DLA\DLAUDFAM.SYS [2005-08-31 94332]
R2 DRVNDDM;DRVNDDM; C:\WINDOWS\System32\Drivers\DRVNDDM.SYS [2005-08-12 40544]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\ADIHdAud.sys [2006-02-28 176128]
R3 AEAudioService;AEAudio Service; C:\WINDOWS\system32\drivers\AEAudio.sys [2005-06-07 152960]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2005-12-12 1120352]
R3 ATSWPDRV;AuthenTec TruePrint USB Driver (AES2500); C:\WINDOWS\system32\DRIVERS\ATSwpDrv.sys [2006-03-30 130432]
R3 b57w2k;Broadcom NetLink (TM) Gigabit Ethernet; C:\WINDOWS\system32\DRIVERS\b57xp32.sys [2005-10-26 142720]
R3 BCM43XX;Broadcom 802.11 ovládač sieťového adaptéru; C:\WINDOWS\system32\DRIVERS\bcmwl5.sys [2006-01-19 424320]
R3 BTKRNL;Bluetooth Bus Enumerator; C:\WINDOWS\system32\DRIVERS\btkrnl.sys [2006-01-18 1342570]
R3 GTIPCI21;GTIPCI21; C:\WINDOWS\system32\DRIVERS\gtipci21.sys [2006-02-28 87808]
R3 HBtnKey;HBtnKey; C:\WINDOWS\system32\DRIVERS\cpqbttn.sys [2005-09-19 9344]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2006-03-23 1166972]
R3 IFXTPM;IFXTPM; C:\WINDOWS\system32\DRIVERS\IFXTPM.SYS [2005-10-21 36352]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
R3 MQAC;Message Queuing access control; \??\C:\WINDOWS\system32\drivers\mqac.sys []
R3 RMCAST;Reliable Multicast Protocol driver; \??\C:\WINDOWS\system32\drivers\RMCast.sys []
R3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2008-04-14 79232]
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2006-03-03 192736]
R3 tifm21;tifm21; C:\WINDOWS\system32\drivers\tifm21.sys [2005-11-30 162560]
R3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 usbstor;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S3 Arp1394;1394 ARP Client Protocol; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-14 60800]
S3 ate7w1xc;ate7w1xc; C:\WINDOWS\system32\drivers\ate7w1xc.sys []
S3 btaudio;Bluetooth Audio Device; C:\WINDOWS\system32\drivers\btaudio.sys [2006-01-18 401664]
S3 BTDriver;Bluetooth Virtual Communications Driver; C:\WINDOWS\system32\DRIVERS\btport.sys [2006-01-18 30363]
S3 BTWDNDIS;Bluetooth LAN Access Server; C:\WINDOWS\system32\DRIVERS\btwdndis.sys [2006-01-18 148168]
S3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\WINDOWS\System32\Drivers\btwusb.sys [2006-01-19 57096]
S3 catchme;catchme; \??\C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\catchme.sys []
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 eabusb;eabusb; C:\WINDOWS\system32\DRIVERS\eabusb.sys [2005-09-19 5760]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-14 61824]
S3 Revoflt;Revoflt; C:\WINDOWS\system32\DRIVERS\revoflt.sys [2009-12-30 27064]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 usbaudio;USB Audio Driver (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-14 60032]
S3 usbvideo;USB Video Device (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2008-04-14 121984]
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe [2006-01-18 258103]
R2 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2013-01-01 192512]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2012-12-27 153584]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2005-12-18 73728]
R2 MSMQ;Message Queuing; C:\WINDOWS\system32\mqsvc.exe [2008-04-14 4608]
R2 MSMQTriggers;Message Queuing Triggers; C:\WINDOWS\system32\mqtgsvc.exe [2008-04-14 117248]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2004-08-11 38912]
R2 USBSafelyRemoveService;USB Safely Remove Assistant; C:\Program Files\USB Safely Remove\USBSRService.exe [2010-05-07 242000]
S3 AddFiltr;AddFiltr; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\AddFiltr.exe [2012-12-27 155648]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-01-09 251400]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2012-12-27 126976]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 WmcCds;Windows Media Connect (WMC); c:\program files\windows media connect\mswmccds.exe [2004-08-11 483328]
S3 WmcCdsLs;Windows Media Connect (WMC) Helper; C:\Program Files\Windows Media Connect\mswmcls.exe [2004-08-10 28160]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S4 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-02-15 158856]
-----------------EOF-----------------
tu je pribalený samotný RECYCLER s autorun.inf v archýve.

Jedná sa o problém s adresárom RECYCLER na USB klúčik mi vždy nakopíruje aj po čerstvom formátovaní USB klúčika na FAT32 adresár RECYCLER a súbor autorun.inf v ktorom sú nejaké znaky. V adresári RECYCLER s náchádza podadresár //S-6-2-84-6840813581-5077771576-562635426-3233 a v ňom *.exe súbor. Prikladám aj Screen z obrazovky. Podotýkam že mám v XP prof. vypnutú funkciu automatického spustenia na všetkých jednotkách. + upravený register.
Po tvrdom vymazaní adresára RECYCLER sa po chvíli znova objaví podadresár s dlhým názvom a v ňom EXE súbor. Dokonca je to horšie pretože potom ako to pomažem sa vytvorí 10 ďalších adresárov s tým istým súborom vo vnútri.
Som už z toho jeleň sakra.
[IMG=http://img338.imageshack.us/img338/5624/kuk1custom.jpg][/IMG]
Uploaded with ImageShack.us
Prikladám LOG z RSIT:
Logfile of random's system information tool 1.09 (written by random/random)
Run by Administrator at 2013-01-13 16:51:14
Microsoft Windows XP Professional Service Pack 3
System drive C: has 24 GB (67%) free of 36 GB
Total RAM: 3319 MB (88% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:51:24, on 13. 1. 2013
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\Program Files\USB Safely Remove\USBSRService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\System32\DLA\DLACTRLW.EXE
C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe
C:\Program Files\Vista Drive Icon\DrvIcon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\USB Safely Remove\USBSafelyRemove.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\TurboNote\tbnote.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\mqsvc.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\WINDOWS\system32\mqtgsvc.exe
C:\PROGRA~1\hpq\Shared\HPQTOA~1.EXE
C:\Documents and Settings\Administrator\Desktop\RSIT.exe
C:\Program Files\trend micro\Administrator.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://go.microsoft.com/fwlink/?linkid=54896
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer
F2 - REG:system.ini: UserInit=c:\windows\system32\userinit.exe,,c:\program files\microsoft\desktoplayer.exe
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [MsmqIntCert] regsvr32 /s mqrt.dll
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\HPQ\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [DLA] C:\WINDOWS\System32\DLA\DLACTRLW.EXE
O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe
O4 - HKLM\..\Run: [DrvIcon] C:\Program Files\Vista Drive Icon\DrvIcon.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [USB Safely Remove] C:\Program Files\USB Safely Remove\USBSafelyRemove.exe /startup
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: TurboNote.lnk = C:\Program Files\TurboNote\tbnote.exe
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Send To &Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.hp.com
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 6629351531
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/pub/s ... wflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: AddFiltr - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\AddFiltr.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: USB Safely Remove Assistant (USBSafelyRemoveService) - Unknown owner - C:\Program Files\USB Safely Remove\USBSRService.exe
--
End of file - 7404 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5CA3D70E-1895-11CF-8E15-001234567890}]
DriveLetterAccess - C:\WINDOWS\System32\DLA\DLASHX_W.DLL [2005-08-31 110652]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre6\bin\ssv.dll [2012-12-27 329712]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2012-12-27 59376]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2012-12-27 79856]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"MsmqIntCert"=regsvr32 /s mqrt.dll []
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2006-03-03 761948]
"QlbCtrl"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2013-01-01 188416]
"Cpqset"=C:\Program Files\HPQ\Default Settings\cpqset.exe [2006-01-26 172094]
"SoundMAXPnP"=C:\Program Files\Analog Devices\Core\smax4pnp.exe [2013-01-01 983040]
"AGRSMMSG"=C:\WINDOWS\AGRSMMSG.exe [2005-12-12 88203]
"igfxtray"=C:\WINDOWS\system32\igfxtray.exe [2006-03-23 94208]
"igfxhkcmd"=C:\WINDOWS\system32\hkcmd.exe [2006-03-23 77824]
"igfxpers"=C:\WINDOWS\system32\igfxpers.exe [2006-03-23 118784]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-09-17 254896]
"DLA"=C:\WINDOWS\System32\DLA\DLACTRLW.EXE [2005-08-31 122940]
"hpWirelessAssistant"=C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe [2013-01-01 512000]
"DrvIcon"=C:\Program Files\Vista Drive Icon\DrvIcon.exe [2008-04-13 49152]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"USB Safely Remove"=C:\Program Files\USB Safely Remove\USBSafelyRemove.exe [2013-01-09 3903488]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"wuauserv"=2
"wscsvc"=2
"W32Time"=2
"VSS"=3
"TlntSvr"=3
"srservice"=2
"SkypeUpdate"=2
"SCardSvr"=2
"RemoteRegistry"=2
"ERSvc"=2
C:\Documents and Settings\All Users\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
TurboNote.lnk - C:\Program Files\TurboNote\tbnote.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2006-03-23 139264]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=3
"Nocmd"=0
"NoDriveTypeAutoRun"=0
"NoAutoUpdate"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=3
"NoDriveTypeAutoRun"=0
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\WINDOWS\system32\mqsvc.exe"="C:\WINDOWS\system32\mqsvc.exe:*:Enabled:Message Queuing"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\TurboNote\tbnote.exe"="C:\Program Files\TurboNote\tbnote.exe:*:Enabled:TurboNote v3.4"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\IncrediMail\bin\IncMail.exe"="C:\Program Files\IncrediMail\bin\IncMail.exe:*:Enabled:IncrediMail"
"C:\Program Files\IncrediMail\bin\ImApp.exe"="C:\Program Files\IncrediMail\bin\ImApp.exe:*:Enabled:IncrediMail"
"C:\Program Files\IncrediMail\bin\ImpCnt.exe"="C:\Program Files\IncrediMail\bin\ImpCnt.exe:*:Enabled:IncrediMail"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\WINDOWS\system32\mqsvc.exe"="C:\WINDOWS\system32\mqsvc.exe:*:Enabled:Message Queuing"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
======List of files/folders created in the last 1 month======
2013-01-13 16:51:15 ----D---- C:\Program Files\trend micro
2013-01-13 16:51:14 ----D---- C:\rsit
2013-01-09 08:49:51 ----D---- C:\Documents and Settings\Administrator\Application Data\USBSafelyRemove
2013-01-09 08:49:16 ----D---- C:\Documents and Settings\All Users\Application Data\USBSRService
2013-01-09 08:49:15 ----D---- C:\Program Files\USB Safely Remove
2013-01-03 21:55:34 ----D---- C:\Program Files\Common Files\Designer
2013-01-03 21:55:05 ----D---- C:\WINDOWS\ShellNew
2013-01-03 21:55:01 ----D---- C:\Program Files\Microsoft Office
2013-01-03 20:51:49 ----N---- C:\WINDOWS\system32\pxinsa64.exe
2013-01-03 20:51:49 ----N---- C:\WINDOWS\system32\pxhpinst.exe
2013-01-03 20:51:49 ----N---- C:\WINDOWS\system32\pxcpya64.exe
2013-01-03 20:51:49 ----N---- C:\WINDOWS\system32\pxafs.dll
2013-01-03 20:51:49 ----N---- C:\WINDOWS\system32\drivers\cdralw2k.sys
2013-01-03 20:51:49 ----N---- C:\WINDOWS\system32\drivers\cdr4_xp.sys
2013-01-03 20:51:45 ----D---- C:\Program Files\Winamp
2013-01-02 21:10:47 ----RASHD---- C:\Autorun.inf
2013-01-02 20:11:01 ----D---- C:\Documents and Settings\Administrator\Application Data\IrfanView
2013-01-01 19:31:54 ----SHD---- C:\RECYCLER
2013-01-01 19:27:48 ----N---- C:\MSDOS.SYS
2013-01-01 19:27:48 ----N---- C:\IO.SYS
2013-01-01 19:14:23 ----D---- C:\WINDOWS\temp
2013-01-01 19:09:35 ----A---- C:\WINDOWS\zip.exe
2013-01-01 19:09:35 ----A---- C:\WINDOWS\SWXCACLS.exe
2013-01-01 19:09:35 ----A---- C:\WINDOWS\SWSC.exe
2013-01-01 19:09:35 ----A---- C:\WINDOWS\SWREG.exe
2013-01-01 19:09:35 ----A---- C:\WINDOWS\sed.exe
2013-01-01 19:09:35 ----A---- C:\WINDOWS\PEV.exe
2013-01-01 19:09:35 ----A---- C:\WINDOWS\NIRCMD.exe
2013-01-01 19:09:35 ----A---- C:\WINDOWS\MBR.exe
2013-01-01 19:09:35 ----A---- C:\WINDOWS\grep.exe
2013-01-01 19:08:27 ----SHD---- C:\WINDOWS\CSC
2013-01-01 19:03:48 ----A---- C:\WINDOWS\SchedLgU.Txt
2013-01-01 18:52:52 ----D---- C:\Qoobox
2013-01-01 17:40:58 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2012-12-31 02:56:30 ----D---- C:\Documents and Settings\Administrator\Application Data\Malwarebytes
2012-12-31 02:56:09 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2012-12-31 01:24:12 ----D---- C:\WINDOWS\ERDNT
2012-12-31 01:21:59 ----D---- C:\Program Files\ERUNT
2012-12-28 13:15:08 ----A---- C:\WINDOWS\system32\drivers\MSTEE.sys
2012-12-28 13:15:07 ----A---- C:\WINDOWS\system32\drivers\NdisIP.sys
2012-12-28 13:15:06 ----A---- C:\WINDOWS\system32\drivers\StreamIP.sys
2012-12-28 13:15:05 ----A---- C:\WINDOWS\system32\drivers\SLIP.sys
2012-12-28 13:15:03 ----A---- C:\WINDOWS\system32\drivers\WSTCODEC.SYS
2012-12-28 13:15:02 ----A---- C:\WINDOWS\system32\drivers\NABTSFEC.sys
2012-12-28 13:15:01 ----A---- C:\WINDOWS\system32\drivers\CCDECODE.sys
2012-12-28 13:14:54 ----A---- C:\WINDOWS\system32\drivers\USBAUDIO.sys
2012-12-28 13:14:47 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2012-12-28 10:25:29 ----D---- C:\Documents and Settings\All Users\Application Data\IM
2012-12-28 10:24:04 ----D---- C:\Program Files\IncrediMail
2012-12-28 10:24:04 ----D---- C:\Documents and Settings\All Users\Application Data\IncrediMail
2012-12-28 09:33:15 ----D---- C:\WINDOWS\system32\Adobe
2012-12-28 09:32:49 ----D---- C:\Documents and Settings\Administrator\Application Data\Skype
2012-12-28 09:32:39 ----RD---- C:\Program Files\Skype
2012-12-28 09:32:39 ----D---- C:\Program Files\Common Files\Skype
2012-12-28 09:32:39 ----D---- C:\Documents and Settings\All Users\Application Data\Skype
2012-12-28 01:37:33 ----ASH---- C:\pagefile.sys
2012-12-28 01:17:39 ----D---- C:\WINDOWS\pss
2012-12-28 00:37:30 ----D---- C:\Documents and Settings\Administrator\Application Data\Macromedia
2012-12-28 00:37:30 ----D---- C:\Documents and Settings\Administrator\Application Data\Adobe
2012-12-28 00:37:01 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2012-12-27 23:58:15 ----A---- C:\WINDOWS\system32\SYSDRV.DAT
2012-12-27 23:57:41 ----D---- C:\WINDOWS\i386
2012-12-27 21:49:38 ----D---- C:\WINDOWS\system32\appmgmt
2012-12-27 21:44:03 ----D---- C:\Program Files\MSECache
2012-12-27 21:43:35 ----A---- C:\WINDOWS\ODBC.INI
2012-12-27 21:43:13 ----D---- C:\Program Files\Vista Drive Icon
2012-12-27 21:11:29 ----D---- C:\Program Files\FoxitReaderPortable
2012-12-27 21:08:48 ----D---- C:\WINDOWS\Downloaded Installations
2012-12-27 21:04:52 ----D---- C:\Program Files\The KMPlayer
2012-12-27 21:03:14 ----D---- C:\Program Files\CCleaner
2012-12-27 21:00:01 ----A---- C:\WINDOWS\system32\drivers\sptd.sys
2012-12-27 20:59:40 ----D---- C:\Program Files\DAEMON Tools Lite
2012-12-27 20:59:10 ----D---- C:\Documents and Settings\Administrator\Application Data\DAEMON Tools Lite
2012-12-27 20:59:06 ----D---- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Lite
2012-12-27 20:53:03 ----D---- C:\Program Files\IrfanView
2012-12-27 20:47:34 ----A---- C:\WINDOWS\system32\drivers\revoflt.sys
2012-12-27 20:47:32 ----D---- C:\Program Files\VS Revo Group
2012-12-27 20:46:51 ----D---- C:\Program Files\Microsoft
2012-12-27 20:43:23 ----D---- C:\Program Files\TurboNote
2012-12-27 20:31:41 ----D---- C:\Documents and Settings\Administrator\Application Data\InterVideo
2012-12-27 20:27:27 ----D---- C:\totalcmd
2012-12-27 20:27:27 ----A---- C:\WINDOWS\UC.PIF
2012-12-27 20:27:27 ----A---- C:\WINDOWS\RAR.PIF
2012-12-27 20:27:27 ----A---- C:\WINDOWS\NOCLOSE.PIF
2012-12-27 20:27:27 ----A---- C:\WINDOWS\LHA.PIF
2012-12-27 20:27:27 ----A---- C:\WINDOWS\ARJ.PIF
2012-12-27 20:26:21 ----D---- C:\Documents and Settings\Administrator\Application Data\Opera
2012-12-27 20:26:15 ----D---- C:\Program Files\Opera
2012-12-27 20:18:21 ----D---- C:\Documents and Settings\Administrator\Application Data\ElevatedDiagnostics
2012-12-27 20:17:19 ----D---- C:\WINDOWS\system32\windowspowershell
2012-12-27 20:17:14 ----HDC---- C:\WINDOWS\$NtUninstallKB926139-v2$
2012-12-27 20:14:14 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2012-12-27 20:03:51 ----D---- C:\WINDOWS\system32\XPSViewer
2012-12-27 20:03:48 ----D---- C:\Program Files\MSBuild
2012-12-27 20:03:43 ----D---- C:\Program Files\Reference Assemblies
2012-12-27 20:03:12 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2012-12-27 20:03:12 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2012-12-27 20:03:12 ----N---- C:\WINDOWS\system32\prntvpt.dll
2012-12-27 20:03:12 ----D---- C:\5c45a96bfe28effcb33afbb687
2012-12-27 19:56:22 ----A---- C:\Program Files\MicrosoftFixit.IEAddon.exe
2012-12-27 19:48:13 ----HDC---- C:\WINDOWS\$NtUninstallKB2753842-v2$
2012-12-27 19:46:58 ----A---- C:\WINDOWS\system32\MRT.exe
2012-12-27 19:46:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2779562$
2012-12-27 19:46:31 ----HDC---- C:\WINDOWS\$NtUninstallKB2770660$
2012-12-27 19:46:26 ----HDC---- C:\WINDOWS\$NtUninstallKB2779030$
2012-12-27 19:46:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2758857$
2012-12-27 19:46:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2727528$
2012-12-27 19:45:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2705219-v2$
2012-12-27 19:45:48 ----HDC---- C:\WINDOWS\$NtUninstallKB2723135-v2$
2012-12-27 19:45:45 ----HDC---- C:\WINDOWS\$NtUninstallKB2661254-v2$
2012-12-27 19:45:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2724197$
2012-12-27 19:45:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2749655$
2012-12-27 19:45:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2736233$
2012-12-27 19:45:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2712808$
2012-12-27 19:45:21 ----HDC---- C:\WINDOWS\$NtUninstallKB2698365$
2012-12-27 19:45:16 ----HDC---- C:\WINDOWS\$NtUninstallKB2719985$
2012-12-27 19:45:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2655992$
2012-12-27 19:45:04 ----HDC---- C:\WINDOWS\$NtUninstallKB2691442$
2012-12-27 19:44:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2686509$
2012-12-27 19:44:41 ----HDC---- C:\WINDOWS\$NtUninstallKB2659262$
2012-12-27 19:44:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2676562$
2012-12-27 19:44:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2653956$
2012-12-27 19:44:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2661637$
2012-12-27 19:44:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2646524$
2012-12-27 19:44:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2598479$
2012-12-27 19:44:15 ----HDC---- C:\WINDOWS\$NtUninstallKB2603381$
2012-12-27 19:44:11 ----HDC---- C:\WINDOWS\$NtUninstallKB2585542$
2012-12-27 19:44:07 ----HDC---- C:\WINDOWS\$NtUninstallKB2631813$
2012-12-27 19:44:04 ----HDC---- C:\WINDOWS\$NtUninstallKB2584146$
2012-12-27 19:44:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2620712$
2012-12-27 19:43:57 ----HDC---- C:\WINDOWS\$NtUninstallKB2619339$
2012-12-27 19:43:53 ----HDC---- C:\WINDOWS\$NtUninstallKB2618451$
2012-12-27 19:43:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2624667$
2012-12-27 19:43:46 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893-v2$
2012-12-27 19:43:42 ----HDC---- C:\WINDOWS\$NtUninstallKB2564958$
2012-12-27 19:43:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2592799$
2012-12-27 19:43:36 ----HDC---- C:\WINDOWS\$NtUninstallKB2570947$
2012-12-27 19:43:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2536276-v2$
2012-12-27 19:43:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2566454$
2012-12-27 19:43:26 ----HDC---- C:\WINDOWS\$NtUninstallKB2507938$
2012-12-27 19:43:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2476490$
2012-12-27 19:43:15 ----HDC---- C:\WINDOWS\$NtUninstallKB2535512$
2012-12-27 19:43:10 ----HDC---- C:\WINDOWS\$NtUninstallKB2509553$
2012-12-27 19:43:06 ----D---- C:\WINDOWS\ie8updates
2012-12-27 19:43:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2506212$
2012-12-27 19:42:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2508429$
2012-12-27 19:42:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2485663$
2012-12-27 19:42:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2481109$
2012-12-27 19:42:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2479943$
2012-12-27 19:42:43 ----HDC---- C:\WINDOWS\$NtUninstallKB971029$
2012-12-27 19:42:36 ----HDC---- C:\WINDOWS\$NtUninstallKB2393802$
2012-12-27 19:42:31 ----HDC---- C:\WINDOWS\$NtUninstallKB2478960$
2012-12-27 19:42:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2483185$
2012-12-27 19:42:21 ----HDC---- C:\WINDOWS\$NtUninstallKB2478971$
2012-12-27 19:42:16 ----HDC---- C:\WINDOWS\$NtUninstallKB2419632$
2012-12-27 19:42:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2012-12-27 19:42:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2012-12-27 19:42:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2012-12-27 19:42:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2360937$
2012-12-27 19:41:59 ----HDC---- C:\WINDOWS\$NtUninstallKB982132$
2012-12-27 19:41:54 ----HDC---- C:\WINDOWS\$NtUninstallKB2387149$
2012-12-27 19:41:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2378111_WM9$
2012-12-27 19:41:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2296011$
2012-12-27 19:41:43 ----HDC---- C:\WINDOWS\$NtUninstallKB979687$
2012-12-27 19:41:40 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2012-12-27 19:41:37 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$
2012-12-27 19:41:34 ----HDC---- C:\WINDOWS\$NtUninstallKB981322$
2012-12-27 19:41:30 ----HDC---- C:\WINDOWS\$NtUninstallKB981997$
2012-12-27 19:41:26 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2012-12-27 19:41:23 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2012-12-27 19:41:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2012-12-27 19:41:16 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2012-12-27 19:41:12 ----HDC---- C:\WINDOWS\$NtUninstallKB978695_WM9$
2012-12-27 19:41:08 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2012-12-27 19:41:02 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2012-12-27 19:40:59 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2012-12-27 19:40:55 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2012-12-27 19:40:52 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2012-12-27 19:40:48 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2012-12-27 19:40:42 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2012-12-27 19:40:37 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2012-12-27 19:40:34 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2012-12-27 19:40:30 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2012-12-27 19:40:26 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2012-12-27 19:40:23 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2012-12-27 19:40:18 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2012-12-27 19:40:15 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2012-12-27 19:40:11 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2012-12-27 19:40:07 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2012-12-27 19:40:04 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2012-12-27 19:40:00 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2012-12-27 19:39:57 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2012-12-27 19:39:54 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2012-12-27 19:39:51 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2012-12-27 19:39:47 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2012-12-27 19:39:44 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2012-12-27 19:39:40 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2012-12-27 19:39:37 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2012-12-27 19:39:33 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2012-12-27 19:39:30 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2012-12-27 19:39:25 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2012-12-27 19:39:21 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2012-12-27 19:39:17 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2012-12-27 19:39:13 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2012-12-27 19:39:04 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2012-12-27 19:38:59 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2012-12-27 19:37:04 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2012-12-27 19:37:01 ----HDC---- C:\WINDOWS\$NtUninstallKB923723$
2012-12-27 19:36:57 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2012-12-27 19:36:54 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2012-12-27 19:36:50 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2012-12-27 19:36:47 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2012-12-27 19:36:43 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2012-12-27 19:36:39 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2012-12-27 19:36:36 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2012-12-27 19:36:28 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2012-12-27 19:32:43 ----N---- C:\WINDOWS\system32\iacenc.dll
2012-12-27 19:29:17 ----N---- C:\WINDOWS\system32\browserchoice.exe
2012-12-27 19:26:27 ----A---- C:\WINDOWS\system32\xpsp4res.dll
2012-12-27 19:16:10 ----D---- C:\WINDOWS\system32\PreInstall
2012-12-27 19:16:08 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2012-12-27 19:13:06 ----A---- C:\WINDOWS\system32\wups2.dll
2012-12-27 19:13:04 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2012-12-27 19:07:20 ----D---- C:\WINDOWS\WBEM
2012-12-27 19:06:55 ----HDC---- C:\WINDOWS\ie8
2012-12-27 19:06:55 ----D---- C:\WINDOWS\system32\sk-SK
2012-12-27 19:06:04 ----N---- C:\WINDOWS\system32\WinFXDocObj.exe
2012-12-27 19:06:04 ----A---- C:\WINDOWS\system32\normaliz.dll
2012-12-27 19:06:04 ----A---- C:\WINDOWS\system32\nlsdl.dll
2012-12-27 19:06:04 ----A---- C:\WINDOWS\system32\msdbg2.dll
2012-12-27 19:06:04 ----A---- C:\WINDOWS\system32\ieudinit.exe
2012-12-27 19:06:04 ----A---- C:\WINDOWS\system32\idndl.dll
2012-12-27 19:06:02 ----N---- C:\WINDOWS\system32\msfeedssync.exe
2012-12-27 19:06:02 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
2012-12-27 19:06:02 ----A---- C:\WINDOWS\system32\msfeeds.dll
2012-12-27 19:06:01 ----N---- C:\WINDOWS\system32\ieui.dll
2012-12-27 19:06:01 ----A---- C:\WINDOWS\system32\iertutil.dll
2012-12-27 19:06:00 ----A---- C:\WINDOWS\system32\ieframe.dll
2012-12-27 19:05:58 ----N---- C:\WINDOWS\system32\ieapfltr.dll
2012-12-27 19:05:58 ----N---- C:\WINDOWS\system32\ieapfltr.dat
2012-12-27 19:05:58 ----N---- C:\WINDOWS\system32\icardie.dll
2012-12-27 18:59:04 ----D---- C:\WINDOWS\Prefetch
2012-12-27 18:54:31 ----N---- C:\WINDOWS\system32\msxml6r.dll
2012-12-27 18:54:31 ----A---- C:\WINDOWS\system32\msxml6.dll
2012-12-27 18:54:28 ----N---- C:\WINDOWS\system32\smtpapi.dll
2012-12-27 18:54:28 ----N---- C:\WINDOWS\system32\rwnh.dll
2012-12-27 18:54:28 ----N---- C:\WINDOWS\system32\drivers\irbus.sys
2012-12-27 18:54:28 ----N---- C:\WINDOWS\system32\comsdupd.exe
2012-12-27 18:54:27 ----N---- C:\WINDOWS\system32\ati2dvag.dll
2012-12-27 18:54:27 ----N---- C:\WINDOWS\system32\ati2dvaa.dll
2012-12-27 18:54:27 ----N---- C:\WINDOWS\system32\ati2cqag.dll
2012-12-27 18:54:27 ----N---- C:\WINDOWS\system32\aaclient.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\hsfcisp2.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\eapsvc.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\eapqec.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\eappprxy.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\eapphost.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\eappgnui.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\eappcfg.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\eapp3hst.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\eapolqec.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\dot3ui.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\dot3svc.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\dot3msm.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\dot3gpclnt.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\dot3dlg.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\dot3cfg.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\dot3api.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\dimsroam.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\dimsntfy.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\dhcpqec.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\credssp.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\bitsprx4.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\azroles.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\ativvaxx.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\ativtmxx.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\ati3duag.dll
2012-12-27 18:54:26 ----N---- C:\WINDOWS\system32\ati3d1ag.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\onex.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\nv4_disp.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\napstat.exe
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\napmontr.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\napipsec.dll
2012-12-27 18:54:25 ----N---- C:\WINDOC:\Program Files\IncrediMail\bin\ImpCnt.exeWS\system32\mtxparhd.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\msshavmsg.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\mssha.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\mmcperf.exe
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\mmcfxcommon.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\mmcex.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\mdmxsdk.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\l2gpstore.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\kmsvc.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\kbdpash.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\kbdnepr.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\kbdiultn.dll
2012-12-27 18:54:25 ----N---- C:\WINDOWS\system32\kbdbhc.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\wmphoto.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\wlanapi.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\windowscodecsext.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\windowscodecs.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\verclsid.exe
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\tzchange.exe
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\tspkg.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\tsgqec.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\slserv.exe
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\slrundll.exe
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\slgen.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\slextspk.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\slcoinst.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\setupn.exe
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\s3gnb.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\rhttpaa.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\rasqec.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\qutil.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\qcliprov.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\qagentrt.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\qagent.dll
2012-12-27 18:54:24 ----N---- C:\WINDOWS\system32\photometadatahandler.dll
2012-12-27 18:54:23 ----N---- C:\WINDOWS\slrundll.exe
2012-12-27 18:54:23 ----D---- C:\WINDOWS\system32\scripting
2012-12-27 18:54:23 ----D---- C:\WINDOWS\system32\en-us
2012-12-27 18:54:23 ----D---- C:\WINDOWS\l2schemas
2012-12-27 18:54:23 ----A---- C:\WINDOWS\system32\xmllite.dll
2012-12-27 18:54:22 ----D---- C:\WINDOWS\system32\en
2012-12-27 18:54:22 ----D---- C:\WINDOWS\system32\bits
2012-12-27 18:53:32 ----D---- C:\WINDOWS\ServicePackFiles
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\bthusb.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\bthprint.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\bthport.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\bthpan.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\bthmodem.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\bthenum.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\atv10nt5.dll
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\atv06nt5.dll
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\atv04nt5.dll
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\atv02nt5.dll
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\atv01nt5.dll
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\atinxsxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\atinxbxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\atintuxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\atinttxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\atinsnxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\atinrvxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\atinraxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\atinpdxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\atinmdxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\atinbtxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\ati2mtag.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\ati2mtaa.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\ati1xsxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\ati1xbxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\ati1tuxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\ati1ttxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\ati1snxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\ati1rvxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\ati1raxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\ati1pdxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\ati1mdxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\ati1btxx.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\amdagp.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\alim1541.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\agpcpq.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\agp440.sys
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\adv11nt5.dll
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\adv09nt5.dll
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\adv08nt5.dll
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\adv07nt5.dll
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\adv05nt5.dll
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\adv02nt5.dll
2012-12-27 18:52:59 ----N---- C:\WINDOWS\system32\drivers\adv01nt5.dll
2012-12-27 18:52:59 ----D---- C:\WINDOWS\network diagnostic
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\s3gnbm.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\rndismpx.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\rfcomm.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\recagent.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\nv4_mini.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\ntmtlfax.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\mutohpen.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\mtxparhm.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\mtlstrm.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\mtlmnt5.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\mdmxsdk.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\ch7xxnt5.dll
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\hsfdpsp2.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\hsfcxts2.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\hsfbs2s2.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\hidir.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\hidbth.sys
2012-12-27 18:52:58 ----N---- C:\WINDOWS\system32\drivers\gagp30kx.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\watv10nt.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\watv06nt.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\wadv11nt.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\wadv09nt.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\wadv08nt.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\wadv07nt.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\wacompen.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\viaagp.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\vchnt5.dll
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\usbvideo.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\usb8023x.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\uagp35.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\smbali.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\slwdmsup.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\slnthal.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\slntamr.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\slnt7554.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\sisagp.sys
2012-12-27 18:52:57 ----N---- C:\WINDOWS\system32\drivers\siint5.dll
2012-12-27 18:51:23 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2012-12-27 18:40:39 ----D---- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
2012-12-27 18:26:48 ----D---- C:\Documents and Settings\All Users\Application Data\Sun
2012-12-27 18:26:37 ----A---- C:\WINDOWS\system32\npdeployJava1.dll
2012-12-27 18:26:37 ----A---- C:\WINDOWS\system32\deployJava1.dll
2012-12-27 18:26:17 ----D---- C:\Documents and Settings\All Users\Application Data\McAfee
2012-12-27 18:25:42 ----D---- C:\Documents and Settings\Administrator\Application Data\Sun
2012-12-27 18:15:17 ----A---- C:\WINDOWS\system32\igfxres.dll
2012-12-27 18:03:42 ----D---- C:\Program Files\Intel
2012-12-27 18:02:54 ----A---- C:\WINDOWS\system32\wmpns.dll
2012-12-27 18:01:56 ----D---- C:\Program Files\Windows Media Connect
2012-12-27 18:01:39 ----D---- C:\Documents and Settings\All Users\Application Data\InstallShield
2012-12-27 18:00:50 ----D---- C:\Program Files\Common Files\TiVo Shared
2012-12-27 18:00:28 ----D---- C:\Program Files\Common Files\SureThing Shared
2012-12-27 18:00:25 ----D---- C:\WINDOWS\system32\DLA
2012-12-27 18:00:25 ----A---- C:\WINDOWS\system32\drivers\DRVNDDM.SYS
2012-12-27 18:00:25 ----A---- C:\WINDOWS\system32\drivers\DRVMCDB.SYS
2012-12-27 18:00:25 ----A---- C:\WINDOWS\system32\drivers\DLARTL_N.SYS
2012-12-27 18:00:25 ----A---- C:\WINDOWS\system32\drivers\DLACDBHM.SYS
2012-12-27 18:00:25 ----A---- C:\WINDOWS\system32\DLAAPI_W.DLL
2012-12-27 18:00:25 ----A---- C:\WINDOWS\DLA.EXE
2012-12-27 18:00:01 ----D---- C:\Program Files\Sonic
2012-12-27 18:00:00 ----D---- C:\Program Files\Common Files\Sonic Shared
2012-12-27 17:59:16 ----D---- C:\Program Files\Common Files\LightScribe
2012-12-27 17:59:00 ----D---- C:\WINDOWS\Hewlett-Packard
2012-12-27 17:57:10 ----A---- C:\WINDOWS\system32\javaws.exe
2012-12-27 17:57:10 ----A---- C:\WINDOWS\system32\javaw.exe
2012-12-27 17:57:10 ----A---- C:\WINDOWS\system32\java.exe
2012-12-27 17:56:44 ----D---- C:\Program Files\Java
2012-12-27 17:56:42 ----D---- C:\Program Files\Common Files\Java
2012-12-27 17:51:00 ----N---- C:\WINDOWS\biwlandrvxpver.dll
2012-12-27 17:50:18 ----N---- C:\WINDOWS\HPNICVersion.dll
2012-12-27 17:50:07 ----D---- C:\Program Files\Broadcom
2012-12-27 17:49:21 ----N---- C:\WINDOWS\system32\agrsmdel.exe
2012-12-27 17:49:21 ----N---- C:\WINDOWS\HPModemVersion.dll
2012-12-27 17:49:17 ----D---- C:\WINDOWS\Options
2012-12-27 17:36:39 ----HD---- C:\WINDOWS\system32\GroupPolicy
2012-12-27 17:36:27 ----A---- C:\WINDOWS\system32\hidserv.dll
2012-12-27 17:36:15 ----A---- C:\WINDOWS\system32\drivers\usbccgp.sys
2012-12-27 17:28:26 ----A---- C:\WINDOWS\system32\drivers\mouhid.sys
2012-12-27 17:28:24 ----A---- C:\WINDOWS\system32\drivers\hidusb.sys
2012-12-27 17:24:48 ----D---- C:\Program Files\WIDCOMM
2012-12-27 17:24:04 ----D---- C:\WINDOWS\tiinst
2012-12-27 17:22:15 ----D---- C:\Program Files\Program Shortcuts
======List of files/folders modified in the last 1 month======
2013-01-13 16:51:15 ----D---- C:\Program Files
2013-01-13 16:49:19 ----D---- C:\WINDOWS\system32
2013-01-13 16:49:19 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2013-01-13 16:44:53 ----D---- C:\WINDOWS
2013-01-13 11:09:47 ----D---- C:\WINDOWS\system32\CatRoot2
2013-01-13 11:09:34 ----SHD---- C:\System Volume Information
2013-01-13 11:09:34 ----D---- C:\WINDOWS\system32\Restore
2013-01-13 10:59:43 ----D---- C:\WINDOWS\system32\config
2013-01-13 10:56:05 ----SHD---- C:\WINDOWS\Installer
2013-01-13 10:56:05 ----SD---- C:\WINDOWS\Downloaded Program Files
2013-01-13 10:56:05 ----D---- C:\Program Files\Common Files\InstallShield
2013-01-10 23:35:02 ----RSHD---- C:\WINDOWS\system32\dllcache
2013-01-10 23:34:57 ----D---- C:\WINDOWS\system32\drivers
2013-01-03 22:00:05 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-01-03 21:57:38 ----SD---- C:\Documents and Settings\Administrator\Application Data\Microsoft
2013-01-03 21:55:34 ----D---- C:\Program Files\Common Files
2013-01-03 21:52:38 ----D---- C:\WINDOWS\system
2013-01-03 21:47:35 ----D---- C:\WINDOWS\SoftwareDistribution
2013-01-03 21:46:21 ----N---- C:\boot.ini
2013-01-03 21:46:21 ----A---- C:\WINDOWS\win.ini
2013-01-03 21:46:21 ----A---- C:\WINDOWS\system.ini
2013-01-03 21:39:04 ----HD---- C:\Program Files\InstallShield Installation Information
2013-01-03 21:38:21 ----SD---- C:\WINDOWS\Tasks
2013-01-03 21:37:46 ----D---- C:\Program Files\Hewlett-Packard
2013-01-02 21:09:18 ----D---- C:\Program Files\Internet Explorer
2013-01-02 16:07:50 ----HD---- C:\WINDOWS\inf
2013-01-01 19:15:11 ----D---- C:\WINDOWS\system32\drivers\etc
2013-01-01 19:12:52 ----D---- C:\WINDOWS\AppPatch
2013-01-01 19:12:02 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2013-01-01 19:06:21 ----D---- C:\Program Files\Outlook Express
2013-01-01 17:40:54 ----HD---- C:\WINDOWS\$hf_mig$
2012-12-31 03:06:34 ----D---- C:\Program Files\Windows Media Player
2012-12-31 03:06:01 ----D---- C:\Program Files\Movie Maker
2012-12-28 10:34:08 ----D---- C:\WINDOWS\SMINST
2012-12-28 10:24:11 ----RSD---- C:\WINDOWS\Fonts
2012-12-28 09:33:18 ----D---- C:\WINDOWS\WinSxS
2012-12-28 01:39:34 ----D---- C:\WINDOWS\Debug
2012-12-28 00:12:58 ----RSD---- C:\WINDOWS\assembly
2012-12-28 00:12:41 ----D---- C:\WINDOWS\Microsoft.NET
2012-12-27 23:57:36 ----RD---- C:\WINDOWS\Web
2012-12-27 23:57:36 ----D---- C:\WINDOWS\twain_32
2012-12-27 23:57:26 ----D---- C:\WINDOWS\system32\ReinstallBackups
2012-12-27 23:57:26 ----D---- C:\WINDOWS\system32\ras
2012-12-27 23:57:15 ----D---- C:\WINDOWS\system32\mui
2012-12-27 23:57:14 ----D---- C:\WINDOWS\system32\msmq
2012-12-27 23:57:12 ----D---- C:\WINDOWS\system32\MsDtc
2012-12-27 23:57:11 ----D---- C:\WINDOWS\system32\Macromed
2012-12-27 23:57:11 ----D---- C:\WINDOWS\system32\IME
2012-12-27 23:57:11 ----D---- C:\WINDOWS\system32\icsxml
2012-12-27 23:57:11 ----D---- C:\WINDOWS\system32\ias
2012-12-27 23:57:05 ----D---- C:\WINDOWS\system32\DirectX
2012-12-27 23:57:01 ----D---- C:\WINDOWS\system32\1060
2012-12-27 23:57:01 ----D---- C:\WINDOWS\system32\1051
2012-12-27 23:57:01 ----D---- C:\WINDOWS\system32\1033
2012-12-27 23:55:56 ----D---- C:\WINDOWS\Resources
2012-12-27 23:55:56 ----D---- C:\WINDOWS\repair
2012-12-27 23:55:49 ----D---- C:\WINDOWS\RegisteredPackages
2012-12-27 23:55:48 ----D---- C:\WINDOWS\Provisioning
2012-12-27 23:55:23 ----RD---- C:\WINDOWS\Offline Web Pages
2012-12-27 23:55:23 ----D---- C:\WINDOWS\pchealth
2012-12-27 23:54:48 ----D---- C:\WINDOWS\msapps
2012-12-27 23:54:37 ----D---- C:\WINDOWS\java
2012-12-27 23:53:36 ----D---- C:\WINDOWS\Cursors
2012-12-27 23:53:25 ----HD---- C:\WINDOWS\$NtUninstallKB896256$
2012-12-27 23:53:24 ----HD---- C:\WINDOWS\$NtUninstallKB912919$
2012-12-27 23:53:24 ----HD---- C:\WINDOWS\$NtUninstallKB896358$
2012-12-27 23:53:24 ----HD---- C:\WINDOWS\$NtUninstallKB892559$
2012-12-27 23:53:24 ----HD---- C:\WINDOWS\$NtUninstallKB888239$
2012-12-27 23:53:24 ----HD---- C:\WINDOWS\$NtUninstallKB888111WXPSP2$
2012-12-27 23:53:24 ----HD---- C:\WINDOWS\$NtUninstallKB885855$
2012-12-27 23:53:24 ----HD---- C:\WINDOWS\$NtUninstallKB883667$
2012-12-27 23:53:23 ----HD---- C:\WINDOWS\$NtUninstallKB908519$
2012-12-27 23:53:23 ----HD---- C:\WINDOWS\$NtUninstallKB896727$
2012-12-27 23:53:22 ----HD---- C:\WINDOWS\$NtUninstallKB913446$
2012-12-27 23:53:22 ----HD---- C:\WINDOWS\$NtUninstallKB912436$
2012-12-27 23:53:22 ----HD---- C:\WINDOWS\$NtUninstallKB911927$
2012-12-27 23:53:22 ----HD---- C:\WINDOWS\$NtUninstallKB904706$
2012-12-27 23:53:22 ----HD---- C:\WINDOWS\$NtUninstallKB889673$
2012-12-27 23:53:22 ----HD---- C:\WINDOWS\$NtUninstallKB885884$
2012-12-27 23:53:22 ----HD---- C:\WINDOWS\$NtUninstallKB885464$
2012-12-27 23:53:22 ----HD---- C:\WINDOWS\$NtUninstallKB884575$
2012-12-27 23:53:21 ----HD---- C:\WINDOWS\$NtUninstallKB915326$
2012-12-27 23:53:21 ----HD---- C:\WINDOWS\$NtUninstallKB911565$
2012-12-27 23:53:21 ----HD---- C:\WINDOWS\$NtUninstallKB896423$
2012-12-27 23:53:21 ----HD---- C:\WINDOWS\$NtUninstallKB893066$
2012-12-27 23:53:21 ----HD---- C:\WINDOWS\$NtUninstallKB887472$
2012-12-27 23:53:21 ----HD---- C:\WINDOWS\$NtUninstallKB886185$
2012-12-27 23:53:20 ----HD---- C:\WINDOWS\$NtUninstallKB918005$
2012-12-27 23:53:20 ----HD---- C:\WINDOWS\$NtUninstallKB901214$
2012-12-27 23:53:20 ----HD---- C:\WINDOWS\$NtUninstallKB891781$
2012-12-27 23:53:20 ----HD---- C:\WINDOWS\$NtUninstallKB888402$
2012-12-27 23:53:20 ----HD---- C:\WINDOWS\$NtUninstallKB873333$
2012-12-27 23:53:19 ----HD---- C:\WINDOWS\$NtUninstallKB909095$
2012-12-27 23:53:18 ----HD---- C:\WINDOWS\$NtUninstallKB911564$
2012-12-27 23:53:18 ----HD---- C:\WINDOWS\$NtUninstallKB896422$
2012-12-27 23:53:18 ----HD---- C:\WINDOWS\$NtUninstallKB896243$
2012-12-27 23:53:18 ----HD---- C:\WINDOWS\$NtUninstallKB888113$
2012-12-27 23:53:17 ----HD---- C:\WINDOWS\$NtUninstallKB903235$
2012-12-27 23:53:17 ----HD---- C:\WINDOWS\$NtUninstallKB901190$
2012-12-27 23:53:17 ----HD---- C:\WINDOWS\$NtUninstallKB894391$
2012-12-27 23:53:17 ----HD---- C:\WINDOWS\$NtUninstallKB885250$
2012-12-27 23:53:05 ----D---- C:\Program Files\xerox
2012-12-27 23:53:00 ----D---- C:\Program Files\Synaptics
2012-12-27 23:52:59 ----D---- C:\Program Files\Online Services
2012-12-27 23:52:58 ----D---- C:\Program Files\MSN Gaming Zone
2012-12-27 23:52:56 ----D---- C:\Program Files\MSN
2012-12-27 23:52:55 ----D---- C:\Program Files\microsoft frontpage
2012-12-27 23:52:43 ----D---- C:\Program Files\Fingerprint Sensor
2012-12-27 23:52:42 ----D---- C:\Program Files\Common Files\SpeechEngines
2012-12-27 23:52:42 ----D---- C:\Program Files\Common Files\Services
2012-12-27 23:52:42 ----D---- C:\Program Files\Common Files\ODBC
2012-12-27 23:52:42 ----D---- C:\Program Files\Common Files\MSSoap
2012-12-27 23:52:39 ----D---- C:\Program Files\Analog Devices
2012-12-27 23:52:25 ----D---- C:\I386
2012-12-27 23:49:40 ----D---- C:\Documents and Settings\All Users\Application Data\SBSI
2012-12-27 23:49:34 ----D---- C:\Documents and Settings\Administrator\Application Data\Identities
2012-12-27 23:49:32 ----D---- C:\Documents and Settings
2012-12-27 21:42:31 ----D---- C:\WINDOWS\Help
2012-12-27 20:03:28 ----D---- C:\WINDOWS\system32\spool
2012-12-27 19:52:19 ----D---- C:\WINDOWS\system32\wbem
2012-12-27 19:36:48 ----D---- C:\Program Files\Messenger
2012-12-27 19:07:15 ----D---- C:\WINDOWS\Media
2012-12-27 18:58:41 ----D---- C:\WINDOWS\system32\Setup
2012-12-27 18:58:08 ----D---- C:\WINDOWS\security
2012-12-27 18:57:26 ----D---- C:\WINDOWS\system32\CatRoot
2012-12-27 18:54:28 ----D---- C:\WINDOWS\system32\inetsrv
2012-12-27 18:54:28 ----D---- C:\WINDOWS\ime
2012-12-27 18:54:23 ----D---- C:\WINDOWS\system32\usmt
2012-12-27 18:54:22 ----D---- C:\WINDOWS\PeerNet
2012-12-27 18:53:29 ----D---- C:\WINDOWS\system32\npp
2012-12-27 18:53:29 ----D---- C:\WINDOWS\mui
2012-12-27 18:53:28 ----D---- C:\WINDOWS\srchasst
2012-12-27 18:53:28 ----D---- C:\WINDOWS\msagent
2012-12-27 18:53:28 ----D---- C:\Program Files\NetMeeting
2012-12-27 18:53:27 ----D---- C:\WINDOWS\system32\Com
2012-12-27 18:53:27 ----D---- C:\Program Files\Windows NT
2012-12-27 18:53:26 ----D---- C:\Program Files\Common Files\System
2012-12-27 18:53:23 ----D---- C:\WINDOWS\system32\oobe
2012-12-27 18:51:23 ----D---- C:\WINDOWS\ehome
2012-12-27 18:01:48 ----D---- C:\Program Files\HPQ
2012-12-27 17:58:48 ----D---- C:\WINDOWS\Registration
2012-12-27 17:50:48 ----D---- C:\SwSetup
2012-12-27 17:50:31 ----D---- C:\System.sav
2012-12-27 17:49:21 ----D---- C:\WINDOWS\Driver Cache
2012-12-27 17:24:53 ----SD---- C:\WINDOWS\system32\Microsoft
2012-12-16 13:23:59 ----A---- C:\WINDOWS\system32\atmfd.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 DRVMCDB;DRVMCDB; C:\WINDOWS\System32\Drivers\DRVMCDB.SYS [2005-08-30 88752]
R0 iaStor;Intel AHCI Controller; C:\WINDOWS\System32\DRIVERS\iaStor.sys [2005-10-12 874240]
R0 ohci1394;Texas Instruments OHCI Compliant IEEE 1394 Host Controller; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-14 61696]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2007-03-08 43528]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2012-12-27 691696]
R1 DLACDBHM;DLACDBHM; C:\WINDOWS\System32\Drivers\DLACDBHM.SYS [2005-08-25 5628]
R1 DLARTL_N;DLARTL_N; C:\WINDOWS\System32\Drivers\DLARTL_N.SYS [2005-08-25 22684]
R1 eabfiltr;eabfiltr; C:\WINDOWS\system32\DRIVERS\eabfiltr.sys [2005-09-19 7808]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 36352]
R1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2008-04-14 8832]
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2004-08-04 12032]
R2 DLABOIOM;DLABOIOM; C:\WINDOWS\System32\DLA\DLABOIOM.SYS [2005-08-31 25628]
R2 DLADResN;DLADResN; C:\WINDOWS\System32\DLA\DLADResN.SYS [2005-08-31 2496]
R2 DLAIFS_M;DLAIFS_M; C:\WINDOWS\System32\DLA\DLAIFS_M.SYS [2005-08-31 86524]
R2 DLAOPIOM;DLAOPIOM; C:\WINDOWS\System32\DLA\DLAOPIOM.SYS [2005-08-31 14684]
R2 DLAPoolM;DLAPoolM; C:\WINDOWS\System32\DLA\DLAPoolM.SYS [2005-08-31 6364]
R2 DLAUDF_M;DLAUDF_M; C:\WINDOWS\System32\DLA\DLAUDF_M.SYS [2005-08-31 87036]
R2 DLAUDFAM;DLAUDFAM; C:\WINDOWS\System32\DLA\DLAUDFAM.SYS [2005-08-31 94332]
R2 DRVNDDM;DRVNDDM; C:\WINDOWS\System32\Drivers\DRVNDDM.SYS [2005-08-12 40544]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\ADIHdAud.sys [2006-02-28 176128]
R3 AEAudioService;AEAudio Service; C:\WINDOWS\system32\drivers\AEAudio.sys [2005-06-07 152960]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2005-12-12 1120352]
R3 ATSWPDRV;AuthenTec TruePrint USB Driver (AES2500); C:\WINDOWS\system32\DRIVERS\ATSwpDrv.sys [2006-03-30 130432]
R3 b57w2k;Broadcom NetLink (TM) Gigabit Ethernet; C:\WINDOWS\system32\DRIVERS\b57xp32.sys [2005-10-26 142720]
R3 BCM43XX;Broadcom 802.11 ovládač sieťového adaptéru; C:\WINDOWS\system32\DRIVERS\bcmwl5.sys [2006-01-19 424320]
R3 BTKRNL;Bluetooth Bus Enumerator; C:\WINDOWS\system32\DRIVERS\btkrnl.sys [2006-01-18 1342570]
R3 GTIPCI21;GTIPCI21; C:\WINDOWS\system32\DRIVERS\gtipci21.sys [2006-02-28 87808]
R3 HBtnKey;HBtnKey; C:\WINDOWS\system32\DRIVERS\cpqbttn.sys [2005-09-19 9344]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2006-03-23 1166972]
R3 IFXTPM;IFXTPM; C:\WINDOWS\system32\DRIVERS\IFXTPM.SYS [2005-10-21 36352]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
R3 MQAC;Message Queuing access control; \??\C:\WINDOWS\system32\drivers\mqac.sys []
R3 RMCAST;Reliable Multicast Protocol driver; \??\C:\WINDOWS\system32\drivers\RMCast.sys []
R3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2008-04-14 79232]
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2006-03-03 192736]
R3 tifm21;tifm21; C:\WINDOWS\system32\drivers\tifm21.sys [2005-11-30 162560]
R3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 usbstor;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S3 Arp1394;1394 ARP Client Protocol; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-14 60800]
S3 ate7w1xc;ate7w1xc; C:\WINDOWS\system32\drivers\ate7w1xc.sys []
S3 btaudio;Bluetooth Audio Device; C:\WINDOWS\system32\drivers\btaudio.sys [2006-01-18 401664]
S3 BTDriver;Bluetooth Virtual Communications Driver; C:\WINDOWS\system32\DRIVERS\btport.sys [2006-01-18 30363]
S3 BTWDNDIS;Bluetooth LAN Access Server; C:\WINDOWS\system32\DRIVERS\btwdndis.sys [2006-01-18 148168]
S3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\WINDOWS\System32\Drivers\btwusb.sys [2006-01-19 57096]
S3 catchme;catchme; \??\C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\catchme.sys []
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 eabusb;eabusb; C:\WINDOWS\system32\DRIVERS\eabusb.sys [2005-09-19 5760]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-14 61824]
S3 Revoflt;Revoflt; C:\WINDOWS\system32\DRIVERS\revoflt.sys [2009-12-30 27064]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 usbaudio;USB Audio Driver (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-14 60032]
S3 usbvideo;USB Video Device (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2008-04-14 121984]
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe [2006-01-18 258103]
R2 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2013-01-01 192512]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2012-12-27 153584]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2005-12-18 73728]
R2 MSMQ;Message Queuing; C:\WINDOWS\system32\mqsvc.exe [2008-04-14 4608]
R2 MSMQTriggers;Message Queuing Triggers; C:\WINDOWS\system32\mqtgsvc.exe [2008-04-14 117248]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2004-08-11 38912]
R2 USBSafelyRemoveService;USB Safely Remove Assistant; C:\Program Files\USB Safely Remove\USBSRService.exe [2010-05-07 242000]
S3 AddFiltr;AddFiltr; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\AddFiltr.exe [2012-12-27 155648]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-01-09 251400]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2012-12-27 126976]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 WmcCds;Windows Media Connect (WMC); c:\program files\windows media connect\mswmccds.exe [2004-08-11 483328]
S3 WmcCdsLs;Windows Media Connect (WMC) Helper; C:\Program Files\Windows Media Connect\mswmcls.exe [2004-08-10 28160]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S4 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-02-15 158856]
-----------------EOF-----------------
tu je pribalený samotný RECYCLER s autorun.inf v archýve.