Stránka 1 z 3

relevantknowledge

Napsal: 02 úno 2013 07:06
od stroupek
Zdravím, už 6 hodin dřepím u pc a snažím se najít problém a vyřešit ho, ale pořád nic. Totiž včera mi při zapnutém prohlížeči (Mozzila Firefox) začala vyskakovat prázdná okna. Narychlo jsem nainstaloval Avast 5 ve zkušební době, stáhnul databázi a projel pc úplným testem. Něco málo našel a hodil jsem to do truhly. Avast poté začal blokovat vyskakování nových prázdných oken, takže místo nich, mi naopak vyskakují varovné hlášky o blokování, což je dost nepříjemné. Náhodou jsem zjistil, že mám v pc nainstalovaný jakýsi "relevantknowledge" a dal ho v nástrojích odinstalovat. Nicméně složka po programu zůstala a nešla smazat. Na nějakém fóru jsem si proto stáhnul Combofix, který ho prý umí smazat. Mimochodem na stránky combofix.cz se nedostanu, protože v ten moment mi avast vychrlí asi 50 zablokování a Firefox se zhroutí. Přesto jsem combofix použil a relevantknowledge byl smazán. Poté jsem použil T-cleaner a složku "Qoobox" vytvořenou Combofixem, jsem natvrdo smazal Unlockerem (ještě dodám, že v koši se pak objevila složka s názvem "dc25" se kterou si ani Unlocker neporadí... Nakonec jsem pc zkontroloval pomocí "Spy-Hunter 4" (bez výsledků), poté "Malwarebytes anti-malware" (opět nic) ...znovu Avast (taky nic) ale problém zůstal stejný...tj. při zapnutém prohlížeči mi vyskakují prázdná okna (pokud je Avast zapnutý, tak "pouze" hlášení o blokaci).

Předem děkuji za jakoukoliv odpověď

Re: relevantknowledge

Napsal: 02 úno 2013 07:08
od stroupek
Run by Libor at 2013-02-02 06:23:15
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 32 GB (43%) free of 76 GB
Total RAM: 1936 MB (70% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 6:23:27, on 2.2.2013
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Alwil Software\Avast5\avastUI.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Intel\iCLS Client\HeciServer.exe
C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Documents and Settings\Libor\Dokumenty\Stažené soubory\RSIT.exe
C:\Program Files\trend micro\Libor.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe"
O4 - HKLM\..\RunOnce: [Malwarebytes Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Programy\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: ubisoft register.lnk = C:\Program Files\Ubi Soft\Register\schedule.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AppleChargerSrv - Unknown owner - C:\WINDOWS\system32\AppleChargerSrv.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe

--
End of file - 5056 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job
C:\WINDOWS\tasks\WGASetup.job

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\Libor\Data aplikací\Mozilla\Firefox\Profiles\cs17gxmd.default

"{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.5.502.146 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_5_502_146.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.52]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.0.4]
"Description"=VLC Multimedia Plugin
"Path"=C:\Programy\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Programy\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll

C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Documents and Settings\Libor\Data aplikací\Mozilla\Firefox\Profiles\cs17gxmd.default\extensions\
{ea614400-e918-4741-9a97-7a972ff7c30b}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23 60568]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2012-01-25 143128]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2012-01-25 181528]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2012-01-25 169752]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2011-12-05 20065384]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-12-03 946352]
"avast5"=C:\Program Files\Alwil Software\Avast5\avastUI.exe [2010-09-07 2838912]
"UnlockerAssistant"=C:\Program Files\Unlocker\UnlockerAssistant.exe []

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Malwarebytes Anti-Malware"=C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2012-12-14 512360]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Programy\DAEMON Tools Lite\DTLite.exe [2012-11-06 3673728]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]

C:\Documents and Settings\Libor\Nabídka Start\Programy\Po spuštění
ubisoft register.lnk - C:\Program Files\Ubi Soft\Register\schedule.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2012-01-16 301568]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Programy\uTorrent.exe"="C:\Programy\uTorrent.exe:*:Enabled:µTorrent"
"C:\Documents and Settings\Libor\Dokumenty\Stažené soubory\uTorrent.exe"="C:\Documents and Settings\Libor\Dokumenty\Stažené soubory\uTorrent.exe:*:Enabled:µTorrent"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======List of files/folders created in the last 1 month======

2013-02-02 06:23:15 ----D---- C:\rsit
2013-02-02 06:23:15 ----D---- C:\Program Files\trend micro
2013-02-02 05:56:52 ----D---- C:\Documents and Settings\Libor\Data aplikací\Malwarebytes
2013-02-02 05:56:41 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2013-02-02 05:56:40 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2013-02-02 05:56:40 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2013-02-02 05:18:53 ----SHD---- C:\Config.Msi
2013-02-02 05:10:14 ----D---- C:\WINDOWS\46B04D534E344388B6EE80FAB66AEF9B.TMP
2013-02-02 05:10:08 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2013-02-02 04:53:48 ----SHD---- C:\RECYCLER
2013-02-02 04:25:07 ----D---- C:\WINDOWS\temp
2013-02-02 03:37:53 ----A---- C:\Boot.bak
2013-02-02 03:37:48 ----RASHD---- C:\cmdcons
2013-02-02 03:36:33 ----A---- C:\WINDOWS\MBR.exe
2013-02-02 03:13:51 ----D---- C:\Documents and Settings\Libor\Data aplikací\Mozilla
2013-02-02 03:13:44 ----D---- C:\Program Files\Mozilla Firefox
2013-02-02 02:11:06 ----D---- C:\Program Files\Common Files\DirectX
2013-02-02 02:08:09 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
2013-02-02 02:08:09 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2013-02-02 02:08:09 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2013-02-02 02:08:08 ----A---- C:\WINDOWS\system32\XAudio2_1.dll
2013-02-02 02:08:08 ----A---- C:\WINDOWS\system32\XAPOFX1_0.dll
2013-02-02 02:08:08 ----A---- C:\WINDOWS\system32\xactengine3_1.dll
2013-02-02 02:08:06 ----A---- C:\WINDOWS\system32\D3DX9_38.dll
2013-02-02 02:08:06 ----A---- C:\WINDOWS\system32\d3dx10_38.dll
2013-02-02 02:08:06 ----A---- C:\WINDOWS\system32\D3DCompiler_38.dll
2013-02-01 23:05:16 ----A---- C:\WINDOWS\system32\XAudio2_0.dll
2013-02-01 23:05:16 ----A---- C:\WINDOWS\system32\xactengine3_0.dll
2013-02-01 23:05:16 ----A---- C:\WINDOWS\system32\X3DAudio1_3.dll
2013-02-01 23:05:16 ----A---- C:\WINDOWS\system32\D3DCompiler_37.dll
2013-02-01 23:05:15 ----A---- C:\WINDOWS\system32\xactengine2_10.dll
2013-02-01 23:05:15 ----A---- C:\WINDOWS\system32\D3DX9_37.dll
2013-02-01 23:05:15 ----A---- C:\WINDOWS\system32\d3dx10_37.dll
2013-02-01 23:05:14 ----A---- C:\WINDOWS\system32\d3dx9_36.dll
2013-02-01 23:05:14 ----A---- C:\WINDOWS\system32\d3dx10_36.dll
2013-02-01 23:05:14 ----A---- C:\WINDOWS\system32\D3DCompiler_36.dll
2013-02-01 23:05:13 ----A---- C:\WINDOWS\system32\xactengine2_9.dll
2013-02-01 23:05:13 ----A---- C:\WINDOWS\system32\d3dx9_35.dll
2013-02-01 23:05:13 ----A---- C:\WINDOWS\system32\d3dx10_35.dll
2013-02-01 23:05:13 ----A---- C:\WINDOWS\system32\D3DCompiler_35.dll
2013-02-01 23:05:12 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
2013-02-01 23:05:12 ----A---- C:\WINDOWS\system32\X3DAudio1_2.dll
2013-02-01 23:05:12 ----A---- C:\WINDOWS\system32\d3dx10_34.dll
2013-02-01 23:05:12 ----A---- C:\WINDOWS\system32\D3DCompiler_34.dll
2013-02-01 23:05:11 ----A---- C:\WINDOWS\system32\d3dx9_34.dll
2013-02-01 23:05:10 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
2013-02-01 23:05:10 ----A---- C:\WINDOWS\system32\d3dx10_33.dll
2013-02-01 23:05:09 ----A---- C:\WINDOWS\system32\D3DCompiler_33.dll
2013-02-01 23:05:08 ----A---- C:\WINDOWS\system32\d3dx9_33.dll
2013-02-01 23:05:07 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
2013-02-01 23:05:07 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
2013-02-01 23:05:07 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2013-02-01 23:05:06 ----A---- C:\WINDOWS\system32\xinput1_2.dll
2013-02-01 23:05:06 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
2013-02-01 23:05:06 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
2013-02-01 23:05:06 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
2013-02-01 23:05:06 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2013-02-01 23:05:05 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2013-02-01 23:05:05 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
2013-02-01 23:05:05 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2013-02-01 23:04:57 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
2013-02-01 23:04:57 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2013-02-01 23:04:56 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2013-02-01 23:04:56 ----A---- C:\WINDOWS\system32\d3dx9_29.dll
2013-02-01 23:04:56 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2013-02-01 23:04:55 ----A---- C:\WINDOWS\system32\xinput9_1_0.dll
2013-02-01 23:04:55 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2013-02-01 23:04:54 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
2013-02-01 23:04:54 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
2013-02-01 23:04:52 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
2013-02-01 05:16:09 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys
2013-02-01 05:16:09 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys
2013-02-01 05:16:09 ----A---- C:\WINDOWS\system32\drivers\aswFsBlk.sys
2013-02-01 05:16:08 ----A---- C:\WINDOWS\system32\drivers\aswTdi.sys
2013-02-01 05:16:08 ----A---- C:\WINDOWS\system32\drivers\aswRdr.sys
2013-02-01 05:16:07 ----A---- C:\WINDOWS\system32\drivers\aswmon2.sys
2013-02-01 05:16:07 ----A---- C:\WINDOWS\system32\drivers\aswmon.sys
2013-02-01 05:16:07 ----A---- C:\WINDOWS\system32\drivers\aavmker4.sys
2013-02-01 05:15:51 ----A---- C:\WINDOWS\system32\aswBoot.exe
2013-02-01 05:15:51 ----A---- C:\WINDOWS\avastSS.scr
2013-02-01 04:54:59 ----D---- C:\Program Files\Alwil Software
2013-02-01 04:54:59 ----D---- C:\Documents and Settings\All Users\Data aplikací\Alwil Software
2013-02-01 03:19:05 ----D---- C:\WINDOWS\system32\appmgmt
2013-01-31 23:09:57 ----A---- C:\WINDOWS\system32\drivers\Oreans.sys
2013-01-31 21:49:01 ----D---- C:\Program Files\Common Files\Steam
2013-01-30 11:22:59 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
2013-01-30 11:22:59 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
2013-01-30 11:22:59 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
2013-01-30 11:22:59 ----A---- C:\WINDOWS\system32\D3DX9_40.dll
2013-01-30 11:22:58 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2013-01-30 11:22:58 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2013-01-30 11:22:58 ----A---- C:\WINDOWS\system32\X3DAudio1_4.dll
2013-01-30 11:22:58 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2013-01-30 11:22:55 ----A---- C:\WINDOWS\system32\xinput1_3.dll
2013-01-30 00:20:38 ----A---- C:\WINDOWS\MP32WAV.INI
2013-01-29 22:57:29 ----D---- C:\Program Files\Common Files\Adobe
2013-01-29 21:25:52 ----A---- C:\WINDOWS\system32\msvcr70.dll
2013-01-29 21:25:52 ----A---- C:\WINDOWS\system32\msvcp70.dll
2013-01-29 21:25:51 ----A---- C:\WINDOWS\system32\mfc70.dll
2013-01-29 21:25:51 ----A---- C:\WINDOWS\system32\lame_enc.dll
2013-01-28 22:41:46 ----D---- C:\Documents and Settings\Libor\Data aplikací\uTorrent
2013-01-28 16:07:46 ----A---- C:\WINDOWS\system32\xmltok.dll
2013-01-28 16:07:46 ----A---- C:\WINDOWS\system32\xmlparse.dll
2013-01-28 16:07:46 ----A---- C:\WINDOWS\system32\xmlinst.exe
2013-01-28 16:07:46 ----A---- C:\WINDOWS\system32\VB5DB.DLL
2013-01-28 16:07:46 ----A---- C:\WINDOWS\system32\msxml3a.dll
2013-01-28 06:06:22 ----D---- C:\Documents and Settings\Libor\Data aplikací\vlc
2013-01-24 18:22:59 ----A---- C:\WINDOWS\system32\CmdLineExt.dll
2013-01-24 03:01:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2345886$
2013-01-24 03:01:14 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2013-01-23 03:26:08 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2013-01-23 03:26:05 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2013-01-23 03:26:02 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2013-01-23 03:24:37 ----HDC---- C:\WINDOWS\$NtUninstallKB2467659$
2013-01-23 03:24:21 ----D---- C:\WINDOWS\ie8updates
2013-01-23 03:24:05 ----D---- C:\WINDOWS\WBEM
2013-01-23 03:23:32 ----HDC---- C:\WINDOWS\ie8
2013-01-23 03:21:56 ----A---- C:\WINDOWS\system32\MRT.exe
2013-01-23 03:19:17 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2013-01-23 03:19:10 ----HDC---- C:\WINDOWS\$NtUninstallKB2387149$
2013-01-23 03:19:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2712808$
2013-01-23 03:18:59 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2013-01-23 03:17:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2479943$
2013-01-23 03:17:16 ----HDC---- C:\WINDOWS\$NtUninstallKB2659262$
2013-01-23 03:17:10 ----HDC---- C:\WINDOWS\$NtUninstallKB2564958$
2013-01-23 03:17:07 ----HDC---- C:\WINDOWS\$NtUninstallKB2478971$
2013-01-23 03:17:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2758857$
2013-01-23 03:16:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893-v2$
2013-01-23 03:16:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2536276-v2$
2013-01-23 03:16:31 ----HDC---- C:\WINDOWS\$NtUninstallKB2646524$
2013-01-23 03:16:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2779030$
2013-01-23 03:16:23 ----HDC---- C:\WINDOWS\$NtUninstallKB2585542$
2013-01-23 03:16:11 ----HDC---- C:\WINDOWS\$NtUninstallKB2631813$
2013-01-23 03:16:05 ----HDC---- C:\WINDOWS\$NtUninstallKB2296011$
2013-01-23 03:16:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2691442$
2013-01-23 03:15:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2013-01-23 03:15:50 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2013-01-23 03:15:44 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2013-01-23 03:15:39 ----HDC---- C:\WINDOWS\$NtUninstallKB2779562$
2013-01-23 03:15:38 ----D---- C:\WINDOWS\system32\KB905474
2013-01-23 03:15:16 ----HDC---- C:\WINDOWS\$NtUninstallKB2378111_WM9$
2013-01-23 03:15:12 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2013-01-23 03:15:07 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2013-01-23 03:15:02 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2013-01-23 03:14:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2013-01-23 03:14:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2655992$
2013-01-23 03:13:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2724197$
2013-01-23 03:13:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2013-01-23 03:13:15 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2013-01-23 03:13:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2481109$
2013-01-23 03:13:03 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2013-01-23 03:12:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2485663$
2013-01-23 03:12:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2598479$
2013-01-23 03:12:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2013-01-23 03:12:48 ----HDC---- C:\WINDOWS\$NtUninstallKB2736233$
2013-01-23 03:12:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2799329$
2013-01-23 03:12:35 ----HDC---- C:\WINDOWS\$NtUninstallKB2686509$
2013-01-23 03:12:31 ----HDC---- C:\WINDOWS\$NtUninstallKB982132$
2013-01-23 03:12:27 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2013-01-23 03:12:22 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2013-01-23 03:12:12 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2013-01-23 03:12:09 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2013-01-23 03:12:05 ----HDC---- C:\WINDOWS\$NtUninstallKB2507938$
2013-01-23 03:12:01 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2013-01-23 03:11:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2510581$
2013-01-23 03:11:54 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2013-01-23 03:11:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2476490$
2013-01-23 03:10:06 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2013-01-23 03:10:00 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2013-01-23 03:09:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$
2013-01-23 03:09:51 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2013-01-23 03:09:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2483185$
2013-01-23 03:09:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2624667$
2013-01-23 03:08:04 ----HDC---- C:\WINDOWS\$NtUninstallKB979687$
2013-01-23 03:06:37 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2013-01-23 03:06:34 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2013-01-23 03:06:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2719985$
2013-01-23 03:06:23 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2013-01-23 03:06:16 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2013-01-23 03:06:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2592799$
2013-01-23 03:06:05 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2013-01-23 03:05:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2753842-v2$
2013-01-23 03:05:54 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2013-01-23 03:05:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2770660$
2013-01-23 03:05:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2761465$
2013-01-23 03:05:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2535512$
2013-01-23 03:05:29 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2013-01-23 03:05:25 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2013-01-23 03:05:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2570947$
2013-01-23 03:04:51 ----HDC---- C:\WINDOWS\$NtUninstallKB981322$
2013-01-23 03:04:47 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2013-01-23 03:04:44 ----HDC---- C:\WINDOWS\$NtUninstallKB978695_WM9$
2013-01-23 03:04:41 ----HDC---- C:\WINDOWS\$NtUninstallKB2603381$
2013-01-23 03:04:37 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2013-01-23 03:04:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2757638$
2013-01-23 03:04:28 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2013-01-23 03:04:23 ----HDC---- C:\WINDOWS\$NtUninstallKB2419632$
2013-01-23 03:04:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2508429$
2013-01-23 03:04:16 ----HDC---- C:\WINDOWS\$NtUninstallKB2653956$
2013-01-23 03:04:12 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2013-01-23 03:04:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2749655$
2013-01-23 03:04:02 ----HDC---- C:\WINDOWS\$NtUninstallKB971029$
2013-01-23 03:03:57 ----HDC---- C:\WINDOWS\$NtUninstallKB2506212$
2013-01-23 03:03:53 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2013-01-23 03:03:48 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2013-01-23 03:03:39 ----HDC---- C:\WINDOWS\$NtUninstallKB2698365$
2013-01-23 03:03:36 ----HDC---- C:\WINDOWS\$NtUninstallKB2619339$
2013-01-23 03:03:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2705219-v2$
2013-01-23 03:03:29 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2013-01-23 03:03:26 ----HDC---- C:\WINDOWS\$NtUninstallKB2727528$
2013-01-23 03:03:23 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2013-01-23 03:03:19 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2013-01-23 03:03:14 ----HDC---- C:\WINDOWS\$NtUninstallKB981997$
2013-01-23 03:03:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2723135-v2$
2013-01-23 03:03:06 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2013-01-23 03:03:02 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2013-01-23 03:03:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2618451$
2013-01-23 03:01:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2661254-v2$
2013-01-23 03:01:17 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2013-01-23 03:01:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2509553$
2013-01-23 03:01:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2676562$
2013-01-23 03:01:02 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2013-01-23 03:00:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2478960$
2013-01-23 03:00:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2620712$
2013-01-23 03:00:53 ----HDC---- C:\WINDOWS\$NtUninstallKB2584146$
2013-01-23 03:00:49 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2013-01-23 03:00:41 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2013-01-23 00:44:31 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2013-01-22 22:40:57 ----D---- C:\Documents and Settings\Libor\Data aplikací\Mount&Blade Warband
2013-01-22 22:39:54 ----A---- C:\WINDOWS\system32\D3DX9_42.dll
2013-01-22 22:39:54 ----A---- C:\WINDOWS\system32\D3DCompiler_42.dll
2013-01-22 22:39:53 ----A---- C:\WINDOWS\system32\D3DX9_41.dll
2013-01-22 22:39:50 ----D---- C:\WINDOWS\Logs
2013-01-22 21:14:17 ----D---- C:\Documents and Settings\Libor\Data aplikací\Adobe
2013-01-22 21:13:34 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2013-01-22 21:12:26 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2013-01-22 20:31:57 ----D---- C:\Documents and Settings\Libor\Data aplikací\TuneUp Software
2013-01-22 20:31:32 ----D---- C:\Documents and Settings\All Users\Data aplikací\TuneUp Software
2013-01-22 20:31:24 ----SHD---- C:\Documents and Settings\All Users\Data aplikací\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}
2013-01-22 20:31:24 ----HD---- C:\Documents and Settings\All Users\Data aplikací\Common Files
2013-01-22 20:29:58 ----D---- C:\Documents and Settings\Libor\Data aplikací\WinRAR
2013-01-22 20:29:28 ----A---- C:\WINDOWS\system32\drivers\dtsoftbus01.sys
2013-01-22 20:29:19 ----D---- C:\Documents and Settings\Libor\Data aplikací\DAEMON Tools Lite
2013-01-22 20:29:15 ----D---- C:\Documents and Settings\Libor\Data aplikací\OpenCandy
2013-01-22 20:28:31 ----D---- C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Lite
2013-01-22 20:23:17 ----D---- C:\Hry
2013-01-22 20:23:10 ----D---- C:\Programy
2013-01-22 20:22:45 ----N---- C:\WINDOWS\system32\browserchoice.exe
2013-01-22 20:20:44 ----N---- C:\WINDOWS\system32\drivers\bthport.sys
2013-01-22 20:12:11 ----D---- C:\Documents and Settings\Libor\Data aplikací\Macromedia
2013-01-22 18:20:57 ----A---- C:\WINDOWS\system32\h323log.txt
2013-01-22 18:18:18 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2013-01-22 18:16:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2544521$
2013-01-22 18:16:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2393802$
2013-01-22 18:16:48 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2013-01-22 18:16:45 ----HDC---- C:\WINDOWS\$NtUninstallKB2566454$
2013-01-22 18:16:43 ----HDC---- C:\WINDOWS\$NtUninstallKB2661637$
2013-01-22 18:16:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2013-01-22 18:16:36 ----HDC---- C:\WINDOWS\$NtUninstallKB2360937$
2013-01-22 18:13:51 ----N---- C:\WINDOWS\system32\iacenc.dll
2013-01-22 18:07:44 ----D---- C:\WINDOWS\system32\PreInstall
2013-01-22 18:07:42 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2013-01-22 18:07:42 ----HD---- C:\WINDOWS\$hf_mig$
2013-01-22 18:03:44 ----A---- C:\WINDOWS\system32\drivers\audstub.sys
2013-01-22 18:03:18 ----A---- C:\WINDOWS\system32\drivers\redbook.sys
2013-01-22 18:03:13 ----D---- C:\WINDOWS\system32\Lang
2013-01-22 18:02:54 ----A---- C:\WINDOWS\system32\usbui.dll
2013-01-22 18:02:17 ----A---- C:\WINDOWS\imsins.BAK
2013-01-22 18:02:15 ----SHD---- C:\WINDOWS\Installer
2013-01-22 18:02:15 ----D---- C:\Program Files\Common Files\ODBC
2013-01-22 18:02:15 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2013-01-22 18:02:15 ----A---- C:\WINDOWS\ODBCINST.INI
2013-01-22 18:02:12 ----RD---- C:\Program Files
2013-01-22 18:02:12 ----D---- C:\Program Files\Common Files\SpeechEngines
2013-01-22 18:02:12 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-01-22 18:02:12 ----D---- C:\Program Files\Common Files
2013-01-22 18:02:08 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2013-01-22 18:02:08 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2013-01-22 18:02:08 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2013-01-22 18:02:06 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2013-01-22 18:02:06 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2013-01-22 18:02:06 ----RA---- C:\WINDOWS\system32\kbdur.dll
2013-01-22 18:02:06 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2013-01-22 18:02:06 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2013-01-22 18:02:06 ----RA---- C:\WINDOWS\system32\kbdru.dll
2013-01-22 18:02:06 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2013-01-22 18:02:06 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2013-01-22 18:02:06 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2013-01-22 18:02:06 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2013-01-22 18:02:06 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2013-01-22 18:02:06 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2013-01-22 18:02:05 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2013-01-22 18:02:05 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2013-01-22 18:02:05 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2013-01-22 18:02:05 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2013-01-22 18:02:05 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2013-01-22 18:02:05 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2013-01-22 18:02:05 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2013-01-22 18:02:04 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2013-01-22 18:02:04 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2013-01-22 18:02:04 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2013-01-22 18:02:04 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2013-01-22 18:02:04 ----RA---- C:\WINDOWS\system32\kbdest.dll
2013-01-22 18:02:01 ----RA---- C:\WINDOWS\system32\kbdycl.dll
2013-01-22 18:02:01 ----RA---- C:\WINDOWS\system32\kbdsl1.dll
2013-01-22 18:02:01 ----RA---- C:\WINDOWS\system32\kbdsl.dll
2013-01-22 18:02:01 ----RA---- C:\WINDOWS\system32\kbdro.dll
2013-01-22 18:02:01 ----RA---- C:\WINDOWS\system32\kbdpl1.dll
2013-01-22 18:02:01 ----RA---- C:\WINDOWS\system32\kbdpl.dll
2013-01-22 18:02:01 ----RA---- C:\WINDOWS\system32\kbdhu1.dll
2013-01-22 18:02:01 ----RA---- C:\WINDOWS\system32\kbdhu.dll
2013-01-22 18:02:01 ----RA---- C:\WINDOWS\system32\kbdcr.dll
2013-01-22 18:02:01 ----RA---- C:\WINDOWS\system32\KBDAL.DLL
2013-01-22 18:01:59 ----A---- C:\WINDOWS\system32\spxcoins.dll
2013-01-22 18:01:59 ----A---- C:\WINDOWS\system32\irclass.dll
2013-01-22 18:01:59 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2013-01-22 18:01:59 ----A---- C:\WINDOWS\system32\dgsetup.dll
2013-01-22 18:01:59 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2013-01-22 18:01:57 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2013-01-22 18:01:57 ----A---- C:\WINDOWS\TASKMAN.EXE
2013-01-22 18:01:57 ----A---- C:\WINDOWS\system32\drivers\irenum.sys
2013-01-22 18:01:57 ----A---- C:\WINDOWS\system32\batt.dll
2013-01-22 18:01:57 ----A---- C:\WINDOWS\NOTEPAD.EXE
2013-01-22 18:01:56 ----A---- C:\WINDOWS\system32\storprop.dll
2013-01-22 18:01:50 ----ASH---- C:\Documents and Settings\All Users\Data aplikací\desktop.ini
2013-01-22 18:01:49 ----RA---- C:\WINDOWS\SET8.tmp
2013-01-22 18:01:47 ----RA---- C:\WINDOWS\SET4.tmp
2013-01-22 18:01:45 ----RA---- C:\WINDOWS\SET3.tmp
2013-01-22 18:01:41 ----D---- C:\WINDOWS\system32\CatRoot2
2013-01-22 18:01:41 ----D---- C:\WINDOWS\system32\CatRoot
2013-01-22 18:01:36 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2013-01-22 18:01:21 ----A---- C:\WINDOWS\setuplog.txt
2013-01-22 18:01:18 ----SHD---- C:\System Volume Information
2013-01-22 18:01:18 ----D---- C:\Documents and Settings
2013-01-22 18:01:17 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2013-01-22 18:00:17 ----RASH---- C:\boot.ini
2013-01-22 17:57:43 ----RSHDC---- C:\WINDOWS\system32\dllcache
2013-01-22 17:57:43 ----RSD---- C:\WINDOWS\Fonts
2013-01-22 17:57:43 ----RD---- C:\WINDOWS\Web
2013-01-22 17:57:43 ----HD---- C:\WINDOWS\inf
2013-01-22 17:57:43 ----D---- C:\WINDOWS\WinSxS
2013-01-22 17:57:43 ----D---- C:\WINDOWS\twain_32
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\wins
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\wbem
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\usmt
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\spool
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\ShellExt
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\Setup
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\ras
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\oobe
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\npp
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\mui
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\inetsrv
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\IME
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\icsxml
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\ias
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\export
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\drivers\etc
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\drivers\disdn
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\drivers
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\dhcp
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\cs-cz
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\cs
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\config
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\3com_dmi
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\3076
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\2052
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\1054
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\1042
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\1041
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\1037
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\1033
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\1031
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\1029
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\1028
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\1025
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system
2013-01-22 17:57:43 ----D---- C:\WINDOWS\security
2013-01-22 17:57:43 ----D---- C:\WINDOWS\Resources
2013-01-22 17:57:43 ----D---- C:\WINDOWS\repair
2013-01-22 17:57:43 ----D---- C:\WINDOWS\Provisioning
2013-01-22 17:57:43 ----D---- C:\WINDOWS\pchealth
2013-01-22 17:57:43 ----D---- C:\WINDOWS\PeerNet
2013-01-22 17:57:43 ----D---- C:\WINDOWS\NLDRV
2013-01-22 17:57:43 ----D---- C:\WINDOWS\Network Diagnostic
2013-01-22 17:57:43 ----D---- C:\WINDOWS\mui
2013-01-22 17:57:43 ----D---- C:\WINDOWS\msapps
2013-01-22 17:57:43 ----D---- C:\WINDOWS\msagent
2013-01-22 17:57:43 ----D---- C:\WINDOWS\Media
2013-01-22 17:57:43 ----D---- C:\WINDOWS\L2Schemas
2013-01-22 17:57:43 ----D---- C:\WINDOWS\java
2013-01-22 17:57:43 ----D---- C:\WINDOWS\ime
2013-01-22 17:57:43 ----D---- C:\WINDOWS\Help
2013-01-22 17:57:43 ----D---- C:\WINDOWS\ehome
2013-01-22 17:57:43 ----D---- C:\WINDOWS\Driver Cache
2013-01-22 17:57:43 ----D---- C:\WINDOWS\Debug
2013-01-22 17:57:43 ----D---- C:\WINDOWS\Cursors
2013-01-22 17:57:43 ----D---- C:\WINDOWS\Connection Wizard
2013-01-22 17:57:43 ----D---- C:\WINDOWS\Config
2013-01-22 17:57:43 ----D---- C:\WINDOWS\AppPatch
2013-01-22 17:57:43 ----D---- C:\WINDOWS\addins
2013-01-22 17:57:43 ----D---- C:\WINDOWS
2013-01-22 17:57:43 ----ASH---- C:\pagefile.sys
2013-01-22 17:49:31 ----A---- C:\WINDOWS\system32\drivers\IntelMEFWVer.dll
2013-01-22 17:49:14 ----D---- C:\Program Files\Common Files\postureAgent
2013-01-22 17:49:13 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2013-01-22 17:49:11 ----D---- C:\Program Files\GIGABYTE
2013-01-22 17:49:11 ----A---- C:\WINDOWS\system32\drivers\AppleCharger.sys
2013-01-22 17:49:11 ----A---- C:\WINDOWS\system32\AppleChargerSrv.exe
2013-01-22 17:49:09 ----A---- C:\WINDOWS\system32\drivers\HECI.sys
2013-01-22 17:49:05 ----A---- C:\WINDOWS\system32\log.txt
2013-01-22 17:49:04 ----D---- C:\Documents and Settings\All Users\Data aplikací\Intel
2013-01-22 17:48:58 ----A---- C:\WINDOWS\system32\drivers\Rtenicxp.sys
2013-01-22 17:48:54 ----A---- C:\WINDOWS\system32\RtNicProp32.dll
2013-01-22 17:48:52 ----A---- C:\WINDOWS\system32\RTNUninst32.dll
2013-01-22 17:48:42 ----D---- C:\Documents and Settings\Libor\Data aplikací\InstallShield
2013-01-22 17:48:41 ----A---- C:\WINDOWS\system32\drivers\splitter.sys
2013-01-22 17:48:40 ----A---- C:\WINDOWS\system32\drivers\wdmaud.sys
2013-01-22 17:48:39 ----A---- C:\WINDOWS\system32\drivers\DMusic.sys
2013-01-22 17:48:38 ----A---- C:\WINDOWS\system32\drivers\swmidi.sys
2013-01-22 17:48:37 ----A---- C:\WINDOWS\system32\drivers\aec.sys
2013-01-22 17:48:34 ----A---- C:\WINDOWS\system32\drivers\kmixer.sys
2013-01-22 17:48:34 ----A---- C:\WINDOWS\system32\drivers\drmkaud.sys
2013-01-22 17:48:32 ----A---- C:\WINDOWS\system32\drivers\sysaudio.sys
2013-01-22 17:48:31 ----A---- C:\WINDOWS\system32\drivers\MSKSSRV.sys
2013-01-22 17:48:30 ----A---- C:\WINDOWS\system32\drivers\MSPQM.sys
2013-01-22 17:48:29 ----A---- C:\WINDOWS\system32\drivers\MSPCLOCK.sys
2013-01-22 17:48:03 ----D---- C:\WINDOWS\system32\RTCOM
2013-01-22 17:48:00 ----A---- C:\WINDOWS\system32\ksuser.dll
2013-01-22 17:48:00 ----A---- C:\WINDOWS\system32\drivers\portcls.sys
2013-01-22 17:47:59 ----A---- C:\WINDOWS\system32\drivers\drmk.sys
2013-01-22 17:47:53 ----A---- C:\WINDOWS\vncutil.exe
2013-01-22 17:47:53 ----A---- C:\WINDOWS\SOUNDMAN.EXE
2013-01-22 17:47:53 ----A---- C:\WINDOWS\SkyTel.exe
2013-01-22 17:47:52 ----A---- C:\WINDOWS\RtlUpd.exe
2013-01-22 17:47:51 ----A---- C:\WINDOWS\system32\drivers\RtkHDAud.sys
2013-01-22 17:47:50 ----A---- C:\WINDOWS\system32\RtkCoLDRXP.dll
2013-01-22 17:47:50 ----A---- C:\WINDOWS\system32\RtkCoInstIIXP.dll
2013-01-22 17:47:50 ----A---- C:\WINDOWS\RtkAudioService.exe
2013-01-22 17:47:48 ----A---- C:\WINDOWS\RTLCPL.EXE
2013-01-22 17:47:43 ----A---- C:\WINDOWS\system32\drivers\RTAIODAT.DAT
2013-01-22 17:47:43 ----A---- C:\WINDOWS\RTHDCPL.EXE
2013-01-22 17:47:42 ----A---- C:\WINDOWS\system32\drivers\Monfilt.sys
2013-01-22 17:47:42 ----A---- C:\WINDOWS\MicCal.exe
2013-01-22 17:47:37 ----A---- C:\WINDOWS\ALCMTR.EXE
2013-01-22 17:47:36 ----A---- C:\WINDOWS\ALCWZRD.EXE
2013-01-22 17:47:35 ----D---- C:\Program Files\Realtek
2013-01-22 17:47:35 ----A---- C:\WINDOWS\system32\drivers\Ambfilt.sys
2013-01-22 17:47:34 ----HD---- C:\Program Files\InstallShield Installation Information
2013-01-22 17:47:29 ----R---- C:\WINDOWS\RtlExUpd.dll
2013-01-22 17:47:26 ----D---- C:\Program Files\Common Files\InstallShield
2013-01-22 17:47:22 ----RA---- C:\WINDOWS\system32\difxapi.dll
2013-01-22 17:47:13 ----RA---- C:\WINDOWS\system32\igfxCoIn_v5398.dll
2013-01-22 17:47:12 ----RA---- C:\WINDOWS\system32\igfxext.exe
2013-01-22 17:47:12 ----RA---- C:\WINDOWS\system32\igfxexps.dll
2013-01-22 17:47:12 ----RA---- C:\WINDOWS\system32\IGFXDEVLib.dll
2013-01-22 17:47:12 ----RA---- C:\WINDOWS\system32\ig4icd32.dll
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\igxprd32.dll
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\igxpgd32.dll
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\igxpdx32.dll
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\igxpdv32.dll
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\igfxtray.exe
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\igfxsrvc.exe
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\igfxsrvc.dll
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\igfxress.dll
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\igfxpph.dll
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\igfxpers.exe
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\igfxdo.dll
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\igfxdev.dll
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\hkcmd.exe
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\hccutils.dll
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\GfxUI.exe
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\gfxSrvc.dll
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\drivers\igxpmp32.sys
2013-01-22 17:46:21 ----DC---- C:\WINDOWS\system32\DRVSTORE
2013-01-22 17:46:21 ----D---- C:\WINDOWS\system32\ReinstallBackups
2013-01-22 17:46:20 ----RA---- C:\WINDOWS\system32\CSVer.dll
2013-01-22 17:46:20 ----D---- C:\Program Files\Intel
2013-01-22 17:46:16 ----D---- C:\Intel
2013-01-22 17:45:43 ----D---- C:\WINDOWS\system32\XPSViewer
2013-01-22 17:45:41 ----D---- C:\Program Files\MSBuild
2013-01-22 17:45:40 ----D---- C:\WINDOWS\system32\en-US
2013-01-22 17:45:37 ----D---- C:\Program Files\Reference Assemblies
2013-01-22 17:45:22 ----N---- C:\WINDOWS\system32\spmsg.dll
2013-01-22 17:45:21 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2013-01-22 17:45:19 ----N---- C:\WINDOWS\system32\prntvpt.dll
2013-01-22 17:45:18 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2013-01-22 17:45:18 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2013-01-22 17:45:18 ----D---- C:\9ded52f49cd2c2f68a252b17d424
2013-01-22 17:45:01 ----RSD---- C:\WINDOWS\assembly
2013-01-22 17:44:51 ----D---- C:\WINDOWS\Microsoft.NET
2013-01-22 17:40:24 ----RA---- C:\WINDOWS\GSetup.exe
2013-01-22 17:40:24 ----A---- C:\WINDOWS\GSetup.ini
2013-01-22 17:35:26 ----D---- C:\Documents and Settings\Libor\Data aplikací\Identities
2013-01-22 17:35:25 ----HD---- C:\Program Files\Uninstall Information
2013-01-22 17:35:21 ----SD---- C:\Documents and Settings\Libor\Data aplikací\Microsoft
2013-01-22 17:35:21 ----ASH---- C:\Documents and Settings\Libor\Data aplikací\desktop.ini
2013-01-22 17:33:32 ----D---- C:\WINDOWS\SoftwareDistribution
2013-01-22 17:33:31 ----SD---- C:\WINDOWS\system32\Microsoft
2013-01-22 17:33:31 ----D---- C:\WINDOWS\Prefetch
2013-01-22 17:33:30 ----A---- C:\WINDOWS\SchedLgU.Txt
2013-01-22 17:25:34 ----AS---- C:\WINDOWS\bootstat.dat
2013-01-22 17:24:27 ----D---- C:\WINDOWS\system32\xircom
2013-01-22 17:24:27 ----D---- C:\Program Files\xerox
2013-01-22 17:24:27 ----D---- C:\Program Files\microsoft frontpage
2013-01-22 17:24:18 ----RASH---- C:\MSDOS.SYS
2013-01-22 17:24:18 ----RASH---- C:\IO.SYS
2013-01-22 17:24:18 ----A---- C:\WINDOWS\control.ini
2013-01-22 17:24:18 ----A---- C:\CONFIG.SYS
2013-01-22 17:24:12 ----A---- C:\WINDOWS\OEWABLog.txt
2013-01-22 17:24:09 ----A---- C:\WINDOWS\system32\mapi32.dll
2013-01-22 17:23:40 ----SD---- C:\WINDOWS\Downloaded Program Files
2013-01-22 17:23:40 ----RD---- C:\WINDOWS\Offline Web Pages
2013-01-22 17:23:34 ----HD---- C:\Program Files\WindowsUpdate
2013-01-22 17:23:32 ----D---- C:\Program Files\Online Services
2013-01-22 17:23:22 ----D---- C:\WINDOWS\system32\DirectX
2013-01-22 17:23:18 ----A---- C:\WINDOWS\system32\atrace.dll
2013-01-22 17:23:17 ----A---- C:\WINDOWS\system32\desktop.ini
2013-01-22 17:23:17 ----A---- C:\WINDOWS\desktop.ini
2013-01-22 17:23:12 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2013-01-22 17:23:11 ----A---- C:\WINDOWS\system32\acctres.dll
2013-01-22 17:23:10 ----D---- C:\Program Files\Common Files\Services
2013-01-22 17:23:09 ----SD---- C:\WINDOWS\Tasks
2013-01-22 17:23:09 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2013-01-22 17:23:08 ----D---- C:\Program Files\Common Files\MSSoap
2013-01-22 17:23:06 ----D---- C:\WINDOWS\srchasst
2013-01-22 17:23:05 ----D---- C:\WINDOWS\system32\Macromed
2013-01-22 17:23:03 ----A---- C:\WINDOWS\system32\wuweb.dll
2013-01-22 17:23:03 ----A---- C:\WINDOWS\system32\wups.dll
2013-01-22 17:23:03 ----A---- C:\WINDOWS\system32\wucltui.dll
2013-01-22 17:23:03 ----A---- C:\WINDOWS\system32\wuauserv.dll
2013-01-22 17:23:03 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2013-01-22 17:23:03 ----A---- C:\WINDOWS\system32\wuaueng.dll
2013-01-22 17:23:03 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2013-01-22 17:23:03 ----A---- C:\WINDOWS\system32\wuauclt.exe
2013-01-22 17:23:03 ----A---- C:\WINDOWS\system32\wuapi.dll
2013-01-22 17:23:03 ----A---- C:\WINDOWS\system32\bitsprx4.dll
2013-01-22 17:23:03 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2013-01-22 17:23:03 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2013-01-22 17:23:02 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2013-01-22 17:23:02 ----A---- C:\WINDOWS\system32\qmgr.dll
2013-01-22 17:23:00 ----D---- C:\Program Files\Movie Maker
2013-01-22 17:22:49 ----A---- C:\WINDOWS\system32\safrslv.dll
2013-01-22 17:22:49 ----A---- C:\WINDOWS\system32\safrdm.dll
2013-01-22 17:22:49 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2013-01-22 17:22:49 ----A---- C:\WINDOWS\system32\racpldlg.dll
2013-01-22 17:22:47 ----A---- C:\WINDOWS\system32\fltMc.exe
2013-01-22 17:22:47 ----A---- C:\WINDOWS\system32\fltlib.dll
2013-01-22 17:22:47 ----A---- C:\WINDOWS\system32\drivers\fltMgr.sys
2013-01-22 17:22:46 ----D---- C:\WINDOWS\system32\Restore
2013-01-22 17:22:46 ----A---- C:\WINDOWS\system32\srsvc.dll
2013-01-22 17:22:46 ----A---- C:\WINDOWS\system32\srrstr.dll
2013-01-22 17:22:46 ----A---- C:\WINDOWS\system32\srclient.dll
2013-01-22 17:22:46 ----A---- C:\WINDOWS\system32\mnmdd.dll
2013-01-22 17:22:46 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2013-01-22 17:22:46 ----A---- C:\WINDOWS\system32\ils.dll
2013-01-22 17:22:46 ----A---- C:\WINDOWS\system32\drivers\sr.sys
2013-01-22 17:22:45 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2013-01-22 17:22:45 ----A---- C:\WINDOWS\system32\msconf.dll
2013-01-22 17:22:45 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2013-01-22 17:22:43 ----D---- C:\Program Files\NetMeeting
2013-01-22 17:22:43 ----A---- C:\WINDOWS\system32\msoert2.dll
2013-01-22 17:22:43 ----A---- C:\WINDOWS\system32\msoeacct.dll
2013-01-22 17:22:43 ----A---- C:\WINDOWS\system32\inetres.dll
2013-01-22 17:22:42 ----A---- C:\WINDOWS\system32\inetcomm.dll
2013-01-22 17:22:41 ----D---- C:\Program Files\Outlook Express
2013-01-22 17:22:41 ----A---- C:\WINDOWS\system32\schedsvc.dll
2013-01-22 17:22:41 ----A---- C:\WINDOWS\system32\mstinit.exe
2013-01-22 17:22:41 ----A---- C:\WINDOWS\system32\mstask.dll
2013-01-22 17:22:41 ----A---- C:\WINDOWS\system32\isign32.dll
2013-01-22 17:22:41 ----A---- C:\WINDOWS\system32\inetcfg.dll
2013-01-22 17:22:41 ----A---- C:\WINDOWS\system32\icwphbk.dll
2013-01-22 17:22:41 ----A---- C:\WINDOWS\system32\icwdial.dll
2013-01-22 17:22:37 ----D---- C:\Program Files\Common Files\System
2013-01-22 17:22:36 ----D---- C:\Program Files\Internet Explorer
2013-01-22 17:22:20 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2013-01-22 17:22:14 ----D---- C:\Program Files\ComPlus Applications
2013-01-22 17:22:13 ----A---- C:\WINDOWS\vbaddin.ini
2013-01-22 17:22:13 ----A---- C:\WINDOWS\vb.ini
2013-01-22 17:22:09 ----D---- C:\WINDOWS\Registration
2013-01-22 17:22:04 ----D---- C:\Program Files\Windows Media Player
2013-01-22 17:22:00 ----D---- C:\Program Files\Messenger
2013-01-22 17:21:58 ----D---- C:\Program Files\MSN Gaming Zone
2013-01-22 17:21:58 ----A---- C:\WINDOWS\system32\write.exe
2013-01-22 17:21:53 ----A---- C:\WINDOWS\system32\sndvol32.exe
2013-01-22 17:21:52 ----A---- C:\WINDOWS\system32\winchat.exe
2013-01-22 17:21:52 ----A---- C:\WINDOWS\system32\hticons.dll
2013-01-22 17:21:52 ----A---- C:\WINDOWS\system32\avwav.dll
2013-01-22 17:21:52 ----A---- C:\WINDOWS\system32\avtapi.dll
2013-01-22 17:21:52 ----A---- C:\WINDOWS\system32\avmeter.dll
2013-01-22 17:21:48 ----A---- C:\WINDOWS\system32\charmap.exe
2013-01-22 17:21:48 ----A---- C:\WINDOWS\system32\getuname.dll
2013-01-22 17:21:48 ----A---- C:\WINDOWS\system32\calc.exe
2013-01-22 17:21:47 ----A---- C:\WINDOWS\system32\winmine.exe
2013-01-22 17:21:47 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2013-01-22 17:21:47 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2013-01-22 17:21:47 ----A---- C:\WINDOWS\system32\tslabels.ini
2013-01-22 17:21:47 ----A---- C:\WINDOWS\system32\tskill.exe
2013-01-22 17:21:47 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2013-01-22 17:21:47 ----A---- C:\WINDOWS\system32\tscon.exe
2013-01-22 17:21:47 ----A---- C:\WINDOWS\system32\sol.exe
2013-01-22 17:21:47 ----A---- C:\WINDOWS\system32\shadow.exe
2013-01-22 17:21:47 ----A---- C:\WINDOWS\system32\reset.exe
2013-01-22 17:21:47 ----A---- C:\WINDOWS\system32\mshearts.exe
2013-01-22 17:21:47 ----A---- C:\WINDOWS\system32\freecell.exe
2013-01-22 17:21:46 ----A---- C:\WINDOWS\system32\rwinsta.exe
2013-01-22 17:21:46 ----A---- C:\WINDOWS\system32\regini.exe
2013-01-22 17:21:46 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2013-01-22 17:21:46 ----A---- C:\WINDOWS\system32\qwinsta.exe
2013-01-22 17:21:46 ----A---- C:\WINDOWS\system32\qappsrv.exe
2013-01-22 17:21:46 ----A---- C:\WINDOWS\system32\msg.exe
2013-01-22 17:21:46 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2013-01-22 17:21:46 ----A---- C:\WINDOWS\system32\logoff.exe
2013-01-22 17:21:46 ----A---- C:\WINDOWS\system32\cdmodem.dll
2013-01-22 17:21:42 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2013-01-22 17:21:41 ----D---- C:\Program Files\Windows NT
2013-01-22 17:21:41 ----A---- C:\WINDOWS\system32\sndrec32.exe
2013-01-22 17:21:41 ----A---- C:\WINDOWS\system32\mspaint.exe
2013-01-22 17:21:41 ----A---- C:\WINDOWS\system32\mplay32.exe
2013-01-22 17:21:41 ----A---- C:\WINDOWS\system32\hypertrm.dll
2013-01-22 17:21:41 ----A---- C:\WINDOWS\system32\clipbrd.exe
2013-01-22 17:21:41 ----A---- C:\WINDOWS\system32\accwiz.exe
2013-01-22 17:21:40 ----A---- C:\WINDOWS\system32\tsgqec.dll
2013-01-22 17:21:40 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2013-01-22 17:21:40 ----A---- C:\WINDOWS\system32\spider.exe
2013-01-22 17:21:40 ----A---- C:\WINDOWS\system32\drivers\tdtcp.sys
2013-01-22 17:21:40 ----A---- C:\WINDOWS\system32\drivers\tdpipe.sys
2013-01-22 17:21:40 ----A---- C:\WINDOWS\system32\drivers\rdpwd.sys
2013-01-22 17:21:39 ----A---- C:\WINDOWS\system32\rhttpaa.dll
2013-01-22 17:21:39 ----A---- C:\WINDOWS\system32\remotepg.dll
2013-01-22 17:21:39 ----A---- C:\WINDOWS\system32\rdshost.exe
2013-01-22 17:21:39 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2013-01-22 17:21:39 ----A---- C:\WINDOWS\system32\mstscax.dll
2013-01-22 17:21:39 ----A---- C:\WINDOWS\system32\mstsc.exe
2013-01-22 17:21:39 ----A---- C:\WINDOWS\system32\aaclient.dll
2013-01-22 17:21:38 ----D---- C:\WINDOWS\system32\MsDtc
2013-01-22 17:21:38 ----A---- C:\WINDOWS\system32\termsrv.dll
2013-01-22 17:21:38 ----A---- C:\WINDOWS\system32\sessmgr.exe
2013-01-22 17:21:38 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2013-01-22 17:21:38 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2013-01-22 17:21:38 ----A---- C:\WINDOWS\system32\rdpclip.exe
2013-01-22 17:21:38 ----A---- C:\WINDOWS\system32\rdchost.dll
2013-01-22 17:21:38 ----A---- C:\WINDOWS\system32\qprocess.exe
2013-01-22 17:21:38 ----A---- C:\WINDOWS\system32\mtxoci.dll
2013-01-22 17:21:38 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2013-01-22 17:21:38 ----A---- C:\WINDOWS\system32\icaapi.dll
2013-01-22 17:21:38 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2013-01-22 17:21:37 ----A---- C:\WINDOWS\system32\xolehlp.dll
2013-01-22 17:21:37 ----A---- C:\WINDOWS\system32\msdtctm.dll
2013-01-22 17:21:37 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2013-01-22 17:21:37 ----A---- C:\WINDOWS\system32\msdtclog.dll
2013-01-22 17:21:37 ----A---- C:\WINDOWS\system32\msdtc.exe
2013-01-22 17:21:37 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2013-01-22 17:21:36 ----D---- C:\WINDOWS\system32\Com
2013-01-22 17:21:36 ----A---- C:\WINDOWS\system32\stclient.dll
2013-01-22 17:21:36 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2013-01-22 17:21:36 ----A---- C:\WINDOWS\system32\mtxex.dll
2013-01-22 17:21:36 ----A---- C:\WINDOWS\system32\mtxdm.dll
2013-01-22 17:21:36 ----A---- C:\WINDOWS\system32\comrepl.dll
2013-01-22 17:21:36 ----A---- C:\WINDOWS\system32\comaddin.dll
2013-01-22 17:21:36 ----A---- C:\WINDOWS\system32\colbact.dll
2013-01-22 17:21:36 ----A---- C:\WINDOWS\system32\clbcatex.dll
2013-01-22 17:21:36 ----A---- C:\WINDOWS\system32\catsrvut.dll
2013-01-22 17:21:36 ----A---- C:\WINDOWS\system32\catsrvps.dll
2013-01-22 17:21:36 ----A---- C:\WINDOWS\system32\catsrv.dll
2013-01-22 17:21:35 ----A---- C:\WINDOWS\system32\comuid.dll
2013-01-22 17:21:35 ----A---- C:\WINDOWS\system32\comsvcs.dll
2013-01-22 17:21:35 ----A---- C:\WINDOWS\system32\comsnap.dll
2013-01-22 17:21:35 ----A---- C:\WINDOWS\system32\clbcatq.dll
2013-01-22 17:21:31 ----A---- C:\WINDOWS\system32\servdeps.dll
2013-01-22 17:21:31 ----A---- C:\WINDOWS\system32\mmfutil.dll
2013-01-22 17:21:30 ----A---- C:\WINDOWS\system32\licwmi.dll
2013-01-22 17:21:30 ----A---- C:\WINDOWS\system32\cmprops.dll
2013-01-22 17:21:25 ----A---- C:\WINDOWS\system32\drivers\termdd.sys
2013-01-22 17:21:25 ----A---- C:\WINDOWS\system32\drivers\rdpdr.sys

======List of files/folders modified in the last 1 month======

2013-02-02 04:23:05 ----A---- C:\WINDOWS\system.ini
2013-01-22 17:24:18 ----A---- C:\WINDOWS\win.ini
2013-01-22 17:24:02 ----ASH---- C:\WINDOWS\fonts\desktop.ini
2013-01-06 06:33:55 ----A---- C:\WINDOWS\system32\mshtml.dll

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2010-09-07 28880]
R1 AppleCharger;AppleCharger; C:\WINDOWS\system32\DRIVERS\AppleCharger.sys [2011-01-10 18544]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2010-09-07 340048]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2010-09-07 165584]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2010-09-07 46672]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys [2013-01-22 242240]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2001-10-25 12032]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2010-09-07 17744]
R2 aswMon2;aswMon2; C:\WINDOWS\system32\drivers\aswMon2.sys [2010-09-07 100176]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2010-09-07 23376]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\igxpmp32.sys [2012-01-16 2514752]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2012-01-17 7081064]
R3 MEI;Intel(R) Management Engine Interface ; C:\WINDOWS\system32\DRIVERS\HECI.sys [2011-11-10 46080]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2011-12-08 327400]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 Ambfilt;Ambfilt; C:\WINDOWS\system32\drivers\Ambfilt.sys [2009-11-18 1691480]
S3 catchme;catchme; \??\C:\DOCUME~1\Libor\LOCALS~1\Temp\catchme.sys []
S3 esgiguard;esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys []
S3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
S3 Monfilt;Monfilt; C:\WINDOWS\system32\drivers\Monfilt.sys [2009-11-18 1395800]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2011-12-08 423136]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2011-12-16 161560]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2011-12-16 277784]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2011-12-16 363800]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
R3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-01-22 251400]
S3 AppleChargerSrv;AppleChargerSrv; C:\WINDOWS\system32\AppleChargerSrv.exe [2010-04-06 31272]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Re: relevantknowledge

Napsal: 02 úno 2013 13:26
od Márty84
Zdravim.

Vy jste tomu dal. To zas nekdo klika rychleji nez cte. Na nejakem foru jste se docetl o ComboFixu tak sup s nim do pc. Ale ze byste si precetl jeho varovani a licencni podminky, to ne, ze?

ComboFix se nepouziva bez dozoru nekoho, kdo s nim umi zachazet. Tim ze jste ho pouzil, jste smazal veskere stopy pripadne nakazy a log z RSIT je v podstate k nicemu. Neni se ted ceho chytit a ja muzu akorat varit z vody. A navic vas nenapadlo nic lepsiho, nez pouzit T-cleaner a tim pravdepodobne smazat i log, co vyplivnul CF. To je uzasne. Log je treba zkontrolovat a vetsinou docistit pomoci opravneho skriptu! Achjo

Svevolne pouziti CF je poruseni pravidel fora. Jste tady poprve, takze se na to zkusime podivat, ale pokud se to bude opakovat, bude pomoc odmitnuta.

A taky upozornuji, ze se to mozna protahne a vysledek vubec neni jisty.



:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner a ulozte ho na plochu.
Ukoncete vsechny programy, jinak to AdwCleaner udela za vas.
Spustte ho.
Kliknete na Search a program zacne pracovat.
Az skonci, vyplivne na vas log (pokud ne, najdete ho zde C:\AdwCleaner[R?].txt ), ten mi sem zkopirujte.

Re: relevantknowledge

Napsal: 02 úno 2013 21:23
od stroupek
Moc Vám děkuji za snahu pomoct a omlouvám se, že jsem nevyhledal pomoc dřív a ještě víc to zmršil :(

Tady je log od AdwCleaneru:

# AdwCleaner v2.109 - Logfile created 02/02/2013 at 21:15:01
# Updated 26/01/2013 by Xplode
# Operating system : Microsoft Windows XP Service Pack 3 (32 bits)
# User : Libor - LIBOR-PC
# Boot Mode : Normal
# Running from : C:\Documents and Settings\Libor\Plocha\adwcleaner.exe
# Option [Search]


***** [Services] *****


***** [Files / Folders] *****

Folder Found : C:\Documents and Settings\Libor\Data aplikací\OpenCandy

***** [Registry] *****

Key Found : HKCU\Software\APN PIP
Key Found : HKLM\Software\PIP

***** [Internet Browsers] *****

-\\ Internet Explorer v8.0.6001.18702

[OK] Registry is clean.

-\\ Mozilla Firefox v9.0 (cs)

File : C:\Documents and Settings\Libor\Data aplikací\Mozilla\Firefox\Profiles\cs17gxmd.default\prefs.js

[OK] File is clean.

*************************

AdwCleaner[R1].txt - [830 octets] - [02/02/2013 21:15:01]

########## EOF - C:\AdwCleaner[R1].txt - [889 octets] ##########

Re: relevantknowledge

Napsal: 02 úno 2013 21:34
od Márty84
No mi se omlouvat nemusite, problemy jste nadelal hlavne sobe :arcisit:


:arrow: Znovu ukoncete vsechny programy a spustte AdwCleaner.
Tentokrat kliknete na Delete
Program zacne pracovat (muze dojit k restartu pc) a vyplivne dalsi log (pripadne bude zde C:\AdwCleaner [S1].txt ). Ten mi sem zase zkopirujte.



:!: Jestli bude Avast rvat, ze to chce otevrit v sandboxu, nedovolte to! Vyberte moznost Otevrit normalne
:arrow: Stahnete RogueKiller http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe , ulozte ho na plochu a spustte.
Probehne kratoucky testik a pak se zpristupni vpravo nahore tlacitko Prohledat. Na to kliknete a probehne dalsi test.
Po dokonceni kliknete na napis Zprava a objevi se log. Ten mi sem vlozte

Re: relevantknowledge

Napsal: 02 úno 2013 22:48
od stroupek
AdwCleaner:

# AdwCleaner v2.109 - Logfile created 02/02/2013 at 22:38:21
# Updated 26/01/2013 by Xplode
# Operating system : Microsoft Windows XP Service Pack 3 (32 bits)
# User : Libor - LIBOR-PC
# Boot Mode : Normal
# Running from : C:\Documents and Settings\Libor\Plocha\adwcleaner.exe
# Option [Delete]


***** [Services] *****


***** [Files / Folders] *****

Folder Deleted : C:\Documents and Settings\Libor\Data aplikací\OpenCandy

***** [Registry] *****

Key Deleted : HKCU\Software\APN PIP
Key Deleted : HKLM\Software\PIP

***** [Internet Browsers] *****

-\\ Internet Explorer v8.0.6001.18702

[OK] Registry is clean.

-\\ Mozilla Firefox v9.0 (cs)

File : C:\Documents and Settings\Libor\Data aplikací\Mozilla\Firefox\Profiles\cs17gxmd.default\prefs.js

[OK] File is clean.

*************************

AdwCleaner[R1].txt - [957 octets] - [02/02/2013 21:15:01]
AdwCleaner[S1].txt - [895 octets] - [02/02/2013 22:38:21]

########## EOF - C:\AdwCleaner[S1].txt - [954 octets] ##########

RogueKiller: (nález 2 registrů)

RogueKiller V8.4.4 [Feb 1 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/

Operační systém : Windows XP (5.1.2600 Service Pack 3) 32 bits version
Spuštěno v : Normální režim
Uživatel : Libor [Práva správce]
Mód : Kontrola -- Datum : 02/02/2013 22:44:09
| ARK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 2 ¤¤¤
[HJPOL] HKLM\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
IRP[DriverStartIo] : atapi.sys -> HOOKED ([MAJOR] Unknown @ 0x89AA76EC)

¤¤¤ Soubor HOSTS: ¤¤¤
--> C:\WINDOWS\system32\drivers\etc\hosts

127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: +++++
--- User ---
[MBR] c852b582d49947de4c32fa6c52d23a0a
[BSP] d083d2d5bdfb961eb49e21f8a77e0b2d : Windows XP MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 76308 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[1]_S_02022013_02d2244.txt >>
RKreport[1]_S_02022013_02d2244.txt

Re: relevantknowledge

Napsal: 03 úno 2013 09:30
od Márty84
:arrow: Znovu spustte RogueKiller (pokud jste ho jeste nezavrel/a, rovnou kliknete na napis Smazat)
Probehne kratoucky testik a pak se zpristupni vpravo nahore tlacitko Prohledat. Na to kliknete a probehne dalsi test.
Po dokonceni kliknete na napis Smazat.
Pak kliknete na napis Zprava a objevi se log. Ten mi sem vlozte.
Pak kliknete na napis Oprava Host a Zprava.
Objevi se dalsi log. I ten mi sem vlozte.

Re: relevantknowledge

Napsal: 03 úno 2013 12:25
od stroupek
Po smazání:

RogueKiller V8.4.4 [Feb 1 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/

Operační systém : Windows XP (5.1.2600 Service Pack 3) 32 bits version
Spuštěno v : Normální režim
Uživatel : Libor [Práva správce]
Mód : Odebrat -- Datum : 02/03/2013 12:20:47
| ARK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 2 ¤¤¤
[HJPOL] HKLM\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
IRP[DriverStartIo] : atapi.sys -> HOOKED ([MAJOR] Unknown @ 0x89A9D6EC)

¤¤¤ Soubor HOSTS: ¤¤¤
--> C:\WINDOWS\system32\drivers\etc\hosts

127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: +++++
--- User ---
[MBR] c852b582d49947de4c32fa6c52d23a0a
[BSP] d083d2d5bdfb961eb49e21f8a77e0b2d : Windows XP MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 76308 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[3]_D_02032013_02d1220.txt >>
RKreport[1]_S_02022013_02d2244.txt ; RKreport[2]_S_02032013_02d1220.txt ; RKreport[3]_D_02032013_02d1220.txt

Oprava Host:

RogueKiller V8.4.4 [Feb 1 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/

Operační systém : Windows XP (5.1.2600 Service Pack 3) 32 bits version
Spuštěno v : Normální režim
Uživatel : Libor [Práva správce]
Mód : Oprava HOSTS -- Datum : 02/03/2013 12:21:20
| ARK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 0 ¤¤¤

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> C:\WINDOWS\system32\drivers\etc\hosts

127.0.0.1 localhost


¤¤¤ Resetovaný HOSTS: ¤¤¤
127.0.0.1 localhost

Dokončeno : << RKreport[4]_H_02032013_02d1221.txt >>
RKreport[1]_S_02022013_02d2244.txt ; RKreport[2]_S_02032013_02d1220.txt ; RKreport[3]_D_02032013_02d1220.txt ; RKreport[4]_H_02032013_02d1221.txt

Re: relevantknowledge

Napsal: 03 úno 2013 13:35
od Márty84
Udelejte novou !!!kompletni!!! kontrolu s MBAM a dejte sem vysledky. Pokud neco najde, nic nemazte, miva obcas falesne detekce

Re: relevantknowledge

Napsal: 03 úno 2013 23:24
od stroupek
Kompletni MBAM:

Malwarebytes Anti-Malware 1.70.0.1100
www.malwarebytes.org

Verze: v2013.02.02.03

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
Libor :: LIBOR-PC [administrátor]

3.2.2013 23:08:10
mbam-log-2013-02-03 (23-08-10).txt

Typ: Kompletní kontrola (C:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 218308
Uplynulý čas: 13 minut, 8 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)

(konec)

Re: relevantknowledge

Napsal: 04 úno 2013 03:42
od Márty84
MBAM zase odinstalujte a dejte novy log z RSIT

Re: relevantknowledge

Napsal: 04 úno 2013 13:40
od stroupek
MBAM odinstalován
RSIT log:

Logfile of random's system information tool 1.09 (written by random/random)
Run by Libor at 2013-02-04 13:37:39
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 30 GB (40%) free of 76 GB
Total RAM: 1936 MB (79% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:37:40, on 4.2.2013
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Alwil Software\Avast5\avastUI.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Intel\iCLS Client\HeciServer.exe
C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\Documents and Settings\Libor\Plocha\RSIT.exe
C:\Program Files\trend micro\Libor.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Programy\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: ubisoft register.lnk = C:\Program Files\Ubi Soft\Register\schedule.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AppleChargerSrv - Unknown owner - C:\WINDOWS\system32\AppleChargerSrv.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe

--
End of file - 4880 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job
C:\WINDOWS\tasks\WGASetup.job

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\Libor\Data aplikací\Mozilla\Firefox\Profiles\cs17gxmd.default

"{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.5.502.146 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_5_502_146.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.52]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.0.4]
"Description"=VLC Multimedia Plugin
"Path"=C:\Programy\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Programy\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll

C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Documents and Settings\Libor\Data aplikací\Mozilla\Firefox\Profiles\cs17gxmd.default\extensions\
{ea614400-e918-4741-9a97-7a972ff7c30b}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23 60568]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2012-01-25 143128]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2012-01-25 181528]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2012-01-25 169752]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2011-12-05 20065384]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-12-03 946352]
"avast5"=C:\Program Files\Alwil Software\Avast5\avastUI.exe [2010-09-07 2838912]
"UnlockerAssistant"=C:\Program Files\Unlocker\UnlockerAssistant.exe []

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Programy\DAEMON Tools Lite\DTLite.exe [2012-11-06 3673728]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]

C:\Documents and Settings\Libor\Nabídka Start\Programy\Po spuštění
ubisoft register.lnk - C:\Program Files\Ubi Soft\Register\schedule.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2012-01-16 301568]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Programy\uTorrent.exe"="C:\Programy\uTorrent.exe:*:Enabled:µTorrent"
"C:\Documents and Settings\Libor\Dokumenty\Stažené soubory\uTorrent.exe"="C:\Documents and Settings\Libor\Dokumenty\Stažené soubory\uTorrent.exe:*:Enabled:µTorrent"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======List of files/folders created in the last 1 month======

2013-02-02 22:38:21 ----A---- C:\AdwCleaner[S1].txt
2013-02-02 21:15:01 ----A---- C:\AdwCleaner[R1].txt
2013-02-02 08:04:40 ----A---- C:\WINDOWS\system32\msvcp71.dll
2013-02-02 07:55:20 ----A---- C:\WINDOWS\system32\msvcr71.dll
2013-02-02 06:23:15 ----D---- C:\rsit
2013-02-02 06:23:15 ----D---- C:\Program Files\trend micro
2013-02-02 05:56:52 ----D---- C:\Documents and Settings\Libor\Data aplikací\Malwarebytes
2013-02-02 05:56:41 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2013-02-02 05:18:53 ----SHD---- C:\Config.Msi
2013-02-02 05:10:14 ----D---- C:\WINDOWS\46B04D534E344388B6EE80FAB66AEF9B.TMP
2013-02-02 05:10:08 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2013-02-02 04:53:48 ----SHD---- C:\RECYCLER
2013-02-02 04:25:07 ----D---- C:\WINDOWS\temp
2013-02-02 03:37:53 ----A---- C:\Boot.bak
2013-02-02 03:37:48 ----RASHD---- C:\cmdcons
2013-02-02 03:36:33 ----A---- C:\WINDOWS\MBR.exe
2013-02-02 03:13:51 ----D---- C:\Documents and Settings\Libor\Data aplikací\Mozilla
2013-02-02 03:13:44 ----D---- C:\Program Files\Mozilla Firefox
2013-02-02 02:11:06 ----D---- C:\Program Files\Common Files\DirectX
2013-02-02 02:08:09 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
2013-02-02 02:08:09 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2013-02-02 02:08:09 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2013-02-02 02:08:08 ----A---- C:\WINDOWS\system32\XAudio2_1.dll
2013-02-02 02:08:08 ----A---- C:\WINDOWS\system32\XAPOFX1_0.dll
2013-02-02 02:08:08 ----A---- C:\WINDOWS\system32\xactengine3_1.dll
2013-02-02 02:08:06 ----A---- C:\WINDOWS\system32\D3DX9_38.dll
2013-02-02 02:08:06 ----A---- C:\WINDOWS\system32\d3dx10_38.dll
2013-02-02 02:08:06 ----A---- C:\WINDOWS\system32\D3DCompiler_38.dll
2013-02-01 23:05:16 ----A---- C:\WINDOWS\system32\XAudio2_0.dll
2013-02-01 23:05:16 ----A---- C:\WINDOWS\system32\xactengine3_0.dll
2013-02-01 23:05:16 ----A---- C:\WINDOWS\system32\X3DAudio1_3.dll
2013-02-01 23:05:16 ----A---- C:\WINDOWS\system32\D3DCompiler_37.dll
2013-02-01 23:05:15 ----A---- C:\WINDOWS\system32\xactengine2_10.dll
2013-02-01 23:05:15 ----A---- C:\WINDOWS\system32\D3DX9_37.dll
2013-02-01 23:05:15 ----A---- C:\WINDOWS\system32\d3dx10_37.dll
2013-02-01 23:05:14 ----A---- C:\WINDOWS\system32\d3dx9_36.dll
2013-02-01 23:05:14 ----A---- C:\WINDOWS\system32\d3dx10_36.dll
2013-02-01 23:05:14 ----A---- C:\WINDOWS\system32\D3DCompiler_36.dll
2013-02-01 23:05:13 ----A---- C:\WINDOWS\system32\xactengine2_9.dll
2013-02-01 23:05:13 ----A---- C:\WINDOWS\system32\d3dx9_35.dll
2013-02-01 23:05:13 ----A---- C:\WINDOWS\system32\d3dx10_35.dll
2013-02-01 23:05:13 ----A---- C:\WINDOWS\system32\D3DCompiler_35.dll
2013-02-01 23:05:12 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
2013-02-01 23:05:12 ----A---- C:\WINDOWS\system32\X3DAudio1_2.dll
2013-02-01 23:05:12 ----A---- C:\WINDOWS\system32\d3dx10_34.dll
2013-02-01 23:05:12 ----A---- C:\WINDOWS\system32\D3DCompiler_34.dll
2013-02-01 23:05:11 ----A---- C:\WINDOWS\system32\d3dx9_34.dll
2013-02-01 23:05:10 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
2013-02-01 23:05:10 ----A---- C:\WINDOWS\system32\d3dx10_33.dll
2013-02-01 23:05:09 ----A---- C:\WINDOWS\system32\D3DCompiler_33.dll
2013-02-01 23:05:08 ----A---- C:\WINDOWS\system32\d3dx9_33.dll
2013-02-01 23:05:07 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
2013-02-01 23:05:07 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
2013-02-01 23:05:07 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2013-02-01 23:05:06 ----A---- C:\WINDOWS\system32\xinput1_2.dll
2013-02-01 23:05:06 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
2013-02-01 23:05:06 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
2013-02-01 23:05:06 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
2013-02-01 23:05:06 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2013-02-01 23:05:05 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2013-02-01 23:05:05 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
2013-02-01 23:05:05 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2013-02-01 23:04:57 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
2013-02-01 23:04:57 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2013-02-01 23:04:56 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2013-02-01 23:04:56 ----A---- C:\WINDOWS\system32\d3dx9_29.dll
2013-02-01 23:04:56 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2013-02-01 23:04:55 ----A---- C:\WINDOWS\system32\xinput9_1_0.dll
2013-02-01 23:04:55 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2013-02-01 23:04:54 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
2013-02-01 23:04:54 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
2013-02-01 23:04:52 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
2013-02-01 05:16:09 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys
2013-02-01 05:16:09 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys
2013-02-01 05:16:09 ----A---- C:\WINDOWS\system32\drivers\aswFsBlk.sys
2013-02-01 05:16:08 ----A---- C:\WINDOWS\system32\drivers\aswTdi.sys
2013-02-01 05:16:08 ----A---- C:\WINDOWS\system32\drivers\aswRdr.sys
2013-02-01 05:16:07 ----A---- C:\WINDOWS\system32\drivers\aswmon2.sys
2013-02-01 05:16:07 ----A---- C:\WINDOWS\system32\drivers\aswmon.sys
2013-02-01 05:16:07 ----A---- C:\WINDOWS\system32\drivers\aavmker4.sys
2013-02-01 05:15:51 ----A---- C:\WINDOWS\system32\aswBoot.exe
2013-02-01 05:15:51 ----A---- C:\WINDOWS\avastSS.scr
2013-02-01 04:54:59 ----D---- C:\Program Files\Alwil Software
2013-02-01 04:54:59 ----D---- C:\Documents and Settings\All Users\Data aplikací\Alwil Software
2013-02-01 03:19:05 ----D---- C:\WINDOWS\system32\appmgmt
2013-01-31 23:09:57 ----A---- C:\WINDOWS\system32\drivers\Oreans.sys
2013-01-31 21:49:01 ----D---- C:\Program Files\Common Files\Steam
2013-01-30 11:22:59 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
2013-01-30 11:22:59 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
2013-01-30 11:22:59 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
2013-01-30 11:22:59 ----A---- C:\WINDOWS\system32\D3DX9_40.dll
2013-01-30 11:22:58 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2013-01-30 11:22:58 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2013-01-30 11:22:58 ----A---- C:\WINDOWS\system32\X3DAudio1_4.dll
2013-01-30 11:22:58 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2013-01-30 11:22:55 ----A---- C:\WINDOWS\system32\xinput1_3.dll
2013-01-30 00:20:38 ----A---- C:\WINDOWS\MP32WAV.INI
2013-01-29 22:57:29 ----D---- C:\Program Files\Common Files\Adobe
2013-01-29 21:25:52 ----A---- C:\WINDOWS\system32\msvcr70.dll
2013-01-29 21:25:52 ----A---- C:\WINDOWS\system32\msvcp70.dll
2013-01-29 21:25:51 ----A---- C:\WINDOWS\system32\mfc70.dll
2013-01-29 21:25:51 ----A---- C:\WINDOWS\system32\lame_enc.dll
2013-01-28 22:41:46 ----D---- C:\Documents and Settings\Libor\Data aplikací\uTorrent
2013-01-28 16:07:46 ----A---- C:\WINDOWS\system32\xmltok.dll
2013-01-28 16:07:46 ----A---- C:\WINDOWS\system32\xmlparse.dll
2013-01-28 16:07:46 ----A---- C:\WINDOWS\system32\xmlinst.exe
2013-01-28 16:07:46 ----A---- C:\WINDOWS\system32\VB5DB.DLL
2013-01-28 16:07:46 ----A---- C:\WINDOWS\system32\msxml3a.dll
2013-01-28 06:06:22 ----D---- C:\Documents and Settings\Libor\Data aplikací\vlc
2013-01-24 18:22:59 ----A---- C:\WINDOWS\system32\CmdLineExt.dll
2013-01-24 03:01:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2345886$
2013-01-24 03:01:14 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2013-01-23 03:26:08 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2013-01-23 03:26:05 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2013-01-23 03:26:02 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2013-01-23 03:24:37 ----HDC---- C:\WINDOWS\$NtUninstallKB2467659$
2013-01-23 03:24:21 ----D---- C:\WINDOWS\ie8updates
2013-01-23 03:24:05 ----D---- C:\WINDOWS\WBEM
2013-01-23 03:23:32 ----HDC---- C:\WINDOWS\ie8
2013-01-23 03:21:56 ----A---- C:\WINDOWS\system32\MRT.exe
2013-01-23 03:19:17 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2013-01-23 03:19:10 ----HDC---- C:\WINDOWS\$NtUninstallKB2387149$
2013-01-23 03:19:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2712808$
2013-01-23 03:18:59 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2013-01-23 03:17:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2479943$
2013-01-23 03:17:16 ----HDC---- C:\WINDOWS\$NtUninstallKB2659262$
2013-01-23 03:17:10 ----HDC---- C:\WINDOWS\$NtUninstallKB2564958$
2013-01-23 03:17:07 ----HDC---- C:\WINDOWS\$NtUninstallKB2478971$
2013-01-23 03:17:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2758857$
2013-01-23 03:16:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893-v2$
2013-01-23 03:16:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2536276-v2$
2013-01-23 03:16:31 ----HDC---- C:\WINDOWS\$NtUninstallKB2646524$
2013-01-23 03:16:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2779030$
2013-01-23 03:16:23 ----HDC---- C:\WINDOWS\$NtUninstallKB2585542$
2013-01-23 03:16:11 ----HDC---- C:\WINDOWS\$NtUninstallKB2631813$
2013-01-23 03:16:05 ----HDC---- C:\WINDOWS\$NtUninstallKB2296011$
2013-01-23 03:16:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2691442$
2013-01-23 03:15:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2013-01-23 03:15:50 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2013-01-23 03:15:44 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2013-01-23 03:15:39 ----HDC---- C:\WINDOWS\$NtUninstallKB2779562$
2013-01-23 03:15:38 ----D---- C:\WINDOWS\system32\KB905474
2013-01-23 03:15:16 ----HDC---- C:\WINDOWS\$NtUninstallKB2378111_WM9$
2013-01-23 03:15:12 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2013-01-23 03:15:07 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2013-01-23 03:15:02 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2013-01-23 03:14:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2013-01-23 03:14:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2655992$
2013-01-23 03:13:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2724197$
2013-01-23 03:13:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2013-01-23 03:13:15 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2013-01-23 03:13:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2481109$
2013-01-23 03:13:03 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2013-01-23 03:12:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2485663$
2013-01-23 03:12:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2598479$
2013-01-23 03:12:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2013-01-23 03:12:48 ----HDC---- C:\WINDOWS\$NtUninstallKB2736233$
2013-01-23 03:12:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2799329$
2013-01-23 03:12:35 ----HDC---- C:\WINDOWS\$NtUninstallKB2686509$
2013-01-23 03:12:31 ----HDC---- C:\WINDOWS\$NtUninstallKB982132$
2013-01-23 03:12:27 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2013-01-23 03:12:22 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2013-01-23 03:12:12 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2013-01-23 03:12:09 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2013-01-23 03:12:05 ----HDC---- C:\WINDOWS\$NtUninstallKB2507938$
2013-01-23 03:12:01 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2013-01-23 03:11:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2510581$
2013-01-23 03:11:54 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2013-01-23 03:11:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2476490$
2013-01-23 03:10:06 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2013-01-23 03:10:00 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2013-01-23 03:09:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$
2013-01-23 03:09:51 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2013-01-23 03:09:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2483185$
2013-01-23 03:09:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2624667$
2013-01-23 03:08:04 ----HDC---- C:\WINDOWS\$NtUninstallKB979687$
2013-01-23 03:06:37 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2013-01-23 03:06:34 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2013-01-23 03:06:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2719985$
2013-01-23 03:06:23 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2013-01-23 03:06:16 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2013-01-23 03:06:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2592799$
2013-01-23 03:06:05 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2013-01-23 03:05:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2753842-v2$
2013-01-23 03:05:54 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2013-01-23 03:05:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2770660$
2013-01-23 03:05:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2761465$
2013-01-23 03:05:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2535512$
2013-01-23 03:05:29 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2013-01-23 03:05:25 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2013-01-23 03:05:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2570947$
2013-01-23 03:04:51 ----HDC---- C:\WINDOWS\$NtUninstallKB981322$
2013-01-23 03:04:47 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2013-01-23 03:04:44 ----HDC---- C:\WINDOWS\$NtUninstallKB978695_WM9$
2013-01-23 03:04:41 ----HDC---- C:\WINDOWS\$NtUninstallKB2603381$
2013-01-23 03:04:37 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2013-01-23 03:04:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2757638$
2013-01-23 03:04:28 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2013-01-23 03:04:23 ----HDC---- C:\WINDOWS\$NtUninstallKB2419632$
2013-01-23 03:04:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2508429$
2013-01-23 03:04:16 ----HDC---- C:\WINDOWS\$NtUninstallKB2653956$
2013-01-23 03:04:12 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2013-01-23 03:04:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2749655$
2013-01-23 03:04:02 ----HDC---- C:\WINDOWS\$NtUninstallKB971029$
2013-01-23 03:03:57 ----HDC---- C:\WINDOWS\$NtUninstallKB2506212$
2013-01-23 03:03:53 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2013-01-23 03:03:48 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2013-01-23 03:03:39 ----HDC---- C:\WINDOWS\$NtUninstallKB2698365$
2013-01-23 03:03:36 ----HDC---- C:\WINDOWS\$NtUninstallKB2619339$
2013-01-23 03:03:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2705219-v2$
2013-01-23 03:03:29 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2013-01-23 03:03:26 ----HDC---- C:\WINDOWS\$NtUninstallKB2727528$
2013-01-23 03:03:23 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2013-01-23 03:03:19 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2013-01-23 03:03:14 ----HDC---- C:\WINDOWS\$NtUninstallKB981997$
2013-01-23 03:03:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2723135-v2$
2013-01-23 03:03:06 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2013-01-23 03:03:02 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2013-01-23 03:03:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2618451$
2013-01-23 03:01:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2661254-v2$
2013-01-23 03:01:17 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2013-01-23 03:01:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2509553$
2013-01-23 03:01:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2676562$
2013-01-23 03:01:02 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2013-01-23 03:00:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2478960$
2013-01-23 03:00:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2620712$
2013-01-23 03:00:53 ----HDC---- C:\WINDOWS\$NtUninstallKB2584146$
2013-01-23 03:00:49 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2013-01-23 03:00:41 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2013-01-23 00:44:31 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2013-01-22 22:40:57 ----D---- C:\Documents and Settings\Libor\Data aplikací\Mount&Blade Warband
2013-01-22 22:39:54 ----A---- C:\WINDOWS\system32\D3DX9_42.dll
2013-01-22 22:39:54 ----A---- C:\WINDOWS\system32\D3DCompiler_42.dll
2013-01-22 22:39:53 ----A---- C:\WINDOWS\system32\D3DX9_41.dll
2013-01-22 22:39:50 ----D---- C:\WINDOWS\Logs
2013-01-22 21:14:17 ----D---- C:\Documents and Settings\Libor\Data aplikací\Adobe
2013-01-22 21:13:34 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2013-01-22 21:12:26 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2013-01-22 20:31:57 ----D---- C:\Documents and Settings\Libor\Data aplikací\TuneUp Software
2013-01-22 20:31:32 ----D---- C:\Documents and Settings\All Users\Data aplikací\TuneUp Software
2013-01-22 20:31:24 ----SHD---- C:\Documents and Settings\All Users\Data aplikací\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}
2013-01-22 20:31:24 ----HD---- C:\Documents and Settings\All Users\Data aplikací\Common Files
2013-01-22 20:29:58 ----D---- C:\Documents and Settings\Libor\Data aplikací\WinRAR
2013-01-22 20:29:28 ----A---- C:\WINDOWS\system32\drivers\dtsoftbus01.sys
2013-01-22 20:29:19 ----D---- C:\Documents and Settings\Libor\Data aplikací\DAEMON Tools Lite
2013-01-22 20:28:31 ----D---- C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Lite
2013-01-22 20:23:17 ----D---- C:\Hry
2013-01-22 20:23:10 ----D---- C:\Programy
2013-01-22 20:22:45 ----N---- C:\WINDOWS\system32\browserchoice.exe
2013-01-22 20:20:44 ----N---- C:\WINDOWS\system32\drivers\bthport.sys
2013-01-22 20:12:11 ----D---- C:\Documents and Settings\Libor\Data aplikací\Macromedia
2013-01-22 18:20:57 ----A---- C:\WINDOWS\system32\h323log.txt
2013-01-22 18:18:18 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2013-01-22 18:16:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2544521$
2013-01-22 18:16:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2393802$
2013-01-22 18:16:48 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2013-01-22 18:16:45 ----HDC---- C:\WINDOWS\$NtUninstallKB2566454$
2013-01-22 18:16:43 ----HDC---- C:\WINDOWS\$NtUninstallKB2661637$
2013-01-22 18:16:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2013-01-22 18:16:36 ----HDC---- C:\WINDOWS\$NtUninstallKB2360937$
2013-01-22 18:13:51 ----N---- C:\WINDOWS\system32\iacenc.dll
2013-01-22 18:07:44 ----D---- C:\WINDOWS\system32\PreInstall
2013-01-22 18:07:42 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2013-01-22 18:07:42 ----HD---- C:\WINDOWS\$hf_mig$
2013-01-22 18:03:44 ----A---- C:\WINDOWS\system32\drivers\audstub.sys
2013-01-22 18:03:18 ----A---- C:\WINDOWS\system32\drivers\redbook.sys
2013-01-22 18:03:13 ----D---- C:\WINDOWS\system32\Lang
2013-01-22 18:02:54 ----A---- C:\WINDOWS\system32\usbui.dll
2013-01-22 18:02:17 ----A---- C:\WINDOWS\imsins.BAK
2013-01-22 18:02:15 ----SHD---- C:\WINDOWS\Installer
2013-01-22 18:02:15 ----D---- C:\Program Files\Common Files\ODBC
2013-01-22 18:02:15 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2013-01-22 18:02:15 ----A---- C:\WINDOWS\ODBCINST.INI
2013-01-22 18:02:12 ----RD---- C:\Program Files
2013-01-22 18:02:12 ----D---- C:\Program Files\Common Files\SpeechEngines
2013-01-22 18:02:12 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-01-22 18:02:12 ----D---- C:\Program Files\Common Files
2013-01-22 18:02:08 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2013-01-22 18:02:08 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2013-01-22 18:02:08 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2013-01-22 18:02:06 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2013-01-22 18:02:06 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2013-01-22 18:02:06 ----RA---- C:\WINDOWS\system32\kbdur.dll
2013-01-22 18:02:06 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2013-01-22 18:02:06 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2013-01-22 18:02:06 ----RA---- C:\WINDOWS\system32\kbdru.dll
2013-01-22 18:02:06 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2013-01-22 18:02:06 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2013-01-22 18:02:06 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2013-01-22 18:02:06 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2013-01-22 18:02:06 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2013-01-22 18:02:06 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2013-01-22 18:02:05 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2013-01-22 18:02:05 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2013-01-22 18:02:05 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2013-01-22 18:02:05 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2013-01-22 18:02:05 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2013-01-22 18:02:05 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2013-01-22 18:02:05 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2013-01-22 18:02:04 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2013-01-22 18:02:04 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2013-01-22 18:02:04 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2013-01-22 18:02:04 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2013-01-22 18:02:04 ----RA---- C:\WINDOWS\system32\kbdest.dll
2013-01-22 18:02:01 ----RA---- C:\WINDOWS\system32\kbdycl.dll
2013-01-22 18:02:01 ----RA---- C:\WINDOWS\system32\kbdsl1.dll
2013-01-22 18:02:01 ----RA---- C:\WINDOWS\system32\kbdsl.dll
2013-01-22 18:02:01 ----RA---- C:\WINDOWS\system32\kbdro.dll
2013-01-22 18:02:01 ----RA---- C:\WINDOWS\system32\kbdpl1.dll
2013-01-22 18:02:01 ----RA---- C:\WINDOWS\system32\kbdpl.dll
2013-01-22 18:02:01 ----RA---- C:\WINDOWS\system32\kbdhu1.dll
2013-01-22 18:02:01 ----RA---- C:\WINDOWS\system32\kbdhu.dll
2013-01-22 18:02:01 ----RA---- C:\WINDOWS\system32\kbdcr.dll
2013-01-22 18:02:01 ----RA---- C:\WINDOWS\system32\KBDAL.DLL
2013-01-22 18:01:59 ----A---- C:\WINDOWS\system32\spxcoins.dll
2013-01-22 18:01:59 ----A---- C:\WINDOWS\system32\irclass.dll
2013-01-22 18:01:59 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2013-01-22 18:01:59 ----A---- C:\WINDOWS\system32\dgsetup.dll
2013-01-22 18:01:59 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2013-01-22 18:01:57 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2013-01-22 18:01:57 ----A---- C:\WINDOWS\TASKMAN.EXE
2013-01-22 18:01:57 ----A---- C:\WINDOWS\system32\drivers\irenum.sys
2013-01-22 18:01:57 ----A---- C:\WINDOWS\system32\batt.dll
2013-01-22 18:01:57 ----A---- C:\WINDOWS\NOTEPAD.EXE
2013-01-22 18:01:56 ----A---- C:\WINDOWS\system32\storprop.dll
2013-01-22 18:01:50 ----ASH---- C:\Documents and Settings\All Users\Data aplikací\desktop.ini
2013-01-22 18:01:49 ----RA---- C:\WINDOWS\SET8.tmp
2013-01-22 18:01:47 ----RA---- C:\WINDOWS\SET4.tmp
2013-01-22 18:01:45 ----RA---- C:\WINDOWS\SET3.tmp
2013-01-22 18:01:41 ----D---- C:\WINDOWS\system32\CatRoot2
2013-01-22 18:01:41 ----D---- C:\WINDOWS\system32\CatRoot
2013-01-22 18:01:36 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2013-01-22 18:01:21 ----A---- C:\WINDOWS\setuplog.txt
2013-01-22 18:01:18 ----SHD---- C:\System Volume Information
2013-01-22 18:01:18 ----D---- C:\Documents and Settings
2013-01-22 18:01:17 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2013-01-22 18:00:17 ----RASH---- C:\boot.ini
2013-01-22 17:57:43 ----RSHDC---- C:\WINDOWS\system32\dllcache
2013-01-22 17:57:43 ----RSD---- C:\WINDOWS\Fonts
2013-01-22 17:57:43 ----RD---- C:\WINDOWS\Web
2013-01-22 17:57:43 ----HD---- C:\WINDOWS\inf
2013-01-22 17:57:43 ----D---- C:\WINDOWS\WinSxS
2013-01-22 17:57:43 ----D---- C:\WINDOWS\twain_32
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\wins
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\wbem
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\usmt
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\spool
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\ShellExt
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\Setup
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\ras
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\oobe
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\npp
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\mui
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\inetsrv
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\IME
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\icsxml
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\ias
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\export
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\drivers\etc
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\drivers\disdn
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\drivers
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\dhcp
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\cs-cz
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\cs
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\config
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\3com_dmi
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\3076
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\2052
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\1054
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\1042
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\1041
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\1037
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\1033
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\1031
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\1029
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\1028
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32\1025
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system32
2013-01-22 17:57:43 ----D---- C:\WINDOWS\system
2013-01-22 17:57:43 ----D---- C:\WINDOWS\security
2013-01-22 17:57:43 ----D---- C:\WINDOWS\Resources
2013-01-22 17:57:43 ----D---- C:\WINDOWS\repair
2013-01-22 17:57:43 ----D---- C:\WINDOWS\Provisioning
2013-01-22 17:57:43 ----D---- C:\WINDOWS\pchealth
2013-01-22 17:57:43 ----D---- C:\WINDOWS\PeerNet
2013-01-22 17:57:43 ----D---- C:\WINDOWS\NLDRV
2013-01-22 17:57:43 ----D---- C:\WINDOWS\Network Diagnostic
2013-01-22 17:57:43 ----D---- C:\WINDOWS\mui
2013-01-22 17:57:43 ----D---- C:\WINDOWS\msapps
2013-01-22 17:57:43 ----D---- C:\WINDOWS\msagent
2013-01-22 17:57:43 ----D---- C:\WINDOWS\Media
2013-01-22 17:57:43 ----D---- C:\WINDOWS\L2Schemas
2013-01-22 17:57:43 ----D---- C:\WINDOWS\java
2013-01-22 17:57:43 ----D---- C:\WINDOWS\ime
2013-01-22 17:57:43 ----D---- C:\WINDOWS\Help
2013-01-22 17:57:43 ----D---- C:\WINDOWS\ehome
2013-01-22 17:57:43 ----D---- C:\WINDOWS\Driver Cache
2013-01-22 17:57:43 ----D---- C:\WINDOWS\Debug
2013-01-22 17:57:43 ----D---- C:\WINDOWS\Cursors
2013-01-22 17:57:43 ----D---- C:\WINDOWS\Connection Wizard
2013-01-22 17:57:43 ----D---- C:\WINDOWS\Config
2013-01-22 17:57:43 ----D---- C:\WINDOWS\AppPatch
2013-01-22 17:57:43 ----D---- C:\WINDOWS\addins
2013-01-22 17:57:43 ----D---- C:\WINDOWS
2013-01-22 17:57:43 ----ASH---- C:\pagefile.sys
2013-01-22 17:49:31 ----A---- C:\WINDOWS\system32\drivers\IntelMEFWVer.dll
2013-01-22 17:49:14 ----D---- C:\Program Files\Common Files\postureAgent
2013-01-22 17:49:13 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2013-01-22 17:49:11 ----D---- C:\Program Files\GIGABYTE
2013-01-22 17:49:11 ----A---- C:\WINDOWS\system32\drivers\AppleCharger.sys
2013-01-22 17:49:11 ----A---- C:\WINDOWS\system32\AppleChargerSrv.exe
2013-01-22 17:49:09 ----A---- C:\WINDOWS\system32\drivers\HECI.sys
2013-01-22 17:49:05 ----A---- C:\WINDOWS\system32\log.txt
2013-01-22 17:49:04 ----D---- C:\Documents and Settings\All Users\Data aplikací\Intel
2013-01-22 17:48:58 ----A---- C:\WINDOWS\system32\drivers\Rtenicxp.sys
2013-01-22 17:48:54 ----A---- C:\WINDOWS\system32\RtNicProp32.dll
2013-01-22 17:48:52 ----A---- C:\WINDOWS\system32\RTNUninst32.dll
2013-01-22 17:48:42 ----D---- C:\Documents and Settings\Libor\Data aplikací\InstallShield
2013-01-22 17:48:41 ----A---- C:\WINDOWS\system32\drivers\splitter.sys
2013-01-22 17:48:40 ----A---- C:\WINDOWS\system32\drivers\wdmaud.sys
2013-01-22 17:48:39 ----A---- C:\WINDOWS\system32\drivers\DMusic.sys
2013-01-22 17:48:38 ----A---- C:\WINDOWS\system32\drivers\swmidi.sys
2013-01-22 17:48:37 ----A---- C:\WINDOWS\system32\drivers\aec.sys
2013-01-22 17:48:34 ----A---- C:\WINDOWS\system32\drivers\kmixer.sys
2013-01-22 17:48:34 ----A---- C:\WINDOWS\system32\drivers\drmkaud.sys
2013-01-22 17:48:32 ----A---- C:\WINDOWS\system32\drivers\sysaudio.sys
2013-01-22 17:48:31 ----A---- C:\WINDOWS\system32\drivers\MSKSSRV.sys
2013-01-22 17:48:30 ----A---- C:\WINDOWS\system32\drivers\MSPQM.sys
2013-01-22 17:48:29 ----A---- C:\WINDOWS\system32\drivers\MSPCLOCK.sys
2013-01-22 17:48:03 ----D---- C:\WINDOWS\system32\RTCOM
2013-01-22 17:48:00 ----A---- C:\WINDOWS\system32\ksuser.dll
2013-01-22 17:48:00 ----A---- C:\WINDOWS\system32\drivers\portcls.sys
2013-01-22 17:47:59 ----A---- C:\WINDOWS\system32\drivers\drmk.sys
2013-01-22 17:47:53 ----A---- C:\WINDOWS\vncutil.exe
2013-01-22 17:47:53 ----A---- C:\WINDOWS\SOUNDMAN.EXE
2013-01-22 17:47:53 ----A---- C:\WINDOWS\SkyTel.exe
2013-01-22 17:47:52 ----A---- C:\WINDOWS\RtlUpd.exe
2013-01-22 17:47:51 ----A---- C:\WINDOWS\system32\drivers\RtkHDAud.sys
2013-01-22 17:47:50 ----A---- C:\WINDOWS\system32\RtkCoLDRXP.dll
2013-01-22 17:47:50 ----A---- C:\WINDOWS\system32\RtkCoInstIIXP.dll
2013-01-22 17:47:50 ----A---- C:\WINDOWS\RtkAudioService.exe
2013-01-22 17:47:48 ----A---- C:\WINDOWS\RTLCPL.EXE
2013-01-22 17:47:43 ----A---- C:\WINDOWS\system32\drivers\RTAIODAT.DAT
2013-01-22 17:47:43 ----A---- C:\WINDOWS\RTHDCPL.EXE
2013-01-22 17:47:42 ----A---- C:\WINDOWS\system32\drivers\Monfilt.sys
2013-01-22 17:47:42 ----A---- C:\WINDOWS\MicCal.exe
2013-01-22 17:47:37 ----A---- C:\WINDOWS\ALCMTR.EXE
2013-01-22 17:47:36 ----A---- C:\WINDOWS\ALCWZRD.EXE
2013-01-22 17:47:35 ----D---- C:\Program Files\Realtek
2013-01-22 17:47:35 ----A---- C:\WINDOWS\system32\drivers\Ambfilt.sys
2013-01-22 17:47:34 ----HD---- C:\Program Files\InstallShield Installation Information
2013-01-22 17:47:29 ----R---- C:\WINDOWS\RtlExUpd.dll
2013-01-22 17:47:26 ----D---- C:\Program Files\Common Files\InstallShield
2013-01-22 17:47:22 ----RA---- C:\WINDOWS\system32\difxapi.dll
2013-01-22 17:47:13 ----RA---- C:\WINDOWS\system32\igfxCoIn_v5398.dll
2013-01-22 17:47:12 ----RA---- C:\WINDOWS\system32\igfxext.exe
2013-01-22 17:47:12 ----RA---- C:\WINDOWS\system32\igfxexps.dll
2013-01-22 17:47:12 ----RA---- C:\WINDOWS\system32\IGFXDEVLib.dll
2013-01-22 17:47:12 ----RA---- C:\WINDOWS\system32\ig4icd32.dll
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\igxprd32.dll
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\igxpgd32.dll
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\igxpdx32.dll
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\igxpdv32.dll
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\igfxtray.exe
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\igfxsrvc.exe
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\igfxsrvc.dll
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\igfxress.dll
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\igfxpph.dll
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\igfxpers.exe
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\igfxdo.dll
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\igfxdev.dll
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\hkcmd.exe
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\hccutils.dll
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\GfxUI.exe
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\gfxSrvc.dll
2013-01-22 17:47:11 ----RA---- C:\WINDOWS\system32\drivers\igxpmp32.sys
2013-01-22 17:46:21 ----DC---- C:\WINDOWS\system32\DRVSTORE
2013-01-22 17:46:21 ----D---- C:\WINDOWS\system32\ReinstallBackups
2013-01-22 17:46:20 ----RA---- C:\WINDOWS\system32\CSVer.dll
2013-01-22 17:46:20 ----D---- C:\Program Files\Intel
2013-01-22 17:46:16 ----D---- C:\Intel
2013-01-22 17:45:43 ----D---- C:\WINDOWS\system32\XPSViewer
2013-01-22 17:45:41 ----D---- C:\Program Files\MSBuild
2013-01-22 17:45:40 ----D---- C:\WINDOWS\system32\en-US
2013-01-22 17:45:37 ----D---- C:\Program Files\Reference Assemblies
2013-01-22 17:45:22 ----N---- C:\WINDOWS\system32\spmsg.dll
2013-01-22 17:45:21 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2013-01-22 17:45:19 ----N---- C:\WINDOWS\system32\prntvpt.dll
2013-01-22 17:45:18 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2013-01-22 17:45:18 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2013-01-22 17:45:18 ----D---- C:\9ded52f49cd2c2f68a252b17d424
2013-01-22 17:45:01 ----RSD---- C:\WINDOWS\assembly
2013-01-22 17:44:51 ----D---- C:\WINDOWS\Microsoft.NET
2013-01-22 17:40:24 ----RA---- C:\WINDOWS\GSetup.exe
2013-01-22 17:40:24 ----A---- C:\WINDOWS\GSetup.ini
2013-01-22 17:35:26 ----D---- C:\Documents and Settings\Libor\Data aplikací\Identities
2013-01-22 17:35:25 ----HD---- C:\Program Files\Uninstall Information
2013-01-22 17:35:21 ----SD---- C:\Documents and Settings\Libor\Data aplikací\Microsoft
2013-01-22 17:35:21 ----ASH---- C:\Documents and Settings\Libor\Data aplikací\desktop.ini
2013-01-22 17:33:32 ----D---- C:\WINDOWS\SoftwareDistribution
2013-01-22 17:33:31 ----SD---- C:\WINDOWS\system32\Microsoft
2013-01-22 17:33:31 ----D---- C:\WINDOWS\Prefetch
2013-01-22 17:33:30 ----A---- C:\WINDOWS\SchedLgU.Txt
2013-01-22 17:25:34 ----AS---- C:\WINDOWS\bootstat.dat
2013-01-22 17:24:27 ----D---- C:\WINDOWS\system32\xircom
2013-01-22 17:24:27 ----D---- C:\Program Files\xerox
2013-01-22 17:24:27 ----D---- C:\Program Files\microsoft frontpage
2013-01-22 17:24:18 ----RASH---- C:\MSDOS.SYS
2013-01-22 17:24:18 ----RASH---- C:\IO.SYS
2013-01-22 17:24:18 ----A---- C:\WINDOWS\control.ini
2013-01-22 17:24:18 ----A---- C:\CONFIG.SYS
2013-01-22 17:24:12 ----A---- C:\WINDOWS\OEWABLog.txt
2013-01-22 17:24:09 ----A---- C:\WINDOWS\system32\mapi32.dll
2013-01-22 17:23:40 ----SD---- C:\WINDOWS\Downloaded Program Files
2013-01-22 17:23:40 ----RD---- C:\WINDOWS\Offline Web Pages
2013-01-22 17:23:34 ----HD---- C:\Program Files\WindowsUpdate
2013-01-22 17:23:32 ----D---- C:\Program Files\Online Services
2013-01-22 17:23:22 ----D---- C:\WINDOWS\system32\DirectX
2013-01-22 17:23:18 ----A---- C:\WINDOWS\system32\atrace.dll
2013-01-22 17:23:17 ----A---- C:\WINDOWS\system32\desktop.ini
2013-01-22 17:23:17 ----A---- C:\WINDOWS\desktop.ini
2013-01-22 17:23:12 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2013-01-22 17:23:11 ----A---- C:\WINDOWS\system32\acctres.dll
2013-01-22 17:23:10 ----D---- C:\Program Files\Common Files\Services
2013-01-22 17:23:09 ----SD---- C:\WINDOWS\Tasks
2013-01-22 17:23:09 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2013-01-22 17:23:08 ----D---- C:\Program Files\Common Files\MSSoap
2013-01-22 17:23:06 ----D---- C:\WINDOWS\srchasst
2013-01-22 17:23:05 ----D---- C:\WINDOWS\system32\Macromed
2013-01-22 17:23:03 ----A---- C:\WINDOWS\system32\wuweb.dll
2013-01-22 17:23:03 ----A---- C:\WINDOWS\system32\wups.dll
2013-01-22 17:23:03 ----A---- C:\WINDOWS\system32\wucltui.dll
2013-01-22 17:23:03 ----A---- C:\WINDOWS\system32\wuauserv.dll
2013-01-22 17:23:03 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2013-01-22 17:23:03 ----A---- C:\WINDOWS\system32\wuaueng.dll
2013-01-22 17:23:03 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2013-01-22 17:23:03 ----A---- C:\WINDOWS\system32\wuauclt.exe
2013-01-22 17:23:03 ----A---- C:\WINDOWS\system32\wuapi.dll
2013-01-22 17:23:03 ----A---- C:\WINDOWS\system32\bitsprx4.dll
2013-01-22 17:23:03 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2013-01-22 17:23:03 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2013-01-22 17:23:02 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2013-01-22 17:23:02 ----A---- C:\WINDOWS\system32\qmgr.dll
2013-01-22 17:23:00 ----D---- C:\Program Files\Movie Maker
2013-01-22 17:22:49 ----A---- C:\WINDOWS\system32\safrslv.dll
2013-01-22 17:22:49 ----A---- C:\WINDOWS\system32\safrdm.dll
2013-01-22 17:22:49 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2013-01-22 17:22:49 ----A---- C:\WINDOWS\system32\racpldlg.dll
2013-01-22 17:22:47 ----A---- C:\WINDOWS\system32\fltMc.exe
2013-01-22 17:22:47 ----A---- C:\WINDOWS\system32\fltlib.dll
2013-01-22 17:22:47 ----A---- C:\WINDOWS\system32\drivers\fltMgr.sys
2013-01-22 17:22:46 ----D---- C:\WINDOWS\system32\Restore
2013-01-22 17:22:46 ----A---- C:\WINDOWS\system32\srsvc.dll
2013-01-22 17:22:46 ----A---- C:\WINDOWS\system32\srrstr.dll
2013-01-22 17:22:46 ----A---- C:\WINDOWS\system32\srclient.dll
2013-01-22 17:22:46 ----A---- C:\WINDOWS\system32\mnmdd.dll
2013-01-22 17:22:46 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2013-01-22 17:22:46 ----A---- C:\WINDOWS\system32\ils.dll
2013-01-22 17:22:46 ----A---- C:\WINDOWS\system32\drivers\sr.sys
2013-01-22 17:22:45 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2013-01-22 17:22:45 ----A---- C:\WINDOWS\system32\msconf.dll
2013-01-22 17:22:45 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2013-01-22 17:22:43 ----D---- C:\Program Files\NetMeeting
2013-01-22 17:22:43 ----A---- C:\WINDOWS\system32\msoert2.dll
2013-01-22 17:22:43 ----A---- C:\WINDOWS\system32\msoeacct.dll
2013-01-22 17:22:43 ----A---- C:\WINDOWS\system32\inetres.dll
2013-01-22 17:22:42 ----A---- C:\WINDOWS\system32\inetcomm.dll
2013-01-22 17:22:41 ----D---- C:\Program Files\Outlook Express
2013-01-22 17:22:41 ----A---- C:\WINDOWS\system32\schedsvc.dll
2013-01-22 17:22:41 ----A---- C:\WINDOWS\system32\mstinit.exe
2013-01-22 17:22:41 ----A---- C:\WINDOWS\system32\mstask.dll
2013-01-22 17:22:41 ----A---- C:\WINDOWS\system32\isign32.dll
2013-01-22 17:22:41 ----A---- C:\WINDOWS\system32\inetcfg.dll
2013-01-22 17:22:41 ----A---- C:\WINDOWS\system32\icwphbk.dll
2013-01-22 17:22:41 ----A---- C:\WINDOWS\system32\icwdial.dll
2013-01-22 17:22:37 ----D---- C:\Program Files\Common Files\System
2013-01-22 17:22:36 ----D---- C:\Program Files\Internet Explorer
2013-01-22 17:22:20 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2013-01-22 17:22:14 ----D---- C:\Program Files\ComPlus Applications
2013-01-22 17:22:13 ----A---- C:\WINDOWS\vbaddin.ini
2013-01-22 17:22:13 ----A---- C:\WINDOWS\vb.ini
2013-01-22 17:22:09 ----D---- C:\WINDOWS\Registration
2013-01-22 17:22:04 ----D---- C:\Program Files\Windows Media Player
2013-01-22 17:22:00 ----D---- C:\Program Files\Messenger
2013-01-22 17:21:58 ----D---- C:\Program Files\MSN Gaming Zone
2013-01-22 17:21:58 ----A---- C:\WINDOWS\system32\write.exe
2013-01-22 17:21:53 ----A---- C:\WINDOWS\system32\sndvol32.exe
2013-01-22 17:21:52 ----A---- C:\WINDOWS\system32\winchat.exe
2013-01-22 17:21:52 ----A---- C:\WINDOWS\system32\hticons.dll
2013-01-22 17:21:52 ----A---- C:\WINDOWS\system32\avwav.dll
2013-01-22 17:21:52 ----A---- C:\WINDOWS\system32\avtapi.dll
2013-01-22 17:21:52 ----A---- C:\WINDOWS\system32\avmeter.dll
2013-01-22 17:21:48 ----A---- C:\WINDOWS\system32\charmap.exe
2013-01-22 17:21:48 ----A---- C:\WINDOWS\system32\getuname.dll
2013-01-22 17:21:48 ----A---- C:\WINDOWS\system32\calc.exe
2013-01-22 17:21:47 ----A---- C:\WINDOWS\system32\winmine.exe
2013-01-22 17:21:47 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2013-01-22 17:21:47 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2013-01-22 17:21:47 ----A---- C:\WINDOWS\system32\tslabels.ini
2013-01-22 17:21:47 ----A---- C:\WINDOWS\system32\tskill.exe
2013-01-22 17:21:47 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2013-01-22 17:21:47 ----A---- C:\WINDOWS\system32\tscon.exe
2013-01-22 17:21:47 ----A---- C:\WINDOWS\system32\sol.exe
2013-01-22 17:21:47 ----A---- C:\WINDOWS\system32\shadow.exe
2013-01-22 17:21:47 ----A---- C:\WINDOWS\system32\reset.exe
2013-01-22 17:21:47 ----A---- C:\WINDOWS\system32\mshearts.exe
2013-01-22 17:21:47 ----A---- C:\WINDOWS\system32\freecell.exe
2013-01-22 17:21:46 ----A---- C:\WINDOWS\system32\rwinsta.exe
2013-01-22 17:21:46 ----A---- C:\WINDOWS\system32\regini.exe
2013-01-22 17:21:46 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2013-01-22 17:21:46 ----A---- C:\WINDOWS\system32\qwinsta.exe
2013-01-22 17:21:46 ----A---- C:\WINDOWS\system32\qappsrv.exe
2013-01-22 17:21:46 ----A---- C:\WINDOWS\system32\msg.exe
2013-01-22 17:21:46 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2013-01-22 17:21:46 ----A---- C:\WINDOWS\system32\logoff.exe
2013-01-22 17:21:46 ----A---- C:\WINDOWS\system32\cdmodem.dll
2013-01-22 17:21:42 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2013-01-22 17:21:41 ----D---- C:\Program Files\Windows NT
2013-01-22 17:21:41 ----A---- C:\WINDOWS\system32\sndrec32.exe
2013-01-22 17:21:41 ----A---- C:\WINDOWS\system32\mspaint.exe
2013-01-22 17:21:41 ----A---- C:\WINDOWS\system32\mplay32.exe
2013-01-22 17:21:41 ----A---- C:\WINDOWS\system32\hypertrm.dll
2013-01-22 17:21:41 ----A---- C:\WINDOWS\system32\clipbrd.exe
2013-01-22 17:21:41 ----A---- C:\WINDOWS\system32\accwiz.exe
2013-01-22 17:21:40 ----A---- C:\WINDOWS\system32\tsgqec.dll
2013-01-22 17:21:40 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2013-01-22 17:21:40 ----A---- C:\WINDOWS\system32\spider.exe
2013-01-22 17:21:40 ----A---- C:\WINDOWS\system32\drivers\tdtcp.sys
2013-01-22 17:21:40 ----A---- C:\WINDOWS\system32\drivers\tdpipe.sys
2013-01-22 17:21:40 ----A---- C:\WINDOWS\system32\drivers\rdpwd.sys
2013-01-22 17:21:39 ----A---- C:\WINDOWS\system32\rhttpaa.dll
2013-01-22 17:21:39 ----A---- C:\WINDOWS\system32\remotepg.dll
2013-01-22 17:21:39 ----A---- C:\WINDOWS\system32\rdshost.exe
2013-01-22 17:21:39 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2013-01-22 17:21:39 ----A---- C:\WINDOWS\system32\mstscax.dll
2013-01-22 17:21:39 ----A---- C:\WINDOWS\system32\mstsc.exe
2013-01-22 17:21:39 ----A---- C:\WINDOWS\system32\aaclient.dll
2013-01-22 17:21:38 ----D---- C:\WINDOWS\system32\MsDtc
2013-01-22 17:21:38 ----A---- C:\WINDOWS\system32\termsrv.dll
2013-01-22 17:21:38 ----A---- C:\WINDOWS\system32\sessmgr.exe
2013-01-22 17:21:38 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2013-01-22 17:21:38 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2013-01-22 17:21:38 ----A---- C:\WINDOWS\system32\rdpclip.exe
2013-01-22 17:21:38 ----A---- C:\WINDOWS\system32\rdchost.dll
2013-01-22 17:21:38 ----A---- C:\WINDOWS\system32\qprocess.exe
2013-01-22 17:21:38 ----A---- C:\WINDOWS\system32\mtxoci.dll
2013-01-22 17:21:38 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2013-01-22 17:21:38 ----A---- C:\WINDOWS\system32\icaapi.dll
2013-01-22 17:21:38 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2013-01-22 17:21:37 ----A---- C:\WINDOWS\system32\xolehlp.dll
2013-01-22 17:21:37 ----A---- C:\WINDOWS\system32\msdtctm.dll
2013-01-22 17:21:37 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2013-01-22 17:21:37 ----A---- C:\WINDOWS\system32\msdtclog.dll
2013-01-22 17:21:37 ----A---- C:\WINDOWS\system32\msdtc.exe
2013-01-22 17:21:37 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2013-01-22 17:21:36 ----D---- C:\WINDOWS\system32\Com
2013-01-22 17:21:36 ----A---- C:\WINDOWS\system32\stclient.dll
2013-01-22 17:21:36 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2013-01-22 17:21:36 ----A---- C:\WINDOWS\system32\mtxex.dll
2013-01-22 17:21:36 ----A---- C:\WINDOWS\system32\mtxdm.dll
2013-01-22 17:21:36 ----A---- C:\WINDOWS\system32\comrepl.dll
2013-01-22 17:21:36 ----A---- C:\WINDOWS\system32\comaddin.dll
2013-01-22 17:21:36 ----A---- C:\WINDOWS\system32\colbact.dll
2013-01-22 17:21:36 ----A---- C:\WINDOWS\system32\clbcatex.dll
2013-01-22 17:21:36 ----A---- C:\WINDOWS\system32\catsrvut.dll
2013-01-22 17:21:36 ----A---- C:\WINDOWS\system32\catsrvps.dll
2013-01-22 17:21:36 ----A---- C:\WINDOWS\system32\catsrv.dll
2013-01-22 17:21:35 ----A---- C:\WINDOWS\system32\comuid.dll
2013-01-22 17:21:35 ----A---- C:\WINDOWS\system32\comsvcs.dll
2013-01-22 17:21:35 ----A---- C:\WINDOWS\system32\comsnap.dll
2013-01-22 17:21:35 ----A---- C:\WINDOWS\system32\clbcatq.dll
2013-01-22 17:21:31 ----A---- C:\WINDOWS\system32\servdeps.dll
2013-01-22 17:21:31 ----A---- C:\WINDOWS\system32\mmfutil.dll
2013-01-22 17:21:30 ----A---- C:\WINDOWS\system32\licwmi.dll
2013-01-22 17:21:30 ----A---- C:\WINDOWS\system32\cmprops.dll
2013-01-22 17:21:25 ----A---- C:\WINDOWS\system32\drivers\termdd.sys
2013-01-22 17:21:25 ----A---- C:\WINDOWS\system32\drivers\rdpdr.sys

======List of files/folders modified in the last 1 month======

2013-02-02 04:23:05 ----A---- C:\WINDOWS\system.ini
2013-01-22 17:24:18 ----A---- C:\WINDOWS\win.ini
2013-01-22 17:24:02 ----ASH---- C:\WINDOWS\fonts\desktop.ini
2013-01-06 06:33:55 ----A---- C:\WINDOWS\system32\mshtml.dll

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2010-09-07 28880]
R1 AppleCharger;AppleCharger; C:\WINDOWS\system32\DRIVERS\AppleCharger.sys [2011-01-10 18544]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2010-09-07 340048]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2010-09-07 165584]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2010-09-07 46672]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys [2013-01-22 242240]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2001-10-25 12032]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2010-09-07 17744]
R2 aswMon2;aswMon2; C:\WINDOWS\system32\drivers\aswMon2.sys [2010-09-07 100176]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2010-09-07 23376]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\igxpmp32.sys [2012-01-16 2514752]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2012-01-17 7081064]
R3 MEI;Intel(R) Management Engine Interface ; C:\WINDOWS\system32\DRIVERS\HECI.sys [2011-11-10 46080]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2011-12-08 327400]
S3 Ambfilt;Ambfilt; C:\WINDOWS\system32\drivers\Ambfilt.sys [2009-11-18 1691480]
S3 catchme;catchme; \??\C:\DOCUME~1\Libor\LOCALS~1\Temp\catchme.sys []
S3 esgiguard;esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys []
S3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
S3 Monfilt;Monfilt; C:\WINDOWS\system32\drivers\Monfilt.sys [2009-11-18 1395800]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2011-12-08 423136]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2011-12-16 161560]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2011-12-16 277784]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2011-12-16 363800]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-01-22 251400]
S3 AppleChargerSrv;AppleChargerSrv; C:\WINDOWS\system32\AppleChargerSrv.exe [2010-04-06 31272]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Re: relevantknowledge

Napsal: 04 úno 2013 14:38
od Márty84
:!: Jestli bude Avast rvat, ze to chce otevrit v sandboxu, nedovolte to! Vyberte moznost Otevrit normalne
:arrow: Stahnete OTM http://oldtimer.geekstogo.com/OTM.exe , ulozte nejlepe na plochu a spustte.
Do leveho okna zkopirujte tento skript (vcetne te dvojtecky pred slovem commands)

Kód: Vybrat vše

:commands
[EMPTYTEMP]
[EMPTYFLASH]
[RESETHOSTS]
[Purity]

:services
catchme
AdobeFlashPlayerUpdateSvc

:files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp
C:\WINDOWS\tasks\Adobe Flash Player Updater.job
C:\WINDOWS\tasks\WGASetup.job

:reg
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=-
Kliknete na MoveIt a nechte program pracovat. Pri otazce na restart souhlaste.
Po restartu sem dejte log, ktery na vas vyskoci, nebo bude zde C:\_OTM\MovedFiles\xxxxxxxx_xxxxxx (misto tech x budou cisla, predstavujici datum a cas spusteni)

Re: relevantknowledge

Napsal: 04 úno 2013 20:04
od stroupek
Při procesu mi to nahlásilo chybu, že nelze odstranit složku "Dc34" (mimochodem v koši je stále složka "Dc33", která nejde odstranit, ani obnovit) dal jsem ok a nechal program dokončit práci, zde je výsledný log:

All processes killed
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: Libor
->Temp folder emptied: 46548782 bytes
->Temporary Internet Files folder emptied: 40097537 bytes
->FireFox cache emptied: 69631290 bytes
->Flash cache emptied: 15730 bytes

User: LocalService
->Temp folder emptied: 65748 bytes
->Temporary Internet Files folder emptied: 32902 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 3812574 bytes
%systemroot%\System32 .tmp files removed: 2504 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 32902 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 153,00 mb


[EMPTYFLASH]

User: All Users

User: Default User

User: Libor
->Flash cache emptied: 0 bytes

User: LocalService

User: NetworkService

Total Flash Files Cleaned = 0,00 mb

C:\WINDOWS\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
========== SERVICES/DRIVERS ==========
Service catchme stopped successfully!
Service catchme deleted successfully!
Service AdobeFlashPlayerUpdateSvc stopped successfully!
Service AdobeFlashPlayerUpdateSvc deleted successfully!
========== FILES ==========
File/Folder C:\WINDOWS\system32\*.tmp.dll not found.
File/Folder C:\WINDOWS\system32\SET*.tmp not found.
File/Folder C:\WINDOWS\*.tmp not found.
C:\WINDOWS\tasks\Adobe Flash Player Updater.job moved successfully.
C:\WINDOWS\tasks\WGASetup.job moved successfully.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite deleted successfully.

OTM by OldTimer - Version 3.1.21.0 log created on 02042013_195615

Files moved on Reboot...
File move failed. C:\WINDOWS\temp\_avast5_\Webshlock.txt scheduled to be moved on reboot.

Registry entries deleted on Reboot...

Re: relevantknowledge

Napsal: 05 úno 2013 10:32
od Márty84
Co je to za slozku? Je v ni neco? Zkuste ji smazat v nouzovem rezimu.

Okna v prohlizeci stale vyskakuji? A ve vsech prohlizecich?